#thm-community-media

1 messages ยท Page 33 of 1

formal sparrow
#

Not so much

slender gulch
#

Here is one for everyone. Satellite Imagery as of 4-21-2020. This is just one of hundreds of airports that have aircraft parked anywhere possible which in this image is Kansas City International. One of the runways and parallel taxiways is where over 100 of Delta Air Lines jets alone are currently parked. That runway is a bit over 10,000ft long to give idea. So sad. All the result of COVID19.

tired badger
#

Have y'all noticed a scam going on, i first heard about it on 4chan and then i went to check and they were right, i ssh to the server and it was like congrats you have won 4bitcoins u need to pay something to activate it blablabla and there are multiple posts on pastebin with multiple accounts with different ip adresses

pseudo escarp
#

Yeah

tired badger
#

Weird stuff

pseudo escarp
#

I ssh-ed in to see what was going on, it makes you pay 0.0001 fee, quite a clever scam

tired badger
#

some people almost fell for it on 4chan, how can someon with knowledge about hacking and stuff fall for this xD

pseudo escarp
#

Just because you know about hacking, doesn't mean you can't be gullible or let greed fool you

tame ledge
#

@tired badger I saw that as well, sshed into it as well, but exited the sessions after a while.

pseudo escarp
#

That 0.0001 fee could be interpreted as the network charge

tired badger
#

Looks like a smoll brain scam

last marlin
#

Have y'all noticed a scam going on, i first heard about it on 4chan and then i went to check and they were right, i ssh to the server and it was like congrats you have won 4bitcoins u need to pay something to activate it blablabla and there are multiple posts on pastebin with multiple accounts with different ip adresses
@tired badger you really need to be naive to fall for that

fading crown
#

Thanks to everyone who stopped by today!

tired badger
#

@last marlin That's what bothers me about the people who have the ability to ssh and stuff still far for this dumb scam

last marlin
#

In terminal i can use command : su, and password, to get the root, but when i logout and try to log in as root, it wont let me, any idea why ? I followed few steps from google, but not was successfull

pseudo escarp
#

@last marlin locally?

last marlin
#

@last marlin locally?
@pseudo escarp yep

tropic lava
#

You have to enable it

last marlin
#

You have to enable it
@tropic lava oke, will look into it

pseudo escarp
#

Oh in Kali, yeah they changed how root works

tropic lava
#

No it's the DE IIRC

pseudo escarp
#

You have to enable it
@tropic lava Just need to passwd root ๐Ÿ™‚ should be fine

last marlin
#

u mean su passwd root ?

pseudo escarp
#

no

last marlin
#

just passwd root ?

pseudo escarp
#

That's what I said

tropic lava
#

@pseudo escarp no, in the DE

pseudo escarp
#

DE?

tropic lava
#

Desktop environment

#

Login manager stuff

pseudo escarp
#

Yeah, log in as a normal user and passwd root, all I did to get it working

#

Then deleted the normal user for space

last marlin
#

Desktop environment
@tropic lava You mean i have to add a root user as added my non root user ?

tropic lava
#

What

#

I thought you just had to enable root login.

last marlin
#

I do change successfully root password with passwd, but still cant log in with it

#

this method didnt help me either

#

will try it later, not a deal breaker for me, just thought why i cant

graceful coral
#

@tired badger can you please make your Nick a little more sfw

graceful coral
#

I can't open any application that I download, for example immunity debugger or joplin in kali linux, why can this happen?

#

come vc for hq music

#

REEEEEEE

last marlin
#

dont shooooot

graceful coral
#

nope im gonna shoot

#

unless you give me your hidden pictures you took

#

me and santa are getting away with this!

last marlin
#

I only have hidden folders on my pc

graceful coral
#

i will take all of those

#

now lay on the ground

#

and don't make me pull the trigger

#

santa lets get th out of here

#

you mess with the noot noot

#

you get the shoot shoot

tropic lava
last marlin
#

will grc colorizer work on nmap ?

tropic lava
#

Try it and find out

last marlin
#

yes sir ๐Ÿ˜„

#

dont shoot

quiet zephyr
#

I have a problem with my apt..

#

my source.list.d is empty can someone help

last marlin
#

kali ?

quiet zephyr
#

I can update nothing

#

yeah..

graceful coral
#

@tropic lava what server is that on

last marlin
#

deb cdrom:[Kali GNU/Linux 2020-W18 Kali-rolling - Official amd64 DVD Binary-1 with firmware 20200426-01:04]/ kali-rolling contrib main non-free

#deb cdrom:[Kali GNU/Linux 2020-W18 Kali-rolling - Official amd64 DVD Binary-1 with firmware 20200426-01:04]/ kali-rolling contrib main non-free

deb http://http.kali.org/kali kali-rolling main non-free contrib

deb-src http://http.kali.org/kali kali-rolling main non-free contrib

This system was installed using small removable media

(e.g. netinst, live or single CD). The matching "deb cdrom"

entries were disabled at the end of the installation process.

For information about how to configure apt package sources,

see the sources.list(5) manual.

tropic lava
#

@graceful coral Here I think?

#

Oh no

#

Not here

#

Oh no oh no

#

HTB

last marlin
quiet zephyr
#

Do I save this as source.list file?

graceful coral
#

HTB

last marlin
#

put in your source list

quiet zephyr
#

okey

tropic lava
#

@quiet zephyr Wait, kali?

quiet zephyr
#

yeah..

tropic lava
#

Ok that's fine then

#

Was going to say otherwise, don't mix and match repos

last marlin
#

dont mix vodka with coke kinda thing, right james ? )

quiet zephyr
#

should I reboot?

last marlin
#

i dont think so

#

try sudo apt update

quiet zephyr
#

same

last marlin
#

whats th output ?

quiet zephyr
#

Reading package list ... Done

last marlin
#

is there something to upgrade ?

