#general
1 messages Β· Page 471 of 1
how flakey streaming services are, you need your own collection
Dell T430 with dual xenons and 256GB of RAM
this hosts our Plex, does video encoding and ripping and much more
my dad likes a lot of old TV that's not really shown anymore, so it's fantastic for him
I set my dad up with 4 6tb set up on raid 10, connected to a pi as a nas and the m1 is the plex server, it's more than enough for him.
take it that's for the whole family
I was looking around the house the other day and I do think I need to take some of this stuff to the tip
also good stuff above yeah we just have an insane blu-ray library and this is our ripping to encoding to hosting pipeline, but storage ironically is over on the 46TB+ NAS
This does have a ton of storage but don't want all out eggs in one basket there
getting vmware now update you guys when i setup my vmware and knock out a few classes
appreciate the tips
good luck @rapid merlin
No problem, VMware is lovely, especially for retro but yes for modern as well. Just other solutions are less ideal for retro which is something I'm obsessed about lol
VMware has just plain been around the longest which helps there
I don't consume much media these days, with work and study, I don't find much time
don't think falling a sleep to archer and south park count lol
@sinful moon hey which should i download for vmware?
athena-rolling-x86_64.iso
2 days ago
athena-rolling-x86_64.iso.md5
60 Bytes
2 days ago
athena-rolling-x86_64.iso.pkglist.txt
13.6 KB
2 days ago
athena-rolling-x86_64.iso.sha1
68 Bytes
2 days ago
athena-rolling-x86_64.iso.sha256
92 Bytes
2 days ago
athena-rolling-x86_64.iso.sha512
156 Bytes
2 days ago
Source code
(zip)
Jan 30
Source code
(tar.gz)```
im guessing that first iso one correct
I have never heard of Athena in my life but yes the plain iso will be fine
You can optionally verify it with those checksum downloads if you are paranoid
alr did
I am discussing work/life concerns with the SO so I may be a while c:
help please!
any idea how we set local port forwarding
i keep getting this error
bind [127.0.0.1]:80: Permission denied
channel_setup_fwd_listener_tcpip: cannot listen to port: 80
Could not request local forwarding.
ok]^H
sudo
don't have sudo permission!
i want to forward the port 80 to another port remotely (i'm executing this on the remote server, i want to get the remote 80 to my local machine)
Could anyone help me with a reverse engineering Challenge? i've been bugging at it for a few days now but can't seem to find the flag for the life of me. It's an old one from my national ctf competition.
Ivana has made another program that asks for a secret number - can you find out which number this program accepts? (There are versions of the program available for both Windows and Linux - both versions contain the same solution, it doesn't matter which one you solve.) The flag is in the format CTF2020[numbers]
I found the main function of the code in ghidra, but can't seem to get further than that.
i guess i figured it out , i used socat !!
socat is just PURE PAIN
its syntax is just headache
is that THM or some homework ?
port 80 is usually reserved i dont think u can use it nvm i see u solved the issue
can I set an alias for a .txt file in linux?
Instead of having to type out --wordlist omg/this/is/an/incredibly/long/file/address.rockyou.txt
cp omg/this/is/an/incredibly/long/file/address.rockyou.txt ~
Also maybe DERP=/path/to/file
When was the first time you use Linux? I don't use arch btw
$(DERP)
I'm very familiar with Linux
before discovering the hackin world I used it on my desktop
still no an answer π
Alright write me a bash script that installs arch linux
script for install arch???
yes
# docker run \
--env PS1="ADC(\#)[\d \T:\w]\\$ " \
--interactive \
--privileged \
--rm \
--tty \
--volume "/tmp/target:/target" \
"index.docker.io/library/archlinux:latest" /bin/sh
I didn't understand very well, I don't speak English fluently
whoever was helping me earlier thank you
got my vm setup and im already started the first intro classes
appreciate it
how long have been using linux?
3 years
I have a very bad PC, I discovered Linux trying to get the most out of my PC
not that long π
π€·ββοΈ
Yes, I like Linux
Glad you got helped tho
I'm starting out in hacking, is it better to try to learn a language or learn it through tryhackme?
if u are talking about "Programming language" Tryhackme is not for learning a programming language tho it may give u some into basic stuff about the P . Lang. you'll need in cybersec
mfw having to add aliases to .bashrc for every john tool 
you don't
I installed from github, not package manager so if I type a tool name it just says "not found" without setting an alias
I know, I want to know if it's better to focus on learning a programming language or focus on tryhackme
if john is installed outside $PATH variable, then just need to add location into $PATH
what is output in terminal if you type locate john or whereis john
I went through that last night in this discord non of the commands worked, commands on google didn't work either. The only solution I found was a guide saying to use alias
locate gives a wall of files and whereis says /etc/john
u can do both ?
I think so
unsted in terminal try run john /etc/john and then rest of command
just it is weird to work like that
that isn't even where john is so I don't know why it's saying that
My john tools are located in /home/user/src/john/run
do you have that location in $PATH variable?
export PATH="/home/user/Pentest/john:$PATH" is at the end of .bashrc but it doesn't work
It only started working when I started adding alias for each tool
w8. where john is installed? in that pentest or in /home/user/src/john/run this one ?
or instrall john normal way, not git lol
It was in the pentest folder when I downloaded it the first time.
instead of john the ripper, it should be john the hacker
Then I found a guide that gave you all the commands and set it up under src
Tried that, whenever I tried to use it it would say "no hashes loaded"
I only got the git version to work
I went through that a few days ago with another user who couldn't get there's working either until they messed with the config file
So it seems the package manager version of john has config issues
"No password hashes loaded" and/or "No password hashes loaded this error ?
