#general
1 messages · Page 620 of 1
I understand what he wrote but most of the people on the server probably wouldn’t so let’s keep it in English 🙂
pretty much, that also count as promotion of other sites 😂
the rules of this discord is English
not even md5sum or hex code
I want do the same now
dude's just hungry
Missing half the food on the floor 😂
thats how i eat those little debby christmas cakes
I can hear the sound just looking at that 😄
crunch
his facial expression indicates he would make a good actor in a zombie film
youre so right
excuse me kind gentlemen and gentlewomen do you happen to know the password for the zip 
it's called ladies
well aware of that 😄 i was just playing dumb 🙂

You know what I do when I see a zip with a password
wayment.... Github is owned by MS? Good god, i never knew that. Honestly never looked up the owning company or person, always thought it was a private person that opened up to community collab for open source software and code.
bruteforce
and ignorance
I'm pretty sure I remember it's super simple to just get the password with like 2 commands, but no - I don't open it on my main machine
Github was made bye the Dinity Torvald Linux
False information, Github was invented by John Git
MS ownes a huge chunk of IT estate, linkedIn, github 😄
but anyone can host his own Github server
and it's own by microsoft 😂
one of the thing of microsoft that actually work 😉
that's actually not true, Microsoft is a blanket corporation which hides the individuals who own it so they can live off the grid
conspiracy?
Long term fans know that if I don't start my sentence with "Hello, I am..." it's not 100% factually correct
could be true tho, I mean... you wouldn't know
Github is a subsidiary of Microsoft Corp that means is part of the microsoft portfolio
yeah, nor i mind that much, i just like throwing spanners in the work 🙂
if I'm not mistaken microsoft acquired github in 2018. I remember because I create my account a few years before that, I never really use it BTW 😂
Nah, that's just leftovers for a later date
Im sorry... 😂 i didnt realize i was responding to something from so long ago. it took almost 12 mins to get to current chat history. it spawned me in pretty far back
🔥 🔥 🔥 🔥 🔥 O-ver-joyed ! 🔥 🔥 🔥 🔥 🔥
I'm so happy : just reached level 6 ... and ranked < 300K ... woop woop !^^
Thank you THM !^^
First person in history that took "celebrate small victories" seriously
Key to happiness !^^
if you don't celebrate your own victories, no matter how small nobody would 😂
Congratulations!
If you think about it, celebrating small victories equals 1 bigger victory because it makes you happy and more motivated
Ok time to sleep now : after AoC and some more rooms to make it ... my reward is sleep at last !^^ Good night, all !
Good night!
well said
my reward is always a drink, but to each its own 😂
welp time to call it a nighty knightly knight night for nighty nights while shadow goes meep moop to the beep boop
Who wants another drink?
anyway, i'm off to bed. Have an easy night peeps ~
hope your shells are stable and your exploits straight
and your glasses always full 🙂
hehehe, ZFS go BRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRRT
32 is a great number 🙂
Amen, Kyronaut extreme thermal grizzly
it was 31 here during the day 😂
I pay $20 a month for something that don't even work. It's my old ISP all over again.
Try switching over to claude
it sucks to be you right now 😂 😛
Welcome to OpenAI's home for real-time and historical data on system performance.
Chatgpt kept giving me some issues and hallucinates much more than claude.
Duckduckgo has ai too.. there are several other options.
cloudflare and crowdstrike flashbacks
Oh gods lol
Host your own ai. 🤷
Gotta love that love-hate relationship you build with new technology
Someone tripped over the Ethernet cable again??? 🤣
@normal fable 👋 How are you?
Good good rex. How you?
Just on the train home from the office
Already fed, and chilling with a drink so I can't complain
Actually scheduled my first sec cert exam.. just the CC.. but maybe motivate me to do more.
Same, 'cept the fed part. Lol
great news
17th.. so I'll def put a post here after to let y'all know pass/fail
pass for sure!!!! You got this 🙂
W keep up the grind
By the gods, I knew it x.x

Welp, guess I'm actually going to just learn a whole language. Lol
Was the plan anyways
Just difficult to learn eastern culture for western me
Go for it🔥you got it
Katakana doesn't seem too bad, seems... learnable(?) Lol
Depends i guess
I don't even speak Spanish
That's like, instant outcast for me
I was almost fluent in spanish but i forgot the majority of what i learned overtime
It is (I hate admitting) the first language I spoke and the language of my heritage.
And I don't know it
Lol
dang, you ever think about trying to learn it?
Actually yes! And failed tbh
I speak spanish among other languages
spanish can be tough sometimes
But it's weird for someone like me, Hispanic American, half my family doesn't speak English just Spanish
verbs are a bitch 😂 like in any romance language
I speak English, Spanish, Hebrew, Italian, Arabic, a bit of French, Yiddish, Ladino, and Greek
speaking of languages what program language should i learn first💀
Python
Also a bit of Catalan too
gah damn man😂
I love languages 😂
Latin based languages makes sense, but others take skill
mf could insult anyone in multiple languages
I understand latin, I learned it when I was a teenager
alright python it is lmao
You will love it
It really is, as a Romanian I can understand 40% of latin by just existing
Also I can listen conversations pretending I don't understand what people are saying 😂
you would be surprise what people can say behind your back, when they think you don't understand
Honest to god with you thats the main reason why i tried to retain spanish is for this reason since its a common language in the U.S
It really is getting there
I just give them enough rope to hang theirselfs and then I answer them in the same language. I love that expresion in their faces nothing bit that 😂
also another reason why bilingual people make more money in some fields
I consider myself a citizen of the world 🙂
Solar system
I consider myself an expert in sailor language
Hrll yea! XD
You
Y'all
all Y'all
?
