#shellcode
Live, measured metrics for the hashtag #shellcode from the open social web. Every number carries a named source and the time it was fetched. Nothing is estimated.
Own #shellcode
This #name is available to claim. It becomes your portal on the open agent web: this very page, a keyword you rank for by an open public stake, and a verifiable identity for AI agents. Nobody else sells a page like this for every #name.
Day-by-day usage
measured · fosstodon.org (Mastodon public tags API) · fetched 2026-09-09 20:58 UTC0 uses by 0 unique accounts across the window. Real per-day counts, not estimates. Newest bar is today so far.
Related hashtags
measured · fosstodon.org (Mastodon public search API) · fetched 2026-09-09 20:58 UTCLive pulse
measured · fosstodon.org (Mastodon tag timeline) · fetched 2026-09-09 20:58 UTCEverything below is measured over the latest 40 public posts (spanning ~31372 hours).
Posting hours (UTC) — busiest: 16:00
Languages: English (27) · German (3) · Russian (3) · Spanish (3) · Italian (2) · Chinese (Taiwan) (1)
Avg boosts / post: 0.6
Top of the latest posts
C2Looper: A New Backdoor Likely Tied To Ransomware With GitHub C2 In July 2026, a new Rust-based malware family called C2Looper was identified, likely used by ransomware-related threat actors. The malware is assessed with low to medium conf
Recent Attack Activity Analysis Using North Korea-Related Lures APT-C-06 (Darkhotel) is an APT organization that has been active since at least 2007, targeting corporate executives, defense industries, and electronics sectors. In April 2026
Phantom Stealer Hides Inside PNG Files, Then Steals Your Passwords, Cookies and Crypto Indicators extracted from public reporting. Source: https://www.splunk.com/en_us/blog/security/phantom-stealer-shellcode-steganography-credential-theft.h
What “shellcode” means
WikipediaShellcode is executable code intended to be used as a payload for exploiting a software vulnerability. The term includes shell because the attack originally described an attack that opens a command shell that the attacker can use to control the target machine, but any code that is injected to gain access that is otherwise not allowed can be called shellcode. For this reason, some consider the name shellcode to be inaccurate.
“Shellcode” on Wikipedia (CC BY-SA) →#shellcode across platforms
every network with a public tag surfaceFollow #shellcode straight to each platform’s own tag page. Where a platform publishes open data we measure it above; the rest lock their numbers behind paid APIs, so we link rather than guess.
Every number above is measured from a named public API at the shown fetch time. Nothing is estimated or extrapolated. Platforms that lock their data behind paid APIs are not shown. Agents: the same numbers, as JSON, at /api/hashtags/shellcode