"No password hashes loaded" (See FAQ)
But the FAQ has no info on how to actually solve it
It just talks about unshadowing linux passwords
and why do not try hashcat, not john
cause the room is about john
before I didn't because it's supposed to autodetect
that yea. just if john can't detect hash type he will not load hash and so
After being forced to drink at work.
I went to the coffee shop.
Got me a double shot expresso.
God Bless America.
And God bless this Coffee.
Does being a hacker qualify?
No I am not just a hacker
I have drunk 3/3rd bottle of wine.
And a double shot of expresso coffee.
Hacker.
Lolz
Sorry I came for the lolz and stayed for the revolution.
No I am not hacking for you
No I am not helping you cheat
I am just saying hello
"Hello Friends"
Can I call you that?
I know I just made that up in my head.
You are my imaginary friend.
"Mr. Robot"
@loud marlin I maybe going weeeeeeee right now. But what is happening?
you are not going weeee. drunk ppl π
Ok I figured out not having to point to rockyou.txt every time I want to use it. Add rockyou="/a/very/long/address/SecLists-master/Passwords/Leaked-Databases/rockyou.txt" ro .bashrc and then you can invoke it in commands by typing like --wordlist=$rockyou
that make sense. just it does not make sense why is doing that
is this put into py? then use the new command in CLI ?
thank you
Gave +1 Rep to @fervent meteor (current: #59 - 133)
so the normal way --wordlist=/path/to/wordlist.txt is not working ?
then it make sense to store in variable
Good morning
You ever feel like your ISP just goes "that's enough internet for you for today" and hits a big button that says "slow down targets internet?"
I am setting up a USB flash drive with useful field sec tools. What should I include?
I'll be able to torrent at 20-30mb/s sometimes but can't even get 100kb/s at others.
Think they just hit the button. I got one 1.5GB file at 30mb/s but the next one is going only 250kb/s
Damn how do 3 different calculators come up with 3 different answers for 118613842 % 9091
Google came up with 3565, Chatgpt came up with 4999 and the linux calculator app came up with 1304.734572654
The answer the room wanted was 3565
terminal command calc gets it right
Have a wonderful day ahead
Python says 13047.392146078539
Calculator says 3,565
Hi, I have a problem. So, I just started using Try Hack Me today and I do the first task(The bank). I already put the amount balance but it says I have the wrong answer. Anyone can help me?
#room-help might be better place to ask
Return to previous page you will find answer
hi guys, quick question, has VMware always been this much of a clusterf**k to download? I know I haven't setup one for quite long while, so dont know if anything happens to it. But damn it's annoying as hell
yeah exactly
been using this for almost 7 years, suddenly users need to register for a damn Broadcom account just for an install
I used vbox back then, got multiple CPU level issues that I migrated to vmware
dont know how it is now
might even try it again
When I used it as a teenager, it was just simple download, install, run for the most part. What'd they do to it? It's been a hot minute since then.
its just Broadcom doing Broadcom things
Fair enough. I'm guessing most use VMware or VirtualBox?
not like I know any other alternatives
these 2 are the only ones i know since I first touched Linux
Touched linux? You on linux or windows?
Ah, okay. I'm a Linux Penguin so I use more native stuff to it. I think windows has it's Hyper-V that people can use, though, doesn't it?
I use Ubuntu for daily back then in my early networking days
even install multiple OSs in one device
now I no longer need Linux as much, so a VM is enough
and I havent touch THM for months, so now Im getting back at it, setting up new hacking VM
was in the mood for some hacking marathon until broadcom ruined the mood
I wanted to try something different during pandemic so I opted to go full Linux and haven't really looked back since. I did GPU passthrough for a VM and windows for a couple months 'cause I wanted to play some of the games that were wonky trying to play on Linux, but now it's gotten pretty good that I don't have a reason to touch it anymore.
Hello
G'day.
get verified first
do you like written notes
or computer notes
need to know if i will regret writing my notes on google docs π
okay bet yea i'm doing computer notes for rn since its just basic stuff atm
why not using note app?
yup thats what im doing
for example
Fix: Snitch to your boss. Policy violation can be an example: if the user starts uploading confidential company data to an online storage service
Morning yall
afternoon
How are you doing today?
Hi guys! Are there any noobs here like me? To work on some simple projects, like an automated recoinassnace and gathering of tools and such.
@mossy river @sick lance
Running through rooms and modules with an Initial D megamix in the background's a kinda vibe.
Good Morning everyone
I would like to connect on kali linux ( virtual machine ) in terminal with ssh tryhackme@ipadress but I can't do this
Problem is in password
It's not tryhackme
Anyone can help me?
where is the VM ?
is it on cloud (THM) or is it your local?
Additionally, have you made sure the ssh services are running ?
Some rooms don't allow you to SSH onto THM VM
Organisation is the correct spelling π
yes. rust is made by one of THM user here
WOW, Its incredible tool...
guys random question i just got the 30 day badge if i lose my streak do i lose the badge too?
nop
Not really, badges stay..pretty much forever.
