#general
1 messages · Page 941 of 1
that...looks...SO...AI generated 
hi i had a question regarding the BTL1(free SAL1)...if u have the certification for BTL1 do u get a free exam voucher by march 31? OR do u get to do the exam for free till march 31?
left side of carton is a giveaway
guys, is it a good idea to use password managers or stick to writing it in a safe place physically?
https://youtu.be/k9GncAfAA9A?si=lkV1Xf4IW0b4Hag8&t=345 damn this fight scene goes hard
This is a list of the best fights from the anime movie series The Garden of Sinners (Kara no Kyoukai).
Time code for list:
10) 0:10
-
1:26
-
2:08
-
2:45
-
3:48
-
5:01
-
5:44
-
6:43
-
8:30
-
9:31
Clips used in this video aren't of mine and according to Section 107 of copyright act 1976, I'm using this video in fair use.
2 new users in 3 seconds
that's why people how work with it, never do it in the dark 😉 😛
👀
this is tryhackme discord
Hmm read again?
password managers
I just realized that it wasn’t a joke it was real that the root.txt is It wasn't that hard, was it?🙏
No, I mean at home
free voucher for SAL1 if u have BTL1
do u think spending time and learning these language is worth itPython , X86 , c/c++, SQL, JS
can you recommend some?
Depends on your goals
🛡️ Bitwarden
ohh
🐍 Python is widespread, it is swiss army knife language
okay
in what way are u saying can u elaborate a bit more
🗒️ passwords is unsafe
is proton pass ok?
😭
write to support@tryhackme.com and ask, be aware that the answer won't be immediately and can take from 7 to 10 business days.
generally yes
for use inside a company that you work it depends on the IT and cyber security departments agreed upon standards
I see, Thank you
Gave +1 Rep to @sand trench (current: #4 - 2112)
What area are you trying to get into
ctf and pen test (that for now )
Yeah, that is risky :/
A neutron walks into a bar and asks, how much for a drink? the bartender answer for you no charge 😉 😂
especially your username iwontcode you should allow the experts to manage your passwords
I chuckled
Thank you!
you people are nice
once you use the pasword manager you are safer than the general public
that is nice
can't react yet
verify for gifs etc
In this day and age, a physical note book is better than a password manager.
ohh
a 📓 is no substitute for long complex random passwords for each account
How is it not?
are you being serious?
Yes.
the other day I needed to create a password and told me use up to 8 capital, so I put Madrid, London, Rome, Berlin, Paris, Athens, and Tokyo
If you leave it on a desk labelled passwords,.sure.
ma8WQ3Csns7ML959F3a6l8eZLcOyd.Kql5gK8h6Z6pgTSBmZ5Z4kLAcGgdBS5rm8
have fun typing this into your login page
espeicailly if it is one of those that clears out the password field if there is a single symbol off
i am at a loss right now.
- new person is asking about how to be safer regarding passwords and the chat offers password managers
- you suggest that using a 📓 is sufficient when you likely understand that humans suck at using or creating random words or numbers. it is why password hacking is still around.
That's a great idea until your computer is encrypted.
What makes you think they're still not trying long complex passwords?
Encrypted pc == bye bye passwords.
because that is not typically the situation.
SecLists show this
But would the average middle age - Elderly computer user?
password managers offer KeyPass , notebooks lack such a feature
password managers work with YubiKeys, notebooks lack this feature
You're right, we should.
But do we?
How many people have told this week about the importance of backing up data?
sooooo does shadows grandad that is in his 70-80:s count as an middle age to eldery computer user???
because he takes backups
6
so Scrubz is against password managers due to lack of people doing backups?
No, I'm just saying password managers aren't the lord and saviour of password security.
but come on, you stated your opposition right after a new user asked about password managers, what message are you sending?
Are there any more certifications in future for red team and security engineer? Is there any information about are they in development stage?
notebook with pass phrase better
harder to lose
safer at home
You're telling me you don't just write your passwords down on a sticky note and put them on your monitor?
I'm counting an average user as a user who just uses the internet and devices for social media,. watching TV and internet shopping.
exactly, extra security . above a notebook
It's good to have options.
he only uses the internet and microsoft office suite on his computer basically
And 3-2-1 backups.
still takes regular backups of all the photos he and grandma take
what if usb gets lost or stolen
So, an average user then.
or you forget your long and complex master password
yes but he takes backups
boom 😂
sooo not average to your assumption???
or was something lost in translation land here
but you did not say that, what i understood was "forget password managers, stick with what you are doing"
- {password manager = scam } kind of vibes
If that's your interpretation of that, then sure?
