#general

1 messages · Page 462 of 1

chilly veldt
#

gosh I feel old

#

so tired after the party yesterday 😓

deep rampart
#

how you doin guys

slow cloud
#

Pretty gooood wbu?

deep rampart
rapid merlin
#

I did the breaching ad and enumerating ad networks from THM but I didn't get it as a whole, I don't know where I am lacking. can you guys suggest me some good course on AD pentesting.

#

Best resources for learning OWASP top 10 with Burp?

sick lance
#

Probably portswigger if not THM.

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #1 - 2843)

rapid merlin
#

THM has been great but need some more practical experience for advanced topics

rustic cloak
#

or you could try Rana Khalil on youtube. she has a practical video series for the portswigger labs

rapid merlin
#

been there done that

rustic cloak
#

damn. found her stuff really insightful

#

but, fairs

rapid merlin
#

I find yt vids good for resources/reference

#

but not for actually instilling info in my brain

rustic cloak
#

cause i self study, i find yt videos (especially from a well known creator) helpful

#

documentation for a lot of this might be overwhelming

rapid merlin
#

like a couple years ago when I was learning javascript, i ended up in tutorial hell for months

#

then when i started learning python, i tried book learning

#

and it worked far better

#

tutorial hell is the WORST

naive violet
#

Webapp hackers handbook

rapid merlin
#

page 112 currently 😄

rustic cloak
#

but, ultimately, do what works for you

rapid merlin
#

yeah I'm sure some people find yt vids work very well for them

rustic cloak
#

yeah, i don’t mind any though, but reading through a 700page manual can be tedious

rapid merlin
#

for me, knowing it's one of the only ways I can learn, helps motivate me

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #2 - 2191)

soft vortex
#

hello hackersploit

signal hatch
#

Damn I just read about the hacker who hacked into nasa and found vulnerabilities and they sent him a letter of appreciation.

halcyon dune
signal hatch
#

Imagine his resume career highlights " succefully hacked nasa and found vulnerabilitys"

#

Ethical hackers are God's

frank iron
#

Hi Im doing a web pentest project and I want the web_shell to connect to my vm, there Is no vpn and such.
do any of you know how to open a listener with external ip?

loud marlin
#

do you have permission to do so ?

rapid merlin
#

'everyone' " yeah thats right"

loud marlin
frank iron
rapid merlin
loud marlin
#

if you doing pentest on any website/server thatyou do not own. you need loegal permission to do any of testing

rapid merlin
#

these are the computer hackers you need

#

theyre high level

#

why are you already judging them, when you only JUST found that website?

loud marlin
#

to do any pentest you also need legal permission

rapid merlin
#

if I never told you, you probaby wouldnt

#

so why be so ready to go ahah nah this site is for simps!

#

seemns very prepreared

#

they're making more money than you probably from doing whispering streams

#

I mean, is it cringe? perhaops

loud marlin
#

cos you not own server. you rent it

rapid merlin
#

is it functional, definitely

#

what are "skills for the real world"

loud marlin
#

knowledge

rapid merlin
#

knowledge is knowledge

#

not a skill

signal hatch
#

important corporations with important data open themselves up to this, and have somewhere on their site or in their TOS that if you ARE able to hack into their systems, if you explain how you did so to the company they usually give you some form of payment or reward.

rapid merlin
#

but im saying in his consideration

loud marlin
#

you do not own... you rent it... there is legal area in all of that

rapid merlin
#

like "vital life skills" seems like a phrase EVERYONE is goign to argue on

#

and be subjective

#

so to say that egirls dont have it, but he does, whilst he's trying to find free webtesters to break his online real made up not totally coded scrfipt/website;/etc

#

bit ironic

loud marlin
#

you need to have legal permission from owner of infrastructure, the hardware servers and soi

#

or you can get in big big trouble

rapid merlin
#

what market, what skills, how do you define what is honest there

#

I mean like

signal hatch
#

In 2016 (or around then) some dude told the NFL “uh hey your security is really bad, want me to fix it?” The NFL said “nah we’re good” and the dude then managed to get into like 27 of the team’s official social media accounts, posted on 1 or 2 as an example, and then immediately got a job doing cybersecurity for the NFL lmao

rapid merlin
#

you also dont get to define what is "0 skills" or a good job, if you are framing like everything through the tech world and are like "haha see dfumb egirls cant even land assembly programing jobs !"

#

then that would be stupid

loud marlin
#

you need to contact them.

rapid merlin
#

but so far youve made no skill comparison or instantion or evaluation or any sort of whatever

loud marlin
#

don't do stupid things

rapid merlin
#

ok so you're goigng for the absoluite extremes to the most paying jiobs lmao

#

no one thinks that feet shower is a legit job

#

it does make cash yep

loud marlin
#

there is not terms and cond. there is law's and other things

rapid merlin
#

are you saying that mcdonalds worker isnt valid or is

loud marlin
#

If you do not have legal permission from company and lawyers and other parties, you doing illegal things

tawny ruin
pine nacelle
#

I'm with @loud marlin here. You should contact them and make sure they give you written legal permission, otherwise it could be that it seems you are allowed because it isn't stated specifically or clearly however you could still get in trouble @rugged shoal

loud marlin
#

there is things called RoE and other things that need to be defined in any pentest. you do not touch keyboard until all rules are defined and legally allowed. that's just start

#

company define what they wish you to do. what you are not allowed and what is ok. and much more. what tools and technicks you can or can't do/use. what is out of scope also

#

so... don't get you self in legal trouble. that kind of things can define you future in cyber sec area. you future employer will do background check

pine nacelle
#

Facts 💯 ^

exotic flame
#

is this somewhere were i can get help with mobile phones? like hacking wise?

rapid merlin
#

Respectfully a real hacker/pentester would not be interested in targeting a site with no resources/data.

