#general

1 messages Β· Page 143 of 1

jagged moon
#

They did what???

sick lance
#

Changed it ages ago.

Less sugar 😦

crude stump
#

It’s basically steps

#

With answers of course

undone siren
#

whats the benefit? isnt the whole point of doing this to learn?

rapid merlin
#

When downloading software, you can check if the hash of the file matches the hash that the software developer gave you right?

crude stump
#

It is

sick lance
jagged moon
#

Nooo!!!

rapid merlin
# sick lance Correct

So what if for example someone took a screenshot of a JPG? Would that screenshot have a different hash than the original?

crude stump
# sick lance Correct

But if it’s the wrong hash what’s even the point of checking. Still downloaded bad software. Investigation Maybe?

sick lance
pine stratus
#

who plays chess here .

#

??

sick lance
jagged moon
blazing granite
sick lance
#

Malicious

jagged moon
rapid merlin
#

Okay nice so a matching hash is a sure way to tell the file wasn’t manipulated with?

undone siren
pine stratus
#

come back again

crude stump
#

That’s the same idea

jagged moon
lyric escarp
#

Hi! Guys I don't know if this server is for this but i have a problem with offline ai ollama on my cmd, does someone knows anything about ollama?

jagged moon
#

Good writeups don't just provide answers. They narrate the methodology and way of thinking

#

Why the author did this then that

crude stump
#

Personally the only time I glance at a write up is if I’m struggling on a answer for hours and am not give anywheres with it

#

And even then I try to get the answer myself after

jagged moon
#

I read writeups all the time!

jagged moon
#

See the software people used. Tools. What they did different

undone siren
#

ohhh okay i just misunderstood the point lol i thought there was people just copy pasting asnwers to get through the lessons faster lmao

jagged moon
#

Etc

pine stratus
crude stump
rapid merlin
blazing granite
undone siren
#

i see now

pine stratus
crude stump
rapid merlin
#

I’m curious how does an Antivirus detect malware or an AI detects illegal multimedia, is it the hash of the file? Is it the file not being somehow verified?

pine stratus
sick lance
jagged moon
#

For media, it's also matching it like shazam does

#

Looking for close enough match in sample dbs

crude stump
#

Also the antivirus prolly has a data base of known malicious hashes too. Sort of like virus total

rapid merlin
#

That’s so clever

#

I wish I could create my own software like that

#

Like a noob version

chilly veldt
#

Fluff, I will be walking like you tomorrow, bent over with a bad back

jagged moon
#

Nooo

crude stump
jagged moon
#

The og Shazam

chilly veldt
bold dawn
#

I am tired

jagged moon
chilly veldt
jagged moon
crude stump
bold dawn
#

taking over the security work left me with a lot to catch up on

blazing granite
jagged moon
bold dawn
#

however, I am in charge of our web security, and doing a lot of our general security as well

twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #1 - 2185)

molten sky
jagged moon
#

That's not hi

#

That's my new nightmare

gray sonnet
#

that's....somethings not right in that...I just can't put my finger on it

blazing granite
molten sky
lyric escarp
#

Guys I don't know if this server is for this but i have a problem with offline ai ollama on my cmd, does someone knows anything about ollama

bold dawn
crude stump
#

Anything about that google position?

blazing granite
chilly veldt
normal fable
clear jackal
twin ridgeBOT
#

Gave +1 Rep to @clear jackal (current: #20 - 390)

rapid merlin
#

yo whats up i got question

#

what book should i buy right now at the star

#

start

molten sky
#

ngl the only time i use books for this stuff is when i'm reviewing for a cert or something

#

otherwise all labs

rapid merlin
#

oh haha but i like learning from book

molten sky
#

things just move way to quickly πŸ€·β€β™‚οΈ any book would either be outdated or highly theoretical i feel like

#

someone may have a suggestion still i just can't picture it lol

clear jackal
molten sky
#

yeah i kinda just assumed sast/dast bc of thm, but could be anything really

gray sonnet
#

What do you guys think about this build?

molten sky
#

too much nvidia

gray sonnet
#

there's literally 1 nividia component...

#

well here's an intel one

#

which one's better

molten sky
gray sonnet
#

I am not going for an AMD GPU

rapid merlin
#

is try hack me even working?

gray sonnet
#

bad experience

gray sonnet
molten sky
#

weird seeing that the 13700 has 16 cores but 24 threads

gray sonnet
#

e cores

molten sky
#

i forget they're doing that weird only-perf-cores-hyperthreaded thing now

gray sonnet
#

yeah

#

the intel one significantly more expensive though

molten sky
#

is it? it seemed close at first glance, like 50 bucks

#

not quite?

clear jackal
#

What's your intended use Vain?

gray sonnet
#

well, mostly an AD lab and medium gaming

#

I'm getting the 4070 cause I'm getting ready for GTA 6 lol

molten sky
#

if it were me, i'd pick the 13700 over the 7700 simply due to thread count, but that's more valuable for my workload nowadays

clear jackal
#

I have the Tomahawk motherboard, it's decent

gray sonnet
#

aye, it falls in my budget so I chose that

#

it has 3 nvme slots, so I have a lot of upgrade space in the future

clear jackal
#

You're missing slow storage

molten sky
#

i would swap the 1tb nvme for a 2tb tbh, if within budget

clear jackal
#

1TB seems like a lot, but it really isn't now

molten sky
#

relatively cheap nowadays and games are big af

gray sonnet
clear jackal
#

You sure it's SATA?