:hammer: kwanmodrick#0 has been banned.
taking a break from school work
fair enough man, I'm planning on fixing my sleep pattern today
good luck. mine just falls back
been awake since lunchtime yesterday but have been ill with a chest infection so only got up at 4pm
so plan is to go to bed tonight at 10pm roughly
i think i'd wait till after the infection is gone
nah, no point to be honest, got things to do and it's well out at the moment
I've been going to bed at 6/7 in the morning
yeah, i know the feeling. i been going to bed at 9am
yeah man, I'm the one in the office who comes in on no sleep 
recently went part time as well so it's only got worse haha
that sucks
I ran a freshers fair stand on no sleep and did alright tbh
I did have a gram of caffeine roughly that day but that was more so I was physically capable of socialising, I fell asleep about an hour after my last redbull 
dang
I don't recommend having that much but I'm not particularly sensitive to caffeine, didn't have jitters or anything
i can't do caffeine
Although I didn't have caffeine the next day except for an espresso just in case my heart decided to give out haha
i drank a code red mountain dew and stayed up for 2 days
It relaxes me more than anything, I actually had a period of time where I drank it for stress relief while working at my old job
That was quite bad though because I was getting to the end of the day and finishing 4/5 cans of redbull and forgetting to drink water. I have never experienced so much pain as my kidneys punishing me for dehydration
wow
luckily after puking a couple times and drinking significant amounts of water and sleeping for a day I was right as rain
well it does say redbull gives you wings
Yeah, I actually prefer coffee, if I want caffeine I have a 350mg/170ml coffee
Got 3 times as much caffeine with less additional chemicals etc.
I recently got a pressure valve as well for my aeropress so need to try that soon
true
lol you too
Hey James π
some might.
There is a payment issue while purchasing THM subscription. I've tried 3 times and it didn't work.
oh. can try other card or so ?
same bank or different ones?
Different
you sure there is enough $ on cards ?
Yes
then might be up to bank... some might answer here, if not send email
I've sent emails to bigfawn
then when it comes them some will respond
I believe this is a bug or sort of, another user complained and Scrubz suggested to email the support
(if not mistaken about the support part)
Yes
I think the support team isn't available on weekends
yeah, sadly when it comes to these type of problems, only the support can help you out, our hands are cuffed
No problem
I take caffeine tablets, I find them much easier to regulate my intake more accourately
does someone know what a hash file with hash + salt has to look like for hashcat?
the exploit to be used is outdated, so i fixed it a bit as far as i could to get a result, but the cracking feature doesnt work anymore, therefore i want to use hashcat for
hash as you linked need to change in order to hashcat can use it
Gave +1 Rep to @loud marlin (current: #24 - 350)
more than likely, but the reference is like getting a brick thrown in the face π a way too much information
but it's best to do your own research before asking for help π
That room looks like fun, I am going to try it now
Hi , did anyone rooted the new backtrack room , i have a question
agreed π and solved
you gotta add some () on the print functions to make the exploit work
Should be a tool to convert py 2 to py3
no, but it doesnt hurt to know a bit about
You can ask your question in this channel tho #1294359222233862276
so should i learn?
cause i already started learning HTML
Thanks alot man
Gave +1 Rep to @finite rock (current: #349 - 15)
You can but it isnβt a must, you will learn it anyway when you are gonna go hack the machines
you know at first i learned ethical hacking from NetworkChuck but i think i can baerly remember something now because it was months ago now i started learning Web developing but i heard you do not even get paid good and you need to work 8 hours
it is your decision what you want to be, do what you enjoy most
Does anyone know of any websites where you can put in what you want on a pc and it tells you what parts to get π
best way is to go through the paths on thm, starting with pre security, there you learn what you need
i want to make money
Then make money 
being broke doesn't stop you from making money
i work at warehouse im 16
Donβt be broke 
more like it motivates you to make money even more
so should i learn hacking and from that make money?
Your decision
you're still young, you're not even an adult yet, why do you care so much about making money when you should be focusing on your school grades?
because i dont want to work for the rest of my life
i want financial freedom
blud thinks life is like movies
that will not fulfill me
right, here's my plan:
learn pen testing, the offsec one of course that costs like 5K or so
grind hard until you have enough experience to find bug bounty rewarding you 500k USD
invest them into stock market
enjoy financial freedom in 10-20 years
thats not the life i want
im too old for that kind of discussion π«£ later
sorry to break it to ya but life's hard and if you think that getting financial freedom at 16 happens with the snap of a finger, sorry mate, doesn't work like that
actually same 
PCPartPicker has builds to a budget if it's for gaming
yeah i know
At this point, I had to explore around THM more and I see wayyyyyy more resources to learn other tools to get me started. You're getting money's worth out of it.
Had to revisit on why I went in the first place. Doing a career changer journey
If youβre here strictly because you want financial freedom, youβre at the wrong place
Itβs not for gaming, I wonβt go back to gaming
I want something for designing systems, Ai eg
Doing projects
What performance are you looking for?
Designing systems? Idk wym thatβs too broad
That's a bit more specialist
Well, very specialist. I don't know of any sites like that, if I were speccing a system for it I'd be reading a lot of Puget Systems documentation
total reasonable thing
Hi
Simple CTF > Is there a nmap command to retun all services on port 1000. This only returns 1:
nmap -p1000 10.10.135.251
well... you need to add service discovery flag
#room-help please
1 service = 1 port
haha I misinterpreted the question "How many services are running under port 1000?"
exclude -p 1000 . Try with nmap -sC -sV 10.10.135.251
-p 1000 tells the command to scan ONLY port 1000
Yeah got it now, I thought question was asking about port 1000 only
#room-help please.
Time for a pineapple break
I cannot find a mute for the user papamidnite0272#0
I cannot find a mute for the user papamidnite0272#0
@pallid prairie #feedback-and-ideas
Does anyone know if there is some kind of box where you can put your computer so other people who come over can physically touch my tower π
What do you mean by "designing systems" ?
Iβm going to buy a fractal design meshify C mid tower
Well I want to get into designing defence software with AI
...like a shrine?
