#general

1 messages · Page 501 of 1

gaunt gale
#

ya

#

tor

#

ok gotcha

dense turtle
#

good and uuu?

gaunt gale
#

good

dense turtle
#

trying facts machine

gaunt gale
#

I helped another student in electronics who wasn't as good at the math as I am

dense turtle
#

but needed seclists and this shit wasnt even lemme update

gaunt gale
#

back when I was at university I needed tutoring and I have been working on electronics and in lab I just tutored this guy while I was working

#

to help him out

#

I don't know if a light went off in my brain

#

like I'm doing an electronics trade the understand hardware better but still

#

like it doesn't make sense that all of the sudden I'm tutoring other people

#

I mean its good but it doesn't make any sense

#

ya

dense turtle
#

what u studied at university?

gaunt gale
#

IT

#

that's what my bachelors is in

#

and I minored in psych

#

which I was actually pretty good at too and I mean I did well in IT classes

#

but ya I don't get where the lightbulb switch went off

#

kind of weird

#

like I remember in early years at university I needed tutoring in comp sci classes

#

like what changed?

dense turtle
#

haha i feel u

gaunt gale
#

I think my new anti-anxiety meds are starting to work but still

#

are the effects that drastic?

#

I mean it took a month to get this level of effect we'll see what happens

#

but ya

#

good but weird

#

anyway, so what have you been up to?

#

I wanted to do an electronics trade to help me understand hardware better

#

gonna supplement with some Udemy courses to really learn microprocessors or whatever

#

I also plan on taking a locksmithing class this summer

#

so I can do locksport

#

anyway that's most of what I'm up to

#

you?

dense turtle
#

Me back when I was in school, I was always with my head in the clouds, but ever since I started getting into cybersec and IT, it became my number 1 priority. Literally, no matter what time I wake up, I make my coffee and start studying… and I actually enjoy it lol

gaunt gale
#

ya cybersec is amazing

#

I have hack the box

#

anyway ya

#

you seen How to Make a Killing?

#

the new movie?

#

its good

#

I loved it

jovial quest
#

I got a question

gaunt gale
#

sure

jovial quest
#

For like jr cyber and just medium (Tier 2) stuff, What would you recommend

#

Kali or Parrot?

gaunt gale
#

either

#

pick one and stick with it

jovial quest
gaunt gale
#

Kali has more tools technically but parrot is better for maintaining anonymity and being stealthy while using the offensive tools it comes with. also, parrot has both general tools that every pentesting distro has and parrot exclusive tools, of which you can only get the newest version on parrot OS

#

so ya

#

but kali has the widest selection of tools

#

either one works

#

does that make sense?

jovial quest
#

It does

dense turtle
#

By the way, I also started buying electronics, and now the next things I'm planning to buy whenever I spot a good deal are a professional soldering station and a preheating plate. I want to learn reballing, repair circuits, and stuff like that, but I'm taking it slow. I still need to get more comfortable with the kernel before I really start messing with this hardware side

gaunt gale
#

hope it helps

#

ya cool

#

I have an electronics kit I'm gonna fuck with this summer after I do some coursework

#

but ya that's cool that your doing that

jovial quest
#

So, parrot it's mostly like "Hey, You know how to do it so here are the tools but not many" and kali is, You know how to but here are some tools that would overlapp the others on someway

gaunt gale
#

parrot actually has a lot of tools

#

hundreds

#

kali just has a fuckton more

iron galleon
jovial quest
gaunt gale
#

kali has more tools than you actualy need IMO

jovial quest
#

Studying mecatronics and let me tell you

#

They're NOT Fun

gaunt gale
#

I think building stuff and tinkering is fun personally

#

That’s my opinion

#

But to each his own

dense turtle
#

i mean if u want anonimity just flash tails 🚶‍♂️‍➡️

gaunt gale
#

Ya but parrot os has more privacy, security, and anonymity than kali and if you want a pentesting distro that also has tools for that too so if you want both forms of tools preinstalled parrot is better

#

Because your not gonna put hacking tools on tails

#

That’s the difference

#

Also parrot works better than kali or tails as a general desktop

#

But I personally for beginners including myself like kali

#

Parrot is probably better if you are good enough that its detrimental to use too many different hacking tools

#

That’s my take anyways

#

Because more skills > more tools

dense turtle
#

sure, but i mean, which project are u involved to such need ? haha

gaunt gale
#

not just hackers

jovial quest
#

You need a lot of tools

gaunt gale
#

but also a hacker, even white hat, would care about privacy and want access to privacy tools for other stuff if they are knowledgable about online threats

gaunt gale
#

it has more than enough

#

at least that's the argument

jovial quest
#

:D

gaunt gale
#

so either you like it or you don't

#

that's the thing

jovial quest
gaunt gale
#

for the former, don't give up. for the latter, don't waste your time.

#

got it?

