#general

1 messages ยท Page 954 of 1

stiff zodiac
#

like wht sacrifices bro?

modest charm
#

wheres the part they mention wearing a hoodie and sunglasses ?

modern notch
#

am also enjoying kali and i also had those questions

blissful snow
#

where do you get these quotes from

sand trench
modern notch
autumn solar
#

I'm not gonna tell you where it is but you might want to look at the picture a little harder and read things

sand trench
alpine aurora
#

@modest charm are you ther

sand trench
#

had to pull out archive.org though as something has gone wrong with his blog post of what is a hacker

stiff zodiac
sand trench
#

it links to a 404 D:

modest charm
blissful snow
shy epoch
#

What's up

alpine aurora
blissful snow
#

i mean dual booting

modest charm
elfin jewel
#

his challenge is limited to student teams only. To appear on the Chart and Scoreboard, you need to be part of a team and have a student profile. Read more here When this shows does that mean my team dont count?

blissful snow
modern notch
#

first kali launch

blissful snow
shy epoch
#

How do you get media perms?

modern notch
shy epoch
#

You need to link your thm account like on the htb server?

#

Oh, damn

#

I remembered that once a mod banned me from this server

blissful snow
shy epoch
#

Because i said HTB is better than THM

#

something like that

shy epoch
modern notch
blissful snow
modern notch
#

i had those in my town

stiff zodiac
#

ig im not gonna use kali for a while it seems risky + my laptop already lags can't handle anymore

blissful snow
#

kali actually less than windows

#

windows lags over time

modern notch
#

but its can still work

stiff zodiac
blissful snow
#

also you prob should check out the linux introduction rooms before switching

#

well it is in the learning path so dwbi

modern notch
#

sry if u can not understand what i say, some english terms are hard for me

stiff zodiac
#

k wait is using kali like a necessity ?

flint vault
blissful snow
modern notch
modern notch
blissful snow
#

yw

flint vault
grim sparrowBOT
#

:hammer: aidon_researcher#0 has been banned.

stiff zodiac
blissful snow
stiff zodiac
blissful snow
modern notch
flint vault
blissful snow
modern notch
#

i have PC on windows for games and laptop on kali for work

blissful snow
#

so you can do tasks

dawn palm
#

Hi guys, does the complete cybersecurity course (in this case, Pentester, from the introductory course to Red Team) give you the skills you need to work in this field without going to university? Do I need any other courses or websites to improve my skills? Thanks.

stiff zodiac
blissful snow
#

hands on experiences

stiff zodiac
blissful snow
#

yes

modern notch
stiff zodiac
#

so ig its more preferable for low end devices?

blissful snow
modern notch
blissful snow
#

I'm not able to show you everyything since my school doesn't like tryhackme

stiff zodiac
modern notch
blissful snow
#

sys-adminitration is really useful i was gonna skip it as a beginner (dont)

dawn palm
stiff zodiac
# modern notch ye

so i complete rooms on windows first then i should switch to attack box?

modern notch
stiff zodiac
blissful snow
#

stuff like that for example

true rock
#

Does anyone here knows of a CCNA is enough to become a entry level network engineer?

blissful snow
idle arrow
blissful snow
#

but i didn't know about tryhackme back then

#

I just wanted to look cool with linux lol

mossy river
# blissful snow I knew it

In future, please can you use the /report command if you think someone is breaking the community rules? ๐Ÿ˜Š
Would be very much appreciated

wooden totem
modern notch
cloud quiver
blissful snow
mossy river
blissful snow
#

i will next time lol

idle arrow
hot bane
#

Hey are we still able to take part in the CTF as an individual, or do you need a team?

cloud quiver
idle arrow
dawn palm
sand trench
#

one time shadow dreamt they got banned from this discord server

abstract otter
#

Has somebody solved Task 11?

sand trench
#

shadow was very sad about it

blissful snow
#

i used tryhackme most of the time but i also do picoctf

#

and coding on my on

true rock
modern notch
true rock
#

Will i get a CCNA cert once I pass it?

stiff zodiac
cloud quiver
blissful snow
#

he was really helpful to start off with

wooden totem
modern notch
true rock
#

Ohh ok I see thanks for the info 4lc and KGB

sand trench
blissful snow
#

@cloud quiver heyyy

#

hru

stiff zodiac
wooden totem
stiff zodiac
#

so ig im good to go the way?

cloud quiver
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #1 - 4010)

modern notch
#

and only then kali

#

i think so

blissful snow
#

wait question if one of us is targeted by the discord bot thing i forgot what it called and we get banned are we allowed to join back on a different account since it wasn't on perpose

stiff zodiac
blissful snow
sand trench
#

think the bot uses the discord timeout system

mossy river
blissful snow
#

ah

mossy river
#

If you ban, regardless of whether or not you think the bot was right, you need to appeal through the email because your IP address and phone number will still be banned until you are unbanned on your main account.

blissful snow
#

oh okk

#

discord use to not check the ip or email address

#

i didn't know they started doing that

mossy river
#

They have done it for quite a long time ๐Ÿ˜„

blissful snow
#

ah how long

modern notch
blissful snow
#

i remember wayyyyyyyyyyyyyyyyyyyyy back i got ban from some gaming server and i just swap accouns and made my email and user name the same and i could join again

#

well i changed my username to some different actually

fathom sand
#

anyone managed to solve task 11

modern notch
blissful snow
stiff zodiac
#

k bro

blissful snow
#

what does sc17 stand for

mossy river
#

I'm not exactly sure when they started doing it, however it has been a while.
I'm unsure how great the system is because it is Discord at the end of the day ๐Ÿ˜†

fathom sand
fathom sand
blissful snow
#

ohhhhh

#

also i like the pfp

fathom sand
#

thanks

blissful snow
#

yw

queen flare
#

is there a time deadline in hackfinity to complete all chalanges

blissful snow
#

yes i think its live

crystal mauve
#

userInput +"'"; thank you @crystal mauve

queen flare
#

its live but i want to know if there's a deadline to finish it

distant breach
#

Can i get guidance on dark encryptor 2?

