#general
1 messages Β· Page 273 of 1
What are your symptoms
could be galstones
Heavy chest
And this is a recurring thing? Any blood in your stool?
I got everything checked π the doctor don't understand
Do you have acid reflux
Nah it's green though sometimes π
I had stomach pains for months, eventually they found galstones during an echo
Most probably that's what everyone is saying
they removed my galbladder
What is that
Maybe cause the weather is changing, some kind of seasonal disease
Thats a disorder where the bottom of your esophagus relaxes too much so stomach acid gets inside it all the time leading to what you describe
Sometimes it shifts on the lower ribs left right both
And it's painful asf
Like

Do you smoke cigarettes
Its a genetic thing and theres no cure for barrets esophagus but maybe you can ask your doc about it
Nah man no smoke no drink no drug never i am health freak
Its not well known but if he cant identify it then i would consider that
Let's not go full webmd and list things that could freak them out lol
Best you can do is to continue working with your health care provider
Well, my dad has it thats the only reason i know
YOU ARE DYING
Then you should smoke and you'll be fine
Hope you feel better soon
No.
I remember you said you were on PPIs with no improvements
kidding
Yea but now it's abit better
Than that time
Before it was worser
okay so there's something to it
Sooner or later...
hmm that's weird though because I get pretty much instant improvement on PPIs
I have too much acid
now i get call from Marvel
Ask your doc to do an endoscopy and look at the bottom of your esophagus
Will they put camera
If its red and irritated thats how you test for barretts
50.cal barret
Theyll say oh too much acid but its not the acid thats the problem its your esophagus isnt closing the way it should
Orange site stuff
Better to know than not, they can sedate if it's too disturbing to have such a procedure done
But best to go full in and have them do what needs to be done to help find out
I talked to the gastro surgeon he straight up is like get surgery from me π
Like really this sounds like a classic barretts case im not trying to be mr webmd but i think you should talk to your doc about it. You dont need surgery
If I was you I will take this advice
Can't help to bring it up with your doctor, and yeah fair tyc, I could just see the conversation going that way quickly of a flood of advice and assumptions
but appreciate you have some experience on this
so mb
Despite I am C2 level in English, I have started to watch videos from the YT channel "English with Lucy" and I am really enjoying it. I am picking up a lot of new vocabulary and I am also improving my pronunciation. But most importantly, I am learning a lot of idioms and expressions that I wouldn't be able to find in any dictionary. Out of curiosity, what languages do you all speak? I am mother tongue Italian and like I mentioned I am C2 in English, plus I speak a little bit of Finnish. However, the language I have been using the most for the past 20 years is English by far. My Italian has worsened over the years, by a lot. When I moved to the UK in 2005, I decided not to meet any Italian people on purpose so I could learn English more quickly. Then in a way or another I ended up spending time with Finns, and moved to Finland (my wife is Finnish). To date I still don't really know any Italian people in Finland. A language I'd love to learn after Finnish is French. I love the sounds. What about you?
Minorist majorii
Haastaa legendaarisii
Nyt isos liigas, niin ku rosbergi
Suomalaist strΓ€ttii maailmanluokan kaliberil
Nhy ydfi gs6j dhi βοΈ
??
Ive been learning Dutch after living in the Netherlands for 3 years
how do you know finnish? 
That looks like some kind of Finnish dialect but I several words look pretty weird to me. :p
Russian sounds so cool
Replying in the same language 
its finnish
Real hackers know russian
it's finnish rap
I know i can read but speaking is abit issue
Oh I thought its some random characters 
Also typing
Ah, that's why it looks so slang-heavy. I have never heard Finns speak like that
Spurdo spardre
SIT MENNΓΓ!!
Spotify: https://spoti.fi/2VEj9ZI
Ohjaus: Santeri Rosenvall
Kuvaus: Santeri Rosenvall & Aaro NygΓ₯rd
Leikkaus: Santeri Rosenvall & Aaro NygΓ₯rd
TuotantoyhtiΓΆ: Rapa Media
https://www.instagram.com/theverkkars/
https://twitter.com/verkkars
Song written and produced by:
The Verkkars, RSE Fun Lubi
Featuring:
MADS
Thanks to:
Rap...
@mystic harbor sleep

@mystic harbor
Hey
@austere sinew ping pong
Youre both neighbors right?
Same country
I would be happier if I was Finnish
Oh thanks sick
Why?
@mystic harbor like a poket knife but less useful
@supple plume echo i missed you man i couldn't sleep without your msg
Now you can sleep
Please don't dream about me
π© senpai
Why is that? I am planning on acquiring the Finnish citizenship once I know the language well enough, but just for simplicity since I have been living in Finland for a long time already and it is unlikely that we will move elsewhere, but technically I wouldn't need it because both Italy and Finland are part of the EU.
