#resources
1 messages · Page 15 of 1
Up to 10 last deleted messages (last hour or 12 hours for premium):
5 minutes ago (Sat Dec 11 01:18:04 2021) Wandering Fool#0782 (ID 754136896409567233): 😆 Looks like the weekend is ruined
True
Well there goes my room idea.
Cc @hushed estuary
upgrading Java 8 past u191 will remedy the remote injection path
and java 17 also appears to be immune to both remote and local injection
wow thanks so much for this resource its very usefull
Gave +1 Rep to @sterile frost
this is gonna save me tons of time i already know it haha
00:00 - Intro
01:05 - Start of nmap
03:00 - Discovering the webserver is apache, despite nmap saying it is nginx
06:30 - Every request with /admin gets a 401, indication that nginx location may not end with /
07:30 - Doing the nginx lfi to grab apache server-stats and leak the /admin_staging/ directory
08:30 - Running gobuster in /admin_staging/...
Pretty neat run down ^
I'm going to yoink some of that
Now wth is a reverse proxy?
It can be a performance booster for your web server
no kidding
sounds like a googlable question
I think I've got a couple of live examples too
although I'd imagine you'd have more than enough
I've got a few pocs
demos
Hi guys.
I am looking for some stats regarding the cybersecurity incidents (like how many times happened, how much money it costs the attacked company, etc) from a trustworthy website that is worth mentioning in my thesis.
I found this website: https://purplesec.us/resources/cyber-security-statistics/ and it has some interesting insights:
The total malware infections have been on the rise for the last ten years
7 out of every 10 malware payloads were ransomware.
Ransomware attacks worldwide rose 350% in 2018.
Do you have any other recommendations for me?
Thank youu
Big companies, like Google & Facebook, store all their code in a single monolithic repository or monorepo... but why? Learn how to use tools like NPM or Yarn workspaces, Learna, Nx, and Turborepo to scale your codebase https://fireship.io/pro
#software #js #compsci
🔗 Resources
Turborepo https://turborepo.org/
Nx https://nx.dev/
Lerna https:/...
Hey guys, any good resources to PrivEscalation on Windows?
The tryhackme rooms?
nah in general
Am looking at this rn-https://book.hacktricks.xyz/windows/windows-local-privilege-escalation
https://github.com/gtworek/Priv2Admin is one I'd recommend
Awesome! Thanks James
Gave +1 Rep to @odd quest
I personally like this one: https://informationisbeautiful.net/visualizations/worlds-biggest-data-breaches-hacks/ It shows the party is not over: more and bigger breaches is the trend
What about statistics from ENISA about incidents in Europe? https://www.enisa.europa.eu/publications/enisa-threat-landscape-2020-main-incidents
What's the name of the security plus book that everyone recommends?
I mostly used professor messer's 601 videos to pass the exam, but you could take a look at this two https://www.amazon.com/CompTIA-Security-Study-Guide-SY0-601/dp/1119736250/ref=sr_1_13?crid=1XDHQIMK0TKYE&keywords=security+%2B+601&qid=1639569915&sprefix=security+%2B%2Caps%2C193&sr=8-13 & https://www.amazon.com/CompTIA-Security-Certification-Guide-SY0-601/dp/1260464008/ref=sr_1_7?crid=1XDHQIMK0TKYE&keywords=security+%2B+601&qid=1639569915&sprefix=security+%2B%2Caps%2C193&sr=8-7
Also my local library offers Linkedin learning for free. I used some of the videos from the 601 course as reference. You could check with your local library in case they offer something similar.
I heard there were interactive labs?
@shut ferry I took my exam Oct 28 of this year. As for the interactive labs I got four on my exam and they were on firewalls/authentication. I didn't really prepare for the interactive part of the test and mostly studied the objective content.
Oh OK. Good to know
Good luck on your exam
anyone know good resources for eJPT?
@sturdy shell hey can I get the files that you used in the ios forensics room ?
It would be of great help to me in performing forensics for my assignment
Out-of-control cloud computing becomes very expensive very quickly 💸. Learn how a startup racked up a $72K bill in just 2 hours on Google Cloud. Tips to control costs on AWS, GCP, and Azure services that are priced to scale.
Thank you to https://announce.today for sharing your story!
#cloud #dev #learntocode
References
How we Burnt 72K https...
Has anyone ever purchased a bundle from ghacks.net? https://deals.ghacks.net/sales/the-2022-premium-comptia-cybersecurity-security-exam-prep-bundle Seems like a "too good to be true"?
weekly cybernews recap https://www.reddit.com/r/tryhackme/comments/rii5uz/weekly_cybernews_recap/
The vulnerability could allow for data theft or unauthorised removal of the data from a device by cybercriminals. The Log4j or Log4Shell vulnerability was highlighted last Friday, and is dubbed as a critical flaw, perhaps one of the worst, given the “ubiquitous” presence of the Log4j logging library - Indian Express
Thanks to Kozmer
https://git...
Log4js technical aspects and practical demo
@arctic mist A humble request for AD part 2 please 🙂
I suppose I might be able to do that
Would be interested to know as well
@shut ferry This is where you can check out resources to begin your InfoSec learning journey :) Some sources provide free trials like this one here: https://www.itpro.tv/courses/security-skills/
You can also look at what others above posted for more info. Enjoy, friend! Feel free to reach out if you need anything 
Anyone got a checklist or process they work through when approaching a new challenge/box/target?
https://owasp.org/www-project-web-security-testing-guide/v41/ is a good one for web?
Anyone got any good resource for learning about Link layer in TCP/IP suite? Searched YouTube but couldn't get a structured format.. everything scattered
If you mean TCP/IP Suite to include oracle, this documentation has a run-down that could help: https://docs.oracle.com/cd/E18752_01/html/816-4554/ipov-6.html
https://docs.oracle.com/cd/E19253-01/816-4554/ipov-10/index.html
How long did it take you to study? And how much time did you give it?
Nope. This is just introduction to different models. I want to study all the protocols used in specifically Link layer, the services used, flow, error control protocols.
Cheers mate!
I gave myself four weeks and around three hours of study a day. I would also listen to the professor messer's 601 playlist when ever I had extra time. Such as driving or on a walk.
So like the actual standards and design documents of the protocols? https://www.ieee802.org/
Saw someone mentioning buffer overflows and thought I'd put this in here
edit: just realised it was sent here about a year ago but nonetheless it's worth a read
https://inst.eecs.berkeley.edu/~cs161/fa08/papers/stack_smashing.pdf
well it will be of great use to me,so im glad you reminded yourself someone mentioned it!
Does anyone have a free alternative for something like AttackForge? Perhaps something self-hosting from Github
Anyone aware of some free resources to learn blockchain as a complete beginner?
Depends on what you want to learn. Blockchain is as vague as saying you want to learn hacking.
Maybe not as extensive but broad.
i see. i would like to explore it first. if you any good guides for it so it can be explored for various fields
what other sub categories are there?
For what purpose? Hacking or developing apps on one or even making one yourself?
Idk much. I asked for a friend
I don't have much interest and knowledge myself
No problem. Ask your friend what they want in particular.
He said he don't have any idea too 😅😂
He just want to learn and see what scope is out there.
I am sure tho he don't want it for hacking
Ah well this was where I started.
https://youtu.be/M576WGiDBdQ
This course will give you a full introduction into all of the core concepts in blockchain, smart contracts, solidity, NFTs/ERC721s, ERC20s, Coding Decentralized Finance (DeFi), python and solidity, Chainlink, Ethereum, upgradable smart contracts, and full stack blockchain development.
Follow along with the videos and you'll be a blockchain wiz...
Ah
Thanks a lot
Gave +1 Rep to @broken burrow
really interesting study on phishing training within orgs (for those who don't want to click the title is "Phishing in Organizations: Findings from a
Large-Scale and Long-Term Study")
You didn't realize you needed this until now: A brand new game from freeCodeCamp. Learn all about Learn To Code RPG from game creator Lynn Zheng and watch a playthough from Ania Kubów.
Learn more about the game and its development here: https://www.freecodecamp.org/news/learn-to-code-rpg/
Download the game for free from Itch: https://freecodeca...
buildspace is good
hey, is anyone here following web3, crypto or DAOs? would love to be part of some infosec DAOs, existing ones or anyone interested in learning more & creating a new one. i'm learning smart contract security right now & curious to know how else i can contribute in web3. hope someone point to the right circles please. thanks!
Please do not spam the same message in multiple channels. People will see it if you leave it in a single place.
thankyou, didnt know that
Is there a list anywhere of well regarded textbooks/documents for cyber security?
Will surely checkout!
Eeeeeh. Not if you're unfamiliar with the syntax
The syntax of what?
Some of the courses are no code 😅
Solidity, rust.👀
Well they teach you that hahaha
But there’s also no code courses
Meh. I found that the first solidity bootcamp thing isn't good at teaching the nuances of solidity so I recommend it as a project thing not for learning.
Seems like a weird topic for resources but I get them too.
@tepid patio might be worth a look but you don't like solidity. :p
Does anyone know a good and simple network scanner I could use on my home network?
@tepid patio it's live! 😄
https://twitter.com/immunefi/status/1475780995563638784?t=jG9gR6-GesGzUZGIAj3BQQ&s=19
oooohhh
i'll check it out!!!
Awesome!
@broken burrow some people were complaining that the rewards for AoC were unfair, am I right in thinking that blockchain fixes this?
- you can create a ticket lottery system on the blockchain
- you can execute it on the blockchain and anyone can see the results for themselves
- the code that produced that result is open source & you can verify those results came from that code
I don't think you can do this off-chain and still have (3), you can open source code but you can't prove the results of code came from the open source program everyone saw, without immense effort to create a quasi-blockchain, right?
Would it fix it? I'm not sure. Not many people can read solidity code so they might claim it's still rigged even if the code and results are open source.
Some people also erroneously believe that miners can influence randomness and that's true but only when it isn't implemented correctly.(Which is a security risk) Using Chainlink's oracles for randomness fixes this.
What you're proposing is very possible though. It would be extra work for the devs though that's for sure.😂 A lot of "DApps" rn aren't fully decentralised so it's not that hard to integrate the two in theory.
Creating a quasi blockchain is a bad idea though. Deploying a smart contract to polygon and integrating it with tryhackme is much easier.
I'm not suggesting we do it, I'm just thinking 😄
I could build it for the subreddit, however
actually I'll just do that
seems like a fun side project
given a list of usernames and a number of "prizes:, verifiably pick random choices
Don't you mean BUIDL?
https://docs.chain.link/docs/chainlink-vrf/
hahaha i've used VRF via buildspace 🙏
Awesome. Chainlink is honestly a life saver. Wish I'd made it first.
Too complicated for one kid though XD
ehh there is always stuff to build
Yep. Got a side project in the works. It'll probably flop considering my lack of talent with front ends. Might consider outsourcing that bit.
Atleast I'll have something to show until a great idea hits me.
You can map the usernames to addresses. Honestly, doesn't seem hard when you think about it.
nah i was going to do this:
And polygon is cheap enough to make it less painful to deploy
React app
- Insert Reddit link
- React app client-side grabs all usernames of commentors and makes it into an array
- React app calls smart contract with this array
Smart contract
- Uses chainlink's VRF to randomly select X lottery winners
- Profit????