#

Your site is also hosted with a free service

grim sparrowBOT
#

@rugged shoal has been warned.

grim sparrowBOT
naive violet
chilly veldt
#

sooo tired

rapid merlin
#

☕ or 😴 ?

chilly veldt
#

long night yesterday

rapid merlin
#

ah, recovery day

chilly veldt
#

yeeee

twin cipher
rapid merlin
#

haha, I considered that as an answer 😄

high mulch
#

Boing boing

rapid merlin
#

who s familir with pyrat

chilly veldt
rapid merlin
#

this room

#

pyrat

#

i dont know whata is the objectif

chilly veldt
loud marlin
chilly veldt
#

or that yes

wispy pivot
#

hi

#

do yk where I can find ctf teams?

chilly veldt
#

what kind of teams

wispy pivot
#

teams that participate in ctfs together

#

ill see on ctftime

chilly veldt
#

ask in CTF servers, many people look for teammates there

wispy pivot
#

alright

cedar harness
#

l

loud marlin
rapid merlin
#

hi

boreal scarab
rapid merlin
#

rabbits are cute

prisma zenith
#

Hey

loud marlin
twin cipher
rapid merlin
chilly veldt
#

hmmmm, shall I go to car meet, or shall I stay home hmmGe

loud marlin
#

did you wash you dishes ?

chilly veldt
#

yes

loud marlin
#

then you can go 🙂

prisma zenith
#

I m good

#

Anyone up to watch a move together

tawny ruin
tawny ruin
loud marlin
#

aham... you are right...

chilly veldt
loud marlin
#

on baterries 🙂

rapid merlin
#

😄

pearl raven
#

Seems like an American daily driver: Source: Am American.

tawny ruin
tawny ruin
pearl raven
#

The difference of vehicles between the US and when I lived in Scotland is nuts.

tawny ruin
pearl raven
#

Predominantly more trucks and SUVs around me. But I'm in a fairly rural area

kind narwhal
#

Hello, can I ask something about hardware?

shut hawk
#

Ok

#

You've lost me

#

Is what yours?

kind narwhal
#

I cannot send my computer to support. Can I practice well with tryhackme premium on a low-level computer?

shut hawk
#

what would you define as low-level

kind narwhal
shut hawk
#

Could you be more specific?

pearl raven
#

If you get premium you can use the attackbox which would be tryhackmes hardware.

kind narwhal
#

Processor.
DATA STORE.
Graphics Card
Power supply
motherboard.

kind narwhal
#

My computer is good, should go to support

shut hawk
#

Not quite what I meant, what specifications would you say are low level? For example, "4GB of RAM"

shut hawk
#

Yes, but what are the specs exactly?

kind narwhal
#

I don't know

shut hawk
#

Then how do you know it's low level?

kind narwhal
#

but it's not bad but it's not bad

loud marlin
#

just write spec you have...

kind narwhal
#

I think it had 4 or 8 ram

#

I don't remember ram or processor

#

Does the premium operating system provide better performance?

shut hawk
#

What premium operating system?

loud marlin
#

premium on THM?

kind narwhal
shut hawk
#

The attack box?

kind narwhal
#

yep

shut hawk
#

It's alright

loud marlin
#

you get some extra resources and so.

#

your own pc is another things

kind narwhal
#

I can hack Attack Box on a low budget computer by purchasing TryHackme Premium. I understand correctly, it's practical.

shut hawk
#

You can try it for free for an hour a day

kind narwhal
loud marlin
#

you can use attack box for longer time and things.

kind narwhal
#

My question is, can I hack (practice) without causing any problems on a low-end computer that I will buy premium?

#

( atack box )

#

web

loud marlin
#

define low-end pc

kind narwhal
kind narwhal
loud marlin
#

what?

rapid merlin
#

the nice part is you can use tryhackme for free initially to test the performance

wooden totem
rapid merlin
#

integer overflow detected 😄

kind narwhal
wooden totem
#

@rapid merlin why do you have dummy text in your bio

rapid merlin
#

oh it was just placeholder, I should use ipsum 😄

wooden totem
#

It's never been my responsibility to glaze the donuts.

pearl raven
#

No, no. Grape jelly is leaking from the hole in the roof. Perfection.

rapid merlin
#

hah!

frosty turret
#

hi guys

finite basalt
#

hello 🙂

frosty turret
#

are the applications for the job still open??

finite basalt
#

I believe it was actually applications for personalised help with first jobs

#

but I believe that closed 5 hours ago

frosty turret
#

oh tough luck then, thanks anyway!

rapid merlin
#

hi hackers

#

pls don’t hack me

rapid merlin
#

What’s the best extension for a browser such as brave ? ADGuard, No script, uMatrix, uBlock Origins??

coarse plover
#

why openvpn stops working after a short period? its annoying

rapid merlin
#

@primal kestrel

#

dm please

loud marlin
coarse plover
#

like it works but after a few minutes it stops working

loud marlin
#

again... service or active vpn connection ?

coarse plover
#

2

loud marlin
#

?

coarse plover
#

active vpn conn

loud marlin
#

you get any error when stops or ?

coarse plover
#

nothing

loud marlin
#

you run connection via terminal ?

coarse plover
#

sure by sudo openvpn path file ovpn

#

after that im checking by curl 10.10.10.10 whoami

loud marlin
#

that is ok. so no errors when stops work

coarse plover
#

it shows me virtual ip but after few minutes its not replying

#

but why it stops automatically or how can i change the limit of work time

rapid merlin
#

ralexander

#

can u help me with smtg

loud marlin
#

do you have any other vpn active

devout palm
#

Hiya people

loud marlin
rapid merlin
#

idk how to use metasploit

coarse plover
rapid merlin
#

searching for the specific payloads

loud marlin
loud marlin
coarse plover
#

by the way, what are the utun1,2,3,4,5?

coarse plover
#

works for 2 minutes and automatically stops

outer rivet
#

Is purple challenge new something ?

coarse plover
#

sudo ifconfig utun delete and down

#

nothing helps

rapid merlin
loud marlin
#

what mpu is set for you

coarse plover
coarse plover
#

?

