#general
1 messages · Page 465 of 1
You don't need to know x,y,z to apply for the position.
You'd be surprised how many people blindly apply to jobs on LinkedIn.
Good morning guys
Surely he should have been filtered out at the application stage
It could also be a generic security related software engineering position
Or they might have thought it’s one
was the new profile update reverted for some reason?
the dashboard page of the user on THM website is what I refer to
Morning 🙂
My dashboard has always been the same
Oh I saw they changed the icons for the learning paths tho
that's weird, yesterday I had the new UI layout
today it's back to the old one
nah I mean I never got a new one, I've seen the same one all this time
oh
One thing I've been wondering about since I signed up for the paid tier is my "premium roadmap" is missing
premium roadmap?
the only roadmap I followed was @sand trench her roadmap is one of the best and well constructed imo
you can check it in the pinned posts
So before I signed up there were two roadmaps under "learning roadmap" "free" and "premium" now I only have free
So I've been doing the "learning paths" instead
hmm, I may be wrong but I think you're referring to free/premium rooms
paths include both free and premium rooms so now that you're a subscriber, the premium one don't show but are included in your account
but take my information with a grain of salt
I've done pre-security, and introduction to cyber security, I'm now doing complete beginner
Yeah if you don't sub you can't fully finish pre-security
I don't think anyway, cause some rooms aint free
I think you can but it's just the free rooms that you complete
don't know how the cerficiate thing works as a free member
but the premium is so worth it and it's not that expensive as well
Other places that were teaching this were selling their courses for several hundred dollars. 14 dollars a month is a good price
definitely, yup
guys, Scrubz is offline
nah I'm kidding, don't do that
I just like the gif
Yeah like I first thought this might be something fun to learn when I saw stuff from Occupytheweb. And bought his book. But damn several hundred dollars to sub to his site. 
I don't think tryhackme teaches scada hacking though. But is that a skill you really need?
🤔
Yeah.
that's sad, it was looking really neat, is the reason public why it's been reverted? if not, are we going to see it ever again? I really enjoyed the new layout
It's going to be refined slightly, I think.
sweet
hello guys, i have a question that id like to ask?!
Just ask (:
ayo, dose anyone have any interesting 'hacktivities' like meetups, cyber spaces, open CTF's at amsterdam this week?
This is such a quiet time
oh no wrong one
Are there any good CTF videos to watch
hi guys, new to tryhackme and discord. I have a question regarding the Cyber Kill Chain room - task 5. The question says - Can you provide the name for a cyberattack targeting a software vulnerability that is unknown to the antivirus or software vendors? - The answer is "Zero-day Exploit" right? it keeps saying it is incorrect?
my shift ended like 15 min ago but still have people scheduling calls till an hr later
oof
i know a few who schedule post my shift hours after asking my shift end time
Anybody up
I am trying to finish a report
annoying fr
Need a lil help
I wanna play koth but every time I try to join it says koth are for intermediate level
What rooms should I complete to play koth
Try checking the asterisks that show characters needed for the answer and if it matches up. Otherwise #room-help
you're a star feath3rz - thanks
Anyone can play that has an experience level of intermediate or advanced ( an option you can update on your profile )
Tbf I never played with the option. But that might be a way to start finding answers
i thought it was level cap
It might. I’m just saying what the faq says 🙂 so time to find out when can you update your experience level.
Or if anyone can update it no matter their exp
getting a job in cybersecurity would be easy if blackhats didnt suck at phishing
blackhats dont phish. scammers phish.
@outer rivet is a scammer
we only have good ppl in thm
he asked me if i wanted nitro for free
Advise a mod.
Bing bongos wizard
yo guyz
thm is easy man i did this in 1 week top1%
this website tryhackme has many courses
and i wanna learn the basic networking for managing a ubuntu server and make it secure
Which one should i opt for??
;_; I suck at networking… I dunno the answer
i just want to know the best course for me
no lol
correct
ok thnx bro
goodluck with your journey bro
love this bro atmosphere
gg simon
yay god level
👀
im top 1% on htb academy
GGs
Nice job
thats offensive!
I love you bing.
=_=
Sorry, I forgot I was in thm.
is thischat always full of bullies
Thanks, but wru?
Gave +1 Rep to @outer rivet (current: #492 - 10)
No, that's htb.
!8ball should I finish this report?
yes
Magical Bella
cause I need to do the same
Should I finish this report?
:8ball: Without a doubt
Gawd Robocop
I really don't like SQL
have you tried noSQL instead?
