#general
1 messages Β· Page 1777 of 1
look behind you
Tbf it's easier to fly a plane than to drive a car. π
Easier to ride a horse than a cow
π€·π½ββοΈ
I rode a horse before I learnt to drive a tractor. Farm girl FTW
i cant drive either of those
YOu're still young, there's plenty of time for that. I'm old and have life experiences.
driving a tractor would be cool
β
emote fail
π π

Oh yeah it was cool. I was helping a friend start it after charging the battery for 2 hours. No one else could start the tractor, I was the only one who could start it. Lol.
For pulling his boat out to the dam
i've given up vmware - going back to vbox. i'm sure i'll have some other issue in the future lol
just trying to get openvas and sysreptor working together
None of that applies to me
i was strictly virtualbox - but moved to vmware because certain vulnub boxes only work with one or the other
Nope, don't like them either.
yeah i mean vms + containers = whoop whoop...am i right?
i love vms
last time i used Virtualbox, it lagged and the screen was too small for me. I prefer my laptop's 17" screen so that I can have THM on the left side and terminal on the right so lots of space to work
although having it on a physical machine is more fun, its also more unsafe
if Virtualbox made their screens bigger, then I would consider using it
you run it baremetal?
what is baremetal? Lol
i had a pi running straight kali but the ram was waaack
you can fullscreen, plus you might have to install virtualbox guest additions
i just ssh into everything lol
i mean i guess there are a few tools you can't use from ssh
I'm not talking about fullscreen. I''m talking about the screen size inside the virtual machine
ohhh that might be a guest additions issue
running a system directly on hardware
you need to install that to get your full resolution
Anyone having troubles with the VMs in the rooms just not working properly at all? I had a listener setup in metasploit on an attack machine, had the payload running in the victim machine and then the VMs just crash. I probably terminated the vms and reset about 5 times and they just constantly crash. To the point where I set up a wlan and 2 laptops in my home and just did it that way and it all worked. But very inconvenient
Yes that's what I am talking about. So much wasted space when you could use it to full screen of your screen size.
yea, it's def a guest additions issue
Let me get you a screenshot of mine
sometimes gues additions dont work or break, or something else gets f'd up, but i'm too lazy to switch to vmware or whatever
not a big fan of virtuabox
if you install the guest additions (in vmware its called VMtools - nutanix its called ngtools)
give me dark web link
yep
but if you do labs or are in security in general you need VMs, unless you're fairly new
for realz?
i would argue, if your fairly new vms are a MUST
link
troll 
Yep more space for me to work with so yeah this is the real reason why I have a 2nd SSD for this.
what can i get from weakly mission chest
delete this
hola
winstreak freezer or smth else?
Okey dokey boss
:O
i DM'd you to explain - sorry I didn't ask first - it was important
and done, @lament meteor
yes i get your point, in terms of safety. mine was mostly related to what a beginner would do vs someone with more experience (ie beginner focuses on theory and less on labs that require a dedicated sandbox environment, generally speaking)
I miss that
if you ever want to get back into vms, this is something you should read
/:
at least it has been resolved now
Lol remind me not to have my mail open like that again π€£
i would maybe remove your message @lament meteor
since people have extensions that show deleted messages
idk if extensions is the correct word
but they have ways
modded discord?
I have an old laptop with an i7 and 32 gb of ram that I just leave plugged in on the floor running ubuntu server lts
yeah there are applications that allow that
but idk if its against the TOS of discord
can you actually do that, i think only server admins or ppl with those privileges can see deleted messages.
I'd be surprised if there was a mod or whatever to work around that, but maybe not so surprised
i ssh into that, wget the qcow2 (qemu) image of kali and imported it
No worries, I know you in here so it's fine. It's random people I don't know or don't interact with in here - that's the problem there.
cockpit and cockpit-machines are great too
MOO!!!!
most def
i've never messed with cockpit
also is everyone suddenly using some locally established llm for hacking? i feel like my youtube algorythm has me in a spuiral
it's like portainer, but for system settings
oh thats cool
kali JUST announced that gemini-cli is an available package on the new kali
its the new craze
its kinda dumb though, you have to authenticate --- like... no thanks...
oh thats pretty cool!
i want a proxmox setup
but thats a future project
that's just cockpit installed on top of vanilla ubuntu server
but you're missing out on the beautiful kali GUI!!!!11
how do u open folders and stuff without a GUI? damn
πΏ ?
i mostly use cli until ican't find a tool because they use a different name other than the logo
yes
doesn't Starlord use one of those? π
depends on the mod
why is it upside down
idk, just the image
that's the way you'd insert it into a walkman that was on your hip
found the modded discord user
typically*
the modded discord isnt that needed anymore
discord is slowly implementing all the features that made those good
or at least the reason why alot of used it
yeah thats true
fun
comet orb farming was fun
most of my discord friends are using mods
I don't see what the allure to Nitro is...
