#general

1 messages · Page 702 of 1

atomic atlas
#

hacking at school isn’t really taught in France until the last two years and it’s still basics…

viral crest
#

@drifting halo it's against the rules to ask that here

mossy river
#

Thjs is illegal and against our community rules.

drifting halo
#

Im Locked out and lost my phone 😩😩

atomic atlas
#

hacking emails would get you millions of dollars easily 😭 you get every password for every account of every person

drifting halo
#

New phone but no access to my things

#

Microsoft are so bad at verify people I’m lost 😢

atomic atlas
#

call them if you have the other information about the account it’s not lost

drifting halo
#

I have it all….
All i get is do recovery…my information is wrong apparently

atomic atlas
#

call them with the infos they’ll reset your password

drifting halo
#

They won’t do it that way 🥲 fill in the form…then refused

#

It don’t have my mobile or email 🥲

atomic atlas
#

can’t help sorry

#

just call them if it’s free they’ll know better sorry

karmic hemlock
#

AND learning cyber? props dude

drifting halo
#

They’ve been rubbish but thanks anyway, really appreciated

atomic atlas
#

there is alot of people that are really smart in the hacking community that’s great competition

muted light
#

😶‍🌫️

eternal timber
atomic atlas
#

what are your PRs ?

karmic hemlock
atomic atlas
#

everyone is good at their own things !

karmic hemlock
#

True true

drifting stirrup
#

how to get ur own command line application gobuster thinkg

karmic hemlock
#

I cant wait to get back in the gym, they closed it down for the holiday break and I've been going crazy

drifting stirrup
#

my laptop?

#

or like vm

atomic atlas
#

your OS is like windows or parrot

drifting stirrup
#

i am using window

atomic atlas
#

you’re on windows running a parrot vm if I’m nkt mistaken

karmic hemlock
drifting stirrup
#

okay give me a minute then

eternal timber
atomic atlas
atomic atlas
karmic hemlock
eternal timber
#

I’m also 240 lbs lol

atomic atlas
#

studying galaxies to lift them right after

karmic hemlock
#

Fair enough

eternal timber
#

Lmao

karmic hemlock
#

I weigh 145 and I can bench my body weight but that's it

#

Maybe 155 on a good day

drifting stirrup
#

done

#

i oppened the parrot terminal on vm

atomic atlas
#

you gain strength over time as tendons and ligaments take more time to get stronger but you’ll build muscle soooo fast in the beginning

scarlet lintel
#

yo

drifting stirrup
#

gobuster --help
Usage:
gobuster [command]

Available Commands:
completion Generate the autocompletion script for the specified shell
dir Uses directory/file enumeration mode
dns Uses DNS subdomain enumeration mode
fuzz Uses fuzzing mode. Replaces the keyword FUZZ in the URL, Headers and the request body
gcs Uses gcs bucket enumeration mode
help Help about any command
s3 Uses aws bucket enumeration m

#

I think i have gobuster then

karmic hemlock
atomic atlas
#

you can bench with your legs and still make gains the beginning is the best part imo

eternal timber
#

I’m trying to get down to 210

drifting stirrup
#

oh ok that was easy

karmic hemlock
#

Bulking is tough af though

atomic atlas
eternal timber
#

It’s easy for me

#

I eat like a pig

atomic atlas
#

if you’re on a budget it is

karmic hemlock
atomic atlas
#

haha same for me

eternal timber
#

Cutting is very hard for me

scarlet lintel
eternal timber
#

6’3

#

Well 6’2.89

scarlet lintel
#

make sense

atomic atlas
#

you’ll get used to it and you wont be able to stop eating

karmic hemlock
#

Right now I'm 65 kg and 170 cm

atomic atlas
#

the more muscle you build the more calories you consume and the hungrier you get

boreal scarab
#

Uh.... WTF SPOTIFY?!

rapid merlin
#

264 lbs here

boreal scarab
#

Why was this in my feed?!

scarlet lintel
#

im 81 kg

5'11

rapid merlin
#

or 120kg, but I'm 6'7"

atomic atlas
scarlet lintel
karmic hemlock
#

I wish

atomic atlas
scarlet lintel
eternal timber
karmic hemlock
#

Man's a whole foot taller than me 😭

scarlet lintel
#

lol

karmic hemlock
#

I got a lil fat

atomic atlas
#

why do you want to learn how to hack when you can just break any door you encounter ?

eternal timber
#

Hack the door

karmic hemlock
atomic atlas
grizzled wing
#

taste the rgb

atomic atlas
karmic hemlock
atomic atlas
#

😭🤣 exactly

eternal timber
#

Last time I was 55 kg I was 14

atomic atlas
#

but trust the process you’ll get there

karmic hemlock
#

I can tell I'm getting better day by day and that motivates me

atomic atlas
scarlet lintel
#

any anime lover?

karmic hemlock
#

I've actually been doing a lot better with squats than bench, despite the small frame I can squat 205 lbs (93 kg)

atomic atlas
#

like an ant that can lift 385929188 times its own weight

eternal timber
#

I have a friend who can squat 6 plates for reps at 75 kg

karmic hemlock
eternal timber
#

But he’s also a national powerlifting champion

atomic atlas
#

haha yes that’s ehat I’m saying

karmic hemlock
#

Thats crazy lmfao

atomic atlas
eternal timber
#

He’s also just 18

#

Could squat 6 plates at 15-16

#

Dude is a monster

atomic atlas
#

strength never stop growing unlike muscles he will only grow from now ☠️

boreal scarab
#

I has new gun

#

heat gun

#

🔥

karmic hemlock
#

My car doesn't pass NY inspection because of it 😭

boreal scarab
scarlet lintel
#

what should be the appropriate disk size in vm for kali??

atomic atlas
#

I’m going to sleep for real this time have fun guys it was fun !!

scarlet lintel
karmic hemlock
#

Id have to check but I think I only gave a few gigs to mine

rapid merlin
#

when are the results of AOC gonna release, any idea

karmic hemlock
scarlet lintel
drifting stirrup
#

I use gobuster -u http://fakebank.thm -w wordlist.txt dir and get Error: error on parsing arguments: wordlist file "wordlist.txt" does not exist: stat wordlist.txt: no such file or directory do u know why?

