#general
1 messages Β· Page 123 of 1
could some posh english cambridge fella confirm this XD
can confirm, but not posh or from harvard lol
i'm going to go take a ride and find either a london fog or some french press. y'all have a great day
i believe i may have troubleshooted the openvpn thing for 20 minutes only to find out i was nmapping a non started machine i used last ctf...


yup, mistakes were made, welcome back to cybersec i guess XD
Seems right
hey emma π
welcome to troubleshooting actually, never discard anything without trying even the most "stupid thing" because probably on that one you didn't check that's the issue π
it takes a sec to check, but will save you a lot of time down the road π
yeah, exactly right, like how many times i got stuck on a box because i didnt scan all ports with -p-
all learning moments
Pro tip, start with the most stupid issue you can come up with
i may be blind and i need glasses?
For example
hahaha
That would be a PEBKAC
depends if you don't see anything you maybe blind, if it's blurry you may need glasses π π
Also never say "People can't be that stupid" because they will take it as a challenge π
shadow wants to buy games
shadow has no money to spend on games
shadow annoyed and sad
Maybe shadow should consider making her own games
tried that for a while
it was not really for shadow
Fair
I wouldn't like to a game dev anyway, I like playing them too much and making them will ruin the fun
Invalid should read the room
You know when you read the rules and clicked "I accept these rules"
I think you skipped over the rule about "No illegal or unethical activities"
You pressed the button stating that you had read the rules homie
Well Iβm sorry man
shadow wanna play noita but guess it is wait until the 19th to buy it
Great title The Shadow's game π
from your words i understand that u read terms and conditions in all websites and community am i right?
and then u click on accept button
to be honest shadow at least reads the privacy polices of things
and then use tos did not read
I don't understand
my english or my point?
Yes
Simplified; "text to long, didn't read"
Bruh I didnβt read the rules and made a mistake heβs a mod and pointed it out.Let it be 
Yes I always read the terms of service in all websites but I have anxiety induced obsessive compulsive disorder
For the record, we can see when you agree to the rules
you are rare person
How would we be here if we didn't...
How does one verify btw?
It's important to read legally binding contracts
Or does it allow you to text in general without agreeing to the rules?
@rapid merlin
People don't read rules because majority of servers have generic ones that look the same and aren't in a mood to read again (boring text)
Technically everyone who joined before the rules screen was added didn't agree to them
in shadows case they always read the rules... but due to poor memory tend to forget a few of them over time
Oh shit
your honor, I didn't read the contract because it was sooo boring. How was I supposed to to know it required me to do x


Correct, which is why when they break the rules and get into trouble, they should just accept it instead of putting up a defense.
Much respect to invalid for doing so. Most people take it wayy too far
I'm not going to ride on your back, if you just say that you were in the wrong, that's that, I'll leave it there
shadow hates when they are supposed to sign some contract and they put preasure on shadow signing it before shadow gets the time to read it all
x loves Sweden
Isn't that the idea of Ex Post Facto?
ex post facto???
Whatβs that
Isn't that retroactive application?
yep
I don't think so? Because the content of the contract are known prior to signature.
amnesty would be the oposite
Ex post facto, I think, would be x is legal but a law gets passed making it illegal. Everyone who did x while it was legal is now charged.
Wait, no
Wait, yes
Morning Doc π
peak rules verification
Those look AI generated lol

Of course you're reading them
Do you agree lol! πββοΈ
windows defender isnt that bad
Either way, those are unconstitutional. At least in a law format
windows defender is the best antivirus until you wanna do spot checks
I don't know that anyone has actually tried to challenge something like retroactive TOS or EULA contracts in a reasonable way
hmmm come to think of yeah don't know any cases of that
I have a story that happened to me a month ago. I downloaded a program from the Internet that I have been searching for for weeks. I donβt remember exactly what its format is. I think it is Bat or Exe. I tried to open it but it does not open. I deleted it and hours later I closed the computer. I opened the computer tomorrow and found it locked with a password. I had never set a password before, but then I learned it was from the program I downloaded
Fortunately, I have a USB drive that contains all the tools. I changed the password without opening it, I turned on the computer from the USB drive.
It means "from a thing done afterward" In law, it's a law that change thing retrospectively, it could be also after the fact, you can consider it the opposite of ipso facto that is literally "by the fact itself", which means by the effect of or direct consequence
You know, I opened the program, it does not open, I deleted it, there is no problem, as usual, and when I open the computer I find it locked, knowing that defender is running
Duplication
Weird that it didnt pop up the windows defender firewall "This program is not official or whatever"
printed =). It is on 50% of size cos is to big for printer. And Crysknife is in progress π
screwdriver
I thought I'd never see best and windows in the same sentences, the end of the world is near π
thumper... lol
Why does openvpn not connect to the tryhackme configuration? I've tried tens of times to connect but every time it times out. I want to use my own kali system for the rooms.