#

try now : sudo apt upgrade

quiet zephyr
last marlin
#

@quiet zephyr I think you are good, try to install some pkg

#

sudo apt install leafpad

tropic lava
#

@last marlin nice

quiet zephyr
#

I am not fine

#

why is this empty?

last marlin
#

/etc/apt/sources.list

#

not dot d

quiet zephyr
#

yeah I know

last marlin
tropic lava
#

.d normally signifies a directory

quiet zephyr
#

like this ?

last marlin
#

he is so awesome he managed to open folder ๐Ÿ˜„

#

@quiet zephyr yes

quiet zephyr
#

yeah I am working to this 2 hours..

#

okey

#

w8

#

unable to locate package leafpad

#

again

#

when I try to clone something or apt install it.

#

could not resolve host:..

#

its like I am not connected to the internet

#

but I AM

#

I am *

tropic lava
#

Sounds like DNS

quiet zephyr
#

I should set up it?

#

I did it

#

I think..

graceful coral
#

Man

tropic lava
#

No it sounds like DNS is broken

graceful coral
#

There are a ton of new rooms since I left

quiet zephyr
#

how can I fix it ?

last marlin
#

how can I fix it ?
@quiet zephyr sounds like you need to use timeshift to avoid such problems

quiet zephyr
#

I just installed kali linux

#

I was using them in VBOX

#

but I turned in VMware

#

for some reason..

last marlin
graceful coral
#

To me?

last marlin
#

There are a ton of new rooms since I left
@graceful coral welcome back

graceful coral
#

Thanks

quiet zephyr
#

hahahhaa

tropic lava
#

Doesn't mean your DNS works

#

dig www.google.com

quiet zephyr
#

connection timed out; no servers could be reached

tropic lava
#

@quiet zephyr dig www.google.com @1.1.1.1

quiet zephyr
#

same thing

#

conn timed out

tropic lava
#

You don't have internet

#

You might have network

#

ping 1.1.1.1

quiet zephyr
#

From 192.168.20.1 icmp_seq=1 Destination Host Unreachable

tropic lava
#

You don't have internet.

quiet zephyr
#

I can see..

#

but why I have connent ethernet and wifi adapter

tropic lava
#

huh?

quiet zephyr
#

but why?

#

I have connected ethernet and a wifi adapter

tropic lava
#

Because something is misconfigured somewhere

graceful coral
#

You are connected to the network but the network isn't providing internet

patent rain
#

@quiet zephyr check the network configuration on your vm, this is most likely the problem

quiet zephyr
#

bridged

#

@patent rain

patent rain
#

try NAT if there is an option like this

graceful coral
#

so

#

recently

#

i discovered

#

that

#

netcat is useful

#

imagine that

last marlin
#

lol

lethal egret
#

Yikes

#

Wait till you hear about wget

#

Mind blowing

last marlin
#

wget is power

graceful coral
#

lol

patent rain
#

@quiet zephyr any luck with NAT?

quiet zephyr
#

nope..

patent rain
#

did you restart the VM after changing it?

graceful coral
#

sudo -l

#

wget perms

#

jeez

quiet zephyr
#

ofc

tropic lava
#

@last marlin Keep it SFW

last marlin
#

yes sir

graceful coral
#

yesir

#

we are good child here no worry no no

graceful coral
#

we are aware of that smh ๐Ÿ˜›

#

now that i think about it sounds more creepy smh

quiet zephyr
#

FCKING ACTUALLY FIXXED IT

potent rose
#

hello world

patent rain
#

what'd you do?

quiet zephyr
last marlin
#

James is not watching anymore ๐Ÿ˜„

graceful coral
#

lmfao

quiet zephyr
#

thank you guys for help

last marlin
#

what help ? you did all by yourself

quiet zephyr
#

you helped me tho

graceful coral
#

It looks like you googled it yourself

#

why doesnt john work anymore

#

am i dumb?

#

Hm?

#

i think i forgot how to use john

#

Is that a room you are referring to?

#

OH

#

The tool

#

What are you running?

#

yes i think i forgot how to use it

#

this room

#

(I use hashcat more)

#

Hello there

#

i clearly type sudo john --wordlist=rockyou.txt hash.txt

#

Creator speaking

#

and it doesn't workkk

#

Are you in the same directory as the wordlist?

#

yes

#

and the hash

#

Are you sure

#

everything is in same directory

#

What's the error

#

as for error

#

it just says ```Using default input encoding: UTF-8
Using default target encoding: CP850
Loaded 2 password hashes with no different salts (LM [DES 128/128 SSE2])
Warning: poor OpenMP scalability for this hash type, consider --fork=2
Will run 2 OpenMP threads
Press 'q' or Ctrl-C to abort, almost any other key for status
0g 0:00:00:01 DONE (2020-04-27 23:06) 0g/s 5648Kp/s 5648Kc/s 11297KC/s !!LIVER..*7ยกVA
Session completed

#

Not an error

#

i actually think im dumb

#

I think it already finished

#

By default John's autodetect for 32 char hashes

#

Goes to LM

#

john --show hash.txt

#

Again, I don't use john

#

output of it is

#

0 password hashes cracked, 2 left

#

Do you know what kind of hash it is?

#

yes

#

its md5

#

Specify it

#

i did that 2

#

--format=Raw-MD5

#

^

#

Like that^

#

Warning: invalid UTF-8 seen reading rockyou.txt

#

Ignore that

#

That's just because rockyou has alot of junk in it

#

A lot

#

OH

#

oh

#

thats cuz im dumb

#

optional

#

yep im dumb

#

ty @graceful coral

lethal egret
#

So fun fact some versions of John wonโ€™t detect multiple hashes

graceful coral
#

I remember optional

lethal egret
#

Just saying

#

It doesnโ€™t recognise the new line

#

Or something

graceful coral
#

All the people I used to know are popping up

last marlin
#

All the people I used to know are popping up
@graceful coral they were here, its you who popped up ๐Ÿ˜„

patent rain
last marlin
#

also fun fact ๐Ÿ˜„

graceful coral
#

lol

#

I was so close to getting #1 for the month of December

#

but I burned out

#

like everyone said I would

#

i want to sleep ๐Ÿ˜ญ

#

Get some sleep! This is your chance while quarantined

quiet zephyr
#

should non-superusers be able to capture packes?

