#general
1 messages Β· Page 138 of 1
if your morals don't have a dollar value, you just haven't been handed that value yet
also it's only a war crime if you lose
so just don't lose
I'd like to say my... lol... my values don't have a price bracket, but I've never been confronted with this proposition. I'd just probably still say no since deeply sus
look
i'm telling you today that i will never work for tiktok
but if tiktok approached me tomorrow and handed me a check for 500k, i'm taking that check
i got bills
it's not a war crime if it doesn't target civilians (please don't follow what I say)
If someone said they'd pay me $750 million, I'd never believe them, even if it was for critical info
also can't be a war crime if noone has done it before
cue tactical care package
tactical care nuke?
whenever discussing war crimes (which has been surprisnigly frequent lately......) the first thing to always come to mind is canada and canned food
No we just want your specfic geolocation for reasons, don't worry about it c:
I think USA and the boats
lolol
ouch
Although ouch I misread that for hummus
lol Hamas for Hummus
lmao
@sinful moon for context cause reaction
during ww1, canada and germany were near each other in the trenches. canada being friendly and all started to toss canned food and goods over into the german trenches.
after building trust through a couple volleys of food, the canadians tossed grenades instead.
Sounds about right, although kind of suprising. A lot of those WW1 stories that lived on where pretty heart warming lol
But those are just the ones we hear about lol
been playing a bit of helldivers lately
Nice, I mean to play it eventually but I'm awful about coordinating multiplayer
I just start a game solo and people keep joining
π
I got a couple c:
haven't tried doing a fully solo mission yet
yeah a lot of shit never comes out. canada has some interesting stories tho, as does the US. canada just surprises people tho cause nobody hears about the shit they did in either war
people always keep joining
they were in the shit
as I said, just don't touch the boats
mhmm, I was having a good time reading about all the Broken Arrow scenerios that we know about and lol, yeah they're majorly concerning for the most part
one of the best multiplayer games is KTANE
Keep talking and no body explodes :D
or let's say
two players
bomb go boom boom if silent
haven't open steam in a while.. lol it's updating...
In one over North Carolina it was a single electro-mechanical switch that was between us and destruction
I'm looking to play the entire series this week 
tangentially related --
fallout. never realized until i scrolled past something the other day, but the bomb powering megaton has a VaultTec logo on it
lol you sure won't in one week, but enjoy and good luck!
And I have different timeplay on EA Play π
Yep critical to the plot and etc, makes sense
not in a week for sure. Completionist in me wants it all.
Props on you for playing FO3 instead of 4, although New Vegas is the GOAT
it all makes sense, but i never realized how in your face that specific hint was, lol
never looked too closely at that one bomb
ironic too given the GOAT test lol
nv >
Heck yeah
4 was fine. but that's it, just fine
Reason I'm playing Morrowind RN
you guys, want to know a good game that is super underrated because it's kinda hard meaning not for everyone?
rainworld
haven't played any fallout game... guess that will be next on my list.
I'm enjoying having more of Morrowind to explore. Tamriel Rebuilt mod is 10/10
how have you not?
yes 
me neither
not a big aaa player
You can consider AAA much better in hindsight with older releases
Morrowind for example is an undisputed all time classic
that is mostly true
skyrim too.
not modding it is a sin.
same with Fallout 1 and 2, 3 is meh, but New Vegas is all time epic thanks to being by Obisidian, many of whom developed the first two games
modern aaa bad old aaa good
Skyrim is meh, but decent
someone pull the plug
I think I played more than enough now... π
are police takeover domain? why are messging with record i am ask. why
I can't argue much there tbh. Even some of my modern faves were AA for Unreal Engine 5. The new RoboCop game was fantastic for what it was
are you having a stroke
beotherthey are takeover domain!!!!
can someone translate for me
I do enjoy the smaller games like VotV. It's too addicting.
WHOIS has reporting for an abuseive address, if you're concerned about domain takeover, use that
mo. law is taking domain. they are sieze!!
words are hard it seems
the words what do they mean 
They seized your domain?
dropped that into google translate and they called me to say they've failed and are shutting down
π
π
π
Hi Scrubz, any chance I could quickly use you regarding resetting my verify of my THM acc so I can verify another on discord? 
What happened to your other other one?
Nothing, but I wanted to start fresh and couldn't be bothered to manually reset every room x)
well that's a new one
Welp
makes sense -- just new, lol
You on desktop?
ye
Ah you done it.
