#general
1 messages · Page 458 of 1
windows doesn't respond to ping by default
Who’s she
firewall reasons
booo windows
only windows servers
Does Linux?
yes
Pretty sure you need to allow icmp on the windows firewall
Boooooo
rationale to drop pings makes sense but it's another security through obscurity thing that doesn't actually do anything
What if she’s on windows using a Linux vbox
She's still using Windows.
what are you trying to do
Just scan her
Regradless of where it is. it will still block ICMP pings by default.
Plus who is this she
What's your end goal here?
I’m guessing it’s so a attacker doesn’t think it’s a device so that’s why windows automatically block pings?
To ping her
I need help running a different OS on a Dell Chromebook
It's because when you set up a new Windows environment by default, it might not be updated, so it's to stop it from being pinged by a malicious actor who may want to attack the system.
Have you tried YouTube. Theres tutorials on there
Is it your schools?
Ah I see
Went there 1st
Look what berries said
No
What are you wanting to stick on it?
Please don't DM community members without asking.
Does it say if it's managed by anything?
My apologies
No
Still have to put a disclaimer, if it's your school's property (I know you said no) and you do this. 1. Teacher will not be happy. 2. Your IT department will be furious. 3. You may get in trouble.
That being said, try this, never loaded Linux on a chromebook before, but worth a shot. https://youtu.be/dq44cHvxTXI?si=rvFsmJYXhUrmxxsm
Today we're going over the process you can use to turn an old Chromebook into a normal laptop running Linux, Windows, or really any other modern operating system you want.
~Resources~
Searching for a used Chromebook: https://ebay.to/3jZS1Bs
Turning on Developer Mode: https://mrchromebox.tech/#devmode
Flashing New Firmware: https://mrchromebox.t...
Ok the os I have is supposed to run from start up off a flashdrive it's not doing that
Lol I jumped all past this video searching saying ion need this I got linux you sent it I watched it anyway it showed me how to get dm mode and it ran thanks
Gave +1 Rep to @boreal scarab (current: #28 - 302)
Hey, saw you are in Belgium and THM. Likewise :)) Hope we can connect
You're welcome!
Sup
Belgium here aswell
wtf nmap 2 hour scan
you scanning all ports in normal or slower timing???
finally after long fun journey I've just finished soc lvl1 
congratz
thx 
Gave +1 Rep to @sand trench (current: #3 - 1914)
nmap -p- -T0 --scan-delay 5m --max-retries 100 --sript=all 1.1.1.1


There are 2 types of people
1.1.1.1 and 8.8.8.8
8. people are wrong
sudo nmap -sS -T4 -sV -p- -oN nmap_ftp.txt
then shadow is a not people
quad 9?
as shadow uses 9.9.9.9
me 8.8.4.4 we are not the same
9.9.9.9 is a good option
my only issue with quad 9 is that they've had a history of pretty random downtime
I don't want to use google if I'm having DNS issues I might use google as a temp fix
just because i remember the address
normally shadow uses a nextdns dns server over https/tls
but 9.9.9.9 is the fall back for troubleshooting
dot (particularly doh) is awesome as an end user -- but as an administrator it sucks lmao
have had a lot of love for dnscrypt in the past too
nextdns looks cool never used it tho
they have a very generous free plan from shadows experience
What's everyones thoughts on hosting your own dns with pihole?
amazing option if you wanna maintain the block lists
also can teach you plenty of how your home network works
Yeah that's the issue I'm running into I don't want to lol
I also added wayyy to many lists
HaGeZi - Multi PRO++ is the main list shadow uses and it is good enough so far
Not sure what I used I think i found some mega list off reddit
yeah that can be problematic
there are plenty of problems with duplicates causing issues when you get a lot of lists
hence why shadow keeps to only a single one
Yeah I'll scrap what i have here an try out HaGezi It's not even enabled on my network right now bc of the issues
seems you have hagezi in there already but not the pro++ version
but yeah depends on how much unblocking and messing you wanna do
sup
Yeah i see that i guess i just need one solid list
it blocks a lot of ads its awesome
for some reason my whonix-kali steup stopped working
yesterday i was able to route kali traffic trough tor fine but today it wasnt workin
i tried reinstalling kali as well as whonix
networking adt issue?
networking adapter issue
well when i set my adapter as the normal default it works, but when i set the kali linux adaptor as the one to route traffic trough tor (internal network whonix) it doesnt work anymore
i need to route my traffic trough tor though
it was working yesterday idk what changed
i even tried getting the newer version of kali
thanks god i got it working
that’s good
i have an nmap scan thats been going on for over 10 minutes over tor
is it posible the target blocked the scan
meep moops time for sleep sloops to the beep boops
Gang gang
hello everyone
Beep boop powering down. Gn
Hello everybody guys, i finished the jr pen test path, and i'm thinking to start the EJPT course for the exam on INE, is a good idea or is it too early?
what python project should i do if i want to implement it in hacking
Almost every room ( I haven’t come across anyone without) focuses on enumeration and exploitation of http protocols. Im wondering if the same skills applied can translate to https. Any thoughts about this?
