#general

1 messages Β· Page 304 of 1

steel aspen
#

I'm good

#

Just memeing

molten sky
#

wannacry only impacted about a quarter million machines. I'd like to see how many crowdstrike impacted.

steel aspen
#

A lot

steel aspen
#

More than 5

molten sky
clever shard
#

I love seeing IT guys suffering doing that manually xD

steel aspen
#

Millions surely

#

29000 customers lol

molten sky
#

i think i saw 3500 customers last

#

not sure what that includes

clever shard
molten sky
#

also that probably doesn't account for "customers" who are MSPs/MSSPs who have many of their own

clever shard
#

why trust something with kernel access in first place lmao?

molten sky
#

same reason we trust anything else

#

why trust the linux kernel or the windows kernel?

clever shard
#

I trust linux kernel cz it is open source

molten sky
#

cause the benefits outweight the risks normally

clever shard
#

I dont use closed source stuff

steel aspen
#

And how often really has something like this happened

molten sky
#

"don't use" and "this is untrustworthy" are two different things tho

#

i don't use windows for my own eps either

steel aspen
#

It's usually just eftpos going down world wide

molten sky
#

but it's trustworthy in the context of business

#

the main issue here is all these companies implementing it without any proper fallback (admittedly difficult with a level 1 item)

clever shard
#

I mean I'm not giving some company kernel access to my PC no matter what reputation it have

molten sky
#

level 1?

#

not the right word

#

whatever

#

memory bad

clever shard
#

ring 0 πŸ™‚

molten sky
#

that's just dumb

steel aspen
#

Surely companies had a backup in case of an event. Emergency management lol

molten sky
twin ridgeBOT
#

Gave +1 Rep to @clever shard (current: #351 - 14)

clever shard
molten sky
clever shard
#

I don't hate on any of that software but in fact I just don't like using since I don't know what does it

#

maybe my data is getting sold to 3rd parties?

steel aspen
#

Too true limited access

molten sky
#

yeah but as a business it's about risk

#

it's less risk to do it this way than otherwise

steel aspen
#

Biba and lapadula

molten sky
#

would i want it personally? probably not, no

#

would i use it on business devices that dumb employees use? absolutely.

steel aspen
#

Forgot the actual terms

molten sky
#

also that's why you have proper contracts in place, because if they are selling your data, and that data is protected, now you have a massive lawsuit against the company and their reputation is pretty irepperably damaged and would be hard to use in trusted envs going forward

steel aspen
#

Did they say what driver or was it just to do with the software that uses the kernel driver

clever shard
molten sky
#

you sign a contract with your vendor outlining all the terms of contention you have, including your billing, volumes, what you receive from the provider, what they can do with things, etc

#

businesses don't just accept ToC at that volume

#

you have SLAs, reliability, data sensitivity, ....

steel aspen
clever shard
steel aspen
#

Oh yeah

#

What would that usually do

#

And don't say bsod

molten sky
#

just because the mom and pop shop with 7 employees doesn't, doesn't mean that skipping that step is the rule πŸ€·β€β™‚οΈ

#

again, at that volume --- it's a large contract, so counsel will almost certainly at least glance at it

rapid merlin
#

Hey you guys know a good site that explain what the hell happen today ?

molten sky
#

crowdstrike go boom

rapid merlin
#

I know but like I don’t wanna read dumb media that don’t know anything about it talking about it

rapid merlin
#

Thanks

molten sky
#

well, most days

steel aspen
#

What types of user privilege permissions are Windows? Guest, standard, admin, system?

#

User account

#

Been a bit

rapid merlin
#

yall i own a website and i was doing port checks using nmap and it came up that there was so many ports open and then i did it to my friends website with permission and the same amount of ports came up

#

idk if it has something to do with nmap

#

It’s so funny bro

#

With this crash everybody is gonna use Linux now

tired peak
mossy river
#

It was crowdstrike, not windows

blazing granite
tired peak
#

crowdstrike could've screwed up Linux too

steel aspen
#

Can we all collectively blame Microsoft for no apparent reason

mossy river
#

no

#

#stopmicrosofthate

steel aspen
#

Just joking

molten sky
#

#microsoftdidcrowdstrike

tired peak
#

after wannacry, people didn't stop using Windows

steel aspen
#

Could make it a meme

normal fable
#

No hate on MS.. I have friends there.. jeez guys.. All the MS hate needs to go.

mossy river
steel aspen
#

Make windows the nickleback of the OS

rapid merlin
#

wait does anyone know anything about what is happening with nmap

clear jackal
#

People do like Nickleback

tired peak
#

we can hate Microsoft but due to this, it isn't a reason to

steel aspen
#

Yeah I know I don't know why people don't like them

blazing granite
clear jackal
#

I don't want to say people that touch grass like knickleback, that might be a little to direct

steel aspen
tired peak
#

that'd be funny "oh Monday's update is for Linux"

chilly veldt
#

@mossy river I am pink haired again

chilly veldt
mossy river
chilly veldt
#

so I re-did it

supple tangle
#

i dont hate ms but i hate that i had to download something to let me put my taskbar on right side of screen in win 11. why would they get rid of that feature...

shadow loom
#

I asked ChatGPT to generate a logo for me of "Ansible" featuring "scalability" and "automation". I was very elaborate in my prompt. This is what I got...

tired peak
#

your lucky they didn't have a subscription fee to change the taskbar

shadow loom
#

What kind of junk is that

chilly veldt
#

lmao

steel aspen
#

It automated the scalability

tired peak
#

chatgpt can only regurtitate/modify things its seen before

shadow loom
#

yeah..

