#thm-community-media

1 messages Β· Page 26 of 1

patent rain
#

because all the features were blocked

strong crown
#

I was watching a video about sqlmap and that guy use real databases found on google to explain how to use the tool. idk, but i think it's not legal, right?

latent stirrup
#

If he doesn't own/have permission to access the computer system then it's illegal

formal sparrow
#

^^

strong crown
#

he searches on google, so i don't think so @latent stirrup

#

the same in another video, from another youtuber, with another site appeared on the first video

grave tapir
#

hi guys im new here , do u know what is team for??

formal sparrow
#

@grave tapir the teams are for university competitions, like the Hackbacks, for example

grave tapir
#

oh CTF i see

#

ty πŸ™‚

tropic lava
#

@strong crown No that's still unauthorised access of a computer system

formal sparrow
#

Unless it's a website that's deliberately offering a vulnerable database to practice against

tropic lava
#

If you put up a webserver with a vulnerability and it shows on google, that doesn't give people a license to attack it

formal sparrow
#

And that's explicitly stated

strong crown
#

Yes, like zonetransfer.me iirc, that is for practicing and understand the zone tranfer on DNS @formal sparrow

formal sparrow
#

And tryhackme itself

tropic lava
#

(correction, rooms on tryhackme)

strong crown
#

i can't understand why this guys doesn't use a VM or a platform for that

formal sparrow
#

Well yeah, but the site exists to offer the service

#

Probably an important distinction to make though...

tropic lava
#

Not like we haven't hacked tryhackme responsibly though, with approval after discovering a vuln

formal sparrow
#

True... 😁

olive sundial
#

Cough

#

Who did that?

patent rain
formal sparrow
#

@olive sundial says the guy with enough bounties to warrant Bug Hunter...

olive sundial
#

I found features. Shush

tropic lava
#

@olive sundial Muiri and I found one too

formal sparrow
#

Oh, so you don't WANT bug hunter? Meh, OK then 😁

tropic lava
#

I can remove it from you here if you want

formal sparrow
olive sundial
#

I would prefer the green over pink if i had an option kekw

#

but CM takes priority

tropic lava
#

I'd argue bug hunter should but eh

#

I think it's been discussed

olive sundial
#

true

#

I think there are less bug hunters than CMs

patent rain
#

really?

olive sundial
#

yeah

#

i know there's me,optional, 0x03f3

#

is there anyone i am missing?

latent stirrup
#

OG

#

Represent

formal sparrow
#

Nope, just the three

#

I mean, could ask Dark to turn off the separate section and drag it up?
Gives you the colour, but would mean you weren't in a section of your own

latent stirrup
#

Nah I like having my own section

#

Don't be taking away the man's squat spot

formal sparrow
#

We're a democracy around here! Chev and optional get a vote too πŸ˜†

olive sundial
#

I just want green

#

any green will do

#

except HTB green

#

meh

latent stirrup
#

I got green for days

olive sundial
#

we linking up sometime?

latent stirrup
#

I don't know what's being offered

olive sundial
#

you said you got green for days

tropic lava
#

Ah, hackers and green. Name a more iconic duo

olive sundial
#

cookies and pars

tropic lava
#

Touche

patent rain
#

windows and blue

tropic lava
#

EternalBlue lmao

patent rain
#

also bsod

olive sundial
#
linux is green
once you go hack
you never come back```
#

i'm good at haiku

latent stirrup
#

Damn, almost forgot to cancel by bsides hotel booking

forest rivet
#

That's not a haiku

olive sundial
#

welp at least i tried

forest rivet
#

The haiku format is like this:

Think I'm a genius
Bend computers to my will
I just google stuff
weak moss
#

Hello there

tame ledge
#

πŸ‘‹

weak moss
#

What's up?

tame ledge
#

The roof

forest rivet
#

The roof

weak moss
#

lol

forest rivet
#

The roof is on foiiira

weak moss
#

Burning man

forest rivet
#

bloodhound gang

weak moss
#

what r u doing guys?

#

I'm bored af.

tame ledge
#

Hacking

#

Currently waiting on wpscan to be more precise.

weak moss
#

Sounds goot. I'm waiting for a download and then i want to fix my systems

#

Currently waiting on wpscan to be more precise.
relatable

quasi jewel
#

Hate brute forcing ;-; and hate jack machine, dont do it

weak moss
#

*good, i'm sorry for my stupidness

nova lynx
#

Hate brute forcing ;-; and hate jack machine, dont do it
@quasi jewel WHATT??

#

Jack was amazing

weak moss
#

Hate brute forcing ;-; and hate jack machine, dont do it
@quasi jewel bruteforce isn't efficient enough

quasi jewel
#

@nova lynx it is but brute forcing isn't so fun

nova lynx
#

Nope

#

Took me 2 days and wanted to kick myself

quasi jewel
#

WTF

#

And you call it fun?

#

BRUUUH

nova lynx
#

I tried 2 million passwords

quasi jewel
#

No way

nova lynx
#

Yep

quasi jewel
#

Imma FUCK MYSEFL

#

And shut it

nova lynx
#

with multi-call XMLRPC

tame ledge
#

I hate brute-forcing too(because I can't remember hydra syntax)

quasi jewel
#

Lol

weak moss
#

I hate brute-forcing too(because I can't remember hydra syntax)
@tame ledge πŸ˜„

quasi jewel
#

@nova lynx any way to give me the password πŸ˜‰?

nova lynx
#

When I found the wordlist, I wanted to end it all.

#

haha you can get it.

quasi jewel
#

Lol

nova lynx
#

It's a lot more trivial than you think.

tame ledge
#

Is it in rockyou?

nova lynx
#

What distro are you running?

quasi jewel
#

Arch

#

Lol joking

#

Kali

nova lynx
#

lol It's on Kali by default

tame ledge
#

Kali with i3

nova lynx
#

and it's not Rockyou

quasi jewel
#

Damn

nova lynx
#

i3 doesn't matter

quasi jewel
#

@tame ledge Same here

#

I3 FAN HERE PPL

#

@nova lynx seclist huh?

nova lynx
#

nope

quasi jewel
#

Hm

#

HMMMM

nova lynx
#

Seclists don't come default with Kali

#

At least with my distro

quasi jewel
#

Hm

nova lynx
#

πŸ™‚

quasi jewel
#

It is defualt

tame ledge
#

Okay, I removed it

nova lynx
#

Thank you @tame ledge

quasi jewel
#

Hate brute forcing but cant stop it

#

Damn

nova lynx
#

It's a lot easier than you think.

quasi jewel
#

Imma root it

nova lynx
#

I'll help you

quasi jewel
#

Hm

#

I guess i can do it

#

Or cant

#

πŸ˜‚

#

Lets see

#

I'll let u know if i need help

#

Thanks tho

nova lynx
#

No prob

#

Ping me if needed

#

A lot easier than you're thinking

latent stirrup
#

Jack is a great room

nova lynx
#

The rest of the room, is not quite as easy.

quasi jewel
#

It is

nova lynx
#

but Jack is incredibly done.

