#general
1 messages · Page 327 of 1
I think we should carry on that topic on DM if you are comfortable with it
bad what?
I find it much more entertaining to learn Red Team than Blue Team, but for Blue Team there are many more job openings
like lots of competition
I have sent you a friend request. I am glad to be your friend.
anyone here remember totse?
i'll take that as a know or no comment
i want fwiendz
totse it old
old stuff
Do you mean Cybersec in india is bad?
To be honest with you guys it is competitive everywhere after covid. I am applying now and then so I can tell.
it's why you gotta use social engineering
I would say scripting rather than coding. Correct me if I am wrong there.
In my opinion python, C++ and KQL is helpful in blue team roles.
I cant agree more with you lol
ok imma go studdy
Make sure you can efficiently read a snippet.
I meant KQL there however SQL is useful as well in OS query.
i tried coding a few times. with C++ and python
with today's artificial intelligence, you don't need to know much about coding, you don't have to remember a method, a function, or a better way to do them, with the basics you can already achieve whatever you want.
one old code i used, think it was vb
if so n so does this then goto 34 line 34 blah blah blah
AI has a huge room for improvement so I'd rather not rely on it in present.
It's not like you say, do the following and that's it, you can apply as many filters to that code and verifications as you want, in the end you can end up making very good code, and honestly every year it is more powerful, I wouldn't underestimate it so much.
can make a base
or see how it made a gui
or ask it to run your code
i wonder if ai could teach you programming?
yes it can
which AI?
github copilot for example
Good night everyone
good night
ok im going to get to work on this jr pentesting and see what i learn
If you ask yourself the question of whether AI can teach you to program, I feel that you are already underestimating it a lot. People are sometimes unaware that AI intelligence is growing like a sponge and exponentially.
i use to mess with AI and do a lot with it
i'll show you what I made with only AI
A Noir, hard-boiled Detective drama with a twist of dark humor is a tale About Sam Colt & Detective Murphy. Two of the best Detectives in the city. This time they go after a mad man that's killing Buck-toothed ladies of the night, on the streets of Noir City! Story by The Twisted Jester.
lol i made that
The point is that if AI is dynamic with respect to its access to current internet content, it literally has access to any information, course, knowledge that is freely published on the internet.
i see your point
Yeah I’m personally not a fan at all of that very generic content despite being a big fan of film noir style media
Ola Ellie
has quite a bit of ways to go before it’s compelling
Heya, also it’s Hola if you mean Spanish
Eh just a habit
No worries, I’m probably missing an accient character anyways
Btw did you get around to watching Furiosa yet
Nah
ok going to study
we’ll get it on physical media. It’s on my radar but not a gigantic rush
See ya Joker!
sup, cool deal
Heya, thanks c:
Feel like that
It is a large language model, not a large math model lol. Yeah we’ve seen it’s pretty poor at technical tasks since it’s just trying to predict what comes next
well AI is becoming smarter faster and i feel soon it'll surpass what we thought it could do
Well you can make it believe that 1+1 is 36
check out alphageometry from google
That is what I mean lol. It’s trying to conform to language that makes sense
btw Ellie did ya see my last DM
Fair enough, but I do think its ability to perform as a LLM will be subtracted as a result
Really tho they just offset the axis/paper for this shot as fun as it is
Alright I’m going to grab a later dinner, I’ll bbl
Send for fun also
In the above gif no robot's emotions are harmed

Hello.
is violence silence?
they say it's silent but violent
hello function, how was your day/night?
Horrible. I have no meds until tomorrow, couldn't get anything done.
What about yours?
took me forever to go to sleep. i woke up at 8pm and been up for maybe 2 hours
right now studying jr pentesting
i do not like the hat thing. black white gray
don't care for it
yeah
any one can be good or bad
very hard to be neutral
well, i hope you can get them
damn it matt 
i find it so cheesy, nowadays
i believe it did have some sort of application, but now people base their entire personality around it, and i dont see why its based on.. hats
Helloooo
yup
yoooo
Its for non tech folks to let them know our intentions through our hats
yeah buy i feel before anyone really started hacking the first thing they thought bout was getting into places you shouldn't be
i need help\
im talking in tryhackme
Yes sir that's why our first gen were mostly black hats😁
lol ok what's up?
in the room intro to digital forensics
you don't have to call me sir. i never been knighted
my attackbox isnt opening the files needed for a task
Its a nod to old westerns (: It was common for the "good guy" to be wearing a white hat; and the bad guy always wearing a black
oh they're already installed
ik it is
but its not able to open iy
Unzip
First do
ls
ok now type ls
Do ls send photo
i did it
ok what files show?