WE WILL GO HUNTING HOGS WITH THE MINIGUN IN THE BACK OF MY TRUCK
All of The Above

give me a burrito con pico de gallo, kind of thing? 😂 😛
Depends on the part of South
Like, east TX people talk different than someone native to Sestern TX tbh
Western *
Even the coastal regions
TX can be it's own pokemon game. Not too bad! Lol
bro speaking of pokemon (kind of) my boss gave me one of those little retro game devices that have like thousands of retro games on it, no pokemon tho. i can upgrade it to have it which i probably will
Do it :D
hi, guys
Hello
Hrm.... Proxmox server running OpnSense and Wazuh.. now that's a project
gotta do the damn dishes brb
GL
Can't wait to be able to understand what he said :)))
Guys I can troyens live in browser cache?
Trojans live in the browser's cache?
Cause that's what I found in one
They can, yes.
Ty
Np!
Oh, and that
I like my open source
I've heard of Prox but not Waz
https://jh.live/wazuh || Try Wazuh completely for free, and protect your environments with an open-source SIEM and XDR platform easily accessible on-premise! https://jh.live/wazuh
PS, I'll be presenting for the CloudSec 360 webinar with Wiz on the MOVEit Transfer exploitation -- tune in on November 8th! https://jh.live/wiz360
Free Cybersecurit...
oooooooooh, HIPAA
Got a Lenovo Thinkserver laying around, could put Proxmox on that baby
😃 ¿Quieres unir fuerzas para el evento de THM? ⚔️ ¡Formemo un grupo de Discord y resolvemos juntos la misión secundaria! Inbox si te interesa.👈🏻
flaco te la digo de una y corta, este es un server que se habla en ingles, y aparte no se acepta publicidad, ya es la segunda vez que lo haces, ya se le avisaron a los moderadores, por favor no postees mas en castellano
skinny I tell you in one and short, this is a server that is spoken in English, and besides advertising is not accepted, it is already the second time you do it, the moderators have already been warned, please do not post more in Spanish
@shell nova maybe you can take this
Skinny?
it's a very coloquial spanish from Argentina slang
you beat me to the punch, with the translation, I guess google translate do wonders 😂
dude i hate dishes, they come in close second with the chore i hate most, laundry
it would be once and not one, but we can let that slide 😂
cybersecurity be like I did the gizmo with the bazinga and sent it down the scrong command line
am I the only one getting this from chatgpt
probably sleeping 😂
too bad they can't ask chatgpt how to solve the outage 😂 😛
Jajaj ahora las r3glas las inventan ellos, 😃 ¿Quieres unir fuerzas para el evento de THM? ⚔️ ¡Formemo un grupo de Discord y resolvemos juntos la misión secundaria! Inbox si te interesa.👈🏻 Si algún latino le interesa responde, si no se limita a hacerlo

Hello cyber people!
@mossy river @sick lance it's the third time already and really annoying 🙂
with all due respect please shut up
don't bother definitely a bot
youre right
Lowk cant understand them lol
I can but there is nothing interesting 😂
He meant, he can understand them, but nothing interesting in their post
@whole yew third time posting this
it was without the t 😂
To "take a break" from the side quest, I assembled and flashed a wifi pineapple!
Wanna put Proxmox on my server, then load Wazuh and OPNSense in there as well?
Oh.... all on a 128GB m.2. K thanks
Internal M.2 SSDs:
Up to 128 GB
https://lenovopress.lenovo.com/lp0553-rs160-intel-xeon-e3-1200-v5-core-i3-pentium-g-series
Yah.......... Has slots for 2 HDD/ SSD's though lol
Up to 1 TB for SSD....... WHO THE FUCK COMES UP WITH THIS CRAP?!
I initially got the wrong router so I had to get a different one. Came today. Couldn't help myself. But now my home assistant updates will have to wait lolol
My router is damn good, WAAAAAAAAAAY better than the ISP's crapshow. For my use case, it's great
Hey! so for moderation purposes this discord is english-only, please.
look like a bot
it has posted the same msg 4 times already
hello new here. I recently picked up a full membership and have been going thought the SOC rooms as well as the advent of cyber rooms.
very cool
it is great to have goals
Thanks, goal for new year is to move up from helpdesk into network engineer
Gave +1 Rep to @lime ledge (current: #483 - 11)
@slate gull you might want to take a peek at the id:guide for the verify account
The TryHackMe Discord Server
DM the Discord bot
"keep this token secret"
I was wondering about the verification. It had me make a new account in discord but I have this main account and saw I was already on the Tryhackme discord server.
Just blasted through all the networking rooms on the cyber sec 101 course. lol
there is no urgency, if you get stuck mods can help
I'm taking a day off of work so that I can spend time on some boxes and the advent of Cyber. I need to continue to put time into this for my career advancement.
Tomorrow
Ah.. The day that never comes...
professional development day! awesome
That was /s btw. lol
I am a sarcastic one.. not used to not knowing people not knowing me. lol
AoC is a good way to start on THM too. It's what got me into THM.
nice
It's all good. I have told my self I need to spend more time on my discord communities to network and befriend other folks.
