#thm-community-media

1 messages Ā· Page 21 of 1

sterile harbor
#

i dont want to use a vpn to access this site

safe citrus
sterile harbor
#

oh and guess what

safe citrus
#

these guys took it too seriously i guess hehe

sterile harbor
#

they blocked the ovpn connection as well

safe citrus
#

ripp

sterile harbor
#

oh ik

safe citrus
#

i am thankful that my government allowed ovpn connection atleast, all other vpn services have been blocked

cobalt thicket
#

Oof

#

New Slayer task

#

100 Shades

#

See you in an hour kekw

nova lynx
#

If your country is blocking VPN connections, I'm sure you can bypass it.

tropic lava
#

They're not

sterile harbor
#

it was under the adult filter for some reason

#

this site isn't 18+

#

is it?

tropic lava
#

It should be lol

sterile harbor
#

so its not

#

ok

#

i talked to three

#

no helpy

nova lynx
#

Talked to three ISP's?

sterile harbor
#

no

#

three is my isp

nova lynx
#

Oh

sterile harbor
#

lol

nova lynx
#

They are blocking the port?

sterile harbor
#

no

#

redirecting it

#

to their filter

#

the ADULT FILTER

nova lynx
#

I'm talking about with a VPN.

sterile harbor
#

no

tropic lava
#

not via DNS for the VPN

#

THM hardcodes the VPN server IP

sterile harbor
#

oh you mean that vpn

#

no

tropic lava
#

But you should be using your own DNS servers anyway

#

Change your DNS servers

sterile harbor
#

it wasn't working before

#

i didnt check now tho

nova lynx
sterile harbor
#

lol

tropic lava
#

1.1.1.1 as primary and 8.8.8.8 as backup or vice versa

nova lynx
#

Exactly^

formal sparrow
#

Preferably that way around

sterile harbor
#

well anyway

#

it three's fault

#

they need to fix it

#

this site is not 18+ , so it shouldn't be filtered

nova lynx
#

I am not familiar with how the restrictions work in other countries, how do they know your age?

#

To put restrictions on the site.

sterile harbor
#

i dunno

#

i have no clue

#

thats the weird part

#

because when i curled the site in verbrose mode, it redirected me

nova lynx
#

So you can't use THM?

#

At all?

sterile harbor
#

only on a vpn connection

#

but i dont want to use vpn

#

cos i need to be on the site when i'm doing rooms

nova lynx
#

Try to change your DNS

#

Can't hurt

sterile harbor
#

yh

nova lynx
sterile harbor
#

does that mean my ip will be static tho?

#

cos no dhcp

nova lynx
#

uhhh

#

Wym

forest rivet
#

Is it time for šŸ° ?

tropic lava
#

@sterile harbor No, you can set them seperately

sterile harbor
#

ok

tropic lava
#

Assuming you're on something other than android

#

Some versions of android don't let you

sterile harbor
#

ok

#

im on windows

tropic lava
#

So you can follow the guide and set it

sterile harbor
#

yh

tropic lava
#

DNS is separate from DHCP]

nova lynx
tropic lava
#

And setting a static IP would be local anyway so it wouldn't matter

nova lynx
sterile harbor
#

doin it as we speak

tropic lava
sterile harbor
#

omg

#

that looks exactly like my cat

tropic lava
#

Generic black cat

nova lynx
#

The hand of the James

forest rivet
#

wow, stalker

sterile harbor
#

dns change did nothing

nova lynx
#

Yup I'll be saving that for my collection

#

Either way, it's better to have your own DNS.

sterile harbor
#

ill keep it then

#

i cant take this tho

#

it just ruins everything

nova lynx
#

Now go to cmd and type ipconfig /flushdns

#

if you're on Windows.

sterile harbor
#

cmder is the same

nova lynx
#

yeah

forest rivet
#

damnit, you're being too productive.

graceful coral
#

Did I hear productivity

nova lynx
#

Yes you did ^

graceful coral
#

Where can I get some

sterile harbor
#

nada

forest rivet
sterile harbor
#

i'll talk to my parents

#

we need a better router anyway

nova lynx
#

I don't think you have a router problem, in regards to this issue.

sterile harbor
#

ik

nova lynx
#

I think you just need a reliable bypass for the filter.

sterile harbor
#

but we'll change isp

#

and router

graceful coral
#

@forest rivet so it's gonna be like that is it

sterile harbor
#

cos the ai cube freaks me out

forest rivet
#

yes, Pars. It really gonna.

sterile harbor
#

it disconnected me when i shouted at it

urban crescent
#

you know

sterile harbor
#

that's the stuff of horror movies

urban crescent
#

if you tell the coronavirus no it cannot legally enter you

nova lynx
#

You're really full of some interesting stories.

forest rivet
#

Not with that attitude, Nana ;)

nova lynx
#

@urban crescent That is a fact

urban crescent
nova lynx
sterile harbor
#

so

#

i basically cant do thm anymore

nova lynx
#

Why?

#

Just use a VPN.

sterile harbor
#

yh but there is an issue with that

nova lynx
#

SSL Tunneling

formal iron
#

how so?

sterile harbor
#

k

#

lemme explain

formal iron
nova lynx
#

Make your own VPN with a VPS on Digital Ocean.

sterile harbor
#

since i cant have more than one connection at a time, i will have to keep alternating between the vpns whenever i want to submit an answer

#

thats not practical

#

and it's time consuming

formal iron
#

the VPN to THM doesn't route all of your traffic

sterile harbor
#

ik

#

thats the problem

nova lynx
#

It's not a problem 🤣

formal iron
#

It just adds it to the routing table

sterile harbor
#

hahaha

#

kinda is

nova lynx
#

I am very confused.

formal iron
#

so you can use your internet (public ip) whilst accessing THM instances

sterile harbor
#

if all my traffic was routed through thm, im sure the servers wouldn't be in great shape

tropic lava
#

You can have multiple VPN connections, as long as it isn't two to TryHackMe

nova lynx
#

....

sterile harbor
#

hmmm

#

i tried

#

but it disconnects thm

formal sparrow
#

!dark

#

?

sterile harbor
#

i use linux protonvpn

nova lynx
#

Yes

#

!dark

#

Not working

sterile harbor
#

why are u summoning him?

nova lynx
#

Not summoning him

#

Trying to get you a tutorial.

