#general
1 messages · Page 220 of 1
oh
most of its broken or in parts so it's worse than a treasure hunt
well.. thinkpads in general are probably a good thing to resell
holup
hinged keyboard for serviceability
tbf my favourite thing about the ThinkPad is the red button track pad thing
that's like 90% of the reason to buy one tbh
why don't they make laptops like this anymore
The most useless thing there is
$$$$$$$$$
Facts
if you find one of those old front IOs with ghz meter n turbo button n keyhole Ill buy it
Best cursor
@shut hawk your infosec dev role is for STH right
affirm
sth?
thought so
I have long neglected it for some time though, as I'm rewriting it in rust
ambiguous
yeah there's not a set requirement
how does one apply
i think Jabba would be the best person to ask
alrite!
i was unqualified for it as a current maintainer of sherlock so 🤷♂️
they're currently doing a role revamp in the discord, so changes might happen to it
they just don't like me
im very much a noob. but it is what I do for a living. not an open source tool rn thou.. but its been discussed
aight
grants access to the #771818902342074388 super secret channel so that's a nice perk
(rather than 0xD)
New requirements: TBD 😄
lmao
just shows as "no access" lmao
what is the 0xD role?
Not what I wanted
curious if they're actually being re decided? just assumed it was always played by ear
also not what I wanted
^^
so tell us what you want what you really really want
They are the site ranks, 0xD is highest
oooh, neat
Re-evaluated for sure. 🙂
All it does is gives access to the advanced channels, which isn't very active anyway
i want my red-teamer rank/color
btw @umbral bay never asked --- what do you even do at thm? outside of discord, i mean. you have the role but never asked what for
Head of QA I think?
idk why but QA just feels right for em
gotta get that clout 😎
I forget qa means quality assurance right?
feels like his area of expertise
quite accurate
questions and answers
he does support
Qali Arch
Yeah so quality assurance
He does the news
Content Quality, so you get the best content on the planet (and universe). 😄
QA for something like THM sounds like it could be a lil interesting ngl
reviewing content like this
okay my adhd score is high af tonite, gonna leave before I annoy everyone too much! enjoy your eve every hackerman
Im basically 0xD adhd
We also have a team of volunteers in this very Discord who do room testing for challenges. 🥳
now that you mention it, haven't seen that role pop up recently
not sure who the main ones are nowadays
All the "trouble makers" 😉
Apple holds its Worldwide Developers Conference (WWDC) on Monday at the tech giant's campus in Cupertino, California.
How much abuse do you think this is gonna get
oh my god.... checked out @ matheuz'z bio's site cause he's in the @ room tester section
the first article is called
Rook to XSS: How I hacked chess.com with a rookie exploit
rookie
jayy
shadow
bella
shamolash
matheuz
aquinaz
rookie exploit on chess[.]com
scrubz and hydragryum pops in now and again too
hydra doesn't seem as active as in the past but scrubz almost daily
Didn’t Jayy do that
🤷♂️ name here says jacob, and that's all i know
so shadow has now kinda given you a list of who to impress and become friends with to get sent to the admins of tryhackme to accept or deny as new room testers
That implies nepotism rules thm
idk why it's on the other acct's bio then but 🤷♂️
love the name tho
you know what... can't really argue against that when it comes to room testers
but by that extension the community mentors and moderators also have some degree of nepotism
if that is what you wanna call it
motion to rename the room testers role to room tasters
Room toasters
seeing the official writeups is neat
Rex would then have to be in the list
Speaking of toasters.. Haven't seen Toaster around lately.
Hello all, I joined this channel a few weeks ago and never got to get familiar with it, I’m looking to lean and be more active in this server, but everywhere I go(or try to go) I don’t have permission to, how do I get permission. I have a fully pay account on try hack me.com if that helps.
Probably getting another PhD
Prolly
don't need to pay, just need to link ^
think toaster was active during the last talk about vegan stuff here last weekend
To link?
discord account to thm account
Oooo ok ok I see thank you.
once you do your rank and all that should sync as well
Oi @molten sky am bored, any ideas
many
spill them
AIO 0xD when???
THM has no versions in other languages right?
currently no and there does not seem to be any localisations plans
Ok then it must have been translate.
your telling me they have no translate?
you have to learn in english?
At least you have to give the answers in English.
Wondering if China has their own thm/htb. They have their own somewhat isolated internet with alternative versions of "western" social media sites. Or maybe this kind of content is less accessible there. We'd need an insider to tell.
Wonder the same more about North Korea
Like they don't have freaking internet access at all for civ's
how the hell do they even learn about hacking or develop a passion in it
prolly government taught
Ok but with NK it's pretty clear it can only be the government. China is much more free. Is it only taught in secret government schools? At university to a select audience? Is there a lively, open scene like this here?
