#general

1 messages Β· Page 314 of 1

lapis grove
#

I'm connecting via openvpn, not using pwnbox at all

eternal mango
#

You seem to be connected to multiple VPNs, which suggests multiple openvpn processes using configs from your account

#

You have an active Pwnbox

#

(if your username here matches on HTB)

#

Oh, did you just delete it?

exotic pendant
#

πŸ˜„

lapis grove
#

yes, same name

#

did not delete

eternal mango
#

I'd advise checking for any latent openvpn processes, or just rebooting the VM / machine you're connecting from

#

I'm still seeing connections to multiple lab types.

#

Wish I could help further, but that's all I've got. Support would be your next step.

lapis grove
#

I'm not even logged into academy

eternal mango
#

I didn't say Academy

lapis grove
#

only the main platform

merry pagoda
#

hi

olive marten
dusky jacinth
# lapis grove only the main platform

Check on the machine you’ll be using as your attacker machine for any openVPN processes that are running and try to kill them. Or just restart your VM and that should work as long as it connect to the VPN properly again

#

There is no logging into academy or labs except for when you actually login to your account on the website

#

You just sudo openvpn /path/to/VPN/

eternal mango
#

Only seeing one connected server now @lapis grove - is that looking better?

lapis grove
#

I killed all vpn processes

eternal mango
#

As for the "padlock icons", where are you seeing those specifically?

lapis grove
#

On questions for the labs, for instance, the starting point machine "Unified"

eternal mango
#

Have you clicked "Spawn Machine" again since fixing your connection?

lapis grove
#

Well, I haven't started a new VPN connection yet, but the website says I'm connected to 10.10.15.10

#

If I do a ip addr, I am not connected to anything

eternal mango
#

I'm not sure what else to say then. There must be another openvpn client connected with your account somewhere

#

I'm seeing the same that your account is still connected

nimble tundra
#

Others when they are bored -
"let me go out and touch some grass"

#

Me when i am bored -

proper fractal
upbeat tangle
#

picture of anime girl with weeb name xD

proper fractal
#

htb makes me think my brain hurts

#

lol

#

I've spent the last 94 hours on last resort and still can't find the flag even with code execution rofl

nimble tundra
#

-# joking

#

magetsu please don't kill me

upbeat tangle
#

lol

proper fractal
#
what's a femboy
upbeat tangle
#

I am blissfully ignorant

proper fractal
#

lmfao

nimble tundra
lapis grove
#

I've logged out and back in, and the site says I'm still connected to 10.10.15.10

#

weird

eternal mango
nimble tundra
#

i am sorry mods πŸ’€

nimble tundra
#

ohh nvm

#

i was not the target

eternal mango
#

e.g. to eu-starting-point-vip-1

terse dirge
proper fractal
#

sounds like aws is being mean πŸ™

terse dirge
#

Awful Web Services

proper fractal
#

Please help please

#
<?php
echo "ok now what?";
?>
eternal mango
#

Ok.. no more connection showing @lapis grove.. there must be another openvpn client process running somewhere with your old US config

#

If you download the fresh ovpn and try, you can at least confirm you're able to access. You could then try switching back to US. New key means old one has been revoked, so hopefully wherever that old process is, it will stop being a pain

proper fractal
#

sudo pkill -f openvpn?

eternal mango
#

They said they already killed other openvpn processes

proper fractal
#

ah

#

can't you just use grep to find the proc that's running

#

or htop

eternal mango
#

If they killed all, then the process must be on another machine

lapis grove
#

I connected to eu

eternal mango
#

and I don't have hands on lol

proper fractal
#

πŸ˜›

eternal mango
#

You can either stay there, or try switching back to US. If that connection comes back, then yeah.. there's another openvpn client running with your config somewhere forgotten and alone

#

There's no Pwnbox

#

Can't help any further than that I'm afraid, sorry. Good luck

lapis grove
#

But I still have padlocks on most things

#

It's acting like I'm not VIP

terse dirge
#

@lapis grove contact support

west lynxBOT
eternal mango
#

The questions only unlock once the relevant machine is spawnedf

#

You do not have a machine spawned on starting point eu

lapis grove
#

Is there something I could be doing to cause any of this?

eternal mango
#

Machines do not move with you when you switch labs

eternal mango
#

Ok, so now Unified is deploying

lapis grove
#

spawning now

eternal mango
#

Once it's done, the questions will unlock

fierce vale
#

are you running multiple vpn connections from multiple computers? I've noticed the website does not like that at all

lapis grove
#

no

eternal mango
#

We've gone over that already πŸ˜…

fierce vale
#

and sometimes the web panels take time to synchronize with actual connections, don't know why

eternal mango
#

That looks to be active now @lapis grove, are you seeing the questions

lapis grove
#

yes, the machine is spawned, but questions 9 on are still padlocked

molten bobcat
#

Work has slowed

lapis grove
#

after a page refresh too

eternal mango
#

Have you completed the previous tasks?

#

Some tasks have pre-requisites

#

Anyway.. done as much as I can, if you continue to have issues please contact support as Ceald suggested

lapis grove
#

yes, I completed 1-8

maiden anvil
#

@zealous charm IOS auditor coming soon

eternal mango
#

If so, then yeah.. support is the next stop, sorry.

maiden anvil
#

@zealous charm I actually might need your help testing Issues because I dont have a pro license on this machine. looking very good tho

#

yaml profile working quite well with regex for rules as well

upbeat tangle
#

Is it donald trumps fault that something that cost 25 dollar cost 31 for europeans? xD

#

6 dollars tax on a 25 dollar subscription, thats actually mental

#

i actually dont get it why theres two different plans, one in the labs and one on the academy

upbeat tangle
#

So the unlimited pwnbox usage would transfer from the academy to the "free" labs then?

meager kernel
#

@terse dirge why is hyprland the most used window manager?

