#general
1 messages ยท Page 1787 of 1
just ate and now starting to get hungry again
can someone explain this?
my download speed should be 4mb/s not 200kb/s
Fw this new deco?
๐ญ
Upload and download are two diff things
i know
thx let me test
too slow...
Recently got a free upgrade to 1 Gig but my routers are all too old (can only do up to 300 Mbps) and replacong all of them will be like โฌ800 lol
the fastest out of my area lol
damn u gotta move
I feel like we used to get faster internet than that when we used to be on setalite lol
And i live on a small island in mideterenian sea
Is this an america moment?
i think thats strongly europe coded ngl
and im saying that as a european gal, i was in the same situation
moved 200km away, now all's great
MegaByte/s vs Megabit/s
Damn I am so hungry
Mbps is bits per second
so.. you want.. a.. byte??? 
your internet service provider uses the bits for internet speed
Can't decide what to eat
Yess
MB is Bytes
.
learned something new lol
Can have anything
i.e internet speeds can be:
100Megabits/per second
1000Megabits/per second == also known as gigabit
I will gor for ๐
if you have these speeds your actually download speed in bytes would be around 12.5 for 100Mbps or 125 for 1000Mbps/1Gbps
I like to set my measuring app (and steam) to MBytes so that i can easily relate it to GB (GBytes) that games are usually measured in
what will happen if internet disconnects while downloading this?
will it restart or contniue when i get it back?
It will continue
What you gonna do with it?
booting raspberry pi to run pihole
Linux distors like pokemon - gotta catch them all
so real omg
my first pokemon 
kaliiiiiiiii
nah the thing here is the mouse pointer
yeah and got hacked by cockroach lwkey
Are u installing it on bare metal
cockroach lwkey?
bro its meme omg...
hikey?
Not personally but ive talked with people who did
I think it was photo taken by u
its not a viable way of making money
no the meme here is that when someone installing kali from vm or idk dual boot and they have slow system and so the installation is slow and so to make sure that there is some progress they put mouse pointer wherever the blue line is and if the bar passed the mouse means there is progress but slow
new to the field, so i dont know 90% of the names ๐
Ohhhhhh
i want to stick my cable in there
wifi cable indeed
no idea
Again is it meme
real
imma delete windows and install bare kali linux cos me pro haker
Thats literally what happened to me in 2017
Ok ๐
ur cable loose btw i cant read jack in there
made me quit for 8yrs
imagine
i can make a for/while/if statments
im pro hacker now
na bro i run headless
5 mins left 
i use freedos btw ahh
i can make shebang
i use arch chat
based atm
beginner... i use nintendo pictochat
i have linux running on my ds
i watched sum video how dude installed arch linux i quit watching after i saw that terminal is konsole or wtv
i have no idea what runs on nintendo tbf
probably windows 11
3 mins left
on hood thats pentesting
im installing pihole, im expecting a big hole to be made in my pi
i was pro pentester when i was lazy to go out and buy new pens so id test every pen i had ๐
i think i am taking more notes than actually doing something
just write with lemon juice
trans encryption
if you cover your face with lemon juice you will be invisible
gonna try it
dang ur right
hackers dont have kettle do they
instructions unclear my eyes burning
ban this guy
๐ฅ
based
maybe


guys i updated to win 11 ๐ and i have a problem with my time. somehow the margin of the time is way too to the right
idk if you need to enable it honestly
what do you mean?
now its installing
its like this
[time]
[ date ]
๐ญ
ey?
cya
Sup ppl
add seconds
just noticed im on american time for some reason im sorry to my fellow europeans ill do better
Hello. I have a question for anyone who is experienced. A friend got his game account stolen but he didn't click any links. A guy said "I can hack you" and 10 minutes later he lost his account. How is that possible?
Haa does anyone know the Full documentation website of RCE ๐ญ
which game?
What game?
...
