#general

1 messages ยท Page 77 of 1

past sparrow
#

Tryhackme seems to not have anything about ElGamal

mossy river
#

Define cryptography attacks?

past sparrow
#

But many others like side-channel attacks

#

re-use of modulo

#

basically weak crypto

rapid merlin
mossy river
past sparrow
past sparrow
wintry sluice
#

sounds like it requires advanced maths and programming'

past sparrow
#

Cryptohack has somewhat similar things, but yeah, looking into alternatives

rapid merlin
hazy flume
#

are paths created by tryhackme only or by people also?

#

i mean people who dont work for tryhackme, like rooms?

past sparrow
#

I think People can only make challenge rooms, no?

shut hawk
wintry sluice
shut hawk
shell nova
#

they aren't accepting submissions for walkthroughs at this time

wintry sluice
#

paths are probably just thm staff though

wild estuary
#

Hi. I have a project that requires large-scale data storage similar to Zoom. Is there anyone who knows the minimum cost for this project? Please exclude my software engineer friends from consideration, as we won't be paying them partner salaries.

crude stump
wild estuary
#

Hopefully they would respond, wouldn't it be nice? :))

white nexus
#

Why not just calculate it?

#

Would give you a rough idea

crude stump
wild estuary
#

I'm sorry, I don't know much about servers

narrow phoenix
#

.

wild estuary
#

If you would like to help me on this topic, please do not hesitate to write to me, friends.

#

thank you

wild estuary
#

I have an online education platform project, so I asked this.

#

I hope I'm following the rules when asking questions, no mistakes, right?

mossy river
naive violet
wild estuary
shut hawk
#

Like google classroom?

mossy river
crude stump
crude stump
ionic pagoda
#

latest AV/edr bypass techniques ?

#

someone give us titles to researxh on

shut hawk
#

Could you provide some more context?

naive violet
ionic pagoda
naive violet
#

Reach level 0xD on the site, or get OSCP/eCPPT

ionic pagoda
#

Hm

#

i am just asking a general question

naive violet
crude stump
#

its because what your talking about is getting into the deeper stuff so they want you do be a 0xD. its more of you spent alot of your time doing tryhackme so your semi trusted then the average joe

ionic pagoda
#

Ok

mossy river
#

I am massively over the word count for my assignment ๐Ÿ™

proven quartz
grizzled crystal
#

happy st patricks day!

sick lance
#

I always feel like the material I cut back is important to the assignment.

mossy river
#

I am currently going over all of my references, which is the absolute worst

proven quartz
mossy river
#

600 words over, and still not done

proven quartz
#

There's usually about a 10% grace period

mossy river
crude stump
#

wait you can be under the word count and still not get points taken off?

mossy river
#

Correct.

proven quartz
mossy river
#

2400 + 240 = 2640
3035-2640 = 395

mossy river
proven quartz
mossy river
#

There is a lot of time pressure because I am travelling tomorrow and Tuesday so I have to submit it tonight (deadline is Wednesday)

#

Hope I don't lose the quality because I would ideally like to publish this

proven quartz
wintry sluice
#

writing ๐Ÿคข

mossy river
floral wing
#

Ohh alright

mossy river
#

We have finished for Easter but we still have assignments

floral wing
#

Ohh i see

hazy flume
#

SMTP room was so much fun!!

#

hydra is so cool

spiral dagger
#

can anyone help me to solve MR.ROBOT machine ?\

timid prism
#

lemme first do jee then ill go out

#

at this point inorganic makes more sense than organic

dire holly
#

can you tell me what path i have to follow for bug bounty

tired peak
chilly veldt
#

In the last 48 hours, I have been working for 24+ hours psyDuck

rapid merlin
#

Miss how do you work that much? I mean would u mind giving some tips to stay focused for long time without getting tired/bored?

chilly veldt
rapid merlin
#

That's crazy.

#

Do you use any kinda meds like ritalin or smth? (Nvm me asking just curious)

chilly veldt
#

Nope, just pure ADHD and Autism that's not treated

#

I don't do any drugs or meds other than vitamin D supplements, other vitamins and apple vinegar tablets

shut hawk
chilly veldt
gritty zephyr
#

im welcoming myself back on tryhackme

#

for the thousandth time, but hey, restarting is better than quitting

sick lance
#

Only quitters quit.

gritty zephyr
#

blue name?

#

trail mod? thats awesome man, congrats

sick lance
#

Trial mod ๐Ÿ˜„

buoyant wedge
#

hello can someone help me im new to kali and i had it on my VM for a while and i can't upgrade it because it says udev isn't installed... i tried installing udev but another error comes up

sick lance
twin ridgeBOT
#

Gave +1 Rep to @gritty zephyr (current: #150 - 43)

sick lance
#

How long is a while, they just released a new release, maybe worthwhile just downloadintg that

buoyant wedge
#

how do i do that

gritty zephyr
#

since when did they renew the access files?

tired peak
#

if something acting wonky or you change regions

gritty zephyr
#

no but my old one didnt work all of a sudden lol

#

redownloaded and now im alright again

sick lance
buoyant wedge
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 2064)

gritty zephyr
#

gonna finally build myself a note dictionary, and do it right

#

ok im having a quick question, ive started including the ctf ip in /etc/hosts to make them easier accesible and for subdomains. But now my gobuster doesnt connect to the host now

sick lance
#

Do you just add the IP, or do you call it something else?

gritty zephyr
#

i also called it boxname.thm

#

with boxname being the ctf name.