crystal mauve
#

have u tried getting help from chatgpt?

blissful snow
#

nvm it works now

blissful snow
#

if you were to go with an ai i think the best is deepseek atm

near sapphire
#

well its nice to get some low hanging fruits

near sapphire
blissful snow
#

well

#

forgot about that lool

#

good but unsable

distant breach
blissful snow
#

brb switching classes

dense raven
#

which channel is for ctf?

near sapphire
dense raven
twin ridgeBOT
#

Gave +1 Rep to @near sapphire (current: #161 - 50)

crystal mauve
blissful snow
#

but help with ctf's nahhhhhhhh

near sapphire
mossy river
near sapphire
#

obviously it wont solve it but the idea is important

blissful snow
#

i stopped using ai mostly

mossy river
#

If I'm really stuck, I don't mind using ChatGPT, however for most tasks I try to avoid it as it's really easy to become reliant on it

blissful snow
#

yeah i remember when i was

rapid merlin
#

hey people

blissful snow
#

i couldn't do any without runnin to chatgpt

blissful snow
rapid merlin
#

whats some great certs that can teach me along the way beginner friendly for blue team hoping to be a digital forensics investigator in the end or a soc analyst

crystal mauve
#

i'm vry note heavy

mossy river
#

I didn't misunderstand don't worry ๐Ÿ˜„

rapid merlin
crystal mauve
mossy river
#

Yes but you are copying and pasting from ChatGPT, right?

rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @stark nest (current: #1095 - 4)

grim sparrowBOT
#

:mute: fireshot66#0 has been muted.

crystal mauve
#

no it's a bit more, it's a conversation and then results from conversation

mossy river
#

Yes, so you are copying and pasting from ChatGPT?

crystal mauve
#

intial prompt is material

#

yes, anything not understood is asked

blissful snow
#

gtg cya

mossy river
#

It's not about it being understood

#

I have confidence that you understand the material perfectly

modern notch
mossy river
#

However, it's the actual act of writing the notes that is beneficial for your brain

#

It's even better if you can write it with pen and paper and then copy it to your PC.
Other methods include reading it out loud and explaining it to a friend or family member

crystal mauve
#

well if you're being black n white abou it, then you believe that copy pasting a 4 word phrase does less for the brain then typing out a 4 word phrase

mossy river
#

Well, for example "CIA" is an acronym, but remembering that acronym might actually take some time.
And if you have 10 acronyms, that are only '4 word phrases', that's 40 words you're not converting to long-term memory efficiently. You are bound to forget at least one of them

#

Your note taking is completely up to you, I don't want to step on your toes ๐Ÿ˜„

modern notch
wooden totem
#

Does anyone actually remember all the acronyms

crystal mauve
#

i mean u do have a point, because everything in blue, even though also copy pasted, i don't fully understand , im not really absorbing it

#

but some of it i dont feel makes a difference if i wrote it out or not

mossy river
cerulean nest
#

@sturdy mist

#

u still in team bruh

mossy river
crystal mauve
#

it's difficult tho to organize it so well as it is

mossy river
#

I understand that 100%

slate wraith
mossy river
#

Just remember that it's a marathon not a sprint

crystal mauve
wooden totem
#

I'm not even focusing my notes on trying to remember them, I'm just organizing them in a way so I can easily find and understand it again

rapid merlin
#

i cant even make notes im not able to write ๐Ÿ˜ญ

#

i can never seem to remember things or understand them

clear jackal
wooden totem
stark nest
#

I have used obsidian for few months then I realized no matter how hard i try I cant revise them then I switched to anki its a flash card its algorithm is perfect for burning things into my memory

mossy river
# slate wraith Even if my own notes look too bad?

Well, it depends on what you mean by bad.

All that matters is that you can understand them clearly.
Generally, formatting isn't really important. If they don't look pretty and aesthetic, it's not the end of the world.

I understand that it is demotivating to open notes and them not look amazing.

However, it does matter if your notes are 4 words per line and you're not really explaining anything.
Although they are called notes, don't hesitate to go into detail or explain things that you don't fully understand

rapid merlin
#

its like with the thm courses

#

it just dont make sense to me

#

i have simpled it down using ai

#

to

mossy river
#

Then you need to suppliment your notes with research

rapid merlin
#

i put why it does it how to do it and what it is

#

honestly i think its just a problem with my brain

mossy river
#

Don't expect everything to be handed to you in a way you understand.
Forage for your answer because you will come across a ton of different resources that might not be directly related but will help you understand

mossy river
rapid merlin
#

its fine to be honest

rapid merlin
#

already

mossy river
#

Your GP can't diagnose you I'm afraid, you need to escalate

crystal mauve
#

ok , ill try to do more of my own jabba, def did pull a bit more out

mossy river
#

I'm currently going for an ADHD diagnosis

rapid merlin
#

i was told i have nothing

mossy river
#

If you genuinely think something is wrong, you can always pursue. Doctors aren't always right

crystal mauve
twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #6 - 1534)

mossy river
loud marlin
#

what can go wrong =/

ivory tangle
#

@sand trench Hi, it worked my streak is back ๐Ÿ™‚ Thanks

twin ridgeBOT
#

Gave +1 Rep to @sand trench (current: #4 - 2116)

rapid merlin
crystal mauve
#

judging from the lack of braces i doubt it weighs as much as it looks

mossy river
# crystal mauve coffee does have a similar effect as to what they'd be prescribing anyway/aderal...