Nice π , good luck
Guys I have a question, does anyone know of a course or yr compilation of a full computer science degree? Basically im pursuing one and I don't need to attend lectures I just have to give exams irl. The university is about 6/7 hours by car from my home and they don't give zoom lectures. If I could find a course like that I would save on so much money and time and headache because I could study at home with chatgpt and watch the same arguments at home
check out fCC on YT
they should have what you're looking for
Check freeCodeCamp and Harvard CS50
Thank you
Gave +1 Rep to @cloud quiver (current: #317 - 17)
Working in terminal and editing code are becoming addictive, what's going on with me
a year ago I thought.. I couldn't see myself using terminal all the time and edit code in it, let alone enjoy it, though after a few months at THM, that completely changed
I also can't comprehend it still but I just enjoy the terminal more than clicking folders
Actually you start seeing the terminal as a very smart and fast tool, with smart command syntax
And it becomes much faster and easier to work with than to use a user interface
yeah
I actually had trouble using Brim to analyse a pcap file whereas I was faster using the terminal and zeek-cut commands
if you want some help with this let me know
I actually have a question regarding hashcat
is yescrypt planned on being added? π
eventually
it's one of those algorithms that doesnt really accelerate well on GPU, which is kinda the point of it
so getting it running in a way that's worth adding is... kinda painful
understandable, we where wondering about it yesterday due to some challenge we where sitting with
John doesn't have it?
GM Everyone
GM mr Phd.
Yescrypt > Bcrypt?
Hey Simon
Hii, hru Sir?
hi siman!!
Oh bing here, ππ»ββοΈ
nice bio simon
Nocrypt
Afternoon everyone, hope everyone is having a good weekend
Hey guys if I get an ISACA exam passed without experience do I get anything at all ?
Or it is just for once I get experience I can claim the cert ?
Yescrypt better yes
what?
What?
Hey there, hope you are having a great weekend.
I'm a day trader looking to automate my own strategy. I have zero knowledge of coding, but through my research, I found that purchasing historical data and importing it into Python would be ideal for writing a script to make my backtesting more effective.
So, my question is: does anyone here have experience with this type of coding? If so, could you point me in the right direction to get started? I know this will be a marathon before I reach my goal, but I don't want to waste more time relying on someone else. Thanks!
I wrote something that scrapes for stock ticker data and then exports it to an SQLite3 database and does some calculations for some columns...
Hello guys, Iβm new here.
Iβm a computer science student.
I would like to ask if there is a moderator here.
I have a research survey I need to fill up.
I would like to know if itβs allowed.
I'd be willing to sell the script for a modest fee.
Difficult to answer imo
Thank you π
Gave +1 Rep to @polar spoke (current: #160 - 46)
Would I be allowed to dm you about it
Yeah sure
Thank you
Argon everywhere then! π
that's also difficult to recommend for me
for some similar reasons as for yescrypt
bcrypt is strong but importantly, it's also dead simple and well supported
very difficult to mess up a bcrypt deployment
yescrypt and especially argon2 are quite a bit more complex to understand and thus deploy properly, even leading to instances where they end up being weaker than a bcrypt implementation they were meant to replace
i believe openwall even says this on their yescrypt page
Technically, yescrypt is the most scalable password hashing scheme so far, providing near-optimal security from offline password cracking across the whole range from kilobytes to terabytes and beyond. However, the price for this is complexity, and we recognize that complexity is a major drawback of any software. Thus, at this time we focus on large-scale deployments, where the added complexity is relatively small compared to the total complexity of the authentication service setup. For smaller deployments, bcrypt with its simplicity and existing library support is a reasonable short-term choice (although we made progress towards more efficient FPGA attacks on bcrypt under a separate project). We might introduce a cut-down yescrypt-lite later or/and yescrypt might become part of more standard or popular libraries (and it is already in libxcrypt), making it more suitable for smaller deployments as well.
this is also the same advice i gave to OWASP a while back, bcrypt wherever you can unless you really know what you are doing
though my suggestion was later overruled in favor of Argon2 regardless
Unfortunately I am totally beginner. I couldnβt use it properly. I just need someone who can point me in direction first. Sorry.
I used python. These are the imports I used
import sqlite3
from bs4 import BeautifulSoup
from selenium import webdriver
import random
import argparse
I also used proxies, but you probably don't need to do that π
Thank you for your answer. Could you recommend any resources where should I start as a beginner?π
Gave +1 Rep to @quartz fog (current: #494 - 10)
My main focus is on trading, trading related scripts and coding my strategy.
Youβre better off using an API
Alright. Gonna google it! Thank you!
Gave +1 Rep to @simple valve (current: #20 - 414)
Hi everyone
Hello
hi
Heyy.
Hi guys, I am new beginner in hacking... I just completed some 4 free basic modules in THM, what is best fast and free (or one month subscription) strategy to finish junior pentest, web fundamentals , red teaming , offensive pentesting and comptia pentest+...
It depends on your fundamentals but I doubt its doable to finish all those paths in a month
Is it possible to complete upto red teaming? Leaving offensive pentesting and comptia pentest+ ...
I still doubt it unless youβre willing to learn maybe 8-10 hrs/day and can still effectively retain information and be able to build your methodology
There are always free resources to learn. pwn college, Portswigger Academy, and cryptohack are just some off the top of my head.
PEH by tcm sec is a pretty good resource for building ur methodology imo, they've uploaded the course on youtube
I am ready to give more than 10 hours a day... Just that maybe Linux command little hinder my progress maybe ...
Thanks for these academic mentions .. I didn't knew it...π is there no emoji reaction for comments?
