#general

1 messages · Page 466 of 1

karmic geyser
#

Bro started being active in thm

coral phoenix
#

I've been looking at the member list, some real's in here

#

Where is everyone

pearl raven
#

Usually kinda dead after about 7 US.

coral phoenix
#

Ah I see

jagged mirage
#

wait why cant i use emojis here

coral phoenix
#

I bet its popping at 3AM US

#

Like absolutely POPPIN

karmic geyser
karmic geyser
pearl raven
#

lol

coral phoenix
#

In lieu of certs I just put Top 1% THM on my resume, it's worked out very well

karmic geyser
coral phoenix
#

still waiting on THM certs

#

I refuse to use other platforms

karmic geyser
#

me too brath

karmic geyser
crude stump
#

Ooh oh nice

#

For what exactly.

coral phoenix
#

I did all the THM content, bought the OSCP exam (I never did the course) and passed no issue

#

Taking CRTO now, again, just THM

#

This platform has it all

outer rivet
coral phoenix
#

Which THM room teaches how to build AD?

crude stump
lilac urchin
#

Hi
I want to learn more about anomalous network behavior
How is it being detected today? what are the signatures and rules to detect anomalies?

#

Anyone have idea?

crude stump
#

I mean that’s kinda broad but take a look at yara rules

lilac urchin
#

I want to know like for example yara rules, what is the input to the yara rule.

Flow:
Is it a network packet that comes ----> yara rule checks?

I'm most interested on the input that the detection or behavior or pattern check happens on

coarse plover
#

Hey all anyone online available for a quick question about the buffer overflow prep module ?

clear jackal
frail locust
coral phoenix
frail locust
#

Nope they dont even have blue teams tho

#

Which brings to blue team labs but meh

coral phoenix
#

Yeah! TryHackMe number one!

earnest fog
rustic canopy
#

I want to add my opinion. TryHackMe is better than HTB. I came from HTB and now knowing the THM Platform that's really cool!! Especially for Blue Team Aspirants. TryHackMe has SOC Level 1 and Level 2. (Which both those two are completely highly righ in content, actually better than courses of companies like TCM)

#

❤️TryHackMe Forever❤️

earnest fog
rustic canopy
#

Yeah, it's a true fact. I think TryHackMe offers a lot of content all-in-one at the same price than HTB ’academy’ and ’app’.
You'r right bro

#

(I just failed in Written Grammar. Using cell XD)

#

that's why it's edited

#

: )

rapid merlin
#

hello world

neon merlin
#

If we're doing tryhackme vs HTB, I like tryhackme's website better but HTBs VPN works for me and THM's doesn't. So using the attackbox makes everything slower.

#

I think this might be a UDP vs TCP thing? HTB has the option to use a TCP config for VPN. THM does not.

coral phoenix
#

Interesting!

neon merlin
#

Also I like how HTB have set up their vulnerable website tasks. You don't need to connect to their VPN to access them. They have public IPs. While with THM I need to spawn attackbox and open firefox on attackbox in a VM that I'm running in Firefox and it's all very meta.

gray sonnet
#

THM has those too

#

Just not in the older rooms

fading perch
#

apache, nginx or openlitespeed?

rapid merlin
#

any coupon codes for premium?

earnest fog
earnest fog
simple valve
earnest fog
#

used nginx before, loved it. switched to ols last year.

neon merlin
#

Although while I can connect to HTB's TCP VPN I can't ping their targets today so can't actually do anything SureBruh

sick lance
neon merlin
#

Learned more about computers in a month than I have in my entire life with THM tho

#

And I started using computers in Windows 3.1 days.

gray sonnet
#

Morning everyone

warm grotto
#

G'day.

finite rock
neon merlin
#

How long would you say you need to be learning to do some of the easy practice machines like fowsniff? I'm halfway through complete beginner and Jr Pen tester.

warm grotto
#

I'd say if you've got an idea on how everything works, then you can roll up your sleeves and give'r.

chilly veldt
#

Morning

south egret
wooden totem
#

It appears that my body has worse virus protection than my pc lol

vapid spear
#

Good Morning Everyone

warm grotto
#

G'day.

steady pewter
#

good morning everyone..sure haven't been here in..2 months?

rapid merlin
#

Morning

#

☺️

remote swallow
rapid merlin
#

How is everyone ?

remote swallow
#

Good , WBU

tough widget
#

So today we find out which ten are selected for personalized support?

void zodiac
#

I feel like my government is testing what software and tools people use to bypass blocked sites. Blocked Instagram, blocked YouTube, blocked Discord yesterday

And for example, before I could access sites by bypassing DPI. Now nobody can

Do you think the government could do it just to gain information on what people do to bypass and how they react?

remote swallow
void zodiac
remote swallow
#

It's about time before every government will adopt the same habbit and it will become a norm

void zodiac
#

The hilarious thing that Discord was used by the military for communication 😶 and ofc they have troubles now

I will never understand this logic

remote swallow
coral phoenix
#

I learned about TOR on MR robot episode 1!

sick lance
#

Obvious troll, is obvious.

void zodiac
remote swallow
sick lance
#

Can we please leave politics and such out this server.

remote swallow
sick lance
remote swallow
sick lance
#

The subject as a while has a blanket ban.

remote swallow
void zodiac
#

I didn't even mention the county or anything, just complaining about useless domain blocking

coral phoenix
#

Why am i a troll? Okay fair, I was.

sick lance
void zodiac
#

And just suggested what it is done for

coral phoenix
#

Ohhhh

#

Scrubz is the fun police I keep hearing about

sick lance
coral phoenix
#

Well, im certainly in the more professional discords. I wouldn't claim Hack The Box is one of them.