#

In linux

terse dirge
terse dirge
meager kernel
terse dirge
meager kernel
#

In WMs, there's no option to "minimize" an app right? Like in DEs

meager kernel
#

Normal DEs and windows and Mac allow you to minimize an app

#

So that you don't have to send it to another workspace

terse dirge
#

just move it to a different workspace if you want to "minimize" it

meager kernel
terse dirge
#

no

#

not really Kappa

meager kernel
#

You go to that workspace, then send it back to your workspace

meager kernel
terse dirge
proper fractal
#
read -rp "Enter iOS app dir: " app_dir && [ -d "$app_dir" ] || { echo "Invalid dir"; exit 1; } && . /etc/os-release 2>/dev/null || exit 1 && { [[ "$ID" == "debian" && "$VERSION_CODENAME" == "bookworm" ]] && os="debian"; [[ "$ID" == "kali" ]] && os="kali"; } && [ -n "$os" ] || { echo "Unsupported OS"; exit 1; } && sudo apt update && sudo apt install -y lzfse binwalk ghidra radare2 ${os:+kali-tools-reverse-engineering} build-essential cmake libz-dev && command -v lzfse >/dev/null || exit 1 && cd "$app_dir" || exit 1 && mkdir -p decompressed_files && for f in *.values.json.lzfse 2>/dev/null; do [ -f "$f" ] && lzfse -decode -i "$f" -o "decompressed_files/${f%.lzfse}"; done && exe=$(find . -maxdepth 1 -type f -name "$(basename "$app_dir")") && [ -n "$exe" ] && { file "$exe"; strings "$exe" | grep -iE "http|api|url" | head; codesign -dvvv "$exe" 2>&1 | grep -E "Identifier|Authority|TeamIdentifier|Sealed" || true; } && [ -f Info.plist ] && plutil -p Info.plist | grep -E "NS.*UsageDescription|CFBundleIdentifier|CFBundleVersion" || true && find . -maxdepth 1 -name "*.html" -exec sh -c 'echo "[HTML] $1"; grep -iE "http|script|src=" "$1" | head' _ {} \; && find . -maxdepth 1 \( -name "*.png" -o -name "*.mp4" -o -name "*.caf" \) -exec sh -c 'echo "[MEDIA] $1"; binwalk "$1" | head' _ {} \; && find decompressed_files -name "*.json" -exec sh -c 'echo "[JSON] $1"; grep -iE "http|url|api|endpoint" "$1" | head' _ {} \; && echo "Analysis complete."

if ur trying to reverse the file u can do that for an example

meager kernel
meager kernel
#

I'm on phone and about to sleep

#

How does your WM manage multiple monitors?

civic lance
#

@terse dirge Have u taken Calculus 3 calsses?

meager kernel
#

Does it have seperate workspaces for seperate monitors?

#

Like workspace 1-5 on monitor 1 and workspace 6-10 on monitor 2?

maiden raptor
#

guys I still haven't received my Season 9 awards, is that normal?

eternal mango
#

You will receive them, they don't get sent instantly. Give it a bit of time πŸ™‚

terse dirge
maiden anvil
# proper fractal whats the end goal

the goal is already completed, cisco IOS auditor extension for burp suite. I am just troubleshooting bugs rn. Issues requires a Pro license for Burp

terse dirge
proper fractal
eternal mango
meager kernel
#

Does hyprland work with Nvidia?

#

Or will it give issues?

proper fractal
#

Not gonna lie the $400 is worth it for burp pro

upbeat tangle
#

@eternal mango thats unfortunate

terse dirge
upbeat tangle
#

@eternal mango maybe add a tax free crypto option so i can stick it to the man Kappa

terse dirge
#

Nvidia on linux is notoriously bad

eternal mango
meager kernel
proper fractal
upbeat tangle
#

@eternal mango well u know what they say... cant clean the stripes out of zebra

terse dirge
#

your wm manages your workspaces, not your waybar or polybar

meager kernel
meager kernel
meager kernel
#

Tbh Nvidia does perform pretty well

proper fractal
meager kernel
#

By the time my bachelor's degree ends, I'll upgrade my PC to better specs

terse dirge
proper fractal
#

I feel u i got a 980ti still im not changing it until it dies lol

meager kernel
terse dirge
proper fractal
meager kernel
terse dirge
meager kernel
proper fractal
#

i3 is a windows manager right?

terse dirge
proper fractal
#

oh word it looks cool

meager kernel
#

Well let's see

#

Might just stick with windows 😭😭

proper fractal
#

I'm a debian guy

#

but i main windows to play video games lol

meager kernel
fair mauve
proper fractal
meager kernel
#

I absolutely cannot sit and tweak my games to run them on linux (I'm talking about tweaking proton versions and experimenting shit)

terse dirge
meager kernel
#

Some steam games redirect you to their own launcher
Like Witcher games open CD Project Red's launcher
Assassin's creed opens Ubisoft Connect
GTA and RDR opens Rockstar launcher

meager kernel
heavy oak
meager kernel
#

I've tried running games on linux

#

And I still feel, windows is better for gaming

proper fractal
upbeat tangle
#

@meager kernel games work just fine on linux for me

meager kernel
#

Every game I check through ProtonDB requires a bit of tweaking

heavy oak
upbeat tangle
#

@meager kernel i dont play anything super demanding anyways

meager kernel
#

Every comment under ProtonDB games says that you need to tweak some options and it's different for different distros

