#general

1 messages ยท Page 71 of 1

sterile otter
#

yes

lone thistle
#

Ahh that's tough. Gottta go with what supervisor says ๐Ÿ˜…

molten sky
#

always found that typo funny ngl

gray sonnet
#

or am I just misremembering things kekw

sterile otter
#

man if YOU all are saying these things, im defo screwed with the ngfw project

molten sky
#

very close

gray sonnet
#

huh

#

then I don't remember lmao

molten sky
#

i just removed my legacy tag thing too so you'll never know ๐Ÿ˜ถ

past sparrow
gray sonnet
#

if that works with you

molten sky
#

it'll probably change in a month

lone thistle
sterile otter
#

if you dont mind me asking, where exactly should i look for a problem?

blazing granite
#

like any other great tech company in Israel one of the founders served on Unit 8200, like the founder of Cybereason

molten sky
#

i was surprised "fosscad" was even available

gray sonnet
past sparrow
#

If a lot of people are annoyed by the same thing, then that is a problem

lone thistle
gray sonnet
#

Here's a problem for you: how do I get random strangers on the internet to stop messaging me to hack their friend's/exes/boyfriend's instagram accounts?

sand trench
#

ยฏ_(ใƒ„)_/ยฏ

past sparrow
#

No one asks my mother to hack instragram accounts

sand trench
#

you should see shadows main emails spam folder

gray sonnet
#

Eyyyy shadow!!

#

morning

molten sky
gray sonnet
sterile otter
#

context aware llm ai filtering system tied with social media api to auto report and block handles maybe? thats outta my scope tho

gray sonnet
#

omg omg, I got hacked!!

past sparrow
sand trench
#

requests to hack
pyramid schemes
selling drugs schemes
afrikan prince scams
and more

lone thistle
gray sonnet
#

also, isn't shadow supposed to be asleep?

sand trench
#

yeah...

gray sonnet
#

...

#

go bed

#

it's 2 AM

sand trench
#

got sucked into a rabbit hole about android captive portals

gray sonnet
gray sonnet
#

that's a decent enough reason to stay up kekw

sand trench
#

did you know most phones send a request to google every time you connect to a new wifi to check for captive portals

blazing granite
molten sky
past sparrow
gray sonnet
lone thistle
#

the only right format

lone thistle
#

ends on the 15th of this month

lone thistle
molten sky
#

that's where i cook my bread

past sparrow
sand trench
#

the correct date time format is specified in iso 8601

gray sonnet
#

quick detour from whatever we're talking about, Ben here is an absolute legend, helped me and shadow resolve the 39% error when uploading our vuln box to THM

sand trench
#

how many times does shadow have to teach you this lesson old man

gray sonnet
#

hold on, that's a thing?

molten sky
#

no

#

it's fake

#

you're in a simulation

sand trench
#

anyways shadow is now gonna go meep moops to the sleep sloops with the beep boops

gray sonnet
#

isn't everyone in a simulation?

molten sky
#

no, just you

gray sonnet
#

๐Ÿ‘€

#

I choose not to believe that

rapid merlin
#

What to do if you have a virus in your computer?

molten sky
#

nuke from orbit

gray sonnet
#

reinstall windows

#

or whatever OS you're using

rapid merlin
#

Nuke?

molten sky
#

except that second part

gray sonnet
sand trench
rapid merlin
#

I mean I can't run anything yk.

gray sonnet
#

MOAB

past sparrow
gray sonnet
molten sky
rapid merlin
mossy river
rapid merlin
mossy river
molten sky
#

eh, for run of the mill stuff yeah || ( this is in agreement ) ||

past sparrow
molten sky
#

square?

#

mb, think outside the cube

sage wolf
#

parallelogram

past sparrow
#

But for starters, try to find out what persists it and then kill the processes

buoyant tree
past sparrow
rapid merlin
#

It was all black and now I see alot of pop ups

gray sonnet
rapid merlin
#

I feel like I'm in a big trouble โ˜ ๏ธ

molten sky
#

i'll see what i can do

buoyant tree
past sparrow
molten sky
gray sonnet
rapid merlin
lone thistle
molten sky
#

then yeah best bet is to try and download an AV ๐Ÿคทโ€โ™‚๏ธ

lone thistle
#

oh yeah this is also happening btw

#

not to plug

#

but

molten sky
#

๐Ÿ”Œ

lone thistle
#

go sign up ๐Ÿซถ

#

ask me questions (make them easy pls)

molten sky
#

probably a dumb q

#

but what even is cmnatic

#

like is that a ref to something

#

or

#

initials

#

or

#

nah your name is ben

#

not that

lone thistle
#

it's a name I thought of when I was wanting to get into cinematography

#

back in like .... 2013 lmao

molten sky
#

that makes a lot more sense than expected

lone thistle
#

so it's basically just a play/compression on cinematography I suppose

molten sky
#

Q 2

lone thistle
#

yes

molten sky
#

shouldn't it be cnmatic

lone thistle
#

yes KEKW

past sparrow
molten sky
#

๐Ÿ˜ถ

molten sky
lone thistle
#

i made a typo when I registered the youtube account for it and just well stuck with it

#

feel like that sums me up pretty well lmfao

past sparrow
molten sky
#

ask him how to write hello world

lone thistle
# past sparrow what kind of questions?

for that interview?

Ben has created 90+ rooms on the THM platform -- covering both blue team and red team. We will be talking about careers, his work at TryHackMe, guidance for making rooms/vulnerable machines, and much more.

for my AMA on reddit rn basically anything that's covered/related to what I put in the post ๐Ÿ™‚

#

you can also ask me what my top 3 favourite eurovision entries for this year are ๐Ÿ˜Ž

quasi hedge
past sparrow
lone thistle
lone thistle
# past sparrow is it easier to make difficult rooms or easy rooms?

