#general
1 messages · Page 637 of 1
make a rock band!
someone quickly grab a bottle, i need to collect rem tears.
Whatever red team path you choose, at the end, you will end up with binary exploitation
Just realized that
Why
Being a monster IN AD & Web
While being the worst in pwn is funny
What's pwn
Some web vulnerabilites and AD environments would require you to exploit buffer overflows, UAF, bypassing PIE&ASLR and some security restrictions
You could just stick to the ones that don't
For example dante, the easiest pro lab
It requires you to exploit a buffer overflow
That would work temporarily
But when you get into business you will suffer
You don't choose what work you should do.
I love these
web vulns requiring pwn is new to me though
What is more crazy
What is pwn?
Is that you might encounter a corporation that uses a compiled Web backend, and they don't trust you that much so they don't give you the source code.
Instead, they give you the compiled binary, where you must reverse engineer it to understand how the application works under the hood.
Binary exploitation
I reverse engineer to crack video games/software DRMs and custom activation systems but that's it
I reverse engineer Diablo II game engine for modding
Oh yeah and also to bypass anticheat libraries
Activisions one is the most annoying
It depends, but I just hate staring at and branching through assembly instructions lol
Morning
Banned
urself
No
morning
why my target not showing
Need to speak to a person? Learn how to reach our support via HTB Labs.
@spark mulch i think i found the guy in your pfp, i think hes a lolcow named chase william mulligan
hi brath
I just watched this guy had like these black things taken out from his mouth that was actual witchcraft.
yayyyy
Some dude is asking me for help about a box in DM. I've asked 5 times, "what have you tried so far?" and the guy refuses to fucking answer me.
Sigh.
How the shit am I supposed to know how to help you if I don't know what the living hell you're doing, what you're tried, etc. etc.
It's just ridiculous.
Just ignore him
Probably best to do so
Has he asked you if he can DM you in the first place?
First no. I told him in the channel not to DM w/o permission. Then I allowed him to DM me.
I see. So best you can do is just ignore.
MTO!
Tejas!
How are u?
I'm fine
Good to hear
Yup, I thought the same
Yo guys what’s the best way to get into websites for penetration testing?
https://app.hackthebox.com/fortresses/1
can anyone do 2 more reset https://app.hackthebox.com/fortresses/1
use US vpn .
@sturdy thistle
i voted
thz
5.99 plz
Are any of you guys lack toes and tolerant?
Bruh
Well
At uni, we have an annoying website that requires you to rate the doctors before you can enter the registration interface website, exams info, etc
You have to answer like 20 questions with 1-5 stars for each one
I built a script that just does it
Is it safe to publish it on e.g. my accounts


peak time management
man you tripping
no insane box this season ?
Do companies use AI when they are making reports on some topics?
One of the last ones will be insane. They cut down to 2 hard and 1 insane per season
I have to write a report on Embedding Security into SDLC for my internship
is it fine if i use AI?
I wont completely copy paste ofcourse
but just for the material
who knows
you should ask the company
then don’t use AI lol
theres no involvment of confidential material tho
since its just a general report on SDLC
company might not like AI tho
so if u wanna keep your internship
either ask or don’t ask and not use AI
to be safe

