#general

1 messages · Page 995 of 1

bronze kelp
#

Also for legal reasons this is not financial advice lol

blazing granite
#

I lived in US, Manhattan exactly for 2 years

deft quarry
#

Well I'll have to find a jjob that supports that, but that definitely sounds like something I'd wanna do if I could lol

blazing granite
#

Lived in Italy too

#

UK

deft quarry
#

I live in Philly and the farthest I've been besides that was Florida once

bronze kelp
#

Oh damn it's 1am... I need to do the eeps

deft quarry
#

Gioodnight! Thanks for the help

bronze kelp
fervent ruin
#

I just had a big conversation with chatgpt and he talked about Suricata IDS

blissful current
#

🦹‍♂️

fervent ruin
#

I think im going to use it on windows

#

Maybe not on kali bc i use kali just for thm

#

Anyone has a opinion about suricata ?

pliant bronze
split plover
sick lance
deep atlas
#

sup people, i got a question, in Cybersecurity 101, at network security protocols at the last question, i found the flag i just cant type it

#

THM%7BB8WM6P%7D

#

i know that the %7 is {

#

i got it, for some reason the answer was THM{B8WMP}

#

B8WM6P i mean

cloud quiver
#

b and d are also part of encoding

deep atlas
#

yeah understood, thanks dude

deep atlas
red surge
cloud quiver
#

@deep atlas @red surge Thanks 🙂

twin ridgeBOT
#

Gave +1 Rep to @deep atlas (current: #2796 - 1)

deft quarry
#

I see THM had a referral program in the past, does it no longer exist?

sick lance
#

No.

deft quarry
#

Aw that's unfortunate

sick lance
#

75 GBP* THM swag voucher: j0y0p1-x2ky0t-1zymgr-wmmdxi

*You still need to pay the postage of the items

**I don't know if this has been claimed.

blissful current
shut hawk
#

Thought that was one of those scam messages for a second 💀

devout palm
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 3601)

sick lance
devout palm
#

It's a cheap price.

#

Do you have more vouchers?

sick lance
#

No, that was the only one.

dark mason
sick lance
#

Can't believe somebody didn't take it the first time kekw

devout palm
#

I didn't have cash so i needed to transfer some money to my bank

deft quarry
#

I was mid-game, luckily it autofilled my cc information lmao

deep atlas
#

yo can someone tell me why im not in the monthly leaderboard ranking of my country?

solar echo
#

question

deep atlas
#

im on 2.6k points this month

#

and im already set to portugal

red surge
#

i think some event's dont count

solar echo
#

why do some people have gifs as their pfp on thm but i cant upload mine

#

lol

deep atlas
solar echo
deep atlas
#

hm

solar echo
#

someone can become a 0xMYTHIC with a few events

deep atlas
#

i see

#

alright i guess

solar echo
#

@cloud quiver idk where to ask this

solar echo
cloud quiver
solar echo
naive violet
deep atlas
cloud quiver
deep atlas
#

i have more monthly points than all of them

#

should be 1st

cloud quiver
deep atlas
#

portugal

#

the first guy which is my friend he isnt on tryhackme that much, he stays in call with me doing a couple ctfs per day while im still studying to finish the cybersecurity 101

cloud quiver
deep atlas
#

alright understood

cloud quiver
#

walkthrough rooms are not counted

deep atlas
#

ok thank you for the clarification

languid torrent
#

----index.html
|
|
|
----- projet
|-----projet.html
|-----tableau.xlsx

Sur github pour faire en sorte que tableau saffiche quand je clique sur un bouton normalement je n'ai pas de besoin de mettre de ../ car il est deja dans projet
<button><a href="BTS SIO- Tableau de synthèse - Epreuve E4 -1- (1).xlsx" target="_blank">TABLEAU DE SYNTHESE</a></button>

#

On github to ensure that the table is displayed when I click on a button normally I do not need to put ../ because it is already in the project

#

but when I click on the button it gives me an error. and sorry hello everyone 🙂

solar echo
#

guys I cant do it still lol

#

I just converted the gif to png and it still wont work

#

HAHAHA did it

inner bloom
sick lance
#

I posted the code in chat twice, it's fair game. 😄

languid torrent
# sick lance English only please.

no, I actually understood as there were spaces in the file name I should add %20 I don't know what it's for so I just renamed the file but thanks anyway

twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 3602)

languid torrent
#

no I know but why doesn't it work but on another file it works

sick lance
#

It's used in URL encoding, also cli too

fathom wedge
#

Hey guys is “chompie” in this community?

sick lance
#

@chompie

#

No.

fathom wedge
#

You know her,right?

sick lance
#

No?

fathom wedge
#

Hmmm 🤔 that’s interesting

sick lance
#

Why is that interesting?

inner bloom
fathom wedge
#

Nothing really just taught she be here she very popular in pentesting industry

sick lance
#

I have never heard of them...

inner bloom
#

..

fathom wedge
fathom wedge
inner bloom
#

nop

inner bloom
#

wait is this against the rules

sick lance
fathom wedge
# inner bloom nop

Your pronouns gave you out except your going to reverse engineer it 🎼

inner bloom
sick lance
#

😄

fathom wedge
inner bloom
#

potato 🥔

fathom wedge
#

😂 no hard feelings buddy just felt the subject of the conversation is in this community

#

That’s all

sick lance
#

You sent 4 messages immediatly after the other.