arctic cradle
#

Scrubz is my father and if you have issues with him, you have issues with me

coral phoenix
#

Regardless, you are a bit infamous

arctic cradle
sick lance
#

No point lying about it... kekw

coral phoenix
#

I can see mutual servers too

#

I am not sure what you mean

#

We call Hack The Box the 'cesspit' for a reason

sick lance
#

Now you do.

coral phoenix
#

Well, I am not trying to start beef with you - just a friendly conversation between security professionals

coral phoenix
#

To be fair, a ban from here is a rite of passage, it kinda means you've progressed in your infosec journey

#

It's a neat server though

#

Cool people

sick lance
#

You're not banned though, unless you're on an alt.

coral phoenix
#

I am not an alt, Brath is my handle

#

Out of curiosity why is there such a schism between this server and HTB?

sick lance
#

¯_(ツ)_/¯

#

People have to argue about something.

remote swallow
coral phoenix
#

No kidding

remote swallow
#

Even though i won't consider them a competition to each other

coral phoenix
#

Hack The Box is a stomping ground for highly intelligent hooliganry and at the same time absolute skids. I generally recommend new players in the cybersec world start here.

visual lake
#

Hi

#

hello brath

remote swallow
#

I would personally suggest newbies to start with THM and then move to HTB because HTB won't serve you everything on plate like THM does and some people might get freaked out cuz of that

coral phoenix
coral phoenix
#

Then you can move to real platforms like Vulnlabs after a few certs

remote swallow
#

I would perfer to play Networks instead of CTF's at that point

coral phoenix
#

I don't play CTF's just due to the nature of players using chatbots en masse

#

I used to

#

Anyways, I did indeed come here to see what's up and LARP as a skid. I'll excuse myself - keep up the good work THM.

hard dawn
#

I'm moving on to HTB after THM

#

I personally like the style of "here's what you need to know, go solve it yourself" of HTB more than THM

#

I felt like I learned more and accomplished more

#

Even though I'm banging my head against the table

#

But THM is an absolutely great structured learning path if you're lost

chilly veldt
pliant cairn
#

i got 3 meeting now and have to fit in my doc appointment in bw

#

im so exhausted

frail locust
twin ridgeBOT
#

Gave +1 Rep to @earnest fog (current: #2261 - 1)

wooden totem
#

omfg I almost had a heart attack. I was just chillin then I noticed breathing noises like loud inhales and exhales from unknown location and they stopped when when I went closer. It was just random chance and the sound was from outside construction whatever and the walls made the sound muffled and it sounded exactly like breathing 😭

#

for context im home alone, kinda dark and im tired

rapid merlin
#

Throw glitter in the general direction of the noise and whatever’s hiding will appear

#

😂

cinder spindle
#

Help me please

#

Someone

#

I came to this server because I need help my account got accused of something I didn't do.

#

Pls help me

#

Anyone

neon merlin
#

which account? SureBruh

cinder spindle
#

My account

#

PLZ help

#

PLZ

novel ingot
cinder spindle
#

CAN WE TALK IN DMS I CANT SEND ANY PROOF HERE

#

Idk

#

All I know is that

#

My discord might get banned

novel ingot
#

proof of what ? no explain the context here

cinder spindle
#

Within the 12 hours

#

Ok so

#

" Recently, I received a message from a friend with an invitation link for a Discord server. I scanned the QR code to enter the server, but it turned out to be a hack. I immediately changed my password to log the hacker out of my account. However, during the hack, my account was used to report random friends in my friend list and people on my servers, including you"

My friend sent me this

neon merlin
#

If it's one of those "I accidentally reported you and you'll get banned soon unless you do xyz" those are scams dude

cinder spindle
#

Hug

#

Huh

#

IDK.

frozen island
#

Is the website just not working for me? When I try to submit something it doesn’t work and takes a few minutes to submit

cinder spindle
#

YEAH IT HAPPENS TO ME TO.

wooden totem
#

avoid QR codes like a plague

neon merlin
#

What do you think this discord can do? You need help from discord support.

neon merlin
#

I don't think anyone here works at discord

novel ingot
#

I don't understand how can they get you banned ?

cinder spindle
novel ingot
#

just send a message to discord support and explain calmly the situation

neon merlin
#

They message you saying "someone hacked me and reported all your friends and you, go to this totally real website and enter your discord details to solve this".

cinder spindle
#

My friend told me to add someone called mwp_2001 apparently they work in discord but

wooden totem
cinder spindle
#

they are not accepting my request

neon merlin
#

And then after you have entered your details into the totally real website they phished your credentials

naive violet
neon merlin
#

2024 and people are still falling for this.

novel ingot
#

yep just change all your passwords

naive violet
cinder spindle
wooden totem
naive violet
cinder spindle
#

dawg.

neon merlin
#

Read "Discord staff impersonation"

#

"Discord Staff will never directly message users on the app for support or account-related inquiries. If someone claiming to be staff asks for personal information, payment, or changes to your login credentials, we recommend that you do not engage further. "

cinder spindle
#

Bro thanks to ninja I can help now 😭😭

neon merlin
#

Hacking in the movies: "I just sudo'd into the backdoor and ran a trace on his kilobytes and I'm in"
Hacking IRL: "Hello I'm the password inspector"

karmic geyser
karmic geyser
silver sky
#

If someone wants to play with petrol, they can 😂

wooden totem
#

Could've make it sound a bit more serious than just recommendation

silver sky
#

I benchpress naughty students

#

Pocket mask indeed! I also have a trauma kit and mini AED on my rear on my belt

tranquil garnet
#

Yo quick question. Can TryHackMe certs substitute those industrial certs like CompTIA cuz really wanting to get a career in cybersecurity but getting those expensive certs seem like a rip off

shut hawk
#

No they can't

south egret
#

No, but putting it in ur resume does you no harm

shut hawk
#

You don't need to have certs to get a role in cyber, but they can help a lot

#

And the TIA certs are pretty cheaply priced, compared to others

arctic cradle
tranquil garnet
#

If you don't have certs most of the time they will ignore you...

