#general
1 messages · Page 370 of 1
it's not on thm
htb?
Please stop asking for help on HTB content in this server
whats on the website
This is not HTB, this is THM.
We don't know their rules for help regarding rooms, tasks etc...
it's about the ssh
in general
It's HTB.
He’s probably doing the latest Seasonal machine
ya
just to add context
Regardless, either try yourself, or ask in their Discord.
Stop asking here.
bruh
I like the cat in your profile picture.
thx
Gave +1 Rep to @solar echo (current: #229 - 25)
Hi
Hello.
hiya all
Did you leave and re join?
If there was a way to get the password for SSH reliably, it'd get fixed. That'd be a major security issue. It's going to be different every time. Who says that's even the correct way to proceed with the box?
hello
hi
oh hey thor
i guess you are bored
hm yeah
Morning
Probably expected it to be like some THM rooms and just handed to them.
hetherland is extra weird in some thing... you can buy "funny flowers" legally and use it, but there is now way to contact bank in any way at all only direct phone call or go there in person
Wait what do you mean?
only way to contact bank if i need them is to call them and make time to go there. just there is no email option at all. all is blocked
and first thing that "funny flowers" are legal full time =/
And takes too much time
Thats in a lot of countries
Although we were on of the first
y
Let's not discuss this here
Nope, haven't had time
But please be aware that decriminalized and legal are rather different
yea
Yep
I am clicking on the start machine and it is not starting
there are quite list of rules indeed
Please ask in #site-support
Ralex, I designed a wardriver PCB
👀
Meant to be easily portable etc, based on this one https://wardriver.uk/start
Will send a photo
used come cnc machine or how you trace the lines ?
I'm just getting JLC PCB to make them
Means I can do nice silkscreen printing and black solder mask, make it look l33t
What is the range like?
Nice high gain wifi antennas so probably decent
But range is less interesting, because you're triangulating
So you need to move around anyway
i still need order one pcb board to try mke it via laser... aside that i have home type of laser
new version of laserpecker as i have is 20w IR laser. that will be extra nice
I was just wondering how well it'd do flying, what altitude you'd have to be at
it's fiber laser what is also nice
I have some CNC projects I'd like to get JLC to build too but I have to design those first and that seems hard...
They have coupons
How to take notes man that's harder than solving a math problem
haste
write/type down everything as fast as you can without looking at it
if its like
a lecture
or video
then when theyre finished
Ask if you can record voice notes
fix up the mistakes
actually scrap that if its a video youd just be able to look back
Plenty of AI out there designed for listening to a lecture and making notes around it.
true

hi scrubman
lurking in chat i see
Not called lurking if I'm typing?
no u were lurking for 50mins
I wasn't at my laptop for the last 50 min(s).
Amazingly, I don't sit at my laptop 24/7.
HAHAHAHA
i was kidding
Please engage more.
@amber wave please share i feel bad now
I'll only delete it again.
ty mate
why is it not okay to send a public link?
I'm not, we prefer our users to engage with the community before self promotion.
Hello
lol
It's theirs.
It’s bad to just admit that you’re 13 , if someone reports your messages and says that you stated your age in your messages then they can get your account banned.
And it's medium, they make money from it.
facts
💀
Wdym?
Did you read the discord tos
Minimum 13
Depending on country.
Discord still bans 13 and you have to provide ID since your the minimum age
Switzerland is 13
No they don't.
Yes they do 🤷♂️
yes they do.
Source. 🙂
I’ve seen it happen
Show the proof. 🙂
no
Really authentic!
they dont
"Hay, I have a million dollars." totally believe me.
Ok say your 13 right now in this chat 😂
If you guys don’t believe u won’t get account disabled
but im not 13
So why is that user not been disabled then?
requires a manual report
Dear Discord, i live in Switzerland and I'm 13 years old.
Either back up your claim with proof, or don't back it up. 🤷
discord doesnt look at context
I’m asking you guys to help me back it up
Ik
Just go ahead and say “ I’m 13 “
Im 13
i got disabled once in i think early 2022 and august 2023
25 july 2011
A user already has, several members have in this server, and they're all still here, or removed for alternative reasons.
2022 i submitted a ticket and my account was back the next day, in 2023 they change it to 8 days
you have to wait 8 days
lost my booster badge because of that
annoying
id have the pretty diamond
for
"termed" ?
Banned/Disable
terminated
Many things
In Discord?
