#general
1 messages ยท Page 462 of 1
I'm engaged 
You're not 
oh congrats
Guys how longe you are learning cybersec
Longe enoughe
Not long enough
That's it cuz that's not limited
Where do you started
I started as a developer
Been doing this for 6 months
Cyber
Really ๐ฒ
I was thinking that you've been into the field way longer
But I learned a shit ton of stuff
Well almost a decade of web development kinda gives some background
That's cool
Well understanding how the code work will make it much easier to pwn it
Understanding code and back in the day deploying services on production via ssh
Configuring vps and databases
I've around 21 course finish certificates from sololearn back in 2019
Apache vhosts all the above
And while making code as a dev you have to make it secure
So there's that
Html css js php sql c c# c ++ java jQuery rust ... Yet for now I can write small scripts in various languages and understand the code cuz I haven't practiced a lot
Coding is great tbh the funniest thing to combine with cyber
I said this many times I guess but I'll say it once more
Scripting attacks are fun as hell
Try beating portswigger labs only using python 
A pleasure only reserved for idiots like me
You're accualy not, most people can't do stuff you're doing
Wait wat
if u want to learn how to code get a degree
I might delete it ?
I quit at mid high-school and I know a ton about coding
Waste 3 yrs on compsci instead of 3yrs of specific studying abt coding and cyber?
If you want to learn how to code just code
right...
Even better if senior developers give you feedback about the shit you make. That was golden for me
Nope, I was suspicious 
a mix of both
Being seen by people we see as perfect, is a sign of success
I mean when I worked with them on the same codebase that feedback was very valuable for my learning
During years
It's a bit sad that some people that hack with me in vc think I learned this all of a sudden and they think is too hard
This shit takes years
So you're here to strengthen your journey as a developer or to make benefit of your skills merging them with cyber security
Not really, I joined here to switch my career to cyber because I got bored of making software
And I find this fun as hell
"You'll never know until you try"
Why did you joined htb
Htb machine rating (easy medium ...) is suspicious
It was always my dream to be in the leader board of cyber security stuff, cuz I'm in love with zeros and ones, so I've joined the army to afford it and started my journey.

I have an master degree in information technology also but it's useless in my country.
Pray for us azo 
Zzzomax ๐ผ
Yo wanna play chess before I lock in?
can we play?
Let's wait 30 seconds to see what azo says since I offered him first
But yes
aright send lichess link
what time
I like rapid
Join the challenge or watch the game here.
@supple plume whats ur elo
gg
well you're doing well
my thing is I suck at openings but I can see crazy tactics
and you played very aggresive without blundering
yeah the opening was really nice for me
yeah
I noticed I blundered when I did...
it wasn't huge blunders but somehow I felt it xd
what is regional federation?
mmm
fiide?
over the board competition like fide yes but smaller
like in my country every state has a small fide thing
tbh I mostly played 4 hour games against turboautistic 12 year old kids
xd
my classmate at school coached me ๐ญ
@silk talon chesssss ^
you cool with doxxing yourself here?
i dont mind you can come have a coffee with me if you want
i respect it, i am not trying to be private anymore its futile
thats like the least of your worries lol
dang
this my one of my biggest worries
im getting fired ๐ฅ
ebpfs are pretty sick tbh
work 
j*b
backup is loading
how can u brick a firewall in 2026
find the 0day already
run masscan
nobody is keeping their job bro, the moment the US market crashes the entire world goes tits up
impossible!
phew it got synced again
it's made by Berkeley so it's over engineered and super schizo with security
altho you can use PAM to exfil creds in plaintext 
I backup is comming
Iโm noob
proper nextgen wootkit coming soon from ceald! ๐ฅ
I just want to use eBPFs in the worst way lmao they're too obscure and new to not pass up
there is nothing sensitive in the image u can find a pic of it even in the fortigate docs
sadly I don't think it's possible to do process injection with ebpfs because the checker is super strict
you'd need to hijack libraries or somethin I think
may unemployment lead the way
Echo where you at vro
I should probably stick to techniques that won't be patched out 
the mr holmes?
bro you left my team without saying shit
I thought someone did somethig to you or something
Had to lock in bro sry 
I asked you via DM and you had me blocked or sm
Na I just deleted the acc
lol
message didn t go thorugh
I would have appreciated a simple sentence explaining
kept thinking about it
you cant just ghost your friends man
I mean I came here temporarily too to ask a question since I know u guys know more than me and I'm almost done with CJCA 
Hey guys, do you know where can i press to restart a module, what i mean is to restart a module so i can answare the questions again ?
You can redo the exercise by browsing the sections of the modules, yet there is no way to reset the submitted answers.
Sorry wrong dude-
thx man
Question about what?
Hmm, maybe #careers-and-certs
Yee thx man
Hi, if i wanna ask someone regarding a problem i have met in priv escalation of AD, which channel is the most appropriate ?
its not hackthebox machine
i am testing in a local AD, an attack path from synacktive but have problems with a service
Alright I asked it in the chat thanks man
Hi mickhat
nda status broken
stop with the brown boots therapy midas behaviour
hi?
Btw can anyone help me in #careers-and-certs? Thank you