#

But planning to take Security+ and CySa at the same time. You think this one is alright for someone with no experiences. CySa might be overkill for someone with no formal work experience but if I am trying to differentiate myself from the rest of the applicants I guess its the right thing? What you guys think?

neon merlin
#

I saw someone say they put that they completed Bandit on their resume. I am not sure if they were genuine or trolling. (Disclaimer: I am an education major not a cyber security major)

sick lance
#

Don't know why someone would troll on their resume..

@night prairie kekw

neon merlin
#

I once made a lua script to change the LEDs on an RC car controller to a different colour and uploaded it to github now I can officially say I contribute to opensource projects in my spare time. SureBruh

shut hawk
sick lance
#

Creating something to do something, is much better than "I've completed X,Y,Z on platform X,Y,Z".

eager marsh
neon merlin
#

ha ha, this comes from another discord where we were half joking about resume padding putting our hobbies into corpo speak

sick lance
eager marsh
#

Certifications are one such example

forest crater
sick lance
neon merlin
#

Like "In my spare time I contribute to the latest in opensource bleeding edge 2.4ghz LoRa communications"
Read: I fly drones and am part of the ELRS discord.

eager marsh
sick lance
eager marsh
#

On….a certification exam?

sick lance
#

If you're going to debate, don't ignore what I say to get your point across.

eager marsh
#

i think that proves my point even more

sick lance
#

Being ignorant? It does not.

eager marsh
sick lance
#

My reply was a reply to this.

I saw someone say they put that they completed Bandit on their resume. I am not sure if they were genuine or trolling. (Disclaimer: I am an education major not a cyber security major)

eager marsh
#

Maybe clarify what you mean then

eager marsh
silk star
eager marsh
#

But you have to know how to filter the trash from the gold

#

This course is pretty good sure but I would recomend taking some other supplemental material such as overthewire as well

#

If you need additional resources, please don’t hesitate to dm me

hazy sundial
#

dude i haven't hacked in like 6 months and i forgot everythingggg

grim sparrowBOT
silk star
twin ridgeBOT
#

Gave +1 Rep to @eager marsh (current: #1497 - 2)

hardy mica
#

Hi guys how are you ?

#

Any good vpn to suggest ?

sick lance
neon merlin
#

I like 12vpx

hardy mica
eager marsh
hardy mica
#

So nothing malicious

eager marsh
#

Very good option

#

But if you’re looking for a good enterprise option Bitdefender or Nord should give you what you need

hardy mica
#

I am not looking for the most secure "black hood bad guy hacker darknet God" . Just something good for work

twin ridgeBOT
#

Gave +1 Rep to @eager marsh (current: #1127 - 3)

eager marsh
#

Hey it’s no problem happy to help

hardy mica
#

Talking about work i can spend more to "look more professional"

#

In my last work we used to use Openzvpn , given by the company

sick lance
#

openzpn, or OpenVPN?

hardy mica
#

Working in remote i can choice the One i prefer

neon merlin
#

I'm not sure if we're talking about the VPN app here or the VPN provider

eager marsh
#

They offer an access server at arround 7 dollars per connection per month

chilly veldt
#

Just setup own local VPN

eager marsh
#

As well as a client

hardy mica
#

So about 70 dollars per month

eager marsh
eager marsh
#

It can get pretty pricey

hardy mica
neon merlin
eager marsh
#

It’s just the one that you can host on a machine

neon merlin
#

I pay $10 / month and get over 50 in different countries

chilly veldt
hardy mica
#

hmm ill start with wireGuard then starting looking around

chilly veldt
#

don't need to use an external company

sick lance
#

I use Malware-Bytes.

chilly veldt
#

yeah, I am also talking enterprise 😄

hardy mica
#

It's remote work , so they give you the option to set up the vpn you like the most

sick lance
#

Not for personal use though, you'll have that from work.

hardy mica
chilly veldt
#

if it's personal use, then mullvad vpn is my goto

hardy mica
#

it was a very good option tbh

hardy mica
twin ridgeBOT
#

Gave +1 Rep to @chilly veldt (current: #7 - 886)

chilly veldt
#

we are finally in our "fine writing" period of our report, reading it through and deciding what needs to be rewritten/deleted

severe flame
#

Is this Blue or Red team report?

ashen parrot
#

Hi, im searching a team for do the hack the boo, i have some expirience in cybersecurity and hacking.

sick lance
rapid merlin
#

Is anyone interested in an amazing programming community that supports all languages and project types?! Check my bio for invite!

sick lance
rapid merlin
#

Ok

#

Sorry

#

Hows everyone

wooden totem
rapid merlin
#

Probably not

pearl raven
clear jackal
#

To strangers on the internet? Probably more than real life

arctic cradle
pearl raven
#

In person, it's always "I'm doing well how about you?"

rapid merlin
rapid merlin
#

😂

pearl raven
#

lol that's fair.

clear jackal
pearl raven
#

Sure seems that way.

arctic cradle
# rapid merlin Get some rest :)

I just lied for solid 40 minutes but it seems like I'd need a nap, though I'd do a few tasks at THM before giving myself a powernap Flowergers

clear jackal
#

tbf, everyone has problems. I can see why it's seen as rude

rapid merlin
rapid merlin
#

:p

arctic cradle
#

it bugs me if I don't study first, it's gonna be on my mind like a triggered OCD that I have to take care of before fully resting my mind

rapid merlin
#

Fair

pearl raven
neon merlin
#

Do the time it takes to complete a room estimations take into account how god damn slow it is to do anything on attackbox NotLikeThis