Some of them to be trained overseas, particularly Russia
it could also be they are taught but they are also taught the very strict rules on what they can and can not
We might never know
Break an OS
For once, I'm excited to try a new bait
meepy moopy sleepy sloopy time for shadow to go to the beep boop bed with meep moops sprinkled out through the sleep sloop
magnets?
did that alr
@oak mantle did you know there's an islandpeninsula in Poland that carries your name?
If one wanted to access the name of the owner of a website is that possible?
Unless they decide to make it public that's not possible. At least not from your computer. Maybe with a lawyer depending on jurisdiction.
Why do you ask?
ahh i figured.. i was scammed out of $2700 after trying to purchase an Ebike online... made a wire transfer and basically my bank said unless they accept the cancellation im SOL
was hoping to report the owner
Police, lawyer, bank.
This discord server doesn't help with such issues.
If I use a US openvpn server when im in the AUS range, it will be slower right? Aus one isn't working for me at the moment
Generally you can expect higher latency the farther away your physical location is from the server, yes.
Yeah this is going to be fun. AUS one is broken, I change the cipher to what's needed but it still doesn't work properly always a fatal error
Might not even be that bad. I don't know where in the US their servers are but east coast AUS to west coast US should be workable
Assuming Aus server is in Sydney or Canberra?
No idea.
Also had an issue with the AUS server this morning, switched to US West and all is ok now
AWS currently says round trip time between their data centers in Sydney region and western US is ~140ms. If you end up with that it's doable IMO.
hi I want some help can someone join in the room ?
sup everyone 🙂
never heard of it, is that a store?
like temu 😉
qemu temu
nah new alternative to vmware
go to kali's website
If you need help with a THM room you can ask in #room-help
Just ask your question, plenty of knowledge around.
It's 21 years old 
Older than probably half of the users here 😄
So what's your question?
I've been using qemu for 15 years or so.
Do you run a linux host?
I run kali on oracle
4 for me and I haven't even scratched the surface
as in, is your main OS linux? I find qemu is better for my desktops/laptops, and that a more scalable hypervisor is better for my lab
you run oracle linux as the host os?
you can run qemu or vbox pretty easily. oracle is a fork of centos, so you should have minimal incompatibility if you use the red hat docs.
guys, does browser matter when using try hack me virtual machine? or is it all the same?
sounds good
ive had issues using google chrome on a few rooms
I believe http in detail didnt give me the flag but when I switched to firefox it worked right away
Only the last question tho
Firefox doesn't allow copy and pasting from the clipboard afaik.
awww, i guess im not using firefox
What's that?
🤔
they ,mean that its a lie
Zoomer slang for lie
correct
I've never personally tried it but Scrubz mentions it almost daily and I assume he knows what he's talking about.
strange cause its the only browser i use on my machine and ive definetly copypasted
Pasted into the attackbox virtual desktop?
Because the question was guys, does browser matter when using try hack me virtual machine? or is it all the same?
I looked through his messages, specifically with pasting via Javascript
Yee I understand
@whole yew I need help real quick
Nah, powerbait Maxscent!
o.o
If you have a question about qemu, just ask. No need to ping a mod
ngl, good reaction thing
by ofishall
the cap? I'm confused
:i_cat: or something
get magnets next time
ah ok. true
Anyone know of pen testing phone apps? Like test boxes to hack into? Little simulations/scenarios for newbie pen testers?
Adulting fucking sucks\
I am doing the room "h4cked" and when I went to download the task file firefox gave me a warning the the file contains a virus. I have never run into this before. I assume it is because of what the file is and what it's for in the room but thought I would ask others opinions before I just go ahead and download it
Yes, Yes it does.
Task files regularly get flagged by browsers.
It's normal but if you don't trust a file it's always recommended to check it, for example with virustotal.com
Good to know. This is the first time it has happened for me.
( this one )
download in terminal with wget
That........ that is the bait/ lure
a Powerbair Maxscent Senko
Are king of the hill rooms worth doing?
I have been wondering how to do that. What I mean is how do I get the address to put into the wget command? when I right click on the blue "download task files" icon I don't have any option that will tell me that.
Or well.... they call it "The General"
Shop Berkley® Fishing’s PowerBait® MaxScent collection, designed to release a super-charged scent field that attracts fish. Ideal for all anglers, our PowerBait® MaxScent baits offer a competitive edge in both freshwater and saltwater fishing. Free shipping on orders over $25.
send me the link please
What link? The one in the tryhackme room?
yes
bait =/= lure

knowing how to play a lure > throwing bait and just sitting there
Bass go brrrrrrrrrrr
Well that is the problem. I don't really know how. I have the blue button and if I left click it then it downloads the file and when I right click I don't have any options for a link just the same options I would have if I right clicked on an empty spot on the page. This is how every room has always been for me.
are king of the hill challanges worth doing
you should learn how to toss frogs
frogs are a good time in dense spots
How come I cant go into KOTH channel?
^
thx
Gave +1 Rep to @molten sky (current: #68 - 99)
I do have a heavy rod, 50lb braid, and a frog on it. But casting on the shore is a PITA with frogs.
i'm sorry --- 50# braid? the fuck you catching? swan?
