#general

1 messages · Page 326 of 1

pliant cairn
#

ahh start printing

supple tangle
#

you are heartless đŸ€ź

pliant cairn
#

my rabbits think that the printer is the final boss.

supple tangle
#

not really

boreal scarab
pliant cairn
supple tangle
#

no the gov officials should be arrested

icy mesa
#

they turnt it back on bro

supple tangle
#

breaking human rights

mossy river
#

Probably best to leave this conversation or take it to DMs please 🙂

#

It’s not really appropriate for the Discord server

pliant cairn
#

i would say they are winnin

#

my printer stopped working last week

#

its fine now thokekw but lol

boreal scarab
pliant cairn
#

i hope not lol

tough cypress
#

Any can get gmail psw for me?
I can pay for it

supple tangle
#

again 🙄

pliant cairn
floral abyss
boreal scarab
#

Or a throwaway account

grim sparrowBOT
#

:hammer: icyy017#0 has been banned.

sand trench
#

bye bye bad user

pliant cairn
#

i have heard quite some good praise for an indie game satisfactory. Anyone who has played or willing to play? im considering buying that

crude stump
outer rivet
shut hawk
#

rip ur legs

shy bough
#

What's snort?

wild rose
shy bough
twin ridgeBOT
#

Gave +1 Rep to @wild rose (current: #261 - 20)

drifting mural
rapid merlin
#

Being scammed by subway

solar echo
#

Hello.

pliant cairn
pliant cairn
# drifting mural what?

Satisfactory is a first-person open-world factory building game with a dash of exploration and combat. Play alone or with friends, explore an alien planet, create multi-story factories, and enter conveyor belt heaven!ConstructConquer nature by building massive factories across the land. Expand wherever and however you want. The planet is filled ...

Price

$29.99

Recommendations

141628

▶ Play video
crude stump
topaz blaze
#

Hello

#

Just shutdown and erase everything on the system . Can I now trade ?

pliant cairn
#

i left my personal snort setup hanging. busy with a lot of stuff 😩

drifting mural
crude stump
topaz blaze
#

Open new telegram
New wallet

topaz blaze
#

So I had to erase all my stuff on my phone and laptop@

valid mauve
# pliant cairn im buying it now! hyped!

Satisfactory is a game by Coffee Stain Studios that puts you in the space shoes of a space engineer dropped onto an alien world under suspicious space circumstances to build a mega factory.
I've been absolutely hooked on this game since it hit early access a few months ago and after logging 100+ hours on my beautiful mess of conveyor belts I kne...

▶ Play video
topaz blaze
#

I log in on my laptop my telegram

#

So need advice I lost a big money but I don’t wanna lose again

crude stump
#

change your password

crude stump
#

dont click on random links you find on a telegram

topaz blaze
#

They took my solana

#

I terminate the person that login on the telegram

#

Can still use the telegram

#

I don’t want it to be occur

#

Immediately I post my win on twitter my account flash . Can they use username to attack my wallet ?

crude stump
#

its nore your password

#

more

#

create a very strong password

topaz blaze
#

Can I create a password on telegram?

#

I wan do 2fa

#

I wish could catch the hacker

pale swift
#

yooooo

topaz blaze
#

Pls can some one use my username and enter my telegram to cashout my solana ? Immediately I post on twitter my acct gat flash

pale swift
#

wassup

pliant cairn
slender raft
#

Yetti

mossy river
slender raft
#

Guess who is back

rapid merlin
#

the ugly face red man?

harsh sedge
heady nova
#

elloo

pale swift
#

hi

slender raft
pale swift
heady nova
#

any experienced threat hunters here? need some advice

pliant cairn
simple valve
topaz blaze
slender raft
#

Mark my words as a wannabe god đŸ™đŸ»

heady nova
#

Alright then, It's a very basic question. You're given the name of the target. Let's say DPRK. The scope is too big, where do you start from? there are many sub groups that come under DPRK like Lazarus, Kimsuky and all. How do you approach it? Just take a target and go with it? Choose the small fish first?

simple valve
wild rose
#

Depends on how you want to attack the problem and your experience in hunting. If you're looking to block URIs and IP of each group, than that's low hanging fruit, but if you want to tackle more advance hunting you'll need skills at detecting Tactics, Techniques and Procedures.

heady nova
#

Yes we would collect IoCs but DPRK is an org made of sub orgs, every sub org has different IoCs. Even in sub orgs, there are sophisticated ones and non sophisticated ones compared to other sub orgs. I may be thinking too much but that's what happened when I tried to hunt Turla as well. They are the most sophisticated of russian APTs and I didn't consider the fact that going after the final boss would take me months to produce results, but again going after the associates of turla doesn't guarantee clues to hunting turla itself

heady nova
#

and there are not many resources available when it comes to "how to hunt"

simple valve
#

Try asking your supervisor then what they want out of the threat hunt

heady nova
#

trial and error

simple valve
#

Oh that sucks

wild rose
#

Like Mkunkn, focus on their usual TTPs and start with detecting 1 TTP at a time vs trying to tackle the entire APT at once.

simple valve
#

Definitely consult with your supervisor is what I recommend

heady nova
#

I still was able to produce results via pure OSINT but couldn't really make a methodology to follow when hunting

simple valve
#

It looks like you’re going in blind without having a concrete objective

heady nova
simple valve
#

Its an internship, they should be teaching you

pale swift
#

are u trying to hack russian hackers?

heady nova
simple valve
#

I realized you finished your internship already

pale swift
#

then what r u trying to do?

simple valve
#

Silly me

pale swift
#

cuz u mentioned lazarus

naive violet
thick nebula
#

Ahahahah

heady nova
pale swift
#

oh right

wild rose
#

Try following sec groups that focus on threat hunting. I think my company has podcasts that help break down their thinking. Let me see.

