#general
1 messages Ā· Page 104 of 1
#site-support might help
and that is by fishing
and if you pick the right tile it is around 50% chance to get it
feesh
is that delugeRPG???
And plus it takes a lil bit for the actual site support to answer back
nah that is pokemon emerald... the image is from bulbapedia
dunno how they got the picture
thank u so much
Gave +1 Rep to @crude stump (current: #155 - 41)
aww, I had a lot of fun in deluge RPG lol
REAL fun game for a browser based game
for fun browser based games shadow can't go wrong with dragonfable
yeee
Which certifications should I aim after getting Security+?
oscp???
$1700 š
yeah don't pay out of pocket and get your employeer to pay for it
What if you don't have a job yet
are you old enough to be able to have a job??
Not sure if only Security+ would allow me to get a job
I am turning 19 this year, so yes
try and get a job in some general IT job then
assuming you are not studying instead of job searching
I tried but most of them requires me to be at college at least
i.e like being in uni
Could try gov contract jobs as sec+ is a good starter cert for that
if ur in the us
at least
I am in brazil as of now
ahhh
Where does one find this? lol
Depending on the gov job I couldn't get it since I'm not a citizen anyway
Find the job or the cert standards?
gov contract jobs
uhm i new to this where should i start
I found one on indeed
Which certification should I get to get an entry job then?
Or looking up gov contractors and apply directly
I mean generally speaking ofc
network+ and security+ is what shadow would say... as pentesting is not really entry level
Network+ hm, alright
Could also get CCNA instead of Net+
though kind reminder that shadow has 0 certs yet
Isn't that free?
Nah you have to pay for the test but you can find a course free online. I can find the one I was using
another resource https://www.clearancejobs.com/q-government-contractor
I see, if it's cheaper than Net+ it may be worth it then
It's a good mix of learning/doing the technical stuff, and then writing reports about what you've done š get good at record keeping
Thank you, I'll save that
Gave +1 Rep to @teal nexus (current: #2046 - 1)
CCNA is considered more prestigious over net+ at least in my eyes
Thanks!
Gave +1 Rep to @thorny walrus (current: #2046 - 1)
Did Ryan reply yet too?
I was hoping you actually just said no lol hahah
Also have no certs
Should probably do some at some point
also good to see you again robert
And you āŗļø
I just got my SEC+ in March working towards AWS right now along with THM SOC level 1
Taking a break before doing some more painting
miniatures or sticking bananas to walls?
Dr. Pepper, Gilled Teriyaki, and Chao Mein is my favorite learning combo.
Does anyone here work LE?
Kind of curious to know if its possible to work in cyber crimes without having to start patrol and move to detective
and such
Understandably works different for each agency ofc
What's LE?
law enforcement
can anyone tell me how to fix terminal in not openining in ubuntu
I shoulda put that in #cyber-and-careers š¤
seen job postings for data forensics on hdd and usbs and stuff here
so maybe you can get in there without the entire stack of patrol and detective
then again it will mostly be report writing
Testing Teams with @gray sonnet since I have an interview I need to setup for.
Vain can't hear me, no matter edge, chrome, Teams app or phone... trying to figure out if it's my end.
This mfer had wrong speaker settings on in Teams....
fluff clan
more like fluffed up clan
Yeah, I saw
Dunno
Imma go to bed now, good night
Night
It really depends on the role
š§

FBI you're going to have to go to FLETC, unless you're filling a contrator role or otherwise on the backend. State PD will typically contract or have their own labs to do forensics work. Target actually does a lot of Forensics for PDs around the country.
what's FLETC?
Federal Agent Bootcamp
Federal Law Enforcement Training Course/Center
Every agency that has a law enforcement arm goes there, off the top of my head.
sounds fun
Thank you :)
Gave +1 Rep to @clear jackal (current: #20 - 386)
From what I understand, only their police units go to FLETC but a special agent role is at Quantico
I.E the facility police officers
Kinda interesting
that is meeping terrifying
just imagine a human ripping of their skin and using it as nunchucks like weapon
shadow would run away screamin
Jots down notes
Specifically for FBI? Yes, Special Agents do not go to FLETC. They do train in the same location, just different buildings and courses
Yeah sorry I replied to the wrong message
From my understanding, FLETC is both the name of the place and a course
It appears to be multiple locations as well
People actually doing that probably have a better way to distinguish
Thank you for your insight
So if I study for the CCNA and can explain each OSI layer, I am advanced?


Bruh - Please Do Not Throw Sausage Pizza Away
Sardine pizza
People Don't Need Those Silly Packets Anyway
š
But OSI is simple
No way
Btw is the CompTIA Pentest+ path enough for the real cert?
