#general
1 messages · Page 69 of 1
germany. the paragraph that says you cannot install tools that "can be used to prepare or help you breaking into computer systems" is usually referred to as the "hacker paragraph"
check it. i might be wrong
Enclosed no
Inland doesn't tell me much
there is more filament that need enclosed system than one does not
think not
we do. and these laws are usually being overlooked for pen testers, but we had a story 3 years ago where a pentester got into trouble for reporting a security hole in an application of a big political party. luckily, the chaos computer club backed her up and the political party quickly did the "whoopsie doopsie, my bad"
Fuck
Silk PLA filament is quickly becoming one of the most popular materials for 3D printing due to its smooth texture, sheen, and eco-friendly…
that is nice
here is an article if you are interested in the story. that whole thing was so fucked up.
Die CDU hatte die Entwicklerin Lilith Wittmann, die Sicherheitslücken in der Wahlkampf-App der Partei entdeckt hatte, angezeigt. Nun stellen auch die Ermittler fest: Die Daten standen ungeschützt und offen im Netz. Sie beenden die Ermittlungen gegen Wittmann, doch der CDU steht ein Datenschutzverfahren ins Haus.
ftw you've been learning german for two weeks and some of the words in a german article actually mean something 🥹
ah sorry. i thought i added google translate to translate it into english
no need to apologise.
tis a good feeling
fixed the link, now it should translate into english, i hope.
Anyone know what this is, I get it when copying stuff from my terminal to cyberchef, its not \n or new line
probably yeah, thanks!
Gave +1 Rep to @wintry sluice (current: #349 - 13)
yeah it's \r
rrrrr
yarrrrrr
Grrrrr
No need to count calorie,just cut out sugar and watch your carbs. This is coming from someone who lifts weights since 2013. Also do cardio,your heart need pump 🫀
I need the calories, I'm severely underweight
I have booked a doctor's appointment to discuss it so I can get professional advice, but for now I want to keep track of until then
Whaha
Calorie Counter, iirc it's backed by the NHS
So if you have problem gaining weight,drink gainer.
the fitbit app has worked well for me.
I would recommend against providing medical advice without:
- knowing anything about the person you are talking to
- asking for context first
I am very very miffed. Extremely so.
Gainer should only be used with a balanced diet. The advice you are offering is horrible.
I'd love to know how they got access, tho.
- Being medically trained. (But maybe that‘s just my opinion).
How is my advice horrible?
You are telling someone to drink gainer which can cause adverse health problems when misused.
My mates who cant get weight ate gainer,and it worked perfectly fine with them. No need to overcomplicate things.
Is that a persistent connection? Not just a crawler or port scanner?
Its gainer dude,not bleach
You are aware that all types of supplements can be misused... right?
Fuck if I know. I only just read a mail from Hetzner indicating that my server popped up on the BSIs radar for portscanning activity.
That mail is 5 days old.
I got half a mind to just decom the server and buy a new one.
Right. Kritis or something.
So does this mean your server is getting scanned or is scanning?
Nah, that is my personal box. 
Oh, makes sense.
Hetzner says that BSI says that my server has open portmapper ports.
So your server is scanning? Good luck then. 😔
I'm gonna nuke and pave.
The worst: I had wazuh set up to NOTIFY ME OF SHIT LIKE THIS.
Didn't notice the container dropped dead
Damn.
If I had like $200 over, I'd call Bella and ask for her expertise.
I‘ll come check for $199.
I hate to say it, I trust her expertise more than I trust yours. 😛
🥺
Awww
Now, lemme grab a pack of smokes, then it's time to see if my borgbackup worked.
Godfuckingdamn it...
.. wait. Fuck.
FUCK
I think Mac just got kidnapped.
No, I just realized I need to cycle all my ssh keys and stuff
Aaaaaarghhhhhhgh....
shoot me please
bang
Got a spare bike, you can use it for a while.
groan
Bit, I'm gonna bite you.
/afk smokes
perhaps bit likes that kinda thing
ello mac

hi ralex, can't talk, got server to de-compromise and nicotine level to top up
hi shadow!
fair fair 🙂
that was a quick smoke. did you eat it?
could not find the gif shadow wanted to insert for eating ciggarttes here
Me: wants to go home.
Cool automated scanning tool: 😴
Luckily I learned that there is a 668 to 46107 chance that I am scanning a QNX system instead of a Linux one.
crunchcrunchcrunch "... Mo?"
In tryhackme is there any integrated way to change the language?
