#general
1 messages Β· Page 586 of 1
sister ?
like pro can be anyone?
are you appach helicopter ?
i was just checking that statement
same ***bro ***, i am newbie
Bro
how are you so sure man?
same
its cute
is there a way to desactivate suscription auto renewal?
depend on the payment , me i can on Paypal to remove auto pay
hey where can i ask for help for some bugs regarding kali linux dpkg ?
Here:)
can i post the error i'm getting ?
Yes, you will need to verify your account if you want to post images though
the answer is 3
as long you hide your private informations π
42
so this is what i'm getting , i've been trying to install packages but i get this error everytime i try to do something
i tried all the solution in stackoverflow and youtube but
dpkg: warning: files list file for package 'lvm2' missing; assuming package has
no files currently installed
dpkg: warning: files list file for package 'metacam' missing; assuming package h
as no files currently installed
dpkg: warning: files list file for package 'mac-robber' missing; assuming packag
e has no files currently installed
dpkg: unrecoverable fatal error, aborting:
files list file for package 'myrescue' is missing final newline
Error: Sub-process /usr/bin/dpkg returned an error code (2)
whats the command youre executing
every command related to installing packages literally
Simply cancel your subscription. You still will be premium user till your subscription is over. Still ask someone in just to clear things out #site-support
trying to update the package list and upgrade them
tried installing terminator
tried installing dselect
same error
yeah apt update
or apt-get install package_name
Ty
I had a doubt mint is good or I can go for Ubuntu ? Or Kali , parrot?
-unmute 551425579514331146
π Unmuted sn1per1010
-unmute 150413887810961408
π Unmuted likerofjazz
thanks XD
i thought you forgot about me for a sec jabba
i ended up doing that
thanks
Ahah, no I did it in the list the messages were logged π
Planning to use it as live on usb
Much appreciated
haha
Took my opportunity to use everyone tag without consequences : P
is that the only error you get?
how old is your kali install?
yeah i copied it all
1 month
do you have anything super valuable on it? sometimes its best to just reinstall
or if you have a snapshot
not really i don't
yeah honestly just transfer the files off and grab a new kali if you really cant solve it
im not too sure what the issue is the errors dont give much
yeah it's annoying af , nothing seems to help online , i tried all commands
thanks @wind lake
Gave +1 Rep to @wind lake (current: #70 - 116)
ya np. i would suggest once you get a new kali, update and upgrade, then take a snapshot of the VM
Pls help
depends on your use case
what are you using it for
aight noted
packages errors are a nightmare to resolve 
And planning to use it as live usb as I'm desktop user
Here's another opportunity, do you mind doing it again?
for me my main OS is linux but I have vms for my cybersecurity stuff

Nah not taking the bait
For now my main os is windows 11 and I'm not going for dual boot
I'll give you a free reputation point if you do it

For daily use and practicing cyber security
the better idea would be to have virtual machines running on your computer. Instead of using live boot usbs
Reputation is earned not given 
Jabba, did you go by GR eggs today?
Not today
I used Kali in virtual box but it is slow and had some errors when I update the Linux
no thanks π
Gave +1 Rep to @mossy river (current: #5 - 1369)
ME Pick ME Mi Lord!
Mind typing @everyone for me please
I knew it was going to be a trap
Lmfao
Just saw someone call greggs for GR eggs
-unmute 167340874114662401
π Unmuted dawiddym
-unmute 608542743253221387
π Unmuted dextrememachine
Much appreciated
π
Gave 1 Rep to dawiddym (current: #654 - 7)
c I knew bestie wouldn't leave me out to dry.
You're still on cooldown
eXCUSE ME
Lmao, skill issue
I'm literally on the exclude list

Neeeeerd
id suggest kali
It's a sign it must be earned 
discord admin get rejected by his own discord 
Excuse me mr bot
@mossy river okay thank you but virtual box or bootable live pendrive which is faster and portable
There you go @wild rose much appreciate 
depends, do you know how to dual boot
oh np
i would suggest VM
Yeah but not willing to do that
well then its VM
I would never suggest dual botting with windows.
also with vms you can give them more resources
me neither
Just choose a weapon and stick to it
gm
ive done it, it can be useful
evening const
Ok thankyou then π
im doing alright, you?
Until Windows gets hungry.
π
whats your specs on your computer? like ram cpu etc
Installing linux as a main OS forces u to go throw installing drivers shit and makes u learn a lot
16gb ram
i5 10th gen
256 ssd
1tb hdd
Also optimizing things to work on linux as it was on windows teaches a lot too
Yeah with these specs u have no problem using VMs
For good performance how much storage and ram can I share
Im not into VMs but i think 2gb of ram and 30gb rom is sufficient
youre solid for ram then 4gb ram should do perfectly fine
thats really the most important part
like 2 cores 4gb ram is what i usually do
30gb storage should be good enough, unless you know youre going to be using it a long time
im practicing on my ubuntu server machine, I deleted the netplan .yaml that I created, now im stuck at init-premount script. did I fuck this machine up or can I reverse this?
Ok thank you for helping me
Gave +1 Rep to @wind lake (current: #68 - 118)
Boot in to GRUB and replace the file?
on it!
np anytime
shhh! I did it lol
How we doing
Ooo I have an orange name now
You know what, Iβd just like to say one thing. Honestly I appreciate the team behind TryHackMe
I havenβt had this much fun learning ever
Hated school and college. But something about the interactive parts of the modules makes it so much easier to get through it, feels more like a challenge than a lesson
Hope we are all having an awesome day
^
Thanks π . Hope you're doing also well buddy π
Gave +1 Rep to @worthy venture (current: #2382 - 1)
Just had 4 days off, was gonna play leagues on RuneScape ended up spending most my time going through tasks ππ
Unfortunately just started work π©
Good, about to buy the tcm all access pass since it has a few courses I wanna get
primarily the python 101 & 201 + the programming with ai mini course
That's sounds like a good thing π . Have a nice day at work π .
I shall try, hopefully itβs a nice peaceful night in the control room
Howdies
wow cybersecurity is such an awesome field β

Drinking and not haven eaten today is not a good combination lol

ironic since I've not ate since last night kek
Drink more
I've so far, drank a glass of heated wine, (not mulled) and a flight of whiskey
0 food
So still in warum up mode 
Good job mate, I'm starting the whisky now, one glass deep ... shooting for 50 answers today
coming back to tryhackme after not touching the site for a handful of years. I want to check out your #1305926862114914325 !
seems like a cool event thanks for putting it together.
50 answers to the world's greatest questions? Lol
Oh yah... even though I can't drink as much as I used to before my accident
Long story short.... spleen go kaboom, me no drink much anymore
Well, i'm working through the "complete beginner" path, so idk about "worlds greatest"
what path are users tools generally held in on a linux box mr hotdog
The worlds longest journey begins with a single step.
or a rocket propelled car
do you mean on the attack boxes or my machine Mr ntwrk? ...My machine isn't all too clean a house right now...
how u doing this fine evening!
