#general
1 messages · Page 778 of 1
Simmer down Sephiroth.
Can’t even have a blue buff anymore without someone coming and stealing it :/
Wow
exelent , nice start 😉
I just lay down on the bed
Got Uni to go to, AI classes start today.
You have AI classes?
No but I am officially going to bed, night my dudes and dudets and everything between 😘
Good night Mr quantum genius
stream it for us
I’m just reading 50 different books rn
I can't.
Gn not nonbinary
Something something copyright.
.... copyright.....
You cant go to sleep. my clock says 9am in the morning
Anyone here familiar with RBF kernels?
Yeah, my lecturers have copyrighted their slides.
Just ask
Do you use higher p values than 2 in the p-norm for when we have more than two features?
Is it for AI?
Also the way this source explains it doesn’t make sense. If you could map the whole thing to a higher dimensional space to get some circumference, why not just use some point as a landmark and just take the neighborhood around that point
Yeah, it’s for Support Vector Machines
Maybe he explains it later but it’s not making sense rn
Oh I see. Apparently it comes in handy when you do regularization
Can someone help me with binaryninja, it crashed when I uploaded 'ff' file from AoC Side Quest T1
has anyone figured out a simple way to activate the THM VPN connection automatically when kali linux starts?
For troubleshooting purposes, this isn't a good idea.
ok
However just do what I do, and leave it running 24/7
how can i know the challenge "easy" is possible for me. just try and error or are there some tips what knowledge i need to complete a challenge? 🙂
That's the trick with it being a challenge
You go in without knowledge and learn knowledge as you work on them
Bruh I just tried to log in and my account is just...gone
ok i think i will give me a bit more time and try a challenge later. my skillmatrix still looks a bit thin
Contact support@tryhackme.com
Yeah nah done with this platform I think.
nobody knows 100% of the things, so some fundamental knowledge will help you to guess what you don't know or figure it out where to learn it
Time to move on take it easy people
do they actually teach you some real life scenarios such as pentest?
They all contribute to your methodology
The more technology you see, the less unfamiliar they'll be
You can draw parallels where things are similar
HTB soc course or THM soc course?
Whatever you want. 😄
Did you use Google sign on?
i mean which one is better lol
Whatever one gives you the most skills and knowledge.
i saw people team up on try hack me for Challenges
is a "hard,insane" Challenge more for teams ?
The can be done solo or in teams.
I think is more a knowledge level
Hello! Do you exercise every day? And if so, how many hours?
Hi guys
right know 2-4h every day
I think that before you can take on challenges, you first need to have a good grounding in the various techniques
6 days a week, 5km run with a 55-95 minute workout.
it depends, 8 hours, 6 wbu ?
Don't know why you're all laughing?
It's true...
onePunchMan would be proud
Respect. I barely run to catch the bus 😂
i roll like sonic.. joking i am slim
we have to compet together lol
I guess you’re a good runner
I compete in Hyrox and OCR.
Nah
I consider myself a very beginner.. And I went to do a challenge and it gave me "hard". I can't solve this with anything.
Shot support an email since I had like...9 more months of premium lol
i have a Car 😄 dont need the bus sry bud
What's your username?
it's fine haha I have a car too 😉
Yryo to beat my 5k time.
Trying*
I got driven everywhere but sometime you need buses 🙂
Kevorki4n
Yep
Hi
Hi
Do you know the password?
take buses is cheaper than driving your own car
its a good plan b to run if the hacking goes wrong. right?
Not at all.
U made pico ducky?
I won't be a pro athlete.
Yes.
better then most cops 😄
yeas
nothing to do with money, it's a matter of convenience for me
hey ghost, I think you're using cyber ghost vpn 😄
Hi
Will do thanks gotta sleep haha
hello my friend
I wanted to make a raspberry pi pico rubber ducky
I tried many github repo
And yt videos
where can I install older versions of ubuntu image for vbox
But non of them worked
wooow hold on, is it for an ethical thing ?
Can someone help me?
Ya obvs
check david bombal's youtube channel, maybe you can find things
Ok, thanks
you're welcome
It's for people who alr have a rubber ducky
I made a rubber ducky using raspberry pi pico
i didn't
But it's not working
no
oh OK, so you have to ask the proffesionals
Where
Can trusted installer in windows can be controlled
here, they are not just connected
Ohk
whats with the random warn I got, I didn't even send a message today
By the bot?
Ye
It muted me the other day too for just chatting
Also it didn’t get prompted when I said thanks to someone
Thats autobot though, it gets triggered with unverified users. I got a warn with context, but like a nothing-burger
It was about your overall behaviour in the community and comments you’ve made previously.
Hi, I am actively looking for CTF players if you are interested in joining the team dm me *Team name = Imp3rator*
I need to go out and get milk but I don’t want to go out
Shouldn't, though the bot gets ornery when you repeat the same thing a few times in a row
Morning everyone
morning
Always handy to keep one in the freezer
Hello
Is it worth to use the certificates on my cv ?
Do companies care about it
I already have 2 🙂 and getting more
If you're thiniking about THM certs. , not really 😦 . They don't really have any value on job market yet .