Yesssss nosql
information schema, group concat .schemata and table column enumeration is annoying to learn lol
@jagged yarrow wish I could join, but I am flying to spain the 15th 😄
and also from Denmark 
what kind of issue
I will be there 👀 #announcements message
Wheres an easy way to learn SQL? Both SQL rooms and I'm still not there with it
f you, now I really want to join
Even watched a John Hammond video
I want to be there 
youre gonna need much more than just a few rooms 💀
Sql is good with practice
Hi guys
yo
o/
\o
|o|
orz
I feel like I've done a lot of rooms on it but still can't get it
Just a few of the command syntax I don't get
Why are you awake!!!
Ones above I mentioned being the main ones
It's 7 AM
I might go to London
Why are YOU awake?
For free pizza?
I’m doing a report I was supposed to finish before boss wake ups
It's the magnificent seven
Ring ring, it's 7am
Though I might put in my two weeks this week
Can I go back to bed? Reeee
👀
I got a job offer as a Threat Analyst ❤️
Surely you understand the reference
Get up and everything is cracking
That's one reason
🥳🥳🥳🥳🥳🥳🥳🥳
No more software engineering!!! \o/
I mean free pizza is free pizzza c'mon
Too early, no coffee
I'd go to it but I'm literally halfway around the world
free pizza
It's from a song by The Clash
Yeah it looks terrible
I'm stalking Ben CMNatic, not a bad song bro listening to
Yikes
I want to ask about the basic policy of Wirewall
The brick needs new
firewall?
did your hous get hacked
brutforce vuln
Has someone seen heck's profile on this server? Is his bio thing his or legit??
Hopefully not a physical firewall
He's 0xGod, green
Hi guys! Do you know where or how to get started on decoding a message in base 16 string?
I feel like one of the mods should be seeing this
Is it CTF?
The inbound policy is set to 'deny all,' and shouldn't the outbound policy allow traffic from a specified IP to any destination IP?
It's a file dump, a friend aent it to me
cyberchef if you are more of quick solution. or just do the math on the bytes
I booped the snoot!
Then yeah Google lol plenty of resources
you what
I forget how to do that
Booped the snoot
Can I get the anwer?
I did google and it didn't help
do you want to get banned
You're not a mod right?
I am a booster
Oh true yeah
its entirely upto the default config. I work with a lot of firewalls. which firewall are you talking about?
and a meme stealer!!!!!!
me too now that i think about it. lol
beerise is a meme stealer
At home

Sending syn and not getting acks lol
hecks profile says something weird like suspected to be a part of something bad
NO SNACKS?!?!?!?!?!
UDP? kinda..
No snacks!!
If the inbound is set to 'deny all' and the outbound policy allows internal IPs to reach any destination IP, won't that enable communication with the outside?
If the inbound is set to 'deny all' and the outbound policy allows internal IPs to reach any destination IP, won't that enable communication with the outside?
Hi rise
generally if the firewall has multiple interfaces that has for datapath, Natting etc., then the inbound datapath interface(or pool) has deny all by default. And for outbound it should have application default. Im talking wrt pfsense or palo alto as an example.
Can a mod reply? I'm confused on a user
Good day
IM A MOD WHAT CAN I DO FOR U
yes, egress only. not ingress
Hi vader
Good day to you
Hi caustic
generally if the firewall has multiple interfaces that has for datapath, Natting etc., then the inbound datapath interface(or pool) has deny all by default. And for outbound it should have application default. Im talking wrt pfsense or palo alto as an example.
Scrubs are u around to contact a mod?
Nah I think its a meme
-# This user is under surveillance by the US FBI • Learn More
Tsu are you playing with markdown?
Has a thing to hover over
Chat sure is weird at this time…
Can u see the user?
what markdown are u talking about
eh?
I don't know exactly what the customer Company's external firewall is, but my colleagues say that since the inbound is set to 'ALL DENY,' no matter how the outbound is configured, there is no internet connection.
try 3am nzst lol
Please tell me you’re joking
True >_<
Oh nvm it is a aprt of the normal bio it's just changed I think
Yo hoe
Is Ra hard at all for anyone?
thats not how it works. egress or ingress is bi-directional. policies are for who initiates the connection.
I don't know exactly what the customer Company's external firewall is, but my colleagues say that since the inbound is set to 'ALL DENY,' no matter how the outbound is configured, there is no internet connection.
hoe and a bottle of rum
why are you copy pasting messages?
@tired moth
I’m gonna guess age is a factor in the answer
I understand that in the firewalls I know, inbound and outbound policies are bidirectional, but even if the inbound policy is set to 'ALL DENY,' the outbound policy can still allow internal IPs to communicate with the internet.
