#general
1 messages · Page 352 of 1
Make a LinkedIn and beef up your resume, and start networking
Quintessential
So that's not delete able and will stay forever?
Yep, offline more effective
I have no idea how to Networking
You gonna learn!
Nope.
I've analysed a mobile device and recovered data that was deleted 3 years ago.
Best starting point
most likely it is possible for law enforcement to retrieve, yes
don't do bad stuff
simple as
By using the same software/hardware my local police uses.
Where do i found besides big events like Black Hat etc
Encase and that spider probe device thingie? 👀
How about without device psyically available?
asking for a friend
Shit

DF is fun
Your py room is released?
I saw on internet that a girl in Paris created account on tinder after a week or two she asked for her Data
They emailed like a 1400 pages and she said they know everything about me better than me
It can be true right?
Local discovers Bluetooth [NOT CLICKBAIT]
Chilli-cheese nuggets ready 🥳
WOOHOO fixed the power limit weirdness
aa
just had to enable overclocking....
I forgot what i was about to ask
overclocking on a brand new rig?
💀
Source?
Yeah! EnCase was one, we also have XRY
guess who got the ejpt and pentest+ but forgot to update 
Update what?
share it with the people who inspired lmao
cough cough
THM community
cough cough
I can't believe you've got two new shiny certs and you're still depressed.
But congrats!
Trust me bro
You're not very trust worthy though.
If I finish the jr penetration tester path, will I have the same knowledge as if I had completed the eJPTv2?
Don't trust me
?
I think Offensive PT path + ejpt boxes will give you an easy cert
no one gonna do that even if the company does get all the data , the lawsuit will put the company upsite down if they have more data than she used inside the application , let alone handing her that
hello
I’m the most trustworthy person on the planet
i think a user can ask company to delete the personal data, and company have to delete it in accordance to GDPR
More or less yes
How urgent
oh btw the org can say no...
Now
Nah, I don't want the certification itself, I just want the knowledge
yeah bruh i got beef...catch me outside
What if I’m busy, should I DM in 2.5 minutes?
yea but look what he said , the company send her 1500 papers of data , outside their service , which mean that the girl is accusing company for stealing data , which in this story " company itself aceept it and send her all the data they stole"
Ok
Ok start a timer
Idk how to install that
It tells you in the description
I've got BEEF
why would they send her that...
Hamburger
exactly , thats why the story is made up , thats what im saying 🤣
I don't have Kali linux
Only my Mac and phone
Then you can’t… it’s built for Linux
Gorgeous
Well actually it's compatible with mac OS
was not needed , now most of us are hungry
See in description
But overcooked
Then install it 😆
All the juices leaving 😦
MacOS is Unix
Use YouTube
What if their DPO is a 9 year old
Why do you want to use this tool?
now u got me , then the story must be legit 😂
I need to give that beef website to my brother
E is playing in my mobile
I wanna see what's he is doing
That is illegal
That's my brother bro
💀oh
Talk to mom probably
Or talk to brother
or esclate to dad....
Or call Obama
I’ve got this y’all
xno
Naah he is doing something secret like he is really hiding the mobile from me
oop
He is allowed to have privacy
😱😱😱
That's my phone tho
I have my rights on my phone and he isn't giving it back
Okay then withdraw his permission to use your phone if you don’t want him to use it
Talk to your parents
🙂you guys ahhhh painful anyways thanks for advice
🤷🏼♂️
Ok thanks
Don't help people trying to commit unethical acts, this is your only warning @flat roost
That’s a little silly and seems like a power trip, but understood
Jabba is the head honcho.
Happy greetings everybody,
I'm actually looking forward to take the CHFI (Computer Hacking Forensics Investigation) course for either a low price or totally free. Does anyone have any online platforms to recommend that provide such offers?
Why on earth would you choose Beef for remote monitoring anyway...?
User joins the Discord server with unethical intentions
I tell you I am handling the situation
I clearly state that what the user is asking is illegal
You continue to ignore me and help them,
Idk
It's popular ig
I've not even heard of it..
Popular for being out dated trash, sure...
So what's the new and best one?
It's ancient, and doesn't actually do what you think it does
Something something browser sandboxing.
Get the phone back. Change the password. Problem solved.
not touching most of it but apparently the rated power draw on windows is around 355-400W by default and without doing this it maxed out at 339 on linux
I would be ... cautious about adjusting power draws. Overvolting/etc can decrease the lifespan rather rapidly. Not to mention cooling concerns. I.e. throttling which actually causes more harm to performance than just keeping it at base
nice 
Plus it puts a large assumption on that things can properly make use of that power limit
what you want to do?
what is your THM account name
Which ctf?
shush
Excuse me?
