#general

1 messages · Page 301 of 1

bold sierra
#

and the string that i have given u is altered

#

i am not that stupid buddy

clear jackal
#

I'm not your buddy

bold sierra
#

i am just asking if anyone have experience in the pii disclosure so that i can confirm the vuln.

clear jackal
#

If you think you have found something to disclose, report it through the appropriate channels according to the bounty

umbral bay
bold sierra
#

I am not sure that it is a vuln. as i dont know even if i am look at it right. As i have no experience with such PII disclosure so that why i need to confirm if it is there or not.

clear jackal
#

Report it. It's likely not in scope for you to determine whether the data is legitimate or not.

bold sierra
clear jackal
#

There is no harm in reporting something that turns out to be a false flag.

umbral bay
bold sierra
#

ok

#

Thanks for the help

#

I just have to look more into it and see if i can get it.

flint wolf
#

Sometimes they have a history of reports, I know hacker one does, you may be able to see if someone has already submitted something similar

#

Then you know if it's bounty worthy or not, been a while since I had time to get on the site tho

bold sierra
#

Thanks for the help @flint wolf now that is some kind of help i would like to get if i am asking , reporting too early might be a loss on my end but not for them. I am not saying that i won't but reporting too early would do me no good.

twin ridgeBOT
#

Gave +1 Rep to @flint wolf (current: #1421 - 2)

flint wolf
#

Good luck! I hope to get more into myself soon

bold sierra
#

Thanks

tawdry bramble
#

Hello guys,
I need a hand. I am trying to retrieve a file from website by suing telnet (room --> Protocols and Servers) . but I don't get access. have look with the attached picture

errant fossil
#

Morning

tawdry bramble
solar echo
#

General debate question: when do you think it's okay to call yourself a "hacker"?

errant fossil
solar echo
#

It's an inwards-directed question, not an outwardly one.

errant fossil
solar echo
#

I just recently learned that what I did was... indeed "something" in the community, but I find it too much for too little.

errant fossil
solar echo
#

I still don't call myself that and have worked with intl' intelligence agencies and started an investigation recently alongside them.

#

I don't think I will ever call myself a hacker. I have been pondering this because of the title I recently got from reaching level 8 on THM.

#

A weird one, yeah.

#

I like loosing up the terms that are looked upon so highly or are taboo-ish. This is a great perception of this.

tulip heath
#

yo

terse spindle
worn thorn
#

breaking stuff is fun honk

oak pasture
#

it's important...

sage wolf
#

bones

worn thorn
#

bones are one of them

autumn solar
# solar echo General debate question: when do you think it's okay to call yourself a "hacker"...

I believe one thing that differentiates a hacker from someone else is a drive to learn about anything and everything, a curiosity that doesn't need to have its hand held. If you're reading RFCs and NIST publications for fun you're probably more "there" in my estimation.

One of the major signs that you know subject matter inside and out in life, and this holds true for any field of study not just anything IT related, is when you can successfully explain what you're doing to a lay person in words they'll understand.

#

As an example, using a "three little pigs" analogy with a 50+ year old television and film producer to communicate the protection a virtual machine might offer.

finite rock
naive violet
junior wraith
naive violet
#

The field is like 100 miles wide and you can go super deep into any topic, which I also really like

#

I've picked up a lot of hardware hacking, some ICS/SCADA stuff, infra, webapp

#

So many different areas

junior wraith
#

its awesome the amount of stuff to learn and the depth you can go to

#

what do you do with hardware hacking?

shadow plover
#

Hi, I just completed the Jr. Penetration Tester path. I'm wondering whether I should now pursue the Offensive Penetration Testing path or the Red Teaming path. Which one should I start with?

simple valve
#

crowdstrike massive bsod

#

this is why EDRs are bad /s

shadow plover
#

ok thanks

rapid merlin
#

Good morning btw

#

How yall doin

junior wraith
#

that would be a disaster where I work

pallid lotus
rapid merlin
pallid lotus
#

I know several orgs where most of their estate is currently on fire

rapid merlin
pallid lotus
#

It's... Gonna be interesting

#

Just gotta hope that it checks for updates before hitting whichever condition triggers the BSOD kekw

rapid merlin
#

Im afraid not

#

oh lol they found a workaround

pallid lotus
#

Has that been confirmed?

rapid merlin
pallid lotus
rapid merlin
#

Nope, the safe mode one

#

Indeed not scalable

pallid lotus
#

Will work for one or two systems but afaik you can't automate the safe mode one

#

Aye

rapid merlin
#

You can, but that will not be easy. You have to have a working system to automate a safe mode boot

#

There is software who can do it, but you have to install that first johnwow

pallid lotus
rapid merlin
#

But idk how long it lasts between startup and the bsod?

