#general
1 messages · Page 772 of 1
man, kudos
Since we talking abt college should i specifically seek a cybersecurity degree orrrr get a more general comp sci degree
We also got differential equations as a separate class
i cant express how happy i was to NOT have to do Calculus/discrete math 😭
but i have major respect for those who do it
I actually like math
I could've studied math or physics
But CS is more logical in my case
i was just upset because i was like uhh what does calculus have to do with cybersecurity
yet many colleges require it
Yea but it is all the mindset
You know
no way
Hello
It improves problem solving skills and much more
sup.
U barely join too?
i can see how this is beneficial. kind of like that whole trope of how college teaches you how to learn better. definitely have experienced this.
If you study to pass exams, well yeah there is no use
If you also look into how it all works and have your own solutions to a specific problem
Very beneficial to an extent
But in computer science
You can connect math to the computer theory
I.e. discrete math and optimization
i read a bit of a book on creating games in Python and could vaguely see how math could be applied there.
Compiler theory is a whole mathematical theory
but im such a scrub
XD
compiler... yea ive heard Linus talk about that but am clueless as to what they do
maintainers.. compilers.. idk
These 1 and 0s, they come from math and electronics
if u wanna be the best hacker , study algebra 
True
shoutout to cisco net academy LOL. theyre free too(some content). great resource btw fr anyone considering the field
Storing data is really tricky and fun
With 1 and 0s you can hold any data, it is just the limit of how much you can store
whats really a trip to me is timing and frequencies..
can some one tell me, I'm completely new to this field im currently a food runner, and i want to get into penetration testingis there good scope in it for someone like me?
with no cllg degree i mean
yeah ik thanks
Gave +1 Rep to @devout palm (current: #27 - 351)
Most of people here are self-taught, so no degree is mandatory
There are a couple exercises you can find on youtube to learn the basics and even more complex topics
there is opportunity for you, but you have to dedicate a significant amount of time learning. then you need to focus on professional development to land a job. you can do it. hang around and ask questions.
I myself though have come across the issues of being unable to properly set up a lab of sorts
Tmrw ill probably ask abt how to set up the stackoverflow lab properly
Shoot it here and people will help
But a bit of self-pushing wouldn't hurt, respect others' time as well
All the whole world knowledge can be found free on internet 🙂
yh im thinking bout doing ths full time
thankyou for ur advices
After I finish the free pathway, which CTFs do you recommend to practice?
have you explored any other disciplines in cyber aside from pentesting? theres all kinds of things you can that are more entry-level friendly. help desk support, network jobs, sysadmin jobs, SOC analyst..
Will do
https://www.instagram.com/reel/DFLqEyvgeJ9/
miku miku beam ddos
Ahaha I saw that earlier
Are there any books that cover the laws of hacking eg
There're a few on rooms on THM if you're meaning about legal regulation regarding hacking 🙂
meow
Woof
grr
hi im tryna submit a room on thm
do i not have to provide the .ova file?
it just asks for the writeup
You need to upload the VM on the materials section then attach it to the task
Oh is there
Something like this may be useful to you 🙂
https://tryhackme.com/r/room/cybergovernanceregulation
https://tryhackme.com/r/room/dfirprocesslegalconsiderations
https://tryhackme.com/r/room/cybercrisismanagement
Nice, thanks
If you wrap your links in <>, it removes the embeds 😉
I didn’t know that
Thanks for info 😄
Gave +1 Rep to @mossy river (current: #6 - 1455)
That’s just the main website
That annoyed me a lot 😄
ah alr
Clogging up the chat 🤣
I just had a good salad, I think for dinner I’ll eat fishhh
finally
Hi All,
I need some help with Responder.
While running responder MDNS poisoner gives a lot of exceptions like:
] [MDNS] Poisoned answer sent to fe80::fb74:b32c:f76a:2a1a for name DESKTOP-JBP2I90(6378)._dosvc
File "/usr/lib/python3.12/socketserver.py", line 692, in process_request_thread
self.finish_request(request, client_address)
File "/usr/lib/python3.12/socketserver.py", line 362, in finish_request
self.RequestHandlerClass(request, client_address, self)
File "/usr/lib/python3.12/socketserver.py", line 761, in init
self.handle()
File "/usr/share/responder/poisoners/MDNS.py", line 78, in handle
SavePoisonersToDb({
File "/usr/share/responder/utils.py", line 391, in SavePoisonersToDb
cursor = sqlite3.connect(settings.Config.DatabaseFile)
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
sqlite3.OperationalError: unable to open database file
Traceback (most recent call last):
Traceback (most recent call last):
Traceback (most recent call last):
Traceback (most recent call last):
File "/usr/lib/python3.12/socketserver.py", line 692, in process_request_thread
self.finish_request(request, client_address)
File "/usr/lib/python3.12/socketserver.py", line 362, in finish_request
self.RequestHandlerClass(request, client_address, self)
Could you please let me know if I am doing anything wrong?