#

So it was either

a) Copy paste
b) scripted.

fathom wedge
sick lance
#

You did not type all those lines out manually.

#

And in the case of b)

Self-botting is against ToS of Discord.

fathom wedge
fathom wedge
chilly veldt
fathom wedge
#

Kinda kinda mafia for real

fathom wedge
sick lance
#

Another day, another day revising some web app

sturdy raptor
leaden marsh
#

I miss my laptop💔

leaden marsh
ruby ocean
#

burp suite is boring as hell

near sapphire
#

the tool is boring?

leaden marsh
ruby ocean
ruby ocean
inner bloom
#

do i need to work on other parts too? cri

polar wraith
sick lance
sick lance
#

Had paid parts though,those labs are free, you can download the VM to host.

polar wraith
#

ahk ty

leaden marsh
#

@sick lance I have been asked u

ruby ocean
#

guys should i skip burp suite rooms and go for network security since its easier for me

leaden marsh
ruby ocean
#

and do burp suite in the end

leaden marsh
sick lance
leaden marsh
leaden marsh
deft quarry
leaden marsh
leaden marsh
ruby ocean
#

does the jr pentesting course give you a cert?

leaden marsh
ruby ocean
#

nice

lyric minnow
#

Hey I'm new in this field can anyone help me to start

slow helm
#

why thm support isnt responding on emails ?

viscid jungle
sick lance
slow helm
sick lance
#

Ok, response times are usually 4-5 days.

And they don't work weekends

twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 3604)

deft quarry
twin ridgeBOT
#

Gave +1 Rep to @sick lance (current: #2 - 3605)

red surge
#

I am trying to practice firewall rules for an exam is there a windows server room on thm ?

fleet meteor
#

Anyone else have their streak reset today (without missing a day) ?

I just lost my streak of 1700/1800 days NotLikeThis

red surge
#

:S

sharp citrusBOT
#
TryHackMe's Email

TryHackMe's support email address.

fleet meteor
#

Yeah done, just wanted to know if I was the only one

red surge
#

are you going for 10 year badge 😄

fleet meteor
halcyon dune
errant delta
#

Whats up brothers and sisters

somber garnet
#

heyy

#

anyone who still uses IRC?

viscid jungle
# lyric minnow Okay

Okay first tip is don’t spend time watching tutorials always, nor reading books, if you really want to learn you have to start hacking right away, and you will learn in the meantime you hack by googling, and you have to first have the mindset of a hacker, instead of saying “this is so hard to hack” say “what are small leaks that lead me to bigger opportunities of getting in” since thoughts shape our reality really. And try different methods of learning because each person has a different way of learning :3

viscid jungle
#

Oh and definitely destroy your ego, ego is the worst. You have to first master the basics before moving on to advanced, forget the side that says basics are useless

sick lance
#

Watch tutorials and absolutely read books.

viscid jungle
#

Yes true but I said “always”

#

Like don’t do it always, experience is also important

#

But it’s still important

sick lance
#

Your sentence structure may confuse people who aren't using English as a primary language.

viscid jungle
#

😭

#

Pardon me

#

Thank you tho I’ll try to be more clear

sick lance
#

I'm not saying it's a bad thing.

ruby ocean
#

i just learnt metasploit and nmap as my starting shit

sick lance
#

I mean, it may not be your primary language, I didn't mention it to put you down, but bring awareness.

viscid jungle
heady nova
#

good to hear that you flying high dude, get that masters. Physical pentest though, what qualification does it require? I heard that a minimum is defcon black badge

#

rough roads, feels like i wasted past one year academically after coming back from the internship. working 7am till midnight had its downsides i guess. Oh well, I got hailed at the company for doing what i did and got a full time offer so that is pretty nice. Joining mid june. Till then focusing on android reverse engineering and AI/ML

cyan sandal
#

hi

#

evening, all

lament tendon
lament tendon
heady nova
leaden marsh
lament tendon
#

More then Defcon black badge winners. ;D

lament tendon
heady nova
#

Yeah but physical pentest gather coolest of the stories I have ever come across

#

Can't talk about how I managed to unravel a stub to decrypt the squiggles worth 3 pages to find out a domain that was already in the telemetry

heady nova
leaden marsh
#

Like hacking server ?

heady nova
#

Hacking a building or a physical space that typically disallows public visits

devout palm
#

@sick lance

crude stump
#

Now this is just spam at this point. There was another one in infosec

lament tendon
#

Why are not verified people allowed to post external links anyways?