i could say that the time i took to make the script is longer than the rating process but no
The wbesite is old and very annoying
Also this happens every semester so it makes it a lot worse
I sent u in bitcoin
thanks i received it
Good morning hack the box
o.O
is it easy?
New pfp?
Medium
ah then might take some time
yea mate
guys how to get more spwan box?
Use vpn
you’re literally a box
in minecraft
Hope everyone is having a good day!
yes thanks
Gym today mick?
okok
guys how to get more spwan box
I'm in dilemma if I shud go today
yes go
pay
im broke
then listen to advice
im also broke
get job
welcome
Guys
wat?
Guy
-_-
goy
Damnnnnn
Hi ,
I’m currently working through the Linux Fundamentals – Section 6 module and I’m a bit confused about one of the questions.
The question is:
“What is the name of the network interface that MTU is set to 1500?”
Here’s my situation:
- I’m using the Pwnbox provided by Hack The Box
- I also downloaded the VPN files and connected from my local machine (Mac)
- I was given a target IP as well
What I tried:
- On the Pwnbox, I ran
ip linkand gotens3with MTU 1500 → but this was marked as incorrect - On my local machine, I checked with
ifconfigand found interfaces likeen0andutun0with MTU 1500 → also incorrect
Now I’m not sure:
- Should this question be answered from the Pwnbox, my local machine, or the target system?
- Is there something specific I’m missing about how to interpret this question?
I’m still pretty new to Hack The Box and Linux in general, so I might be misunderstanding something basic here.
I’d really appreciate any clarification or hints on what exactly is expected here 🙏
Thanks in advance!
Also, connect to the target machine
to also just help you out, you have to run the commands on the target machine given (the ip you talked about)
Hi HTB peeps. I was just wondering if you have a section on automotive/car hacking? Or do some basic principles still apply?
Thanks for the help, but I don't quite understand how to connect to the target machine. I've received the IP address and the VPN files, but I can only access the Ubuntu default page.
there should be instructions on how to SSH into the target machine
I would assume they don't, because I really don't know how you would learn that without having an actual car
okay, thanks
"In order to complete this path, it's mandatory to buy car xy. that we gonna hack"
"use this referral link to get 10% discount"
mick20
I started getting ads for clinical research trials. I might be cooked chat
OF discount?
yes 
Gib me 100% discount
hack your way in
Imma create a insane challenge back to back
time to hack 
wdym back to back
create two insane challenges in a short amount of time and submit them both
I created one already, I have an idea for another one
what are you hacking
trying bounties
gl bro
As an ex Toyota and GM, most display, and entertainment units run linux environments.
Could also use flipper zero to pick uo the signal frequency
Keep on rocking
Donut machine when?
I could submit like an easy machine, but no promises lol
echo "10.10.10.10 dount.htb" > /etc/hosts 🗣️ 🗣️ 🔥 🔥 🔥
echo “ 🥜 “
Dc01 sql01
No

LinkedIn with a real job posting
Gotcha
I just found a terrible bug, submitted to h1 
$$$
duplicate
Huh?
I meant that instead of getting cash, lots of these "critical bugs" get labeled as a duplicate 
Because they want to weasle out of paying
Leave the bug in for another 6 months too
I am confident it's not a dupe
I would be surprised if it is
I mean, there's tons of people crazier than you in this field 
but hope you get it regardless
go make that cash money
I know there is people better than I will ever be
but the bug is too bad to not be patched quickly
andthe last report was 3 months ago
on this program
same, I've learned to just: have no ego in this field, I don't know shit.
The story of how a blackhat gets born… Hunt for 6 months, gaslighted by companies that everything you find is a duplicate. Bugs remain after 6 months, you are hungry and cant afford food
I spent 30 mins on the most recent box just troubleshooting why I wasn't getting a shell, turns out there was no problem, I just didn't see that I did get a shell 
So I might be competent if I wasn't so blind
Not me - I'm an APT with over 9000 confirmed process kills
I spent 2 hours on the wrong payload
I managed to break it in a way I bet even the testers didn't see: #1492582441259503747 message
And not just the processes, but the background processes, and the child processes, too
You also get this by bruteforce
Best hacker on planet earth out there
Literally just fuzzed with 30 requests, killed the database, damn.
Yup, been there, done that
Time to submit a disclosure for a database DOS 
damn it~ DOS is out of scope

