#general
1 messages Β· Page 193 of 1
Cool opportunity, but speaking of credit, I hope you are not putting your real name on it. The correct strategy is to use a pgp key as the reporter.
Is it public?
Not as of now, but I've got the ability to discuss it with collaborators and those who would be credited
Hence why I'm offering to credit anyone who'd like to take a look
What's the cve about aprox
please consider my advice here. do not put your real name on it.
Really exciting CMS Stored XSS
Why not?
It won't have my real name on it
Its a can of worms, really bad idea.
Whats a pgp key?
I can review it but I don't care about credit
Like an alias?
email fingerprint
And also I'm getting ready to sleep
it allows you to claim ownership on something without doxxing yourself
Ahh
Neat xD
No worries, feel free to give me a message when you wake up if you're still down and I'll send over the details
It's a tiny github project it isn't Oracle or something
If you send me a dm in 17h I will then take a look
If this one doesn't go through I've got another rabbit hole to run down anyway
That sounds good
if you dont get it through just do a talk on it
Goodnight chat 
gn
Gloo, Faith Assistant, Pastor.ai, ChurchBot.chat, OnlineGiving.org
to answer your earlier questions about sources
I see
Honestly need to double down on my CWEE study after wasting today on some attempted CVE's haha
well anybody with a man rolling a boulder up a mountain has my faith
It has been painful going through the fundermentals again, but much needed imo
It's a good metaphor for Cyber, you really cannot stay still or the boulder rolls down again
Chat, how to become master haker like Elliot Alderson from MR. ROBOT???
make a resume, then close the application link for a cybersecurity company and submit it to taco bell instead
Thank you, when I become famous threat actor, I will contact u via super secret channels
Bro is going to get added on telegram
fantastic, cant wait to discuss niche tradecraft
Ur welcome, I will hak fur u vro
Oh my god, this quest in Kingdom Come must the DULLEST quest in any game I have ever played
It's making me want to yawn quit
thank you vlud
I found that entire game really hard to get into
Played it twice
I'm enjoying it, or was until this quest, but it did take some time to get in to
and its not one of those trash OptiPlex for junk yard
Learning how to Master Strike changed the entire game for me from a combat perspective
Made it a third of the way through the story until that duel until I realised I was missing a rather critical skill π€£
Girlie dawg
I just didn't have the attention span
Doggo
That dog is adorable, give em headpats please.
Fair enough. I will say, it's the first game in a long time to cause a true emotional response to a quest outcome
It wasn't the good outcome, but I refused to just reload, to respect the feels
Fair, I admire people who can push through it. I know it's good.
The last game that did that for me was CP2077
Still haven't replayed that since all the changes. Played through most of it or all (I can't remember) on launch
but I know they've made a tonne of improvements
really man?
Vader had some lag
LOL
heard you the first time gng βοΈ
"Why isn't it POSTING"... oh no.. oh no!
My internet fucked
anyone got that activision statement on ai usage in black ops 7?
Get it with the phantom liberty DLC, unironically amazing. Story, gameplay, atmosphere are all really good now
relatable 
Have you seen their campaign? π
Thanks for not hitting me with the crowbar
pretty obvious a simple accident
New episode of one frame man came out today and I will be delaying it to a bored lunchtime in work
no worries
OMFG just got slapped by a monk because I waited for a while instead of sitting for 2 hours eating my lunch, so missed my duties in the library
About ready to reload and run through the I don't give a F path of this thing
Ok, was so damn confused 
Hmm, I think Activision needs more AI slop and features to improve their game. More cost effective, and less time consuming π
Has anyone played Arc Raiders? Was considering it but it looks like there is no real endgame to it
Network Chuckπ£οΈπ₯
I'm still confused on "ran on general" i did say i was donating computer power earlier
i love this guy
general is cancer
@terse dirge
i love network chuck too
get tarkov instead
I hate that guy with a burnijf passion
I haven't played enough of it to say if there's an endgame or not
You've failed me
is this the new chud meme?
Tarkov seems like suffering with the type of people that play that game
I really want to get into it but it seems like such a learning curve
And Tarkov players shit talk the game constantly
that's because they're bad at the game
The launch on steam didn't go well either with tarkov
Though, I haven't played it in 3 years so
ZERO Sievert - Tarkov, but single player and pixel art
tarkov is THE extraction shooter
Very fun
so just skip arc go straight to the real thing
What the fuck is a chud
Just play Escape from Duckov.
i saw that
good, there is hope for you yet
wtf.. that entire quest can be skipped just by kerb stomping a monk and running out the door
gg
Disappointed, but kinda relieved. I didn't want to play Monk Simulator
Any staff available?