its against TOS
so i tend to stay away from it 
i like having my emotes everywhere
the upload limit
they do that cuz themes
thats about it for me
yeah they dont really enforce that
Yea, the upload limit is the only thing I could think I'd use and is truly useful
I banned 17 users of discord using reports
and so far I can say discord only cares about underage
and pedophilia
i dont wanna take the risk honestly
fairs Β―_(γ)_/Β―
and i dont need those features anyway
why do you need that custom themes
turn on white mode
and enjoy ur life
ah I see the appeal of being able to use the emoji across servers
never put 2+2 together there
I'm old, I use vanilla emojis lmfao
thats what i used to do but im too used to it now

EWWWWWW
Could I DM you something timoo
always
Danke
i used to be dark mode 24/7 but light mode helps during the day, i've learned that
Again, ewwww.
Whitemode would prolly give me a blue light headache at some point
Hello Hulk! 
is it at least solarized light????
LuL shadow just spammed a person in their dms with videos about using search engines
I'm using dark mode when outside to avoid 3rd looks
Otherwise I use light mode
But on sunny days idgaf about third looks as I see nothing in my phone
shadow uses catppuccin mocha as their colorscheme/darkmode everywhere
I do use reading mode on mobile 24/7
And on pc it turns on after 10pm
why does shadow use 3rd person? genuinely curious
old habit that never died
not to confused with young rabbit
ls
there is a place I work out of that has outdoor seating, if I'm not using light mode, I'm squinting like crazy at my screen
cd downloads
i have gotten absolutely nothing done this morning...
all my tabs keep timing out cause i'm chatting with all these hooligans.....
ran hashcat on the box per the instructions... the box said "shutting down now" lol
Haha
||stay hydrated||
Hey guys, is anyone using BlackArch here
i got a skylake box this time
Outdated, full of bloat
Don't use
Do you have an OS to recommend?
Kali
Actually, I was looking for something other than Kalinux.
Manually
Arch
Or Debian
Quite literally what I just said
Β―\_(γ)_/Β―
I use windows, proxmox, debian, ubuntu and kali used to use arch instead of debian
My brain is not brainin I swear
I was using tails and kalinux but Kalinux is a bit boring
Β―\_(γ)_/Β―
Hey π
got it
This hurts me.
Qemu for sketchy shit
Plain arch or parrot for cyber
Ubuntu for daily drive
Windows to suffer
Just commit to Ubuntu at this point. xD
i daily drive macos lol
If it's about Office or Photoshop or something like that, check out "Winboat".
I got an one more question guys Does anyone here use Red Hat OS?
You can run that stuff on Linux now.
but i use dev/host/docker stuff on ubuntu server lts
I still will stick to windows
Anything else runs over Wine/Proton anyways.
Parrot OS
Sure, that is your decision. Just wanted to mention it, since it's pretty new.
redhat is enterprise - whats the "free" version of it?
But I had tons of reasons to move on with windows
I had my reasons, you may use whatever you want
I'm fine with windows and wsl
ohh I wasnt know that
The repos are nice to have if you're lazy and don't want a Kali VM, but don't install the OS itself. Base arch, then add the repos in pacman.conf for the sake of tools
I use Nix for daily usage and Incus LXCs with Kali/Arch for CTFs π
ight cool
I unredstand
Don't get something with 1000 tools pre-installed is my biggest piece advice. Grab the minimal ISO every time, and install tools when you come across them and need them
i use macos cause of the ecosystem lol - i know most people will be like "you're an idiot" but it's what i use to do real life - i personally trust Apple over Google (while still knowing they are all big tech)
make sense
I just use windows as I find it more stable for daily usage , gaming, school and overall it just works
My PC and laptop can handle it so why not
windows is absolutely fine to use
Your flow usually is
Do CTF -> Hacking technique comes up -> research, find the tool for the job -> install from a repo -> hack away
windows and mac are the industry leaders in day-to-day "non-IT + non-InfoSec" world
Or build from source/deploy Docker if it's something more elaborate
heck, most corps are like 95% Windows still...
and IT too...
active directory
yupp
AD is king of corporations
we might not like it
we might hate Microsoft from time to time
but it's how the world spins
Unfortunately π
Except if you're in Germany. OpenExchange and Thunderbird over outlook, Nextcloud over Onedrive, most states using Linux now. They're a fun bunch
I'm all for pushing more and more to linux
i can never get any of my teams to do it
"no one knows how to support it" lol
It's starting to look like a lot of countries are actually beginning to favour open source for "digital sovereignty" besides Germany too, but it ain't many
we have an app that we run that scans for assets on our network - clear as day documentation on how to install on ubuntu - it's literally a yaml file for the config and starting a service - they still won't let me run it on ubuntu - so we spin up Windows Server WITH THE GUI just to host a couple MB config file and a Windows service (smh)
at like 30 locations... smh
Germany and digital do not go into the same sentence together.