gray sonnet
gray sonnet
molten sky
#

i'm also biased towards samsung nvme drives but i'm sure WD is fine

gray sonnet
#

I'm already overbudget by like 120$, but a few more bucks couldn't hurt

gray sonnet
molten sky
clear jackal
#

CL30 is a higher latency RAM, but I'm not sure how much that actually changes things now

gray sonnet
#

well, it is DDR5, I have to look into what's the lowest latency DDR5 can get and get the lowest one that falls in my budget

molten sky
desert shuttle
#

wow

molten sky
#

could be wrong ofc

clear jackal
#

Also, I'm not sure 750 watts is actually enough for a 4070

hardy mica
molten sky
#

i agree

gray sonnet
#

according to the wattage calculator in pc partpicker it should be enough, but I am going for the 850W PSU, it's just not on the pc partpicker website, but available where I'm getting my PC

clear jackal
#

I'm not sure how PCPartPicker calculates it's power requirements

molten sky
#

although i still say amd > nvidia

clear jackal
#

I don't remember if it takes load in to account

gray sonnet
#

the gigabyte 850W fully modular one is just isn't on pcpartpicker

molten sky
hardy mica
#

what happened to @sand trench ?

clear jackal
#

If you go with the AMD CPU, I would probably go with an AMD GPU for their RAM sharing and fabric stuff. I forget what they're actually calling it.

hardy mica
#

its kind time i don't see him/her/she/them

gray sonnet
molten sky
clear jackal
#

7800XT I think?

whole yew
molten sky
molten sky
gray sonnet
#

if I go with the RX 7800XT, it's actually cheaper than the RTX 4070

#

huhhhhhh

clear jackal
whole yew
ashen blade
#

how do u guys fix the browser jumping around all over the place on the attackbox? thank u

whole yew
rapid merlin
molten sky
whole yew
gray sonnet
#

okay, so what do you guys think about the R7 7700X and the RX 7800XT combo?

#

well, google says it should work flawlessly

clear jackal
gray sonnet
#

but πŸ€·β€β™‚οΈ

rapid merlin
molten sky
#

powering a 1060 3gb lmao

#

that fan didn't spin once

rapid merlin
molten sky
#

i think that psu is somewhere deep in a box in the closet now...

rapid merlin
#

I got the Core II (newer version) but thats because my 4080 Super has a newer connector

clear jackal
#

I believe juun, it's just something that people don't always take in to account or put the total draw too close to the maximum output of the PSU

#

You don't want too much overage either

whole yew
#

The bigger problem is when everything goes from 0-100 at once. If one isn't benchmarking the entire power curve, the amp jump on a single-rail PSU can cause a power stutter. Multi-rail PSUs have other problems

rapid merlin
gray sonnet
#

If I do go with the RX 7800XT I can manage to fit the R7 7800X3D into my build

molten sky
#

you can also run linux without wanting to kys

rapid merlin
clear jackal
#

Corsair or Seasonic are two brands that are trustworthy

gray sonnet
rapid merlin
#

If youre into Esports, better CPU is a priority

If youre all about high resolution high details, GPU is a priority

clear jackal
#

Can you explain?

molten sky
#

a bad piece of ram will stop you from turning on
a bad psu will fry your entire build

rapid merlin
#

Because when you lower the graphics to the lowest 1080p, the game utilizes your CPU the most

and vice versa with the GPU

molten sky
#

power supply issues are also a massive pain in the ass to diagnose

#

not dissimilar to ram issues

bold dawn
rapid merlin
sand trench
clear jackal
bold dawn
#

hi shadow

molten sky
#

huh. i didn't expect that much of a score difference betwen the 7800x3d and the 7700x

clear jackal
#

Single core performance is important for games but to sacrifice a good GPU for a better CPU seems odd and goes against recommendations typically.

whole yew
#

buying a pc for a single game is a huge waste of money. spec it out for budget, and then consider performance within your budget.

molten sky
#

some titles are very cpu bound just like some titles are very gpu bound πŸ€·β€β™‚οΈ

whole yew
#

Some games are still CPU bound, but that's getting more and more rare

molten sky
gray sonnet
molten sky
#

otherwise gpu all the things

rapid merlin
#

i wont sit here and try to convince you

try it out yourself

not matter what game youre playing, when you lower the graphics to very low 1080p, your CPU takes care of high frame rates

once you set everything to MAX 4K, your GPU will be taking care of that

gray sonnet
#

32 gigs of ram should be enough for an AD lab right?

whole yew
#

Unless you are an esports pro or streamer who uses the game to pay the bills...... That's a huge investment for one game that's going to be outdated in a couple of years

molten sky
clear jackal
molten sky
rapid merlin
#

not the game itself

gray sonnet
#

aye!

rapid merlin
#

You have to try it instead of denying it without trying it

clear jackal
molten sky
hardy mica
molten sky
clear jackal
rapid merlin
#

Try it and see guys, there's no point in arguing when I'm the only one who actually tried it here

#

You're just disagreeing without trying it

whole yew
#

You're not providing evidence of the claim.

molten sky
#

you just have a fundamental misunderstanding of what happened

whole yew
#

Anecdotes aren't evidence

molten sky
#

you removed a bottleneck, you didn't offload to the cpu

clear jackal
#

"I went outside today and saw that the sky was blue, this means clouds are a government construct." that's the level of validity you're providing, since you aren't providing actual evidence.

rapid merlin
clear jackal
#

Same

rapid merlin
sand trench
#

BLEGH

molten sky
#

you can't increase performance by lowering performance (this sounds weird as typed)

shut hawk
wild rose
#

Why would I want to play a game on Roblox's quality level? /shrug

whole yew
#

alright, the quality of this discussion is degraded to the point of not being useful to anyone

clear jackal
whole yew
#

move on to ta new topic pliease

clear jackal
#

The weather was decent here today

molten sky
#

ayyy gcia is a good one

clear jackal
#

I am going through account hell right now though, reapplying to all the accounts that I already had at my previous employer

#

Zeek got renamed, right, or was that another tool?

#

BHIS made it?

molten sky
#

i think so?

#

huh.