crude stump
#

Ikr

lament tendon
#

Feel like this type of spam would be a decently simple issue to solve.

crude stump
#

Especially since these accounts were made the same day

#

Not even hacked

#

Actually nvm

#

November

lament tendon
#

I mean, they likely only find THM through the discorvery function or something.
Does not seem targeted, so some very basic mitigtions should work fine.

devout palm
#

I think it would be nice to automatically delete messages that contain links and came from a non-verified member. (Since there is no embed perms)

lament tendon
#

Or redirect them to the advanced channels, I'm sure we could have a field day. xD

devout palm
#

Muting or banning them would cause false positives but deleting the message would fix the issue right away and cause no harm.

lament tendon
#

That's too harsh. Deletion is all that would be necessary.
You don't want to accidentally ban some new person posting a link to a writeup or something.

cyan sandal
#

what are you talking about?

lament tendon
#

Some relatively common spam that pops up on here every few days.

devout palm
#

We are talking about spam messages and their prevention.

lament tendon
#

Very poorly constructed spam. kekw

devout palm
oak merlin
#

hi

grim sparrowBOT
#

Done!

crude stump
cyan sandal
#

This is unavoidable in public chat rooms

devout palm
#

It's easily mitigable

crude stump
naive violet
wooden totem
#

why are the harmful links themselves not blocked, discord has built in automod for that

devout palm
naive violet
wooden totem
devout palm
#

That's how they spread the spam message. Compromising accounts and posting that link everywhere.

queen flare
#

is it common for people who are learning cybersecurity themselves, to get hacked that often

#

💀

naive violet
#

Learning cyber doesn't make you unhackable

near sapphire
#

everyone is human

wooden totem
naive violet
#

Some of the attacks come from close friends whose accounts have been hacked

near sapphire
#

im sure 99% of ppl here have gotten malware or hacked before

queen flare
leaden marsh
#

There is LLMS hacking in tryhackme

near sapphire
queen flare
novel portal
#

@mossy river is it okay to do group study of thm rooms in our own server like in my sever i have around 130 members i am gonna lead a osint room tommorow with them

queen flare
wooden totem
#

I personally didn't get motivated to find out more about security after being a victim, but rather seeing others be

#

which I would say is more common if I had to guess

near sapphire
#

never got my discord hacked tho

#

only get a shit ton of ransomware

queen flare
wooden totem
#

huge skill issue?

near sapphire
#

uhh more like got no money

#

im not sure i could elaborate further here, might be against the rules

queen flare
#

then shouldn't you be more cautious with not ruining the systems you have?

wooden totem
#

(without saying anything more into that topic, it's still a skill issue)

rigid urchin
#

Thats why you gotta becareful and make sure you have mfa on everything that you can have it on.

wooden totem
#

now you have reddit and vms 😎

mossy river
near sapphire
heady nova
novel portal
rigid urchin
heady nova
#

hey jabba, been good?

novel portal
#

i choose the free room so everyone can access it

devout palm
wooden totem
near sapphire
#

that might count as promoting another server

novel portal
novel portal
mossy river
limpid jacinth
#

@rapid merlin

heady nova
mossy river
dark mason
#

(I got only ransomware)

rigid urchin
near sapphire
#

fsr minecraft mod sites always looks so sus

rigid urchin
#

I just use mod launchers if I wanna play modded

#

Not that I play minecraft all that much anyway

wooden totem
near sapphire
#

experience is the best teacher they say

wooden totem
lyric minnow
#

Hey how can I start

near sapphire
#

honestly its much better to get ransomware when ur a child and have nothing important in ur device rather than when ur an adult and have a lot of important documents

lyric minnow
#

Please tell me I'm confused

wooden totem
heady nova
rigid urchin
wooden totem
leaden marsh
lyric minnow
#

Which app should I download on my laptop for this

wooden totem
near sapphire
#

my first device is my own so maybe its different

rigid urchin
#

No app needed

lyric minnow
#

But where can I do real things.

rigid urchin
leaden marsh
dark mason
wooden totem
rigid urchin
# lyric minnow Noop

It's a website to teach you different concepts, and so you can learn different areas of cybersecurity.

lyric minnow
#

Do you guys know dream craker

dark mason
wooden totem
lyric minnow
#

I need to code right?

wooden totem
foggy hawk
#

Hello

dark mason
rigid urchin
wooden totem
halcyon dune
#

Your welcome

wooden totem
#

around your laptop

halcyon dune
#

I hope the advice helped

foggy hawk
#

Who's good at pentesting here? please msg me

dark mason
wooden totem
halcyon dune
#

In the end

foggy hawk
#

Im just trynna get into ethical hacking

lyric minnow
rigid urchin
halcyon dune
foggy hawk
#

ok thanks

halcyon dune
#

You're welcome

rigid urchin
#

Also is ceh really as relevant as pentesting anymore?

