Joined January 2013
85 Photos and videos
12 Jul 2023

11 Jul 2023
CVE-2023-29984 : Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2 or 1.3. Processing a specially crafted request may lead an affected product to a denial-of-service ... cve.report/CVE-2023-29984
156
12 Jul 2023
Very simple vulnerability I discovered on a large number of printers…. Basically, create a URL request to the printer IP with “” in it and it crashes/reboots the printer. CVE link and demo video below. cve.mitre.org/cgi-bin/cvenam… youtu.be/dMxekFm1KLw

129
28 Mar 2023
At the request of both PSIRT teams I have agreed to delay the release of this exploit until 1st July.
13 Mar 2023
Hey @BrotherOffice @FujifilmUS, I’ve tried contacting your PSIRT teams. I have an very simple DOS exploit for a large number of your printers. I will publicly release it 1st April if I don’t hear back. This is a polite record that I’ve tried to contact you.
251
22 Mar 2023
(Not so)Fun fact; A wordlist covering older @Telstra modems/routers running a default 10 digit WPA2 PSK using lowercase characters and numbers consumes 35 PB (petabytes) or 36,557 TB 😳
158
13 Mar 2023
Hey @BrotherOffice @FujifilmUS, I’ve tried contacting your PSIRT teams. I have an very simple DOS exploit for a large number of your printers. I will publicly release it 1st April if I don’t hear back. This is a polite record that I’ve tried to contact you.
10 Mar 2023
Eventful week, discovered a #ZeroDay vulnerability on many Brother/Fuji Xerox printers that does an unauthenticated DOS (sends them in a constant reboot cycle). How to perform it? Via a simple URL to the printer IP address😬 Contact been made with vendor PSIRT. Watch this space…
1
437
10 Mar 2023
Eventful week, discovered a #ZeroDay vulnerability on many Brother/Fuji Xerox printers that does an unauthenticated DOS (sends them in a constant reboot cycle). How to perform it? Via a simple URL to the printer IP address😬 Contact been made with vendor PSIRT. Watch this space…
1
352
15 Feb 2023
Something I was working on last year.... A script (Python) running on a $50 Raspberry Pi that shows you what users are entering into search engines such as Google. This works by pulling URL logs from a #paloaltonetworks firewall via its API. youtu.be/i9izpnybRnw

135
og150 retweeted
8 Oct 2022
AD Pentest Cheatsheet: hideandsec.sh/books/cheatshe…

4
160
486
17 Jun 2022
If, from a @PaloAltoNtwks firewall, you could get a list of what users have searched on Google and YouTube, do you think that would be:
40% Useful and interesting
0% Not of interest
60% Scary (but cool)
5 votes • Final results
14 Apr 2022
*Incoming* API script to #PaloAltoFirewall to display all Google searches in the last 24 hours. This could throw up some interesting results - ping me if you want to help test...... @PaloAltoNtwks
1
14 Apr 2022
Hmmm, interesting how different apps are programmed with the user-agent field in HTTP traffic. Here, the Evernote app leaks the exact version of Evernote and Windows OS version. Very useful information for an attacker, knowing the attack surface @PaloAltoNtwks #PaloAlto #Hacking
11 Apr 2022
Not sure who needs to hear this but NEVER do SSL decryption on BYODs (mobiles, tablets, etc) that heavily use Apps. #PaloAlto #SSLDecryption #Firewalls @PaloAltoNtwks
1
24 Sep 2021
What will you miss the least when you retire? I’ll go first, doing timesheets 👎
1
4
16 Sep 2021
Pretty cool that the Meraki Dashboard accurately shows a WiFi Jammer #Meraki
2
11
og150 retweeted
9 Sep 2021
My only interview question about a decade back for my first Network Engineering position was "Do you want to be a network engineer?" That was it. Prior to that, I helped out the team whenever I was asked. Eventually the work I did opened the doors. Work hard, get noticed.
3
3
35
19 Jul 2021
IT supports last refuge for diagnosing an issue is…[drum roll]…. “It’s the network”. Plot twist - the majority of times it’s not the network.
1
1
og150 retweeted
They completely understand the logic behind it. If you rate limit users, they’re more likely to give you more money for faster speedtest results. Making money at the expense of RF performance is the name of the game for many in the hospitality space.
1
1
7
13 May 2021
If a user complains that the network is down, ask if they can ping 127.0.0.1. If they can tell em it’s not the network.....
1
1
2
13 May 2021
My humble opinion of the day; Outsourcing does not work, except in the minds of the management layer too far removed from what’s happening on the ground.
8
27 Apr 2021
For anyone that cares, #PaloAlto #Azure firewalls in Active/Passive HA provides the following convergence during a failover event; 1) New sessions establish after ~2 minutes. 2) Existing sessions (established prior to the failover) pass traffic again after ~3 minutes.
1
27 Apr 2021
This is expected behaviour, as per Palo Alto documentation....