#thm-community-media

1 messages · Page 10 of 1

quaint elm
#

I'm getting jealous of excusemewtf @olive sundial

#

Or... wait wait wait, it's time to get into the game

olive sundial
#

yeah

#

i'm in already

quaint elm
#

Saw you got one flag

olive sundial
#

i'll share the stuff i got

quaint elm
#

Sure do

olive sundial
#

not yet

quaint elm
#

You played previous year?

olive sundial
#

or it wasn't me

#

no

#

first time no warm up

quaint elm
#

Ah

#

Same

cobalt thicket
#

Gonna boot my VM up now

olive sundial
#

@cobalt thicket add me so i can add you to the group

cobalt thicket
#

done

olive sundial
#

@restive tartan @strange axle plz can we get a channel for metasploit challenge for us?

strange axle
#

Oh for like Metasploit's ctf?

#

@olive sundial

olive sundial
#

yes, please

#

It's currently @quaint elm @cobalt thicket @formal sparrow @young roost and me

strange axle
#

I can make a general chat

#

Or I can just invite you to my ctf team discord lol

graceful coral
#

one of us...one of us...one of us

strange axle
#

^

olive sundial
#

i haz access to the cool guys gang

strange axle
#

dammit robin, he left he discord previously lol

olive sundial
#

loool

#

@ people from the uk go to Pret in the next 30 minutes to get a free croissant. Just say to the cashier: wam bam funky jam

#

It’s Croissant O’Clock! Enjoy a Very Berry Croissant on us when you quote the password ‘Wham Bam Thank You Jam’ to our lovely team members between 3-4pm on Friday 31st.

lethal egret
#

If I did that at the Pret in Portsmouth, I'd like get wam bammed in the mouth

olive sundial
#

hahahaha

drowsy remnant
#

Good luck on that ctf

#

o7

graceful coral
#

hi

drowsy remnant
#

Hello there

graceful coral
#

HELLO EVERY ONE I AM NEW HERE COULD YOU PLS WALK ME THROUGH THIS SITE

olive sundial
#

Thanks @drowsy remnant

latent stirrup
#

Woowee this jack room got me running down all kinds of rabbit holes, the lack of first blood to user is making me feel chill though

#

Time to grab some beers and get stuck in

lethal egret
#

What difficulty is it rated at?

#

I can get behind some bs

latent stirrup
#

Red

#

Got that traffic light difficulty

lethal egret
#

Oooo pog

#

Hard box

#

I’m down

tropic lava
#

Welp, brexit happened

proper iris
#

@tropic lava It's been a slow day, something was bound to happen 😛

lethal egret
#

Can't wait to find out what I'm currently doing for jack is a rabbit hole

eternal anvil
#

I was doing a CTF in other platform, can I ask for help here?

restive tartan
#

@lethal egret I might raise the extra points for this

#

Jack hasn't been solved yet :)

#

@eternal anvil I guess.

eternal anvil
lethal egret
#

I’ve gone down enough rabbit holes to rename myself to Alice

restive tartan
#

ahaha

#

Wanna hint?

lethal egret
#

Has anyone got bloods yet?

latent stirrup
#

woo wee

#

Got user on jack

#

About to get that root boi

strange axle
tropic lava
#

dark using offtopic as a notepad

#

oh nope, it's a receipt

strange axle
#

Oh look at it

#

I'm posting it because it's hilarious

tropic lava
#

Fun fact

#

Ikea LACK tables have the exact leg spacing for 19" rack equipment

#

See: Lackrack

strange axle
#

Yee, I'd build one of those but I'm getting a massive full rack in a few days

cobalt thicket
#

rack mount your wow server in a lack

tropic lava
#

@cobalt thicket The blade enclosure that'd you need is too high

latent stirrup
#

Jack rooted

restive tartan
#

Yess SuitGuy!

latent stirrup
#

That one was pretty spicy

restive tartan
#

Hohooooo

#

Is it Badge worthy?

latent stirrup
#

Ye i'd say so

#

And not just because I want more badges...

restive tartan
#

Your profile is looking rather good 🙂

latent stirrup
#

Oh hell yeah

#

You'll enjoy this cheeky little image:

restive tartan
#

Wait woott

#

What did you do on that day?

#

I think something is very wrong

latent stirrup
#

No idea 😂

restive tartan
#

Unless you spammed "answer"

#

All those question attempts

#

But still 15k

#

cray, Ill look into that

latent stirrup
#

Probarbly me doing something funky testing the site

restive tartan
#

Yeah aha

latent stirrup
#

Which reminds me, are site vhosts in scope of bounty?

restive tartan
#

Sure

tropic lava
#

@strange axle oof JQuery

strange axle
#

lmao

meager compass
#

oof my hero

#

good anime

#

just dont look at the fanbase

#

or you'll see underaged Dekus on leashes being tortured by underage Himiko Togas

#

especially don't let tiktok know you like my hero too

strange axle
#

Oh lord I'm not touching the fandom lol

cobalt thicket
lethal egret
#

@graceful coral

graceful coral
#

noots on @lethal egret

graceful coral
#

COME ON 49ERS

#

MY PHYSICS GRADE IS DEPENDENT ON UR SUCCESS

lethal egret
#

D:

tropic lava
#

@graceful coral but why tho

graceful coral
#

@tropic lava Our teacher said if we pick the winning team we get extra credit

#

I was legit the only person

tropic lava
#

Weird but ok

graceful coral
#

Who picked the 49ers

tropic lava
#

...bad decision?