shadow loom
#

I was hoping they had adopted DALLe or something

clever shard
tired peak
#

thats a silly criteria

clever shard
#

Let be honest microsoft have good shit and made life alot easier with creating some stuff why hate on it lmao?

molten sky
#

regarding crowdstrike:
Guy from Blackpoint (MSSP) indicating that it was due to a null ptr deref

tired peak
#

people can hate on Microsoft if they want, go for it, knock yourself out 🀣

clever shard
#

Alot of people hate on Microsoft it self and it products if you dont like it there is plenty other stuff that well suit you lmao.

weary sleet
#

some1 explain the Microsoft thing to me pls

tired peak
#

there are certainly valid criticism of Microsoft for a variety of reason

clever shard
tired peak
weary sleet
#

I just know it just stuff down

weary sleet
#

I have 225k on YouTube

#

My other channel

tired peak
#

well people here be busy

#

ok then go ask your followers

molten sky
weary sleet
#

It’s YouTube, there all kids to since I’m a gaming channel

clever shard
molten sky
weary sleet
weary sleet
#

xD

tired peak
#

so it takes 1 second to google

weary sleet
#

but it’s takes time to read…

#

and I’m reading the trump story more

tired peak
#

what you think we gonna do? provide brain osmosis?

weary sleet
#

Thomas Matthew Crooks

molten sky
clever shard
#

Let put it this way some devs pushed bad code for update and since it have kernel access pc goes brrr, and also as @tired peak said google stuff for yourself not everyone would be willing to spoon feed you informations @weary sleet

molten sky
molten sky
clever shard
#

wdym the guy have 250k subs

weary sleet
#

like I have an account with over 525 DMs

molten sky
#

ah i see

weary sleet
#

but I still use this one, but it’s dead so idc

boreal scarab
#

2010?

hearty sail
#

have you tried "sudo apt update" first

molten sky
#

you need to install openvpn? isn't it just included with the kernel now?

#

i thought it was at least πŸ€·β€β™‚οΈ

molten sky
boreal scarab
clever shard
#

can u do sudo dpkg -l | grep openvpn

molten sky
#

does openvpn not do anything

#

(room can very well be outdated as well, if so)

tired peak
#

also, what OS are you on? kali?

molten sky
#

so you do have it then

#

wait what

hearty sail
#

ohhhh snap

tired peak
#

then its installed, you have to give it the file

hearty sail
#

fedora

molten sky
#

how did you get pkg not find but you're on fedora

#

like yeah it's installed

#

but now i'm confused about that

#

fedora doesn't have apt

hearty sail
#

yum?? isnt it

tired peak
#

if you run a command on linux without the arguments, it'll give you the help (generally)

molten sky
#

dnf

hearty sail
#

ahh dnf

blazing granite
#

do a sudo update before that, like sudo update && sudo apt install openvpn

molten sky
#

(yum would work as well but that's just for legacy support --- yum is actually just an alias of dnf nowadays)

blazing granite
molten sky
#

how is nobody else questioning this error message? apt shouldn't even be present on fedora 😢

tired peak
#

so type "openvpn <name of your vpn file>" or "sudo openvpn <name of your vpn file>" if you aren't like me and don't run as root

clever shard
#

I'm a say the gamer Word

#

this is the only nmap scan i do in a production environment
nmap -A --min-rate=100000 -sV -sC -p- `--script=vuln*

hearty sail
tired peak
#

might be

molten sky
#

it shouldn't be tho, unless he did it himself

#

which would be weird

hearty sail
#

I guess we will never know lol

tired peak
#

maybe they went and found it, compiled it and installed it 🀣

buoyant tree
#

@molten sky i hate you

tired peak
#

which is totally a move I'd do

molten sky
#

dnf install apt anyone?

hearty sail
#

all my homies use wireguard kekw

buoyant tree
molten sky
#

ehm

#

0.98?

#

idk how you mathed or in what direction but that doesn't add up in any way

blazing granite
molten sky
hearty sail
buoyant tree
molten sky
#

often breaks shit too tbh

buoyant tree
#

Oi btw anyone got a way I can recreate the crowdstrike BSOD on a personal machine

hearty sail
molten sky
buoyant tree
blazing granite
#

@molten sky I google it. APT-RPM, basically mapped normal apt commands so that they worked with Fedora's RPM package management system.

molten sky
buoyant tree
molten sky
#

cause crowdstrike gave it to us πŸ€·β€β™‚οΈ

#

how kind of them

buoyant tree
molten sky
#

I have no further comments

buoyant tree
molten sky
#

spit it out! @blazing granite

blazing granite
hearty sail
buoyant tree
#

him and his partner, Matt

blazing granite
buoyant tree
hazy jay
#

bruh, I broke mint 🀣

steel aspen
#

As far as I could understand from Internet

molten sky
#

you're trying to dereferance a pointer whose value itself is null

#

rather than a memory addr

steel aspen
#

Oh yeah

solar echo
#

Thinking of giving up THM. :<

molten sky
#

why

blazing granite
solar echo
# molten sky why

I think it's more important for me to get a job now than to do fun tasks online.

molten sky
#

but "give up" is a bit drastic for that

steel aspen
#

Those "fun tasks" will help tho?

molten sky
#

just come back when able

solar echo
steel aspen
#

How

solar echo
steel aspen
solar echo
# steel aspen How

My country values certifications over certificates and university degrees above both.

molten sky
tired peak
steel aspen
#

Surely having both helps better

solar echo
tired peak
#

you can learn skills through various learning sites, but getting a job is a mix of degrees + work experience + certifications

solar echo
solar echo
#

DevSecOps room doesn't really work so I won't engage on that.

tired peak
#

so whats your problem?

blazing granite
clever shard
solar echo
tired peak
solar echo
tired peak
#

apply to jobs asking for 1-2 years experience, utilize experience in related fields

#

lots of people get jobs as IT help desk to start in IT, also if you have opportunities to get internships, thats another way

clever shard
#

Would working in a IT store would good enough?

