#general
1 messages ยท Page 256 of 1
maybe
Maybe?
ye
Wdym maybe
what is wdym
What do you mean
nothing
Too good not to screenshot
You can't just say "maybe" then without explaining the meaning behind you questioning the statement
ok
maybe ๐คทโโ๏ธ
who knows?
Daily workout done. ๐๏ธ
time for booze
Summer down it's only 7:00 a.m.
so it's only 2am over here
Strava dark mode has been a long time coming
Me: sees news article about an old unpopulated school burning down
"It's a 104 days of summer vacation and school comes along just to end it"
sup bros, what do we talk about in here
youโd never guess
do you guys talk about birds
@graceful thistle you've been paged
oh god your profile pic isn't a bird anymore
are you summoning the expert on birds
when was it ever
No v talk about life hacks from 5 minutes crafts
..was it not?
๐ฌ
am i thinking of github
yeah
what's the best life hack you've discussed in here
ah that makes sense
Its a secret
do you have interesting bird facts?
ok, but if you pretend it wasn't a secret, then what would it be
Youโd never guess
is it a life hack about birds?
Yeah
cool, then i probably already know about it
what important thing did we interrupt you from
Ill take it, thx
Gave +1 Rep to @molten sky (current: #68 - 101)
now this is the content i came here for
what is your guys' favorite kind of bird to eat
by with a good group of people i mean normally as friends not side dishes
so the doves are your friends?
pretty common across many parts of the US, and just outright illegal in others -- so some people live by it and others don't even know it exists as a thing you can do
there are even restaurants you can take your kills to and they'll clean and cook em up for you in some good dove tacos or whatever else
are you from the south
nah, nj shore & middle of alberta
i'll have to try it
i know where there are some doves, but they're very elusive around here
eh doves are everywhere, just gotta get outside
especially around grain like corn/milo/soy, some good watering holes, fine gravel pits.....etc
ah isee, i'm only allowed outdoors every other sunday so that's probably why i dont see them very often
so this is a hacking server right, where do I start if I want to learn some cool hacks
(fyi, just in case, don't go taking doves at random, lol -- laws vary state by state by a ton, and where legal, normally need a hunting license)
#start-here i think is a thing still
it linked so yeah still exists
are you a hacking expert
yo wsg
far far far from an expert, but also not blind to it
/waves/
I got encryption with automatic TPM unlocking working
and I also wiped my linux partition in the process
300GB turned in 19GB
i'm always iffy about auto unlocks
(great thing to use for 99% of people ofc just mean for myself)
if there is a change in hardware or in the boot chain it requires my recovery key
what's up with the 300 -> 19? like what partition was reduced?
didn't realize, but that's actually a cool thing to have then --- i would still opt for a password as well for my use case but that's actually a really good addition
nah like 300GB worth of shit on my root partition turned into 19GB after I wiped and installed what I needed
i should do some spring cleaning myself tbh
tons of crap built up taking up space
gotta build out a new storage server again when i'm no longer a poor
I like it from a usability perspective. The boot chain security processes with the TPM are pretty neat
I can agree for most commercial use cases. Judy in accounting isn't gonna deal with that shit
For my main workstation tho, I don't find myself inconvenienced enough to outweigh the added security of no auto ๐คทโโ๏ธ
wouldn't recommend it to other people (irl) cause i know someone's gonna get locked outa their shit
Yeah I use passworded or bitlocker with a pin
I don't want people even getting to the login screen
I still want to pick up a yubikey
I need to buy a new one still ,-, i broke mine
See what I can get going with it
There's some foss/oshw ones too but the yubi is just the standard...
you could probably make one with an esp32 or a pi pico
Not responding to pings isn't uncommon if that's how you're testing it
Can anyone suggest a good machine that doesnโt have weird complex shit going on?
xD
TBH #1256308408743628850 may be a good candidate. If you're stuck at root, read the room description carefully.
wassup
"Madness"

can you recommend good alternatives for gdb because i cant use gdb-peda on gdb 13.2 its giving me syntax errors on its source code
@sand trench Hello, can you check DM please?
The name is not reassuring
Can you please ask members before you DM them..
It's in the rules you've accepted.
@sick lance yeah sure, she is in my friend list ๐
she*
I have improved my security posture
so now I've got disk encryption on both windows and linux
and I've locked down my UEFI behind a password
yay
hell yee
I got a huge scare when I turned on boot password
bc it changed uefi shit
it made it so linux stopped booting
and windows required bitlocker keys
but I've since fixed that
turns out systemd-boot managed to get unsigned somehow
Yo.
Anyone got any info about how exactly yays fakeroot works?
like any other fakeroot?
hi
i have been stuck for the root flag ever since. Lol
very unique vector to exploit. but quite un-intuitive
Hey good news. I received my 29th interview rejection. One more and i could celebrate... whatever ^^
Just a helpdesk job with support options. Its frustrating sometimes.
There are newcomer with a degree. No chance here.
