#general

1 messages ยท Page 26 of 1

shell nova
#

I actually submitted that talk as a joke

glass nest
#

and my hollow skull makes my voice sound deeper

devout palm
#

Whenever i sing on my own, it feels great at first but then i ruin a note and feel embarrassed

sick lance
shell nova
#

My recorded voice is deeper than what I hear

glass nest
#

i'd prefer Morgan, but Barry is cool ๐Ÿ˜„

sick lance
#

Morgan White doesn't have the same ring to it.

shell nova
#

Barry Freeman?

glass nest
#

'Andy Dufresne'

sick lance
#

White, Barry White.

shell nova
#

I know, I was taking the joke too far, again

devout palm
#

Coffee coffee coffee

shell nova
#

Tea?

devout palm
#

That'd work too

glass nest
#

Hot Bovril?

devout palm
#

beef tea?

glass nest
#

Pretty much ๐Ÿ˜„

devout palm
#

Sure

chilly veldt
#

On my way to work nr2

fiery quest
#

where would i go to learn about yersinia network protocols

pallid epoch
#

Anyone here have their own CVE registered

near hawk
#

Pretty sure quite a few people here do

chilly veldt
#

Yeah, Ryan does I think

shut hawk
#

Many do

pallid epoch
#

How much time does it take for a confirmed bug to be registered as the CVE? (If the company itself is in CNA)?

#

Average

near hawk
#

I believe muiri has one as well not sure

pallid epoch
chilly veldt
#

Could easily yes

#

Have friends who have waited 3 months on theirs before they got it

near hawk
#

Yea depens on severity and patching i guess

lament tendon
#

Just installed QubesOS.
Itโ€˜s completely broken.
I hate it here.

rapid merlin
#

ngl these active directory stuff got me on ropes

#

the entire thing is just intertwined

ionic bloom
#

Its open flr everyone btw

shell nova
bold latch
proven quartz
pallid epoch
shell nova
proven quartz
boreal scarab
#

Psychopaths

#

The blockbuster one ๐Ÿ’€

#

I remember going to those and renting PS2 games ๐Ÿ’€

devout palm
chrome marsh
#

Hi everyone, I was just curious do we have roles we can assign ourselves if your going/becoming a red teamer or Blue teamer..etc

devout palm
#

IIRC Red teamer role was for an event and it got deleted

#

There are no specific roles for that

chrome marsh
#

Ah I see thank you!

smoky isle
lament tendon
#

dnf is not present either.

shut hawk
#

What are you installing it for?

mossy river
#

L Bozo

mossy river
#

Going over old clips with my friends is so funny

shut hawk
#

Managed to do a 720 today skiing! (definitely didn't fall over at the end)

mossy river
#

ooo

#

now do a backflip

shut hawk
#

check dms

bold latch
whole yew
bold latch
#

You ever think about how intensive Qubes probably is on disks? It has to commit a read of a few GBs worth of template data each time a new machine is started to copy to mem

chrome marsh
bold latch
drifting maple
#

If i have to make a ret2libc atack how do i leak the libc base address on the remote system? I can do a intf vulnerabilty btw, and also i have PIE enbled on the binarry

scarlet mantle
drifting maple
#

yes

simple valve
#

someone can help you there more

lament tendon
#

Lmao.

#

Currently preparing a new installation media, maybe that will work.

lament tendon
#

For the VMs it showed a little over 1.2 TB being available.

#

So that should be ok, I suppose.

#

Wonder whether it has something to do with the fact that I have two separate SSDs, maybe I should install it on only one disk or something.

boreal scarab
#

To 3d print an m.2 screw hmmmmm

glass nest
#

thats a challenge

boreal scarab
#

Yah, so tiny

#

Even with 0.4 or 0.6mm nozzle at 0.1/0.2 layer height it's still going to be a PITA

glass nest
#

Yeah. filament is 1.75.

#

Just the width of that.

#

might be easirt to make a 2mm 'pin' then tap it

boreal scarab
#

It's so tiny. I can't find someone on Thingiverse who has posted it kekw

glass nest
#

I don't think it'd be possible..

#

just based on the filament/nozzle with.

#

It'd have to be smaller/equal to the threads

boreal scarab
#

To spend pennies at a hardware store for one, or hope that the 3d printed 2mm pin doesn't break in my server... HMMMMM

glass nest
#

Print it. Don't risk leaving the house. Bears live in the outside.

boreal scarab
#

Like it's already got a standoff in it, so can't put my own standoff

#

Because this thing is a PITA to get out

boreal scarab
#

Got the standoff out, thanks IFixIt. Never have used the top row. Legit only use the J1 bit, cause that's the standard size for everything electronic apparently lol

glass nest
#

So you were just whinging for no real reason?

boreal scarab
#

A yup

#

... standoff is stuck in this bit

glass nest
#

Hahaha

#

I mean.. Oh, thats so bad for you

devout palm
#

hihi

glass nest
#

Sorry, that was a cough - Might have looked like laughter

devout palm
#

3D Printing is pretty awesome

#

When i get one, i will build a raspberry pi case

glass nest
#

Nah, it's boring.

devout palm
#

you can do everything

glass nest
#

Dunno, i'm just being argumentitive for no reason

#

And I've not printed anything in days ๐Ÿ˜„

devout palm
#

Phone case, phone holder, roof

boreal scarab
#

Welp, hardware store I go, because this standoff from my dad's new rig is not the right height, and the screw is too short to screw into this server standoff

glass nest
#

good luck. I hope the bears don't get you

boreal scarab
#

At this point, I hope they do kekw

clear jackal
#

@stoic surge please do not send me unsolicited DMs

stoic surge
#

It would be helpful if someone could answer my queries . I did not get any response previously .