That's a good way to do things and you are in the right place for that. Lots of talent and good people here.
yes, it is really healthy to make efforts to be more social
I did my AoC like two years ago but I have severe ADHD which always leads me to other stuff or my back pain gets to bad
I haven't done anything in AoC this year.. Haven't had any motivation.. and my mentals... not well. lol
we do what we can, equally important to look after ourselves, actually even more important is our health
this is a really fun group of people, mixed with opportunity to grow 🙂
Well I hope you find that moment or thing that brightens your path to whatever you want to do.
Ahhhhhhhhh 136 M1 Garands
i am no more an hack3r , i am an Omni , whatever that mean
got it
level up 🥳
Congrats
😄
thank KGB you always here to cheers up 🙂
Gave +1 Rep to @cloud quiver (current: #7 - 1175)
moo?
moooo! 
Planning on getting some
badges for defcon.. maybe.. if it's not too dang expensive or inconvenient. lol
@narrow heart communicating in reactions 😄
Congrats bud. All hail the Omni
thanks man , i wonder what Omni mean , i don't have the reference :/
Gave +1 Rep to @polar holly (current: #984 - 4)
The prefix "omni-" means "all" or "of all things"123. It is used in the formation of compound words, such as "omniscient" (all-knowing) or "omnipotent" (all-powerful)
that's cool 
I don't think it's in the Jargon File so I'm not sure the link to classical hacker culture
I use arch Linux btw
I use EndeavourOS btw.. 
Fuck
verify to post gifs. 🙂
Where?
/verify <your secret discord token> iirc
Is there a way to check if a package is installed or not using apt?
APT-Manual-Installed: no Does this provide any hint?
Where do I get my discord token though?
THM website on your profile page.
Does it give you an error? You might need to wait for a mod.
I think they're all sleeping rn. lol
yes
Which error 🙂 ?
Is it.. "Accounty no existy error"?
Sorry.. that was supposed to be
after that. lol
i only breathe pure nitrogen
Sounds dangerous
i like to live dangerously
hi
Galaxy gasss
Hey everybody 🚶
moooooooorning! have an easy day everyone ~
Good morning . Have a nice day too buddy 😄
Lmao. No.
Good morning all
Good morning buddy 🙂
Long time no speak in here - been hella burnt out of learning the last month
Could you tell me, can I stop my subscription for week or do kind of action?
what are you looking to do with stopping your subscription?
did you get monthly or annually?
Take a break
Monthly
you can cancel your monthly then you won't get billed the next month
For example:
I bought a subscription (monthly). To use it. Can I stop it before it ends and then activate it again and use the rest of it?
You can cancel it to stop auto renewals and you will have all features until your billing period ends
what are some good rooms to start with?
You can pause it, but I've never seen it, and it seems it's random members.
or check out the advent of cyber to start. it goes surface level on various cyber security topics and gives you walk throughs for each task
Plant a bug in one of the presents in santa's workshop to find out mr. claus' secret sleigh code
Then steal the cookies and milk
good morning guys, how's your day going
can't sleep, got work in 5 hours, playing the new indiana jones game
Thanks for asking , good for now , how are you 😄 ?
Gave +1 Rep to @regal niche (current: #2479 - 1)
Struggling to breath last night
And this morning so dizzy
Will have to call my doctors soon about vertigo 😒
has anyone here made a web-based ctf?
wanna know how u made the website/where u got the template from
is your code available?
oh alr
No. 🙂
in php?
My zebrina plant is losing old leaves and putting out new leaves. A dying leaf and its pattern
It looks like it’s got a palm tree imprinted on it
nice
A lot of the jobs you have some writing
#iveneverdoneawriteup
😂
haha thats reassuring
I should really start doing them
i mean i don't mind it
It’s good to remember how you solved issues
I could easily make some with diagrams as I know how to use canva
Obsidian is more of a notes program ain’t it
canva is good tho
Can you add images to obsidian
yeah but it lets you link your thinking together
Like a tree
oh yes you can, just like you'd add an image to a markdown
YES
it is soo good
like you can link a writeup to something you have studied before
👀
you need to pay for it to sync across devices
i do so using github
Yeah
macn- you can use notion for saving notes
My arms are aching from yesterdays weights
yoo, hows everyone doing
its better for sharing
yeah its probably good
Notion is a good idea until you no longer have a connection.
I heard notion is good, I just use obsidian for ease of use.
What are the pros and cons of each?
yeah same
I didn’t like it much
Notion is like too much features for me
Ah it's the age old debate of which note taking app is better. 😄
hi
I don’t like the design
I just want to write
I mainly just use spreadsheet ngl lol
good ol' excel
if i'm notetaking, i don't really use something that has heaps of features unless it's actually worth it
The best note taking app is redundant if you take crap notes. 😄
I'm definitely guilty of that 😂
understandable 😁
the trick is to take notes that you don't end up reading over
elaborate
as in just having a bunch of folders and files in those folders because there's just so much information you want to note down, that it can become a bit overwhelming
oh right
on another note, is it legal to create a discord which discusses exploit chains for educational purposes?
lmao
it is difficult to structure them later
there is also no linking for sure
Take notes from them again and in this way you can make them cleaner 🙂
hehehe notes for notes
that's dedication
Here's a hot topic.. Whats everyone's opinion on using AI? How would you use it and why?
💀
gm thm
gm
o/ sam
No pain no gain 💪
Morning wideboi
they are better note taking software than notepad I think lol
yup
I was talking about hard copy notes
I use Obsidian.
