#general

1 messages ยท Page 94 of 1

mossy river
#

It sucks it's logitech

#

but I'll order it

#

ty kyooty

chilly veldt
#

no worries

mossy river
#

Someone said to go for the S version, so I'm going to do it ๐Ÿค”

#

It's ยฃ5 cheaper so

boreal gull
#

doesnt work on mac

#

i have one

#

its bad ๐Ÿ˜ฆ

simple valve
#

if you stream, its noticeable compared to others

#

who use teh 60fps

chilly veldt
boreal gull
#

well "doesnt work" = the camera stutters sometimes

boreal gull
chilly veldt
#

eh, it's sales

#

so I don't know how much they stare at themselves

mossy river
mossy river
#

my friend uses a 4k go pro

boreal gull
#

windows and linux its fine for me tho

mossy river
#

maybe I should've asked my mother for her gopro

chilly veldt
#

oh well, time to go to work

sick lance
#

I thought about using my GoPro

mossy river
#

I use my iPhone camera

#

but it burns out my battery

fluid ember
chilly veldt
fluid ember
#

Which certification do you have?

chilly veldt
#

It's at least the new role I just got, but I am also a data technician working internal IT

chilly veldt
fluid ember
#

Wow just want to follow your footsteps ๐Ÿ™‚. Well am starting with the Tryhackme

#

To get the skills ๐Ÿ™‚

chilly veldt
#

That's a good start!

#

I too started out with CTFs before starting my education and my first job

fluid ember
chilly veldt
# fluid ember Why don't you recommend the eJPT?

It's too easy to pass for it to give any value, especially with the price tag that it has, the new edition has had a whole revamp so the infra is a little better, but the study material isn't the best and the fact you have to pay $750 to get access to training boxes is absurd

#

Yes it's entry level, but you can pass it with little to no computer knowledge

fluid ember
#

Okay

#

So which cert will you expect me to get in future once I am confident in the skills of getting in Tryhackme?

past sparrow
chilly veldt
#

Basic SOC/IR/threat hunting knowledge

past sparrow
#

Mmm, maybe I misphrased my question

#

I want to know what it covers that any other blue team cert does not cover

chilly veldt
past sparrow
#

I see, interesting

chilly veldt
#

Basically OSCP but blue teaming

past sparrow
#

is BTL1 required for BTL2?

chilly veldt
#

It's recommended

past sparrow
#

I might want to jump straight to it, if it teaches a lot

chilly veldt
#

It teaches you quite a good bit, would recommend taking the SOC paths on tryhackme with it

crude stump
#

Itโ€™s actually really good lol

#

I dropped it like 2 times

#

Still works

mossy river
#

I've used logitech

#

I much prefer Razor

past sparrow
#

only 2k as well, much cheaper than SANS ๐Ÿค”

chilly veldt
crude stump
#

I had razer headphones but they broke

past sparrow
chilly veldt
mossy river
past sparrow
crude stump
chilly veldt
past sparrow
crude stump
#

The reason my old headset broke is because just above the plug, I guess I did somthing idk but now only one headphone plays

past sparrow
#

So entry level certs I would rather skip and jump to the advanced ones where I can increase my competence

cerulean nest
#

grr

carmine sedge
#

This is going to be a question way off topic, but I am pretty sure there are avid star wars fans in this thread. Has anyone been following the new season of the bad batch?

crude stump
chilly veldt
carmine sedge
#

Ah... well then. I guess I misinterpreted Jared | Jabba... lol I thought that was a subtle nod to ezra

crude stump
#

Welp guess there is one

#

Anyone else?

carmine sedge
#

eh hem.... 2 (:

crude stump
#

Can we get a 3rd

chilly veldt
#

But no, I haven't followed along, felt they gotten bad since the last couple of movies

carmine sedge
#

They have :/ ...

crude stump
#

Since Disney

carmine sedge
#

Disney kills me... like they start some things off well, except the movies, then just derail themselves but rewriting canon events

outer rivet
#

Na someone hacked my account

crude stump
carmine sedge
#

is @mossy river not a star wars fan? Is that not the Ezra nod I thought it was????

outer rivet
mossy river
# carmine sedge is <@270975958511517697> not a star wars fan? Is that not the Ezra nod I thought...
carmine sedge
#

you know... I truly learn something new every day

crude stump
mossy river
#

Star Wars is okay

outer rivet
mossy river
#

I like spending time with my father, we usually watch the movies

near hawk
#

Star wars was ruined by the new trilogy

mossy river
carmine sedge
#

I don't count the new trilogy... @near hawk

near hawk
#

Valid response

outer rivet
hollow pivot
#

hey @rough gorge can I DM?

outer rivet
#

I havenโ€™t watch any Star Wars

carmine sedge
#

yes

#

just dont watch the sequel series

outer rivet
#

I give it try

carmine sedge
#

honestly, the old republic is my favorite era

#

the fact that keanu reaves hasnt starred in a revan movie makes me sad every day

#

He literally looks like revan

fluid ember
#

@chilly veldt which path will someone take in the Tryhackme that alligns with the pjpt?

hollow pivot
crude stump
#

Hate carrots

fair frigate
#

Does anyone have a discord token joiner?

crude stump
#

๐Ÿคฎ

outer rivet
fair frigate
fair frigate
#

I need members IN My new server

mossy river
#

Yeah thought so

crude stump
#

Wouldnโ€™t that be a bot

grim sparrowBOT
#

:hammer: zendoefe#0 has been banned.

chilly veldt
mossy river
#

Keep it appropriate please ๐Ÿ™‚

candid pagoda
#

i meant โšฝ๏ธ

#

๐Ÿ˜

mossy river
#

Mhm.

candid pagoda
#

i have a vapt interview

#

dunno how to prepare myself

chilly veldt
#

Gotta love when stuff is free.99

crude stump
#

Iโ€™m sure heโ€™s joking

rapid merlin
simple valve
#

jr, senior?

rough gorge
crude stump
#

๐Ÿฆ—

chilly veldt
#

DAMMIT

#

my teamviewer doesn't work

shell nova
#

sounds like a problem

mighty isle
chilly veldt
thick tundra
#

why do I need to verify my phone to speak on this server ?