Gave +1 Rep to @simple valve (current: #20 - 415)
Yeah, thatβs something you learn as you go tbh
Free resources will always be there, just need to sift through all the BS
Thanks for mentioning, I will check it...π
just finished jr. pentester path
Anyone of you guys in red teaming?
the interview/tech support by THM, are those results out yet ?
i did introduction to cybersecurity and jr. pentester
any other paths/rooms before i go out bug hunting?
note that i am mostly interested in web applications since the only use id get for os pentesting is for my own company (for which i have 2 servers which ive already had some friends who know more then i do pentest for me)
Whatβs your question
The Web Fundamentals path is good but its all about methodology and knowing your tools with bug bounty
okay
people i know who do bugbounty told me theyve just grinded portswigger labs and just started looking for bugs in the wild. its a pretty difficult field to get into because of the competition, not to mention pros and their automation tools.
i suggest checking educational websites, they tended to be misconfigured(keep in mind, i am not encouraging to do something unauthorized )
@south egret nice "about me" status
never yoink my gifs, you'd be in trouble
Flash bangs on csgo
Is this junior pentest completion includes payloads and game hacking? And how much is this knowledge useful in practical...
Gambling simulator with a shooter side game
There's no game hacking with the exception of buffer overflow in the AoC 2023.
Thanks for reply πbut out of my knowledge area.. need to learn it...
Gave +1 Rep to @sick lance (current: #1 - 2864)
Yes it is good but little boring to learn and grasp that much... I may not retain what he is actually teaching... That is why I liked THM and HTB they are practical and interactive.
I will watch it probably after nmap, metasploit like other tools .. having some knowledge of it...
Kernel go brrrr
is there benefits to certain vm software compared to others or is it mainly just personal preference (iyo)
are they free?
xD ..i have win 11 home π¦
Weeeeeeee
ill try them and compare
I am a university student looking for a job. Should I take the OSCP exam?thanks
fr
navigating through their website gave me headache
ive been using vbox i wa just curious if there were other free vm software that was a smooth to set up and isnt super bugged out
do cpts then oscp
hello master
why? thanks
Gave +1 Rep to @tired moth (current: #2263 - 1)
cpts course only 8 euro per month and quality is better
i hav oscp in 4 days
but i have bonus pointsss
thank you
certified professional
SocLvl1 is funny
does Virustotal throw false positives because of virtual machine ?
They can do, what are you analysing?
Can someone help with nano? I would like to paste something inside nano but it doesnΒ΄t work. The same as I want to have this on --> { in nano, but it wont work out for me π
Are you doing this on the attackbox?
If so.
yes
Look above gif.
@dark sequoia hi
π
Thx. I got it.
Depends, what are you Osinting?
Nothing totally. It's just for my github.
eh, it would be hard to suggest as I wouldn't give you a geolocator as in publc domain info.
a Whois?
I always find OSINT a strange field, not that I don't believe that it's not part of security but it's not a technical skill. I'm not knocking it, but asking technical ppl to do it to me seems odd
sorry for my hate on OSINT lol
Can anyone please give me any free course name like HTM and THM free videos on Junior Penetration whether on YouTube or nay other ... Has to be interactive like THM and HTM...
Osint can be valuable, not just as a security thing.
But I've done Osint on a hiring manager to find out as much information as I can, and use that to my advantage.
You can't have an interactive lab on YouTube...
My advice is to just get a sub on THM, or use the free content, 60% of it is free.
Is google cyber professional certification more than enough for junior penetration...
Noβ¦..
Donβt take that piece of crap
Ideally you'd want something more,
Like OSCP, or if you're in India, CeH, but I heard that's being phased out.
Stop trusting the Google certs theyβre worthless
Why is it bad?
They wonβt get you a job lmao
Do you have the cert?
I may use personal VMware virtual machine for executing practical...
Yeah, but how would you connect to a lab, on a VoD?
Any cert is a good cert, free or not.
It shows employers that you are active in the field and always learning.
I just field it strange that security gets merges with so many fields. OSINT is important, but asking me as someone learning machines to learn to be super spy is crazy
OSCP Alone won't get you a job
You might as well have taken the Security+
Don't have to be a superspy, OSINT comes in handy for missing people reports with Teacelabs, for example
I heard ceh is more of theoretical than practical... Can I use THM videos and THM machine for executing codes?
Still ceh is more demanded for hiring in India .. but I just want to learn for knowledge or skill rather for job...
You can only use the THM machines for THM purposes.
Easy, you slam your face into the monitor and get into the lab that way. SMH
the subscription pays for it's self, worth it
That depends on the user.
Yes I know... Does it give enough exposure to get knowledge for junior pentest
It can give you knowledge and skill, but it would be hard to get a position with just THM.
It won't be impossible, but it won't be easy.
it works out as Β£11 a month, that's so little. It's well worth it
It's good for new users too, THM might not suit their style of learning.
If you do annual it's even cheaper
If you're a student it's even cheaper.
^
Yes spending 14$ is not much just that time is constraint so before going for that I need to cover all free knowledge to make use of that month ..
Yes, I crap on THMs difficulty a lot but the Pentest stuff that teaches you how to do it is actually top shelf
Take the difficulty with a pinch of salt
What is hard for you, could be easy to somebody else.
https://tryhackme.com/r/resources/blog/free_path
free rooms to help u to get started
I use a lot of HTB academy stuff which is great, but THM I like the specific room that drill down on a CVE or a topic
I already done some of free stough... It won't give access to second chapters... Linux and networking and python or bash script free stough can be done in HTB but that is not sufficient to get hands on the junior pentest if time is constraint means for one month...
30 days is 30 days.
What you choose to do with it is up to you really.