i thought they stopped this a long time ago
what exactly
model specific usage

there is no confidential information ๐
is someone here that is specalized in Android Pentesting ?
๐
any hacking?
How is the horror winnie the poo going man? ๐
U still watch it?
which one
wdym still? its a movie, I watched it once 
and regretted
CVE-2026-25749
Just been doing a lot of AI-assisted source code review across various targets. Waiting to see how 2 new bugs play out on a different target
Same... codex has been semi productive so far
lots of false positives but makes it easier
no way u found heap overflow in vim
:)
strcpy ๐ฅ
dam dude, glooks
Nice, Iโm still using claude but have been meaning to try other models
AI can help in many ways, people just think its a replacement
I kind of want to buy opus but ๐ธ
ive been using sonnet 4.5
nah
bruhhh
im using the free tier lmao
wait i said switch tho
gemini has a massive context window but sucks at reasoning
claude's context and usage have been improved a lot
Hy
and the model just reasons way way better than its prev gens
get gemini trial and download antigravity = claude opus 4.5
trust me youll like it
Reasons well but also quadruple guesses itself into a bag of potatoes
idk about opus or claude code yet
but sonnet does this all the time
nope, very less likely now
gemini hasnt been great so far
oh will get it later then
yeah but you can download antigravity if you have it and there you can use opus 4.5 model
oh you can? you dont have to pay to use that model?
its base model is prettys trong but that combined with extra knowledge for example skills is one of them can be a huge diffferncce
no you dont its included
with claude's max plan you can run 2 claude code terminals for most of the day without running out of usage
ye max is just worth that 100 nopw
now
i wouldve not recommended it like 3 months ago
but they understood they were being greedy asf
will check it out then ty
I feel like I should make a writeup about how to solve the current box in Arch
has anyone solved in arch?
and that combined with shared knowledge is just pure progress
kind of why ive lost interest in ctfs
ai can just solve everything now
and script kiddies will do just that
maybe a ctf where ai usage is forbidden but you cant really stop anyone
Lets ban google also, and nmap
Honestly you just have a massive skill issue
ye ctf's in general are just too predictable nowq
me?
lol
im talking about cases where a person just uploads challenge files to an LLM and says here solve this and return the flag ty
wait whatt ?
that just means they are useless
ye
nah it doesnt work like that
augmenting your own skills with ai is fine
it does ๐
unfortunately it does
thats what most do
by most I mean most in the larger crowd
yo someone shed some light on this man
Nah lol I've seen people upload entire exams to an AI, forget about a few standalone challenges lol
of course whether its effective or not is a different thing
sometimes it leads them down rabbit holes
I know exactly what im talking about
bcs i use it
its pretty effective now i must say ๐
and ive seen them ask "hey why this not working" and a chatgpt chat open in the background with "BUT WAIT - " on it ๐
oh and you think others dont
it can be used like a tool
and some people are mad bcs they are dumb or cant use it properly
doesnt mean it has to be used as one
Yes and thats true, but people who treat it like a brain replacement than a tool wont benefit from it
and is not that easy to manage context when it comes to more hard challenges
they way you are describing it is not true
how about you try this
bcs you dont use it
go on claud code
any claude code enjoyers who use the CLI?
select model to opus 4.6 , and set reasoning to high
put it the source code of lets just say Deadroute
Can you read?
2 min tops
Yooo broo leave the CEOs alone... /s
lmao
thanks man
you ugys usin claud code cli?
you hurt my feelies you are no fren of mine!