Really hard to say to be honest. I think both can be equally as difficult at times. There're a lot of variables. I.e. easy room != easy to make. Depends on the practical, or usually, it requires a lot of written content (i.e. translating technical topics to a beginner audience) , etc. Where a difficult topic, you can get away with a bit more assumption of previous knowledge.

molten sky
#

i Qed

past sparrow
#

That's why I asked, for easy rooms you need consider with the fact that beginners don't know what you know ๐Ÿ˜Ž

lone thistle
#

yup!

past sparrow
#

Maybe I should start trying to make rooms at some point, could be fun experience, got a fun hands on training with IaC already

lone thistle
#

I've had some difficult rooms that have been a breeze to dev, and some "easy" that have been hard. The practical element is usually the biggest decider

lone thistle
#

good way to practice/pick up soft skills as well. Communication, etc

past sparrow
#

Is there perhaps a template somewhere that describes how the room should be delivered?

#

dockerfile or vm snapshot whatever

lone thistle
#

Needs to be uploaded as an OVA (vmdk technically works but imho it's a bit...iffy. OVA is your best bet). But ofc you can run docker on the machine. Hang on let me find some docs

past sparrow
#

That would really give an overview how to approach the engineering in first place

past sparrow
#

.OVA is nice, but if I want to make a windows based room, then windows loves to steal space

lone thistle
#

if a mod happens to swing by, ask if they can add you to #creators-lounge if you have any questions

quasi hedge
#

Cmantic, planning on creating a walk-through room about SQLi but just different types across a couple of DBMS, what's your opinion on it?

molten sky
molten sky
#

they always forget us poors don't see what it says

lone thistle
lone thistle
past sparrow
#

But yeah, I will worry about that somehow

molten sky
past sparrow
#

I just think room creation would be a very good approach to applying knowledge I gained from getting my certificates ๐Ÿค“

lone thistle
molten sky
#

gonna submit a qcow

#

ovas are overrated

lone thistle
#

you can't PepeHands

molten sky
#

can't stop me

quasi hedge
lone thistle
#

well, you probably can but the conversion is not compatible

molten sky
#

curious what the hypervisor is tho

past sparrow
lone thistle
buoyant tree
molten sky
past sparrow
molten sky
#

WHERE EXE?!

quasi hedge
lone thistle
#

unless you can run the cloud one locally, it won't work. Machines in rooms don't have internet access ๐Ÿ™‚ others sound good tho

quasi hedge
buoyant tree
molten sky
#

saw wall

#

wall gone

#

where wall go?

molten sky
#

oh mah lawd

#

another crit microsoft cve related to email stuff

lone thistle
#

number?

molten sky
#

CVE-2024-21410 looks like ms exchange priv esc

lone thistle
#

ahhh that one

molten sky
#

worth reading or nah

#

oh wait

#

i dumb

#

i thought this was a different one

lone thistle
#

cve-2024-21410 is pretty cool. Low attack complexity and requires no privs

molten sky
#

was looking at this a couple weeks ago i think, around when the outlook cve was published

lone thistle
#

The MonikerLink one?

molten sky
#

i thought this was novel but nah

#

yeah monikerlink

lone thistle
#

ahh yeah. That one is cooler ๐Ÿ˜„

#

they've not been having a lotta luck recently. Welcome to 2024 ๐Ÿ˜„

molten sky
#

it's quite interesting actually i agree

#

played with it a bit at a k12 just demoing things for someone there

#

( legitimate )

lone thistle
#

It's *apparently *possible to get RCE. Been trying to expand my PoC to do so but no luck so far

molten sky
#

i haven't seen any RCE poc yet, but i was hoping to experiment a bit

#

might read up on monikerlinks and see if there's any interesting functionality

lone thistle
molten sky
#

ooo ๐Ÿ‘€

#

oh shit he's got a shell demoed

lone thistle
#

have you done my room on it?

molten sky
#

a few days ago I ran through it -- pointed one of the aforementioned k12 people at it as well actually

lone thistle
#

ahhh fair enoguh:)

molten sky
#

honestly it's harder sending the email because it's all local rather than actually exploiting

#

pretty amazing it's gone this long

lone thistle
#

one day instructions for RCE โ„ข๏ธ

lone thistle
molten sky
#

oh no i agree, just emphasizing how simple this thing is

lone thistle
#

ahh yeah ๐Ÿ˜… yeah it's crazy cool. I was reading the ms advisory and was like "surely this won't be hard to write an exploit for" and nope - It wasn't. KEKW

molten sky
#

i should take a look at some ~forums~ and see if anyone's talking about an RCE method

gray sonnet
#

Just saw your answer Ben, great advice!

molten sky
#

@lone thistle how dare you

#

vim >

lone thistle
#

hahaha

#

honestly if anything requires more than nano I throw it in sublime text

molten sky
#

nano is for editing sshdconfig and when you don't have sudo to install vim

lone thistle
#

ahah trueee

#

With nano you have Ctrl + X, Ctrl + W (whereis), Ctrl + / go to line and Ctrl + C for what line you're on

#

what else do you need?!

#

i guess copy and paste too but that's it!

molten sky
#

can't name it in general but you know that one forum that starts with a lowercase d that always has a waitlist to load

lone thistle
#

yes

molten sky
#

loaded in like 15 seconds right there

#

fastest i've ever seen

lone thistle
#

I hate the captcha on that damn site

molten sky
#

i have never gotten that first try

#

it's clever tho ngl

lone thistle
#

indeed. I mean it's' better than the one that they were doing with the clock. I mean I can read a clock but ... apparently not LMFAO. Or the one with the images that were like 3x3 pixels

molten sky
#

hm. wonder if they made it like "always fail first attempt"

lone thistle
#

mayperhaps

molten sky
#

hmm

#

i know where to look

#

damn, ol reliable has failed me

lone thistle
#

write your own. EZPZ right? ๐Ÿ˜„

molten sky
#

if i had the energy to write my own i'd be writing my reports right now instead ๐Ÿ˜‚

lone thistle
#

๐Ÿ˜„ mood

molten sky
#

one of the mon link PoCs i stumbled across is literally just sending the email via telnet with sleep 1 between every line send

lone thistle
#

is that the bash script one? ๐Ÿ˜„

molten sky
#

yup that's the one

lone thistle
#

haha yeah

molten sky
#

can appreciate the simplicity of it i suppose lol

#

although a loop would probably be cleaner

lone thistle
#

I had a very interesting PR from someone when I published my PoC that basically complained that it didn't do the things that I said I intentionally left out in the README, and then turns out their PR was just entirely copy and pasting someone elses', removing my attributing, and adding credit to themselves for someones entire code KEKW

