#general

1 messages ยท Page 587 of 1

wide merlin
#

I really do want the physical copies of just about everything. it just not so viable for me. Ill have them one day though!

loud marlin
#

im also in love in real books. then again. 20 books oprice is one book for phisical

wide merlin
#

I'll be quiet now. Peace and love :)

glass nest
#

Physical books are great. buuuuutt... ralex has said it better'n me ๐Ÿ˜„

upper knoll
#

icl i prefer digital books

#

no control f on a irl book

glass nest
#

Dusty shelves ๐Ÿ˜„

#

Top shelf is hacking stuff-ish. Mostly 2600 mags

upper knoll
#

i love the read and blue to field manuals

boreal scarab
upper knoll
#

i need to get new copies of mine

glass nest
#

2nd shelf is mostly Med school stuff ๐Ÿ˜„

upper knoll
#

i used those books so much they are lowkey recked

glass nest
loud marlin
#

btw @glass nest i buy 2x metal blank card for bank. all is needed to get chip on it. thinking to go in bank and ask if is way to get chip only to insert in engraved blaks

glass nest
#

There a couple more, Beerise ๐Ÿ˜„

keen depot
#

Good Evening THM!

upper knoll
#

ima grab that

#

as always esqy is fire

glass nest
#

Haha, I thoght you would :p

upper knoll
#

appreciate u

keen depot
# glass nest

I would have though the best of 2600 would be a lot thiner

upper knoll
#

would be helpful to have while i do tryhackme stuff actually

glass nest
#

Thats pretty bangin', ralex

upper knoll
#

cause my brain forgets all the little things sometimes

glass nest
#

Weary, you are a cheeky one ๐Ÿ˜„

loud marlin
#

yea. and when i show on work... they all want one lol

glass nest
#

Weary - It actually quite an intersting 'journey' through hacking over the years

#

Whole articles on one specific alarm system or elevator system

upper knoll
#

right chat i wanna get this sqlmap room done before bed time yall remember to be kind to yourself

#

and esqy u are fire as always โค๏ธ

glass nest
#

Good luck!

#

Nah, I'm just me ๐Ÿ™‚

keen depot
upper knoll
#

ie awesome

glass nest
#

Weary, I did wonder why you were so elite

#

Didja spot the blue whistle ๐Ÿ˜„

keen depot
glass nest
#

Good to see you again, man ๐Ÿ™‚

keen depot
glass nest
#

It is a great deal. 35% is a lot

granite narwhal
keen depot
#

every year it gets later

granite narwhal
upper knoll
#

totally okay if this is wrong place to ask but does sqlmap not come installed in yalls attack boxes?

#

just hoped into that room and had to install it myself xd

keen depot
hazy sundial
#

does anyone know how can i make my own room?

glass nest
#

Yup, Thats my name ๐Ÿ˜„

#

but yeah, create a vulnerable VM, upload it.

glass nest
#

Then the Room tester crew do their thing

granite narwhal
#

so arp to connect to it to make with ip with mac right who have the ip and will connect to it to device ?

keen depot
glass nest
#

I've been given that at so many birthdays.

#

No complaints though!

granite narwhal
fair lava
keen depot
glass nest
#

Haha, yeah, at least it's M&S ๐Ÿ˜„

keen depot
#

Its not just Uncle Esqy, its M&S Uncle Esqy!

glass nest
#

haha

#

more like a Lidl Esqy

#

Or Netto, if you are that old

keen depot
#

Terry the Termite

keen depot
glass nest
#

3p baked beans is value ๐Ÿ˜„

keen depot
glass nest
#

It was a lifesaver at one point, thats for sure

#

When I was in uni, a Lidl opened up nearby. back then it was bliss. Made the student loan stretch waaaaay further

#

but back then it was also 60p for a litre of petrol

keen depot
#

no idea how much petrol was, then or now, my base line is1.25 a pint of stella, but to be fair even then that was ridiculously subsidisded in a student union I was';t even a member of

glass nest
#

Yeah, i remember it was ยฃ2 a pint of fosters in a regular pub. the SU was insane.

#

they had an offer - if a uni team won their game that day, they knocked 5p off a pint of snake 'n' black. at one point it was like 45p ๐Ÿ˜„

#

That was a messy night

keen depot
#

in context i've been paying ยฃ6+ a pint earlier this evening

glass nest
#

Damn. that would have been 'festival pricing' when I was in Uni

keen depot
#

my ups is going crazy beepng

#

i best make sure its actually the ups not the carbon monoxide alarm

cobalt iron
#

American watchin a euro chat is just fascinating (and led zeppelin, ironically, just came on me radio - no quarter specifically)
petrol gets me every time ... we call the liquid ... gas ... idk how this happened but I go with it ๐Ÿคทโ€โ™‚๏ธ

loud marlin
#

do shodan have some black Friday actions ?

cobalt iron
loud marlin
#

they have lifetime membership from time to time. just rare

wide merlin
#

You search for servers, and can look for servers running certain things. Like websites, certain protocols etc.

A general thing to do which is fun for people learning what it is is accessing random cameras across the globe with it.

cobalt iron
wide merlin
#

Maybe not hospitals directly. But you can use shodan to look for results of servers that have an open printer port.

#

You trying to bust down a print spooler? ๐Ÿ‘€

cobalt iron
#

Holy shit

#

...that company operates legally?

wide merlin
#

Potentially you could find a device in hospitals if you know all hospitals use a certain equipment and that equipment can be identified by it's header. But not saying that is something that happens but that's generally how you would find something so specific.

#

It's just a crawler

#

It's not it's fault that you left your administration panel on default configuration open to the www

#

If you look for vulnerabilities on there you will find a lot of honeypots. Things that look vulnerable but are only there to research what attackers are trying to do in the wild.

cobalt iron
#

^^ exactly my concern

wide merlin
#

Well, that's what happens hot dog man.

#

Don't put your sensitive infrastructure to the public internet

keen depot
cobalt iron
loud marlin
cobalt iron
#

And the FBI in the US hans't "liberated" them ... this ... this is real??

wide merlin
keen depot
wide merlin
#

It's not that big of a deal really. Not surprising. You yourself could build a crawler to find these websites. So even if shodan didn't exist it's not like it's impossible for you to find the same devices.

loud marlin
keen depot
wide merlin
#

Man, wait till you actually use shodan to see what it can find. You'll be like woahh

rapid merlin
#

evening

wide merlin
#

Even with Google you can dork for PHP backdoors, most have the default password set which you can find by downloading the backdoor yourself. Then all of the sudden, you are inside of a backdoor that was used to deface a website.