#

There is a high chance it doesn't check for updates first... Right?

pallid lotus
#

Afaik BSOD happens during boot, which is why systems are getting stuck in boot loops

rapid merlin
#

There are already airports that are down... No traffic allowed

#

At least, no departs

pallid lotus
#

I'm assuming this will be to do with a driver running in kernel space, given the symptoms. So, uh, yeah, I wouldn't be surprised if the drivers get loaded in long before any automatic update checks occur

rapid merlin
#

Probably

pallid lotus
#

That's also assuming that people have auto updates enabled in the first place

#

A lot of orgs won't to, uh, prevent exactly this from happening

rapid merlin
#

It is related to some "Falcon sensor"

pallid lotus
rapid merlin
#

Ahh yeah

pallid lotus
#

That's the whole thing lmfao

rapid merlin
#

Seems like some people cant even boot in safe mode

#

In orgs, or something

fast elk
#

Crowdstrike Falcon Sensor putting hosts into deathloop

rapid merlin
#

Yup

#

How could this even happen

#

Update not tested or something?

#

or the "it works on my pc"

fast elk
#

Whole world is going crazy in the down detector

#

Banks, airlines…..everyone

rapid merlin
#

Which one btw?

#

Windows? Or something

lusty aurora
#

ok you guys, which one of you is messing with the planets Internet?

rapid merlin
gray sonnet
#

what all seems to be down?

candid niche
#

all, is correct

gray sonnet
#

lmfao

sick lance
#

My Internet is fine.

Moved house too, so it's even better

gray sonnet
#

all seems to be fine 🤷‍♂️

rapid merlin
#

Nothing wrong

fast elk
rapid merlin
#

I mean

#

Where on downdetector

#

Which page

fast elk
#

I don’t have perms to post image but look up literally anything

#

Ms 365, aws, foxtel

sharp citrusBOT
rapid merlin
#

Ahhh yeah I see

fast elk
#

Like look up banks, airports, software services that are customers of crowdstrike

rapid merlin
#

Rip the economy

gray sonnet
#

🪦 --> economy

fast elk
#

Stocks can’t trade on LSE

#

Rip crowdstrike stock

gray sonnet
#

is crowdstrike public?

fast elk
#

Can’t use automatic boarding pass in airport too

fast elk
rapid merlin
#

if it is, imma buy it tomorrow

gray sonnet
#

nvm, I just googled it

rapid merlin
#

Best time to step in now

fast elk
#

Crwd usually beats earnings and recently got added to spy

#

But overnight trading their stock down 10%

#

Rest of the world stock market is down

#

Falcon Sensor is an agent that CrowdStrike claims "blocks attacks on your systems while capturing and recording activity as it happens to detect threats fast."

rapid merlin
#

At least you cant get attacked in a bluescreen loop

#

So it does the job

candid niche
#

Interesting thread of it unfolding
https://x.com/troyhunt/status/1814174010202345761

Something super weird happening right now: just been called by several totally different media outlets in the last few minutes, all with Windows machines suddenly BSoD’ing (Blue Screen of Death). Anyone else seen this? Seems to be entering recovery mode:

gray sonnet
#

Hmmmmmm

fast elk
#

FAA telling all flight to land kekw

#

Due to computer problems

gray sonnet
#

I'm not sure how crowdstrike would put your computer into recovery

rapid merlin
#

Because its in C:\Windows\System32\drivers

#

And some driver crashes

sand rivet
#

does anyone here have a copy of the sys file in question?

rapid merlin
#

Nope

fast elk
#

It’s Joever cri cri cri cri

rapid merlin
#

I think not much people on the world have that

#

Because you cant get it now

gray sonnet
#

Good thing I don't use crowdstrike then kekw

rapid merlin
candid niche
#

adversaries only wish they could do what Crowdstrike did by accident

rapid merlin
#

Plot twist, crowdstrike has crowdstrike on their own servers

#

And can't fix it

#

Oh they released a fix

#

that was fast

chilly veldt
#

It's gonna be sooo hot riding to the car meet then

candid niche
charred forum
calm nexus
#

guys internet outage

#

what is it abiout?

candid niche
calm nexus
#

ahh they say microsoft too?

candid niche
rapid merlin
#

Oh its nothing

#

Just an EDR a lot of big corps use

#

And it just gives an BSOD boot loop

tranquil sable
#

Shouldn't of pushed on a Friday. Now they've got the whole weekend to fix now 🤣

All seriousness tho, what a interesting situation

calm nexus
rapid merlin
#

Simple as that

calm nexus
#

ohhh

#

so can't they roll back?

calm nexus
#

so the situation is that windows server using Crowdstrike, are in BSOD boot loop?

#

correct

#

?

#

@rapid merlin @candid niche

rapid merlin
#

True

#

Correct

calm nexus
#

okayy

rapid merlin
#

Also Windows 10 and 11 btw

#

Not only windows server

calm nexus
#

ohh ookayy

#

so can it be hackers doing something?

rapid merlin
#

Could be, probably not

#

Looks like its just a "bad" update

calm nexus
#

yepp let's hope so

calm nexus
rapid merlin
#

Idk

#

We'll see

calm nexus
#

ahh okayy

rapid merlin
#

Hey Guys, I bought an old Kindle yesterday and wanted to ask you if anyone had any good books about hacking? Any recommendations?

calm nexus
#

thanks for makinng me understand the situation @rapid merlin

twin ridgeBOT
#

Gave +1 Rep to @icy epoch (current: #115 - 60)

rapid merlin
#

No problem :)

fast elk
calm nexus
fast elk
#

CrowdStrike is now in the process of rolling back that update globally

rapid merlin
tranquil sable
#

Hopefully no poor intern, if any, gets blamed for it NotLikeThis

sick lance
#

Who's affected by cloudsrike?