Wait that thing still exists?
yeah it feels sketchy as meeps to shadow
Still installed on Kali by default iirc

If you know what you're doing it's generally fine. There's usually some headroom without increasing voltage
Hello
Can someone help me with something?
I am making a watch kind of like the deauth dstike watch, I have chosen a esp32 board but not sure if it suits well, can you help me check if the board is good?
Np
Im becoming nostalgic
I think I might put a Windows XP on a VM
Probably more secure than Windows 11
is dir buster be an automated tool?
Yes.
Nope, I would definitely put XP on the computers that launch my nukes
AYE AYE CAPTAIN
that eases shadows feeling a bit
@sick lance can you tell if somone use using dirbuster vs guessing dir by hand?
like if i set 1 word from the payload every second
based on the number of requests over time shadow would bet it is detectable
tnx
not to mention you would notice it on how many 404 or none 300 or 200 codes you are sending back
i mean if i just open the payload file and enter each word manually into the url it would send the same amount of codes
true and would of course look into that strangeness too
Ofc I am joking dear admin
But it is still nostalgia OS
sounds good thank you
Gave +1 Rep to @sand trench (current: #3 - 1860)
i.e if randomly you start seeing an increase in 404 errors sent from your web server to clients you should look into what is happening
not garantued it is because of maliciousness of course but knowing is half the battle
Aloha
ello ello kamma
Hola shadow
Dirbuster also has a default user agent, if you’re looking for low hanging fruit on detection.
MWIII time, them some Necromancing in Diablo IV.
It's also faster than someone doing it manually
I swear we live in Groundhog Day
Generally yes, but you can put jitter on it 🤷🏼♂️
Anyone know where I can see videos of defcon. Like what it looks like and everything
Important to detect more than one way
YouTube has a bunch
So many documentaries and stuff
This night is autopsy simulator time 😂
And also from a detection engineering point of view, if you’re going based on request/response speed, you will have a high amount of alerts to sift through
And very few will be relevant
So while it can be useful, it’s not a solid IOC itself
hi scrubalicious
You know that one song titled “No Scrubs”?
Is anyone good at hashcat? I'm a beginner and need help with a challenge
I can take a crack at it
Ping me in #room-help
Okayy
Which challenge?
I’ll ping ya if it’s something sketchy I’d imagine it’s just for a room
Why we're checking 😉
Such a good song
Mmmmm
Write your will
It’s probably not a problem. Don’t worry about it. Just make sure you wash your hands next time
So many people with serious illnesses touch that screen that saves me I'm really scared
Esports tourneys? And no in sweden date of birth is more or less irrelevant
Ive been away at work this week working 12h shifts so I havent had time to engage in discord or studies 🥲
@flat roost I would be very surprised if you actually found my information 🙂
I’d have to go back and look, but you could just as easily find it. Google your username + “Sweden” just to be sure hahah
Yeah that wasnt me you found
Ok perfect!!
@whole yew Are you at DEF CON already?
With time your wounds will heal
You are not alone, I made a point of trying to go this year. Just didn't work out.
same
Cheese touch?
life, and family issues..
Me poor can't go
Is defcon in vegas
They have one in Shanghai I believe, but the main one is Vegas yeah
why ain't this working?
it is in the Downloads folder
the MetasploitWordlist-1632491116676.txt
Right so try /home/user/Downloads(blah)
oh i forgot
Or maybe ./Downloads/ if you’re running console from your home folder
i logged in as root
Yeah that might help
Ahhhh
thanks man
Gave +1 Rep to @flat roost (current: #208 - 28)
i want to download a video from a online course website, i've purchased the course but there's no option to download the videos, I tried downloading through extentions and through link of video in the code but neither worked. Kindly anyone help me in downloading those videos
That’s intellectual property even if you’ve purchased the course, can’t help you here
Would be illegal
@outer phoenix I’m reporting you man
yeah man, you should not do that
@torpid furnace don't bro
I’m calling the FBI rn
I’m joking
If there isn't a download option, it's there for a reason.
Mr Electric, send him to the principals office and have him expelled!!!
well then i gotta go
but guys i don't have internet all the time so i can only view them if i had them offline
good night
@flat roost lmao
Womp womp
We get it but that doesn’t make it not illegal
which state ?
in india?
I’m guessing not America
help me to overcome this issue , Room Upload Vulnerabilities , Task name : Over Writing Exist file , I upload that file but this Error occur
413 Request Entity Too Large
nginx/1.14.0 (Ubuntu)
It's MP
why don't you get a broadband connection?
Why not USA
The name lmao
@tulip heath nope i don't have one
Most normal moment
If someone is breaking the rules, please ping a moderator
are you a teenager?