simple valve
#

If you’re on your own

heady nova
#

trying to continue on this path

drifting mural
heady nova
heady nova
drifting mural
simple valve
heady nova
#

btw hey james

simple valve
#

I also am lost so I’m in the same boat as you kekw

thick nebula
simple valve
thick nebula
#

Typical

heady nova
#

thanks man

drifting mural
simple valve
wild rose
#
heady nova
crude stump
heady nova
#

a whole year left till graduation

simple valve
#

If you read the latest CISA Red Team report, their blue team couldn’t detect 6 out of the 9 C2 frameworks used

simple valve
#

Only consultants I think are like that

#

Even then, if you’re not doing anything, you’re an expense

#

Good luck on GXPN!

heady nova
# crude stump Also what are you using to threat hunt. Is this a project your doing

currently I'm using OSINT to figure out some behaviors that are predetermined by other hunters, then pull some hashes and crack em open, find some new stuff, compare to other samples of the same target to figure behavior, make yara rules and make an ecosystem that gets fed by malware bazaar and runs my yara rules through a set of newly submitted samples on malware bazaar

simple valve
#

Is that the virtual or live class?

chilly veldt
#

Did someone say blue team certs?

wild rose
#

This is the next workshop we're doing. I think you can lookup the past workshops.

heady nova
simple valve
heady nova
#

a certain threat actor?

simple valve
heady nova
simple valve
#

In person are always better

wild rose
#

Yeah it's a virtual workshop that's free.

simple valve
heady nova
#

oooooh thanks man

simple valve
#

Like e.g. is an SSO compromise, what’s the extent of an attack like that?

heady nova
chilly veldt
wild rose
#

I think they're also doing threat hunting workshops at Blackhat, but I'm not going, so I'm not 100% sure.

crude stump
#

Black hat is expensive as hell tho

simple valve
heady nova
chilly veldt
#

Cause Blackhat is not intended for personal use

simple valve
clear jackal
chilly veldt
heady nova
#

yup, makes sense

crude stump
#

It’s a constant battle

rapid merlin
#

fortnite cash cup is good

heady nova
#

hunting is, at large, making educated guesses. nothing wrong with that as far as you don't ignore the cues that your prior inference might be wrong

#

I do get that, told me the importance of gathering info as you go and beforehand

#

not just a phase ,that part

drifting mural
#

it also requires to be highly trained pro to find them

#

there are only a few places that offer these courses

oak river
#

I'm wondering about one thing right now

#

Should I use microsoft products, even though they gather data about me?

drifting mural
#

I enjoy it so much

oak river
#

I use thunderbird, firefox and etc

oak river
#

I mean I'm already using windows

pale swift
#

cuz there are many encrypted alternatives to microsoft products

oak river
#

I don't really trust anyone lol

#

Plus once I learn how to use linux properly, I will probably switch to it idk

wild rose
#

Yeah the scope is really vast. They just want you to tackle DPRK, so then pick a ATP that's focuses in your industry like Hymnosi said. Whether it's Financial, Manufacturing, Agriculture etc. Start with past IOCs and then pick a TTP that they use and understand how to detect them, then you work on your yara rules for current IOCs that your SIEM or EDR hasn't detected.

pale swift
oak river
#

Yes

#

No

#

I have done it perhaps

#

I forgot

#

Havent been to THM in a bit

#

But still support it with my monthly subscription

crude stump
#

i dont mind microsoft

oak river
#

Im still angry at myself that it so hard for me to sit on a chair and read

crude stump
#

its been good to me

oak river
#

Or jack my neighbours WiFi

pale swift
pale swift
crude stump
oak river
#

But like flashing USB on linux

#

Etc.

#

Not used to such stuff

pale swift
oak river
#

Yes

#

I know how to install packages, but not completely remove all files

#

Windows uninstalls programs (Completely I guess)

#

But in linux I am still not completely aware of how things work as much as I do understand windwos

pale swift
#

which linuxOS is best for hacking?

sick lance
oak river
oak river
rapid merlin
pale swift
crude stump
pale swift
sick lance
#

Will he their ToS,.but would you really want to?

oak river
# sick lance Which is illegal.

But they do scratch my car for no reason or hit it without leaving their phone number right? They did steal the sink from my villa right?

shy bough
oak river
#

Sharing a little wifi wont hurt them

#

Its not like I do anything suspicious

pale swift
sick lance
oak river
pale swift
#

its like saying

#

i didnt break the door

#

i just removed it off its hinge

oak river
sick lance
oak river
#

Was just reffering to another option for more privacy

rapid merlin
#

Privacy is illegal

#

cancel him

crude stump
#

cant a isp see whos using there wifi

pale swift
oak river
#

Well morals here are different so

sick lance
oak river
#

People constantly borrow other people's stuff without asking here

#

And 50/50% of the time it's fine

sick lance
pale swift
crude stump
#

then im sure they would flag it if someone whos not paying for wifi is using the wifi constand

oak river
#

Im just saying what the reality is over here where I live

pale swift
#

if that were the case, then only the father would be able to use the ISP

sick lance
#

The router I have lets me know when somebody connects.

oak river
#

I believe

sick lance
oak river
#

I guess it's not a cheap router

#

A standard TP-Link?

pale swift
sick lance
crude stump
#

dont most routers let you know when someone connects

oak river
#

Over here people buy whatever can do the job (Most of the time)

naive violet
sick lance
oak river
#

Which is a TP-LINK archer C6 right now

#

Or something like that

crude stump
oak river
#

Nah, google is off limits, only e-mail and search engine is welcome

pale swift
#

in exchange for data

pale swift
oak river
#

For some of my e-mails*

#

My main e-mails are swiss

pale swift
#

u could use edge or firefox

oak river
#

Gotta support toblerone country

naive violet
supple tangle
#

wow you think so? i kinda hate their youtube censorship

crude stump
pale swift
#

can i send a youtube link here?

