#general

1 messages ยท Page 70 of 1

past sparrow
#

your goal is to learn and understand programming and computers

#

you are not developing applications with python either

shell nova
#

C will force you to do everything yourself, it's just fancy assembly

#

While you aren't at the register level, it's still a pain

sick lance
#

Including memory management, people struggle with that, Python does it for you.

shell nova
#

Ye

#

Java too ๐Ÿ˜‰

rapid merlin
#

I think you should just write to raw memory, to REALLY understand

wintry sluice
#

C# too, for the most part

shell nova
#

And most modern languages

past sparrow
shell nova
#

Rust doesn't have a GC, but it does a lot of checks to make sure you use memory correctly

rapid merlin
sick lance
past sparrow
rapid merlin
#

To manipulate it at the lowest level

past sparrow
#

I do all my UDP Scans with only a cable and a battery

rapid merlin
shell nova
#

Well that number is 100 kHz

wintry sluice
#

how do you remember that!?

#

magic brain

past sparrow
rapid merlin
#

Google

shell nova
wintry sluice
#

oh ๐Ÿ˜…

rapid merlin
#

Yeah depends on the

#

Cat

shell nova
#

Generally in the GHz range these days

sick lance
rapid merlin
#

So Cat6a, rated for 500Mhz

#

Etc

shell nova
wintry sluice
#

my god, hydra is in the future

shell nova
lament tendon
#

8 past 10

rapid merlin
#

I'm unsure what to google now

shell nova
rapid merlin
#

Sending data

shell nova
#

Ah

rapid merlin
#

:3

hasty palm
# past sparrow then you struggle and learn it, its a field where you need to continously learn ...

That is one of the things why i started learning this field. I do understand that this field is huge, 8 months ago i had no clue what programming is it was almost like a sci fy to me.
Python -> C# -> JavaScript-> some other stuff and projects (about 6-7 months) -> and last month or so iv been looking into cyber security, and this field is what i like the most. will it be easy to get into hell no, but so what, everyone needs to start somewhere,

rapid merlin
#

I send my scans with pure brain power over ethernet

wintry sluice
uncut cove
#

there are many of them already haha

rapid merlin
#

Does anyone know how the point system works? Do some tasks/rooms/questions give more than others?

sharp citrusBOT
rapid merlin
#

Thanks @wintry sluice

twin ridgeBOT
#

Gave +1 Rep to @wintry sluice (current: #319 - 14)

sick lance
#

"Verify"

pure kernel
#

where is the Verify ๐Ÿฅน

past sparrow
# hasty palm That is one of the things why i started learning this field. I do understand tha...

Just to make one thing clear, I am not dissing your choices, you are free to make and use whatever roadmap you wish to use, I am just giving pointers as someone who is already deeper in the field. And I understand the market in this country and our neighboring countries, you want to be exceptional if you want to get employed in this field, there are people who have gone through university with mandatory internship and still fail to find a job in the field, not because they couldn't do it, but because there are no offerings, you want to shine to get noticed

rapid merlin
sharp citrusBOT
rapid merlin
#

Oh okay that's why I'm earning next to 0, I'm doing a pathway with lots of walkthrough rooms

pure kernel
rapid merlin
past sparrow
hasty palm
rapid merlin
#

My T480 is coming today ^_^

hasty palm
#

i am currently working on construction and i love the company i work in so im in no hurry to leave, but once i learn enough i can switch the field i work.

#

i guess it will take me 1-2 years to have some beginner level experience

past sparrow
chilly veldt
#

Morning

hasty palm
#

2-3h

#

min

past sparrow
#

That's good

hasty palm
#

up to sunday i think its about 8h per day

#

OR how much children allow

#

xD

#

current goal is SOC lvl 1 and complere beginner path

past sparrow
past sparrow
#

What job you want to do in 5 years?

hasty palm
#

grind basic level stuff so that i understand it, comptia has certificates that might help me,

uncut cove
past sparrow
hasty palm
#

i live in finland

past sparrow
#

Still unlikely

hasty palm
#

true but its a start

past sparrow
#

I recommend studying the materials

uncut cove
#

job market for entry-level security is harsh, everyone seems to search for 5-in-1 astronauts

past sparrow
#

But I wouldnt waste a penny on the exams

hasty palm
#

understanding it

uncut cove
#

but some certs increase visibility of your resume, if it's completely non-technical

past sparrow
amber quarry
#

wdym I shouldn't put all my tryhackme certs of completion on my CV ?

#

๐Ÿ™€

uncut cove
past sparrow
#

And linkedin quiz completions

uncut cove
#

or how many of them are there

amber quarry
#

E๐Ÿ…ฑ๏ธic

uncut cove
#

but I think it's ok to put 1-2 thm certs that provide a fuller picture on your practice and tech stack, and "upgrade" them as you progress

amber quarry
#

really we don't care for certs of completion. anyone can go through a course and copy paste answers

#

nop, although you can subtly mention it in your interview

uncut cove
#

also mewing

amber quarry
#

true ๐Ÿ—ฟ

#

say you're on a looksmaxxing journey

uncut cove
#

haxmaxxing

past sparrow
#

Just say you are top 5% in thm

uncut cove
#

I'm still at top 8% but going there

uncut cove
brittle dune
#

I don't have any official cert yet so I'll keep the THM ones until I get it...

uncut cove
#

you can go for ISC2 CC, it's free now

past sparrow
#

I'm working towards my GCFA, told my boss I'd be done by Summer ๐Ÿ™

uncut cove
#

and the cert it's much, yet it means a membership

past sparrow
past sparrow
#

You need to mew to your boss every start of the week

uncut cove
#

it was a joke about mewing streak

past sparrow
fallow moss
#

If I have a dynamic IP, what can someone do if they obtain mine?

past sparrow
#

private or public?