#

i guess issue with macos as it has utun things in terminal

#

i red that this thing related with vpn

loud marlin
#

in terminal ip a and in vpn connection check mtu

coarse plover
#

wait a sec

#

eth0 lo?

#

with vpn tun0

rapid merlin
#

relaxander do u know how to search for http python

loud marlin
#

hmm... in kali linux when vpn connection is active it need be in that part

rapid merlin
#

i did search but i m actually

#

lost

loud marlin
#

do it again

rapid merlin
#

yeah tun0 for vpn

loud marlin
coarse plover
#

1500

loud marlin
#

that's ok. then try google more. idk what issue is if logs not show it

coarse plover
#

thanks

loud marlin
#

might start vpn connection and add -vv on end

coarse plover
#

-vv what is it used for?

loud marlin
#

verbose mode

#

more verbose more info

coarse plover
#

oh got it

#

thx

#

how to delete this utuns, sudo ifconfig utun delete/down has no effect, useless

loud marlin
#

try reboot

coarse plover
#

only utun5 disappeared

#

after rebooting

#

utun0-4 still working

loud marlin
#

weird... rly not sure

rapid merlin
#

and make sure any website THM is asking you to use for the task, is strictly http

#

https wont work

#

I had this issue once because I had https only enable in settings

brittle lynx
#

Is there a way to use responder on an interface that the target has but u dont have access to? I already tried with ligolo and it doesnt work

rapid merlin
#

come on

#

pls need help metasploit

loud marlin
#

❤️

naive violet
naive violet
rapid merlin
#

i m searching for a exploit

#

but i can t find the specific one

naive violet
#

For what?

rapid merlin
#

reverse shell

naive violet
#

Is this for a tryhackme room?

rapid merlin
#

yeah

naive violet
#

Please ask in #room-help and provide details of the room and what you're stuck on.
Please don't send unsolicited friend requests, get permission first.

rapid merlin
#

i m new in

#

metasploit

naive violet
rapid merlin
#

just kidding i m not sorry

brittle lynx
# naive violet Yes, by running it directly on the target

I understand that but I am trying to learn how to use it without intrusively putting it on the target. Also sometimes there is a AV or something so its more better to know how without putting it onto the target.

Do u know how to do this?

rapid merlin
#

[-] Exploit failed: TypeError true can't be coerced into Integer

#

this error

rapid merlin
#

or google

#

sry

#

or whta James said

brittle lynx
rapid merlin
#

How is everyone ?

naive violet
loud marlin
rapid merlin
#

Fair enough

brittle lynx
naive violet
#

Ligolo or Ligolo-NG?
What makes you think it's layer 2?

brittle lynx
naive violet
#

That's TCP (This is for the original Ligolo)
What OSI layer is TCP?

#

What layer is a TUN interface?

brittle lynx
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #2 - 2192)

loud marlin
#

btw @rapid merlin here is my forest of shrooms, that glow in dark

rapid merlin
#

@naive violet thankst bro i found out my metasploit is out of date

naive violet
#

The more specialist the information you need, the more it hallucinates

twin ridgeBOT
#

➕ Gave the role Sec+ to novarics

rapid merlin
#

it s using Reinforcement Learning

#

it learns from us

#

but still dumb

naive violet
#

There's not really "learning"

rapid merlin
#

oww i suck at ML

naive violet
#

As with all computer systems, garbage in garbage out still applies as well.

loud marlin
#

much better...

devout palm
rapid merlin
#

u made amultitool

#

nice

#

is it just design

#

?

loud marlin
#

its arch linux

rapid merlin
#

no offense

#

oww

devout palm
#

Jokes aside, which would be the lightweight (not too much default packages), stable and easy to install linux based OS? (I don't want to configure everything from scratch when i re-install my system)

#

Might go for the mint

half girder
rapid merlin
#

they say it s easy though

devout palm
#

That's what i want

half girder
#

ive been running it for quite some time on my main machine, was all good, til i figured there was no way to do my taxes on linux 🙈

full aspen
#

hmm

half girder
#

well yes, virtualbox + windows etc

crude stump
#

Pop is a good easy os too

loud marlin
#

arch when installed is installed with almost all the things.

rapid merlin
loud marlin
twin ridgeBOT
#

Gave +1 Rep to @weary badger (current: #2257 - 1)

rapid merlin
#

really liked it

boreal scarab
loud marlin
#

it's 3d print u dumbo

faint harness
#

Hi everyone

polar grove
#

how have you made the nvidia drivers work in arch?

loud marlin
#

like how i made it work or ?

polar grove
#

yea yea

#

sry

loud marlin
#

the arch-install offered me to downlaod/install and i selected

polar grove
#

hm I thought nvidia drivers gave headaches in arch

loud marlin
#

it does. as in general nvidia on linux

polar grove
#

hahaha I see

#

do you do gaming there or just for fun?

loud marlin
#

no gaming

#

just main os with hyprland and things for it

rapid merlin
#

guys

#

a general question

#

how can i update exploits available?

loud marlin
#

did you try google that question ?

rapid merlin
#

yep

#

and chatgpt

#

i m learning lol

#

i did

#

sudo apt install metasploit-framework

#

and it did update but

#

i dont find all exploits

loud marlin
#

try msfupdate

rapid merlin
#

msfupdate is no longer supported when Metasploit is part of the operating
system. Please use 'apt update; apt install metasploit-framework'

rapid merlin
#

i told u i did it

#

hello

rapid merlin
rapid merlin
shut hawk
#

did you run apt update ?