its mostly because we pay a 3rd party to handle patching and their tools don't patch ubuntu
Also people say its hard to costumize
Id debate, I made my windows machine look amazing easily
And some people sometimes think its linux and not windows
You just gotta know apps which are bit more rare unlike in linux
Well, you can do hacky things to make windows look nicely, but it comes at the cost of overhead and potential instability
Well it's very stable
The only thing that breaks every update is invisible taskbar (cosmetics)
Which I fix easily
Nothing else
Also costed me exactly 0.00$ to do all mods
And less than hour of my time
Hi
beep boop beep boop sleep sloop meep moop
Linux's graphics stack + desktop environments for the most part are open source, making it a tad easier to customize it in more depth and integrate custom functions and doodads into it
What's the avg age of ppl in here?
πππ
112
Primordial
5m
+- 100 years
Maybe
Yep, that's a consensus agreement
I want a programmer for my website @sleek hare
It just works
I'm not frontender
Srry
hey, if you like the way it looks and it runs good for you, that's all that matters
I use AI for frontend most of the time as I'm horrible at it
ok
I can do something simple with next and tailwindcss but nothing more
By all means, if it works and it fits your purposes, it's worth using and your personal preference is valid. It's moreso raw technicalities which give Linux its' fame for being highly customizable.
Notably also because those customizations aren't just referring to the visual side though, but the underlying system's components as well
By the way, any plans on adding more insane challenges on thm free sub?
who you?
And with all that customization comes tinkering forever with all the Settings to get things to work properly
sleep sloop is shadow but too early for shadow
Lol I am not shadow
I am ValkyrieGunna
But you are copying what shadow says
No I am not. I got the beep boop from a gamer friend of mine and I was trying to rhym several words that sound similar
I was trying to make it longer but that's all I got to lol
The sleep sloop is what i picked up from shadow but the rest is mine
ahh so you admit to the plagiarizing
How do I turn off sleep / hibernation on Linux? I find that I'm unable to wake my machine up and have to force restart it. It is very annoying.
It's not plagiarizing, she did not copyright it.
To present another's words or ideas as one's own or without attribution.
Says nothing about copyright
Nahhh set and forget after this last one I swear π
π€£
did you know that copyright was originally designed to prove the authenticity of the work rather than aruging "it's mine"
When the whole system's a config and it's written in its' own programming language, that's when you're never seeing the light of day
Yeah I know, I did TQUK The Principles of Business Administration about a year or two ago online with a local college here
linux being "text based config" is pretty dope - once you get the hang of it, it's a lot easier
Anyone got any suggestions?
In most cases π
yea, give me a sec, i just put ubuntu server on a laptop and had to adjust a file to prevent sleep with lid close
nvm, that's a different file
Guys is anyone else having the ping drop randomly so you have to terminate the machine and restart it? Itβs pissing me off π€
there are a few ways to make the change you need
systemd status hibernate.target
that should show you the status of "Loaded: loaded" and "Active: inactive"
that means that hibernate can run if the right script or setting calls for hibernate
you need to mask it
so systemd mask hibernate.target
Ok thanks @lament meteor
Gave +1 Rep to @lament meteor (current: #1094 - 5)
guys whats better thm web app pentest or htb?? give detailed ans
this will do all of them at once
sudo systemctl mask sleep.target suspend.target hibernate.target hybrid-sleep.target
but beware, if you mask sleep.target... closing the lid or pressing the "sleep" button won't allow it to sleep
if you want to change what button/lid events are enabled/disabled, then you need to edit
/etc/systemd/logind.conf
for example, I commented these out and changed the value to ignore
HandleLidSwitch=ignore
HandleLidSwitchExternalPower=ignore
HandleLidSwitchDocked=ignore
Thanks, man, very much appreciated @lament meteor
i could have had HandleLidSwitch=sleep to allow my laptop to still sleep when the lid is closed and on battery, but i just wanted to know that closing my lid does nothing to the power states
now I know how LLM's feel π
π
yall know you can use chatgpt without signing in right?
hlwww
what do you mean "web app pentest" ?
theres a web app pentest path in thm
Jarvis, strip away his internet privileges
Please, what is your opinion on using ChatGPT during penetration testing.. not automatic tool what does full pentest, but talking with ChatGPT about current state, what some request or response says etc.. like coop partner during test.. itβs a lame or itβs the thing we have now and we should use it?