#

It's built into the bot.

sterile harbor
#

of what?

formal iron
#

This will be on the docs very soon (I just need to fix issues with PR for it) @sterile harbor when I get a break / finish shift

nova lynx
#

2 wise words, that will change your life.

sterile harbor
#

thank you m8

#

ok, heard that before

cobalt thicket
#

!dark is disabled for the time being

nova lynx
#

😦

sterile harbor
#

so, i require assistance now

#

cos without thm, im stuck with htb

#

and i dont have vip

tropic lava
sterile harbor
#

so whenever a new box comes out

nova lynx
#

Yes!

#

Two words that I've been hearing for years.

#

Made me the man I am today.

sterile harbor
#

thats not new

#

its on htb all the time

nova lynx
#

Who said it was new?

cobalt thicket
#

And there's a reason for that

#

It works

#

Don't fix what ain't broke

nova lynx
#

We're all here because at one point, we had to figure things out. Eventually, it lead us to a Discord Server full of each other with the same hobby.

formal iron
#

Don't fix what ain't broke
@cobalt thicket unless its DNS then it's DNS

sterile harbor
#

tbh, im here cos i dont like htb that much

#

but yh

#

same thing

nova lynx
#

You don't think you have anything to learn?

sterile harbor
#

of course i do

nova lynx
#

Of course, we all do.

cobalt thicket
#

tbh, im here cos i dont like htb that much
@sterile harbor don't blame ya

sterile harbor
#

but i kinda split my learning in two parts

nova lynx
#

The point of the term "Try Harder" is about doing research and the process of trial & error.

tropic lava
#

It's not saying don't get help

sterile harbor
#

im sick and tired of skids on htb trying to bruteforce login portals

tropic lava
#

It's saying try as hard as you can

nova lynx
#

Exactly^

tropic lava
#

Once you can't try any harder

#

Take a break, walk about

sterile harbor
#

lol

#

walk about

tropic lava
#

think for 10 mins, explain your process out loud

nova lynx
#

THM is a completely different community than HTB.

cobalt thicket
#

Oh trust me, I've seen parts of that discord no person should ever see

sterile harbor
#

yh

#

you see one difference is that i dont get bullied in htb

#

lol

nova lynx
#

You aren't being bullied!

formal iron
#

Whose bullying you here?

sterile harbor
#

i was joking

nova lynx
#

I can't speak for others, but I am trying to give you constructive criticism.

formal iron
#

I think that's very the opposite here...

sterile harbor
#

its a long story

#

dont matter

nova lynx
#

HTB is full of trolls and "bullies"

sterile harbor
#

it is

nova lynx
#

No problem saying that

formal iron
#

and if it is the case, it needs to be raised with staff who will deal with it very swiftly

sterile harbor
#

anyway @nova lynx, where you satisfied with the BOFe?

nova lynx
#

No

#

It was auto generated lol

#

But w/e

#

We'll drop that

sterile harbor
#

how can you auto generate exploits

nova lynx
#

....

tropic lava
#

I mean, you did

#

So

sterile harbor
#

how?

tropic lava
#

the payload was generated

#

Shellcode generators ftw

sterile harbor
#

i dont know how to manually make shellcode

cobalt thicket
#

And that's okay

nova lynx
#

how can you auto generate exploits
@sterile harbor ?

#

Nothing wrong with that, just be transparent.

sterile harbor
#

the rest i worked on really hard

#

how do you manually make shellcode tho?

tropic lava
#

You read a book

#

learn some assembly

#

Make some syscalls, and get a shell

sterile harbor
#

oh yh

tropic lava
#

I own a book called the shellcoder's handbook

sterile harbor
#

assembly

#

i get it now

#

but not really

#

cos i still cant make my own shellcode

#

point is, not the whole exploit was auto generated

formal iron
#

Then you should research into learning shellcode

#

šŸ™‚

#

there's methods out there that can generate it

tropic lava
#

(if you want to, it's quote fun learning x86 and reverse engineering)

#

Just don't pass off other people's work as your own

formal iron
#

if it doesn't suit your needs, learn and adapt as deemed necessary

sterile harbor
#

rn im trying to bribe offsec

#

i want to take pwk

#

but you need to be over 18

cobalt thicket
#

Nah you don't

sterile harbor
#

for oscp

#

which id part of pwk

cobalt thicket
#

As long as your parents are okay with it, and you have a letter of recommendation, you should be good

graceful coral
#

bribes offsec I have one dollar

tropic lava
#

PWK is the training

sterile harbor
#

ik

tropic lava
#

OSCP is the certifcation

sterile harbor
#

ik

tropic lava
#

You can get OSCP at like 14

cobalt thicket
#

I know plenty of sub-18 y/o that have done PWK

graceful coral
#

You can get oscp as early as you want

cobalt thicket
#

I was nearly one of them

graceful coral
#

As long as your parents sign off on it and you've got a grand to drop

sterile harbor
#

ooff

#

a grand

cobalt thicket
#

Nice cool 1k

formal iron
#

I think the grand part is the barrier here

sterile harbor
#

i only have £500 to spend

graceful coral
#

Yeah

cobalt thicket
#

That's why I didn't do it

#

1k USD, mind

sterile harbor
#

then probs like 900 or 800 £

graceful coral
#

I think alot of us would have oscp right about now if we could drop the grand

cobalt thicket
#

Ā£850

sterile harbor
#

nice

#

ill save up then

#

Ā£350 more

cobalt thicket
#

When you're ready to take it, email offsec

#

Explain your situation

sterile harbor
#

but now am bored af and have nothing to do, probs gonna finish my course work and change my discord name (for reasons)

