#general

1 messages Β· Page 328 of 1

gray sonnet
#

happened to me twice...first time it was under warranty, second time it wasn't, so I didn't bother getting it fixed

crude stump
#

Awsome

gray sonnet
#

my wifi card failed kekw

sand trench
#

wide people falling on laptops bricks them permanently.... more at 8 o clock

gray sonnet
#

Breh kekw

loud marlin
silver sky
#

Slipped on a fence, landed on it in my backpack

gray sonnet
#

well I don't have a laptop anymore (new one kinda blew up), so I don't have to worry about falling on mine haha

silver sky
#

Reminder to not trust metal fences in the rain

shy bough
#

What's the most 'applicable' certificate i can get to prove my education if i was to look for jobs in cybersec

#

like how best to prove experience

gray sonnet
#

OSCP

#

OSWP

loud marlin
#

i get it and after 5ish days usbC failed. then after 3 weeks they changed mbo, then gpu, then screen 2x in row

gray sonnet
#

any other laptop >>>>>>> 360 laptops

sand trench
#

Today, we're installing the very first Arch Linux from 2002, version 0.1! Let's delve into Linux history in the most painful way possible - full install on original hardware!

LINKS:

🍎 The install Gist: https://gist.github.com/Alee14/e32a44e53d910a4cf5802e0c59d78061

(Amazon links are affiliated links)

═══════════════════════...

β–Ά Play video
loud marlin
#

then they return money... and i guess due to miss comunication they send back laptop as "failed" and i turn it on after soem days and he works

gray sonnet
#

lmfao

#

I didn't even get my money back

shy bough
twin ridgeBOT
#

Gave +1 Rep to @gray sonnet (current: #107 - 63)

loud marlin
#

taking hostages can solve problems

shy bough
#

and these are exams you pay to take, if passing getting certification

gray sonnet
#

yup

#

you also get training material, so you can study from there

#

you can pay for labs to practice before taking the exam

shy bough
#

Would thm prepare me well enough to take these, of course i'd need to study further but as a base

gray sonnet
#

it'll get your foot in the door, but you NEED to take their training for the exam

#

you'll get it anyway if you purchase the exam πŸ€·β€β™‚οΈ

coarse moth
#

Why are AWS Rooms so expensive?

shy bough
gray sonnet
loud marlin
#

looks nice

shy bough
gray sonnet
#

is your...browser translucent πŸ‘€πŸ‘€πŸ‘€πŸ‘€πŸ‘€

loud marlin
#

fiber,tv = 65e cca

shy bough
#

kinda expensive no

#

in london its 43 euro

#

can get cheaper

eternal timber
gray sonnet
#

Awesome!

sick lance
loud marlin
#

wifi or cable ? i did on wifi

sick lance
#

That's WiFi.

loud marlin
#

nice nice

sick lance
#

Got like 9-13 Ms for ping.

shy bough
#

ah i cant share mine

loud marlin
boreal scarab
robust shoal
#

hey ]

#

I need help with two questions. Sometimes security policies can't be followed because of business needs. What avenue does a security engineer have to fulfil business needs in these cases?

#

What philosophy, if followed, provides the most Return on Investment (ROI)?

loud marlin
#

where that q comes from? THM room ?

coarse moth
loud marlin
#

depend on game

mellow pulsar
sick lance
#

You should be having a lower ping than anything.

#

However with my speed all my layers got CoD get downloaded OK while I play

clear jackal
robust shoal
#

its from TryHackMe, Security Engineer Intro lession

#

lesson

clear jackal
#

Ah OK, for help with THM content, #room-help is the best place to receive assistance

pale swift
#

wazzup

loud marlin
#

sky

pale swift
#

what

loud marlin
#

sky is up\

pale swift
#

ive used this many times

loud marlin
#

cool

crude stump
shy bough
#

how do i get verified here?

royal dragon
#

Jabba, mind if I DM?

#

..or any mod..

crude stump
sharp citrusBOT
#

I could not find an article, please try again.

crude stump
#

HAHAHA

loud marlin
#

dheck lol

crude stump
#

Seems like the bot likes me more πŸ€·β€β™‚οΈ

#

Don’t hate the player hate the bot

shy bough
#

d

shy bough
twin ridgeBOT
#

Gave +1 Rep to @crude stump (current: #80 - 84)

crude stump
shy bough
mossy river
boreal scarab
#

Shoulder is kiiiilling me

#

Move my arm backwards, nothing but pain.... I hate getting old

#

I dunno doge_cry

shy bough
#

with a band

boreal scarab
sick lance
#

Ah Jabba got em

royal dragon
#

All good, thanks Scrubz

shy bough
#

the stretches are really easy

#

The cable external rotation is a great rotator cuff exercise for rotator cuff strengthening. Visit http://hasfit.com/exercises/shoulders/ for the shoulder workouts instructions, more videos, free meal plans, and other health tips. http://hasfit.com for the best free deltoid workouts, rotator cuff workout, shoulder exercises, and rotator cuff exe...

β–Ά Play video
#

if you don't have access to a gym you can use those big rubber bands

#

against a pole orsomething

boreal scarab
#

I didn't mean that kinda muscle, both arms are equal in muscle... I meant like the ACTUAL muscle

shy bough
#

then your muscle will rip right off your bone

jagged otter
#

does thm have more on learning linux commands?

shy bough
#

and you'll have a black bruise covering your entire torso for months

fleet turtle
boreal scarab
#

Muscle go bye

fleet turtle
molten sky
#

shouldn't have crashed

shy bough
#

life go bye sometimes too

molten sky
#

obv

#

^ not at t1 lol

boreal scarab
fleet turtle
#

are there any christmas CTFs or something?

#

im not too sure what advent of cyber is

boreal scarab
#

Spleen went kaboom, rib went crack, and muscle went bye bye

molten sky
shy bough
molten sky
#

either that or cyclist's fault

boreal scarab
molten sky
#

when was this anyways

boreal scarab
#

No India trips for me... or any place with Malaria

#

I go there, I go take a dirt nap

fleet turtle
#

i dont think i would go to places with malaria even though i have a spleen

boreal scarab
#

Aaaaaaaaand changing subject cause getting dark

fleet turtle
#

ohhh thank goodness there is a metasploit module

boreal scarab
fleet turtle
#

there is a module for everything

molten sky
#

even malaria?

