#general
1 messages · Page 4 of 1
Start learning on Brilliant for free today: https://brilliant.org/fern. Our viewers get 20% off an annual premium subscription. It’s a great way to support our channel while building new skills (ad).
This is the story of the Minecraft scammer who hacked Twitter (or X) and Elon Musk.
Shoutout to the Cybercrime Magazine Podcast and their epis...
good video
because 1) there was no chance i had the command wrong and 2) one time i didn't redact everything and got a warning from the mods.
im not well versed with AD, if I was I would help
fr?
thanks thats very kind
yeah essentially
and you know the credentials are correct right?
which i've had countless people help me and nobody has found a fix and i suspect that i'm slowly starting to annoy this chat which would be fair lmao
yeah thats for sure. the command is right, config files are all set correctly, no variation of the command works, reinstalling updating and allat stuff doesn't fix the issue
yeah im just hypercooked
have you tried on non HTB machines
not really, one dude said it's probably the resolver which now that i think abt it it probably is
will do at some point appreciate the suggestion
yeah good chance its a DNS issue
I think you can try by connecting via IP rather than domain
Who do I need to reach out to about verification emails not going through
Need to speak to a person? Learn how to reach our support via HTB Labs.
golang
Any recommendations for ebook for video course for a beginner?
whats up gang
hello ferrow haxdaboxurs
Tired
Got college tomorrow
i seeee
Wby
Computer science
sweet
Nice
How's work?
pretty good!
Having fun?
yeah for the most part
Nice
What's your job if you don't mind me asking
i am blueteam T3 in a MDR team
That's pretty cool!
yeah! do you do any work or just college for now
In college, but have an internship
Hopefully I get a full time job someday
that's awesome
thats cool :)
Thnxxx
Good luck for your work!!
I should sleep rn, it's getting late
get a good sleep!
go.dev/play
hey guys does htb make blackfriday on gold annual subscription?
HTB has never sold any subscriptions at a discount on Black Friday.
sad, then ill go just with OSWE
If it isn't the big bad ol' bunny
W-what?
Is it possible to use HTB on a tablet device such as an iPad?
Is that directed at me?

whats good, identefied now XD
So it isn’t possible?
Well how am I meant to learn cyber security without access to educational sites?
can you confirm that this is how i can be a 10x engineer like you
how old r u
That’s rather personal.

what are u guys learning
No subway surfers on htb
Why are you bullying me for not having a PC…
I’m only trying to learn..
Theoretically, yes, you could connect to a VM via RDP with your iPad and then use HTB, or you could use PwnBox.
The experience isn't worth it
I’m sorry but that wasn’t English to me 😔
Better start on academy then
Yes I’m trying to use academy.
It won’t let me type in the Parrot OS terminal.
So I can’t even do the introduction.
do u even have a keyboard
I have a digital one not a physical one.
iPad + Magic Keyboard + rdp = perfect
Why can’t it just let me type with the digital keyboard on any mobile device..?
I don’t know
Okay well thanks for trying to help at least. That’s more than others have.
The virtual keyboard also takes up a lot of space
Yep had it happen myself. I went to bed and woke up and there were 10 of me
ok ok i was away for 1 minute
Insomniacreproduction
Okay well I suppose HTB just isn’t for me. :/
go vikings
Go home, you’re drunk
Close it and open it again
i am home
Anyone got experience with unify AP’s and inside coverage?
so golang was always the answer to being a 10x engineer
@green kite learning about OOP today
What’s that
Always has been
Jk jk
You’re not gonna get past 1x without it
Where are you learning?
boot.dev
It’s an issue where it doesn’t open the digital keyboard. it’s obviously not been made to be compatible with mobile devices which is honestly quite a major flaw.
i amma finish the mern stack thing then i will probs switch
It isn’t a flaw
oh it's really hard to develop bugs with golang. it just doesn't want to do that.
it wasn’t made for it
It’s either on mobile or I can’t do it at all.
don’t you have access to a computer? Internet cafe?
I’ve never seen an internet cafe in my whole life.
I don’t believe that’s a thing in my country..
cuz he is 12
Where are you from @still vault
What about a computer or laptop
php needs a mascot
What is your problem?
England.