I didn't say an average user doesn't take backups.
seriously do not understand your approach,
If I did,.then what I meant to say was.
How many average users make backups.
this is about password managers, not backups
encrypted and copy the encryption key in a notebook 😂
user did not ask about backups
Isn't a password manager not backing up passwords?
I mean, you're storing them to data
fine. next person that asks about password manager i will say FORGET IT, just stick with paper
Scubz says its safer
That's not.my point.
yes it is
No it's not, I said it's an option.
"in this day and age, it is not worth it"
new users will get confused when you are around
Besides exiftool, y'all know of anything that MAY give us cords from a drones images/ videos? (Makerspace fun stuff)
very informative chat
Yandex, tineye, google images all don't give us much in a still shot of a video
I was going to say yandex so I'm out 😂
Of the meta data is scrubbed, not likely.
Or if it was not recorded, whats the drone?
Maybe check it's flight logs.
shadows stubed toe often suggests screaming into the void
Cheap AEEA drone, photos saved on an SD drive and we have that, checked the JPG's and videos for Metadata, does have it, no GPS though, so now I'm guessing it may not save that data or even have it
Optional, not mandatory
so please use a password manager.
@grizzled wing claude's attempt at making a shooter game using python
okay
strongly suggested
I got it! Woooh!
@sick lance
Done!
nice
Ninja swooped in like a ninja.
I need some help adding the right keyboard layout on XFCE
Simply put it i want the canadian keyboard layout where when i type Shift+2 it gives me "
After legit 1h i only find unrelate shit
a linux specific discord server, would serve you better
grep -i 'can' /usr/share/X11/xkb/rules/base.lst
try this and see which layout you need
does anyone here use google workspace nowadays?
these yt guys scare me (this is the right server for these questions, right?)
Tried to edit
/etc/default/keyboard
Exam is free UNTIL March 31st. I have BTL also 👍
hello
I can eat max 400g of pasta
Or 500g
And I eat a lot of atuff
Stuff*
As a volume in a day I mean
I always make too much
no one answered
the hand trick 👌 place pasta in the ring and is usually enough for 1 person
Just invite friends
I thought that was spaghetti?
🍝 indeed
..What are these "friends" you speak ok?
To what?
does anyone here use google workspace nowadays?
these yt guys scare me (this is the right server for these questions, right?)
find / -name friends 2>/dev/null
I've never used Google workspace
I just mean basic apps like calendar, keep, drive, etc
I use Google Drive
ohh
that's a lot, usually is 60-100 g of dried pasta, 70-120 g of fresh pasta, and 100-130 g of gnocchi per person
Cold 🥶
Hmm
You're in the wrong country
My nose is cold, my toes, my fingers
I'm fine with cold
Where you are is even colder
I used to love the cold but I’m feeling it more and more as the days go on
I only take a cold shower if I feel anxious
hello
Hey
do you face any privacy concerns?
you're my goat
Or I’ll hold a shower head with the cold on over my face or head
You're my sigma
I hate 🥶
.
im trying to get like you
What Am I like
I’m a potato
That you like about me
get a room 😂
the goat at tryhackme insane labs
I wanna see someone do an insane challenge on thm
is it worth the watch
Yes
Me 3
ive seen a million clips on it
Cold water swims > warm water.
That’s really broken my brain
I dunno what I’m fighting for but let’s go
😆
I think if I tried to swim in cold water my knees would lock up
I need warm weather without being burnt
When I was a child I got sun stroke in Florida
I was a tomato instead of my usual potato
me
Relatable
One time I was asleep and a mirror fell off the wall infront of me
Image seeing someone this pasty white looking back at you half asleep
I thought I saw a ghost
Have you seen ours ?
no
🍌 guns
It’s like walking into a messy room and being asked to find a pin
lool
📌 found it
Are you one of them 👁️👄👁️
Suspicious
They also tell me it’s right there
i just logged back on, went outside
You went out
rare occassion
grep items
grep -e-e-ee-e-e-e-e-e-e-e-e-e-e-e
Chat you are ENCOURAGED to interact with the outside world !!!
i outside more than inside
It really helps the endorphins in my brain
i. have no idea who your profile picture is, but i keep thinking its Tom Hanks
Ohhh okay. grep nosey was me with a sprinkle of concern.