rapid merlin
drifting stirrup
#

oh sorry

karmic hemlock
twin ridgeBOT
#

Gave +1 Rep to @karmic hemlock (current: #875 - 5)

rapid merlin
#

also was the black friday sales cheaper or this 25% off one

scarlet lintel
karmic hemlock
scarlet lintel
#

ya

karmic hemlock
#

I gave mine 80 gigs, and my laptop is half a TB

But honestly I would say you don't even need that much if you don't think you're gonna be putting a bunch of programs on there

boreal scarab
#

I have TB's of space, and I usually give my VM bout 100. or 120 GB

karmic hemlock
#

There is no straight answer for how much storage is ideal, it's more of a preference thing as long as you can fit what you need

#

If you have a few TBs you can definitely afford to give a little more

twin ridgeBOT
#

Gave +1 Rep to @boreal scarab (current: #30 - 325)

boreal scarab
boreal scarab
#

I also install EVERYTHING, Is it all needed? Probably not.

karmic hemlock
#

I get by with very minimal stuff so honestly I could probably use less than 80 gigs

#

I leave it allocated there just in case though yk

#

I'm not using it for Windows anyway

eternal timber
eternal timber
#

I’ve had two beers and 3 glasses of whiskey

jade wing
#

Finally, after 3 days of grind, I have caight up on my notes.

#

Time to finally move on in my studies and then blow off note taking until the end again and hate myself for it later.

crude stump
#

Or throwing rocks

eternal timber
crude stump
#

Personally I wouldn’t

rose lotus
#

Why no desktop app for THM

crude stump
rose lotus
#

Ik but why not add an app

#

Most things have a website but an app I think could be better

crude stump
#

Eh is there really a difference tho

grizzled wing
#

./Linux.exe

opaque flax
eternal timber
crude stump
jade wing
eternal timber
jade wing
# jade wing Why?

It would just wind up being a wrapper for the site. If you want one so bad, make one. They are easy to make.

#

Would be kind of pointless though.

opaque flax
#

isnt the discrod app just...basically the webapp

#

but with a wrapper

jade wing
#

The discord app is written in electron

opaque flax
#

never heard of that

jade wing
#

So a bit different but kind of

#

It is different though

opaque flax
#

ah its a framework for building desktop aps

jade wing
#

Yea I bet you will find plenty of people here who are not fans of electron and rightfully so

#

it can be a security nightmare

opaque flax
#

using front end web languages

jade wing
opaque flax
#

makes sense

jade wing
#

But yea I think electron is pretty cool personally

#

I think ther person above is hoping for an all in one executable application that gets installed on their machine and they can do everything they can do on the site

#

thats just not feasible for many reasons and perhaps they don't understand whats going on, in the backend of sites like this

#

To get the same functionality of say the attack VM, and the target machines, you would still need to be routed to THM infra

#

as just one simpler example why that wouldn't work out and be pointless.

opaque flax
#

yeah either way I don't see the reason for a desktop app anyways

#

it works just fine on the web

jade wing
#

Chaos Control huh?

#

That like your team or something?

#

Yea they are pretty neat

#

Nice, whats the general skill level of your peeps over there?

#

Do you all compete at all?

#

Very cool, I will have to stop by.

#

Oh nice you have a CVE awaiting review, thats cool.

#

Still neat.

#

kerberoasting and golden ticket are still the bane of my existence and I would say a majority of places are still very susceptible to them

#

Most places refuse to mitigate it because an app somewhere for whatever reasons needs the features enabled

#

drives me nuts

#

indeed

#

people honestly just need to offload and be entra based only at this point

#

if they have legacy GPOs they need to get with the fucking times and move over to something like intune and manage from there

#

got file shares? Cool, you can do that in azure as well.

#

Not like it makes it more secure by default but it at least off loads risk from legacy systems

eternal timber
#

Who

#

I had a copious amount of alcohol

jade wing
eternal timber
#

Why does family just keep on making you drink

#

Hi Zumrr

jade wing
#

Very cool

#

That’s the kind of organization I can get behind def my style

eternal timber
#

I gave all my notes away

jade wing
# eternal timber I gave all my notes away

I charge people for mine depending on if I’m cool with them or not. If I’m mentoring someone or they work for me I’ll hook em up. If they work with me or I don’t like them best believe they going to pay for my knowledge

#

It’s petty too. I charge them like 5 bucks

#

It’s the principle

eternal timber
#

I could win a Nobel prize and I’d still just throw my notes away

jade wing
#

I used to feel the same way until it was abused

#

Or someone onetime copied my notes and got recognized for them and claimed them as their own

#

That left a very bitter taste

eternal timber
jade wing
#

As soon as you do:

#

But in all honesty now in my career I don’t even let people know I have notes for the most part. I’ll still document a separate set of notes for engineers as needed or for system documentation etc I’m not going to let them fail and it makes my life easier knowing they have access to those resources and I can point them in that direction but personal notes are kept close.

#

That’s your secret sauce.

#

Like I said unless we cool and it’s symbiotic then I don’t care because fair is fair

#

Exactly

#

And unfortunately that’s all you see in tech on a professional level is parasites and snake oil salesmen

#

The amount of times I’ve interviewed a “Sr. Engineer” etc and been left floored by how they got to where they were is high

#

Haha same

opaque flax
#

I found documentation today that said “the client will send the link download the file and update it on the server”

#

For a Linux server

#

With no gui

#

In a mostly windows shop

#

I am rewriting it

jade wing
#

Wait so the machine that needs the download is windows or Linux?

eternal timber
opaque flax
#

Linux server

eternal timber
#

Isn’t every server basically a Linux server

jade wing
opaque flax
#

Yes

#

But

#

I had a senior NOC technician while doing a Linux ticket for them say “I hate Linux”

#

So

eternal timber
#

I’ve had a copious amount of Johnny walker green label

opaque flax
#

I taught a coworker how to do it this morning in the event I switch teams

jade wing
#

See those are the types of people that I wonder about.