Bro
It has. An elephpant
What stops you from accessing a computer? Even at school or something
oh i see
There's 669 internet cafes in London alone 🙂
i thouht it was related to a db thing
I have a laptop but it’s not a very high-tech device. It gets very hot within a minute and has poor battery life.
Not in London..
Have you tried using HTB at all on the laptop
You could try pwnbox on it
Then it’s just in your browser
I can’t exactly skip class and go to my local ICT class to hijack their computers to do unrelated work on a random website.
oh you’re in secondary
I would probably just not bother doing it whatsoever than use the laptop I hate using it.
Yes.
Haven’t used my laptop for probably over a year or two.
ask your ICT teacher honestly
Pwnbox is easy on your browser. I use it from time to time
The UK has 4.1 thousand public libraries as well
oxford library
Honestly thanks for the help but I honestly think it would be less hassle to have ChatGPT teach me..
I loved sitting in the central library in Manchester and watch people
There's 950 academic libraries
I highly recommend against it
Or anywhere in city center really
That seems very.. peculiar?
Man I miss Manchester
We’ve got computers in pretty much every library shouldn’t be an issue which
chat, MIT or Oxford
Yeh, was just commenting on the ways someone could have public internet access 🙂
School is overrated
Oxford is my choice but whether or not it’s an improvement I couldn’t really say.
Education is invaluable.
Maybe
isnt MIT number one school
I plan on taking A-Levels then moving to a degree-level apprenticeship in a cyber security position at a prestigious company.
so php has elephent python has snakes and go has gophers
but javascript doesnt have anything
Perfect
but javascript is the most used programming language in the world
Doesn’t have to be prestigious though
Avoid insurance and finance companies is my advice
For mental health
though some have cool cyber teams
It isn’t exactly prestigious but it’s a high-paying extremely-sort-for company.
Id gladly take a small firm that did specialised cyber research over Google
But that’s me
For me I only care about money.
if you're in it for the money, search another job
Why lol? If you’re wanting a job for any other reason then finances you’re not thinking correctly.
Unless you care about the money on a job level rather than a career level
IT is good money except it support haha
lmao
thats not how it works
otherwise we would have no teachers
Wrong
no it is not. javascript developers just spew the largest amount of nonsense re-inventing the same wheel again. it's not even near being the most used language by projects. C is still #1, and probably will be #1 even when we all have retired.
If I did not get paid for a job I would never work a day in my life lol. If you’re not looking for money why are you looking to work?
I thrive on JS hate
I live for it
python for life
there are people who actually develop software as a profession
craazy
You will not enjoy a 9/5 in a job that you don’t like I can guarantee that
then again you haven’t worked one
You’ll know when you do
I think javascript is a stupid language that was arroneously adopted as a standard. Too many things in it dont make sense
I've heard some people also have discipline called "engineering" which has something to do with software quality
hallicon with the beef
I absolutely love computers and cyber security. However, if it did not pay a minimum of 50k+ a year I would never even consider it as a career. I want to be earning significant amounts of money.
* regardless of the money is what I meant to add
let's test this. you gibe me a million, and I will tell you whether I enjoy my being 
I agree and don’t see an issue with that. what you said sounded like you’d take any job if it paid more
Within reason 
I mean if you offered me a job that was not absolutely horrific for 10x the money I would take it straight away lol.
Sorry, but how can I get help on an issue with a question problem inside a module?
Thanks alot
ok I propose we start with 100k euros per day, not 1 million 
I saw a guy who fixes trailer houses who makes 900k per year
Yeah factoring realism in lol 10x is a lot
I’d clean mirrors with my bare hands for 1 million
handy people get payed a lot
Hi All
i need to update my card details in academy.hacthebox, how can i do that ?
technicians
You wouldn’t be doing a very good job if you were using your bare hands, I reckon you’d get fired relatively quickly.
Need some help? Learn how to reach the support team on Academy.
@west mirage 👆
thanks let me check
💯 if it was on the job description I’d take it in a heartbeat anyway
What about one of those people who has to dive into sewage tanks wearing diving helmets?