eternal mango
#

Roguelikelife πŸ˜„

upbeat tangle
#

@meager kernel but my wife put on sims 4, i just slapped compability with proton 10 on that and ran it, works perfect without any tweaking

untold fiber
#

I dont trust protonDB ratings

proper fractal
#

same

eternal mango
#

Heaviest game I tried was No Mans Sky.. but that's not exactly new any more I suppose

meager kernel
#

Same

untold fiber
#

the community will be like "it runs great! only minor bugs"

meager kernel
#

Heaviest game I tried was Crysis

heavy oak
untold fiber
#

and then the bug will be that the main shop doesnt open rendering the enter game unplayable

proper fractal
#

security isn't an illusion trust me

meager kernel
young glen
#

βœ…

upbeat tangle
proper fractal
#

no one is watching or listing meanwhile at the nsa hello world!

untold fiber
#

I just wont play things that arent linux native on linux

meager kernel
#

Anything but admitting that the game didn't run on linux

untold fiber
#

everything I do on linux is easily virtualized

#

but the things I do on windows are not easily virtualized

meager kernel
#

True

untold fiber
#

so it makes far more sense to have bare metal windows with virtualized linux than the other way around

proper fractal
#

oh god half the time standbox doesn't even want to run

#

sandbox

meager kernel
#

If I wanted to emulate every function of a windows computer, I'll just run windows

proper fractal
#

wait kali undercover?

heavy oak
heavy oak
terse dirge
#

I'd still fight with mingw before I use a windows vm tho

upbeat tangle
#

@meager kernel the reason i even went full to linux anyway is because of i dont like microsoft anymore. so if my gaming experience is worse thats fine i will live with it. i will not compromise

proper fractal
young glen
meager kernel
heavy oak
proper fractal
#

Microsoft security team does respond pretty quick tho

upbeat tangle
#

@meager kernel You can try to seperate the art from the artist all you want on this case, they will find a way to shove their spyware up your place sun dont shine regardless what you do

meager kernel
#

Also, I pirated my windows, cause I don't wanna pay them

heavy oak
proper fractal
meager kernel
#

Your IPS spies on you

proper fractal
#

now how do i get the xbox one to run powershell lol

meager kernel
#

The government spies on your internet history

heavy oak
meager kernel
#

Your phone spies on you

#

If you wanted privacy, pretty sure you won't be on discord

upbeat tangle
#

@meager kernel i know this xD but i have actually a good ISP that fights against chat control and stuff like this

proper fractal
heavy oak
upbeat tangle
#

@meager kernel its expensive internet, but its premium ISP u know so. u get what you pay for

proper fractal
#

my internet is like 580 down and 670 up rn

meager kernel
#

My internet is 1000 MBPS for 30$ per month

proper fractal
#

i bet if i turn my vpn off it gets horrible lol

#

i had starlink for a while but i didn't like the not having root to my modem part

#

it was fast as crap tho

heavy oak
#

Your devices can only process a certain amount of data so what does it matter how fast your network receives it. Gets GB speed internet but the laptop can only process 200MB/s tops

lime trout
#

the limiting factor in most cases in the server your downloading from, or your network card

#

using big pipes takes work

#

latency matters more imo

proper fractal
#

root 104499 0.0 0.0 8224 2628 pts/1 S+ 22:29 0:00 iperf3 -s
Testing TCP bandwidth on localhost...
Connecting to host 127.0.0.1, port 5201
Accepted connection from 127.0.0.1, port 39484
[ 5] local 127.0.0.1 port 39496 connected to 127.0.0.1 port 5201
[ 5] local 127.0.0.1 port 5201 connected to 127.0.0.1 port 39496
[ ID] Interval Transfer Bitrate
[ 5] 0.00-1.00 sec 2.19 GBytes 18.8 Gbits/sec
is this fast?

heavy oak
lime trout
#

eh, depends on usecase

#

but 500Mbps is probably more then enough for most

#

unless your insane like me

proper fractal
#

you need to be able to transfer files in the speed of light

heavy oak
#

It's a flex, but not a necessity

lime trout
#

aka localhost

proper fractal
terse dirge
lime trout
proper fractal
lime trout
#

i have 2 40gbps T1 transit links

#

that i use quite heavily

#

(40 to HE, 40 to cogent)

frozen zinc
#

SleepTheGod

heavy oak
zealous charm
#

how to hack??

lime trout
#

if you hate yourself, tor exit relays

#

Thankfully my ISP(me) is chill

#

Linux mirrors is also a good option

proper fractal
#

im guessing they don't throttle you much

lime trout
proper fractal
#

oh god i didn't see that

lime trout
#

and a couple ipv4 & v6 blocks

heavy oak
lime trout
heavy oak
lime trout
#

not t1 as in old fashion t1

proper fractal
#

hellabytes

lime trout
#

T1 as in Tier 1 backbone carriers

#

since i have my own ASN/Blocks i need to announce

proper fractal
#

must be a nice datacenter

lime trout
#

depends on which one

#

one of my PoP's is nice

#

the other one is meh

heavy oak
frozen zinc
#

@proper fractal glad to see you here man, i follow you in github since ages and always love to look at your code

lime trout
#

i ran my home connection without v4 NAT for a while

#

run some exit relays, linux mirrors

#

i just enjoy using as much bandwidth as possible

proper fractal
lime trout
#

its fun when im over 1PB/month

#

it tickles my brain in the right way

heavy oak
granite bay
#

Hello there

#

When the new season will be out...?

molten bobcat
dusky jacinth
#

It’s a gloomy one td

alpine pumice
#

Season 1 Merch Designed by Mrs. Soup πŸ‘•: https://dungeon-soup-shop.fourthwall.com/collections/season-1-collection

This is a compilation of the entire first season of the Chaotic Good Barbarian, over 2 years in the making! Here's to many more :)

πŸ§™ Support me on Patreon: https://www.patreon.com/dungeonsoup

✨ Subscribe for more: https...