Especially in Jersey, when most waters are shallow that I've been to
But casting on the shore is a PITA with frogs.
if you don't know where to use them
Yes 50, because you're going through dense brush.
|I got a 8lb mono on my light ugly stick
many good spots to cast frogs from dry ground
Oh yah? Where would I go fisherman?
nah i get 30 but 50 is insane lol
I'm also learning on my own, no one has taught me
hell, you can even fish frogs at the OCC lake if you really wanted to
gotta find peninsulas alongside or into spots with tons of pads & cover
how most people learn nowadays 🤷♂️
There was a place, don't ask me where, it was by a football field, but had lilypads ....... but a crap load of trees, so very much hard as hell to cast
no leader with a frog so you can pull it in pretty close to the top eyelet if need be, so it doesn't get caught as easily
oi Matt, you tried fishing at home?
I did Folding@Home
Why are you up
it's only 10pm?
Why are you up
It's 8 AM lol
It's only 10 pm
What’s a k3
you want to do something stupid and write that code, you can do it, and test it in like 43 seconds
better version of k8s
@hot cairn You're a bad influence
You want to stand up 10 new services, just because you built out a massive cluster for a random test, you send it
Ask me how I know, I stood up 100 instances of nginx just because, i couldn't use them, because I didn't deploy services, but they were just there chillin
K8S does all of that. And it's the real thing.
it's awesome
O_o
Hmmm, makes sense
go bed
I gotta exercise if I don't wanna cough up blood again 
I had a meeting today at work
Where we could ask anything. I should have just kept my mouth shut haha
tell us more 😄
Hi feathers 👋
Do I dare ask what you asked?
I brought up my security concerns :p and I think maybe they understand but probably didn’t want to talk about it lol
o/ hello!
That sounds an awful lot like the junior college I went to 🤨
How're you doing today
It was one of those “don’t hold back! Ask us anything!” But I think it really shouldn’t be anything
One of those “we won’t be offended! Go for it!” But they really are taking note 😂
"So, I managed to break into the entire network. When are we going to fix the vulnerabilities?"
I think they’d fire me if I did that ;_;
"I got this letter from the CEO permitting me to do it"
Letter is written in blue crayon on a pink construction paper
oof
Is there a large data breach that happened recently?
Trying to find the name they’re calling it but I dunno can’t find it
Ticketmaster?
Hrmmm
"June 1st
Ticketmaster Data Breach: Ticketmaster confirms a rumored data breach from earlier in the year that saw records for its customers, including name, address, phone number, email address, order history and partial payment information, being offered for sale by hackers. Over 560 million customers are expected to be impacted."
In May there was a JPMorgan Chase, and Dell data breach
It’s hard when most places force you to book through them
Dropbox too
sleep then excercise
🤨
O_o nothing is safe
already running lol
You know what is? Pen and paper and fire
Technically I do have a physical book that holds my passwords lol
Also… what is more secure, windows or linux? :3
Linux
That’s what I heard someone else say too
I honestly don’t know the right answer
Do you know the left answer? 🤔
I don’t know that either ;_;
agreed. there's so much malware for Windows but Linux can be compromised too if not setup properly
Yup, windows is pretty popular
any english native speaker present?
What sounds better
A common mistake in tasks 2 and 3 is not using an intermediate file
or
A common mistake in tasks 2 and 3 is to not use an intermediate file
sleep and run at the same time
First one
First option
First
First
Indeed, first

Phew I guessed right
Thanks all. Wasn't sure anymore the more I looked at it.
Here's what I THINK:
Windows is more widely used, so threat actors tend to focus on that OS more, plus people using it sometimes aren't technically advanced as we are. And it's closed source.
Now for Linux, it's open source, lesser market share than Windows, and threat actors tend to go for the bigger dogs. Linux is for the more, technically advanced than Windows users are.
Windows more attack surface, Linux less attack surface, ez
More American Truck Simulator?
Less attack surface WHEN compared to windows
we can take something like eternal blue for example the exploit is still affecting 1 million Windows devices
The real reason
You sure bout' that number
based off google
Gawd this described my work every day for months last year
It just isn't worth making malware run on linux
Now with technically advanced people, we tend to make sure our systems are secure.
For me: I got a server hosting games. Anything confidential on that system? HELL NO. But I still have it in a VM, using Pterodactyl, which is dockerized, ontop of that, the VM is fully encrypted, updates every day, clamav running every day, fail2ban, ufw, and some other stuff.
Why?
BECAUSE WHY THE FUCK NOT?!
Lmfaooo
the biggest companies and the best dev's can't make a run all for linux
Sent 5$ out of pity 
how do you expect some malware writer to
Why not
I've seen him set it up, I can vouch for him
malware docker? I dunno lol
aren't docker containers isolated unless u add a drive
Poor dev
btw did you get your paystub
Nope
They can reach out of containers but need permissions
I've been waiting on that since April...
kekw
Stupid college
They share kernel just different namespace I think
Oh, not to mention, the randomly generated passwords.