πΌ
For platform support, you'll need to reach out to the support department and they will get back to you as soon as possible (keep in mind, it is nearly midnight on a Sunday for most in support)
For Discord support, someone will probably be around
Was wondering how to cancel subscription. Don't see an automated option for it on the dashboard.
I want it on another account.
Under the billing section
Got a link to that? On htb.com/user-settings (main dashboard i dont see anything)
app.hackthebox or academy.hackthebox?
Either way, click top right next to your profile name / avatar, and you will see a billing link
I can't sleep wahhhh
which is better spending my money more in htb labs or academy?
Both
11 years for me now
Labs: https://app.hackthebox.com/profile/subscriptions/plans
Academy: https://academy.hackthebox.com/billing
@drifting mural
What would you rate your knowledge on hacking now?
Academy if you're a beginner
Labs if you're reading for the machines
/10
0.1/100
Academy
there is so much to learn
If you don't mind me asking, could you not see either of those links (e.g. they weren't showing for you on the platform)? How are you accessing the platform, mobile, desktop?
Just curious, as they aren't exactly hidden
Got it working, it was the academy one π , was via PC

Sup kratos
Welcome to the club, it's taken me 6 years to get to an intermediate level(maybe)
I was in the regular account.hackthebox.com site, there were no billing options anywhere there.
Ahh yes
Hello
account.hackthebox is for the SSO account management
Billing is managed on the relevant platforms site
Glad you got it sorted π
What if I try admin.hackthebox.com
Thanks for your help!
How's life been? Still grinding htb 24/7
What if
Chat I got to burn my massive pile of sticks with my son.
Ainβt nothing better than burning sticks
should i focus on getting cjca or comptia a+ (idk what a+ is but i started learning it)?
It has been good
I found a vulnerability in my college's website server, easy to get foothold
Will report it tomorrow to the college authorities (I had permission dw)
Surprisingly, it was VERY similar to an easy HTB machine I solved
If you know fuck all about computers study the A+ but i wouldnβt worry about getting the cert imo
A+ is general knowledge over computers and windows. It's the main cert for IT if you don't have a degree.
I hate non-practical exams, A+ is good theory. CJCA is more engaging though
Actually I will try admin.hackthebox.com
Address not found, nvm
https://www.hackthebox.com/security.txt
That sounds awesome good shit. 
He's growing so fast
π
a+ is very easy tho, i feel like this is surface knowledge im getting 80% on my practice quizes
You would not believe how easy it is to find flaws in websites nowadays
They're poorly made
An nmap scan often reveals alot of info needed
Doing anything at all is better than doing nothing
nowadays π€£
Some low hanging fruit is still out there, but don't let that win fool you. It's not always so easy
Just FYI
the power of a ../
The power of love
Sometimes it can be easy, sometimes you spot something simple others have overlooked
ππ
Sometimes you do an engagement on a target that don't understand why a .git directory shouldn't be uploaded
It's such a varied field, both on knowledge and target
Go start bug bounties
sssssss
Point right there, Bug Bounties will both humble and shock you
True
yea
I am considering, yes
e.g. an RCE on a .gov program for code that was not only openly available on a public git, but also hadn't changed in over a decade
I fell asleep
..but it hadn't been spotted by anyone else somehow
NASA was fun to hunt on
Sometimes you get lucky, but be prepared for hard work
Hell yeah! π That was fun
I might go back and do another run over it next week some time
That SQLi was weeiiiird
Perfect example of a bounty programme to practice on too
Massive scope
Nail those recon skills
I can't say anything, but don't overlook major compute providers.
Yup, big doesn't mean better
They have too many API's to be secure
Im sure Dell has some stuff with their telemetry
Just wait for fortinet to push an update
passed the 1201 on friday
The A+ was hard af for me
so much random information
yea especially if its your first cert
my first cert but idk it was light
I thought sec+ was easier
security+
A+ had so much random hardware stuff that i just didint know or care about
hardware stuff was easy though
i feel like sec+ is harder
idk i havent gotten there
but heard
They're all easy if you study for them
yes ofc but which one is actually easier
I never actually took the exam i got annoyed with it and just quit the A+
but i took a few practice tests
A+ and Sec+ are in different tiers
sec+ is easier fs
I wouldn't worry about A+
why not
A+ isint required like anywhere ngl
so im wasting my time rn?
Can you build a pc
probably
yes i already built it before i learned anything from a+
but a better place to discuss this is in #careers-and-certs
k
https://www.youtube.com/watch?v=A70iMyJIJFY this is sick
#psytrance #psychedelictrance #strangerthanfictionpsy
Taken from the 2-track LiL Nasties EP.