#

@clear jackal

glass nest
#

cmon man. We are all just people here, volounteering our own time.

stoic surge
#

I would refrain from doing so , it's just that I needed some guidance as a beginner on how to approach certain things . Hope all's cool

clear jackal
glass nest
#

Can you be at my beck an call? In case I have a moose-based emergency?

#

They are rare, but they happen

stoic surge
#

Sorry for disturbing

mossy river
#

@stoic surge Have you read the server rules?

clear jackal
glass nest
#

them spindly legs have a lot of power, it seems

blazing granite
hollow pivot
# stoic surge Sure . You could have put it in a better way tho

Just saw your post in #cyber-and-careers , your question might need to be a bit more specific than "How should I go about things"

Here are some roadmaps that could help https://www.sans.org/cyber-security-skills-roadmap/ and https://pauljerimy.com/security-certification-roadmap/

As for TryHackMe, you can start with the fundamentals (Complete beginner or/and Pre Security paths) then go onto JR pentester and Red teaming paths

IT Security Certification Roadmap charting security implementation, architecture, management, analysis, offensive, and defensive operation certifications.

stoic surge
#

@mossy river I happened to make a mistake and I do apologise. It's a rookie error .

mossy river
stoic surge
#

I posted my queries but somehow they didn't get through for a couple of days . In the heat of the moment , I went ahead for personal feedback .

stoic surge
rapid merlin
#

hello ๐Ÿ˜„

stoic surge
glass nest
#

Gonzo has given you some solid advice above

stoic surge
twin ridgeBOT
#

Gave +1 Rep to @hollow pivot (current: #51 - 129)

stoic surge
#

Earlier

hollow pivot
sand trench
#

Waits for new tryhackme room exitedly

rapid merlin
#

Guys, It is possible To do Evil Twin Attack with ESP32? Or it is possible with ESP8266 only?

lament tendon
#

I have an ISP32 with a 2.4GHz wifi chip, I'd suppose that could work.

#

Never tried it tho.

mossy river
finite basalt
#

I've got one programmed for BLE sniffing, it's quite cool, works with wireshark as an external capture interface using a python script

rapid merlin
devout palm
#

What's up James

naive violet
#

@lament tendon @finite basalt You seen the esp32 based satellite ground station project?
Receive data from spaaaaaaaaaaace

lament tendon
lament tendon
crude stump
#

Hello

#

Bots a opp

#

Before I got rudly muted by the bot. I was going to send the offical discord for NZXT. They have there own discord if you want to ask them technical questions

lament tendon
crude stump
#

๐Ÿ˜‚

#

Yes

shell nova
#

yay comments!

crude stump
#

Not cool comments

lament tendon
#

Is this a room youโ€˜re making?

crude stump
shell nova
#

making an easy CTF

devout palm
shell nova
#

shouldn't be

lament tendon
devout palm
#

Just noticed you've tried it

lament tendon
#

Iโ€˜m doing this HTB room right now, and it literally crashes itself after a while for reasons I understand but donโ€˜t want to type out on mobile.

shell nova
#

that would have been stored

lament tendon
#

Doubtful this is intended, it is really annoying.

#

Donโ€˜t make something like this.

mossy river
devout palm
shell nova
#

even then, automod doesn't like it

boreal scarab
#

Go to the hardware store to pick up an m2 5mm screw for my m.2.

Go there guy was like "m2 is 2mm, not 5mm." Thank you, I know. 5mm is the damn length

quasi plaza
#

hey guys

shut hawk
#

watt the

quasi plaza
#

are you paying for the subscriptions or using own Virtual Machines?

shut hawk
#

I've always used my own VM

#

Unless I'm traveling

shut hawk
glass nest
#

did you just.. reply to yourself?

quasi plaza
#

did you paid for tryhackme? Iยดm just starting and want to make sure

glass nest
#

the subcription opens up a bunch more rooms aswell

devout palm
shut hawk
quasi plaza
#

as a beginner

glass nest
#

Rooms are what we call each of the challenges and tutorials on the site. about 80% of them are free, so you don't NEED a subscription, but it does add more than a faster attackbox ๐Ÿ™‚

sick lance
#

Always a good feeling when you're the first person to drop something in VirusTotal.

rancid lava
#

hello, i want to start openvpn with wsl ubuntu but the vpn dont want to work...

sick lance
#

You might run in to issues with that constantly.

rancid lava
#

okayy thanks and what is the solutions ?

sick lance
#

Personally, I'd just suggest using a VM.

boreal scarab
#

@hot cairn this server is LOUD AS FUCK

#

So loud I can't hear myself think nor hear my other server kekw

devout palm
boreal scarab
#

Finnaly. Fucker slowed down in RPM. I can hear myself

#

Fml... that 32GB of ram I put in, yah no good

#

Back down to 16

sick lance
rancid lava
sick lance
rancid lava
#

thanks

boreal scarab
#

Tf....

sick lance
#

New room, 25 min(s)

boreal scarab
#

Fixed the ram issue

#

It doesn't like slot 2 and 4, but 1 and 3 work.

shut hawk
boreal scarab
#

Yeh! Not the one in turb features on or off, but the one from the store

sick lance
sick lance
shut hawk
#

Yeah, link to the messages lol

sick lance
#

Stop being lazy.

