#general
1 messages ยท Page 757 of 1
thats a sick as hell cover ngl
Theyโre generally nice about not hacking you lol
Itโs generally frowned upon to hack others at the convention
They were joking about people hacking themselves with it in the past lmao
Never their intention, but there's always one person
They have super secure networking (except for the open WiFi where you get put on the wall of sheep for)
Oh thereโs bad actors for sure there
Just connect to the secure WiFi and besides that keep your WiFi and Bluetooth off
Not the organisers at least ๐
And beware at the hotels
No defcon has a top notch NOC and SOC
I was on hotel WiFi and got a self signed cert error going to google.com
I noped tf out of that WiFi rq
My device pings back to my home net with Wireguard + PSK and my own recursive DNS at all times so I'm good ๐
Big fan of wireguard
That too
Probably, but how much data they can store...? :D
Wireguard is also used by our i.t. firm can vouch
Brilliant golden standard for VPNs, especially the cryptography. Me and my best buddy love it
Unfortunately my isp doesnt allow me to open ports so I canโt have a dedicated vpn tunnel to my network. Used to run wire guard on my last isp
So currently Iโm using tailscale but that doesnโt route all my traffic afaik
OH, Can I boast a little??!?!?!?!
Get in there fellow self-hosters ๐
I could do a vps in the middle and stuff but nah
And have the vps accept inbound connections and everything is just connecting outbound
That time of the day for the proxmox and trueNAS pizazz to come out
i was thinking holepunching or something similar
Got my domain controller and true NAS on it and opnsense, pihole, wazuh
Soo, I have THIS beauty!!
It's also acessible through my VPN have a lot of stuff on it and I might get another one like that :D
I think I might be on a way to creating my very own server room
That uptime tho
how does a screenshot have transparent background
since vmware going to shit because of broadcom proxmox is becoming a real player
also I need to swap GPU for something more powerful and support to vGPU for my GUI boxes
Do you think that it's about time, not the updates?
Still behind hyperv tho
Stuff just breaks with long uptimes
My server never told me nothing about update for kernel and stuff
can you tell me more about that?
If youโve configured it for the community edition repository itโll auto update
If you got a memory leak then more and more resources will be consumed the longer the uptime
lemme reboot it than rq
lol wait no
xd
As long as your vms are good then sure
But donโt just kill your vms without making sure theyโre good
I love my setup, everything is all fenced in behind my VPN
I'm running some dozen little bits including a vaultwarden instance, RustDesk relay, SearXNG instance connected to Tor proxy, Jellyfin, Adguard Home for that sweet preconfigured DoH and NextCloud
Also restarting will clear temporary files and such
they're good, I have a bunch of them and don't think that I've seen issues on them. Also since I use proxmox it's complicated for me to go through all of them
Your next step: baby's first cluster
That's where I'm heading. Kubernetes is all the buzz these days
Enterprise standard is every 90 days or so for a reboot, but usually they can put resource load onto a backup temporarily during that process to minimize downtime
I have an under my desk server data center
i want to get a large storage usb stick and 3d print off a cyberpunk shell for it that says soulkiller to feel like a hacker boy when pinging my own network
My server's just a repurposed Dell PC BTW lmao
Now, get this though. Ultra flex
My VPN is actually not running on my server, it's entirely agnostic
Yeah. I can stand some downtime when I do my reboops
mine is noname self-built old gaming PC with switched CPU, RAM and updated BIOS
It's running on a router which I UART'd into running OpenWRT ๐
Yeah it's not like most individuals like us are hosting systems that need effectively 100% uptime, so it's not an issue to do it more regularly
I struggled a lot with this PC after getting myself comfortable with laptops :D
Ooh, beware the power draw depending on the GPU/CPU
Yeah for sure. My SO had an issue where she couldnโt access her network remotely cause the first wall glitched and was not available โon premโ to reboot it. So she now has a cron job running for weekly reboots and a script that auto starts the vms upon reboot
My ideal is likely going to be a bunch of quad core N1000s and maybe a single low profile GPU somewhere for transcodong
Transcoding
Can you clarify? =
The power draw of gaming PCs is often gnarly as all heck. If you're sitting at home running it 24/7, you will end up spending quite a hefty bunch every month on the electricity bills. People enjoy small TDP set-ups which are efficient on bill costs
ahh, yes make sense. I'll note it, but for now I live in a place where electricity and internet is cheap
probably at the time I'll need to think about it -- I'll just rent myself place in the server room
(and live in this server room)
If you're doing strictly VM and/or linux tasks the majority of processing is done through memory, so there's no need to have a beefy GPU which is a major draw on power otherwise.
Computer think hard, computer get hot
I work with LLMs sometimes also do some complicated computer stuff since I'm (kinda) penetration tester at my work
Thank god the computer did thinking hard for me cause I sure as heck know my brain cells arenโt up to par
Gave +1 Rep to @mellow gull (current: #81 - 95)
Lord knows most of us never developed a brain. The machine might be learning but I'm not.
Too real
Have you seen something like that in your life before?
Bro I'm tired, my computer's on it's last two braincells with the funny activities I was attempting on it
Yes.
I love this IBM mount in server rooms (but it's also kinda usless if this server room is big)
Yeah itโs a fancy kvm
(kernel virtual machine?)