#

wasn't it Bro

#

think it became zeek in '18

clear jackal
#

Yee, I think that's it

#

Unless they renamed another tool of theirs lol

rain pewter
#

Hi

clear jackal
#

Oh, RITA is BHIS

uneven hedge
#

Hey folks how are we doing, i am currently wrapping up the burp suite unit.

sand trench
#

dragonfable best in slot guide

#

GOD MEEP MOOP THIS IS NOT FIREFOX

hardy mica
#

why xfreerdp is so slow?

#

for lord

normal fable
#

What I mean is how are you liking it.

#

crap.. burp isn't loading in Kali.. Java errors.. 😦

umbral bay
sand trench
molten sky
#

:java:

#

damnit

#

why did it display then just give me an error and send the text

#

discord sucks

normal fable
#

Because Java. 🀣

buoyant tree
#

How do yall deal with stripped screws

normal fable
#

Is this a dirty joke?

buoyant tree
#

Nop

normal fable
#

lol

buoyant tree
#

Repairing a laptop just trying to remove a stripped screw

normal fable
#

I usually use my fingernail and put side pressure on while unscrewing. Works most of the time.

#

It's likely the threasd inside and not the screw itself.

buoyant tree
#

yeah, but the screw is a circle right

chilly veldt
#

Magnet

whole yew
#

what's stripped, the threads or the head

buoyant tree
whole yew
#

your best bet is an appropraitely sized removal bit

buoyant tree
buoyant tree
whole yew
#

but be aware that it's more likely than not you'll damage something else getting out that stripped screw

molten sky
whole yew
#

it's why it's important to not overtighten

buoyant tree
whole yew
#

and to use the appropriate locktite and not the green bottle

buoyant tree
#

still spinning

whole yew
#

the green and red locktite have no place anywhere close to your electronic cases

molten sky
normal fable
#

Reverse drill bit..

whole yew
whole yew
normal fable
#

Those don't work all the time.. but yes. Appropriate step.

molten sky
#

we had a bucket of red loctite at one point and i would literally just dip bolts in the bucket before using them sometimes

buoyant tree
#

yeah ... I don't have all the equipment talked about herer

whole yew
#

if the extractor doesn't work, then try to drill it out.... but again, be aware of the risks

normal fable
#

Last resort, dremel a slot in the head and use a flathead screwdriver to extract.

whole yew
#

a screw extractor set is pretty cheap

normal fable
#

If it's a laptop screw then it's pretty small too..

buoyant tree
normal fable
#

Is it surface ot deep set?

#

or*

buoyant tree
#

surface

normal fable
#

ok

#

tiny metal saw blade works too in a pinch..

lone thistle
#

hello thm

normal fable
#

Ben!! Hi! πŸ™‚

#

I feel like I haven't seen you around in a while.

lone thistle
#

Hello:)

#

yesyes

#

busy πŸ˜„

#

workin' on all sorts of things, keeping out trouble, etc πŸ˜„ you know me

#

how's tricks? @normal fable

normal fable
#

tricks?

crude stump
#

Hello Ben

lone thistle
#

oh sorry british saying

#

how's things

normal fable
#

good good. Besides the broken wrist.. I keep breaking things.. lol

crude stump
#

Cmon moo get to the British slang πŸ€¦β€β™‚οΈ

normal fable
#

I'm working on it.. moo...

lone thistle
#

oh eek. sorry to hear

crude stump
normal fable
#

I have a doc appt tomorrow to see if I need surgery or not.. hoping not.

normal fable
crude stump
#

Great

#

Or should I say brill!

normal fable
#

Trying to pop this thm box.. man.. I need to knock the rust off. lol

lone thistle
#

What room is it?

normal fable
#

Brick Heist

buoyant tree
#

oo thats a fun one

undone siren
#

Just finished Pre Sec Path LFG boys

#

now what next?

buoyant tree
#

.

undone siren
#

oh perfect thanks!

uneven hedge
#

Also I got my act scores back, exceptionally good scores for the scholarship im applying to

normal fable
#

party time! πŸ™‚

mossy river
#

it's almost honk mimim time

normal fable
#

have a good honk Jabba. lol

rapid merlin
#

Guys, Who try to exploit CVE-2023–45866
Did any of you find a problem with the success of exploitation?

normal fable
#

Trying to use mitmproxy as a replacement for burp suite proxy.. can't get that to work.. 😦 502 error... bah!

rapid merlin
normal fable
#

aha! I had to add --ssl-insecure to the cmd.. lol

clear jackal
crude stump
#

when the room says artefacts, are they refering to apps? or like logs that shows all the actions thats being taken on the computer

rapid merlin
lone thistle
umbral bay
lone thistle
crude stump
#

thanks

rapid merlin
# umbral bay We can only help with THM provided practice targets.

In fact, I did not want to help with that. I heard that there are people who did not succeed in exploiting the vulnerability on unpatched devices, so I wanted to know the General effectiveness of this vulnerability.
I tried on two Android 7 and Android 4.4.2
And It worked for me

undone siren
#

while doing these practice ssh's theres random pngs in the ls directory, is there any way to actually view these or are they just null files added to make it more realistic

umbral bay
molten sky
#

a wild timtaylor appeared

umbral bay
rapid merlin
molten sky
#

sus

blazing granite
#

@umbral bay Hi!!! How are you?

#

Mr Productivity what's up? πŸ™‚

umbral bay
molten sky
crude stump
#

Not living up to your name huh

molten sky
#

debating if i wanna keep applying for other roles, hit a bounty, or jump onto irc and handle some things i've been putting off for a week

molten sky
#

productivity to the abyss

#

straight to the void

#

nonexistent anymore

umbral bay
molten sky
#

@umbral bay what is @throwback

#

cause it's not the pepsi

rapid merlin
# umbral bay Anyone helping you, concerning a non-THM target, inherits potential legal risk i...

