#general

1 messages ยท Page 307 of 1

supple tangle
#

i dont get the hate, whats so wrong about talking about distros

crude stump
#

its constant

split compass
#

I haven't been hacking in a while, but I always kept a shell file with the full path command to launch tryhackme's VPN and added an alias for it to my .bashrc.

crude stump
#

plus they each have there pros and cons

supple tangle
#

maybe there could be a dedicated channel then, idk

shut hawk
#

I'd suggest the following, if you want something that just works out the box without having to customise everything - but use what works best for you

  • PopOS
  • Ubuntu
  • Fedora
normal fable
#

Endeavours too

#

Most of the time....

crude stump
#

i like PopOS

#

its pretty solid

normal fable
#

I hear PopOS is pretty solid. Never tried myself

split compass
#

I had a few issues with PopOS when I tried it, but nothing serious enough to scare me away from using it.

#

I just wanted to try what I'm on now (Nobara) because it's Glorious Eggroll's custom Fedora distro.
(The GE in GE-Proton for y'all Linux gamers.)

wanton schooner
#

Hey guys any clue

crude stump
#

no clue sorry

normal fable
forest prawn
#

Thanks everyone

spark plume
#

does anyone use openCTI at their job? curious to hear how used it is.

rapid merlin
#

Kali Linux is superior

wanton schooner
crude stump
normal fable
#

Kali.. in a VM.. is good.

rapid merlin
#

Oh okay. Iโ€™m new to Linux.

normal fable
#

It's too buggy for bare metal daily driver.

rapid merlin
#

Iโ€™m using it VM

split compass
#

Always remember if you only load the base OS in to your /dev/sda1 root partition, and use /dev/sda2 /home or some similar arrangement.
You can distro hop easily without losing data.
Still do backups blah blah blah, RAID is not a backup, etc. etc.
Always keep a hotspare...

rapid merlin
#

Tedious OS

crude stump
rapid merlin
#

McDonaldโ€™s to pull me out of my hangover

supple tangle
#

yum

chilly veldt
#

my magnesium and salt water tasted weird

#

but I need to drink it

normal fable
#

Get a sausage egg and cheese biscuit for me please @rapid merlin

split compass
#

I'll be playing around with Qubes at some point in the next few weeks, but I haven't decided if I'm crazy enough to try running it on my main laptop yet.
It looks simple to me, having run SDN and Hyperscale scenarios, but I don't know how good it will be at GPU passthrough and thel ike.

rapid merlin
rapid merlin
chilly veldt
normal fable
#

Dang.. it's 7am here. Lol

chilly veldt
#

4:30pm here

rapid merlin
#

3:30pm here

#

Didnโ€™t get home until like 5am

loud marlin
split compass
chilly veldt
loud marlin
rapid merlin
#

Woke up with a bruised eye

#

No idea how I bruised my eye but itโ€™s there

chilly veldt
loud marlin
#

if you get some hallucinations, is not uncommon

#

special in periferal side of eyes

chilly veldt
#

isn't scared, just trying to work with low levels of stuff

#

but yeah, I get that

shadow loom
#

yo yo

chilly veldt
#

reminds me, I need to take my vitamins again ๐Ÿ˜„

loud marlin
#

you are right. he do all the things to keep up. so he "pump" some weird things can occur

steel aspen
#

People on FB saying Crowdstrike issue had nothing to do with kernel driver? I thought it was being updated with that software Falcon Sensor or something but bad code caused the glitch

karmic geyser
steel aspen
#

Or not with but for

shadow loom
#

kekw

#

I set up netvim just fine thankyouverymuch

split compass
shadow loom
#

im ok, just got home from a 2.5 hour ride on my motorbike

#

now I'm exhausted

#

xD

steel aspen
#

Yeah I thought it used kernel drivers for the security right?

shadow loom
#

sorry, 2 hour

#

but ey, who's counting

steel aspen
#

Well the security goes right down to kernel

split compass
steel aspen
#

Yeah

#

Which means drivers

split compass
#

Not about security so much as, that's the only way to read all process spaces.

steel aspen
#

Oh yeah

split compass
#

Yep, drivers are just code themselves

chilly veldt
#

good idea to ride today, it's amazing weather

steel aspen
#

And it was their driver being updated and rolled out that caused it?

split compass
#

I sent a whole bunch of people to watch Dave Plummer explain what a blue screen is, and why it is blue yesterday

shadow loom
#

I "met" an MC on the way home

#

I tagged along from a safe non-provocative distance

steel aspen
#

Cos that .sys was an updater one or something

karmic geyser
steel aspen
#

Idk I'm confused about those drivers

karmic geyser
chilly veldt
steel aspen
#

The ones I know are like device manager ones

shadow loom
chilly veldt
#

usually they are nice and just let me pass instantly, other times I talk to them at signs and talk, cause they are cool people

shadow loom
chilly veldt
#

lmao

shadow loom
#

i was like "yeeeaaaa, I'll just stay behind ya'll mkay"

steel aspen
#

But this was more of a software one? Or is it counted as just the normal bridge?

chilly veldt
#

yeee, I just hang around with them, they usually vibe with me cause of my helmet lmao

spark plume
shut hawk
normal fable
steel aspen
#

Yeah I didn't think it was correct at first but it got me curious

shadow loom
chilly veldt
#

the guys here in denmark aren't that bad tbh

normal fable
#

There are lots of clubs in my area..

blissful crater
#

Anyone does malware analysis or reverse engineering??

normal fable
#

And yeah.. they're all nice if you're respectful.

tired peak
#

what are y'all talking about

#

cops?

chilly veldt
tired peak
#

oh

blissful crater
tired peak
#

yeah we have those ๐Ÿคฃ

chilly veldt
#

the "rulers of the road"

tired peak
normal fable
#

For two wheels*

chilly veldt
#

eh, some think it's the whole road and not just of bikers

shadow loom
swift kite
#

Gdmorning

normal fable
#

That's true..

chilly veldt
# blissful crater On what?

what might be your question, some stuff are only in advanced channels that we talk about it, that's why I said depends, cause topics like that aren't for beginners

spark plume
shadow loom
#

I live like 5 mins from a Bandidos MC club house, and in the 20+ years I believe they've been there, there hasn't been a single incident worth mentioning in any local news or anywhere else

chilly veldt
# shadow loom nah not really

well, if we are talking about actual gangs, then yeah, but many places have some low level motorcycle clubs that just hang out

shadow loom
#

other groups of people however..

loud marlin
#

going better...

shadow loom
chilly veldt
#

oh, I know, you remember the news article about a place getting blown up in copenhagen due to conflict?

