#general
1 messages ยท Page 129 of 1
true
true true
2k plus perl script btw https://android.googlesource.com/kernel/omap/+/glass-omap-xrr02/scripts/get_maintainer.pl
back in those days parsing input through bash was considered a good idea
An old friend who I hadn't spoken to in over a decade hit mne up the other day
We setup an IRC server together for a thing
Was fun
Weekend, when? 
mIRC?
irssi user here
I had a clone-bot script I wrote in mIRC, which created a functional IRC client with sockets within the mIRC scripting language, and let you run hoards of bots for... things
Honestly it was only ever used to crash the IRC server of our shitty ISP at the time when they were being douches
Sounds about right
I've never held a professional position in security in my life
I'm a breaker and maker
Still to this day i find the linux kernel dev ecosystem sooo complicated to understand
the scientist
Funny how that goes for perspective
or rather researcher
Back in those days they didn't have github
svn
I'm having flashbacks to svn and mercurial
svn is pure gold
๐คฎ
version control is for weak people
53-feature-test-branch-.zip
mercurial is a bag of crap painted brown, with the word "crap" painted on it
but it's what we had to use
Im not talking about the scm software more of the dev process its just all done over email and stuff
Diffs being sent through emails
same ๐คฃ
Made me think of p2p file sharing mIRC days. So much chaos.
You legit can get certified into being able to submit to the Linux kernel
IRC was very good fun
(i assume)
Because to me it seems you need a whole degree for that

certified by who
linux foundation?
Im just talking in general
I mean, anyone can contribute
Because of how complex it is
When i don't have my pull request feature i panic
I've never played with it honestly
but, well.. it's hard not to see the monthly flaying
It's a rabbit hole init self lol
except the sanctioned countries
For me at least
mmm
Bro you're a mod ๐
reading the source code of Linux kernel 2.4 was a bad idea and I still have regrets
Don't bring politics into this
comments were funny tho
And now Anthropic is trying to effect OpenVPN2 by fixing its single threaded structure which processes network and control, wave its magic wand and make it multithreaded
This is going to be hilarious, scary, impressive, or all three
the issues tab on linux kernals github is hidden cause of spam
How do you know 
Because I'm asking it to
Oh
did bro just vibe code a next generation state of the art technology
I just got it going while I watch TV
what if it works badly enough to ship to prod
Gpl3?
anyone but richard stallman
GPL2
iT's GnU/lInUX
Yes every open gpl license comes with a free copy of richard stallman
GNU + LINUX***** ***
actually it depends on what the distro is
not every linux uses gnu
alpine for example
who uses alpine?
Ok, it's quoting 8 weeks for the work
Next thing it figures it out and youll be having an implementation meeting with the infra team to improve openvpn on htb 
Start the clock.... NOW
you for real now?
that doesn't prove anything
Naaah, I'm not gonna stomp in and go "INSTALL THIS BINARY, IT DOES FIX STUFF IT DOES"
They are much more talented than I
at the end of the day i use arch btw so my opinion is better
hi
yes
I think anyone with 100+ k messages in this server will be able to have results for every 100 top most english words used
i'm scared
containers sir
ya ok but not use use
Sounding like a true manager 
bro its confirmed one message above
253k
Letting go is hard, even when you have full trust
JFC ok calm down Sonnet
trust rimes with rust and that's just wrong
0xdf gonna dm you telling you that you're overloading anthropics servers xd
Hahah
I looked at my spend over this year the other day
Those fun side projects add up
I have no words
this is my job tbf
"no space left on device"
lol
told ya ๐คฃ
but i have enough space for many files
You have a whole rack
yes
When will you get another one
Abd then become official partner for hetzner in canada
what is that?
when time is no longer free
goblin check this out hXXps://vibe-coded.lol/
i use KVM for everything am i insane ?
Hahhahaha
It's so accurate
Sonnet is 71% of the way through its 8 week plan
I want to look at the diff, but I can't peek until it says it's done
To be clear, this will never see the light of day
This is a brain burp taking corporeal form
Yes, I like noodles.
๐ฆ
Iโve never seen so many phonies as I have on LinkedIn, talkin bout how theyโre a top voice in information security and never touched a terminal
Donโt make me tap the sign: โIf you donโt do it because you love the field, then kick rocks to anotherโ
Wow elastic is such a POS. I hate the docs for it
What're you struggling with?
Just finding a premade docker compose that actually works lmao
And stop the clock, it says it finished at 2039
Best solution for self hosted is ECK on K8s tbh
Under docker alone I had sooo many issues years ago
But understandably just for a quick instance Docker is well
the choice
any SE gurus here?
Always found their docs pretty good, with the exception of when sometimes a feature would be deprecated / replaced, like rollup indicies, yet the replacement didn't yet have parity with the replaced feature for ease of use
i have my first Inperson SE engage,ent and would love tips
Sure it WORKED, but with greater effort, and nowhere near as well documented flows
Uhh I don't personally, but happy to listen and I can pass it on
Friend request sent
Ok, I'm not even going to bother to take bets on whether this will compile or not first try ๐คฃ
Ya, unfortunately our kubernetes cluster isn't up anymore.
Hey, i just created a bash script to pull, download and convert videos from youtube, anyone up to give me some reviews?
Chatgpt Will
Already did, I just wanted some human reviews
Nah I'm good
Buy YouTube premium
How can I extract the audio for my DJ sets?
Dj Lo Fidelity
DJ Snap Crackle Pop
can you change monkey pfp to some other
this one is
idk i feel stupid when i look at it
it is on youtube?
I could but i won't