opaque flax
#

And he said “I don’t want to do. This I don’t care about learning it”

#

“I’m just going to send it to you next time”

#

After I walked him through it

jade wing
#

I used to feel bad, I have a cold heart towards that kind of attitude now

opaque flax
#

It’s frustrating but I’m just going to to leave solid documentation about it

jade wing
#

I really liked windows server core and wish it would have had some more love.

opaque flax
#

Which next time I may be on a different team and won’t be able
To help them

#

So

#

Or I’ll have gone to a different company

opaque flax
#

They can call the vendor for it lol

jade wing
#

If you don’t mind me asking, without doxxing yourself what do you do now?

opaque flax
#

By title? Level 1 help desk

#

In actuality? A lot

jade wing
opaque flax
#

There’s talk of moving me into the infosec team

jade wing
#

You are displaying tier 3 at the moment

#

I don’t know the full extent of your capabilities but you have the mindset of a Sr. That will serve you well.

#

Hope you get that change

opaque flax
#

I sent, under the direction of my boss the director of security services a highlight of what I have done inside and out of my company along with my resume highlighting my infosec learnings

#

I’m not perfect by any means

#

But I’m getting there

jade wing
#

You say resume, can I assume you’re in the states?

opaque flax
#

Currently on my plate I’m updating the encryption algos for a clients vpn

#

And configuring, testing, and deploying a new intune policy

jade wing
#

How is your networking knowledge? Have any specific certs?

opaque flax
#

Yeah do people call it something different in Europe?

eternal timber
#

Are one of those Linux

jade wing
opaque flax
#

No specific certs. I’m thinking ccna

#

But I have a homelab

eternal timber
split compass
#

@rapid merlin Hmm, lock downs lock downs, opened up my requests so you can ping me when you see this.

jade wing
eternal timber
#

So basically every server is running Linux

eternal timber
#

Lowkey kinda drunk rn

eternal timber
jade wing
#

There are a bunch that run windows

opaque flax
#

Active Directory domain, opnsense firewall with vlans, managed switch, snort IDS, tailscale for remote access

eternal timber
#

Oh?

eternal timber
opaque flax
#

2 pihole instances

#

Wazuh SIEM

jade wing
jade wing
eternal timber
#

“Basically” means most in my books at least

jade wing
#

Literally

eternal timber
#

My gf isn’t responding to my texts

#

Probably good cause I’m tipsy

opaque flax
#

Not much experience with NGFW yet

jade wing
eternal timber
#

Gonna study bio so I can make a drug that makes me inhumanly smart

opaque flax
#

Can I dm you?

eternal timber
#

I kinda can. At least I know the basics

jade wing
#

But any sufficiently advanced knowledge of next gen firewalls will do in place of palo

jade wing
loud osprey
eternal timber
#

I’ll make the LLM im building hack you

opaque flax
#

Yeah I can’t say I have a deep understanding I wish. I have experience with sonicwall, fortigate, meraki but since I’m not on the network team I don’t do lots of configuration

eternal timber
eternal timber
#

Me fr

#

Imaginary technique: happiness

gloomy brook
#

can you cancel a subscription to like not auto renew?

eternal timber
#

Ye that’s called canceling a subscription

gloomy brook
#

but like if i cancel it after the grace period, It stops after that month/year ends right?

eternal timber
#

Well ye

cloud quiver
gloomy brook
#

alr bet

#

ty

eternal timber
tame kayak
# jade wing There are a bunch that run windows

Shodan may show more Windows connected devices than Linux, but Linux runs the interwebs. I have no credited sites to show the info, as I am also a little tipsy, but "I've heard that is the case Podcast and other media ( open source security, cyberwire and I think compiler (could be lining on this one)". @eternal timber

jade wing
# tame kayak Shodan may show more Windows connected devices than Linux, but Linux runs the in...

Coming from someone has who has worked vast amounts of spanning infra, across many fields and orgs including fortune 100's they still use windows servers and services for a lot. What you are referencing is that linux servers have the market share, and that is accurate for sure, it's also used a lot in data centers etc. Hell most containerized apps will run a linux backend, no reason to run them on windows. However, many orgs use windows for purposes such as AD, file shares, DNS, IIS, etc still to this day and will continue to do so. It just "works" so to speak and the curve for their engineers internally is lower. Also, despite many that are linux fan boys, myself included, there is NOT a good alternative to active directory when it comes to linux that will provide the same feature set. Also in the corporate world most of your machines are going to be windows for user endpoints and domain joined.

#

Now Entra ID (formally azure ad) is working at replacing the need for domain controllers in general, and for GPO's we are moving to towards intune policies. But even with that said, many still use hybrid topologies

jade wing
#

additonally, don't discount the amount of people that run hyper-v clusters, even though they are god awful

jade wing
clear jackal
#

Ah

jade wing
#

we already talked about it though

#

took it to DMs

#

anyways, I'm going to pass out, night peeps

clear jackal
#

Oh, yeah, I was just asking because you mentioned some specific products and it piqued my curiosity lol

#

GN

oblique horizon
#

Should I try CompTIA + course if I wanna become a security engineer?

opaque flax
#

It depends if you have any it experience

#

Or any other certs

jolly aspen
tame kayak
jolly aspen
#

good day sir @opaque flax

jolly aspen
#

got time for fizzy lifting drinks?

opaque flax
#

Always

#

Cheers

jolly aspen
#

sqlmap [INFO] retrieved:....waiting waiting waiting

jolly aspen
opaque flax
twin ridgeBOT
#

Gave +1 Rep to @jolly aspen (current: #358 - 16)

jolly aspen
#

curious if this happens to anyone else, but when I access a new room, the points graph displays for 1 second and then disappears into the pennywise gutter somewhere

opaque flax
#

Nah not me

#

I punched penny wise in the snoot so he doesn’t bother me

jolly aspen
#

hmm, i wonder why this happens then

opaque flax
#

What browser?

