#general
1 messages · Page 1177 of 1
we had 50 members pay this year, maybe 25 who attended, that dropped to maybe 12 by the very end
I think on our own end it's similar ish, idk
and we had guest speakers in, practicals, took feedback from them and all
Did you have the issue where people join during a get involved fair then like 1 or none of the people who signed up go there?
Guest speakers we have as well but it's mainly for the women's cyber club
Which ngl I feel is more involved than the the cyber club is in general
nah we actually got quite a few people who signed up and attended from there at least for a while
we also had lockpicking workshops etc.
like we teach lockpicking at the freshers stand each year
ours currently are, I was one of two who made an effort to make custom content for a society workshop
In the club at my uni, we did custom ctfs
we have a ctf team tbf but we never did custom ctfs
We have custom ctfs as well but for some of the activities you have to be accepted into the group of that part to do so iirc
I was the president of that club as well, and I developed a whole storyline for it
but just in general I think one of the good things about these societies is that they kind of help you learn soft skills
like you end up networking, going to conferences etc. and you develop those important soft skills, unfortunately next year they're thinking of taking some of that away and having remote sessions for things like thm which I understand why (eduroam on campus blocks vpns and a lot of resources); however, they're already becoming an antisocial lot and I think it'll further that
I had a lad who joined conversations by muttering to himself about random things until you asked him what he was saying, and I feel like being around more people would help them get out of habits like that with time
We went to like two conferences. One was a Hackathon, and the other for this workshop of sorts at another college. But I would've done more if we had a budget
we go up to scotland for securitay each year, go to the local Bsides, DC monthly meetings and smaller groups within the soc go to conferences around the country
If I had more time there, I would've 100% created a horror storyline with an ARG and stuff during the october period
I rate that, unfortunately I didn't have the time
I just don't know movie magic for most of my ideas, cause I already know what I would do
I would've done a talk on Wi-Fi but I was busy trying not to drown in my dissertation
I wish we did. We never do. And our dudes are very anti social
I'm also nowhere near creative enough
That's fair
that's the problem, you know it's bad when most of the first years whip out their laptops at the pub and don't talk to anyone
We didn't stay for the 2nd day of the hackathon though
Hey Bruda
We did go to Raising Cane's though and that was amazing
it was absolutely diabolical, and we wanted to do better than last year and make more of an effort to talk to the first years only to get pied off with the back of a laptop 😭
At least y'all got to the pub, be nice to be off campus. They just go to a random room on campus like a lecture hall which I don't feel instills much of an environment to communicate
thats awfull doe
we don't even have a functional CS society
no we did that and then walked to the pub, they were immersed in their laptops and it was painful and embarrassing
Hey , can i ask on which topic are you guys talking?
Uh club stuff on Uni's?
Also tbh the bars in my country are expensive anyways so probably wouldn't be worth it anyhow
I literally said that historically, our compsci society has always been the stranger and more antisocial lot and this year our society's outdone them 😭
Nope , i am new in this community
Barfood is the best food though
eh, depends
I joined through THM
some of it bangs, some of it's evil
I feel it's not entirely different because although I'm compsci, my concentration is in cyber, there is no purely cyber degree
There are some really good bars near me
For my clubs
yeah that's fair, it's not the same everywhere, it just so happens that our uni historically was like that when you look at it but no our society really plateau'd thisyear and I do fear it's really gonna go downhill next year but at the end of the day, not my monkey not my circus
my uni has a cyber degree
I wish my uni had a cyber degree
Supposedly there's one in the making for the masters
Welcome
we were kinda hoping that at least someone we know and respect would get a committee role to maybe save it and it ended up being a worst case scenario
My degree was essentially Computer science without the math. So we didn't have to take calculus or anything. The only one we had to take was discrete math
Thnx man
Much prefer calculus than discrete. Discrete felt annoying
My teacher only curved the final. So like the 1st exam had a class average of like a 50
housemate's off shops so I'm off on a trip
I prefer taking the compsci degree though, I need it anyways for where I want to go in cyber.
Same with our second and final.
That class was probably the second hardest class in my major
Same for compsci
Business analytics was the right of passage due to writing technical papers and stuff.
Though making memes of the professor was fun though
Think I only take my cyber classes finally during this last year. It security, systems and software security, cryptography and maybe one more.
So hopefully they'll get us writing technical reports because it's mainly been compsci stuff
Based
I was close to do this one thing in the good ol' murica called the scholarship for service where I was going to have a bunch of opportunities and stuff but budget cuts have pretty my axed that
One of the things was like getting to go to an exclusive job fair and others, and the frustrating part is that I was literally IN, before that happened.