If I was working, I would throw 100$ to THM to also make a Security+ path
I'm still not under 5000 yet.. yall need to try harder. š
Under 5000?!?!?!
I left my jaw under my pillow and the tooth fairy gave me a dodge charger
over.. rather. lol
I guess I see it as under.. because lower number is higher rank...
Me: "I wanna go to sleep early today"
Also me: ends up in a 2 hour long phonecall
can bella eat foods and drinks now???
Have been able to for the last couple of hours
your name is like Arab accent
Dont you know what his ABT stands for
Ok
All People Seem To Need Data Processing.
Thats what I learned
I prefer Ms. Clean

š¤
Ahem, Scrub Daddy
Scrubs real good
is scrub daddy related to @sick lance
What going on
it's his daddy
I agree with that one
No, we definitely love him as a fellow community member 
Btw I generated some images of reverse gender Mr. Clean using Copilot
Wanna check them out?
Ever just sit around in a public place and just listen to everyoneās conversations? Or like at a restaurant
Yeah, sometimes
I just wonder what people talk about really, when I have talked about so many things with so many people
So I wonder if we have some "Default conversations" that we always do if there is nothing specific to talk about
dome some more rooms dude and get yourself to 0x9
DO IT
JUST DOIT
Last week I overheard a convo and a woman was telling all about their children and where they are in their careers and living and military o_o
Today was a different lady who got engaged. Bf popped the question after she revealed she was pregnant. Then asked if he asked only cause she was pregnant and he said no cause if that were the case he would have married that first person he had a child with. And her friends were like āawww thatās so sweet!!ā
Guess we are all a little nosy at one point or another... Not necessary cause we have nothing interesting going on or we are bad people
Yeah peopleās lives are interesting
attackbox is safe from the xz backdoor right?
I personally have no idea
But we shouldn't forget that the main focus should be ours
Very true
You know honestly, sometimes I think that if there was a God, his life would have been interesting
Getting to know so many personal history books of people
considering the attackbox does not have an outbound internet connection unless you are a subscriber yes
I was at work and had just seen it in my tldr email thats why I asked
I guess I see chatter like this a possible security concern š¤
Which means that when we are connected we are in danger or what? Or that only people inside the network are a danger?
still good mention
they said stable releases without the xl utils package are fine
Btw do you work in the cybersec industry?
well compromising your machine over vnc or ssh if you connect to the attackbox that way could very theoretically be possible
I donāt even know anymore 
I see you're an 0xgod, while ranks might not necessarily display real skill, I'm just curious
the others who connect directly to the tryhackme vpn are more likely as those ip:s are not randomnised each time
But from browser?
feath3rz is a defcon darknet winner
In the browser http is used right?
well things I do have cyber security attached but I donāt feel I have a typical role
And https?
OH WAIT THE BIG EVENT DEFCON?
Yah I won a competition
the attackbox in your browser uses a vnc client in the browser... so first they gotta exploit that and then get through browser things and finally reach your host
Damn
not impossible but very unlikely
Well then I can for sure learn something from you, one way or another
So how did you get into Cybersecurity at all?
Early age, late age?
What got you in?
@sand trench I might not go defcon this year. Personal good reasons. But Iāve been asked about making a challenge. I have something in mind
if you don't have xz utils installed it won't work though right, this article I am reading said it is included in unstable and beta versions of fedora, debian, kali and arch.
"provided you havent installed it
from what it looks like it was only exploiting rpm and deb tarballs
Defcon actually. I heard there were hard mind bending puzzles and I like challenging myself. I didnāt know anything about cybersecurity.
They tricked me and I learned cybersecurity/hacking as a side effect
yeah should be fine
can you check the version of xz installed on the attackbox??? if not... shadow can do that now
So you're telling me, you just started reading a lot to solve certain puzzles and challenges and that's pretty much it?
That's how you won and did it?
will need to load it
Well ain't that a good mindset
same
it makes it so the attacker would need to be connected to the tryhackme vpn or network but yeah
wonders if feath3rz also considers shadow as their equal in hacker space
This means that he would be track able as he would leave some traces?
well kinda
I see you are also an 0xGod
and a tryhackme room tester
I knew cryptography and ciphers. Thatās basically the start. Like cryptograms and I studied other ways of decryption⦠then I learned through challenges like binary and other base counting, some history, soldering I knew since I was little⦠coding I learned after high school. But web challenges or hiding things in games, I dunno.. every year I went I kept learning something new. It was a hobby. Then I got hit with pandemic layoffs⦠and had a terrible coworker.. I decided to leap into turning hobby into a career
Can absolutely anyone write any type of a room for tryhackme?