NTWRK - Is that question lifted directly from a room?
I'm alright, Dee. Struggling with a conundrum... Do i, or Do I not order something from UberEats
@boreal scarab
@wind lake
this is the question of our generation
Haha
Oh Jazz - The VC was the first time I heard your voice - you have a great accent π
what u thinking about getting?
Probably a Kebab π
I think that VC was the first time I heard your voice too lol
no it wasnt
but thanks
Gave +1 Rep to @glass nest (current: #19 - 477)
If it was on one the the old events, I guess I didn't remember.. Sorry π¦
when was the last time u ordered something?
I know what you need!
Errrrmmm.. a week and a half ago?
Pizza from Domino's
hahha yeah it was probably years ago
if u have the funds and u have been good and wokring hard
whats the harm lad
Beerise - Nah, I'd rather the store make pizzas for paying customers rather than lil 'ol me
Especially on a friday night on pay weekend π
Hmm... 'working hard' may be an overstatement :p
sometimes u just gotta treat yourself
great show
the Ron Swanson (and a few other people) show? Yeah, was great
Apart from the Non Ron Swanson parts
probably one of the best written characters in recent tv history
And i reckon it wasn't really 'Written' , feels like offerman just.. was a caricature of himself π
yer i can see that
random interjection - is there a way to make something like a pull request for the uh... "task text" on rooms? or is that just a ticket in the chat menu?
Same as audrey plaza. Apprently she auditioned, and then they created the character for her
Just copy/paste it?
Hello
Sup Heap π
h e l l o !!!
Got some gaps in your text there, MV
Perhaps I mistyped - I mean to make a request to update the text on the site.
Oh, That would be #room-bugs I guess
if its the room i think its probably a typo
Ah, ty Uncle E, if only I'd scrolled down a little ...
and ty Dee - in this case not so much a type as lack of info (and I suppose sometimes ... perhaps more often that I'd suspect, that's intentional).
typo, that should read.
just give the room a couple reads most of the info rooms its there
sometimes u gloss over something u dont realise u need
LOWKEY DONE THAT ONE
rn im stuck unable to debug shells for example but im working through with the info i got ill get there
thats the spirit
he says as my spirit leaves my body
Your sprit might be able to cruise through networks
yes the networking rooms xd
eddie and venom are genuinely like a couple who have been married for 30 years
anyone wanna check this? am just new to this stuff
https://github.com/miskuro/jinx/
I don't wanna click a random link on a hacking server. Even if it is on github
oh lmao
I clicked it lol - what's the question?
Shrug. Dunno.
just check it out if you have any thing to say or note lol
it's not a hidden link
Coeus "Danger" Ramone π
its just a encrypting script I put on github
with C language
i just started learning C
Like bro for real @analog stream or @mossy river .......my eyes are killing meπ₯²
never used C++ in my entire life so idk
sounds more and more sus
XD
poor jabba he cant make it appear sooner
december
You just pinged a random user called admin π€£
xd
Or as a fix for now, I use DarkReader extension on Chrome
idk if that's encryption, but on a quick scan that appears to do what you say it does...
not really encryption it just flips bytes lol
^
Ill probably make real encryption with the same logic i used for traversing directories and subdirectories
god damn it
Bro did actually replied me with a specific date thoughππ
oh cool, thanks
Gave +1 Rep to @glass nest (current: #19 - 478)
December 1st 
wait frfr?
Oh I was wrong
Something else is happening on the first on THM... Can't remember what it might be....
Ahh, I remembered! It's when we don our santa hats π
I guess i'm not here π

Has anyone seen Jayy recently
jabba i expect u to be draining the life out of your heating still or ill be annoyed xd
Tesla, you could refactor that into a while loop that calls a function and condense the hell out of that code.
The function would be 'if there is a sub directory, keep going (idk, return 1), else, don't (return 0) and the while would call the function until there are no sub directories.
Little slower performance, but easier to read.
Depends on your priorities I'd suppose.
jabba - i think I left a window open. Probably flew out

I was cuddling the radiator earlier
good! revenge!
lol......ya'll had better be quick please sirs and my lordsππ
xD
No new room tonight? π @umbral bay
Haha, You are relentless, Scrubz π
Right... Gonna refresh some knowledge on Windows/AD. uggghh. gotta be done though
anyone here watched the originals?
no, just the remakes.
..
It's friday. I'm in a silly mood.
god damn it
You should watch The Originals, it's so good
300 days to go
Is anyone here actually working in IT
bella
emmers
think muiri
I was just giving a random trivia. The answer was /usr/bin
many many people
captchas getting too complicated

yeah it's so annoying
Cooll
hi
I just be tryna log into roblox and I gotta solve 14,583 problems π
Hey! I designed that one. you can tell, right?
hello
Yes Mr Pizza man
Well,I appreciate it, the more I lean the better ... I suspected /usr/...
would be (well round about) the same on my mac.
Coeus - Might be worth looking up and noting a few commands that help you find files on linux. Will save guessing π
Oh I'm rather familiar with a terminal emulator Esqy - but linux organizes things a little differently.
Granted, yeah
Hello everyone , does anyone know what specifications I should look for in a laptop for a cybersecurity eng student?
VMs crash a lot on my 8GB laptop
Honestly I couldn't suggest a laptop if you're looking to run many VMs.
^^ what Jabba said
Still a student only need to use kali Linux
You're going to want to look for one with >16GB RAM and that can support Virtualisation for at least a smooth experience
some donβt support??? How do I know
Some don't support what Kira?
Tbf a decent ex business laptop with 16GB is a good start
Do I have to care about graphics card and those stuff about display that increase price ?
Virtualization
Is there any site or some where i can see which skills are required to complete which rooms?
(Except entering room and reading the details)
we enable it from bios I thought all laptops
Not really no
You'd want to focus on the CPU rather than the GPU
And also I donβt want my laptop to turn into an airplane in class so what makes it quite when running codes and stuff?
ok okk
power savings options
most of the ways to save power also makes the temps go lower which causes the fans to spin less saving power from fan usage and from cpu usage
Not that it makes it laggy and slow
Β―_(γ)_/Β―
Gaming laptops have good fans but still noisy (even without gaming) I thought the more fans the quieter
Virtualization is software.
You've seen machines that don't support virtualization software?
Perhaps that's true, but can I get more info?
For example, would the same machine not suppot docker?