AtheReal Music 2022
Get it here: https://www.beatport.com/release/lil-nasties/3833689
I'm so bored
I did everything
All my servers are up to date, secured, hardened.
Upgraded my desktop from 22.04 to 24.04 kubuntu and set it up
I don't have anything to do right now
π
I need something productive to do
Maybe I'll vibe code some more plugins for my bot
learn zig
make your on home jarvis
How is Ippsec able to listen to port 80 in Parrot for the Outdated (name) Box?
Make some box to submit to htb
I'm listening to old school trance and just sitting there
Not doing anything
https://www.youtube.com/watch?v=42zKa6-TeR8 this is from my college days, circa 2000
IF YOU ARE THE COPYRIGHT OWNER AND WANT ME TO REMOVE THE VIDEO, PLEASE CONTACT ME AND I WILL DELETE IT WITHIN 24HRS
Trying to figure out what to do
This makes my chest hurt
Idk why
The beat
o/
I can't go to sleep just yet
it's only evening time
I still have like 5more hours to stay up
What to do though
Hmm
I don't feel like doing anything
https://www.youtube.com/watch?v=5q6HF9MsGDM Another old school track from my days
Rare old school goa trance gem from 1996. Various - Pro Cannabis II / Dope Records
https://www.discogs.com/user/3.am.eternal
https://soundcloud.com/2trancentral
https://www.patreon.com/join/2trancentral
1996
good evening
Hello
What about finding a cve without poc and vibe code it?
or maybe learn to code
He knows code
but vibe coding is more efficient
I am already a dev
ahh
You can suggest more plugins if you think of them. I run a python matrix bot for matrix.org platform.
I need a good color scheme for my terminal.
I use rxvt unicode terminal.
after upgrade from 22.04 to 24.04 kubuntu the colors changed. I don't know why.
Default >
catppuccin
Design, edit and share custom terminal
color schemes. Export them to a wide range of terminals, include Xresources
(urxvt, xterm, aterm, eterm, rxvt), iTerm2, Terminal.app, Termite,
Terminator, Konsole, Guake and many more.
Here's my current scheme.
After upgrade from 22.04 to 24.04 my terminal colors have changed, even though my .Xresources file for urxvt is the same. I wonder what's going on...
Ah last night while debugging the utf icon issue I had build the terminal from source. I just installed the distro package and colors are back
Whew.
hello!
use pywal
and forget about color scheme
You should be sleeping
What is pywal
i just woke up
Oh good morning
it generates color scheme based on ur wallpaper
It's 5:42 and unfortunately I didn't sleep at all
My desktop wallpaper hasn't changed in 14 years
Neither will my colors
its time then
what are u waiting for it to turn 18?
i change my profile pic and wallpaper on daily bases thats how i procrastinate
Proof?
too many colors for me
Mr Petals staawwwppp ur name still sounds hot
I should put this into my grub config too
π
Show your full rice vro
my current usual
damn
or the one i have in my PFP
i had a kuromi girl fling, she wanted to tattoo me with kuromi and her name below it
thats so cute man
its a vibe
dont tell me u use nano on daily bases?
What's wrong with the nano text editor?
I use nano, yes. I'm an old mutt/pico user
nano is fine for single file and shit but idk i dont like it
I use emacs.
Oh come on, we have to talk about this
hacks only
The EU chat control
No we don't
Its security related
I'd rather discuss IT philosophy
politics is for small brained people
checkmate mods
well arent you in the EU?
u can rant, but idk if it will turn into a discussion if we dont engage
then you cant talk here by definition of your own bylaws
your fine to discuss it
aslong as everyone stays civil
@lime trout i vibe coded the ultimate burp extension of all time today
some other political topics will always end up in chaos though, so we stray away from those
No intentions to insult or anything, I just want to see what people think
Yes, I try to stick only to topics that are tech related
oi 0xmc47, ye av a loicense for that comment m8?
Dude
why are these osint hcallenges so bad
from hackthebox
the quality is terrible π
they are bad? i found them fun
woah ouch man
Thankfully I don't live in a Monarchy
Or whatever the political system of UK is
Because vim and neovim are objectively superior
son, you and me are both in FVEY territory, we live under the north star. monarchy is a distraction
nano is so simple and nice to me, what's vim and neovim got more than nano
just opening neovim makes you a 10X engineer
im telling joey
Do you plan on changing the defaults for your wm?
we have LSP and nvChad
gtg to bed actually
Lol
Gotta work
smart move, I would have kept you up all day
come on someonne say something offensive emma is here rn i wanna see someone getting banned live
what a fascinating interaction

Unfortunetly for you, banning is not an option. You will be sent to the re-education camps instead
Vim has macros and allows you to be more productive than nano
In China?