wdym i dont use it ๐
i do use it and this is what ive seen in ctfs in general.
brath is back
not commenting on using ai itself
its game time now
back? brother i am always lurking
I'm talking about ctfs. People can just speedrun easy challenges without actually putting any effort into it
just made this, its kinda nice and simple
did you vibecode it
i might use this if it can help me beautify my claude code
no i wrote it by rubbing my junk across my keyboard
yeah it does that
its a great way to see how full ur context window is
what branch ur on
etc etc
ye been workin on it too much lately
back on pepeposting
People scared of getting help moment
society is fucked
If i go to a physician and find out they are part of a PBM, I would be livid
yo also brath how effective do you think flipperzeros are, since youre more like a radio guy
they are toys
adderall?
but so is most infra, they work reliably
valid response
@lime trout hey what will happen next month here when discord begins requiring ID verification?
I want a self hosted htb alternative server on a htb subdomain if is not much to ask
xd
hire me to help develop it
why would you want that?
I don't want to provide my ID card to discord
do you want to do that shit
discord will only limit you to a non-adult account if you dont provide ID
you wont be able to access NSFW channels on discord, thats all
rest will stay the same
you forgot i already got banned for saying i was a different age as a troll
no
xd
They will do it again
its not categorized as NSFW @supple plume
a channel has to be categorized as NSFW in the server settings to be considered 18+
our server will remain unaffected
It wonโt affect essentially anything here
he doesnt know about the nsfw channels
aright then
If people leave discord En-masse well see then
I dont know about these right
thanks for the feedback
why does pterodactyl machine keep fucking freezing? ๐ญ
nothing works on it
wtf is this machine man
stupid of them ngl
I mean they wont, thats another thing
but essentially:
TTL - 6
pain
is the discord privacy thing
yeah thats my feeling too
Was this same for you?
it happens alot
Did the machine lag alot?
people get mad, realize no good alternatives, forget about
@lime trout fix pterodactyl pls ๐ญ๐ญ๐๐ป๐๐ป
Not that its a good thing lol
yeah 100%, i dont agree with it, but its j ust the way things are
this is one of the rare cases where using arch actively affects the hacking session
hello
its not like there is even a good alternative
i mean, people usually dont use their host machine to hack
they either use a VM or a docker session
"im working on an alternative"
as if there weren't 198500 alternatives already 
I can't say much to not spoil the machine but this is an edge case
a simple ubuntu or kali can work too
besides it wont lock everyone out of their accounts
for arch users
they use some ML thing to predict whether someone is an adult or not
Thats what happens when one Corp has basically a monopoly (?), not sure if that word translates how I think it does 
its kinda the catch-22 of social stuff, you gotta be where everyone else is
ive read the CVEs, ik what to do, but i cant do it cause the machine FUCKING LAGS THE HELL OUTTT
@meager kernel
but also its not a bad move from discord imo
children do be seeing stuff they arent meant to see
some of its fucked up
parents should parent
yea i just use a Kali prebuilt image from their website
This feels like a power move to test algos
but to what extent
"think of the children" -> errosion of rights
Ooooo
U still here?
be careful with leaving it running shi
oh its you
dont jkust copy paste commands
ik ik
dont give kids unsupervised internet access?
yeeeee 
Well... too bad, UK is already at the "protect children" phase innit?
@supple plume wanna go another game?
ill let pterodactyl run for some time
actually it's the best moment now
Bro I made this mf discord account just to dm top pentesters 