My most hated professor was a German physicist in quantum computing looking like Edna and speaks very quietly teaching design and analysis of algorithms 80s method where using other websites would be cheating and no programming done, all pseudo code
I am thankfully paid mainly from the Pell grant
I was only interested in the opportunities for it
I am sorry that happened though.
All I can say is I can't wait to leave this country and try new food
Maybe have something that isn't sugarfied to all hell 😭
I love micriplastics
Oh?
I'm attempting to move to a different country for a while after uni, goal is Taiwan but maybe Ireland before then.
Probably permanently, end goal is Taiwan
I think Belfast has a warhammer minature store I think
That's pretty cool
Have a good day cya! Safe Travels! It was nice talking to you as well!

Huge props to the Linux privelege escalation room, it was very fun and well done in generell, keep up the good work.
h
YAY postnord now got shadows switches package
boo it is not gonna be here for another 3-5 days
hey at least it's on its way
sadly enough yes even though it seemed it would have shipped from germany
Proper switches or keyboard switches?
keyboard switches
Boo
sorry to disapoint muiri
also would you trust switches from china???
Where else are they manufactured?
Do you inspect supply chains?
dunno but would think india is picking up speed
and nope shadow does not inspect supply chains
China can actually be really good for products (especially some electronic ones)
Their quality has increased over the years, India's becoming cheaper to manufacture in than China though, so it's gaining speed in India now.
Unfortunate, you're supposed to be using gentoo
lol
Everyone knows using lfs is the proper way
I spend a significant portion of my day configuring Gentoo to act as a kiosk OS for SAP
LFS is fun
tsk tsk TempleOS much?
U can just use warp to automate things u know?
How dare you say such holy words in a unholy place
?
I'm paid by the hour
Just build the CPU from scratch
morning ashlynn
Free money then
Morning Bella!
gotta love timezones
Fr
it's almost 11pm here
Nah I gotta looks busy. I've been getting away with studying for the CySA+ all day though so that's cool
I am out to sleep it's 11 p.m
I just wear my headset I use for video calls and people leave me alone
It's 6:43am here
15:44 here
I have work today 😔
I study and work lol
What a productive person
the best(worst?) of both worlds
Ayyy study+work gang let's go
tomorrow is a holiday for me
what's the holiday?
I gotta fast tmrw
Constitution day
Would you trust switches from America?
Also, where do you think your computer's components were made?
to the same degree as chinese ones yes
depends on which of shadows computers you are refering to but most parts are from tiawan last shadow checked
And the others?
A lot of parts are made from China proper, rather than Taiwan.
china
canada
some parts of europe shadow did not keep track of for reasons
the usa
Yeeeaaaaap
but the usa is just about as trust worthy as china is so no problems there
Yeeeaaaaaap
Yeeeaaaaaaaaaaaaaap
Yes
ah thanks scrubz... shadows distrust for their toes is so great that they stub them at least once a month
That genuinely doesn't surprise me
You know at this point, it's not a goal, right?
Right?
That's possible for computer parts? How would it work for the actual circuit board part of it?
Mostly
Careful homie
yeeeeaaaaaap
That Celsius or Fahrenheit?
Yeah I just noticed
Celsius
You'll be fine
shadow is currently using open source hardware for their headphones and mouse so that is something at least
I have no cold tolerance anymore
Oh I use proprietary for everything
Even my food
Even my house, appliances
Everything
Even my clothes
it left with the testosterone fr
All proprietary. Microsoft sends me letters every now and then to thank me for arguing on open source projects to further the proprietary cause
I’m curious to know how many people here got into cyber and stay in it from passion, and not just the $$$$ ?
wait you guys are getting money?
I'm in it because I enjoy it but I need money to survive man
In Scotland we call 3°C "Summer"
I love this
what's winter like?
Sounding like a front end Dev on linkedin
Same in Ireland but since starting HRT my body hates the cold and hot
How is Ireland?
I love the pen testing/red teaming field coming from a network admin/sys admin world. I am still hunting down the money part but I think it's a ton of fun to do.
Completely understandable
Feckin' cold
Just borrow some copper
Easy money.
enough so that spit goes clink???
hmmm, need a new phone
Pinephone
I think there are still produced Japanese flip phones that can run Discord and the like, they're cool
Are you a current sys admin transitioning or have you already ? And I get it, from what I’ve seen tho in cyber your knowledge can take you anywhere so I wouldn’t worry about it, it’ll come soon
3d print them too.
3d print everything!
beginning to throw my old phone in the ring, cause it needs to be charged like 2-3 times a day
The wires, screws and tools.