#

Fix if you're affected by the rolling blue screens...

  1. Boot Windows into Safe Mode or the Windows Recovery Environment
  2. Navigate to the C:\Windows\System32\drivers\CrowdStrike directory
  3. Locate the file matching “C-00000291*.sys”, and delete it.
  4. Boot the host normally.
graceful thistle
#

Here now because our infra guy just shared the news on office chat on Friday night x) cant be good news

graceful thistle
shadow loom
#

Good thing companies don't vendor lock into Microsoft by default right?

#

...right? 👀

rapid merlin
#

You are joking... Right?

#

Companies love Microsoft

shadow loom
#

Nobody ever got fired for recommending Microsoft

#

Exceptions may be Apple and Linux Foundation, but that's probably it

rapid merlin
#

Would be the same as crowdstrike running crowdstrike on their own servers

slender scaffold
#

I don’t have the crowd strike so I’m good yes?

steel aspen
#

Anyone know what's causing this worldwide network Internet outage thing?

slender scaffold
#

Definitely striking the crowd with the update

latent knot
shadow loom
#

I wonder if there we two hiccups at the same time, or if one is related to the other

steel aspen
#

Did y2k38 come early? 😎😎

shadow loom
rapid merlin
shadow loom
#

looks like an iMac I think

shadow loom
rapid merlin
#

Windows xp/7 I think?

#

2014

steel aspen
#

Is it to do with crowd strike?

rapid merlin
#

Why is this friday so quiet

#

Apart from the cs shit

finite basalt
#

I got sent code and they included a 500+mb node modules folder 🥲

steel aspen
#

Ralph is back at it, breaking the Internet

charred forum
rapid merlin
#

LOL

twilit nexus
#

What is the possibility that this is a global cyber attack and not a “faulty software issue”

steel aspen
#

Doesn't sound like an attack

#

Just something messing up in the background

#

"have you tried turning it off and on?"

charred forum
#

They could do a lot more if they had access to a driver update lol

rapid merlin
#

Yeah, there is no profit for the attacker

steel aspen
#

That's why I don't get DDoS attacks

#

It's just a troll thing

shell nova
#

They done fracked up good and proper

steel aspen
#

What has actually happened though? Can someone explain?

twilit nexus
#

Basically screwed global transportation

#

Especially airlines

steel aspen
#

And transactions

shell nova
steel aspen
#

But what about the flights being grounded and bad transactions?

tranquil sable
#

Well, in terms of what is happening. Crowdstrike is actively causing companies to lose money : )

shell nova
#

Workaround is to boot safe mode, nuke the driver and reboot

shell nova
steel aspen
#

And supermarkets not going through

twilit nexus
steel aspen
#

Oh true

rapid merlin
steel aspen
#

Yeah I'm dumb

rapid merlin
#

(/servers)

twilit nexus
#

911 emergency services are also down in some states in the US

steel aspen
#

I always forget what crowd strike is lol

shell nova
#

I feel sorry for the it folks in the trenches having to manually fix everything

shell nova
rapid merlin
rapid merlin
shadow loom
twilit nexus
#

Well they do so unfortunately

shell nova
shadow loom
#

a good one even AFAIK

#

well, when it doesn't cause world-wide breaking

twilit nexus
#

My sister works for delta and she’s saying it’s hell for the airlines

#

And airports

rapid merlin
shell nova
shadow loom
#

XD

twilit nexus
#

They have to do departures and updates on a whiteboard with an eraser

shell nova
#

To be fair, this is precisely why enterprises tend to hold back updates for a few months

#

Dunno if crowd strike has an option to delay though

steel aspen
#

So something is happening on crowd strikes end causing it

twilit nexus
#

Yes

rapid merlin
steel aspen
#

And bad drivers are being affected

#

Or is it theirs I'm confusrd with it

tranquil sable
#

I mean, that's the catch-22 isn't it? that when companies don't update their stuff, they get EnternalBlue'd and when they do, they get CrowdStrike'd kekw

twilit nexus
#

The fact so many people rely on crowdstrike is astounding

shadow loom
#

ffs John KEKW

shadow loom
twilit nexus
#

I know it is

steel aspen
#

It's a cyber solution for companies basically

twilit nexus
#

But just in general dependency on one company

shadow loom
#

so obviously many companies use it xD

steel aspen
#

But it's affecting computer drivers

twilit nexus
#

Consolidation to one company for security services is a huge bottleneck

steel aspen
#

Is that it generalised?

shell nova
steel aspen
#

Yeah

shadow loom
#

"The Cloud" is no exception

twilit nexus
#

This is true

marble totem
#

How can something like this even happen? Did they forget to test their updates or something?

rapid merlin
#

Probably ||=waarschijnlijk||

shadow loom
#

Could be that their test environment does not reflect the reality too well

rapid merlin
#

Possibly

#

Or the Jr. Dev just finished it and pushed

#

Works on my pc!

shadow loom
#

Always blame the intern

silver sky
#

Today is hell on earth

#

Please kill me

shadow loom
#

no sir

silver sky
#

Please

shadow loom
#

you must survive to witness the chaos

silver sky
#

I have had enough

rapid merlin
silver sky
shadow loom
#

me on vacation ^

rapid merlin
#

Rip

shadow loom
#

like any news site?