I will repeat what I said πŸ™‚ , I can learn on the THM room and find help here and after understanding the process I can apply what I have learned in reality.
If a person's goal is bad, nothing will work, Any little piece of information can be turned into something bad. This is similar to the way you want to use a knife: do you want to cut bread with it or do you want to kill someone with it?
In any case, we cannot prevent the sale of knives, Because we do not know what the buyer will use it for

umbral bay
#

Throwback was a legend of a Network.ℒ️

umbral bay
undone siren
blazing granite
umbral bay
blazing granite
#

@umbral bay sometimes my linguistic side comes to light πŸ˜‚

rapid merlin
umbral bay
twin ridgeBOT
#

Gave +1 Rep to @umbral bay (current: #16 - 441)

umbral bay
#

They say Freysian, spoken in the north of The Netherlands is very close to Old English. I don't speak it myself, except for the word Jiskefet, which means trashcan. πŸ˜„

blazing granite
blazing granite
umbral bay
blazing granite
#

Some how Odin is compare to Mercury in Roman mythology that's why Wednesday in romance languages like Spanish (Miercoles) and Italian (Mercoledi) is actually the day of Mercury πŸ™‚

blazing granite
umbral bay
#

Odin is very Faustian, nay, Faust is very Odinite. πŸ˜‚

#

If you like mythology and symbolism, my favorite dictionary is The Penguin Dictionary of Symbols, by Chevalier and Gheerbrant.

blazing granite
sand trench
#

and shadow is gonna go unawake by lying in bed listening to beep boops for the sleep sloops while meep moops

blazing granite
#

I have the Mytology dictionary of Pierre Grimal

crude stump
#

W vid

blazing granite
#

When I was a teenager I was really into mythology and I learn Greek, Roman, Nordic, Babylonian mythology, etc I went into a kind of a rabbit hole for a few years πŸ˜‚

blazing granite
#

Food For Centaurs it's also good πŸ™‚

umbral bay
molten solar
#

I know that they were big and fancy about using notepad with emojis and using like a windows key to input them.. Is it a matter of a simple reg key to prevent "notepad" from displaying emojis in the middle of my app dump?

#

this just feels like someone is trying to t-bag

crude stump
#

Adds character

molten solar
#

Indeed

molten sky
blazing granite
molten solar
#

@molten sky .. Ligating fonts, like ceaser? none of those fonts are here i think .. this is just straight up .. conslas

umbral bay
molten sky
#

making actual symbols

molten solar
#

OH

#

In writing and typography, a ligature occurs where two or more graphemes or letters are joined to form a single glyph.

molten sky
#

same thing here, really

molten solar
#

That was the definition i was thinking of

#

Yeah, it turns 😦 into a frowny face or πŸ™‚ into smiley etc

#

: ) : (

molten sky
#

!= might become the =/= one char symbol for instance

#

cause people want to be special or something idk

molten solar
#

+=1 for thumb up etc

#

BUT .. why is this in notepad

#

Its notepad, its not "clean my toiletpad" its not "make my sandwich pad"

blazing granite
molten sky
#

you can read?

blazing granite
umbral bay
blazing granite
molten solar
#

How do you manage te hair thing lol

#

Me? I was getting MPB @ 16

molten solar
#

Haha.. thats the secret to looking young.. just cut all that gray hair off @ the scalp

#

WOOOT

crude stump
#

Buzz cut

molten solar
#

one down, 1 to go..

crude stump
#

Congrats πŸŽ‰

molten solar
#

If you have an existing aws cert i think you can renew it for free via cloudquest

#

At least up to .. .. the sa series?

#

Okay, time to celebrate. one thing done

sharp spear
#

Hi, I'm a beginner student in the world of hacking, and I recently became interested in studying about DDOS attacks, so I hosted a website for my domain, and used some tools from GitHub, but it seems that they are just toys, and don't work at all, what do you recommend?

twin cobalt
#

most of the hosting platforms would have some kind of DDOS protection

cosmic pendant
buoyant tree
#

read the oxford one

#

and another one which told the history in a story like form

#

just want the general knowledge

whole yew
molten sky
#

hell, even port scanning your own VPS is often against ToS

buoyant tree
#

Worried about the book you're writing right now Rex

blazing granite
# buoyant tree aye, any recommended books

The White Goddess, Greek myths and Food For Centaurs all of them by Robert Graves. The Twelve Caesars by Suetonius if you like roman history. If you want you can send me a DM with what you like and I can recommend some more πŸ™‚

molten sky
twin cobalt
buoyant tree
#

NO

#

NO

#

NO

sharp spear
molten sky
sharp spear
#

The host website allows this

molten sky
#

that sounds..questionably vague

twin cobalt
#

and odd, to say the least

sharp spear
#

I can't say, but there is no danger in carrying out this type of attack, the strangest thing about it not working is that the site does not have protections itself

buoyant tree
#

uhm ... I have another concern for you

#

Probably READ the source code for the program you are running

#

A lot of those programs also have malware in them

molten sky
#

wouldn't be the first time a PoC or so-called security tool was just a trojan

#

awfully ironic too

buoyant tree
#

Usually they are copy paste clones of popular projects rebranded

sharp spear
#

It's the "gamkers-ddos" tool. I saw some videos talking about the tool, and it doesn't look like some type of malware. I'm running on a virtual machine.