You need to contact the course creator, there’s nothing we can do here
Scrubz responded 🤷🏼♂️
Moderator needs to be pinged instead of interacting with the rule breaker 🙂
@mossy river i tried but they aren't responding to any of the mails
I’ll be sure to ping Scrubz next time, though I have full confidence in his ability to know when something’s amiss
I feel dizzy
@mossy river bro pls don't
Hm?
Nothing we can do here
People’s messages disappearing left and right
Thanks for responding y'all
💀
This sounds suspicious
Don't you hate it when the only answers you know how to answer are not allowed to be answered
Gotta love the political eggshell walk
But 1000% of the time the question is there cause someone didn’t Google lol
I asked this guy how he found a vulnerability and it was 96% chatgpt
If you can back it up, whatever
Hey Jarvis
My brother bought a PC but the fan is not compatible with the motherboard which is the b550m vdh pro wifi and the fan is pure rock 2fx be quite
Go get these bounties
Chat, clip this code exec
the page where I bought it said it was compatible
Ok thanks for sharing
Gave +1 Rep to @outer cradle (current: #2172 - 1)
Rip
PcSpecialist?
That reminded me, I still haven't finished my personal Jarvis ai
PcComponentes im from Spain
No wonder lmao
Is that a universal experience
pccomponentes is the modt famous page on spain
Did u buy it from some guy in the streets
I just need a fan that is compatible
How is a fan not compatible with pc
They're standardised, are they not?
Unless you have an imcompatible connection.
Ie 3 prong to 4 prong.
I think you can put 3 prong connector in 4 prong slot and be fine
if you can make it fit 💀
just know you could potentially be sending it the wrong series of signals
Paper clips
😭
hell yea
😭
i have a cursed memory from class because of that
my professor told everyone to use a paperclip to jump a PSU
😭
https://www.arctic.de/us/faq/detail/can-a-3-pin-case-fan-be-used-on-a-4-pin-pwm-port#
Do more research than this
But that’s a resource I found
😭
yeah that's specifically for a PWM port
continue thy research @wooden totem
Uh oh 💀
yeah man 😭
you have no clue how hard i was laughing
everyone was scared as shit
😭
I believe it
he was trying to consule others and be like, look aslong as you put it in nuetral and ground you'll be fine.
😭
It’s like that one Arab guy who does electronics on TikTok or whatever and always blows crap up
i love that guy
ik who you're talking abou tfuck
he always ends up hurting himself
electroboom?
I can’t think of how to search him but yeah
https://www.youtube.com/watch?v=MkMc5t02A64&pp=ygULZWxlY3Ryb2Jvb20%3D (for those who don't know this guy)
Try everything Brilliant has to offer for free for a full 30 days visiting https://brilliant.org/electroboom. You’ll also get 20% off an annual premium subscription.
And also let’s hope here we learn how to use circuit breaker finders and AC detectors and such and understand how they work!
My Merch: https://electroboom.creator-spring.com
Thank...
Science
hi
this guy have some serious problem with electricity
You learn a lot from people doing stupid stuff
It's good to learn from your mistakes. Even better to learn from someone else's
especially when u tell them how to do smth and add a "but idk tho " in case it ends bad
seriously 😭
how to make my account public?
Your thm account is public
Without doing anything
yep just share your username/link
your link: https://tryhackme.com/p/usernamehere
If you look at the url at the top when you’re at your profile, it will have a /p/ or something, and that’s your public link
How about you start for us
masterhacker back at it again
inb4 middlerider sends their password in chat
someone seem to be practising social engineering skills
ok thankyou
That looked dangerous, then I saw the channel name...
yeah he got me through alot
Not completely accurate. Although we have some loud festivals
I used to binge watch his stuff when I was younger, I honestly attribute it with alot of my "natural" intelligence
A casual day for him
This is dangerous
Dude this was a month ago
wtf
They just had to confirm whether or not it was accurate!

I know IppSec occasionally searches for his own name on Discord to reply people who are talking about him
but this "searching for anything dutch" is next level

Yo is that 160 proof?? 😭😭😭
yes
hello
Is not detecting temp mail a vulnerability?
like if the website lets you register with a temporary mail
no?
Liver who? Never met them
No
I signed up with fake information to download a free AWS ebook today, too
Some websites do block that though
doesn't mean I hacked amazon
I’m telling Jeffrey Bezos
well, is it a vulnerability to not require passwords to contain at least one special character?
We are taking shots with it
you're insane
That’s a business choice, not necessarily a security choice
kinda? If you check OWASP web security cheat sheet
70% of it is gone and we started not even an hour ago
how many?
