#general
1 messages Β· Page 651 of 1
Everyone is kinda dead right now, since it's the end of the year π
awww duckies
Quacks?
theres some ducks at the canal in my town
sames
Dinner?
Nah teenagers are wild fr
@void zodiac Where have you been ?
Studying and were gone from THM. it's always like this, I'm interested in something for 1 month and then I'm not
haha
At least my interest towards cars is constant
you came back to thm or just passing time now
I asked here if I wish people Merry Christmas today or tomorrow
ok
Merry Christmas Eve today
Merry Christmas I guess
save it for 25th
Unmerry Christmas then
I'm so jolly right, I have straight up presents up in this holiday spirit. Ain't no way yall elves staying sad after I'm done blessing you with my christmas candy cane
Happy holidays work too π
I got side tracked again
Does anyone play assetto Corsa or BeamNG
You know how it is, back to work 
Or war thunder
Planes I hope?
ground sim
Eh
pls don't start playing
Then it's a miss
I already bought a flight stick for war thunder
buy dcs and forget war thunder
DCS is wild, so fun to learn
in war thunder you pay with your soul
They have free stuff that is more than fun enough for me
christmas holiday is nice but feels like any other day at the same time
i guess thats just growing up
I played BeamNG π
I don't pay
I play in squad, I fly a single prop BF109 and my friend flies some top tier jets
Because I'm slow and I fly low, I get undetected
But I get extra XP and Silver
Like twice more
It's a really easy grind for me
That's actually not that bad, top tier jet fights are the biggest piece of dogshit tho
And joy for my friend, as we can play with our favorite planes
Well, I don't die with my BF, so I'm fine π
I enjoyed playing bombers, I enjoy more planning than action
My tactics are simple, fly as low as possible, fly inside the river or very close to land, bomb the target, return
time to get back to work
how do I hack my old ig account back someone please
@mods
ah nice a meander
Press F13 and DEL button at the same time
the river on the right turning into an oxbow lake lol
Just a normal day on THM
fr
It do indeed be pretty slow today
@brittle lynx @rapid merlin Probably a congestion on THM side π¦
Hate it when they forget to feed the hamsters running the servers before Christmas...
Hi this would be illegal and against our discord rules to discuss.
I liked you memes- Rs_snab
wat?
tryhackme Is there ddos ββand I can't log in?
guys
so internet might be slow as
yea
?
is my internet garbage or is ty hack me slow at the moment
Very interesting way to make SOC training fun
where are the try hack me servers based again
thm am I the only one slowing down?
thanks bro
Gave +1 Rep to @kind narwhal (current: #1661 - 2)
Hello did anyone finish the Red Teaming path can I speak to u please
try a VPN
or restart your pc
restart your router
contact your ISP
could many different issues π€·
your local cache?
solved it was related to thm
server side?
yep
THM slows down during events because of the amount of people on it.
looks juicey
Polish cheese cake
Looks delicious π°
Ohhh that looks good
I donβt usually eat cheese cake because of the texture of the bottom
Oh wow, where is this
Is that a video game
What π€£
Alllow it
Hehe it happens to the best of us
Listen I lost my glasses π€£
I canβt see it properly
π
But it looks nice though
Are you polish
Nie, but my parents are π, i speak a litle polish
Oh okay
Are those almonds on top or what are those?
I can read it , i went to polish school when younger , can read it π
Correct , they will grill on the top and get so good π€€
Interseting, yeah just harder to tell when they're covered in the same frosting. But yeah looks delicious
Tatry?
Got my 1st gift already a Swiss Knife , 
Hnng.. I love knives, looks super good!

DAWI
Sorry sam π₯Ί can't send it , you live too far , it would get bad during transport
ho!
howdies!!
I installed geny motion in kali linux but i can't see bridge network option in it.. Any hint or solution?
move to room help to get some serious assistance
any one, or all of you are watching the dx thing?????
Hi π₯·
thank you , hi!!!!
how are you feeling???
Welcome π
being in this society is the greatest thing, welcome unicorn
dx π ?
What's news here
a movie like
If advent of cyber is finishing on 31st of december then when can we expect the announcement of prizes?
protonvpn is best correct?
very fine , just as the name says ,general, speaks anything popping on your mind
It's one of the best, in my personal opinion.
Mulvad VPN is also up there.
whats mulvad
what are you guys speaking
A VPN provider.
