#general

1 messages · Page 254 of 1

neon river
#

which archinstall can't do

#

yeah

#

you might need to make the others smaller

boreal scarab
#

@sick lance https://youtu.be/7inhRWxQMFk?si=CDZsCFdMP-bhFEAP

This sounds right up your alley

Thank you ThreatLocker for helping with this video. If you want to learn more about Ringfencing and how to protect your network, start a free trial or book a demo: https://lmg.gg/TLock

We bought an external 8TB hard drive filled to the brim with malware from a faceless group of researchers known as VX Underground. What is on it? What can we do ...

▶ Play video
neon river
#

I watched that earlier lol

#

please don't tell me you are doing pentesting stuff on your main computer without a vm 🙏

#

oh God

#

@rapid merlin help

#

it does matter

#

bc pentesting often involves running sketchy stuff

#

including stuff from exploitdb

#

which wouldn't be the healthiest to run on a main computer

rapid merlin
#

If you are going to practice pentest on AD, you will need 8GB for the AD vm

#

Another 4-8gb for the kali vm, and then etc

neon river
#

no vms

rapid merlin
#

Yeah, well… taking ur meds might help

#

Cauz thats insane

neon river
#

if you are running the software without isolation, malware can still access the other ssd

chilly veldt
rapid merlin
#

You idiot! VMs have snapshots

neon river
#

you can still do that in a vm

#

that is how we all do stuff

chilly veldt
#

Kinda ruins the mood in here

#

Sure

neon river
#

yeah

#

we'll have to configure it later once you have the rest installed

neon river
#

you can continue

#

but why not use a vm?

#

I'm fairly sure keeping your stuff safe is a bit more important than "feel the same"

#

although I get where you are coming from

#

it can help by installing the qemu and spice guest stuff in the vm

#

so you can change the display resolution

#

so it looks better

#

where do you store it??

#

unless its not your main

#

"

The risk is that you are joining a network of people intentionally emulating malicious actors, often while using pentesting distros you may have spent minimal effort hardening.

The benefit of a VM too is that you can just tailor it to your workflow, save a snapshot, and reset it whenever you want, personally I’m pretty messy and do that just about every time I join a new CTF.
"

#

courtesy of a reddit user found from google search

#

what about logins?

#

single point of failure???

#

malware can steal session tokens

#

bank details??

#

private information??

#

some malware make you join botnets

#

but is it worth the effort?

#

just use a vm

#

also it makes it a lot more risky for you to join other organisation's networks

#

it is definitely not

#

especially if you have bills to pay

#

not the bank, moreso the services you use

#

just use a damn vm bro

#

if something goes wrong its as simple as rolling back to a snapshot

#

or deleting it

#

to each to their own ig

#

anyway lets continue the install

#

I recommend swaywm or hyprland for wayland window managers

#

you can do the same on sway

#

since it basically has infinite customizability

#

sure

#

also take a look at hyprland

#

@rapid merlin what is your gpu

#

everything except nvidia has good wayland support

chilly cove
#

where would I post a question about a possible bug in a room? I've noticed a couple of questions seem to be in the wrong order.

neon river
#

prolly go with polkit

#

I use ly

#

mainly cause it looks coo,

molten sky
#

hey @boreal gull you around? no idea what time zone you are

neon river
#

what was it?

#

are you sure your in te install media?

molten sky
#

should try Linux From Scratch instead -- far easier

neon river
#

not chrooted or anything?

molten sky
neon river
#

it should be fine

#

it'll probably be easier if you do it manually

#

and just follow the install guide

#

it takes like 15minutes-30minutes to install arch linux manually

#

it can be shorter if you know exactly what you are doing

#

@rapid merlin do you want me to guide you?

#

how 😭

#

"who let bro in the kitchen?!?!?!??!"

#

do you want me to help you install in dms?

#

sure

#

I literally have nothing better to do

stray oracle
#

Carcharodon carcharias

wheat pecan
#

Hey ya

#

Morning

molten sky
#

oh god, it is morning

#

i gotta get to sleep

junior wraith
#

heyhey. anyone done the kubernetes hardening box just out?

#

cluster hardening is called

#

last line you have to answer what is the base64 of a networkpolicy spec

  PodSelector:     app=backend-service2
  Allowing ingress traffic:
    To Port: 8888/TCP
    From:
      PodSelector: app=replace-with-service1-label
  Not affecting egress traffic
  Policy Types: Ingress

But its always wrong. I guess because of spaces

candid niche
#

if I reset progress to a room do I lose the points I got from it? doesn't really matter either way, just todays brain worm

young thunder
#

hi

harsh falcon
#

Is there a way to share individual badges as opposed to the entire webpage?

jovial musk
#

if being good at nothing is a crime, lock me up 2

naive violet
naive violet
junior wraith
candid niche
twin ridgeBOT
#

Gave +1 Rep to @junior wraith (current: #2117 - 1)

jovial musk
#

@molten sky would you still love me if i was a worm 🥺

jovial musk
#

i guess not...

finite rock
jovial musk
#

they just love me cuz my human form

#

they are humanists

finite rock
jovial musk
#

no

#

i would still love you if u were a worm

#

i promise

finite rock
jovial musk
#

yes

finite rock
wooden totem
jovial musk
twin ridgeBOT
#

Gave +1 Rep to @neon river (current: #462 - 10)

wraith fjord
#

hey

rapid merlin
#

Babe, wake up! Steam sales is online!

candid pagoda
#

need help

#

anyone main in forensic?