#

last year

shadow loom
#

vaguely

chilly veldt
shadow loom
#

nice xD

chilly veldt
#

we were on our way back from the yearly offsite from work, and going to the office, when we got the news we weren't allowed to be there due to the cops securing everything

naive violet
spark plume
steel aspen
#

Are kernel drivers the same drivers you'd find to update in device manager? And like graphic driver for example or am I very dumb.

naive violet
#

The thing that makes it a kernel driver is where it runs

#

ie in the kernel

steel aspen
#

Oh yeah

split compass
#

It's part of his chat here.

chilly veldt
#

hmmmm, what to have for my first meal in 72 hours hmmGe

#

could go for some noodles with bone broth and chicken

split compass
loud marlin
#

eat some soup first

chilly veldt
#

yeah, that's why I go with noodles made in bone broth

#

and chicken for protein

loud marlin
#

smart yea

normal fable
#

Eat veggies. Pref raw.

crude stump
split compass
split compass
#

Yeah

normal fable
#

You in Kentucky?

split compass
#

First place I ever used my adult money to take my parents to. ๐Ÿ˜…

NC/SC border

crude stump
#

Golden Corrals bathrooms are always nasty

normal fable
#

I haven't seen one outside of KY. LOL

split compass
#

They were in Cornelius at the time. I still live in the Maple Hat.

normal fable
#

Ah. Love Wilmington.

chilly veldt
#

but I need to go shop for chicken then

normal fable
#

Broth noodles and veggies.

split compass
#

I must do the driving thing now. Later all.

normal fable
#

Later

tired peak
#

Golden Corral his horrible... I had a friend when I was living in Colorado who was like "hey lets go to Golden Corral for their steak dinner", I was like sure... I had never been. It was the worst food ever

crude stump
split compass
tired peak
normal fable
#

The only decent thing is pizza... Or what they call pizza.. lol

crude stump
#

Iโ€™m glad buffets fell off during Covid

tired peak
#

except for Sweet tomatoes/soup plantation

#

RIP

normal fable
#

There was one in KY that I liked. Good seafood.. all you can eat king crab, prawns, fish...

gray sonnet
#

I just opened up my old laptop's heatskink...

#

it's absolutely disgusting...

normal fable
#

I'm surprised we don't have anything like that in WA...

sand trench
#

meep meep VROOOOOOOOOOOOOOOOOM

#

today on ice cream with shadow

normal fable
#

Is a bit chilly here today...

sand trench
#

it is nearly 30ยฐC here today

normal fable
#

About 63f here

sand trench
#

so 17ยฐC

normal fable
#

Supposed to get up to 83f

sand trench
#

and going up to 28ยฐC???

normal fable
#

Yeah.. supposed to..

chilly veldt
#

It's a nice 26c here

loud marlin
#

22 here... finally

white forum
#

Iโ€™m itching to get to my laptop so I can hack the planet

karmic geyser
#

hope they fixed it.

naive violet
tulip heath
#

what's the average salary of a red team operator

#

?

karmic geyser
naive violet
tulip heath
#

india?

sinful radish
#

is it easy to get an internship and land a full time job in US in general?

#

umm

karmic geyser
young apex
sinful radish
#

Im Aus citizen and my partner is US.. we were in provision to moving to US after i finish my bachelor, for better opportunities

karmic geyser
sinful radish
#

I think IT in general US has bigger infrastructure and more jobs

#

And i was thinking maybe landing a job in cybersecurity easier

#

maybe not lol

tired peak
#

more jobs but also more people trying to get said jobs

karmic geyser
#

be tooo good like me

tired peak
#

the layoffs of the past year or so have been devastating to tech, which means there are a bunch of people qualified in various parts of IT willing to take a variety of jobs

karmic geyser
#

prayge correct

tired peak
#

and so what you've seen is a lot of shuffling around of people

#

also, a lot of companies in the US will want US citizens in cyber positions

young apex
#

Any good alternative to copying from Windows to Linux using SCP?

sinful radish
#

I thought clearance and Citizenship is only needed for federals

sinful radish
#

but yeah i read having a clearance is better in terms of getting a job

tired peak
karmic geyser
#

it's not always skills, it's who you know.

young apex
twin ridgeBOT
#

Gave +1 Rep to @sand fjord (current: #2142 - 1)

tired peak
#

no... its not cheaper, its just what may be required by their customers

naive violet
sinful radish
#

i thought about joining US military after school just for the sake of citizenship and clearance.. cos myabe it's more options in employment.. but money is shit lol

crude stump
#

i kinda forgot. is the soc 1 and 2 paths subscription paths

naive violet
#

You need a visa etc to work in the US if you're not a citizen

#

Pain in the butt, and expensive

sick lance
crude stump
tired peak
#

well there is that, but plenty of companies do sponsor. Software development companies for instance often have a ton of H1B visa holders

buoyant tree
sinful radish
#

i think visa shouldnt be an issue for me. again my partner got aus green card cos im aus citizen and i assume it'd be vice versa for US too?

sinful radish
#

Maybe i should avoid while trump is in position anyway XD

tired peak
#

are you married? if not, don't get married, get a fiance visa. A friend of mine found out the hard way

crude stump
tired peak
#

I think her husband's visa (from the EU) took 4 years

#

or apply now if you haven't already

crude stump
#

personlly

#

tho

#

once you join you have to serve for 3 years

sinful radish
#

I don't mind joining military tbh.