Yeah was wondering, that's the natural conslution. Glad you figured it out
cya!
lmk if we ever decipher the thing
nighty
G'night. Back to Morrowind for me. I think I'll have tomorrow off, really not feeling great
have fun and get well soon!
someone tried to phis me π
I mean he or she is trying now π some social engineering things they are trying
@deft cloak deleting that in case someone decides to be a vigilante
Report them to discord and block them
Yeah Doom might be up that alley, gonna try out the old 1992 and new 2016 both, Also nice to see a dead spirit's revival
They used hacked discord accounts for this
Yeah use GZDoom to play Doom 1 and 2. Turn off Texture Filtering, and you're set
yeah you helped me set it upi
Good stuff
lol obviously is, but I'll let you find that out
yeah, depends you probably found it fun considering you did a masters in Doom
Got 30+ years of mod content
yea.....
Yeah I'm all about Doom WADs and etc but as you say I've done my time lol
Also quick question, 2022 batman or The dark knight
Both good, but if you choose The Dark Knight, I would recommend the previous Chris Nolan movie first
That is a true trilogy
Yeah, I watched them both
Batman begins is kinda weak
Oh you're asking which I prefer?
but the rest of the movies are beyond great
yea
I'd lean slightly more for 2022 The Batman
More consise retelling of actual graphic novel/comic material and more
yeah for that its got points
also the visual style
Indeed, but with that I'm sick today, taking the day off. May attempt some Morrowind before I go back to sleep
Get well soon. Have fun
Mornin' everyone!
Shodan is basically a library of every IOT/network connected device on the Internet.
Tryhackme has a room on it.
Give it a search
Whatβs morrowind
5 hours more class.. xD
The Elder Scrolls III: Morrowind

Is it good?
If you like Western RPGs and adapt to older 2003 ways of doing things. With mods and especially OpenMW it's lovely. I'd just recommend experience with modding other Elder Scrolls games first
but besides all that, yes it's 10/10 as a game
This is with Tamriel Rebuilt mod (aka adding the main land) but there's tons of content to enjoy:
This is just what I've explored so far lol
How old of a game is it
Isn't skyrim a part of the elder scrolls franchise
But I'd probably recommend you try oblivion or Skyrim modded first
Will probably consult Matt before I play skyrim
Morrwind is most player choice than ever, but you probablt want some experience with the newer games first
yeah, although don't wanna get sucked into a open world
Probably linear like doom
It's a game where you can become famous in the world just for your own actions, and not main quest stuff, and that's lovely
That's fair but there's an appeal to both styles
How's the audio
Yeah just tired of open world
I mean it introduced the skyrim theme you're famliar with
but yeah I've listened to 100+ hours of the audio, it's chill
I've never played skyrim but I know a lot about it due to the huge place in pop culture it takes
Just remembering clips of terribly bad audio from Bethesda games
Morrowind OST.
Nerevar Rising
Composed by Jeremy Soule.
All rights reserved to their respective owners.
No copyright infringement intended.
Also isn't morrowwind the one where they experimenteed with NPC AI
You're thinking of Radiant AI which was introduced in Oblivion, the next game
ah common epic chill music
Did it ever get fixed or did it remain as haywire as it was in launch
It both got fixed and ultimately modders fixed it even more as is the case for all Elder Scrolls games
Bethesda*
Youβre not wrong
Bethesda games would probably be ranked wayy less if they didn't allow mods
Yes but they gave modding tools, same as they used, away on day one, so good on them
I'm going to step outside but I'll be around
Sure, although isn't it like 3 am for you in Murica
Yes, but Iβm off sick today
Bad cough/cold
Ah. so it wasnt that you rocked up to work on a cool skateboard with shades on, and you boss was like 'Damn, thats totally sick! You can't work today!'
lolol
wonder if that's ever happened
In my mind, you get to work the same way Marty McFly does, by grabbing the backs of cars and letting them pull you along on your skateboard. Or Hoverboard
lol I do impress the boss from time to time but being remote itβs mostly in calls
You are the RetroQueen after all
wouldn't be surprised if someone measuring radiation would had said "that's totally rad, dude"
Last big vibe was us both enjoying software defined radio
It's not the evil Covid is it?
Nah I donβt think so, but I sure do have a scratchy throat
Eesh. As your doctor, I prescribe a warm lemon drink with honey.
Also Ellie have you played both of the Nier games
Can feel it in my nasal system, forget the proper word for that
Sinuses?
Isn't lemon like super bad for your throat when having a cough or any issues with your throat
Well, cough sweets are usually Lemon flavoured
yeah but its usually artifical flavors
Just Automata so far, yes I love it
Music in that game is 10/10
Thinking about buying the games then playing them, what order should I play them in
also was the game that DXVK was basically created and proven for
Yes, we listened to it remember
DXVK?