ok now type in cd /introtodigitalforensics
good to know
then type pwd
nothing
well im the clint eastwood of the old westerns
bruh
cd into the forensics just try it again make sure it has caps or not

yeah its like that
He has a typo .. nothing else
thanks
oh a typo
you're welcome
When you have to type long words .. type few words and pres Tab key
It autocomplete it
ill rmbr that
we didn't get rep lol
Rep+
Thanks
Gave +1 Rep to @jagged otter (current: #590 - 7)
im not crying about it lol
Happy
thanks @weary veldt rep
Gave +1 Rep to @weary veldt (current: #545 - 8)
Typo
lol
im trying alright
need to watch your fingering
No worries bro
lil things like that can cause you to get very frustrated
True
this happens in school asw
i liked the forensics part
Its working bro just had typosss
oh cool
you do know how to open files?
good to know
ok
Lightning McQueen
lol
look at this photograph
oh thats a good movie
it was bad stuff go down in it
really
i did not know that
Gave +1 Rep to @weary veldt (current: #509 - 9)
ok going back to studying
im happy to see how many people are so ready to help each other in here
Ok
ok back to studying
maduro won...
sorry
im bored'\
Then do a thm room
dont wanna
do it, for the sake of being productive
i alr did a room
Try a CTF 😄
i havent completed pre-security yet
The Eternal Blue CTF does a good job at holding your hand through it
sure
i used my 1 hour in attackbox
ahhh I see, didnt realise you were a free user (:
in a few hours ill subscribe
you can always setup a VM and connect via VPN if you dont want to use the attackbox
Virtual machine
right
yeah
my country doesnt allow for a vpn
could be a project for you if you are bored but don't want to do THM, setting up a vm.
oh I see
in THM only openVPN works right
I honestly don't know, I've only ever tried using openvpn as it was preinstalled on the VM I used
is it hard to setup a VM?
nah quite easy. Just downloading the Hypervisor (The program that runs the VM) and then usually going to the operating systems website (usually Kali or ParrotOS) and downloading the relevant VM or iso to put inside the hypervisor
oh sick
so then i wont have to use the VM provided in the room or module
if its the same OS as my VM
Yeah, so the Attackbox uses Kali linux, you can choose to have a Kali Linux VM on your own PC so you dont need to use the attackbox (:
or i could just use Kali as my new OS
no
no to what
its best practice to have it as a VM, or on a 2nd device, never your main OS
why not?
unless you have an old laptop or something that you don't care about
i do
this laptop is almost 9 years i think
some pixels have died
it has a 3rd gen processor
an 8 gen old gpu
The reasoning behind not running it as your main os is that the things you do to pentest / learn can often brick the OS, resulting in having to reinstall / start up a new instance.
its just that with the amount of packages / custom versions that end up being installed it can get quite messy. So its easier to run it as a VM and just keep a backup of a fresh one you can reload if the one you are using gets bricked
the add-ons to the kali OS can slow it down?
if thats the case then wont the same thing happen with the VM
not slow it down, but there is a lot of problem solving. The tools/activities you would be doing with Kali aren't considered everyday use for most users, so there are things that can happen that will break things.
I've had Kali brick on my twice so far, just because I was learning and installing things to try problem solve rooms.
I either did it wrong, or it didnt like how I was doing it and I ended up having to start again.
its nothing to do with hardware, Linux has very little safeguards, with 1 line of text you can tell it to delete everything on your machine.
In the path of learning, it's inevitable that you will eventually do something that breaks Kali, and it's easier to just restart than rather try to fix it.
If you feel you wont make these kinds of mistakes there's no other reason you shouldn't run Kali as your main OS
i c
give it a go if you want, just make sure you have backups of anything important
thank u for this information
any time (:
i have done that many times in the THM VM now that i think abt it
I will be saving this, here is a rep as compensation, thanks
Gave +1 Rep to @weary veldt (current: #472 - 10)
me trying to change the lockscreen background
lol
realism at its finest
if linux is so complicated, why do ppl praise it so much
not complicated, just less rails. If you know what you are doing it allows you free reign, and thats why people like it
sick
yup! there should be a way to install any OS into a hypervisor to make a VM
VM's follow the same principle as VS's right?
Unironically when I uninstalled Windows after using Ubuntu for a while, I had a rough time getting rid of edge
VS?