Mmm. Where is here if I can ask?
Allemagne better known as germany
well, you're blocked by something... the room description has a very strong hint about how to circumvent that something
and it's not the only way 
but yeah, it's quite uncommon to see this
Not anymore
Strange, maybe its different in NL
Especially not if you have a static education system in your country. Its not about the effort. Its all about your papers here.
Yeah that's the same here. But dont you have the papers?
I would go outside but won't leave the country physically. And sometimes at the start of it career you have to do.
If you'd speak the language i could possibly get you a job, but if you dont speak Dutch...
Not for the IT. Other ones sure but they doesn't count in this field.
Yeah true.. that sucks
Getting into IT without anything is hard indeed
Unfortunately not.
But maybe i should learn dutch or italiano ๐

You could, but tbh I dont know how easy it is here to get a job in IT without papers
Ye, i knew it but hope someday someone will give me a chance.
Isnt there a so called Ausbildung for IT?
But the dutch respect the effort more i think and the few things i've heard.
Yeah, that depends a lot per company
Some more, some less
Yess. But i'm a old dude so they wont invest in.
Somewhere between 30 and 40
...but not impossible 
True!
I had a dream today playing chess. Like a whole match lol
If you don't think about it right after you wake up, you forget
should you need to memorizing all common ports in order to be good at cybersec or it will come with experience and googling while you encounter unknown port numbers ?
Knowing or not knowing the common ports wont make you good or bad at cyber :)
But knowing some wil def help
The essential ones like 21,22,80 and so
yeah i know that like most used ports but iam not sure about other common popular top 100 ports kind of
asked because so i can get over with my imposter syndrome, lol
Good enough, it will come with experience and googling while you encounter unknown port numbers :)
okay ๐
Has someone experience with some hoax companies on linkedin? Some sound... suspicious... .
Not really, but im sure there are
Ich habe im Dezember einen Quereinstieg gemacht, fehlen nur noch 5 Bewerbungen bei dir ๐
Sir, I'm sure a mod will attend you other languages than english are not allowed :D
Sooo
ok sry
I wrote that i got into IT in December, he only needs 5 more applications ๐
Wrote you a dm. Hey but 5 job application is okay if i look at my rejections 
5 more ๐ I sent 34
I will mark your words ๐ฅณ
Are there any CTFs on THM that use RSA for you to decrypt
Red red wine ๐ท
You're not old enough for UB40
You donโt know the pain of your parents throwing a house party, then at 3am when the music goes off, you finally think everyone is leaving and then Red wine comes on
And besides, they play red wine in bars that I go to smh
Ther is a search option. May it'll help you.
I dont remember them
Too young to drink there then 
Banger
Nahh I mean nowadays
Although the bars I go to are full of old people
Youโd fit in Scrubz

See Blackout gets it
Green green grass ๐ฟ
Itโs a reggae week I can feel it
NOOOO not that song xd
Blue blue sky's โ๏ธ
Why not? ๐
Idk, maybe because its over-used on tiktok
Praise Jah in the moonlight was ruined for me by it becoming TikTok famous
No fb, no ig, no tiktok. So maybe thats the reason why i can hear the song without brain damage ๐๐๐
W
W?
Win. Means something like, good job
Ah thanks for enlightenment ๐ค
Used to express a victory, success, or positive outcome in a given situation
I know -win- but had no idea that's been replaced by just "W" ๐
hey hey people
Great for time management ๐๐ค
I LOVE my boss, surprised us with donuts and coffee wooo!
Do you perhaps work in law enforcement
Why is that a txt link
Better, IT
Raw
@boreal scarab 4 ship oh the wall
So many people have anon mask lying around
oh...it is patched i believe? the co-ordinated release date is today
Tf you got there? A damn printer farm? 
2x of them m8. k1c is beast
you think
Squid games
yep
That slightly open box is uncomfortable
Not everyone has a wifi pineapple laying around xd
got it
You do?
Possibly 
Also nice wallpaper
does anybody have any examples of networking configurations of qemu/kvm under virt-manager for a kali vm
You inspecting the picture? xd
hmm... not so complicated... ill do it
Heck yeah
Then send it to AceS ||not the postage costs ๐ ||
not os much parts... and ofc it must be complicated in that case =/
"new openssh 9.8p1 released today (July 1, 2024) to address this vulnerability"
I love reposting other people's posts lol
an addition of a kabooki mask would be perfect
Isnt that what we all do? xd
running out of space ๐
What's everyone's preferred hypervisor, and is there a reason you use it besides personal preference?
I swap between VMware Workstation Pro and VirtualBox
What is blud doing in omega mart
Buying dehydrated water
Virtualbox
Ophiophagus hannah
You
ONLY $13.99!
:3c
You say these Latin words once a day
"just add water"?
Hi, has anyone recently used Broadcom for vmware? Customer support is no help, and I don't know what my username is which I would use for logging in, I only provided my name and email not the username.