It's called HighRise it's a mobile game
I just want to know how they do that cause if it's that easy, then the hacker can just steal any account lol
this is just habbo hotel all over again
Oh I see
Yea but like how? ๐ค
Do hackers make software for games to steal accounts? Or
I used to learn web hacking but I can't understand how to get into a game data like that
I see
seems to be working, thanks chat for the reccomendation
whenever i see u here i wanna send borzoi memes fr
dont mind if i do
It's a scary meme haha i know what it means
@sand trench here it goes
neato
why
So I have my browser read to me aloud as I read course materials because it helps me focus. I can tweak the reading speed to be the same as mine etc. There are some really funny pronounciations though.
For example meterpreter, which I assume is pronounced meh-terpreter, is always pronounced "meter preeter"
so real LMFAO
just is not rooted by default. but looking to do so. i go for gapp just app. and no other gapps are installed by default
ill make it just normal phone. just will root so can do stuff... kinda
eeew insecure rooted devices on your network
yea... thinking of the same heh
rooting android devices is not recommended (if you care about security at all)
i have, now 4, rooted phones heh
unfortunate
I never liked bike sits, my ass hurts
i dont really see much puyrpose in rooting. i get ios jailbreaking cuz its so locked down, but i can do whatever i want with android already
not for long
and the few things i can do by rooting arent worth the massive security risk of exposing linux root access to apps
magdisk and sudoSU can do job by default. but yea
I run GrapheneOS, there's no chance I'll be losing sideloading.
i have also pixel8 graphene, and pixel 10, wait for os to get when it comes
GrapheneOS will actually tell you if you root your device it's not GOS anymore and they won't give you support.
Not that there's official support but they won't help you
ik all of that. so im ok for the things
anyone ever done AZ900 ? trying to find some material on it
yeah i mean doing infosec stuff doesn't necessarily mean you care about your own security ig
but personally idk things being as they are in the world im too paranoid not to stay locked down
nothing but GOS, SecureBlue and/or Qubes for me
I put Links and the answer aint it
bruh, hide ur PII !!!
but oneplus 12r works like charm atm
maybe ask in hackthebox bud
cool
yeah, watch out for your OpSec ๐

is all that ytou get by default
ok
Hi purple
Good morning, dear ones, how are you? I have a question: is following the rooms in the entry-level foundation skills matrix for "security operations" a proper path toward becoming a SOC analyst?
all depend of you pre knowledge... if you know how things works in cyber and so. path what you wish know you go for that
I GOT TO USE THE "HAVE YOU TRIED TURNING IT OFF AND ON AGAIN" LINE!
with a bit of elbow grease
Any good free rooms for AD attacks? I've completed Attacktive Directory.
it always fixes it
Hello chuck
ah okay i thought it was you
Thank you, God bless you always!
Gave +1 Rep to @loud marlin (current: #23 - 451)
Hi Green
GG on the rankup Valkyrie
Thank you, it's getting harder every time I choose a challenge. I got first place in silver league ๐ซฃ
Gave +1 Rep to @slow cloud (current: #54 - 193)
Yesterday? Or the previous week?
what competition?
an exploit that does work on the newest version of a software, does it automatically work on an older one?
no right?
an update could have implemented that security issue or am i completely lost
uh guys
ig i need a bit of โhelpโ
like i am on bandit1 and
i am trying to cat the - file
its not showing ๐
the process is running but no output ๐ญ ๐๐ป
does it work on small files?
create a txt with one letter
if it works with that i can tell u whats the problem
1 0
The problem is this
explain master
@mossy river hi
nah like its a bandit room
i canโt create files thus ๐คทโโ๏ธ
p.s
i am new to linux
Then have a list
mhm
With the commands
ik a few ones :0
Unsure what the context is but yes updates can create security issues.