I transitioned roughly 7 years ago
and is also like 4 years old shitty oneplus I got for 1kr
loves Oneplus
Nice
graphene os or no graphene os???
super repairable or not???
price range???
if you don't mind the weight, look into rugged phones
for now shadow is happy with their fairphone 5
Got gifted a rPi 5 16GB earlier, not quite sure what to do with it though. Was considering running it as an attack box but figuring it might be a tad under powered - anyone tried this?
I am more over at the cpu in pixels tbh
not under powered, thats fine
arm for hacking computer??
but the thought of switching my main phone to graphene os just means I manually have to copy stuff over
pihole!
eh you may encounter some more difficulties, but nothing major
nbtv has a good video of why restoring from backups on phone can be a bad idea
Already got an older Pi doing that for me. Got it running Pi-Hole and Unbound.
that is way to good of specs to use only for pihole
it's not going to be backup, but auto transfer pics etc.
fair enoughs then
shadow just moves all their images of their phone and into backup storage at least once a month
well yeah duh
you could set it up to host a personal kiwix instance for reading wikis offline but that is more storage bound then other factors
I can grab a pixel 9 pro for 765USD
yeah that is reasonable
but you should go to the store in person
wear a hoodie and a cap
and some sunglasses
also pay in cash
@ripe sleet yoooo
I'll just buy it through my sim card subscription, that's how I can get it so cheap
very undetectable
I know, again, my threat model isn't that high, sure I would love the no tracking, but it's a want not a need, and if I really need it, I got 2 phones that is untraceable to me already xD
naaah not undetectable the point is not being able to be recognised by store cameras and not linking a debit and/or credit card to the purchase of the phone
What is threat model
Ah that's who pinged me
u are going to stick out like a sore thumb
Yoo How's your day :D
Good
this would be my 5th phone in my roster shadow, I ain't nervous about this being linked to me
yuups and shadow also gotta figure out how to change their gate to also be harder to trace
Skip
Do all of you have the skin that burns easily as well?
Can u be my hacker man 2.0 :D
sadly
Hence why I hate the sun, and the sun hates me
it is a model of what you consider threats to your
anonymity
privacy
security
Ooh I see
Uh, in what capacity
and what steps you take to avoid those happening
Help me out if I am stuck somewhere :(
was more thinking of placing rocks or pebbles in shoes while also limping but skip is also an option
Oh okay
I mean within reason of course
paranoid delusions goes BRRRRRRR
If you're like hey, how do I do [x, Illegal thing] I'll prolly say no
though it is not paranoia if they are actually after you :D
Paranoid delusions are fun at like 5 AM where you think someone is watching you
And you think you see a shadow person, but nothing is really there
oh that is just shadow zipping past
That's a long distance to be traveling
That's like a 13 hour flight
well just open a portal here or there in the abyss and darkness
and voila fast travel
You gotta market that, you'd make billions
Though you'd prolly bankrupt the entire automobile industry
Oh that's just the hat man, tell him I'll pay him back next time I pass out on benadryl.
I have yet to see the hat man. He seems like an interesting person
sadly it took shadow 5500 years to learn and master
His loan rate is pretty good tbh. Last personal loan I got from him was 8.99%.
also have a feeling all you humans trying it might end up stuck in weird places
It'll take a few sacrifices, but in the end it should work
worth it tbh
In before you teleport 2 miles above ground somewhere
hey guys need help
With what
i have someone ip adress just want to know his current location with houser number or flat name can anyone help me
we do not condone that here

lol someone is blackmailing me
contact your local authorities
so can anone tell me how do i know his location i have his ip adress
Nobody here is going to do that for you.
this is a space for ethical hacking and cybersecurity learning, we will not help you
Don't IP's tell the general area instead of specific locations?
I remember learning about that in my networking class
I could mixing it up with something else as well
it's ethical not any kind of fruad i need help , i get his Ip adress by grabify.link app
dude that's illegal 💀
It's not ethical. If you're being blackmailed reach out to your local authorities and have them deal with it through the correct and LEGAL channels.
yea but he was blackmailing me so for to find a criminal nothing is illegal
That is illegal.
For all we know you're the one trying to do the blackmailing.