graceful coral
#

Its 10-10 rn

#

So

#

Theres hope

#

SHIT

#

Aight this is fine

lethal egret
#

As a rams fan idc who wins this year 😂

#

Though I’m not a fan of 49ers so

graceful coral
#

I can never talk shit again

#

@lethal egret my physics grade is depressed

lethal egret
#

oh damn

#

I'm so glad I started watching in the 3rd

graceful coral
#

It was going so well

lethal egret
#

Then a dodgy touchdown was allowed

graceful coral
#

I texted my physics teacher and was like

#

Is it to late to change my bet

#

Not 10 seconds later she responded "yes"

lethal egret
#

Note to self, take better god damn notes

#

I just had a heart attack having to rehack my coursework vm because I didn't take notes to write my report 😂

stoic barn
#

@urban crescent thanks

restive tartan
#

@lethal egret ahaha LOL

lethal egret
#

Also lost my ascinema recording so not a clue what was ran

graceful coral
#

@urban crescent send nana

urban crescent
graceful coral
#

yeeee

drowsy remnant
#

Thought it was a butt

graceful coral
#

people out here using cherry tree and im just like

#
  • notes.txt noises *
lethal egret
#

🤔

meager compass
#

you guys are using notes?

graceful coral
#

lol

#

Fr @meager compass

cobalt thicket
tropic lava
#

lol

meager compass
#

Nah most of my DMs are my ctf team making like 10 chats a day to discuss the same thing as in all the other chats but this time it's a new name / picture of the chat

#

They made like 8 yesterday about lock picking lmao

#

And 2 more today I think

cobalt thicket
tropic lava
#

May or may not have forgotten to get back to them

cobalt thicket
tropic lava
#

Most people are courteous here

cobalt thicket
#

That was a fun one kekw

cobalt thicket
olive sundial
#

I still need to sort the metadata and cookies etc

meager compass
#

Sure @olive sundial

#
  1. The absolute most important thing for not only search engine optimisation but also being an actually nice person is good alt text
#

alt="Initial"

#

not good alt text 🙂

#

if you can, instead of screenshots, maybe copy / paste the terminal stuff?

#

that way, a screenreader can easily read it (and so can Google)

#

Actually, heres a neat tip. Use Firefox?

#

Go into reader mode (it looks like a book) and then click on "text to speech", you'll see your blog exactly how Google or someone with a screen reader will see it 🙂

#

Your blog should have a favicon

olive sundial
#

oh, okay, gotcha

#

i'll try my best to do that

#

let me see what i can come up with

#

thanks a lot for looking over it @meager compass !!

#

in regards to terminal you mean format it as code?

#

I also think i missed redirecting to the custom 404

coral narwhal
#

Damn I didn't feel like solving challenges for like a month I think my subscription is gone in a few days and I only used it 2 days

#

I guess planning isn't for me

lethal egret
graceful coral
lethal egret
#

we got ourselves a box lads

cobalt thicket
#

I think (knock on wood) that Pepega is releasing on Friday

lethal egret
#

@cobalt thicket

#

?

cobalt thicket
#

My latest room

lethal egret
#

o Pog

cobalt thicket
#

Currently under review

lethal egret
#

chall?

#

or walkthrough

cobalt thicket
#

Chall

lethal egret
#

sweet

keen girder
#

question for anyone with knowledge, i got a yagi wifi antenna and some old cisco switches and routers, i would like to create a subnet with a hackable webcam... any suggestions?

tropic lava
#

@keen girder ...webcam or cctv?

keen girder
#

i didn't consider cctv that would be very cool @tropic lava

tropic lava
#

Do you mean IP camera or like, pc connected webcam?

keen girder
#

i think pc connect webcam require writing a virus so probably a ip cam

cobalt thicket
#

monkaS

keen girder
#

@cobalt thicket hilarious i literally thought that was a brand and happly googled it ... my oof

tropic lava
#

@keen girder you can use msf for webcams

#

For PC webcams.

#

But they're hard to emulate with aws

#

IP cameras might be possible with some firmware emulation but it's a pain

cobalt thicket
#

It's also a little sketchy

keen girder
#

i know eventually they were planning on making a physical section for networks and pivoting and such ... pretty please add a webcam to the plans @tropic lava

tropic lava
#

I don't get influence

#

And it's not physical

#

It's just connected aws machines

keen girder
#

oh

#

i don't see this a sketchy, if you have plans to actually go after the whitehatting skillset it wouldn't be unreasonable to consider the closed system vulnerability, same as studying lockpicking for physical security

tropic lava
#

My pc parts arrive tomorrow, party time

empty sorrel
#

you got a pcpartpicker?

tropic lava
#

Sticking with my GTX 980

#

Different SSD actually but yep

empty sorrel
#

Yea I just built a computer with that cpu

#

works really well

#

Although it really needs a good heat sync to squeeze out that performance

graceful coral
#

2600 words

#

1400 more to go

olive sundial
#

is eJPT worth doing? it's not too pricy, so I was thinking if it's going to be a good primer for my other certs I am going for? Any advice is welcomed

gritty osprey
#

Depends how much knowledge you have

olive sundial
#

hmm, not sure on my level of knowledge to be fair

#

i think i'm still a newbie

gritty osprey
#

Tell me about yourself and experience and I'll tell you whether it's worth doing

olive sundial
#

4 years of IT including 5 months of InfoSec job, and 18 months on a CyberSecurity. Finished a few rooms on THM and a couple of @worldly lance 's boxes

olive sundial
#

@fast depot how did you find eJPT?

fast depot
#

Oh, mwell, it was easy for me

#

Took me ~4 hours to complete. That was because i was ovethinking some stuff. Lol

#

Normally would have taken me ~2 hours

#

You had 2 networks. You were already in one of them and you had to exploit other machines that had access to the 2nd

#

eJPT is for beginners & for moral boost (my opinion)

#

eCPPT was pretty easy too(no idea why, but most certs i took seemed easy. Lol)

#

And i’m considering going for eWAPTX now

#

Guess that doin htb,thm, overthewire, ctfs, going to conferences&attending live ctfs(htb style) helped me a lot tackling those exams

olive sundial
#

Makes sense, any advice you can possibly give me? I'm quite new into pen testing

fast depot
#

I’ve also started doing bug bounties. Started in january, learned a lot since on web app pentest tbh.