@broken burrow is there any automated fuzzing security tools for smart contracts? I.E. one that I can run over a solidity project and it picks up the most obvious things?
or do u want to build one 😉
That works too. Makes it so they don't have to hurriedly make a wallet with no clue how.
There are plenty actually. Look up MythX from Consensys.
@broken burrow Okay another project idea for you, a github action anyone can use which:
- runs that fuzzing tool
- runs pywhat to search for API keys / wallet private keys etc
Basically a "dont PR anything stupid" automated step?
Great idea! Thanks.
Gave +1 Rep to @tepid patio
npnp, you may want to look into pre-commit hooks which are checks that run before you commit stuff. that way you don't upload anything to github at all (although it's harder to use then a github action) 😄
Npnp!!
@broken burrow this will help u https://skerritt.blog/make-popular-open-source-projects/
thats the exact framework I use to come up with ideas + publish them + get some cheeky lil github stars!
imo there are loads of things you can build in blockchain / web3
So many things but so little time.😆
Thanks a lot! You're really farming me for rep haha.
Gave +1 Rep to @tepid patio
i was here before rep
i want to do an airdrop & have an idea for something
Young hacker measures up against the big boss Brandon -circa 2021
pls call me bee
i remember when i was #2 on tryhackme 🥲
👀You know that TryHackMe DeFi variant looks really appealing.
Will do! o7
Life got in the way, huh?
yes its kinda my goal to build a course system
learning react rn
poaps at the end of every room
lets chat in thread 2 stop annoying ppl
How to start in Web3 hacking on Rust-based chains?
Web3 is more than EVM and Solidity. Hence, here are some foundations that you need to start hacking on Rust chains!🦀
You may treat this thread as an addition to the fantastic @adrianhetman's tweet.
https://t.co/Gk7Tm2K3H4 https://t.co/4Vgg8q80Z9
That was you? Neat. It's saved in me Favorites from some of my previous studies. Thanks Bee ❤️🐝❤️
Gave +1 Rep to @tepid patio
yess thank u!!! ❤️
Gave +1 Rep to @sterile frost
really cool IR platform
https://github.com/dfir-iris/iris-web
Is self-promotion of free content allowed here? 😅
What did I post again
I genuinely forgot
👀 On the off chance that self-promotion of free content is allowed, here's a little C2 framework I made this year. Any feedback or just checking it out is greatly appreciated! https://github.com/CyberSecurityN00b/star
Nice one!
Even better Muir, It's Vim style commands
😁
That wasn't intentional... 😅 Command documentation is a bit sparse, but I'm working on a room to address that 😉
I think so?
Looks really cool, but whats the difference with thehive project? (https://thehive-project.org/)
any gud red teaming courses aimed towards beginers? lab setup would be appreciated thx
THM
get sub
Is there any interest in additions to the note-taking tools list in pins? I would point to Logseq (web/local outliner with backlinking, graph view, PDF annotation, etc. that can sync to github) and Dendron (VSCode plugin with a similar feature set that augments the backlinked format with hierarchical "parent.child.subchild-note" designators for nodes)
Hey! I wish to learn python for pentesting and ctfs... Anyone has any resouces?
Preferably any resource that lists projects that can be done so as to learn by doing
If not, any good videos/blogs would also be worksmile
W3schools.com is a good resource, for more than just python
CS50 and black hat python.

Thanks!
Gave +1 Rep to @rotund moat
Thanks!
https://www.netsecfocus.com/oscp/2021/05/06/The_Journey_to_Try_Harder-_TJnull-s_Preparation_Guide_for_PEN-200_PWK_OSCP_2.0.html is it a good/latest prep guide for oscp?
Table of Contents: Overview Dedication A Word of Warning! Section 1: General Course Information Section 2: Getting Comfortable with Kali Linux Section 3: Linux Command Line Kung-Fu Section 4: Essential Tools in Kali Section 5: Getting Started with Bash Scripting Section 6: Passive Reconnaissance Section 7: Active Reconnaissance Section 8: Vulner...
You should check out https://www.codewars.com/ ! They have a bunch of challenges for you to solve; after you’ve solved one you can see how others have solved it, .
Some of the challenges trend a little math heavy for my tastes, but 🤷🏻♂️
Thanks!
Gave +1 Rep to @faint sandal
great piece of threat intel research
https://victorymedium.com/godaddy-global-issues-canadian-pharmacy-injections/
If you’ve come here to read a clean description of a deeply technical data supply chain problem, impacting untold numbers of websites across the globe, including dozens if not hundreds of U.S. Government domains, and hoping to see all the answers about how it's happening, then you are going to be disappointed. These problems are very complicated...
Heath Adams aka TheCyberMentor (TCM) just released the first 12 hours of his best-selling course on YouTube. Learn Linux, Python, and Hacking all with no strings attached.
Arguably the best course to get started. Enjoy
https://www.youtube.com/watch?v=fNzpcB7ODxQ
Full Course: https://academy.tcm-sec.com/p/practical-ethical-hacking-the-complete-course
All Course Resources/Links: https://github.com/Gr1mmie/Practical-Ethical-Hacking-Resources
A shout out to all those involved with helping out on this course:
Alek - Creating "Academy", "Dev", and "Black Pearl" Capstone machines and a Discord Admin.
Dewalt ...
Learn Assembly Language
This looks like a great resource for anyone that is interested in Assembly Language
can responder run in a pivoting situation? or does it have to sit on the interfaces it is attached to?
https://labs.f-secure.com/archive/safer-shellcode-implants/
Quick read, interesting though
My poor programming skills are becoming evident
Like zero skills at all😕
Web - Based Training available on the CISA Virtual Learning Portal
We offer several online training courses via the CISA Training Virtual Learning Portal (VLP). Topics include:
free ( as far as i know) industrial control systems training from CISA. you get a piece of paper at the end!
Also offers CEUs for at least one of the tiers, 100 level through 400
CS50

Just signed up
Thanks sleepy
Gave +1 Rep to @broken burrow
where you guys aware of this?
I'm so hyped. I'm gonna start planning to deploy the deceive part at my job.
where can I learn more about anonymity?
Its someone who know a site to download a good template for my blog where i will post Write Ups
tag me pls
anyone have any good resources to learn more about IDORs? I am doing the jr pentester path and dont fully understand the concept fully.
Just google the following:- site:medium.com idor
Portswigger academy

It's made by the creators of burp suite and free
That seems slightly counterintuitive, limiting your research to one site, does it not? 
Especially given everything on that site is written by random people who may or may not know what they're talking about.
Well i respect your opinion sir. But as a beginner i like to use sites like medium, gitbook.io etc.. Atleast helps me get basic info about a vulnerability.. Next stop is Portswigger always.. :) Or mutillidae practice
Ofcourse we must choose what to read according to who the author is.. And several other factors
Not saying that it's necessarily bad to use a medium article, but cutting everything else out and restricting yourself to a single (potentially incorrect) source of information is definitely not the best way to research a topic.
Especially when you then tell others to do the same thing
I never said limit yourself to just one source. There's way too much info on the internet, about vulnerabilities which may overwhelm at first, so start small and work your way up. :) I remember feeling overwhelmed and still feel so..
You just did tell them to limit themselves to one source 
To encourage them to use the best possible resource out there i.e. Google
The google dork site:medium.com only returns articles from medium, thereby limiting what you find purely to medium articles
It's the same as going to Medium and using their own search feature rather than using Google at all
Atleast they'd know where to find info and how to search and learn from Google. I never said limiting yourself to one source. :) Sorry for the misunderstanding from my side
That's all well and good, but maybe teach them to use Google, rather than giving them a search term that does limit them (with no explanation of what it does), and telling them to just use that :)
Noted sir. 😊 Will be careful next time
Thanks for correcting my mistake
Not a mistake so much as something that could be potentially misleading -- it's all a learning process, for all of us :)
does anyone know of any blue-team lab resources? similar to hackthebox (for pentesting) or the cyber defense learning path on THM?
BlueTeamLabs / RangeForce community edition are pretty cool
Table of Contents: Overview Dedication A Word of Warning! Section 1: General Course Information Section 2: Getting Comfortable with Kali Linux Section 3: Linux Command Line Kung-Fu Section 4: Essential Tools in Kali Section 5: Getting Started with Bash Scripting Section 6: Passive Reconnaissance Section 7: Active Reconnaissance Section 8: Vulner...
anybody mess with this? i'm finnin to do the whole shabang
not sure how relevant that list is going to be now the exam has changed
sure it has changed but i'm sure getting comfy with kali is still a thing, bash scripting, passive recon
it's not suddenly the GRE right?
nevermind ignore me, that list goes over the new included topics
you'll be well prepared 🙂
Hey all, just saw this on HN, it's an interactive site that explains and shows how SPF, DKIM and DMARC work. Good addition to the new Phishing rooms : https://www.learndmarc.com/
Learn and Test DMARC
hi guys, i dont know if this belongs here, but what are u using for notetaking?
I personally went with Obsidian, but there are a lot of other note taking apps like Trilium, Notion, OneNote, Evernote, depends on preferences mostly, i personally tried a few and watched some youtube videos before deciding...
Onenote, Evernote have good mobile support, Obsidian will be easier for you if you have some coding background and it's really flexible.
Trilium and Notion I didn't use it at all so I can't comment on those
check pins of this channel
Hi All,
Any good books to buy/read for pentest and secure coding?
This is the first half (4.5 hours) of The Cyber Mentor's OSINT course, officially released for free by TCM on his YouTube channel. The link to the full course (9 hours, cost of $36.89) is included in the video description
Hi everyone! I hope you enjoyed this video. Please do consider subscribing so we can continue making awesome hacking content! Below is all of the course info:
Full Course: https://academy.tcm-sec.com/p/osint-fundamentals
All Course Resources/Links: https://github.com/TCM-Course-Resources/Open-Source-Intellingence-Resources
The Creepiest OSINT...
any room that explains better port forwarding and how it works here on thm? I'm stuck in a free box on hackthebox, found on the walkthrough that port forwarding is required for the last step, but have no idea how it works
:)
Thank you 🙂
Gave +1 Rep to @topaz gulch
Hey! What book/resource would one suggest to learn about Windows and its working?
I've completed the Windows fundamentals module on thm but felt that was pretty much an overview
Checking out Microsoft’s online docs would be a good, free resource to check out. There should be some links out to it in the WindowsFundamentals course
Oh good someone already got it
OAuth explanation with diagrams and some examples:
https://devansvd.com/oauth/
Oh! Auth. It may be one of the confusing topics to grasp a clear understanding.
Thanks!
Gave +1 Rep to @drowsy kestrel
Does anyone know or can tell me how THM manages to make the cloud VMs for AttackBox so silky smooth in response, since I still have some minor lag xrdp'ing into my kali machine on the local network. I see they/you use vnc, can you possibly give me some hints on the setup?
Apache Guacamole
Someone said it plays nicer with certain DEs - XFCE here
The AttackBox is NoVNC
Which I believe is just the backend for guac?
Ah, NoVNC is an alternative
will check that out, thanks!