:hammer: homoglyph#0 has been banned.
holy
54 Now.
Ban evasions are against Discord ToS.
i agree
if u ever have to ban me would it be like “mav im so sorry…. but this is the way things are…” or
mean way
option C) very mean way
i dont think scrubby shows emotions
+1
No, I literally would ban you without anything.
rude
at least give me a warning
im gonna ban you mav now bye bye
Don't do something that could get you banned?
haha luckily wont ever happen
I always find a way to get banned 😭
bet you can't find one now
I can but it’s not one of my intentions
no proof
Bringing valid proof that I did ban evasion = Ban
did you?
Of course not
What if you tried out saying that your 13
Ok.
don't change the "you" conversation into a "me" conversation
Let's quit the trolling, and quit the "Say I'm 13".
You made a claim, and didn't provide either;
a) Source
b) Proof.
Despite the fact we have members in this community who are 13, and openly not been disabled by Discord.
It’s merely a trap. A proof paradox
people trolling
you failed my expectations ofv
and here i am with warning when i only mentioned p* * * *y
its better left unanswered..
But potatos gotta speak
Complex manipulation, I won’t fall for it.
im serious
No, you openly encouraged it, after being told not to.
And they're being called out for it. What's the problem?
so, do you use STRIDE or DREAD for threat modelling ?
I cant explain how good it feels to tell the age without the risk of being reported
those gifs i sent?
Oh wrong tag
they need to be stopped
I really like stride tbf
oooh
While you're entitled to your opinion, you are not a moderator. Thank you for your guidance, but I trust Scrubz's judgement
Gave +1 Rep to @icy mesa (current: #446 - 11)
its okay...i just dont like the feeling of walking on eggshells for stuff like that
I don't do threat modeling ( not yet) but DREAD is pretty ok
there is a PASTA methodology as well..
yee
Would highly recommend at least the first few chapters from Adam Shostack's threat modelling book to anyone here
I found learning threat modelling helps you contextualise your pentest findings much better and think about attacks ina new way
I 100% understand on how you are feeling right now. I want you to elaborate on what I need to be stopped on so I can help make this community a better place for all of us.
Thank you! Been doing a coursework from Udemy on threat modelling... Will pick the book up post completing that!
Gave +1 Rep to @naive violet (current: #2 - 2173)
I was introduced to ATT&CK and NIST in early stages so i usually go with ATT&CK
i didnt mean you bro...
Comes up on Humble often, keep an eye out
Sorry for my misunderstanding , good day then.
its okay..have a nice day too
hey y'all
Hey
well yeah u need to manually report them
You'd think people would have done that, right? Right?
exactly
How good is reporting specially to discord
so im saying his hypothesis is wrong
POV : i don't anything about the previous conversation ... soooo
cus someone wont get disabled if a person reports a message that they sent stating they were 13 which is the minimum
i think south korea is an exception
Highly recommend not discussing breaking the discord ToS in this server
u need to be like 16 in south korea to use discord or something
Morning
Morning
As interesting as the conversation is I have to agree with James , we need to all collectively protect this server, which also means we cannot make mistakes that can endanger it.
It’s 5:24 am
I’m actually in Minnesota rn so it’s worse
Making a mistake is fine, that’s why moderators are here to steer everyone back onto track :)
yea
kids rly have weird ideas and answers
my coworker daughter wish to get new laptop, and her dad told her if she get some money he will double ti. she took dog, put otuside and make notice: Pet A Dog = 1euro... smart kid got 600+e in one afternoon
cos ppl pay 5e to pet dog 5 times 🙂
theres something else like exiftool
but its been so long that I can't remember what it is
to get exif info or to remove it or so ?
to get it
command line tool or?
CLI, yeah
hi, im just a beginner here. i heard that brilliant.org used to have a lot of courses but they have taken a lot down, there was also the community feature but it was taken down as well. does anyone has an alternative to brilliant.org (now it is still okay, but the contents are a lot tone down and basic, compared to the past), or does anyone has an archived version of the web/app? i get troubles learning with textbooks and lectures at school:(( btw i've tried every single modded .apk files for android phones just to access the old contents, but none has worked, the app updated itself and prevents users from using the old version unless you update it in the google play (an android alternative to the app store on ios). Does anyone have any clue on this? Thanks a lot!
i know this might not seem relevant to cs, but i came across this comment on reddit (which i presume has something to do with reverse engineering, api development, and software engineering i guess): https://www.reddit.com/r/moddedandroidapps/comments/qbwled/comment/hzdtk4y/?utm_source=share&utm_medium=web3x&utm_name=web3xcss&utm_term=1&utm_content=share_button
can anyone here by any chance give me a clue about this problem, thank you
holy wall of a text
can i pay for one month of tryhackme and then from the next month start billing it annually?