#

the pfp will never change, mark my words, pin them or quote them

forest rivet
#

šŸ° šŸ•™ ā”

tropic lava
#

@ancient osprey Please respect Rule 1

#

@pastel nymph just BTW, booted that person

#

They spammed me with DMs

pastel nymph
#

kk

safe citrus
#

šŸ° šŸ•™ ā”
@forest rivet āŽ

forest rivet
#

What >:'c

sterile harbor
#

even on insane timing it takes 45 mins to scan a room

#

oooof

#

it hurts

safe citrus
#

I own a book called the shellcoder's handbook
@tropic lava i tried it few months ago and dude its amazinnnngg

forest rivet
#

.
🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮
šŸ„®šŸ°šŸ°šŸ°šŸ„®šŸ°šŸ°šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ°šŸ°šŸ„®
šŸ„®šŸ°šŸ„®šŸ„®šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ°šŸ„®šŸ„®šŸ°šŸ„®šŸ„®šŸ„®
šŸ„®šŸ°šŸ„®šŸ„®šŸ„®šŸ°šŸ°šŸ°šŸ„®šŸ°šŸ°šŸ„®šŸ„®šŸ°šŸ°šŸ„®šŸ„®
šŸ„®šŸ°šŸ„®šŸ„®šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ„®šŸ„®
šŸ„®šŸ°šŸ°šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ„®šŸ°šŸ°šŸ°šŸ„®
🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮🄮

pale cove
#

wow

safe citrus
#

My eyes

forest rivet
#

by happy I didn't invert the emoticons

safe citrus
#

Rip

median palmBOT
#
Skidy
:slight_smile:
graceful coral
#

@urban crescent send nana

graceful coral
#

Awwww

sterile harbor
#

^

#

it's alive, right?

urban crescent
#

yes

sterile harbor
#

good doggo

urban crescent
urban crescent
cobalt thicket
#

72 firemaking

#

Making moves

forest rivet
#

šŸŽ·šŸ›

pale cove
#

šŸ•ā²ļø

forest rivet
#

no, I'm full

#

but not full of šŸ°

cobalt thicket
#

73 firemaking

#

gainz

forest rivet
#

oh, that's run escape stats

cobalt thicket
#

angry noises

#

rune scape

urban crescent
#

run escape!

forest rivet
#

yeah, well, I wasn't very good at English back when run escape was big

urban crescent
pale cove
#

Django is fun.

forest rivet
#

Django is a swear word

pale cove
#

no it's not

#

Do you code @forest rivet ?

forest rivet
#

it's my job :3

pale cove
#

uuuu

#

what languages?

forest rivet
#

C# with aspnetcore and a little dart with flutter

urban crescent
#

Django unchained!

pale cove
#

i was just about to start dart

#

flutter seems nice

forest rivet
#

dart's pretty cool. It's a good fit for flutter

#

I'd still rather write c#, though.

pale cove
#

Sublime Text is $80 😨

forest rivet
#

you can deal with the nag-screen

#

or just use codium

pale cove
#

i use both

#

but i like sumblime more

forest rivet
#

I personally use Visual Studio and sublime

#

but then, VS is perfect for my primary work. A bit too heavy if that wasn't the case

urban crescent
#

sublime is also free

forest rivet
#

it gives you nag screens

urban crescent
#

i use sublime on a daily basis

#

and its so pogplant

forest rivet
#

once every x saves

#

it's.. whatnow?

urban crescent
pale cove
#

i don't like autofilling suggestions in VS. like, you basically stop thinking about typos and stuff, while Sublime actually makes you watch out for that

forest rivet
#

Yeah. No. That didn't help

pale cove
#

no plant boi

graceful coral
#

Ive just riced my bootloader

forest rivet
#

I think at a certain level that's true, but in the long term, you don't really care for types more as more than a reminder not to be an idiot

#

You want soysauce with that bootloader, Pars?

graceful coral
#

@forest rivet I do indeed

forest rivet
#

Also, pretty cool that you have QBert as one of your OSes, @graceful coral

graceful coral
#

1v1 me qbert

forest rivet
#

I never played it

#

I did play a variation of it called qbob, though

graceful coral
#

I have my laptop coming back from a repair center, do you think I should wipe it any backdoors?

forest rivet
#

Nah, they have too much to lose to install backdoors in random people's stuff

cobalt thicket
#

74 firemaking

forest rivet
#

Some people just wanna watch the world burn.

#

Like Dan over here.

unreal mulch
#

hello there

urban fractal
#

hello

unreal mulch
#

im new membere

tropic lava
#

Hiya

unreal mulch
#

im trying to find som friends

urban fractal
#

how is everyone? still healthy?

graceful coral
unreal mulch
#

@graceful coral what abu

#

about here ?

urban fractal
#

Nah, they have too much to lose to install backdoors in random people's stuff
@forest rivet Won't be too sure about that mate

tropic lava
#

I mean, unless it's a Matebook

urban fractal
#

There are people on the darkweb, sysadmins of companies offering installing backdoors for money

#

but that's more corporate-wise

graceful coral
#

@unreal mulch Ill be your friend <3, but if you want to find a group to work with you can go to #689615473620287603

tropic lava
#

Aww cute

unreal mulch
#

they use as as boot when you install that backdoor

graceful coral
urban fractal
#

better safe than sorry, unless it's a meaningles gaming station

unreal mulch
#

@graceful coral im just new in @median palm but i know loot of stuf im usefull

#

ican exploit

#

any xss

graceful coral
#

That's great šŸ˜„

#

I hope you'll enjoy this community

unreal mulch
#

@graceful coral thanx ā¤ļø im looking for some work to do

graceful coral
#

well we've got a lot of rooms for you! šŸ™‚

unreal mulch
#

is any one can tell me what is the project

graceful coral
#

are you looking for some starting rooms

unreal mulch
#

@graceful coral yes pleas

graceful coral
#

you can start with the rp rooms

tropic lava
#

zthlinux, rpnmap

#

zthlinux first

graceful coral
unreal mulch
#

@graceful coral great ,thankx evry body

graceful coral
#

ā¤ļø we're here if you need us

unreal mulch
#

i be back im sure lolol

urban crescent
cobalt thicket
#

Folding @ Home Team ID: 252682

forest rivet
#

That thing's still alive? Neat

forest rivet
#

🄮 ā²ļø

forest rivet
#

Oh for frick's sake.