#

is this only for me or everyone ?

#

some specific thing the mods added particularly for me ?

naive violet
#

And it's to stop the spambots

thick tundra
#

sed

candid pagoda
sick lance
#

New room Friday!

shell nova
#

๐Ÿ˜ฎ

crude stump
#

Wooooow

crude stump
crude stump
#

Oh

outer rivet
crude stump
#

Itโ€™s cool

candid pagoda
#

any advices for job interviews?

crude stump
outer rivet
bitter quiver
outer rivet
crude stump
twin ridgeBOT
#

Gave +1 Rep to @crude stump (current: #172 - 36)

bitter quiver
#

THere is a reason I'm rocking Star Saber images on my profile atm. Watching that and Bravestar atm lol

heady nova
#

Ello

soft orchid
#

So I have an assignment to emmulate a hack that happend in the last couple of years. (Nothing complex but not too easy either). Anyone know any sites where I am might be able to find these hacks

sick lance
buoyant tree
#

when new room?

wintry sluice
#

pattern seems to be (if a room is getting released)

  • walkthrough rooms at 1600 UTC
  • challenge room at 1900 UTC
near hawk
#

Yea every friday for challnge and then i think usually tends to be monday and Wednesday for walkthroughs?

boreal scarab
#

@gray sonnet WAKE UP

kindred pike
sand trench
#

ello ello

cedar moss
#

Ello

sage wolf
#

Aaahhhh

umbral bay
sick lance
boreal scarab
chilly veldt
#

That joke came clocking in

cosmic pendant
sharp citrusBOT
clear jackal
#

There's an open CVE, current instructions from CISA are to downgrade from the affected versions

cosmic pendant
#

Open Source says hello

#

They can track the commit of when it done. Whoever did it, it was malcious, we'll see what user it was done under.

#

Then, likely he was compermised, wouldn't be the first time

shut hawk
#

Oh dear

cosmic pendant
#

Yeah, devs get whacked don't know it

#

people push commits, no one checks from the main guy...

#

It's happened before, it will happen again, and it will happen more

#

just got lucky

blazing granite
#

that's why it's better to run Kali in a VM

shut hawk
#

yeah where are the branch protection rules?

boreal scarab
#

I love when mother Russia tries an XXE on my server and failed lightsaberpepe

near hawk
#

Vue need to activate their windows

devout palm
#

lol

tropic stratus
#

Is it unreasonable for someone to be strongly opposed to the concept of IoT devices because they seem pointless and a massive security risk?

#

Like who asked to connect their coffee pot to the internet anyway? Does it need an internet connection?

naive violet
#

There are some with good security and privacy backing them

#

And personally, I prefer "home automation" to "iot"

boreal gull
#

@naive violet can i dm you?

naive violet
#

Go ahead bee!

tropic stratus
#

Hrm. Personally I'm against the idea of adding internet connectivity to random appliances like fridges, etc.

chilly veldt
tropic stratus
#

Hrm.

#

What's the difference between the two? Is home automation on a more systematic level, while IoT is only specific devices?

crude stump
chilly veldt
#

home automation is more of a QoL inpromevment where as IoT actually solves issues, you can still live your life with no issues without having any home automating tools, whereas IoT devices might solve specific issues if not multiple issues at once

boreal scarab
#

Good job, you wasted your time kekw

naive violet
boreal scarab
#

For a sec I thought James was going to be the voice of reason behind my thought process kekw

chilly veldt
#

James, do you know anything about LoRa?

naive violet
naive violet
chilly veldt
sand trench
#

shadow is afraid of IoTTPYfP

naive violet
naive violet
#

I'd show you but it'd doxx me

chilly veldt
#

no worries, I get it

#

I can't show what I know either

boreal scarab
# crude stump You must be proud of your ips

I love talking about my VM.
8 cores, 16 threads, 64 GB Ram,
Fail2Ban, Full disk encryption, clamscan every day with logs, UFW.

Snapshots taken every other day, clone of the VM incase of failure. Dataset on TrueNAS encrypted for that VM.

buoyant tree
#

something like this

boreal scarab
boreal scarab
#

Oh, forgot to also state, that VM is also on a separate VLAN with no intranet access

sand trench
#

....

buoyant tree
sand trench
#

no more invincible for a week....

blazing granite
naive violet
#

Mattttttttt

#

Satellite

boreal scarab
chilly veldt
#

I got 2 VMs running on my home desktop right now that has access to my whole network

sand trench
#

matt is protecting against log4shell

boreal scarab
#

Hey, it also has taught me things too. Was like a fun project

buoyant tree
chilly veldt
buoyant tree
#

Like unless you're planning on creating mob farms with potentially tens of thousands of entities you shouldn't need that much

boreal scarab
#

I got 2 MC servers on that VM for my friends

#

No lag whatsoever, love it

blazing granite
chilly veldt
buoyant tree
boreal scarab
naive violet
chilly veldt
boreal scarab
wild rose
crude stump
#

Wait can you use a vm like a whole other operating system.

buoyant tree
#

ngl thats good maths

#

pay 400$ for a 20$ problem

#

I have done that type of maths too manytmes

boreal scarab
# buoyant tree pay 400$ for a 20$ problem

And after 20 months, ROI.
Nah but I was getting the server for myself anyways, and since I had the hardware, I built him a VM. I didn't know till after I bought the server that he was paying that much

#

@teal nexus

teal nexus
#

Once you finished learning how to use a tool is that considered a skill or do they provide more practice for it down the line?