I didn't
Can be
7-8 people
a vulnerability is generally speaking a condition that can be exploited to make you do something you're not supposed to. I wouldn't personally say that being able to sign up with a temp mail is a vulnerability - but it could be that it's an "informational discovery" during an actual security assessment
so like one shot each 
good
you won't completely black out then
how often are new rooms released for THM?
nah I can't put that in my report
Right, a user using a temp email for a recovery email is a user-introduced security flaw in their own user’s security
like 2-4 times per week or so I think
How much cvss score would you give "Lack of rate limiting on login" vulnerability?
I would give it 6.5 medium, with low impact on confidentiality and integrity
3 iirc
dang im never making it to HTB
Not mappable to CVSS necessarily
Monday Wednesday Friday
UI: super super super high
HTB isn't for "skilled people"
you could go there now if you wanted to
ooh
there is plenty of beginner material, too
i wanna finish THM path's before switching
Just depends on your learning style which one is more beneficial imo
like I need to practice cvss calc really hard
then maybe do rooms here n there
sure, but you'd be way ahead of HTB beginner material, then 😄
this stuff they don't teach you on websites
3 shots
yeah GLHF m8
And a beer, and a bottle of rose wine
id prolly still do it im trying to be a sponge 
I’d just watch popular vulns and break down the CVSS for how they classified the CVE
but it's thursday
Anyone know some websites for free certs?
We are flying home tomorrow
ISC^2 certified in cybersecurity
might look into that, thanks
Gave +1 Rep to @flat roost (current: #207 - 29)
OOF
don't get hangovers then
flying when hungover is the worst possible experience
Hangovers? We are drinking all night
are they worth anything other than showing your effort
We are spiking the orange juice tomorrow
Not really, they’re free 🤷🏼♂️
But CC is the most solid free one there is
Imagine using chatGPT to calculate cvss for you lol
You can but it’ll have some errors like anything else
Chat can accelerate learning
I like the way it broke it down though
Exactly
Just make sure to cross-reference its definitions with official documentation and correct as needed
I have a long way to encapsulate this stuff
They use CVSS quite a bit in CySA+, so if you have access to learning resources for that, you might find some useful stuff on CVSS as well
interesting
Remember, truth will set you free
so to me be completely honest ,
You dyin' of thirst, you dyin' of thirst
or that wasnt a ref to the kendrick song ?
It's a biblical/Quranic verse
God could've been quoting Kendrick
How
I remember you was conflicted
well , there is a few exceptions , i was talking on general on that convo
cant throw the whole generation on a bin so yea
that wouldnt be judgy then , it will be straight hating
Misusing your influence
Howdy, fellas
Any tips of how to bypass WAF / IP’s
If you speak the truth or know the truth in an oppressive regime, you will be imprisoned in one way or another.
Some truths we focus on too much that they cloud other truths.
By the way you said that, sounds illegal, but if you’re doing it for good purposes, there’s stuff in the web rooms that talk about WAF, if you let us know your non-illegal use case I’m sure someone could be more helpful
Sure thing
Idk which rooms are by the way. I always try to do it by myself so I seldom check the updates here
@shadow loom 500ml is gone now
bruh
It happens
xD
have a wonderful flight back home tomorrow 
One doesn't have to speak the truth out to seek it, or show that they hold it
Especially if it puts one in danger
You see, in the end, it's not Truth that imprisons you
It's the said government
Fair enough
Yes
can yall give me some good ideas for cybersecurity videos?
I agree to some point. It's really important to have a theoretical basis and then go use the theory in practice. I do agree that you won't understand the full theory without using it.
The difference between Red Teaming and Blue Teaming? I mean, every subject in Cybersecurity could be a video
right but this time i want my channel to blow up i apreciate your feedback can you dm me and give me further ideas or updates on videos for the future?
Sorry man, I'm not the person to ask for viral ideas, I'd be rich myself if I knew that 😂
you can still give feedback
I'll pass, but thank you for the consideration
Gave +1 Rep to @rough tangle (current: #2172 - 1)
my pleasure
@obtuse kestrel i will make a video on the difference between red teaming and blue teaming on your behalf thx for the idea!
Gave +1 Rep to @obtuse kestrel (current: #2172 - 1)
true
Should do both. What you learned in conceptual learning can be validated through practice as applied learning, acquiring problem solving skills and understanding of real-world implementations of the theory.
IMO it’s easier to grasp concept after practical work.
Babies learn language by doing, not by studying their language
Then they refine those skills through study and use
I made a big jump in Bash scripting when I actually started making small dashboards and to optimize working in the command line. If you never do, you'll never actually learn 🙂
I love this analogy!