DirectX to Vulkan translation layer that's baked into Proton
Neir: Automata was the first game ever running under DXVK and was the proof of concept
now obvs works for thousands of games
So making it run on linux with a game engine? (for dum dums)
Yes but DXVK has been ported back to Windows as well lol
helps for awfully optimized games like GTA IV
Translating the DX calls to Vulkan and optimizing the rendering does get you faster framerates than the original
hmmm, I will pretend to understand that while I google it
Odd - I could directly Ctrl + C and Ctrl + V from my windows to the attackbox the previous days
Today I cannot
did you switch your browser
Gonna checkout which games run pretty well on Linux so I have a good reason not to start Windows directly and idle for a while.
Hey AIO. Elizabeth π
Damn MITRE got its network breached through ivanti zero days
Is learning JavaScript is necessary thing for cybersecurity career? I mean if I know already Java, C++ and Python so should I learn JavaScript also or it will be OK?
I think it might be that
From Brave to Firefox
desi daru
Ctrl + shift + c / Ctrl + shift + v
THat is the keyboard shortcut for Linux Distros
I know, but it didn't work on attackbox, for some reason it did not auto-copy my Windows clipboard
Not that busy if you're here 
currently on the move, that's why
I don't think javascript is that prevalent especially if you're doing blue team stuff
apart from xss attacks
oh okay.. thank you so much...
Gave +1 Rep to @heavy musk (current: #2064 - 1)
that helps a lot because I will not waste my time on JS for now.. maybe if I got some time then in future I will have a look into it..
Today was my last day at my current company and my superior and team got me this book as a farewell gift π₯Ή
woahh that's so cool!
and nice of them
Yeah, Iβm going to miss them dearly.
Anyone recommend linode to practice on
i prefer vultr due to it's simplicity but i've set up siems on linode and it's worked fine
I was thinking of practicing Linux on it
Also love that anime
ooo yes you could
although perhaps a virtual machine might be a better option
since it's local
and you won't have to pay money for it

Hi
sup
So basically hashing is unencryptable encryption?
Or irreversible encryption
Hashing is not encryption
It can't be reverted, but it isn't encryption
It is a one way function
I am in that room
Just wanted to see what someone else thinks
I know encryption is encoding that is reversible
But hashing is irreversible encoding
Right?
That's the difference as far as I understand?
Gonzo you like dnb?
As Jayy mentioned, hashing isn't encoding. Those are two different things. This article might help: https://www.geeksforgeeks.org/encryption-encoding-hashing/
As you said, hashing is irreversible but uses a hash function, not encoding.
For example, when you create a password on a platform, that password will be passed to a function, and the output (hash) is stored on a DB. When you log in, you will enter your password, it will be hashed with the same function and the resulting output will be compared to the hash stored on the DB. If they are the same, then you will be authenticated.
An example of encoding is base 64, which you can just as easily use for decoding.
A Computer Science portal for geeks. It contains well written, well thought and well explained computer science and programming articles, quizzes and practice/competitive programming/company interview Questions.
I do π
Got a good song for you to hear!
https://open.spotify.com/track/1mECl3Zcm5Yp0APfuW5qfi?si=hKCnHhafR72f-upCRl0Yog
It's naaaaaastyyy
Yes, I was just asking if I had understood the concept.
Otherwise I know that they use different formulas and methods, just as you said.
Encryption makes the text unreadable unless we know the key and the algorhithm. While as you asid, hashing is irreversible or at least it is supposed to be.
I know, but it is important to use the right words π
a good joke is "we're using military grade encryption, uses b64 and rot13"
Windows uses rot13
Password: Ilovemyar15andbaldeagles


yea I've read that registry used rot13 
I mean other than a dictionary attack, what else can they do to guess a hash?
Still does
Lmao
heh
default pass in America
Probably the same as a chicken
I wonder if feathers are different
my pet eagle barks
A dictionary attack doesn't guess hashes; it uses a list of passwords and tries them one by one.
You can use tools like https://hashcat.net/hashcat/ to crack hashes. But for that, you need to have a valid hash. You can then provide a password list, hashcat will hash them with the same function used for the hash you are trying to crack, and then compare those 2 hashes. If they match, then you have found the password (most of the time)
World's fastest and most advanced password recovery utility
maybe there is a bug in it
In the room it compared it to a dictionary attack
I know it works by hashing a lot of passwords and comparing them
That's how the room taught me to understand it/I understood it
Hello
My bad then
Thank you for being responsive though
if this is for a room , its good . If you try this in real life it takes around 70-80 years
Gave +1 Rep to @hollow pivot (current: #44 - 165)
hi man 
Depends on the users password
benaffleck123
for sure. But i doubt that real systems uses password like : ciciarampa23
if they use that maybe they should write up their password on the home page. So its faster to be hacked
just think that one of the first thing they said into my work academy is :" if you use " , you can't be hacked even if your password is : "hello""
i was shocked
the real question is, how many digits do you have in ur most important password
im guessing 2fa?
most important? hmmm around 24?