#

a normal browser request does connect, gobuster doesnt

sick lance
#

Gobuster command IP or url name?

gritty zephyr
#

gobuster dir -u http://dreaming.thm/ -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt -x txt,js,html,php

#

this is what im running

#

now i could just run it on the normal ip but id rather know why this doesnt connect haha

#

but even connecting to the port 80 through the webbrowser takes a damn long while

shut hawk
#

Well gobusters timeout is 10 seconds, so maybe if its not connecting, try increase it?

gritty zephyr
#

now it almost instantly loads, im confused lol

#

its been on for half an hour so it should just be the same

#

eh ill take it

#

i restarted it and now its just as slow lmao

warm charm
#

Hello

sly wagon
#

damn i need hints in every other easy ctf

gritty zephyr
#

just keep at it, because honestly me to, youll get the flow eventually

sly wagon
#

most often I struggle with privilege escalation

gritty zephyr
#

then do alot of that till you can do it sleeping ๐Ÿ™‚

sick lance
#

Raining?

mossy river
#

I'm melting

crude stump
#

Stay in a freezer

waxen pilot
#

I accidentally moved my /bin/bash somewhere and deleted

#

it

#

how can I fix my machine

#

I still didn't reboot it

mossy river
shut hawk
#

my friend was going through their old screenshots and found this (2 days after fortnite was released). crazy how much its changed

waxen pilot
#

can't install it also

mossy river
waxen pilot
#

thanks

shut hawk
#

Does Location to the file or Location of the file sound better? ๐Ÿค”

mossy river
#

Depends on the context

shut hawk
#

For a python function that downloads the file,

def download():
  Returns:
  str: Location of/to
mossy river
#

of

stark arrow
#

Can anyone help me to setup kali vm on my device

light halo
#

nahhh

crude stump
stark arrow
#

I was saying about thm vm openvpn

#

It failed

naive violet
#

@light halo Please keep it all in English here

light halo
#

kk

crude stump
#

Oh wait

stark arrow
#

Hey im not allowed to send pic i noticed just now

sharp citrusBOT
crude stump
#

This should help you

stark arrow
#

I have read that

#

It says connection timed out

#

Do u have TeamViewer?

crude stump
#

No

crude stump
naive violet
stark arrow
naive violet
#

Ok, that doesn't prevent you from verifying with the bot

split lintel
#

A question, how can I respond when it tells me response format:******.?

stark arrow
stark arrow
sick lance
stark arrow
#

This room requires ssh

sick lance
#

Then please shift the channel to site support where I can help you.

naive violet
rapid merlin
fiery hill
#

Yo any mods present here?

#

Some guy on insta who i don't know tried selling me tryhackme subs. It felt fishy to me

#

Will be sharing his account and the convo here

sick lance
#

You can DM me. ๐Ÿ™‚

rapid merlin
#

@fiery hill u r Indian right ?

naive violet
#

And that's a staff thing, I'll ping @mossy river

fiery hill
#

Okay

sick lance
#

Let's not throw accusations like that out in chat please.

fiery hill
#

Ye thats kinda racist

rapid merlin
#

Not racist ! Facts

sick lance
#

@rapid merlin Please don't continue this conversation...

rapid merlin
#

Okay bro

#

Even I don't like to continue! But u know the truth

fiery hill
#

Bruh

proper yoke
#

lmao

fiery hill
#

Where are u from sigma

rapid merlin
#

Bharat

fiery hill
#

...

rapid merlin
#

0xSigma is crazy ๐Ÿ’€

#

bro's a skibidy brainrot warrior

fiery hill
sick lance
#

Guys,

Last time I'm going to ask to change the topic of conversation.

rapid merlin
#

Look Insert again starting it !

#

Bruh what

#

it's your name

#

lmao

sick lance
#

I'm finishing it.

fiery hill
#

Im outta here. I've got work tomorrow

rapid merlin
#

Yeah same fuck that

#

cant say a damn word in this chat without getting banned anyways

sick lance
#

Nobody is being banned.

rapid merlin
#

Ok im calm now, thanks for your intervention

fiery hill
#

We're here to learn not fight

rapid merlin
#

BROOOO

#

thats crazy

fiery hill
#

@sick lance u seeing this

rapid merlin
#

@fiery hill you're gonna let that slide?

shut hawk
#

@naive violet

rapid merlin
#

My brother got scammed by an Indian few days ago

grim sparrowBOT
#

:hammer: 0xsigma22#0 has been banned.

#

:mute: injectdavrius#0 has been muted.

fiery hill
#

Why are people like this

mossy river
#

Please donโ€™t involve yourself ๐Ÿ™‚

naive violet
#

@sand trench that looks rather like a password so I deleted it

mossy river
#

I am so close to finishing this assignment

sand trench
#

yeah sorry and thanks james

#

pasted in wrong windows apparently

#

time to go change it

mossy river
#

Itโ€™s like the closer I get to finishing, the more it drains the life out of me

sick lance
#

You got this Jabba!

mossy river
#

I managed to get rid of a ton of words

#

Turns out there were a bunch of paragraphs that just didnโ€™t make sense

sick lance
#

Sleep deprived written?

mossy river
#

I think the point was lost by me changing the surrounding paragraphs too much

sand trench
#

and password updated

midnight hazel
#

anyone knows why even when i switch vpn servers the vpn gives me an error and disconnects

#

it worked before

sly wagon
sick lance
#

It's going good, what about yourself?

sly wagon
#

lazy sunday with ctfs

buoyant tree
#

Has anybody here tried out claude opus

shut hawk
#

is that the paid or free model

#

I've used the free one, I'd say it's better than gpt-3.5

#

And the image support is suuper nice

#

Downsides: you don't get many prompts a day, and it's quite restrictive in what it answers

buoyant tree
#

Tried it out for a few days

#

its better than gpt 4.0

buoyant tree
#

its got a great context window and hasn't halucinated a lot yet

sick lance
#

I think I broke Co-pilot, it won't even let me ask a question, seemingly used up my quota for the day.

midnight hazel
#

anyone knows why even when i switch vpn servers the vpn gives me an error and disconnects
it worked before

sick lance
sly wagon
#

currently working on Chill Hack

shut hawk
sly wagon
#
  1. what content are you talking about?
  2. how woud Google take it down, event if they wanted to?
naive violet
#

That's not phishing.

sly wagon
#

there have been websites exposing private cameras for a long time as far as i know

mossy river
#

My advice? Don't get involved. Report the website and move on

naive violet
#

Welcome to the real world, again.