Oh, you are a math God
I see... YEAH
Enough said
if it provides educational value and gets approved im guessing
I suck at math
xz-utils/bionic-updates,bionic-security,now 5.2.2-1.3ubuntu0.1 amd64 [installed]
XZ-format compression utilities
attackbox does not look vulnerable
to old of an version
I like patterns and sequences, series⦠I see them. Might be on spectrumā¦. I count as I walk. I calculate random things in my head
what version was compromised
I eat things in order :3
I havent seen it mentioned in what I was reading yet
5.6.0 and 5.6.1
nvm I have found the jfrog website
I deconstruct lasagna 𤣠eat it by noodles, sauce and meat, then the cheese.
Well that's definitely a specific personality trait if you actually do it
This. Also has to be tarball⦠and other things but just assume these versions are bad
yes basically..... you just gotta have an idea and wanna try
Imma go buy me a slice o pizza at 2 am
they have a table of all versions
the jfrog read is very helpful since it captured the code snips
The original report is also helpful. But jfrog easier to visualize
yeah its very detailed
I think Debian stable hits at 5.2.#### something. So only in the non-stable versions. Same with redhat
I could be wrong.. version might change based on their own version like Ubuntu version but yeah.. not on any stable release I believe
shadows linux install had 5.6.0 and 5.6.1 installed at some points
but it is an arch based distro so as far as it looks currently it was not really vulnerable

shaddooooww when defcon
When you go we can hide in separate hotel rooms from the world lol
hopyfully soonish now that shadow cut out one of the biggest monitary cost to themselves
\o/
just gotta fix shadows mental health problems and feel safe to travel
Iām convinced mental health problems arent fixed.. theyāre just different levels of involvement
and knowing about it can lead to solutions to keep life better than not knowing and not trying ā¤ļø
yeah
would love to have some close friend travel with shadow
but probably hard to get new friends or convince current one to join shadow
After the pandemic shut down⦠some things are very intense. I need my alone time :3
yeah shadow is paranoid and have troubles with trust... and the idea travelling alone internationally make shadow kinda go shudders in fear
For me, the hotel staff at the strip casinos seem very professional and very serious. They will not joke around.
I appreciate that :3 cause I definitely cannot trust the patrons
Anyone heard of cyberwarfare labs? Are they a credible company to get some of their certs?
don't recognise it revan
Thank you shadow.
Yah I donāt recognize the name š¤
Thank you then I will avoid buying courses from them lol
Research and look into it. Certs worth focusing on usually are ones people list/request for jobs.
linkedin your personal resource to check which certs are worth anything
I have been trying to research them but only found a reddit about them. Also they have testimonials but any site can forge those lol
There are many new organizations creating courses or certs (certificates or certifications) but what matters most is hiring.. thatās kinda what the paper is used for.
For sure! Thank you.
Doesnāt mean theyāre bad.. but new places need time for recognition. Just be aware of it :3
I got buch of homework
ah yes homework
Hate it
the thingy shadow completely sucked at doing for the last 7 years of school
For real
still got good grades
For real š§
somehow shadow averaged a C as their grade without doing basically any homework
Thank you for your input.
Gave +1 Rep to @outer rivet (current: #1354 - 2)
Jason got study nothing and still nailed CS exam.
Tomato
my biggest flex in cybersec is that I was frnd with.Nokia2mon2
Yes
what is Pegasus?
Hey anyone else getting the wordlist.txt does not exist when using the gobuster command?
Make sure the path points to an actual wordlist on your machine?
feel so stupid for thinking that a service wasn't vulnerable while it was
Pain
malware suit from middle east targetting iphones mostly.... was sold to be used by anyone to hack iphones of anyone they wanted to hack
Spent hours on another service
lead to a lot of problems
then looked at notes again and realized outdated version
Not anyone.
So many clowns
yeah is it not hilarious??
@sick lance what was the rev shell quick thing u recommended before
Iām scared
fair
no he had a client thingy
Fair
Nokia2mon2. if you google that alias you shall know who is active user of it.
halloween is early when clowns play fools on april fools day
a handler i believe
that is the listerner part of the rev shell generator
this is him, who used it every single day.
Berserk fan?
Darn this phone app I donāt think I can put clown
Ig it ended.
cool RoadMap
ok tysm!
meep moop time for shadows sleep sloops to the beep boops
Other than hackthissite.org, are there any other websites that openly invite people to hack them?