naive violet
clear jackal
naive violet
pale swift
oak river
#

I wonder why the police confiscates routers

#

When they raid a home

#

I mean you could delete the memory or logs?

crude stump
pale swift
clear jackal
wild rose
#

My ISP's router will send an email and push notification through their app, so it's slowly becoming standard.

crude stump
#

connections

oak river
#

I heard that in some countries like France, only your ISP can give you a router

#

You can't buy your own router or it will not work

#

Or something like that

pale swift
oak river
#

openwrt, ddwrt?

oak river
#

That we all have at home

pale swift
#

ik what u r talking abt

wild rose
#

When someone tries to connect to even alerting me if they stopped a malicious download.

oak river
#

I haven't given enough time to it

wild rose
#

Verizon

pale swift
wild rose
#

I know ppl who work for their business division that also threat hunt as MSP.

pale swift
#

do u have the link for it?

#

ltt

crude stump
#

also it says you are new

#

it has that 3 leaf clover thing

#

oh

wild rose
#

Well their IPS should drop the traffic if they deem it malicious and even have web blockers that stop you from accessing malicious sites.

#

I don't know more than that since it's getting into the sauce of their infrastructure and detection systems.

crude stump
#

thats cool

pale swift
#

is this still relevant in this day and age?

#

sick

#

wow

loud marlin
#

hmm... where is quotes # ?

sand trench
#

wait they got rid of the quotes channel??

#

;-; how will people learn how stupid shadow is now

loud marlin
#

well.. can't find it

pearl raven
#

Seems so, sad, there were some great ones.

rapid merlin
#

How did he get caught?

loud marlin
sand trench
#

weird package name is funny: thcrap_proton

vernal nebula
#

I used to like Dexter Cartoons when I was a kid- what's your inspiration behind the name?

torn snow
#

my car @vernal nebula

#

:D

drifting mural
#

dex

#

fex

outer rivet
#

FedEx

drifting mural
outer rivet
#

đŸ€”

drifting mural
#

great surprise

sand trench
#

fez is a beautifully funny puzzle game

tulip heath
#

What is a bind shell?

#

emm.... what the shell !

clever shard
# drifting mural I dont get it
       If size is 0, then malloc() returns either NULL, or a unique pointer value that  can  later  be  successfully  passed  to
       free(). ```
loud marlin
tulip heath
loud marlin
#

is same thing. is where the target machine use shell to connect to your local shell

tulip heath
#

thanks @rapid merlin

twin ridgeBOT
#

Gave +1 Rep to @coarse totem (current: #120 - 58)

loud marlin
# tulip heath already doing it but couldn't understood

by ddefault, you connect to target via terminal or to say shell. yoiu send command and terget accept you request and open the connection. this is same just in reverse. you listen for incoming connection and target send request to you machine and you accept it

#

roughtly explained

tulip heath
#

thanks @loud marlin

loud marlin
#

w8 w8... no rep...

twin ridgeBOT
#

Gave +1 Rep to @loud marlin (current: #26 - 327)

drifting mural
loud marlin
#

awww

twin ridgeBOT
#

Gave +1 Rep to @loud marlin (current: #26 - 328)

loud marlin
#

opa lol

eternal timber
#

Anyone here work on HackerOne?

loud marlin
outer rivet
loud marlin
#

also hyprland or ?

#

i used script from github of one guy doing it in kali. is bit different. and i isntall lot's of things

#

even need to change things in .sh to make it work

#

laptop or what you use to have 800mb =/

#

host pc ?

#

what kind of memory ?

#

i have some cards from laptop that is somewhere around my room

#

ah

#

then ok

#

also ssd will help for sure

#

that's ok

chilly veldt
#

Sushi just hits different after 2 days of drinking

loud marlin
#

when you get resources in correct way will work

#

i got memories box 🙂

cosmic pendant
#

Does anyone here game on LInux full time now days?

pearl raven
#

Shadow may qualify for that?

sand trench
#

though if your questions is about raytracing on linux shadow has no clue

shell nova
#

Osint time

loud marlin
#

paris

shell nova
sand trench
true steeple
#

hi guyss, someone have to try exploit android using msfvenom? i wanna ask something

shell nova
sand trench
cosmic pendant
cosmic pendant
boreal scarab
#

@silver sky Yo, you alive?

sand trench
shell nova
sand trench
#

modding is decently easy with some games and tools

silver sky
loud marlin
#

mor vs argentina i guess ?

sand trench
#

old legacy games work wonders under lutris with wine

shell nova
sand trench
#

also heavily recommend steam for game store of choice for linux gaming

loud marlin
#

Geoffroy-Guichard Stadium ?

sand trench
#

sure there is ways to run epic games store and gog galaxy stuffs

normal fable
#

Yes. Epic and blizzard/battle net. They work .

#

How I play my non-steam games.

#

Just can't play online games that have anti-cheat in a lot of cases.

sand trench
#

as epic games apparently made a deal somewhere to add an easy to switch toggle to make that work in wine and proton

#

meaning you can play games that use that no problem at all on linux most of the time

normal fable
#

Good to know

sand trench
#

it makes shadow fully able to play and enjoy battlebit remastered

normal fable
#

I can't play a few titles due to anti-cheat.

shell nova
#

Close

#

Not the west side

#

Better guess with the sun

loud marlin
#

is not Geoffroy-Guichard Stadium

normal fable
#

But.. can play 7 days to die, trackmania, assassin's Creed etc.. singe player games in most cases will work.

shell nova
loud marlin
#

oh

silver sky
normal fable
shell nova
silver sky
silver sky
shell nova
silver sky
#

Eric Parker just did an interesting video on Vanguard

normal fable
#

I don't want any rootkits on my system anyway.

silver sky
#

if your running windows you've already got one

normal fable
#

Yeah...

