#general
1 messages · Page 297 of 1
frickin epic memories dood!
I show brathisms to students at club in hopes they won't be like that
hes very smart
just ask him
he'll tell you
is ur pfp griiffth?
I woke up 7 PM went to gym, and now it is 9 AM and I'm still awake.🥀
Yes
9AM for u?
yeah 9:15
U might be just as triffling
Wdym
how college-educated of you
u dropped out of college?
brathadair, why I feel that you are hopeless or angry?
brother i dropped out of high school
?
i saw the sham when i was in fucking middle school
statistically speaking not a great move
I feel like u should actually complete highschool ngl
Thats pretty badass
yes statistically, i am an outlier
dont be like me unless you are profoundly stupid
he prob trolling ngl
im serious, i wouldnt lie about this
in fact im prideful of it
i did it the hard way, and im better off for it
Bro would literally run an ewhore pack on his computer during class in high school
lmfao
i think its because i want you to feel that way, perhaps
😉
Shii, that's sick, I love it
I met him right when he turned 18 you will get to meet him sometime
Im really a failure
only if you think you are
not sit down? sorry
BRB
I'm just going to get this calc exam out the wya
so I can go play minecraft over my winter break
y = mx + b
Thats alegbra....
thats also calculus.
bitch
SAT...

SAT?
I love algebra, but hate gemetry.
standardized academic testing
its math testing the slope a lot
I want a McFlurry
thats what calc is?
calc is making funny lines and finding points on them
I just try and memorize shit
hope that helps
talk to me when you start doing digital signal processing
you are basically a baby
u right
Do you need calculus for that?
don't let Mathematicians hear that.
the list goes on
I passed a calculus class and still dont even know what it is
its moreso differential equations
I think everybody 
when i studied quaternions when i was developing in game engines, it all made sense
it is extremely useful
hackthebox gotta stop blocking mullvad nodes entering site, i love my mullvad vpn
i need to visit their store
why... would you use a vpn to connect to a vpn?
This guy hacks
no
just disconnect ur VPN......
you mean mullvad browser then?
nope!
alright...
Hey is there a better way to encapsulate vpn traffic than vms these days
what is that logo
mullvad
imagine using a vpn with a company logo when you can roll your own vps
No matter what measures u take for privacy, u are still known.....
insane
Mullvad = privacy, no logs and yes it's 100% true
consider how mullvad makes money please
youi'd be suprised how much nuance information a single website can pick up on u regardless
mullvad on top
flex tape
I'm cooked
Does mullvad allow packet forwarding?
I guess not
it doesnt support port forwarding no
Free ad
we dont need to free the internet we need a new internet with giant firewalls blocking entire countries
Yes
we need the firewall to be on fire so people dont want to touch it
CPTS? or everybody gets is before you?
👌
LOL
Let frostbite hear that
today saar we will pantast tha enwirowent
yeah...
hello
bug bounty is simply fuzzing unless its private, and AI is just going to dominate it
i have drunk beer
This whole corporate bugman shit makes me depressed
not worth your time
and i feel like god
i need to submit one at-least i need real-life experience
if i wanna secure a job
lol what
like indians are taking too much of the world population, but also every field in this world.
yeah bro i got rejected
Bug bounty will not get you a job twin
you think submitting a CVE is going to get you a job?
i literally dont have irl experience
AI just create more liabilities no?
i need irl experience
you dont put your fucking name on a CVE if you are smart
CVEs are for snitches and bitches
-.-
just can say "subbmited bounty for"
word, cve's can be so much more than u think
Damn how high is the ladder
Yall keep pulling it up
mmm delicous hacker snitch kinishes
have you considered lying? thats just social engineering, thats just pentesting, thats red teaming - are you really living in bad faith if you can secure a job without invoking izzat?
What else he can do if no CVE or registered findings?
it doesnt even have to be a cve
can just be like anything thats bug
IDOR for example
im so tired bruh been tryna find a bug bounty all day got no where
what does that mean
I think i can pass an interview with bpm but im learning ghostwriter first
What do smart people do?
profoundly
have you considered that you might need actual skils first
yeah i do
and where can i actually get actual skills from
I can be your mentor
You have cpts are you still not confident?