Whether it’s an interview or just passion that pushes you, it’s a matter of just doing it, making mistakes, learning from them, moving on
That's one of the things I learned when I was still a musician, it takes 10.000 hours to master a craft. I sucked for years until I hit my 10.000 hours and could coast by with my skills. Nothing different with coding or cybersecurity in general
anyone knows how to access the voice channel part of the server?
Cyber you have to kinda enjoy the journey cause sometimes those 10k hours reset or aren’t as applicable, so it’s a lot a lot of learning
But it’s def a boost, whatever knowledge you have will help inform your current and future learning
You might need to be verified (link your thm account)
i need beer...
can you help me out here, my openvpn is not connecting to the servers, i even tried downloading multiple regions and regenrate the config file.
You’re very very European hahahah
I love learning! Even though I'm a bit older now and am noticing that when you are in the later part of your 30s that it doesn't come as natural anymore. But every step I take and learn, I get more excited and get more drive!
yep
In the THM section where it gives you UDP or TCP option, try swapping that and see if it makes a difference
Might be a firewall issue
it was working fine an hour ago
Agreed. And there’s something about constant learning that you’ll notice keeps older people younger 🤷🏼♂️
The tap driver might be pooping out, I’d try restarting
Good luck soldier, fingers crossed
nah, still getting the same error
2024-08-08 17:06:34 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-08-08 17:06:34 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
sorry for asking but do you know how to do that?
That ^
Hmmmm, seems like the first thing it says is just a warning, so shouldn’t break anything. I’d double check that the cipher is set in your config file, and try specifying the config file with —config just in case that helps
i had 3 configs files with me, different regions, 2 vip and 1 regular and i tried connecting to all and the second vip worked
thanks for the help tho ❤️
What the, hahahah
Glad it worked
😂
Maybe that was the latest one you generated? Idek
wdym by link acc?
idk...
#site-support for vpn issues please.
i didn't know that, sorry
hi everyone
Hi beluga!
Almost done with sqli
what is the answer to "What do you need to access a web application?" in task 1 of Web Application Security?
thanks
Gave +1 Rep to @latent spade (current: #2173 - 1)
anyone else find the answering system annoying
What do you exactly mean with the answering system?
the format has to be perfect
sometimes i get the answer wrong because i didnt type it exactly how the system wants \
Bro your pfp is crazy
even though i got the answer right
Yeah the answer system is annoyingly specific sometimes but it is not a big deal imo
Hey guys. How can I filter a header within a response using ffuf? GPT says I cannot do that... Is there a different fuzzer that can do that? I'm trying to brute usernames in a registration POST
Almost as cool as my pfp
Ham
See it as practise, in IT and Security, everything has to be 100% correct or it won't work. There is no auto complete, there is no prediction program behind it. Go for 100% 🙂
It doesnt work for me... Not sure why
blackberries
chirp chirp chirp
please be careful and don't eat the poison ones
I'm drinking some Malbec 🙂
Opinion on those babybel cheeses
just fine for snacking cheese
charcuterie potential
I hope a gorilla comes busting out of there
harambe pt2
Yo
try magic mushrooms out in the wild
Don’t need drugs for that, just have low blood iron
Eat him
yes
no
Why do you keep calling bug's buges
Keeps reminding me of Buges Buney
He and Bugs are once again enemies like in the classic shorts, and he has a habit of mispronouncing Bugs's name as "Buges Buney." In Cecil's appearances on ...
It's an actual thing
Drink some aged wine like the sommelier you are
try using "
That was a funny episode
not that age, only 2 years, but it's great I love that wine
casual reminder that many insects have gross parasites living in them
Cecil Turtle is a fictional character in the Warner Bros. Looney Tunes and Merrie Melodies series of films. Though he made only three theatrical appearances, Cecil has the unusual distinction in that he is one of the very few characters who were able to outsmart Bugs Bunny, and the only one to do so three times in a row and at the rabbit's own g...
And ctrl f
Buges buney
my fav is freakshow. have you tried it ?
I love Cecil too bad it didn't get much screen time
I didn't like Cecil a lot
was annoying
I haven't tried any wine with that name
it's a pretty good cab. notes of black cherry, raspberry and toasted hazelnut
oi @blazing granite just realised something, did you watch colored looney tunes in your childhood or the black or white version
Is that American? If it's so, maybe from California they have a lot of cab there
Yes, from California central valley
we had colour TV at home, when I was very little in my parent room was a colour tv and in the living room a black and white, but it was change to a colour one when I was around 6 I believe
how do i set the id parameter in the url field
meepe moopo sleepy sloopity beepity boopity for shadow whadow
Cook then eat

best ask for some guidance in #pre-security-legacy-path or #room-help !
all good i found the answers online
alright 🙂
Anyone here solid on configuring Splunk?
