#general

1 messages ยท Page 248 of 1

pallid lotus
#

At all. I thought it was 2022

sick lance
#

Im also younger than fluff/Hydra.

pallid lotus
#

30, indeed. 31 soon

sick lance
#

Ah, he's a Leo.

pine stratus
#

im 24 am i still young ?SadCat

near hawk
#

I'm a lot younger than that

cold jungle
#

I can't beleive that people of this age is running THM from behind...

sick lance
#

Age =รท experience

#

==

pine stratus
#

naah

sick lance
#

I've done all the unethical stuff, so you don't have to ๐Ÿ˜„

pine stratus
#

ooh

pallid lotus
pine stratus
pallid lotus
#

I know it's between 30 and 35

candid niche
#

I'm going away for a couple of weeks in a a month or so and due to space and weight ill just be taking a chromebook with me, I should be able to keep up my THM streak with just the attack box yeah? have only ever used the VPN on my VMs

sick lance
pallid lotus
pallid lotus
#

Not sure about Hydra

sick lance
pulsar spade
#

dunno if a chromebook can even run chrome these days though

sullen hearth
#

Old but gold. Period

pallid lotus
chilly veldt
#

I need a ventilator in my apartment

#

holy hell I am melting

sick lance
#

I'm saying I'm inside that age range.

pallid lotus
#

Okay, so, 32 it is then

shut hawk
#

Bruh I thought you were 40 something

#

๐Ÿ’€

cold jungle
twin ridgeBOT
#

Gave +1 Rep to @chilly veldt (current: #7 - 848)

sick lance
sullen hearth
#

I am the oldest i guess.

pallid lotus
cold jungle
#

Can you share your notes?

pallid lotus
cold jungle
candid niche
cold jungle
#

But I still I don't have that much yet

shell nova
cold jungle
#

Just started if you could share that would help me understand better how to take notes and all

shell nova
pallid lotus
shell nova
#

Some people are reckless as well it seems

pallid lotus
sick lance
shell nova
#

Though you keep up better when you're a bit younger

#

Than 30 anyway

sullen hearth
pallid lotus
cold jungle
pallid lotus
#

Note down anything you think will come in handy down the line. Everything you learn. Every new topic, links to tools, concepts, things you've heard but don't understand yet.
As long as you keep organised, you'll be a lot stronger for it overall

candid niche
# cold jungle But I still I don't have that much yet

I keep my notes in a program called "Obsidian" and just create a new file for each tool, concept or topic that I come across that im learning.

Name
Quick description of what it is, what its used for and why.

Syntax
Example of how its used

pallid lotus
cold jungle
pallid lotus
#

Then storing your notes in plaintext becomes a bit of an issue kekw

candid niche
twin ridgeBOT
#

Gave +1 Rep to @pallid lotus (current: #9 - 772)

cold jungle
pallid lotus
#

I like Trilium personally. Does most things that Obsidian can do. Doesn't store notes in plaintext on the disk. Built in sync, etc. It's a neat bit of software

jagged moon
#

Making stuff organized and searchable is very important in the notes too. Don't know how many times i looked for stuff by faint terms. The stuff i thought I'll never forget

sullen hearth
#

Obsidian works great and you'll see the connection between some things if you take the time to link it

pallid lotus
#

But, again, do whatever works for you

candid niche
#

I'll check out Trilium (:

sick lance
#

Does @shell nova have children?

jagged moon
#

Trilium gang!

shell nova
sick lance
#

Oh OSWE friends.

shell nova
pallid lotus
# cold jungle What to use in that case?

I like Trilium. As does Fluff kekw
Realistically, whatever you want though. I know people who use OneNote / Evernote. I know some who use Joplin. Trilium is awesome.
I'd suggest not using CherryTree for anything big, but it's great for projects as well.
Thing @tired peak had another one she liked too?

shell nova
#

Obsidian is nice, but defender gets mad at exploit code

sick lance
#

I use OneNote for my uni stuff

jagged moon
#

I saw people be ultra efficient in onenote, so i don't discard anything

pallid lotus
#

Half of spooky's notes disappeared the morning he sat OSEP lmfao

shut hawk
#

Notion is nice

candid niche
#

Is OneNote free, or is it tied into the Microsoft suite sub?

I have it free through my uni but dont want to get too comfortable if I decide to not pay for it myself after study is over

shut hawk
#

Only downside is you need an initial internet connection

pallid lotus
#

Oh yeah, knew I forgot one. Notion is sleek. Potential issues with not having full control over the hosting, but it's sleek

shut hawk
#

Windows+. ?

sullen hearth
# shut hawk Notion is nice

I've tried notion for programming but it was a mess. But everyone has to check what works. Maybe it was my bad but if notion gets down your notes as well.

sick lance
#

Maybe it's allocated to how much you get cloud storage free with an Outlook account (5GB Maybe?)

shell nova
candid niche
shut hawk
#

I've recently switched from a hierarchy structure to a flat structure for my notes, surprisingly works quite well

sick lance
#

Some my Notion notes went missing, I'm guessing they didn't like my malware notes

sick lance
jagged moon
#

Meggy was storing jndi payloads. 403

shut hawk
sick lance
jagged moon
gray sonnet
#

Fluff! Hai

sick lance
#

I only recently checked.

shut hawk
pallid lotus
sullen hearth
cold jungle
#

Hey @jagged moon how long does it took you to crack all those exams?

pallid lotus
#

One of the big reasons I like self hosted notes

sullen hearth
pallid lotus
#

Do a tree, with backlinks and clones

shut hawk
#

I asked and their notes just got temporarily blocked, never destroyed

pallid lotus
#

Fair

jagged moon
shut hawk
#

But I do understand your point of self hosting

pallid lotus
#

Reminds me, I need to look into clustering

shut hawk
jagged moon
shut hawk
#

You can do most actions with keyboard shortcuts, become a power user!

#

I am a lazy mouse user ๐Ÿ˜ž

candid niche
#

wait until you hear about Ctrl + c & Ctrl + v! ๐Ÿ˜‰

sullen hearth
#

Would recommend it. You will be lightning fast

#

But i just started at vs code with shortcuts 3years ago so im not in the position to say something ^^

pallid lotus
#

Generally that's to make it clear that they're copying and pasting. Keyboard shortcuts don't show up well on screen.

