#general
1 messages ยท Page 131 of 1
gm
Are you in Canada?
yes
Canada is so cool
is cold
I love cold
I don't have jackets
When is freezing I wear a tank top
I like to feel the cold reach my bones and feel the pain
Gm
Bin bon
How are you doing
jdfhkldsjfa\
Poorly
5 years
Damn bro thats freaking long
Ik
I feel bad for u
It's fine
Lock in
guys if i know 0 coding (web) would the CWES content be enough for web pentesting and bug hunting?
It'd probably help a bunch if you learned some php, JavaScript, and web dev 
do you recommend doing so along side CWES or before
eh it's fine to learn it alongside, the modules teach you the extent of what you'd need for them
can someone help me a bit
I want to fix my discord settings with the mic
I need someone to be in VC just to help me check the mic
Idk, ask @green kite he's done certified web exploitation specialist
Just do it ๐
@eternal mango
i'm too stingy to buy it
same with arc raiders
one of these days you will buy a duck game
when i finish it
Hi guys
keep it on wishlist
Cool game
?
life
expressway was a weird box

#job-postings
JO-793 Is it still available?
I think so, try applying.
This is my first time on the server so I don't understand everything unfortunately could you help me I would like to do it.
Click on Apply for Job https://app.hackthebox.com/careers/job/793
" To play Hack The Box, please visit this site on your laptop or desktop computer "
Forced to open under a computer ?
Yes
still weird
it's the worst one
of the active ones
can't talk about it ofc
Worst you mean easy
Era is fucking me up rn
easy
been 2 hours, haven't even gotten user yet
send me DM for a nudge if you want
mind you i've only been hacking for like half a year
I've been hacking for 2 months
good for you
my sister just got our house doxxed on tik tok
god i hate high schoolers
And that's why you don't give your sister a phone. ๐
shes 14
someone at her school doxed our address, and made a tik tok about it
then sent it to her
honestly 14 is too young for a phone
i got my first phone at 19
at least a smart phone
so yes i get it
I got mine at 12 but it was mostly for music and calling only.
however im not her parent and my parents relented to her endless whining
at age 10
she got her first phone at age 10
then another last year
before getting the latest iphone
i got my first phone with 15 iirc but that was years ago smartphones
this year
i was 11 when i got my first phone but it was an old nokia not much younger than me
my first phone i still have
hello
i got a note 10 plus
@supple plumehello
I mean phones are not tools anymore
Its not like a gun or a car
Its a computer in todays world
phones these days are just an opium pipe
The phone itself is not bad, the apps/tools that are installed? Def. ๐คฃ
not much, just know it is a addictive drug that comes from the poppy plant
I love watching tralalelo tralala videos on TikTok!! OMG!! Brainrot.
it is just a vape that can do a tiny bit more
Yo do people actually smoke from a phone
their*
smoke using their eyes
I really hate having to come down to the big apple just to do something so minor and simple
And i feel bad for people who have to be in the streets at 6 am

omster the enigma of htb general
what is it
who is it
why is it
no body knows
I got money on omster being an AI that scrapes the discord
Have you seen
A really fat person be athletically capable of odd feats of strength?
Actually not ateength
But like acrobatics
It's like the oddest thing ever
Yeah? Fat is just extra weight
I saw this giant fat guy
Not only scale a fence thats almost 8 feet tall
But actually ace a running ๐ section
It was actually pretty fabulous
htb is fun when im able to solve questions
when im stuck, i get a headache
how do i become good in troubleshooting
HTB is fun until release arena dies and everyone resets the box every 5 minutes.
Taking a break
trouble shoot then you gonna be good at trouble shooting
If you can't solve the issue, take an hour or a day break and come back to it.
when i didnt have VIP, i had to do the machine which others were also using and some guy would keep reseting the damn machine
like bruh, im solving
i feel guilty then that im giving up on it
copy paste function is out of whack in pwbox, i can't copy paste from outside the box
you have to add it in the clipboard