#

Hmm

#

Well, the first&most obvious. Be curios, break things, try to understand gow they work & also look for advice where you feel lost

olive sundial
#

i'm doing that, I just learned a lot on subdomain enumeration recently

fast depot
#
  1. Practice. A lot. And read stuff
#

Even though you might not understand it completely, after doing more practice you’ll get it

#
  1. Try finding something you really like and do that until u’re like a god. Haha
#

I’ve been doing a lot of network attacks, but not many webapps. Then... mwell, i’ve started doing bug bounties. Has days when i’d study for like 6-7-8hrs to sort some things out and understand how they work

#

And i also started to like web apps more than i did before xD

olive sundial
#

hmm, makes sense, i am still getting my head around the different topics

#

and finding where the problems are, but i keep myself up to date and constantly reading new topics and trying new things

fast depot
#
  1. You’ll get to a point where u feel u’re burning out. Everyone has been there
#

Just step back. Relax, take some days off and do something else u enjoy

olive sundial
#

Thank you for taking your time giving me your advice @fast depot. I sure do need to start getting better at one topic

#

i'm mostly googling when i'm not sure and sometimes i'm able to put together my own stuff

fast depot
#

Mwell, yeah, anyway, in the beginning try finding something you like and enjoy and get better at it. Experience all fields, see what you like, what you dislike, what you consider you understand better and then pick a topic

#

For example you go for web apps. There are a ton of vulns for web apps. Pick a few(sqli,xss, etc) and get better at those

#

Write me in private, i can detail more, but i don’t wanna “spam” the chan xD

olive sundial
#

Thank you for your time and answer ❤️ much appreciated

meager compass
#

What are your favourite computer viruses?

cobalt thicket
#

MEMZ /s

empty sorrel
#

DOS virus'

keen girder
#

anything ransomware, there is no stopping that thing and unless very careful you will encrypt your recovery drive as well

cobalt thicket
#

ones that 12 year olds write

empty sorrel
#

write

cobalt thicket
#
  • plagurize
keen girder
#

anyone know what the difference is between networking knowledge 101 and cisco networking ?

#

i got myself 3 cisco catalyist routers and 3 catalyst switches to play with

formal sparrow
#

@meager compass there's one we were told about last week in a lecture, just in passing. I'll try to look it out. Nice easy piece of ransomware that cleverly hid the decryption key in plaintext on the file system. Might be good for this project.

#

Having said which, that just gave me a room idea of my own.

empty sorrel
#

👀

urban crescent
#

@keen girder so cisco networking typically dives off the deep end into configuring devices and utilizing protocols like: lldp,cdp,vlans/inter vlan routing, rip, ospf, is-is, eigrp, bgp, stp, etherchannel, hsrp, vrrp, ACLs ACEs, switchport security, etc

#

eventually ill make a sort of cisco based networking series of rooms

cobalt thicket
#

nerd

urban crescent
#

non ccna peasent @cobalt thicket

keen girder
#

@urban crescent is there a problem with focusing on one networking company when i worked for mcafee everything was all palto alto

cobalt thicket
#

you know I'd have it if I could afford it boi

urban crescent
#

Yes

#

you should learn what you work with

#

however:
A person with a CCNA will get a job working with Juniper equipment
A person with a JNCIA wont get a job working with Cisco equipment

keen girder
#

dam life is hard stupid networking disciplines

urban crescent
#

Cisco certifications are a lot more marketable because they make up 70% of networking equipment

keen girder
#

i always though reverse engineering would be the hardest subject but i was wrong

urban crescent
#

Networking isnt bad

#

relatively easy actually. its just when you do dive off the deepend and go into the concentrations

keen girder
#

thats cool

#

realiving actually

urban crescent
#

basic routing and switching skills are pretty easy

meager compass
#

I have a fake CCNA

#

which is really just an MTA in networking

urban crescent
#

kek

keen girder
#

cisco cyber ops is what caught my eye

#

no need for the ccna first even just straight soc skills cisco style

#

got the two books but now i need to learn to how to open a offline book ... stupid offline tablet

crude agate
#

Not sure if people have seen this

#

But just discovered this today

#

AND GOT VERY EXCITED

#

Basically running a shell on your Android phone without rooting it

cobalt thicket
#

just wait until you find out about nethunter

crude agate
#

OH MY GOD

empty sorrel
#

Yea I got termux on my google phone. Even though its rooted, it sure is helpful

urban crescent
#

@keen girder CyOps was really meh imo.

#

it might help get a job, but the tools they teach are incredibly common sense.
SECFND basically being a vocab test, SECOPS being more hands on practical work

keen girder
#

i think most certs are theory, to be honest, but as someone with no certs and a generic B.S in Info tech... gotta start somewhere

#

offsec oscp would be a dream but i dont think that realistic

#

by itself anyways

#

@restive tartan also why are you the only admin with a blue nic, when ashu and darkstar are red ?

#

every group has its own color your is the only one separated out... this hurts my ocd

cobalt thicket
#

Owner colour is blue

keen girder
#

nope ashu has the owner role as well

cobalt thicket
#

admin has priority over Owner has priority over Admin

keen girder
#

what i'm trying to say is .... it buurrrrnnnss us

#

and now @cobalt thicket thanks to you, i need to understand the difference between the roles admin & Admin... that some linux naming scheme crap, if i ever saw it.

cobalt thicket
#

probably different perms

graceful coral
#

Admin admin = new Admin

meager compass
#

@strange axle how many members in discord?

strange axle
#

2,239

#

OH

#

the admin roles are because Skidy is the proper owner of the discord

#

tbh we need to get to just either the proper blue admin role or solely red/orange

#

I prefer the blue one

#

actually

#

I'll fix this

#

wait shit I need Skidy for things

#

ah I'll pester him later

keen girder
#

thank you so much darkstar

strange axle
#

I'll just have the color of this admin role changed to blue to match

keen girder
#

i was going to suggest creating a role of "big cheese" but your idea works

strange axle
#

Hmm maybe

#

I know Skidy prefers us all three with the same role

#

Technically we're all equal in power just as the three staff members in that way

keen girder
#

OH lol that one was a joke

strange axle
#

lmao

keen girder
#

forgot the /s

meager compass
#

The 3 Great Dictators, 1932 (Colourised)

echo marlin
graceful coral
#

lmaooooooooooooooooooooooooooo

pale cove
meager compass
tropic lava
#

...i remember that

#

Wow

urban crescent
#

alright kids

#

since I've finished up all my cert goals

#

i uh

#

need some more to work on lmao

graceful coral
#

@olive sundial that is adorable

olive sundial
#

Tyyy

lethal egret
#

Holy crap driving in this weather is disgusting

#

Note to self. Never decide to drive 200 miles to visit family when they forecast the aftermath of a hurricane to hit

graceful coral
#

@lethal egret oh no

lethal egret
#

Literally just had to go down a motorway when you can’t see the lines and could only just make out the car in front