@long harbor We don't allow surveys like that because we can't ensure our users' privacy is respected
oh shoot my bad man 🥲 , it is understandable sorry mate
Having issue with my windows 10 wifi adaptor code10
i was curious, can you make a living doing bug bounties?
plenty have done it, but that doesnt mean its easy or consistent, it takes a lot of experience, a fair share of luck, and a lot of persistence
In the device manager, right-click on the network adapter and choose "Uninstall device." After uninstalling, restart your computer. Windows will automatically reinstall the driver.
It works for a day and 2 but then it happens again
did you get an update?
Yes sir
this might help you https://www.intel.com/content/www/us/en/support/articles/000031150/wireless/wireless-software.html
Step by step troubleshooting guide for error codes 10, 28, 43 or 45 in device manager of Windows* operating system for Intel Wireless Bluetooth.
Are those the ones who find zero-day or the ones who find existing vulnerabilities and report them to the companies where they found them?
the 2nd
these memes are getting personal
lol
Aruba, Jamaica, oooh I wanna take ya, Bermida, Bahama, come on pretty mamma... Key Largo Montego, baby why don't we go...
Off the Florida keeeeeeeyyyyyyssss....... lies a place called TRYHACKME
sorry, had to
morning
lol
haha it is also stuck in my head
such a great song
xD
I think there is a lot of competition as there are few companies that offer a bug bounty program, very experienced people will have the advantage over the rest.
im just old
maybe i'll get there. one of my goals to at least do 1
my mom from 1982 🤣
kek
It's a long road but I would also like to be able to achieve it.
gives me motivation
The Beach Boys - Kokomo (LYRICS)
Aruba, Jamaica, oh I want to take ya
Bermuda, Bahama, come on pretty mama
Key Largo, Montego, baby why don't we go, Jamaica
Off the Florida Keys, there's a place called Kokomo
That's where you want to go to get away from it all
Bodies in the sand, tropical drink melting in your hand
We'll be falling in love to...
there for ALL of you
❤️
whats your favorite song
aruba jamaica, oh I wanna take ya
my favorite song? i'd really have to think on that. i love all types of music
i think some songs wash brains
If you were told that from today there would be an extinction of songs and you would only have one to listen to for the rest of your life, what would it be?
Not so much helpful..
But thanks
Gave +1 Rep to @jagged otter (current: #546 - 8)
i'm sorry
for me it would be this gem https://www.youtube.com/watch?v=8LhCd1W2V0Q
Official video of Lenny Kravitz performing “Are You Gonna Go My Way” from the album ‘Are You Gonna Go My Way’. REMASTERED IN HD!
Vote for Lenny Kravitz to join the Rock & Roll Hall of Fame Class of 2024! Vote every day through April 26: vote.rockhall.com
Revisit more 90's music videos: https://www.youtube.com/watch?v=xGytDsqkQY8&list=PLjF50Dlp...
sorry i couldn't help
favorite song in general or favorite song i listen to a lot?
No problem bro..i will get it..i love troubleshooting
le me vibing like crazy for listening to this song again: 
Avg day of window users
kickstart my heart eurobeat remix 8)
sfc?
ok boomer
System file checker
wait what... I was thinking of another one
well Kickstart my heart is old(er)
im thinking lol
I thought you meant this one https://www.youtube.com/watch?v=MO_riHVwzC4
While not an original member, Mike Porcaro was a Toto mainstay as far back as 1980. He originally served their touring bass player before becoming a full-fledged member when David Hungate departed after the recording of 1982’s Toto IV.
Initially, Mike’s contributions were subtle. Perhaps it was the tight chemistry he had with his big brother Je...
and was like "dude, that's ooooold school "
xDD
WOOOOOAH YEEEEEEEAH
BAYYYYYBEH - https://www.patreon.com/turboa
Downloads and Instrumental versions:
Downloads https://drive.google.com/drive/folders/1bwcPiaDgdoGHAABSlSwXceyV9xheZVW9
Instrumentals @turboalt
Twitter: https://twitter.com/TurboA_
this is my favorite song: https://youtu.be/dQw4w9WgXcQ
I dunno why I thought of that
sorta makes sense
All Dance with the Dead music and merchandise available here: https://dancewiththedead.bandcamp.com
Goes hard
is searching virus samples simple enough that you can like, just google the hash number?
virustotal
not bad although I am still biased for the eurobeat one
but this is nice too
do they have a way to search via hash number?
lmao
yes
alright thanks
you plan to do?
i was just curious and wanted to search up some viruses via hash number
incase i ever decide i want to do malware analysis, since it seems pretty neat
For that I would use Yara
ill write that down
Me too
Provided to YouTube by Rhino/Warner Records
Yankee Rose · David Lee Roth
Eat 'Em And Smile
℗ 1986 Warner Records Inc.