#

Oh you want to open firefox? Wait several minutes

south egret
#

just create ur own attack box

neon merlin
#

can't get on the tryhackme vpn

languid forge
#

hey i got a question, i am still new to all of this and i just completed the learning roadmap and did the career quiz, should i learn and study something else before heading into the Jr Penetration Tester roadmap or can i jump and learn on the way to see where i lack certian things ?

neon merlin
#

Like typing has lag NotLikeThis

rapid merlin
#

Why doesnt that work?

neon merlin
#

I'm running linux and have all the tools but since these websites don't have public IPs I can't get at them with my machine

neon merlin
#

I can't

languid forge
#

@rapid merlinthanks blobheart

rapid merlin
neon merlin
#

UDP openvpn blocked on my network

rapid merlin
#

Are you a subscriber?

neon merlin
#

yes

rapid merlin
#

Hmm for me the attackbox works fine, so thats strange

neon merlin
#

it works but it's incredibly slow

#

Like if I type something I'm waiting for it to actually show up

#

The labs where you have to load up a website are sheer torture

#

Also the constant freezing

south egret
#

i only ever used the thm attack box if i want to redo something real quick

neon merlin
#

apparently it just crashed while we were speaking and I'm having to respawn it

south egret
#

lol

neon merlin
#

All I want to do is go to this website to see the practical NotLikeThis

rapid merlin
#

Damn... Where are you located? As the Attackbox-servers are in GB afaik

neon merlin
#

Why not give them public IPs?

#

Asia

rapid merlin
#

And sometimes even breached automaticly

sick lance
#

Sub attackboxes have Public ip's

rapid merlin
#

Zcorp is talking about the target machines, right?

neon merlin
#

yes

sick lance
#

Which country are you in?

tranquil garnet
#

Yo if I skip Security+ and go straight on CySa. Would it be okay? Cause I looked at Security+ it seems that I know most of the things covered in it and I'm confident of my computer skills and would like to pursue CySa despite having no work experience.

neon merlin
#

Macao at the mo

sick lance
#

Ah, China.

tranquil garnet
rapid merlin
#

Scrubz means, you can ask it in that channel ;)

neon merlin
rapid merlin
#

Now im curious

neon merlin
#

Some people consider Macao and HK to be countries in their own right

rapid merlin
#

Ahhh

spring temple
#

Is something wrong with accessing machines since yesterday ?

spring temple
#

Ok then its a me issue

sick lance
spring temple
#

Cant split screen the Autopsy room

vestal phoenix
spring temple
#

I cant split screen the Autopsy room but can connect to it through AttackBox, weird

hushed wren
#

Hey hello foks

#

You guys new about KIA car hacking

tranquil garnet
hushed wren
#

No, it works on all the KIA cars made after 2013.

tranquil garnet
gray sonnet
neon merlin
#

Is that the one where you just use something to turn the key barrel that isn't the key?

#

Not much of a hack

normal rose
boreal scarab
#

@gray sonnet

normal rose
#

as far as I know you just need burpsuit on your phone

gray sonnet
rapid merlin
#

😂

neon merlin
tranquil garnet
normal rose
tranquil garnet
#

I find it hard to believe especially on the higher trims

boreal scarab
#

A look into @gray sonnet and I's DM's

rapid merlin
tranquil garnet
normal rose
#

here is a video from david bombal

neon merlin
#

Just use the hammer hack it's quicker

normal rose
#

well i actually shorted an old Fita Tempra 15 years ago 😄

tranquil garnet
#

Oh KIA fixed it

rapid merlin
#

Or?

tranquil garnet
normal rose
#

mmh probably via OTA.

neon merlin
rapid merlin
#

Ohhh wait it was not a problem in the cars

neon merlin
#

So when police wrote out a ticket to a car without a license plate they wrote "NO TAGS". And he got them all.

rapid merlin
#

But in the KIA website

neon merlin
#

I dunno if this one is real though cause how did someone not noticed this issue?

tranquil garnet
#

KIA is a big brand so they actually have the right connections to do damage control, cause without it then they probably went out of business a long time ago.

normal rose
#

mmh well I am still watching the video from david bombal. But as far as i know it was an issue with the dealsership website.

rapid merlin
#

Captchas give me sooo much anxiety

#

I had to do like 6

#

Select all pictures with motorcycles

#

DO I HAVE TO SELECT THE SQUARE WITH 2 PIXEL MOTORCYCLE IN IT?

normal rose
#

mmh maybe ask ChatGPT 😄

candid light
#

captchas can get crazy insistent if you have a vpn on

rapid merlin
candid light
#

i suggest doing the voice one

normal rose
#

ok so the vulnerability for the KIA hack was basically a poor programmed website. They were able to do an authentication bypass because the dealership API was running besides the enduser API where car owners would lock in to configure the car software remotely.

rapid merlin
#

True

normal rose
#

I guess the guys from Kia should have done the introduction to webhacking on tryhackme.com 😄

#

cause it is explained there 😄

rapid merlin
#

😂

celest valve
shut hawk
#

GPT is cool, it has some good use cases

rapid merlin
#

And some bad ones too

#

:)

shut hawk
#

as with all things

shut knot
#

Anyone else got issues with AttackBox opening

#

Oh no, an error occurred while starting VM: PARSING_ERROR

#

kali linux work tho

south egret
eager marsh
eager marsh
#

You can usually reset the attack box by terminating the active attack box

shut knot
#

it wont even start up

eager marsh
#

And then restarting it by clicking the Start Attackbox button

shut knot
#

there is no active box

eager marsh
#

They should be able to help you out

shut knot
#

👍

eager marsh
rapid merlin
sharp citrusBOT
#

@shut knot

TryHackMe's Email

TryHackMe's support email address.