Every server room I've ever been in has something like this
Yes, and I don't get it
Info needs to be accessible somehow
PiKVM it or remote desktop, idk
We usually just connected through the wire and ssh'd into machine
I want one, haven't seen a lot for sale sadly
Man ya'll don't believe in redundancy anymore? Shame
I love these physical access terminals
Keyboard video mouse
I was watching saville tech and he had a shirt that said โback in my day we had backup domain controllersโ
I love them too!
But somehow we just didn't used them much
And I need that shirt
I'd like that one too
An older reference but it checks out
The amount of clients I support that combine file sharing/ad/dns/print is appalling. ๐ญ and only have 1 server for it
anyways!
It was nice talking to y'all!
See you around and have a wonderful day (or night) ahead!
I donโt think Iโve seen a single client use AD CS
hi
Can someone help me understand reverse shells and bind shells
What's to understand?
It depends on the shell?..
In a bind shell you establish a listening connection on the target machine using similar techniques and then connect to it with your attacking machine
And in a reverse shell it's the opposite, you listen on your attacking machine and send a connection from the victim machine
So with a bind shell the target listens for commands from the attacking machine
Yes.
Ahh so reverse shells - they execute the commands on the target
And we just listen to the whole session
yes
how much of tryhackme is paid once you get a bit further?
Approximately 60~% of THM's content is free IIRC?
yeah most of the content is free
๐ so the experience doesnt matter not like that now the intro is free and the intermediate topics/advanced will be paid?
Seems like most challenges are free
what do you mean by that?
So the learning paths, which consist of a specific set of rooms meant to teach particular content like SOC 1 or Jr Pentesting or what have you, a lot of that is subscriber-only from what I've gathered
But challenge rooms, a lot of info stuff, other walkthroughs for unrelated stuff, is all free (or a lot of it is, at least)
Gaww I get it now!! Thanks again
so basically this path is a lot of stuff apid but you got the free ones who aren t the path?

like these
You've filtered it for free-only rooms, so naturally, those are all available to anyone.
A lot of walkthrough rooms are also free
walktrough only know the roadmap and the rooms
i know
I'm an ll person, actually
neither... shadow is a ls -lah person
Gotta be human readable
Well lah dee dah
haha yeah that could be a phonetic memorisation rule
ello
I was expecting a dark terminal with bright green text but WTH

merp morps time for slerp slorps to the blerp blorps for sleep sloop beep boop meep moop
Expectation vs reality 
guys i need sm help
What you expect hackers to be doing: 
What hackers are actually doing:
"Herrr durr look, it boots into GRUB"
I sit there watching my fellow students finishing an assignment for our Cybersec course to see how they're getting along, they tell me they're busy coding a program that opens 50000 windows to draw bad apple on screen
On a laptop with 4GB RAM, sitting there with a 64gb page file
I'm not kidding
That was before christmas
1995 nostalgia for me ๐ฐ
That's the most elaborate forkbomb I've ever heard of
alias la=โls -lahโ here
The smartest guy I know, he codes homemade malware with anti-reversing and bypasses Virustotal on all vendors
I ask him what he's working on now, he says he's creating a Bluetooth driver to DOS a guy next-door in his Uni dorm because he won't stop pissing about with the Bluetooth speaker
hey , i hope i am not in the wrong channel but i want to get better at bufferoverflow (ways to defend and to bypass the corrections ..etc) any one can show a path or maybe went through this ? (i have basic BO knowledge )
I'm
Somewhat obligated to say that that's pretty ill advised and shouldn't be motivated.
Yes, he's definitely not a good guy ๐
There are a couple room in thm on the subject
I'm not condoning any of that, I'm calling it stupid
The malware he makes is all just for the sake of exercises and he uploads it to Virustotal to get it signed up by the vendors, he's not interested in any unethical practises
Heโs not interested in unethical practices. Heโs coding a BT driver to DOS someone
These are contradictory statements
But the Bluetooth thing, nah

bro is dedicated to stop annoying neighbor any means necessary
Motivations take hold in curious places
I know, he knows, it ended up being satire but it's just the wackiest shit I hear around the place
๐ฏ 
Right. But you canโt say theyโre not interested in unethical actions and make the statement that theyโre doing unethical things
lmao what an extreme measure
I mean you can
Just ask him
It's all about access to resources IMO
No itโs not
Access to resources has nothing to do with the ethics of something
Fair enough, and I agree. Given the context itโs pretty low tier, but still likely illegal(it would be in USA)..so probably not the place to discuss
Integrity and ethics cannot be taught to some
Definitely illegal. Itโd fall under like unauthorized use of a computer or whatever the federal law/applicable state law is
hey, anyone taking part in soc simulator game?
I believe it would also affect some FCC laws as well. Since broadcast devices must accept and not interfere with the function of others
Deauth devices are legal and jammers are ilegal?
Wireless has some very fine lines to dance around on whatโs permitted and not
Goodnight all, it's bedtime for me here in the UK
Yeah probably. Not sure how much the FCC would care. Nor would local or federal LE really care tbh cause itโs not happening on a massively disruptive level.