Is this for THM?
Nop But I came to know about Reponder from THM.
I am using Kali linux in VMware to learn reponder.
seems like an issue more about socketserver.py than THM issue
Looks like either settings.Config.DatabaseFile doesn't exist or you don't have the correct permissions
Thanks I will check it.
Gave +1 Rep to @shut hawk (current: #14 - 597)
Anyone got recommendations for some easy red challenge rooms?
Pickle rick
Go to the challenges tab. 😄
That will have some.
Yeah, but I mean some cool ones that you guys have gone through and recommend 😄
What are you interested in 🙂 ? Which field ?
Red Teaming so I mean anything with web applications or machines needed to be hacked into 😄
This one maybe 🙂
https://tryhackme.com/r/room/injectics
Man I've been receiving emails from my local childhood church for 6 years 😭 every week, I haven't been to church in 8 years
I don't even live in that city anymore
I've decided on impulse to clean through my emails and was greeted with that
🥳
gz
thanks
Gave +1 Rep to @cloud quiver (current: #2 - 2483)
holy fk you have been farming this reputation 😄
Yup.
That's when happens when you spend the majority of the time welcoming people. 😅
Good job mate @cloud quiver We appreciate your help as a community.
Damn that's true, but a little harsh 😄
What ctf should I do when I have very little red team knowledge.
can google drive link share malware executable
Yes.
Should you?
No, absolutely not.
Oo thanks
Gave +1 Rep to @cloud quiver (current: #2 - 2484)
Thanks 🙂
Gave +1 Rep to @devout palm (current: #27 - 352)
As well as @sick lance
i heard github does some scanning for malware for all repos thought google drive does something same
All cloud providers scan the contents.
Decided to get in bed and be lazy for a bit
However it's not robust
In the process of cleaning my emails I found one from my uni, I've got a rough date for my graduation
so that's nice haha
September?
oh okh
July 🙂
I think mine is September.
Sept Semester one.
January Semester two.
Well, it's the end of January, I go back on Monday.
I have been on THM for nearly 5 years at this point 🙂 . Since Oct 2020
any one help me in CTF smol room
i have to plugins
i got LFI from j*** with username and password
and the hint tell about anther plugin vuln by RCE after enum name is (ak******) but i can't find any PoC for RCE ?
same here 😄
No hints for 72 hours of release.
febuary's a busy month for me haha
guys one question, which one do you guys think is better, nano or neovim?
I prefer nano 🙂
Whichever you can use better.
Oh, there's a chance i know you? Were you always KGB?
lots of diss work to do, the other uni-work, interview down brummie way, securi-tay and a trip to liverpool
No , been using that acc since late 2021
idk i just wanted to start using neovim but its hard lol
lots of travelling and working this month haha
Five years 👁️👄👁️
I just found out I had a domain I'd forgotten about that expires this year
I thought I'd paid for one year but turns out it was two years
man I paid for another domain thinking it was expired 😭
What do you do for work ?
I do software dev but I'm travelling for friends and interviews
Ah okay
I've got to travel for nearly 4 hours 8:30am for an interview
I thought you were in LE
LE?
law enforcement
ahh, why's that 🤣
No clue
Liquid nitrogen to cool the Pentium 4
by Tom's Hardware
fair enough 😄
I have no idea what’s happening in that video
Cooling is done using liquid liquid nitrogen
Genius
Man, you've got some CPU in your nitrogen
No but I'm only member of cysec related servers 🙂
Guys does any one use athena os
It means you couldn't send the message
You can resend by right-clicking
thanks heap
Why is your name orange yet green?
Different server?
dif server
Ah
ye
Don't you have an error message beside the message?
wasnt cd to downloads
Using discord
i didn't for some odd reason
I don't know that I've ever had a failed send pop with an error next to the message, at least on mobile
Now I have a 6 month sub to shift.
the only times it happens to me is on mobile
Been since I've had one
ages.
🌟 giveaway time? ✨
Oh
maybe ™️
What did you do with the other voucher?
Thanks to remind me i also paid a domain , i didn't even used...
Gave +1 Rep to @finite basalt (current: #99 - 77)
was it a current gen intel cpu?
ah that's good, mine don't auto renew thank god
Got the sweatshirt coming and some socks
Haven't used it yet.
Might give that away too.
im just waiting till stickers are restocked
intel be like "lets just pump it full of electricity to bump up performance and then hide when customers get angry :D"
I still have the majority of the pile I bought last time.