I was asking when someone said to check if laptop supports VM cuz I was shocked to know some donβt support
shadows gaming laptop form 2017 is extremely quiet when using auto-cpufreq
just download oracle and enable vm I thought itβs possible on every laptop
very few cpu:s don't support running virtualmachines anymore
Couldnβt find it on Amazon in my country >.<
Oh thatβs a relief
Iβll send some options recommended by chatgpt if u can all help me pls
Yeah, I'm not familiar (even with <= 8gm ram, 1.x ghz processor) machines that "don't support" virtualization
i finnaly made this room https://tryhackme.com/r/room/catregex
Not that those are ideal specs
this was the most painfull room i made so far
took me almost 2 days to make it
@sand trench
ay u proud of me?
yeah nice job cab
was doing a python course and actually didn't have python installed, const is smart
I'm pretty sure I could run a VM on a commadore 64 ... I might try that later ...

@sinful moon Coeus was think about running a VM on a C64. thoughts?
(She is our vintage computer expert π )
evening elizabeth
heya!
Not gonna be easy, but ram is ram, and cpu is cpu
There's hardware extensions for virt too
There's also the resource requirements
It can "technically" support virt but VMs could run like molasses.
It's not like machines today are all that different is all i'm sayin ... better screens ... memmory is "free"
Possible perhaps, but maybe an unpleasant experience
anyone wanna talk shadow out from doing linux from scratch again???
-
Lenovo Yoga 7i 2-in-1 Laptop 16" Touchscreen Core Ultra 7 Processor/16GB RAM/1TB
SSD/Window 11 -
Lenovo IdeaPad Flex 5 Convertible 2-In-1 Laptop
With 14-Inch Display, AMD Ryzen 7 5700U
Processor/16GB RAM/512GB SSD/AMD
Radeon Graphics/Windows 11 -
Asus TUF Gaming A15 FA506NCR-HN044W
Laptop With 15.6-Inch Display, AMD Ryzen
7-7435HS Processor/16GB RAM/512GB
SSD/4GB NVIDIA GeForce RTX 3050
Graphics Card/Windows 11
oh James - Did the switches arrive?
Is there a better way? I donβt want to buy a laptop with Linux operating system if I can
HAPPY BIRTHDAY @sinful moon !! π₯³
Why would you even think C64 could virtualize anything including its self? Now emulate, it sure can but itβs got a weak af CPU, so not sure what is even the throught here
I have a lovely assortment, some real vintage ones
Better way compared to what?
Thanks! It was on the 25th so this was just a late delivery
I mean to use kali Linux on windows without my laptop crashing and turning to airplane from running VMs
No reason not to shadow lol
technically windows subsystem for linux exists
to your ealier LFS question
the thing is that we start this stuff next year according to my study plan but they are too slow
fair... the documentation reading on its own is amazing to learn from
mhmm great learning experience every time, but fair not much practical to do with the install after lol
I didnβt know such a thing existsπ
maintaining it is a pain in the butt
yeah usually do it in a vm anyways
mhmm
so the vm rarely stays forever after
but like does it have pre installed features and all the stuff
what are you even asking
basically yes but it is more or less terminal based and has some problems with the network stack
you mean the Kali version of WSL?
kira is asking if kali linux in wsl2 is okay
I mean it works, but connection to THM will be more trouble than it's worth.
itβs better for development work
If you just want to run a single VM, usually that's not a problem
ALso don't get access to hardware with WSL2.
Lots of CS stuff is "cause I can" ... remember when doom 2 was ran on a pregnancy test?
It's about understanding machines, not necessarily practicality.
Iβm still inexperienced to participate in catch the flag thing competitions cuz Iβm still a first year but the price money is too tempting and I have coding experience lol
I will always recommend second hand business grade laptops, they offer an incredible value for money
It wouldn't let me run an emulated android.
think bluestacks is for that scrubz
Thatβs fair but how are you going to virtualize anything on C64, and again too weak to emulate much of value
yeah I think
also good lord not looking forward to compiling web browsers again
idk yet, but now i'm inspired to try!
Bluestacks isn't compatabile with Android Studio.
guys can i delete my payment method? I feel safe that way, cant see an option
ah
Contact support.
and both options are awful indeed lol
There used to be a chargebee URL, but that no longer works.
are they helpful in this?
if even gentoo decides to ship browsers as prebuilt binaries there is probably a good reason
I should hope so, it's their job. 
Browser compile longer than kernel compile these days lol
I have trust issues tho >.<
hahaha yeah
not a good sign when kernel compile time is the metric for how long everythign else will take
Hey it's your choice
I'd rather spend 20% of the money and get 90% of the performance
After two weeks of contstant work arounds to get my VM's to recognise VT-X.
I remembered I had an android phone that I have spare that I can just plug in to get my android exploitation and analysis studio up and running. 
just go out and buy a second hand android phone scrubz.... what is the worst that can happen
yeah lol significantly easier indeed Scrubz
And faster.
That'sreally interrsintg - is there history to that?
How do you mean Ramone?
Understandable fr
Browsers are just bloated these days and take forever to compile
standard compile units is a thingy
it is indeed silly that kernel compiles faster
oh yeah if you mean what shadow mentioned, yeah thatβs a well defined thing
Btw is there any good option between those for high speed coding/ no crash / no noise
"high speed coding" doesn't take much to run.
lol the one I run into most often in every day use, the Python 2.x compile. Holy heck, plus you have to pass tens of thousands of checks lol
that one is not fun
Python3 >
what are you on py2 for?!
Whay would that be the standatrd? I mean, it is a good benchamark, but is there some reason we decided? Like you mentioned browser takes longer, but is ... maybe, probably the most important software we have on a machine. So when did the kernal become the choice?? This is totally new to me I'm not sure I can ask good question here, just looking to learn more.
for Gentoo and LFS, compiling the kernel is a given. So since you have to do that every time, you can track how long the compile takes and the rest of the guide uses that as a unit of measure of how long (appox) other software will take to compile in comparison
if you wanna go into linux from scratch
though recommend doing this in a vm on a desktop computer with decent amount of cpu cores and ram to give to the vm
Both distros are all about compiling everything basically, although as shadow notes, even Gentoo offers binary packages for browsers since compiling them takes even longer than the kernel lol
linux from scratch is also a time investment
And yeah Linux From Scratch is a good experience for anyone interested to go through at least once in their life
and after you most likely know more about compiling and what package does what
yeah it is far far from trivial
you have to compile the build tools which compile the actual build tools and more to make everything self hosting lol
followed along a video of someone doing linux from scratch once... but wanna do the entire thingy sometime
Oh I wouldnβt recommend a video for that, yeah the docs are more than enough
Itβs not a practical distro to use, but is invaluable for learning
well they had the docs up on the video through the entire process while chatting to chat
totally fair lol
the problem is they stopped a with vods of said livestreams before finishing it fully so there is some end parts shadow dunno how they work
yeah just follow the docs, they are very well done, and you could complete the rest, but yeah a new install depending on how long this has been would be good
well swapped pc since last time so would need to do from start anyway
lol totally fair
Yeah they get point releases as well which is interesting
I am all about low level operating system stuff and as with my use of Arch, itβs just neat learning how and why everything fits together, especialyl with how modular Linux really is
especially compared to FreeBSD which ironically is all meant to be a part of a single whole, one project for the whole base system.
did you know sed package is responsible for the clear command
I donβt think thatβs entirely true depending on your shell and more
but it may be true for some shells
isn't LFS just a masochists dream
Itβs good experience, and like I said, not intended to really give you a distro you live on after youβre done
Setting up email servers is
what server you using LOL
i don't want to talk about it
Self hosting email is always hell lol
π
brb
isn't there a script lukesmith made to make setting it up relatively easy
getting google and microsoft to not block your own made email server and email adress is nightmare fuel
^ this and more. Itβs one thing to set up an email server, thatβs relatively easy, but maintaining it and your reputation with other vendors is the real battle
mad respect, but I'm not sure that answers the question - I see ur crazy busy in chat so do what you do.