#

im abt to publish a study ive done, need some feedback before

shadow loom
#

with all due respect to THM and its members, isn't this the wrong place to look for research sparring? KEKW

barren lantern
#

Hello 👋

shadow loom
#

Henlo pepeHappy

#

oh well, time to root publisher I guess

polar wraith
#

gawd i cant wait for the next advent of cyber sidequest bang_cry

rapid merlin
#

Good morning

shadow loom
#

Does anyone know of a wardriving project that uses, for example, 14x esp32 modules - one per channel - with guides on how to build it and the FW needed etc.?

shadow loom
shadow loom
#

me too

#

but that can only listen to one channel at a time sadge

#

man.. my local version of "Door dash" to those who know that, has a campaign at my local bakery

#

50% off on cakes

#

I ordered this huge strawberry tart 50% off.. it's so good pepeHappy

#

it's normally like $20

#

got it for half KEKW

vocal gale
#

On sale so it tastes better

shadow loom
#

exactly

astral shell
#

guys how can i check if a link is safe to open or not

shadow loom
#

if sus, don't click

astral shell
shadow loom
#

dunno either KEKW

#

maybe they wanna steal your discord account

vocal gale
#

You could also use virustotal and URL2PNG

astral shell
left vine
#

try opening it on a device that u dont use

astral shell
#

guys i think i have found a very bad and illegal site

#

what to do

#

can someone confirm for me

shadow loom
#

uhm

#

notifying the police or other authorities is probably the only thing you can do

shut hawk
#

don't go to the site, if you're concerned contact your local law enforcement as birb said

sick lance
#

If it's a phishing website you can report it here

sick lance
rapid merlin
#

hi does this mean i can come back and reactivate it for 1 month without paying more than 14 ?

sick lance
#

Ah Blackout is replying, I was about to ping them 😄

near hawk
#

I think that’s how it works anyway

#

But you won’t have to pay as you already paid for it

rapid merlin
#

okay, thanks

junior wraith
#

when pausing account you dont have to pay and streaks get saved?

terse edge
#

What is the point of spoofing source IP in nmap scan? the target will reply to the spoofed ip and you can collect response to analyze, sure makes sense, but why don't you just use the spoofed ip's machine to do the scan? What is the actual point of launching from machine 1, using ip of machine 2, to target machine 3? Why not just use machine 2 to scan machine 3?

junior wraith
#

good question 🙂

shut hawk
terse edge
#

Then how would you even capture the traffic on machine 2 for analysis? The point is you have already access to machine 2 to collect responses.

#

Target is machine 3. You scan FROM machine 1 using, spoofing machine 2's IP. So when machine 3 replies to those packets, the responses go to machine 2.

shut hawk
#

Well, you might not care about getting the responses back to analyse

#

Another possible use of this flag is to spoof the scan to make the targets think that someone else is scanning them. Imagine a company being repeatedly port scanned by a competitor! The -e option and -Pn are generally required for this sort of usage. Note that you usually won't receive reply packets back (they will be addressed to the IP you are spoofing), so Nmap won't produce useful reports.

terse edge
#

LOL

#

That's crafty.

#

Kind of a dick move too.

#

Try to implicate someone else. So then if you can spoof packets so easily, what makes the legality of portscanning viable?

#

You could literally port scan anyone openly/brazenly and then claim someone must have done it and given your ip as a spoof ip so I got the replies, implicating me.

#

So burden of proof is upon YOU to prove that I am the actual party who launched the scan

#

Spoofing only works in a minimal number of cases where certain conditions are met. Therefore, the attacker might resort to using decoys to make it more challenging to be pinpointed. The concept is simple, make the scan appear to be coming from many IP addresses so that the attacker’s IP address would be lost among them. As we see in the figure below, the scan of the target machine will appear to be coming from 3 different sources, and consequently, the replies will go the decoys as well.

#

I see.

#

So you can launch a scan, and then given dozens of fake ips to mix in, and try to hide your real ip in there hoping they won't be able to identify it.

shadow loom
#

Hobby project idea: a shell wrapper that intercepts TCP (and UDP?) packets towards a targeted machine, then replicates the command that produced those packets in n number of replicas (like how pspy works, the most recently run command is likely the one producing packets). Each replica has a spoofed source IP from the local network, given some list of ranges to pick from.

It would appear as if the machine is under attack by n machines at the same time while InfoSec will scramble to find the right culprit among the many fake requests.

terse edge
#

Still though, if you scan all ports using mulitiple spoofed ips, the original ip will eventually get all replies, but they won't know which of those is actually you

#

I see

shut hawk
#

Here's a discussion on it

devout palm
#

There are ways to mitigate it using packet similarities

#

And handshake check

#

As Jayy said

terse edge
#

Trying to share any completed room on linked in or etc. uses the exact same open graph information so all posts look exactly the same. The OG data of the actual ROOM should be used, instead of the main site.