#

yes or no?

graceful coral
#

i can't i must wake my father up at 5 am

#

then i have to watch over my little brother and sister till 12 pm

#

thank god coffee exists

#

I hate history so much

#

I've spent hours on this one... ONE study guide

#

Haven't even started studying and don't even know if my answers are correct

#

oof

#

smh atleast you can go to school normally

#

Im not

#

I am doing it online

#

and I hate it

#

haha you dont get it ๐Ÿ˜›

#

anyway

#

here is a good one ๐Ÿ˜‚

#

This room is for educational purposes only, carrying out attacks explained in this room without permission from the target is illegal. I take no responsibility for your actions, you need to learn how an attacker can exploit this vulnerability in order to ensure you're patching it properly.

tropic lava
#

You know that applies right?

graceful coral
#

yeah

tropic lava
#

To more or less all of the content on THM

graceful coral
#

what i ment is its nice to see it

tropic lava
#

Some rooms really need that disclaimer

graceful coral
#

i could never agree more lmfao

olive sundial
#

hiddeneye?

graceful coral
#

xss

olive sundial
#

xss is fine

#

as long as you are on a program or your own website kekw

#

otherwise

#

get ready for the fine

graceful coral
#

fbi open up!

olive sundial
#

whaddup

graceful coral
#

๐Ÿ˜‚

#

im gonna try not to quit this room

last marlin
#

what room ?

graceful coral
tropic lava
#

Hackers dress like that with hoodies

#

I'm wearing a black camouflage hoodie with my THM shirt rn

last marlin
#

epecialy in the summer

graceful coral
#

0 suprise smh... if you are bad hacker don't you want to blend in ?

last marlin
#

wax on wax off

graceful coral
#

I mean

#

If they got access to the database, why steal cookies when they could steal the login details

last marlin
#

just for the sake of fun

graceful coral
#

cuz

#

cookies are tasty

#

7744/8000 so close to level 9

#

idk am i dumb or something

#

what does this mean

#

Add a comment and see if you can insert some of your own HTML.

tropic lava
#

That's what XSS is

graceful coral
#

so

#

i added a comment

#

and pressed enter

#

and nothing happent...

young roost
#

Add a comment and see if you can insert some of your own HTML.
@graceful coral
This means that you can inject your code through some magic tags

graceful coral
#

@young roost i know that part

#

i don't understand comment part

#

like what does that mean

#

"comment"

#

i alredy did inject it

#

with html and java

young roost
#

that means that the comment section is XSS vulnerable

graceful coral
#

but it doesn't show anything...

#

like it says

#

im so much confused

young roost
#

you should use an XSS PoC command, like alert function

graceful coral
#

i did that too

young roost
#

to see that it works

graceful coral
#

<script>alert("anything")</script>

graceful coral
#

<script>alert("noot")</script>

last marlin
#

script ahtung

graceful coral
#

__a__

urban crescent
#

shark @graceful coral

last marlin
#

just learned you can create file with cat.. omg..

tropic lava
#

waitwhat

#

cat one > two?

last marlin
#

cat > file and enter

#

you start typing , and than ctrl d

tropic lava
#

Ah, EOF

last marlin
#

I know right ๐Ÿ˜„

#

and if you want to add more text to the same file you use double >>

#

omg

#

Remain indoors ๐Ÿ˜„

#

cat is coming

graceful coral
#

so i might need help what numbers are most commonly used in usernames?

tropic lava
#

Context?

graceful coral
#

1337,666,69,1234,0000

#

and no im not making password list.

tropic lava
#

You're bordering on Rule 9 day by day

graceful coral
#

im really not

#

i want to see can i convert first name and last name to username

#

idk how to explain im building username generator

#

so basicly nothing ilgegal smh

lethal egret
#

@graceful coral everything you ask is something that could easily be found with a series of google searches

graceful coral
#

i alredy tried google

#

but nwm i kinda did read people usernames really carefully and found the most common numbers

graceful coral
#

the black helicopters are coming

#

are you ready?

#

Yep full time ready to jump

quaint elm
#

The feeling when you find a logic bug in 1700+ lines of damn code is priceless.

lethal egret
#

๐Ÿ˜ฎ

patent rain
#

!boop @pseudo escarp

#

oof

pseudo escarp
#

Hello there

patent rain
#

Hey lol

pseudo escarp
#

What's with the boop?

formal turret
#

!boop @pseudo escarp

graceful coral
#

I am banned from theCyberMentor discord. I donโ€™t even know why. ๐Ÿ˜ญ I just check various messages from their channel. I donโ€™t even reply

#

can anyone send me invite link from TCM channel?

formal turret
#

me too... but i'm not banned, i'm in naughty seat for some time which means i can't send any message in any channel in TCM for some time, you'll need a fresh account to get invite link!

#

What's with the boop?
@pseudo escarp
i think there's an error with this command

patent rain
formal turret
#

@formal turret the command won't work here, try #bot-commands
@patent rain
Ok

pseudo escarp
#

Can people stop randonly pinging me

formal turret
#

Hehehe

#

Can people stop randonly pinging me
@pseudo escarp
Ok, sorry bro

pseudo escarp
#

If you get banned or put in the "naughty seat", it's for a reason - AKA don't annoy people/admins. Don't just make a new account as you are the issue.

formal turret
#

Ok bro

pseudo escarp
#

@pale cove Would you rather write Haskell or complete THM rooms? haha Due in 3 days ๐Ÿ˜…

pale cove
#

both

pseudo escarp
#

Lockdown is providing a lot of free time tbf

pale cove
#

Why did you even put Haskell here?

#

it's not that hard

pseudo escarp
#

Relating to the putting off CW haha would rather work on THM

pale cove
#

ahh okay

quaint elm
#

Haskell is quite good.

graceful coral
#

Why do Immunity Debugger keeps saying "waiting for connections" even though I'm trying to crash it? Also it doesnt "print" any crash :/

daring zenith
#

Hello all

patent rain
#

๐Ÿ‘‹

daring zenith
#

I have an issue regarding kali 2020.1 xfce edition. After installing the os on the ssd I have some artifacts on the screen like the image below. It seems that i have problems with the amd firmwares.Can anyone suggest what to do in order to fix this issue? Is the GNOME edition make same thing? I have an amd ryzen 5 and nvidia gpu.

graceful coral
#

also looking about guides helps too

#

@blissful spindle

blissful spindle
#

any guides in particular you recommend?

graceful coral
#

let me send you, its what optional has been watching in the last stream

blissful spindle
#

sure. send it on over. I've been reading exam requirements and looking over the report template

#

you've taken the exam before?

graceful coral
#

no no

#

not yet

blissful spindle
#

ah gotcha, you enrolled?