on the bottom right
It's not giving up. You're quite literally just missing something that is right in front of your face. Getting a refreshed mind allows you to look at the scenario differently and with a fresh mind
good point
.
@warped plank btw on shared machines on non-VIP HTB, there is often exploits found already in the machine
A fat person is the best body builder with the shittiest stamina
like when i did the machine(while having non-VIP), there were pre-made exploits which would give me root
right right
alright bruh
That ain't an issue for me cos I always make my own directory and delete it after. Some people just don't clean up after themselves
Hello
Htb should have an academy module on general box hygiene
just do it in release arena
easy linux machine incoming :))
Oh I do, and also on personal instances because I have a j*b, but other users poor hygiene ruin the experience
Easy 
i would like another hard windows machine, that would be great
yes
I want insane web machines
worst nightmare
this guy is genuinely a myth
I like nightmares
his team is named ThugShakers ๐ญ
yeah because they are thug
How long is the usual Response time from HTB support Team?
His level seems inversely proportional to yapping around here
Long
yea i dont think anyone has ever seen him
lies
fast did you email them or from the chat system
When did you opened the ticket?>
I wrote email + used the Chat bot... wdym by ticket?
Nah, it's always multi hour waits to deal with issues, even as an enterprise sub user
Please be patient
i don't think he is better than frosti
i think he is just used to pattern in the HTB boxes
Yeah I've seen that on ippsec videos
should i attempt Hercules
He also probably has a bunch of scripts that do the boring things for him
explains why he gets root so quickly
did he said anything about it
@stone marsh i dont do EP tickets but /feedback ๐
Yes small comments
as he should
I also started to see these patterns
Sometimes is evident
Imagery is a clear example
but.... address space
yeah, i also started to see that in easy boxes, but now i am more into medium and hard, i am a bit confused for what to do
My imaginary company needs that many unique ips 
Real networkers are on LinkedIn... 
lmao
Medium web boxes is kinda easy (usually owasp 10 kinda stuff)
Like without payload tweaking
I Try to ... i am just very sad and disapointed... i never cheated on anything in my entire life... and i only saw the ban 2 days ago... i really had fun on this season up to now...
yeah, right I actually like to see more medium and hard boxes as they more realistic than easy ones, but i haven't tried insane ones because DarkZero was my first hard box
Insane boxes are more likely to be more realistic
Don't believe the rating of DarkZero