#

i was like ... ah yup ... this is why I don't publish things lmfao

molten sky
#

like i'm not surprised

lone thistle
#

hehhe

molten sky
#

but i'm still just very disappointed in people

lone thistle
buoyant tree
#

Eh add a code comment with your credits

#

or just your name in a function

#

those people usually don't bother to check for that

molten sky
#

gonna PR all your repos just to prepend attribution to myself

chilly veldt
#

Morning

molten sky
#

m

buoyant tree
#

How your fast going?

molten sky
#

slow

chilly veldt
#

Going pretty good, currently waking up to make breakfast, got a little under an hour to make and eat

buoyant tree
chilly veldt
#

Yeah, I can feel that my body isn't used to waking up at 03:30

brittle lynx
#

if I have the NTDS.dit file from a target machine but I don't have admin so I can't get the SYSTEM file in order to extract the info from NTDS using secretsdump then what do I do?

buoyant tree
#

I just was super tired on my first fast during the last hours

fathom hull
#

i have to admit im still very bad at windows post exploitation xd

molten sky
#

i have to admit im still very bad at windows

fathom hull
#

same

lone thistle
#

it's the lowest on my skills matrix in theory. Not my worst out of those, but yeah it can be tough ๐Ÿ˜…

#

also means i need to complete more THM rooms in general ๐Ÿ‘€

fathom hull
#

i started being active on thm again

#

feels good

molten sky
#

i did like three rooms so far

lone thistle
#

completed anything fun recently? both El & product

molten sky
#

in the last idk how many months

#

one of them was monikerlink ofc

fathom hull
#

but its also funny to do so

lone thistle
#

fair enough ๐Ÿ™‚

chilly veldt
lone thistle
#

yeah I need to make more of an effort actually doing rooms lool. My rank slips day by day PepeHands

I try and do one every 1/2 weeks or so, but I guess after creating them & reviewing them all week full-time, time away from a screen is also good ๐Ÿ˜…

chilly veldt
#

Also I need to go to my local bazaar for some dates

lone thistle
#

nice!

rapid merlin
lone thistle
#

dried fruits are a migraine trigger for me ๐Ÿ˜ฆ

chilly veldt
#

Awwwwwe

rapid merlin
#

and im seeing sheesh these days by someone

chilly veldt
#

I am getting dates to proper break fast with, and to eat a proper suhoor

rapid merlin
#

wait a min...

#

muslim?

chilly veldt
#

Not fully, but trying out Ramadan for my first time

molten sky
#

TIL

rapid merlin
#

means new muslim?

molten sky
#

"TIL"?

rapid merlin
#

id

#

k

molten sky
#

just "today i learned" re: KyootyBella

chrome marsh
#

Give this a try if you donโ€™t have any allergies to anything. Itโ€™s so good

chilly veldt
#

I'll see what I can do, I don't have a blender

#

This is my suhoor meal today

rapid merlin
#

what time is it rn for u?

chilly veldt
#

04:04

rapid merlin
#

A.M?

chilly veldt
#

Yup

rapid merlin
#

then the 3rd day of ramadan has started now for u ig

#

and quick reminder for advice

#

wait brb

chilly veldt
#

No worries

rapid merlin
#

back

#

anyways quick reminder that if u wanna become a muslim, u should read story of lut and what happened to them before converting to avoid smth i cant say it here

#

@chilly veldt

buoyant tree
#

you're too healthy

rapid merlin
chilly veldt
lone thistle
#

How's the ol' gymming going?

buoyant tree
#

I gotta lose like 5 kilos but I like food and if I don't eat enough I get hangry

pulsar valley
# buoyant tree GL, you got better determination than me

Me and my husband went on a diet. we just eat salmon, brown rice and veggies for the most part and eat egg whites for breakfast. I try to change up how I'm cooking everything and try new recipes, but my husbando lost 27 lbs in 2 months form diet alone and he's full from all of our meals. even snacks on apples in between

#

you can do it. just gotta find what works for you

brisk tree
#

I just asked chat GPT to sound scottish and im laughing my ass off at the results

brisk tree
#

"๐ŸŽฎ Welcome tae [Community Name]! ๐ŸŽฎ

Hail, fellow gamers, and dinnae be shy โ€“ ye've stumbled upon our digital sanctuary, where the thrill o' victory awaits and kinship kens nae bounds! Whether ye're a battle-hardened veteran wi' a trove o' tales or a fresh-faced recruit ready tae set forth on yer gaming journey, ye've found the perfect haven tae ca' hame.

Within thae virtual walls, ye'll find a vibrant community o' like-minded souls who share yer passion fer gaming. Here, triumphs are hailed, challenges are met head-on, and friendships are forged in the heat o' battle.

As ye roam through our channels, ye'll uncover a treasure trove o' topics tae suit every gaming fancy. From heart-pounding shooters tae sprawling open-world adventures and all in between, there's a spot fer every gamer tae claim as their ain.

But mind ye, yer journey disnae end wi' just joinin' the community โ€“ it's only just beginnin'. We urge ye tae take an active hand in shapin' our community by selectin' yer preferred roles. Whether ye're a master strategist, a crack shot, a healer, or a jack-of-all-trades, yer unique talents and interests add tae the rich tapestry o' our community.

So tak' a wee moment tae introduce yerself, mingle wi' yer fellow adventurers, and embrace the spirit o' kinship that defines us. The road ahead is fraught wi' challenges and triumphs alike, but together, we'll face them wi' courage in our hearts and a twinkle in our eyes.

Game on, brave souls! ๐Ÿš€โœจ"

#

its too accurate ahahaa

dusky zodiac
#

hi

#

have u guys actually found a real bug

#

in actual systems

#

how hard is it

serene ether
#

hi guys

#

where i could start hacking from , i know some python , c++ also , if require html and css lol , and learning javascript

subtle pulsar
#

Hi guys. Maybe anyone by any chance has tested an Asus EBR63 AX3000? I wanna buy it to build my home network, and make it more secure. Also any tips on building secure home network are very welcome. Thanks in advance!

pure kernel
lavish shell
#

Any tips for SSH enumeration via android?

hasty palm
#

good morning

serene ether
tidal vigil
#

hi

serene ether
#

๐Ÿ˜“

tidal vigil
#

Im thinking about some reversing and binary analysis tools, can you tell me what is your favorite and why?

serene ether
tidal vigil
#

Ok...