Amen.
i think is billed instant
you can likely change your subscription after the month is ended.
billed instant meaning?
i am not speaking about vouchers
ik. just was ting might help. the sub is billed instant iir
i wanna know if i can pay for one month's subscription thorugh paypal and then if i like it, from next month i'll do the annual plan
idk if is 1 mont minnimu or 3
but again. you can buy voucher and then buy sub after voucher end. as you say if i like it
i c
Yes, but you will have to subscribe for a month, cancel it and then subscribe again for a year
ah! thanks
Gave +1 Rep to @mossy river (current: #6 - 1307)
would i still retain my student discount if i do this?
as long as my account is registered with my institutional email?
Mhm!
Anytime I make a typo while writing “good morning” it autocorrects to “good morning bbg”
Makes for awkward interactions
question is why does it autocorrect into that
😣
just hold down on it and delete it from your autocorrects.
Apple moment
Sounds like predictive text not autocorrect?
“Good morninhgg” -> “good morning bbg”
Mhm autocorrect usually only corrects one word, not creates two
Yeah its weird
phone got stolen on the way to linecon x.x getting my sim-card back today.
remember @boreal scarab loosing me for 16 hours lmao
new phone that will allow mfa is ordered, will be at the office in a few days... dont really wanna go in there atm as theres anoise going on
Ah, can you inform moderation when you lose access to your account as you have a special role^
🙂
I have a special role? 😮
Do I have any special roles?
oh-.. recruiter you mean?
oh likely.
Mhhhm
Dw I’ve already removed the role from your account as prevention 🙂
CIA stole the phone
did we meet btw? bad at names
...and didnt even letme F^ a fed...
.....what I know of
honestly be more likely it was kgb lmao
meow
wroom-cat
trying to find the "nice car what do you do for a living" clip with a cat in a box but youtube is so broken these days. just when you thought you couldnt hate google more!!
does anyone know how some people have animated pfps in thm
They paid for nitro
Oh
i thought it didnt support gifs
f*ck a fed. its a defcon thing
I didn’t read the end part
never done it what.. what im aware of anyway
explained to someone it was a thing.. and they went like "im not a fed....... yet" and Im like "are you hittin on me" lmao
and how do people get there roles to match there level in thm
i couldnt find a channel
for it
its on the webpage I think
discord token:
https://tryhackme.com/r/manage-account/account-details
@hollow carbon
thanks
alrite, loveyou guys but time to go offgrid again. see ya!!
i'm tired of sucking
i need thm shirt, cap and water bottle, only then i'll be able to improve
Get some awesome swag to show off to your friends.
Is anyone going to watch the AFRAID movie when it comes out
i also have felling that it will frack up the storyline
We should start making movies about good AIs so they take it easy on us once they take over
hi
or we keep making movies about how we always win and AI will never and they might not even try
check movie 2036 Origin Unknown (2018)
Or it just learns all the ways we manage to stop it
I’ll check it out
When has a movie about AI ever been realistic 😂 it would be nonsense information to the AI
Time machines are pretty realistic 😣
What about "Terminator"?
Nowadays, AI writes movie scripts, so it can write it in its own favor (treat it as a joke, don't get paranoid, LLMs are not self-concious)
Esqy!
James!
Maybe you logged out of your windows account?
I have been building so many little projects
1940s morse key, modern buzzer to go with it
Building a power supply for a bunch of stuff but that's a slower process
I wonder how security is going to be handled once quantum computers become mainstream
- They won't
- There are quantum-resistant algos (Post-quantum cryptography)
hopefully thats a problem for people when I'm retired
Well, in the worst case scenario, you can always retire early 🙂
Amen
What do you mean by “they won’t”
They are highly specific in their functions, they won't replace average PC
You can contact windows support if you feel that something is off
Well, I’m not expecting the average person to possess them in the next 30 years but I’d assume they’ll be fairly common amongst corporations
possibly
Maybe you got hecked
we were promised hoverboards, in 40 years, we still have no hoverboards
Back to the future lied to us
we were also told ipv4 was going away
I want zero gravity sleep chambers
So both ideas are correct, depending on definition and understanding of "mainstream" 🙂
The government should just give me unlimited funds to make stuff
Semantics debates are lame
"This is the year of IPV6"
My old networking lecturer, since 2018.
hence we don't do that here
🫡
we had this in the late 90s...
Year of the linux desktop?
doubt it
Same thing though
Linux should be the new meta
Maybe of RHEL, if that existed, but fedora is still going
OpenSUSE Tumbleweed is more stable and with the latest versions of software.
Clear Linux might be good as well, though I haven't tried it yet
Sure, but then you have to deal with SUSE and the singing
singing?
Don't quite know exactly how to pronounce SUSE? We've got you covered....Broadway musical style.
Singer: Christian Busath
School age boy: Liam Tharp
Lyrics and song written by Andy Matthews, Aaron Tharp and Kyson Kidd.