Two wrongs don't make a right.
lol in my country local authorities never do work we have to manage thing by our own
Again, still doesn't mean it's ethical.
hows everyone doing this fine day/night
Good! How about you?
ahh I'm not i can share evrything that proof me that i'm the one who is getting blackmail
glad to hear it
chillin, yourself?
yep chilling
hello is it normal that when i do smth in the website the website becames white ?
found an album that hits, so i've been playing it over and over again
What Genre of music?
hoping to go honk mi mi mi
I have a presumptuous request, could I get the name to that albumn?
do share the album, im curious now
musicbrainz entry thank ye
I think you'd like chikoi the maid
It’s not normal
But
It depends on if its a glitch or it’s deliberate
ngl i just heard the overture and it already slaps
it hooked me fr
Format: Digital Media, Year: 2011, Label: Tooth & Nail Records, Length: 31:48
idk it only does when submit an answer or write smt
enjoy as much info you can get about that music without using spotify or youtube music to listen to it
I just don't listen to music. My favorite is rock music, but lately the construction site is playing metal
E
Holy shit it's goku
Holy shit its a cat
Guess what goku
Chicken butt?
No not that
@last harbor it only do it to me ?
Send ss
Guess Mr. Goku
apple music web player has been broken for me for a while, so ive been relying on youtube 
Show me the ss
I use spotify for music primarily
Same
personally stick to bandcamp and qobuz here for nearly all music
A car
Honestly yeah it was going to be chicken butt.
chicken jockey?
I've almost reached the 260 hr mark for this one playlist. For the amount of songs in there

😔
@tight trout so far all songs from that album slapped!
im more concerned abouyt your battery lol
what the...
Its close to being bricked
Did you try clicking the arrows on the side
Ffs
pictures taken moments before disaster (shutdown)
Mine used to do that too
the problem i see is that you are using windows
wait
we have the same laptop lmaooo
try reconnecting to a network, and see if that makes it reappear
@rapid merlin
Windows 11 WiFi Not Showing #shots #viral
I think this may help
Restart?
surely a restart would work yeah
with battery that low, would it boot back in?
Im in my 50th restart
Battery is fucked
It’s a plugged in pc
Maybe it's time for a new one
time to turn it to a home server
best channel to ask an appsec question?
V0id did you watch the video?
If you're in the states Blair tech has great cheap laptops refurbished
gonna be honest, i'd exfil as much data as you can from that before something really goes wrong if you've been having numerous issues with it
U can ask here
Yeah I’m just sad to see it go
It’s long past its expiry
Gpu issues galore
And now this shit haha
anyone have any exp with OOB SQLi vulns?
i've got a dual core pentium laptop that somehow still boots into its OS... sometimes
i guess i would check 1. updates 2. if you are running out of storage
and maybe do a reset
Kinda
I don’t have job experience in anything tbh but still
Mine did too
Like it happened last month and suddenly started working
I almost had a funeral
storage issues can cause a lot of other side effects
True
I did download a 150 gig game recently
Hdd
the OS too?
one of my profs kept getting logged out of sites and thought i hit him with some malware bc we'd been making jokes about it all semester, turns out he ran out of storage so the cookies coudlnt be saved lmao
^^^
I’ll delete my big gig games and see if it fixes it
Honestly that computer has been through several stages of my life
It’s insane
Omg teacher😭
if everything is running on HDD its probably dying
might wanna do some defrags and whatnot
One of my teacher is 60. Tday I peeked in my teachers phone accidentally and I saw tor browser on it. There were rumors that he’s a that type of person but the tor thing kinda confirmed it😭🙏
or just straight up replace it
guys i search his location
It is, I was just in denial
and gonna call it a night with the meep moops during beep boops
Broke boi, at the moment
That laptop cost me 2 grand at the time
hopefully you can get something better, for cheaper now
Have a good night cya!
Yeah that’s what I’ll aim for hahah go to a second hand computer shop
eh how expensive is a 1TB hdd replacement? probably less than 70 dollars
gov surplus auctions are my beloved
Think it’s the graphics card as well
So yeah a bit more than that
if its the GPU rip
long story short, verified some OOB SQLi vulns on an app using Burp Collaborator. got some DNS callbacks, so definitely hitting their backend. but on all attempts to actually exfiltrate data, I'm getting encoded responses. tried a buncha different encoding techniques and nothin. still think the app should not be making external DNS calls tho, so really a lil unsure on best practice to recommend to them
Definitely is
Kept getting a blank screen
could be worth checking with a repair store if its something they can fix
mornin!
otherwise its o7 for the laptop
Cheers folks for your input!
no worries!
please tell me this is a shitpost
Aye mate just thought I’d say that for a laugh
Jk haha
Nah it’s real, computers are weird things
Sorry for all my swearing btw if it offends anyone im Scottish so its normal for us ahah
I know some folk get weird about it
you fucking swore? shit
its cool lol
No fucking swearing in here
The fact that u got DNS callbacks is critical proof that OOB communication is possible, which is a severe security flaw. So I suggest u explain the vulnerability and tell them how severe it is. And maybe give some examples of how those vulnerabilities were exploited by threat actors in the past
Hallo gm
aw shucks! no frigging way! we cant frigging swear now? 😠
jinkies!