#

because you'll be miserable if you waste your time on something you hate

jovial quest
jovial quest
gaunt gale
#

right but eventually either you'll learn to like it or you'll just hate it

#

yes, some people can learn to like stuff

#

like giving things a chance is important too

#

but its also good to recognize what you actually don't like

#

because if you don't that is what will kill ya

#

see my point?

gaunt gale
jovial quest
jovial quest
gaunt gale
#

ya

#

anyway

#

I'm getting tired so I'll talk to you tomorrow

#

I'll be on here after boxing when I am doing Web Proxies module

#

good night everyone

jovial quest
#

Sounds good

Goodnight!

dense turtle
#

lol, gn brothdair

sharp shuttle
#

gn

maiden anvil
rapid swallow
#

So u dont love me?

#

Sorry this was ment to go into the dms

rustic carbon
rapid swallow
#

Tryna convice my ex to get back w me after I cheated on her

#

Life

rustic carbon
#

why get back when you already have a better baddie

rapid swallow
#

Like bro just cause im married doesnt mean I cant have a gf

maiden anvil
#

absolute cinema

rapid swallow
#

This girl needa chill

rustic carbon
#

ofc, remember in the old times those kings used to have like ten wives

#

each equally loyal

rapid swallow
#

Ikr

#

That reminds me of an insta reel

rustic carbon
#

were you present yesterday ?

rapid swallow
#

Lemme find it

#

Yes

rustic carbon
#

see one more advantage of stone age era

rapid swallow
#

See

rustic carbon
#

Yeah except more chances of std

#

my autocorrect is broken, pardon me 😞

rapid swallow
rustic carbon
#

xD

rapid swallow
#

So how's the hacking going

rustic carbon
#

good

#

Look i fighred out learning linux and windows first is far more important

#

i wasnt rven getting the terminology, so i learnt them as well

rapid swallow
#

Damn u doing hack the box academy?

#

What cert or path u doing

rustic carbon
#

no no, i will do htb when i get into college

#

its my final year at school, in about 3 months or so i buy htb

#

because htb is $8 with student id

rapid swallow
#

Damn

#

So u a innocent baby

#

Thats gonna bloom

#

Fresh rn

rustic carbon
#

Yeah

rustic carbon
#

people told me hacking has lot of grinding

rapid swallow
#

Facts

#

I wish i started young

#

If I started and grinned at 16

#

Damn

#

Id be so far

rustic carbon
#

its fine, i have lots of free time, look i were to spend so much time on games why not do hacking instead

rapid swallow
#

Facts

rustic carbon
#

yk, even i am starting late, its not related btw but some kid, hes 15 or something learnt coding didnt go to any school or college got company offers and is earning 6 figures

#

he is so young

rapid swallow
#

Ywah

#

There is a guy ik

#

Like 17

#

With some certs

#

Working at Microsoft

#

Kinda jealous bro

rustic carbon
#

xD

dense turtle
#

AAAAAAAAAAAAAAAAAAAAAAAAAAAA

rustic carbon
#

why be jealous, look speaking from a capitalistic mindset, whoever proves to be worth the investment is provided a role in the company

dense turtle
#

thas how im feeling now

#

with 50 tools open and still not going anywhere lmao

rustic carbon
#

You must see your own worth, regardless money is a trading facility in day to day life

rapid swallow
#

Yeah I should be grateful for my job

#

Hoping to accomplish more in the future

rustic carbon
#

All my material desires are amply satisfied in a short paycheck why bother spending more time and energy on some 6 figures

#

ofc some people have genuine curiosity of becoming rich and having that luxury, but its short lived, it wont take an year or two before the dopamine falls back to baseline

#

its no problem, the best thing to do today in my opinion is to be comfortable in our purse

manic anvil
#

waz CJ is saying facts

rustic carbon
#

just curious

brave warren
#

@rugged sentinel HOW DO YOU DO IT BRO?
how do you have blood of every single box there is out there 😭
Teach me your ways sensei.

sturdy thistle
#

morning

dense turtle
#

gm

brave warren
#

gm

maiden anvil
#

now I have power armor ho ho ho

#

whats up htb

#

greetz to the channel

sturdy thistle
#

coffee in a bit

maiden anvil
#

im jealous

#

tis late here

supple plume
#

Hi chat wave echoes

maiden anvil
#

what it do famalam

sturdy thistle
#
sharp shuttle
#

first szymex, now opcode, business is good

brave warren
#

XD

warped plank
#

*also him blooding linux machines kek *

minor loom
#

tryhackme is making so many useless certs rn. sec0, sec1, ...

viscid sparrow
#

They’re like college degrees

#

There’s the good and the bad

#

But the good is pretty obvious

minor loom
#

soon, I guess they'll make a cert if you are able to turn on your computer and navigate it.

sturdy thistle
#

coffee time now

warped plank
sturdy thistle
#

nah recently i suck really hard at the art

warped plank
#

Cos you need the pressure of someone waiting for it kek

warped plank
#

I suck at latte art when it's my own coffee but then suddenly have really nice art when I have to make one for a customer

eternal mango
#

Ahhhhh! There's a big ball of fire in the sky!!!!