Video production by Timber Picture Co. of Provo, Utah
Set Design: Meg Cabell
Executive Producer - Russ Dastrup of SUSE
I was in a meeting last week and I thought someone had said RHEL didn't distinguish anymore... but also like lots of corporations aren't going to use a desktop software that isn't supported somehow
just need to limit their power supply,like your landlord raises your rent
Yoo he’s back
I've always pronounced it like "Zeus" 
is SUSE more or less contentious than SQL?
You're the target of the song
I've never heard it pronounced like that
hi
Microsoft Squirrel server?
I hear Susie most often
If someone ever posts anything in job board for an Australian pentester, let me know pls.
How to make them hate you
It's actually so difficult to score a job as a pentester here; infact it's just hard to get a job in general but at least I have one now
oh I might have something for you unreal... Jobs (nickname of a person here) was a recruiter in the UK, got married to an Aussie girl, moved to Aussie land, got laid off, then got rehired and is now a recruiter in Aussie land, has a discord for AU jobs
I can DM it to you
It's so German that they even made a song about proper pronunciation
Yes please, you don't even have to ask, just send it to meeeeeeeee.
It reminded me of this:
https://www.youtube.com/watch?v=mG7GBGcABYQ
An angry german man runs you through how to properly pronounce german car names like Audi, BMW, Mercedes Benz etc.
Pay close attention verdammt nochmals!
Facebook: facebook.com/speedcomparer
Twitter: twitter.com/speedcomparer
- Jukin Media Verified *
Find this video and others like it by visiting https://www.jukinmedia.com/licensing/view/971...
you got it... good luck
well, I'm currently hired in a pretty good company in terms of culture and people.
is v-dub the right way?
but I'd move for a role in this field.
yeah he specialized in cyber jobs in the UK, I'm pretty sure his new job is similar but just for AU
v-dub?
VW
It's possible that I have spoken to them in person, possibly.
oh possibly, his name is Paul
maybe but nevertheless, DM me when ready.
now i just need to wait to be able to view anything at all, fun fact it went to my spam.
i'll dm you what I currently see.
sure but I'm not on that discord
oh weird, I'll tell him
It's enjoyable to learn German, you don't need to google how to read a pronoun
English is somewhat simple as well, try Swedish
is it tho? is it?
I'm a native English speaker and I HATE IT
Simple.. jeez.
this is a valid sentence in english
"Buffalo buffalo Buffalo buffalo buffalo buffalo Buffalo buffalo"
apparently this one is as well
James while John had had had had had had had had had had had a better effect on the teacher
Some words have a lot of different meanings I think that’s also why English it’s pretty hard
There, their and they're
Weather, whether and wether
also we can pronounce a word with the same spelling 3 different ways and it has 3 different meanings
live/live
Yeah
That hurts my brain a bit
Tbh trying to learn other languages is almost impossible for me. I took 3 years of Spanish and I remember NONE of it
it just takes practice, if you don't keep up with it, you'll lose it
True
I guess I just wasn’t as motivated to learn it
Feels like my tongue's dancing while reading German
You move your tongue while reading?
maybe mind tongue
while reading the 'rrrrrrr' in German
Some people mouth the words when they read.
that sounds like a slow way to read
fr, I read two words and know the entire paragraph
especially some articles about tech
Well, I can straight call a few things that are much more simple in english than in other languages:
Sounds are simple (except for th +- schwa)
Pronouns are simplified (you is formal and informal and no separation on thou/thee/thy/thine/ye)
No grammatical gender
Noun cases mostly don't change the form of the word
well, there are so many things that are much simpler in English than in other languages, but I won't dive into linguistics
0 line of communication, I litteraly tried everything. After I ordered Hell an Uber at LVCC, I had 0 idea where she was after that 
I find sounds in other languages to be simple because if it is spelled right, you know how to say it, its not the same in english
also there are some words in english that I can't say or have a hard time saying
Ok, can you pronounce correctly قطر (Qatar)? 🙂
Plus some words are from other languages
I'm curious, what words?
Let me try
Qa-tar?
Or is it qua-tar
probably not, is it a throaty k sound ? because in english, it is pronounced ka-tar
but maybe its more like kha-tar
Oh ka tar
@green chasm Please don't send unsolicited friend requests, it's against the discord rules
It's ق (Q), not ك (K)
Oh so I was right?
Nope, you pronounced it wrong 😄
ths sounds are difficult, also I can't think of them but sometimes I ask my husband to pronounce for me and I try to repeat
qua-tar sounds like something someone speaking french would say
interestingly, "kh" is usually used to indicate hard "K"
I’m trying to think of words that we pulled from other languages
most of them.
so do you have an audio of someone saying the right pronunciation?