You search ๐Ÿค“

boreal scarab
#

Quick question.

Got a ThinkServer RS160, just has 1 256GB M.2 gen 3X4.

This server is just going to be a firewall. Which is better, UFS or ZFS?

shut hawk
#

You're the one making the claim lol

sick lance
#

There's one.

Is Ben reliable enough for you?

#

Or do you need more?

mossy river
#

How about you both provide proof

#

One for and one against, weโ€™re all intellectuals we can have a spirited debate

sick lance
sick lance
mossy river
boreal scarab
#

I hate you all kekw kekw

shut hawk
mossy river
#

WSL 2 was notorious for networking problems when it was first released.

As for now, I donโ€™t know, but we generally do not recommend it for TryHackMe.

sick lance
#

It's pants for netowrking for tunnels on tryhackme.

Fixed it for you ๐Ÿค“

crude stump
boreal scarab
# crude stump AHHHHHHH

Booting up. It sounded like my Dell PowerEdge 2950. Then slowed down to actually desktop air-cooled quiet noise. Quite lower than my Quanta 1U server.

#

It legit sounded like an airport

sick lance
shut hawk
boreal scarab
# sick lance

But here's the question. Was that WSL through Windows Feautures, or Microsoft Store?

shut hawk
hot cairn
boreal scarab
buoyant tree
#

hullo

wind lake
#

hiiii

#

my server is still in hibernation

#

im moving soon to a 1 bedroom im curious if ill have space anywhere to set it up

boreal scarab
#

What server?

buoyant tree
wind lake
#

scrubz ur a genius

wind lake
#

i havent used it since i moved in april last year

boreal scarab
buoyant tree
wind lake
#

say how much do you think i could sell a 48 port 2960 with PoE?

split compass
wind lake
boreal scarab
#

My Quanta I don't know the model, their naming is very weird, but this ThinkSever RS160 is quite nice

split compass
#

If you don't mind being in the same room, see if you can get a half-height rack to store it in, or make an ikea rack.

wind lake
#

i have a coffee table from ikea that fits it perfectly

boreal scarab
#

@hot cairn I did a big whoopsy. I installed PFSense rather than OPNSense kekw

wind lake
#

might be a centre piece in the living room

split compass
hot cairn
#

Itโ€™s fun

boreal scarab
#

Well, if I don't like PFSense, I'll just burn it to the ground and install OPNSense

split compass
wind lake
sonic dust
#

dude this pentest report software has a msf command generator built in

#

tf

split compass
wind lake
#

in unrelated news, thank god for wget

#

lets go wget

#

you get it wget

#

so far the only way ive been able to get anything downloaded of this 26gb file

split compass
sonic dust
#

even has TOOL INTEGRATION creepypog

wind lake
#

yeah i tried witth curl with those flags and it still broke

buoyant tree
#

Wget is simple

shut hawk
#

Bee, try aria2

sonic dust
shut hawk
#

Might be useful here

wind lake
split compass
twin ridgeBOT
#

Gave +1 Rep to @sonic dust (current: #1999 - 1)

shut hawk
#
#

Download utility

sonic dust
wind lake
#

if this breaks, ill give it a try

buoyant tree
sonic dust
#

you can upload from nmap msf etc

#

even upload creds and such

buoyant tree
#

hmm its got burp support

sonic dust
#

yes it does

buoyant tree
#

learnin burp shortcuts atm

#

tired of clicking 56 times

sonic dust
#

whats really nice is the nmap upload. everything you scan is auto uploaded via xml

#

services hostnames ports etc

buoyant tree
#

nice

sick lance
#

I have a pentest report to write soon ๐Ÿ’€

sonic dust
#

lol you are welcome @sick lance

sick lance
sonic dust
#

oh

#

well screw you for not sharing

sick lance
sonic dust
#

anyways yeah i like this better than mose

#

tried sysreptor PT, pwndocs etc

mellow pumice
#

0-0

real void
#

I am an intern. I need help with this.

I have a csv file with 4000 ip addr and need to do whois enum and add the info in other column respectively. How can I do that?

sonic dust
#

jfc 4k?

sick lance
real void
buoyant tree
sick lance
sick lance
shut hawk
#

I'd advise talking to your senior @real void

mellow pumice
#

ohhh

shut hawk
#

Better than asking a random discord server full of strangers

mellow pumice
#

spittin fax

split compass
sick lance
#

Red team room this week.

buoyant tree
# sick lance I do both.

Hmm, although a question I forgot to ask but I heard about.
Are forensics reports required to be super simple but still include all the complex stuff. (Exact example I was given, Somebodys grandmother should be able to understand it)

lament tendon
sick lance
#

As it the resuts need to be identical, it has to be factually correct so it won't get dismissed as evidence in court.

boreal scarab
sonic dust
#

i wish they would bring back the AD network:'(

blazing stone
#

test

real void
buoyant tree
boreal scarab
blazing stone
#

the test tested

sick lance
split compass
# boreal scarab Dunno, 2017 server, so probably

I just know that was an issue that LTT ran into when they moved buildings with one of their 25Gbps NICs, they had to dop PFSense and switch to OPNSense because PFSense prioritizes stability to a detrimental level.

heady nova
#

ello

split compass
real void
wind lake
#

you can set python to only do a whois every couple seconds or somethin

split compass
real void
twin ridgeBOT
#

Gave +1 Rep to @split compass (current: #54 - 123)

wind lake
#

weve reached %1 downloaded lets goooooo

#

W's in chat

buoyant tree
wind lake
#

not relevant

#

its for work tho

buoyant tree
#

oh k

#

btw bee u got any recommendations for instrumental jazz

split compass
# real void Yeah I understand, there are few website I know thanks I'll talk with something ...