Not necessarily.
I probably wouldn't recommend it, and I can't guarantee it has the same affect for everyone.

A friend of mine who does take medication said that if he drinks an energy drink he has physical energy but not mental energy.
Whereas if he takes his medication it gives him mental energy but not physical energy.

He explained it to say that he needs mental energy to focus and do work, whereas physical energy results in him not able to focus on the right things

crystal mauve
#

hm might have to try some ๐Ÿ˜ฎ

rapid merlin
#

is there a reason caffiene dont work with me? i try and have energy drinks and everything but it just makes me more tired or does nothing

#

i need something to help me concentrate

stark nest
loud marlin
#

oh johnmake wid about tryhackme SOC sim ๐Ÿ™‚

#

https://jh.live/tryhackme-sal1 || Launch your cybersecurity career with TryHackMe and the defensive certification that gets you hired (code 10SAL1 gets 10% off for the first 100 people): https://jh.live/tryhackme-sal1

Learn Cybersecurity and more with Just Hacking Training: https://jh.live/training
See what else I'm up to with: https://jh.live/...

โ–ถ Play video
mossy river
crystal mauve
# rapid merlin i need something to help me concentrate

https://www.youtube.com/watch?v=sjkrrmBnpGE ever try some of this type of music/ helps me atleast, approach at a slower gear/ not as distracted

Keep focused with this ambient study music to concentrate by Quiet Quest - Study Music.

Play this instrumental music in the background and use it as concentration music, focus music or music for reading.

This ambient study music is great to improve your concentration, focus and memory.

It can help you with memory retention if you are studying...

โ–ถ Play video
naive violet
mossy river
naive violet
#

Otherwise it's literally years, yea

mossy river
#

Although my GP messed up and referred me to the wrong place smh

slate wraith
#

I mean

#

Listening to

ionic pagoda
#

any idea if there is a way so that the VPN connected to my host is automatically linked to the kali box

mossy river
#

Yes but it's not recommended to do so.

upper knoll
mossy river
upper knoll
#

they keep putting off giving me an appoinment

#

but i hope its not much trouble once i get infront of a doctor.

mossy river
#

You might want to make a formal complaint

#

I didn't even need to go in, I called, filled out a form and sent an email

upper knoll
#

oh ill try something like that as well then

#

cause i was orginally refered at 18 and 21 and 23

#

and ive never been contacted about any of those xd

crystal mauve
#

Taylor Otwell named Laravel after the Laurel Mountain in Pennsylvania, USA. He wanted a name that sounded elegant and sophisticated while symbolizing strength and reliability, much like a fortress or foundation.

The word "Laravel" itself does not have a dictionary meaning but was chosen for its smooth, unique sound and association with something strong and structuredโ€”which aligns with Laravel's goal as a solid and well-architected PHP framework.

#

found a bug!, laravel spelled wrong on page source XD

upper knoll
#

pop it in there!

dark mason
#

Am I allowed to share olympiad ctfs in here? (It has ended 2 days ago)

mossy river
#

Go for it, as long as it doesn't conflict with the advertising guidelines, you're a-okay!

dark mason
grizzled wing
#

i found a great place for jobs, it's a secret but look || cat /etc/crontab for any jobs in your network ||

  • joke
rapid merlin
#

did the answer for : Catch Me if You Can 2 changed ?

mossy river
merry marlin
#

Does someone know how to hack account ?

mossy river
merry marlin
#

@niedrigsten

merry marlin
grim sparrowBOT
#

:hammer: ashtag__#0 has been banned.

desert dirge
#

lmaooo

grizzled wing
desert dirge
#

It's almost like they don't read the rules

grizzled wing
#

why read when tiktok is there ?

upper knoll
upper knoll
desert dirge
#

lmaoooooo

mossy river
#

Good idea, I'll make a tiktok where I just point at text on the screen

desert dirge
#

with the little dude chasing rings on the train tracks

grizzled wing
desert dirge
#

with max 10 letters on the screen at a time

upper knoll
#

with like the pointer hand

#

maybe that would work

grizzled wing
#

tiktok videos about HOW TO HACK your learning

upper knoll
mossy river
grizzled wing
#

"this video about hacking they dont want you to see"

upper knoll
ionic pagoda
median gate
#

Hi, how can I get the SAL1 physical Certificate shipped to me?

calm thicket
#

best programme for practice wifi hacking?

stable kettle
#

Hey all, can someone please help me setup my Wazuh dashboard? I have the virtual machine up and running, and I can ping both ways (From host - To VM). But when I goto the url for the site, its not loading.
I keep getting:
This page could not be displayed. An internal error has occurred.

grizzled wing
#

get your subjects to deliver it

mossy river
true urchin
#

Will there be new rooms tommorow or not

upper knoll
#

which im pretty sure jabba said was a bad idea before but its honestly dangerous to bridge your connection

mossy river
sharp citrusBOT
ionic pagoda
#

the VPN connection that the windows have?

desert dirge
stable kettle
mossy river
#

Autodetect is not bridged

desert dirge
true urchin
drowsy holly
#

After 9 hours I did it!!!!

cloud quiver
cloud quiver
sand trench
#

wow jabba on a moderate and ban streak today

#

damn people are being nasty here

plain tartan
#

I've noticed that sometimes people like to pretend that they're in a call of duty lobby while talking to people on Discord.

true urchin
stable kettle
cloud quiver
mossy river
true urchin
mossy river
#

I'm not around at the moment

cloud quiver
stable kettle
twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #6 - 1535)

true urchin
cloud quiver
#

By I am not 100% sure

true urchin
twin ridgeBOT
#

Gave +1 Rep to @cloud quiver (current: #1 - 4013)

true urchin
#

but doesnt that mean that many teams will have equal points?