We can see how google translate pronounces it.
https://forvo.com/word/قطر/
Here, I guess
ok there are 4 different audios, all sound different 🤣
Alternatively, you can google "ق"
The accents
person from UAE makes it sound like guitar
regional differences, I guess
woman from iraq makes it sound like kah-tar
Arabic itself has regional variations
That's what I said/meant
yeah but also if you asking if we can pronounce it correctly, it is hard to nail down what is 'correct'
Yes
guy from saudia arabia rolls the r at the end a little and makes it sound like cu-tarr
I just meant the throat sound. Since it's unusual for western languages. As a counterargument to the "if it is spelled right, you know how to say it"
I might take the Egypt breed as a standard Arabic
But if you said there’s regional differences. It all means the same thing but with different accents no?
yeah we don't have throaty sounds or not as throaty
Well, there is another hard sound, though more european: ɨ
https://en.wikipedia.org/wiki/Close_central_unrounded_vowel
Prounciation: https://translate.google.com/?sl=tr&tl=en&text=sığ&op=translate
wow.
What’s you been up too esqy
Literally nothing 🙂
@hushed stream email support@tryhackme.com, support isn't offered through discord and no one can process a refund through here
I had that happened before too
There's a clearer picture.
yeah it does that sometimes
But... we share a server.
Stupid Clyde
They're still here, they're just muted.
always happening
to me
Don't spam the same message over and over please.
This was the first time I experienced something like this, it was a platform I've been working on for a long time.
And I sent them an e-mail. thanks
Gave +1 Rep to @tired peak (current: #15 - 514)
the war against Spam is neverending
More coffee 😎
You posted the same message 3 times in a row in very quick timing.
I know that
The bot muted you because of it.
I know 😄
Dang Burrish - I feel like the Jameses are merging into one superjames
Very nice actually ngl, definitely strong stuff
I would die
sorry but 500 turkish liras not cheap for me
Caffeine is my worst enemy
the name? or the coffee?
I still drink it tho
Reach out to support, as Zojja said, mentioning in here won't help.
I suppose both..
James gave me the nickname, my parents gave me my name and my coffee 
I had not renewed my subscription this month, but THM still allows me to access premium content. I'm pretty sure THM will charge me for an extra month next month
I was there but I don't think it was me
Had some of this, wasn't a fan but it was damn strong
Hmm, not sure who yhen
If you renewed it that’s why you have access
Yeah I've got some local roasted coffee which has amazing flavour, this has a decent flavour for it's strength
I half expected it to taste like pure shit but pack enough caffeine to kill a horse
Can't be too spicy
Did you report this to support?
Good thing you're not a horse (I assume)
Also got a really wholesome mug, hang about
Privat33r - yeah, a couple of the indian lads on here tried to convince me of that. One actually ate a bhut joloki on camera in VC 😄
nop. I might gonna shut down the subscription directly,much more easy way
And I got some poitín
If this is affecting you, it's likely to affect more users on the website. I would prefer if you prefer if you report it to support 🙂
I've had a stomach ache all day. I hope it wont affect other users on here
lol
Ahh ralex. show me some prints, yo! anything new and crazy?
Is that from the website in Jobs board?
no. was posted on creality discord as 50$ voucher
might be here idk also
i still got link if you wish look at it
cmon Scrubz. everything ralex says somehow links back to 3D printing 😄
Or engraving
I don't feel it right now. Gurgling horrible stomach. But largely, yep 🙂
bad food or ?
it happens
Yah.
oh, I sold out of all my Dragon Eggs. turns out Larper geeks love them
If you see any cool puzzle boxes I can print, sling me a link. I made a cople of those ones that kina look like a stack of books, and they were a huge hit. So, i'm on the hunt for other designs that I can recyle bits from to create my own, y'know
Hehe, It's a slippery slope. I'll look up and 2hrs will have passed, and folders full 😄
Discover 3D models for 3D printing related to Puzzle Box. Download your favorite STL files and make them with your 3D printer. Have a good time!
The 4th one along is the one I made
I think the cryptexes are cooler made of wood
that for sure
You can place this stack of fake books on the bookshelf behind you during the remote interview
i got on job zirconium plates. wish to make from it. just boss says no. 1ton is around 30k euros lol
I am getting eggs and bacon and avocado
livin' the good life
Yeah, partner is making food while I work
Damn, you are fully leveling up your Adulting skill, Bella
we send it back as recicle. but i like small balls from 0.8 to 1.2 mm. that i have lots to get
Do you engrave a ball using the glass/can turner thing or is there a specific add-on for it?
i have rotation station
Does it rotate the ball around 360, or just around 1 axis?