Cake ready
what in the name of wha is that
Not to mention they're one of the best secure email providers these days. Absolutely love them for that for my personal use
Jan 6th is prize drawing π
Polish cheese cake ,
In poland we call it Sernik
im in the middle of getting a vpn cause i got money for it now ;-;
Business use? Not so much, it's funny seeing documentation from some of our client's software providers specifically callign out ProtonMail in their docs as not supported for email sync
due to the end to end encryption
It ends today , but you have time until 31st Dec to win raffle rickets π
even just to get ProtonMail going with Thunderbird as I do, you do need the local ProtonMail bridge
watss it made of
what? how
White cheese ,almonds , sugars,eggs,milk,cream ,Butter , baking powder
no not the VPN, this is specifically for their email client
Yea. Got the unlimited thing on a black friday two years back, pretty neat package alltogether.
Use it a lot.
If you're not using one of their clients, and instead use a third-party client like Thunderbird, you just need to install this to get it going: https://proton.me/mail/bridge
Very easy to use and just does the end-to-end encryption resolving on your computer for a local clients to get what they normally expect
i have a proton account does that mean i can sign into it through thunderbird instead to
I mean do you have a Proton Mail account is the operative question here
yea
Then yeah all you need is the bridge first
Proton Mail costs right?
How much is it?
pretty cheap, I don't remember exactly but it's only a couple bucks a month
I guess you lose access/syncing if you don't pay lol
Indeed but when it's only a couple of bucks, it doesn't matter, but the same goes if you had an O365 email account anyways and that's significantly more expensive
You can make a free mail account.
Very true
Oh nice, yeah you're right. I just pay more for a couple more features
Donnu how limited it is, but you can send and receive mails with it, so that's already something.
I have a free O365 account
my brother just shocked me with a tazer pen
You have a free Microsoft account, that's not quite the same thing
Well a paid one for free (school studies not cracked lol)
Once you go up in features for O365/Azure/etc it gets extremely pricey
quick question - does sundays kub avdent take FOREVER to launch ?
I know office 365 are the programs
Indeed but they try to build it all out into a platform to nickel and dime you for higher tier subs the more you need
I'd never pay for O365. So much better, cheaper ones.
I'd say LibreOffice, but yeah I barely have a need for these products outside of work
iirc WPS is one of the shady chinese ones
Nah I only have them for notes
Well notes and files
Natively created for note taking
Irony in the fact I'm bad at using proper note taking programs
Then again I forget to take notes half the time
So you put them in Word documents?!?
WPS β APT β π
(or equivlant)
Oh yeah I double checked and that's literally the chinese KingSoft. I was just reading about that the other day
just ouch lol
What was it about? I've never seen anything dodgy on WPS
Inherently sus when there's better options
I guess China has that reputation
And do you really need KingSoft to be one of your vendors with a name like that lol
On that side of things anyway
They do when more and more is being blocked in the US due to security concerns
Tbf I have a Lenovo π€π
Yeah also Chinese, but fair they're pretty decent manufacturers. I just wish ThinkPad stayed with IBM
But they gutted my fave Motorola sadly
once Lenovo got their hands on Motorola it kinda just became cheap shlock sadly
Is it normal for batteries to say "may explode or leak"
Go back to work
lol that's normal for all batteries after a time
No it's Chrismas eve, we haven't gotten a single email lol
will probably be let out at noon
Referencing dudes name lol
im officially a proton boyo now
Now just start gaming with Proton as well (unrelated) lol
It's Christmas here technically 3 hours in π
nice nice
i got unbanned π
thank you
Gave +1 Rep to @steel aspen (current: #392 - 14)
Nice, now don't blow it lol
What email are you hoping/not hoping for?
no emails area ideal for Chrismas Eve lol
Oh working on call ig lol
I just work in IT so, yeah lol
nah I'm at my work from home desk during active working hours
Do I need to call Crowdstrike? (too soon?)
I just have this side Mac Mini as my third work monitor
Quick.. Turn on the Swedish television
Oh fair enough
I do my *nix/infosec stuff on here, segmented from the actual work network
What is your job?
Infosec professional (everything lol) and sysadmin
but I still dip into help desk from time to time. We're a small company
Don't syskey yaself
Yeah it is
Sorry I'm sarcastic tonight
although lol often have to cover for Microsoft's mistakes by making sure to read /r/sysadmin Patch Tuesday threads and more
What's on Swedish TV?
to make sure it doesn't bork a ton of our servers in production
lol indeed, typically I catch these issues in time so we can hold back problematic releases
We do have multiple clients though and despite my testing, some of our smaller clients are usually the actual test bed
You mean the CrowdStrike issues you mentioned previously? We're thankfully on a completely different EDR which I manage
Oh yeah that's alright
including the (remote) SOC which is neat, but that's usually just me changing the decision the SOC made lol
outsourced to be fair
Are you one of the main IT people there lol
I'd love to be in a SOC one day that's my goal
Our company is all IT, we just do IT for many small to medium businesses, as what's known as a Managed Service Provider
Probably stressful though π
Oh yeah I've heard of that
Third party for clientele.