#

Time for a beer and some hacking I think

graceful coral
#

Don't die

lethal egret
#

Just got back home now

#

Currently being held hostage in my car as I had to park 5 minutes away

keen girder
#

also fully intend to rerouting all HTTP network traffic to RickRoll

tropic lava
#

Don't redirect

#

Inject content

keen girder
#

don't know how but sounds fun

echo marlin
graceful coral
tropic lava
graceful coral
#

Library of babel but for computer programs

#

Just bruteforce exploit-dev work

echo marlin
#

question

#

I need to get a locatoin from a teamviewer session...

#

(Legit, have proof it is legal to do so)

#

but server 2019 doesn't have location services

#

his BSSID does not show on wigle

#

tried majority of the mac addresses on his network

#

he said if I can get his location he'd buy me a pint so

formal sparrow
#

@echo marlin If the server is owned by a business, you could try looking up the address in whichever business registry the country in question keeps?
Maybe go the OSINT route, rather than the technical route.

echo marlin
#

Nope, personal server!

#

tried all web history too

#

no decent cached credentials

#

nothing interesting in credential manager

tropic lava
#

@echo marlin ...you know bssid isn't the mac address on the network

#

It's the access point MAC

echo marlin
#

I know

#

Tried each MAC of the different SSIDs

olive sundial
#

is it just me or this stupid vm is stuck for the last 2 hours on the same step:

gritty osprey
#

deffo broke haha

olive sundial
#

still going strong lol

#

i'll just install a plain 2020.1 and add the beef afterwards

restive tartan
olive sundial
#

@restive tartan i've been using that one, i just want one for my home labs 🙂

#

it works really well

#

no clunkyness

meager compass
#

I just watched this tiktok of this guy trying to dox someone (obviously a skid), but what really interested me was he was trying to ARP poison a local address (instead of the players from Siege like he said, unless they were on the same LAN? Then why try to dox at all? Surely you know who's on your home wifi) and the comments were all like "did you just show your own IP address" but his address was 192.168.0.1 so its like........................................................................................ i'm so done with tiktok

tropic lava
#

Tiktok.

#

Dox or dos?

meager compass
#

Doxxing Siege players that flamed him. Which, obviously requires ARP poisoning your local network

tropic lava
#

🤔

meager compass
#

It's got 80k likes, and it's publicly viewable. I'll post it here for the memes

tropic lava
#

Using windows
Doesn't remove search bar, task view and cortana icons

meager compass
#

Here are some of my favourite comments

#

"Just use Burpsuite and Traceroute"

#

Burpsuite.... for doxing?

tropic lava
#

I thought cain and abel was password cracking?

#

That says cain

meager compass
#

"Did.... you just post your IP address? ☠️" - 107 likes

#

It is, but it has a feature where you can observe network traffic.... Like wireshark.....

tropic lava
#

Activating l33t hax0r mode on 0.0.0.0

meager compass
#

"as one who majored in computer science lol even i stopped using cane & abel 15 years ago, use linux"

#

computer science major thinks cane & abel is an operating system ok.

#

"I shut down my school wifi with cane & abel once lololol"

#

"do you use wire shark?"

#

"use void botnet for real dox"

#

use a botnet.... to dox?

tropic lava
#

This wind, damn

#

Shaking my walls here

meager compass
#

Hey look, it's me

tropic lava
#

It you

cobalt thicket
#

Fun fact, cain and abel is the only software I know that has a bsod button on Windows 10

lethal egret
#

Wait for real?

cobalt thicket
#

Yeah

#

Some of the features don't work anymore

#

BSODs the host

meager compass
#

"Hahahah hacker but works with VM machines 😂😂😂 nice botnet tho"

#

i'm pretty sure..... most hackers work with vms.....

#

oh wow i've been doing this for 40 mins

graceful coral
#

imagine learning how to hack from tiktok

cobalt thicket
#

you've just gave me an idea

#

ez money 👏 /s

lethal egret
graceful coral
cobalt thicket
#
Please note that this is a course and fees will be involved.
#

great job that

graceful coral
#

sees excellent earning potential

lethal egret
graceful coral
#

:omegalul:

cobalt thicket
#

ngl I really need a course for Sec+

lethal egret
#

At least they don't recommend CEH as a first cert

cobalt thicket
#

The person that sent this is the same person that told me to apply to MI5 and MI6

graceful coral
#

Actually the first cert you should get is the eJPT

cobalt thicket
#

It's also in pissing london

lethal egret
#

London aint bad

cobalt thicket
#

I also can't even apply for it

#

or talk about it

#

oops

lethal egret
#

pog

#

Have you signed an nda

#

if not

#

they can't really do shit

cobalt thicket
#

cant wait to apply for unis again in clearing

lethal egret
#

Did you not hear back from uop?