😂
I dont have any stickers and I dont know what I'd stick them too
me either
I love the hat
I get sunburnt really easily
I love the hat too
I wear my hat semi often
Same
And it's comfortable to wear
The bottle is too small.
I feel your struggle
I prefer my bottles to be 1-2 litres.
People stick them to laptops usualy or doors
only time ill where a hat is like to the beach and half the time i wont wear it since im swimming
University elevators cough
bathrooms

It makes students uneasy when they see an elevator with an invitation to hack it.
bathroom stall doors at my uni was mostly used for student union elections
I have actually gotten quite a few side eyes when I wore my thm hoodie or hat lol
Yeah I usually have full coverage sun screen on
those are deleted
the rest archived
I went through archiving important things and deleting other things
Imagine
I had forgotten
To update the machine's timer
Thankfully I just added an hour
love it
only about 200 of the emails were important, 8000+ were not 🤣
Chat how do I use searchsploit properly
Like it gives me path, but what do I use the path for?
/general doubt
I can change the path to exploitdb url with a tag
I don't want to answer that because you said chat unironically
that being said, it gives you paths to the exploits I believe
my guess is msfvenom
whats the output
you literally just use the exploit
like full output
it's usually either a script or metasploit exploit
Stuff like this
💯 one of the most satisfying feelings
Where can I find a person with the right skills to assist me in this project?
Where can I find this file on my kali
imma do a find command
run search -m 44432
searchsploit -m <path>
it'll get the script and put it in your directory
ou
for the future, it's worth searching how to use tools or use the manpage
damn, too slow
I had forgor about the -m option
https://bughacking.com/how-to-use-searchsploit-in-kali-linux/ this is the first result when you search searchsploit paths
yeah
tysm
make sure to get into a habit of doing individual research as it's very important within cyber security
and many computer oriented jobs in general to be honest
yep thats why I havent been about for awhile
@limpid igloo We don't do hackers for hire here
was trying to figure out if that was supposed to be a software developer position/hackerforhire ad type thing 🤣
ok np
🦗
i have eaten a chocolate covered cricket protein bar before, was good
can you react to their message - is a simple check
That's the reason
I can't
🤨 sounds intriguing
bugs are the future of protein
i think ill take another source
what if there is no other source widely available?
yep, was in email on friday
ill probably be dead by then
i am taking death over eating bugs any time
plus the announcements for the levels
was there just oxe or any others as well ?
check the #announcements
tgi fridays
I haven’t done TGI Fridays in years
shocking news
what? that is AI but fun
the video gif you posted
the levels: if you level up, you stay green username
yea, its nice
you are already next new level so not much change
Not much colors available on discord
been trying to get out of the top 2% for at least a week now and it is a grind. People are relentlessly grinding in the upper ranks and i respect it
being in the top 1%, life is not different, the same hacker air
Not that again 
Real competition starts like when you are in top 500 or so
top 100 are the real deal
ofc but its just nice to see
yea but the only thing i dont like is how once you get really high like that it comes down to those first come first serve points where you gotta complete the rooms while they are still early to get bonus points dont you?
basically makes it impossible to catch up if that is the case
I hate that as well TBH , But maybe that's the only way to rank people at that point
yea ig idk i think they need to innovate that more
i am here to learn and have fun, the points and levels are fun but not to be taken too seriously
Yeah
most people here are on different journey
respectable
I constantly switch betwen HTB,THM,books to learn stuff
Currently i don't even have a premium membership of THM
HTB and their stupid cubes
THM has lots of free rooms but , of course, you know that as a fellow green username
Yeah but they have some pretty nice rooms . They cover topics in extreme detail and let you go through offical documentations and stuff
have any of you that have done the soc level 1 and or soc level 2 path really dove into the soc sim they jus released yet? Wondering if its worth diving into in its current stage
i have started part of it
how is it?
its worth trying while it's free
its alright
a bit slow imo
for sure HTB is very detailed
i have the sub but you mean they will make it paid outside of the sub?
its going to be a business only feature
its not really enjoyable for me, but you may enjoy it.
riiiiip.. did they say when that would happen?