Damn, Noita comment totally ignored π’ (Noita has a lot of lore and story based upon Finnish mythology)
Ok I'm done shilling Noita now
Realising I've not played it in months now.. hmm
noita is cool
Only for students π₯
I am student
Then look it up
That I would have never thought about
Vro is becoming Hacker
Motokuskin ajatelmia pakkaspΓ€ivΓ€nΓ€ metsΓ€n siimeksessΓ€
But I am thinking about building the greatest machine known to htb so I think I shouldn't say much more
I won't tell anyone... pink promise
You can't leave me hanging like that
just getting my stocking stuffers ready
Damn, Santa is stacked
this is the IT nerds version of a gangster laying on his money
stacking ddr5
Lol
Vro is always doing crazy shi
it pays to be a chinese national
im also indian btw
and american, sometimes
im scoremaxxing all the passports, i do not own
Originally?
i am the OG indian, yes
wait I thought u were MERICAN
All u need isa the ceh bro
based
Source me out too π©
And u cna work at braths company
my company hires the best of the best from HTB general
alright, when do I start
first interview question:
"You have just breached the perimeter of an ICS facility, equipped with a bag of usb rubber duckies and imPIants, what do you do next?"
Go to bathroom so everyone forgets about me
You gotta help me out too vro
Post up in the stall
tyc tyc boom
bro you are standing outside, all I said is you breached the perimeter, that means you are either walking suspiciously in the landscaped area or the parking lot
Oh okay
Hardhat and clipboard in hand, I don my high vis vest and walk into the building
I put on my one ring and become invisable
This tbh follow someone in
Or carry a coffee cup
i was hoping to hear some modern strats
You could drop duckys in the parking lot and leave
Movie
like buying a doordash uniform and delivering a stapled bag that has a mitm AP inside of it with a name of someone who doesnt work there
Yeah or try to clone a prox card with your reader in the bag
I saw that in mr robot
Yea
Caught by the AV
Take it home to your proxmark and make a badge
Darlene didn't put effort into it
yeah guys these strats are 2013-coded
Okay well do i have a drone
there we go
I would install arch linux on office computer to flex
Lol
Gain their trust over months and months only to have your backdoor uncovered by someone noticing milliseconds of delay in an authentication process due to micro benchmarking?
nobody mentioned the ladder strat either, very sadge
Well I'm not robbing the Louvre am I
the ladder strat is timeless
... Am I?
Walk up to employees smoking outside and ask them if they ordered a stripper
Yea and then I get in
And then pew pew
this location was based on the louvre, trust me
its NOT the louvre
probably
Okay so if i have a drone are you saying hide somewhere and deploy it? Why not operate it from off site
this is why you hire dumb dumb felons to do the grunt work
an ICS site is typically HUGE
I dont know lora ranges
So what would you do brath? Hide in a bush and harvest pmkids and try to penetrate the wifi?
Evil portal stealing employee creds
Why you have 4 same phones
These are aesthetic id rock em
I change them every week
Those are just the cases homie
I couldnt find any cool cases for my pixel 8 so i just have a clear otterbox
I wanted a more spicer answer
Reality is often bland
a king he was on carven throne
use a drone to drop the usb rubber duckies deep in the facility, specifically on high traffic areas, near the boundaries of grass so its not super obvious during lunch hours. Go back to my van and wait for someone to plug it in, if triggered, we know our canary USB's worked, and they have little to no network defenses, and proceed to surreptitiously enter with graveyard shift - plant the imPIants
Fly the drone low to make guards give chase, sneak in when they leave and put the elevator into service mode, stay until nightfall
This whole oceans 11 style debacle is solved with a single group policy
yep
Whether or not they have that policy is a different question entirely kek
usb's are JUST canaries now. you dont try to hack things with them.
Interesting i assume you do this at night so they dont see the drone?
What if the payload had wrong ip
no during the day, nobody sees the fucking drones, EVER
Why would the payload have the wrong IP if you wrote it
its crazy
what?
Heya azo
Greetings
have you ever used a c2?
i aint going to fucking ip's
If people value their home more than gold world would be a greater place
I am just messing around
I played the outer worlds 2 for 3 hours in the past two days, cool game
Nice
THE USB DRIVE IS A CANARY, you do not put malware on it
Fuck Honorlock, that's what ublock orgin is for
I've enjoyed it so far
people really do think shit is mr robot
My boyfriend is doing a Dumb playthrough and the dialogue and options are phenomenal
πΉ πΉ πΉ
That's pretty gay cloud
Well i only have 12 days left on the xbox gamepass
Need to exhaust the game
How do i get this trait
I dont know what an imPlant is
Character creation
Damn, missed that
Changes the whole playthrough for it, I think you have to set your Intel to be really low
Dumb β
Cuz y'know, you dumb β
You have to have the dumb skill to say dumb things? You cant just act dumb on purpose?