I no nothing about it but here is a start Ahahah https://docs.splunk.com/Documentation
someone should help build a specific chomium image in a dockerfile for me
cause this sucks
Why did you put quotes
he's not actually learning
Yeah it’s clear as day
Thanks, I know how to set it up just had some specific configuration questions.
Gave +1 Rep to @flint surge (current: #2173 - 1)
hackerman
tree /
I need someone to review my intro video for my channel its 17 seconds any volunteers?
It wont lol
@molten sky can i dm you and tell you the channel name so you can give me your feedback?
you watch to much tiktok
i like this guy ^
cap
nvm i don't anymore
damn 😭
real
What help do you need
gmorning all
g’mornin

I'm in UML hell, making 3 diagrams for a uni assignment
Owasp?
yeah its on C# which im not too much a fan of, I much prefer python, but this is the last assignment for my trimester so very happy to get it out of the way
Thx m8
C# is superior
this is great
quite possibly haha, but pythons done everything ive needed in life so far, so I just prefer to work in it
my discord bots limping through to the finish line running on python
lol
But also you wrote a Python script that does what a bash script could’ve done
It’s just what people prefer for the job at that point
Poor fellers never heard the word parallelism in their life
I have one that checks a few job sites and posts the following into a discord channel for me every hour
Job Title:
Company:
Location: (specific to my state)
Date and time Posted:
Link:
Hey guys just wanna share these like am just so happy now can't believe I made this it's actually been a while but it all came through
So glad am making improvements every day
New win🏆🏆
That's great what did you do
What job sites? 👀
I made one for usajobs recently so anything along those lines I’d be interested
Just got into some e-commerce business and it turned out so well
Aye nice
Which is how code is most often written now anyways
Not that that’s bad but yeah, user preference
I'm in Australia so I dunno if it will apply to you, but seek being the main one, I have one for indeed and working on something that will work for linkedin
Ah right on
I bet LinkedIn has an API already for it
Companies like cloudflare don’t care what resources you use as long as you produce quality code
But older companies like Goldman Sachs and such, they’ll have some people who care and some who don’t
Every company ever
being able to idenitfy the need and get it done matters alot more than it being pretty at first too
Right, and llm is a good learning acceleration tool, doesn’t undermine the need to learn and know how to learn on your own
And use docs and all that jazz
@fervent meteor wait did you mean the juice shop room on THM?
The great thing about programming concepts, is the language doesn't matter 😄
same for algorithms
Yeah, I just downloaded it too
Once you get into things like parallelism and concurrency tho it does matter a little negligible bit
But not worth fretting over I suppose hahah
If you're at that point, then you would already understand it
Fair enough
Threading/concurrency in C vs Python vs Windows Fibers.... Gets out of hand quick haha
Very
Or, my fave thing ,randomly interweaving bits of asm for critical hand written functions 😄
Gotta love it
Insert a senior dev who knows no assembly and sees fit to remove it for legibility
Ik how python was basically built off of C but when I tried to learn it, it wasn’t really similar as people told me
It’s not similar syntax at all
Just that lots of the libraries and how Python interacts with the system were originally written in C under the hood
And bad memory management
.386.model flat, stdcall.stack 4096
ExitProcess proto, dwExitCode:DWORD
.data
array DWORD 7, 4, 5, 2, 9, 1, 8
length DWORD 7
.code
main PROC
mov esi, OFFSET array
mov ecx, length
dec ecx
jz end_sort
outer_loop:
mov edi, ecx
mov ebx, 0
inner_loop:
mov eax, [esi + edi * 4 - 4]
cmp eax, [esi + edi * 4]
jle no_swap
xchg eax, [esi + edi * 4]
mov [esi + edi * 4 - 4], eax
mov ebx, 1
no_swap:
dec edi
jnz inner_loop
cmp ebx, 0
je end_sort
dec ecx
jnz outer_loop
end_sort:
push 0
call ExitProcess
main ENDP
END main
OH GOD NO
WHY ARE YOU DOING THIS TO ME
Have fun 😄
I386 WHY
Lockheed Martin’s Mako™ hypersonic multi-mission missile is fast and more than ready. And while its design is mature, Lockheed Martin is exploring ways to make it more quickly and affordably.
Interesting
I love it when your bosses hears about a new zero-day at Black Hat and asks you to fix it by the time they get back...
Like bro, hold up here and take a minute to understand you don't pay me enough to decipher zero-days.
yo what position are you at your company?