#

Omg that's huge... Lol

wild rose
#

Dats a big emoji

silver sky
normal fable
#

Sorry. Didn't know.

sand trench
#

only reason shadow has to wait to play battlebit again is because they waiting on a cable for their microphone

normal fable
#

Discord mobile got all weird again..

wild rose
#

I don't even want to know how big that emoji is on mobile.

normal fable
#

It takes up a lot of screen space on my phone.

silver sky
#

Rather large

#

@wild rose

wild rose
#

It's about the same on desktop

shell nova
#

Not bad

sand trench
#

also figured out openrgb to get full red glow from pc now

mellow pulsar
#

Is there any poll on what is the most used browser in this community? Just curios

sand trench
#

@cosmic pendant heavily recommend checking: https://www.protondb.com/ for which games work on linux very well using proton

Game information for Proton, Linux, Steam Deck, and SteamOS

shell nova
#

Inside the red

#

Barely though

#

I think you may be a block off

sand trench
#

and that list is ever growing

#

the steamdeck helped tons

#

and valve keep pushing for linux support

shell nova
#

There's white seats to my left

#

Amidst the green

shell nova
#

Yeah

#

Starts in an hour

mellow pulsar
sand trench
#

still in early alpha state

silver sky
sand trench
#

i.e it is a rare competitor to chrome and firefox and safari

pearl lion
#

Hello everyone, i am just starting with cyber security as of now what i know is only few things that's HTML, CSS and Basic of JavaScript, please guide me how do i get started?

sand trench
#

which are the 3 main browser engines out there currently

stark relic
#

Hey,
is anyone familiar with running sqlinjections against a phpmyadmin service ?
probably running at version 4.9.5

mellow pulsar
sand trench
#

as more competition in the web browser space is welcome

naive violet
sand trench
#

as what their current goal is is basically impossible for most people to achieve and do

pearl lion
boreal scarab
silver sky
stark relic
pearl lion
stark relic
#

Dont want to run a sqlinjection by hand if that's possible

naive violet
#

Like what platform?

silver sky
stark relic
pearl lion
naive violet
silver sky
mellow pulsar
#

Im trying to get a command to be executed at boot with crontab but it doesnt seem to work. I want to connect to the THM vpn at boot. Its in the sudo crontab with the following "@reboot /usr/sbin/openvpn --config /media/sf_Shared/name.ovpn" does anyone know why this doesnt work?

silver sky
naive violet
# mellow pulsar Im trying to get a command to be executed at boot with crontab but it doesnt see...

You'll need to adapt this a little but openvpn kinda has it built in
Running it as an on reboot cron like that is quite fragile
https://www.ivpn.net/knowledgebase/linux/linux-autostart-openvpn-in-systemd-ubuntu/

IVPN

Autostart OpenVPN in systemd (Ubuntu) In order to configure OpenVPN to autostart for systemd, complete the following steps:
Run the command:

sudo nano /etc/default/openvpn and uncomment, or remove, the “#” in front of

AUTOSTART="all" then press ‘Ctrl X’ to save the changes and exit the text editor.

twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #2 - 2164)

shut hawk
#

For why it doesn't work, wha happens if you run the command manually?

tropic musk
#

shimmy shimmy yay shimmy yay shimmy ya

shut hawk
#

Might it be the case that it hasn't mounted the media device before the command is ran?

#

You can also check the logs at /var/log/syslog

shut hawk
icy mesa
#

ohh sorry for inetrrupting

shut hawk
#

not a problem

shell nova
#

Not far enough north to grab Canadian channels?

crude stump
#

Any Brit’s here know the best tea brand. Preferably black tea

icy mesa
#

for how long do we have these planats beside our names? 😄

shell nova
#

Yeah it's a bit later

#

Not much to see yet

naive violet
shell nova
#

Lol

naive violet
#

Brew what we call a "builder's" tea

#

Very strong, very tiny amount of milk

#

@crude stump

coarse moth
sand trench
naive violet
#

D1/C2 is perfect

gray sonnet
naive violet
#

Nope

crude stump
gray sonnet
#

tea???

#

wait, nvm, it's tea

crude stump
#

Sort of like a chai but different spice mix

normal fable
#

Milk in tea is good. A spoon full of sugar too.

#

I haven't had tea in a while..

naive violet
wraith fjord
#

D4 is jus milk

silver sky
#

Although if we are talking tea it's Barrys

low sparrow
#

so - where does virus total store the 'first submitted' page of a suspicious/malicious url? i use vt everyday and dont recall ever seeing it

coarse moth
#

That is in relation to the amount of water-milk but always with the same amount of coffee?

sand trench
#

@cosmic pendant here is another helpful link if you play a lot of multiplayer games with anticheat and wanna find out if they work on linux: https://areweanticheatyet.com/

low sparrow
#

i'm guessing this box is asking for the actual submission date to vt as the question is "When was the URL of the malicious/suspicious domain address first submitted to VirusTotal?"

but i cant seem to find this info even through the api call to make sure that i'm looking at everything

#

any help is appreciated

low sparrow
#

tried posting a screenshot but its just not there

#

we have registrar - creation date - last analysis date.
cretion date reflects when the domain was registered

#

but no 'submission date' or similar field, unfortunately

#

super easy box so its frustrating when i run into problems like this lol

#

vt docs does show that there exists a first_submission_date field so its gotta be there

rapid merlin
#

httpss://discord.gift/hHHfox3000foxyzBajBXnXCU ||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​||||​|| _ _ _ _ _ _ https://discord.gift/PZ76qKbfX8G8hjTKUKYjZntk

(why did you copy it DUMP FUCK)