buoyant tree
#

although a 20$ for a 4gb server is criminal

rapid merlin
#

Can I Use TryHackMe Without Knowledge of Networking? I know a little of cyber security and I fully know IT but I don't really know networking can I still use TryToHackMe And Understand everything they teach?

buoyant tree
#

thats 5$ at most

teal nexus
buoyant tree
#

.

rapid merlin
buoyant tree
#

they teach you almost everything you need to know in order, and if you are ever confused feel free to google or ask here

boreal scarab
teal nexus
boreal scarab
teal nexus
#

Thought it was a bot for a second

normal fable
#

@boreal scarab is a bot

#

๐Ÿ˜›

naive violet
teal nexus
# boreal scarab Oooooh lmao

Also reason why I thought it was a bot, is that this is the first time posting in this chat from my recollection lol

normal fable
boreal scarab
boreal scarab
#

Mfer, I can't dance anyways, even the robot kekw kekw kekw

normal fable
#

Yeah.. that one.. lol

wild rose
#

yikes you can get a whole bottle for that.

strong flicker
teal nexus
boreal scarab
normal fable
#

Ye

toxic canopy
boreal scarab
boreal scarab
normal fable
#

He really wanted to go to a club.. but I also was okay with it.

devout palm
#

I wanna go Vegas

boreal scarab
#

He stayed there till like 4 AM, the dumbass tried to bring lockpicks through the bouncers kekw kekw kekw

teal nexus
normal fable
sand trench
boreal scarab
teal nexus
boreal scarab
sand trench
#

minecraft still uses log4j

#

just it is patched now

normal fable
#

My favorite things were meat swords and white castle..

boreal scarab
#

Wasn't this packed at all, but this was the club

boreal scarab
teal nexus
#

Random DJ there or someone in specific? Never been to a club at Vegas so I have no idea

boreal scarab
rapid merlin
#

yo guys did you learned a lot from tryhackme?

normal fable
#

We had good food. ๐Ÿ™‚ The meat was tasty. lol

mighty storm
mighty storm
#

its good for beginners

rapid merlin
boreal scarab
normal fable
#

AC in the Tesla sucked in the back seat.. ๐Ÿ˜›

teal nexus
boreal scarab
empty atlas
boreal scarab
#

I wasn't about to give up that seat kekw kekw

empty atlas
boreal scarab
#

Then you see CCG,

rapid merlin
crude stump
#

I think I might have talked about this before but if I download snort on my vm, does it automatically start logging stuff if I use the logging command when using the internet. Or would I have to enable something for that

teal nexus
rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @empty atlas (current: #2040 - 1)

empty atlas
boreal scarab
visual pecan
#

Good morning

boreal scarab
#

@normal fable Ya know Wynn has their own PGA gold course in the middle of Vegas?

teal nexus
boreal scarab
teal nexus
boreal scarab
#

There was also crypto village (cryptography, not money) physical security Village, lockpivking Village, hardware hacking Village, and much much more

boreal scarab
twin ridgeBOT
#

Gave +1 Rep to @boreal scarab (current: #31 - 234)

teal nexus
#

Dang, I'm giving rep to the bot berries

crude stump
#

I think of a village, tight nick community of fellow hackers

teal nexus
visual pecan
crude stump
#

Tbh I have no idea lmao, never been to defcon

teal nexus
#

Try outs lets see who wins

boreal scarab
karmic furnace
#

I am having a hard time with my pi and pdo_sqlite.

boreal scarab
#

This is Hacker Tracker, we had to use it to find where the villages were, what was happening when. This is just an example of BSides Puerto Rico

karmic furnace
#
PHP Warning:  PHP Startup: Unable to load dynamic library 'pdo_sqlite' (tried: /usr/lib/php/20220829/pdo_sqlite (/usr/lib/php/20220829/pdo_sqlite: cannot open shared object file: No such file or directory), /usr/lib/php/20220829/pdo_sqlite.so (/usr/lib/php/20220829/pdo_sqlite.so: undefined symbol: php_pdo_unregister_driver)) in Unknown on line 0
crude stump
karmic furnace
#

this is my downfall at 9:18 on a Saturday morning.

#

Do I have an Aussie defcon btw?

visual pecan
#

Basically Bsides

boreal scarab
boreal scarab
karmic furnace
visual pecan
#

Yeah nah yeah

karmic furnace
#

I think we are the only people here that understand that sentence.

boreal scarab
#

Oh, an Aussie, hold on

visual pecan
#

There it is. Was waiting for it

#

Upside down joke

boreal scarab
karmic furnace
#

Man, I love that show that it comes from tho.

#

That was peak comedy

boreal scarab
karmic furnace
#

Oh you sweet summer child.

#

the implication is there.

boreal scarab
#

Are you calling out Summer schools?

visual pecan
karmic furnace
#

We seem to be following suit tho, so don't worry

normal fable
crude stump
#

Criky

normal fable
#

Yes... I do golf.. no.. I'm not good. lol

karmic furnace
normal fable
#

I can lose 12 balls on a par 3 course... i mean.. lol

karmic furnace
#

You have no idea what rude is.

crude stump
#

Joke

karmic furnace
#

๐Ÿ˜›

crude stump
#

Rude emoji

normal fable
#

Time to get outside and do some outside work while it's nice out. ๐ŸŒž

crude stump
#

Smh

visual pecan
#

Americans think weโ€™re fighting when you talk to another Australian.

crude stump
#

Do you guys ride kangaroos speedy

karmic furnace
visual pecan
#

We ride Greyhounds.

crude stump
#

Hm

#

The dog?