Or external
Is probably the correct word
Yeah, sometimes gets a bad rap, but we are the IT for many copanies who can't afford to hire dedicated staff, and arguably get them a much better deal as a result
mhmm, we're third party consultants basically
Yeah a lot of small businesses can't afford IT people let alone cyber security
Why hire one sysadmin when you can get a team of people who can help you with a whole range of IT issues from infrastucture and sysadmin to help desk and etc
mhmm there's no way these companies would have enterprise grade EDR without us with me at the healm c:
way better than the shitty McAffee consumer stuff they had or whatever lol
Merry Christmas, Hackers!
Stay safe - hack the planet! <3
I'm in a small town where there's 2 main IT businesses covering 13,000 people. And im pretty both businesses are a one man team
ouch lol, yeah we're a much larger firm than one person but not by tons lol
Fair enough too especially at a better rate
Yeah McAfee is as bad as it is annoying.
mhmm, this is more on the order of 20 people at least... supporting about 120 clients, but most of those require minimal interaction and help most of the time
Yeah I got into IT hoping I wouldn't have to talk to or deal with people often, turns out it's just as bad
Well it's not dealing with people as much as it is with public.
@glass nest WE BACK BABY!
okay actual work question from the boss, brb
Shared interests and I'm down
18 hours behind dang
Did Santa brinbg you great presents?!
God Jul! @sand trench @dusty tapir @chilly veldt
It's not hunting season yet right? π¬
He know when you're awake! You should be in bed. He better not catch you checking presents under the tree!
Has it been snowing in new York? Doesn't it get bad there?
Sometimes yes, sometimes no, It's very much a hid or miss thing
I'm gonna tell him he's doing it wrong
Oh true. It's summer here technically but we had lightning and thunder with a downpour of torrential rain. So that's cool.
π
Yes / no. New Jersey, of course. New York, never sticks.
New York City had its first measurable snowfall of the season this weekend just in time for the holidays. A white Christmas isn't guaranteed, though, as temperatures will creep above freezing this week. - Articles from The Weather Channel | weather.com
Snow, snow, more snow.
alright lol, interesting interlude helping my boss with a remote connection solution for a new Raspberry Pi we set up for a client's music with Samba.
After overthinking it suggusting Wireguard, nah we just with with our RMM which I already have on our Linux servers anyways
Good morning and happy SOCmas eve, all.
morning?
Different timezones exist, yes.
ah yes
7:50AM here, very strongly morning. :)
hey same here. morning
New Acronym Unlocked: RMM
β
why i run nmap there will be RRVAR has grown to over 2.3 seconds , decreasing to 2.0
can any one help me
I'm annoyed, so the maintenance people were suppose to come over on Monday to see if there's any work that need doing. They never turned up or said anything and then today the landlord texted asking if they can come over now. >.>

Understandable
nah tell them to come back later or something
I really hate it when stuff like that happens.
Tell them you need 24 hours notice π€·ββοΈ
or make it annoying for them
My partner said no it's Christmas
Yah, they can come over, if they give me compensation
They can come over if they dress like Santa and give us 2 new gaming PCs
lol you'll hear it a ton once you start working indeed. Our RMM tool helps even more here since it will alert us to system status and more, provide automation, on top of just the remote access
isn't there a local law stating 24 hrs notice?
Most places have at least 24hr notice. Some even have 48hr.
They don't always obey it.
sniff I smell a formal complaint with the city coming on
You'll usually get the "Oh the notice we put on your door must've flown away" or some other garbage excuse.
and then, xmas .. send them coal ^^
You can deny entry, it's illegal in the UK
It's so annoying we remind them of this every time. We are also 2 women so it's kinda uncomfortable to have a bunch of random men come into our place. Especially after a neighbour was scaring us the other month.
I know @hot cairn Is on top of her game when it comes to laws pertaining to where she is.
10/10. Knows more than I'd ever be able to
agree with Jabba
yeah most times when they show up unannounced just sent them away told them to call ahead, they showed up no notice again just sent em away
the looks on their faces was funny
We are a member of the renters union
Pepper Spray, and go below the waist. 
when you check your amazon wishlist, notice nothing vanished and you figure "people made themself some thoughts" .. yikes
Time to binge squid game for season 2
And depends on where you live - you can make them really regret this.(i.e. press charges)
God Jul! @sand trench π§
You forgot about Helll and Bella!
i did not:)
I also don't know about your local laws, but if these are police officers, it's best to talk to them outside of your apartment and not invite them in
oh I thought i pressed send on my edit for "and all other scandis" lool rip
the thought was there π¦
If they are not police officers then yes, the pepper spray will do lol. But again check your local laws there
Call the police of they turn up, your landlord is breaching the contract if you're a private renter.
yup...24 hours minimum notice for arrival by law. Unless it's an emergency but in this case it's not
Agreed, but we don't know their local laws unfortunately
In my building it's a 48hr notice unless there is a emergency like a pipe burst or leak.