DO NOT let bingbong be your mentor
I think maybe you are searching in the wrong places, me and my friend entered the same programs and learned together and he recently found one without too much time since he entered the field.
pgp keys
tbh i dont feel confident in anything i do i just get on with it
i always feel like im just not actually good enough
negative aura brother, you have to believe you can be president
its okay to r-wordmaxx
Average guy in cyber
I feel that way too sometimes but i go back and talk to people and i realize ive grown
Its gonna always feel like that
like even going for certs man
Do the crto with me man
it doesnt feel anything special for me
im honestly down
tho before entering the chat I was cooking the CPTS modules. Don't!
Im like 1/3 through
thats what im tryna do i rly want IRL experience
ffs guys we have this convo every single fucking day
fact
if i can be do offensive security all day in a real environment and have good feedback then i know im fit for it
fully
you like report writing?
I see youre friends with wolo
I might not even finish the cdsa after i realized i can hold a good convo about blue team stuff now
I read it Rocket League 🥀
i like the finding part writing is the easier bit
@austere sinew ping
Who is wolo
LMAO
at least you didnt say you hate reports, thats 90% of the job
half the time you cant even find
i only learnt abotu using wireshark, event viewer, tcpdump, SIEM and thats ab it for blue team
you want to find?
for me ngl
be a threat hunter.
dont set him up for failure
Skids hunter
Learn about yara and sigma rules
Im an apt hunter
are these real terms?
Yes
if he cant pursue his dreams he should gtfo - and that goes for ALL of you
who made these names?
bro, Yara is my crush, don't say her name
is this just identifying whos involved in APT groups
oh lord
im dming her rn
promise me you didnt buy a writeup for CPTS, skidzz
You and Vaders looks like parents, just let him go he should find his own way.
NOOOOOOOOOOOOOOOO!
I can promise u i have not
70% of the doofs here cant even leave their house, how the fuck they ganna find their own way, they dont even try
i didnt even know that was a thing

LMAO, At least I may marry two.
i believed you until you said this part
i do hope you are not lying to me
youd just be lying to yourself
im not brother
What an assist!!
Hes a skid and a snitch
LOL
Gtg
see skidzz, the thing im keen on here is we have no mutual friends
nobody knows who the fuck you are
how do you expect to get a job

¯_(ツ)_/¯
start there
@remote iris I believe in you, just be motivated. Everyone’s provision is already destined for them.
go make one. osint me, and ill be your first friend
Ill add u homie
you want me to osint you?
Make a one, if you don't have github too then I'll bring my knife.
yep
add me on linkedin when you are successful
That looks arrogant. 😂
in what way?
His email is brath.adair12@gmail.com
LOL
this is my format bro
is that for realz
Yes
nuh uh
DDoS him.
CAP, doesnt exist
its arrogant? i know he wont do it, but if he does, I encouraged him to connect with me.
if you truly feel that way, L
Get baited noob
didnt get baited, just verified the source
dude i probaly wont remember this i am tired asf
im a burp suite monkey rn
this is my tab next to discord
but nah i wont be osinting here, i rather respect privacy of others
im public and if you want to take a step towards solving your stupid imposter syndrome woes, youll take up my offer
maybe you didn't find because of the respect
but if you dont, i do not care
You give him bounty if?
good to know
the bounty is trying to help him build a network.
i've retired from doing it years ago
olive branch is extended, when you are done gooning to valorant or whatever thing you waste your time on, take me up on the offer
no amount of osint will help him gain that confidence
Be right back.