Was in a chat on discord that said that it ain’t intelligent chat
Usual
zoinks scoob!
i mean like dont exclusively swear
yeaaaaaa I've tried. all talks resulted in "everything ecnoded, all inputs validated, we have parameterized queries" etc etc (hard to believe lol), so I'm tryna gauge how much I should realistically push the issue. our DAST tools still hit on it. tried to ask for a DNS allowlists. buncha "meh, theres no real concern", yaknow
So don't swear for every other word in a sentence?
fun fact: there is a positive correlation with swearing and honesty
the more you swear, the more likely you are an honest person
sometimes they just wont listen, which sucks but is an unfortunate reality of the world
Swearing + rage brings the worst out of you
I think I have bricked one of my phones lmao
This is a common problem and that’s why, I told u to give real world examples. But if u did that too, I suggest that u don't back down. The DNS callbacks are a hard proof. The fact that u successfully did it shows that the OOB communication is possible. U should focus on the architectural flaw of uncontrolled outbound communication, the fundamental security principles being violated, and the high potential for abuse even if full exfiltration was thwarted in your specific test. Push for egress filtering/DNS allowlisting as a non-negotiable security control.
When I was younger, I've demolished the screens of laptops through rage as well
what is going on right now
touhou project
No fuck you! I'll do whatever I damn well fucking please!
not bricked anymore
moved from graphene to lineage
needed a rooted phone lmao
they do
or well they did at least, i think there was some bot troubles
i tried doing that to one of my oneplus phones for nethunter and ended up almost bricking it
nice, i’ll try it
yeah, I got a pixel with graphene I just used quickly for going to china, now throwing lineage on it cause it's easier to root
Language….please
A stiff assed Brit over here. Think we swear as much as you guys! Although I'll admit you do it better 😉
Thought the Snort practice room was quite tedious until I did the Zeek Practice room and Wireshark traffic analysis
phew
Goes both ways, bellend is one of my favourite diss’
its perfect english, whats wrong with the language?
That’s the joke
yeah i know
I should of put a laughing face hahahaha
Ooh I think for me, and it's not even that bad is either turd or pleb! They just roll off the tounge perfectly!
YESSSSSSS I WAS WAITING FOR THAT
as a scottish hacker what does the phrase "hack it" mean to you 🤔
Pulp Fiction is peak
Also as an Englishman I swear just about as much lol
@supple pulsar
apparently its slang for ugly (hackit)
Northern England is close enough and I've never heard it used in that context lol
Oh yea, that’s hillbilly village patter
Explains that then
But it really depends on what part of Scotland you’re taking about
Whit's wrong wi' ye, that body wilnae be able tae ken it
fair enough yeah
Inaccurate didn't mention Haggis
Holy fuck that’s actually very good
Didn’t expect that from a yank
Juun is a teuchter it seems
juun is good at that stuff its scary
le kek. Actually related to clan buchanan that fled scotland in the 1600s IIRC. It's been awhile since a direct family member has lived on the island.
Wearing my kilt, eating a deep fried mars bar and drinking an Iron Bru whilst simultaneously hacking 5 nation states and playing my bagpipes! 😉
1600s aren’t going to be talking like that but
There is an o in that Irn, that’s like the German three mistake
it's a fair cop. Equal Irish in the family tree, at least according to 23andMe. Rough equal parts Scots-Irish (indeterminate from genetic testing) and german, with a smidgen of Basque.
Iron Bru
FUCK YOU GOT THERE BEFORE ME
😔
Good Morning
doing alright Ken wbu
just turning midnight in Britain
i see
i used to do ctf before sleep
but sometimes that way i get very less sleep
so i changed scedule
i sleep after coming from work and do CTF after waking up
gave me more time
:>
i see
nice
I've only done two CTFs personally before and did okay on both
main reason I joined the website and here was so I can do better next time
ooooh you doing it now?
yes
https://tryhackme.com/room/rrootme
seems very easy lol
but i am just doing it
it always starts off like that 😅
although I might give it a go myself if it is really that easy lol
ye lol its very easy coz its more of walkthrought room
like it tells u what to do next with questions itself making it easy
Hi
True all questions,are easy(i am a begginer btw)
P.S:no one cares(also sorry for taking ur time)
Ahh right
First time we've met
i couldnt find directory task is looking for.... but found File Inclusion and RCE LOL
Let s keep it a good relation(if u think i am arrogant rn just say it)
u need to relax buddy and stop being pessimistic, u are fine
its fine
Thx
Gave +1 Rep to @brittle thunder (current: #658 - 9)
sorry just doing ctf, so was finding reverse shell hehe
I swear this bot has a beef with me
why XD its just help community keep track of people who has helped others
unlike leveling bots
Yeh
which is actually annoying
But everytime i say to someone thx it pings him
Both of them
only if you reply to someone and say thanks
thanks
Bro!