Still is illegal tho
Deauth intent can be illegal. A jammer is illegal
Goodnight spectre
Oh, yess they would
mimir time
Something something medical devices interference
booty
wait what happend
Local LE wouldnโt give 2 craps lolol. fcc or Feds maybe

the bot doesnt work
FCC will give many craps
dont tell me they fixed it
I mean, something we got taught in the ethics module of our class today. "Morals are like personal ethics. They may contradict with the law from time to time, they are your personal code of conduct". He should probably take a page out of that one lmao
He won't touch anyone's devices, doesn't fang malware. Reports any group of skids who threaten him rather than hacking them back, being responsible about it and understanding the gravity of the situation
Small shit like fiddling with someone's Bluetooth because they've been genuinely disrupting the entire block with it and nobody's responding to the noise complaints. Well
Fair
Thatโs not how disputes are settledโฆ
BOOTY~~~||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||||โ||_ _ _ _ _ _ _ ty
Gave +1 Rep to @opaque flax (current: #135 - 58)
legality and morality usually dont go well with each other
Yep. Touchรฉ
But, I canโt comment anymore, as discussing it would be breaking the rules hereโฆ so, have at ya fellas
IF it went to a court the defense โnu uh I donโt think it was unethical think of MY personal moralsโ would not be a defense
Dexter had a code
Weโre just pals, buddies, friends, compadres. Ya know
Lovers even
When we talk about ethical and unethical hacking here and in most spaces unethical hacking is any hacking outside of the law that could land you in legal trouble
Thanks cupcake
Gave +1 Rep to @jolly aspen (current: #190 - 39)
You shut your beautiful mouth when you talk to me
I don't think you know how talking works
wild
Hello ๐๐ป
elloo
โ ๐ต๏ธ ๐ค
absolute convolution
So even DOSing someone with a Bluetooth driver even if theyโre annoying and you donโt have consent to do so is completely unethical no matter how you justify it or if you think itโs justified
Aye. That's why we're covering it. It's worth covering the separation between ethics, morals and legalities more often in this field
yep just like deauth someone with your wifi adapter
to get his handshake
in other words with great power comes great responsibility
don't need ethics just watch spiderman
And poor Bluetooth connectivity
Why donโt you likeโฆknock on his door and shake his hand if you need his handshake that bad. No need to deauth him
two way handshake ๐คฎ
Erm aktualy its specifcially illegal becus jamming frequences are dangerous to potential medical devices on persons
funny I was looking at this today
i dont want them to fall in love with me
Does THM have any ethics modules? I've forgotten at this point
probably not
I know htb has a whole page
Worth considering making one mandatory at this point because of how many wacky shenanigans happen here in #general from passer-byers 
It wonโt help
People will still come in and ask us to hack their ex dogs facebook
its always funny
A bit ๐ค
good thing is they dont stick around for a while
Good luck telling people eho want something that "oh we dont do that here its actually ill..."
BUT ITS MY GMAIL
AND SUPPORT WONT HELP ME
my roblox account all my robux
I HAVENT EVEN TRIED CONTACTING THEM
free robux hax
Hi guys I am running a penetration test on myself, I have a website of mine can someone help me deface it?
Chilling in VC if anyone wants to join
people here speak?
I know, shocker lol'

SSH into the box (cause you own it and have the password or private key and itโs legally accessed) and change index.html to say โsynapse was hereโ
what fascinates me is how little they now about the topic in general but they want to haxx something
- Get a random stranger to "hack" into your account
- Talk to specifically trained and trusted support person about retrieving your account
You can only pick one
1, its no brainer honestly
Can someone hack back my facebook account? I lost it seven years ago and I'm only just now wanting to get it back.
Iโve gotten a discord token stealer scam message from the guy asking me if I wanted to be a real hacker lol
Seemed kinda ironic
"You pass the first test"
easy points im gonna do it right now
Hellppp guyss
i want a new color
was waiting for that
whats wrong?
here we gooooo
WHERE CAN I LEARN PHYTHON FOR FREE IF ITS NOT CODECADEMY

yt?
cs50
blackhat python book
Tried their docs?
and doing projects
THANKS
W3 schools. YouTube
netacad has a basics course, and the writer of "automate the boring stuff" is often releasing their text for free
TYYY YALL]
NW
Why are we yelling
you clearly aren't
BC ENERGY
avoid getting stuck in tutorial hell
i am not yelling
huh..
best process is probably to mix the generic course with a small project and lots of googling
Docs are always going to be a heavy lifter for your learning, tutorials help but they can't beat a good docstring
focus on trying to make something, trial and error instead of sitting in front of 6 hour tutorials
At least personally; try more venues for your learning and see what works ๐
IT'S AT 20 UPVOTES LETS GOO
docs are sometimes really difficult to understand without prior coding knowledge tbh
CAN U GIVE ME ALL FULL GUIDE OF YOURS IN DM? ๐ญ ๐
why do you want to learn python?
tell me this, is there any task you would like to automate that is boring in your day to day life
Do you have to shout?
so i can complete cybersecurity
if you are using linux make script that will sort your downloads directory
woke up the wide boi
yes
yup
Who is the wide boi
Shouted so loud I could here it here in Iraq
i would find a more pointed reason or specific problem you want to solve with it - then learn how to solve the problem with python
just go straight in
I see now
True, indeed. A well written one is usually nice and to the point though with descriptions of parameters and returns per function, I tend to get lost in tutorials sometimes because there's too much "waffle" personally 
i also wanna make some py projects and pygames
Pygames huh
i mean, thats nice if you know a parameter, and why they exist and uses..