#

Clear cache and cookies to start 😂😂

jolly aspen
#

🙃

#

cache money, and i'd rather eat cookies

opaque flax
#

Idk maybe there’s some JS issue

jolly aspen
#

yea, i don't need to see it. it was just an observation of strange behavior

opaque flax
#

Fair enough

#

Thanks Jensen

rapid merlin
#

jacket shine should be a new innovative technology they patent

#

like EnvironmentalBumpJackets™ rendering technology

#

EBJs

opaque flax
#

I forgot to check how nvidia stock did today

#

Not good

#

People are probably annoyed about the ai

rapid merlin
#

a dip today seems like

opaque flax
#

Oof the keynote really didn’t do them any favors

#

That hard dip after the keynote

rapid merlin
#

ya

opaque flax
#

It went up in anticipation of the keynote

jolly aspen
#

keynotes are always pump and dumps

opaque flax
#

Then I honestly think the ai shit was what got them

#

Fair I’m sure amd did a similar

#

Not bad actually

grim imp
#

nvidia to the moon

grim imp
opaque flax
#

Amd

grim imp
#

oh

#

im betting on nvidia tomorrow

opaque flax
#

They had their keynote

#

Yesterday morning

frank pine
#

Did TryHackMe announce the AoC2024 lucky winners list?

jolly aspen
frank pine
#

thanks

opaque flax
jolly aspen
#

i've been doing the same, its the only purpose of that channel now anyways

opaque flax
#

I also love just sending documentation

#

It’s my favorite past time

azure oasis
#

im bored

jolly aspen
#

go use exiftool on some of your photos

rapid merlin
#

buy random thrift store HDDs and have fun playing the role of a digital forensic person

#

bonus points if you are able to visit a lava flow and secure disk erase them

jolly aspen
#

I've done this, found some interesting things..

opaque flax
#

Play video games

jolly aspen
#

guy was selling a full case of hhd from 64gb - 500gb. i got 45 of them for $20

rapid merlin
#

AI seems to view lava as a method "One unconventional method that has been discussed is the use of lava, which raises several important points regarding its feasibility, safety, and actual effectiveness in data destruction." 🙂

chilly veldt
#

Morning

jolly aspen
#

of course many bad sectors, high error rates, and some had insanely loooooooooong power on hours. but it was interesting none the less

opaque flax
#

Mornin Bella!

jolly aspen
rapid merlin
#

I imagine car junk yards salvaging data

opaque flax
jolly aspen
opaque flax
#

Found lots of data before wiping

#

And no password on the OS

rapid merlin
#

yep

jolly aspen
#

on the way to the junk yard

rapid merlin
#

many years ago I remember buying a $5.00 garage sale laptop, which was still signed into social media when I booted it up 😕

jolly aspen
opaque flax
#

Bills

#

Receipts invoices

jolly aspen
#

🤫

rapid merlin
#

I had no idea it was in that state

chilly veldt
#

It's so cold that I have put on my knee high boots

jolly aspen
rapid merlin
#

obviously I erased it using dd /dev/urandom

opaque flax
#

Full company info

#

It was a problem

#

So I wiped it and now it’s my server!

jolly aspen
rapid merlin
#

😄

chilly veldt
rapid merlin
#

I wonder if @sick lance has insight on legalities around buying hardware which has software connected to services

#

do's and don'ts etc.

opaque flax
#

Don’t do malicious things with it

#

Wipe it

#

You’re fine

#

It’s legal

rapid merlin
#

well obviously

#

I'm thinking like accidental

opaque flax
#

Its not ilelgal

rapid merlin
#

ah ok

opaque flax
#

Crimes require a state of mind

#

Modus operandi

rapid merlin
#

right, that's kinda what I was thinking

opaque flax
#

You have to have intent

rapid merlin
#

intent etc.

#

yep 🙂

opaque flax
#

Just buying a used piece of hardware that has data on it isn’t illegal

#

But once you cross the line and do something malicious it becomes illegal

rapid merlin
#

also at what point would a person report the discovery?

chilly veldt
#

That's why companies destroy their harddisks and doesn't sell them

rapid merlin
#

like say it had confidential data that was high risk, notification of the owner etc.

#

what that process would be

chilly veldt
opaque flax
#

You’re under no obligation to inform them really in most places

rapid merlin
#

true

jolly aspen
#

if its destroyable data, then i don't think a report is necessary. however! its hard to tell if the device wasnt stolen...so destroying it would be a crime

opaque flax
#

Might be different if you’re dealing with government secrets

rapid merlin
#

I did report a hardcopy paper leak once from a dumpster that was supposed to be shredded to a CISSP person in the past

chilly veldt
#

You're only obligated to inform about the data if it's something related to a crime

opaque flax
jolly aspen
ionic wolf
#

interesting, real world scam? thoughts on what it is?

someone cloned a friends website, using a free website creator, was tipped of with an email "Someone is stealing your copywrite", but the website has timestamps on when pages where created, email was sent very soon after it was created. so i send the contact page a email with a link back to a webserver i control and there is about 5-6 differant machines/phones opening the link in china.

opaque flax
#

You’d have to have facts that would lead a reasonable person to believe it was stolen for it to be a crime

jolly aspen
opaque flax
#

For probable cause no

#

Because people don’t come into stolen objects most of the time without knowing they’re stolen

#

That said you may still get arrested

#

And have to fight it out in court

jolly aspen
rapid merlin
#

a thift store as an example being a legit business

opaque flax
#

Pawn shops as well

jolly aspen
#

you can also look at how pawn shops need to maintain documentation to cover themselves as well

#

haha damn

opaque flax
#

For sure

chilly veldt
rapid merlin
#

ya I imagine there are like edge cases around liabilities

jolly aspen
#

also, we could all be pooling from different legal markets

opaque flax
#

Big truth

#

And different jurisdictions

chilly veldt
opaque flax
#

But yeah if you think data was used in a crime gotta report that

chilly veldt
#

If you get what I mean

rapid merlin
#

sad, understood

chilly veldt
#

Not the funniest workday

jolly aspen
#

i don't doubt that

#

which cert do you think THM will launch first in feb?

