#general

1 messages Β· Page 902 of 1

loud marlin
#

git as for github ?

inner goblet
#

Yea

loud marlin
#

you can yes. also using kali as any other linux based os is ok. just is not recomended to use it baremetal since is not so much stable.

rugged kayak
#

git git is insalled by default

blazing granite
loud marlin
#

the only reason i use kali as daly driver is spare laptop. that i hate... dumb ass lenovo πŸ™‚

inner goblet
#

Wait so

#

Wait so yall don’t hack everyday?😐

blazing granite
drowsy dust
loud marlin
tranquil comet
#

Hey again

loud marlin
#

ello

tranquil comet
#

I finally got verified

#

Whats up

loud marlin
#

sky

restive plaza
#

Hello please am new here I need new friends please add up

tranquil comet
#

Huh

restive plaza
blazing granite
tardy crater
#

Carolina looks sus 🀐

blazing granite
tardy crater
#

Yup πŸ˜‚

tranquil comet
#

That account was made today btw

tardy crater
#

Like if i would add her just because of her pfp and her wanting to make friends, jokes on her i an afraid of women 😎

tranquil comet
blazing granite
wooden totem
#

I think I learned a valuable lesson. Don't find out you have no idea where first aid kit stuff is during an actual emergency

#

Also that adrenaline is very useful

blazing granite
wooden totem
#

(It was inside the roll)

tardy crater
#

I dont know if this is the right channel to ask, but i tried downloading kali on external ssd, the installation went well, i booted into kali, then exited to bios boot preferences, the ssd with kali was still there even after removing usb from which i installed it on external ssd, hovever when i booted into windows and then back into bios boot preferences, the ssd with kali was not there anymore, i checked diskmgmt and it said there is efi partition of 965 mb, but i cant find it in boot preferences, secure boot is off and usb boot is enabled. Any help would be appreciated πŸ‘€ 😁

high mulch
#

That had happened to me, but because the place was awful, and we were practically undertrained.

blazing granite
obsidian pasture
#

how do you see other machines that you have up? i tried opening an attackbox but said I had 3 vms alr running

wooden totem
blazing granite
blazing granite
radiant thorn
#

can someone help me out figure something out in john the ripper room under cryptography

radiant thorn
#

no one is responding there

wooden totem
#

(When someone knows, they answer)

radiant thorn
#

i need to move past that qestion

blazing granite
wooden totem
#

If you need a fast but potentially less reliable answer, chatgpt is there for you

radiant thorn
wooden totem
radiant thorn
rapid merlin
wooden totem
high mulch
rapid merlin
wooden totem
#

"Well repped" uhuh

rapid merlin
#

Yeah..

wooden totem
#

Very trustworthy

mossy river
wooden totem
#

Skepticism is not negative by default

rapid merlin
old canopy
#

☹️

rapid merlin
mossy river
wooden totem
#

Okay maybe it is now that I read it again

rapid merlin
#

:)

old canopy
#

😦

radiant thorn
#

so no one here uses the room-help

rapid merlin
old canopy
#

i never coded a line in my life

rapid merlin
old canopy
#

what is c++

wooden totem
upper knoll
rapid merlin
# old canopy what is c++

I am not google, however I can tell you its a programming language that's used universally for pretty much everything, from phones, vending machines, registers, etc. It's used in a variety of mobile, desktop, and IoT devices.

old canopy
#

help

upper knoll
#

Low level programming lanauage

twin ridgeBOT
#

Gave +1 Rep to @dawn oyster (current: #1073 - 4)

rapid merlin
old canopy
upper knoll
#

Allg lad

wooden totem
#

Clearly

rapid merlin
rapid merlin
#

holy c is the true answer

old canopy
#

im on temple os my friend in nsa recommended is it better OS then windows?

tardy crater
rapid merlin
#

everyone that doesn't code in holy C will fear the day terry rises from his grave and punishes all of the unholy swine that plague our world.

rapid merlin
wooden totem
#

I would know a Larry

rapid merlin
blazing granite
rapid merlin
rapid merlin
upper knoll
#

Depends on what you want from your os

wooden totem
#

Completely serious question no funny business

blazing granite
upper knoll
wooden totem
#

Hey pal, what did we say about that funny business

rapid merlin
wooden totem
#

I would help knowing who terry is

tardy crater
#

also, anybody knows whats up with instagram? why is there such a high spike in violence? gory videos, people getting shot. And dont tell me its based on the videos i watch, because i have my feed based on cats, women and cars. There is no way all of a sudden it would recommend such videos, altough i uninstalled ig 2 days ago, i logged in out of curiosity today and the first thing i saw was a video of a man getting shot, many of my friends also experience the same and there are even articles about it on the internet

rapid merlin
old canopy
#

true thats me

rapid merlin
#

he's a great man

#

he did alot of bad things (and good things)

#

mostly good

wooden totem
rapid merlin
#

yeppers

wooden totem
#

That is not a word

rapid merlin
#

In my dictionary it is.

ashen jetty
tribal ice
#

holy yap to the 100th power

blazing granite
tribal ice
wooden totem
high mulch
#

Windows is the best OS

rapid merlin
# wooden totem That is not a word

q_pepecough

Yeppers is a diminutive or emphatic form of yep formed with the colloquial suffix -ers. (See preggers.) It isn't usually included in dictionaries, and in corpus searches from the early 20th century the overwhelming result is a misscan or misprint of peppers.
blazing granite
#