rapid merlin
#

Hmm

chilly veldt
#

Report is finished and submitted

eager marsh
rapid merlin
#

Bye

rancid zinc
#

anyone there

chilly veldt
rancid zinc
twin ridgeBOT
#

Gave +1 Rep to @chilly veldt (current: #7 - 887)

sick lance
boreal scarab
keen rose
#

what are some great rooms for people that are currently studying Security+

eager marsh
#

Those should give you a good starting point in the more practical aspects of the Security+

twin ridgeBOT
#

Gave +1 Rep to @eager marsh (current: #916 - 4)

eager marsh
#

No problem happy to help

teal wharf
#

guys how do people create drawings like these in terminal , is there a tool or it is just manual

sick lance
#

Probably a tool.

#

Or a website.

teal wharf
sick lance
teal wharf
twin ridgeBOT
#

Gave +1 Rep to @shut hawk (current: #14 - 571)

rapid merlin
#

It looks it, I wish it was on the website 😎copy and paste

sick lance
empty moss
#

If anyone can help with this question I'd appreciate it. Don't want to get banned by breaking the rules lol.

sick lance
empty moss
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #1 - 2852)

sick lance
empty moss
sick lance
rapid merlin
#

I love how they added the outtake to the Cisco video on the networking course

#

Adds humour

lilac urchin
#

I have a question

#

I want to train a deep reinforcement learning agent

viscid hill
#

Is there a way i can get in contact with admin or something, tryhackme email systems are a bit bugged

#

i submitted a writeup but i got an email that I think was meant for the owner of the room

boreal scarab
viscid hill
#

Doesn't leak any sensitive info don't worry, but it was definitely for the owner

boreal scarab
sick lance
#

Tim isn't support.

boreal scarab
#

Noooooooo really?

#

I didn't know that, thanks Scrubz

sick lance
#

You're being sarcastic and it's not needed.

#

They'll most likely tell you to email support, but still pinged one just incase.

#

That makes it look like you pinged a member from support.

sick lance
lilac urchin
sick lance
#

Please stop posting walls of text.

#

If you want to send long messages, do so in a file.

lilac urchin
#

oh ok

#

but I want to understand how crowdstrike falcon works currently

inland birch
#

Whats the main reason of this server?

sick lance
inland birch
#

im just tryna grab a lil something a boot a lil something

inland birch
#

dm me

sick lance
#

Er, no thanks.

#

You can state in here.

inland birch
#

just have a question

lilac urchin
#

How does intrusion detection systems work?

sick lance
sick lance
lilac urchin
#

I need specifics

chilly veldt
#

I intrude, it detect, SOC employee respond

clear jackal
eager marsh
chilly veldt
eager marsh
#

Ordinarily these intrusion detection systems don’t do much other than alert you but there’s also intrusion prevention systems

#

These can actually prevent an intrusion

eager marsh
#

You can look at that for more info : )

lilac urchin
lilac urchin
thorn plover
#

@shadow isle hello man im doing one of your room and i met answer problem.

The room name : Nmap Basic Port Scans

Problem :

When its time to enter what port was discovered in the new scan im pretty sure its the right answer but nop. So i tried to enter each port manually but same 😦 , have you solutions maybe ?

eager marsh
#

You’ll have your work cut out for you

#

Crowdstrike is one such example

lilac urchin
eager marsh
#

The main reason for breaches is human error

lilac urchin
eager marsh
lilac urchin
eager marsh
#

Such as clicking on links they shouldn’t. Tailgating, Circumvention of Security controls via manipulation. I could go on but most breaches and gaps often have an origin in one person or a group of people fucking up.

eager marsh
lilac urchin
lilac urchin
muted nebula
#

@rough gorge guess it'll be friday...

rough gorge
eager marsh
lilac urchin
eager marsh
#

Yes!

lilac urchin
# eager marsh Yes!

In terms of code vulnerabilities, wouldn't it happen at CI/CD level. Aren't there tools that do scanning?

eager marsh
lilac urchin
#

Like SonarQube

eager marsh
#

Yeah. Why do you think CVEs are so plentiful

#

Sometimes these tools won’t catch everything

lilac urchin
#

any books on Static code analysis?

eager marsh
#

This one’s pretty good

lilac urchin
#

Do you see any opportunities here in automation

solar flume
#

How to uninstall Kali linux From my bootable leptop?

#

Please 🙏

eager marsh
# solar flume How to uninstall Kali linux From my bootable leptop?
eager marsh
solar flume
#

Bro I want to uninstall

#

Kali

sick lance
#

Install a new os?

solar flume
solar flume
eager marsh
# solar flume

In that case just make a bootable USB and set your bios to boot from it

solar flume
#

I want to remove it fully

lilac urchin
eager marsh
solar flume
#

Please guide me how can I uninstall

#

Please 🙏

eager marsh
solar flume
#

Kali lunix

eager marsh
#

And what do you want to install to replace it?

solar flume
#

And I want to uninstall from my leptop

eager marsh
#

Because you have to pick an OS to replace it

solar flume
#

Again

eager marsh
#

Follow these steps

solar flume
#

Ok

#

U mean I have to clean my bootable USB then install windows?

eager marsh
eager marsh
solar flume
#

So I have to formate my bootable USB?

eager marsh
#

Correct

#

Do not format the laptop itself

solar flume
#

windows is not working in me

eager marsh
#

What do you mean?

solar flume
#

Just Kali's is opening up inside my leptop

eager marsh
#

Because you haven’t made the bootable USB for windows yet

solar flume
#

So I have to make a bootable USB for windows now?

eager marsh
#

Correct

solar flume
#

And format Kali from the botable USB?