molten sky
#

pretty much why i wrote my own debloater, lol
every one out there was questionable feeling and so large and oddly written that they would be a PITA to audit myself

buoyant tree
molten sky
#

lmfao @buoyant tree this is the first section of that script

print ("\033[92m")
print "________________TRYING TO REACH THE SERVER_____________________"
time.sleep(5)
print "_________________ESTABLISHING CONNECTION_______________________"
time.sleep(5)
print "_________0100100 BYPASSING SECURITY LAYER 001010_______________"
time.sleep(5)
print "_________________CONNECTION ESTABLISHED________________________"
time.sleep(5)
print "    DDOS ATTACK STARTED. NOTE: ONLY FOR EDUCATIONAL PURPOSES"
time.sleep(3)
buoyant tree
molten sky
#

literally just a while true sending urandom bytes to the ip

buoyant tree
#

Man I could write a better DDOS tool than that while not sleeping for a week

twin cobalt
#

lol

buoyant tree
#

And probably also riding a bike

#

Its just stupid

molten sky
#

there's also this gem

print "Note- This Tool An Illegal Tool & It's Only For Educational Purpose.. Use It At Your Own Risk,We aren't responsible for your actions"
#

just noticing it also seems to increment port number on each iteration (resetting at 65534)

sharp spear
#

πŸ˜…

molten sky
#

yeah we can't really help with that here unfortunately

buoyant tree
#

For which you can #start-here and understand how everything works and it will also give you a overview on the law if you follow the pathways

whole yew
#

regardless, there really isn't an ethical use of DDoS tools. "As a learning experience" isn't sufficient for us to allow DDoS discussion in this channel

buoyant tree
#

From what I read even in a assessment DDoS isn't given as a requirement

#

and is usually deterred from

whole yew
molten sky
#

testing owned infra is really it, but that's both rare and way beyond what anyone just learning would do

sharp spear
#

This is a curveball, how are we going to test without ''testing''?

molten sky
#

math and theory

merry garnet
molten sky
#

and prayer

umbral bay
sharp spear
molten sky
# merry garnet But we have to know real world applications

yeah that's really the only one tho -- testing owned infra or in collaboration with your cdn/csp/etc, and often would need to be worked out with your isp itself as well since it can cause a degredation of service for those not even related to yourself or your target

buoyant tree
molten sky
#

it affects people not even related to what you're hitting

merry garnet
molten sky
#

ehm

#

translator?

umbral bay
molten sky
#

scope? what's that

sharp spear
#

This learning throughout the virtual security process is very curious, if it fell into the wrong hands it would really be dangerous, but my question was more about not wanting to harm anyone. I just wanted to know how I can study this more deeply beyond the basics

#

I don't know if I'm overstepping some process, but it was something that interested me πŸ˜…

#

sorry if that seemed stupid to you guys

twin cobalt
#

there are no stupid questions

buoyant tree
#

it starts you from the basics

#

Also its the same as knowing how to set a fire

#

You can use it for heat and other stuff

#

Or you can use it to burn things down

sharp spear
twin ridgeBOT
#

Gave +1 Rep to @buoyant tree (current: #132 - 50)

sharp spear
molten sky
sharp spear
#

πŸ˜‚

twin cobalt
#

is it not?

#

never said the answer is granted!!!!

molten sky
#

i'm bouta get nuked

sharp spear
# twin cobalt is it not?

I also believe that knowledge is something unique to each person, each person will always have doubts

blazing granite
sharp spear
#

Thats sure

sharp spear
#

Sure πŸ™πŸ˜Œ

blazing granite
#

I so want to buy a framework laptop, maybe my next laptop πŸ™‚ I like the idea

molten sky
#

i support it

buoyant tree
molten sky
#

can't beat that

buoyant tree
glacial raptor
#

hi guys, anyone here works with azure cloud can share some related groups? Much thanks in advance blobheart

blazing granite
molten sky
#

this is a real error page github just presented me

buoyant tree
#

lucky

blazing granite
buoyant tree
#

I had a taekwondo teacher who taught me something important

#

how to dance

next grove
#

Hey chat. I had an unforseen event coming up, and it brewed up this question in my head.

#

Even after two years of graduation, would it still be possible to land an IT or cyber job?

molten sky
#

"signed an nda sorry"

#

but actually tho, yeah it's doable

#

just stay up to date on shit and stay practiced

#

don't get 5 years behind because you haven't touched a computer in 2

next grove
#

Luckily, I've been doing THM stuff everyday

#

behold

#

woah what a giant number

molten sky
#

the fuck

#

F12?

next grove
#

ye

#

even with that

#

still no job

#

the world is funny

molten sky
#

shit you actually are at 690

next grove
#

nice huh?

molten sky
#

btw there's someone with your same username but lowercase who has nothin yet

#

btw x2 your linkedin button no worky

next grove
#

really?

#

hum

#

lemme fix

undone siren
#

aight so i have a major problem

molten sky
#

same

undone siren
#

i cant stop doing fucking rooms theyre too addicting lmao

next grove
#

thats not a problem

molten sky
next grove
#

bro I can't

#

use my LinkedIn URL in the webpage

#

On my profile page

#

for some odd reason

molten sky
#

did you ever set a username

#

it's not your name

#

otherwise you can just go to your linkedin profile and copy whatever is after the /in/ part of the url to thm

next grove
#

There

molten sky
#

https://linkedin.com/in/THISPART

next grove
#

I just placed my LinkedIn URL in my "Personal Website" entry

molten sky
#

also no worky

next grove
#

Bloody hell

molten sky
#

the part that is your name and numbers

#

put that as your linkedin username

next grove
#

ok

#

there

molten sky
#

ayyy there we go

next grove
#

pog

#

Now then

#

... I ran out of time

#

shit

#

but

#

but but but

molten sky
#

lmao oh well

next grove
#

tomorrrow is my fridays

#

my french fries fridays

#

im gonna have frency fries on friday tomorrow

#

for dinner

#

and then

#

I can do more XSS stuff

#

until then

#

goodnight!

molten sky
#

night!

boreal scarab
blazing granite
#

time to catch some πŸ’€

molten solar
#

@boreal scarab thats a neat pic

#

what did you do to gather their attention

boreal scarab
#

Birb holding phone

molten sky
#

nothing is worse than tryna download shit via tor

#

my download est just hit 1d2h

boreal scarab
buoyant tree
#

Typed out a question about a problem I was having and realized how to fix it when I typed it out