Ok thank you
But you can still put them in your CV , it probably won't harm anything 😄
I thought maybe they know what is thm , and know what people learn there
Yes
what about HTB ones ?
HTB provides certification , THM should introduce it also very soon 😄 .
certificate != certification
Whats the difference ?
Certification usually means that a standards body over looks the awarding of the certification
Certificate says you've completed something
Certification certifies you have the knowledge of xyz topic
Well , current THM certificate is just a cert. that you participated in some event/pathway ( cert. of participation ) . They're not proctored / graduated exams like Net+ Sec+ , etc . 🙂
Arent both good ?
I see, It would be helpful to know specifically and or at the time when it occurred, I'm not that good at spotting my mistakes
To have
yeah thanks
Gave +1 Rep to @mossy river (current: #6 - 1459)
I would put it in CV since it probably won't harm anything but they're not industry recognized certification although they announced that it will be introduced this year 😄
THM should make their own certifications then 😉
Good
It should come soon 🙂
@rapid merlin I think they are in the process of doing
cool, it's awesome 🙂
I'm excited 🙂
It'll be good to have more competition for OffSec
Well I think should come really soon . As far as I can remember from AMA from reddit in December it should came out somewhere in March/April 😄
good news 🙂
THM and HTB have really shook up security learning. The price point is fantastic when you look at what other platforms charge
yes I agree with you
the price of the OSCP is just eye watering
I don't know how much it is
can I ask you about something
course and exam is $1750
Yeah , why not 🙂 ?
woow I can't pay for that 😄
unless you can get your employer to cover it, it's a lot
I talked to someone on a social media, and without I knew, he recorded our converstation and puted it on his tiktok account and made it as meme, and now I filed a complaint against him, what kind of punishment will he get?
yes it's a lot
Sorry to hear that buddy , but I can't help you with that 😦 . Maybe it's best to try to contact tt support .
yes now he removed the video but he should get a punishment , because he do the same thing with others
I just wanted to know what kind of punishment he will get about doing this act if you know
Maybe you should get in touch with local police/law enforcement
ok, I really want him to pay for what he did
All you can really do is contact the social media platform about it unfortunately.
"yay" "nay"? XD
I am so itchy. I think I’m alergic to something
Don't seek revenge, just try to remediate what was done and move on, moving on is the best revenge, be more cautious in the future.
Yes you're right, I just want him to get punished by the law, and that was the last time I opened my camera to someone I don't know
yes I did it, but they still didn't suspend his account
Was it a private conversation.
Sorry to hear this, I might be in the same situation but doing my best not to think k of things, because I tend to do catastrophic, so sometimes it helps not knowing... but yeah I think that person should have their account banned/ suspended but it is what it is
OK, by the way it was the last time I turn on my cam on social medias
wich one ?
The conversation you had with this guy
The one he posted
sorry yes it's private
Yeah I mean like personal
yes thanks, it's fine now !
Gave +1 Rep to @rancid hemlock (current: #415 - 14)
Apparently discord gives notifications when someone’s recording
How you doing miss stealth!
yes not here in discord, it was on another site
Ye I’m ok thanks, you?
Tired
Ah I see, sucks
Why what’s up
Long few days
@rapid merlin I know the horse has bolted, but use it as lesson about opsec with ppl you don't have a close link to
Yes/no would be too easy to guess.
huess4?
It’s been a long 12 months 😅
u mean guess?
yes it was a lesson to me :/
That's why I have serious trust issues 😅 don't really connect with people online
and whats the differents isnt it the same as "yes" "no"?
Yerrrr it really be like that sometimes eh
or is it to protect from bots or smthng
The number of letters?
haha not at this point :p
Hi didn't know this :)
yeah but what does that make the answer harder
Yeah I was in call once and someone warned me as well
If the hint is ** then it's obviously no
ohhh i didnt know it had anything to do with the hint
now i get it
thanks @sick lance
Gave +1 Rep to @sick lance (current: #1 - 3311)
Cause someone started recording
damn u hava a crazy lot of reps
Is a settings thing? I'd like to check it
Streamer mode kicks in.
Suppose a lot has to with the spaces you move in, but yeah, be extra careful online
I’m unsure as someone told me about it, you’ll have to google it
Pretty sure it’s standard if it’s somewhere I’d imagine under privacy
Is enabling it what causes the recording message ?
I used to keep mine on streamer mode so people couldn’t spam call me
Yeah, lesson learned, still wouldn't give much info about myself...
Which used to happen often back in the day
People would call me at 3am
If have streamer mode on it will redact all usernames and stuff
Omg that would drive me mad
does anyone knows how that german guy on omegle tracked peoples location on live ?