Once a kernel is compiled, we move on to software? Correct? some software takes longer. It could make sense to benchmark at the software level, right?? (yes, a kernel is, in a sense software, but it has super special privileges that other software doesn't)
To me, and I'm happy to learn more, the kernal is just another software (like browsers) and (although they're bloated af agreed) why is that the benchamrk?? citing OS's that ... exist? IDK maybe there is something important there I missed, doesn't create a standard in my head.
yes SPF/DKIM/DMARC help, but thatβs not the end of the story by any means
What are you asking? Basically in LFS once you compile the kernel thatβs your benchmark for approx how long other software compiles will take. And no there is nothing special or privileged about a kernel compile vs software compile, itβs the same deal
Itβs just a very rough measurement and not like an exact unit, just giving you an idea
Pretty sure Gentoo does the same sorta thing for its initial setup but I have less experience there
its sorta similar on different oses. I was asking for linux. On windows theyre held usually at C:\Program Files or C:\Program Files (x86)
I dont like that theyre not under a user account folder.
Why not, Iβm not entirely sure I understand the question. In Linux things are even more correctly sorted by the filesystem than in Windows
^^ apparently I can't add emojis or I'm too silly to find it -- heart hear heart.
If you've used Windows for all your computing life, sure, the way files are orgnaised in Linux is different/strange
Typically binaries are in /usr/bin, system wide configs are in /etc and local configs are in ~/. or ~/.config generally, $XDG_Config_Dir more specifically
What I'm asking what why OS is the benchmark
Hah no problem and you just need to verify your account to access that
because you have to compile the kernel before you even proceed to anything else
This is intended
Right, so what about the "anything else" is that is there not a level of importanse to all those things?
I think the windows filesystem is strange. I like linuxes more.
And the reason both are the way they are⦠legacy cruft
Heck in Windows 3.x we didnβt even have Program Files
"Is there not" that should read
hi elizabeth happy belated birthday
Not sure what you are asking yet again, really the βStandard Compile Unitβ is just a silly rule of thumb whilst you are compiling Linux From Scratch or Gentoo in the docs
Thank you! 
Gave +1 Rep to @wind lake (current: #68 - 119)
Windows doesn't keep program files in a users folder for Data separations, access control too, files stored in program files will be accessible to all, where as the users folders will only appear to who has privs.
yeah I couldnβt remember off the top of my head lol
Also Windows profile folders will change alot more than program files.
%appdata% is complicated on windows
Also Microsoft had to force some standards on devsβ¦. which itβs up to them if they use or not lol
yep like that
storing user specific things in there is a mess
On Linux it was much more agreed where everything goes
shh we wonβt talk about /opt lol
exactly. imo not the best way to go about it all.
cause if not encrypted, you can usb boot and read all of the program files, despite ones that would be hidden to a default user.
On linux you can set up LVM and have separate /usr/ folders with their own binaries, which cannot be inspected, as well as other folders separated in their own protected partions such as /tmp
mhmm and we have standards bodies which help to define these standards especially the XDG ones as I refrenced above as well
To play devils advocate, moot point if the entire drive is bitlockered
I could poke even more holes in that though
If somebody doesn't encrypt their drive, that's their issue.
yeah thus the if not encrpyted part. that is true. but go ahead id like to know what else
Although, I'm sure even if it's not encrypted, you'd still need a password to look at some folders and files.
"Silly rule of thumb" -- Exactly what I'm asking about -- do you know of a history to this "rule of thumb?"
I find (for me) the history of "automatic computing machines" guides me on how to understand purpose and possibilities of the devices that we use on a daily basis.
Brett Victor??
Ope, one T, just "Bret Victor"
what lol
you do not unless you need to unlock the bios to boot from another drive
but yes, their issue if not encrypted. But in lots of places with lots of public accessible computers i havnt seen encyption or boot locking
removed the drive encryption on shadows laptop while in uni to quickly be able to start and shut it down during class but yeah... don't recommend doing that
when your passphrases are generally long there might be reason to think twice about it
I donβt know the history of this, it is just sensible to use kernel compile time as a rough measurement of how long compiles for the rest will take. Itβs not exact and it doesnβt have to make sense, anyone could have thought of it
I take my laptop to Uni, it's so much better than their system.
Youβre forgetting another protection that we actually use at work for our publicly accessible computers. Immutable filesystems. Upon reboot everything is wiped and itβs back to the same base state as it started
probably for the better. Idk about my uni pcs, but in hs if you signed in a copy of your user documents was made, meaning your projects can personal files could be stolen by the exact method of usb booting into an unencrypted pc.
So if nothing is actually stored, who cares
yeah ive seen them go on where they have their backups and then a cron job to revert them at the start of each day
Elizabeth, I really appreciate your participation in this convo - thank you so much for being here and helping all of us learn.
but still, similarly to the school account and files situation, the user files are still held on the system.
Surely still including im sure the user profiles for browsers. Which is a problemo for the users of the systems.
No problem!
I mean this is just handled natively in Windows via filesystem permissions and Group Policy. Fair I did some things in high school which invalidate this, but that was because they didnβt use proper permissions and more. You donβt need full on encryption per user, you just need to properly administrate how your filesystem and shares work
Hacking is in your blood
I get where youβre going though, yes if a user logged into a domained computer with a Linux ISO and just poked around, they could get to each usersβs %APPDATA% and suchβ¦ but thatβs what Bitlocker is for
A hacker embodies a boundless passion and insatiable thirst for understanding the complexities of a system, computers and networks in particular. They revel in the pursuit of knowledge and mastery, constantly seeking new solutions and opportunities for growth. Their drive and innovative spirit inspire and are inspired by the hacker community, where ideas and knowledge are freely shared and valued regardless of their origin.
--Silk
but typically the rest is done via Folder Redirects to a file server or similar, and it doesnβt even live on the local machine
itβs really only %APPDATA% and such that will remain on the machine per user
again to get into very specific windows admin situations
lol itβs not heated and Iβm a gal but thanks c:
^^ It's not, all is good bro π
You can still be a chill guy if youβre a girl!
lol no complaints there!
lol I want that gif but with nuclear bomb going off. Thought that was what it was at first
btw they should have used dithering for that gif, that is some atrocious banding
Hello
lol not much better, other issues here
lol graphic design is another field I almost went into
Atleast this one moves more than 1 frames per year
Graphic design is my side hustle!