Haven't heard that name in eons
write down what you want and what you need and do some reasearch
ok, so what game and project
'Who wants to watch me struggle with python?
make http server
me
Verify your account and come join me in Voicechat
what is the issue I might be able to help ๐ญ
is that a farming game where you automate drones using python
W3schools taught me in a few brief sentences what those are; after I got the memo, it was smooth sailing
calculator project and js a simple game
I have used Python for a project I just don't know what you are making to be honest
@upbeat pilot
Yes, yes it is
i did verfity lol
Doesn't show you did
Your tryhackme account?
If you did successfully, your name would be โจcolourfulโจ
In discord?
Representing your current rank
Yeah ^
WAIT A MINTUE
there you have your google search " how to build a calculator in python"
The verify command here ties your tryhackme account to your discord profile
ye i use chatgpt
sure
Goodnight all
use a better prompt like : " i am a complete beginner in python, I'd like you to explain in a step by step way the important aspects of the language necesary for building a simple calculator, then ask insightful questions about the next projects I might want to work on to further develop my skills in python"
lol i did now
helpful
TYYY]
Best of luck
tyy
thats very fortunate for you, not everyone is so quick to understand these concepts
real
i tried it b4
THANKS FOR SUPPORT
have you guys seen new AI https://api-docs.deepseek.com/news/news250120
learning wht
its not easy, and its not really hard, its just cinsistency and persevearance. the majority struggle the most in the beginning then it really does get easier. but having some problem to solve with it is the best motivation. even if its something simple like organizing files with a program. or sorting emails etc.
watching a video on deepseek
fireship?
yeah
Apparently it didn't limit the number of links in API calls
mhm
guys can sm1 like who is proff in python show me a simple project
chatgpt insiprations are boring
i just have bunch of exploits from github and directory sorter
u are an programming OG FRL
U ARE A SAVIOR
Now I'm lonely again
because docs are written by experts who often forget how much of their knowledge they take as granted for everybody else
@rugged kayak get in here!
throughout my years long experience as a swe, docs only serve their purpose when you already know what youโre doing and you need to know specific details
yea, totally.
For beginners I recommend that you skim through quick tutorials and learn the material by applying it, modifying it and then trying to break it
i've only encountered a few docs that did some heavy lifting. most of the time they had an in house instructional designer or something - if you want docs readable by all, although probably at the detriment of the really experienced, then you need someone without technical repetoir to read through them to provide insight
Yep, should also note that most experts have a god complex
So a good chunk of them love a little showoff here and there xD
sorry i didnt see i was eatin
Hello! I'm new to tryhackme and we practice every day. How many hours is ideal to work every day? Unfortunately my English is not very good and I use translate to read since I'm from Greece. But I have passion!
There are people who started this way, for example tryhackme, experimenting on your own, now that there is AI to ask questions and get the answer straight away, have they progressed and seen results after a while?
is it possible to form a team here on THM for the SOC challenge https://tryhackme.com/r/soc-sim/scenarios
what is this sir?
i have been at it for a week now. and I think it really depends on you. Its about how much info you can learn, retain and practise ig
im curious about this too, I seems it is only for current or prospective business owners
really? i thought we can form a team here and compete
try to register and let me know how it goes
i am looking for a team, wanna team up?
sure
That is why I want to know too
i would first try to find where you can register without having a business account
wait lemme see if that's possible
You're going to find out that there's plenty of Free rooms also in the Paid modules. There's just not all listed in the page your looking at.
i think its possible! yes but for some reason i am being shown in a team. Why though?
HELP: can anyone explain how can we team up and compete for this challenge?
This has disqualified me
might have to wait for tomorrow when staff starts to wake up again. its pretty late in UK right now
I have an email I can use, and I can create more. But I dont think I want to buy a business premium account just for the event just yet
ill wait until the staff is awake to get more clarifying questions on the event
well i think my edu account will fit in for this rule. Lets wait for staff clarification
that was another question I had as well
๐คฃ yep if all goes well. Lets win this
it looks like creating a team dashboard is another option

Finally got my meds
What meds
Antidepressants
wow i dont get banned cool
?
Dude above me said the n word and deleted it
Gotcha, thanks
I deleted it ๐
@mossy river was so fast on the draw, it's like Red Dead Redemption 3 maxed skills 
Probably should add the word to the automute list
Is the soc simulator challenge available for free users

looks like it is for Business. subscribers do get access to it (not full version)
"SOC Simulator is available exclusively on TryHackMe for Business plans."
