#general

1 messages Β· Page 52 of 1

molten sky
#

i should jump on for a round at some point

lavish shell
#

Got one in like two minuets about to start if you want to

molten sky
#

not tn, bouta write a POC for some things and get to bed

#

but eventually

lavish shell
#

Never mind, not enough people joined so it's over

molten sky
#

F

#

it's a weird time rn between two pretty active time zones

desert shuttle
#

Ooouuu POC for?

molten sky
#

super special secret hackerman stuff

lavish shell
#

Wish there was a downloadable lab or something similar. Even a person vs bot type thing would be great

desert shuttle
#

I’ve never done KOTH here

#

Did you start already

lavish shell
#

No, wasn't enough people unfortunately

unreal solar
lavish shell
twin ridgeBOT
#

Gave +1 Rep to @unreal solar (current: #122 - 51)

clear jackal
#

Yeah, 1-2 years ago at this point

#

Oh that was a while ago

#

Sorry

molten sky
#

πŸ‘€

lavish shell
#

So, are there tools preinstalled like recon-ng, snort, etc, or would I need to download my own?

chilly veldt
#

Morning

unreal solar
molten sky
fresh cobalt
#

Trying capstone challenge, how is it ?

chilly veldt
#

It's quite good

desert shuttle
#

im no longer stuck

rapid merlin
#

Good morning everyone

molten sky
glossy mantle
#

yoo

rapid merlin
#

How are yall doing?

glossy mantle
#

fine how abt u

molten sky
#

both tired and wide tf awake at the same time

rapid merlin
#

Yeah I have the same mate

molten sky
#

just spent the last several hours doing powershell stuff so life is fun /s

rapid merlin
#

πŸ˜‚

glossy mantle
#

why do i feel guilty when im stuck at a ctf and open a writeup

#

is this normal?

molten sky
#

~~ no ~~ yes

rapid merlin
#

I still have html lessons at schoolkekw

#

High school

desert shuttle
#

Damn

#

let me hit the nmap scan 3 times

rapid merlin
#

It's normal

molten sky
#

on the one hand..

#

i need sleep

#

on the other.... i've got so much shit to do

#

and the other other... i don't want to do any of it

#

i've had this exacto knife on my desk for like 2 weeks now that i just keep playing with and i have no idea where tf i got it from

#

just appeared here

sharp forum
#

I planned to do keylogger as my final year project in python what kind of api shall i use i am so confused can anyone suggest me?

chilly veldt
#

I think I broke my switch setup

#

how else would you see a website?

#

you have to get access to the html before the website can load?

#

you can get access to the html even without inspect πŸ˜„

#

but you'll need access to the html no matter what, otherwise the website wont load, html is the thing that makes the website

fresh cobalt
finite basalt
#

Morning all 😎

sick lance
#

You can copy the html to "clone" the website, so you can browse without interaction with the main site.

naive violet
finite basalt
#

Guess what james

fresh cobalt
unreal solar
#

Scams like that occurs often because it's (like you said) as easy as copying the HTML/CSS of a website. However, you cannot replicate the domain name of the website, which a end-user will most likely notice, even though these fake websites wil try to imitate the domain name as closely as possible.

naive violet
#

This is an "evil bit" solution

finite basalt
#

Off to Dundee today in about 4 hours

naive violet
#

And you keep asking this and you always get the same answers @rapid merlin

#

Do you know one definition of insanity?

finite basalt
#

πŸ˜‚

glass nest
#

Trying to listen to alien broadcasts?

chilly veldt
glass nest
#

yes, CCNP. Not CCNA

chilly veldt
#

reading and reading but getting nowhere PepeHands

glass nest
#

Did you just skip CCNB through CCNO?

naive violet
#

@rapid merlin read about how a browser worls

#

The end user needs html sent to them

chilly veldt
#

yeah, and then skipping everything from CCNQ to CCID so I can take CCIE

glass nest
#

What bit of CCNP are you trying to understand?

chilly veldt
#

currently doing a lab on GLBP

glass nest
#

Ahh. that was the graphic you posted yesterday?

chilly veldt
#

ye this one^

#

it's both IPv4 and IPv6

shell nova
chilly veldt
lavish shell
#

I have a quick question

finite basalt
#

Changed the fail to a pass 😭

chilly veldt
lavish shell
#

Does anyone here have experience with Software Defined Radio? Me an my team have been looking for people who are skilled at it

chilly veldt
#

for a ctf?

finite basalt
#

Definitely people here for that anything in particular? There's actually a thread where some radio discussions take place

lavish shell
finite basalt
#

We can't help with active ctfs unfortunately

lavish shell
#

I'm not asking for help, just looking to recruit for a team lol. Ringzer0CTF never shuts down, it's 24/7

finite basalt
#

Also https://nohello.net/en/ while it's a joke website, it is also good guidance for how to ask questions effectively, just helps you get a quicker answer and makes it easier

I don't want to come across as a twat but it's worth a look

chilly veldt
#

if it never stops, then it's a good way to learn SDR

finite basalt
molten sky
chilly veldt
graceful thistle
#

ok someone tell me where this is from

#

I've had enough

#

whaha

molten sky
#

@finite basalt hello

finite basalt
chilly veldt
# graceful thistle whaha
Know Your Meme

Crazy? I Was Crazy Once. They Locked Me In A Room. A Rubber Room. A Rubber Room With Rats. And Rats Make Me Crazy is a copypasta that loops the aforementioned line. While the origins of the meme likely predate the modern internet, variations of the poem have been posted on the internet since at least 2002. Versions of the copypasta also include ...

lavish shell
#

Alright guys you all take care, I got to finish this machine before my wife gets back and sees me hacking again πŸ˜‚

finite basalt
molten sky
finite basalt
molten sky
finite basalt
#

Crazy? I was crazy once

void valve
#

aaa

worn thorn
void valve
#

yeahh too much information for the past few days

#

brain overload

molten sky
#

no such thing

#

a brain?