Ishmaeli, how are you?

tribal ice
#

doing good avi

rapid merlin
tribal ice
#

how about yourself?

wooden totem
rapid merlin
#

I don't like writing in C# but some times it's more consistent than py is πŸ’€

blazing granite
tribal ice
#

C# is the prettier version of java

blazing granite
#

java is the devil in a cup πŸ˜‚

wooden totem
#

When I think of Csharp I see a nice quiet bench overlooking a pond with ducks swimming under the trees

tribal ice
#

the only language that's suitable for OOP. I understood OOP when I learned java.

upper knoll
#

Anything is a better version of Java

#

We all hate Java

dusk reef
#

what's wrong with java

wooden totem
#

The best question is always, what's the difference between java and javascript

blazing granite
wooden totem
tribal ice
#

never went back to it again

upper knoll
#

Better for your sanity I’m sure

tribal ice
#

then I discovered thm and htb

#

and pentesting and ctfs

dusk reef
upper knoll
#

I’m training up for the new soc cert rn

#

Gonna take it in about a month I’d say

tribal ice
#

luck is in good hands

#

good luck

wooden totem
sand trench
#

meep moops it is the time for sleepy sloopy sleep sloops to the beep boops

tribal ice
#

based

dusk reef
#

Assembly is the only true way

wooden totem
#

First step in baking an apple pie is creating the universe

dusk reef
#

what is C# commonly used for

loud marlin
#

new box printed

vale raptor
wooden totem
#

And apps and shit

brazen fractal
loud marlin
#

you can for sure. alsmost anything can be done. but all is plastic ofc

boreal scarab
#

goes to maker space to stay for a couple of hours

Also me: Stays for 8 hours

rapid merlin
#

Finally coming back to TryHackMe after a month of not learning cybersecurity due to moving to a new place.

#

I also got a new PC and monitor.

carmine tinsel
#

welcome back πŸ˜†

boreal scarab
#

@blazing granite I didn't know you had a baby brother, @rapid merlin

rapid merlin
loud marlin
#

btw @boreal scarab i got new hotend. the microswiss one

boreal scarab
#

What about @cosmic pendant with mini @wicked sage tHONK

cosmic pendant
#

eoooy

blazing granite
boreal scarab
blazing granite
#

toasterrrrrrrr

boreal scarab
#

I hope you didn't burn anything down today Toaster

blazing granite
blazing granite
#

2 toasters, are we getting invaded. The attack of the killer toasters πŸ˜‚

split plover
#

Yo guys, what's with the insta feed full violent and gore reels?

#

Do you think it's algorithm or smth else?

idle mica
split plover
#

Ugh, I can't digest the content

carmine tinsel
#

thank god I didn't open instagram today xD

#

I remember a couple months ago ppl were getting weird content like this one livestream of a lady giving birth

#

Can they fix their algorithm lol

blazing granite
carmine tinsel
#

well it only takes one scroll to accidentally land on violent content

split plover
#

Lol I don't watch it, it's just whenever I'm scrolling it's showing all that content

#

Not from my following list

blazing granite
split plover
#

And people who are too sensitive can't deal with it ig.

split plover
#

Oh btw, I just joined yesterday. I wanted to ask something....

#

Do you think hacking groups like anonymous are dead? Yk those hacktivist groups to change the world.

#

Cuz I mostly hear it's all about financial gains now

#

People using ransomwares etc

idle mica
#

Hacktivists are always out there, but they may change over time. Some individuals get caught and some simply grow up lol

#

For example, there are plenty of hacktivists who operate in Ukraine's benefit against Russia and vice versa

split plover
#

Oh yeah, ig you're right

#

They just grow up lol

#

And realise it won't affect much

idle mica
#

Some are working at Walmart 🀣

split plover
#

🀣

blazing granite
halcyon harness
real lichen
# dusk reef what is C# commonly used for

C# is great for rapid development with windows Forms applications. Can quickly make tools and other apps with tons of built in windows buttons and textboxes and drop downs and all kinds of other premade forms. It is also commonly used as a scripting language like in Unreal Engine.

wicked sage
clever stratus
#

Hi guys, how do I know if my Kali Linux VM is connected to the THM Vpn? It shows the IP on the top right corner but when i try to enter the given ip of the target machine it brings me to lookup.thm, however it sais "Hmm. We're having trouble finding that site."

olive delta
#

does anyone know how to hack a discord account someone took my one and i want it back

olive delta
#

its my account tho

loud marlin
#

then contact support

grizzled wing
#

@mossy river

blazing granite
#

πŸ₯¦

#

sup

fossil merlin
#

Gang

grizzled wing
#

@whole yew

blazing granite
whole yew
fossil merlin
#

Gang. I need your aide

grizzled wing
#

police notepad opens ....

fossil merlin
#

Swear fealty to me!

grizzled wing
#

pass

fossil merlin
#

Understandable, I have to start somewhere though. πŸ˜”

#

IT is cool and all but being a feudal lord is preem.