I'll use proxychains and submit it as a DDOS instead 
There's no better way to destroy your ego than doing an exam
You'll never feel that stupid again ever in your life
True, I felt so damn stupid taking the exam... but also I always feel stupid when doing a machine 
Bro, I did some stupid shit during CPTS, when I got stuck, that not even batman could get me to admit to.
so true brother
Yeah same, but you feel way dumber on the exam because you are supposed to know the content lmfao
I dove so deep into a rabbithole only to realize I've been out of scope the entire time which is probably why I couldn't find anything 
At least in the original exam, absolutely everything is in the course somewhere. I can't imagine that philosophy has changed.
I mean... I probably did some stuff that I learned on machines over the path but looking back at it now I can see how it's possible with the methods taught in the path...
I imagine you're wrong, if you're stuck lol
Yeah, it's not necessarily the exact same scenario, but the same methods/tools.
The course 100% prepared you
Nope, I definitely used some methods/tools that the path didn't even come close to talking about
There's this one annoying part I did which the path only mentions once in passing, like in 1 sentence.
You didn't have to, though lol
I mean, probably but at the same time I just hated the whole experience.
CPTS was so troublesome to me lmfao
When you pass it, you will look back and wonder how you ever got stuck
Same, some parts were super interesting but I hated most of the exam 
I look back and go: ofcourse I was fucking stuck, I was baited by: 0xRy4n was here!
It's nice to know that someone with CAPE still struggles with CPTS though lol
lmfao I'm dumb man
Same
Untrue
Now I can really say that doing CPTS before CAPE changes nothing
I mean, probably helps with a bit of AD knowledge
I was stuck with it all day and turns out the 10 million usernames list didnt have that user in like the first 200k
how long have you been hacking?
ehhhh idk about that
Before CPTS? I had done a few boxes on the platform and had done the OSCP training (not the exam though)
nice
And of course the full CPTS course which took me about 3 months
Bro ive been 1 year and 2 months and still 90%
including the exam?
I started the CPTS in February last year and got my cert in September, so a total of 9 months given I was enroled in uni for the first half of that and took a couple long vacations.
The exam came out in September, I started the course in November, and I think I started my exam in the beginning of February. Like 14 days after I failed waiting on results, and passed on second try. Got passing results on March 3rd
And you didn’t even need to bruteforce. It’s right there in plain sight
fortresses is free ?
OSINT go brrrr
I had to go crazy to finish all the offensive paths in a year + uni
No surprise I burned out in the end of year
I thought it read marben a full word 
I burned out a few times during the course, and would take a few days off
Ive had a month off during the path once
It was especially lame the way they would ramp up at the middle of the course with the AD module, and then followed it up with a ton of boring/easy modules
Yeah that makes no sense for me
AD should be one of the last modules
Its just there in the middle of nowhere
Like, you finally feel like you're doing network stuff, and then it's like 'this is how u proxy'
Yeah that is so stupid
I used to hate AD, then zumi made me obsess over it 
Jumed straight from metasploit to ad chain abuse
I used to hate AD cos I wasn't too familiar with it, now I'm familiar with it and hate it even more 
I used to hate AD back when i didnt understand it. Now when i took the module, i still dont understand it and i still hate it 🗣️
The worst part was passing CPTS and thinking 'wait, I'm still a dumbass'
I mean I used to think it was mostly stupid shit like: Welcome1 (iykyk) but now I just learned it's mostly stupid shit like: GenericAll on account that has RBCD
is this my fate 
fortresses is free ? @warped plank
The worst part is when you notice you will always be a fucking dumbass
idk, they should be but I never done one 
I immediately went to maldev because I realized that everything I had just learned would be invalidated by even the cheapest AV
lmfaoo
That what i always think about
if u go to this page what u see https://app.hackthebox.com/fortresses/1 ?
I prefer using remote tools cos the AV can't spit out what it didn't ingest 
I see jet... why?

I still feel like I know nothing lmfao
The more you know, the more you realize you don’t know
You can tell how skilled someone is in the industry by how much they are able to know how little they know
I feel like all y'all are smarter than me, and if y'all feel stupid I feel even more stupid whenever y'all say you feel stupid.


I also feel like y'all are smarter than me

I guess that's just how cysec goes
but in reality I probably only feel that way cos y'all solve boxes faster
(mainly cos I'm still asleep/have to go to work the day they release
)
Dude I felt like shit when I was competing with OSI
Yall are 1000x faster
While I was running scans you guys were already 10 steps ahead on the box chat
That destroyed me so much 😂
Im nervous af
Yeah I even see them getting bloods, I go... ahh yes, I'm the idiot here.
I caused DOS on my target
Yeah I was wondering at the time if I was even fit to be there
BRUH
Whats the worst thing that can happen
They have safe harbor so I think the worse can be just bad reputation on h1
But I didn't do it intentionally
And reported asap
Are you talking about a real target? 
Yes
I did say that in the report