#

in most cases - absolutely nothing

fallow moss
#

public

#

okay great

near hawk
#

If they looked the IP up, it will just give them a general raidus of the location it's coming from

past sparrow
#

Eh, you could do more interesting things, but I don't want to give people ideas

shell nova
#

Let's not yeah

rapid merlin
hot cairn
#

Itโ€™s when you open up ports the threat surfaces increases

fluid ember
rapid merlin
rapid merlin
#

First

#

Might not even need CCNA at all

fluid ember
#

Because i heard that the CCNA is a great certification when I was trying to get study for it

#

But alongside i wanted to go for cybersecurity

#

I realized maybe I don't still need the CCNA

#

But some people are telling me that I still need it because it will help me in My first career in IT and even in cybersecurity

sick lance
#

Have a look at positions of where you want to go, and look at what their wishlist of certs to have.

fluid ember
#

I want to go in to cybersecurity.. the Blue team is what I love

#

Either incident response or venerability management

sick lance
#

Then have a look around LinkedIn for IR positions near you, they'll have certs listed.

#

I was reading that ๐Ÿ˜ฆ

steel aspen
#

Is there a tech support tab

#

Forgot I was on general

wintry sluice
sick lance
#

That would be better in here, it's ok, I finshed reading it.

sick lance
wintry sluice
#

ah ๐Ÿ˜›

sick lance
#

@steel aspen

#

That button will show you tabs you've closed

steel aspen
#

I closed the window tho

sick lance
#

They're still there.

steel aspen
#

Yeah no luck for me. It didn't go back far enough

#

Other day lol

sick lance
#

Ah, I see.

History blobfingerguns

steel aspen
#

I thought Firefox had like a file system where you could go back on

#

I saw json.l4 something files but couldn't open them

#

Jsonlz4 was it

chrome forge
#

please, did someone else lose connection with attackbox?

crude stump
patent tartan
#

Is it possible to upload a file to a website using burpsuite using post method by selecting the file ?

chrome forge
chrome forge
#

allright, thanks

crude stump
#

If it wonโ€™t let you reconnect, shutting down is the only option

rapid merlin
chrome forge
#

yep, reconnecting didnt work, so i terminated old connection and created new, waiting for initializing

patent tartan
rapid merlin
hazy flume
#

do i need to connect to vpn if im using the attack box and im subscribed to premium?

hazy flume
#

ok, but lets say i wanted to connect to the website vpn, how would i do that?

#

and thanks

patent tartan
mossy river
#

You can find the steps to use the VPN on the access page

#

Select โ€œOpenVPN configurationโ€ from the cards

patent tartan
#

not just automatically

hazy flume
rapid merlin
#

Could you be a bit more clear? Go into #room-help and i'll see if i can assist.

hazy flume
#

do i need to download kali linux or working with centos9 on vmware is ok?

#

for thos module :

rapid merlin
#

Yup

#

As long as it is linux

hazy flume
#

yup i need to download kali or yup centos is good?

#

oh ok

#

thanks

#

question,
my interspeed is 60 mbps,
infrastructure + installtion of fiber internet is possible in my house,
and they say the speed reaches to 1500 mbps, will it improve my scans speed?

#

because it takes 4-6 hours for all ports scan with -sV unless i use T4 or T5

#

do i need it or not?

#

it costs like 1500 euros to install it

#

more simple question can i expect significatly faster scans with significant faster internet ?

sick lance
#

Have I been Pwned usually shows you.

cedar scaffold
#

need verify

sharp citrusBOT
cedar scaffold
#

ayy i did it pepeblanket

fluid ember
#

Please I have a question, can someone that's new to cybersecurity start studying for the Tryhackme to gain experience before he/she starts going for certification?

twin ridgeBOT
#

Gave +1 Rep to @cedar scaffold (current: #2022 - 1)

cedar scaffold
#

yeah, THM is a good place to learn and gain practical experience

#

least from my perspective as a newbie to the field

#

i think so

sick lance
cedar scaffold
#

also the THM community has a lot of helpful and knowledgeable individuals moroslove

fluid ember
sick lance
amber quarry
simple valve
#

Congrats on trial mod @sick lance

sick lance
#

There's your answer.

sick lance
twin ridgeBOT
#

Gave +1 Rep to @simple valve (current: #23 - 351)

light halo
#

ey one question can you teach a guy named @errant lily to hack like in the way that he can help friends to get like acc back or forgoten passwords ????

#

and do you remember me?

amber quarry
#

ok

sick lance
light halo
#

no no i mean to get it back wenn you forget your password

#

to help

cedar scaffold
#

you ask for a reset

wintry sluice
#

if you forgot your password, ask for a password reset

sick lance
#

Then you'd use the support of the account

IE

You'd ask TryHackMe for support to get their account back

light halo
#

ok nvm. i was asking bc he ask me to send him a server link wher he can learn how to hack or as you call it

amber quarry
#

did you read ?

light halo
#

what web?

amber quarry
#

you can use a translater like deepl

#

then you can make more research about this leak using google

light halo
#

ok see you guys in 3-4months

rapid merlin
#

uh ok bye xd

amber quarry
light halo
#

๐Ÿ’€

rapid merlin
#

hahah

chilly veldt
sick lance
#

Now now, let's just drop it, it's dealt with.

chilly veldt
#

I am tired of taking CCNP tests PepeHands

rapid merlin
wintry sluice
#

congratz on the promotion, scrubz

twin ridgeBOT
#

Gave +1 Rep to @amber quarry (current: #56 - 118)

bitter quiver
#

He is a Blue Teamer now

amber quarry
#

I did nothing but np o7

rapid merlin
#

xD

sick lance
twin ridgeBOT
#

Gave +1 Rep to @wintry sluice (current: #306 - 15)

cedar scaffold
#

shiny blue shield pepeblanket

bitter quiver
#

The blank PFP is freaky tho

#

Matrix is glitching

#

What if it's not really Scrubz, and an agent took over his body

ashen wadi
chilly veldt
#

@sick lance I can join you in the weird questions club

sick lance
#

Burpsuite is OP though

chilly veldt
sick lance
chilly veldt
rapid merlin
#

I mean you can download games

bitter quiver
#

And fixes for games where devs are lazy

wintry sluice
chilly veldt
#

๐Ÿ™ƒ

amber quarry
rapid merlin
amber quarry
#

like CSRF poc generator is handy but not needed if you know how to build a CSRF poc

wintry sluice
#

if (=)

#

not if (==)

wintry sluice
chilly veldt
sick lance
#

GLHF, don't die.