#

like repair hardware and stuff

tired peak
#

depends on the employer

solar echo
solar echo
hazy jay
solar echo
#

I had less than that as experience when I landed as an IT Analyst, could work for you too.

blazing granite
tired peak
clever shard
solar echo
#

Pentesting is not entry level.

clever shard
#

Jr pentester is a thing

tired peak
#

I'm assuming they are looking for entry level cyber jobs, but maybe not

blazing granite
solar echo
#

Junior just mean you just recently started in that role.

molten sky
#

"entry level pentester" is also not "entry level" -- it's entry level for that category

tired peak
#

but the truth is, for the job market you are working on finding a job which qualifications you meet 50% or more of and you can compete against the rest of the competition

tired peak
molten sky
#

entry level is gonna have it worse probably

clever shard
#

So let put it this way Jr != entry lvl?

solar echo
molten sky
#

although junior is just a word

solar echo
clever shard
#

damn the job market is fu34ked

molten sky
#

every company uses words to mean different things

#

nothing is consistent

clever shard
#

but isn't junior is a title for someone that just started?

blazing granite
buoyant tree
#

Btw Verum, how did it go with reGex

solar echo
#

Entry level means that you don't need too much experience, too much education, too much of anything to attempt it, however you have to have at least something that is related to it.

molten sky
#

"entry level python developer" and you'll read the JD to see "must have 7 years of experience in C#, wildland firefighting, and sorcery"

solar echo
#

But entry level is a level, not a timeframe.

solar echo
tired peak
#

there are certainly people who have 0 IT experience and go into pentesting as a first IT job but its rarer

blazing granite
solar echo
tired peak
molten sky
solar echo
#

I have never had a single decent experience with them, ever, in any company, at all.

molten sky
#

makes sense considering HR isn't your friend and isn't meant to be

tired peak
#

I can't find the article but there is also a guy who was a pool guy, whose switched careers to pentesting. I know him from a different discord

molten sky
#

HR exists to protect the company from you

clever shard
solar echo
tired peak
solar echo
#

With the kind of tech culture of "show us you can do it, not that a piece of paper says you can do it"

solar echo
tired peak
#

also I think our very own NinjaJames first job was as a pentester, maybe Muiri too

#

both of them live in the UK

solar echo
#

Those are things that you learn during your experience on the job for the most part.

#

Learn Microsoft 365 and try to refine your vocabulary and mimick the professional language of your peers, that's pretty much all of "soft skills" necessary for jobs.

blazing granite
tired peak
#

if it wasn't probably 2am in UK, I'd probably tag them to validate

clever shard
solar echo
tired peak
clever shard
clever shard
#

and still as you said it would be a good practice for methodology

#

ty

#

+rep @tired peak

twin ridgeBOT
#

Gave +1 Rep to @tired peak (current: #15 - 498)

solar echo
# blazing granite Once HR told me your resume is very impressive, but we went with another candida...

I have a worse story which is absolutely insane. I got INVITED to be a Network Analyst by the Director of the Board of Networking in a company, he basically told HR to give me the job. I got into the interview and there was another guy with me (?) and the HR asked "so, tell me more about yourself" without specifying who, then the guy started talking nonstop and HR gave me literally 10% of his time to talk about me, I was only able to say that I was invited by the director to be on the spot. THEY. STILL. DENIED. ME.

solar echo
clever shard
solar echo
candid niche
clever shard
#
  • correct me if I'm wrong but GPT isn't trained on pentesting reports?
solar echo
#

You just answered yourself twice.

weary sleet
#

Can anyone send me a picture of there pc setup in my DMs

#

I wanna get a pc and see what ur setups look like, and if I copy it I’ll give you nitro

#

And send you a photo of mine

boreal scarab
warm pelican
#

Hello guys, I have a quick question about the ejptv2. I am willing to join this course and take the certificate. Well I saw that the certificate has 3 year date expiration. I am now 17 If I take it now would the expiration effect me when I apply for cyber jobs?

blazing granite
molten sky
#

actually

#

pls do

#

job security for me

molten sky
#

if you wait 7 years to start working, it'll be expired (provided you don't do or they don't accept CPEs)

pallid lotus
pallid lotus
#

Although yes, it's perfectly possible to fail something like an Offsec exam based on your report

blazing granite
molten sky
#

chatgpt can barely figure out how to write a functional hello world

warm pelican
molten sky
#

only time it matters for me is 8570.01

pallid lotus
tired peak
#

ChatGPT or similar GenAi models are good to use IF you know what you are doing and know how to recognize good and bad of what you are trying to generate

clever shard
warm pelican
#

Thanks alot

tired peak
#

if you have no idea what a good pentest report looks like, then its a bad idea to use ChatGPT to generate a pentest report and rely on that

clever shard
pallid lotus
#

But yes, you're right to say that the product of a pentest is the report, not the work.
They tend to follow very strict style guides for that reason. You need to be good at technical writing.
Have a look at the RFC style guide, as a good example.

#

Generally speaking a pentest report is formed largely of issues taken from a KB (ideally), following a standardised format. The custom parts need to fit in with the overall style of the report, as well as the style of the team.

