#general

1 messages Β· Page 3 of 1

lament tendon
#

πŸ˜…

#

Yeay, likely.

glass nest
#

It's loud though!

#

So loud i probably gave free calls to everyone on my street

viral fable
#

IkrπŸ˜‚

lament tendon
#

I have an occarina, you can completely break it if you touch the main (thin) sound-making-thingy wrong.

#

Finetuning sounds is hell.

glass nest
#

Ooh nice. Is it a stone/terracotta one?

lament tendon
#

Uuuhhhh, I donβ€˜t actually know what the material is called in english.

#

Itβ€˜s like, burned stuff.

glass nest
#

Say it in German

lament tendon
#

Second.

valid mauve
lament tendon
lament tendon
#

Seems like fun!

buoyant trout
#

we got super happy we'n we fing bug in our frind website

glass nest
#

Ahh ok

naive violet
buoyant trout
#

i find passwd bug

valid mauve
glass nest
#

Hahaha 'does the maker smoke it like fish' πŸ˜„

viral fable
valid mauve
#

And I didn't notice the destroy job wasn't triggering because apparently it's gotta be imported and EXPLICITLY CALLED by extending the cleanup job in the GL TF template action.

sand trench
#

you doing some old school phone phreaking????

viral fable
boreal scarab
#

(Playing 7 days to die)

Me: "I can make bacon and eggs."
@gray sonnet : "No, I wanna die first"

gray sonnet
#

true story

loud marlin
#

@lament tendon since you are from germany... watch movie called Die Welle

bold dawn
#

Yeah, what about em?

gray sonnet
viral fable
bold dawn
#

oh you went to a rodeo? heck yeah!

#

My dad used to compete in the bull riding events

gray sonnet
viral fable
viral fable
bold dawn
#

How does it not?

valid mauve
gray sonnet
glass nest
#

Gratz Hymn!

viral fable
bold dawn
#

Now I'm a part time pentester lol

viral fable
bold dawn
#

i want to make a joke so bad

viral fable
#

Hey Hymnosi

glass nest
#

I respect the restraint, Haber πŸ™‚

viral fable
bold dawn
glass nest
#

because you are a monster.

still shell
#

im about to hack the mess out of the hill, I will be king, bow down to me all mortals

still shell
#

on tryhackme king of the hill

glass nest
#

Yah. It's the ultimate game of... Some cool words about competition...

#

(Improv is hard)

chilly veldt
#

I am currently trying to lose weight, but still want to snack, so I found some sugarfree ice pops, they quite good

bold dawn
#

it's the most nerdy sport imaginable

glass nest
#

Ooh, Love ice pops.

bold dawn
#

I am so thirsty, but I don't want to make my dog come inside

chilly veldt
#

Yeeees, currently trying out a cola ice pops

glass nest
#

You got Blue flavour?

chilly veldt
#

3 calories per pop, I am not sure

bold dawn
#

BRO

glass nest
#

Well if there are any blueys, that will do for me. Thanks Bella!

bold dawn
#

SEND ME SOME

#

only 3 calories

#

gosh

gray sonnet
bold dawn
#

I'm going to die

whole yew
#

precision engineered isn't the same thing as reliable engineered

glass nest
#

Haha, you made haber go FULL jock

bold dawn
#

I've gained weight since we found out about the baby

#

a good bit muscle, I'm still estimated at about 15% body fat

#

but now I'm 180 pounds, I was 155-160

#

but I also focused more on fighting and weights, and less rock climbing, though I've still done climbing exercises to make sure that I can climb when I need to

glass nest
#

Less Climbing? whats happened to you?

chilly veldt
bold dawn
#

Money and time

viral fable
bold dawn
#

Cant afford the membership, couldn't even afford groceries this month

#

luckily our in-laws bought us some

#

We could've pulled from our emergency fund if needed, but trying to avoid that

glass nest
#

Damn man. Shame you're slightly outside of the delivery area or you'll be getting some super unhealthy pizza to chow down on curtosy of Duke Esqy pizzas

bold dawn
#

Hoping to find ways to make some extra money, while still having time to take care of my wife, and have time with my kid when she comes

chilly veldt
#

Esqy, you want to start a shop in Denmark, I don't mind helping out

bold dawn
glass nest
#

Freelance climbing instructor?

bold dawn
#

I am NOT good enough for that lol

glass nest
#

Hehe, I know that feel πŸ˜„

bold dawn
#

I muscle my way up, not very skilled at it lmao

naive violet
chilly veldt
glass nest
#

Well, if you need any help getting any side-hustles off the ground, you know where I am.

chilly veldt
#

I did too, went from 95-80kg in 3 months

bold dawn
#

Yeah, I understand. I think the stress about being such a young, financially instable dad made me gain

glass nest
#

Thats ok, Haber. You're clearly surrounded by an amazing support network. Both physically and digitally πŸ™‚

chilly veldt
#

Esqy, you didn't answer my question, you wanna start a shop in Denmark?

bold dawn
#

Only have about 6k in our savings, need to try and keep upping that for emergency fund, and hopefully a downpayment eventually

glass nest
#

Bella... Are Domino's over there yet?

bold dawn
#

But with current standings, I'm breaking even with my checks, hopefully my recent raise helps that

glass nest
#

Dominos tried germany, but i guess pizza just isnt what german folk needed/wanted at the time

chilly veldt
glass nest
#

Hmmm... not great confidence in it...

hot cairn
chilly veldt
#

Lol

chilly veldt
glass nest
#

You know what I do for a living, right Emz?

simple wave
#

I haven’t had pizza in a hot second

hot cairn
#

Magic or smn? Idk

chilly veldt
#

Work for Domino's lol

glass nest
#

Oh, My family own a chain of Domino's. I do maintainance and other support

glass nest
#

Also Magic, but thats in my Woodshop πŸ˜„

hot cairn
#

Do you guys serve garlic fingers there

lusty elm
#

People, could you share any resources that you used for learning the networking stuff? I did some TryHackMe and HackTheBox academy modules, but I would need to understand better the http request headers for example and more concepts. I will also dive into Portswigger, but maybe you could recommend me something else...

glass nest
#

Nope. Just garlic bread. I'm sure I could make them though?