Other than using your browser’s default translation, not that I know of.
jabba... is there limit of point's restore when ||someone|| miss the day and lose it? 🙂
think jabba answered that yesterday and the answer was yes but can't give exact details
ahaa
Depends on a lot of various factors. Your best bet is just to email support
ok... hope is not 3rd time 😦
I wrote the rules of resetting streaks, I don't discuss them because I don't want people to try and abuse support's kindness
understandable...
tries very very very very hard to not even have to contact support to reset streak
time to brute-force the rule definitions
@boreal scarab i freaking hate PETG...
Hello, is there anyone who finish SOC lvl 1 in THM ?
Benign Task 2 last question
Shadow the absorber
What is the URL that the infected host connected to?
^ @dense quarry
@sand trench wassup
Thanks ❤️
Do you recommend any platform to learn programming languages? I like the learning methodology of tryhackme in the sense that it is quite practical. They also challenge you on each topic, however I do not know of a similar platform that helps me increase my knowledge in languages such as python, javascript, php
Check pins #programming
Brilliant, just what I was looking for, thank you!
Gave +1 Rep to @mossy river (current: #6 - 1190)
Meee
jared is the best hacker here
Me 3

not sure even jared can hack the space time continuum
even Jared has limits
If you want a technical response - yes.
But it's not what you would call hacking...
OSINT.
oh
This has been used many times in the past to try to find lost people, it would be more difficult but you can try and use it to find a missing plane.
Only problem is that it relies on the general public to work together.
blegh blagh blugh blygh
the plane been missing for 10 years now
I expect you were anticipating a response like "Yes, you can hack the GPS on the plane to find it" but if it were as easy as that, it would have been found by now.
I now feel old
Blueh bleh bleh bluhwh
:hammer: xyzsm#0 has been banned.
i thought like if they could hack the air traffic control device that was tracking the plane until it disappeared from radar
Didn't they find that plane?
nope
Unless someone is purposely not releasing that information to the public, then no.
You can't really fabricate something that doesn't exist and if someone is keeping that information hidden, they are trying really hard to.
that sucks
even if you had the info, ocean currents mean the wreckage could be anywhere over 1000s of square miles
I could be wrong this response is purely formulated from my understanding.
ocean big, plane smol
true
and water absorbs radio waves rather well
i think they are going to do another search for the plane
It was abducted by a UFO, then the military shot the UFO down, which brought the plane down.
This is a joke, it was the plot for the latest X-files episode I watched.
but where?! 
Over the ocean.
the Pilot has a YouTube channel too
UFO was stealing oil/fuel.
you bet they shot it down.
They use cold fusion, no need for it.
cant get proper temp, retraction or almost any shit... prints looks like crap =/
Thr pilot of the plane that can't be found?
perhaps the pilot of the plane doing the next saerch?
yeah
he uploaded like a few months before it went missing
ah
ooo I remember that episode
the one in which a guy was trying to reach mulder
and trying to get there via plane
but got abducted mid way
Attempted.
Do you think someone could repeat what D.B Cooper did when he hijacked a plane and got away
yea, good episode
makes me think of that episode of star trek voyager.
where they find a truck floating in space.
then find a load of people, including amelia earheart.
question what's D.B cooper
you mean who
voyager was nice
reminds shadow of the episdode where they find voyager 1
We don't allow discussion of illegal activity here
D. B. Cooper is a media epithet for an unidentified man who hijacked Northwest Orient Airlines Flight 305, a Boeing 727 aircraft, in United States airspace on November 24, 1971. During the flight from Portland, Oregon, to Seattle, Washington, the hijacker told a flight attendant he was armed with a bomb, demanded $200,000 in ransom (equivalent t...
oh dat guy
oh
see also: https://xkcd.com/1400/
...
brake a leg...

My Gobuster scan is taking a very long time. I'm in pain
cries in no package yet

Just tell it to go faster

True, didn't think of that
Stop it and start ir again
Add threading if you do
👀
Wait quicker.
I just saw a guy with 1047 streak what the hell
could almost be shadow
Was it Steven*
don't remember, had a black male as pfp
2 days ago Steven posted a screenshot wth a streak of 1057.
upshawsm, I found it xD
that's insane
Yeah, that's Steven.
less impressive:
Even less impressive.
well your rank is higher
Small win?
I am smol
How's entry lvl jobs for cybersec.. I'm did some thm rooms , ik some basic networking, pentest , python.
What kinda job can I get as a fresher??
Guys, I just joined thm and I’m too 1%

Jelly?