#

You'll actually see defacement banners from groups in other countries

#

And be able to access the functions of the backdoor yourself if the password was left default.

cobalt iron
wide merlin
#

I believe shodan can also search for such things. But I know you can look for the specific php files on Google and find that.

#

Yeah I mean also unauthorized access to computers.

#

But I'm saying that stuff is there, and not a lot of people know about it. So if you're surprised to see shodan, look at Google dorks. It's the same crazy thing sort of but at a lesser scale than shodan.

cobalt iron
#

Well, prison I should say ... jail is kinda fine .. been there done that not really worried about a simple lock up.

wide merlin
#

Well don't get locked up at all for computer crime

cobalt iron
wide merlin
#

By not commiting it the best you can haha. Trust me, I've done bounds of things that if I ever talk to a normal person about it they think I'm going to prison. But like, I've been ethical the whole time ๐Ÿ˜‚ I always make sure my shit doesn't leak and cause outside damage that would get me in legal mud

#

They just don't understand that. They hear I hacked this or I bypassed this and they're like :0 but not in a way I think people in the industry would be like :0

#

Honestly industry ppl would be like :| if they're in the know and that's okay, at least they don't think I'm a criminal in the back of their head haha

cobalt iron
#

Good deal, keep on keepin it clean

wide merlin
#

Yeah man use ya whitelists if you got em!!

#

If you don't, create them!

#

I do a lot of WiFi hacking so it's def been important. Seeing as I got the big antennas and shit like that could cause neighborhood disruption around hyeah

#

The airwaves around my house be lit up like XMAS every few days ๐Ÿ˜‚

#

(pun intended)

hazy sundial
#

@austere isle

#

ay

winged summit
#

what's up people ๐Ÿ™‚

cobalt iron
#

man, I'm checking out shodan and as a raw beginner in security it's a bit much for me.
If I had a greater understanding of what was going on, I recognize a lot of the info from earlier labs in the THM courses (which makes me really happy) but ... IDK what i'd do with the info I'm getting ... for now ....

winged summit
#

ah, shoot, DM lol brb

cobalt iron
#

Yo, stupid question, how do I put emojis on ppls chats? I'm pretty sure I verified my account...

sharp citrusBOT
wide merlin
# cobalt iron man, I'm checking out shodan and as a raw beginner in security it's a bit much f...

So like I said you can search it for services.

Services run on ports. One of shodan features is searching for devices via ports.

Interested in seeing how a specific service can be configured? Check out that services port(s).

I don't particularly think shodan is very useful outside of thinking it's kind of cool.

Does anyone have any opposing thoughts? Do you have a use for shodan? If so, what is it?

hazy sundial
#

ay im a bit curious how can i decrypt this? or what is it? WGlmbyB6cHYgdGZmIGIgaHBwZSBucHdmLCBtcHBsIGdwcyBiIGNmdXVmcyBwb2Yu

wide merlin
#

Looks like base64

hazy sundial
#

i tryed base64 and it dossent really give me anything usefull

half girder
wide merlin
#

Well I see the letter W right off the bat so it's not hex. Let me check for ya.

wide merlin
#

It's definitely b64.

hazy sundial
#

Xifo zpv tff b hppe npwf, mppl gps b cfuufs pof.

wide merlin
#

So you notice how after deciding that string with base64, your output isn't random non Unicode characters?

#

You got just ASCII/utf 8 in your response. So that actually shows that you decided correctly.

#

You must now figure out what this text means

#

It is likely a cipher

hazy sundial
#

bruh

#

i had founded this base64 encryption online on a random site

wide merlin
#

Ciphers work by shifting values across an index. This is probably a Caesar cipher or something like that, a really simple way to obfuscate text.

hazy sundial
#

"When you see a good move, look for a better one."

#

cool

wide merlin
#

Each letter through the alphabet gets a number, 1-26, and those numbers get an offset. Where you would replace A(1) with C(3) for example. This would be a +2 offset.

half girder
#

ah already solved, nvm then

hazy sundial
#

sory

wide merlin
#

Was it rot13?

hazy sundial
wide merlin
#

Sorry for blabbing about ciphers then haha

#

Oh okay, good.

half girder
wide merlin
#

Yeah so it worked out regardless

light shadow
#

Hello, I am new. How can I benefit from this application, in your opinion?

wide merlin
#

So the same thing, but with a specific key haha.

hazy sundial
#

@wide merlin why u have a link to a youtube video in whitch there is a wet bird?

#

(idk how to spell witch btw)

wide merlin
#

Doing Caesar you would start at +1 then work your way up. When you got to 13 you would get it with ceasar.

#

Um

#

Sorry, pardon?

#

Ohhh

#

The shoebill stork

#

Idk I like the rain and that bird was chillin.

loud marlin
cobalt iron
wide merlin
#

You think that site is tryna tell you somethin pal?

hazy sundial
wide merlin
#

They're like you may have found this link with our encrypted message, but you didn't find the other link with our API creds >:) ๐Ÿ˜‚

ocean agate
#

hello

hazy sundial
ocean agate
#

could someone help me crack a code

hazy sundial
#

we are the best at code cracking

ocean agate
hazy sundial
#

just type it here

loud marlin
#

@polar spoke can you jump on WGlmbyB6cHYgdGZmIGIgaHBwZSBucHdmLCBtcHBsIGdwcyBiIGNmdXVmcyBwb2Yu

hazy sundial
#

geez

ocean agate
#

ok

#

(รขย€ยขรขย€ยขรขย€ยข) รขย€ยขรขย€ยขรขย€ยข-รขย€ยขรขย€ยข85

hazy sundial
cobalt iron
#

I suck but will do my best with the help of the community - and no, I won't DM you

ocean agate
#

trynna figure out the numbers

hazy sundial
#

"When you see a good move, look for a better one."

wide merlin
#

Going along with the encoding challenge you had Infront of you;
Just the other day I was doing a challenge and it had a cookie set to an encrypted value (in b64). I decided it and it was hex. Then you decide that and it's the data you want but backwards haha.