#

portswigger is more Web stuff

hot cairn
#

Must be Canadian thing

topaz hazel
#

Hi,
I was contacted by a company called "Hi-Tech Talents" offering me a remote job (Backend Engineer) for a company in US called "LTK" for 5k USD.

I am 100% sure that they are fraud based on the conversation we had and used terms like "machine is packaged and sent to me" if I get accepted. Plus they were from India (no offense) and it is pretty famous for such scams. They even sent me a coderbyte assessment which I plan to start, write some blah blah code and submit in 1 minute just to see how it evolves further.

https://www.hitechtalents.com/

What can we do to such fraudsters as Cyber students?
Is it legal to do some recon, run some attacks on their websites?
What else?

simple wave
#

That sounds delectable

bold dawn
boreal scarab
#

Never heard of Garlic Fingers before

glass nest
#

If you have to ask like that, it's probably not legal

molten sky
hot cairn
#

iirc

#

Aka where I grew up

molten sky
#

work being like figure it tf out

hot cairn
#

Break shit until it works

boreal scarab
#

We got garlic knots

#

Not fingers

hot cairn
#

@boreal scarab how’s server

boreal scarab
molten sky
#

i can hear the fans from here

hot cairn
boreal scarab
#

Think the server is processing 1 thing right now, haven't had any issues with it

#

OH, and the 128GB ram just shipped, so getting it by end of the week

#

256GB here I come!

bold dawn
#

run hyperV server on it

boreal scarab
#

It's running TrueNAS

hot cairn
bold dawn
#

yeah, that's what we have all our server's running at this point

lusty elm
twin ridgeBOT
#

Gave +1 Rep to @bold dawn (current: #76 - 78)

bold dawn
#

just swapped one out

molten sky
hot cairn
#

Proxmox or XCP-NG imo

molten sky
#

mods ban him

#

thx

bold dawn
molten sky
#

no hyper v

#

microsoft bad

hot cairn
bold dawn
#

I will get my cowboy hat and make you eat them words

boreal scarab
#

Oh, @hot cairn I got PiHole working on it πŸ˜„ The speed of it updating it's gravity list compared to a rasp pi is INSANE

hot cairn
boreal scarab
#

Xeon's go brrrrrrrrrrrrrrr

hot cairn
#

And no SD card

boreal scarab
#

Copied the config from my old to that. Just need to set it up in it's spot, get everything connected, and then I'll swap the Rap Pi PiHole DNS on my router to the server PiHole

#

I wanted to steal that switch from you lmao

hot cairn
#

Yeah just let me ship it via ups

boreal scarab
#

You better not lmao

main kraken
#

This is so fun!

bold dawn
#

glad you're having fun!

main kraken
#

πŸ˜ƒ

loud marlin
boreal scarab
#

Some French music XD

shell nova
#

Oh yeah I guess the radio in Quebec is mostly french

sick lance
#

Shame it's wrong...

#

Other wise it would be right :joy;

loud marlin
#

i had to do it... @hasty sand ❀️

boreal scarab
glass nest
#

Aww, Thats really nice πŸ™‚

boreal scarab
#

Oh I had TONS of fun driving in Quebec......

glass nest
#

And fun waiting at the border

shell nova
boreal scarab
hasty sand
twin ridgeBOT
#

Gave +1 Rep to @loud marlin (current: #26 - 282)

quiet pulsar
#

good evening

loud marlin
boreal scarab
#

The stand is 3d printed

shell nova
#

Time to ship it

quiet pulsar
shell nova
#

Gotta Hax 0day's address via clever social engineering now

loud marlin
glass nest
#

pretty sure he has a PO box :p

shell nova
sick lance
#

Unless he's moved.

glass nest
#

I think he's moved by that image

shell nova
quiet pulsar
sick lance
#

And asked of it was really that

glass nest
#

I only have his phone number

shut hawk
#

I have his discord username

glass nest
#

And even then, it's only used for pranking him during live streams.

boreal scarab
loud marlin
shell nova
shut hawk
quiet pulsar
glass nest
#

Heey Vibes. How goes the challenge?

boreal scarab
#

Anyone used Eaton UPS before?

quiet pulsar
quiet pulsar
#

so ive been off of cybersecurity for a bit

glass nest
#

Ah. Focus on them first. Hence why theres no time limit πŸ™‚

quiet pulsar
#

i was even on tv while i was gone

#

been busy

glass nest
#

Of course you were, as thats a totally normal thing to happen πŸ˜„

rapid merlin
#

do u need a openvpn to participate in koth if so where do i get the key?

boreal scarab
quiet pulsar
bold dawn
quiet pulsar
#

and it was hosted in a school near me, where i was in

quiet pulsar
#

and i was there all swag in a suit

glass nest
#

Ahh, some US high schools have a mock UN. Seen lots of sitcoms featuring it

bold dawn
quiet pulsar
boreal scarab
quiet pulsar
#

and i was the only person actually participating

blazing granite
bold dawn
#

jokes on you, I work there

boreal scarab
#

πŸ™€

main kraken
#

πŸ™€

quiet pulsar
main kraken
#

πŸ™€

quiet pulsar
#

in the movie pixels

bold dawn
#

πŸ™€

median ocean
main kraken
#

πŸ™€

bold dawn
naive violet
sick lance
#

The answer is highlighted in the text material.

naive violet
main kraken
#

Someone called me a monkey today so i called them a donkey😎

rapid merlin
quiet pulsar
naive violet
main kraken
sharp citrusBOT
quiet pulsar
main kraken
#

HUH

quiet pulsar
#

(white house)

main kraken
#

im confused

#

white house in usa?

quiet pulsar
#

yes?

main kraken
#

ooo

#

i live there😎

quiet pulsar
#

as in the only white house

main kraken
devout palm
#

Vibes - Nice about me

boreal scarab
#

@bold dawn You got that BDE?

quiet pulsar
devout palm
boreal scarab
#

Big Deck Energy?

main kraken
quiet pulsar
#

im confused

main kraken
#

same

boreal scarab
#

CHEF MIMAL!

