#general

1 messages · Page 4 of 1

plush zephyr
#

Beautiful ❤️

#

The detailing of clouds 🔥

knotty osprey
#

good video

frail lake
#

because 1) there was no chance i had the command wrong and 2) one time i didn't redact everything and got a warning from the mods.

knotty osprey
#

im not well versed with AD, if I was I would help

scenic maple
#

fr?

frail lake
knotty osprey
#

can I know what the issue is if you could explain it simply

#

just ldap not auth?

frail lake
#

yeah essentially

knotty osprey
#

and you know the credentials are correct right?

frail lake
#

which i've had countless people help me and nobody has found a fix and i suspect that i'm slowly starting to annoy this chat which would be fair lmao

frail lake
#

yeah im just hypercooked

knotty osprey
#

have you tried on non HTB machines

frail lake
#

not really, one dude said it's probably the resolver which now that i think abt it it probably is

knotty osprey
#

I would try on a non HTB machine and see if it works

#

then that tells you alot

frail lake
#

will do at some point appreciate the suggestion

knotty osprey
#

I think you can try by connecting via IP rather than domain

grave ermine
#

Who do I need to reach out to about verification emails not going through

west lynxBOT
past latch
#

golang

knotty osprey
#

huh

#

send what

clever zenith
#

Any recommendations for ebook for video course for a beginner?

solemn lichen
#

whats up gang

flint copper
#

hello ferrow haxdaboxurs

meager kernel
#

Hello

solemn lichen
#

how are you kratos

meager kernel
solemn lichen
#

i seeee

meager kernel
#

Wby

solemn lichen
#

what kinda classes you got?

#

workin :)

meager kernel
solemn lichen
#

sweet

meager kernel
solemn lichen
#

pretty good!

meager kernel
#

Having fun?

solemn lichen
#

yeah for the most part

meager kernel
meager kernel
solemn lichen
meager kernel
solemn lichen
#

yeah! do you do any work or just college for now

meager kernel
#

In college, but have an internship

solemn lichen
#

ohhh internship exciting

#

whats it for

meager kernel
#

Hopefully I get a full time job someday

meager kernel
#

I just shadow a Sr pentester

raven rain
#

that's awesome

solemn lichen
#

thats cool :)

meager kernel
#

Tyy

#

Work is more fun that college ironically

solemn lichen
#

congrats on the internship thats a big leap

#

yeah for sure

meager kernel
#

Good luck for your work!!

#

I should sleep rn, it's getting late

solemn lichen
#

get a good sleep!

past latch
#

go.dev/play

tall forge
#

hey guys does htb make blackfriday on gold annual subscription?

cedar shell
#

HTB has never sold any subscriptions at a discount on Black Friday.

tall forge
#

sad, then ill go just with OSWE

hardy frigate
frail turtle
#

W-what?

still vault
#

Is it possible to use HTB on a tablet device such as an iPad?

lilac cipher
#

........

hoary nebula
still vault
lilac cipher
vast mango
#

whats good, identefied now XD

still vault
still vault
#

Well how am I meant to learn cyber security without access to educational sites?

scenic maple
still vault
vast mango
#

what are u guys learning

lilac cipher
#

No subway surfers on htb

still vault
#

I’m only trying to learn..

cedar shell
lilac cipher
#

The experience isn't worth it

still vault
hoary nebula
#

lil bro

#

are u 12

lilac cipher
#

Better start on academy then

still vault
#

Yes I’m trying to use academy.

#

It won’t let me type in the Parrot OS terminal.

#

So I can’t even do the introduction.

hoary nebula
#

do u even have a keyboard

still vault
#

I have a digital one not a physical one.

green kite
#

iPad + Magic Keyboard + rdp = perfect

still vault
still vault
green kite
#

The virtual keyboard also takes up a lot of space

past latch
vast mango
#

ok ok i was away for 1 minute

still vault
#

Okay well I suppose HTB just isn’t for me. :/

hoary nebula
#

go vikings

green kite
past latch
hoary nebula
#

i am home

green kite
#

Anyone got experience with unify AP’s and inside coverage?

scenic maple
hoary nebula
#

@green kite learning about OOP today

green kite
past latch
green kite
#

Jk jk

past latch
#

You’re not gonna get past 1x without it

green kite
#

Where are you learning?

hoary nebula
#

boot.dev

still vault
# past latch Close it and open it again

It’s an issue where it doesn’t open the digital keyboard. it’s obviously not been made to be compatible with mobile devices which is honestly quite a major flaw.

past latch
#

oh

#

I strongly recommend against doing it on mobile

scenic maple
past latch
#

It isn’t a flaw

silver forge
#

oh it's really hard to develop bugs with golang. it just doesn't want to do that.

past latch
#

it wasn’t made for it

still vault
past latch
still vault
scenic maple
still vault
#

I don’t believe that’s a thing in my country..