tired peak
#

a fiance visa is about 18 months from what I've heard, a spouse's visa is years

sinful radish
#

from an immigrant point of view, it gives you tricare, veteran status and they pay for your school

crude stump
#

thats weird

tired peak
#

lots of people get married instead of looking at the fiance visa

crude stump
#

i would think its the other way around

tired peak
#

I know

#

my friend's husband just got his visa this year, I'm gonna go find when they got married

crude stump
#

only thing i can think of is they are thinking, get your visa quick and have your wedding in the us

sinful radish
#

it sucks military pays too little. almost minimum wage for 3 years yikes

tired peak
#

2021 so yeah 3 years

crude stump
#

wild

sinful radish
#

yeah that is weird

#

you would've thought the other way around

sand trench
#

hmmmm

sinful radish
#

i think priorities should go to married couples lol

sand trench
#

maybe shadow makes more then "minimum" wage in the usa

tired peak
#

do you have a degree Dolce?

#

according to the interwebs... a military recruit makes $20k USD

sinful radish
#

I do but in health field and thinking of career changing

tired peak
#

ahh then you wouldn't be at the lowest pay

#

if you did the military but also if they went by your degree, they'd put you in an applicable area to your degree (I would think)

sinful radish
#

I had a look at joining as an officer and that is only for US citizen

#

yes literally doo doo money haha

white forum
#

and youre locked into that contract for at least 4 years

#

what branch

sinful radish
#

that's cool

crude stump
#

anyone know the reason why i wouldnt have access to firefox in pop os in a vbox vm

white forum
#

nice

sinful radish
#

do you have knees and back problem? or is it only for who did infrantry soldiers

#

infantry

sinful radish
#

yikes

white forum
#

thats insane

sinful radish
#

I shall thank you and your knees for service

crude stump
sinful radish
#

120lbs jesus.. that's a human

naive violet
#

DNS?

naive violet
#

Always DNS

gray sonnet
#

It was DNS...

crude stump
#

prolly is

gray sonnet
#

Hey Zumi :D ๐Ÿ‘‹

sinful radish
#

That's alot for someone who needs to operate a robot

#

Yeah nah i think carrying 120lbs is not healthy

#

was it a long distance each time?

#

haha i don't think anybody would enjoy that

#

wow so you were in korea too that's cool

#

I should really thank you for your service as a korean

#

Do you get deployed voluntarily or you go where they tell you to go sort of thing?

#

man that sounds cool doing missions all over the globe

distant ibex
#

If we wanted to run a command in the background, what operator would we want to use?

I now what but he is

error

the operator &

chilly veldt
#

&

distant ibex
#

i now but error

chilly veldt
sinful radish
#

lol shiiit

distant ibex
#

see the privet

#

@fervent meteor

#

I said what I know, but the rest of this is a question and I will finish

#

i can send image

sinful radish
#

maybe it didn't benefit you careerwise and moneywise but having these experience would have taught you resilience and life skills?

#
  • how to operate a robot and you can carry 120lbs
distant ibex
#

ok thankุณ

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #872 - 4)

arctic cradle
#

still looking for assistance regarding the matter :c

sick lance
#

If you don't understand theory, find a new source?

arctic cradle
#

I understand theory

#

I want to apply theory in a practical level

white forum
#

also just take notes on it bro if you cant use it practically yet

arctic cradle
#

I take notes all the time

#

but all I do is just write notes and read theory

white forum
#

me too man i feel u

arctic cradle
#

I've only done one single CTF room and that's all because I have experience in that field which the room required

karmic geyser
lofty trellis
#

hey, do most people start their cybersecuirty in highschool or after it?

loud marlin
#

well... some do, some not

lofty trellis
gray sonnet
#

I just finished HS kekw

#

so far so good though

normal fable
lofty trellis
#

ah isee

normal fable
#

I think I was 11 or 12 when I started.

gray sonnet
#

black hat spotted ๐Ÿ‘€ /s

lofty trellis
sick lance
#

I started very young too.

gray sonnet
#

I started when I was in 9th grade ๐Ÿคทโ€โ™‚๏ธ

#

started coding in 8th grade

normal fable
lofty trellis
#

ig some people are built different lol

normal fable
#

It was all AOL and VB back then though..

sick lance
#

Oh the things I created in VB...

#

I designed and wrote something that the only way to stop it from working was to completly remove the registry.

normal fable
#

If I could talk about some of the crazy things I did... Lmao

lofty trellis
#

i dont think doing this at a young age is a common thing ๐Ÿ’€

thin marlin
#

whats the answer for the first question on web applcation security

brazen cedar
normal fable
#

Maybe they did.. maybe they didn't. kekw

white forum
#

Yea so I tried doing one of the easy red team boxes and I know literally nothing just a couple thousand more hours of studying and I think I got this

torpid furnace
shadow loom
#

Le me joining #general chat seeing messages like "I think I was 11 or 12 when I started" and "I was 10" and other similar messages:

potent spruce
#

I need two weeks of continuous work to solve this room ๐Ÿซ 

white forum
#

wtf even is that xD

chilly veldt
#

and just text

potent spruce
chilly veldt
#

yeah kek

jolly canyon
#

@modest zinc team. Can I make a suggestion? I am new to cybersecurity studies and I often find after completing a room that I wished I had some material to practice on. Obviously the CTFs are the answer but I have to go search for the right CTF to match what I'm studying. Can you please add links or suggest relevant or corresponding CTFs to rooms this would apply to? I often find myself copy pasting the whole room in chatgpt and asking it to make a CTF based on the criteria, and often find myself thinking. 'I wish THM would throw me a bone here.'