Thanks
I never pinged
If i remember(sometimes i remember evrything sometimes i forget everything)
Sounds sus
True
Sounds like the start of a pyramid scheme
From wat i heard scammers always use telegarm
More like webinars
Ja
Ig it's a bot
Done!
[BANSPAM] I cannot DM hugolarsson0224#0!
Lack of moderation
already deleted their account? lmao
Thx
Gave +1 Rep to @mossy river (current: #6 - 1619)
How?
There was a ruling where authorities could track telegram right?
Idk
I don t use social media
I could of sworn a someordinarygamer video was talking about this
The paradise allegation?
Could be something else too
It has been a while since i watched youtube
Does the /report command have to be a DM to the TryHackMe bot - given I received this message when trying to report the previous user: Command is disabled in this channel by server admins
Idk
Or does it work in the background?
No
Thanks.
I think it was that something illegal happened and there was ruling where the police could track the stuff on Telegram
Telegram is the land of scamming that s why
Quick question darkfly(u can ignore the question since it s no ones business)
Where are u from
Murica
Oh cool
Yes
Hey, can someone help me with something?
What happened?
Might be worth asking the question rather than asking to ask.
I’m not being able to connect to the VPN
Are you using the .ovpn file that you downloaded from THM?
Yes
I know sometimes if you run it before and it doesn't connect that you may have to kill the PID of the previous process to get it to run again
I downloaded it, sudo openvpn .ovpn
can you ping 10.10.10.10
I don t like asking this type of questions , i find them weird?
Not respecting people s privacy or somthing like that?
Nope
If you can ping 10.10.10.10 and get a reply, or curl http://10.10.10.10 and see something related to being connected to thm then you're golden
Is this on a linux machine? I presume?
Yes
Did you just do .ovpn or did you include the actual filename of it?
Just Alemartone.ovpn
Is there an error message?
No
It says initialization sequence completed
Thats why I think its weird
But whenever I go back to the access page on thm, and refresh the openVPN access details
Still says im not connected
Wich page?
Access page on thm
Oh
Speaking of thm
And the virtual machine
Can u do wahtever u want with it or it s limited
Exclude the timer
For the attackbox, or your own personal machine?
Atackbox
Its limited
Thx
Gave +1 Rep to @pastel nexus (current: #2916 - 1)
Ur own virtual machine you can do whatever
I know
@heavy idol hi
Its weird why its no connecting
Oh have you run the command multiple times previously
Yes
do
ps aux | grep openvpn
Look for any PID or process ID's besides the first one that appears
Ok
...this exists
Oh are you using the attackbox?
is there a program to visualise sysmon logs
i am manually going through the chxild processes
If there is one process running. It'll be the one process besides the initial grep command that you use
Heya i'm back
hullo
Hi
Actually there is a couple error messages
My bad
Linux route command failed because route exists
Example,
it'll look something like this
We all commit errors,no worries
Is this hard?
Nah
Generic error (-17) File exists
Ok thx
Gave +1 Rep to @ripe sleet (current: #1911 - 2)
So you'd kill PID 2086, 2087, and 2088
hiya fellow parrot user
I just have a parrot vm since it's quick and easy to boot up on virtualbox
What s that(srry for asking alot of questions)
its an OS
Parrot OS is another pentesting distribution OS
Merci
Parrot Security Edition is another pentesting desitro
I use Parrot Home Edition as a daily driver
I know pentestbox exists too
I see
I think LetsDefend on linkedin had an image of the different pentest distros
Do this command:
kill -9 [PID]
Hey everyone! 👋
I’m seriously considering a career shift into IT and specifically cybersecurity. I’ve been exploring platforms like Codecademy and TryHackMe, and I’m planning to dedicate the next three months to learning as much as I can.
Do you think it’s realistically possible to land an entry-level IT or cybersecurity job after about three months of focused learning through these platforms (assuming I commit daily)?