How do you think i feel?
yes all top quality DJ MP3 come from YT rip obvi

you use linux?
if you do i might be able to help
ayo
Echoesof
hi
Hi
where can I ask for help regarding an Academy module? The machine never spawns. ive been like this for 15 minutes
Need some help? Learn how to reach the support team on Academy.
I'm at chitchat
thanks, im already in charge. But ill keep it in mind
That's where you go for help regarding that kind of issue
Hi I just ate a shit ton of Japanese food
Now yappanesse
I just updated wazuh to the latest version and all my agents
wazuh 4.14.0 just dropped
Impacket....update?!?
ntlmrelayx.py, turning it into a versatile relay operator. Security researchers can now directly serve SCCM Management Points and Distribution Points, enabling the enrollment of rogue clients to extract secret policies or scour packages for sensitive data.
A new RPC listener and EPM bootstrapper simplify pivots from printer bugs to ADCS exploitation, condensing multi-step attacks into single commands.
๐ง
What in the pasta
Enjoying myself in the VC
Que pedo?
Que onda
Elmonstro + mode agent en action !
Zap zap 
Wsssps get in vc
Say wassssps
@supple plume look el monstro
Ok
Wsps what the hell is this
Its not my Ellll monstroooo
๐ฆ
Yo where is the pfp