#

in the course that is

graceful coral
#

huh? @blissful spindle

blissful spindle
#

are you enrolled in pwk? the course that goes along with the oscp

fading crown
#

I see HTB is releasing a KOTH style challenge now. ๐Ÿ˜

formal iron
lethal egret
#

They announced it around the same time our tryhackme. From the information available they have made it more team based

cobalt thicket
#

They have 2

quaint elm
#

2

#

?

lethal egret
#

Oh

quaint elm
#

Individual and team?

cobalt thicket
#

The one they dropped more info on today is their Attack Defence one

#

They are yet to say anything further on their KOTH

quaint elm
#

I'm waiting for a team KOTH for tryhackme :p

cobalt thicket
restive tartan
#

I'm waiting for a team KOTH for tryhackme :p
@quaint elm In the works ๐Ÿ˜‰

#

^ Well, Ashu and I are discussing the approach to it. I already have the code to turn it team-based - pretty easy.

quaint elm
#

Oh, waiting ๐Ÿ˜„

#

Oh, nice. Now, I am even more curious.

fading crown
#

I'm pretty excited about the new ZAP course. I like ZAP.

graceful coral
#

You just made @graceful coral's day

urban crescent
#

name a better duo than dan and runescape

formal iron
#

dan and valorant

graceful coral
#

Dan and tropical red bull

formal iron
#

lmao

urban crescent
#

ok pars, you win

cobalt thicket
#

not playing runescape is xp waste

graceful coral
#

hello everyone

tame ledge
#

๐Ÿ‘‹

graceful coral
#

I have been exploring a new area of cybersec phone tracking...

#

is there any possibility of tracking a phone using its IMEI number

formal iron
#

IMEI is just an identifier, there's nothing that is trackable about it from that point of view

#

similar to a MAC address kinda

graceful coral
#

okay, so it seams like the tellco companies just collect logs from the phone and hence they know the phone that you have been using

formal iron
#

Yup ๐Ÿ™‚

graceful coral
#

"The device is actively sending data packages to the operator through signal center that are linked with the operatorโ€™s servers and the earth-orbiting satellites. This allows it to exchange the required data for the satellites to perform trilateration and triangulation operations to situate the device on a global map."

formal iron
#

There's much much easier, accurate ways phones can be traced then going off of IMEI + location data

graceful coral
#

IMEI + location data? mmh

formal iron
#

But that's getting a bit non-whitehat to say the least

tropic lava
#

@graceful coral IMEIs are used in gov tracking

graceful coral
#

ooh okay

formal iron
#

and besides there's very few people who have the resoures for it lmao

graceful coral
#

sorry for that

tropic lava
#

There's a defcon or blackhat talk about it

formal iron
#

all good ๐Ÿ™‚

tropic lava
#

I want to say opsec failures of spies

graceful coral
#

I didn't know if it was out of scope

formal iron
#

The topic itself isn't

tropic lava
#

For you and I, it's not very feasible

formal iron
#

it's just the motivations behind it ๐Ÿ™‚

graceful coral
#

I want to say opsec failures of spies
@tropic lava A friend of mine lost his phone so he asked if I can help

tropic lava
#

Android?

formal iron
#

exactly what @tropic lava said

graceful coral
#

yeah android samsung actually

tropic lava
#

Apple and Google have really nice findmyphone stuff

latent stirrup
#

It's ya boi, back at it again to drop some serious facts on this mobile scene

#

Contact your provider

tropic lava
#

As long as they're signed in to their google account you can track your own phone

latent stirrup
#

drops mic

graceful coral
#

drops mic
@latent stirrup okay

#

thanks you all

fading crown
olive sundial
#

legend of runeterra is available on mobile woop woop

cobalt thicket
fair flower
#

damn nice ๐Ÿ‘Œ

graceful coral
pseudo escarp
#

r/pcmasterrace haha

potent rose
tropic dust
#

@potent rose you from pak?

potent rose
#

no

#

i'm from saudi

tropic dust
#

oh ok

nova lynx
#

Good afternoon ๐Ÿ˜›

#

I should be more active in the next couple days, been very busy with work.

graceful coral
#

hacktivities page is loading slowly.... anyone experiencing?

pale cove
#

anyone using black arch here?

graceful coral
#

@pale cove Ive used regular arch

#

What's up

pale cove
#

i was just a bit curious why does black arch ISO weights 14GB

graceful coral
#

Honestly

#

That amazes me too

#

But it really does come with pretty much every tool

tropic lava
#

seclists is pretty big

pale cove
#

i know, 1.4k tools

#

that's crazy

graceful coral
#

500 megabytes

#

@tropic lava

pale cove
#

kekw

graceful coral
#

Which is legit larger than the base arch iso

#

I find that extremely kekw

pale cove
#

okay

#

how easy it is to install normal arch

#

on a scale of 10

graceful coral
#

Honestly

#

It's pretty easy

tropic lava
#

@graceful coral I swear it was in the gb, I cloned it on my phone the other day

#

Let's find out

graceful coral
#

Nah not in the gbs

#

Pretty sure it's about 500 megs

tropic lava
#

@pale cove Arch wiki is fantastic

#

Can't speak for arch

pale cove
#

yeah

#

arch can be so beautiful

#

(not my photo btw ๐Ÿ‘€ )

patent rain
#

Every distro can be

graceful coral
#

Arch is amazing

patent rain
#

Arch is just the perfect base

graceful coral
#

But it's not special

patent rain
#

Because its clean

graceful coral
#

Any rice can go on any distro

tropic lava
#

Disclaimer: Work has to be put in

graceful coral
#

If you use a wm

pale cove
#

amazing

graceful coral
#

You can just bring over the config files

patent rain
#

Not if the creator provides dotfiles + program list coolguy

#

Oof that took a long time

graceful coral
#

@pale cove you can make a good looking rice in a really quick amount of time

tropic lava
#

I don't go for the traditional rice

pale cove
tropic lava
#

Clean+functional

graceful coral
#

Like gnome/kde comes with all the features you need @pale cove

#

Often with official websites that you can pull icons, wallpapers, themes off of

pale cove
#

true true

#

MATE looks good to me honestly

graceful coral
#

If you wanna go a bit highly customizable you can get a WM and polybar

#

Plenty of options and plenty of documentation

formal iron
#

Paradox is meta-brained

pale cove
#

cooctus brained

formal iron
#

noot-brained

primal quiver
#

anyone play ghost recon?