#

Especially since we are bringing corporate serfdom to 2025

grizzled wing
#

aside from all the feuds

fossil merlin
#

gg no re

grizzled wing
#

survey says ...

blissful snow
grizzled wing
#

NOPE

blissful snow
#

btw hi

blissful snow
fossil merlin
#

Sudo why won't you support my dreams? πŸ˜”

grizzled wing
#

winner server shop :// <ip> .io : 4999

blissful snow
#

?

grizzled wing
#

the dream of being a lord reminds me of the scam of people paying for a plot of scottish land to get a "legal" document stating lordship

fossil merlin
#

Aight, time to read. Night gang night @grizzled wing

grizzled wing
#

closed police notepad

grizzled wing
#

yes, was a thing years ago on youtube

fossil merlin
#

Wow I wonder if they made money

upper minnow
#

Veggies hii

grizzled wing
#

hello green Chag !

#

how does it feel to be green?

upper minnow
#

One step closer to D

grizzled wing
#

πŸŽ‰

upper minnow
#

A lot better than potato yellow

grizzled wing
#

haha

upper minnow
#

Id prefer to be purple like shadow but no way im getting nitro

grizzled wing
#

Nitro is a nice extra to have but not essential

grizzled wing
carmine tinsel
#

just started shells intro room and I am curious, how do you all know what reverse shell payloads to use? They seem quite complicated so far

idle mica
#

For real. Rest in peace

idle mica
#

So a PHP web shell versus a stageless payload on Linux, for instance

carmine tinsel
#

I see

fossil merlin
#

@upper minnow grats on the green. :3

I gotta study for this cert but imma catch you after >:3

fossil merlin
fossil merlin
#

You posted it first

fossil merlin
#

You infested me

fossil merlin
#

You know that song "infested" by choking victim? @fervent meteor

outer rivet
#

@seadrih is this true ?

fossil merlin
#

That's me, with the bee.

#

Also I POSTED it to you. You should know it.

Now I know you don't really love me ....

fossil merlin
#

I'm just a GAME to you

#

Smh my head

fossil merlin
#

This is even worse

#

Why do you put us through this? @fervent meteor

outer rivet
#

Dexter is goatee

fossil merlin
#

Scum

#

You're scum @fervent meteor

opaque flax
fossil merlin
#

Wat

opaque flax
fossil merlin
#

I'll be looking for a rebound πŸ‘€

#

You don't want me as an opp, I got shooters all over. πŸ‘€πŸ‘€πŸ‘€

opaque flax
fossil merlin
arctic token
#

@real lichen Ok, I made it in here if you care to chat further. 🀣

real lichen
#

im here

#

what websited do you run?

arctic token
#

What area of Cybersecurity you wanting to go into?

real lichen
#

bug bounty pen testing

#

its really just a side hustle for me

arctic token
#

I'm building it now so it's still in development. It's interfacing with a whole cloud multination corporation network for my students to practice in. So it'll be a bit.

#

Nothing wrong with a side hustle. I have a few myself.

#

After 28 years in Cybersecurity it is my side hustle now. I retired in 2018.

#

My main work now is developing my AVN

#

and my security site

#

Just in case that wasn't obvious 🀣

carmine tinsel
#

God damn, 28 years

#

I haven’t even been alive for that long πŸ™ƒ

arctic token
#

I'm 62

high mulch
#

oh god, I was surprised I didn't see you reply to that :v
until I scrolled down a bit more

blazing granite
arctic token
#

Don't tell me I'm the oldest one on THM? 🀣

fossil merlin
#

It's rizzmas gang!

fossil merlin
arctic token
#

Thanks for that. I do like it though

#

Well at least you didn't ask about any dinosaurs. 🀣

fossil merlin
#

Real talk it's cool that the server has older people in it

#

Nice to see people transferring skills that would otherwise disappear

carmine tinsel
#

This is discord, I’m sure half of the server users here are below 18 xD

blazing granite
fossil merlin
#

Like cobal or those bad jello dishes from the 60s

#

What were the aspic dishes of the 60s like? @arctic token

#

Jello salad or whatever the fuck

arctic token
#

cobal, fortrain, C/CPM, IRIX all that good stuff

fossil merlin
#

I'm learning cobal rn and I can't imagine learning it from like a fucking book

arctic token
#

I was Neo before Neo 🀣 🀣

fossil merlin
#

Instead of a 10 hour cobal learning and meme compilation with subway surfers in the corner

real lichen
fossil merlin
high mulch
real lichen
fossil merlin
#

Ok, but seriously did you have to eat those weird jello salad dishes in like the 60s-70s?

Were they even real or were they just a psyop?

real lichen
#

Mandela Effect

blazing granite
fossil merlin
#

My grandparents died and I don't know anyone above 40 so I have to ask these questions when I can. πŸ˜”

blazing granite
#

I was really young but I remember those from family events

fossil merlin
arctic token
fossil merlin
high mulch
#

I mean, they still sell those

#

right?

fossil merlin
#

You're fucking with me again @blazing granite

#

No way a person would eat those.

fossil merlin
blazing granite
high mulch
fossil merlin
# high mulch Oww

I'm 3rd gen Ukrainian though so my grandparents made like pampushky and shit

fossil merlin
#

And stuff with very bland grains that tasted good.

