#general

1 messages · Page 250 of 1

jagged moon
#

Light arachnophobia here

tired peak
#

nope

loud marlin
#

centipades i wish i didn't watch that movie =/

high mulch
#

Errhh... I'd say yes (?) I have both, I usually only use the 5G for devices near the router. Idk if your device supports MU-MIMO, if so, enable, but do your research before doing so. I did it on my part, since I had some issues with my WiFi, since then, it's been quite okay. Despite the fact my ISP sucks and I hate it, but that's off topic.

barren lantern
#

I knew this was coming and still flinched

lavish trench
shut hawk
#

lol just learnt go only has one loop construct, for - so a while true loop would be for {}.....how odd 🥴

buoyant tree
high mulch
shut hawk
barren lantern
lavish trench
buoyant tree
high mulch
high mulch
lavish trench
high mulch
#

Just going back to the 2.4 GHz and 5GHz. Creating a separate network might not resolve your issue. While it might solve it, if the congestion ain't that high.

If you can optimize the 5GHz channel, do it. I personally did mine. My equipment is not rented, I could do it without problems, but if rented, you'd have to use your ISP app (if they have any) or maybe even have to call support.

rapid merlin
#

@rapid merlin

#

sorry for being

#

grumpy

#

Dw dw

#

Have a good one😄

lavish trench
#

@high mulch I think MU-MIMO only works on 5ghz, and my router even dont support 5ghz

high mulch
sick lance
#

This needs to ruuuush

lavish trench
high mulch
#

I don't know if you have IOTs, that'd be another recommendation, to get them off.

#

Move the router, to a better location, more central location. No loads of furniture blocking the router, put it on a elevated position (which I should take this recommendation for myself lol).

But yeah, less headache? If you can, buy another router...

lavish trench
barren lantern
sick lance
sick lance
#

I stick with Kali because it has what I need.

barren lantern
#

I see

lavish trench
cold jungle
high mulch
rapid merlin
#

hi

lavish trench
rapid merlin
#

um

neon river
#

hello

rapid merlin
#

go check out no text to speech's latest vid

#

pls

#

this is disgusting

neon river
#

already saw

rapid merlin
#

i hate

neon river
#

skids will be skidding

rapid merlin
#

the internet

neon river
rapid merlin
#

good thing i turn off all telemetry

#

on

#

whatever i use

#

and always worry about my security

neon river
#

basically just use common sense online

#

and you should be fine

#

there wasn't really much at all to do with telemetry

#

since they used RATs

rapid merlin
#

yea but still

silver sky
#

Leave them be

dull portal
#

is there a way to exclude a linux partition in windows defender

#

because...

silver sky
gray sonnet
dull portal
silver sky
#

WHAT DO YOU HAVE ON YOUR LINUX PARTITION

loud marlin
high mulch
#

probably some daemons...

neon river
#

That was not fun

normal fable
#

ez.. don't allow Windows to see your Linux partition. lol

dull portal
#

REALLY

#

doesnt like hacktools

normal fable
#

Could encrypt it..

silver sky
dull portal
#

IKR

neon river
#

@dull portal how does windows even detect the Linux partition??

loud marlin
#

im shocked

neon river
#

Why were you using ntfs on ur Linux partition 😭

loud marlin
high mulch
# dull portal doesnt like hacktools

yuppp, I used to run my own silly scripts, like keyloggers, or php stuff. It turned my vscode into an annoyance... recommendation, don't run it on a windows machine lol

neon river
#

Who in their right mind would do that 😭

silver sky
#

God forbid an antivirus doesn't like hacktools that could be installed by a threat actor

normal fable
#

lol

silver sky
#

short answer, seperate your shit

neon river
loud marlin
#

it can

neon river
#

It can’t detect ext4

dull portal
normal fable
#

Run a VM don't install on hardware...

loud marlin
gray sonnet
#

Hey EZ 👋

neon river
normal fable
#

afaik Windows can't see ext4 drives.

neon river
#

You have to install some wacky third party tooling for windows to be able to read ext4

#

Or you have to plug it in as a separate drive and go through wsl

loud marlin
normal fable
#

I'ma make a ext4 usb with hack tools on it to see if Windows detects it..

dull portal
#

OHHHH

#

IM SO

#

DUMB

normal fable
#

as soon as my windows computer is done creating a backup image... lol

loud marlin
# neon river No

then how in d heck ransomware and so encrypted even linux partitions and so

dull portal
#

IT WAS THE ISO IMAGE THAT I WAS SEEDING

neon river
normal fable
#

omg lol

neon river
#

Probably

#

Or smth

neon river
#

My AV catching the kali iso

normal fable
#

yo.. yall making me want to set up a VM to test this ransomware theory..

neon river
#

But it detects the tool inside

#

So it can’t actually delete the file

#

Since it doesn’t exist on the fs technically

#

So it goes bezerk

normal fable
#

I didn't think Windows Defender would mount an ISO to scan it..

neon river
#

AFAIK

#

Aren’t ISOs basically glorified zip files

neon river
#

Nvm it’s more like tar

whole yew
normal fable
#

Juun always dropping knowledge. Thanks @whole yew

#

what?? no +rep?? 😦 boo

whole yew
#

kek

#

no worries

normal fable
#

Guess I just pinged you for nothing then.. sorry. lol

boreal scarab
#

+rep @whole yew

#

Wtf?

#

BENNNNN! Quit breaking the bot!

normal fable
#

bot dead I think.. 😦

dull portal
#

bot is on vacation

whole yew
#

different bot

loud marlin
#

oh

whole yew
#

rep is managed by robocop, i think

loud marlin
whole yew
#

i guess it could be yag?

normal fable
#

til... by default ADUC as installed by RSAT does not show bitlocker recovery keys....

boreal scarab
#

If it's a bot, I'll always blame Ben, even if it's not his fault lmao

normal fable
#

had to look up how to get that feature installed... lol

sand trench
#

t minus 1 day...........

normal fable
#

until?