I'm wondering if anyone knows how to bypass the lock pattern screen of a samsung t530nu tablet. My friend has an old tablet that has an old email account attached to it, which is associated with some important accounts that he can't access. He just needs in his tablet so he can get access to his old email again. If he has five failed attempts at entering the pattern, the tablet will delete all his data.
We can’t say because we don’t know if this is truly your friends tablet
Hiya.
How are you?
Then how can I learn, because I do know it's my friends tablet. How do you find ethical hackers willing to ethically hack? I understand your hesitance, but were it your friend, you wouldn't think twice. It's clearly something that can be done, and something you would do, just not something you feel comfortable doing for me because you can't guarantee legitimacy. Anybody care to suggest how we overcome our skepticism of strangers and work toward helping our neighbors solve sincere problems, or is this a community that writes people off at first glance?
bro these types of "hacks" are done physically so you need to consult someone locally
Contact your phone service provider
How can I unlock my mobile phone?
Contact your mobile wireless service provider. Devices can be unlocked with unlock codes or other software updates offered to you by your provider. Some providers will complete the unlocking process in-store, others will unlock your device remotely. -FCC
What I'm hearing is, you don't know how to help. There are tools, I'm sure. Perhaps something in Kali Linux. I'm looking for someone who knows what tools to use. It's ok to admit when you don't know. Thanks anyway.
Gave +1 Rep to @teal wharf (current: #913 - 4)
Not a phone. a tablet. Old tablet. Dude changed his pass a lot while under the influence, years ago. He's turned his life around, but never could get back in to this tablet. There is no help from any service provider. Hence seeking an ethical hacker. Hope that clears things up. Clearly, I just need to ask else where. Have a great day!
he means unlock as in they don't have the pin. unlock in the context you quoted has to do with mobile devices being locked to a specific carrier -- i.e. you can only use it on tmobile or only on att before it gets paid off
bro 💀 no one is gonna tell u what these tools are or whatever , it is just like telling a soldier hand me ur rifle please there is a thief in my house
Ooh
Your right lmao
yo'ur *
Y our*
Y'all'r*
Yurr
Atlanta, I see you.
nah we've got annoying ass children up in the northeast that say that dumb shit too
Anyone who has worked with windows kernel driver, I am trying to create a dummy edr, could they please dm me.
Not too much but feel free to PM
Looks delightful, what is it?
Like, milk level of spice
lol
Yes, I believe you have to contact support regarding it.
Sick, Thanks
Wassup y’all
nothing much just trying to complete these rooms hbu?
Just chillin atm haha. It’s been a hot minute since I’ve done any THM. Life got busy. Looking to get back into it this weekend though 👀
I've been going non stop it feels like all week.
Hell yeah I miss grinding it out like that
hell yeah bro I want it bad
Yeah THM has amazing content. Such a good resource for learning. Especially since it’s very hands on
Yeah i feel like it's a great resource to get started for cheap as long as you want it bad enough.
There's lots of value i can tell
Yeah I took a whole two semesters off from school recently. Haven’t done any cyber shit that whole time just because irl shit happened
I miss it so much lol
Getting back on my feet though
Yeah I feel that i started awhile ago but fell off but got back this week
Glad to hear it dude.
Does TryHackMe ever do sales on subs?
That I don’t know but sometimes they do giveaways
iirc the Christmas challenges last year had a LOT of giveaways that were pretty common
I believe they discount the subs some time in December.
shit I wish i would of known that last week when i bought a year sub lol
does it affect student priced packages too?
Lol
That I’m not sure about.
Guys I just started jr penetration tester anyone wanna teamup?
Anyone knows how to use termux on androids ?
I think I figured out my usb port surge problem. I plugged in mouse, keyboard and external hardddrive and it was alright. As soon as I plugged in headset, it surged out. So either, my laptop can no longer provide enough to power all my devices anymore or my headset isn't working properly anymore.
It's just the command line. Unless you install NetHunter with the app and get the desktop side of it.
