#general
1 messages · Page 854 of 1
oh no, not the dreaded topping war 😂
no, it's base on a really story. I love it, because I lived that time 🙂
As always, it depends on the context to me. 😌
I wouldn't consider myself easy to offend but I don't think it's a bad thing to be considerate of people who are more sensitive.
In a time of callousness I think it takes a lot of courage to maintain sensitivity.
Something I am jealous of.
You were around in cybersec for dial up?
Ello
Also, yeah I don't think it's in top 25 of things to make fun of
Or bad things to make fun of
Rather
not in cybersec, but I was in front of a computer I used BBS 🙂 I knew what a modem was way before the internet 😂
Bulletin board system?
yep
it was a kind of forum, kind of mail system, etc
What was hacking in that era like?
it was more exploratory fun, phreaking, was nice I can't say anymore without getting into troubles 😂
I got out of that before I got into troubles 😂
Since this is dead, I'm going to sleep, bye!!!
Good night 🙂 😴
now that I said I'm going to sleep suddenly everybody is answering 😛
Bye for real!!! I need to sleep it's almost midnight here and tomorrow I have to get up early
have a good sleep 👋
I’m learning Ls command
Now I have a program that I can specify an IP, and a port, if it's open, it makes a sound, if it's closed, it'll endlessly try over and over
Now to break it even more and add so many unnecessary features.
asks for a feature that constantly monitors all ports and makes a different tone for each one open. Port Piano™ 🎶
that reminds me, I think an A and F note as a sine wave make a dial tone 😄
oh, slight differences based on region https://en.wikipedia.org/wiki/Dial_tone
A dial tone (dialling tone in the UK) is a telephony signal sent by a telephone exchange or private branch exchange (PBX) to a terminating device, such as a telephone, when an off-hook condition is detected. It indicates that the exchange is working and is ready to initiate a telephone call. The tone stops when the first dialed digit is recogniz...
😋
the jellyfish return
hello fellow 🪼
netcat
i have emojis to use

hmm
rustscan?

i dont have rustscan emoji, as there is none
rude
haven't actually use that
great for quick passwords for a themes website
cool
rude of me to not have a emoji for a tool i did not know existed?
yes very rude
no rude that it doesn't exist
what video is that?
this is the over view
In this video, I will teach you how to forget less and remember more of what you read, study or learn.
Join my Learning Drops newsletter (free): https://bit.ly/4cxLDeu
Every week, I distil what really works for improving results, memory, depth of understanding, and knowledge application from over a decade of coaching into bite-sized emails.
L...
what is the tl;dr ?
huh?
too long didn't read
that is very common to see tl;dr
where did you see it
wait where did this topic come from
No she's asking you what's the tl:dr version of what you sent
i was asking what is the short version of the video
exactly
yes, summary
basically how to actually learn and process information
that is the topic, asking for method
i think i need sleep i don't understand this
ohh
nvm
if i say, enumerate ports for website, that means nmap scan with syntax
its really hard to summary but
It's a summed up version of any longer version of information.
it uses a method called pacer
if you can teach me the bullet points then you paid attention haha
challenge accepted

wait didn't mean to send that
Shift + Enter = newline
i always screw it up
Information types
-procedural
--instruction information should be practice as early as possible
-analogous
--information that is indirectly related to a different topic
-conceptual
--information like facts, explanations, theories, principles,relationships, and application)
-evidence
--information like where,when,why, and how
-reference
--reference is nitty gritty information for example the exact name of a molecule
Let's test yahs knowledge. What keys do you press on Linux to paste into the terminal 
Is that for V-neck shirts?
ooh V-neck shirts
My fav
i didn't even notice i made that mistake lol
Couldn’t resist the pun
curl weight
30
whatever you want it to be, if i specified it would be a thread on how strong people are
ssh tyrell@ecorp
You think Tyrell had a weak password?
i think his password was || k1nkyB00t$mon3y ||
What’re you Elliot?
😎
can anyone recommend a decent web application pen testing checklist?
looks like i was on the right track, thank you for the validation 🙂
✅ validation
coming in blind 🙂
Good morning everyone
Good morning to you too 🙂 👋 🍪
🌤️
good morning
How are you guys?
good wbu
Refreshed, just like how I like it
refreshed cookies, freshly baked
Yesss
Thanks for asking , not bad for now 🙂 . You ?
Gave +1 Rep to @sturdy pike (current: #189 - 40)
lol
Slept early so feeling like doing the whole networking module and finish it haha
That's the way to go 🙂
gotta love the grind
# e-corp creds
username: jospeh.green
domain: e-corp-usa.com
password: holidayarmadillo
Thanks! Have to do a lot of stuff today aside from rooms too
Gave +1 Rep to @cloud quiver (current: #2 - 3185)
I'll save it for ya, and use it
I don't grind, the grind mindset is toxic, I study and learn haha
i do both at the same time
if it wasnt for school I wouldn't be seeing the sun for the next 16 days
gotta get good
You feel like you have the energy until you don't
can anyone help me in code review?
i used to grind useless stuff, so i gotta put that grind mindset to something useful
Good luck 🙂 🍪 . If you need any help feel free to reach out 😄
Try to ask guys in #programming channel 🙂
Thank you! Will do for sure
Gave +1 Rep to @cloud quiver (current: #2 - 3186)
Does any of the THM stuff go beyond OSCP? I like the platform and did the Tiberius Windows Priv esc course and found it helpful
I believe you might find some WEB and EXP content on THM, as well as PEN
not to mention the SOC paths
Ah I did hear about the web app pentest pathway recently. I might try it out
I found the THM Learning Roadmap really useful to decide a direction to learn
not to mention it offers a career quiz to help 🙂
all of it is super useful, even if to give a better understanding/perspective on related subjects
I read this as "revenge" 
Hello guys
need some advice here regarding file sending
almost 500gb of data needs to be sent online, its an iamge file for an activity
but I am an online itnern
is there a way to send it?
without tampering the metadata
damnn Im getting nervous I might not be included in the activity
so sad
Typically sending large amounts of data in general without tampering with the metadata is best done by cloning the source and transferring it onto physical media storage to send directly. Of course - that'll still alter some metadata, but it'll be minimal. I assume you don't want to forensically image the data because that would be very inconvenient for whoever you're sending it to.
thats the challenge now 😦
techinically still correct, reverse engeneering, revenge
i infact do
does compressing the file work? like zip
Compressing a file always results in alteration to the file's metadata unless specific precautions are taken.