#

cheese CTF??

sand trench
normal fable
#

ah.. hope it goes good for ya.

gray sonnet
gray sonnet
sand trench
gray sonnet
#

Oh

honest forge
#

So, just saw a job posting for an incident and response analyst that the compensation included an incentive plan. That sounds like you have a quota and get commission or similar, right? lol

sand trench
#

check if said workplace recently had an incident

#

sometimes they try and hire incident and response people after an incident

honest forge
#

Google search doesn’t show anything recent

#

What would the incentive plan be if not some type of commission? I know you’re not selling while doing IR but still

rapid merlin
#

hi

sand trench
#

ello

#

ah yes the mixed bag video tutorial site

barren lantern
#

👋

barren lantern
sand trench
# barren lantern Wdym?

there is a lot of not very good tutorial content on udemy mixed in with the rarer really really good stuff

normal fable
#

I still haven't made it through all the TCM videos yet.. got my AD lab all set up.. but.. haven't gotten further.. 😦

sand trench
jovial musk
#

any programming languages worth knowing for web bug bounty

#

or just python, html, sql, javascript and css

sand trench
#

well a few of those you listed there are not programming languages

normal fable
#

js, python, php, sql, html at minimum I think.

jovial musk
#

i know js but just a bit

#

the rest i know pretty well

sand trench
#

would say learning some nosql database langs could be very very helpful too

#

and php

normal fable
#

Don't need to know ALL of the language.. just have a basic understanding of how it works.

jovial musk
normal fable
#

know how cookies work too. Very good to know stuff.

jovial musk
#

@sand trench @normal fable thanks

clear jackal
rapid merlin
#

hi

clear jackal
#

Hello

jovial musk
#

good day

honest forge
sand trench
clear jackal
#

Total compensation is everything, base salary, stocks, etc @honest forge. Sorry it didn't attach to your message

rapid merlin
clear jackal
mossy river
#

I’m leaving cyber

#

The amount of pain this computer is putting me through

#

It’s not worth it

shut hawk
#

thank you for your service

#

🫡

mossy river
#

I’m taking you with me Jayy

#

I’m so hungry but I’m out here trying to fix the bloody wifi because the company that I bought the computer from thinks it’s better to send me on a run around instead of actually looking at the specifications of my machine

shut hawk
#

You got driver issues?

mossy river
#

No

honest forge
amber inlet
#

Loading reputation exploit.exe

amber inlet
#

Drats

honest forge
normal fable
#

Scary when you reboot your box and keyboard doesn't connect...

normal fable
#

box=computer

#

Like in "VirtualBox" the "Box" part refers to computer. 😉

gray sonnet
#

so in that logic, ware also should mean a computer 👀 /s

buoyant tree
buoyant tree
gray sonnet
#

HackThe"Box"??

#

not even there?

buoyant tree
#

head's starting hurting

gray sonnet
#

👀

steep galleon
#

hey

#

im kinda new to this

normal fable
#

Box can mean several things.. but one thing it does mean is "computer" 😛

normal fable
#

Like "Oh man I just popped that box" can mean "I just got a shell on that computer system"

wooden totem
#

Shoutout to Hack The Box

harsh gorge
#

Is it me or the VMs are really not working well today?

loud marlin
#

thm VM ?

gray sonnet
#

attackbox?

steep mountain
#

Anybody have VirtualBox installed on there Mac M1/M2 Pro, or am i still beneficial with UTM?

amber inlet
#

THM network is same speed as always for me

rapid merlin
#

question

#

is there a way to delete

#

all discord messages

#

that you made

boreal scarab
#

Doing Sourcing.Games, get this pic. @gray sonnet says: "That looks like a person I know"

sullen hearth
rapid merlin
harsh gorge
#

Like windows rooms

#

It's sooooo slow

sullen hearth
rapid merlin
#

damn.

#

now im even more paranoid

sullen hearth
#

Why

rapid merlin
#

cuz

#

i was a weirdo

harsh gorge
rapid merlin
harsh gorge
#

I don't even know what we're talking abt

amber inlet
#

Ping 10.10.10.10 what’s the delay? @harsh gorge

sullen hearth
#

Its just a syntax error i think.

amber inlet
#

It’s slow loading rooms or just copying files or what?

normal fable
#

Pictures?

harsh gorge
sullen hearth
#

Can u share a screenshot?

harsh gorge
#

4 received 4 lost

amber inlet
#

Interesting, maybe switch VPN server? You shouldn’t be losing packets

harsh gorge
#

Idk it's taking forever even to locate files

#

Like it's there is no output for like 30 seconds

boreal scarab
sullen hearth
#

Would confirm thats not from you

amber inlet
#

sudo ip link set dev tun0 mtu 1200

Try running that then test the ping to 10.10.10.10 again @harsh gorge

normal fable
#

Yo.. Take out everything after ; and just put in whoami to see if it tells you like www-data or something.

sullen hearth
#

Switch the /) behind "process" and try again.

normal fable
#

not sure if that'll work but it's a thought.

swift kite
#

Hai Hai

amber inlet
#

Either that or you need to switch VPN servers to one that’s closer or one that drops less packets @harsh gorge

swift kite
#

wut system r we hecking today

amber inlet
#

Looks like it ran?