#

You do get software which displays your keypresses, but most folks don't seem to use it

cold jungle
#

Thats for demostration purpose I guess so that the person watching would know what he copied
Edit: I didn't see the muiri response...

jagged moon
#

Heh

#

I saw a cool overlay that did toast notifications

#

Like "copied: ssh root@host"

#

Like on the phone

shut hawk
#

all fun and games until you copy your password

#

@chilly veldt

pliant cairn
#

Gonna be hell of a ride

sullen hearth
pallid lotus
# tired peak Notion

Really, I could have sworn you have a lightweight local one at some point. Apologies!

tired peak
#

but I switched to Notion after that

mossy river
#

Helloo how is everyone?

pallid lotus
#

Nah, wasn't Joplin. Something paid for, but iirc a one off payment

tired peak
#

OH, I almost forgot about that

crude stump
tired peak
#

Typora (I did forget)

#

Typora is good and lightweight. I can tell you that I don't take a lot of notes these days ๐Ÿคฃ

shut hawk
#

Typora is a lovely text editor

pliant cairn
#

I use leafpad lol

#

And notion for everything else

#

India vs England match is gonna start in 2 hours. Its gonna be so fun. Can't wait.

errant fossil
errant fossil
sick lance
errant fossil
errant fossil
mossy river
#

Sleepy time

errant fossil
mossy river
#

Had a few early mornings

errant fossil
chilly veldt
pallid lotus
#

Just remember though, no automated scanning of out-of-scope targets. You'll need to manually try a few endpoints ๐Ÿ˜

sullen hearth
#

@rapid merlin what was the payment for you in ur country for A+

#

253 for 1101 and 1102?

#

Ah thanx. Was on the comptia hp.

#

I'll do some warm up questions kekw

uncut cove
#

hi!

did you pass it?

#

wow, congrats. what did you use to prepare for it?

I wonder if it aleviates the career as much as CompTIA says it does ๐Ÿ˜„

#

And it's one of the certs needed to complete the Security Technician path, if I'm not mistaken

agile flicker
#

I need some help

sick lance
#

With what?

agile flicker
#

So I used little big mouse

#

and it turned off my second display

#

it said its not active

#

and I don't know how to connect it again

sick lance
#

Do you have a 4K monitor and an HD one?

agile flicker
#

The HDMI is in, power, everything is correct but in settings it says my display isn't active

agile flicker
#

but I believe so yes.

uncut cove
#

good luck! I hope you earn the certs in no time

sick lance
agile flicker
#

Yep, where do I check the input source?

agile flicker
tired peak
#

did you try... rebooting?

agile flicker
#

yes

#

Display 1: DELL S2721HGF

#

Display 2: RW-W2213SG

uncut cove
#

I'm going for aws certified cloud practitioner atm

sick lance
#

Neither are 4K

#

Most people I know who use LBM has 4k and an HD.

#

Can windows detect them?

agile flicker
#

yes

#

display 2 is shown as a small display

#

but its not..

sick lance
#

Did you do what Zojja suggested an rebooted?

tired peak
#

rebooting surprisingly solves a lot of problems

#

I wouldn't assume that

agile flicker
#

Okay

#

I fixed it

#

thanks ๐Ÿ™‚

tired peak
#

how'd you fix it? was it a reboot? ๐Ÿคฃ

clear jackal
#

I read an article the other day talking about people how don't really know what rebooting is because things have been called Restart for a while

agile flicker
#

Nah, I installed the newest windows since I read some stuff online, so I just installed the newest windows

tired peak
#

what

agile flicker
#

like version

tired peak
#

in 2 minutes you installed the latest windows?

clear jackal
#

Afaik, they mean to separate things though. Even though they have somewhat merged recently

loud marlin
#

it's called restart from ages of dinosaurs, as i remember...reboot is also new for me...

sick lance
#

That was the fastest instalation/update to the newest Windows ever...

agile flicker
#

wait

agile flicker
#

software update I mean

tired peak
#

did the software update include... a reboot?

agile flicker
#

๐Ÿ’€

#

Ye

#

But

#

I tried the rebbot before hand

sullen hearth
#

Ah you buy just one of them.

agile flicker
#

reboot

loud marlin
tired peak
#

I think A+ should be fine without a second retake

uncut cove
#

My first attempt was 5 points less than the passing score, so I decided to buy an app with 680+ practice questions. Actually, there are apps like this one that are even free, so it is also a good way to practice anywhere you want

sullen hearth
#

I saw both with a little self study guide and retake for 630 bugs. Its a word hey... Idk.

pallid lotus
pallid lotus
#

/dark

#

Aw

cold jungle
errant fossil
uncut cove
sullen hearth
agile flicker
#

lol

sick lance
#

Not all the commands got transferred over. ๐Ÿ˜ฆ

#

I can't get my GPU to get my displays.

#

And it's annoying.

timid prism
shut hawk
#

No idea, sorry

rapid merlin
#

question

#

anyone know

#

phones

sick lance
#

Yeah, Samsung, Nokia, Blackberry, iPhone

rapid merlin
#

i meant

#

comparing one phone to another

sick lance
#

You know, you'd get an answer so much faster if you just ask the question.

rapid merlin
#

do i get a huawei p50 pro

#

or my xiaomi mi 10t pro

sick lance
#

Two phones I don't know.