#

@boreal scarabMind if I dm, finalizing lockpicks

molten sky
chilly veldt
#

Mornings

molten sky
undone siren
#

trying to do this room but the site will not load says connection timed out but machine says its running properly

unique marsh
worn thorn
#

boi

brisk tree
#

Today is the last day of a huge cyber conference in Dubai and I want to go but still ill. I don't know πŸ˜… scared I'll infect everyone

worn thorn
#

that's unfortunate. Do they also put it online afterwards?

brisk tree
#

I don't know. But this would have been my first conference so wanted to go in person

#

Just don't want give everyone the flu

worn thorn
#

yea. Well get better soon blobfingerguns

molten sky
#

when people ask just say you've contracted ebola

#

they'll understand

brisk tree
#

Ahahahahahahahahahaha

#

I'll see how I feel after a shower. Just going to be daunting going by myself. Won't know what to do or anything ahaha

molten sky
#

alcohol can fix that last problem

brisk tree
#

I can't turn up drunk to a conference in the UAE 🀣

molten sky
#

oh shit that's right uae

brisk tree
#

Ahahahahahaha

molten sky
#

that piece of information slipped past

brisk tree
#

Ahahahaha

chilly veldt
#

Just sitting here in the train and some random Arduino tried to connect to my phone with Bluetooth lmao

deft cloak
#

Should I buy The Hackers Playbook 3?

chilly veldt
#

@sick lance

chilly veldt
brisk tree
#

Ahahaha I bet

chilly veldt
#

Oh? It's released for free?
I thought that was piratedπŸ˜…

#

I wouldn't take the chance to talk about or use pirated booksπŸ˜…

brisk tree
#

Ahahaha yeah I get that. I don't really use it anymore

naive violet
#

@brisk tree Please don't suggest pirating books

naive violet
#

@rapid merlin Please don't suggest pirating books

#

@deft cloak Please don't discuss pirating books.

empty ravine
#

Hi everyone! Is anyone attending Cybersec Europe 2024 in Brussels (29th/30th May)?

deft cloak
naive violet
#

Yes.

deft cloak
#

pirated? πŸ˜…

naive violet
#

Yes.

deft cloak
#

oh okay

#

Should I buy the book as beginner?

#

or there are other books which I have to look before the hacker playbook 3.. ? πŸ€”

#

and yes I mean actual physical book buy from Amazon

brisk tree
#

Id check Amazon or Ebay. They are where I usually get most of my stuff from

sick lance
#

Imo it's an old book

#

I'd get one more up to date.

brisk tree
#

What the third one

#

Thought that was the latest one

deft cloak
brisk tree
#

Or is there a fourth now

sick lance
#

Still 2018

deft cloak
chilly veldt
#

I mean, it's the latest but still old

deft cloak
#

I looked for Preface of 1, 2 and 3 πŸ˜…

sick lance
#

I mean, what sort of book do you want?

deft cloak
#

As a newbie.. I don't know this

#

so I should not buy that book..?

brisk tree
sick lance
#

Red team, blue team, purple team, crypto.

To suggest a book, I'd need a more specific category πŸ˜…

deft cloak
#

beginner.. literally beginner.. which let me clear theory part about Ethical Hacking..

brisk tree
#

See what they have on the Kindle app if you have it

#

See if you can guy anything from there

#

See

deft cloak
#

I recently only saw that there is something called CIA triads and before I don't know about them also.. also learned recently about cyber kill chain from tryhackme Intro to Cyber Security learning path

sick lance
#

2021, but no starch press books are good.

#

Have a look on humble bundle, they regularly pop up on that

brisk tree
#

If you want to learn the basics cisco have a free ethical hacking course you could start with. It's 70 hours

sick lance
#

Any more q's.

Plenty of resources in #bookclub

brisk tree
#

And goes over the basics

deft cloak
#

let me look for amazon of my country.. πŸ˜…

sick lance
#

Doesn't need to be Amazon.

deft cloak
#

yeah it's available on my country amazon too..

#

Thanks ^^

#

Thanks @sick lance

twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #1 - 2186)

deft cloak
brisk tree
#

I've started it and it's pretty good. Get 30 labs to do too

gray sonnet
#

Yo @molten sky mind if I DM?

deft cloak
#

give thanks have cooldown??

gray sonnet
#

5 minutes iirc

deft cloak
#

I will thanks MadScottishBurd after 5 minutes than xD

brisk tree
#

I didn't realise how many books there were for pen testing

chilly veldt
#

@sick lance did you know it's going to be a legal requirement that employees in the EU can register time worked?

brisk tree
#

Will that apply to the UK though as well see nice it left the eu

chilly veldt
#

nope

brisk tree
#

Lol

chilly veldt
#

it was taken up in 2021, but just this year finalised iirc, (at least in denmark, it's from June that it's mandatory to have)

brisk tree
#

Aww

#

Better than what apparently might happen in the UK

chilly veldt
#

it doesn't affect if you're fixed rated, it's just to prevent overworking

#

which I think is cool

brisk tree
#

That's good then

#

Yeah that is cool. Cause so many people overwork then burnout bad

twin ridgeBOT
#

Gave +1 Rep to @brisk tree (current: #313 - 15)

chilly veldt
#

yeah, just looked and it's only Denmark that starts out with it apparently, but it was taken from an EU legislation
https://www.grantthornton.dk/en/insights/articles/news-2024/new-requirements-for-registration-of-working-hours-adopted-by-the-danish-parliament/

Grant Thornton International Ltd. Home

Recently, a new bill for registrering working hours was passed by the Danish Parliament. Read more about its effect on companies.

brisk tree
brisk tree
#

I feel more countries should do that because the amount of people getting ill from overworking is not great. As they say too much of anything is bad for you

queen shore
#

Hi Just wanted to ask if I want to add google authentication on a avatar in navbar like when not authenticated it should show normal avatar, but when authenticated with google it should display the profile picture of the user instead of normal avatar..