#

🤨

swift kite
#

is that a thm room

#

looks interesting

amber inlet
#

Ping RCE OP

sand trench
#

try other chars that are not ;

normal fable
#

I was just experimenting on my system. lol

swift kite
#

nice nice

#

i mostly play vulnhub cause I've played every freaking system and i swear everything is easy now

sand trench
boreal scarab
#

@loud marlin I just created a very simple hacking ducky script

sand trench
#

you most likely want one of the simpler ones... the bash -i or nc mkfifo or python3 ones are the go tos for many

boreal scarab
#
ENTER
DELAY 100
STRING cmd
ENTER
DELAY 200
STRING color a
ENTER
DELAY 50
STRING tree
ENTER```

Bask in the glory of my hacking ducky script!
@loud marlin
sullen hearth
#

mkfifi

sand trench
#

shadow remembers the old days where you can put the entire windows system upside down

boreal scarab
loud marlin
buoyant tree
#

That's pro haxor level scripting

#

green terminal

boreal scarab
#

If you're not using hacker green, you're not really hacking

pliant cairn
#

open 3 different terminals and keep spamming tree

sand trench
#

so is that why shadow is not a true hacker as they use the catppuccin colorscheme instead???

normal fable
elfin tiger
#
  • How's it working as a SOC Analyst?
  • How's the work-life balance?
  • If I'm on leave/vacation and the company I work in has a cyber attack, will my vacation get pulled/will I have to cancel my leave?

Also... Should I become a Cybersecurity architect or a SOC Analyst?

Please tell me briefly the pros and cons of both.

normal fable
#

I made a scambait VM that had the tree command print out ASCII art of an oak tree. Lol

normal fable
#

I may still have that file. It's like tree.cmd on one of my old windows vms..

pliant cairn
# elfin tiger * How's it working as a SOC Analyst? * How's the work-life balance? * If I'm on ...

I work in a SOC team. amjorly for firewalls and sec posture. cybersec architect is one of the elite jobs imo and is very well respected at least in my firm and its not an easy job to crack. i have seen architects as old as 50+ years with almost 10+ years of work experience. SOC has multiple levels and yes sometimes the SOC analysts more or less have to face a situation where the work life balance might get disturbed but personally i have never experienced anything as such

pliant cairn
tepid furnace
#

Wooo burpe suite mentioned

pliant cairn
boreal scarab
loud marlin
#

that's why we can't have nice things...

#

dheck you write

slow helm
#

i'm in this room

#

there is an spip 4.2 based website

#

and i found an exploit for it (RSE)

#

i did everything

#

but when i do a nc command to get a shell

loud marlin
boreal scarab
# loud marlin dheck you write
DELAY 400
GUI r
ENTER
DELAY 500
STRING cmd
ENTER
DELAY 500
STRING color a
ENTER
DELAY 50
STRING tree
ENTER
END_WHILE```
boreal scarab
normal fable
#

lots of trees. lol

boreal scarab
#

Infinite trees!

boreal scarab
normal fable
#

should do WHILE TRUE right before tree kekw

loud marlin
boreal scarab
#

I'm seeing AND ONLY FOR TESTING PURPOSES, writing a python script to increase thread, and having the ducky script call it.... dunno if it'll work

normal fable
#

python? why no powershell?

boreal scarab
#

Alt....

#

It would not stop, not even ctrl C

normal fable
#

🤣

boreal scarab
#

Have the script call the exe

sand trench
#

anyways shadow is gonna have to call it an early nights... so meep moop to the beep boop for the sleep sloops

normal fable
#

script call exe that calls script?

boreal scarab
#

Stay up 4 more hours!

boreal scarab
normal fable
#

Early! Nite shadow. 🙂

boreal scarab
#

Alt, you monster

sand trench
normal fable
#

Dream of cheese shadow. 🙂

glacial summit
#

hey chat

#

how do I get verified etc?

sharp citrusBOT
glacial summit
#

thnks mate

normal fable
#

np. 🙂

#

oh no.. I forgot to take my vitamin this morning..

glacial summit
#

yayy it worked

glacial summit
normal fable
#

Taken.. a little late but better late than never.

glacial summit
#

yeh

#

damn £9 for tryhackme.... i wish i could subscribe

normal fable
#

You don't have to. About 70% of the content is free.

glacial summit
#

ig fair enough, but it has some benefits

normal fable
#

Yeah.. you get to run ab for more than an hour per day.. but if you use a VM then you don't have to worry about that. And VIP VPNs..

#

Some cool rooms are sub only as well but most of the content is free.

glacial summit
#

yeah

#

u recommend getting hackthebox as well?

normal fable
#

I stopped using HTB honestly. I like THM more. I'd say try both and go your own way. 🙂

glacial summit
#

i honestly been in cybersecurity and hacking for like the past 1 or 2 ish years and only just forced myself to use tryhackme or similar😂

normal fable
#

HTB has academy now.. or whatever they call their learning progream. I believe it's all paid content though. I've always just booted boxes and hacked them on HTB. THM offers more learning content and I like the style a little better. My opinion..

loud marlin
glacial summit
normal fable
#

There's a lot of practical stuff on THM.

#

A lot of CTF style boxes too. 🙂

glacial summit
#

thats nice

proven lion
#

hi everyone im new and im interested on cybersecurity do u now where should i start?

normal fable
glacial summit
normal fable
#

Try some of the intro rooms on the website too.

glacial summit
#

god im too tired to recall stuff rn

normal fable
#

People Don't Need Those Silly Packets Anyway kekw

proven lion
#

ok tyall

glacial summit
#

no way the man the legend himself @hasty sand is here

glacial summit
harsh gorge
#

Guys I was just watching a video abt IPS, if I understand correctly the traffic first goes to the IPS. Is there any attack where its possible to change IPS rules so you basically peeled one onion layer to root right?

#

@hasty sand is it u from the pic?