I remember having I think 180+ random symbols and numbers for my school account for some time
2fa is actually one of the best thing to protect
if they think that "hello" isn't hackable , i don't think they have know what 2fa is
ok , this maybe be a little bit too much
I changed it cus it was annoying to spend 5 minutes logging in my emails to search for my password to copy paste
password manager
It was for my classes, different pc every hour
Guys I accidentally linked the token of my thm linked to my bros account what to do to link to mine
Okay
sublist3r
is it active recon or passive recon tool???
passive
oh so much thanks.. ^^
Gave +1 Rep to @hardy mica (current: #386 - 12)
active
its passive , all you can find with sublist3r is public
dirb is active


it sends requests to the hosts in order to find dir
so its active
trust me , just listened it from eJPT coruse some days ago
yeah but its a passive enumeration , man
OK Dansu.. I trust you.. π
well long time didn't use it , but i may be wrong , it uses a word lists ?
nope
you dont send request
ok so am wrong
you get request from what's public
sister company is right now we are in, and we can do active and passive on their web site... but it's parent company we don't have.. but we need to find sub domain.. passive recon we need to do.. no active.. no nmap.. nothing.. just passive..
with dirb you bruteforce the directory
ah no problem , happen to me everytime
Is it passive enough?
you go for Google Dorks , sublist3r and the harvester
with these you should get enough passive infos
more than that , it's kinda difficult
I need to learn Google Dorks...
yes you do
yeah man , not so difficult , but really useful for passive
I will look some cheatsheet for google docs...
is there any room in tryhackme for this?
start from the basics ones:
-site:
-inurl:
-site:*
-Intitle:
-filetype:
-intitle: index of
-cache:
-inurl:auth_user_file.txt
will save it in personal notes.. thanks.. β€οΈ
i don't know tbh , but this time you don't need one.
you can lear it in less than 20 min , trust me π
yeah I trust you.. ^^
oh another thing . Sometimes can be useful use : Waybackmachine.com .
This site will show up how was the website years ago , sometimes can be useful becouse there are vulnerability that they didn't fix
thanks man.. i totally forgot about waybackmachine.. π
thanks for reminding me
cheat sheet is really necessary I now understand.. I didn't made when learning whireshark and nmap and netcad commands
now I find problem with them.. but soon I will make
did I entered any wrong code ?
Please dont post answers here :)
about to say that.. spoiler.. xD as my conscience told me that don't look.. so I didn't look.. I want to do learn by my own..
man every PT uses a cheat sheet , trust me
yes
am I entering wrong code for help or it doesn't woork onn vm?
nono its wrong , + .nse most of the time is not necessary
a little hint . Its --script-help , and use "
yes
man . read again my Hint . It's script-help and uses "
I am a student.. so yes I am learning.. and it's always a good thing to get some experience from seniors.. π really your experience also helps junior people like me.. reading your thoughts also helps us..
I'm new to
too
oh i really appreciate man , but im a Junior too . Most of the people on this discord can destroy me
they are a junior, They just took notes from a certification course
maybe, but you always help me with some answers.. π
yeah.. right now my class is going on..
and my task is to do passive recon on company website.. and find sub domain
discord allows you to edit pictures before sending them and calls it a remix
ah
says you can make one when you download the app but idk which app
π«‘
Thanks Man
Gave +1 Rep to @clever shard (current: #520 - 8)
@karmic hill if you are still struggling let's go with this : nmap --script-help smb-os-discovery
massive
if it doesn't go , means your phone is the problem
no
that is incorrect
the device that the attackbox is displayed on does not change anything
my command?
it worked thanks, the problem was the space after script
Gave +1 Rep to @hardy mica (current: #360 - 13)
ok nice , it works
i have zero experience with nethunter so i dont understand shit about it
you need to catch my Hints
interesting
yes net hunter
@simple valve
oh that's interesting
sorry that was just a test of the ping featuren
@bold dawn i just finished my components list for my new computer to assembly. But i should ask you if you have a good list too. Seems like you are way better than me on these kind of things

so remix is jut ability to edit images and like add a bit of discord spice to it
this is interesting ngl
What's the main use of the computer?