♨️
Hahaha the character is named Paulie Walnuts from the Sopranos series. Give it a watch if you're into mafia related stories
i am not
Another serious incident outside today
then definitely don't !!
i was trying to get :sprinkle:
✨sprinkle✨
Breaking Bad was last mafia related show, but that was all about chemistry
That’s not quite what happened
👀
👄
spaRkle
Something like that. They didn’t even clean it up.
what world is that?
For some, a sad reality.. for others, a land of opportunity....‼️‼️‼️
Probably not affordable then, I'll skip
Good evening to everybody
evening!
evening
How are you boys
boys?
^
Some of you might say "Can I afford it?"... However what you should be asking is "can I afford NOT to have it?"..
Boyd and girls*
such narrow view of the world
guess we arent asked veggies
so lets chat amongst ourselves then
yes queen
look at indian gov site they are the wors
what have you been up to?
🫥
I'm a boy therefore I can involve myself in the conversation
plugging away at SOC stuff
And I can’t 😆
Damn
join our chat
With the way England’s been going it will be there soon
Tonight i ll do the splunk rooms, i'm followin the soc analyst path
no , the channel is open and public , I joined and I could listen and speak but not see the screen for some reason
My privilege clouds my judgement and allows me not to take action against prejudice for I am not inconvenienced by its chains
Did you click the share screen button?
thats nice hope its going well
The majority of people here are exactly like that 😆
it has been going well
no do I have to ?
I wanna snack
i just devoured lots of food post gym
food shopping came today for me
I gotta wait till money comes in
hope its not too long for ya
Friday but it’s been a long week
yer it be like that sometimes hope it goes better soon
i have a picture that goes with your username
Yeah maybe if I get out of England it would, this place feels like a curse
oh please do share
black firefox
Well, if you wish to share your screen, yes.
It doesn't do it automatically.
I feel like it needs eyes
its more like blackfire fox
haha
ive always loved black fire
i can do that
one of the people on the channel shared his screen while he work and explain , when I click to watch what he doing it's just doesn't show anything
never mind though I try again sometimes
black fire
closer
I’ve not been on vc is ages
its been busy lately
I had been in a few times at first but I haven’t been in there in ages
And also I had all those issues with my mic
I need a plug in mic to phone
im glad my pc setup has easy mic usage
last time i checked it out SteamPunk was doing some demo
Yeah I went to vc cuz I was curious and it looked like he was doing some HTB and python
I don’t have a pc anymore
I don’t think I’ll ever get another one
Ops I didn't ping
if a platypus pings when no one is around, does it make a sound?
unless there is a Amazon Alexa nearby
oh there is a new room
But one thing I noticed is that it's not stupid like google assistant for example, that one listens and starts whenever it wants... except when you really call it
Oh well, I should destroy my phone, my pc and my router then
Gov is everywhere
used to be external to your home
dumb phones are the way
i rock with dumb phone and man it feels cool
🤖 Androids
damn broo
It's the 0.1 cmd when you start the pc for me
I won’t have it before March 1st 😭
I used to use both, now Flutter died a bit here nationally so, back to fully kotlin
i coded in Flutter/Dart
It was fun and easy
WHITE LIGHT

AVERT YOUR EYES
It's 10pm here
🌐
My batcavern wasn't ready for all that white
i loved when someone called chat a bunch of vampires
Pegasus it's old I think, maybe discontinued
is not
Pegasus 📲
Graphite
Once I applied to a job in NSO, sadly I didn't get it
I could bet pegasus is the "cheap" version of graphite now
nothing cheap about pegasus
Pegasus
I put it in " "
tried to make it smaller, sorry
Not economically cheap
it is scary for real
it was like internal tech support, nothing to do with the development of pegasus, but still the competition is fierce and everybody is so well prepared that just boils down on how they perceived you and if you click immediately with them
It's scary if the people that use it, misuse it
i did not see this film you mention, scary movies are not for me
If it was used as a real, defense software, and not like a spyware, it would be less scary
radio check
Roger roger
now drop the bass
scratch those records
Ebtre ebtre (rot13)
💿
more than me, so how many 🍅 s would you rate it?
grep scary
i am thinking of making a THM wallpaper of all badges
very hacker cool
What’s the scary movie
I got accepted to a cyber degree in a mediocre college! Hip hip hurray
That sounds cool
['hip','hip']
there you go
i charmed a 🐍 awhile ago
also was a tshirt i had
🍀 lucky pycharms
I didn’t get the python joke and was like 😳
i will explain ...
python array hold data in [ ] brackets, the 'hip' is the data in the data array
so it is read as "hip hip array "
Hip hip array
never heard of that one, catchy
My eyes are burning I think I’ve been on here too long
what if i told you it was Toby's idea ?