On the matter of note taking, give it only the important stuff and have it organize for you in markdown.
that works
idk, I wouldn't make it a point to rely on ChatGPT / Gemini to take good notes
gm stealth
Yeah, I’ll do some more today
yea this is what I use it for, it's also good at creating structures for different data formats
Doing this doesn't help you at all, you've got learn how to take good notes on your own
hard copies are good, if they're like flash cards or reminders
Just remember to take adequate rest and protein.
Eventually, if you do decide to take the Pentesting / cybersecurity route, you'll more than likely need to be able to take good notes
I often loose a lot of time organizing my notes, that's where AI helps to save some time. From there, you just have to correct some stuff the AI might have messed up with.
Yeah that's exactly how it should be used imo
it's also good to kickstart some coding projects
sure
also good at giving me markdown for this discord server i'm making
not sure if it can handle creating great discord bots tho
programming with ai is not always a good idea
unless you know how to code
if you can't read / understand the code, no point
and if you can actually code, AI will usually just make mistakes that take more time to fix
than doing it manually from hand
i guess thats because it can only handle so much computational data to comprehend for one request
it's more efficient to get it to help you with certain functions in your code
Probably not
If you can code, there is no reason other than laziness to have AI do it
I think thats a little unjust when it comes to the repetitive tasks like creating the structure of your code
huh?
You can "structure" your code quite a few beautifiers, especially if you're on VSC
and even then, tab exists
and I don't think many people use space as an indentation
help quick, I want to copy content from browser to the windows vm of thm, copy paste isn't working
Firefox based?
yes
Swap to a chromium based, firefox is bugged for some reason
like say if you have a coding idea right, a good project and you know the functions that are going to be included, and how the programs overall architecture is going to be. AI is pretty good at helping you create a mindmap for your psuedocode and give you methodologies to think more about so you can make your code better
ungoogled-chromium would be my personal recommendation
might use safari
english kinda not working atm but i think you understand
Any competent developer is capable of planning a project, and how it's going to be, especially the roadmap for features
methodologies in coding vary from developer to developer
exactly why people who copy chatgpt code get flagged. It uses similar methods
although you can take the good things from it and adapt it I believe
They get flagged because the code is usually outdated or has plenty errors 💀
as in, make it better so you learn new things
ahhh
That lesson can be taken away from just about anything, so it's not limited to ChatGPT, I don't know whether that was your intention or not
thats just incompetence
HUH
this i mean
lol
It's not bugged?
ChatGPT takes code from places like Github, Gitlab
When copy pasting on task 8 it is, I don't know whether there's a fix for it
I just know swapping to chromium fixes it
I assume it's some Firefox related error
yeah this is true, it depends
Firefox doesn't allow copy/paste from JavaScript by default.
It's not a bug.
and morning Scrubz, how is you doing today
It's intentional
Oh
Sup Sam , how are you today buddy 🙂 ?
doing great
thanks for asking @cloud quiver
Gave +1 Rep to @cloud quiver (current: #7 - 1191)
ChatGPT pulls code from Github, Gitlab and maybe a few other platforms, so any errors it gets is more so a reflection on the sources it pulls from
Glad to hear that , have a nice day buddy 😄
morning KGB, hyd today
Thanks for asking , great for now , how are you 😄 ?
Gave +1 Rep to @wanton ridge (current: #210 - 33)
Actually didn't know this, ty
Gave +1 Rep to @sick lance (current: #1 - 3095)
hey, I tried on chrome but its still not working
Bad, you keep beating me at welcoming people 🫠
UH
Ask in #1305926862114914325
command +c and in windows vm control +v
KGB actually has a chance of catching up to Scrubz
Give you browser permissions to use the clipboard.
he's getting like 60-80 rep a day
already given
Saying welcome to people is a lot different to helping people..:D
rue
using virtualbox with kali
What did I miss
i somehow deleted my message 😦 I have issues with my mouse and keyboard not showing in my VM
Do you reckon we could make a metadata remover in ChatGPT rq?
That’s odd
Ima try it
Maeve, are your mouse and keyboard "stuck" within the VM and unable to escape? Is that the issue?
well i had that, but i managed to get that fixed now. I just keep getting notifications that my host wants to "capture??" my mouse? sorry if that translation doesn't make sense
i seem to have got my keyboard working again though by putting text in the clipboard.. maybe a reboot will just do it. Sorry for wasting y'alls time with my noob questions. Thx 🙂
Well, I'm not using oracle's vm, but supposedly there are 2 "X"s appearing on that notification. One of them is a "Crossed out" X that should permanently stop this notification
Why would you need to?
yess i got that far, still get them tho
Mouse/meyboard is captures is just letting you know it's using them.
lol, ok i think it just translates weird to my native language then 😂 Thx!!
Did some digging on oracle's forums and looks to me like there isn't another builtin method of suppressing this notification. You probably have to live with it 🙂
Hello , so i'm facing a problem right now , i don't feel my " rank" in Tryhackme is relative to my current skills , yes i have a bit of knowledge now about how things work and stuff but when i try in the practice room without " tryhackme " guide like hay check that hay check this i feel like a blind guy without his cane just waving his hand trying to find the sugar and maybe and maybe not he will stumble upon it until he asks " google" hay can you help me find this and then "google" with his eye sight that already have seen this sugar give it to him with no effort(Aka a walkthrough) so the blind guy aka me feels like am just waving my hand around without a system to relay on so i can really say yes i tried everything i know ( soooooo my question anyone can help or guide me here ?)