I'm about to upgrade and unsure if I should get the pixel 8 Pro or S24

#

Prob the pixel.

stray oracle
#

Macroglossum stellatarum

polar wraith
#

why cant this be something like "ye/no" lol

sick lance
stray oracle
cold jungle
hollow pivot
polar wraith
#

never heard "nay"

hollow pivot
cold jungle
empty parcel
#

There doesn't seem to be a channel for this room but it was a good one!
Reading write-ups afterwards (I just loaded a script and waited when the bruteforce-protection wanted me to ๐Ÿคทโ€โ™‚๏ธ ), I noticed that my foothold was different from the other users' ๐Ÿ’ช (not sure if that was intended?)

rapid merlin
cold jungle
#

xiaomi*

hollow pivot
rapid merlin
#

why

cold jungle
#

Because there is plenty of custom rom available for them

sick lance
cold jungle
#

Not sure about huawei

rapid merlin
#

but

polar wraith
rapid merlin
#

i dont wanna custom rom

#

i cant on the p50 pro

#

cuz of warranty and stuff

#

im on a custom rom rn

cold jungle
sick lance
cold jungle
#

Its just another level

cold jungle
cold jungle
#

If you reupload the official rom

rapid merlin
#

on xiaomi you can

#

if you use mi unlock

#

idk man

#

what would u pick for daily driving

#

the p50 pro is so sexy imo

#

and has better specs

#

(NO SIDELOADING PLEASE.)

cold jungle
#

Well as I said earlier I don't have much idea of huawei phones as they are hardly availaibe in India

crude stump
#

i just now realised kali has a root terminal

cold jungle
crude stump
rapid merlin
cold jungle
#

Bruhhhh

rapid merlin
#

huawei phones have GSpace

#

and its basically google apps all in one

#

i think only some are web apps

#

and they have appgallery where u can get more important apps via .apk

#

and they get it from their own sources

polar wraith
#

ok ok i get it aangerysad

chilly veldt
#

Since the bike passed inspection, it's now fully in my name and owned by me, time for customizing HYPERS

normal fable
#

Nice! Congrats!

crude stump
#

i dont really understand on nmap is used in a pentesting way. As im doing the nmap room it asks for me to used a ftp anon script. i do it and it works but how would that help me?

normal fable
#

Anon access to ftp can be a vulnerability. Espcecially if it contains sensitive data.

#

could lead to further compromise.

#

note that I said "can" and not "is"..

crude stump
#

and im guessing would nmap also help setting up a reverse shell?

crude stump
#

sense you find open ports?

waxen sequoia
#

THM attackbox cannot open

sick lance
normal fable
#

It's a tool I use just to find open ports. Can enumerate services and there are scripts (nse scripts) that you can run to find further iofo on the running services.

crude stump
#

i see

cold jungle
chilly veldt
crude stump
#

i got your word now scrubz

cold jungle
#

I can't drive bikes

#

After the last accident, I am no allowed to drive anymore

#

So I am happy for those who are enjoying blobfingerguns

errant fossil
normal fable
#

I haven't been on a bike since my accident. It's been almost a year. I think it's about time I get back on..

chilly veldt
#

I am enjoying it, and I will be driving my friends on trips, and next year the plan is to do confirmation driving for peeps

errant fossil
#

uk tho right

tired peak
sick lance
errant fossil
# sick lance Uk

then dont get both of them either get the s23 or the s24 ultra cause for us in uk they have a shitter chip

cold jungle
restive fractal
#

Hi all

sick lance
errant fossil
cold jungle
errant fossil
errant fossil
boreal scarab
#

@naive violet can I DM? Got a radio question

cold jungle
errant fossil
cold jungle
#

Damn good display and camera with same level of processing power

errant fossil
#

the iphone 16 leaks say the iphone will look worse lol

#

for me it does look like a s23 now

#

Nu uh

#

Samsung on top

cold jungle
crude stump
#

iphone has no creativity its honestly depressing

errant fossil
restive fractal
#

how can I get a role

cold jungle
sick lance
#

You need to verify

errant fossil
sharp citrusBOT
restive fractal
#

thx

crude stump
#

minimalism that costs a thousand bucks

cold jungle
#

Seriiously???

#

You need to re read the defination of it

#

Alright

crude stump
#

minimalism by changing a camera and keeping the same design

#

slap a 1000 price tag on it

errant fossil
#

the s24 ultra looks way more minimalist than any iphone

cold jungle
#

TOOOOOOOO mucccccchhhhhhhhhhhh

errant fossil
#

expensive and less features

cold jungle
#

Disagreed

#

Brother use s24 for a day

crude stump
#

half the time you wont see the inside unless you take it to a repair shop

#

tbh i had both samsung and apple

errant fossil
#

For people who dont care about features the iphone is fine but if you like tech you will atomically choose a android

crude stump
#

what does that mean in english

errant fossil
#

the mirror comment says it all kekw

#

but at the end of the day everyone can choose what they like and i might like something else and you might something else its fine. Just love what you have

crude stump
#

oh

cold jungle
#

As I said don't take it personal

errant fossil
sand trench
#

Please allow the VM 5 minutes to fully boot up.
dispare

crude stump
#

5 minutes is crazy

cold jungle
sand trench
#

shadow hates waiting for this kinda stuffs

cold jungle
crude stump
#

a vm to boot

cold jungle
#

Anyways, Hello

#

Shadow

sand trench
#

ello ello mogamboo

naive violet
cold jungle
#

Try restarting

sand trench
#

oh noes

cold jungle
sand trench
#

also check the smart data on that drive

cold jungle
#

Any fullitme job or something?

sand trench
south sonnet
#

HDD? even sata SSD with modern windows operating systems can be painful to use if you boot it up after a long time. It usually tries to index search, update and other background jobs that basically makes the device unusable until everything is done

cold jungle
#

Your condition seems worse than mine

sand trench
#

yeah lots of tossing and turning

#

and some micro sleep here and there during that time

cold jungle
#

Don't mind my bad english

cold jungle
sand trench
#

well gonna start uni this fall if shadow gets in

south sonnet
#

def replace it with a SSD if you actually want to use the device for something. I'm guessing the device probably also has very little RAM so anything that doesn't fit will also gets written to pagefile on disk making the situation even worse

cold jungle
#

Mannn this is crazy

#

THM full of young guy

south sonnet
#

nah just a SSD can give it a second life.

empty parcel
#

plenty of shops sell replacement batteries

south sonnet
#

my old Pentium laptop ran as my testing NAS for years with a SSD. (it had broken screen and battery).