#

never seen one

#

prove it

worn thorn
molten sky
#

human or it doesn't count here

void valve
#

i just believe i have one but cant prove

worn thorn
#

goose

molten sky
#

idk what kind it was but if it was a Canada it had it coming

#

cobra chicken mfs

naive violet
#

@lavish shell I'd personally start by trying out one of the public websdrs or one if the airspy server network boxes on SDR#
Look at the waterfall, poke around, use the SIGID wiki to look at what you're looking for and get your bearings

glossy mantle
#

what is sleep?

molten sky
#

it's what lazy people do

lavish shell
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #1 - 2103)

modest axle
#

Hi, can someone help me ? I'm looking for Act of Kindness Badge, which room is contained? Thx

chilly veldt
#

the act of kindness badge is given out to members of the community who have done great acts of kindness and can only be obtained by an admin giving them it personally

modest axle
#

OK, thx for answer! I'm just looking for missing badges, sometimes I have finished room before badge is add.

#

And Webbed badge ? Where is possible earned?

chilly veldt
#
modest axle
#

THX

brisk tree
#

hey

sick lance
#

Gm.

brisk tree
#

hows things

sick lance
#

Yeah, can't complain.

Yourself?

brisk tree
#

yeah good just looking at twitch overlays ahaha

sick lance
#

For your own channel?

brisk tree
#

yeah thinking about streaming again

sick lance
#

Hacking or gaming?

Gonna Collab with Ego?

brisk tree
#

gaming

#

i used to do it and it went pretty well

sick lance
#

I know, lol.

shell nova
#

hax

amber quarry
#

h4Xx

brisk tree
#

lol

#

me waiting for an nmap scan to finish

sick lance
#

-T0 kekw

brisk tree
#

im using -T5

shell nova
#

don't use -p- first?

uncut cove
brisk tree
#

i just used the command i was told to use then cause it ran for 6 hours yesterday i just added -T5 to it or it would scan 16 million ips

#

πŸ˜‚

sick lance
shell nova
#

break all the things

unreal wadi
sick lance
brisk tree
#

it is. its intense in a good way they are preparing us for real life work. feel like ill get a years experience in these three months ahah

sick lance
#

They must cram it in, if they're condensing 12 month in to 3

#

There's somebody else in this server who's doing the same thing.

brisk tree
#

they arent im just saying with how intense it is

#

ahaha

#

got 53 nmap scans to perform this week

rapid merlin
#

Anyone here doing devsecops

sick lance
#

The path?

#

Oh, Kali 2024.1 is released.

unreal wadi
#

official now?

sick lance
#

Yeah.

sage knot
#

Hey

unreal wadi
#

Nice, finally able to see in more depth what I've been running for some time now coolguy

#

Did a full upgrade some time ago, and found myself on 2024.1 before release

north badger
#

the temptation to run my own Cybersecurity competition for students in my part of the UK...

sick lance
#

Having to join a Discord server just to DM somebody kekw

desert isle
#

hi, is it normal tohat ssh has no "up arrow" for seeing the previous command ?

shell nova
north badger
# shell nova do it

I likely will, may reach out to thm (education) to see if they wanna partner or something on it LOL cause I think it'd be great (now to decide what challenges to do, wanna do a 50/50 of red and blue)

desert isle
#

i used ssh username@ip on the attackbox version SSH-2.0-OpenSSH_6.6.1p1

#

should i run ssh with other commands or upgrade the shell ?

shell nova
#

that's an old version

#

though it should give you a bash at least

desert isle
#

so is it possible to start ssh directly with bash ?

north badger
#

Screw it, I will. Okay time to start designing the CTF

unreal wadi
north badger
twin ridgeBOT
#

Gave +1 Rep to @unreal wadi (current: #690 - 5)

sick lance
#

Yes.

chilly veldt
#

REEEEEEEEEE

#

my GLBP doesn't work PepeHands

sick lance
#

Hello, this IT...

gritty zephyr
#

Good luck British pounds?

sick lance
#

Have you tried swithing it off and on again?

chilly veldt
#

I have

#

3 times now

#

well, it works, with ipv4, ipv6 doesn't PepeHands

gritty zephyr
#

Blow inside the cartridge, that helps me often times XD

shut hawk
#

IPv4 on top

gritty zephyr
#

How are you beside the tech troubles bella?

chilly veldt
#

I think I know why

#

how tf can the md5 of the same key be different psyDuck

gritty zephyr
#

The cia triad has been compromised

#

Integrity has failed

#

PANIK

north badger
# shut hawk N,E,S,W of UK?

South West (Will DM a screenshot of rough area covered if youd like), however if I get national interest may run 4 area comps and then a final national one

chilly veldt
#

oh well, still doesn't work

#

I am doing alright

gritty zephyr
#

?*

chilly veldt
gritty zephyr
#

Ah that sucks

#

Any ideas for the new bolide!

chilly veldt
#

miata

gritty zephyr
#

With the signature engine swap or stock?

chilly veldt
#

stock, engine swaps are illegal in denmark

spice adder
#

Good morn thm

gritty zephyr
#

Oh damn whats the reasoning behind that?

gritty zephyr
glossy portal
#

Any of you know openAI Api key alternative? I'm working on a discord bot, and they want me to pay 20 bucks

spice adder
spice adder
glossy portal
spice adder
spare vapor
#

Good morning

chilly veldt
spice adder
chilly veldt
#

making it "unsafe"

spice adder
#

Lots of requests to api as well

spice adder
gritty zephyr
gritty zephyr
spice adder
# chilly veldt miata

Miatas are fantastic cars. A lot of the older ones have many rust issues tho but luckily the majority of their panels are replaceable, cheap to replace too

#

Can buy a whole sill for around Β£70-100 here in UK

spare vapor
#

the new path has so much information to absorb i feel stupid

halcyon wyvern
#

if parrot os freezes allocate more cpu or memory?

sick lance
#

Have you tried allocating more, instead of asking? πŸ˜„

#

What's the worst than can happen, you freeze it faster?

mossy river
spice adder
halcyon wyvern
spare vapor
#

Yo that yellow car is fire looking

spice adder
chilly veldt
spice adder
#

The most fun I’ve ever had in something just over 100hp

halcyon wyvern
spice adder
# chilly veldt 1.8 πŸ˜„

Naaahhh you want the 1.6 if you ever want to do anything with it modification wise. A lot more reliable to work with. Or just drop a mk2/2.5 engine in it and have a reliable turbo’d lump in it πŸ˜‚

chilly veldt
#

but I am going to get a 1..6

spice adder
#

They’re pretty overpriced these days, as much of the old jap stuff. Worth experiencing tho

chilly veldt
steel aspen
#

With the THM ctf rooms can I exploit them to get more info within reason or do I have to follow the room properly? I wanna be able to practise what I learn fully but don't want to get in trouble either

mossy river
#

You are the master of your own learning

spare vapor
steel aspen
#

Obviously not DDoS or getting into internal servers or anything like that just strictly to the machines themselves

#

I just wanna see what I can do with my skills I've learned via THM

#

In a legal setting

#

Is that allowed?

mossy river
#

As long as you’re not breaking our TOS then yes

steel aspen
#

Yeah I'm not gonna do anything stupid or anything that feels off.