damn why'd you edit it? 
that's when you just walk away and hope it comes back online in 5 mins 
Can I dm?
sure
"...to demonatrate how bad can it be in real life"
lmao yours works better anyway
a year in animation school just to meme 
What if they intentionally took it down
everyone needs a break, even servers
you about to get chomped
who chomping me
I really wanna try CWEE but the path already makes me suicidal enough, I cant even imagine the exam
😼
Nah he looks like he needs a hug
1337
azomax my goat
u still on that cpts drive? im doing ai red team acad
Bro's holo... but there isn't enough flags in the season to get holo...
🧘♂️
that's what I was talking about, some people are just better than us
g'day chat
*hides holo role in profile...*
ola emma, do any hamming recently?
perchance
Is this a hello or a bye
I miss my holo badge
it is a greeting
Go hack 
a bit late in the season but better late than never
vip+ expires in 6 days, i guess i should turbohack aswell
is vulnlab machine track full list of vulnlab machines?
should be ye
THANK YOU AUSTRALIAN BIG DOG
if not you can probably just go to XCT's profile and get most of em
MISS OUR DUELS
I haven't played in a long time 😭
I been reading a Rust book to write Rust and now I dream in Result<(),Error>
which one
Kerkour's BlackHat Rust
decided to go off-script and write this abomination: https://github.com/0xW1LD/black_hat_rust/blob/master/ch02_ch04/tricoder/src/vhosts.rs
I dropped this book 
look at this stupid ahh vhost validity filter:
let is_valid = { base_status != vhost_status || (base_len as i64 - vhost_len as i64).abs() > vhost.len() as i64 };
and so 0x72 has passed away this evening, they ignored the warning signs of a quite vicious kitten attack and has fell prey to a most noble and vicious of creature
I call dibs on his pc
let me find a pic of my cat, I'm already a survivor
I call dibs on his books 
lkafj;sldkjf; I got scammed
my weakness for tech mad me forget what truely matters, books

bro getting all my mangas and books 🥀
holy fuck those EYE
LMFAO
Wild is a furry since when

No sir, I am and always will be a Koreaboo

Koreaboo omg
any hacking today?
Aren’t you full Aussie?
N1DDY
I SEE YOU
Sir I'm the Latino kind of Asian

Ah still a script kiddie
Nah. I wish. Yourself?
Always will be
Anyone awailable for helping with AirTouch?
Ask in #boxes
is the support taking a bit long time to reply for anyone else?
Support is minimal on weekends
that doesn't sound like something I want to explore too deeply in a search engine but i did a quick look and don't see the pfp coming up for it?
Damn u guys just gaslit me that today was not monday for a second
@sharp shuttle found the news article about him and now you've ruined the pfp for me thanks :(
even if it's not related
It's Sunday bro, no need to go to work
Woke up and rockstar still hasn’t payed me my ransom
Unless they got a somewhat playable version of gta6, I don't imagine Rockstar will pay
isn't that kim chae won?
koreaboo?
I guess your into le sseraphim then
right?
Well I was into Iz*one before they disbanded and now follow every group that has members of the original iz*one as well as the soloists and actresses that some of them pivoted into...
ahhhhhhhhhhhhhhh
yes
that group
so you follow Kim Chaewon, Kwon Eunbi, Sakura, Jang Wonyoung, Ahn Yujin, etc.?
yes, also not mentioning Kang Hyewon in that list is a crime

I.... don't know who that is

I feel like I've seen her before
respect tho lol
dirpyyyyy
She probably not as famous as the others mainly cos she went into acting after iz*one and she's rated as least popular 
yeah
makes sense
💪
Just hyewon being weird, annoying the other members, breaking vlive rules, cringing from doing aegyo, caring for the members and ofc eating.
in this video i edited it so that normal hyewon moments became funnier and more exaggerated than they originally were. this video is transformative in nature, edited and made by myself. in addition to the...
how's korea?
I like Chaewon

its true
Fucking awesome.
💪
Haven’t touched Seoul yet
She somehow changed her image when she debuted again in Le Sserafim that only lasted a couple comebacks til she went back to cute and bubbly 
💪
I’m getting my new Asian glasses soon
cute and bubbly lol
She cannot escape it, it's her destiny
her cheeks say so
you come
and visit
and I'll go and see you
ez
and I'll never leave

If things work out, we are considering living in Korea
As we will need the grandparents support
hey
more opportunities to meet me yk
You married yet?
asking for...tax break and visa reasons... 
Fiancée/fiancé situation. Still need to do the wedding
Y'all ever consider adoption?