chess ?
I dmed stuffy and 0day so far
send a 960 fuck opening
Join the challenge or watch the game here.
I mean even if they do, discord would still likely have a gazillion legal data privacy related stuff to deal with every year because a child joined an nsfw server, clicked "yes im above 18" or whatever it currently says and viewed questionable stuff. And its not unreasonable to think children wouldnt do that imo
What is uni CTF 2025?
like
what you missed
fuck i think i joined thew agme
@tidal musk someone opened the link btw
They can find it everywhere and it aint a justifiable reason to give up on privacy imo
if parents do supervise kids but discord still doesnt see results, they'd have to take measures they believe is in the best interest of their business
am i interuptting the session
and you think this is going to stop kids?
stole my place @tidal musk
I wouldnt have gotten it anyway bro I was locked in CJCA ๐ญ
bro
mb
if anything, they'll either A) Bypass it, or B) goto even worse, shadier places that dont follow the laws
Btw @lime trout if I get the CPTS can I become a red teamer?
i can leave
Sorry for the ping
@tidal musk ๐ฅ
But I have to ask
significantly slow down anyway
there are controls in place to prevent bypassing from what ive read
but also good point on B lol
Join the challenge or watch the game here.
๐ฅ
now we playin

as much as discord's moderation sucks, there is always a worse place
Like with only the CPTS can I become a red teamer?
@tidal musk can i play next ?
If I have only professional backend experience, cjca and cpts? 
Tbf id rather have it suck and remain not corpo fucked or have some weido policies forced upon
you can also look at it this way: if parents cant effectively stop their children from accessing nsfw content (which they dont for the most case) and they use discord to do it, then they gotta do what they gotta do at the minimum to protect tehm
this ID verification as I heard was for nsfw gated channels and servers yeah?
Emmaaaaa
i just hate the way these are all being implemented
pretty sure you can block nsfw content entirely on your network so it'll just block all websites and content which comes under nsfw
still I guess they dont have a choice either
like, shit IOS/Android have Digital ID's now, with passports etc
Just have your device verify your age, then share a signed token or something
atleast thats what i plan to do if i ever have children
that just confirmed 18+
would that extend for discord tho?
because discord isnt inherently nsfw
might, not sure
You can but also cant
you can block discord if you want but thats just regular parental controls
Chief, serious crime happens everywhere.
IRC, Skype
and discord doesn't want to fecilitate it any longer
How I can and cant? 
Literally
This doesnt address it, at all
also the "live selfie" feature, thats in use for other stuff too right? linkedin etc?
honestly i would block discord for my children, atleast till a certain age
servers will just mark things not NSFW channels, etc etc
true but they'd have taken a necessary measure at the minimum I feel by actually gating nsfw places other than just "are you 18, click yes or no"
Isnt telegram constantly targeted for their "privacy protection" because shady sjit takes place there?
the selfie thing has been bypassed by Garry's Mod
i dont think they patched it
how? if a channel is not marked NSFW - anyone can access it
regardless of if said channels c ontent is NSFW
so it requires people to mark channels in good faith
or discord to actually moderate
discord has been hacked, data has been leaked
i aint giving my ID
Im speaking to a wall..
or people will just go off platform
throw a brick at the wall
this is why its always "for the kids" to erode your rights
because people have a hard time aruging against it
Bro what have you undigged..
about?
Because although it confirms you have certain skills, it is not a guarantee to get a job as a pentester
man i just wanna finish this machine and go to the gym
Yeah that goes for every tech role
i wake up after the nap
today is a good day because i say is a good day
lets facking goooo
I don't ๐
How do u know
Remember a mrholmes?
You?
Surprise
Because I deleted my previous to lock in to CJCA 
This one is temporary too just to ask this questions #careers-and-certs message not only here and to other cyber servers I know
I hate when everyone when they wanna take your rights they always apply the reason "its for kids". @lime trout like for real, I would see someone make a law that you must need to let strangers in your home and the politician would say "its for your kids" type shit.
At this point fk em kids, I dont care about strangers kids, if my life gonna be worse cuz of kids, then leave me alone
real
Btw Emma now that you got tagged if you got time I desperately need you to help me out on this if you can #careers-and-certs message
cant you ping Emma simply there?
I mean now that you pinged her I dont wanna disturb her again..
Hope it doesnt bother
anyway so you do backend for websites right?
ye but you said you are an intern
what kind of backend you do for what exactly
gg
yes but what kind of backend do you plan to do, for apps or websites
what did I miss
I like your playstyle
what about it
To be honest whichever I can merge it with cybersecurity..
Dayum 93%
fr u lock in
so both
I think web backend is more wanted tho because everything is http nowdays
@jolly snow wanna go?
erm I guess
I never studied openings
I wanna study your openings
ye give me a sec
Study 
me neither i just look at the top if has a name then i continue playing those
Anyway whatever focuses on python js c++/c# and SQL
to sum it up
study your nuts, with pleasure
Bro go lock in with something, anything
ok locking in
Good
Huh, what's this?
The aftermath of a battle
lichess
Welcome
"6 days, 6 hours
Average time to bounty" - crypto.com bug bounty program
Ok I will test your knowledge, hack a hospital
Why always 6
cuz 6 8 7
Well, rn I know wi-fi hacking but since it's just someone who can do it without any problem, I've decided to understand how these things works
Like
Well wifi hacking is a whole thing
I do wonder how hackers bypasses an user's password on a website, which kind of commands they use to execute it
There is a new module in htb academy and new lab machines are made related to wifi hacking
What I wanna learn is PWNing
Literally "Give me the admin yo" hack
@supple plume are u a femboy?
how ironic ๐ญ
Bro do even think after you ask stupid stuff
so I will take it as a yes
Htb is the place for learning
ez, waifu malware
Imagine HackerOne puts a bounty on this guy
Takes time tho
I wanna take your guess
How many months does it takes to master it?
I always thought something types pwned instead of owned and then everyone started using it
H1 lowered the bounties on their own program this month ๐ฅด
Classic ass question
then Hacker One shall be lowered to make them increase their bounty program