It’s what veggies just taught me about charming pythons
Now I’m a professional python charmer
Kek
And my whole day is ruined. Thanks for the dumb joke, Toby. Everyone, conference room, now. We won't make more jokes in this office. I won't take it, no matter how big..
Gave +1 Rep to @grizzled wing (current: #37 - 244)
hahaha,
the last sentence had such a big window for "that's what she said"...
believe me i thought of it but its your line
that's what she said 😛
Nick Offerman seems like he would be good at Blue Team, he is calm, collected, is funny and makes sense
the mustache catches unusual TCP packets
he does feel kinda chill
it's like the perfect solution for unusual events
a filter of some kind
how cool would it be if THM got him to make a 30 second ad for SAL 1 or something?
nah, THM would advertise SAL 1 just by throwing screaming windows at me whenever I log in to the site (I don't keep cookies, I'm more of a cake man)
I don't think anyone here should
I don’t like jam cakes
it stores info about you, unlike 🧁
depends on what you like, my speciality is baking cake so I go with that
I like cream cake with fruit or chocolate cake
the cupcakes always look so sweet, I'm gonna become Kevin if that continues
chocolate cake is often too sweet for me
cream is best
cookies bad, cupcake good
nmap scrantonicity
Question: there are about 930 rooms currently available on the platform. Yet I see players in the Top 50 of hte leaderboard that are in over a 1.000 rooms. How is this possible ?
physics
Yeah I don’t like the super sweet chocolate cakes. The ones made with chocolate cream make them not so chocolatey. Also why I don’t eat cake with icing because it’s too sweet
Just announced, chrome introduces cupcakes that just "record" all of your movements, and "record" all your emotions with your webcam :)
This is quite the conundrum
Rooms got deleted?
sounds like a sweet deal for criminals
criminals will get their share, but chrome would be the one who gets the whole cake
Oh, sorry, in the light of recent events I mean firefox
i would like to earn this badge
is that the contributor one which requires you to give feedback?
especially when they learn about Dunder-Mifflin does printer sales now
act of kindness
FIRE FRRRRRRRRR
👔 Suits
yo guys
I dunno how many ppl suggested that, but after like two weeks after I sent them feedback about how I would like to be able to move/crop VMs screen (so it would take like 70% not always 50% of the screen) THM implemented that into their site
I love thm
sorry for the complicated sentence
might get dizzy
i'm a bug hunter and i only do web, would that be good for hackinfinty?
i drag the vertical line over, works for me
What badge is it ?
sure, never a missed opportunity
We are doing fine thank you. And would you get Dwight on the phone? I need a backscratch
Gave +1 Rep to @grizzled wing (current: #37 - 245)
Or should I say how do you get it
p
act of kindness
yeah, i have a team that only good in web and sucks in other stuff
equal sucking opprtunity
well, was it possible before? I think they made it possible after I sent them feedback
what would we need like active dir, network, reverse eng?
Before I've been opening VM in another tab on second screen but it was buggy
well then, thanks for sending that in to corporate
Gave +1 Rep to @split ore (current: #933 - 5)
Some rooms get made private as their our dated.
Jan was on the job, so that later I would be on the job (if you know what I mean)
hubba hubba 😉
vacation in Jamaica was great
i bet, the picture i was sent to my inbox was something
Oh, God! The picture.. uhh Everyone, SEEEEEEEX
Now that I have your attention I would like to say that the picture that got to your email was clearly a joke, and a bad at that
why is the brightness so high
*whispering* Jim, what's the number to tech IT guy
i dunno man, but the gif was fire
it would be bad if one day David in NY sees this
It was clearly a fake, so I've got nothing to worry about
Passed SAL1 👍
sick
yes, i can see extra fingers in picture
way to go !
good job man
Oh yes, yes! Pam, gather everyone for a meeting on why AI is a dangerous thing
( i can see but say nothing about you ordering fake finger from Amazon to fool pictures )
I can see the newspaper title now:
"A respected businessman 🖐️
from Dunder-Mifflin 🖐️
is getting wrongly sued 🖐️
For a thing 🖐️
He did not do 🖐️"
that's a hard one reference
only a fan would get it
so no $ for Scott's Tots school fund
there was no $ to begin with 😭
oops I mean
wait next 10 years
hell yeah
that'll make them happy
was your Dundler Mifflin account hacked?