WS pro and hyperv on win pro version
do you swap due to person preference, or does one do something the other doesnt for your needs?
You gotta buy the giraffe
XD your description made me chuckle
very observant of you tho! ๐คญ
yesterday was a deathstalker scorpion
hol up. wait a min
Like Matt said, VMware Workstation Pro and VirtualBox
Both nice. VMware WPro has a little bit more functions
Oo nice
Oh wait
Thatโs the word
For me, I just use basic stuff, nothing special.
Only thing I'd rather have on VMWare (mainly because it's already setup lmao) is my pentest lab
yes! omg double observant! ๐
Leiurus quinquestriatus
๐
they glow under UV light. kinda cool
and the reason for that is not known 100% why
yesss!
I got one of those in resin
somne says is due to hunting thing, some say is mating season or smth
๐ damn thats really cool
Yeah
perhaps analogous to how some flowers have colors that the human eyes cannot see but appear in uv light etc. perhaps to better signal pollinators
might be. there was debate for they glow. lot's of different ideas
Raghhh it's raining
๐ฎ understandable
ooh rain is nice ๐
altho too much rain can be annoying
w8... who had idea to print helldiver ship ?
Is anyone random interested in a raspberry pi project? Might as a mentor or co-hobbyist?
Guess
go frack you self ๐
๐
has any of you guys been on broadcom.com?
Yeah it was me
Steraj ga u pm :)
is nice done to print. but they had to make it complicated
i do understand you. but here we need english as genral rule
๐
Sure
Forgot how relaxing this job is. Chilling infront of my boss, on my phone listening to music.
u from cro or ?
Yup
what part.
Zagreb
heh. fair ok
Imam Just say that lol
im also cro but i live in NL for years now.
Treating you well?
im sad that i didn't go sooner ๐
That's good to hear :)
im from Slavonija from there
@crude stump gib some hints so i can OSINT you location and come to likk you for this print =/
croatia and so yes
Its sad Croatia is out of Euros :(
im not... lol
xd
are there any public rooms in thm that use OpenSSH 9+ ?
I found an intruder but it's a private room
Dont you like Gvardiol? Or Modric?
xd football is your thing or it isnt
nop
lol are you looking for the new OpenSSH vuln?
can anyone help me with vmware installation? I can't even log into broadcom.com
Why can't you login?
yes
wanted to see if the POC is legit or not
and I cba making my own VM
I'm supposed to login with username but I didn't give a username in the first place.
and the first and last name doesn't work
It's your email.
I tried that as well
Are you sure you signed up witthe correct email?
yes I got the verification codes
it just says "Unable to sign in" on login or some other error message
Not sure what to tell you, I logged in fine.
with your email?
Yes.
Are you trying to download VMware @abstract basin ?
I can try and get a direct download link for you, save you the hassle
yes
๐คจ๐คจ๐คจ
?
which course is best for exploit development?
free course or book?
I just made a new account that works.
You gotta buy the giraffe
Nonsense, how you going to get a giraffe to live in your house?
Get something smaller, like a hippo.
What am I looking at
Looks like a bottle
water bottle that is engraved
branded Rammstein.
Heheh noice
True ๐
Best meme ever.
laser is nice thing
Lmfaooo
lol
Confirmed, I am going to Estonia again this year! 
how do you have so many travel oportunitys. is it for your job?
dude im addicted to vada pav
You too???
Omg.
I just got infected by an Irish virus...
Dear Receiver,
You have just received an Irish virus. Since we are not so technologically advanced in Ireland, this is a MANUAL virus. Please delete all the files on your hard disk yourself and send this mail to everyone you know. That'd be grand.
Tanx.
Paddy O'Hacker
nope, CTF, this is for a cybersec camp
Hi guys, I'm in Hacking and CTFs for a bit of time now and I now have the Hacker rank on HTB btw. I was wandering if there is anyone interested by creating a kind of team to split and share the enjoyment of hacking together ?
If you are, please DM me so we can do CTFs together !
Why we pinging Jabba? ๐
Dont we all love pinging Jabba? :p
APP
TryHackMe: Your account has been updated and verified!
i was looking for this message
It will be from the bot.
eeeeeew random dm:s
Tr0jan?
yyes
Hm, they claimed you were on their FL.
ยฏ_(ใ)_/ยฏ
they are not
might have sent a friend request too though
aaaand can't find them in the pending friend requests either
pinged you earlier in here ๐
and misgendered you ๐ฆ
don't remind me
yyyyeeeeaaah eeew
109 packages to update
with the power of gigabit internet that goes brrrrrr
Hows yall's day going :)
ยฏ_(ใ)_/ยฏ
Who
On my way home from work
does anybody here know about firewalld policies?
not really
shadow might have been stupid but they disabled firewalld on their computer
I was just gonna ask if my firewalld policies would be effective at isolating my kali instance from my LAN
aka not allow kali to reach other devices on my LAN
yeah it could do that
isolatedVM (active)
priority: -1
target: CONTINUE
ingress-zones: libvirt
egress-zones: public
services:
ports:
protocols:
masquerade: no
forward-ports:
source-ports:
icmp-blocks:
rich rules:
rule family="ipv4" source address="0.0.0.0" destination address="10.0.0.2/8" drop
This firewalld settings file appears to be configuring a specific zone called "isolatedVM". This zone is active and has a priority of -1, which means it will take precedence over any other zone. It targets the CONTINUE rule, meaning that incoming packets should continue to their final destination without being intercepted by the firewall ruleset.