Ah ic
i didnt know so, now we both do
Sudo whats ur fav veggie
๐ง
carrots, asparagus, sweet potato
๐ฅ
First time i've heard some said brussel sprouts r theyre fav veggie
good beta carotine.
good in oven with some bacon
Good night THM
Fortinet is in the BleepingComputer news VPN passwords leaked
Even though it is almost morning
Hey everyone im doing HTML - javascript
Section How WebSites Work
Im taking plenty of notes but will this path give me hands on parctice?
yes, lots of rooms you interact with websites, part of CTFs is to look at HTML code etc
Good morning heap
Okay im just worried this will be the only time this will he talked abt and have little practice sites going on because without the video i didnt have a single clue what to put in the HTML java code if that makes any sense
Are you the veggies admin
you might want to practice and learn from https://www.w3schools.com/html/default.asp as a resource for HTML and Javascript. also Python is available there which is worthwhile getting familiar with for later on in cyber sec journey
some are root vegetables ๐ ๐
there is no root fruits
Time to learn privesc on veggies
Thank you
Gave +1 Rep to @grizzled wing (current: #63 - 135)
there is root beer, that shouldn't be called beer ๐ ๐
haha root beer is fun beverage
Good one
Fortinet has some or the other issue all the time
So does Ivanti, Cisco, etc etc
Fortnite
yea, they show up often
its amusing that the company is supposed to be secure is not
They have loads of services running, so that increases potential attack vectors I guess
Got heart burn from taking my antidepressant
I will now be posting random memes
your ๐ซ ๐ฅ with hacking
haha those videos say 1 hr but you have to stop and type the code so it ends up being 3 hrs
I've never taken a course on programming tbh
My teacher/mom taught me everything I know
I did complete the coding stuff on THM and SBT for fun though
So as a reference although i will take time to learn some aside for now ive been at it on THM for like 3 hrs+ now
i just plug myself into the matrix
I have four books on Java, they were my mom's when she prepared for SCJP certification
They're good
So when i look at that site you gave me im like holy sweet mother of god
My eyes lol
Oofer why bro
3 hours, great work
they have dark mode on the top, toggle it on
Around 6 or a little before any..
Ok bet not just thatt but so much info
Hallo frands
1 bit of info at a time, take breaks
Wassup
๐ญ bro cant be stopped xD
No.
you can be stopped, you are not a 0xLegend yet
You seem to have a cool mom
@eternal timber I did a PR yesterday
100 KGs deadlift
Is the spoon bending or are you
Awesome job
Duty
i bend around the spoon
Oxlegend?
Ox15 ETERNAL
Wtf there is another kratos ??????
Rn im 0x4 seeker
I want that Kratos physique irl.
Fairly popular character
have seen double usernames lately
The matrix is glitching
there are 2 NO ONE usernames
R squared and altered R squared
No confusion,
I am all caps
๐
Thank you.
Gave +1 Rep to @viral crest (current: #1049 - 4)
Just got done with how websites work now im on putting it all together ..
Lets do this
@austere venture web sites don't work, they are broken.
By the time they are repaired, you will be broken.
Your enthusiasm for computer science is great, but it's not from one day to the next.
Computer Science is a very long journey, with sleepless nights, and lots of alcohol.
At least it has been for me.
I guess instead of alc is weed/vape but i night stop that
Yeah ive watched alot of videos of the reality of trying to find a job in CS Typical american corp shiz but i need a skill period so s
This is one of the cheapest ways to learn something for now.. although i do worry alot i just have to keep working ..
HI EVERYBODY , i start a vmware confug for kali linux to hack my own windos 11 notebook
what is a confug?
Configuration i assume
Did anybody need help with the quiz as well??
which quiz
Putting it all together its in the pre secuirty path
XD
if you need help with a room you should post in#room-help
Nah nah i dont need help im jus shitting here like of thm didnt have a lil walthrough video id be stuck like crazy and this quiz.. jus oof
If that makes any sense
Sup guys
Sup
How we doin tonight?
Blackpilled waiting for AI takeover. Sitting here trying to get these bowels to move..
Im ok for the most part
Wby
Wild
Well, let's just say I'm having a hard time trying to dump hashes in a win server 2003
There's no better way to kickoff your week
Just two folks struggling to dump
Bro theres just no way I cant execute shit with a non-interactive shell in windows
do u guys use tmux or terminator
t-3000
Make it happen, soldier. You got this. ๐ซก
You can respond with the soundboard now ๐ญ
Sorry for the ignorance what is that??
Yeah. ๐ I got the beta for it today.
wtf is this new?
Think so, at least it is for me.
They better add a permission for it ๐
@mossy river i have a question about the SOC announcement, are you the person to ask?
I can find out- what's your question?
It seems it is for business accounts only, is that correct? Would student emails classify for the โnon Gmailโ etc generic emails.
Lastly, if it is for business members, does it require a paid subscription to participate in the event
did Jabbas color change?
igot a csdcard 1tb and if i change my cqard od=f notebook youps read file permission denied
Business users are users with a subscription to our business plan https://tryhackme.com/business
Empower your team with advanced cyber security training used by over 4 million users. Enroll in simulations covering defensive, offensive, and cloud security skills.
nope it didnt its my monitor
I believe it is only for business users, yes
one idea
Not yet ๐
is a promotion for jabba in the cards? ๐
its a phillips 1tb sdxc card
Whatโs above an admin
I'm the highest you can get in the Discord server ๐
I am planning on adding a new role so that users know what my role is at TryHackMe
Yes:)
Is Sec+ a certification role
it is!
I'm hoping to properly define my role as I get a lot of messages of users thinking I'm a volunteer or don't manage the community
it is because i am certified in positive security
fair. your thm staff role is hidden when i look over it
I did some poking and it seems university email works. I guess my university participates
That is actually a really good point
that could be my vertical monitor tho
Nop. Same for me
Pretty sure thats for the student deal
name your role "no seriously I actually work here"
A team?