interesting
probably somewhere in the announcement, im unsure
It’s already buisness only
gg
the SOC simulator is available to subscribers but full features is for businesses who subscribe to the SOC Sim
ah ok
THM is pretty cheap tbh . But true
One scenario only for non business peeps
What’s the support mail for thm
i think THM does a great job. i personally love THM
Thank you
Gave +1 Rep to @drowsy dust (current: #270 - 24)
THM is 1 website , not 3 like HTB
Lolz
I prefer it over the other ones
Also i don't have to get broke in order to buy one fluffin room yk
Some rooms cost like 1 thousend cubes
crazy
But I’m currently on coursera 😆
100 usd i guess that comes to
i hate coursera, used to be in tutorial hell
lol
I did a few courses on there and I like the learning style but everyone learns differently
if i want to learn something i usually stick with Udemy
Everything under tier3 is basics that THM teaches alot better then HTB in my opinion and everything after that in HTB is like 500 cubes which is like ( i guess ) 40 + usd for each room
They are making money money
they always ask for money, HTB click on this room , "give us money", start this module "give us money"
I’ve also been on udemy 😊
Yeah
with Udemy you can keep the material years later
Personally i read books
I’d go broke doing that lol. I love learning and won’t stop
Alot more detailed
i get updates to Javascript course i did 3 yrs ago
Bro why does every university in the uk have atleast one shit brutalist building , I mean why does every uni building built in the 60s look like something a five year old made out of stone in Minecraft
This instantly reminded me of the Lego movie
Tetris : UK buildings
do you think it’s a good thing generally? Or is it a waste of time?
Same here . I own like 10+ tier2 modules and 2 tier 3 modules .. ( I'm now broke asf though)
HTB is alot more detailed . Clear your consepts and let you dive on your own a bit . I like that
Extremely necessary in cybersecurity as well
But not good for someone who is just starting out in the field
lmao so true
That’s a mushroom
I’ve seen it, I think you’re right ! As I’m just starting, I prefer tryhackme over hackthebox.
somebody said to me that wearing a bike helmet makes you look like a mushroom and now i cant unsee it
It's the architecture specific to making the street feel wider and more open (less cramped), sometimes It doesn't look good
I thank HTB of forcing me to read documentation tbh . because of that now i can just simply google things read documentation and find stuff to break without searching for blogs , Tryhackme modules or even HTB modules that covers those topics
It's like being able to read man pages .. You don't have to google all the time if you can read em yk
A good skill to have
but a bit painful to learn
Dat trooo
Haha 😂
hello! is it possible to hack another facebook account after it's already been hacked?
time to take a break from this ctf that I only managed to get 1 flag
@mossy river or @sick lance Can help with that
thank you.
This is devious 😭
😂
Please seek out Meta support, that's illegal
whats with people today asking how to do illegal stuff
why is jake no longer a tree
not in my country though. also, it is not for intruding privacy reasons, it correlates with a personal trial
I thought a HTB subscription would give you access to all the modules up to some tier
As in court?
This is what needs to happen.
Been here long enough.
today ? 
yeah in another server someone was asking how to phish
🎣
not court, it's personal reasons regarding a lesson i am bound to with someone. well, you do not have to tell me.
It's illegal to hack facebooks accounts, even accounts have been hacked previously, I would not suggest it and seek out help from https://www.facebook.com/hacked
Waiting for support to help me get back into my account
Meta?
Give a man a fish and he will be full for a day. Teach a man to fish and he’ll be full for a lifetime
or in jail depending which type of fishsing ahaha
i was only asking though. i think you misinterpret my intentions, forgive.
its also in my fault that i was suggesting that thought
Hi guys
Usually when a person ask if they can hack a facebook. 99.9% of the time it will be illegal.
Hello
Hopefully 🤞
i understand.
i mean 100%
Yep that’s true
Is facebook still being used 😀😀
Yes.
I know one question is about your token.
yep i use it now instead of tiktok 🤮 i deleted that app so quick;y ajaja
I dont have either of those
I have tiktok alot
Facebook i dont coz i see its outdated
tiktok got so bad
I’m happy I used it for a moment and then deleted it lol
I try to keep those dopamine machines away
I think it should be banned
its so depressing and full of crazinesss.
I'm convinced facebook only has 2 sides, old people that know eachother posting updates and bots
not really
Facebook market place my beloved
lots of young people use it too... but it's demographic
I've got some good steals on there.
I love it for that
Once I bought a PS4 slim with 15-17 games, traded all the games in to CeX and got my money back and more.
@swift viper Can I ask why you've DM'd?
Someone’s mom was mad lol
100%
I'm not caring 😄
😂😂
Alr facebook marketplace is fire, you can hit gold on there sometimes
It's pretty good if you're near a major Metropolitan area
Indeed
Chat is this real ?
Yes, you can absolutely use the command c_program < file.txt in Bash and then read the contents of file.txt in your C program using the read() system call. When you use < file.txt, the shell redirects the standard input (stdin) of your program to the contents of file.txt.
idk why its specific to fb marketplace, I could never find any gold on sites that are specific to selling used stuff
I've bought cycling trainers, AVRs, etc
I kinda dislike that everyone wants the thing you are selling for cheaper and the price on the listing doesnt mean anything, idk why that is the norm
Bro fr. I would always list the item at or almost at my best price to give out deals
But they greedy af
That’s the nature of people
Because that's bartering?