#

It'd just be good to practise everything I've learned

spare vapor
#

You mean like taking a CTF room and exploiting in other ways than it wants you to right?

steel aspen
#

Yeah within reason

spare vapor
#

Oh yeah thats completely fine I've seen people do it before

steel aspen
#

THM has been great for learning

spare vapor
#

Real I been here since 2021 I believe

#

Never stopped paying for it once, its such a game changer.

steel aspen
#

Yeah roughly same here with next to no experience lol

#

Had never used Linux before not properly

#

Didn't know how to operate VMs or what the goes were with ISO files lol. Even something as simple as ports were new. I mean I knew about SSL/TLS but that's pretty much as far as my knowledge went.

#

Never heard of an FTP server lol

spare vapor
steel aspen
#

Yeah and even getting started with openvpn to connect to theirs properly was a mission 😎🀣

spare vapor
#

Im not gonna lie I struggle with that still sometimes, something to do with it saying its connected but not working on THM's machines even though I can connect to their test site.

#

But yeah I wish it were more user-friendly at first to get the hang of Kali

steel aspen
#

Yeah i remember having to change something in the ovpn file to get it working and it took a while lol

steel aspen
spare vapor
#

Yeah I like to watch NetworkChuck

sick lance
#

Said nobody ever.

#

BUT YOU NEED COFFEE NOW!

spare vapor
#

He's good at explaining things although I feel like he's for younger people

#

When do I not have coffee?

steel aspen
#

Yeah he's pretty good at explaining core concepts for newbies but idk how good he is at a professional level

#

Yeah he got one thing right professionally

#

Coffee

spare vapor
#

Yeah NetworkChuck I feel is for younger auidences, if I were 12 I'd be watching non-stop.

#

Ironically my passion for programming and then into hacking was because of roblox and C language I wish I knew about him back then

steel aspen
#

Never understood programming language. I'm trying to learn python and having a lot of trouble.

glossy portal
steel aspen
#

I thought it was gonna be similar to bash scripting.

#

Yeah no I was wrong

spare vapor
glossy portal
#

You remember that one hacker movie where they hack a whole group? Like frame them for something?

steel aspen
#

Does matrix count? 🀣

glossy portal
glossy portal
steel aspen
spare vapor
#

MR. Robot inspired me to be better it is so cool how they integrated cybersecurity into a show so accurately

glossy portal
#

I only remember the first, was too young

steel aspen
#

That's lucky lol

glossy portal
steel aspen
#

Altho last parts of 3rd movie wasn't too bad. Ctrl C and Ctrl V of Agent Smith/Hugo Weaving

#

Haven't watched the 4th one.

sick lance
#

Looks like they put Snort back in Kali.

glossy portal
#

Me neither, appranetly it sucked

#

according to friends

steel aspen
#

Can't do it without laurence Fishburne

spice adder
glossy portal
steel aspen
glossy portal
#

doesn't help that he doesn't get serious help...reminds me of a certain someone in the programming community...

spare vapor
#

Which is sad but cool at the same time both psychologists and programmers / hackers can all get something out of it lmao

spice adder
steel aspen
glossy portal
#

Therapist, if only he got therapy early man

spice adder
#

Also art of deception is a fantastic book

glossy portal
#

oh social engineering

spice adder
sick lance
glossy portal
#

I'm usually careful around that stuff, "if you lie down with dogs don't be surprised when you wake up with fleas" but yeah it's a skill I could use, if acquired ethically

steel aspen
spare vapor
#

The Secrets of Reverse Engineering is a good one too

#

Thick book full of interesting material

spice adder
sick lance
#

@lone thistle

Do you have any W7 images for VmWare? πŸ‘€

spice adder
twin ridgeBOT
#

Gave +1 Rep to @spare vapor (current: #472 - 9)

spare vapor
#

np

spice adder
# spare vapor np

You do much RE? I fell into a black hole of it about 6 months ago, love it

spare vapor
#

Used to but I took a hiatus for my mental health and forgot pretty much everything

steel aspen
#

FB probably not much better

spare vapor
#

I plan on returning to it when I complete Cyber Defense path

spice adder
#

I must add, I still hate how complex typecasting can get. Skill issue for me tho

steel aspen
spice adder
spare vapor
sick lance
steel aspen
#

Yeah I can see that I guess lol

#

I've got Kali and Ubuntu vm

spice adder
steel aspen
#

Ubuntu seems to be the same but Ubuntu doesn't get much stuck

spice adder
#

That is the skill issue part for me kekw

steel aspen
#

Sticl

shut hawk
steel aspen
#

Can't type tonight

#

Arch user's seem annoying af

#

Every FB post "I use arch BTW"

#

Is it ment to be a status thing in Linux? Lol

#

It's become a meme

uncut cove
spice adder
#

I just gotta get better at C

steel aspen
shut hawk
unreal wadi
steel aspen
shut hawk
uncut cove
steel aspen
steel aspen
#

Somewhat ironic for me considering I find command line tools easier to use than graphical tools like Burp or Wireshark

sick lance
steel aspen
#

But with command line just have to remember the switch and syntax ig

#

Some of the graphical tools has stuff everywhere it feels like Windows

shut hawk
#

Graphical interfaces have their use, especially for showing large amounts of information in an accessible way

steel aspen
#

Yeah snort/tcpdump involves lots of scrolling. Not that Wireshark doesn't but it's not hard to find what ur looking for at least.