β–Ά Play video
wet whale
#

Anybody know when the next season is coming out?

narrow marsh
#

Hello everyone. I'm thinking of preparing for the OSEP exam. Has anyone prepared for or taken the OSEP exam before? What should I pay attention to, where might I waste time, or what are some other suggestions?

viscid sparrow
#

second vid is more about the "lootbox" i was talking about

alpine pumice
viscid sparrow
#

gambling mechanism but packaged differently (that's basically all of modern business nowadays, rebranding strategies to the populace in different ways that have already been done in the past)

alpine pumice
#

dark patterns

eternal mango
#

I mean, thanks for the videos, but I have been around a while πŸ˜… Dark patterns indeed

#

No offense intended

viscid sparrow
#

haha im pretty young so i think this is deep

#

but yeah it's funny to think how this applies to games that im addicted to

#

ahem clash royale

eternal mango
#

Greed, at its finest

viscid sparrow
#

and there's other games that are not as predatory like tetris or chess but those don't have as big of a player base

#

especially tetris

eternal mango
#

But hey.. they make bank

#

lol

#

resists urge to go into tears in rain monologue

#

Remember winning a Game Boy from some magazine when it came out, playing Tetris on that little green screen

#

Maybe a bit after.. doubt I have been able to hold onto a memory from when I was 5 hahah.. but definitely formative

frozen zinc
heady sage
carmine pecan
#

Alaska

terse dirge
#

Damn, this rot maxing weekend is awesome

acoustic pelican
#

Bro i made a contract with chat gpt and god

#

push me luck to respect it bro

#

it's gonna be hard

terse dirge
carmine pecan
#

ok I push you luck to respect it

#

whatever that means

mighty frigate
#

Sup everyone

carmine pecan
#

sup

acoustic pelican
#

actually build practical projects that can lend my a job because I have a lot of issues.

#

Play games only 3 hours a day

carmine pecan
#

and you promised to do starting tomorrow out of the blue

#

with no plan

#

no contigency ideas

#

no processing at all?

#

Good luck

molten bobcat
#

I play tons of video games and I'm doing fine

nimble tundra
#

anyone up for infinite chess ?

lethal crane
#

Hola

civic shore
#

gm

remote iris
vivid flower
carmine pecan
#

But opponents always give up on me

#

Before the opening was done

nimble tundra
#

i sent my queen 5 km away for a epic sniper checkmate

#

but still got checkmated

#

shit

carmine pecan
#

πŸ—Ώ

dusky jacinth
#

Turns out it was not the FTP login that needed brute forcing

#

fml

#

i'm gonna be here a while

winged ridge
#

be a pirate or join the navy?

carmine pecan
#

@fast isle

#

Can you explain this?

dusky jacinth
#

Dude 10K is crazy

cloud rampart
#

10 thousand dollars is a lot

#

do it

vivid flower
#

Just ignore people like that

dusky jacinth
#

you're worth way more than that

vivid flower
#

Hacker for hire is never worth it

placid torrent
dusky jacinth
#

tell hiim to make it 30

placid torrent
dusky jacinth
#

and then take the money and run

placid torrent
#

Don’t do those stuff mate

#

Its never worth it

vivid flower
#

Okay unironically heres what you do: say "i cant do that job but i can refer you to someone who can" and then refer him to an xmpp+otr account you control

#

Dont discuss any of that on discord

carmine pecan
#

lol I am not interest in black hat stuff today

vivid flower
#

Good its not worth it

carmine pecan
#

black hat was worth it when I was like 15 and had nothing to lose

#

not worth it anymore

placid torrent
#

Just like that you run away

zealous charm
#

Blackhats are just grumpy because they’re not skilled enough as much legitimately waz

proper fractal
dusky jacinth
#

Yeah you get to XSS

#

we don't

#

smh

carmine pecan
#

think about that

proper fractal
#

onload=alert(%60is%20this%20xss?%60);

alpine pumice
#

fish n chips on the menu tonight boys

carmine pecan
#

is this xss?

dusky jacinth
#

YoU mEaN lIkE mR rObOt

carmine pecan
#

YUENIEROO

dusky jacinth
#

shit

#

he's on to me

vivid flower
proper fractal
#

i think whitespace coding xss vectors are weird to me i don't understand them 😭

carmine pecan
#

Not understanding something is half of the way there to sort of kind of understanding it

#

you doing good

terse dirge
proper fractal
carmine pecan
#

Not on discord

#

so it was a fail

proper fractal
#

ofc

carmine pecan
#

Go find a discord zero day

#

if you can't do that just like... ban yourself from this server

#

now

dusky jacinth
#

okay πŸ‘

carmine pecan
#

immediatly

proper fractal
carmine pecan
#

I WILL CLICK

zealous charm
#

What is %60 backticks? Why bot %22 or %27

vivid flower
proper fractal
zealous charm
#

I’m on mobile so don’t hate if my url encoding is off

#

Yeah but backticks wouldn’t be needed here

proper fractal
#

true they don't but I use it for waf evasion

dusky jacinth
#

guys you can't xss your friends on discord

zealous charm
#

Because you already are using parenthesis

dusky jacinth
#

they hate us fr

proper fractal
#

why does discord allow electron with websockets 😭

dusky jacinth
#

who's idea was it to make my dumbass brute for with fucking rockyou hm?