#

Top 3 rooms on THM in my eyes.

tame ledge
#

Who created it?

nova lynx
#

THM

tame ledge
#

Yeah, but who?

quasi jewel
#

You spent 2 days and u call it easy?

#

Hm

nova lynx
#

It's not easy

#

The bruteforcing was easy

#

when I figured it out

quasi jewel
#

Of course

tame ledge
#

Can't be harder than Patents or Fatty?

#

or Multimaster

quasi jewel
#

Hm

latent stirrup
#

It's relatively simple to hard boxes

quasi jewel
#

Haven't done multimaster

#

But fatty was annoying

#

Didnt know java

#

Took me along

tame ledge
#

I've done Fatty and Patents

quasi jewel
#

I've done fatty but didnt have time for patents

#

Imma do it soon

nova lynx
#

Ironically it took me longer to bruteforce than to escalate to user && root

quasi jewel
#

If it doesn't get retired

quasi jewel
#

@nova lynx need hint, cant find the correct wordlist

tame ledge
#

I posted the name but 0day asked me to remove it

quasi jewel
#

Oh

#

I didnt see that

#

My chance...

tame ledge
#

It's default on Kali

quasi jewel
#

I know

#

But default passwords

#

HMMM

#

Damn

tropic lava
#

Wrong chat.

quasi jewel
#

I should know it

#

Lemme see

tame ledge
#

I got some creds!

tropic lava
quasi jewel
#

Okey

nova lynx
#

@quasi jewel what’s in your wordlist directory

#

I’ll tell you if it’s there.

quasi jewel
#

Yep

#

@tame ledge helped me

#

I knew the wordlist but i was trying with hydra

#

So

tame ledge
#

Hydra sucks!

quasi jewel
#

Lol

#

Because u forget the syntax

#

Lol

tame ledge
#

πŸ˜›

summer inlet
#

hey my name is Daan, im new here

tame ledge
#

Hello new, it's nice to meet you!

native wren
#

umm guys

tame ledge
#

Yes?

native wren
#

anyway link to learn to extract file , or some kinds of script to extract like .txt file at pcap challenges

#

kinda frust to do forensic challenges in pcap mind_blown

tropic lava
#

There's an artifacts thing in the file menu

#

Correction

#

Export Objects

native wren
#

omg, finally found it. Thank you @tropic lava

forest rivet
#

🍰⏲️

tame ledge
#

🍰 🍰 🍰

forest rivet
#

So

#

About that cake.

formal sparrow
#

I swear

#

Virtually every post in this channel

#

Is about your damn cake! πŸ˜†

forest rivet
#

Good

#

Now stop being green both literally and metaphorically.

formal sparrow
#

I quite like green πŸ˜›

forest rivet
#

worst.

#

blu was way better.

formal sparrow
#

Nah

#

With green

forest rivet
#

blue + green = bad

formal sparrow
#

I can Ban πŸ”¨ 😁

forest rivet
#

You love me too much.

formal sparrow
#

Meh πŸ€·β€β™‚οΈ

forest rivet
#

It's truuuuu

#

You love me, muriburi

nova lynx
#

PLZ Ban him

#

or can we make a channel called "rbash" and send him to it solely.

#

We can pop in and check on him every once in a while.

formal sparrow
#

Ooh, I like that idea

#

Sorry, just finished fixing ubuntu

hushed saddle
last marlin
#

Hope you lads are having a great weekend

twilit cairn
#

Hello

#

I have been searching online for an answer but couldn't find one

#

In mac os catalina there are two partitions of the hard drive

#

Mac HD and Mac HD - Data

#

I was wondering if it is possible to delete all my data without having to reinstall the OS from scratch

last marlin
#

this doesnt help ? never had MAc, so i have no idea tbh

twilit cairn
#

I am looking for a way to do it without having to reinstall the OS

last marlin
#

How to Restore Mac to Factory Settings? it says nothing about reinstalling it

#

Part 3: How to Restore Mac to Factory Settings without Losing Data?

#

atleast read it

twilit cairn
#

I want to lose data lol

#

Have you read it?

#

Check part 3 step 3

last marlin
#

As i said I dont have Mac, so for me reading that would be pointless

#

but if i had im sure I wouldnt be asking here for a help, cuz google got plenty of help for that

twilit cairn
#

Sure

last marlin
#

its like asking how to reset windows or linux πŸ˜„

quaint elm
#

@formal sparrow Did you fix it?

formal sparrow
#

Prove me wrong 😁

quaint elm
#

How come you fixed it?

#

Beautiful, indeed.

formal sparrow
#

Huh, that's out of date -- I moved the dock to the middle. It's also got an autohide, so it'll only actually show up with no windows present

#

How did I fix it? Or why did I fix it?

quaint elm
#

Both

formal sparrow
#

Purged every DE from the system with the TTY then reinstalled gdm3 and ubuntu-desktop (plus KDE to try it out -- turns out I don't like it)

#

Amazingly that worked

#

Why? Because I couldn't be bothered switching OS just now πŸ˜†

quaint elm
#

I wanted to install ubuntu-desktop but it's wasn't picking up my WiFi ffs

#

Well, it's gone now

formal sparrow
#

Weird

#

Did you switch when it broke on you?

quaint elm
#

I was using dual boot

#

So, windows is all I got now

formal sparrow
#

Oof

#

This is dual booted Ubuntu/Kali

#

I picked ubuntu for stability, given Kali liked bricking itself

quaint elm
#

That means I can try to complete Pwn : 0x01

#

+1

formal sparrow
#

Didn't expect Ubuntu to do it 😁

#

What's that?

quaint elm
#

My binary exploitation room

formal sparrow
#

OOH -- looking forward to that

quaint elm
#

Which was supposed to come out way earlier

#

The reading material kicked me lol

#

It's so much work on study material, like I don't want to miss anything

formal sparrow
#

Fair -- I can only imagine what binexp must be like to teach *shudder*

#

I spent a lot of yesterday reading up on SHA1 implementations for a challenge room

#

I've come to the conclusion that I'm going to have to write a dang blog post on it, because there doesn't seem to be anything that makes it really clear already out there

#

Which, of course, is a pain for learning it myself *sigh*

quaint elm
#

Ah true

#

SHA1 algorithm study?

formal sparrow
#

Nope -- my most evil challenge box to date

#

One little part of it involves coding a custom version of the SHA1 algorithm

#

With one particular step altered slightly, to give a different output

#

The output of the algorithm will be the password to log in

quaint elm
#

Oh

#

Sounds more interesting than evil

#

lol

formal sparrow
#

That? That's the least evil aspect...