*for windows,,,, windows defender is the best antivirus
@loud marlin How are you? Still 3ding I see π
No, I did not see any alert But honestly, the program I was looking for was a program to make Evil Apk
This might make it a bit predictable π
wake up like 1h ago heh. im done with thumper now i doing handle of crysknife
"Evil Apk" huh
wow they have sandworm tooth 3d printing stuff, impressive π
π
thanks. hope i will never encounter sand worm
Gave +1 Rep to @blazing granite (current: #107 - 59)
they do not look like lot's of fun
they aren't π
and lucky the ps ps ps or so calling animal sound don't work on thme
π
it better to look from far, but learn how to ride one would be amazing, it'd be a bitching ride π
woah cool!!!
here i come... bit**
Polite phrase π
, Yeah it is a RAT Remote Access Trojan
After searching, I found the version I wanted for free
The name of the program is Craxs Rat, You can search for what it is
crysknife just last part. and ill sand it and ask some to paint it
that's so cool haha
fedora 40 comes out w kde 6 in a few days
free pet download, trustworthy
think i should update or rebuild fresh
not sure that sparkly filament is ok but frack it π
are you gonna paint it ralex
it's sick π
i know girl who paint and doing grafity. will ask her to do so
I actually had problems whitelisting a trojan with my windows defender, couldnt even click the "allow threat" button on the security page because it automatically removed it
wasnt on vm, i was testing
This sort of chat is only for Advanced channels.
sure why not
good luck
Haha It's like when you find dollars that have been in there for a long time in your pocket.
This is for advanced chat, but why are you testing out your own AV protection agaisnt a trojan?
cant say that here
ig
That's just asking for trouble...
anways, moving on.
it was friendly trojan btw
john is now in snyk advertisements? lol
..No trojans are friendly.
Yeah, I've seen it a few times.
ngl i use snyk like all the time for vuln info but i still have no idea what their actual product is
like are they vuln man? cti? π€·ββοΈ
hello
Hiya.
if you want to upgrade your vram when you have an integrated graphics
follow these steps:
step 1: go to run
step 2: go to hklm
step 3: go to software
Usually it's a bios thing
What if i don't have a windows machine 
in regedit
it dosen't work for others
oses
give me a video of programming language any video

@grizzled crystal for obvious reason need sanding and gap fill. in hour and half ill have handle
Is it possible to somehow make it thump automatically with a motor
yea. ill need to print it 100% size and ask some to make electronic and so
and spike that goes in ground kinda make from metal to make it posible to stick in ground π
Guys what are most likely certificate to get for cyber sec?
Woohoo!!
then ill ping you again ehhe
I'm really excited to see the final product
More like Macafee antivirus
well, back in the day, anyway, no idea about more modern versions of Mcafee, I know the versions in the early 2000's were awful and slowed your pc down quite a bit while detecting very little
knife is not thump. but thump can be functional for sure
How does one insert a SSh key into a box to enable login? The crypto 101 room recommends it to get a better, more stable shell compared to the reverse shell but I uhh...I actually don't know how to do that.
I mean my kali VM has a .ssh folder but the only thing in it is known_hosts and known_hosts old
Do you guys use Kali Linux or Parrot OS?
I use ParrotOS
Moo. I slipped and fell this morning. Broke my wrist. F... M.... L....
I'ma need surgery.....
Well I was able to generate myself a key, but I'm still unsure how to send it to the server over a reverse shell
Is this for a room?
Crypto101 talks about uploading your ssh public key into the sever to upgrade a reverse shell into a better, more stable one
but I'm not sure how you can do that over a reverse shell as they're often very janky/wonky, and I'm not sure if it's possible to send it over from such a connection
guys im trying to connect to cicdandbuildsecurity network but openvpn is showing error
2024-04-14 01:05:15 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2024-04-14 01:05:15 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2024-04-14 01:05:15 TCP/UDP: Preserving recently used remote address: [AF_INET]52.208.87.208:1194
2024-04-14 01:05:15 Socket Buffers: R=[131072->131072] S=[16384->16384]
2024-04-14 01:05:15 Attempting to establish TCP connection with [AF_INET]52.208.87.208:1194 [nonblock]
2024-04-14 01:05:15 TCP: connect to [AF_INET]52.208.87.208:1194 failed: Connection refused
2024-04-14 01:05:15 SIGUSR1[connection failed(soft),init_instance] received, process restarting
2024-04-14 01:05:15 Restart pause, 80 second(s)
any clue ?
like with a bind shell, afaik it's as easy as the ssh-copy-id command, I think
but I don't think that command works over a reverse shell?
Also on my end, ssh key generation popped out a ed25519 key and not the RSA pretty much all boxes I've seen use
#site-support please
Hi, there's only one thing left to do with CTF. There are source codes for the web, I've solved it 80% of the time, but I can't think of it anymore. Can a anyone help me please?