PoisonTap - siphons cookies, exposes internal router & installs web backdoor (reverse tunnel) on locked/password protected computers with a $5 Raspberry Pi Zero and Node.js. https://samy.pl/poisontap/
By Samy Kamkar
Full details and source code at https://samy.pl/poisontap/
Buy a Raspberry Pi Zero here: https://amzn.to/2eMr2WY
Buy cement for ...
Found this on LinkedIn (https://www.linkedin.com/in/rachelbicknell)
@velvet kernel
Hey guys, hope you’re doing well, I’m excited as I finally set up an appointment for my Security+ From CompTia. For resources I did buy Mike Meyers from Udemy and proffessor Messer from youtube. Can’t buy the book of amazon cause they don’t deliver where I’m from, any other resources you guys have to spare?
Hi, i bought CompTIA... Certification Guide by Ian Neil, but i find that tryhackme give me a lot of aid in pratice. I have the exam at the end of February
@rapid pumice Hey , good luck with it! Yeah , without doubt Tryhackme helped me with it, hell I learnt more than half of the material from this platform, but I know they require more technicalities, terms and theory too… was wondering if anyone had the pdf book or some practice tests too
Thank you! Decided to learn some basics of cloud because of this opportunity, and I just passed my Azure fundamentals 🙂
Gave +1 Rep to @full vapor
i need a book for nmap , can anyone suggest ?
the official nmap book
" Nmap Network Scanning: The Official Nmap Project Guide to Network Discovery and Security Scanning "
Gordon Fyodor Lyon
Check out the recent XSS challenge by therealbrenu
https://www.youtube.com/watch?v=jX4DkELbhUI&feature=youtu.be
nice interpretation of atomic habits for devs
https://bruno-oliveira.github.io/techblog/Atomic-habits-in-coding/
I’ve just recently finished reading the book “Atomic Habits” by James Clear, and, it’s a very fascinating book that touches upon the power of making tiny changes to achieve remarkable results. The main takeaway can be boiled down, in simple terms, to a simple idea: what could you achieve if you focused on getting 1% better than yesterday, every ...
Looks interesting
https://olympics.maveris.com/
Where can i access the tryhackme bot for verifying myself?
!docs verify
Thanks very much man!
Gave +1 Rep to @fiery bear
good questions to think about for blue teamers
https://hela-lucas.com/2022/01/22/incident-response-question-bank/
Can anyone give me resources on json jwt tokens
Great piece🙌🏽
-ban @shut ferry -ddays 1 Discord scam.
🔨 Banned saaal#0306 indefinitely
Maybe we can stop talking about log4j for a while now 😛
Hope this helps @stiff kraken
@lucid edge
Thanks man I appreciate it!
Gave +1 Rep to @lucid edge
I shared my Notion notes and lab walkthroughs for Access Controls module on Portswigger. Please review and do tell if any mistakes
Hello,
Can anyone suggest Or share me some resources for cyber forensics
https://dfirdiva.com/ take a look here
Ok
Hackerman demonstrates how to hack common household objects back or forward in time
Tune in to https://www.vhx.tv/kungfury/updates/hackermans-time-hacking-tutorial to find out more!
credits
DIRECTOR & EDITOR - Jonas Ernhill
WRITER - Leopold Nilsson
PRODUCERS - Jonas Ernhill & Leopold Nilsson
EXECUTIVE PRODUCERS - David Sandberg & Linus Anderss...
hey there can any body recommend any resources for the kismet interface
The CLI version of https://revshells.com/. Contribute to VainXploits/Ollie development by creating an account on GitHub.
The CLI version of https://revshells.com
What does it do
I’ve got an interesting question for yall. What do you use for a personal knowledge base? I’m trying to figure out an effective way to take notes to remember certain reverse shells, cheat sheets and little things I’ve picked up here and there.
I’ve been using OneNote but I wonder if there’s something more purpose-built for offensive/defensive security
Good question. Let’s see if some come up with suggestions.
Use notion. It's better! If you want, i can share my demo notes i made on Portswigger module to see how it would help you with your requirements
Nah, use what you like best. I use joplin
Trilium would be my recommendation.
Other common ones:
Obsidian -- very good but stores files in plaintext on disk (either a bonus or a disadvantage, depending on your perspective, but it ain't great for storing payloads). Also apparently a bit weird with images.
Cherrytree -- very good, but gets unstable with bigger notebooks. Starts crashing at around 40Mb.
Joplin -- haven't used in ages but supposedly still very good.
Notion -- absolutely gorgeous, but storing your notes entirely on someone else's platform isn't a great idea (if they go down or decide that you're breaking ToS, you're screwed). Also, don't try to store log4j notes in Notion... it doesn't end well.
I've tried all of them, Typora is what I use, most people won't like that its paid ($15 for 3 licenses) but I'm able to type markdown and have it render in the same page and I just use github to save it. The nice thing I like is I can view it in github because its markdown.
Knew I forgot one of the ones people use in here.
nice linux cli refresher
https://cmdchallenge.com/
One-line shell challenges, to help improve your skill on the commandline.
Check pins 
What's up with Log4j and Notion?
It starts yeeting your notes and blocking your account if you try to store any log4j payloads in it 😆
Ask @glossy blaze -- it happened to him
I mean then it would do the same with any cve payload right?
Nope
it just did that because of the way they had to make a WAF for the log4j payloads during the big log4j crisis
didn't have any other issues with any other payloads before that
it's because of the way the log4j vulnerability works and how it just needs that payload on any input that gets logged
👍
and my guess is that they were building the "notes history" with it
I haven't tested in a while... so dunno if that's still common behaviour
And this is from me, I really deeply enjoyed working with notion more than most other apps. I still miss it most of the time.
seems like they fixed the log4j thing now .. just tested
at least on a first glance I don't seem to be waf banned and it saved the payload just fine
but I know I can't really rely on it for state of the art payloads because if they freak out and need to block a payload, I can't take decent notes.. so trilium it is
quick note on Typora - you can actually install the older version they list in releases which is still free and quite good
Sure, that’d be awesome! I’ve used it a bit but not extensively
True, I’ll probably grab a bunch and see which one fits
Thanks a bunch, I’ll look into these! I’ll definitely keep that in mind, I can see that being troublesome lol.
I was out on PTO but all the other analysts had just sat down with their Xboxs and such for a game night… 5 minutes later, they were in a meeting that lasted 6 hours. But hey, we got SIEM and IPS rules created before Fortinet, but that’s not a high bar to beat 
Gave +1 Rep to @topaz gulch
Oooh I’ll give they a look, too. I don’t mind paying a bit. My mindset is, if it makes me better at what I do, I’ll get a far greater return than $15. Thank you!
I just found all the other note taking apps a bit clunky. I like being able to see my notes in github. My husband and I share Typora, so he has 1 license, I have 2
I never knew this lol 😂😂 And there i was about to start tryhackme module for studying log4j and writing notes in Notion 😂🤣
@buoyant fox Here you go! Check these out and see if these help you get an idea :)
So far been using Joplin and it's been pretty damn useful so far.
The one time I didn’t check pins and it’s right there
thank you!
Gave +1 Rep to @remote wind
Sweet, I’ll poke around at them. Thanks!
👍
Hey everybody!!! I am just a newbie in this field and want to make a career out in ethical hacking or cyber security but don't know where to start. Can anybody help me out what steps should I take and what resources should I use to study???
You could also check out this
https://m.youtube.com/watch?v=u4VWQZ8KLmI
Code: GIVETHANKS
50% off courses and bundles at https://academy.tcm-sec.com
20% off PNPT at https://certifications.tcm-sec.com
Video Links:
Basic IT Skills:
https://www.professormesser.com/free-a-plus-training/220-1001/220-1000-training-course/
https://www.youtube.com/watch?v=IhX0fOUYd8Q
Networking Skills:
https://www.professormesser.com/net...
Are there any prerequisites/topics i must learn before hand to study buffer overflow?
I also want to know !!
You should be able to read C code. Harvards CS50 can help with that.
I am good at C.. It's not a problem.. the problem is assembly programming.. Any good resource around that?
Covers the basics of what assembly language is and gives an overview of the x86 architecture along with some code examples.
Example code: https://github.com/code-tutorials/assembly-intro
Davy Wybiral
https://wybiral.github.io/
https://twitter.com/davywtf
Going through the buffer overflow room, though, I didnt need to know assembly. It was well explained.
I'd aim to learn basic architecture first, understand registers, the program counter, and basic CPU functionality
By basic CPU functionality, you mean how programmes are compiled, executed and all of that in context of memory and buffers?
In the context of registers, ALU, accumulators, stacks
How it's loaded is less relevant
That is lifecycle and software architecture, not hardware architecture. You're looking for information on computer organization and architecture, not software architecture
Alright sir. Thanks for the help. I'll start working on these topics you suggested. It's nice talking to people more experienced and knowledgeable than me 😇
Gave +1 Rep to @odd quest
Understood sir. I am just a bit in the dark related to computer organisation and architecture. But i'll work on that definitely. Thanks for the advice! 😇
Strongly recommend looking up the Hennessy & Patterson Comp Org textbook - it's a university staple on the subject. Several of us had to read it as part of our uni programs, and found it helpful.
-ban @shut ferry Posting VMWare License keys, directly endorsing software piracy. Ban appeals are bans@tryhackme.com
🔨 Banned Dubstix#2748 indefinitely
Hello and good morning everyone. Can I post the link of my blog here which I wrote on medium? Just asking before posting to avoid causing mess. Please let me know.
I’m way late to the party but saw this and wanted to share a resource: https://www.nand2tetris.org/
I’ve been working through the accompanying book and it’s excellent for what you’re looking at. Basically you build an assembly language from scratch (including the virtual hardware). It’s actually crazy how easy it is to follow starting from first principles
Thanks man! :)
I love it! I’m midway through a course on this and it’s awesome!
hello every one i just want to get my hand into cyper security ( Bug Bounty )
i have 0 knowledge of programming soo i started to learn full web developer front end and back end is this right path to start or i dont need to waste time in full stack
HTML, CSS & JavaScript
NodeJS
SQL / NoSQL with NodeJS & Express
am i in right path or tryhackme cover all of this soo i should start directly in tryhackme
it doesn't hurt to know all of that, but if you're not interested at all in development, then learning how to style webpages isn't going to be a great use of your time. learning back-end development is probably going to the most useful to you for a career in security, however it's not required. you can continue with that also, but i recommend trying out the "pre-security" path on tryhackme
Umm Good morning people, sorry to bug again but please can anyone answer this? Thank you.
@night ether thx bro for ur advice
soo can u give me a good roadmap to start with and what u think about tryhackme road map is it complete to achieve something in bug bounty
Gave +1 Rep to @night ether
Or i need some extremal resources
If it’s security related you can
Okay so, hello people, I truly hope you and your family are healthy and safe. So we have people who love solving CTF challenges, right? And you always love breaking those things, but have you ever given a thought that I should also build something? Well, for that, I wrote a blog, not long ago, on How to make your own CTF challenge with ease., where this blog is specifically based on creation process of box and mentality behind it. I believe, you should start building things before you break them.
https://infosecwriteups.com/how-to-make-our-own-ctf-challenge-with-ease-6b15f76865b5
+rep
Gave +1 Rep to @minor frigate
I legitimately was going to start looking for this today
I guess the stars aligned haha
Wuahahha, I hope you get some insights from it. Good luck. (:

Hello and good morning @spark hedge Sir. I hope you are doing well. I have sent you DM, so please check when you have time. Good day.