#

I watched the podcast

glacial summit
hasty sand
#

Yeah, I love TryHackMe ❤️🙏

harsh gorge
#

Nooo way

#

U rock bro

hasty sand
#

Thanks for the kind words!

boreal scarab
#

Ryan! Will you be at DEF CON 32?

harsh gorge
#

How do you get to your skill level? @hasty sand

hasty sand
normal fable
#

Nice!

glacial summit
boreal scarab
hasty sand
hasty sand
harsh gorge
#

Like your skill level

#

Your like the best hacker in the world

hasty sand
#

Haha def not that but I appreciate it.

boreal scarab
hasty sand
#

Looking forward to meeting

still dirge
#

@hasty sand whats ur favorite thing to do at defcon?

boreal scarab
glacial summit
hasty sand
boreal scarab
#

Ya better bring stickers. Can't come to a hacking conference without the hackers drugs, stickers!

harsh gorge
#

Do you think you can be a pentester from just ctf's?

hasty sand
hasty sand
tidal quartz
boreal scarab
glacial summit
boreal scarab
#

Yah, best hands on practise, is creating a vulnerable windows and windows server machines while also attacking it with the kali machine

#

All internal

boreal scarab
#

Now, back to coding my ducky script

glacial summit
normal fable
#

Once you get a 7 day streak you can do the AD machines. Pretty hard.. but worth it.

tidal quartz
boreal scarab
#

(THIS IS ALL FOR EDUCATIONAL) Don't do illegal shit kids

tidal quartz
glacial summit
still dirge
#

@hasty sand are u team CG

umbral bay
#

👋

glacial summit
boreal scarab
normal fable
#

Hiya Tim. 🙂

boreal scarab
#

@loud marlin I sad, I can't call my script unless I host it on a site.... I cri

normal fable
#

Need a site to host it? lol

boreal scarab
#

I has site. But 1 site I has no want work

#

Jesus @normal fable That script, there is no delay, just back to back to back to back running

boreal scarab
normal fable
#

Oh no.. I'm feeding ideas to Matt... and I'm probably gonna become a test victim at dc. lol

boreal scarab
#

Yes

normal fable
#

I just took an image of my Windows machine.. so we can blow it up a little. lol

boreal scarab
normal fable
#

lol

boreal scarab
#

I shall bring all my scripts!

#

MUAHAHAHA

normal fable
#

I'll bring a drive with my Windows image on it so we can destroy the OS over and over and over. 🤣

boreal scarab
#

Hell, I even wrote a ducky script to go through the installer prompts for work.. hehehhe

#

It actually worked, surprisngly

umbral bay
boreal scarab
#

Do I have the script written down? hahahahahaha
No.. my dumbass didn't start putting the script code into .txt till way later on

obsidian monolith
#

if i need an advice wheres the best chanell to send on

boreal scarab
boreal scarab
obsidian monolith
#

do i send it here and you can guide me to what chanell?

normal fable
#

what do you need help with?

#

Just ask.

obsidian monolith
#

so I have just finished my third year
and I took networking/security/network security/ethical hacking/Penetration testing/ISMS/forensics courses in my collage
and i have loved the forensics alot and the penetration but the path for the penetration is so long
so i was thinking maybe getting good in forensics and at the same time learning small things for penetration for the future ?
so i still have a forth year and 8 months training
and I want to have good skills before I finish
I have started with tryhackme and the path for DGIR but most of it require paying like any sub links for tools or windows Forensics 2 and so on
so i wanna know am i on the right path? and what i need to do
and its worth paying right? i just wanna know to focus on what and how to study

boreal scarab
normal fable
#

For sure do that.

boreal scarab
obsidian monolith
#

im! thx
but for the paths ? do i keep like that?

#

i just dont wanna end up in two yesrs doing nothing
i wanna start focusing from now

normal fable
#

Yeah. For learning THM is great.

boreal scarab
obsidian monolith
#

whats your path?

boreal scarab
#

OSINT

normal fable
#

I haven't seen too many data forensics type challenges on THM but I don't actively search for them.

#

But for general security, I recommend THM. Lots of good info.

boreal scarab
#

I do love me some OSINT

#

Like my food for info sec

boreal scarab
#

Nomming on info

latent spade
#

where can I ask for tech support if y'all dont mind

boreal scarab
latent spade
boreal scarab
#

😄

latent spade
#

thank you

#

:)

boreal scarab
#

Welcome!

normal fable
#

Bot working yet?

#

+rep @boreal scarab

twin ridgeBOT
#

Gave +1 Rep to @boreal scarab (current: #30 - 273)

boreal scarab
#

Yep!

normal fable
#

yay!

boreal scarab
#

WOOOO

latent spade
#

how do i link my thm account w discord

boreal scarab
#

-rep Scrubz, not coming when I ping, tsk tsk tsk

sharp citrusBOT
latent spade
#

ty

normal fable
#

lul

#

:LuL:

boreal scarab
normal fable
#

omg.. it blocked by Clyde.. what an a-hole.

normal fable
#

but but but... I don wanna nitro... 😛

boreal scarab
normal fable
#

I can't even post animated emotes in my own dang server... lol

obsidian monolith
#

so where can i send to get more advice on my path? this is general random chat 😂

normal fable
#

yep. was gonna say. 🙂

latent spade
#

i hate openvpn

obsidian monolith
#

ok thank you guys!

boreal scarab
#

Welcome!

normal fable
#

Wow.. Matt is feeling helpful today. kekw

boreal scarab
#

Who am I?!

normal fable
#

hoo? hoo. hoo..

boreal scarab
normal fable
#

moo hoo?

boreal scarab
#

Hoo moo

normal fable
#

I've clearly lost it... today.. lol

boreal scarab
#

Today?

latent spade
#

can yall help me a bit lol if i dont annoy u too much

normal fable
#

ok.. well..