rapid merlin
#

ok ok

#

wait

#

Thanks @shut hawk

twin ridgeBOT
#

Gave +1 Rep to @shut hawk (current: #14 - 570)

rapid merlin
#

Gave -1 Rep

shut hawk
twin ridgeBOT
#

Gave +1 Rep to @tawdry robin (current: #2257 - 1)

rapid merlin
#

thank u

#

hhhhhhhhhh

#

free rep

loud marlin
#

Kill The Noise has announced his new album, OCCULT CLASSIC, a 10-track LP that showcases his versatility across different musical styles, pairing his signature brand of intricate electronic music with beautiful melodies and the intensity of a live rock show. For his first full-length, KTN has recruited electronic rock mainstays AWOLNATION, Bryn ...

▶ Play video
boreal scarab
#

But Dolphin is on Keys

loud marlin
#

close enough

boreal scarab
#

@loud marlin @graceful thistle

silent cypress
#

goood morning every one

silent cypress
#

ha ha

#

that's morning maybe is for china

rapid merlin
#

Official video for “Lose Yourself to Dance” by Daft Punk feat. Pharrell Williams

Homework: https://daftpunk.lnk.to/Homework
Discovery: https://daftpunk.lnk.to/Discovery
Alive 1997: https://daftpunk.lnk.to/Alive1997
Daft Club: https://daftpunk.lnk.to/DaftClub
Human After All: https://daftpunk.lnk.to/HumanAfterAll
Human After All (Remixes): h...

▶ Play video
winged summit
#

hello people of the internet 🙂

rapid merlin
#

Sup

winged summit
#

just taking a break before i get back to setting up my new attack box. how about you?

rapid merlin
#

I was watching a movie and now I’m thinking about some stuff

winged summit
#

oh, that's cool. what you thinking about?

rapid merlin
#

@rapid merlin which movie?

winged summit
#

lol, double question

#

haha

rapid merlin
#

@winged summit we have all the social engineering covered 😉

winged summit
#

hahaha

#

oh man

#

i don't know about that, but i'll go with it haha

#

how are you sandwich?

rapid merlin
#

not bad, enjoying a relaxing chill weekend

winged summit
#

nice

#

sounds good

rapid merlin
#

how is your weekend thus far?

winged summit
#

it's great man. internet has been a bit off and on, but overall, life is good, ha

rapid merlin
#

right on 👍

winged summit
#

yeah

boreal scarab
wooden totem
#

Why so serious

winged summit
#

failure

#

lol

#

me and the internet are close buds. but me and intranet go way back

boreal scarab
rapid merlin
winged summit
#

yeah, i gotcha man haha

boreal scarab
graceful thistle
winged summit
#

LAN WAN MAN CAN BAN

rapid merlin
#

not to make stuff complicated but... extranet 😮

winged summit
#

lol

boreal scarab
#

WHEN DID THEY HIRE LANWAN?!

winged summit
rapid merlin
#

this channel is so great 😄

winged summit
#

haha for sure man

#

Matt is such a spaz, but i love him lol

winged summit
#

lol, brain.....

#

puzzle

#

must compute

#

captcha

#

lol

boreal scarab
winged summit
#

LOL

#

holy smokes man

#

that's wild

winged summit
#

lol indeed

#

dude, that cat is either really tall and immune to lack of oxygen, or really close

cerulean oriole
#

hey guys im having an issue, thm says i can only have 3VMs open. i dont have any open or vpn connected. is there a way to close machines?

crude stump
#

When a wompa stomp and a plomba mop walk yk what I mean?

wooden totem
#

Yall still on Internet? Get on outernet

winged summit
#

oh noes... gray text in discord.... internet halps.

winged summit
boreal scarab
winged summit
rapid merlin
#

@boreal scarab I feel like it was a floating point answer from 1.0 to 0.0

winged summit
#

lol, oh, my brain had to adjust. to the tootsie pop question haha

#

the answer is Pi lol

#

or the square root of 17 or something lol

boreal scarab
#

3.1415!

#

I KNOW PI!

winged summit
#

indeed.... i think..... can't remember more than 3.14

#

lazy lol

winged summit
#

lol

#

indeed

rapid merlin
#

maybe I did too much OpenGL 🥦

winged summit
#

i was telling a friend recently that i'm like Ned Flanders because i'm so polite then he said that i'm gonna snap one day lol

boreal scarab
rapid merlin
#

more matrix math than I ever wanted to know

winged summit
wooden totem
#

whats the difference between a broccoli and a tree

winged summit
rapid merlin
#

the glScale?

winged summit
#

my brain still hurts from Linear Algebra

#

lol

rapid merlin
#

I hear ya

winged summit
#

haha, but discrete destroyed me lol

boreal scarab
rapid merlin
#

😄

winged summit
#

holy moly lol

winged summit
#

i wish i had like a syringe that i could stick into my monitor and absorb energy from Matt's gifs lol

#

maybe i need more coffee haha

winged summit
#

LOL

boreal scarab
#

WEEEEEEEE

winged summit
#

hey, i gotta go. just got a DM. be back later people. nice chatting 🙂

rapid merlin
#

that concert needs security

#

@winged summit 👋

sand trench
#

kaboom???

rapid merlin
#

those kids did very limited threat intelligence prior to their performance

proven quartz
#

I got fired from my job at the keyboard factory...

#

They said I wasn't putting in enough shifts

sand trench
#

meep moops it is time for the sleep sloops to the beep boops

proven quartz
#

Goodnight shadow

rapid merlin
#

have you ever swapped the keycaps on a persons keyboard while they were away on vacation? specifically the 'M' and 'N' keys

proven quartz
rapid merlin
#

🙂

proven quartz
#

My ex dumped me cos I didn't give her enough privacy...

