#general
1 messages ยท Page 802 of 1
I have like 5 books to read
Sounds dangerous
i just wrote "5 reads to book" before editing it lmao
for book in book_list: print("read it!")
Informative I think. Probably useful for advanced bot debugging to understand the queue mechanisms used by Discord.
I have a course called ethical hacking from zero to mastery that I never got around to finishing
that one i did, from one of the companies that makes lots of content (forget the name), its what i started out learning cyber security content, it was crap!
chat what do we think about programming, as in do y'all think its absolutely necessary to learn (like C#, Java) or is it just fine to stick with scripting languages like Python, JS and powershell
python coding skills is icing on a cake
wait really? It was pretty solid
BASH is what you need
I disagree
not required, but can help tons
assembly ๐ญ
they guy dragged and dropped his malware from 1 VM box onto the made vulnerable windows box,, so not world like
I am so cooked
good luck man ๐๐ฝ
On a serious note, take care of your mental health, it's important
its important to know how the scripts you run work, BASH is how to be efficient in the terminal
any other opinions? anyone?
I mean there's zsh and fish as well
True, but most companies doesn't really look for BASH
Powershell
May the mod gods forgive me
i don't like programming in general, my comp sci degree is kinda forcing me to learn C rn but i'm not enjoying it too much
Kinda
i say BASH for generic use, zsh or fsh is included
i've tried python too but i don't see any point sticking to it cause i don't need it at the moment when i'm solely focusing on cybersec
C is super helpful for malware analysis and the CTFs
how so?
python is crazy useful in cyber sec
You do need python and C for CTFs
most of the scripts an tools you run in cybersec are in python
you are given a ELF file, now figireout what it says, how to get the flag, use Ghidra etc
O
Python is the swiss army knife for cyber security
fair enough
||How do I change password for sophie in AD? It's giving out an error||
Swiss army knife until you get to pwn
you dont need to be a complete master but you need to be familiar with it
i'm aware but rn i still haven't run into using or implementing python into anything yet...so...
Iโm pretty sure itโs just a snake
you will
if you pwn, you get cheese ๐ง
you will pretty quickly
Hello hackers
hope so hope so
no thats snake
Simon says hello
Hello Ghost
python is a swiss army knife
It's the big man, the unknown of the knowns to the unknown of unknown to the known of knowns.
We can sing a song
Hello hello.
recursive unknowns
ssssshhhh
Copy that!
Copy that!
Copy that!
Copy that!
Indeed, in such a affirmative way. I stand till shall be known in a good way to the unknowns as a known
standing, no chairs?
What about a beanbag chair
a murphy bed?
Well, I was thinking itโs like a soft throne
So still affirmative
But also, comfy
i wonder why chatgpt always only tells half of the truth or gives wrong facts, once you ask again "is it really like that?" it suddenly changes its mind "oh indeed, it works this way" ... so annoying ๐
It want to be special
Training on how to deal with a gaslighting narcissist
its spicy autocorrect, it knows nothing
Hii
using it to speed up my note taking, i spend more time on correcting things -.-
Just always respond with โoh, well I have my doubtsโ and see where it goes
Hi ๐ฑ
KangafooAI
Sleep(pillow, blanket)
i wish ... i wouldnt need to learn bunch of stuff and just take it from the web
error: 1 too many pillows
plug yourself into the matrix
I particularly dislike that phrase this week.
Try asking it if it's sure when it's correct as well
It's aggressively against conflict with the user
Athropic released an interesting little study they did with their chat AI.
Definitely the primary directive of "be helpful" gets in teh way.
@naive violet that just unleashed a massive flood on information yikes ๐ฎ
"you are right" .. errr no, i wasnt lol
...yeah
hm guess i rather get the britannica encyclopedia lol
The misinformation machine generates misinformation quite often. It's shocking to see people rely on it as truth...
gemini is much worse by the way..
A friend of mine more or less fully switched from looking stuff up normally to asking ChatGPT, it's kinda annoying.
in my experience, copilot was the worst one so far in my testings... kinda gave me the feeling it suffers on dementia Oo
Oh?
on chatgpt you can rely back on former questions... copilot ignores that completly as it would have never given that question
Hows deepseek on it
Copilot is so much better than ChatGPT??
didnt try that one yet, might do that tomorrow, need to be productive and not playin around ^^
Yeah, some team broke a linux install.
They spent a day and bit breaking it further trying to recover.
Next morning someone pulls me into the Teams chat.
I take over.
Deploy some supporting infrastructure in the adjacent subnet.
Roll out a fix.
Explain the issue.