When I am in Seoul or going, I’ll let you know and do a quick meetup
We’ve been busy with doctors, etc
Health checkups
we'll try to make it happen
I would live in Korea but I'm too old to be an insei 
Korea is fucking amazing. The only thing that triggers me if the drivers
You can just be the one ajousshi that tells all his war stories 
Is*
the taxi drivers?
ajousshi 
Everyone. Drivers slow, stops 10 metre behind a car at the traffic, cars pulled over as you turn around the corner, people can’t park between the white lines, etc
When I visited the travel agency setup a bus and it took the bus driver all but 10 mins into the drive from the airport to start swearing and honking at everything that moves 
oh
I can go on forever
Hey all, I am trying to understand how close I am to reaching Elite Hacker.
With the new UI, I can only see "Content Ownership". Is there a way to see how close I am to ranking up? Or will I rank up once I get to 100%? (Doesn't seem right)
it should be 70 percent
You stop for 4 seconds to get out and you get honked at
Thanks
New to HTB Labs? Need help getting started? Check out this article for a full introduction to the platform!
technically you're not even at pro-hacker atp
Yea, it’s crazy
i dont
Everything thou is fucking amazing. The snow, trees, apartments, etc
they got us a new driver who is a god but still, there were some situations where we were all thinking: who tf parks like that?!? (someone parked perpendicular to the curb and bus driver to maneuver around em)
so does tht make me weird or u guys weird?
What happened? Did they change the ranking work? Or many of the machines I did simply retire?
YESS
I’m always clinching my arse in the car cus it’s just crazy
probably retired
drivers in korea are crazy
they curse
they smoke
they honk
they park weirdly
So it's 70% of all active content
SIIBAALLLL
70% of all active challenges and machines.
I see. Thank you!
yes thats cuz they are used as a language of roads , ie the actual purpose of them not always for showing frustration or anger
The funniest thing I heard the whole trip: Curse your mother for giving birth to you you son of a dog who dafuq taught you how to drive!!! (roughly translated from Korean)
Hahaha
Does anyone know anything about how the hell crypto actually works here and maybe in DM or something so it doesn’t seem like I’m shilling a coin 😂
a bit
I created a coin that has a market cap of $60k right now and I am not holding a single bit of that, neither is nobody else. So what does that mean?
The bonding curve is at $60k
I accidentally scammed the app I believe
whts the price of 1 coin? @hoary dawn
I used mayhem mode to add volatility to the token upon deployment and in the mist of mayhem mode going on, somehow my initial $10 deposit turned into $480
And then mayhem mode was stuck in the coin with $66.6k position
As the only holder