That I need help , I got android 14 but I’ve tried so many methods and tried fixing it 😠
I bet it’s my model
Every model should have a cl
Hi, do you have any tips for focusing only on the essential elements when learning something?"
because I'm learning the pre secu path and I'd like to summarize it to focus only on the important elements
I write everything on cherrytree and highlight the important parts in color, but sometimes it results in lengthy notes that aren't very useful x)
Morning
Guys, I need help with a question
Just ask the question.
its in #room-help
@lavish lintel Please don't advertise here
I’m not ready for today
u should be
Quiet chat
Make some noise ^^
Insert a wall of text here
To say hello? Its a start, yea 😄👍
and whats the first thing to start learn
where to look
I recommend basics as always. If you meant on thm i would say "complete beginner path" way ✌️
where i find this
What bella said 😄👌
lmao, wrote that by hand, didn't think it would work 
only english ?
yup
depends on you
im good on pc
then it might be easy
If it would be easy, everyone would do it ^^ .
the main question can i have money with this
if you get a job
im 24 years old and im broke
i mean this will give me job?
whats ur job
I work in a SOC and internal IT
salary good?
Possible but no warranty
yeah, pretty well
Print(“Hello”)
online or company
both
if it that easy why everyone is pay to much for this job
cause it's specialized knowledge
how it take time to learn this
cause there's a lot to know
How long does it take me to learn this?
A day or two
Try it. If it fits you, put effort in it and might you'll land a job. Tbh, if you are lookin for an easy way to make easy money... ew ^^ .
whaaaaaaaaaaat
days, weeks, months, years, depends on how deep you wanna go
you never stop learning
yes i want to fill my car with fuel
cuz it isnt easy lol
you confused me
As I said, try it. Be prepared to walk for a while instead of drivin' .
it might be easy for you to study, but hard for you to learn and get a job
why it was easy for you
I've done this for 4 years
don't assume anything
weak
should have like 12-16 YoE by now
|| (but actually yeah just time) ||
yeah, should've started at the age of 6-9
Damn, seems like I have too many years.
I mean, I've been writing code since I was 8-10, didn't start hacking until I was 13-16, then when I was 18-24 that's when it really got fun.
My first recorded code is hand-written from a time I wrote number 5 the wrong way around.
So likely from a time before i started school
hello can anyone help me here? i just finish course in tryhackme then i print the certificate but my name was written wrong so i change then then i print again but is print the old name can u help me fix this issue please.Thanks
I started writing code when I was… 17
Well no.. I guess I did write programs in BASIC when I was 11
؟؟
I feel like today is going very slow
Please don't don't multipost in different channels.
👀 What are you doing?
doing a TryHackMe machine 👀
Then off to #room-help 😄
ohh, thanks :)
Wowi. Emily armstrong did a great job with linkin park 🤘😃
No one cares but had to say it ^^
You care, isn’t that enough?
Wait what happened
I didn’t even know linkin park were still going.
Active again. With a new singer. Emily armstrong from dead sara.
No. No one can. Once a certificate has been generated it cannot be updated for... reasons. It's a ✨ feature ✨ /s 😆
Linkin Park will never be as good as when I seen in the 00's with Murderdolls.
Man, there are no to less cyber sec events here 😞
In the 00's i was listen to black flag or cock sparrer 😄 . But the murderdolls sound not bad. Also to compare them with lp is... different. Tbf i agree. Its a new time for them (lp) as a band.
Hi Muir
True
Hi guys ! I've got a few experience in SOC and emergency response, but I'm new to the pentest feld (I've done some network and web pentests, but just a few ones). Do you have any advices on the methodology to KOTH ? Does anyone have produce a documentation with some tips ? thanks !
Ohhhh
Murderdolls were great, Joey Jordanson showing he's more than a great drummer
is there a channel for pentesting learners so i can get advices for my path
Hello
hey sup
👋
He was a genius! Totally agree.
Thought my lecture was at 11:30 🙏
Hey, how can i get the announcements role ?
Type /notifyme
We will be adding it to on-boarding soon so you can manage your roles without the bot
I’m looking at setup inspiration , since moving, my room is not it.
Thank you jabba 🙏
And when is it?
5 minutes ago
This is such a cute wallpaper
please don't tell me...
Did you go to the wrong lecture Jayy?
techincally I am now a buisness major
😂
it was not nice 
How do you do that 😭
should have seen my face when the slide shows up with "WELCOME TO BUSINESS SCHOOL"
ok because all my lectures are in the same room
except for this one I overlooked
Didn't you walk in an realise there was nobody there you recognise?

😂
man maybe a good thing i dont check gen chat i cant follow whats going on at all lmao
is it always like this
i was a silly goose
a goose?
silly goooose
if i were to get a reverse shell from a different computer maybe via netcat or powershell
i will need port forawrding right?
depends
you on the same local network?
to get the shell
example for a ctf or a pentest
which are on a different network
perchance yes
perchance?
if you don't have local network access, then you might need to port forward on your public ip
got it
if your router isn't routing those packets/they're closed off, then you might need to port forward
yeah
that
afaik it shouldnt by default ig?
i was just re watching networking content on yt
forgot my basics due to not being persistent
depends like some are obviously going to be open by default like port 80 say
but random port 1000> is not likely to be open on most routers for no reason id guess
WELL I DID, WHATCHA GONNA DO ABOUT IT

beat me up perchance?
perchance
nc -lvnp 4444
it wont listen
and never get the requests ryt?
you'll be sorry you said perchance , on the morrow,
by the dickens
i do not understand what you mean by the phrase
😅
What are you doing @rapid merlin ?