halcyon dune
#

Nobody can tell anything new than tell you do self study

#

It will take 500-1000 hours

#

Basically to get decent

dark mason
modern fox
#

arrives

foggy hawk
dark mason
halcyon dune
rigid urchin
#

Lol gato ctfu nice typo

halcyon dune
#

Basically that

halcyon dune
#

It's more annoying to write this way

dark mason
#

Yt videos don't teach you much

halcyon dune
#

Have to finish Cyber Security 101 now

dark mason
foggy hawk
#

Just a question do people abuse this knowledge aswell?

desert shuttle
#

Ofc

dark mason
#

Absolutely

mossy river
rigid urchin
# halcyon dune

Could always get a physical keyboard for your mobile device 🙂

near sapphire
#

you could always use a laptop

queen flare
#

wrong reply

halcyon dune
queen flare
#

@halcyon dune how do you have moving stuff in your pfp without nitro?

rigid urchin
#

Maybe it's a gif upload?

mossy river
#

Avatar decoration

rigid urchin
#

Or that

mossy river
#

It’s like the chain around Ferb’s neck

near sapphire
#

is ferb rich

halcyon dune
mossy river
#

Hell yeah, he’s ferb

queen flare
#

ferb who?

near sapphire
#

jabba ban him he doesnt know ferb /j

rigid urchin
#

I wanna say it's jabbas pfp

dark mason
#

I am bored, lemme start some controversy

#

Waffles or pancakes?

mossy river
#

Pancakes

#

If you say waffles you are being put on Santa’s naughty list

dark mason
devout palm
queen flare
mossy river
#

It’s more of a “anyone who celebrates christmas” thing

queen flare
#

hating waffles?

mossy river
#

Oh, no, British people hate everything

queen flare
#

even pancake?

mossy river
#

If it’s the sweet ones sold by Sainsbury’s yes

queen flare
#

ah

#

so its selective hating

mossy river
#

It’s just an overall negativity

dark mason
#

Any of you guys familiar with fighter jets?

queen flare
#

used to rent them to go to school

queen flare
#

f-16 an hour for about 5 bucks

rigid urchin
#

Thats cheap

queen flare
#

you'd be surprised with the a-10 thunderbolt prices

#

used to be about a dollar for an hour

#

then inflation swooped in

#

now its stupidly expensive

dark mason
queen flare
#

that seems like an a10 thunderbolt btw

dark mason
#

But with a cram for air to air

queen flare
#

yes

#

that's why its cursed

#

i guess its okay if you don't fly it

#

use the cram for air to air defense

#

and the weapons on the a10 for ground to ground combat

#

drive it around like a tank

rigid urchin
#

We need blursed images lol

queen flare
#

anyways, i'll go look for some bleach to wash my eyes with

foggy hawk
# dark mason It is

Question where exactly on the web of tryhackme can i learn about bug bounty

karmic tendon
#

plz ping me

queen flare
#

you can use tryhackme to gain the knowledge required for you to be able to hunt those vulnerabilities

#

please send code like this in codeblocks
its impossible to look at this like this

#

also this looks like an ip spoofing program
i'm not sure if these are allowed to be posted here
@mossy river

mossy river
#

I don’t think that’s how you spoof IPs tbh

karmic tendon
mossy river
#

Ethical hacking, yes

sturdy pike
#

@mossy river can I DM you about something?

karmic tendon
twin ridgeBOT
#

Gave +1 Rep to @queen flare (current: #277 - 26)

mossy river
karmic tendon
#

@queen flare can you plz help me in dm?

queen flare
#

no

karmic tendon
amber skiff
#

What should i learn first blue or red team?

blissful snow
queen flare
#

you could try taking the career quiz on the site

amber skiff
#

I like the red team but there aren't a lot of entry level jobs

dark mason
amber skiff
#

Blue team is kinda boring for me

dark mason
#

Learning one is like learning 25% of the other one

blissful snow
#

purple team

amber skiff
queen flare
#

otherwise, i'd say just keep learning whatever you enjoy
knowledge does not go to waste

amber skiff
#

What rooms do I have to learn? My college doesn't have a specialization for cyber security, i have to rely on the internet totally and there's a ton of knowledge i get confused

queen flare
twin ridgeBOT
#

Gave 1 Rep to thunderstar1724 (current: #270 - 27)

amber skiff
oblique needle
#

👀

rapid merlin
#

hello

#

how long does it take to be good at doing bug bounty

rapid merlin
#

pentesting?

upper knoll
#

Of hard work on fundamentals. People treat it like the gold rush was treated but very few make big or stable money

#

It’s going to be just as long for pentesting

rapid merlin
#

but alot of people who learn too abuse it

#

i mean the hackers and shit did it take them long too or they just knew the basics and dump data etc