sounds about right
Then I just bought back into it for $8 just now just in case some weird ass black magic happens.. because a coin with zero holders somehow is 2% away from graduating to the dex ..
I don’t know. I just feel like this is weird. Like, $60k liquidity was just given to this coin out of a mistake?
the value is theoretical, u know tht right?
i wish your mother gave birth to a broom rather than you
as u mentioned before, as there are no real holders tht 60k value is mostly theoretical, and it is gonna change or drop if someone tries to cash out
Well it was 60k being held by the “Mayhem Mode” bot which is like their AI trading bot I guess for when you enable mayhem mode on a coin, you literally have to provide the mayhem mode with your own money and everything so it’s just weird it’s like a giant pyramid scheme 😂
But then I noticed out of nowhere, cuz I was curious I stayed checking on it here and there, now it doesn’t say Mayhem Mode there, but it says Bonding Curve
It... is a pyramid scheme.
But when a bonding curve almost reaches 100% the thing is the coin gets put on bigger platforms like Raydiim
@warped plank Oie dude. Did you notice the fruit in Korea is 10000 times better?
ye makes sense, its actually not real liquidity, it just a bonding curve which is valuing based on some of its own math . but im just cruios did it just switch the labels from mahyhem mode to bonding curve?
it is?
Yes that’s why I’m so confused 😂
it actually did/
Where it says bonding curve it said Mayhem Mode at first then I guess cuz nobody played with the coin the app just took a L?
😭😭
thts so weird, i dont think its even real liquidity
Yea right I don’t get it either 😂😂
I’m trying to find a group to pump it to see what happens I’ll let ya know 😂
Apple is crunchy and sweet, don’t start me on the purple grapes (THEY ARE THE FUCKING BEST). They legit taste like Soju. The mandarine I am eating is from Jeju island and it’s JUICY, stawberries here are SWEET and JUICY, etc
Memecoins as a lone wolf is hard
ye best of luck 💀
All our fruit in Australia is shit
The trade made me 5 sol though
Like when I sold it in the middle of the mayhem bot doing its magic lol turned $10 into $480 I feel bad for the bot oh well though
Never gonna see that happen again I’m sure
persimmon is australian right?
67
ye u just most prob sold into its buys at a good moment
i would label it as a very good timing glitch
i smell a bald 50yo guy
67yo guy