devout palm
glass nest
#

Thats Backtrack3's Logo

loud marlin
main kraken
#

HEheheha

loud marlin
#

let's confuse ppl more

main kraken
quiet pulsar
glass nest
#

Yes! Bow to our oldness, you young whippersnappers! (and get off my lawn)

quiet pulsar
#

im 17 this year

#

that feels weird to say

#

im growing old

main kraken
glass nest
#

Yes. Old. I'm more'n double your age, Vibes πŸ˜„

boreal scarab
#

I'm getting too old

devout palm
quiet pulsar
main kraken
#

and i'll be your lawn sleeper

quiet pulsar
#

im starting

glass nest
#

mowing the lawn is the only thing you have left when you hit a certain age

quiet pulsar
#

to

#

ge

#

t

#

old

boreal scarab
#

Just had to bend down to unplug my ADS-B because it was acting very slow. ooh boy

#

There we go, ADS-B is working properly again

main kraken
#

Yes!

boreal scarab
#

CPU is a nice and toasty 58.4 C

glass nest
#

All this time, your poor 3D printer is gathering dust.

#

Emma has ruined you.

main kraken
#

YAYYYY I JUST GOT IN JANS SSH IM PRO!

main kraken
#

Whos emma

bold dawn
bold dawn
main kraken
#

U Esqy look

devout palm
#

My CPU is βˆ’273.15 Β°C 😎

main kraken
glass nest
#

Emma is some sort af android who's enthusiastic about having more storage any anyone on the planet

loud marlin
#

@glass nest im doing ollie on slate. bit extra quality... prob need 1h =/ since is 2x pass

sick lance
bold dawn
#

I am enthusiastic about being a badass

boreal scarab
#

It has been collecting dust, but since my server has arrived, I can focus on my 3d printer again, wanna know why @glass nest ?

PiHole is running on my Server now, and I can take back that Rasp Pi to use for OctoPrint

glass nest
#

everytime you mention your laser, I get a pang of guilt for not fixing mine

loud marlin
glass nest
#

Hmmm.... I'll accept that, Beerise. For now.

boreal scarab
main kraken
#

😎

hushed adder
#

Hi everyone wassup πŸ™‚

bold dawn
#

okay what is going on? lol

bold dawn
boreal scarab
#

@hot cairn ZFS is going BRRRRRR

hot cairn
#

kekw

glass nest
#

Mmmm donuts.

hushed adder
#

guys is there a way to get a free preminium xd

glass nest
#

Yes!

hushed adder
#

how

boreal scarab
#

Highest temp my CPU's have gotten is 35C, nice

#

Forbidden bubble gum.

shut hawk
glass nest
#

Win it in competitions, Or find a place that will give you free money for just standing there and process transactions for customers. At the end of the month they transfer YOU some money... Use that money - Boom. Free Subscription!

glass nest
#

The secret is, you can do that every month!

boreal scarab
shut hawk
boreal scarab
magic loom
glass nest
#

Cmon Darkhub. It's not cool to come on here and look for a way to rip off the company that literally runs the discord of the site

boreal scarab
median ocean
boreal scarab
#

@loud marlin

median ocean
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 1930)

boreal scarab
#

This is safe, right?

glass nest
#

The surface of the sun is 5600c

loud marlin
boreal scarab
boreal scarab
loud marlin
#

totaly safe and normal

boreal scarab
#

Ah, good.

#

For a second, I thought it was too hot

#

Phew

grizzled wing
#

today i learned that cyberchef has extract MAC address recipe function.

bold dawn
boreal scarab
devout palm
#

It isn't cowgirl?

main kraken
#

HEY

#

yall

#

look at my role

boreal scarab
main kraken
#

yay

#

Check my role now

#

im 0x6

devout palm
#

Esqy clan!

buoyant tree
glass nest
#

Haha, There is no clan πŸ™‚

boreal scarab
#

Used to be πŸ˜„

blazing granite
boreal scarab
buoyant tree
ember spindle
glass nest
#

Whats that, Champ?

#

posting random links on a hacking discord with no context is kinds sus.

hot cairn
buoyant tree
#

bash is better

devout palm
scarlet mantle
#

@main kraken congrats on lvl 6 bro!

sand trench
#

meep meep

#

VROOOOOOOOOOM

sand trench
#

that the wrong one

loud marlin
#

smh

rapid merlin
#

where do i get help?

bold dawn
magic loom
#

Doctors, counsellors, psychologists, then hospitals maybe

rapid merlin
#

but its not for the site or a room

bold dawn
#

what is it?

sand trench
#

ask your question here then and we will see if we can help

rapid merlin
#

capture the flag

bold dawn
#

what capture the flag?

sand trench
#

active competition or a old one like owasp juice shop???

rapid merlin
rapid merlin
sand trench
#

can't answer if it is an active ctf competition

bold dawn
#

cannot help you, sorry

rapid merlin
bold dawn
#

you may be able to find your answer on google

boreal scarab
#

Don't y'all love random as hell cuts appearing and bleeding for no reason?

sand trench
rapid merlin
sand trench
glass nest
#

Yeah, I have a bruise on the back of my hand. no idea where from.

#

not backhanded anyone recently, even a little bit.

boreal scarab
vital knoll
#

Hey

rapid merlin
#

hi

sand trench
#

you just snapped the skin by moving it to quickly while the skin was dry

sand trench
#

that is the only thingy shadow could think of to cause it

rapid merlin
glass nest
#

Swagger - Looks like you might have some research to do πŸ™‚

rapid merlin
#

yoo no way

#

thats the best i got

sand trench
#

congratz

rapid merlin
#

thx

shut hawk
#

nice!

sand trench
#

but next time click the button for word history to make it even more fun with the stats

rapid merlin
#

yea

#

thats almost double the average expert typing speed for my age

rapid merlin
glass nest
#

It's like a key.

loud marlin
#

nop at all... but it is the key

sand trench
glass nest
#

So instead of whispering your password through the door, you just use your key.

sand trench
#

this is about shadows average anyways

glass nest
#

The ssh key.

grizzled wing
#

πŸ”‘ ssshhh

rapid merlin
#

wheres that

glass nest
#

Look up SSH commands, and it will tell you how to use it.

rapid merlin
#

oh wait

#

i got two of them

loud marlin
#

when you create ssh key, they come in pair. the 2x files public one and private. and to work properly both keys are needed

rapid merlin
#

is it this one?