#

Well idk about tcpdump only used it a handful of times but I remember having to scroll a bit

gritty zephyr
unreal wadi
steel aspen
#

But I'll always prefer command line I think

#

Can snort record live network traffic like Wireshark does?

unreal wadi
#

e.g., tshark (cli) is great for quick IP parsing from pcap, but fails to show extended data in nice readable format when you can get it quickly out with wireshark (gui)

steel aspen
#

Yeah Ive used tshark a few times too. It's really good.

loud marlin
#

my company simulate phishing attack, and 277 users fall for it. they enter username/pass πŸ™‚

lavish shell
steel aspen
#

I've just been learning it

#

I've done the first 2 THM rooms n halfway I think through the 3rd

uncut cove
steel aspen
lavish shell
#

I didn't even know they had a room for it, I just started using it myself a few days ago

loud marlin
#

but you are not wrong

steel aspen
lavish shell
loud marlin
steel aspen
#

Attacks

loud marlin
unreal wadi
#

ugh... was in the middle of final task in exploitingad as time ran out, and network shut off. Wouldn't be an issue, but even after restarting the network, no icmp or other packets go through anymore. Anyone want to chime in with a reset (currently 3/5)?

simple valve
sick lance
#

Instead*

unreal wadi
loud marlin
#

and i was THIS close to male some flood thing to automate enter/send

steel aspen
#

Try that 15 min mail if its still active lol

#

Just to see what gets sent out lol

loud marlin
#

nah. hight power hold me nack. it is shade area to do. and i kinda think it was simulation due to some OSINT. was to easy to pass to us in first place

finite basalt
#

@sick lance did you get a ticket for the conference in the end?

sick lance
finite basalt
#

πŸ₯² next time mate

#

I'm on the way over now, arriving in about 5 hours

pale smelt
#

Anyone is a hacker ?

uncut cove
#

nope

lavish shell
uncut cove
lavish shell
#

I was thinking a cereal killer, but a spoon doesn't do very good at hacking lol

loud marlin
# lavish shell I was thinking a cereal killer, but a spoon doesn't do very good at hacking lol

The epic story of one man's encounter with the most relentless murderer of all time. Real movie in the works! Details: https://www.youtube.com/watch?v=gbqKLJtOaGw

Subscribe! http://bit.ly/subscribeRG

See the entire HSM series: http://bit.ly/hsmseries

Exclusive content on Facebook!
http://www.facebook.com/RichardGaleFilms

Rate The Horribly...

β–Ά Play video
#

death bt the spoon

sick lance
spare vapor
loud marlin
#

lol

rapid merlin
#

I think I was trying to SSH into the wrong domain, there are multiple domains in those rooms like ZA\ or THMWRK1\ etc.

loud marlin
#

if you are born deaf... on what language you inner thoughts are ?

shut hawk
#

sign language

loud marlin
#

=/

worn thorn
#

vibrations in morse style code

rapid merlin
#

And indeed sign language

loud marlin
#

might be

crude stump
#

Wait lmao

#

Bruh

#

I didn’t read

mossy river
#

I wonder if deaf people have inner monologue, not everyone does

spice adder
#

I find it hard to comprehend what reading must be like without inner monologue

unreal wadi
floral wing
#

Lol ive just seen we’ll be exploring ctf websites in our ctf lab class & thm is one of them

#

THM bout to get more users lezgooo

rapid merlin
#

Is it possible to run Windows on my Mac Mini M2? (without a VM)

rapid merlin
#

Mac has the option to dual boot using boot camp assistant

rapid merlin
rapid merlin
#

Sounds like a very Apple thing to do

#

M family chips have different architecture than Intel. So the only option is virtualization

#

I miss playing Valorant but I dont wanna buy an extra PC for it

#

I doubt that VMs use your GPU enough to run a game

rapid merlin
#

You can run it in chrome

rapid merlin
#

I never had issues

#

But I’m also not a serious gamer

#

Did you try shooting games on it?

#

A few

#

were you able to hit some headshots?

#

Just need a direct rj45 ink

rapid merlin
#

But I have in story mode

#

lol ill try it

spice adder
#

Just finished Jr Pen Tester. That was juicy

rapid merlin
silver sky
sick lance
#

@shut hawk

Got your Arc E-mail yet?

I've had 3 now... kekw

shut hawk
#

no, I even emailed them about my student email not working and they haven't gotten back to me ☹️

upper bison
#

Why THM emails has been landing into my spam folder?

#

I use Proton Mail and it says that the THM email domain has failed the domain authentication check

sick lance
#

Your E-mail rules, perhaps.

upper bison
#

Rules?

#

In my email box, I just created a specific rule to forward THM emails into a specific box

#

That's it

boreal scarab
#

Be me:

-Wake up to hear a strange beeping sound. Panik
-Don't hear your server running. Major Panik
-Power is out Panik
-Remember your server is on an Eaton UPS Kalm
-Eaton UPS isn't supplying the server with enough power to power the PSU's Panik
-Power comes back on. Kalm

near hawk
#

Lets go Nvidia made me Β£7

sick lance
shut hawk
#

I believe it's possible? But its certainly not recommended to do

#

Much better support on the actull host

bitter quiver
#

Did something change with the GPU market? Suddenly 30xx series laptops and PCs are reasonable

near hawk
#

Probably becasue the 50 series is coming out soon

golden timber
#

I connected with a senior security engineer at Rockstar games and it's taking every ounce of me to not ask about gta 6 leak πŸ˜‚

near hawk
#

99 more members on the Reddit and will do a sub giveaway

finite basalt
#

Scrubz, just did the event for how many from our soc and alumni are going to the conference, we got about 30 πŸ˜‚

#

We an army

brittle lynx
#

Hell ocan anyone help me I want to search for a value within any table of a database in mysql

bitter quiver
#

I get excited for indie devs making a new 16 bit platformer

chilly veldt
#

going for an enjoyment meal today πŸ˜„

shut hawk
gray sonnet
#

:/

near hawk
#

Always the leap years

brisk tree
#

this has me dying ahahahahaha

near hawk
#

Bruh

#

Not even remotely close

naive violet
#

That's literally an "evil bit" solution...

gray sonnet
naive violet
#

You know that's solutions that don't work right?

brisk tree
sand trench
#

anyone see what is wrong in this image???

gray sonnet
#

what the...

sand trench
#

you spot the error vain???

golden timber
#

πŸ˜‚

bitter quiver
gray sonnet
sand trench
gray sonnet
#

sudp apt install openssh-server

sand trench
#

hint: || look up what distro steamos on the steamdeck is based on||

gray sonnet
#

it's definitely not debian

#

that's where the mistake is

sand trench
#

πŸŽ‰

gray sonnet
#

it's pacman

sand trench
#

haha yeah it is based on arch so it would not be apt install

#

not to mention it is immutable

gray sonnet
#

yup

bitter quiver
#

Man I love these things. Actually gives detailed info

rapid merlin
#

So that file casually encrypted everything!