actually what does a bald 50yo guy smell like
do they have a specific smell
and why do you know it
Yea exactly what I been playing it off as 😂
I got scared I was gonna get banned and everything
I sent the money to another wallet right away 😂
are u perhaps questioning me ?
Asian but not Australia
So like Japan, Korea, etc
i dont think u will
You haven’t got the 50yo Bald Man air freshener scent yet? It’s pretty popular over here man
oh mb
yeye same
Apparently, there is currently a 900% sale on Hackthebox
There’s this cybersecurity account that’s up and coming in the making I guess on instagram, he keeps popping up on my feed
And he looks like Elliot’s dad from Mr robot 😂
can i have 1 gold ball?
Ask him is his bolock
I thought it was a HTB dude but he promotes THM as a learning method for beginners in his posts
are u doubting my fellow gunrunner?
Which mathematically give you back your money 8 times if you purchase it
Hello everyone! Can someone help me with ADCS module of hackthebox academy?? I promise I do not take long time I just need an idea
Well I guess that room does not look like active so I though general is active and you know
Im considering permanently removing windows entirely, rn Im dual booting linux and windows
you need windows
Why
windows?
and have windows on a vm
what, you don't wanna see the sun anymore? 
Can you guide me a bit on how I should do it safely?
The billion laughs ATTACK
Run a live distro of what you plan to switch to first, so you can test hardware compatibility
Ive been using Cachy OS for many months
It was a dual boot
Oh, then just nuke the windows
I'd just format the whole disk and install debian gvng
Blyaat😂 😂 😂 meme... on spot
But how do I do it safely?
Wait lemme show my kde partition manager
kraton
tf is wrong with them
https://www.instagram.com/reel/DW8TGUeGuM9/?utm_source=ig_web_button_share_sheet
and morever tf is wrong with my feed.
@warped plank ur influence?
Yeah I got the passing score and submitted an empty report
If I complete AD enumeration and attacks module from CPTS academy path, will i be able to attempt easy AD machines?
Ah, you got unstuck finally? Report can take days. Don't underestimate it lol
Just do it bro you've been dealing with it from months ago
I think you should do the module and still try any AD machine
yea im finding a safe way to do it
The AD module is more like an intro to the AD world
@jagged storm @mortal forge this is my SSD
how do I wipe windows safely
Format the drive
the whole drive?
😄
yeah yeah, I was stuck, took a nap, got the last passing flag and then went back to sleep
i will lose my linux too
lmfao
muh linux
Why would you lose Linux is it dual booting
yes
delete option
cant you just choose to format a partition and then you expand your linux drive?
Uh, can you even resize btrfs?
I only know about windows drive format options
seems like an issue that could be solved with help of AI
Or reading
^
so what i want is to completely nuke windows, delete all its recovery partition, boot manager, everything, then resize my btrfs partition and put everything into it
well you have to read AI output
I didn't think you could resize btrfs
Yeh we're on the same page I just..
should i do it tho
I don't know how to safely perform this operation without breaking shit lmao
is it a good idea to completely remove windows
same
use AI
You might need to format the whole thing, to make your partition use the space
Just to make sure you won't lose anything if you end up having to say screw it and reinstall lol
Especially in this day and age where windows sometimes decides to accidentally nuke Linux partitions
thats the thing rat
one update and everything is over
it overwrites the bootloader out of nowhere
sooo shit
You don't need this old thing - I'll just delete it for you, without asking teehee
Windows and undocumented changes my beloved
I only use windows in a VM to test some stuff
they best thing to do now is to buy a new ssd and give the old one to me
I use BTRFS
/dev/nvme0n1p3 on / type btrfs (rw,noatime,compress=zstd:3,ssd,space_cache=v2,autodefrag,subvolid=292,subvol=/@)
btrfs filesystem resize to resize it.
just saying
the only use for windows besides that would be gaming with anticheats
Linux kinda performs better in some distros
will that work in KDE partition manager?
indeed but you cant play some games
like r6
thank god you cant
lmfao
I have no idea about KDE partition manager. I use GParted
so i can resize my btrfs too
I would research it. I've never tried resizing.
If you have not backed up first, do not
Well if your preferences include competitive games, then yes
chat is bingbong dead
if its regarding the dual boot, I know nothing about that, but sure
its about AD
lol
one uppercase letter
we need a student plan for like till tier 3 lol
I feel like you're not a student at that point
but still
I can't afford smth like gold annual
Agreed I especially would like cape path in student sub
yup, exactly
I need to excel more in AD
There's always GOAD
no, you need to powerpoint more in AD
pro labs > GOAD imo
orangesec AD mindmap
hacker recipes
there's a lot of good content out there about AD
what does powerpoint means
I feel that you can pass cape with hacker recipes only
idk if everything in the path scope is there
but it is super complete
the website has a looooot of the content presented in CAPE path
and they also link some pretty good material
Ciao! So, let me get this straight.....Academy, Labs and Let's Defend all have their own subscriptions, and it's not all covered under one cost? This is gonna work out expensive! 😬
Correct, academy and labs require separate subscriptions
idk about letsdefend, I think that comes with labs
hmmmmm, I'll look into it
thing about hacker recipes is that its too many buzzwords for a beginner
oh thats true
incredibly useful either way but I had to chatgpt a lot of things
but still
very useful
some introduction would help for sure
but doing this extra research you learn even more
:)
@ocean marsh have you done any of the pro labs?
zephyr and I did around 30% of offshore iirc
oh wow
it (hacker recipes) has so much stuff
I think the only problem is that it doesn't have like labs/challenges/tests (but its completely free for everybody, so I don't expect them to have it)
Back in the day, we just googled it and hoped that was enough
offshore was hell, super unstable
Ohhh man I really wanna try cybernetics
but the sub is so expensive lmfao
I really wanna focus on evasion and tooling
more advanced stuff
But for now I'm re-doing CWEE path to get better at web
cybernetics has lots of evasion
with portswigger too
i was really annoyed today because I was trying an attack which I saw was possible with bloodhound
didnt work for around 12-13 hours
turns out I had misread it and was trying the attack from service account A
when in reality it was from service account B