empty parcel
#

SSD + lightweight linux distro can do a great job - everything is basically a webapp nowadays anyhow ๐Ÿคทโ€โ™‚๏ธ

cold jungle
#

I would suggest battery from authentic source

#

Local battery will cause more trouble latter

#

Incase if you can still find

#

If not there is no other way

south sonnet
#

lol my current "laptop's" battery which used to be plugged in 24x7 before I built a desktop bloated to the point that broke the screw joints in the laptop chassis

crude stump
amber inlet
rapid merlin
#

Hello

#

if i clear a hard drive from a company laptop, then use a fresh download of windows, is there any possibility of them monitoring my activity?

buoyant tree
south sonnet
normal fable
#

๐Ÿ”ฅ

#

Get a replacement. lol

buoyant tree
#

Just freaking take it out before it explodes

normal fable
#

Was very common with certain Dell models...

rapid merlin
south sonnet
#

can't find one atleast not one that ships to my place at a reasonable price.
Also barely use the laptop. Obviously the pillow was removed the same day and disposed of later

buoyant tree
#

oh k

#

using it with charge only makes sense

#

using it with a spicy pillow makes no sense except that you should run as fast as you can

normal fable
#

I'd search amazon and ebay for a replacement battery. I know there are aftermarket ones for certain machines.

buoyant tree
#

why the heck is firefox broken today

rapid merlin
south sonnet
buoyant tree
#

what country

normal fable
#

oof

south sonnet
#

India

buoyant tree
#

eh then you got local tech market's

high mulch
#

beep boop, hello fellow humans.

normal fable
#

Call around to shops.

buoyant tree
#

Alt EZ does.

normal fable
#

A few years yeah..

#

sup?

amber inlet
#

Have you tried turning it off and turning it back on?

normal fable
#

have you attemted methodically depeting the flow of electrons and then in a few seconds re-applying the flow of said electrons?

south sonnet
#

yeah no it's a obscure laptop. That probably was only likely sold less than single digit in the entire country. The only way would be to get the service center to import it. But no way I'm paying like 250+USD to get 6+year old battery replaced

normal fable
#

Most of the time, if we don't know the answer or it isn't documented in our documentation then yes we have to research the issue. If it's an immediate thing or not doesn't matter if we don't have the answer.

#

The thing to keep in mind as that we give best effort to support issues even if we don't know. We have tricks to try to get things working as quickly as possible.

#

All else fails.. research the issue and find alternate solutions. If one does not exist, then deep dive and come up with a solution.

south sonnet
#

recently had a friend ask me about a support ticket he got. I found the fix under an hour while their dev team also received a bug report from another team and the fix release date was expected around Q1 2025.

normal fable
#

Then post it on stackoverflow or somwehre and be a hero other techs who run into the same issue. ๐Ÿ™‚

arctic cradle
#

friend of mine asked me to test the security of his WP site for any vulnerabilities, I attempted LFI and I feel like WP has banned my IP or something, I didn't even use VPN as there was mutual agreement for the "pentesting", has anyone run into similar issue where WP flagged his IP due to LFI attempts?

#

I cannot load any website at all hosted on WordPress

south sonnet
arctic cradle
#

nope, they just use WP as hosting

south sonnet
#

yeah likely could be blacklisted

rapid merlin
#

anyone know if i clear a hard drive from a company laptop, then use a fresh download of windows, is there any possibility of them monitoring my activity?

arctic cradle
#

blacklisted by WP in general? dang

#

that's new to me, lol

buoyant tree
arctic cradle
#

should've used a testing environment for it, didn't think it through about getting flagged so easily

normal fable
#

That's what I put in the resolution of all my tickets.
kekw

#

I got demoted to 1.. but pay increase. ๐Ÿคฃ

#

I've been a l1 tech for over 5 years now??

#

We do a lot more than your standard help desk though.

south sonnet
normal fable
#

No path to L2 even.. even for people who have been with the company for over a decade...

#

Yeah. It's a good job to have if you have a good team and good manager.

#

Reason I haven't left yet. I love the company, my team and manager.

whole yew
rapid merlin
whole yew
amber inlet
#

Just start applying now bro, itโ€™s only help desk @rapid merlin

rapid merlin
#

10th gen i5, not that bad

whole yew
#

they may be paying lease on that laptop, and if their asset management isn't great, they may not even know you have it. that doesn't change the ownership though

#

i do know people who were billed for the company laptop they did not return when they left the company, even years after

south sonnet
#

Sony has even made a property theft claims against it's employee for a mouse. Which ruined the employees career after they got hacked

normal fable
#

Why worry about your accent?

amber inlet
#

I mean it doesnโ€™t really matter, almost every help desk I call in USA is staffed by Bengali or Indians or whoever else. You type like a native Iโ€™m sure youโ€™ll be fine broski

amber inlet
normal fable
#

I work with people all around the world tbf. I'm backwoods white trash 'merican...

rapid merlin
#

hes gonna be sleeping this weekend

amber inlet
#

Oh youโ€™re Czech I was way off

#

Youโ€™ll be fine just practice man. And if you do land a help desk gig what better way to practice than 40 hours of English a week

#

Youโ€™re already over qualified

#

Just rip it

normal fable
#

Most of my communication with people is via email or chat. We do take and make calls but it's more frequent that we get tickets submitted through our ticketing system and respond via email out of that. 90% of the time we resolve the issue through email.

#

I'd say that if you speak 'good enough' english, then help desk would be okay for you.

#

I have always treated ever interview as a way to learn where to improve.

amber inlet
#

Yeah exactly, the worst they can do is say no.

#

The fact that you can even bug bounty is what I meant by youโ€™re over qualified. I donโ€™t think web app testing is a skill the average help desk employee has lol

normal fable
#

It's not. Neither is configuring Cisco devices.. just good troubleshooting skills is all you need and customer service. Customer service skills are essential.

amber inlet
#

Yeah. So it still might be degrading. But at least you wonโ€™t be digging ditches

normal fable
#

I do dig ditches when I have to. lol

#

Moved and had a hard time finding a job.. so.. ditch digging it was for a while.

shadow loom
#

I'd say you need at least the knowledge required to pass A+ in helpdesk

normal fable
#

From just that description, I'd hire ya on a trial basis to see how you did with people. The technical skills can be trained and every environment is different.