cobalt thicket
#

Not yet

lethal egret
#

also unis are gunna be rough as you're not quite 18

cobalt thicket
#

For one I will be

lethal egret
#

tbh I think I heard back from Ports around March

cobalt thicket
#

Because Nov start date

lethal egret
#

Nov start date? In uni

#

witchcraft

cobalt thicket
#

Hallam is half an offer

#

They gave me a place for next year

#

but I bet it'll need A levels

lethal egret
#

Most of them probably will

#

Ports are just money sluts, if they smell a chance to make money they'll accept anyone

cobalt thicket
#

perfect

#

I just need a money making scheme now

lethal egret
#

Don't we all

#

Need to find a hustle to fund oscp

graceful coral
#

Did I hear money making scheme

lethal egret
#

time to set up a tryhackme rival

graceful coral
#

@lethal egret we can call it hacktheme

lethal egret
#

😂

#

tryhackwire

graceful coral
#

Or tryhackbox

cobalt thicket
#

hacktheme

graceful coral
#

skidy can you help us fund our startup

cobalt thicket
#

you think they make profit? kekw

graceful coral
#

They break even

#

They can go into the negatives to help us out :)

lethal egret
#

too many free users

cobalt thicket
#

the man himself said it

graceful coral
#

Hey skidy <3

restive tartan
#

yo yo

lethal egret
#

inb4 massive restructure q3 2020

graceful coral
#

Inb4 hackthebox buys thm

cobalt thicket
#

pls no

graceful coral
#

inb4 thm buys hackthebox

restive tartan
#

So, (as companies house will say in the future), we do profit

#

But almost all of it goes on content creation, stands at conferences, remote-work, hosting fees, god daymn AWS bills, prizes etc..

graceful coral
#

And we love you for it @restive tartan

restive tartan
#

Aha ❤️

lethal egret
#

Do you see a time in the future where the platform would move away from AWS?

restive tartan
#

Thanks

#

Oh gooooddd no

#

Thats our main advantage

#

Our fees are way way smaller than HTB & other platforms

lethal egret
#

Really?

graceful coral
#

Really

restive tartan
#

Hell yeah

#

Thats why OSCP are moving to AWS now too

graceful coral
#

Even with anyone just being able to spin up whenever they want

lethal egret
#

I just assumed because htb host their content on single ip rather than allowing each user their own instance would make it more cost efficient

cobalt thicket
#

HTB is instance based now too isn't it?

restive tartan
#

(I don't know their exact setup obvs) but they use ESXI, not cheap to scape or maintain

graceful coral
#

For their premium users

lethal egret
#

VIp are allowed their own instance unless one is already active

#

then they can take ownership of that instance

restive tartan
#

^^

lethal egret
#

It's a nice setup

restive tartan
#

Its aigh't

lethal egret
#

It feels fairly clunky tho

graceful coral
#

skidy whispers mine is better tho

restive tartan
#

aha, both are great.

cobalt thicket
restive tartan
#

We have some stuff this year that will make us different

cobalt thicket
#

HTB is also a multi million dollar entity

restive tartan
#

With their £1.3m investment

#

yup

#

They got some serious firing power

graceful coral
#

HTB buys THM

restive tartan
#

But also now has targets & investors to please

cobalt thicket
#

wouldn't surprise me but pls no

lethal egret
#

I thought I imagined that they went through an investment wave

#

clearly not

restive tartan
#

Immersive got $40m

graceful coral
#

Damn

cobalt thicket
#

Holy fuck what

#

You have to pay so much for Immersive tho

restive tartan
#

Their focused on enterprises

graceful coral
#

Makes sense

restive tartan
#

But to conclude, HTB is a good platform, and so is THM.

#

Both same vision - upskilling in Cybersec

#

Doing it at different levels, for different audiences.

#

Also going back, I was thinking of limiting free users

#

If someone is already in a room, they share (up to 5 ppl), if noone has a deployed instance, then they can be the first to deploy it

#

Obvs subs will get their own

lethal egret
#

Sounds similar to my suggestion but with a nice twist

#

could see it working

restive tartan
#

Yeah seems like so much effort for such a little payoff

#

Because cloud fees are not that bad, I may as well foot the bill for free users 🙂

lethal egret
#

Give yourself that outstanding user badge 😄

restive tartan
#

Awh aha, ty ty

#

Fremium works

#

also, whilst in convo, you know the networks that were being released as a course?

#

I was thinking of releasing a seperate network just for a challenge, no info at all, just flag submissions

lethal egret
#

Similar to Jet and endgame?

restive tartan
#

Sorta I guess

lethal egret
#

I really like that idea, would appeal to people advancing from the beginner content as well

#

would give users a challenge of enumerating an actual network

restive tartan
#

yeah for sure

#

I also wanted to make it so you can randomally pair with someone also wanting to do a challenge, and you're against each other to complete it

#

Like a "live wargames"

cobalt thicket
#

HOLY POG

#

I NEED THIS

#

THM ESPORTS

restive tartan
#

omg

#

Yeah

#

aha

cobalt thicket
#

MY CALLING

restive tartan
#

Just an idea

lethal egret
#

Do it

#

Dan I challenge you

cobalt thicket
#

bring it boi

lethal egret
#

I think I already lost

#

I'm just a scrub

cobalt thicket
#

nah

#

legit though

#

Can't wait for that

#

Attack Defense live head to heads would be pog too

restive tartan
#

Wont be planned out for a while tbh

#

Networks first.

#

Its awesome to see ppl excited about security stuff tho

#

Gamification on security is such a cool thing

lethal egret
#

Bruh it isn't security we're excited for

#

it's the development of this platform

#

Legit seeing how far it's come already and where it's going is miles more exciting

graceful coral
#

Oooo

restive tartan
#

Ey, amazing thanks Optional - appreciate it 🙂

empty sorrel
cobalt thicket
#

I have so many ideas circulating my head for the head to head stuff

restive tartan
graceful coral
pale cove
#

i wonder the price of a 1.5TB Mac

#

probably like $5k

cobalt thicket
#

I don't think you can even get a base model for that much

lethal egret
#

$5k?