That challenge was fun, working on hacking every challenge in this one site with python only. So fucking with the cookies and shit via python was a tad annoying especially in tandem with reversing the XOR encryption that was originally done in PHP.

ocean agate
#

i need help cracking a phone number

#

by my hacker

#

this is what google gave me

#

(โ€ขโ€ขโ€ข) โ€ขโ€ขโ€ข-โ€ขโ€ข85

wide merlin
#

I'm a go ahead and say that's probably illegal

ocean agate
#

i need to decrypt that

wide merlin
#

Yeah bro

ocean agate
#

so hacking isnt?

wide merlin
#

No

ocean agate
#

he hacked my 500 dollar account for something

loud marlin
wide merlin
# ocean agate so hacking isnt?

We all legally hack here. That's what this platform advocates. A legal way to learn about penetration testing and hacking.

ocean agate
#

how is it illegal

hazy sundial
#

its with UTF-8 and this is the result @ocean agate (โ€ขโ€ขโ€ข) โ€ขโ€ขโ€ข-โ€ขโ€ข85

hazy sundial
#

AY

polar spoke
ocean agate
#

so whats theactual number

hazy sundial
#

thats what cyber chef told me

polar spoke
#

lol

hazy sundial
#

now u continue

ocean agate
#

huh

#

wdyn i continue

loud marlin
polar spoke
#

When you see a good move, look for a better one.

ocean agate
#

do i have to decrypt it?

loud marlin
#

oh lol

wide merlin
#

@polar spoke !? Think we've dm'd before.

polar spoke
#

๐Ÿ‘‹

cobalt iron
#

What is happening rn lol

hazy sundial
#

idk

wide merlin
hazy sundial
#

the best site to decrypt

half girder
keen depot
wide merlin
# polar spoke yup, that'd be it lol

Yeah you're on my friends list lol. I remember where we met. What's funny is I talked about my project to you there which I also shared a bit about here today as well. I don't see too many familiar faces.

wide merlin
loud marlin
#

btw @polar spoke how/where you test to chek what it is or so ?

wide merlin
#

You asking them how they find out what type of encryption/encoding a string is? I'm asking that cause I was a little confused at first but given the context in guessing this is what you're asking .

#

I know what kind of obfuscation is at play usually just by looking at the characters.

If I'm not sure I use hashes.com

loud marlin
#

chicken is known to be first one we annoy when stuck ๐Ÿ™‚

wide merlin
#

Yeah I probably annoyed them a bit saying hi but hey man I don't know many people, I was like hey wait a second

polar spoke
#

๐Ÿ™‚

wide merlin
#

Listen man you make a dope tool that is pretty standard to be used for our industry, we gonna praise you from time to time haha.

loud marlin
wide merlin
#

Exactly

#

It's a specific kind of fame you know? It's a well received product

#

Like I don't see similar kind of fame or admiration coming if I release what I've mentioned here a bit. It's just sorta like oh shit. Not particularly useful in the same sense as a dedicated tool for the trade!

crude wolf
#

hey

#

Hi yall

#

Question

#

Where should i start to be a hacker?

wide merlin
#

THM actually has tons of resources to show you how to get started. Remember to stay ethical.

winged summit
winged summit
cobalt iron
#

I didn't even know I had friend on here Daniel - that's good to know!! I'm super new to discord (online chat in general, my uncle had a business stolen from in due to online chats in the 90's and I never f'd with it, but I think I have a skillset I can help others on here with and that's what it's about to me - before I ask for favors)

When I hover over lines of text I get nothing ๐Ÿ˜ฆ

#

Phone, email, gone through the settings menu several times ... I got nothing ... could it be a web vs app thing?
I don't have the app, just using the website. I'ma try that now tho.

#

Nope, didn't change anything...
Bet its fkn electron ... js is def riding the short bus....

yep...

#

ok I can't post imgs either, but ycombinator "confirms"

sharp citrusBOT
crude stump
cobalt iron
#

Yessir

crude stump
#

yk what's interesting, if you scan a malware signature and 90 percent of the different AV's flag it as malware but there's always like 2 or 3 etc that don't flag it. i wonder if its because what ever that av is for doesn't target those specific signatures or its just not good lol.

rapid merlin
#

50/50 I'd say

cobalt iron
#

I can't make a judgment, I come from web and YC is like a standard there - not saying it's a good one, not saying web ppl are right (their not, usually) but as far as malware ... I can't speak to that and wouldn't know how to confirm is all i'm sayin

crude stump
#

or it could be a very brand new antivirus brand but i thought avs have a data base that is constantly being updated with new signatures to flag

cobalt iron
#

Loosin me AceS - I'm Suuuuuuper new to security

crude stump
cobalt iron
#

To be sure, I have read through the provided link a couple times.
Not saying I'm doing it right or missing something, but I've yet to be able to get further than where I am (nowhere, lol) on emojis and and imgs

crude stump
#

that link is to verify your tryhackme account to be able to post images

#

do you have tryhackme?

#

or to be exact a account wit htryhackme

cobalt iron
#

I do, currently on the monthly plan (but their black Friday yearly plan has me interested)

crude stump
#

yeah so that link that the discord bot sent tells you how to verify

#

see how in my roles it says 0xOMNI

#

thats the tryhackme role

#

you get what ever your thm level is as a role and thus being able to send images

cobalt iron
#

I (am on MacOS) cmd+f 0xOMNI and I get nothing... 0/0

#

I mean, fair is fair, if I don't have privleges to put emoji or post imgs, it is what it is I guess ๐Ÿคทโ€โ™‚๏ธ

crude stump
#

did you follow what the link is saying?

tall stag
#

When I am learning, sometimes I get very bored and I really don't want to do anything, what do you think is the reason and what should I do?

crude wolf
#

Hello everybody

crude stump
tall stag
#

And I haven't watched any videos for 2-3 days, I don't search for anything from chatgpt, I'm so cold, what do you advise me to do?

boreal scarab
#

Watching a Christmas Classic!

tall stag
boreal scarab
#

Die Hard!

tall stag
#

Network

crude stump
#

do you like the hacking part or the defending part

tall stag
#

Yes, maybe because I think I jump from topic to topic every time and the person whose broadcasts I'm watching is a little bit ahead.