The person who broke it, who couldn't fix it in 30 hours, when I fixed in it 30 minutes, replied to the explanation with. "I have my doubts. I'll talk to my colleagues about it."
Like, bish, please, you just proved you have no concept what you did.
where do these people get their egos from man 
Maybe just pipe their messages to ChatGPT and they can chat about it
I wish i was this confident
have him break it again and respond with "you got this big dog"
Regular occurence for me, the being brought in and fixing in minutes what others failed in hours.
It's why my role exists.
But pretty audacious to question the cause and repair after it was so succinctly demonstrated.
But in that 90โs way where you shout โbig dogโ kinda like a bark
who knows, knows ๐
I was nice enough to change my first sentence in my response to "I have my doubts".
Changing that once sentence switched the tone from disdain, to educator ๐
Then provided instructions on how to recreate intentionally, and how to repair.
@chilly veldt osint this place ๐
Any free movies or series websites?
cs_italy rl? xD
ct spawn :3
Yep, I'm taking the boxes on the right.
@gritty olive hey, that's piracy and it's illegal
announcer voice 'Hostage down'
don't need to, I've walked there
Okay I didnโt know that
I wanna create one
o?
Wow letโs try
I want to talk tk some thm staff first cuz I am a bit confused about smth
Then I will start creating it
Which password manager you guys use ?
good luck, lmk when its out :))
My mind
(Totally don't reset it every 3 months)
bitwarden
brain.exe
What about 1password?
Ehhhhh
its expensive....?
for try hack me u can cancel the monthly purchase anytime
Anyone using grapheneos or calyxos?
I use graphene, but why you asking?
i have graphene on pixel
any advantages to it? not really familiar with mobile OS'
i used to use it, on chromium it's pretty good
but on firefox it's borderline unusable
privacy minded
I am using it with brave browser
ew brave
yeah it's pretty good
i used to use it
just use chrome :3
aside from the crypto bullshit, it's pretty good
i'd rather die
oh.
firefox >>>>>
You use mullvad i believe
^^this
i like chrome..
mullvad, bitwarden, grapheneOS, arch, firefox, kagi and duckduckgo
well at least the look of it.
that's my setup
why ddg
brave browser is bad but brave search is unironically better then any other
i use on firefox with no issues
kagi is much better
never heard of it
Duckduckgo not safe anymore,, use brave search, start page
yeah account required, no thanks
Gave +1 Rep to @chilly veldt (current: #8 - 950)
I use duckduckgo for work, so don't really care about safety there
WHY DID I GIVE REP
Searxng
this
You said the magic word
yeah
magic words do things
i'm with stupid
stupid
stupid
that's fair, it's just better search engine and I don't mind paying for it
Not me
Seems like a hassle to get everyone on board
- whatsapp is better in a lot of ways
this
now thats not true
telegram is better
You use session?
i use more then anything else
Same problem
bad
Nooo way
signal is the only thing I use
based
Telegram is not safe
ik signal is more based
i use telegram cuz all my tech friends use it
im forced to use whatsapp for irl's tho
for sending messages regarding info that require that amount of privacy
also, please give source on why duckduckgo is not good anymore?
discord is for my normie online friends
Do your own research , donโt believe whatever is said
telegram's encryption isn't good
but holy shit
the gold i found there is unmatched
info, communities, friends, bots
i even use it as my music playlist
and that's not a joke
Nope
Tor is based
also Ray, you said something about proton, have you read the newest proton news?
I havenโt either
(i only listen to RFP/VGM)
A bit paradoxical no?
Everyone has graphene on pixel ?
hmm... smth new, not so "great" happened ?
๐
ye
no
link it
2022, it was revealed that DuckDuckGo permitted Microsoft trackers on third-party websites due to a contractual agreement.
3 words:
Proton CEO politics
that is their browser that they have made for android, IOS and mac, not their search engine
yeah
response from CEO backing that up^
so since I am just using their search engine and not their specific app, then it's still private
but also their privacy enhancing browser extension
which i actually used before that news
Thanks for correcting me, appreciate it , learned something today
Gave +1 Rep to @chilly veldt (current: #8 - 951)
its supposed to block trackers but it allows microsoft trackers
dms
no thx
I have Telegram because it's useful to have it for reasons.
I avoid WhatsApp for reasons.
Hey, did you know if Signal gets subpoena'd for your records the only thing that get submitted to court is the date of your last login, and the date of your initial signup?
And thus far it has withstood all known LEO attempts.
yeah
send to me too
@gray sonnet https://www.youtube.com/watch?v=JA4Vii3tyUk
Web APIs are hard to get right... but not THIS hard. In this video we react to an article by a security researcher who hacked McDonalds India.
https://eaton-works.com/2024/12/19/mcdelivery-india-hack/
๐ด LIVE @ https://twitch.tv/LowLevelTV
๐ซ COURSES ๐ซ Learn to code in C at https://lowlevel.academy
๐ฅ SOCIALS ๐ฅ Come hang out at https://lowleve...