silver sky
#

Every machine in the office. Including all my CCTV monitors

shadow loom
#

🙃

silver sky
shadow loom
#

right right KEKW

#

I guess you guys are the lucky winners of using CrowdStrike EDR then

rapid merlin
#

You know the fix, huh?

silver sky
#

I am currently in a control room full of blue recovery screens

twilit nexus
#

Make sure to buy crowdstrike holdings in the morning

rapid merlin
shadow loom
rapid merlin
#

They are like -14 or something

rapid merlin
silver sky
shadow loom
twilit nexus
#

Markets will overreact like they always do

rapid merlin
twilit nexus
#

they see something like this and it’s instant sell off

rapid merlin
shadow loom
#

Ah sorry I was looking at yesterdays prices

twilit nexus
#

on robinhood’s ass 24/7 trading it’s down 15%

shadow loom
#

for a moment I thought CS was a UK thing

silver sky
#

📉

shadow loom
#

yeah down by 15% I see now

#

KEK'd

errant fossil
rapid merlin
#

-16%, will be even lower when the market opens

shadow loom
#

I'm ready blaze

twilit nexus
#

London stock exchange is having problems

#

So sucks for them they can’t buy what we can

rapid merlin
#

Hehehe

silver sky
#

Everyone is having issues 😂

shell nova
twilit nexus
#

I just wanna see the US markets open and see what happens

#

It’s gonna be a bloodbath

shadow loom
twilit nexus
#

east coast is just starting to wake up on this

normal rose
# silver sky

This problem is affecting the whole world. Nearly the infrastructure at Mercedes is facing this issue

vast sapphire
#

Morning, does anyone know of a decent tool to search ALL of github for keywords? Appreciate anything will be rate limited etc

twilit nexus
#

Hotels are gone can’t book those anymore

rapid merlin
shadow loom
#

Pre-market value is at -17% now

shell nova
shadow loom
#

jesus

twilit nexus
#

god damn it’s sinking

#

NASDAQ gonna have a field day

#

not in the good way either

#

Imagine your clicking to buy and it says “error has occurred”

shadow loom
#

oh no xD

vast sapphire
rapid merlin
#

Github warns people when it detects passwords in their files right?

marble totem
#

yeah

worn thorn
#

it didn't warn me about a discord bot token gosthonk2

rapid merlin
#

Oops

#

What’s this big IT outage going on?

twilit nexus
#

Crowdstrike rolled out an update and its not working

#

Affecting millions of systems

rapid merlin
#

Yikes

twilit nexus
#

finance, transportation, telecommunications

hot cairn
twilit nexus
#

Airlines hit extremely hard

hot cairn
#

Needs safe mode boot to fix

twilit nexus
#

Yes

hot cairn
#

With bitlocker it’s a mess

rapid merlin
#

Yeah I’ve seen Microsoft workstations were shown the blue screen

shell nova
twilit nexus
#

The world is waking up to it

hot cairn
twilit nexus
#

So it’s only gonna get worse

#

buckle up for fun!

hot cairn
#

Ish

twilit nexus
#

Well

hot cairn
#

Workaround is known, update isn’t being pushed

worn thorn
#

more coffee NotLikeThis

hot cairn
#

Not getting worse ig

shell nova
rapid merlin
#

Yeah I was gonna say

hot cairn
twilit nexus
#

Hope 401ks aren’t planning on being cashed out today though

#

Bad stock market day

shell nova
#

But the fixing will take a while

hot cairn
#

Everything existing needs unfucked

twilit nexus
#

millions stranded because of the airline grounding

shadow loom
#

Getting close to we're past -19%

#

xD

twilit nexus
#

Damn

#

Buy that shit tomorrow

#

Easy buy low sell high

gray sonnet
#

Crowdstrike screwed up bad kekw

twilit nexus
#

Someone’s getting fired

shell nova
worn thorn
#

bet it was dns kekw

gray sonnet
#

Their stock hasn't dipped much

shadow loom
#

Am I completely dumb or what's happening? Why doesn't Google understand "from EST to CEST" and gives me CEST to EST? KEKW

shadow loom
gray sonnet
#

Yeahhh not much

devout palm
#

Birb you going to DEFCON?

rapid merlin
mossy river
#

My brother has been on call since 3am due to the tech issues lol

worn thorn
#

one letter diff moment

shadow loom
twilit nexus
#

That’s because the US markets haven’t opened yet

#

Wait till black rock hears about this

devout palm
shadow loom
#

yea same

#

I'd have to pay out of own pocket 😦

karmic geyser
#

Hey birb

shadow loom
#

Hi

karmic geyser
rapid merlin
#

System admin?

mossy river
#

Honestly he’s been through so many jobs I’ve lost track

He’s a high level technician for a company so when their clients have issues he’s the one called to fix them

tepid citrus
#

Is it a Microsoft issue or a crowdstrike issue ?