How can I do it ??

runic fern
#

why are voice channels locked for me?

sick lance
sharp citrusBOT
rapid merlin
#

uint32

queen shore
devout palm
sick lance
sick lance
devout palm
queen shore
near hawk
runic fern
#

okay

atomic aurora
#

Goodmorning everyone, quick question. What would you guys say you’d use more whilst working as an analyst in a SOC environment, bash or python?

sick lance
#

If you use Google sign in to create an account, younvsnt change the e-mail

#

Can't

devout palm
#

Oh i see

atomic aurora
wanton schooner
#

guysssssssssssss

near hawk
#

Yes?

spare echo
#

hey all i have a question i was doing ctf rooms why is that people at the bottem get the score for same question low compare to upper one's is it becuase of attempting the machine after long time since it was launched

sick lance
distant gazelle
sick lance
#

This field is massive, what do you want to specialise in?

devout palm
#

What is best depends on your interests

sick lance
#

This is down to preference...

#

Ah, so you want data. kekw

devout palm
#

I want free windows license key

#

Me?

#

Right now?

jagged moon
#

I low key wanna be jobless if these meetings don't end soon

devout palm
#

I'm just living

jagged moon
devout palm
#

Doesn't exist

jagged moon
devout palm
#

If you do CS for money, you won't do it

#

Eventually, you will conclude that it isn't worth it

desert shuttle
#

money money money

jagged moon
#

Ml is money printer for couple of years at least

chilly veldt
pale verge
#

Money πŸ‘€

worn thorn
#

cyber sec do be more important

jagged moon
#

More. "this is my startup. It's a clippy. But with AI!!!"

devout palm
#

Lmao

#

So true

#

AI?!? We're gonna be rich, let's invest

jagged moon
#

Yup

#

No thanks. Am in meetings

#

Not sure i will ever leave them

devout palm
#

Lol

#

Chatting with us

jagged moon
#

I didn't say i am busy

#

It's soul crushing really

#

I do nod a lot though

#

One of those that should be an email

#

And that i shouldn't be CC'd on too

devout palm
chilly veldt
#

Fluff can we switch?

chilly veldt
#

I would rather be in meetings than write Javascript

jagged moon
chilly veldt
gray sonnet
#

google πŸ‘€

chilly veldt
#

JS integrated with google apps script

twin ridgeBOT
#

Gave +1 Rep to @gray sonnet (current: #124 - 52)

gray sonnet
#

you're welcome kekw

#

in all seriousness, you can literally find the difference on google πŸ€·β€β™‚οΈ

chilly veldt
#

I don't feel like making a wall of text, but I wanna show you my shitty code fluff kek

grim sparrowBOT
#

@desert iron has been warned.

desert iron
#

I got hacked guyz ma bad

desert shuttle
#

: 0

sick lance
#

You can get help from communities about a range of topics, however when it comes to certain questions that are easily found with Google, Off Secs website probably has the difference listed on their website (and their own Discord)

deft cloak
#

I am actually on track now in tryhackme.. whatever doubts I am trying to ask.. I found their dedicated rooms.. πŸ˜…

sick lance
#

Cyber field is massive, red team, blue team, purple team.

Then they branch out.

Red team, pentester.

Blue team have DFIR, malware analysis, soc.

Then don't even get me started on the rest πŸ˜…

#

This is the best server imo.

chilly veldt
#

I am finally done with this JS stuff

#

no more JS

#

plzzz

jagged moon
#

Pick one that interests you, if you need a vector right now. You don't wanna be stuck analyzing malware if you don't like reverse engineering down the line

#

There is a lot to choose from. And you don't have to while you start out

#

You'll figure out what you like more while you get the basics out of the way

hollow pivot
#

Questions are welcome here, but you need to show us that you've done a bit of research before, and if there is something specific you don't understand, then explain it to us so we can help you.
For example:

" I went on offsecs website to look at the difference between OSCP and OSEP. I saw that they mention X and Y, but I am not sure I understand Y. Does Y mean that, or am I misunderstanding? "

When someone tells you to google something, it may seem a bit harsh, but they are probably trying to get you used to researching, which is very important in this field πŸ™‚

#

On top of showing us that you made an effort before asking, it will also make it far easier for us to help. The more details, the better. Show us your thought process when trying to understand something technical.

toxic canopy
#

Today my attack-box keeps crashing,
am i the only one?

hollow pivot
#

No need to apologise πŸ™‚

fleet finch
hollow pivot
# fleet finch guys I need kubeletctl for a box https://github.com/cyberark/kubeletctl but ther...

https://kubernetes.io/docs/tasks/tools/install-kubectl-macos/ Maybe? Never tried, but found this with a quick google search.

hot current
#

if i research a question and i find the answer in a tryhackme walkthrough would that be cheating? πŸ˜…

sick lance
#

Or jaut copy paste and move on?

#

Or would you try and see how they got the answer?

#

Now that you know it.

hot current
#

good answer yeah i guess it depends on how i handle that information

#

i probably would get a bigger dopamine hit now that you mention it if i find the source where they got the answer from πŸ’€

hardy mica
#

a little hint , just test yourself what you found

#

sometimes could not work

sick lance
#

Are you giving it away?

rapid bronze
#

Anyone have any great resources on secure and redundant security architecture for enterprise networks? I'm starting my new job next week, and I will be a part of projects to design scalable and secure networks for enterprise customers. I honestly dont know a lot about the topic, which my employer knows. But I really want to get a great head start and show that I am dedicated to learning.