#

Systems generally are poor

#

For your average person, there's little motivation to have good cyber security beyond online accounts that might have financial consequences

sly wagon
#

i don't know the details but sounds like just a listing of cameras that are accessible through the internet without any authentication, I don't know if it "qualifies" for a takedown

naive violet
#

Smarthome stuff, IoT, cameras etc, are often garbage for security. Some are alright.

#

How?

#

All that's happened is some laws banning default creds etc, which I don't think have worked

rapid merlin
# sly wagon linux

it's quite simple really. 1. check if you can run anything as sudo. 2. check for SUID/G binaries 3. cron jobs 4. if its a web, check database in var/www 5. Check if there is any .sh script that you can run/edit

sly wagon
naive violet
#

Hardly.

rapid merlin
sly wagon
#

gotta grind then

rapid merlin
#

Dont be scared to check walkthroughs

#

I used to solve all the box with them

sly wagon
#

im starting to when I'm really stuck

rapid merlin
#

Like whem I was stuck

rapid merlin
sly wagon
#

right, just checking the next step to push me forward

rapid merlin
naive violet
#

How are we done for? You made the claim

It's been like this for a long long time. Most individual people are not interesting enough for anyone to attack them.

rapid merlin
#

Im doing AD right now and damn im having quite a hard time with large networks ;((

naive violet
#

Whenm you actually realise how few of them are exposed to the internet directly...

#

You seem to keep learning these small things about the cyber field and having a panic about why no one has stopped these EVIL HACKERS!
Slow down and think about the motivations from all sides, the manufacturers, the consumers, legislators, ethical hackers. You'll understand that yes, if you do something stupid then it might go wrong but there's no Watchdogs style hacking out there...

sly wagon
shell nova
crude stump
#

Imagine that

#

Imagine if that was actually possible

naive violet
#

Too many people come into this field with hollywood expectations

shell nova
#

Sadly the Holy Wood has gone back to whence is came

sly wagon
#

dont you crush my dreams, i want to be a hacker in a hoodie!

shell nova
#

Noone is stopping you

sly wagon
#

i do have a hoodie, now i just have to learn to hack

sly wagon
#

ty

crude stump
#

Tbh the only thing really unrealistic about watch dogs is the exploding manhole covers

mossy river
shell nova
#

There's no magic hack this button

mossy river
crude stump
shell nova
#

Haven't played wd2

naive violet
#

You can't just react to all discoveries with "Why haven't they done something about it yet!!!!!!" though.

crude stump
#

Like the traffic light hack.

shell nova
#

Got bored after a bit in wd1

#

Problem with ubi I guess

mossy river
#

I played it all the way through.

#

Although hated the camera settings and mouse sensitivity

shut hawk
#

I enjoyed it

shell nova
crude stump
#

I mean would you want to play in a small town

shut hawk
#

Fair enough, I quite liked the openworld bs :P

crude stump
#

I think the open world aspect fits

shell nova
#

Mechanics were alright I guess, if not forgettable

crude stump
#

Sort of like gta

shell nova
#

Not a fan of GTA either

#

Prefer a tighter story that's well executed

mossy river
#

I think you just have a hatred for modern games Hydra

crude stump
#

I canโ€™t wait until gta 6

shell nova
#

At least the "AAA" garbage is

mossy river
#

There are quite a few padding missions in open world games nowadays.

Like "fetch this" or "protect this person". Don't really add to the story

shell nova
#

Might get the new horizon once it goes on sale though

naive violet
#

It's not their job to police information

#

Google are not cybercrime enforcers

shell nova
#

Shooting Dinobots with a bow is fun

naive violet
#

Google are an advertising company that happen to run a search engine

crude stump
#

Love to advertise

shell nova
crude stump
#

There especially good at annoying there users

#

With ADS

#

grrr

#

But tbh I get it

#

They need money too

shell nova
#

I still don't trust that GCP won't suddenly shut down next week

crude stump
devout palm
#

I just noticed a ball reduces my stress

crude stump
#

Wdym

devout palm
#

And it's fun to throw and catch it

viscid tinsel
#

anyone know the rdc that's being used in the windows fundamentals modules? It doesn't look like MS's RDC tool

naive violet
#

Remote desktop? Yeah

viscid tinsel
#

IDK I'm used to the MS RDC that's on Windows machines.. But it looks completely different than what's in the module. So figured i'd see if anyone knew what Remote Desktop software was being used...

naive violet
#

Yeah all normal RDP, but the browser access is a little different

viscid tinsel
#

You have to have windows pro for that too don't you?

naive violet
#

Pro or server etc

buoyant tree
#

its pretty good

viscid tinsel
#

Is pro worth the investment on a personal machine you think?