#

(not doing it my self js asking)

upper knoll
#

No

rapid merlin
#

Whats the answer then

#

did they need to learn the whole progress too

upper knoll
#

No skiddy with a data dump is making money of a bug bounties because A that’s not how it works and B is illegal

rapid merlin
#

thats why i asked

#

Did it take them yrs too

upper knoll
#

That’s illegal if I’m understanding what your saying

rapid merlin
#

yes it is

#

js asking if it took them long too just to obtain the skill to dump data

upper knoll
#

@cloud quiver I believe this convo now no longer follows laws and ethics.

cloud quiver
#

Yeah that is illegal , we don't discuss such things here 🙂

twin ridgeBOT
#

Gave +1 Rep to @upper knoll (current: #181 - 47)

upper knoll
# cloud quiver Thanks 🙂

Sorry i was just trying to explain complexity of field didn’t realised they wanted unethical side. Appreciate you blobfingerguns blobheart

rapid merlin
rapid merlin
#

..

#

I was just curious sir

cloud quiver
crystal mauve
#

Good morning tipsfedora

dark mason
crystal mauve
wooden totem
#

Do ads just not get regulated? I keep getting google ads for a gambling game that literally says "you will 100% get 10k dollars in 1 day of playing, no lies, no scam"

halcyon dune
foggy hawk
#

Hello

crystal mauve
halcyon dune
#

probably I would need to do Soc Analyst as next one

foggy hawk
#

yo chat

crystal mauve
#

Wap + RT

mossy river
#

Keep it appropriate

wooden totem
halcyon dune
rapid merlin
mossy river
rapid merlin
crystal mauve
rapid merlin
#

@mossy river friends?

mossy river
#

I'm okay thank you, I haven't really spoken to you 😅

rapid merlin
#

Is there any good py dev here

foggy hawk
#

Hello

#

Question

crystal mauve
foggy hawk
#

Do you guys prefer to do coding or pentesting (i wanna learn something but i wanna learn it fast so which)

dark mason
#

You can't learn anything fast

foggy hawk
#

I know

#

But not fast fast

#

Im just talking as in

#

which 1 is faster

#

to learn

mossy river
#

Completely subjective

mossy river
#

Programming is easier to learn imo just because there's sort of an end goal, put pentesting there's always something to learn

inner bloom
foggy hawk
#

coding with ai

#

😎

mossy river
#

Easier but you still need to understand programming to modify the code

foggy hawk
#

i dont think the codes ai give u r always good

#

so prolly half of the code gotta be self coded

halcyon dune
rapid merlin
#

^^

#

Paying well if you do dm me

dark mason
#

🍿

mossy river
rapid merlin
dark mason
amber skiff
dark mason
#

But I highly recommend

rapid merlin
amber skiff
twin ridgeBOT
#

Gave 1 Rep to codru. (current: #353 - 18)

mossy river
halcyon dune
rapid merlin
#

Whyyyy

#

Why is it bad

mossy river
#

You're trying to misuse a service for personal gain

inner bloom
#

miss the days when my name used to be red

amber skiff
amber skiff
#

soc is kinda boring for me, no offence to anyone

foggy hawk
#

People here ask for help

#

Thats what i just did

dark mason
crystal mauve
foggy hawk
#

Who is the best dev here

foggy hawk
#

what

#

..?

crystal mauve
#

They aren’t addressing you

foggy hawk
#

Bro wtf ru on abt

#

lmfao

amber skiff
crystal mauve
foggy hawk
crystal mauve
#

He wasn’t taking to you

foggy hawk
#

he was i think

crystal mauve
#

No he wasn’t

foggy hawk
#

wrong guy

#

lol

crystal mauve
#

Jesus Christ

foggy hawk
#

mybad

dark mason
amber skiff
#

why i have a heart flower of green color next to my nameNotLikeThis

crystal mauve
#

You just type u don’t read

foggy hawk
#

dw

#

abt

#

it

foggy hawk
#

Kid

crystal mauve
#

Muted

foggy hawk
#

Ok kid

dark mason
amber skiff
#

without reference it's next to impossible

dark mason
dark mason
#

(This happens in every discord server)

amber skiff
#

I'm new to the whole discord, not just this sever..ik and used discord for a long time but not too muchpepehands

halcyon dune
#

I think it's easier to secure such a position too

amber skiff
sand trench
#

Wallpaper of the day:

amber skiff
#

But red team is Love

halcyon dune
#

Hehe, can be also bug bounty hunter during night soc analyst during the day

amber skiff
amber skiff
dark mason
#

Not the concept of it

amber skiff
dark mason
#

But how companies treat the reports

#

You find Sql injection?