#

Varenyky too

#

I need to make some

fossil merlin
#

I saw ones with hot dogs and mayo in it?!

#

That's not a desert

blazing granite
high mulch
fossil merlin
high mulch
#

Just like that pizza with chocolate, banana, and sweets.

blazing granite
#

maybe there were a savoury version I wasn't aware of it. Like I told you I was very young

fossil merlin
#

Well hey this is all good 1st party sourcing

high mulch
#

Besides Pizza with chocolate, banana, and sweets on it as toppings.
There's also chocolated fried chicken, which I was disgusted and surprised it even was a thing.

carmine tinsel
#

The idea of anything savory with a jello texture scares me

dark frost
high mulch
dark frost
#

this is the end

blazing granite
dark frost
#

the end is a new beginning

upper pasture
#

Hi I need an advice
I got an email that I am selected for Information Security Specialist position phone interview last Friday at 2.30pm. I professionally responded at 9.30 pm. So today is Wednesday and I did not hear back from them. How to handle please?

upper pasture
#

thx

brisk dagger
#

Good evening guys, can anyone tell me what to create websites and applications, and back end or front end

spiral cobalt
#

Can I take what I learn here and conduct bug bounties?

cloud quiver
cloud quiver
real lichen
#

SQL database

stiff island
#

for the front-end at least

static acorn
#

MY CTF starts in 2 and a half hour and im gonna freak out im so pumped! are yall PUMPED. Get PUMPED

pliant onyx
#

That's the spirit

static acorn
#

thank you mr.pooping lion. im sure this isnt another one of my schizo episodes.

broken horizon
#

sup

static acorn
broken horizon
static acorn
#

im awesome! and yourslef?

broken horizon
static acorn
broken horizon
#

gonna take easy on pentest, will go for soc for now

static acorn
#

big win

broken horizon
# static acorn soc W

yeah cauz its overwheliming as beginner and can't remember commands for tools after completing modules

static acorn
#

yep. i recommend re-doing every module at least once to cement the learnt info. and take NOTES. if you dont TAKE NOTES... i will personally come to your house and hand you a pencil... then stand over you while you take notes like you dad did when you were learning multiplication tables... im watching you...cursed

cedar swan
#

thas cute

fossil merlin
#

Haiiiiii >.<

cedar swan
#

okay dude...

fossil merlin
#

Okay what?

broken horizon
#

THM community is very friendly fs

static acorn
#

THATS MY @broken horizon ! 😭

fossil merlin
broken horizon
#

if you message in HTB, you just hope someone replies

static acorn
#

yeah everyone here is super awesome. ive met so many nice people here

fossil merlin
broken horizon
#

and the guys here explain really well like best buddies

molten sky
#

<3

#

kinda wanna know where that gif is from actually

fossil merlin
molten sky
#

oh shittt

#

you right

#

he blue

fossil merlin
#

The blue people one not the good one uwu

broken horizon
molten sky
#

i also don't use it because if you want to verify it forces you to use your account name which is also just my name which is lame

fossil merlin
#

I'm not gonna shit talk em yanno, but yeah I prefer this one for chatting. :3

molten sky
#

like lemme say shit without my name right there

broken horizon
#

its just chill here

fossil merlin
#

They don't want anonymous opps @molten sky

molten sky
#

i don't even care for anonymous on here but like cmon

#

i'm far from anon on here

#

but lemme not make it front and center pls thx

fossil merlin
#

I know, I mostly wanted an excuse to say "opps"

molten sky
#

oops

fossil merlin
molten sky
#

no you're not

fossil merlin
#

Guess I gotta die

#

Today I was crushing it at work tho

molten sky
#

lol this guy has a job

#

how lame

blazing granite
#

@molten sky πŸ‘‹ long time no see πŸ™‚

crystal mauve
molten sky
#

oo that's a name i recognize @blazing granite

#

buncha weirdos in here with new names

carmine tinsel
blazing granite
fossil merlin
#

Fixed some monitors by resoldering components, unfucked someones email, incident response stuff.

fossil merlin
carmine tinsel
#

I would die if you could link my immature jokes to my real life identity xD

fossil merlin
carmine tinsel
#

idk why i even said that. on my actual instagram account I already post like 50% weird memes

fossil merlin
#

I have embraced cringe.

#

I will never return to the dark days of shame.

I have achieved self actualization.

#

I am the same online, as in real life.

fossil merlin
fossil merlin
static acorn
#

where did you obtain this picture of my son

fossil merlin
static acorn
#

LMAO

fossil merlin
#

That's me replacing cat6 e at work

static acorn
#

can a cat6 even shock you?

carmine tinsel
#

How I feel when telling ppl irl im into hacking

fossil merlin
static acorn
#

thats dope

#

cat6 tazer incoming

fossil merlin
#

I used proper power handling tho

molten sky
#

every once in a while i have someone clarify my job like 'oh so like hacking' but it always sounds cliche af

fossil merlin
fossil merlin
#

That's peak

static acorn
#

im hungry for somthing only cat6 can satisfy

molten sky
#

what happened to the first 5 cats

fossil merlin
blazing granite
#

I must go bye

molten sky
#

*deletes reply before getting banned*

molten sky
fossil merlin
#

I did eat a micro b usb when I was 10 cuz I thought it'd taste good

#

Later @blazing granite sleep well :3

carmine tinsel
#

I knew this kid in third grade who ate a quarter

#

Never knew what happened after that

fossil merlin
#

Fecal impaction

static acorn
fossil merlin
#

It was small

carmine tinsel
#

anyway third grade mentioned

static acorn
#

i did chew on some plastic teddy bears when i was in second grade cuz they looked like gummys

fossil merlin
#

Hey any of y'all read the "three body problem"?