That sounds messed-up, sorry
Yeah drunk, walking back home. I would be like 🙄 that’s a you problem
we have bsides here in the UK, plus other tech meet ups. They are always good to meet "real" ppl
Thanks, will have a look over my settings
Gave +1 Rep to @upper knoll (current: #371 - 16)
Feel free to dm me if you don’t find it I’ll make sure you got it on
Sometimes being antisocial works out for me ig 
Ah yeah, you have no idea. People would call me at that time to play video games too and I would be like 😐
It used to really annoy me the spam calling
you're not my friend if you are calling me at 3am and it's not an emergency
I think I had a block list of over 300 🤣
Omg
Back when I had fb it was like that too
I like sleeping bro
Sleeping just don’t like me
Most likely will dm a little bit later, have to do some chores now, thank you :) I'm also antisocial but sometimes I tend to overshare, working on improving
Your fine here to help dms are open for ya
I have a nap every day around 1pm and I couldn't function without it. My boss used to laugh that I'd sleep my lunch hour
My phone blocks unimportant notifications from 2300-0516
What is that
Yer I like that feature icl
I have a parent that is ill, but would love to turn this on
Oversharing is my middle name
Idk if scrubz is apple but a couple functions on apple like sleep and focus can do that i know it exists on android
You. An assign numbers, contacts etc to be notified from
You can
What can I say I enjoy yapping
I didn't think of that, I'll look at that. Thanks
I had the sleep option on my phone too (not using apple) and when i switched to my old discord account I got like 6 phone calls from unknown number
If I call my aunt 2-3 times it will notify her no matter the time if there is an emergency for example
Ooof
Going to pay a visit to my phone provider and see if I can find out who called
And report the number
All I cam do, I also want to delete the old account
But since it's already hacked I think if I choose the delete option and ppl still get in it won't be deleted
I can’t use the sleep feature or whatever because I’ll forget to turn it off
It turns off naturally?
Why
You set the times
What *
Every time I’ve accidentally touched that button I’ve missed a call or something
😆
Yer I don’t have calls to miss luckily 
You can set an interval like from 11pm to 6 am
I’ve been lifting weights every morning and my arm just cracked
And you can choose trusted numbers, and during that time you can only receive calls from the trusted numbers
Ouch be careful I’m still recovering from a tiring arm and shoulder day last week Friday 
Ohhhh
Everyday I lift in the morning
That’s good!
I'm getting to an age where it's more stretching than lifting
That’s fair enough, stretching is good
Speaking of stretching... should stop procrastinating and stretch my way into chores xD see you later
Cyas
don't work too hard
Glgl
any germans here to connect 🙂 ?
I swear that cat I got has doubled in size
you're looking after her/him well
Kittens grow fast
It's raining bonkers here
My kitten just came out season, thank god.
I think there are a few words missing there
Just one
Of.
Or punctuation I dunno, hard to parse that one
lots of squeaking ?
Nah
It makes sense.
My kitten just came out of season, thank god.
And sleepless nights.
I feel for you
We say in heat in my house
Dunno if you can call it a kitten then
I got my girl neutered, solved a lot of that
She's still only 6 months.
She gets dressed on Wednesday
Ohh right
He’s eating a lot, he’s having three to four sachets of meat a day and biscuit.
He’s got two water bowls and two food bowls
So fast
It made sense to me because I’m cockney
😂
going to have a huge kitty kat
my girl is only tiny, I'd be scared to let her outside
Yeah well I think he may be tall/slim
build when he’s older because his face is mousy
I can’t post pics of him in here until support get back to me
But I can dm you the update
always welcome cat pictures 😄
I’ll send you them
Hi, can someone help me? Im trying to understand steganography and tools like exiftool, binwalk etc.. There is a photo and its a homework for university, there is some metadata or something hidden behind a picture but I can not find anything at all. any ideas? I've been trying to understand this for last 2 days.
I have a ragdoll, she'd get stolen.
mine is the same, I'd be worried more about her getting injured. She sits in the garden with me, but I won't let her be out on her own
We can’t help with schoolwork here sorry #rules
I would speak to your teacher if you are stuck
no no its not my homework im not even in the university it is a friend of mine who is learning all that and I was also interested in to understand. im on my own
100%
Ah, I see. We still won’t be able to help as usually University work has rules with sharing. These restrictions are in-place to prevent any academic misconduct.
If you want to try any TryHackMe steganography rooms, we can provide you advice and understanding based on those tasks:)
Hi
@potent field maybe look at discussing it with your friends classmates
okay no problem. can you guide me to rooms on tryhackme that are free? I really whant to understand steganography and exiftool, because I have this photo and the main task is to find hidden text or some kind of data behind it. but I have no clue I used everything that I knew exiftool binwalk decode websites and youtube videos. am I doing something wrong? that's what I wanna know
If you received a copy of that photo through a social media site, like Discord, a lot of metadata is usually stripped during the compression process.
Im not even in the university my friend just said that it was her homework and I said hey can you send me that picture too? im interested in to learn about it
^^ this is an amazing point
thats what I thought because there is literally NOTHING to find
Ask her to upload it to drive and share the link
she just downloaded photo and sent me on the social media. (facebook)
That would definitely explain it.
Or zip it and share the zip file
yep I thought about it too. I was going crazy because there was nothing to "solve". thank you guys.
Glad we could help. People overcomplicate it but metadata, if it exists, is very straightforward and simple to acquire
If you're not finding it with something like exiftool, it probably isn't there.