#

There are some horrible parts to this plan

#

Can't wait to build it

quaint elm
#

A real challenge then

formal sparrow
#

🀞 That's what we're going for

#

Really looking forward to this binexp now though

quaint elm
#

Me too :)

#

I'm so gonna enjoy your machine based on what you said would be true πŸ˜‰

formal sparrow
#

Haha -- got the pressure now 😰 πŸ˜†

quaint elm
#

Do it with fun and excitement rather than with pressure, you'll enjoy the process. @formal sparrow

formal sparrow
#

Hehe
Don't worry - I'm kidding 😁
I've got a tonne of coursework to get done, but after that, I am going to have a lot of fun building these

#

Got about five planned

tame ledge
#

Hello!

lethal egret
#

woo time for an early night

#

catch y'all later

vestal pike
#

πŸ‘‹ see ya

pseudo escarp
#

woo time for an early night
@lethal egret early lol

graceful coral
#

Early for optional

#

I'm impressed he slept at all tbh

pseudo escarp
#

Somewhat more productive during the night/ early hours of the morning

daring canyon
#

Hi, can we get a students discount if we don't have a edu mail, but can provide all the necessary documents tk claim that?
Wanted to get the pro version!

graceful coral
daring canyon
#

Okay! I thanks

visual osprey
graceful coral
#

I've spent the past 3 hours watching old snl skits

visual osprey
#

Oof

olive sundial
#

cookie me @graceful coral

last marlin
#

i hate that this took me over 2 hours πŸ˜† 😒
@visual osprey Come back when you spent 4-5 hours just trying to answer one question

graceful coral
#

gives @olive sundial a cookie

olive sundial
#

*gives @graceful coral some πŸ₯™ *

#

oups

graceful coral
#

nom

#

Luv u @olive sundial

last marlin
#

Love is in the air

olive sundial
#

love you too pars πŸ€—

#

we are a community over here

graceful coral
#

sings we are family

olive sundial
#

sings Age is just a number

graceful coral
#

Chillll

last marlin
#

πŸ˜„

olive sundial
#

jk hahaha

last marlin
#

Guys
even tho i have changed grub time
GRUB_DEFAULT="0"
GRUB_TIMEOUT="0"
it still hangs for 5 sec before it starts loading, any ideas ?

graceful coral
#

Yes

#

Use refind @last marlin

cobalt thicket
#

I was about to say, I would take a look but I use rEFInd

graceful coral
#

@cobalt thicket <3

cobalt thicket
#

It ain't half a pain to setup tho kekw

graceful coral
#

You use the minimal theme?

cobalt thicket
#

idk

#

I haven't used my laptop in ages

graceful coral
#

Fair enough

cobalt thicket
#

I should probably re overwrite my Windows Boot Loader

#

I'm locked out of Ubuntu now smh

last marlin
#

lol, now i have to delays, i was trying to remove grub time, but now after refind it load back to grub πŸ˜„

#

hope i wont mess up things, need to find out how to safely remove grub

cobalt thicket
#

the google search counterpart to how to exit vim kekw

empty sorrel
#

closing vim will result in your entire family been cursed, I wouldn't try it

#

πŸ‘€

last marlin
#

updade-grub did the trick, refind looked find, but i dont need dual boot

#

I'm too scared to do it, cuz kali been working like a clock for me, but I would like to know how safely remove windows without messing up my system, im not using it anyway, would give me extra space on my SSD

quaint elm
#
Windows PowerShell
Copyright (C) Microsoft Corporation. All rights reserved.

Try the new cross-platform PowerShell https://aka.ms/pscore6

PS C:\WINDOWS\system32> docker run -it ubuntu
root@7d98b17712dd:/# id
uid=0(root) gid=0(root) groups=0(root)
root@7d98b17712dd:/# ls
bin  boot  dev  etc  home  lib  lib64  media  mnt  opt  proc  root  run  sbin  srv  sys  tmp  usr  var
root@7d98b17712dd:/# uname -a
Linux 7d98b17712dd 4.19.76-linuxkit #1 SMP Thu Oct 17 19:31:58 UTC 2019 x86_64 x86_64 x86_64 GNU/Linux
root@7d98b17712dd:/#
#

Finally, made that docker work

cobalt thicket
#

I'm too scared to do it, cuz kali been working like a clock for me, but I would like to know how safely remove windows without messing up my system, im not using it anyway, would give me extra space on my SSD
@last marlin If it's a partition, you'd boot a live boot USB, delete the windows partitons and resize the kali partition. If you find a guide and follow it, you should be good, but as always when doing something risky, back everything up just in case ^w^

#

Finally, made that docker work
@quaint elm I need to get WSL working again, might take a peek at docker tho

quaint elm
#

Oh

cobalt thicket
#

I haven't re-enabled the module on this install, but I also don't wanna take the plunge on WSL2, because it disabled all hypervisors other than Hyper-V according to Spopy

quaint elm
#

Yep, take a look at docker and see if it could do the work you want

cobalt thicket
#

How much of a hassle was it to get running on windows?

quaint elm
#

Not much, it'd take you 20-30 minutes at best

cobalt thicket
#

Do you reckon I could integrate it with the new windows terminal?