.
revisions
on the morrow = tomorrow
i only know it from it being a joke in south park
Can anybody recommend a laptop good for cyber (my is a bit slow even for learning sometimes which was cruelly visible with Splunk rooms) for around 2000e?
yeah its good to revisit basics, im going to with networking at some point when i find who i lent my icnd and ccna textbooks to (next took the exam in the end)
I just found out my phone tells me when the next full moon is going to be 😌
I’ve never seen this before on a phone
If there is such a thing like beating up people online without visiting them irl, GODS I WOULD HIT SOME PEOPLE 😂
There was a dude once who paid a woman, to hit him if he try to visit facedumb(book)
@sick lance is my message inappropriate for this channel?
Is it bad I don’t want to not work today to do more courses ?
Hahahahahahah
Same heee
Here
Hahaha
...you're easily impressed kek
Yup!
Not only be ok, it's encouraged, just don't make it seem like a professional cert like sec+ etc
I am 😂
What kind of laptop did you have before, what were the specs?
Just subscribed to Premium the other day, continuing with Pre Security > Intro to Cybersecurity > Jr. Penetration Tester & SOC 1! 🤘😎🤘
does anyone have an "about me" website that i can take inspiration from? i have most of the desgin done already but im out of ideas
https://www.indeed.com/career-advice/resumes-cover-letters/about-me-examples
I think this is what youre looking for?
What a silly goose, he put both the mac and win window icons
dead server
gotta show respect for both
is not dead. ppl have job and things to do
not really, im new to html and css and i have project for school, am i allowed to send a screen shot of it in here?
Ban this guy
Sure
dont laugh tho, im real new to html and css
no need to jump to extreme... ppl have work and things in life. not all of them alre all day here
same
wait sec
Quick take it on it, is that all supposed to be one sentence?
I was just joking lol
I knew you were joking
Love the halloween pfp
Thanks 😊
Nice logo
This is more for something like #cyber-and-careers
@crude stump
Uni tomorrow, need to make sure I'm wearing my THM hoody
black one ?
Ya.
nice hehe
I still wish they made zip ups
Well, they do still make them.
But THM don't offer them.
Or maybe it's more where THM get their stock from.... 🤔
Yeah maybe
@sick lance palm size notebook 🙂
yea... lasers are cool 🙂
yea... IR and blue laser in one machine
i need a mentorship
Oh no! How dare they 🤬
A small team with nice games 😕
Same here
How would I electronically sign a form for an application to education institute?
yo whats popping
Oh yeah that'll be easy. It's just for a course I'm applying for.
❤️
.
.
did you try google that question
I need to do the dishes
oh tryhackme have delete learning roadmap?
when you done i have some also 🙂
Hey, im actually using WSL2 with kali linux on my windows computer that i think it's not that good for virtualization (Lenovo ThinkPad X13 Gen1) i want to know if a dual boot is a good solution because wsl is not stable with the VPN and to get a graphic interface i need to use xrdp that is a little bit laggy, here is my specs:
AMD Ryzen 5 PRO 4650U with Radeon Graphics
16 GB RAM
256GB SSD
dual boot si not best thing to go with kali. kali as os is not so stable. VM might is best option to go
tryhackme leaderboards seems to be broken atm.....
Mhh, that's what i see, ive got a problem 1 year ago using kali as main os, but is it not light specs for a VM ?
And kali is it realy worth it or just using ubuntu and installing package could be better ?
I'm using WSL and having no issues with VPN, what issues are you facing?
while i can't use the vpn on windows and kali twice and i need it because i don't like the xrdp so i want to do graphic thing like look the webpage on windows and do enumeration on the kali
the kali is best to go with in VM. spec you provide is ok to run VM, as things you did provide. you can go with 3-4 gb ram, or if wish 5-6gb. and 2-3 cpu cores...
I tried xfreerdp idk if it's any different but worth to give it a shot
oh thanks for advice i was thinking that it need a lot more ram to run good
Gave +1 Rep to @loud marlin (current: #25 - 347)
mhh maybe because for me it's "xrdp" and not "xfreerdp"
oh no. kali is light. just for VM you can't have some great power. since you can't starve main os from resources. for THM and learning VM is best to go
just finished 😄
perfect... i have 2-3 plates and some glass cups and so things. if you have time fell free to do it also 🙂
Also, VPNs could be a little problimatic in terms of data transition.