Bass: Billy Sheehan
Background Vocals: Billy Sheehan
Lead Vocals: David Lee Roth
Drums: Gregg Bissonette
Background Vocals: Gregg Bissonette
Guitar: Steve Vai
Producer: Ted Templeman
Composer: David Lee Roth
Composer: Stev...
Provided to YouTube by Repost Network
The Void · EG19 · sinX
Disease
℗ EG19
Released on: 2021-12-24
Auto-generated by YouTube.
why do people like monero?
the cryptocurrency?
It was considered the privacy coin when it first came out.
i see, i was asking because i saw someone with a T-shirt that was the monero logo with the tagline "come and find it"
when it first came out? has something changed since?
I personally haven't kept up with the cryptocurrency scene since about 2017, so I am unsure. I recall other privacy coins coming out around then but I honestly don't know if they were / are better than Monero now
i see, thanks
.
Can someone explain why this command worked in cmd but not in Run window..
Msdt.exe -id DeviceDiagnostic
Got it silly typo😂
Wasted half of my day
For anyone working in an actual SOC environment: How relevant is knowing how to pentest a system? Or is this most of the time reserved for external companies?
you don't touch anything called pentesting
cool thanks
you sit and watch alarms
was just wondering if there's a chance that you also get in contact with this
but then, if someone performs a pentest on you, you'll have to respond
nope, cause that's not your role
Alright, thank you for clarifying
Are you blue teamer
I am a SOC analyst and engineer yes
I don't have a shift today 
it's tomorrow and wednesday instead
Whats the imp cert for SOC
there isn't really any specific cert you'll have to have, depending really on what you're doing, and using in the SOC
Tools to learn?
again, depends on what you'll be doing, but general knowledge in SIEM tools, about different XDR's etc.
I do recommend going through the SOC rooms in tryhackme
Thanks
Gave +1 Rep to @chilly veldt (current: #7 - 860)
Hey guys
Anyone here who has completed, or almost completed the portswigger web academy?
Why thm made streak rule for free rooms
that the bluetooth option is missing, making you unable to connect to any bluetooth devices 😄
sounds like a driver or hardware issue
is your Bluetooth support built into the motherboard or are you using an external adapter?
Delete the driver then scan the hardware
Go to cmd
Type..
Msdt.exe -id DeviceDiagnostic
Morning THM
Maybe check the events log for anything interesting?
gmorning Vain
Hey can anyone help me out rq?
depends if you ask the question
So I'm stuck at the practical example of defensive security
The inserted IP address doesn't work and keeps notifying me with an error message
What's the error
Hope you guys have a great start into the week 🫶
same to you
Hello, I have a quick question about VPNs: when using a VPN, is the IP address provided shared among multiple devices in different locations worldwide, or does the VPN service typically assign each client a unique IP address?
From what I know is that you share the Address with multiple users connected to the same server in that country so it appears that you are there. The Provider prolly has a range to assign to.
typically multiple people share the same IP
some VPN providers offer residental IPs which appear as if they are from a regular residental area
I believe those are uniquely assigned - or less crowded anyway
but it entirely depends on the service provider
@shadow loom @worn thorn thanks guys!
Gave +1 Rep to @shadow loom (current: #200 - 30)
Even ISPs are doing this nowadays with CGNAT
IPv4 is expensive
Something like $10/ip/yr in bulk
yes ofc
I pay for a unique, static IP
❤️
they get premium service - or at least are not left to die on faulty HW with tech support refusing the possibility
Only 1? Smh
Why use ISP hardware though, just replace it with your own
It all tends to be fairly cheap crap designed for grandmas home
I'm not lucky enough to get free server hardware left and right and start my own private ISP
xD
Do it, it’s fun
Getting an ASN and tons of v6 block is easy
oh no no, you do'nt understand... the HW in the boxes in the streets
V4 is where thing gets spicy
their crap
Ohhhh, makes sense
Luckily my ISP has okay hardware until the ONT / demarc
But I just replaced the ONT and run my own routers
The peering could be better, but that’s what my own ASN is for
guys i wanna make a real time chat website
any suggestions?
suggestions on what?
host or lang
VPS and JavaScript?
yeah
yea
Hello
Love a bit of ASCII art
Howdy folks
pls explain you self ?