#

That

graceful coral
#

I've gotta try this new

#

Windows terminal

quaint elm
#

Although, remember to turn the experimental to true, that create hassle but if you know it prior to install

#

Then not much of an issue

#

Yep, tried it

#

It's quite good

#

Considering its windows

cobalt thicket
#

I've gotta try this new
@graceful coral it's pretty good, and in the Windows store now, so a lot easier to install

quaint elm
#

Yep

graceful coral
#

Neat

last marlin
#

accidently removed some stuff, now i can get my gnome started) any advice is welcome

olive sundial
tropic lava
#

@formal sparrow someone else broke their gnome

formal sparrow
#

Oof, that brings back some trauma

tropic lava
#

Still pretty fresh, no?

last marlin
#

so im not alone?😩

formal sparrow
#

@last marlin try purging gdm3 and gnome, then reinstalling them

#

Yeah, I broke it yesterday πŸ˜„

last marlin
#

no way im going to reinstall it

formal sparrow
#

Still pretty fresh, no?
@tropic lava true. Working beautifully now though.

#

no way im going to reinstall it
@last marlin you want something different?

cobalt thicket
#

I hear PTSD comes preinstalled with Gentoo now kekw

last marlin
#

i want to restore it

formal sparrow
#

I mean, your config should still be there, so it's just the software itself that you'd be getting a new copy of. All the settings would be the same

#

You could try installing that gir1.* package

#

Not a clue what that is, but it looks important

last marlin
formal sparrow
#

And have you tried running apt --fix-broken-install?

last marlin
quaint elm
#

Yes

#

Is it connected to internet? @last marlin

cobalt thicket
#

Are the apt sources still there?

last marlin
#

Is it connected to internet? @last marlin
@quaint elm yes

quaint elm
#

sudo apt install ubuntu-desktop

#

Then reboot

last marlin
#

i dont have that pakage

#

im running kali

quaint elm
#

Oh

#

Kali

#

Kali runs gnome?

last marlin
#

i have tried kali-desktop, bit it still depens on that gir1.2.gcr

quaint elm
#

Oh

last marlin
#

Kali runs gnome?
@quaint elm yes

quaint elm
#

type gdm3?

#

I mean run gdm3

last marlin
latent stirrup
#

sudo apt --fix-missing install kali-defaults kali-root-login desktop-base xfce4 xfce4-places-plugin xfce4-goodies

last marlin
#

just a black screen

latent stirrup
#

Ctrl+Alt+F1 should drop you back into terminal prompt

quaint elm
#

It can't find gui

tropic lava
#

Old kali runs gnome, or new kali if you choose gnome version

last marlin
#

no matter what i try it depends on that gir1.2-gcr-3

latent stirrup
#

sudo apt install -y gir1.2-gcr-3

last marlin
latent stirrup
#

re-configure the package database

#

sudo dpkg --configure -a

#

It might be worth running a full system update as well sudo apt update && sudo apt full-upgrade && sudo apt autoremove && sudo apt autoclean && sync

last marlin
#

the only thing i can run is apt update, the rest gives me the same error unmet dep. gir1.2

latent stirrup
#

Did the dpkg --configure run?

last marlin
#

no

latent stirrup
#

Did it give any errors?

vestal pike
#

@last marlin how about just installing i3?

last marlin
#

i cant install anything, it depends on gir1((

vestal pike
#

oh wait, I thought you were on Arch?

#

I doubt i3 depends on anything other than a display server

last marlin
#

Did it give any errors?
@latent stirrup yes, look at the last s reen i posted

vestal pike
#

lemme check quickly

latent stirrup
#

@last marlin Was that the output of running sudo dpgk --configure -a?

last marlin
#

yes

vestal pike
#

yeah, i3 only depends on these xcb-util-keysyms xcb-util-wm libev yajl startup-notification pango perl xcb-util-cursor xcb-util-xrm libxkbcommon-x11

#

just X

#

oh wait

#

you're not on Arch?

#

Sorry the screenshots look a lot like pacman

last marlin
vestal pike
#

oh weird

last marlin
#

im on kali

vestal pike
#

ah

#

i3-wm

#

you need that

#

did you try to install girl manually?

#

it seems i3 depends on i3-wm and gnome-shell depends on girl

#

so try installing them manually

#

or compiling from source

#

but as it says, do apt --fix-broken install

#

do that first

#

^

latent stirrup
#

wget http://ftp.de.debian.org/debian/pool/main/g/gcr/gir1.2-gcr-3_3.36.0-2_amd64.deb && sudo dpkg -i gir1.2-gcr-3_3.36.0-2_amd64.deb

#

Install from it's deb package ^

vestal pike
#

sounds good

latent stirrup
#

Wait, that's the wrong version

last marlin
#

will try

latent stirrup
#

you need >3.7.5

#

Wait ignore me, 36 is > 7

#

Should be fine

last marlin
#

ok

#

I do have a live usb for kali, would that make it any easier to recover?

#

maybe try to downloaded from live and get back to shell

tropic lava
#

dependency hell

latent stirrup
#

Works fine, you sure you've typed it in correctly?

last marlin
#

im checking it right now

forest rivet
#

🍰

latent stirrup
#

The cake is a lie.

forest rivet
#

incorrect

last marlin
#

mistyped gcr

forest rivet
#

the cake is a gcr

latent stirrup
last marlin
#

ok i installed it

latent stirrup
#

@last marlin Install with sudo dpkg -i <package> then re-update

#

and after it's updated, re-install etc...

last marlin
#

did restart and im back in the game)))

latent stirrup
#

Sweet

#

All working again now?

last marlin
#

Sweet
@latent stirrup i owe u big time

latent stirrup
#

Anytime my dude

last marlin
#

im back in gnome, so i think from here it should be fine

latent stirrup
#

Make sure to update etc... incase of errors or conflicts, but outside of that you should be all good

last marlin
#

reaaly man thanks for your input.. would have cost me all my weekend trying to figure it out

tropic lava
#

@last marlin idk if you're aware of this

#

Super useful

last marlin
#

@last marlin idk if you're aware of this
@tropic lava to be honest this should never happend, i was just installing some themse via synaptic, trying them out and removing, before uninstalling it they would ask me if im oke by removing other file, but looks like a accidently selected some of gnome file and thats when shit went sideways πŸ˜„

tropic lava
#

I've broke a system by installing Steam before

last marlin
#

lol

forest rivet
#

only on linux.

tropic lava
#

It installed incompatible GPU drivers

cobalt thicket
#

I restarted once

#

Bad mistake

last marlin
#

Anytime my dude
@latent stirrup dude, I hope i can buy u a drink if u ever visit Netherland.. you really saved my life there. so much pain was awaiting me if i did reinstall . Cant thank you enough:)

tropic lava
#

Right, road trip time

last marlin
#

with some mask on πŸ˜„

latent stirrup
tropic lava
#

I think bsides amsterdam was a thing?