#

May have to try and sell it to my wife lol

naive violet
shut hawk
viscid tinsel
#

nah, Windows 11 Pro

#

i'm just going to try and find a free RDP tool

buoyant tree
#

Speaking of, I have windows 11 pro but I haven't found a usecase for it

mossy river
#

46 words away from the word count worry_pray

wind lake
#

jabbababa

mossy river
#

Jazzzathonnn

wind lake
#

how ya doin

sick lance
sick lance
mossy river
#

Then I have to transfer it all to a word document. Sort out the formatting, insert my references (pray for me), insert my appendix and submit it

#

But, am hungry so itโ€™s dinner break

sick lance
#

Do you need to export it to a PDF?

#

Or is word doc optional?

mossy river
#

I write it on Notion so I can access it on any of my computers. Needs to be exported as a PDF file, but Word provides a built-in citation tool that I use to make sure my citations are correct

wind lake
mossy river
#

Yes, it supports Harvard, APA, MLA and a few others

wind lake
#

cool

sick lance
#

All my assignments have used Harvard.

whole yew
shut hawk
buoyant tree
#

I wouldn't say all modern AAA games are bad

#

Like its 60 40

wild rose
#

worth to get HD2 then?

#

it's cross-platform right?

buoyant tree
#

its fun mindless shooting at bugs

#

its a "buggy" game with ilteral bugs

wild rose
whole yew
#

@brisk raptor please don't link forms like that for surveys. As a general rule, we don't help with coursework and that largely extends to surveys and any kind of crowdsourced data.

brisk raptor
#

ah apologies, i wasn't aware

whole yew
#

No worries

buoyant tree
#

even random's quickly respawn you

#

question which game should I play right now

wild rose
#

maybe I'll pick it up after beating FF7 Rebirth

#

still have a few more hours till the end.

buoyant tree
wild rose
#

I'm a big final fantasy fan so it's nostalgic while being fresh and new.

buoyant tree
#

hmm

tranquil wigeon
#

downloading kali linux isnt gonna kill me right ๐Ÿ’€

wild rose
#

It can take a long minute to download kali

tranquil wigeon
#

is it safw to use kali ?

#

as a normal human

#

with no

#

experience

buoyant tree
#

its safe, yes, but why do you want to use it

tranquil wigeon
#

ethical haking

#

hackiung

#

hiackign

#

hacking

wild rose
#

That's what THM is for. To teach you the tools in kali.

buoyant tree
#

Can't decide

sly wagon
#

anyone has issues with ctf machines freezing? once every hour or so my machine just hangs and I have to restart it

tranquil wigeon
#

so

#

does the downlolad show up for kali

#

or is it jsut doing it

#

in the background

#

๐Ÿ’€

wild rose
#

well do you feel like a multiplayer or DMC5?

buoyant tree
#

too hard to decide

wild rose
#

I would hop on HD2 if I wasn't hanging out with my younger nephew.

buoyant tree
#

We need people to fight for democracy

wild rose
#

7y/o

wild rose
wild rose
#

for him it's roblox

buoyant tree
#

tried it out a couple dozen times

#

its just non-sensical

wild rose
#

no idea either. I bought them a ps5 and they still play roblox on it.

tranquil wigeon
#

how long does it take for kali to install ๐Ÿ’€

wild rose
#

depends on your system and internet connection, but it can take awhile just to download it.

buoyant tree
wild rose
#

lol me too. me too.

buoyant tree
tranquil wigeon
#

like there is no popup showing its installing?

wild rose
#

I would use it as a VM and wouldn't install it on a system

tranquil wigeon
#

should i do install as vm

#

or create

#

cm

#

vm

wild rose
#

What hypervisor are you using to run the VM?

wild rose
tranquil wigeon
#

pleasse explain in ehnglish ๐Ÿ˜ญ

#

i think

#

itss

#

amd64

#

yeah it says amd64

wild rose
#

You're on Windows right?

tranquil wigeon
#

yes

#

thank you

wild rose
#

you can still learn without installing kali and use THM's Attackbox.

#

but it's a little faster to use your own VM.

tranquil wigeon
#

okay

jade sluice
#

can someone help me?

crude stump
wild rose
#

if you need help with a room please use the #room-help

jade sluice
#

ok, sorry

crude stump
#

Oh nvm

#

Yeah do that

wild rose
wild rose
tranquil wigeon
#

does the name matter

sly wagon
#

guys, this method of privesc just blew my mind, I kinda know how it works, but I dont know why it works

#

basically being able to run docker means you can read files with root privileges? wtf

left pebble
#

omg why is chatgpt sooo bad sometimes? for my university study i gave in some questions and got wrong answers only . poor guys that try to use it on exam...

buoyant tree
#

both great games

crude stump
#

Thatโ€™s why itโ€™s bad itโ€™s like โ€œplease donโ€™t cheat off of me humanโ€

left pebble
#

if i would rely on it, i wouldnt notice its all wrong

crude stump
vast vapor
#

hey guys

#

i have probelm with openvpn

#

i connect to the seerver i mean to the vpn but can't connect the link after launching the machine in the room

#

any help ?

wild rose
wild rose
vast vapor
#

i have used it before

#

but this time didn't work for me

#

it stucks here

wild rose
#

What room is this?

vast vapor
#

i have changed the server too but it's the same

vast vapor
#

room

devout palm
sand trench
#

good old rss

#

as reliable as ever and works great to consolidate info

rapid merlin
#

rss ?

sly wagon
#

rss

crude stump
#

Websites

#

Notification

rapid merlin
#

rss

crude stump
#

rss

mossy river
#

Hi

rapid merlin
#

ho

#

you should listen to girl in red bro

#

goated music

mossy river
#

Itโ€™s drill vibe rn

rapid merlin
#

wanna listen to some french drill music

#

he did a feat with central cee

mossy river
#

What, french the kid?

rapid merlin
#

lmao

#

freeze corleone

#

but Menace santana is the best

#

ziak is good also

#

you have the three best right here

crude stump
#

You listen to New York drill

#

Kay flock

clear jackal
#

Drill is a genre of music

crude stump
#

D thang

crude stump
clear jackal
#

ah, I was responding to your "drill?" message

crude stump
#

I used ? In the wrong context

#

Sorry lol

#

Should of just said drill!

serene wren
#

anyone did pentest+?