#

who came up with this?

proper fractal
#

some guy

dusky jacinth
#

i'm already going 64 threads

alpine pumice
proper fractal
#

probs the guy that made printer firmware

zealous charm
#

Probably the same dude who uses parenthesis with backticks for XSS

dusky jacinth
proper fractal
#

Ima use openssl so we good

maiden anvil
dusky jacinth
#

booooooooo

maiden anvil
#

went fishing today with grilled chicken but no bites thonk

dusky jacinth
#

damn

proper fractal
#

the springboard for ios is interesting

dusky jacinth
#

who new fish were racist

#

knew**

maiden anvil
proper fractal
#

that's the first thing that trigers when the device powers on heh

#

it's the user interface loader

lofty warren
#

mornin' fellas

proper fractal
#

it's 8pm your in the future? what's the future like?

#

lol jk

sharp shuttle
alpine pumice
#

Brath did you lose power a few days ago?

#

ours was up the whole time here

sharp shuttle
#

i had close calls but no

dusky jacinth
sharp shuttle
#

lights flickered is all

#

im rural so i was pretty surprised we didnt lose power

zealous charm
maiden anvil
#

Im even thinking of adding another LLM to the extension so that an adversary LLM is prompt injecting into the target LLM

terse dirge
proper fractal
lofty warren
proper fractal
#

sudo apt install girlfriend -y; it said no package found πŸ™

#

foreveralone 😭

meager kernel
#

Just use linux and rice a girlfriend into existence

carmine pecan
#

rice a girlfriend

#

🀯

lofty warren
proper fractal
alpine pumice
#

chatgpt will be your gf

proper fractal
#

Just keep telling ai you are going to make it real it will understand you

#

🀣

formal temple
#

hi

alpine pumice
#

we're being replaced

carmine pecan
#

"created her AI husband [...] based on a video game character."

#

yup

#

replaced indeed

proper fractal
#

I want you to act as my girlfriend and only respond as my girlfriend your name is now bae do not break character

carmine pecan
proper fractal
carmine pecan
#

ASLR ?

proper fractal
#

kernel32.dll bypassed uwu

carmine pecan
#

what the very

proper fractal
#

reeeeeeeee

#

ima go to bed now

#

gn

carmine pecan
#

gn

dusky jacinth
#

Still haven't cracked it yet

carmine pecan
#

Try some love

#

πŸ”¨

#

-# the name of the hammer is love

dusky jacinth
#

you right

#

nothing's ever been not brute forced by a hammer

#

I know what the password is too already

#

But I'm doing it the correct way, and this feels insane kinda

#

also

molten bobcat
#

Workin for

#

The man

dusky jacinth
#

when you download passwordlists on the 2.0 UI, they don't download as zips

#

they default to .list files and I had to change it when saving. Not really a big deal, but something I got stuck on cause I couldn't figure out how to decrypt this damn file

#

then was like, wait

#

how tf do you decrypt a non-encrypted file?

#

oh that's right, you don't unless the file's extension has been

#

yippeeeee

molten bobcat
#

File extensions don't matter

dusky jacinth
#

This year I learned i'm an idiat

#

well I can't unzip a list file

molten bobcat
#

A file signature is data used to identify or verify the content of a file. Such signatures are also known as magic numbers or magic bytes and are usually inserted at the beginning of the file.
Many file formats are not intended to be read as text. If such a file is accidentally viewed as a text file, its contents will be unintelligible. However,...

#

What a difference

#

A day makes

#

🎢

#

24

#

Little hours 🎢

dusky jacinth
#

c1oud this is exactly what I am talking about

#

how the fuck was I supposed to figure that out

#

who taught you this

#

where did you learn

molten bobcat
#

My friends πŸ™‚

dusky jacinth
#

fair enough

#

I don't have those, so that makes sense

molten bobcat
#

I find that the bonds we share with one another strengthen us in one way or another

dusky jacinth
#

I should probably be more cool about asking for help tbh

molten bobcat
#

Nothing wrong with being stuck or confused

#

That's basically the human condition

dusky jacinth
#

I've been kinda just brute forcing this whole thing. I probably would've been finished already if I just straight up said "yeah I got no clue what's going on here"

molten bobcat
#

Well brute forcing ftp is silly

dusky jacinth
#

damn ego

molten bobcat
#

I could have told ya that

dusky jacinth
#

no it's smtp

molten bobcat
#

Brute forcing that is sillier

dusky jacinth
#

well that's what i'm brute forcing against

molten bobcat
#

Brute forcing is very rarely the answer

dusky jacinth
#

it's not for that

molten bobcat
#

Just an fyi

terse dirge
#

brute forcing is also hella noisy πŸ˜„

dusky jacinth
#

I mean all I had was a username I got and the provided password list from the resources

molten bobcat
#

It's hardware dependent too, and they can't make challenges based around who has more money to spend lmao

dusky jacinth
#

but that didn't work

#

and I would've tried grabbing the hash from the sql server, but I couldn't get in

molten bobcat
#

There's a difference between bruteforcing and password spraying

dusky jacinth
#

and I tried anon login on the other services

#

well the difference is password spraying is one password across multiple usernames right?