twilit nexus
#

Sister having a field day at the airport for delta

#

Crowdstrike mostly

rapid merlin
#

A bit of both

worn thorn
#

microsoft has always issues

rapid merlin
#

But mostly crowdstrike yeah

twilit nexus
#

Unfortunate

#

Isn’t it pay day too for a lot of people

#

It’s Friday

worn thorn
#

mid month yes

rapid merlin
#

@shadow loom -20 already

shadow loom
#

yeah

twilit nexus
#

That stock is gone

shadow loom
#

READY YOUR WALLETS: <t:1721395800:R>

naive notch
#

Bro

twilit nexus
#

Once Dow jones opens its selling off

rapid merlin
twilit nexus
#

You already know investment banks and institutions are selling that

rapid merlin
#

High risk high reward

naive notch
#

somebody help me its urgent i have described my problem in #site-support

worn thorn
twilit nexus
#

They make the risk

#

Unless your GameStop during its meme rally

rapid merlin
tepid citrus
#

Is it a crowd strike or Microsoft issue, when can I find more details place

twilit nexus
#

Anywhere on the internet

rapid merlin
#

Its a matter of time till the stocks will higher in price

twilit nexus
#

Average annual return of 7% on the S&P 500

#

The stock will recover after like 3 days

rapid merlin
#

Prob

twilit nexus
#

Institutions will buy it back and fuck everyone over

#

Greedy greedy humans

rapid merlin
#

Another subject,

worn thorn
rapid merlin
#

INteresting

shadow loom
#

oh well, quick shower, some food, a nice roadtrip outside in the beautiful weather (for once it's sunny outside) and I'll be back and ready for more mayhem blaze

shadow loom
tepid citrus
#

How is crowdstrike responding ?

rapid merlin
rapid merlin
#

And they'll say, oh sorry wasn't intended, hope you all are not angry on us

tepid citrus
rapid merlin
#

Well prevent it from happening again

rapid merlin
#

But yeah

#

Lemmie search

slender scaffold
worn thorn
#

matt has gone mad with power

charred forum
rapid merlin
harsh sedge
#

hi

sick lance
rapid merlin
#

Israel have some great cyber firms

slender scaffold
#

40 minutes woo

sick lance
#

I have a cellebrite tablet and XRY.

slender scaffold
#

I checked my computer for the bad sys file :< I no has it

#

I’m disappointed… I wanted the thingy just to squish it

charred forum
errant fossil
sick lance
slender scaffold
#

Free 99

worn thorn
#

my free scam :o noo

sick lance
#

So many people still falling for the free 50 dollar steam code.

worn thorn
#

true that.

shell nova
slender scaffold
#

That is a possible vector. I agree

#

Previous job I had, they didn’t have a test environment and I mentioned possible issues but it was largely ignored dangerous

#

I think they didn’t want to spend resources on a test environment

shell nova
slender scaffold
#

Yep

mossy river
#

Gym started out as such a chore today

#

So much muscle soreness

sick lance
#

I've only been to the gym once in the last 2 weeks 😦

slender scaffold
#

I haven’t been to the gym in years ;_; but I do other things

shut hawk
#

Soon ™️

silver sky
#

Just dropped £2k worth of stocks in CrowdStrike

rapid merlin
#

Hmm? Did you sell it?

slender scaffold
#

Honestly, I still believe in crowdstrike

rapid merlin
#

Yeah me too

#

Imma buy it when the market opens I think

slender scaffold
#

Companies are going to explore other options 100%. But until then… it’s a big thing to change it up

normal rose
#

The US market will open in 2.5 hours.

rapid merlin
#

in 4,5

normal rose
#

Yes 15:30 cet

slender scaffold
#

It’s 6am on the east coast

shadow loom
#

3.5 hours

rapid merlin
normal rose
#

So 3.5 hours 😀

rapid merlin
#

Hehehe

#

Middle

slender scaffold
#

I think it’ll fall and then rise and end up slightly low at the end of the day

rapid merlin
#

Birb you going to buy?

silver sky
shadow loom
#

maybe

rapid merlin
#

I'd wait, I think its going to be lower when the market opens

#

Maybe it will fall 10% more

#

But now its -20 right?

whole quest
#

yeah it will i guess or hope it should 🙂

shadow loom
#

going up to -15 now

rapid merlin
#

Oh its rising again

#

When the market opens, it will fall again

slender scaffold
#

Yeah

shut hawk
#

😬

whole quest
#

does they enclosed how the issue generated?

normal rose
slender scaffold
#

It’s been rolled back but anyone who updated during the time of bad update is affected

whole quest
#

yeah but which part, like i am following Marcus Hutchins to see if he makes an update but nothing so far

rapid merlin
silver sky
shut hawk
rapid merlin
shut hawk
#

And it provides context to anyone else reading the convo

slender scaffold
rapid merlin
#

His official statement

#

He told what we already knew

shadow loom
#

they have to say something KEKW

slender scaffold
#

It’s less about how easy it is.. it’s more the sheer number of systems and workstations affected

shadow loom
#

"team is fully mobilized"

#

ye no kidding

shut hawk
#

I sent the article to my cousin who works in cyber and he immediately sent me this back LMFAO

mossy river
#

Wait I better be able to go shopping today 😭

slender scaffold
#

Amazon day is over

normal rose
rapid merlin
slender scaffold
#

Sad cause many places here went cashless due to vandalism during burglaries

rapid merlin
shut hawk
#

Yeah yeah I saw, I didn't feel a need to reply

rapid merlin
#

Alr

slender scaffold
#

Why didn’t Copilot stop this from happening ;_;