#

Or the bus

#

Which one

karmic furnace
#

Both.

boreal scarab
crude stump
visual pecan
crude stump
#

I know

teal nexus
crude stump
#

Kinda expensive lol buuut

#

You get access to a lot of stuff

boreal scarab
teal nexus
visual pecan
#

Fundamentals

crude stump
#

Well Iโ€™m guessing they already have fundamentals

#

Level 5

crude stump
#

Expos maybe?

jaunty prairie
#

conference usually

teal nexus
# crude stump Expos maybe?

Yea Expos can be a word used. I have a "cert" so I know some fundamentals but not like actually utilizing that information as it has been using THM

visual pecan
#

Iโ€™ve been using THM to do hands on learning.

jaunty prairie
teal nexus
jaunty prairie
#

how was sec+? I am going to write it this summer, and then do pentest+ just to get actual certs

#

actually you prob wrote 601? Im going to be doing 701

teal nexus
#

I actually did the 701 and took me a month and a half to study and take practice tests.

mossy river
#

@shut hawk geko

jaunty prairie
#

what was your experiance before taking sec+? I have 20 years in IT, but now pivoting to cyber

teal nexus
naive violet
#

@teal nexus have a look at the defcon talks published on YouTube. They're free to watch etc online

jaunty prairie
#

I found some great mentorship from the Simply Cyber community on youtube. really great folks if your looking to do some more networking

grim sparrowBOT
#

Done!

wooden totem
#

Free cash money!! ๐Ÿ™ fr fr I boutta be rich

visual pecan
#

Fr no cap?

jaunty prairie
#

LOL

teal nexus
crude stump
#

What does the ban spam do

teal nexus
#

Really never learned to network. but going to that defcon might be good

crude stump
#

Or is it secret

visual pecan
naive violet
jaunty prairie
#

I think its going both ways @visual pecan

naive violet
#

Deletes all the messages and has a prefilled ban reason/message

crude stump
#

Thatโ€™s cool

#

BANNED

jaunty prairie
#

they want to get better at people networking, but got let go from a networking job

teal nexus
teal nexus
crude stump
visual pecan
jaunty prairie
#

patch and run lol next shifts problem

visual pecan
#

My old manager was mad, because I kept leaving dead on 5. Was getting paid minimum wage. I am not working for free.

#

You already pay me peanuts.

rapid merlin
#

it was a pain to spend 14$ but i shouldn't be a Cheapskate its still worth it ๐Ÿ˜‚

#

at least they have referral for a friend

jaunty prairie
rapid merlin
teal nexus
visual pecan
#

I just claim THM as a tax deduction.

jaunty prairie
rapid merlin
#

but I call it investment we get the knowledge

#

we get the job

buoyant tree
jaunty prairie
#

good idea sp33dy. i guess its education, right?

clear jackal
#

That's not how that works

jaunty prairie
visual pecan
teal nexus
sand trench
#

meep moop time for sleep sloop to get up early for easter while listening to beep boops

jaunty prairie
#

I like the boxes at hackthebox, but find the community here alot better. im only 3 days in to here tho

#

and the boxes here are equally as good

rapid merlin
#

guys what type of career in cyber security you tryna be soc? pen tester security engineer or etc

visual pecan
#

In my country, THM can be deductible if it is leading to getting job. (Professional development)

clear jackal
near hawk
#

Well kung fu panda 4 was a really short film

jaunty prairie
#

i currently work in Incident response. I want to get into DFIR

rapid merlin
#

you're cool

teal nexus
chilly veldt
#

DFIR can be hard to get into

rapid merlin
#

I'm just trying to get experience for now my pathway is to SOC I know its common but I have no comment

chilly veldt
#

I have worked in a SOC for half a year

rapid merlin
#

how was it?

#

I heard its boring

chilly veldt
#

It's pretty chill

#

The job I did was 24/7 eyes on screen

#

So I worked in the evenings and nights

wild rose
#

Depends on how outfited it is.

jaunty prairie
#

depends on the SOC, and the perpson. I worked at one company the SOC guys were leaving all the time...where I am now the SOC guys love it

rapid merlin
#

be honest did you watch movies and stuff like that while working at soc ?

teal nexus
#

That's my goal to start off as a SOC guy. Just so damn competitive now...super daunting

chilly veldt
wild rose
#

I tend to do THM rooms during free time.

chilly veldt
#

The only reason why I am leaving this job is cause I got headhunted for a different job

#

Which is also a SOC position, but I get to help build it and create processes and engineer

#

And also do IR work

jaunty prairie
#

well folks. I have some trees calling my name and maybe a movie. I hope you all have a great night

chilly veldt
#

You too, I am on my way home from work

rapid merlin
#

i don't really wanna go to meetings and talk I know that you gonna do sometimes that in soc job but not as much as solutions engineers

wild rose
#

I would have moved to rapid7, but I'd have to work in the office vs from home.

chilly veldt
modest elk
#

Hi I need help . ๐Ÿ™Till now I have only done tryhackme linux based machine and i have completed 107 room all linux based .. now the thing is now I don't know how to approach windows based machine and when I see windows based machine i don't approach it is there any path or module or CTF which will help

rapid merlin
chilly veldt
rapid merlin
#

oh lmao

#

ok

chilly veldt
#

I just sit and analyse

teal nexus
#

You guys know a place other than the commons places to look for a job for SOC specifically?