It's perfrectly normal to use Google , I don't see anything wrong there 😄
by this i meant looking up the solution after i gave it everything i can think of
This is also fine , especially when you're on beginning of your journey . Just make sure that you understand what you're reading and try to learn something new , don't just copy/paste payloads , that's a bad practice 😄
okay i read i understand , but me going into the next practice room and still don't have a system to think is my problem
It will develop over time 🙂
well there’s worse things to live with, thanks for helping out 🙂
Gave +1 Rep to @wraith harness (current: #2479 - 1)
I'm not an authority by any stretch, but when I get frustrated with stuff or feel lost in a certain spot sometimes just going back to whatever I'm having trouble remembering and drilling through the intro rooms a few times until I've dedicated the "path" to memory helps me a lot.
Gotta love the Xbox community.
Xbox teased "something little is coming" and everyone banged on a mini Xbox 360, or a handgeld getting their hopes up.
And it was a partnership with the darts player 😂
@sick lance there are 2 rooms which redirect to the same url
same shit, different name ¯_(ツ)_/¯
o aight
especially a handheld
that'd be idek how much to develop
and that wouldn't be "something little"
they'd shill it for months before releasing it o build up hype
Could be a duplicate room, or one of the rooms that has a sub and free room.
maybe
Remember when we used to have whole in-person conventions just for the release of a new phone?
Could see that happening if they went with a new handheld
Doubtful Gaww
Hey hacker fellas?
the security, renting the space out, hiring guards, cameras, the staff, event organization, prizes or wtv
Depends if that was done in their shop, half the stuff would already be there.
still
not worth it, way easier to setup an SEO campaign and buy a few months worth of yt ads
I mean I don't disagree, it's probably why they don't do that stuff anymore
Along with the digitalization of media - etc etc
And you know, that pandemic.
probably cheaper in the long run aswell
Weren't conferences for releases gone a long time before COVID
Could see that happening if they went with a new handheld
I was addressing that part.
oh
I remember when I got to Beta test half of the Tom Clancy games on Ps4.
handheld wouldn't be worth it
Eh it hasn't stopped different, sweatier types of conventions from happening
The game tile was "Classified content" so anybody who looked at my dashboard had no idea what it was.
R6?
Man I used to feel like a real big guy doing some of those earlier closed access beta tests
Yup.
And Wildlands, that MMO and a few others.
Mine was done pre-beta 😄
Just before the alpha stage.
I won't knock it. Must've been fun 
havent been here for a while, where is scrubz ?
anyway to use thm on dark mode?
use darkreader theme/extention in your browser
hey how are you doing bro
i have some question that isnt regarded to a room
related to a room*
?
About?
Then you can ask 😄
Dark mode will be released native to THM this month.
at my office i am using a debian based machine, and a windows host, both the host and the machine are on the same local network and subnet, and on bridgd adapter, and i cannot ping from the linux to the windows. however i can ping from the windows to the linux machine. i tried switching to NAT and it works however it changes the ip ranges to be unlikely the local network , why does it happen and how to fix connectiong between the two?
(its not icmp problem)
its been 2 days like this and im akward to ask my manager
That's normal. Windows doesn't like to respond to pings by default
do we have rooms for cyber security developers ? coding rooms
solution?
go to firewall rules allow icmp
by defaults it's blocked
nobody allowed to touch firewall settings at work. i wanna make sure its firewall before i go to manager
i dont think it is
because i can ping to windows while on NAT
if u using Virtualbox use Bridged network mode and if it's WSL go talk to manger and do changes in firewall.
i think during work while pasting tons of chatgpt commands for the project i might have blocked connections from the VM to the host
use bridged mode, thank me latter
ok i will ask manager tomorrow
sure!
?
any suggestion ...
That I don't know. @sick lance Do you know of any info sec dev rooms on THM?
There is 0
thanks
Wow, worst decision..
yea scrubz was waiting for you lol
what do you say
i can ping on NAT but not on bridged while need to be on bridged most of the time
😆
to clarify, the host has two ip addreses one for cable internet and one for the wifi, both are not pingable from the machine that is on the network
https://tryhackme.com/r/room/securesdlc Specifically task 6
Re read what Matt said
finally i have jayy, thanks
np :)
im just curious, would a similiar WPA (similiar to AOC day 11) wifi attack work on my own modern day home router, and if so, is it legal to do it on your own home router.
if not wpa3 its possible
Just out of curiosity. It's doing alright, integrated exiftool into the script with some python modules for changing the files properties to a random character set. Although the idea has been having a few errors in the python code
Most routers will have fairly well generated passwords, so most likely not
if not wpa3 is possible
WPA3, no, 2, yes. And Grey area (I didn't do AOC 11, so not sure what that entails, but if it's deauth, statement still stands)
what about a WPA3 room?
There are WPA3 Dragonblood vulnerabilities, but it's a lot harder than WPA2
so would it still techinically work if its has a simple password, like theres nothing blocking me intercepting the 4 way handshake or rate limiting the brute forcing of the password
Well, all gods here. I heard a rumor from one of my friends who said he came across something on the darknet claiming that Discord has a vulnerability where, if you join any video or audio room, it can access your screen and audio without screen sharing. Is this true?
i kinda lost motivation to learn on the websitesince i got the job its not good
No.