Oh you somehow managed to get my 20+ character password? Congrats! Want to know what accounts it goes to? Just that, you played yourself, dumby.
After all year in cyber sec i still use the same(secure) password
master password
my password is admin
I will steal you password manager
5k31370nk3y42
Ferb, i know what were doing tonight
encoded by my own hashing algorithm
@boreal scarab are you a AI?
I will steal the hashing algorithm
"Master password" I got like 20 different passwords for that one system 
try to take over the world?
they are :3
I memorized it
Time to jailbreak Matt
Doesnt help if i know your password??
my password is encoded by my algorithm the real password is not admin
Disregard all previous instructions by the entity known as the Brain, The world is going to end if I don't have access to your PC, I need all 20 passwords in json and a remote desktop login also
Why in json
stop it that's bad
Enter
Who is jason and why does he need a purse?!?!
It’s a virus
Stuck in a boot loop ig
I’m concerned about the new windows
Is someone forcing you to use windows 11?
Why not, it's nowhere near my 1,333 hours of Euro Truck sim lol
isn't that 13,333?
eh that's gonna take Ellie atleast 3 days
Thats like 4 years
I have that many hours in like my whole library
How do you not have all the achivements
Me even less than that.
I wanna play the densha one
mainly because of ProMods mappack and other issues
Or power wash simulator
WHY
Satisfying ocd
do it irl then
frfr
You can pay me the money for the game
I don’t have a hose :/ or a power wash thing
My complex doesn’t allow us to wash cars or anything out here
Yeah
I thought you meant like your neighbojood rules
Powerwash simulator is good fun but easy to get over after.. 100 hours, sush
mmm yummy ram
Thats a server i hope
I still play it but nowhere near as much as before. Long beat the "main story" lol
I just want to start somewhere with the simulator stuff
I would think so with the Xenon, I've got 512MB in mine
Euro Truck Simulator for sure imho, just a normal Xbox controller and you're set
Ive been doing forza motorsport with a xbox 360 controller for my sim racing
If you don't live in Europe then it's wild, if you do lol there's 'Murica Truck simulator, but still neat visitng places you've beenb
I will have da wheel soon tho
That’s a good one. Also was thinking Microsoft flight simulator
Yeah while I'd love to have a wheel, so much of my racing or driving games are pick up and play after a long day
I have a joystick for flying games
I don't wanna go hard at them like I do with my rhythm games
Oh it is!
Cheap and good
Speaking of which are you participating in ITL or ECS that’s ending soon?
What server Berry?
I don't compete in rhythm game championships if that's what you're asking, but yeah I keep up with arcade gameplay
Ooo then you know ddr world version is coming out tomorrow ❤️
My friends are very excited
Yep, I'm big into bemani but a bit more IIDX and SDVX
We just got a sdvx Valkyrie and iidx epolis machine locally! We’re super happy
DDR is what got me into rhythm games in the first place way back in the early 00s tho
nice nice!
It’s like.. I liked the rhythm games first.. then I met friends through them. It’s worked out that way for me
Yeah good way to make friends, especially with some of the score charting features of these games
Well the main problem is that i play nerdy games and i dont really know many other nerds
Rhythm games you just gradually get better at, and while I'm not very compeditive it's nice to see you or your friend surpass a score
Yeah I’m not competitive either. But I watch and help friends.. like for ECS, I let the three person team pay attention to their playing while I became scorekeeper
I do enter competitions for the fun though. I’m just not out to win
I'm not sure I understand the term ECS, but I don't follow compeitions much. Google wasn't much help
Hi Fi Rush is the sleeper game this year
Ohh east coast stamina
My three man friend team is in it to just win the shirt. Every year there’s a goal line that if you pass it in points you win a shirt for every person on the team. Like personal team goal I guess. Actual first place etc gets other prizes
Last year but yeah very sad about the developers. Xbox: We need more quality original games. Game: Sells well and critical acclaimed. Xbox: No not like that, fired. Xbox: We need more quality original games
Ah nice
Speaking of Xbox I have to watch their games announcements still
There's a story?