At least that's what she said in her diary

rapid merlin
#

classic

#

I love jokes

#

The "S" in "IoT" stands for security

loud marlin
rapid merlin
#

😄

#

I used to tell jokes about the UDP protocol, but people never got it

wooden totem
rapid merlin
wooden totem
#

idk why you would have blanks

rapid merlin
#

I only ever met 1 programmer who had those

wooden totem
#

everyone still looks at certain keys they dont know the exact position

#

dont get me started on ctrl combos

loud marlin
#

or you can make own looking letters

#

on them

rapid merlin
#

learning to touch type is one of the most valuable things I ever did in my teens

#

hi all

#

hope you have a good day

#

you all looking good today

#

just hacked ur camera

loud marlin
#

tbh i'm looking for split keyboard... and also thinking to take blanks. cos i have laser engraver and can do custom

wooden totem
rapid merlin
rapid merlin
#

the moonlander split keyboard is nice, just can't justifiy the price tag

#

for something super controversial 😄 https://www.youtube.com/watch?v=R5a2hapPVMk

Sincerity Machine is a typewriter that I have altered to write in the Comic Sans typeface. This is a short video document of its operation, with some narration about the origins and functions. You can read more about how it was made at http://www.jesseengland.net

If you don't like typing, check out another one of my videos, Learn to Write In Di...

▶ Play video
rapid merlin
rapid merlin
#

does that invalidate it?

loud marlin
#

with laser engraver you can engrave anything. so keycaps will be extra cool to have custom looking

rapid merlin
#

kinda excited about a new mech keyboard

#

I really should get one

#

my last was a wasdkeyboard

#

I like ducky keyboards, that's what I tend to stick to

#

those are great

#

guys how can i make the website dark mode

loud marlin
#

thm ?

rapid merlin
#

ye

#

good question, I'm not sure you can

loud marlin
#

for now there is no offical dark mode

rapid merlin
#

you can download the dark reader extension it forces the website to be in dark mode

#

works on every website

wooden totem
#

man my back hurts af today, didnt even realize I was sitting for hours in this position

twin ridgeBOT
#

Gave +1 Rep to @weary badger (current: #1495 - 2)

rapid merlin
#

changed my browser color setting and made it super dark 😮

#

i think you can configure some things in the extension itself

violet dock
#

So, SANS has announced their Holiday Hack Cybersecurity Challenge 2024. Will there be THM Advent of Cyber 2024? I enjoyed it a lot last year.

rapid merlin
#

guys how can i brute force vigenere for a competition

#

if anyone wants to help i have this : "xbvfjizf zzy efhjwz hzz yvvlac ptc" and i have to decode it

loud marlin
#

we can't help in other projects

cerulean hornet
#

What's a good lock to learn lock picking with

#

I have this black master lock and trying to get through it seems impossible

pine nacelle
#

@loud marlin Hey, how are you doing?

boreal scarab
#

I'm a blue belt there, picked a yellow, orange, and blue lock. Picked an American 1100 when it was still classified as Blue

#

DO NOT BUY THOSE CRAPPY CLEAR LOCKS!

cerulean hornet
twin ridgeBOT
#

Gave +1 Rep to @boreal scarab (current: #28 - 304)

loud marlin
cerulean hornet
pine nacelle
boreal scarab
#

@cerulean hornet

#

I suggest getting to black belt, THEN going safe cracking... been on blue belt for like... 4 years now? Haven't had time/ too lazy to go purple lol

cerulean hornet
#

Yeah that seems like a milestone, for now my goal is to be consistent-ish

winged summit
#

nmap -T4 for the win. thought i'd simplify with no timing switch for a box..... yeeahhh, lol no bueno

jovial wave
#

Yea those scans take a fat minute

winged summit
#

dude, for sure! lol

#

73% right now... all ports, but TCP, so thank goodness haha

#

love the verbose flag

#

see ports as they come up

#

sneak peek lol

#

aaaaand we got ourselves a DC 🙂 figures ha

#

Anyone know why they call the nmap -oG greppable? i mean, the output is all on one line, pretty much +_+ ha

#

i guess i could grep -o

rapid merlin
#

I can’t sleep

#

😖

loud marlin
#

count sheeps

runic cliff
#

guys is there any way to get more freezes for THM, im in a middle of midterm week and scared i might miss a day.

loud marlin
#

don't think so...

runic cliff
rapid merlin
#

Me: Let’s finger paint
paint: HUH
let’s: im scared
scared: no im scared
no: hi scared

boreal scarab
ruby sand
#

i maintain obama's campaign slogan should have been "yes we cannabis"

rapid merlin
rapid merlin
little compass
rapid merlin
#

I see some of you still awake there, hiding in the shadows 😶

#

It’s already Sunday

chilly veldt
#

👀

boreal scarab
ruby sand
#

i'm dead... this is the wildest thing i've ever heard.

rare karma
#

hi, anyone can help me to decrypt o identified this econding 2Wb26i/nvfVcMol9OalWn3J2J0NcSucLmULHPsiWg7WoN2DtN7UDXw==

rapid merlin
pearl raven
spare salmon
#

Hi, I want to ask. Is there any resources that I can start in Networking?

blazing granite
rapid merlin
#

I need to do more networking, it’s my least favourite subject though 🥹

spare salmon
twin ridgeBOT
#

Gave +1 Rep to @blazing granite (current: #69 - 111)

wooden totem
#

Man all AI tools are just a tiny amount out of budget, like I would've gotten it but the price doesnt fit in my "this is worth it" purchase cus i don't use it nearly enough for it to be a necessity

warm scarab
blazing granite
#

Also there are a few rooms about networks in THM

twin ridgeBOT
#

Gave +1 Rep to @warm scarab (current: #2258 - 1)

spare salmon
eternal timber
#

Just got two bottles of vodka

warm scarab
rapid merlin
#

🙌

eternal timber
rapid merlin
#

Damn

rapid merlin
#

How do you find teams

eternal timber
#

Rip

rough barn
#

Why can't I nmap my own network?

rigid cypress
#

Does anyone play the game together

pearl raven
#

Sometimes it's helpful when you can just be someone to talk to or bounce ideas off.

neat tusk
#

Hey, it’s been a minute. Glad to see I’m still muted on KOTH. kekw how’s everyone been?

pearl raven
#

lol

#

Good _milk, currently trying to catch up on Blue Lock.

woeful rock
#

😄

granite hinge
#

Is ther any moderator in #koth channel ?