last marlin
#

Am I playing with fire adding debian repo to kali ? If kali is debian based, one would assume its safe

tropic lava
#

tl;dr don't do it

#

A repo for a single piece of software is different

last marlin
#

understood

#

Free, if you like this type of game

limpid tundra
#

Ok it was the search command, how e x p e c t e d

atomic ravine
#

.

tropic lava
#

@atomic ravine Can you not do that in every channel?

last marlin
#

@tropic lava @formal sparrow so much good ideas in room sub. from you two.

#

voted all up

tropic lava
#

It's only mods that are allowed to submit them lol

formal sparrow
#

(You know most of those are just copied from the #room-ideas channel, right? ๐Ÿ˜›)

#

One of our jobs is to move them into submissions for Admins to read through

last marlin
#

anyways, those are the rooms i woud like to see

#

and its not like you two are not doing anything )

#

give yourself a lil bit of credit

proper iris
#

@last marlin Cheers for the link. I spent far too much time and money on Stellaris, Witcher 3 and Elite Dangerous the last couple of weeks to get into this one anytime soon but it's in the collection ๐Ÿ˜›

last marlin
#

have fun ๐Ÿ™‚

tropic lava
#

@smoky idol also, production tip. Try and preserve your aspect ratio

smoky idol
tropic lava
#

Stretched video makes me sad

graceful coral
#

What background should I use for parrot distro temporarily?

patent rain
#

winxp bliss

graceful coral
#

never mind.... ninja james.... are you a bot ? ๐Ÿ˜‚ today I using discord for long time and you are always active

last marlin
#

How dare you?

graceful coral
#

joking isnโ€™t allowed? ๐Ÿ˜’

lethal egret
#

James is one of those beings that is a human bot

#

However, the only AI in here is Skidy

#

The guy never sleeps and is always focusing on developing the site

tropic lava
#

I'm just artificial stupidity instead

last marlin
#

im reading a book, and they are using snort(in kali) as an example. Found out I have no snort installed. I was trying to follow the example and tried to install it, but wasnt able to do so. Is snort so outdated ?

tropic lava
last marlin
#

i guess its no longer in repo

tropic lava
#

Happens quite a bit

last marlin
#

I guess i'll skip it.. dont want to make lot of changes to my Os

#

since im not running any server, i dont need snort right ? wireshark is more than enough for me right ?

tropic lava
#

For what?

#

What's your goal?

last marlin
#

with snort ? no goal at all ๐Ÿ˜„ its just the book uses snorts config file explaining nl, grep cat etc. at the end of the chapter there is challenge, so i wanted to coplete those challenges, but dont have that snort config file ๐Ÿ™‚ and didnt really want to isntall snort just for that reason

tropic lava
#

What are they using it as an example for?

last marlin
#

nl /etc/snort/snort.config | grep output

#

now they want me to use tail, head grep for challenges, anyways im gonna skipp that challenge since i understand what they want from me

#

really nice book by the way, Linux basics for hackers

#

that creating file with cat learn from this book ๐Ÿ™‚

#

found the config file ๐Ÿ˜„

#

now i have snort.config in /etc/snort folder

#

improvizing )

celest oasis
#

Totally off topic, but I am doing a master in Cyber security, currently doing a module in digital forensics. Perhaps the module I was most excited about doing. But dear god it is awful.The teaching materials may as well say 'Do digital forensics and write an essay!" I have been up since half one am today, half three yesterday and half four most days, before starting work at 7am. I am trying to get this is in before the deadline on the 15th May. Anyway rant over.

mental onyx
#

can anyone recommend a VPS provider thatโ€™s torrent friendly + decent speeds?

sleek trout
#

does anybnody have experience with parrot security? I tried to run parrot it just showed black screen. Does anybody how to solve that?

pseudo escarp
#

@mental onyx Digital Ocean is good

pale cove
#

maybe boot up in recovery mode and update everything @sleek trout

mental onyx
#

@pseudo escarp Iโ€™ve heard they arenโ€™t very torrent friendly. do u use them?

sleek trout
#

@pale cove what do you mean?

lavish escarp
#

hmm anyone hear heard of nlbrute
i just found it running on my server seems like someone managed to attack my rdp server and yeah i found there application trying to bruteforce other rdp servers

#

i fouudn ther bruteforce soem sort of taskmanger lookign application that i havent ran but google says its a windows 8 liek task manager for windows 7 and then somethig called unlockerportable

#

i have juust zipped it up to exsamine it more later

pale cove
#

@pale cove what do you mean?
@sleek trout Boot in recovery mode and sudo apt update && sudo apt upgrade

sleek trout
#

@pale cove im not using mac btw

lavish escarp
#

ahh well abit more detective work and i can safely say it was an Iranian that hacked me i foudn an internetshortcut in the unlockerportable folder to an .ir website

pale cove
#

@pale cove im not using mac btw
No no i mean, boot up Parrot in recovery mode, @sleek trout

graceful coral
#

after fucking 4 hours of trying to get Hyper-V to work i stumbled across a shady website that told me to disable Windows Sandbox

olive sundial
#

mind wording @graceful coral

#

yeah, it's one of the stupid requirements

tropic lava
#

Please don't open RDP to the internet. @lavish escarp

formal iron
#

^

olive sundial
#

nah, leave it open, share the ip on a few public forums too

#

nothing can possibly go wrong

narrow lotus
#

Does anyone happen to know how to make my terminal have the fancy colours with ls and things like that ๐Ÿค” Sorry if this is a dumb question, I'm new to Linux!

olive sundial
#

google might be your best bet ๐Ÿ˜›

tropic lava
#

@narrow lotus --color=auto

#

It's a default alias in linux

quaint elm
#

Probably you want to use zsh syntax highlighting extension if zsh is the shell you're using.

tame ledge
#

^

#

Zsh is nice

#

@quaint elm What theme for zsh do you use?

quaint elm
#

Agnoster, you? @tame ledge

tame ledge
#

Same ๐Ÿ˜„

quaint elm
#

Oh, it's pretty impressive.

tame ledge
#

Yep

narrow lotus
#

Ahh thanks friends, people suggested that I look into fish

#

Do you think zsh > fish?

quaint elm
#

It depends entirely on you.