chilly veldt
#

I am just missing the final exam

#

will wait a bit to take it

rapid merlin
#

How is that even relevant

shell nova
chilly veldt
chilly veldt
rapid merlin
shell nova
#

BGP looks like fun

chilly veldt
#

it was

fluid ember
rapid merlin
#

So I'm assuming, this is on the side

fluid ember
#

Wow that's pure CCNP curriculum

sick lance
#

IIRC it's for her job.

fluid ember
rapid merlin
#

if I remember correctly
or iirc. abbreviation. if I remember correctly; if I recall correctly.

sick lance
fluid ember
#

Haven't heard that before.. wow

rapid merlin
#

Cyber sec is not the only thing you learn here ๐Ÿ˜‰

past sparrow
#

What else we learn?

rapid merlin
#

English

#

If not your native language

past sparrow
#

Ah, yes, English

fluid ember
#

The IIRC what does it have to do with the CCNP Enterprise?

sick lance
#

Nothing, I think I remember Bella saying she had to sit the exam for her job.

past sparrow
#

A customer wants me to do security+ because its their side compliance ๐Ÿ‘๏ธ๐Ÿ‘„๐Ÿ‘๏ธ

rapid merlin
#

Wait, say that again

#

A customer wants you to?

past sparrow
#

Yes ...

rapid merlin
#

lol

simple valve
#

oh yea that definitely happens with consultation / outsource companies

sick lance
#

Networking is usefull

simple valve
#

if you dont have some X certs, they wont get your services

fluid ember
simple valve
#

big reason why OSCP is relevant

fluid ember
past sparrow
#

I still won't get it though, I just wont deal with this customer

rapid merlin
#

I think in the Netherlands certs are less important than in the US/UK

simple valve
rapid merlin
#

Only thing companies care much about is uni etc

lavish shell
#

Please have user m.bhat user id=1141247531116941392 removed from server. He is going on hacking servers posting junk about "leaked onlyfans + teen content".

rapid merlin
#

You should dm a mod

sick lance
#

No need, already dealt with. ๐Ÿ™‚

rapid merlin
#

Oh xd

past sparrow
twin ridgeBOT
#

Gave +1 Rep to @lavish shell (current: #554 - 7)

lavish shell
#

No problem

grizzled crystal
#

It's not a certification

lavish shell
#

Don't know what the first i is for, but the rest is Internet Relay Chat

rapid merlin
#

hello

#

hi

#

hru

#

@sick lance

past sparrow
#

O no phishing

sick lance
#

@fierce tulip sorry yoshi, we don't help with research, especially if it's class work/

sick lance
twin ridgeBOT
#

Gave +1 Rep to @icy epoch (current: #378 - 12)

lavish shell
#

And we don't click suspicious links, especially when they begin with google.docs lol

rapid merlin
#

I do never click links, only when it is related to the conversation

#

Cheese
Cheese is a dairy product produced in a range of flavors, textures, and forms by coagulation of the milk protein casein. It comprises proteins and fat...

#

Is that so

#

yes

#

Gouda cheese is very good

#

Gouda cheese (/หˆษกaสŠdษ™/ , US also /หˆษกuหdษ™/ , Dutch: [หˆษฃสŒudaห] ; Dutch: Goudse kaas, "cheese from Gouda") is a creamy, yellow cow's milk cheese originating...

#

Goudse kaas ๐Ÿ˜„

fierce tulip
#

okay, totally fine, thanks!

rapid merlin
#

Gouda is 20 minutes away from me

#

hihi

#

Look up Gouda or gouda in Wiktionary, the free dictionary. Gouda may refer to: Gouda, South Holland, a city in the Netherlands Gouda (pottery)

#

Yup

#

Gouda, south holland

#

Rotterdam and Utrecht, in the province of South Holland. Gouda has a population of 75,000 and is famous for its Gouda cheese, stroopwafels, many grachten

#

Utrecht isnt in south holland

#

South Holland (Dutch: Zuid-Holland [หŒzล“yt หˆษฆษ”lษ‘nt] ) is a province of the Netherlands with a population of over 3.8 million as of January 2023

sharp citrusBOT
#
Pong!
API Latency

116ms

Client Ping

332ms

loud marlin
#

@rapid merlin what region are you?

rapid merlin
#

South Holland

loud marlin
#

ah

rapid merlin
#

Or region

#

Alblasserwaard

loud marlin
#

zeeland here ๐Ÿ™‚

rapid merlin
#

Nice

#

originally my family is from there

cedar island
#

Any idea how can I activate lolcat by default everytime I open terminal

#

I tried aliasing in .bashrc by ```alias bash='bash | lolcat'

#

and restarting terminal

#

didn't work

wintry sluice
#

wouldn't that, if it worked, result in an infinite loop?

cedar island
#

I'm expecting to see

wintry sluice
#

called bash
oh, there is an alias called bash
now its bash | lolcat
oh, there is an alias called bash
nwo its bash | bash | lolcat

cedar island
#

Whenever I open terminal

crude stump
cedar island
#

I've not yet

#

That's an example pic

crude stump
#

Oh

loud marlin
cedar island
#

You also used lolcat?

loud marlin
#

no

rapid merlin
#

I broke my terminal so i have no color

#

๐Ÿ˜„

rapid merlin
#

(only if i am root)

outer pond
#

anyone with esxi experience.. can you enable soap api by cli? cant find anything on internet

rapid merlin
#

Isnt there a VMware discord?

rapid merlin
#

bcs i need color back!

loud marlin
#

tilix as emulator, zsh with ohmyzsh, powrlvl10k theme and neofetch with custo theme

rapid merlin
#

oh lol

#

Specific

loud marlin
#

and i work on zelij tilling window

heady nova
#

ello ralex

loud marlin
#

ello ello

heady nova
#

I got my joining dates

#

27th may

#

And I'm at peace finally

loud marlin
#

d what

heady nova
loud marlin
#

i think my brain don't brain =/

heady nova
#

I landed an internship

#

Security Researcher Intern

loud marlin
#

ahaaa

heady nova
#

I was literally on edge not knowing what to do

#

Pentesting? Forensics? Rev?