#

So I've convinced my company to get into security assessments. But now they want me to do it. Nevermind that I built much of the software -so I'll be completely blind to my own flaws- I'm not freaking qualified >:c

olive sundial
#

same happened to me

#

if you need a hand with what to do give me a dm

#

i don't mind spending some time with you and tell you how i've done it myself šŸ˜› @forest rivet

forest rivet
#

That's a generous offer, @olive sundial. I'll see if I can get them to interested in an actual expert first, but if not I might take you up on it ;)

olive sundial
#

i was thinking about the same. but it's better for you to start it, even though you don't know what it's right. you have the possibility of investing time to get the knowledge

#

i am not qualified either but i am working towards a few

forest rivet
#

Nice :)

olive sundial
#

don't be scared of trying something new

forest rivet
#

I'm scared of breaking a production system and not catching a glaringly obvious error :p

olive sundial
#

as long as you are specific about that there might be a chance of breaking a system with a scan

#

that's the risk involved

#

and avoiding fragile devices

forest rivet
#

Yeah, definitely would need to be careful.

forest rivet
#

I'm gonna go buy šŸ°.

formal iron
#

+1 on my behalf pls ty xx

forest rivet
#

I'll get you 🄦

formal iron
#

ewwie

graceful coral
#

Right, what's the dumbest thing people have done and knocked the network down at work?

tropic lava
#

Not at work but in my lab

#

I knocked over a server BMC with the basic nmap scan

#

You can't reboot those. You havw to pull power from the server at the wall.

formal iron
#

routing loops

#

ethernet cable from socket in wall to the socket next to it

graceful coral
#

I ran a mass install on a cloud based anti virus without setting up a local distribution point. 400 PC all downloading the software from the internet at once. Fucked the bandwidth and knocked everything down for a bit. Turned the routers off and on and dropped all the traffic and was all fixed

formal iron
#

Configuring WSUS wrong is a good one too

#

and totally haven't done

graceful coral
#

Luckily I was handed a working WSUS so I've never had to set it up outside of a lab enviroment

formal iron
#

advice: keep it that way

graceful coral
#

Well will see what the new job entails when I get the offer through, hopefully no WSUS then. I've been told I'm getting a job offer but everything is up in the air with the dam virus they have said it's still going ahead though so fingers crossed. It'll be good to be working in Edinburgh/Glasgow instead of bumfuck nowhere

forest rivet
#

A month or two ago we had a broadcast storm at work that took down the hosted networks of all our clients. It was caused by something forwarding the broadcasts circularly

#

Someone's ears gotta have been red for that one. Glad it wasn't mine.

#

gives @formal iron všŸ°

graceful coral
#

Wassup

last marlin
#

Top of the day to you all

forest rivet
#

Bottom of the day to you too

last marlin
#

cake ? )

#

I have 4 hours oh my hands, hope to finish a room

#

im going to start with this one RP: PS Empire, have you done it ?

forest rivet
#

Which room, though?

#

oh, you just said.

last marlin
#

so have you finished it ?

forest rivet
#

Nope!

#

I thought that was a general you, not me specifically :p

#

damn English

last marlin
#

installing powershell empire.. this should be fun, never used empire

forest rivet
#

I don't even know what it is :D

last marlin
#

šŸ˜„

#

I might be wrong, but its brother or sister of metasploit )

forest rivet
#

I find it hard to believe that could possibly exist and I haven't heard of it, but I'm not sure I'm the best source of information in this regard :p

last marlin
#

thats why i said i might be wrong )

forest rivet
#

:D

last marlin
forest rivet
#

green on black, huh? :p

last marlin
#

When to Use PowerShell Empire
Some of the activities and goals that can be accomplished include privilege escalation (elevating privileges from a standard user account to an administrator), network and host reconnaissance (finding out what hosts and services are present), lateral movement between hosts, and the gathering of credentials. All of these are key components of a modern day penetration test.

PowerShell Empire accomplishes this via three main components: listeners, stagers, and agents.

#

green on black, huh? :p
@forest rivet I like it

#

looks bro or sis of metasploit, dont you think ?

#

anyways, will find out soon )

forest rivet
#

Sounds like the big brother of meterpreter, perhaps

formal iron
#

@forest rivet animewave

forest rivet
#

@formal iron 🄦

last marlin
#

If i give wrong answer, and then the right one, does it have any effect on point given ?

formal iron
#

Nope

#

Unless someone answers that question before you submit your correct answer, you'll get the same amount of points as if you never answered it before

last marlin
#

good to know, often i do mis spell a word, so I always wondered fi that woud ahve an effect

forest rivet
#

nop

last marlin
forest rivet
#

I despise mongo.

tropic lava
#

Fixed now

last marlin
#

thank you

tropic lava
#

Wasn't me

#

Thank Skidy

#

Blame mongo

forest rivet
#

I am, and I wasn't even affected

forest rivet
#

🄮

smoky linden
#

How's everyone doing this fine evening?

winter elk
#

quarantied :/

forest rivet
#

Hey, at least you don't have to go outside, then :p

graceful coral
#

What exactly is outside

forest rivet
winter elk
#

but the temp is like 70 today, which gives stat boosts

forest rivet
#

you guys on the 'murican server and your insane temperature consts.

graceful coral
#

Freedom Units > *

forest rivet
#

you've done this before, pars.