#

Good thing you didnt run on your own pc

bitter quiver
#

I mean it's the little report thing from one of the modules

sand trench
#

@mossy river you there??? got a question

bitter quiver
#

It's cool to read through and see what it did

sand trench
#

see image above

#

and also how you are doing and if you found the information about deaf people having inner monologue interesting

bitter quiver
#

Is this a static report on tryhackme or is it an active thing it runs

sand trench
#

oooh it is from a tryhackme room

golden timber
bitter quiver
sand trench
#

thought you were messing with malware samples on your own computer for a bit

bitter quiver
#

Hell naw.

rapid merlin
#

Whats the name of the room btw?

bitter quiver
#

I just did a fresh wipe as I do like once every 2 years just to keep it fresh.

bitter quiver
rapid merlin
#

ahh

bitter quiver
#

Basically turning 30

sand trench
#

anyways time for shadow to head to the store and pick up some french fries

bitter quiver
#

But it takes forever to load when you click it so Iw as wondering is it a software snapshot that actually runs, or some static "info"

#

Vs the other questions using a simplified report you sift through to identify answers and info

bitter quiver
#

Like Panzer Paladin

lone thistle
mossy river
crude stump
desert shuttle
#

What a good day

midnight hazel
#

hey guys

#

when does the level update on discord lmao

viscid hill
#

what

finite basalt
#

@pallid lotus just arrived in your ends 😎

near hawk
near hawk
#

I didn't realise I put that

#

Oh wow i'm tired

mossy river
#

Funky sentence, go sleep

near hawk
#

I'm forced to play Palworld

mossy river
#

By whom

near hawk
#

Girlfriend

near hawk
#

Recenlty addicted to the game

mossy river
#

I hope you’re aware I already knew that entire conversation

sick lance
#

I thought they left after graduating.

naive violet
#

But I'd never say

sick lance
#

Yeah, I think I asked the after they graduated if he moved closer home, and I can't remember the answer.

#

Even then, I can't remember if they're from Invernees, or near it.

glass nest
#

James knows everything πŸ˜„

#

G'd evenin' folks πŸ™‚

chilly veldt
#

πŸ‘€

warm bear
#

Hii all. I need some advice on certs plez. Considering doing eJPT because people are doing it. But I don't have a clear idea of what I wna be doing πŸ‘€ \

bronze osprey
#

Good morning all

glass nest
#

Hiya alex dot exe. Long time no see πŸ™‚

bronze osprey
#

Same to you! How are you?

glass nest
#

Living the dream. Unwidning after work to re-energise then into the workshop πŸ˜„

golden timber
#

sounds fun

#

I spoke with a recruiter at an agency this morning. Was pleasant

#

A little typical recruiter slang. I was gonna play corporate bingo

graceful thistle
sick lance
#

I don't understand that logic...

golden timber
twin ridgeBOT
#

Gave +1 Rep to @graceful thistle (current: #22 - 350)

warm bear
glass nest
#

got a couple of jigs I need to put together, then a box, a reel for my air hose, gonna have a crack at a foldable chair - which I will template up so I can repeat it easier

#

and inbetween it all - organise the workshop a bit better

mint palm
sick lance
warm bear
#

Yeah. That's the dilemma I am facing rn

#

dunno whatt to do

sick lance
#

Which area of the field do you want to move in to?

glass nest
#

Welcome to life, brodda πŸ™‚

warm bear
#

I can't decide for sure. I am between VaPT and GRC rn ( I am currently doing )

naive violet
graceful thistle
#

ah yeah good one

sick lance
graceful thistle
glass nest
#

Alex - so much woodworking is making stuff to do woodworking πŸ˜„

warm bear
#

eJPT is related, but I only have 5 months experience so idk if I should buy it now or later πŸ€”

#

rn there is a sale for annual fundamentals on eJPT

bronze osprey
#

Custom tools for custom works!

mint palm
#

eJPT is not that much of an HR boost, but I’d take it as a really expensive lab and a fun experience

warm bear
tidal river
mint palm
tidal river
#

Guys i am facing a issue with the xfreerdp

warm bear
tidal river
#

can any one help with it

twin ridgeBOT
#

Gave +1 Rep to @mint palm (current: #267 - 18)

mint palm
tidal river
#

4 th month going to start

#

but i have lot to prepare

warm bear
tidal river
#

Thank you

#

buffer overflow will be a tuff

warm bear
#

btw, if you buy the voucher, does it expire after some time?

tidal river
#

now i have trying Buffer Overflow Prep

tidal river
#

now it is over 3 month

warm bear
#

Ah oki

tidal river
#

till have time to take test may month !