#

i.e., if you're on a team of 10, it shouldn't be possible to tell which person wrote the report based purely on the content.

clever shard
#

Noted

pallid lotus
#

Oh good, you're taking notes now? kekw

clever shard
#

Let put it this way I only take stuff that I well need and wont find out

blazing granite
clever shard
#

+thanks for remembering me ❀️

pallid lotus
clever shard
#

Muiri was a mod?

pallid lotus
#

Muiri was the community manager kekw

molten sky
#

muiri ! your color !

pallid lotus
molten sky
#

holy hell i forgot how many roles you had

#

discord hides them all now

boreal scarab
boreal scarab
molten sky
boreal scarab
molten sky
boreal scarab
molten sky
blazing granite
boreal scarab
blazing granite
#

time to go to sleep I'm falling sleep on my keyboard πŸ˜‚ Bye people have a good one!!!

boreal scarab
molten sky
#

oh no

buoyant tree
#

Not another CrowdStrike disaster

umbral bay
boreal scarab
#

πŸ‘€

pearl raven
#

Other than the horseshit from today??

boreal scarab
boreal scarab
#

Got some coffee gear for my new baby!

umbral bay
#

Coffee bot modding? πŸ˜†

chilly veldt
#

that's why I am awake right now and have to be at work in 3 hours

boreal scarab
#

I THINK I can program it to brew me a cup in the morning... dunno lol

royal dragon
#

@boreal scarab β˜• β˜• β˜• β˜• β˜•

chilly veldt
#

love IoT hacking

graceful thistle
#

Bella, sleep?

chilly veldt
#

no

chilly veldt
#

I have morning shift

graceful thistle
#

Gl

chilly veldt
#

thankz, it's 4 am, and work start at 7

#

and I dyed my hair pink

chilly veldt
#

and on a 72 hour fast πŸ˜„

graceful thistle
#

Cool

chilly veldt
#

yeah 😎

boreal scarab
cosmic pendant
#

,..

chilly veldt
#

again, depends on make and model

boreal scarab
crude stump
#

You will be just fine

#

Trust

molten sky
#

send me your ip address and i'll check for ya

boreal scarab
#

||127.0.0.1|| Remember, it's secret! Don't give thise out to anyone else!

molten sky
#

aight hold on

#

k im in

molten sky
#

oh hey we have the same username

boreal scarab
#

Woah!

#

No way!

rapid merlin
#

what is a wildcard certificate?

neon river
#

you guys should check out the crowdstrike job postings

#

"Sr. Software Engineer - Windows Kernel, Core Platform (Remote, CAN)"

sleek sleet
#

guys anyone know why he didnt work ?

#

no its some thing about

024-07-19 23:38:43 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2024-07-19 23:38:43 OpenSSL: error:0A080009:SSL routines::PEM lib:
2024-07-19 23:38:43 Cannot load inline certificate file
2024-07-19 23:38:43 Exiting due to fatal error
stuck otter
#

well i am not having fun with git and obsidan lately

#

I changed the name of the repo which caused it to be unable to push to it

#

I tried to fix it and failed each time to which i finally decided to just delete the entire repo and make a new one

molten sky
#

when you change the repo name on github, the old name redirects to it (as long as you don't reuse the old name for something else)

#

try it in your browser and it should still work.

molten sky
stuck otter
#

But then... on trying to clone a new repo it is saying i cannot do it due not being able to connect to port 443....

molten sky
#

that um

#

well first of all, https and not ssh?

#

second, if it can't even hit that port, that sounds like an unrelated issue of some kind

stuck otter
#

It is with https

#

it was working just fine untill i changed the name of the repo

molten sky
#

genuinely don't remember the last time i've used https with git --- trying to remember

#

but yeah i'm using an old remote right now for instance --- push pull clone works fine

#

orgname/originalname redirects to orgname/newname on any request

stuck otter
#

in any case im kinda just troubleshooting while fixing up my notes from a ctf

molten sky
#

well hey if it works now then πŸ€·β€β™‚οΈ

#

not much to worry about

stuck otter
#

Well i was gonna just copy it all to google drive and transfer it to my windows computer then use github desktop there.

Maybe it will be different

molten sky
#

aside --- can't even remember how git over https authenticates....does it ask for your account password or something? what about 2fa?

stuck otter
#

Well it did ask for my password which didnt work. Then i figued out i needed to use the access token

molten sky
#

ahhh PATs...

#

at that point why even use PATs just use ssh

#

more steps for a less convenient method, no?

stuck otter
#

I guess ill have to setup ssh

molten sky
#

I also have my ssh config set up so that i can just do git clone gh:org/repo rather than git clone git@github.com/org/repo or whatever long nonsense you need

#

so much shorter and easier

buoyant tree
#

Heard good conspiracy theories about the crowdstrike BSOD's today, It's because of microsoft taking over the world and needed a excuse for something

candid light
#

I also think this is just a great example of how widespread the concept of a single point of failure is. If companies built their systems with resiliency in mind, redundant measures would've been in place and this wouldn't have happened on the scale that it did

candid niche
clear jackal
#

tbh, I'm going to hold judgment on this whole thing until the whitepaper comes out. Obviously colossal screw up, but where was the breakdown, what was the fix, what are the lessons learned, and what's in place to stop it from happening again.