McIndia
McSadness for that gift card
Who uses tuta mail?
Soooo many gaping holes in that app
You mean the metasploit VM?
Or whatever it was called
yea, i dont remember too much, the course sucked but i ended up here and properly learned
wasnt there some guy who hacked the comms in the drivethru and insulted the people ordering?
Watchdogs moment
What encryption you guys use?
in what way?
Yes
For hardisk
bitlocker or luks
LUKS sha512 mostly I think.
Veracrypt is good?
it's eh
Mmmm I liked it tbh. At least what I covered
It was forked originally from Truecrypt which was a great project, but the project got abandoned shortly after 3rd part audits that revealed no significant failures, it did find one uncommon access method that could leave you vulnerable to revealing keys in memory.
I think the proliferation of BitLocker signaled the end of that project though.
Veracrypt has been doing a reasonable job of keeping the faith is my understanding, but I've not used it in years.
I will check it out
Yeah theyโre shit
Thats why you got platforms like zomato and swiggy(google them) here
do you want fries with that? ๐
@gray sonnet ๐ how are you?
Yo yo yo, I'm doing just fine, how are you doing lately rex?
Hi everyone Hi everyone
I need someone knows how hack Android
Hack android?
That's a very broad topic, as is "knows how to hack" anything.
I'm guessing you mean to say you have a device you're locked out of ?
nothing new still in Argentina, still sucks, now that feb started I'll see if I can speed thing up with the lawyers, but it could be worst so I can't complain ๐
hi, i want to learn RCE. where can i start or any good resources please?
I want to know the steps that I can follow and some tools dedicated to hacking Android
That's way too broad a topic
Start in Beginner's rooms, build strong fundamentals, several rooms do cover a variety of RCE type vulns, but understanding them requieres foundation.
I want to learn more about finding zero day vuln and exploit dev and maybe some techniques i guess im not really sure idk much abt it
What's the context here? Android apps? Kernel exploitation? What are you trying to do?
If you want to do binex, I'd suggest Pwn college
Music recommendations โจ
You like metal?
Yeah
aye, hope things get taken care of quickly ๐
everything from arcane (by riot games)
I know it all off by heart
fair
okay thanks so much
Kernel exploitation
You could listen to my cousin's band.
You know lawyers ๐ I'm doing what my father didn't do before he got sick
That's... A remarkbly complex topic with a LOT of prerequisites. What's your hacking knowledge like at the moment?
ah, got it, still though ๐
๐ฅฐ
I just found out firefox has group tabs 
Cousin's (I'll be honest, you probably already have 'em on your list if you like metal. ๐ ) : https://www.youtube.com/watch?v=zeOkeoXyt-4
Daughter's Best Friend: https://www.youtube.com/watch?v=mKABAJh-PkI
Nice thanks ๐
It's funny the talent that small towns spawn.
Just tell me what tools I should use in these stages. Network scanning, threat modulation, vulnerability analysis, and Post exploit
None of those are kernel exploitation.
Phones get patched. None of these are normal off the shelf things other than network scanning.
What's your end goal here?
Hmmm...
There's not shortcuts in learning hacking. It's hard work.
Mr Robot spoiler: ||crazy that we donโt know what Elliot actually looks like||
Yeah, I've been meaning to re-watch it.
So can you suggest me an effective and guaranteed way to hack phones?
Yeah it is
I am rewatching it atm second episode in
that's not how hacking works
n o i i c e
Use a machete
there are many ways and its not just one simple tool or tools and you're in
kernel exploitation doesnt happen with tools on a patched phone lol
Let's not help with the malicious hacking ๐
Currently at my desk with music on trying to find motivation. Iโm so sick and sleepy but I donโt want to be bored
im not, just saying
Ahhh
You have to give me your CC information, with the 3 numbers in the back of it.
I will forward some motivation after that. ||jk||
There isn't one. Are you trying to hack a phone?
My bank literally has 30p in it
You canโt even buy a chocolate bar
Itโs a public server bud
good for me 
does it belong to you?
What are you going to buy with 30P
Hmm, James,
Do you know what frequency the site updates its knowledge of VPN endpoints is?
nonya
What is nonya
nonya business :P
he was right. if you use a machete the phone will be garunteed hacked
AHHHH
hacked to pieces
๐
I spent 14 hours trying to solve a challenge on THM. I finally solved it!!