Which ctf?
from ctf time expired one
@grizzled crystal @buoyant tree just sand and gaps fill and pain
Someone with exp in (red) that can help me in private with an room
we can't help with outside THM or ctf in proigress and so
oh key
Seems known
has Mcafee gotten any better in 2024 or is it still outperformed by other stuff like Malwarebytes? As I said I used to have Mcafee back in the days and it was shitballs, PC was noticibly slower as soon as I installed it and we had multiple serious malware infections and Mcafee was like "This is fine."
bleepingcomputer recommended malwarebytes and MBAM is amazing
so I'm curious if it's gotten any better in the 15 years since I last uninstalled it on one of my computers or not
I see it's well known, I have no idea what it was, but I think I saw an ad for it when I wanted to run a malware scan Maybe a month ago, but I think MalwareBytes is still better known.
Hah, did some googling and it seems even today Mcafee is still a pain to uninstall lol. Lots of artifacts and relics get left behind. Really wish they'd fix it.
Looks great
I will avoid downloading it then
Anyway, what do you use?
Next project, stillsuit
Malwarebytes.
Love it!!
Yes, these programs are well known
Yk what I hate and I think should be a industry standard.
is anyone able connect to CI/CD and Build Security network ?
The antivirus companies should post every Year there detection statistics
Ah, 15 years ago, I didn't expect it to be this long
This is enough for a complete change in the program
I'm 16 years now lol π
This would be much better
Literally
what happened to bitdefender
is avast still a thing?
Is Kaspersky still a thing?
I would imagine a sport where black hats would compete for top malware of the month lol
didn't avast's private browser send out history
this is pretty cool, its free too
You find different opinions, but close to each other in content
We were talking about it a little while ago, I think it is the most well-known program in this
its not super accurate, but pretty good
I used it when my computer was damaged, when I opened the program that I talked to you about a moment ago.
Found 16 malware
https://www.security.org/antivirus/best/
This article talks about the best antimalware on 2024
@tropic stratus Here's Maccafee on the list lol In fifth place
Mcafee was one of the pioneers with Norton
Norton seems well known also, I've never downloaded it before that I remember
By the way, what email do you use guys?, Who uses Protonmail like me
proton all day
underrated email service af
what you use so
proton
I use translation, So I misunderstood the sentence I think πββοΈ
I think that the most well-known email in terms of security is Proton
agree + it makes you stand out from all those gmail users, and the name is way cooler
It would have been better if they added the ability to add a photo of the account
agree
well it not a problem for me.
Yes, maybe not a big problem, but I think this would be better
Anyway, I found a trick to add a profile picture to the account
does it violate this policy of proton-mail?
@arctic dove
I honestly don't know
You are right.
gmail
and my own
most popular
gmail because shadow don't really use email
welp, results are in, I just qualified for the national finals in the danish cybersec championship
congratz???
grats bella thats awesome!
thank you!
bella did not sound very enthusiatic about it
Psh literally every tech company sells history
it was fun following along for 3.5 hours cause I had to leave in the middle of the competition
was stressfull
I used to use hotmail, but before was own by microsoft, I have a yahoo account that I use for different things and a gmail from the time that gmail was invitation only
couldn't solve any challs for 3.5 hours cause I was at a wedding
Congrats!!!!
thaankz
I remember the wedding story π
I also do not use Emails. I rarely use Email only to log in to websites or applications. I usually use a site that provides you a random email to log in to websites, for example.
This is my friend: https://temp-mail.org
yeaahhh, I was bugging the staff for 4 hours too cause a challenge was broken but they wouldn't believe me
But if itβs disposable how do you get mail
congrats:))))
thankz
I remember it was still Ramadan, too
woohoo... again extra bolts after assembly all the things =/
I will now go sleep cause I have to be up at 5 am
Ben!! Any rooms in the making π
yesss:) a few fun ones if I may say. I can't say what but trust me β’οΈ π
Congratz!
Bet
Looking forward to it
haha
Iβll be on the look out
I tried all known Email Services Create an account with attractive names, and get out π
i'm also working on a CTF outside of work stuff which should be cool
Ooo
great going bella, you really are flying up the charts in terms of CTFs, great job
I never tried a ctf before
Once i get my windows laptop, i will start developing rooms
Maybe it can be my first
do ittttt
It's yet another experience, tbh.
I think it's a great way to learn all sorts of skills
Yeeee, my team are currently playing a CTF which if we win means we qualify for Defcon finals automatically
devving rooms etc
I have account that don't exist anymore or I don't check anymore, those are the 3 that I used the most
holy crap thats awesome, i wish you the best of luck
i really aspire to get to such a level someday
Thankz, last year we qualified at the actual Defcon quals, so who knows
one step away from the black badge π π
This is enough, There is no need for too much, on the contrary, too much sometimes brings trouble
a quick google search will get you the answer for that
in my years of internet I carried a lot of garbage π
but it's easier to ask than to put some work π π
This is what makes you have experience now
Use this in cases like this π
https://giybf.com/
Google Is Your Friend If someone askes you annoying questions, tell him about giybf.com!