#

that's a paradox

#

Freedom Units > Freedom Units and everything else

winter elk
#

problem is they havent patched out the temperature irregularities from 40 one day to 70 the next

#

gotta be a bug

smoky linden
#

Was speaking to a mate last Tuesday and it felt unreal to both of us that all of this is happening, every single person you talk to knows about it, no matter where you go its all the talk

forest rivet
#

It's worse the other way around, really. High temps are the worst.

smoky linden
#

Crazy world we live in, hope you are all staying safe

forest rivet
#

Yes, Even I know about it, and I live under a damn rock

graceful coral
#

I'd rather a high temp then a low temp

forest rivet
#

No way

#

low temps and you can get cozy in bed

ripe drum
#

I made sure to stockpile only the self isolation essentials

#

Now I can procrastinate even harder in 3440x1440

tropic lava
#

Welcome back

#

And that's hot. @ripe drum

#

But that poor website in Ultrawide

forest rivet
#

My boss has one of those screens. A client ordered it and canceled the order. We couldn't get it refunded, soo..

#

I want, so bad.

smoky linden
#

beautiful display

ripe drum
#

@tropic lava thanks - uni is all a mess and I've now finished my presidency of the hacking society so now I have time to actually do THM again haha

tropic lava
#

The sesh is finally over

#

It was legendary

#

Wait was that you from Sesh?

restive tartan
#

3440x1440 daymn THM has wasted space

ripe drum
#

Yeah I founded SESH with another guy who's also graduating this year. Thankfully we have a whole new committee of people who are enthusiastic about continuing it

tropic lava
#

Yeet

ripe drum
#

has been my worry the entire year that it'd be a dead society

#

I'll still be contributing stuff from time-to-time but it'll be limited from what I can do from London

#

providing I actually ever am able to move down there 😹

tropic lava
#

If you're ever allowed outside again

forest rivet
#

No.

tropic lava
#

Once online deliveries are sorted, I'm set

#

Currently a couple weeks wait for deliveries of food

ripe drum
#

I've just been staying up till midnight on Amazon Prime and waiting for new slots to release

#

they have most of Morrisons stuff on ther

tropic lava
#

oh, interesting

safe citrus
#

Hey can you tell me the timezone of skidy please? @tropic lava

tropic lava
#

Huh?

olive sundial
#

+0

tropic lava
#

skidy is a Brit

#

But doesn't sleep

safe citrus
#

Oh aight

worldly lance
#

does anyone know what this is

forest rivet
#

An annoying font?

worldly lance
#

Apparently its a Sans challenge

tropic lava
#

@worldly lance pigpen cipher

forest rivet
#

oh yeah

worldly lance
#

Thank you

tropic lava
#

I'm assuming the underscores are spaces

#

Or underscores

worldly lance
#

My friends have been stressed out about this

tropic lava
#

I think it's come on on THM before, and I've had quite a few children's books that have it

forest rivet
#

Next there's gonna be that one from Dr. Who

tropic lava
#

tfw someone invokes Skyrim dragon speak in a CTF

forest rivet
#

or no. not dr. who. I can't remember where it's from

#

eerhh.. the one with the circles in circles and stuff. Quite pretty too. Happen to know what I'm talking about, @tropic lava ?

tropic lava
#

nah I think there's time lord language

#

Galifreyan or something?

forest rivet
#

yes, that!

urban crescent
#

a visitor!

tropic lava
#

Cute!

forest rivet
#

Gex is here

tropic lava
#

šŸ¦Ž

urban crescent
#

i know i am, thsnks James <3

olive sundial
#

@tropic lava ctf 100 has it

tropic lava
#

@olive sundial Pigpen or gallifreyan?

olive sundial
#

Pigpen

tropic lava
#

Gallifreyan would just be sadistic

olive sundial
#

Challenge 5 transition to 6 i think

#

Plz don't give people ideas

formal sparrow
#

Too late...

forest rivet
#

Gallifreyan is great because you can't put it into a program to decode it.. yet

formal sparrow
#

Yeah, but it exists!

forest rivet
#

and unlike pigpen it takes a bit of time to understand

formal iron
#

idk about anyone else - but not to get political, that clapping was very moving

cobalt thicket
#

I heard fireworks, what did I miss?

forest rivet
#

šŸ°

cobalt thicket
#

I've been wired into VMware all day, not had chance to read the news

tropic lava
#

basically people applauding NHS frontline at 8pm

formal iron
#

#clapforNHS / #clapforCarers

forest rivet
#

spins up a couple instances of @cobalt thicket

tropic lava
#

HA Sherlock?

cobalt thicket
#

?

tropic lava
#

Failover configured too?

cobalt thicket
#

Oh

forest rivet
#

You've been wired into VMware :p

cobalt thicket
#

I see

forest rivet
#

oh that too

tropic lava
#

vMotion dan back to reality

forest rivet
#

no.

formal iron
#

Dan is vSphere

forest rivet
#

I knew it!

formal iron
#

JIRA for THM when???

forest rivet
#

isn't jira wicked expensive?

formal sparrow
#

Swag shop when?

formal iron
#

yeah but sub + swag shop money innit

graceful coral
#

Time fix when

cobalt thicket
#

They use JIRA internally iirc

formal iron
#

fix when

formal sparrow
#

sub + swag shop - room money > 0

cobalt thicket
#

We coded a command for the bot for them

uncut saffron
#

THM already have JIRA ;)

graceful coral
#

More like

forest rivet
#

oh, neat

formal iron
#

for real?

#

lol the poor souls

uncut saffron
#

!jira

#

Oh

formal iron
#

assign: sk0dy

tropic lava
#

Is that cog loaded?

uncut saffron
#

Might not

#

lmao

graceful coral
#

Sub+swag-room-jira-aws+uni_funding=0

uncut saffron
#

I really need to get the new version done

forest rivet
#

plz halp

uncut saffron
#

So we can have a fixed bot..

formal iron
#

you assume it can ever be in a state of fixed

forest rivet
#

Cake time šŸ°šŸ°šŸ°šŸ°šŸ°šŸ°šŸ°šŸ°šŸ°

#

So I just did apt upgrade via mobile net on a new install. This tech definitely couldn't have existed 20 years ago. It took 5 hours to finish!

#

imagine doing that on a 56k

tropic lava
#

@forest rivet 20 years ago then

forest rivet
#

yeees?