I was up until 0400 Jabba 
Did THM remove referrals?
I have no idea why
No, I was trying to sleep
cant find a referral page to make one thats why
Yes
i should sleep but watching twitch
Yeah, go to sleep
But while you are awake, go look at lounge 
I'm not going to fall asleep anytime soon. I'm pretty much sleeping whenever I get a chance, my sleep schedule is non existent.
Oh right! I saw your message but I got sidetracked ๐ Apologies
i miss working nights lol
No worries lol, I figured you may enjoy it
I'll never miss that in my life ๐
i loved it
Every year I think "Wow, I really had a bad routine, I will never do that again".
I somehow manage to top that every year.
I don't even work nights and I hate it
Dee, why are you up ๐ญ
i wasnt tired so i was like
i wont lie down
so
here we are
xd
im suppose to be up at 7:30 tomorrow
I work late at night when I work from home ๐
im half between powering through and sleeping for a few hours
low anxiety hour is 1AM
I hate small mistakes lol
sound:0:5 imagine not having
Awesome!!!
I said this and I'm screwed ๐
seems like it at this point xd
who was the discord admin bfr jabba
Ugh had to restart machine gotta take it slower imagine trying to learn hacking on a serious time limit
Yessir, we're currently working to make sure the colours are the best fit for the new levels ๐
I filled them all with 0xD Green because grey roles fill the next highest role colour in the hierarchy
Before time, there was Jabba
We had lorestil before me:)
I just noticed that I am no longer a god
nice, thanks ๐
Gave +1 Rep to @mossy river (current: #6 - 1445)
got demoted from "god"
I will make you all believers. Bwahahahaha
not me ๐
why did they quit? stop?..being admin
Nice, according to Wikipediaโs year in review:
I read 3,275 articles, I read the most on Wednesday, I saved 1,052 articles to my reading lists, I edited Wikipedia 9 times, and articles Iโve edited have been viewed 83,000 times within the past two months
youre famous!
They moved on in their career- they were a community manager.
"Admin" is more a description of the role's permissions than it is the responsibilities within the Discord server
Can ask why certificate of completion stating duration?
lol not quite, Iโm sure those are rookie stats. Plus most of my edits are minor grammatical and โencyclopedic toneโ edits
one day youll have dj mobley levels of recognition
lol, nah Iโll probably keep on plugging like this. Itโs just whatever I come across while reading and thinking โthat doesnโt sound/look rightโ
Iโm just addicted to learning about anything and everything though, so Iโm not too suprised by my 3,275 read stat though
she is ๐
lol hush
me too i have to read some ebooks i recently got
9 edits in a year is nothing. I put the most effort into โLlamasoft: The Jeff Minter Storyโ since I really enjoyed that game compliation/documentary
Nice, I typically go on book reading binges on and off. But Iโm kind of like that with most media. Wikipedia is just a bit of a constant for me though
can i unenroll from a path?
Just start another path, but your progress will not be reset
You can't, you need to join a new one
for sure. idk i do some hacking, i do an academy module, etc im like i dont feel like reading
refering to this question, so will that affect the duration?
mhmm, as of late Iโve just been on a gaming and โwatching all of Computer Chronicles (1983-2003 informational PBS show)โ binge
you can check in any time but you can never leave ๐ ๐
Iโm big into retro computing and history and itโs fun to see whatโs up with boots on the ground in computing in 1986 where Iโm at now
im playing video games and watching a streamer right now
nice nice, yeah I generally canโt multitask like that, with a couple exceptions
here comes the photo ๐
cupcake?
for media, Iโm pretty much all or nothing. It gets my undivided attention or I donโt feel like Iโm appreciating it. But obviously chill music in the background and etc are exceptions
i like background noise
the photo of Ellie PC ๐
I just canโt use anything with information or too much talking as background noise but yeah I get you
Hm? Also I generally shorten my name to Ellie
yeah if i need to concentrate then i will
Anyone available for a job?
you all lucked out, I wonโt spam it again
You need to be verified before you can post jobs here:)
Drop me a DM please
https://tenor.com/view/you-son-of-a-bitch-im-in-son-of-a-bitch-im-in-gif-19826994 this gif is all i can think of
I meant since the certificate of completion has the duration elemen, if I change path, will that affect the "duration" of my previous path
that's some salty language young man ๐ ๐
done
Hmm, I dont know lol. I am new to THM
You should know better than me hahaha
I just completed Pre-Security path lmao
I'm a free user so u should know more on that end lol
Pretty impressive to get to level 8 as a free user
aoc carried lol
I like this. Havent watch one piece so long
I dropped it at egghead too
i got to legend i think before i got premium
Awesome
nice bio btw, agree
shhhh
I love Python
Welp ive got done with part1 of linux.. still worried but thats because i have no practice now this will be interesting figureing out how to practice ๐ค
Make a vm with Ubuntu on it
Practice
I have that
The. You got practice
Why Ubuntu
But even then ... i just goo make a list of the commands using the notes i took..
Okay so proxmox and spin up vms
Or get fedora
Or use Kali
Go do a ctf or some more rooms
I have ubuntu
Itโs all Linux
fedora is goated
Mโlinux
M... ctf where can i find that
Filter rooms by ctf
After I have done pre security path, what ctf can I play?