#

That's true

shadow loom
#

there's nothing as infuriating as being forced, by policy, to get help from helpdesk and they just not understanding the problem at hand

normal fable
#

A+ is preferred for help desk.

shadow loom
#

A+ will help you with that

#

I once had a problem where some websites and services was blocked on my PC, which were not blocked on their PC. They asked if I had run Windows updates - and even had the audacity to try to run win upd themselves

#

and if I had rebooted the PC

#

and if I had tried connecting to another network

amber inlet
#

Lmao maybe they have their own dumb script of preliminary questions as dictated by company policy birb?

shadow loom
#

After long insisting and incredible willpower to not punch anybody in the face, a senior guy overheard us and figured out that my PC was accidentally enrolled in a beta program for a web proxy, which needed to have some services whitelisted

amber inlet
#

Yeah that sounds silly

shadow loom
#

I was pissed

normal fable
#

Ya know.. sometimes I'll call a user and say "I know you've already tried all this.. but we have to go through this stuff again."

#

It's frustrating.. but process.. ๐Ÿคท

shadow loom
#

They 100% have a checklist and I bet you that in 60% or more of the cases that checklist solves the problem

normal fable
#

"Are you sure the computer is plugged in?" kekw

shell nova
#

All hail The Process!

shadow loom
#

but when a DevOps guy has to ask service desk for help debugging their stuff, it's usually not the low-hanging fruits xD

#

(and especially not due to missing Windows updates like WTF was that kind of suggestion)

#

"Have you tried closing your Word and PowerPoint files? blaze "

#

SAY "have you tried" ONE MORE TIME monkaGun

normal fable
#

Oh yeah.. I don't train you on how to do your job.. You should talk to your manager about that. ๐Ÿคฃ

amber inlet
#

How tough was OSCP birb ?

shadow loom
#

depends

#

if you have a programming degree and 3-5 years of experience working as a programmer/DevOps, and can devote 4-8 hours every day for 2 months, then pretty easy

#

if not... eh

chilly veldt
shadow loom
#

dunno

rapid merlin
#

hi

amber inlet
#

Thatโ€™s the end goal for me, Iโ€™m coming from sales though. Zero experience with anything. I just learned to touch type lol

shadow loom
#

Some people spend multiple attempts before getting lucky enough to pass the exam, others ace it on first try

shadow loom
#

yes

chilly veldt
#

smh smh

shadow loom
#

ยฏ_(ใƒ„)_/ยฏ

shadow loom
#

I've got a B.Sc. in softwre development

chilly veldt
chilly veldt
shadow loom
#

oh nice

#

N1z0ku, I remember that name.. haven't seen them around in ages I think

chilly veldt
#

they're from HTB

normal fable
#

Did you spend a lot of time in the lab prior to taking OSCP?

shadow loom
#

only the OffSec lab

#

I rooted 53 machines or something like that (this was in 2019 btw, so before they introduced AD)

amber inlet
# shadow loom only the OffSec lab

Are there any guides youโ€™d recommend or any particular scripting languages or concepts that were helpful? I do alright with THM stuff but my fundamentals are pretty nonexistent

normal fable
#

I'm debating re-purchasing lab access and going through the material again.. then actually taking the exam.

amber inlet
#

Now weโ€™re all harassing birb

buoyant tree
amber inlet
#

Feed us ๐Ÿฃ

shadow loom
# amber inlet Are there any guides youโ€™d recommend or any particular scripting languages or co...

For me the OSCP (PWK course*) material was what taught me all I needed to know about infosec back when I studied for the exam. That and whatever extra material I needed to learn to pwn the lab machines - things like WPScan and CrackMapExec are really useful but I don't think either was covered in my course material. I had to "discover" those tools while going through the lab.

Besides that I'd recommend familiarity with at least one programming or scripting language, ideally Python or Bash

#

If you can write simple scripts and you know what a "socket" I think it's safe to say you know enough programming/scripting to pass

#

yes

#

I think

#

wait

#

hmm'

sick lance
#

If used correctly, crackmapexec is op

shadow loom
#

I believe you can use your own tools, but you need to document them and how they work in the report. I'm not 100% sure.

#

I never had to. Only my own scripts which were then documented with source code in the report.

hollow pivot
#

Help desk and tech support is not only about technical knowledge, written and oral communication is super important.

normal fable
#

I don't communicate the same here as I do through email, on a support call etc..

#

js.. lol

hollow pivot
#

I got my first tech support job because I had experience with client-facing roles in the hotel industry; the little tech knowledge I had was just a +

normal fable
#

Things like "Yall need ta chill" would be more like "Okay. I understand your frustration. Why don't we take a deeper look at what's going on so we can figure out how to better communicate together." or something like that.

boreal scarab
#

If you need any tips, lemme know. I worked corporate.

south sonnet
#

did CME ever fix the part where it doesn't give any output when it fails to connect?

sand trench
#

shadow got their first job programming cash registers through church connections

normal fable
#

I did a lot of volunteer work prior to my first IT job.

sand trench
#

yes matt is from the big bad red blue and white country known as the usa

hollow pivot
#

American speaker* SureBruh

normal fable
#

ahem... 'Merican... tyvm. ๐Ÿ˜›

boreal scarab
#

New Joysian, thank you

devout palm
south sonnet
#

^ this Michael jordan?

normal fable
#

omg lol

hollow pivot
hollow pivot
shadow loom
#

@amber inlet/@normal fable I wrote about my OSCP experience in my one and only blog post on my website dedicated to this exact situation KEKW
If you want to give it a read, here's the link: https://localnest.xyz/2019/07/27/yet-another-oscp-exp.html
(It describes what "building a methodology" means, which was a problem for people studying back then - they were all told to "build a methodology" but never what that actually meant)

gray sonnet
devout palm
loud marlin
#

โค๏ธ

normal fable
twin ridgeBOT
#

Gave +1 Rep to @shadow loom (current: #372 - 13)

devout palm
#

Money is on me

gray sonnet
#

Huh?

shadow loom
#

If not for the curiosity then for this reason:

When going through the course and hacking my way through the lab, I often chatted with fellow students and current OSCP certificate holders about this and that. One of the questions which I frequently asked them is which topics I should focus on learning first and how I was able to tell what I needed to know. More often than not, the recommendation was to โ€œwork on your methodologyโ€. I asked how I should go about working on it, and what a โ€œpentest methodologyโ€ was exactly, but I usually received mixed replies. The common denominator however was to hack more machines and learn by doing. I was left feeling confused because to me it felt like I had asked how I learned to swim, but had then been told that the way to learn how to swim, is to try to get across as many lakes as possible with less and less help.
#

It's a bit of a weird situation to be in, gotta admit

#

"How do I get better?"
"You just gotta do more."
"OK nice. What does that mean?"
"?????"