There is no answer for it since it is very personal. It depends of what you know how much time do you study regularly, etc
But overall the path takes a long time to get to master these techniques
I mean genetically I'm a quick learner
Yes
Nobody will be able to answer realisticly even if you provide the results of an iq test
It depends is still the right answer
u can pwn quickly if u only hyper specialize in a very specific type of exploit
Well, I'll talk to my parents to see if they accept to buy me a 120 video of "Python Zero to Hero"
Bro
What..?
Don't do that
dont do that
why... bro why....
Almost 10 years of exp coding on my back and my advice is: do not do that
Yo hold up when did you get the cpts?
I'm just trying to learn dude...
I mean
1 year + ago
Oof..
I know that's fine but there are better ways
Ohh nice..
Now that you finished it what is your % on the cwes?
I have a reason why Im asking
completed 100%
Wait..
This feels like too hard
I dont know what to do now..
So if you finish CPTS you complete CWES too?
yes
It is hard, requires years of overcoming your frustration over not understanding stuff
๐
Patience
What I just wanna learn is to find a way to learn it
Otherwise what am I doing in this server?
...
chatting to echo
Are you a backend dev too m4ine?
no red teamer
Aright so you have a lot of material for free to start with
i completed CAPE too
Yeah cuz I had this question
and CDSA
But since you said that you complete CWES with CPTS I dont think I need this anymore
But I dont know which ones
Htb academy free tier stuff is a bit boring lots of text but is a good beginning, htb labs starting point is a guided hands on first contact with real hacking and also portswigger labs is free. To learn code there are free resources in internet too
Im half way done with cjca
whatever you start, will be a good start
I didnt heard htb labs btw
Like
Is that a separate app
Or smth
i personally wouldnt have done that, though i completed that too
Yeah, hosted in another subdomain: academy.hackthbox.com and app.hackthebox.com (labs)
I mean since Im finishing with software engineering it's a good proof of knowledge in cybersecurity
Don't forget to let him know about ||removing the french language pack.(Please don't attempt this.)|| tis essential.
Also htb acquired let's defend so you can learn free tier stuff there too
Linking the login
Had to throw the warning in incase someone actually went to look it up.
CYA, my cert of choice. lol
Whatโs letโs defend?
defensive side of cybersecurity
Just goigle it
meh, it's confusing. i like when the goal is clear, blue team or red team, attack or defend
Me personally it helped me a lot to get the foundation of shit in cyber... to let me decide what role I want..
Plus it will give me a cert of proof of knowledge in cyber while in backend so its a win win for me
HTB has good certs
yeah i suppose... but it's not a requirement to CPTS or CDSA, anyone that tells you that is just selling. both CPTS and CDSA are well crafted, you dont need anything else to understand. but if you're confuse about your identity (attack or defend). well yes do that to test the waters i suppose
Hm?
Im going red teamre
Google it
Btw I dmed 0day and stuffy and they havent replied yet 
the other reason i'm picky is because, time/energy is finite. you dont wanna spend on things that could have been avoided, or saved for something else...then, you are tired (my hacking udemy course are still unfinished)
Yeah you're right on this
Well
Not bad actually
But eh
What I want to focus on
Is to learn python
I just dont know how
But since I dont have cyber knowledge on unis or anything, not even linux fundamentals too... It isa very useful cert journey for me personally
If I havent gotten throught cjca I would struggle with cpts
i dont neither, CPTS and CDSA, takes you from scratch , there is alot of theory
anyways, good luck
I dont think there was linux fundamentals and things like that there..
Find out free stuff on Google. Code advents, and free academies is just grinding and building stuff
Yeah... thanks a lot!
Use some AI a bit to get feedback and validate it with 
That's what I would do if I had to start again now
But y'all said "Dont do this" to the 120 video thing, like.
Dude, I better clear my head rn
there are things you learn on the fly... at least now, we have AI/LLM
I'm so stressed
Yes do not buy a 120h video is my advice
Ai is genuinely a threat to me ๐
Since Im going backend
But hey if you wanna do it there is nothing wrong with it besides wasting money
Thank god I didnt go fullstack or frontend..
And maybe a bit of time
But it could be somewhat useful
Me myself I bought a udemy course when I first started
Actually I bought way more than 1
It only costs 500 Turkish liras
About 20
Which is.. 10 dollars or smth
Oh we're neighbors ๐ญ
How do I say sybau in greek
Skase
Voluptuous skate