#

🟥 or 🟦

rapid merlin
#

oh good question 🤔

opaque flax
#

I’m gonna guess red

#

But I’m biased

#

But it seems most likely

rapid merlin
#

I'm gonna guess blue

opaque flax
#

Someone wanna guess purple?

rapid merlin
#

I only guessed based on the learning roadmap

opaque flax
#

Just so we can all round it

jolly aspen
#

purple!

rapid merlin
jolly aspen
#

there, its like a slow game of paper scissors rock

opaque flax
#

Red blue purple shoot!

verbal canyon
#

Red

chilly veldt
#

What do you think of this as a sticker, the font and outline okay?

rapid merlin
#

I can still remember him moan as he had to walk down the steps

chilly veldt
jolly aspen
#

perfect

high glacier
#

anyone can help me decode a cipher ? 🫠

chilly veldt
#

What's it for?

high glacier
jolly aspen
rapid merlin
#

I am off to sleep, have a fun rest of your day 😴 👋

high glacier
#

i tried...i decoded from hex -> morse then stuck

chilly veldt
high glacier
#

its already over

jolly aspen
#

i'm off to sleep too, but you can send it to me and i'll loook at it in the morning

chilly veldt
#

Then ask your friends who have solved it, we can't prove that it's not a challenge that is still ongoing

#

Sorry

high glacier
high glacier
high glacier
# chilly veldt Sorry

but in general to solve a cipher encoded thro multiple layers what tools one should use?

#

i tried cyberchef but to no avail

jolly aspen
#

trial and error, typically it would have accompanying clues

high glacier
#

i found this : (after converting from hex->morse)
FWHWRD ZA NQVPAONA, TITLR MQCK BS IX :#TWK ULAJQIVP EZIGE XMJXLCRXM TESKN...

#

i tried ceaser, for vigenere no key there

jolly aspen
#

the other thing is statistics of language - specifically occurances of specific letters or words are more common and you can infer there placements sometimes and start basically a "wheel of fortune" style or sudoku decode

jolly aspen
#

and that doesnt look right for morse

high glacier
#

as initial one was hex representation ig

high glacier
#

this was org cipher text:
2e2e2d2e202e2d2d202e2e2e2e202e2d2d202e2d2e202d2e2e202f202d2d2e2e202e2d202f202d2e202d2d2e2d202e2e2e2d202e2d2d2e202e2d202d2d2d202d2e202e2d202d2d2e2e2d2d202f202d202e2e202d202e2d2e2e202e2d2e202f202d2d202d2d2e2d202d2e2d2e202d2e2d202f202d2e2e2e202e2e2e202f202e2e202d2e2e2d202f202d2d2d2e2e2e202e2e2e2d2d

2d2d202d202e2d2d202d2e2d202f202e2e2d202e2d2e2e202e2d202e2d2d2d202d2d2e2d202e2e202e2e2e2d202e2d2d2e202f202e202d2d2e2e202e2e202d2d2e202e202f202d2e2e2d202d2d202e2d2d2d202d2e2e2d202e2d2e2e202d2e2d2e202e2d2e202d2e2e2d202d2d202f202d202e202e2e2e202d2e2d202d2e202e2d2e2d2e2d202e2d2e2d2e2d202e2d2e2d2e2d

jolly aspen
#

morse is typically really easy to identify as it has characteristic binary short and long values

chilly veldt
#

Hmmm, changed it to black text instead

jolly aspen
wooden totem
jolly aspen
#

d, e, f, 0 with 2 as a separator

jolly aspen
#

look for repeating groups - if its english then there will be some repeats somewhere

#

gn!

chilly veldt
#

I would feel shitty to drive an ugly bike to raise money for kids with cancer

jolly aspen
#

if you don't look good while raising money for kids with cancer, I think it cancels out the good deed

chilly veldt
#

Yeahhh, the good/cool looking part is a factor that plays in a lot when it comes to raising money, cause that's typically what gets people's attention

rapid merlin
#

How can I make friends?

rapid merlin
rapid merlin
rapid merlin
rapid merlin
rapid merlin
rapid merlin
#

But yes I talk with people

#

Literally did.

#

They all think I’m weird or psycho but in reality I am just your average dude working on minimum wage job

rapid merlin
rapid merlin
rapid merlin
bright topaz
# rapid merlin oh sucks i didnt win this time either lmao

Me too ... nothing again ... i will no more rush for make all the ... and will stop my sub i think as well ..... each time the same ... 4 millions + fake account ... so in real you have 1% to win something other the a day streak lol

jade wing
# rapid merlin I just woke up

Yea I was going to say stealth. I tried to message you about some of the stuff we were talking about previously and it says your dms are only open to friends now, also you aren’t taking friend requests. That happened a couple of days ago. So I can’t message you anymore. If that’s intentional all good dude for sure. Just letting you know.

rapid merlin
#

It was also discussed in the server

#

It’s only me that can send the FR

jade wing
rapid merlin
#

I just opened my eyes

jade wing
#

I was supposed to be in bed a while ago myself

rapid merlin
#

I gotta find socks and do school run

jade wing
#

But I’m determined to finish out this pen tester path by tomorrow night

#

Not looking forward to work in the next few hours :/

topaz topaz
#

Good morning people

#

Sleeping for 7 hours and the morning wakeup is still unbearable I want to pass out doing minimum work

#

Reminder that coffee is actually our lord and savior

cloud quiver
topaz topaz
cloud quiver
twin ridgeBOT
#

Gave +1 Rep to @topaz topaz (current: #536 - 10)

topaz topaz
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #4 - 1884)

topaz topaz
#

Is there a hidden mechanic to rep or just an indicator of positive activity?

rapid merlin
#

right need a cup of tea

chilly veldt
steady dome
#

Hi can I ask questions about python

naive violet
#

Yes

rapid merlin
#

I’m so tired

#

😩

stoic quarry
#

Morning all

steady dome
#

How to learn it fast I mean I still don't understand classes and the modules

stoic quarry
#

Python also has their own tutorial

chilly veldt
#

Take your time, there's no "learn fast" solution, it all depends on who you are and how you learn and keep knowledge the best

stoic quarry
#

Yee, best thing to do is not to move on until you understand a concept. If that means learning how an OS/Kernel works, then don't feel bad taking time to fully grasp that

steady dome
#

Okay do I need to know All the modules librarys

stoic quarry
#

No you don't need to know every library

#

That'd be impossible I think 😅

steady dome
#

Okay can you tell me some library that helps as cyber security

stoic quarry
#

Start with just python, then once you're comfortable with your knowledge use a library and see how it works

chilly veldt
stoic quarry
#

What do you mean by library?