#

I'm saying that it would've taken like a year to transfer it all if it was distributed the way it is now :p

#

you kinda take that for granted when your internet is so fast that you don't even notice it

graceful coral
#

@forest rivet reminds.me of the time I installed gentoo like 2 years ago

#

I was downloading packages in bytes

forest rivet
#

it should've flashed the bytes at the screen at you so you could manually check that they were right

#

oh hey, i didn't even notice that the ip sticks to the top of the browser window now. Nice!

formal sparrow
#

@final herald Nah

#

Gotta be straight

final herald
#

alright so I'm comming here to talk about whisky instead

formal sparrow
#

Which I could add a "Whisky tasting" channel

forest rivet
#

alcohol is just an ingredient for cake.

formal sparrow
#

Nah. If you cook it, you lose the alcohol

final herald
#

true

formal sparrow
#

Alcohol is just a garnish for cake!

forest rivet
#

not if you freeze it, though.

final herald
#

that wont work

forest rivet
#

granted, you gotta get some special stuff to get it that cold

final herald
#

solid alchohol cake

formal sparrow
#

Can you just imagine though? A lovely glaze to waterproof the cake, then cover it with something strong

#

And set it on fire!

final herald
#

will look epic thats 4 sure

formal sparrow
#

(or just eat it, to get the full alcohol flavour)

forest rivet
#

then dip your hair in the flames

formal sparrow
#

Helps when you've got hair like Marilyn Manson in his early 20s...

forest rivet
#

So you keep telling me. I don't know what he looked like then

#

well, or now

#

or ever really. I don't think I could pick him out

formal sparrow
#

Ask Pars
I've got no clue 😁

tropic lava
#

@formal sparrow Whiskey != whisky

forest rivet
#

wsky

formal sparrow
#

@formal sparrow Whiskey != whisky
@tropic lava Exactly! Glad someone agrees!

final herald
#

wy

forest rivet
#

wsky is when you really distill it.

tropic lava
#

I drink both but scotch is different

forest rivet
#

so distilled that most of the letters are gone

formal sparrow
#

nn

forest rivet
#

hh

formal sparrow
#

tht wrng hh

tropic lava
#

This person again with the lack of vowels?

forest rivet
#

mhmn

#

oh, he just had too much wsky. That explains it

formal sparrow
#

Thought he was banned on rule 9?

forest rivet
#

not a clue

#

rule 9: gotta use vowels

formal sparrow
#

Nah, nothing illegal

forest rivet
#

that's what i said

formal sparrow
#

Hey, James, is memorising the rules one of the prerequisites of being a green name?

forest rivet
#

oh yeah, that kinda makes sense

tropic lava
#

TFW you have to specify a rule that says use vowels

#

@formal sparrow Nah, just look at them when something seems sketch

#

And remember rule 1 is a thing at all times

formal sparrow
#

Same as the feeling when you have to make a rule saying no viruses in the chat...

#

Lovely 😁

tropic lava
#

Behind every sign, there's a story

formal sparrow
#

Kinda worrying how many of those stories I know at this point...

#

Time flies

forest rivet
final herald
#

boi

forest rivet
#

boii

tropic lava
#

@forest rivet GDPR got tight

formal sparrow
forest rivet
#

oh.

#

They weren't allowed to have an empty sign pole, Muri.

formal sparrow
#

Why would you need a sign pole?

tropic lava
#

i think seasonal signs

formal sparrow
#

Why does that need a sign at all?

forest rivet
#

to put up a sign

final herald
#

this is getting weirder and weirder

forest rivet
#

There used to be a sign there, and there will be one later

#

this is a classic problem in coding

tropic lava
#

//TODO add sign

final herald
#

throw new NotImplementedException("sign not in use");

forest rivet
#

it gets worse when you can't just comment it out

formal sparrow
#

Oh, I love temporary signs.
At home we've had one up for months saying "Careful, Ice" -- it's been there since last January, and stayed there all through the summer...

tropic lava
#

//TODO fix sign, whenever I remove it the code stops working even though nothing references it

final herald
#

we have signs saying that the water has poisonous algae

forest rivet
#

A broken wrist watch is going to be right twice a day, Muri ;)

final herald
#

šŸ‘

formal sparrow
#

You... make a valid point there

#

But why wouldn't you fix it?

#

That's a waste of a wristwatch

forest rivet
#

why fix it? It works when it's relevent

formal sparrow
#

Och Aye, very useful

#

Thing is right twice a day

#

What more do you need?

forest rivet
#

exactly :D

#

That's how a lot of state entities and coders think. Both drives me nuts.

formal sparrow
#

@haughty meadow

#

Surely there are easier ways to keep tabs on the PC if you own it?

#

Rather than installing a RAT?

haughty meadow
#

Thank you kind sir

#

No, im a noob, i got my way to the machine through the rat

formal sparrow
#

Did you buy the machine?

haughty meadow
#

Yep

formal sparrow
#

Do you have an account on it?

haughty meadow
#

Account as in what account

formal sparrow
#

A user account

haughty meadow
#

No

formal sparrow
#

I'm guessing this is probably Windows we're talking about?

haughty meadow
#

Yeah

formal sparrow
#

If you're worried, why not ask your son to let you put an account on the computer?

#

Then you can just SSH or RDP into it

haughty meadow
#

I have admin privileges by the way

#

If that can help in any way

#

I can execute any shell

formal sparrow
#

What exactly have you done here? Broken into it via EB or something?

haughty meadow
#

I don’t want him to be suspicious or change his behavior.