I feel that
I like it more simple, give me your lowest price - if I like it I buy it like in a store
It's how Marketplace, Craigslist, ebay, etc work
@azure oasis how can i join you guys ?
You have that option though when you're purchasing new from a store
I always put that the price is non negotiable so I can avoid talking to people for them to change their mind when I tell them they can't have the items for 50% cheaper
The token used for my not linked discord
Sites like marketplace are built around bartering. You don't need to barter, but if you notice the items aren't in the condition you were expecting you can negotiate
I’ve had people come get something and say “oh I only have this much on me” lmao
the wording is wierd, but yeah
is it inaccurate ? which part is weird 🤔 ?
basically stdin is populated by whatever's in the file
it's not inaccurate, just a bit hard to understand exactly what it means
okay
it feels like it inverted the meaning
Yea. 😄
😐 god
They'll ask others.
I may have to make a new account
The more I think I understand, the more confused I get 😔
not too complicated, follow the arrows
So it means I can do program < open_socket_number or something and I can pass input to the program from an open connection too, right ?
eh, everything's a file so...why not?
okay, gotcha !!!
Maybe you could prove it’s yours by billing history maybe? And email associated? Public ip. Idk like many identifying factors
Maybe that’s a way?
need some username ideas?
I emailed them off the email I use
Hmmm
I want to hear your suggestions anyways
😂
I’m hoping there’s a way. Because I would absolutely despise making a new account
MissILostMyAccount
MissNotSoStealthy
I dunno could be fun, go back and redo some rooms
MissIShouldHaveUsedAPostItNoteForMyPassword
I think that's too long
MissIShouldntHaveAccessedAnOldDiscordIKnewWasInfected
lol
😂
How does a discord get infected?
Isn't this account the same one?
What does that everything include ? So its files, folders, connected devices, and open sockets ?
No
I accessed another discord on my phone from previously so I could read through some old messages on there
Tried to do a pw reset and some phone numbers were texting me
Then I get signed out of all my accounts
It was my fault
I take responsibility
😨 missstealth has some enemies
hello
did anyone solve this https://tryhackme.com/r/room/smol ?
Too early for hints.
still go root flag 😢
And I thought my life was like a movie
Free missstealth from the mute abyss
ok
Also its crazy that you can still do
echo Hello, Arduino! > COM1 and send data to an arduino in windows.
you can do similar on linux
instead it's just a /dev device iirc
Oh yeah I'm aware that linux can do much more than this. I was just checking how much of it you can do on windows.
Turns out windows also has File Handles that work kinda like File Descriptors.
Does NIST apply to the UK?
best practice to use " "
echo "colorlessUtopia" >> THM_chat.log
🔊 Unmuted missshadovv
ah fair enough, yeah
@rapid merlin not sure why you were muted
I mean some aspects are used but the standards not necessarily
we have the NCSC for that stuff
think it was for too much chat while unverified ?
Gave +1 Rep to @sick lance (current: #1 - 3303)
Freedommm
🦅
This is not Sparta
I’ve been looking all over the web. Maybe they wanted it to look like discord and already had access to my phone. That is also a possibility
I think if you were mot using the old account someone broe in, this happened to me too :/
Yeah, the NCSC just provides guidance right?
Not really
NCSC is law enforcement
I believe we have an equivilent for CVE publishing
they also scan british IP addresses to identify vulnerabilities
They're the technical authority for UK's cyber security, but they provide advice and guidance
Yeah I mean I wasn’t using it because they got into it in the first place but I did want to look over old conversations.
Yeah, MyNCSC. I use that
They have an early warning system
I think he is confused about the fact they are a government agency, working as part of GCHQ
Did this yesterday, accesed my old discord account, made someone 🤔
I read it as NCA 💀
I just have one account.
I haven't got my Glasses on
guys can you please hack the account variabledermis on disocrd please can you im new here
please
No, that would be illegal.
My kali got borked



Lol
Against the law, and against our community rules.
plesse
Whoops
I had suspended the state, and now it no work 


Expelliarmus!
Have one when i was thinking of deleting this one, because was going through some difficult times :) glad I still kept it, yhe other one is not on any server :) used to be my quie place
No.
Time to reinstall
where you from
I really needed to read old conversation to look deeper in what happened at that address. Usually if I make a new account I delete the old one. I used to own a discord that had a lot of people on it and I hated owning that, too stressful.