๐
guys i need quick help in HTB room, in Creepy Crawlies | Information Gather - Web Edition Module, i can't see the target button and on the example domain i can't open that in my browser too, so how am i supposed to ans the question?
Take a cinammon bath
It's good for luck
This is a serious answer
I take cinammon baths once every full moon and also new moon
I will also dance the zeibekiko before Linux boxes
Cinnamon desktop better than cinnamon bath
Linux mint users be like
Who is zeibeiko
#modules is a better spot to ask
Here good
Here be dragons
For the
and ๐ชค
Clique para saber mais ๐
Yes I live in the tapioca country
What is that
It's like a girlfriend
Does it fit in the mouse trap?
Yes
I would fall into that trap, if tapioca was the bait to be fair
This is tapioca
You smoke that?
Yesn't
Discgusting
So you don't like Nutella?
I love it
With strawberries and mint?
Probably yes
But no tapioca?
Honestly I don't know
I will give up pentesting and open a tapioca place in Texas
Petals' Tapioca
What's the taste of tapioca?
Which one
Think about bread, but removes the gluten, now remembers you are a god and bread is for the peasents, thus you eat tapioca
be like that
trans my gender range my rover
rawr
Sandy which
Witch of sand
The sand queen
Forgot about it, but it actually compiled lol
breathe the pressure
Maybe it contracted rabies
The impact was so so so so big that I even forgot how to put sentences together
Wen I was returning home tday there was some big ass dog that took up the entire gangway and stared at me the whole time and I had to fking jump over it to get out ๐ญ
it happens
Just start another exegol instance
doggo
doggo
Dogy
Yippee finally got elk set up
Now comes the fun part, code review
When I left home an hour ago to get an Uber....I had just turned on Tremors!
When I returned home....I observed this playing on my desktop and I'm starting to wonder.....what broke in the universe and which of the infinite timelines I am now on!?!
They did show a castle....it looked plastic but it was a castle
Gotta be it! Cuz the hairpieces lol
lol
lol
Is it a good idea or does it make sense to block smtp connections from certain countries using geoip blocking?
what?
Why
To block spam from certain countries
Real phishing is probably happening from US to US anyway
Probably a friend of a friend is hacking you
Deny traffic from specific IP ranges 
I mean if you know where you'll be accepting mail from, then only open to those IPs
Not smtp submission
But if you're accepting mail to SMTP and relaying it without auth and headers
Then you got a problem
yes
I've got all that taken care of. I'm just wondering if it makes sense to block certain countries entirely
like china for example
do you do business with them?
No
SMTP is the outgoing mailserver though
over 25
mb mb
np
25 TiB?
Geo-IP blocking is a best guess during good times
its just companies making a best guess
if you dont have any operational reason to have chinese (or any xyz country) AS communicate to your network then you dont have too allow it
I mean.. so long as you have it configured to authenticate mail being relayed is actually authentic, then no need
We use geo fencing. Not full proof but certainly not a bad idea either
i have my IP's geolocate to Antartica and Hell, MI
Hell
bc why not
Hell, MI
pad1ryoshi
๐ณ
Not that much of a fan, many of the difficulties there are artificial asf
Author really removed the SIDs from each OU
I'm almost finishing
to force manual enum
That's what she said
cause fun fact, Geo-IP data is user-specificable
Here's my IP: 257.257.256.512
Geolocate that
yay
lol
Now find me
nice
oooo nice calc
this is like
No, all I see is cats
the most minor finding ever
I see clouds
what
I have an Exim4 server, firewalled, and no one can talk to it, but my jumpbox IP. I run proxmox mail gateway in front of it, which relays mail to it. PMG is hardened. In my PMG tracking center, I see people trying to connect to my server over 25 and try to send mail and they fail. I want to block the repeat offenders. I don't like seeing that in my activity. I dunno. I've been running mail server for 8+ years now. Secure as far as I know.
ty
WHY DIDNT MY PINGS WORK I WANTED TO GET REVENGE ON EVERYONE WHO MASS PINGED ME
CSRF depends so much of the context
Wrong server


CSRF can lead to RCE in some cases
Very specific CTF-ish cases
@carmine pecan you're on the hitlist
this one doesnt
Good
I usually only explore CSRF if the endpoint has some interesting functionality
the only reason why it even is a finding is because the app i'm testing is meant to be an internal app
I already reported some CSRFs that received informative because they had no impact, so now I try to choose carefully
Ah yes, CSRF, the nerdier, less cool brother of SSRF
still happens quite a bit
CSPT is the cool brother of CSRF
Ive not tried it myself, but you could see if fail2ban can integrate into the proxmox mail gateway and set conditions to automatically block
also back to crying over shitty security practices from massive companies
I've got fail2ban already setup for postfix on my mail gateway
What's your main language? Was reading your SSRF report 
My first valid CSRF was one I used to exploit a self-XSS
pt-br
'-'
pt-br means Hindi
I forgot about that SSRF report
I love Brazilians <3
Eu sou do sul, prefiro chimas
WHO PINGED ME NOW
single? ๐ณ
nunca tomei, รฉ bao mermo?
single?
bรฃo dmais
I got other Brazilians lined up, ayo? Calm down 
um dia eu experimento
braziiiuuuuuuuulllll
that's what she said
It's good that almost no one here understands our language
good indeed
Im from chile
I understand you guyss
sus

Look Portuguese is just a fancy word for spanish
no dont say that

Just applied for a Junior GRC Analyst position
Good, let's get HTB active 
GL mate
Anticupid

Sounds like an interesting position
yeah GRC is a good growth area of the industry
Yeah it's definitely been hyped up in the past year from what I've seen.
I'm on the Cybersecurity Advisory board for my alma mater and at our last meeting documentation and compliance was named by multiple local leaders as the area that new grads should know about
A war on drugs
๐ค๐ค๐ค๐ค
Hello
Zap