I said it to my colleauges, but they said I'm wrong.
the number of times i had to explain this in my office to my colleagues and clients is awfully a lot. sometimes its better to just ask them to learn how tcp works 😂
Wire shark :3 get them receipts
in a client meeting i was furious and said. "i aint got time to teach how networks work. please learn your fundamentals and come back with your queries."
SO... I'm right that?
You're not a mod.
yes sir.
Thank you mate.
Gave +1 Rep to @pliant cairn (current: #532 - 9)
@tired moth Salam bingbong9
We don't help with external ctfs
Bro, you have nitro?
Is this for work?
Oh... I see...
Yeah... Part of?
Please don't ask for help in here, speak to a senior.
Let's not take random advice from random members.
They are Seniors...

They don't know the Inbound and Outbound policy of Firewall...
Is there a shortcut to open a ticket without having to talk to the bot? 
The speak to somebody who does.
Email support.
@rapid merlin hopefully nothing bad happens with Milton :/
Been watching it cause a friend I know is also in the path
Alright I'll email. I thought it would be easier through the site though to prove my identity
8 is all of my company, but nobody knows correctly..... I thought I was wrong....
The ability to speak does not often make you intelligent
I think they'd ask to email that
Then please dont ask in here, we don't help with work material
learnt from experience
It helped A lot.
I hope you will be pleased with my very first room I am developing
Yes, but going forward.
@whole yew are there roles for certifications you passed ? I see you have some certificate related roles
I’ve seen them roles
How do I get them ?
I think it’s interesting it’s traveling East o_o
Got a few certs under my belt
Might need a mod to answer that one lol. I don’t wanna give incorrect info
I’ve seen a lot come from the Atlantic side mostly and then rip up the coast
Just like where I’m at.. hurricanes come from the east and move toward us west.
Its hitting central/northern Florida by the gulf coast from what I read
No you're right
They need to show a mod some sort of proof.
Hello!
Shoot I forgot to delete message, sorry got confused
Confused has been settled though
Confusion
I'll have a look
Nah,.can't see it
Nah I think it was just the bio but it looked different from the last time I saw it
Don't remember it having a hover thing.
Moving forward, if you have a concern or issue with another user, you can DM a mod without asking
Okay thank you
Anyone have a thm discount voucher for me🙂
what does
Waiting for a community giveaway and trying your luck for one
Contribution to the community/giveaways
gm
Night all
Morning!
No, it's 8:50 AM. There's only 1 time zone!
That sounds like a usa thing to say 🇺🇸😝
MURICA
uhh….. o_o
What is the flag that you obtained by following along
whats the answer to this?
If this is about a thm room go here #room-help
I finished my report. Are you proud of me? ❤️
:8ball: You may rely on it
Awwww ❤️ love you too Robocop
No, your friend is doing something illegal, we won't be helping you.
Obviously don't click their links
One message removed from a suspended account.
One message removed from a suspended account.
One message removed from a suspended account.
MERICA
Understandable that you don't help with this kinda stuff. But saying that it's illegal doesn't make any sense. People do malware development and malware analysis. Some people can do this for research and learning purposes. Don't PUT illegal stamp on if something involves any kinda malware lmao.
News flash. Scrubz does malware analysis
the thing here is that there's no way to check to be sure that's really legal so most of the time no answer is the answer
If the message got removed, I'm assuming it contained some form of legally ambiguous language in either GB or the US
CFAA is overly broad
Can I get this "CFAA" translated?
Nvm
I big dumb.... barely had coffee
another tuesday another 3-5 thm rooms
Hi all, quick question. What's the rules/guidelines around producing write-ups for CTFs on THM? Thanks in advance 🙂
his friend is making a spyware that can locate him in real time and he was asking if there are any alternatives to ngrok(?). im guessing they were tryna tinker and learn how these stuffs work but as what evix said theres no way to be sure
bruh i dont know how to use this bot
Better to let it learn how to use you
hey guys anyone has problems with starting attackbox now? Getting VM_Parsing_Error

You're friend is creating spyware you spy on you.
I doubt this is for work l.
Creation of such tools is illegal in the UK under the Computer Misuse act.
ai elon pfp cherry on top
so funny
and without reading the original message it seems like, "hey my 'friend' is making this malware and is looking for some help 😉 "
Creation of malware should never be done "for learning". That's the worst sort of excuse.
And the police won't take too kindly to it.
hi
One message removed from a suspended account.
how to hack wifi password tell me
lol
Double whammy
"oh Mighty GOogle"
I already spoken to you about this
u want to hack ur wifi password
wow
bro
Hey, quick question, can we sponsor someone who wants to purchase premium ?