No worries.
Take a small subset of your data, maybe 10 lines, to make a sample set

w/ linux head -10 file.csv > sample_set.csv

Play around with your idea of how you want to make your requests, as Jayy said, invite your seniors to see and direct what you're working on.
Once you have your sample set working, if you're relying on something with a commercial API, advise your manager that you need them to purchase you API access.

Best of luck.

wind lake
chilly veldt
#

Ahhhhh

buoyant tree
shell nova
# sick lance

Never had issues with WSL rev shells, just things mucking with iptables

buoyant tree
#

also question why would someone want to view hex in Burp SUite

wind lake
wind lake
loud marlin
buoyant tree
boreal scarab
#

My 10g ports on my Quanta is connected straight to the machines

split compass
loud marlin
buoyant tree
#

oh k, but how might that be useful? any examples

loud marlin
#

well any char have his own hex value

#

so if you do not know how to get something in clear text or so you can check hex value and get to be more clear

wind lake
loud marlin
wind lake
#

i know, thats why i corrected! no harm

chilly veldt
#

My brain not braining

loud marlin
twin ridgeBOT
#

Gave +1 Rep to @wind lake (current: #58 - 115)

wind lake
loud marlin
split compass
#

echo -e \033[95m some characters are just weird and do nothing. \033[0m

Some characters are invisible, but will change whether an value/field matches the expected input format.
if select UserName0x01 from user_table == UserName0x01.value

#

Not to mention any kind of simple control characters that might be used.

mossy river
#

Trying to take a picture at the gym after doing a heavy workout ๐Ÿ˜ญ theyโ€™re all blurry

chilly veldt
wind lake
chilly veldt
mossy river
chilly veldt
mossy river
split compass
loud marlin
#

@buoyant tree
might help

split compass
loud marlin
#

id does his job greatly

split compass
#

I should try running one on local hardware and see if it is more performant than the GCHQ shared instance.

molten sky
#

cyberchef is overrated

#

just do it by hand

wind lake
#

why the festival tickets gotta be so expensive...

sick lance
#

Doing by hand is over rated,

#

Do it by feet.

molten sky
loud marlin
graceful thistle
#

Anxiety inducing

night prairie
#

Does anyone know if there's any issues with doing LSB image steganography on formats besides PNGs? I can't find anything online that says so, but in class we were told only to work with PNGs for some reason

edit: nvm there's a research paper on it by bharat sinha

devout palm
#

yay

night prairie
#

i still have mine just sitting in a drawer somewhere, it's a model 1 tho so not very powerful xd

#

or 1b, i dont remember

devout palm
#

Just playing around right now

night prairie
#

Ah I see, that sounds fun, good luck!

devout palm
#

Thanks

night prairie
#

though I've only seen it in games and through socket communication (to lower latency, idk if ppl do it with http requests too but i'd assume there's things like c2s which do smth similar but for obfuscation, though I may be wrong)

boreal scarab
#

When all you have is 6 inch ethernet cables to configure your FW on your laptop with

shell nova
#

Data rate will plummet but who cares?

boreal scarab
#

Not me! As long as I can get to the WebUI, I don't care if the cable is even 5 mbps

#

Doesnt help that I'm getting old, bending down to configure this with no seat

#

I really do hate myself kekw

split compass
night prairie
#

๐Ÿ‘€

#

actually wanted to make a really basic one for fun last year but didn't end up doing it

#

wanted to try a new language when working on it tho, was thinking of going with rust

#

would be a nice github project

buoyant tree
buoyant tree
dense cedar
#

Islam be upon you, my brothers

#

I have an important question, what do you mean by port?

#

Is the port the protocol or the computer port??

tired peak
#

like protocol http often runs on port 80

#

it it could run on any other port, sometimes you see it on port 8080, 8081 but if a port is available, it can be used

dense cedar
#

Do they have a device?

tired peak
#

what do you mean?

shell nova
#

Not...exactly

#

A port is more of an identifier used by a service so it can tell what network comms are aimed at it

dense cedar
#

The port has special devices

shell nova
#

There may have once been a hardware analogue, long ago

tired peak
#

ahh no, like hydra said, its part of a client/server architecture

#

so a server will allocate a port for a service, then a client connects to that part but its not a special device

shell nova
#

But that's a hardware concept

tired peak
#

oh true

shell nova
#

Which is why the question is incomplete

crude stump
#

Wait do Yk how in movies they always show the hackers pcs terminal as green? How do they do that

crude stump
#

Yeah

#

Like that hacker green

shell nova
#

It stuck

dense cedar
tired peak
crude stump
shell nova
tired peak
loud marlin
# buoyant tree hmm

not sure if is correct representation. but hex is alike hash. if i explain it good

night prairie
#

type color 0a if ur on windows

loud marlin
buoyant tree
#

ye

buoyant tree
night prairie
rapid merlin
#

Hello guys quick silly question, i haven't done any thm in a long time but for RCE with a file upload bypass, i need to bypass the filter then navigate to where my code was uploaded to get it to execute on the server right?

loud marlin
# buoyant tree ye
rapid merlin
#

I was being a silly man and just thought uploading the file would get it to execute >_<

buoyant tree
lean furnace
#

hi do i need to create a new account with my student email to get the student discount? it doesnt let me change my email...