Have you ever feeled queeeeezy whilst looking at assembly? 🥴
Do you want to get into the binary exploitation world, but don't know where to start?
Let me help you with that by starting at the very beginning: Assembly
In this video, we cover
- Compiling
- The stack
- Words
- Registers
- Flags
- Instructions
And more!
Check it out here 👇
https://youtu.be/WG7QtpRPArg
▶️ YouTube: https://www.youtube.com/c/PinkDraconian
🎁 Patreon: https://www.patreon.com/PinkDraconian
🐦 Twitter: https://twitter.com/PinkDraconian
🎵 TikTok: https://www.tiktok.com/@pinkdraconian
ℹ️ LinkedIn: https://www.linkedin.com/in/robbe-van-roey-365666195/
📞 Discord: PinkDraconian#9907
📷 Instagram: https://www.instagram.com/robbevanroey/
🕸️ ...
Cybersecurity, hacking, certifications, mentoring, programming, red teaming, etc. All these things require you to be constantly learning, but how does one do that effectively? This channel is dedicated to an 'organic' learning style where I will be experimenting with and learning interesting things related to cybersecurity. My hope is that by sh...
hey i have these books from humblebundle and they have no DRM so i can share them (and if its allowed)
That is not allowed - each of those books has a publisher that sells those books in ebook and physical formats; just because the PDF does not have DRM on it does not mean sharing those books is legal.
Video Version: Coming soon! Introduction Last year, I posted a blog (https://tcm-sec.com/so-you-want-to-be-a-hacker-2021-edition/) and video (https://www.youtube.com/watch?v=mdsChhW056A) on how to become an ethical hacker in 2021. Given that it was well received, I thought it might be fun to update the blog with resources for 2022. So, without f...
pretty comprehensive guide on attacking Active Directory
https://zer1t0.gitlab.io/posts/attacking_ad/
This is such a good article, thanks for recommending it!
Gave +1 Rep to @sterile frost
For who suffers from WSL2 problems this might help you.
https://github.com/ab2pentest/NoWSLAfter2Day
I am quite curious to learn more about hardware security, and IoT security especially intrigues me the most! Can someone please recommend some resources I could use to learn about IoT security and related topics? I am still a beginner in the field 😅
Thanks!
https://www.wiley.com/en-us/Internet+of+Things%3A+Architectures%2C+Protocols+and+Standards-p-9781119359678 this is a book about IoT in general in case you want to look into something like this first before diving into security. Then there's https://nostarch.com/practical-iot-hacking which came out last year and is really an amazing book. You could also look into this https://www.apress.com/us/demystifying-internet-of-things-security/17097958, still security focused but very different from the previous one. This one is also available for download (legally).
This book addresses researchers and graduate students at the forefront of study/research on the Internet of Things (IoT) by presenting state-of-the-art research together with the current and future challenges in building new smart applications (e.g., Smart Cities, Smart Buildings, and Industrial IoT) in an efficient, scalable, and sustainable wa...
It's still on beta. Feedbacks are appreciated https://tryhackme.com/jr/kubernetesforyouly
Does anyone have good intermediate/ advanced malware analysis resources? Thanks!
Have you guys tried this tool? https://github.com/brightio/penelope
You get TTY shell automatically and makes download/upload easy
If you like that, check out pwncat: https://github.com/calebstewart/pwncat
Pwncat is ♥️
h'
This is huge for rust based recon apps
https://github.com/Nugine/rlimit/pull/26
All your faves will be coming to windows :)))
Does anyone have resources about buffer overflow and window hacking?
Does anyone know the automated tool for LFI scanner?
I have some research about your question, and i found this page (https://www.sciencedirect.com/topics/computer-science/automated-tool)
🤓➡🦸 Pwn Zero To Hero is back!
📑 What will we be learning?
- Reversing assembly ✅
- Step-by-step walkthrough ✅
- Setup and breakdown of functions ✅
Check out NOW! 👇
https://youtu.be/UF1vIqhmogo
Full Pwn Zero To Hero playlist: https://www.youtube.com/playlist?list=PLeSXUd883dhjmKkVXSRgI1nJEZUDzgLf_
Nightmare: https://guyinatuxedo.github.io/01-intro_assembly/reversing_assembly/index.html
Binaries used in the video: https://github.com/kablaa/CTF-Workshop/tree/master/Reversing/Challenges
▶️ YouTube: https://www.youtube.com/c/PinkDraconian...
Command line search tool for sploitus.com. Think searchsploit, but with more POCs. Sploitus provides a tonne of pocs for a lot of vulnerabilities in a lot of services, scraped from all over the int...
You can now install and run latest r2, rax2 and rasm2 in your browser or terminal thanks to webassembly! (no disk or network access, it's a sandbox! (use pc* and terminal paste to load binaries) https://t.co/1PvhQ2gbcO
Anyone have any resources for developing my site on github pages? I want to add subdirectories to put all the work i have done/will do but i cant seem to find much to answer my questions. Or if anyone is available to help pls dm me.Thanks!
The GitHub Docs have some good information, especially if you’re using Jekyll. I just copied off of someone else (spooky) until I fully understood the bits and pieces
Thanks for the response, i tried following the github docs this weekend when i got started but it didnt get me far besides getting the site going. Did you find the jekyll docs useful?
Since I started my own, they've changed the system to work with GitHub Actions instead of you having to build it locally, so I'd have to check again
At the time, they were pretty much all I used along with GitHub's docs
But my workflow is pretty much "write blog in markdown, git add, git commit, git push, repeat", since I used a template
If you're looking for more than that, then I'm not the right person to be asking
No worries but thanks for responding, once I get more comfortable and similar to you, develop a template/format of some sort, then it will be simple. I’m just still trying to figure out how to get my work on the site and organize everything.
Gave +1 Rep to @orchid basin
I have all my write ups within obsidian, which is in markdown, so basically I could try to follow those commands to upload a folder?
I have similar setup with obsidian, what i do is convert the md to html and copy <p> and stuff to html template
I included those link because you said subdirectories on GitHub pages
Haha it seems like I should make a template before I upload my work. But thank you for sending that, I’ll try it out with a test folder
Glhf
I use HUGO paparmod, put all my posts in content/posts/ on main branch, and then GitHub action build and publish them on gh-branch, u might wanna take a look..
PS there is better way to arrange those directories, refer to the docs
https://github.com/swanandx/blog
Ok, I’ll look into that, thank you as well
Gave +1 Rep to @remote wind
Hey has anyone here solved pentester recon badge exercises? I am stuck at recon 02..
As part of our continuing mission to reduce cybersecurity risk across U.S. critical infrastructure partners and state, local, tribal, and territorial governments, CISA has compiled a list of free cybersecurity tools and services to help organizations further advance their security capabilities. This living repository includes cybersecurity servi...
Maltego Playlist I've been working on. Putting together some Transform tutorials next: https://www.youtube.com/playlist?list=PLtoC6Cd29__Wl7JR1yAXo7G3AoqDRq4NM
https://cheats.rs/ Rust Cheatsheet 🦀
The ETBD PDF
As in, the PEN-300 learning materials
You ain't getting better than that for exam study 🤷♂️
@shut ferry look for something here mate
Those wouldn't be pirated now, would they? 
I would be astounded if that was true considering many of the books there usually cost
What kind of licensing covers distribution of those books? Sure seems sus....
Ahm... well it was just a resource I found. Just wanted to help since I too use them. Very helpful ngl
But I can delete it
No worries
Sorry for the inconvenience
That would probably be sensible 🙂
Just in the interests of making sure
All good 😄
As a general rule, if something like a book or a film is free on the internet, it's usually not legitimate -- exceptions being if the author has explicitly released it for free redistribution or if it's in the public domain 🙂
Sorry mate
AFAIK PDF Drive basically just grabs PDF copies of everything it can find and displays them 🤷♂️
U r right
It's fine -- just a heads up 🙂
Gave +1 Rep to @topaz gulch
Does anyone have any good resource for learning about containers? Someone posted a link for this topic here as well but lost it somehow
Do you have the activation key for Win11 Professional
This would be software piracy.
-ban @marble sun Asking for pirated software. Was told it was piracy, continued to ask. Ban appeals are bans@tryhackme.com
🔨 Banned NTMD#5226 indefinitely
Balls
That guy was just drunk i guess 😂😂 Asking senior mod for pirated software.. Can't stop laughing 🤣
Search Engine For Hackers
From the creator of LinPEAS, WinPEAS and HackTricks, check out PurplePanda! https://github.com/carlospolop/PurplePanda
Follow Carlos to see what he is up to! https://twitter.com/carlospolopm https://www.linkedin.com/in/carlos-polop-martin/ https://www.instagram.com/carlospolop/
Help the channel grow with a Like, Comment, & Subscribe!
❤️ Suppor...
Hey i was wondering if anyone can tell the difference between subdomain and a virtual host?
I googled and searched about it but i am confused between two of them
A subdomain is a DNS thing -- it's a record that points at an IP address.
A virtual host is a software thing -- a feature in webservers that allows them to host multiple sites differentiated by their hostname.
Actually put it this way:
Say you have a domain: example.com
You create a subdomain: sub1.example.com and set an A record (basically a forward lookup address) of 1.2.3.4 -- which is an IP address that is assigned to a webserver that you own.
Any traffic directed at sub1.example.com will now go to the server at 1.2.3.4
That is a subdomain.
But what happens with the webserver?
It's fine if there's only one site on the server -- it just serves the default one to anyone who connects, and all good, but what happens if you have two sites?
Say you have another domain: exampletwo.org that also points at 1.2.3.4 -- how does the server know to serve the site for exampletwo.org when people connect using that domain, and the site for sub1.example.com when people connect using that?
That is VHosting -- when the webserver is set up to serve different content depending on the "host" (in this case, domain/subdomain) that it is accessed using
Thanks for explaining it so thoroughly.. sorry for the last question..
So if i serve my web content for a subdomain through /var/www/html directory, then should i use the same directory for the virtual host? Or is there some other directory involved for hosting that virtual host?
shameless plug 🙈 https://work.jake-ruston.com/setup-guides/apache-virtual-hosts ignore everything else on that website it is a shit show currently
Great content man! I have a doubt though.. Suppose i visit the host example.com, then how does the web server know which content to provide to me? The content of example.com or dev.example.com?
when apache processes the request, it will see that there are multiple sites enabled -- so it will check each site's configuration:
when looking at each site's configuration, it will compare the requested domain against the entries in each ServerName directive of the enabled sites
Ah okay! Understood!! :) 😇
Thanks for explaining! I should've understood ay first
if you're like me and always forget which potato does what: https://jlajara.gitlab.io/others/2020/11/22/Potatoes_Windows_Privesc.html
Some months back i was using an alternative to nmap that was allowed to use in OSCP. it used to output into different folders. anyone knows what the tool is called?
please tag me if u know it
rustscan?