#

compTIA

clear jackal
serene wren
clear jackal
#

Easy is going to be dependent on the person taking the exam

#

CompTIA lists who their exams are meant for on their site, you can also do the #pentest-plus-path on TryHackMe to prepare.

serene wren
#

im less technical skilled so this test is perfect for me when it comes to tools its just parameter since I use cheatsheets

clear jackal
#

Well you can't use cheat sheets on the exam, and if the material you are using is braindumps, those are prohibited by the CompTIA Code of Conduct

serene wren
#

i have net+ and sec+ already I used totaltester for practice exam

rapid merlin
#

@mossy river bro trust me listen to
Menace Santana - Guapman
Youโ€™re gonna love it

serene wren
#

i also have a bachelors in Cyber and Net

#

might go for masters to see better clarity of what im missing in skills

#

community college made me do alot of labs

clear jackal
#

Again, it's going to fall on you to determine where you are knowledge wise. Take practive exams and see where you stack up. I would probably take the test only after I was getting 90% on the practice.

whole moss
#

Lol if you think you are ready then go for it.

clear jackal
#

I would not get a masters for that reason

serene wren
clear jackal
#

If you have no experience, it doesn't

shut hawk
#

From what I've seen, you really shouldn't be getting a masters without any experience

clear jackal
#

It hinders your job prospects

whole moss
#

Also depends on what path you want in cyber sec

sand trench
# rapid merlin rss ?

really simple syndication
is what some people claim it stands for...
it is actually not clearly definded what the abrivation stands for
it is basically that orange with wifi symbol button on most news sites is for
it lets you get the news article in a neat nice free format in your own reader wherever

serene wren
#

im leaning more on blue team

#

masters + join SoC analyst level 1

clear jackal
# clear jackal It hinders your job prospects

It prices you out of a lot of entry level roles and companies aren't really going to want to hire you due to them feeling like you're probably going to leave once you get that experience.

serene wren
clear jackal
#

If you already have a degree, just apply to roles

serene wren
#

you mean job hoppers

clear jackal
#

no

crude stump
#

PlayStation came out with PlayStation wireless earbuds lol

serene wren
#

thats what people who gain exp do, they job hop

#

2 years are 1.5 years they look for another role

serene wren
upper bison
#

Are you guys familiar with MITRE ATT&CK?
If so, why should I use it as a cybersec professional?

#

I'm confused of what's used for

serene wren
#

threat model

cosmic pendant
#

It's very very helpful

clear jackal
# serene wren thats what people who gain exp do, they job hop

you're adding in a different factor. What I am talking about is specifically around the masters. If you're applying to entry level roles, with a masters, companies are going to be hesitant/not willing to hire due to you likely getting better job prospects once they spend a bunch of money to train you.

serene wren
upper bison
upper bison
clear jackal
#

This is outside of general "job hopping"

cosmic pendant
#

Alright, so let's play a game. First thing. What does MITRE ATTACK show?

clear jackal
#

you need to verify

sharp citrusBOT
gleaming cape
#

Thanks!

clear jackal
#

I am too slow on desktop keyboard

#

I have it saved in my phones keyboard so I just have to tap once lol

cosmic pendant
#

Nice!

cosmic pendant
upper bison
clear jackal
#

I want to switch to Loonix

upper bison
#

Lemme know if I'm wrong

clear jackal
#

but idk if i can break away from Windows

cosmic pendant
upper bison
gleaming cape
#

Btw, question, Im working basically as a SOC analyst rn. I have Net+ and Sec+. I get free education with my job and wanted to get a masters, since it is free. There isn't really a cyber masters. What would be best. Im between a masters in Compsci or an MBA with a focus in information systems. My undergrad in in IT with a focus in sysadmin.

upper bison
#

Like step 1 reconnaissance, step 2 initial access, etc.

cosmic pendant
upper bison
#

The kill chain thanks

cosmic pendant
#

Let's approach it like this. How is it organized?

gleaming cape
twin ridgeBOT
#

Gave +1 Rep to @cosmic pendant (current: #37 - 194)

upper bison
cosmic pendant
#

What are they called? What are the categories/groups called?

upper bison
#

Categories

cosmic pendant
#

nope, they have a specific name in this context

serene wren
upper bison
cosmic pendant
#

Tactics hold techniques

upper bison
#

Good

cosmic pendant
#

Pull up any technique, what does that look like?

upper bison
#

Oh yeah that makes sense

#

I chose reconnaissance and it shows techniques

#

Like Ip scanning, etc.

clear jackal
cosmic pendant
#

yeah, click on one of those

#

What else do you see? Any other categories?

upper bison
#

IDs?

cosmic pendant
#

How are they categoriezed

serene wren
upper bison
serene wren
#

its very competitive

upper bison
#

You have a techniques with its own sub-techniques

cosmic pendant
#

What else do you see then when you drill all the way down

serene wren
#

unemployment basically pays for my masters if im qualified for skill up

clear jackal
#

You have a degree and certs, you can apply to roles

cosmic pendant
clear jackal
#

if you aren't getting hits, it's likely your resume

serene wren
sand trench
#

doubts shadow sharing their opml rss feed file here would be a good idea

upper bison
cosmic pendant
#

MITRE Attack is a super power, I use it every day, all day.