#

Lol

shut hawk
devout palm
#

Pals, I started working at the cybersecurity firm Crowdstrike. Today is my first day. Eight hours ago, I pushed major code to production. I am so proud of myself. I am going now home. I feel something really good is coming my way tomorrow morning at work 🥰🧑🏻‍💻

rapid merlin
whole quest
#

@devout palm you did a fantastic job

devout palm
#

Indeed

rapid merlin
#

Heap im proud of you

slender scaffold
#

#1 new hire of the year

brave glade
#

so, how's everyone today at IT Desk support

rapid merlin
brave glade
#

I know I feel like shit taking care of everyone's BSOD

rapid merlin
#

Soooo

whole quest
rapid merlin
#

We use another EDR

brave glade
devout palm
shut hawk
#

I feel for anybody working in a SOC who uses Cloudstrike

slender scaffold
#

I’m gonna go in early and see if I can help the team. Not my department but I’ll try anyway

hollow token
#

someone should kindly help with voucher. thank you

brave glade
#

atleast theyre going back up now with the temporary workaround crowdstrike provided few hours ago

rapid merlin
sharp citrusBOT
#
TryHackMe's Email

TryHackMe's support email address.

slender scaffold
#

Cloudstrike o_o

sick lance
slender scaffold
rapid merlin
#

The whattt

sick lance
# hollow token Gift

This isn't the sort of thing we do here, there is giveaways now and then, you just missed one.

slender scaffold
#

Oh man… the workaround supposedly doesn’t work for systems with bitlocker

rapid merlin
#

At least

#

Should have

cedar swan
#

hi guys

#

hru all

rapid merlin
#

hi

sick lance
slender scaffold
#

o/

whole quest
#

The Crowdstrike issue is giving blue screen of death, so will we be able to access the SAFE MODE

rapid merlin
cedar swan
sick lance
sick lance
brave glade
mossy river
#

Aaah I’m dying

whole quest
steel aspen
cedar swan
sick lance
rapid merlin
shut hawk
devout palm
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #1 - 2512)

slender scaffold
normal rose
#

Hey Boss do you mind if I push the update today and take the day off tomorrow. We never had issues with my code so far.

cedar swan
cedar swan
sick lance
rapid merlin
#

Waking up as linux user:

cedar swan
sick lance
shut hawk
#

OK

#

😎

devout palm
#

@boreal scarab Did you do it 🫢

cedar swan
rapid merlin
#

Matt is the problem

sick lance
steel aspen
#

Ralph broke the internet

slender scaffold
#

Gawd I should go to sleep

sick lance
cedar swan
#

are you

rapid merlin
#

Alright last one

pine matrix
#

Evening

sick lance
slender scaffold
#

do you even edge?

cedar swan
#

do u think ur cool

#

if so u arent

#

…. 😎

sick lance
#

I don't even think I'm cool.

rapid merlin
#

But-

#

You are

steel aspen
#

I shut down the Internet server that holds windows devices. My bad.

sick lance
#

I'm wearing sunglasses because it's 🌞

rapid merlin
#

:(

steel aspen
#

First day on Kali Linux I'm a haxxor

cedar swan
#

larper

normal rose
slender scaffold
#

gasp

steel aspen
#

Who really reads the terms and conditions

normal rose
slender scaffold
#

this is how you become human centipede

sick lance
cedar swan
#

i am eleet

normal rose
#

who will take bets when the first looting will start?

cedar swan
sick lance
sick lance
cedar swan
sick lance
#

Only C.

rapid merlin
#

Heheheh

sick lance
cedar swan
rapid merlin
#

Scrubz only knows C

slender scaffold
#

English

rapid merlin
#

Scrubz uses C and C++

#

hehehe

cedar swan
sick lance
sick lance
#

Oh and assembly.

cedar swan
#

😎

slender scaffold
#

o_o

steel aspen
slender scaffold
#

Wooooowwww

steel aspen
#

Brutal

mossy river
#

That’s sly

steel aspen
#

How good is kaspersky

shut hawk
#

you wouldn't get this with any other guy

rapid merlin
steel aspen
cedar swan
# steel aspen

why cant people hack the people who hacked crowdstrike

slender scaffold
#

I used to love it in the early 2000s

sick lance
cedar swan
#

funny

sick lance
#

I'm being serious?

normal rose
steel aspen
#

But also no one hacked them?

naive violet
#

Just entirely rumoured

steel aspen
#

They confirmed it wasn't

#

Crowdsrike ceo

naive violet
#

Best not to spread unfounded rumors.

cedar swan
#

i dont know the news im using context clues

#

sorry

steel aspen
cedar swan
#

yea i saw crowdstrike down and assumed

cedar swan
shell nova
chilly veldt
#

No one hacked crowdstrike, it was a driver update that went wrong and their driver didn't get to be a valid windows driver and therefore causing bsod because it's one of the first things that loads

cedar swan
#

why dont people just hack the people who hacked them if theyre also a hacker

shell nova
steel aspen
chilly veldt
#

That's why if you safe boot into windows you can fix it with a work around

steel aspen
#

It's like scamming scammers.

shut hawk
#

this is gonna be an interesting friday

steel aspen
#

Same ordeal.

cedar swan
#

yea im saying funny

#

i shouldve put an “always wondered why”

steel aspen
#

Best practise is to teach people to not be scammed.