glass nest
#

There we go, connections are being made. so now you have some search terms.

sand trench
rapid merlin
#

like normal hashing

#

then i got it thanks

#

good night yall

glass nest
#

Wow. that was easy πŸ˜„

loud marlin
devout palm
#

Let's a go

sacred palm
#

Hi, I'm encountering a problem on the "Retro" room, can someone confirm something for me in a private message?

glass nest
#

May aswell use the whole community πŸ˜„

hasty sand
glass nest
#

I was only told recently, man. So sorry to hear. I ate a Large fries in memory of our hero.

stone lynx
#

How long will the Red team Capstone challenge last?

bold dawn
#

What happened?!?

sacred palm
twin ridgeBOT
#

Gave +1 Rep to @glass nest (current: #19 - 381)

glass nest
#

You know what, some times a little time away from the screen helps. You come back with fresh eyes

grizzled wing
#

i use eyes.refresh()

boreal scarab
glass nest
#

And you'd be married to a server

feral spoke
#

required 2fa on github going forward. any reasons why this isn't a good move moving forward?

grizzled wing
#

GitHub outlined some reasons when they initially rolled this out

glass nest
#

Because it's a hub of gits? πŸ˜„

grizzled wing
#

haha

feral spoke
real sail
#

just wondering is it allowed to use tryhackme's vpn to play minecraft with friends πŸ€”

bold dawn
#

just wondering… why?

sand trench
buoyant tree
bold dawn
#

ah, to do local play

inner stump
#

anyone know why i cant run a .elf file on the attackbox

sand trench
inner stump
#

this was an executable created for a payload using msfvenom

#

when i try to run it from the prompt it says permissions not allowed. double clicking just says there's nothing to run this type of file with

shut hawk
#

chmod +x

inner stump
#

ok ill try that

#

so it look like it ran because I didn't get an error but there's no session in metasploit

scarlet mantle
brittle lynx
#

Hello, can I bother anyone with a simple sqlite question

molten sky
#

@mossy river would probably be interested

#

btw hi jabba

molten sky
#

huh. that bot has been here since october but was just sitting idle. no message history.

boreal scarab
#

@shell nova @whole yew

molten sky
#

@boreal scarab

#

shit

boreal scarab
#

@molten sky

molten sky
#

i meant that to be a reply

#

@boreal scarab *

boreal scarab
#

@molten sky

#

I didn't

grim sparrowBOT
#

Done!

molten sky
#

but that was only the bot's first strike

crude stump
#

πŸ‘‹

sand trench
#

knowing how heavy those are yeah can see that happen

molten sky
#

heavy? they aren't heavy
what they are is awkward af to lift like that cause of all the sloshing around and unsteadiness

sand trench
#

water is heavy

molten sky
#

no u

sand trench
#

every litre ways a kilogram

boreal scarab
#

Water is wet

molten sky
#

i would guess more than a plate

#

40, 45#

#

what is that, like 20 wrong units?

boreal scarab
#

Bourbon burn

molten sky
#

what's heavier? one pound or one kilogram?

#

one pound cause kilograms are fake

sand trench
#

a stone

boreal scarab
#

A kevin

sand trench
#

welp another 503 error

sage wolf
#

feathers are the heaviest

boreal scarab
#

πŸ‘€

scarlet mantle
#

whats applying weight on u from the top is heavier than what u refering to as heavy applying weight on u attractin u down from the bottom
the air u bust up and the sky is heavier than what u call heavy, its a notion invented towards an indirect comparative end, not to be an absolute tag to refer to as a propriety, 5kg heavier than 2kg or water is heavier than calcium is just not a statement at all (like this one right here kekw )

sand trench
#

shadow is permanently squished by 1 atomspheres worth of pressure

scarlet mantle
#

xd

sand trench
scarlet mantle
#

im so proud

#

sheds a tear

grizzled wing
#

1st time watching tib3rius livestream

scarlet mantle
#

birds act weird

#

few ppl know y

#

notice their head keep tuning abruptly

#

u wouldnt get it

crude stump
#

There drones off course

crude stump
#

You have to verify

scarlet mantle
#

oh

#

nvm

crude stump
#

Do you know how?

sharp citrusBOT
scarlet mantle
#

i will

#

ty

crude stump
#

Yw

#

Smile

boreal scarab
rapid merlin
#

I’m so bad at privesc it’s crazy

mossy river
#

If you say escalating privilege istg 🀣

buoyant tree
inner stump
#

once I've established a shell and a connection with meterpreter what commands can I run?

buoyant tree
#

but probably start with whoami

rapid merlin
buoyant tree
#

or sudo -l

inner stump
#

whoami just says unknown command

rapid merlin
#

You can run hashdump

#

Can run metaspoit privesc

scarlet mantle
inner stump
#

so I can actually view someones webcam with this shell?

mossy river
# rapid merlin It’s not rlly something in particular. I just don’t look in the right places.

Escalating privilege is something that just comes with time. Similarly to knowing what tools to run to attack a specific service, but what is great about privilege escalation is that it is relatively predictable because of Linux and Windows systems being the same.

My biggest advice I can give to anyone attacking a Linux OS is to look at what is different compared to a fresh install. Most challenge boxes only install what is necessary for the service and privilege escalation. As well as looking at a default installation, you will just start to see the differences over time. For example, looking in /bin and seeing an executable that didn't exist before.

And don't be afraid to use linpeas, lse and whatever other tools exist out there. Unless you are in an exam or environment that disallows them, they are incredibly helpful. Even if they don't directly tell you what to do, if a new service is on there that isn't on a normal linux install, you will likely see it on the output and can investigate.

There are also a lot of common folders and places you can look.

And my biggest piece of advice is: Don't worry too much about being bad at privesc. It only applies to boot2root challenges. Most CTFs you find on ctftime.org or wherever do not need you to even access the box and if you are looking to go into a pentesting role, privilege escalation (or even initial access) isn't always a requirement.