hoary nebula
#

cuz he is 12

green kite
#

Where are you from @still vault

past latch
#

What about a computer or laptop

scenic maple
#

php needs a mascot

still vault
still vault
past latch
green kite
past latch
#

What stops you from accessing a computer? Even at school or something

scenic maple
#

oh i see

molten bobcat
#

There's 669 internet cafes in London alone 🙂

scenic maple
#

i thouht it was related to a db thing

still vault
still vault
green kite
#

@scenic maple

past latch
green kite
#

Then it’s just in your browser

still vault
still vault
still vault
still vault
past latch
#

ask your ICT teacher honestly

green kite
#

Pwnbox is easy on your browser. I use it from time to time

past latch
#

Before after school, lunchtime

#

they’d be bad to not at least hear you out

molten bobcat
#

The UK has 4.1 thousand public libraries as well

hoary nebula
#

oxford library

still vault
green kite
#

I loved sitting in the central library in Manchester and watch people

molten bobcat
#

There's 950 academic libraries

green kite
#

Or anywhere in city center really

still vault
green kite
#

Man I miss Manchester

past latch
hoary nebula
#

chat, MIT or Oxford

molten bobcat
#

Yeh, was just commenting on the ways someone could have public internet access 🙂

green kite
still vault
still vault
green kite
#

Maybe

past latch
#

I’d recommend all uk school kids to consider an apprenticeship

#

If it’s cyber

hoary nebula
#

isnt MIT number one school

still vault
# past latch If it’s cyber

I plan on taking A-Levels then moving to a degree-level apprenticeship in a cyber security position at a prestigious company.

scenic maple
#

so php has elephent python has snakes and go has gophers
but javascript doesnt have anything

scenic maple
#

but javascript is the most used programming language in the world

past latch
#

Doesn’t have to be prestigious though

#

Avoid insurance and finance companies is my advice

#

For mental health

#

though some have cool cyber teams

still vault
past latch
#

Id gladly take a small firm that did specialised cyber research over Google

#

But that’s me

still vault
green kite
#

if you're in it for the money, search another job

still vault
past latch
#

Unless you care about the money on a job level rather than a career level

hoary nebula
#

IT is good money except it support haha

solemn lichen
#

thats not how it works

#

otherwise we would have no teachers

silver forge
still vault
#

If I did not get paid for a job I would never work a day in my life lol. If you’re not looking for money why are you looking to work?

past latch
#

I live for it

hoary nebula
#

python for life

silver forge
hoary nebula
#

craazy

past latch
#

then again you haven’t worked one

#

You’ll know when you do

frail turtle
#

I think javascript is a stupid language that was arroneously adopted as a standard. Too many things in it dont make sense

silver forge
#

I've heard some people also have discipline called "engineering" which has something to do with software quality

hoary nebula
#

hallicon with the beef

still vault
past latch
silver forge
past latch
still vault
sterile ether
#

Sorry, but how can I get help on an issue with a question problem inside a module?

hoary nebula
sterile ether
#

Thanks alot

silver forge
frail turtle
#

I saw a guy who fixes trailer houses who makes 900k per year

past latch
hoary nebula
#

handy people get payed a lot

west mirage
#

Hi All
i need to update my card details in academy.hacthebox, how can i do that ?

hoary nebula
#

technicians

still vault
west lynxBOT
west mirage
#

thanks let me check

still vault
past latch
#

they won’t even need to give me goggles

still vault
#

That’s diabolical.

silver forge
still vault
#

Nah you guys need to set your priorities straight this is not okay 😭

past latch
# still vault That’s diabolical.

Ironically this wraps back to my point of money
There are some boring ass jobs in cyber I wouldn’t do for anything less than 2x of what I’m getting paid now (GRC) but thats personal, other people have their own tolerance thresholds

silver forge
#

All I work with are powerpoints

still vault
#

I mean I guess I’ll have to invest in a PC to be able to use HTB. I suppose it’s a good idea since I’ll need to be able to use things like Linux if I want to secure an apprenticeship.

silver forge
#

Today I figured out what's the initial investment for the AI capabilities for a Servicenow setup in on-premises. Apparently the answer is about 500k euros.

still vault
#

I was going to buy a PS5 but I suppose this is the better choice. :/

royal ferry
#

Hello everyone

Anyone knows if HTB are going to have a booth in Blackhat MEA ?

still vault
past latch
#

You’re already ahead of me man I didn’t start taking cyber seriously until maybe 2nd year sixth form

silver forge
still vault
past latch
still vault
#

I’ve got a mark off 100% lol.

silver forge
#

You know there are people who use rectangles in presentations. That's understandable. Then there are people who use circles. These people will never use the other form. And THEN. There are the triangle people. Fuck those. kek

past latch
#

I found it cool but wasn’t realistically gunning for it

still vault
# past latch Good job

Thanks. I find the knowledge just sticks but GCSE computer science is not going to make me a penetration tester by any means.

past latch
silver forge
#

What I'm practicing now is using arrows in my presentations. They are still kind of subtle to hint continuity in the plans. pepecoffee

still vault
silver forge
hoary nebula
#

lets normalize giving meetings in nvim

#

no ppt

flint copper
#

let's normalize making a meeting an email

still vault
hoary nebula
#

true

flint copper
#

and let's stop having meetings about our emails

silver forge
#

Today in a meeting I seconded a proposal to include an item in the agenda. pepecoffee

still vault
flint copper
past latch
flint copper
#

we pay people who do absolutely nothing

#

and budgets get stretched thin

past latch
#

HOWEVER

molten bobcat
#

I used to have a job like that

#

Now I'm an engineer and don't do anything but work

still vault
past latch
#

some theory stuff sticks and I use it at work or for development

silver forge
#

You're way more likely to exchange emails about a meeting than vice versa. HOWEVER the most moronic emails, the epic ones, sometimes get a meeting. FeelsGoodMan

molten bobcat
#

Fundamentals are absolutely critical

still vault
still vault
#

I already had a mid life crisis as a teenager because I realised I have to work for the next 45 years.