#

Oh, nvm it's just sunny

vast mango
#

how many certifications do you guys have

cerulean bloom
vast mango
#

Oh

cerulean bloom
#

in a year, hopefully 2

warped plank
dense turtle
#

3 hours to get on Welcome to the admin panel of your site.

sturdy thistle
#

i have 3 i think

dense turtle
#

great

sturdy thistle
#

BTL1, eJPT and CRTO

eternal mango
#

Just the 1

warped plank
drowsy hollow
#

I was thinking of pursuing some certs, but then I see the prices. Perhaps CJCA will be my first... or second, if I count electrician license.

rugged sentinel
warped plank
cerulean bloom
rugged sentinel
muted olive
#

arigatou senpai

#

🥺

#

also you have 3

warped plank
muted olive
#

for now kek

#

my bucket list has getting a blood in it

#

although thats one night of sleep gone

warped plank
#

Hades blood when? kek

muted olive
#

only blood will be my own 🤣

warped plank
#

@sturdy thistle there seems to be a distinct lack of coffee pictures waz

sturdy thistle
#

it's behind a paywall

heady sage
#

Or was it two of em

rugged sentinel
warped plank
#

other 2 were just him being a chad 9263zerotwoveryhappy

rugged sentinel
#

Facts was pure luck because I didn't put version number when searching for exploits

rugged sentinel
#

WingData was the predictable one

warped plank
#

@dense turtle please don't spoil active machines.

dense turtle
#

oh

#

ok, sorry

#

Got excited after almost 4 hours of attempts lol

heady sage
#

If I wasn’t in cyber I’d probably do audio engineering

warped plank
warped plank
heady sage
#

Some nerd posts the POC

#

Lmao I need to start looking at disclosures and posting POCs for em

#

That would be funny

rugged sentinel
warped plank
dense turtle
#

lmao ahaha

muted olive
#

I would love for someone to make a box where user is binexp

dense turtle
#

i thought it was much older lol

#

31 jan i see

#

loool

viscid sparrow
#

Random topic: did trump kinda destroy the nsa

#

Lol

warped plank
austere sinew
#

I’m so mad imagine waking up out of deep sleep for a vishing scam and now I cant go back to sleep

sharp shuttle
#

opcode when you need that next flag

#

🤝

#

i gotchu

compact escarp
#

Hello

sharp shuttle
#

sup wojak

compact escarp
#

Can you guys help me to become a main character from a npc role

sturdy thistle
#

there is only one main char

#

and that's @austere sinew

austere sinew
compact escarp
#

Ok ok but

#

World needs batman not batwoman

sturdy thistle
#

we have batman too, it's @austere sigil

austere sigil
#

👀

sturdy thistle
#

so we fully covered

austere sinew
compact escarp
austere sinew
sturdy thistle
compact escarp
sturdy thistle
#

ok, stop

austere sinew
#

Fiiiine 😔

compact escarp
#

Ok

compact escarp
sturdy thistle
#

None of my CVEs are public yet 🙁

austere sinew
#

amgery

sturdy thistle
#

i bet it will take another 30-60 days

austere sinew
#

Life is a cruel journey

#

Guys I made the cybercrime reporter laugh “what’s the point of being unemployed if you dont get to sleep in”

eternal mango
#

double badumtsh

#

I have chairs

#

Sofa

#

Garden hammock before a storm blew it away

#

Ok now I'm just trying to legitimis my poor attempt. I will stop

#

(you know I won't)

austere sinew
austere sinew
#

Im not sure if I got you or myself there

eternal mango
austere sinew
#

But

#

It was just the best moment for it

#

It was such good sleep no less

#

Stupid vishing scam

#

Now I have to get up and be a functional human being

sharp shuttle
muted olive
austere sinew
sturdy thistle
supple plume
#

Vre

dense turtle
#

brbr

supple plume
brave violet
#

On my first real pentest this week haha

#

Htb trained me well

eternal mango
#

Good hunting!

brave violet
#

Thanks! Managed to score a high on my first morning

#

So super pleased

eternal mango
#

Sweeeet

terse dirge
#

@supple plume kubernetes time!

sharp shuttle
#

me when hungry

terse dirge
#

brath, you should learn kubernetes

sharp shuttle
#

i did my time ceald

#

i did my time

#

no thank you

terse dirge
#

but did you automate deployments on it? 👀

sharp shuttle
#

if i have to look at kind ever again i might lose it

#

yes

#

troubleshooting that monster was practically hell on earth

supple plume
terse dirge
#

lmao even with using chatgpt or claude for fixing issues it's like "idk gamer" quite a bit of the time

sharp shuttle
#

yep, no doubt

#

im prepping for my workshop so no time to even consider it

terse dirge
#

I really wanna move absolutely everything in the cyber range to kubernetes but been getting push back on it because of "but we need VMs" fun fact, you can run vms in kubernetes

#

and in docker

supple plume
eternal mango
#

Heheheh

#

Haven't touched Kubevirt in years

#

Curious how it is now

cerulean bloom
#

time to get root on the new machine

eternal mango
#

I had a dream... of everything in HTB being a container

#

🤣

#

It didn't happen

supple plume
eternal mango
#

That's not everything

terse dirge
#

6.7k stars on github, it's either really janky or really good

eternal mango
#

and I wrote the challenge containerisation implementation

#

at least the original one

eternal mango
terse dirge
#

I mean cloudflare uses it so it must be gud

eternal mango
#

Definitely worth checking out

terse dirge
#

I might set it up to check it out then tomorrow

eternal mango
#

I was just concerned about whether or not the k8s overlay and management would be able to handle the amount of workload

#

I had a solid probably

#

but we moved on from that experiment

terse dirge
#

whaaaat ms is one of the vendors????