#

Maybe postponed?

latent stirrup
#

Amsterdam trip 100%

#

Bsides Amsterdam society trip will hopefully still be a thing, depending on the whole global cough panic

cobalt thicket
#

Ew ladbible

last marlin
#

Amsterdam trip 100%
@latent stirrup Let me know, hopefully this quarantine mode will pass us soon

cobalt thicket
#

Y'all better be doin London in Oct

latent stirrup
#

Is that for london Bsides?

#

Almost forgot to cancel the hotel booking for that

cobalt thicket
#

O shut I might be down on Ports by then

#

fastest edit in the west

#

Lemme go beat this letter out of my school real quick, seeing as it's been 3 damn weeks now

latent stirrup
#

Yeah it's been a while now πŸ˜‚

cobalt thicket
#

Nick is sending increasingly passive aggressive emails 😫

forest rivet
#

is it time for cake yet?

#

passive aggressive cake?

tropic lava
#

@cobalt thicket he emailed me at 9am this morning

#

I think he read my draft early because he emailed me loosely related information and said to tryharder to research that topic

cobalt thicket
#

My bad

#

4 weeks

latent stirrup
#

Hmm, Nick sending passive aggressive emails doesn't sound right, Is this an official application to the University?

cobalt thicket
#

I swear I edited that photo smh

lethal egret
#

At least you’re getting replies

cobalt thicket
forest rivet
#

sup option. Have you gotten down from your stream fame high?

cobalt thicket
#

Took me long enough smh

forest rivet
#

Get outlook for android

cobalt thicket
#

Never

forest rivet
#

The text said it first

#

text in pictures can't lie

cobalt thicket
#

I give Google money, I'd rather die than do such a thing

forest rivet
#

You'd think that emailing would be fairly standardized now. But no

cobalt thicket
#

The outlook account goes in Gmail thank you very much

forest rivet
#

hah

#

One day i'm gonna set up my own mail server and not frick it up

cobalt thicket
#

Gl with that one chief

#

Just pay the $5

forest rivet
#

yeah, I know.. I'm gonna need it

cobalt thicket
#

It ain't worth it

forest rivet
#

I dun like the options, though :c

#

it's not about the moneys

#

and yes, I'm very aware that it's not exactly a productive dream

#

but I wanna do it none the less

latent stirrup
#

Flexing on that mail client's

forest rivet
#

it's more the mail servers I have a problem with

latent stirrup
#

Real ones hit that cat "mail.txt" |while read L; do sleep "1"; echo "$L"; done | "nc" -C -v "smtp.domain.com" "25"

forest rivet
#

that's a "client"

quaint elm
#

@last marlin Did you fix it?

latent stirrup
#

@forest rivet Nah son

#

An email client, email reader or more formally mail user agent is a computer program used to access and manage a user's email.

forest rivet
#

fine, it's not even a client :p

latent stirrup
#

That's just pumping pre-formatted messages over SMTP ports

forest rivet
#

.. :D

native wren
#

Umm guys, i know it's kinda off topic, anyone mind guide me to install stegcracker? i keep getting error /usr/bin/stegcracker: line 1: 404:: command not found

formal sparrow
#

Done that:
pip3.6 install stegcracker?

native wren
#

error xD

#
$ sudo curl https://raw.githubusercontent.com/Paradoxis/StegCracker/master/stegcracker > /bin/stegcracker
$ sudo chmod +x /bin/stegcracker ```
#

i did this

#

i already install pip3 and python3.6

#

as well

formal sparrow
#

pip3 install stegcracker

#

That do any better?

cobalt thicket
#

Is there a requirements.txt file in that repo?

formal sparrow
#

There is not

#

I had a look

native wren
formal sparrow
#

Only requirement is an active installation of steghide

#

try python3 -m stegcracker

native wren
latent stirrup
#

Make sure to remove the original file populaing /bin

native wren
#

ah

formal sparrow
#

That too ^^

#

But yeah, so that's working now

latent stirrup
#

sudo apt remove stegcracker

formal sparrow
#

You just need to give it a file πŸ˜„

#

Eh?

#

I wouldn't remove steghide...

native wren
#

then, which 1 should i remove?

#

the file of stegcracker?

formal sparrow
#

The one that you downloaded and stick in /usr/bin

#

Either way it's working when used through python3

latent stirrup
#

Wait,

$ sudo curl https://raw.githubusercontent.com/Paradoxis/StegCracker/master/stegcracker > /bin/stegcracker
$ sudo chmod +x /bin/stegcracker ```

@native wren Got thrown off by this, it wans't an apt install, just sudo rm -rf /bin/stegcracker

native wren
#

this 1 right?

latent stirrup
#

The error is probarbly because you outputted a curl error into /bin/stegcracker

native wren
#

ah i getting confused now

latent stirrup
#

Nah, /usr/bin/stegcracker was the wrong thing to delete

#

That was the python install

#

You were meant to delete /bin/stegcracker

formal sparrow
#

πŸ€¦β€β™‚οΈ Oops

#

My fault πŸ™‹β€β™‚οΈ

latent stirrup
#

re-install via pip

native wren
#

i did

#

i use pip3 install stegcracker

formal sparrow
#

rm -f /bin/stegcracker && pip3 install stegcracker

#

You might have just deleted it though...

native wren
formal sparrow
#

Do it through Python

#

You can guarantee that will work

#

python3 -m stegcracker --help

native wren
#

Oh is work

#

Thank youuuu

formal sparrow
#

Np πŸ˜„

#

Oh, one more thing @native wren

native wren
#

why isn't work on my Kali ?

#

because of my sytax command?

last marlin
#

geeweez, now i lost connection)) it says i have no networkmanager installed just by restarting pc

formal sparrow
#

echo "alias stegcracker=\"python3 -m stegcracker\"" >> ~/.bash_aliases && source ~/.bashrc

#

That'll make it so that you can just use stegcracker to activate it

native wren
#

OMG Thank you so much @formal sparrow

#

is it okay if i documentation that?

formal sparrow
#

What do you mean?

native wren
#

i mean just write document for my self on future reference

#

because you the one did guide for me

formal sparrow
#

Oh, yeah, please do 😁
You should be taking lots of notes. If you want to put that in your notebook, please do!