#

And finally I'm at peace

#

Rev it is

loud marlin
#

so it's going good today ๐Ÿ™‚

heady nova
#

How you been?

#

Everyone good?

loud marlin
heady nova
loud marlin
#

yea. just get from work. need some wast in peac from office ppl

rapid merlin
#

What kind of maths?

heady nova
heady nova
rapid merlin
heady nova
#

What's wast

loud marlin
#

oh well.. yea my brain don't brain heh

heady nova
sick lance
#

Why are you staying awake for 24+ hours?

#

That's insane.

loud marlin
#

take sleep more serious than forcing you self for anything

chilly veldt
sick lance
#

Ah close enough lol kekw

chilly veldt
chilly veldt
fluid ember
#

That's well grounded

#

Someone just bought the CCNA hardcover book for me.... but am going for cybersecurity. Don't have anything to do with the CCNA book ๐Ÿ˜‚๐Ÿ˜‚๐Ÿ˜‚

chilly veldt
#

uhm

#

it does

#

CCNA can help you a lot in cybersecurity

fluid ember
shut hawk
#

If you are looking into security for networking, 100%

chilly veldt
rapid merlin
bitter quiver
#

I mean fundamentally networking is the most important aspect of any of this

#

None of it matters without it

tardy finch
#

im looking for someone who has taken and passed both oscp and the sans equivalent of it. Their input and experience on taking both could shed some insight for me.

uncut cove
rapid merlin
#

Its to the east of north-holland?

#

Its literally the centre of holland

uncut cove
#

Holland is a province

rapid merlin
#

It isnt

#

Netherlands is a country, and we have 2 provinces named after it. North-Holland and South-Holland

uncut cove
#

true

#

but Utrecht is a province,too

rapid merlin
#

Yeah Utrecht is

#

xd

uncut cove
#

did you enroll for it? seems a very intense bootcamp ๐Ÿ™‚

#

where did you find it?

native plume
#

how fix red square wile run machine?

rapid merlin
#

What does the red square say?

native plume
#

Failed to read a named property 'origin' from 'Location': Blocked a frame with origin "https://vnc.tryhackme.tech" from accessing a cross-origin frame.

#

i'm going to link and write wrong connection

rapid merlin
#

Mhhh

#

Never seen that

native plume
#

i can show this on dm

rapid merlin
#

Isnt needed

#

I think you need someone from staff

#

What browser do you use? Do you have an adblocker on?

rapid merlin
#

Can you try Chrome, Edge or Firefox?

native plume
#

let's try

rapid merlin
sand trench
#

WHEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEE

#

shadows dragonbox pyra has arrived

bitter quiver
#

But that looks cool as heck

uncut cove
#

I figured, but I want to search for something similar at my location๐Ÿ™‚

and CyberSec bootcamp doesn't return any good results in my area

sand trench
bitter quiver
tired peak
#

I mean, I say if you think something works for you, go for it. CyberSecurity bootcamps in general aren't great

bitter quiver
#

Nah

#

You can self study, enjoy life, take some certs, build a proper admiration for the field and projects over the course of a year. Make friends, and slide in smoothly vs some rush job

tired peak
bitter quiver
#

And no one views them highly.

#

It's like those trucking companies that spit out "truckers" in 3 weeks

#

The same truckers that jackknife their loads, obliterate cars, and can't back into a dock door to save their life.

#

One time I had to watch one of these yahoos a couple years ago try desperately for an hour to back into a dock door before I decided I'm not waiting anymore and left the job site

#

Takes 5 minutes

#

After 60, you've lost your slot

#

Not a hard one either. Wide open lot, only truck, painted lines.

#

Nothing rushed is good

gray sonnet
#

Hello THM ๐Ÿ‘‹

bitter quiver
#

Greetings and salutations fellow humanoid

sick lance
#

Hello!

green sigil
#

anyone here work with wafs often? wondering why some vendors give you URLs and other URis in their logs.

sand trench
#

wait they updated how the certs look???

sick lance
#

Ties in with the UI/AB etc

sand trench
#

welp guess shadows old certs wont change then

sick lance
#

Nope.

Only certs that haven't been generated.

wintry sluice
#

nice. pleased to meet you || ||

sand trench
#

_ _

#

;-; stupid limitations with cross compiling rust makes confus

whole yew
#

you can also use qemu to emulate the target architecture and native compile in the vm

#

it'll be slow, but it should work

sand trench
#

well the confuss is trying to figure out the instruction set for the cortex-A15 cpu and how compiling for it will work

whole yew
#

that's just another aarch64 chipset right? unless there are special instructions that ONLY exist in that arch, you should be able to emulate any aarch64 and compile something reasonable in the emulator

sand trench
#

looks more like aarch32

whole yew
#

ah, it's an older chipset

sand trench
#

yuups

whole yew
#

does gcc not support it?

#

rustc might be too new for it

sand trench
#

ยฏ_(ใƒ„)_/ยฏ

#

if you are wondering what shadow is trying to do it is to compile the game veloren for the dragonbox pyra which uses an arm cortex-A15

whole yew
#

from what i'm seeing, gcc and clang both support crosscompile for aarch32. if you can get cargo to emit something either of those can consume, you should be able to do it

#

it'll be hacky, but it would likely work

#

veloren itself says it wants a 64b cpu, it likely won't work at all because the 64b libs may not be have 32b equivalents

#

especially for the graphics layer

sand trench
#

yuups

#

which is what shadow almost realised a few sec ago

shut hawk
#

Crazy how the first release of Rust isn't even a decade old yet and seeing how far its used

gray sonnet
#

Morning THM

sand trench
#

mornings vain

cosmic pendant
#

Vain!

sand trench
#

vain when you free to work on ctf???

chilly veldt
#

it's soon iftar time HYPERS

gray sonnet
#

How've you been?

gray sonnet
#

then I gotta get back to studying chemistry

hollow pivot
#

Hey hey! Does anyone have some cool cyber sec interviews/podcasts on YT to recommend?

loud marlin
loud marlin
hollow pivot
gray sonnet
#

Organic chemistry sucks the most

#

but I like the rest

#

once I finish my chemistry final, I can get to studying for my sec+

hollow pivot
#

Trust talks about his experience working at NSO Group as an iOS exploit developer, discovering 0-click, 1-click zero-day vulnerabilities.