#

ok if this is literally what every cloud platform uses then it is good kek

eternal mango
#

🤣

terse dirge
#

and overly complex

eternal mango
#

Ok time to tell infra to reformat all the dcs

#

Nah it's not too bad

#

Once you get your workflow to import and manage images, and your base yaml to spawn and primitives to etc etc etc

terse dirge
#

already have my workflow automating docker compose to helm chart and building docker images idaCool

eternal mango
#

IIRC it supports thin clones too

#

heheh

#

Well ok, not broke, don't fix

#

But at least worth reading over it. It's a pretty cool project

icy viper
#

How often do employees deal with stakeholders in an IT job?

eternal mango
#

It depends

icy viper
#

Lower tier ones probably don

#

don't often

#

But management would a lot more I'm guessing

eternal mango
#

In my last role, from the get go I was encouraged to engage with stakeholders in planning etc

icy viper
#

Whether that be general manager or shift

eternal mango
#

But not all companies work like that

#

In HTB, I try to encourage people to see my door as always open

icy viper
#

I really have to get better at talking and communicating and not jumble my words

eternal mango
#

But people got their own shit to do rather than speak to me

#

🤣

#

It's an important skill to help encourage people to slide in to

icy viper
#

Active brain all the time means I forget what I'm saying or where I was going with it then I jumble words and lose track of the conversation

eternal mango
#

But yeah, really depends on how the company is structured, and what the culture is like I guess

icy viper
#

Wouldn't be too bad in my country I guess, small population

supple plume
eternal mango
icy viper
#

Yeah but if I'm put kinda on the spot to talk to a stakeholder, I'm bad at trying to get the words together

eternal mango
#

(my handwriting is only decipherable by luck)

#

But I agree

icy viper
#

Yeah I'm surprised I passeed any exams at school due to my handwriting

eternal mango
#

When I did courses, was in college (briefly), pen and paper, notes, useful

#

Got a little notebook somewhere from some crypto course

dense turtle
#

I have one question , does silver or gold subscription from Academy unlock the Machines or these are 2 different subscriptions?

eternal mango
#

...I need another crypto course to decrypt them

supple plume
#

Time to lock in 0n_beefarmleft

icy viper
#

Hopefully not too many stakeholders in a small country, less chance to having to talk to a group of people. Business meetings is the thing I'm really not looking forward to. I'm bad with crowds 🤣

#

But being a small country with not the best IT stuff, means a lot more responsibility I guess

eternal mango
#

They're there to listen and engage with you. Maybe that doesn't help, and yeah building up that confidence takes time, but you will get there.

dense turtle
#

Ok, what about lets defend?

eternal mango
#

I thought we had that conversation a few days ago

icy viper
#

Oh I can't add pics. How do i verify on here>

eternal mango
#

You need to be of Hacker rank in order to embed 🙁

icy viper
#

Ah yeah. Haven't been able to do much recently, been doing another course.

terse dirge
eternal mango
#

Post the URL, someone else will repost it

eternal mango
supple plume
icy viper
#

Yeah that's me talking on the spot lol

eternal mango
#

I remember being asked to stand up and sketch out a project we were working on

#

10 seconds later it looked like I'd tried to draw a gingerbread house with an octopus on top

#

Someone else took over the drawing

icy viper
#

Sketch out, like draw? or just write ideas?

#

Drawing for me is completely out of the questiom

eternal mango
#

Yeah like a flow diagram, how components would hook up etc

terse dirge
icy viper
supple plume
terse dirge
#

I should install kube armor on the cluster tbh

dense turtle
supple plume
terse dirge
#

unnecessarily complex, works half the time, but works amazing

eternal mango
#

Just like <applet> tags

icy viper
#

@eternal mango How long did it take you to find it easier talking on the spot?

static bloom
#

g0blin was fantastic last time at the cube talk

#

need a tad more confidence and then its even better:)

eternal mango
icy viper
warped plank
#

I missed g0blin at cube talk? 2987zerotwo

static bloom
eternal mango
#

Thankfully I've been lucky with my employers, mostly

#

My previous one was great

#

and HTB oviously rocks

azure remnant
#

this is why u need me

eternal mango
#

But yeah, it took time.