Any advice or personal experiences would really help! 🙏
Thanks in advance!
probably not tbh
Isn't the running joke in cyber that there's no entry level jobs
entry level IT maybe
It says kill: illegal pid: [PID]
more or less lol
Good choice
Did you insert the PID that you had into it
Id say give at least 18 months
The [PID] is a placeholder value
Yes
For example in this image, you would do kill -9 2086
I think pkill exists too
gave it a try, it does seem very straight forward but I'm struggling to get the reverse shell PHP to communicate with nmap
You might have to sudo it too
Damn I replaced the 9 with the pid smh
Happens to best of us 🙂
netcat not nmap
ah yeah
i am having issues too cant bypass filter
if i do bypass it, file doesnt execute LMAO
Failed to parse argument
maybe.... lets try uploading html payload with php code in it ???
Yeah I'm trying to obfuscate it with %00.jpg or some shit
that results in it uploading but nothing executes
Would you be able to type the command that you were inputting in chat?
Sudo kill -9 33260 [PID]
Quick question everyone
How do i hack people s wifi
For educationnal purpose btw
Just need the codes😏
Trust me
I ain t doin something bad to my neighbors
I swear
get rid of the [PID]
it should be
sudo kill -9 33260
Assuming that is the PID listed
it says no such process
was gonna go back to it in the morning lol
but eh may as well see it out
@cloud quiver is more exprienced at hacking wifi. maybe he can help you
yyeee lets try
Merci
Okay, when you type
ps aux | grep openvpn
In the 2nd column it shows the Process id's
What PID's do you see?
He ain t annoying me now
The one's that are from root and don't say grep openvpn
is he having trouble with openvpn??
Yes
let me send a github link to troubleshooter script
Bet
this one
it works
tried %00.html still no dice
raw html did get uploaded..... but couldnt exec shell command lol
I tried file.php.gif
it uploaded but no reverse shell
it doesnt get executed
yeah.
hey
nice!
hiya salty
sorry we just doing ctf :>

😭 eeeeewwwwwww
I have a question about something. What do you think the operational expenses of running something like PicoCtf is?
Yeah I'm throwing in the towel for tonight, no matter what payload or obfuscation technique I use the server just won't run the PHP
it's just interpreting it as plaintext through the techniques I tried using
try changing php to php5 maybe it would work XD
👋
Hey Tim
nah I've thrown in the towel for now
i see
php5 resulted in the same plaintext output
learned something new today to bypass fileextension filters
probably something wrong with how I was trying to upload it
not for me... i got reverse shell
show ur payload
dm it
dont send it here
u will get warned
i have a long way to go 
Lemme just..... I'll be here awhile


this is a personal fave

I think I need to spend more time on THM
since i started being active on the discord, i've like barely touched THM
thats a lot

That topic is restricted to the advanced channels unfortunately.
💀
what are the advanced channels?
Whut, r u kiddin me rn? I thought I hadn't done enough
i have only really done challenges that are attached to my paths
oh i an top 5% now cool
because i don't know which rooms i know that i have the skills for
Oh 6 levels away from it. Not too far off then I suppose
Oh, but I'm the opposite. I only focus on challenges and rarely touch the learning path.
that could prob be a future feature for challenges
summary of what tools and skills you need to do the challenge before you open it
I'm gonna sign off for the night.
But I'll leave you all with this. If you're ever feeling down, just remember you didn't get stuck on a easy reverse shell CTF for an hour because you accidentally put the vulnerable system's IP into the PHP script instead of the attackbox
no idea what that means
gn
@sick lance i have OSCP, how can i verify to get this role?
but gn
Basically instead of making the vulnerable machine remote its shell into the attackbox.
I essentially tried to make it remote... into itself
and I didn't even realise it 😭
i need 10700 xp, so i am a bit less than half way there
Gave 1 Rep to kenils142. (current: #616 - 10)
loopdaloop
Anyway gn everyone 👋
gn!
how bad would it be to use a giant antenna on a shitty wifi adapter with monitor mode
- what's the rating of the antenna?
- what's the gain of the adapter
Cause if the gain on the adapter is small, then you're going to lose attenuation
Id generally recommend an Alfa AC1900 or TP Link AX1800 if you want to use big antennas for adapters
im kinda confused because the stock antenna is 2dbi so what would the gain of the adapter be?
Gain is controlled by the adapter and not antenna
We have a channel for that!
Ohhhh
And Ninja/James is our local expert here!
where would i look
If you need high gain (so wide range and low loss) I'd recommend going Alfa or the TP link I suggested
Ok im using this cheap shitty one
Wide range 802.11ac dual band USB wireless adapter AWUS036ACS brings extreme distances and with blazing speed to your Mac or Windows computers in your WiFi network. Up to 150Mbps for 2.4GHz network and up to 433Mbps for 5.0GHz network, AWUS036ACS connects to your PC with USB 2.0 with AC600 Wi-Fi ...