An interview with Trust, ex-NSO Group hacker turned web3 bounty hunter and independent security researcher. In this conversation, we delve into Trust's background as a security researcher and exploit develop...

โ–ถ Play video
loud marlin
# hollow pivot Yup

gummo on soft white?
https://www.youtube.com/watch?v=g6igTJXcqvo you have two parts

Soft White Underbelly interview and portrait of Gummo, a computer hacker from Jacksonville, Florida.

Hereโ€™s a link to a follow up interview with Gummo: https://youtu.be/3ZtkMmVDNEo

For ad-free, uncensored videos and plenty of exclusive content please subscribe to the Soft White Underbelly subscription channel. It's $10 a month and watchable on...

โ–ถ Play video
hollow pivot
twin ridgeBOT
#

Gave +1 Rep to @loud marlin (current: #26 - 292)

loud marlin
twin ridgeBOT
#

Gave +1 Rep to @hollow pivot (current: #51 - 140)

hollow pivot
hollow pivot
gray sonnet
hollow pivot
loud marlin
#

on roomate laptop

crude stump
#

What does it feel like

loud marlin
#

? i think i don't follow

crude stump
#

The flower

#

Does it feel shaved like somebody carved it?

#

Or is it smooth

#

Iโ€™m guessing smooth because itโ€™s basically burned into it by the laser

gray sonnet
boreal scarab
#

@gray sonnet : "What type of food do you want?"
Me: "Indian"
@gray sonnet : "Do you want spicy"
Me: "I'm the king of being white, I can't handle spice at all"

gray sonnet
#

well yes

wintry sluice
loud marlin
loud marlin
blazing granite
wintry sluice
boreal scarab
#

Jfc.... Indian food is ALL spicy

gray sonnet
#

yes ๐Ÿ˜Ž

wintry sluice
#

nah, some of the mild ones aren't really spicy at all

boreal scarab
#

@gray sonnet "1 onion Kulcha is enough to fill me up"

Me: "I'm American, that's a light snack"

crude stump
boreal scarab
#

Be me: install Phasmaphobia (22 GB game) in 3 minutes

rapid merlin
chilly veldt
boreal scarab
boreal scarab
rapid merlin
#

Forgot about the gifs

sharp citrusBOT
rapid merlin
#

Canโ€™t go wrong

#

Unless the place is dodgy af

boreal scarab
#

Onion Kulcha

loud marlin
boreal scarab
rapid merlin
#

Like it literally floated at the top

#

To be fair it was ok

pure kernel
#

does anyone know wht is this file is"0819f05c4eef4c71ace90d822a990e87 "

#

inside looks like this

wheat crater
#

looks like a sql query

pure kernel
#

is it supposed to be there??

wheat crater
#

never saw that. but my linux knowledge is limited tbh

pure kernel
#

oooo

#

anyone??

carmine sedge
#

what does it say when you use the file command

pure kernel
#

nothing

#

is it normally a file in home dir

rapid merlin
#

Itโ€™s a command

whole yew
#

Looks like a schema definition file. You're getting the weird character strings because there is binary encoding used by the db engine.

pure kernel
#

0819f05c4eef4c71ace90d822a990e87: SQLite 3.x database, last written using SQLite version 3034000, file counter 8, database pages 85, cookie 0x55, schema 4, UTF-8, version-valid-for 8

#

is get this

rapid merlin
#

You need an SQLite viewer

#

I think anyway

loud marlin
wheat crater
#

I guess, the question is rather, why is it even there? ๐Ÿ˜„

pure kernel
#

yeahh

carmine sedge
#

try sqlite3 {file} then type in .tables and see what pops

pure kernel
bitter quiver
rapid merlin
#

No, just cancer

carmine sedge
#

just saw your other comment, I agree with Wirago... you saying there is a file in your home directory that you don't even know where it came from

rapid merlin
#

Same with backups

pure kernel
#

00

loud marlin
pure kernel
rapid merlin
rapid merlin
pure kernel
#

ooo

rapid merlin
#

Hack tricks is usually decent enough

carmine sedge
#

that users table does look interesting. Id look into that and see what is in there

carmine sedge
#

try select * from USERS;

pure kernel
#

sqlite3 0819f05c4eef4c71ace90d822a990e87 select * from USERS;
Error: in prepare, incomplete input

digital glade
#

Hello, hackers! I'm in my final semester and currently undertaking a bachelor's project that involves incorporating security measures, such as encryption, decryption, and key management. We're in search for some good Samaritan who would be willing to offer a short consultation on cryptography. Our knowledge in this area is quite limited, so any assistance would be highly appreciated.

pure kernel
sick lance
sand trench
#

yeah

#

just love how it cuts off the words

boreal scarab
#

@gray sonnet

boreal scarab
gray sonnet
#

@boreal scarab : Are you here? Are you french?
Ghost starts playing with the closet
@boreal scarab: can you stop playing with the fucking door!

blazing granite
sand trench
#

thepasswordtothewifiis3141592654

autumn seal
# blazing granite booo, are you a ghost, yes!!! boooo what's the password of the wifi ๐Ÿ˜‚

The Wifi Password ๐Ÿคฃ

#zhangjiashuo #shaoyuqi #jimeihan_love #jimeihan #myannoyingroommate #nashengyan #xubin #lichengxi #cdrama #cdramaedit #cdramalovers #cdramascenes #chinesedrama #trending #sbsdrama #viral #kdrama #doctorslump #netflix #jtbc #trend #kdramas #kdramalover #mydemon #instagram #BTS #songkang #kimyoojung #flexxcop #woop

Likes

740502

sharp citrusBOT
reef dust
#

Is this legit? Trying to install the kali linux image.

naive violet
#

cd image is but just download it from kali.org

reef dust
#

I have, but I've heard that it takes a long time to download.