Not a dumb skill, a lack of skill in intel as he said
Dumb is a perk that is available with low intellect
It's available on character creation
Pi implant
It grants other bonuses as well as hilarious dialogue
You should be able to act dumb with a high enough intellect. I do it all the time.
Ah my bad it's a negative trait
Trait Type: Negative
Trait Description: You weren't recruited for your ability to plan or solve problems. You just can't learn some things.
Trait Effect: During skill selection, lock 5 of the 12 available skills. Those skills can never have points added to them.
When you add positive traits a negative trait has to balance it out for every 2 positive traits
How do you deploy it? Not by drone i imagine
nope, you gatta break in and connect it between ethernet cables
most companies do not segment properly, or even bother with 802.11x, so its pretty simple
the usb canary proves it, thats why they are important
Suppp
in the past I have modified firmware of a drone to act as an implant, so when someone on site plugs the drone in, it also acts as both systems
temu drones have a purpose
Cool
what are we trying to convey here
Jesus
erm.. thats the son
Thats awesome
Oh no, dont start it
Ig you could also drop cables that have badusb functionality
you mean to tell me that you conflated jesus as the lord but ignored the holy trinity... pffft..
burn in hell you blasphemer
πΏ
Pagang will take u
#noplaceforiconoclasts
Hail odin brother
Health check
How are you
heya everyone! spend whole week pocking and destroying my PC while inda hospital lol
shit is very interesting how we have some ppl who is absolut prowskis here and how meow is a neb who only knows how to trash own system but doesnt knows why and ft heck lol but still wanna do it
i think i deffihatly had figureout how to completely transform some machines that are unstransformable
All pros were once where you are.
the fact that dead doesnt mean dead
or does
no i get it I am just so so impresed how non teachble i am
Wha
and Hi Mr 22Kratos adn Cloud
yes i had wriged my pc like twise a day for the past week
Learn to fix it, that is how you learn.
i know now hot to install some systems lol
What
I dont understand a word
English isn't their first language
like a pro for asahi fedora very cute distro with awesome options specialy for a dmd macs lmao
nope
that is wrong with english not my first language?
am I not allowed to use it if it is?
it baffles me how trolls come back and everybody forgets their previous antics
there is no lanquage barrier
i speak english for the past 20 years and only englush why are you bringing this hit up like that?
Cause of the way you type.
i suck i get it
but why pore shit on somene who just can't spell for nothing?
You claim to speak english for 20 years, yet you cannot spell. That is what bothers us.
ppl who are to quick to judge usually the problem wink
yes i can't spell so what? shall i stop because you guys cant get over it? Nah
nice and simple just except it i suck at spelling
wow fucking mind blown lmao
if not for nothing be thankful you can spell
https://www.youtube.com/watch?v=ZQXVWD7W3Uw @hoary nebula
All gucci how are you
Guys I bought gloves from tescos
And i didnt know why the machine beeped
But
Now Im back I realised
They didnt take the thingy off
But I dont wanna go back
To have it removed
The like
Can't sleep, reading to tire my mind
The plastic tag thing
Go for a lil walk
Remove it yourself
It's 2:37 AM
not in US it Ain't
Not everyone is american
yup yup yup
Watching one ippsec writeup for a box i did in the past adjusted my approach to enumaration and collecting info so much, what a goldmine
but yet my english is an issue some how lol
What are you on about? π
nanya
Your ability to speak English or spell correctly should π― not be an issue at all
thank you
So if anyone has an issue with that, take it elsewhere
Howβve you been goblin
My issue with you 9meow is you inconsistently spell words correctly and incorrectly, i enumerated your post history last time i called you out
you know what you are doing
huh???
bro you need God
You selectively mispell words
I mean they clearly cannot spell and are impossible to understand, why not use translator ATP
which is why i think you are not genuine and likely just here to waste our time
why would i use translator???
Use ai
So we can understand you
browskis i think in english i am english spoken person what the fuck????

uses apostrophe
why not?
nobody takes the time to do that here...
endeed
endeed
but to stink about spelling right? lol

The counsel has spoken
i just dont bother because it isnt worth my time to use apostrophes, you wouldnt get it
Have you met an American before?
I have, they were an educator, so they were farely smart
the average american is cattle, the americans here are not those cattle
huh?
Wake up sheeple
Oh is it bait
dyslexia is a thing too
read a book or two to raise your intellectual abilities to see what is wrong with your behaviour absed on my spelling. mind you all of ya went to scoll from what i can anderstand and who both perants. Not every one has same easy life as yours, so plz knok your judgmental BC off. coz it looks like a mad ignorance on yourside
if trying is not enough then there are ppl who will beat you down while you are. that is so freaking sad
nah I am pro freedom
An ability to spell or communicate should not be a point for throwing rocks, but also 9Me0w don't lash out like that too, you can also block them. An eye for an eye etc etc
I just don't get snoobs who are still an idiots
...