You may be able to preserve most/all of the file's data using tar compression since it uses archival instead of compression, but it will not help much with the file size; it will just make the transfer marginally faster.
does it have to be online?
cause i dont think thats possible
there are a lot of handy unix command line tools, especially dd
wait how do you know?
Very nice, thank you
Chat, I keep adding IPs while making ssh connections, but I would like to clear them out
How to
What do you mean? Like from known hosts?
yers
pog
I'm used to getting 88-105 pts per room, just finished a snort room and got over 1000 pts. my eyes were like 👀
It’s one of only a few that still give 1k or near 1k
oh no, i thought I was finally gonna start making big progress
Toolboxvim 😉
gonna try this now actually, because I've been putting off learning Vim for too long, I'll go out of my way to make sure I have access to nano 😂
It’s like 900 pts iirc
There is also vimtutor because that room isn’t going to get the job done. Vim is such a beast of commands
although honestly just learning the difference between using command mode and insert mode is kind of the breakthrough moment. And from there you just expand what you can do in command mode
awesome thanks
Gave +1 Rep to @jolly aspen (current: #83 - 94)
but yes vim knowledge is a huge benefit in many common Linux apps. So many common keybinds
How do you search a man page? Same way you do in vim, use /search term
THM people, good morning 
I will say god help me if I ever need to use vi instead of (n)vim though. That is never a fun experience, and typically the first thing I install on a ransom setup if it’s really missing
I will say Phineas and Ferb is so much better than it had any right to be. Fantastic writing
I was much too old when it was new so I had to come back around to it as an adult
Phineas and Ferb works at any age
Ransom 😮😲
indeed, although probably not teen who thinks they’re over cartoons…
but that turned into adult who’s 100% into cartoons
I was pretty lucky that I never had that phase as a teen.
I've loved cartoons my entire life.

I went hard into TechTV, History Channel, and informational stuff as a teen, back when those channels either existed or actually had educational content
God TechTV was awesome back in the day
the truth about aliens
Yep for sure
Today's msfconsole art
History channel got to be a haggard, alcoholic tho
The G4 merger was done well and for a time it was all good, perfect merger of video games and tech… until the Cops and Cheaters and “let’s make this a MEN’s network” stuff happened lol
How's it made was one of my favorite shows growing up
Back in the day Modern Marvels was the shit, especially Engineering Disasters lol
There’s a reason I’m absolutely addicted to US Chemical Safety Board YouTube videos lol
The real modern marvels are aliens tho
ugh lol, I hate to say they probably went there even with that show
lmao
back in the 90s and early 00s tho, good shit
"This is burj khalifa, it's blueprints were given by aliens"
“Ok, so history is tapped, let’s uh….aliens and ghosts never die so that’s gold”
I remember one year reciently on D-Day, History Channel used to be end to end WW2 stuff… nah it was all Storage Wars lol
But yeah it’s just sad lowest denominator programming
So many aliens, we need a second history channel
Everyone learned from MTV’s awful decisions and went with it
Entertaining stuff
But there’s a reason I haven’t had a TV subscription in over 15 years now
Kinda sucked 90s was like the last gasp of decent TV programming. Sure we had the modern “Golden Age of Dramatic TV” in the 00s but that was a handful of blockbuster shows amongst the wreckage
and even that has died due to oversaturation and more
Tv died with road rules
Creators were passionate at that time, now it's just a cash grab
I’d say MTV’s “The Real World”
never even heard of road rules
It was like “the real world” but in a winebego
But yeah “The Real World” was the first to be like, wait we can just pay randos to do “real life” and like loosely script it. It’s so cheap!
It just indeed really sucks that every single speciality single topic channel went the MTV route and generalized chasing the same dream
“Oh sorry, we actually don’t care about our core demographic, we just want lowest common demonainator viewing”
Meanwhile YouTube as viewed on TVs has passed the threshold of more viewers there than on phones and tablets, which is 
because what do you know, you can get stuff extremely specific to your own interests there
Yes, as I said above, 90s and early 00s
Yes, ironically it was a historical time
lmao
I still watch some classic episodes of Modern Marvels, that show rocked at the time
my partner and I watch youtube videos on the tv either in bed / in the lounge while we are eating over normal tv shows because we can watch something specific
It's always the people that slept through history class who believe in the ancient aliens stuff most
Dont talk about our ancestors like that
it did always crack me up that the Ancient Aliens dude always did his hair up like a Centari from Babylon 5
Hey can anyone help me in retreiving my insta account
nope, against the rules to do anything unethical. best to contact insta directly
only meta can do that
"Meta this, meta that, have you ever met a girl before?"