A finger, flesh colored, in TPU
@loud marlin
that's slightly disturbing
you and me had different idea of i make finger
nice yea
Also, no need for enclosure 
i made this
https://www.printables.com/model/932744-updated-mag-fed-mini-rubber-band-gun-no-back-hook
https://github.com/safebuffer/CVE-2024-32002
RCE from running git clone --recursive, update your git! 👀
Try bringing that on a plane 👀
im crazy, not stupid
i was on so many flights to know that even mention things like that can get you in serious trouble
even as a joke

there was one job releated travel where 2 of us was escorted by 3x guy from 3 letter agenci. we didnt know who they are but they told us they are on place for our safety
and as i tell all the time. thoes ppl do not have sense of humor
I crave pizza
3 letter agencies? PLA, ABS, TPU?
sl
yo i was laughing so much when this "kid" got on mike tysons podcast and he thought he was a child. That was hilarious af
Watch as Hasbulla, the viral sensation taking the internet by storm, sits down with Mike Tyson to discuss his massive popularity and take on the boxing legend on his podcast. From his humble beginnings in Dagestan to becoming one of the most recognizable figures worldwide, Hasbulla has captured the hearts of millions.
Original Video: https://ww...
There are some good dimesions to that joke
That joke really builds on itself
again... we have different idea of 3 letter agency
KSK?
dheck is ksk
They are German
Lmao
I thought you folks had KSK too, but maybe not.
I like all the English places, SAS make it easy 😄
well... only once, only one joke... if you lucky
that for sure yea
FBI, CIA, NSA, all those agencies... 0 fucking jokes, awkward as hell
Look, i'm just saying, when oyu have unliimited access to flashbangs and boobytrap training, it can be fun
once i ask them to check they gun so i can compare is it bigger than mine gun... 4-5 of them just turn to me instantly
oh... no no no
indeed
If you're approached by DHS..... you're just ultimately fucked
Unless it's for an interview? (the good kind)
lol
first and last time i make any joke ever
So, what kind of guns did they have? 😄
FBI: You're an international criminal
NSA: You're an American citizen. Spying Monitoring in national security
DHS: You're an international or domestic terrorist.
the ones not you god damn business
Morning THM
Hey Vain
could you tell by looking?
Morning doc! How're you doing today?
Hello Vain. 👋
Speaking of Vain
Hi bit! Hope all's well 😄
Morning everyone! Our friend, @gray sonnet , just recently went through a bunch of emergency medical surgeries. He's in need of funds for his college. Any amount at all that you could give, would mean the world to us!
Disclaimer: I have been granted permission to post.
https://www.gofundme.com/f/support-anirudh-dillis-education-after-medical-crisis
better not to tell even if im correct. but main and side weapons are there
And if any of you try and OSINT him, remember, I'm here 
It's ok. I'm tired.
Slept like 3 hours, but got work to do now.
Work work work I see 👀
Also, why in the world is the content of that gofundme in German on my phone...
bros im "cheating" youtube premium with vpn, but exactly because of vpn I get shadowbanned from any reddit acc I make(atleast thats what my research shows). i dont want to slip up for google to catch me and increase price but i also want working reddit account. anyone ever had problem like this?
German on my PC too...
german on mobile
Pls accept that I don't want to see german lang every single site...
This is against their ToS. We cannot discuss it here
this server tos or reddit tos
I tell nvidia that I want to see the site in English.
Next time you're german right? Here.
can we discuss here about what is the logic behind it?
No sorry
okay, thank you for help
Gave +1 Rep to @mossy river (current: #6 - 1294)
Hallo, are you german?
nain
Nvidia: Ja! I thing you are!, Hier take the german site!
how do i use it for THM?

you need istall it on/in VM
install THM in the VM?
Yas, me in German.
so you need to download VMware or VBox app
its showing that i have VBox logs
hmm.. not sure that i follow. you downlaod .iso or what kind of package ?
i dont get what u mean
from kali website. what did you download exactly
i downloaded the VM for virtualbox
this one ?
yes
then you only need to setup network on virtualbox.
so you have kali wotrking on you pc? you are loged in and so on ?
yes
ahaaa
im not sure about right settings and im not on pc right now
https://tryhackme.com/r/access so now you need to go to link and select server you wish. best one that fits you world location
and might this will help you
https://tryhackme.com/r/room/openvpn
so i need to download openVPN?
by default i think is installed in kali
he needs to enable virtual machine to be able to reach internet for it. or is that default settings
default works, just need to run the openvpn command with sudo and should be good
in kali vm in terminal type openvpn --version. something like this need be result
Cool Linux terminal threat I randomly found while bored: https://www.reddit.com/r/linuxquestions/comments/apx4yf/favorite_linux_terminal_tricks/
it looks like i got completely banned from reddit. cant even access without account🙃
tor it is
terminal alias: alias dicker=docker
Region-blocked, maybe.
that is great
i was said it was against their tos to use vpn
now go to that access link i give you, downlaod vpn file for you area
the config file?
and also that im not allowed to discuss this here
I see. That is kind of a weird TOS rule to have, but then you can prolly do little about it...
ok cool
is it possible to discuss this a bit further in dm?