Depending on your definition, there's https://tryhackme.com

Heard only good things about them.
Same
I meant like, ones where they openly challenge people to disrupt services.
I'd rather not get banned from the platform teaching me. š
I think THM has a bugbounty?
Just, err, verify that before you wave a report around.
Itās not really a website like your thinking of but thereās a game called pwn adventure thatās made vulnerable so you can hack it
š¤
Pwny island? š
I'll check this out. Looks funny.
Yes
While they are not brand new, they certainly are not as established as SANS or CompTIA, etc.
Registry Expiration: 2025-04-26 17:37:18 UTC
Updated: 2024-03-18 08:09:50 UTC
Created: 2020-04-26 17:37:18 UTC
Can confirm and they pay quickly š
Koth anyone?
hi all
ello
hi
Sup sup
i think this means surprise
whats a average salary looking like for cyber security professionals
Depends on area, experience, and need.
ball park
Ball park for a senior pen tester in silicone valley, or ballpark for a tier one soc analyst in Abuja?
yeah i wanna hack tiktok
Ah
what!
joke
You sure about that? Because hacking tiktok would still be illegal.....
im joking
We don't really joke about illegal things here.
ok don't worry
why?
How do I get access to write in koth?
everyday there is people asking to hack stuff here it's so funny
what else do yall do š
we're doing cyber security
you'll understand if you go on the site and look around buddy
you might like it
which involves hacking
so whats wrong with asking how to hack n shi
o_o
I'm giving up about this kid
ok
you guys know if there is a way to use grep and he doesn't care about capital letters
thanks
Gave +1 Rep to @slender scaffold (current: #88 - 71)
@leaden mountain
am I crazy or did I saw a very not nice message towards me

i said something about you
too bad I might have missed it buddy
you found a way to become a great hacker btw ?
please don't hack my phone lil (man)

i haven't been active here in a minute
i'm sure dolphin is lurking
hi dolphin
looks like juun is around
also muiri feather and bella apparently
i know these names
gm
man y'all are quiet tn
managed to find and report an exploit in a discord bot. No hacking required, just a game where I manipulated the / command. Was pretty easy to find
if it's anything notable may as well notify the maintainer
sure they'd appreciate the note
Already did, they disabled all / commands until it gets fixed.
awesome to hear actually
i normally expect inaction from at least one side when it comes to discord bots nowadays š outside of the major ones at least
hola
None of vpnbook is working. Is there anyone who has the same problem?
@deft crest why dm and friendreq? i dont even know you 
Yo
Poor guy is lonely and just wants a friend to talk to š
thats why walls
Same here
Morning
sorry i think this enhance knowladge with teammates
sorry guys
i am not poor
sorry bro
i voilated your rulles
It's ok, you need a team?
Are you any good? Or are you new? If you say you've done CTFs before, I will ask which one(s) then provide a test for you to complete
i am new but i played ctf two times
You can DM me
Good morning
Hi Guys, I just got my admit for MS Cybersecurity from USC but I'm having second thought now. Do you think its worth it?
Good morning
Why do you have second thoughts? Any certification is good and a MS degree is a cert is in itself
The curriculum is good but if I do 2-3 certification, I'll have the same knowledge.
is this a remote Master's or are you going to attend to the classes physically
Eh masters can overqualify you
physically
Man the certification programs are good but for myself the class atmosphere and having a bunch of colleagues working with similar problems is a good motivator
idk, if I were you I'd go to the MS degree - wish we had those and I was a tad bit younger š
I want to, that's why I applied in the first place. But now idk why I'm having these thought
all change is scary
mhm - as a personal advice, go to your school stroll around and see how it feels internally š
cert programs are always out there - you can always get them. but idk about your MS admission procedures but it is not just "pay monies and go"
OOT - nothing is better than the first cup of coffee in the morning
Not even your first breath? Because without that you can't have that first cup
If you stop subscription, do you still keep the site benefits for the end of the month/year you paid for?
Guys hows hackthebox academy when compared to tryhackme.
THM is faster to get you going, HTB is more theory heavy
A bit less beginner friendly
Hello! Does anybody know a way to have the the different intruder attack types from Burp (i.e battering ram etc.) in OWASP Zap?
I believe that there must be a script for this to convert payload files somewhere. š
Only by a bit?
a lot of reading
Peronally i like it more
Its my go to material rn for learning
Like which one more?
Academy
Its more challenging and reading heavy but that gives you a way deeper understanding which is why i love it
But! Because it is more challenging and reading heavy you may be demotivated and get bored. Also their cube system is annoying for me.