Maybe my project I am doing will put me to be able to get one myself π€
Hey everyone, quick question, how can you improve anoniymity? I'm testing my server out by doing nmap scans, trying to setup a honeypot, but the real question is, which VPN's are keeping your privacy secure in regards to anonimity, instead of vpns, Using proxychains is a better option? Where can I purcahse proxies?
if google is my best friend he can lend me some money π
I recommended to you watch this: https://youtu.be/LEbAxsYRMcQ?si=aSUTibxNOzHxk90u
Don't be fooled ... Occupy The Web (OTW) tells us the hard truth about being anonymous online. The brutal truth: Will using your neigbors wifi keep you anonymous? Can you hide from the NSA? Can you hide from Google and other companies? Will Tor help you? Will Proxy Chains help? Which phone do you need to use - Android or iPhone or something els...
Of course he can
proton all the way π¦
best way ditch the mobile, use cash and no internet π
tin foil hat is optional π π
[[what ever you wanna link]]
Thank you!
Gave +1 Rep to @crude stump (current: #111 - 57)

Bro on that rep grind
Gothem needs me
Batman needs his suppliezzβ¦
i think if you press Ctrl + p you get command palete. and you can customize it in settings. make shorcuts for things. will speed you up
Also filter to add arrows and stuff
@blazing granite https://youtube.com/shorts/GRptcabqH24?si=wEbWczfHVQO7I0Gy
wait what, why?
Oh ok
it's the meat is as great as the one I eat, you don't need to do all that, just fire up the grill and that's it π
I buy packaged already made sandwiches
Those arenβt bad
too lazy to make my own
and put it in a toaster
Why to wine and salt?
toaster is optional
what is this thing called
isnt a press like newspaper stuff
eh same thing
I mean yeah thatβs a form of press
I think that has many names.
except thats with ink and heat
the hot stripe on toast making machine 
those sandwiches look photoshop'd. every one is the same.
can't even bother making some for the image
"sandwich maker"
Delicious sammich cooker. π
indeed, wine belongs in the glass π
Look up a panini press beta
@buoyant tree Hi! sup
wait I just realized these sandwiches are also photoshopped in
is panini press and sandwich maker the same thing?
Yep
but also for meat
You could do that too prolly
actually is panino, panini is plural π
Wonβt be that nice looking
The photoshop is crazy lmao
Where can I purchase proxies, Using free proxies is not ideal, they sell your data/information to private corporations.
well if you purchase a proxy you will need to trust said company to also not sell your data or doing bad stuff with your info and also other trust parts
so do what jayy recommended
get a virtual private server and set up your own vpn and/or proxy
i.e purchasing proxies have similar issues to getting vpns for trust problems
roll your own on a good vm hypervisor using some vps provider or transer trust
But Wine in everything is gooood
starts pumping wine into beerrise
I prefer my wine in the glass, plus like I told you before if the meat is good, you don't need to add anything the quality speak for itself. Americans are use to marinate, put thing in the meat, to make it nice. I never had that problem π
marinating the good meet is still worth it
as acids can help make the meat more tender then it already is
you don't need that with Argentine meat, you can't improve perfection π
there is no perfection
there is no perfect
things can only keep improving
you are letting perfect get in the way of ever increasing improvement
I have no idea
Search, you might find
also being on discord is not that great for anonymity
on public server
oh what a coincidence, I just watched this Podcast those days. Great one by david bombal and OTW
if you grew up in Argentina eating asado every weekend you would understand that there is no need to add anything to the meat or marinate it. The meat speak for itself and it's amazing. That's what I mean with you can't improve perfection.
places they do is because the meat is not that good
Argentina has the best meat in the world and is well-known for it
I've watched the entire playlist
of OTW and David
https://youtube.com/playlist?list=PLhfrWIlLOoKOf1Ru_TFAnubVuWc87i-7z&si=f-PwWSH_JElm5fop
I found this really helpful
holyy moly a whole playlist, I be missing on so much
gotta watch all before going 2 sleep hahaah
David Bombal is great
well the main reason I'm watching those cz of OTW
oh believe shadow that they know what meat that needs very little to work how it is is
wagu beef is amazing as is with just a bit of salt if anything
still you can make any meat better by adding things on top
I like occupy the web, https://youtube.com/@yanivhoffman?si=mDtmF1suPoNKwpeN
He also has videos on this channel
I am an IT and Cyber Security professional, which has had a lifelong passion for computers since the 1980s. I began coding at just 13 and went on to earn a bachelor's degree in computer science, starting a successful career in the hi-tech industry.