Not really.
There isn't much you can do about it, and I am not withholding any info either.
I see what you did there
They likely have a IP block list for VPN servers, so you really cannot connect.
“Discuss this a BIT further”
Bit is his name and you used the word bit
That’s it pretty much
ohhh...bruh im stupid...i didnt notice that
When you use a VPN, you connect to a server somewhere in the world. Every VPN server has an IP address. Reddit has a list with IP addresses of VPN servers and blocks connections from them.
i dont have a specific app for that file format
Ah wait, you meant the „bit“ thing, nevermind.
that file you copy/move to you kali
it have name something.ovpn
Yours is good
yes
thing is i was able to access reddit a few days ago(withbvpn too). i even made account, but then i got shadowbanned and now i cant even open it with or without account.
ok. so get that file on kali linux in let's say in download folder, or documents. or whatever
They probably updated their IP list.
They have to do that regularly anyways.
im quite mad about that because bots are problem on reddit not vpns
i wasnt able to drag it into kali
then might go to kali vm. go to thm site, log in and then downlaod it
what the discord doing
spais
did you figure it out?
@mossy river
We are not hackers for hire here 🙂
ok
i did it
Are you surprised that Discord is selling your data? 😅
This does not connote to them selling anyone’s data
nowbwhat?
idk 🙂
Please don’t spread misinformation
now go to that openvpn link that i provuide. and do that 🙂
Most “tracking attempts” are often massively generalised. Until you can get a breakdown of what exactly they blocked, take it with a grain of salt
but ialr did it in the VM
first thing you have
Well, maybe "sell" was a bit of a reach.
They do disclose information to third parties tho.
Most companies use third party services 🙂
wheb you downloaded ovpn file in which folder did you drop it
Hi, I was wondering if it was secure to Connect to a public hotspot with THM VPN ?
i dropped it in the terminal
can you find that file in your file explorer software?
Unless you downloaded it somewheres else then you cd that
cd Downloads
Sudo openvpn yourovpnfile.ovpn
i did
Look what I sent
Also you are putting in the format of the command not the actual command
i got a bunch of info
Usually the name of your ovpn file is your tryhsckme username
it is
Yellow
First do cd Downloads
i did that
to check conectivity, you need leave that terminal open all the time, and in new therminal ping -c 3 10.10.10.10. and you need get 0% packet lost
Now do sudo ovpn “YourOvpn.ovpn”
Ignore the quotes
That’s just to emphasize it
sudo ovpn myusername.ovpn?
bro check dm... i sent you instructions...its kinda hectic in here
i did that
What is if giving you?
Also do what ralex said @pale swift
That’s good but idk why there’s 2 sudos but apparently it’s working
Now do ping 10.10.10.10 and if it’s pinging you should be good.
and do not close that terminal. need to stay open
hmm i think this info should be added to the openvpn room. it's not obvious
i think that whole room need's bit update tbh
yeah.. i only knew what to do thanks to the competition
dwhat
I wish I lived in the UK haha
I need to blame my ancestors for stealing bread and ending up in penal colony
why did the UK brexit
that's complicated 😄 better search online, political discussion isn't welcome here apparently
bruh
that seems goofy
oh well, its a learning platform, makes sense to keep things kinda focused on that
but this is random chat
Political talk isn't no.
Because it was voted for
it seems unfair to simplify it like that, i'd recommend researching it a little if you're curious @pale swift
Ok, yourself?
been good, anything exciting going on lately?
The threat actor Stargazer Goblin has created a network of over 3,000 fake GitHub accounts to distribute malware, netting $100,000 in illicit profits.
Not really, moved house so still sorting it out,
Have you done anything cool?
Started threat hunting on my own, still learning but thinking of making my own threat actor profiling and malware db 😄
this suckers don't understand they are undermining themselves by doing shit like this to open source
@sick lance why thm have made streaks necessary to join free rooms
Network rooms have always had it for free users, it's an incentive to use the website to access the networks
Interesting!
Have you you a virustotal sub?
When I started doing rooms back then there were no such rule
I'm trying, there's a weird process to it
had to submit company details and account stuff
even hybrid-analysis[.]com requires vetting process
and I got rejected because apparently, you need to have a prior published research/hunting results online somewhere
How long ago and which room?