#

ask 🙂

latent spade
normal fable
#

Someone should help you there then.

clear jackal
latent spade
#

not with a room, i'm having issues while trying to connect to the ovpn file

normal fable
#

Ya gotta be patient.

clear jackal
normal fable
#

That's kinda like "man.. I started this stupid nmap scan four seconds ago and I still don't see any open ports" kekw

chilly veldt
#

12 am house music with your colleagues hit different

clear jackal
#

Their message I responded to was the first one I saw

normal fable
#

Matt.. you know better than to harass a moose...

boreal scarab
normal fable
#

I call dibs on koth voice chat

boreal scarab
normal fable
#

They should put some kots for us in rules... lol

boreal scarab
latent spade
#

i've fixed my problem it wasn't from me it was from thm ig

rapid merlin
#

docker is a container, it is basically a package with the software's operating sys files, used to seperate the software from the base system and to prevent incompatibility issues

normal fable
#

@rapid merlin check out gtfobins.

mossy river
#

My computer is dead

normal fable
#

Noooooo! Jabba!! Whyyyy?

mossy river
#

Not powering on

#

1.7k tower

normal fable
#

Are you sure it's plugged in? kekw

#

Sad 😦

#

I has power supply. What address send to?

mossy river
#

Currently working with a company to see if they can fix it

#

I think the motherboard has gone

normal fable
#

123 find-me st nesw??

#

Daaang.. bad rap Jabba.. Sorry for your loss.

#

Time for an upgrade then?

#

Reminds me.. I have to do my clutch in my subie.. best way is to pull engine.. and I have a EJ257 in my bro in law's garage... so maybe do a swap...

latent spade
#

im trying to mkdir and its failing wtf

normal fable
#

what you trying to do @latent spade?

latent spade
#

i'm trying to install vuls

#

and as i'm going thru a walkthrough

#

mkdir: cannot create directory ‘/src/github.com/vulsio’: No such file or directory
i'm getting this

#

and it worked before

mossy river
loud marlin
#

mkdir -p /src/github.com/vulsio

#

but you need sudo for mkdir in src

latent spade
#

the command is cd $GOPATH/src/github.com/vulsio, which worked 5 minutes ago but now it simply wont

normal fable
loud marlin
#

the just add that local variable as shown

#

do echo $GOPATH first command

latent spade
#

nothing

#

wtf

loud marlin
#

then gopath variable is not set

latent spade
#

it was though

loud marlin
#

and waht it was set to

latent spade
#

that's why i'm confused

#

fixed it

#

i forgot to source

loud marlin
#

=/

normal fable
#

I've been thinking about upgrading to a better processor...

latent spade
#

nd im here with a i5-9400f

boreal scarab
#

I just saw the STUPIDEST app ad in a long time:

App is AI
Ad tells people to put in their name, the month you were born, and the state.......

#

I'm losing fucking braincells

mossy river
#

I'm the king

normal fable
#

Go get something to drink, relax a bit. Maybe get some fresh air. Come back and hack more.

loud marlin
normal fable
#

🤷

boreal scarab
#

Are we comparing specs here?
+3070 TI

loud marlin
#

how what ?

mossy river
boreal scarab
normal fable
#

too soon Jabba.. too soon.

mossy river
#

That is literally my pc

mossy river
#

or close enough

loud marlin
#

neofetch with theme and so on

latent spade
#

should this scare me

mossy river
#

I'm actually so lucky I own a Macbook or I'd be out of work rn

mossy river
boreal scarab
twin ridgeBOT
#

Gave +1 Rep to @loud marlin (current: #27 - 311)

normal fable
#

You can put EndeavourOS on a MacBook.. 🙂

latent spade
#

but it didnt take a while

mossy river
#

Putting anything other than MacOS on a Macbook is silly

loud marlin
#

it's also tilix, zsh with ohmyszsh and powerlvl10k theme

mossy river
latent spade
normal fable
mossy river
#

holy shit that's wiked, I need that

loud marlin
#

and on top of that is zellij tiling window

#

yes

mossy river
normal fable
#

want

latent spade
mossy river
#

I'd show you my PC wallpaper but..

#

😔

loud marlin
#

it can't be on all linux and so but it can

latent spade
#

it was the hardest week of my life trying to install macos on it

normal fable
#

🧱

loud marlin
#

i did it tbh

normal fable
#

I sowwy

latent spade
mossy river
normal fable
#

I'm sad about your PC Jabba. 😦 really am

mossy river
#

It's been dying for about 48 hours

#

I've spent so much time trying to fix it

latent spade
#

why is your computer dying

mossy river
latent spade
#

yes indeed

normal fable
#

Technology is built to fail.. This ain't NASA...

mossy river
#

We came to the conclusion that the wireless wifi adapter was broken

boreal scarab
#

Let the record state, I, Matt, Did not touch Jabba's computer. You all have no proof!

mossy river
#

and now the motherboard is fried and it's probably because I did something dumb

latent spade
mossy river
#

Oil, flour, egg

latent spade
boreal scarab
#

mmmmmmmmmmmm crunch motherboard

latent spade
#

add a little bit of salt n pepper to it

normal fable
#

I was looking for a gif of someone flipping a motherboard in a frying pan.. but I guess I'll just have to video it and make my own gif..

mossy river
normal fable
#

I'ma need.. a hot plate.. junk frying pan.. old motherboard.. and some bacon.

amber inlet
#

Is Jabba real or AI image gen that was way too fast

mossy river
#

I am almighty

#

Look at my crown

#

I'm literally him

normal fable
#

All hail Jabba the great!

tired peak
#

boo jabba

tired peak
#

o rly?

mossy river
#

I don't see a crown on your head

tired peak
#

👑

#

you aren't looking hard enough

mossy river
#

thank you for handing me my crown

#

👑
🫴

mossy river
#

😂

normal fable
#

Scripted.. totally scripted... lol

mossy river
#

Zojja has me beat

normal fable
#

Yall can both have crowns.. just... stop arguing. lol 😛

pine stratus
mossy river
#

not really much anymore

tired peak
#

smaht

pine stratus
mossy river
mossy river
#

Alcohol doesn't really affect me

finite basalt
mossy river
finite basalt
#

Neither, I'm on medication so booze hits like a truck 🤣

#

Cheap nights out for me, I can have a few drinks before I leave the house and get away with a couple of drinks at a club, mind you I could enjoy the club I tend to go to sober haha
Mind you my limit also went down after first year, I can't get away with ten doubles+mixer and 3/4 jagerbombs 😆