Zaps 
zapzap

Zaps 
Support The Show On Patreon!:
https://www.patreon.com/seculartalk
Subscribe to Krystal Kyle & Friends On Substack!:
https://krystalkyleandfriends.substack.com
Join our Discord!:
https://discord.gg/teyN4ce
Follow Kyle on Twitter:
http://www.twitter.com/kylekulinski
"The first time I ever really listened to Kyle Kulinskiโs show was in the ba...
Why
no France
Aaaaaa
Tu est franรงais
parlรฉ parlรฉ
Mais se pas posible
Awesome, now no one has to work in those horrible job sites
bojoure
Le fromage Saint-Nectaire d'Auvergne est du sperme d'รขnesse
No clue
No importe quoi
rule 5
We've been downgraded
why
To english
Some of my family is in France
๐ฎ
is zapzap your brother?
bagguete and paella?
good combo
very niceee
You are a spice remember
zap zap 
zap 
Good morning
You should sleep
You should too
I just woke up
I have been trying for a long time to sleep
its 6pm but ok i will go to bed
Read, then gym at 5
When do you even sleep
You slept during the day?
wtf
Evening, an hour or two
Oh damn, maybe cause of that
12:10PM
Bro that less than 5 hours
You are in the past
I woke up on my own before my alarm
No im in Europe
My alarm was for 5:30 AM
ahhhh
Then it would be AN
Still, in the past
AM
AM
Oh 24 hour format
00:00
24 is ..
24 hour format is difficult for me
24:00
25:12
its so good
12 hour seems easy
Kratos, do u do this daily or u woke up accidentally
23:99h
we should do time by what hour it is in the week
I usually sleep from 10 to 5
But today woke up on my own at 3:30
What do this mean
He means the starting of the week would be 00:00
Hmm, sounds fair. I was doing that during uni
Now, I became lazy ass
I assume job can be tough
114:14:15
no its monday
No Milk in the group please
Ok, no milk for you
Physically no, mentally tiring somedays. Gym is physically tiring
Ah fair enough
Yea gym is tiring as hell
Gym is not tiring for me, because I workout from home and do it Naked
I usually just take a nap of an hour after gym
so it's quite refreshing
Oh
mrpetals post form
Bruh isn't that uncomfortable
No not even a little
Mr Petals removes all his petals when working out
Naked chin ups all the way
Yea I could never workout naked
are u working out or making content for certain sites at this point
Funny thing is that when the first gym was formed in ancient Greece, the whole point was working out naked

I know
that's the thing
less laundry to do
The word gym (short for gymnasium) comes from gymnasia which means a place for naked workout
So yea makes sense
That you'd work out naked
Money and workout both obtained
๐ค๐