Learning is a process, you are at the centre of the storm so you don't know how much you have learned, but when you reflect it will surprise you.

scarlet mantle
#

AIO what have u done NotLikeThis

#

xd

inner stump
#

any reason why screenshot just shows the windows screensaver instead of the actual desktop?

mossy river
#

Not all boxes have a GUI

inner stump
#

same with screenshare

mossy river
#

might just be a server

inner stump
#

weird

#

now how do I exit out of screenshare to enter more commands

#

im using rdp with this box so shouldn't it show the actual desktop with screenshot. it has a gui

buoyant tree
buoyant tree
scarlet mantle
#

xd was a joke as whom pfpless u helped asked if can spy on someone's webcam ahaha but he was obviously asking from a theorical scenario for science only

#

as it is well known meterpreter has that feature

buoyant tree
#

oh k

scarlet mantle
#

i love english

#

maybe he doesnt love me so much tought kekw

sand trench
#

ooooh cool shadow just figured out how to check if all their background images from source files and output had all the same filenames and file in the corosponding folders by using ls -a and the diff command

scarlet mantle
#

wp

mossy river
#

Spotify isn't hitting tonight

inner stump
#

thanks for the help guys im off for the night

boreal scarab
sand trench
#

and meep moop it is now shadows sleep sloop times to the beep boops

boreal scarab
crude stump
boreal scarab
#

I have questions, if they arent tech savvy, how eould they know to post in r/homenetworking without knowing what it is?

dreamy shell
#

it says net-something on the front, has to be networking related... πŸ˜›

#

Had a thought while at a bar after work yesterday, would careful vandalism of a QR code (scratching out some of the squares) to send a pleb to an attacker-owned domain be a viable attack vector for phishing? It seems like a lot of work to implement, but also less easy to detect than the normal approach (stick a different code over the top of the real one).

slender scaffold
#

Lol ❀️

molten sky
#

qr codes have pretty decent error checking

#

at least any decent one does

#

you could rip the entire corner off and it could very well still scan (correctly) depending on what was used to make it

scarlet mantle
dreamy shell
#

in my head I was thinking you'd need a copy of the code in advance, then decode it to get the URL and which parts of the pattern make which parts of the string (I may be completely wrong about how QR codes work). From there you'd need to identify which pattern areas you could alter to still make a readable URL string, but something with a modified domain that you could register yourself and set up with whatever payload you intended when it's loaded.

#

And then you'd need to go back and physically vandalise the QR code on the bar/table/whatever, but do it cleanly enough that the code is still readable.

#

Way, waaaaay more work than just slapping down a pre-printed sticker, but maybe better for remaining undetected for longer.

scarlet mantle
#

how accurate /10?

scarlet mantle
#

sooooouuuuury

#

sorry comes from sorrow did u know

slender scaffold
glossy portal
#

I went over the intro-to-cryptography room, I'm not sure if I understood anything, I answered the questions, but I don't think I retained anything from that, any ideas what can help me?

twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #6 - 1143)

molten sky
#

just gotta do better

glossy portal
#

{racist_joke_here}

scarlet mantle
bold dawn
#

@glossy portal Id also recommend taking notes of what you’re learning

scarlet mantle
boreal scarab
molten sky
#

so i know someone that's teaching a robotics class at a high school and is using git for them

#

noticed he's using main on his repos for it

#

just opened a new issue on it "Typo in branch name"

lyric kayak
#

Hi

pale verge
lyric kayak
buoyant trout
#

πŸ‘€

molten sky
#

πŸ‘€

hot sand
#

howdy

visual elm
#

Dogcat and Dreaming rooms DONE πŸ’ͺ that's all I've got in me for tonight lol time for some Simpsons

sinful moon
#

lol why did my EDR detect freaking Rufus on my boss’s computer. At least got to look impressive getting that sorted in under 5 minutes thought

molten sky
#

the question you should be asking is why is your boss even using rufus

#

he SHOULD be using ventoy and never needing rufus again after it's burned

sinful moon
#

lol I can say why, but was only marked as suspicious for a reason:

Abnormalities

This binary contains abnormal section names which could be an indication that it was created with non-standard development tools

General

This binary imports debugger functions

molten sky
#

lmao it uses a debugger? must be a virus

#

hi jabbas

sinful moon
mossy river
# scarlet mantle Jared Jabba ur kind toughts on this ? https://medium.com/@assume-breach/im-not-a...

Article overall has poor flow and is hard to follow. Their sections make it impossible to just scroll to the actual point of the article.

If you’re asking for my opinion on the article content, it sounds like the bitter opinion from someone who massively lacks understanding of what a penetration tester role is.

Not only does it sound like the role they were in was just terrible but I don’t even trust that they were a pentester tbh.

I am not a penetration tester nor do I work in the industry.

molten sky
sinful moon
#

I have not, I was more than reading up on it ealier. But yeah I figured. Isn’t that the multi-boot USB/ISO solution?

molten sky
#

yes. use it.

#

nothing easier

#

haven't burnt an iso onto a usb in years

sinful moon
#

Honestly never had a need for such, but it came up after some weirdo users who really needed persistence and odd use cases for flash drives

#

Totally fair

molten sky
#

literally drag and drop. i have a 128gb usb that is split half bootable isos half persistent accessable from live boot

sinful moon
#

Yeah for sure came up in my research and considered it

molten sky
#

got a dozen different isos on at once none burnt on

#

absolutely game changing

sinful moon
#

Totally fair, I’ll give it a try next time around. Sounded great.

sinful moon
molten sky
#

ay

#

do you know server hw

#

like actually know it

sinful moon
#

But heyy, I updated my Linux servers at work today πŸŽ‰

#

lol

scarlet mantle
twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #6 - 1144)

sinful moon
# molten sky like actually know it

Yeah I’ve got that PowerEdge in the home, also had a meeting with the boss regarding VMware cluster at data center of our largest client today

#

but fair until PowerEdge at home, I was all remote for servers

molten sky
#

Xeon E3-1275v5

#

how is

sour geyser
#

whats up guys

molten sky
#

sky

#

next

#

oh nice ccw inst

sinful moon
#

Bah, you hit my weak point, no I’ve not fully adjusted to Xenon naming, but I can at least tell you v5 is head of my server’s dual Xenons

#

Also can tell by me spelling it wrong thought

molten sky
#

picking out a hetzner auction server

sinful moon
#

Ah, honestly it’s hard to go wrong with VPSes for most needs

molten sky
#

i know the i# chips well but fuck if i know anything about xeon

sinful moon
#

Do see Hetzner slighly more often in phishing as the source, but nowhere near as much as OVH

#

holy crap OVH hosts a lot of phishing mail servers unwittingly

molten sky
#

yeah hetzner is pretty decent about it actually (compared to other CSPs i mean)

#

if you report they'll actually shut it down too

#

they'll never be zero ofc

sinful moon
#

Yeah personally I love DigitalOcean but can’t complain with many of the VPS providers focused on SMB/individuals

#

Yeah I’ve for sure seen at least two from DigitalOcean but very rare

molten sky
#

have you seen hetzners prices tho?