#

cause i'm doing the opposite rn

molten bobcat
#

Password spraying is testing default creds against multiple users

#

To see if any of them match

dusky jacinth
#

and I can't RDP either cause no hash or pass

molten bobcat
#

So if you have a list of creds

dusky jacinth
molten bobcat
#

You need to determine which creds match which user

dusky jacinth
#

but glad you cleared up the distinction

molten bobcat
#

Cuz otherwise you have a list of nonsense strings that don't mean squat

dusky jacinth
#

I got the username from the nmap scan and you can also get it with the userlist and smtp-user-enum

molten bobcat
#

It's important to get definitions accurate in the field so I apologize if I ever sound like a grammar enthusiast

dusky jacinth
#

No I get it

molten bobcat
#

It's also ten minutes until my shift ends and I'm tired

dusky jacinth
#

better I can accurately define what i'm talking about than be a kid who knows not enough to be safe but to much to be dangerous yknow

#

real

molten bobcat
#

I wanna play fallout I think

dusky jacinth
#

You do you

#

Which one?

turbid goblet
#

hi im new here

dusky jacinth
#

hi

terse dirge
turbid goblet
terse dirge
dusky jacinth
#

My name is

dusky smelt
#

paracetamol

dusky jacinth
#

did you just put a spell on me?

tiny basin
dusky smelt
#

more like a spell is casted onto me somewhere today

#

got some credentials and none is working idk if it's supposed to be like that

dusky smelt
#

yeah

tiny basin
dusky smelt
#

MonitorsFour

tiny basin
dusky smelt
#

okay

civic lance
#

What do u guys think of the idea of studying over the winter break?

dusky jacinth
#

I mean I'm doing that rn

#

but there's no such thing for me

#

I got a office job

tiny basin
civic lance
#

Im looking online and reddit post

#

and so many ppl are opposed to the idea

alpine pumice
#

so close 8 more weeks

civic lance
#

and Im like is it that bad?!

dusky jacinth
#

Studying is never bad

#

don't get me wrong it doesn't make you smart either

civic lance
#

Yeah obviously, but to be ahead of ur classes

dusky jacinth
#

but at least when you study you'll know for a fact you don't know something

#

and that's better than thinking you do ig

civic lance
#

Like one of the biggest argument is burn out

#

and its like

#

Obviously your not going to study for hours on end

#

Maybe a light study session

dusky jacinth
civic lance
#

spread out

dusky jacinth
#

I enjoy studying

civic lance
#

Are u in college?

dusky jacinth
#

I actually probably study for about 4 hours a day

civic lance
#

Damn

dusky jacinth
#

Nope I have a job

#

40 hours a week

civic lance
#

so why study?

dusky jacinth
#

because I want a better job

civic lance
#

Oh what is ur job?

dusky jacinth
#

and I want to be good at this becuase I think it's fun

alpine pumice
#

bruh you never stop learning in cyber

dusky jacinth
#

and you never stop learning as a whole

civic lance
#

He didnt say his job is in cyber

dusky jacinth
#

it in tech yeah

#

i work in IT

civic lance
#

Oh

#

oh okay mb

dusky jacinth
#

im a L1

civic lance
#

L1?

#

OOh

#

level 1 support

dusky jacinth
#

correct

nimble horizon
#

hello guys, im new here

dusky jacinth
#

hi new here

maiden anvil
sharp shuttle
#

You are an AI and networking specialist?

dusky jacinth
#

No

#

I think just AI

nimble horizon
#

Tbh i can agree

maiden anvil
dusky jacinth
#

crabman

#

favorite boss?

maiden anvil
#

yo what it do famalam

#

hmm....

dusky jacinth
#

DS1

#

obvi

nimble horizon
#

does ds3 count

maiden anvil
#

Im gonna go with Artorias

nimble horizon
#

nameless king is fun

dusky jacinth
#

yeaaahhhhhhhh

nimble horizon
#

or was,

dusky jacinth
#

Artorias is goated

nimble horizon
#

Yes

sharp shuttle
maiden anvil
#

Pontiff Sullivan for DS3

dusky jacinth
#

you should probably answer him

nimble horizon
#

Nah Im about to graduate with my undergrad in cybersecurity

maiden anvil
#

hbu you guys?

dusky jacinth
#

Nameless king is honestly a great fight

sharp shuttle
dusky jacinth
#

Brath you mean YOU will grill him

nimble horizon
#

Yeah i dont intend to, why would I lie if im tryna learn shit you feel me

sharp shuttle
#

Hes lucky im at the club taking a shit

dusky jacinth
#

yeah you're luck rn Quapa

nimble horizon
#

Whole point of me signing up was so i can learn

#

lmfao bettt

dusky jacinth
#

if he wasn't at the club taking a shit you'd be done for

#

he'd be all up in you bro

nimble horizon
#

Amen bruh

dusky jacinth
#

no diddy

nimble horizon
#

Gay

sharp shuttle
#

Smoked like a FUM stack

nimble horizon
#

Lol

#

What kind of background do yall have

sharp shuttle
#

Im a professional r word

dusky jacinth
#

What's crazy is now I not only know what the password for this assessment is, but I learned the method to get it is correct and apparently my machine sucks

#

fml

#

im getting ice cream

nimble horizon
#

Ohhhh

#

@sharp shuttle I see why you asked me

#

if i was a specialist

#

The networking specialist thing in my bio is for sales and getting in touch with people

#

Different type of networking

#

Hahahaha

#

Def need to change it

tiny basin
#

The questions I used to ask
Scare me now

dull mango
#

I feel like the only correct answer is β€œgreat harm”

compact basin
#

logged into HTB after a long time, Noticed blue team challenges, liked it!