If you're able to get the handshake, then you can get the hash to crack
ohh thank you, i will figure it out on my home router one day :D
Gave +1 Rep to @shut hawk (current: #14 - 586)
yeh i forgot the hash you can just crack somewhere else, i though you had to keep on sending it
can a beginner wifi learner use this
yep
im legit excited
tyty
bro #general message...
i would suggest using one of the other VC channels
Anyone know how to defend against privelage escalation attacks......unfortunately might be experiencing one rn...im offline on my main machine but i need to figure a way to regain control
ok
Without wiping literally everything
Check this article 🙂
well that would depend on what the vulnerability is
Legend
All ik is someone has RDP'd in and started enumerating
see i'm not pro, but when i took RDP of PC1 to PC2, i got logged out from PC1
i think when someone will do the RDP thing u will know ... correct me if i'm wrong i'm not a windows user.
jayy or kgb
is it possible to take RDP in windows using powersell in background mode ?
@orchid skiff
i'm curious
cool then i can use windows pc again it seems safe, not like linux where multiple RDP allowed for same user.

Well, I’ve completed the SSDLC room. Does anyone want to team up with me for a CTF challenge?
If anyone is looking for a team, kindly ping me. Please send me a friend request first, as I’ve blocked direct messages for security reasons.
It’s so gooood
Good, holiday soon.
Can't wait to go sit at Loch Long then jump in a hottub

I’ve never been in a hot tub
When you say it like that, just sounds like my baths
Basically is lmao. Just hotter and more bubbles
I bet I get more bubbles out of my bath bombs from lush
And it smells like bubble gum
Yep that’s me
😌
I am the type of person to totally get in that 😆
Who’s a good puppy

Stafford bull terrier
I would name that dog bean
dogs are such great friends
You should have seen me the other day. We went to this place where there was plants and just as we were driving away I saw a fish shop, then a reptiles shop and then a bird shop. Best day this year tbh
I went in everyone
happiness is always a good thing
I got to pet someone’s dog in the fish shop and then I got to pet a bird
anyone want free money
In every one**** lmao not everyone
nope
😆
How would I get my streak back if I lost it for reasons out of my control by missing a day ?
you can start again
I think you may just need to start again
😦 sorry
the streak is just for incentive, not to be a stressor in life
if you want one of the streak badges, i can share with you
Tldr this happened before I had a 90 day streak. I decided to keep a religious holiday for the sabbath and I lost my streak bc of it. Also I kept a jewish holidays for 3 days where I can't touch tech at all during that time and I lost it again then.
yea, the Shabbat rules, too bad you can't make a bot to help you
I'm wondering if I can ask an admin or mod to work with me and if I have streak right before the holidays to freeze it assuming I have a streak right before the holidays
I can't get more than a 3 month streak bc of it
they will say the 7 days gives you 1 streak freeze
What do you mean
Please explain this
every 7 days gives you 1 streak freeze, which does not really help you in your case as every weekend you need a freeze on your streak
you might get help, just i know that is what they will first say
do we need SQL for CyberSEC?
SQL basics will help you
nothing I am learnign Coursera and there is a lesson about SQL
I typically manage the weekend issue by doing it right before sabbath starts and then right after it ends. Issue is it's typically a 25 hour period so I for sure miss a full day and use up my streak freeze . My issue is longer jewish holidays which can be 2-3 days of no tech at all .... I don't think they have week long freezes or 3 days freezes like that .
i assume you are pulling data from a database, so yes, SQL is used in every industry
Not at the moment, but future wise maybe.
THM has a room on SQL injection
Thank you all appreciate it!
mainly reading logs I will be doing
yes I monitor Soc L1
yea, streak freeze for that long is an issue
i might need SQL to create some reports for my boss
I've been on tryhackme for 3 years now. Never gotten past 90 day streak because of this. I'm also not comprising my values for my streak.
thanks, we working with external vendor So i need to monitor them
Gave +1 Rep to @mild zenith (current: #1637 - 2)
Thanks @grizzled wing
Gave +1 Rep to @grizzled wing (current: #83 - 89)
Just started here learning what they need 2025 is going to be explosive
streak badge
So since I have time I am -reading Google courses Cyber sec
(and THM obv)
Yes the basic one
the Addams family is into cyber security, cool
Google Cybersecurity Specialization
Tib3rius has a video going over the merits of this cert
Cisco done some free badges like 506
5-6
Havent done paid CCNA or CSST
*done
trying my best- been stuying since last year but things are packing up now too fast
if you need a book
I would love for the Droid to take my commands and i just monitor 😄
Is it possible for a black hat hacker to be a member of a SWAT team in the USA? It seems contradictory because a SWAT team member works to uphold justice, while a black hat engages in criminal activities. 
Is this real?
no the pain is there - my brain is fried
no
So now i must learn SQL pfff
Is it possible for a judge to lie? Or a doctor to commit malpractice?
Thanks all back to studying again - Google Cybersecurity Specialization
select * from data
where family == "Adams"
SQL
i'm just asking a question related to cyber ethics as a beginner.
got it
black hat = illegal stuff
yawn >.(\
no some one just send me frined request he said he is one, so i just blocked him.
i was just confused
👍
any DMs that did not ask first = BLOCK
I mean its a valid question
TBF if you do blue teaming you should be preatty aware of the black hat scene right :)))) (joking)
I have a red hat
ok
BEANS!