The academy.
i just wanted to see someone getting banned am i a bad guy, i have feelings
Oh, okay.
you must complete the CPTS prior to chatting again
π
difficulty: not so bad if you put the time in
Imagine after 10 years needing a bachelor degree for having a public opinion
I'd rather become a national holiday
By officer chad thunder-


i actually dont understand tf they want degree as entry barrier, like its so annoying personally
either too many canidates so a way to filter
or ghost jobs
are all the osints ai generated or are any of them worth doing
if you can hire someone more experienced/better education for the same cost why wouldnt you
none of them are ai generated
i mean is it a good filter? getting a degree doesn't make u good or civilized or easy to work with right
the websites are clearly ai generated
my brand new burp extension is ai generated
check the latest osint
yoo MR PAINT is here
puppet master?
That's some dangerous unresolved trauma there mate
dangerous to others may I add
but like whats the point of pumping out ai slop challenges that all get 1.9 stars
there is a limitation and restriction in OSINT challenges, its hard to develop something that has linked to real world, in HTBoo we had to remove one challenge because players were supposeed to access some real data on dark web, and on Mainn platform its even more hard cause we have to make sure the references we are using will stay there forever
so its alright if u dont like it, but that doesn't mean the author has put in less efforts
while also making sure t hat real people dont get mistakenly involved/bothered by it
@zealous charm I really wanna take this extension to the internet and just start blasting
wild west style
we've solved automated pentesting
Extension vibrary here we come
make your own osint challenge, doctor guy
being a critic is so cringe
we pay for challenges too
"claude design a website where users put in information using a picture of the model and details of a plane and get the flag after 9 questions, add a progress bar at the top"
bro you wanna see how quickly this thing solves Gin and Juice Shop and DVWA simultaneously?
I think its weird to accept ai website submissions then
Hell yeah, hook it up to a browser MCP so as it browses it flags burp issues
thats my take
submit it then
i have morals 
thats good but will prefer constructive feedback, any suggestions on improving it?
the creator didnt use ai, if they did prove it
dont use ai is not a constructive feedback,
all the multi answer osints were made using either gpt or claude
pretty sure its claude
I've seen some nasty opinions about AI and mostly from older people
on irc and matrix
How do you know that... thats a crazy claim
What is your evidence regarding this?
Ai is bretty gud i use grok to accelerate my learning
you can just tell that claude pumps out the same stuff for most designs
I know Joey personally, he definitely tries his best. Iβm gonna try to be respectful here and say you have no idea what youβre talking about.
And grok is literally the worst AI as well
That isn't evidence
Iβll leave it at that
+1
That's an opinion
solved in 0:48
Puppet Master and The suspicious domiains are the most egregious examples
We do not use AI for content, and certainly Joey does not
Master of puppets
Its unironically better at making cybersecurity stuff than secgpt
And has fewer ethical guardrails
No web app is safe from this!
I got it to make me a banging crto study guide
If you think that you can do better OSINT challenges than by all means, go ahead and do it.
pull request soon? ποΈ
You have your opinion? Fine. You hate AI? Fine. But don't go hating on content creators or staff for no good reason.
Please show us what you can do. Iβd be genuinely interested
And grokipedia has already made wikipedia obsolete with version 0.1
dude what if we make a burp extension that solves these osint challenges?
the semi transparent box style, the progress bar, the emoji on the left is pretty indicative
That. Is. Not. Evidence.
and coming strong without any good proper feedback, its like throwing a tantrum when u dont like something?
did you even solve the challenge?
Dont be scared of the tools ai can help a lot
i've solved most of the osint
He solved it like he solved OSCP, not at all
Even if they used AI (which to my knowledge, they did not), so what?
It probably make people look like this: 
I suppose you're using carrier pidgeon to communicate with us here?
Who would ever use the INTERNET
Tbh, in terms of boxes/challenges, I don't see the difference between using AI or just using a completely unedited free template. You could argue both are just as lazy, but it gets the job done on something that isn't really that important
Freakin lamers
Can people solve geoguesser with ai yet?
i love it how u two are having ur own private conversation in the chaos
Youβre welcome to join, Iβd say itβs the superior discussion in this channel at the moment
If you have something constructive, all ears, but don't go slamming our creators or staff
its like private DMs but more public like talkking in a park
nothing is superior rn than having my homies back atm
we need more tools for the extension vibrary
bad experience
Hell yeah, we are only limited by our imagination at this point
Vro doesnt know what constructive means
i mean i don't enjoy eating ai slop
What are you nerds fighting about now?
settle down now
π
Well, good thing we don't hand out AI slop
ok man like give a proper feedback like i dont like this, it would be better if u could do it like that
Problem solved
and java!
we solved automated sqli testing earlier
Damn Montoya API getting rid of python support!!
well i'm saying i would you guys rather don't pump out osint challenge websites designed with AI
they shouldnt have done that
agree to disagree that that is fine i guess
just website? like UI/UX
Wait what
Damn it portswiggles!!!!
yes I would guess thats what claude did here
The issue is just the UI?
dude you have both feet in your mouth now
so just UI? not the actually solve part?