If you become #1 do you get given the company?
You'd need to be really lucky and network to get an entry level position.
You get 0Days title.
No verification, no embeds.
Why soo.. am i less qualified?? I would like to land up in red team kinda thing
Experience and certs are golden in this industry.
I'm not saying it's impossible, but it won't be easy.
You will rarely start at red
Usually blue as an analyst then you move to red
Add networking (social) to that list
Hiss
Again, it's not impossible to end up on red via networking.
I had the chance.
And it came from this server. 👀
Do you mean the jobs or the people?
I had the opportunity of a pentest job from somebody in this server.
Which company if you don’t mind me asking?
Oke so any suggestion on how can I start.. any particular path I need to follow to make things come in line?? Any certifications for beginner lvl??
Mine was applying and getting rejected till it worked and someone gave me a chance
Took ages tho
I'd rather not.
Understandable
The Org and user will be anonymous
Many certs are expensive, you can get free cert from IC2.
And allows covering the cissp requirement if I choose to one day
However being blue first will massively help out being red.
Thanks.
Gave +1 Rep to @lament tendon (current: #35 - 210)
Ditto, and was fortunate enough to do it
Without the pfp I wouldn’t have noticed your colour changed
It's a nice shade of green.
Sure bruh... Any other skills I need to focus on coz I'm learning offensive pentest now and I see it'll not work as fresher.. any other things I should learn??
Are certs from secops getting any recognition or they are just in dark?
But then who else would shit post so well
Hope I didn’t offend you btw @shut hawk was just making a joke
Look around at positions around you and see if they have them as wish.
Lol no offense taken
I'm not bothered about my colour
Wahahahaha. I love how Wazuhs dashboard says that Dark Mode is only for very advanced users. 
(but I do like this shade 😛)
Nah, they still be crying for that CEH
Free for a $50 annual maintenance fee*
So, not you? 
I can’t react to messages ):
Shush 😛
Yeah, but you can get the cert without AFAIK.
Verify 😉
Does it not expire?
Maybe some day
After the year of the cert yeah.
But most poeple I know just have it for the year.
I see.
isc2 points are a great motivator, but for cissp and further they have different types, and a lot of them to collect
I see
but isc2 activities are really fun, so I strongly recommend joining
CC is very much theory based IMO
They are improving it
hey guys, where can I ask for help regarding matters relating to career paths
because it really lacked practical stems
#cyber-and-careers is a good channel.
I failed mine when I took it
Went without any preparation
thank you
Lesson 101, always be prepared yo!
did you go for free?
Yes
TBH i took it just cause it was free and I wanted a trip cause it had been a long time lol
Never took that seriously
Now I regret
Oh yay. Chirp-next is in AUR.
Good afternoon hackers. 😁
HT?
6x socks without 2nd pair of it =/
Ah I got a 5(8)
Moved so I want to get local repeaters programmed in.
Big move?
Damn. You have not died yet.
What are you guys talking about-
Radio
How‘s life?
Is good. Finally all moved and have some free time here and there. How about you?
Work.
Got a physical exam next weekend, competing in the CSCG and, well, normal job.
But it‘s fine since I am not bored for once. 😌
Where‘d you move to anyways?
Moved in with my dad and step-mom. They like having me around to help out.
It's very nice to spend time with them. 😊
Yeah only foundation but they recently increased the privileges
Nice!
So I get more bands, construction, 25w, and a few more bits
Looking at the step up soon
I'm going to step up my license here soon too I think.
Honestly it's easier here because you don't have to be on an open register etc
License only covers transmitting or receiving also?
Not sure how receiving would be enforced tho
Recieving is regulated but unenforced, you're fine to listen on broadcast or ham bands here for sure though.
Transmitting is illegal without a license outside of things like PMR radios, or ISM band stuff but then you can't do telecoms
Eventually I'll build one but using an off the shelf one atm, recieve is more interesting anyway
Gotten anything cool?
Satellites?
I assume all encrypted?
Nope.
Check the legality in your area
Not fine to recieve anything not intended for you
Yall cant help with my economy for school right? 😛
Nah yall dont have to
But its a pain in the ass
Economy, the subject?
yeahh
YOUR economy?
If you send me all your money it’ll make your personal economy easier to handle
xD
No the subject economy
Its just a pain
It is fun, but also a pain
Average total cost, total cost, marginal cost
blah blah blah
sometimes it feels like this
RF is highly regulated in UK?