Autorecon?
THISSSSSS. Thank you sooooo much
Gave +1 Rep to @lucid edge
If it helps any beginners: https://github.com/cybervulcan-org/resources
Thanks a lot, I was looking for something for beginners
Gave +1 Rep to @ruby canyon
Hey I have recently made reveng_rtkit, public. It is a Linux Kernel mode (aka LKM) based rootkit targeting Linux Kernel: 5.11.0-49-generic as it was only tested on it till now. This project is heavily inspired by Heroin and Diamorphine LKM rootkit projects. Especially, the Syscall interception mechanism section was totally taken from Diamorphine by @m0nadlabs repo. It is a post exp/ persistence/ stealth based framework. It can hide itself as well other processes/implants, also make itself rmmodable proof via IOCTL and syscall interception techniques. Some techniques are differently implemented in order to bypass signature based detection of antirootkit like rkhunter.
https://github.com/reveng007/reveng_rtkit
This is awesome! And super good documentation as well, I can see there was lots of work put into this!
Hey, thanks alot....❤️
If you want to contribute, you make a pull request, you are highly welcomed...
I would but tbh I have no idea how to work kernel level, I will definitely read up on the resources you have there and maybe even try to create a remover for the rootkit haha
Okay, actually I am writing a detailed blog on this...of how I created this rtkit....
I would then share that in here, once it is done....
Yaah sure, all the very best...❤️👌
Awesome! Thanks!
Gave +1 Rep to @granite flame
It's very interesting Shivam.
Thanks : )
Gave +1 Rep to @crisp ridge
Have fun! :)
👀
Ukraine needs support! SEKTOR7 has already donated to Polish Red Cross, but there's something we can do more.
Thus we give out a 50% discount on all our courses and donate all the income to the Polish Red Cross
Please share/retweet
#StandWithUkraine 🌻
Does anyone have any recommendations for what course to buy from ^? My eyes are on Malware Dev Essentials, but I don't know Sektor7 very well.
🤓➡🦸 Pwn Zero To Hero is back!
📑 What will we be learning?
- Setting up Ghidra ✅
- Using the Ghidra decompiler ✅
- Reversing a crackme ✅
Check out NOW! 👇
https://youtu.be/m6NbJkGA3XY
Full Pwn Zero To Hero playlist: https://www.youtube.com/playlist?list=PLeSXUd883dhjmKkVXSRgI1nJEZUDzgLf_
Crackmes: https://crackmes.one/
▶️ YouTube: https://www.youtube.com/c/PinkDraconian
🎁 Patreon: https://www.patreon.com/PinkDraconian
🐦 Twitter: https://twitter.com/PinkDraconian
🎵 TikTok: https://www.tiktok.com/@pinkdraconian
ℹ️ LinkedIn: ht...
Which edition?
What guides or rooms can you recommend for setting up your "operations environment" inside home network + secure those two?
Do you guys use ebook readers? If yes what would you recommend?
I don't use it on laptop, but on android I would very highly recommend 'Moon Reader', not sure if it's on iOS or not.
Also just remembered, try using 'Bookwiser' for windows.
Recommend both 5/5 ⭐
Hey thanks for the info but i'm more interested in a physical ebook reader something like kindle, but heard really bad things about it and wondered if you guys have an idea or experience with them..
Gave +1 Rep to @prime mantle
Ah, understandable, I was skeptical to buy kindle because I just love handheld/physical copies more, tried my friend's kindle for a while, you should give it a try first before you buy. It's like anime, either you like it a lot or you just simply doesn't get a kick.
Fair enough :), thanks again
Gave +1 Rep to @prime mantle
bot going crazi
check out my game Check out the project i made https://haqer-man.github.io/WordLess/ sorry if this looks like a phishing message xD
https://portswigger.net/burp/releases/professional-community-1-7-36 Make sure to click the community version and not the professional version on the left bar.
" But why fomori would you suggest an old version of burp suite ?" " well well , my brother in arms, because this version still has the automatic spidering of the site map, if you right click !"
Hehe just gonna leave this here 
https://youtu.be/Zma6Mk5bEI8
Join Siddicky, one of our Student Mentors in a walkthrough on the machine Alice from the official Offensive Security PWK Lab!
Check out our new certifications!
SOC-200:
https://www.offensive-security.com/soc200-osda/
WEB-200:
https://www.offensive-security.com/web200-oswa/
Join our Official Offensive Security Discord as well:
https://discord....
Kinda self promo isn't it sid
😆

It's actually a great opportunity for those who have yet to enroll in the course to get a taste of what the pwk lab machines are like 👀
Hi everyone I’m new to this discord so please forgive me if I’m asking my question in the wrong section of the discord group lol .
I just wanted to know do you guys have any tips on how to memorise/study key terms and acronyms ?
There’s a lot of networking / cyber security key terms and acronyms I’m trying to revise is there a list I can download from the internet with all the key terms etc
Keep notes, refer to them, try to understand how things work as best as possible.
This makes the connections in your brain with the key terms. Makes it easier to remember.
@NinjaJc01#7746 thanks, that’s helpful .
I'd suggest use note taking tool like obsidian. I switched from Notion and life just feels more organized tbh 😂 In Community plugins, use the Mindmaps plugin.. That would present your notes in form of a mindmap.. It's really useful when u need to revise quick :) Hope this helps
Hi , I wanted some resources/techniques on finding the actual IP addresses behind a proxy/VPN IP address. Its for a project Im working for, not getting much info regarding this.
What's the username and password of @ebon valve volatility vm from the website resources?
Can anyone suggest a vulnerable web application apart from DVWA and Owasp Juice Shop?
https://github.com/ncrocfer/whatportis.git
Didn't make this but it's really helpful!
or grep mysql /etc/services 👀
Would that work with just a port number tho?
it works, but having a one line tool is easier, theres also more stuff in the tool I think
ssh 22/tcp # SSH Remote Login Protocol
xmpp-client 5222/tcp jabber-client # Jabber Client Connection
dcap 22125/tcp # dCache Access Protocol
gsidcap 22128/tcp # GSI dCache Access Protocol
wnn6 22273/tcp # wnn6
another problem haha
Well, kinda works so, you're link is pretty much useless
Sorry buddy 
mine has a server you can use though, since not all machines have that file, you can curl it and get the output.
and it has regex search
and json output
Mr. can't read docs.
Mr. Forgot obvious script in linpeas
Mr. SHUT UP IT WAS TOO CTFY.
You can trivially write a bash function to form that regex around an integer though.
yeah theres some more features to the tool, like json output, a webserver for when you don't have the command on the machine or in your case if theres no /etc/services on the machine.
Still seems like massive overkill for a trivial problem. You'll have /etc/services on your own machine.
Yeah but still, loads of tools are not needed and people still use them even if they are 5% more comfortable than manually doing stuff
if you have the options to either use pure nc or rlwrap nc which do you use?
That's a different case, you're comparing apples to oranges.
how come?
It's very different to searching for a string in a text file?
In both you have one case where you type more and it's less comfortable and there's a solution by installing additional software
🚩🧙♀️Capture the Flag competitions are THE BEST way for beginners to learn technical skills🧙♂️🚩
With 2 weeks before @picoctf I've released a free CTF course so students can prepare themselves to have the best experience possible. https://t.co/46eRWBQedF.
Retweet to help share! https://t.co/UrAdtG6goL
I figured there's some THM room creators here, so just out of curiosity - how do you add the mock terminal to tasks when you create a room?
-arole @weary pumice Creators-Lounge
➕ Gave the role Creators-Lounge to Agnes#8772
Check the pinned messages in the channel I just added you to 🙂
Yay thank you so much! 😄
Gave +1 Rep to @topaz gulch
Np 👍
Hi, I need help. I am not able to download the PowerUp.ps1 file from github. How do I complete Steel Mountain?
This is the function being used, you could do the pieces of it manually but it would probably be easier to figure out why you can't download the script https://termbin.com/gv3u
new Dirty Cow-like exploit
https://dirtypipe.cm4all.com/
Such an awesome read! Thanks!
Gave +1 Rep to @fast wraith
@hazy bear ^ not so much discussion but that's the only place I've seen it mentioned so far
Gave +1 Rep to @odd quest
How did go?
Yeah awesome haha
As always, Droogy with the awesome vuln writeups xD
Hello everyone, I’d really like to improve my white box skills but as far as I know THM is mainly black box. Do you have any suggestion for trying something white-box? Any recommended ctf or maybe even thm rooms or other resources? Thank you 😄
Check out envizon on thm
Not a guide but a white box challenge
My Hip Flask (https://tryhackme.com/room/hipflask) also has whitebox components. It's technically blackbox, but you end up dumping the source code for an app and reviewing it for vulns, so 🤷♂️
Trying to think if there are others. Symfonos 6 was removed, or that would be another one where you get the source code and have to review it
Thank you it works
Gave +1 Rep to @shadow hound
nice write-up on bypassing EDR
https://blog.redbluepurple.io/offensive-research/bypassing-injection-detection
Released v0.3.0
- Added Filter support and boundaryless regexes
- Minor improvements
lemmeknow is pyWhat but in Rust, making it fast af.
( Will add benchmarks soon™ but it was like 20x faster for files on v0.2.0)
simple software that uses dictionary attack to crack passwords :).
https://github.com/IZABOD/IzabodPasswordCracker
👍
Anyone in need of a Practical ethical hacking course by Heath Adams? If you're unable to afford it, please DM me.. I can gift you one from Udemy as it have it there as an extra.
No strings attached.. If you need it, i would be happy to give it to you
how do you have it as an extra? It is no longer offered on Udemy unless you are offering someone a Udemy account, which doesn't seem very ethical.
No i meant that i have it from tcm site as well.. So i could gift either. I just discovered while gifting that I can't gift it as its no longer available. So i gave them the one from TCM site
Sorry for the confusion. I was trying to help but wasn't aware of the gifting process as it was new for me
ahh ok good deal
https://twit.tv/shows/security-now
Latest podcast was interesting covering the current state of cyber warfare in relation to the Russia Ukraine conflict
anyone have any brute force software?
Thanks - I am going to listen to that on my morning commute tomorrow.
Gave +1 Rep to @hexed sable
Yeah of course. Lots comes preinstalled on Kali. hydra being the main one.
oh, thanks man!
Gave +1 Rep to @vapid hound
People who have Raspberry pi's, do you subscribe to "Hello World" ?
This months issue has Cyber Security in it, (I've had a skim through, I haven't had a chance to read it fully.
Sorry, I forgot to add the important bit,
This is an issue that can be subscribed to for:
£6 a month.
You get it free if you meet certain posts, (UK related)
The PFD is free to download.
Also so are all the back issues, some of them are good.
Any specific ones you recommend?
Been listening today. Good in-depth overview of the situation. Nice recommendation, frazzet.
Raspberry pi fan and this looks like an interesting magazine. Thanks!
Gave +1 Rep to @rotund moat
All of them, they all have interesting things.
Excellent, if one person makes use of them, I'll be more than happy!
i wanna do the "muppet" joke but don't wanna annoy you too much 
You don't annoy me, ya muppet!
well done ya muppet...