I had an issue back in the day where I couldn't connect to an ssh service in HackTheBox and thought it was meant to be like that.
turns out I wasted extra time and all I was supposed to do is lower my mtu size sudo ifconfig <interface - tun0 in my case> mtu 1000> which solved it for me.
try doing this step everytime before starting out as it might make a good difference in terms of being stable
the default mtu size is 1500 btw
narhhhh
so lowering it to 1000 made the connection overall more stable for me.
that's your fault 😛
yeah different software.
Lasagna time
VPN support should be discussed in #site-support
hope you get fat 🙂
Have you tried?
it's high protein low calorie lasagna
oups sorry i was thinking it's not cause it's not realy linked to the website 😦
when comes to protein. we got some nice machines and so for protein synthesis. will be able to do some protein C and protein S research...
trying with burp 
was there a us east VIP server at some point?
Hello guys hows your day going guys?
Good wbu?
Happy Cybersecurity Awareness Month 🥳
Sucks Admin won't let me do a fun training exercise with the staff
good too
wait you get permission?
Wish I did
I just do it
why not 😛
I would get in trouble xP
skill issue
We send out a training phishing campaign per quater.
Well sometimes the red tape is necessary. With some many gov contractors it's sort of needed.
Wish they would make contractors into Fed employees. It would cut down on contract renewals and changing of faces.
I dont care much for the red tape, just saying that's why I cant do it lol
https://youtube.com/shorts/Jx5CUP-7g-A i need to stop doing dumb shit with my terminal...
bro really gonna make it look like the movies
dumb shit i do with terminal
there is some render issues with tte... then again i don't care lol
camera month???
What? xD
8080
80, 443, 8080. 8080 is commonly used as an alternative to 80 especially for internal stuff
You'll find 8080 mostly in development environments
ok thanks
I tried to replicate on what I did in tmh in real website but they locked out the stuff I needed to tweak(I was curious on whether I can do it or not. I wasnt trying to steal anything. I was just tryna make the paywall disappear for experiment)
you shouldn't mess with a site unless they have a bug bounty program :x and you should read the terms of engagement
THAT REMINDS ME.... I should 3d print some DnD Dice
Do I play DnD? No
Do I want to? Yes
i printed lovecraft chess set... do i play chess... also no
I just started learning jr pentration tester path, anyone wanna teamup?
When you haven't used your Graphene phone since Vegas and now it needs so many updates
#room-help for thm material please
@oblique loom also you.
That does not sound ethical at all...
I didnt know he was asking in regards to a room. Thought they mean't it in general.
Possibly illegal and against the ToS of the website.
im putting it in the answer field but it still says incorrect

did this just roll out?
Hopefully, this appeared for me a few motths ago.
I've never encountered that
cc @umbral bay
Ah, it looks like it was rolled out now.
Not in every room by the looks of it.
In this server, sometimes it's good to ask what they're doing, if it's something that can easily be googled, there is a high chance their either doing a THM room, or a room on a different platform, test or classwork.
thank you echo
dnd is lame
on stupid shit in terminal
any idea how can we fix this ??
VMware ?
\n lmao
virtual box
I have never seen it, but I'm quite interested in it
Have you tried the error code in Google?
yup got nthg
try, in settings, disable auto-resize guest display
goggle skill issue =/
:/
let me know if disable works
where exactly to look for this option 🥲
might be in wiev
in display i can only see these options
You're lame
or smth
Ooo is this on TryHackMe?
yes i just started seeing it today
Pretty neat
I can understand that; could be cheating on a final exam and I just gave them the answer. Not that they were, but I can see that happening
I remember I seen it a few months ago, it was.
it worked the error is gone now but now we have a new problem to face 🥲
Oatmeal time
Appreciated.
Really just raising awareness, not telling you off or something 🙂
well... i guess is not full screen or so
also, did you add you self, as user, into vboxusers group ?
naa now i am not able to view the desktop only icons on the taskbar are visible
Its all good, fam. No worries! 👍
something like this
well... that is kali...
yes i did all that i am using this machine for past 5 mnths got this issue after doing apt update
you can play in view tab and screen resolution to get what you wish
yes i know that but i am not able to view the options for minimizing and all that
or try enable same thing when kali is running now
try enable now the same thing i say to disable
yes now everything is gone 🥲🥲
Ayy I have that same desktop background lol
that was not hard then. error will prob perssist. but that is solution
disable/enable
:/
Kali Purple ftw! (jk I like my offensive security tools)
seems like have to make new kali machine 🥲🥲🥲
this has nothing to do with kali
Sometimes, it can be like that.
then?
VM
ohh
Been using Kali for years and still don't know why it does some of the weird dumb stuff it does. lol
well it does have thing or two. but is more due to vm guest addition
Oh, you're running it on a VM
exactly after every 5-6 months i have to reinstall a new machine
🥲
I mean.