Not exactly, just they have legislation from 100 years ago still on the books for recieving unlicensed broadcasts etc
Fucking knew it

WhAt iS RF
It’s worse when they say “new password can’t be old password”
Rx isn't an issue at all in the US.
radio frequency
It’s like it’s mocking you
ah thx
Gave +1 Rep to @buoyant tree (current: #159 - 38)
Transmitting is the only thing that'll get us in trouble here. I think there was once local laws about police scanners..
@rapid merlin Ticket: Computer Problem
Description: Don't work
🤣
b
Woes. 🤣
When I put ' it gives bug.
Respects if you get the reference.
@sick lance congrats
Thank you.
Gave +1 Rep to @buoyant tree (current: #156 - 39)
Heh
Have you tried ' or \`\*-%!?
One of you got it. 
Documented issue. Google is your friend. 🤣🤣🤣🤣
"There was a error in your SQL syntax"
for what is the Rep
there is errors all the time in SQL 🙂
true, also can you cut wood with your laser?
yes. depend of thicknes. but up to 6mm 3-5 pass with 60-80 power and 35 depth need 4-5 pass
and depend of type of wood
Congrats!
Thank you!
Gave +1 Rep to @icy epoch (current: #406 - 11)
New most active moderator???
oh scrubs is blue eh.
quite thin wood, hmm
congratulations, hope you're being paid this time around.
well yea... can't cut 5cm wood for sure. i mean i can but will be crap lol
and i have galvo laser. so that will cut in angle not straight
YAY soon scrubz can yell at shadow for skirting the rules
one more in line 🙂
Is shadow amused with that?
to be honest it might mean quicker responses to moderation issues shadow report
as scrubz is generally here and active while shadow is
Its not only pinging Jared, but @scrubz too 😄
one more to blame for things 🙂
Maybe not yell, just politely ask you mindful 🙂
Can we ping you too from now Scrubz?
I've never minded being pinged. 🙂
But when someone tries to break the rules xd
i think i will have nighmares for a week after OWASP Top 10 - 2021
oof thta is a high client ping
is that so
not low either
i think i bonked my linuz with some dumb things i try 🙂
Maybe alex and I have the same isp 😛
#bot-commands ppl
Congratulations @sick lance with your new role! 🥳
the colour change on scrubz is staggering
KPN =/
Yup xd
Scrubz should be red not blue
lol
At least KPN is better than ziggo
🫡 Thank you.
Gave +1 Rep to @sand trench (current: #4 - 1668)
I agree, it looks wrong now
same crap, different package
Mhhh but then a little more crap
Staggering? 🤔
¯_(ツ)_/¯
Lol, I see.
sometimes shadows word choices are whacky wonderfull thingies
I like how shadows commuted to third person and cheese posts
Always reassuring
yuup shadow in a nutshell
shadow is also sad their ultra portable mini computer shipment got delayed
should arrive tomorrow though
bad post, bad bad 😦
unless bella steals it from the danish post office @chilly veldt
btw... what you buy ?
You mean a physical pentest
dragonbox pyra
carry case for it
256 GB micro sd card
kinda spice price 🙂
Micro SD? Won’t normal PC usage burn that out quickly?
I’ve broken several by being too aggressive with data transfer
btw... one Q... for micro sd card there is adapter to turn in sd card slot/size... is there any micro sd "card" that have adapter (might on wire) that can stick other card bigger? if i explain correctly
Yeah, you can get "adapters"
I have a USB one that has all the SD card sizes.
but not usb... the micro sd to other cards
can you find pls 🙂
I've seen microSD largerer things
yes... that...
First time seeing one backwards
I have one of those.
but can it support like usb drives and so?
that is ok. but i think something alike james show
but to have support for other card. alike multi card support over microsd as plugin in pc
Yeah, that would be the better option.
Where can I learn about compatible computer hardware n WLANs with the 802.11 stuff
time for the bi-yearly setup 2fa on all sites that let shadow do so time
Introductory networking the question is where is the ver first place your computer would look to find the IP address of a domain?
I put Local Cache
and nah the only micro sd card shadow has broken was because it got stuck in their raspberry pi
and snapped in half when shadow extracted it
But it won’t be accepted. Any ideas?
#room-help please 🙂
What specifically are you looking for? You can look up the standard and read it's docs
Just everything to do with WLANs
That's very broad
Maybe just start with a base understanding of networking and read some of the standard
There's really no advice I can give when you keep the scope that wide
YouTube may have something i guess
@rapid merlin can you please interact with community more before self promoting, thanks 🙂
Gave +1 Rep to @grim wyvern (current: #2022 - 1)
I think you may struggle there as well, because in order to get good results you need to specify what you're looking for.