I set up a raspberry pi with kali linux recently. I'm looking forward to trying it out.
Does anyone has a cheat sheet about the rooms that has been listed on THM? More specific a reminder about the most commands you use in linux? I know i can find all these with just the command man ls. But it would nice to have a cheat sheet that u can just open and check when you are stuck
Take notes, on anything you think you'll forget.
The rooms have tags also, on some of the stuff you'll encounter on the room.
@fast wraith I’m waiting for new cool writeups xD
are you talking about priv esc? or something else... https://blog.g0tmi1k.com/2011/08/basic-linux-privilege-escalation/
Before starting, I would like to point out - I'm no expert. As far as I know, there isn't a
Gave +1 Rep to @modest bison
Also, take note of how old the room is. At the very bottom, some things I have issues with in old rooms. There are a couple that will not give up the flags even though I performed the tasks
I've never had that trouble.
Well, things get updated and are slightly different than what the 'directions' may say. It just requires some research and is actually good for the real world
Age isn't an indicator that rooms are broken, in fact it's more of an indicator that they're not broken as broken rooms tend to be fixed or made private.
I never said it means they are broken, I said it means things might be different
And in my experience with THM, any room I have an 'issue' with, it tends to be an older room
Youre welcome, security now is the best, been listening to that podcast for years 🙂
Does anyone know any resources for revenge hacking into C2 servers? listened to a podcast from the dutch intelligence agency about it today, and it kinda peeked my interest
^not saying I want to hack into C2 servers. I'm just interested in the TTPs and what makes the C2 servers weak considering they usually make use of sneaky endpoints and double encryption
I know ippsec made a box not too long ago inspired by the bugs in C2's
https://www.youtube.com/watch?v=pc-_tK6CWnA
00:00 - Intro Hacking a Command and Control Server
01:07 - Running nmap and discovering two different SSH Instances, guessing one is Docker
03:30 - Looking at robots.txt which includes a link to the implant, looking at the error message and discovering its a cpp binary
05:30 - Using Wireshark to discover it makes a DNS Request to Spooktrol.htb, ...
I have run into that. There's a Linux Priv Esc room that about 1/4 of them don't work anymore. But it doesn't ask for the flag only mark it Complete. so you can "finish" the room.
If that's the new linux privesc room, some aren't meant to work - they're provided to teach you
you don't even know how many hours i've spent re-doing tasks only to realize some of the flags just won't work but i'm completing the task the correct way. Not a terrible thing though as now I know those skills really well lol
Hey guys I made a CTF walkthough for Blueprint CTF challenge. If anyone is interested you can find it here https://medium.com/@n3phel1m/blueprint-tryhackme-ctf-walkthrough-c71c27d6e652 I would love to hear your opinion on this!
Nice work!
One thing I would say is, believe it or not, Metasploit isn't actually unrealistic 🙂
It's a tool designed for pentesters to rely on in irl situations. It's arguably less good for CTFs and examinations because of the whole "You don't learn by watching it say 'pwned'", but it's very commonly used in the real world because it speeds things up considerably.
Good to learn different ways of doing things though! Not least given Metasploit really does remove the need to learn how things work if you use it as a crutch, which... isn't hacking.
I was wondering what people usually use to organize their notes, I used keepnotes for a while but there may be something better 
lets try cherrytree 
me too since 2012
I write my notes down. On paper, not wet clay tablets. Writing down anagrams, definitions, modelling paths, make it easier for my brain to remember. I am very fussy about writing implements. I love mechanical pencils and all the different leads (live forever, 2B leads!), nicer notebooks (especially dotted paper), and gel pens and highlighters for colour. Coding, I like Atom and VS Code. My terminal is gaudy with ohmyzsh (all the shades of pink and teal). Good times.
Have you tried Pilot V5 0.5 pens? Absolutely amazing!
Pilots were my first non BIC stick pens in uni! I love the purple.
I’m an exclusive red user, either that or pink.
Are you an 0.5 or 0.7 gal?
0.5 for typical notes, 0.7 for words/phrases I want to stand out
R0tring mech drafting pencils are awesome. 2nd best is the pentel.
As far as pens, I love the R0tring technical drawing pens. 0.05mm line width is the best
For highlighting the Pilot erasable markers are nice, a little smother but not too bad.
My nan gave me a gold covered fountain pen I hadn’t used yet, can’t find the ink tank for it haha
For paper note taking, I use a rocketbook when I'm not at home, or I prefer to use scientific lab notebooks or engineering calc pads.
Micron pens for flash cards when I don't need colour. I adore my rotring 600 but tend to lean on my uni kuru toga. Muji makes surprisingly good and affordable gel pens in a dozen different colours. But I like the gelly roll gel pens for their stand out colour.
I just use the normal basic paper you get in bulk haha, I want a rocketbook though, it seems lit
now I must go explore rocketbook
I cannot stand ball points / roll gel pens
It like sticks to the paper
It feels yucky
they do, especially when they get gunky and leak.
rocketbook is a little different. the pages are plastic, so the pens tend to slide more than roll
The Pilot leaks are a meme at this points.
Isn’t rocketbook the stone one?
Or is it the self erasable one?
i order the smaller frixion pens from JETpens because I prefer finer points. O.7mm is too unwieldy for me.
they make one that is self-cleaning inthe microwave, too
but i prefer the 'wipe with damp microfiber towel to clean' ones
I 100% agree, 0.7 is unusable to me, I just write too small xD
Anyone have any asset management system/framework recommendations ?
i've heard good things about ITGlue
A bit pricy but worth having a look at it, open source framework would be preferred, but thanks will look into this!
Oh right, and thanks 🙂 Thanks must be given out in threads in discord 
Gave +1 Rep to @fast wraith
Anyone recommend a resource on Powershell obfuscation, common techniques of obfuscation and how to deobfuscate? (not the -ge stuff)
https://youtu.be/c7H1W4BmZ6g Learn about linux fuzzing, finding 0day vulnerabilities in applications and exploit-dev! great course for beginners looking to start a path in exploit-dev 🙂
Have you ever asked yourself how vulnerabilities are discovered and how exploits are written? Well, then this is the perfect talk for you. We will begin by discussing how so called Fuzzers can be used to find previously unknown bugs in applications. Then we will analyse the generated crash dumps to find out if the underlying issue is exploitable...
Hey. Can anyone recommend a good news outlet for Cyber updates? (Sorry if this is the wrong channel to ask in)
Rss feeds
Hey. I try the Buffer Overflow room i do every reverse engineering room on THM to understand assembly and RE. But even with these new skills I can't figure out how to make the room. Do you have any resources about RE or Buffer Overflow to help me ?
no i talk about https://tryhackme.com/room/bof1
you think i have to do your room before mine ?
oh im not there yet 🥲
🤓➡🦸 Pwn Zero To Hero is back!
📑 What will we be learning?
- Setting up GDB and Pwndbg✅
- Dynamic analysis of a binary✅
- Cheatsheets and more ✅
Check it out NOW!
https://youtu.be/-pKu42v_opk
Full Pwn Zero To Hero playlist: https://www.youtube.com/playlist?list=PLeSXUd883dhjmKkVXSRgI1nJEZUDzgLf_
Crackmes: https://crackmes.one/
Cheatsheets:
https://cheatography.com/cactuarnation/cheat-sheets/gdb-and-pwndbg/
https://darkdust.net/files/GDB Cheat Sheet.pdf
https://gist.github.com/rkubik/b96c23bd8ed58333de37f2b8cd052c30
https://cs.br...
Not exactly sure what this is, but seems to be useful for some fellas here
https://youtu.be/2eLe7uz-7CM
TIP JAR: https://www.paypal.me/PowerCert
My CompTIA A+ eBook http://powercert.com
This is the Animated CompTIA A+ Certification Video Course 220-901.
GET 30% off with this link ►►http://Trygodaddy.com/powercert and get your Domain Name, Build a Website, or use any of their other services at GoDaddy (affiliate).
50% off System Mechanic ►►htt...
--> BloodyAv is Custom Shell Code loader to Bypass Av and Edr.: https://github.com/MRNIKO1/BloodyAv
Hey guys, check out my write up for Napping room. Comments and suggestions would be appreciated. https://systemweakness.com/napping-tryhackme-writup-dfb62211959f
@topaz gulch ^
There is a good news outlet in twitter for cybersecurity/hacking daily news called "The Hacker news"
Yeah, Powercert videos are great :)
Not doing a+ currently, revising for my net+
Here's a collection from many sources
https://allinfosecnews.com/
allinfosecnews.com aggregates all of the top news, podcasts and more about Cyber Security, InfoSec, Cryptography, Online Privacy, Hacking, Vulnerability and Threat Research into one place.
this is my collection of websites to learn cybersecurity
https://tryhackme.com/
https://www.hacksplaining.com/
https://portswigger.net/web-security
https://blueteamlabs.online/
https://overthewire.org/wargames/bandit/
https://www.hackthebox.com/
https://www.hackasat.com/
https://picoctf.org/
TryHackMe is a free online platform for learning cyber security, using hands-on exercises and labs, all through your browser!
The best protection against being hacked is well-informed developers. Make your development team into security experts today.
The Web Security Academy is a free online training center for web application security, brought to you by PortSwigger. Create an account to get started.
happy weekend everyone
Lovely though that sentiment is, please don't spam it in every channel 😆 ♥️
They'll care about you for the wrong reasons if you piss 'em off by spamming it everywhere 😄
@rotund socket #thm-community-media please
wooww sorry
good to know RTLO exploits are still a thing lol
https://www.bleepingcomputer.com/news/security/url-rendering-trick-enabled-whatsapp-signal-imessage-phishing/
how do you get roles on the server? I don't see a role channel
!docs verify
You'll get the verified role Subscriber role too if you've subscribed.
Mods can give you other roles too based on Certs you may hold (CCNA, eJPT etc)
You can also get special roles from events, the last event was for "Pentester"
You can also get the Bug Hunter role if you submit 3 bugs in the THM Bug Bounty.
Mod is the best role though 😁
Free scholarships from ISACA and one in tech program https://isaca.secure-platform.com/a/page/oitscholarship/aboutscholarships
Hi everyone, little video I found very useful to understand the logic in the sysmon module. Hope it will also help you.
No thank you. I already have one to deal with rn 
Please don't ask the same question over multiple channels
You got an answer in General
No.
sry wrong channel
I wouldn't advise asking that in any channel.
What do you mean?
What you're asking isn't ethical in any sense, and any conversations will be shut down by mods, (quite right too)
ok sry i had no intentions of using it for "evil" but it is understandable that it is not allowed and i will make sure that i don't address something like that again 
the architecture you are using is not the same as the software you are trying to install. You are using arm64, so you should look for software versions compatible with that architecture.
I’d like to learn about the Linux system and look for ways to set it up without investing hefty $
My mentor recommended CYBRARY saying that it will allow me to set up a virtual Linux server for learning and practice purposes. Any suggestions?
Leave your mentor and install virtual box
Linux runs well on old hardware. Refurbished/used laptops can be a great place to start building a home lab. Another very cheap alternative is to get a raspberry pi.