loud marlin
night prairie
night prairie
shell nova
#

It's base 16

#

No more, no less

chilly veldt
#

We do love base 16

shell nova
#

It's a representation of numbers that happens to match binary with less space

loud marlin
#

and hex help into uderstand how cpu understand/translate. if i explain it ok

#

cos is 2 char

shell nova
#

There is base32, usually used for OTP keys these days

#

But 2 hex digits represents one byte

loud marlin
#

@buoyant tree so when you find weird chat is like this

shell nova
#

And that's handy

molten sky
#

i find base 1 to be the easiest to remember

shell nova
lean furnace
twin ridgeBOT
#

Gave +1 Rep to @night prairie (current: #99 - 63)

loud marlin
#

so when you wish to program something that have that kind of weird char you can use from hex to ascii or smth like that if you cant tipe that kind of ascii on keyboard

glass nest
#

And useing the alt-codes ๐Ÿ˜„

loud marlin
night prairie
glass nest
#

hold down alt and type a random number.. Go! ยซ

#

รช <- nice

shell nova
#

On mobile, no alt

loud marlin
crude stump
#

Trash

shell nova
#

It's not AI imo

crude stump
#

Number 1 ai hater here yโ€™all

shell nova
#

LLMs sure

glass nest
#

Its the current 'Big thing' so worth learning some security aspect of it

molten sky
night prairie
#

OpenAI's Sora looks insane, I'd like to get into AI at some point, seems like AI's going to be used in every sector in the near future imo

shell nova
crude stump
#

Apple

night prairie
#

Pen

glass nest
#

Mango

shell nova
#

The fruit is a lie

crude stump
glass nest
#

Just got back from dinner with an old Uni friend. Not see her in ages, and it was lovely. Went to 'blues bar and Grill'

buoyant tree
loud marlin
rapid merlin
molten sky
crude stump
glass nest
#

Haha we did have a thing after Uni, but she lives too far away for anything to happen.

crude stump
#

I see

buoyant tree
night prairie
crude stump
#

Esqy got rizz

#

Duke Dennis rizz ๐Ÿ’€

night prairie
#

"make me an AI model that codes whatever I promt it in C"
well.. technically already a thing, needs improvement though

glass nest
#

When I first met her during Uni, I went to hers so we would walk to the Union bar together (As we lived near each other then). When I got there she was playing FFVIII fight a tricky enemy, and had a page of notes - what movees she used, and what the enemy did. It was sooo geeky! We were best mates after that ๐Ÿ˜„

molten sky
#

she's a fed

open anvil
#

path recommended after finishing complete beginner?

fast wave
#

hi i probably do have kind of stupid question but when using pentest tools like gobuster or nmap or some of these bruteforce/scanning tools do they like use your IP to check? so for example say if you used gobuster on google and it scanned 9k hidden pages google would see that your ip is the one sending the requests?

crude stump
buoyant tree
#

eh AI atm is insanely expensive

molten sky
crude stump
#

D1 hater

twin ridgeBOT
#

Gave +1 Rep to @molten sky (current: #93 - 67)

buoyant tree
shell nova
#

They won't be, don't worry

buoyant tree
#

heck Sam Altman asked 7 trillion dollars from the world for GPU's

shell nova
#

At least AI won't replace humans in any creative fields

fast wave
#

i see

shell nova
shell nova
#

Yeah but they can't create. Not truly

crude stump
#

Of course but what is that really gonna take over. Definitely the graphics industry

#

Tho itโ€™s not perfect

shell nova
#

You hear about game studios wanting to use AI art. That's because they're cheap greedy bastards, but AI art is wildly inconsistant

crude stump
#

Those ai image creations have a hard time creating hands for some reason

shell nova
#

And letters

#

You'll be fine

fast wave
crude stump
#

Ai wonโ€™t take over the cyber industry anytime soon. If thatโ€™s whatโ€™s your worried about

shell nova
#

But yeah, you can unintentionally break things

crude stump
#

Too many errors ai makes

shell nova
#

Nah, generated code is still terrible

#

AI cannot understand intent

loud marlin
#

i think you can't ddos/dos with simple scanning. scan might be detected but not as ddos/dos...

shell nova
#

Might make compilers better though

night prairie
# shell nova More like a DOS

I recall reading somewhere that things like nmap scans would sometimes end up taking industrial systems offline lmao

fast wave
# shell nova More like a DOS

i see well i did dumb thing and i scanned website with 2K requests before i stopped it (it was supposed to check for 10k so thankfully not) do you think like the server providers are gonna notice?

shell nova
shell nova
night prairie
#

i cant remember the name for industrial hardware, the one i had in mind at least

fast wave
shell nova
fast wave
#

since i didnt shut it down

#

and i didnt do any harm

shell nova
fast wave
#

smh

shell nova
#

I mean I'm testing copilot, it's...alright, but definitely need to reread what it spits out

loud marlin
mossy river
#

Why wouldn't it be illegal?

night prairie
fast wave
night prairie
#

wish i used copilot more in beta

shell nova
#

In short, don't do that again

fast wave
#

i did it on my school website

#

that was hella dumb

mossy river
loud marlin
crude stump
#

State website ๐Ÿ’€

shell nova
fast wave
#

smh i thought like scraping around isnt illegal

shell nova
fast wave
#

like its publicly available information

tired peak
#

you would be surprised some of the hardware and software that very important systems run

crude stump
#

Technically itโ€™s not if you have to use software to find it

boreal scarab
#

I really do hate firewall rules.. I'm able to ping from my laptop which is after my firewall, to my internals. but I can't ping from my internals to my laptop

loud marlin
tired peak
fast wave
#

i could still do that manually

mossy river
tired peak
#

like it'll something like "our billion dollar program relies on this PC from 1980s..." and you are like "What?"

shell nova
loud marlin
#

@fast wave as i say:not sure how stupid that is, but aint smart

tired peak
shell nova
#

And there's that mainframe somewhere

boreal scarab
#

Reminds me of the time we went on site and they had a win 95 running a label maker or something.... obv not connected to the network

tired peak
#

I had a program buying scrap parts from ebay because they didn't want to update the software and all current hardware isn't compatible...

