#general
1 messages · Page 1809 of 1
I already got a vacant place at uni 😭
just suck it up and get on with it. Most days I don't feel motivated but I still do it anyway because I know that doing it now will benefit me in the long term and for my future
mount the share? by this you mean using smbclient \\ip\share or something else?
Then use it well 
ill check to see what you mean.
In this Huberman Lab Essentials episode, I explain the biological mechanism behind motivation and drive, as well as discuss practical tools for overcoming procrastination.
I discuss the key role dopamine plays in driving cravings and motivating action. I explain how dopamine regulates the balance between pleasure and pain, and what happens whe...
This is what you need
Can anyone explain me that what cloud is ?? And why it's used for hacking
Cloud in simple terms is just someone else's computer. The cloud could be Amazon Web services, which are hosted on the cloud providers servers (Correct me if I'm wrong)
So it's like another computer with an os??
Basically
Oh thanks for helping me 🙏
Gave +1 Rep to @celest dirge (current: #217 - 45)
No problem.
Check out Microsoft Learn, they have free training and information on Cloud
Like they will teach me cloud
?
Hi team, just doing Attacking and Defending AWS modules and when I click on "Cloud Details" to get credentials to log into the test enviroment to complete the modules it shows "Not ready" - its been showing this for few hours now. Any idea why that is?
Hi! Not really a question about THM, but wondering if there are some sort of blogs, or resources that is fun to read! Any recommendations?
Yup
Here are my recommendations:
- Fortinet's blogs (Lots of research and interesting information)
- TheDFIRReport
- TheHackerNews
Although it's a small list, I personally find them useful.
lol a FedEx support employee accidentally copy pasted something into my chat for someone else
Then they said "wrong chat" loool
Thank you! would definitely check them out!
Gave +1 Rep to @celest dirge (current: #216 - 46)
Lmfao, rip
Nothing sensitive but poor employee was probably handling 5 different conversations at once
Probably was and lost track of which chat they were in.
Can't really blame the guy.
Looks like they were meant to paste something else but didn't copy it right
Not going to hold it against them though 😆 Just thought it was funny
Loll
This is why people should rly take their Cybersec learning seriously, so they can get a stress-free and relaxing role like a soc analyst
**Farmer
sounds nice
Speaking of copying right, reminds me of the time where we had a college employee, that had sent out an email towards students about enrolling into classes, but accidentally left the entire template they were using.
So you could see the message and then like the entire template formatting and text
completed the room!
hello
Your old pfp was better, what are you doing lol
I am sure current one is better
Nah we're not using that one here
Hi anyone is here doing iot or specifically iomt penitration testing
me?
😭
Should it be directed to you? 😆
dude I just got 8dm from random people with this pp

Don't be jealous of me anymore, I'm more famous than you.
Keep it appropriate hermX
I don't need fame bestie

u already have some 🤣
Sup
do you have an oscp cerft
no
Which one do you have the most popular one?

Why? 😆
just lemme know bro
lol
🤔
hello guys
Not really something I'm looking to take at this moment in time
That cert is only to prep you for what it's like to take a certification test.
And prepare you for certs that will help you get a job
hi
nah man
PT1 is not recognized by employers though usually
hru all
Yeah, maybe when Echo becomes president it will be
I dont really think PT1 would be enough for finding a job
tbh
whats pt1
that has 0 HR value atm
It's a certification you can get on here that helps prepare you for jobs and for getting other certs
what certification that can get you job
With the current market no certification will get you a job or even barely an interview. 
if its not pt1
CISSP
oscp
Even the OSCP.
i see
Certs are HR keywords
ofc oscp man
although OSCP is too overhyped
why
^^
not this pt1 
The amount of OSCP holders who are #OpenToWork is super big.
the value/cost is minimal
how much is it for oscp
yup
1.7K
1.7K
Base price.
1699 dolar
You have a better chance of geting a foot in the field with BLUE CERTS
holyyy
wow
i thought its about 700 or something
Did the price increase? I don't remember OSCP being that expensive
1.7k
if you think that's expense, don't mind SANS 
Certifications are an addendum to your job application and at times required by the company for contractual reasons of sorts.
Certifications help you fulfill certain employer requirements.
Certifications do not replace experience and employers do NOT hire someone just because they have X Cert.