cloud quiver
true urchin
willow quartz
#

All of us on that leaderboard are haha

#

brb

true urchin
#

why did bro delete everything

ruby jolt
#

Im still stuck on Dark Encryptor and all my friends have left me ๐Ÿ˜„

sand trench
#

here shadow sits considering if they should buy a portable music player or digital audio player/DAP to carry around outside

upper knoll
#

do u not just use your phone?

sand trench
#

sometimes shadow just wanna be off the grid

upper knoll
#

ahh u want a dumb device

sand trench
upper knoll
#

problem is to store stuff on it youll have to leave some imprint on the device from the orginal device u used to fill it

#

i wont how much those old ipods leave as imprints from device to device

#

tbh might be worth just making something so u can dictate its storage and much more private that way just more effort

sand trench
#

yeah bandcamp and qobuz probably knows what music shadow listens to as they buy it from said sites

upper knoll
#

if i was going full private id say pi running some kind of linux with a ssd and audio port on a jerry rigged device

#

fill it from a vm with some obsfucation or privacy methods i heard tails is decent as an os but idk i think it still has tracking issues if your base os is windows

#

youtube definetly knows a lot about me icl

wooden totem
#

what kind of top secret spy documents are you transporting that you care about traces that much

upper knoll
#

you dont need to be carryiing or doing anything special to want privacy

wooden totem
#

that is beyong privacy

upper knoll
#

no thats pretty chill privacy there is so many more levels

wooden totem
#

are you sure we are reading the same thing?

upper knoll
#

yes i wrote it

#

true privacy is a very hard thing to achieve in the digital age and is wayyyy more intense than that

wooden totem
#

I would like to understand why you would want that (talking about to the degree of "true privacy")

sand trench
#

well shadows desktop linux computer is good enough for transfering the flac files to a sd card to that is then inside the DAP

sand trench
upper knoll
wooden totem
#

is someone hunting you down?

upper knoll
#

i find it an interesting topic so i did a good amount of research into it a while back

upper knoll
#

just not through OSINT

#

poor @boreal scarab went down that rabbit hole

sand trench
#

osint for shadow to be tracked through what music they listen to would be nearish impossible

#

drm free music files are hard to track

wooden totem
#

did you secretly win the lottery?

upper knoll
#

I WISH

sand trench
#

though somehow keeping it in a semi realistic fashion

wooden totem
#

the best privacy is just not becoming a target, I could follow you around in real life without any devices if you were a valuable target (hypothetically speaking of course)

cerulean nest
#

can you like

#

report ppl

#

for asking for hints

upper knoll
#

you can use the "/report user or message" function

#

without the ""

sharp citrusBOT
cerulean nest
#

wotafak

#

not that

upper knoll
#

its the new reporting feature in the discord

#

very useful

true urchin
#

if there will not be new rooms in the ctf event wont there be alot of people tied with the same points?

wooden totem
cerulean nest
wooden totem
cerulean nest
#

Mercury is on rn

mossy river
cerulean nest
#

oh yeah

upper knoll
#

didnt need the docs tag xd

#

thats what i get for learning about assembly code and frying my brain

sand trench
#

so tempted to report themselves

#

obviously wont now though

upper knoll
#

is shadow misbehaving?

loud marlin
#

doh... my AdGuard block linux to update =/

sand trench
loud marlin
#

i was wonder why can't update and i got timeout and so for last 30ish min =/

#

dumbass adGuard

boreal scarab
loud marlin
#

this is better than my SMB network drive was on demilitary zone and i ddos bunch of websites =/

grizzled wing
#

got another fun picture

loud marlin
queen flare
#

i'm starting to realize that the ctf isn't entirely beginner friendly

#

i did exceed my expectation of not being able to solve a single challange

grizzled wing
#

๐Ÿฆ‚ many "beginner" friendly is just not true

#

beginner to me means simple

gray sonnet
crystal mauve
#

how do u feel frodo felt after being chased by Black Riders in Book 1

loud marlin
#

just like i do when they call me in 4 in morning to come to work... like shit...

queen flare
crystal mauve
#

yeah all my challenges stump me, im on injectics and didnt realize i needed to add the ip in /etc/hosts to start T_T

#

i was looking in all the previous links for a hint T_T

boreal scarab
#

My feet are on fireeeeeeeeeeeeeeeeee

upper knoll
#

why?

true urchin
#

the ctf is not as easy as I thought

loud marlin
#

he prob bsod them

willow quartz
#

yessirrrrrrrrr

#

I love thm and bragging ๐Ÿ™‚

queen flare
alpine aurora
#

Congratulations on completing Pentesting Fundamentals!!! ๐ŸŽ‰

zinc notch
#

Task 7 can't be solved ๐Ÿ˜ฆ

true urchin
#

task 15 can't

crystal mauve
#

o.O ty

#

what's the best way to install feroxbuster on the thms vms?

#

ive had to install rust n cargo to get the apt version instead of snap

rapid merlin
#

should i use linux as my main os

crystal mauve
#

root@ip-10-10-32-44:~/Desktop# feroxbuster -u http://10.10.146.217 -w ~/Desktop/big.txt
Could not open /root/Desktop/big.txt

crystal mauve
rapid merlin
crystal mauve
#

well you are use to using the functionality on your OS, u can use linux in VMs until u become more comfortable w it

#

maybe later get a laptop that only uses linux?

crystal mauve
#

yeah prob

#

the majority of users use win os anyway, so u likely got to become more familiar with both (active directory stuff etc)

boreal scarab
crystal mauve
#
  • since ur kinda new ( maybe being in a sandbox env.) vms can keep u safe?
boreal scarab
#

Haven't been on my feet for 8 hours for a very long time

upper knoll
fading onyx
#

if pickle rick is easy I do not want to find out what is a hard ctf

crystal mauve
#

gawdddd cant get feroxbuster to run

fading onyx
true urchin
fading onyx
#

I think pickle rick is like infant easy compared to ctf event easy

fading onyx
#

I did work so long in corpo that I cannot think out of the box anymore. I found all the hints but did not figure out they were hints -_-

#

my brain works like zombie, heh.

true urchin
fading onyx
# true urchin What did you work as?