Something was giving me South America vibes for some reason
I think they're UK but I might be misremembering π
np. looks delicious
not like there's much going on today that being said
π
I just helped with some rando Linux stuff
/dev/random linux stuff?
Linux
I am actually impressed that my boss set up Samba for a client today, that is a non-trivial task
it is rather unnecessarily complicated
bro i almost forgot like 3 ish years ago people came in to replace our boiler and messed up and flooded our flat so we had to live in hotel for 6 months during lockdown had to move in there on christmas eve
but lol even he came to me for some Linux advice, kinda the sole Linux sysadmin here
that's an astonishing cockup.
And second cake π called Makoviec
Polish cake
niceu
spending christmas in a hotel was kinda shit but i guess the better part was that it was 5 star and basically a flat and the people who fucked it up had to pay 5k a week to pay for the place 
it really was
@silver sky I see you in Jakarta π
it was like getting to live like middle class for 6 months
@exotic vector You seein' this?
We do?
Crack the hash value stored in hash1.txt. What was the password?
fluffycat12
Submit
Hint
``` Why isn't it working?
Again, I was getting South America vibes so I wasn't sure
Is this THM?
its yesterdays room
yesterdays challenge
yes. what else ?
post in #1305926862114914325
Yβall I got a question. When Iβm citing something on medium can I defang the sourced website URL. Like people can still copy and paste and remove the brackets if they want to see the link or should I just leave it the way it is
Then please go to #room-help or #1305926862114914325
It's up to you really.
defang the url as a courtesy
All my links are defanged.
I mean that's the whole point of defanging a potentially dangerous URL, so what does it matter?
Ight Iβll just defang it
It's not up to you if someone decisdes to take a look as a result
not lol not every URL has to be defanged, just potentially malacious ones
no snake bite
Itβs not dangerous tho. Itβs a crowdstrike blog post that Iβm citing
If I'm writing a report I'll defang the URL and screenshot the webpage.
anyone know any good indie game?
pc or android?
π
unless it's directly malicious, there's no need to defang esp. as a sources/reference
pc
Ight
I mean there's thousands lol, and we're not sure what you're already played
Thanks yall
play the classic, Cave Story if you have not already, basically the first real Indie Game
yeah I have no idea
avaliable via Cave Story+ on almost every platform
or ports of the original free game to every other platform imaginable
fantastic Metroidvania style game before that genre was oversaturated with other indies
2004
who els hate the day 22 of AOC 2024?
i have like 90 games on steam
I have 1,333+ games on Steam π
Steam user since 2008
damn that's more games than I have heard names of
crazy
im a steam user since what like 2018
I may have counfused that count with my Euro Truck hours tho, these are the actual stats:
Only 300 games here. 
Die hard is the only Christmas movie you have to see
Best Christmas Movie ever
Die Hard followed immediately by Home Alone
euro truck sim 
Indeed
But I am more farming sim fan
Heck yeah
cough
I have an equally insane amount in American Truck Simulator as well
Sorry, can't hear you.
wow really?
Weak
Garry's mod.
oh psh
Aight, show off what you got
the hours i've got in farming sim outside of steam is insaaaaaaane
Indeeeeeed, it's so relaxing
I used to host farming sim servers 
If you add my Alts itβs above 12k
check my games i need help
π time in 5 min
These are my top 8 (most that can display on 1440p)
Straight up over an entire year of playing.
one min work is calling
Tim is ready with the message, I saw his name pop up
yep
2 of my friends from an old community both have over 40,000+ hours EACH
what is cristmas?
hacking challenge
This fucking mad lad
Okay at least a nominal portion of that has to be just having the game running in the background.
π π₯³
Advent of Cyber 2024 DAY 24 The Final Day! Thank you all for participating!
π₯³ π
really?
i dont see day 24
i thought there was more ;-;
Ho ho ho
It's just a VM day? Interesting.
u lied
i thought i signed out yesterday haha
im 4 days behind aaaaahhhhh
Refresh your page homie, it's there.
I demand OSINT next year!