I'll probably go back to sleep for another hour
leave me space
i like the right side of the bed
๐งโโ๏ธ
ive skipped the gym the past two weeks i need to get back in
I sleep in the middle but alright
I'll cover you with my arm
ive been fuckin around in vr too much
mire cuddles yay
LMAO
Damn
Which VR game?
vrchat
What do you even do in that
im sorry to hear that
you look at ur model all day long and do "fantasies"
eh it's just an alternative social platform
Oh-
nothing you can't do on most other social platforms
VR dating? 
The difference being that it's VR
i dress us as elmo and stare at people that take the game serious
I think boiling it down to what degens get up to is kind of devaluing it
It goes farther than that, but yeah there are even posters that advertise apps for dating on vrc
or throw amongus vrchat lobbies by always accusing the kids as imposters
If I ever get a VR set, I'll try it out
kids are the funniest when they get mad about you accusing them, their voice peaks the mic
Bro, come here ๐ฅฒ
i cant believe children even get this level of technology
i grew up playing warcraft 2 lmao
imho 15 should be the youngest to be able to get on social platforms, as that's plenty of time to have potentially had normal socialization in the real world
15 is still pretty young
I grew up with League, I got better
someshit that happens in vr chat im too young to see and im 27 lmao
i think it does depend, truly, if the platform is KNOWN FOR dating, then yes 18 at a minimum
or even 25 if you want to argue on prefontal cortex development
i just destroyed all of my possessions because less is more โค๏ธ
im quitting tho its been messing with my vision
niiice
when you escape the vm into another vm 
Being strong means accepting that I won't get the root flag from this week's machine 
Next week is gonna be an easy linux machine ๐๐
no lie, makes me want pizza
ill maybe do that for dinner
OH MY GOD
Picked up this mic for the camera, as I'm helping brother out recording his wedding
Could not get them to work
Tried EVERYTHING (obviously not everything, there's an end to this), no joy
Was freaking out and about to order a replacement.. then I spotted it
A third little dust cover.. and behind it, another 3.5mm jack on the camera
the ACTUAL mic jack, instead of the trigger jack
Not really what I wanted to spend the last 30 minutes doing, looking through manuals for the mic, but not the camera lol
Idiot
But an idiot with a working lapel mic
ah the third option
No.
ok
How can you have guts for pfp and then even browse this shit
Remove your pfp
See my monkey pfp looks good now doesn't it
guts too has a softside
How does he express it
by wearing bear hoodies from amazon
Real
๐๐
Wassup frost
got some left over stew, protein cheese cake
and new bugs
๐
day 2 stew is the best
Nice
People saying i should play bf6
maybe after I wrap this last bug up
Buy BF6 for me too ๐ฅน
๐
Can someone post the htb bird meme
Btw what happened to the Steam XSS bug you found
You should play helldivers instead bro or arc raiders
The one where the bird is getting kicked out of the nest
Im going to shill my uni to buy subs your memes will directly result in sales
I've tried HD and it broke on the starting part
then i returned it
๐
homie is naked
Yes for me too :))
idk
Its like there's a tryhackme bird saying ill help you as long as you need
And then the htb bird kicks its chicks out of the nest and yells FLY
Lmao
THM and HTB should collaborate someday
Maybe
Banned
Wont happen
Bruh
Aww why not
Bbbbbrubrubrubruhhhh
Thm is an indian company htb is greek. One is a race to the bottom one cares about its users
Pretty sure THM is from London IIRC
They have different moralities
I didn't know HTB is greek, that's cool
But yea THM is introducing that AI thingy which is annoying
Im still waiting for HTB x Razer collab
You guys could make some great branded cases ngl
HTB X Monster when ????
Well I'd imagine every company will have some form of Ai at some point, but yeah alot of thm peeps left because of their Ai
Only if we do a deal with a defib supplier too Joey
Oof
Yea I transferred away from THM cause of that
I then moved to HTB full time
give me 6 months
And bought their subscriptions