flint copper
#

"erm new policy cybersecurity is rolling out" "meeting on this date at this time"

silver forge
#

My favorite email from the last week is "we installed a licensed software, now the vendor wants money for it". That one has got so far 3 meetings.

flint copper
#

45 minute meeting to discuss a less than 10 page document

still vault
#

Do the majority of people here work in IT-related fields?

molten bobcat
#

Yes

flint copper
#

most do yeah

molten bobcat
#

I am a SOC Analyst

hoary nebula
#

me too

still vault
molten bobcat
#

I love my job a lot

flint copper
#

i'm a systems engineer

still vault
#

SOC is sec ops centre right?

molten bobcat
#

I've been here for a year now and it doesn't feel like work

molten bobcat
still vault
worthy cargo
#

That's wonderful

molten bobcat
worthy cargo
#

I wish I could get a job like that too

still vault
molten bobcat
#

I like my job a lot because most problems can be solved with a strong sense of fundamentals and the ability to critically think

molten bobcat
#

My customers are global

still vault
silver forge
hoary nebula
still vault
#

Even if it’s just one coloured to the background in a corner.

#

It’ll be there.

silver forge
still vault
past latch
silver forge
#

But that Servicenow presentation, seriously. Just stating "500k euros" means I just now have justification to shut down on-premises operation. That's not bad, and definitely exciting. FeelsGoodMan

molten bobcat
past latch
#

Rough

molten bobcat
#

Eh

still vault
#

Okay, I am going to go. Thanks for all the assistance, HTB community members and staff. I will take on board the advice in which has been shared with me today and use it to further my future progression to increase my chances of success in an ever-evolving cyber-globe. Have a good evening, everyone.

molten bobcat
#

I do mah job

flint copper
#

i can't begin to tell you how bad these vendors are at handling cloud based shit

#

it's awful

past latch
#

Some of my work involves IR but not very frequently

raven rain
#

openshift

flint copper
#

maybe your case isn't the same, but our vendors suck

past latch
#

lengthy processes sometimes work in your favour

silver forge
# flint copper I prefer on prem everything

Let's just say Servicenow has probably 0 competent software engineers globally in their whole organization, and I'm probably correct on that. Their setup will suck everywhere - on-premises or cloud. But, if it sucks and costs a fraction somewhere, ...

past latch
#

Pay me a million and I’m rewriting servicenow in Go

flint copper
#

i'm glad we don't use that

past latch
#

The whole thing

#

the whole company

flint copper
#

and honestly i'm not too familiar with it, i've seen the ticketing system portion of it

#

😩

#

just because a job exists called "service now trainer"

#

if a ticketing system requires someone to provide specialized training, please don't bring it into my environment

#

though i know it does more than just that

past latch
#

Hopefully clankers can do the menial stuff for us

flint copper
#

we're rolling out AI features in our EHR systems now

past latch
#

Will they help

flint copper
#

idk i'm not apart of the integration, i guess we'll hear the doctors opinions on it

silver forge
#

I'm glad within the EU most HR processes are legally classified as high risk use case and we will never be using AI for that stuff pepecoffee

past latch
#

It’ll be fine just feed the GPTs your life’s work

#

and everything about you

worthy cargo
#

ChatGapetto

flint copper
#

we have a lot of people asking to unblock chatgpt

#

there's supposed to be a meeting about it

silver forge
#

We discussed today buying chatgpt subscriptions to certain groups of people

vivid flower
#

@grok is this true?

silver forge
#

Mostly for the deep research feature

#

When you have that it's pointless to have for example Gartner subscription

vivid flower
#

Ai is coming for all of us...

flint copper
#

i'm gonna suggest we deploy on prem AI servers

#

(literally just so i can be the one to mess with them)

silver forge
#

We just green-lit the use of certain Azure AI services today prayge

lilac cipher
flint copper
#

we're supposed to be enabling copilot features in the next few months

#

i'm not sure what security team is doing, i think they're stalling it

silver forge
#

If they are competent they are discussing about the use of security labels.

flint copper
#

they rolled those out a few months ago

silver forge
#

Oh they are at least semi-competent

#

In that case they are finalizing the usage policy settings.

flint copper
#

competent? yeah man that's debatable

silver forge
#

Well, as in "at least reads the Microsoft's recommendations and tries to follow them"

flint copper
#

i feel like i'm talking to GRC people

silver forge
#

We made a Powerpoint about this FeelsGoodMan

#

Mostly it has rectangles.

#

Soothing shades of blue

flint copper
#

these are engineers

#

and they act like they don't know what i'm talking about

pure terrace
#

hi, i have a quick question about reverse shells

silver forge
#

They do, theyare just messing with you pepecoffee

pure terrace
#

how do you guys do to get reverse shells? Do you all have a c2 server?

solemn lichen
pure terrace
#

ok sure i'll come back

limber arch
#

For HTB I don’t use a c2

pure terrace
#

for HTB i use nc with the vpn it's fine

limber arch
#

In a real world environment or where evasion is needed than sure I would use a c2

#

Otherwise just nc

pure terrace
#

what i was asking is, if it's outside your network, then how can you reach the attacking machine from the target to send the reverse shell?