#

"Works as intended"

#

Or

#

"Low severity"

crystal mauve
#

How long have u been doing it thief ? Bug bounties

#

Don’t low severity still pay 400$ in hacker one ?

amber skiff
dark mason
halcyon dune
#

Really I think bounties are quite useless, if you don't have your own exploits otherwise 1000's of Indians using the same tools and the same methods to exploit stuff.

halcyon dune
#

It becomes who uses the same exploit

#

First

dark mason
#

It doesn't rely on your exploit

#

But on how you perform said assessment

amber skiff
halcyon dune
dark mason
#

Bug bounties are not for script kiddies

crystal mauve
#

We are all prob skiddys

dark mason
#

Who knew?

dark mason
amber skiff
#

most of them are just doing this because they think this is cool and companies will pay them a fortune

amber skiff
crystal mauve
crystal mauve
#

Either

dark mason
#

Every vulnerability is practically a zero day

#

So yes

crystal mauve
#

I’m def a skiddy,

dark mason
crystal mauve
#

Nice what did u find ? Or write

dark mason
#

But it was nothing impressive

crystal mauve
#

I thought it described anyone who just runs scripts or can write basic ones w chatgpt but doesn’t really understand the or any language in depth / syntax or rules

dark mason
#

Basically just an IDOR that allowed to change the date of other users

dark mason
crystal mauve
#

Yeah I found an idor too but I don’t consider that at a difficulty range high enough to consider myself not a skid

dark mason
#

Like testing for xss, sqli, they go around on cve and try thousands of targets

#

In hopes they would find smth

amber skiff
#

@halcyon dune check ur dm

mossy river
amber skiff
#

but from next time i will make sure to ask first

#

thaank you

crystal mauve
#

Jabba what do u think qualifys a skiddy to non skiddy?

mossy river
#

Understanding what you're doing before you do it.
Or at least trying to read it

dark mason
#

Perfect explanation imo

crystal mauve
#

Oh ok

#

I was wrong then

dark mason
crystal mauve
dark mason
amber skiff
#

guys I have poured cold drinks on my laptop keyboard yesterday, and some keys got sticky and hard when pressed, no internal damage, what should I do

desert shuttle
#

wash them?

dark mason
#

Shit can go south real fast

crystal mauve
#

How bout u @dark mason

dark mason
amber skiff
dark mason
#

I have 4 (or 8 depending on my luck) years to study

crystal mauve
#

Ye I’ve been operating trains for 12 yrs so I’m not in a rush but I’d welcome the change earlier than later

amber skiff
dark mason
#

Or did I get the wrong impression?

crystal mauve
crystal mauve
dark mason
amber skiff
kindred yew
#

Good evening chat

crystal mauve
slate linden
#

excuse me, can I ask something please?

crystal mauve
#

Sup study?

slate linden
#

in your opinion, what do you prefer more? Swe or cybersecurity? Tysm for answering my question!

dark mason
slate linden
#

cuz i'm pursuing in comp sci and considering both

foggy hawk
#

Need someone to make a panel for me dm me

mossy river
amber skiff
slate linden
#

and yeah how the hell can a 16 yrs old hack Rockstar company guys😭 . I'm 15 and still struggling with nmap and linux fundamental.s

dark mason
slate linden
dark mason
#

If you get the oscp you are basically hired

twin ridgeBOT
#

Gave +1 Rep to @mossy river (current: #6 - 1565)

crystal mauve
amber skiff
#

and we are here only learning for landing a job

dark mason
slate linden
dark mason
#

If you do end up getting an it job

#

Use the spare time to study

dark mason
#

He was good at social engineering

slate linden
#

oh yk wat thank u

dark mason
dark mason
amber skiff
mossy river
foggy hawk
#

Need a dev who can make a panel with pages etc etc

amber skiff
mossy river
dark mason
amber skiff
mossy river
slate linden
#

can somehow silently hack me pls

mossy river
slate linden
#

mb mb

mossy river
# foggy hawk Why

this is an infosec community, not really a programming one, you're more likely to get an actual response from one dedicated to programming

#

Not saying it's not possible however this is your 3rd/4th message here within the past hour and you don't seem to be getting what you are looking for

lyric minnow
#

I have a demo discord id how can I hack it can I hack it from my phone or do I need my laptop

mossy river
foggy hawk
#

on any server then

lyric minnow
lyric minnow
amber skiff
mossy river
# lyric minnow But that is my own account

Yes but it's not your service.
You need permission from the service, you don't actually own the account on any service you make; they can take it away as quickly as you made it

mossy river
mossy river
# lyric minnow What?