lol you can see the progression:
The best waifu doesn't exis-
I watched some youtube deepdive on Ancient Aliens and apparently the guy claimed that aliens at one point were procreating with human women
lol bet you that was AI generated too
“First episode was good and all, but we’re gunna need you to be more believable….here is some hairspray”
Conspiracy videos are like ground zero for AI Youtube slop
I don't blame em
How do you think we are alive today? Hmm
Yes, actually it's my art account. Around 12 days ago both the password and email was changed. And now he sending some fisshy website links to friends and followers
the vid came out before AI came to snatch our collective wigs
Is there a lore reason why the secure ports are numbered after 400? Correct me if I'm wrong
@mossy river
yeah, still can't help, sory
Still slop 
must be why my head is so misshapen, its the alpha centaurian in me
K no probs🫡
Nop. We already on The Zeta
yay thanks I won't be late for my train now bye
Gave +1 Rep to @sinful moon (current: #34 - 276)
Wrong demon summon
Nah that batman beyond spin-off was canceled in 2002: https://en.wikipedia.org/wiki/The_Zeta_Project
get with the times yo
Isn't that the one with the spiderverse type animation style?
i say pulling a random show no one remembers out of my hat
No? It’s all roughly Batman: TAS styled, but a bit more 00s
You know a tv show has insane lore when the first thing you see on the wiki page is 'the September 11 attacks'
traditional animation and no digital ink/paint
well at least I think that’s the case for at least early Batman Beyond but I may be wrong
traditional animation either way, I’d have to watch some to ensure no digital ink and paint
I think you’re right
mhmm, either way, fantastic shows
I love what they did with Batman Beyond. WB was like “um we really need a kid Batman to appeal to the younger demographic”… obviously kids loved Batman: TAS as much as adults, but…
The Batman: TAS team was like, okay instead of dumb kid batman, we make him a teen in a dystopian future with old man bruce wayne as his teacher
Any good challenge rooms for beginners, I gotta make sure I don't forget everything I've learned so far
Why is the Legend - Guardian jump so big lmao
Like “kid batman” could have been such an awful idea if they didn’t execute it so brilliantly
Batman beyond was black paper with light inks
Ah so thats why I see so many OxDs here
Wait, what gets you the credentials in IMAP? I gotta check my notes

Well that is categorically what Batman: TAS basically invented yes, but they may have moved on to digital ink and paint by then, I”m not 100% on that
Well, until a few weeks ago 0xD was the highest
Fr ?
Oh, gotcha, you use your credentials to send a mail which in turn gives you the credentials if the network is being monitored
Yeah actually gave me a reason to continue grinding
I'm just happy if I progress beyond 0x8
Tbh I think hacker is a dumb rank name, im barely a skid hehe
although all levels above 0xD are still the same green on this discord lol
I put the skid in skid marks 💯
Oh hell naaaah

Perry in green ?
I'll be level 8 soon
Naaah
why r they all green lol
wish I could keep my yellow name colour
Potato 🥔
They just copied the 0xD green for all newer roles
Guru was blue and it was good for my Perry

THM Discord really needs a helping hand in not only color choices but color theory and design
they need to change it, brat summer was 6 months ago
Only way for blue is to go back
Which colour would be good for my cookie?
I can loose points ?
Hello bro .
No Perry lol
you must make this unending march to the same green as me

Green of doom
Yeah the red matched my old avatar really well, I miss it too lol
I’ve been holding out
The eternal green
I think im a wizard next, not sure what colour that is
Wizard is pink?
ur a wizard harry
I'll go to pink after purple?
Pink is hacker wait
Yes
Dark green
Nop wizard is a slightly darker green than 0xD
oh ok, i can live with dark green
Yeah 0xD green is the lighter of the two
but seriously THM discord need to get on that color science and good use of color palettes
I mean com’on Who chose the color palette? The history channel??
I have issues with the THM role colors, and they’re all too stark and extreme against both white and dark backgrounds while also being displeasing
^ me irl
Mythic should be black
As it's the singularity
although just me alone marching up to the gate… and being turned away
Hunger strike for better colors!
Why did this remind me of the area 51 run
We'd probably starve before the admin notices

Area 51 the video game better
What ???
I’m sorry to inform you, but you’ll likely be the one eaten first
arcade game I should specify
A game ?
Yeah it’s a light gun shooter
2005 DAMN
I mean the 90s one
1995 for PS
Ahh, I forgot, I'm a cookie
That's history
lol so am I
Yea. No hard feelings tho
ya’ll missed out, the 90s were freaking rad
imagine growing up right when the internet was getting started
I understand...
Imagine the fun

It was loud and screeching
It was better than it is now, that’s for sure lol

I do miss the days of waiting hours for the very first meme’s to download
People just made fan sites, personal sites and similar, it was a much simpler place
if you wanted to put something out there, no social media, you had to make a web page on GeoCities most likely as your easiest in
Should've been on the cybersec grind in the 90s instead of having the audacity to not be born yet
the audacity
lol
lol I was in the infosec grind in the 00s but there was zero clear career paths for that at the time
Audacity mentioned!!!
it wasn’t even a thing besides advancing through other related fields
Everything I've heard about the cs industry before it blew up makes it sound like the wild west
Everything was mostly done manually on paper and what were you gonna hack? Game points?
lol hush ronin
It was the wild west
Not touching THM for the rest of the week
Nice
Now also but with more feds
Nice to know I'm not the only childish one in this server
But yes the 90s and early 00s computing, but especially Internet wise was the wild west and it was lovely
The week changes by the day tho
😐
I've answered a lot of questions this week, I should definitely slow down my pace of learning so I absorb more
Now it’s depressingly corpo
Sorry to be the bearer of bad news
Leaderboard of another CTF wesbite
Have you been taking notes? I do find that helps
I stopped
@pliant onyx I'm the opposite
I take notes a lot
I drown in my notes
Where obsidian
Looks good as well!