#

probably, just check the report profile section

#

Probably under impersonation/scammer

latent spade
#

facebook reports don't work

#

you're wasting ur time if ur reporting someone

#

cuz they aint doing anything

finite basalt
#

they will if enough people report it

mossy river
#

They do lol

#

I've had reports go through

#

Impersonation, yes

normal fable
#

Reports work on FB...

finite basalt
#

and if everyone has the bystander effect of "I can't do anything if it's just me so I won't bother" then nothing gets done

#

so damn slow using wsl on mounted partitions ;-;

twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #6 - 1267)

latent spade
finite basalt
#

Nah, I'm looking at making a serverless bot

#

using aws and lambda functions

latent spade
#

what does "Serverless bot" mean

finite basalt
#

It's not hosted on a server as such, it's broken down into a series of functions that are called as needed

latent spade
#

oh

#

now I get it

#

wtf that's a headache

finite basalt
#

The functions are stored and executed on a server but they can be put on a shared server so I don't have to pay for a server for it specifically

finite basalt
# latent spade wtf that's a headache

Nah, it doesn't look to complex, it's just that I'm planning on using pulumi so it's infrastructure defined as code and can deployed by anyone to an aws account

#

it's also significantly cheaper as you're not paying for a server dedicated to hosting the bot, like it costs 2p per million lambda requests + some for each response but it's nothing in comparison to the cost of a server and anything within aws's thresholds will be completely free

pallid lotus
#

Discord

finite basalt
pallid lotus
#

Well that's interesting. How on earth is that working I wonder.

finite basalt
#

You set the interaction endpoint for discord and then it uses that endpoint to make requests to a rest api 🙂

pallid lotus
#

Last I checked the bot had to sign up to an events hub to receive guild events

#

Ooooooh

finite basalt
#

Yeah it's to do with the interactions side more than anything

pallid lotus
#

Well now that changes things

#

That's a huge improvement. Shows how out of the loop I am with bot dev lmao

finite basalt
#

Currently my biggest issue is:
a. WSL actions on the host partition are so slow that I may wither away
b. Pulumi is struggling to validate my aws session
c. My laptop keyboard's m button is fubar so I have to press it to make it work

#

Aside from that I'm confident I can make it work, I want to do some automatic student verification for our society and had a proof of concept that used email aliases

pallid lotus
#

Why pulumi over terraform / opentofu? I think we've had this conversation actually

finite basalt
#

I've used it before with work and it works really nicely with javascript and typescript so I don't need to use yaml

pallid lotus
#

Fair enough 🤷‍♂️

finite basalt
#

as it's a typescript project anyway it made sense

pallid lotus
finite basalt
#

also out of curiosity if you don't mind me asking, how did your soc verify student ids? I was thinking I could use email aliases for ours because we can do id@domain to send an email

flint lintel
#

Guys, what exactly is a name server ? And is it the same as a DNS server ?

finite basalt
finite basalt
pallid lotus
#

I suspect you've got a similar idea. I set up a site which asks them to enter their student ID. The bot then verifies that against the uni exchange servers and sends them a TOTP. If they enter that correctly, it dynamically generates an invite and redirects them into it.

finite basalt
#

Ah mint

pallid lotus
#

The most complicated aspect is the mail service there. Email is a pain in the arse to work with these days

finite basalt
#

So the way we did it (because we have a soc, discord url on the su page), the bot actually had two commands when I first developed it, email and verify, one sent the code to email using student id and the other took the code and gave your role

finite basalt
#

if I can get pulumi to play ball ofc

pallid lotus
#

The technology is still simple obviously, but getting past spam filters is a bitch and a half if you don't want to pay for SES / Sendgrid / whatever

finite basalt
#

Yeah but the student union said they'd be interested in hearing me out as I said other socs could also use it haha

#

and if I can make it dirt cheap to run it's even easier to push for it

pallid lotus
finite basalt
#

yeah, had that with work but that should be okay with a couple hurdles

pallid lotus
#

Fair

latent spade
#

what is the port 85 ? i cant find much on google about "mit-ml-dev"

pallid lotus
#

Then yeah, that should do it.
Also need to check that your uni mail servers aren't going to throw a fit or reject your lookup requests

#

You don't really want to let people just spam your email send function

plain copper
#

.

finite basalt
#

yeah so originally I just had a settimeout for the user and a collection to ratelimit people etc. but now I can set the apigateway ratelimit instead which is nice

pallid lotus
pallid lotus
latent spade
#

thanks i still don't understand what mit-ml-dev is

finite basalt
pallid lotus
#

Valid

finite basalt
#

not sure exactly how I want to do it yet but I'll figure it out once I've got a dev version working

pallid lotus
#

I'd be careful about setting an overall rate limit on Discord. That turns it into a DoS scenario rather than a resource consumption scenario

#

At least it's cheaper though kekw

finite basalt
#

Absolutely yeah, it's something that'll require some thought, I can also probably set some stuff on SES to control it

#

and potentially need to look into how to handle bounced emails so it doesn't happen again and ruin the email rating because AWS get a bit hissy if you ruin it too much because it's their IPs

blazing granite
#

@pallid lotus is in the house 🥳 How are you? 👋

pallid lotus
#

I'd suggest just tracking individual usage of the command honestly. Key value DB store (e.g., Dynamo) with Discord ID as the PK. Set an expiry on the key:value pairs and do it that way

#

There's probably a more efficient way of doing it than that, but meh

pallid lotus
loud marlin
mossy river
finite basalt
latent spade
pallid lotus
finite basalt
#

I'm really in the wrong place to be doing dev work atm 😭

clear jackal
mossy river
pallid lotus
#

God I really am tired

#

I used blobfingerguns rather than blobno

#

That conveys entirely the wrong message.