AI Website Bad, challenge okay, but AI bad
Ai gud
idk about the solve probably not? idk i don't have the expertise to make that the call if it the solve itself was designed with ai
what the hell
So.. should we go back to using purely HTML to create the UI of websites? No CSS?
No javascript, NO WAY
THAT'S TOO NEW
doesnt matter, if its vuln to sqli, our extension will find it
https://www.youtube.com/watch?v=baso_aTR-xc can't we all just get along and surf the waves of sound
Provided to YouTube by Base79
Waves of Sound Original Mix Β· Yahel,I. Zen
Waves of Sound
β HOMmega
Released on: 2000-10-01
Auto-generated by YouTube.
What's happening
its crazy how it always goes from we don't use to ai -> its not bad -> we do and its the future
i am completely confident in sql spammer rn
Someone getting scolded?
How did it go to "weo do and its the future"?
Every web app should be built with Rust and WASM, if it works, you know that it was AI, if it doesn't you know it was made by a real person
doctor jang got his phd from a degree mill
What's his take?
idk how u got here from "don't use ai to make websites to feed your users"
bad
so that was some really fruitful feedback 30 mins wasted ig
Because you're complaining about something being made with a new technology
IF it was
Yea but what
I vibe coded a website
I wanna know the sauce of the drama
It was easy and fast
tldr; the osint websites for the challenges are very likely generated with claude
That regardless of the importance of a website to a challenge, AI should not have be involved in any part of the development process
Oh
Idk anything about that so can't comment
allegedly
by me
What's the evidence for it?

I would like to believe they are all AI, because it would just be funny if that was the case
no he said his issue is OSINT challenge website is made by AI which caused him bad experience
no proof, and beyond that even if he had proof he has nothing more than "i just don't like how the UI looks"
I use AI for everything, it's great
I feel thats not very respectful of your users time
or content quality
if you pull up the challenge its not htat hard to tell if you look at ai websites
bro we have like 2k+ challenges combined afaik, if u dont like few its ok?
goodtalk
vro doesnt even have oscp and has the audacity
That's not evidence
Look,I have my grievances with HTB
too expensive 
i do have a gpen tho
Seems like this convo could have been better but you got off on the wrong foot
Opinions are fine, but flat out calling content AI slop, and the feedback being "I don't like it" is useless
My main grievance with HTB is that Academy and Labs are seperate subscription
Too costly
means nothing, its multiple choice
Especially with the recent changes to the subs
But I think this is disingenuous to the talented people who work on HTB
come on man inflation
Makes sense to me
I mean creators always get defensive when they get called out for designing with ai
same thing happened with picoctf a while back
But the price hike made me sad

mmhm, the number of supplier price increases we've swallowed over the last 8 years
The website in itself is very good and I love studying from it
But it costed a damn fortune lmao
yet you have created nothing at all, just an annoying critic, irrelevant opinions
That was the first price increase in the history of HTB
But I understand
Cost going up is never fun
Here's a painting I made
if u only mean AI as in website, i use AI to develop boiler plate stuff on my challenges and content, it helps speedup, but we dont use AI to design challenges or exploitation paths, all that is hand made
Just hire me
No complains then π
Show up to trivia night you can win subs
So awesome
Thank you
me and grok create a lot together
Prolabs is the only thing Iβll complain about
Here's what AI did to it
WAIT WAIT
π
Oh honey..
WHAT
Oh my god
HUH
It made it warty and gross
you really just said that?
Yup
LMAO
I didn't like the AI results
wait im the only one who likes both painting
Grok my beloved
sarcasm goes a long way
Nvm I'm not skilled enough
You didn't say it with /s or anything dawg lmao that was a statement
nice first impression, no sarcasm needed
That is a very sexual mushroom
Guys it was just a joke hehehehehe, also whatβs a woman?
i used to think im pretty unhinged but this guy man

Women are agents of IRS designed to extract taxes from us
I'm just waiting for the dryer to finish so I can get my hoodies back
My gf made me a hot chocolate today
Change your name and try again guy
this names cooked
Painting vs AI:
My hot chocolate made me gf today
Hey uh
Booba
This looks like something that my hippy uni girlfriend would have had in her dorm
Does that Shroom got her tiddies out brother
hahahaha
half male half female mushroom π
I'm asking as a friend
i love mushroom tits
ooohh ok yes its good i was about to ask why the left one is big
Shrooba
where can i join a colony of funguys and gals?