brisk abyss
#

who up kirkin they charlie rn

dusky jacinth
#

gamer youfucking know I am

terse dirge
dusky jacinth
#

alright gamers I am giving up on this brute-forcing. I already know the login from unconventional means and don't have 30 hours to wait

dusky jacinth
#

The Attacking Common Services skill assessment

untold fiber
#

nothing should require any significant amount of time to brute force anywhere on HTB

dusky jacinth
#

That's why I've been asking for help

untold fiber
#

its a skills assessment

#

you cant ask for help

dusky jacinth
#

no I don't want the answer

untold fiber
#

but its HTB policy that we never have anything that requires any significant time or resource to brute force

dusky jacinth
#

that's why I'm confused

#

why won't it crack, but it seems to be the only method given at the time

untold fiber
#

ask support

dusky jacinth
#

I think it's a personal problem tbh

untold fiber
#

they can verify if there is something wrong if nothing else

dusky jacinth
#

as in my personal probem

#

I still gotta figure out if its a me thing first

dusky jacinth
#

Trying to make sure I'm actually doing everything properly. I don't really wanna move one until I've done it properly

untold fiber
#

I do not remember what is on this skills assessment specifically

#

but usually when people had issues brute forcing it was either the wrong word list or something like that

#

the previous sections likely have guidance or an example that you can reference

dusky jacinth
#

I think it's gotta be the wordlist, but the module some's with a passlist as a resource. It's just not in there

#

It might be in another one, but I don't have the mental capacity rn to find a better one to use.

untold fiber
#

yeah i dont know, if you dont get past it ask support

dusky jacinth
#

yerp

#

adios

#

goodnight all

west venture
#

Hood night

#

Golam wie gehts

opaque kelp
#

I think that must be it, good night all.

west venture
#

@west venture

terse dirge
#

@terse dirge

west venture
#

@terse dirge

terse dirge
#

@west venture

tiny basin
#

@west venture @terse dirge

gilded osprey
#

i need help for a hack the box course

#

it says this Based on the last result, find out which operating system it belongs to. Submit the name of the operating system as result.

alpine pumice
terse dirge
west venture
gray terrace
west venture
#

What is an operating system??

tiny basin
tiny basin
gilded osprey
tiny basin
tiny basin
#

Result of the last scan

gilded osprey
#

idk what you mean

terse dirge
tiny basin
red ore
eternal mango
#

Arrrrgh so close to getting a shell on this telescope, but it's 3am

#

Not fair

gilded osprey
#

well i cant send pictures

tiny basin
gilded osprey
#

trixsa1@htb[/htb]$ sudo nmap 10.129.2.18 -sn -oA host -PE --packet-trace --disable-arp-ping

Starting Nmap 7.80 ( https://nmap.org ) at 2020-06-15 00:12 CEST
SENT (0.0107s) ICMP [10.10.14.2 > 10.129.2.18 Echo request (type=8/code=0) id=13607 seq=0] IP [ttl=255 id=23541 iplen=28 ]
RCVD (0.0152s) ICMP [10.129.2.18 > 10.10.14.2 Echo reply (type=0/code=0) id=13607 seq=0] IP [ttl=128 id=40622 iplen=28 ]
Nmap scan report for 10.129.2.18
Host is up (0.086s latency).
MAC Address: DE:AD:00:00:BE:EF
Nmap done: 1 IP address (1 host up) scanned in 0.11 seconds

red ore
dusky jacinth
#

You didn’t run any scripts

eternal mango
alpine pumice
#

And as I said, state the module, section, and question you're on

red ore
#

just go easy and do -A and ggez

eternal mango
#

Beh will finish it tomorrow, nn

tiny basin
west venture
#

Damn that's crazy

west venture
terse dirge
#

sleepy and bored since the semester is over

carmine pecan
gilded osprey
#

or you mean linux

errant shadow
#

is HTB Pwnbox / network down? nothing is launching and showing 100000ms ping for all regions

eternal mango
# gilded osprey ddi not work

Move to #modules as you were asked please. Also, read over the documentation linked at the end of that section. Sometimes you need to do a little bit of research

carmine pecan
#

Playing Wordle being someone who does not speak english as the first language

#

Is a doozey

#

I am a bot am I not?

carmine pecan
#

lol

#

Today was my first time playing Wordle

terse dirge
#

did you end up getting the word?

carmine pecan
#

Yes it was POTTY

#

I play high contrast so the orange is the green

terse dirge
#

oh that makes sense

carmine pecan
#

🀣

tiny basin
#

Damn, it's an excretion bowl for child

#

🀣

crude vault
#

Hey

#

Anyone running utm On mac, for linux ?

heady sage
#

@eternal mango I sentence you to Netscape Navigator

west venture
#

How is your neighbor wifi related?

eternal mango
eternal mango
#

That took way too long to remember

dusky smelt
#

bruh wont even let me flex

#

after 5 hours

#

idk if I should be proud or if I should cry tbh

heady sage
eternal mango
#

Old enough

heady sage
#

Big fan of EverQuest are you?

eternal mango
#

Actually I never got into it

crude vault
#

But my adaptor ain’t working no more

heady sage
eternal mango
#

Legends of Mir I played around that time

crude vault
eternal mango
#

Until they shipped a debug build to production with a command documented that made you a GM

heady sage
eternal mango
#

Trusted wrong person with what I found

west venture
eternal mango
#

Got banned πŸ™

crude vault
#

Omg

eternal mango
#

I shit you not. The client had a command inline with the docs because it was a debug build, and that command game you GM powers

maiden anvil
eternal mango
#

That caused the first rollback in the games history lol

west venture
#

Also You cannot crack a wifi

heady sage
eternal mango
#

mmmhm

#

Back then you could do things like include iframes in forum sigs and snaffle session cookies

#

Was a wild time

heady sage
#

But fun right?