Yeah, I got evening shift, so just laying in bed watching movies and taking turns making food for each other
a metal dragon egg would be lit
let me show you. sec
Bella - you still in that apartment you moved into last time I was about?
I am at my partners right now, but I still live in my apartment yes
Got my 4th screen for my desktop now
Oh cool. I tried 4 screens, but i think it was too many. 3 is fine for me, I think
Have to send back a server to work, cause customer is needing it now, but got a personal server from school
Oh sweet. What are you running on it?
o ffs fracking firefox
Nothing yet, need to get it back from school
@glass nest https://www.laserpecker.net/collections/accessories/products/rotary-extension?variant=48804220764456
Bella - Looks like that'll be exciting!
Ralex - Aaaahh looks like my lathe
I prefer Thai Sweet Chili Sauce while cooking
bt esqy i got k1c printer also
Prefer that to what?
Haha, I remember when you got it 😄
Yuuup, gonna throw on exsi most likely
What mods have you done on it (I'm kinda confident you have modded it..)
Really old server though, so only some stuff will be running on it
aslo https://www.printables.com/model/63456-puzzle-box i do not recomend but this box
Don't know if its power hungry
still in factory set for now
No, this is an AI bot
I made homemade beef burgers and a cake, it's a BBQ night lads 😎
Matt, I got my wardriver boards fabbed
James, you can drive now?
No
ah. So you are putting the 'War' in 'Wardrive' 😄
War... Cycling?
Knowing James, it's probably WarDroning or something 😄
sounds like wireless hacking
what? nah, that only happens in movies.
Yooo Esqy
Long time no see
Hiya Deditio! Have you changed names?
Yeppp
WOOH!
Alright alright☺️
Wanna sell me one?
👉👈
do a craft swap - make some cases for boards :p
That name make u like a villager NPC in minecraft
Can you solder?
*sodder 😄
emotionless
Yesint. I can, not an expert though, but I have in the past only couple of times.
Hmm?
the question is... how many SMCs are there
I don't really get it
You give board. I give case.
There's no surface mount stuff, and JLC has new customer coupons so you can get a run of them dirt cheap. I haven't assembled or tested one yet tho
I can just send you the cad files to submit to JLC if they work
I just designed a new board that is 99.9% SMT, should be fun
Works for me. Also need a parts list if JLC only gives the board
Making yourself suffer 😄
It is impressive though James. As you know, I tend to just get Pis
Particularly neat board tho
'-'
Question: do I need to learn mathematics deep while I start electronics?
Nah
No sir..just Boolean 😁
Humble Bundle regularly does Learn Electronics books
It is not necessary, but of course mathematics is always part of
Are there any machines on THM that work off the ADFS?
Just calculus and a bit of complex numbers
@boreal scarab btw i use arch

Arch vs parrot
acceptable
Not the most fun class but making robots was cool
Suse
it's painful to read a whole page of fomulas, and nothing autual exists corresbonding to them
preference
HOLY SHIT! How'd you get that working?
magic
It's pretty awesome NGL
it's arch with hyprland
For totally educational purposes, I am making a bad usb, I've put the payload into the drive, I'm not sure if that's the end of the process, should the badUSB theoretically work now, or am I missing something
And which educational purpose do you think this fits?
It runs a "hello world" script on the machine which the payload runs on, I'm planning on running it on a old Mini PC I have
I just wanna see how this stuff works
I didn't ask what it does.
I'm wondering what you think an "educational purpose" this fits...
I want to understand malware, sorry for bad English
No, you want to create malware, and you're putting it behind the typical "educational purpose".
You are just assuming that
If you want to do badUSB, don’t do illegal, stupid stuff, but this isn’t the place to ask because they’ll expect a bulletproof answer on your ethics for it
In fairness, it's not assumption when you have experience with people...
Because that's what 99.9% of users who want to "bend" the rules to learn how to make malware.
Facts
You expect too much of me, Im a noob at this stuff, I couldn't develop "malware" with my current skill level
YouTube and research is your friend, just remember anything you do is your responsibility
Then it's best to leave it alone.
Well of course
Perhaps, but using things you don't understand fully can land you in hot water quite often.
ErlinGod Haalandinho
mentorship available here??😁
Agreed
That is why I'm using a very weak/simple payload, on my own system, which I don't care about if i end up damaging it
@pearl raven @flat roost when a moderator is dealing with something, please don't get involved.
It makes the situation harder to moderate, especially with back handed comments @flat roost
Understood.
Malware is restricted to our advanced channels anyway.
hi
👋
a mysterious room on second floor, in a nightclub hiding in the end of an alley
Maybe #bug-bounty is a better channel
oooooh just find out I've been level 13
Need to verify your account though.