#

I assume you wrote that, I like Ghidra too

serene ether
#

so easy.\

sick lance
#

Ghidra is bae.

fluid ember
#

Please I have a question...is the networking in Tryhackme enough to know the fundamentals of Networking?

brave path
#

help

sick lance
sick lance
brave path
#

I'm a beginner, I'm Brazilian and I'm having some difficulties

#

"" You discovered that the login page allows an unlimited number of login attempts without trying to slow down the user or lock the account. What is the category of this security risk?""
what would be the answer?

sick lance
brave path
#

thanks

#

โค๏ธ

primal schooner
#

Hi

sick lance
#

Hello ๐Ÿ‘‹

primal schooner
#

Im new here hehe

#

good afternoon

sick lance
#

Good morning, and welcome!

pure kernel
hollow hinge
#

Hello to the people of the internet , I am new here.

primal schooner
sick lance
hollow hinge
#

Hello to both of you

#

I joined the server just now

#

Nice to meet you.

chilly veldt
#

Morning

hollow hinge
wintry sluice
#

another 5 minutes

brave path
karmic furnace
#

i cannot remember how list all scripts in nmap.

#

I feel like such a newb.

#

why fail me memory

karmic furnace
chilly veldt
karmic furnace
#

i know i could just google it but I need some social interaction today

twin ridgeBOT
#

Gave +1 Rep to @karmic furnace (current: #176 - 35)

wintry sluice
#

scrubz is on trial!?

shell nova
#

order, order

sick lance
wintry sluice
#

oh, that kind of trial.

devout palm
#

Looking at your palms, I see you becoming a moderator in the future

karmic furnace
#

He better.

sick lance
shell nova
sick lance
shell nova
#

probably

sick lance
#

I always see them and think they must be itchy.

Courts are always boiling

wintry sluice
#

I like the wigs.

strange kestrel
#

anyone have book/any resource recommendations to get ready for CEH exam

shell nova
#

there should be course material, no?

strange kestrel
#

i mean not really

fluid ember
#

As a newbie that wants to start a career in cybersecurity the Tryhackme has been so great for me ๐Ÿ™‚

brisk tree
#

Microsoft copilot just gave me the most realistic picture ever omg

ashen wadi
#

Are you all crazy about ai? Nobody worried about Skynet 3.0?

wintry sluice
#

what do you mean when you say AI?

brisk tree
ashen wadi
#

I am talking about Artificial Intelligence, which encompasses the development of computer systems that can perform tasks that typically require human intelligence. These tasks can include things like understanding natural language, recognizing patterns, learning from experience, problem-solving, and decision-making cri

wintry sluice
#

I'm not worried about any of those systems.

brisk tree
#

Itโ€™s not too intelligent yet. It canโ€™t even spell and code is riddled with error so I wouldnโ€™t worry. I keep arguing with it on a regular basis

ashen wadi
#

Does it like to talk about cats? i like cats blobheart

wintry sluice
brisk tree
#

๐Ÿ˜‚๐Ÿ˜‚

#

I was trying to get it to spell my gamer tag and it was soooooo off with the spelling

wintry sluice
#

@sick lance

brisk tree
#

Asked it to make it more Scottish and not anime and it made it more anime ๐Ÿ˜‚

karmic furnace
#

My practical knowledge is insane.. not so much the theory.

grim sparrowBOT
#

Done!

karmic furnace
#

Jabba took Scrubs Jooob

foggy leaf
#

hlo

shell nova
#

nah

foggy leaf
mossy river
shell nova
#

he can still mute though

foggy leaf
wintry sluice
#

looks to be a private room

foggy leaf
#

try this link

wintry sluice
mossy river
#

Please do not bypass private rooms @foggy leaf

foggy leaf
#

other users who attempted seem to have got 660

foggy leaf
mossy river
#

You do not earn points from private rooms. This room was likely made private because of outdated content

grim sparrowBOT
#

Done!

grim sparrowBOT
sick lance
karmic furnace
#

do it.

#

for one minute.

#

to me

#

permission given

sick lance
#

No, I can't joke mute/ban/etc

#

Miss use of powers.

karmic furnace
#

I literally have given you permission though. :<

#

Is it still misuse?

mossy river
#

If you can then that is a misconfiguration on my behalf

grim sparrowBOT
#

Nice try! You are not a moderator

sick lance
#

Nope. ๐Ÿ˜ฆ

Hydra lied.

karmic furnace
#

This is why we test things.

mossy river
#

Hydra might be referring to Yag but we arenโ€™t supposed to be using that bot

sick lance
#

I was going to say maybe yag, but not trying.

steel aspen
#

Anyone watch mr robot?

#

I'm 4 episodes in and it's great

#

Here's me thinking it was gonna be a Wish made Terminator series ๐Ÿ˜‚๐Ÿ˜Ž

storm garden
#

anyone here has completed google professional cybersec cert?

hollow hinge
storm garden
#

but my country paid for it for me

hollow hinge
hollow hinge
ashen wadi
storm garden
#

but what i wanted to ask is about 30% of discount for comptia sec+

#

so if anyone did google cert pls let me know

proven quartz
# storm garden anyone here has completed google professional cybersec cert?

It's a very easy certificate to learn the very basics of cybersecurity. Although it will give you a voucher for some money off the Security+ certification, it's not sufficient to train you for that exam. It also spends time discussing another exam, the CISSP, which is intended for people with 5+ years experience in cybersecurity. If you can do it in the free week at the start, it can look good on your cv/resume, but it is only a certificate of completion and not a certification to show your abilities.