#

With how much apple inflate prices

#

more like $500k

graceful coral
#

:omegalul:

pale cove
#

oh damn

empty sorrel
#

hey mum can I get a new computer for school?

pale cove
#

get a job

graceful coral
pseudo escarp
olive sundial
tropic lava
#

Yea/Nay.

olive sundial
#

+1

meager compass
#

Should I install BlackArch as my main OS?

cobalt thicket
#

I'd just go pure arch with Black Arch repos

#

loving the name change btw

tropic lava
cobalt thicket
#

id buy it

tropic lava
#

My motherboard has rgb

#

I set it to a warm white and left it

cobalt thicket
#

My mobo RGB is just stupid

meager compass
#

@cobalt thicket never installed arch before lmaooo lets go

#

my case supports rgb and has rgb fans, my mobo doesnt support rgb though

#

so i dont actually have rgb....

tropic lava
#

I have an RGB controller spare

#

Like a cheap one

#

Molex powered, has buttons

cobalt thicket
#

gl lmao

#

you're gonna need it

tropic lava
#

I want rid of it

#

I don't use it, it came with the case when I was given it

meager compass
#

@cobalt thicket im gonna try to install it in a vm before i just overwrite windows and try lmao

tropic lava
#

Swap out your drive

#

Keep your windows install in case

meager compass
#

ehhhh

#

i have almost nothing on windows

#

so not a major loss

olive sundial
#

take a backup of your 80 GB homework folder on your desktop

meager compass
#

80gb

#

Not called the D drive for no reason aniguns

restive tartan
#

you think you got problems

cobalt thicket
#

new league acc

#

time to spam arurf for 8 levels

#

finally in my actual region

#

I live my life on the edge

lethal egret
#

I’ve never felt so unsettled before

tropic lava
#

Oh god

meager compass
#

So far arch is going great. I can't ping anything with ethernet

pseudo escarp
#

@olive sundial, there are a few questions like that haha

olive sundial
#

@pseudo escarp I knowww, some of the older rooms might need to be reviewed 😛

pseudo escarp
#

Probably

meager compass
#

Okay I've broken everything and now the only working technology I own is my phone

cerulean tusk
#

anyone who is good at LEX coding?

#

need a little help!

urban crescent
#

@meager compass D for Delete SataniaDabiru SataniaDabiru SataniaDabiru

cobalt thicket
#

did you follow the arch wiki

young roost
#

@cobalt thicket , that screenshot hurt my OCD so bad

meager compass
#

did you follow the arch wiki
@cobalt thicket no I followed some shitty tutorial which was outdated and broke everything 😂😂😂😂😂

tropic lava
#

arch irl

cobalt thicket
#

I managed to kill explorer whilst playing league

#

like

#

Windows Explorer

#

the taskbar and stuff

#

desktop

#

all gone

tropic lava
#

I've been invited to amsterdam

#

Student trip with some friends

cobalt thicket
#

am livid

#

OSCP is more expensive now

#

there goes my hopes for saving for it within 2 months

cerulean tusk
#

anyone having experience with using Regular Expressions in C language?

#

@olive sundial ?

olive sundial
#

I'm shite at regex

lethal egret
#

@cobalt thicket actually crying now, thanks

graceful coral
#

You could use c++ regex @cerulean tusk

cobalt thicket
#

Me too

#

That's like an extra month of work

#

Djgstshmrslystsuaeylaeyla

tropic lava
#

Welp I'm going to Amsterdam

#

Let's go lads

olive sundial
#

I'm going to Brighton mate

#

may #Corona not be with me

tropic lava
#

Good luck

olive sundial
#

anyone around Brighton that is a little bit better informed than the news?

tropic lava
#

Are you a brit?

olive sundial
#

nah bruv, i'm a foreigner as you can get

#

can spit some proper dope puns and dad jokes

#

I can make Sahara seem wet

#

why you asking @tropic lava

tropic lava
#

Bunch of us are south coast

olive sundial
#

I'll be there from friday evening til sunday afternoon

#

so if anyone wants to meet up and share a pint or a coffee hit me up 😛

tropic lava
#

Haha

#

If it wasn't coronavirus infected and a decent bus/train journey away, I might

olive sundial
#

anyway, i'm not sure where about you leave, i assume portsmouth or however it's called

tropic lava
#

Bunch of us are here. My username leads to so much doxxing

lethal egret
#

^

#

If it wasn't for work and girlfriend I'd happily drive over to Brighton

#

Not that bad a drive tbh

echo marlin
cerulean tusk
#

@graceful coral

#

are you good with RegeX?

#

I need a little help!

echo marlin
#

Just bought a can

graceful coral
#

@cerulean tusk I know perl regex

#

I may be able to help

lethal egret
#

yeah that punch one is pretty good

pale cove
#

@echo marlin have you tried mango one?

lethal egret
#

not quite the mango loco one tho

pale cove
#

it's so good

pseudo escarp
#

@lucid gate, what do you need help with specifically?

#

Feel free to DM, will try to help

echo marlin
#

yassss

#

I love MANGO LOCO

#

My fav one

#

and the pink one.. Can't remember the name

#

something punch

#

pipeline

#

that's it

meager compass
#

I am still trying. I will master arch one way or another

pale cove
#

Yesss, pink is also really good

#

but they are expensive tho

lucid gate
#

freeHL ><

meager compass
#

It works

#

I have done it

olive sundial
#

@tropic lava I'll drop a message when I'm down in Portsmouth!

tropic lava
#

haha lol

#

If I'm around

olive sundial
#

Might be after it chills down with Corona ><

#

Heard something about a uni in Brighton being infected

tropic lava
#

A GP was

olive sundial
#

Also a uni student as far as I've heard

#

Someone at Sussex University was picked up this week

#

But I'm not 100% sure as i haven't seen it

lethal egret
#

Some say there may be a new box submitted today. But first, booze and food

restive tartan
#

I dont think there is a walkthrough for today? Friday challenge room yes

#

Unless @crude agate reviews a room?

#

We have a few lined up

lethal egret
#

@restive tartan what ya on about my guy? I just meant the submission of breached for review

restive tartan
#

Oh right, we originally said Tuesday's we would release a walkthrough box

lethal egret
#

Oooh

restive tartan
#

But stopped it as we have challenge rooms

#

Aha my b

lethal egret
#

I can always do a fajita walkthrough 😂

restive tartan
#

aha lol, I need cooking help

#

Chicken and Chips is killing me

lethal egret
#

I think that was my first year diet

#

It’s evolved to chicken and bread now

graceful coral
#

Look at mr fancy pants buying bread

uncut saffron
#

Lmao

lethal egret
#

😂

uncut saffron
#

I get yelled at by my friend whenever I don't cook, because I can actually cook decently
But.. you know.. efforts

#

I usually go grab fries and nuggets for lunch at uni

tropic lava
#

Chicken and bread? Expensive

#

Pork cheap

lethal egret
#

chicken expensive?!