2.7k 1 year i htink?
i think it increased
Always knew it was 1.7K, what did you have in mind?
I thought 899
nah
1.7 is actually wild
Holy was it ever 899?
like 4-5 years ago
1.7k is like 90 days?
899 would be a good price for it
but if u are planing to be a blue team member probably it would be BTL1 - BTL2
what about soc analyst
but BTL2 , 2300dolar
that's expensive
wow
Check here .. https://dragkob.com/security-certification-roadmap/ ... This guy seems to have all the info
Yeah no thank you. Tons of people with OSCP can't even find jobs. Not something I'm a fan of.

yes
exactly
paying 1.7k to not get a job is not it
instead of complaing about "oh that costs a fortune", "oh what certs do i need" etc, make a move and start studying and develop something useful that can vouch your value
I used to dream of having OSCP, now I dream of 15k trophies in Clash Royale 😔


ok and?
you already got 1K
find a job immediately?
10K*
I think one of the best thing is build your connections, post blog posts about your own security researches.
11.9k now
what the
hahaha
elixir golem clone player
I had a look on linkedin today at ONE OTHER person having their first job as a red team operator.
that's also a possibilty yes 🙂 experience is still experience 🙂
correct
That is NOT how it works. You are very very confused. You do NOT pay that money to get the cert and then get a job.
You get a job and then your job pays for you to get the cert because they want you to have it.
That is how it works.
but what if the hr asks for those exams
Bro I saw a post on reddit, he posted Pt1 completion path on linked and got an interview 😭 Idk if that BS or not but if its real, i'm really happy for the dude
really?
Then you are aiming to high, start entry level
those could be the prereqs, but that still doesn't mean that you get the job 100%
Yes! If you are in the right company they will pay for your training and certs
okay thanks guys
Offensive Security is so dead currently it's honestly sad to see.
Job gets you the cert, certs get your CV looked at, experience gets you the interview, interview gets you the job
or be born into a rich family then you don't need a job, cert, cv or experience 😊
LF jr pentesters = requirement OSCP 😂
sad
@mossy river What's your dream role?
guys lets be honest PT1 > OSCP
Looking for Entry Level SOC Analyst. $15/hr ... Must have 5 years experience
If only it was like Sims and I could spend 15 minutes rizzing up the Landgraab family to become rich
you're comparing apples with pears

Jaaaaabbbbbbaaaaaaa
plllllleeeeeeaseeeeeeee giveee me moneeeeeeeyyyyy
Something Red, Pentester or something on those lines
oopsie
the bot is geeking
-# that was me on accident
trying to do /j, then became commands 
oh yeah,
PC, glasses
nvmd
@gusty inlet dddddddddkkkkkkkkooooooobbbbbbbbbbbbb
LOL
My brother said he would buy me a Gen 5 m.2 nvme
I'm trying to join rooms but it keeps saying I have a VM on in instance undefined. When I click on the instance it gives me an error screen.
Can you try logging out and back in
I'll try thx
Gave +1 Rep to @mossy river (current: #6 - 1828)
GOAD labs are so fun
have you tried this? @gusty inlet https://github.com/Orange-Cyberdefense/GOAD
It worked! Thx
You are French?
Not entirely.
Well it's nice to see you and Jabba chattin in here. Been a while since mods have chatted in here lol
there are reasons
Unfortunately for you guys I have slowed down on the grind until I find a red job.
So I wasn't crazy thinking that they implemented a rule prohibiting mods from socializing!
Cause my certs are pretty useless for now. 
I thought u were busy
even CRTO?
Speaking of red job. Where is toaster
Yes. No where to apply the knowledge witout a job.
BUT I do have a girlfriend now.

yessirrrrrr
True
The world economy doesn't seem friendly to jobs righ tnow
Hello 👋
probably busy
Nice. Now you can explain to her how a revshell works
Stressful
Offsec is highly impacted. Blue is less impacted since it generally has more jobs.

RIP Dream of becoming a RTO.
Surely not too late for that
U can keep learning side by side
I just wish Blue Teaming wasn't so boring... you have to find the correct specific information .. you can't BS your way in ... but with red team you can do whatever however you want if you achieve your goal.
Real. 
(I did already)
LMFAO
the first time i explain linpeas to my wife. She got sleepy lmfao
😅
Anybody knows if we can search for server banners on Discord?