Internet connected
Multiple Internet connections are configured
Wireless radio (2.4GHz, 802.11b/g/n/ax) is turned off
Wireless radio (5GHz, 802.11a/n/ac/ax (5GHz)) is turned off
what does it mean?
why both of them are off i thought one has to be on
Where are you seeing this and how do you connect to the internet, with eth. cable or not?
That looks like to be WiFi and not cable
That is the weird thing Kyooty, because if both are turned off then how...
You keep the benefits until your expiry date.
Legs are absolutely done out today
Never skip legday š
Depends on if I can walk by next leg day š
tru dat
I have got into the weird āhabitā of squashing my sandwiches. Just tastes better
mine will be the same this weekend, I plan on hitting squat PR
Never had a full leg dayā¦just add one or two exercises at the end of a workout
I have 1-2 full leg days a week
Hmm understandable
I also only hit legs, chest/abs, and back
I try to stick to a workout plan but usually end up doing a mixture of exercises
damnnnnnn I thought hitting legs is a cannon event
I am also a girl sooo š«¢
I see.
Yeah it is a commun joke in the body building community. Everyone says they don't hit legs but they all do
xD
yeah, I know, and it's a meme that girls only hit legs
Unpopular opinion, the meme is real
I never saw a girl at my local gym hit upper body
agree
They do but not as much as lower body
I hit back yesterday, only did 1.5 hours though
it was 4 different exercises 
4 exercices 1.5 hours? What do you do between sets?
well if you got to failure it is good
Depends on how many days u go i think
maybe 7x4?
45 mins is the standard for everyday i think
well don't relax 2 much other wise you'd losing GAINS
1.5 hours sounds about right for strength training
4 exercises, 5 sets, 4-5 minute break between sets.
5 sets x 5 minutes = 25 minutes per exercise, not including the time taken to do the set
25 minutes x 4 exercises = 100 minutes (1 hour 40 minutes)
Nah it's a standard for a human body i mean with shower and everything might go to an hour
I relax 3-5 minutes between sets which is the proper recovery time before the muscles are ready for another set
Tbh 5minuted per 15reps is wild
My strength and conditioning classes are around 70-95 min(s), not including the 10 minute warm up.
well that depends on the muscle you hitting.
and which type of set you working with.
super set/normal set.
I guess we need to open a gym call it the Dojo
And invite only cyber sec people in ky
It
Or Vim so nobody can escape, and just workout 24/7.
oh god here's me doing 5bx with a mangled foot š
I break for 4-5 minutes every set. I do 5 reps.
My workout takes long but a lot of people donāt realise how important rest between sets is
Just because you can do the next set doesnāt mean you should š
I well be first one joining
You are a sick puppy but that made me LOL
my warmup sets are 15-20 reps š
and then I hit 10-15 reps
I'm looking for fog buster wipes for my glasses.
With big weight? Or light weight?
I keep getting foggy glasses halfway the workout and it's annoying.
60-90% weight
I don't wear them at rhe gym i go berserk mode don't want to recognize or talk to people haha
You must be absolutely steaming, Jesus.
What you can try is dish soap
i have a job interview on monday !!!!
Good luck!
Goood luck!!!
Congratz & good luck!
I do strength conditioning work, not* big muscle workouts
yooo, good luck
Soap may damage any coatings on the lenses
Uh, in the winter everyone has their under armour, base layers, two t shirts.
I run around in shorts and either a vest/no t-shirt...
For 5 sets??
Can't beat burpees in the snow.
Strong
sent the message too fast š
Russian way

Hand soap, yes. Most dish soap is usually fine. Itās a very small amount, just a drop
I have an obsessive amount of lens wipes so I usually just stick to those š
Thinking of getting a surgery for the eyes
Especially after last night spending it with immunity debugger
Harder to correct astigmatism with lasers
I feel like this SOP I am writing is soooo useless
like it's a task my manager just gave me because of hell
But a surgery i heard might make your eyes very dry and itchy
it's an SOP about our info screens
You have to apply solution to your eyes every day for a few months while they heal
like why do we need an SOP for info screens
Youāll be fine afterwards
Probably better than trying to get vagrant to boot a hyperv VM from wsl
He just wants to see you work?
that sounds more fun than paper writing
I've seen a tiktok where people who had the surgery said they even lose some eye sight later with time
It keeps complaining the virtual drive is already in use
just make a new one
Which is a lie
Thereās your problem, TikTok
I did make a new one
then automate a new one
And yes, if you are getting Laser Eye surgery, itās not permanent
Ok reboot seems to have worked
My mother gets her eyes done after some time.