Okay Mr G0blin i will take it easy
I don't lash trust me just state my point
I learned to read vey late coz i didn't go to school as many other ppl
πΏ
Howd you learn Golang
Would love some tips
..fml
2hrs of work to go friends. Then tomorrow I'm at another Uni for a Cybersecurity symposium and workshop
dang this is super busy schedule hun
Every guy has one
luckily i wouldn't know, don't like the idea of sack between my legs
Lol
Cool
What did I miss
Not that bad
nasty
What is this chat now
No idea
Then it's half day friday AND THEN - JUNGLE BELLS 2025 in ATL
Honestly not sure..
me neither
Falcon!!!!
yo
How are you
Oh hey dan if u ever wanna be a speaker or lead a workshop or something at my uni youre welcome to
hallo Falcon
just do projects
Everything alright?
You been well?
Ill totally have u on as a professional cyber whatever
Nice. I was supposed to go to gym tmrw with my feiend but he got sick so I will use this day for better recover to get some PBs this saturday and to hack lol
Win win
Recommend few for Golang pls
goPhish
Supposed to be sleeping
It's like 3 AM
making TUIs, web APIs
Its 4.30pm here
async tasks in golang vs Python are so yum
Hmmm
Once my exams are over, I'll start coding too
College takes SOO MUCHHH of your time istg
this is probably my best go project so far https://github.com/Ceald1/HTB-TUI.git
Could have studied hacking for so long if college exams weren't a thing
what is TUI?
Terminal User Interface I believe
designed to waste your time 
IKRRR
I'm waitin on gubarz to approve my pull request for the SDK right now, I added some stuff to teams like team stats and team info
it's like a medium between a gui and cli
Looks clean
think GUI but in terminal
Mr/s Iowa has arrived
Oh guys i wanted to ask someone who may know about the HTB packages if you may know. when subing let's say for something affordable per month i see they allocate to you some sort of cubes for purhcaises but do those cubes stck and do they expire? lets say if i sub can i save them for much much later so i can buy course that is cos more?
Cubes dont expire
no bs about my spelling plz so tired if it
The cubes do not expire, they will just build up
Beat me papiezonator π
You can collect em though id recommend to do boxes along with academy stuff
Save your cubes for tier 4
oh thank you so if i save for a year then i can use them all at once right?
Yeah
cool
A year
You can even buy cubes separately
Damn
thank you so much for the info but isn't it easier to by cubes then sub is there even option for that?
oh just saw that
T3s arent worth it?
is it profitable to do it by cubes or just sub. i only ask coz i don't have alot of money (kind of poor) but still tryingto see my best option
If I had to choose between academy and Labs, id chose labs
I would say subbing itβs cool if you plan on having it stack up
When I go traveling I donβt study as much so itβs cool to see when Iβm back on the grind I have some extra cubes
Efficiency wise, an annual sub is the best value if you intend on sticking with it over the year, due to the large number of modules open to you, but obviously that is more expensive than buying cubes or the monthly sub. Really depends upon your financial circumstance and time commitment.
Learn about the different Academy subscriptions.
Same and I would just try to learn as much as I can from retired labs and their walkthroughs
yeah i don't need eerything i need solid path
Thereβs never one solid path
Imo academy silver yearly is the best deal for most ppl as learners
Get the student discount if you can
Personally I did too much academy up to that point, few easy boxes gave me much more knowledge
what is the honest difference with academy and HTB labs ?
Same
Real og's do all their learning with labs and the tj null list
are they not the same thing?
Some ppl also feel more motivated if they had spent more money on smth and cant "unsubscribe" like with monthly 
I did walkthroughs when I knew nothing like 0 and then when I did academy it reinforced it
No, Labs and academy ar different things
Labs are boxes/machines
Academy are modules that cover a certain topic
Like xss basics, sqlis, Windows fundamentals etc.
https://help.hackthebox.com/en/articles/5185158-introduction-to-hack-the-box
https://help.hackthebox.com/en/articles/5272936-introduction-to-htb-academy
TLDR; Academy is based upon guided learning through learning materials, Labs are for mostly blind targets you approach without any guidance (there are exceptions there)
New to HTB? Need help getting started? Check out this article for a full introduction to the platform!
New to Academy? Looking for more information? Learn about HTB Academy, the Cubes system, and the platform structure here.
Got me a job lol
What role
Please don't spam many channels @alpine arrow
Totally. Like i said earlier, one writeup from ippsec on a box i did changed my whole approach from enumeration to digging up as much info and utilizing what i can find abt plugins, used versions etc.
In Vuln management
I was backend engineer before that so idk if that helped
Yeah β¦β¦ π
there will very reasonably be a diamond sub soon, which makes t4 the only viable option for cubes
But they did state that the CBBH at that time stood out
Okay so if i started with Academy i can stay there I wouldn't reply need labs sector as the academy is indeoendent program, right?