I really tried to think first as well what that could turn into
Endpoints don't change, what do you mean?
The "connected" tickbox?
We aim to please
The "OpenVPN Internal Virtual IP Address" box
I've been on network for about 5 minutes, but it stil shows 0.0.0.0 even though I am defintely connected ๐
@rapid merlin What phone are you trying to hack and who owns it?
Yeah just ignore the site
If you want a reliable check and/or to use it in scripts, curl http://10.10.10.10/whoami
Oh whoops it's an active situation. Lemme step back
I love blackbear
Yeah, that's what I did ๐
That's why was wondering if maybe the site updates its known connections on a cron job or some such timer.
I love Blackbeard Yarr 
ope is the guy gone?
Someone once told me I looked like blackbear with no makeup on
๐
@rapid merlin Hey, where'd you go? A friend request but no answer for me?
Y'ar
Yarrrrrr
So anyway, there I was riding a mythical flying horse...
I have a tattoo gun ๐ but no I'm not gonna tattoo you. I'm not licenced to do that
Android
I have tattoos, I need more
Android ain't a phone, it's an OS
Sure, that's half the answers. What about the other question?
These were my last ones
Come to visit Ontario, I'll book you an appt and cover 2hours.
That's the best I can do for helping your addiction.
I pick the artist, you pick the design.
Not sure itโs sensible to post mine here
But Iโll get pics and send you them if I havenโt already
who or what is arehie?
I don't think you have
uhm sorry
I feel like a show like this exists
It's alright don't need to be sorry!
I have a friend who's I think 3 years now, out of her apprenticeship.
So y'know, support your friends ๐
And the people on the show ends up with some really messed up revenge tattoos ๐
Itโs on my thigh
She did what is so far my only tattoo.
The best one
Then no shoulder work for you
Ohhh
yo @eternal timber did you manage to setup github pages
What did she do ?
I did that before you sent me the link. Thatโs why I was lamenting lol
No OHPs today ๐ฃ
They're gone. Now to everyone here. If someone is doing something sketchy, don't interact with them. Ping a mod and then step back.
I should get an image of it up on my instagram ^^
It's a little dragon that looks a lot like the one my daughter wore a leather corsage of for her grade 8 graduation.
It's clinging to her favourite flower.
Her name means small winged one. So a pretty obvious dedication tattoo ๐
I genuinely joined mid-way and didn't see the naughtiness. My apologies
"little"
I mean, it's small for a dragon.
It covers my right scapula.
You know what now I think of it I havenโt taken long form selfies in months
i was making cookies
Yum
Did you make the peanut butter ones
yea
Ohh nice
๐ฅ ๐ง
๐ฅฆ
oh no a ๐ฆ
tried to make protein cookies yesterday....
here for cookies
epic fail
fail
they were abysmal
will you try again?
yoo wsp m new yall
Might as well
i found that peanut butter + coconut shavings + chocolate chips + protein powder work
Ergh I have a stress headache
https://www.instagram.com/vinrii.ink/ @rapid merlin
I feel it knocking at a distant
rm -r headache
Ohh thanks
Gave +1 Rep to @split compass (current: #61 - 142)
lol
Itโs a depressy headache ๐
Why wonโt my body just let me be
How dare it interact with my brain
๐ฅฒ
maybe just tell it to stop?
Fr
depression headache, i know that
you're not in headache group, administrator will be informed ๐
also I'm new here, so hello everyone
this will be reported to the headache administrator
The first time I saw that message I was panicked
hello
its scary when you first see it
you expected black helicopters any time ๐
The headache one ?
Almost ripped my nose off doing tricep push downs
No the normal one
Hey! I'm learning cyber.. also learning to use discord (started here with tryhackme)
any advise? I'm looking for help/advices during learning process. A friend gave me a task to try to deal with by myself (learning/practice).
Question: where would I look for official info about security hardening for windows servers? (type is optional)
if this type of questions is not for this room please tell me where. Appreciate very much any help
๐
https://discordapp.com/channels/521382216299839518/680459914828972076/1165745966155046952
shadow's recommendation list
Funny, hahah, guys laugh, someone is trying to be funnny. Jk
YAWN
i see you changed your profile picture, unknown known face
count down to meep moorp floorp
Jokes on you, I have never changed it. You are late to party.
But +1 on getting the known unknown statement
late? i dont think so , i am punctual to parties
Seems like a no.
i blame some exploit
Wrong server lmao
you posted your video game thing before, where you were shot and you had to give your character first aid
i asked why didnt you ask for a medic
Yeah but this one was most definitely not appropriate for here ๐
oh ok, but the bloody war game was ?