Where can I give this feedback?

#

All room OG preview data looks the same.

patent hinge
#

how to hack facebuk?

#

oo yes thanks u

#

i already named my pc to anonymous

safe jasper
#

is seclists no longer in apt?

#

can`t find it

mossy river
safe jasper
#

oh, i just realised Im on Mint lol thx

near hawk
viscid hill
#

i use arch too (btw)

near hawk
neon river
#

hello

viscid hill
#

u use gnome????

#

U take notes for CTFS?

#

y?

#

I just do writeups on medium for most of the CTFS I do

#

I mean i used to take notes for CTFS if i was stuck

#

to put it onto "paper"

#

ooooooo

#

syntax is annoying

#

u:/username right

#

something like that

candid niche
#

A friend of mine just signed up for THM, is there a way for me to refer him, or once he has his account its not possible?

candid niche
viscid hill
#

Refer a friend

sick lance
candid niche
viscid hill
#

Wdym link?

#

are u guys trying to add eachother?

sick lance
#

Punching, purchasing same difference.

candid niche
# viscid hill are u guys trying to add eachother?

nah we are already friends, I was going to refer him so we got the $5 bonus when he subs but he had already made his account before I could find the referal code. I was querying if I could still refer him if his account had already been created. All good though, im sure Scrubz and Blackout will point me straight (:

viscid hill
#

Idkkk

#

on the referral thing it comes up on who signed up using ur link

candid niche
near hawk
#

No, they have to sign up with your referral link to work

viscid hill
#

Shame, i mean has ur friend done any rooms, if not he can just delete and make a new account under ur referral

candid niche
twin ridgeBOT
#

Gave +1 Rep to @near hawk (current: #53 - 141)

viscid hill
#

Haha remember that old bug on admin.tryhackme.com, admin access to all users, cleartext passwords if my memory serves me right

#

someone should check it out

viscid hill
warm bear
#

Hi all 👋

viscid hill
#

this guy might be hakcr

#

this is a video of him

warm bear
#

I am a certified noob

viscid hill
#

Oh okay

#

Well Hi

#

Welcome to tryhackme

warm bear
#

thanks 😁

fading yew
#

Cool

candid niche
loud marlin
#

pong

near hawk
stray oracle
#

Metasequoia glyptostroboides

mossy river
#

I’ve removed that image 🙂

candid niche
#

after selecting the plan, but before entering payment details

devout palm
#

wrong

#

chat

#

😂

#

This isn't a shell, homie

#

Good luck

#

No sleep for you

arctic cradle
#

hey peeps, I started OWASP Top 10 room yesterday which is considered for total beginners, though I can't even pass the very first one that requires to run commands at [Severity 1] Command Injection Practical, is it OK to watch a walkthrough? how do I make sure I actually remember it all instead of just watching a walkthrough and answer the questions like a copycat robot?

stark moon
arctic cradle
twin ridgeBOT
#

Gave +1 Rep to @stark moon (current: #2117 - 1)

tired peak
#

so sometimes you might have to build up some foundational knowledge first

slow helm
#

hey

#

so there is a room in linux privvv about a kernel exploit

#

called CVE 2015-1328

#

i want to understand how it works but i can't read throught the code

sick lance
#

Search it.

shadow loom
slow helm
#

there are only showing you how to exploit

#

no one explained

tired peak
#

did you search for CVE-2015-1328?

slow helm
#

sure

#

i want to see how people exploit theese things

tired peak
#

you wanna know how people find exploits or how they exploit them?

slow helm
#

i think both

tired peak
#

well how is a lot of dedication and work, sometimes things are by accident but often its by looking through the code or trying things (aka fuzzing) to see what might break

#

how they exploit them is with the code developed... sometimes you don't need code, sometimes you do

slow helm
#

is there some sort of youtube channels who exploit and explain

twin ridgeBOT
#

Gave +1 Rep to @tired peak (current: #15 - 487)

tired peak
slow helm
#

but the exploit is 200 line of c++ a lang i don't a thing about

#

maybe i need to learn it

tired peak
#

yes, c/c++ are languages to learn if you want to look into exploit development

tired peak
#

what do i do?

slow helm
#

yup

#

i mean what feild

tired peak
#

cybersecurity

slow helm
#

i know

tired peak
#

i'm a cloud security architect

slow helm
#

have a great day

tired peak
#

it is

#

you too

slow helm
#

i'm not a fan of cloud stuff

tired peak
#

well cloud is everywhere and hard to get a job that doesn't touch cloud

slow helm
tired peak
slow helm
#

i think cloud is the last thing you need too know about

#

as a beginner

tired peak
#

well there are a lot of things to know about, I dunno if I'd put cloud as the last thing... possibly exploit development would be the last thing a beginner needs to know

candid niche
slow helm
candid niche
#

ty (:

boreal scarab
loud marlin
peak hollow
#

yo, In firefox while browsing websites it automatically redirected to this site like not for a specific website this redirection is occurring. it is occurring for all the website, to be honest i dont even know whether it is a redirection or it just opening a new tab. its so sus but dont know what it is, only occurring at firefox. Any help or info pls?

shut hawk
arctic cradle
wooden totem
#

cant cookies do that too?