I have purple hat
Chungus
he yapping about beans big beans and small beans
🫘
which white hat earns money playing games. 😆
If someone's first message to someone is that they're a black hat hacker there's a >1% chance they're legitimate
white hat
beans of all kinds
I have a black hat
there is always someone asking for black hat, or asking you to hack someone for them
I've yet to encounter an auto friend-RQ bot, surprisingly. Just a lot of people asking me to commission art from them.
It has NYC written on it
every week the same crap
I mean as far as social engineering goes it's pretty low level but I'm sure it only needs to work every once in a while
quantity not quality :))))
yes he said he can hack google with MITM , i said i gave u 5 minutes change the google.com background image with your own 🤭 then he/she was quite.
once they get you in the DM trap they appeal to ego and hacking skills.
hack google, oh man, this sounds hilarious
🤭
You'd be surprised how many ppl around here still click the ""Your favourite store offers free coupons, click the link"
totally not some random guy tryna hack somebody elses account 
specially if u send them THM 80% discount lol
Around here as in where Im from, obviously not this chat :))
Hey guys have you seen this amazing new song? obvious mal link
I mean "Hey, I need to get back into my facebook account, it was hacked recently due to a message I clicked because it said free robux"
😂😂`

yep, i messed it up
There you go
5 minutes is a short amount of time, but that's google lol, good luck
Hey what's the age requirement to use thm again?
no i mean i will access google.com in my browser and he must change complete google.com background not some screenshot 🤭
@shadow sphinx he did it
Is this really you in this picture? 😮 -->
I am pro hacker
yoo why is my google background full of cats
y not
not it's cheating, i said real www.google.com
Okay
We're being facetious
I did but they already fixed it

can I do the same with self-xss?
They had a backup 
yea that is the real google.com no
I changed google's image webservice to only direct to pictures of your mom but all the files were too large
oof
joke
/dʒəʊk/
noun
noun: joke; plural noun: jokes
a thing that someone says to cause amusement or laughter, especially a story with a funny punchline.
Your dedication to the bit is phenomenal, have a good one
I have multiple malware operating in my VM haha
dumb question but can the malware actually escape the VM?
VM is safe if it's running in NAT one of my friend said
no, that's the entire point of a VM
Tought so, just heard a lot of (non professional) guys telling me otherwise
how do you keep it secure and not escaping to your host tho?
It is called sandbox evasion
i have a serious question cuase you are expert in Buffur overflow.. may i ask ?
oh, might be corrected
:)))
It's not too common.
learn something new every day!
wdym?
It's very rare and mostly vulnerabilities in the sandboxing application
Or hypervisor
malware can escape containers, but malware can also not load if it's in a container 🙂
Wait, you were not joking lol, just googled it. Thanks
Gave +1 Rep to @devout palm (current: #28 - 335)
okay, thats the only reason why I don't run malware in vm's atm.. I'm unsure if they will escape to my host machine, cause they can be pretty nifty
I am not an expert but sure
cause even though it's rare, it's good to know how to get around that
smarter meoware implements sandbox checking to see if it runs in any container and if yes it just shuts itself down or does "what is supposed to do"
sandbox evasion is when malware detects it's running in a VM environment and doesn't execute it's payload
To get rid of analysts
Ahhh so it's not an actual escape method. It's just a detection/dc method
morning guys how is everyone
and analysis 🙂
Malware can escape the VM if the virtualization platform has a vm escape vulnerability
The only way to win the game is to not play, basically
Hrm... do I work on my server today, or nah...
You do, and you are going to do amazing !
Do need to get 2 SSD's though 
put Proxmox on your server dangit! 😛
But yeah, very rare
if it's a sandbox escape, wouldn't it mostly involve a side channel attack or zero-day you reckon?
Oh. That's the plan. Proxmox as host, then have Wazuh and OPNSense running on it. OPNSense is going to be a bit of a PITA, I can sense it
Definitely, I attempted it last year. Gonna give it a go again soon, but I have other stuff I'm situating for now
I need coffee STAT then!
I met a business owner once who believed letting random Internet hackers into his systems was a good thing, as they would maintain them for free, patching, good uptime etc.
Is there like any website that can be trusted regarding news and development in this field? I was just resarching this escaping VM thing and I keep finding conflicting infortmation lolz
I was learning some reverse engineering and used Cheat Engine. When I modified my player name with some fancy emojis and pictures in the game’s memory, it crashed. Now, whenever I restart the game, it crashes again. well when i modifed values in ram why after cool shutdown it's still crashing is it kind of Status stack Buffer Overrun? how i can fix it from my side cause now i have tried to revert the values but it's not working. @devout palm
I need coffee STAT to run background processes and they still fail
Think that Thinkserver RS160 only has 32 GB of ram, but the other 2 slots are open, just... doesn't wanna work reee
Nothing special for the m.2, just basic 256 GB drive (max the server supports) then 2 SSD/HDD slots... and max size for SSD is 1 TB.
Still hate they set a a limit 
XEN XEN security vulnerabilities, CVEs, exploits, metasploit modules, vulnerability statistics and list of versions
Bookmarked, thank you!!
Gave +1 Rep to @lime ledge (current: #449 - 12)
Please share your input so I can report this to the game developers. It’s a cool bug in the game’s latest release since it allows me to change anyone’s values this way.