#

so they basically have someone who has alerts for ebay set up

ruby pier
#

Every Cyber Security course should have a section that gives you insight on how to collaborate with administration/c-levels because my lord.

crude stump
#

Itโ€™s the infinity certs

shell nova
#

If we could use AI to predict the stock market, it would already have been done

night prairie
#

Would an LLM alone be able to do smth like this or would you need to specifically train a model on trying to guess the market?

shell nova
tired peak
#

Udacity has a course on AI and financial analysis... its been out there for almost 10 years

shell nova
#

Stock market is more an indication of human behaviour rather than any logical or rational behaviour

loud marlin
#

there is good reason why SCADA system is used to control systems. if AI can predict things will be used as in stock market. on my work, our SCADA cost small 1mil (and more) euro to control things. and it's doing great job

tired peak
#

what you'd really need to predict is how companies are fairing vs the stock market itself

buoyant tree
#

or whitelist what u wanna do

loud marlin
#

and tbh, SCADA saved us on few occasion from complete environmental catastrophe...

#

might nob be legal... humans can't do that speed

boreal scarab
#

I am not a network person, so learning this as I go

tired peak
#

there are some companies that are using AI trading today

loud marlin
#

i work in chemical industry. things we develop can be done only if gov allow us. and some things in clear form are scary dangerous if goes out. imagine 99% ammonia got out. around 2000 liters leak will be catastrophe

tired peak
#

but basically they are using best practices vs trying to catch the dips/rises

shell nova
#

HFT is already dodgy

tired peak
#

WealthFront, Schwab, Vanguard, etc all have AI advisors who will auto invest money for you

loud marlin
#

it will be illegal or so even for one moment. i think.

#

again... not sure how stupid that is, but aint smart

#

same reason why game cheating is illegal and can be punished

tired peak
#

AI trading isn't illegal

loud marlin
tired peak
loud marlin
#

hmmm...

#

oh... crypto...

tired peak
#

I'm not talking about crypto

loud marlin
chilly veldt
#

Stocks

tired peak
#

I'm talking about stocks

chilly veldt
#

I was close to working for a trading company๐Ÿ˜…

#

Building their infrastructure

#

Eh, not exactly what I wanted to do

#

If I look at it now

night prairie
chilly veldt
#

Even though it's green stock, it's a no thanks for me

tired peak
#

I have my money invested via an AI bot

#

and have been for about 5 years

chilly veldt
#

Nice

tired peak
#

not all my money mind you but some

chilly veldt
#

Yeah, of course, I have done some trading myself

tired peak
#

AI bots aren't sentient

#

you'd have to provide them direction

shell nova
#

Not much

loud marlin
#

they can't learn from them self. they have knowledge of what ppl provide them

proven quartz
#

They cause each other major problems and usually just end up riffing garbage at each other

shell nova
#

Garbage in, garbage out

night prairie
loud marlin
#

when AI reach point of creating better wersion of him self... we are sfucked

tired peak
#

this is my robo (aka AI) advisor. I no longer contribute money to the account but it does pretty good

shell nova
loud marlin
#

yea

shell nova
#

All they can do now is shitpost

#

Poorly

rapid merlin
#

Evening ๐Ÿ‘‹

tired peak
#

I too can shitpost poorly

loud marlin
shell nova
#

Nah, cause at the end of the day, you still have people

loud marlin
#

if AI use our shitposting as learning data... we are safe for long ๐Ÿ™‚

proven quartz
shell nova
#

Aside from the plagiarism?

night prairie
#

think it was made by microsoft

night prairie
#

Ah that's the one

shut hawk
#

on the topic of shit-posting and stocks:
https://youtu.be/USKD3vPD6ZA?si=O45LT2IKGcD0tP7g

Go to http://Public.com/reeves and youโ€™ll receive a free stock worth up to $300 once you open an account.
*This is not investment advice. Offer valid for U.S. residents 18+ and subject to account approval. See Public.com/disclosures/

I am not a qualified licensed investment advisor. Nothing in this video constitutes professional and/or financi...

โ–ถ Play video
night prairie
proven quartz
# shell nova Aside from the plagiarism?