I am looking at a more permanent form of surgery
More that it'll correct at a point in time, and future deformations may wreck that
If you find a permanent way let me know
There are permanent methods, I would recommend speaking to your optician first though
replace eyeballs with better ones
Uh, can you remember when ? I have so much, lol
Where do u get them balls from?
Sheep
organ donors
:p
The eyeball shop.
I heard Eyeball paul runs it.
Welcome back to unethical life hacks
Consensual hopefully
Guys you're crazy š
I'll stick to my glasses then
Body is a machine, it is only reasonable to switch parts
adeptus mechanicus intensifies
Praise the machine spirit
It's the ship of Theseus all over again
And the omnissiah too I guess
The Emperor protects, but he protects me better with a pair of Kiroshi eye optics
and a monomolecular blade but a man can only dream
š
Wrong game mate
Well I was assuming the Imperium
yeah even within the Imperium
Nah, there's no understanding anymore
Tech is a religion so... idk 30k is more closer to a sci-fi setting - warp notwithstanding
The engineers are mere operators, they don't know how to create new tech
enginseers š
Close enough
"let's burn the incense of turning on the computer so it boots up properly"
And also bash it a few times to be safe
also I am shocked to see they had servitors even in 30k times
30k was the beginning of the fall
ilke it fits like a glove to the grimdark atmosphere of 40k but...
sheesh bro
I have started rereading heresy
64 books and Siege of Terra is a mountain I am trying to re-climb
In any case, the Orks are my boyz
RED GOES FASTA
ORKS NEVER LOSE
I can never relate/play orks but they put on a good show, not gonna lie
fun to watch in tabletop and in computer strategy games
sometimes I like working in IT support, cause you see random stuff coming to your desk like this 
it broke off apparently
eww
so it is both a bomb and a charger
Apparently
Poor thing
And you can use it to cook outdoors too
You know like a survivalist kit
Battery'll drain too fast
No kit will survive me in a wildlands setting - I am urbanized too much haha
They're fun to play, but I like zerg tactics
Tyranids is your fun then
tbh I can never get used to their consume hurrdurr thing
Orks are more relatable than a bunch of insects
Tyranids are a bit one-dimensional
well they exist to consume everything so...
Orks have weirdboyz
But considering even Necrons got talking characters who knows what GW has in store for them
Trazyn is fun
its dialogues with the chronomancer are just hilarious
Orks have Thraka
Who may or may not had a bromance with Yarrick
mayherestinpeace
Pretty sure Gork and Mork have a thing š
and Slaanesh has many things
what do these words mean :O
I am learning Cybersecurity and Forensics. Preparing myself for blue team.
Any suggestions for new learner? I will be grateful to get insight and help from you geniuses.
Always take note of everything you do. In any form fit for you.
gm
Guy how many paths should I complete in Tryhackme to be able to start pwning hackthebox boxes
Research is of upmost importance even for seemingly simple stuff.
I'd say most of them. Even easy boxes feel medium.
morning inix
Right now Ethical Hacking module is going on. nmap is done.. but it's so huge and vast.. I keep all the notes.. but still I find it little difficult.. nmap and wireshark
Near to past level [hacker] š feel good
Gm Vedrfolnia
Two completly different levels of learning.
The answer could be one, could be none
Depends on your knowledge retention and notes taking skill.
I like the package name of the xz patch.
5.6.1+really5.4.5-1
Hello guys I got my batch.. on networking. But the only thing is that it didn't take me to the next module which is Linux. It took me directly to attack machine how to set it up
How to set what up?
Attack machine
You just hit the Start Attackbox
It's already set up, you just need to launch it.
It didn't take me to the next room like Linux fundamental
Because that's the next module I suppose to go to
Then you can go to it manually?
Okay thank you
wow the sql injection room is just so much fun
i very much disliked doing blind based sqli manually at the time, but very worthy
that whole module path is really fun tho
yea the idea of getting ifnormation from database using weird comments and syntax, i love it
Warhammer 40k (a science fiction setting) related things mate, Gods, civilizations and so on š
I've finished the beginners modules, and hacked my first box (morty). Would you advise me to continue with the JR penetration tester or SOC level 1 module?
should've expected that 
Do you make them and color them as well?
@rapid merlin too expensive and skilful for my taste
I am only in the novels/crpg/strategy game phase of 40k
I struggle making a model plane, let alone paint an itty bitty marine
I hated painting them that's why I never got in to it.
I used to buy armies etc that were already painted, or I'd pay someone to do it for me.