Pentesting studying , SOC Analyst (my work) , and gaming . But tbh i won't go for more than 4070 gtx
gaming is probably the most demanding. at least 32g of ram and an i7 equivalent processor
as long as you have those you'd be fine, a 4070 would do good for hash cracking
tbh on my list i was going for amd 7950x - 64gb of ram , 4070 gtx

then you should be good
i want spend enough money but want to use computer as i want , i use computer 20 hrs a day
do you have any suggestion for a good case ? and should you invest in a network board?
can somebody tell me why I cant ssh to openvpn?
me who games on 16gb ram
I work on laptops. I don't build PCs. Closest thing I do is take old PCs and upgrade them to use as a server
man im actually on pc with 8gb ram. So if i need to change it i want make a very good one
ah well , thank you anyway π
Gave +1 Rep to @bold dawn (current: #75 - 81)
I used to try on 4gb with an i3
same
i actually have an i3
even fortnite sucked
only things that works well are : League of Legends and DBD
oh yeah plus integrated graphics
and i still struggle with DBD
I just don't have time for video games. Haven't played one in at least six months
how can i find sister companies or find out what companies that particular has acquired so far by using Passive Recon..?? any tool is there?? π€ or website ???
google dorking, maybe do a visual scan through source code to see any external links, check out public information like linkedin, and business registration information. Look for connections
look into employees who may match
google dorking
you should find all the infos you need
you can use some "usual" file name to try
is this for work @deft cloak
learning.. not for work
who's your target?
seems like he is in his own componany . But anyway , i think passive recon is not illegal
I am not going to help with any recon, legal, illegal, passive, active, unless it is a bug bounty (which it's not) or a THM/HTB box (which it's not)
I shouldn't have helped where I have already
No man, I am on zoom class
what are you doing so? what web app are you recon?
No man you getting me wrong, I will do all the work.. I just need to know how to do it.. π
then help there
I am aware
I am not helping though, this is a risky world to live in. Ask for help in the zoom class
can't help you with school work.
I recommend paying attention and taking notes.
yeah man he is right
https://www.niiconsulting.com/
This is the company.. right now I am studying in one of sister company iisecurity...
Cybersecurity consulting services in USA, Australia, Saudi Arabia, UAE, Singapore, Netherlands, India. Cloud Security, Digital Transformation, Network Security and managed services and much more
Osint isn't illegal, what you do with the data on the other hand.
Could be illegal or Unethical
and pay attention to your class , surely you can find more infos than here
although I can assure that I am just doing under ethical environment..
yeah ^^.. I am paying full attention.. thanks Dansu..
Gave +1 Rep to @hardy mica (current: #329 - 14)
I will look by myself first.. and if I don't find any way, then I will ask for help.. ^^
also, I believe there are boundaries to be respected with passive recon also
even though in terms of being able to do it and legal it is safe most of the cases
there can be morals implied when you do passive recon
such as how deep you go inside one's life
as scrubz said , more like "the data you get with it". OSINT is not illegal
if it's in scope of your assignment or not
open source bby 
Not everything you find online in the open is legal, btw
I'm aware of that.
sadly not universally accepted. Corps like the proprietary sparkly softwares which some have more holes that swiss cheese.
focus 
turn off discord if you really want to not be distracted?
that is too easy
There is always a ban
hehe
and then where i find my excuse?
they only like it bec of the support provided
actual thing my manager said

I like yearly trips to sparkly software conferences too
sounds like a sad excuse but I'm used to corporate reasoning.
It's really simple really. You can get foss solution and spend considerable time making it work just like you want. While keeping in mind licensing as you work for profit and modify code. Or you can buy a software suit with not your money where support and customer care will do everything for you
Plus your staff probably knows only that suite
Cough cough adobe
stuck in an eco system
On purpose, ye
Buy yourself cookies and say that you can't eat them if you don't focus π§
Works for OS too. Apple/Binbows
the food they give is exquisite
I was forces to use sms authentication because they disabled the methode to use other 2fa applications other than Microsoft auth which I refused. Securitykeys are foreign to them too 
Microsoft lies tho
pki card?
support and customer care is the name of the game
(even though its usually shit)
is there good 2fa alternative if you dont have a phone?
Their qr code for "only works with our 2fa app" works with anything
I tried to reason with them but I only got cookie cutter replies.
From google authenticator, to authy etc
It worked for about 2 and a bit years
I don't want to lock myself our again and needing to use a PC on location yet again 
you mean MICROSOFT ENTRA ID
It's more of a heavily modified account.