#

Mines has been downloading for the past 7 hours.

winter girder
#

Hi

naive violet
#

And I've downloaded it very fast before on a gigabit line, even without torrent

reef dust
#

Alright. Thanks.

loud marlin
#

watched 1st and 2nd part ?

hollow pivot
#

was already halfway through 1st one

loud marlin
#

hmm... i need to check if i have some other. will link bit later... got some things to do atm

hollow pivot
#

no worries

#

@naive violet Hey, any cool interviews you recommend? (Cyber related)

naive violet
#

Interviews? Nah

plush mesa
sick lance
#

So we got our coursework for Applied Pentesting for Uni.

1 hour. and I'm root.

#

This is terrible.

sick lance
buoyant tree
boreal scarab
#

Talking to @gray sonnet bout my old college Intro to IT class.... and omg, how memories came flooding back on what a joke that class was to me...

We had to setup a jumper on a HDD to make it a slave, work on win 95 machines by taking it apart, saying what each component is, and putting it back together

naive violet
sick lance
boreal scarab
#

Like OMG.... no one uses jumpers on drives to slave them NotLikeThis

naive violet
#

Use the root access to create a sudoer, do an authenticated nessus, all that jazz

sick lance
naive violet
#

Bear in mind my pentest coursework was Throwback

#

Which I'd already ran through

#

And the uni broke it

sick lance
#

Wow!

#

You got use Throwback for it? That's amazing.

I wish we could do that.

naive violet
#

I mean the year before year they got in trouble for recycling vulnhub boxes

#

Still dodgy you could pay the fee and get a full walkthrough...

sick lance
#

That's not so good.

naive violet
#

You'd better believe that report was good though

umbral bay
sick lance
#

Ours is a group topic.

calm perch
#

When you guys started with all these cyber security things. Did you learn only from Tryhackme? I have problems remembering everything I learned and its hard to understand everything. Do you have a tip for that or should I just keep doing those paths and I will be fine soon?

sick lance
blazing granite
#

@sick lance Congrats on the shield ๐Ÿ™‚ ๐Ÿฅณ

twin ridgeBOT
#

Gave +1 Rep to @blazing granite (current: #143 - 46)

buoyant tree
#

btw Scrubz anything you can do about getting your color to be red now

sick lance
calm perch
# sick lance I started TryHackMe whenI joined college to do Cybersec + Ethical hacking. I bl...

and you had 0 knowledge before you started? because I have problems with many things that tryhackme assumes me to know for example in many rooms like cross site scripting and file inclusion they talk about a web server from the hacker and that the hacker can leak all contents of the website but they dont explain how to set up such a server etc. they just assume you know how its done for the tasks(no hate to the room makers)

buoyant tree
blazing granite
#

@buoyant tree how was the film the other day? did you watch Mr Bean or other one?

buoyant tree
calm perch
#

I did

sick lance
buoyant tree
#

hmm

blazing granite
#

I like the light blue, it match the shield ๐Ÿ™‚

sick lance
#

I agree.

#

I'm not doing to ask the admin to change it on my account.

unique temple
buoyant tree
#

sad

#

Although GNU-Rex I have a lil watchlist of uncompleted movies to finish

#

I should probably stop hopping around and end up finishing them

blazing granite
buoyant tree
#

although these are the ones I partially watched then stopped then started another one because I forgot I was watching that

loud marlin
#

@hollow pivot idk if you watched tv serries/show Undeclared War. hacker themed. rly nice

tawdry raptor
#

I have a question... I was poking around the source code of a web page getting practice doing passive enumeration and found that the version on multiple imports/include was: 1f54e36208878360084e5d4207791922 I've tried comparing it to the hash of known version numbers, I've tried to compare it to the hashes of the downloads... I'm wondering if anyone has any insight in to this

#

<script src="hxxps://www.xxxxx.org/wp-includes/js/wp-emoji-release.min.js?ver=1f54e36208878360084e5d4207791922" defer=""></script> <- this is the html from the page

naive violet
#

Cachebusting

tawdry raptor
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #1 - 2104)

rapid merlin
sick lance
#

Hay, we would like you to interact with the community for self promotion. ๐Ÿ™‚

limber venture
#

Hey! anyone like to code with me? I am a newbie, so it would be interesting for both of us to do some coding together.

rapid merlin
outer rivet
bitter quiver
#

Hinter no Hinting

#

Should make a mascot and remix the cartoon

#

Dora

hasty palm
#

best tie for study is from 22:00 -> 02:00, everyone sleeps and noone bothers me

boreal scarab
hasty palm
#

time*

#

heh i got new color

past sparrow
#

Best time to study is when there are exterior renovations going on

#

those rare moments between the intervals of drilling where you can read a sentence and then wait another cycle

hasty palm
#

xD i had last summer 100 m from my apartment demolition works (when my vacation was)

#

from 7 am to 17 pm sirens 5 times a day

#

and explosions so nice that windows where shaking

blazing granite
#

the best time to study is whenever you feel more confortable to do it ๐Ÿ™‚

past sparrow
#

seeing those shadows from windows of them walking by constantly and just drilling and drilling, making me wonder what they do with those holes they drill

#

I used to work night shifts then, so coming to home to sleep was always fun

#

@hasty palm You served in the army?

hasty palm
#

2010-2011

#

met my best friend tnx to amry

#

if i didint have knee injury propobly would have stayd there

past sparrow
#

Army was nice enough to give me basically 2 weeks off from work for 3 day event ๐Ÿ˜„ @hasty palm

blazing granite
# past sparrow I used to work night shifts then, so coming to home to sleep was always fun

I remember once it was a public holiday, a particularly cheer one and in my neighbourhood decided to make some activities for the neighbourhood kids with music and everything. I was working in a hotel at that time, I saw the structure when, cables, etc when I got out of the bus, the whole thing was around 10 meter from my building, coming from the night shift I went to sleep, an hour later, music and screaming kid, I was so happy. I put some ear plugs close all the windows and I said f them ๐Ÿ˜‚ and I continued sleeping

hasty palm
#

my sister is in Kaitseliit, not sure what its in english

past sparrow
hasty palm
#

she was even woman of the year or something like that once

past sparrow
past sparrow
twin ridgeBOT
#

Gave +1 Rep to @hasty palm (current: #2022 - 1)

hasty palm
#

what is this +1 thing

past sparrow
#

if anyone replys to anyone

#

and it contains "thank" or "thanks" or "ty" then they get reputation point

twin ridgeBOT
#

Gave +1 Rep to @past sparrow (current: #814 - 4)

errant briar
#

lol

twin ridgeBOT
#

Gave 1 Rep to rennet (current: #693 - 5)

lavish shell
past sparrow
twin ridgeBOT
#

Gave +1 Rep to @lavish shell (current: #509 - 8)

past sparrow
#

looks like 1 more keyword is in the list

buoyant tree
#

there's a timeout also

sick lance
#

5 min(s) timeout.