If any hardware is out of budget, you can also install a hypervisor like virtualbox or vmware workstation to run a linux VM.
yea i often get old laptops when customers want upgraded (got tow linix installs on latops over 10 years old) Linux will run on almost anything x) and honestly (this is just my experience+,opinion) but I generally see people struggle more trying to vm linux thsn doing an actially install (unless your dual booting and have a dedicated Nvidia gpu) now don't get me wrong cybrary had good contents, expensive af though, but if your just wanting to learn Linux theres much better options . and hardwares wise (depending on what country your in and their fair use/fair dealing copyright laws ) you can even install full distros on phone's **that said pleas check your local law before attemping :)
You don’t need to spend any $ in my opinion
and install Linux and use as a daily OS if possible
then just force yourself to use cli
and research everything
THM has free vms
And you can get quite a lot of free credit for VPSs on linode etc.
Linuxsurvival.com is a good website to use for learning CLI.
wish I'd known about these sites, I learned linux the hard way running random commands, looking up the errors and so forth 
That's how I learned too, back when I switched from Windows XP to Ubuntu. 😄
but did you break your entire system 1 or 2 times cause you loved dual-boot and had to wipe the entire hard disk, 👀
No, because I didn't dual boot 😂
noob 
Did you ever recover your files?
yeh, I made a bootable usb and recovered some files but pretty scraped most of the stuff
And did a fresh version?
Yeh, dual-boot for life 
Have we learned form our mistakes before? and backed up everything? xD

@graceful mountain I went from windows to arch linux dualboot with a dedicated nvidia gpu :) i facerolled my system for 4months before i gotna working GUI and by then i prefered the command line so i feel that think i formatted and started over at least 8 times x)
this is the way

also learned more in those 4 month than 25 years ob windows
as much as i love linux i know for the time being ill be dealing witb windows and need solutions that span the x) that and my scool coursesbwere 90% windows x) lol i broke server 2019 couple times Durning that course too x) i got to self learn things like manually restoring window bootloader and rebuilding raid 1-0 arrays because they have your project which is due in two days stressfull course that's done but still being sorted out x)
Yeh, the software that we use for our labs in uni only runs on windows, but I daily drive linux and only switch to windows when I have school stuff to deal or write reports/assignments cuz need office...
ahh x) yea though ive found some solutions to make windows more likely linux (other than learn PowerShell and use wsl)
Office 365? or is it missing features you need?
so gnu32utils found this year
we don't get office 365, but we get a student standard educational license
(which gives you gawk on Windows as an exe)
Ah...
I don't like Office 365 for the reason I listed, I prefer the desktop application.
powershell is very strange for me, granted I've not used it that much,
havn't tried wsl other than simply installing, looked good
PowerShell has some nice features but very differet
I recently tried the "windows terminal", that combined powershell and some oter stuff I think, and it was very linux like and comfy
but msys32 is a cross compiling platform for windows if you copy the bin it makes in root theu contain the DLL and exe of about 400 gnu linux commands
Thanks!
Gave +1 Rep to @glacial gazelle
yea terminals nice full graphical background with gif support cool, launching 4 window pwsh cmd kali blackarchnwas neat but was more just tonsee if i could x)
Thanks!
I published a few articles in Red Teaming (AD Introduction, AD Offensive Powershell, AD LPE, AD Lateral Movement )
More coming soon 👀
Any suggestions are welcomed 🙏
https://0xstarlight.github.io/posts/Active-Directory-Introduction/
https://0xstarlight.github.io/posts/Offensive-PowerShell/
https://0xstarlight.github.io/posts/Active-Directory-Local-Privilege-Escalation/
https://0xstarlight.github.io/posts/Active-Directory-Lateral-Movement/
thanks @OxStarlight l
also i wanted to share this with everone because these have served me well in the past id i made use of one today due to a dispute im having with my school theyre called canary tokens, these files look like jucy little tidbits of low hanging fruit but are really a form of honeypot, given inticing names and placed where the generally wont get snagged by staff where and what is up to you, eg. a broken unlinked page with an admin.php or in my case my school inbox marked school name inportant evidenced dont lose. if said file is opened it triggers an email to you to let you know youve had a breach and fast tracks singing out which ip are snooping your network potentially before an actual attack occurse or at least giving you a starting place in your post investigations. they come in many different file formats. https://canarytokens.org/generate#
one note, if they are using a "modern" email system, the IP shown may just be one of the email providers like google or outlook, not the ip of the user opening the email, and even more aggressive systems might pre-download all images and open all links and scan them for malware/phishing/whatever so a notification might actually mean nothing other than the email server received the email
but regardless, canarytokens is great
oh no you dont send ot
thats what tracking pixels are for
you name it something juicy that wants to be read and its a warning if someone's poking around (like your inbox)
or unlinked pages where they shouldnt be x)
they see what they think is a passwords.txt
or other and the opening of it trigerrs the toke
For OSINT folks, a guide on creating custom Maltego transforms: https://www.youtube.com/watch?v=k5oikWy0OLc
𝐓𝐨𝐨𝐥𝐬 𝐮𝐬𝐞𝐝 𝐢𝐧 𝐭𝐡𝐞 𝐯𝐢𝐝𝐞𝐨
Interpol Custom Entities: https://github.com/OsintDojo/public/blob/main/Maltego/Interpol.mtz
Interpol Red Notice Local Transform: https://github.com/OsintDojo/public/blob/main/Maltego/RedNotice.py
Interpol Public Red Notices: https://www.interpol.int/en/How-we-work/Notices/View-Red-Notices
Maltego: https://www.maltego.com...
ohhh
has anyone played around with openEX https://www.openex.io/en/
Where can i find ELI5 for blockchain storage ?
Red Teaming(Active Directory - Domain Persistence) 5th Article
Any feedback is welcomed 🙏
https://0xstarlight.github.io/posts/Active-Directory-Domain-Persistence/
https://samsclass.info/127/ED_2020.shtml
Great resource to learn beginner to advanced exploit-dev/Bin exploitation for Windows and Linux! Credits @coder_rc on twitter)
Does anyone have any good resource or blogs for learning amass extensively? I know there's help options in amass but i'd like to learn it with examples with performing and executing different commands
@grizzled ore very nice write up, as a note id love for you to throw in a pull request https://github.com/S1ckB0y1337/Active-Directory-Exploitation-Cheat-Sheet you do a much nicer job explaining the process 🙂
@lucid edge https://www.dionach.com/blog/how-to-use-owasp-amass-an-extensive-tutorial/ https://blog.intigriti.com/2021/06/08/hacker-tools-amass-hunting-for-subdomains/ https://hakluke.medium.com/haklukes-guide-to-amass-how-to-use-amass-more-effectively-for-bug-bounties-7c37570b83f7
Our extensive blog post provides a tutorial on how to use OWASP Amass to discover an organisation's externally exposed assets.
Welcome to our hacker tools series. In the past weeks, we discussed some useful tools to help you with your bug bounty career. This week we will discuss Amass, the well-known subdomain discovery tool. Amass is a tool that uses passive and active information gathering techniques to compile a nice list of an organization’s externally […]
Sure, ill give it a look if you do a pull request
oh its not my repo X) i just selfishly use it 🙂 i actually should have checked prior to that statement if tits open colab, either way i collect resources and your blog seems to have quite a few things i need to pour over 🙂 so thanks for the write up
Np man, im glad you found the articles helpful 😊
yea wish i had this ad post months ago when i was doing w740-742 in college X)
ohh reminds me if you don't know there's an amazing powershell script get-newview just excellent creates a data dump running pretty much every network command you could ever need and outputs to a directory on your desktop (not fast) in organized folders and text files but very inclusive 🙂
Would you mind sharing
yea its availabile in the psgallery
yea it pretty much runs every network command you have and logs it as json so you can examin your network
took about 4.5 min but should contain everything you need to have a comprehensive understanding of the network
the files are named after the command run to get that specific data set
also pulls logs drivers and vm configuration
Hey all 👋 I am looking for recommendations for good free python course or video that is cybersecurity oriented. I have some experience in c# programming so not necessarily a beginner level.
You could consider looking into BlackHatPython and/or GrayHatPython
Are there any labs or platform to practice the Information Systems/Security audit besides books and slides?
That's the best part of THM! I just created my first room the other day, it's a pretty fun CTF 😁
How popular is Kali Linux as an OS? What pen test tools are widely used in that environment?
well @turbid badge thats a loaded question X) it depends who you ask 🙂 its one of the more popular one but every linux user has a favorite and theyre all sure that theirs is the best X)
and theres a couple thousand tools in kali (multiple tools for the same job and a lot of the times it comes down to what you know whats preinstalled and ease of use {which is also subjective based on what you know})
as a day to day os? no i would not recommend 90% of the pen testing distros (though parrot is a sideline exception as it is more security os focused than pen testing though also has a host of pen testing tools and is debian based so in theory any tool available on kali should work on parrot). 95% of python program can run on windows and linux (though you may have to set up virtual environments to sort your dependencies out) rust and go are also generally universal assuming you sort deps and compile for your specific architecture. and a lot of pen-testing tools are built on those three languages.
@urban void Thanks!
Gave +1 Rep to @urban void
@vocal magnet do you mean just hacking labs or specifically audit specific, or just challenges in general,? im about to drop a list of labs and challenges some of these links are dead and i need to refind them if you find a dead link please try to go to the main site and see if you can relocate the resource if you have to do this if you could msg me with the updated link or just a MSG that you found a broken one. commented lines are dead links ive yet to fix. again enjoy and sorry for the incoming massive labs/challenges drop
actually apparently cannot paste thatmuch text in discord
oh yes i can just shows as a txt file and thats not even that bad
also if you see im missing something pm me as well 🙂 challenges labs vm's vunlerable web apps ctf cyber ranges, belong on that list 🙂
Red Teaming(Active Directory - Domain Privilege Escalation) 6th Article
https://0xstarlight.github.io/posts/Active-Directory-Domain-Privilege-Escalation/
Cyber security, Red Teaming and CTF Writeup’s
Just received a message that the trial version of NetLimiter expired. It was installed as part of my cybersecurity project. Not quite sure if I have to renew or uninstall. Your thoughts?
https://www.netlimiter.com/products/nl4
Did you use it?
Yes I did. Is it a problem? Any malware possibility?
hmmm pro version is 30.00 but doesnt seem to add functionary beyond a graphical interface for what you can do in powershell on pro/enterprise/server and at that price i image its just using those systems to populate the information. and theres always a possibility of malware (even if its very low) id be more suspicious of bloat/tag alongs that get installed along side it. but if your auspicious you can always have a look inside the exe file and see how the installer is configured
(found this out recently so thought id share, there is no real definitive standard for what an exe file is there are several ways to make them and are not always created during compiling, generally they are a packaged collection of files libraries registry edits and other function scripts to organize and distribute the program/resources) and you can only really tell by looking inside (how software gets bundled or malware/trojans can be added to legitimate installers) i use a program called universal extractor to upack the exe when turning programs into portable apps (i then repackage them using 7zip/winrar/inno/iexpress #iexpress comes with windows) using 7zip or winrar your making an sfx archive (self extracting) which contains the files necessary for extraction, so even of the system doesnt have a rar extractor a sfc archive will extract because it contains the components it needs to extract it self, most of these methods will extract to a tmp location and run the binary you choose and self clean on close. and that is one way to make portable exe apps x)
its also a convenient trick if you want to bundle install a bunch of apps that you use all the time into a single launcher (though not using the sfx method youd use inno which is more scriptable ans generates a gui that allows much more customization and builds the user interface for you and allows for adding licences and tos)
Windows PE format is a standard for exe files.