"security software enginner" but it was more like devops + windows app developer + newbie threat analyzing that ended up in making tons of reports

fading onyx
#

a lot of repetitive work in past years.

leaden aspen
#

dang i thought i could solo the hackfinity battle but the amount of things i dont know to solve the questions is crazy

true urchin
crystal mauve
#

-_-

#

let me see your enumeration to-do list

grizzled wing
dusk canyon
#

task 25 is insane

leaden aspen
#

btw people are actually making new accounts and registering them as a student to get in the leaderboard and win

#

like how fr?bro didnt complete any rooms

crystal mauve
#

every leaderboard on thm is cheated tho

long notch
#

has anyone completed Hackfinity's Battle task 9?
if yes could you please help?

dusk canyon
#

task 9 is very hard, skip it!

round orbit
last kelp
amber summit
#

i hope the UK lawnmowing team win

ashen marsh
#

is any one taking part in hackfinity

last kelp
ashen marsh
last kelp
#

Stuck at task 9 > Notepad

amber summit
#

i already done it all

#

cakewalk

ashen marsh
#

just covering up the basic

last kelp
last kelp
ashen marsh
rapid merlin
lapis totem
#

does anybody here need +1 in team?

last kelp
rapid merlin
last kelp
lapis totem
rapid merlin
last kelp
rapid merlin
whole gazelle
true urchin
ashen marsh
sand trench
#

Learn More at https://www.crowdsupply.com/cool-tech-zone/tangara

Tangara is a portable music player. It outputs high-quality sound through a 3.5-mm headphone jack or Bluetooth, has great battery life, and includes a processor that's powerful enough to support any audio format you can throw at it. It's also 100% open hardware running open-source...

โ–ถ Play video
#

shadow found a open source mp3/dap

oblique furnace
#

screenshots coming very soon tho

vestal bone
#

Iโ€™ve just did lfi and rfi on thm, isnโ€™t lfi the same as directory traversal?

proven lark
#

can i play hackfinity without team

vestal bone
#

Whatโ€™s the difference

sand trench
#

lfi lets you read any file the user that is running the website can read
directory traversal lets you check stuff like the assets folder without arbritary file reads

vestal bone
#

What if it is hosted on the cloud?

sand trench
#

sameish
lfi still lets you read basically any file that is hosted on the cloud that the user running the web server can access... said user generally being www-data

#

directory traversal just lets you check files in the assets folders basically

oblique furnace
#

i didn't post a screenshot yesterday but i answered 1 question of the "Security Principles" room but the room is not functioning (and i sent a report on #1333993673381253162)

#

that was enough to keep my streak

#

i wouldve screenshotted but theres no point

modest charm
#

and play it

#

I dont know if it is valid for the prizes though, in case you are a student

vestal bone
spice otter
#

hey guys any tips on actually learning this pre security stuff? and not just clicking through all the rooms

flint sluice
#

Take notes.

sand trench
spice otter
#

dang notes ๐Ÿ˜ฆ is there anything specific i should be looking out for in note taking or just whatever i think is useful? also thank yall

sand trench
#

i.e it should be the parts you find relevant and interesting

spice otter
sand trench
#

teaching a rubber duck also helps as you gotta put what you learnt into physical words you speak out loud

modest charm
#

get a software like obsidian for storing your notes in an organised way, you will find yourself going back to them always.

sand trench
#

this helps the memories stick a huge amount better

#

some people will think you are "insane" for speaking to a rubber duck on your desk but it helps shadow tons

twin ridgeBOT
#

Gave +1 Rep to @modest charm (current: #735 - 7)

grand condor
#

will the hackfinity battle room be available after the event ends?

spice otter
sand trench
#

shadow has also learnt a lot by trying to help other tryhackme users get through problems in the #room-help channel

#

but that can be harsh if you are just starting out

proven lark
#

wdym i need to be a student

#

what if im not

cedar warren
spice otter
grand condor
#

will the hackfinity battle room be available after the event ends? does anyone knows?

grand condor
#

all right ๐Ÿ™‚

boreal scarab
#

My feet are fucking killing me

sand trench
cosmic pendant
#

lolol

modern fox
#

arrives

sand trench
boreal scarab
leaden marsh
#

Yoo

languid torrent
#

Hey all, I had a question. I'm French and here we rely a lot on school diplomas. Is it true that in the United States they prefer certifications?

sand trench
#

๐Ÿคธ๐Ÿผ
rooCAR

#

okay that did not work as expected

upper knoll
#

i recommend moving that topic there!

languid torrent
#

and also a rootkite project / changing the framework of an ip camera are they gray projects?