You can buy a voucher for them.
Nope, that's redemption
In my memory, we had 5% reduction over the swag shop. This does not exist anymore ?
Good afternoon
do y'all think this is ethical
i trust
I trust no one 😂
Tbh idk if it disappears or somthing but way back I remember getting it but idk how to check if it’s actually lowering the price
Yes, you need to email support
They will give you a code.
Good policy.
Ethical is in bold caps. I think that’s enough to trust someone
I’m trying to connect to my tryhack it showing white blank screen
Who can explain that to me please
You might want to ask in #site-support
Yea my tryhack it showing white blank screen
According to my calculations, the mass of Tryhackme is 0.67g, if you approximately split the Tryhackme atom in two it should work
We seen that the first time, which is why I asked you to to go #site-support
your not a mod
I am a mod.
your a mod
Correct, you're not a mod. 🙂
What’s a mod?
Take a good guess
Failed embezzlement
Hey
Hello
Is that you?
no im not a mod 
youre a mod
Ah, you're implying all mods are good dancers
Nah, I'm not.
lol I would love to attend the in person THM event… if it wasn’t an ocean away. Oh well
New THM profile page is back. 😎
i like song u recommend
Maybe My Soulmate Died 🎶
is using a tool like ZAP's spider (& ajax spider) against bug bounty rules?
Flyings an option
Plane tickets be expensive
It can be l.
Check the bounty
Thanks but I don’t need to fly to the UK just for Pizza and a QA lol
Is bottom right hasbulla
think so, though I have no clue who that guy is
but fits the meme perfectly well
@jagged yarrow
Is there anything I can help with? :)
I’m assuming it’s because he hasn’t cancelled the plan from since the change
but nitro basic allows you to set an animated profile picture I believe?
It doesn't
Hi can you add « Jordaah » on your discord friendlist he had issue for joining the server
oh, right, I thought you meant nitro classic, I didn't even know "basic" actually existed, lol
lol
Can you DM me their user id?
Jabba may be busy
Today's chest pump is unreal 💪
Agreed
I thought that's an elevator, not a chest pump 🤔
I am playing CTF name all in one.. I saw LFI vulnerability. I tried /etc/passwd it worked fine.. But when I tried ../../../../wp-config.php it not showing anything.. But after php://filter/convert.base64 encode it show..why I can't directly print it out?
elevator? isn't that a mirror?
True.
i thought that was a refrigerator handle
it definitely is
Walk in freezer with a mirror.
where tf is my guy pumping irons then
guy? what guy
Which CTF are you doing?
All in one @sick lance
Is it active?
I wonder what is the difference btw them. I asked to chatgpt he saying.. It is sensitive file so that's why I can't directly access.. But /etc/passed is also sensitive file right then how I can't access wp-config.php file directly
Yes.
do you mean this guy?
eww javascript
Can't help in active ctfs
Then we can't help, sorry
What you mean by active...?
is it allowed in the rules to watch for guides when stuck in CTFs ? (or it's just you can't share infos)
👔 Merch drop 2023: https://posix.store
Javascript programming language
Interview with a Javascript developer with Jack Borrough - aired on © The Javascript.
Find more Javascript opinions under:
https://hackernoon.com/how-it-feels-to-learn-javascript-in-2016-d3a717dd577f
Programmer humor
Javascript humor
Programming jokes
Programming memes
Jav...
😄
it's OK to watch guides especially if there are even write-ups for them, I don't see how that breaks the rules
been watching those videos for a year now, that JS one is one of the best and the latest one with production in the office 
Is the ctf still going?
No
👍
it amazes me that some people still use their phone instead of smashing the print screen integrated function in Windows
There is writeup available.. But they don't mention how it works..
I am not logged discord in my system
#room-help for thm please.
where did u get my photo
use jquery? what are you 5? we use jjquery
yes 😄 https://jjquery.io/
You tried CoffeeScript, rewrote it in TypeScript, then went back to vanilla JS. Now it's time for JJQuery, the new de facto Javascript standard for the web.
What is the name of the service that lists Systems Internals as the manufacturer?
and everyone who uses js are
@tired moth 👀
portswigger 
Now it's apparent...
Discord got banned in Russia 😶
hey guys. Anyone got darkmode on THM? there's this one extension for it on the chrome web store buy doesn't work. Any reccs?
I simply use Redshift and my browser settings
Guys i have a problem while i'm installing Parrot OS in virtualbox. Whenever i "Install Parrot" and it says "Done" and it restart my system it gets me back to "Try / install" and it's like an infinite loop. I tried everything i've seen online and nothing seems to work. Is there anything else u can suggest guys?
neat, darkreader works well too apparently
Try a virtual machine with parrot installed
They offer this option on the website
damn true, i completely forgot about that one. Thanks!