The ingress-zones set for this configuration is "libvirt". This means that only traffic from the libvirt zone will be allowed in. The egress-zones are set to "public", which means that outgoing packets will be directed to the public zone.
Services and ports are not specified in this settings file, so they are likely inherited from the parent zones. Protocols are also not explicitly defined, suggesting that they may default to allowing all protocols. The masquerade option is set to "no", meaning that the firewall will not modify outgoing packets' source IP addresses when sending them through NAT.
The forward-ports and source-ports options are empty, so no specific ports are forwarded or used as a source for outbound traffic. The same applies for the icmp-blocks option, which is not defined, so ICMP (ping) traffic will likely be allowed by default.
Lastly, there is a single rich rule defined in this configuration. It drops packets from any IP address to any destination in the 10.0.0.2/8 network (subnet mask of 255.255.0.0). This implies that if any device in your LAN has an IP address within the 10.0.0.2 - 10.0.0.255 range, they will not be able to communicate with this machine from the inside.
In summary, this configuration file creates a firewall zone called "isolatedVM" that is active and has priority over other zones. It allows traffic in from the libvirt zone and outbound to the public zone. The ICMP traffic is likely allowed by default, while specific services, ports, protocols, masquerade rules, forward-ports, source-ports, and icmp-blocks are not defined. Only one rich rule is specified to drop packets from any source to any destination within a certain IP range (10.0.0.2/8). This configuration will help isolate the machine on the local area network (LAN) but may limit its ability to communicate with devices in that same subnet.
yes this is a llm response
from dolphin mistral
guessing you forgot to connect to the vpn
It's connected
Wdym
It happens
go to the room page and look if the box shows that the target machine is still running
I move and everything cracks.... I'm getting too old for this shit
okay then check with nmap if port 80 is open
does the tryhackme dc server do any giveaways
yes used to be a lot more in the past... they have had some problems with the giveaway part of the bot for a while though
so do they still do giveaways or has it just been put on hold for now
put on hold for now.....
๐ซ ๐ซ ๐ซ just spent a few hours troubleshooting why my vms kept failing to update when running them for the first time.
Completely forgot to adjust the time zone on the vm
nmap -p 80 then what?'
Is there first blood in ctf rooms lot of time I see somebody got 300 points and others only 150
yuups
normally if you are not getting first blood on a flag on a new ctf you get 30 points
if you get first blood you get 80 points
Hey shadow i dmed
it could also be delayed as no one has sent them any voucher codes to give away
......
please don't dm or send friend requests whitout asking in here first
Ow
shadows message request and friends list thingy is a huge mess
im still confused on what r the differences between red team and penetration testing
@steel steppe red team = pen testing(attacking) , blue team = cyber security(defending)
@sand trench u told me to check the port 80 . Do u mean to port of the target machine?
penetration tests are generally much smaller scoped then a red teaming activity
yes
I did that and i found that's closed
okay but what is the red teams job to plan how its supposed to be hacked or smthn cause i wanna be tthe person to hack and pentest the organisation devices
security risk assessment service
then you can not connect to that target machine on that port in the web browser... do more enumeration
Im doing a task ,is that a part of it
red team is trying to look like advanced persistent threat groups and testing basically everything on the companies network
generally with a white team and a blue team
white team looking over both teams
is red team -REDHAT........
and blue team trying to defend
sometimes blue teams are not informed that the red team is doing anything either
Ah i feel confused
and sometime red and blue work together to get best of all world
What do u mean by more enumeration
enumeraton is map of target
scan for all and every open port
more detail is less work later
anyone know if THM email support are based on US or UK time? or whether its both?
both i guess
I managed to get the firewalld stuff working
if ya want can share your screen in vc, can help you out
well most of the tryhackme employees are in the uk soooo would guess uk time
gotcha, ty (:
Gave +1 Rep to @sand trench (current: #4 - 1799)
Redhat is an operating system.
i meant do they use redhat
ye mb
red team is term that is used for team that attack/test system. blue team is for ppl who do defensice side
thx
Gave +1 Rep to @loud marlin (current: #27 - 312)
true...
and you have purple team. is bout of them together
it is also technically part of an extension of the white hat black hat discussion thingy
and no red teamers are not red hats under that definition
did you guys see the recent thing where some cybersecurity "researchers" took a bunch of money from Kraken
no i was litterally talkbout the actual thing called RED TEAMER
yes. red team = attacker, blue = defender
Nice nice
friendly notice for all our note takers
btw is tryhackme the kind of company to lets say if they see u doing really really well they will get u a job...
you might. it's known that some ppl from here get the job in THM
nope just extra learning, if your looking for real world application's to put on your resume try hackerone
i swear all these walkthroughs suck. like when I'm stuck on something and i wanna see how other people did it, it don't want the answer! i want to see how you walked through it not heres the answer.