#

What you think is comfortable for you is best for you.

narrow lotus
#

I'm still figuring this linux thing out

quaint elm
#

this?

#

You gonna love it though.

narrow lotus
#

Its growing on me

quaint elm
#

What happened?

narrow lotus
#

Hm?

quaint elm
#

Nevermind it.

#

That Sad Tom.

narrow lotus
#

Oh ๐Ÿ˜›

#

just tom and jerry gotta keep the homies together

graceful coral
#

Have someone experienced cursor bugs in virtualbox? I think I kinda fucked up for activating mode but now its not and its still bugged

nova lynx
#

Also, I found an unintended root but it appears to be an old box anyway. DM me if you're interested.

latent stirrup
#

Djinn was an awesome box

nova lynx
#

^

latent stirrup
#

Was 1 off first blood on that bad boy

nova lynx
#

๐Ÿ˜ฆ You were first blood in my eyes

latent stirrup
#

โค๏ธ

nova lynx
#

"There's an old saying in Texas that says fool me once, shame on you, fool me twice can't get fooled again"

#

That's all I have to say

#

James can't tell me what to do

graceful coral
#

@nova lynx I didn't disappear!

nova lynx
#

Only you can

#

Ok

#

James won't hurt us here

#

Oh no, he found us.

#

@tropic lava I was looking forward to your custom status's every day, you haven't changed it in roughly 2 weeks.

#

What's going on?

tropic lava
#

Remain indoors.

graceful coral
#

@nova lynx has this helped your doxxing efforts of me

tropic lava
nova lynx
#

Yeah, but you could at least put "Day 37, losing patience with 0day | Stay Indoors"

#

Or something like that

tropic lava
#

Doesn't fit.

nova lynx
#

Damn

graceful coral
#

Not with that attitude

nova lynx
#

Yeah, I can make it fit.

graceful coral
#

Hack discord @tropic lava

nova lynx
#

Unicode is a magical thing.

graceful coral
#

Make it fit

tropic lava
#

0day already did

hexed thicket
#

UNICODE IS MAGIC

#

Unicode is so awesome

graceful coral
#

Oh now you've got him started @nova lynx

nova lynx
#

I've hacked Discord 20 times over.

hexed thicket
#

Have you ever heard of

#

Tron?

#

Not the movie

nova lynx
#

THM takes care of their bug hunters way better.

hexed thicket
#

but the encoding?

nova lynx
#

That's a fact.

graceful coral
#

Earlier he had to do a report on the history of Unicode

#

And character encodings

hexed thicket
#

Did you know

tropic lava
nova lynx
#

hhaa i like that!

hexed thicket
#

The NSA were the first U.S. organization forced to use ASCII

graceful coral
#

I Stan Unicode

hexed thicket
#

They did not like ASCII

#

I believe they used the FIELDDATA encoding at the time

nova lynx
#

Ew

#

ASCII saved our lives.

graceful coral
#

Ya see what you did! @nova lynx

hexed thicket
#

Facts

#

Except then Latin-1 had to be made

#

Because ASCII was english only

#

And in the first draft on Latin-1

nova lynx
#

Yep

hexed thicket
#

It didn't even have all the french characters

nova lynx
#

I am also pretty knowledgeable in these things.

hexed thicket
#

They litterally just picked up some random french dude to help with the encoding, not a programmer or linguist

#

It's crazy

nova lynx
#

Yeah, the world is a crazy place.

graceful coral
#

Indeee

#

D

tropic lava
#

EBCDIC

nova lynx
#

The Government in America is 10 years behind us.

#

In regards to Technology.

graceful coral
#

I dunno man @nova lynx

#

UFO's

nova lynx
#

The only good thing to come from the NSA was Eternal Blue.

hexed thicket
#

Fun fact: Unicode might not be as prevalent today, at least in Japan, if microsoft didn't manipulate the government

nova lynx
#

So we could bust Darkstars balls.

graceful coral
#

Hahaha @nova lynx

nova lynx
#

Forget about WanaCry.

#

That wasn't a big deal or anything.

hexed thicket
#

Japan was going to use TRON but then Micosoft didn't like that so they had the U.S. impose sanctions until they decided to not use TROn

#

ok, I'm done

#

Sorry

#

I had to get that out

nova lynx
#

I appreciate the facts, I now know even more about Unicode, TRON, ASCII, and the French dude.

hexed thicket
#

lol

nova lynx
#

Be back shortly

#

Nice to meet you @hexed thicket

hexed thicket
#

Likewise

sleek trout
#

@pale cove how do I boot up parrot in recovery mode?

pale cove
#

it lets you choose while booting

#

thereโ€™s like 1. Parrot 2. Other option

#

and the recovery mode is in that option

graceful coral
#

guess who is awake

latent stirrup
#

Me

#

I'm woke af

last marlin
#

good day lads

#

im oke, thanks for aksing

#

Just came home, going to do some rooms, not sure which one, have few started alrdy

tropic lava
#

@sleek cradle sorry for all the PRs ๐Ÿ˜œ

last marlin
#

im trying to run wireshark, it asks me a pass, than nothing happens, what could it be ?

#

nvm, ran it from terminal and it started

formal iron
#

IIRC unless you tell wireshark otherwise during installation on Linux, its loopback adapters need sudo privileges so that'll be the password prompt

last marlin
#

well there was a pass promot.. but after i entered pass nothing would happen.. normaly it would start..