#

Public speaking, sometimes I can do

azure remnant
#

I can clap with one hand

eternal mango
#

sometimes I crap myself and finish presenting a 15m presentation in 20 seconds

icy viper
eternal mango
#

But when it goes right, when you are presenting something you are passionate about

#

It's just like talking to someone next to you in the office

heady sage
icy viper
supple plume
heady sage
#

I have a new respect for anyone who does it professionally

eternal mango
icy viper
supple plume
eternal mango
#

I wasn't that hot on front end, but I could manage

#

It was fun

supple plume
icy viper
#

I;m just looking for a helpdesk role at the moment

supple plume
#

mueheheh

heady sage
eternal mango
#

dawwwh

icy viper
#

There's a few helpdesk roles but yeah. I'm really beginner IT trying to change careers.

heady sage
#

There are 3 people in this life I truly have a disdain for

icy viper
#

Kinda funny cos it feels like I'm moving laterally going from my current job to helpdesk but at least help desk would be in something I'm passionate about

supple plume
#

I didnt even know that doanl tramp name was john

icy viper
#

Donald John (Wick) Trump

supple plume
#

hey!

#

I was reading

eternal mango
#

My comments were not worth reading.

undone fossil
#

Uh

heady sage
undone fossil
#

Not to diminish your feelings but this isn’t the place

supple plume
#

vro

#

0xVader talks every other lunar eclipse

#

let her talk aright

heady sage
#

It’s alright

undone fossil
#

What

#

How often someone talks has nothing to do whether it’s appropriate or not

heady sage
#

Im inclined to listen to him

undone fossil
#

Idgaf usually but man I just woke up and saw curbstomping and mentions of political figures lmao

eternal mango
#

Thank you, both.

#

Let's move on and eat beans on toast for breakfast.

heady sage
#

I’m stunned that anyone would even do that

#

Don’t put beans on toast, are you fucking crazy?

supple plume
#

weebix

#

how was that wombat cereal?

eternal mango
#

I don't like weetabix

#

It's like a building material

eternal mango
#

EWNO

icy viper
eternal mango
#

TOAST, NOT WEETABIX

#

YOU HEATHEN

heady sage
#

British people amuse me

eternal mango
#

Buuuut

icy viper
heady sage
#

I know what you are

eternal mango
#

I'm totally stealing that image, printing it out and putting it on the window of the local cafe

icy viper
icy viper
icy viper
lavish hull
#

.

eternal mango
#

chookity

icy viper
#

Wondering if I get some old PC components and build some stuff for practise. Install Linux on them and have a small homelab lol

lofty marsh
#

Btw I tried it an hour ago on the store and it smelled like burnt wood for some reason NotLikeThis

#

I got the myslf

eternal mango
#

Sandlewood or something?

#

and something more like

lofty marsh
#

Idk man I put a dose on my arm and it smells kinda weird imo

eternal mango
#

haha

lofty marsh
#

I also put a dose on the jpg le male le parfum

#

THIS SHIT SMELLS GOOD BRUV

supple plume
#

hey g0blin can I ask you for advice

eternal mango
#

You can, but I can't promise I'll provide good advice

#

What's up

supple plume
#

idk if I should say here

#

can I dm?

eternal mango
#

Of course

supple plume
austere sinew
lofty marsh
#

Brother that's british breakfast 💀

supple plume
#

bri'ish

lofty marsh
#

mate

austere sinew
#

@.serious rule break

lofty marsh
#

one dot away from being muted kek

supple plume
#

@bri'ishRuleBreak

muted olive
#

its lunch

heady sage
austere sinew
meager kernel
#

Hello

heady sage
#

Please tell me they aren’t bbq beans

austere sinew
#

But most countries do

lofty marsh
#

Btw echo

#

any news with the team?

meager kernel
#

Another good thing happened for me

supple plume
meager kernel
#

Got my offer letter

#

Today

austere sinew
#

Latin american countries, the middle east, just with different bread

#

WHY DOES EVERYONE CRUCIFY OUR BEANS ON TOAST

muted olive
#

on bread

austere sinew
meager kernel
#

@austere sinew @heady sage I got my offer letter today!!!

austere sinew
#

Fuul

heady sage
heady sage
#

You’re not American

meager kernel
#

Today was a good day cause of this

austere sinew
#

Btw

lofty marsh
#

He ain't got no blickys bro

austere sinew
#

Felt like clarifying

dense turtle
#

I am about to make montlhy subscription to academy and lab , are there any valid coupons?

austere sinew
muted olive
#

hmmm

meager kernel
meager kernel
#

With one friend

lofty marsh
meager kernel
#

Local

lofty marsh
#

Ahhh congrats vro

meager kernel
#

Today I'll go sleep alot

lofty marsh
#

wait are you in a cybersecurity college?