Kali wasn't designed to live that long.
and it always has to be a display option 🥲
hyperv has been very good for my kali install
I have it as an installed OS on my pentest laptop
@crimson viper dunno why you're laughing at my comment, it's true... 
kali not so much purple...
that's why i was laughing cause its accurate as F 😂
is neofetch safe to use 🤔
Interesting GUI, never seen that one before.
I just use GNOME lol
neofetch is bit out of game. fastfetch
hyprland on kali =/
ohh
hi hi
@sick lance how is ivy doin?
Maniac.
thank you so much for helping @loud marlin ! seems like installing new machine is the last resort
Gave +1 Rep to @loud marlin (current: #25 - 348)
Snapshots.
Get Vmware then 
Sounds great 😁 . I bet she only want to be kuddle 😄👌
hello dedsec
i wish i understood how to use cyberchef more. so handy but i can't get it to do what i want in my head
how to get role ?
Is there anything specific you don't understand?
50 push ups. now
@compact sluice
Author Kevin Kipp A SOC Analysts’ job can sometimes seem overwhelming. There is a myriad of obfuscation techniques that adversaries can use – hashing, encoding, encryption, and compression just to name a few. How are the defenders supposed to keep up with an ever-changing threat landscape? If you were presented with a secret message such as:...
done
please don’t hack me
share
now to decide if I want to go to a car meet or not 
what car meet
can share tomorrow
are you dominic toretto
a local one
nice sounds fun
it typically is, just sounds like there ain't many
snapshot is way to go.
not necessarily. i'm just interested in a sort of playground's worth of cyberchef exercises. it might make a good room. for example i just got a text file like this:
=?us-ascii?Q?a-bunch-of-base64-here?=
=?us-ascii?Q?a-bunch-of-base64-here-again?=
=?us-ascii?Q?a-bunch-of-base64-here-again?=
i'm positive cyberchef can pull out all the base64 out of each line and decode it, but i don't know the best steps and i'd like to avoid regex.
is it possible to create a script that terminate itself when it encounter a opening of task manager ?
yes
why?
then why don't viruses use them i never seen any use this
to obvious
it's better to disguise the process than just end itself
and task mng is not so important in a way...
there's a lot of malware that include anti-vm and inspection safeguards
malware fears the sight of procmon
i mean diguise will unviel when u just see the file location
not necessarily. malware can hide itself in memory
and can you check of reverse tcp backdoor through wireshark?
they're probably scared they might get arrested at the car meet
yes but a lot of malware victims don't have wireshark
and a hacker worth their salt will encrypt their traffic
yes most of them don't have it
people are scared of number that's why they avoid wireshark ig
I'm not sure that it is capable of doing this 🤔 I took a look and couldn't seem to.
and do anyone know why can
that is unlucky
We aren't, it's legal here
It can, with regex
even better
this, cyberchef has limited direct text manipulation capabilities unless you want to get very complex with it
and do anyone know why i can't install wsl in my window 10 i installed and it works before in win11 then i did change it to window 10 and i can't use wsl now ?
i'd like to avoid regex.
😄
linux commands can do it no problem
cut | base64 no problem
How many of you were there in the Singapore hackathon??
Why do people keep recommending python isn't C better for first language ?
python is the goat
cause it’s easy to understand
cause python is love
python is life
Intensive coding/event where teams create innovative solutions within a time limit.
all my homies love python
that’s awesome
did you attend?
no
But python is too high level u skip to many stuff
that’s unfortunate
it depends what you want to do. i'd recommend aspiring software engineers to start with C and anyone else start with python
what are you going to do
some of my coworkers should start with excel
But the price money was very high
petion to start teaching C to a toddler rather than english
what if we buffer overflow the toddler
did you guys have to pay to attend the hackathon conference?
Maybe C > assembly and then python is better path?
Each has their uses, but python is generally more forgiving and easier to learn
everyone should learn my favorite language c# 🙂
Python has libraraies less work in genreal
But traveling charges
oh you are talking about the prizes?
ah i get it now
Yea
30000$ USD
that’s interesting
@torpid rune expensive as hell
That's the price money
cheap for me ||only if i used my GTA money of course||
@torpid rune oh i thought travel charges lol
bruh
why
he going to the mars?
Might have guessed something to with encryption you'd pop up 
Web developers hate php so much that they made nodejs
are you a web dev
good for you
Bro nobody hires web developers
gotta do my thing 🙂
Unless u know wordpress
Trump card
be a ui designer rather than a web developer
i remember a meme where there was an earthquake and someone was saying “do you need a web dev? do you need a web dev?”