Tbh I would say certs have the greatest impact on employability
bbbruhhh
its alr ima try and do cyber in uni
Especially OSCP
Doing computer science is a lot better for skills and employability and general programming and knowledge of underlying concepts and principles than cybersecurity degrees iirc
||CEH||
I know thatโs how it is in Australia at the very least
@buoyant tree #general message
CEH is one of the certs with a lot of buzz around it but doesnโt teach you very much
At least Iโve heard
ik m8. was a /j
Doing anything is better than nothing tho
that for sure
all from Star Gate
my dog makes better walkthrough then these medium walkthroughs
You got a dog?
poked the hornets nest
Eh was reading a book that Rex recommended the other day, learnt animal's don't have a lot of context in thier language
They only talk regarding current topics like "There is a cat" not "there was a cat"
bark
woof woof
You ever grinded up a spider in your lab?
grinded up spider in lab ? idk that i follow that
lmao
Chooped up spider parts for a test
oh... no. but had skin under microscope. and some spider venom to used for to get cure. same as snake venom
Dunno my school lab has a dead big spider they keep in a jar, its been there for longer than my teachers. Nobody knows why it's there
hm so what makes -A aggressive. when you are scanning a port regularly it just tells you that its open but doesn't give you the information but that's the opposite with -A. I'm guessing it would show up if you're scanning a system so its "Aggressive"
Lots of scan types, I think T5, etc. Read the manual for exactly what it does
It interrogates the ports
Advanced interrogation
Noone wants to be interrogated
nah T5 is not part of -A
-A is
-sC
-sV
-O
as a single flag
nmap-"GIVE ME INFORMATION"
There should be a RFC for threatening a server to give up info or it's gonna be DDOSED
SHOULD
poor servers
IPoAC exists, why can't that exist
then another one which gives out admin creds when it's taken hostage
lmao
IPoAC has been successfully implemented, but for only nine packets of data, with a packet loss ratio of 55% (due to operator error),[2] and a response time ranging from 3,000 seconds (50 min) to over 6,000 seconds (100 min). Thus, this technology suffers from high latency.[3]
How big were the packets
Probably a byte
bite*
What if we replaced the pigeons with copper cables
budget's would go highhhhhhhhhhhhh
And we passed electricity at specific intervals through the copper wires
sharks like cables
And uses different phases, amplitudes, and wavelengths to transmit more data
And we connected all the cables together
This heist plan is foolproof, except for one little detail.
Paramount+ is here! Stream Key & Peele now on Paramount+. Try it FREE at https://bit.ly/3qyOeOf
#KeyAndPeele
Subscribe to Comedy Central: https://bit.ly/2SP55QM
About Key & Peele:
Key & Peele showcases the fearless wit of stars Keegan-Michael Key and Jordan Peele as the duo takes on...
And made a protocol to transmit data
This is sounding a lot like this
Using things called Internet Protocol addresses
And what if we made a protocol to transmit and receive text called the Hyper Text Transfer Protocol
And what if we replaced the copper cables with glass
And shot light through the glass
And made it bounce inside the glass tubes
So we could theoretically transmit data at the speed of light
And what if we put these cables in the sea
And connected them across continents
- traceroute
What if we just used the "Internet"
wow
What if we use silicon and conductive metal in order to control the flow of electricity
never thought about that
And what if we have the state of electricity passing being represented as a 1
tbh i use 2 cans and some string to talk to people
And the state of no electricity being represented as 0
what if we were silicon based lifeforms
What if we combined these โsemiโ โconductorsโ to make things that can add numbers
what if we make giant shark robots that we can control
@neon river
But when I download the task file and check meta data using the exif tool it shows nothing
hi
Eฬธฬฬaฬธอฬtฬดอฬ ฬดฬอsฬตฬอaฬธฬฝอnฬถอd
And what if we used these โlogicโ gates to store and save data
And do addition and subtraction
there's not much information displayed on the image, yes, if you're doing OhSINT CTF, I can only give you a tip that the info is inside the image and you can use exiftool to extract it which leads to other information ๐
And what if we transmitted this data represented as 1s and 0s across these glass laser cables
And because the glass is like fibres we called it โfibreโ, and because it uses light we also call it โopticโ
So we refer to it as โfiber opticโ cables
And what if we communicated with each other using these cables
What is bro yapping about
And made the biggest repository of information known to mankind
the alexandria library???