#

damn

boreal scarab
shy bough
#

defnitely try stretch something and get a little blood in your arms before lifting again

molten sky
#

still alive

boreal scarab
#

@royal dragon I saw you. You can't hide from us

molten sky
#

still breathing for the most part

crude stump
molten sky
#

@royal dragon x2

royal dragon
#

Was just checking something..

#

I'm not really here

#

πŸ‘»

jagged otter
fleet turtle
#

but experience is honestly the best, for learning linux

boreal scarab
#

Other than that. I'm all good in da hood

solar skiff
#

hi who speaking spanish

boreal scarab
jagged otter
twin ridgeBOT
#

Gave +1 Rep to @fleet turtle (current: #880 - 4)

fleet turtle
#

wooo rep

jagged otter
#

lol

#

had to give ya rep! lol

fleet turtle
#

lol

#

+rep @jagged otter

twin ridgeBOT
#

Gave +1 Rep to @jagged otter (current: #510 - 9)

jagged otter
#

thanks!

boreal scarab
#

Still feels weird that @royal dragon doesn't have a HTB Ambassador rank, but Emma does πŸ€”

#

That's a fake G0blin!

royal dragon
#

Just here to hang, like other servers I've joined recently

solar skiff
#

What are they doing on this server?

fleet turtle
#

man i was thinking of doing the offensive security path before jr pentester but now that i look, it seems like the offensive security path is more to reinforce learning

jagged otter
#

after 2 of the ones i went through, i went into jr pentester

boreal scarab
royal dragon
#

stops self from typing something similar

#

πŸ˜…

jagged otter
#

im like a hair away from lvl 6

solar skiff
royal dragon
#

(I wouldn't, just trying to hang in other communities regarding infosec)

normal fable
#

My Internet is down... πŸ˜‚

fleet turtle
#

i feel like i might need to subscribe before i can get to 0x4

sick lance
jagged otter
#

how did you make it that far without subscribing?

normal fable
#

Tree cutters broke the line.

fleet turtle
#

doing the free bits of a few paths

sick lance
jagged otter
shy bough
#

without paying

#

i couldnt finish my module so i caved

fleet turtle
#

is there a way to filter modules by just, free and not free? πŸ˜…

fleet turtle
shy bough
sharp citrusBOT
fleet turtle
#

do you need to get a specific rank to reach advanced channels?

boreal scarab
fleet turtle
#

so there is even more of a wealth of content on this website, i just dont have access to it yet

normal fable
fleet turtle
#

wow, i can really learn everything there is to ethical hacking on this site

boreal scarab
shy bough
#

where do you check your progress till the next level

#

i found it once and i cant find it again

boreal scarab
#

Dashboard

sick lance
#

Still the same place.

shy bough
#

thank you

#

i was looking at my profile

normal fable
boreal scarab
shy bough
#

no pun intended

coarse moth
boreal scarab
sick lance
#

I can tell you.

boreal scarab
#

Scrubz, no. I gotta change my name anyways lol

jagged otter
#

bet it starts with a D

fleet turtle
pine stratus
#

Where is fluff me 😭 ?

boreal scarab
fleet turtle
#

i see i see

jagged otter
#

i should've made mine turdhead

fleet turtle
#

can always change it

boreal scarab
jagged otter
#

beer eyes?

boreal scarab
#

Beer rise

jagged otter
#

oh ok likein cheers or skol

boreal scarab
pine stratus
boreal scarab
boreal scarab
fleet turtle
jagged otter
#

dang scrubz

#

prolly reading books

umbral bay
#

Incorrect account. πŸ˜‰

jagged otter
#

im so close to lvl 6 it's crazy

mossy river
#

Usernames are case sensitive

sick lance
#

Tim knows.

coarse moth
jagged otter
#

please take the hippie heart flower off me PLEASE

sick lance
#

My thm name is .Scrubz

remote jewel
#

any1 run into this problem on mac?

jagged otter
#

the flower

#

by this name

#

looks like a heart

umbral bay
remote jewel
jagged otter
#

blah

#

time is on my side...yes it is

remote jewel
jagged otter
#

ios or android?

coarse moth
boreal scarab
remote jewel
#

Fixed it

#

we back baby

jagged otter
#

i have respect for Tim, that guy did some bad stuff and became a toolman

remote jewel
#

had to stop the process, seemed to be frozen

thin vigil
#

Has anyone had any luck writing app armor / SeLinux with llama 3 8b?

jagged otter
#

from smuggler to tv . i dunno how he did it

fleet turtle
#

i dont know much about tim but he is helpful

jagged otter
#

oh im talking bout the famous guy

#

from the tv show

fleet turtle
#

well the thing is i dont know ANY tim πŸ˜†

#

be it from shows or, anything like that

jagged otter
#

tim the toolman taylor

#

he ran drugs n guns got caught went to prison then got into movies

#

i don't know how he did it

#

but great turn around

thin vigil
coarse moth
jagged otter
#

that's the one im talking bout face

#

but i don't think its him

#

but i do respect that guy

#

i am way to sleepy to search for flags

jagged otter
coarse moth
jagged otter
#

i dunno

urban ravine
#

Hellooo

jagged otter
#

i'll say this, i think most of us have a past and sometimes we just try to keep those things where they belong, in the past

urban ravine
#

Hows everyone?

jagged otter
#

tired

urban ravine
#

Ah same

wide quarry
#

Hi

urban ravine
#

Pretty sleepy right now but sleep is a real struggle

jagged otter
#

its close to 4pm i been up a long time

#

united states

urban ravine
#

Its 10pm here

rapid merlin
#

hello

urban ravine
#

England

#

sadly πŸ₯²

#

aha

fleet turtle
#

starting my first attackbox

jagged otter
#

imma bout to attack my bed and look at my eye lids

fleet turtle
#

real

jagged otter
#

see all of you later

coarse moth
oak river
#

Any tips on how to refresh the knowledge on the paths that I haven't looked at for al ong time

#

But covered a lot of material and did a lot of tasks?