The Earth 😄
bruh then wht this server for
Hokus Pokus Yeetus Deleteeus Baneetus!
Partners the ethical website of Tryhackme
Ethical Hacking 😎
You should know our website by now!
can you just tell me the password for the account variable dermis
We're not hackers for hire, or promote the services.
why do you think it's that easy
We technically are hackers for hire, or else what's our purpose in life 😉
Sure, it's a string of characters, it could be letters, symbols and numbers.
lol
Not all of us are hackers.
bro pleaase
can you tell me
I'm not a hacker
plesse
No, if you ask again, I may need to mute you.
Why do you want to hack that account
No fuck off
Rood
i dont wanna hack i wanna know the password
Me neither
😐
Yeah, why
or 1=1
Guys let's leave it to the mods to deal with
Sometimes, being honest and upfront is the best policy
Just disengage with them
i wanna know the password nothing else i f you would do it it would mean smth really big to me
please guys
I'm sorry, but we can't help you with that
Disengage is a good word
fr
are you a hacker
Lmao
We don’t hack here
sso what do you do here
Underwater Basket Weaving
someone send the definition of a hacker in chat for informational purposes
We are here to have a good time
timepass
We talk
gardening
:mute: abdulahadlakhani_69590#0 has been muted.
lol
goobye
A goose just came up in the corner of my screen 😂
I LOVE GARDEBIBG
A mute is very generous
We grow little payloads
Actually if I had a garden I would garden the garden
In our garden
Speaking of which, I'll have to reinstall kali 🥹

Sameee
You say it like it's Arch
Snapshot.
Kali linux is an easy install
The setup's and the custom scripts are gonna be a bummer
You grow food ? Or aesthetics?
dude i struggled trying to dual boot kali without a usb drive
Sombdy welp me install nvidia driver on ubuntu 24 lts
My folders, for thm rooms, all gone
Tropical plants but I will be growing some herbs soon 🙂
Daily Tip 💡 : gobuster -t 64 makes a big difference
has anyone here been a network tech/admin? I'd like to ask you some questions if you don't mind!
Want me to bring you back some Iraqi plants? I saw some nice plants in the market
(starting a daily tip in the chat, starting today)
Oooo
I don’t think that’s legal, you would get stopped at customs
He’s a professional smuggler don’t underestimate him
indeed. to import plants/animals and so that are not local animals is tricky
Apparently I need a permit 😭
yes. it is pain in ass. atm i'm fighting with ppl to import some for me
We carrying invasive species 😜
The women at my local plant shop illegally does it every time she goes back to Colombia 😂
😂
whats crazy is it might not even be the plant that causes the problem, could be an invasive insect on the plant or something 💀
I have now successfully recovered the state
We had a long chat
Everyone panicking can now relax
You 😆
100% me
Not me bringing fire blight with me to another state ;D
I joke I won’t ever do that
trying to take down a whole ecosystem smh worse than ransomware!!
Aha imagine him just pulling many pants out of his cargo pants
This one is for you, for you, for you
😂
Where did the clown gif go
🤡
I made this fancy function called thm-time that takes the name of the ctf I'm doing, makes the dir and changes dir to that folder
Don't underestimate the power of my cargo trousers
It said your mom so I got triggered and took it down
I also made thm-go that changes dir to that folder
At the moment they are filled with spare mags
Lmao what 😂
Yes every pocket can hold a plant
I wondered why you were in my dms
😂
Ayo
Lmao
is thm working correctly for you? Since yesterday every room I tried were sooo laggy ☠️
Just completed a room , worked ok 🙂
It's hard enough going through customs with a plate carrier. Let alone unlawful plants
Congrats
Thank you 😄
Gave +1 Rep to @pliant onyx (current: #446 - 13)
thanks I’ll try to see why…
Gave +1 Rep to @cloud quiver (current: #2 - 2490)
Which room did you do?
I mean machine was fine , I wasn't using AttackBox so I can't confirm for it 😄
are you Goku guy?
Yeah that lady says she brings back bulbs and seeds, I wonder how she’s been doing that. 👁️👄👁️
New Smol room 😄
Oh yeah, I'm stuck there, will continue it in a bit
I have to go through the red channels so
I done the same, but it also enumerates the box and saves all outputs
Thank you KGB because ik you'll say all the best
Air marshal alert
For me initial access was a problem , after that was relatively good 🤣
@round orbit In terms of technical standards to align to, sometimes people choose nist because it's easy. Cyber Essentials and CE+ are worth knowing about too
anybody had blank screen with blinking cursor when trying to install nvidia driver ?
Then sign a declaration that I have no live ammo in my possession etc
yes that’s me
What about dead ammo
like was your previous name Goku?