#

What are you using to document stuff?

native wren
#

sublime

#

i do refer like johh hammod did

formal sparrow
#

I would recommend Cherrytree myself

native wren
#

Ah OSCP did use that tools

formal sparrow
#

It's a really good way to organise potentially huge notebooks

native wren
#

alright will try out later

#

thank you for suggestion

formal sparrow
#

Give that a read if you get half a minute

#

Those are my own preferences πŸ™‚

native wren
#

Sure, i will man. thank you for helping me alot @formal sparrow and @latent stirrup

formal sparrow
#

Np

formal iron
#

cries in LaTeX

#

also AMA stream is at 9PM BST tonight right?

cobalt thicket
#

Somewhere in that region yes

#

Will be set in stone soon, just need the big man to wake up

last marlin
#

how do i unmask it)) looks like my network manager is in quarantine as well))

latent stirrup
#

sudo systemctl unmask network-manager

#

It will also be worth checking the paths in /usr/

#

What's the return of ls -altr /usr/lib/systemd/system/network-manager.service

last marlin
latent stirrup
#

Do you have any internet access?

#

Ethernet etc....

#

Oh wait I just realized that unmask ran without error

last marlin
#

nothing, im using the pphone

latent stirrup
#

What's the service status now?

#

Can you start it?

last marlin
#

same, is says its masked

latent stirrup
#

Bro what did you do to mess your system up this bad? πŸ˜‚

last marlin
#

haha

#

really i just did restart it after we brought it back fromthe dead))

#

anyways, thanks man, im gonna take a break, at least its not dead. be back later

tropic lava
#

copy off your homedir, nuke, start from 0?

latent stirrup
#

Might be a shout

#

Or do the classic turn it off and on again

last marlin
#

I was missing :
libteamdctl0_1.30-1_amd64.deb
libndp0_1.6-1+b1_amd64.deb
After that im back in the game, dont ask me for how long πŸ˜„

#

downloaded them via usb live

#

, what a start of the weekend

cobalt thicket
#

cough pg-13 pls

#

ty ^w^

last marlin
#

I must say im paranoid now,, dont want to restart πŸ˜„

cobalt thicket
#

There's nothing like turning a laptop into a server

last marlin
#

lol

#

I feel like i got closer to linux.. we managed to stay alive.

tidal bramble
#

is the zoom stuff ok for off-topic here? i removed in general

cobalt thicket
#

Yeah, should be fine in here

tidal bramble
#

does anyone have a good take on grepping zoom.us meeting ID URLs - it looks serious https://twitter.com/0x4rk0/status/1246161936808423424 and https://twitter.com/TychoTithonus/status/1246186613635297281 . Also this https://krebsonsecurity.com/2020/04/war-dialing-tool-exposes-zooms-password-problems/
also, guess you seenthat fter reseachers reverse engineered zoom's routing of calls - zoom "fixed" it https://techcrunch.com/2020/04/03/zoom-calls-routed-china/ (and FT: archived since its paywall http://archive.md/yaEWD)

@nullenc0de This works... For those that want to dupe, here is the GH repo for GetAllURLS https://t.co/VA6H9KHfBR

And use this command:

echo https://t.co/AM6KVkuwbY |gau |grep "https://t.co/EzZgu8y93y"

@nullenc0de And make sure you use grep -i:

$ fgrep 'https://t.co/jksYy7gVst' zoom.out | wc -l
8834

$ fgrep -i 'https://t.co/jksYy7gVst' zoom.out | wc -l
8842

The company said it's fixed the issue, but won't say how many users are affected.

cobalt thicket
#

I'm super interested in all the zoom stuff, I just haven't done enough research to comment

tidal bramble
#

700 r&d/product devs are overseas. over 2k+ employees. i looked at their financial filings since they're public. all this accidental routing of calls is just weird

lethal egret
#

@restive tartan ayo download league les get it boiiiiii

mossy sphinx
#

All my friends hate zoom.

restive tartan
#

@restive tartan ayo download league les get it boiiiiii
@lethal egret hell yh. Not played on ages, but will download in the next week:) relive the old days.

urban crescent
#

4 man league games! pog!

tame ledge
#

🍰

forest rivet
#

The 🍰 has become contagious. Ma1ware has started doing it now, without my prompting

pale cove
#

🍰 is the KOTH reward

forest rivet
#

sweet!

patent rain
#

the 🍰 is a lie

forest rivet
#

the :meme: is old

patent rain
#

very old

devout nest
#

@forest rivet I suppose our fellow members keep reminding you because they're not sure if you've fallen for it

#

they wanna help πŸ˜›

forest rivet
#

Guess I better start talking about 2pac, then

devout nest
#

I don't get the joke so I better leave so people won't know I didn't get it

forest rivet
#

c:

frosty obsidian
#

Nuclear warheads are locked by a more complicated version of tweezers

ripe drum
#

There's nothing like turning a laptop into a server
@cobalt thicket can turn it into some marketing spiel and rent them out for hosting..."100% power availablity - 3 hour battery backup"

#

I spent the other weekend disassembling my laptop and repasting. So much dust and crap in the fans, also didn't help that the existing thermal paste resembled dried on toothpaste more than anything else

#

Was thermal throttling constantly to 800MHz which is fun right in the middle of league games

tropic lava
#

I turned my garbage laptop into a server

graceful coral
#

Jamesy

tropic lava
#

Didn't work very well, no NIC drivers on debian

graceful coral
#

You wouldn't take my cookie would you @tropic lava

tropic lava
#

Only your session token

graceful coral
#

That's fine you can take that

ripe drum
#

Didn't work very well, no NIC drivers on debian
@tropic lava yeah that must have been pretty garbage if it wasn't even supported πŸ˜‚

tropic lava
#

Qualcomm ethernet

ripe drum
#

Start work on Monday, still hadn't quite settled in that I'll be doing a proper career job as opposed to an internship/freelance

tropic lava
#

Broadcom wifi

#

Nice!

ripe drum
#

So this weekend I fully intend on just watching the THM AMA and playing league

#

WiFi is more hassle than it's worth, first thing I did when moving into this student house was wiring it all with up with CAT6πŸ˜‚

#

Landlord was chill with it thankfully

tropic lava
#

Yeah I'm gonna pick up a Mikrotik for my place

ripe drum
#

I'm really liking the look of the new Ryzen 4 series laptops coming out but I'd wait off until I see decent Linux support

#

Mikrotik stuff is great

tropic lava
#

They're Zen2 so linux should be fine

ripe drum
#

Only really sensible priced WiFi stuff you can get that's non consumer

tropic lava
#

Yeah that's why Tik is badass

ripe drum
#

I've got an EdgeRouter X in the loft and then use 4 Tenda MW6s in a mesh on each floor of the house

#

It works surprisingly well but I have 0 control over the mesh nodes because they run in bridge mode

#

And you have to use a pretty shitty mobile app to do any sort of admin

#

Next place I'll get something decent, maybe a Ubiquiti Dream Machine... But we'll see how much money I'm willing to waste haha

forest rivet
#

What do we want?