Excellent π
But I got myself an M4 Mac Mini and x3 1440p 144Hz monitors for my work from home setup
Elizabeth, I would love to talk CS history with you sometime (I've got that C64 in my bedroom rn, use it every night), I know I'm new here and exactly no one special to you or anyone else but it'd be cool to get to know the resident expert on "classical" computing.
best to the chat, I'm off to meet my learning goals for the day.
Mac Mini is just my side infosec computer in that setup
I thought it might have been The Book. the one thats been advertised everywhere about starting a civilisation from scratch π
I am all about computing history and Commodore so no complaints. Retro computing is my jam so ask away and feel free to add me
I'm also new to discord and don't know how to do that .. I'll google some shit lol
Iβll spam my pride and joy which others have seen endlessly, my 1999 Pentium III machine
Oh YEAH!!!! ... we're gonna get along
hah I bet c:
absolutely gotta encrypt the system and it gets rid of the problem. But weird so many public networks dont. I dont think I have came across a public network that isnt crappily put together, allowing some weird misuse. I live in a smaller town area though.
but I definitely plan on pushing advocacy to stop this around here.
Yo, before I dip, I'm for damn sure trying a VM on that C64 toni.... over the next few days lol
Yeah which is why I mentioned the bitlocker, Group Policy and more, but I get you. I for sure found issues in our school computer back in the early 00s, just yeah responsibly report them
Look forward to seeing that, Ramone π
lol I still donβt know what that means or entails, but good luck
just emulate Mac on your Amiga for a better time
We'll figure it out together!
my last day of HS i had the IT guys huddled around me on their computer and their jaws were literally dropped. Ive been thinking for years to go back and check up on them. They at least admire me enough to where I think they would let me come in and check a few things out.
lol for the sake of the community rules I can not discuss what I did in high school, but needless to say there were issues
Because with what was present, entire takeover of so many parts of the network seemed quite easy but of course I didn't cross any lines where I shouldn't have, and showed them the core principals of which allowed me to do such things. But, i doubt they did much to fix it.
always yeah responsably disclose any issues you find
mhmm perfect
things were just different in the 90s and 00s Iβll say lol
Yeah.. we don't have 'boost' buttons on our computers anymore π
It is invaluable experience when you get into the workforce though
Turbo, excuse me Esqy lol
but in bios xD
I could do a lot for my local community i just havnt been sure how to officially get everything in a legal standpoint to where i can offer consulting and not immedietly get into some mud. I understand responsible disclosure and the penetration testing process, meaning that I know that I need permission and a defined scope of engagement.
For these businesses and establishments that dont consider security in the first place, I don't know how to offer it to them.
Even at my last hotel I stayed at I suspected a security issue with a few things and tried speaking to the manager but he was never in while I was there. I have his email now and grabbed some info before I left to research it remotely.
Typically bigger businesses will have at least a legal disclosure policy or a security@companyname.com to contact. It is extremely rare they will go after you if you are doing responsable disclosure and have not leaked any data. But it all depends.
If this line of work interests you, you can do so professionally and even independently via HackerOne where they very publicly ask βplease attempt to hack usβ which proper scope and guidelines
find a pentesting company that works in your area. there are a LOT of legal stuff.... ok, Noir has it covered π
mhmm and that too, not hard to do so with the right firm either
Also Hotels are a nightmare for security so Iβm not suprised
lol let me look up a PMS (property management software) vuln which made me lol
consider this login screen is still the state of the art for many hotels lol
looks like a cheap routers web interface π
yeah the article its self says βgives off Geocity vibesβ lol. Not wrong
I wonder if theres a <marquee> on there anywhere
I vaguely remember a circle? Like... links to other websites along the bottom
o/ ello
working with PCI DSS compliance and other concerns, yeah Iβm now quite a bit more paranoid about how lax and ancient the security and payment platforms of many public locations are lol
no no, i'm not gonna browse oocities. Not again π
Yes that hole in the wall no name gas station or liquor store you just went to are subject to PCI DSS compliance concerns as well and holy heck, I can gauntee they are not up to spec lol
for those not aware PCI DSS == Payment Card Industry Data Security Standards (aka credit cards/debit cards)
Gotta get started somewhere. Been doing cybersec research for 10+ years. At this point I have some strings being pulled to set a nice path to get more opportunity to do what I'm good at.
Sup, ElizabethNoir are you fr ?
Totally fair, but as Esqy mentioned itβs best to get under a firm than go indipendant
i Dunno about where you are, noir, but over here pretty much every payment processor requires the PCI DSS, or they terminate the account
No I just thought it sounded cool and mysterious lol
also I just like film noir as well lol
i read 'fr' as for Real? π
Ill share what one of my biggest insights was to my personal experience:
I have self taught myself a large amount of cybersecurity methodology and concepts;
But I have not taught myself how to make money and contribute my specific efforts very well.
A lot of my research can cause problems if I release it, so I don't release my critical research on things like github, or to the public at all. My github is very different than what I primarily do.
That is worldwide, but yes Iβm in the US. But requiring and being compliant with such are very different things lol
Hehe, yeah
@sinful moon π π€
I also realized going to some cyber conferences and talking to the speakers and asking questions the hard realization, that companies do not want to pay for cybersecurity. They rather tank the damages and pay for it seems to be the unfortunate trend. But I won't give up. Its important we advocate for greater security.
Glad to hear youβre respectful of responsible disclosure. I too am self taught, not sure what your statement means to achieve however
Well thatβs where you would be surprised, cybersecurity is in huge demand and is what I do professionally
I literally work in a company with a dozen employees yet I am the cyber security person, I have both saved the company and our clients from numerous threats both potential and active
I stopped a threat which could have ruined our business even, so there is a market, even in small business
Do you have some sort of degree or have you fully learnt by yourself ? 
I was sharing along the lines of how its two different things to teach yourself and to put that into practice. I noticed very early on there are people who know signifigantly less about the feild, but still are actually a part of it at some capacity. Which is success. So I have respect for that even looking from more of the bottom of the hill up at those who are the kings/queens of the hill.
doing the research I do doesn't fall under the category of something that would be front facing to employers, because it is held under personal classification.
They key is to not do anything unethical that can get you into trouble beforehand.