crude wolf
#

hey AceS

tall stag
crude stump
#

hello sheluv

crude wolf
#

I did Jr pentest part

cobalt iron
crude wolf
#

so

#

if i have no premium

#

what more programs should

#

i learn

tall stag
#

The hacking part is more appealing to me, watching videos sometimes gets boring and I just write and read things on chatgpt

crude stump
# tall stag Hacking part

networking can be very boring for most people. its one of the boring part of cybersecurity unless you like it.

crude wolf
#

i did all overthewire using cmd prompt

crude stump
#

i find it fun but even then it gets boring

crude wolf
#

so imma do what you said

crude stump
#

what i reccomend batu

tall stag
#

Maybe about this.

tall stag
#

Since 4 months

#

I hope next month

crude wolf
#

?

crude stump
#

%

crude wolf
#

ok ty

crude stump
tall stag
#

After 12 hours I usually work for 2-3 hours, I use vitamins and Ashwaganda to keep myself fit and I consume 8-10 eggs daily.

tall stag
crude wolf
#

hey Coeus ramone

crude stump
#

learned

#

you just learned?

cobalt iron
# tall stag The only problem is that I'm working. I've been working for about 4 months witho...

Chef here, 12's are the norm - I want to make it work so I find the time.
You can if you want to - I've got a great woman to support me and kids and grandkids otw. It can me minutes a day, I promis, take copious notes, do ur best to REALLY understand, and if you don't do it again and again. We're not competing for an olympic gold medal here... It's EDUCATION, and that's that you should get out of it.

tall stag
# crude stump you just learned?

It has been 2 weeks since I started learning, I have now memorized 20-40 ports, I learned the OSI layers, I learned the difference between HTTP and S, I learned what ssl and tlsin are, what tcp ip layers dhcp mac address physical ip address ipv4 ipv6 ip addresses subnet id subnet mask network id.

crude stump
crude wolf
#

hey AceS

crude stump
#

whats up

crude wolf
#

are you a proffesional or begginer

#

cuz you know a lot

cobalt iron
# crude wolf write to me in private chat

Why? Let's chat here so everyone can help? I'm just a noob and there are ppl here in general with tremendous exp? You can DM me if you want, but I'm much more interrested in the opinions of experienced learners that can help us both.

No offense,
hope I'm making sense to you.

tall stag
crude stump
#

i mean idk how to answer that question. im definitely not a professional.

tall stag
#

I donโ€™t know

crude wolf
#

Its fine

crude wolf
#

like who you are then AceS

#

how you describe yourself?

#

(no offense)

tall stag
#

For the first time in my life I saw a port for Python web applications, port 5000 is flask Django.

#

I downloaded and updated Parrot OS, I'm looking at commands in general, but I'm always looking for something off-topic.

crude wolf
#

First

crude stump
#

a cybersecurity lover, want to work in the industry

crude wolf
#

whats the best terminal

cobalt iron
crude stump
#

i love researching stuff

crude wolf
#

ok

tall stag
#

When I'm looking at TCP IP, I'm looking for XSS or CSRF or something else and I don't know if this is healthy.

crude wolf
#

question

tall stag
crude wolf
#

Whats the best terminal

#

for hack

crude stump
#

especially APT's and different cyber threats

tall stag
crude wolf
#

k

tall stag
#

I think

crude wolf
#

cuz im using cmd prompt

rapid merlin
#

wdym

crude stump
#

how is that not healthy

rapid merlin
#

sheluv wdym

loud marlin
#

@sand trench well ml4w hyprland thing added fedora installation also

tall stag
#

QubesOS is the best for anonymity because it uses tor browser servers and opens a separate task tab for each process, so anonymity and privacy are at the top.

crude wolf
crude stump
#

its the tools

rapid merlin
#

Qubes is completely over the top for 99% of scenarios

crude wolf
#

ok ty

cobalt iron
#

Developed a LOT of python apps in my days ... django/flask, some custom shit...
Ganette loves em'

crude stump
#

you can use a ubuntu terminal, pop os terminal, any os terminal to hack

tall stag
# crude stump wdym?

When I am looking at one subject, another subject attracts my attention, so I cannot stay fixed on any subject.

rapid merlin
#

isn't one really, alacritty/kitty are the fastest

crude stump
#

explore

#

dabble in different stuff until you find something you are passionate about.

#

for a example i love doing blue team stuff. its my favorite thing and i find it super fun. Everytime i try different stuff i either like it or not

#

thats natural

tall stag
#

Lol

crude stump
#

like i tried metasploit, it was really fun at first but i dropped it second day doing it

cobalt iron
tall stag
crude stump
#

batu have you tried doing challange rooms

tall stag
#

Dopamine is the key here because not all people have the same learning ability, some have normal intelligence, some have kinesthetic intelligence, some learn while watching videos, some learn while researching, and some learn only while doing it themselves.

tall stag
#

I have never tried it, but I will try, but I have no experience yet, so I haven't tried it.

crude stump
#

i think you would like challenge rooms. instead of the constant flow of information and boringness. You actually put your skills to the test and figure stuff out

sand trench
#

Ni ni everyone

crude stump
#

hello shadow

ocean agate
#

could someone dm me

#

i need help badly

crude stump
ocean agate
#

thatswhy i said dm

tall stag
cobalt iron
ocean agate
#

im taking a different approach

cobalt iron
#

You are tho ...

sand trench
crude stump
ocean agate
#

i got a account compromised

crude stump
#

what type of account

#

social media?

#

if so contact support

ocean agate
#

i tried everything

#

i needed

#

a password cracker suggestion

cobalt iron
# crude stump what is it

He posted some ... idk looked like he was trying to read a binary as a txt file, thought it was a phone number ... askes ppl to reverse engineer it.

crude stump
#

yeah we cant help with that sorry

ocean agate
#

and then i can do it on my own

#

notthat

tall stag
ocean agate
#

what is a good software to do so

crude stump
#

@mossy river knows

ocean agate
#

@mossy river ?

#

erm

#

does hashcat work?

crude stump
#

we dont know

ocean agate
#

oh

mossy river
#

@ocean agate what you are asking is illegal.