No I checked and tried it... Just that you somehow need atleast one month subscription to complete Junior pentest , that to if you want to spend more than 12 hours daily...
On the contrary, their post made it seem like it's too short with the sheer vast amount of topics...
See.
My suggestion is to not speed run anything, and take notes, the more the better.
I am just figuring out is Junior pentest can be complete in one month so that is why I am asking for expert.. is it possible,?
You'll also want to avoid burn out.
Yes I always takes screenshot and make notes on notepad ..
Yes, it can.
Record gifs, videos.
Again, their post is making it seeming like they want to learn as fast as they can.
Yes THM and HTM it won't burnout as I am very active for 2 days . Don't know future burnouts..
Jr Pentest can be completed in 3 weeks if you spend 10 hours per week.
Have you logged in?
Yeah just checked it . 7 hours per week takes exact one month... π
Some things you'd already know and will take you slightly less time, there is one challenge in that path that I think may stick you.
@pallid lotus
Gib ViP ticket.
What is challeng?
The data doesn't come from the public
It comes from dedicated volunteers
But they need some minimum amount of money to run organization... If you are student you may claim the subscription for even less maybe 10$ don't know
π π already feeling it ..
I'm not even a student anymore, let alone committee π
Not quite.
Will be lucky if my honourary membership gets me a guaranteed ticket lmfao
Hard to sit that long...
You've got contacts, don't make me contact my friend π
Nah that's the point
The data is given for a specific cause, rather than publicly
I feel like I have packed too much for my vacation
Some shared this also .. It may help for some...For Web:
https://portswigger.net/web-security
https://www.apisecuniversity.com/#courses
my whole suitcase is bursting lmao
Here you can find videos from IppSec, which he has recorded on various machines
https://ippsec.rocks/
I remember when Ippsec was mentioned in here they'd pop up.
Is it good ? What Is your take on it..
Never really used their resources tbh
cisco netacad goes brrrrrrr
@chrome vale hi
any news if the .io domains are still gonna go poof???
Hey hey π
Get ready bro
They are really cool tbh
Haha I'm new, but I'll try!
Depends who you ask really
I am new too bro, no worries
oo can i join?
Hackers are not allowed
@rough gorge did you .io ever fix itself?
You are
yes it did. Asked the support and got resolved. Did not find any other gitbook with this issue
Wanna join really?
for sure!
The more the merrier ^_^
Haventplayed Koth in while π
they aren't
Youd need to verify
And I don't want to do it now really
i have the permission for send a github link ?
Is it yours?
We prefer members interact with the community more before self promotion.
Thanks for opinion..
Gave +1 Rep to @wraith fjord (current: #137 - 54)
It has some links that are banned, yeah.
Tried to play a game on my phone and it's shouting at me telling it's rooted.
dare i ask what kind of kind of game requires root o.O
None, it's telling it won't run as it thinks it's a rooted phone
Is there a way to make pythons text bigger
Iβm so blind
Found it
π
good day
hope everyone is doing well
I hope you too
You can use this @rapid merlin.π

appreciate you
no shadow is not doing well... wells are to deep and scary
Also opted into wearing my glasses even though I look goofy af
I just want to play Golf Battle >:-|
Howdy
I wanna dye my hair, itβs been black for almost two years. What colour should I go π
Ginger.
hello
Hi guys
Hello, I have a question if it is possible to put Linux on the second disk. Make this kind of dualboot but between disks.
How can i see hosts on the DMZ
Yes, but Windows can get hungry and eat part of the partition that Linux is on,
What are you doing? π
wdym can get hungry xD?
Exam
Windows can update and overwrite some of the data that linux is stored on.
oh okay. Now i understand
Which exam, and how long do you have?
In this day and age, a VM is just as good, IMO.
idk it;s not the same feeling xD
I want to a little advice please
Full screen it π
Please answer my question.
Are you taking it now?
How long do you have left?
Yes
i really would like to do dualboot on one disc but someone told me that it's possible to destory windows or smthg
nice beginner friendly thing
My desktop is fitting

You got 6 hours left?
Yes
:mute: grausturm#0 has been muted.
What is powered by tears of well behaved students
Nothing in our department
try harder hack ejpt sever if you can't root the machines
Must be the naughty department
Well we do deal with naughty students!
Let's not promote hacking any servers they don't have permission to...
just for fun
...No... Just no.
okay don't ban me
I mean, you're still here?
Got it
some how I put myself in a situation. I'll be taking 2 exams in november the A+ and the network+
i hope i don't confuse my answers
i'm just taking a break
Good luck
thank you
Hmmmm, I am contemplating if I should arrive at proper time for work tomorrow or arrive late cause i am staying all night
Any of you guys watched the movie Django Unchained?
arriving early means leaving early π
Not when I am not able to get home before the 27th π
then late, wont matter then xD
I got a flight Tuesday morning in the city the office is at, so I am staying at the office/a sleeping place I have close by
I live around 170km away from the office
ok think imma get back to it. it's been fun
considered moving? i mean, 170km is like a 2-3h drive Oo
I live 11Kms away from office, it took me around 1 hour to reach.
Guess my place.π
Where do we report a user cheating on KOTH? Ch1 is getting king.txt nearly instantly at start and no way to modify it.
I study in the whole other direction of the office
I have already reported him with proofs but no response for my mail.
So I left playing KOTH and look for private rooms only to play.
kiribati islands? π probably the time to swim from island to island xD
They're not cheating.
They're using a rootkit
however i have the same atm, all over the place building lots, so my 20 minutes commute is now 1h too
time for working remotely lol
π«‘
If that's the case, how is it literally instantly? That's cheating..