In the end, I just stopped.
hmm
tbh the wargaming aspect never interested me
I prefer painting the house, easier
is there any good cheatsheet available on internet for new learners for nmap and nc ?? Please share it with me. ^^


Thanks Man
@sick lance wdym by answer could be one. Could be none?
You could do all the paths, take no notes and forget everything.
My main point is, everybody is different.
People could do one path and have enough knowledge and skills to complete some labs in another platform, or they could do all paths then move on.
Google pixel users?
Babe wake up, new Google Pixel zero-days just dropped: š https://source.android.com/docs/security/bulletin/pixel/2024-04-01
- CVE-2024-29745 (information disclosure, high severity)
- CVE-2024-29748 (elevation of privilege, high severity)
Note: There are indications that the following may be under limited, targeted exploitation.
EDIT: Rep...
I studied and forgot again
That is the human condition
G'd morning wonderful server 
Hi!
ello
Hello fast jack and skdy
how u doin?
Surviving the workday
Good, just ate, did the dishes and put the laundry
Bon appetite
i need to eat soon been staring at this screen too long
Well gojo-Jun...
me too @jagged yarrow
natures candy
I'm waiting for my black tea
trying to get my work out the way first just boring active directory group policy objects and security measures
Fun all around
That work or for studying?
I plan to do the Ad basics room to find out more about AD
just studying im going on a deep dive into Active directory attacks but need to make sure my foundations are solid
So basically from AD you configure default permissions and what can be seen and not?
On many windows machines from one
no im just doing theory basedbut theres a lab for administration at the end
so im dead
spoiler alert*
?
guess i was just talking out my arse
Is there anything I can help with š
Nope work
Help me
hey doing good you?
Is there a friendlier way? what do you need help with?
Go to room help
everything is fine so far, thank you
Gave +1 Rep to @clever shard (current: #1355 - 2)
Someone will help you when they have the time, youāll have to be patient until someone is able to help
So it seems AT&T is getting sued by the same people that sued google for the incognito issues https://www.bleepingcomputer.com/news/security/atandt-faces-lawsuits-over-data-breach-affecting-73-million-customers/
at that point, just run
Iām like I swear Iām not stealing I promise lol
Itās because itās in a student area so their security measures are working overtime
i'm wondering if they tried to ping SKDY
i might bring a pocket full of barcodes just to see the horror on their face when they ask me to remove my belongings
since they were actively in conversation
Yup, just checking whether it was an accident or if I can support them š
Carry around one of those endless hanker chiefs with you

āEmpty your pocketsā are you sure
quicksave in progress
I've bought and used these before lol
aahh my intestines, not again!
i wonder if we could incorperate something like that into social engineering
wat
do yourself a favour, delete your message
@mossy river
Iām going to contact the meeting holder and report you š
Itās incredibly unethical and it will teach you not to do it in future
:hammer: vihannsucks#0 has been banned.
Do organisations required by law to give subsidy for students to access their services?
Depends on your country
It happens, people see āhackā and completely neglect the chance that there wouldnāt be a āhackerā who would target them instead of their request.
People donāt actually realise how dangerous it is to ask strangers on the internet requests that break the law. If they already disregard the laws, whatās saying theyāre going to be warm and welcoming?
FFR, itās best to just ping a moderator. Although we do track all deleted messages it can interfere with moderatorās ability to moderate
yeah but still weird af to ask someone online "Hey can you raid X with me?"
mb SeƱor Jabba :) ngl, I imagined them to be a kid so tried to steer them away from harm
Mhm, moderators need to be aware of anything like this so we can keep internal notes to inform other moderators š
Ofc ofc 
hey can you raid a clan with me in clash of clans?
What did I miss
Iām always so late to the party
anyone up here ? help me with the ovpn pls
heh
#site-support will be best for you
Naaah let's raid the british shores like real vikings
nvm its my linux is not connected to internet now have to figure out whats wrong
lmao
just dont raid my basement pls
it happens
We're coming for your data
that episode, I didn't even realize what was going on when I was young lol
oh yeah u can take the data np but dont touch the "THINGS" in my basement
Now you got my attention, what things are we talking about?
š
i call them 2.5 million gigabyte storer
Imagine a viking raids your house and you fight him for a usb drive that has your private key
Crazy
do you think usb drives can reproduce ?