My mission is clear: to empower others with cybersecurity knowledge. I firmly believe that anyone...
I highly recommend this playlist
I feel time passing quickly when watching this playlist, Especially in Mr Robot videos
the "cyber security" text on his logo is very slightly off center
by 2 pixels
Actually, I didn't like this guy, the way he talked, I watched his videos with OTW just to watch OTW
you just proved my point with the wagu, you can cook it with other things or use side dishes that complement the meat, the point is marinate or thing like that, alter the meat, it's a shame to do that with a great product. Great products need to speak for itself
disagree hard
hullo
there is no shame on marinate or other techniques that make products better, just some products don't need it, and also you can make a great product mediocre one just using those techniques. It's OK you don't have to agree with me, but my opinion is base on my time working in a kitchens, extensive travel and gourmet experiences, and my work as a sommelier too π
it sounds to shadow like gnu rex prefers a plainly boiled potato over stuff like wedges or fries or waffle fries just because it is a "perfect" potato
shadow is just taking the example of marination here as shadow is not well versed in a lot of different preparement types but stuff like dry aging or salting or dehydration or vaccuum dried has a huge effect on the meat and there is alwasy better ways to prepare it then just giving someone it as a blank slate
be creative and draw something on the slate instead of leaving it blank
you're missing the point, different techniques for different products.
Do you baste
mash that shit and cover it in cheese bacon sour cream and chives
Hell yeah
Rex, important question for you. Fried food or air fried
depends on the food
and also where
deep fried is normally better but there's not shot i'm gonna deep fry at home when i've got air
not rex but ^
I can't talk with you.
why it painful for shadow to wait for gnu-rex replies
you just said you're not well verse, you're debating with somebody that actually work in kitchens, experiences both sides of gastronomy, and also work in many position in restaurants. Not all the techniques can be used with everything, like I told you before, you can make a great product mediocre just using the wrong technique. Of course creativity has a great part on it, but you need to know the basics to use your creativity. Only creativity it's a big gamble and most of the time will end in a mess π
^ that's why
Hi! How are you?
Itβs all opinions
Some people like stuff that way
And some donβt
depends on the food, how healthy want to be a lot of angles π
Fine
Taste >
with oil can be more unhealthy, but if you do it once in a while can be OK, if you're using good oil, nothing beat oil, air fry it's a great, more healthy, and some time you get a very similar taste profile than frying with oil
ah then you're good
Although I can't tolerate air fried stuff, too dry
spray it first
do it already
I got a idea, I fill the air frier up with oil
but actually tho, cooking with fats instead of oils is pretty good
lard and tallow and such
you have to try with different times, temperatures, also depends on the product, if it's thick you probably need to do a low temp and more time, if it's thin you can do higher temp less time
the dry issue could be because you need to cooking less time
cooking french fries atm
cook more than you need
deep frying them while family is air frying
put the rest in the fridge or something
I did 4 kilos
Don't have the patience
I love fries, but fried in grease instead of oil, but it's more work and a bit more messy so I only do it once in a while
haven't ever tried grease
so good
Yo, I got a good one. Talking to some old techs from an old job, and they brought up that they are seeing netio BSoD's on every laptop. One guy was plugging in monitors and he got a netio BSoD
No, I didn't touch it.
the taste is amazing π
does anyone know if the non-slip mats for rugs/carpets work
the rubber? they certainly can
Murphoinic(Murphy's law) field radiation emitting from you seems to be the plausible explanation .
murphies first law: if something can go wrong it wil go wrong
murphies second law: when something goes wrong it will go wrong in the worst possible way
Asus?
We had driver conflict that was throwing netio bsods recently
Breh, went to a site looking for solutions for the techs, help out a bit. And my AV says that a threat was detected... MS04-028, A 2004 exploit... breh
Lenovo, doesn't matter the gen, could be a P15v G3, could be a T14s gen4, or gen2
I have no idea what to buy for my chair space so the chair can roll on, idk what its even called. Rug? Carpet? Mat?
I have a carpet thing rn but it just folds on itself when I move the chair
DRIVER_IRQL_NOT_LESS_OR_EQUAL?
All I was told was it's all a NetIO bsod
If it's all of them, check latest software updates
And ONLY when they aren't in office
Like corp vpn client or something
Gon be tun device driver added that triggers some conflict
When they use vpn, aye
Yep, could be hardwire, could be wifi.
But it's not the VPN client, they checked that
what if all of the above problems
They'll figure it out. By nuking network related drivers and reinstalling from vantage or whatever lebovo manager was called
Just gon take a lot of rage and red bull
If they find how to reproduce fast, gon be less infuriating XD
Ours was security software, checked my emails
time for shadow to go meep moop to the beep boop for the sleep sloops
Is NordVpn secure? or do they spy on your actvity?
itβs DNS itβs always DNS πππ
I can see if they implemented a new sec software
not secure as they have gotten hacked a few times
they also spend more money on advertising then on having a good product
they also do not have minimal info for sign up process
they also do not have anonymous payment options
It can be anything. Like a win update grabbing some updated driver, while vantage installed one being there too
What do you recommend then? for being secure when doing ethical pentesting or staying secure itself?