#

Who is available for helping usere

pearl raven
#

It's likely that the mods have all channels active.

granite hinge
molten sky
#

pondering ways to simulate ransomware to test some EDR stuffs --- came across a thread discussing it --- the number one suggestions was "just wait for crowdstrike to push an update"

flat fiber
#

Need help with something. So I have a linux server and I want to have a vpn running on that server and be able to ssh and or vnc into it. Every time I start the vpn service thru openvpn I get disconnected so I followed a few stackoverflow qs, tried setting up iptable rules, etc etc and nothing works... still get disconnected as soon as the vpn starts on the server and unable to connect thru ssh/vnc

(Also sorry ik its not related to tryhackme just thought id ask here since you guys might know a bit more)

molten sky
#

"disconnected" as in the tunnel and interface closes, "disconnected" as in the interface is up and connected, you can ping the server, but can't reach the greater internet, "disconnected" as in some other state?

flat fiber
molten sky
#

does the interface on both ends go down or just on the client/server

flat fiber
#

I'm unable to connect/ping the server IP once the vpn is started on that server

copper current
#

Who want to write a script??and nind it to blobfingerguns apk??

#

Will pay cassshh

#

Money

rigid cypress
#

Boring Sunday

forest phoenix
#

hello can anyone help me?

#

my pc aint booting up

#

but gets turn on

rapid merlin
#

wdym isnt booting up

forest phoenix
#

everything i working fine yesterday till 2pm

slender scaffold
#

👀

forest phoenix
#

then i went to gym and when i back and turn it on it wont boot up

#

only cpu fans running

slender scaffold
#

hi zumi!

#

Multiple cpu fans 🤔

forest phoenix
#

no only 1 cpu fan

rapid merlin
#

wdym isnt booting up dude

slender scaffold
#

Is the board talking to you or making beep boop

rapid merlin
#

boop beep

forest phoenix
rapid merlin
#

check the

forest phoenix
#

im on my pc right now i just somehow make it boot once

rapid merlin
#

thingy

#

uhh

#

where they are connected

#

through the usb

#

and hdmi

slender scaffold
#

I’m confused now.. is it or is it not working lol

rapid merlin
#

onto the motherboard

sick lance
#

Do you have an integrated GPU alongside an independent one?

slender scaffold
#

need to know if any beep boops

forest phoenix
#

i can screen share everthing is working good i can play anygame on max setting

#

no voltage problem

rapid merlin
#

no it if was that it wont turn on

forest phoenix
#

but if i turn it off it wont boot next time

#

i have to put out cmos and ram

rapid merlin
#

punch the motherboard(don't)

forest phoenix
#

wait is ill tell u my built

#

no bottleneck etc using since 1.5yr everything under warranty

rapid merlin
#

i really dont think its the case here

forest phoenix
#

ryzen 7, 3060 12gb,ddr4 gskill ripjaws ram 3200mhz 8x2,256 nvme (im poor cant afford much) ,500 seagate 2014yr hdd, 600w pylon psu, cooler master cooler

rapid merlin
#

600 w is good

#

for all that

slender scaffold
#

I don’t think knowing parts is gonna help much if something is faulty

rapid merlin
#

true

#

but hey, atleast he knows them!!

forest phoenix
#

like u guys look much better than me so i just share to you

rapid merlin
#

i have a low end laptop lol

forest phoenix
rapid merlin
#

and i still managed to hack all this years lol

slender scaffold
#

How did you figure pulling out cmos and memory fixes it?

forest phoenix
#

help me guys ask ur expert friends i dont have anyone to help me

rapid merlin
#

im like the guru of low end settings

forest phoenix
#

pull out cmos

#

if it wont work

#

pull out ram

rapid merlin
#

ok then ur ram is faulty

#

u need new ones

slender scaffold
#

So do you need both or just one

forest phoenix
#

nah

rapid merlin
#

did you overclocked them

forest phoenix
#

i put them individually it works

rapid merlin
#

uhh

forest phoenix
#

even though im using it right now i can stream valo

rapid merlin
#

did you put each one individual

#

like

#

u have to 2 rams

#

right?

#

or 4?