yeah i realized that
It's a Hard, but it's one of the Harder Hards
because i have tried guardian and it is just not my level
Guardian is not that hard
for you*
"Just kinda long"... you could say that about Hercules 
Yes
Let me check
i don't want to go near Windows web box
๐
I didn't do that one anyway
You really should, they're fun
A nice change of pace from breached credentials -> straight to bloodhound
yeah, but i never done that, i just can not do something with them
@warped plank bro it says windows
don't know much stuff about it
yeah but it has web
but then it has some AD inside?
Can't spoil active boxes, you'll have to get in to find out 
come on
Windows boxes can have web i think
I mean... you have to get in somehow 
I'm AD iliterate
So am I
yeah but it can also be like Linux box first and then Windows like multiple machines
Same
if I spend 4 hours to get foothold just to find AD I wouldn't like it at this point
you should get to it
I need to grasp the basics first
My AD knowledge ends at: See funny ACL, aboos funny ACL, See funny ADCS ESC, aboos funny ADCS ESC
I know, I'm going though a lot of shit irl at this moment, next month I may get to study the basics of AD
bro thinks he can get foothold on hercules in 4 hours ๐ญ
well i know one writer that explains things in simple terms
You gonna lose your mind at the foothold
I got user flag in less than 2 hours on hacknet
first blood is 4h 30min
used any hints?
no
well
Well... this box makes that box look like it's part of starting-point 
I regreted a lot not to try when it came
I could have first blood 
I was so sure I couln't get first blood
I didn't try...
We all have regrest man
I regret living in a timezone where boxes are released in 5 in the morning
๐ญ
ah here are released at night when I'm having dinner
it would be more fair if they release the boxes at random times
1 am in my timezone
for the application forms. What do they want in the "curriculum url"?
A url to your program curriculum... I'm guessing, idk, ask support
Need to speak to a person? Learn how to reach our support via HTB Labs.
managing time would be pain in ass i think
nah just a script
well every program is just a script
right
Maybe but it'd be really annoying
see you in a few days
Hi chat
@supple plume
hi
anyone do the ai evasions yet?
come now
Why is Microsoft-IIS/10.0 so bad?
I opened academy and came across it in the new stuff...and I have the tokes
Not this again 
What is the code base of the planet?
c3Rm
Java, always been Java
depressing
That explains a lot honestly
Canโt wait for devs to update the servers
No you donโt
Feels like earth has Been running on power-saving mode since Covid
brrrr you muted all the time
i only joined like twice to voice chat in hackthebox
and one of it was right now
wanna makw it trice?
no
afraid someone is going to clone your voice to steal 2fa access to your bank account?
no i do that often in servers where there are fewer people
i actually don't care, just the people don't talk about things i want to talk about
what do you want to talk about?
idk
Socrates was good at that topic
yeah of course
I see why you like books
yeah, i thought i hate philosophy when i was younger, but it is becoming more and more part of life
some philosophy is trash some is unvaluable knowledge
yeah, thinking over the limit gives you crazy ideas
fact
usually the ethics part of philosophy is what we should focus on
logic and metaphysics are not that useful
I like metaphysics
i don't know nothing about those actually
which philosopher/philosophy you've read
philosophy is made up of three branches
logic, metaphysics, ethics
Aristotle
Sorry what? how is logic not useful? It's literally the backbone of computer science 
mostly
๐งโโ๏ธ
nice
about metaphysics
i have his book Nicomachean Ethics
i just think
I should read more
I have mostly read Socrates and Stoic philosophers
I like Socrates a lot
yeah
(p/\q)=q type shit 
man i wanted to read Plato's version of Socrates but Ive lend that book to a friend
Logic was my favorite subject of Philosophy cos it's just math 
im having a bit of problem downloading kerbrute
just install it
people usually think philosophy is just sitting and thinking all the time about hypotheticals
trying
isn't it default in kali linux
not in mine
well i think you can install it from kali repo
the github page of kerbrute gives an outdated method which isnt working
when i try the method that is the latest, it doesnt download properly
GOYs can anyone help me with era
Next time ask in #boxes but sure, DM me
hello super important question
is any mod online
just ask it
whats your issue
yes so should i just buy the student subscription for web penetration testing job role path or should i buy cubes and learn??
my fault twin
you can do both
cubes dont expire
which is better
but the sub will expire
but the student subscription is cheaper
are you commited that you will do modules in time?
if so student sub
if you will procastinate and do it here and there without discipline then cubes
what are you stuck on
i asked this to chat gpt and he was telling me that if i get student sub i can only access some tier 1 and 2 not 3 and 4 wtf is that
student sub gives access to until tier 2
which is enough for cwes
which is web pentester path
oh say ong
Which is also CPTS
so it will be enough?? like for everything on that path
Yes
say ong
CPTS is not the same as CWES btw 
Yeah my bad, I meant to say that with Student Sub you can also do CPTS
student sub covers cjca cwes cpts cdsa
Just gotta mention that the sub only covers the path, the exam vouchers still have to be purchased
no
double it and triple it to the next person
also you loose the module half way if the sub expires
Wow no one came in asking to hack back their instagram account
Must be a good day for HTB server
Definitly
๐
Thumbs uppers will win
no