Damn Toby messing again with my Dunder Mifflin employee station 😠
yea, HR sometimes
Remember that time Toby LIED to us about leaving our company and a beautiful angel came here instead of him?
Yeah, those were the times
Until that A...hole came back
yes i remember
Creed, don't interrupt
i work in the annex
that's why we hate toby, alright? Write that down please
writing down words
Sorry Kelly, you look kinda like Creed under that lamp
moisturizer is so expensive
Oop, 5 o'clock, it's go-home-time
See you on monday
No Dwight, you won't go home with me
tomorrow is fire safety drill
Well I'm not here tomorrow, so..
I finished all my homework and studying 10 minutes before I have to go to sleep! Awesome time management from my part (only wasted 4 hours on netflix)
I'm going to have a special meeting with Jan..
Who?
Relatable, yet I'm happy for you that you spent your time on studying anyway
{{ The Office roleplay happening }}
Jan Lewinsky, my boss. Pay attention Stanley
She's the one who recently got the chest job
a very beautiful woman
she works in the NY office
It said I had a notification but there wasn’t anything there 
Dunder Mifflin printers do that
I notify you to work hard! work haaard, work haaardy haaar
🖨️ printer jam
Pam read the manual , she can fix it
Jim, stop flirting with Pam, and get to work
Me laying in bed doom scrolling
It’s too cold to work
its 2006, what is doomscrolling?
{{i have no idea what's that either way.. Am I too old?}}
does our work computers allow doomscrolling?
Rolling endlessly into the dark abyss of shorts
no doom in the office! Time to bring my speakers
so like wikipedia ?
Why.. Are you rolling into shorts? Weirdo
I do not own many shorts
i heard Vance, Vance Refrigeration is going to have a party
Maybe two pairs
Oh yeah, I bought a washing machine from him, isn't that your man Phyllis?
I think Salty might need Vance, Vance Refrigeration for these.. shorts of his
we are going to have par-tey
Need dinner ideas, go
I only went to one work party, the next day was really awkward
Spaghetti
Ramen
it's a surprise-artey!
Kevin's pot
Angela will not be happy
Angela is never happy
is't a badge you gain doing the room i guess
That badge is amazing
YAWN
i dont make them, these belong to THM website /badges
making a wallpaper of badges, almost done
so many badges are really pretty
Teaaaaaaa!
and shadow is officially in section 8 of extreme privacy
any tidbits you can share?
USE RSS WHEN POSSIBLE
i already do 
5th edition??? or an older edition???
I thought that said USSR 
if you want weird book that goes way in depth on how a well writen guide is supposed to look???
To Fell a Tree was written for the professional tree cutter as well as the weekend woodcutter. If you intend to fell a tree and cut it up for firewood, pulpwood, lumber, or food for the wood chipper, this is the book for you. It’s loaded with practical and interesting information which is essenti...
Gave +1 Rep to @sand trench (current: #4 - 2113)
it has been on shadows shelf for years now
sometimes just open it and read a few pages here or there
the detail of the guiding is incredible
masf
yeah shadow bought it to read for the funsies basically
sometimes like to just go and buy a book on some random topic
this one has stuck out a lot though
shadow has not read this one themselves much but hear it praised tons for people into making their own food: https://www.amazon.com/Flavor-Bible-Essential-Creativity-Imaginative/dp/0316118400
also get the hard cover and not the paperback
the paperback is some special edition and is twice the cost
kinda... it tells you what food items goes with what spices and wice versa
to teach you to make your own recipes from scratch more or less
for most cases would think so too but not for this book
well shadow can go and read it whenever they want but it was a christmas gift for shadows dad this last christmas
he likes to experiment with cooking now and again
I haven’t given them a close look yet
Stone ground mustard is the spiciest mustard I've had, but it's so damn fucking delicious
the real mustards that are not what is in those yellow weird american squeeze bottles is indeed good
christmas ham with course ground mustard is yummy
We have those on Hotdogs and hamburgers, but when it comes to other foods, stoneground all the way
well there is plenty of options for hamburger mustards too
*does not think about eating hot dogs
I'm eating extra crispy chicken wings right now, dipping em in stone ground mustard
mmm nice
somehow that does not look veryb ground up but bet it is good
Hot dogs good!