Plus the rooms are the exact same, with the exception of Fireworks which has 3 variations.
Are you suggesting he has a rootkit sitting on all the machines, so despite resets it's instant? As soon as we started it was like 0.01 seconds and he had king
This should also be against the rules.
That's the best case to enquire about it.
Can't isntall chkrootkit or anything on the machine -- it's like fishing for a needle in the haystack rather than playing KOTH
It's boring if you ask me.
I reported this already 1.5 months back. But the thm team is busy it seems.
If that's the case, I'm not sure I wanna give them my premium user $$ π¦
Everyday he go in games, be a king and not let others explore at all.
Someoneβs using a rootkit on me
MissStealth, is it Ch1?
hi
Is it orange in color?π
Does everyone want me to ginger
Iβm going blonde
You know why Iβm dying my hair because Iβm turning into a wizard and like to pretend Iβm still young.
Okay, delete your message then

You know we can see deleted messages, right?
I was ready to stand on business
Purple was my favourite colour for years and now itβs green
Probably not a good idea to try and start drama with claims that you're getting DMS without permission.
Especially when I wouldnβt dm you π
Kekeke
Too busy dancing round my kitchen
Then go green. Be environment friendly.π
Match all my plants
With your green hair you can camouflage yourself in the forest as well.
I wish it were possible π
I would just live there
I'd like to be a plant
I would love to live in a tree house as well.
And not worry about life
i dont know whether it helps, but in the end we will be all compost and become a plant π
With nature, it would be calm and compose place.
Doesn't matter as i am going through things
But yeah, happy to be a part of the nature
ah well, shit always happens, but there will be also brighter days π€·ββοΈ
I hate the fact that everything is temporary
Worrying about what will happen next in bright days would ruin yk
oh im always positive about things, as long as there is a roof over your head and a meal on your plate, things are good
Rootkits are allowed.
shadows favourite colour is still blood red
that dark redish color of blood
so nice
Oh we have a vampire here.π
definitely not the first time people call shadow vampire
188 cm tall
long dirty blonde hair
very very pale skin
love the colour of blood
Oh to be pretty and mysterious
I look like a taliban
Show us
Hell no
meep no
Then the cheese CTF should be Red blood CTF.π
you know shadow could do a vampire themed ctf
but it would be hard to get it to release this month
Don't let shadow fool you, she's as old as her streak is on THM
Shadow is a female?
the only thing that is incorrect is calling shadow a vampire... shadow is older then vampires
I thought he was a dude larping as a girl
Her pronouns are right there?
Didn't you get that from the she/her on her username? π
I have many
Are you trying to say she is from the Jurassic period.
Not at all...
She's older 
ouch!!
Oh the first person born after big bang.
I love dinosaurs
Reminds me of that movie βLucyβ good film
What kind?
Iβve got alcocasias, calocasias, bananas, caladiums and more
Bananas? Damn
older then the shoggoths that is for certain
Yeah tiger banana and ice cream bananas
(That's the only thing i know from what you said)
Someone should connect you with the Jurassic park franchise to be casted as Dinosaur.
Nah I donβt, my newest plant was a carnivorous plant
Nice I will end up being a very smol dinosaur
This is a good one.
Hoping, I will not get haunted by shoggoths tonight.π
hello
Guys I have a question
why would they??? they tend to be busy with work :P
Shoot
can someone recommend me a book or a course / website on which i can gain skills and play king of the hill?
i tried to watch lotr. couldn't do it. hats off to those who did
Basically I enrolled in university and I'm attending all lectures n stuff
I paid 80 euro per semester for this uni and I won the green card for the us so skipping lectures won't be a huge cost in terms of money or networking (I'm in Germany).
I have 4 exams for this semester which are IT systems, basic cs, basic programming and analysis 1.
I'm thinking of going back to my home country which is like 6/7 hours by car from the uni, study on my own and come to the uni only to take exams, coming to lectures isnt mandatory and I'd have them recorded for most subjects besides cs basics.
Because I've been studying cybersecurity solo for about 6/7 months now and the way I learned how to learn is to dig deeeeep in every sentence every concept every word that I don't understand. And its working great. And now I'm at uni where the professor talks and I can't ask a billion questions like I ask chatgpt so the end result of me not asking all the questions I need is that I don't understand the lesson and then I have to go home and learn by myself as if I didn't go to lecture
I just feel like it's unnecessary to attend lectures idk, do you think this would make sense or should I stay here?
wow
Bang bang
Scaring people with numerous ports.π
Hold up, let me get my glasses for that essay
can anyone help?
I said it as you wrote it π
Go through THM roadmaps, that would help.
Do what's good for you.
Did u go to college?
i'm in college now
ChatGPT isn't a lecturer.
It has a nasty habit of being a yes-man and being subtly wrong.
It's not capable of reasoning.
Everyone is telling me not to do it because it's university is an opportunity blah blah but idk i feel like I'd learn better self studying if uni keeps being like this. It's as if they make it very easy for students to not come to lectures while not providing much to students who go
A lot of cyber is doing study everywhere and anywhere and it still feels confusing lmao
you're going to have to rely on yourself to workout problems and learn as you go.
just don't get stuck in the parties and other things
And yes, the lecture alone is not meant to give you everything.
You need to be supporting it with self study on the material they've told you to read.
This isn't school any more. You need to work independently as well.
You need a little bit of everything
Basically my resources to study are recorded lectures, slides (which are used in the recorded lectures) and exercises created by professors. I wouldn't only be relying on chatgpt, it would be mostly to supplement what I don't understand in the slides and exercises like I've been doing for cybersecurity
use uni to farm that degree
And plus cyber is never ending learning too. It just never stops
You said earlier they don't offer zoom etc lectures.