#

Or help people with security to stop them being hacked

normal rose
#

the crowdstrike stocks are acutally recovering already

mossy river
normal rose
#

they were at -20 and are now at -11

shell nova
steel aspen
#

Help the victims, don't waste time going after the perpetrators. That's what police and other agencies are for

cedar swan
#

can i get hacked if someone sends me friend request on discord

steel aspen
#

Bring awareness

normal rose
steel aspen
shell nova
steel aspen
#

Unless they send you a malicious link you click

normal rose
#

if you accept files that are beeing send to you yes

cedar swan
#

what if they do sum like “if friend = true, hack mav”

steel aspen
#

Doesn't work like that

normal rose
#

this would be way to easy

cedar swan
#

can i get hacked if i click on a server invite

mossy river
steel aspen
#

If its one directly from discord no

#

If its a short url that's done up to look like a discord server invite then yes

cedar swan
harsh sedge
cedar swan
#

like you know when u click on those server invites they ask u to scan a qr code or something

harsh sedge
steel aspen
cedar swan
#

and im always like is it that easy

#

or maybe they got hacked a different way

#

and then the links are just a biproduct

steel aspen
normal rose
#

well I never klick on random links

steel aspen
cedar swan
#

i never click links

steel aspen
#

But if it's like a tinyurl or goog.le then probably not

slender scaffold
#

Alright.. bed time. Gnight THM ❤️ stay safe and legal

shell nova
cedar swan
#

this account has been disabled like 3 times

normal rose
cedar swan
steel aspen
steel aspen
#

Similar to tinyurl

#

Where it shows the page before

#

But you dint directly access it

marble totem
#

I usually do a quick check with curl.

steel aspen
steel aspen
cedar swan
steel aspen
#

I love Linux but dislike mac a lot. I'm kinda weird.

golden wadi
#

aka the average arch linux connoisseur arch pepe_king

boreal scarab
steel aspen
#

How come?

boreal scarab
golden wadi
steel aspen
silver sky
golden wadi
#

nix os POGGIES

steel aspen
#

I never got into mac for some reason

#

Oh that'd do it

#

I do THM on Kali cos made it easy but I generally use Ubuntu.

#

Idk if parrot is really used as a daily but I wanna try it

silver sky
devout palm
#

Mmmm Iced Coffee

golden wadi
#

I used parrot for a while the HTB flavour was pretty good but mostly use WSL peepo_yikes

steel aspen
#

Wsl is cool

#

Still learning and wanted a desktop enrivoment but couldn't work out how with wsl so just did vm instead

shadow loom
#

WSL Desktop experience was a little wonky last time I tried it

#

It works... but not amazingly (back then - might have improved)

golden wadi
#

I need to pull the trigger and at least dual boot I wanted to try hyrpland for ages but doesn't really work well in a VM because I couldn't figure out the PCiE passthrough and it really needs graphics to work well

shadow loom
#

I think unless you wanna remote desktop to it, passing through GPU isn't a good idea

mossy river
#

Why not?

shadow loom
#

Which machine do you get display output of?

mossy river
#

Hm?

shadow loom
#

If you pass-through the GPU to the VM

#

and plug in a cable

#

which machine do you get display output of

#

and if it's the VM, then you also need to pass through USB to use mouse and keyboard

shadow loom
#

and then you can't manage the host itself

mossy river
#

Signal is so bad here holy cow

golden wadi
#

well you'd need at least 2 GPUs/iGPU so I assume when I boot the VM it should switch windows to using the CPUs iGPU and give the VM the main GPU

shadow loom
#

i dunno, never tried it myself (GPU passthrough) but I just imagine it's not something you wanna do on your main PC

#

maybe

golden wadi
#

or I've seen some people who have an AMD card and NVIDIA card then use the amd on linux and have a windows VM where they pass the nvidia card which I am kinda enticed by but then I'd have to upgrade my PSU if I wanted 2 GPUs

shadow loom
#

sounds like a maintenance hell if it breaks even the slightest KEKW

near grove
#

Crowdstrike just booped thousands of companies

shadow loom
#

Good morning Internet Explorer

#

good to have you here

#

the stock price is crawling up again slowly

#

it's back up to -12%

normal rose
#

well I guess when the stock market in the US will open there will be some ups and downs

shadow loom
#

yea

#

we'll see blaze

#

gonna bounce for a while

#

cya

golden wadi
#

the media keeps saying "you can't update normally" yet American Airlines reportedly said they're already back up and running so surely they can just push the update across the network? Or did they only have a small number of systems affected

rapid merlin
normal rose
rapid merlin
normal rose
#

you can fix it by yourself

silver sky
normal rose
#

skynet is real 😄

rapid merlin
# silver sky

Yeah quite funny, although I couldn't find it in the history of the page

steel aspen
tulip heath
#

hello fellas

steel aspen
normal rose
normal rose
tulip heath
#

I am at complete beginner's path

#

how much time do you think it will take to complete

steel aspen
#

Depends on you and how much you do

tulip heath
#

if I do it for 5 hours a day
?