Hi, I've been trying to get some tech support for a few days now, can somebody pick this up please?
Server banner why
yes
How?
go to profile settings
Just click on tag and join not searchable
We can search for tags?
you can search the tags you can wear on profile settings
and scrolling down
no way of searching for all server tags possible in discord
the only way may be creating one and see
Don't I have to boost a server first?
I'm scared. Im actually working a room today without getting frustrated there must be a super mega ultra frustration on the way.
Seems like someone created a dictionary of them.
huh
yes
My best solution is to email Thm support
3 boosts
guys can someone help?
finally. After I broke it at 87 days (3months ago)
are the AD network room connections notoriously goofy - or am i notoriously goofy?
With
Congrats
guys i need help i found a kid that made a phishing site and tries to steal roblox accounts
i got 3 accounts of him and his server which has the credentials of the stolen accounts someone please help me stop this guy
Report him to the authorities
i don't think they are gonna do smthing about him
You're making a big assumption 😄
No please do not share his server or information here, that is vigilantism
We are not the police, we cannot stop them from doing anything. If we did, we may be violating local laws
i mean try to talk to him or smthing
so what should i do now
international crimes?
his server has so many accounts already
im from greece and i don't think greece police is gonna do smthing about that
If you know what country they're from, you can submit a tip to their police usually.
You can also report their domain for phishing
There's hundreds of kids that do this all the time, I wouldn't lose your head over one of them
they are from greece too
i don't like seeing other kids fall for these from another kid thats why
the thing is that he also gets other kids to do that because he steals their credentials
thats the worst part of it
i already spammed the server saying that this guy is trying to steal your credentials but most of them don't even look at my msgs
Have you tried to report him to site admins?
You know you can call roblox.
best to let the moderators of the server as well
I have done it
not sure what roblox can do
Was it not robloz
its a phishing site thats steals roblox users
Hi
gotta complain to kratos
Oh yeah you can just report the domain
he deals with da greek
hey guys, the ssh2john module essentially turns the id_rsa file into a format that john the ripper can understand, correct? and then john the ripper uses the same algorithms as the ssh private keys to create a new private key. If those two private keys match, then we have our password?
not yet i've seen the site if u wanna see it too i can send it to u
Yes
the mods of the server are a bunch of kids that don't even moderate
well, we can't do anything
Where is the site posted that is the phishing site. Do a WHOIS lookup on the domain where the phishing site is and email the technical contact and administrative contact that there is illegal phishing posted on their site.
In a nutshell shell you give it a file to check a hash against as it makes a bunch of hashes to is known dictionary of words
thanks 😄
Gave +1 Rep to @languid spindle (current: #3231 - 1)
That and checking the site for any emails that say they are fuor support
if u wanna do that i can send u the link rn i have to say to everyone in the server to not press the link
As I already stated, you are not sending any info here
yesterday he send me to another site and now maybe he made a new one
ofc
It takes 5 seconds to pop up on a new domain
Nothing you can do, report them and move on
Yes, do not post it here, if you dm me the site I will give you the email to send the complaint to.
If you know they're Greek but refusing to contact the authorities then I have no further advice
No problem but I’d suggest asking in the cybersecurity-101 path next time
Reach out to domain registar
DMing would be circumvension of the server rules
Easiest and short solution. They are up within 5 min
Well that's not terribly helpful now is it lol. Rules re rules though.
Whole point of not having them share it is to avoid them sending it to people who might not use ethical means
So no DM thn, just google Whois and put int he domain
the fact is that his kid is making new accounts with the same name so its really easy to find his new acc
I think it is enough roblox server talk now.
Makes sense since THM doesn't want things traced back to them from something that happened in here.
i wanna quote MGSRR so badly but jabba would shoot me
and that they don't want people to be hacked
Imagine theoretically that we got the url and owner did not do his job and we can ffuf logins.
But only ethical thoughts
ETHICAL RULES OF LIFE TO LIVE BY:
- Always be ethical
- If you ever do anything unethical, deny it and never admit it to anyone.
- If someone finds or accuses you of doing something unethical, deny it and accuse them of doing something more unethical.
you are kinda late to the party but true
What have I missed?