#

the auction prices?

sinful moon
#

I have not, but I’m doing kinda cheap shared VPS hosting

molten sky
#

there is no possible way to get a server anywhere with 8 TB of storage for 30 bucks a month

sinful moon
#

Oh yeah, I’m not on that scale for my Linux infra either work or personal at all

molten sky
#

but yeah they can be pretty cheap

sinful moon
#

I was surprised when full backup of my web hosting server was 110MB compressed lol, seemed large :p

#

(home directory files needed to recreate Docker Compose setup and more). Most of it is sane in the docker-compose but does need to pull in some extra files and just get things going

molten sky
#

you want 128gb ram dedi?

#

30 bucks

sinful moon
#

Not bad

#

My much lower spec shared VM hosting only slightly undercuts that

scarlet mantle
#

elizabeth is it true sysadmin win lot lot more money than pentester and redteamer

#

is it also more stressfull? and much more efforts?

sinful moon
#

lol you misunderstand, I have many many job roles in this small company

molten sky
#

ya know what's stressful?

sinful moon
#

I’m sole infosec on all bases

molten sky
#

windows

#

fuck windows

scarlet mantle
#

nice

#

and the average one

sinful moon
#

Windows does indeed stress me out on personal devices, I can’t jive with it at all. But hey I sure can administrate it via AD and Group Policy just fine, making it slightly more sane at work

#

When I do put it on personal devices, I majorly take advantage of Local Group Policy to turn off everyting I don’t like

molten sky
#

as an employee fuck windows

#

as an admin yeah that's probably more consistent

sinful moon
#

Agreed

heady stratus
#

Has anyone else done the Signature Evasion room? I find it very frustrating. The instructions are really poorly written and I've run into so many technical problems with it...anyone else experiencing that?

molten sky
#

wait, we have that?

#

i should take a look

sinful moon
#

Possibly try in the #room-help channel, you’ll get better dedicated support there. Also this is not a room I’m familiar with so it may be older

#

Yeah I don’t know, but it’s not ringing bells. But we do have more modern evasion rooms so I may have missed it. We do specifically have EDR evasion sorta rooms

heady stratus
sinful moon
#

Yep, no problem at all!

#

Chat here can just move a bit fast, just don’t mind waiting a moment, and possibly link the room in question

heady stratus
sinful moon
#

Ah alright, yeah it was ringing some bells content wise but not room name wise

molten sky
#

if i want to add a 16TB HDD it's only 20/mo

#

not bad for live storage

sinful moon
#

Indeed, lol you’re looking for full on major duty hosting while I’m mostly doing piddly stuff, but just glad to be hosting some Linux infra at all c:

molten sky
#

bouta buy a 128gb / 2x16TB dedi to host my static Hugo website

buoyant tree
#

heya Ellie

buoyant tree
molten sky
#

i can probably rent it to you

#

meet me behind the corner store with the first month

buoyant tree
molten sky
#

hetzer dedi tho

buoyant tree
#

eh then probably not

#

the reason I even need storage is to access it locally w0 relying on the internet speed

molten sky
#

12TB Exos drives can be found for like 200

#

whitelabel refirb is cheaper if you wanna buy a bunch and go raid with heavy parity (just in case)

buoyant tree
#

until then its up to my rpi 4 dying

#

with 2 4k streams and 3 1080p streams at the same time

molten sky
#

how tf are you still lvl 1

#

you've been here ages

sage wolf
#

I mean, they are also other active people, even mods themselves who are not even beyond level 4-5

#

I guess they just like to chill here while practicing on other platforms lol

molten sky
#

yeah i've been on 9 for like a year now, haven't done anything

#

i'm just surprised about 1 lol

sinful moon
#

Yeah took me one year 2022-2023 advent of cybers to finally hit max level. I love TryHackMe but it’s tricky when you do this for your job lol

sinful moon
#

I can’t speak for your infra or hosting but personally imho direct play is the way. Why transcode anything when modern host can decode just fine

glossy portal
sinful moon
#

I miss my red role that matched my avatar nearly perfectly lol

glossy portal
sinful moon
#

lol it’s fan art of Sophia Hapgood from Indiana Jones and the Fate of Atlantis (1992 - DOS)

glossy portal
#

Oh! I watched that as a kid, I don't remember it though...

sinful moon
#

lol it’s a point and click adventure game for PC but yeah it’s great

glossy portal
#

Ah then I guessed the wrong one, wasn't Indiana Jones a movie?

sinful moon
#

Sure is, but they also had LucasFilms Games, later titled LucasArts which was a game dev company

#

old off CRT shot of the character in her natural habitat lol

#

Like I said, 1992 lol

glossy portal
#

Looks neat, only 90's game I played and am familiar with is Cadillacs and Dinosaurs

sinful moon
#

Um that’s one of my fave beat’em up games of all time, so no complaints there lol

#

But there were very many amazing games from the 90s indeed

glossy portal
#

Yep, I had a lot on my PSP, I forgot most of their names though πŸ˜†

#

Oh! Sonic!