Once you get used to Obsidian there is no going back
Thanks! Have yet to organize it for this week, Once I end my rooms, I forget, I do the bare minimum so I know what goes where
Gave +1 Rep to @sinful moon (current: #34 - 277)
imho tho the biggest mistake you can make in your notes: trying to turn them into basically wikipedia articles. You don’t need that, you should only take notes on what you need to remember.
But everyone is different, just don’t fall down this trap that caught me
I never touched again any other doc app or program when I switched to Obsidian
Try it trust me
It's damn cool and helpful
I’ve written (informal) incident reports for work in Obsidian and exported to PDF lol
Me with my goofy ass apple notes app
Howwwwwwww
Sorry, I feel like i've sinned by being a macbook user
I have used LaTeX before yes
The pain.
PAIN.
You can use Obsidian on Macs lol
This is a sign I feel I should compress my notes, I'll go through them again for a revision
2 coins of the same side
I have one, so does Ellie
mhmm
+3
I should probably start learning sql for realsies
I'm a creature of habit, i use it because I always have
I know right, the counter feels weird, till yesterday it was showing 113 questions answered, but now it shows 98
This is my upload speed
imho it is up to your own note taking style, but me going overboard is something I noticed on my first go-around of note taking with a Knowledge Base like app
obsidian
it changes day by day
At least someone's bouncing
I’m not saying you need to clean that up, but just don’t get stuck in a loop where you think you need articles because that’s what you’re used to (me, guilty as charged)
once again I'm tempted to make an immature bouncing on it joke

It was intended
It was from the sale countdown
I’ve heard “smart notes” thrown around in note taking communities, instead I take “dumb notes”, aka literally just the notes I need to remember something
Implied even
I was typing out the notes before but it was taking a hell lot of time, I figured that if I copy and paste them but breaking them down at the same time will help, and it does
Yeah sometimes I’d just copy paste entire THM or Wikipedia sections and…. that’s not honestly good note taking in my personal opinion.
I try to at least write things in my own words
Blasphemy
Just take notes with enough context and etc, for what you actually need to remember at a glance
but everone is different in their note taking habbits
You got me! I shall start following the important notes structure then
mhmm, I just found it wore me down over time and left me with ineffective notes for quick reference which is realistically what I needed
I read “hobbits” and thought, my that would be convenient
Oh, I just copy the important and technical stuff, not the whole article but I get what you mean, gotta put more efforts in them notes
If bilbo could just wright my notes
lol my whole philosophy is putting less efforts into my notes ironically
otherwise I go overboard and document way more than I actually need to spark my brain again
broooo I'm a horrible note taker I write the whole ass us constitution for every room I do
Are they notes or just a copy pasta of the whole document?
I mostly remember what the stuff means after I do a practical of it, but if I still don't, I found it way convenient if I revisit the whole topic as I'm not in the hurry of a quick reference
i rarely take notes and its evident in my uni grades
well for like, documenting what you’re doing on something? That’s kind of perfect, I was just meaning general topics
I thought putting more effort will do but I think I'm okay at what I'm doing lol
Keep in mind for IT, probably won’t matter what field you get into, you’ll run into tickets eventually. And you do have to have a record of everything you did.
I don't go overboard, but if the notes seem sophisticated, I try to open them up
Sounds good, but also just keep in mind, this is my own opinion on note taking, everyone is different.
For me making complex notes for my own reference was a hindrance rather than a help, is my only concern
Yeah I understand, which is why I try to integrate something useful from everyone's style, and I ask people who I think take efficient notes
I add tags so they're easier to find, there's a specific keyword for every note
mhmm good stuff
It’s fun to think that Ellie just had a notes conversation with a real cookie
well a silver gilded one
Fancy cookie
Lucky Cookie
I am moving back to Obsidian but currently and especially for work, I use Logseq, which is much the same but everything is a bullet point which is nice but limiting.
The main feature that made it critical for work for me, was a new note for every single day, which Obsidian now has but didn’t at the time. Using each new note for each work day, and linking back out to more complex ideas and projects is kinda how I structure my work note taking. My work notes are pretty darn slap dash in comparison to my personal ones, you just don’t always have the time
Still this has re-enforced to me that ordered lists freaking rule for structured data that you’d get in a place of business quickly
I follow the linking and breaking down of more complex ideas, idea, it works wonders for me, been following that methodology for around 10 years now, it's so much well maintained if you're diving down a rabbit hole and can just click on the links for reference
another thing about note taking... you dont need to remember EVERYTHING. dont pressure yourself into thinking you have to.
Mhmm, it’s invaluable, although you may cry how your work notes kinda of break down under pressure if you don’t already work in the field
mhmm
That’s kind of what I was alluding to, imho your notes should just be enough to spark your memory and store things like the odd command you aren’t doing super often and etc
well said liz.
Oh I don't, I just remember the activity I did, some theory and a few keywords, it has enough info for me to connect the dots to spark the information flow
I memorize a lot of terminal/cmd commands, but yeah this three liner I need to look up every time:
w32tm /config /manualpeerlist:pool.ntp.org,0x8 /syncfromflags:manual /reliable:yes /update
w32tm /config /update
w32tm /resync
literally just set sane WIndows NTP settings on a server
Totally agreed, I was just going over an activity where it asked to send an email through telnet using the IMAP, just had to go to the IMAP notes, read the definition and it instantly clicked
mhmm totally fair
For cases like this, I have a cheatsheets and shortcuts folder in which I store commands I want to remember, I link the notes to the designated topic, really helpful
For me that’s just “Windows NTP” as a note but yep fair
Fair enough
I can’t always garuntee I’ll learn something whilst on my work computer to make any other kind of reference of it
That's fair, for quick access it's great, these are my personal notes as I've yet to enter the field as a practitioner
Mhmm, I will also recommend, when it comes time, make a completely separate Vault for your work stuff. Segment that stuff completely as much as you can. Proprietary work info and your actual (personal) professional development should not touch ideally… if possible
lol that is if work even allows you to use your own note taking app, who knows
Anyone got go to questions for a cybersecurity position interview
I like clear distinction between stuff so I won't let them touch so no worries about that, thanks for the advice! Also, can I send you a friend request? Because there will come a time when I'll need advice on the stuff I'm doing at that time.