#

but it did start from terminal..

#

while being root

lethal egret
#

Gunna sit in KOTH-STREAM and walk through stuff like jack as a test before recording the walkthrough if anyone is interested in how to do it

last marlin
#

sure

last marlin
#

@lethal egret altho I missed a lot, but watching you do all this stuff, and at that speed was amazing. hope to get to your level one day.

lethal egret
#

Ah don't be deceived. I've done the box already so was just refreshing myself on how I did it all

#

About to do a walkthrough for YT on it so didn't wanna go in blind ๐Ÿ˜‚

last marlin
#

that doesnt not change the fact that you are good in what you are doing

urban crescent
graceful coral
#

ahh yes

#

use sudo to install sudo

tropic lava
#

I used the sudo to destroy the sudo

last marlin
#

its like use the hammer to destroy the hammer ๐Ÿ˜„

formal iron
last marlin
#

I dont know why, even getting to know a small thing in linux gives me joy

formal iron
#

it means you've learnt :^^

graceful coral
#

ahhhhhh

last marlin
#

I wish i could do releax and not think about time.. i really start hasting doing things cuz back in my mind i think about tomorrows work day, and that i have to hury up.. would love to stop thinking about it, a month ago, when i took week off, i was so realaxed and learned so much with ease

formal iron
#

Aye, all in due course my friend ๐Ÿ™‚ @last marlin

#

It's a marathon not a sprint 'n all that

last marlin
#

I hate my self for wasting time on games.. I could have learnt so much more

formal sparrow
#

You're learning now

#

That's the important thing ๐Ÿ™‚

tropic lava
#

@graceful coral If you're looking for help, try #room-help. But maybe PATH.

graceful coral
#

its not a THM box

tropic lava
#

But sudo may have just been uninstalled

graceful coral
#

I ended up getting in as root

last marlin
#

lately im getting bomborded with phishing mails

smoky idol
tropic lava
#

@smoky idol You've posted that twice now

formal iron
#

This breaks all kind of levels of meta itโ€™s great

olive sundial
#

did you guys know that you lost The Game?

patent rain
#

you too

olive sundial
patent rain
#

thanks BlobAngry
i was so good at it

#

almost won

olive sundial
#

never

#

i'm curious how many people know about The Game

tropic dust
#

which game?

olive sundial
#

The Game

#

the one you just lost too

patent rain
#

haha

frigid birch
#

bro

#

i was winning!!

wide berry
#

ah yes

patent rain
#

ah yes, the wanblows IO

#

the uglier twin

wide berry
#

forbiden windows

tropic dust
#

I hate my self for wasting time on games.. I could have learnt so much more
@last marlin Same Feeling, Got so many high ranks in multiple games, Dota,Siege,PUBG,Fortnite, (Clash of Clans) but now just studying..

patent rain
#

i try put '
it gives bug
kekw

urban crescent
#

scrolling through my twitter feed i rediscovered this gem

formal iron
#

haha thats golden

tropic lava
graceful coral
#

oooo tnx

#

it even sounds good hahaahha

tropic lava
#

Some of the mixes are awful

graceful coral
#

ooo this one sounds

#

really nice

#

it gives that agent sudo vibe to me

#

@tropic lava is she in her bathroom ?

tropic lava
#

It's a radio station in berlin

graceful coral
#

and she is just staying up like that

#

why doesn't she atleast get a chair

tropic lava
#

Because mixing is dynamic

graceful coral
#

xyz

tropic lava
#

Wait until you see when they actually mix vinyl

graceful coral
#

oki lmfao

last marlin
#

good day lads

tropic lava
#

That's with like 10mins of tweaks

tribal warren
#

Are you like Elon musk

graceful coral
#

it looks like visual studio code

slender gulch
tribal warren
#

Teach me how to be cool ๐Ÿ˜ซ

slender gulch
#

Thatโ€™ll require a TS/SCI.

tribal warren
#

I got 70p and a lot of time is that enough

slender gulch
#

๐Ÿ›ซโœˆ๏ธ๐Ÿ›ฌ

violet spindle
#

Is there anyone here who is working as purple team?

slender gulch
#

@violet spindle I do purple team.

violet spindle
#

I wanna ask you about something please

slender gulch
#

Sure thing

last marlin
#

@tropic lava What is that exactly on the screen ?

tropic lava
#

??

#

Settings manager, vscode, neofetch in a terminal

last marlin
#

got it

graceful coral
#

@tropic lava can i dm you ? ik you guys perfer to not be dmed and stuff but can i just like once ?

tropic lava
#

It depends why, that's the thing

#

we try to avoid DMs because it normally doesn't need to be DMs

graceful coral
#

questions about python smh

#

what else can you except from me ?

tropic lava
#

Google will answer 99% of them

graceful coral
#

it didn't

#

cuz i don't know how to

#

explain it to googlle

#

so he understands me

last marlin
#

ask here, im learningpython as well, maybe i will learn a thing or two

graceful coral
#

and besides you are my favorite proffesionall

#

so basicly

#

lets say i got a list

#

and it has 100 items

#

and i want it to count 3 items and then skip 2 items untill 100

#
  • skip the "" (empty stuff you k )
#

how would i do that ?

#

o

#

nwm i think i found a way

#

thanks james

#

liturally always helps me

tropic lava
#

Ok, so what you just did there

#

That's called rubber duck debugging

#

By asking for help, you have to explain the process and your logic in a clear way

#

That means you think about it slightly differently

#

Leading you to a solution

#

It's called rubber duck debugging because the person you explain it to could be replaced with a rubber duck and it'd still work

graceful coral
#

so basicly

#

i just explained it to my self?