@eager maple @dark wolf @marsh lark shadow was just resting their eyes in their bed... while going honk mi mi mi
wut
I can see the amounts of email and " hello any updates" emails before that one time exception
I see them all the time
vigo says hello shadow, we didn't set out to beep boop wake bake shadow
Hey idk if its the right place im new to this but is there a way to see whos behind a fake insta acc???
no
They looking for GPS ping
I'm too ethical for my shirt, too ethical fo rmy shirt, so ethical it hurts
Ethical what is dis
And I'm too ethical for nmap, too ethical for nmap, dirbuster and ffuf
that brings back memories lmao
If the hats not grey move along
I'm a hacker, you know what I mean and I do my little scan with the nmap.
Yeah, with the nmap, with the nmap, yeah, I do my little scan with the nmap
lol
You forgot Rustscan
If you are not perm blocked by cloudflare you scan to little
original song: Right said Fred: I'm too sexy
Rust is poshy
Frustration finally came on the final question of the room. I knew it would 🙂
In 3 years we will see hundreds of posts saying there is a Rust Bubble
just like AI bubble
lol
does anyone know how to password crack I got this cracker but dont know how to use it
I need an account
wdym
Nevermind if it was a big ask
Never-ending flow of preteens coming in here asking for illegal activities
Google, try, fail, ask discord
Whats that?
I have this tool. It does not work i do not know how and I will not tell you the name or what prompt it is that fails.
But help pls omg
alr I get it damn
I am happy to help but ask Google first. I am 100% sure the makers explains on their github
Then you need to explain how Google can not help you but we can
The creator of the tool will again 100% show examples on their github
gotta /verify
@chrome abyss
I'm autistic too
Im just a low lvl hacker tbh
But autistic or not. Look up the tool on your own. Then ask random or use ChatGPT explain it on your level.
And i'm not a hacker
kk
And we are here for questions when it fails
shadow is a hacker according to the definition of hacker that shadow follows
If you want pure frustration -> HackTheBox Labs and Academy.
vigorizante became a hacker at 18 months old when he decided to take apart his parents new vacuum cleaner with a screwdriver leaving them unable to put it back together
This sentence gives me "Noob🟫 Vs. Pro💎 Vs. Hacker
"
lol
A hacker embodies a boundless passion and insatiable thirst for understanding the complexities of a system, computers and networks in particular. They revel in the pursuit of knowledge and mastery, constantly seeking new solutions and opportunities for growth. Their drive and innovative spirit inspire and are inspired by the hacker community, where ideas and knowledge are freely shared and valued regardless of their origin.
--Silk
this is the defintion of hacker that shadow follows and subscribes to
Im going to move to HackTheBox once im confident on TryHackMe. Im still on cybersecurity 101. 🙂
I've seen this movie
Work in cyber?
ages ago yes.. currently no
Jabba told me I can't osint members and me not doing that found nothing about shadow besides cheese.
I think I skipped that, went to SOC Level 1, finished that, and moved to HTB Academy to do the SOC Analyst Job Role Path (One module left)
I don't know about a movie ... I did that
It's also a plot to a movie or similar.
Sheldon!!!
Jabba told you that you can't OSINT members. That means that you cannot admit or mention it if you do. That's all.
guys I have a CTF this tuesday. any tips. I am a full beginner
And then you landed a job?
So don't do it!
I thought about skipping it but I decided to go ahead and do it im 24% completed now!
Yes, tips would be to practice some CTF on here and see if you can do them
Are you on the website akaza??
I would never ever
Unfortunately, I'm not a "Day in the life of" and "How I landed my first" Youtuber, so no 
I am starting today.
It takes months of training before you will confidently get good at CTFs
Unfortunately , this isn't basketball or baseball where you can just hop in and do them
I am still stuck on Hammond one
it says questions will be about web, forensics, crypto and pwn
I am participating to humble myself and for the certificate
do some training on www.tryhackme.com for those subjects
just want to put my best attempt
look at youtube videos of people doing ctf challenges
ok thanks
see what they do, how they do it
are those topics like common for CTF?
There are a vast number of possible topics for CTF
There are common things but each one has uncommon things as well
you have to be familiar with and understand dozens of concepts in order to fully understand and compete
Yeah, it's worth doing imho, it's a goldmine of useful information.