And because all these connected semiconductors looks like a net, and because it spans multiple hosts, we called it the internet
I used 2 exif tools but it says no meta data found
It worked for other images
On my phone
And because all the HTTP servers look like a web when visualised, what if we called all these HTTP sites the web
And we called the HTTP repositories websites
What if we created a sort of system to resolve names to ip addresses
So we could access these services through human readable names
Pretty
well... close one eye
And because these names are like domains in biology, we called them domains
lets head to #room-help
or become pirat
And we called the protocol to resolve these โdomainsโ the Domain Name System
What if we gave each individual net host a unique identifier
So that they could be identified over networks
And because they can control how devices access media, we called this name a media access control address
And what if we simplified this into 7 layers
And because it is how systems interconnect, we called it the Open Systems Interconnect model
Just imagine a world like that
Weeeeeeeeee
you riding down a slide???
Mandragora officinarum
More of a Rollercoaster. Up and down, up and down. Blind turns
Idolomantis diabolica
ooooooooooooh
๐คญ
funnily enough, i think the mandrake is mentioned in HP
It is.
๐
i like Hymenopus coronatus :3 among manti
YES!
well a fictitious representation for sure x.x
altho irl mandrakes can be fatal too
matis are cool. they do not have fear hormone.
Good day everyone :)
I love needing to ship laptops to be repaired because they are ABDOLUTELY destroyed. Hanging on by wires, litteraly
Send pics!
Is it "accidental damage"??
Yah, they don't know how it happened, it "just broke"
Nah... yo ass dropped it from 40 stories
Yeah.. ๐คฃ
Ask my coworker about "soup laptop" or "dog water laptop"... btw.. it wasn't water..
๐จ A critical OpenSSH flaw (CVE-2024-6387) allows unauthenticated remote code execution on glibc-based Linux systems. 14 million servers at risk.
Apply the latest patches now!
what in the caterpillar hell you did now ? how did you BSOD the monitor ?
I didn't, someone did
i don't need backup, and other lies i tell my self
I was doing the jr penetration testing path and felt like the sqli part wasnt enough...any good resources to learn ?
shadow is in setup hell again
Was it your alternative personality?
Advanced SQLi, SQL injection Lab (put it on the tryhackme website search bar).
Guide 1:
https://www.cobalt.io/blog/a-pentesters-guide-to-sql-injection-sqli
Guide 2:
https://owasp.org/www-community/attacks/SQL_Injection
A kid at my school bent the whole screen off of it.
Okyyy
happy hackin' :)
is it a new one or the old one a couple months back
According to the article, it's a "new" one. Perhaps a programming error that re-introduced the problem.
That's criminal, unless the laptop was 100 % trash.
It still worked which was crazy
It was hanging on by the lcd wire
LMAO, this happened to me with an old laptop, but I was ... (what?...) 8 or 9 years old. it was a ibm laptop, robust one, like those from the 90s. It was good, but at some point it was just giving issues with the screen, so my uncle and I pretty much "tortured" it, to see if it kept working.
I used to love the keyboard from that laptop. I'm a sucker, for clickity keyboards :) perhaps the only piece of hardware that I really care about details.
man... you really made me unlock that memory, I didn't even remember that one. lol
Successful exploitation has been demonstrated on 32-bit Linux/glibc systems with ASLR.
Under lab conditions, the attack requires on average 6-8 hours of continuous connections up to the maximum the server will accept.
Exploitation on 64-bit systems is believed to be possible but has not been demonstrated at this time. It's likely that these attacks will be improved upon.
Need that patience 
Here's a robust laptop for ya
that laptop's nearly as old as me haha
omg you young.. lol
Mmmm, I luv the keyboard design.
That was top of the line at one point. lol
I've used an older laptop but can't remember what model or make, it ran windows 95 and shipped with 93
It was my grandad's haha
The nostalgia here is killing me lol
I think the one I'd played with of his was something like this
Think the mouse nub was red though iirc
which satellite do you plan to launch?
I once got an old 486 laptop that weighed about 15lbs and the battery lasted about 15 minutes... lol
anything's a satellite if you launch it far enough 
True
One of those could be a satellite with a little bit of momentum haha
My current laptop weight about 6 pounds
My dell laptop weighs about 4kg and then my hp laptop ways less than a kilo
the dell of course lasts about an hour on battery but is an absolute computing weapon while the HP's a bit more low powered and will last a few hours on battery
My dell laptop is by far the best ive ever used ngl
I used to get my grandpa's nokia to play the snake game. lmao
My dell experience was god awful, I'm never going with them again
What happened?
Had to argue and argue and then start citing the law to them after numerous issues and failures to repair it, eventually got a free upgrade but it's not going to be enough to keep me as a future customer
Oh i just fix this one myself when it breaks
They're really good value especially with their deals on consumer laptops but their thermals, quality control and support are abysmal
heey you all
Unfortunately it was a short somewhere on the board that was killing my drives, probably not helped by the SSD thermal issues that it shipped with which I fixed when they failed to fix the correct thing
should i watch yt or go to thm?