#

─$ xfreerdp /u:admin /p:password /cert:ignore /v:10.10.103.16 /workarea
[23:35:20:831] [28493:28494] [ERROR][com.freerdp.core] - transport_connect_tls:freerdp_set_last_error_ex ERRCONNECT_TLS_CONNECT_FAILED [0x00020008]

#

can any one help with it

#

I have google ed but i am not geting solution

finite basalt
tidal river
#

Or please point me to a right channel

near hawk
tidal river
near hawk
#

No they have no expiry date

tidal river
#

you speaking about INE !

near hawk
#

Ahh sorry, thought you was reffering to THM

tidal river
#

Ahh i need help with Buffer Overflow Prep
on THM

#

can any one help me !

near hawk
tidal river
#

thank you dude

stuck tangle
#

Are there any active discounts for THM subscription?

warm bear
near hawk
#

Yep

warm bear
#

You're account would need to use a student email for the discount to be reflected in the pricing πŸ™‚

sick lance
#

Doesn't need to be.

pseudo sparrow
#

Good evening everyone, im new to these part of it. I have a little problem with my section. Can i ask here?

sick lance
#

You can E-mail support and prove you're a student that way.

silver sky
#

You can contact support and prove it that way

stuck tangle
#

Not a student. I guess there aren't any active promotions?

pseudo sparrow
stuck tangle
#

Not a problem if not.

pseudo sparrow
#

no im a Qt programmer

#

sorry to disturb you guys

#

i think someone changed

sick lance
sick lance
pseudo sparrow
#

sorry, thank you

buoyant tree
#

Spent 40 min trying to debug why my code wasn't starting, realized I didn't call the function

plush mesa
#

mustve been some pretty bad debugging πŸ˜ƒ

#

happens sometimes

buoyant tree
#

so didn't even realize I was coding inside a function until later, (was continuing a few months old project)

sick lance
plush mesa
#

they've been having quite the run

bitter quiver
#

We were taught to fear y2k

#

But the real risk was always leap years

shut hawk
naive violet
bitter quiver
#

It's weird to think about 2038

#

Firstly if I'll even be alive, since anything can happen and our health is never promised. And secondly, how wild will tech be

sick lance
#

I will get past this great firewall of Windows 7! kekw

lavish shell
#

Was talking to a guy about bugs, he said that he hated them because they crawl on you when you sleep πŸ˜‚

sick lance
#

They're not wrong.

bitter quiver
#

Technically wasn't the first ever computer bug literally a moth that got fried inside one of those old giant room size computers?

wheat crater
#

yep

#

hence the name "bug"

clear jackal
#

TIL Google warns you about password breaches even if your password isn't stored with them

shut hawk
#

Where? πŸ‘€

clear jackal
#

I am assuming anywhere chromium touches. It happened on my phone and using chrome on my pc

bitter quiver
#

My password manager warns me

#

Which is nice

plush mesa
#

Were those password breaches for gmail addresses/email addresses you registered to google services with?

clear jackal
#

Yeah, Bitwarden has the feature. I just wasn't expecting it from google because I don't use any of their account management products

clear jackal
plush mesa
#

hmm ok interesting

clear jackal
#

Yeah, it was a surprise. Though I suppose it shouldn't be considering how much google has their fingers in at varying levels

shut hawk
#

At least you know your password was breached

clear jackal
#

Yeah, it aint great lol

#

I know what I am doing after work today lol

bitter quiver
#

After? When I see a breach I start swapping passwords right there, and generally any other accounts associated with it either via linkage or the email used.

#

I don't play that game.

#

In 2024 someone doing crap on your account can lead to a period of pain in the butt time fixing it all

shut hawk
near hawk
#

The only thing that was disappointing to me that got breached was my club penguin account

buoyant tree
clear jackal
#

Am I that old?

near hawk
#

Yea, then they put it back up

buoyant tree
#

do people still play it

shut hawk
#

I used to play it when I was younger

#

Was part of a super secret spy agency 😎

near hawk
#

Not sure been a long time, pretty sure Disney made their own one then that got shutdown

shut hawk
near hawk
#

I couldn't either, although I just wanted to play it again to get to black belt

lavish shell
#

Anyone know when Deadface is happening this year? Maybe October 20th like last year perhaps??

near hawk
#

The past has been in October, so yea most likely then

mossy river
#

I think Duolingo is wrong here smh

#

As someone who goes through many thoughts at one time, this is sentence I would say

gritty zephyr
#

I mean eating a schnitzel at a waterpark is also possible

near hawk
#

The coffee is cold. Do you swim here?

mossy river
#

I don’t think you realise how many times I’ve pressed the coffee on that same question

gritty zephyr
#

Ok quick question, i need to simulate something on a phone(see it as a playbook) for my digital forensics semester, for that i want to inject stock photos with exif data to simulate it being taken at a certain place, anyone know a tool for this?

#

Like where i can add time/coords

wheat crater
#

except that water != Kaffee ^^

wintry sluice
#

android emulator?

bitter quiver
mossy river
lament tendon
#

Alternatively I am sure that there is some way to do that with ffmpeg, if you have too much free time.

wheat crater
lament tendon
mossy river
wheat crater
#

*Das
But I got your idea.

Used Duo for almost 3 years. It got worse by time 😦

shut hawk
mossy river
#

Duo has gotten really good, but as someone who speaks German to my friends, it doesn’t really prepare you for actual conversations.

But the concept is very well made and it does work for casual learners who want something to do on the go.

People that actually want to learn a language should use Duolingo as well as watching TV shows/ movies, reading books, conversing with other Germans and researching grammar, sentence structure, etc.

My biggest problem with Duolingo is that it tells you how to do it, just not why.

There is a language app that tells you why but I forget it’s name and it’s a premium

mossy river
clear jackal
plush mesa
#

"My biggest problem with Duolingo is that it tells you how to do it, just not why. " dont question german grammar, i don't understand it myself as native speaker

mossy river
#

I speak a mix of German, Turkish and English which is utterly useless in actual conversation because the words I don’t know in German, I never actually learn.

wheat crater
#

I'm speaking 4 languages, German as mother tongue. i still think Ger is the least intuitive πŸ˜„

clear jackal
#

Are you thinking about babble for the other service jabba?

mossy river
# plush mesa "My biggest problem with Duolingo is that it tells you how to do it, just not wh...

Not everyone can just blindly follow the rules. Especially me, I have to understand why something works before I apply it.

It also makes sense when you grow up in the language but English doesn’t heavily enforce cases which means people learning German from English can struggle with the word order and the forms of the words changing.