finite basalt
#

I'm currently back at my parents so I don't have my monitor and am stuck on the laptop with a dodgy key, I could fix that or use the keyboard that's about a metre away; however, then I wouldn't be able to complain about it and I'd have less space on the small desk that I'm currently using

blazing granite
mossy river
loud marlin
pallid lotus
#

That reminds me, I need to replace a switch on my laptop keyboard. Cheers 😆

pallid lotus
#

Good luck

pallid lotus
#

That and I need to shower and walk the dog

mossy river
#

Thought you walked the dog at 10 tbf

pallid lotus
#

I did

finite basalt
#

I wanted to go home tomorrow but my brother's prom's tomorrow so it's on the sunday which is annoying because it's my final day off before I go to work, I've been getting filthy helping my dad with a land rover he got recently and cleaning the garage

normal fable
#

Shower dog and walk. k. lol

pallid lotus
#

She's getting another walk because she's not feeling well

finite basalt
#

He got an old ex-MOD landrover which I've been helping him strip down, and right now my hands are filthy because I've got 2 days of oil and muck on them that will not wash off no matter how hard I try 🤣

pallid lotus
#

Fun project though

finite basalt
#

for sure but my once black jeans are now brown 🤣

clear jackal
blazing granite
loud marlin
finite basalt
#

Tell you what though, that car is strangely mechano like, it literally is some bolts to remove the wings and the bonnet lifts up and slides straight off haha

normal fable
#

That's a project

finite basalt
#

doesn't drive or have breaks right now but we took the bulkhead out yesterday so we can get the rust cleared away and weld some replacement panels in

normal fable
#

I have a 78 chevy I need to put a new wiring harness in.. and do a lot of body work to..

finite basalt
#

rest of the cars in good nick though tbh and all the parts are there, what's cool as well though is it's 24v as it was designed for fitting radios easily

finite basalt
normal fable
#

Yep. It's a cool older car. Love it.

finite basalt
#

honestly, in a day we'd got the entire front body off it

#

we removed both wings, the front grate, the windscreen and the bulkhead in <6 hours

normal fable
#

I'm gonna have to do a lot of work to my truck. It needs a lot of tlc.

finite basalt
#

It was a bastard to get in the back garden though 🤣 barely fits down the side of the house and trying to roll 1.7 tons up hills with three of us was fun

normal fable
#

But.. I bought it for $2700 and have been offered $30k for it in the condition it's in. lol

finite basalt
#

Fair play man, that's really cool 😄

#

yeah it's definitely fun but I'm finding that every time I visit my parents I get filthy haha

#

was saying though as well, whatever undercoat the MOD put on it's insane, it was everywhere and when I was removing some of them from the bolts and the surrounding metal, the paint still looked brand new

normal fable
#

Big ol 4x4.. lol

pallid lotus
finite basalt
#

That was my hand after only pushing the land rover in 😂

finite basalt
#

when'd you get it?

normal fable
#

It's got a hole rusted in one of the doors bigger than my fist, the bed is all rusty, the lift job wasn't done right, transfer case is grenaded, leaks oil almost faster than you can pour it in.. lol

#

2020

#

Lots of work.. lots. lol

#

floor pan is rusted almost completely out too..

whole yew
tired peak
#

pet tax! pet tax!

whole yew
normal fable
#

Yeah. They're spendy af these days.

#

You can't touch one for under about 20k that runs anymore.

#

out here anyway... huge vintage car scene.

finite basalt
normal fable
#

Well.. I think I'll just order a whole new floor pan and get out the wire feed welder.. need to re-up my body skills anyway. Should be nice.

finite basalt
#

it should be easy to fix because we've got it off so we'll clean it up, strip it and weld it but I was saying it the MOD put some undercoat on it it'd have been in perfect condition still 🤣

finite basalt
normal fable
#

Thin gauge steel like that tho.. def use copper backing. lol

pallid lotus
finite basalt
#

yeah, how easy's it to work on? does everything tend to come apart as it should?

normal fable
#

I'll have to do some practice welding.. it's been a while.

latent spade
#

what is extended passive mode in ftp? it just stucks my commands

whole yew
normal fable
#

Everything comes apart pretty nicely. It's pretty easy to work on.. if you don't mind being in the engine bay. 🤣

finite basalt
whole yew
clear jackal
finite basalt
normal fable
clear jackal
#

We can send virtual good juju through the picture

finite basalt
whole yew
loud marlin
whole yew
normal fable
finite basalt
#

Hell I might just get some scraps of steel lying around and give it a go as well tbh

whole yew
normal fable
#

Most of it is gonna be flat. I've done a lot of welding in my time.. used to do it professionally. lol

whole yew
#

and i'd worry less about heat and more about blowing through the sheet

normal fable
#

Just gotta set the rig right and make sure I don't burn through that thin gauges steel.

whole yew
#

yeah

normal fable
#

smae thoughts. lol

whole yew
#

i can do tig and oxy welding pretty good on thin stuff, but stick and wire feed is tough

normal fable
#

I've actually never done tig.. but I do want to try it. Done a lot of oxy welding..

#

Fine art.. love it.

whole yew
#

yep

finite basalt
#

This is the current state 😅

whole yew
#

one of the welding tests, i had to do 3/8" plate butt weld with oxy

normal fable
#

omg..

whole yew
#

that was one of hte hardest

normal fable
#

that's insane. lol

#

Ship welding?

whole yew
#

i barely passed

#

so much filler

#

nah, it was a test for tractor repair

normal fable
#

That makes sense. Seems like evryone has an arc welder these days.. but not many people know how to use one. lol

whole yew
#

i have a really small 110v arc and a 110v flux core setup

#

i've thought about getting a tig want and bottle for the arc, just can't justify the cost

normal fable
#

Unless you do it all the time for extra income, it is quite expensive.

finite basalt
#

Is there any advantage to the bottle though?