peak hollow
shut hawk
peak hollow
#

now there is no extension is installed

shut hawk
#

Does it do the same thing for Edge or chrome?

peak hollow
candid niche
#

Are you on windows? I recall something similar happening to me when one of the windows lockscreen photos had clickable text on it, the next time id open a browser it would default to msn

shut hawk
#

What's your home page setting on firefox?

peak hollow
#

google search engine

candid niche
shut hawk
#

What software have you installed recently? If any?

wooden totem
rapid merlin
#

hey guys can you delete the token from another account i have please ?

arctic cradle
rapid merlin
#

how ?

sharp citrusBOT
arctic cradle
#

not that

shut hawk
#

You need to wait for a moderator to be online

rapid merlin
#

okay thanks

peak hollow
crude stump
#

bro i SWEAR

#

this whole damn time i was using the wrong vm and none of my commands was working.

peak hollow
shut hawk
crude stump
#

or just get blue light glasses

candid niche
wooden totem
arctic cradle
#

why does Eye Saver look more like a malware than a protection software for eyes 😄

crude stump
#

i mean malware can look like anything

shut hawk
wooden totem
#

why is that an app, doesnt windows come with night light or something

crude stump
#

night light turns your screen like red

#

orange almost

#

looks stupid

wooden totem
#

its adjustable

crude stump
#

still orange looking tho

shut hawk
#

Flux gives you a lot more flexibility over the in-built setting

arctic cradle
wooden totem
glacial summit
#

guys i need help, ive tried setting up openvpn but its not working. ive downloaded the config file and imported it, but i get this error:

shut hawk
#

Can you switch servers and regenerate the certificate?

warm bear
timid prism
#

purple is nice

#

my keyboard is purple on phone

glacial summit
twin ridgeBOT
#

Gave +1 Rep to @warm bear (current: #731 - 5)

jagged moon
#

Heppy fluff

#

Is nice fluff

sick lance
#

A fluffy fluff is a fluffy fluff.

jagged moon
#

A rose is a rose is a rose is a rose

jagged moon
#

Attack!

gray sonnet
#

A heppy fluff is a nice fluff - Fluff

#

what pizza did you get 👀

#

Nice!

#

there's this chain in my country called La Pinoz and they have a 7 cheese pizza

#

it's just pure bliss

#

what the hell is wrong with my windows...

#

I'm watching a youtube video on chrome...I hit the windows button to see what apps are open, I hit it again, and it just changes to another app that's open...

crude stump
#

i have a question and i was gonna ping him but hes not there

sick lance
crude stump
crude stump
#

i dont think that would be dareks chase

#

case

#

he prolly got a new job and doesnt have time

sick lance
#

Not the first time they've left the server.

high mulch
#

⛈️ rainy day today here

boreal scarab
#

@sick lance See my ping last night?

sick lance
boreal scarab
# sick lance No, I did not.

https://youtu.be/7inhRWxQMFk?si=CDZsCFdMP-bhFEAP
Thought this vid will be up your alley

Thank you ThreatLocker for helping with this video. If you want to learn more about Ringfencing and how to protect your network, start a free trial or book a demo: https://lmg.gg/TLock

We bought an external 8TB hard drive filled to the brim with malware from a faceless group of researchers known as VX Underground. What is on it? What can we do ...

▶ Play video
gray sonnet
#

Bought?

#

I get them from free kekw /s

boreal scarab
#

If you're doing RE, or creating an AV to look at behavior of viruses, ransomware, etc. $500 is cheap

#

IMO

faint nimbus
#

heelo
guys i need some help
i cant connect tryhackme machine
beacuase openvpn doestn work
2024-06-30 11:43:17 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-06-30 11:43:17 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-06-30 11:43:17 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2024-06-30 11:43:17 OpenVPN 2.6.9 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-06-30 11:43:17 library versions: OpenSSL 3.2.2-dev , LZO 2.10
2024-06-30 11:43:17 DCO version: N/A
2024-06-30 11:43:17 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2024-06-30 11:43:17 OpenSSL: error:0A080009:SSL routines::PEM lib:
2024-06-30 11:43:17 Cannot load inline certificate file
2024-06-30 11:43:17 Exiting due to fatal error
some1 help me plssss

faint nimbus
#

thanks

jagged moon
#

@shell nova u around by any chance?

boreal scarab
#

Welcome!

fast thunder
#

Anyone knows if you can undo a correct answer?

boreal scarab
shadow loom
#

but why

boreal scarab
#

Birb, your brain still fried mush?

shadow loom
#

no, i pwned it finally

boreal scarab
shadow loom
mint pewter
#

hey

shadow loom
#

hi

boreal scarab
#

Good job!

shadow loom
#

faaaanks

boreal scarab
shadow loom
#

sooooooo

#

shoiuld I have sushi for dinner?

#

👀

sand trench
#

YAWN

shadow loom
#

that's a good Sunday thingi sn't it

boreal scarab
shadow loom
#

exactly!

wooden totem
#

I apologize

shadow loom
boreal scarab
sick lance
#

Or was.

devout palm
boreal scarab
#

How the turn tables have... turned

devout palm
#

What do you use IE for?

boreal scarab
devout palm
#

To Install Firefox

boreal scarab
#

It's a joke, since IE is slow

devout palm
#

😂

crude stump
#

IE bad

fast thunder
#

Use the given pcap file.