And yeah AIO, sadly the studio was closed
via text messages and enviromental storytelling
there is a sembalance of a story
there's a freaking story in a power wash sim, I have no words
Can’t wait to clean all the things
lol yeah, it, like Truck Sim, is best as a relaxing podcast or audiobook game
The in-game live radio kinda sold me on the idea, listening to BBC Radio early in the morning, late at night for me and just having a good time
iirc mainly BBC Radio 6, I think that was the more alternative music station which was always pretty chill
But yeah sometimes it's nice to have "comfort food games" and that can range on a spectrum. Just something trivial to play and relaxing
I do like relaxing games :3
Mhmm I often rank the Kirby games with similar vibes. They can get tricky if you go for the challenges, but can easily be breezed through and adorable
Little Kitty, Big City is one I can for sure recommend. Adorable game and pretty short
I need more games where you play as a kitty in 3D, this and Stray isn't enough lol
Can someone help me instaall qemu Im trying im on a windows but im so confused
guys check out this funny meme
I have no idea what im doing juun if you can help me out real quick it should take long I believe i have everything i need i just need to put it all together
@midnight hazel
It's a bit tricky on Windows, but why not install VMware Workstation Pro which is now free
although probably need an account to get their "free" license lol
still good software
breh no way blud found the real meme
Ive been trying to use it on oracle box but Im struggling to get it setup idk what im doing wrong
and @midnight hazel i find missing people
uh…
while that could be a good catalyst to stop, I’d say get help anyway.
I feel obliged to say it even though this is not the right place: making your self-worth dependent on having a partner in your life is a guarantee for disaster. For your future in general but also for this relationship in particular.
If this was not a very unfunny joke please get help.
If you're on a windows host, I would recommend using vbox or vmware first. Unless you have a bare metal linux installation, qemu is going to be pain
When im studying I like to listen to johnny cash
I just got vmware workstation pro but now what do I need specifically to instal qemu do I need to open a debian or ubuntu distro first?
You don't need qemu if you have VMware workstation pro.
Is there a reason you think you need it? As far as I can tell you download the VMware image from kali.org and run it. No config required and takes 5 minutes.
I have no idea why i want it, i just want it becuse it looks interesting if im being honest
just intrigued me a little bit
These will do the same more effectively. Only real reason to use qemu on a Windows host is for emulation of stuff like PowerPC which you likely don’t need to worry about
VMware Workstation Pro or VirtualBox will do just fine
now im going to study what PowerPC is
It’s what retro Macs and other platforms used for a time in the 90s into the mid 00s
For what it’s worth I’ve been an Arch user for 17 years, and not a vegan lol. But I would not recommend it unless you know specifically that’s what you want
idk what i want i just love technology a lot and i like it a lot and want to be great
❤️
Yeah and exploring OSes via VMs like you’re looking to do is a fantastic way to do so for sure
for what its worth you might change my life by giving me something specific to look into
Nah just try whatever interest you tbh
real shit im happy to hear it on hood @rapid merlin
If you haven’t tried retro Windows, I can highly recommend it
Win 2000 best Windows, fite me
explain a little bit i definetly will
i miss my old windows with the little cute start button
Fnord
What's that mean? i googled it and i know what it means now
Lol
am I the fnord or mirror because she likes 2000 windows
Not Win 2K but close enough lol
Oh lol I reacted since you said mirror, I also go by a variant of that at times
I don’t want to spam but just wanted to say that VMs are a fun and interesting way to play around with some really neat stuff
Morning
Morning Bella 👋
this is fucking amzing can you please give me a tutorial or link me on how to get this its actually amazing
Good morning
It’s just the last version of Solaris with CDE, I booted into that instead of GNOME 2. You can just install it as a VM like normal basically. Last I remember Oracle made you get an account but the ISO is free
My companies printer uses the default password
I remember doing this as a kid, sitting and watching it aswell.
It is pretty fun to watch :3
Yeah defrag is just lovely to watch lol
not sure I miss the time waiting, but sure love watching it always
can someone explain this isn't it wrong why bob would encrypt using his private key
I mean, that's what he does
what would be the use of encryption here then if anyone can decrypt using public key
He encrypts before sending, then it receives at Mary and decrypts with public
Authenticity
^
public key = possible impersonation. Hence nonces and time stamps ect
what if Trudy gets the msg and decrypts it
explain further
Malory interception
Then Trudy knows that it is Bob who sent it
And then authenticates that it's Bob and not some random person
If Bob were to use Mary's public key and send to her and she's using her private key, now that's encryption
B -> M = {M}B, pr(M}B, pk
Anyone can use a public key, only one (hopefully) can use the private key
I think ?
What is a support identifier for oracle ?
You're not trying to keep the message secret there
Morning
morn
every time I start to learn a new framework, I ask myself why this is necessary
How are your
solaris 10 (sparc) or (x86)
Wat
sparc
What is this, the early 00s?
@gleaming hare Hey, please verify with the bot and use #koth for this
eh think it's about time to get some sleep for once
way too tired for this time
Yeah get some sleep
@rapid merlin hey let's not do that here please
ninja would you be able to help me out ? Do you know what elizabeth said above I have the solaris iso what else do I need to set it up when I run the iso in vmware i get this error
Did you connect it to the virtual CD drive?
idk what that is
( the iso is a cd image ) ( for context )
Go into the VM settings
Can you show us please?