I’m not saying you can’t just go ahead and remember all of the sentences, just means it’s really hard to create your own sentences and imo it creates more effort.

mossy river
#

And! A perk of learning German at such a low level actually improved my English

plush mesa
#

One tip I can give you on your german journey

#

It's die Nutella in case you ever get asked

wheat crater
#

What? Never! It's DAS Nutella xD

plush mesa
#

DIE NUTELLA

clear jackal
#

are you basing that on the article Italians use for nutella?

mossy river
#

Krapfen or Berliner @plush mesa @wheat crater

clear jackal
#

iirc they use la

plush mesa
#

Berliner

mossy river
#

Noooo

#

It’s Krapfen

clear jackal
#

I guess you could use any article in german

wheat crater
#

Krapfen! πŸ˜„

plush mesa
#

oh god

#

its late

clear jackal
#

der nutella

plush mesa
#

cant even do numberings anymore

mossy river
#

Oh god my brain interpreted that as a 1 wtf 😭

plush mesa
#

der nutella is 100% wrong

mossy river
#

Der nutella actually feels right

#

I decree

clear jackal
#

das feels best, because you know, it's an inanimate object lol

plush mesa
#

but thats a bad logic

#

Every object would be das then

#

Wow, the duden says you can use any article

#

It's both feminine, masculine and neutrum. Even though the ending is feminine ;)

lament tendon
#

Das Nutella here, der Nutella there.

#

Not even Germans agree.

wheat crater
#

You would be amazed how Austrians and German can argue over language πŸ˜„

mossy river
twilit inlet
#

same argument with Marmite/Vegemite - in nz and AU - sorry but the brtitish stuff is gross

rapid merlin
near hawk
#

Marmite is disgusting

mossy river
near hawk
#

Should be burned from existence

mossy river
#

All the good speeches are funny

lament tendon
mossy river
#

Yup πŸ˜†

#

It’s always fun to get to people from different areas in the call and ask the question

gritty zephyr
twin ridgeBOT
#

Gave +1 Rep to @lament tendon (current: #35 - 208)

sand trench
wintry sluice
#

nutella 🀀

cosmic pendant
#

They are different

#

if you're new, use Kali

#

if you're pro, Use Kali

#

If you're really really pro, use ubunutu and then turn it into Kali πŸ˜„

brittle flume
#

does anyone know if possible to change the cipher suites of a subdomain only?

#

on cloudflare

wintry sluice
cosmic pendant
#

I don't use Parrot, I don't know anyone that does that I worked with, or have worked with. But I look at like this. OffSec, some of the best training, some of the best people, make and use.... Kali

#

The best tools are the one you use, you like and are comfortable with,

whole yew
#

Try both, in VMs. See which one you like more, and use that.

You can use any OS you want, it's a matter of building or locating tooling that matches what you want to do, and then platforming it in a way that's easy for YOU to deploy and manage.

At work, it literally doesn't matter what linux distro I use, because I use IaC to manage my tooling and tooling config. Every security assessment gets a 'fresh' VM and the playbook gets run from scratch.

cosmic pendant
#

Since we're on the topic. Obligatory don't use Obsidan πŸ™‚

whole yew
#

kek

rapid merlin
#

To my experience, the actual difference between Parrot and Kali isnt that big. Just UI stuff

cosmic pendant
#

The Obsdian devs fight their user base enough, I'll defer to them πŸ˜„

whole yew
#

Parrot has been much more unstable for than kali, and comes with a lot fewer tools installed by default.

lavish shell
#

I, personally, wouldn't recommend Kali Linux, yeah it's great because it comes with all sorts of tools pre-installed but chances are you're either not going to like the tools, not use the tools, not know what they do, or are otherwise unfamiliar or uninterested in the ones provided.

cosmic pendant
#

Wait

#

Did you just argue to remain ignorant? Don't learn new tools. techniques and only stay with what you know?

lavish shell
#

Lol no, let me explain

sharp citrusBOT
whole yew
#

But some people like parrot more; my experience with parrot is that it made things more difficult (not less) and so I dumped it. Kali is a good enough platform for most of the security activities you'd expect to do, and it's oriented towards new-to-security but not necessarily new to IT.

cosmic pendant
#

@lavish shell you should verify first :0

rapid merlin
#

It isnt down so

wintry sluice
whole yew
cosmic pendant
bitter quiver
#

I'm always going to just be a OneNote weirdo

rapid merlin
#

I had the cannot-log-in issue

lavish shell
#

Point being, you can grab an OS crammed pack full of tools that take up a lot of space, or you can use an distro like Bodhi where you have the extra space and can install the tools you want and not have a ton of space used up by tools you don't like using

rapid merlin
#

the login loop

wintry sluice
#

why not?

shut hawk
#

Just like Android is an OS

cosmic pendant
#

But also, Kali coming with most tools by default is great when you don't have internet access likea gov't facility

#

Cold server room in the middle of nowhere, you know what you have

rapid merlin
#

(Parrot has most tools Kali has too)

cosmic pendant
#

So, big advantage, and Juun is 1000% right since they started doing the rolling updates with regression testing

whole yew
# lavish shell Point being, you can grab an OS crammed pack full of tools that take up a lot of...

I understand what you're getting at; often, new linux users don't really get how to install all that tooling on their own if it's not in a compatible repo. That's fine, we shouldn't gatekeep people from exploring and learning security topics because of it. Kali is a 'good enough' solution for those kinds of introductions, and it does simplify tool management for many orgs who use it as the security distro of choice.

glass nest
#

And when you are learning. ok you might not use a lot of the tools, but there are some tools you'll use a lot πŸ™‚

wintry sluice
glass nest
#

hiya Toaster πŸ™‚

cosmic pendant
#

Hey Esqy!

#

I tried every tool under the sun for notes, i think a few folks here know that πŸ˜„

#

Joplin is the best mix of ease, accessbility, sync, multi user.

glass nest
#

Currently giving Trilian the college try

cosmic pendant
#

Oh, yes I remember the Trillium days...