Dang, ive never had terrible problems other than a failed HDD and a broken touchpad
I had an nvme drive hit 95c and it'd just turn off to protect itself because dell thought that 1mm thick copper with no thermal pad in a space devoid of airflow would be enough to cool their 2230 nvme drive
I sent them it with bios logs, event viewer logs and screenshots from HWinfo and they diagnosed that it wouldn't turn on, it absolutely would, I know because I'd been using it but couldn't play games or anything without it overheating
whichever you feel like, mate.
If you can take a break from thm or IT/cybersec related stuff, do it. So you don't burn out.
๐ซก
Or, if you feel some indicisiveness... go to THM, try a room, finish reading or doing one part of it, take a break, walk stretch, listen to music, and then get back, and so on and on.
#general message I sent the transcripts there of my passive-agressive emails to them after the final straw after it killed a brand new 1tb ssd after only a few weeks and they failed to fix it, four days later and it wouldn't charge because the short got so bad it was tripping the charger
It was a lot of work and they tried to tell me I wasn't getting a new one as I was a few months out of warranty, so I had to cite the law to them to get them to send a replacement
that means...you're old
it doesn't do anything unless you get a shell
also, use pwncat-cs ๐
wait, yeah, it is supposed to say something like that
did you CTRL+C out of it and try again?
oh
you use arch
you're root...
Different versions of netcat
on arch.......
There are at least 3 mainstream forks of the same bloody tool
that habbit is going to kill your PC 
Better stop that or youll end up without arch
well if you fuck up
Nah
Yeah, dell support can be... useless... my gf had almost a similar issue, but with laptop battery, until she got it, she sent it, got it fixed and it hasn't been giving issues.
Mine was a screen, but I knew where it was going, so I was like "fuck it, I'll take this as a chance to buy two monitors instead"...
I'd HIGHLY recommend you use arch as a user and not root
I've been there, and it's NOT a fun experience
They all have slightly different options and slightly different behaviours
Yes, you will fuck up your pc at some point
What are you trying to say Muiri?
Huh. You don't get that?
I don't think I understand emoji very well 
Christ I'm old
Yeah that's fair, after some arguing over the phone and being bounced around between teams they realised I actually knew my shit both the legal and electronics aspects and they were a little bit more acknowledging of everything I was saying.
It was maybe a week later that I'd got an email telling me that my replacement would be 2 cpu generations newer, 1 gpu generation newer and completely free despite being out of warranty. Mind you I had to buy a temporary laptop (secondhand) in the meantime for ~ยฃ200 so that I could do my uni work etc. I specifically got an HP laptop instead of dell when I was looking around because of how poor my experience was with them
I don't think you're going to get an upgrade on that one 
that's what the inside of my laptop looked like roughly, mine actually had no 2.5" drive bay and had a bigger battery that went across the entire bottom but that little bit of copper you can see is about 1mm thick and has no thermal pad under it
Yeah, I moved to dell because of my experience with HP was meh... I was like, is it just this laptop or would be the whole category??? I don't want to take the risk rn, can't afford it....
So I took the Dell. My Desktop has been good so far though.
Maybe, depends if it gets the job done for you
I opened up my old laptop yesterday and it was dusty asf
I need to give mine a clean at some point tbh
It plays TF2 at 90fps and runs vscode so it works
An old user who likes to have a daily shred of their disks
OGs know TF2 was the best
Is it worth defragging a hard drive that's used on linux as external file storage
me rn, honestly need to do the same.
I wanna throw it away, but at the same time I don't wanna, it was my first laptop, where I learned to code, where I learned to hack, where I played games with friends, has a lot of back story to it
it's screen is cracked it's trackpad isn't working and overall it's a hunk of metal
so I'm debating throwing it away lol
https://laptopmedia.com/gb/laptop-specs/dell-g3-3500-4/ - was the old laptop but it was upgraded to 32gb ram
https://laptopmedia.com/series/dell-g15-5520/ - is the replacement and was upgraded to 64gb ram
It basically requires mains power but it's a beast
I would buy a newer laptop but i dont like the minimalism of new ones
send a pic
the original laptop cost ยฃ850 with deals and I believe retailed at about ยฃ1k without, the idea was that it would replace my desktop when I went to uni
Also did ye finish Spider-man
so hell of an upgrade haha
I'm halfway done. I think.
Yeah for sure
I also ended up upgrading the 512gb ssd to 2tb and putting the old one in an enclosure so now I run a dualboot of windows 11 and kde neon
anywho, have a good one ya'll, I gotta run to the hospital ๐คฆโโ๏ธ
Take care, have a lovely evening ๐
Alright see you
Fwiw Burr, I really like my dell and had a good experience with their support
Maybe it's business vs consumer
I cant comment on their support tbh because my laptop is like 8 years past support age
yeah their business laptops and support are far better, I've an XPS 15 for work and it's far more reliable
Dell's pro support is awesome. Haven't had good experience with consumer support at all.