I think most of the TryHackMe rooms on Steg were made private, I can't find any.
I would check our John Hammond's videos though -> https://www.youtube.com/playlist?list=PL1H1sBF1VAKV6rTEh76pxQKgeFwme5gsT
if there was any side thing to hang on there will be second page while using binwalk right?
Yeah if there was anything for you to see there you'd have gotten a lot more from that command.
also English is not my native so sorry about clueless typing ;D
aight thanks guys<3
i'd look at aprisolve
@rapid merlin I tried to send you the pictures but it just says sending
sorry I was away from my machine. Just got them
@rapid merlin beautiful
whats that
Can we avoid helping please
^
oh ye ye with the melon logo right?
Oh, sorry Jabba!
I used it also
No problem:)
Just went to gym and knackered 😂
I can say no more, I apologize. 😥
Damn, he finally is on it
ye sorry I already understand about problem anyways. also Its not my homework I used it as a educational purposes only ;D
Yeah he’s a cutie pie
My abs feel on fire 😔
great to know how unfit i am xD
I know:) It's a blanket ban on the whole topic.
It has to be enforced fairly, if we let you we have to let everyone else.
If you find a public example/ CTF we can happily provide support :))
can I ask out of context about this website?
i wasn't sure if i was able to drive back home 
Pfft, burning is a good sign. Doesn't mean you're unfit, it means you're actually training the muscles.
What type of training are you doing?
cardio mainly
leg day is the most critical in this situation
and I think core?
Better start eating more then 😆
Burn any more calories and we won't be able to see you
frfr
did someone ever hacked tryhackme?
Keep at it 💪
I am fairly certain that would be running afoul on a technicality. Maybe ask in a day or two 😂
Yup, everyone with the "bug hunter" role have successfully found 3 critical vulnerabilities
hahah okay okay 😄 \
@spice salmon
ok thanks
me because I skip leg day
I need to start going back to the gym 😔
i make sure to book up the sessions in advance the week before so i kinda have to go kek
You have a PT?
no, you just have to book up if you want to go
whaat
im not sure if thats normal
that's irritating
Would not work with my schedule, sometimes I wake up at 3am and just go to the gym
oh i stand corrected
those 3am sessions hit different
I think sleeping is healthier xd
probably
thats only for the ✨ pool ✨
If only you could see my sleep schedule rn
I was fitting a switch just before Christmas and someone knocked me off the ladder and threw my back. I've never felt so bad
I'm doing lots of stretching
i dont think mine is 24hr anyway lmao
Mine wasn't so I switched
is anyone here good with subnetting?
it's just power of 2 mate
subnetting just becomes remembering subnet masks
The cyber mentor has a good video on subnetting
I understand it I think, but I was wondering how do you find out your network address is it just for example
10.0.4.34 as John's home IPV4 PC ADDRES
SMask: 255.255.255.0
would that mean his home network address is 10.0.4.0?
I'd recommend keith barker, he's an awesome network guy
Yes
so using that technically there are only 253 usable addresses, since default gateway, network address and broadcast are all reserved for a /24 network?
yes
technically you can use the network address, but convension says you shouldn't
Yeah , network and broadcast address are reservered and can't be used 🙂
Those're 1st and last in subnet 🙂
network can be used, but it really shouldn't
the default gateway is just a random ip on the subnet
can be .1, can be 254, can be 199
or if you disabled the default gateway would that prevent the router from reaching the outside web?
no
It won't
right got it
default gateway is the ip that tells computers where the router is
you'd be running a BGP no default router in that instance. It would have to hold the internet routing table
so it forwards all it's traffic to the default gateway, which then sends it to Amazon for example?
Yeah although not directly there're many hops in between 🙂
oh
gotta love my laptop sounding like an airplane as soon as I open android studio
and in terms of class A B C networks does that simply just refer to the subnet mask?
with 10 or 192 to display what type of network class it is in the ipv4?
@mellow sky you have to remember when you send a packet it's not just the next hop, it's also that the end router knows how to route back to you
No , there're specific ranges that are private 🙂
rfc 1918
it has the source address right
Quick reference guide on five IPv4 classes, IP range, number of networks and host, and special classes.
exactly, L2 is stripped at the next hop and they will add the L2 of the next hop from them, but it's all dependent on knowing how to get back
so if I send a packet to Amazon's server 48.3.2.129 how does it know to hop to a different address first like for example cloudflare then Amazon or whatever the route is
when you enter the SP there will also be labling, which allows the use of overlapping addressing with customers
Cloudflare will threaten the packet with legal action if it doesn't hop along somewhere else
I don't really understand your question, I think what your talking about is traffic engineering. That's policy based routing
so my question is if for example I want to send a packet to 46.3.2.109 or any external IP, is there any way to track every network (and their IP) that packet goes through first to reach the destination, would it just be through wireshark?
I'm just curious to see how many hops you get then you go to a random big website like Amazon
You can use traceroute cmd
tracert on Windows
traceroute can be a bit misleading, SP will seem as a single hop across the network with MPLS ttl
morning beautifuls
morning dude
Fajitas Monday
I have decided im going to quit vaping, and I already wish people didnt exist lol
awesome mate, save your lungs and our pocket
transit networks have no obligation to provide information on their internal network. If you use traceroute, you'll see the ingress and egress on most SP's
only cats can make communism cool
Oh are we still talking about cats?