Sorry if bothered anyone by mistake. Good luck skidzz
LMAO
im just demotivated cause i aint find a single bug bounty to do today it probs just takes hella time
HUH
i just verfiied you can osint me in 4 steps
tbf it is my first time doing bug bounties
thats fire and all but im not gonna do it
I can do it in one, just tell me the numbers on your credit card, the expiration date, and the silly numbers on the back
yes, continue to wallow away in self pity - but remember, im always willing to support people who help themselves.
it's not self pity
yes it is
LMAO
cap
dont cope with zoomer ebonics, take accountability for your situation and change it
im no cope, im just upset i couldnt get a bug bounty today to find for the first time
it's ok tomorrow is a new day
im gonna go sleep
it aint easy to find bugs in bug bounty
yeah it came to realization
in the end
I just remembered I forgot to buy a Powerball ticket
theres like 100k reports on bounties so far
most are either:
not big vulns
duplicates of the same ones
ohh is that wahht it jsut jmeans
cause i thoight it was like different bugs
youll probaly win big before skidzz gets his first bug bounty
bros bullying me
how many boxes do u have to do to get hacker rank
i feel like crying
cause i think i done like 20 in total
uhh i forgot
if theyre all active
probs not active
not really the amount of boxes, but they have to be active
ohh
yeah so 8 active should get you beyond hacker
damn
Add me pookie
Guys i think im gonna cry
why
I genuinely think I KNOW ABSOLUTELY NOTHING
wdym
good work, nice to see you back on LI
Youre ahead of the curve then
@vivid flower btw dms
fantastic, thats step 1
I had to switch to grapheneos to do it 
but i will
So i did this interview, they had me do this fucking web app test for free, then write them an enterprise pen test report
Now i have a good ban evasion setup i can make a new profile ez if it happens again
Then they invited me to interview
They started the one hour interview by grilling me
they were like we will grill you on everything until you say IDK
imagine grilling over a web app pentest, did you apply to a place with amateurs
thats some real shitty behavior
Yeah that was genuinely disgusting
no humour no nothing
it was a terrible experience
nobody who knows what they are doing would gatekeep over a web app pentest technical
if they thought you did poorly they wouldnt even entertain your application
They were like trying to get me to change my mind that if they set their cookies to HTTPonly, to prevent session cookie stealing, that would prevent their stored XSS vuln from being exploitable
I was like BRUH
XSS means arbitrary javascript execution
it does not mean cookie stealing
i just wrote that in there to show proof of impact
you should DM where you applied so i can ace their shitty technical and grill them
huh, I didn't get accepted to my AI competition
Are they fucking dumb
yeah it was a dumb idea
then they were like you missed a CSRF vuln
i promise you, these people have no idea what the fuck they are doing
look at this offering page LOL
ganna check employees on linkedin
?????
bro
yeah their employees hardly know anybody in the industry
i have almost no mutuals with anybody
dont sweat it, they were amateurs
A jobs a job, i need a job, I can't be picky, istg if I dont get through
i get it, but that is not how you do technicals
if they suck you give respectful feedback over email and move on
they must not be busy
They had me do a free pen test and then they grilled me on my report, ok if it was dogshit why interview me
HOLY FUCK
i had it at 5pm
so maybe not
out of curiosity was everybody indian?
no white as fuck
fascinating
This shit had me grinning
Oh that makes sense
it makes perfect sense
what does this mean
it means they are dumb as hell
yup
You shouldn’t
but they shouldnt make you feel that way
well, thats also not the point vader
you dont gatekeep in a technical
its unprofessional
i was like, ok is there a csrf vuln if i missed it and they said, "based on our conversation what do you think"
Bruh
BRUH
that is so impolite
I said, I tried testing it, but i didn't get a password change
yes
you know who my favorite hires have been?
people who get FUCKED the first time around and came back to spite us
i love that shit
consider this an opportunity
❤️
to fuck them up?
by? coming back?