#

Nope

#

AsyncRAT is an open-source project

#

Im not on linux

#

I downloaded the complied release

#

Built a client

#

Ran it on his pc

#

Gave admin privileges

#

I just want to make sure that I’m still connected after a restart

graceful coral
#

salve

#

whats this about a RAT

restive tartan
#

Swag shop when?
@formal sparrow got samples ordered, just waiting to do quality review before releasing

formal sparrow
#

Why does it matter if he gets suspicious if this is your son? Doesn't sound hugely healthy šŸ˜„
Ah, hang on. Lemme guess. You're worried that he's using the computer for something you don't want him to, and want to catch him doing it or monitor it?

restive tartan
#

COVID has taken its toll tho, delivery times taking longer

formal sparrow
#

@formal sparrow got samples ordered, just waiting to do quality review before releasing
@restive tartan Beautiful!! ā™„ļø

#

I'll bet it has... 😄

graceful coral
#

DAMN YOU CORONA

restive tartan
#

Not me:)

haughty meadow
#

@formal sparrow Yes, that’s the case

graceful coral
#

Caligula sent people to the sea to stab it for revenge

#

We shall send people to stab the air!

formal sparrow
#

Then it might refuse to lift the plane that brings your hoodie to you Pars...

graceful coral
#

Well now

#

lets not get hasty

#

American air isnt the same as british air

formal sparrow
#

@haughty meadow Is this preventative, or do you think he's already done something wrong?

#

*Watch as the plane flies across the Atlantic and promptly crashes when it reaches American airspace*

haughty meadow
#

Im just suspecting he’s doing some illegal stuff that id rather not mention here

formal sparrow
#

You'll be better off confiscating the computer and analysing it physically @haughty meadow
If you bought it then there's nothing wrong with that, and it means you're not relying on malware to monitor it

tropic lava
#

I'm going to emphasise communication

formal sparrow
#

It also stops him from doing anything else illegal

#

Also, yeah, talking to him might be a good idea too šŸ˜„

haughty meadow
#

I dont think that ill be able to do that, I think he erases his tracks

tropic lava
#

Whether that communication is between you and your son or you and law enforcement is your choice

formal sparrow
#

It's Windows. Everything leaves a trace.

graceful coral
#

as someone doing forensics chals rn

#

Oracle is right

formal sparrow
#

No matter how smart he thinks he is at covering his tracks, the evidence will be there

graceful coral
#

btw if anyone can figure out something with this string ad d9 db 88 bd c8 ce 9b b7 c2 d0 cf bf c3 da cf bc cc dc 9a ad c5 d5 8e lemme know

haughty meadow
#

Well im not capable enough of doing such a thing sadly

#

Does putting the client.exe in the startup folder solve my concern?

formal sparrow
#

Well, you're right, your trojan likely won't survive a reboot unless it's added to the startup tasks. I would highly suggest speaking to him -- James is right there.

haughty meadow
#

Got you

#

Thanks for the help

#

But then how does it work on linux

#

Is it different?

formal sparrow
#

Yes, theoretically putting it in the startup folder should work. I'd be inclined to do it via the registry myself though

#

What do you mean?

haughty meadow
#

Like doing something similar through kali linux tools that im not familiar with

#

Is it sustained better

#

Will it like survive a reboot?

#

The connection

tropic lava
#

Connection no

#

It'd die with the process

formal sparrow
#

You'd need to set it as a startup process either way

tropic lava
#

Also Intel Management Engine

haughty meadow
#

How do i do it through registry?

formal sparrow
#

Or otherwise make it execute at a certain time

#

You're saying you've got access to the computer physically?

#

As in, logged in, got access, can do whatever you need to?

haughty meadow
#

I used to, now no

#

Thats how i installed the malware through a usb and turned off windows defender and added an exception

formal sparrow
#

So you've got shell access?

tropic lava
#

Sounds like you need to confiscate a PC though.

haughty meadow
#

Yeah i got shell access

formal sparrow
#

Mhm. You can change the registry keys through powershell (and probably CMD), but I would still recommend confiscating it if you think he's done something illegal

haughty meadow
#

I tried searching for such powershell scripts but couldnt find any and didnt know where to look

#

I wouldnt know to do them myself

tropic lava
#

Sounds like you should talk to law enforcement though.

haughty meadow
#

Ill consider it

#

But i dont want to do it when im not 100% sure

graceful coral
#

Yo

near lark
#

can anyone tell me what this error code is trying to run putty ? mac ios

#

Gtk-WARNING **: 20:59:14.683: cannot open display:

graceful coral
#

@near lark that means the GUI isn't working

near lark
#

is there a way to fix it ?? i switched from csh to zsh by prompted by terminal

graceful coral
#

Can you give me a screenshot of the problem?

near lark
#

yeah

graceful coral
#

Ah

formal sparrow
#

@near lark Careful btw -- not sure how much you care about your opsec, but you just doxxed yourself

#

Might wanna delete that if you do care about it šŸ˜„

near lark
#

lol how do i delete it

#

im new obviously

#

ah okay thanks haha

formal sparrow
#

Click on the three dots then "Delete" šŸ˜„

#

Or ask a mod šŸ˜†

near lark
#

i thought you meant in the terminal and something i messed up with putty lol

#

my b lol

formal sparrow
#

Ah, fair enough šŸ™‚

near lark
#

thanks bb ā¤ļø

graceful coral
#

I think I might have solution tho I'm looking at this from a forum

near lark
#

okay thanks

graceful coral
#

Yeah your using Mac

near lark
#

indeed

graceful coral
#

I'm not sure if I'd risk random commands from forums

#

Why not install a virtual machine?

near lark
#

i have one just was trying to run putty to get the first lenox lesson done on the website šŸ˜†

#

didnt think about putting it on the machine cuz im stupid lol

graceful coral
#

Oh alright

formal sparrow
#

Yeah, doing it in a VM makes life a lot easier

graceful coral
#

I think this might solve your issue but if shit hits the fan I don't know dude

#

export DISPLAY=:0.0

#

NvmšŸ˜‚

formal sparrow
#

You're almost certainly easier just throwing up a VM, ftr...

graceful coral
#

But like I said it might end up causing more trouble than its worth

#

I wouldn't worry if you were on Linux since things like time shift exists

#

Not sure bout Mac tho

#

@formal sparrow your a mentor at this point what room should I do next?

#

I did blue yesterday

#

That was fun

formal sparrow
#

I'm a mod at this point 😁 (well, trial mod -- give it a week and my probation ends)

#

What kinda room are you after?