modest elk
chilly veldt
rapid merlin
sick lance
modest elk
#

Ok

rapid merlin
#

I know one I'm gonna apply to then ill have certificates and much better knowledge

teal nexus
teal nexus
rapid merlin
#

but def Ill never will want to work for microsoft or google it sounds good but isn't

rapid merlin
chilly veldt
rapid merlin
#

also almost my whole family works at tech and similar ๐Ÿ’€

chilly veldt
#

Only my uncle and grandpa is/has working in tech, I am the only one in cybersec

rapid merlin
#

my father works only in cybersec and my uncle used to my brother is trying to work for cybersec my sister works at cheese factory my mother is an graphical artist and my grandpa is chief of police retired

crude stump
#

Kyooty how many does do you gotta actually go into work

chilly veldt
#

My dad's a wood worker, my mom's a psychologist

chilly veldt
crude stump
#

What ever your soc one is

chilly veldt
#

Both are SOC

teal nexus
crude stump
#

Hm then the one you said yo sit and analyze

teal nexus
#

Require a lot lol

rapid merlin
chilly veldt
#

Lol

crude stump
#

Lmao

#

Alright which ever one the

chilly veldt
#

Well my old job is onsite only, meaning we have to be at the office at all times, my new job is fully remote with possibilities to go to the office if I want to

rapid merlin
#

yeah I def don't wanna go to cold a#$ office ill try to be remote

crude stump
#

What happens if you find something tho. You said you donโ€™t go to meetings so do you just contact your boss and report to them

chilly veldt
chilly veldt
#

Lunch is no matter what shift you're on, paid and warm

crude stump
#

Wow

wild rose
#

Depends on your tooling. You could have EDR and/or SOAR that will take care of somethings, but in difficult cases, you'll have to send out to a field services/sysadmins to reimage the system.

chilly veldt
wild rose
crude stump
#

Any of yโ€™all know any good videos on how to isolate a machine?

#

Thereโ€™s a dude named hackersploit

#

On YouTube idk if heโ€™s trusted tho

wild rose
#

when you mean isolate, do you mean take if off the network for a time or setup a sandbox on system?

chilly veldt
wild rose
#

depends on your tools and if the network allows for that.

chilly veldt
crude stump
#

Sandbox

wild rose
#

check out cuckco or viper sandboxes

#

those are the ones I think our analysts have.

chilly veldt
#

I need to figure out what we have and if I have to make my own actually

crude stump
twin ridgeBOT
#

Gave +1 Rep to @wild rose (current: #310 - 15)

crude stump
#

Yk what I very like, itโ€™s not a sandbox but app any run is very helpful at analyzing

chilly veldt
#

Any run is a sandbox itself

wild rose
#

It's a cloud sandbox.

chilly veldt
#

Yup

crude stump
#

oh really

wild rose
#

you use their machines to "explore" files

crude stump
#

lol

#

so we are doing there work for them

#

oh

#

nvm

wild rose
#

well it's all goes to helping out the community, so any new intel on malware is helpful.

chilly veldt
#

We use private cloud sandboxes

#

Let's see how long it takes for me to lose access to it when I stop, would be fun

wild rose
#

lol

crude stump
#

im interested in what zerosilver has to say

rapid merlin
#

this community is nice instead calling someone dumb they teach

wild rose
#

he's getting there don't rush the guy

crude stump
#

thought it was gonna be a book

#

guess i judged the book from its cover

chilly veldt
# wild rose lol

I mean, it's a 3rd party system, let's see if they forget or not

crude stump
#

this community is very nice

#

afterall it is for a learning platform

rapid merlin
#

yeah

wild rose
#

we host ours sandboxes internally. If I remember right, when I first joined they had some on bare metal for malware that don't work in VMs.

normal fable
#

Should I play a game tonight? ๐Ÿค”

wild rose
#

what do you use? I really don't have much use cases for a home lab anymore now that I have access to all I need at work.

chilly veldt
wild rose
sinful moon
#

I just use isolated ESXi hosted VMs, previously Proxmox (lol may be going back to that). But yeah we did finally get a spare ESXi system at work for testing.

sinful moon
chilly veldt
normal fable
#

I haven't played a FF game since X.

crude stump
wild rose
normal fable
#

I need to get an Xbox so I can play games I own... Lol

wild rose
#

I think I've put in like close to 80hrs on rebirth. I'm on the last stretch of the game.

chilly veldt
sinful moon
# normal fable I haven't played a FF game since X.

You haven't missed tons beyond some notable exceptions. FF XII is quite nice if you can get adjusted to how MMOish the combat is like. FF XIII is low key underrated, fun battle system.

FF XIV is a good time as an MMO and no real complains beyond having to sub. FF XV I wasn't huge on but want to revisit. FF XVI I'd love to play when it ever comes to PC

normal fable
#

Now I wonder if I can emulate a 360...

wild rose
karmic furnace
#

I think I might punch php.

chilly veldt
sinful moon
chilly veldt
#

Going home to finish it right now actually

rapid merlin
#

yoo tryhackme is not only educational but fun I love this little fake virtual machines lmao

wild rose
sinful moon
#

Yeah I only put in about 40 hours or so, but 14 is good fun indeed

#

You can force sync your level by reauthenticating against the bot

rapid merlin
#

or am I wrong

sinful moon
#

Bot only updates level once a day otherwise

wild rose
normal fable
#

They're real virtual machines and people work pretty hard setting them up.

rapid merlin
chilly veldt
wild rose
#

Every time you click "Start Machine" a real system get's spun up on AWS.

sinful moon
#

lol Kyooty. But yes they're all VMs but yes they all needed to be setup in a painstaking fashion

normal fable
#

And tested

sinful moon
#

You can tell because they're mainly using Spice for the connection to the VMs

wild rose
normal fable
#

Can't forget our lovely testers. ๐Ÿ˜

sinful moon
#

If you use Proxmox or similar, you can see the exact same sorta web UI

rapid merlin
sinful moon
#

so these are almost certantly kvm based

chilly veldt
chilly veldt
civic oyster
#

sup

chilly veldt
#

Sup sup

wild rose
#

You're a real trooper. Everyone that I know fakes on Ramadan, until their mother reminds them.

rapid merlin
#

also I heard tryhackme has few ctf games might try few later

chilly veldt
#

I got no one to remind me, I live alone

#

So it's all on my own time

rapid merlin
#

I keep calling tryhackme learnhackme ๐Ÿคฆโ€โ™‚๏ธ

wild rose
#

(nod) word

prime nacelle
#

ุงุง

wild rose
#

later everyone, I best be offline on a Friday night.

sinful moon
#

G'night Dextreme!