Yo, poggies @sick lance congrats!
Thank you!
sure i need your support and when that happens I won't have any problems in Interact
congratz scrubz

Thank you.
grats!
I accidentally overslept my nap and slept for 6 hours instead😭😭
What do you need help with?
Missed Maghrib, but now I can eat
Any Skyrim fans out there ? 🪐🔮💜
#Skyrim #Skyrimmemes #Elderscrolls #Khajit #morrowind #Oblivion #Gamingclips #Bethesda #Xbox #Jzargo
Soundtrack “Jeremy Soule- Secunda”
@sick lance is a trial mod? Yooo congrats!
watch my videos and give me feedback i don't care about likes, comments or even views just feedback
Thank you 😄
Gave +1 Rep to @boreal scarab (current: #32 - 229)
Thank you!
You might consider not to get promoted to a mod due to the role's color hehe
tf since when
Oh yay. Taxes done. 🥳
@chat
Did you not have 2fa enabled til now 👀
Wht is that
2 factor authentication
it is like you have these 3 things
something you know
something you have
something you are
go on tryhackme... then profile page... then password and security
there is a nice shiny green button to enable 2fa
it uses your phone as a thingy you have
where it generates a random 6 digit code every 30 seconds
that you will need to login
yeah decided to not enable it until all the issues were worked out... now not heard anyone one complain about any issues for more then 3 months
this site is amazing: https://2fa.directory
morning shadow
Never heard anyone complain about 2fa on THM
morning???
Only complaints I see is theres no dark mode
I wass just messing
for some people at the start it failed to work and/or backup codes not working as intended
also people having trouble disabling it
Tell me fr how to do it
yeah... I accidentally wanted to take a nap, and then it turned into a 6 hour sleep :/
👀
⏳
Tell
Its asking to send a link
???
@rapid merlin
after that you can post pictures and links in here that will embed
It started me teaching about hacking 👀
yeah tryhackme will teach you hacking
though for really good stuffs you need to get info from a lot of differeing sources
I may send u ss
PLEASE NO DO NOT SEND DM:S TO SHADOW
So i may want to share ss
screenshots that don't include any private info can be shared here after verifying your tryhackme account
Sir do need to verify my account thts the reason i want yr help
the link in the bot message above tells you how
also shadow is just some random person
sharing the token with them would be bad
As if u r warning me im in the right hands
Shadow posted the docs link on how to verify. Follow those instructions.
thank you juun
Is it only possible on pc
I’ll do it tomorrow
If my ac in danger ill leave this server?
Hello guys quick question : Why does choosing the post exploit in metasploit and setting the Session to the right ID dont work, but running the post directly in meterpreter works ? Thanks !
What? Your question doesn't make sense.
Read the directions, your question is answered in there.
Is this for a THM room? #room-help
Is verification possible through phone
I already passed it, just was wondering the latter way
yes assuming you can log in on tryhackme.com using your phone
guess you need to make an account then
With same id or that could be different
@crude stump this is what plat lobbies look for me rn
I am losing my voice which I why I am not talking much in this clip
We literally pushed everyone we saw, which is why my loadout was stacked
I always hate when zone is on a mountain
Funnily enough, the start of that match iirc we almost got wiped. Shows you how easily a game can flip
i wrote my first medium write-up today - or rather rewrote - you can't upload a pdf! i spent a long time making a pdf with watermarks and images and stuff 😿
I find that most people we fight against rn aren’t as good as editing so when we pressure they run
@rapid merlin this is the discord server for the tryhackme.com community
you never take me anywhere anymore
Well you never get dressed up anymore
Always with that stuff. Every time. "My father this, my father that."
I didn't marry your father!
there were issues?
same
So wht
same x2
yeah there was... there no longer is
huh. never knew.
So you will not get very much out of being here without being a user of the site.
Verification requires you to be a registered user
Beef stew or Mac n cheese?