#

Ohhh ok sorry

upper knoll
sand trench
#

any type of malware discussion is only in advanced channels if you are asking about making it

#

or reverse engineering it

#

messing with ip cameras that you own or have permission to modify is fine and dandy though

cosmic pendant
#

we did a full re of an ip camera in my master's class, it was cool

amber summit
#

gpt did the osint for me

#

is that bad

languid torrent
#

because I was accepted into a cybersecurity school and I feel like they did crazy things compared to me

sand trench
#

shadow is waiting to do their taxes

carmine tinsel
#

some things should be left unsaid

sand trench
#

if shadow is reading the swedish tax agency site correctly shadow should be able to do it in 25 mins

spice otter
leaden marsh
languid torrent
#

I wanted to know if these were simple projects? or if it was really high level?

amber summit
spice otter
#

oh wow

sand trench
languid torrent
#

from what i understood he just changed the framework because he said it was crap

cosmic pendant
#

probably just talk

languid torrent
#

I have an esp32 s2 card if you have any project ideas I'll take them ๐Ÿ˜

cosmic pendant
#

i'm waiting for the dual band cards stilll..................... it's been like 2 years man

languid torrent
#

No, not really, I was on other projects.

cosmic pendant
#

............... okay well, it's neat

languid torrent
#

ohhhhhh, and so do you have a project that I could do lol, I'm a beginner just to deepen my knowledge

#

Thx

cosmic pendant
#

I think changing the ip is okay, it's called DHCP ๐Ÿ˜„ ๐Ÿ˜„

urban hill
#

Hi , do I need to setup a webcam for the SA1 ?

languid torrent
languid torrent
#

Ohhhhhh

#

Yes, I imagine it's a server to help, not to hack, which is logical.

mossy river
#

It's a beginner cybersecurity server ๐Ÿ˜…

languid torrent
#

heeyyyyy I was wondering, if I give you my website could you find all the passwords possible? to test if what I am learning in class is good?

dry drum
#

am I the only one doing CTF rn?

upper knoll
#

ever

#

btw

languid torrent
#

If I have a backup, why?

upper knoll
#

because you shouldnt give random people things to hack that u dont know

silent nova
#

^

languid torrent
#

Ohhhh

silent nova
languid torrent
#

It's logical but at the same time, it's a site that we made in class, I really don't see the danger

sharp radish
#

How would one go about linking a new Try Hack Me account to Discord? I lost the creds for my previous account and couldn't be bothered asking for support... I created a new account on the website.

upper knoll
#

where is it hosted for example

#

do u have permission to pentest on that infrastructure cause i doubt it

languid torrent
#

INFINITYFree

upper knoll
#

and if its on your own infra thats even worse

#

its a legal nightmare

#

and potentailly only damages you

sharp citrusBOT
languid torrent
#

INFINITY FREE ?

sharp radish
upper knoll
#

either way lad its just a horrible idea

cosmic pendant
#

It's about time

upper knoll
#

dont go into random hacking servers and say that stuff just opens you up to trouble

languid torrent
#

Ohhh I see, I'll try to be careful, thanks for the advice, I'm a beginner, I don't know everything ๐Ÿ˜†๐Ÿ˜†

#

And thx toaster

upper knoll
#

all good just be safe

#

there are bad actors even out there

silent nova
languid torrent
#

I saw, I'm doing the lessons little by little, by the way should I do more challenges or lessons?

#

because I have the impression that the tools I use I don't see them in the courses

upper knoll
#

start with lessons and walkthroughs

#

make good notes and get comfortable

languid torrent
#

๐Ÿ‘

vocal turret
#

Hello

upper knoll
#

(tools will come up overtime it will guide you through basics first)

#

which is what u need to understand what u are doing when u use tools

#

doesnt matter if u know the rough syntax for curl if u dont understand web requests for example

languid torrent
#

There is one thing that is vague for me. , it is when we change files via a url, it was weird

knotty pendant
#

i got access to someones smtp server๐Ÿง

languid torrent
#

../login../password.tx

#

It looks like it on Kali Linux with the commands to change files but I didn't understand how it knows that these files exist.

upper knoll
silent nova
languid torrent
#

but how does he know that these files exist?

#

He can't do it at random

upper knoll
#

can be many ways

cosmic pendant
languid torrent
#

maybe a lesson I learn after

upper knoll
#

as im guessing english isnt your first lanuage just make sure you take a second to read the materials and ingest them cause maybe u missed something

languid torrent
#

the last time I heard about TOMCAT it was for a database that I created

#

Hmm, maybe, or maybe it's thanks to the enumeration of subdomains?

#

Anyway, thanks a lot for the advice guys.

#

I will try to make a project with my esp32 s2 ๐Ÿ˜ if I need I call you ๐Ÿ˜†๐Ÿ˜†

upper knoll
#

your welcome we are happy to help gl on your journey

rapid merlin
#

Can we talk about off topic in gen chat?

languid torrent
#

๐Ÿ˜ ๐Ÿ‘

grand condor
stoic quarry
#

Evening all

#

How we all doing?

modest charm
#

sup

#

red nicknames look cool

wooden totem
stoic quarry
#

I haven't leveled up in a while. It's nice to have a change

upper knoll
#

takes a while once u start getting up there

#

my next two level ups are 2500 points and 5000

modest charm
#

ill level up soon, but I think my next color is a shade of blue

upper knoll
hearty hollow
#

๐Ÿ™

upper knoll
#

not sure which sorry for lack of specificty my brain is fried by assembly code

hearty hollow
#

assembly is crazy

upper knoll
#

no joke

silent nova
stoic quarry
#

Assembly is bonkers

#

I know for some of the challenges, or if you have issues accessing a web page you need to add the IP and host to your hosts file

#

Seen it a few times

hearty hollow
#

i have a ip and if i go to the browser and enter that ip in the searchbar, i redirects to lookup.thm but the website doesnt load. it should load a login page if im understanding the walkthrough propperly

upper knoll
#

just time consuming

wooden totem
grizzled wing
#

the attackboxes are really unstable today

modest charm
stoic quarry
#

Oh or that ๐Ÿ˜ถโ€๐ŸŒซ๏ธ

upper knoll
silent nova
modest charm
#

lots of students running all kinds of brute force

#

running for that prize !!

#

๐ŸŽ‰

stoic quarry
#

Good luck to the 'dents

silent nova
#

I decided just to run my attacks on my local PC with OpenVPN connection, lol.

modest charm
#

i only use vpn tbh.. but I am also not premium

silent nova
#

Less lag, but I can't figure out some of the challenges.

upper knoll
#

tbh at some point i should switch to running it on my local pc

#

cause i got great hardware for it i just use the attack box cause its easy icl

silent nova
#

Would recommend switching, especially if doing hash brute forces.