#

also thx for the answer

inland basalt
#

Do you know why I am not able to post on prolabs offshore?

solemn lichen
pure terrace
#

thx. I'm gonna do some research, i don't understand everything here

hoary nebula
#

anything?

frail turtle
#

Alright I just finished emailing the entire Candidate assessment center for the NYPD telling them why I am not crazy and that I can prove it. crossing my fingers that they reply back.

pure terrace
#

lmao wtf

frail turtle
#

It's apparently been noted on Reddit that the whole process is full of corruption. kek

pure terrace
#

that backstory has to be so good

silver forge
#

we need to document this in like those reality tv clips where people give their backdrop and then it cuts into others shit talking you

frail turtle
#

well it's not that good, i just failed my psych because a hateful shrink lady wanted to fail me over something I did 4 years ago.

pure terrace
#

did you already know the shrink?

frail turtle
#

But I'm not crazy for her to fail me, and that happened like 4 years ago in 2021

pure terrace
#

sorry i'm not english, by "a hookup" you mean going out with her?

frail turtle
#

no it means sleeping with her

pure terrace
#

oh okkk

#

why would she even get mad for this?

frail turtle
#

I even have a girlfriend, but I dont want the NYPD to know that

pure terrace
#

lmao that would be worse, you would have to face hell

frail turtle
pure terrace
#

crazy man

#

this type of "feminist" only appeared in my country a few months/a year back

#

this is madness

frail turtle
#

They sent me an email a week after I took the test but I didn't see it until months later that I failed the eval lol

pure terrace
#

this is insane that just for a hookup a woman can fail you on psych eval

#

i mean this could be way worse than you not getting the job

#

but still

frail turtle
#

and in it they said I had to go see a licensed shrink and write a statement to convince them I'm not crazy

silver forge
#

I'm glad I have all moomins in the valley kermit_thnk

frail turtle
#

Many people have failed this "psych" test and appealed then passed

pure terrace
#

wow, so you mean to say that most people are crazy?

#

it's good to not feel so alone anymore

frail turtle
#

But it's okay if they dont give me another shot then I'll just go back to hacking.

#

Well you know a lot of police officers tend to be abusive

pure terrace
#

what were you doing this for?

hoary nebula
#

hallicon are yhou american

frail turtle
pure terrace
frail turtle
silver forge
#

How tf does APPEALING a psych test change the result kek

hoary nebula
#

which state

frail turtle
silver forge
#

What kind of Mickey Mouse test is that

pure terrace
#

how old are you?

frail turtle
#

most of the cops they hire end up having a lot of anger issues and so on.

hoary nebula
#

335 years old

frail turtle
#

I'm 31

hoary nebula
#

dwarfs do live long

pure terrace
frail turtle
#

I think the whole NYPD is just silly

#

career? I mean I wasn't working for like 4 years

pure terrace
#

oh

frail turtle
#

honestly the best years of me life

pure terrace
#

that's the hell of a long time

frail turtle
#

yeah I made a lot of money at my old job

hoary nebula
#

oh no

#

cop in ny?

#

gl to u

frail turtle
#

yeah yesterday there was a shooting kek pretty wild

hoary nebula
#

i would never work in that cement jungle

#

hehe

frail turtle
#

I actually want to make detective if I could

scenic maple
frail turtle
#

it would be cool to be a hacker detective sadglas

pure terrace
hoary nebula
#

learn c+++

frail turtle
#

nope kek

pure terrace
frail turtle
pure terrace
scenic maple
#

kinda want to do zig ngl

hoary nebula
#

no i ment c++

frail turtle
#

2 '+' s is a headache, but 3 '+'s that's a catastrophe

hoary nebula
#

typo

frail turtle
pure terrace
#

no typo, full-on new language

frail turtle
#

especially with the lack of documentation

#

and constant changes

scenic maple
#

nope the docs are good

#

can vouch for that

frail turtle
#

i have no idea how the guy who made Ghostty made Ghostty

scenic maple
#

but agree on non mature language

#

maybe he is just a good programmer 😩

hoary nebula
#

ghostty is goated

frail turtle
#

Time to get ready for work

hoary nebula
#

yes american, time for work hehe

#

still learning how to type with a split keyboard

pure terrace
#

I was trying to read a bit of documentation about reverse shells but can't find some good/complete docs, where do you guys usually go for such docs?

pure terrace
#

also i found some info, here was my question. Suppose i'm on a CTF and trying to get a reverse shell from a target machine but my machine is a on a different network, hidden behinf the NAT of my router. If i try to send the shell to my machine's IP, the router will be the one to get it, what can i do to send it to my machine directly?The options i saw are
-port forwarding (i dont have the hand on my router)
-using a VPS as a C2 server
-NAT traversal with ngrok/chisel (i will dig into this option as i don't exactly know how this would work
-use serveorev (definitely not a durable option but an option nonetheless).