normal rose
#

well it still depends on the knowledge you already have. But I guess you will pretty much rush through the beginners path

golden wadi
#

are you a complete beginner or have some knowledge/background in tech it all depends on how fast you can absorb the knowledge and understand the topics

tulip heath
#

I know Kali linux

#

and python

#

a little bit

golden wadi
#

by knowing "kali linux" does that mean you have a deep understanding in all the numerous tools it has or just that you can use a terminal? again there's no definitive answer until you do it

tulip heath
#

also basics of C and JS

#

well I'll do it

golden wadi
#

it also depends how serious you take it are you going to be taking notes during the path or just blitz through it? if the latter then it might take only a couple days

steel aspen
#

Last 2 memes promise. Group on Facebook had them all over lol

marble totem
#

crowdstrike is back on -10

rapid merlin
#

Is the free version of tryhackme good enough to become a good hacker?

shell nova
solar bramble
#

Does anyone here know about mobile pentest

shell nova
#

Ah well...guess I'm not good then

rapid merlin
#

So i dont need the premium resources? After the intro i could search the web for more specific content ?

boreal scarab
#

Do I go bagel, or just coffee today?

shell nova
rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @shell nova (current: #12 - 590)

shell nova
#

Cheaper than a new lappy

mossy river
#

I saw that and thought “20 pfft, 30 pfft, 500!?!?!”

shell nova
mossy river
#

That wasn’t why I said that 😆

mossy river
#

It was the comment about the bank account

shell nova
#

Sure

mossy river
#

Why else would I list the two smaller prices smh

strange kestrel
#

did you guys hear about the outage

shut hawk
#

yas

shut hawk
#

yep

somber stone
#

hello

#

i have a question

#

What type of attack on the encryption can you perform on WPA(2) personal?

pine stratus
#

Is it a cyber attack , whats happening in the world noww?

#

in airports etc?

normal rose
shut hawk
#

not a cyber attack, just a bad driver

somber stone
#

no its only question in room

shut hawk
pine stratus
pine stratus
#

?

normal rose
#

But it's affecting a whole lot of systems who use Cloudstrike as their av software

shut hawk
pine stratus
sick lance
#

Or just check your local news, it's a headline.

pine stratus
normal rose
#

No that's not correct.

#

Cloudstrike pushed a update which made a driver crash.

pine stratus
tepid citrus
#

For learning purpose… How could organisations have prevented this? What if they blocked auto update ??

sick lance
#

That would be effective.

#

It's not the first time an update has messed up, maybe not to this scale.

shut hawk
#

Cloudstrike should have tested the update beforehand

sick lance
#

Resources is better that for that.

steel aspen
#

I just trolled myself

agile thicket
#

Hi who can find the phone number and address of Khadidja Benmessaoud please

sick lance
#

?*

steel aspen
#

Opened up windows and I left Connect on in fullscreen mode. Thought it was the infamous update at first. 😎

#

Connect/ Wireless Display

silver sky
silver sky
agile thicket
sick lance
steel aspen
#

The memes coming out are great

chilly veldt
boreal scarab
#

I'd like to state for the record, I do not work for Crowdstrike smilecat

rapid merlin
#

Hi everyone

steel aspen
loud marlin
agile thicket
sick lance
boreal scarab
#

harsh sedge
steel aspen
#

Dam Crowdstrike was just Layer 0/8 of the OSI

#

Picnic

loud marlin
#

@boreal scarab Happy BSoD day to you...

rapid merlin
#

I love it, bbc reporting on what happened just for their feed to be cut again 😂😂

boreal scarab
silver sky
rapid merlin
boreal scarab
#

It's a Friday, I'm eating a bagel, boss is working from home. AND Crowdstrike broke millions of computers!

silver sky
#

Please turn off updates to prevent the rare occurrence of software bugs - best advice

steel aspen
silver sky
steel aspen
#

Choice is yours 😎

normal rose
worn thorn
silver sky
#

Turn off your firewalls as well

steel aspen
silver sky
steel aspen
#

Obviously not in this case but yeah

normal rose
#

Well if in my company they would not have automatically updated from Cloudstrike nothing would have happened here. Wait one day and then install the update. Usually the bugs are then identified.

silver sky
#

I am actually dying

rapid merlin
#

Your IT team need to quit

normal rose
#

I mean this was not a zero day exploit that was fixed here

harsh sedge
#

vadi is not wrong though, you should never update to the new system instantly

silver sky
#

I do hope you don't have anything to do with cyber security for your company

boreal scarab
#

Be mindful of blindly updating

Looks at my 3 Rasp Pi's that have cron jobs to update and upgrade every night

silver sky
#

Give me a good reason on why you shouldn't update critical security software

boreal scarab
rapid merlin
steel aspen
#

Do a setting that says update as soon as one is available

harsh sedge
# silver sky Why?

pre-new versions can sometimes have unknown bugs which become seeable in a short time, so it's better if you wait at least a few days to make sure that the new system is fully secure, ya won't lose anything, will ya?

boreal scarab
worn thorn
#

crowdstrike did a silly with drivers.

steel aspen
#

Blue screen of death and. Boot loop

silver sky