However, some VMs may need you to do the task in-VM.

upper knoll
#

tbh u shouldnt be brute forcing much and even if u have to it has to answer in 5 mins to met the requirements i believe

sand trench
stoic quarry
upper knoll
#

yer i have a kali vm

marsh crow
sand trench
#

yeah for brute forcing hash cracking vm:s are not always great

sharp citrusBOT
upper knoll
#

i personally dont use it but that should help

grizzled wing
#

someone a day ago or so was asking about the time it took to complete a path, it shows on the certification of completion

upper knoll
#

how is the veggies btw!

grizzled wing
#

๐Ÿงฆ

spice otter
#

do i need certs like A+ or can i just jump to security+?

upper knoll
#

depends on your base knowledge and experience

#

and if u want to go offensive or defensive

spice otter
#

defensive

#

probably

marsh crow
upper knoll
#

if u dont have any experience or educational qualifications probably u need to get some certs

jovial burrow
#

hey can we make a team here for the hackfinity challenge?

silent nova
upper knoll
grizzled wing
#

some argue that A+ cert is old in modern times

spice otter
upper knoll
#

some yes some nop

#

certs would probably help u when u get out of school

#

and some schools offer some certs while u are studying so look into that

grizzled wing
twin ridgeBOT
#

Gave +1 Rep to @upper knoll (current: #241 - 32)

stoic quarry
#

I jumped from nothing to Sec+

nimble ether
#

yoo

upper knoll
#

all good i dont know how i became helper tonight but idm it

stoic quarry
#

But I had a lot of experience so I could probably get A+ If I wanted lol

grizzled wing
#

tempest instead of 73mp3st

spice otter
stoic quarry
#

That's fair

nimble ether
#

broo how much time it takes a beginner to find his first bug in bug bounty

stoic quarry
#

If you study for an exam but decide to go for something else, you still have the skills

spice otter
wooden totem
#

Forgot t at the end

nimble ether
#

like considering a complete beginner

stoic quarry
#

Just not the cert

upper knoll
stoic quarry
#

Quite a while

#

I'd think

nimble ether
#

4mnth?

upper knoll
#

a lot of these creators will sell u the life on bug bounties but its a long road and takes experience

#

and its a side income not an outright stable income

spice otter
upper knoll
#

4 months if u are beyond dedicated and learn fast

stoic quarry
#

Yeah no one is making a table income from bug bounties lol

upper knoll
#

id probably say a year

pseudo mason
#

.

shell bluff
#

sup rats

nimble ether
#

as a side hustle in my teenage

#

?

spice otter
#

yea if you dotn know anything bug bounty will take a good bit

craggy mesa
#

Hey, is anyone looking for a team? Weโ€™re two now, and I need one more whoโ€™s good in Forensics and preferably speaks Arabic!

upper knoll
#

not the worst thing but it takes a lot of base knowledge

sand trench
#

welp time to go for earlyish sleep sloop to beep boop while meep moops :D

shell bluff
#

i looked up side hustles for teens all of them are lowk scuffed

stoic quarry
#

There was that guy who found an exploit to get any amount of food from McDonalds for $1, and all he got was 250 dollar amazon card

nimble ether
#

what should I do in beginning

upper knoll
nimble ether
#

so that I'm motivated

upper knoll
#

it will guide u the stuff u need

upper knoll
#

it gets to web app pentesting and such later down the paths

sand trench
stoic quarry
stoic quarry
upper knoll
nimble ether
#

it doesn't I guess

wooden totem
#

Maybe I have a problem, it doesn't satisfy me to do something on uneven time

spice otter
# stoic quarry ?

i seen a video of a homeless dude(living in his car) showing people how to order most of the menu for $1

stoic quarry
#

Right

nimble ether
#

should I follow free tier of thm

upper knoll
stoic quarry
#

No, I'm talking about the guy who found a vuln

stoic quarry
upper knoll
#

i cant remember off top of my head but i think 101 isnt

#

it will tell what parts are free

#

and arenty

nimble ether
#

yeah only 101 is free

stoic quarry
#

Intro to cybersecurity should be free

nimble ether
#

but later on its paid

wooden totem
upper knoll
#

start at 101 and if u decide its for u, u can continue on the path there is also a lot of free content on the paths

nimble ether
#

I don't have a pc I'm doing all this in a 11 inch tablet

upper knoll
#

as well as other standalone content

nimble ether
#

wish me luck โ˜ ๏ธ

wooden totem
nimble ether
#

what is statistics?

#

how u guys make notes on thm

stoic quarry
#

I use Joplin

nimble ether
#

thanks for the help though

#

like u guys copy paste?

stoic quarry
#

But Notion/Obsidian/Whatever notetaking app should be good

#

I tend to write them in my own way, else I don't tend to learn anything

modest charm
#

im using joplin as well, it is free to connect with my onedrive and have my machines synced

stoic quarry
#

Lol

upper knoll
upper knoll
#

forms deeper memory paths and makes sure understand what u are reading

nimble ether
#

joplim works in Android?

upper knoll
#

rather than just blurting out what u read again

nimble ether
#

๐Ÿ˜‚

stoic quarry
#

Yeah, copying/pasting doesn't help you learn anything. You gotta understand something before you move on imo

#

So rewriting in your own words/in a way you know you'll understand is a lot better