carmine tinsel
#

yes

#

I have

static acorn
carmine tinsel
#

I like the 3 body problem a lot but i read it a year ago so I dont remember a lot

fossil merlin
dreamy moat
#

Hi everyone. I'm new to Discord so I'm not sure if this is the right section, but can someone help with an issue I'm having. I can't access the Subscription page under Manage Account. It's not loading andjust showing a blank screen. Has anybody had this issue and if so, how did you resolve it?

fossil merlin
elder peak
carmine tinsel
#

I have it on my goodreads tbr

static acorn
fossil merlin
carmine tinsel
#

im finishing up a book rn so I'll probably get to it in a bit

fossil merlin
carmine tinsel
elder peak
static acorn
#

i read this book call "iboy" recently. its about a kid who gets hit in the head with an iPhone and gains the ability to hack things with his mind. (i wish i was making this up) actually a good read tho.

carmine tinsel
#

😈

static acorn
carmine tinsel
#

girl ive already done that like 5 times when scrolling on instagram with my phone over my face

#

why am i not a master haxor yet????1

static acorn
#

all your cat are belong to us now

fossil merlin
static acorn
#

thats where i put my cpu πŸ€·β€β™‚οΈ pcie

#

120 fps max settings

carmine tinsel
static acorn
molten sky
#

god damnit

#

just realized i can't go to defcon this year cause of a wedding

tulip hatch
# fossil merlin

This is weirdly satisfying to watch. I can't tear myself away. It's like watching a drunk puke in front of a sunrise.

pliant onyx
#

New topics are so difficult to grasp

static acorn
#

cream cheese thermal paste

autumn flume
#

hello everyone! new here πŸ˜„

static acorn
cloud quiver
cloud quiver
autumn flume
#

blobheart that's nice

cloud quiver
eternal timber
static acorn
#

dude. api classes.. sound bomb as hell

#

i need to learn api's

eternal timber
#

I miss JS now

autumn flume
#

nice to meet you all, i started this year to learn and am pretty excited

static acorn
cloud quiver
static acorn
#

wait isnt it console.log?

#

smg i think it is

eternal timber
static acorn
#

too much python as of late i think

autumn flume
static acorn
#

yuh

autumn flume
#

print_r xD

eternal timber
#

You might have gotten it mixed up with document.write

static acorn
#

guys... i know to many languages they all just morph into one now

pliant onyx
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #1 - 3542)

pliant onyx
#

I'll also have to take notes potentially since there's a lot more to learn

static acorn
pliant onyx
static acorn
#

i just had a redbull and i havent had an energy drink in so long. my heart is about to explode rn.

#

mistakes were made

pliant onyx
#

Today's msfconsole art
Looks like a cow?

static acorn
#

MOOOO

cloud quiver
carmine tinsel
#

I gotta get to the metasploit rooms man I’ve been lacking

static acorn
pliant onyx
#

Is a good C2

carmine tinsel
#

A part of my soul dies when I have to learn a new tool just bc I don’t really like using them, I prefer learning the logic behind attacks

pliant onyx
#

I'd say they are two separate things

#

Learning the tool is helpful and important, but learning the attack behind them can be important as well

#

That said, msfconsole taking so much time today

#

I just updated the metasploit-framework, maybe that's why

static acorn
#

does anyone unironically use armitage? be honest

real lichen
#

Where should i post this??

#

This room text is not switching properly for dark theme

static acorn
#

what in the

real lichen
frigid cradle
real lichen
#

i know but im sure the staff would like to know

carmine tinsel
#

I don’t know why ppl are so allergic to light mode xD

frigid cradle
cloud quiver
frigid cradle
#

Just for that one room
Or clear browser cache and relogin

real lichen
#

light mode is bad for your eyes is why

carmine tinsel
#

My theory is that we aren’t used enough to getting actual sunlight outside so anything bright is too much to handle xD

frigid cradle
cloud quiver
real lichen
#

i see that now lol

eternal timber
#

I think I’ll code up an app that generates and stores passwords for sites you enter

real lichen
#

i see ty

eternal timber
real lichen
#

its pretty easy to google how to encrypt your files as well make sure you generate your own random keys

#

and look up how to generate your private key using a password that you set in the program

split compass
#

I have done exactly that

real lichen
#

and dont store the password either you should only store a password hash and compare that

polar spoke
real lichen
#

its easy and if you do everything im saying it will be extremly secure

split compass
#

Just don't try to roll your own crypto.

polar spoke
#

You must store the password to be able to reuse it

real lichen
#

worng you come up with a hash algorithm that you use to generate a password hash

split compass
#

But anything you want to use that password with will not simply let you pass the hash... And if it did, then the hash becomes the password.

real lichen
#

then when i type my password in i run it through the same hash and compare it to the stored hash and if they are the same then boom

polar spoke
#

Then it doesn’t store your passwords

#

You do

real lichen
#

and then i encrypt the file that the passwords are stored in using my own public and private key that i generate

polar spoke
#

Also no

real lichen
#

i have already written this code

polar spoke
#

Local pubkey doesn’t make sense

split compass
#

Keith, slow down and listen for a moment.