I wouldn't pay the almost $50 a month for it, as there are much cheaper options, like THM and many books at reasonable prices

storm garden
#

im not arguing at that, i mean its a beginner certificate

#

but is 30% discount permanent and can be used any time?

proven quartz
storm garden
#

30% for sec+

past sparrow
#

Usually they have like half a year - year to use period

#

But I can't tell for sure on this case

#

That reminds me, my CCNA voucher is expiring soon

proven quartz
storm garden
#

aight then

#

thanks anyway

ashen wadi
#

I wont spoil it to you man,just watch it.

hazy flume
#

anybody down for a study session with voice chat with me? im an network services room

carmine sedge
ashen wadi
#

Watch it till the end yo,form your own opinion bashzoom

carmine sedge
#

you watch the avatar series?

kindred cosmos
#

Guys, please tell me if CCD certification is worth it? Or TCM security of PJPT worth it?

#

I mean if these certifications are recognized by HR?

jagged moon
#

@sick lance congratz!

kindred cosmos
twin ridgeBOT
#

Gave +1 Rep to @jagged moon (current: #12 - 557)

jagged moon
#

I started finding more tcm stuff in "is a plus" sections recently myself

jagged moon
#

But still, if there is some multiple choice cert you are easily able to obtain and it's highly regarded locally, why not

#

Basically tailor it to your job market, not your preferences, imo

sick lance
twin ridgeBOT
#

Gave +1 Rep to @jagged moon (current: #11 - 558)

ashen wadi
jagged moon
#

@ashen wadi gudetama โค๏ธ

ashen wadi
#

Overall CCD certificate helped me land a job as Soc Analyst,in one of the best firms in my country. But the thing is,i also did Security + few months before that PLUS i also did over 250 of challenges on THM in 2023 year.

#

๐Ÿฅš

kindred cosmos
#

This kind of certifications interests me as you actually learn and do stuff to prove that you know something and learn a lot of things a long the way but my employer asked me to do security+ and its so boring because he provided me pdf and PowerPoint slides. Currently iโ€™m learning from THM and was thinking to either go to red team (TCM pjpt) or blue team (ccd)

ashen wadi
#

Sec+ sure can be boring BUT it gives you valuable knowledge of security basics.

jagged moon
#

I'd pass sec+ as asked and do pjpt or ccd on the side to learn in that case. Not actual advice though, just how I would handle that

bitter quiver
#

It removes the movie glamor

ashen wadi
#

Majority of people wach Mr.Robot and wanna become hackers or pentesters,but reality is totally different. I mean sure there are expections BUT usually pen testers are roles reserved for really experienced people, with years of experience. So its totally fine if you start kinda lower,you know as network technican or soc analyst,from where you can build up on your skills and if you show interest in other things ,you will gradually move up.

bitter quiver
#

Most folks don't think about when you are setting up a new office/warehouse/whatever your going to walk around with a long stick with a wifi on the end and then measure ranges and adjust signal strengths so that you get maximum coverage but limit bleed outside.

#

ANd that it's going to take an entire day

ashen wadi
#

I would love to do physical pentests,as i read someone had to pee on a door and it sounds really fun.

jagged moon
hot cairn
jagged moon
#

Check all the deviant ollam talks. They fun

#

Hi em

hot cairn
hot cairn
jagged moon
bitter quiver
#

So

#

WHy does whiskey/pee work

hot cairn
# bitter quiver WHy does whiskey/pee work

Join us at the annual information security conference in Deadwood, SD (in-person and virtually) โ€” Wild West Hackin' Fest: https://wildwesthackinfest.com/

Wild West Hackin' Fest 2017
Presented by Deviant Ollam: https://enterthecore.net/

Description: Many organizations are accustomed to being scared at the results of their network scans and dig...

โ–ถ Play video
#

Tl;dr Rex sensor being triggered

bitter quiver
#

oo, this is going to be a fun watch

bitter quiver
hot cairn
#

the thing you normally trigger to exit so you dont need a key

#

you just make it think somethings there

#

compressed air is a more sane tool

bitter quiver
#

And one that probably doesn't leave genetic evidence...

ashen wadi
#

Do we even do physicala pentests in Europe?

#

I only heard about those from USA

bitter quiver
jagged moon
bitter quiver
#

In America it's just popular to talk about

#

But in America I can drive across state lines with a USB device

#

COntaining specific data

#

In Europe, you can get fined or end up in jail doing that

#

SO people just talk less about some of the tech stuff there

#

Granted I admire Europe's protections for people in that regard

#

America just farms it's citizens data out to corporations

#

Man I keep eyeballing snagging a Steamdeck for my India trip

jagged moon
#

Steamdeck is bae

flat hamlet
bitter quiver
#

THing looks like it runs GTA V smoothly

#

Just gauging if my left thumb will be ready by then lol

flat hamlet
#

i run NFS Heat easily and NFS unbound at a 40fps

#

so gta 5 is a butter smooth experience

#

even tho id recommend discovering your backlog, i've finally played skyrim thanks to it

#

and the emulation is just the chef's kiss

#

Only issue is your pinky will go numb after 1-2 hours, so ps5 controller was a must for me

bitter quiver
#

Don't want that

#

I have a PS5 controller though

#

As well as an accessible 8bitdo with all the buttons on the face

#

But yeah I was looking at backlog FPS/ADventure games

#

Also if I could plug in a bluetooth trackball mouse for say Rome Total War 2 or Stellaris

#

This thing

#

Has been great for playing some games with thumb issues

#

Sits down flat and you just use it with fingers

flat hamlet
#

i was gonna buy the 8bitdo ultimate if it was available in my country sadly i had to settle for the 49โ‚ฌ Ps5 controller that costs 89โ‚ฌ here

#

with the matching charging station its sick

#

For mouse heavy games i guess the steamdeck trackpads do an amazing job, i only tried with game specific layout for factorio and oxygen not included i dont know abt full RTS games

flat hamlet
bitter quiver
#

Factorio would kill some time

#

As would Satisfactory

#

Man me and my brother can lose hours in Satisfactory maximizing production

brisk tree
#

This needs to be a thing

wheat crater
#

satisfactory is awesome!

frigid geyser
#

v

final dirge
#

Is it possible to change the MAC address of a switch?

lavish shell
#

You can switch the MAC of a pc, phone, tablet, etc, so I don't see why a switch would suddenly prevent it

normal fable
#

software/firmware is different. May not support that.