I’d do it
they won’t even need to give me goggles
That’s diabolical.
for 10x my present salary I'd go in without the diving suit
Nah you guys need to set your priorities straight this is not okay 😭
Ironically this wraps back to my point of money
There are some boring ass jobs in cyber I wouldn’t do for anything less than 2x of what I’m getting paid now (GRC) but thats personal, other people have their own tolerance thresholds
All I work with are powerpoints
I mean I guess I’ll have to invest in a PC to be able to use HTB. I suppose it’s a good idea since I’ll need to be able to use things like Linux if I want to secure an apprenticeship.
Today I figured out what's the initial investment for the AI capabilities for a Servicenow setup in on-premises. Apparently the answer is about 500k euros.
I was going to buy a PS5 but I suppose this is the better choice. :/
Hello everyone
Anyone knows if HTB are going to have a booth in Blackhat MEA ?
That sounds very boring…
You’re already ahead of me man I didn’t start taking cyber seriously until maybe 2nd year sixth form
Sometimes I go wild and use the forbidden form (a triangle!)
I’ve wanted to do cyber security since Year 9. I got a grade 9 in computer science on my mock GCSE paper.
Sounds rough
I’ve got a mark off 100% lol.
Good job
You know there are people who use rectangles in presentations. That's understandable. Then there are people who use circles. These people will never use the other form. And THEN. There are the triangle people. Fuck those. 
I found it cool but wasn’t realistically gunning for it
Thanks. I find the knowledge just sticks but GCSE computer science is not going to make me a penetration tester by any means.
When the text is so close to the edges but you’ve gotta put a triangle in anyway
What I'm practicing now is using arrows in my presentations. They are still kind of subtle to hint continuity in the plans. 
Please do not tell me you find entertainment in people using different shapes on their PowerPoints..
Bruh, fuck the people who use triangles 
let's normalize making a meeting an email
Triangles are amazing. Especially right-angled triangles. I love triangles. They’re good for all sorts of maths!
true
and let's stop having meetings about our emails
Today in a meeting I seconded a proposal to include an item in the agenda. 
People have meetings about emails?! How boring is work life??
this is why our pay is crap
Yeah you’re right and it doesn’t get better at a level either
The most they taught in the domain was the TCP/IP model when I was doing it
HOWEVER
I guess I’m just going to be learning from scratch when I do the degree apprenticeship..
some theory stuff sticks and I use it at work or for development
You're way more likely to exchange emails about a meeting than vice versa. HOWEVER the most moronic emails, the epic ones, sometimes get a meeting. 
Fundamentals are absolutely critical
Working sounds really sad.
this is usually the case
I already had a mid life crisis as a teenager because I realised I have to work for the next 45 years.
"erm new policy cybersecurity is rolling out" "meeting on this date at this time"
My favorite email from the last week is "we installed a licensed software, now the vendor wants money for it". That one has got so far 3 meetings.
45 minute meeting to discuss a less than 10 page document
Do the majority of people here work in IT-related fields?
Yes
most do yeah
I am a SOC Analyst
me too
Oh wow that’s a job I’m considering, do you recommend?
I love my job a lot
i'm a systems engineer
SOC is sec ops centre right?
I've been here for a year now and it doesn't feel like work
Yes
Okay just checking 😅
That's wonderful

I wish I could get a job like that too
Have you ever had a major security breach?
I like my job a lot because most problems can be solved with a strong sense of fundamentals and the ability to critically think
Every other day yeah
My customers are global
Oh 😭
The chances are high as long as you don't use triangles in your presentations.
same
I’m going to make sure I add triangles in every presentation I make from now on.
Even if it’s just one coloured to the background in a corner.
It’ll be there.
Yes but everyone will think you are a moron 
I’ll hide them on every slide 👀
Do you do IR too
But that Servicenow presentation, seriously. Just stating "500k euros" means I just now have justification to shut down on-premises operation. That's not bad, and definitely exciting. 
Yes
Rough
Eh
Okay, I am going to go. Thanks for all the assistance, HTB community members and staff. I will take on board the advice in which has been shared with me today and use it to further my future progression to increase my chances of success in an ever-evolving cyber-globe. Have a good evening, everyone.
I do mah job
I prefer on prem everything
i can't begin to tell you how bad these vendors are at handling cloud based shit
it's awful
Some of my work involves IR but not very frequently
openshift
maybe your case isn't the same, but our vendors suck
lengthy processes sometimes work in your favour
Let's just say Servicenow has probably 0 competent software engineers globally in their whole organization, and I'm probably correct on that. Their setup will suck everywhere - on-premises or cloud. But, if it sucks and costs a fraction somewhere, ...