Morning
yeah, then you surpass them
What did I miss
their standard was, first 8 months, want to be oscp qualified
why grill me like im a senior then
HOLY SHIT BALLS
I feel like a total dumb c
i know its not
dont alright, just try to take something from this experience
its certianly rare
dont be discouraged
in fact you should feel motivated
isnt CEH really ass
i thought id like this style of interview. Make a report, then they will ask me about it
yes, its a multiple choice exam
well most technicals dont require a report, just you to pentest live to a panel
has a practical component too now
so that alone was kinda stupid
CRT is also similar
if youre in the UK
well Ill know by friday
so atleast its quick
Apparenly the company im trying to get into requires a good report
So im trying to get better at that now
morning
well theyre an mssp, they need to know you can write a deliverable
the first thing id do is automate report writing, ghostwriter is a great choice
I need to study up how cookie stealing and all that works
Yeah! Learning ghostwriter rn
it makes sense, but a mssp is a really terrible place to work for pentesting
just, take my word for it
its the only way you can get started in AUS
if thats true, then yeah, keep your head up
im ready to be kicked in the butt, I even told them that, I like it when im wrong
youll do fine in the industry
yo
thank you man for helping me
youre a real g
please kick this user guys
?
sure, i dont wanna see you give up because you had an interview with OSCP elitists
they are basically redditors
<@&861185840277487616>
that doesn't sound "educational"
i would like to know abt it since it could happen to me
I think thats the right ping
hes a senior so deffo had more knowledge and experience than me
well my bad g, is that against the rules to ask?
if its illegal, 100% against the rules
Unkind and stiff, felt like im talking to trunchbull
being a good leader in cybersecurity is really important
hmmm
morning sparkling
why would you need a mentor tho
hi sparkling 🙂
i mean i was getting threatned by smb so i wanted to know how it could happen nad how to defend myself
he would be my future boss
that's different from learning HOW to RAT someone else's computer
If you are being threatened, best to go to law enforcement
when you are a senior, you mentor juniors
i can sure help people but mentoring is diff and fifficult
but yeah, your question did not make it look like you were being threatened but you wanted to RAT someone's pc
youre sus, youre new to discord, no rank, and your first interaction here is asking how to RAT someones computer
my other acc is limited
its an important skill, and you have mentored plenty of people here
being in a mod position is an opportunity to mentor

youre a g, people should be lucky to work for you
my employees seem to like me
u guys know abt that stuff?
isnt that what u guys do in this server
no
no bro
this is not a hacker for hire / we hack illegally
i think you are thinking about TryHackMe, they are experts at that kinda stuff
block button
we are all white hat https://en.wikipedia.org/wiki/White_hat_(computer_security)
A white hat (or a white-hat hacker, a whitehat) is an ethical security hacker. Ethical hacking is a term meant to imply a broader category than just penetration testing. Under the owner's consent, white-hat hackers aim to identify any vulnerabilities or security issues the current system has. The white hat is contrasted with the black hat, a mal...
yo i dont respond to ppl w no roles
he has cpts lmao
what are u on about
starting an interview with methodology is great, but then going into grilling every decision I made is holy fuck, frightening, it was a black box assessment, i could only assume what was happening in the backend
golam71 is blackhat confirmed he held me at gunpoint for my XMR
we hack illegally?!
no no
come on dude atleast should have started with grey first 😩
whats the difference between what u guys do and them
rest assured we all make major blunders early in our careers, i am no exception
LOL
we shitpost
we usually make money in a legal way
and they make money in a illegal way and often times they make less and end up in jail
also no need to be rude
but top people of both fields make the same ish tho
Ahh
quit replying g
ur a script kiddie though
No it was just frightening, dealing with clients is not the same as this, at all, im assuming people are dandy
Get Started with the HTB Beginners Bible: https://www.hackthebox.com/blog/learn-to-hack-beginners-bible
he still passed cpts
he passed CPTS
he is way higher level than script kiddie
why dont you read this to find out what hacking is all about
ok? i hold a certificate
doesnt matter if he did active boxes or no
Look @gaunt spear if you're gonna be rude to people who've been here for al ong time, you might as well leave. No place for rude/toxic people
don't start to be a dick thanks
ggs u run me
CPTS doesn't require you to do active machines
It does recommend you to do some of their retired machines
u run me man
There's like a whole CPTS track in Labs
yh i do g
@meager kernel I was wrong, i had the worst int in my life
is joe, joey?