#

how many

slender scaffold
#

I think when they say put they mean pull

rapid merlin
#

i mean its a dual channel problem bcz of .. ??

slender scaffold
#

When the computer doesn’t “turn on” do you get the single beep as if it finished POST?

rapid merlin
#

POST reminds me of curl

#

haha

slender scaffold
#

Heh

#

Their emoji was deleted I wonder if they got muted lol

rapid merlin
#

me too

#

oh no i think he dm'ed me

#

yeah

#

dm + friend req

grave hawk
#

Hello

rapid merlin
#

hi

rigid cypress
#

Does anyone play the game together

#

So boring

leaden jungle
#

solid morning session

rapid merlin
coarse plover
#

anyone had an issue with openvpn when it always stops working after 1-2 minutes?

south egret
#

guys im having gui problems with my kali linux vm, does this suggest that a file got corrupted and i have to just scrap this vm make a new one

#

cant see the taskbar, doesnt have exit button on the terminal, cant alt tab

naive violet
#

Are you logged in as root?

south egret
#

no

#

i just switched user

mortal pendant
#

trying to learn grep sed and awk a bit better to do more log reviews .. any particular rooms that help with such tools ??

near hawk
#

I’m not sure what the limit is or if there even is limit but the friends is buggy

rigid cypress
#

Will adding friends ban the account?

naive violet
torpid furnace
#

bro

#

obviously not

#

unless u add to many ppl at once

#

and discord suspects suspicious activity and locks ur account

rapid merlin
#

Morning 😶

devout palm
#

Morning

slender aspen
#

I am Aryan Verma, currently studying at the Indian Institute of Technology (IIT) Bhilai.I am studying cybersecuirty for the past one year specifically in offensive secuirty. I am aiming to secure a foreign internship in cybersecurity within the next seven months and would greatly appreciate any advice on how I can prepare to meet the requirements for such an opportunity. Specifically, I would like guidance on the skills and certifications that would increase my chances of being accepted into a reputable internship program abroad.
I am also the coordinator of cyber security club in IIT Bhilai and my club comes under OWASP student chapter.

mighty quartz
#

morning guys

near hawk
rapid merlin
#

Not enough tea for the day

#

I’m so tired

#

🙃

rugged iron
#

Hello, I would like to know how you learn. Indeed, I don't know how to go about it, and on the internet, I only find generic advice... How do you organize yourself to take notes, where do you store them (software, etc.)? How do you memorize without spending hours on it? And how do you avoid being alone in this learning process because, personally, no one around me has any interest in either IT or continuous learning...

wooden totem
#

Diagrams, 100 million diagrams

#

I like diagrams, makes me remember everything 300% more efficiently. Diagrams

humble forum
#

any free alternative to cpanel for hosting websites

half girder
ruby sand
half girder
ruby sand
wooden totem
ruby sand
#

Eh, I do the same thing with osint and with software installs and such... If you can't reproduce your work, what's the point?

wooden furnace
#

Do you guys know any open soruce browser extension analyzer for permissions and vulnerabilities Chrome Firefox Edge

south egret
#

test

void zodiac
#

I have an issue with Kali OS

I run the official kali .ova machine in VirtualBox

The issue is, after 3-4 times I'm afk and Kali logs out and when I log in again, the system freezes :/

I have no idea what causes it

naive violet
cedar swan
#

hi ninjajc01

#

james

void zodiac
royal skiff
#

Has anyone here heard of dropshipping?

void zodiac
#

Please, no

royal skiff
#

Where are you from?

brittle lynx
#

hey guys i have thid "Disk0" virtual disk I made for dual boot linux... How to remove it and get all the free storage back to my windows?

naive violet
#

Click "OK"
It will wipe the disk and let you use it in Windows

brittle lynx
static sierra
#

when is the monthly hacker badge awarded its oct now

naive violet
static sierra
#

james may u respond to my question?

naive violet
sinful moon
#

What's up gamers lol

brittle lynx
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #2 - 2193)

sinful moon
#

Agreed with James, .OVA images are honestly more of a pain then they are worth. Plus you miss out on the cool setup/install process

mystic trench
#

.

sinful moon
#

..

chilly veldt
#

soooooo tired

torpid furnace
#

can someone help me with a ctf comp. its not for money its just practice

chilly veldt
#

which ctf

torpid furnace
#

rn im top 13 but i just mess up with everything left

sinful moon
#

Unfortuantely we can't quite assist with third party CTFs, especially not knowing what their rules are in terms of third party assistance

sinful moon
#

plus you're already #1 on the leaderboard lol

torpid furnace
#

im 13

sinful moon
#

Oh nevermind, that's another 0x username

torpid furnace
#

thats bad out of 138 ppl

torpid furnace
#

0 prizes no discord

sick lance
sinful moon
naive violet
gloomy hamlet
#

why there isnt an option to see how much you got points this month

sick lance
#

Or is it just top 50?

gloomy hamlet
#

ah ok it tells the place kk didnt see

brittle lynx
#

hey guys. The more I do this AD stuff, the more I realize that it might be essential to have a linux machine access in the target company because you cannot get layer 2 communication elsewise ... Kerbrute not work properly, Responder not work properly, and others if you dont have linux target access ...

naive violet
#

There are equivalents of those tools for Windows too

#

Responder is the only one of those that needs Layer 2

brittle lynx
naive violet
#

I don't know why your specific case doesn't work.

brittle lynx
naive violet
#

1000% percent depends on where you are
What do you mean by "Only in one year span"?

brittle lynx
#

2 years not 1 year

naive violet
#

Have a look at job postings for where you want to work.
Look what certifications, experience, and skills they are looking for.

brittle lynx
twin ridgeBOT
#

Gave +1 Rep to @naive violet (current: #2 - 2194)

south egret
#

bruh took me forever to find where to download vmware on broadcom's scuffed website

fiery temple
#

Good day everyone. I have a question, I want to get started on cryptography. What's a good entry for someone that did the pre-security learning path?

#

I seen the "easy" labeled crack the hash rooms but I want to understand more about the hows and whys as well

high mulch
# fiery temple Good day everyone. I have a question, I want to get started on cryptography. Wha...
fiery temple
#

Awesome, gonna give it a look. They cover everything from old cryptography to the modern stuff then?

high mulch
fiery temple
#

Seems to be yeah. It's quite a goldmine

high mulch
#

Group is called cryptography, very original Ik, lol. I haven’t been there in YEARS. So I don’t know too much about the flow of info there.

fiery temple
#

Fair point, lol

high mulch
#

It’s a public group, so even better.