Hahaha
i have yet to learn the iot room
Refresh
ok now im only 3 days behind
https://m.nintendo.com/shared/en-GB/GB/tracks/213db600-0a37-43dc-91c1-a703647b1489
Some of the best Bowser music, Mario 64 was God tier.
ugh that was painful, it was all billing related
just let me do the worrrrk
you guys figure it out
I'm now 11 days behind
I'm even more than that lol
I was all out last year but don't have the energy this year
can lol potentially see why
I am now 24 days behind
how to capture req and response of a online mobile games with burp suit or zap?
Unfortunately it comes down to priorities
but yeah thankfully these rooms aren't going anywhere
If you have to ask us, you may not be ready to reverse whatever mobile game you're interested in
Game hacking is against Discords ToS, we will not be discussing it in here.
lol even better put
it should be for ethical purpose only
it's clearly not lol
Discord TOS is non-negotiable and applies to all servers
Ethical or not.
It's still against ToS set by Discord.

I do wonder how many people use that emote without even knowing who he is, or if they do, shame they don't know any better lol
poor john
i didn't catch his livestream last night
thats the Magic the gathering character!!
Was neat actually getting to speak to him once, seems like a chill dude indeed
lol it's okay, I don't either
@loud marlin You just got called out 
is he profesisonal a blue teamer or a researcher or a red teamer or something else?
i was thinking of MTGA..lol
its not a magic the gathering character
he is john the ripper
no lol
poor john
haha
We already have a cool password cracker dev who frequents this channel which is always neat to see
how do you know i dont know him? i saw many videos of him
That was a presumption, but it also shows you haven't taken many common infosec ethics issues to heart
Desptite your proclimation
Hey Guys Apologies for Interruption new here Some one help regarding a query
What querry?
It is always important to research not only the accepted scope and legality, but yeah, where your questions or research can be posted without issue
ok.
We have rooms on THM just for that! So you should be all set c:
for testing Purpose
thank you so Much @sinful moon but need Some one who can help on the way to process it
Gave +1 Rep to @sinful moon (current: #34 - 250)
At 15:00 Swedish time it is Donald duck and friends wish you a merry Christmas from us all to all of you
thers tons of free resources out there
No problem, but these rooms should be pretty self explanatory so I doubt you will need much help
That too
On Christmas eve that is
you can always check out portswigger academy too
they have a good module on SQL injection w/ 18 labs
i havent used em but ive heard good things
@opaque flax thanks for sharing resources buddy...
if i stuck somewhere can i ask for help @sinful moon @opaque flax
if it relates to THM you can always ask for help in #room-help
but we can't help for other things like school work, other companies challenges, professional work, etc
But I mean these are like step by step tutorials so you shouldn't run into any issues
No God Jul? 
buddy I am Not a school boy I work in Bank and don't need help for School Projects need to build my resume for the Job
@opaque flax
i never said you were in school dude
Sure don't type like it, but okay, these will still help you either way
God Jul everyone including beerrise
if you reread the message it doesn't assume you are in school

i am gonna try build nethunter kernel for my android. I rooted it .any room for that?
id say the kali documentation
oh!!! my mistake @opaque flax

Clone
Those of you who want to build a Kali NetHunter image from our GitLab repository may do so using our Python build-scripts:
kali@kali:~$ git clone https://gitlab.com/kalilinux/nethunter/build-scripts/kali-nethunter-installer.git
[...]
kali@kali:~$
kali@kali:~$ cd kali-nethunter-installer/
Bootstrap
Before you can build for a device, you w...
Indeed, no need to ask us for that, Fezzerk
not good enough. i prefer THM
lol the official documentation is not good enough
okay then
good luck
Then you're going to have some issues if you can't follow documentation
official doc is always bad
nope
the official documenation is the best documentation out there on how Kali works
already just seeing the embed alone, that seems concise and managable
Does Shadow wanna drive into Norway and ship me the Norwegian Christmas Soda? π
it also includes screenshots and example outputs
Potentially learn more about how Linux works first
π
I want Julebrus!
Don't have a drivers license so that would be hard
And learn about compiling software, it's actually very easy, nearly every github has a guide on compiling softare, much like this is the guide for Kali Netrunner
Julmust all the way
and just look at all these tutorials on how to install it
i know linux well i have built before but something went wrong which is not on the documentation.
Having all these resources is glorious
so you got some error you think THM will have a fix for?

hi everyone. I have not done anything on THM in several months. yesterday I gave the AOC challenge a try (the hash cracking one) and today I finished it. greatly enjoyed! and realized how much I have missed this learning platform and community. best wishes to all of you on Xmas Eve 
if someone can fix my issue with openvas 
Then google
concise and well put
JuleΓΈl?