its a running joke here, no its my bf
I read the chat, don't worry
Not everything is under your control, you did your best
They were shitty to you so best to move on
oh okay, just making sure
by the end i wanted to cry
i like joey alot, so it woulda been interesting if that was the case
i do too
Man they REALLY grilled you I see
yeah to the point like....I felt like I should quit pen testing
You know how you can get back at them? Hack them. (Jk)
i have a meeting in the morning, goodnight/goodday yall
I should do grc
Same to you
It's alright, just one bad day.
i love you for whatever you said to me, thank you, have a nice night
for this they better pick me
Anyone know how to go to sleep whenever you’re wound up
Let's see
Hopefully yes
its where you grow
bro got DC'd from the lobby LMAO
sadly, I don't
i have this issue big time, i go for a walk no matter how late it is.
issue resolved
XD
I wouldn't do that in my country 😂
Even with a gun
hmmmm
very nice, get a cert brother
Yea they give one cert token too
yep, use it wisely
you also get cjsa
ah, yeah
start there i guess
I was thinking of silver annual, but I don't need CJCA, so
You were saying earlier in the chat that getting certs and pentesting like how people do in HTB is not worth it, cause vulns irl are often quite small.
Am I misunderstanding that Convo?
If that's the case, should I get certs?
INE security really fucked up by messing up eLearnSecurity
*not
dont chase certs thats all im saying
there are too many
like, i think he means
Ah fair enough
True
and HR is not a good reason to have a cert
don't catch certs like pokemon
😂
HR is not part of the equation if you network
Yea
i promise.
Yea I already have referrals
wdym "if you network"
perfect
You're getting a referral
people vouch for you
ahhhhhhhh
gg
thats ez
I have 2-3 interviews lined up in the coming month
All through referrals
I need that luck 
Yea it kinda feels unfair sometimes that I'm getting places through family connections
I have people willing to refer me
Feels like nepotism 😭
everything is nepotism, dont feel bad
the world runs on it
Fair enough
I have 0 family connections
I have an option of joining an Indian tech service company
Or a multinational SaaS company
I should pick the multinational one right? @sharp shuttle
should love anything that gives you an edge, its called social engineering
i would, yes
In both I'll have role of pentester
i love SEing
i call it engineering serendipity
i did it to go to the bathroom in school, it's called LYING!
Thing is, joining the multinational one would be easier, cause my relative is vice president there
no idea what that word means
me neither but it's ok
what the
you really have family connections
I'm jealous
ser·en·dip·i·ty
/ˌserənˈdipədē/
noun
the occurrence and development of events by chance in a happy or beneficial way.
Ikr
That's why I used the word nepotism
Most people in my family are either in tech or medical
So it's very easy to get connections
luckyyyyyyyyyy
My sister in law's brother in law is the vice president in the multinational SaaS company, and he was a penetration tester too when he was young so he understands my field
Morning
The “we keep going until you say you don’t know” line
That line is not said to weak candidates.
It’s said when interviewers believe:
you can go further
they’re curious where the boundary is
they trust you not to bullshit
They are testing epistemic honesty, not knowledge volume.
One uncomfortable truth
Security interviews at higher levels feel impolite because:
reassurance hides signal
politeness reduces pressure
pressure reveals reasoning quality
They weren’t trying to be kind.
They were trying to be accurate.
Ok chat gpt is a wonderful cushiony best friend
i would if i wasn't doing a prolab
honestly didnt wanna do all the pivoting again
take it yaar
Oh
aur mujhe bhi dilaade
If they pay well
i'll move to india
Really?
You really would move to india for a job? 😭
whats a good way to write writeups
Not worth it IMO
Australia is better than India by a million miles
yes cuz i feel like shit rn
publishing or like something to write them with for now?