Yeah, it's a whole rigmarole, but worth it.
@heady nova hey, can you tell me how to get starting in malware analysis..
I love the constant notifications when something new is added.
Called the company about my computer issues and they said the motherboard just might not support 4 ram sticks…
Umm I’d hope it does
lol oh my god
start by reading windows and linux internals, program a lil, learn some assembly, try reversing challenges on pico ctf and then read a book or maybe take a course on malware analysis and reverse engineering
yup, tryna get myself approved
Strange if it doesn't.
If they ask me to send it back, I'm going to ask them to send me two sticks of 16gb of RAM
I mean nowadays ram comes embedded no?
tell them that you use 32bit cpu. might that can be problem 🙂
Given that I found the problem within 1 day of it coming back and they couldn't find it from having the computer for a whole month..
Thankyou so much..
What do you mean by internals?
No hate or anything but it's clear that they didn't actually perform a full test on the system.
No I meant if it doesn't support 4.
How windows works from user level upto kernel level
same with linux
If it doesn't, it's a faulty motherboard.
It should and all the RAM sticks are identical.
I'm going to test these RAM sticks now.
For the record they’re identical
Is that mean i have to learn how operating system works fully
yup
not fully, but enough to make you understand how processes works and how file creation/execution and configs modification works
Thanks
Gave +1 Rep to @heady nova (current: #215 - 27)
That's the RAMs I have in my PC.
Do you have 4?
luxurious, i have 16 in total
What mobo do you have?
X570 AORUS ELITE WIFI
Ahh
If you had the same mobo my problems would have been solved so fast 😂
Thank you though
what's your mobo jabba
mobos do have ram compatability i.e. up to a max of mhz or DDR3/4
like for example I bought DDR4 4200 earlier in the year and then found out it only supports up to 3200 (but usually it just means that your mobo should just clockdown (i.e. 3800mhz and not 4200mhz to what it can support and not ... die but y'know)
Anyone here who is in cyber security?
DDR4 B760m-a plus wifi
My problem is that I have used 4 sticks for about 6 months
I am beginner in cyber what should I learn and how can I find resources
Beginner path tryhackme
I’m testing the two ram sticks that I thought were broken rn
And then I’m going to test the other two slots on the mobo
If it fails we know it’s probably a mobo issue
If it only fails with 4 sticks then I have no idea
yeah test them in different configs but also do one at a time and see how it goes. if all 4 individually work and then suddenly fail when it's a combo then probably mobo doodoo
Yeah I’ve tested them individually
But I haven’t tested just the 3rd and 4th RAM slots alone
It wasn’t always like this though. It worked for a while with 4 RAM sticks in. Out of nowhere started bluescreening
If it’s just the two slots that are busted then I can manage with only two working ones
I can’t go another month without my PC
Just disappointed that they didn’t perform a full test on the machine
I had something very similar start happening with my partners PC, it was randomly bluescreening, I thought the ram wasnt seated correctly after I moved it around a bunch, i took two sticks out and its stopped. I suspect its a heating issue, the case isnt necessarily small but the distance between graphics card, AIO cpu cooler in the front and RAM were all kind of close.
I added additional airflow and it didnt help. I'm just now wondering if it could also be a power issue
Ahh OSINT, how you are so very useful in a mundane job
There’s absolutely no reason for my computer to bluescreen other than it being a faulty mobo
I had a power issue when I upgraded graphics card.. just too little power. 650w is not enough. lol
Other companies laptop we got on accident, went to their site to see who to email about it... down for maintenance, throw into Waybackmachine, got the info
matt... you done with finger ?
ahaaaa
skill 🙂
YAY shadows computer now beeps during boot up
beep beep im a sheep
Why would you want that to happen?
safety check
if the beep code changes something is wrong
also it is haha funny computer is thinking and doing stuffs
Do you know any CTF rooms with wordpress except jack,Wordpress: CVE-2021-29447 room. i have used search functionality but i don't find any new. Any suggestion will be appreciated
hmmmm most of the major ones do something php but dunno which are wordpress
Disabling xmp stopped the blue screening but that shouldn’t happen
Well, not the bluescreening
Just let the computer boot
googling xmp and blue screen i found a couple of posts people blaming BIOS being the issue
Someone say blue screen? 
Trying to change the timings
shadows ram works with amd expo no problem
ran a 12 hour and 50 mins of memtest86+ to test if it was stable and working correctly
9 passes 0 errors
then again shadow paid for a ram kit that was marked as expo/xmp verified
is the time shown at the top of the rooms supposed to be the time it should take you to complete the room?