#

I usually just restart my studies, but it's so agonizing

golden oxide
fleet turtle
#

probably not very... practical

oak river
#

Why delete account

#

There is such an option

fleet turtle
#

i would just re-read the material and identify what category it falls into, and reinforce it with a room that matches that category

#

i dont believe there is a way to reset progress without entirely deleting your account

oak river
#

There is

#

Wait

#

Let me re-check

#

Yes, I have to reset hand by hand

#

I cant completely do it

fleet turtle
#

yikes

oak river
#

Yeah, that would be a potentially nice feature

#

To reset progress

golden oxide
fleet turtle
crude stump
crude stump
golden oxide
languid gate
crude stump
golden oxide
crude stump
mellow pulsar
#

How do you guys handle passwords? I am lazy and have been using the same two three passwords since I was about 14 (30 now) and I know that several or all passwords are leaked but for my most important stuff I have 2-way authentication.

Do you guys use password vaults or such or how do you handle it?

wild rose
#

You could use BitWarden or KeePassXC Password Managers

mellow pulsar
#

Ok, I have started using bitwarden. Just need to start using it more I guess πŸ˜„

eternal timber
#

or just set passwords that you forget and have to reset constantly

mellow pulsar
copper locust
#

am gΓΆt

wild rose
mellow pulsar
oak river
#

But nvm

#

I'll handle somehow

wild rose
vagrant bison
#

PM from ngrok here. Just so you know, we do autoban anyone using those tools to phish with ngrok. we also put an interstitial page in front of all free accounts to help protect users from phishing attacks.

gray sonnet
#

I don't believe you're ngrok

#

@mossy river

#

I smell something phishy here kekw /s P.S sorry for the ping

mossy river
#

If they want to verify themself, they can drop me a DM πŸ™‚

blazing granite
#

VainXploits πŸ‘‹ how are you?

sick lance
blazing granite
#

Scrubz!!! how are you?

outer rivet
#

Life be like

sand trench
#

2 hours of control ultimate edition played today
what shadow learnt so far: they suck at dodging enemies attacks

sand trench
#

ello ello heap

eternal timber
#

did too much THM today

sand trench
#

anyone know why windows relies on file extensions still for figuring out the file type???

#

and why they hide the extension by default??

boreal scarab
#

Test

fleet turtle
crude stump
#

Longest πŸ¦—

lone thistle
crude stump
#

Let me just break the silence rq

fleet turtle
#

i wish CTFs played out like they do in Mr. robot

sand trench
lone thistle
#

I agree

sand trench
#

then again microsoft keeps chasing weird things

slender scaffold
rare cargo
#

hi i have a problem and i have to help me

indigo palm
#

morning

#

been a while since I dopped into THM, forgot my name was that

devout palm
indigo palm
#

ey up!

fleet turtle
devout palm
indigo palm
#

would love a cuppa

rare cargo
#

i Keep getting disconnected but in the same time the openvpn still conacting

#

thanks bro

twin ridgeBOT
#

Gave +1 Rep to @fervent meteor (current: #354 - 14)

sharp citrusBOT
devout palm
twin ridgeBOT
#

Gave 1 Rep to gh0st8yte (current: #2157 - 1)

indigo palm
#

nearly 10AM, it'll be brunch soon, not brekkie

devout palm
#

You get up early mate

indigo palm
#

working

devout palm
#

I see.

indigo palm
#

plus I get to clock off earlier if I start earlier

wooden spruce
#

i cant acces vpn on windows 11 it says connection time out any idea how can i fix it?

fleet turtle
#

anyone have a good room for learning/identifying hashing algos?

pearl raven
#

There a few different ones.

fleet turtle
pearl raven
#

Ah sorry, I didn't realize lemme look for another.

sand trench
pearl raven
#

^ and maybe Hashing - Crypto 101

fleet turtle
#

i will do Hashing - Crypto 101 once i get a subscription

pearl raven
#

Fml, sorry I forgot about the subscription

fleet turtle
#

lmfao

sand trench
#

oh right....

fleet turtle
#

i thought it was a free room until i clicked on it and wasnt able to view the contents

sand trench
#

keep forgetting to check those parts

fleet turtle
#

but i do want to re-learn whatever SOC 1 taught me about MD5 and SHA2

#

since i dont remember much about those, and i dont know any other hashing algos

#

oh wait

sand trench
#

this helps a lot and is free

fleet turtle
#

the cryptography module should be sufficent when i get a subscription, right?

sand trench
#

yeah

pearl raven
#

It'll be a solid start, sure.

fleet turtle
#

works for me

#

so i will keep that and Crack The Hash 1-2 in my back pocket

sand trench
#

crack the hash level 2 goes into detail on how to idenitfy hashes and how to crack them and make custom wordlists

#

i.e it is more of a walkthrough rooms with hash cracking challenge at the end

fleet turtle
#

right, ill take a look sometime, thanks

#

+rep @pearl raven

twin ridgeBOT
#

Gave +1 Rep to @pearl raven (current: #137 - 52)

fleet turtle
#

+rep @sand trench

#

oh cooldown

pearl raven
#

No need to fire rep my way dude, happy to help.

sand trench
#

anyways shadow is now gonna go for the meep moop sleep sloop to the beep boop

pearl raven
#

Night, shadow.

devout palm
#

Nighty night

bold umbra
#

Are you able to read files on SMB? If so, how

devout palm
#

You need to download (get) it first

bold umbra
#

But I'm not too familiar

fleet turtle
#

im surprise that the red team path only has intro to c2, does anyone know any paths that go more in detail about c2/persistence?

boreal scarab
#

Hmmmmm

crude stump
#

This. The lab doesn’t tell you but you have to use the less command to read files. I had the same problems stuck on the lab

buoyant tree
#

hullo

bold umbra
#

Figured it out, thank you guys

buoyant tree
#

Isn't it better to just convert it to text since that still ends up with some garbage

civic locust
#

hey im new to cyber sec but i was wondering if anyone would like to try working on a bug bounty together to learn of each other and earn money at the same time fair warning im new and not that great.