Pay me a million and I’m rewriting servicenow in Go
i'm glad we don't use that
and honestly i'm not too familiar with it, i've seen the ticketing system portion of it
😩
just because a job exists called "service now trainer"
if a ticketing system requires someone to provide specialized training, please don't bring it into my environment
though i know it does more than just that
Hopefully clankers can do the menial stuff for us
we're rolling out AI features in our EHR systems now
Will they help
idk i'm not apart of the integration, i guess we'll hear the doctors opinions on it
I'm glad within the EU most HR processes are legally classified as high risk use case and we will never be using AI for that stuff 
ChatGapetto
we have a lot of people asking to unblock chatgpt
there's supposed to be a meeting about it
We discussed today buying chatgpt subscriptions to certain groups of people
@grok is this true?
Mostly for the deep research feature
When you have that it's pointless to have for example Gartner subscription
Ai is coming for all of us...
i'm gonna suggest we deploy on prem AI servers
(literally just so i can be the one to mess with them)
We just green-lit the use of certain Azure AI services today 
@woeful cosmos
we're supposed to be enabling copilot features in the next few months
i'm not sure what security team is doing, i think they're stalling it
If they are competent they are discussing about the use of security labels.
they rolled those out a few months ago
Oh they are at least semi-competent
In that case they are finalizing the usage policy settings.
competent? yeah man that's debatable
Well, as in "at least reads the Microsoft's recommendations and tries to follow them"
i feel like i'm talking to GRC people
We made a Powerpoint about this 
Mostly it has rectangles.
Soothing shades of blue
hi, i have a quick question about reverse shells
They do, theyare just messing with you 
how do you guys do to get reverse shells? Do you all have a c2 server?
c2 is one way, but there are more primitive ways like netcat. its quite an expansive area, i suggest you do some googling and come back with detailed questions :)
ok sure i'll come back
For HTB I don’t use a c2
for HTB i use nc with the vpn it's fine
In a real world environment or where evasion is needed than sure I would use a c2
Otherwise just nc
what i was asking is, if it's outside your network, then how can you reach the attacking machine from the target to send the reverse shell?
also thx for the answer
Do you know why I am not able to post on prolabs offshore?
if the target is outside of your network?
pivoting + tunneling
thx. I'm gonna do some research, i don't understand everything here
anything?
Alright I just finished emailing the entire Candidate assessment center for the NYPD telling them why I am not crazy and that I can prove it. crossing my fingers that they reply back.
lmao wtf
It's apparently been noted on Reddit that the whole process is full of corruption. 
that backstory has to be so good
we need to document this in like those reality tv clips where people give their backdrop and then it cuts into others shit talking you
well it's not that good, i just failed my psych because a hateful shrink lady wanted to fail me over something I did 4 years ago.
did you already know the shrink?
definitely
make it a show
No, It really wasn't that big, I asked this woman at work for a hookup then got fired for it, and now I'm a villain.
But I'm not crazy for her to fail me, and that happened like 4 years ago in 2021
sorry i'm not english, by "a hookup" you mean going out with her?
no it means sleeping with her
I even have a girlfriend, but I dont want the NYPD to know that
lmao that would be worse, you would have to face hell
She looked and sounded exactly like a feminist
crazy man
this type of "feminist" only appeared in my country a few months/a year back
this is madness
They sent me an email a week after I took the test but I didn't see it until months later that I failed the eval lol
this is insane that just for a hookup a woman can fail you on psych eval
i mean this could be way worse than you not getting the job
but still
and in it they said I had to go see a licensed shrink and write a statement to convince them I'm not crazy
I'm glad I have all moomins in the valley 
Many people have failed this "psych" test and appealed then passed
wow, so you mean to say that most people are crazy?
it's good to not feel so alone anymore
But it's okay if they dont give me another shot then I'll just go back to hacking.
Well you know a lot of police officers tend to be abusive
what were you doing this for?
hallicon are yhou american
trying to become a cop
they don't have NYPD in ireland i think
yes
How tf does APPEALING a psych test change the result 
which state
Idk 
new york
What kind of Mickey Mouse test is that
most of the cops they hire end up having a lot of anger issues and so on.