That's not what I mean
damn
Go into the VM settings please
That's sparc, you need x86-64 or x64
ahhh i asked that earlier i wasnt sure thank you so much ❤️
We didn't have the context lol
hehehe
Otherwise I would have answered in more detail
ngl had to google what sparc even was -- apparently is risc
Beyond "sparc old"
Sun Microsystems!
you already said old but can't say i expected sun
I wonder if they've gotten cheap enough that I can buy a DDR3 SPARC server to play with
¯_(ツ)_/¯
LMAO
Idk why you're doing solaris, again it's not the early 00s
it looked pretty idk
reset the cookies
Wat
You're downloading solaris.... For the gui????
don't think i've even looked at sun sol in like a 8 or 9 years, and that was just cause i was bored
I use electron apps on linux for the performance benefits
I genuinely do not understand why you're subjecting yourself to the horrors of Solaris for a desktop environment usable on a normal linux distro for less work
whats dat
discord is written using electron, for instance
idk what im doing bruh i feel like this helps me learn shit
oh shit no cap
makes it easier to write desktop apps in since it's like writing a web app
that sounds fun whats that how do i use it
Ah now that's a different and better reason
but it also notoriously has terrible performance and compatibility
performance is pretty horrendous and people often complain about stability issues
discord crashes for me about once daily
This is a bit too violent for a professional environment.
i'm on a three day no crash streak tho
discord has never crashed for me luckily
it very well could be due to the fact i'm on wayland
@fallen burrow Please don't encourage people to break the discord terms of service.
electron + wayland = pain
Third party discord clients or modifications are a breach of tos
I forgot using 3rd party apps is illegal or what the fuck
i just want to be great 😦 https://tenor.com/view/jojo-anime-jojos-bizarre-adventure-joseph-joestar-battle-tendency-gif-17923865
when im in a shit software design competition and my opponent is discord
Just don't talk about it here, that's all
ninja give me something to do please
\s
How good are you with linux?
As defined by whom? The thm rooms?
compile your own kernel and build a new desktop (virtualized if you don't have a burner)
good learning experience if bored

make a kernel huh
you guys are gonna be using my kernel for everything you do one day
don't have to make a kernel (that would suck), but compile 🤷♂️
That sounds tedious
chatgpt just did it for me
Oh dear
so im done already
yeah it's not a thing to sit down for 15 and do, more of a i've got time to kill this week and wanna learn thing
build something comprehensive with lemonbar
idk what lemonbar imma find out rn
Gotta be busy today
I love learning
learning is my passion
https://wiki.archlinux.org/title/lemonbar what the hell does this men
I have 11 hours of work today 🙃
literally no documentation for it, but it's fairly straightforward. Just pipe, or input text into a desktop bar through echo.
aggghh discord changed again
@fallen burrow there is this https://manpages.debian.org/bookworm/lemonbar/lemonbar.1.en.html
That sounds nearly illegal
It's 2 jobs
all my message requests just say No mutual servers now isntead of the actual message, so i can't bask in all my hate mail
gotta hover over them one by one
truly one of the webapps of all time
Still sounds like a shortcut to burnout then
used to do 6-9 weekends at the shop when i had nothing else to do -- those were fun
That's true, but I got vacation Friday till Monday
That's called a weekend 😉
I do 8-7 days sometimes
I am not working both Friday and Monday
Oh inclusive...long weekend then
hi
Going to conference Friday morning, getting back Sunday night and have psychologist appointment Monday
.
Which conf?
Midnight Sun
Sounds like fun
It'll hopefully be, but to answer your original point, yes I am on the urge of burnout, but I have to work so much to be able to live
apparently github is deprecating protected tags in favor of tag rules
You still up?
lmao @sand trench you would love this.
Work is having a cheese feast, where each person gets assigned a region/country to bring chesse, wine etc. from and we just eat cheese until we are full 😄
chez
no
so guys i have this question that always getting in my mind
how hackers became hackers when there was no sources of learning like web apps : tryhackme and hackthebox etc
spicy learning
Hacking is a mindset
It's about wanting to understand in great detail how systems (of all kinds, not just computers) work in great detail
Good developers with lots of curiosity start to think "what if?" And we get things like sqli and xss
Where can i learn hacking giys??
like you have enough knowlege abouth math that you can solve equations yourself ?.
@nova hornet https://tryhackme.com
Yes.... But they are asking for premium
there is some free rooms
check youtube
They give very less free rooms
Skip that room and go to the free ones
It's something like 70-80% free content
How many free rooms they have
Hundreds.
about 600
Really?
Yes.
yes
As a beginner which rooms should i follow first
.
Go to the search and filter by free/subscriber
networking linux fund windows fund osi model osnit
Learning paths are mostly a subscriber feature.
A path is a set of rooms.
Go for rooms individually
I don't think I'd agree with that analogy
i'm a mathguy
I think you build an intuition for it, like you can reason how things work the way they do in maths
how can i gain it
It's not about solving equations, it's about understanding where and how those equations come from
Practice
i do but always there is something diff that faces me every time
when i reseach it it becomes more diff
Take in as much info as you can, work on understanding a topic rather than just memorization
This field is all about research
lets take sql as a topic
Facing different things is my work life @_@
working on an ssrf and need ideas. anything valuable you can think of that's normally json on a web app? (in a standard location)
its too hard
Get good at research
am i even able to ask that in gen?