You have a password manager. To manage your login to sites and programs, let's say for instance, LinkedIn, right?

real lichen
eternal timber
#

what did I start

real lichen
eternal timber
#

I am just making one for fun

split compass
#

Which, yes, that's a password manager, but, as chicken said, in order to use that password to login to a site, you need, the password, not a hash of it.

real lichen
real lichen
polar spoke
real lichen
#

all your other passwords are saved in an encrypted file follow along jeez

polar spoke
#

It opens up vulnerabilities you don’t need to have

#

No need to store the hash of the master password at all

versed heron
#

Hi all

polar spoke
#

Storing it only weakens the outer encryption layer

real lichen
#

how else are you going to check if its correct?

polar spoke
#

You don’t

#

You attempt decryption and check for failure

split compass
#

The output being correct, tells you it's correct.

real lichen
#

thats true i guess

#

good point

eternal timber
#

logging in tells you it's correct lol

real lichen
#

but storing your password hash is how every website does it

polar spoke
#

Well, not every website

real lichen
polar spoke
#

Locally decrypted containers like some online bitcoin wallets and proton mail and such don’t

polar spoke
#

They locally decrypt into your browser and fail on bad password

polar spoke
#

Websites that don’t use local decryption will store a hash, usually, but it’s ALSO not necessary that they do that either

#

Better crypto systems exist, they just aren’t widely deployed

real lichen
#

still though you cant deny that storing the hash is how 70% of websites do it

eternal timber
polar spoke
#

But local password managers don’t πŸ™‚

split compass
#

Oh chicken... Speaking of crypto wallets. I'm a complete coin novice, but I have a few, and I need to transfer them, preferably to an offline wallet, have any good reference materials?

real lichen
real lichen
polar spoke
eternal timber
#

not much else you can do

real lichen
split compass
#

Remember if you have it decrypted, it's plaintext somewhere on your machine.

polar spoke
#

Sorta ish

polar spoke
split compass
#

Biometrics are neat... But also, technically, more public than your thoughts.

eternal timber
real lichen
eternal timber
#

Will I get sued if I use the THM logo as my GUI background

polar spoke
#

Sounds like a huge amount of liability

split compass
polar spoke
#

Nah, all of the biometrics take place in enclaves or other secure hardware elements

real lichen
split compass
#

So, if you have a good reason to use, and associate that use, with your software, send them an email, and get permission.

polar spoke
#

Applied crypto is hard and hard to get right

real lichen
polar spoke
#

i mean, i wouldnt say its overkill

split compass
polar spoke
#

depending on what the business does, it's probably required in some ways

polar spoke
#

i'm just saying I would NOT want to custom develop anything that does that for any kind of business use

#

especially if they are required to do that by a compliance framework or certification process

#

as they will almost certainly not be happy with a custom implementation that hasn't passed audit

split compass
#

In the 80s Nintendo actually used their trademark as their DRM.

chilly veldt
#

Morning

real lichen
#

its all already working

polar spoke
#

That doesn’t really mean it’s been done right or will hold up to any level of scrutiny

#

Just using existing libraries helps but doesn’t fix a lot of the nuanced faults you can introduce into stuff like this

real lichen
#

i have been programming for 15 years

#

if that helps

split compass
polar spoke
split compass
#

Regulatory agencies don't work on trust me bro.

They make you pay to have the code audited by their approved vendor list.

real lichen
#

im the sole IT ADMIN / Developer / Tech

polar spoke
#

Like, this is my area of expertise and I wouldn’t even feel comfortable doing it

real lichen
#

i work directly for the company

#

i wired the whole office i build all the computers

split compass
#

Does the company process credit card payments?

Handle PII? Etc.

real lichen
#

i setup and manage the server

eternal timber
#

dope

real lichen
#

uno singlular

#

lol

polar spoke
real lichen
#

im not storing that kind of information

polar spoke
#

I can’t imagine trying to push a custom solution to meet PCI or NYDFS or similar

real lichen
#

thank god im not

polar spoke
#

Even PII for employees can be sticky

split compass
polar spoke
#

Yeah, I worked both insurance AND for a bank

real lichen
#

yeah i have been researching

polar spoke
#

I did the whole lot of it, top to bottom, and it was rough

real lichen
#

and im not storing sensitive employee or client data either

split compass
#

Fact is, it's just cheaper to use an accredited solution most of the time. πŸ˜“

real lichen
#

we have quick books for all that

near sapphire
#

question, does credit cards cvv work the same/similar way as passwords do?

real lichen
#

its fun for me and free for the company

real lichen
#

im storing mostly bid information and job info and timesheets and work completed information

polar spoke
#

Some of that can be regulated iirc

real lichen
#

my goal is to make invoicing a ton faster

#

making a custom app to do things the way we want them done

near sapphire
split compass
# real lichen its fun for me and free for the company

I agree that sort of thing can be fun, and educational, I just wouldn't let it anywhere near production, until, and unless, it passed any kind of regulatory commissions requirements that it may cross territory with.