Does my question make sense?

pure terrace
loud crystal
#

i dont understand the left exp bar, can someone explain me why its always at 0%?

compact crypt
#

guys, what to do if htb module doesn't want to eat my answer

worthy cargo
#

Specify the module and the question

compact crypt
knotty osprey
#

retired machines etc do not count towards rank progress

loud crystal
#

did just a single retired

knotty osprey
#

hmm, the rank should go up in % if its active

loud crystal
#

yeah

#

here only active, might be a bug or smthing

knotty osprey
#

yeah that doesnt make any sense

#

idk how to help here sorry

loud crystal
#

np mate, just wanted to check if its normal 😄

knotty osprey
#

could be a new bug or because of the season switch

loud crystal
#

maybe a mod who knows read this

visual meadow
#

hi

#

guys

loud crystal
#

hey

molten bobcat
#

It won't progress progress towards pro hacker until you reach the hacker level of content solved

#

You're at 19% I think hacker rank is 20% or 25%

#

As machines retire, your total percentage will drop as those machines aren't worth points anymore

loud crystal
#

ohh okay, i was nearly a yr inactive

molten bobcat
#

That'll do it

loud crystal
#

so i may have completely reset

molten bobcat
#

Das prolly true

#

You won't lose your rank though 🙂

#

That's permanently the highest achieved

loud crystal
#

yeah, gonna work on my pro hacker rank 😄

ornate wren
#

do challenges also contribute to rank?

loud crystal
#

yes

molten bobcat
#

Yes they do

loud crystal
#

but very small percentage

molten bobcat
#

It's cuz there's a lot

tiny canyon
#

@knotty osprey im chudding out

loud crystal
#

yeah

molten bobcat
loud crystal
#

cutiepie

#

just looks like our cat that ran away a few months ago

knotty osprey
knotty osprey
#

I was confused on how you were doing active machines without % going up

subtle plover
#

Who has a cool hacking server i can join

unborn ginkgo
#

yeah

hoary nebula
#

yeah

knotty osprey
#

I agree tbh

unborn ginkgo
#

fo sho

brisk ledge
subtle plover
zealous charm
#

@lilac cipher

chrome tree
#

@🇿 🇶 🇦

gaunt gale
#

hi guys

#

I am doing well how are you guys?

#

I just got back from boxing

marble hearth
hoary nebula
#

rekt

gaunt gale
#

I am going to the market soon but afterwards I will be doing a good amount of HTB

marble hearth
#

wtf is support@npmjs.help??

gaunt gale
#

if I can get it, will a job as a junior network admin help me with hack the box if they train me in networking, linux, security, windows, other tools, etc?

#

and if so how much?

#

I know the answer is of course and someone at 2600 said network admins and sysadmins are generally hackers

#

but ya

#

which kind of makes sense to me

#

what do you guys think?

hoary nebula
#

network admins are not hackers

gaunt gale
#

a large percentage of the time

lilac cipher
gaunt gale
#

more often they are than in other non-cybersec professions according to the guy I talked to, or sysadmins generally are

#

the guy I talked to had years of experience at data center

#

I just want a second opinion on this

zealous charm
lilac cipher
#

@zealous charm

gaunt gale
#

I'm asking because I may have a part time network admin job with on-the-job paid training involved

#

at a university near me

lilac cipher
molten bobcat
#

Update 2fa credentials?

gaunt gale
#

not my university (I already graduated) a different one

molten bobcat
#

2FA is never a set of credentials wtf

#

That's the first factor!

hoary nebula
#

easy to fool an end user

fierce vale
#

hacking wasn't always a profession and the term originates from MIT model railway club

hoary nebula
#

hacking also means tinkering

cloud osprey
molten bobcat
#

True

lilac cipher
hoary nebula
#

come then

molten bobcat
#

Parries

fierce vale
hoary nebula
#

sword or axe user

molten bobcat
#

Sword

hoary nebula
#

alright

#

do you have elendil

#

sword of aragorn

molten bobcat
#

Nah, this isn't from any show or anything a blacksmith made this

hoary nebula
#

cool

lilac cipher
#

Nope

hoary nebula
#

no one can help

torn cedar
lilac cipher
#

Omg @torn cedar

solemn lichen
lilac cipher
#

NOT NICE

cloud osprey
molten bobcat
#

All of them

#

Hello?

hoary nebula
molten bobcat
#

That doesn't matter.

#

Official or not, software can be vulnerable.

fierce vale
gaunt gale
cloud osprey
molten bobcat
#

But we have no clue how this would have occured on your host. The question you're asking is literally the purpose of my entire career.