Fully self taught, but I did luck out having connections which helped get me into this job. But yeah Iβve been learning infosec since the early 00s
Thatβs fair but Iβm still not sure what youβre getting at, you have some pretty darn marketable skills. Why not work at a company which gives you greater peace of mind and consistent pay?
and potential connections
A Manage Service Provider is a great start since you get to test the security of dozens to hundreds of different clients
makes it hard to get to do what I do professionally. I would be best at physical penetration testing engagements such as red team. I have tools I have made that other researchers dont have access to since ive never realsed them, and i feel that gives me a unique edge and approach at simulating what a real world threat could do against a company. I can write nice reports too.
right now im working on getting basic certifications since theyre cheap and short so its a good start. I wholeheartedly believe I can get the somewhat industry standard certs like security+ and such, but havnt been able to get the money for it. I got a weird story man with how i went about learning all of this and getting into it hah.
So i guess also pro top: Right now ISC2 is giving away certifications guys, i say check em out.
what
In 10 years jobs will rain like cash (not really, but it's what I'm believing)
automate - they say that every year.
I've not known anyone personally who is in the industry until I got to take a trip to my university recently, which i impressed the staff and alumni there.
But I think my biggest problem is I havnt been able to build that bridge to get to put myself to good use. I am talking a little bit too much now but i wouldnt mind clearing it up more over time here perhaps. not really sure why im sharing so much to be honest.
You are like really playing things up in suspicious ways. You are more than hirable. Not sure why you are being weird about this
I got offered a few paid internships. I think I might take one for the summer to get some experience under a company and use that to put my foot in the door somewhere else.
Uncle Esqy, I'm still optimistic about how things will evolve 
Sounds like you are still a bit younger and still learning, nothing wrong about that, just give it time
Good to stay positive! Luck is when preparedness meets opportunity. create your own luck π
building those connections will help though, with people into infosec and in person etc
Yup !
I am sorry, I actually don't know what you mean by that but my mistake.
You might say that because of what I say I research, and that is just attributed to the fact that its me researching what is possible. And I have found a lot under my sparse resources, I know with the resources of a company I would be very valuable.
An example of why I am so vague is because some things, are just wild. One project I want to get a gov contract on (for data to simulate the attack) and potentially talk somewhere about it. But this project is another part of my confusion on how to execute my research in a meaningful way.
To not give too much information I created a framework which is very powerful in terms of attacking a networks WiFi. I see no real world way to stop it. But a project like this is not only a danger to a company because of what it can do, but in general WiFi accross the glove.
And I don't have any other researchers included and I've never released something like this so its kind of stalled in a state where I don't/feel like i can talk about it much.
Eh im talking a lot and a little flustered right now cause I got a lot going on but sorry for sounding suspicious and being a little convoluted with my messages.
Honestly as someone who doesnβt have a degree or anything I worked random jobs for nearly a decade until I got my first IT job just as Help Desk. Within a month I was immediately recognized for my infosec skills and just kinda became our sole infosec professional, along with one of the sysadmins. So yes just getting your foot in the door can be invaluable
Definitely been considering starting as a help desk.
Sounds like Academia might more be your jam. Not great money, but a lot of freedom
Starting out in help desk can be invaluable, SwiftOnSecurity which you may have seen online got his start the same way and praises that background up and down
Jesus why all the THM CTFs start with a dirbuster on port 80 
Yeah Im currently a student. I finally had the money to enroll, got into a really nice school for cybersec. heavily awarded for its program. but to me its weird. everything has been so damn rudimentary. I just want the degree so it shows I can go through and dedicate myself to a program to get x piece of paper
If tou do Web rooms, then yeh, they will :p
so at least thats smooth sailing. my school is a side concern, im still working on all of my other stuff in tandem. Just took over a website i am now the CEO of a cybersec blog I think will be really good for my resume now too when trying to pivot into the industry
Iβll just say thereβs a reason I didnβt go into college in the 00s for IT/CS, but there really wasnβt a pathway to infosec back then. Things have changed so I canβt really advise you there
So put effort into the degree. Many '/r/iamverysmart' fo;l say that they 'didn't do well in school because it was too easy' and then it bites them in the butt. Getting an 1/1st/whatever will open up a LOT of doors. Especially if your final year project is good
Yeah I mean I recently got to meet alumni and stuff. I feel generally like its not as important as it seems to be outside of it. For me personally though. I see a lot of my classmates are learning new things and getting those good insights and admiration for security.
If youβre already there, stick with it and see it through
Im gonna get that degree though, and pick up whatever certs I can afford. Working on an ISC2 path right now cause im trying to utilize the certs from their grant program. CISSP seems like the end goal from that.
Honestly the diploma is good for the paper and somewhat the large amount of diverse data you ingest, but learning infosec by practicing and tryharding on your side is far more valuable... Not in the market though, so don't drop college
this
mid my pc has a 4090
are you in the United States?
I went back to school for a similar reason
80 is the default http port?
lol this had an Nivida TNT2 until I swapped with 3dfx Voodoo 3 2000. Get on my level
yeah well even my project I talked about I believe is HUGE, way bigger than anything my school would direct me to research. I genuinely believe I can talk at a con with this. But... With that specifically I need responsible disclosure, since its with virtually all WiFi im not sure if I should contact the FCC or what. So still figuring out the non technological bits of making the full blown paper. But once thats released it will be very useful I think to the world at least, and my papers im making for school arent generally like that.
my bad
Yep US.
Scrub, I have a doubt now π€
lol no worries, you just need that 3dfx advantage
fr
?
side note which is what I was trying to emphasize but I feel at a stalemate and cant really release this without probably a shit ton of things happening before, which might not allow me to release it because those things aren't realistically gonna happen to stop it. Unless they do and I really changed WiFi. But I will let my fellow computer geeks here know when I get to that point. Projects been out for just over a year.
Scrub I don't even see scrub now on phone
the framework can be used very maliciously if I released it, and it only costs $50-$300 in hardware to be able to use it. I used a WiFi pineapple for mine, just to go ahead and have the different modes on my antennae
get peer reviews on your research even before submitting it, if it is as big as you say, you need more than just a second set of eyes on it
NTRK - Which is why I mentioned academia.
People to talk to about it, and the connections/opportunity to present it to the right people
nulled, leakbase, exploit.in, etc...
thereβs a lot of issues with WiFi but most are extremely well known, so you can understand why I may be abit doubtful of your claims, but just get some feedback on your ideas
An MRes is kinda designed for this sort of stuff
Again not here, but with trusted and well informed professionals. WiFi cracking is where I got my start so I am more than interested and thus why I am also a bit more skeptical
untrusted human interface devices is where shadow started with hacking if you don't count shadows minecraft modding days
it is a multiple exploit chain. The foundation of which is the evil twin attack. Its alright to be doubtful, I understand I am extremely vague.
When I talked to a government worker alumni at my school this october, he understood my classification and I told him the baseline of what I can tell him, he looked visibly scared and told me "yeah, you're definitely on a watchlist.". However I am not worried about that statement because I am very ethical with the way I conduct my research, which he had even attributed to my level of vagueness about this specific project.