I heard that climate change causes bug population to grow, so you probably have better chances now
kneeslapper that
It might not even cover the cost of the pesticides
pesticides reduce bug population and they become harder to find
That's why we don't do that here
Should I restrict my diet to only McDonald’s
healthy! :3
ps: I'm officially not a doctor
Well, in tech world the primary source of bugs is innovation. It's basically a cost of new features. Something is being overlooked, other things are not thought through as they should.
You can mix it with KFC, doctors say that mixed diet is the best for your health. But jokes aside, mediterranean diet is one of the best for health in general. Though it depends on body: some people have allergies, other have intolerances; also variety of medical conditions (like ulcer, gastritis, IBS, GERD and others), hence you know best.
Research shows that ultraprocessed food might be not the best for your health, but you do you.
https://www.thelancet.com/journals/lanepe/article/PIIS2666-7762(23)00190-4/fulltext
a
why is malware development is a sensitive topic that should be restricted only to the advanced channels ? . can u give me one reason ? .. im not blaming or something . just curious
cos is malware development
Most obvious one: less experienced users might harm their computers and then try to hold THM liable.
because malware goes boom if mishandled.
Reasons above, also If you get caught distributing malware, the police won't take too kindly to "I was only trying to learn".
that too
because the old man gonna slap his boy' butt
Wat?

woah woah! lmao
But hunter

What your rank bug crowd
Or hackerone
I am not participating all that much in bug hunting there
Dman
https://help.tryhackme.com/en/articles/6495946-the-bug-bounty-program
Potential rewards:
Bug Hunter Title (awarded after 3 valid bugs have been found)
Responsibly discovering & disclosing security flaws!
Security*
lol
it happened before , someone from thm users found a bug in thm webapp?
I fancy a bread roll.
Yeah right? @static bolt
I should have gone for more threads :(
*room
Oh yeah room
Texas Roadhouse
gotta keep it on the plain side today. Only just started feeling better 😄
:D
I say this every time after a break, but I do really wanna get back into all this internetcomputer stuff.
👋
how are you today
Healthy you
Bit bored. I didnt leave home all day rested
Feeling a lot better than I was this morning. What brought you fromliberty? You starting your cyber security journey, or already into it and getting a bit of networking done?
I was travelling whole day yesterday
ayyo!
Nah not in it. I just joined to explore
But I’m backend engineer
Cool cool, always fun to check out communities
Good 'ol dotnet 🙂
Yeah never gets old 😄
Im into reverse engineering, i dont know much abt it but
it looks cool
They have ctf stuff
Capture the flag
Not a fan myself, but there are a fair few people on here that are into it.
Hmm you find boring ?
Yes Muiri and I found stored XSS
With .NET it's about as simple as starting DnSpy 🙂
not so much boring, just... I dunno. I can lose myself when poking around web apps and networks or doing forensic stuff, but rev eng.. I guess it just doesnt light my fire
I get lost in the sauce with DnSpy sometimes
The symbols, what do they mean?!
Remember Vargs VC sessions where he's get lost in Shodan? that was always funny
i also like single player game cheating stuff. like changing values there writing trainer etc
Hello! How are you? Hope you have a great day!
it looks cool 😄
Ehhh.. Maybe don't talk about game hacking. They don't like that stuff here
What symbols? It's kind of pretty straightforward interface. Not an e.g. IDA
Or do you mean debug symbols? https://learn.microsoft.com/en-us/dotnet/core/diagnostics/symbols
Call it binary exploitation : )
nice ! can i say that stored xss is more dangerous cuz it doesn't require tricking the user ?
Not my fight
I probably mean .NET symbols
That depends.
and all the other shenanigans that they possess
last game i cheated was mad games tycoon lol. single player tycoon game 😄
Generally stored is better regarded than XSS yeah
User still has to go there
I've been using hax in COD9 zombies
Well, the doc kind of explains this topic 🙂
I can do a “bit” of static analysis but I still don’t get much about how the whole classes and other shenanigans work
Classes are basic OOP concept. Do you have an experience in development?
.NET reversing is not fun
Yeah, I do but no professional development. I have used classes in some small projects I do
I just get lost in the UI that I don’t know what I’m reading and where I am at most of the time
It makes sense to learn the concepts from the development perspective. After this you can grasp the ideas of others.
is cyber security salaries good
i'm not very happy about dev salaries here nowadays
more experience more money
Have a look around you on Linkedin or something.
Same with any job, really. entry level is ok, higher level is good
Depends on where you are, what your role is, how much a company is willing to pay, etc.