.
my target machine wont load in academy, feelsbadman
I hate sqlmap
user
@compact wave
missed ya too
yes thats us
joey join VC?
is it still active ? then u will have to dm me
Only if Mick does
yes im already dming 2 people
tejas look he is cheating on you
its all g
@sturdy thistle join VC?
piss offf
later vc
need some worky work to doo
average day in gen chat
lol
leak em
Dont tell my sugar daddy
where can i get one
which one of those 87?
dont need to tell me anything
im already here
Mak
hello
my sugar daddy
hmm
hi
mak the boss
yannick ๐
.. the villain
olala

share sugar daddy with me?
rare cwee guy
rare certification-less guy
is it tho
no
can anyone help me crack a web application made with flask?
for a CTF?
then no
lol
it's a 1v1
Apash how can I be like you
not allvs1
CHEATER
ban him
๐
BONK HIM
NOOOOO
jus guide me thru it ;-;
no
drink redbull
cheater cheater
bend over boy
i dont want yall to do it for me bleh
well..
the audacity to ping me
i got 2 days to break it
not when you're doing a 1v1
if he hacks you first, learn from him then
break what ?
i break the app, he patches it
let him teach you
so there's a vuln in the webapp actually or ur not sure ?
idk

i managed to find vulnerabilities twice
he patched em
now it's my turn to find another one
yamete
try security headers ๐
What the hell is this platform? Your friend makes a challenge and you pwn it as you go and he patches?
it's a basic web application that opens files.
then try on our own please
alr lemme be crystal clear
it's basically a small challenge in hacktoberfest
/app_directory/
โโโ app.py
โโโ secret_data.txt
โโโ files/
โโโ welcome.txt
tihs is the tree
okay dont care hihi
@turbid bloom we don't help you
im supposed to find a vulnerability in app.py to access the data in secret_data.txt
tell me where i can learn to do it atleast?
analzye the code for vulns
you can take the CWES path and CWEE path
i did. the code checks for .. and the path for the data file and returns an invalid error when either of em are entered
Doesnt this feel like you can paste the whole ass app.py into gpt for analysis and move on from there? (Since you dont know the attack vector)
and otherwise python.org
that is awesome
don't wanna do that
i won't get anything from it tbh
and we don't wanna do that also
And what is the difference between asking gpt and us? Knowledge wont just appear in your head you know
You need to leverage information somewhere
i want yall to guide me to somewhere i can learn
chatgpt
dont demand us
^^
chatgpt
go to academy.hackthebox.com
Or academy platform on htb
don't seem to remember askin you specifically?
any specific course?
this is a legit demand: i want my cape results on my 20th business day ๐
CWES and CWEE path
already mentioned
see you next year when you finished bro
let's see if it's gonna take that long
believe me ๐
if you cant find any vulns on your own in that app.py.... it takes you a long time to understand those two babies
how many per hour
well i learned to code a vcs in python in 2 weeks
to contribute to a repo
so ig im pretty fast
2
having trouble connecting to academy servers atm from european vpn, should i swap for american? its for non examt but like, test for module end
thanks
Fr ๐
you're a leading role model
I think there is a banner up, of not reach out to Customer Support
aka mick is the customer support
im not usign a browser im cus curling every page
MIck can i get 500cubes untill the end of the month and i pay you back

Billing 
@tame gust
im cool guy you know
There are issues on all the servers in both academy and labs for me, I just keep on hopping around until something works
ok sorry
goblin vibevoded the vpn setup a bit too much xD
jk dont flame
every server i connect to atm
maybe Im just an idiot though, theres always that
idk
its been true before
@scenic maple >:33
@austere sinew
Yannick
long time no see
L 
FLEXXING YOUR PERMS ON ME GOLAM
no i posted cause u cant
so people can see the gif
I just noticed the arabic and itโs killing me thatโs so funny