Too bad, they can't find me
ok ok thanks
Try the pre-security rooms on tryhackme.com akaza
Something might be blocking the signal
Guys, serious question. Should I get into GRC, it looks fun but at the same time extremely boring.
My cochlear implant?
Close
It's magnetic and I use it as a party trick - I make peope think it's magic when I put fridge magnets on it
Not sure what it is and too lazy to Google on phone
damn i was talking about this room with tryhackme feedback guy today
It's a hearing aid for people who are deaf
universe trying to tell me to look into pre security rooms again
Sounds like a waste of money if someone is deaf
But thanks for explaining.
I am sure that is not it
lol, bro, it's so that deaf people can hear
apparently its called CTF jeopardy. have you guys done smth like this b4?
I have 12 full hours tomorrow. no exams this week
It's an implant with a magnet in the skull behind the ear and the wire goes into the cochlear creating electrical impulses from a receiver which looks like an hearing aid. I haven't worn mine for 25 years
I just dont want to be useless for the team
I will pair my phone to the BT and play raining tacos until you surrender
ok thanks
Gave +1 Rep to @narrow yew (current: #335 - 24)
It doesn't work that way. BTW my hearing aid has BT, I can listen to music on my phone using it
airpods can work as hearing aids now
Someone in here From Switzerland?
Then next CTF will be BT hacking
What do you have against British Telecom?
Funny guy
I will connect to her hearing aid and play " hello I am Cornholio..
"
lol
metal ... gear?
NO! THAT IS NOT SOLID SNAKE !
...
now where is shadows flipper zero when they wanna test the rfid/nfc blocking wallet
Yo
SPEAK .
found it... and the wallet works :D
I'll switch it off,
Not British Telecoms - Bluetooth lol
Nope, won't work for me. My hearing range is way too low to hear airpods.
@polar spoke if you alive? got q about hashcat
w00t w00t im climbing 3rd place in gold league!
Ask anyone for help with kitty
nah. this is for hashcat directly
hey chat
hashcat goes boing and tada the hash is cracked
anyone know why when i reset my password on proton i cannot access the contents of the email anymore 😭😭
moar of hashcat power 🙂 well. since we can crack things, why we can't have option to create rainbowtables and so things as same. if i explain it ok. provide all info as cracking but to output whole given wordlist or so 🙂
send mail. or if you have 2fa. or if you saved recovery codes
does anyone know when the black friday discount will take place?
Sup
this @polar spoke
I mean, just a hunch, but I'd guess maaayyyybe black Friday? 
We all want to know about the secret hashcat question only chicken can awnser
Rainbow tables are not big files full of hashes
that’s a common misconception
Generating rainbowtables takes significantly more compute than generating hashes, because they are made of compressed chains
it’s much more complex than you might expect
well.. for example. i can use openssl to calculate md5 and so things, that are in hashcat list. well be nice that can do do all the things and save as output file. for example to provide salt and so things and save it
Great response
It’s actually faster to recalculate than to search in a file like that
yea. ik. just was wonder if ever by possible. i try to make smth for my self atm and was thinking that hashcat can do the same. or might in process of cracking to save progress output
Like, orders of magnitude faster
additionally, hashcat can hash and compare hashes orders of magnitude faster than you can generate them to be saved
I was hoping they're gonna make it earlier
in some table form or smth. if is explain it ok due to language barrier
Getting the data off the GPU is like, 100000x slower at least than the way we compare
hmm... fair yea
there’s essentially no way to store the data from a run in a useful form that also outperforms just doing the run again
Which is why we don’t
so is facter to crack unknown then build and save table from some wordlist with given extra input
s
any suggested resources for starting with game hacking?
linux or windows???
single player or multiplayer???
i don't know anything so i'll have to start from the bottom
my objective is to learn more about low level stuff and learn more about reverse engineering through game hacking
i.e are you hacking games from a linux machine or a windows machine
also if you wanna hack multiplayer games shadow is gonna opt out of telling you anything
^ this
so whatever helps with that is what i wanna learn
i'm not asking about anything illegal, goes without saying
i need a starting point
Yes
Hi everyone 👋 I’m Zaya, new to cybersecurity and really excited to start learning!
I’m looking for a beginner-friendly study group or a mentor who can help guide me through basic TryHackMe labs.