It should blink a few times 🙂
Yeah, I got the initial access, I even got a ||directory with plugin names and stuff||, just left to find something useful
Technically not legal to import either unless professionally cleaned
I’m aware of CE, I think if anyone can achieve CE it’s pretty pointless unless they get the CE+ though
It's a baseline
It did it for too long sadly
Also i can get to tty screen but not login
CE is designed to be accessible for a reason. The whole CE scheme, CE and CE+, are designed to defeat common attacks
Well that shouldn't happen but few quick blinks are normal 😄
Awh okay but yeah plants need to be imported with a licence. Most the plants I like are in the UK and are much cheaper to buy over here than in the US
Yes but it tells others that you work to that standard
Yeh i left it for enough time i think
Cyber Essentials means they have put effort into their security
I was doing a room with someone yesterday and it didn’t work at all… We had to scan the port multiple times, gobuster kept throwing errors. Today the attack machine doesn’t work well. The websites take forever to load or doesn’t load at all
It's a very good thing
Yeah I was struggling with that , in fact that was the hardest part imo 😄 .
no it’s not me 😭
I happend to me before and i fixed it by deleting the /etc/X11/xorg.conf file
As a minimum. It doesn't cap your security controls, it doesn't limit them.
Fair enough! If I get a chance Monday I'll take some photos of the plants at the market.
ahh ok ")
But i cant even find that file in my case now
Agreed, the rest was all right under the nose
In fact, I already know exactly how I will priv esc, I just need to get an RCE 😂
But you can apply for it internally, only CE+ uses an external audit right? So it’s a lot more vigorous and more trustyworthy
Well it may be some congestion on THM side , it's weekend after all 😄
Yes, CE+ is more. THat's the whole point of having two tiers.
Good luck 😄 .
Did you OpenVPN?
hehe
Yoohoo lovelies
Thanks!
Gave +1 Rep to @cloud quiver (current: #2 - 2492)
both don’t work for me
Hi 🙂
something seems wrong with your configuration maybe, I can't tell
No that's Yazoooooooo
Then I maybe don’t understand CE. If the purpose of it is to prove to others that you do work for those standards. Surely you would always go for CE+? You must already know whether or not you are complying to those standards before applying
I’ll restart everything and find out. Thanks!
Gave +1 Rep to @pliant onyx (current: #413 - 14)
Y r u drinking chocolate milk 🤔
Np
Oh yeah nice 🙂
How’s your day kind sir
Thanks for asking , good , how are you 🙂 ?
Gave +1 Rep to @cedar swan (current: #1715 - 2)
😂😂😂 it was a play on words for the chocolate milk brand
CE+ is not appropriate for orgs that don't have the maturity for it
If you know you're able to pass CE+, you do CE then CE+
Baseline Cyber Essentials shows you've applied the baseline of cyber security controls.
I’m great thanks. It’s late for me, in China.
Gave +1 Rep to @cloud quiver (current: #2 - 2493)
If you're a 5 person law firm, CE+ is probably very intensive and excessive
Nesquik?
CHINA! 🇨🇳
Yazoo
My company has neither tbh lol
Glad to hear that you're also great 🙂 . Greetings to China 🇨🇳 🙂
I really wish there was more focus
What’s that
It's also a cost for the audit
So... If it won't bring in the revenue, you don't spend the money.
It's a brand of premade flavoured UHT milk in the UK.
Well yeah I’m just visiting, have to pay for an expensive ass VPN
Sad to hear that 😦
Oh sorry don’t live in UK
Personally I only like yazoos strawberry milk
I understand that but the first one is only like £320 right and you can do the audit in-house
sold in Belgium, France, the United Kingdom and Ireland
Funny cus I always thought China blocked everyyyyyything but it’s mostly just the foreign western websites not all websites silly me haha
Taiwan is a free and independent country
I like friji
Yes that's the one!
That’s weak
Not really I find the other flavours artificial
Have you never had a shaken udder?
you in the states?
The "audit" is a tick box exercise that has to be signed off by an exec, and reviewed by a CE certification body
Price depends on your size of org.
The point is, companies will comply with standards when there is a business reason to.
Cyber security does not bring in revenue. It is a cost to prevent losses of revenue. That's a hard sell most of the time, and a harder sell when you pay £320+ without getting any benefit
No
🇬🇧
darn, got some good strawberry milk
I live in the UK, currently in Iraq
I wasn’t aware it had to be signed off by an exec
Not really 😂
What are you doing in Iraq?
Working
super historical place.. lots of history in the area. sad its so war torn.
Forces?
Is he in the mob
lol
?