KEKW

sand trench
#

....

#

well that was this weeks room testing done

#

not gonna say anything more

amber inlet
boreal scarab
#

Answer earlier question in 1 gif.....

#

But yes lmao. Feel free to DM

sand trench
#

bet matt is worse at english then the majority of nordic or netherlands people in here

normal fable
#

Matt's english is pretty good. lol

south sonnet
#

i again got burnt by reading a file and piping the output to the same file idk why i can't remember to not do that

sick lance
boreal scarab
shadow loom
#

can we stream THM rooms?

sand trench
#

WOOHOOO

shadow loom
#

I guess, right?

normal fable
#

wait.. how many hotdogs long was that boat?

sand trench
#

that time studied is so so so so so wrong

shadow loom
#

(old ones, not the < 72 hours ones)

shut hawk
shadow loom
#

cool

boreal scarab
normal fable
shadow loom
#

the legit top 1% of thm pogging

devout palm
crude stump
#

That would be cheating no?

hollow pivot
#

There are quite a lot of questions that don't require an answer, so maintaining a streak isn't too hard, as long as you can sign in every day.

crude stump
#

Oh wait

buoyant tree
#

NOOO, why did the steam summer sale have to be now

crude stump
#

Flew over my head

normal fable
#

It's just that shadow is dedicated to maintain their streak.

crude stump
#

Who here has soc analysis experience. I got a question

shut hawk
shadow loom
hollow pivot
loud marlin
crude stump
#

When you are looking at logs for a huge corporation. The amount of logs is gonna be going a mile of minute. Is there a way to slow down logs? Or do each analyst team get a pcap file and they analyze that one pcap file. Ik there are tons of filters for something like wire shark etc, but even with filters you might miss a potential intrusion. I just have a hard time understanding how it runs for a big corp instead of something like a home network.

loud marlin
#

logs can be separated for each service and so

clear jackal
#

Filtering and alerting only on specific things

boreal scarab
sand trench
#

nah shadow has a goal of a minimum of 1 question a day.... also shadow has a very steady flow of new rooms to answer questions in thanks to room testing

twin ridgeBOT
#

Gave +1 Rep to @shut raven (current: #429 - 11)

clear jackal
#

You need to narrow the pipe, otherwise you're going to miss things

crude stump
#

Event ids

shut hawk
#

Lots of filtering rules, there can be whole teams dedicated to it

twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #4 - 1788)

crude stump
#

Thanks for all of your guys response

shadow loom
south sonnet
#

I would say donot pay much attention to the difficulty rating. Just start doing whatever room you feel like. Get through some of the paths so you have the base knowledge and just attempt whatever box you feel like.
I've definitely had boxes rated easy that feel like insane due to missing a tiny clue and some insane rated boxes feel easy.

umbral kiln
boreal scarab
#

@hollow pivot How are you today btw?

boreal scarab
umbral kiln
south sonnet
#

oh there is a bug hunter role did not notice it before

#

I guess I'm one down out of ?? bugs to report to get that role

umbral kiln
#

i've only seen like 4 other people have it

boreal scarab
shut hawk
#

3 vulns required to find

shell nova
shut hawk
devout palm
#

Pretty hard nowadays

shell nova
devout palm
#

But 1 is not enough, you need to find 3

#

๐Ÿฅฒ

sick lance
#

Its only hard if you don't look.

#

Harder*

south sonnet
#

well I'm more than happy with my tee. thanks to blackout ๐Ÿ™‚

devout palm
#

What kind of bugs are applicable?

sharp citrusBOT
sick lance
shell nova
#

Those

sick lance
umbral kiln
devout palm
shell nova
#

"had"

umbral kiln
#

okay yeah didn't have to

shut hawk
#

have u played factorio much lately?

umbral kiln
#

but like first month of me using this site and i find that the entire messages feature is one giant BAC

boreal scarab
#

Syz was held at gun point to find more vulnerabilities. He HAD to kekw

umbral kiln
#

live listening on everyone's group chats trol

umbral kiln
shut hawk
umbral kiln
#

got a bounty too but wasn't much

umbral kiln
# shut hawk

i don't want to touch factorio until the expansion drops

#

otherwise i'll get sucked in and i don't have time as it is

shut hawk
#

fair fair, you can't escape it kekw

#

modded is super fun

#

we have around 70 on my 1GB RAM VPS, no idea how it's still surviving

#

really well optimised

shell nova
#

I have a krastorio save lying around....

umbral kiln
#

i'd rather spend 8 hours writing a binja plugin for one thing than start another factory nowadays lol

#

which is exactly what i did until midnight yday

crude stump
#

How many people actually find bugs bountyโ€™s in tryhackme

sick lance
shadow loom
devout palm
#

I don't think it's even 2 this year

crude stump
umbral kiln
shadow loom
#

or I will steal your cherry coke

umbral kiln
#

just said that i didn't see this coming

shell nova
crude stump
#

I love pigeons

quartz fog
#

what the fuck is the "owner" of a drive. I've heard of owner of a folder or a file, but never an entire drive

hollow pivot
quartz fog
#

I found something that says the "Owner" of C:\ is TrustedInstaller

#

that's the only reference I've been able to find to an whole drive owner

devout palm
#

Sorry for the confusion with the things i have said lmao. I'm a little bit high

devout palm
#

And i do laugh to my own jokes

boreal scarab
sand trench
#

yeah it sucks that international travel is so expensive

boreal scarab
gray sonnet
#

That definitely sounds like adobe kekw

agile pulsar
#

how can i find investors in students?