Yes.
What are you yapping about?
smh
when the 20 min room takes you 2 hours
d what

Looks ordinary to me
you are not verified
the boosting badge stays for a while after your nitro expires. You can also boost without subscribing
he is talking about these:
more impressed with the active developer badge to be honest
Don't have the quest badge smh.
But look at my awesome crown
can't really get those on linux
I’d take a crown over a boosting badge any day hehe
Do you need to make a discord bot to get that badge?
Not really
Ps4.
You join the program and just turn a bot on, barely needs to have any code
hi Jabba the Hutt
❤️
Do I have to reverify everytime my level increases or does it just take time
can you please write my name on it
24 hours
it updates once every 24 hours but reverifying is quicker
I see. thx
We’re working to make it faster 👍
Time to SQLi
unrelated to the hecking but any tips on what to do when my iphone suffers water damage and keeps flashing the apple logo?
let it dry for a week
and absolutely do not plug in the charger while it is in a water damage state
do i just wait for it to run out of juice?
¯_(ツ)_/¯
depends on how quickly it dries
I don't think you were targeted, no.
Water damage is kinda tricky. If it doesn't dry out and you don't have AppleCare +, then you might be SOL.
sooooo the metal in coaxial cables is worth a tiny bit of money
We used to put water damaged electronics in say.. rice.. in a bag. Or anything that will absorb moisture... to help it dry.
Not sure I would recommend that anymore. Might get rice dust inside and cause more damage.
yeah exactly
I use silvica gel packs.
the rice trick is helpful sometimes and dangerous other times
that is probably safer
i agree with louis rossman's (yt) view on apple's policies. if i was cursed with the ownership of one of their products i would always get them repaired in unofficial shops
Would you guys say in order to be a good Blue teamer you need to be a good red teamer or vice versa? Because these positions go hand in hand right?
Could you be good in either part and not so good in the other?
Forgot my hackerone password and I need my phone to login to the email the reset link is sent to
fml
It helps to know both sides.
For example, a former blue teamer now red, will know what to avoid in areas that blue team check.
Good point, and a former red now blue will know what parts might need checking
Hi
Hello
How are you
I'm OK, you?
Fine
anyone know how common XSS vulnerabilities are?
happy monday all
fareli köyün analcısı
Hello, welcome to THM, for moderation purposes, this is an English only speaking server.
ah lanet olsun adamım
okey man
pretty common
https://owasp.org/Top10/ injection
OWASP Top 10:2021
@boreal scarab Merica https://open.spotify.com/track/3Rfre3qkrhwdZZ7dyznwbN?si=Nq1Z8OXYThu0eAgdA0oW1A&context=spotify%3Aalbum%3A4tU0FNnuiBD1P6IRTARHww
hello hackrmen
Hi
Nothing screams Merica (Excluding the national anethem) like https://open.spotify.com/track/7GkM8M2EC8OJblOxQxAR7t?si=miuR5uJrTFm3lkeFhwoRmA
Hi
is thm equal to htb academy?
Hello there 👀
hi
both are very good
i was just trying to figure out which one teaches better
How's it going?
whats a good resource to look at XSS payloads in more detail
frack my life =/
if you have enough money use both, I personally prefer THM, I have tried HTB academy very little but it is also very good
i wonder if you could get the cert from htb using thm
Better than yesterday 😄
hi
how u doin?
i'm doing ok
good to hear
yes
cool mask
Yay
so they're both equal, i prefer thm for now at least. then go into htb later
htb?
hack the box
HackTheBox
note that HTB Academy and HTB are not the same
i see
yeah, i know. I meant the academy
is there anyone here that is willing to hack to help me
With?
account recovery ive tried all options and hacking is the last solution i got i tried asking others but they refused without pay and im broke
This is illegal, and we will not be helping/teaching/discussing..
Try contacting their support?
discord no help
We can't help. We're not hackers for hire. And as Scrubz said, it's illegal.
I wouldn't say it was worth the shot...
Asking to hack a discord account on discord is an interesting strategy lol
i used stones to destroy stones
@naive violet yo James I tried the builders tea and it’s actually fabulous. The milk and the black tea go great together.
@loud marlin do you use kali as a bare metal machine or on a VM?
bare on spare laptop
ah, got it
You actually drank tea the proper way
lenovo yoga that i hate his soul
indeed. was case in mine also
.....
Hii
I still need to replace my laptop
it never recovered from me falling on it
welp this games xp curve is unforgiving
aside mbo usbC burn, memory fail and so on