Cats are good.
I'm more worried about the guy hanging above the door
Wow
guys can I back my streak!! Admin please help

Email support@tryhackme.com
@sick lance the CCNA is used in a lot of IT degrees here in the UK, but they don't take the exam smh
Had a guest lecturer who came in and got us to do labs on TryHackMe X)
Looooool
Did you tell them who you were?
guide me please
I have 120 days steak! how can I get it break
Any of the ones I made?
On requesting a streak reset?
More like a streak freeze
Email support@tryhackme.com
"I had a streak of (n), I missed a day. can I please have it back?"
the education system is become awful
I asked him questions about the platform and what he thought of it. Asked him if he had any problems with the platform.
At the end I told him who I was and passed his feedback on to the site team
Positive I hope?
I don’t think so, I think it was SQL
Was he surprised?
Of course, he had some really good feedback too
good enough for his students
Yes ahah, I don’t think he expected a uni student to work at the company
I just missed my one day because of Exam! And I check mail! TryHackMe did not mail me that time! so I think maybe I submit my daily task! now Its almost gone
😭
isn't that plagiarism of some kind?
I kept it hidden until 2nd year, fortunately it hasn’t come back to bite me yet
Two seperate members have told you how you can get it back.
At this point, I'd just be repeating myself.
Do you hv ppl asking u for free subscription
No :)
got to be down bad to need a free sub to thm, the price is epic
I outed myself because I went to an event we sponsored, it’s all on the monthly blog:)
Thm's blog?
Mhm
it's a real feather in your cap to be part of thm
You were doxxed :p
What year r u btw jabba
It certainly has it’s perks, I’ve got to experience TryHackMe from 50,000 users all the way to 4,000,000. That is the true experience 😄
3rd
Last year?
epic mate, well done
Mhm, thank goodness
Gave +1 Rep to @sick lance (current: #1 - 3312)
Excuse me Mr bot
12 weeks left?
May 16th is my final submission
Whats ur thesis on
Ah good!
Won't be long, now back to learning about NumPy
I can finally say I have 44 weeks left of my education 
I still got my 1 Million shirt 😄
it never ends lol
The impacts of gamification on cybersecurity
44 weeks left of my 278 week education
aka a little under a year of my 5 year long education
very on the nose xD
I bought all the shirts when TryHackMe first released the merch store. All my shirts are almost completely faded now 😆
that's brilliant. It just seems I'm always studying for a cert to make sure I don't lose my certification
It’s almost like I couldn’t have a better topic 😆
CPE is a scam
it is and it isn't, most guys that I know that are skilled are always studying
if you don't have an employer paying it's crazy. I also find it crazy that they add VAT to the price of exams in the UK
Hi everyone !!
I want to become a penetration tester. Which certifications do you think I should get first? As a start
what about notion?
Great idea until you don't have a network connection, and can't access your notes.
What if i do if the entire room just freezes?
Try to ask these guys for a career/cert advice #cyber-and-careers 🙂
Ctrl and F5?
I think Obsidian is the best options now, I'm just to long in the tooth to move from emacs org mode
Well didnt do anything to the box itself and as expected it just refreshed the main page.
Twice this has happened and quite recently in two different boxes. I think i need to just stop using the thm attack boxes, they are not that reliable it seems.
ok
get a solid foundation in Windows and Linux
has anyone here done OSCP?
You have a Pentest+ path on THM , it may be a good starting point 🙂
https://tryhackme.com/r/path/outline/pentestplus
yeah, but the CPE system is a scam, you can still study and should study, cause things change all the time, but having to make sure that you have studied so much a year to keep something isn't really the best imo
It means that you are at certain level. I'm not a fan of just passing an exam, and never having to prove that you still know the knowledge. Passing a cert 10yrs ago without any verification from them is worthless
don't get me wrong it has turned into a cash grab, my LFCS has gone from 3yrs to 2yrs
Hay... I'm am not able to connect to internet in my attack machine on them website.
Does anyone know how to fix it ?!
If you're using the THM attack box, it intentionally does not have internet access.
Only for free users
Subscribers have access to the internet
Oo okay
Anddd lemme guess thm is one of the subjects in ur thesis
thnks
Haven’t decided
Oh u hvnt started
I have but I don’t know if I’m analysing any platforms or not
CTF might be a good topic for that
I was going to do mine on gamification, until my new supervisor asked me to come in and do their project.
That was the project my supervisor selected loool
Problem with doing it on CTF platforms is that it’s not possible to an analysis of how effective the gamification techniques are. I would need to do a survey, which I don’t want to do because my whole project would rely on people filling out the survey
It would be too complicated and volatile
Well you can statistically sort out how many people attend CTFs on ctftime.org etc.
That wouldn’t be applicable
I would have to take people from xyz and test half of them on gamification techniques and the other half on non gamified learning
Then I would need to test them again a few months later to see how effective the techniques actually were
So I changed the project to just use existing literature
Do it with patient
Hm?
