Tom Pohl

6.1K posts

Tom Pohl banner
Tom Pohl

Tom Pohl

@tompohl

My mission is to humbly serve the curious with excitement! https://t.co/OksE77tIah [email protected]

Des Moines, Iowa Katılım Nisan 2008
906 Takip Edilen1.3K Takipçiler
Sabitlenmiş Tweet
Tom Pohl
Tom Pohl@tompohl·
My mission is to humbly serve the curious with excitement!
English
3
0
14
0
Tom Pohl
Tom Pohl@tompohl·
Hacking Webapps for Fun and Profit! youtu.be/vN4lOAuibcc?si… I had a really great time putting this presentation together and hopefully it'll inspire you to look at your applications more critically and fix them before someone malicions finds them! #PenTesting #WebApplication
YouTube video
YouTube
English
0
0
2
171
Tom Pohl retweetledi
LMG Security
LMG Security@LMGSecurity·
Join LMG Security #Pentest expert @TomPohl for "Hacking Web Apps for Fun & Profit!" Watch tomorrow (2/6) at 6:30pm CT for web app hacks & prevention strategies. Live: Foundry Distilling Co., West Des Moines Live-stream: @SecDSM" target="_blank" rel="nofollow noopener">youtube.com/@SecDSM #SecDSM #DesMoines #WebApp #IT
English
0
1
0
188
Tom Pohl
Tom Pohl@tompohl·
Thank you @Delta! You made a nearly impossible connection possible for me today ❤️
English
0
0
1
129
Simone Margaritelli
Simone Margaritelli@evilsocket·
* Unauthenticated RCE vs all GNU/Linux systems (plus others) disclosed 3 weeks ago. * Full disclosure happening in less than 2 weeks (as agreed with devs). * Still no CVE assigned (there should be at least 3, possibly 4, ideally 6). * Still no working fix. * Canonical, RedHat and others have confirmed the severity, a 9.9, check screenshot. * Devs are still arguing about whether or not some of the issues have a security impact. I've spent the last 3 weeks of my sabbatical working full time on this research, reporting, coordination and so on with the sole purpose of helping and pretty much only got patronized because the devs just can't accept that their code is crap - responsible disclosure: no more.
Simone Margaritelli tweet media
English
82
491
2.8K
364.5K
Tom Pohl
Tom Pohl@tompohl·
Are you curious about post exploitation of @F5 Big-IP’s? Check out my latest video on some techniques after you’ve compromised a box! youtu.be/WKEX53S3DSI?si…
YouTube video
YouTube
English
0
0
1
123
Tom Pohl retweetledi
gabsmashh
gabsmashh@gabsmashh·
There's a CTF on this bottle @tompohl
gabsmashh tweet mediagabsmashh tweet media
English
6
4
85
5.4K
Stratosberry
Stratosberry@stratosberry·
@tompohl I just received the info after about 1 hour of waiting, but I am pretty sure it was someone legitimately using the printer.
English
1
0
0
31
Stratosberry
Stratosberry@stratosberry·
@tompohl I saw your presentation "How I met your printer" and I am unable to reproduce the SMTP notify process on a RICOH MP C3004ex printer. I changed all the necessary settings accordingly and setup notifications (the printer has a few issues). Did they fixed this?
English
1
0
0
27
Tom Pohl
Tom Pohl@tompohl·
@stratosberry What’s a redacted version of the smtp server page look like?
English
1
0
0
16
Tom Pohl
Tom Pohl@tompohl·
@levarburton I just watched this on my flight this morning. Brought back so many wonderful memories. I grew up with you on both Reading Rainbow and Star Trek. I have a video of my son singing the theme song near the time when the show was ending that I absolutely treasure. Thank you!
English
0
0
1
90
LeVar Burton
LeVar Burton@levarburton·
In flight entertainment on the way home from London! #bydhttmwfi
LeVar Burton tweet media
English
76
112
2.7K
53.1K
Tom Pohl retweetledi
Andy Ellis
Andy Ellis@csoandy·
There's a rule: don't trust even your friends with cameras when you're inebriated. That said, I think @tompohl does a simply amazing job delivering an intro for me from my home studio. I may have to splice this into all of my talks.
English
1
1
4
474
Tom Pohl
Tom Pohl@tompohl·
@myst404_ Nice work! I literally just went through this very same exercise and then found your article! BTW I first just made a copy of Issa into /tmp/newlssa and modified like 86 to output the value of the $plain variable, but I wanted to make a tool that could do it offline too
English
0
0
1
43