Sometimes the hard way (not knowing crap) is the best way and just Googling wth each thing is
So it played its role as a cert. Well I noticed HTB certs started getting attention from like the end of last year.
We can't make that decision for you 9Me0w
Your learning journey will be different to everyone elses
I mean they told me themselves that it stood out, I was already back end applying to jobs and this one is strictly a pen testing firm/company so I got 4 interviews and got the job.
who I'm trying to see and set times for this weekend
Its like saying, if I complete my maths textbook, I wonβt need extra practice.
Kinda upto you
What is this
so there is no structure to what should go next other then hey if you like to try and then move on to the next topick, right?
set times of the artists I'm catching at Jungle Bells this weekend in ATL
Ohh lol, i thought for a moment those weee like boxes or smth 
There are job paths etc on Academy, you should go check it out or look at the links I posted
i dont' come here to talk about htb
i am not interested in job
i am interested in knowledge only
Nicee, thats one cert i had in mind as setting next years goal about
Then go and learn
Read the links I gave, go explore and work on the platforms
The links I gave explain and answer your previous questions
i read them already
I can't read it for you
I finished it less than 2 months, just grind it out.
Cant grind as much as i wish, i have two Jobs and also help my parents out few times a week
Time management is tough 
Not enough hours in the day sometimes
I guess just keep it in the back of your head and do as much as you can
Yea when work is chill i read through security related books or i think about what i can do with a box
I would enumerate before work, write down info and Google it at work 
Thereβs a lot of great stuff that helps nowadays at work like makes you feel 100% comfortable at what youβre looking and doing
Hi guys
CWEE is great too
!
Rn im Reading through security+
But that thing is so expensive lol
I wanted to do network+ first but it feels like id need more practice with a home lab
To understand it actually

I did CCNA, I never took the cert
I did CCNA and took the cert πΏ
Subdomain knowledge helps a lot
Did you pass tho lol
π€£
Hardly, my basics were fire though
I still cant decide if I rpefer gobustwr or ffuf for subdomaims
how can I unlink my discord? its linked to the wrong acc(no idea what account it is)
Broooooonlmao
I meant subnetting
π
there doesnβt seem to be a support channel unless Iβm blind
XDD
My bad
All g
To answer your question I just use what works l lol
Mostly ffuf
Then at work since a lot of real companies pen testing thereβs a lot of dirbuster
Got
100% in Automation and Programming
50% in Network Access
48% IP connectivity
20% in IP services
70% Security Fundamentals
95% Network Fundamentals
Since that only gets the live subdomains
But shouldnβt matter for boxes thatβs why you donβt see a lot here
I would prob fail on the connectivity lol
Mods can help with this, you can see those currently active in the member list. You can ping for issues pertaining to Discord AFAIK
I had a headache after the exam. Atleast they gave the result right after it ended. I thought I was gonna fail while doing it. π
(sorry mods if not)
@west lynx #general message
Congrats
sorry if ping is against the rules
Hackster is the bot
lovely
@alpine pumice sorry not sorry?
Nah, I tried @everyone once
They told me it was blocked for this very purpose π
@burnt bloom #general message
I already pinged someone 
#1024429874246590575 for some community driven suppor.t Otherwise if its Discord specific one of the mods
Not like this
Can you DM me your old discord? You should just be able to unlink/relink your discord account on the htb website
π
I'm in danger
no I mean this discord I am chatting from is linked to an old HtB account I have no access to
@onyx matrix Your account is already verified
trying to link my current HtB account and it wonβt let me
because its already linked
Mods can't help with this, you have to link/unlink from the website
if you forgot your old account name you'll probably have to reach out to support on the website
Help Emma, SuperNuts is slapping me in DMs!
Has happened to me, the pain π
an Admin may be able to look
Clapping?
Yeaaah dawg 
Oh since we are at it, how much does doing boxes and stuff differ from actual work? Cuz with boxes you know they are vulnerable somehow
βNoobβ is the problem. Will probably do labs for a day just to get out of this mess, lol.
now login to the current account and go to https:// app.hackthebox.com/profile/settings
and then copy the token and then verify identify is the command
and paste the token inside the input box of the command
after that your name should change to current user
This is what helped me
nto similar at all except the overall workflow. scan, enumerate, exploit, move laterally, pwn
Helps with what youβre looking at and the basics, then you learn from the job itself. Only difference itβs the itβs real targets and not just local labs that are meant for you to find that specific vuln/vulns
Knowing your target is vulnerable when working on things like HTB certainly helps.. but I mean that's the point of boxes etc, giving you a known target, something to practice and learn techniques which can be used in the real world. To that end I'd say there are aspects applicable and comparable to the real world, and we try to ensure a degree of plausibility in the content.. but any box compared to a real world target is like best case. Knowing it's vulnerable is a massive incentive to carry on going.