Microsoft released workarounds in lieu of patches
I saw this on todays Simply Cyber daily threat brief haha
wasn't that a few months ago now?
seems like he is a bit late to the party lol
npm start keeps returning a command line error when I try to start juice shop smh
Their original patches didn't work, they're still working on it. Haven't seen a workaround for it yet either.
It was like yesterday
Black hat
Black Hat was back in april
No it wasn’t
I think maybe you’re thinking RSA?
"Black Hat Asia 2024 Singapore Marina Bay Sands April 16 - April 19 2024 "
That’s Asia bro lol
theres a blackhat in vegas the weekend before defcon
Fed con is active now. 😁🤣
ah mb
yeah well getting back to it, what's this workaround? haven't read anything on it
I'm going back over the simply cyber vid from this morning to see what was said, I cant recall if anything can be done but something was mentioned
yeah I watched it and so far M$ is still working on a patch to further lock down the affected files. Best option is to monitor and audit certain file changes.
The ones released today for the applicable CVE’s have the info under recommended actions
Yeah that’s it
yee was just about to say the same haha
Which sucks but is what it is ig
pretty wild someone can just be like lol lets roll back some software and theres no logs of it happening
Pretty sweet
How
yeah there's no patch or KBA out on how to detect it. Just that they aware about it.
@eternal roost it was great meeting y'all! And thank you again!
Gave +1 Rep to @eternal roost (current: #82 - 82)
"Oh, that's a nice fixed vulnerability you have there. would be a shame if it were to turn back into a zero day"
ah yeah have to monitor file system and permissions, but doesn't list which files to audit.
how do i start cyber
#start-here check this out and start an account on TryHackMe.com
thank you
Which do you think is better: systems engineering or computer science?
I would check the curriculum of both programs
Then cross reference which ones you like more
That's more of a you kind of question, which one do you like? I did CS cuz there weren't other programs at the time.
Its also good to check the standing of the program in terms of producing quality education
Both are good, but see if they are engineering certified by your countries body
ABET in the US
OK where do I go to complain about needing to use Burpsuite CE intruder? Its painful... not nice 😛
ZAP and FUFF 🙂
Systems Engineering is the security cheat code most companies miss
Systems Engineering enables, everything else. 😄
Pentesting, SOC, Threat intel all rely on engineering
Even general IT
Protecting legacy systems is very important. lots of industrial systems end up using legacy systems eventually where a breach can be weaponized.
Alright, Cya Folks! I'm out!
Cya
the most important is all that days are in full green
always are
Actually, what I wouldn't like about systems engineering is to spend 2 years looking at things that I've already seen. Maybe what I should look for is another type of thing that isn't a university degree, or computer science, but I don't see myself spending 5 years of my life studying pure mathematics every day. We'll have to see.
Pure math is extremely fun
Are you looking for women?
You don’t need a calculator past a certain level
Except for some fields
And yes, most undergraduate math classes are easy apart from maybe complex analysis that uses Real analysis 1&2 along with topology
We don't read what is inside a user agreement so
calculators were explicitly prohibited in every single uni math class i've taken
only really allowed in some sciences
In a yt video by a trusted man
What classes?
cause you've got a pen don't ya
anything math related, doesn't really matter if it's basic calc or if it's diff eq or linear or whatever
Well those aren’t computation heavy anyways
It is true that in math class you have to do everything by hand, except when there are very complex problems and limited by time they let you use a calculator but the vast majority of the time they require you to do it by hand.
And usually taken at freshman/sophomore years of a math major
because you're learning the concepts, not how to divide --
the basic arithmetic is always going to be easy in these contexts, your work is with higher constructs where a calculator is just doing everything for you
unless you're gonna start entering 5 + 7 into a cheap elementary school calc, but then you have other issues
What programming language did you all start with and recommend
Nobody really cares about calculators past an intro proof writing class
t
it's not unheard of to have several pages for a Q in some cases
Hi !
Started with Java but recommend python
but again, calculators are essentially cheating at that point, like it or not
depends
in which channel can i configure my role using my token
thm bot i think
I started with batch but I recommand you python and c
anywhere.
when using the / command it doesn't show in chat
k!