#

🙂

gray sonnet
#

I'm not touching it with a 10 foot pole

mossy river
#

Least fake nitro link

gray sonnet
#

@sick lance

#

oh wait nvm, jabba is here

#

I didn't see Mr. Rabbit was online

rapid merlin
#

🙂

mossy river
#

It’s a rickroll

#

This is a hidden discord page that redirects to a rickroll

#

All I had to do was copy the link

rapid merlin
gray sonnet
#

okay, I'm still not touching it

mossy river
#

Discord whitelists any discord.com domains so that the “are you sure you want to go there” page doesn’t pop up

rapid merlin
#

đŸ˜©

boreal scarab
#

Good afternoon everyone! Our friend, @gray sonnet , just recently went through a bunch of emergency medical surgeries. He's in need of funds for his college. Any amount at all that you could give, would mean the world to us!
Disclaimer: I have been granted permission to post.

https://www.gofundme.com/f/support-anirudh-dillis-education-after-medical-crisis

gofundme.com

Hello, everyone. My name is Anirudh Dilli, and I am reaching out to you 
 Matt T needs your support for Support Anirudh Dilli's Education After Medical Crisis

grizzled wing
#

Rick Astley lives forever

boreal scarab
#

Thank you!

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #508 - 9)

sand trench
#

shadow plans on donating when they have spare funds

loud marlin
#

btw @mossy river where is # quotes ?

shut hawk
#

what'd they do to my boy #quotes

crude stump
#

Wasn’t expecting that

mossy river
sand trench
#

meep moop cookie time

boreal scarab
shut hawk
#

all the memories my guy

mossy river
grim ivy
#

anyone know of good microsoft certifications for cyber?

sand trench
#

and who:s fault is it that quotes channel became inactive???

#

^ probably shadows

crude stump
#

Tbh I didn’t even know we had a quotes channel

simple valve
normal fable
sick lance
sand trench
supple tangle
fleet turtle
#

3 day streak, things are going great

wild rose
supple tangle
#

blahaj?

sand trench
#

means blueshark and is also the name of the famous plushie form ikea

supple tangle
#

yeah yeah it was a question if they've acquired some as well

wild rose
#

my friend's daughter loves her ikea plushy

fleet turtle
#

djunkelskog

sand trench
coarse moth
#

What is your favorite episode of Skibidi Toilet?

sand trench
wild rose
#

oh god no, my nephews are into it and I'm like have you lost your minds.

supple tangle
fleet turtle
#

..theres a movie of it?

supple tangle
fleet turtle
#

thats something

sand trench
#

would be impressive if they could get perms for the movie considering some of the main characters are heads from half life chars which intelectual property belogns to valve

rapid merlin
#

yo

#

ehm please

#

i need help

#

why do when i click on "show split view"

#

i dont see anything

supple tangle
#

idk maybe disable adblock?

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @supple tangle (current: #653 - 6)

coarse moth
rapid merlin
#

yup

wild rose
#

I would have said allow pop-ups from THM.

fleet turtle
#

opinions on brave?

supple tangle
#

avoid

rapid merlin
#

urban vpn

#
  • mullvad
#

urban vpn for the web explorer

#

and mullvad for my pc

loud marlin
#

stancking vpn ?

fleet turtle
#

whats wrong with being chromium based?

loud marlin
icy mesa
#

im also using brave and its good

stray tapir
#

I find their crypto stuff to be kinda weird

icy mesa
loud marlin
icy mesa
stray tapir
#

I prefer librewolf or ungoogled chromium for simplicity.

supple tangle
#

no love for duckduckgo?

stray tapir
#

Duckduck no thank you

fleet turtle
#

which is a bit suspect

fleet turtle
icy mesa
supple tangle
stray tapir
#

My goto

fleet turtle
normal fable
#

Netscape Navigator and Yahoo search for me. 😂kekw

fleet turtle
#

has anyone tried iceweasel?

normal fable
#

I had briefly at one point. Didn't get much of an experience.

proven quartz
whole quiver
#

sers

normal fable
#

If you're really worried about privacy, don't use anything Google.

fleet turtle
#

and im sure there was a fix, but im not going through that much effort for a browser, really

proven quartz
normal fable
fleet turtle
#

i might have to give it another try then

fleet turtle
normal fable
#

Review it for us. 😁

fleet turtle
#

linux extremist reccomending it, so i tried it out on my ubuntu vm

normal fable
#

I just use ff and Google.

#

Hate it when I forget to shutdown my kali vm on my desktop. lol

tepid furnace
#

leave ur vm on

#

and leave ur python http server on too

#

pretty please

fleet turtle
coarse moth
#

Honestly, the only way to have real privacy is to first use Starlink

tepid furnace
#

nah nah

tepid furnace
#

the only real way is to own your isp

normal fable
#

Disconnect from the internet for true privacy. lol

tepid furnace
#

like big fortune 500 isp

#

that way the burdeon of trust is in your own company anyways

fleet turtle
#

wasnt there a way to hack a starlink terminal and have access to all other starlink terminals like a year ago?

gray sonnet
fleet turtle
stray tapir
#

Dishy McFlatface 😭

fleet turtle
#

lmao

dense scarab
#

guys i need some help

#

i just installed kali linux and tested it out, after 20 mins sth my pc froze and keep on restarting

fleet turtle
#

boot loop?

#

did you install kali on a VM or as something to dual boot?

coarse moth
dense scarab
#

i use it on oracle

coarse moth
dense scarab
#

yes

normal fable
#

What version of Linux?

#

What OS specificially?

#

Distro not version.. brain error. lol

dense scarab
#

oh wait

#

image installer

coarse moth
# dense scarab yes

I think the problem must be related to VirtualBox or managing virtualization in your operating system

normal fable
#

Ah. Use the Virtualbox version. Never had that issue witht the ISO installing Kali

#

Strange to have a boot loop after initial install. Did you do anything else?

dense scarab
#

im checking out if i have a badly installed ram rn

#

since i got one installed earlier

#

and i was stuck in recovery screen

stray tapir
#

Wait

normal fable
#

RAM issues would make your computer itself have issues.