Gave +1 Rep to @void zodiac (current: #2261 - 1)
Can I dm?
yea of course
Who provided the auxiliary/scanner/ssh/ssh_login module? what is the info command? please.
Mine must be gone 😂
I always think maybe mines blocked lmao because my block on my other account was so long
I recently unlinked my Spotify
😕 okey
You know each playlist literally consists of four songs. I am the sort of person where if I find a song I like I never stop listening to it
same XD
for me my playlist is likes songs
I have different ones, different ones for different moods
so it's complicated in your case
Yeah
glad to meet u 😌 👌
9.2mb of this picture is caused by W I D E
eye spy a pocket mask...good good 😄
Hello
You too

Oh, dlc for Diablo 4 is out today
guys does thm subscription renews automatically?
Yes
the "subscription" tab is showing as if i dont have a subscription active... weird
When did it set to renew?
i dont recall tbh
i just today wanted to cancel it and i saw it like this
I'm feeling really weird, like I want to get into TryHackMe and start working but at the same time I do not want to as soon as I start working I end up getting distracted by another site every couple of minutes. Is there anyone else like this? how can I get past this issue?
Yeah, it's very relatable and quite normal. I try to get my posture right (active sitting posture- so sit with a straight back or try standing if you have the supplies) and avoid distractions such as 100 open tabs, Discord, WhatsApp et cetera. Won't work everytime, but it works sometimes
I totally feel you on that. Lately I've noticed that whenever I sit crooked I end up putting my feet on the table and before I know it I find myself just watching a movie😂
Yeah, it really is counterproductive
But procrastination is definitely part of it, so you don't have to avoid it altogether
I'll try to fix my posture and get to work after a nice shower andthanks for your input
No biggie
you need something in specific or an overall explaination?
What are you trying to?
If i start using free try hack me what learning path should i start going or where should i start to learn pentesting or offensive security or some red team things
It was warm outside right, so I dropped my coat at home. Sits down in the library and it POURS outside 🙃
youtube did something with the ads.
generally ad block works. but now i guess they made it unskippable
they bake it into the video stream
hey yall.. I'm still alive.. just been very very busy with life. 🙂 Hope yall are doing well.
do u know how msmq works? and do you understand code to a socket for injection for the queuejumper vuln? i need it revised
What's this for?
queuejumper
its for pen testing i cant find one for rce so i tried making a payload which downloads it from my http server and it worked but i need to target the port socket itself and not the web page
No, what's it for as what is the work being done for? School, work, etc?
penetration testing
for work, trying to understand more about the message queueing service itself and how it communicates so i can eventually design a poc
Ah, ask your seniors
eish
thats the issue
no seniors
there is no poc for this? how can i ask them, i dont think you understand...im designing a poc and need the code revised by someone who knows exactly how the service communicates...
This may be getting into advanced topics
is there a channel for this?
ahhh no access
I asked for mod determination on where this belongs
Ah, here is James, I was about to start, but James will be better than I.
@timber galleon
Or was... 
I hope you didn't stop typing because I started @naive violet 
But like should i start going the free learning roadmap or is there another free path to go
The article shadow linked will show you requirements, however this sort of chat goes in that channel;, and ideally it's not a good idea to get support from random people on the internet regarding work, there must be someone you can get support from?
Hi bros
hi sisters
are ranking percantages removed from site?
Funnily enough, I'm not your brother... 😅
why It would ?
yooo
cuz i can not clearly see my percantage that im in
Can u send a pic
yea
I think you can see it on the right site above in the dashbord !
Is it hiden ?
making POCs and securing the internet is what everyone should do
proving vulnerabilitys are more of a goal th
Don't ask for help with work here
can you send me a screenshot of it
Lol
PoC chat is accepted in the advanced channel, work chat should not be done on this server.
its not for work... its for penetration testing... its designing a poc
sure
alright homie, thanks for the help
Gave +1 Rep to @sick lance (current: #1 - 2848)
Whats poc
proof of concept
Wat
for work, trying to understand more about the message queueing service itself and how it communicates so i can eventually design a poc
No, it's on your profile.
no stress, no need to quote me
A PoC (Proof of Concept) is a demonstration that proves a vulnerability can be exploited.
I broke TrueNAS Scale shell!
bros
hey people halfway through the redteaming path but feeling a bit lost as what to do after i dont have a formal cyber education and was considering doing the ceh exam but its way outta my price range any and all advice will be appreciated
i think we need a dark mode on the site
feel free to dm or @ me : )
guys i need help some guy doxing my family in school and he gives information and make fun could anyone help me get revenge please?