meager kernel
#

No

sturdy thistle
#

haircut and beard cut today

lofty marsh
meager kernel
lofty marsh
#

Oh that makes sense

#

I am in pure software developer sadglas

muted olive
muted olive
#

Thats the only thing CS equatesto

#

at least there's AI now

lofty marsh
#

Meaning I never learned networking there

#

All the networking I learned was from htb

muted olive
#

practical is good

lofty marsh
#

but not good enough

muted olive
lofty marsh
#

I still dont get why tf unis do this

icy viper
#

My course is saying my country is really informal even talking with managers 🤣 not wrong though

lofty marsh
#

What's the purpose kek

muted olive
#

You need to write programs by hand at least

#

And with Python its hard because my handwriting isn't great, so if the indentation is wrong, its an error kek

sturdy thistle
terse dirge
sturdy thistle
#

i look like a hobo now 😂

lofty marsh
#

Kinda

#

and kinda not

#

Depth is good

#

Not just coding like a monkey

primal burrow
#

yall how to know what is fully free in htb like i see courses with only first few free then rest are locked

terse dirge
#

I think it's always better to pick up theory as you need it because then you know how to actually apply it rather than reading about it and not doing anything

lofty marsh
#

Theory with no practical and practical without theory

#

The balance tho is good

terse dirge
#

always go head first into things! Never go slow, you'll fall on your face but get back up faster every time

terse dirge
# heady sage How’s the cyber range

ehhhh, it's kinda just me and another person now sadly, everyone either got a j*b, is "busy" or just doesn't want to put any effort into the place and when big changes are wanted to be made it becomes a whole ordeal

muted olive
#

just selfie and gen an image with gemini to see how you look

lofty marsh
#

Btw emma told me yesterday or today cube talks will be released on spotify sadglas

terse dirge
#

we're kinda at a point where we can't add or make anything better other than the networking equipment because we're stuck on a gig up AND down. Also there are no vlans

sturdy thistle
#

2 new reports done

terse dirge
#

our servers are also very bad

sturdy thistle
#

hopefully 2 new CVEs

muted olive
sturdy thistle
#

same

muted olive
#

submitted web3 bug this morning

#

rust

eternal mango
# sturdy thistle hopefully 2 new CVEs

I've been refreshing two PRs for those reports (I think I mentioned) I put in.. waiting for them to come back saying "the hell are these tests supposed to be!!!"

sturdy thistle
#

esp if it says testing will be done in 4-7 business days

eternal mango
#

But they weren't about to put the PRs in

#

🤷‍♂️

terse dirge
#

I haven't really been doing much HTB tbh. I really should get back to doing it instead of devops and kubernetes

muted olive
#

I submitted a report to ZDI but I'm starting to regret my decision

sturdy thistle
#

i'm waiting since 20 days

muted olive
#

Might withdraw

sturdy thistle
#

for 1 report

muted olive
#

Any of you done ZDI before?

muted olive
#

google accepted my report but they said they'll test later when their security team has a meeting to discuss

#

microsoft is still testing

#

meta is still testing

#

all of them keep delaying it 🥀

zealous charm
#

Google takes about 2-3 weeks from when the bug is added to the hotlist “to-reward panel”

sturdy thistle
#

they're just testing

muted olive
#

impatience++

zealous charm
#

I think the panel meets on Tues/thurs, but I got my payout on a Friday

stable lichen
#

Is the HTB Academy wifi pentesting course the best one out there for now/

muted olive
#

fuck

lofty marsh
#

Btw I wanted to ask this from yesterday

muted olive
#

python fixed two integer overflows

lofty marsh
#

Are all boxes or hackings similar with Cap?

#

Same ideology?

terse dirge
lofty marsh
#

Like do I always need linpeas and shit?

sturdy thistle
#

this is even worse

lofty marsh
#

lmao

sturdy thistle
#

SINCE 16th OF DECEMBER

#

and i still can enumerate all user accs

eternal mango
muted olive
eternal mango
#

Sometimes a tool will be useful like Linpeas

#

Sometimes it will not be

muted olive
#

is this the company triager or H1 triager

lofty marsh
#

How am I supposed to remember all attacks?

#

like <script> on an html txt and shit like that

eternal mango
#

It takes a lot of practice to build up your knowledge of not only vulnerability types, but tooling, exporatory methods, enumeration etc etc

#

It's a very wide field

lofty marsh
#

It is..

#

I can see it 💀

scenic maple
#

how many times did i get hacked in these 4 days waz

muted olive
#

ping @scenic maple

eternal mango
lofty marsh
#

CJCA or CPTS?

scenic maple
#

cj

scenic maple
#

one of my repos that are in prod 💀

eternal mango
# lofty marsh CJCA or CPTS?

Start with the Fundamental modules, and move on from there. If you then want to move on to a path as a beginner, then maybe CJCA moving forward?

lofty marsh
muted olive
scenic maple
#

you fix one vulnerabilty and 2 more shall take its place

scenic maple
eternal mango
#

There's a lot of practical exercises in Academy

sturdy thistle
muted olive
#

monetize it

muted olive
#

I mean

lofty marsh
muted olive
#

publish it after its been 120 days

#

get CVE

#

ez

eternal mango
#

Uhh

heady sage
#

Maybe I’ll publish some to HTB

eternal mango
#

You did that all, and you struggled with that problem earlier?