stray tapir
#

I'm pretty sure bug bounties are quite advanced for someone new

devout palm
#

How do you read a file in smbclient session directly?

buoyant tree
alpine herald
#

Am I missing something - what do I have to do to be able to have access to the KOTH channel? Thanks!

sharp citrusBOT
alpine herald
#

Thank you!

eternal timber
twin ridgeBOT
#

Gave +1 Rep to @fleet turtle (current: #750 - 5)

buoyant tree
#

Hmm, didn't know that. Always used get then cat

#

fair

#

oscp has a few weird rules

civic locust
#

@stray tapir im still fairly competent i have found at least 1 already although it was just a simple idor its still something i just mean ive only recently started as of this year

#

@fervent meteor lit just shoot me a dm if you ever want to then

coarse moth
#

same

#

I'll take a look at that idea

#

thank you

#

and do you know if those ethernet to usb adapters really work?

#

??

eternal timber
#

level 5 tmw

#

πŸ¦…

stray tapir
stray tapir
normal fable
#

Usb Ethernet adapters are handy. I always carry one in my bag.

stray tapir
#

Fr

normal fable
#

And a USB to USB-C adapter... Lol

coarse moth
stray tapir
#

Actually

buoyant tree
stray tapir
buoyant tree
#

Only seen chromebooks without one

stray tapir
#

Power over Ethernet (PoE) describes any of several standards or ad hoc systems that pass electric power along with data on twisted-pair Ethernet cabling. This allows a single cable to provide both a data connection and enough electricity to power networked devices such as wireless access points (WAPs), IP cameras and VoIP phones.

normal fable
buoyant tree
stray tapir
#

Idk I'm not a poe expert

normal fable
#

My Dell XPS only has USB-c and no adapters..

buoyant tree
#

that hurts

#

I'm already tired of laptop's having less ports and having to use a USB hub at times

normal fable
#

Had to buy one for work.. of course on the work Amazon account. Lol

molten sky
molten sky
#

thinkpad/framework all the things

normal fable
#

They don't pack them anymore at all.. used to.

molten sky
#

it was a requirement before to be taken more than 3% seriously

#

now they can get away with screwing everyone cause nobody cares

normal fable
#

And now... No serious..

#

At least. Dell...

buoyant tree
#

oi @molten sky , need a few stupid yet smart ideas, currently sick and too tired to game right now and need some entertainment

normal fable
#

My Asus came with.. all the ports. 🀣

molten sky
#

(specifically, mine)

buoyant tree
molten sky
#

is pain i mean it's fun

buoyant tree
stray tapir
#

My Asus has a headphone jack 😎

buoyant tree
#

I know you're recruiting babies straight from the hospital

molten sky
buoyant tree
stray tapir
#

Laptop

molten sky
#

@buoyant tree double-quarter life

buoyant tree
#

I haven't seen a laptop without a headphone jack yet

molten sky
buoyant tree
buoyant tree
molten sky
normal fable
#

Double quarter pounder with bacon and cheese?

buoyant tree
normal fable
#

Tylenol and rest.. high fever..

buoyant tree
stray tapir
#

No more all nighters for you

#

Gotta sleep

normal fable
#

Keep an eye on it. 104f is ice bath time..

buoyant tree
#

Slept a lot already

normal fable
#

Or hospital..

buoyant tree
normal fable
#

Me too

#

Tylenol is supposed to help with fever

buoyant tree
# normal fable Or hospital..

Nothing serious, already went to doctor. Just the Flu or some common thing which only solution is to feel like crap for a few days and rest

normal fable
#

At least that's what doctors tell me.

#

Ah.. been there.. not for a while but I still remember....

molten sky
#

i need a beer or three

stray tapir
#

This is unrelated to anything.

#

But I recently found out that you can use udisksctl to mount storage devices without root

#

Pretty useful

#

Saves me from having to type my password in 100 times

molten sky
#

me 3

sinful moon
#

but glad you found another solution

#

I just got back from the theater for the new Deadpool movie since my Dad is in town, had movie theater beer for the first time. Was an odd experience

#

been at least 5 years since I've been to the theaters

#

sure didn't have beer, assigned seating and VIP seating my last time lol

#

Yeah movie was a decent time, not quite as good as Deadpool 1 and 2 but it had a ton more ground to cover, and as Kojima put it, it is "fifth wall breaking" lolol, in that it's refercing multiple movie studios and actors by name instead of just 4th wall breaking the MCU

#

Good movie

sinful moon
#

Just never been that big of an issue for me, typically just plop them in /mnt, but it's infrequent I need to manually mount

stray tapir
sinful moon
#

nice qemu based hostname btw lol

stray tapir
#

if you specify it in /etc/fstab you can let people mount drives without root

sinful moon
#

Makes sense, although yeah typicallty that's where I put stuff like temp /mnt/usb and similar requiring root anyways

#

I guess more properly /mnt/Windows when I have one lol

stray tapir
sinful moon
#

that's as much as you'll get lol

buoyant tree
#

thanks, been trying to avoid spoilers ever since it came out

stray tapir
#

i dont trust spyware on my host os.

sinful moon
#

Totally fair, I have a good bit of experience with qemu/kvm, and have been having fun with UTM (with JIT) on iPad as of late

stray tapir
#

I'm actually learning how to use libvirt on my server rn

#

using virsh and all to manage them

sinful moon
#

Proxmox or straight up?... ah okay

stray tapir
#

ik theres easier ways to do it

sinful moon
#

Yeah I used the virt-manager GUI to get my start, but frequently dipped down to raw qemu for PowerPC emulation needs and similar, only a bit of experience interacting with virtsh and libvirt raw

#

Proxmox is what I ran for a while before building my VMware ESXi server... just in time for them to crap the bed lol

#

but Proxmox is an equivlant solutino to ESXi and vSphere in terms of full on VM server

stray tapir
#

I havent touched vmware yet

#

maybe i should just to get some experience

sinful moon
#

Virtual PC > awful time with Virtualbox > VMware Workstation Pro > virt-manager > Proxmox > back to VMware with ESXi server was my very rough timeline from the mid 00s to now