#

i need someone to pay for me a certification

#

that i can't afford

#

but i have to ability to take

boreal scarab
#

@shadow loom Unmute? AMpuppyeyes

shut hawk
buoyant tree
errant fossil
#

Anyone here got an estimate of how much mobile data i will need as i will be travelling soon and want to get data in the country i travel. just for using thm daily.(i will use hotspot)

buoyant tree
errant fossil
buoyant tree
errant fossil
twin ridgeBOT
#

Gave +1 Rep to @buoyant tree (current: #112 - 60)

buoyant tree
jagged moon
#

Birb hacking for masses?

high mulch
shut hawk
#

not yet ๐Ÿ˜‚

boreal scarab
#

Lets goooo. Wrote instrcutions for an app because installation was confusing. Now it's in their official installation instructions

boreal scarab
buoyant tree
boreal scarab
#

See, I don't always break operating systems, I also help people with step by step instructions lol

boreal scarab
shell nova
#

Open source contributions are good too

buoyant tree
boreal scarab
#

Old instructions didn't have a caveat of "If you setup your download client to use a different mount path, do X"
It basically said "Add this, and this, good luck"
Spent a day going in and out of docs, reddit, no youtube videos. Now that it's added, and in a simple step by step instructions if you have a different mount path

#

@shell nova Role request

jovial musk
#

assume u meant ip?

#

sorry .-.

chilly veldt
high mulch
crude stump
jovial musk
crude stump
loud marlin
barren knoll
#

how Am I finding someones ip adress out?

loud marlin
#

you don't

#

@sick lance

rough widget
#

Man I have to say one word for the author of windows privilege escalate room is really goat ๐Ÿ
He smoked me with that task it's been 5 nights I still not completed that room

#

Real bro he unlocked beast mode at that time
I never feel hard to other rooms except this

errant fossil
#

@mossy river

naive violet
#

@barren knoll What are you trying to do that for?

naive violet
#

Why are you trying to get someone's IP?

barren knoll
#

FMS

#

dms

naive violet
#

???

barren knoll
sick lance
#

Oh, private chat.

Must be important

naive violet
cold jungle
#

Why am getting this error in attackbox?

naive violet
#

They're scared because they're being lied to by the "hacker"

naive violet
sick lance
naive violet
#

Looks like IPv6 is broken then

#

That's a target machine, not an attackbox

#

Target machines don't have internet (with like, 2 exceptions)

cold jungle
#

Fuck me

#

I didn't realised I was using the ssh even after completing that room

#

Thanks for pointing out

naive violet
#

Aha, no problem

sand trench
sick lance
#

Car insurance is the bane of my life.

sand trench
#

powerlevel10k is deprecated

#

shadow gotta swap prompt

#

but it hard to setup time to configure any other one

lament mantle
errant fossil
sick lance
errant fossil
boreal scarab
sick lance
boreal scarab
#

Young male, you're basically screwed

errant fossil
clear jackal
boreal scarab
#

If you can, stay under your mother's insurance until you're legally required to pay it youself

sick lance
boreal scarab
#

Mine too

errant fossil
#

im not sure tho

clear jackal
#

It was supposed to go down at 25

boreal scarab
#

turns of age to have it lowered
Also car insurance: Costs more than last year

boreal scarab
errant fossil
errant fossil
sick lance
boreal scarab
errant fossil
naive violet
sick lance
#

Yeah,

boreal scarab
#

I feel so bad for you guys

naive violet
#

The main driver has to be the person named as the main driver...

sick lance
#

You can add your parents on to your insurance.

sand trench
#

apparently the usa is closing in on 54 trilion in dept

naive violet
sand trench
clear jackal
whole yew
boreal scarab
clear jackal
#

Health insurance is 26, car insurance is based on address

sand trench
sick lance
sand trench
boreal scarab
whole yew
#

But that's also going to go political so we'll drop the taxes and debt stuff please

sand trench
#

ditto

#

back to trying and figure out how to configure starship

boreal scarab
#

I need to see what other apps I should add to TrueNAS

sand trench
boreal scarab
#

Emma is using all of my storage!

sand trench
#

109GB with images and media

sand trench
boreal scarab
sand trench
#

don't you got read access???

boreal scarab
#

Yah, but her data, I'm not snooping, no right to lol

#

I'm a good boy

#

๐Ÿ˜‡

#

James, don't you dare say I'm a bad boy lol

glossy coral
#

Hi everyone, I'm new to this world and just starting out. I'm eager to expand my knowledge and improve my skills. Could someone recommend some books to me? I'm already following the learning paths on TryHackMe and practicing; I'm nearly finished with the beginner path, so I have a basic understanding but still have much to learn.

naive violet
naive violet
boreal scarab
boreal scarab
sick lance
#

Milage of the car...

errant fossil
sick lance
naive violet
errant fossil
naive violet
#

You should try your damndest to be an honest person.

errant fossil
#

Not promoting fraud

#

NO ONE TRY THIS

boreal scarab
#

In the US, that's not really considered insurance fraud. (not a lawyer)
If your parents own the car, and you use it. That's not fraud.

"Your parents own the car, and you live with them: If your parents own the car youโ€™re driving and you live at the same address, you can be on their auto insurance policy. Youโ€™d be considered a covered driver for that vehicle."

naive violet
#

Sounds remarkably like you're suggesting defrauding insurance companies still.
Perhaps it's better to move forward?

naive violet
boreal scarab
buoyant tree
#

parrot?

whole yew
buoyant tree
#

hmm looks good, installing it

boreal scarab
twin ridgeBOT
#

Gave +1 Rep to @whole yew (current: #10 - 762)

sick lance
#

Crazy prices, even with a blackbox.