Yo Zuni
Zumi
I had a problem starting juice shop with npm
Yes, no one cares past freshman/sophomore math major courses.
the operations that you could do on the calculator without making it do the work for you would be simple enough to do by hand anyways
to the point where the calculator is often slower
calculators are fine for real world stuff, it just doesn't make sense in a classroom environment where the calculator defeats the entire purpose of the thing you're doing
this is also an unrealistic problem. the basic arithmetic items are always simple enough to do mentally or by hand in these courses
No?
the focus of the work is on constructs and concepts
am i stupid or what i just went through the subnetting part on thm and it went over my head
😦
no university level course is going to ask for a simple multiplication problem, and since they know you can do multiplication, it's just going to be something simple to allow the greater concept being tested to work
Every physics course requires arithmetic. So do combinatorics and probability courses
you could be told "here, integrate this thing" and be tested on the concept of integration, but the basic/underlying arithmetic will be easy
we're not talking about physics ---- the sciences don't focus on the same things as math courses
same
that was also in my original msg lol
i dont even understand what i dont understand , what i got from it was ending in 0 meant its the start of the network, ending in 1-253 means its a device on the network and ending in 254-255 means its the gateway?? is this right bro or am i tweaking
I included combinatorics and probability
Even operations research with optimization
not sure what that is but yeah calculators are used in sciences quite frequently, because they are focusing on formulas and don't care what you can do
but a math class is focusing on different things, and those things a proper calculator will do every single step for you
ohhh ok youre right! they said its typically .1 or .254
wait, are you saying physics is a math class?
I didn’t say that
i recommend going trough cisco stuff
okay i was confused by your reply then lol
the web academy
Combinatorics, probability, operations research are
ah yeah i follow
Packet tracer >>>>
ok im doing spicifically the primer on subnetting part right now and they didnt go over the existance of a broadcast!
we just don't have those names around here
really fun stuff
alright i will look into it
Probably do. It’s standard higher level math major courses
yeah calculators defeat the purpose in those classes if they're taught focusing on the namesake
Except maybe for operations research
@coarse moth is that you on your pfp?
@amber summit https://www.youtube.com/@PracticalNetworking
ok i will watch this
if you're told to integrate, you don't need to know shit cause a calculator will do it for you
if they want to teach you how to integrate, the only way to do that is without the thing that literally does every step of it for you
that's the difference between this and sciences, where it's formula based
Be more confident
did i hear docker
you should fix mine
opening this right now seems detailed thanks a lot bro this is gonna help me
Gave +1 Rep to @fervent meteor (current: #188 - 35)
lol
Dig stands for “domain information groper”
Ask Zumi
lmao it actually is
containers are awesome wdym
containers are awesome
nah you just need to learn containers
that just sounds like a skill issue
i can make a zip bomb
don't do things that introduce vulns 🤷♂️
yet another reason why calculators should be made illegal
Guys i have an IT job finallyyy
Congrats!!
Thank you
what job
CEO
They didnt have any sort of IT person before i came in because its a little smaller so ill do a lot, tech support and security will be the main two
Yeah im the CEO, the owner immediately quit when he saw how cool i am
Based
Congratulations, always remember to be disciplined, drink water, exercise and don't let a day go by when you don't learn something new.
Thanks bro
I run everyday so that shouldnt be a problem
And i watch all of hammonds videos
nice !
The creepiest pfp giving the best advice (?)
Fr that thing is scary
get a cat pfp
Wasn't that image popular on early 10's social media ?
like really old memes and stuff
Who is hammond
rude

Meta image creator is garbage
spooky pfp
it's over
@coarse moth your pfp made me remember the band hollywood undead
undeaddddd
mk ultra
Congrats 🥳. Which area?
Im the only person in IT there right now so almost everything, mostly security and tech support
happy for you riv, 🙂
Thanks!
Crazy.
And its your entry-job?
So you already have plenty of experience?
Its my entry job and i dont have any official experience
Ive been working with tech my whole life tho
You hacked into. Real world priv escalation 👌
For real
It's the same as asking at what age you had your first job in IT.
My age isnt something i put on the internet, i keep my OSINT at as little as possible
I’m in my century’s right now.
Same bro im in my first century
Oh nice
I will never get OSINTed
You couldnt find anything on me
This reminds me of a meme from a few years ago.
"If you want a job in cyber security, tell them in the interview that you've already put yourself on the employee list"
I’m 1000 year old being, my consciousness was uploaded by the overlord aliens eons ago.
Thats crazy bro
Zumi youre gonna run out of reactions if dont chill! /j
Like a caveman? You just use images
Just kidding my placenta is still attached. Just left the womb.
Bro what
Silly goose behavior
Ohhhh duck duck goose
Fr?
New browser
Id make it real but browser complicated :(
You are from IT background or else
People will help if they can, posting it in more channels is just annoying and makes me want to help less
I pulled a sledge hammer from my wizarding backpack which carry’s trillions of items and when hulk hogan on them.
You was in mili?
ahh i'm sorry😰
The real one? 🦆🦆Go?
Interesting
Ur fine im just telling you :)
Which branch it’s how we determine if you look at men in the eyes or the crotch.