shadow loom
#

28 here blaze

chilly veldt
shadow loom
jolly canyon
#

OK, fair enough. Yes I think I will send this their way. I'm sure they've thought of this and like @chilly veldt mentioned I'm sure they have their reasons. But maybe if enough of us complain something will change ๐Ÿ˜‚. I just often think 'Man I wish I had material to really drill this into My brain'

white forum
#

using chatgpt to create ctfs is pretty big brain im gonna use that

split compass
gray sonnet
#

I once locked myself out of the box, helped me go into recovery and reset the root password and edit the sudoers file

#

Disclaimer: Don't edit the sudoers file without knowing what the hell you're doing

tired peak
#

good advice

#

also do regular snapshots

chilly veldt
#

and write notes on everything regarding your setup

gray sonnet
#

Helped me a lot when I had to redo everything on an older image of ubuntu server

#

ALWAYS make notes

supple tangle
#

i dont like notes, i just revise and practice and go back to original resources if i forget

wooden totem
#

wait hold on, is every text on youtube slightly tilted

supple tangle
#

i don't see it

gray sonnet
#

whatever floats your boat I guess ๐Ÿคทโ€โ™‚๏ธ

sand trench
sand trench
#

hence learn by helping/teaching

chilly veldt
#

the best way to learn is by teaching to others

naive violet
#

Pro tip

#

Even though 20 volts is not a lot, a capacitor charged to 20v can have a LOT of energy and make a decent spark

#

Ask me how I know!

chilly veldt
#

lmao

#

you got sparked?

naive violet
#

Nah I was smart about it and discharged the cap when I was done, on the handle of some tweezers

chilly veldt
#

good good

naive violet
#

And uh... it sparked, left some nasty black marks that wiped off, and a small pit in the handle

chilly veldt
#

was about to say, if it sparked you, you'll probably won't be texting in here ๐Ÿ˜„

naive violet
#

20v would be enough to hurt and leave a nasty burn

chilly veldt
#

yeah, so you'll have your finger in water ๐Ÿ˜„

naive violet
#

Would be... difficult to die from 20v, unless you had wet hands and it went via your heart

chilly veldt
#

oh, didn't think about dying, more like, keeping your finger in water to calm down the burning

naive violet
#

Shoutout electroboom

chilly veldt
#

love that guy

sand trench
#

yuup

#

learned that quick when repairing and maintaining defiblirators

#

if someone tells you battery powered stuff is not dangerous

naive violet
#

Big caps are dangerous

sand trench
#

give them a defib and tell them that it is fine to shock themselves with it

naive violet
#

Small caps are fiiiiiiine

#

High voltages are dangerous

sand trench
#

shadow hates the mentality some people have that battery powered stuff is not dangerous when you are taking it appart

#

defibs and uninteruptable power supplies have taught shadow not to mess with them

karmic geyser
shell rock
#

is It worth to switching linux (specially fedora) from win 11 with nvdia gpu ?

fringe locust
#

I'm doing a room where the author's english is horrendous, is there a place to help correcting rooms ?

sand trench
brazen cedar
#

Use Debian

#

More stable

sand trench
#

eh fedora is stable enough for most people

shell rock
#

I want to be good at linux kernel and env so I thought If I force my self to use it

#

I know the basic stuffs like window mang ect

sand trench
shell rock
#

learn linux

sand trench
shell rock
#

ok

#

thx โค๏ธ

shell rock
sand trench
shell rock
#

thx again

gray sonnet
#

I personally โค๏ธ VMWare

oak raptor
white forum
#

also could dual boot with a usb thats what i do

simple epoch
#

vmware is considered the best, but virtualbox is really great aswell for personal home labs

whole bridge
#

Hi guys, I recently got fired from company I was working with, and they didnโ€™t get their laptop back, Iโ€™m thinking about restarting it and using it as a personal device, what do you think and if anyone have any helpful tips or tricks that would be great.

Note: although they fired me but they still did not remove my access ๐Ÿ˜‚๐Ÿ˜‚

whole bridge
#

it would be, if they asked for it?

naive violet
#

@sick forum Buying vouchers outside THM is somewhat likely to lead to you being scammed or your THM accohnt being banned

naive violet
sick forum
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #2 - 2162)

boreal scarab
whole bridge
naive violet
sick forum
normal fable
mossy river
#

Or you could just ask them

#

Sometimes companies will let you keep the laptop

normal fable
#

That too.. they may not want it back. ๐Ÿคท

#

If that's the case, someone may work with you to reset it and remove any management from the device.

whole bridge
sick forum
whole bridge
twin ridgeBOT
#

Gave +1 Rep to @normal fable (current: #51 - 143)

sick forum
#

regardless of what they have done it is not worth getting yourself in trouble

normal fable
#

No weewoo is good weewoo...

whole bridge
#

not worth the headache i guess, thanks for the advice guys!

gray sonnet
#

Work finally paying for the training ๐Ÿ‘€

#

Nice!

normal fable
#

Hell yeah! That's exciting!

#

Now to work on my boss....

gentle isle
#

hu

#

hi

grim sparrowBOT
#

:hammer: dullgg#0 has been banned.

molten sky
#

my god that ban msg gave me an aneurysm

naive violet
molten sky
#

seemed like it

loud marlin
wooden totem
#

what is going on in this image

#

spontaneous combustion

loud marlin
#

my central nervous system

drifting mural
fringe drift
#

Does anyone no how I keep my account frozen. It's been frozen a month now. But I'm still working away and want to keep it frozen for another month

graceful thistle
#

Wow monday morning first email in the office is 'were out of coffee'. Brutal

normal fable
#

Oof.. worst email ever.

#

Are they rioting yet?

graceful thistle
#

'Sorry, im out of productivity'

loud marlin
#

well... start take hostages... some will buy...