#

lol reply to them not me, but otherwise welcome c:

blazing granite
#

@sinful moon Hi!! ๐Ÿ‘‹ How are you??

sinful moon
#

Pretty well, it's been a minute. You can probably guess which security event made me check in lol

rapid merlin
chilly veldt
#

It's meaning the highest rank

sinful moon
#

No that's just the highest rank one can achieve on TryHackMe

crude stump
rapid merlin
#

oh ok

rapid merlin
#

didn't knew

sinful moon
#

It's no worries!

rapid merlin
#

I'm new here like a newborn baby ๐Ÿ˜‚

crude stump
#

i didnt mean that in a mean way

normal fable
#

It's just a rank. Mods and staff will have different roles. ๐Ÿ˜

rapid merlin
blazing granite
sinful moon
#

This is a really friendly community for newcommers, that's kind of what this community and platform is about, just teaching security to all folks

normal fable
past sparrow
#

Who is this Nobody person and how does he know it all?

rapid merlin
past sparrow
#

the 0xD god is just a rank on the platform from doing the rooms

normal fable
sinful moon
#

lol indeed a joke, takes effort to learn and advance. You'll be there before you know it

blazing granite
sinful moon
#

(whoops didn't mean to ping)

rapid merlin
#

should I write notes while learning THM

#

?

crude stump
#

yes

#

yes yes

sinful moon
#

Yes, highly recommended

normal fable
#

Absolutely

rapid merlin
#

alr

sinful moon
#

Obsidian and Logseq are some nice note taking software to consider

crude stump
#

theres so much stuff its nearly imposible to remember all the commands unless you use it so offten

sinful moon
#

lol just watch for Windows Defender attempting to eat your notes on reverse shells

past sparrow
#

eh, commands you can look up, I recommend taking notes on the concepts and nuances

crude stump
#

i use the good ole composition notbook lol

normal fable
#

Use a good note taking app. We all have opinions on what is best.. but my opinion is whatever you will use is the best.

rapid merlin
sinful moon
#

I'd argue a bit of both, but depends on your note taking style. Just remember not to go all out, your notes are not Wikipedia, just only what you need to remember

normal fable
#

I like trillium

sinful moon
#

Yeah Obsidian is lovely, just Markdown based. And yeah Trillium comes highly recommended by many as well

normal fable
#

I haven't used obsidian.. so I can't say anything about it. ๐Ÿ˜

past sparrow
#

Obsidian can be nice if you start actually connecting the dots

normal fable
#

I CAN say that there are much smarter people in here than me..

past sparrow
#

Or you can be like me, vscode and just lots of files in 1 directory

sinful moon
#

lol fair enough, I'm sure VS Code has a markdown parser

rapid merlin
past sparrow
normal fable
#

I do like vscode... But I don't use for notes. Lol

past sparrow
#

I do plaintext notes that I never look again ๐Ÿ˜”

#

though paper notes are the best imo

crude stump
#

i guess im the only one that physically rights down my notes

sinful moon
#

mhmm, that's kind of why I like Markdown editors that have live WYSIWYG interfaces

past sparrow
sinful moon
#

current line is markdown until you move out of it and it's rendered

past sparrow
#

if I draw it then I can sort of go through that path high level

rapid merlin
past sparrow
normal fable
#

I like adding screenshots.. too many sometimes.

sinful moon
#

Yeah Obsidian added visual drawings and graphs via something like iPad Pencil input which can also be linked back to more typical Markdown notes

fathom hull
#

got my 30 day streak badge ye :)

#

my lvl still the same xd

normal fable
#

Also.. hey.. @sinful moon ... therea216H

fathom hull
#

didnt update haha

#

fak

sinful moon
#

Congrats c:

fathom hull
twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #38 - 189)

sinful moon
fathom hull
#

i should be lvl 13 now but ye some sort of bug

sinful moon
#

I mean are you level 13 on the site? If so it's just lag with the Discord bot, it only updates once a day unless you reauthenticate

normal fable
fathom hull
sinful moon
#

lol totally fair

crystal kayak
#

hello everyone

sinful moon
normal fable
#

I think it took a couple days for me to go green.

crude stump
fathom hull
#

could be the case i guess

sinful moon
#

Oh that is odd

crude stump
#

i think the staff know about the not leveling up issue unless thats what happens when you hit god

normal fable
#

If you haven't yet, you could try to verify again

fathom hull
#

using the bot?

chilly veldt
#

They are currently working on fixing it

sinful moon
#

Nah the bot just pulls from site info, so that wouldn't change anything.

normal fable
#

Ah. Okay.

fathom hull
#

but they are working on it

#

not much to do :(

#

#mesad

normal fable
#

They'll get it fixed.

fathom hull
#

yes i hope so :)

#

meanwhile ill keep practising and learning stuff

normal fable
#

We'll see you in advanced chat soon.๐Ÿ˜

fathom hull
#

im mostly reviewing stuff again

fathom hull
normal fable
fathom hull
#

oh nice

normal fable
#

Not as active as general

fathom hull
#

im thinking about what i want to practise next mby some AD/ windows env or docker escape stuff

normal fable
#

Most of us just chat here and room help.

fathom hull
#

ye i see

#

i should participate more

#

i really enjoy the community

normal fable
#

AD rooms are good.