#

Depends on the switch possibly. Just off the top of my head, probably not. I'd do some research on the specific device.

lavish shell
#

All it is, is just a bundle of code. Once you understand the code, you can do anything you want I'm sure.

normal fable
#
In Cisco 6500/6000, 4500/4000, 3750, 3560, 3550, and 2970 series switches, you are not able to change the MAC address on a switchport. In Cisco 2940, and 2950/2955 series switches you can change the MAC address of switch ports using the command mac-address, under the interface configuration mode.
#

All depends on the switch and what it's running or compatible with.

lavish shell
#

Even IF a change isn't possible, a spoof would probably still plausible

normal fable
#

Matt! ๐Ÿ™‚

#

Looking at SDRs... can't find a decent repeater out where I'm at right now... ๐Ÿ˜ฆ

rapid spindle
#

boyz how can i connect to openvpn on kali ??

tidal vigil
#

Hi, what topics are most frecuently like in jeopardy CTF's?

wintry sluice
# brisk tree

how many times did someone attempt to drive through the truck though?

rapid spindle
twin ridgeBOT
#

Gave +1 Rep to @near hawk (current: #73 - 82)

rapid merlin
#

hi all

#

does someone know for what exploitdb is crashing?

sick lance
#

Maybe it's having server issues?

wintry sluice
#

crashing how?

rapid merlin
#

ok i'll check this rn

#

i got an issue like

#

error 505

wintry sluice
rapid merlin
#

ty bro

#

so if i understood

wintry sluice
#

I get a 500 error

#

must just be down atm

normal fable
#

Looks like a site issue. It'll likely be fixed soon.

rapid merlin
#

i have to get an acces on exploit db with an old version

shut hawk
sick lance
# shut hawk

Well, with Barracuda, they're not wrong ๐Ÿ˜‚

normal fable
#

lmao

sick lance
#

I had a barracuda drive once... once.

bitter quiver
# shut hawk

What about burrying my files in a wooden chest 50 feet in the ground in the middle of the woods?

buoyant tree
# shut hawk

I can even confirm, a NAS with a barracuda drive failed within 2 months

plush mesa
bitter quiver
buoyant tree
normal fable
#

Don't need sattelites to track human movement through woods.... js. ๐Ÿ˜›

buoyant tree
bitter quiver
#

Like reverse magnetism

#

Internet joke

#

I forgot 4chan existed

bitter quiver
#

Seen too many creepy things related to it to ever go near it

normal fable
bitter quiver
#

I'll just let it sit in it's special corner of the internet with the FBI

buoyant tree
#

Btw question, seen this in a lotta movies and books
Like how is saving a email to a draft folder more secure than actually emailing it and then somebody else accesses the email to view the draft

bitter quiver
boreal scarab
normal fable
normal fable
naive violet
#

๐Ÿ‘€

boreal scarab
#

I has summoned James! happyCat

normal fable
#

๐Ÿ™‚

naive violet
#

A nice vertical outdoors with a groundplane

normal fable
#

I didn't want to bug James. lol

#

I'm scanning 2m right now.. not much out there in my area.

#

and 70cm..

boreal scarab
#

Ez in the middle of nowhere

#

Now I want a bagel...

normal fable
#

I'm actually not. I'm close to town. lol

bitter quiver
#

Bagel and some iced coffee

uncut cove
#

I'm baking salmon

sick lance
#

You'd have to have the login for the E-mail account.

If you leave your E-mail logged in, and your computer unintended there isn't much you can do.

#

If you have a draft you don't want people to read.

Either delete or don't stay logged in.

wintry sluice
#

perhaps a point in favour of the draft approach is that you are fully in control of maintaining integrity, as there is only one account and you control it. emailing it to someone means two accounts, one of which you don't control.

#

sending also means giving someone else access to the info.

boreal scarab
#

Bagel!

clear jackal
buoyant tree
#

although that may depend on the email provider

wintry sluice
#

depends on the email software

#

some may store drafts locally

wintry sluice
boreal scarab
normal fable
#

Looks like cream cheese and lox

wintry sluice
#

what is lox

normal fable
#

Salmon

wintry sluice
#

mmmm, tasty bagel

boreal scarab
clear jackal
boreal scarab
normal fable
#

coffeeee. ๐Ÿ˜„

dark lynx
#

Celsius for me

sick lance
#

It's one of those nights.

wintry sluice
sick lance
wintry sluice
#

not the food. the food is fine.
but the jokes that tracker makes are atrocious

sick lance
#

I heard they're written by @glass nest

wintry sluice
#

suddenly it all makes sense...

bitter quiver
#

Wait

#

WHen did Dominos get Eva as a tracker

naive violet
#

At 70cm your coax losses get really nasty

#

RG58 and such are naaaassty at UHF

#

VHF less so but avoid long runs

bitter quiver
#

Ah, physical medium ptsd time

naive violet
#

That was meant to be a reply for @normal fable

normal fable
#

It can't be too bad as I just have the UV-5R right now. lol

#

And.. I already modified it so I can receive and transmit on frequencies that I'm not supposed to be able to. ๐Ÿคฃ

naive violet
#

Is it the 8w?

#

I've got the quansheng uv k5(8)

normal fable
#

I've got a lot of trees and such for obstructions. I'm picking up a few signals but out of the bands I can legally transmit on.

naive violet
#

Ah you're more restricted on bands? Ouch

normal fable
#

Yeah. Outside of my legal reach. lol

#

I can listen all I want.. just can't transmit without the FCC wanting to fine me.

naive violet
#

They opened up most of them for the bottom license here

#

No morse code test any more

normal fable
#

It is the 8w version, but I'm not sure it's actually 8w.

naive violet
#

Not got a meter?

normal fable
#

No. I need to get one.

naive violet
#

Ah

#

I've got a nice 80s one

normal fable
#

Nice. I'm sure it'll never die. ๐Ÿ™‚

naive violet
#

Yeah I might change the connectors but they work well now

normal fable
#

What meter do you have?

naive violet
#

It's a Welz SP-400 I think

#

There's not a lot of info out there

normal fable
#

Looks good. I like older tech.