#

VMware is nice but they really messed things up with the Broadcom deal, or rather Broadcom messed it all up

#

but hey, VMware Workstation Pro is now free for personal use πŸ™ƒ

#

It's still good experience since plenty of orgs running ESXi servers to host their on-prem or datacenter infra still

#

All of our Windows server enviroments for our clients at work are just hosted by an ESXi server, a cluster of them for our largest

#

But Proxmox also has clustering, just not quite as widely used in business vs homelab, but that's been changing

fleet turtle
#

when i first got into any virtualization software i was pretty young so whatever experience i got, i assumed everything would be like that, i had first used kali linux with virtualbox and it was very laggy, so i assumed it was a problem with kali linux, and didnt use it in any virtualization software for a while, until someone convinced me to try vmware, which was fantastic

sinful moon
#

They're both level 2 hypervisors which doesn't help, (although virtualbox can leverage kvm on Linux, but we don't speak of Oracle software in this hosehold)

stray tapir
sinful moon
#

But yeah VMware is generally the better supported and more robust, especially in terms of running retro OSes which is a big focus for me

stray tapir
#

I never gamed thought bc it was laggy

fleet turtle
stray tapir
#

better to use proton and linux than a windows vm lol

sinful moon
#

You can get PCI passthrough going quite well, but yeah, you beat me to that statement

#

No real reason to anymore

#

wanna see my complete overkill home server? lol

stray tapir
#

sure bro

sinful moon
#

I got this beast, not rackmount (at least atm) because we don't really have the space lol

stray tapir
#

dang

sinful moon
#

PowerEdge T430 with both Xeons socketed

stray tapir
#

mine is just a used office computer off of ebay

fleet turtle
stray tapir
sinful moon
#

Yeah I went kinda overkill but it's a VM server and is doing frequent video encoding and ripping for our blu-ray ripping pipeline

#

so it does get a good bit of performance thrashing

sinful moon
#

also yeah kind of a secondary large bit of storage after our NAS which is really our main media library and etc, but no issues with gigabit between them

stray tapir
#

I do jellyfin, a nginx site, libreddit, searxng, and minecraft (in the past).

sinful moon
#

ESXi/vSphere to host, Plex/Jellyfin most importantly, multiple encoding/ripping VMs, many weird VMs I have just for fun. Honestly I have a ton of plans for self hosted projects on there but I've not used it as much as I had hoped

#

mhmm the SO uses it to host game servers quite often as well

fleet turtle
#

unless they host a site

stray tapir
#

I quit hosting minecraft because no one was playing + I didn't want to have a security hole sitting on my system

sinful moon
#

I do have a good bit of experience with docker, self hosting and more but I'm often too wiped out from my IT job to focus on more lol

stray tapir
#

I use a bit of docker but I perfer podman

#

i like their idea of rootless containers

sinful moon
#

Totally fair, I'm just more using it due to being ideal for work and etc

stray tapir
#

I use debian for my host distro

buoyant tree
stray tapir
sinful moon
#

Boss tells me he wants to host three websites for legacy clients who are too cheap to move to our recommended vendor

Slapped this together as one of my first real Docker projects of my own

#

I’d go with Trafik vs Nginix Proxy Manager these days tho after more experience however

molten sky
#

love the rootless vs rootful switch but it's got some work to do

stray tapir
#

yeah podman is weird when it comes to some containers

sinful moon
#

Yeah and there are some ways to do rootless Docker but it looks like a big pain, but for sure a concen of mine

#

I'm just happy our EDR at work is actually a bit over eager about container escape scenerios lol

#

had to exclude a good bit of known good stuff after False Positives

molten sky
#

containterize your containers just in case someone escapes one

sinful moon
#

lolol

stray tapir
sinful moon
#

Interesting my EDR actually has a k8s option, but as you can see above, yeah I don't need to scale lol

#

I hope you are joking lol

stray tapir
#

using libvirt to run a vm to host podman containers

sinful moon
#

No that's normal

#

Reflects actual production workloads

#

the above Docker Compose setup is just a Virtual Private Server setup at DigitalOcean and as far as I can tell they're using qemu/kvm

#

and this is just a piddly little project I made quick

#

I will also say k8s is super interesting but I have less than 0 use for it at work or at home without the need to scale

#

I've gotten some basic experience but yeah none of my containers need load balancing and etc

stray tapir
#

yeah I didn't even know the purpose of kubernetes until i asked chatgpt

#

this is all a hobby for me so wrapping my head around it took some time, cuz I don't have the same needs as a massive organization

sinful moon
#

Totally fair and yeah same vibes where, we do have such ourselves at work and for our largest client with load balancing VMs via vSphere but those are full on server VMs moving from one host to another as resources allow vs just microservices

fleet turtle
#

one of the greatest feelings is slowly understanding terminology and tools that you previously found complex

sinful moon
#

mhmm

stray tapir
#

when I learn new stuff it just leads to more questions

#

lmao

sinful moon
#

btw I will again highly recommend UTM if you have an iPad, been having great fun with this (can’t even fit all my OSes on one screen)

fleet turtle
#

that is something i was told, and have grown to incorporate into my everyday life

sinful moon
#

lol at most I had 68 OSes on my most expansive VM setup

#

Mostly just retro computing and operating system archieology than need

stray tapir
sinful moon
#

Never heard of them

stray tapir
#

someordinarygamers

sinful moon
#

I got that pic somewhere

fleet turtle
#

yes

#

many people use it for that

#

nope

#

not if you choose the right drives and partition right

sinful moon
#

lol here it is

#

Quite an old screenshot at this point but yeah

stray tapir
#

BRO

#

YOU EVEN HAVE PLAN 9 FROM BELL LABS

sinful moon
#

heck yeah c:

#

I'm huge on odd and interesting OSes and the history of such

fleet turtle
#

you have to take many more steps to overwrite your main OS, install the .iso for the OS you want to virtualize and go from there, make sure you search a tutorial just to be safe, i havent used Vbox in a while

fleet turtle
sinful moon
#

I've tried it plenty, have you seen ShrineOS?