If you continue to ask here you will be banned.

ocean agate
#

its my account???

mossy river
#

Itโ€™s not your service

ocean agate
#

wdym

loud marlin
#

account is you have on someones service that is provuided. you do not own server or smth

mossy river
#

It doesnโ€™t matter who opened what account, you canโ€™t go around hacking accounts, messing with services or otherwise touching software that you donโ€™t own

mossy river
twin ridgeBOT
#

Gave +1 Rep to @loud marlin (current: #26 - 364)

ocean agate
#

i made the account

loud marlin
ocean agate
#

i have literal proof

mossy river
#

It really doesnโ€™t matter if you made the accohnt

#

What you are doing is against the computer misuse act

ocean agate
#

fuck that ill do it myself

cobalt iron
#

Good, diy

#

pls

mossy river
ocean agate
#

i mean i joined here to ask for helpbut

#

pretty useless

mossy river
#

The rules are very explicit on asking for help with illegal or unethical activity

ocean agate
#

mhm

#

idc if i get banned on this server

cobalt iron
#

Yeah, fam, this has to be a ToS violation - please don't engage with this.

#

Happy to be wrong if someone can site me something I missed btw

ocean agate
#

like bro

#

it was a 500 dollar account

loud marlin
ocean agate
#

like i js want a damn suggestion

crude stump
cobalt iron
mossy river
#

Can everyone please go and familiarise themselves with the rules, especially the one that says not to interact with rule breakers ๐Ÿ™‚

You will be muted if you continue

ocean agate
#

whatever

#

another server it is

#

or the web

#

hmm

#

toodles

mossy river
#

๐Ÿ‘‹

ocean agate
#

yeahkys

#

jabba the hutt

cobalt iron
twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #5 - 1370)

mossy river
#

Can everyone report their message for glorifying suicide please

grim sparrowBOT
#

:hammer: iluvmooda#0 has been banned.

grim sparrowBOT
crude stump
#

Yes

loud marlin
#

btw jabb, ever play with meshtastic things or so

mossy river
#

I havenโ€™t, James might have

loud marlin
#

ben ? or

crude stump
#

Wait I canโ€™t find the report that is about suicide so I just did vulgarly assaulting

eternal timber
#

Hello chat

#

Been a min

granite narwhal
#

My wifi is ended

mossy river
#

Just so everyone is aware. I really donโ€™t like throwing the book at people or telling people off. Youโ€™re all human and I donโ€™t want anyone to have to feel like they canโ€™t do things without fearing being told off by moderators

But if someone is breaking any of our community rules, ping a moderator and just act like theyโ€™re not there.

You are all wonderful people for wanting to help! But sometimes the situation is being handed a certain way and anything youโ€™re likely going to say something Iโ€™m going to end up typing. Sometimes people can get upset and I would rather none of you awesome people be at the other end of threats or insults from another member ๐Ÿ˜“

#

Thank you very much @crude stump for showing how this is done perfectly, youโ€™re a star ๐Ÿคฉ

twin ridgeBOT
#

Gave +1 Rep to @crude stump (current: #65 - 124)

cobalt iron
twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #5 - 1371)

wooden totem
#

I always miss interesting stuff by a minute

crude stump
mossy river
#

No problem at all:) shows you have good hearts that youโ€™re all so willing to help

But donโ€™t worry- our moderators are constantly up-to-date on the best ways to deal with and deescalate situations ๐Ÿ˜Ž

wooden totem
#

= interesting

cobalt iron
#

I GOT IT!!! I CAN READ!!!

winged summit
#

lol, nice

#

how's everyone doing? i just got back from the store.... needed ... items lol

narrow heron
#

Hi

#

Question for the serverโ€ฆ hacking generally violates ToS and many laws

wooden totem
#

perchance

narrow heron
#

What CAN we discuss about hacking in that respect that doesnโ€™t violate server rules

narrow heron
#

Like suppose I have found compromised networks or accounts and would like to discuss how to ethically navigate this situation

#

Not saying thatโ€™s the case, but what would we talk about ???

loud marlin
#

if you found you report

#

even better if is bug bounty

cobalt iron
#

Like multiple times

narrow heron
#

Yeah I read it, just didnโ€™t see the value of the server if many real situations are off the table and even more hypothetical ones are off the table as well. I just mean what DO you discuss

#

Went through hundreds of messages and only saw people talking about aliens and pizza

cobalt iron
#

Good!

narrow heron
#

Of course CYA is a thing so canโ€™t say I donโ€™t understand

#

Are there side quests or challenges posted on the server? Like community activities?

cobalt iron
#

So, THM is a subscription website, as I suspect you know, and as far as I can tell we discusses the various challenges on said website. When people get stuck on something, here is where they come to get help. Not sure if that answers your question or not, but as far as I can tell, if you are acting in good faith and LEGALLY exploiting systems/orgs that are 100% consenting, or within the guides, I'd assume you're good.

narrow heron
#

Correct. Iโ€™ve only ever โ€œhackedโ€ machines and equipment that I own for fun. Not much of a hacker anyway but thanks for the info. I was looking mostly for challenges and activities to participate in with the community

cobalt iron
#

Sweet! Let's do it - super noob beginner myself, so I'm happy to learn with you and figure out how systems work and can be configured or misconfigured for "exploitation," if you will.

narrow heron
#

Thanks!!! Looking forward to it

cobalt iron
#

Anyone have exp with VirtualBox on MacOS? Probably missing something obvious, but I keep getting a shell instead of the OS booting. Bing/Google searchers aren't turning up much (well, as far as I can tell ... some forum posts that are similar but not providing a soln or really any meaningful advice.)

rapid merlin
#

you have to use UTM

tall stag
wide merlin
#

Anyways, hope everyone has a good day.

mighty flame
#

I am so excited for December 1st! ๐Ÿ˜„

#

I am just finishing up the complete beginners learning path but I hope I can get some raffle tickets!

cobalt iron
#

How sic would that defcon pass be? I can have goals right?

sudden bridge
#

just one day for aoc blobheart

cobalt iron
# rapid merlin you have to use UTM

Never heard of UTM, I'll give that a shot.
Ur saying VirtualBox just won't work on a MacOS host?