Bond 007 level or Mortal Kombat levels are what i am used to
Street Fighter level is also what i am used to
Mortal Kombat! That's beyond the gore in many games
Mortal kombat broke many norms when it comes to violence in videogames
Even the first one
the old school version, not the gross new ones
Hi
that game was banned, same with Simpson back then
4th Savio hello i have seen today
Who is playing clash of clans?
Can't lie I feel like gore is a great way to showcase strength in a character, as long as the atmosphere allows that is
Hmmmmm...
Haha
Hmm, guess it's time to retire this microwave ๐ข
At least I'll be able to salvage some fun parts for weird experiments ๐
like putting computer parts like scenes in mr robot?
Please be very very careful
Very high voltage parts, toxic ceramics, etc
Don't go poking the capacitors with anything
i see that "Browser Syncjacking" is a new tactic
How can one safely dismantle a microwave? Where would you even find the resources for that
If you're reasonably knowledgeable about electronics repair and understand the hazards of beryllium oxide you're probably fine
Keyword "probably" cause things always can go wrong
I know how to safely discharge capacitors, and deal with BeO
I don't know that yet ๐
For BeO - don't break the ceramics, in a lump it's fine but the dust gets everywhere and is toxic
For caps, unplug from wall, discharge through high power resistor.
Wait a while.
Measure voltage and discharge again.
N.b. this is not safety advise. Do not play with high voltages or toxic substances unless you know what you're doing
Man I got a license to play with microwaves
That's a difficult option
I trust you with that stuff. Others not so much
James, random question, how do you get the contributor role?
Fun fact, capacitors can recharge themsepves after being discharged due to electrolyte absorption
I built a lot of content for the site
Like gatorade? They drink gatorade...
Brawndo
Niceee
:3
So many greenies
"this is a story about a wide boi who does physical cyber security"
Brawndo, it's what ICs crave.
Simple Sabotage Field Manual by United States - office of strategic services {CIA declassified}
https://www.gutenberg.org/ebooks/26184
thanks to 404 Media article
@silver sky reading material
Already read it
oh ok
Physical cybersecurity? Does he beat up hackers?
I love how every time a new graphic cards release you get the flood of ebay listings:
Please note that this listing is for a high-quality photograph of the NVIDIA GeForce RTX 5090 graphics card. The actual graphics card is not included.
I break into places.
damn, 80 years old
thats like
4x my lifetime 
The concepts are still relevant
Punching firewalls away
he is like Deviant Ollem , physical pentester
oh sure, just makes me realise how young I am
Who needs to bypass firewall if you've got physical access?
$5 wrench
She does
The pwnagotchi eats WiFi connections right and the more it does the better it gets
Is it the pwnagotchi Iโm thinking of
Does that mean itโs self learning ?
Or self evolving
It noms on packets
And malware does the same thing right
It self evolves
I was just thinking about something is all
It digests them and takes on that information right ?
Physical penetration testing would be a dream
That badge capture game on point?
Don't even do that. We just intercept the readers and repeat the access cards
Fun one.
Apparently a lot of deployments are just left full time in set-up mode so they can ingest new readers.
So was my information correct
Controlled by a close WiFi network
Pause
Hmm, that'd be a fun Wardriving toy. No pwn necessary, but the more complete their map for an area, the more evolved it becomes; bonus points for being the first to discover some signal in an area, bonus awarded after some number of other verifications made to the API.
Could integrate with WiGLE
Ayoooo
Yeah I was actually talking with Ai to design something else
That's cute
Alright, time to do a hashcat test in the new Kali VM.
Reminds me of the growing home-lab enthusiast designs based on a 10" rack design.
Just big enough for some mini switches, itx boards, and SBCs.
Just finished SteelMountain ๐
Someone mentioned that they do physical pentesting, I was simply stating I would love to do that, don't make it weird
i am need more podcasts, please tell me some that you enjoy (must have RSS)
I do it freelance
It is in fact, what I consider one of my dream jobs.
I never considered this option and now want to look into it, thank you for enlightening me
Gave +1 Rep to @silver sky (current: #38 - 233)
I do have a question tho...does "unquoted path" priviledge escalation on windows mean that i could have renamed that binarry for instance "Program" and not just replace the binary on that path in steel mountain and it would still work any ideas ?
i found a list
https://www.sans.org/blog/cybersecurity-podcast-roundup/
This blog post features a list of 21 of the best cybersecurity podcasts in 2025, covering everything from hacking and malware to data breaches and privacy. Whether you're a security professional or just someone who wants to learn more about cybersecurity, these podcasts are sure to keep you informed and engaged.
Well I'll be honest, it's not ideal as a full-time job
Oh I like my current position and it pays well so I wouldn't want to do it full time right now at least
Gregor from ?