Write a single rule to detect "all TCP port 80 traffic" packets in the given pcap file.

What is the number of detected packets?

Note: You must answer this question correctly before answering the rest of the questions in this task.
Cant get the right answer even if im sure i have the right answer, anyone can help?

sick lance
crude stump
#

?

#

Someone pinged me

#

Or I thought

arctic cradle
chilly veldt
#

Waiting on food while having the biggest tiredness

#

Been laying in my bed ever since I came home at 8 am

loud marlin
#

to much of wotrk ?

chilly veldt
#

rave

loud marlin
#

oh...

upper bane
#

hey everyone

loud marlin
#

ello ello

chilly veldt
loud marlin
upper bison
#

I just found out that disabling Kerberos pre-authentication for an AD user account makes it vulnerable to ASREProasting attack 😆
I mean who would disable Kerberos pre-autentication in the real world?
It's a suicide move

chilly veldt
boreal scarab
#

@sand trench

#

got some OG Kristal and Truffle Gouda cooctus

slow helm
boreal scarab
slow helm
#

don't be mad

slow helm
twin ridgeBOT
#

Gave +1 Rep to @boreal scarab (current: #30 - 276)

boreal scarab
#

Better?

slow helm
#

i don't think so

gray sonnet
gray sonnet
slow helm
#

it's a technique

#

for melting cheese

slow helm
gray sonnet
gray sonnet
slow helm
#

@boreal scarab congrats

boreal scarab
slow helm
shadow loom
#

This channel is extra cheesy now

loud marlin
#

nah... 🙂

stray oracle
#

Leiurus quinquestriatus

loud marlin
#

scorpion, deathstalker

jovial musk
#

hey you all

#

good day

gray sonnet
#

You have a good day too!

near hawk
#

Looks like southgate getting fired after this game 😄

near hawk
#

Somehow England are still in

jovial musk
rapid merlin
jovial musk
#

nah its a joke

rapid merlin
#

Lol

jovial musk
#

cuz theres some pple that do like "/s" and stuff

#

btu nvrmind

loud marlin
#

@boreal scarab 3 ship's on the wall...

high mulch
jovial musk
#

i need a tone indicator

high mulch
jovial musk
jovial musk
#

does metasploit have web scanning

#

and like web vulns?

#

or JUST windows

gray sonnet
mossy river
jovial musk
#

@gray sonnet can i dm you rq?

gray sonnet
#

The first goal for england was just 🤌

gray sonnet
jovial musk
#

aight i did

sick lance
jovial musk
# sick lance

heres the plan, i create a bad software and you guys gather all the CVE's

jagged moon
sick lance
jagged moon
#

I may get fired for backdoors

#

But let's see how it goes

sick lance
#

only if you're caught.

jagged moon
#

Exactly

sick lance
#

For legal reasons, this is a joke.

jagged moon
#

IS IT THOUGHHH

mossy river
#

It’s coming home, it’s coming home

devout palm
jovial musk
soft dune
#

How many rooms do i have to solve to get in the top 1%

mossy river
#

Not all rooms give points

sharp citrusBOT
soft dune
#

So how many points?

sick lance
#

32143

arctic cradle
#

I think Intro to Cross-site Scripting needs a bit of updating if I'm not wrong, the last challenge being Practical Example (Blind XSS), there's the written theory with pictures referring to </textarea>test but I did not see textarea anywhere in the code, the ID of the tickets that we create in the Support Tickets tab are wrapped in <td>test</td> tags

#

correct me if I'm wrong, the blind XSS payload still executes, though

arctic cradle
#

danke

mossy river
#

bitte

soft dune
sick lance
#

Of 3214315 users, (my bet it will be slightly behind).

soft dune
#

Oh ok

#

Is anyone here an employed pen tester?

jagged moon
#

I do have pens at work

#

And i click them a lot

soft dune
#

Same 😿 thats the closest iv ever gotten to being a pen tester 🎃

mossy river
#

And that number doesn't include users who are ellegible for the leaderboard

sick lance
sick lance
#

I used to get shouted at because I'd use a sharpie (the thin nib) to write out all my documents.

mossy river
jagged moon
#

No. You bad at math

sick lance
#

Maths was on point, it was English that failed me.

mossy river
#

I was shocked when you said 30k ahaha

jagged moon
#

English do be failing people all the time

mossy river
#

I've 26,000 and I'm top 1%
Doesn't give you an exact number but it's something to aim for

#

Rank 7179 so if we assume you need to be top 20,000, I'd say level 12 minimum

soft dune
mossy river
#

Difficulty is subjective so it's hard to know how long on average it will take everyone to complete challenges

boreal scarab
gray sonnet
#

No u!

shut hawk
#

If you have a specific question, just ask

gray sonnet
#

Hi Jay 👋

sick lance
#

Mon' Georgia!