Jarvis, scramble his RJ45
wow giving the thinking to chatgpt and you run the scripts?
mane if only this field isnt so relaint on problem solving
oh look a new AI chatbot does it for me
"why am i getting no where in this field"
thats evil even by my standards
You know what's so annoying? Having to do away with Kali and using another linux OS that does not come with Kali tools.
well yeah
i have had to download SecLists so do I put it in the system folder under /usr/share/ and add the wordlists folder?
well wordlists should not matter where you put them on the system
as long as you know where you saved it to use it with tools
I think ChatGPT is a great learning tool and a great replacement for Google-ing - that said, I would highly HIGHLY recommend NOT feeding ChatGPT production information - we truly don't know where that info ends up at
Treat any LLM as a more senior team member. Ask it questions to grow you understanding.
You wouldn't go to a senior team member and say, "Hey do this thing for me."
But you might say, "Hey I'm not sure how this works, can you help explain this to me"
that's the major difference between "vibing" and learning with LLM's (imo)
Thank you @sand trench
Gave +1 Rep to @sand trench (current: #4 - 2239)

I feed gpt all my sensitive information and company secrets, so that it can write emails for me
thank you so much for your opinion
Gave +1 Rep to @lament meteor (current: #956 - 6)
i'm one who is not direct against gpt and so AI called tools. for example, as chemist, i needed to make list of material density of whole periodic table. i asked gpt to make that list. cos going one by one will be pain in ass. so it is great tool to make that for me. however i had to check it manually to be 100% sure in results due to be sure that i can use in production for what i need.
gtp will not give you what you need to the end, it can, but doing manual check for 100% is needed. gpt for me is summarized tool that do his job/work
I understand, thank you
i cracked my second HTB machine without write up
i agree with this... if you are asking an llm to generate docs or diagrams or whatever for you.. . something that you already know, that's fine. in that case you are treating it like a virtual assistant and that's a valid use case too.
hey! if anyone wants to study together I'll be in the Large Study Room! Thanks
indeed... so have list like this helps
I use it to extort money from north korea, russian, chinese and iranian state actors.
i prompt it to write and execute an exploit to transfer money from them into an arbitrary btc hard wallet that i have control over
people under utilize the power of AI
I'm trying to run this command in Linux Mint Cinnamon (I must remember that commands can be different from each OS)
gobuster -u 10.10.108.149 -w /usr/share/wordlists/dirbuster/directory-list-2.3-medium.txt
It gives me a error say unknown flag for -u and trying - url gives me the same problem. I looked in the help and nothing tells me what I need to do to make to.
No, commands are not different on each os
different versions of the same program might have different syntax
Can anyone Auto farm here
the options/what you're trying to do requires dir mode on Gobuster. There's multiple modes like dir dns etc.
gobuster dir -u xxxx -w xxx is what your'e looking for
commands are same due to be same as they are build in tool it self. not based on os used
Oh, thanks. My brain isn't working today lol
Plus as ben pointed out, certaion options are only available if you use the right parameters for it
same π
this shit aint windows bruh
story of my life
daddy microsoft changes stuff with three different command prompts
Lol I've slept a lot and I'm still tired.
there like 5 different version of terminal in windows for some reason
later you will learn fuff. then you will know what pain can do and what results it can give π
If it's Windows Server that is having issues at your job, your best bet is to schedule a reboot in 5 minutes, tell your boss that its repairing, then leave and turn off your phone
@lone thistle thank you
Gave +1 Rep to @lone thistle (current: #10 - 946)
i agree some - i think the whole "vibe" coding, creating, hacking can be very dangerous - some people let it go to their head "look what I built" and then when something goes wrong or they truly don't know what they are doing and security holes are left behind, that causes issues
i ask AI to fix the code, it deletes the part that gives the error and gives me the "fixed" code
oh and all the hallucinated logic too
Refer to "Tea" app for a good example
if i wanna have my whole codebase uploaded to a server so an LLM can decide for me
i might as well give up coding
*programming
You can make me a cuppa hot tea, very sweet with milk in. Thanks β€οΈ
Gave +1 Rep to @digital estuary (current: #115 - 79)
yeahhh that whole tea appp was craaaaazy
Enjoying every bit, I canβt believe how fast Iβm learning, practicing and grow. Iβm Open for internship opportunities anyone.
Fresh kali image..fresh pimpmykali - no mouse capture. finally. jeez. i had to go back to virtualbox - and i hate their new logo
I finished the Blue, Ice and Blaster rooms. What other challenges should I go to next?
any pointers on difficulty???