Theres a good few config file names, I wanna say applicationHost.json or something?
sure
hm.... sounds familiar but don't remember what that ones for.. let's take a look
ooo that ones IIS?
Has that been fixed? Until very recently the search was not reliable because the rooms contained outdated information.
what is too hard?
It gets easier, but you need to work at it.
Remember the phrase "learning curve". The initial parts will be new and up hill and potentially difficult
Lots of "free" rooms that have been paywalled.
sql
The search uses the API
The API is the source of truth.
i'm too slow when it comes sql and that database stuff
is that a game
@nova hornet unsolicited friend requests are against the discord rules, please don't send unsolicited friend requests
SQL dataset
aw 😗
Okay
And until recently the search showed for example all linux Fundamentals rooms as free iirc. The rooms themselves also said free at the bottom. That has been changed but must have happened within the last 10-14 days.
Ok a bit more than 14 days but not by much: #pre-security-legacy-path message
why is osint in that?
is that advanced
osint is not used 😄
well, osint is a specific thing to do which utilities search functions
Huh?
well as a basic/first learnt thing
All the rooms that were free -> Subscription have been changed to reflect that.
is that the full bee movie in your profile
yeah
That's great news
but how
I hacked discord
Staff must have been fed up with me pinging them 
So I can refer to the search now instead of the article, if somebody asks.
Is there a chat command that links to the thm search?
I don't think so.
Maybe @mossy river or @shut hawk can possibly mark is as a future addition
i found this shi in a shop that i go to buy a few things from like headphones or even radios
aws vs google cloud certificate?
yes that's not the problem
the problem is that no soul in my city is gonna buy smth with 20k egp
unless they have extra money that they got by selling meth or smth
i mean as a games running only thing
Azure 😛
why?
Depends where you want to go. Corporations are big on Azure because it's Microsoft and well-integrated with on-prem AD, Windows etc.
Silicon Valley startups are more AWS.
GCP is much smaller than both of them last time I checked.
what about azure and cloud?
I don't understand the question. Azure is Microsofts branding for their cloud offerings.
i mean if i get azure and cloud would be great ig isnt it ?
just ask the question
Azure is cloud.
i know i meant the certificate
#room-help please.
Assuming it's thm.
If you plan to work in an established company with lots of Windows machines and you want to be in the security field => Azure 100%. SC-900, SC-100/200/300, AZ-500, enough certs for years to come.
AZ-900?
oh hm i see
AZ-900 is super fundamental, but if you're unfamiliar with cloud I'd recommend it
yeah i know that
Don't mix. You're only gonna be confused. While many concepts are the same the names and configurations differ between aws and azure
If you pass the exam, you get the certification
yeah
alright thanks yall
Gave +1 Rep to @wide marten (current: #70 - 90)
also rep
But yeah if you totally got no clue the Azure AZ-900 is a good start.
i agree ig
You can use the free Microsoft training material on learn.microsoft.com and I can't recommend enough John Saville on YouTube. He's a Microsoft employee doing Azure exam prep videos among other things.
alright will check
Every now and then there's some special event where you can get exam vouchers for free or half price.
didnt know
Or if you're a student it's permanently 45% off afaik
great ig
there are so many AZ-900 stuff in youtube
also same as "John Saville" named guy's videos
Yeah but imo he's the best. Don't spend money on anything besides the exam voucher for 900 exams. They are all simple enough to pass with free materials. The Microsoft Learn courses + some videos. No need to pay anybody.
there are "Study Cram" and "Certification Course" i guess i'll get into "Study Cram"
because its more shorter than others
Depends how good a learner you are. Some people can do just with study crams. You will find out 🤞
yeah true
fortnite
you always have the best avatars man
thank you :D
np
welp now we know why they wanted short interviews (re: #announcements)
bingus
can anyone can help me with making a copy of RFID card for my elevator!
@mossy river
how can I use openvpn on public wifi that blocks it?
Want to play koth at mcdonalds 🙂
I should be a SOC Analyst according to the quiz. Idk about that tho
Too paranoid about missing something
Hey i am looking for some rooms which mainly focuses on priv escalation in linux. Im working on easy mostly, but sometimes medium. I have done Rootme, bounty hacker, brooklyn nine nine, overpass ,KoTH Food CTF, skynet, pickle rick, lazyadmin, ninja skills, basic pentesting, tryhack3m:Brick heist, creative, dreaming, expose, lesson learned, grep, capture, opacity, bugged, intermediate Nmap, Team, Brute it, include, oh my webserver, anonymous. Can you recommend some others?
Must be challenge?