You are using the service, that does not automatically give you permission to hack it.

amber skiff
# lyric minnow What?

try learning instead of hacking account if you're a begginer, it will get you in a lot of trouble

mossy river
amber skiff
sturdy pike
#

Bro level 5 role looks similar to 0xC

lyric minnow
#

Okay do I need to learn code

jolly iron
#

It feels cold without a shadow 🫤

amber skiff
mossy river
lyric minnow
broken horizon
#

sup

jolly iron
jolly iron
lyric minnow
amber skiff
#

@lyric minnow Dude I can't help you with any question you have

lyric minnow
#

Okay

#

But I don't want to take help from my dad

slate linden
#

alr g9 everyone

#

have a good one

sturdy pike
amber skiff
sturdy pike
amber skiff
jolly iron
twin ridgeBOT
#

Gave +1 Rep to @sturdy pike (current: #103 - 77)

sturdy pike
lyric minnow
devout palm
mossy river
lyric minnow
#

But not only discord I want to compete with him

dark mason
mossy river
sturdy pike
mossy river
#

Or compete with him on TryHackMe to see who can complete the most challenge rooms

sturdy pike
#

I wanna look at some pentesting methodologies, I feel that I lack somewhere

amber skiff
desert dirge
dark mason
#

You have to do a lot of ctfs

devout palm
sturdy pike
#

so I kinda go along with what time I have

#

either challenges, CTFs, boxes, or learning

sand trench
#

oh noes the cookie has touched the grass

#

how will we ever safely eat it now

ripe vine
#

Reading up on pentesting methodologies of course would help

sturdy pike
#

don't worry, the vessels I choose are curated everyday, thou shall not worry of the sanity

ripe vine
#

Implementing methods from it in CTFs will cement it

amber skiff
sturdy pike
desert dirge
ripe vine
#

I mean are we talking pentesting methodologies or ctf methodologies?

sturdy pike
sand trench
#

whois x.com

wooden totem
#

If there is color blindness, is there smellness and tasteness

amber skiff
desert dirge
sturdy pike
twin ridgeBOT
#

Gave +1 Rep to @desert dirge (current: #632 - 9)

sturdy pike
desert dirge
#

Because methodologies you can learn from some cybersecurity podcasts, depending on your focus.

ripe vine
#

Learning about OSINT helps with pentesting hugely

#

being able to curate username lists and password lists when you aren't on an assumed breach is a good skill lol

#

Or password spraying for that matter

wooden totem
#

typed ls in chat

ripe vine
#

lool

amber skiff
ripe vine
#

Learning about security misconfigurations would help with providing a comprehensive report too

desert dirge
#

It's easy to fall down a rabbit hole, and they are expensive as far as learning options go, but TCM-Security teaches pentest and soc methodology in their courses

ripe vine
sturdy pike
amber skiff
desert dirge
#

You can learn and practice techniques on THM and HTB and get supplemental industry oriented learning from TCM, if you can afford it

#

Actually I think TCM switched to a monthly subscription model, so it might be much more affordable at this point

sturdy pike
# amber skiff And here I was playing Uno Reverse

Fool me once, shame on you
Fool me twice, shame on me
Fool me thrice, shame on you
Fool me four times, now you're under the impression that you've fooled me
Fool me five times, why are you fooling me again and again, taking advantage of the weak me?
Fool me six times, bro, stop fooling around, you're under my trap now
Fool me seven times, I forgot that you were under my trap and now I'm under your trap

desert dirge
sturdy pike
desert dirge
#

np m8!

mossy river
#

My gym subscription that I stopped using 😔 (I was locked in for 6 months)

sturdy pike
sturdy pike
desert dirge
sturdy pike
desert dirge
foggy hawk
#

Anyone knows a server where they do websites etc panels pages

desert dirge
foggy hawk
desert dirge
# foggy hawk discord servers

same answer, I don't think anyone is going to work for free on something like that unfortunately. You might have to do it yourself.

You can find some pretty good advice on starting work on things on the internet if you word your searches the right way, or ask the google gods the right questions.

sturdy pike
#

@mossy river Found your notes

mossy river
#

For the record I went to the gym for a year straight 🤣 However I switched gyms and became too busy, but it was a 6-month contract

dark mason
#

I am debating putting up a local wordpress instance with a random CVE with no poc and try creating one myself

rigid urchin
#

Any particular reason you wanna do that?

loud marlin
#

why noone told me that cyberchef have dark mode =/

wooden totem
inner bloom
dark mason
#

I find it kinda intresting

loud marlin
rigid urchin
#

Wouldn't be better to setup your own environment to do that in

fervent ruin
fervent ruin
#

?

sick lance
#

Wdym?

fervent ruin
#

installing suricata on my pc

#

but i saw another one

#

wazuh

dark mason
fervent ruin
#

and ossec

loud marlin
#

why you need suricata on pc for first place ?

fervent ruin
#

i just want to keep my pc safe and protected against scans and atacks

#

with this IDS i can monitor and do something about it when it happens

loud marlin
#

iirc you have 32gb ram nad so on. you can run lot's of things in VM

loud marlin
#

just use some fair and paid vpn for start

blissful current
#

hi

loud marlin
#

suricata is smth that is quite for big things.

fervent ruin
#

okok

#

so its not necessary to have a IDS on my computer?

blissful current
#

ok bye

loud marlin
#

no need for basic user

fervent ruin
#

i understand

loud marlin
#

for my pc i only have vpn and adguard. is based on router lvl confgured.