molten sky
gray sonnet
#

Hey Verum 👋

molten sky
# boreal gull i am now 😦

rustscan has a link to the Fedora/CentOS copr under community distributions
have you spoken to that guy at all? I've been curious why he packaged it for the copr only and never pushed it to Fedora + EPEL proper

molten sky
gray sonnet
#

How're you doing today?

jovial musk
gray sonnet
#

It's officially July here, and uni starts in a month

molten sky
molten sky
molten sky
# gray sonnet sick?

nah probably just my absolutely fucked sleep schedule if i had to guess, i'll probably be gtg in an hour or three

gray sonnet
#

hope its an hour 🤞

cold jungle
#

search -f [file_name] taking so long... is it normal or its stuck? Even after pressing keys, I'm getting no response

mossy river
#

Please don't promote here, especially drop shipping

slow helm
jovial musk
slow helm
#

long time no s

#

ee

jovial musk
#

nothin much hbu?

jovial musk
slow helm
#

i thnik the sae

#

u learned some new ?

#

and btw do you like the boxx effect

#

plasma 6.1

soft dune
soft dune
gray sonnet
#

you can ask anything here 😄

jovial musk
#

i instaled arch (btw)

jovial musk
#

btw if we can vc later that would be col

slow helm
#

ubuntu ftw

#

i love that purple kernel

shut hawk
jovial musk
#

i just wnated plasma

slow helm
#

the theme is also crazy

slow helm
#

wait whos jay

jovial musk
#

can metasploit be used for web scanning?

#

or only windows related stuff

slow helm
#

bro metasploit

#

is bigger than you thinkn

slow helm
soft dune
glacial summit
#

Bruh my role shows I'm 0x1 but I'm level like 3 now on thm😭

#

Unless there is no 0x2 and 0x3 etc roles

gray sonnet
#

there is

slow helm
gray sonnet
#

just reverify with the bot

#

it usually reverifies every 24 hours, but if you're in a hurry you can just reverify yourself

glacial summit
#

Alright

jagged moon
spare juniper
shut hawk
soft dune
shut hawk
#

Thanks 😊

gray sonnet
#

you're working full time now jay?

shut hawk
#

Not at the moment

gray sonnet
#

ah, got it

shut hawk
soft dune
#

Man u guys have it all set, i feel like a moron tbh 😿

shut hawk
#

Giving your general location (as in country) and a bit of background would help

soft dune
#

Oh thats great thx bro

shut hawk
#

Nah, I feel you - it's hard, but if you be persistent and you're genuinely passionate about the field, things will work out I'm sure

jovial musk
#

anyone here with OSINT knoledge?

#

i got a peculiar situation

shut hawk
#

Just ask your question

molten sky
twin ridgeBOT
#

Gave +1 Rep to @shut hawk (current: #14 - 539)

jovial musk
#

someone in my school made an account to talk trash about everyone, but they dont say who they are

#

i cant strip the metadata right?

#

like theres nothing i can do

#

i think its my friend though

molten sky
jovial musk
#

yeah they are so inmature

#

but i wana spook them at least

jagged moon
jovial musk
#

stop

jagged moon
sick lance
#

Nothing

jovial musk
#

yeah i figured

#

guess i can see who they followed and kinda logic my way out

#

or, speak to them in an alt and see how they speak

crude stump
#

Bothin

jagged moon
#

Bothin

crude stump
#

There’s bothin you can do fluffme

jagged moon
#

Of course bothin is on urban dict

#

Sounds like something that would have urban dict entry

jovial musk
#

then do nothing with that info

#

il keep you guys updated

mossy river
#

Please do not bring drama into the Discord server 🙂

#

We want to keep this a safe and professional information security environment:)

jovial musk
#

aight

#

fair enough

finite rock
soft dune
jovial musk
#

if thats allowed

soft dune
gritty fern
#

Is it possible to “upgrade” an old laptop to support NTFS?

clear jackal
gritty fern
#

Well my old laptop doesnt want anything to do with NTFS

#

Doesnt show NTFS drives on anything and wont load windows

sullen hearth
gritty fern
#

2013

clear jackal
#

Are you trying to use UEFI instead of a legacy BIOS?

gritty fern
#

Yes

sullen hearth
#

It should come with the win os by default.

gritty fern
clear jackal
# gritty fern Yes

So, that's not NTFS. You need to do some research/diagnose that issue.

#

Both legacy and UEFI can use NTFS

gritty fern
#

Hm ok

#

Thank you both

shut hawk
#

What do you mean by "wont load"

sullen hearth
#

Its a filesystem . Honestly, idk if it could be deleted/reinstalled etc. .

gritty fern
sullen hearth
#

In my little logic if the os can boot the file system is inbound the os. Except there is a way to erase it but idk it.

clear jackal
#

Wait, are you trying to insert a new drive without the old drive in there and expecting a boot? Or is this a fresh install where you're using the Windows ISO you got from Microsoft's installer tool? @gritty fern, sorry it didn't reply

lament mantle
sullen hearth
boreal gull
#

i stay away from the package management people tbh

#

too complicated for me to get involved with

boreal scarab
#

@blazing granite WINERY!