I follow some web devs on twitter all they do is make programmers dont fix printers jokes
waste of time. unfollow
True
How well do you guys think obtaining the Jr. Pentester Certificate through THM has prepared me for studying for the OCSP? 5%? 50%? Just curious how much harder the OSCP labs/course work will be compared to what THM Jr. Pentester path has taught me so far
how do i add emoji which is due to unavablity of it is showing with a werid sign wsl kali linux
twitter is a useful platform for software engineering and cybersecurity knowledge. you just need to follow the right accounts that provide good information
Php is kinda good for understanding http requests though. And why certain vulns work. Kinda reccomend
For web pentesting
is your pfp from the somnium files
im sure but the question was more so, how much harder is the coursework/exam prep for the OSCP compared to the Jr. Pentester path in THM?
Somewhat the same level? or leagues and bounds harder?
good game
Dark Winged Dragon Augomon the third.
Formally known as Pikachu.
Thats like 5 animes in 1
Yeah, his son is Tenchi Muyo!
Where did you get it from?
huntress ctf challenge
Is this an active CTF?
yeah
Then please stop cheating and try and solve it yourself.
Yeah, but it's unavoidable in cyberchef
What did I do to you?
I was quoting their request, take it up with them!
what did I do to you¿
[GeneratedRegex(@"(\d+):(\d+):(\d+):(\d+)\s+([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+)\s([\d\.-]+).*", RegexOptions.Compiled)]
i think i did that one 3 years ago
i'm wiser now
Usually, when you solve a problem with a regex you have two problems. I'm quite sure you have more than two with that regex.
when will they add dark theme my eyes hurt so bad
Soon™️
soon i will lose my vision
You do know that you can tell a regex to repeat something exactly x amount of times, right?
Yup i was not cooking with that one
xD
I like it tho.
Makes it easier to read, at least.
Also I did not see that you made that 3 years ago and now I feel bad.
- Using regex
- Regex using you
- The original problem
Honestly, if you know which regex engine you are using and any of it's syntax quirks or such, regex is really not that hard to deal with
much like nvidia drivers on linux, i see a TON of hate but i've literally never had a problem with it and i'm always curious what i've been doing differently
You haven't used them in 2004 or so.
ok ||smartass||... if i have hsl(340, 60%, 60%) in text file, what regex (global) to get ti this hsl(color0) ?
LOL
yes... that didn't help 🙂
i mean
is hsl(color0) even a thing
isn't the point of hsl to be... 3 values
h, s, and l?
or hsla in some cases
(i dont know too much about this, so like, actually asking tbh)
maybe color0 is a string variable 🙂
the color0 is variable that will be replaced with color when pywall generate file from that template
yes
i'd do this in vscode i think
as this
you just want match and replace for what's in the ()?
don't need rx for that
the power of regex replacement is capture groups
as this to end
ctrl+f, hsl(, replace with (color0
or similar
no real need to write a whole pattern
as here. the scrypt will replace color variable with # color
right will be used as template. left is result
and left change/update every time when i use pywall to generate 15 colors from wallpaper
hyprland
let me show you
i get the purpose but why are those in two files
and setting.. what seem like the same values?
yes but right side is template. left is result...
one sec
one hyprland theme in first pic. and when i change theme globaly it gets as 2nd pic. the left side is updated as result
hmm
it's neat
but seems a bit complicated for color changing
i can share my screen to you to show what is going on... it is pywal that generate 15 colors that is replace with variable that is range color0 to color15
if it's a script generating the colors, why does it need a template file?
should be able to output/overwrite your target file with the right format from there right?
it need to generate the new file. and yes it is overwiten by new file and then new file is used as colorscheme. sec ill show
one theme. and when generate new color it update all things in os
and it use overwritten file as source of colors to apply
right, that makes sense
yeah i see the point of the wallpaper->theme thing
yes.
Hello cyber people
so? what regex i do in vim/nvim to replace as mentioned ? ||smartass||
you don't
you spawn multiple cursors
lol
i dont know if i'd do a find/replace in vim/nvim anyway, especially on such a short file
it'd take longer to open vim, edit, and save than it would to write a sed command or similar that does that
because it's literally s/hsl\(.*?\)/\(color0\)/g or such
well... i have this many files as template...