#

There's a thousand ways to do this

gaunt gale
#

but if I can get that job, will I learn a lot of active directory, linux, windows, etc, enough to have a foundation to do hack the box academy more easily?

molten bobcat
#

Use Google

hoary nebula
#

bro keeps asking questions haha

visual hollow
gaunt gale
#

how much will the underlying foundational skills help me with hack the box academy if I am working with AD, windows, linux, networking, security, etc?

hoary nebula
#

pikachu

gaunt gale
#

like on a scale of 1-10

hoary nebula
#

11

molten bobcat
#

You should understand how files and devices work

gaunt gale
molten bobcat
#

I unfortunately don't have the time to explain the mechanics of the NTFS file system and SSDs

hoary nebula
#

learning on the job is always better

gaunt gale
#

ok

fierce vale
hoary nebula
#

hell yeah python

#

i love coding

lilac cipher
hoary nebula
#

melon i will squeeze your melons @lilac cipher

gaunt gale
#

so I'm thinking it might be a better fit

#

since I learn better hands on

lilac cipher
#

It do be like that

gaunt gale
#

so I'm wondering if the extra hands on training will help me with hack the box a lot

lilac cipher
#

Nobody gonna hold your hand

hoary nebula
#

yeah

#

just do ut

molten bobcat
#

It's a specialized field, understanding fundamentals is crucial

hoary nebula
#

it

lilac cipher
#

I only hold @hoary nebula's hand

flint copper
#

keeps the competition fierce

gaunt gale
#

ok thanks

molten bobcat
#

No it doesn't

molten bobcat
#

I'm not in competition with anyone lol

flint copper
#

wasn't intended to be literal

cloud osprey
#

you dont need fundamentals, all you need is a sense of curiosity and to know how to google things

molten bobcat
cloud osprey
molten bobcat
#

Brah

cloud osprey
#

SEMANTICS BEATS SEMANTICS

molten bobcat
#

BRAH

hoary nebula
#

just lie on your resume

molten bobcat
#

You have a remote assistant application executing on login

lilac cipher
#

It was me

ornate wren
molten bobcat
#

You need to remove the registry keys and scheduled tasks associated with that executable.

lilac cipher
#

Didn't like the way you had your desktop organised

hoary nebula
#

yeah ur getting hacked rn gg

#

rey rey

chrome tree
lilac cipher
#

I know that was the best time for me to reorganize your desktop since i wasn't bothering you

hoary nebula
#

kfc

lilac cipher
#

Youll always be a loser after my own heart

molten bobcat
#

Turn the Internet off.

#

For the host.

#

Then fix it.

hoary nebula
#

turn off your monitor Kappa

lilac cipher
#

I stole all your flags

#

Selling them rn to @hoary nebula

hoary nebula
#

ayo dont leak our deal

molten bobcat
#

No one will be able to remotely control your PC without internet access.

#

That needs done ASAP

#

Also, any credentials stored on the host or used in web browser are likely compromised.

#

You need to reset all of them.

hoary nebula
#

@lilac cipher has a bluetooth dongle connected to his device

molten bobcat
#

I'm not kidding.

hoary nebula
#

@frigid mountain i understand

molten bobcat
#

I have no clue about your Google drive files

hoary nebula
#

burn your motherboard

#

im not laughing

cloud osprey
hoary nebula
#

thanks dad

maiden anvil
#

@zealous charm here is some ancient wisdom for you today:

In Emptiness exists good but no evil.
Wisdom is Existence.
Principle is Existence.
The Way is Existence.
The Mind is Emptiness.

Twelfth Day of the Fifth Moon, Second Year of Shoho
Shinmen Musashi

cloud osprey
lilac cipher
#

Ill overflow your int

cloud osprey
hoary nebula
#

my intellect is main tank

cloud osprey
#

mt >>> sounds like empty

maiden anvil
#

im a parry master

cloud osprey
#

idk it worked in my head

zealous charm
flint copper
hoary nebula
#

omg

lilac cipher
lilac cipher
flint copper
#

😱

cloud osprey
hoary nebula
lilac cipher
#

🇺🇸

hoary nebula
#

merica

hoary nebula
#

hmm yes i can read that mm yes thats right

#

for the clankers

cloud osprey
#

its not what it looks like

hoary nebula
#

i should go on more solo camping trips

#

shits relaxing

cloud osprey
#

its even more relaxing to have your own house with AC set to 68 and blackout curtains

hoary nebula
#

they dont exist in belgium

#

hell yeah brother

flint copper
#

this summer was brutal

lilac cipher
#

Just killed a mosquito

#

🦟

worthy cargo
#

Mosquitos are my enemy

#

Same. Where they bite me it swells up pretty badly and my whole body itches, not just the bite.

vast mango
#

Naaaah, europe wants to put in chat control

#

We need Edward Snowdenkekhands

hoary nebula
#

Okay

#

Time to learn Rust

hoary nebula
vast mango
#

Whats Rust

eternal mango
#

Iron that has oxidised

#

(a programming language)

#

Comparable to C/C++.. if they could fit in to their suits for the party

#

(Rust is also a low level language, like C/C++)

queen dagger
#

is that business with htb changing their subscription model still a thing?

eternal mango
#

Yes

#

Well, no, not our model per say to such an extent

#

But removing VIP, and prices being increased in line with inflation and cost increases

queen dagger
#

cool, I am making changes to my subscription now and was wondering if i should just go ahead and do vip+ because I had heard vip would no longer be supported

lime trout
#

discord being wonky moment

tight path
#

Sure is

lilac cipher
#

Lel

full moss
#

hmm

terse dirge
eternal mango
#

Well

#

That was fun

lilac cipher
#

We're so back

rapid rain
#

....did someone at Discord and/or HTB use npm install ...?