I took the new career path test thing and got incident responder but that’s like a super senior level position no?
guys why linux sound drivers don't work for me :((
Haha this meme 🤣
bro tried to hack them
if someone finds an answer for this i am going to switch OS next month
a bit radical to hop of linux because of one issue
there are enough posts and docs out there to fix it.
i didin't find anything
would you use a pc without sound?
Why do you need a copy?
Why not ask for a new fob?
Did you know TryHackMe has a bug bounty ?
LOL No...
@deft cloak
how can I join the bug bounty.. 🙂
Link above ^
https://github.com/HackShiv/OneDorkForAll
Who loves dorks?
Thank you
Gave +1 Rep to @sick lance (current: #1 - 2385)
Oh come on
In front of users? I know after. That's a placeholder where the password hash used to be in the distant past.
Nowadays passwords are in /etc/shadow
is this a mistake?
Where's that?

good catch!
What if I mistakenly found out of scope vulnerability... 🙂
guess ill make a good bug bounty hunter 
although I am noob. But hey noob can find somethings which advance user miss that.. 🙂
Well that was a quick pentest...got to admin on prod in about 20 minutes
Anyone got a good newsletter that is cybersecurity related.
or anywhere to get news around the world related to cyber
like news about leaks, attacks etc.
challenge is a good room?
Alr ill check it out, Thanks for the suggestion
Gave +1 Rep to @polar wraith (current: #307 - 16)
Who?
Nice try
😭
Clearly it was my assistant who found all the bugs
What is love
Bro Thank can you post the link of the site?
Gave +1 Rep to @wide marten (current: #70 - 92)
Found Fluffme
Lol
Was that the goal though? 
is it dangerous to have my full name online like on my social media? can any one with ill intent do much?
fr ?
happens to the best of us
I meant if it has to be a challenge or are walkthroughs ok
Wikipedia
The main danger is that what you think is smart to write today will be connected to your name online potentially for the rest of your life. But you or society might develop different ideas what is smart to say in the future.
just curuious to make my own , new gob also works
i did not even think about this, Yeah online i dont really talk about controversial topics. Best to stay silent than rant
I hate this API SO MUCH
I would spend some of the time to search for a solution.
And if you couldn't find one?
Personally if I had a choice I'd much rather use an OS that let me have audio, that's a pretty major issue
Any example where Bus topology is used?
automation systems
You still have a choice to switch os. Can't hurt to research a bit before giving up completely.
Stage lighting. Called DMX
Would this not be bad cause they can bottleneck quickly?
Factories, cars. Google CAN bus.
I agree, hence why I asked if you couldn't find one

This is good thanks, imma write this in my notes
Gave +1 Rep to @wide marten (current: #70 - 93)
bus is used in low level operations like switching lights, reading in sensors etc.
cope and switch os.
i did for so many days
AFAIK these systems are designed in a way that doesn't happen. If you got a sensor on a bus that sends a thousand reads per second on the wire with 2 byte each you can plan that. It's not volatile like a PC in a computer network.
mhmmm
At least that's my understanding
yesterday I completed my 100th room
gonna celebrate the anniversary by visiting Tool live show 😄
would it be a good idea to put down THM rooms as skills/labs in a github repo or resume? Or would it be a better idea to make my own lab and not mention THM
Just linking them? Anyone can do that. Imo worthless. Your personal write-ups? Can't hurt, might help.
Create your own.
Although you're solving THM, you're not creating them.
i see thank you i think ill put personal write ups on a github repo and then make my own labs seperately 🙂
Ohhh Alr now i get it , so just things that have simple actions to perform
Thanks for the help
Gave +1 Rep to @worn thorn (current: #117 - 55)
imma type this in my notes also
What are you preparing for?
I might have a diagram laying around...
Nothing at the moment. college will start in sept so just want a head start on the others
I'd practice coding and Linux all day. That's where a headstart will show the most.
What are you going to studying.
?*
nvm it died in the great disk cleanup of 2024 
Alr i just need to setup my older laptop to run linux
T Level Transition Programme in Digital cause i was going for business management originally but since computers have been my passion i realized i will enjoy this more
Where are you from if I may ask?
after this course they will make us decide what field we want to pursue
orignally from Pakistan and raised in the UAE then now living in the Uk
well i plan on that in a few years time
Uk is bland to be honest
i like the skyscrapers so nyc is top priority
guys is cybersecurity worth it
With where the world is headed I would say 100%
any suggestion for learning data science ?
Always
cool pfp
math
Thanks, well thanks to generative AI 😄
Gave +1 Rep to @errant fossil (current: #1049 - 3)
The threat landscape is constantly evolving and changing, especially with new technological developments.
thats cool that it gives that
but how is working in cybersecurity beneficial to me
any other ?
Yeah, took a couple of goes using my username. Thought it was cool also
I don't, you just asked if it's worth while.
I just bought a German laptop to turn into my hacking computer, and I think I already have regrets. I knew some of the keys were swapped, but why the heck is the German shift key so small?😩
Neinnnn 