fathom hull
#

ye i should do those

crystal kayak
#

hh

sinful moon
fathom hull
#

there is a couple of techniques that i can test out on those rooms as well

#

have not been to much into docker env before but i should also really do those rooms as well

sinful moon
#

Mhmm, just when you start to get more mature in your learning it can be quite helpful to spin up your own labs for testing and learning

fathom hull
#

i have done this before

sinful moon
#

and honestly part of this is not just about exploiting, but learning how these are configured as a sysadmin and what they have to deal with to protect these resources

fathom hull
#

i used to setup enviroments for testing like exploit dev or re

#

but then i stopped learning for a while

sinful moon
#

fair enough, it's just a never ending learning exercise

fathom hull
#

ye thats true

sinful moon
#

mhmm

fathom hull
#

and we need to practise like everyday

#

if not u start to forget about techniques and stuff

sinful moon
#

I am a professional sysadmin and blue team infosec, but yeah offensive has been a minute for me. I do need to drive in again and refresh

fathom hull
#

thats nice

#

im just an enthusiast for now

#

my plan is to work with cyber security

#

especially pentest/red team

sinful moon
#

heh ironically I'll say enjoy it while it lasts, working in IT can suck the fun out of some of these hobbies but it for sure depends on the job and your work environment

just MSP things ๐Ÿ‘Œ

#

lol

fathom hull
#

lol

#

i think working as a pentester or red teamer should be fun

#

but ofc depending on the work enviroment etc as well

sinful moon
#

Yeah it would be, just difficult to land. Also good to keep in mind a lot of redteam/pentesting is just dealing with reporting and coordination with clients vs all pentesting all the time

muted rock
#

Hi

fathom hull
#

waaaa

#

reporting is boring

#

but ye its part of the job

fathom hull
crude stump
#

i wanna work in the blue team sector and stop bad guys. preferably soc

sinful moon
#

lol that is a big part of the job indeed. In infosec it helps to be a good communicator or else your work can land on deaf ears

#

Even just to my senior tech boss, if I get overly verbose it'll go in one ear and out another due to his workload

crude stump
#

what the name of the blue team job that actively hunts down the hackers

#

a threat hunter?

crystal kayak
#

hello, is that lol means laugh happliy?

sinful moon
#

More or less yes, although threat hunting is often attempting to hunt for threats which were missed by security solutions in your own fleet. But yeah gotta keep up with current threat actor tactics and look for them in your environment.

crude stump
crystal kayak
twin ridgeBOT
#

Gave +1 Rep to @crude stump (current: #168 - 37)

crude stump
sinful moon
#

It's admittedly somewhat vague to me in that I'm really the only infosec person in my org. As a matter of my job yes I do attempt to identify whoever is doing these malacious actions

coarse heath
#

hi, i gave the discord api on the web site, and what i do with this api

#

i take*

sinful moon
sharp citrusBOT
crude stump
#

i got my mind set on becoming a soc 1 analyst

#

i love the tryhackme soc 1 rooms

#

so fun

#

not only that but actively stopping threats and investigating them are fun too

sinful moon
#

99% of the time, you and or security solutions will catch the threat before it does real world harm. Even some minor compromises can be resolved easily before more harm is done.

Although it depends on what you're dealing with. As an MSP, we have many clients including individuals, and those individuals don't really have SEC regulations regarding announcing data breaches when they let a threat actor in using remote support tools.

Businesses are another story and depending on serverity, this could mean reporting to the government and customers

crude stump
#

etc

#

or should i say your local cyber agency

#

forget not everyone is from america lol

sinful moon
#

I am from America with my mention of the SEC, but yeah. It would depend on the orginization who they need to report to

#

anyone handling tax data who are compromised would immediately need to contact the FBI and IRS

crude stump
#

theres so many agencys its crazy

#

and they each handle different stuff

sinful moon
#

That's what your orginization's Incident Response plan is for

#

it delegates who does what in the event of a breach, who to contact, and etc

coarse heath
#

elizabethNoir i have a question for you, i'm new to this field and don't have much knowledge, I am a software engineer final year student. and I really want to work in this field, priority would be internship, (I think it will be easier to find), What field do you think I should focus on to work in, such as pentest or the defense... you mentioned and is there a certificate that I can easily get to start?

#

In summary, I need to know the most basic things I need to learn and what the requirements are in order to work somewhere right now.

#

Because I think that if I start working somewhere, even at the entry level, I can improve myself step by step.

sinful moon
#

CompTIA Security+ is a pretty easy to recommend beginner cert. This covers a lot of the fundamentals.

As for what position to shoot for, heck honestly getting into anything in IT will be getting your foot in the door. With your software engineering background I'd potentially recommend looking into DevOps roles and security for such, but that may be a long term goal.

I got my start literally doing IT help desk, so it's not impossible to move throught the ranks after proving your knowlege. In fact a more diverse IT job helps inform a lot about how business IT works and general issues and use cases that arise from such.

true dirge
#

hi i have trouble on accessing wreath

#

when i download the vpn it shows 0 bytes

coarse heath
#

Thank you for your advices

sinful moon
#

yep np

fathom hull
#

the support helped me with it

#

u can try to leave the room and join the room again

rapid merlin
#

THM said I would fit Incident Responder ๐Ÿ’€

fathom hull
#

regenerate a new certificate wait a couple of minutes and try to download again

fathom hull
#

where did u take this test

rapid merlin
#

Careers in cyber

#

thm

true dirge
#

HAHAHA

fathom hull
#

maybe it works

rapid merlin
#

I think I would fit SOC lmao but yeah whatever

#

I'm 0x1 now yay

#

I'm rank 1 now

fathom hull
# true dirge is that wat i need to do

because when u join a network room automatically it generates a certificate for u to work on that network and if u leave the room the thing on the access page disappears and ye u got it ...