#

Try backing it up hahah

glass nest
#

Obsidian just stopped working for me randomly

whole yew
#

Trillian has some very strong arguments for it; I like the note-locking capability the most. Joplin is a close second on that front, and does tagging better though

bitter quiver
#

lol

glass nest
#

you old

bitter quiver
#

I last touched that in ~2003

#

Two decades ago

cosmic pendant
#

I do

bitter quiver
#

Pepperidge farm remembers

lavish shell
#

It really depends on what you prefer honestly, I prefer something that offers more customization. That's why I use Bodhi. To each their own, Kali is good, hell I don't think there's such a thing as a "bad linux distro". But Bodhi offers so much in terms of customization

rapid merlin
#

Dont say that out too loud

#

:p

shell nova
#

see, I prefer something that actually works πŸ˜‰

leaden fiber
bitter quiver
#

Damn Small Linux had to swap from 50mb to 700mb

#

Linux community has failed us

cosmic pendant
#

I sure do love compiling!

crude stump
#

What’s poppin

shut hawk
#

I love using heptabase

cosmic pendant
#

Does anyone know of any OS written in a mem-safe language?

bitter quiver
#

Does Tails have that?

lament tendon
shell nova
cosmic pendant
#

So is DHS in America πŸ˜„

shut hawk
#

Yeah did you see the report? πŸ˜‚

wintry sluice
#

do they just mean managed languages?

#

like c#

shell nova
#

they mean stop using C

bitter quiver
#

Did the whitehouse just realize risks of memory in 2024 or something?

#

Like it wasn't a thing in the 90s

lament tendon
shell nova
#

yup

wheat crater
#

C# is also considered as mem safe afaik

shell nova
#

any managed code will be

#

so is Java fwiw

wheat crater
lament tendon
# cosmic pendant https://www.tomshardware.com/software/security-software/white-house-urges-develo...

Ok, thanks to the background code in this image I stumbled about an absolute comedic gold mine:
https://stackoverflow.com/questions/1642028/what-is-the-operator-in-c-c

twin ridgeBOT
#

Gave +1 Rep to @cosmic pendant (current: #37 - 191)

lament tendon
#

You just have to ignore all the normal answers. ;)

cosmic pendant
#

Sounds like a perfect fit for AI.... /s

lament tendon
wheat crater
#

reading the explaination ruins the joke tbh πŸ˜„

sand trench
#

wut???

lament tendon
sand trench
#

yeah it works but why the meeps

wintry sluice
#

meep?

sand trench
#

meepmeep

#

fun sound to make

lament tendon
#

That's hella funny.

sand trench
#

YAY the sixel branch of alacritty on the aur got updated

#

boo tmux not handling sixels well in alacritty

#

guess it is time to bring out zellij

shut hawk
bitter quiver
#

I can imagine the smell

wintry sluice
#

I can't 😭

lavish shell
#

I don't know wtf is going on with my VM, it's hating against the tryhackme site today. I used it for endless hours last night, now it's saying I have to use a desktop version.

wintry sluice
#

I often forget to turn off the proxy on my VM

lavish shell
#

Nah, that isn't the issue, it's reading my bowser as a mobile version rather than a desktop version

charred forum
#

aw missed the kali vs parrot debate

#

ive done most of thm rooms with ubuntu

hybrid shale
#

i was told to use thm by cyber security police thingy (at school) and im only 13 lol

charred forum
#

i only use kali for burpsuite because ubuntus graphic are weird

hybrid shale
lament tendon
#

Small update on my very important scientific work.
C++ is great.

hybrid shale
shut hawk
hybrid shale
#

Ty

bold latch
#

Anyone from the homeserver squad around?

shut hawk
#

Ask your question

bold latch
#

Need some opinions on cloud backup options. What's y'alls provider, if you have any?

lavish shell
#

Got my issue fixed lol, someone thought it'd be funny to change the browser settings to where it would be initiated through a terminal session rather than starting regularly when clicked

spice adder
bold latch
#

I've been thinking ideally of a Nextcloud instance, which'll be hooked up to an external cloud to ensure data integrity because as much as I can trust ZFS, well. 3-step backup ideology

#

Looking at Idrive, Blackblaze and whatever else's around for some 10TB plan

#

Filen looks decent, yeah

#

Idrive looks just a bit cheaper with its $300/year plan compared to the translated $431 filen's charging you

#

Or would be, if you're using 10TB that is

#

Which well. Quite a bulky amount

shut hawk
#

Filen had half prices on black Friday which is what I got

#

What are you using 10tb for?

hot cairn
glass nest
#

Barely an EmmaByte

loud marlin
#

for us, simple mortals, 10tb is nice πŸ™‚

hot cairn
#

@bold latch if you want cheap backups - backblaze personal

bold latch
#

Felt like a sweet spot for a "set up and forget" type homeserver plan i'm expecting to last for a lifetime

hot cairn
#

and put it somewhere safe

#

as a backup

bold latch
#

with a physical 4x4TB NAS system

bold latch
hot cairn
#

store it at a friends/family place

#

mb even throw it in a junker PC to do online backups

bold latch
#

and i'd need it sync'd regularly, yeah

#

right, that's a good point. why not just invest the Β£300 yearly into a second server to cluster and run an additional ZFS pool on

hot cairn
#

zfs send | zfs recv best

chilly veldt
#

πŸ‘€πŸ‘€

bold latch
#

use that budget to replace faulty drives and ZFS redundancy backups to recover data

molten sky
#

guys

#

the word circuit

#

like electrical circuit

bold latch
#

ahh. imagine. 1 server with ZFS tier 1 redundancy and 4x4TB. another server with ZFS tier 3 and 4x8GB storage or somethin

molten sky
#

how do you abbreviate that when labeling

shut hawk
#

pay what you use

buoyant tree
shut hawk
#

no

wintry sluice
#

ckt?

chilly veldt
bold latch
shut hawk
#

oh actully

molten sky
shut hawk
#

sync.com seems to be doing a big deal on right now

molten sky
#

you were supposed to say CKT

shut hawk
#

$140 a year for 6TB

wintry sluice
#

yay, I won πŸ₯³

molten sky
#

i just had the realization that depiste CKT being the norm around here.... why do we use a K???

#

everything's a lie

wintry sluice
#

pronounciation

buoyant tree
bold latch
molten sky
#

cloud prices go up every year

#

hard drive prices last until they die

shut hawk
bitter quiver
#

Last time I used a cloud based server it stayed the same price since 2018

#

Still dropped it though

bold latch
#

just checked, its $240

molten sky
#

oh wow i misread the original msg

shut hawk
#

Promocode: SAVE100

bold latch
#

ahhh, gotcha

rapid merlin
#

Hey red teamers