#

Right?

eager marsh
#

Yes

#

Format the Kali installation usb

#

NOT the hard drive with Kali on it

rapid merlin
#

.

oak skiff
#

I hope all my florida cyber nerds are staying safe ❤️

rapid merlin
#

Hm seems to be a few “new” accounts trying to add me, not suspicious at all

solar flume
#

Can u please dm me

#

🙏🙏

oak skiff
#

not totally sure though

solar flume
#

@eager marsh please 🙏🥺

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @oak skiff (current: #459 - 11)

clear jackal
oak river
#

Can someone reccomend a good router pls?

#

Is Linksys Hydra Pro 6 good?

clear jackal
oak river
#

Bulgaria, 200$

#

max

#

Requirements - Security primarily

#

I just want a better router

#

I have a tp link

#

Archer

#

Some S-box (Derogatory)

clear jackal
#

If you have $200, it may be better to purchase a Dell optiplex and put OPNSense on it

oak river
#

Huh

#

I have a raspberry pi

#

3b+

#

But it seems to run only on amd64

#

Should I just go for another Chinesium like Tp-Link?

#

Maybe an Asus is a good choice\

clear jackal
#

That's what I am saying

naive violet
#

Also wifi is like a whole other thing

oak river
#

But wifi for houuuuuse

#

😭

clear jackal
#

Do you have a wifi router currently? Put it in bridge mode if you build your own

oak river
#

I have, its what gives me internet

#

Router in a box basically

#

This seems like a good choice if I wont build

#

Or?

craggy egret
#

How do i refresh my discord level?

#

I got into OMNI but it didn't update in discord

#

Nvm i figured it out

rapid merlin
#

So I started gaming but now I’m on phone games

#

Anyone played Evony?

torpid furnace
#

@hollow zenith

rapid merlin
#

I read that as banana, I need my glasses

hollow zenith
#

anything i can help with ?

void zodiac
#

THM really helps me with uni, since it covers Linux

One year helped me with using hashcat and installing verification keys for documents

And now I can run the simplistic webserver with my site for uni

boreal scarab
boreal scarab
rapid merlin
#

I’ve not seen any ads

#

I used to play pc but I quit

boreal scarab
torpid furnace
hollow zenith
#

hmmmm

#

can you specify the place ?

spark tundra
#

just a quick question, I vaguely remember connecting to the attack box for OpenVPN but I know there is a second step involving a remote desktop connection. any help with that or a source

torpid furnace
hollow zenith
#

the 0x0face

torpid furnace
#

do u see 0xballs 😂

hollow zenith
#

rank 11

#

cool

#

i am very busy with college, that is why i don't have much time to play CTFs

torpid furnace
hollow zenith
#

they even added rev eng challenges

#

i don't know anything about it so far

#

😔

torpid furnace
#

and the web challenge discover is so weird

#

it asks about the numbers 12345 on the secret dir

hollow zenith
#

i am not complaining about the level of their challenges

#

my problem is with my current knowledge level

torpid furnace
#

also kinda annoying all their updates are in arabic

#

as were speaking i completed another room

hollow zenith
#

😎

#

you can cook

torpid furnace
#

hahaha

#

"What is the number "really ?
70 this one

hollow zenith
#

good for you

#

keep shining

rapid merlin
sand trench
#

meep moops time for the sleep sloops to the beep boops

boreal scarab
chilly veldt
#

I might do a jamming session in VC tomorrow if people are interested

chilly veldt
boreal scarab
chilly veldt
#

I need to play for a week

#

there should be a lot to choose between

#

also currently downloading a playlist that is 20 hours long

slender scaffold
#

O_o

torpid furnace
#

guys how can i decode this
📧💖💇💱📧💖💈💧📧💖💈💐📧💖💈💓📧💖💈💠📧💖💈💆📧💖💈💐📧💖💈💧📧💖💈💢📧💖💈💓📧💖💈💡📧💖💈💩📧💖💇💲📧💖💇💞📧💖💈👼📧💖💇💕📧💖💇💥📧💖💈💍📧💖💈💣📧💖💈💡📧💖💈💓📧💖💈💍📧💖💈💔📧💖💈💃📧💖💇💘📧💖💇💘📧💖💈💍📧💖💇💵📧💖💈💞📧💖💇💥📧💖💈💫

#

never done emoji decode or wtv

rapid merlin
#

Hm

#

The first bit says if you want to E date you gotta cut your hair

#

Then you’ll get paid

boreal scarab
#

Lets see if ChatGPT o1 can decode

boreal scarab
#

(Generated by AI)

rapid merlin
#

Oh nice

atomic aurora
#

do i still need a universal forwarder if i want to digest my local sysmon logs into splunk? I have my splunk instance running on the same local machine

muted rock
#

Hi

slender scaffold
#

o/

safe shoal
#

Hi
I have the error in my project.

clear jackal
quaint jolt
#

can someone hack a tiktok acc for me

slender scaffold
#

@mossy river

#

Oh wait maybe they gone already. Sorry

mossy river
rapid merlin
#

Hi

rapid merlin
#

I just almost dropped my phone on my face again

boreal scarab
#

@slender scaffold

slender scaffold
rapid merlin
#

Two types of puppy

boreal scarab
slender scaffold
#

I need a drink

#

I’m stressed out haha

austere bronze
#

Hey guys, are there any penetration testers here?

teal wharf
#

or some hot tea if u feeling 🥶

boreal scarab
#

I made broccoli cheddar soup, and poured myself a glass of wine

#

@blazing granite you can be in this convo too lol

slender scaffold
slender scaffold
#

That sounds like some advanced soup right there

boreal scarab
boreal scarab
slender scaffold
crude stump
austere bronze
# crude stump Ask your question