Mac n CHeese
Do i have to login with the same is
Mac n Cheese with buffalo chicken in it
ID
Yuk
It's Irish Mac N Cheese, or Guinness Irish Beef Stew
Ooo tough
Exactly my thought, why I came here
Irish mac n cheese sounds heavenly
Fr
irish beef and guinness > shepherds pie
Beef stew it is
with the kerry gold
Aw man if only they used beer cheese
It's in a Guinness sauce
Oh that's for the stew
Mac n cheese has bacon, sausage, cheese sauce
just the guiness and the tatyo meanies. we don't have the tayto man here and it's a sad development
I am currently eating dinner
I'm sipping on a double of Penelope neat waiting for my food
I reheated some sesame chicken
Noice
it's 11:30pm and I accidentally slept 6 hours
Just an extended nap, doesn't hurt
I have to be up at 03:40 AM
Logged inn
I literally just woke up 
but yeah, once I am finished with dinner, I am going back to sleep
shadow should probably try to get to bed early too
so that they can snipe their package when it arrives
the one that got stuck in denmark
stupid UPS
the gaming device
?
yuups
what was name? pythoga...
dragonbox pyra
oh k
its predecestor was called openpandora
Thanks Shadow
Gave +1 Rep to @sand trench (current: #4 - 1669)
Whiskey and spicy do not mix
Alt f4
Exercism and The Odin Project are commonly recommended for training developers.
im native Estonian, IT and cyber-security iv only known in English, some of the words in Estonian what are it related are so bizarre , i think if u where to say too many of them in 1 sentence u can summon demons. xD
meep moops time for sleep sloops to the beep boops for shadow whadow
Let's stick with English then 😉
I keep forgetting it's an hour ahead... was about to say, you're an hour early
How ya doing @shell nova ?
going to bed now 🙂
But I thought daemons are part of Linux life
shadow is early though... it only 00:19 here... so shadow is aiming for early to get their dragonbox pyra

Ahhh
think I broke cmd prompt somehow
01:20
Please guys recommend me some legit books for beginning hacking training
Or programming languages i need before starting hacking training?

check the #bookclub, also humble bundle sometimes does infosec bundles
learn the basics of one language and understand how programs work, the rest is syntax
@blazing granite
@languid vineI just started out and am reading "Practical Social Engineering" by Joe Gray. Great so far
sigh
Whiskey is just water for people with life experience

Boo
i prefer gin tonic
tequila 4 me
Whiskey calmed my nerves, as did rum. Tequila gives me energy
Then there were Vegas bombs
Crown + redbull
Too old for that now, but that was a combo I don't recommend. Any "bomb" drink actually I don't
Not good for the heart
Glad I'm alive
WHen you are in your 20s you think you are invincible
If I ever find whisky calming my nerves I’ll have to throw away the bottle
I had a nasty bomb shot, was just tequila, whisky, rum and vodka mixed into a shot glass
How do you even function with so much alco in your body 😐
I think it was more of a “get me pissed quickly” type of shot
To be fair I don't drink anymore. Optional.
I never had it addiction wise. I just knew what had positive effects on me and I run high strung because I can't stop tracking everything
Mind goes too fast
Whiskey would slow it down
Same reason I use mushroom coffee
Which is far healthier
gz
Indeed they don't spicy fuel the alcohol and doesn't taste good
@boreal scarab spicy food contains capsaicin, this react with the alcohol creating a burning sensation, that's why is recommend a lower alcohol beverage with spicy food, some whites even beers can go well with spicy dishies
Can someone help me out
Ask your question. 😉
he already did 😂
Cheating of any form is not allowed. This is not limited to asking for help with assessed schoolwork or exams.
Lol
Dang it. I didn't even get time to make my popcorn. 🤣
They are assessing your ability, not ours.
j/k btw. I'm just being an ass. 😉
But it's an exam to go into a class that teaches you the exact things they are quizzing you on 😭
They probably teach it on a much more advanced level, which requires at least a baseline understanding or the ability to quickly learn the skills required on your own.
It said it was for beginners
Have you tried addressing this with the person running the class?
Um, would it be possible to give a hint on what to do? There's nothing much I can go off on with the meta data I have
No.
Maybe you should study a bit more before the exam 😉
It's just one question, I managed to do the others
Sorry, no exceptions.
Study whatttt, I didn't even start the class yet
When connected to the THM network through openvpn, is it possible for other users to communicate with my computer? Or is everything completely isolated?
You should be using a Virtual Machine which is better security-wise anyway.
Thanks mate
Gave +1 Rep to @bitter mulch (current: #2022 - 1)
Thank bro
np
Liking your name

Should start a thm wt clan. 🤣
Anybody knows whats up with the capstone challenge flag confirmation?
Someone's username might be breaking the file
Which language do you think is most important for a pentester, python or javascript?
context matters
javascript
Python
A good grasp of all language formats is important imo. You don't have to understand everything.. but be able to look up resources and identify which language you're looking at. Just my opinion though. And yes. Context really matters.