I just assumed you were supportive of women with non-uniform boobs
It's very common and doesn't get talked about enough
i mean you could say its a difference in philopshy i guess
I can say "using ai to design ui to feed your users is bad"
and you can say "we did not and even if we did its not bad"
and we'll never get anywhere
thats not non-uniform if there is this much difference then its a tumor
Ooooooooo support usssss
https://www.youtube.com/watch?v=iI6n-P0VA90 This is sick!
#EuphoriaLyrics #Lyrics #Lyrics2023
PPK - Resurection
Subscribe and hit the bell so you don't miss new videos (π)
tags
Lyrics, LyricsVideo, Lyrics MIX, Lyrics 2023, Pop Music, Best Music 2023, Lyrics Video 2023, Top Music, Best Music, Pop Music 2023, Lyrics Video 2023, Euphoria Lyrics
β€οΈ I love this tune
is the challenge about UI? i mean the challenge is supposed to teach u something is it about UI/UX?
I will research and get back to you. May need to send a few texts
whats your philosophy, you strike me as a imposter syndrome victim
no
osint
Lul
isn't imposter syndrome to opposite
try centering a div
then yes mi amor, just enjoy the exploitation thing and its ok to have opinion as goblin said but saying the quality sucks is different
Mon amis

π₯Ί π no π
Free too
This looks like something I'd find for $35 at a Nirvana.
i would say thats part of the reason why the ratings are so low
Like, as a shitty blanket
Many such cases
But it's art therapy
This blanket smells like incense sticks and shitty weed
spending 4 minutes on an ai website isn't fun
Making art out of AI, psychedelic art
one part could be people find it easy, and a lot of seasonal players expect hard stuff to come out on weekly
but we are trying to get beginners to get into security
and trying to pump easy content as well
you could say thats just me but i feel like this is pretty generally true
to lower the entry bar
I don't fw vibe coding for things that should be built by a human like backend code or things that really really matter. If it's just a UI then if it functions then it functions. As long as it's not some awful UI with menus nested inside of menus then 
wasn't it like thinking you don't know something
To be fair, AI generated content can somewhat be reflective of actual trends in the industry but the content would need to be aimed at "Here's what mistakes AI generated sites tend to have" but that would be effort and take foresight and research
So y'know
i like vibe code but i review everything it changes or does
Cring
you dont even know how to define imposter syndrome? you had all this time to grok the definition
grok probably has an ai made ui though
I feel like vibe coding defeats the spirit of understanding and learning to code
i mean im not a developer im a security researcher, ofc i dont wanna spend my time in css or fframework the way i was doing doing 2 yrs ago
your right shoulda grok'ed it
I'm a security researcher as well and I believe understanding code without the use of AI is a necessity
life's too short to learn CSS and html. just have an AI do it
my girl chatgpt, goes to a different school too
beat me to it
Your wings are made of wax, Icarus.
are you 18-22?
my day to day life is generate challenges / machines in different languages and shit so i find AI useful to quickly learn / being able to code application in multiple frameworks, but i do review everything
Nobody cares this industry is a race to the bottom of hiring people with fake degrees to lie
you act like it
you got me
Arguments with a premise of "nobody cares" is low IQ slop I won't engage with
i have now lost the argument
you lost that a long time ago
for me it just removes the barrier to understand syntax of every framework and that minor too much time taking things
oh no

I would argue that time spent understanding something is never time wasted
Do your coworkers know you think of them that way
W take
I just don't inherently trust AI to do anything right. I have a responsibility to be accurate with my work, I refuse to leave that to anyone's responsibility but my own
Thats a good outlook
tbf, I also kinda feel like the cyber industry is going to hit rock bottom soon. A lot of the people I've seen in college only care about getting a job and don't understand things like what a repository is or aren't willing to do more than what they're spoon fed thinking it's the bare-minimum when they'll probably only get hell desk job at best
Good Morning chat
yes but i dont have time, right lets say a i have to make a hard/ insane challenge in 20 days, do people will really care much about the exploitation path or the fact i used AI to develop this website?
Vibrant colors!
xclown is awake this early π³
yes mi amor i woke up at 3am
after sleeping for 16 hrs
Yes, people care about the effort put into machines and challenges
dang
using AI doesn't make things easy
And the people capable of solving them will immediately know if you used AI
i'm going to cancel the complaint out by saying HTB doesn't use enough AI
this
u want us to use more AI?