You wouldn't really be able to do it full time. There's literally not enough work to make it work full-time or as your bread winner
Yeah i wouldn't expect it to be. In all honesty I just wish it was part of my current work duties lol
I'm assuming you mean my country, I'm from USA
I uh set my alarm at the wrong time and now woke up 2 hrs too early
new color? ๐ฃ๏ธ
๐ ๐ ๐ ๐
Yup thanks ๐
Gave +1 Rep to @gleaming grove (current: #515 - 11)
How come I canโt join the voice channels?
you arent verified
You need to verify first
@round flax
There we go
welp it is the time of nights where shadows disapear from the internet for a few hours going peef poof meep moop to beep boop for sleep sloop
Karev is now ๐ฅ
@mossy river I'm sorry for the ping, but maybe you're interested ๐
ethical hacking?
Hey, please don't promote here:)
Cyberpunk is such a depressing game ๐
A happy ending? For folks like us?
HA
V is absolute winner
johnny silverhand is honestly his best role ever
yeah john wick is cool and all
but he played johnny so damn good
also the strong mr robot/fight club vibe
"hello neo"
Re-open the room, give it a try.
Experimentation is the master of tutors.
sup people!!!
I want shawarma!!!!
Hello ๐ everyone
Be the middle eastern food you seek? New career trajectory, put down the keyboard and pick up the spatula ๐
I'd somehow try to juggle both.
Make a restaurant where to access the menu you have to hack the web
Perfect.
Trycookme
Hmm, I wonder if the Trycookme academy could get a Tryhackme endorsement.
Hello everyone!
Hello World
I live in the middle east but I'm not home now
Heโs always sleeping in the bed
I love middle estern food
Mine is sleeping on me
Aww
Found this cat a week ago it wont leave my house i guess im keeping her now
She looks smart
yeah shes so well behaved better tha my orange demon
aye a clever one, this cat, i can see it!
Bet she can do a medium ctf
She just doesnโt want to pay taxes
does anybody? ๐
Fr
Some virtuous person
๐ญ
Why is she your pfp btw
๐ค
hello
hi
hi
โฟ
anyone know how to pull ips??
I really need it and I got a reward
i think @mossy river knows
sup
its been some time indeed.
you still growing carrots
nice
due to some unfortunate events havent been able to
but prepping
what you upto nowadays?
just hacking on THM
green team ๐
dev is a good place to start, you can make a transition from there on
stealing that name for my next project
that's perfect you already are root ๐
i'm in!
This is why Princess Peaches turnips are so powerful. They all come with root powers.
So got passthrough working on my Qube, but not Opencl working in the specific Qube that I have Kali in. I think this is more an OS config issue. I'll have to poke through the specifics.
Also, while poking around at solutions, side adventure.
sVirt looks pretty interesting/promising.
๐
Not wrong ๐
I have my qubes abandon, not much time to play with it, I have more pressing issues ATM
It's a weird setup because it's using the FC kernel provided by Qubes.
Since I only have 10Mb Internet I don't feel like starting a new Qube from scratch right now.
But if the only thing I don't have working right now is the graphics card acceleration for hash cracking. Not a terrible place to be at.
Qubes is not an easy OS has so many nooks and crannies
Yeah, I do a lot of virtualization and hyperscaler stuff, and linux support etc. at day job.
So playing with Qubes has actually been a rather significant boon to my learning.
Playing with this Qube in particular though has me wanting to 1) Get this working a little better/understood a little better.
- Play with Qubes Server.
One of the scenarios I support is driver development.
And if I could make an easy interface for the access just to the spawned Template, I could make some very usable testing systems.
yes, I friend that is in cybersec and know I'm a Linux man told me about qubes back in 2012, I've been dipping my toes every since, but I never went fully into it, so many thing so little time ๐
If a room doesnโt provide an attack box or login user credentials, is it safe to say it wasnโt intended to be accessed via my own machine and I should just use the included machine from the website? Or am I expected to be practice what Iโve learned thus far and gain access via exploit?
And Xen is just one more hypervisor to understand the nuances of, and the qvm ontop of it.
I have a intel i7 noc with 64gb with qubes ๐
Which room ๐ ?
JavaScript essentials
Not every room will have an attack target machine.
Some are just informational/training.
Some present just a website.
But other than that, any that spawn a room vm and provide you the room IP, can probably be interacted with in some meaningful way from either an Attackbox or personal VM.
Yeah , in this room you only need the provided machine ๐
no need for AttackBox or exploitation
What I thought. I mean I wouldnโt put it past THM to say, โhereโs easy access to the room to study the next set of materialsโฆ. But if you want you can try to break inโ ๐คฃ
When I'm uncertain what type of room they're trying to present me, I skip down and read the questions.