#

Simple doesn't break that easily. lol

naive violet
#

It's fun to watch the needle bounce

normal fable
#

As long as it's accurate.

naive violet
#

Yeah it's pretty good, compared it to a proper specan

normal fable
#

I may see if I can pick one up similar for cheap. Might need more than 130-500 MHz though.

#

for future-proofing..

sand trench
#

it is an analog thingy

#

its accuracy is infinitely larger then a digital one

#

but harder to read in most cases

normal fable
#

Shadow knows radios and equipment?

sand trench
#

also make sure to not try and make the needle go in reverse

sand trench
#

in the part about sensors

normal fable
#

Ah yes. I did take a class on electronics.. learned a lot.

sand trench
#

also shadow and class mates made a multimeter/voltmeter break by connecting it in reverse making the needle break.... can't recall if it was a multimeter or volt meter

#

was a valuable lesson

normal fable
#

Don't install diodes backward.. sometimes they don't like it. ๐Ÿคฃ

#

The magic blue smoke will escape... lol

sand trench
#

some types of diodes are installed backwards on purpose to be used as random number generators

#

A Zener diode is a special type of diode designed to reliably allow current to flow "backwards" (inverted polarity) when a certain set reverse voltage, known as the Zener voltage, is reached.
Zener diodes are manufactured with a great variety of Zener voltages and some are even variable. Some Zener diodes have an abrupt, heavily doped pโ€“n junct...

#

have fun learning here

normal fable
#

Zener diodes are different. ๐Ÿ™‚

sand trench
#

yeah

#

shadow has a random number generator that uses zener diodes or similar working ones

#

got it from last job

normal fable
#

Nice.

sand trench
#

not really that useful of a device but it is fun to be able to spam the entropy on linux

normal fable
#

I'm gonna have to look at some reviews and browse some forums for info on what to get. I don't want something that's a potato out of the box or will die in six months..

#

Analog is best imo.

sand trench
#

analog has a lot of charm

naive violet
coarse moth
#

What language is most worth learning for the backend part? I understand that php is still the most used and for pentesting it can be the most useful but I would like to know which one you think is the best

mossy river
#

There is no 'best' programming language.
There is a subjectively best programming for your specific task.

There are also preferences and a few other variables that may influence a user's choice in selecting a programming language.

normal fable
#

I like C. ๐Ÿ˜‰

mossy river
#

I like rick lang

normal fable
#

There is a github for that.

pine stratus
mossy river
#

Depends on the exploit.

normal fable
#

The answer is "Yes". lol

mossy river
#

Metasploit uses Ruby and Python iirc.

normal fable
#

Mostly Ruby

pine stratus
#

is assembly used in that ?

mossy river
#

I don't understand your question

sick lance
normal fable
#

Does Metaspoloit use Perl??

sick lance
#

It was "perl-based" on first release.

#

Converted to Ruby in 2007.

normal fable
#

I did not know that

#

Learnt

pine stratus
#

my english is kinda bad

#

sorry

mossy river
#

You are asking about multiple different topics within Cybersec

mossy river
pine stratus
pine stratus
outer rivet
mossy river
#

Reverse engineering and exploit writing are two separate topics, although relatively closely related technically.
And asking how software works is a massive topic. Depends on what type of software, what about it you want to learn etc.

sick lance
wintry sluice
#

april 1st...

cedar scaffold
wintry sluice
glad girder
#

Where i can post announcement about CTF ?

wintry sluice
#

what kind of announcement?

lament mantle
# pine stratus what is the best language for creating exploits for vulnerabilities

For most exploits, any language works, as long as it supports packing binary data (for memory corruption exploits) or HTTP and JSON (for web exploits). Both Python or Ruby will work for those. There are even frameworks and libraries for exploit development, like Metasploit, Pwntools, Ronin, go-exploit, etc. If you're writing Kernel exploits, you need a compiled language which precision timing to trigger the vulnerability in the system's kernel.

glad girder
normal fable
#

That sounds like an answer from google or AI. ๐Ÿคฃ

ornate kindle
#

hi i want to learn cybersecurity but i have no idea where to start

ornate kindle
#

So i should go through the tryhackme website first?

sick lance
#

Not first, but it's a great way to learn. ๐Ÿ™‚

normal fable
#

There are paths. Check pinned comments too. ๐Ÿ˜‰

#

I smell food. Must be about lunch time.

ornate kindle
#

Any book recommendations?

sick lance
blazing granite
normal fable
rapid merlin
#

I feel tempted to do

ornate kindle
#

thanks

normal fable
#

I need to read more. I need to get new glasses first..

ornate kindle
#

i like textbooks

normal fable
#

I like physical books.

ornate kindle
#

same

rapid merlin
#

Maybe in the near future i need glasses too :(. My eyesight is getting worse more and more

normal fable
#

I like the way they smell.. and feel.. and taste.. ๐Ÿคฃ

ornate kindle
#

i just like the words mainly

#

plus the feel actually

#

..and the smell

rapid merlin
normal fable
#

Someone once told me to ingest the words.. so I did. ๐Ÿคฃ

rapid merlin
#

Ah

#

But nice that they taste good

coarse moth
#

with
5% off swag what is the discount on?

sick lance
#

The swag shop.

#

You can find that here.

normal fable
#

Still no zip-up hoodies ๐Ÿ˜ข

sick lance
#

And the stickers sold out pretty fast. ๐Ÿ˜ฆ

near hawk
#

Still waiting for the socks

normal fable
#

Grippy socks?

dark lynx
#

Wish they had joggers or sweatpants xD

normal fable
#

Like the ones they gave me in hospital?

rapid merlin
#

Automaticly?

tired peak
sick lance
rapid merlin
#

Ah

#

For a discount code or smth?

sick lance
#

Yeah. ๐Ÿ™‚

near hawk
#

The bottle would look better in black as well imo

rapid merlin
#

But now i have a streak like 50 or something, can i still ask for a code when the streak is expired?

sick lance
#

As long as you E-mail when you have a streak of > 45.

rapid merlin
sick lance
#

I find it funny,

I grew up with Looney Tunes etc.