In china they do no?
valid point +respect
no, they grow on trees
@rapid merlin ah help me with my vm idk why my kali linux is not connecting to internet yestrday by mistake i ended a service of vmware from task manager now i cant figure it out which process that was
the one i have they can store 2.5 million gb's + they can reproduce too + after 10yrs they will start to speak too
just reinstall vmware
i will kill u š
+1
fine. no more help for you
pls seriously help me to connect to internet
no no sowyyyy
seriously. reinstall vmware. if you messed with vmware services, this will reset them
m not sure about that but even if i reinstall vmware u know how much setup i have to do all again ? or wait will my machines will be as they r ?
machines will be unaffected
oh ok thanks
Gave +1 Rep to @wintry sluice (current: #155 - 41)
at most, you will need to tell vmware where they are stored
Rebooting may help
When in danger or in doubt, reboot the windows and... shout?
and flush dns
always flush dns
š
@wintry sluice which network adapter option is better bridge or nat ?
Probably nat
think Ive only ever used NAT
ohk
Hello! Can you please tell me if I can get rockyou.txt somewhere?
I want to go through a room that needs it, but not on the AttackBox, but on my device.
Bridge will link your vm to your home network
It's on the attackbox.
You can also use github
Or seclists
what OS is your vm?
miessler's seclists had it I guess
@sick lance hey tell me one thing why things work on attackbox but not on vmware ??
hi all
Google "Rockyou.txt"
You're boundless to get it
No idea your setup, I Use vmware and everything works flawlessly
define "why things work"?
I know its comes as part of kali, just compressed
the room i was trying to solve it worked flawlessly on attackbox but not on my vm when m doing everything ryt
Were you connected to the VPN inside the VM?
did you vpn your vm to thm network?
And not on the host
ofc
Second part is important
Debian, but using the kali repositories, and I'm using it as my main OS, not using a virtual machine.
(Sorry if I misunderstood the question)
what u mean by not on the host ?
Whatever VMware is on
That sounds like a bad idea
m using kali linux with the config file of thm using opvn to connect m getting msg on thm that m connected
It's strongly recommended you do not mix and match apt sources for debian
and still things dont work
ā ļø
That buffer overflow oscp prep room, made me blind
What are you trying to do that works on attack box and not on your Kali VM?
But why?
why my internet is not working in kali linux ? any help guys
Did you reboot your vm?
bufferoverflow is fun
Do you have bridge mode?
using nat
Are you connected to another different VPN?
Reboot vm, happened to me before
nope
ok lemme try
ffs whenever in this world i sit to do some work idk howwwwwwww the all problem related to IT stars happening with me
We all go through that my friend
Can I ask what to do if I want to use my device, but it is unlikely to work properly in a virtual machine (it is too weak)?
Huh?
m not going through it its going through me š
use a vm with parrotOS or kali
What do you mean, install ParrotOS on my device instead of Debian?
Okay, then I'll do that.
Thank you!
No, get virtualbox or vmware for your debian, set up parrot/kali and you can copy/paste rockyou from there
Did the reboot of the vm work?
sorry i was eating lemme check
wish I could eat right now ngl
nah its not working
come i will give u some food
no, it's too early
ate chickpeas and rice - do highly recommend š
much better than smoking + coffee-ing diet haaha
kali linux showing no wifi adapter found what to do
@rapid merlin its a linux issue not vm
hello, can someone help me with this question?
A security engineer is installing a WAF to protect the company's website from malicious web requests over SSL. Which of the following is needed to meet the objective?
a) reverse proxy b) a decryption certificate c) a split-tunnel VPN d) load-balanced servers
where is it from?
security+601 book
the answer should be in the book then
Don't you have coursework for this?
it is, but I'm not sure if it is correct
no
what does the book say?
why's that?
the WAF needs to decrypt the traffic in order to inspect it for malicious content or attacks, so it needs access to a decryption certificate
@chilly veldt any help ?
mine hasn't changed for a while now
it's a common issue
how
ifconfig eth0 up
oh ok
:(
how it got down i didnt did anything
yeah, they are still working on it
didnt update yet :(
ye ik xd
happens sometime during the boot
is it actually worth going for an ejpt?
no
the command didnt worked
do i have to reboot ?
is it a vm?
yes
ye try to reboot or restart the network service
what is the network settings on the vm?
nat
have you tried making a new vm?
@fathom hull ``` 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc fq_codel state DOWN group default qlen 1000
link/ether 00:0c:29:38:9f:61 brd ff:ff:ff:ff:ff:ff
š
any other certs you would recommend?? (im still a beginner 0xC on tryhackme and i have an A+ and a security+)
PJPT
u mena the kali linux ryt ?
That looks like Tilix š
that's not an answer to my question?
whats that
ye
The terminal you're using.
ah yes its terminator
u want me to make a new vm with all the setups scripts i have all again ryt š