#

Depends what you want to do.
There are cryptography libraries.
OS system call libraries
Plenty of different stuff

steady dome
#

I don't know when I see someones code and the library he imported I confused

stoic quarry
#

Learn how Python works first, then learn about libraries and it'll make sense later

chilly veldt
#

you'll get more used to what libraries do what when you have been coding for a longer time,
you don't have to know them all, a good google search for libraries that does what you want when you program is what many do

#

and then just read the quick documentation/help there is for the library

steady dome
#

So the documentation can help

chilly veldt
#

indeed

steady dome
#

What about c++ after understanding python

near sapphire
steady dome
twin ridgeBOT
#

Gave +1 Rep to @near sapphire (current: #2573 - 1)

sick lance
#

@whole topaz what you're doing is illegal, and against our comm rules to teach/discuss.

Please stop.

stoic quarry
near sapphire
whole topaz
steady dome
#

Thank you guys

whole topaz
sick lance
half girder
#

new point for the chart ^^

whole topaz
#

oops sorry but thanks for expaining. is there a way to try offensive or defensive on my pc without being illegal ? or I just can do it on THM website ?

upper knoll
#

plenty of rooms on thm to practice both

sick lance
near sapphire
sick lance
upper knoll
#

koth is available on thm to practice live defence

stoic quarry
#

THM gives you express permission, Instagram never gave you that permission

upper knoll
sick lance
#

The currentl players who play it all the time will just annoy them with their bootkits and auto-pwn scripts.

upper knoll
#

yer thats very fair icl its not something ive tried yet myself but for defence i think its good practice

stoic quarry
#

Que

sick lance
#

English only, please.

stoic quarry
#

I didn't bring up koth lol but I see it was the message right next to mine lol, was just confused for a sec

sick lance
#

Yeah, true

stoic quarry
#

My b 😅

sick lance
#

I lciked wrong messgae to reply to 😅

upper knoll
#

its early in the morning we all make mistakes

stoic quarry
#

Morning all, hope the weather ain't too bad for ya

upper knoll
#

its cold but im back home from germany so im chillin

stoic quarry
#

Nice

#

Average temperatures are like 25° for me lately

#

Jealous of ya

rapid merlin
#

Oh Jesus

#

I’ve had my tea

stoic quarry
#

Sounds like a surprising tea

#

What type of tea we all rocking?

rapid merlin
#

The croissant was good

rapid merlin
sick lance
stoic quarry
rapid merlin
upper knoll
#

i wouldnt describe others hard work as a gimmic

sick lance
rapid merlin
#

yep i aint saying its all fake, they do give prizes. but the chances of a bot winning is way higher than an actual person. gimmick enough?

#

I just realised it’s my birthday tomorrow

upper knoll
#

bruh

rapid merlin
#

😆

upper knoll
#

oh damn stealth

near sapphire
rapid merlin
#

I forgot

#

Lmao

sick lance
stoic quarry
rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @stoic quarry (current: #434 - 13)

rapid merlin
#

XD

stoic quarry
#

Lmao

#

No plans then?

rapid merlin
#

I used to stay in every year and play video games

#

Which is what I did everyday anyways

#

So

sick lance
#

My lecturer

"Check out the extra reading material"

#

The extra reading material:

upper knoll
#

xd

stoic quarry
#

Lmao

near sapphire
stoic quarry
#

For all those kids who think they can do extra reading, try save your network.

near sapphire
#

I have a question, what do you guys think is the hardest part of learning security

cloud quiver
stoic quarry
#

Yeah

half girder
rapid merlin
near sapphire
rapid merlin
rotund cipher
#

Hello, I'm on university and next week I have a school project, and the topic is cyber security. So I hoped that I would find somebody that could help me make a fake facebook website (beaming site) to demonstrate how easy it can be to steal information. And the best safety procedures to keep yourself safe.

woeful cypress
#

I personally would say motivation and comparison. It feels like one of those industries that's super competitive and you can't help but feel useless in comparison to other people

#

maybe just me

sick lance
half girder
rotund cipher
half girder
near sapphire
stoic quarry
#

Same 😅

#

I see some people casually flexing certs or their understanding of a topic I'm struggling with and I feel that imposter syndrome setting in again

woeful cypress
#

job interview processes makes me so self concious for those reasons i feel

sick lance
#

I don't mind job interviews.

stoic quarry
#

Mmhm

half girder
exotic vector
#

yep, thats how I finally understood metasploit, I did a few tasks had a break then thought to myself "I dont understand this enough" so I started to read the documentation and redid those tasks but slower by sitting back and really taking in what im doing and also looking up the exploits so I have a better understanding.

sick lance
#

Metasploit so big in comparision to some tools though.

stoic quarry
#

Yeah it's a good habit I picked up of redoing rooms where I was confused. Builds up that knowledge

exotic vector
#

yeah metasploit is massive, I have an entire book on it xD

half girder
exotic vector
stoic quarry
#

Jesus

#

I've not come across it yet but it sounds painful

#

I have a whole book on sed, awk, and... something else coming.