#

It has a blue digital lock as banner

fiery temple
#

I'm not on FB myself so I'll comb through the youtube for now, but thanks for both

#

This seems to have a lot of stuff

soft vortex
#

how to prevent other computer to find my computer through nmap scan even on stealth scan

high mulch
#
#

@fiery temple

soft vortex
naive violet
naive violet
fiery temple
#

Nice, thats going in the critical research folder too

soft vortex
#

ok

#

i am doing some research

brittle lynx
naive violet
#

Don't do nonsense. Just do the basics correctly.

brittle lynx
#

But no punishment for it so Maybe i will do it in addition to hardening

naive violet
#

Security by obscurity is laughed at for a reason

naive violet
jade ocean
#

Especially when the thing you are trying to protect is private (ie not gov)

naive violet
#

You are searching for "confidentiality"

soft vortex
#

I agree with GHop. He is absolutely correct

jade ocean
# naive violet You are searching for "confidentiality"

That is definitely a part of obscurity, but what I mean when I say obscurity is everything from confidentiality to obsf code to close sourcing - pretty much everything that would make someone trying to exploit a product / system feel like it isn't worth their time or effort.

soft vortex
#

yes

naive violet
#

So... increasing confidentiality

#

Got it.

jade ocean
naive violet
#

Kerckhoffs's principle (also called Kerckhoffs's desideratum, assumption, axiom, doctrine or law) of cryptography was stated by Dutch-born cryptographer Auguste Kerckhoffs in the 19th century. The principle holds that a cryptosystem should be secure, even if everything about the system, except the key, is public knowledge. This concept is widely...

jade ocean
naive violet
#

Scroll down.

winged summit
#

GHoP, you're an interesting dude. I used to be in the "only security, no obscurity" camp, but then evolved my perspective to be more nuanced. Obscurity definitely helps provide confidentiality. I get James' argument too, but I definitely fall under the "use whatever you can" camp....

jade ocean
# naive violet Scroll down.

I have read the whole thing, and at no point does it help me know how you believe confidentiality and obscurity differ in this context..

brittle lynx
#

But who here actually works in the field and can provide experience of real things they did in the matter?

naive violet
#

Me?

brittle lynx
#

Can u attest to abscurity techniques posing a difficulty for your IT team to manage infrastructure?

shadow wing
#

Hi

naive violet
#

Apply CIS L1 at a minimum

#

Deception etc like honeypots is for once you have the basics down

#

Have a look at the UK's Cyber Essentials Plus program for a baseline

brittle lynx
#

Ok thx

jagged flint
#

Another repost .. until I find what I'm looking for

#

Is anyone willing and looking to mentor at all? I'm so lost on my path to offensive cyber security, working to finish my degree and getting my Net+ and SEC+. While I'm doing those I feel they aren't helping to my overall skills in offensive cyber, also do CTFs when I can. Don't know where to start with programming after watching countless python guides. Considered bug hunting but generally have no idea what I'm doing. Have a unique opportunity to do offensive cyber in the military, but while waiting to get accepted feel like I'm not progressing.

simple valve
naive violet
#

...did you sign up on tryhackme and start on the content?

jagged flint
#

I have premium

#

I guess mainly I want to load the code portion.

#

It's like yeah sure, I can learn burpesuite but I know fuck all about writing and uploading my own packages

#

Or creating those same situations on my own machines to learn more

wooden totem
#

also, cryptography my beloved

jagged flint
#

I attempted to write my own C2 server and hit a hard wall

naive violet
#

Mostly it'll be scripting, very small bits of code to automate tasks or process little bits of data

jagged flint
#

There's nothing that teaches that though?

fiery temple
wooden totem
#

I think theres like 1

naive violet
naive violet
high mulch
fiery temple
#

Hmm kind of wondering how I should go about it then, I dont want my knowledge to end at loading up hashcat

naive violet
#

Sysadmin stuff?
Learn the theory behind what you're doing.

fiery temple
#

The youtube links gov posted are cool but theres so much its a lil overwhelming

simple valve
#

CryptoHack !!!

#

for crypto

drifting mural
#

hi guys

simple valve
#

but also, you need some solid math fundamentals as they dont rly teach you that in depth

drifting mural
#

how do I hack Monoalphabetic cipher

#

I don;t get it

high mulch
wooden totem
simple valve
naive violet
drifting mural
#

ok I go to search

wooden totem
#

my only problem with wikipedia is that on some subjects it doesnt provide enough info so its more confusing than on certain other source

naive violet
#

That's one thing about having the citations

high mulch
#

I sited Wikipedia just for grabbing some basic concepts behind some methods in cryptography.

naive violet
#

You click into those and read those

fiery temple
#

If you would entertain the questions of a greenling some more, of how much use is understanding the inner workings of hash ciphers

#

Perhaps I should call them CHFs

wooden totem
#

undefined

wraith fjord
#

Yellow

mental geyser
#

how come that when I search for retro with difficulty all it shows it but when I search for it with difficulty selected hard it's not showing up ? Is this a bug ?

#

and even if I manually check each page for retro after selecting the hard difficulty it's no longer there

atomic abyss
#

syn

sick lance
gray sonnet
#

Hello there 👀

rapid merlin
#

heard you were in hospital or something right?

mental geyser
#

slightly different results but still no Retro

sick lance
rapid merlin
#

Will try hack me ever make an app you think

#

Mobile app

sick lance
#

There one in production was at some point, not sure if that was community driven though, but I'd hazard a guess and say no, and the website isn't optimised for mobile/tablet devices.

rapid merlin
#

ban scrubz guys

rapid merlin
#

you said the app in production right

#

then you said i guess no

amber pawn
#

i was wondering what would be the best resource to learn computer networking as a beginner in cyber