@odd quest yes it is "a standard" though when i say standard i mean every exe being the same having multipule standards and methods lacks consistency you cant look at the extension and make assumptions about its configuration based on the extension, in fact there are several "standards" for exe files which nullifies the concept of standard since it could be one of many 🙂 https://en.wikipedia.org/wiki/Comparison_of_executable_file_formats
This is a comparison of binary executable file formats which, once loaded by a suitable executable loader, can be directly executed by the CPU rather than being interpreted by software. In addition to the binary application code, the executables may contain headers and tables with relocation and fixup information as well as various kinds of meta...
The fact you can't just look at the extension is way more important.
File type on Linux is determined by magic bytes, not extension. Windows is just weird.
yes thats what i was trying to emphasize that you need to actually examine them 🙂
Pretty much all of the exe ones you linked there are deprecated/no longer relevant
well technically exe's them selvs are deprecated and being moved towards msix (replacing msi) according to microsoft but theyre still around as vendors still produce them so we deal with them as we find them.
MSI is installer, MSIX is a whole package
yes but if you read the original post i was discussing installers and packaging and not the binary and the whole purpose of the post was to highlight that there is a distinction (which i did not know until recently)
that and the point that an exe file isn't necessarily a binary or necessarily an installer or self-extracting archive but that you need to examine it, and highlight a few low level implication (such as bundling malware with original executable (binary)) 🙂
Aside from the fact that file extensions are unreliable, what do you mean by "an exe file isn't necessarily a binary"?
kk so you have program.exe which may be the actually launcher for the program named program or it could be and installer that relocates files to where they should be and then launches internally the program/program.exe so i guess launcher would be a more correct term because the exe does preform an action though not necessarily launch the program.
It's still a Windows binary, and it's going to be a PE format one
it may contain i windows binary, but itself may be a self extracting archive, a script, or a collection of windows "binaries" in installation format
The exe won't be. An MSI might be.
i disagree becuase creating a sfx archive creates an exe, though in reality its an sfx
which was my original point 🙂
https://en.wikipedia.org/wiki/Self-extracting_archive#:~:text=A self-extracting archive (SFX,be%20already%20installed%20on%20the - it's an executable program, a binary.
A self-extracting archive (SFX or SEA) is a computer executable program which contains compressed data in an archive file combined with machine-executable program instructions to extract this information on a compatible operating system and without the necessity for a suitable extractor to be already installed on the target computer. The executa...
yes thats what i had previously said in my original post,
So it is a binary?
yes but not the binary i had origonally thought it was my origonal assumption had been that lets go with ccleaner.exe, i had thought that ccleaner.exe was the binary for ccleaner however it may be the binary (that which gets loaded into memory and launched) but in fact it can also be a sfx binary (thought it shares the same name and extension) and it self extracts and installs then launches the ccleaner.exe (the one that gets loaded into memory and run as a program)
Ok so the name and extension for a binary might be lying to you and programs might do different things to what you thought? That's a trojan.
yes and not, it may not be a trojan if its origonal intent is to install the program. my confusion lay in the assumption that the exe file denoted a program binary (launcher or installer) where the equivalent of each other and singular in nature. and that all exe's were just launchers, (if the program was not installed the launcher first installed the program)
ty btw 🙂 this kind of discussion help me shape and form and better articulate my understanding of the subject 🙂
it may also just be bloat ware instead of a trojan too as ccleaner.exe may also install programb.exe silently 🙂
@odd quest do you mind if i dm you a couple additional questions on other similar topics? 🙂
I'd rather they went in #infosec-general so everyone can learn and contribute
fair enought 🙂 thought they might be to narrow for that but wico 🙂
Hi can any one share this task files as a zip file Thanks Advance ! https://tryhackme.com/room/snort
HI
does anyone have beginner to advance red team recon process methdology and tools list?
mostly tools but :)
Red Teaming(Active Directory - Forest Trust Abuse) 7th Article
https://0xstarlight.github.io/posts/Active-Directory-Forest-Trust-Abuse/
the ired team notes are not my notes its the description given x) wanted to clairfy that
Interactive cheat sheet, containing a curated list of offensive security tools and their respective commands.
https://wadcoms.github.io/
@jagged tiger ⬆️
on it
thanks
Gave +1 Rep to @sturdy shell
@grizzled ore can i dm you a somewhat confidential question regarding your blog.
Yes sure
Does anyone have any good recommendations on resources for learning binexp? I have been struggling with ret2libc and hoping to find some basic binaries to practice with
Nightmare: https://guyinatuxedo.github.io/index.html
ir0nstone's notes: https://ir0nstone.gitbook.io/notes/
LiveOverflow: https://www.youtube.com/playlist?list=PLhixgUqwRTjxglIswKp9mpkfPNfHkzyeN
CryptoCat: https://www.youtube.com/playlist?list=PLHUKi1UlEgOIc07Rfk2Jgb5fZbxDPec94
I have personally found CryptoCat's series to make the most sense for me, but it does assume a prerequisite understanding of assembler and C, which is the most important part of any RE/binex skillset.
Awesome thanks for that! CryptoCat does look like a nice series, see how I go, ive done high level programming but yeh getting into assembly has been a bit of a challenge (done most of the beginner THM rooms for the subject)
ir0nstone's notes also look awesome, clean and simple straight to the point, my kinda thing 😛
🤓➡🦸 Pwn Zero To Hero is back!
📑 What will we be learning?
- Installing Pwntools ✅
- Automating exploits ✅
- Connecting Pwntools and GDB ✅
Check it out NOW!
https://youtu.be/9wepzpQhhio
Full Pwn Zero To Hero playlist: https://www.youtube.com/playlist?list=PLeSXUd883dhjmKkVXSRgI1nJEZUDzgLf_
Homework: https://github.com/PinkDraconian/PwnZeroToHero-0x05-labs
Nightmare: https://guyinatuxedo.github.io/
▶️ YouTube: https://www.youtube.com/c/PinkDraconian
🎁 Patreon: https://www.patreon.com/PinkDraconian
🐦 Twitter: https://twitter.c...
@craggy glade check the Nightmare link in abv video... Just went through it, haven't used it yet but looks very helpful for binexp
thaks added to my lab list :)
setting up a new simple site to host fun and useful scripts, configs, files, etc ... always open to suggestions 😄
https://f11snipe.sh/
f11snipe i found a really cool setup of something similar but im not sure how the built it 🙂 but it doesnt require curl it just downloads X) should have a look and if you know how let me know X) ahaha
https://inventory.raw.pm/tools.html
An inventory of tools and resources about CyberSecurity
its hosted on git hub but i didnt know you could do that from githubpages
just saw its gitlab not hub
Hi. Looking for recommendations for SEC+ cert prep resources. Thanks
I have used these two resources:
https://youtube.com/playlist?list=PLG49S3nxzAnkL2ulFS3132mOVKuzzBxA8
https://www.udemy.com/course/security-601-exams/
👍
How long is the prep time? Like 2 weeks?
https://inst.eecs.berkeley.edu/~cs161/fa08/papers/stack_smashing.pdf Mirror of the classic Phrack article
🤓➡🦸 Pwn Zero To Hero is back!
📑 Last week I gave you some homework. Did you solve these?
- A tour of x86 from CSAW ✅
- Strings from picoctf ✅
- Salty Spitoon by Helithumper ✅
- Beleaf from CSAW ✅
Check it out NOW! 👇
https://youtu.be/7LTNdASGFgU
Full Pwn Zero To Hero playlist: https://www.youtube.com/playlist?list=PLeSXUd883dhjmKkVXSRgI1nJEZUDzgLf_
Homework: https://github.com/PinkDraconian/PwnZeroToHero-0x05-labs
Nightmare: https://guyinatuxedo.github.io/
▶️ YouTube: https://www.youtube.com/c/PinkDraconian
🎁 Patreon: https://www.patreon.com/PinkDraconian
🐦 Twitter: https://twitter.co...
Curious if someone could talk to me about some networking stuff to help me better understand some things going on with subnetting
I know some basics
Watch PowerCert video on YT for subnetting
Then go to a video named Seven second subnetting to brush up on it
witch platform would you recommend use GhostWriter or Pwndoc?
Is there a room or can anyone suggest any resources out there covering environments and the PATH variable?
The Deja Vu room explains PATH exploitation
if you can reach the public net from whatever you're doing, nc stuff to termbin.com 9999 for ez pastebin
Hey, I made a python package to search the exploit database. Don't hesitate to use it and tell me if you like it !
https://pypi.org/project/pyxploitdb/
might be interesting for fuzzing
Gave +1 Rep to @balmy sun
Is it possible to use as a CLI?
It's just a package to use inside your code. Searchsploit already do that so it's no use doing it :/
True, I got excited cause searchsploit doesn’t work on my machine haha

Hey guys feel free to check out my E-learning website https://kaynology.ga/ I got two courses on there so far
hi
@trail bramble https://packetlife.net/library/cheat-sheets/
This is my first blog post regarding how i bypassed microsoft endpoint solutions during my first red teaming engagement
https://hackzzdogs.gitbook.io/how-we-bypassed-microsoft-security-products/red-team-blogs/bypassing-microsoft-endpoint-solutions-for-fun
Could someone tell me where i can find the ultimate wifi hacking guide, course or book?
Hello everyone! I'm on "Offensive Pentesting Path - Buffer Overflow Prep" Exploitation. It walks us through it step by step. But, I just don't understand what I'm doing & what this is supposed to do or good for? Any resources I can check out to help me understand?
https://glorykanes.notion.site/How-To-Have-a-Successful-Tech-Internship-c16fab982c1b47838bd37ee4b986619b i found this resource i think is helpful for everyone here who is having an internship
applies bc cybersecurity is tech
this is for ppl who are brand new to the tech industry job expreience i think
hey i just got interested in ethical hacking i wanted some sources so i can learn to start
especial deauthing for pranking a friends
You know that's illegal right?
oh
...
ok
thx for the info
but why wouldn't take the website down tho that sells deauthing wrist bands
and boards
Ask them
ok
ill email a senator
or some thing like that
ok
but still were is a good start for ethical hacking
Remember the word ethical, pranking your friends isn't ethical
yea i know it just one freind and he plays fortnite lol
That's still unethical
https://youtube.com/c/Nerdslesson
This professor looks really nice
This channel is about the art of computer science consist of educational contents from experts all around the world. We provide contents related to computer science field such as Mathematics, Machine Learning, IT security, System Administration, Deep learning, Data Science, Natural language processing and so on. All contents of this channel sole...
Are bundles like this legit? Always concerned when it states "at least". Sounds like the old days of buying cd's from Publisher Clearing House or other venues. https://www.humblebundle.com/books/python-no-starch-press-books