thats a lot of eye of newt :P
for those who know that mustard seeds used to be refered to as eye of newt by a few people in the olden days
not sure
I like mustard
not looked into the details to much
I like it in potato salad
did you know there tends to be mustard in coleslaw
its okay to eat it
that comes from a line in Macbeth
Speaking of coleslaw, got a side too
oh nice you tracked it down

I didnt try it yet
It’s nice, it’s a different recipe
I like Shakespeare 🙂 also I had to studied for uni
then proper oldish english if it is in macbeth
@rapid merlin this is rough first organization, not all badges are equal in dimensions but cool to see
@rapid merlin here are the badges
actually Shakespeare is consider early modern English, Chaucer is middle, and Beowulf is old English 🙂
so tempted to just yell out nerd right now but yeah
I studied English with a minor in Linguistics so I had to make the distinction. I couldn't help myself 😂
i changed my Discord banner
lol
nAAh shadow is part of the less then 1 million users
there is no badge for that
there is a tshirt for it though :P
i hate reading
shadow hates reading that you hate reading
darn can't find a picture of the real shirt
anyways to tired to do things so just gonna go eep while beep boop for meep moop
how can someone get a job with the thm team
Ohhh nice
I’ve not checked mine
I have never met a cabra that can read 😂
I love reading
a cabra is a 🐐 , had no idea
i have to see it to understand lol i cant just read and get it 😦
yes, in Spanish
no thanks
suck gaot - in Spanish lol
I just checked my badges and I have hardly any 😫
This one is alright
That’s just a baby vampire
🧛
Don’t mind goat myself tbh
HA I don’t wear pants
and end there because it's pg13 😛 😂
Yah. It ends WAAAAAY before that specific town

I actually curl my feet into each other and my hands get tucked into my neck when I sleep
I’m a monkey
Morning
Night!
Hi! How is the china adventure? 🙂
Night? It's 7:50 am?
Pretty chill, had to extend my stay until Monday
the magic of time zones 😂
Noooo, it's 7:50 PM
Yes, that's not night
It's PM, it's night
it's 8:50 pm 😛
I'm 12 hours ahead of you
Lies
It's Thursday
still shit 😂
Slander and lies!
In Israel is Thursday too 🙂
No more reading today i quit
did not enjoy my 1st day on TCM discord
not friendly
heaven forbid you ask a question about what is normal for their discord
i'll keep it for networking etc but bunch of jerks
anyway THM is nice place
i signed up but their website looks low quality, so i never did much with it
people make $ over there, hire a web designer
the content is stuff i have interest in, i like the youtube videos but the website sucks
if i am to spend time on your website, it should not suck
"this is your life, this is as good as it gets. it's ending 1 moment at a time, savour it to the last drop"
- Tyler Durdan
if this is your first night on THM, you have to hack
1337 elite = redundant
many on here know that. THM is the solution to many things
[Esc] entered
time to make some 🍿 see you in a bit
Wait do i need tryhackme buisness to use the soc simulator rooms
theres only like 2 and i got prem
And you're reading Goethe, it looks like. 👍
Must I buy this if I want to understand ISO27001?
I see a lot of jobs look for people that can understand this
So I want to understand it
If you need to understand ISO for work, they should pay for it.
I am not employed
If you want a starting poing for compliance, NIST CFv2 is a good place.
But I want to understand it and look good
Phone only, tried a fake bank hack what’s next .
hi Juun
Soooo, NIST and NIS are basically "kinda" the same thing
But NIST is USA-in and is not mandatory
Hi veggies.
i like when you are around
I've given you a resource to go learn about compliance frameworks for no cost. If you would prefer to spend the money for the ISO docs, go right ahead.
?
No, I did some quick research, thank you for what you gave me
Gave +1 Rep to @whole yew (current: #11 - 819)
question for Juun
- do you have experience with BTLO ?
So basically understanding NIST is like understanding NIS for free?
Not sure what BTLO is
Compliance is compliance; understanding what requirements and controls are, is the same in every framework. The specifics are different, and in fact ISO 27001 is not technical but is instead administrative, but the foundational aspect of understanding what a requirement is, how to write a control that satisifies that requirement, and then architecting a technical implementation that maps to the control is the same.
I haven't had much in the way of company sponsored training recently, I've been learning CCSP and CSSLP
I dont understand the soc simulator
I'm learning Security+ right now
I flagged blatant looking phishing emails as true postives and it says it wrong
Btw can we reset our progress on thm somehow?
how am i supposed to know
It rlly said "click here to claim 1 million dollers" but thats legit?
thats 🐟
Ngl, I haven't used SOC sim entirely, but have you tried looking more into the phishing email?