Nah dw yaar
You'll get it
Keep going na
I feel like im a restarted toddler who knows nothing
just writeups
i just need to build stuff for myself
i should go into grc
I need to work on writeups
tryna get a github going so i can prove my worth aswell
honestly i do everything in Obsidian icl#
gotta write more writeups
o really
If I get it, I'll give you referral too 🙏🏻
is obsidian that good?
its in markdown + you can use templating to make ur life easier
ok ji looking forward
i used microsoft onenote for my entire writeups for the exam prep
I think Obsidian is that good, pretty sure a lot of people would agree
It's the most feature-filled and easiest to use
but here's my approach: I ONLY write walkthroughs for active machines (of course, I release them after they are retired)
i regret it because i cant export it
in case i lose my account
or smth
ahhh i see
i will look into it
lowkey
yeah
looks clea
clean
i lost my writeup for the prolabs on dante and i raged and left the machine 😂
onenote did not sync it
im 6 flags in
yeah thaats what i do
im 50% in it
i think
it's not even difficult to do
someone said to me it felt like OSCP
can I ask you smth in dm? Dw i dont want a solution
yeah sure
Thats why I am doing this rn haha, OSCP exam is 18th january for me
yeah i wanna do OSCP but i dont have 2k to spend for it
so i might aswell do CRTO
would be fun playing with C2
My job is paying for all this thankfuklly
yeah jobs pay 4 it
i also convinced them to get me htb enterprise
they'll do it in new year
but i couldnt wait so i just bought dante myself yesterday
sticky situation
Honestly I'm not even sad this happened
imagine having reported a bug on h1 - that was now abused to breach
It was already waiting to happen
Lmao
It will definitely be used for blackmail, 100% sure
😄
@exotic pendant what's your opinion on this
Hahaha if they just release the data on dark web, you can actually find info like that
My info is leaked
kidding

😄
I don't think frost is kidding
@exotic pendant how much did you study HTB to get where you are

yeah looked like that whenever I visited it
thought it was shady at first because of how retro it looked
I found a vuln in a competitor site to this one, didn't report it for obvious reasons
plus I found it by accident
when hunting on something else
I think it was on shodan, not sure
Hunting for what? Study material? 😭
bugs
Definitely not man
There was even a page on Bugcrowd to report vulns
I reached ur heart
Don't
Let them get hacked
Imagine having to explain that to your parents
ikr
"no dad I wasn't watching any of that, just research stuff"
Yea even I wouldn't report that shit
I bet I can think of most attack vectors there
click HERE for (redacted)
ez phishing
Definitely
Ty for giving me for ideas for weekend
hackthissite goated
Dang one of the RCE didnt like but the others did
Reading - to make myself smarter
I have a iq of a pingpong ball when it comes to this stuff
when i grow up i want to be like papa frosto
I've shown i can pop calc.exe and other stuff lol
bro popped a calculator 💀
Popped?
that's right show em who's boss
me too
same
Havent learned much yet
python3 isn't linux coding, its just that you can run python on linux
which I guess is linux python? idk
Oh
I apologize if i sound dumb
nahhhhhh, its fine, we're all learning anyway 🙂
I got into this by accident by watching scammers get infected
just remember, stealing from a thief is also stealing/illegal
😄
Wb completely demolishing them?
illegal
Thats insane
Them commiting crimes has no barring on the legality of you doing things back
Robin Hood was also a criminal
2 wrongs don't make a right
🤔🫡
morally you can be wherever you want; but legally its still a crime
exactly
Stealing everything from a thief doesn't make one less thief
Ngl i just thought this stuff was fun and wanted to learn but ngl
go back to bed vro
depends if you believe in moral objectivity or not
Sitting in a room full of you guys scares the fuck out of me
the law doesn't care about the morallity of things
Even the legal side of it is fun, we got tons of labs to do all the *illegal* type stuff in a safe, controlled, and authorized environment so it remains legal
yo Emma, I had to install k3s again because k0s kept crashing its konnectivity agent and core-dns 
True i was interested in how people write viruses
There is alot of legal technicality's when you move from training
that is much more questionable legally 
I wasnt sure because as far as ik viruses =bad
depends on how you use them
but malware reversing & research is actually a really kewl field, you just have to learn C, Windows Internals, computing architecture and maybe some assembly
if you use them as part of an engagement you have permission for its fine
but if you use them to do crimes its not
The duck virus circa 2002?