Thsts what I thought
Then thereβs some crazy chaining attacks to like what youβre seeing with ReactRCE
fixed
How much does swimming in a swimming pool and ocean differ? Yeah kinda like that.
Hi all, How are you?
I know there is a document or imagen with HTB eCCPT-like machine this is for a friend of mine, someone can please share the link to download it?
Good analogy ngl
wut?
my thoughts exactly
when you start to find unintended paths in htb boxes you know you've learned something
Yah thats how I think of boxes, something to just work on to learn techniques, approach and that hunge rfor knowledge
because guess what engineers in production environments make the same mistakes as box creators 
True
Prob even more lol
They could care less unless theyβre into security and want to sit there extra time that already spent, testing or looking carefully for any potential code vuln possibilities
Why I became such an advocate for security in my previous couple of roles
It's not just a checklist, it should be part of the whole development and deployment flow
A true business priority
And how many did you advocate to l lol?
Well thatβs what keeps the testers alive
A couple of hundred in previous role
Nice!
Ranging from engineers, to testers, to leads etc
Tell that to my companies CEOs
Did my best to get them all interested in security
Nice stuff
mmm.. not every company is fortunate to have such leadership that will listen
Thankfully that place there was full buy in
They try phishing campaigns on people who barely face any day to day risks of this sort
Thatβs IT stuff
And dont do jack shit for our sales teams who go over hundreds of emails daily
Nobody but me seems to care π
I prefer ffuf. It's more versatile for both subdomains and virtual hosts enumerations
Years ago, when I was younger lol, there used to be a document like this. I wanted to know if it still exists and whether itβs been updated.
Hey, I wanted to start learning about cybersecurity and i have no Idea where to start. And Im so undereducated that the starter levels are near impossible for me.
Well we can either give up and cry about people not caring.. or try to make them care by explaining and giving context that matters to each department as to why security should be a priority of thought in all roles
Never an easy task
Just start
Nibbles, ew.. gives me an itch considering how many issues i had with it as a COMPLETE beginner
Pfft ok.
Cybersecurity is so easy
Get Started with the HTB Beginners Bible: https://www.hackthebox.com/blog/learn-to-hack-beginners-bible

What branch of cybersecurity are you interested in? web app hacking? network security? cloud security? etc
True
Web app hacking. Mostly offensive hacking and similar stuff.
Then before starting to hack, learn web development and build real web apps. Then go through the material on the PortSwigger Academy and try to solve most labs without looking at the solutions
We do have a Getting Started module on HTB Academy also https://academy.hackthebox.com/module/77
Thank you. Ill see what to do from there
Also starting point in labs
βStartβ
Hardest part is getting started, it's a diverse field, but as with any skill the more you dedicate and practice, the more you'll grow
Apologies, that was me not having spent much time on HTB yet π
No problem
I am in so many servers that sometimes I write without paying much attention to which server I am in :p
We don't ban for mentioning other platforms, competition is good, and the mission is shared.. getting more people interested and active in Security π
I am sure we all appreciate it π
Especially considering how broad the toolset has to be in security
Or at least jt feels like you must know so much
π
IMHO the most important trait is the mindset, the curiosity, the ability to unify experience across numerous fields into a single focus to break shit.. If you don't have that mindset, you could learn about the methodology and techniques, but you'd be lacking in ability to perform.
You gotta be a stubborn bastard, too..
True, it does feel like banging your head against the wall
Sometimes
I'm here
hi
Not having the best of days
wsp
Just depression. An old shadow I'm familiar with
oh
pizza always makes me happy
I like making pizza bagels
I'm going to check if I have old pictures
Wtf
I tried few times
IT was so bad
it is hard to make it right
It definitely takes practice. Making bread is an art form
Mostly bc my oven doesnt heat to extreme temperatures and I dont have a stone
I fucked up many times the dough
Pizza from a stone fire from someone who knows that they are doing is AMAZING
Yeah
(note: that person wasn't me)
Agreed there's several pizza places that do this near me and it's always nice
So quick too
We summoned him
π
Too busy eviscerating steam
Was cuddling with the dog and playing
Light dough, sauce made of san marzano tomatoes...
Or that
Di buffala. ..
The doggo is so gentle and good
Heaven
Doh
omnom
This would make a GREAT doner kebap
I didn't find pictures of pizzas in this phone but this iss osme bread I made
Can't beat some nice Bruschetta
I looked up what Bruschetta is but all I see is bread combined with many different things
Toasted bread, tomatoes, olive oil, garlic, salt
Like an appetiser
Simple and moreish
simpler things are the best
there is actually a trick to bypass that
warm up the oven for a good 30 minutes and remove everything from it
then put some foil at the bottom and use it like if it was a stone
that part of the oven usually holds way more temperature than the rest
hacktheoven
specially good for making homemade pizza
block of steel has more heat capacity than a stone
We bringing back bread?