#

🍰

#

When do we want it?

#

🍰

graceful coral
#

@tropic lava

#

Do I have permission to noot on you?

tropic lava
#

Gross

graceful coral
#

πŸ’”

#

My heart

#

You shatter it

olive sundial
#

aww

#

James you were rude

#

@graceful coral get over here

graceful coral
#

@olive sundial hey bb

olive sundial
#

heyoo

forest rivet
#

I swear, getting JDK is a CTF challenge of its own.

#

Why must Oracle be like this?!

graceful coral
#

@forest rivet IT REALLY BE LIKE THAT

olive sundial
#

still cracking

#

even though i already know the first 2 parts >.>

forest rivet
#

it doesn't give an update?

olive sundial
#

no

forest rivet
#

ew

olive sundial
#

good developer

graceful coral
#

Back in the day

forest rivet
#

at least print % every minute or something

graceful coral
#

I could just click a. Button

#

And download the jdk

#

Now I gotta go through all this account bullshit

forest rivet
#

when the rubberduck was that, pars?

#

1996?

graceful coral
#

When you could just agree to the license agreement

formal sparrow
#

Oi. SFW @forest rivet!

forest rivet
#

fine fine

#

it's been like this as long as as I can remember

graceful coral
#

@formal sparrow where's that dear autocorrect meme

forest rivet
#

10 minutes later, I received my reset password email from Oracle

graceful coral
#

Why not just use the openjdk

forest rivet
#

simple: I don't know enough to make an educated choice

graceful coral
#

πŸ˜‚πŸ˜‚πŸ˜‚πŸ˜‚

#

It's Oracle

#

That's why

forest rivet
#

I hate Oracle with a deep, primal passion

graceful coral
#

I think everyone does

forest rivet
#

oh, great. it happens even when I clear my cookies

graceful coral
#

This is a sign from the universe

#

It says use C#

forest rivet
#

i'm not making poopie in Java. i just need JDK (yes, not JRE, cause why be easy) to run something

graceful coral
#

Oh

#

I C

tropic lava
#

@forest rivet This is why I have a XUbuntu VM for my coursework

#

University expect me to use Netbeans 8.1 and JDK 8

#

I refuse to sign my soul over to oracle

#

so openjdk

forest rivet
#

I do not envy your suffering

graceful coral
#

Would you sell your soul @tropic lava for a million dollars

tropic lava
#

Not to oracle

forest rivet
#

do me a favor and forget every software architecture pattern you learn in Java

graceful coral
#

Because according to my local walmart

tropic lava
#

@forest rivet Model View Controller is nice tho

olive sundial
#

if it offers everyone an Oxford dictionary he might do

graceful coral
#

3 cookies=1 dollar

#

So I would like to buy your soul for 3 million cookies @tropic lava

tropic lava
#

My local subway will do 12 cookies for Β£4

olive sundial
#

^

forest rivet
#

That's Collateral damage, @tropic lava . You gotta be sure to nuke every bit of wrong insane info

graceful coral
#

So

#

3 cookies for a dollar

tropic lava
#

@forest rivet I'm busy learning go instead

#

golangFactoryPatternFactory

graceful coral
#

Rust >= *

forest rivet
#

oh god.

#

factorypatternfactory

#

at least it's not a factoryfactory

graceful coral
#

Factorypatternfactoryfactory

graceful coral
#

What the fuck

forest rivet
#

it's a joke, but those patterns are real

graceful coral
#

The funniest programming repo

forest rivet
#

and the reason why I advised James to forget about software architecture learned in Java. You can be insane in any language, but only in Java will you find people who encourage this

tropic lava
#

I don't understand any of that java stuff

#

@graceful coral I have a better programming language but it's not pg13 at all

forest rivet
#

does it start with brain?

tropic lava
#

No it's even worse

graceful coral
#

@tropic lava dm me

tropic lava
#

Legend has it, if you DM me asking, I'll give you a link

formal iron
#

whoever decided tron legacy soundtrack on stream

tidal bramble
#

tron soundtrack so good. reconfigured version pretty good too

formal iron
#

^^

regal socket
#

hey Boris @formal sparrow .. i disapprove your latest pfp, last one was more lit

formal sparrow
#

This one moves!

#

(and can't be used to dox me)

tropic lava
#

@formal sparrow hehe

#

It wasn't doxxing

formal sparrow
#

Haha -- this is your fault! πŸ˜†

tropic lava
#

You challenged us to OSINT you

#

I liked the purple one

formal sparrow
#

Yeah, I assumed you wouldn't succeed!

#

The purple flame?

#

I thought it clashed with the green tag too badly

tropic lava
#

I thought the contrast was nice

formal sparrow
#

Oh for crying out loud πŸ˜†

#

Seriously, do we dislike this one that much?

graceful coral
#

I also though the purple was nice

forest rivet
#

Too much green.

safe citrus
#

Kek

forest rivet
#

purple takes over now.

tropic lava
#

Oh, I forgot about mod fight club

safe citrus
formal sparrow
#

Nicer than this one?

graceful coral
#

while true; do ban NinjaJc01; done

tropic lava
#

You're not allowed

graceful coral
#

not with that attitude

forest rivet
#

Needs more parallel programming, Pars.

nova lynx
#

@graceful coral He is being mean again^

forest rivet
#

At least it wasn't to you, for once~

nova lynx
#

Well when you're mean to him, it's basically like being mean to me.

forest rivet
#

sweet

#

two for the price of one

nova lynx
#

So you got two birds stoned at once

#

as they'd say in proper english

forest rivet
#

also sweet as in bromantic

nova lynx
#

We have a bromance too, it's just very sadistic.

forest rivet
#

nah nah, two for the price of one is a perfectly common english saying, though usually with a thick accent

nova lynx
#

I don't want to hear it

forest rivet
#

What if pars said it?

nova lynx
#

You're right

#

It would have been okay

forest rivet
#

i always am

nova lynx
#

Except when you don't capitalize your 'i"

forest rivet
#

nah, nah, it's the first letter in the sentence, so it had to be capitalized already. Two capitalization rules negate

nova lynx
#

lmao

#

It would be so funny to do a KOTH streamed with audio.