Please contact your school.
"Real revenge" would be illegal, and not advised.
Doxxing is illegal...
he did dox
what did you do to them?
what?
go to the police
Can you please not get involved.
yes
We're not helping. Doxxing is illegal. Please go talk to your principal, or the local authorities.
bro
If you keep asking, I may mute you/remove you from the community, as you're not here for ethical, legal reasons.
how do i be haxxor

the group says tryhackme
Yes... as in https://tryhackme.com
The group promotes ethical hacking, and cyber security.
what you're wanting help with, is neither of those.
Big eyes
what about public info?
Releasing info in a threatening manner is illegal.
Im pro haxxer in scol with this
Please drop the subject, now.
I have a question that I'm hoping y'all may be able to answer for me, if I'm receiving threats from someone via snapchat is there a way to reverse look up what number they're attached to? Or any other information? Also I apologize if this isn't the right group, I don't really know who else to ask
Contact the police
If I only have a username then what other information can I provide them?
There's a term for it. And we, for the ethical side of gathering info, do not call it "doxxing". "Doxxing" we consider the unethical side of info gathering.
You don't need any
We moved on - please leave this kind of thing to the mods too.
Sigma
.
what is more fun event wise, blackhat or defcon?
Defcon for sure
dude we are here to study not help u do illegal stuff😭🙏🏼
Blackhat is more corporate aimed, defcon is more hacker-culture aimed
Hi
Just a shame it was cringe
Np
Hello
hi
Hi
Hi
👋
Here very boring people yeah?
why is there so much mod abuse in thm
idk, i don't see anywhere?
😎
HTB goes crazy lol 
I’ve not been in htb in ages
Hey, if you have any feedback about our moderation, feel from to drop me a DM! Always happy to take on feedback to improve our community team:)
No new room today?! 👀
New schedule gets me confused 😅
Sigma
Are any of them in the Uk
You get bsides and 44con in the UK
Some regional defcon or owasp chapters, a couple of 2600 clubs
yeah was waiting for one, was disappointment lmao
maybe tomorrow,
last week and the week before was a bit tough but also nice to have so much new stuff 🙂
yeah.
I also think there gonna be one tomorrow XD
Tuesday - Friday is the days, unless they've changed.
yea, last week there was one on wednesday 20:00 CEST (pyrat)
and the week before on tuesday (cheese ctf) and wednesday (the london bridge) I think both 20:00 CEST.
Got a confirmation, that there has been something adjusted until january.
hello can anyone help me with virtualbox?
What do you need help with?
i need staff to help me
i didnt recieve my monthly hacker badge and i was #1 all countries yet i received nth
What is a monthly hacker badge
hacking into machines more than anyone for this month
i spent countless hours trying to achieve this badge yet i didnt receive yet this is not smth i can tolerate as a user who have been promised to with rewards
I've already asked you to contact support.
and i did reach out to them
Then wait for them to reply.
scrubz u dont understand how painful it is when u spend countless nights and hours dedicating urself to that specific platform which is in this case thm just to acheive a reward that would make me feel better about my dedication its like u study 4y in BCs then the college shut down for war or wtv
🥳
But at least u learned much hacking
Staff won't make it go faster in here, you'll get the badge, just wait patiently.
Smart man right here
winter has arrived i'm waiting for my badge O o
How to get badge help others and support them easy pizy 😉
ur with the same case as well?
im talking about monthly hacker badge my man
I'm talking about staff role 🙆
You need to be THM staff, to get that.
Yep how to become staff then 🫂
pog
apply for a position
It's for direct job request
yeah, apply for a job, get a job, become staff
All people in this server with Staff role are actually staff.
It's different here haa i need to get job first then staff
Is there anyway i could become staff like helping others and supporting them
Cho Chad
there's community mentors, which are people who have helped a lot around in the community, they are NOT employeed by thm
But in htb it's different xd ! i thought same would be apply here
htb staff is also employeed by the company
I mean you can’t be staff but you could try to become a mentor
They are community contributors i forgot that
ahh i wouldve loved to travel to london and help but too much going on lol
yes, that's the same as community mentors here
Your right 🙂
I would die
this has taken us a week to write
I could write a lot I reckon
back
I am very speedy typer with my eyes closed too 😂
I think it’s because people type how they talk and I talk so fast. People ask me if I can sing rap god
this is a report on redesigning a whole network for a municipality
Sounds interesting
yeah, it is, but when you have 2.5 weeks total for the project it gets spicy
I took a break from tryhackme for a little while, and now I can't remember what command I used in windows to transfer a payload from the attackbox?