#

Not that I want one.

errant fossil
buoyant tree
#

Sure, although first fixing my VM

#

somehow broke it in a way I don't know how to describe

naive violet
#

@shell nova ๐Ÿ‘€ pcb day

buoyant tree
#

I don't know what the purpose of a 4K linux VM would be, but good for ye

sick lance
#

Now you can see the nmap scan in more detail.

jagged lichen
#

hi

#

anyone know, how to

#

repair a micro sd

sick lance
#

How is it broken?

split compass
#

Most of the time I wouldn't bother to game in 4k even if I had a 4k monitor. It's a lot of extra compute for not a lot of extra benefit.

jagged lichen
#

work

#

but i cant

#

use

#

and see

#

in my disc

naive violet
sand trench
#

ah oh my zsh

sick lance
naive violet
#

That's the level of skill and precision for micro SD btw

jagged lichen
sand trench
#

the noob trap that slows downs tons of shells

sand trench
#

you know shadow is a noob when it comes to permanently deleting data of ssd:s

naive violet
#

Muiri?
Shitposting?
Wow

sand trench
#

have had the fun of using a degauser and hdd shredder before though

pallid lotus
sand trench
#

that does not really show the shell in your picture and more so shows your customised prompt

split compass
# naive violet

That's kinda cool.
Set-screws with probes that are backed by traces to power and data lines?

sand trench
#

there is ohmybash too

jagged lichen
# sick lance Can you please type all in once message please.

I use the micro SD for my Nintendo Switch, on Tuesday I played Fortnite which I have saved on the micro SD, the fact is that I left the console in standby mode and when I turned it on yesterday it didn't want to read the micro SD, the console didn't It didn't detect it or anything, yesterday when I connected it to the computer it did detect it but yesterday taking certain steps to unlock it I think I screwed it up hard and it no longer appears on the disks, unless I see it in the disk manager, I think the console found it I locked the micro SD and I ended up screwing it up, now I literally can't do anything with it

sand trench
#

both are posix compliant
zsh has better plugin support
which gives you things like syntax highlighting and auto complete commands

zsh has better built in tab support then bash

#

alacritty using the sixel fork

twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #4 - 1789)

sand trench
#

though for the sixel fork you are gonna have to build it from source

#

sooooo yeah

boreal scarab
jagged lichen
#

but i cant send image right here

#

i cant show you how is the memory and other things

errant fossil
jagged lichen
naive violet
#

Oh wrong image

split compass
#

SHell
Bourne Again SHell
Korn Shell...

There's a lot of shell options out there ๐Ÿ˜„

naive violet
#

Yeah basically, tiny tiny probes to hit the pins in the memory

split compass
naive violet
#

They all have different pinouts apparently

#

Looks like you can be messy too and use enamel wire

split compass
#

I imagine the mess enamel wire option is what happens in Louis Rossmann's shop.
If I ever visit Austin, I am so taking advantage of their open repair nights ๐Ÿ™‚

naive violet
#

Police forensics use the spider ones, although I don't think it's common

split compass
sand trench
#

very very very fast update cycle as it is rolling release and also has bleeding edge updates for software
no need to reinstall or use dist-upgrade to keep your system updated over multiple years
very very very very great documentation in the form of the arch wiki
the arch user repository has basically all the software you could ever want that is not in the primary repos
the primary repos has a lot of software too and has a tendency to get new packages from the aur in there when enough votes on said software goes through
fancy colored options and nice multiple download at the same time for package management

jagged lichen
#

What is the token of my discord profile?

sand trench
twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #4 - 1790)

sand trench
#

kali is the industry standard for a few reasons
like comming preinstalled with a lot of tools

#

but arch linux is definitely decent for hacking

#

as you can get nearly all hacking tools installed easily

#

archlinux by default is very very very barebones

#

you basically build your own daily driver distro with the packages you install

earnest gate
#

hello everyone! When I want to make a transaction with the inscope url given in a bug bounty target, are sub domains and directory urls included? So, is it necessary or prohibited to scan sub domains and directories via inscope url (main domain)? Are the sub domains and directories I found considered outscope?

boreal scarab
mossy river
#

Usually it will say in the program, if it doesnโ€™t, assume you cannot.

boreal scarab
#

Sounded like it was for THM, so pinged you two just incase ๐Ÿ™‚

earnest gate
#

thank you!

restive cave
#

Guys can someone help me?

shadow loom
#

Maybe pepeHappy

restive cave
#

I want to conect with the cloud's sv

#

For test the machine

#

But when i put the code in the vpn give it me error

#

Hi?

sand trench
#

eugh starship feels slow because of powerlevel10k:s instant prompt feature

whole yew
#

502 is usually a cloudflare thing. if you're getting 400s, that's probably more indicative of a problem with THM itself

harsh gorge
#

Guys it seems to me that thm focuses much much more on post exploitation stuff rather than gaining the initial foothold is it me or that's how it is?

#

Like I'm in red teaming path and it's 80% post exploitation

quartz fog
#

Initial Access isn't worth much. It's what you can do with that access that a Red Team is for

#

I got Red Teaming cert a lil over a week ago

boreal scarab
#

@mossy river @naive violet

mossy river
#

@junior beacon ?

boreal scarab
#

I swear, feels like I got Jabba on speed dial today ๐Ÿ˜…

high mulch
#

@high mulch

#

why are you spamming this?

boreal scarab
#

@mossy river Posted again

buoyant tree
high mulch
#

stop it, seek some help. Broken url anyways

boreal scarab
#

@whole yew

grim sparrowBOT
#

Done!

mossy river
buoyant tree
boreal scarab
sand trench
umbral bay
sand trench
#

refusing to house soldiers on private property for those wondering

devout palm
#

You have the right to remain silent. Anything you say can be used against you in court

sand trench
#

you have the right to not house troops on your propertiy

#

The Third Amendment to the United States Constitution places restrictions on the quartering of soldiers in private homes without the owner's consent, forbidding the practice in peacetime. The amendment is a response to the Quartering Acts passed by the Parliament of Great Britain during the buildup to the American Revolutionary War, which had allowed the British Army to lodge soldiers in public buildings.

umbral bay
#

As long as you don't plead the 18th ๐Ÿ˜‰

boreal scarab
sand trench
#

yuups

boreal scarab