#

I don't know that you can manage that change though

#

On the downstream, I should clarify. CrowdStrike needs to look at their change management procedures.

candid light
clear jackal
candid light
#

idk if you saw the john hammond video yet but two of the fixes were to rename the driver file to a .bandaid extension and the other one is to delete all driver files with a certain name

clear jackal
#

Yeah, it was a single .sys file

#

Bitlocker is what turned this in to a nightmare for most, but you can't throw that out.

candid light
#

yeah, cuz you can't enter safe mode with bitlocker on, is that right ?

clear jackal
candid niche
#

I see people calling for more redundancies, but how far is enough? Should each supermarket run a different OS, software, and internet connection on each device in the store?

clear jackal
#

You're correct in saying that you can't run in Safe Mode with Bitlocker, but the remedy is to enter your recovery key, which allows you to enter Safe Mode.

#

So it's not entirely unavailable

candid light
#

Oh yeah, I remember that was mentioned in the video now

clear jackal
#

My experience was a little different today, ended up requiring about two hours of troubleshooting, before we got my machine back to operational.

candid light
#

Not sure how practical that is in reality though

clear jackal
#

Most places don't even have the budget for their primary computing infrastructure needs

candid light
#

That brings up a good point about the nature of a cybersecurity department. It's a cost center. Unlike the sales team or the marketing team, a cybersec department doesn't bring in profits but still costs the company money to operate it

#

overall though, sad what happened today. Especially when thinking about ppl who missed their flights and hotel reservations

chilly veldt
#

gotta love being on call with nothing happening

#

free money HYPERS

candid niche
chilly veldt
candid niche
#

even better πŸ˜„

chilly veldt
#

cause that means 30% extra pay AU_pepevibe

harsh sedge
#

hi

split compass
#

You got crowd struck did you?

karmic sun
#

Hey is there any resource on finding challenge rooms in TryHackMe other than using the search option?
looking for some guidance - at start i just wrote "malware analysis" and tried searching for challenge rooms that way, But it feels not good enough.

rapid merlin
#

Goodmorning

brazen cedar
#

This is literally a day off for IT workers who’s cloud computers got bricked from crowdstrike

brazen cedar
simple valve
karmic geyser
#

Free bsod service.

#

Null bytes.

cedar swan
#

hey babies

stuck otter
#

So obsidian with git plugin is proving to be a bit of a pain

#

When pushing to github any images with spaces in the names are broken because it doesnt add the %20 to them

#

So im having to go through and fix each one.

sick lance
chilly veldt
grave crane
#

Apparently if nano has the SUID bit set and you go to edit a file in a directory you wouldn't otherwise have permission to write to it still says something like '/ is not writable' even if it actually is writable

#

I opened the file in nano, saw it, then moved on to other attempts lmao. It was within reach for the past two hours RIP

pine matrix
#

damn

hazy pivot
#

Unix supremacy

thorn jungle
#

can anyone help me with ngrok

#

it s not downloading

gray sonnet
#

ngrok is only for the advanced channels

#

No help here for that

thorn jungle
#

dont say that😭

gray sonnet
#

why...those are the rules kekw

thorn jungle
#

isnt ngrok a beginner thing

rapid merlin
#

yall how do i start learning how to "ethically hack" because youtube is just not doing it for me

gray sonnet
rapid merlin
#

i didnt like it tbh

gray sonnet
#

Have you tried these?

pallid lotus
gray sonnet
#

according to @sick lance

rapid merlin
#

my friend asked me to check if his website is vulnerable to sql injections and dont ask me why hes asking me lol

gray sonnet
#

or Jabba

#

it's one of them, they said the exact same thing to the same person yesterday

sick lance
#

Would have been Jabba.

gray sonnet
#

yeah, it was jabba, sorry for waking you up scrubz

sick lance
#

I was awake, lol.

pallid lotus
#

A curious choice. It's a useful development tool

quick basin
#

hello !
i'm looking for a vocal channel to chill but found nothing
someone saw one of them ?

sick lance
sick lance
gray sonnet
pallid lotus
gray sonnet
#

but yes, I agree

quick basin
sharp citrusBOT
pallid lotus
patent hinge
#

Now you two should kiss

quick basin
#

my account is verified but not linked to discord 😒

sick lance
sick lance
gray sonnet
#

we should just ask the person why they want help πŸ€·β€β™‚οΈ kekw

patent hinge
#

Make them write an essay on why

gray sonnet
pallid lotus
gray sonnet
pallid lotus
#

I'd point out y'all also have (officially developed) content on phishing. Can't put a blanket ban on the topic πŸ€·β€β™‚οΈ

sick lance
#

I wasn't around for the conversation yesterday, so not sure why they want it

Not been in my laptop for a week 😭

gray sonnet
#

they didn't say, jabba just said the things I said and they just didn't say anything after that...

rapid merlin
#

i did a nikto scan on my friends website and something came back saying /site/'%20UNION%20ALL%20SELECT%20FileToClob('/etc/passwd','server')::html,0%20FROM%20sysusers%20WHERE%20username%20=%20USER%20--/.html: Web DataBlade 4.12/Informix is vulnerable to SQL injection. what does this mean?

sick lance
rapid merlin
torpid furnace
#

@sick lance can h help me plz

patent hinge
#

Gotdamn

torpid furnace
#

When I try link my thm token to my discord it says it’s been used

sick lance
sick lance
patent hinge
#

Its not a hosting platform

torpid furnace
sick lance
patent hinge
#

Happens to the best of us

rapid merlin
torpid furnace
sick lance
neon river
gray sonnet
#

If you had the technical know-how of that you wouldn't come to a "hacking" discord and ask for help, WITHOUT elaborating on what you're trying to do

#

you as in not YOU, but that person

patent hinge
#

is ngrok rlly that popular for phishing? Never seen it used

sullen hearth
gray sonnet
#

like blackeye, set...etc.