upper bison
#

That makes sense

cosmic pendant
#

Almost everyone here, probably should be in same way ๐Ÿ™‚

sand trench
#

it is a huge list of rss feeds shadow collected and find useful

upper bison
#

Is it used by red teamers?

cosmic pendant
sand trench
#

but it also tells you a bit about shadow due to how they sort things

crude stump
sand trench
whole yew
cosmic pendant
sand trench
upper bison
serene wren
cosmic pendant
twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #4 - 1676)

crude stump
#

Red teamers use it when there testing different simulated attacks etc. blue teamers use it to research and mitigate potential attacks etc.

cosmic pendant
whole yew
sand trench
#

and sent toast

serene wren
serene wren
cosmic pendant
serene wren
#

low level program

#

higher level programming

cosmic pendant
#

WHat's the process?

serene wren
#

its basic history

cosmic pendant
#

WHy does it matter?

serene wren
#

process is a service and programs use these services to communicate making a whole OS

sand trench
#

NOOOOO

#

shadow used mls a lot

upper bison
#

Who's this shadow?

serene wren
#

such as networks card hardware using drivers and the programs to utilize it, is network service aka DNS

sand trench
cosmic pendant
#

Why does that matter

serene wren
#

matters for cybersecurity causae of flaws

crude stump
#

They call me me bombastic

upper bison
serene wren
#

if they can read assembly and source codes they can static analysis

upper bison
crude stump
#

Damn right son

serene wren
upper bison
#

It reminds me of forensics

serene wren
#

they didnt run the programs

#

and if they can't assembly they use strings to find sort of like significations

cosmic pendant
# serene wren and if they can't assembly they use strings to find sort of like significations
serene wren
#

reminds me of RockStar if you download their GTA5 its a pirated version in Steam

serene wren
serene wren
#

it was on twitter, someone ran assembly to find a crack-coders signature

upper bison
serene wren
#

try googling it

whole yew
#

I did google it, no results in the first 3 pages for what you're talking about.

cosmic pendant
cosmic pendant
sand trench
#

ah more proof that piracy is less of a problem then people think

cosmic pendant
#

I found the image, but I won't link it

#

but it is a hexeditor showing the exe with a pirate code in it

#

lol

serene wren
cosmic pendant
#

so, while not exactly right, pretty close

serene wren
#

and libraries

sand trench
#

think shadow has heard similar stuff happen with nintendo games on 3ds virtual console

serene wren
whole yew
# cosmic pendant so, while not exactly right, pretty close

Not terribly surprised, to be honest. Rockstar has always had a 'ship and forget it' mentality. They probably fired all the devs who worked on thoee games and had no one who knew the source code well enough to even find the DRM checks.

sand trench
#

piracy is still highly illegal basically everywhere so do not do it

sand trench
cosmic pendant
#

How are you doing Mr. @whole yew ?

whole yew
#

Good. Just waiting on the instant pot to finish it's cycle, then heading out for a family st paddy's day dinner

#

they can't eat without me, i have thecorned beef and soda bread

sand trench
#

????

#

well that is a weird 403 error

cosmic pendant
#

OH yes, very good indeed

sand trench
#

get a 403 error when trying to add a source to the rss reader but the link works in firefox and works on android feeder

sand trench
whole yew
sand trench
#

you cooking an electric pressure cooker to eat???

cosmic pendant
#

high pressure situation

whole yew
sand trench
#

oh that 403 error shadow keeps getting is apparently a bug with their desktop rss feed reader

#

welp time to wait for fix

#

there is an open pull request

shut hawk
cosmic pendant
serene wren
sly wagon
#

in nick KEKW

cosmic pendant
#

critical infra.

prisma kiln
#

When I type arp -a, I see the same MAC address twice, but I did not do this. Could it be that it looks like this because I have kali-linux and metasploit turned on?

prisma kiln
shut hawk
cosmic pendant
#

which is really really fast.

#

alittle more

serene wren
#

is it possible to get honorar degree in this field if you contributed something such as critical infrastructures

shut hawk
#

wow yeah, that is pretty fast

sly wagon
cosmic pendant
#

including having my masters and counting some of that work for credits, then presentations that counted toward my credit, but presented by my chair ๐Ÿ˜„

#

it's very very very abnormal

prisma kiln
serene wren
#

says it takes 2 to 3 years to complete

#

your were right on target

#

unless your university was completely differenet back then

sly wagon
serene wren
#

Wifi has differnet mac addresses compared to what frequency is sends out

#

check out your MAC address on the bottom of your router

#

unless your being stalked and in a MiTM

shut hawk
serene wren
shut hawk
#

yes maybe

prisma kiln
#

thanks

autumn cedar
#

hey im new here what is ethical hacking?

shut hawk
#

I have a few opportunities that I'm deciding between

serene wren
#

unless you created something that is critical infrastrucure, im pretty sure universities will give you an honorary degree

sly wagon
shut hawk
serene wren
#

like kanye west makes art and universities wanted to give him degrees

#

cause their associated with art

autumn cedar
#

i just saw the definition how do i really get strated?