#

Snowflake hacked =/ that sounds bad...

karmic geyser
amber laurel
normal fable
#

Please accept my resignation. Next time don't run out of coffee. K. Thx. ๐Ÿคฃ

candid hemlock
#

im stuck ... ๐Ÿ˜„ cant finish 2 challanges

#

powershell fundm challange

normal fable
amber laurel
graceful thistle
gray sonnet
#

Hi dolphin ๐Ÿ‘‹

karmic geyser
graceful thistle
gray sonnet
#

How're you doing today dolphin?

graceful thistle
#

Not too bad although the weekend could have been a little longer ๐Ÿ˜ฉ hbu?

gray sonnet
#

I agree haha

drifting mural
#

I just study

graceful thistle
#

What did you study

drifting mural
#

preparing for exam

#

have been

graceful thistle
#

Ooh good luck!

normal fable
#

I just got voluntold to help clear out the attic.

graceful thistle
#

Voluntold, hahah. Love that

tidal quartz
#

To whoever recommended endeavor os to me: I love you

sand trench
lethal parrot
#

Hey everyone

split compass
lethal parrot
#

currently in a bit of pickle. See i signed up for a cybersecurity course at school but i dont know how to do this shit at all and im going on vacation tomorow and if i dont get it done before tomorow i cant enter the school. So i joined this server to ask for help

#

is this the right place?
i have to do a tryhack me assignment

#

Anyone there?

rapid merlin
#

Good fternoon

normal fable
#

Attic clear. Lol

supple tangle
split compass
#

Otherwise, if you have specific questions, we can try to be helpful, but we will not do your assignments or homework for you.
Always happy to direct and give hints.
We even have channels dedicated to that #room-hints and #room-help assuming you get stuck while doing a THM room.

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @supple tangle (current: #2142 - 1)

lethal parrot
#

I just dont know what they mean with "Go to http://MACHINE_IP and start enumerating the website to find the publicly exposed credentials."

#

is machine ip like in firefox or in files or something

split compass
#

And will replace the machine_ip portion of what you see there.

rapid merlin
#

I think I will soon get blind if I don't stop staring on screen ๐Ÿ˜†

lethal parrot
#

Shit i accidentally left the attackbox on and only had 1 hour is there anything i can do or do i just have to buy premium

split compass
#

Are you on a computer you own?

lethal parrot
#

on my work laptop

split compass
#

Fair, do you know if it is within work policy to run virtual machines on your work laptop?

#

Because that's going to be your no timelimits option.

lethal parrot
lethal parrot
split compass
#

I just have to check, because every business and position gets their own policies.
You can download a Kali virtual machine image from offsec's website.
And you can use the OpenVPN client from inside that virtual machine to connect to TryHackMe.

lethal parrot
#

sorry do you work for tryhackme?

split compass
#

Most professionals don't actually run the majority of their toolset on baremetal, they do it within a virutal machine, whether that is Kali, Black Arch, Parrot, or just a collection of tools on their favourite operating system.

split compass
split compass
#

Actually, darn, 5 years?

#

I haven't played a room in almost a year.
I need to fix that.

lethal parrot
lethal parrot
#

Did i break the rules

split compass
lethal parrot
#

Dang its just that i cant open the vm thats the real issue tbh

split compass
#

Rank 6174.

Community has been hard at work knocking me down.

lethal parrot
#

I guess i just have to pay for premium then

#

Big thanks anyway!

split compass
#

Nah, just gotta figure out why you're having issues with your VM.

lethal parrot
#

Its the attackbox in tryhackme

supple tangle
#

just make a vm on your laptop and work inside it

split compass
#

Yeah, but you don't have to use the attackbox, it's an option
That's why I asked if you're allowed to install a VM on the system you're using.

lethal parrot
#

oh i thought u meant attackbox = VM

lethal parrot
split compass
#

The problem with the attackbox, is it uses cloud infrastructure, and cloud infrastructure costs money.

supple tangle
split compass
supple tangle
#

ah cool

clear jackal
lethal parrot
clear jackal
#

You're probably breaking your AUP, Acceptable Use Policy, which is more than likely a fireable offense

split compass
#

Don't suppose you have your personal laptop on CrowdStrike eh? giggles

shadow loom
clear jackal
#

Which is why I said probably

lethal parrot
clear jackal
#

But it shouldn't really matter, work and personal shouldn't mix

lethal parrot
shadow loom
#

1000% depends on the company

supple tangle
#

hmmm yeah looks like you'll have to go premium then

clear jackal
#

I'm not sure why you're trying to argue this, none of the language I used is absolute

split compass
#

You may be stuck waiting until your personal comes back.
I hope it blue screened more than once before you decided to contact support ๐Ÿ˜„

shadow loom
#

"More than likely"

clear jackal
#

Is not absolute.

shadow loom
#

Wow ok

#

You wanna go there... ๐Ÿ˜‚

#

Some people really don't wanna lose Internet arguments

#

Whatever

clear jackal
#

If I said "it is a fireable offense," then your statement would be correct.

split compass
#

Misuses of digital equipment is often harsh at many companies.
But even at companies who are likely to just say "Hey don't do that." will definitely go "What is Kali doing on here?" if they weren't expecting it.

clear jackal
#

You're the one trying to argue it.

lethal parrot
#

this argument is really dumb

shadow loom
#

Jesus

lethal parrot
#

why? do hp have that problem a lot

royal dragon
#

Zaid, either setup a VM or use an EC2 instance on AWS free tier or something, work on getting connected again and move forward.

lethal parrot
lethal parrot
#

going on vacation tomorow have to get this done in the next hour

split compass
#

Oh Lenovo, in my experience their support coverage is decent.

Wit HP specifically I was curious because my work laptop is HP, and when I plug in any non-HP USB-C charger I get a popup saying "We recommend you use an HP charger."

Which means they have some kind of communications code likely in their USB-C hub drivers that detects the fact that it's getting 120W from something other than an HP charge block.

#

So I could see a USB-C based charge circuit causing blue screens if something corrupted that driver.