#

Is your computer rebooting or the VM?

stray tapir
dense scarab
#

9gb of ram

#

i have 16 gb

stray tapir
#

I see

#

You shouldn't allocate more than half your host's memory to a vm

dense scarab
#

im trying to see if i can successfully boot up my pc

#

yeah it worked after removing one of my ram

normal fable
#

I'd try re-seating the stick of RAM. If it wasn't seated all the way it would give issues.

#

Otherwise it's likely a bad stick.

#

I'd also recommend always using the same type/brand of RAM when you upgrade.. if you can help it.

dense scarab
#

i got this stick on warranty a while ago so that should not be the case

#

i will try later with the stick installed, how much ram should i set this time

normal fable
#

assuming you had 16gb installed, you should have 8gb with only one stick.

mild silo
#

Hi guys im a begginer and im doing the presecurity course, do u guys have any tips for better learning experience?

grizzled wing
pearl raven
#

Take notes, simple sentences that work for you to remember. Do not copy and paste the entire article, you need to condense it to make sense for you.

normal fable
#

Take notes on commands you use. You may modify them later on but it's good to have your own quick reference.

pearl raven
#

I'll second @fervent meteor if you try to work it like you are explaining to someone that doesn't know the topic you're gonna have a better time.

#

Solid example imo ^.

twin ridgeBOT
#

Gave +1 Rep to @pearl raven (current: #141 - 51)

mild silo
#

thanks a lot

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #471 - 10)

clever shard
#

why you keep this in your notes lmao??

#

imo this can be easily be remember xD

#

no I'm not

normal fable
#

It's good to have in your notes.. even if you do know it. You may forget the syntax monetarily and need a reference..

#

that's like certutil.. how many people know how to use certutil to dowload files.. right from the top of their head??

#

Not to mention.. this is a learning environment. Should encourage people to take notes.. imo.

crude stump
#

You should see my notes

#

It’s all command s

clever shard
#

First thing I'm not against note taking
I'm against stupid / time wasting notes the only thing that needs to be noted is something important/mid-important that you well forget, other than that I think it is being just a waste of time, understanding the concepts and noting only important things, and yes you don't need to memorize every command but some you well use every time, then why bother and take notes of it?

#
  • it is better being a leader than a follower 😉
#

whatever makes you sleep at night buddy

shut hawk
#

Feel like we've had this conversation on the importance of notes before...

clever shard
#

I started taking notes since I talked with muiri

#

but not dumb ones

#

study smart not hard

crude stump
#

How is it a waste of time tho

#

I don’t get that

#

If taking a minute to write or copy and paste a command is wasting time then cybers not for you

shut hawk
buoyant tree
#

ola

fleet turtle
# clever shard but not dumb ones

Dumb is highly variable, to some it is important to some it is unimportant, you are not in a position to deem anybody's notes dumb, unless you are them

vagrant swallow
#

Room : Subdomain Enumeration, Task 3 : Using This command "site:www.tryhackme.com site:*.tryhackme.com" find TryHackMe subdomain beginning with S... but there is not such sub domain.... Is this a wrong Command or something wrong with the room ?? PLZ help

molten sky
#

there is one

#

and that filter would work for it

#

well actually idk why there is site: twice, just use one

#

also valid

#

if anything, more specific

#

eh, works well enough to demo what it's for

#

and gives the answer

vagrant swallow
#

got the answer.. did a normal subdomain search using "site:*.tryhackme.com -www"... the command they provide is wrong and miss leading... where can i report this ??

molten sky
#

did the command on there not have the -? in which case, #room-bugs

fleet turtle
#

listening to tryhackme walkthroughs when not doing the sessions themselves is unironically helpful when they explain the meanings of the terms and the tools without outright giving the answer

crude stump
fleet turtle
#

for sure, the THM equivalent of tutorial hell

high mulch
fleet turtle
#

yep, explains everything leading up to the answer, gives you the tools to find the answer yourself

high mulch
#

Even with the ones that give out the answer, I still do the steps, and re-do it a second time with the notes I collected along the way from my POV.

crude stump
#

Only time I look at a walkthrough is when I’m stuck on a answer for ages. And even then I look at how they did it so I can replicate it myself.

fleet turtle
#

typically i do the same but more recently, sometimes i just listen to a walkthrough to see what im getting into, then do it on my own

#

đŸ€š

rich kayak
#

How's everyone doing this afternoon/evening?

crude stump
fleet turtle
#

crowdstrike

crude stump
#

Doesn’t make there information wrong

fleet turtle
#

i didnt think it was, i just find it ironic that im seeing this room right after the whole BSOD thing

sand trench
#

cava is cool

stray tapir
#

nice rice

stray tapir
sand trench
sand trench
#

they also pushed the changes on a friday and have pisspoor compensation currently

#

oh sorry we dont hire a quality assurance team or pay them pennies on the dime and shut down 911/emergency services in multiple countries killing hundreds of people

twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #3 - 1845)

crimson lily
#

@rapid merlin you what's happening

sand trench
#

can ask the same of you... did you read the technical?? do you realise this is the worst computer incident in history by a huge margin... causing billions in damages and ending lifes....

stray tapir
sand trench
#

because shadow has a background as a hospital med tech and know that they plan for minimal downtime always so this is one of the biggest life enders ever

#

when you need uptime in the 99.999%

clear jackal
sand trench
#

where you do upgrades and changes in staged roll outs so the entire thing is not down at the same time

crimson lily
#

Around 75 76 percent of essential services run on windows

sand trench
sand trench
clear jackal
#

That's not how that works though. Unless you have specific proof, I would avoid such claims as it's really hearsay.

sand trench
#

then honestly crowdstrike is dumb for pushing to prod on a friday

crimson lily
#

What didn't this his get done by a security company

tired peak
#

what what?

sand trench
#

also avoid why should crowdstrike be excempt for liabilties if previous instances of other crashes because of security software( see mcafee ) made them liable

tired peak
#

what what?