335 years old
I'm 31
dwarfs do live long
and you had a career before that?
I think the whole NYPD is just silly
career? I mean I wasn't working for like 4 years
oh
honestly the best years of me life
that's the hell of a long time
yeah I made a lot of money at my old job
yeah yesterday there was a shooting
pretty wild
I actually want to make detective if I could
so i should learn c to make real software
it would be cool to be a hacker detective 
did you already look at how long it will be and what it takes?
learn c+++
nope 
you mean they added a new one?
dude that sounds like a bigger headache
lmao that's my kind of anticipation
kinda want to do zig ngl
no i ment c++
2 '+' s is a headache, but 3 '+'s that's a catastrophe
typo
It's very hard to learn that language
no typo, full-on new language
i have no idea how the guy who made Ghostty made Ghostty
ghostty is goated
Time to get ready for work
I was trying to read a bit of documentation about reverse shells but can't find some good/complete docs, where do you guys usually go for such docs?
also i found some info, here was my question. Suppose i'm on a CTF and trying to get a reverse shell from a target machine but my machine is a on a different network, hidden behinf the NAT of my router. If i try to send the shell to my machine's IP, the router will be the one to get it, what can i do to send it to my machine directly?The options i saw are
-port forwarding (i dont have the hand on my router)
-using a VPS as a C2 server
-NAT traversal with ngrok/chisel (i will dig into this option as i don't exactly know how this would work
-use serveorev (definitely not a durable option but an option nonetheless).
Does my question make sense?
thank you, i was asking more about understanding how revshells work, not how to make one, but yeah this is a good one though
i dont understand the left exp bar, can someone explain me why its always at 0%?
guys, what to do if htb module doesn't want to eat my answer
thanks
you have to complete active content
retired machines etc do not count towards rank progress
im doing for weeks only active machines 😄
did just a single retired
hmm, the rank should go up in % if its active
np mate, just wanted to check if its normal 😄
could be a new bug or because of the season switch
maybe a mod who knows read this
hey
I can help with this
It won't progress progress towards pro hacker until you reach the hacker level of content solved
You're at 19% I think hacker rank is 20% or 25%
As machines retire, your total percentage will drop as those machines aren't worth points anymore
ohh okay, i was nearly a yr inactive
That'll do it
so i may have completely reset
Das prolly true
You won't lose your rank though 🙂
That's permanently the highest achieved
yeah, gonna work on my pro hacker rank 😄
do challenges also contribute to rank?
yes
Yes they do
but very small percentage
It's cuz there's a lot
@knotty osprey im chudding out
yeah

this makes more sense
I was confused on how you were doing active machines without % going up
yeah
yeah
I agree tbh
fo sho


@lilac cipher
@🇿 🇶 🇦
lmao so npm developer got spear phished: https://www.bleepingcomputer.com/news/security/hackers-hijack-npm-packages-with-2-billion-weekly-downloads-in-supply-chain-attack/
rekt
I am going to the market soon but afterwards I will be doing a good amount of HTB
if I can get it, will a job as a junior network admin help me with hack the box if they train me in networking, linux, security, windows, other tools, etc?
and if so how much?
I know the answer is of course and someone at 2600 said network admins and sysadmins are generally hackers
but ya
which kind of makes sense to me
what do you guys think?
network admins are not hackers
not 100% of the time but a lot of the time
a large percentage of the time
no ping very busy
more often they are than in other non-cybersec professions according to the guy I talked to, or sysadmins generally are
the guy I talked to had years of experience at data center
I just want a second opinion on this
ok
@zealous charm
I'm asking because I may have a part time network admin job with on-the-job paid training involved
at a university near me
@ 🇱 🇴 🇸 🇪 🇷
Update 2fa credentials?
not my university (I already graduated) a different one
easy to fool an end user
hacking wasn't always a profession and the term originates from MIT model railway club
hacking also means tinkering
actually it originates from the noise my dog used to make in the middle of the night
True
Ill hack you into pieces
come then
Parries
that's the original meaning, technical creativity
sword or axe user
nope
Nah, this isn't from any show or anything a blacksmith made this
cool
Nope
no one can help
Go do something better than discord yapping
Omg @torn cedar
NICE
anti cupido
you're probably not going to learn "hacking" as it is applied in the infosec industry there but you can gain basic computing skills which can lay down the foundations for such things
ya don't have job yet but I'm trying to get it
i like to think im vulnerable, specially when the gf has had a few drinks
But we have no clue how this would have occured on your host. The question you're asking is literally the purpose of my entire career.