Will attempt a debian (the best linux flavor of all time) in the morn.
appreciate you!

gloomy arrow
#

im doing the Python for Pentesters module, what is the target machine?

cloud quiver
gloomy arrow
#

Yes i did

wooden totem
#

he does what now

uneven hedge
#

ethical child hunter

gloomy arrow
#

The target machine is what i need

cloud quiver
stray cliff
#

dang someone beat me too it hahaha

gloomy arrow
#

So the target machine is the local machine?

cerulean aurora
#

hey

stray cliff
#

yo

rough dome
#

Hello

#

how are you all doing?

rapid merlin
#

forgot it's relatively quiet around this time of the night

cloud quiver
rapid merlin
#

evening KGB

#

omg message sent at 04:04

cloud quiver
rapid merlin
#

haha 404 hacker xD

#

How you doing KGB

#

congrats on 0xD GOD

#

idk how long you've had it for

cloud quiver
twin ridgeBOT
#

Gave +1 Rep to @wanton ridge (current: #654 - 7)

rough dome
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #13 - 610)

rough dome
rapid merlin
#

damn getting close to #10

umbral lance
#

Hello

rapid merlin
#

it's just their ranking systme

cloud quiver
rough dome
#

so, KGB's a senior?

rapid merlin
#

yea OxD GOD is highest rank on site I believe

stray cliff
#

I'm not far behind him 0xA right now with 13676

rough dome
#

So, these roles get automatically updated in reference to the progress on THM?

stray cliff
#

but KGB is super helpful idk how he does it I just saw him help like 5 or 6 people at the same time I tried to help one and kinda felt like i was getting in the way lol

rapid merlin
#

KGB how many points is required for OxD GOD

stray cliff
#

20k

rapid merlin
#

damn

#

how do I kick an adorable cuddle toy (my cat) off my lap

#

nvm he left of his own accord

#

yay

cloud quiver
rapid merlin
#

python syntax time yippee

wooden totem
#

anyone got anything on their bucket list?

stray cliff
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #12 - 611)

rough dome
#

@cloud quiver if I delete this account and create a new one, then can I verify with my THM discord token again?

rapid merlin
#

uhm

#

I don't think so

cloud quiver
rapid merlin
#

you'd have to make a new THM account, along with a new discord for a completely new token

rough dome
rapid merlin
#

each token is unique to that account so

cloud quiver
rapid merlin
#

if it's already been linked, then you'd more than likely need a new THM account

rough dome
rapid merlin
#

^

twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #12 - 613)

rapid merlin
#

it doesn't do much I don't think

#

it's just how many times the person has been thanked

#

I don't think it actually plays a part in anything

#

unless there is some role or something

sharp citrusBOT
rapid merlin
#

didn't actually know that the bot was open source damn

rough dome
#

As a total beginner, can I do anything with the Advent event?

cloud quiver
stray cliff
#

@stray cliff Thank you

#

lol didn't work

rapid merlin
stray cliff
#

I'm excited it should be fun

cloud quiver
rough dome
#

It's for learning, it seems.

rapid merlin
#

ah W

rough dome
#

not totally a competition.

cloud quiver
rapid merlin
#

it's a question per day I believe

#

or task / day

#

idk how it's done truthfully

cloud quiver
rapid merlin
#

ah yah

rough dome
#

for how much did you get your yearly premium?

rapid merlin
#

I haven't got premium

#

I'll get it, eventually

#

I'm currently doing some courses using tcm

rough dome
rapid merlin
#

yea

#

1 month, I already own the PEH, WPE, LPE & OSINT courses

lyric thunder
#

does it expire

rapid merlin
#

I bought them before the subscription based model

#

what does Rony?

lyric thunder
rapid merlin
#

for TCM?

rough dome
#

how much were they back then?

lyric thunder
#

im hesitant when it comes to buying courses

#

they seem to expire after awhile

rough dome
#

you plan to do PJPT?

rapid merlin
#

$30 per, but I only paid full price for the OSINT course

#

rest were discounted at like $3

#

yeah, PJPT & PNPT once I stop being lazy and get a job

sudden bridge
#

Beautiful morning.

rapid merlin
#

gm horrific shrek pfp

rough dome
sudden bridge
#

Yeah he just got a bad b

#

upgrade ppl upgrade

cloud quiver
rapid merlin
sudden bridge
lyric thunder
cloud quiver
twin ridgeBOT
#

Gave +1 Rep to @sudden bridge (current: #300 - 19)

sudden bridge
rapid merlin
#

this was amazing ๐Ÿ˜ญ

cloud quiver
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #12 - 614)

rapid merlin
#

this is the first I've ever seen the KGB be thanked, considering the horrors they committed kekw

rapid merlin
lyric thunder
#

emm

rapid merlin
#

idk

lyric thunder
#

do uguys use web based kali on THM ?

rapid merlin
#

I doubt it

#

some people might have too if their machines can't run it as a VM

lyric thunder
#

it seems that the performance is better than my local VM ..

#

which is simply unbelievable

rapid merlin
#

when was your kali last updated

lyric thunder
#

ah!

#

2 years ago kekw

#

leme try update first

rapid merlin
#

UPDATE IT

#

wtf kekw

tall stag
#

Hello guys

rough dome
#

should i get a Raspberry Pi? what would be it's uses for me as a beginner? And which one should I buy?

rapid merlin
#

Hellooo

#

HELLLLLO

#

your up early miss stealth

#

I think

#

Yeah Iโ€™ve got someone over so Iโ€™ve not slept

rapid merlin
#

SKULL EMOJIIIIIIIIIIIIIIIII

wheat mesa
#

Hi guys, I having a problem with the OSI dungeon game

rapid merlin
#

Whatโ€™s everyone been up to

rough dome
#

to enter

wheat mesa
#

Thank you

#

It's working

rapid merlin
#

after that, probably touching up my bash knowledge

#

They have a python path ๐Ÿ‘€

#

hm?

#

I didnโ€™t know

#

TCM have a 101 & 201 Course

#

yeah

#

Oh tcm

#

it's not that popular

#

yea

#

I was so confused

#

I think THM have a brief section on python

#

I thought you meant thm

#

might be wrong though

#

Iโ€™m very tired

#

yeah it's all good

sudden bridge
#

this is funny atp lmao

rapid merlin
#

oh it's owned by hacktricks?

sudden bridge
#

no ๐Ÿ˜‚

#

it hosted linpeas script but sneaked in a data collection line and it got everyone's attention lately.