#

Literally just buy a kilo bag frozen for like £3 at lidl

#

bread buy at the end of the day at a store when it's reduced

uncut saffron
#

Lidl

#

Where I live, every Lidl has a bakery

#

And its like

#

Really cheap

lethal egret
#

oh god yeah same

#

the bakery literally gives me life

uncut saffron
#

Its

tropic lava
#

Lidl bakery is ❤️

uncut saffron
#

Amazing for breakfasts

#

Or quick lunch

#

They do salty stuff too

#

Like bread and cheese or whatever

tropic lava
#

Well now

lethal egret
#

if I drive into uni I'll usually hit the bakery when I finish

#

can make some hella good sandwiches with their baguettes

uncut saffron
#

I wouldnt buy their baguettes

#

Bcs they are sacred to me

#

So I'd rather get bread from real bakeries

lethal egret
#

I mean when they hvae just been cooked

#

they are so good

uncut saffron
#

But the donuts for 0.40€ is good

#

Oh well, im out, see ya guys! Good night :)

tropic lava
#

see ya

#

happy midnight

uncut saffron
#

Thanks!

graceful coral
#

@lethal egret buy me sandwiches if im ever in portsmouth <3

#

Lol

lethal egret
#

I'd be worried if you were ever in Portsmouth

#

There's really nothing here

tropic lava
#

Will buy beer

cobalt thicket
#

THM Networks waiting room ---> cri

tropic lava
#

Currently writing a multithreaded exploit for example code for my room

lethal egret
cobalt thicket
#

I love getting disconnected in the middle of a game

#

back to EUNE it is I guess

lethal egret
#

oh shit yeah

#

Wednesday cut off

#

big sad

#

Though they usually come back up around 5:30

cobalt thicket
#

I've never had that happen to me before

lethal egret
#

Weekly patch updates

#

always come through Wednesday at 4am

#

ish

cobalt thicket
#

is this gonna be the patch where soraka gets gutted

lethal egret
#

Maybe

cobalt thicket
#

massacre

tropic lava
#

Exploits written

#

The multithreaded version is much nicer

#

Except it kills the server when used on a VM...

#

So yeah, I DoS'd my own room with this scanner

#

I actually think it's a RAM limit then

lethal egret
#

Big sad. Just woke up

restive tartan
#

I am writing a "Getting startd in CyberSecurity" guide for complete n00bs

#

Am I missing anything?

lethal egret
#

Looks good

tropic lava
#

@restive tartan Security areas.

#

Not area's

restive tartan
tropic lava
#

Gotta get that grammar

restive tartan
#

Yea, not my strong point

#

As you've probably noticed around the platform rip

tropic lava
#

It looks interesting

lethal egret
#

Mans a quality developer, who needs grammar

restive tartan
#

So trwue

#

Ill get a few of you to read through and fully grill me once it have the first draft (if you're interested that is)

lethal egret
#

Sure why not

tropic lava
#

I can proofread

restive tartan
#

ty both of you

tropic lava
#

Need to finish off my box really. Hopefully by Friday evening

restive tartan
#

Ill send it to Savage too

#

Get him to grill read it

lethal egret
#

Oh lord that may will rip anything apart

#

I’m waiting for him to rip my dissertation proposal apart

pseudo escarp
#

@lethal egret, already have a disso proposal?

lethal egret
#

I have four main ideas that I wanna explore before a final proposal

pseudo escarp
#

Ah nice

lethal egret
#

But yeah kinda

#

Have to speak to Nick, Gareth and Tobi

pseudo escarp
#

I have just looked at the final year moodle page, seems decent and plenty of time to perfect ideas

lethal egret
#

For sure, quite a few people were left off the list too

#

Unless it’s been updated recently

pseudo escarp
#

Not too sure, hopefully Claudia updates it every so often with lecturers and project ideas

lethal egret
#

Best thing to do is find a topic area and approach lecturers who align with that. I found that they have a bunch of ideas ready to go

restive tartan
#

My final year project

#

Is

#

going to be shown in the

#

project day

#

at uni

#

You guys should come along and say hi

lethal egret
#

Hey, here’s tryhackme?

restive tartan
#

lol

#

ahaha

#

Nick legit said I could use TryHackMe

#

But I said nah

lethal egret
#

I’ll come along for sure. Always some really good content on show

restive tartan
#

So I did TryHackMe "networks" instead

lethal egret
#

Wait really? That gives me some really good feelings about my main idea

restive tartan
#

There are some seriously awesome projects this year

#

A few of my mates have smashed it outta the park

formal sparrow
#

Still can't believe you're still at uni, @restive tartan
Which one is it? Might be worth a train ride south of the border

restive tartan
#

That are also showcasing

lethal egret
#

Kinda wanna create a cloud based malware analysis platform that’s entirely dockerised

#

But not entirely sure on any of the logistical aspects

pseudo escarp
#

@restive tartan, would be great to see what you're working on, when is the showcase? If I can, I'll pop down :)

restive tartan
#

March 18th (I think)

pseudo escarp
#

Y'all are too smort

formal sparrow
#

I've just had a look at trains. Eight and a half hours with a fast one (if it even runs...) and £123 with a railcard. Amazing as it will no doubt be, I reckon I'm going to have to give it a miss 😢

pseudo escarp
#

@formal sparrow ouch

formal iron
#

@lethal egret Literally something I'm working on with @meager compass I'm really really keen on bringing that topic onto THM

meager compass
#

Yeah I was gonna say, sounds really similar to what we're working on

#

we're building a malware analysis room, but the VM used for analysis is what we hope to share with other creators who also want to do malware rooms 🙂

formal iron
#

Yeah!

lethal egret
#

Oh snap that’s kinda creepy

formal iron
#

At the moment I'm working Linux -> Windows all cloud based, and Bee I think you're doing the more theory side of it at the moment right?

lethal egret
#

Love a bit of malware analysis since I got into it a few months back and it feels there’s so much missing for people starting out

formal iron
#

Yup exactly!