#

Adds TCP/IP stack and package management heh

fleet turtle
fleet turtle
stray tapir
#

plan 9 is actually pretty intresting

sinful moon
fleet turtle
#

the most "unique" OS ive ever tried was endeavor

fleet turtle
sinful moon
#

It's for Ed Wood's Plan 9 from Outer Space, an infamously bad B-Movie

#

So instead this is Plan 9 from Bell Labs lol

fleet turtle
#

i see i see

sinful moon
#

Good time if you want some so bad it's good media

sinful moon
swift kite
#

hi

#

gn

sinful moon
#

Heya and goodnight?

swift kite
#

good time to be alive

sinful moon
#

lol indeed

stray tapir
#

Have you gotten chrome os flex in a vm?

#

I did it a week ago but it runs so janky

sinful moon
#

I have not and that was long been a goal of mine, prior to Google buying them up I did attempt CloudReadyOS or whatever it was called but didn't have much success

stray tapir
#

When you do it on libvirt you have to select UEFI instead of BIOS for the firmware or else it bootloops

sinful moon
#

Yep, that would be critical for ChromeOS

stray tapir
#

and the mouse is buggy af

sinful moon
#

completely different firmware that's mostly UEFI based

#

oh heck, have you tried NeXTSTEP and etc without proper guest mouse support?

#

It's a mess to an extreme degree lol, at least in VMware

stray tapir
#

I havent touched nextstep, iirc its a bsd based os?

sinful moon
#

but there's community VMware guest drivers for mouse and display and etc

stray tapir
#

im pretty sure im wrong

sinful moon
#

Yeah it's mainly BSD and obvs foundaton for OS X with that being Job's next company after Apple

#

Quite a bit of custom sause on top of BSD to make it all happen

#

I'm pretty sure I still have some old screenshots I took

#

Huh guess not, just Apple Rhaposdy DR2 (last x86 before PowerPC only) and Mac OS X DR3 which is emulated via PowerPC as seen here

#

but yeah what NeXTSTEP became, just some shots I had handy on my iPad without much digging

fleet turtle
#

is there any chance you have tried qubes or tails?

sinful moon
#

Rhaposdy DR2 is very much still NeXTSTEP but just with MacOS 8 "skin"

stray tapir
sinful moon
#

I'm familiar with both but had no reason to try either

fleet turtle
#

tails isnt that special i dont think, but qubes looks pretty neat

fleet turtle
#

or just for fun?

stray tapir
#

no I use it when I have to do stuff

fleet turtle
#

what stuff gets you to use tails

sinful moon
#

Qubes is a neat concept, but again most of my use case is already trying out odd OSes in VMs for fun, I don't need to try an OS with nested VMs and etc

#

Tails I don't use public workstations ever these days so I have very little need for it

stray tapir
#

Yeah I should really try out qubes, but I dont need to be using tor on a daily basis lol

fleet turtle
#

yeah i mean, who does? besides like, the 0.1% of cybercriminals lmao

stray tapir
sinful moon
#

Qubes is indeed more about the sandboxing with VMs, but at that point we have kinda come far with our modern Linux container formats

#

Yeah not the same kind of security/sandboxing but still

stray tapir
sinful moon
#

lol we do

fleet turtle
#

does anyone know if sandboxing in anyrun is as simple as just, uploading something, i am curious and would like to know, because im too lazy to try myself

sinful moon
#

btw random Solaris screenshot of mine sicne it's still up in my search sidebar

#

CDE is cyberheart

stray tapir
#

bro is logged in as root 😭

sinful moon
#

lol default setup

#

I basically just wanted to poke around with CDE, but yeah you would have created normal users after logging into this

fleet turtle
#

once i get done with the jr pentester, offensive pentesting, and the red teamer paths, i really need to do some of the malware analysis modules, the room that had a couple anyrun questions was pretty neat

#

i cant imagine malware analysis being very fun unless it was something like a ransomware, since those are pretty crazy, but i do want to learn about it after that anyrun room, not sure if this is something for the advanced channels or not

sinful moon
#

Nah it's fine to talk about here, malware development and implimentation is more what is limited to advanced rooms. Or reversing known bad malware as well

fleet turtle
#

oh i see i see

#

the 0x3 and 0xD colors are almost identical, im an imposter 0xD

sinful moon
#

Either way, there's no rush, tons of amazing content on THM and it's good to be well rounded

#

yeah they looked very similar on the OLED I'm on, I had to double check lol

fleet turtle
#

ill keep that in my back pocket, ive been looking for reasons to try learning Ghidra and utilize anyrun or any other sandboxing software for that matter

sinful moon
#

Oh yeah so much great content from Startch Press, they often have Humble Bundle sales

fleet turtle
#

i would like pentesting to be something im very well rounded in, and i will focus on that, but malware analysis is definitely something i will learn for fun, it looks handy and neat

sinful moon
#

Good bit of crossover there if you have any interest in game modding and reversing

#

big crossover area for me being huge in retro gaming

fleet turtle
sinful moon
#

mhmm

pale swift
#

hello

sinful moon
#

Hello and welcome πŸ‘‹

fleet turtle
#

OHHH i dont have the "im new here, say hi" badge anymore

#

thank goodness

pale swift
#

how long do u think it will take before AI takes over cybersec

fleet turtle
#

ohh thats great

fleet turtle
#

cybersec requires innovation and creativity that AI doesnt have nor can it replicate

sinful moon
#

We already have to cover for "AI" features not doing our job well enough lol

sinful moon
#

Agreed, as D466 says, we really need creativity, linking multiple discrete datasets and more which AI can't fathom atm

fleet turtle
#

the only ai that will be taking over is purely just for looks, most people use it for the bonus points that using any buzzword gets you for like a week

sinful moon
pale swift
fleet turtle
pale swift
sinful moon
#

I'd rather have False Positives than undetected Positives, but plenty of my time is addressing just "AI" suspicious execution

pale swift
#

i saw a washing machine the had "AI" all over it

buoyant tree
fleet turtle
#

"generative AI" "revolutionary AI" "industry leading AI"