ebon sage
#

Hi frnds, can someone guide me get past the task 8 in Upload Vulnerabilities room.
can't figure out how to select and upload the file via command on annex.uploadvulns.thm

near sapphire
#

if their db ever get leaked

real lichen
near sapphire
#

all cc would just be accesible

polar spoke
split compass
real lichen
ebon sage
#

Hi frnds, can someone guide me get past the task 8 in Upload Vulnerabilities room.
can't figure out how to select and upload the file via command on annex.uploadvulns.thm

near sapphire
polar spoke
#

It’s kinda more similar to a checksum than a password honestly

split compass
near sapphire
#

so the verification process for cc basicly just checks if you have the card or not cause all the info needed is there, so why not add a password so if a card was stolen the thief cant just use the cc, kinda how like debit cards work

real lichen
#

use virtual cards for best security those can be regenerated on the fly

fresh cobalt
#

I just did JS for beginner, if we have deobfuscation online to easly deobs.. then what's the purpose of it ? Makes harder is just copy paste it on a good website. I'm newbie in JS don't yell to me πŸ™‚

grizzled void
real lichen
#

@polar spoke any recommendations for breach monitoring software preferably open source. Im redoing our server with proxmox instead of windows

real lichen
twin ridgeBOT
#

Gave +1 Rep to @grizzled void (current: #149 - 54)

grizzled void
real lichen
grizzled void
twin ridgeBOT
#

Gave +1 Rep to @real lichen (current: #2703 - 1)

real lichen
#

network monitoring

grizzled void
#

snort

#

security onion

real lichen
#

open source preferably?

grizzled void
#

both are

polar spoke
#

Yeah, that’s a whole like… field of stuff

real lichen
#

sweet

polar spoke
#

IDS/IPS, network monitoring, endpoint monitoring, etc.

real lichen
#

basic small business setup what would you do?

#

max 10 computers + 1 server and 1 offsite computer that uses openvpn to connect to the office network

#

offsite is used for data backup

fresh cobalt
real lichen
#

and snort can run on like a linux server vm that i spin up?

fresh cobalt
#

yep, give it a try. You can create alert file and even rst traffic

real lichen
#

im seeing that network TAPS are a better option than SPAN ports

#

opinion?

sinful bobcat
#

Good luck to anyone participating
And may the exploits be with you

grizzled void
fresh cobalt
#

Span is working perfectly, for high traffic it may missed some packet but ...

grizzled void
#

I prefer to run my Security Onion as a network TAP but SPAN works just fine

real lichen
#

right and the SPAN can cause dropped packets because of the mirroring its duplicating packets and adding extra traffic

#

just what im reading

#

so if you have heavy traffic TAPS might be a better option im guessing?

#

special hardware needed for this?

grizzled void
#

if you run it as a VM in proxmox you would just direct all traffic through it for a TAP

real lichen
#

right makes sense so no extra hardware needed then\

#

just proxy traffic trough it

fresh cobalt
#

If you want a really good product reliable and hardware based for high traffic, Probe Vectra are good, you installed Probe on critical and strategy port and you have a brain server collecting traffic from the probe. The product is great to detect abnomral behaviour based on signature and some ai to check pattern behavior.. But it's expensive 😦

#

It's not for a size of 10 computer but just fyi

real lichen
#

sounds cool though

grizzled void
#

Great Scott Gadgets has a decent network tap for under $50 if you needed a physical tap (keep in mind that it does lower the speed from 1000BASET to 100BASETX but for learning purposes it is good) but if you are doing it all in VM you don't need the additional hardware

fresh cobalt
#

snort is great for you i believe if you are concern about heavy load, check you might have some distribute design with cuthrough ..i'm not sure but i won't be surprised

real lichen
#

im trying to apply everything im learning to the family business

#

i still gotta convince them to buy a nice managed switch lol

#

i got a router that can handle 10GBe so thats a start

#

and i ordered a NIC for the server that will handle 10GBe

#

gonna run the 10GB to the server and all the other computers are on 1000Base

#

we arent even in an area that will give us more than 1GB of internet down yet but internal network is getting ready lol

fresh cobalt
#

enjoy

real lichen
#

ty

eternal timber
#

Did someone say snort

fresh cobalt
#

idk, i've not been alerted πŸ™‚

chilly veldt
#

So tired

real lichen
#

done researching now time for bed

#

Thanks for all the info peeps!!

twin cipher
#

Snort what

eternal timber
eternal timber
dark frost
eternal timber
#

Made the app

naive violet
eternal timber
#

I dont think I did

fresh cobalt
#

Who knows ..knows

chilly veldt
#

?

#

it's just a building filled with electronics

ripe vine
#

Evil Corp!!

blazing granite
ripe vine
#

What's with the no windows

chilly veldt
ripe vine
#

there is me thinking servers use photosynthesis for power

#

Architecturally it looks horrible lol

blazing granite
carmine tinsel
#

The ventilation must be horrible

pliant cairn
#

is that actually real?

fresh cobalt
eternal timber
#

@restive plaza this individual sent me an unprompted friend request

pliant cairn
#

maybe they wanna be fren

fresh cobalt
twin cipher
blazing granite
#

I lived near by for a bit

pliant cairn
pliant onyx
#

I am so tired (hi so tiredπŸ‘‹) I've been completing incomplete rooms since morning that I had joined but not done yet

eternal timber
#

Vro talking to himself

dawn grove
#

Hi everyone

cold jungle
#

Helloo

regal bluff
sturdy pike
#

I got free nitro for a week?