#

I've been studying it apart of a Module at Uni throughout the academic year, and it's a prevalent topic in my Dissertation + something I'm really keen on

#

Just bringing that onto the cloud? Bit of a challenge. Though learning through practical is really high-up on my todo list with this

lethal egret
#

Yeah for sure, that’s the hard part in my proposal is how I wanna approach the analysis part. Whether I allow manual analysis or whether I set it up to be automated

formal iron
#

Absolutely. I want to tailor the content so that the User learns how to do it

lethal egret
#

Ah that’s gunna be challenging for sure

formal iron
#

but with AWS being well ... AWS, doing all of the analysis stuff locally, and then just uploading the results of that to contents of the room for the User to apply their knowledge and use questions against

#

There's content on RE up on THM, but nothing quite specifically like Malware

#

Certainly a long-running project for me on here I think

empty sorrel
#

Anyone know how to set kali to use a system wide proxy? Like its works when I set it within the browser but not when I set it in the configuration

#

bruh

formal sparrow
#

What proxy are you trying to connect to?

empty sorrel
#

Host

formal sparrow
#

As in, localhost?

empty sorrel
#

the proxy is running on the host os and the kali vm is on a bridged adaptor

#

so in the theory setting the proxy on the vm would work

#

but it would seem only on the browser

formal sparrow
#

Ooh geez. Right, Ok.
On a bridged adapter you'll be aware that Kali is connected directly to the network, so you'll need to connect to the host through the router. When you say that you're running a proxy on your host, do you mean that the host is connected to a proxy, or that the host is running a proxy server

empty sorrel
#

yea connected

#

like its a uni proxy

formal sparrow
#

Ok, so the host is connected to the uni network via proxy.
Kali is on a bridged adapter, which means that it's connected directly to your home network (i.e. it should be bypassing the proxy completely). My guess would be that you'd be best switching to a NAT adapter, or connecting to the proxy directly with Kali. As for doing that I would suggest looking to proxychains, although I reckon there are other ways of doing it.

meager compass
#

Well, I'm doing the basics. I don't know nearly enough as you @formal iron :p I was hoping to do some history, different types, c&c, dga, etc

#

maybe check the networks tab? You can set systemwide vpns, not so sure on systemwide proxies but sounds like it'll be in there

proper iris
#

Or any other events of their preference...

cobalt thicket
#

The feds are after me

#

ohno

tropic lava
#

@cobalt thicket that's got to be fake

cobalt thicket
#

Nah

#

I've met those people begire

#

That's exactly what they would produce

pale cove
#

where did you find this? 😯

cobalt thicket
#

Twitter

pale cove
#

daaamn

#

i didn’t know such think can be in uk

cobalt thicket
#

Wow

#

That slowthai shit is mad

olive sundial
#

why the hell is steel mountain so damn slow ;-;

cobalt thicket
#

Wow

#

That actually works

olive sundial
#

lol

#

why is that face so big lol

cobalt thicket
#

I can send gboard stickers here

olive sundial
#

loool

cobalt thicket
olive sundial
#

that is so awkward

#

second box i started

#

TT_TT

cobalt thicket
#

aaAAaa

#

the impact font

#

it hurts

olive sundial
#

looool

cobalt thicket
#

I'm still livid about the soraka nerfs

cobalt thicket
#

guess I've gotta learn other supports

olive sundial
#

@cobalt thicket you can always go for more mechanical ones like senna and thresh

#

depends on what you fancy really

cobalt thicket
#

Nautilus is my second, but I haven't got him on this acc yet

olive sundial
#

nautilus is average

#

not too strong in the meta against all the mobility based champs

#

brand is cool support, quite painful to play against

#

so is zyra

cobalt thicket
#

I like healing tho

olive sundial
#

sona is not for you then because she is outscaled after 15 min mark

#

senna? lulu (she has shield)

cobalt thicket
#

I like the look of Yuumi

olive sundial
#

she is quite strong currently

olive sundial
#

@urban crescent have you tried ebay for a gf?

urban crescent
#

you know

#

im not looking to buy one

cobalt thicket
#

that's how he found me

olive sundial
#

you can rent

#

there are "hot single ladies in your area"

pale cove
#

just disable the Adblock

#

and get a girl

cobalt thicket
#

porgram one smh

urban crescent
#

you know

#

i tried one of those websites and they asked for my SSN

tropic lava
#

SSN was never designed to identify you

#

Other than for social security

hushed saddle
#

someone have installed kali in raspberry pi 4, i have problems with the image :c?
NVM i got it, was the version of balenaEtcher

outer vale
#

when setting up a VPN point-to-point tunnel with OpenVPN or Wire-Guard who do you test if it works outside the network?

urban crescent
#

am both

tropic lava
#

@outer vale mobile data

outer vale
#

@tropic lava between two LAN's is there any good way to test if a point to point vpn works. Before going to x location. Just to discover that your are unable to connected to the other network.

tropic lava
#

Well.

#

It should go both ways right?

#

Networks A and B are connected. So if you're on A, open a bidirectional program with something on B

#

Ping works

lethal egret
#

@cobalt thicket Not sure how I get these teams sometimes

mental gyro
#

Lmao

#

Intparty

lethal egret
#

euw at 4am

mental gyro
#

I stopped playing it comp. I dont wanna tilt on brainlets xd

lethal egret
#

ah I just play pyke mid and laugh the entire time

mental gyro
#

Play csgo instead

#

Kappa

lethal egret
#

hell nah

#

I tilt myself so hard on that game

#

reached MGE and stopped as I just went crazy

mental gyro
#

Do u like mmorpgs? I mean some guild wars 2 :D

lethal egret
#

Not so much anymore, I used to be heavy into wow raiding but stopped doing it competitively after legion released, the poor game just kinda tanked from there