pallid lotus
chilly veldt
#

πŸ‘€

shut hawk
rapid merlin
#

I just can’t grasp how all of that could happen after massive QA trials on the update

gray sonnet
#

maybe everyone was using a mac kekw /s

shadow loom
#

Maybe they saw the tests passing consistently in linux and macos environments but on windows "an unrelated system error caused a bluescreen during testing" and then decided to just write it off as a passing test in the release process

gray sonnet
#

lmfao

shadow loom
#

it happens

#

if you're confident that the update works because you see it pass in other environments, and your "experts" tell you that it's "most likely an unrelated issue" and that "this update can't possibly cause these issues" then... chances are it can be written off as a test that was performed manually or whatever

#

I hope it's not the case because that would be outright stupid on an astronomical scale

#

xD

pine matrix
#

@thorn jungle don't DM without consent, thank you πŸ™‚

twin ridgeBOT
#

Gave +1 Rep to @thorn jungle (current: #2142 - 1)

gray sonnet
#

lmfao

twin ridgeBOT
#

Took away 1 Rep from medal88 (current: #5030 - 0)

shadow loom
#

rip rep

mossy river
#

Problem solved

shadow loom
#

hey, can you give me 50 rep? Technically speaking of course

mossy river
#

I don’t think so, pretty sure it’s just one at a time

shadow loom
#

aww

clever shard
#

+rep @shadow loom

twin ridgeBOT
#

Gave +1 Rep to @shadow loom (current: #216 - 26)

shadow loom
torpid furnace
#

+rep @shadow loom

twin ridgeBOT
#

Gave +1 Rep to @shadow loom (current: #213 - 27)

mossy river
#

Floor boards must be vibrating right about now. Bass goes hard

torpid furnace
#

+rep @shadow loom

#

+rep @mossy river

#

Tf

mossy river
#

If you abuse the rep system you will be blacklisted

shadow loom
#

oof

mossy river
#

It’s 1 rep every 15 minutes πŸ™‚

#

To stop people from abusing it

gray sonnet
mossy river
#

So my speaker is dead and it takes a USB-c

#

Problem is that it’s provided cable is USB-c to USB-a and I have no adapters 😭

#

I only have usb-c adapters

gray sonnet
#

ouch

#

do you have c-c cables?

mossy river
#

Nope

gray sonnet
#

oh...shit

#

yeah, that's bad

mossy river
#

I have every single type of usb-c cable except usbc-usbc

gray sonnet
#

borrow it from someone?

leaden pagoda
#

Singularity XDR > Falcon confirmed?

gray sonnet
#

no

leaden pagoda
mossy river
#

Which is why I’m blasting music πŸ˜‚

gray sonnet
#

ohh, I thought you were at uni...

mossy river
#

I’ll need to order one but I’m not here over the weekend

mossy river
#

I live in shared housing

gray sonnet
#

Ah, I see

mossy river
#

They all went home for summer

gray sonnet
#

makes sense

shadow loom
#

why not you? πŸ‘€

gray sonnet
#

beatmetoit

mossy river
#

I’d rather stay out here :)

shadow loom
#

that bad huh

#

well good thing you can then

slender scaffold
#

Sometimes not going home is yay

mossy river
#

I’m paying for the house, might as well live here

slender scaffold
#

But… I like visiting my folks

gray sonnet
#

unfortunately, my uni is VERY close, so I'm staying home

#

and also health stuff

mossy river
#

I’m going to a party in my hometown tonight so I am visiting needed a sofa to crash on

gray sonnet
#

I know where that is from...

#

and it is not good

slender scaffold
#

I spent the night out with drunk friends

gray sonnet
slender scaffold
#

I remember why I don’t like those crowded bars

#

I did not drink :3

gray sonnet
#

I got drunk ONCE in my entire life and that's it kekw never touched alcohol after that

shadow loom
mossy river
#

I bit the bullet

shadow loom
#

massive banger

mossy river
gray sonnet
mossy river
#

Nah Apple says it doesn’t need to be

shadow loom
#

N- no blaze

slender scaffold
gray sonnet
#

it's never

gray sonnet
#

isn't birb like? a million years old?

shadow loom
#

bro

#

this stuff is what Deadpool could be blasting on a killing spree

#

and you know it

shut hawk
#

@mossy river πŸ™‚

slender scaffold
#

Birb is old?

gray sonnet
gray sonnet
#

right @shadow loom ?

mossy river
shadow loom
shut hawk
slender scaffold
#

Fourth wall breaker

shut hawk
#

This concept looks interesting, but I just went on the website and the base keyboard is $500 πŸ’€

mossy river
mossy river
#

Bad keyboard

slender scaffold
#

So did everyone fix the crowdstrike? Is the circus over?

#

We all back to normal?

gray sonnet
gray sonnet
shut hawk
#

It's a tactile feeling

gray sonnet
#

their stock is till down 11% but yeah, that's about it haha

gray sonnet
#

it's not a bad keyboard, but it's very very expensive haha

shut hawk
#

oh? How, the pre orders were for November?