#

Well, if its any consolation. I firmly believe THM is worth the Premium sub ๐Ÿ™‚
But I did like 7 months without premium until I wanted to finish a bunch of paths that had premium content.

lethal parrot
#

Can someone please just open the attackbox for me i just need username and password and dont wanna pay premium or is that breaking rules again

split compass
#

And now I keep paying even though I'm not using it very much ๐Ÿ˜„

split compass
lethal parrot
#

What if i sent the course link

split compass
#

As I said before, rules.
We won't do things for you. We will help give you hints.

molten sky
lethal parrot
split compass
lethal parrot
#

oh yeah i didnt mean it like that

crude stump
molten sky
molten sky
rapid merlin
#

@lethal parrot

#

Attack box is free

loud marlin
split compass
#

Yeah, I had to put the double T against the context of our conversation ๐Ÿ˜„

rapid merlin
#

Do a free course on retaken

#

Tryhackme

lethal parrot
crude stump
#

Openvpn

lethal parrot
supple tangle
lethal parrot
rapid merlin
#

What are u trying to do zaid

#

Are u supposed to turn in your work?

crude stump
lethal parrot
split compass
# crude stump Openvpn

Yeah that's where we started this.
He's on work laptop, and even if it is within use policy, they'll need admin/IT to install the hyper-visor from the sound of it.

crude stump
lethal parrot
#

i just have to do 1 room on tryhackme

lethal parrot
crude stump
#

Oh

split compass
rapid merlin
#

U can always add more hours

lethal parrot
#

going on vacation tomorow

crude stump
lethal parrot
crude stump
#

No

#

Itโ€™s free Iโ€™m pretty sure

#

To add hours

split compass
#

I wasn't sure if there was a daily time limit, or just the timeout when you're on free.

lethal parrot
#

it says this: Non-subscribed user can only deploy the free AttackBox for 1 hour a day. Subscribe for unlimited access.

split compass
#

Yeah that's what I thought.

#

I was pretty sure that's one of the big drivers to roll your own VM.

crude stump
#

Wait you can only add hours if you use a rooms given attack box

split compass
#

And specifically because of the cost of AWS

lethal parrot
#

its premium time

split compass
#

Anyway, just made a new Distro image.
Back in a bit ๐Ÿ˜„

shadow loom
#

Just pay and move on

wooden totem
lethal parrot
shadow loom
lethal parrot
#

Now i have acces to the hackbox but i still have no idea what im doing

shadow loom
#

Well that's one problem solved then. Progress ๐Ÿ˜„

lethal parrot
shut hawk
#

wait are you using the THM attack box to access HTB labs? lol nvm I severely miss-read the situation, ma bad

normal fable
#

Doing a learning room?

lethal parrot
supple tangle
#

you can get some help in #room-help if you get stuck

twin ridgeBOT
#

Gave +1 Rep to @supple tangle (current: #1422 - 2)

wooden totem
#

๐Ÿ™

split compass
#

When your Lenovo comes back let us know and we can help you get a VM of your own going.

white forum
#

And if you really want to save time, learn nothing and get it out of the way just google it and you will find the exact answers lol

normal fable
#

Don't tell people to Google the answers. That's not learning..

white forum
#

๐Ÿ˜‚

lethal parrot
shut hawk
lethal parrot
#

some kali linux and windows 10

white forum
#

He said he just needs to do it to get into his class

shut hawk
#

๐Ÿ˜ญ

lethal parrot
#

that was the first course of action

split compass
white forum
#

Lmao

#

Definitely

normal fable
#

Read the material and do the steps. The answers will come.

lethal parrot
#

Thanks everyone big help!

supple tangle
#

good luck

normal fable
#

As long as it's not a private room you can always ask for help in #room-help too.

supple tangle
#

i just bought the sub today too

lethal parrot
normal fable
#

People will nudge you in the right direction. ๐Ÿ˜

#

Ah. Probably.

lethal parrot
#

So the mission is to see the username and password and theyve give me all these tools for password cracking like hashcat and medusa. do i have to like put commands in there to get it

#

sorry for asking so many questions but i feel like this stuff is in another language

shadow loom
#

They are tools yes, so it depends on the situation

#

The right tool for the job and such

lethal parrot
#

so if i want to find the password i have to use a password cracking tool correct?

#

dude this is question 3 out of 6 they start talking about root flags in 5 im so finished

crude stump
#

We canโ€™t help with school work sorry

shadow loom
#

Bit unfortunate to get started on all of this just now then

lethal parrot
crude stump
#

๐Ÿคทโ€โ™‚๏ธ

lethal parrot
#

well then

#

thanks

crude stump
#

What class is this anyways

lethal parrot
lunar flint
#

Hey everyone

crude stump
lethal parrot
#

its to get into college

#

but i want to learn cybersecurity there i dont know stuff yet

crude stump
#

You gotta take a cybersecurity test to get it o collage?

crude stump
lethal parrot
crude stump
#

Is this truhackme?

lethal parrot
crude stump
#

Ooooh

#

We can help with that

lunar flint
#

I enrolled in the Jr Penetration tester path on THM and Iโ€™m currently in the File Inclusion room then I think there may be a small syntax error in the room

lethal parrot
lunar flint
#

If thereโ€™s any admin in this server that could go and tell me if Iโ€™m right

shadow loom
# lethal parrot so if i want to find the password i have to use a password cracking tool correct...

Your generic question "do I need a tool that cracks passwords to get the password" can be answered: the answer is perhaps. To crack a password you need a password hash or a password protected thing like a pw protected zip file. If you have a hash you can use hashcat. To bruteforce a password you can use a tool like medusa.

But like... You're in for a long and painful night if you wanna do this room/challenge before your vacation, it seems. You've still for a bit to learn to comfortably approach it.

lunar flint
crude stump
lethal parrot
#

What is enumeration?
Enumeration is defined as the process of extracting user names, machine names, network resources, shares and services from a system. In this phase, the attacker creates an active connection to the system and performs directed queries to gain more information about the target. The gathered information is used to identify the vulnerabilities or weak points in system security and tries to exploit in the System gaining phase.