#

you can do it all gassless can't you with the right wire or sticks

noble orchid
#

Trying to get into RE so should I learn assembly to get started?

loud marlin
#

for sure will be of great help

noble orchid
#

Great just gotta figure out which assembly language to get started on

whole yew
#

flux core spatters a lot

#

gas shielded makes pretty welds

clear jackal
#

I "learned" welding in HS

finite basalt
#

I got pulumi to work 🥳

clear jackal
#

It wasnt official instruction, the shop teacher just had us learn from a kid who said he knew how to weld

finite basalt
#

he was a pretty useless teacher and wasn't using proper technique, left the hot air station pointing at the chip and went on a tangant and then had a go at the class for not telling him the chip was smoking as if they knew what it should look like 🤣

jovial musk
#

is gray hat hacking allowed?

#

like taking out scammers websites and stuff

finite basalt
#

Nah, it's still illegal

whole yew
#

it's not really gray hat if it's actively causing harm

jovial musk
#

tryhackme states that taking out a scammers site is gray hat

blazing granite
whole yew
#

morally, i would say that it is grey. Ethically it is not

finite basalt
#

It's vigilanti stuff which is illegal in most countries

jovial musk
#

morally and ethically is not the same thing?

whole yew
#

They are not

jovial musk
jovial musk
whole yew
#

Regardless of the legality in your country, the moderation policy is based in the UK where it is illegal

jovial musk
#

aight i wont do it

#

so then, whats a example of gray hat hacking?

latent spade
finite basalt
#

Two wrongs don't make a right, there's proper channels to go through to make sure it's correctly handled

jovial musk
jovial musk
mossy river
#

You either hack ethically or you don't.

#

It's really silly to create all these different hats for different stances.

jovial musk
#

but ok

mossy river
normal fable
#

My silly coworker calls me her work husband.. lol

mossy river
jovial musk
#

on tryhackme btw

finite basalt
#

Grey hat hacking can quite easily just be classed as blackhat with some moral greyness, the thing is vigilantism is effectively taking out any of the proper legal channels involved like judge and jury and means that it is not only illegal but unfair as you're deciding your own punishment instead of going through appropriate channels

mossy river
jovial musk
#

i think

finite basalt
#

Simplest explanation is, grey is a shade of black

jovial musk
#

tryhackme says its gray hat

finite basalt
#

not a shade of white

jovial musk
#

(i wont do it i swear) but would i be looked at wrongfully if i did

whole yew
#

As someone who work in security, if an employee were doing that we would have to turn them in to LEO along with any evidence we saw that they were doing that from the work computer

jovial musk
latent spade
#

is it ok for my netcat to listen on 0.0.0.0 ? i cant get any reverse shell running

jovial musk
#

like, not on work

whole yew
#

Additionally, if you are actually trying to combat scamming, your best bet is to leave it to law enforcement. Because it's really easy for amatuer investigators to contaminate the investigation and evidence, making it completely unusable and 'poisoning the well' of any ongoign investigations

normal fable
finite basalt
# jovial musk (i wont do it i swear) but would i be looked at wrongfully if i did

Depends on who I guess, anyone with an understanding of the importance of our legal systems would frown upon it, joe bloggs anti-everything may well agree with you. It depends on the individuals stance on vigilantism but at the end of the day I think most people within cyber-security will agree, while the legal system's slow, it's important and you shouldn't take it into your own hands

mossy river
normal fable
#

lol

finite basalt
jovial musk
whole yew
jovial musk
clear jackal
jovial musk
#

would it affect your general view of them

finite basalt
#

There's also a lot of terms in most contracts that state about doing anything both inside and outside work that may well bring the company into disrepute

whole yew
#

Well, they aren't acting ethically. So yes.

latent spade
#

is it normal for nc to listen on 0.0.0.0 ? or am i just too fried

whole yew
#

That's the default interface if you don't specify one

jovial musk
#

damn okay man

finite basalt
jovial musk
#

look at people like nano baiter

#

they get into the scammers pc and send all the files to the fbi

latent spade
#

I have a phpbash and i'm trying to run a python script to reverse shell so i can get access but after running the script nothing happens wtf do i do lol

finite basalt
#

It's not about that it's about understanding why it's wrong

jovial musk
#

that is not legal, but the fbi accepts it and uses it

clear jackal
finite basalt
#

because it's already done as well

jovial musk
#

NO SHOT

#

scammer payback is fake? damn says who

whole yew
#

I would say that most of the scambaiter types are re-enacting at best. If they are actually broadcasting them doing harm to a system they don't own deliberately and maliciously, it's prosecutable.

jovial musk
jovial musk
#

and they partner with anydesk and paypal

#

and even banks

#

doing illigal stuff can be justified

loud marlin
#

nop

whole yew
#

Scammer payback and Jim Browning are kind of a different category as well - because they actually do work with law enforcement in multiple companies to shut down the scam centers. It's not apples to apples.

jovial musk
#

so thats not brown hacking anymore

#

okay so i would need authorization

latent spade
#

what is this nc argument 😭

finite basalt
#

The legal system is designed to enforce standards for evidence collection, integrity and thoroughness as well as to ensure fair trial and punishment.
By going about it yourself you're risking destruction of the evidence, preventing fair trial and punishment and you likely aren't going to be as thorough as someone with standard operating procedures.

People doing those sorts of things on the regular are likely being permitted and likely have to follow certain procedures for evidence collection etc. before they mess with the scammers

jovial musk
#

india dosent do anything

finite basalt
#

They do actually have a page for reporting those things

jovial musk
#

by at least changing the website to warn posssible victims that could stop victims

jovial musk
finite basalt
#

Well, that's its own problem that wants fixing, wrongs don't fix wrongs

clear jackal
#

They have done something

jovial musk
clear jackal
#

It's whackamole though

finite basalt
#

I'd also argue that if you take down a website they'll just spin up another

latent spade
#

76 locations isn't much considering how many scam call centers are in India

jovial musk
finite basalt
#

The fbi do more than just seize the website