#

Just my .2c

upper knoll
#

^

#

same here

twin ridgeBOT
#

Gave +1 Rep to @stoic quarry (current: #311 - 21)

nimble ether
#

u guys are professional?โ˜ ๏ธ

upper knoll
#

im unemployed

nimble ether
#

โ˜ ๏ธโ˜ ๏ธโ˜ ๏ธ

#

I'm unemployed with no skills

stoic quarry
#

I work in infosec yeah

nimble ether
#

being a high school student

modest charm
#

i dont work in infosec but some days I spend more hours around it than with my real job kekw

stoic quarry
#

Lmao nice

nimble ether
#

โ˜ ๏ธ

stoic quarry
#

You'll get there

upper knoll
#

my goal is to end up in cyber sec ill get there within the year i believe

#

until then its everyday on thm and some days in gym

modest charm
#

im in the IT field but in another area, and for too long, it is not worth changing anymore

upper knoll
#

just grinding

nimble ether
#

my goal is to get my first bounty and show my parents their is better alternative to gov exams ๐Ÿ˜ญ

upper knoll
#

do the exams

#

they will only ever help u

nimble ether
#

๐Ÿ˜ตโ€๐Ÿ’ซ

upper knoll
#

school qualifications are always good to have

#

but still study this if u have passion

nimble ether
#

u want me complete for 1000 seats when 10 lakh people sit for a exam

#

?

#

compete*

upper knoll
#

my brain is too fried for that lol

#

my advice is as is

#

school never hurts u

nimble ether
#

I will continue this as passion

#

study will always be priority

spice otter
#

yea if your not passianote it tends to be harder to learn

stoic quarry
#

Mmhm

#

Good to keep at something if it's a hobby and you want to genuinely learn. Don't rush in expecting to be a l33t haxor in 3 months

grizzled wing
#
if info_source =="TikTok":
   pass
else:
   ask_THM_chat()
crude stump
#

I love tiktok

grizzled wing
#

does THM tiktok account post much?

stoic quarry
#

Lmao true

crystal mauve
#

So, I'm having issues running feroxbuster on thms VM, should it be easier to download n run through snap or apt

stoic quarry
#

What issues are ya having

crystal mauve
#

It seems to not wanna retrieve wordlists when I've installed through snap

#

Usually end up having to do a rust apt install

#

But am I supposed to b just installing either apt or snap

stoic quarry
#

I'll be honest, i've not had too much exp with snap

#

But it might have permission issues yeah

#

Just install through apt

crystal mauve
#

Yeah I just do it because that's the run around chatgpt suggests

#

Do you do any repos or anything

#

As soon as you got the VM running ?

#

Idk I'm at the point where I feel like Id to stick to a couple of initial scans

#

Rustscan / nmap works fine

#

But ferox seems to grab domains that the others wouldn't detect am I wrong ?

cinder terrace
#

Who has a comptia a+ cert ?

hearty hollow
#

How do i link my tryhackme account to this discord account to get the roles

sharp citrusBOT
spice otter
hearty hollow
#

sick

rapid merlin
#

bruh

crystal mauve
#

I'm studying for security+

#

I read that all the questions have been leaked online

rapid merlin
spice otter
marsh crow
#

How do you guys go about learn a programming language?? I tend to fall into tutorial hell ๐Ÿ˜•

spice otter
#

after learning the basics from tutorial hell, go to chatgpt and ask it to give you some beginner friendly projects to help build your foundations

shy finch
shy finch
spice otter
#

yep ๐Ÿ™‚ (I suck at coming up with projects myself so i make chatgpt do that for me)

#

lol

marsh crow
#

Yeah, I've learned syntax before but trying to make a project was always the issue for me. Because in my head I have the idea but I cannot put it in code. So I will study harder ๐Ÿซก

#

Thank you

spice otter
#

good luck ๐Ÿซก

shy finch
#

btw is there a room about learning cms pentest ? i dont find any

vestal bone
#

what's that thing happening rn called hackfinity

#

is it an event?

shy finch
vestal bone
#

is it that tryhack3m:bricks heist?

stoic quarry
#

No it's just a CTF event for students

vestal bone
#

oh, how do I access it

#

and hwne does it finish please

stoic quarry
marsh crow
vestal bone
#

2 days!

stoic quarry
#

Details are on the page

vestal bone
#

I am at the start on "Network Security
Learn the basics of passive and active network reconnaissance. Understand how common protocols work and their attack vectors."
Do you think I could get at least 1 flag

stoic quarry
#

It's a beginner CTF, might not be too hard

#

Give it a shot at least

vestal bone
#

okie, I'll try it rn

stoic quarry
#

Good luck!

spice otter
#

how often does THM do this events?

#

these

stoic quarry
#

I'm not sure if there's a schedule, but there are a lot of events throughout the year

#

The yearly holiday one is always pretty neat. They're all still available iirc

mossy river
#

@cerulean nest Everything okay?

cerulean nest
mossy river
cerulean nest
#

if thats what ur asking abt

#

kk

mossy river
#

ty

spice otter
stoic quarry
#

Advent of Cyber or AoC in the search should get you some of them

#

Nice and easy challenges

silent nova
#

I can vouch for AoC, especially AoC 2024.

stoic quarry
#

2024 was lots of fun

#

I don't think I actually finished it lol

spice otter
#

and whats better using openvpn or just using the attackbox thm gives

stoic quarry
#

I prefer the ovpn on a dedicated Kali VM

#

But they should both work for rooms

spice otter
#

alrighttt thank you

rapid merlin
#

Is that the time ๐Ÿซฃ

stoic quarry
#

Is what all the time?

rapid merlin
#

Itโ€™s 1 am already

stoic quarry
#

Oh lol, I read that wrong

#

It is too

silent nova
rapid merlin
#

Itโ€™s so early

#

Iโ€™m so tired

silent nova
cerulean nest
#

do the hackfinity challenges dissapear after the day has passed?

stoic quarry
cerulean nest
#

or are they added on to like advent of cyber