Almost like google will also show any GitHub Issues and more regarding people having similar problems
GlΓΈgg all the way
same goes for Linux
Blegh... GlΓΆgg then
i don't think anyone can be well versed in linux without a healthy dose of googling
GlΓΆgg over julΓΈl

chatgpt is great at solving error
only sometimes lol
juleΓΈl all the way!
the more i work in IT the more I hate chatgpt for finding solutions
You mean creating errors
so why ask us and not ChatGPT though?
what is the best way to find solution in your way if you don't mind
like above stated. google
official documentation
forums posts
stack overflow
you just need to read chatgpt output. they give nearly right answer most of the time. just need a little bit human intervention
And when you get really advanced gasp you can solve your own problems
I've honestly found few significant use cases for ChatGPT and similar LLM chatbots. regular search engines are more than good enough
as I just did for a compile of a brand new software package yesterday, which as lovely
Til at skyde december i gang fΓ₯r i her en af det helt store, nemlig smagstesten af de dyrere julebryg. Priserne er lidt noget andet, end ved de konventionelle julebryg, men Carsten Berthelsen lader sig ogsΓ₯ begejstre! Og endda sΓ₯ meget, at han giver Γ©n julebryg 10/10 point!
GlΓ¦d jer ogsΓ₯ til en smagstest af 'de nye' julebryg snart.
Vi ses!
S...
not to mention the training data for such models is at least a few months to a year out of date
you're better off just searching for a human-written answer to your question
@opaque snow please do not send friend requests or dm w/o asking first
Literally the only use I found was for things completely outside my wheelhouse like insurance questions I was being asked in my IT job lol
i like it for helping craft my resume
Beerise, Didja see my sweater π
well there you go lol
it puts things in ATS format
yeah that makes sense tbh. one thing I did find it really useful for was writing answers to questions for boring forms I didn't care to write myself
getting started creating text that I felt stuck on
I did not π
and yeah resume stuff, that is valid as well
Eh I'm not sure I can get on-board with that thinking
@boreal scarab --> #general message
but for anything techincal? it hallucinates out the ass or asks you to make registry changes that are stupid and clearly unwarranted and probably not even real answers
And ellie, you'll apprecite it too π
we love a good vault-tec sweater
I see, how come? I see the value in writing things out yourself, but sometimes AI text is a quick way to get a good start, is sort of what I meant
VAULT-TEC!
As someone who has to fill out potentially hundreds of boring answers for PCI-DSS compilance, filling out something for myself is a pleasure in comparison
and far from an issue
Uggghhh.. PCI-DSS is the WORST. And each time I have to do 12 of them
Chatgpt is not a problem solving bot, but rather a text generator, this is the reason behind the errors, yes it has the knowledge of Google from like 2019, but it's to create the knowledge of how to write text and knowledge of previous posts, to solve issues it's just generating a possible outcome of what you have given it of input, therefore that's why it's not good at solving issues, but rather come up with possible solutions based on already known info
one of our clients came to us and said "Hey you need to do our PCI compliance"
We told them to go away we don't do PCI stuff lol
Gib!!
not to brag, but i helped save SOC-mas
0xD Legend
π has been saved
That's honestly for the best, you can help them but ideally not take it over for them
Well, As our stores also host a VPN line for our EPOS system to link to head office, that ALWAYS flags as a vulnerability. I'm like.. No, thats MEANT to be open
Where as we have just take it over for them for several of our clients lol
We had a full pentest on the systems like 2 months ago
We have people use other vendors for their payment processor like NCR
like SAQ B-IP clients?
If so those are easy
but god forbid you run into an SAQ D client
lol that's for the best
I dunno, was one that the card processor had hosted on their site
but we support a couple stores, some movie theaters that also are restaurants
but yeah B-IP are for payment terminals with connect directly to the payment processors
if they need to interact with your servers in any way, then god help you
im pretty sure thats all we support
That'll be what we have, actually.
ITS CHRISTMAS EVEE
but anthing that is NCR/Aloha we make the client call them and we gave control of the Aloha server to NCR we do not have access to it
uh oh what, and do you potentially mean Visa?
No Vista is the vendor who handles the POS software
Christmas Eevee?
Okay lol, was just hoping to heck you didn't mean the Windows OS
again my knowledge of PCI is super lacking I just know the technical problems I need to fix
Guys is today or tmr last task for advent of cyber?
But having a server on site for such already puts you into a much higher SAQ
I just know that these servers have to be PCI compliant
Ooh, New Squid Game this week. That'll be cool
SAQ == Self Assessment Questionarre and the letter grade gets more extreme the more you go down the alapabet
...
Mice pfp!