So how are you gonna prove the effectiveness without data
Focus on one at the top or timeline
I’m using existing literature that have already done it
I don’t understand what you mean 😅
You said have half people to test and then half people gamified learning so I guess you have to do it one at the time prioritize it @mossy river
I’m just not doing it
If my results are ineffective or if nobody takes the second survey my diss would have nothing to analyse
gotta love android studio
What's your PC specs?
having 32 cores means I don't have to turn my server on
unless I'm labbing out a large network
can someone explain me this for an windows user. what a hell need to be pushed on my keyboard 😄
Vim?
yes
:wq!
i wanna copy some hashcodes in one .txt file
Uppercase P ig
please.... what is ig? what buttons do i need to push
that doesnt help
Are you in insert mode or command mode?
Ctrl +shift+v ?
Just enter visual mode and press shift+P on where you want to paste the copied output
how do i enter visual mode
Press esc to return to normal mode, and then v to enter visual mode
Press v
you can do :visual. Recommend vim golf
That just means you didn't copy the output?
vim :help is a must for any new user
@mossy river
ye i tried that... but i cant even type in the box
@sick lance
i am not dump. but that program makes me feel very dump
Done!
I hope nobody ever falls for that link, they didn't even try to make it look like steamcommunity
...
Need help in connecting to the proper machine which has the elasticsearch.deb files in Logstash: Data Processing Unit room .. i am connected to a machine with different files
They're very persistent
It’s ok I was like that once
you need to press escape and go into command mode
you're in inset mode at the moment
ok esc and how do i enter comand mode
by pressing escape it puts you in command mode, you now use : to direct what you want
https://youtu.be/-txKSRn0qeA?si=Nj56hYTr-VpT_WS9
@spice salmon spend some time watching it. You can get up to speed .
Can you recommand me an other programm
i just wanna copy paste
thats shit.. dont wanna have it now
Have you tried the VIM room on TryHackMe?
vim really takes some time to learn
not yet. but i will. is there an other program
This is linux we're working with, it doesn't get much easier even with other programs
nano
nano is good ^
nano >
nano, no
nano 
I take the time to purge vim from all boxes before I root it
I am doing a box, why is nmap stuck at 66.67%?
Primeagen finally has a worthy opponent
Alternatively you can echo the hashes into a file to be extra lazy
i never felt so much angry about an program in the past 8 years
Is just slow
You're doing an intense scan, of course it will take time
press v a few times and it'll increase verbosity
i need to access 10.10.201.208 machine but i am in root@ip-10-10-199-15:
@shadow quiver add the subnet when you ask for help
Ye, but it got to 66.67% and is stuck there... It's just default ports. I removed version intensity, still gets to 66.67% and is stuck..
did you try masscan for a feel of the box?
massscan?
another scanning tool
sorry "masscan"
you're using the -sV flag that can get pretty intensive
will have to install it. thanks. I restarded terminal and ran nmap in the meanwhile and it finished. it seems that only reporting was wrong, there is no way it went from 66.67% straight to 100%
But I did the scan succesfully.
Rustcan then pipe into nmap
Rustscan calls nmap automatically iirc
Although I'm guessing if you want custom flags you can
It does but if you have specific flags you want to use, better to take rustscan's output and pipe it yourself
smh let me type pfft 😂
it's fantastic to think that nmap is still the standard with it's age
nobody can be bothered to write another one /s
lol
I assume there might be some niche things people want to change but I don't think there's a reason to use another tool tbh
No point re-inventing the wheel, unless it's a personal project.
What happens if my THM discord token is shared
I have the nmap book on the shelf. Still funny to think that Trinty in the Matrix used it in the opening scene
Someone will have your token
You don't need to reinvent the wheel yk
totally
I'm kidding 😄
We use the token for verification, it's best only you know your token @ocean lagoon
Lol, thanks
https://www.youtube.com/shorts/PBpyCdy4pMg?feature=share what an incredible video
respect to the people who signed up for it 🤣
“Honey what’d you do today?”
“I got shot by a guy playing piano so he could make me scream and make music”
burnout aaaaaaaaaaa
Honestly sounds like something from SAW
hello
greetings
How are you doing today?
doing fine.
ca u help me connecting my kali to THM
Nice
your probably need to go through this room https://tryhackme.com/r/room/openvpn
It teaches you how to access thm machines.
ohh thanks
Gave +1 Rep to @worn thorn (current: #112 - 69)
thanks buddy
Gave +1 Rep to @worn thorn (current: #111 - 70)
ye welcome 
Hi @mossy river my I dm you with a discord related question? :)
Now i did but it still has error
any remedy to solve this issue
what issue?
Go for it
We need the error to be able to help you out more
can anybody tell me how to join python community?