#

There was also mario

sinful moon
#

Nice nice, however I shall be back soon. Gotta run some errands πŸ™ƒ

glossy portal
#

Take care

buoyant tree
#

Also I started Gravity falls since I needed smth to pass the time and was short

#

Now stuck on binge watching it

#

on E5 atm

#

good comedy tho

silent zenith
#

I heard security+ 601 is way easier than 701 is that true?

buoyant tree
#

i did the 601

#

similar to the 701 syllabus tho

past nebula
#

Hello, I just recently joined this server and am looking for advice on colleges.
I currently attend Purdue with a major in cybersecurity (which is out of state) and am paying a large sum of money for it. Right now, im contemplating transferring to another university instate and near where I used to live so it is more affordable. I know Purdue has good connections and prestige for STEM and tech, but is it worth the price of Out of state tuition?
I hear that employers tend to not look at your degree (as long as you have one) and tend to look more towards work experience and certs.
If so, what would some of you guys choose where to go?
Thanks

rapid merlin
#

Hello

#

I need urgent help

#

I need experts lol πŸ˜†

near hawk
#

Help with?

rapid merlin
#

It’s about my phone

#

I recently got a new number ok I use my main number to text it to see if it works wasn’t getting anything I send pictures still nothings but I use the new number can send just fine so I randomly get replies from my new number which wasn’t me. Any ideas

#

My main phone is iPhone and new number is on a s24 ultra

molten sky
#

i just went to my in state poly uni

scarlet mantle
sinful moon
muted tinsel
#

hi

sinful moon
#

as I mentioned each episode having a cipher for solving hidden stuff is already neat

sinful moon
molten sky
#

i have reached a new milestone

#

my windows decrapification script can now remove the extra crap from the start menu and make it small again

#

permanently for everyone

sinful moon
#

Good stuff. Just Regedits? I know you can via GPO but… practically that’s applying regedits on end user machines

past nebula
molten sky
# sinful moon Good stuff. Just Regedits? I know you can via GPO but… practically that’s applyi...
<LayoutModificationTemplate
    xmlns:defaultlayout="http://schemas.microsoft.com/Start/2014/FullDefaultLayout"
    xmlns:start="http://schemas.microsoft.com/Start/2014/StartLayout" Version="1"
    xmlns="http://schemas.microsoft.com/Start/2014/LayoutModification">
    <LayoutOptions />
    <DefaultLayoutOverride LayoutCustomizationRestrictionType="OnlySpecifiedGroups">
        <StartLayoutCollection>
            <defaultlayout:StartLayout>
            </defaultlayout:StartLayout>
        </StartLayoutCollection>
    </DefaultLayoutOverride>
</LayoutModificationTemplate>
Import-StartLayout -LayoutPath "C:\whereever_tf_that_xml_is" -MountPath "$SystemDrive"
Remove-Item 'HKCU:\Software\Microsoft\Windows\CurrentVersion\CloudStore\Store\Cache\DefaultAccount\*$start.tilegrid$windows.data.curatedtilecollection.tilecollection'  -Force -Recurse
Get-Process Explorer | Stop-Process
molten sky
gray sonnet
#

Code wall πŸ‘€

molten sky
#

well, it won't do hkcu in my code tho

#

it'll iterate over each hku

#

but that's easier to test with

#

also need to adapt it to load the reg for users not currently loaded in hku but that's a later problem

molten sky
sinful moon
#

But realistically that is sane and looks great all things considered

gray sonnet
molten sky
sinful moon
# buoyant tree yea

Yeah you’ll notice the first time travel episode lol, they’ve literally been seeing these cameos since the start in the background

molten sky
#

welp broke windows

sinful moon
molten sky
#

just an edge prompt

sinful moon
#

Can likely just launch explorer again but lol

twin ridgeBOT
#

Gave +1 Rep to @molten sky (current: #102 - 61)

molten sky
#

can open task manager

sinful moon
#

Ctrl Shift Esc

molten sky
#

explorer is just fucked

sinful moon
#

Oh mistread, yep

molten sky
#

also weird thing

sinful moon
#

you already have it open presumably lol

molten sky
#

if i load a live snapshot while the vm is on it's fine

#

but if i load a powered off snapshot while the vm is live virt manager dies

sinful moon
#

ooh, snapshots can get weird real quick if you’re not careful

#

okay virt-manager/libvirt is pretty sane about them, nevermind

molten sky
#

uuggghhhhhhh

sinful moon
molten sky
#

my previous hku tweaks are written to just check HKU for valid SIDs and update those, but i guess i'm gonna have to change those to load everyone's NTUSERdat

#

ngl idek why i did the hku sid route

#

i knew that was only for logged in people

sinful moon
#

thx Microsoft, registry was such a good idea πŸ™ƒ

molten sky
#

honestly the registry isn't that bad of an idea -- microsoft just fucked it all up in typical microsoft fashion

sinful moon
#

It’s more like they can suggest standards but no one follows them unless the APIs strictly require it lol

molten sky
#

if by no one you mean themselves then yeah absolutely

chilly veldt
#

Morning

sinful moon
#

like lol even Linux has more of a consensus on ~/.config and etc these days than Windows does

molten sky
#

their entire company is built off of "let's do things in the most incomphrensible and inconsistent ways possible so people can't break out of our ecosystem or remove our telemetry and adware bullshit"

molten sky
#

it makes sense

#

i agree

#

but i don't like it

sinful moon
#

all in home is gross

#

I do enjoy it being a bit more clean in those regards

molten sky
#

oh my god i have dotfiles in my home directory i'll never see anyways unless i specifically want to how horrible!

#

i feel like all i've done on here the last few days is complain, lol

sinful moon
#

lol even if some of mine are legacy ~/.vimrc symbolic link to ~/.config/nvim/init.rc or whatever.

molten sky
#

windows will do that to ya

sinful moon
#

I’m an old geezer and just port my dot files foward forever at this point lol

molten sky
#

yeah i thought you said you port forwarded your dotfiles for a second there

sinful moon
#

nah lol, only minor edits for filename paths

chilly veldt
#

Dotfiles are good

molten sky
#

uuuggghhhh @sinful moon or @chilly veldt write this thing for me

#

i don't wanna do this anymore

chilly veldt
#

Narh, I just woke up and is on my way to work, I have a while basement to clean

sinful moon
#

But yeah I made begrudging but ultimately rewarding switches on Linux from screen to tmux, vim to nvim, and similar lol

#

oh urxvt to Alacritty

chilly veldt
#

I was working on an access point yesterday, they only had vi as text editor

#

Took me 4 hours just to get out of it

sinful moon
#

Yeah you do have to adjust if needed, but even I fumble with pure vi compared to vim at times