Good tip, thanks!
Gave +1 Rep to @split compass (current: #60 - 143)
Thank you for the input
I entered the wrong class today 
hey everybody!
Hereโs some positive words for anyone who needs to hear this;
โIf you could lay out all the struggles youโve been through, the things that could have shattered you, but didnโt, youโd see thatโs what connects you to every hero in every story. Itโs not the challenges you faced, but the fact that they didnโt break you. Keep pushing forward.โ
Morning
hi bella! how are you?
Thanks for Monday morning motivation ๐
Gave +1 Rep to @tepid lily (current: #2645 - 1)
Hello people
Tired, but that's life
indeed ๐
Hello
Does anyone having issues with wreath?
I can't download config file
500 error
Have to meet early today
I hope it goes well ๐
Me ๐ฆ . Some other users also reported similar issue ๐ฆ
Man i waited 7 days
For that
Sadge
post it in #site-support
Guys whats yall's opinion on youtubers like Low Level TV and John Hammond?
What's the best source to rely on for cybersec?
Can you recommend some books
go straight to the intelligence feeds 
no, i dont read too, i also use youtube to learn 
๐ญ๐ญ
Which youtubers do you watch for it?
ik this John Hammon , sometimes i watch his videos
hackersploit
idk if he is still making videos
u have David Bombal
he has some good info, but i think it will depend on what u trying to learn
do enough rooms and youll see that name around thm too
youtube videos will give you basic info about something, you dont actually learn anything
its like trying to explain to a kid how things work
on youtube you will learn how to use some script, how to create some script, u dont learn how the script works
maybe there are some youtube channels that u can actually learn, but , the majority is like teaching kids and getting views
just join the nsa
MOST VIDEOS ARE IN THE LIVE SECTION/LINK
Hello, My name is Stephen Sims. I'm a vulnerability researcher / exploit developer, and curriculum lead for Offensive Operations at the SANS Institute. I started this channel as a way to bring free advanced content to the community. I do a lot of videos myself and often have guests. I try and strea...
Check out Tyler Ramsbey, Antisyphon Training, Ippsec
Thanks alot
Gave +1 Rep to @elder peak (current: #335 - 18)
is there any free version of splunk?
Your welcome ๐
Not sure, maybe look into Wazuh

what's that
What kind of a part time job can Sec+ & CCNA help me land in 1st year bachelors? And how much should I expect in a mid sized city ($)
A free and open source SIEM
it is better than splunk?
I donโt know
Have you ever visited splunk website?
Hi chat
Hi
Hi
yeh it is said free but after some time it will not
How is everyone?
I'm good, how are you?
Hi tired ๐
What do you need it for?
to learn hands on practice for SIEM
Then you don't have to worry about the time limit of free splunk
Goodmorning bella
Morning
I am worrying they will charge me because it says free trial
It's without payment, so you can't get charged, you just have a license key that works for 60 days
oh ok so u can still use it without the free trial so what wiil I lost access to then?
Your account will be locked after the free trial
As in you'll lose access to their features etc.
oh so I won't be able to use splunk
Yeah, after the 60 days you would be prompted to pay
But for learning, the 60 days are enough tbh
Otherwise they also have splunk free which is a full free version, but some of the features of enterprise is gone and you can only put in 500mb of data in one ingest
https://docs.splunk.com/Documentation/Splunk/9.4.0/Admin/MoreaboutSplunkFree
oh ok
+rep @chilly veldt
Gave +1 Rep to @chilly veldt (current: #8 - 952)
You're welcome
should I start it now or I can start latter?
Morning
Morning
I donโt want to get up
thats a feel
Just sleep again
Hi
I canโt, gotta take my kid to school
Her attendance is terrible
Mine is as well
Itโs Monday
You gotta go and learn some stuff
I am quite literally in Spain when my classmates are at school
Learning is important
Isn't she the third grade?
I remember you told me that
We do years not grades
Third year
I donโt think I did tell ya
Ah
Morning/ evening all
Did it not occur to you that I may be studying in multiple places.
๐ Greg
Dang it
She is good
How's chat
Alive
Hi, I just did SOC Level 1 and want to start pentest what learning path should i follow now..? can i start "Web Application Pentesting" and then "Red Teaming"
If you're interested in SOC activities why don't you continue with SOC2 ๐ ?
somebody has coffee on this train, it's disgusting.
You can smell it ?
Iโm just having my tea
Well, yeah, coffee is a strong smell.
suppie sup
yeah that a good idea but i also wanted to explore other fields...!