Text them on an iPhone
Phone numbers aren’t attached like that
I’m sure if you look on Google you can find a discord dedicated to Python
actually i need a official one that i can trust on something like tryhackme but idk
Again I’m sure if you go looking on Google you can find the Python discord
ok
Searching Python Discord gave me one with 400k members
So I'm fairly confident that one's probably pretty official
let me know if you have any problems there :)
Or a lot of skids and scammers 
Still has that number 😄
Just so everyone is aware, Jayy has whitelist because he’s an infosec developer 😄
i saw a post of a python script generating phone numbers in a sequence and validating them as imessage registered. It was sent a view once post and i managed to copy some of the numbers. checked and it was all verified. the sequence was something like +1234567xxxx
And why is this important? 😆
I started a python project today, it is to automate my scans , and give me better output , with less noise
Aren't the major programming ones whitelisted?
?
Generating phone numbers is quite straightforward.
You can find formats based on their country code and then just use random.randint.
i guess you arent listening
Other than for spam, I don’t know why you would need to know if they’re registered on an iPhone or not
I thought we couldn’t send any discord invites
Nope
afternoon all!
sigh
:hammer: korozuu#0 has been banned.
hi good thing you wrote :) is this a good time to dm about some settings?
Hm?
I'll go in about 1 hour :)
i dont even know what 2 say
thank you i need this
Gave +1 Rep to @shut hawk (current: #14 - 598)
My friend got lottery guys
Kudos to him 😄 . I just got my lottery ticket for today 🤣
He gave 5k to me
+rep to him 😄
Gave +1 Rep to @icy schooner (current: #1297 - 3)
hello
meeeerp
Bounty hunt has concluded, I am at 0% charge
That was massively exhausting but fun
uh oh the xz package is updating again
here we go agaen
Just like me fr
🔥 hows it going
probably just fine this time but yeah just thought it was funny
another NSA agent infiltrating kernel dev
funny thing is when the xz backdoor was a thing it affected debian-based distros. Arch wasn't affected cause we aren't important enough lol
yeah but the arch team still made a news post about it and recommended upgrading or downgrading
Critical rsync security release 3.4.0
2025-01-16
We'd like to raise awareness about the rsync security release version 3.4.0-1 as described in our advisory ASA-202501-1.
An attacker only requires anonymous read access to a vulnerable rsync server, such as a public mirror, to execute arbitrary code on the machine the server is running on. Additionally, attackers can take control of an affected server and read/write arbitrary files of any connected client. Sensitive data can be extracted, such as OpenPGP and SSH keys, and malicious code can be executed by overwriting files such as ~/.bashrc or ~/.popt.
We highly advise anyone who runs an rsync daemon or client prior to version 3.4.0-1 to upgrade and reboot their systems immediately. As Arch Linux mirrors are mostly synchronized using rsync, we highly advise any mirror administrator to act immediately, even though the hosted package files themselves are cryptographically signed.
All infrastructure servers and mirrors maintained by Arch Linux have already been updated.
crazy
yesh
yeah that sounds bad too
What would you do if you won the lottery?
scream in agony because taxes would get harder
Same difficulty
man I'm thinking about how silly my backpack might look when I'm travelling
Yeah fair
I'm debating getting some webbing and clips to attach a sleeping bag and airbed for when I go to scotland cause I'd really rather not bring a suitcase but I'm just imagining my little dell laptop bag with a sleeping bag and airbed attached underneath like I'm off camping
Lmfao are they running out of ideas?
Like Christ certified was just bloodhound
Alert I still haven’t gotten
anyone knows how to import html and css with flask? using the render template shi? ik its basic but im starting out on uni and im having a hard time searching for the same piece of code my teacher used
Idk what my payload will be with alert yet
It’s something weird apparently
I think binary is gonna help me out on it
There also seems to be this theme of extremely difficult foothold
Then more trivial priv esc
Soon I’ll need to actually learn to code my own exploits
I’m fine with modifying a POC but making a websocket?
Uuuuuhhhh
lol which rfc did you read?
rfc's do get the idea across
You read all the 100 some pages?
they aren't all that bad
like all reading, you pick the sections that are relevant
rfc's save paying $$ on books
Dude I was reading about how b64 encoding works for exploiting php filter:// the. Iconv and heap and how iconv is exploitable in glibc
I need to go read it again
That’s my brain except it’s always been smooth
I didn’t erase it I was born that way
I had mySO explain heap to me
"100 some pages" that isn't that bad
I try and cover 50 pages in the morning before work
I can’t stop watching it
yo
best anime ever
osaka my beloved
@fervent meteor only way to cover the certification topics
The de facto operating system developed for the cult of Ayumu "Osaka" Kasuga. - pac-ac/osakaOS
I'm doing the ENARSI at the minute
yeah
I need help 😨
Unknown filesystem (i'm scared)
this is the "I hope I have backups screen"
Shit
what happened
on a network, could you have 192.168.1.0/28 and additionally 192.168.1.16/30 and then 192.168.1.20/30 without them overlapping?
in theory*
I was installing vm ware and this happened
pdiddy profile picture?
yeah
dam
they overlap, but the more specific route is always preferred
how do they overlap despite not being within each others ranges?
it should work
sorry, just seeing /24's today
I have a pendrive with Kali Linux on it. Should I install it, or try to repair Windows instead?
like for example 192.168.1.0/30 goes from 0 to 15 then the next is from 15 to 19 then 20 to 24 right?
exactly
U just have to configure the routes correctly
all you have to do is take the next bit as the incerment
perfect, and if I did then 192.168.1.0/28 then 192.168.1.16/24 that would overlap right?
yes
/24 is always the whole subnet
what happens if they overlap?