#

You vs Me

tropic lava
#

I just want Dark shoutcasting

#

Like have a tournament, have dark casting from Semis onward

#

Pay him in redbull/caffine tablets

nova lynx
#

I would absolutely love that.

formal sparrow
#

Ooh, that could be fun!

nova lynx
#

He's brutal.

cobalt thicket
#

Dark is a bang man

tropic lava
#

@strange axle you know you love us

forest rivet
#

That'd probably be a very onesided match, @nova lynx.

nova lynx
#

Dark didn't give me a 0-10 rating, so I'm not entirely sure if he does...

#

On what side @forest rivet

forest rivet
#

yours of course, duh

nova lynx
#

Why?

forest rivet
#

I'm just starting out

nova lynx
#

Who cares

#

It's for fun!

forest rivet
#

Doesn't change the sidedness

nova lynx
#

The audio would be the fun part

forest rivet
#

I'd probably be better at a attack/defence sort of scenario :p

tropic lava
#

This is attack then defence

nova lynx
#

Exactly

#

This is going to be the new "thing" in the CTF world.

forest rivet
#

you know perfectly well that's not what I meant.

nova lynx
#

I can imagine a lot is going to be learned, relatively fast.

#

I've participated in ONE koth in my life.

forest rivet
#

I've participated in many. Especially in the late 90ies. Though that was in Unreal Tournament

graceful coral
#

youre gonna participate in 2 tmrw @nova lynx

nova lynx
#

You're damn right I am.

graceful coral
#

unfortunate that youre going to lose it

#

😁

nova lynx
#

hahahahhahaha

#

hhahahahahhaah

#

again

formal sparrow
#

Uh....

forest rivet
#

Uh

graceful coral
#

uh

formal sparrow
#

Don't make that threat against 0day Pars πŸ˜†

#

He's going to wipe the floor with the lot of us

#

And you know it

graceful coral
#

its not a threat its a promise

nova lynx
#

Fine, I will use my phone like I said a few days ago.

graceful coral
#

@formal sparrow you cant admit defeat

#

before the round is even played

formal sparrow
#

Oh, I'm not

nova lynx
#

I agree with that

#

I could 100% choke

formal sparrow
#

I have some evil little scripts lined up

forest rivet
#

Of course you can.

graceful coral
#

See Oracle already has his cheat scripts written

formal sparrow
#

But he's still one of the best hackers on the damn site!

#

Fight Smart, Pars

#

Fight smart

graceful coral
#

psh

#

this is a friendly game

nova lynx
#

I have some cheat scripts ready too

graceful coral
#

we should all start on equal grounds

nova lynx
#

As soon as I have access, it's over.

formal sparrow
#

I mean, are they really cheating?

#

Only if I don't get access first...

graceful coral
#

oh ok then I guess ill just go fu*k myself

#

time to make some cheat scripts

#

πŸ˜‚

tropic lava
#

Censorship bad

urban crescent
#

do it pars!

nova lynx
#

haha everyone will have them Pars

tropic lava
#

Just use better language 4head

graceful coral
#

I will noot you so hard @tropic lava

forest rivet
#

It's all over as soon as i get access. I'm going to uninstall bash, python, everything. There'll only be one terminal, and it'll be in BrainFuck

graceful coral
#

I know brainfuck

nova lynx
#

James is going to lose it

forest rivet
#

it's a proper noun

#

you're right

#

there

#

fixed it

nova lynx
#

Thank you

#

That is proper

graceful coral
#

@formal sparrow remember

forest rivet
#

You may know brainfuck, but have you actually written real stuff in it? Cause I have, and yes, I know what that says about how much of a life I have :p

graceful coral
#

an unwinnable game doesnt mean youve lost the game

#

worst case scenerio dos the box so he cant win

forest rivet
#

You just lost The Game

formal sparrow
#

Isn't that illegal?

#

Oh, wait

graceful coral
#

not with that attitude

formal sparrow
#

....

#

Bright idea

forest rivet
#

i mean, against the rules, but not illegal

lethal egret
#

@nova lynx your thm username the same as here?

graceful coral
#

it defeats the spirit of the game

nova lynx
#

No, it's ryan

#

on THM

formal sparrow
#

Figure out a method for attack -- write an autopwn. Dos the box so that it resets...

#

Run script

#

Keep everyone else out

#

πŸ˜„

graceful coral
#

exactly

#

methods dont matter, in king of the hill it's all out war! πŸ˜‚

formal sparrow
#

Yep!

graceful coral
#

write your access script once you get root

#

rm -rf / everything

#

reset the box

#

boom win

formal sparrow
#

πŸ˜†

nova lynx
#

haha

forest rivet
#

needs more parallel programming

tropic lava
#

Deleting flags is banned

graceful coral
#

my mistake

#

ill only delete every service on the box

#

ill delete everything but the flag

forest rivet
#

make a filter that deletes everything that doesn't say flag :p

graceful coral
#

removing /bin

#

doesnt delete the flag

#

😁

forest rivet
#

and then install BrainFuck

graceful coral
#

what is it

#

with you and brainfuck

forest rivet
#

It's a fun language!

#

really gets your thoughts spinning

#

plus I love the idea that you can technically make a 100% mechanical computer that would run brainfuck or some other turing language

graceful coral
#

I feel like

#

you have a framed

#

picture

forest rivet
#

yes

graceful coral
#

of your first brainf program

#

on your wall/desk

forest rivet
#

I should

strange axle
#

Reading through this chat has been an experience lol

nova lynx
#

@formal sparrow of the top of your head, what is the most torturous cipher?

#

Can I please get my answer Dark?

#

I feel unloved.

graceful coral
#

love you darky @strange axle

#

you may infact

#

be unloved @nova lynx

nova lynx
#

That's it

#

I'm leaving the server