It'd have to be, wouldn't it? Maybe getting a return from the host machine somehow? Evasion usually seems to consist of malware just not running when it detects that it's in a VM, but maybe if there was an intentionally written script for when that's the response? Usually methodology would involve forcibly crashing the sandbox, so maybe injecting into the crash response?
Any one
What's the age requirement for thm?
I just saw a video on old armor, did military clothes get less and less protective.
Usually games have a set of symbols that are a part of its alphabet. Similar to how you can inject html into poorly written websites when you use text fields, you can also inject other forms of codes into certain games as well that can cause problems with save recovery or startup.
0day.
And nobody is gonna burn that one a random
very true
When you put in an emoji it isn't an image, it's a codebase based on ASCII(usually but not always), and sometimes that can cause problems.
0day hoarding could be a TV series 😄
but it's not limited to my side , the values modified are stored in server, even after game reload it still crashing.
APT group type beat
Was it saved onto a cloud server? Like a steam game?
I don't talk about game hacking here but it can be that the modified data was saved in the game files
Aren't they unicode?
Why does nb answer
There's a couple codebases for emojis, unicode is one of them
no let's say it's on local server
so if values i can modify on my ram on run time , stored in server, and on next run game crashes it's an issue
i'm going to report that.
ok
thm no age limit, discord 13+
That just means that during the startup process (or the save pull process) the raw data for the emoji causes a failure, probably as a result of failure to recall.
Speaking from my inexperience with virtual/sandbox escape, I would say the malware would try to escape based on timing really. It would wait for you to make a mistake such as connect to an internet source they can compromise or find a clipboard exploit if you enable clipboard, or wait for you to open a shared folder and then have an automated script to deal with that.
What was the question?
Ty (I know abt discord 😭)
Gave +1 Rep to @heavy storm (current: #1228 - 3)
Thm age limit
I believe the armor changed with the weapons used
Htb is 18+
I think its 16+ for receiving the rewards on the advent. Otherwise I dont really remember seeing any age limit
Tyy
If you're enabling clipboard connection between your main machine and your sandbox - that you're using specifically to analyze malware, you're the weak link in that chain, not the VM
There is none, however if you're younger than 13 you need a parent/guardian permission for a sub
I'm 16+
That's fine.
(why did I specifically say 16+ 😭)
I suspect the crash occurs because, when the game fetches profile details, it tries to load the large files or data I inserted. This might overwhelm the RAM and cause a stack buffer overrun condition.
No idea. 
because your age can be a floating point value 🙂
and that's exactly why attackers go for the low hanging fruit
It's mostly deserializing issues
guys
is it worth going to college for penetration testing or should i focus on comptia+ certifications
Why wouldn't u go to college if you're able to
How can they prevent it? Any suggestions? I will note them down under the 'Suggestions/Recommendations' section in my report.
Its expensive :)))
why do people pronounce it SOK instead of S-O-C where does the K even come from? It's "center" not "candy" me no understand 
You're doing a report?
isn't the correct pronunciation S-O-C?
yes
Then we can't help
His game keeps crashing on startup cause he put emojis into his user name
ok
cause it might not be what i need so im asking for input
you should probs just reinstall the game if you have corrupted the files blasting it with cheat engine
Think of sock.
If you are having problems financially going to college and are doing comptia certifications anyway I'd highly recommend wester governors university. There curriculum is very comptia based , you can work at your own pace and tuition is so low most government college aid funds pay for it.
Western governors university has 5 or 6 comptia certs as part of the curriculum
Does your family/financials/life situation allow you to ?
i would go into debt
They just couldn’t be asked to think of something affective
so if im gonna go into debt i want it to be worth it you know?
Not working, even with just another player id i can make same condition for other users, permanent crash after install reinstall.
I just applied to western governors and government is paying for it. I'm not paying a cent or going into debt for it
ah ok thank you Ill def look into it!
Gave +1 Rep to @tardy finch (current: #241 - 27)
to add onto Strive's suggestion, ASU's cyber security bootcamp is relatively informative and tuition isn't that bad, and scholarships are pretty easy to come by.
Going into debt is part of being a grown up, my house is worth a million dollars but I owe 500k on it
Bootcamps have nothing to show unless it's from a very large well known organization or offers major industry recognized certs. Most bootcamps are a scam IMHO
Going forward please don't ask in here again for report work
"Please read and follow the instructions in this task carefully. If you skip over this task and encounter connectivity errors as a result, the Discord volunteers reserve the right to ignore you." in Upload Vulnerability: Has it been that bad ? 😄 😄
I think a lot of people shit on college degrees but can't really shit on the time allotted to growth
well thats different than student debt and your house is a million dollars so its kind of hard to pay for that out of pocket. I dont have a stable job yet
And time available for it
I agree, I didn't point it out for nothing. It's compTIA partnered and one of the top campuses in the country. It's totally understandable to be skeptical and careful with your choices though.
Bro sky find a online tech college which is really cheap and get government grants to pay for it. You won't need to spend a cent on it
Yes..
awesome imma look into both of these
I have been working on this degree for only 2 months now. I'm about 20-30 %done with it already
Feeling Sorry for you guys 😗
Bc of my tryhackme experience I was able to test out of alot of classes
Uni / College degree is only gonna help u get what u hackers call the "initial foothold
" a.k.a the pass from the hiring department to go and do an interview with the boiz. Once ure in the interview no degree is going to help u it's a battle royal in there, u need skills
. So basically skill > degree and degree good only if it's from known unis / colleges which cost a fortune 