So did you compromise said windows host or is it your pc you wanna transfer to
the windows host is a virtual machine provided by the room
Oh well in that case you might wanna use IEX to transfer it
Setup a Python http server and grab the file from your attack box
I know I used the python server. I just can't remember the Powershell command I used.
What is IEX anyway?
Invoke Expressions
Depending on the file, you perhaps shouldn't take it.
I read depression for some reason
Invoke-Depression
lol
I just found it; it was invoke-webrequest. Thank you anyway!
Oh my bad
Glad to see you ended up getting though
Gave 1 Rep to omegawarton (current: #2261 - 1)
Access to networks for 7 days of streak.
What is this access? What does it give?
Access to some of the network based rooms for free like Throwback
aka instead of just one machine, it’s a whole network you’re looking at and moving laterally though
Sounds really cool
mhmm it is for sure
It’s normally just for subscribers, but yeah with a 7 day streak, you can access some of those for free
Throwback is not included in the list, nor is it still available.
Throwback was a seperate purchase.
Ah ouch, shows how long it’s been since I’ve checked up on this, but fair I’ve been a sub for years
So no benefits for me since I have premium
Nah, subs get auto access.
shadow was one of the last few people to ever complete throwback network
HOLY MEEPs
lulz
anyone wanna burn holes in their wallets???
And I get to try and break it. 😂
with a hammer???
Maybe.
Hello guy
On sale over here:
Ah cool
Is throwback even still available
Oh
I guess it isn’t
Throwback is not included in the list, nor is it still available
Yeah that was already clarified for me by… yep
it just was the last time I was working on the Networks so shows you how long that’s been lol
hah interesting, reminds me loosely of the .mobi situation the other month
meep moops time for sleep sloops to the beep boops
Night Shadow
honestly I doubt they'd just remove it like that
way too many important domains
i actually did not, i’ve been here since 2019. i just checked message history and i got here before you did! i took a lil hiatus back then
Unless you count Slack
The original community Slack not the employee one
Took you 7 months to check the message history
glad the world is waking up to ownership of domains
i was stalking Swafox to see if they were okay hah
when ur as old as me you’ve gotta dig through the history to see how people ended up 👵
i provably joined just before summer 2019 in slack i think, back when they ran their first uni CTF
there will be no tech people there probably
when they come to unis it’s mostly sales in my experience :/
I know you didn't -- I remember you being brought in 😆
it’s always sales for big corps
if you’re talking about midship yes
Si
No potential job opportunity?
Do you... want one?
definitely not i’m afraid especially when their company is doing so badly
Honestly I'd take anything 
i’m sorry to say
maybe you will be their scapegoat
I would single handley raise their stocks
yeah probably by your father investing in the company
By removing all regex
you should do this using regex
i can make 10
on tiktok
idk 10 of what
but i can get 10
/[^a-zA-Z ]/g
https://www.techspot.com/news/105025-lunar-lake-allegedly-smokes-z1-extreme-handheld-gaming.html
Mmmm USB4 2.0

What’s with the weed symbol
Yeah I’m confused
my fingers, they hurt
Lookup the meaning of 420
lmao
Words of wisdom?
network segmentation, 802.1x, redundancy and implementation of SSL VPN
Does it pass the generative AI check? 😄
some of the topics at least on how to redesign a network to make it more secure and redundant
most likely, cause we have been sitting and writing it by hand 😄
Next time try to write in cursive, it flows better. 😎
it's written with a municipality network in focus, we had to take their current enterprise network and redesign everything to make it better and make a report on how to implement different design features, and security features
average of 5 characters per word
Ah
So that’s why
It’s a joke on 420 in the name
286 servers segmented into respectful networks with different levels of security, with Vlans/subnets and portgroups for said network, all hooked up to firewalls, making sure all the network traffic is monitored and restricted
welcome to school projects
Come on Tim, she's not that old.
I actually do know how to write cursive
I tried reading my notes from school when I was writing everything in cursive, half of the words are unrecognizable
luckily we are 4 people in this group, so I haven't written everything
average group project
Imagine trying to read Russian in cursive
yup, I was planning on taking on this project by myself, but I didn't get a company to team up with before it was too late
Jarvis, post the russian cursive image from reddit
My eyes
Hi everyone
😭
Hello
i could eat british food day in day out
chat give me a roast rn
on another note, does anyone have any resources i can use to learn more about $PATH since its interesting and common in privesc
(that looks heavenly)
British food ain’t that bag ngl
Do you think the premium try back me is worth it ?