So it's good to see Acme products. kekw

quartz ridge
#

have to ฤฑ learn about on pentest or ฤฑ focuse one topic on cyber sec web,wifi or software

coarse moth
#

like starting from networking and just covering a lot more step by step

brittle lynx
#

any tool for bruting a locked file on linux

sick lance
brittle lynx
quartz ridge
twin ridgeBOT
#

Gave +1 Rep to @coarse moth (current: #1337 - 2)

sick lance
brittle lynx
sick lance
sick lance
rapid merlin
#

?

pulsar valley
#

sorry my kid smashed y keyvoard

#

my bad

coarse moth
#

bro is trying code inyection

rapid merlin
#

๐Ÿ˜‚

pulsar valley
#

im a different breed

silver sky
#

@sick lance congrats on the new role

sick lance
twin ridgeBOT
#

Gave +1 Rep to @silver sky (current: #46 - 159)

dark lynx
#

Congrats

sick lance
normal fable
#

What everyone else is saying @sick lance

#

I forgot to say. ๐Ÿ˜

sick lance
rapid merlin
sick lance
rapid merlin
#

๐Ÿง

hazy flume
#

i installed kali but the internet doesnt work, can someone help

#

i tried setting manually ip and also making up new ip but still

normal fable
#

How did you install kali? VMware, virtualbox, on hardware?

hazy flume
#

on oracle virtual box

#

i followed a video guide

normal fable
#

What are your network settings in virtualbox?

#

For the vm

hazy flume
#

bridge adapter

#

actually now the internet in my house doesnt work so im using my phone internet 4g

sick lance
#

That could be reason.

If you've not connected the device you're using to the hotspot you won't have internet.

#

(I also suggest you use NAT)

hazy flume
#

oh it somehow works now

#

slow but works

#

but it wont let me send screenshot

#

im surprised it work, it doesnt even make sense

#

during instalation it says autoconfiguration failed, and didnt set the network

#

so i choosed select dynamic ip and i entered a random ip and it works, how is that even possile

#

possible

sick lance
#

When you set the dynamic IP you could have fixed it

hazy flume
#

what does it mean if i cant ping google tho?

sage wolf
hazy flume
#

nono

#

it just screenshot to see that youtube is responding, means i have internet, but cant ping google, so?

sage wolf
#

I know it's just funny how that's the specific page you're on

#

no harm just wondering

hazy flume
#

yea i was just like yea lets access my youtube from the vm

#

alrigjt today i instlled kali tomorrow ill get it to work

sick lance
#

That's a positive outlook for the progress you've made. ๐Ÿ™‚

past sparrow
hazy flume
#

everyday i go to sleep not understanding many things and next day again

past sparrow
#

sometimes to apply new internet setting it requires that operation

hazy flume
#

ill try that when my internet is back, on 4g now

#

i have so many questions

fluid ember
#

Please guys can someone explain this to me. Is this true?

normal fable
#

Most of us here have been in IT longer than some of you have been alive. ๐Ÿคฃ

fluid ember
#

๐Ÿคฆ๐Ÿผโ€โ™‚๏ธ which other IT will I go for since am a newbie and practicing through Tryhackme

normal fable
#

ICQ?

whole yew
past sparrow
hazy flume
icy relic
hazy flume
#

not for me

normal fable
#

I had to go to a trade school just to get a help desk job...

icy relic
whole yew
normal fable
#

Location matters too.

icy relic
fluid ember
past sparrow
normal fable
#

I live/work in the Seattle area.. there are a LOT of overqualified people doing entry level jobs out here.

whole yew
#

Containers are a good path as well, but often relies on having good server admin background and possibly dev as well.

past sparrow
hazy flume
#

i have a wifi close to my house named " hidden network" drives me insane

whole yew
hazy flume
#

dina is my neighbor, iphone is my internet. and there is this hidden network, who this guy think he is

normal fable
#

They try... lmao

whole yew
fluid ember
past sparrow
normal fable
#

"Yeah. We already had a vuln scan. We don't need a pentest.." ๐Ÿคฃ

icy relic
past sparrow
whole yew
hazy flume
#

right there

whole yew
normal fable
#

lol

icy relic
#

my school does have a class for linux introduxction. im definitly scooping it up

hazy flume
#

2-3 years from now ill be a top hacker

normal fable
fluid ember
past sparrow
normal fable
#

Cloud Sec is pretty big in my area right now.

hazy flume
#

is there anyone here who is working with aws clouds security

devout palm
#

Hi ๐Ÿ™‚

whole yew
past sparrow
# fluid ember Nothing much just theory's

Often times cybersecurity does not involve saying "this can be hacked", its a lot of consultancy and telling how could be done better, how to actually fix an issue

fluid ember
#

The Bsc in my country is not strong enough

#

I have to bag it up with another cert

past sparrow
#

certs are fine, though, don't study certs for the paper, get certs to actually learn the content and back up your knowledge

#

if you flash your cert on your CV and can't talk about what you learned, its useless

past sparrow
#

same thing applies to university degrees, some people get nothing out of them

fluid ember
#

Maybe i will study for the CCNA

normal fable
#

I say do it. Good knowledge to have anyway.

fluid ember
normal fable
#

Learn to count binary on your fingers. lol

fluid ember
#

๐Ÿ˜‚๐Ÿ˜‚

#

But networking is not easy ๐Ÿคฆ๐Ÿผโ€โ™‚๏ธ

shell nova
whole yew
#

"just theory" is the fastest way to get a senior role.

normal fable
#

I can count to 15 on 4 fingers. hahaha

whole yew
#

If you think you learned "just theory" I wouldn't hire you for any role, because you don't understand the value of what you learned.

fluid ember
past sparrow
shell nova
fluid ember
#

That will give me practical aspects

sick lance
#

Practical is good.

fluid ember
#

Very good

shell nova
#

Knowing how to apply theory is also q

whole yew
sick lance
#

But theory is important.

fluid ember
#

That's why I want to get another certificate worth it that will be give me that practical aspects in a job

whole yew
#

A certificate will do nothing for you

#

Because the point of cerifications is not to give you practical aspects in a job.

fluid ember
#

Experience does

past sparrow
#

Unless you get a practical certificate

whole yew
#

Experience != certificate

sick lance
#

Even then you're not assured a job.

fluid ember
#

But you need to get that job to have experience