Whether it's someone unintentionally removing security code or new functionality being vulnerable (i.e. migration to a vulnerable framework or dependency)
#thm-community-media should i upload here? of where m stuck?
oh wait
locked
nvm
Hmm time to ask a question that I used to ask you before. What are the minimum requirements for moderator
i was just wondering about a write up i was reading. the person saw sudo 1.8.27 exploit and instantly said perfect we have a lower version should work
#mod-application - the requirements aren't public except for what is included on the form
Well kinda wanted to know the requirements tbh
If those aint public I guess its 
So, are you saying that they were exploiting a newer version or older version?
an older one
Like Im sure you have some requirements based on account level, activity, discount join date and other things
but what confused me, the guy didn't check anything. instantly said should work.
Yesterday or the day before.
Not everyone checks, not everyone is the same
Older versions would be the vulnerable version of the software, newer versions would be the most recent and henceforth 'patched' - however they could have other vulnerabilities
I'm not gonna answer for Jabba, but those are for Jabba to decide and see
from what I know
You can usually guess by the software version number with which vuln it will have
It would be weird if it was yesterday.. XD
alright thank u
Gave +1 Rep to @mossy river (current: #6 - 1820)
Yeah I know lol, I just can't remember
They're not public to avoid people from trying to get around specific requirements ๐
Thats pretty much a nothing burger but I suppose the requirements are high
bro ngl all ur answers i've read so far are kind of toxic
Hello
they got a poisoness taste to it
Yeah, since i ended up there yesterday. XD'
I feel sorry for the fact that you find my answers toxic, that wasnt the intent
xD lol
Maybe we shared first place XD
<3
awww โค๏ธ
I think it was Sunday
Nope, it had the same date as yours. Weird?
So it was yesterday
problem resolved :0
what problem? I don't see a problem lol
ah nah i was ina room
bandit 1
la la la la I can't hear any haters wearing my rose tinted glasses lol
i got stuck with the - file
I need to go and do a CTF now
thank you, ma'am
Gave +1 Rep to @solar gazelle (current: #3212 - 1)
๐
@mossy river
Hm?
cant put on a14
How can two people win first place in a league? If you scroll up a little bit.
Different league groups
hi jabba ๐๐ผ
I am making an SIEM tool using html css js and python(no flask)
I have added the features like it will scan using nmap on the target ip and then addd the output in the website
and have one webpage which shows the system info using nmap and whois and run vulnerability check
what features should I add more in this app?
Youโll have (for example) 40 people per group, so multiple people will have the change to get first
Ah, ok. Thank you. Makes sense now.
Gave +1 Rep to @mossy river (current: #6 - 1821)
Interesting so it's a fair play then
@mossy river if I go premium, does this include certification if I go the SOC path or regardless?
I'm not sure I understand your question
talking about certification
I've seen people talking about PT1 exams so I wonder if it's the same for SOC1 and SOC2?
guys is PT1 worth it
does anyone have suggestions?
Are you asking if you get a certification from subscribing to premium?
a lot more exist
there is a website which does similar task lemme share
ok
what can this website do?
just look at it urself
ok
damn this website is crazy
i dont think u can do all that
go for selected
?
really?
react better
python is a high level programming language
which means its easy to learn but compile time is high
react is way faster and better
got it
thanks for helping me
Gave +1 Rep to @frozen gull (current: #1096 - 5)
Yes
Is there a way to install rustscan on Linux Mint Cinnamon?
thanks
Gave +1 Rep to @golden ibex (current: #3212 - 1)
You Welcome bro
is shodan search engine good for recon?
Sure
No wait I am Gonna Give 2nd Option wait
You can use Cargo sudo apt update
sudo apt install curl -y
curl https://sh.rustup.rs -sSf | sh
source $HOME/.cargo/env
Ok I have been trying to install from a source too and it just tells me it can't find the file. like WTF?
@distant robin dont just paste random commands from strangers on your terminal
and Then cargo install rustscan
Move the Binary to your path
sudo mv ~/.cargo/bin/rustscan /usr/local/bin/
and Then rustscan -h
what if someone tells you to run something like
sudo rm -r /bin
so that it clears your trash
Try it
Ah so I need cargo then?
no this command isn't complete
Yeah try this method maybe work
Lol you trolling me now?
no, warning-ish you?
I'm far too old to be trolled
Don't worry about me, I ain't that stupid but thank you
Gave +1 Rep to @lone sierra (current: #723 - 9)
ok
I left my naivety behind 20 years ago lol
do you often give out details when someone says you won a bmw on the phone?
Lol I don't have to. I am deaf.
https://store.steampowered.com/app/2060160/The_Farmer_Was_Replaced/ this looks pretty cool
Program a drone using a simple python-like language to fully automate various farming tasks that would otherwise be very grindy. Feel the satisfaction of simply pressing "execute" and watching your drone do all the hard work.
Unlike most programming games the game isn't divided into distinct levels that you have to complete but features a contโฆ
$7.99
2544
just that if someone says you won 500,000$ but you need to send 10,000 first
just send that 10,000
because you can only lose 10,000 but gain a MASSIVE 500,000
and when I do get spam calls, i ignore them and check the numbers out on OSINT in case it was a legit call and then block the spam numbers. I get at least 3 spam calls a day and they all get blocked. No point wasting my time and energy on spammers. Even the same happens to spam emails and I used to do a lot of spam baiting on Facebook to waste their time. I hardly get any spammers coming to me since and it's been like 5-10 years now.

Oh please, do they think I am that stupid? I dont fall for that...
i beleive its always worth a try when the ROI is 50x
The last time I wasted a spammer's time was when I told him I was working with the FBI and that SWAT was enroute to his house. I have honestly never seen someone delete their FB profile so fast...
Dude, go and do something constructive lol
i would think about whats going on with ur number if u get like 3 spam calls a day
i am not a spammer then why wasting my time
i get 1-2 in a year maybe max
I'm just letting you know what I am capable of. I'm 46.
i studied the thing in your profile photo for a semester
what was it called though
hai chat
why you keep telling us that you are old in different ways
Haii
hola
How rude.
bipolar junctiont ransistr
or just transistor
yes that thing
pahahahaha
injanay based
Just for 2FA
It makes me want to waste more of his time due to his lack of respect
๐ซจ
Yeah keep it up
respect is earned honey
takes the cat and runs
please, i was tired of scrolling anyways
takes another and runs
I need a basket for carrying all the cats.
They are all simply too cute.
But heyyyyyy
aki has storage ๐
Hello Aaron!!!!!!
hello skittles!!!
he loves to carry things
who loves some good ol cryptography guys I need some help lmao

I am plotting to take AKI. 
One of the greatest explorers ever!!
I've been trying to solve these encrypted messages
HnBPIGosACOQSJFmt DNRR:E e!EMSQKDoreFLPLCNsrGKOMB eHJNAhI
GaBOHFbgACNPSIE DMQRJDsi!ELRQKCisyFKSPLBh tG:OMATepHJN mI
E!:iH R s keYTLEYiVosO ATo aoUDSSugmC NTNrap:FU O lieOMfr
the clue is: You are almost to the bottom of the lost and found box! The robot is hiding inside a bag, but which one? All of them have zigzags on...
The key is 8 and the offset is 16.
tried rot13, vigenere, didn't work
Any suggestions?
you don't even need to plot it
just tie a hefty piece of beef on a string and pull until he is where you want him he will just follow with no question
I will show Aki your photo just in case
Just in case if he needs verification
2FA 
YES YES
Yeah it pisses me off because I didn't consent to having my number given out or whatever been going on. It started on the day I got my contract phone and sim activated when I came to the UK.
Did you try the cipher analyser on dcode.fr?
Thank you so much! I google Cargo with Rust and got somewhere. It's now installed. Thank you!!!
Gave +1 Rep to @golden ibex (current: #2115 - 2)
You're welcome!
holy shit i think It's rail fence
normally I use that, it's usually good but sometimes can be hit and miss with some.
it is indeed rail fence
thanks for the suggestion
Gave +1 Rep to @distant robin (current: #1277 - 4)
Is there anything new chat?
O'scimitars' newest policy.
People is wazuh any good?
as I get too many false positives and stuff from it, so curious if its just me issue or not ๐
You're welcome, happy to help you out
Same old, different day.
Use exiftool
Kali is a fruit right?
try using exiv2
ight man
Instead of exif
Sup chat
Doing rooms
Just use the web version it's wasier
Easier
it's harder to use that
terminal is fine
It worked ?
What ones ?
Weaponizations
What matters that it works ๐
Seems fun
Avg me when my ADHD kicks in (I don't have adhd)
u were talking about jimpl right?
No exif it self has a website
did it work?
try downloading more mbit/s
A command-line application and Perl library for
reading and writing EXIF, GPS, IPTC, XMP, makernotes and other meta information
in image, audio and video files. For Windows, MacOS, and Unix systems.
I am about trying rn
exif for metadata
My girlfriend said she went to the market, but I didn't believe her.
trying my best man
good idea
you unlocked the unsuspicious BF Badge
she cant escape anymore
new skill unlocked
add in your cv probably HRs might recruit their new CEOOOOOOOOOOO
I knew it, Instagram deletes metadata.
You guys have girlfriends?
You sure they aren't a fed?
I have no gf man
I was joking I am fat
sometimes dreaming
I have zero rizz and boring hobbies, so I'm doomed to be single for an eternity.
I think what I have going for me is INT more than Charisma
idk man I will die alone
Don't say that, what about the man behind the camera watching your keystrokes?
every social media does
Instagram automatically removes most photo metadata like EXIF data for privacy and bandwidth reasons, so you don't need to manually do it before posting.
not stripping that would be such a security risk
She plays Sneaky Golem
I knew it
Um I've got a problem ๐
guys i'm getting really good at restarting nessus over and over in docker
I gave her m5stick c and she called me a weirdo 
You're a good person, my friend.
u tried ur best
for her
Ye i did
Wow if a girl gave me a raspberry pi I would cry from happiness 
Btw exiftool is working great with me
Idk what is the problem
Women don't usually want m5stick c's. Try flowers next time.
I mean
I used it for Instagram โ Instagram deletes all the metadata, just like Facebook and Snapchat
what did u use for
how long is the boot up of that docker container if you mind shadow asking????
bro
actually much faster than when i ran it normally
my issue was a nat/bridged issue with ips
done something dumb but idk what
so i'm really just getting back into the swing of cli.
Flower is open source already
soon nessus + sysreptor = i'll be a cool guy
check ur box
For CTFs :DD
Btw u can use it to test if apps don't delete metadata this is data exposure of users and this is a valid vulnerability
ohh thats why worked
normal man
do not say this to a girl
What should I say?
I got outside at least once a day and have more friends outside my dungeon and dragons campaign of 'ravenloft'
Just be yourself, but don't start talking about cyber security.
Ask questions and let her talk, best solution
Nah i am jk btw I normally let her talk and just listen but I try to avoid gossip talks cuz they love them alot
niceu
random snufkin goes brrrrr
Women love you when you listen to them ramble about their gossip
i dunno who else runs sysreptor - but you can throw owasp and metsploit output in there too i think
what is this from? over the wall?
Please don't forward stuff from #room-help just wait for help there.
โก๏ธCheck out the Anker Prime 2025 series: https://shop.anker.com/uEptx9
โก๏ธBuy on Amazon: https://ankerfast.club/qkc8hj
The Anker Prime DL7400 Docking Station is the World's First TripleโDisplay Charging Dock with Stable 8K! With Thunderbolt 5, 140W fast charging, real-time smart display, this miracle helped make this build happen!
Che...
Gonna be a great time for linux users looking for used enterprise computers that used to run windows;
If you live in usa and want a homelab, this is a great time to buy referbished or outmodee previously windows 10 enterprise hardware;
already spent 2500 usd on this nice desktop computer that does everything shadow wants it to do
okay well there is 1 thingy it does not do due to a stupid decission by the motherboard manufacturer that shadow can mostly ignore
Does anyone knows after completing the owasp juiceshop room i got 0.points why?
old room
Older rooms won't give any point?
certain older rooms yes
especially ones that can be self hosted like owasp juiceshop
Okay thanks for the clarification cause i was stuck in that from 4 hours today.
Gave +1 Rep to @sand trench (current: #4 - 2245)
LMFAO
Can i DM you?
so true
I have class during the community event๐ฅฒ
What is comminity event?
They're recorded :)
I never knew this, its on youtube?
from what I know, Jabba will upload them as soon as he has a computer with a GPU (which is hopefully soon)
what do you mean?
Yes he buys a new GPU every Thursday......
Have a think about that question and get back to me, if you are still thinking that is a logical question, then I will make a referral to a psychiatric unit.
make a gpu
nyo
Hlo
Nah I'm anti computer.
Are you Chinese? 
bing chliing
binnng chilllinng
wp
nun
hi btw
wp bro gj
i can finally finish paths now lol
Hi
how much of mr straw is a strawman???
4
bruh
there's so much on networks
its so confusing to
hiya mr straw, havent seen you in a while, hows the studying going ๐ ?
for sure, I was planning on pivoting into it instead it feels fun to me, I miss it
Hello
its going alright i deleted my old tryhackme account to start new
I dont like how big of a topic it is though; but It becomes second nature eventually, I felt the same for electrical-related concepts & topics but you just have to suck it up
yeah defiantly
i like tryhackme but sometimes it just overloads me with way to much information
but echo isn't working for me
can anybody explain what the chart in rooms is useful for
looks like random people with random points
yes
Just recently made an account and been having fun learning lol
i am so tempted to just google the answers
the website is explaining stuff well but it wont let me open the machine at all
what does it say
sup
im on Linux fundamentals part 2 and it wants me to start the machine but it wont start.
OH MY GOD
can you show the ss
of what it says
the answer was so obvious i just didnt look
k
It's worth buying books on cyber security?
best of buying premium tryhackme
just learn thm?
yeah
books are more theory
thm is both practical and theory
get the best of both worlds
I bought the premium for a year
and theory is good but if you haven't actually done the scenario or can't apply it in a live situation you won't get anywhere
great
so cheap
yeppppppp
It's amazing how much information there is.
i can't learn theory without practice, thanks
Gave +1 Rep to @hardy wharf (current: #959 - 6)
yeah
@sand trench is nice that you can run ssh, samba and even dockers on rooted phone ๐
@boreal scarab smth for you lol
some idiot downloaded Windows 11 on their phone
they did some converting to make it run, don't ask me how but they did get it working
AGAIN
no way that he manage run it
Anyone tell me why premium yearly is showing as 30% off but when i hit subscribe now it shows the full price without discount?>
this is why i need echo
yup they did
show it pls
I can run a VM on my IPhone ๐
Without jailbreaking it
yea... right
Clearly they do not like their phone running well
ofc not
breaking things is part of hacking and that's also the fun part
getting there
Arch all the way over here!
?
here's the OP
https://www.reddit.com/r/Windows11/comments/1h9bblk/i_managed_to_run_windows_11_on_a_phone/
oh boy. on poco
yeah, idk wha the thought process was but I support it
I am so done with networks man
that's A VERY important part
are you doing blue or red focused
what are you like trying to focus on
heh. i have few rooted phones and so. so i mange to do things. idk how dumb it is but aint smart lol
Yeah I wondered the same thing
security risk ofc but fun
both im only doing the fundamentals right now
oh, dw give it a few months and it will click
is bit old phones so im ok. but yea
Guess no premium for me
@mossy river ?
yeah only these
contact support and ask
im also going to be doing these now
Yeah so the basics. It can be confusing at first but if you take good notes, visualize it it will eventually click
Abstraction makes things hard for me, so I like to visualize them
i don't take notes but my Echo isn't working
Good, kill echo
WHY
also take notes
echo is the best
alr blocked
notes has never helped
fun fact i haven't even used echo cus it doesn't work for me
he actually blocked me 
I thought you loved echo yesterday and now you've split up
no I do love echo its just I Don't have access and its really annoying
it never appears
JFC WHAT DID YOU DO?!?!?!?!
hello guys i need your help finding some good projects i can implement in my graduation project this year
it has to be related to IDS/IPS Traffic & Machine Learning pipeline i want to integrate Wazuh as well if you guys be so kind to guide me to some resources or past implementations
@sand trench here it goes
not me lol. i dont use that shit printer
That is EXPENSIVE ๐ญ
I'd rather buy 64gb ram than this USB
im starting to understand one of the hardest things i cant understand
OSI
model
money goes into yubico shaped hole in the wall
yubikey drops into pc
whats that
Regex
regular expressions
Explained better than I could
it is a thingy to parse text using funny symbols
Yesssssss
like ctrl+f but extra advanced
WAZUHHHH
yes siem
I added a lot of suppression rules
Hey guyz,
I know you will feel like I am talking dumb. But I need a video which will be covering every linux command needed to start in any area of cybersecurity. I tried and found a resource but I got a little confused as there were a lot of commands (this is my first programming language also) and a thing to consider is that I will be running commands in my termux of mobile as i don't have a laptop/PC
someone help me please
so you are trying to learn bash?
Yup, if that's what linux language is called I think ๐ค
Uhh
yeah it kind off is
dependssss though
(I honestly learnt bash somehow randomly, from trying and seeing what works and what doesn't)
do you have any experience in other languages
go watch john hammonds recent video on regex with python... be prepared to blow your mind a bit as it will be hard to grasp exactly how it works
Everyone says it but then people also recommend me to first learn bash then experiment
I'd recommend that
@frosty sapphire
I know half of html
And print command of python
I did destroy things I shouldnt few times
It will take time a lot but
It took me not a lot of time to learn basics
Not like I do stuff in bash a lot but some basics is possible for me to do
this isn't from me but
AI-Enhanced Threat Detection with Wazuh and ML
Concept: Integrate Wazuh with machine learning algorithms to analyze and classify network traffic for anomaly detection. This setup can identify sophisticated threats like Advanced Persistent Threats (APTs) and zero-day attacks.
Stuff I learnt from practice is enough to make hosting, projects and do them on linux debian
tbh the way I learn was getting guy who knew stuff inviting them to make hosting with me and then learning from practice
@wicked lagoon
im going to be honest
i don't know what you mean cus i never used it i just found a post on reddit for it
but
from the images
pretty stupid
lol
I don't expect anyone to login into router
so if someone logins and it aint me I will get alarted
I don't need repeat of situation what happened two days ago
what happened
hmm
from logs
I can say that someone comrpomised my friends VM broke thru network to another VM and from it brute forced proxmox administrator account from another friend
used it to access all the data and delete zfs pool and vms/lxcs

I involved police into that
@wicked lagoon Hey man, Iโd say Iโm still kind of new to the SOC field, but Iโll be moving on to SOC 2 soon. In my opinion, when it comes to IDS/IPS, itโs pretty hard to get hands-on experience with tools like Snort and Suricata unless youโre already working for a company. But with the right certifications, you can actually make a stronger impression than you would with some of the projects you could dream up.
As 3+ years of data got destroyed
backup was destroyed too
wazuh logs are useless (as they dont exist)
as it got destroyed too
as it was LXC
ouch
@wicked lagoon I mean you can push for BTL1
don't worry my passwords are normally all the same
BTL1 > tryhackme soc1 certf
probably shouldn't say that here
ah thanks
Gave +1 Rep to @hardy wharf (current: #862 - 7)
I will surely use that info
stupid bot ๐ญ ๐
(just joke)
thanks for giving the rep
Gave +1 Rep to @sleek hare (current: #2115 - 2)
Donโt do this, and once you know, go fix it as soon as possible
it's fine
I mean, itโs sorta not fine, but ok
Does anyone know a tool for creating viruses?