Well that's a major issue that needs to be tackled with the companies appropriating everyone's creative outputs but there are problems with models and their behaviour, reliability, trustworthiness; we don't know what they're doing and they do very strange and unexpected things sometimes

shell nova
chilly veldt
#

Actually

#

I saw the video when he released it

shell nova
boreal scarab
#

I'm going insane with OPNSense paradox

chilly veldt
split compass
night prairie
shell nova
proven quartz
split compass
shell nova
shell nova
alpine kraken
#

Is the file inclusion room hard or am I just a noob?

split compass
shell nova
alpine kraken
shell nova
tepid prairie
#

Hello guys who did the new challenge Broken RSA

buoyant tree
#

Anybody used burp's sequencer in a real life application here?

shell nova
tepid prairie
#

Breaking RSA

chilly veldt
#

Can't wait till Tuesday ngl

shell nova
proven quartz
chilly veldt
buoyant tree
# shell nova Not the free version

Hmm, a question like sequencer needs to make a lotta requests so do they like whitelist your IP or you have to make ways to bypass the rate limits

split compass
shell nova
#

You'll need to Math your way in that one

loud marlin
shell nova
#

But it's really just a fancy version of hydra

night prairie
glass nest
#

I thought you were the fancy version of Hydra?

alpine kraken
tired peak
loud marlin
chilly veldt
#

Esqy can I DM you about something cool happening on Tuesday?

split compass
alpine kraken
glass nest
#

Of Course, Bella - you don't need to ask ๐Ÿ™‚

shell nova
buoyant tree
chilly veldt
#

Don't want to break rules ๐Ÿ˜…

alpine kraken
twin ridgeBOT
#

Gave +1 Rep to @shell nova (current: #12 - 545)

buoyant tree
#

Although I think Burp Suite has the sequencer in the free version

shell nova
glass nest
#

Thats cool, Bella, My DMs are open you and the other regulars anytime ๐Ÿ™‚

dense cedar
#

I have a question

buoyant tree
loud marlin
shell nova
#

Or am I confusing with Intruder

buoyant tree
shell nova
buoyant tree
#

might be that this screenshot reminds you

dense cedar
night prairie
#

actually yes

shell nova
#

Broken access control

loud marlin
tired peak
buoyant tree
#

IDOR's for me usually

shell nova
dense cedar
#

I know what I mean, so what is its purpose in the network?

buoyant tree
shell nova
#

It's not number 1 on the OWASP top 10 for nothing

loud marlin
tired peak
loud marlin
buoyant tree
#

Haven't seen a SQLi on a BB or VDP yet

dense cedar
dense cedar
shell nova
buoyant tree
#

but now I see more reports of RCE's than SQLi's in the wild

shell nova
#

Not necessarily SQL, command injection is still poorly handled

night prairie
shell nova
#

RCE is the holy grail for a hacker though

night prairie
shell nova
#

An RCE will be almost guaranteed critical

near hawk
#

There was one RCE on the DOD

#

Got disclosed two months ago

rapid merlin
#

Good evening hackers

buoyant tree
dense cedar
twin ridgeBOT
#

Gave +1 Rep to @night prairie (current: #99 - 64)

buoyant tree
#

unless they were smart and made a service account for it with limited privileges

shell nova
buoyant tree
#

yea but would limit exposure

shell nova
#

Would complicate the exploit chain sure

night prairie
#

if it's a web server, then the IP would probably be whitelisted on their database server so you could poke around there too ig

shell nova
#

Or internal networks, possibly bypass a firewall

night prairie
#

i rememebr few years ago, i was using my friends database server for one of my projects, we had no IP whitelist and at some point he was testing smth and disabled authentication too
few days later i see my shit aint working, i started investigating and check the database only to find a single record with a ransom note ๐Ÿ˜‚

shell nova
#

Oops

night prairie
#

in my defence i was like 14-15 and knew nothing about security

shell nova
#

Eh, at that age I didn't know what a database was so...

glass nest
#

All your database were belong to someone else?

shell nova
#

Then again the internet was just beginning, JavaScript wasn't really a thing either

loud marlin
#

at that age i didn't know how fly don't fall from sealing =/

night prairie
#

I got into programming early, probably when i was like 8, but stopped programming like 2 years ago (besides a few small things, or uni stuff)

loud marlin
#

some wizard shit

shell nova
#

Yup

loud marlin
#

weird indeed

loud marlin
buoyant tree
glass nest
#

Of course. And if you program in python, you just need to import antigravity. Solves that challenge

buoyant tree
#

time to google

buoyant tree
night prairie
#

couldnt afford a server ๐Ÿ˜‚

glass nest
#

It was an aged internet reference ๐Ÿ˜„

night prairie
#

or rather, i wasnt old enough for a bank account so couldnt pay for it

buoyant tree
#

eh remember time when I made a minecraft server

#

and made it have TERRIBLE SECURITY

#

for complete convivence

night prairie
buoyant tree
night prairie
chilly veldt
#

Depends on your region, position and experience

buoyant tree
proven quartz
#

A decent wage is one where you can afford a nice house in a nice neighbourhood, have a wonderful spouse, enjoyable pastimes and holidays, send your kids to college and treat yourself regularly, without the worry of debt or medical issues cramping your lifestyle

buoyant tree
#

and enabled a few other settings that I don't remember

past sparrow
chilly veldt
proven quartz
#

Whatever your boss is on

buoyant tree
#

depend's on your country

past sparrow
#

If you take your current salary and subtract financial obligations, are you in plus/minus/zero?

shell nova
#

Yeah that was about 40 years ago

chilly veldt
glass nest
#

Mmm pizza rolls

proven quartz
stray escarp
#

hello, i'm new and i want to make basic ctf with my friend, the problem is that idk how to invite him in my room

shell nova
#

Use the jr link

chilly veldt
past sparrow
#

Then depending on degree of financial obligations, you might be earning a decent wage or not so decent

proven quartz
buoyant tree
#

Why don't yall like pizza rolls, just looked them up they look delicious

chilly veldt
stray escarp
#

can someone help me pls

glass nest
#

Hydra just did..