@austere venture
try any easy room
You can try any easy ctf
Might be better go for pentesting fundamentals tho
Okay..... racked with nerves because i remeber nothing..... not good.
Thanks
Youโll remember the more you use it
what are you doing, linux fundamentals?
I just got done with part 1 of it
John said not to do part 2 until im familar with the commands we talked abt in part 1
Yes thatโs true you should be familiar but you will use Linux the entire time youโre on tryhackme
Soon itโll be like second nature
Maybe it is too early for CTFs for now . I would recommend you to finish Cyber 101 first and then to start with some guided CTFs ๐
ls, cat, cd and maybe find
those you will use all the time
just dont overthink it
Yes exactly
Like rn the machine is active for cheese ctf and i open the terminal and did ls
My arch nemisis lol
Guided CTF? Where can I look for this?
dont try to memorize commands, just use the system normally
it will all become natural very quickly
This one for example + you have a video walkthrough ๐
https://tryhackme.com/r/room/basicpentestingjt
Thank yall for the encourgement..
May someone give me a hint tho... ๐ or would that be in room help?
Just as an fyi we all routinely google commands
what do you need help with
yea google will be your best friend
Ah ok thanks. Although I dont know how to differentiate it๐
Gave +1 Rep to @cloud quiver (current: #2 - 2334)
It will guide you step by step how to exploit the machine ๐ . Great way for beginning ๐
Sup dudes, new here enjoying learning on the site. Have a question about VPNs. Whats the best VPN to get? Which one do hackers recommend?
I routinely google simple crap
Ok noted with thanks ya
I guess what are you trying to do
Are you wanting to deploy a vpn or connect to one
Cheese ctf
The first thing i do
I assume open terminal
Just use openvpn?
If he wants to deploy a VPN server sure but
If he wants to connect to a vpn to route all his traffic
Thatโs a different question
Which is why you need to ask for a use case
Mulvad and Proton have the best reputation/proven track record, but a VPN will not protect you from yourself.
Nor will hiding your ip stop you from getting tracked
I mean to connect to one to be private
Well rule 1. If you arenโt paying for it youโre the product
Unless your setup your own, your data will never be private.
So it wonโt be private
vpn is not a security product and it will never be
And 2. Yeah above
lol there's so much info incoming
And 3. Hiding your ip wonโt stop others from tracking you
I'm not sure I'm at setting up my own level but the goal is to get there
Appreciate all the responses
Setting up your own is easy. But it still wonโt help with privacy necessarily
This one is also great ๐
https://tryhackme.com/r/room/vulnversity
Why do you think so?
Let me change my statement
But as I said I would recommend you to finish Cyber 101 first ๐
It will help with privacy on public networks
I'm super noob.. just not satisfied with my lot in life and computers have always been fascinating to me. I love the journey so far
It will not help with privacy for who is sending the traffic
For example on your home network. Itโll be obvious itโs youโฆtraffic is coming from your home network
Ok will do! Thanks for the guide along my cyber journey
Gave +1 Rep to @cloud quiver (current: #2 - 2335)
On a vps?
Your payment details are usually there
And your account attached to your instances
I guess Iโm also making assumptions about what itโs being used for too
Plus fingerprinting
The other ways of tracking someone
I just don't like the idea of them knowing what I'm looking at
Itโll help on public networks and your isp
also whole "encryption" seems kinda unnecessary since https exists
But like Google and msft will know itโs you
If you're using a service for the VPS, like AWS, your details will only be public to AWS. The VPS will still serve it's purpose.
And, if you really know what you're doing, these won't be worries.
Yeah it just doesnโt hide you as well as these vpn services advertise
It still protects your traffic. Especially if you're using free or public WiFi.
And, if you have reason to suspect someone is on your home network, the encryption will stop them from viewing the traffic.
its either your isp or some third party company
Yeah which is why I wanted to change my statement
I don't really want either to know what I'm into to be honest but it is what it is
i mean yea but since 99% percent of all traffic is https what can be seen
That's only http traffic
I just watched a video and red note is sending a ton of traffic over http ๐
what are they doing again with rednote isnt tiktok back
But yeah the biggest benefit is protecting yourself on public networks
Idk it was just a matt brown video
what about my own hotspot
no one there but me
He also MITMd himself and was able to decrypt the encrypted traffic easily
I just donโt like how vpn companies just tout this whole anonymity thing
You have the right to be concerned about your privacy, but I wouldn't lose your head over it.
Generally you will be fine to use your home network. If you're in public, use a VPN service. Nord is quite popular and I've seen people in Cyber use it. Even though I don't respect their practices, they seem good enough for general use.
throwing buzzwords at people that are not familiar with the topic
You can pay anonymously too
You can also send them cash afaik lol
Didnโt study much today
At least I got my meds so Iโll be more productive after this
@cloud quiver Thank you for showing me vulnversity. I was looking for ways to apply my knowledge and getting frustrated on some of the CTFs because I realized I've never actually practiced enumerating and breaching a machine before
Gave +1 Rep to @cloud quiver (current: #2 - 2336)
Yeah , guided CTFs are a great way to start imo especially because they're somewhere realistic ๐ .