That feeling when you can't sleep after eating
Hi everyone! can anyone explain me what is the pupose of "strings" command in linux
It's to give you all the readable text in a file
and base64
The command or text?
command
Google it
Sometimes you'll get an answer other times you'll have to research yourself
ok thanks
ChatGPT helped me understanding principles, I mean this question is a perfect example where an ai model in 2024 can help you . Wait a bit before giving all your hope on GPT but for this kind of question, yeah go for it it’s a no brainer. It works
I've been seeing people with animated pfp's. Some people have recommended switching the gif filetype to png and then trying to upload, but I havn't found much luck with that. Could I have some help with this, if it is even possible?
yep you are right i asked this to chatgpt but i ask questions to everyone because may be someone will give me a keypoint that i still could not get from anywhere
On the THM website?
If that's what you're referring to; you used to be able to upload animated profile pictures by default but it was taken away over a year ago. If you still have an animated one up there, it will stay that way unless they make a change and remove them sometime in the future. Otherwise, you're out of luck, I'm afraid.
There has been vulns to upload it with too before, but I am not sure if they have fixed them with the rework of the site
If you need a movie insight of a « kind of » definition of NTLM authentication , check this funny part https://youtu.be/pWS8Mg-JWSg?si=OqbLjA_uAkOXiGQj
what a shame. Thanks for the help
Gave +1 Rep to @flint sluice (current: #55 - 119)
👍
No worries bud :)
also im seeing the words "mentorship" and "mentors" getting thrown around in various cybersecurity discord servers. Is that something you can ask people for, on lets say discord, or is that something you can achieve through a verified service
I'm still new to the field, so thanks for the patience
Why not? Its just asking someone more experienced to teach you
Its people's own initiative, nothing official
does this discord server have a place I can make a request/ask?
cause i dont want to just start randomly dm'ing ppl
Probably in intros if anyone bothers reading them
Yeah don't do that, I block people who dm me like that 🙈
Not really, there are several channels dedicated to specific topics where you can ask something related and you could try to find a small group of people to study together for example. But if you are looking for a tutoring style service, we don't have that
yeah dont randomly DM 🙂 thats in our rules also (you have to ask someone if its OK to DM them before you do)
Sad reality is that most people who are experienced in field also don't have that much free time to dedicate themselves to tutoring
Do you have a soft copy of that?
I already get to tutor junior employees at my company, outside working hours I want to turn my brain off about IT stuff 😄
lmao
If you are asking them for a copy, please buy the book legitimately
So, anyone participating on Lockedshields this year?
whos it open to?
Elaborate your question?
Ok
Are there any restrictions based on age, position, etc?
from participating
Most accurate answer would be citizens of NATO countries, but obviously not anyone can join, its invite only event
ah
Every nato country military makes a cyber team and they compete against each other against active red team
In war-like situation
Yeah, I participated last year as well, it really is cool
Was wondering if I may run into participants of other teams in communities like this
sick
well, good luck and have fun man
Each team is usually 50-100 people
I certainly will, thank you
Gave +1 Rep to @edgy umbra (current: #2022 - 1)
Curious, how you managed to receive said invitation. Defcon or similar type competitions?
I got my first one through employment and now second one due to showing I am reliable, usually teams circulate and first time here is like a trial, if you pass it, you get invited again and it will extend to other events as well, but quickest way would be to be in active military service in cyber side
Because they also finance and organize those events
Here attending that is enough street credit that you can get employed just for having attended it
Hmm....I see
You guys recommend Defcon?
been putting off the idea for a while, but had some buddies ask if i wanted to go
Never been there, but if you can, yes, go
If you impress them at Defcon they may reach out to you after the tournament is over. From there, who knows what'll happen
ah
lol
was that the principle of privilege or something else
like the one where you either cant go up or down
yeah funny name, can imagine saying that during an interview
yeah something like "which security model would you implement in a commercial enterprise?"
hummm I like biba and pasta
good morning
Good morning!
its not easy to find a soc analyst work, most job ads want 1 person dev team, based on the list.
what is LS ?
im a beginner in cyber-security
ls that looks fun,
im propobly too noob for that tho
Ah okay
Might be hard to get soc analyst job then, though you could try telia or smit, they have something in that level
Guten morgen
noone uses voice chat in this discord 😦
Not really
People tend to use it as a place to ask questions or discuss the platform
I dislike voice chats, I only go there if I have organized a gaming session
Or meeting
otherwise text will do, I like having somekind of footprint to the conversations I have had so I can refer back to them
iv been using voice thats from ...2007
Good old skype / ventrillo / teamspeak days
being in work meeting while chilling in discord - does it mean I am getting paid for being on discord 🤔
A server where lots of people use vc is OwlSec
Though my most simple reason to not like VCs is just not like using earphones
I play music through speakers when I am active 😎
Do earphones/headphones bother you?