#

They're so useful that using it in a 30 minute room doesn't do enough

exotic vector
half girder
#

there are apparently math geeks i was told .. they are kept in a really dark place no one walks to

stoic quarry
#

It's not a bad idea

#

I saw an article that explained Public key cryptography really well in a low tech way, it's been pretty useful for explaining it to people lmao

exotic vector
near sapphire
#

I think cryptography should be a math majors lesson insted of comp sci

half girder
stoic quarry
#

It's important to know stuff

exotic vector
#

yes it is

rapid merlin
#

So sick of my phone warning me about my music volume

#

Let me be deafened by the bass

stoic quarry
#

I think mine gave up warning me eventually

half girder
sick lance
#

I'm sure by, probably some consumer law, they are required to do it.

jade wing
rapid merlin
rapid merlin
verbal canyon
#

Guys do we really have to network to find a job😐

jade wing
#

I had my first conflict as a human being attracted to a character from a game when they released Jinx and her promo on league. She reminded me of my wife.

jade wing
#

Unfortunately we must interact with society to be part of it.

jade wing
#

Lame, I know

verbal canyon
#

And half the time i get ghosted for months

jade wing
#

Can’t wait to just live in a dystopian society where I can “jack in” to the net and do my thing.

sick lance
#

Networking is good, I almost got a pentest job from being in this server.

stoic quarry
jade wing
jade wing
half girder
jade wing
#

They did releases windows 365 on oculus which is cool but it’s also not quite there yet

stoic quarry
#

He's just like me fr

half girder
stoic quarry
#

You can duplicate your monitor(s) with a few apps

stoic quarry
#

Loved it

half girder
#

ive read it a couple of times, one of my favos

sick lance
#

I will have a video wall by 2027.

jade wing
jade wing
stoic quarry
#

How else can I look around and pretend I'm in some high rise apartment and not some shabby 5x5 room in the UK

half girder
#

snow crash is actually the only book i really miss they should make a movie for .. but then, they might mess it up as they did with ready player one

jade wing
#

It was good for what it was if you pretend you never read the book. But that’s a hard thing to do.

stoic quarry
jade wing
#

Neuromancer, snow crash, and ready player 1 man. Solid.

half girder
half girder
stoic quarry
#

Eh, it's a great plot device in the book

#

I don't care too much if it's not perfectly accurate

jade wing
#

I want to see a good movie portrayal of the unwind series. But I feel like in the current political climate it would not be a great idea. Though that’s kind of the point.

#

That or the series scythe

half girder
#

not familiar with scythe, gotta google

jade wing
# half girder not familiar with scythe, gotta google

Same author as the unwind series if you’re familiar and if not definitely check that out as well. Also the illuminae files but for that one make sure you read the book. The audio book is great but the book is meant to be an experience with changes in paper etc.

stoic quarry
#

Same

jade wing
#

Snow crash is what got me hacking in second life as a kid.

#

Closest thing back then to that book.

woeful cypress
jade wing
#

It is super messed up though

half girder
#

there was also a book serie called net force, that was pretty good

woeful cypress
#

very messed up haha

stoic quarry
#

Neil Shusterman?

half girder
#

tom clancy

jade wing
#

Don’t let the premise fool you. Read the whole series if you do. It starts out about human reproductive rights and you think it’s a statement on that and to a degree you would be right. But it’s really about capitalism and greed, as well as corruption of the human condition. It’s a wild read.

jade wing
# half girder tom clancy

I mean I like to just numb my brain with his books from time to time in general he wrote some good ones.

jade wing
half girder
#

and my all time favo 1984, who knew it would become a strategy paper in nowadays world 🙄

stoic quarry
#

Wildly taken out of context too

#

Won't get political but when my co-worker was ranting to me about Orwell 'predicting the future' I told him what Orwell's personal politics were and he was completely shocked

jade wing
stoic quarry
#

But I'll leave that there

jade wing
stoic quarry
#

His other stuff is great

#

Homage to Catalonia is the first I read, amazing stuff

stoic quarry
#

I didn't record our conversation, no

#

I can pop you a DM if you want

half girder
jade wing
# stoic quarry But I'll leave that there

Also not to get too political, I think he wrote the book in line for what he stood for. However the context of the book was too nuanced for people of opposing ideologies and it was taken out of context to suit their agenda. I feel like those types of people likely only know the idea, the whisper of the book and what they were told it meant as opposed to actually reading it. If one truly reads the book and takes the time to comprehend it, there is no confusion to what his political beliefs were. In my opinion of course.

stoic quarry
#

Yeah, I just mentioned to Kangafoo, but my co-worker 100% had never read 1984 and just knew the quotes and rough idea

jade wing
#

I believe we are referencing the same type of person when you speak of your coworker

stoic quarry
#

Orwell has amazing rules for writing too. No Jargon

#

Lemme find them

jade wing
#

I had a coworker when Obama was in office in the states, when he was talking about healthcare for all, he looked at me goes “how Orwellian”. I just looked at him dumbfounded and said, do you understand that word and have you read that book? He was like “nah”. I just shook my head and walked away.

stoic quarry
#

(Slight note for number 4, 'passive voice' and 'active voice' would've been better to mention than just shortening it... lowkey contradicting rule 1)

half girder
jade wing
stoic quarry
#

Honestly the first rule is amazing

jade wing
#

I found it hilarious

stoic quarry
#

Binary can I pop you a DM

jade wing
#

Sure

stoic quarry
#

Just so we don't veer too political on ol' general

jade wing
#

Yea for sure man

half girder
#

hm we have that healthcare for all in germany and trust me, its a lotta bullshit... the mixture of our social system (payin for all) and insurance system, which is fed through the social system, is getting abused for years, therefore working people have to fill the gap for those on social benefits .. and when you really need your insurance, you gotta pay a lot for all the extras

#

my insurance is 0.55% points more expensive this year

#

it was once 12% of my pre tax, its now almost 14%

#

in absolute numbers, it would be definitely cheaper to have a private insurance as in the US, than paying the insurance for all and not getting any service when you need it

#

and the employer kinda pays the same as well for you .. so technically .. 28% .. even though its not really accurate

stoic quarry
#

Gives the single mother with 3 kids the same opportunity as the single guy living on pot noodles making 100k, seems okay to me

half girder
#

so when you have an insurance in the US, you know your costs and then think about how much % of your income it is .. when its less than 28% .. you should be happy you have that system

stoic quarry
#

But I think we move on before we get too political

half girder
#

the single mother is on tinder and writes "ready to settle, 4 kids, 3 daddys" 😉 a society isnt responsible for your decissions

stoic quarry
#

To each their own

jade wing
#

Before I go to bed. Listen Kanga I pay more than that in insurance for me and my family. The kicker? You just get your claims denied because it’s a system run by corporations not the government and they are incentivized by profit. That’s all legal here. Your system might not work. That’s fair, it’s hard to find one that does. But if you think ours is better you’re more than welcome to move down here and find out for yourself the reality of the situation.