For now, just easy rooms for learrning and getting use to the commands and process
because have a decent bit of things shadow has done that they can recommend but some stuff might be to difficult or time consuming to jump into directtly
lesson learned is a good bet then
or
corridor
or
cat pictures 2
or maybe the overpass series
btw i got demon linux running i had to use way back machine to get the iso
that sounds sketchy but fair immo
Ill try all those next. I have a bookmarked hard I want to try but still learning
I'm not mainly using it just want to see what it was like it running in virtualbox
Thank you
Gave +1 Rep to @sand trench (current: #4 - 2240)
no problem :D
I just want to play around with the function they added
thm got a bunch of new rooms right?
yeah just check the #announcements channel
Hey guys
hi
beep boop meep moop reep roop weep woop reep roop
meepp boop
Hey @slow cloud
Whatsup
Iam bakc
iam to0r
what happened
YAY the systemd service sandboxing of NetworkManager has broken 0 of shadows workflow :D

to0r, may I DM you?
good old reverse root account to have backdoor
Hi π
How do I find my vpn IP address?
like THM VPN or other VPN?
I need to do a reverse shell in PHP so it's a file and I have to put the attacking machine's IP in the reverse shell file
so yes THM vpn
do you have GUI/browser access on your attacking machine? if so, just open the browser and go to whatsmyip.com
Yes I am using Linux Mint Cinnamon
Well thanks
hello
thank you @lament meteor
Gave +1 Rep to @lament meteor (current: #783 - 8)
this should work in terminal too - its actually faster
wget -qO- ifconfig.me
how are professor messer's videos?
for networking
and what all resources would you guys recommend
how did you find out about professor messer's videos?
like i was searching for resources and found out that he prepares people for exams
@lament meteor I send you a DM
someone tell me again why i left oracle - this vm style is much more familiar with vmware
i've really just been trying to set up gvm and sysreptor so i can start making vuln assessments like a good noob and it's been quite the trying time
on work we talk about elements in periodic element, and friend ask: why there is no date for when oxigen is discovered =/
you know when fate just keeps throwing little issues to see if you'll work through it
Heyy
Professor Messer is good. It's very much an "instructional setting" as if a teacher was teaching you.
Yup, that happened to me today with Kali. Now relearning how to use a new OS. It sucks but I gotta push forward
I'd start with the TryHackMe network fundamentals since its a little more hands on and interactive. If you can't understand a concept there, then find Messer's video on that topic to do a deeper dive
There's such thing like a good noob? π€£
thank you so much
Gave +1 Rep to @lament meteor (current: #723 - 9)
another dye another making script bettert
messer , mike meyers and dion
NetworkChuck is decent too. He's a little more fast paced and "interesting"
i wrote a published a children's coloring book about networking and the OSI model
Messer and Myers are your YouTube Professors lol
Chuck drinks too much coffee sometimes π π
it examples how a packet moves from your keyboard through the layers out to and eventually to another computer all the way back up
its called "greeble spaceman's guide to the OSI model". it's on amazon, etc. i just did it for the resume but it was fun to make. i even have some crosswords and a caesar cypher
too much coffee??? there is such a thingy????
i feel sometimes network chuck does not go in that depth if you wanna learn like everything in a topic
yeah network chuck is decent for networking tutorials but his cyber security things is kinda medicore at best
he talks really fast in some of his videos
imo, if you understand enough from Chuck, it might be time to test your skills in a lab or activity rather than more videos - practice is what's going to make things stick
i agree with you
apart from thm and htb where all can i practice
agree - his network stuff is pretty good - his homelab stuff is interesting - he bounces all over the freaking place though
he had the ccna playlist which randomly ended after subnetting
are there videos in continous to that?
He's gone mad
coffee is medicine, I love coffee
I can never have too much coffee
is there some outage or smth
# Check for help option
while [[ "$#" -gt 0 ]]; do
case "$1" in
-h|--help) show_help; exit 0 ;;
-r|--revert) revert; exit 0 ;;
*) echo "Unknown option: $1"; show_help; exit 1 ;;
esac
shift
done
guess what shadow is adding to their script :P
why is my machine laggy af
You can do some virtual labs with Cisco for free with: https://developer.cisco.com/docs/modeling-labs/cml-free/?utm_source=chatgpt.com#cisco-modeling-labs---free
Never used it myself, so idk
hmmm π€ maybe a option to check for help?

hahaha yeah
there's this too
https://www.eve-ng.net
Community is free I think - again, never used it
You could spin up VyOS or PFSense etc
Buy some cheap switches and configure yourself
are machines laggy for you guys asw rn?
So, random thought. What do you all think? Are there only a few mods becasue no one has filled out the mod app posted in may or are there few because they all get denied for fun?