Gave +1 Rep to @sinful moon (current: #34 - 278)
If I’m being cynical, you’re probably going to be interviewed by HR rather than technical staff. But realistically not off the top of my head, no
We'll have to see at that time lol, but why wouldn't they? Slack enforcement?
what makes you interested in cybersecurity?
Yeah feel free to send the invite, @sturdy pike, no worries! For context, I’ve been in the industry for four years now
Yea i think they are hr but i dont really have too many questions prepared
Answer his question, since many will be either general or about your qualifications
Sent, also, I'd love to hear your experience in the field
yeah i just mean at the end when they ask if i have any questions
need something to show interest
guys what macbook might be the best for pentesting?
is macbook air enough? or do i need the pro?
I think I'm in LOVE with TLS now, it makes me feel secure.
omw to perform a TLS stripping attack
/j
cryptography, safety in numbers 🙂
01000111 01101111 01101111 01100100 00100000 01101101 01101111 01110010 01101110 01101001 01101110 01100111 00100000 01100111 01110101 01111001 01110011
good morning to you too
Nooooo, my loveeee
This isn't hardware demanding field , those will be more than enough 🙂
Good mornign to you too, damn it beat me there
Ah yes, now I'm a cryptography cookie?
ngl “why are you into cybersecurity” is a funny question because it’s hard not to answer without sounding evil 💀
You're a session cookie
oh i see. Thank you for answering
Gave +1 Rep to @cloud quiver (current: #2 - 3192)
interesting you say that as cookies can have cryptography 👍
just got to step around those teen years carefully when answering lol
I'm a cookie
I'm going to steal you. 
They can be cryptographically secure right?
the edgy 14 year old in me periodically takes over and makes me talk about how mysterious my black hoodie is
lol
Jokes on you, I'm into that
I’m wearing a light blue hoodie right now, shattering stereotypes
im wearing a hello kitty hoodie, im the most dangerous hacker of them all
(apparently the only Hello Kitty emoji I have lol)
I'm wearing a grey hoodie
Sensitive cookies can have the Secure and HttpOnly flags to keep them safe, but I don't think any additional cryptography is typically applied on cookies
Light blue h4x0r 
I am black hoodied
They could get fancy with salting and hashing, but they indeed often don’t
So if I steal cookies, will your credentials be mine?
yes, we call that Infostealer Malware
But why do I have to steal them if I am cookie myself?
No, sites don't normally store credentials in cookies
Mainly stuff like session tokens
how people feel after saying they wanna be a black hat hacker and steal people’s bank account information
Depends on which cookies you steal too of course
So indirectly I'm still getting access where you like it or not
Session cookies are valuable, GA cookies are not
"If there are defenders there needs to be attackers right? That's all I'm doing, giving them a job."
This conversation is now level 9, and I"m still level 7
And yeah the Infostealer malware knows exactly which cookies to target, how to extract your Chrome saved passwords (bad user), Edge saved passwords (bad user), etc
@sturdy pike this is a fun room if you have not yet seen it https://tryhackme.com/room/sessionmanagement
Marvel wouldn't exist
if there were no bad villains
huh?
In the context of cookies, what does GA stand for
bad villains?
put < and > around the URL if you’re not going to click the remove embed
Thanks for the suggestion, I'll do it after I finish wireshark
Gave +1 Rep to @lime ledge (current: #206 - 37)
"If it wasn't me then someone else would be doing it" - was my mentality on why I hacked for a LONG time lol.
will note for future rickrolls 🫡
I don't remember who I got that from but he was a legendary hacker/phreaker from the 80s.
Edit; It was phiber optik aka mark abane.
google analytics
Got it
that's how ads are loaded
Unless you’re using an adblocker <3
hi guys
Hi, Light
i want to play the red team capstone but for some reason i cant download the vpn for the network anyhelp or idea why ?
hey
I had a port matching exercise just now, I followed my gut and got them all right
Probably more of a question for #site-support honestly
@sinful moon can I PM you some ZX Spectrum pixel art?
sure!
speccy art is wild when the break the color bounderies
or even when they don’t
Congrats , great job 🙂 🚀
Hi , welcome 🙂 👋
Those may even be overkill . Any newer laptop should do the job 🙂
My pentesting server is 2 cores and 4GB of RAM. Terminal only but even then I think this is overkill for my needs indeed
Congrats , great job , keep it up 🙂 🚀
thanks alot!
Gave +1 Rep to @cloud quiver (current: #2 - 3193)
I've really gotta start looking into migrating to a good laptop setup.
I've done everything from a desktop thus far but I'm getting out of the house a lot more lately.
Thank you!
Gave +1 Rep to @cloud quiver (current: #2 - 3194)
Asus gaming laptops are one I can recommend, but yeah depends on what you’re looking for. Their Zephryus line tho does straddle the Gaming but still being an understated ultrabook well
do you think you would want a mouse, or can manage a trackpad?
Yeah I just got a asus gaming rig this weekend lol
Was totally worth it for multitasking while also doing cracking.
I've been thinking of getting a newer Latitude, I've heard good things about them from the people here. I used to have an oooolllddd Asus gaming laptop but there's a bit of an embarrassing story behind its destruction.