Do you think programming a ftp server is good for a beginner project in C++
Try to ask these guys #programming ๐
Ty bro
What exactly about their practices are controversial. So I currently use nord. Like I said I'm very new in this realm. In other content I've watched people talk about VPN company's having shady business practices but don't really go further into that nor which companies had them which is essentially why I asked the question I did. Kinda just wanted to know if I chose well or if I should switch and why or why not. I got quite a bit of responses that will have me deeper in contemplation now lol and I'll be trying to find content more in depth on it
Nord's advertisements target people who don't understand what VPNs do.
Much like me ๐ guess it worked out for them
Especially like the ones that imply they protect you from malware
Goofy ass smile lol
guys when u do a room or ctf and u have login page and nothing .js or something in source code what next should do ?
Xd
Let me fix that for you!!
vpn protects against mitm

Ffuf!
i got a question about a weird thing in the registry regarding persistence is this chat the correct place to ask?
While talking about VPNs, I guess I'd be remiss not to shill the anti-censorship platform I worked with at psiphon.
Something something, bias disclaimer.
yoo thats sick my entire highschool was using psiphon to play games and watch wild stuff in class
you did a good thing my man
Heyo
Is it that bad?
Yes, it's fear mongering.
Are there any VPNs which are actually good?
Is proton VPN good?
Most VPNs are good and serve their purpose, I just don't believe in deceptive advertisement
Fair enough
Is it possible to bypass a VPN and find the original IP address of the guy whose using the VPN?
Q. Is it possible to find the original IP address of someone using a VPN?
A. Yes
That doesn't mean you can take just an IP address on it's own and find a user who made that request.
You would need access to the logs or server to see what was being routed to where from whom.
I see
Meaning? That statement is very vague. ๐
Do you mean it's possible to make VPN files that transfer your data to other servers? VPN files that can be used to execute malware?
Give a man a fish, teach a man to fish. What information would one need to look for when inspecting a VPN file?
The only OpenVPN file I use is of THM
So if anything happens to my system, I know who to point fingers at
๐๐
You are well within your rights to be wary and I implore you as cyber security learners to check everything before you run it
"Will be sending each message on Discord like this".encode()
Would pets and a swimming pool suffice?
@pastel scarab Please don't send unsolicited friend requests, it's against the tryhackme discord rules
Got it, sorry
No, as she hates water.
My knee is hurting and i cant do morning training daym
How im gonna learn hacking without proper warm up
Tough crowd, will have to resort to treats
damnm exiftool is not enough for the things Im testing, I told my friend to send me a picture and Ill try to investigate it
any suggestions for other tools
What are you trying to achieve
infomation was not enough huhu didnt even get the date when it was taken and the model of the phone HAHAHA
Well if exiftool didnโt get the metadata, then itโs probably not there
Most social media strips it
"Not enough"
Exiftool provides all of the metadata in image files, period.
If you didn't get it, it's not in the image.
I want to know the location of the picture iy was taken, model of the phone and date the picture was taken hehe
Metadata may be removed ๐
ahhhhhh hmmm is there a way for my friend to send it with the raw file?
@cloud quiver
Wdym ?
send the raw image without sending it through any social media
google drive works?
Im actually trying to improve my DFIR skills with the help of my friend
thats why I told him to send me a random picture
fly fly little butterfly!!!
You shouldnโt be trying to perform any form of hacking on your friend if you donโt have explicit, written permission @forest fractal
I have dont worry
hes beside me while Im doing it HAHAHAH
we also dont have a USB here HAHAHA
Okay, get it in a signed contract and send it to my DMs and Iโll happily help you
Otherwise, Iโm going to ask that you refrain from asking here.
yeeey thanks, is a convo from reddit enough?
Gave +1 Rep to @mossy river (current: #6 - 1446)
Ill pm you details hehe
That is not a written, signed contracted ๐
Thanks Jabba.
Which star wars should I watch?
yes
@mossy river thanks bro for giving me a warning, I appreciate it
Episodes 4-6 then 1-3.
Perfect
Thank you for the ping
Gave +1 Rep to @mellow gull (current: #81 - 96)
The entire series as intended, including the animated Clone Wars cartoon
As long as I get to swe java the hut in happy
Without breaks, except for water (stay hydrated)
No more shenanigans, what a shame
Is jabba the guy a discord admin?
I am the community manager ๐
Jabba Bravo is a top tier community manager/admin
+rep
it's apple time ๐ ๐ ๐ช ๐ช !!!!!
does modern phones also hide the metadata from pictures?
Anyone that knows programming, an answer in #programming would be most appreciated if you a g
I think iOS is notorious for keeping metadata in their images
I'm not comfortable with this topic continuing given your previous questions ๐
ohh sorry
Professional response
Ill change topic hehehe
sorry brother
What did he say tho lol
What are you talking about
nope, I wont conitnue it hehe
Scooby doo
Is retrieving metadata from an image even considered hacking?
It's considered OSINT at a technical level
i want to dm concerning something weird im facing with discord
Go for it
Hi guys bit off topic. I have just set up a virtual host for reverse engineering using the flare vm suite. Sort of stuvk on where to start. Anyone here have advice on where to start? Like language to look into or anything like that? (Even certs for reading on my off time on the service desk!)
Morning, hope everyone is doing well
Are you reverse engineerinc Malware?
mornin
Hey!
sup sup
How you're doing??
tired, working from home today luckily
Ohh, same here :D
i wish
mornin!!!!!