#

damn'

near sapphire
#

does tryhackme have a challenge room thats just pure pcap analysis, i still struggle with those

upper knoll
#

Search the blue team rooms

#

It’s possible you’ll find more pcap stuff

vague dragon
#

what do u suggest to me to learn c or to stay on the tryhackme path ?

whole gazelle
#

tf? those are to diffrent things

upper knoll
#

i dont think there is much content on learning the C lanauages however if u search for them there might be if you just want a good learning path follow this #start-here

#

@restive plaza there is a rule not to add or dm users without asking first please dont do that!

whole gazelle
#

yoo u got friend request too???

upper knoll
#

yer i did i guessed they might not have checked the rules so better to clarify as the mods dont mind us reminding people of that one

restive plaza
#

Please am new on this app and I need friends to talk to

upper knoll
#

well your welcome to meet people in general but ask before adding people!

#

or dming

restive plaza
#

Okay

upper knoll
#

the mighty kgb wassup!

whole gazelle
#

what you find more intresting etc

restive plaza
eternal timber
#

How polite

upper knoll
vague dragon
# restive plaza Can I add you

ima give u an advice on connections if u beg for it no one will need u u have to make him need u too so u can advice each other

grim sparrowBOT
#

:hammer: carolina583837#0 has been banned.

eternal timber
#

What

vague dragon
#

woah

upper knoll
#

sorry if u were resting jabba

vague dragon
#

was he realy want friends or it was a hack ?

mossy river
#

It’s a scam bot

vague dragon
#

aha

upper knoll
#

guessed with that pfp pick but thought id be nice as we try to spread kindness here!

vague dragon
#

me too any pfp with 18+ its likely for scams

#

but hacks idk if its possible by just adding u

upper knoll
#

cant do it with just an add last i checked

#

normally its a scam/phishing link

vague dragon
#

yup

#

so whats better for ethical hacking learnin c or tryhackme

whole gazelle
#

depends on what you wanna do

#

tbh

vague dragon
#

like what

whole gazelle
#

c is cool to learn how computers work

upper knoll
#

any coding lanuage will help you but mostly unless you are doing more specific things knowing coding wont be required

#

im not a good coder but im not a awful hacker

vague dragon
#

so tryhackme it is then

upper knoll
vague dragon
#

thnx so muchu

upper knoll
#

this is a lovely server people always help

#

for example im always a big supporter of the lovely kgb he is our room helper god

#

imo

vague dragon
#

whats the add friends butten down the path about is it more fun this way or it takes ur time

polar wraith
#

any1 here whos done all the xss labs on portswigger?

cloud quiver
cloud quiver
vague dragon
vague dragon
#

its hackin using the browser

crystal moss
#

Wasup today whit you guys?

polar wraith
#

dis one

crystal moss
#

What Chanel can i find a team to join?

cloud quiver
cloud quiver
polar wraith
#

only <a> tag is allowed

crystal moss
polar wraith
#

oh wait nvm

#

damn

cloud quiver
polar wraith
#

okok tyyyy

real token
#

Sup

crystal moss
cloud quiver
crystal moss
cloud quiver
sick lance
polar wraith
sick lance
real token
polar wraith
crystal moss
#

Did ask in the site help Chanel but no answer. I did register with a Google account, now i cant change my mail or set a pass for my account, can i change this some how?

polar wraith
#

plus why would i wanna see the solution

#

i wanna solve it myself

sick lance
real token
polar wraith
#

ok mb

real token
crystal moss
sick lance
#

But I don't think so, with how Google sets up accounts.

real token
#

I already have a number on it kekw

sick lance
#

So anything set before the change, will be allowed to stay.

crystal moss
real token
#

Ah yes rare 🍷

sturdy pike
#

Did everyone get a free nitro?

sharp citrusBOT
sick lance
#

@crystal moss ^

crystal moss
crystal moss
sturdy pike
crystal moss
sturdy pike
#

A free week maybe by discord themselves

ancient mirage
#

how are you today guys?

orchid dome
slow cloud
#

thats usually how it goes

orchid dome
#

So its the same as Music giving a month free at start or YT premium giving a month free for the first timers

orchid dome
robust oyster
#

Hey Guys been a while, I have a question for the masses but background history first. we know of automated chains to mitigate HID vulnerabilities on internal infrastructure for example, white, black and quarantine lists for plug and play devices. My question is, when performing a reconnaissance during pentesting, what tools or techniques would a recon phase use to enumerate the chains and external granular PnP devices to isolate potential for HID threat vectors in anticipation of recommendations post pentest?

#

We know NMap and ZenMap can fingerprint internal infrastructure but that is for networked nodes, the issue here obviously is the granular nodes of PnP, perhaps someone knows of relevant scripts?

mellow narwhal
pliant onyx
#

I shall be 0xB soonℒ️

tropic ice
crystal moss
#

Maybe did misunderstand what you want to do...