There's a thousand ways to do this
but if I can get that job, will I learn a lot of active directory, linux, windows, etc, enough to have a foundation to do hack the box academy more easily?
Use Google
bro keeps asking questions haha
Let me try command injections on you 
how much will the underlying foundational skills help me with hack the box academy if I am working with AD, windows, linux, networking, security, etc?
pikachu
like on a scale of 1-10
11
You should understand how files and devices work
I have CCNA and A+ and I did infosec foundations and I do understand that stuff but I think this job will help me understand it far better
I unfortunately don't have the time to explain the mechanics of the NTFS file system and SSDs
learning on the job is always better
ok
most of those academy paths start with that, introduction to linux and python programming etc
No
melon i will squeeze your melons @lilac cipher
I know I completed infosec foundations, CCNA, and A+ but I think this job will get me a lot more experience with actually doing networking, windows, linux, etc.
so I'm thinking it might be a better fit
since I learn better hands on
It do be like that
so I'm wondering if the extra hands on training will help me with hack the box a lot
Nobody gonna hold your hand
It's a specialized field, understanding fundamentals is crucial
it
I only hold @hoary nebula's hand
keeps the competition fierce
ok thanks
No it doesn't
I'm not in competition with anyone lol
wasn't intended to be literal
you dont need fundamentals, all you need is a sense of curiosity and to know how to google things
How to google?
That, in and of itself, is a fundamental skill though 
a fundamental, not fundamentalS
Brah
SEMANTICS BEATS SEMANTICS
BRAH
You have a remote assistant application executing on login
It was me
they don't want you to know this one weird trick to get any job
You need to remove the registry keys and scheduled tasks associated with that executable.
Didn't like the way you had your desktop organised
No longer loser. I am lord of the 8 piece bucket now.

I know that was the best time for me to reorganize your desktop since i wasn't bothering you

kfc
Youll always be a loser after my own heart
turn off your monitor 
ayo dont leak our deal
No one will be able to remotely control your PC without internet access.
That needs done ASAP
Also, any credentials stored on the host or used in web browser are likely compromised.
You need to reset all of them.
@lilac cipher has a bluetooth dongle connected to his device
I'm not kidding.
@frigid mountain i understand
I have no clue about your Google drive files
hi not laughing im paint
thanks dad
@zealous charm here is some ancient wisdom for you today:
In Emptiness exists good but no evil.
Wisdom is Existence.
Principle is Existence.
The Way is Existence.
The Mind is Emptiness.
Twelfth Day of the Fifth Moon, Second Year of Shoho
Shinmen Musashi
i put the PA in paint
Ill overflow your int
my int is mt
my intellect is main tank
mt >>> sounds like empty
im a parry master
idk it worked in my head
Too bad I’m not proficient in wisdom
i'll reverse your linked list
omg
Ohhhh yeah i got it
Ill traverse your binary tree
😱
what if they are non binary
by splicing or the reverse method
merica
its not what it looks like
its even more relaxing to have your own house with AC set to 68 and blackout curtains
i have to get some
this summer was brutal
Mosquitos are my enemy
Same. Where they bite me it swells up pretty badly and my whole body itches, not just the bite.
Wtf me too
Whats Rust
Iron that has oxidised
(a programming language)
Comparable to C/C++.. if they could fit in to their suits for the party
(Rust is also a low level language, like C/C++)
is that business with htb changing their subscription model still a thing?
Yes
Well, no, not our model per say to such an extent
But removing VIP, and prices being increased in line with inflation and cost increases
You can find all the information about it here https://www.hackthebox.com/blog/htb-labs-pricing-update-2025
cool, I am making changes to my subscription now and was wondering if i should just go ahead and do vip+ because I had heard vip would no longer be supported
discord being wonky moment
Sure is
Lel
hmm

We're so back
those compromised npm packages were revoked pretty quickly
hasnt kept me from joking tho
wtf
All roles vanished for a bit
I couldn't post in here temporarily, it just kept sending me to modules
Same happened in other servers, all roles vanished temporarily
Web client is working again now
Oh, nope that's broken again
Loads of 404 errors on API routes
I just got a bunch of messages like my desktop went offline
Discord is aware of the issue and apparently the situation worsened.