#

I think you would be displeased personally

rapid merlin
#

And not everyone gets here because of the decisions we make

#

It’s not just our fault

#

🤨

#

KMT

jade wing
#

The making of a truly remarkable society in my eyes, is one of compassion and one that puts its people first. A great society is one that plants seeds for trees they will never sit in the shade of.

rapid merlin
#

People’s circumstances change all the time and that’s just life

half girder
#

i wont discuss every single case, i had my fair share as placement officer, from rape to incest, i know all the stories

jade wing
#

This is why it’s not a black and white topic. But I’m going to disengage from this because this is dancing on the discord rules to closely

#

I respectfully bow out.

half girder
rapid merlin
half girder
#

germany pays for everything 🤷‍♂️

rapid merlin
#

My neighbour is a single mother too and she does everything herself

frozen arrow
stoic quarry
#

Thank you DK

#

Gotta be one of my favorite kongs fr

rapid merlin
#

I can’t stop looking at that emote

frozen arrow
#

what's the easiest job in cyber security

rapid merlin
stoic quarry
rapid merlin
#

I think the easiest would actually be the one you enjoyed the most

frozen arrow
rapid merlin
#

Because anything you don’t enjoy feels like a chore

frozen arrow
#

true

stoic quarry
#

Level 1 SOC Analyst is usually entry level to security

#

Or it's my route anyway

rapid merlin
#

blobfingerguns yeahhh

rapid merlin
frozen arrow
#

alr thanks

stoic quarry
#

Don't know anyone who went straight to pentester

rapid merlin
#

I’m blue teaming too silastic

stoic quarry
#

Help desk -> SOC is a very real and very fun pipeline

stoic quarry
#

At least I think it is

#

I do an itty-bitty bit of red team adjacent stuff. But it's not heavy enough to put on my CV

slow cloud
#

blue team is the best

stoic quarry
#

Cyber investigator, what a silly ass title. I love it

rapid merlin
stoic quarry
rapid merlin
rapid merlin
stoic quarry
#

He's a security engineer at least

stoic quarry
long junco
#

after expiring premium free VPN became unusable! blocking every few minutes mandating restarts. tried HTB free and it flies on free VPN!

cloud quiver
stoic quarry
#

Expired one too

#

Bit confusing

wooden totem
rapid merlin
stoic quarry
#

New years fireworks got replaced with flares ig

rapid merlin
wooden totem
#

Let me call the expert @sand trench

rapid merlin
#

I never seen one irl

stoic quarry
#

Looks like it

rapid merlin
#

The edit

#

That’s crazy

#

Why they do that

stoic quarry
#

I fat finger the capslock key

#

If you shoot it up then it glows bright and slowly comes down

#

Not like a firework where it flashes and has a fancy effect

rapid merlin
#

I don’t like the look of either

#

What did the tree do to them

stoic quarry
#

They're made to stand out yeah

rapid merlin
#

That tree was just chilling

stoic quarry
#

Justice for da tree

rapid merlin
#

This is why I changed my mind about moving to Sweden

rain river
#

Free vpn

#

bur cost money for it to be faster I think

rapid merlin
#

All crime went up

wooden totem
stoic quarry
rapid merlin
stoic quarry
#

A free vpn ain't gonna connect to the THM network

stoic quarry
rain river
#

Ik good free vpns

rapid merlin
#

I used to go at night

#

Just me plodding around like a duck

stoic quarry
#

Damn

#

Nice

rapid merlin
#

I have a crazy story about the woods

#

About some homeless guy 😌

exotic vector
#

theres a group of people in my town that often play hide and seek in the woods at night... they're all over the age of 30 xD

knotty pendant
#

Hell let loose is free on epic games🤑🤑

rapid merlin
#

I want to go

#

🤣

exotic vector
rapid merlin
#

I once slept in the woods with a friend, in the night I heard a twig crack and I go up to look about and found nothing. My friend was like probs a fox man, dw but it was actually a man who lived there 🤣

#

He came and found us in the morning to share snacks and stuff

stoic quarry
#

Sounds like a cool guy

#

I'd love to chill out for a weekend with him

rapid merlin
#

He would tell me about the birds, bro was in another universe

stoic quarry
#

I won't break laws and say what else I want to do with him but he sounds fun

rapid merlin
#

I knew there was a person around!

#

He did have something on him 👀

stoic quarry
#

Sounds like just the type of guy I'd love to run into when I'm out in the woods

#

Pop a few flares off and sit back, eat snacks and ask him about birds

rapid merlin
#

I remember we gave him a carton of juice and he downed it

#

Must have been so thirsty

#

He was chill

#

And very grateful 👌

stoic quarry
#

Bless

#

Can't wait to meet people like that once I move

rapid merlin
#

Ah the stuff I did when I was younger 😆

#

Hi guys

#

Why i can't login my account with phone

rapid merlin
#

Phone login should work

#

İ did

stoic quarry
rapid merlin
#

And i reset my password twice

#

Are you getting an error ?

#

@stoic quarry your password or mail wrong

#

@rapid merlin yes

stoic quarry
#

Then your credentials are wrong

rapid merlin
#

@stoic quarry no

#

Make sure to just check everything, type slow and make sure everything is Caps correct

#

I can login with compyuter

stoic quarry
#

I mean, we can't help you further. Make sure the email is correct.

rapid merlin
#

Phones automatically add cap at the beginning of everything.

#

Make sure your security app isn’t blocking access too

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @drowsy swift (current: #213 - 34)

exotic vector
stoic quarry
#

I wanna get back to urban exploring

#

That shit was fun

rapid merlin
#

I don’t know how many times I put my life in danger

#

I would go into peoples house I didn’t even know

sick lance
rapid merlin
#

@sick lance I did it thanks 🙂

stoic quarry
#

What was the issue?