past sparrow
#

I mean this is past 5 minutes unless something was deleted somewhere

loud marlin
#

<t:1710276512:R>

thorny walrus
#

does it work on yourself?

crude stump
#

No

#

It doesnโ€™t

thorny walrus
#

lame

crude stump
#

It works on me tho

thorny walrus
#

yt!

spare vapor
#

Hey everyone! Quick question, does THM have any rooms relevant to NIST Cybersecurity Threat Model?

rapid merlin
blazing granite
#

There is also a search function on the site, I'm just saying ๐Ÿ˜‚

rapid merlin
#

uhhh i didnt use that /s

#

xddd

twin ridgeBOT
#

Gave +1 Rep to @icy epoch (current: #307 - 15)

rapid merlin
#

np

spare vapor
sick lance
#

Windows ending support for 21H2

wintry sluice
#

panics but I'm still running Windows 10
calm ah, its just Windows 10 machines that haven't been updated to latest version of Windows 10

sand trench
#

anyways full windows 10 support drops in 2025

#

migrate to linux or upgrade to windows 11 by then

#

or spend obscene amount of money and go on apple devices

midnight hazel
#

why does my streak say 14 on the dashboard and 15 on the account page

sand trench
boreal scarab
#

When you talk to old co-worker friends about your old job together and hoe many issues there were.

uncut cove
#

aww that's cute

past sparrow
uncut cove
#

there's so much efforts put into the rooms

boreal scarab
uncut cove
#

I am shocked in a good way

sick lance
#

Amd some of the quality rooms created by community members, nevermind staff.

uncut cove
past sparrow
uncut cove
past sparrow
#

Community ideas are usually one of the best, they know what they yearn and can provide it

sick lance
midnight hazel
shell nova
#

wait nah they're just broken ๐Ÿ˜›

sick lance
uncut cove
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 2049)

sick lance
#

They're just java

shell nova
twin ridgeBOT
#

Gave +1 Rep to @uncut cove (current: #1337 - 2)

midnight hazel
#

NOO

#

NOOO

#

wait

#

NOO

shell nova
#

you ok, mate?

midnight hazel
#

thank you tho

shell nova
#

aight

midnight hazel
#

NOO

#

NOO

uncut cove
sick lance
#

Even if they said thank you to you, it woudln't count. as they're on a 5 min timeout.

midnight hazel
shell nova
#

bot's a bit strange in the head sometimes

midnight hazel
#

i didint get

midnight hazel
uncut cove
#

bad luck bro

chilly veldt
#

my body be hurting

uncut cove
chilly veldt
#

from working out

uncut cove
#

nice!

rapid merlin
#

Hy

boreal scarab
#

Random thought: I very much dislike the whole "Look at a picture we took of this person in our company doing X that you never heard of, achieving X" and it's an obvious "better image" post.... ugh

sick lance
twin ridgeBOT
#

Gave +1 Rep to @valid mauve (current: #63 - 108)

valid mauve
#

Also, I just noticed that code that's being used production-wide at my customer is the in-development edition of said code instead of, say, something tested!

past sparrow
#

test in prod, test in prod

shell nova
#

yeah please don't

hasty palm
#

found it shared in linedin

#

linkedin*

past sparrow
#

yes, anything is achievable through training, most talented people you see just put countless hours into training

#

One could say, its a talent to keep the discipline ๐Ÿ˜Ž

hasty palm
#

exactly, i think when ppl see successful ppl they dont usually see those countless hours or risks ppl have taken.

#

there is luck that can help u , but sheer amount of hours can beat that luck.

past sparrow
#

"I am not like you, you are smart", "I can't do it like you could","yada yada yada" - everyone talks about their successes, no one talks about failures, and then those who listen create illusions that they are lesser because others achieve things

hasty palm
#

blood, sweat and tears, - ppl same age as me drink, travel party etc, i study allmost all of my free time ...

past sparrow
chilly veldt
#

I mean, people think that I know so much, but they don't see the ~60 hours of work I do every week

hasty palm
#

37 <- my age

past sparrow
chilly veldt
#

Yeah, that's the thing

#

Most people just see me active in here almost 24/7

past sparrow
#

I can be percieved quite active on discord as well, though most of the time I am also pre-occupied with something else

chilly veldt
#

Speaking of I am going to sleep, cause I gotta get up at 03:30

past sparrow
#

Goodnight

chilly veldt
#

Cya

past sparrow
#

I luckily have emergency evening shift tomorrow so I can afford to be awake a while

past sparrow
chilly veldt
#

I just don't want to miss my breakfast and fast all day long without any food

past sparrow
#

Work from home as taken me to the point that I eat when I want and take breaks when I want

shell nova
past sparrow
#

and if I am called out for it, I just apologize and take it into account next time ๐Ÿค“

shut hawk
#

worked for me

tired peak
#

it works more than you would expect

shell nova
#

I'm finding it hard to fake my current position

#

needs interaction with people...

#

and some managerial skills...

valid mauve
# shell nova yeah please don't

Did I mention who I work for?