Maybe there's more to it.
i have yet to simulate 🧦
I used it, tried taking on an alert, and quickly realized my weaknesses.
I also need to familiarize myself with the platform itself
it dosent rly let me
correction: Blue Team Labs Online 🔵
it says the info is classified and stuff
never tried it, just watching a tutorial of a challenge on platform
looks fun, i like blue team
yea its cool
haha tryHATme
I see, look at the description again
it is sus 🔍
Try to leverage the information you have, and conduct a search with splunk.
tryHATme Hacker
the detection rule?
I mark it as true postive
idrk what in the description can help
I would start off with sender/recipient
memento mori
Alright. Well the recipient is from tryhatme the company we work for and the sender has a .de tld which is sus asl
Gm
yea it hates my reporting
No attachment + content to be analyzed therefore it is a FALSE positive, according to this SOC Sim
How do you even anaylze it
I cant find the contents anywhere
Wouldnt the phishing be a log in most likely on a link attached
sup
Haha, I think you just answered your question
hello
hi
my it admin cleared me for the stuff im doind on my school device
and he is going to find me another CTL disconnected from school network for me to put crouton on before it dies (dies is for lack of better term)
and it will give me full acsess to dev mode
deprecated
hi
Just did the alert, I couldn't find any execution, checked the domain, and it seems clean.
i see that there are people in the voice chat here on the server but i dont see the voice room even tho i enabled all chanels
morning
I got an email about a 25% off sale. the current price is $10.50/month after the 25% off?
need to verify for voice chat
❤️
microsoft is bouta be my 13th reason
they changed the "get out of s mode" registry thing again it seems
Something's happening to Bing
i just bing-ed 'zen browser' cause s mode bs and it gave me literally one page and none of the results where zen's own website
Zen is getting more attention
What did you use to check the domain? I used virustotal + anyrun
been on my radar for a while now but finally getting around to trying it this week --- still not 100% committed but I'm pleased with it so far
and it's actually been far more stable for me than normal firefox
some weirdness that i'ma have to get used to or tweak if i keep it around but some things better as well
X seems to have problems too
Interesting
I wonder if something interesting is happening
i deleted firefox, tried out LibreWolf and floorp
i tried floorp once ages ago and don't even remember anything about it --- librewolf i'm a fan of as well
Is it better than google and firefox?
tbc, it's a fork of firefox ---- but it seems like it might be nicer than the original so far
Ig but idk what if they trying to chat and get info out of me still convinced its phishing
ah
How about librewolf?
also a fork of firefox, but with a much heavier focus on privacy
How do u reveal the contents of the emails
to the point of (optional) letterboxing and whatnot to help standardize your fingerprint
WHOA zen has vertical tabs
thats what I need
I wonder if Zen browser less or more private
lock in
Fire fox is bad and its based on it
so are chromium + chrome
what's your point? use telnet for everything?
curl your bank account?
Come on, I like Firefox
Firefox seems like it cares about privacy
doesn't look like it, from what I hear
I use chrome on a daily basis (too deep in) 😇
they changed terms of service
i use chromium because of the amazing google integration
I used Virustotal and Talos
interesting there is no browser named Shark
And its lagging also
How did it go with anyrun?
@vernal cliff
Do know commando dragon?
whats so funny about google integration huh prod?
the google part
I need it for school ¯_(ツ)_/¯
doubt
How do you even doubt that my friend
That's the fun part, if the contents were removed, there's no way to see it. If there were, you should see them in your Analyst VM.
using gmail and google docs doesn't really require any "browser integration"
Yes but it is however convenient
can't imagine how tbh
Easily switch between emails and bookmarks + cookies + passwords save across computers
easily switch between emails isn't a browser thing, just a gmail thing --- bookmarks/cookies/passwords can be done with firefox as well, and shouldn't be done anyways and is horribly insecure
i just learned that BTLO has a youtube channel 🎉
big fan of sbt for defensive stuff
only cert i personally like for entry level people
Don't quote me,
I flagged it as False Positive, my reasons for that is,
-
the contents in the email were removed.
-
Checked Splunk to see if anything happened during and after the email was received.