#

JAMES you are my new favorite friend i will call you rubber duck

#

๐Ÿ˜„

tropic lava
#

And that made you actually think about what you were doing

formal iron
#

yes

tropic lava
#

No

#

Rubber duck debug alone

graceful coral
#

2 late alredy done

#

i pledge my loyality to you james

tropic lava
#

Ok, learn how to type accurately plz

tropic dust
#

but you said you only loved me ๐Ÿ˜ฆ

graceful coral
#

sir yes sir

tropic lava
#

And also look at PEP8 for python standards

#

Learn to write good code

graceful coral
#

i did

#

okay

#

let me send it to you

#

you rate it

#

1-10

#

its good

#

like

#

alot

#

trust me

tropic lava
#

Get pylint to rate it

#

Get a -100 score

#

-100 out of 10 btw

#

it's possible

graceful coral
#

o.O

#

okay so

#

if i upload my code

#

to pylint

#

and if it reaches -100

tropic lava
#

It's a python tool

graceful coral
#

hm

tropic lava
graceful coral
#

oh you mean pip ?

#

oh you don't mean pip

tropic lava
#

Pip collects python modules/programs

graceful coral
#

yes

#

and then i install them

#

with pip install

tropic lava
#

@graceful coral If you can't sleep, at least rest.

#

This is for your own good

young roost
tropic lava
#

We're uni students, we know all about sleep deprivation

graceful coral
#

good point

#

gonna go to to try after this koth

last marlin
#

@formal iron why does strings not givethe same output ? is it not the same programm ? or is it just called the same ? I was expecting the same result in kali tbh

formal iron
#

Yeah so it's quite interesting in that sense, my knowledge on the two differences is a little bit flaky in honesty. Though, the sysinternals suite from Microsoft but unlike the linux version of strings, sysinternals searches for both Unicode and ASCII, iirc linux's strings looks solely at ascii @last marlin

tropic dust
tropic lava
#

btw leaked your first name I think

pale cove
#

yeah, i see it too

lethal egret
#

what is that course?

#

seen people mention it but never thought to check ito ut

tropic dust
#

btw leaked your first name I think
@tropic lava well i have my social media connected to Discord and THM anyways

tropic lava
#

Ah fair enough

last marlin
#

Finally โค๏ธ
@tropic dust what course is this ? can you send a link

tropic dust
#

it recently came out and heard it pretty good

last marlin
#

Yeah so it's quite interesting in that sense, my knowledge on the two differences is a little bit flaky in honesty. Though, the sysinternals suite from Microsoft but unlike the linux version of strings, sysinternals searches for both Unicode and ASCII, iirc linux's strings looks solely at ascii @last marlin
@formal iron thanks man

formal iron
#

No worries. The way how I made that application plays a part too i.e. Windows forms and a .net 4.3 sdk iirc? it gets handled slightly differently on Kali Linux as it's non-windows ๐Ÿ™‚

tropic dust
last marlin
#

@tropic dust Would you be kind enough to share the content ? I mean is it video courses, text or both ?

tropic dust
#

Topics Covered?

#

or Resources

last marlin
#

the materials

#

how the course explains stuff, in videos or text ?

tropic dust
#

Videos.. its on udemy

last marlin
#

ok thank you

#

I might get it as well, price is right

#

I just bought a book for 27 euros.. 9.99 euros seems almost free

graceful coral
#

@uncut saffron nah i don't see the point of any of this so im gonna leave later today ig

#

@tropic lava rubber ducky it was nice knowing you feel free to ban me when you want smh

uncut saffron
#

Why giving up?

graceful coral
#

cuz its pointless

#

i originally came here only for networking

#

not for hacking crazy magic stuff

uncut saffron
#

Ah, yeah, this being a learning plateform, it may not be the best place for it ig

graceful coral
#

mhm tell that to networking rooms i learned alot from

tropic lava
#

Goes to hacking platform to try and learn networking
Realises there's more content than networking
pika

uncut saffron
#

I was being a bit sarcastic, there are material on networking

#

So you do you

#

I don't see why you tell James to ban ya

last marlin
#

"feel free to ban me when you want smh" What is this ? How old are you ?

graceful coral
#

cuz optional played im playing with knifes something i can't remember

#

or wait did he

#

hang on

uncut saffron
#

It doesnt matter

graceful coral
#

yeah im playing with knifes something

uncut saffron
#

If you were to be banned, trust me, you'd be already

#

You are not

#

So enjoy the plateform :)

formal iron
#

:^

#

well put

graceful coral
#

okay well now that this is out of the way if you guys need me just tag me

last marlin
#

okay well now that this is out of the way if you guys need me just tag me
@graceful coral I highly doubt im goung to ask you anything.. you act like a girl who is about to leave, but still wants him to stop her.. forgive me if the example was a bit missplaced

graceful coral
#

nah i can barely think

#

and i want to leave

uncut saffron
#

Guys, let's not get into a drama

#

Because that would be a good way for the ban hammer to fall

#

@graceful coral do what you need, breath a bit, feel free to come back later once you have a clear mind

graceful coral
#

meh bye

#

ig

uncut saffron
#

@last marlin appreciate the input, not that I totally disagree, but not the best way to put it yup

#

Let's leave it at that, okay? :)

graceful coral
#

@last marlin did you really think i have soul ?

#

๐Ÿ˜›

uncut saffron
#

Okay, stop now

graceful coral
#

okay okay

#

fr now i stop ๐Ÿ˜‚

uncut saffron
#

Listen

graceful coral
#

0% trolling

#

i promise

uncut saffron
#

I have been more than nice to you

#

Trust me, some people would have lost patience

graceful coral
#

wdym

uncut saffron
#

So please, don't abuse mine

graceful coral
#

i still don't understand what did i do in the first place but ok i stop

formal iron
#

All is well, leave it as be ๐Ÿ™‚

uncut saffron
#

As CMNtic and I said earlier, yeah, forget that, leave it where it is

#

Going on will only bring troubles

graceful coral
#

its fine

graceful coral
#

Do you get exp when playing koth?

olive sundial
#

yeah

#

life experience

formal sparrow
#

No...

#

Haha

graceful coral
#

oh okay

#

Pro tip

#

If any of you have a switch Splatoon 2 multiplayer is free for a week

last marlin
#

MAstaa, cant believe we made it ๐Ÿ˜„

turbid tusk
tropic dust
#

sharing it here is allowed?

graceful coral
#

post it in #resources as well please ๐Ÿ˜ @tropic dust

graceful coral
graceful coral
#

Nwm im dumb

cobalt spruce
#

no you right, I should post it in resources I guess.