#

Windows, Linux, Challenge, Walkthrough, etc

graceful coral
#

I mean you've been helping for most of the way soo your kinda my mentor šŸ˜‚

#

Any ctfs really

#

That's beginner level

formal sparrow
#

Beginner... You're no fun šŸ˜›

#

Have you done Jack-of-All-Trades yet?

#

I'm biased šŸ¤·ā€ā™‚ļø

graceful coral
#

Well I'm a beginner so I'm not really flexible šŸ˜‚

#

But I'm guessing I'll do jack next

#

Thanks

lethal egret
#

Jack is fairly beginner friendly tbh

#

You should be alright with it

formal sparrow
#

Just make sure you get the right one... "Jack" is a monster.
"Jack-of-All-Trades" barely deserves the medium ranking

#

If it even does

#

Thoughts @lethal egret?

graceful coral
#

I saw you created some kind of room on networking

#

What's that

lethal egret
#

Honestly the concepts in Joat I'd say easy but then again something one finds easy may not be easy for another

formal sparrow
#

Fair

lethal egret
#

Yeah if you go for the room Jack, run

#

I haven't even attempted that yet I gave up

formal sparrow
#

@graceful coral That's my Intro to Networking

graceful coral
#

Ah

formal sparrow
#

It's exactly what it says on the tin: an introduction to networking theory

graceful coral
#

@lethal egret that makes me worry since your a x0god šŸ˜‚

#

Hmm

formal sparrow
#

Jack

#

Not Jack-of-All-Trades

graceful coral
#

Ahh

formal sparrow
#

There are two rooms called Jack šŸ˜‚

graceful coral
#

Lmao

formal sparrow
#

(I didn't know that when I made it)

graceful coral
#

Alright

formal sparrow
#

Joat was my very first box

lethal egret
#

oh yeah Jack of all trades I got bloods on

graceful coral
#

Oh you made it

lethal egret
#

Jack however, is a different beast that I am yet wanting to confront properly

formal sparrow
#

I held it back for a conference, and by the time I was ready to release, Jack was out

graceful coral
#

Did you created wgel too?

formal sparrow
#

Nope. Can't remember who did that

graceful coral
#

Oh alright

formal sparrow
#

Seth

graceful coral
#

Not sure I know him

formal sparrow
#

He's not particularly active these days

graceful coral
#

Ah alright

#

Thoughts on Richard stallman?

formal sparrow
#

None..

graceful coral
#

You don't like him?

formal sparrow
#

Nah, it's just really late and I can't be bothered searching him up 😁

graceful coral
#

I havent attempted jack yet

#

because im not subscribed

#

This is really surprising

#

as for richard stallman

#

Seems like no one knows him

#

I have no opinion of him

#

I asked you the same question but I think you didn't see my message

#

besides that I think his vision is insane

#

Oh nvm at least you know him

#

Do you think his retirement was a good thing for linux

#

oh shit he retired

#

I honestly thought Linux would die

#

Wtf

#

How does no one know about tho

#

I don't follow linux news

#

It was in the news

#

Everywhere

#

He didn't retire by choice granted

#

He said that haves s with children was OK if the child gave permission which the community wasn't cool with

#

So they kinda forced him

#

well

#

And Richard retired out of his own will for the better of linux

#

obviously 😁

#

you cant just say pedophilia is good and expect to get away with that

#

Some people said that Richard was weird but they think that he should have stayed

#

anyway this was like

#

months ago

#

what makes you bring it up

#

Me and other people were contemplating switching to BSD if Linux became like windows

#

I mean people tried to make it like windows after Richard left

formal sparrow
#

Beauty of Linux is that it's a Kernel, not an operating system. Even if one distro became like Windows

#

Most

graceful coral
#

I think they still are not sure

formal sparrow
#

Would not

graceful coral
#

I dont particularly care that much about FOSS

#

so it doesnt bother me

#

Haven't been following the news as of late

#

@formal sparrow yeah but microsoft is on the linux board of directors

#

so they have influence on what happens to the kernel

formal sparrow
#

Ugh

#

BSD it is then

graceful coral
#

@formal sparrow the gnu licence is kinda what Linux strives on so

#

Lmao

formal sparrow
#

Yeah, too late for license laws

#

Night all!

graceful coral
#

ni ni

#

Lmao

#

Peace out be safe

#

Imma go get breakfast

#

āœŒļø

full vine
#

@graceful coral a little late to the party, but I think Stallman is a little out there on his views. However, his contributions to the world cannot go unnoticed. I also respect his privacy concerns.

covert ledge
#

is this a valid ip 31.10.590

graceful coral
#

no

covert ledge
#

Y

graceful coral
#

every digit in an ip address has to be between 1 and 255

#

there also has to be 4 digits

covert ledge
#

ping it once

#

that ip

graceful coral
#

@full vine agreed

#

That's what some people were saying

#

well that is interesting

#

They said sure he was weird

covert ledge
#

@graceful coral u get it right

graceful coral
#

But it was stallman

#

If it wasn't for him Linux wouldn't really be a thing

#

So respect to him even if I don't agree with his weird views

#

He's toxic he's weird but he's stallman

#

You kno

#

I didn't know you could use shorthand notation like this

covert ledge
#

explain?? @graceful coral

graceful coral
#

I got nothing

#

I've never seen this before

#

I'm hip

#

šŸ˜‚

covert ledge
#

did u ping it @graceful coral

#

i saw a post on twiiter...so i came here to discuss if anyone knows about this @graceful coral

graceful coral
#

it seems to do a mod 256 operation

#

How do you not know how ipv4 works but your level 9

#

520 mod 256 is 78

#

and 256 goes into 520 twice

#

hence the 2.78

covert ledge
#

How do you not know how ipv4 works but your level 9
@graceful coral no one knows everything..

graceful coral
#

mhm

#

you learn something new every day

covert ledge
#

agreed @graceful coral

graceful coral
open ember
strong crown
forest rivet
#

plausible given how many sites store passwords unsalted, but probably fake