I'm looking to get a new laptop too, starting learning bug bounty through portswigger academy, and as I'm already learning thm, I've heard hackathons make a hell lot of difference in your resume, hoping to get it by the end of the year
Dell I still love and we are still a partner at work, but they are more and more hit or miss these days sadly
And I'll probably get a mouse. Trackpads are fine but I don't like them.
What’s portswigger like
I've worked at game studios where they just buy us laptops, and then have the keyboard, mouse, monitor hook up in the office
I guess it depends on the environment
some love the massive amount of screen real estate too
Hi
I was on portswigger main page for like a whole month at one point
Do you have an opinion on the newer 5500 series?
You could probably still find me on there
Just finished my electrical engineering class, will be around for the next 2 hours
Of Latitudes? They’re just fine, I set up two of them for our clients, but I never touched the device being 800 miles away so I can only answer how it performed remotely
I’m planning to attend a hackathon next weekend, I’ll see how it goes
I feel the same, especially if it is for a long duration
That more or less supports what I've heard. The hard specs look pretty good on them in terms of hardware, but with Dells the issue is usually the construction itself.
latitudes are cheap and reliable. great for everyday stuff. and also for hauling around if you dont feel safe hauling a high-end laptop around.
yeah Dell has kinda lost it’s luster over the years sadly
I still have 1999 and 2002 Dells that are working fine, but I doubt I could say the same about their current products
depends.
Damn, that's great, I feel like going there for some time but I'll have to manage thm too so I guess sometime later with SYN as KGB suggested
once you learn everything and find a footing, you will follow your own path and figure out what you want to from there
alot of people get too caught up on what they are wanting to do in the end but havent even got started yet
I've got a neurodegenerative disorder so doing fine movements with my fingers can get really painful after a bit. A wide mouse helps a lot.
We did get Dell Precision 7770s for a CAD focused client and holy heck those where a mess in every single regard
They're working fine? My lenovo is almost 6 and it's coughing like it has stage 3 cancer, it tests my patience by lagging so damn much
To be fair they’re desktops and they built them to last back then
I hear that, a mouse feels a lot more ergonomic
And when they do start, they think it's already too late and quit the field in whole
I can link my photo I always do but everyone is sick of it by now lol
fibromalygia?
my sibling has that, it sucks
@sinful moon any thoughts on this? https://novacustom.com/coreboot-laptop/
yeah it does, my mom has its sad to watch
Oh, my dad has one from 2005, they really are well built
you could do coreboot on numerous devices. Never ever heard of this OEM
Good luck Luigi!
I found out about them due to Qubes OS certified hardware
its crazy how much you forget over the years because everything changes so fast and so often
Good luck! You're a hacker now, and you're crazy fast
lol I got into THM to refresh my knowledge from the 00s, so you can only imagine. I did keep up with the scene but not to the same extent
@sinful moon why the 🙃 ? 🤔 😁
Next week you’ll be telling me NixOS is the best thing since sliced bread
sorta deal
Among other things. A bit of a fun case, medically speaking.
Qubes OS is vey interesting, but not practical imho
what OS would you recommend?
I've seen the updates, they were also rapid so that's fair
Did you want your apps containerized? We have a name for that, AppImage, Flatpak, etc, or if you’re feeling real spicey run them in FreeBSD Jails lol
chroot all the things
I don’t personally make OS recommendations to experienced users, since I use every OS I can get my hands on and my preference may not match another’s
I just realized, the s in cookies has a meaning which is secure or savouring, whatever you choose
ah! now you're talkin' 😉
tls makes you go crazy for it
That being said yes, I’ve been on Arch since 2008, but I wouldn’t recommend it unless you already know that’s exactly what you want like I do
Im sorry you gotta deal with that.
nerve pain is the worst pain.
I appreciate it, but naturally I've learned to live with it.
I've been chronic essentially since birth, my mother was not very responsible when pregnant with me lmao
Same here, exactly lol. Why my grandma had to raise me.
That’s unfortunate, but I’m glad you’ve learned to cope if nothing else. I know how hard it hits my sibling and for how long that went undiagnosed, so I can imagine
ANWAYS
I love watching people problem solve things I would have no idea how to navigate
Watching the process is really interesting.
You get an appreciation of the fact that people's methodology and way of thinking is super unique from person to person.
for me it’s “oh shit” moments like, something just went catastrophically wrong at NASA and the flight director says “lock the control room doors”. That’s when things are getting real
More reading up on history there, but it’s facinating
I'm forever greatful for watching the process, and learning to observe it, and integrate stuff from the uniqueness
This is also why collaboration is super important. Because people are empowered - and simultaneously limited by - their unique way of thinking, it doesn't usually cover every possible base. We're at our strongest when we're working together and valuing the input and insight of the people around us.
This is genuinely one of the most interesting conversations I’ve seen
also in the business world of cybersecurity... teamwork is SUPER IMPORTANT
probably one of the most important aspects of my career right now
Yes, which is why I try to talk to everyone and make possible connections, I always take it "They might not know something you do and you might not know something they do" as a mindset which gives me a blank canvas or a new connection, knowing what they know you didn't and sharing what they didn't feels great
sup everyone hows valentine's day going on
That is a good point, and honestly why some non infosec IT experience is great for you. Learning to work with other departments of IT is critical to your job
We're cybersec people, we don't have it, except some
Some is very optimistic
Yeah me and my SO will be reporting into our IT jobs today as normal lol
connections really help us achieve our goals
Mhmm understandable
just adult stuff for you
cybersecurity is all about connecting.. one way or another
never thought of it like that before
its just a giant web
Indeed, no one, not even some
Mhmm, and I can’t stress enough how much those connections can help with landing a job
Yes, which is what I like about connecting people through communities
I would say 90% of my tech jobs were through connections
It seems some members of the chat have achieved an epiphany. Talking the Dao of Tech offers many such benefits.
anyone who would like to connect with me as THM friends 👉 👈
They always say connecting through the LinkedIn train is the best way, is it?