I would prefer your work reflect you, not the prompts you fed
Pretty much a lot of the guys at my local defcon meetups are total clowns theres like a couple people who really know stuff but its midwit central. The university is worse
Replace all employees with AI
AI shouldn't be used to combat "unreasonable expectations" lmao
where will I go for food money?
π π
Temple
Ask AI
Free food at the sikh temples
I had to guide someone through manually updating Debian repositories not too long ago 
No
Ok, but it SHOULD be used to empower, accelerate and enable, so long as it's used correctly
Or rather, it CAN be used to that end
Well ai helped me understand the logic of reversing an array in java, which is a low bar but i think the big takeaway is using it to accelerate your learning when applicable. Itβs a tool. Use it to gain more insight.
Sure but it sounds like he's under unreasonable deadlines that aren't possible to achieve without shortcutting or "empowering" with AI. It's a self fulfilling prophecy
To go back to that basic argument earlier, we could just not use modern editors, because they help devs too much with int and completion
AI is an incredible tool and it's going to, if not already, change the world
SOC jobs are being automated
talked with Prophet AI people
..or not use git because "we have git / FTP at home"
You'll pry auto complete from my cold dead hands
But that's hardly generative AI usage
Theyre rolling out automating rule management too scraping infosec twitter and intel feeds
I'm against generative AI, not against machine learning
I'm chill with it being used to help find anomalies in SIEMs. It's actually pretty useful for that
yo how do i learn to do these hackthebox challenges, i was planning on using tryhackme first but it requires a subscription to continue past a certain point
Gen AI makes such great art
They auto generate a timeline of events and auto generate a judgement of whether its malicous or not
there are some free paths
they weren't bad last i checked
I disagree this doesn't have any appeal to me
web pen path
wdym
look up hack the box academy
I prefer art that has feeling, soul, and time put into it
SOC jockeys are going to be cut pretty big
My opinion is that passing generated response as your own knowledge is where the issue lies but as a whole llms are very helpful tools to have.
i think picoctf has a path to get started too
AI won't ever replace SOC analysts tbh.
alr
Some of these ai songs are pretty good
yes it will lol
soc is the first place to be AI'd to hell
hack the box and try hack me are largly the same
I talked with a prophet ai rep at bsides and its really already moslty automated out
Soc 1 is going to be substantially cut
its pretty good for penetration testing
challenges have been pretty mid other than quant challenges and gamepwn which ahve been good
it does have some decent sherlocks i hear but i haven't tested them out
These were introduced at work recently and the moment I discovered it was just fed into some stupid chat gpt prompt I immediately discontinued usage
I refuse to do any blue teaming work that is AI assisted
sherlocks?
Disgusting
look at the machines if you want to do penetration testing
bro all this stuff is so confusing rn
its shameful, but its so much cheaper than a junior and its round the clock
Youll be out of a job then
machine?
like virtual machines?
sherlocks are more blue team stuff like log analysis, forensics, malware analysiss
Try me.
But you said you're ok with machine learning?
Gl lol
I'm better than any AI out there and I'll continue to be.
machines are actual computers your breaking into
that would be the closest thing to actual pentesting
I don't consider generative AI to be machine learning
Not the issue if you dont learn to use the tools youll be left behind
It's making "guesses" rather than looking at data.
but they can be hard if you don't understand what your doing
so for learning pentesting would u say hackthebox is the best tool?
this is correct
Fair point
I enjoy it more than tryhackme so yes
But the guesses are data driven no?
Its called a language model for a reason
Gandalf ai is fun
its predictive
one thing you'll notice tho is the boxes are very hard for starting out
Sure but they're not presenting the data, it's guessing based off what you put in
I cannot afford to be wrong.
That's my entire job
So i would recommend getting some basic bash literacy @ somethng like pwn.college and picoCTF challenges
to understand basic cyber
opinion discarded
In the style of Alex Grey
really winning the arguments today huh
Oh no, I will have to suffer and learn how technology works to be an effective blue teamer
save some for the rest of the people here
I love my job and I love the field I work in
I'm fueled by nothing but passion
So no, there's no AI on this planet that can stop me
dude stop spamming with your ai images π

G'way.
G'way, you.
Using LLMs to help parse data and be efficient doesnβt equate to not learning technology. I think the issue largely are the types who prompt away, never look deeper, and then pass that as their own knowledge.
I work with someone like that and it is insufferable.