sinful moon
#

Incident Response is front line of major beaches, my friend makes good money being an Incident Response Manager. Itโ€™s not a bad gig, but high pressure

fathom hull
#

i can imagine

sinful moon
#

Iโ€™ll be back, gotta freshen up

chilly veldt
#

Did someone say IR

fathom hull
#

i dont get it

#

whats the deal with blue team waaa

#

i guess i really like red team stuff lol

chilly veldt
#

It's amazing

#

Blue team is amazing

fathom hull
#

explain explain

crude stump
#

The reason is because there are more blue team jobs then red team. As in variety

fathom hull
#

thats a good explanation miss bella

crude stump
#

Whatโ€™s you for

chilly veldt
fathom hull
#

so it would be more into packet analysis and stuff right

true dirge
#

ah yes career pathways

#

(im still in uni)

fathom hull
#

almost finished with sec+ and offensive sec

#

ill do red team as well

chilly veldt
fathom hull
#

i think i could finish sec+ and offsec next month

fathom hull
chilly veldt
fathom hull
chilly veldt
#

Cool!

fathom hull
#

i try to learn as much as i can

#

always with good books and now with thm as well

crude stump
#

Wouldnโ€™t setting up firewalls,ips/ids, antivirus etc also be apart of it

chilly veldt
fathom hull
#

for a red teamer

#

no joke haha

eager skiff
#

guys how do i find a flag from a txt document

chilly veldt
#

Search

eager skiff
fathom hull
#

search again

eager skiff
#

already searched

fathom hull
#

no u have to search again

crude stump
#

Double search

fathom hull
#

just to make sure xd

eager skiff
#

where should i search then

wooden totem
eager skiff
#

found root

fathom hull
crude stump
fathom hull
#

lol

wooden totem
#

would the find command work?

crude stump
fathom hull
eager skiff
fathom hull
#

those protect a whole network

#

i mean like

crude stump
fathom hull
#

u get blocked by one host then its done

eager skiff
crude stump
#

Oh

fathom hull
#

some of those next gen firewalls are using AI and machine learning

#

so u do something that triggers and its done xd

wooden totem
#

It still does the same no? Look for suspicious activity

fathom hull
#

yes

#

but more efficient in general

crude stump
#

Yes but itโ€™s automated

#

Well arenโ€™t they all automated

wooden totem
#

firewall is automated protection

#

ish

crude stump
#

Well some log and you gotta manually look through it

fathom hull
#

it also depends on how the firewall is configured as well

#

like u could have a badass firewall in the network but if u forget to configure right than makes no sense

#

i think one of the most efficient next gen firewalls in the market now days is azure firewall

#

but the cost its really expensive, a good idea for enterprises

wooden totem
#

stupid question, can you run python script for web scraping on android phone?

sinful moon
#

Don't confuse traditional next gen firewalls for web application firewalls and broader concepts. These are separate devices/software for specific purposes. They're not generally one size fits all

sinful moon
sinful moon
fathom hull
#

therefore i was talking about cloud based firewalls :)

#

and i named one as example

sinful moon
#

Often for security it's a bit better to go something a bit more vendor netural

fathom hull
#

something like hardware based firewalls on a internal network

#

those are more common

sinful moon
#

Really there is no one silver bullet, you often have to combine security frameworks to get the best coverage. So yes sometimes that means physical or virtual next gen firewalls, WAFs to cover cloud resources and more

#

Something like Azure Firewall is more about vendor lock in. Great if you're a pretty much exclusively Microsoft org but doesn't cover all use cases or scenerios

fathom hull
#

those companies or orgs that take security seriouly they would implement all this

#

but most part of the networks they protect specific servers or resourcers

sinful moon
#

Heck we're a small managed service provider and even then there's no one easy answer, we've had to build out our security stack as threats evolve

But also good to mention that you can't just purchase your way into security. Gotta configure your foundations and make sure everything works together

fathom hull
#

true

sinful moon
#

Could have the most well configured firewall in the world, but it could let something through to your completely unsecured Active Directory setup. So even just that, secure your stuff via Group Policy is a fundimental which can be easily missed

fathom hull
#

i was just about to mention that

#

its not usual to meet really good and consistent security solutions on internal networks

#

they always forget about something

#

could be an unupdated patch, poor password, backups etc

#

that could lead to something bigger

eager skiff
#

how do i see what files are running on the box

sinful moon
#

Mhmm, or even a single zero day in something you thought was safe can be exploited in hours after PoC is released

fathom hull
sinful moon
#

Totally not thinking of a very specific instance lol

fathom hull
#

i gotcha

sinful moon
#

I warned them five times with in three days of the danger ๐Ÿ™ƒ

fathom hull
#

lol

#

the attackers can take over the network in one day

#

sometimes even hours it really depends

sinful moon
#

At least thanks to my reporting, they instantly knew something was wrong and the impacted machine was shut down before it lead to a catastrophic breach

fathom hull
#

thats good

#

well good for u and the company

#

not for them xd

sinful moon
#

Mhmm, even just reporting on things can be a major live saver

fathom hull
#

those incidents can be found out fast or usually not?

eager skiff
#

How do i find out what my machine is vournable to?

#

please answer some1

sinful moon
#

Not always, sometimes threat actors can lurk in the network for quite some time, exfiltrading data and getting ready before they strike

dire crane
fathom hull
sinful moon
#

brb

sinful moon
# fathom hull have u analysed some APT stuff?

Realistically not that I know of, but it's hard to attribute given I'm one person with limited time. I have analyzed Lockbit and QBot ransomware samples however and cleaned up after their loaders after our EDR tooling prevented the second stage.

#

Most attempts don't even get that far, but yeah those are industry known names for a reason

gray sonnet
#

Morning THM ๐Ÿ‘‹

dire crane
sinful moon
#

G'morning!

gray sonnet
#

how's everyone doing?

sinful moon
#

Pretty alright, long day of work today, punctuated with Linux xz backdoor fun

wooden totem
#

How is Updog a thing

sinful moon
#

It's lovely

#

And sorry I won't say it because lol, I use it regularly

wooden totem
#

I legit thought it was a joke when I saw the link

#

"What's updog?"

dire crane
#

haha

sinful moon
#

Hah, yeah just better alternative to built in Python http server. Specifically named to make people ask that c: