#general

1 messages · Page 1781 of 1

sleek hare
#

total ammoun of data was over 800 GB

sinful moon
#

just stop doing anything that could overwrite where existing data used to be

sleek hare
#

and wrote security report

#

tomorrow going to police

#

gosh

queen flare
#

keep stuff untouched

#

maybe the forensic dudes can recover stuff like ellie said

sinful moon
#

it's okay, we're not trying to be harsh. But yes if all that was deleted was the filesystem links to where the data existed "aka how most deletes happen" then data may still be there, just left in a "this is okay to overwrite" state

sleek hare
#

forensic dudes?

queen flare
fierce dragon
#

Possible not the data itself is deleted but just system links

sinful moon
#

They would have had to 0 out or overwrite everything to completely delete it

sleek hare
#

zfs told me that it got overwritten

#

and only few bytes is there

#

I also stopped some sshx session

#

as soon as noticed

#

maybe this is why this bit of data isnt purged yet

sinful moon
#

Yeah not great, but indeed there's only so much we can help, and questionable liability of us doing so

sleek hare
#

fair

fierce dragon
#

You may try to boot with recovery systems that digs in the memory and get the data , just try to not add anything new , it will overwrite the existing data

sinful moon
#

Just seems like odd tactics, as if they really wanted to use this for much gain, they wouldn't have been so destructive

#

But potentially their attempts failed so they just said f-it

#

Either way, sorry to hear about that and good luck. Will be a good lesson for sure, no ideal that anyone could get a foothoold in the first place

worldly pollen
#

stay secure with windows 7

sinful moon
#

hush now lol

worldly pollen
#

🍀

sleek hare
#

than any other issue

#

my administrator got compromised

#

also I'm still unsure if he really got compromised or he just shared account password or he himself did that

#

as logs point to his account but also to lxc 115

#

lxc 115 had bruteforce tool and sshx session

#

lxc 115 could be accessed only from lxc 101

#

which was from my friend/costumer

sinful moon
#

Yeah unfortunate to say the least

sleek hare
#

issue is

#

I cant find any attemps to login

#

login was perfect - without a single failed attempt

#

which makes me wonder if he really got compromised

#

he also gave theory of VPN packet spoofing

#

which seems fair as person who used it with him was my "enemy"

#

😭 gosh I want to die now even harder my 3 years of work got down

sinful moon
#

Then yeah I won't even speculate because yeah sounds like there's a whole story here and more

#

Just it's alright, things will get better, just take it one step at a time

#

I've head to deal with security incidents before and yes they can leave you feeling awful, but important to learn from. Can't change what happened, only improve on what went wrong.

sleek hare
#

the thing is

#

the project I was making there

#

was the only thing keeping me alive

#

like seriously

#

the community, the motivation

#

and now its all gone

sinful moon
#

Indeed, which is why your backups need to be fully segmented and ideally 1-2-3 style

#

I'm just not sure what else to say, but there is a way past this

ripe sleet
sinful moon
#

Can potentially work with said community if they have any of this data to recover. Not sure what kind of project this was but yeah having online version control probably would have been beneficial as well.

Can at least plan for "projectname-ng" or whatever as well

barren kraken
#

Some hlep me

ripe sleet
barren kraken
ripe sleet
#

Is it illegal?

barren kraken
#

Nhaa

ripe sleet
#

Aye, send it

delicate edge
#

Hi NEW HERE, Im Mario

granite shard
#

HII MARIO KART

#

YOU GOT PIZZA?

sinful moon
#

No just the mushrooms, no need to be like that thought

worldly pollen
#

I am heading to bed have good night girls

granite shard
#

I want pineapple on my pizza

granite shard
sinful moon
#

hush child

granite shard
#

🥲

opaque apex
#

Hey everyone, I've been having this problem for a year.
I live in Ukraine. Because there was shelling and the power outage, I didn't have time to complete my daily task. My streak, which was 330+ days, disappeared. I clicked "Restore Streak," but it started counting down from day 1. Everything is gone.
Can you tell me where to write or contact me?

sinful moon
#

I believe you can contact support@tryhackme.com to resolve this, last I remember most staff on Discord don't have the latitude to do so

#

Good luck to you and stay safe!

sinful moon
#

I've contacted them before and that is their primary support inbox. It's even listed on their billing info.

#

The company I work for does the same thing, support@companyname.tld is pretty common.

#

Checking my email history shows I was connected with a well known THM staff member after emailing that address

stoic quarry
#

Yeah support helped me with something similar

#

They might not have replied over the past two days given it's the weekend

sinful moon
#

Mhmm, they normally work on workdays UTC/GMT hours

grim orbit
#

Hey guys,
are we allowed to use the VM on the website to carry out attacks to our own devices ?

sinful moon
#

That's an odd question. One, the VMs don't have internet access so you can't do external testing at all. Two, even via the VPN, you'd have to pivot from the device you're already using to connect out to your own network. So not only is it impractical, but just also ill-advised and silly.

Just spin up your own VM quick to do so, it's not hard

#

And sorry I was thinking of using the openvpn which you're not, so no you won't be able to what so ever lol

#

Just lol use your own approved infra to attack your own approved infa really.

#

VMware Workstation Pro is now free even if you have to jump through account hoops, VirtualBox exists even if that means dealing with Oracle, and etc. You have options.

opaque apex
twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #35 - 318)

sinful moon
native pulsar
#

I’ve been so locked in today I’ve done a bunch of labs

rose creek
#

i just finshed a full room and omg that was hell but it was fun

sinful moon
opaque apex
sinful moon
#

Yep, just gotta wait for normal business hours before they're likely to even see it (UTC/GMT time, no plus or minus)

#

They'll be able to see in your account when the streak broke, so which day shouldn't matter that much

opaque apex
#

Oh, I hope they help me. Because it's just a tragedy.

rose creek
#

i been doing like 5 min pen rooms and look up was so different because i had to put all my tools into place and use them

sinful moon
#

so a challenge room or something? That is something to understand is that while a lot of THM is focused on guided walkthroughs, that's far from the only type of content there is

tawny bough
#

hi, anyone else having issues with session management in the Enumeration module?

mossy river
#

Sheeesh I’m now Az900 certified

sinful moon
#

Congrats!

mossy river
#

Thank you thank you

rose creek
mossy river
#

Given that I booked it yesterday and started studying within the last week or two I’d say I’m pretty chuffed rn

sinful moon
#

Totally understandable. Does sounds like something I wouldn't mind going for

#

Is it perpetual?

mossy river
#

I don’t think the cert expires

sinful moon
#

Awesome, although maybe it should with how often MS renames and re-arranges things, but I don't want to give them any ideas lol

tired wolf
#

why are expiration dates on certificates a thing

#

money

mossy river
#

Exam does change but I don’t think it affects the cert - unless they just outright replace it

sinful moon
#

$$$, with slight justfication on continual education

#

there's barely any reason why A+ and many other CompTIA ones needed to go that way lol

mossy river
tired wolf
#

must be why the median pay in this field is so high

sinful moon
#

That sounds about right lol

#

regularly administratining Azure at work, I gotta play, where does this thing live this week at times

#

although yep for all of Entra ID you can still see the URLs say AzureAD

mossy river
#

Az104 should be your goal then

sinful moon
#

Sounds reasonable

ripe sleet
sinful moon
#

I've just had to self train my own AD/GPO to Azure/Entra ID/Intune/whatever learning and it's been interesting

mossy river
#

I have to say I think Microsoft Azure is well thought out - I have a lot of respect for it due to it’s intuitivity

sinful moon
#

I started when Azure AD was still called that, and still somewhat salty but I don't even try to use the old name anymore lol

ripe sleet
#

How does Azure compare to that of AWS?

sinful moon
#

Really, I'd say the opposite especially when compared to how intutive on prem was but fair enough

mossy river
#

I’d say Azure is more business and AWS is more consumer

sinful moon
#

that's fair

mossy river
ripe sleet
#

I did two AWS academy courses which were interesting

sinful moon
#

I can say Microsoft 365 admin portal and Exchange Online and tasks are easy as all heck though

tired wolf
#

system administration, any great resources?

sinful moon
#

So they did to that right. But I often just have to dig to find the Entra ID stuff I'm looking for for the umpteenth time

tired wolf
mossy river
#

I anticipate that my opinion on Azure will change if I have to manage it

boreal scarab
#

Wonder if there's a secret.....

sinful moon
#

Or silly stuff like SharePoint admin, do you want an end user to have a "shortcut" or "sync"... turns out Sync is usually the right way to do it despite the unusual naming

boreal scarab
# tired wolf sick game, loved the open beta on 50 fps

I keep repeating myself in multiple discord, campaign was ALRIGHT. Second to last mission was pretty good. But the story felt soulless, all over the place. The first mission was very good in opening on what is to come. But after that, we're jumping between so many different places with no reason why

sinful moon
#

Sync gives them a fancy "org name" thing in Explorer instead of "shortcut" that yeah just adds a shortcut in their OneDrive

boreal scarab
#

Just "Remember X Y Z" Goes into battle

tired wolf
#

i havent played nor seen the campaign

#

cant comment

loud orbit
#

Is it worth doing cloud ?

sinful moon
#

Yes

loud orbit
#

Idk if I’ll like it lol

#

It is the future etc tho ik 😭

sinful moon
#

vast majority of small to medium orgs are on M365 or less fleshed out Google Workplace

tired wolf
#

your smart fridge is going to be cloud connected in 2030

boreal scarab
#

Want the ads removed? Gotta pay a subscription for that

sinful moon
#

haha that was big in the news last week

#

with the Samsung fridges

#

and now Amazon Show displays this week... but that is a bit more "what did you expect"

#

but really yeah a bit of "what did you expect" with any "smart" appliance either

mossy river
#

Can’t catch me with a fridge connected to WiFi

sinful moon
#

Yeah absolutely never

tough iron
#

do you know how to hack an nltm hash?

mossy river
tired wolf
mossy river
tough iron
tired wolf
#

someone should invent a smart phone

sinful moon
tough iron
twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #35 - 319)

sinful moon
#

but lol if it's a really weak NTLM hash, that's often been solved in rainbow tables but getting ahead of myself

mossy river
sinful moon
#

this is correct ^

tough iron
mossy river
#

All good

sinful moon
#

back in my day we had l0pthcrack and we were happy lol

#

although yes john existed then too heh

#

but yes hashcat is wonderful, love that the creator drops in from time to time

rose creek
#

is there other cons like defcon

sinful moon
#

yes Black Hat and many others

rose creek
#

wait hashcat creator comes in here

sand trench
#

meep moops it is the time for sleep sloops to the beep boops

sinful moon
#

G'night shadow!

#

and yes Pv2, them and some other infosec devs and creators

#

I like to think it's because this is a pretty welcoming community that spans the entire range of infosec knowledge from beginner to experienced

#

lol I've just seen some that, lets just say, aren't that

rose creek
#

thats cool

sinful moon
#

mhmm

ripe sleet
#

Damn that was one hell of an adventure

sinful moon
#

What's that?

tough iron
#

@sinful moon i just realized, that the most rooms are sub-only, and you need a pc, my pc is on repairing-station (idk how to say it correct) andd i need to use my ipad, do you have some recommondations for me?

sinful moon
#

you can say "it's in the shop" (implying for repairs). But you can use the inbrowser VM on an iPad

ripe sleet
#

Front of house is flooded as fuck, and me and my parents just trudged through that shit like we were indiana jones in the fucking swamp

sinful moon
#

That sucks :ccc

ripe sleet
#

Shit was cool as fuck

sinful moon
#

uh if you say so lol

tough iron
#

but in the room it had no vm? or has it one in every room?

sinful moon
#

be glad you're not in your parent's position then

ripe sleet
#

I have waterproof boots for this purpose

#

That reminds me, I need waders now

sinful moon
ripe sleet
#

Like a full on wetsuit too SparklesExcited

sinful moon
#

Yeah that's no good :c

tough iron
twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #35 - 320)

sinful moon
#

Sounds like at least 10s of thousands of dollars of damage

ripe sleet
#

I have this grundens bag that can theoretically fit like two dead bodies of little people or one adult sized person maybe

#

It's massive

sinful moon
#

lol that's one way to couch the theoretical capacity

ripe sleet
#

It looks like a body bag

#

It's waterproof too

sinful moon
#

Either way just be glad you're not the one directly dealing with the damange I guess, sounds like you didn't have anything down there otherwise that would have been a world of hurt for you too

ripe sleet
#

The city did this million dollar project right that thus far has done jack shit for us

#

They fucked it up the first time which was 2 years ago

#

So they dug our street up again this year, and it has done nothing thus far

loud orbit
#

@mossy river is cloud fun to learn ?

ripe sleet
#

So either the project manager is incompetent or the whoever is authorizing this is like that

sinful moon
ripe sleet
sinful moon
#

Not wrong, I just find it much less interesting when it's all "just someone else's server" but fair

#

Whoops Exchange Online is now... "Offline" for an entire client, what do. idk just wait for Microsoft to fix it

#

Although in that specific example, hosting your own Exchange server is a hell I wouldn't wish on anyone so fair enough

ripe sleet
#

So this is gonna sound random, but in japan they have these women's shoes where you can collapse the heel and turn it into a flat

sinful moon
#

mhmm I've seen those, it's neat

#

lol relevant to me at least

rapid merlin
#

Hi guys I would appreciate some advice regarding cyber security

sinful moon
#

well gotta be more specific than that

#

Getting started with infosec, or are you interested in a specific domain, or?

ripe sleet
sinful moon
#

Heels rock right up until they don't and you're getting sick of it lol

#

lol even if it means I have to be short again

delicate edge
#

Hmm Ill start doing all free rooms I suppose

grim sparrowBOT
#

Done!

sinful moon
#

Beat me to it

#

Thank you

delicate edge
#

@mossy river you scared me

mossy river
mossy river
rapid merlin
# sinful moon well gotta be more specific than that

It's regarding Reddit they somehow know create an account my main account got banned I had that for years I made another one like a week latter that was Shadow banned then I appealed that account for it not to be Shadow banned then I got banned then about a week or 2 later I made another one and it got banned next day I used a VPN and a different browser I used brave and iron fox on android

delicate edge
sinful moon
#

Ban evasion is not ethical use of this knowledge

delicate edge
#

Hmm

rapid merlin
#

I understand but I was banned because I won a debate

#

They reported me

sinful moon
#

"won a debate" appeal to the relevant moderators

delicate edge
#

@mossy river for curiosity why are mods ranked higher than THM staff

rapid merlin
#

No Reddit banned me

delicate edge
#

Arents mods like volunteers?

rapid merlin
#

My main account

delicate edge
sinful moon
#

Appeal to Reddit its self, we can not help you with this, we have no power over Reddit administration

#

This is not what this community is for

delicate edge
#

Also if you want to see reddit posts you can see them if Im not wrong

rapid merlin
#

I must rephrase how do I block fingerprint and IP track/monitoring

sinful moon
sinful moon
delicate edge
#

Hmm I have a better question with a negative response 😎

ripe sleet
sinful moon
#

They do

delicate edge
ripe sleet
#

Is it cause the foot is elevated?

rapid merlin
delicate edge
sinful moon
rapid merlin
#

I'm asking how they do it

ripe sleet
delicate edge
#

@mossy river if you are still there, do you know a github repo or a playlist with all fundamentals relared to cybersecurity

ripe sleet
#

Like small steps instead of big steps

delicate edge
#

Im more interested in Blue Teaming

delicate edge
sinful moon
rapid merlin
#

:(

rapid merlin
ripe sleet
delicate edge
sinful moon
delicate edge
#

@rapid merlin ehy do people want PT1 over SAL1 cert?

rapid merlin
#

blue team is not that easy but you can see some learning on thm

rapid merlin
loud orbit
# mossy river Nawh

Damn ,but u say it’s worth it ,cloud doesn’t have entry roles tho does it

rapid merlin
#

pentest pt1 CBBH CPTS OSCP

delicate edge
rapid merlin
#

and defense SAL1 and other things

sinful moon
delicate edge
rapid merlin
#

so sal1

loud orbit
delicate edge
#

And I dont know german

rapid merlin
#

but you will need to see some lil thing more

sinful moon
#

Germany does have a lot of petty darn vulnerable on-prem stuff lol

delicate edge
sinful moon
#

I think they're second to the US in on prem exchange 🤦‍♀️

delicate edge
#

Ill have to learn german but I dont know a good roadmap

#

Duolingo aint it

sinful moon
#

Just like with TryHackMe, you gotta learn for multiple sources. There's no single way to this knowedlge

#

and to be frank, learning a language and sticking with it is harder than learning infosec, learning guitar, or learning just about anything else I've done

#

Not saying that infosec isn't lifelong learning because it is, but learning a foreign language is even more so, you can't drop it

delicate edge
#

My plan was getting cloud certs

#

Like try to get microsoft fundamentals certs with 50% discount

#

AZ-900 SC-900 and Microsoft 365: Fundamentals

#

Due to being affordable I suppose

rapid merlin
#

you can for sys admin operation and after that add the siem build and soc you will be kinda good

rapid merlin
#

yeah but building maintaining and operating is completly different

delicate edge
#

Hmm so your idea?

rapid merlin
#

better be a lonely guy learning sys admin dev hacking and defense than just learning how to defend

delicate edge
rapid merlin
#

i know buddy x)

#

thanks to my girl helping me mentally everyday but im kinda struggling also

delicate edge
rapid merlin
#

no pain

#

no gain

delicate edge
#

Atm I dunno if I should learn AWS or Azure

#

Or start with Azure and learn AWS along the way

delicate edge
rapid merlin
#

whatever you want for real

#

both are different

delicate edge
#

I heard Azure is more beginner friendly

#

AWS is a bit confusing I participated to an AWS Gameday event

rapid merlin
#

you'll see s3 bucket etc etc on one end and on the other you'll see a different type of things

#

AWS is a bit borring but usefull

#

azure is more friendly because microsoft

sinful moon
#

meanwhile I started with help desk, basically with no interview, mentioned to the boss, btw I know VMware and Linux. Become sysadmin, then have to remediate major vulnerability, prove my infosec skills, and keep advancing lol.

But this is a very weird circumstance and yeah I'd like to get certs as proof beyond this job experience

rapid merlin
sinful moon
#

like a lifetime of self taught before that

rapid merlin
#

eJPT is really easy like sleeping easy

delicate edge
#

Im currently networking with people and volunteer at tech events, tried volunteering somewhere else but aint it

rapid merlin
#

24hours exam but 2 hours to complete it if you did basic THM machine on msf and network

sinful moon
#

Honestly as much as I'd enjoy offensive, I think defensive would position me better in the market

#

even if yeah eventually OSCP would be a lifetime goal of mine

rapid merlin
#

you can do both after all it will secure a lot

#

OSCP i think (for my part) lost it's core value

sinful moon
#

I know I already do both but still

delicate edge
delicate edge
#

That is another reason I like Blue Team more also

sinful moon
#

Mhmm, effectively at work I am Windows Sysadmin, Linux Sysadmin, Lead Infosec everything, SOC Manager, compliance manager, devops everything, more roles I can't remember, and still help desk :p

rapid merlin
#

what i do is purple team and in my place i can work in both so yeah x)

sinful moon
#

Gotta love small business 🙃

rapid merlin
#

im an it consultant i do offensive test but some client can ask for blue teaming and i work in both

sinful moon
#

Technically I am as well

rapid merlin
#

that's really cool

delicate edge
maiden badger
#

Hello guys. Has anyone been having problems with the mouse pointer disappearing after upgrading kali?

rapid merlin
#

reboot

#

can happen

sinful moon
#

indeed, but yeah would be nice to have some certs to back things up

#

Just hard between work and... unwinding from work, and then life on top of all

#

but we'll see

maiden badger
rapid merlin
#

kali on vm ?

delicate edge
maiden badger
#

yep

delicate edge
#

And argue that it helps you be a better worker

rapid merlin
#

what's your Desktop environment ?

sinful moon
#

They tried and didn't stick with it

delicate edge
sinful moon
#

No I'm out of state contractor

maiden badger
sinful moon
#

so xorg

rapid merlin
#
gsettings set org.gnome.settings-daemon.plugins.cursor active false
delicate edge
sinful moon
#

nah this was a state sanctioned thing to get the official training from CompTIA lol. Doesn't mater anyways since out of scope for me as an contractor

#

I live 800 miles away heh

#

No need to find loopholes and etc, I'll get it eventually

maiden badger
rapid merlin
#

he will post fake crypto scam again be ready xD

sinful moon
#

But yeah it's getting time for me to move on

rapid merlin
#

hmm strange

sinful moon
#

because yes they're not using GNOME

rapid merlin
#

oh im stupid

sinful moon
#

XFCE4 has it's own config system

rapid merlin
#

x)

sinful moon
#

and that's probably not the issue

rapid merlin
#

yeah i am kinda tired sorry xD

sinful moon
#

No worries

rapid merlin
#

go to settings if you manage than pointer try to switch your pointer for another

sinful moon
#

If this is a VM then it could be a number of very silly little things

delicate edge
#

I noticed low severity bugs dont offer rewards

sinful moon
#

But also if this is Kali and you don't have a ton locally saved after this update... you could just easily reinstall

delicate edge
#

Tryhackme could have offered a sub or something like that for these

sinful moon
#

that is kinda the point of Kali

sinful moon
#

Not supposed to be long term, just pop it up and you're ready

maiden badger
sinful moon
#

just back them up via SFTP or whatever first

#

if you have ssh access, then you inherently have SFTP

maiden badger
#

I tried to update VMware as well, but for some reason it's not doing automatic checks anymore

sinful moon
#

that's a different can of worms but honestly way less of a big deal

maiden badger
#

Yeah, you're right, it's probably the best solution to reinstall it

#

Gonna do it, thank you guys 🙂

sinful moon
#

yeah best to use it as something you can't rely on long term, keeps you from miusing what Kali is supposed to be anyways

#

no problem!

#

just yeah backup those files and you're set!

#

back in the day in general Linux discords we'd feild support requests for "how 2 install Steam in Kali".... just no lol

maiden badger
#

Hahahha

#

yeah that's too much

sinful moon
#

Yeah just thought they'd use the leetHax0r Linux with 0 understanding of its use case lol

rose creek
#

i got sent back to broze form dimond

sinful moon
#

That wasn't even the worst I'd ever seen

#

"my friend installed the kali tools in arch but things are broke, what do".... friend literally installed apt in Arch and ran a script that just installed a bunch from Kali repos and wondered why everything was effed

#

that was like... wow

#

misconceptions on so many levels

#

because heh Arch has all those tools, imaigne that!

rose creek
#

i use athena os

#

it has arch

sinful moon
#

but they ended up with a franken Arch/Debian hybrid that broke

rapid merlin
#

lmao yeah that's why we have a pack on the blackarch website called strap.sh that add all the mirror of blackarch

#

people using strap for debian cross usage on arch are some kind of stupid people xD

sinful moon
#

even then, my pentesting server is pure Arch, and yep works more than fine

rose creek
#

black arch is that dead now ???

sinful moon
#

I think it is

rapid merlin
delicate edge
#

@gusty inlet I checked your website and my jaw dropped

marsh lark
#

sad that hyperland doesn’t work in vmware and vbox

sinful moon
#

It's all kinda pointless. Just use Kali. If you want a custom Arch based infosec enviroment just set it up yourself

rose creek
#

so because of things like athena that use a bit of there own and bit of black arch its slowly going down

delicate edge
marsh lark
#

I helped in research

delicate edge
sinful moon
#

Again just use the industry standard, Kali. I am all about Arch but you need to be able to use a standard enviroment you're given

marsh lark
#

it has a lot of the certs available

delicate edge
#

I believed it was his roadmap

marsh lark
#

nah

delicate edge
marsh lark
#

well

#

technically he created it (with the help of others)

delicate edge
#

Ill just get Microsoft certs, are most beginner friendly

sinful moon
#

I use custom Arch setups but that's because I want to know every little detail of setting up and maintaining the software I need for infosec. But I am more than happy with Kali

#

Part of that is I want to know why i need it instead of "oh its' already there, and I just didn't know"

rose creek
#

ok

marsh lark
#

kali is nice, just set a golden image and you’re ready to go

rose creek
#

what do you think about kali nethunter then

sinful moon
#

it's interesting can't say I've tried it

#

I potentially could, not sure if it supports the old Android phone I have, but limited use case for me IRL

marsh lark
sinful moon
#

correct

rose creek
#

yes

marsh lark
sinful moon
#

and no NetHunter Lite is not the same kinda thing

rose creek
#

i used a bit of here and there but alot of just seems program on pc and then use the phone as a usb

sinful moon
#

but yeah I'm 800 miles away from work so little use case for handheld pentesting device like that... I say with my flipper lol

#

that's more a idk I just think they're neat

rose creek
#

like if i could see someone show me how you could use it 100% then yes i willing to learn and see the full use but till then a laptop is alot easier

sinful moon
#

Realistically not a ton of use case to nethunter other than "it's neat"

#

flipper zero at least has some immediate use for access control

ripe sleet
rose creek
#

yea i have seen alot on the flipper but never used one

dreamy bronze
#

are the leauges broke

ripe sleet
sinful moon
dreamy bronze
#

why am i in bronze bro💔

crisp creek
#

is there a bug with the leagues? i was in ruby and was going to be promoted to diamond, checked like 5 mins ago was in diamond, checked again after doing a room and now it says im in bronze and i still have last weeks points

dreamy bronze
#

fr

#

lol

#

like bruh

brittle comet
#

me2

crisp creek
#

rip

sinful moon
#

laughs in not caring about the leagues

dreamy bronze
#

i kinda do kinda dont

#

kinda thig

sinful moon
#

But yeah sounds like some actual issue with the infra

rose creek
#

me too

crisp creek
#

think its something to do with the new ruby rank?

hardy wharf
#

how do i access echo for help

rose creek
#

i was diamond now i am brozen

#

click on it i think

maiden badger
#

my goodness, the broadcom website for vmware is way more confusing than it was before

hardy wharf
#

i cant find echo anywhere on thm

#

am i just blind

ripe sleet
hardy wharf
ripe sleet
#

When you click your pfp there should be a button to enable it

hardy wharf
#

oh wait nope

#

its on

#

still can't find echo though

rapid merlin
crisp creek
hardy wharf
hardy wharf
sinful moon
#

lol I for one will not use the AI gaslighting

hardy wharf
#

the questions i have does not have the hint button

delicate edge
#

Hmm dont use LLMs

#

I was #1 place in Silver League and I got demoted to Bronze

hardy wharf
#

i will be on bronze soon

rose creek
#

good job

patent hill
#

I got invited here, tho I have no knowledge about hacking

#

I'm just an experienced user. Changed about 20 pcs so far, started with C64

#

I mostly try to make stripped down windowses, for gamers

rapid merlin
#

to learn cyber sec?

patent hill
rapid merlin
patent hill
#

blue team = defense?

rapid merlin
patent hill
#

then yes

rapid merlin
#

i see

patent hill
#

No, can't have a bussiness with custom windowses

#

My work is mostly hobby, everything for free

#

Removing cpu cycles, so gamers can have more framerate

#

However, I can't have them butt naked on the web, as baddies exist

sinful moon
#

what

patent hill
#

wat?

sinful moon
#

Very confusing, so you're selling Windows PC, hopefully fully licenced, you strip them down software wise for performance, and that's it? What even is the question, and why is this a free endeavor. There's just very many questions about what your goal is and what you're even doing

patent hill
#

I'm not selling anything for one. As I said, my work is free. I just remove cpu cycles from offline windows image

sinful moon
#

If you're worried about security then what leg do you even have to stand on, you have no other infra outer than the computer you sold them, no AV or network equipment

#

Then I'm still confused

patent hill
#

Have you heard about Tiny11?

sinful moon
#

What is your goal?

#

Yes I am more than aware of it

patent hill
#

Well, Tiny11 is 2.4GB in size or more. Mine is around 1GB

sinful moon
#

That's even more concerning. Does Windows Firewall still work?

patent hill
#

yes

sinful moon
#

idk what you're worried about, yes you probably stripped out a ton of nice security functions besides that what is the goal here

patent hill
#

Well, I've been at it for past 7-8y or so, and I've reached a point I can't think of what to add or remove

sinful moon
#

We're sure not going to tell you how to strip it back more here, and probably can't condone providing modified Microsoft builds in the first place. Probably looking in the wrong spot. Any abbriation from a baseline Microsoft official build would be considered insecure, null and void to most of the business industry we work with

you may want communities that are more into modifying windows or focused on gaming

#

We do have knowledge in these areas but this server is about security above all else

#

not to discourage you, I get what you're doing, just not our thing

patent hill
#

Is it possible to make a user experience physical pain, through his pc, or phone, somehow digitally?

sinful moon
#

lol what

patent hill
#

It's what I need defense from

topaz sedge
#

Whose making you feel pain from a phone?

dark wolf
#

That reminds me of the time I was chatting on IRC about 30 years ago and I wanted this guy to leave the channel I was in but he was being annoying and wouldn't.

#

So I used an program to freeze his windows 95 and he timed out, but then he rejoined.

#

I then proceeded to tell him that if he didn't leave I would set his modem on fire. He then left.

sinful moon
#

lol

#

but of course we would do no such things these days

#

But yeah 9x era was wild

dark wolf
#

Yeah not too many laws surrounding that type of stuff back then

sinful moon
#

mhmm I just try to be careful about my past here lol, impressionable youth, but things have dramatically changed

dark wolf
#

I'm old enough that no one gives a crap

sinful moon
#

Hah that's fair, I've just been reprimanded for being too specific about my olden days

dark wolf
#

I can see that

fervent cove
#

guys i ordered chinese food but why did they give me two pencils

sinful moon
#

I will say I am glad I did not know how AD worked and that my high school ran on Win Server 2003 R2 at that time, I just did other things lol. Mind you kiddos, don't do those other things

dark wolf
#

CRACKROCK.IRC v3.0.1 for BitchX 72+ by novalogic

sinful moon
#

lol

#

good old days when IRC clients were named insane things like that

dark wolf
#

what is this eggdrop1_3_18.tar

#

i've forgotten

sinful moon
#

lol I'm sure far outdated

dark wolf
#

/sbin/ipfwadm -O -a accept -V 192.168.0.1 -S 0.0.0.0/0 -D 192.168.0.0/24

sinful moon
#

lol

#

meanwhile we've sorta done away with /sbin as a concept in some distros

#

kinda lost all meaning

dark wolf
#

True, most everything is bin now

sinful moon
dark wolf
#

Anything look fun ? lol

sinful moon
#

lol nice

#

also freaking onedrive, for shame

#

how the mighty have fallen

#

is hilarious that defender doesn't give a crap about those, but holy heck if you have Markdown notes with reverse shells OMGF, let alone demoscene demos

#

But I am suprised you're not on Linux

sinful moon
#

Moment is over, move on lol

maiden badger
#

I couldn't haha

blazing granite
#

@sinful moon hey!! 👋

sinful moon
#

Heya Rex good to see you

sinful moon
quick blaze
blazing granite
sinful moon
#

Yeah for sure. Been Linux main since 2007 but typically use all three major OSes on the daily at work lol. Just nice to have that on my main lappy again

loud orbit
#

Anyone know David bombal

rapid merlin
#

Youtube content creator

loud orbit
#

Yhh

rapid merlin
#

but i'm fan of john hammond

golden yew
#

Hey guys, I recently encountered a technical problem. I need to manage a cloud virtual host, but it does not support SSH. What can FTP do?

blazing granite
patent hill
sinful moon
dreamy bronze
golden yew
twin ridgeBOT
#

Gave +1 Rep to @sinful moon (current: #35 - 321)

dark wolf
#

ok

golden yew
#

I know it has a file manager, but I haven't found a place to execute commands yet.

dark wolf
#

An apple tech support rep asked me if I had Finder on windows

dark wolf
#

right?

dreamy bronze
#

😭😭✌️

#

#techtok

#

vibes

blazing granite
# dark wolf An apple tech support rep asked me if I had Finder on windows

Hi!! How are you? That's why I don't speak with "tech support" nowadays they don't know shit, just follow a script. When I really have to talk with them I always say the same before I called I already check everything in my device the issue is on your side so please transfer me with somebody that really knows their shit 🤣

thick vine
#

So, some scammer just contacted me on discord asking about if I bought a Counter Strike knife from them on Steam

#

And my actual Steam account was shown as being the buyer (probably just good photoshop on their part, my Steam account is literally linked on discord and uses a publicly available pfp)

#

But like, what the hell is the end goal with this? Like how is a scam like this even supposed to work?

quick blaze
#

Cool cringe-post. Thanks for that.

twin ridgeBOT
#

Gave +1 Rep to @kind thunder (current: #2112 - 2)

patent hill
#

My pains subsided somehow

#

I'd still like to know how that actually works, so I can maybe kill one or more dependencies, to protect my users

#

I'm on my own windowses now

rapid merlin
#

its a great post thanks

twin ridgeBOT
#

Gave +1 Rep to @kind thunder (current: #1585 - 3)

brazen crane
#

How does one go from diamond league to bronze with out being in the drop out zone?

dark wolf
#

good question, how do i get promoted to diamond from diamond every week?

brazen crane
#

I dunno but it's a bit of a kick in the guts when you have been relentlessly pushing yourself

#

Made this far on my own guess I'll just fafo

brazen crane
patent hill
#

It may be like boxing belt or I dunno

#

Question, if I uploaded a ps1 file to chatgpt, and it said 99% of functions are missing, then I opened file for editing, copied and pasted code to chatgpt to get a completly different analysis result, what does it mean?

#

Also, when pointing Grok or chatgpt to github repos to get data from, they say repos are empty, tho I see data?

limber knoll
#

Anyone here do bug bounty and made money from it? if so do you mind telling me a bit about it. I am interested in it and want to know its potential

brazen crane
dark wolf
#

But you might get lucky at one point and get one

rapid merlin
fossil barn
#

Yooo

limber knoll
limber knoll
dark wolf
#

If you enjoy doing it for fun but don't expect to get paid then sure look into it

rapid merlin
rapid merlin
limber knoll
#

i think i joined it

rapid merlin
limber knoll
#

well im still trying to get into bug bounty

#

i am a complete noob learning the basics right now lol

#

like im doing a basic intro to cyber course on cisco network academy

#

i also learned a bit of networking which i would like to improve my knowledge on that as well

#

in terms of how to actually acomplish bug hunting i have zero clue

dreamy bronze
#

Those r fun

#

Well after

marsh lark
dreamy bronze
#

moneyyy

#

😛

marsh lark
dreamy bronze
#

joking

sinful moon
#

Are you though? It's just not sustainable to come about it that way

dreamy bronze
#

well he was asking the other guy

#

😭

sinful moon
#

Just nice side hobby. Fair but yes applies to anyone

patent hill
#

[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\PersistentRoutes]
"65.9.0.0,255.255.0.0,0.0.0.0,1"=""
"52.109.0.0,255.255.0.0,0.0.0.0,1"=""
"2.16.0.0,255.255.0.0,0.0.0.0,1"=""

Running this reg tweak seems to have solved numerous issues for me

#

basically. it blocked outbound connections to amazon aws, akamai and microsoft

limber knoll
# marsh lark why do you want to do bug bounty? I'm just curious

im interested in ethical hacking and pentetesting. I previously wanted to code buta fter some time i realized it isnt my thing. So i started looking into cyubersecurity type of stuff instead, learning about networking and i found it cool. Ethical hacking i guess is just the next step for me and i think bug bounty would both be very cool and related

limber knoll
#

afterall i am just a beginner

marsh lark
#

cuz I would avoid bug bounties if u want to make money

limber knoll
#

ye i see

#

anyone got good resources you guys used to learn about this type of stuff

#

becuase right now i am learning the fundamentals but don't know where to go after that

#

more specifically i am takinga cisco "junior cybersecurity analyst" path to learn which im not sure is the right thing to learn

dark wolf
#

You probably want 10+ years in advanced cyber and reverse engineering to have a chance

dreamy bronze
#

that is brutal haha

lime topaz
#

hello everybody im compleately new here im 20 years old im a cybersecurity student im also good in programing langauges. i know good in python c c++ js etc. im also a mern developer. also a flask developer. now i prepare for ceh

dreamy bronze
#

dude how do you have the funds for ceh 💔

lime topaz
lime topaz
marsh lark
dreamy bronze
patent hill
#

If I understand things correctly, Microsoft wants to kill me

lime topaz
patent hill
#

Tho they only reached a phase where they can hurt me physically

lime topaz
patent hill
#

I have 8 eur on my account

dreamy bronze
lime topaz
# dreamy bronze Correct

are you are bigginer in cybersecurity by the way i study cybersecurity from atleast 3 year i did ccna and and i know programing can write script to automate the exploitation i also know papulat tools like burpsuid, nmap, wireshark, metalploit, some wifi hacking tool and some android hacking tool etc

brazen crane
# wispy vigil Same thing happened to me.

Rather annoying to say the least, maybe that's just the gamer coming out in me like bs man I was on top must definitely be lag and every other gamer excuse ever haha

limber knoll
#

and you studied for 3 years??

toxic osprey
rapid merlin
lime topaz
limber knoll
#

oh dang alr

#

ye im also tryna learn rn but am a noob

lime topaz
limber knoll
#

how much time you spend a day on that??

#

like that must be some sort of decent grind

lime topaz
brazen crane
#

Someone get on the vox, we need a chaplain and a tech priest

patent hill
#

I've been into computers since I was in 4th grade, that was 40y ago

dreamy bronze
patent hill
#

Tho I only knew how to turn on pc and play video games

lime topaz
# limber knoll how much time you spend a day on that??

i spend all day haha.. i forgot my university bs degree for this and i learn hacking and coding all day i dont play any game dont have friends etc just alone boy but i have my some my bestfriends like my pc laptop chatgpt vs code and kali linux etc haha.. im so happy with this

patent hill
#

With time, especially last 7-8y I've been delving into offline iso manipulation and cybersec

limber knoll
#

so you got a job and everything?

patent hill
#

Tho only blue team side, I never actually hacked anyone

limber knoll
patent hill
#

I mean, I know the theory, just never tried it

dreamy bronze
#

@lime topaz you have your ccna ?

lime topaz
lime topaz
limber knoll
patent hill
#

I know how would shooting people go, or stealing cars, but never tried that either

lime topaz
limber knoll
dreamy bronze
dreamy bronze
#

Language barrier

limber knoll
#

idk if that answers my question...???

lime topaz
lime topaz
limber knoll
frozen gull
#

CCNA is basic

dreamy bronze
#

is ccna worth it

#

Like actually

limber knoll
#

what exactly is ccna?

dreamy bronze
#

💔

limber knoll
#

is that just networking or smth?

frozen gull
limber knoll
#

ive heard about it but never really got there

frozen gull
#

Very

lime topaz
marsh lark
frozen gull
#

But not enuf for a cybersec job

dreamy bronze
#

Ceh is very expensive bro😭

#

oh lord

marsh lark
limber knoll
#

Lol ceh is in the course in doing right now

dreamy bronze
#

Almost a thousand

frozen gull
#

Oscp is 6000 dollars lmao

dreamy bronze
#

I think

dreamy bronze
#

I’m cooked

marsh lark
limber knoll
#

is ccna hard??

nimble pebble
#

Hi

dreamy bronze
frozen gull
#

But it's expensive asf

marsh lark
marsh lark
frozen gull
#

I recomend htb certificate instead of that

limber knoll
marsh lark
celest dirge
lime topaz
limber knoll
lime topaz
frozen gull
marsh lark
marsh lark
#

just like

#

is that the one u were referring to

dreamy bronze
#

Still studying

frozen gull
#

Web exploitation expert or smtng

#

There are others for less than 500 dollars

marsh lark
lime topaz
marsh lark
frozen gull
#

Junior pentest etc etc

limber knoll
lime topaz
marsh lark
marsh lark
dreamy bronze
limber knoll
#

oops fault tolerance

lime topaz
limber knoll
#

i get it mixed up lol

frozen gull
#

490

marsh lark
limber knoll
#

i genuinley got no idea...

lime topaz
frozen gull
#

99 dollars for the practitioner certif

rapid gust
#

was mothers secret difficult for yall the first time around or am i just stupid ash

dreamy bronze
frozen gull
#

But it's hard

limber knoll
#

never heard of that

dreamy bronze
#

U tell me bro

rapid gust
# marsh lark it was

thank you this maekes me feel better, no matter what api i hit it just says wrong route

twin ridgeBOT
#

Gave +1 Rep to @marsh lark (current: #28 - 385)

limber knoll
#

o

#

"
HSRP and VRRP are networking protocols known as First Hop Redundancy Protocols (FHRPs). They are essential for providing default gateway redundancy on a local area network (LAN), ensuring network hosts can continue to communicate outside their subnet even if their primary router fails." -GEmini

dreamy bronze
#

If the ccna hits me with subnetting type questions I might be done for

#

So rusty

marsh lark
#

so

limber knoll
#

what the heck is a vmac 💀

patent hill
#

I'm schizo, and live off of disability money and family pension I inherited when my mom died

limber knoll
#

interesting

dreamy bronze
limber knoll
#

ye i know very basic lol

#

not that stuff

rapid gust
limber knoll
#

even though i learned like ip packets and the different fields i still dont remember heheh

#

i aint tryan memorize but rather learn

marsh lark
limber knoll
#

is ccna like a online course you gotta pay for or smth?

rapid gust
#

my bad

patent hill
#

Yeah, iso on my ventoy usb was screwed up

limber knoll
#

maybe i can start learning this early becuase i am hoping to do this at some point too

dreamy bronze
rapid merlin
rapid gust
#

i did a practical for ccna creds thru my school

rapid merlin
#

that cisco is giving you

limber knoll
#

yes but like the information to take the test is it course based or how do you guys learn it?

rapid gust
#

we had to built a small network and bring up all the switches and routers dhcp, spanning, trunking, port security

patent hill
#

I tried something new with ntlite, and it somehow didn't apply, but still ended up with not installing windows

grizzled sky
dreamy bronze
grizzled sky
#

or you can get the network + which is basically equivalent;

rapid gust
#

packet tracer is nice af

rapid merlin
dreamy bronze
#

and physical routers and switches my school offered

limber knoll
rapid gust
#

its crazy that network + is the equivalent bc ccna goes so much deeper in my opinion😭

dreamy bronze
rapid gust
#

hi @rapid merlin did ur buddy resolve that program issue?

rapid merlin
rapid merlin
twin ridgeBOT
#

Gave +1 Rep to @rapid gust (current: #1095 - 5)

limber knoll
#

for my networkign basic course i was doing

patent hill
#

the one in my bio should work, tho since ntlite removes services that are checked during install, install halts for about 5mins but completes

rapid gust
dreamy bronze
limber knoll
#

like wth are these different layers im staring out 💀

#

or the incoming bounds or outcoming bounds of the packets

dreamy bronze
#

Haha

limber knoll
#

i mean thats still just scratching the surface

rapid merlin
#

you will know if you see someone CCNA based course @limber knoll i suggest the networkchuck ccna course

limber knoll
#

but like i want to learn more

dreamy bronze
#

More about what

#

Networking ?

limber knoll
#

i was looking at it before

rapid merlin
rapid gust
#

subnetting was fun af when i learned it

#

i wrote a program to automate it

rapid merlin
limber knoll
#

i took 2 courses on cisco netacad

rapid gust
#

same with all the cisco configs talo i wrote a program that automated all of the switch and routing configurations

lime topaz
rapid merlin
rapid gust
#

do one of u want it? its like the worst code ever i wrote it before learning python XD i did that stuff straight from the dome

dreamy bronze
rapid merlin
rapid merlin
rapid gust
#

ill send you the doc talo just copy and run it in an online compiler

#

its just text

rapid merlin
#

ok send me in dm

#

but explain that what is that @rapid gust

limber knoll
lime topaz
# lime topaz haha..

at start do it manually. then write code for it or you can find onlion tools for this as will

dreamy bronze
lime topaz
rapid merlin
lime topaz
rapid merlin
rapid merlin
lime topaz
limber knoll
rapid merlin
lime topaz
limber knoll
#

Anyone know the answer to this

true viper
#

Guys, how do I get into the tech field? Like, I like coding but then I don’t even know where to start when I’m by myself. Like i have a tech professor teaching us c++ for half the semester and I still don’t even understand what the heck im doing😭.

patent hill
dreamy bronze
rapid merlin
dreamy bronze
#

What course is that 😭

rapid merlin
limber knoll
limber knoll
#

like nothing technical

#

just like basic practices and commen sense type stuff

rapid merlin
limber knoll
#

yes

lime topaz
limber knoll
#

you prolly dont need tho

rapid gust
#

@rapid merlin i sent it dont judge the code XD

limber knoll
rapid merlin
rapid merlin
lime topaz
limber knoll
lime topaz
#

in my networking accademy

limber knoll
#

its on netacad by csico

rapid merlin
dreamy bronze
limber knoll
#

i say ima do this and dont do it 😭

#

like iw as supposed to do a machine learning book but only got to like page 150 and stopped out of like 700

#

or 500

#

because i had too many things on my plate

lime topaz
#

Guys whare you all from??

dreamy bronze
#

ML is crazy

marsh lark
patent hill
#

I'm from Zadar, Croatia, EU

limber knoll
rapid gust
limber knoll
#

it follows like a pattern

rapid merlin
#

i am from Russia

rapid gust
#

lowkey i want a THM meetup over by me i have no friends that know what im talking about when i talk about IT

lime topaz
#

im from pakistan is there any other pakistanies

limber knoll
#

since ghost seems like a really good hacker im not gonna tell him where i live 🤫

rapid gust
#

🍉

limber knoll
#

security 101

rapid merlin
rapid gust
#

my ip is public 🤷

limber knoll
lime topaz
twin ridgeBOT
#

Gave +1 Rep to @limber knoll (current: #3208 - 1)

lime topaz
#

i think there is no other pakistani accept me haha..

rapid gust
#

wya auramatic southwest?

limber knoll
#

nah in like east

lime topaz
#

who do programing right now ?

rapid merlin
limber knoll
lime topaz
lime topaz
limber knoll
#

well then same here i guess

#

did python, java, lua, javascript and thats abt it ig

lime topaz
limber knoll
#

python mainly back then and tried building websites with django

#

and used lua for roblox dev although lost motivation

rapid merlin
limber knoll
#

i had a lot motivation back then though

#

and java for robotics

lime topaz
patent hill
#

Keep in mind most of my stuff is uncommented and/or unfinished

lime topaz
limber knoll
#

waht do you guys think about hacker101??

rapid merlin
lime topaz
patent hill
#

A lot of stuff chagpt wrote me is gone forever since I deleted my account

rapid merlin
rapid gust
#

hahahaha

lime topaz
rapid merlin
rapid merlin
lime topaz
rapid merlin
limber knoll
rapid merlin
lime topaz
rapid merlin
#

In bugbounty you find bugs, report it and make money

rapid merlin
patent hill
#

I can't afford to pay any bughunters

lime topaz
limber knoll
#

what are some necessary programming languages to learn for cybersecurity

patent hill
lime topaz
lime topaz
sinful moon
#

They're still at it whew

limber knoll
#

ugh i heard C++ is hard although im not sure about rust

limpid mountain
#

Python is highly recommended if you focus mainly on web pentesting and crypto stuffs