I hope HTB doesn't introduce any AI chatbot kind of thing ๐๐๐
I personally wish to have a trackball mouse that glows with htb aesthetics bc trackballs are low key the best for spreadsheets and long haul workloads
There are three r's in the word stawbey
There are 2 Rs in the word three
oooo... like those oldschool big bastards?
Or with the trackball in the bottom
I like the logitech thumb balls
YES
I laughed at this while drinking coffee
Yes
ok so> monster x HTB and logitech x HTB cuz raizer scary
There's a custom HTB theme in Obsidian which I use
It's pretty cool
What flavor is the HTB monster
Hacker flavour....sweet sweat
Parakeet flavor
@lilac cipher busy pliz no ping to @lilac cipher
๐
we should talk behind zqa's back while hes gone
@ZQA GET OVER HERE
๐
I left Anthropic going on openvpn
it went nuts
and it still compiles
but now I have more code to review ๐
STOP....TRYING...TO...MAKE...SKYNET PLIZZZZ
Removing, it's too brutal
OpenVPN Multi-Threaded Crypto Operations - Project Summary
We analyzed OpenVPN's source code and discovered that its single-threaded event loop causes ~23 seconds of cumulative blocking when 150 concurrent clients perform key renegotiation (7.5s for key generation, 15s for certificate verification, 0.5s for CRL reloading), then implemented a complete multi-threaded solution comprising 1,800+ lines of new code (crypto_thread.c/h, auth_thread.c/h, ssl_crypto_thread.c) with POSIX thread pools, work queues, non-blocking result polling integrated into multi.c's event loop, build system support via --enable-crypto-threads in configure.ac, and runtime configuration options (--crypto-threads N), which eliminates key generation blocking entirely (7.5s โ <1ms = 99% improvement) achieving an overall 33% reduction in total blocking time, 60-75% improvement in latency spikes, and 80-90% reduction in packet loss for the 150-client scenario, along with 4,600+ lines of comprehensive documentation (BUILD-AND-TEST.md, README.crypto-threads.md, ANALYSIS-BLOCKING-OPERATIONS.md), successfully compiled and verified on Linux with pthread support, production-ready and backward compatible with simple configuration (add crypto-threads 4 to server config), though certificate verification remains synchronous due to architectural constraints in OpenVPN's TLS callback system.
I have nothing to eat before gym
It's still gross
those automated chat agents that have been around forever are a form of AI btw
False
My head hurts
oh noooo
Thank you sorry good
You mean the bots? Makes sense
the support chat bots? how are they ai
they are automated bots dictated by a preset logic that respond based on different queries
just because they aren't an LLM doesn't make them not AI
You guys should try https://gandalf.lakera.ai/ it's a lot of fun trying prompt injection techniques
I can't beat level 8
my buddy did though
You have to use unicode obfuscation with emojis
Thm will gaslight you
htb is so fucking good i just started this web hacking path
monster is gud gud gud
You feel like you know something but you dont really apply it unlike htb which is practical
yes
thats a good one, goodluck on your journey homie
thanks gang
ong
what does ong mean
on god
Offsec meanwhile will give you minimal documentation and expect you to do a lot of your own research whereas htb will just teach you all the things
oh nyeaaaahhh god
American slang
why no just og then
oh idk about that but my plan is to take oscp tho but befor that iโm thinking to do cpts as well
That is Original Gangster
๐คฃ๐คฃ๐คฃ๐คฃ๐คฃ๐คฃ
Solid plan
I wish i did cpts instead of being an offsec elitist and spending more time than i had to
i wish i started pentesting when i was in the womb so id have a job by now
uh
I am writing this down
wait

Oh dear
Ive been poppin boxes since i was just a twinkle in my daddys eye
ngl.. these changes actually look pretty legit
but NO way am I trusting it hahah
but I might do some local load testing
thats how skynet started
and look what happened to oconnor

Which one
the one killed in guatemala
that ended the whole universe
soon as 10:30 a.m hit the McDonaldโs workers shov all da breakfast up Dey ass
What?
whut
trying to get macas?
Breakfast is untill 10>30am
but you can eat burguers 24/7
well
atleast here
ohhhh
Is not like a drive randomly at 3am down the mountain and go 45 min into the main highway for a maccas
oooooooog
Iโm doing CJCA and ISC2โs CC concurrently atm, then I want to do another HTB ๐
Riiight
only doing CC cuz itโs free
can you drink beer on maccas there??
Nah, no alcohol in mcd here

634
60+ 3 + 4 + 2 =
5555 5555 5555 5555 09/76 009
lmao
And I'll see?
me naked
A WORLD OF PURE IMAGINATION
@sturdy thistle wants me in HTB, you want me in HTB, Emma wants me in HTB
@eternal mango any openings on your support team for US based? 
There is what there is, I don't run support ๐
New year coming up though
Keep eyes open through end of year early jan
WHUT....WE ARE GOING TO 2026? oh man....time flyesss
Oh wait
Does it help that I used to be on the Executive Support team? Handling 10 C level execs, + a bunch of SVP's.

do apply for global position
HR will take a look into CV and see good match

Worked Corporate, Warehouse, and Education IT.
Exec support team in corporate. Warehouse was more testing 4k laptops, Education is just a whole load of manual labot, but I love it
Apply
now
ok im apply
I did last time there was a support opening... or an opening of some sort, and I never even got any response back

I have to update my CV anyways after my education job contract ends. And I'll be annoying Emma in a weeks time
yewh
(joking!)
im a bad boy


๐คฃ
Oh, I'm doing one better, I'm annoying Emma in person lol
Hanging out with her for the weekend
Oh shit.. forgot, Dark also wants me to join HTB... y'all love me apparently lol
Hey my dotfiles ๐
bike is bike is fun
specially on night 
Time to head to the gym
Whoops! I cannot DM you after all due to your privacy settings. Please allow DMs from other server members and try again in 1 minute.
Bruh my gym isn't even open yet
@eternal mango do you want me to join HTB?