I've tried searching the great google, but I feel like I might not be using the correct terms, as what i find is very generic.

sick lance
#

Because you look like you're offering?

rapid merlin
#

ban

devout palm
#

lol

shut hawk
#

@mossy river wants one

grim sparrowBOT
#

:hammer: heisenberg_blue0#0 has been banned.

rapid merlin
#

Out of all people out there he tried to scam cyber security students / professionals kekw

mossy river
#

Next time please don’t interact with them

gritty fern
crude stump
#

@mossy river

rapid bronze
twin ridgeBOT
#

Gave +1 Rep to @gritty fern (current: #709 - 5)

mossy river
#

Please do not self promote here

cold plume
#

Hi! Do any of you guys know if there's maybe some OWASP discord? I know they have a Slack channel but I wouldn't want to spam it, I have specific questions regarding Ruby on Rails, finding extra information on this has been a bit tedious, since I'm not as experienced yet.

sullen shell
rapid bronze
gritty fern
deft cloak
gritty fern
cold plume
deft cloak
gritty fern
#

I wouldnt even be in the cyber sec field if it wasnt for John

deft cloak
#

yeah... I remember his first video which I seen of John...

#

Who is destroyer2009 Apex Legends

#

22 minutes video.. I saw it fully.. without blink I think

simple valve
#

where is Muiri

cold plume
#

anyways, guys, as I posted in #resources , I would really appreciate anyone helping out if they have any experience regarding security in Ruby on Rails apps, and more Ruby on Rails 7!

chilly veldt
#

I finallyyyyy finished my 2 week long project AU_pepevibe

loud marlin
#

wat was about? if you are allowed to say...

chilly veldt
loud marlin
#

sweet

chilly veldt
#

yeah, now I know some more fun API's

loud marlin
#

API in general helped a a lot into doing things faster and so...

merry garnet
#

Does the rank updates in parallel in thm site and in discord??

loud marlin
#

discord in around 24h gets auto update. if you re-verify on discord it gets automatic update

chilly veldt
loud marlin
#

aham. so sql is just database system. is web browser based or local app thingy ?

chilly veldt
#

it's a local script, that does stuff on some websites

loud marlin
#

aham. nice done bell πŸ™‚

chilly veldt
#

thankz, it was a hell

inner glen
#

hello

#

is the engineer here

loud marlin
chilly veldt
#

and me no like SQL

crude stump
#

Wazup

inner glen
loud marlin
crude stump
#

Hm I think

inner glen
#

and where is that enginner

crude stump
#

What engineer?

inner glen
#

@crude stump

#

some enginneer username guy

rapid merlin
#

I'm studying for the CompTIA A+, learning every single detail about each printer type is extremely fun pepehands

inner glen
#

do you remember ace

chilly veldt
crude stump
inner glen
#

yea

#

that guy

inner glen
#

you know him

crude stump
#

Well he talks on here

inner glen
#

@crude stump

crude stump
#

What do you need?

#

You don’t have to ping me

#

I’m reading the chat

inner glen
#

@crude stump is this pinging means

crude stump
#

Yes

inner glen
#

why not to ping

crude stump
#

Its loud

#

To put it that way

inner glen
#

oh i see

crude stump
#

But back to your question

inner glen
#

yes

crude stump
#

What do you need from him?

inner glen
#

nothing i only remember the did you google guy and the engineer guy

#

and you

crude stump
#

Yes I remember you

inner glen
#

btw are you 16

crude stump
#

1 more

inner glen
#

okk

#

you know hacking rite

crude stump
#

I mean depends on what you mean by that

inner glen
#

i meant like a wifi laptop like that

crude stump
#

Only tryhackme

loud marlin
#

what you try to do exactly ?

inner glen
#

you learn here

crude stump
#

Hm

#

I mean, I hack on TryHackMe and only TryHackMe

inner glen
#

is it free

#

or paid

crude stump
#

Free or paid

#

You should do it

inner glen
#

yea i will try it

crude stump
#

It’s a gamified hacking/learning platform

inner glen
#

but i dont know anything about hacking(ethically)

#

can i start from absolute beggining

crude stump
#

Yes on tryhackme for sure

inner glen
#

ok

#

i will try it

#

btw i have sent you a friend request

#

aces

#

bro none is online or something

rapid bronze
#

Plenty of people online..

loud marlin
#

lot's online. just bit quite. ppl work and so

inner glen
#

yea i mean that makes sense

rapid bronze
#

Conversations happen spontaneously so, nothing being talked about right now πŸ™‚

inner glen
#

are you free now alex

rapid bronze
#

As in off work, no. Free to talk, sure πŸ™‚

inner glen
#

no i wanted to game so yea

rapid bronze
#

Oh, well I dont know you like that, so I'm not interested πŸ™‚

#

Also this discord is more about cyber security and THM in particular, not so much gaming.. πŸ™‚

chilly veldt
#

πŸ‘€

rapid bronze
chilly veldt
#

just haven't seen you in chat for a bit

#

lmao

rapid bronze
chilly veldt
#

yeah, that's true

rapid merlin
#

Hi I have problem with MISP room from SOC level 1

#

I can not go to the "https://lab_web_url.p.thmlabs.com/" address

loud marlin
#

did you start target machine?

rapid merlin
#

I just keep getting 504 eror

loud marlin
#

and using thm in browser or local vm with vpn

rapid merlin
#

yeah I try VM and VPN

#

same result

loud marlin
#

other rooms work ok or same result ?

rapid merlin
#

no there is no pproblem with the other rooms

loud marlin
#

try restart target machine. or might there is other instruction in room

bold dawn
#

anyone ever run into the wordpress customization page (edit site) not loading the CSS? Every other page works

cold sparrow
#

Wordpress breaking? Never seen that before

rapid merlin
#

i have a question

#

😭

chilly veldt
#

ask awayy

gritty zephyr
#

should i switch over to ubuntu as a daily driver, i dont game anymore on my laptop anyway and want to become more familiar with cli and just basic linux things

#

im scared i will be unable to do certain things tho or like mess it up haha

simple valve
cold sparrow
#

I loaded my work laptop with a Kali machine for the same purpose

gritty zephyr
#

i reckon?