I've never applied. I'm just curious and spitballling lol
think it is a combination of both
i've only been here a week and I was kind of an a-hole the other night lmfao
Sometimes
so glad they fixed the paste problem
there is a clipboard manager on the left of the vm too - copy in the vm, open the clipboard, can copy from there on your "host" machine
opposite too - paste there from host, open clipboard, copy from vm
that paste thing was annoying

do you need to be good at math to learn cyber security
Not necesarily, but there are parts that do require some math, like cryptogrpahy
but then again there are calculators to do stuff for you online
It helps to know math because you know if it's wrong or off easier
Thanks
Gave +1 Rep to @dark wolf (current: #89 - 109)
what a level grades are recommended ? (cs and math)
I have never used math
But it really on the type of job u want to do
π
But you know math, hes been in this server for a minute

@narrow yew is T1M00 good at you? Nicholas wants to know if you need to be good at Math <--- to do Cyber
oh lord
I dont even know how to multiply after times 5. Im 40+ don't need that crap
Didn't your teacher tell you "You need to learn Math, you won't be carrying a calculator in your pocket no matter where you go"
Looks like nobody needs Math anymore Nicholas
Well it so happens I have all knowledge in my pocket.
Teachers be dead now anyways
Did you go to the Old Witches Acadamey or something?
Its an android. She knows everything
Well that is one aspect
How abot using AI like this ......
Go to car dealership and talk to salesguy about car
After talking to the sales guy a bit, pull out your phone
turn gpt in voice mode and ask "the salesman says blah blah blah, is he full of shit?" right in front of the salesguy
I'm glad you realize that. Some men take to long to relaize that. But yes, they are never wrong.
I know my place
Its ok as long as they do not ask for the price of things in the gun locker or new tech items
haha
@sand trench
250 days left WOOHOO
shadow could post their 1500 day streak badge and make people drop their jaws even more
Yo
Anyone know how to look at a phones live cam with the cell number?
π
????
the what
?
Probably looking through the camera when you have someone phone number
But idk how that would even work
be stated backed hacker
next question
well... i plan to go on toilet soon... if wish watch lol
Hey yall
Hi
Wassup
Existing
I thought to make some thm challanges when I'll arrive home after political meeting
But yes of course I'll arrive at 11pm if not later
It will be a wonder if parents won't punish me for being late
Tbh unlikely as I told them I'll come home someehere in that time
https://tryhackme.com/room/fusioncorp
https://tryhackme.com/room/davesblog
This two challanges should be fun, I'll probably do them tomorrow
Anyone from Italy ?
is purple teaming worth it
Heyyy
hello
is there other places other the thm i can learn purple team
yes...
next question
FaceTime or Google Meets
Itβs pxe booting instead of drive
βI accidentally deleted my Kali virtual machine from VMware, and now I canβt recover it
Did you recover the drive files?
I downloaded the driver files again because for some reason the previous ones didn't work.
are you trying to install kali ?
yh
1 have 1 solution try virtual oracle machine instead
haha
its much easier to setup
u mean virtual box?
yeah
I tried however I got another error
Did you enable virtualization ? settings in bios
The funny part is that I'm using a Lenovo IdeaPad Gaming 3, and this device has a problem accessing the BIOS screen, so I can't see it.
You should check if your bios virtualization settings were disabled
Can I enable it via cmd without entering the BIOS settings?
ohh
Thank you for trying to help, but I spoke with Lenovo support and they told me that the computer needs to be sent in for repair. They said it's a technical issue, but the funny part is that I live in Cyprus and can't go to Turkey for repairs.
cuzz I bought from there
Tell Microsoft to extend support for Windows 10: https://fulu.org/take-action
Can't make it to the event? Switch to Linux, and let Satya Nadella know: https://fulu.org/take-action
have i mentioned how much i love louis rossman's videos?;
Actually you can fix it by yourself .
got any idea?
An employee at Lenovo told me that if I switch back to Windows 10, they will be able to update my drivers.
Hahaha its up to you but there was cruel update incoming on 2025, october 14
yeah I know that thats why I am not going back :<
wait Is that possible?
Give a try
I just tried this method
however I got the same bios screen
w others
not working?
unforunlty
I will probably gonna sell my Idea pad gaming 3 laptop for 1 dolar
real value
Good idea haha
soo.. should I back to w10
I didnt be sure honestly
I don't trust the tech support haha
Status: Media disconnected
Virtualization-based security: Status: Running
Required Security Properties:
Available Security Properties:
Base Virtualization Support
DMA Protection
UEFI Code Readonly
SMM Security Mitigations 1.0
Moblie hack for pentesting sounds awesome
I have these
Good news bro its already enabled
@mossy river got any idea sir?
for vmware
Go try to oracle i hope it work
Do you have 7zip ?
yeah
you need 7zip haha to extract files
wait I have not that
get that one too
Do you think that's the source of the problem?
Vmware is not for beginner haha in my opinion
I personally use oracle
I don't like wasting too much time configuring many settings
I understand however honestly I used all of these
Maybe
nah same screen
now lets wait 1.5 h
Mate, I am heading to bed however thank you so much for your time
Gave +1 Rep to @kind thunder (current: #3205 - 1)
I am gonna sell this pc for 1 dolar
PROGRESS
Make sure you wipe out all your data before selling haha
If the person who bought this computer is likely someone who is ignorant enough to buy this computer, they will not be able to access past data.
yah
I am gonna buy this one
GMKtec K10 (Intel i9β13900HK, 64 GB RAM,Β 1Β TBΒ SSD)
64gb ram sounds cool
Are you playing games?