Thanks!
and we have a manager workstation that does not have internet access because it has access to the payment software so managers can run reports
Yeah it's Tulup from Infinity Train c:
Ohh I thought it was an oc
Nope! I do have experience with graphic design but nothing like this
It's a great show
Cool
oh no talks about POS
Yeah lol it's a pain, try never to get into it if you have the ability to at your job π
I work with one of the biggest chain of restaurants in the UK not like I really have the possibility lol
I just turned into both the security... and compliance person at my job
Ah ouch, but yeah
I do hate supporting POS systems
It's cos they are all so bespoke.
welcome to the one man band security team
lol yeah I feel that for sure
not all, there are some decent providers out there. except Oracle which is designed for enterprises
it's okay I'm also sysadmin and more on top, all the hats!
I guess I'm only salty about our system π
was designed for US, and then kinda bodged to make work for UK
nah, the bigger customers always have the weird pos that have their quirks or cannot be patched
and that's not only hospitality it's retail too
Our head office have full-on devs on staff just to support the system
we deal with both π
we're not working at the same company are we π€£
lolol
nah just an MSP so it will happen
it's the worst
But yeah it does get silly when PCI compliance and most especially the SAQs are farmed out to us
yeah lol
ah, different sides of the pond but the pain is mutual
agreed lol
there's tools you can use to simplify it a bit
I think qualys has something as part of their service which is decently priced, then there's others more expensive
afaik beyond their ASV services, they just do compliance checking and not much beyond that
It is funny recieving ASV vulnerability scan reports... and they just used Qualys as evidenced by their PDFs lol
they have saqs as part of their consultant edition not the other offering they have
better than nessus
rapid7 is back on asv on the other hand
Yeah no way we're paying for that unfortuantely lol
Are Rapid7 back in the good books?
meanwhile we have my own OpenVAS that I deployed as our own vulnerability scanner because "free"
not ASV approved obviously, just for our own sake
idk the quality, it didn't click with me 7 years ago when I used it for the first time
qualys for msp is decently priced
Fair
AOC 2024 done
That's fair but after EDR and etc, boss can't get clients to budge on more security solutions. So anything else I come up with has to be pretty makeshift
Merry christmass to you allπ₯³π
Jellybean! You too! Where ya been?
@blazing granite I need your alcohol service.
Thank youuu
Work, yikes alot of work everyday
I had that in the past. it goes down to how you sell the value of that
Keep trying to sell him myself on SIEM but always rebuffed
siem is the cherry on the cake. get the house in order first
Dam for what
get rid of AD for a beginning
I was like "I can just build you a SIEM" but nah he said we can't sell that to clients after how they didn't like shitty AV to EDR transition
use purple Knight, pingcastle to fix it if you still need it
Need a peppermint patty, or chocolate mint alcohol drink that includes plain moonshine
sort out identity and mfa
Yeah I've been using PingCastle a ton to fix our on-prem infra
bloodhound and blue hound or something like that is also good
Can someone help me!
Ehh idk bailey
now i wait for dec 31st for the tickets raffle thing
How can i find the answer for this question
Meant chocolate mint
Above your account balance, you should now see a message indicating the answer to this question. Can you find the answer you need?
What do you need? π
With after eight in, yum, but idk any with mint
who is that girl on day 14? looks like mcskidy
gotta shoot for a bit, have an easy day all
I need a recipe for either, or both, Peppermint Patty, or Chocolate Mint drink using moonshine
Go ChatGPT go!
@boreal scarab Dunno if it's a bit late, but you can get Spirit flavourings, and the After Eight mint one is lovely in some home brewed spirits
Yesterday the store was PACKED.... I'm afraid of what it looks like today
Trueee
honestly, You'd only really get them in hombrew stores
the girl from day 14 looks like mcSkidy. whats her real name?
π€¨
sometimes my stupidity knows no bounds. it turns out just clicking forward on burpsuite doesnt solve my issue and it takes me 5 minutes to realize im looking in the wrong place
brew update && brew upgrade
I would mp do that same, I get yaπποΈ
Smort
for recipes I use allrecipe.com I got good recipes from there
Nicee
Think I found some. Going to test em out.
Bartender Matt on the job!
tommorow will do this room https://tryhackme.com/r/room/iaaaidm .. looks good
lol indeed. Meanwhile it's past 12 and we've not been let out of work. Time for THM AOC finally lol. Let's see how many days in a row I can do
you can do it
lol only 24 days to go :p
meanwhile I went out doing 3/4 of the advanced portion last year

Mayor Malware ran off out of town
glitch actually did all those bad things and blame mayor malware
i totally believe you
lol in these decisive times, Mayor Malware would get re-election either way
i came to chat just cause i saw MM
Mayor Malware spent the entire month with me on a crazy bender super far away from town, he couldn't have possibly done this.
plausible with a VPN
Caustic, Santa is just flying over Pakistan. Looks like heas heading india way...
get your hoodie and start up the AttackBox
yeah just few more hours and i will get my presents
Damn ya'llr gettin' presents?