Well business, ye
although most people use the PKI card cause it also gives you access on the needed floors and parking lot
we have sms disabled for example
barebones even. I couldn't remove the auth method for the first time. Support unlocked it...
or other OTPs factors
I started using yubikeys everywhere
we have that for the portal and for the business apps we use an RSA hardware token
I wanted to do that too but well some need to be difficult about it.
i'd be amazed if thats integrated with AD CS
so I think these 2 are better alternatives to phone 2fa @wooden totem - the pki card and the rsa hardware token, more fcomfortable for me
Maybe they dislike me because I logged into Outlook once on tor way back 
I'm a marked goose
Red flag goose
are those actual cards or usb
pki card is a card
and the rsa hardware token is a small device with a 6 digit code changing every 30s
pki card is a card with your photo id and the chip
EU ID cards are PKI, for example
which gives you access through some office doors and kitchen doors π and parking lot and also if you have a laptop with card reading cap you can insert it in
and it will read it and import the Cert
and as long as you have it in it will act as a 2FA
that is alien technology for my workplace
I dont know the whole PKI infrastructure @simple valve - I know for a fact that it is integrated somewhere as you need to remove the cert from your Trust Manager PKI - and than only the admins can release you a new PKI card
the company is quite big, we are 111k employees
Hello i have a little problem
at least they have spotty adaptation to win11
describe your problem
I am a premium user and Linux Fundamentals Part 1
My device has gone crazy after classes
really? I thought its quite common nowadays this type of security architecture
Even though I restart my device, I get negative responses when I use the commands in the course content
I didn't expect it to be this bad.
you better ask it in #room-help
tryhackme@linux1:/$ find -name password.txt
find: β./sys/kernel/tracingβ: Permission denied
find: β./sys/kernel/debugβ: Permission denied
find: β./sys/fs/pstoreβ: Permission denied
find: β./sys/fs/bpfβ: Permission denied
find: β./proc/tty/driverβ: Permission denied
find: β./proc/1/task/1/fdβ: Permission denied
find: β./proc/1/task/1/fdinfoβ: Permission denied
find: β./proc/1/task/1/nsβ: Permission denied
find: β./proc/1/fdβ: Permission denied Like This
yeah, you cant read those files
@simple valve but I don't think it is integrated within AD though
because the building is owned by another company which rents the building to other big corps
and there are several in the same building with us
find -name password.txt 2>/dev/null should work. the 2> redirects the standard error (those things you cant read) to /dev/null which is like a special file like a black hole that everything redirected there is gone
cast errors to the void
#room-help for more
OK, but even when I perform the simplest operation on the device as explained in the course, I cannot get the desired response
or who knows, I dont know how this PKI infrastructure functions as a whole - I will find out actually
For example, when I use the ls command, I do not encounter the main files as shown in the course. I encounter different things
PKI is a mystery
PS: I also saw other types of 2FA methods, such as a small dongle
I know some people at Qualcomm and MS used those
dongles... the bane of storage space.
and I believe the dongle itself had a 2FA of its own
brings back the time i needed a dongle to authorize some software
A floppy disk
For pension fund app to run
thats what they used the dongle for
they were devs and they needed the dongle to access the env I believe
and they had another 2FA for the platform
some companies really take the 2FA hard
I'd understand for 2Fa, but a dongle for 50 dollar software was a bit much
sadly not mine 
I think it all comes down to the costs
bet the higher ups use sms and a weak password
can be
some companies know its a risk
but who knows, maybe implementing other infras would be too costful
toggling a setting costs energy, yes.
Randomly ask their permission to clone their voice for security demonstration purposes
Over coffee
"sign here please, i drafted it all up"
yea
at that point just forge the signature
Noo! That would be evil
Works
mobile being funny again
when r u planning for OSWE fluff
have you finished the course and all the labs?
gl!
I remember mknukn being like "i don't know if i can oscp"
damn i remember that too
2022 i think
tbh, i think your words pushed me to get oscp
absolutely worth it too

Does anyone know any websites where I can find some interesting Computer Science/CyberSec quizzes(only MCQs)?
Hello
Might be a little easy for you sense itβs for businesses to teach cybersecurity but
Hereβs another good one https://hackerdesk.com/quiz/test-your-cybersecurity-knowledge
How I can know the result π
Thatβs what Iβm trying to find out lmao
Are you on the phone?
Im on the phone and it doesnβt show the results. Idk if itβs bugged or not
Yeah π
It could only work on pc lol.
Ahh ok
Do this one instead
It's racism π
At my screen it shown only 4 questions
Wait, you guys get results on this one...? Lmao I've been trying to find out the submit or result button
Think itβs broke
Let me explore more the web I think
Man these quizzes SUCK
Exactly, they asking which doesn't relate to cyber security and there is an option agriculture. Which is tooo obvious
Damn my computer died
But i dont know what part
its not the gpu
not the ram
maybe the cpu or the ssd
SSD should be obvious
Are you getting power or nothing at all?
That is illegal and against our community rules π
Thank you
he has taken it down
....
Iβll show proof it was mine
Hey, I am not joking. You will be removed from the community for breaking our rules.
Itβs my instagram
mhm mhm
no hacking of instagrams
I will provide proof
You do not own the service, only the account.