Indeedily doodily
House alarm is going off for now reason
Skynet has launched I guess, RIP
here's a question, what attack would be able to take down a service like discord?
npm i
👆
Best guess yeah.. there was a recent large supply chain attack targetting popular modules
Most likely Discord employed some mitigations / safeguards which broke shit
wouldn't be surprised
John wammy already with the vid out
Discord absolutely had some problems just now lol
Update - Clients are able to connect again and send/receive messages. We're still seeing degradation with voice.
Yes, web UI is functional again
but still many failing API endpoints
discord down it’s time to sleep
Time to hack
still works for me though... well sh**
Just hit the scan button on nessus
It's fine, you become proficient enough to put down the sword and gain a desire to own a farm and grow vegetables
It's not possible for someone to have remote access to a host with no internet
So rest assured a human isn't doing it
But this isn't what malware does either.
Why would it use the mouse?
And you have the network adapters disabled?
Is this a laptop
Or a desktop
Do you have an external mouse or just the track pad
Turn off the track pad and unplug/turn off any mouse
This is to troubleshoot whether or not you have a wonky mouse
If it stops moving around and doing stuff, turn them on one at a time and watch them
Not really
Just means we have to look elsewhere
Sounds good
Part of cybersecurity is learning troubleshooting logic
Let's swap to dms cuz
This is a public server lol
hi htb how are ya all
Good morning
mornin
Dude people be stealing from Autozone
like how you gonna steal a 37 dollar coolant you have to be jobless for that
Because they don't know the trick to buy the non premixed coolant. Mix it 50/50 with distilled water and fo half the price it can make twice as much.
You're welcome!
😂
Hello, I wanted to join the AI Red Teaming CTF starting the day after tomorrow, but it looks like the team slots filled up without me noticing 🙁
Is there anyone who has a spot on their team? I plan to work on it for about two hours a day, but I'm a complete beginner at AIRT.
@zenith pine show yourself
🙂
Heloooo
John Hammond posted a video that wasn't 40 minutes. The npm hack must have been a big deal
for many days now, this mouse has eated the food off my trap
tonight... that's not gonna happen
yes cus i worked over hours today
and probably will be this week
💀
yeahhhh, i still cannot get why they only stole 5 cents
NO FUCKING WAY THE LITTLE SHIT DIDN'T WAIT HE ATE EGG I LEFT ON THE TRAP
okay
tomorrow the little shit is gonna die
he cleaned it 😭

lol npm haxxed
ironically I installed a fuck ton of npm packages for the first time yesterday, before I heard
what happened
why cant npm developers be a little careful man
i mean they are developers arent they supposed to not fall for phishing
i mean, it was a phishing link
JavaScript moment

i thought packages owners are the ones that fell for it
this is literally how elderly people get scammed
@violet dew IM TAKING SHOTS OF RED 40 TO HELP ME GET DISABILITY CHECKS
The first time I used it was yesterday
I thought it is free?
Excellent strat
I also think you should show up to your disability interview completely exhausted or otherwise out of it
Good luck homie
Thats only one of many that have been found who knows how many more are out there that are hacked
Bound be a few ten thousand
what was it before?
yup
guys help why do I not feel tired or like sleeping but my eyes say I do.
No more screens
Knock off digimon
3 mosquitoes dead tonight...this isn't normal where are they coming from
mosquito land
Today was a long day chat
I had gas station pizza for dinner:D
It was good
Gas station pizza is underrated chat, easily an A tier pizza
Obviously deep dish and ny style are S tier
Do you guys think it's okay to use writeups to solve easy machines?
like it hasn't been a long time since i learned bug bounty and pentesting
but i feel lost
but when i see the start of the writeup i can advance a little bit on my own
And when I read the exploit part I actually understand it, it’s not like I have no clue what it does.
But I feel uncomfortable cuz I'm not sure if it's okay and a good way to do it at his stage :((
Read this
I just finished reading it!
Thanks!
It makes me more motivated now 😅
Is the AI red teamer path going to take until the end of the year to complete?