#

Did they release an earlier batch?

gray sonnet
#

not THIS keyboard, tactile feeling keyboards kekw

shut hawk
#

oh

gray sonnet
#

my bad, I should've mentioned that before

#

very misleading on my end

shut hawk
#

npnp

gray sonnet
#

fully decked out, this thing costs 580

#

expensive asf lol

#

and with shipping 610...nope, not for me

pulsar spoke
#

Is there anyone here who's done mobile app development using Flutter + Firebase?

shut hawk
boreal scarab
#

I think I just lost braincells.... "When you buy a vacuum cleaner, you get a vacuum cleaner"

stable loom
#

Hey guys I need to set up a new work station, can any one recommend set up machine and gadget that are cost friendly and Linux compactible for hacking and coding ....

naive violet
#

Would recommend getting second hand if you're after cost friendly stuff

#

Lots of decently big vendors on ebay etc that refurb ex business stuff

sick lance
#

I'd only buy new if it was costing somebodh else kekw

naive violet
#

Linux friendliness, most things are A-OK now. Laptops can be a bit quirky

sick lance
#

Somebody *

stable loom
#

Thanks guys still thinking about it

thorn jungle
mossy river
#

I flexed my massive brain and solved my speaker problem 😎

shadow loom
#

Summer vibes song time

mossy river
#

I’m not listening to beach boys πŸ˜‚

mossy river
#

I remembered I have a linux thinkpad.

Charger -> think pad -> speaker

karmic geyser
boreal scarab
karmic geyser
boreal scarab
#

Well, what's funny about the CS outage... you know what companies use it. And what companies don't thonk

naive violet
boreal scarab
#

Watching the news talking about BSoD's everywhere.... I'm so proud πŸ₯Ή

loud marlin
#

not so bad =/

shut hawk
#

oo cool

#

How you get the rainbow borders?

boreal scarab
#

And now they're talking about having the federal government watch over "critical infrastructure" .... and that was a question about "How to avoid this in the future"......

loud marlin
#

its Hyprland that is pre configured

#

i can DM the video of how to. and just you need change script to fit latest kali

#

cos there is some errors that bonk installation

#

if left default

shut hawk
#

sure

loud marlin
#

one min

mossy river
#

Aaaa so tired

loud marlin
# shut hawk How you get the rainbow borders?

this is script that is for rainbow

#!/bin/bash

function random_hex() {
    random_hex=("0xff$(openssl rand -hex 3)")
    echo $random_hex
}

hyprctl keyword general:col.active_border $(random_hex)  $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex)  270deg

hyprctl keyword general:col.inactive_border $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex) $(random_hex)  270deg
boreal scarab
#

I'll brew up a mean cappuccino

mossy river
#

I’m off caffeine

boreal scarab
gray sonnet
loud marlin
#

it looks alike

gray sonnet
#

very alike haha, then I saw the - and x

loud marlin
#

i spend night of fixing bugs that didnt fit to install on kali. and finaly works

gray sonnet
#

wow, thankfully it looks like it worked haha

loud marlin
#

now ill reinstall again to make it all fit as i wish

#

i newer work in gui like that so all is weird

trim field
#

hey guys why cant i cd into a directory on linux?

sick lance
naive violet
#

The directory needs execute permissions for you to CD into it

naive violet
trim field
#

its not room specific

lone hornet
#

yo

loud marlin
#

try ls -alh

trim field
trim field
loud marlin
#

yea. ninja was step in front of me πŸ™‚

trim field
#

was just surprised because ive only encountered permission denied so far, not just "cant cd"

#

thanks guys

naive violet
loud marlin
#

try run bash might be there on system so bas can spawn

trim field
#

oh okay

#

makes sense

loud marlin
#

but you can to ubuntu

trim field
#

wym?

loud marlin
#

i think you can cd into ubuntu folder

trim field
#

Yes yes, that works, I am just trying to understand why things work the way they work

loud marlin
#

well root:root says that only root can into backup. and permissions are quite tight

#

and others prem are just set to r-- for rest and groud

#

you might try ls -alh backup

wooden totem
mossy river
#

Yes

rapid merlin
#

I got ntro yay

mossy river
#

But my friend said I get pizza at 30 days so it’s worth it

rapid merlin
blazing granite
loud marlin
#

try it

mossy river
#

I’m sleeping much better now that I am off caffeine

loud marlin
#

every 4-6 months i do the same. for 30-45 days

patent hinge
#

funny how addictions work.. change coffee to something else in that sentence and then it's not okay anymore πŸ€”

wooden totem
loud marlin
#

funny thing is that only organ in our body that we can control is brain, and we even fail in that

mossy river
loud marlin
#

to much of anything is addiction

patent hinge
mossy river
wooden totem
#

interesting

blazing granite
torpid furnace
#

Yo

loud marlin
#

when you quit all together is much harder, but brain gets much stronger in makind decisions

mossy river
torpid furnace
mossy river
wooden totem
#

Saving money by not drinking anything else than water

loud marlin
mossy river
#

I don’t like rammstein

loud marlin
#

hmm... who dheck then told me that

#

just look that it have 8-16 gb ram and ssd

#

if new one

#

if you wish some old laptop is also ok to start with

mossy river
#

IT is fine

loud marlin
#

idk for mac but ppl do it

mossy river
#

Cybersecurity, it’s a bit difficult

loud marlin
#

windows can do job, kinda. but ppl go with kali linux or some like that

old wave
#

Just a question, anyone else have a hard time with any other distribution other than debian based ones within Virtualbox? I strongly believe that it is not the hypervisor's fault within windows11 since i have disabled it and gone through that rabbit hole, I however do run this system with a i7-1400K, for a long time i was thinking that maybe the E / P cores would be messing with the virtual machines, however prior to installing the guest additions, the VM runs perfectly fine, it is only after i install the VirtualBox Guest additions that i get major visual glitches and hanging terminal windows (On every distribution apart from Debian) which is extremely weird.

loud marlin
#

it must be enabled

old wave
#

Hypervisor?

loud marlin
#

y

#

in BIOS ofc

old wave
#

Yeah i have the VM on Default which does mean it will use hypervisor by itself, i meant i disabled it in the windows features, i read that the WSL functionality could cause issues with Virtualbox aswell

#

So i disabled WSL entirely aswell

loud marlin
#

enable hyperv

old wave
#

In bios or windows features?

loud marlin
#

bios

old wave
#

Alright i'll try that πŸ‘

loud marlin
#

for in windows idk tbh

old wave
#

Yeah its weird, all Debian vm's are running perfectly

#

It might be the Virtualbox Guest Additions, not being able to work with the i7 1400k

#

Or maybe any of the cpu's with the E and P core technology

loud marlin
#

guest dont have nothing with cpu... iirc

old wave
#

Not me sorry

#

Never had a mac myself

mossy river
#

Did you install the parallels tool to the guest os

boreal scarab
#

I don't own the place....