#

With wine pairing pikapika

gritty fern
boreal scarab
#

Jfc. @blazing granite large group, loud AF for no reason, they are causing all of the noise and they speak louder and louder because of the noise... no courtesy what so ever

#

I wanna slap all of them REALLY hard

gritty fern
#

Any of yall know how to fix a “ this program or feature, cannot start or run due to incompatibility with 64 bit versions of windows”?

#

Tryna see if WOW is any fun

sick lance
gritty fern
#

Yes but its on a disc so i cant just upgrade

molten sky
molten sky
boreal gull
molten sky
boreal gull
# molten sky rude 🙄

last time i touched package management home brew made me deploy a server in CI with some ports open to scan to prove the code works and now their CI takes a lot longer to run lol

molten sky
clear jackal
boreal gull
#

i support that!!

molten sky
boreal gull
molten sky
#

the guy that did our package was actually pretty great to deal with. we didn't even know he was doing it until a thread popped up talking about whether or not we want to officially support packaging, and the chimed in like hey we've already got one almost ready for y'all already

#

he was damn quick too. as soon as i pushed our package to pypi they started using that package for theirs

boreal gull
boreal scarab
#

@molten sky Dude, you been out driving?

molten sky
boreal gull
#

i beg him to do all my packaging now hahahaha

molten sky
#

oh hey another macports guy

boreal scarab
molten sky
#

may be because i don't do mac but i don't see many packagers for that anymore

boreal gull
#

stupid

molten sky
#

lol i kinda agree

boreal gull
#

last i checked they have every package manifest installed on ur PC just in case u want to download it

#

and every time u install something it force updates everything else

molten sky
#

i downloaded brew just out of curiousity to see if their package worked, and then immediately removed it

gritty fern
molten sky
#

@boreal gull pinged the guy one last time but this time in the public channel

molten sky
#

btw, we got ourselves the Sponsored OSS badge for our dockerhub images and it was actually pretty damn easy -- it marks your image as trusted content and moves you to the top of the list

#

pretty short application and makes ya look more "official"

blazing granite
boreal scarab
#

@blazing granite I just wanna do this

#

Ugh

#

(Not really, just how I feel)

#

Like OMFG... shut the fuck up

whole yew
#

Matt. You know better. No violent GIFs please.

boreal scarab
whole yew
#

ok

woeful lily
#

can anyone decode an heavly obfuscated js for me

clear jackal
woeful lily
molten sky
woeful lily
clear jackal
molten sky
#

epel is just annoying for some tools cause not all dependencies might be there
so you’d be in a chain of packaging your dependencies and their dependencies etc

woeful lily
#

he made a weird thing and sent me it

#

now i wanna decode it

clear jackal
#

You want to ruin someone's webhook because they sent you weird stuff?

woeful lily
#

bro he got my info wym

clear jackal
#

We don't assist with vigilantism

mossy river
#

@woeful lily please do not spam across multiple channels. If you think you have been hacked, please contact your local authorities for advice

devout palm
#

Good Night, THM 💤

high mulch
high mulch
#

check the cisa website. cybercrime complaint pdf file, they have resources for that.
cisa.gov

mossy river
woeful lily
#

them boys from turkey

high mulch
woeful lily
#

uh what

mossy river
#

@high mulch if you suggest illegal actions again you will be permanently removed

high mulch
lament mantle
twin ridgeBOT
#

Gave +1 Rep to @lament mantle (current: #281 - 18)

jovial musk
#

mind if i add you as a friend?

boreal scarab
#

@blazing granite apparently their birthday... congrats, but celebrate somewhere else or shut it. You don't need to be screaming at the top of your lungs, then scream louder over the other girls in your group screaming because you're screaming... it's like a while loop

While screaming
Scream louder
End while

That end while has never come

boreal scarab
whole yew
clear jackal
#

I thought EPEL was things that aren't in RHEL?

#

Hence, Extra Packages for Enterprise Linux

molten sky
#

^

#

extra pkgs for enterprise linux

clear jackal
#

Unless, that's what it currently is and it was something different before

molten sky
#

rhel repo is tightly curated but epel is more free

#

stuff that isnt frequently used enough for them to consider adding to the main

boreal scarab
jovial musk
#

@crude stump what distro do you use

#

im considering switching back

#

i saw the darkness in installing packages without apt-get

crude stump
#

Good ole Kali

jovial musk
#

can i see ure setup

crude stump
#

I mean it’s the default

#

All the basic software and stuff

jovial musk
#

which one

#

installer, right?

crude stump
#

Yeah

jovial musk
#

wait theres custom ones too?

crude stump
#

Custom Kali machines?

jovial musk
#

custom images

#

whats the dif between kali purple and kali normal

slow helm
#

plus the theme is great

jovial musk
#

il go for purple then

slow helm
#

i think kali

#

is for skids

jovial musk
#

so this one?

slow helm
#

maybe try something you don't look a hacker using it

#

it's like a ninja showing off his identity

slow helm
jovial musk
#

or... its just the easiest way to hack since it has the tools pre-built

slow helm
#

choose what you makes it easier for you then

jovial musk
#

wait does kali purple have all the tools kali blue has?

slow helm
sand trench
#

woooohooooo

#

just finished this years season of doctor who

jovial musk
#

shadow

#

do you know if kali purple has all the tools kali blue has?

sand trench
#

¯_(ツ)_/¯

boreal scarab
clear jackal
#

Contact the authorities.