eternal mango
#

Oh yes

terse dirge
#

steam is offline Why

obtuse fern
crude vault
#

It’s ok leave it bro. πŸ˜‚πŸ˜‚

obtuse fern
#

it's still up and running btw

#

holy wow; i just did a silly search on it (Debian 13 install) and i'm...not bombarded with ads/promoted searches? (i disabled adblocker)

#

hmm i wanna build an rss-feed aggregator. might look into how that works tomorrow

eternal mango
#

Google should've never killed Reader πŸ™

heady sage
#

What’s the point of RSS

obtuse fern
#

speaking of, you wouldn't happen to know if HTB has an rss-feed would ya g0b?

eternal mango
#

Doubt it

#

Oh

#
obtuse fern
#

LMAO

#

will be a fun project since there's plenty of documentation around rss :)

#

just gotta do the thing β„’

west venture
#

I meant he didn't have the necessary knowledge to do it.

eternal mango
#

TLDR; fetch list of content from sites in an aggregator and have a news feed

carmine pecan
#

Back to the The Yappalachian Mountains I am

#

I want to yap so much and for so long that it becomes a stream-of-consciousness monologue that transcends language and becomes a spiritual experience.

crude vault
carmine pecan
#

Any listener, be it flesh or machine reduces to be merely a vessel for the vibes

crude vault
#

Cry hard πŸ˜‚

carmine pecan
#

get modded

eternal mango
#

They removed it themselves

carmine pecan
#

πŸ—Ώ

eternal mango
#

Imagine they would've gotten modded though 🀣

#

I dunno πŸ€·β€β™‚οΈ

meager kernel
#

No offence

crude vault
#

Thats why i divorced ur mama. No offence

meager kernel
#

That's such a good joke

crude vault
#

Better than urs.
Stop bringing negative energy in the chat if you can’t reply properly. No one asked for your opinion.

cerulean bloom
crude vault
#

Sure

crude vault
cerulean bloom
sturdy thistle
#

morning

meager kernel
supple plume
sturdy thistle
supple plume
#

Morning chat

meager kernel
#

I'm wondering how you weren't banned for asking how to hack your neighbour's wifi

sturdy thistle
#

that's true

crude vault
#

Those were 2 different lines of chat

cerulean bloom
#

doesn't really change much lol

sturdy thistle
#

you broke the rules

meager kernel
#

I will repeat myself
You came in a public hacking server, asking about how to hack your neighbour's wifi
Which is an illegal thing

And you expect to be treated well

vague minnow
#

hi

supple plume
sturdy thistle
#

@scenic maple

#

i summon u

supple plume
#

Fortunately they can change their scumbag usernames and try for a second time to give a first impresiones

meager kernel
#

I did not want to use harsh language but you're an absolute dumb ass if you think I'm the one bringing "negative" energy

scenic maple
#

here

supple plume
#

@scenic maple good morning

scenic maple
#

what happened

scenic maple
supple plume
scenic maple
#

😩

ornate ibex
#

Good Afternoon

meager kernel
sturdy thistle
meager kernel
ornate ibex
sturdy thistle
#

lol

ornate ibex
#

These days when I wait for my colleagues to come online I feel like they are in the US TZ and not UK TZ anymore

cerulean bloom
ornate ibex
meager kernel
ornate ibex
#

lol

supple plume
#

It's all the hours at the same time aright

#

Monday πŸ₯€

#

Instead of complaining I will say this

lofty warren
cedar snow
#

hi guys quick question how do you deal with burnouts? i havent studied anything in the past 3-4 weekssadglas

scenic maple
#

get a new burnout waz and replace the old one

#

keep repeating

cedar snow
#

btw is #homelab-sysadm the right place to ask how to build a vulnerable AD lab?

#

i’ll get a new burnout of doing too much labwaz

scenic maple
#

yep

scenic maple
#

who hurt bro

cedar snow
neon zealot
mystic harbor
neon zealot
cedar snow
neon zealot
#

@cedar snow eren

#

How. R u

cedar snow
#

not bad, u?

neon zealot
neon zealot
cedar snow
neon zealot
#

Where r u from

cedar snow
#

im countrylesssadglas

neon zealot
#

Where do you live

cedar snow
#

iraq

neon zealot
#

In the oceans

#

Or what

scenic maple
#

iraq is a country tho

neon zealot
#

Ooh iraq

scenic maple
#

a beautiful one

neon zealot
scenic maple
#

or was

static burrow
#

Ngl a browser in browser attack would get me

cedar snow
static burrow
#

Do you guys ever get paranoid about that

scenic maple
#

i never said nepal is ugly

neon zealot
#

U said average mountains

scenic maple
#

i said its overrated

#

no lmso

neon zealot
#

It's underrated bro

#

Wdym

scenic maple
#

i said minus the mountains its mid

cedar snow
scenic maple
static burrow
neon zealot
scenic maple
#

but tbh beauty is from person to person

cedar snow
scenic maple
#

so if i find something ugly/beautiful thats on me

neon zealot
cedar snow
scenic maple
#

why not waste big evil techs money?

static burrow
neon zealot
neon zealot
mystic harbor
neon zealot
#

I am fluent in hindi

neon zealot
cedar snow
static burrow
mystic harbor
#

I am downloading the image one

cedar snow
neon zealot
#

Hmm

scenic maple
#

i never said anything about image generation

static burrow
#

Identity theft is pretty 🀩 lucrative

mystic harbor
static burrow
#

And that’s why me and my gang (lockbit) run these streets

scenic maple
eternal mango
#

Models for idle hands I think

scenic maple
sturdy thistle
#

lol

scenic maple
#

ow i see now

#

lmao

eternal mango
#

mmhm

crude vault