like, there's not really any need for much regex
that doesn't change the speed and ability of writing the single sed command
in fact, that's a huge reason to do it that way instead of vim/nvim
is that arch
y
some files are like 500 lines or so. so regex helped a lot. some easy some not so much
but the pattern is so simple
like, this probably does it
just never had more options inside ( ) as in this example
i mean, you can match just about anything inside the ()
but if you want logical replacement, regex isn't going to do that in one pattern
and you'd be better served with a scriptable language, not an expression language
like awk
yep... some have simple #ffffff or so. so it wa easy to target to replace with {color0}
if you want to match and replace multiple patterns with one thing, that's easy
yep
most regex engines allow for "or" in the pattern
with a few behavioral caveats but still useful
but if you want to replace #ffffff with color0 and #000000 with color1
that's logical replacement and you should be doing it with more than regex as i dont think regex alone will be able to accomplish that
i have config file for cava thing that also is overwriten and then used as colortemplate
to this
right side changed and overwriten and then auto updated and used as new colors scheme
tbh, all of this seems entirely unrelated to the use of regex
this is like, a python script with a little bit of regex in it and maybe a cron job, but it doesnt really play a huge role here
nah... it does. just is hard to explain tbh
well maybe it does
but i dont know that it should
as so far the only matching has been relatively simple and accomplishable without regex or with simple patterns
some files are simple. some need more to work due to not have simple content as other files... but yea... regex helped me in general
huh ok
heeh yea...
guys im going crazy how do i disable these notifications
Google it maybe google may help u
Never seen that notif before
what a great idea
Thx :)
Gave +1 Rep to @sage flame (current: #41 - 209)
Waiting on the day rep system will be publicly executed
ive turned off all defender notifications but they're still coming through
ima ctually going insane
Good evening THM Hackers
put an exception in defender for the directory you keep all your hacking notes
ive got the exclusions set up
Woo hoo, an in
If it's any use DND blocks all notifications
windows has a dnd?
you could just turn off defender(don't follw my advise or anyone on the inetrnet)
im doing av evasion lol
Use Windows accessibility features, such as Focus assist, to help improve focus on tasks and minimize distractions.
If your're asking how to avoid that notifcation on other peoples computers i think that might be outside of the score of THM
how old do i need to be to be in this server?
Where do you live? How old are you?
Greece, Thessaloniki, 13
am i allowed to be here
?
or it's 18+ server?
no just on mine
no you need to be 13
and even if its 15 i have parent consent
Discord's Terms of Service requires people to be over a minimum age to access our app or website, so we are introducing a system to verify that users satisfy that minimum age requirement. We do this to keep our users safe and ensure they don't encounter material that's not appropriate for them.
It differs on country, Greece is 15.
So really, you shouldn't even be in Discord, let alone here.
getting a pop up for each task from echo is getting very annoying
Evening!
whats echo ?
oh no
Hi Scrubz!
do i need to leave?
https://tryhackme.com/r/echo - this is Echo
If they say skibidi….. 👀
Yes please
ok, good bye 🖐️
cool, saves my ever increasing antropic bill
Echo is a welcome addition, it might cut down support emails
i haven't hit a point in a room where i felt like i need to use it to progress, but it's kind of nice to have a what is basically a search engine in the tab. i haven't tried getting it to write me a python script or anything yet and i feel like that would be the most useful case for it. ik for a recently released CTF i got chatgpt to whip a script up really fast and i'm hoping echo can do something similar. to save my own ego i have to say i could have written the script myself i'm just lazy
cool, saves my ever increasing antropic bill its more than just GPT4 or Antropics LLM. It has information as to what you're doing on machines so it can see what you're doing and give you in-depth help.
Can also tell if you've finished a room
Yeah - lots more functionality to come too
it did write me a nice haiku earlier
Looks good.
I guess it doesn't give any moral warnings either
What else have you been doing with it?
i presume it would be inappropriate to try to jailbreak echo?
I'd assume that would come under the THM don't try and hack our infrastructure policy
bug bounty 😛
If you can demonstrate any form of PoC, we'll issue a bug bounty.
A good, I've been trying on and off all night 😁
if you tell them...
is there a THM room on LLM abuse?
is there a THM room on LLM abuse? soon (I think)
Throw them out the window
I ❤️ advent of cyber
Wooooowww

this looks fun, i hope something similar happens again this year. or of course i could do last year's
well for the last 4 years there have been advent of cyber
and it is crazy popular and draws a lot of new people into tryhackme
so would be strange to shadow if they stopped doing it this year
yea the hype is real
Maybe Elf McSkidy has retired
Yeah we come every year to DC + BH Vegas
I hope to meet you at DC 33! And you should stop by CheeseCon 3.0 at Toxic BBQ! @eternal roost and the gang stopped by and enjoyed it!
CheeseCon sounds great!
First time seeing skidy talk here
Since we're talking cheesecon... @sand trench
meep moop time for shadows sleepy sloopy sleep sloop to the beep boop
Or disregard Cheesecon and shleep
Great - thanks! Yeah I only stayed for the day for DC, but will probably stay for the entire 3 days next year.
Gave +1 Rep to @boreal scarab (current: #28 - 303)
i’m shy. i just saw your bio. thanks
Gave +1 Rep to @crude stump (current: #72 - 107)
nah not diregarding it
not much to say about it right nows