But the plus side of cybersec, is you can largely learn it all for free
and whether or not the HR is willing to bet its chips on you
arent there paid certificate stuff
for cybersec
Oh yeah, you have that aswell, but you can learn it all for free. Tons of resources online
I guess you will eventually hit a ceiling where you have to do research and piece together various information and that will test your experience and technical knowledge
Yeah, but for most, thats a long time away 😄
I agree
Gonna show my THM ranks to my future employer, seeing if they would put me in an Infra operator position
any know how to fix
Sudo
Jk, run the program yourself outside of systemctl, then you'll get more error messages than that
hmm... how exactly do that 🙂
@loud marlin go back green
Brutal. Let ralex live his own life
Nuuuu
He wants those cool animated emojis.

Something something run smb
find the systemctl file and see what it calls
or use journactl to view the logs
the 2nd pic is journactl
ah didn't see that
dear lord. there was no smb.conf file at all
Cheers y'all
find some online. now it works. kinda need edit it
oh sorry
@mossy river
ups
mea culpa
looks alike it works now
@chilly veldt well =/
idk... but funny
use the journal to get more verbose logs. you can also set the journald config to get more verbosity in the daemon
got it. there was no smb.conf file 🙂
It's very standard on linux to do this. Abstract config from implementation to reduce likelihood of private details being included in a repo or precompiled package binary.
due to the difference between linux distros? No they cannot
if you are installing from upstream, distro specific details are not included. If the package is installed from a distro-specific package manager, I would expect the package maintainer to include a bare-minimum config file.
Gave +1 Rep to @whole yew (current: #10 - 770)
but that's a more 'new school' linux viewpoint, and the old guard that's been writing kernel modules for 20+ years will ask why someone is so dumb they can't write the .conf file
My colleague
reminder... get to school at 13:15 on september the second
Oh the good old days
back??? this is first time into university/high school
no the definition for hög skola/univeristet in sweden is whacky
before that there is 9 years of grade school and 3 years of gymnasium
https://x.com/Mr_Dark55/status/1824540554451206622
i feel like this isnt vulnerability 🤔
he just manipulates with session id
anyone had ever been boarding high school?
@whole yew
@sick lance ?
i also fail to see how this is a vuln
I can only really think of maybe being able to change the username to someone elses or without knowing the session id? But they didn't show either of that
Anybody is able to access your account with the session ID....
he just used session id, obtaining it would be vuln
Perhaps CSRF?
tiktok api is public actually
send the link to somebody and they click and it's done
no he takes session id from local storage
his own session id
There wasn't any demonstration of CSRF here
hello
hi
hi
i also think this isn't a vulnerability. it's just using an API and a session token.
ah
looks like one needs an authenticated session
so hypothetically, there are vectors that could steal that session token, but that isn't a problem with the tiktok itself, that would be an attack against a user's browser cache
it would be problem with tiktok itself for example say someone somehow granted unautorized access to tiktok with some vulnerability in api
right ?
Stealing a session token would be vv bad
migrating to another user from the same session would indeed be a really bad vulnerability
Also hihi juun
hey james
I have borscht
I had the choice of a cert of defcon, sadly
Idk but I got two certs out of it in the end so that's fiiiiiiine
there was a super awesome 'intro to actual red team' talk done in adversary village, it was a really great intro to apt emulation on macos
Lol once I tried to send request to Twitter Api’s likes endpoint with my own session id. When they hidden likes, seems Twitter engineers are smart enough to also revoke perms
I thought maybe they only omitted from frontend
Also going to make a whisk(e)y sour when my ice is ready
Tbf yeah that happens a lot
i need to get some more orange bitters
yeah i actually knew i cant outsmart big companies like twitter lol
just wanted to try my chances
and citrus fruits, so i can make a good old fashioned
Debating the eggwhite, IBA has it without which is very good also. Haven't tried the eggwhite version.
Who was the speaker?
cat self
had a good chat with her the day before randomly at a table that somehow ended up being myself, an amazon internal pentester, someone looking to be a pentester, the CTO of a boutique software company, and her. great discussion on pentesting and security as a whole and the challenge of scaling security from startup to enterprise
I do enjoy the "these people happen to have ended up in a room and have shared interests" conference conversations
Ah, nice. I was curious because someone I know was giving a similar talk at cons on this side of the country.
Sup
i sent
just checking if someone have same issue
Do do so in #site-support 😄
how many rooms do y’all do on average daily basis?
Sometimes I only have enough time/energy to do one or two tasks in one day.
Sometimes I can nail 2-3 rooms. So it depends.
I've also redone two rooms, for better practice/learning purposes.
Yeah, it hurts, sometimes you even gotta miss out on that day and your streak is goneeeee. (Plot twist : you used streak freeze)
Sometimes like a 30 min room could take like 4 hours. 😭.
what premium offers
nm