-
No attachments were sent to the VM.
s+ doesn't mean shit. too bad that btl1/2 is still pretty unknown
i am learning more about the platform
I know it’s insecure but i also often have to switch between 4 different computers so for myself its much better than logging into stuff in 4 different places
well can't argue with willing & knowing use of poor practice 🤷♂️
curious though, is the only problem that if google were breached it would be leaked?
you aren't betting on google necessarily, you're betting on yourself --- now if you make one simple mistake, you're handing them so much more all at once
and the built-in password stores of browsers are often horrificly insecure themselves, although i'm not up to date on google's practice
Ah so the problem being that if my google account were hacked they would have everything?
Ah that actually does make sense
But really the only way to get access to my google account is through a device then because 2FA and high character password on my google account
not if i stole a session from any one of your devices
Well that wouldnt be very nice
How does that work? Similar to stealing a discord token?
man fuck this, i'ma just go to the gym ---- i've been tryna scan a god damn piece of paper for almost 3 hours now and i've gotten nowhere close
not sure which method you're referring to but theoretically similar ---- you've got an authentication token of some kind and some other data, and you're stealing that in some way --- like if i had access to your laptop somehow and literally just copied the cookie over
Yeah thats what i meant
It ran well. Could’ve ran easier if I had the paid version 🥲
I'm using my student email for it
Sobbin I can't use my regular gmail
Actually i have a question for anyone who can answer, is Linux physically secure (as opposed to how you just need a windows portable to access the cmd on the device on Windows)?
the CEO of Sandfly Security answered that, yes for basic Linux distro machines, but less secure the more plugins you put on your machine. Linux is secure by default, you would have to give a malicious fil permissions to run for example, BUT attackers do know how to attack Linux : LINPEAS.
many Linux users add plugins to customize their machines so it is noteworthy
So essentially any binaries that are not straight from the linux source?
stick to your distro pkg registry and Flathub
Oh so it would be binaries from the internet mostly?
I stopped tryhackme because I have another crouse
I've been training for over a year and I'm still struggling with easy rooms.
I've finished a lot of them using guides. I'm trying to gather only the bare minimum that I need.
I'm not doing nothing, but it feels like I'm meant to be a lot more competent with this by now.
Is this normal?
a lot of tryhackme rooms will be labeled as easy cuz it was easy for the guy who made it but would be difficult for someone who as no clue what it is, and then youll have some rooms that are labeled as medium to hard that are a complete cakewalk just cuz its not that difficult
Oh
So, how do Lookup and Opacity rate then?
Start from pre security, then you will know where to go
In my opinion, even if it is a small sentance take the time to understand it and then move forward, at the end of the day it doesn't mater the amount of chapters you completed but the amount of knowledge, so try to learn at your own pace but learn it and only then move forward otherwise we are deceiving ourselves
oh damn tryhackme is more like a lab
If i were you i wouldn’t sweat how hard the rooms youre doing are, just do the rooms you can and make sure to ask for help if youre stuck. If you still dont have any idea whats going on then just come back to it later :)
good evening everyone!
Evening
Hmm, so general has gone quiet again. Well, it's got it's quiet times and very active times.
patience is key in life
yep. Very accurate. For example, mandatory windows updates against your will.
what does this hint mean? "Use ps aux to list all running processes. We're looking for a process that seems "out of the ordinary""
been stuck on this
That would mean running "ps -aux" and looking for something in the result that seems different.
I think it means that some process doesn't look normal, like something you wouldn't typically find running on a normal computer.
pretty sure it’s ps aux not ps -aux but i may be wrong
thats the part im stuck on, what is something outrageous i should look for
i saw one python3.8 running is that normal
Umm.. Can i ask what is hackfinity?
uh..depends.
Try looking for something obviously suspicious like "root" "malware" "hack" "backdoor"
Or try Googling someone else's output of ps aux (Google Images) and compare what you see on theirs compared to what it on yours) - make sure the screenshot is from a fresh Linux installation from the same distro
Jabba to the rescue
Yay!
thx for the suggestion. i was trying to avoid googling the answer as i didnt know that to google for without spoiling myself
Gave +1 Rep to @mossy river (current: #6 - 1529)
what website you use to collect the imformation before you hack the site
i konw sodan
anything else
want to make some american friend
If it's a CTF, nothing until I've exhausted normal enumeration tools, i.e. nmap, dirbuster, etc.
Try "systemctl list" then
There should be a sus description.
That works, yeah.
Night everyone 
Have a good one.
You as well
Per day?
You will probably get burnt out
i will grauate in 4 month
1 hour is the most i would spend per day
If you can manage to get 2 hours in without burning out then great
I am not
how long have you been in this industry
Year and a half or so
you are better than me



)