It used to be more popular, but now it's not used as much.
Yes, they make me feel boxed in / plugged to the computer
My goal in cyber security is to get work on this field, currently in construction job. goal is to study it long enough so i can get entry level job.
I feel you
even if they are wireless, I don't like the idea of something attached to me
I enjoy them as they help me feel focused, so I used closed back ones too
Good luck, its not easy if you are just starting out with computers, I recommend learning everything you can about computers as you can
oh iv been learning programming 7-8 months now
yeah, I get to be focused when I can be attentive of my surroundings
What language?
Yikes
Any projects on your github?
Why yikes?
Bad starting languages, they cause unnecessary difficulty in grasping what computer actually does
I don't think that's true at all....
well, different schools of thoughts
portfolio site, that is mostly placeholders im trying to add chatbot to it, but that is work in progress (site itself is live), 2 games that are not fully done but working (not in github),
If you grasp the fundementals of the code, you can apply it anywhere.
Which language would you suggest to grasp what a computer actually does?
C
Python is good, lots of libs and easy syntax. Code methodolgy is pretty much universal.
Python is one of the easyest languages to start
Easy does not necessarily mean good
I mean, good in what way?
Python is great for handling data albeit it is "slow"
C is good for that yeah,
But as the user said, Python is easier, and does the job.
I would do C first and once you are comfortable with that, go to Python, then you have a good foundation and using those libraries is no issue of unknown to you
C as a first language would just blow your mind
In university our cybersecurity courses all start with C on first semester 🙂
And I bet the code is a mess...
That depends on the academic institute.
Absolutely not, they are not asked to code something advanced, they just get to learn foundation of programming
wait c ?/
C
Many choose Python as an introductory language to coding.
its like plain English with logic

that's like learning cooking by starting with ready to go meals
For obfuscation, sure.
Rather than having no experience and trying to cook a roast dinner, such as C?
What's the other one that just has abbreviations of Lol and lmao?
I wonder where does such assumption come that you need to make something fancy with learning, learn to make a sandwich in C not whole 7 course dinner
But but
best on my search top 5 cybersecurity languages are -> python -> java -> C++ -> C# -> Ruby on Rails
from most to least useful
based*
Not everybody can learn at the same rate.
not everyone have autism like us
Agree!!!!
I only learned C to understand Malware better.
I love Rust
And write.
and thats a way to go
yes i do like rust a little
Last time I used it, it was pretty "loud"
learn C to understand debugging
honestly, learn C and you can do python, learn python and you can't do C
Have you kept it updated?
maybe let me phrase it this way, python is indeed yes useful in cybersecurity, BUT it is not good for learning cybersecurity itself, with C you learn computer itself as well and that enables you to learn what you are actually aiming to protect in this field
You're just learning about memory
Python however is used to simplify tedious jobs in most cases and write quick scripts and tools to automate things
Until you get your first malware sample and you don't know what to do with it
You may never touch a malware sample
May not, but you probably will if you advance in the field
Isn't that what the analysts are for
Did anyone saw the blog about the new Bluetooth exploit ??
I just think that you can learn any language and the skills translate
malware analysis seems kinda advanced,
not the sort of thing someone wanting to go work in an SOC will be asked to do.
that seems like the kinda thing you send up the chain.
Level 1 probably won't, but most SOCs have also L2 and L3
And I can assure you they will deal with it
So @past sparrow if you could recommend a first language to anyone, it's C?
and people who are beginnners in cyber security will start at level 1...
For starting, yes, learn anything you can about computers, in cybersecurity you will need it, if you are in learning stage, you are full of enthusiasm and you absorb that knowledge more easily, if you are already at the stage where you need to study, you will be more resistant towards it
In perfect world, sure
Damn, where's this l2 analyst role I can land as a beginner?
in this world too
I know we hired L2 analysts few years ago, people straight out from university
everything they needed to know they learned on the job
Fair
I say straight out of university, but now that I think about it, one of them is right now 3rd year in university, so when we hired him he was first year in uni
Depends on what your goal is tbh
Oh absolutely that is a very big factor
If it's writing software then I wouldn't recommend C
yeah, but you are not training to become a programmer