#

You might want to go back and go over the exercises again

sturdy thistle
eternal mango
#

No offense

heady sage
#

Send me that submission link again @eternal mango I’m tryna see somethin

eternal mango
#

But that problem we went through earlier is something you would've encoutered in some form through that track.

terse dirge
sturdy thistle
#

it sits at this state since 16th of december xD

eternal mango
#

You went through them..

muted olive
heady sage
#

Do yall need web challenges? @eternal mango

sturdy thistle
lofty marsh
#

Man... I suck 💀

#

I'll go through them again

sturdy thistle
eternal mango
heady sage
#

Submit it anyway?

terse dirge
sturdy thistle
heady sage
sturdy thistle
#

lol

muted olive
muted olive
#

ohlike you exploited a cve to get that bug

terse dirge
scenic maple
#

LMAO 3 more popped up
i am done with this

sturdy thistle
#

ye

heady sage
scenic maple
#

javascript waz

muted olive
#

or actual people reporting

terse dirge
# eternal mango Cyber range?

ya, it's a place where you can learn about cyber think like HTB but irl and with worse equipment and infrastructure

scenic maple
#

if you use those repos as dependeency then you get notif too

muted olive
scenic maple
sturdy thistle
#

actual claude people

muted olive
#

chat should I ditch ZDI

sturdy thistle
#

whatever this is - yes

lofty marsh
muted olive
scenic maple
#

looks claude but i dunno

sturdy thistle
#

as a claude user, i say it's claude

muted olive
dense turtle
#

Good, the machine went past the 8-hour limit and shut down, I only had the user flag so far pika

muted olive
#

looks human written

sturdy thistle
#

humanized claude skill

lofty marsh
#

Btw @eternal mango where did you see me struggle the most? Because I think I was struggling with the tools most like linpeas sadglas

#

And what do you personally recommend me?

muted olive
#

no space between the word and +

#

most likely human

scenic maple
#

well they wont paste it lol

#

they do write it by hand

#

me included

#

even if claude finds it

muted olive
#

well thats not an ai report then

#

i was talking aboit copy pasting

scenic maple
#

what i am trying to say is claude may have found it and humans reported it

muted olive
#

thats fine because it implies humans understand what they are writing

#

hopefully

scenic maple
#

but there is no way to know for sure who reported it unless you put in a curl bug report toomuchtroll

heady sage
#

CodeQL is a godsend for finding vulnerable patterns

muted olive
#

I love cirl reports

heady sage
#

Also @scenic maple Chrome is so based for parsing the Link header differently

supple plume
heady sage
#

Do curlswigger writeup on oauth :3 @supple plume

supple plume
#

which one specifically?

#

I was going to work on the blog today to set up the RSS so it's good timing

#

I also have one pending but I can do oauth first

#

is just going to be hell on earth to do it with curl

unkempt cradle
#

is the cpts exam straight forward

#

??

lofty marsh
#

jesus..

#

Im watching soulmate by ippsec and he uses ffuf and nuclei instead of gobuster and burp suite and it's confusing kek

supple plume
heady sage
supple plume
supple plume
supple plume
heady sage
heady sage
muted olive
#

to get new CVE

heady sage
supple plume
eternal mango
heady sage
#

I’m looking through our nasa report and damn i realized how overly complex our payload was @eternal mango

eternal mango
#

(was just curious if there were any "oauth aware" curl-like tools out there)

young glen
heady sage
supple plume
eternal mango
#

You could also use a UI like Postman or hoppscotch

#

But then you don't get that hacker cred for using the CLI

#

🤣

#

..but you can get tests setup there

#

and then export to cURL, understand how to do it from those exports

#

Anyway, just some ideas

#

You do you at the end of the day 🙂

supple plume
#

I will find the way to do it with curl through unnecessary pain

eternal mango
#

Trial by fire

#

💪

#

🍿

plain fossil
#

Hey guys,

Can I solve the windows ad, POwn and Co boxes (easy) on active machines to grind my rank?

I am just experienced in Web exploits and Linux stuff

eternal mango
#

Active content will increase your ownership percentage and progress to the next rank

plain fossil
eternal mango
#

No, Academy does not increase your rank

#

The Academy and Labs are seperate. The Labs content increases your rank.

plain fossil
#

I know, but I want solve active machines.. I have no knowledge about the other categories like pwn and windows ad

eternal mango
#

You can solve active Machines, they count to your rank

#

so do Challenges

#

There are different categories of Challenges.

#

@brazen bridge this is not the place for that.

heady sage
brazen bridge
#

Understood

#

Is it my name or the text I sent?

eternal mango
manic anvil
#

how do you guys deal with websites that have cloudflare during directories listing?

sharp shuttle
#

you hope to god you can domain transfer

manic anvil
#

the problem is it need you to validate you are human

sharp shuttle
#

oh thats what you mean

#

they have lots of services that bypass those

#

but youd only use them during RTO

#

or...

#

bad actor activities

#

just give it a few months buddy

#

the agentic pentesters are going to obliterate modern security

manic anvil
#

sadglas manual enumeration it is then

sharp shuttle
#

(all part of the plan)

manic anvil
#

like this company have a bug bounty program but i feel like i am missing something by not being able to list directories

sharp shuttle
#

all of this AI stuff was really just to force digital ID

#

😄

manic anvil
#

AI suggested i use their original IP but it appear that i cant find it lol all i can find is thier cloudflare

sharp shuttle
#

did you enumerate their dns?