#

i have grown to loathe the word and the concept of AI

sinful moon
buoyant tree
fleet turtle
#

the word AI can be stamped onto practically anything at this point

sinful moon
#

Extended Detection and Response

pale swift
sinful moon
#

our fancy word for an advanced anti-virus that works at API level and more

fleet turtle
sinful moon
#

SentinelOne being yet another

pale swift
sinful moon
#

EDR will detect if an app makes too many suspicious API calls that align with TPP evasion and etc, even if it was never detected before

fleet turtle
pale swift
fleet turtle
#

hell, get me an AI doormat

sinful moon
#

also Defender has an EDR product called Microsft Defender for Endpoint

fleet turtle
# pale swift it makes 0 sense

i dont quite understand why toaster companies think adding a display will change the world or make their product any more appealing, but they do

sinful moon
#

with basic Defender you're just getting a traditional AV with some extra bells and whistles but not full EDR without paying for a better license lol

buoyant tree
sinful moon
#

yes, it was stated above

#

that's part of why it had a kernel mode driver

#

to intercept API calls of all apps

pale swift
sinful moon
#

at the most agressive, EDR actually injects its self into most processes to see what they're up to beyond just intercepting API calls

fleet turtle
#

wait until the stem cells try surviving me running crysis

sinful moon
#

Yeah I have some major doubts on that claim lol

fleet turtle
#

so i guess the next buzzword is gonna be something to do with AI & Biotech integrating, and i loathe that concept

#

the idea of any technology having living, biological, components, is terrible

#

i cant see any application that doesnt only work for statistics

buoyant tree
#

Somewhat makes sense though, if they manage to make it more accessible and safe from contamination

pale swift
buoyant tree
#

DNA contains a lot of data

sinful moon
#

It's okay the fintech people are only just catching onto the fact that AI is actually unprofitable lol

fleet turtle
sinful moon
#

We don't have any marketing strat for it, besides being "shiny new thing"

#

there's no real return on investment, even with subs

fleet turtle
pale swift
#

the reality is these CEO's will do anything to try and increase profit margins

buoyant tree
fleet turtle
#

and i cant see any outcome where that much work is worth anything

buoyant tree
fleet turtle
#

also i dont know why browsers keep adding AI, the only browser AI i like is brave's leo, it is actually helpful at times

pale swift
sinful moon
fleet turtle
sinful moon
#

Just look at Amazon deploying their AI for free and lol it's really weird

pale swift
buoyant tree
fleet turtle
# pale swift edge's copilot is also cool

i cant stand edge, i hate how integrated it is into windows, after i switched from ubuntu back to windows, for simplicity's sake, i took forever to manage to get rid of edge

sinful moon
#

Want to ask some programming questions to an AI? Skip ChatGPT and etc, just ask Amazon's AI about it instead of the shopping questions they were hoping for lol

buoyant tree
fleet turtle
buoyant tree
sinful moon
pale swift
buoyant tree
sinful moon
pale swift
#

why do ppl reccomend downloading linux on an old laptop?

buoyant tree
buoyant tree
sinful moon
sinful moon
#

I don't think so, idk. Hard to keep up with some of the silly names

fleet turtle
# sinful moon Simplicities' sake? You chose the more obfuscated OS lol

well the thing is, i have a gaming PC, with NVIDIA GPUs and MSI CPU fans, with corsair front fans, the software for all that and for my motherboard were very.. hesistant, to work on ubuntu, and i still do like gaming, and i dont have any reason to use ubuntu other than my stuff on THM, so i just switched back to windows, plus at the time i was unwilling to go through the effort to get it all to work even if there was a way

pale swift
sinful moon
#

I went to the movies today for the first time in 5 years and saw no less than four seperate AI tech adds for three different vendors

fleet turtle
sinful moon
pale swift
sinful moon
#

maybe don't sudo delete important files

#

vs Windows which just gives you a UAC prompt real quick which you're trained to click through

buoyant tree
pale swift
#

linux was portrayed as some extremely difficult OS to manage for begginers

buoyant tree
#

Windows usually hides the critical files in obscure directories

fleet turtle
sinful moon
#

lol there's a reason our Windows users at work are not admins of their machines

buoyant tree
pale swift
fleet turtle
sinful moon
#

Yes to some extent the easy of use is tied to the choice of distro, but there's many factors going on there

#

Linux generally isn't one size fits all, and you just have to find the distros that are ideal for your use case

fleet turtle
#

linux mint is very user friendly, same with ubuntu, and the ubuntu gnome interface is very inviting

pale swift
sinful moon
#

I would personally recommend highly against GNOME 3 but that's just me

#

sure

fleet turtle
buoyant tree
#

uh... that's highly funny as I'm thinking about it

sinful moon
#

But many distros can be made to do the same

fleet turtle
#

kali is just a bunch of tools in a nice brand gift wrap

#

^

#

you can do the same hacking on ubuntu or mint as you can on kali, too

sinful moon
#

My pentesting VPS is based on Arch just due to it also having all the same tools and my personal comfort zone with the distro

fleet turtle
#

no OS is one size fits all, in most cases you have to make it fit your case

buoyant tree
#

Well with a lot of pain

pale swift
fleet turtle
#

yep

#

make it something you are comfortable with navigating

crude stump
#

Kali has all the tools that β€œhackers” use basically

pale swift
#

ahh

sinful moon
#

Also I know I said the Arch word, don't use it just because it's "cool" only use it if you know rolling release and etc and setting things up from scratch is your vibe

buoyant tree
pale swift
fleet turtle
#

even if arch gave me the same high as heroin i wouldnt get near it with a ten foot pole lmao

sinful moon
#

Most users will be served by a different distro

buoyant tree
crude stump
fleet turtle
sinful moon
crude stump
pale swift
#

i c

sinful moon
#

But that is also not an endorsement, just is perfect for me

pale swift
#

i downloaded a vm for THM

stray tapir
#

arch is fine, I use it.

crude stump
fleet turtle
pale swift
#

but i havent been able to use it with THM

crude stump
pale swift
sinful moon
#

I mean it's literally sudo openvpn Username.ovpn

crude stump
#

Pretty much lol

pale swift
#

i am extremely new to this

#

why not?