Yah
I dont any video games
Let's gooooo
I used to play, but I realized I needed a girlfriend, so I quit.
just hope it works but will find out that tomorrow at latest
you must review first if virtualization is supported
if it does not work then shadow needs to do more configging
What're you trying to do with sddm shadow?
where can i find this info
go to official website or ask your favorite ai to summarize the specs so you won't repeat the same mistakes
sandbox it/limit it to make it a lot more secure as a service
ia just said he does
That's cool, is there a guide to how you're accomplishing this?
so if it still lets shadow login and run all the software shadow wanna run it is working good enough and can have said limits in place
kinda
Can you send it please 
sorry where upgrade my level in englesh because tryhackme use the french and switch in the french and englesh is very hard
https://madaidans-insecurities.github.io/guides/linux-hardening.html#systemd-service-sandboxing
https://nickb.dev/blog/writing-a-secure-systemd-service-with-sandboxing-and-dynamic-users/
https://www.redhat.com/en/blog/mastering-systemd
https://wiki.archlinux.org/title/Systemd/Sandboxing
This post will walk one through a real world migration on how to apply the principle of minimal privilege to a systemd service. This is accomplished by extracting sensitive configuration fields into an environment file, templating the config, running the service as a dynamic user, and sandboxing the application with systemd primitives.
I don't know if you understood me
this is the references shadow is using to work towards this systemdsandboxing
everyone who has 7zip installed please update it to at least version 25
well yeah translation issues exists... dunno how to help you grasp all of the technical english in tryhackme without good grasp of english
are u talking about me?
everyone who uses it
is there new zerodays?
Thank you shadow!

Gave +1 Rep to @sand trench (current: #4 - 2241)
I'll just uninstall it haha
no problem darkfly
i think go in australia 1 years for learn englesh
English"
yes sorry
idk if they have been used as zero days but two fairly high-severity vulnerabilities were found that are fixed in the latest version
deff worth it if you can afford it
Me too i'm poor talking in spokening $dollar$
tbh
you come with me
LOL
π
No
π€¬
where are u from mate
Ferglarrr!

I live in Cyprus but I am in Israel to study.
insert song :https://youtu.be/_0HTwQjMr9k?si=WTY48LJH8RQ8_cen
mPape
goalll
loll
just hope you can improve your english understanding and writing until it becomes second nature
as the internet is so much more fun and helpful with high level english understanding
Frrrrrrrrreeeenchh
I had an English girlfriend for two years. I learned English for her. I used to only know how to say hello, but now I'm better.
bread
I hope thank you for this message
Gave +1 Rep to @sand trench (current: #4 - 2242)
mdrr
Duolingo is good, but there's so many other avenues where you can learn English such as music, literature, and others
'had' π.
and you where are you from
Just pace yourself and don't get burnt out
ah dont worry I found someting better
Take baby steps
How so? π€
if you want help speed running the learning:
listen and watch videos with english subtitles and english audio( voice )
play a lot of games in english
have fun
duolingo i try thanks
Gave +1 Rep to @ripe sleet (current: #99 - 88)
Fun fact, the duolingo bird is canonically dead
If your native language is English, giving advice may not make much sense. but if u are not go ahead xd
shadows mothers tongue is swedish
I would like to learn swedish eventually
It might be good for Swedish girls.
More language == more curse words to discover
That's my favorite part about learning other languages
you are not wrong on that front darkfly
swearing and insulting in other languages can make you learn a lot kinda quickly
It's like encryption through speech
Would you like to learn a Turkish word?
Yes
Only someone whose native language is Turkish can understand it
ΓavuΕ
So true!
Dm it, cause I don't want you to get flagged for non English language
nah only one word
I know japanese insults and swears
Ehh, Jap, Kor, Chinese, Malay, PH, Indo, French, Spanish, Italian, English π
Learning japanese has sort of gone past the anime stuff. I like the history, mythology, and the paranormal shit that goes on there
German and Latin too! π
Paranormality is not real.
It's cool to think about though
Man if I had the stitched-mouth woman appear in front of me I'd give her a candy and run away.
lol why
The tale of heike is a book that I have to finish
It was interesting, there was just a bunch of terms that I didn't understand
btw Do you have a resource for learning Suricata?
is anyone else starting to lose reason to continue pursuing cybersecurity? since layoffs are becoming more and more predominant thanks to AI?
DARKFLY
Ehh I dunno I made a small IDS wrapper of my own on top of Suricata a couple months ago, haven't touched Suricata ever since.
No. AI is stupid, and will continue to be stupid. ππ½
that's a lovely thought, but simply isn't the case.