Hacks
me rn trynna make a logo scale
that is for graphics designers and what not
i personally would never do it
u cant do that with css or js u need photoshop
they gave me a 920x651 PNG transparent logo now
but your boy dont do front-end
Where to seek for motivation? Returned to THM again, bought a 1 year subscription... Can't make myself study
macbook is for weak people
bro i love macOs
Zap
either way its lot better than windows for me, and i love the interface
it is better than windows yes
also i can just navigate via terminal same as i do in my linux machine which makes it just lot better
shit i dont do on windows
Happy Friday everyone
would've been a happy friday if im not working tomorrow
Merp Iโll wish you a happy sat tomorrow ๐
free labor Iguess ๐คทโโ๏ธ
first discord message ever: what is going on? connectivity is fine but cannot connect to my port for some api dict attack
i dunno who i have to ask, but when i wan't to re-buy my subscription HTB tries to debit 490$ from my card, but i turned off subscription on Pro Labs a long time ago to not waste my money, how i can fix that?
first discord reply to first discord message ever: i have no clue lol things are just down reset your target / try a diff server location if necessary mods and staff have said they're working on fixing things ๐
lol at least you made me laugh ๐ I'll try some obsessive compulsive clicking like it's 1999 - have a good one
ask support
Need to speak to a person? Learn how to reach our support via HTB Labs.
if you cant see them
read the pins
ah the're behind the verified role
rip
I know right I feel so nerfed I wanna go back to infosecprep >:((
with what
symlink
sheer force of will
i created a symlink in the directory
yea i had to read up on those and how they worked ๐
without symlinks, tbh i think the code couldn't be cracked
I have 2
with my current skill level I assume
but you have to use them for work
1 yeh, the other one personal
install arch on personal
i hate macbooks ngl
it will balance out
two because we can't do multi display to save our life? ๐ฅฒ
I have 3 screens
1 personal
1 for worky work
TELL ME HOW I CAN'T DO TRIPLE DISPLAY MAX DUAL IT ONLY LETS ME DO EXTENDED FOR THE THIRD
then other one is windows for DFIR stuff
i have previously connected in ht account with my discord username which still is connected ut i still cant participate in giveaways
Golam help my employer wants me to use windows
WHUT? what model you have?
do diconnect and connect again
if it still doesnt work then ask support
Sequoia m1 pro
its joever for your employer
you fucked
i'm still rocking a 2018 MBP and it has held up well
m4 is friendly with multiple screens
.............................................................
imo employers shoudnt force employees to use stuff
they should be able to use whatever they want
How did you survive the bloatware
what matters is you get the job done
golam get ready to send this gif for me please
Some people don't have the ability to see that
i was first

LMAO DID YOU DELETE GOLAM'S
I'm way more productive with arch than windows like comparing a bicycle with a teleportation machine
I like mac
makes me feel i have money
but i dont
You'll definitely feel that via the repairs....
dont make me talk about that
One time I cracked my screen and went to repair it and it was going to be 500 without insurance but luckily i got it a few seconds before the crack so it was 200 instead
what
same
sent her to me
no
you guys know by now that having a girl pfp doesnt mean its a girl right?
mac gud
let us check that personally
wdym, im Gimli irl
you guys are gross
who
I have mac
mac gud
me gud boy
no HR here pliz
@zealous charm i'm running back to infosec
they dont have a joey
you will miss me
THAT'S KIND OF THE POINT
I have no clue I entered trolled got banned got unbanned and then continued to troll
i see

@scenic maple oil up
damn boi
bruh
I saw that
@lilac cipher oil up
is melon a mod in infosecprep
i am
hey how yah doing?
so all hope is lost
im working :v reporting day..
what r u reporting
pentest
uffff
oh wait im not mod i just woke up
thought u asked if i was in there
you woke up at 3pm..
yes?
is xreous and seadris there?
goat
and actuaL
nope
@lilac cipher busy
actual is
is there any severe where i can find those 3
faku
love yah
moneky busy admiring lando driving skills
monkey wants to be like lando

Bro
What if Im doing an assessment and I find GKE being used
Do I just cry for help
The only GKE course I know is on Cyber Warfare
Ask @austere sinew
Why do German war songs hit so hard like what
These are my two fears for assessments:
- GKE
- ML/AI
Cause I didnt do any training for those
Erika
FR
Im tired
So I'm not the only one that thinks that?