My problems also extended to things like their support forum not having a dedicated section for their g-series laptops, instead you have to go to the inspiron section, like what? It's not an inspiron ๐คฃ
@gray sonnet wake the hell up
I'm awake 
Go bed
OI 
Lmao
It's an inside joke, don't worry about it haha
Hi all
aye, also, what that cat doing 
.
hes jamming
i need help for msfconsole
It ain't a rick roll as long as you don't hear it
- It's gotta be doen through a link
Only if you auto-play gifs.
Rixon, you should add this in your nickname, I use Arch as root btw
that's the ballsiest thing I've seen anyone do in quite a while lol
living life on the edge
How i can fix that ?
did you google it?
This is vmware
I don't know how to make a correct question
copy paste error and see where it goes
I'll be here all week!
hes done it!

ha
I made a backup via tar and launched it
Dad joke material
WHERE FLUFF CLAN?!
Wut...

how dare he
I used to
I'm also here all week.
Scrubbbbbzzzzzzzz!
Scrubz did you change Rixon?
Yarp.
until one day I fucked up and lost everything lmfao
W scrubz
I am on a machine name blue there is ms017010 of memory which is display so I seek and set the exploit and a payload a revrrse tcp I also place the rhost but I can not launch the exoloit with run or run -I am on msf 6
it was something I couldn't fix
๐ฆ
I had to switch back to windows
Should've called Ang
what could he have done, blow air into my laptop? 
Yah. Cause that shit dirty!
I agree


Ok Scrubz
Oh jesus
tks
my OLD laptop

Matt can't English.
I has the big dumb
I tried turning that thing into a server, but the SSD isn't being recognized for some reason
I tried pulling it out and putting it back in again and still nothing
What year is that laptop from
2019
did you try cleaning it
or seating it in a slighty different direction
yup, it was broken before I even opened it, so I opened it to try and fix that...I didn't
Nice kb
cheapest one I could find lmfao
irc, there's a bracket on a SSD
nice deal
You gotta swap it between the old and new SSD
Ohh, I'll try it tomorrow then
Told my boss ill be gone for DEF CON this year. He said "You're going to that shit again?" Yes, yes I am!
lmao
He's just looking out for everybody, Nobody likes hundred's of BSOD's
whats a good obsidian alternative that you can link freely from mac to phone and other devices?
getting a good notes app for phones is hard
If it's a mac go with the apple ecosystem of apple notes
thanks for the suggestion anyways!
Gave +1 Rep to @buoyant tree (current: #112 - 61)
How're you doing today?
ouch
it burns like liquid nitrogen
why use neovim?
it is the best dev environment and probably the best note taking solution for shadow
what about nano?
ah, makes senswe
no macros
no plugin support last shadow heard
not many colorschemes
no ollama support
definitely no colorschemes lol 
Is Oday Ryan is always online or what lol?
well thanks to the complexity of neovim it gets a lot of nice features
he is
think he leaves his computer running and is afk a lot
well not technically online, his account is
@halcyon comet ^^
Ok
@boreal scarab I'm fake gambling on insyms stream 
Well a microwave is wearable
BAD
you should definitely watch his streams haha
Hmm, I think @sick lance should handle stuff like this
but yes, bad
His stems?
streams*
yes stems 
Then don't use it? Lol

I remember this gif

Check DM
shadow curses matt so that the only gamer fuel flavour they can get is chilidogs
NOOOO GOD NO
HELL NO
gonna force matt to change to gamer supps somehow
When GFuel goes under, which they'll never do
Don't jinx it!
what movie is that from
@sick lance is these aligations true???
Yeah, I changed their name.
dumb and dumber
Hello everyone, I'm looking for insights on how to effectively communicate the importance of penetration testing to tech startups. What are the key arguments or approaches that have worked for you in convincing them of the need for comprehensive security assessments? Any specific examples or strategies would be greatly appreciated!
This sounds pretty specific, is this your job?
As I am working in a startup so I need an answer for this question like how can I convince them?
penetration testing is part of a mature security program. However if the business can't justify the spend, it's not going to happen. Compliance to a security framework is very often the driver that convinces the org to do it
gusy anyone know how to obfuscate a javascript with high security
NIST SP 800-53 baselines, PCI-DSS, SOX, SOC1&2, et al have requirements for internal and external pentest
We are reading a lot of news like that but how to convince them did you have any strategy? Or is there any way to tell how it's important like that ? I think if I say that "x company has lost $xB I think it does make sense and it will not make them ready to agree for pen testing?
Pentests simulate real-time attacks, but with the purpose of pointing them out. It helps take precautions before a real attack scenario happens and lowers the chance of losing integrity and confidence. You wouldn't know how important it is until one day your systems get compromised. So being aware of it helps a lot. I can't give advice on the financial side of this, as I am not a corporate manager.
Not really a psychological standpoint, let's say I am the owner of the startup convince for x product pen testing?