I have been a BugBounty Hunter for two years, and I have passed many different learning stages, such as Linux, networks, programming languages, offensive security, etc., and I am really struggling to obtain the first vulnerability on BugBounty platforms.

crude stump
#

Does not play

crude stump
#

Tbh I don’t touch bug bounty’s cus it’s scary so I don’t really know

austere bronze
# crude stump Hm

Is there anyone who has gone through the same experience and can give me some advice to help me? I would really appreciate it 😔

boreal scarab
rapid merlin
boreal scarab
rapid merlin
#

I don’t have anything yummy like that

#

I’m studying too because I can’t sleep

rapid merlin
#

I’m gonna have mushroom soup instead

coarse plover
#

its almost that time of year !

rapid merlin
#

What time

coarse plover
#

To celebrate the miracle of Hanukkah !

neon merlin
#

When I look at other learning platforms that aren't tryhackme 💸

#

$1649 for Offsec Pen200 and that's the cheatpest package

rapid merlin
#

That’s literally what you said in that gif but that’s not what I read

boreal scarab
coarse plover
#

The awkwardness that comes in the office when your diversity hire turns out to be a pro Israel republican.

rapid merlin
#

👀

high mulch
#

funnily enough, my rainbow six siege nickname used to be cyber monkee

cosmic pendant
#

hi

coarse plover
#

hello

#

Toaster what did you get your PHD in if you dont mind me asking ? Im looking at grad school here next year

crude stump
#

Critical infrastructure

#

Pretty sure

#

“Kenith-Can you give me the zuck”

coarse plover
#

Ah, any advice for a 29 year old who pivoting in to the industry late ? I already have a degree but it was in business. Im finishing up my CS degree at the bachelor level this year

coarse plover
coarse plover
#

ah yes that is my far removed cousin. I had the same nickname growing up

crude stump
#

I ain’t in the industry yet

#

I want to be tho

#

Sooo

coarse plover
#

Ah I worked in IB for a bit fing hate excel spreadsheets

crude stump
coarse plover
#

i see the death in her eyes

crude stump
#

IB means what again?

coarse plover
#

investment banking

crude stump
#

Oh

coarse plover
#

its not glamours or high paying unless you go to an ivy league lol your just a VP's bitch

pearl raven
#

lol spreadsheets... excel black belt here 😦

crude stump
#

Spreadsheet competitions

#

Imagine

coarse plover
#

when your only view is a spreadsheet for a couple years it drains the soul

crude stump
#

Sounds soul draining

coarse plover
#

atleast I know how to load shellcode into a vbs script now lol

#

trying to focus on this buffer overflow prep lab but my adhd is kicking in with the repetitve part where you have to trigger 10 overflows in a row doing the exact same thing lol

#

What certs would you suggest are most valuable currently ?

crude stump
#

Would really depend on the type of field you go into and also what the job is asking for

coarse plover
#

I mean offsec would be ideal. honestly I want to just work remote somewhere in a ski town and red team so i can mountain bike and ski. I dont want to do anything crazy with my career I just love CS and cyber. Im hoping to get in grad school to study either Information Science with a telelcommunications focus so I have a specialized understanding in networking. Then I plan to get the OSCP and CSIS. I really just enjoy being a student and playing sports

#

*either IS with a concentration in telecoms or CS

#

East Coast ? Whys location matter everything is virtual in this industry

#

yeah

rapid merlin
#

What is it for uk

#

👀

neon merlin
#

Are there any certs that don't cost $1000 ea?

rapid merlin
#

Defence

#

Blueyyyy

rapid merlin
#

Sadly they all cost a toe

neon merlin
#

Why are they so expensive?

rapid merlin
#

The money you put in for certs is nothing compared to what they get paid

wooden totem
high mulch
#

what role you want in blue team?

#

blue team is sorta... broad.

neon merlin
#

My cert to teach English was like $19 pepega

rapid merlin
#

Sorry what

rapid merlin
neon merlin
#

offensive security got a pretty good industry going, they create the problem and then sell the solution to it. Like if a window fitter went around throwing bricks through windows. kekw

wooden totem
#

Then you're the one throwing bricks

rapid merlin
high mulch
rapid merlin
high mulch
rapid merlin
high mulch
#

💀

neon merlin
#

I feel like there are probably more blue team jobs than red team. Would that be true?

high mulch
neon merlin
#

Cause a company always needs someone in hourse to defend, but only needs to hire a pen tester rarely.

rapid merlin
neon merlin
#

Like I don't think a company will pay you a 9-5 salary to sit in the office and constantly try to hack them right?

wooden totem
#

Aw nahhh what is EXP-401 cost... man

neon merlin
#

When I look at the requirements for cyber jobs it looks like someone threw a bunch of scrabble tiles in the air and wrote down what they landed on.

rapid merlin
#

Facts

wooden totem
neon merlin
#

Hey I looked up the website

clear jackal
neon merlin
#

Doesn't everyone talk crap on their resume?

clear jackal
#

No, it should be a reflection of your actual skillset

high mulch
#

I geniuenly put what I used to do or do

neon merlin
#

The corpo speak has got so out of hand that you need to adopt the same corpo speak.

clear jackal
#

Do you have examples?

wooden totem
neon merlin
wooden totem
#

Yeah just dont do what I said

clear jackal
neon merlin
#

I think these are two different things. I don't lie on my resume. But I make everything I do sound as amazing and technical as possible.

clear jackal
#

Meaning Position X followed by 3 bullets of your "greatest hits" at that role

neon merlin
#

I mean on your cover letter and personal intro

clear jackal
#

A cover letter is a separate document. Tbh, I don't like paragraphs at the top of resumes

high mulch
#

technical custodian = janitor

clear jackal
#

Other mentors disagree in some cases, but that's my personal opinion

#

Your resume is your elevator pitch in paper form

#

It needs to grasp the attention of the reviewer and paragraphs are not that

neon merlin
#

Different industries maybe, I've never had issues with paragraphs. But not many people apply to the roles I apply for.