What you are asking is illegal; it is breaking computer misuse laws.
But itβs my accountβ¦.
contact support
You do not own the service, it does not matter if it is your account.
if you have proof it's your account
@rapid merlin Please stop interacting with them π
i'm sorry
You need to contact the service to recover your account. If they cannot do anything then neither can anyone else π
Printers are the worst
Weβve had like 10 sites printers go down
Seems like a new feature caused it :/
Printers or DNS is always one or the other π
It's always dns with printer issues. 
those pesky kids π
Usually when we have printer issues it's because someone moved it to another port..
We had that today as one of the 3 different issues that caused the others
Xerox workplace went down
hey have any one done Theseus. if so can I dm?
that challenge is a no hint challenge
writeups are not allowed but it doesn
't say anything abt asking help
but okie
Turns out it was a new feature that after 6 hours they had to rollback because no one could print
Not a bug. A feature
Yep, global issue and after so many hours they are just like lets rollback
HP or something?
Xerox
hello
Hi
Hello guys
which is the best job role in the cybersecurity
That is subjective
what r y'all talking ab
How much we hate printers
guys
i m so tensed rn
my joining date of my internship is 27th may nd i have main sem exam till 3rd june
i asked my senior they said company dont change joining date
I was installing a scanner yesterday. I had to go and install its legacy driver cuz the new driver crippled it from working.
idk what todo
Just provide them with proof, and tell them you need the time off for those dates as you need to sit exams.
Up to them if they change/honour it.
did you say to the company during interviews/application that you had those exams on those dates?
^ and that.
HR will sort it out with unpaid time off or something
no they asked me to choose dates 4-5 months before my exams
i literally asked my teacher about it nd they also didnt knew about schedule
of this semester
It's gonna be ok
it was way early
-1 at night
π
I forgot to close windows
idk i m so worried in my first interview my interviewer was irritated coz i was stuck nd i could sense it that he just wanted to end it asap
from that my confidence was really affected nd i faced so many rejection until this internshi
Write to HR. They'll figure something out
now all of this happening
i did they said they dont decide joining dates
I doubt the whole business gonna implode because a new intern needs time off
How're you doing fluff?
They'll find a way
its not about tthat its just it will affect my conversion if i take a 4 days off
I really want Friday
it's still 5 days away π
hi
Would you want to stay in a company that can't give you 4 days for one of the most important events in your life?
its microsoft nd its not like they cant give they can but i wanted to give my 100%
if i take leave it wont last good impression to them
Then take the days, and impress them the rest of the internship
It's gonna be ok. Don't stress about the things you can't control
yeah
There is plenty to stress about without it
thanks for the convo
ik right
Yeah i do. I suspect the SSD because rn it runs like normal. When im starting sfc it goes bluescreen. Removed GPU, still issues. Removed each stick RAM, still issues.
Gl with the exam
its just like idonnt know what to do anymore
reading books is so boring , like wdym these models are just on paper and irl models are short and why so much just theory T_T
i m just doing whats good for my career
thnk uuuuuuuuuuuu
You're in the wrong field to find reading boring.
Anxiety do be hitting hard
yeah i also have to prepare for my exams nd all these happening
true
its just feel like i m not confident enough
i feel like someone sucking out energy in me
i am reading this data communication and networking by behrouz, i read 1 chp but 2chp was boring at 1st more specifically the osi model T_T
That would be you!
Stressing out is very energy consuming
true this , u r good at this
Understandably so
yeah
and i am not strong physically so i dont think i can do any thing else if i dont like reading
u r right
I'm fighting my own battle with a HP printer this morning.. getting it set up on EndeavourOS. lol
HP printers are hard on windows and mac and android and iphone
Can't imagine how hard they would be for linux
My HP printer has been absolutely fine on my mobiles and Windows.
How?
I have had 2 HP printer's in my life and both have caused me a infinite amount of trouble every time I go for a print
You just need the appropriate driver.. but wireless printers are a little different these days...
Back in my day.... π§
anyway , anyone here completed the Theseus room? i don't want an hint , just curious of who did
I'd rename you into Skill Issue, but I can't anymore
Thereβs hundreds of jobs that fall under cybersecurity
See that, that's a skill issue
THM didn't updated Twitter logo in social profiles

Any mod active i need help over here
Mods arenβt affiliated with the thm company. Just help moderate
Ohh not that I need help with discord token integration
Brother and got thm account he linked my token to his account
@mossy river
Jabba can maybe help
He works for thm
Well not help but explain
Roger that
I do
He can also help
Anyone have H1 account here?
H1?
Hackerone
Ah
Nah I don't
How can I know if there is any malware hiding inside my mobile device?