eternal mango
#

Hahah

#

That thought crossed my mind too

rapid rain
#

those compromised npm packages were revoked pretty quickly

#

hasnt kept me from joking tho

eternal mango
#

wtf

#

All roles vanished for a bit

#

I couldn't post in here temporarily, it just kept sending me to modules

#

Same happened in other servers, all roles vanished temporarily

#

Web client is working again now

#

Oh, nope that's broken again

#

Loads of 404 errors on API routes

rose onyx
#

I just got a bunch of messages like my desktop went offline

obsidian grove
#

Discord is aware of the issue and apparently the situation worsened.

eternal mango
#

Indeedily doodily

#

House alarm is going off for now reason

#

Skynet has launched I guess, RIP

obsidian grove
#

here's a question, what attack would be able to take down a service like discord?

lilac cipher
#

npm i

eternal mango
#

👆

#

Best guess yeah.. there was a recent large supply chain attack targetting popular modules

#

Most likely Discord employed some mitigations / safeguards which broke shit

obsidian grove
#

wouldn't be surprised

lilac cipher
#

John wammy already with the vid out

molten bobcat
#

Discord absolutely had some problems just now lol

eternal mango
#
Update - Clients are able to connect again and send/receive messages. We're still seeing degradation with voice.
#

Yes, web UI is functional again

#

but still many failing API endpoints

patent elbow
#

discord down it’s time to sleep

lilac cipher
full moss
#

still works for me though... well sh**

patent elbow
#

i dont want to hack anymore

lilac cipher
molten bobcat
#

It's fine, you become proficient enough to put down the sword and gain a desire to own a farm and grow vegetables

#

It's not possible for someone to have remote access to a host with no internet

#

So rest assured a human isn't doing it

#

But this isn't what malware does either.

#

Why would it use the mouse?

#

And you have the network adapters disabled?

#

Is this a laptop

#

Or a desktop

#

Do you have an external mouse or just the track pad

#

Turn off the track pad and unplug/turn off any mouse

#

This is to troubleshoot whether or not you have a wonky mouse

#

If it stops moving around and doing stuff, turn them on one at a time and watch them

#

Not really

#

Just means we have to look elsewhere

#

Sounds good

#

Part of cybersecurity is learning troubleshooting logic

#

Let's swap to dms cuz

#

This is a public server lol

solemn lichen
#

hi htb how are ya all

meager kernel
#

Good morning

solemn lichen
frail turtle
#

Dude people be stealing from Autozone

#

like how you gonna steal a 37 dollar coolant you have to be jobless for that

split patio
rose onyx
obsidian bone
#

​Hello, I wanted to join the AI Red Teaming CTF starting the day after tomorrow, but it looks like the team slots filled up without me noticing 🙁
Is there anyone who has a spot on their team? I plan to work on it for about two hours a day, but I'm a complete beginner at AIRT.

rose onyx
#

@zenith pine show yourself

zenith pine
meager kernel
toxic sandal
#

John Hammond posted a video that wasn't 40 minutes. The npm hack must have been a big deal

frail turtle
#

for many days now, this mouse has eated the food off my trap

#

tonight... that's not gonna happen

marble hearth
#

and probably will be this week

#

💀

violet dew
frail turtle
#

NO FUCKING WAY THE LITTLE SHIT DIDN'T WAIT HE ATE EGG I LEFT ON THE TRAP

#

okay

#

tomorrow the little shit is gonna die

#

he cleaned it 😭

violet dew
muted olive
#

lol npm haxxed

#

ironically I installed a fuck ton of npm packages for the first time yesterday, before I heard

scenic maple
#

what happened

muted olive
scenic maple
#

why cant npm developers be a little careful man

#

i mean they are developers arent they supposed to not fall for phishing

violet dew
violet dew
scenic maple
#

this is literally how elderly people get scammed

tiny canyon
#

@violet dew IM TAKING SHOTS OF RED 40 TO HELP ME GET DISABILITY CHECKS

scenic maple
#

caido just launched diff pricing in india

#

its 625 inr for montly

violet dew
#

I thought it is free?

scenic maple
#

its not fully free

#

it has subs

#

paid features in paid version

vivid flower
#

I also think you should show up to your disability interview completely exhausted or otherwise out of it

#

Good luck homie

frail turtle
#

Bound be a few ten thousand

muted olive
muted olive
frail turtle
#

guys help why do I not feel tired or like sleeping but my eyes say I do.

scenic maple
#

well jokes on you i am elderly people

scenic maple
rose onyx
#

Knock off digimon

frail turtle
#

3 mosquitoes dead tonight...this isn't normal where are they coming from

raven rain
#

mosquito land

terse dirge
#

Today was a long day chat

#

I had gas station pizza for dinner:D

#

It was good

#

Gas station pizza is underrated chat, easily an A tier pizza

#

Obviously deep dish and ny style are S tier

alpine pumice
#

did Ceald stop taking his medicine

#

gas station pizza bro?

terse dirge
#

Speedway gas station pizza

violet dew
#

Do you guys think it's okay to use writeups to solve easy machines?

#

like it hasn't been a long time since i learned bug bounty and pentesting
but i feel lost

#

but when i see the start of the writeup i can advance a little bit on my own

#

And when I read the exploit part I actually understand it, it’s not like I have no clue what it does.

#

But I feel uncomfortable cuz I'm not sure if it's okay and a good way to do it at his stage :((

violet dew
#

Thanks!