All the "haha ur gonna be out of a job" takes the entire human instinct out of all detective work. Y'all really think the movie Minority Report is gonna happen?
how many times have we had this conversation? surely we all know where everybody stands, no?
start with ths
We got the oracles in the pods, predicting when crime will happen so you can stop it beforehand
Not how that works, funnily enough
People who google things and regurgitate the first result as if they know what theyre talking about are also my pet peeve @molten bobcat
futurama reference???
Hmm not what i was expecting
Its not really much different than using ai
its hopeless cloud
looool
@solemn edge DId you join just to advertise other cybersec educational platforms?
Vanilla Sky?
the yuncs are cooked
I'm gonna cry lmaooo
THATS
I think I gave a very fair breakdown ...
I forgot the name
minority report
MINORITY REPORT
that's the one

Good movie
HTB is by far the best platform to learn pentesting. There's a reason people who take OSCP always get recommneded to learn from HTB to pass it.
Suggesting "Highly Skilled Work" is gonna be out phased by AI is genuinely laughable
HTB is supreme
yea thats what I said
the precogs
picoctf and pwn.college are really noob stuff compared to htb
hackthe box learning is kinda mid
for basics
Not all market decisions happen consciously
pwn.college has better basics training
lol
strong disagree
Bro is idk have some beef at this point
Just saying goblin, us trusting AI too much leads to all of Terminator, Dune, Minority Report, I Have No Mouth And I Must Scream..
It'a more like you're going to be washed away in an avalanche of people that don't understand or care about whatever you think
Oh definitely, blind trust in anything is a path to failure
boxes are too hard to start off for most people
the unwashed hordes screaming skibbadi! RIZZ! ohio?! ongod! ferreel!
I like to live my life by learning new things every day and being better than yesterday
There is nobody at the wheel. Ahriman is at the wheel.
thatβs what makes them good
What does boxes have to do with the educational platform, Academy
Whether or not that is at the "same pace" as other people is irrelevant to me lol
lol self reported
idk the path i rec to people is
pwn.college linux luminarium -> overthewhire bandit -> hackthebox easy boxes
Nobody cares timmy
I can't hack this it's bad
Errybody learns at different paces so I dislike being told to rush into somethin
idk i haven't done much academy can't really recommend or disrecommend
for reference i consider CPTS a beginner cert, it encompasses everything an associate pentester should know imo
Thats what im saying
Clearly if the boxes too hard lol
other than web academy
So you can't really compare then.. you should check Academy out if you want to learn how to pentest
The boxes are infact solvable
why such a hater?
I mean i'm giving resources to a beginner not an expert
Thats not my opinion thats the trend im imitating. I agree with c1ouds ethos
I love this dude ngl, he is bringing everyone together
im skilless you were right about me
i don't even care about you
@mint raptor also please be advised that I don't care how you get your work done personally. I just know it would mean more to folks if content was made with attention and love and care

if i could embed gifs i would put one of my heart exploding
What im saying is the trend right now is its short sighted not my problem kind of outlook
As long as those things are present, tis all gravy ya dig
It's done with attention and love and mi amor dw we still nd will always create the exploitation path by hand ain't no ai there
I use my own research as far as I can
what's goin on my fellow nerds
They are arguing about nerd stuff
Expedition 33 is a required canon event
yeah I did say "look up hack the box academy web pen path" or smth
lots of beginners need a place even before then to start tho
All my take is AI is good as long u review and understand what it's doing
Chillin like a villain
Everyone's still pissed off because christmas decorations are up and it's not even December, so we're all fighting in Discord to compensate
ai song on billboard 100
Bring it on
What song
It isn't even thanksgiving yet
Xania something
The country one?
what's up with those people who put up christmas decorations before thanksgiving is even over
Its pop
i'll use turkey shaped bulbs for my christmas lights
ill get the name
@eternal mango do non american celebrate thanksgiving?
No?
egg...
Nope!
Word
How was i supposed to know by "Xania Monet"
eggzy
Hello
This is my favorite ai song https://youtu.be/8Hml0_BUiOU?si=dRdzBZTg7q58LOx6
Obscure funk pop Valentine's Day single by Teddy Money and The Pocket Watchers. Teddy wrote this single in 1979 to vent his frustrations with the high cost of going on a Valentine's Day date after living through a short recession with an inflation rate three times higher than the previous two decades. Teddy and The Pocket Watchers had mainstream...
My conspiracy is that taylor swiftβs newest music was mastered in the likes of AI sounds to prime the masses ears
that was probably the most american question you could ask
LOL
π
They are on a roll
"do other countries celebrate this holiday specific to mine?"
Also turkeys are native to North America I'm pretty sure
Do other countries have a fourth of july? π
I wonder, are there any Greek specific holidays? (For reference, i'm too lazy to google)
gobble gobble
Wrong