#

We cannot assist you with illegal activities/vigilantism.

jovial musk
#

@clear jackal do you know if kali purple has all the tools normal kali has?

#

sry to interrupt btw

clear jackal
#

Blackmail is illegal

whole yew
#

report to the authorities

#

law enforcement, parents, etc

#

you absolutely can

#

if this person is doing illegal things, it is better for everyone that the authorities do the investigation

clear jackal
whole yew
#

because vigilante stuff can easily contaminate a case and make it actually impossible to get a conviction

jovial musk
#

its only dif by tools right?

#

what else is different

clear jackal
#

It's a SOC in a box

whole yew
#

please stop asking, we will not help you.

clear jackal
#

There are other differences

jovial musk
#

gotcha

jovial musk
twin ridgeBOT
#

Gave +1 Rep to @clear jackal (current: #17 - 425)

whole yew
#

report what this person is doing to law enforcement, they will have tools and warrants to find out the identity of blackmail, extortion, etc and actually prosecute

jovial musk
#

check your dms, i sent you a link to a guide on how to report

whole yew
#

what did i just say

jovial musk
#

oh no

slow helm
#

and look at his name

#

he said

#

did you google it

jovial musk
slow helm
#

first step

#

is learn how to search

jovial musk
#

dude i did

slow helm
#

i lov u mate

jovial musk
#

me 2

#

i would love you even if u were a worm (ong)

slow helm
#

kali purple vs kali linux

#

why they even created kali purple when there is linux

#

ofc there is a diffrence

jovial musk
#

@whole yew could i please dm you, i promise its important but private

#

i need to tell a mod

whole yew
#

If it's actual mod business, go ahead.

blazing granite
#

kali purple has the regular tools (red team) plus some tool for blue team, blue + red hence purple 🙂

jovial musk
#

just saw

#

it dosent even have nmap

whole yew
#

Check the repos.

#

The only difference between the normal kali and purple, is the set of packages installed by default. All packages from both are available in the kali apt repo.

jovial musk
#

dont kys, you have a thm streak to keep alive

shadow loom
#

Just make 2D games

#

Nooooo

sand trench
#

shadow lives at stub your toe street

shadow loom
#

I will fly off to my nest now though

#

Goodnight

sand trench
#

hmmmmm

jovial musk
#

@sand trench can i ask you something

#

so we all gon act like we didnt see that

#

what was that though

uneven swallow
#

do me now

jovial musk
#

where is shadow

#

i need to ask her smthing

#

i am so confused

sand trench
#

trying a thingy shadow wanna see works in the git happens room

whole yew
#

you sure?

jovial musk
#

shadow!

whole yew
#

I saw that. Final warning, don't do it again.

jovial musk
#

like a actual log??

#

or is it fake info

#

@keen ferry that was fake info right?

#

aint no way u posted a log

#

WHAT?

whole yew
jovial musk
#

he posted stolen info and you arent going to ban him

#

dude ik ive seen the things straight out

#

i used to do that a long time ago, thats what got me into cybersecurity

#

i wanted to repair the damage i caused

#

dude why are you ranting

#

calm down

#

i just got ptsd from seeing it

#

im 15 too

#

no excuse

#

we can help each other

#

sure

#

just, dont buy logs. istg that dosent do anything

sand trench
#

sigh

jovial musk
#

shadow

uneven swallow
#

McDonalds is hiring 19/hour

jovial musk
#

can i ask why you refeer to yourself in 3rd person?

sand trench
#

poor juun having to deal with this

jovial musk
#

this used to be me when i was younger

#

if he wants to get better then thats what matters, right?

crude stump
#

Bro I got the absolute best idea. Imagine there’s a blue teamer who has to look at logs, internees and other blue team tools. While they are doing that, there’s an opponent red teamer that has to try to evade the blue teamer and get pass the blue teamers defenses and get multiple flags that are set up. For the point system, it would be like this. The red teamers points would be static, meaning you would start and stay at zero until you get a flag. Once you get a flag you get alottt of points that make you ahead. For the blue team the points are dynamic meaning the longer you defend the more points you earn.

sand trench
jovial musk
#

u took like 2 hours to type it

jovial musk
whole yew
jovial musk
#

just ping me when you do please!

crude stump
sand trench
crude stump
#

What are they called

sand trench
#

where there are teams working against each other both attacking and defending targets in a network

whole yew
jovial musk
#

@crude stump lets watch that on vc

#

if u want

twin ridgeBOT
#

Gave +1 Rep to @whole yew (current: #10 - 764)

crude stump
#

Buuut

jovial musk
#

@sand trench when you answer it pls ping me

crude stump
#

Maybe we can have one of those competitions in thm

jovial musk
sand trench
#

or do you prefer

whole yew
#

honestly, i'll probably make a fire tonight and enjoy a nice scotch once it cools down and gets dark

sand trench
sand trench
whole yew
#

Nope. I don't drink single-malts like that. Neat, maybe an ice cube if I'm feeling saucy.

jovial musk
#

shadow did you see what i typed

crude stump
jovial musk
#

im sorry to bother im just reallly curious

sand trench