You can see the bite marks when I release the paper :)
Sure, I look forward to seeing any released research, just make sure to do it right for sure
shadow is on a few government lists
Thereβs just a ton of established research for evil APs and etc so Iβm quite curious what is novel which you may have conceived of
- for downloading tor
- for downloading tails
- for using i2p for a bit
Aside from deauth and cracking the pass WiFi is well protected nah ?
I mean gov could just evedrop from the roots of your bandwidth
Which standard would be vulnerable?
I actually didn't bring my project to show my professors cause I was worried the gov would go into my hotel room and swipe my drive if I brought it. Or copy it. Even though it is encrypted. I have a drive that I usb boot with just this projects data on it, so it is my development environment for the project. And its not like I havent talked about the fact I have it. As I said im not worried about what it is, im worried about what it can do outside of my possesion. I know it can be considered valuable information so I keep it close as I would like to benefit from it without it being stolen.
That is the question that has been nagging at me as well
nah it is painfully easy to disrupt signal and thereby doing denial of service
virtually any wifi network allowing ICMP packets to be sent.
Regardless, the framework does not NEED to send ICMP packets to do what it does, but doing this allows it to get all of the wireless clients.
uhhh
for example place your wireless access point on top of a microwave and then wait for lunch time at your company.... the wifi will suddenly drop through the floor and people will not be able to use the wifi easily
Judging from that, I'd say no.
it works on 2g and 5g networks, the ones ive tested on was using 802.11b im pretty sure
Yup but harder to crack it clear
wpa3 is looking promissing shadow has heard
so itβs not a wifi issueβ¦
to be honest not read the wpa3 spec yet
i am so for the feedback, because of course doing the research ive looked a lot at difffernt points. What is the core of the problem then?
WPA3 is nice.
So it's a layer 3 issue?
I am essentially hosting a cloned network, in which the clients are now all turned into targets. Of course you can try to downgrade connections take data, but it does more than what you would suspect is generally capable from this position on a network.
so none of this in what I have told you guys is new
okay, well good luck with whatever it is
yeah haha im sitting here trying to think about what i can say without just saying blocks of information
thats within what I feel comfortable sharing
but yeah
its cool
Yeah probably the best take, let this cook whatever it is but Iβm not entirely convinced itβs novel and of the correct scope
Good luck for sure!
I wouldnt say directly level 3. I cant really break it down either. But yeah i mean thanks for listening to my little bit of info.
I agree though noir
Iβll be more than happy to be proved wrong
I dont think that I directly know why this is such a problem myself, I just know from my testing its bad.
if this framework were deployed at something such as an airport, i am fairly certain a lot of bad would happen.
Noirrrrr!
Heya!
I spent like 5min looking for a "Hello" type gif featuring The Boys' Vaughts' 7s Black Noir.
lol I have a new Mac on the way MacATtack lol
from what i have looked through, I dont know what to say to make my framework not be so dangerous. You could disable ICMP and have all users use a VPN, but at the same time theres problems that lie outside of those mitigations.
M1 replaced by M4 Mac Mini as my work side infosec computer
lol I specced my M1 too low but I didnβt know how hard Iβd use it
The doorbell just rang..
Hey, why is there someone with a human sized trunk? Also, why does this napkin smell like chloroform??
lol oh dear
I would go into the program with an open mind,
and I highly recommend that you participate in school clubs / activities.
We get government employees from 3-letter agencies visit our campus, and without going into detail,
I know they pose as "students" sometimes.
So leverage your network, and show people what you know, keeping in mind that you're leaving an impression
π you putting a show my friend that stuff you hidding look tasty
yeah ill talk to you guys more when I get more info I feel I can share and more progress on releasing it. I cant say anything past what everyone is likely already familiar with, nothing new until you get past that point then even still its just the fact this is all strung together how it is. I havent seen any similar projects.
Nomnomnom.
Yeah will be nice, I am excite. My Mac is 1/3 of my work from home monitors
I wonder why theres no similar projects
also have 3x new monitors on the way for that same setup to replace my shitty mashup of random displays
@latent nacelle
I just started network building around the first time i got to visit campus. I mentioned this project to the peopel who seemed higher up, they cant really help me either. But I have been gaining useful insight on where I should be stepping to get to where I want to go.
@dark frost It would be very bad if I shared this code π Hopefully by the time you see it its not a problem anymore.
If it is still a problem, you won't be seeing it. simple as that haha.
unfortunate for the bad guys
but good for the hundreds of thousands of people in and out of high traffic public wifi access areas
each day
:D
Pretty much lol this is not a new threat, so I would be curious what you have to bring to the table
fun little thing. But as I said not necessary. can definitely get a cheaper setup to have monitor and promiscuous at the same time.
@hazy sundial please don't be rude to members.
i see you also on hak5 π
yeah as I said none of what I mentioned is new, and the stuff after I am not sharing but not all of it is really new either.
truth is though
if any similar project existed, it would be used for a large scale attack.
Any why do you think it doesnt exist?
did you saw P4wnp1 project ?
alright ill tell ya why i think that
people who can communicate themselves as a valuable business asset seem to do pretty d*mn well,
just be humble, keep an open mind, and don't expect anything from anyone
can't wait for next semester, as I'm coming in fresh with basically no knowledge of cybersecurity
if a criminal organization had an identical framework to what I have built. For virtually free to them, seeing as this would be considered a (bad word) attack, they could deploy this en masse across a country. Lots of important business people come in and out of these large traffic areas, do not want to mention the specific type of place, although I already have earlier.
But for a low price, a criminal org can passively get massive amounts of data of potentially valuable individuals with virtually no way to stop it.
I think if an identical thing existed, I would see it on the news somewhere.

Fair so get to it and write your paper and publish and get peer reviewed
And you don;t see it on the news. nor evidence that it's been deployed. What would that indicate?
Ok ok, I'll stop π
haha I am not deploying it I run my access points using mac whitelists.
what you saying is dangerous , that imply there is something to work with wifi somehow π they is something wrong in it , with some of it protocols used
dark mode when
Yes.
I called literally half of the public libaries accross the US and escallated to their IT department. I wanted a PCAP file of theirs to run a simulation to see what would have happened if I ran it there. just do a packet replay.
However they told me I need a government contract for that. So that I believe is the next step for that.
Info - Right now. with DarkReader
yo uncle i made it through!
lol yeah I use DarkReader myself for such
excellent, Dee π
now ive had home made moussaka and got figs and dark chocolate
had some help from the kgb (was using a port too low for the user i was exploiting)
wait huge ty
Gave +1 Rep to @glass nest (current: #18 - 479)
I mean we can probably assume that. Its not even based off of just protocol or just wifi, its just how it works being a user connected to WiFi to be honest.
Youβre still typing so let me be frank, we are not interested until you publish your research
It would be nice to get another researcher who has disclosed something similar to give me insight on how exactly I should disclose it.
Dee - Help from the KGB. Love it π
i see them helping all the time fire helper icl
rude?
@sinful moon Hiya Frank. Can I still be Esqy?
sure!