That i knew
They explained that
never heard of it and ngl don't really care for old malware
It would pull random windows to your desktop
And it was a duck

Virus but
Yeah as far as malware goes that's pretty tame
Entertaining
real malware is always neat to look at
Real malware makes you think there is no malware but is injected into memory at run time 
Im glad ive never encountered it i remember seeing ransomware one time
*ehem* PhantomRaven *ehem*
¿
I mean I haven't really seen anything THAT sophisticated yet, I've only seen things like Mozi and some stuff from the KongTuke family
It was pre 2010
It's in PhantomRaven...
After 2010 i havent seen anything tbh
well not exactly injecting into memory straight away but uses a post-compile script to fetch and inject malware into binaries
Keep track of however long they Ghost you then ghost them for the same amount of time
the KongTuke ones I was looking at were a bunch of heavily obfuscated powershell scripts that run a bunch of others in memory. I was always a bit too slow to get the third script in the infection chain because it'd get taken down or move
They're not liking my current RCE that I've even popped calc.exe and cmd.exe for demo
windows defender would crack down that pretty quickly
on Riot
I was perfecting my workflows for threat intel 
You'd think but AMSI is surprisingly easy to bypass
Actually i lied
My ex got hit with a 3rd party cookie attack?
Whatever thats called
l33t soc alerts
I see that it does that but is it really high impact?
- your triager probably
why not?
Triage?
I just need some pizza to recharge this battle
no sir, you need sleep
I get alerts and stuff every 20 minutes from the n8n script and I'm storing the IPs from the alerts in redis to do more research on them 😄
it';s 2 am
I'm drinking iced tea to recharge
According to whatever AI google feeds me nowadays:
Bug bounty triage is like being a
doctor in a special bug hospital. When someone finds a "bug" (a security problem) in a company's website or app, they send a report to this hospital.
The job of the triage doctor (the "triager") is to check out the bug report and decide how sick the bug is and what to do about it
oh, thats nothin
stay up more
/j
I'll just make a blog post of the Riot finding
What is the Channel for HTB academy support?
Need some help? Learn how to reach the support team on Academy.
@nimble parcel
Discord doesn't have official support
If you need help witha module #modules - if you really need support , visit the link above
btw, I have a quick question
HURRY UP 
My brain
YOU EXPECT ME TO HAVE 500 WPM
anyway
basically me everytime I touch HTB labs
Sometimes i feel like i need a old crtv to lick the screen and maybe thatll help me
for CVEs, does it HAVE to be connected to your full legal name if you found it?
no you can put it under whatever alias you want
no
I have some under frost
heck pretty sure you can even just be anonymous
iirc just do all Active Easy boxes and you should get to hacker rank
plz gib
I see, but how does one know if a CVE is connected to this person
there must be some sort of proof
you put your whole legal name... 
wut
CVEs are just records of vulnerabilities, either you take the credit or dont

the name you put on it is the proof
I mean if they pay i would xD
ic
Wsp turboheckers
I think some platforms do provide a letter of authenticity or something idk
Where is the elite?
I'm more officially known as DonutMaster
I found two more false positives in Intel RAID drivers

is bro even getting paid to find all these?
@exotic pendant adopt me
That's right

DonutMaster is dope already
nope
might get something good though
would a company be embarrassed cuz "DonutMaster" found a big vuln on there company 
few CVEs
so why you no do box season yet? 
I might take a break from bug hunting
bruh there's no interesting malwares on malware bazaar 
after this riot one
perhaps money
no time 
gotta study
What riot one? As in their anticheat or the game itself?
and yet bro has time to hunt
HUNTING TAKES LONGER
here is one CVE i have under frost
but it gives you money
CVE-2024-11233
takes 10-15 mins
maybe 30 min to test
he just said he wasn't getting paid 
How much monies
too much mirai malware
huh
the riot client
Lowest highest?
you can zero in on vulns quickly, or vuln code patterns. validating is the hard part
and testing
Ah I see
Ooo
depends
Lowest is 0$, highest is 2 Million$(?) from apple probably
it can be from $0 to $500,000
yeah, 2 mil makes more sense
Heloooo
Id be happy with enough for a snack