Download/Stream: https://anyanami.lnk.to/bread
Follow Anya Nami:
Instagram: https://www.instagram.com/theanyanami/
TikTok: https://www.tiktok.com/@theanyanami
Lyrics:
All I, all I, all I all I wanted
Was a bit of bread
Mama called me disappointment,
Papa called me fat
I like it garlic, rye and brown
Banana, honey bun
Brioche, focaccia, naa...
Womp womp
Still very proud of hackthesphere
what is hackthesphere
I got dizzy trying to click links that are just a rotating picture
jaha
Pretty impressive what you can do with it π
it was a basketball field architecture kinda planner
very cool
made me feel like in a videogame
and yes I was using windows 
Nothing wrong with that
Windows been my daily for a long old time. Was made to use Mac in previous role, ran Linux for a few years in role before that, but always came back to Windows. With WSL, it just does what I need, and I'm comfortable with it
Understand the need to use a certain OS when it comes to device management
But I'd prefer to use what I am most efficient with as a choice, if I have that choice
I have a ton of aliases and shorcuts on my os
Hell I ran a Chromebook for nearly a year as my daily at work for a while
but for example I had to use curl today with powershell I rapidly falled into dispair
they wont let me use wsl
π sad
this is my bash prompt in my beloved os
and it has a lot of aliases
and besides that I have way more stuff I made but not public
Nice
I did have an image / setup scripts for a debian install ages ago, while I was working through HTB at the start and OSCP
Built it up with the tools and settings as and when I needed them
Think I lost that when I moved from bitbucket, and missed some repos π’
terrible
Good exercise in efficiency mind
I just like to have a ton of aliases
Which bit is terrible? π€£
you said you missed some repos
Ahh yup
next os I'll try is void linux
and Ill just have a black wallpaper and a terminal
KISS at its finest
goblin do you like chess?
I used to play a lot as a kid, but based upon my last attempts I believe a roomba would be able to best me
did someone say void linux? 
hahah
I'll try again this weekend
I can't stand the bookmarks of shame
reminds me of procrastination 
Thats crazy
That looks delicious
do you have any recommendations for a web app that would transfer well? my guess would be something that has some form of authentication in it
and works with a db/fields to see how input sanitazations works "in code"
Oh nvm
I didn't understand the question correctly..
Welp... good resources to practice on anyway
I'll get me coat
The classic "TODO list" task is an easy to approach task when it comes to introduction to development
You could expand upon it to include authentication
But is it.. really?
(good morning)
yeahh
Good night guys! I have a question: does the hash that needs to be cracked to find the root flag of machine eighteen really take that long? I don't have a dedicated video card, and using hashcat and rockyou-3000 it's taking 5 days; the faster rules didn't work.
6am for me rn:)
Best to ask in #boxes, someone may give you a nudge in DM. If it's taking like DAYS, I'd say that is not the intended path
time for wakey wakey
Bruteforcing is not something often included in machines in HTB, at least if it is.. not to the extend that you need to burn out a GPU to solve it. You could try against a top-1000 list instead, or using an "informed" wordlist built from the target, but yeah.. bruteforcing is not usually the way on HTB machines
So, I'm finding the timing strange; the user's flag was broken very quickly without any rules. I tried with John as well, but without success. I intercepted the hash through the responder; maybe it's the wrong hash as well.
I'll do that, thank you very much. I'm still a beginner, focusing a lot on practice, let's see how it goes.
No problem, you got past the user, could be admin is different.. but yeah, bruteforce that requires a large amount of time or resources in HTB machines it not something likely to be put out there
..so you may need to look for another way π
yeah i once did that but without any form of authentication
just an offline thing to see how I can pass parameters further so the code stays somewhat clean and its not written in like one gigantic function
I was surprised to see it on the list of easiest machines; I'm really racking my brain, haha. It happens, I can't imagine the most difficult ones.
You're not alone, don't worry π Sometimes easy can be a right pain in the arse, even for those with experience
Well, that's my personal experience anyway
especially when you have so much stuff to test (for example possible injections in few places) and in the end it was all about a terribly easy to guess password 
I didn't know that
Yes, many times we look for and do things that aren't necessary and take much more time, when the answer might be so much simpler...
Bruteforcing is a crappy experience, and not something often included unless it connects up with a prior step somehow in the machine, e.g. reuse
Yes, brute force isn't included, so it can't be on my first machine, lol.
Take what I've said with salt mind, I don't know the machine specifically
portswigger is seriously taking their time to send me an email to register π΅βπ«
Just stating what I believe our team consider when reviewing content
nvm it was in spam 
The Machine is "Eighteen"
I also believe that brute force shouldn't be the way to go.