fervent ruin
#

i configured my firewall, i hope i did it right , i blocked all incoming , and blocked ping requests, disabled syn scans

loud marlin
#

tbh for whole home network is like that

fervent ruin
#

and i have bitdefender free av

#

im going to reinstall kali now on vm, i have to do a lot of things

loud marlin
#

if you do that. get some pain AV. nod32 or smth. idk what windwos use theese days. but vpn for start

fervent ruin
#

im going to use protonvpn

loud marlin
#

scrub is some who doing cyber in more profesional way. so he doing stuff that 90% normal mortals no need to have on just pc

#

i'm also use proton service. mail, vpn for default

fervent ruin
#

i use the mail service yes, but rarely the vpn, i should use it more

loud marlin
#

protonvpn have app that you install on windows and use it that way. for me i also have on devices when im out of home network

fervent ruin
#

good

#

is protonpass good?

#

never used it

#

now installing the vpn, i saw it

loud marlin
#

is password manager from proton. i use bitwareden for password manager.

#

is like 10$/y or so

fervent ruin
#

protonvpn is very different now , i dont remember it how it looks like now

loud marlin
#

this is firewall for start. firewall can be pain in ass to setup

fervent ruin
#

i cant do much on protonvpn but

#

i enabled this

#

and the kill switch

#

the kill switch is on advanced mode, meaning that it keeps on when i restart the system

#

now my internet is slow 🙂

loud marlin
#

go udp

fervent ruin
#

what are the cons using udp?

#

the app is just frozen now.. nothing working

loud marlin
#

you need to check that on internet. tcp/udp is same but different

fervent ruin
#

ik , but idk the cons using udp conection on vpn

sick lance
#

TCP for reliability, UDP for speed.

fervent ruin
#

the vpn just freezed

loud marlin
#

it is long road to explain

loud marlin
fervent ruin
#

idk whats happening but the app is not working properly

loud marlin
#

on windows ?

fervent ruin
#

yes

loud marlin
#

not shocked... =/ is windows.

#

try restart pc

fervent ruin
#

how can i use this vpn on kali now?

#

can i conect kali to this vpn ?

loud marlin
#

if vpn is active on windwos, the host os, then vm are using same vpn

fervent ruin
#

but what adapter i use?

#

bridged?

blissful current
#

NAT connection maybe?

#

never really tried that way tbh, do search or experiment

loud marlin
#

what you use now? you can separate adapter if you wish but there is no need for basic usage

fervent ruin
#

i always use bridged adapter

#

bc i like to scan my network time to time

desert wedge
#

Then you have to use the vpn inside the vm

loud marlin
#

then is ok. when you use vpn you can check does ip change. first check ip without vpn and then with vpn

fervent ruin
#

the vpn on host , and check the ip of kali

#

?

#

and use bridged adapter

#

that part i have to do later, now im going to install kali linux

loud marlin
#

on host and cehck ip on host pc. there is site. dns leak or smth like that that can check things for you

knotty pendant
fervent ruin
#

so u say, no IDS for basic user?

loud marlin
#

that is soc thing. it can be on pc but no need

fervent ruin
#

yea, i just wanted to get the alerts if anything is happening to my pc

#

but yea, ig i can live without it

#

after installing the kali and configure everything, im going to test my host agains scans

#

i should not get any result

loud marlin
#

you will get result

#

kali in vm will scan host pc with no issue

fervent ruin
#

its suppose to not find it, or show it is down , or no open ports or filtered

half relic
#

My work just aked me if there are any certifications I want to get so I was wondering if ther were any good ones

fervent ruin
#

and im going to try arp spoof too, im figuring how to detect it

loud marlin
#

it will find it. vm need to comunicate to host pc since they share network connection

#

aside other things

fervent ruin
#

humm

queen flare
#

morning

half relic
#

It's afternoon here but good morning

fervent ruin
#

xD

#

morning @queen flare

queen flare
#

morning is more of a state of mind

fervent ruin
#

ok, kali installed... now , update , install ufw , configure it , configure ssh access

#

it says i dont have any APT data source so now i cant update the kali

#

this issues i get...

half relic
#

okay thanks

#

thanks @crude stump

twin ridgeBOT
#

Gave +1 Rep to @crude stump (current: #62 - 142)

crude stump
#

Yes sir

shut heath
#

Hey everyone just watched a series named scorpion in which a small boy hacked nasa to take blueprint of rocket for his bedroom and the thing that should be noted that it's actually true is a story of walter o brien so right now I am truly motivated so please anyone can help to get started

mossy river
shut heath
#

Is it free??

mossy river
#

Yes!

kindred yew
fervent ruin
#

i think my kali is broken

knotty pendant
#

that happened to me once

#

i forgot how to fix it

fervent ruin
#

very helpful

jolly egret
#

Looking for a learning partner pls dm mee if anyone interested

sturdy pike