#

so he removed the script and put this

rapid merlin
#

wdym "data collection line"

#

HWID, IP Logging?

sudden bridge
#

thats why he's saying he could have gotten a backdoor, cuz ppl use this blindly - even though its not official.

sudden bridge
rapid merlin
#

ah

#

why does this guy have everything linked as hacktricks ๐Ÿ˜ญ

sudden bridge
#

i think linpeas (original) author is a contributor of hacktricks

lyric thunder
sudden bridge
lyric thunder
#

leme look it up

keen light
#

what is your pentesting setup ( VM, LIVE, DUAL,BARE METAL )

cloud quiver
sudden bridge
#

VM on m1

stray cliff
#

I have Debian on a proxmox server I use mostly

stray cliff
keen light
#

Do you know a good reverse engineering framework for analyzing binaries compiled from Rust?

tall stag
#

I use ChatGPT to research and get general information, but as a friend of ours said, the information and details it gives are limited, is there a better artificial intelligence suggestion? My friend suggested Calud, what are your suggestions?
I generally like to read a lot and I search for every title that interests me in the chat.

lament tendon
#

I would not recommend AI when doing deeper research into topics.

hazy sundial
#

why!?!?!

lament tendon
#

They are great to gain an overview and to figure out what to look for next, but outside of that (in my personal experience) they tend to be very inaccurate.

tall stag
keen light
#

archwiki

lament tendon
#

You cannot participate without hacking time first.

tall stag
#

I don't know if it happens with you guys ๐Ÿ˜…

hazy sundial
#

hm?

lament tendon
#

Well.

keen light
#

with reading u can also listen to music

#

its normally just more chill and the information is much deeper than you would get with a video covering the same topic

tall stag
twin ridgeBOT
#

Gave +1 Rep to @keen light (current: #1576 - 2)

lament tendon
lament tendon
#

It really depends on what video or what text you have available.

keen light
#

true but its very hard for a video to convey all the information without becoming word salad

#

but there are some really good video reasources out there

lament tendon
#

Same for text tho.

tall stag
#

While reading something, the dopamine level increases, so I'm talking for people who enjoy it, when you listen to music on the one hand and get dopamine from there, the brain seems to work completely in the direction you want, but it can distort the focus in some people, it can vary from person to person.

keen light
#

i guess i just feel like the text is generally higher quiality if you get it from a good source like owasp for web and archwiki for anything linux

lament tendon
#

Direct documentation / man pages usually don't have that issue, but it is more difficult to find what you are searching for because of the size. At least most of the time.

#

Text is also a lot easier to produce, so you are likely right about there being more higher quality text. Whahaha.

tall stag
#

๐Ÿ˜…๐Ÿ˜…

lament tendon
keen light
#

hippity hoppity your dot files are now my property

lament tendon
#

Heh.

#

My dotfiles are in a private repo.

#

I think.

keen light
#

ill find a way

#

my dotfiles are shit so no one will steal them

tall stag
#

I usually search for words I don't understand in the chat and the terms in the videos I watch, first of all, one of the most beautiful features of AI and AI is that it associates with 5-10 different subjects while explaining a subject, while learning a subject, you are fishing in 5-10 subjects, like collecting apples of different colors but the same taste from different roots of the same tree.

lament tendon
#

But I ain't sharing them.

keen light
#

what DE/WM TERMINAL Emulator do you use

lament tendon
#

On my latop arch + wayland + hyprland + kitty and on my desktop endeavour os + X11 + awesomewm + kitty.

#

I will migrate my desktop to wayland in the near future as well.

keen light
#

mines very similar arch + wayland + hyprland + alacritty

lament tendon
#

Fair.

keen light
#
  • gnome utils
rough dome
#

Do you guys have any Raspberry pi?

keen light
#

no

lament tendon
#

Default for hyprland, same here.

keen light
#

someone ate mine

lament tendon
#

A normal one and a Pi Zero.

lyric thunder
#

why is everyone using hyprland lately lol

keen light
#

for the rice

rough dome
lyric thunder
#

last year it was awesomewm everywhere

lament tendon
#

Like, objectively.

lyric thunder
#

im still on old meta, awesomewm :p

lament tendon
#

I can do everything I do in awesome in hyprland, but better.

lyric thunder
#

probably check it out when i have time

lament tendon
#

I'm like halfway.

#

My Laptop runs hyprland, my Desktop runs awesomewm.

lament tendon
lyric thunder
#

make a sniffer

lament tendon
#

Or a lil' home-server to host stuff like vaultwarden.

lyric thunder
#

walk to any random cafe and leave it at the corner

lament tendon
#

I did not want to suggest this because rule 4.

lyric thunder
#

jk

#

please be ethical

rough dome
lyric thunder
#

oh no

lament tendon
#

You should first check whether your laptop supports that already, aircrack-ng is open source and free.

#

You just need a wifi chip that supports monitor mode.

rough dome
lament tendon
#

I got one with 4GB RAM, which is easily enough for a Pi-Hole.

#

If I remember correctly you can also get one with 8 GB by now, at which point it basically is a normal computer. xD

keen light
#

my computer is only 8gb ๐Ÿ˜ฆ

#

laptop

lament tendon
#

Just try to get one that has more then one code.

lament tendon
rough dome
keen light
#

thinkpad t440

lament tendon
lament tendon
#

One second.

lyric thunder
#

how do uguys think about the new m4 mac mini?

#

is it usable for cybersecurity

lament tendon
#

If you want to, of course.

#

I do like thinkpads tho, because they are so easy to take apart.

lament tendon
lyric thunder
#

the price is lucrative

rough dome
#

hardware hacking is the coolest!

lament tendon
#

Prolly won't ever use a Mac in my life.

#

But if you can run a Kali Linux VM on it, you will be good.

#

Likely, at least.

rough dome
lament tendon
#

Very.

#

But that just came with time.

#

Don't get me started on how many systems I have wrecked so far. xD

rough dome
lament tendon
#

I did use Windows for a long time as well.

#

Switched to Linux a few years back tho, and it's just neater to use for me personally.