#

as in, osint

manic anvil
muted olive
#

cloudflare is used to proxy their content through cloudflare's servers instead of their own

manic anvil
#

yeah i figured out now , i guess i will keep looking

dense turtle
#

talking about ranks

#

How is possible Facts machine have 8500 user flags 8100 System flags and my global rank saying 928

cerulean bloom
#

thats depends on how many points you've gotten from like active stuff

signal mica
#

for advancing defensive side

#

cant wait to capitalize on it

dense turtle
cerulean bloom
dense turtle
#

so shouldnt be at least 9K people on global?

eternal mango
#

You were even around when we were discussing that

#

😅

dense turtle
#

I was too focused in doing Cap lol

eternal mango
#

That rank of 928 your global rank, not your season rank

#

Your season ranking is showing as -, so I assume it will be calculated on the next full update

#

..unless there's a lower threshold for ranks to be marked for seasons

#

I'm not sure how that ranking portion works, as I didn't work on it

lyric robin
#

Hi,
Is the insane box Apt mainly hard because there was no indication for ipv6 usage?

cerulean bloom
dense turtle
#

oki, thanks for clarifying

eternal mango
#

They've solver user for facts so far

dense turtle
#

yes i just solved user flag so far

cerulean bloom
eternal mango
#

but not root.. perhaps it's not marked until both user and root are solved?

cerulean bloom
#

they need to solve a machine within a week of it being released

eternal mango
#

Aha well there it is then

#

😄

cerulean bloom
#

for them to get points

eternal mango
#

That explains it

cerulean bloom
#

yep

#

same for me too, cuz I didn't solve facts in that week

eternal mango
cerulean bloom
#

I had to prep for a big coding comp

frozen zinc
lyric robin
#

Anything from enumeration that indicates that u need to us ipv6

#

Use*

eternal mango
#

There are indications from enumeration

#

I just don't think you've enumerated that bit yet 🙂

lyric robin
#

No I m preparing for it, I prepare for insane machines rather than go for it

#

Because I won't be able to do it alone due to lack of knowledge

#

Unless it's just alot of steps and basic

#

Like infiltraror for example

#

Or absolute

eternal mango
#

Well, I think I gave your answer 🙂

#

Enumeration is key

lyric robin
#

Mb

#

Can u provide an example

eternal mango
#

Check out the writeups that are available

lyric robin
#

That tells me that I need to use ipv6

eternal mango
#

..but they will include spoilers

#

Move over to #boxes for further discussion on the box please

exotic pendant
heady sage
#

@eternal mango @cerulean bloom @supple plume

eternal mango
#

I'm working at the moment I'm afraid

#

maybe this evening

devout sail
#

What is it? The uhh category

heady sage
#

Web

devout sail
#

Echo would enjoy it yeah

supple plume
exotic pendant
supple plume
#

omg

sharp shuttle
#

i am holding onto some cool bugs relating to GSC software

#

strategically

exotic pendant
#

I’m just trying to get a bug in every major company and someone said to try gitlab

sharp shuttle
#

did you get one in phub yet?

exotic pendant
#

Apple, IBM, Google, Nvidia, php, dnsmasq and a bunch of other stuff so far

#

Is what I got

exotic pendant
sharp shuttle
#

wait for real?

devout sail
#

I was thinking about submitting a machine with name with a slash test/test
Would it break their api?
Cuz it's something like api/Machines/Name

sharp shuttle
#

what happened to texas

#

yall got californiacationed

exotic pendant
sharp shuttle
#

what going to happen to that lakari guy

#

isnt 2d image also banned

dense turtle
#

wasnt phub that had a big leak few month ago?

devout sail
#

I think it was paypal.?

sharp shuttle
#

big leak?

dense turtle
#

both lol

sharp shuttle
#

idk, everybody is getting hacked nonstop, it takes a few months for them to inform the public

#

yo shadow, what tea you chug juggin these days

dense turtle
#

big, i mean i dont know the dimension, but even 5 emails could be catastrophic since it is from that place...

static bloom
devout sail
sharp shuttle
#

my friend it is better to assume everybody has seen your pp and knows your disgusting fantasies, life is easier when you accept that reality

#

i am speaking from experience

#

used to do hiring for a company that swore by lexusnexus

dense turtle
#

i just can imagine if they store ids same way as they store the rest of data

sharp shuttle
#

lots and lots of snapchats

#

every social media sells your data

#

your photos

#

and your interests

#

all of them

devout sail
#

I use social media for memes
They can sell my taste of they want

signal mica
#

might have to delete this joke, although its excellent

sharp shuttle
signal mica
#

deleting now

sharp shuttle
#

delete what?

signal mica
#

my 0km joke

sharp shuttle
#

i must have read it and thought it was tame

young glen
#

What joke

sharp shuttle
#

i think its messed up girls befriend women who they use for their own gain

devout sail
sharp shuttle
#

was the joke shes so fat shes right next to you?

#

"yes brath"

#

im just waiting for my melatonin to hit

gray wraith
manic anvil
sharp shuttle
#

chug brathadair