sinful moon
#

That's a joke

fleet turtle
#

WOW i just found out anyrun has a graph feature, thats neat

sinful moon
#

the THM web interface for the attackbox is also a VM

sharp citrusBOT
sinful moon
#

VMs are the perfect use case for your own custom "attack box"

crude stump
#

Wrong person

fleet turtle
#

(i believe that this was the file from the Pyramid of Pain room, i dont recall which room)

pale swift
#

?

sinful moon
#

Yeah the Attackbox is 100% just qemu/kvm tho iirc

#

may be xen though

#

Although I think AWS is mainly qemu/kvm

pale swift
crude stump
sinful moon
#

Indeed but you're describing the OS not the virtulization framework as I am

crude stump
#

If it doesn’t change reset it

pale swift
fleet turtle
#

jesus anyrun is so informative, it makes understanding the processes and whatnot of malicious files very easy

crude stump
stray tapir
#

does it require a subscription

crude stump
sinful moon
#

yeah qemu is just the PC emulator that supports multiple architectures and then KVM, the Kernel Virtual Machine in Linux is what powers the x86_64 virtualizaiton. No worries

crude stump
#

Sometimes it hangs when it’s trying to open up Kali

sinful moon
#

It just means that thanks to kvm we have a level 1 hypervisor that runs at kernel level vs typical use case of Virtualbox and VMware Workstation Pro which are level 2 hypervisors what run at userland

#

much better performance

twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #38 - 203)

crude stump
crude stump
fleet turtle
#

does anyrun take a screenshot everytime something happens or are they taken by whoever submitted it?

crude stump
#

Closing out of the ovpn session stops the openvpn connection. So make sure to leave the terminal that’s running it open

fleet turtle
#

some of these screenshots detail every single event, others are completely unhelpful

sinful moon
twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #37 - 204)

fleet turtle
#

204 jesus christ

crude stump
sinful moon
#

Yeah lol, it's not always perfect by any means lol

fleet turtle
#

im looking at wannacry in anyrun to get better with anyrun and just mess around it

pale swift
crude stump
fleet turtle
#

thats the only one that has a sufficently spooky interface that i can think of

pale swift
crude stump
#

Cmd in the terminal

#

And keep it open

pale swift
#

ive done it

fleet turtle
#

any idea what COM is in this context?

pale swift
#

ive also pinged 10.10.10.10

crude stump
#

Don’t close it once it says β€œsequence something”

pale swift
molten sky
#

@buoyant tree what was the verdict

fleet turtle
molten sky
#

wyd

crude stump
molten sky
#

wy did

fleet turtle
pale swift
#

now what

crude stump
crude stump
#

Can you ping 10.10.10.10

pale swift
#

im getting the packet replys

crude stump
#

Good

#

You are connected

#

Now you can do rooms without the attackbox

#

Tried looking it up lol and nothing

fleet turtle
#

i see

crude stump
#

But I think you are right

pale swift
crude stump
#

If it’s giving you a vm it’s prolly wanting you to use it

crude stump
#

Think it’s the zip file of the executables

fleet turtle
#

i have no clue, im doing this to get familiar with anyrun lmao, but i do believe it is what was used to open the file, i can send the anyrun link to you if you want

sinful moon
#

I don't see the COM file but those are classic MS-DOS executables

crude stump
#

What I love about anyrun is it basically puts you in the mind of malware. Not that it has a mind but yk what I mean

sinful moon
#

Oh right I see, it's because it was launched from an interactive MS-DOS session/terminal which spawns from command.com

fleet turtle
#

and what does this mean?

fleet turtle
crude stump
# fleet turtle

Google says COM++ is a binary interface technology software

molten sky
#

what's a good website i can test against that always has an annoying cloudflare captcha

#

my old sites have all switched away

fleet turtle
#

well yeah i wasnt viewing it as a file, i was just seeing what it means

sinful moon
#

COM++ is a C++ object which you can use to interact with these classic frameworks

fleet turtle
#

trying to familiarize myself

sinful moon
#

also has bindings for C# which I'm seeing in this random StackOverflow post

#

But C# is trivial to reverse

fleet turtle
crude stump
sinful moon
#

It was what executed it, even if not an interactive session, just my reading of that at a glance

crude stump
#

Like bulk data processing

fleet turtle
sinful moon
#

Mainframes in the classical sense don't really exist anymore

crude stump
#

Or β€œservers”

sinful moon
#

these were room size down to fidge sized computers which were multi-user connected, and then you'd use dumb terminals to connect to the mainframe and do your computing that way

boreal scarab
#

In this video I discuss how 2 European nations (Switzerland and Germany) are starting to mandate the use of open source software within their governments and why other nations should do the same.

My merch is available at
https://based.win/

Subscribe to me on Odysee.com
https://odysee.com/@AlphaNerd:8

β‚ΏπŸ’°πŸ’΅πŸ’²Help Support the Channel by Donating C...

β–Ά Play video
sinful moon
#

that's why terminal emulators are terminal emulators they are emulating those dumb hardware terminals attached to mainframes

fleet turtle
molten sky
#

did i just see a timtaylor typing

#

or am i hallucinating

boreal scarab
sinful moon
#

Just in this case our "mainframe" is a single Linux home computer since Unix does have that legacy back to the 60s

spare remnant
#

Why I am not allowed to msg in koth section of this server

hoary lotus
#

the voice channel?

sinful moon
#

tty is literally short for teletype terminal (although that phrase is technicaly copywritten and can't be used), back when those dumb terminals didn't even have screens and were just printers with a keyboard

fleet turtle
#

okay, thats enough of familiarizing myself with anyrun for today

sharp citrusBOT
fleet turtle
#

i will say, from the tools/software ive seen from THM, anyrun is one of the coolest so far

molten sky
crude stump
#

Technically would it really be considered a tool?

fleet turtle
sinful moon
#

Idk DNSDumpster, PhishTool and URLScan.io have gotten more use from me from my real job in infosec

#

but thats also due to AnyRun's limitations