Three letters, all capitals, software development, billions of dollars and offices on every continent.

shell nova
#

does it start with an I?

valid mauve
shell nova
#

ah that one

valid mauve
#

Yyyyyup.

shell nova
#

I mean it could have been IBM

valid mauve
#

That'd have been cool as well. But nah, S<redacted>P is nice too.

tired peak
#

TIL SAP is a company, I thought it was a name of a software

wintry sluice
#

I thought they were saying SCP

tired peak
#

I work with quite a few ex-IBM employees, they don't speak highly of working for IBM

hollow nebula
#

IBM had an office building outside of my hometown. we used to play NERO there until the security guards would chase us out

#

anyone have any experience running honeypots (conpot + templates) ?

past sparrow
#

I have had the privilege of seeing IBM SOC work, I would not want to be in this environment

past sparrow
uncut cove
crude stump
#

prolly lack of automation

past sparrow
#

lack of automation and maybe disagreement in processes

crude stump
#

which honestly makes sense

past sparrow
#

I cannot really condemn automation part, because well, you can screw up a lot of things so you risk not automating, or you are just so comfortable doing things from muscle memory that you don't want to spend your time on higher priority things that could send you up

clear jackal
#

If you're not automating, you're doing it wrong tbh

#

Of course, get a grasp on things first, but work towards automating different parts of your role

molten sky
#

eh, half week

clear jackal
#

An example that I can give, is using (if you have access) MS PowerBI/Flow to automate "business" tasks

#

I set it up to automatically backup certain documents to different locations weekly

#

Saves me probably 15-30 minutes, but I no longer have to remember and I can use that time on something else.

lament mantle
#

Ruby on Rails isn't a language, it's a framework like Django. Ruby has plenty of security related libraries and tools, but maybe not as much as Python.

sand trench
#

Wonders why standard c is not on the list

past sparrow
blazing granite
# past sparrow perhaps, though a lot of people don't really have the initiative to start those ...

Sometimes, the management don't want to listen because they are set in their old ways, once in a job I suggested to do things in a different way even my way was faster and less prone to errors (I proved to them) management told me we've been doing this way for a long time, there is no need to change now, bottom line this work for us, there is no point in learning something new. That was the moment I started looking for another job, I'm allergic to mediocracy

past sparrow
molten sky
sterile otter
#

guys i need help on something, i need to pick a topic in cybersec for my graduation project, my supervisor told me to research Nextgen Firewalls, ips's and ids's. i dont know if i can code a ngfw from scratch. any suggestions?

molten sky
#

if you're asking then you can't

#

ngfw is a pretty big thing

#

are you supposed to make one or use one?

sterile otter
#

thought about a red team releated project as well but theres nothing else to advance on

#

i basically need to make my own project

molten sky
#

the main thing that makes an ngfw ng is that it operates through to layer 7 and not just layer 3/4
if you could figure out a good way to do that then it may be possible

#

thinking about it, i'm sure there's some videos out there about people turning simpe stateful firewalls into basic ngfw

#

kinda curious now

sterile otter
#

wdym by if i can figure it out? didnt you say its hard to code a ngfw?

past sparrow
#

"hard" is subjective

molten sky
#

When I hear NGFW my mind goes straight to the likes of Palo, Forti, etc
Making something like that would be pretty difficult as a single person/small team on short notice

#

but ngfw is technically just a fw that can also filter at laters 5 6 and 7

#

so it doesn't need to be as full fledged as what initially came to mind

sterile otter
#

so i get what ur saying now but

molten sky
sterile otter
#

lets say i try to make it happen and make something. what would my fw lack that can justify feasibility compared to other products

molten sky
molten sky
#

Those also have actual definitions (for antimal and such) that are updated exceptionally frequently

past sparrow
#

entering that market, you need to build lots of trust

#

no one wants to be the live test for a unknown product

#

You need lots, lots of data to make layer 7 sniffing even remotely useful

sterile otter
#

so its actually not that hard, just advancing on patches are the hard part??

past sparrow
#

If the project is only a PoC then it could be feasible, if its a product with purpose to enter the market, then its way too ambitious

molten sky
#

^

sterile otter
#

oh ok

molten sky
#

Some people don't even trust Forti, lol

#

and they're massive

#

I deal with them cause fuck Palo

sterile otter
#

but as you said, easy is kinda subjective and im not that technically advanced rn so gotta work super hard for it i guess

past sparrow
#

I take forti over Palo but I can say I have yelled F forti several times at work as well

blazing granite
#

Checkpoint it's really good

molten sky
#

I prefer palo as a firewall. But fuck evverrryyyyyything about dealing with them as a company. I've blacklisted them.

past sparrow
#

most people here are not developers in trade

molten sky
molten sky
past sparrow
#

Lol

blazing granite
past sparrow
#

Yeah, I have also a chicken to pick with checkpoint

#

they do their job, but they also make me question what the hell are they doing

sterile otter
past sparrow
sterile otter
#

๐Ÿ™ƒ

molten sky
#

ngfw would be an interesting thing to attempt ngl

#

here comes ben to crush dreams

past sparrow
#

don't stop there, integrate it with LLM and make it learn about traffic and blacklist malicious ones on the go

molten sky
#

no ben come back

sterile otter
#

yeah ill see you next year for that one

molten sky
#

oh he's back

past sparrow
#

think big, think cisco

molten sky
#

no

lone thistle
# sterile otter guys i need help on something, i need to pick a topic in cybersec for my graduat...

depending on the level of your course, you're lileky not expected to create something new / entirely from scratch that's going to be groundbreaking.

Again, depending on your level (and I would recommend checking with your supervisor first), review existing solutions (if you want to go the firewall route) and see what they lack. Maybe you can propose a solution for that.

for example, my Bsc was reviewing how different types of ML models are used to classify malware. I didn't have to make anything - it was a research and review and identifying the good and bad of current solutions

Only then my Msc was creating a ML model that could be used to classify malware - but that was an entirely year long project

blazing granite
# molten sky oh shit i just applied there lmao

I applied there too, though company to get into, I applied for tech support/help desk position, after a 20 minutes phone call, I got an email invite for a whole day of zoom, we were like 15, after round of tests, people start to dropped, we ended up only two and in the end I didn't get it

molten sky
#

holy hell

#

ben came in hard

#

wait what

#

i need a drink

blazing granite
#

It was a position for their office in TLV

#

I know a guy who work there, it looks a really cool place to work

molten sky
#

dif Co

#

defense contractor

lone thistle
lone thistle
#

I imagine you also have some sort of report/essay as a deliverable?

molten sky
#

stateful would be easy

#

ngfw not so much

blazing granite
gray sonnet
#

Morning

sterile otter
gray sonnet
#

Hey Ben, Vernum ๐Ÿ‘‹

molten sky