Which would explain why all of them
I'll pass this along too
Easiest way would be start nuking anything that can cause it one by one, until it disappears
vpns are not a security product
If reproducible, than should be a days work. If not, oops
they are only good for merging your ip into a single source with all the other vpn server uesrs
So, proxies then, where can I pay for them, is their a service?
i.e for making your ip not appear as your normal one
PROXIES ARE NOT A SECURITY SERVICE EITHER
Start by rolling back whatever autopdated, with win updates (drivers) being first suspects
Hey guys u know how to track down Tiktok IDs?
would recommend mullvad vpn or ivpn
A guy is threatening to kill me
but really you should look into why you even want said things and if they actually do what you think they do
π
We don't do that here. Wrong place to ask
π
Thats unethical
Ok, I'm asking for help. So how do you keep anonymity when doing ethical pentests? Trying this on my own server with honeypots.
I will figure it out myself just give me the process name
When you do things ethically, you don't need anonymity
Ok, thanks for the heads up.
Gave +1 Rep to @sand trench (current: #4 - 1702)
Stop asking
No, im trying it on my own server. to review its changes on backend provider im using.
sorry for the confusion.
if you are doing an ethical pentest you have a contract with the company and they already know who you are....
So you recommend mullvad?
yes but what you seem to be looking for is not a thingy that exists
Proper process is to contact the police, if someone threatens you
whats that tool that parrot os using then that routes traffic through tor?
neither vpns or proxies will make you anonymous
with a dynmaic chain of proxies?
tor might be the closest most people can get to anonymity but it is still not perfect
And slow
by design as it is bouncing your data around to 3 nodes.... can be sped up disabling js
And if u are a state sponsored hacker

@boreal scarab in case you missed it
seriously starting to doubt if what you are trying to do is ethical
State sponsored folks probably think that their ops are very ethical
One can even argue that they are
π€£
Unless you have capabilities to test how the subpoena for the records of the service that you are using will work, this doesn't make any sense. So stop asking
And if you do have such means. Let's be best friends
they seem to have left this discord
Figures
funnily enough they probably did not wipe thier discord account meaning there is a trace back to them
all that talk of wanting to go anonymous... while using discord

Probably gave it real DoB too!
Can you write subpoenas for me?
Ok, your honor
shadow can write the subpoenas probably..... but submitting them and making them legally binding??? nope
reading other people's bug bounty reports never fails to even further lower my expectations for the general public
people are impatient af
Try my corp emails
is bug bounty hunting worth it ? x)
Depends Β©
as long as you follow the scope closely and don't annoy the shit out of your triager than it can be for some people
sometimes
sometimes not
explain 'Some people"
Can I rely on it as a source of money ?
@molten sky in windex, can i just add playbooks to do extra stuff, like disabling AV?
Yes, the bug bounty requires effort and patience. Not because people are impatient, but you must find something that others couldn't. There is also a luck aspect, which I believe has significance in amount.
It can. But it depends on many things. Like luck, automation, effort, etc
It's not a reliable source of steady income, until you find your groove at least
This is why i think it is not worth it. But if you are having fun, why not?
Yeah it can be as hobby
Bored on weekends? There you go, play around π
depends on required permission levels, but generally speaking, I don't see why not. currently working on an update that will allow windex to perform chosen functions as nt auth/system, which will expand what it is able to do (i.e. better control over a/v svces and firewalls, coincidentally)
Can ya ping me when it can grab system? Would be very helpful to use it
if the functionality isn't supported with the playbook handler yet then it could theoretically be added
i can barely remember what I ate for lunch on friday, lol
it's using actual versioning and releases, so if you Watch the repo it can notify upon new releases
it's a PITA but should be doable to add
Nothing stops me from running pwsh as system first, i guess
it's too bad the microsoft tool for it is licensed like shit
can't just leverage that
Sysinternals?
English only!!!
just more work
the playbooks can handle arbitrary pwsh so as long as you're ready for the likely uac prompt π€·ββοΈ
Kudos
Danke
What language is this?
English i think
I suppose i need to study more
Can just disable uac first XD
So fetch sysinternals, unzip, elevate. Ye
Damn pwsh is powershell
funny enough...was considering doing that as part of an escelation method. but i didn't want to rely on disabling UAC should something fail and it not be reverted
No lol, i don't either
that's a fallback but i'd prefer to let it f(x) completely offline when needed as well
Nah, windows things
Well, i mean for immediate solution for me
f(x) ?