#

what is going on here...

crimson lily
#

They where talking about how a security agency had sent out an update

stray tapir
tired peak
#

that is crowdstrike

clear jackal
# sand trench how does it work then???

You'd need some sort of verifiable proof that the person was killed by CrowdStrike. An outage and guesstimating how many deaths could have potentially happened does not mean you can prove attribution.

#

Idk if I worded that right

crimson lily
#

Anyway can I get some feedback on this setup it's my first one

sand trench
#

there is nothing that is as critical to skip some basic checks to make sure things don't fall over the instant you push an update no matter what

crimson lily
#

Nevermind as it won't let me send photos

tired peak
#

!docs verify

sand trench
sharp citrusBOT
sand trench
#

in this case the impact from this push is way worse then what ever "critical" thingy they tried to fix

crimson lily
#

I'm going to send the specs let me copy it

tired peak
#

and also tell us what you trying to do

crimson lily
#

Oh thanks

fleet turtle
#

you failed to interpert it even though i explained it as simply as possible..

sand trench
#

a vuln in a pipe is worth to bring down major systems for most of the world???

tired peak
#

(if anything, Crowdstrike violated their SLAs, they are in some legal hot water, but to what extent remains to be seen)

fleet turtle
#

not arrogance, you simply refuse to interpert it in the way i meant it, i simply said its ironic

crimson lily
#

That's fun looks like I can't verify

sand trench
#

so by your logic there are exploits that are worth bricking systems and shutting down 911 for???

tired peak
crimson lily
#

No

sand trench
#

also funny how crowdstrikes driver was marked as boot critical so windows could not automatically disable it to boot into safe mode by itself

#

even if said systems run infra critical stuff???

#

because shadow hard disagree on that

#

you do sanity checks and a lot of QA before pushing fixes for critical stuff if said pushes can break said critical stuff even for just a few hours

#

from shadows perspective it is never justifiable if it can bring down emergency services

#

luckly shadow has not heard it affect any power plants but you could guess how that could have turned out

#

yes as what they have done now with this push is worse then any national security threat as it impacted the majority of the world at least partially

sand trench
#

nope shaodw is assuming any national security threat only applies to 1-2 countries

#

as it is national

#

unless you are using the meaning of national wrong

stray tapir
#

this whole argument is so goofy lmao

sand trench
#

if someone is pushing a thing that could crash nuclear power plants to cause meltdwon or blow up you are doing that then???

crimson lily
#

Can I have some feedback on this it would be my first build
ITEMS
COMPUTER CASE
3000D AIRFLOW Mid-Tower PC Case - White CC-9011252-WW 1 $89.99

COOLING
A115 Twin Tower CPU Air Cooler CT-9010011-WW 1 $99.99

MEMORY
DOMINATORÂź PLATINUM RGB 32GB (2x16GB) DDR5 DRAM
5200MT/s C40 AMD EXPO Memory Kit CMT32GX5M2B5200Z40 1 $144.99

STORAGE
CORSAIR MP700 PRO 1TB CSSD-F1000GBMP700PNH 1 $179.99

PSU
RMe Series RM850e Fully Modular Low-Noise ATX Power Supply CP-9020263-NA 1 $129.99

TOTAL $644.95

sand trench
#

i.e this crowdstrike bug if it affected the right systems would have possibly caused what you are affraid of here agianst nuclear power plants

sand trench
# clear jackal You'd need some sort of verifiable proof that the person was killed by CrowdStri...

Britain's National Health Service (NHS) said that the issues are "causing disruption in the majority of [English] GP practices",[93] with some of its services, such as GP surgeries, which rely on a software product called EMIS Web, unable to view and manage medical records, issue and manage prescriptions, or make appointments.[73] Manx Radio reported that GP surgeries were affected in the Isle of Man.[215] The London Ambulance Service experienced an unprecedented surge[58] in 999 and 111 calls following the outage, responding to 4,500 emergency calls by 17:00 (BST).[216]

crimson lily
#

I'm broke

clear jackal
crimson lily
#

I don't have the money for even this

#

I'm save up for it

sand trench
crimson lily
#

All I need is it to run blender

clear jackal
sand trench
#

and you seem to think just because a single issue is found said systems spontainusly fail and don't need a huge chain of exploits

stray tapir
#

actually when you think about it

sand trench
#

can agree on that

stray tapir
#

thats not a bad idea

sand trench
#

unless crowdstrike gets held liable which would mean their stock tanks

#

but for a bit it can be worth holding

#

well we could take the stuxnet example

#

and how much was required to get to work without even being able to permanently harm systems

hidden matrix
#

anyone have trouble with the openvas room saying not enough storage

sand trench
#

give example of some very much online nuclear power plants???

crimson lily
#

Saying oops as a student, saying oops as a farm saying oops as a cop will get nothing but if you're a scientist, doctor, military officer, and apparently and security agency worker, you get the look of. What the f**** you do.

sand trench
# stray tapir Chernobyl /s

well fair there is some parts related to that which is a huge part of public knowledge of the incident and how it works now

#

how sure are you those are not honeypots or training example systems for the engineers to train on so that they don't break actual systems???