All bad stuff aside, the songs are goated.
bad?
The shit they've done during those times.
ohh yeah
Hey @compact wave
- how many years of hacking before you started making labs
- Are u learning less because all you are doing is re-iterating and re-building what you know instead of learning new things by attacking
Kebab for lunch guys
late lunch
wanna have some pho for lunch
not content, but i know that alot of them will learn a thing, and then integrate it into content
WHY ME
and by building content around a new topic your solidifying your learning and understanding aswell
Cause ur the chosen one
your mom
on it
Yes
choose deez nuts

is pho underrated
@austere sinew when embed perms
It is
I don't need embed perms I have a @scenic maple
But I like it
@scenic maple is that true
Pretty sure thats evading the rules and banworthy
a friend in need is a friend indeed
but i wont be here always
embed perms evaiding
hence you must get your own embed perms
i need your hand for a second
๐
Bro is sus
:susd
sad....
SHUTUP MELON
harbor bay butcher
its not that hard just do all easy machines
when you get stuck stick with people who can do them
ZombieWolo
more like very ctfy
which make em easy
but htb now is more realistic or harder
like hercules is a good example imo
why the real world gotta be like this
fr
the stories i head from the folk here, real world is just much much easier
at least windows wise
like relays could carry you bunch
very freaky
how can the world be real if our eyes arent?
very poetic ๐๏ธ
that pen needs to be tested
GUys
Interesting
Hmm
Someone contribute this to the kernel mailing list https://github.com/torvalds/linux/pull/1366
@scenic maple pls make Linux a safer place
girlfriend_finder.c ๐ฅ
wait tf
WHAT
Skibidi
what does that mean
that means they closed every pull request
legit and spam ones
meaning they dont have no backlog of "work" to finish
Its auto closed lmao
yes but legit ones dont auto close
linus mnaually closes prs
look he even closed the above one
hmm could be
its written in C i doubt it
update readme.md when
wait how do i get embed perms again @scenic maple
ohhhhh
Rank up
tl;dr too many people posting gross/dumb shit in the past, so its restricted in general to people whomst are less likely
Missed this hehe
1 year and ahalf until I started making content for communities and free ctfs, even made my own non profit back in 2020 heh.
Im learning way more than I ever did. the job is not repetitive at all, you always need to stay ahead of everything ๐
So basically
I learned cyber when I was 12
but working worling
less likely is the keyword here with half of the degenerates i know lurking / yapping in this server as we speak
like 6 to 7 years now
๐
worling
Im not lurking
i lurk to point out minor spelling mistake
why do you guys think she thinks yall degenrates ๐ญ
joey how do i make content like you do
Degenrates
degen these
These what sir
Make it. start. fail fail fail fail
coconuts
Do it again
i guess time to fail again
Im failing even here as we speak
Failing making a challenge
im literally making one and im failing
but Im not giving up
do they reject your challenges even now
BECAUSE I KNOW THEM TOO WELL
I would hope so, you don't want a bias platform
i dont think its easy calc
I reject my chalenges myself
๐ข
how is it not easy golam
Im not degenerate okay
i think since u made it its medium
hm
yeh
maybe
come again?
its a joke lmfao

Omster bout to type watch the troll account post something unrelated
its a bot
what part of my screen is the google pixel
lol
on to the more IRL topic
keep yourself safe
he isnt
Kibwe 2.0
wanna have a coffee?
i have an intolerance to caffeine
tea?
im allergic to tea
u should really start learning how to 'reply' to a specific msg rather than sending it into the chat directly
Indeed
whut
What VPN do i need on HTB CTF? I don't see anything.
openvpn
Not u
But to be honest fam: serious talk
- to make content you need to fail.
No. I mean what ovpn file? I can't find it. ๐