If it's only within a small radius, most standard adapter's do fije
https://www.l-com.com/wireless-antenna-900-mhz-8dbi-omni-directional-antenna and this is plugged into it xD
The 900 MHz UP-series are lightweight, low profile, high performance Omni-directional antennas designed for the 900 MHz ISM band. They are ideally suited for multipoint, Non Line of Sight (NLOS) and mobile applications where compact form factor, high gain and wide coverage is desired. Typical applications for these antennas include 900 MHz Wirel...
Should be fine if it's not trying to RX over large distances
It is Line of Sight so you need to be in mostly direct visibility of the transmitters
ah
My wireless comms knowledge finally coming in use outside of work 🤣
this what it says on the atenna link
Oh I'm stupid
It's refraction and not LOS
Should be fine but it'll receive more loss by default
The adapter should compensate the gain per receiver
But if you're trying to do long range you'll need a decent adapter to have high gain
i am a little confused on the difference between bandwidth and throughput because they have similar definitions. from what iv searched bandwidth is supposed to be the maximum throughput(rate of data transfer) a network can support right??
guys i figured out how to do syscalls in javascript and make them exec onload in html 😄
i just learning so i dont know much about wireless communicatiojn i did the wifi hacking room and was learning a bit about the antennas while looking to buy a wifi adapter with monitor mode and my dad gave me one he used for surveying to try but i assume since it is a cheap adapter the antenna would be held back from its potential
Yes
Need help guys
Throughput is the amount going through a network, bandwidth is the maximum possible throughput
whats up?
here's an example
If he's got one for surveying it should be relatively high gain
So you should be fine
I installed kali in phone, mounted to sd card, then facing problem in running kex,gui
that's what they said about using hidemyass remember then bam lulzsec arrested lol
ok
Rest,terminal working properly
There's a chance that the gain may be a bit shit, but this isn't defence this is more just technical works/details
Pls help
We use parabolic dishes at work so we get a boost in receiving gain
I don't think ima go out of scope today said no hacker ever
Lmfaoo
Help help help
Hello everyone.
oh hey look curl -I 😦
Ohh...looks like I came at a bad time.
Curl has nothing to do with wireless comms stacks
u right but what if u had commview
Doesn't matter, it's software level and not hardware level
this server is pretty active today
isn't it all just hosted via an application tho
Wireless comms?
It's all hardware for the most part
ooooowwww look a printer
loads pret
Printers don't have anything to do with this either 😅
Also Preston, if you want when I get home i should still have some notes on wireless comms if you want them
mornin!
the antenna is from surveying but the adapter isnt typed it wrong. so when the adapter controls the gain its only limited on how good the antenna is?
yes please
Yeah, the antenna can also limit the output/input gain, but the one you sent seems to be alright and shouldn't impact it too much outside of refraction loss which can't be stopped
Will do then
iw reg set B0
iwconfig wlan0 txpower <NmW|NdBm|off|auto>
# txpower is 30 (generally)
# txpower is depends your country, please googling
iwconfig
I needed more power
This is fine for most people
Most people don't need high gain, long range, comms
thanks for the help
Gave +1 Rep to @knotty valve (current: #107 - 77)
I wrote a decent wireless pentesting sheet i don't know if i ever published it or not
No probs
Anyway gotta get back to work
Later all
Where do you what your total current point count is on THM's website?
wut
Like the points for the different ranks?
It’s under your profile (the bar)
am i tripping
dashboard or profile
one thing is strange i realize the antenna is for 900mhz yet it still works to pick up 2.4 and 5ghz in aircrack and gemini is telling me that it will be inefficient at capturing a handshake yet somehow its still better at finding networks than the stock antenna like wut
gemini told me it is quite unexpected and very interesting!
I got a PT1 voucher in recent giveaway, does it have 2 attempts or only one and is it proctor based ?
Im so brain dead rn
It was in the dashboard
hello world
hullo
xD
It should include a retake 🙂
#pt1 message
Number of points that you have in total
So the rooms in a given path, how many points do they give?
Depends on questions
In ctf I get 30 Points for each question
But in rooms it's little different
( my assumptions)
When should u try doing ctfs I feel like I could do an easy one by now
Like how much should you know
Morning Morning /\
Depends on room, but if don't like being blocked, I would say finish Jr Pen Testing path
Morning
What's everyone up to?
Probably the one that goes to the bus stop closest 😎