(Sorry. Was too easy)
understood, what are your thoughts on the bit I said about my next steps. Think that is what should be done before publishing a paper? Thats what im hung up on is that I dont wanna publish the paper while this can be actively reporduced.
did u get a kebab btw?
you understand that right? I understand also you guys dont have to give an answer so it can just stop there too
Nah, I found a piza in my freeer π
oooo what kind
Quattro Formaggio!
you doing some man in the midle attack by jamming an area and autoconnect to your wifi proxy ?
I know right.
this specific thing like for the first time it felt bigger than me
Am I allowed to trade my monthly thm premium voucher for something else from someone here
submit your paper to known people in wifi or TCP/IP research fields for feedback and ask them how you should proceed
Blue cheese on a pizza is BAE ( @mossy river - Did I use that right?)
answer is probably no
Bae is like 10 years old
blue cheese on pizza is good , if you like blue cheese
πππ
Ooh.. 'bussin'
Ooohhh, I love a good soup.
okay so I can write the paper then. dont have to feel so hung up. Thanks I will choose that as what I do next then.
Gave +1 Rep to @sinful moon (current: #35 - 243)
this is making me hungry lol
French onion soup... mmmmm
i put Gruyere in soup ,it get so good
i am not a small bean so when someone feeds me soup and expects me to be full
i am sadge
Noir - You had a massive dinner only yesterday!
Soup sounds good so alright Iβll have a burrtio
Ill say thanks everyone for the chat about it, I got to see how people in the industry and community react to it a bit based off of the few crumbs I can throw.
Glad to be here though, I joined because I felt like the advent looked fun.
Like what?
icl i do eat decent sized meals
havent been on tryhackme in like 8 years. the site is looking really good now too i LIKE it.
its grown a lot
Anything anyone here wants I have no use for it
I can tell. Compared to before it seems totally commercialized, but in a nice way.
much more sleep love the attack boxes
super good development
there is this dude cmnatic bro writes some fire rooms
good night you all
.
stay safe NTWRK , i hope i can read your article , when published π
made networking not boring
gngn
Wat?
Haha 'This dude cnmatic' - He'd love that π
Iβve got to slowly get my kid into pc gaming
yeah I just checked that out today pretty cool. HTB started doing that too a little while ago I though that would have been neat when I first started. When I started I used kali live with no persistence, I actually held all of my files on a separate partition for some form of prst lol.
Currently on pubg mobile π
Thm is turning 6 years old this year.
click my profile xd
i dont have bias no
yeah i guess so haha it hasnt been 8. So i probably joined around when the site first was released
which was in 2020
Hehe, He's a good egg
im tripping rn haha
Not 2020
2018 is when I thought i was on it but my dumbass said 8 years
I talk too damn much π I was about to say sumn about me doing something similar last night playing a card game but like nah im just yapping at that point

Hi, is it possible to buy a premium? I tried to pay with revolut but it says payment cannot be made.
What does ARP stand for?
address resolution protocol
And without thinking about hacking, what is it's main function?
k
just checked og account, made in 2019 actually. :)
k π
for when a service or app needs ur mac address
it sends these two packets : "who has x ip address " , "tell sender_ip "
Because to know who is messgaing right ?
^
Hix - New rank, Gratz π
thanks π
Gave +1 Rep to @glass nest (current: #18 - 480)
i did some weird dumb shit in my project to resolve mac to browser clients without using arp. Dont know why i didnt use arp lmao. But thats one of the bits I didnt talk about, browser generates a unique ID which is in the packet and gets linked in a database to link the IP to the MAC and user agent. But I DID NOT have to do that lmfao
i guess its cool cause its not sending excessive arp requests over the network. even though its not really abnormal if it did since it is technically the router.
u need to start a blog my brotha
I understand what is arp means changing to ip to mac
well not technically
not changing.
Think of your Discord ID as your Mac address, and your nickname as your IP
Okay
You can change your nickname. and you do, a lot π
this is the polite way of saying I talk too much? But yeah I actually just became the CEO of a blog site I acquired haha. So working on it :)
But your discord ID doesnt change.
when your nickname changes, thats the one we now associate with your Discord ID
its just like in real life for example , if i want to address to someone i dont know by face imma ask " Hey who's name is dave " , " tell me " , and dave is gonna say " heey am dave"
shit, on that note. I cant write posts about the advent until next year correct?
It says this event can be played until november 2025. Or could I wait til after january 6?
I love this analogy haha
there may be also another person named "dave" and he is gonna say "Hey am dave" but that aint the dave am looking for . this is called mac spoofing
but thats another and deeper story
and MAC address can't be changed on device. MAC is "burned in" device chip or so... the IP change from time to time and so
ralex knows about burning stuff into stuff π
Yes Will asks all the ip and computer will respone
also arp flooding too. Spamming you saying all kinds of clients are other names and filling up the arp table.
yep thats why they call it physical address
Because in the board
you can impersonate MAC, but real mac stays real mac
just that is story for other things
Love you guys, i gotta get back to work.
Yes. Gotta undsrstand how the thing actually works before being able to use it for our nefarious deeds
Mac spoofing is what enables that notorious evil twin attack i mentioned earlier :D
if wish to know more of networking
no w8
wrong
woah! sick boockstack bro. I would love to read that level 2 vpn vulnerabilities book.
I only have a couple physical security books, I get them online
humblebundle is nice way to buy pack of books for like 20ish e cca
Agreed π
not gonna lie that is really nice. It would be nice to sit there and just read them. Its cool to have the physical books.
humblebundle is the best
Theres a few solid bundles on there now.
this mine
ππ€
Hey for those interested in SE, im reading aristotle art of rhetoric right now (the 1992 penguin classic edition). And I see a lot of parralell themes to social engineering. Seems very valuable and im not even a 3rd of the way through yet.
Also, another personal insight; art of war by sun tzu has heavy parrallels to cybersecurity as well. I am considering making an annotated version of this book in alms to cybersec.
and for digital books, esqy prob have mre than me
Yeah, but you have more cybersec ones
nice ive read a few of those. It sucks cause everytime I see a book ive read digitally in a physical bookstore, its always like $50 and I always want like 4 of them haha
you have a great collection brotha
https://www.humblebundle.com/books check this
Immerse yourself in adventurous comics, discover spectacular fantasy worlds, run a new tabletop RPG system, and more with our curated book bundles.
okay I found one for 35.99. Whats the shipping price like?
this is digital ones
through this the books might be like $10 cheaper based off of the one I looked up to check
ohh
man I gots the digital ones
tbh, a lot are on archive.org or lib;--
which is not π΄ββ οΈ afaik
i didnt finish the second sight cause it might be
site
tbh the 20ish book for 25e cca is nice price to buy and give money for it
I think I have those tech bundles. Apart from the Microsoft one
I agree. I just even dont really like the digital copies in the first place to generally purchase them.