#

It makes me more motivated now 😅

gaunt gale
#

Is the AI red teamer path going to take until the end of the year to complete?

alpine pumice
#

I don't think they will tell you. If they put a date out there and something happens and they miss it people would get mad.

#

I'm not even sure if they're announcing new modules for it.

gaunt gale
#

Ya but its clearly not already complete or there’d be certification announced for it

#

Right?

#

Also will doing AI red teamer path teach how to program AI?

#

I know it will help python

alpine pumice
#

Not necessarily, there are paths that don't have certs already.

alpine pumice
#

I don't recall it saying anything about programming but you can see the overview of each module.

gaunt gale
#

Python skills are required for AI path

rose onyx
#

Even when a job role path has been made complete, they still take a while to announce a cert. That gives them time to clean up the path if need be.

gaunt gale
#

Its in requirements

alpine pumice
# gaunt gale Job role paths tho?

Just like all the other path/cert questions you asked, the answer is the same. No one knows, if they did know they couldn't say, you'll just have to wait and see.

gaunt gale
#

Ok

alpine pumice
terse dirge
#

Chat, hop on clash Royale

gaunt gale
#

Ya fair

rose onyx
alpine pumice
#

gas station pizza and gacha games, Ceald what is happening

#

what happened to the Ceald I know that would go deep dive kubernetes and learn it in 2 days just cuz

rose onyx
#

What happened to the ceald that was making a tui?

alpine pumice
#

i remember that

terse dirge
terse dirge
#

Also I'm not sure what to add to it

terse dirge
violet dew
terse dirge
violet dew
terse dirge
#

And I work as an intern for cyber outreach

terse dirge
#

I've made a soc setup and now I'm trying to figure out how arkime stores packet capture data at work because its JavaScript API sucks

violet dew
rose onyx
#

oapi-codegen has some new changes that I want to see if it'll help me get more done. So expect more soon. I'm working on 2 other projects as well that I need to get done before I can go back to api stuffs.

violet dew
#

Tho, I think I want aerospace engineering

#

Cuz cs is self learning

terse dirge
#

I've been writing the API in go cause it's fast kek

#

I already have my stack planned and everything already

#

Redis, Gin, and elasticsearch

rose onyx
#

Nice

terse dirge
#

Redis is just for caching and elasticsearch is the DB for arkime

rose onyx
#

I've been playing with the bloodhound api :3

terse dirge
#

Nice, you should write your own script that graphs active directory👀

stark blaze
#

What happened to the ceald that touched grass

rose onyx
#

I might, lots of things bh doesn't do, but it's a sane base for now

terse dirge
meager kernel
#

Touching grass is overrated

hasty breach
#

What is grass

rose onyx
lilac cipher
dusky jacinth
#

That’s definitely outta left field

stark knot
#

Hey anyone knownanything about the sonatyp nexus repository manager having problems stopping a task?

hoary nebula
meager kernel
#

Guys is it okay if I'm only interested in cybersec field and not in web dev and AI ML?
People in my college always gravitate towards those fields but idk much of web dev or AI (only what I've learned from HTB and THM)

gaunt gale
#

Can pro labs and academy get you good enough to do fortresses or endgames?

#

Like if you combine the two?

#

Is Synactiv the main fortress for web exploitation and how much will CWEE help with being able to do it?

#

Or CWEE + prolabs?

dusky jacinth
#

Learning about things like AI/ML and web dev is important though since those are absolutely massive fields that you will definitely cross paths with in your career

#

Doesn’t mean you have to be an expert in it by any means. My personal recommendation is find what interests you and pursue that for the time being and gather knowledge as you go

gaunt gale
#

Is there enough material between pro labs and academy to be able to start doing different endgames and fortresses?

#

And what material needs to be filled in separately?

#

I know endgames and fortresses are the hardest material on htb

#

Can pro labs alone get you hacker rank?

#

And are the hardest pro labs anywhere near as hard as endgames or fortresses?

#

I am wondering if its possible to get from CWEE to synactive somehow

dusky jacinth
#

Whoa brother

#

Slow down

alpine pumice
gaunt gale
alpine pumice
#

maybe search stuff too, someone may have asked before

terse dirge
#

Neither do fortresses and endgames don't exist anymore

gaunt gale
#

Ok

dusky jacinth
#

What were endgames?

#

Just like harder prolabs?

gaunt gale
#

Why do fortresses and endgames no longer exist?

#

Was no one doing them?

#

Well ok

green kite
#

endgames became mini prolabs IIRC

ornate ibex
#

endgames are now mini-prolabs

#

and fortress exist

gaunt gale
green kite
#

fortresses need a minimum rank

gaunt gale
#

Isn’t synactive a fortress?

#

Ok

green kite
#

or am I mistaken 🤔

ornate ibex
#

need rank iirc

#

hacker

vast mango
#

What time is it right now at you

green kite
#

As you level up, you gain certain perks and features. For example, Fortresses unlock at Hacker.

dusky jacinth
terse dirge
green kite
#

sup ceald

gaunt gale
#

What about to do solar pro lab?

terse dirge
#

Cheeto jumped on my bed

gaunt gale
#

That’s just web exploitation right?

terse dirge
gaunt gale
#

Does CWEE prepare you for solar?

green kite
#

Idk bro

#

I havent done it

gaunt gale
#

Ok

#

But you have done CWEE