#

Usually we supply a resume, cover letter and a self introduction video.

clear jackal
neon merlin
# high mulch technical custodian = janitor

Dedicated facilities maintenance professional with expertise in the implementation of cleaning protocols, sanitation standards, and environmental health practices to ensure optimal cleanliness and safety in diverse settings.

#

"I mop up kids puke"

clear jackal
#

I am talking about STEM resumes, as we're on a STEM oriented discord. Non-STEM resumes are different

high mulch
neon merlin
#

"Sandwich engineer"

#

That one was a joke but Subway legit call their staff "Sandwich artists"

#

I actually wonder what it's like for HR now in the days of ChatGPT.

#

I've never needed to send out a resume for the past several years so the last time I did it was before ChatGPT was invented.

rapid merlin
neon merlin
#

I bet the Fiverr resume writing industry has been destroyed.

rapid merlin
neon merlin
#

What invisible keywords should you put on your cyber role resume to not get filtered out by the bots tho? SureBruh

coarse plover
#

Mr. Robot, blackhat, phase 1 etc

neon merlin
#

I heard when you send your resume it's not actually looked at until a bot decides someone should look at it.

neon merlin
high mulch
neon merlin
#

I should probably get round to making a linkedin profile

clear jackal
coarse plover
#

put your profile pic as an unapologetic woman. cut out a picture from victora secrets and make it your profile pic. based men will interview you on the spot.

clear jackal
#

Pictures should not go on a resume

coarse plover
#

unless your super hot

rapid merlin
clear jackal
#

This conversation is better suited for #cyber-and-careers anyway if you're looking for actual assistance

neon merlin
#

Stuff that in the west you absoluetely shouldn't do

#

marriage status etc

grim sparrowBOT
slender scaffold
coarse plover
#

i dont click nuthin these days

#

could be a seeker script yall wild

neon merlin
# rapid merlin this is an excellent place to practice https://www.shlinkedin.com/

🌟✨ In the journey of life, we often find ourselves navigating the intricate pathways of opportunity and challenge. It's essential to remember that every moment, whether perceived as a setback or a stepping stone, contributes to our unique tapestry of experiences. Embracing the ebb and flow of progress can lead to profound realizations about our true potential.

Together, we can illuminate the path forward, one reflection at a time.

Agree?

coarse plover
#

illuminate

neon merlin
#

Average linkedin "influencer" post

south egret
#

Test

wooden totem
neon merlin
coarse plover
#

thats how it all starts. Phase 1 of the exploitation SOP

#

is recon

south egret
#

Im living on the edge i click everything

wooden totem
#

I live as the edge, my browsing in sandboxed

coarse plover
#

id have to turn my proxy on and burp it if imma live that dangerous. I have ublock and all sorts of stuff to block adds

#

if you want to get crazy run a qubits system everything is sandbox and virtualized/compartmentalized.

#

wait i dont think its called qubit

#

Quebes OS. My brain is melting ive been online too long

slender scaffold
#

burp<

neon merlin
#

Just run TempleOS, can't be hacked if you have no networking.

coarse plover
#

im looking at it now

#

linus made a video on it

neon merlin
#

You can watch that it's a decent intro

#

there's also a down the rabbit hole on it

rapid merlin
#

TempleOS = ring-0-only

neon merlin
#

The headline is operating system made from scratch by a paranoid schizophrenic

rapid merlin
#

iirc paranoid schizophrenic was removed in the DSM-5

#

the subtypes at least

tepid furnace
#

I have reached peak stupidity

#

remember guys

#

when unplugging things on your pc

#

DO NOT

#

blindly reach

#

or you'll end up like me pressing my flash bios button

rapid merlin
#

😮

neon merlin
#

I thought you were going to say you got electrocuted.

tepid furnace
#

god no

#

arguably this is worse

#

the last image I took on my pc is 3 months old

#

so I think I'll be able to recover

#

but my pc is throwing a fit

#

so we'll see

rapid merlin
neon merlin
#

Why is there a flash bios button?

tepid furnace
#

convienence

neon merlin
#

Or inconvenience in this case

rapid merlin
#

@neon merlin it can come in handy when you need a new BIOS for a CPU the board does not yet support

#

you can update the BIOS without a CPU

tepid furnace
#

yur

neon merlin
#

Oh I've never needed this feature.

molten sky
#

I needed it just a few weeks ago

#

it comes in handy

clear jackal
coarse plover
clear jackal
#

The computer should still boot tbh, probably at an older version.

coarse plover
#

An entire os built by one man thats off the charts

neon merlin
#

With it's own programming language

coarse plover
#

HolyC

clear jackal
#

If not, follow manufacturer instructions on recovering/reinstalling

coarse plover
#

yeah mental health is no joke. poor guy

tepid furnace
#

yeah I was just worried about it bricking tbh

#

it ended up being ok

#

just some stuff got messed up

#

good reminder to save a new image externally though lol

rapid merlin
tepid furnace
#

oh the holy c guy

#

yeah I wish he had gotten the help he needed :p

#

imagine the cool stuff he could've been making today

rapid merlin
#

I wonder if Terry ever read the classic Peter Norton guide to programming PCs book

oblique furnace
#

hi

pliant cairn
#

henlo

vapid spear
#

mornin'

celest valve
#

Mornin