@austere sinew
@tidal musk check your dms
@supple plume What do you think about programming With Mosh YouTube channel?
at the beginning you just have to start writing and reading code
idk about that channel but I would say just do it
doesnt matter if the instructor is unclear you can always validate info
read the manual
write a poc locally
to validate what is being said
the best way to learn is getting hands on
Alright..
It'll be too rough
I'm not sure how I can handle it
Even this affects my mental health with giving me anger for unable to find or complete something
just be ready to face frustration
yeah you have to learn to control anger and frustration
Hmm..
otherwise you'll never get further in cyber or coding
like at the beginning I suffered for a week to find that my php code didn't had a semicolon ;
Guess we all have to start from somewhere
you won't have these problems nowadays if you use a decent editor but the essence is the same
At least I feel hope when people also feeling the same things with me
when I started it felt very frustrating and demoralizing
most people I know struggled a lot too
what are doing
Well u just gotta learn how to cope lol
i need context like chat gipiti
vip+ on labs cost 25 euros a month but why do you think about paying first you should first complete the free stuff, at least the starting point
Nibbles made me almost cry when it broke three times and I had to do this shit all again and it was not a fun box

God i was so pissed
Yeah thats how it is with most things
yeah
Nobody likes sucking at something
takes time that's all
Well thats because the virtual box of htb is limited, you close it, wait 1 day
Thats why
Unless... on dem toes
btu I believe cyber is a bit extra hard
Use vpn
File
yo can use their vpn with unlimited access
conquer the box ๐
maybe this year i gonna retake the machines
i mean the real ones, now i am just doing 1 hour of academy per day
good
but i think is all the time the same steps, like recognition, search vuln, exploit them
Im going to hack a fortress now
Im almost done with faraday, very cool fortress I recommend it
is a machine ?
a fortress
espaรฑol ?
special kind of machine you unlock access after obtaining hacker badge
How does it gonna help me?
ohh
i understand
unlimited access