I cried
dude what makes me mad is unstable env
like I had to try the same exploits 9172321931 times on offshore
for them to work
worst thing ever is when that happens during an exam
jfc
same some stuff is very inconsistent, works 1 time out of 200 attempts
yeah true
I literally made a script to bruteforce it and it hit on one of the tries lol
saving that for the rest of the lab
because I'll have to do that every day to setup the chain again
thats the worst part of it
I wanna try all the prolabs, but I need to save some money for that
the worst part of something not working is that you need to reset the env and set up everything again
I had $45 in credits so I spent $4 for my sub. I'm trying to make the most of it in one month
AD modules are so information dense
u gotta be kidding me
Im tired now
at least I like ones where you get SSH creds
After reading whole day
Yeah the first time you get introduced to ad
if its like ten shells, its so exhausting
is a lot to take in
yeahhhh
Its so much reading and understanding
Bro I try to never stop middle exploitation
or something
until I have creds
otherwise you have to do 19823912 steps again
to get to the same place
Ive had easier time understanding original greek text of Plato and Aristotle than understanding AD
I try not to get burnt out because you spend hours working on a flag and you get it and you want to take a break
but youre like nooo, the tunnel will break and youll have to setup everything again
keep doing
lmfao yeahhhh
I was so mad when I had to stop offshore and go to uni
knowing that I would lose my session
felt
at least it gets easier progressively, you collect payloads and hashes and copy paste
I skipped more classes bc of htb more than anything
I feel like every lab, prolab and exam gets progressively easier
What rank do I need to get to share images lol
I think its hacker rank
What rank is that how many from 1?
the jump box becomes my home
jump box?
How many ranks between noob and hacker lol
the initial box where you get the shell to reach the internal network
1337? 😎
I think its noob, skid, then hacker?
Can I reach without subscribing?
yeahhhhh
my bad I'm slow today
yes, active machines are free and they give you more rank points iirc
I'm gonna subscribe one day just doing another course at the moment and money tight
I wished I went here
Altho idk about the different tiers
@muted olive have you tried powerview.py?
I was on THM but one of many who stopped after AI stuff
Nope, sounds interesting
u know its bad when
but typically the interpreter isnt installed on pro labs
oh def check it out

I will
ohh 👀 yeah, seems good then
Should I go for the lower or middle tier when I subscribe
yeah man, the more you can do remotely the better
Powerview on steroids. Contribute to aniqfakhrul/powerview.py development by creating an account on GitHub.
I think you can install it with uv
you know what, ive been meaning to make this thing where you run the entire python interpreter in-memory
and execute any payloads you want
I think AMSI doesnt pick it up but I might be wrong
in redacted, it was installed and all my python shells ran perfectly without getting caught by defender
spoilers
mb
bruh
that is depressing
ngl
happened to me twice in the last week 😂
it does sound frustrating
Where's that
wdym?
Man offshore is so fucked up because you need to search for flags everywhere
Htb machine?
I dont like hunting for flags
pro lab
same standardized locations are good
Ah yeah
but 🤷
yeah
Common issue with the older labs
Not counting the secret flags
Dante, Rasta labs, offshore, etc all have the Easter egg flags
wdym secret flags?

do they like count for submission or what
Imagine not finding the secret flags
random shit like “oh this guys browser history has a flag”
Oh they're not on the admin desktop they're accessible under the admin context lol
@molten bobcat hi
Oh reee
Hallo
cloud I submitted a new bounty report today !!
Conga rats
damnnnn

multiple flags, all red 
If you wanna 100% the lab ye
I wanna go for flag 13 and 14 on cpts
Finish the report first
Yeah I have a fuckton of time to do that lmfao
It takes a fuckton of time lol
cpts will probably be easy for you
youve taken it before?
Bro just finished it
They have the CPTS role
I lied
..oh 
i submitted my first attempt yesterday
I lost some good time bc I got super sick so I only focused on the flags
I did no report
I got the passing score and submitted an empty pdf
:(
Super sick, and I wasn't wearing glasses, and my kid brother was using the controller
yeahh thats for sure
I dont mind 2 attempts tbh
the exam alone is already enough to destroy any ego

Even if you report as you go, it takes forever to finish. Doing it at the end is gonna take like 3 days lol
Sup guys
sup tejas
I was so paranoid with my cape report
in meetin with ry4n
im geussing using claude to generate reports isnt allowed 
your talking in discord and in a meeting with ryan? maybe I should ping him ||jk|| 
I hear they were significantly shorter than CPTS. If your CAPE report was long, your CPTS report might be super long
I can try to discover that if you want me to 
Average CPTS is like ~100 pages
nah 
100 pages for how big of a lab?
cape report was around 90 pages
tf u writing in the report? essay?
although, I dont think regular pentesters would not give it to claude lol
a lot of command output, some tables for recommendations, cvss score
that I'd understand, not the exam labs tho
I think they longest CPTS report was 375 pages
its very little writing
rookie numbers
u shud truncate the command output
jfc I would fail that mf instantly 
My point is it’s low
not paste the whole ass json
time for someone to beat the record then