#

started*

serene wren
sly wagon
#

beginner courses on tryhackme

serene wren
#

basically auditing

autumn cedar
#

.com?

sly wagon
#

.com

serene wren
#

I would read a book if your not technically skilled with the course. Starting with A+ compTIA

#

even if its beginners, a good book in what a computer is always recommended

sly wagon
#

check out some beginner courses to see how much you don't know and what topics are difficult for you, then research further and read books

#

if you have no idea how networks work, get a book on networks etc

cosmic pendant
#

THere are lots of good books to start

#

But, between THM, and Youtube, books depending how you learn ๐Ÿ˜„

sly wagon
#

and once you get yourself familiar with basics, take courses for beginners on hacking specifically, like on tryhackme, and then try some easy ctfs

sharp citrusBOT
crude stump
cosmic pendant
#

I mean, it's a question about a definition, like joining a discord about it, without knowing about the basic definition, it's fair to ask in my opinion ๐Ÿ™‚

#

But we gave good answers too though

sand trench
#

still feels strange how few people get the term ethical hacking or legal hacking

#

so many random people shadow has talked with just calling any hacker bad people that should be locked up

cosmic pendant
#

Lawyers are hackers

crude stump
#

Hacking definitely gets a bad rep

sly wagon
#

the more i know about hacking the more i view it as a way o thinking rather than a skillset for breaking into servers

#

like half of defcon talks have nothing to do with computers

sand trench
#

yeah

#

A hacker embodies a boundless passion and insatiable thirst for understanding the complexities of a system, computers and networks in particular. They revel in the pursuit of knowledge and mastery, constantly seeking new solutions and opportunities for growth. Their drive and innovative spirit inspire and are inspired by the hacker community, where ideas and knowledge are freely shared and valued regardless of their origin.

-- Silk
safe sable
#

hello guys

#

so i have a little issue that requires help. i am working oin the zeek room and the attack machine is so slow to a point i cant complete any task

sly wagon
#

it's just "what can I do with it" attitude towards everything in life

safe sable
#

i have tried to scp the task file via ssh so i can use my local machine. but it denies. is there an alternative way. anyone with any suggestion?

serene wren
#

very time consuming work

#

hackers dont bend scenerios they just break programs

#

like the guy that died who made scarface had no kids, people start getting lawyers to claim their his kids or the women he sleeps with have his kids

#

they just bending scenerios and ultimately failed , ethical or non ethical

#

ps the government won since there is no will

#

all these people have to battle the govertment at the end of the day

sand trench
#

oh wow shadow lost track of time..... anyways time for meep mooop sleep sloop to the beepity boopity beeps boops

rapid merlin
#

rss

#

I have a raspberry pi4 and I don't know what to do with it if someone has a suggestion I'm all open

#

it's like an adblock

#

๐Ÿ‘‹

molten sky
#

@sick lance trial no more? nice

#

still got the role tho so you're still the better role color

rapid merlin
molten sky
rapid merlin
# molten sky Trial Mod role, i mean

i apologize for stepping in the middle of your conversation. I was just curious as i was checking for that before i bought my premium so figured id ask ๐Ÿ‘๐Ÿป

molten sky
#

dw about it -- this is a public channel anyone can do whatever

#

ik there's a referral program where you can get a few bucks off or something

#

not sure if that applies if you have an account already or not

rapid merlin
#

i just created my account probably 30 minutes ago. Decided to buy premium as its only $14. Nothing major. I will checkout the referral program ๐Ÿ˜€

molten sky
#

what currency?
I remember it used to be like 8 USD, then it went up to 10 or something, wonder if it went up again

rapid merlin
#

it was 14 USD monthly or 10.50 USD Per month on an annual subscription

molten sky
#

huh. still nb tho for what you get

junior tree
#

guys does anyone else have trouble with the ctf flag answer being wrong even though you directly copy pasted the answer?

#

it random works sometimes and i have no idea why

#

there are no spelling errors

#

i'm doing the walk a program one in pen testing task 6

#

i directly copied THM{HEADER_FLAG}

#

and still it's wrong

#

i guess i'm in the wrong chat mb

shadow linden
buoyant tree
#

hullo

#

Hello fellow Homo sapien

sick lance
night needle
#

Hey any macOS user here?

safe sable
night needle
# safe sable yeah

If you are free, can you give me some time?
I have made a bash tool and i wanna test it on mac so if you're interested then lemme know, I'll add you in the contributer section at GitHub as a script tester๐Ÿ˜€

sick lance
night needle
#

I have only Ubuntu

sick lance
#

Then please don't advertise your tool in this server.

We don't want members downloading something they might not have knowledge in...

night needle
#

I'm not uploading anything, i have my ctf team even and server but they got no macOS so i was trynna find someone here

#

Its just a open source wifi brute force script btw

sick lance
#

I never said you were uploading it, I said advertising.

cerulean hornet
#

cant u just virtualize the macos

sick lance
#

That's against their ToS and/or UELA

cerulean hornet
#

whups

night needle
#

Bro i don't need a macOS, i just wanted to test this single thing as i made this but the problem is that the networkmanager package that i am using only works on mac and not linux

sick lance
night needle
sick lance
#

Which isn't welcome in here either.

night needle
#

Hmm i didn't know this before, i thought they made it public

valid lintel
#

anyone up for basic ctf

#

need some help

molten sky
#

just spent about an hour debugging forti bs

#

just figured i'd let y'all know

#

it was dns

brisk tree
#

morning

brittle lynx
#

Hello can anyone help me enumerate mssql

past sparrow
#

Morning

past sparrow
molten sky
valid lintel
#

wait I'll dm

#

I need atleast 3-4 out of 10 to win

#

But I not up to date in cybersec field from last 3 year forgot all my labs

rapid merlin
#

When I change my host to localhost for ssrf
Shouldn't the request be going to my pc localhost?

sick lance
uncut cove
#

700 points left till omni...

#

also it's been a month since I joined thm, and time started flying by really fast haha

gaunt basalt
#

bro how

uncut cove
#

no social life

covert zephyr
#

what lvl is omni ?

sick lance
covert zephyr
#

thx

lament tendon
covert zephyr
#

neah, mine is 10 ๐Ÿ™‚

sick lance
#

You need to re verify then you're Still still showing lvl 0x9

#

If you want, even.

covert zephyr
#

heh, I wasn't even aware , just saw

drowsy hollow
#

Hello guys. I am in the nmap room, and in Task 14, it asks me to run some ping commands to the target machine .. however, it does not provide the IP of the target machine. Am I missing something? Thanx!

drowsy hollow
uncut cove
#

this one, I mean

covert zephyr
#

ahaamz...