Go to http://MACHINE_IP and start enumerating the website to find the publicly exposed credentials.

Answer the questions below
What username did you found?
Answer format: *****
Submit
What password did you found?

Answer format: ***********
Submit

#

this is the query

lunar flint
#

And normally if we trying to access a file it should be file not lang

crude stump
lunar flint
#

I been trying w lang and getting the same page w no difference several times before noticing the problem

crude stump
#

A website

shadow loom
lethal parrot
crude stump
#

Look through the website. Itโ€™s prolly hidden somewhere

rapid merlin
royal dragon
crude stump
#

What

#

Boy if you donโ€™t

shadow loom
#

He's joking

#

๐Ÿ˜‚

lethal parrot
eternal timber
#

Me when I speed through rooms and forget most of the content later

royal dragon
#

Sorry, tried being funny, failed apparently.

crude stump
#

We canโ€™t help with that

#

Lmao

lethal parrot
#

dude

crude stump
#

Anything private we canโ€™t help with

rapid merlin
lethal parrot
#

we were making such good progress

lethal parrot
crude stump
#

โ€œWeโ€ we arenโ€™t the ones taking your class

shadow loom
#

Can't you bring your laptop on your vacation so you can continue studying?

crude stump
#

Thatโ€™s smart

shadow loom
twin ridgeBOT
#

Gave +1 Rep to @crude stump (current: #81 - 80)

crude stump
#

Figure out a time when you can study. It doesnโ€™t have to intrude your vacation

crude stump
#

Birb

lethal parrot
royal dragon
#

Figure out your priorities - what's more important, the holiday, or getting in to this course?

split compass
#

Back for a few, just catching up.
I expected a private room given the purpose.
But yeah, like I said, hints are a thing.

I choose to bring chonker laptops with me everywhere XD

Previous laptop is a 17" Gaming laptop with a 3060 in it.

New one is a 16" Framework with a RX7700S init ๐Ÿ˜„
(Previous is going to get wiped and handed down to my nesting partner)

#

I just find 5lbs isn't enough to keep me from wanting to have my laptop wherever I am.

sand trench
#

and finally shadow is feeling like using ublock origin hard mode

split compass
vital maple
#

Hello guys i just joined and am very interested in learning about ethical hacking what should my 1st step be joining here?

split compass
#

After the start-here, if you're still not sure where you want to start.
Shadow's recommended order list is pinned.

shadow loom
split compass
#

I wonder how many shadows they have absorbed.

sand trench
vital maple
#

Ok thank you

split compass
#

That's fair, I missed that space hard.

split compass
sand trench
rapid merlin
#

Hello

sand trench
#

recommend easy mode for most people

rapid merlin
#

Hi who wants to do koth w me ? (Im new sorry if its not the channel for this)

sand trench
#

as it requires very little tinkering to get things to work

sand trench
crude stump
split compass
#

LOL you're fighting with a decker mate.

#

You'll never be faster.

#

Shadows the best chummer we got.

sand trench
split compass
#

One of these days I will do the whole wearable PC thing.

sand trench
#

for super portable stuff shadow just uses their dragonbox pyra or openpandora

oak river
#

Does bleachbit help shred files so that they are unrecoverable from the system?

#

I'm asking, cause I will be giving away my laptop

#

And I will be preinstalling it, but I've heard that files are recoverable even after deletion

sand trench
sand trench
split compass
oak river
#

Give me a second

sand trench
#

but if you are going that route dban is generally the recommended tool

split compass
#

Bleachbit may be unnecessary if it includes a secure-erase feature.

sand trench
#

assuming HDD:s

#

if it is an ssd just format it and then execute a trim command after basic setup

split compass
#

If HDD, then yeah, dban is the classic.

oak river
#

It's an m.2 ssd

#

I think a samsung one or kingston

sand trench
#

generally if you run the trim command after formating it nukes the data

sand trench
oak river
#

So defragmentation helps in data removal?

#

I thought it is a process to refreshen up the memory space a bit

split compass
#

Because SSDs store data different than HDD, TRIM will remove any reference data for where to pull cells from to get info off the device.

sand trench
sand trench
loud marlin
#

run full disk 3x time with 0... will be ok to not recover nothing

sand trench
#

the problem with writing that to the disk multiple times with ssd:s is it slightly lowers their life span

loud marlin
#

indeed

split compass
#

But a lot of modern SSD mfg are encrypting your drive transparently.
When you format it, they scramble the key, they don't actually format anything, because disk writes are considered destructive on SSDs.

loud marlin
#

ssd is bit fragile in that area

split compass
#

So you can "secure erase" an SSD in microseconds effectively.

loud marlin
#

nah... it takes time

#

at last full disk encryption, the part of going full takes around 30ish min for 512gb

sand trench
#

format
install something using luks full disk encryption
write data to full disk
format
install what needs to be used
move on

split compass
oak river
#

Another thing: Debloating Windows

#

Does OOSU10 help a bit?

sand trench
oak river
#

O&O ShutUp 10

#

Does this app help?