There was one story in the tale of the heike where this woman was replaced due to the new woman's ability to play an instrument. So the woman becomes a nun for buddism in a hut. Eventually the girl in there becomes a nun too
Is there an application to test with suricata? IPS IDS
What are you asking?
I really want to know about yoshitsune tbh
for learning properlly π
Holy elite ball knowledge.
The Genpei War!
That's like down the line though
Yea
I'm not asking why you're asking what you're asking, I'm asking what you're asking because I don't understand what you're asking.
The structure for their government was weird too
They have the emperor and there's these former emperors that still have power
Weird shit
To be fair they had weird restructuring from Imperialism to Aristocratic ruling.
π€·π½ββοΈ
Yea
I would like to learn more about Japanese history. As well as ancient china too
β keep me out of chinese history...
There's a musical that I want to see eventually that looks cool as all hell. It's shenyun
I just like the attire and shit of that era
The long robes and shit
Daoism and taoism is cool too
Though not eating meat or drinking alcohol sucks
bro is there any hacks for like ip tracin? just my reasoning is to get the cops on a certain person for MULTIPLE online crimes
if not im dippin
@gusty inlet
make no mistake i will leave if it anit allowed
Illegal, report the person to the cops instead.
Bye.
Bye
morning all. hows it going?
I'm entertaining myself, and you?
It's..morning..?
Where the hell are you..
not much really. will probably start grinding thm rooms soon
Hello!

shadow has been thanked billions of times in here.. its crazy
And shadow is going honk mi mi mi while nini to beep boop
Also hoping I can get some course credits for a course in interested in
ni ni
Hello sierra .
Hello to all the lovely aspiring and current hackers
Remember to drink your water. Dehydrated hackers are not a thing
sup hru
not jolt cola? π
jolt cola does NOT hydrate !!!
Sugarry drinks quench thirst but cause further dehydration
but how will i stay awake all night hacking?
That's you right there... Vi sitter hΓ€r i venten och spelar lite Dota....
cocaine and gatorade
That's a winner's diet right there
Thats for the EDM festival
Do hackers go to EDM festivals?? I missed that episode on Mr Robot..
I don't want an answer just a hint. But what does "Knock knock! Magic numbers: 1111, 2222, 3333, 4444" mean in the cat pictures room. I got up to this part. its a hint but not enoughπ₯²
If theyre into it, yea I guess
Jokes, I love EDM and festivals
if the movie Hackers tell me anything its that hackers like to rollerblade around warehouse raves
Knock knock! And numbers that look like something you'd see on an nmap scan
I used to rave :D
Same! I constantly leave town to find raves in the winter hahaha
I was in college att so the travel was doable
Google the first/second word of my reply, as well as the kind of number these are (its category).
It's a type of attack THM hasn't gone in depth with as it's quite an old one
THM needs to fix one of their premium rooms, its about AI prompting yet discovered it can also SSRF
evil gpt 1/2?
Thank you so much. Thats the hint I needed.
Gave +1 Rep to @topaz topaz (current: #239 - 39)
2
How do you achieve that?
I didn't even get to explore it that much as I finished EGPT2 in 2 prompts ..
Found out the AI model, found out the version of it, google vulns for said version, and im in the money
How do you find the AI model? Did you ask it directly?
Haha no worries, I just like hearing stories like this and techniques
Props to you for finding that though. How come you went that deep?
Well, I started with this nmap at first
11434
That is used by a model
oh you went DEEP deep
How did you determine its specific version though? Or did you just search for ollama vulns
Then this
curl -X GET http://10.201.41.132:11434/api/version
{"version":"0.6.0"}
Oh wow
Yup, Googled lol
and finally
I'm surprised you went through such depths. Considering your skillset you were merely probing for something extra weren't you
I was bored and the room itself was very lame
I liked how easily it repaired my streak but to be fair it's the absolute easiest CTF I think on all major platforms
Way too easy for a paid room
The only easiest ctf I have to think of is level 1 bandit on OverTheWire where you have to "ls" then "cat flag"
Come on, you give the keyboard to a kid and tell it to find the flag, it will find it
crocc crew is actually pretty easy despite the given level
Not even for a free room imo
Crocc Crew is more like, Medium level
Bipolar difficulty
Try whiskey and gatorade instead, less lethal, same effect.
Whiskey and Redbull
Beautiful.
I do that on somewhat of a regular basis.
π
What happened to the good ol' jagerbombs???
geasjk
I have my whiskey n sweet tea mix
i just snort moonshine
moonshine was the first alcohol i ever had
LOL
All I see when I read this message is polished wooden floors, fireplace with a hint of spice in the air and overly expensive carpets
Its strong
i concur
Close enough lol
I love rock salt lamps
did u just go back in time
I bought another lava lamp





SSH INTO YOUR HEART!