#

well then better get to it ๐Ÿ˜„

gaunt basalt
#

I wanna be omniman too

#

i got about 2k to go tho

uncut cove
#

that's like 3/4 done, not so much to go

sick lance
#

๐Ÿ‘€ what's this? *

valid lintel
#

yess\

gaunt basalt
#

i was pumping through it but im balancing college rn so thats taken priority

#

plus im dumb so it takes me time to get through thm

covert zephyr
sick lance
valid lintel
sick lance
valid lintel
#

np

uncut cove
#

or a mussel ๐Ÿค”

bleak otter
#

Hey cyber masters, newb here i've questions how to ease my computer workload, as u can see i'm running linux through vmbox and whenever i try to deploy xfreerdp command my device become lagging and fan blowing like crazy, i dont think i can go further in my overflow rooms, any alternative or advice? I'm using macbook air ๐Ÿ™ƒ

gaunt basalt
hasty palm
#

Good ... almost lunch time... Everyone

#

Is a human a mussel that operates a flesh-like mech ?

sick lance
#

Mussels are seafood. ๐Ÿคข

uncut cove
sick lance
#

I'm not a fan os seafood.

I hate the smell of tuna.

gaunt basalt
#

sardines go hard

#

sardines with feta cheese and garlic sauce

runic garnet
#

I disagree

gaunt basalt
#

100% satisfaction 100% no friends

runic garnet
limber hemlock
#

hey guys and ladies, I wanted to ask if my subscribtion will expire will I be able to look on premium rooms which I ve already successfully passed?? For example SOC level 1 path there is room Pyramid of pain and question is will be this room visible for let's say repating in free tier not in premium?? I ve already passed that room

gray sonnet
#

Hey, can someone suggest a good youtube channel to learn C++ from?

sick lance
peak hollow
#

hey, iam trying to dual boot my pc with a linux distro and i liked the attack box ubuntu customization so much .is it possible to get the copy of that attackbox iso or any way to install all the hacking tools easily?

sly wagon
#

get Kali linux

sick lance
marble light
#

a question, anyone who can help with packet tracer i have a confusion

sick lance
marble light
#

so router transmit on 1 and 2 and receive on 3 and 6 same for firewall so in that case we need to connect them both through a crossover cable but in cisco packet tracer if i use automatically choose a wire it is using straight through wire which has confused me why is it so how can they communicate while having same tx and rx connected

sick lance
#

Maybe just packet tracer magic.

marble light
#

ok

sick lance
#

I remember when I used it things that shouldn't have worked did

shell nova
#

Or maybe the packet tracer can

hollow summit
#

Hey anyone could answer this question
What do you need to access a web application?

rapid merlin
amber quarry
rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @amber quarry (current: #55 - 119)

rapid merlin
amber quarry
#

ok

rapid merlin
#

@amber quarry please paypal me 3000usd. i wanna be rich. please bless me

amber quarry
#

and blocked

rapid merlin
#

๐Ÿ˜‚

#

hahahahahahah. love it

weak plaza
#

I'm planning on doing a diploma course of cybersec with these course content... Will these content really help me out in career point of view.. any opinions?

1.Cyber Risk Management
2. Information System Audit Management
3 Infrastructure Penetration Testing Management
4. Remote Infrastructure Management
5. SIEM & log trails

sick lance
#

Are you interested in working in SoC?

sick lance
weak plaza
torpid sierra
#

does anyone know any good osint rooms similar to the sakura room?

sick lance
sick lance
torpid sierra
weak plaza
sick lance
sick lance
torpid sierra
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 2068)

sick lance
devout palm
#

Lmao

bitter quiver
#

Main reason Valorant is so iffy.

#

Kernel level access isn't something we should be granting video games

steel aspen
#

EA titles like 2k games?

hidden dagger
#

why pay for burp when i can just use zap ?

past sparrow
#

Why use a tool if you can write payload in curl

whole yew
#

burp community is fine for pretty much everything you'd do for a THM room

ionic bloom
#

Hello guys, Im really stuck with active directory Rooms.. AD feels really difficult for me.. I dont know why, im constantly putting quite a effort to complete those rooms and understand.

mossy river
#

But no, you are correct

hardy temple
#

@sick lance I've noticed that the THM website upgrade is very impressive! However, it doesn't matter if VM is still disconnected on #1217140391615139913. I will do it later.

#

Ah. it works. thank you

simple valve
sick lance
#

I've left my mouse at home ๐Ÿ˜ฆ

sick lance
worn thorn
#

Kernel level anticheat tells me to stay away from some games blobfingerguns Though I allowed Destiny to steal my time.

sick lance
#

The games aren't the issue though.

#

It's the AC.

worn thorn
#

In know the games are fine but they decide if they want to use it or not.

wintry sluice
#

game adds anticheat to prevent hackers ruining the game for everyone
hackers use anticheat as an exploitation platform
๐Ÿคฃ

whole moss
#

Went full circle.

#

Needs an anti-anticheat

hidden dagger
worn thorn
#

same as helldivers. There is no point of an anticheat but they use it.

hidden dagger
#

but burp is not free so i don't understand why i would pay if there's free options

wintry sluice
sick lance
#

Because burp can make some things easier.

worn thorn
wintry sluice
#

burp community is free. it just has a couple of limitations (rate limited intruder etc)

past sparrow