You can go with Jr. Pentester then but I would recommend you to finish Cyber 101 first also if you haven't done so already ๐
mornin
hello
just wanted a little bit of instruction
i just started thm but dont know what to do
What do you need help with?
btw, i'm using the free version
i've completed a few rooms but now i'm stuck
i dont know which room to complete now
i' following the free roadmap but it feels boring now
Jr pentesting - pentesting, webapp pentesting - red teaming
i've almost completed all of the free rooms of the roadmaps
currently at red team fundumentals
yeah, i did that and i though that i should start basic pentesting but i cant complete it
is it good?
yeah,its free
yeah
sorry, i'm not just stuck at any tast, i'm stuck with every task
should i try it too
wanna add friend in thm?, that way you can take a look at which rooms i've completed
i've sent a friend req to ItzDavi username
I like the smell in Starbucks but you canโt really call it coffee
Are you calling Starbucks its own species of coffee?
goOoOooOood morning ๐ช
im team black coffee ๐ฟ
A glass of tap water is undoubtedly the best starter for a day ๐
My cat starts purring if you talk to him from across the room
Itโs more sugar and cream than coffee
Whatโs the actual percentage of coffee in Starbucks
I'll talk to him about hacking and he'll run away ๐
Enough to be considered coffee
1-2 espresso shots
which is the same as any other barista place
Yall ever feel like, "Why can't I solve this room in 1 minute?"
Weird I canโt find any answer on google for my usual which would be the white girl special. Caramel coffee frap ๐
Yes, and then I re-read it
Obviously don't go swimming in frozen lochs/lakes. ๐
I love em but Iโm not spending a fiver on coffee
I wake up, drink a glass of water, have a cup of coffee, and go for a run ๐๐จ
only coffee I drink is the one at work
I canโt drink coffee like that anymore
Too strong
Will make me shaky
where is live there is no snow
I find it gives me better typing speed
it's a 2 shot latte
Do you guys prefer a hot or cold shower
I used to say the opposite
in between
The normal coffee is better made by me
Coffee in general is the way to go, you need your own custom espresso maker
I used to drink so much of it back in the day
i had that with energy drinks
Your starbucks dont serve things like americano?
Now I drink tea
I donโt drink that
Iโm looking at writing a software
Started researching last night
What language?
Python
it may have like 1 shot of coffee which is blended in, a typical frappucino, something like strawberries and cream, doesn't have coffee in it at all
Oh I already know what Iโm doing but thank you very much
Gave +1 Rep to @graceful mauve (current: #515 - 11)
That's alright
What are you working on?
Iโve never had strawberries and cream
Itโs a malware hunter
On nom nom
Gib me that malware
Oh so it just searches for malware?
Time to download all the malicious hashes from virustotal and other popular databases
Good luck...
I've made an SQL generator, proxy chaining, race conditions, puppeteering websites, among others in python
That is actually what I need
What do you mean?
But I need an isolated environment
Ahh, you can use docker for that
I was so happy when I got my own room
Throw the whole auto correct in the bin
Docker in a VM or cloud instance
Docker is not a security boundary (or, shouldn't be used as one).
Docker in a VM is better.
Malware in Docker in a cloud instance is likely to breach ToS
I don't know a single cloud platform that would allow it.
There's a hell of a lot of it, and they're unlikely to like you scraping the samples.
Not if you download the hashes and install them on your host machine?
The malicious hashes can be stored in a cloud instsnce
Best bet would be the VXUnderground hard disk
Does that go against tos?
I tihnk VX has closed their downloads for now.
Have they stopped shipping their physical disks?
Yes, to refer to the malware and then pull the actual file associated with the hash off of online resources
But if someone else has it downloaded could it be copied
I don't understand, does that go against tos?
Then yeah, no one is going to object to you storing hashes on a cloud instance ๐คทโโ๏ธ
My point
You're relying on somebody giving you the copy VX give.
๐๏ธ๐๐๏ธ
End of the day though, this is what VirusTotal is for.
If you want a way to just grab a sample by hash, that's one of their main purposes.
Get a license, and job done.
They want to play with the malware
Oh
Your point?
๐
Or do you not want to play with the malware? @rapid merlin
Not exactly
I want my malware to play with the malware
โบ๏ธ
Heh
Along those lines
Ahh fun
Which is what I want to create
Well you need a kernel level driver for that
It's not easy, how do you plan to do it in python?
Python doesn't communicate with hardware, does it?
... Pardon?
You want to code a kernel level driver in python now?
I have just noticed those eyes do not match up
say what now?
Why do you need a kernel driver here...?
For a program to communicate with hardware??