nobody would find anything worth there time if they got access somehow
you have to understand that thatโs not how attackers work
unless you want the 60+ newsletter emails i get every day
they are almost all opportunistic and mostly using automation
they will steal your accounts even if thereโs nothing to steal, because it got caught in a tool with 5M+ other accounts
yeah but i'm just not worried
https://www.reddit.com/r/unixporn/comments/1o6jdez/oc_hexecute_i_made_a_magic_gesture_launcher_for/ friend of mine sent this, such a cool idea;
only because there is nothing to take
still, itโs so easy to fix
i can always make new accounts
All I can say I suffered to configure it
it works properly now
and I get alerts on logins as I need, actions, etc.
which tool is this
And not over port change ๐
wazuh
i mean at least it won't happen again
hopefully
I configured it same way last time
issue is I spotted it 4 minutes after they broke into admin account
and all data was already gone withotu one lxc (the one they used to compromise account)
ah
idk if I'm allowed to say more info
police gave me zero instructions and literally whole interview was over phone
as interviewer wasnt in cyber security stuff and connected me with other department
THEY SHOULD HAVE CONTACTED ME TODAY MORNING
THEY STILL DIDNT
like erm
so really useless
i feel bad
they reidrected to other department
which is specialising in this
data protection laws in germany are strict
they have atleast one criminal police department related to that
and entire sperate organisation for that
no way
that's so bad
i mean only a singular department for just that seems a bit small...
your right
I mean
in the UK we have so many
i guess
either you dont get meaning of department in my case or etc
There is never enough cyber๐
yeah i do
i just thought it was extremely small compared to the ones in uk
I dont think its small
i know each country is diff but still
U said in uk there are a lot of departments for cyber @hardy wharf ?
oh yes
there is so many
This looks amazing
it's not from me by the way just from a reddit post but still something you can consider
Thank you
I'd implement AI to wazuh
issue is, I can't self host it
and I'd not trust running it to 3rd party to scan all logs
I probably can self host slow 8b model
but yep
I just want to implement it for my graduation
Why
my entire free ai service was based on third party providers
Yeah how would you implement it
everything is possible
fair
The problem is with the data
Deep packet inspection is a must
I have had AI based anti abuse detection
i self hosted AI for it
it was slow
but it had very low ammount of false positives or false negatives
Why would u self host AI
I JUST SAID-
Azure offers free credit for students
I have home hosted server for a reason
trust issues is one of them
I need better gpu for it too ๐ญ
i couldn't tell the difference if there wasn't a watermark on them
How would i integrate the algorithm with the IDS / IPS ?
The machine learning algorithm
predecoder.hostname:server predecoder.program_name:pvedaemon predecoder.timestamp:Oct 14 19:27:47 input.type:log agent.name:server agent.id:000 manager.name:server data.dstuser:root rule.firedtimes:3 rule.mail:false rule.level:3 rule.pci_dss:10.2.5 rule.hipaa:164.312.b rule.tsc:CC6.8, CC7.2, CC7.3 rule.description:Proxmox VE authentication succeeded. rule.groups:syslog, proxmox-ve, authentication_success rule.mitre.technique:Valid Accounts rule.mitre.id:T1078 rule.mitre.tactic:Defense Evasion, Persistence, Privilege Escalation, Initial Access rule.id:87203 rule.nist_800_53:AU.14, AC.7 rule.gdpr:IV_32.2 location:journald decoder.parent:pvedaemon decoder.name:pvedaemon id:1760470067.1902863 full_log:Oct 14 19:27:47 server pvedaemon[166184]: root@pam successful auth for user 'root@pam' timestamp:Oct 14, 2025 @ 21:27:47.380 _index:wazuh-alerts-4.x-2025.10.14
logs on wazuh look like that
its really easy for AI to analyze
API is a thing
AI uses API too
tada
either file or prompt
tada
Damn more work
lets play minecraft in real life
@marsh lark the RGBs havenโt been done but this is where weโre at with it
free will
Hmm?
oooh it is unicorn vomit