/28 would be a subnet of the /24
the network will not work
Me personally I would switch to linux
but its really up to you
linux never crashed on me
👍
I work with Cisco and Juniper, not heard of "filius"
how much subnetting knowledge is needed before doing boxes specifically network focused? I'm holding off doing any boxes (I've done it years ago in the past) but getting back into THM and HTB
I can't tell if I'm being overkill
I just had that in my engeneering school if you dm me I can send you some tasks that test this field pretty well
subnetting is not very common concern for cyberecurity hacking on thm
*cybersecurity
most starter boxes don't require much networking knowledge
And you can just use subnet calcs for doing the hardwork if you ever need it
Do the boxess. It's good practice
thought so, most stwter boxes are more focused on basic CVEs likely
Boxes tend to link the subjects they cover in their desc. If ur stuck do ur research on that stuff and come back
If you are interested in networking, Keith Barker has free content on youtube. He's awesome
Nice choice
yeah I'll have a look
thanks
the CCNA is worth getting
haha I had a look at it earlier
is it better more for a CV?
along with th expensive
experience**
like OSCP + CCNA would look decent together right?
Hi, can you please change your pfp?
@mellow sky CCNA isn't too expensive really, but it does look good on the CV
true good to OSCP anything is cheap
my company won't cover the cost of the OSCP
too expensive?
I got them to pay for my eCPPT
certification is just so expensive
I have my LFCS, they just made that every 2yrs instead of 3yrs
gladly my parents said they will cover half of it since its for a good cause
big w
when did u do ur eJPT?
compared to what a rip off alot of uni degrees are in my country certs are so much better value for money
I didn't, I went straight for my eCPPTv2
ah nice and you passed on first go?
yeah, it was a killer
congrats
81 page report
Im currently preparing for eJPT
oh was it Linux boxes or just windows
mix of linux and windows
how much does it cost
can you purchase just the exam or u.need the lab too?
like practice boxes?
yes
hello friends!
anyone into rooms creation? I wonder how random flags are generated (and if one could have this). I'm trying to create my first room for a private event and I can only see static flags.
good luck mate, learn the material you'll smash it
how long is v3? 24h?
thanks I cant believe I started this journey only 106 days ago
Gave +1 Rep to @potent escarp (current: #449 - 13)
it's 24hr, the V2 gave you access for a week
i got v3 voucher and wanted to get the feel of the lay of the land haha
so 0 prior cyber sec experience?
so wondering how much time you've invested into it and what are the common trends
You can't get "true" dynamic flags.
nope nothing. But I have 1.5 years in system engineering as an apprenticeship that will last 4 years
THM uses static flags as means of inputs, if the flag was dynamic, it would never be marked "correct" on the website.
a lot of security is just having a good IT foundation
it you have good security principles going in, its so much easier
I mean, everyone has different flag value, generated at boot time
This is very true. My system engineering knowledge helped me alot. Also with the basic understanding like IP networks or the ISO OSI
Yeah. but that won't be accepted on the website.
The flags on THM are static on the answers
I get pulled in on hiring, and the OSI model is one of the first questions I ask about
Any one know wifi cracking
WiFi hacking is for our advanced channels only 🙂
Thats awesome. In school I was like nah whats that Im never gonna need this and now Im super happy that I just learned it
dm if you need help (only legal)
Any one know dark web sites
raaaawr 🦖
Again, this isn't really the server for this.
We don't discuss illegal topics.
No just exploring
This still isn't the server this.
This server is an ethical hacking and cyber security server that partners https://www.tryhackme.com
Thank you for the confirmation
Gave +1 Rep to @sick lance (current: #1 - 3315)
The darkweb isnt really an inviting place. If you wanna get know the service better, there is a room called tor on thm that u can do.
It's recommended not to explore on the dark web or get curious
One wrong click, and you could land in a heap of trouble
I've never found the darkweb remotely interesting
messing around trying to find onion sites smh
I've done a bunch of dark web challenges, but those involved certified education bodies carefully crafting challenge URLs to access
Clicking on random links on the dark web is a big no-no
4 years ago, I was hacked while exploring the dark web, and my PC was used for illegal stuff causing all my account getting banned
Lmao
I still laugh at myself
k
in the semi early 2000:s shadow got scammed on runescape a lot and learnt to be distrusting
easily done mate
This is the reason, Im using an ghost computer if I ever go into the darknet which is hardly never
How far does a pwnagotchi reach?
Yeah, that's why it's not advisable to get curious. One out of every three links is either a virus or child porn or something illegal
All of which are guaranteed to get you into trouble
Probably the Wi-Fi network range.
depends a bit on antenna but what scrubz said
ye standard range is abt wifi
I understand TORs value for our security services, but for everyday joe's there's no need
nope its also slow
Real
tor also has a problem with how many nodes are owned by feds