Are the recorded lectures the same content?
chatgpt is just vomiting the stuff it has learned back at you.
if it makes you want to bang your head against the wall, then you're on the right track
for computer science you can get a decent bit of info from harvards cs50
^ which is on youtube
Basically in the 4 subjects that I'm attending, for the first semester only two professors offer zoom lectures and they record them and upload them to the website. These subjects are IT systems and programming basics, programming basics is useless for everyone, no one even goes to the lectures or watches the recorded ones
if you use chatgpt for the programming course shadow is currently taking in uni you get sent out and asked to return next time the course goes around
find out what you want to do and learn it
I have to hard disagree there.
The more you go into specialist topics (or "delve" as the spicy markov chain likes to say) the more subtly wrong it'll get.
You need to know what's correct in order to spot it making the mistakes.
For analysis 1 I would need a private teacher even if I stay irl in uni so not very useful either
Self learning is the best learning which I believe.
And no one can teach you everything you must have to learn alot of things by yourself.
But a guidance and a helping community is better where you can share not only knowledge but your life lessons and learn the same from others.
So by saying not going to college and learning using some AI model is not a good option at all.
Use it as friend, but not as a philosopher and guide.
The only subject that kinda lets me by myself is cs basics but there's tons of online resources for that and chatgpt knows the basic theory of that course and can create exercises for me
If only that were true
sounds like it's online
no worries, in 2nd to 3rd semester, 80% are gone failing. then its kinda private lessons
Because it's absolutely not, as someone with niche and specialist skills and interests
I use chat gpt all the time
Glue belongs on pizza
What about pineapple?
It's a spicy Markov chain.
It can't reason. It can't fact check.
It's purely what words are most likely.
YES with Banana
No
Mmmm I'm not really looking for guidance from chatgpt nor my classmates tbh lol. I just want to pass the exams
The training data can be great, but it's still a GPT. Still works the same
Banana
Chicken
Curry powder
Peanuts
Pineapple
on a pizza
This is a direct example of why you can't rely on GPT or any other LLM without fact checking yourself
Wdym?
No, that's literally why hallucinations happen
stay on the Uni path, so you can take that degree.
You're already doing the extra step which is studying by yourself.
You're fundamentally mixing classes of AI/ML
sup
i just need that piece of paper
It can't
if i need to take the certs i can pay for them myself
There are tons of chats which I am missing to read.π«
all i really wanna do is bug bounty
You should really only pay for Security+ if you need to pay for anything
personally, i dont fully trust chatgpt
Yo
u know
You can't rely on this for stable income
The way I've been using it is I'm uploading the slides to it and asking it to explain in depth like a professor in a university. Then if I don't understand ask more questions etc but I understand way more this way rather than going to lectures because I can't just drill the professor with questions for 2 hours straight
i already have income. i'm doing this for fun
But you can. Go to their office hours, online or in person, if available
isnt the lifestyle a bit dull then
what?
u should try different things to have a feel for it
@clear jackal debating getting a QRP HF transceiver btw
i mean if u were to do bug bounties for the rest of ur life
i enjoy cyber security
it would be the life of a programmer
gemini seems to be pretty nice for cybersec stuff
cybersec isnt just bug bounties
i know
I need to take my HAM so I can keep up lol
i like hacking and digital forensics and many more things
I don't need to attend lectures to take exams that's the thing. If I go home in my country I can spend more money for private math teachers, besides being with family etc... but if I can pass the exams I will get the piece of paper for sure
ah nice
what type of rooms are u doing?
Have you not seen the classics?
How many Rs are there in "strawberry"?
It's not as smart, learned, educated, etc as you think. It's a spicy Markov chain.
Try it for some proper, detailed technical questions.
I've had it spit back answers that would have literally killed me had I listened.
Extra?
i was going through them then decided to go to college, so i've been busy
well u gotta know one thing, man
i also love over the wire
its machine learning
it takes some time to fully develop
and it wont even fully develop
Spicy Markov chain.
Sounds sus. Questions can be asked here, more technical can be asked in #infosec-general, career questions can be asked in #cyber-and-careers, and advanced topics such as malware can be asked in #exploit-and-mal-studies
Extra what? Im not currently a HAM if thats a level of certification
It says twoπ
I had to ask
it says "no access" on the last one
Yes, because you don't meet the requirements currently
Ah, yep it is a class of license stateside
There's technician, extra, and another. Idk the order.
Highly recommend. Join usssss.
Professors at my uni use it to explain exercises to us lol. This is why I'm questioning staying here, If they use it why tf am I sitting there watching someone use chatgpt instead of using it on my own
could be anything at this point
I say please and thank you to chatgpt π
Gave +1 Rep to @vale flax (current: #2263 - 1)
i use it to search for certain websites
I think it depends if you upload a data base to it or not. If you upload a file and ask it to explain the file to you which is what I've been doing for now it works pretty well
Yeah, I need to make time for the base. Goal is to eventually get to Amateur Extra, we only have 3 classes of license.
also i give it my poetry to read to analyze lol
/verify
Non commercial I should say
The worse part is I had to count to a Rs lmao
Commercial you can do things like encryption
When I asked chat GPT how many Rβs in strawberry
the plural of R
It said two
lol 2
tf u mean 2
Did everyone miss what James said ?
strawberry letter 23 is a great song
Reading comprehension is a lost art
Yea a few months ago it wasnt that good but now it's getting better. Maybe I just learned to use it better idk
stawberi
Correct. You're better at this challenge than ChatGPT
Fr π
thank u