I’ll be the cagey one who says, lets see how you interact with the community first c:
Not that we’re not happy to have you here
I wish I could revert to monke and not have to worry about connections 🫠
did I do something wrong lol
we need to help you verify on discord
with your THM account
Nope! But this would help indeed ^
If I was a monkey I’d probably be on the banana eating grind
I still don’t have a LinkedIn, but I’ll probably have to eventually. Been holding off on that because I dread, yet another social network. All of my job recommendations have been friends/family
I have a linkedin but I do not participate in that grind whatsoever.
Had a friend attempt to poach me twice for his DFIR team which I should have gone for but I wasn’t ready at the time
I'm already in state employment, I have nothing to worry about.
guys, what should I do if my attackbox keeps lagging even after I restart it?
ugh im being forced to have a linkedin
I hate LinkedIn
saem
same here 😄
It's just not a very interesting platform.
Why am I always getting 20 notifications about some guy’s hustle culture blog post
networking seems to be the hardest for me 😟
It's full of weird posers and people that are more concerned with posting irrelevant philosophical drivel than actually being interesting.
“my wife divorced me and it taught me a lot about perseverance and cloud computing”
my coworkers and I all use signal to contact eachother but they recommended us to use linkedin
for anyone jaded with linkedin 😄 https://www.shlinkedin.com/
Yeah unfortunately (or fortunately?) its the physical face to face element that has actually done it for me
networking is easily my strongest point.
and im not even close to mastering it.
For me specificly its harder since i wanna work in country that i dont live in 😄
are your networked acquaintances on a /24 subnet?
awful joke, I’m sorry
I'm... probably good at networking? I don't put significant effort into it, but I get a lot of leaders to advocate for me by just being helpful and trying to learn useful skills. I think making an intentional effort of it would probably do me bad.
yo I verified it can you see it now?
Yup
I don't see the point in it either, I have around 700 connections in which none of them seem active, nor do I see the point of having so many, it's free publicity for increasing numbers on a platform that works on numbers
Honestly just befriend people in the field, especially any chance irl, and you may be suprised
welcome to the community
thx
being helpful to others is the best marketing from my experience
Yeah I'm pretty good friends with some of the heads in our IT department, partly for that. It's a process that you can't force
Indeed and that’s great, but yeah just if you can expand that circle outside of just your immediate workplace, that would be even more ideal
But I kind of lucked out with an SO who works at an MSP and a close friend who’s a DFIR manager for a major institution as my primary examples 🙃
Just kinda happen to already know plenty more than that who went into IT
Yeah for sure. I've mentioned it before but I work in a state university so the workplace web here is absolutely massive.
anyone who would like to connect with me as THM friends ??
Ambition, Patience, and Communication.
Oh yeah that is actually great potentially
Sure, we can be THM friends
Feel free to send me invitation ;D
Those are the 3 keys for a succesfull IT career.
I’m jiafei8 on thm
I love that ❤️
Morning chat
@hollow rock do you want to add me as a friend of discord?
You can add me if you want 🙂
However I will caution on the ambition part if you’re at a really small org. Only take on as much work as you can manage. Or else you will wear “all the hats” so to speak
Just find your niche and fill it, but don’t keep filling niches beyond that lolol
Coming from Ellie, a wearer of all the hats.
and my nickname on thm is the same as here 😛
mhmm
I have over 15 years under my belt in this industry.
@cloud quiver whats ur guys username

A reasonable counter I will say to those fantastic three attributes, is also just learning “when to say no”. That’s actually a very difficult thing to do, but if you can justify why you can’t reasonably be expected to perform a task, it is helpful.
It’s very very easy to go all in when you’re getting started in IT, and that will look great for sure, but make sure you don’t burn yourself out by signing up to do everything under the sun
KGBTHM 🙂
why did I eat leftover chili for breakfast?
Im going to regret this before the sun even rises.
My condolences to your toilet
I just sent you a friend invite on discord 😉
Whaa
Cookies are sweet
🍪 have one
Cookies don’t fix heartburn or indigestion unfortunately
I didnt even know you could add people on THM
yep!
I've just looked up your streak and DAMN that's huge
There's button below skill matrix 🙂
Ah, so cookies aren't an answer to everything, cookies with milk then?
It's been there for years, nobody has seen it.
I'm removing it FIRST THING.
trydoxme
I have a friend in Canada and a co-worker as my only THM “friends” on the site lol
My friend list consists of Jabba and tim.
How come you and I aren't added on discord? I've sent a friend request just now
I don't add anybody.
neither do I
I don't want people to see the rooms I'm doing. 😄
Also thankfully my legal name is nigh impossible to find data on
same, my full name is so so so common lol
There’s too many other women with my exact name and I’m dramatically lost in the shuffle
mhmm
my first, middle, and last names are all super common english first names lol
so even if I wanted to hide in the forest, I can't, as I'm still a cookie in the forest
Damn everyone got a valentine except for me
My name is an unusual spelling of a common name
Yeah, it E-mails you.
I’m dropping OSINT hints 🙃
aye, I'm not having any valentine either
Alright what... it's snowing
that is some excellent privacy advocacy
I only ever added a coworker who worked in cybersecurity
Roses are red 🌹
Violets are blue 💙
Secure your data. 💻
Or Hackers will too 🥷
Ah yes, then I have the name of @carmine tinsel it seems
and they were so paranoid to not add me, even though we meet for coffee on the regular 😄
Well I’ll make sure to never get into an internet argument with you
Always mention the name doxxing too late smh
meanwhile my co-worker is forever stuck on Linux Fundamentals 3, never again to progress lol
I tried lol
I remember I did add somebody, they complained because it did give out their name, yet had all their socials linked in their profile. 