Chain rule
i don't do windows myself so it was even more painful to create
g(x)
fog
probably fairly easy to add if just that tbh
quick tweak
also @devout palm since when tf are you red
Since when you ran off
Good luck
As soon as i find my damn yubikey to log in to github XD
@molten skyWould you mind checking my laptop log's
i broke one of my yubikeys ,-,
i had one of the lil low profile ones in my monitor's usb port. put the monitor in it's box when moving back south. when i got home and unboxed it it was in half
always buy more than on guys
logs? i only see one
Eh they are somewhere else in the woods
guess you need a new backup for your backup
@jagged moon Not updates conflicting, vantage was ran AFTER the bsod's
ngl im surprised you don't have a recovery key avail
i'd be too impatient to wait for whenever work is
I did. But it's in my wallet
And i forgot my wallet at work
Because i am an idiot
And it's weekend
you mean the backup yubi?
Ye
i mean like the 2fa recovery keys that you're supposed to keep
the string of chars
one time use
Ah, those. They are in pw manager encrypted note
And pw manager is behind the yubikey
something in a safe somewhere
I use SD card to keep my backup files
Oh ok
lol why
Russian
I also use cloud
Ours works one of six times. Pretty good rate
samsung makes reliable sd cards in comparison to other sd cards
that doesn't mean that sd cards are reliable tho
I don't rely on them
YET
Nah
if you use sd cards for anything and it's not a camera you're asking for trouble
I bought it for raspberry pi actually
Nintendo switch tho
okay or those
Would external SSD work
What's the ideal, are you going to tell me lol
Not much, just for backup
(by degrades i don't mean it'll stop working, i mean data loss)
That's bad
much slower than an sd card would tho
like much much much much much slower
sd cards are just crappy flash storage
ssds are good flash storage
for especially infrequent access a hard disk would take preference over flash, but flash would be faster and more 'durable' when it comes to being shaken up and thrown around in a safe
I love how hdd is good and bad at the same time
the only perfect medium is tape
that and microfilm
everyone should be using microfilm
wat
taw
Let me introduce you to my friend magnet
also for HDDs tho
I write them on the rock
Punch cards supreme
okay i cede
Until paper degrades
punch cards can be used for fun games too
i.e. watching the interns pick them up and put them back in order
@jagged moon you use kvm or no
Kvm/qemu
man of culture, i see
when you get your yubikey back you should fix #7
i'm powershelled out
Guess I'll have to!
Anyone used Teleport before?
Nighty night folks
pretty sure i accidentally set it to detect a remnant of the tools after their removal, so that was botched lol
by the time i realized i was like nope fuck this i'll be back in a month
never heard of it πΆ
'night
@hot cairn used Teleport before?
Version 15 recent?
Any chance you're up to helping the same guy again?
He upgraded from 14 to 15 and it broke it, and he's trying to get 15 to work
anyone made a Tamagotchi before?
My mom has that apple modem that is supposedly makes your router more secure, i hacked it in 10 minutes with aircrack and scapy lol
I hope you asked her before you did
im still not used to red jabba
Orange* and same
shhh
itβs orange πππ
shhh

??
oooo pretty button
which?
the one that lets you break the rules
idk i think it looks normal ig
rules are only for weak programmers
Real
lets not promote unsupportable code practices
Testing in prod is a great practice though! /j
you get the vm figured out?
Can someone tell me what the fk happened with this thing
Lmao
Yh Kali Linux worked i opened it yesterday
all i did was move the kali linux thing from desktop to downloads
but idk which one it was
It says it cant access the file, probably because you moved it out of where it thinks it is
Bottom
The blue one
Should be called a Machine file
in the file type column
yeye
now dont move or delete that folder
or same thing will happen
have a good day
WireShark in action
But im confused
Good night
I have a problem
i 'm studying SOC level 1 - SNORT
the machine has a script "traffic-generator.sh", But when you run it, it returns this error:
Error constructing proxy for org.gnome.Terminal:/org/gnome/Terminal/Factory0: Error calling StartServiceByName for org.gnome.Terminal: Timeout was reached
Do you know how to solve it or if I can talk to someone about it?
What do you mean?
Good!
click on the kali icon in the top left, this is your application list
thern
Whats all this i wanna learn all
I wanna learn instagram or discord account ethical hacking
Look up each of them on yt
Youre a long way from that
But its possible
Ohh nooo π
oh it is?
Itll take a lot of dedication
if i go into password attacks and then search instagram acc maybe thatfll work
cant find that
Look up tutorials for the tools on youtube, david bombal, john hammond and network chuck(though a little ad cluttered) are good sources
Its a black icon at the top bar
wb the tryhackme website tutorials
ima watch em later on slow by slow
Oh yeah those are great as well!
tf am i gonna do with a terminal
oh lord
look up tool tutorials
@vagrant sonnet you have no idea what you are doing and are going to get yourself into trouble. If you want to learn hacking, actual ethical hacking, you can start on the THM platform to learn. #start-here. Hacking instagram and discord accounts is illegal, I asked you yesterday what you meant by 'messing up some guys fr, no I haven't forgotten that. Stop doing what you are attempting to do
And youll see
Shit i didnt even think about that im so sorry
its not your fault or responsibility, no worries
ok
Okay, thanks.