#

I notice it could crash the system

#

Or make it's behavior errory

sand trench
#

debloating windows generally disables a lot of security features and sometimes updates
if you can't see the issue with this eeeh

oak river
#

Yeah, I guess you are right

#

I had installed copilot on my windows, but now I uninstalled it

#

Not that I was planning to do much with it

#

But I can use copilot on edge

#

Damn Im at work tommorow

#

I don't wanna go...

sand trench
#

haha superuser site is broken mess for shadow now:

#

this is what happens when you block all 3rd party

oak river
#

Im very happy with my brand new laptop

#

It has some AMD Ryzen 7 AI processor

split compass
# oak river I think a samsung one or kingston

https://semiconductor.samsung.com/us/consumer-storage/magician/

If it is Samsung, I'd just use the secure erase feature here, their software knows which of their drives can do the fast method, and which take longer, and have the tools and techniques for doing it.

oak river
#

I don't really get the AI part, but I think it helps to manage tasks better

split compass
#

But they are also just a more energy efficient chip than the previous gen overall, so yay.

oak river
#

VLC media player is better than the normal windows player, right?

split compass
#

I feel that is true ๐Ÿ˜„

sand trench
split compass
#

Alright, image attempt number 2 done, rebooting, let's see if my boot media works this time.

sand trench
#

open source
huge plugin support
can play webpage videos in it using urls
can automatically look up subtitles for what you are watching based on title or hash

split compass
sand trench
#

yeah it is one of the most feature complete media players

#

to the point some people call it bloated

lethal parrot
#

I keep getting an error response does anyone know what could be the cause? the error code is 405 im trying to go to machine_ip

oak river
#

Just made vlc player my default media player

#

I wonder if there is any point in Winamp

#

Since VLC can play music too, or no?

sand trench
loud marlin
royal dragon
#

Oh god

sand trench
#

http.cat for the win

oak river
lethal parrot
sand trench
lethal parrot
sand trench
#

unless you are sending post requests to something that only accepts get requests or vice versa

sand trench
eternal timber
#

Am I supposed to be remembering all the content in the rooms

#

๐Ÿ˜ฃ

lethal parrot
oak river
#

Should I daily TOR browser?

sand trench
oak river
#

Lol

#

I like firefox most

sand trench
oak river
#

Also librewolf seems nice

loud marlin
twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #3 - 1836)

oak river
loud marlin
oak river
#

Firefox and Edge it is then

#

Firefox is slapping me hard with their lack of vertical tabs

sand trench
#

TOR wants users to use it as a daily driver though

supple tangle
#

duckduckgo is ok

loud marlin
#

ff.. no edge

sand trench
#

that way there is more users to be hard to destinguish between

oak river
#

I use edge for work and studying

lethal parrot
sand trench
eternal timber
#

No

royal dragon
oak river
#

Firefox needs vertical tabs and I don't know what I need to do for mozilla to finally have them

#

Not a plugin

#

But native vertical tabs

supple tangle
lethal parrot
sand trench
normal fable
#

We found some 90s tech in the attic.. lol

oak river
sand trench
oak river
#

Btw what do you think of librewolf?

sand trench
sand trench
lethal parrot
#

ive been on this room for 2 hours

sand trench
#

and totally missed the start machine button??? yeah happens a lot to new to the site people

oak river
#

Should I encrypt one of my drives with veracrypt?

supple tangle
#

no worries you got this

molten sky
#

don't use it often tho

lethal parrot
twin ridgeBOT
#

Gave +1 Rep to @supple tangle (current: #1073 - 3)

sand trench
molten sky
#

i'm interested to see if ladybird goes anywhere

#

not that i'd use it necessarily, but interested

sand trench
#

yeah ladybird is interesting

#

as it actually has a shot in bringing in a 4th web engine

rapid merlin
#

@lethal parrot what problem are you having rn

oak river
sand trench
#

if linux use luks

oak river
#

Windows

sand trench
#

if windows use bitlocker

oak river
#

I am Home

#

Version

sand trench
#

aaah

oak river
#

I have some encryption though

#

Which is odd

molten sky
oak river
shadow loom
sand trench
#

ยฏ_(ใƒ„)_/ยฏ

rapid merlin
#

Have fun learning @lethal parrot ๐Ÿ˜

oak river
#

Goddamn it sucks to be the only IT guy for a whole country on a certain thing

lethal parrot
oak river
#

Everyone's gonna blame me and cry to me

#

But as one of my experienced best friends says, just ignore them until they fire you

#

lol

rapid merlin
#

Are u in pre cyber security path? @lethal parrot

oak river
#

Do your job and let them cry

lethal parrot
#

but i dont know anything yet thats why i applied for the course

#

its a vicious oroborous

oak river
#

Also, should I use thunderbird?

#

Instead of windows mail

#

That comes with windows

rapid merlin
#

Iโ€™m ngl. I did pre cybersecurity with 2 months of knowledge. So I get why u donโ€™t know some terms

#

I did google cyber security certificate course

shadow loom
oak river
#

My plan is CCNA -> Security+, Pentest+, Server+ -> OSCP/TCM Security

sand trench
rapid merlin
#

@lethal parrot what course are you going to take

split compass
# oak river Should I daily TOR browser?

tor browser only keeps you anonymous if you allow it to.
Daily driving it greatly increases the risk that you will leave breadcrumbs in places you don't mean to.

lethal parrot
rapid merlin
#

@lethal parrot we in the same boat ๐Ÿ˜

shadow loom
oak river
#

Or download attachments

rapid merlin
#

Iโ€™m also doing associates

#

For cyber security

#

But most likely going to go for bachelors

sand trench
#

eeeew email attachments

lethal parrot
#

2 years more

#

probably too

sand trench
#

well shadow is gonna go into uni and no clue how well it is gonna work out

shadow loom
#

Part of me misses being a student

oak river
#

The fun, people and free time?

clear jackal
shadow loom
#

Nah, the feeling of "studying to become something/somebody"

clear jackal
#

Not saying you're wrong about acceptance, just clarifying that they do provide certifications.

shadow loom
#

As I wrote

oak river
#

OSCP is more legit

#

.

shadow loom
#

As I implied

#

๐Ÿ˜„

oak river
#

Yes.

#

What is a good alternative to windows photo viewer?

royal dragon
#

Anything

shadow loom
#

Lol

oak river
#

E

#

Give example?

supple tangle
#

irfanview

shadow loom
#

Aight bed time... Gn people

nimble mulch
#

big money can be made as good hacker write to me privately

split compass
#

xnViewMP is good, but I think it's free, not libre.

sand trench
shadow loom
royal dragon
#

LOL

nimble mulch
#

Now

hasty sand
#

Donโ€™t write to him

loud marlin
#

lol

nimble mulch