#

Plus I get to save 150 bucks that I don't have to spend on a license. xD

#

What do you use?

buoyant coyote
#

hey

lament tendon
#

Heyo.

buoyant coyote
rough dome
buoyant coyote
lament tendon
lament tendon
sharp citrusBOT
lament tendon
buoyant coyote
#

what is token

lament tendon
#

You need an account on TryHackMe for that.

keen light
#

thinkad t440 is so customizable ive already swapped keyboard and mousepad gonna do the hinges on the screen sone

polar wraith
#

happy computer security day

lament tendon
#

Computer security day?

keen light
lament tendon
# keen light

Match your active border color to the rest of your pallet, lmao.

keen light
#

this is my config its just the basic hyprland config but its good enough for me

lament tendon
#

Looks hype otherwise.

#

^_^

lament tendon
keen light
#

should i make the color more inline with the rest of pallet

lament tendon
#

Did you know you can make the border color a gradient?

keen light
#

no

#

could do blue and red like wallpaper

lament tendon
#

Mmhmm, I thought the same thing.

keen light
#

ill have a look at the docs

buoyant coyote
lament tendon
buoyant coyote
#

nothing just chilling

lament tendon
#

That's what I have in my config.

#

You can hardly even tell there's a gradient tho. xD

keen light
#

pretty cool

lament tendon
#

That looks pretty damn sick!

fickle grail
#

can anyione help me

lament tendon
#

With what?

fickle grail
#

i cannot upgrade my subscription with to early sub

#

i am getting error code 500

lament tendon
#

Oof.

#

IDK.

#

I'd assume it'll resolve itself in a few hours.

fickle grail
#

yes but i think its india only problem

lament tendon
#

Server's prolly overloaded right now. xD

lament tendon
fickle grail
#

pls help fast only 6 hrs left i dont want to miss this

lament tendon
#

Works fine on my end.

fickle grail
#

no i am getting the option as well but when i go to claim it it dosn't work

#

can i share you a video?

lament tendon
#

You sure can. I just can't do anything about it, since I am not staff. ๐Ÿ˜…
500 means there is a server error.

fickle grail
#

i will send you a video in personel just in case you understand my case

lament tendon
#

Don't, and talk to site support instead.

fickle grail
#

ohh ok

#

thanks anyways

keen light
#

bro i just installed malware onto my host instead of my vm

#

wrong window

#

luckily i didnt run any

lament tendon
#

Whahaha

nocturne oriole
#

fan speed is high when using tryhackme

#

its really annoying

hazy sundial
#

won my first king of the hill

nocturne oriole
hazy sundial
river badger
#

It really is! Not only are they a sponsor of the event. We are also using them to host the CTF. All sponsors contributed to the CTF so we have 17 challenges releasing in the buildup to the event. Also have some online prizes (from THM) for those who won't attend but want to give it a go! See here for the room: https://tryhackme.com/r/jr/beyondthebarrierofbsides

TryHackMe

TryHackMe is a free online platform for learning cyber security, using hands-on exercises and labs, all through your browser!

real light
#

has anyone tried black arch before I have always been curious is it woth it?

wooden totem
real light
wooden totem
rapid merlin
#

You can use Linux Mint

real light
#

yes!! I am really into the IDR

real light
real light
wooden totem
#

wait what distro is tryhackme

rapid merlin
#

HTB use Parrot, here uses Kali

#

and o/ betta

harsh tinsel
#

does thm do christmas sales too?

wooden totem
#

right kali, been so long since in linux enviroment

wooden totem
#

is it a waving man

#

like o7 salute guy on reddit

real light
#

hahaha

wooden totem
#

it does mean a little guy, weird to see it on discord

#

you have emojis here, more style

real light
rapid merlin
#

honestly, kali or parrot both work

#

they're both pretty good distros, admittedly I haven't touched parrot in a few years

#

however, I've not heard anything negative about parrot

#

you can also just do this

#

like 3.6k results

real light
#

how did you do thay

#

that

rapid merlin
#

you have to manually type out "in: #general"

#

it's quite annoying

#

or just CTRL + F

wooden totem
#

why many explanation when one image does the trick

rapid merlin
#

or that.

real light
#

thanks

fiery schooner
#

can anyone help me with a challenge which consists of a pgn file.... basically chess steganography

#

i have been through all the writeups but still cannot solve it

cloud quiver
fiery schooner
#

this was part of a ctf which is over now...... i just cannot solve it so i am looking for some help

drifting canopy
#

yppie

#

my dad just bought me 1 year of premium

exotic vector
wooden totem
#

Yummers

low yarrow
#

Morning

wooden totem
#

Lowkey if that was an actual valid gift, it was snatched by a bot account in -0.2ms

torpid furnace
arctic cradle
#

@shell nova

#

first time it was funny, now it's just plain boring

#

the link is pretty obvious to not be legit considering it starts with "httpss"

rapid merlin
#

guys i got tryhackme voucher for 1.12 dollar only ๐Ÿ˜

sick lance
rapid merlin
#

from a friend

arctic cradle
#

hey Scrubz

sick lance
sick lance
arctic cradle
rapid merlin
#

yup is it ok

gray sonnet
#

Wat

rapid merlin
#

@sick lance is it ok

#

to buy a voucher

arctic cradle
#

@rapid merlin I never permitted you to DM me so please don't

tough ravine
exotic vector
sick lance
#

@hoary tiger we don't help with external CTF

hoary tiger
#

ok dude , its ok

arctic cradle
#

Scrubzy, did it snow in your area last night?

sick lance
#

No, it did not ๐Ÿ˜„

arctic cradle
#

woke up at 2 AM and there was a lot of snow, by the morning it was gone from the rain

sick lance
#

Which is good, as I didn't fancy training in snow today

arctic cradle
#

what kind of training you doing

sick lance
#

OCR

wooden totem
# arctic cradle

uncomfortable highly visible color banding through the whole screen, yummers
I could not look at that for more than 30 seconds lol

drifting canopy
#

ME

#

let me click a link please

#

for that nitro

arctic cradle
arctic cradle
# sick lance OCR

funny thing is, I was gonna say "do you train to enter the navy seal?" lmao

drifting canopy
wooden totem
#

It's like a dagger to my eyes, ahhh
it's so visible too, you can't overlook it

arctic cradle
wooden totem
arctic cradle