#

har har lol

chilly veldt
#

Jk, the f'er didn't work

sinful moon
#

Typically those will have nano unless it’s a container, then probs no editor at all

chilly veldt
#

It was UniFi

molten sky
#

i just had chatgpt write the code segment for me

sinful moon
#

freaking lol

molten sky
#

we good

sinful moon
#

Yeah I was going to suggest that so, problem solved lol

chilly veldt
#

It was a UniFi access point I SSH'ed into

molten sky
#

also chatgpt LOVES to comment things

#

like a lot

#
# this prints hello
Write-Host "hello"
#

fuck

sinful moon
#

just have fun with ChatGPT hallucinations

#

I tried to ask ChatGPT who wrote the MS Teams call-in on hold music, made up a name until I pressed it for sources. β€œNevermind, MS hasn’t ever said lol”

molten sky
sinful moon
#

very silly trivial thing, but something I was curious about today lol

molten sky
#

i literally just ask it "are you sure" after it's reply and then it corrects whatever issues it had

#

works every time

sinful moon
#

Yeah I just straight up asked for its sources and it backed off lol

molten sky
#

most times

sinful moon
molten sky
#

idr, can you splat piped commands

sinful moon
#

lol never ever had a reason to call into a Teams meeting before today, boss wanted a full recording but meeting fell through

#

It was actually kind of annoying attempting to research, only answers are how to change this music, not who made it

molten sky
#

ngl i'm pretty damn confused about what you're talking about

#

wait i can read i think

#

hold music

#

for the meeting

#

i can put things together sometimes

sinful moon
#

Yeah lol, you can do standard teams or call in via a phone number

#

this is the hold music while you’re waiting for the meeting to start if you choose to call in

#

default, it’s scriptable and etc, but lol, after waiting for 10 minutes listening just to be sure, I wanted to know who composed the track

#

Microsoft has never said as far as I can determine

molten sky
#

wat m8

#

that account's only other message was "m"

scarlet mantle
#

dont click

molten sky
#

ima do it

#

you can't stop me

scarlet mantle
#

@shell nova

#

nooooooooo

#

xd

sinful moon
#

Yeah let’s loop in @shell nova and similar, they may be interested in this script

molten sky
#

part of me is interested but most of me doesn't care enough

scarlet mantle
#

xdd

sinful moon
#

trivial to open in a text editor, some very interesting stuff going on

molten sky
#

you talking a peak?

sinful moon
#

I have, proceed with caution

molten sky
#

ya know what, i may as well grab it as a sample

#

anything actually interesting tho or boring

sinful moon
#

Since we’re outright discussing it, it is making weird discord API calls right off the bat

scarlet mantle
#

imagine if i was mod and this would never never hapen never

#

is ok

molten sky
#

odd that it's calling discord. wonder if it's just farming accounts

scarlet mantle
#

soon

sinful moon
#

lol minecraft and backupcodes as api calls in this shitty python framework

molten sky
#

call all the apis! they won't know which one is real!

sinful moon
#

it’s a pretty simple infostealer at first glance

rapid merlin
#

Hey guys wassup

molten sky
#

sry we don't know you

#

can't talk to strangers

sinful moon
#

lol welcome!

scarlet mantle
#

elizabeth u are sooooo slick!!

grim sparrowBOT
#

:hammer: idontknow2134#0 has been banned.

molten sky
#

hola orange guy

sinful moon
#

Thank you @naive violet

twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #1 - 2095)

chilly veldt
#

πŸ‘€πŸ‘€

molten sky
#

#1?

naive violet
#

Always

molten sky
#

sus

naive violet
#

I used to be super active in the help channels

sinful moon
#

Can’t blame you there, was one of my more rewarding parts of Discord prior to IT job lol

#

It is fun helping people

rapid merlin
#

Is there someone who'd like to study with me?

naive violet
#

I got tired of people asking for help and then arguing with the help they got

molten sky
sinful moon
#

lol, but yeah I will say it’s conditional

scarlet mantle
sinful moon
#

I’ll bring up my classic examples of my Linux tech support β€œHelp how do I install Steam on Kali” and β€œHelp my friend installed apt on Arch to install Kali Tools, why is my OS broken?!?” lol

rapid merlin
#

Cybersecurity, tryhackme

scarlet mantle
#

nice

sinful moon
#

Yeah I couldn’t believe it the first time I ran into each

#

first question was extremely common, like, lol you don’t get it kids

#

second is just… what… nooooo

molten sky
#

argh

#

you can't load the NTUSERdat if it's already loaded

#

i have to combine both methods

sinful moon
#

is it running as SYSTEM just out of curosity?

chilly veldt
#

Steam on Kali?

#

I did that in school

sinful moon
#

oh no lol

chilly veldt
#

We where playing super auto pets

sinful moon
#

it used to be that Kali was root only lol

molten sky
sinful moon
#

so it was even worse

molten sky
#

(not sys)

molten sky
sinful moon
#

lol more like thank goodness, if only for those sorta folks lol (Kyooty excluded)

#

Seen way too many just be like β€œI want Linux and hacker OS”, and just install Kali lol

#

meanwhile, Kali devs have whole page on why Kali probably isn’t right for you lol (typical Linux use cases)

chilly veldt
#

I have to clean our basement at work today, make sure everything is nice

#

And in order

sinful moon
#

Good luck, I know that’s often easier said than done

chilly veldt
#

Yeah, my boss got a little disappointed in me cause he has brought it up 8 times and it has just flown by my head

sinful moon
#

Not sure why your boss knows that much about your basement lol, but fair enough.

chilly veldt
#

Basement at work*

sinful moon
#

Ah okay that makes a bit more sense lol

chilly veldt
#

I also wrote that in my first message, you're just tired

#

Smh

#

Go to sleep

sinful moon
#

Anyways I gotta tap out. It’s much too late here, but… hey you called it lol

#

see ya cyberheart

chilly veldt
#

It's 8 am here, then I know if you're in here it's too late 🀣 cya

molten sky
#

windows gives me a headache

#

script done

#

is it gonna work?

#

let's find out

#

(it won't)

#

let the games begin

#

ugh

#

90% of it seems to work