What do you mean by "transfer well"?
I think maybe I wasn't off of the mark when I listed those two links, OWASP WebGoat and digininja DVWA
Web apps that may have skills that would transfer well to working on PortSwigger content
Maaaybe?
Ah, yeah tose apps are popular for practice. There's also Juice Shop
Found like a few XSS today
Yaaay
Author offered to send a copy of a book that I gave for free cover art for decades ago.. that was like 6 months ago.. followed up for the third time to see if they are actually going to send it. My bet is on the low percentage side.
I wish people wouldn't promise things they have no intention of going through with
Do I become the bad guy and keep pinging
Yeah I really feel that, its frustrating when people make promises or try to make plans in bad faith
Happend before with a photographer, she promised a repro, then after the free shoot I posed in for her, she was like "but I can't just give out copies for free"
Motherfudger I posted half naked covered in blood for WHAT then.. does a verbal contract not mean anything anymore
obvs not
what
It was't real blood
Some Viking thing is where my mind goes to
Don't forget to leave out some ranch flavored zyns for Santa this year
I had to ride an hour and a half back from London on my bike covered in fake blood too, as there weren't showers or anything π€£
Sounds like a story
Managed to grab a copy of the magazine it was printed in at least
When I started to make noise about a repro she removed the image everywhere else lol
Those donβt exist
sick
If they did Iβd buy way too many lmao
make some
Cool
I ainβt got the capital for that
that pfp
if you live in a climate where you can grow tobacco, you should make some ranch-flavoured tobacco snus
Iβm Canadian
Itβs too cold to do anything
Iβm still not going to regardless
Yes let's "uhm actually" an actual Canadian
I mean it might
It may


I'm tired
I'm not going to finish this case escalation because the customers "log files" are 4.8 GB .csv files
Excel can't open this natively so I have to use Timeline Explorer
is because he wanna go to the neighbor lands
and when i say no he attacks me
he dont like rules

i am curious where is gonna be the next part when i gonna be attacked
maybe one arm

@thick forge you should chip and fix your cat and not let it be an outdoor cat
PowerShell could probably do it too
i am trying, today I put a leash on him to walk him and he attacked me xd

Make sure it's injected with the anti rabies vaccine
You don't put a leash on a cat's π
this ^
they dont have the vacunnes xD, but he dont have rabies, also when goes to the castration is gonna put their vacunnes
I have a neighbor who walks their cat on a leash
@thick forge if your cat isn't vaccinated then I'd get checked for rabies
Putting a leash on a cat is fucking cruel
nothing to do, he wanna go outside but if he goes alone he gonna start attack my neightbour again xD
how old is your cat?
Cats aren't dogs. You can't really keep them indoors if they wanna explore. Vaccinate him, open the doors, and let him roam. That literally what cats do. You can't keep him inside like dogs.
yes, he gonna have the vacunnes this or the next week
Forcing them in is cruel
guys, how one-shot machines look like?
do you supervise your cat if it's outside?
yes but how you can handle my cat to attack my neighbours XD
Don't. Let neighbors handle it. It's a cat lol. Not that hard to handle a cat attack
Unless they are positive for certain conditions
Then you don't want to let them out
this last days yes, because attack my neigbour but he comes with animals because he kill him, he need to be castrated
FIV for example, as my daughters cat apparently is
universal fobia for mothers
Putting a leash on a cat is unimaginable to me lol
i hope my cat change to an indoor cat after the castration, but i am not sure because he live in my lands and here are alot of animals, he is turining to a wild cat
have you ever vaccinated your cat??
He said no
Is that a standardized thing to do if you own a cat?
It is incredibly bad to let a domesticated cat outside
Do not do this
They immediately decimate local wildlife populations
i see people outside with their cats, is more hard but possible, but i dont gonna be outside with him all the time, i just wanna stop my cat to hurt my neighbors, the reason maybe is because they wife has two dogs and my cat is territorial so my cat is thinking these dogs are invading their space
outdoor cats aren't good for the environment
not yet
If you live on a farm in the middle of the country, sure, have outdoor cats
Anywhere else, unacceptable
i not understand xd
They're excellent hunters
Because nukes
is it normal to castrate a cat or special circumstances in your case?
Cats hold 98% of the worlds nuclear arsenal
They're hunters
What do you think will happen when you let a hunter outside with a ton of prey to choose from
you should probably get tested for rabies twin. Cats are territorial but the behavior seems a bit aggressive even for a cat based on what you've told me
Yk what you should do. Move to the countryside where you can let it out or don't own a cat
lol
Also yes if you suspect an animal you have had contact with has rabies, immediately seek medical attention or you will die very badly
who let the cats out π£οΈ
(meow meow)
Is anyone here familiar with Instagram blends?!
can confirm I've seen three different people having to take two dozen rabies shots because uncleared dogs bit them