Wait.. no, looks like he's already done India.
malicious gifts
Alls I need is Pineapples and Pis π
not the food kind
Malicious Cookies with no milk
Can't wait till it's February, my next paycheck is going to be amazing
πͺ we use cookies , do you accept ?
Have to get through the first 63 days in January first.
now i just have the gym to look forward to
They call me the devourer of cookies, one session one cookie
get back to work <<<
It's christmas
REJECT ALL!
Exception
okay, change username then
Nah I'll need it tomorrow
we see you have rejected all cookies, this will be reported
Solve this capcha in 0.3ms, straight or tilted
straight lines
Not completed in required time, try again later
I go Kazakhstan
that looks nice!
have a good one guys i'm gonna mess with OWASP webgoat
you forgot my gift....i have been a good boy this year
i asked for thm yearly sub and a new 4070 super
How many flares did Rudolph shit out to escape the restricted airspace missiles
This is an image that has ruined Rudolph forever
mqtt rudolph's nose, turn off light
But does Rudolph has chaff too or just flares
The chaff system is not attached to Rudolph
How do you avoid radar guided missles
@blazing granite
Chaff
Santa relying on rudolph is not proper planning
O
You texting while sleighing, Santa? From.. Chelyabinsk, Russia?
it looks good
Does Santa have a proper bcdr plan
Of course!
maybe not
Santa just has 𧦠for SOC
The other reindeer have glitter farts for chaff, don't underestimate the worldwide master spy in the red coat
2 oz moonshine, 1 oz creme de menthe, 1 oz creme de cacao (subbed it for chocolate liquer) 2 oz half and half
you texting while sleighing and next what? no turn indicator while turning?
Does Santa use a bmw sleigh or something
You don't need turn indicators when going mach 52
you need to get back to work betta
Christmas exception today
you will get told all day
I don't have turn indicators!
aren't there rules for crafts in the air?
rudolph ain't gonna listen to the rules
The Sleigh grandfather-clauses all the rules.
was Santa behind all of the drones over new jersey?
That's fine, I have to work from tomorrow till the 30th, both night shift, escalation and level 1 shifts
is CC exam good?
how do I set dark mode on thm?
good for very very entry level jobs.
Click profile image, click on Dark Mode (On the THM website)
What is the cc exam
okk
they dont consider for pentest jobs and stuff but SOC teams might consider.
I'm exempt from said rules.
ohh. so which one is for pentester like CC?
I just calculated that in the next 5 days I will earn 1390 Euros in shifts, gotta love working part time
skibidi
idk what happened to my terminal but its pretty cool
white light
my eYEs
@blazing granite I have had 0 things to eat... and this moonshine is STRONG AF
who writes malware in light mode?
Updated Kali?
no it just happened when i opened my terminal to install remmina
i changed it back but weird that it changed
there are a lot of certs. you should research on your own and focus on the one that you like
Fortnite time!

That is updated
windows is blocking me from downloading win11 iso
My terminal in Kali went from black to blind
I know, I was asli if they had l...
i use kde neon for my evryday work and vbox kali for thm or hacking stuff
π

it finally started to rebel 
Elon is on the way
i decided its not necessary for my goals of learning powershell , goal for 2025
Happy whatever holiday you choose to celebrate at this time of year.
Just delivered to Somalia
https://www.noradsanta.org/en/map osint time π
I've never heard of Glorioso Islands
im back after watching 2 shrek movies back to back in a blanket fort
The muffin man?
hey scrubz can i send you my medium post so you can critique it before i publish it
its in your field of specialty
π§
Anyone here studying a cybersec degree?
Save it, in case I needed it.
case it, save I needed
it case, needed I save
What is a good amount of time to spend daily or weekly on try hack me paths?
maybe 2 hours a day?
Hello
I have to dedicate 2 hours aday every weekdays(with 8 hours of work) Then 3- 5 hours during the weekends.
WHAT the--
Hello , welcome π
Is it yours?
If the link is mine?
Merry Christmasπ
Yes
2 drinks in and it's christmas

Sure
That rum is too transparent
I'm very bigganer
Then no, it's against our rules to advertise
No self-promotion. You are welcome to post your write-ups, walkthroughs, and streams of TryHackMe content in #thm-community-media or the relevant Recent Releases Help channel, but please don't use this Discord as a place to advertise. [See More]
So fuck you and ban me

Ahahaha
@sick lance May I DM?
@silver sky Awesome π
:mute: wendell26_#0 has been muted.
Ya
I have drank too much baileys
I dont drink, I heard its bad for you