Alr ty would you choose it over something like Codecademy
Gave +1 Rep to @pine belfry (current: #2261 - 1)
Idk even know why I have code academy tbh I want to learn cybersecurity not much about coding
Yeah defo, im not too sure what codeacademy is but if youre learning about cyber this is one of (if not the best) resource for learning about it
Alr thanks dude
im on a cybersecurity course and i go to a lot of networking events and this is one of the top things that is mentioned there without a doubt
anytime!
O how do you find networking events ?
Any local news or news papers
Cause I want to get involved I have work experience coming up and I need to find a company to take me
I usually use something called "eventbrite" and search for cyber events there, im from bristol in the UK and there is loads of stuff around here. tomorrow theres a cybersecurity convention, and i just go to those and talk to as many people as possible
would 100000000% reccomend getting linkedin too if you havent already
https://learn.microsoft.com/en-us/dotnet/standard/io/file-path-formats microsoft got your back
Ya I recently actually got that
much appreciated 🙏
I’m your countries neighbour lol but ye thank you ill check that out
ah great, definitely check it out, theres loads of events and everyones in the same boat so i wouldnt worry too much or be nervous about it
(also they usually offer free pizza and drinks which is very enticing)
O alr nice
lol thanks again appreciate it
youre good! happy jobhunting :)
POV: CTF
reboot
Did... 5 timnes, even updated TrueNAS
skill issue

fix file permissions and force upgrade
check helm status first tho
do info rooms award points?
I dont think they do
sadge
oh wait they do but only the ones that ask actual questions not the read and complete ones
That is correct, empty “answers” never give you points, only questions that require an answer
It was a kubernetes thing, called in the big dogs to help, Emma. Thanks again @hot cairn !
Gave +1 Rep to @barren spade (current: #2261 - 1)
Fuck you bot
lmao
it kept forcing it to be that, and was group owned by netdata???
so kubectl edit deploy fixes it good enough lol
So long as VPN is good, and able to access the webUI + other apps can talk to it, all that matters 😄
Hell o
Get ready to embark on a delectable adventure with Cocoa Press, the edible 3D chocolate printer that enables sweet personalization like never before. 3D printing your chocolate allows you to create intricate designs without the use of molds including print-in-place gears, edible prototypes, custom branding, and more!

Also @glass nest
What’s good
Got one of my TrueNAS Scale apps back up and working properly, since Emma helped me get it all up 😄
Nice
That would be smart for a bakery
program it to make chocolate bars with a QR code on them
Hi
hello
How's everyone doing
doing good here, music and ☕
Man...... now I wanna watch Kiki's Delivery Service, such an amazing movie
Sooo I'm actually a newbie when it comes to cyber security but I'd like to join the industry later so can anyone suggest some resources if possible and also um a roadmap to entry level jobs in cybersecurity 👀
OWASP Top 10 - 2021 Task 11: I successfully discovered cute cat pictures 
Hello folks,
I am stuck at a certain problem which is regarding XSS, if someone could give me an explanation that would be highly appreciated 🙂
Given the following JavaScript snippet of a page running on HTTPS, explain how a Network adversary could execute an arbitrary payload in the origin of the HTTPS site. You can assume that the site is not sending an HSTS header and the attacker cannot get a valid certificate for the site. Also, explain how this could be addressed (the script_host should still be stored on the client and your solution must not rely on HSTS).
function writeAd() { // getCookie extracts the value belonging to that key var script_host = getCookie('script_host'); var script = document.createElement("script"); script.src = script_host + "/ad.js"; document.body.appendChild(script); } writeAd();
The real question is, is this some of your course work? I’d just be curious what this is for
Yes, this is one of the sample question to prepare for semester exam.
Then there’s some potential ethical concerns with us helping you with this unfortunatetly
That being said, it’s not all that hard
hey
yes heya
can you just say if I am going in the right direction?
What I think is an attacker can host a malicious JS file with the name as ad.js and host it on his own domain and then set the cookie with the url to his domain.
how are you doing
lol you are not wrong. But I would advise you to consult with your classmates or study group rather than here.
quite sleepy
we’re glad to help with these sorta questions but it gets tricky when it’s homework/study material
oh ok if i may ask where are you from
Love the icon in website
Hello chat, mods, and staff
hi hOW YOU KNOW simon and seadris
I know everybody
I live on the planet Earth in the solar system, local group, thank you for asking
lol not quite the same local group as I had in mind, but… potentially
Planet Earth? Don't post my dox 
When is THM going to release certificates?
Never
Hello the wild brath.