#

Skyrim πŸ˜„

tired peak
#

so your text is blurry for your Linux VM? did you check the resolution?

#

did you check the display settings/resolution?

simple epoch
#

Is there a discount i get get for the monthly subscription

tired peak
#

parallels app

#

any desktop virtualization software will allow you to modify the display/resolution of the VM

simple epoch
#

i just bought premium

#

lets go :3

tired peak
#

what happens if you select scaled? is there no option for something where it shows 800x600 (which sounds like what you may be at)

loud marlin
#

btw is it VMw or VBox?

tired peak
#

its parallels

loud marlin
#

ah

tired peak
#

did you google something like "virtual machine text is blurry in parallels"?

#

usually the reason is actually due to the high resolution of the macs, so you have to configure it somehow. On VMware, I have something that says "use full resolution for retina display". It's been a few years since I've used Parallels

#

something higher than that.

#

try double that

#

or as high as you can go

#

so now thats a different issue... again there should be a setting for that

boreal scarab
#

@umbral bay πŸ‘€

tired peak
#

yes normal, should be a directory named .john or similar. try ls -a to see what directories are there

shut hawk
#

Zojja, what did you think of "The beekeeper"? I thought the plot was absolutely atrocious lol

tired peak
#

oh it was atrocious, thats why I said it is a B movie...

#

but its hard not to watch Statham

shut hawk
#

I can't take the deep voice seriously

#

Disappointed tbh, I'm normally fine with most movies but that one was awful

#

Didn't even make sense

harsh sedge
#

hi

loud marlin
tired peak
#

I mean it almost seems like they made it a crappy movie on purpose

#

I'd love a MST3K of it

shut hawk
#

Loved how the other beekeeper was an absolute maniac who lasted 5 minutes and then they were like "ok byeee" πŸ˜‚

tired peak
#

and then the FBI agent "did you know..."

#

no, no one cares

#

that book she had is a real book

shut hawk
#

i tried to see if the scam domain was actually registered

tired peak
#

what does google say?

shut hawk
#

It's available kekw

tired peak
#

does it now? thats interesting

#

and I'm dubious you googled

tired peak
#

shame that brave gave you reddit. But if you find a page that talks about it, png is usually considered higher quality but for a high quality jpeg and png, difference won't matter. Now you can make lower quality jpegs as well

naive violet
#

Boooo

steel aspen
#

Jpg over png

#

Papa new guinea

outer rivet
vast zephyr
#

hi world. i need apy keys to theHarvester. someone have it? or someone to know where find it. message private please

dull portal
boreal scarab
boreal scarab
dull portal
#

woww

#

ignoring the guy

#

it looks amazing

karmic geyser
brisk tree
#

i swear go pilot likes to troll people

loud marlin
#

the who ?

gray sonnet
#

you mean copilot?

chilly veldt
#

I should go make some electrolytes

boreal scarab
loud marlin
#

hehe

gray sonnet
craggy wing
#

hi

#

anyone is here

#

hey bro

dull portal
#

hey

drifting mural
boreal scarab
gray sonnet
#

what game is it πŸ‘€

drifting mural
boreal scarab
gray sonnet
#

again with the cursed emoji!

boreal scarab
dull portal
#

:smilecat: :smilecat: :smilecat: :smilecat: :smilecat: :smilecat: :smilecat: :smilecat: :smilecat: :smilecat: :smilecat:

#

lol

brisk tree
finite basalt
#

My house smells like roast potatoes and sesame oil, it's beautiful

loud marlin
brisk tree
#

yeah

dull portal
#

Hey, you can check you are connected by pinging the ip: 10.10.10.10 if the pings are going through then you should be connected!

loud marlin
# brisk tree yeah

well... microsoft is known to have some bad troll tbh... at last they are good at it πŸ™‚

vast zephyr
#

perhaps ... curl ifconfig,me then see IP

boreal scarab
#

@sand trench Mind if I DM?

sick lance
brisk tree
loud marlin
#

yep... that sounds like microsoft

naive violet
supple tangle
#

cats are the best

gray sonnet
#

can we get pics!

gray sonnet
#

wilbur blobheart

#

Dale blobheart

drifting mural
#

I just made the best fries ever

boreal scarab
#

Still in a call with @gray sonnet :
Talks about a story
Says: No, OK, Yah And I didn't say ANYTHING....

supple tangle
#

awwwwwww

#

lucky you

gray sonnet
steel aspen
terse edge
#

The email contained a link to an attacker-controlled domain (attacker.mybank.thm) with a password update form similar to a bank one. The form also has a CSRF token already set as a hidden parameter.

What I don't get is this, how can the attacker create a sub domain for a domain he doesn't control?

buoyant tree
terse edge
#

How can attacker create attacker.mybank.thm and mybank.thm belongs to the bank.

#

Can someone explain this please?

buoyant tree
#

@mossy riverDid it arrive?

mossy river
#

Did who

terse edge
#

task 5

buoyant tree
mossy river