Gave +1 Rep to @graceful thistle (current: #23 - 354)
Yo dam you got a good memory
like dolphin said, there is a very fine line between legal and not legal, please look up anything before you do it
it was yesterday
Ik it's illegal I won't do that.
yh but useless info why would u remember that
yes yes
but nothing on kali linux is legal then?
As. general rule just ask the company or person that owns the hardware or servers for permission
because you hijacked this chat for like 4 hours with tech support, thats why, lol
oh
when used correctly it is legal
well i gtg
Heya dolphin
ill use thm website
I donβt see anything ethical with cracking instagram and discord accounts
go onto THM, start learning seriously. It will be a lot of work and you will learn a lot
and stay legal
heya π
Dolphin using a keyboard is a surreal kinda image
THM is cool
Dolphin kickback on me bruh im new
i dont even know what im doing yet
and plus 0x said im far off hackin into accs
Very
which i wont do without a proper legal reason
You wont do it at all
what ddo i need to do ? learn python
unless you get instagrams permission
Na depends on how serious I get
nah it depends on if you get permission
@graceful thistle How do you type with your fins
Okay, thanks.
Like is it a super big keyboard where every key is the size of your fin
Yup, thanks for guiding me onto the right path.
ok
or do you type super carefully underwater
Man i love the newbies with their hacker names lol
Then theres the higher ups with DolphinOnKeys
click ok?!
power off
dolphins are from the future and use telepathy to use a computer, they just say they use keyboard to appear less threatening to humans. Everyone knows this
ok thx
and jared
The pokemon guy that i know i cant spell lmao
you are really getting so far ahead of yourself. Please go to #start-here , and please read our #rules while you are at it too
damn, you cracked the code
π
Neuralink is now in dolphins, daymn I heard dolphins were smarter than humans
facts
I mean dolphins are one of the smartest creatures
I'm not gonna say it
discord is the worst application i've used on desktop in years
i don't think anything i use crashes or locks up nearly as frequently
the damn thing just locked up because i tried to close it
had to kill the process again
skill issue on your machine
nah i just don't use bad software normally
never heard of discord being a problem (for that)
the flatpak crashes about once a day and the distro repos aren't viable because discord locks you out and forces you to update manually if you can do so properly
have to trick the thing into thinking it's a different version when on the main repo sometimes
Linux mint has a non flatpak option that has no stability issues
the deb may have improved. genuinely don't remember if i'm using the flatpak or the rpm right now but they're both annoying
looks like flatpak. i actually don't think they maintain an rpm
I mean as good as it gets with discord lol
@graceful thistle pull some strings and get thm to move over to irc
irc?
btw why do all kali users have the kali dragon logo as the wallpaper at least some version of it, can you not change it or something
if you're using windows i heard that by default discord ships the 32-bit client instead of the 64 bit one (for whatever reason)
rise through the ranks and start a coup?
Because it looks sick?
Either simply because it's the default and there isn't a reason to change the wallpaper on a machine that's gonna be wiped anyways, or as a visual indicator of which machine you're looking at when you have 13 others running alongside
the minimalist design dragon?
I think it looks cool
Also default linux wallpapers are pretty good usually
So i leave em
hard disagree on the dragon looking cool but Β―_(γ)_/Β―
yeah that makes sense
i like the wallpaper where its the kali terminal but with like a 3d design
if anyone knows what im talking about
i use one of the add-on wallpapers actually, not the default
my wallpaper has always been solid dark-brown color, just 1 color
when using a bunch of pass through vms it can get annoying having one color (across all machines), lol
i at least make them different solids
same if you rdp or whatever a lot
Literally my pfp
yeah it kinda is, hehe
the nose needs to be more dolp less dragon but otherwise it's a good one
when the flipper zero dolphin has had enough:
whats the site
kali dragon logo is literally 3 lines, what do you mean "but with a dolphin"?? Basically remove the 3 lines and make a dolphin lol
thx
ok buddy
I will never forget this
DIE
the oldest thm joke
i haven't been around
been there since day 1 of the website
It's all electron anyway
(I made that up, I'm too lazy to check)
discord gives electron a bad name
like yeah electron aint great
but discord just drags that shit down even further
π
Shot through the heart, and youre to blame
π©΅
THERES A LIGHT BLUE?
oh shit that's new
that font, my eyes
no way π€― he anonymous skaree hakker
hackerman
he gonna hak ur ip and sel it on darc web
My eyes
oh no anonymous is gonna eat me!