(more got distracted and never came back than anything else)
lmfao don't worry, I keep secrets well
Social links are statistically way more dangerous to your identity than a name drop unironically
ya it is hard to rob people of problem solving, a helper has to witness people sitting in being stuck
add me, I'll send a friend request to you
I'd rather not. 🙂
yet a helper makes a person not alone being stuck
Right now, private rooms aren't hidden from the view.
if that makes sense
Who said on THM, I'm talking about discord
I do mean they’re not literally stuck, just too busy with work and not wanting to commit otherwise
ah! so you wished they would align with you?
Too bad though, she’s our official network admin
You ever google it
Yeah, closest thing I have to a work friend among the tech pool
mhmm, she helped me with some buying decisions for router tech today so that was nice
I've noticed a surprising amount of tech people are terrified of the CLI and it's so funny
My linkedin profile is the first one to come up
Absolutely agree, https://www.volunteeramnestyday.net/
I’m getting a Unifi Gateway Max as my new router, we already have three Unifi APs which predate me moving in… but lol with this I’ll be taking over admin of the home network which is a long time coming
when I did tech support I used to call it the big black box, which I realize today how not intuitive that experience was
MS-DOS box
At least you didn't make a mistake of having your paypal account public with the same username that you use online but paypal revealing real name
I was suprised when even she was like “I looked at these Linux commands we were supposed to run and it was like another langue to me”
I once used cmd to retrive password of my wifi in my school class, the IT teacher disconnected the projector and told me not to do it again. It was a fun showcase but the teacher was paranoid it seems
lmfao
And that’s how I setup a Linux host for our hospitality TVs
It took me an embarrassingly long time to remember what CLI stood for bruh
simple docker compose setup that was provided by the OEM, although they still need to get back to us about what’s broken lol
(it’s probably networking since they were extremely unclear there)
"it's a unix system, I know this" hacker culture 🙂
Is that because you've visitied it?
Tried with a an incognito window?
That is more or less one of the roles I fufill in this job lol
this making me feel like a computer genius for taking an intro to Linux class
I was actually stunned when the boss knew at least enough vim to do basic tasks
If you know even basic Linux you're in like the top 90th percentile of the population.
impressive
Yeah, yet he had to ask me how to manually install a .deb package
its crazy how much can change if you starting using linux on daily basis 0m0
3rd in the incognito window, luckily there's a common name which is similar to mine so they're coming up first.
Can I add you on Discord?
I’m a bit late to this but WHATTT?
damn, only 10% of the world knows Linux
I prefer it
I gotta wow my non techy acquaintances by typing ls -l
less than that
Fun fact; my wife is closely related to the guy created the Ruby language.
tech can be like swiss cheese, a director of IT asked me if I used a salt in our crypto, yet then asked for help copying files from a server to a desktop
I'd rather not, my friend list is mainly THM staff, mods and uni peers.
Pretty good stuff.
good job
No worries then
Nice work cooks!
nice work 🎉
wat learning path r u doing
Hewwo
hi :3
Thanks guys! Will be back after lunch, till then have a cookie 🍪
Consider there’s a relatively small population that actually handles all of the world’s Linux/*nix servers, and then about 2.8% of users actually using Linux… that count probably inflated due to me thinking of Steam survey numbers, and thus, Steam Deck
i'm in the tryhackme.com/room/capabasics , and the site froze, and now it's blank white, what happend?
oh, now it work nevermind.
The number is alot larger than that.
nope!
Androids are linux based.
and Android does not count
At least its growing right ?
haha called it
It does count though.
that is the best technology lesson of the day for me 👍
Ask an Android user if they know Linux or can even change directory in term, good luck with that
Yea android doesn't count
That doesn't change the fact Android is linux?
^
You don't have root privs on Android by stock, so there is no need to know how to cd.
It does not, but it also doesn’t actually increase the amount of people who “know” linux
As 99% of the time the standard android user won't have a terminal.
That's like saying the amount of people who use embedded devices aren't using os X
The question wasn't "how many people knowingly or unknowingly use Linux" the question was "how many people even know how to use Linux," as in, the CLI interface.
Using Linux is more than just a CLI.
Sure Linux is by far the most popular operating system in the world, but that doesn’t help when no one knows how to actually administrate typical Linux machines, or even feel comfortable using them on the daily
It's not the only OS to use a CLI.
No one said it was
How many Windows users know how to use their terminal by standard.
Powershell is lovely if overly verbose
It feels like an expansion of the question meant to intentionally conflate its intent.
anyone else have THM die on them?
people don't know the terminal on Windows because Windows was designed to be based on documents, visual paper objects, which the terminal was designed to be IO based, like streams/unix, and PowerShell tries to be both 🙂
Well to be fair on the Windows side, even a Windows Power User is ill-equiped to actually administrate Windows enviroments compared to Linux Power Users
Is site having a hard time or it just me?
not just you brotha'
Lots of systems run on UNIX, doesn't mean people are familiar with the basics. Not just CLI, also general functionality of the OS itself
#site-support please
Windows and Microsoft actively withhold the actual administrative tools you’d need to do things sensibly unlike Linux, but fair they have a profit motive to do so
it was an interesting challenge imo, designing a CLI for a document/object based system
I’m kinda going on a tanget, but that was the most rude awakening for getting into IT
even some traffic signals and toothbrushes run on Linux, apparently 🤣
Linux admin is easy, you’re probably already doing it
Windows admin takes a good bit of learning of systems you’ve never interacted with before
I quit vaping a week ago after 20+ years of smoking/vaping.
nahhh toothbrushes 🙃