these fortress machines are not standard like they don't follow creator guidelines made by htb for content submission, they are made by companies so you can find there crazy stuff
you need hacker badge in htb to unlock embed perms
so is similar like a hack a real company ?
not really, they aren't way more realistic, just different
Just Hacker rank
you can also do it getting a cert yes
i think if got hacker rank, the admins of the server gonna update the min requirements to send images xD
|| or hack a few machines for free ||
wee need that dog edited with a crown and the glasses
i gonna buy a vps now, i gonna see if have for nawtroo too
Quit your job and tell them you're gonna be successful security auditor cause it's your destiny. Then hack all day for weeks. 
idk
Oo
I want my money back
open a ticket
ah dont worry im joking
Make sure to ask for cash. 
ticket
skill issue 
also you forgot to ping wolo
i forgor
i wanna do that but i am the CEO/CTO

time to pivot the company
๐คฃ
time to use multiple clawbots like workers @sturdy thistle
after 2 days the clawbots have a meeting with me :
** Sir kypanz you are fired **
kypanz : but is my company
clawbots : ** no more **

any codebreakers in US/Canada trying out the MrBeast/Salesforce challenge?
Why are my docker spawns all fucked
Where do people usually find open-source bounty bugs?
Do you mean public programs?
public progarams have src code or public repository in github
that is my teacher requirement
Bug Bounty platforms have many programs there and the majority are public
Im not sure what you are trying to say
Maybe you teacher is asking you to get an open source software (app, program, however you want to call it) in order to bring it to class to see if you can find bugs on it?
Then yes github is the place to look
A bug bounty program is not the same than software program
Could you give me more information about that program?
And how do I know if that program provides a CVE code when I report a bug?
@austere sinew HEALTH CHECK
Run the tool bbscope to extract the scope of all your public/private programs and grep for GitHub
Web3 is open sourced/code review
I dont know what you are talking about sorry, you need to be more specific with me
can i dm u
ok
but is better
if you phrase your questions here properly
bcs there are a lot of people that know more than I do
and also can help you when they read your question
I got the first part of pit to work
My first medium challenge and im already doing good
you creating a HTB challenge? or
I mean, there are so many bug bounty programs, and how do I know which one provides a CVE code for the bug I find?
No I'm doing a medium challenge called D*xpit
Sounds like you got the resume attention grabbers with CTO/CEO. Time to say goodbye 9-5 and hello to hacker man schedule.

thank you
the day just started for me ๐
technically
echo 'Faraday come to daddy!' 2>/dev/null
cd /home/ @supple plume
sudo rm -rf faraday
sudo pacman -Rns faraday
I'm assuming it's not a package 
> cat cur_status.txt
6/7 flags
What are you doing g
Faraday fortress
@tawdry sorrel
how to hack sir?
i not need to be the CEO/CTO no more, time to be the hacker

why are u nerd arch user @frozen zinc
use something cool like windows
he think hes superrior just cuz he got 23 in his name 
lol I dont think Im superior, but I dont let anyone intimidate me
Bcs the custom cursors capabilities
And people were saying was impossible to do it in Arch and it takes one liner
wat
I have 123 in my name
tf

xd
he thinks he is superior 
what happen with docker
that ultra hackers forgot it exist
hey guys is HTB working now ? I connect vpn and tried to ping Pterodactyl but no reply.
I use it a lot
LOL
hehe 003 person
is super powerful it has qemu emulation.... people sleep over the potential of docker...
i dont think there was any issue tbh
did u try changin region or VPN?
do you know why my name is bandit23?
and the issue was 100% packet loss?
yea
u robbed 23 people?
bandit is a CTF from over the wire right?
719 packets transmitted, 0 received, 100% packet loss, time 735221ms
do you know what happen in level 23?
ok, usually just changing region or VPN fixes it, prefer Release Arena tho or just take a lil break for few hours xD
i didnt do that CTF to know
finished 3 league of legends game, gonna do one more then lol