Thank you for your service btw
Gave +1 Rep to @round orbit (current: #1715 - 2)
I was thinking about re-joining but idk
That one is thick and really good
Lol thanks
Gave +1 Rep to @drowsy dust (current: #258 - 26)
Discord links suuuuuuck wow
Why do you want to rejoin?
What happens if you have CE and down the line you may stop being eligible? Does the company get hit with a fine?
What?
Well I’m guessing you have to maintain compliance once you have it
Yes but a lot can happen in a year
Correct.
But again. Baseline.
Most Cyber Essentials users (91%) say that the scheme has directly improved their confidence at being able to consistently implement steps to reduce cyber security risks. They generally say they are keeping on top of Cyber Essentials scheme requirements regularly through established internal processes, which is helping to boost their confidence further. Most scheme users (91%) also believe that Cyber Essentials has directly improved their confidence in being protected in the event of such an attack.
You might think it's "basic security" but it's about getting basic security everywhere
Contractor
Okay but lets say that you come across a company that is Cyber Essentials certified but clearly is not conforming to its requirements
W I D E Boi = 🪖 ?
MOD Contractor?
Private
Ah nice
Then they'll fail revalidation
This is the same with many many things in life. Think MOTs
ooh private sauce
Stay safe out there
Ah I understand now
I’m special forces.. because I’m special
Did you attend the special forces march parade
Cyber Essentials gets you thinking about security and helps you create a baseline
You then implement processes to maintain it to make revalidation easier.
If you need it, you then get CE+
No im not actually special forces :P
To be honest if I were in a position of authority I’d choose to take it even if it didn’t directly increase profits
Yes with the other 5000000 people who were on the Iranian Embassy balcony
Yes but also if company sees you with it, it’s like a big green tick for them to do business with you
Depends on the company, they might mandate it before doing business (the gov does)
That'd be a business case for spending the money. That has a return on investment
More opportunity for more monaaaay
Sometimes in business you have to think about your relationships and not just about income (Broadcom)
The relationships are income.
Long customers > New customers
Again, that's income
You know what I mean xD
The maths has to work out, otherwise it's not a business. You maintain those relationships and try to improve them to drive revenue
But reassuring your customers and partners is just as important
I was given a card of a rich businessman to go and get help starting up a business after all that happened and I was too nervous to go 😂
To protect your revenue
By protecting your brand reputation etc
Yes
It's all about the money. Security comes down to the numbers.
You are correct
I don’t even know what that means lol
LLCs are similar to LTDs right?
What’s a LTD
Idk what an LTD is
Or is it INC
A limited company
LLC is a limited liability company
Not really
LLC owners are responsible for their debts.
Shareholders in an Ltd are not responsible for the company's debts.
LLCs can be taxed as a partnership, S corporation, or C corporation. LLCs pass taxes on to members to pay on their personal income.
Ltds are taxed as a separate entity and pay corporate taxes on their profit.
LLCs are unincorporated business entities.
Ltds are incorporated in their jurisdictions.
LLCs are more flexible regarding how they are managed and owned.
Ltds are less flexible due to their greater level of regulation.
LLCs are a good choice for businesses that want to prioritize flexibility and growth.
Ltds are a good choice for businesses that want to prioritize robust levels of personal protection for their assets.
Yeah so a corporation is owned by stakeholders
Did you know that Sir James Dyson owns 100% of his company Dyson
Yes I did
That's very good
Must be a chef for how well they cooked
poc creating time
You need a partner?
Nah, I play solo 😄
https://www.reddit.com/r/ElderScrolls/s/lAl6IibW2w
OMW to Turkey!
Thought I'd offer 😂
you can join on the finals if you want 😉
I have to write a poc of a login on an app and notifcations
I've not actually played in ages 😂 just the PS5 here has Fortnite
the finals is on ps5
can anyone suggest me any room which has so many vulnerabilities like metasploitable machine ?
not only web stuff
I just want to try how tenable nessus works
This one maybe then
https://tryhackme.com/r/room/rpnessusredux 🙂
Thanks @cloud quiver @chilly veldt
Gave +1 Rep to @cloud quiver (current: #2 - 2496)
you're welcome
merry saturday!
spooky scary skeletons send shivers down your spine!
shrieking skulls will shock your soul
seal your doom tonight 👻
☠️
Can't wait to start being able to use burp without having to think four times before I do something
Why do you have to think 4 times
New to it and too many things to grasp as a beginner 😄
The internet is full of weird videos
Fair, but consider: cat videos.
Understandable. Take your time
Yeah true, I got cat
I just heard someone on YouTube call a frapp a reallly really wet cake. That’s not coffee, that’s a wet cake 😆
+rep @chilly veldt
Gave +1 Rep to @chilly veldt (current: #8 - 942)