#

shadow can neither confirm or deny that deaths happened because of crowdstrike
so by this extension neither of us can prove that either situation is worse and could cause nuclear meltdowns and deaths

#

yeah it got very heated for a while

#

time for next argument

#

is water wet

quaint isle
#

No it’s moist

sand trench
#

this cake is great
it is so delicious and moist

quaint isle
#

Says moist

stray tapir
#

if you were to spill isopropyl alcohol on a paper towel, would the paper towel become wet?

quaint isle
#

Nope

#

Moist!

sand trench
#

similar to how many different oils can be greasy

stray tapir
sand trench
#

anyways it is ni ni time for shadow now

#

so meep moop to the sleep sloop for the beep boop

boreal scarab
#

@loud marlin I'm making a finger

quaint isle
#

Only moitht.

candid niche
#

Gmorning THM

crude stump
#

But wasn’t stuxtnet implanted via a usb

crude stump
rapid merlin
#

Hey guys

crude stump
rapid merlin
#

Hi

#

I hope it works

clear jackal
graceful thistle
proven quartz
rapid merlin
#

Smh.

graceful thistle
#

It wont work but thats how you close your html tags 😉

clear jackal
rapid merlin
crude stump
#

But if you think about it. How else would they bypass a air gapped system

fleet turtle
#

this was an odd question

rapid merlin
#

There is more.

#

Yo

molten sky
fleet turtle
#

yeah, the first few UKC rooms had terrible questions, but the rest are alright, i think they reinforce the learning well

#

kept the terminology in my head for a good amount of time

molten sky
#

yeah not everything can be perfect

fleet turtle
#

yeah, and it would be irrational to expect it to be

rapid merlin
#

Yes

tired peak
#

I think they do the answers like that because its easier to validate but who knows

#

could be worded slightly better but seems to get the point across

rapid merlin
#

I think I should complete my azure cloud certificate too

tired peak
#

yes do it

rapid merlin
#

I heard cloud jobs pay well

tired peak
#

they do

fleet turtle
#

made it to 0x3

eternal timber
#

The attack box is acting acoustic

rapid merlin
#

Green colour

eternal timber
rapid merlin
#

I wish I could change my role color

#

I like green

normal fable
#

0xD is the next green.

eternal timber
#

Me in 10 years

normal fable
#

At least I don't think there's another green before then.

#

Does not take 10 years. You can get there. lol

rapid merlin
#

I guess I will be there next month

eternal timber
#

It’s a joke on my current abysmal pace

fleet turtle
#

i thought it was gonna take me forever to get to 0x3, but then i just locked in on getting the UKC done

#

now ive done all the free parts of Jr pentester and SOC 1, what next..

worldly hearth
#

Is it not allowed to use scp command to send id_rsa file and LinPEAS to enumerate privilege in Linux machine in Basic Pentesting?

worldly hearth
#

I used it but it did not run. it stopped in after roughly 10 secs and it was missing some variable

#

I am going to try again with Attack box this time as I did earlier with my VM

#

My attackbox has lost internet or something I am not abl to ping google.com as of now

mossy river
#

If you are a subscriber it does

worldly hearth
worldly hearth
mossy river
#

Lol

worldly hearth
#

Oh! yeah. It does

worldly hearth
# mossy river Lol

I am going to get it subscription once I get my Google Cybersecurity cert because I spend a lot of time on TryHackMe than on my cert.

worldly hearth
#

ssh john@$IP + pw: armando

fleet turtle
worldly hearth
#

I guess, it is not working

#

Nope it does not work in both of those directories that I have mentioned.

#

Should I run one liner from LinPEAS?

#

Oh..! I forgot basics

#

I can not get wget into my attack box because I am not a subscriber.

#

Sorry I have read last part just now and thanks I have found linPEAS

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #439 - 11)

normal fable
eternal timber
#

Huh

#

How have I completed 48% of the jr pentesting path

fleet turtle
#

i wish i could lmao

#

but im doing free stuff for now 😼‍💹

fleet turtle
worldly hearth
#

Thanks objectives accomplished.

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #409 - 12)

jagged otter
#

good day

#

ok how long does it take for the flower to go away? it should've already been off by now

eternal timber
jagged otter
#

I have friends in south america

jagged otter
#

hasn't been 2 weeks yet

#

does seem a bit long though

#

2 weeks to be a noob?

#

a year?

#

i just wouldn't do it

worldly hearth
#

I have used scp as I used http.server in my VM earlier. I was not able to use scp and linPEAS so you helped me there.

jagged otter
#

scp?

eternal timber
jagged otter
#

thats right duh

#

i studied that not too long ago

#

i feel like a dumb ||ass||

worldly hearth
#

Are you working professional? @fervent meteor

jagged otter
#

but i'll most likely go over it again

#

its in my notes

worldly hearth
#

Nice. Any advise for a job seeker?

jagged otter
#

get plenty of experience lol

worldly hearth
#

I am looking for a role in defensive side. I have participated in purple teaming activity in my university though. I loved it!!

jagged otter
#

if anyone wants to talk to me. send a dm or do the @ thing

#

so i can hear

#

im going back n forth

jagged otter
#

good to know both, helps you to understand what you're up against on either side

worldly hearth
#

Thanks I aware about it. 1st year I was in offensive side and then defensive side.

jagged otter
#

lol how do all of you get those names by your levels?

worldly hearth
jagged otter
#

so you don't write hacker by it ?

#

yes RAV

#

well, i started jr pentesting, after this i'll do the web fundamentals

#

Zumi are you the one asked me why i got banned from twitter?

#

someone did

#

guess i gotta scroll

worldly hearth
#

I am going to finish Google Cybersecurity, Security+ or CySA+ and then SC-200. Then I wish to finish SOC level 1. Is it a good idea @fervent meteor

jagged otter
#

i know web application

#

oswa

worldly hearth
#

Thanks

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #383 - 13)

worldly hearth
#

Do you have any interview prep for material for Blue team roles? @fervent meteor

jagged otter
#

id go back to see who asked that but i don't feel like it. rather study

worldly hearth