Anyone want to jump in VC to do a few basic rooms together later this week please DM. It's helpful for me to talk through stuff as I'm doing it
On Whole Mobile?
Or in some applications?
I am mobile
Didn't you already ask this?
Did I?
What do you need help with?
Maybe not you, somebody definetly did.
Already done this.
Read here
TIL Martians can't file lawsuits in Ontario
Could it be any hidden services running in the background?
why do you think you have malware?
You want to link your THM account with Discord?
Yeah to current account I am using
Misunderstanding alert
Apps open itself. And today I saw some pics which I never downloaded
Whatsapp auto save?
WhatsApp*
Sound more like a broken app
Why am i lvl 5 now
Nah I usually keep this turned off
You levelled up?
I have lbl 6
Screenshot?
my bro did verified that token to his account rather than as I said to do that
You share accounts?
Malwarebytes have an android app I think
Oh , yeah he was using my laptop for thm and his account logged in on discord at the time of token integration
Partially in past
Its not important i dont care about role. If u wanna check, username same as here
You're 0x5.
Weird, i remember seeing 0x6
On here it shows your next rank.
Next rank, not current
Against more T&C.
You'll need to ask your brother do ping a mod if you want the account removed.
I can;t just take your word for it. π
Except when you are 0xDπ
Roger that
Maybe new levels soonβ’οΈ.
Hehehe
hello can someone help me the Room Vm won't work in OpenCti task4
/soc level 1 /threat intellegence/ OpenCTI/ task4
Im sorry everyone i just need an answer thankyou
Does he have to leave this server?
I've already asked you to stick to #room-help π
Be patient.
Not at all.
Scrubz do you have a hotkey for the π emoji? 
It's probably just on the top of the emojis list
Also i think discord has setting to convert :) into the emoji
Hi bro , isn't the problem fixed yet
I forgot about that!
Good point
Nah, text prediction innit? π
Everybody is volunteers, just be patient π
Nope they are asking for your permission
They told me to do this
This the bro of trex?
@sick lance how can j resolve this? , i apologise for the cause
Can you dm the account which the account it linked to?
username of thm right?
DM sent
Call me bro when it's fixed ima going for dinner
Can you dm me?
Isn't my brother dm?
Is it possible to recover permanently deleted photos on iPhone or nah?
Want to confirm π
Depends...
Dm me your token π
Did
Man we need some action in this chat
What type of
Done
What if iCloud data restore says something like "no files to recover"
is it gone then?
Idk something interesting
More than likely.
Damn, i lost all my vacation photos 
Do we though?
Because when something interesting does happen, people interfere, or send gifs or emoji in chat which makes is slightly harder to moderate.
This isn't ideally a drama server.
Depending on your blue team skills, there maybe software that specialises in this sort of event
I guess
Still interesting for me maybe not you cus you gotta moderate it

The best way to learn the importance of backups is losing something important unfortunately.
BLEGH
What kinda stuff or topics your interested in
i accidentally deleted it in my phone and my icloud says theres no back ups π
even tho icloud was turned on
welp gotta be more careful next time
3-way back up
sorry, 3-2-1 is more accurate
soooooo how does shadow explain losing their 2 tb external ssd backup drive???
Well of course cyber but I also like games, outside , horticulture
That's why you always have 3 copies, in 2 different media, with 1 in a different location.
copy one is on shadows compujter
copy 2 is on github for dotfiles
and on sd card for password database and pictures
1 is on a usb stick at grandparents home
I don't do it for everything, but for important things like my photos, yeah. I don't wanna pay another 2000 EUR to extract data from a broken drive.
the thingy with the ssd was it was a 100 backup of even none vital files from shadows /home dir
sucks to have lost it
if it just sucks, and can be easily replicated, then meh.
I remember I was physically sweating when losing my only backup of my pictures.
What did I miss
shadow being annoyed at losing one of their backup medi
Shadow need an offsite encrypted backup? π
My account is back linked , hip up mod
what vm do u guys recommend for windows ive been using vmware for a while now but i had heard that there r better alternatives
the attackbox is too sluggish for my liking
vmware is one of the highest recommended. virtualbox is good but slower iirc.
did anyone in here try lion's mane?
aight guess ill just stick to that then thanks
Gave +1 Rep to @normal fable (current: #55 - 119)
fwiw, I usually give 4+ cores and 8gb RAM to my VMs.
Same
i should increase my host's ram lol
my laptop only has 8 gigs of ram
Kali doesn't need that many cores... lol
ima see if it has an extra ram slot
my system can handle that easy though. lol
what kind of rig you got?
Personally I won't use anything that has less than 16gb of RAM if I can help it.
passphrases and passwords are similar, but passphrases are just very long and easy to remember right?
Gotta have all my browser tabs open. π€£