chilly veldt
#

Speaking of pizza rolls makes me hungry and I don't have any more calories left PepeHands

proven quartz
chilly veldt
past sparrow
#

Since people are getting their certificates on my profile, how should I approach to get mine as well ๐Ÿค”

shell nova
night prairie
stray escarp
#

oh ok i will try thx

glass nest
#

So December = Land thing, Graduate, Xmas and AoC. Damn bella!

night prairie
#

No one would guess the password for my Kali laptop

past sparrow
night prairie
#

kalikali

glass nest
#

hunter2

night prairie
#

Default passwords are bad so I changed it

loud marlin
#

toor

buoyant tree
stray escarp
buoyant tree
night prairie
#

Yeah I got it default on my VM too, but I take that laptop into uni so I changed it just incase, but don't care enough to put a proper password

buoyant tree
chilly veldt
buoyant tree
#

NeverGonnaGiveYouUp

molten sky
night prairie
molten sky
#

(in this case)

night prairie
molten sky
past sparrow
#

If there is nothing of value there, why not ๐Ÿคทโ€โ™‚๏ธ

glass nest
#

'If ever you think something is obfusacted enough, some finnish kid in his bedroom will find it' - Thats an internation rule of computers

native shell
#

hi good night guys

stray escarp
#

does someone know how can i do basic pentesting with a friends ๐Ÿ˜ญ

buoyant tree
#

guess for what

night prairie
#

Minecraft? ๐Ÿ˜‚

buoyant tree
#

nop, windows vm atm

#

Trying to see how many ways I can get it to BSOD

night prairie
#

For my macos VM, I set the password to whatever the title of the VMware window was, idk why

#

Was annoying to enter every time lmao

buoyant tree
#

kekw

proven quartz
stray escarp
night prairie
buoyant tree
#

at my 4th windows VM to break

#

others couldn't recover

#

now I know what not do change or delete

#

or just edit

loud marlin
night prairie
buoyant tree
#

uhm why would u want to target the exact same machine

#

u can spawn up 2 machines

proven quartz
buoyant tree
#

and stay on a call

glass nest
#

Dann you, Ralex

stray escarp
loud marlin
shell nova
stray escarp
#

we wanted to connect two VM on the same room. Is that possible?

night prairie
shell nova
night prairie
#

Oh

loud marlin
#

just target same ip

glass nest
#

If you had the mindset of a hacker, you wouldn't be asking.. you'd just be trying it ๐Ÿ˜„

shell nova
#

If you start a machine and I know the IP I can connect to it

night prairie
#

I thought the machines were tied to your account's VPN profile
Now I know to censor the IP in screenshots ๐Ÿ˜‚

shell nova
glass nest
#

Aye, I've done it a few times... that comment was towards the person who was asking ๐Ÿ˜„

loud marlin
shell nova
#

Is that a cat with a bat?

loud marlin
#

yep

tranquil rapids
#

hello

#

can someone help me with something

loud marlin
#

ask

tranquil rapids
#

its kindda embarassing its with my cs hmwrk

#

its kindda of topic

loud marlin
#

in cyber area or ?

tranquil rapids
#

well i have this prompt and criteria i need to follow

#

no very basic

shell nova
#

We can't really help with homework, unfortunately

tranquil rapids
#

rip

#

thank you

#

apologies

shell nova
#

Depending on some profs, it may be considered cheating

#

We don't want to take the risk

tranquil rapids
#

oh i see thank you

#

im sorry for wasting your time

shell nova
#

No worries, go see your prof if you have issues

glass nest
#

nothing stopping you from emailing your tutor if you need clarity

tranquil rapids
#

i dont have a tutor and my engineering classes take a considerable amount of time and and run over his very limited office hours

shell nova
#

What are these green things you speak of?

glass nest
#

Hydra, I think its the food that your food eats

shell nova
#

Best not eat them then

glass nest
#

A Dragon Fruit does look kinda alien

shell nova
#

Yeah that one was 7 iirc

graceful thistle
#

do it right, and unlock real power

shell nova
#

Anyways I dunno, I haven't watched Dragonball Z in 26 years

#

Who knows

iron salmon
#

nice weekend

blazing granite
#

I liked Thundercats ๐Ÿ™‚

boreal scarab
#

I hate myself for getting into the world of Firewall Rules and OPNSense. Yaaaaay going insane time lightsaberpepe

loud marlin
#

and save button is important

sand trench
#

t minus 2 days

iron salmon
#

oh god oh god what is going to happen? can i sleep till 1200 on monday?

sand trench
#

pay day for shadow and shadow finally being able to finalize their dragonbox pyra order

sand trench
#

unless you also want a dragonbox pyra but the preorder queue is long to say the least

iron salmon
#

oh pay day nice but i guess i have to get up early again sighs

#

i am getting used to feel stupid had to google that XD

sand trench
#

anyways back to watching avatar the last airbender shadow goes

molten sky
#

can i ask someone a quick question

hardy copper
#

Hey, new here. Was wondering if TryHackMe offers regional prices ๐Ÿค”

pine stratus
hardy copper
pine stratus
#

:ke

molten sky
twin ridgeBOT
#

Gave +1 Rep to @pine stratus (current: #1999 - 1)

pine stratus
iron salmon
#

the tryhackme suby is not expensive

hardy copper
pine stratus
hardy copper
#

bruh...

#

I'm a begginer though, should I wait before I buy a sub?

iron salmon
#

no no its true there are places where 10 is a lot sadly

hardy copper
#

I'm doing the pre security course

iron salmon
#

yes try it a bit first

pine stratus
crude stump
#

Do some free stuff and see how you like it