I don't think they will tell you. If they put a date out there and something happens and they miss it people would get mad.
I'm not even sure if they're announcing new modules for it.
Ya but its clearly not already complete or there’d be certification announced for it
Right?
Also will doing AI red teamer path teach how to program AI?
I know it will help python
Not necessarily, there are paths that don't have certs already.
Job role paths tho?
I don't recall it saying anything about programming but you can see the overview of each module.
Python skills are required for AI path
Even when a job role path has been made complete, they still take a while to announce a cert. That gives them time to clean up the path if need be.
Its in requirements
Ah I see
Just like all the other path/cert questions you asked, the answer is the same. No one knows, if they did know they couldn't say, you'll just have to wait and see.
Ok
If i had to guess, I would guess a higher level blue cert is coming at some point, pure speculation on my part based on this image. https://cdn.discordapp.com/attachments/1232354387288920064/1405607923245383900/htb_paths.jpg?ex=68c06763&is=68bf15e3&hm=76d9208871ad8dc6a9939452d64c45afbe7d887de61e214b31b583089884fa6f&
Chat, hop on clash Royale
Ya fair
No
gas station pizza and gacha games, Ceald what is happening
what happened to the Ceald I know that would go deep dive kubernetes and learn it in 2 days just cuz
What happened to the ceald that was making a tui?
i remember that
Yes
I'm too tired from work and college vro
Also I'm not sure what to add to it
Work happened, I do too much
I wanna rot max now
What do you study? Computer science?
Cyber security
Oh cool! Masters?
And I work as an intern for cyber outreach
No, associates
I've made a soc setup and now I'm trying to figure out how arkime stores packet capture data at work because its JavaScript API sucks
I see. I wanna study bachelor of CS in Belgium next year.
oapi-codegen has some new changes that I want to see if it'll help me get more done. So expect more soon. I'm working on 2 other projects as well that I need to get done before I can go back to api stuffs.
Good luck
Nice
I've been writing the API in go cause it's fast 
I already have my stack planned and everything already
Redis, Gin, and elasticsearch
Nice
Redis is just for caching and elasticsearch is the DB for arkime
I've been playing with the bloodhound api :3
Nice, you should write your own script that graphs active directory👀
I might, lots of things bh doesn't do, but it's a sane base for now
I haven't had the time or energy 
Touching grass is overrated
What is grass
If you have to ask you can't afford it.
GubarzHound? 👀
That’s definitely outta left field
Hey anyone knownanything about the sonatyp nexus repository manager having problems stopping a task?

Guys is it okay if I'm only interested in cybersec field and not in web dev and AI ML?
People in my college always gravitate towards those fields but idk much of web dev or AI (only what I've learned from HTB and THM)
Can pro labs and academy get you good enough to do fortresses or endgames?
Like if you combine the two?
Is Synactiv the main fortress for web exploitation and how much will CWEE help with being able to do it?
Or CWEE + prolabs?
You can be into whatever you want. You’ll dip your toes into all sorts of tech knowledge, but you’ll find a niche within cyber sec since it’s so vast
Learning about things like AI/ML and web dev is important though since those are absolutely massive fields that you will definitely cross paths with in your career
Doesn’t mean you have to be an expert in it by any means. My personal recommendation is find what interests you and pursue that for the time being and gather knowledge as you go
Is there enough material between pro labs and academy to be able to start doing different endgames and fortresses?
And what material needs to be filled in separately?
I know endgames and fortresses are the hardest material on htb
Can pro labs alone get you hacker rank?
And are the hardest pro labs anywhere near as hard as endgames or fortresses?
I am wondering if its possible to get from CWEE to synactive somehow
There's a #careers-and-certs channel
Ok I’ll ask there
maybe search stuff too, someone may have asked before
Prolabs don't count towards rank
Neither do fortresses and endgames don't exist anymore
Ok
endgames became mini prolabs IIRC
Ok got it
fortresses need a minimum rank
or am I mistaken 🤔
What time is it right now at you
As you level up, you gain certain perks and features. For example, Fortresses unlock at Hacker.
Gotcha
Almost 11pm
sup ceald
What about to do solar pro lab?
Cheeto jumped on my bed
That’s just web exploitation right?
Not much, how about you?
Does CWEE prepare you for solar?