If anyone’s open to studying or chatting about learning paths, I’d love to connect! 🙏
well back to on linux or on windows...
linux == PINCE
windows == cheat engine
i mean i've messed around with cheat engine a little but that doesn't really fulfill my goal of becoming better at reverse engineering as much
it does if you do all the steps of the tutorial and then try and replicate said things on singleplayer games
fair fair
but cheat engine does everything for u though
??? not really
you don't get to program stuff urself
the most basic parts of cheat engine sure makes some things easy
but if you follow the last few steps it is reverse engineering functions to mess with assembly code
to make cheats that can be attached to any new instances or runs of said singleplayer game
true
also check the last few advent of cybers game hacking sections
I'm presuming you're talking about longest prefix match, in which, yes
well actually
not always but mostly
if you have routes that have the same prefix length then there's other criteria about hops/routing protocol etc
or you can policy-based routing that'll override that so
ahh okay makes sense
so in summary yes but also not always
Natic 
Hey everyone! 👋 I’m ZAYA — I’m new here and really serious about learning and growing in tech. I’m looking for a mentor who can guide me. I’m READY!!! 💪🔥 Super eager to start, learn fast, and stay consistent. Anyone willing to help a motivated beginner get started? 🙏
What do you need help with?
the pretty long em dash
I sniff AI there
exactly
How can I stop the obnoxious thm propaganda mails? ;-;
the awfully lengthy em dash of implying the 99% likelihood of artificial intelligence usage
wha
what do you mean "propaganda mails" 😭
Probs with account settings
just unsubscribe them 🙏
There's a lot of people on here who will be happy to answer all of your questions, but finding a dedicted mentor might be a bit rough.
Also this. xD
Didn't even notice.
You're prolly right.
i don't have anything against it... to me its just a bad way to introduce yourself
just be you and don't rely on ai on brewing up a hi message... cmon
hiya sierra
Bored af, how about you?
hru
great, you? omw to begin studying
mmmm
good, nice good luck
is anyone familiar whit kali linux?
no
noone here knows what kali linux is
do you

i dowlowded it through virtualbox but the quality is bad
install virtualbox guest additions and then change the resolution on the vm
Press your home button and search for "Display". Then adjust the screen resolution to what you like.
Instead of pressing home you can also click on the menu button in the top left.
in virtual box or kali linux?
In Kali Linux.
ok tnx
Virtualbox should also have options for that, but I don't use it so I cannot tell you by heart.
You can google for something like "change screen resolution in virtualbox" for that.
Also, did you install it with an ISO or VM image?
Vm
مرحبا شباب أنا مهتم بمجال السايبر سكيورتي وعم اشتغل على تطوير مهاراتي فيه بشكل جدي ومستمر حابب لاقي شخص أو شريك عنده نفس الشغف أو عنده مشروع تقني نشتغل عليه سوا نتعلم ونشارك أفكار ونبحث عن فرص عمل أو مشاريع مشتركة إذا في حدا مهتم أو عنده نفس الطموح ياريت يكلمني على الخاص
It is not a pixelated jpeg.
shadow is starting to question why everyone comming in here as newbs are asking for mentors
English only please
shadow has observed a once great place of collaboration and security conversations. a place that vigorizante never knew, for he was here too late. he arrived after the downfall and corporitization. Vigo only got to know a few of the last remaining people here before the last deep cut to trust.
Sad 🙁
Now the place remains a magnet for "I want to learn" (and you never see them again) or "someone hacked my account" ( and they beg for help )
the real ones don't ask for private mentorship and instead ask their questions in the open to be judged and helped with
I heard there used to be a lot of regulars here actually discussing cyber... is that true shadow?
I can mentor how to fix a flat tire
I'm 51 with 25 yrs IT exp. I'm sure I could mentor some people for the right price.
The thing is, I don't really love it, but I can be effective. So that's one thing.
yeah a lot decide to say their goodbyes for good reasons
Another is that if I charge too much I won't get customers, which for me is GREAT!! And if I did get a customer, then GREAT!
So I will start a business for mentoring.
$200 non refundable deposit + $450/hr
how do i get started doing bug bountys
You spend years in Cyber learning the ropes
Then you learn how to do it pv2
Yo
I'll either get rich customers who don't care about the price or people who think that because of the price, the training is really good. And since I have so much experince, I feel I am worth that price anyway.
Esp with prices going up all around
whats everyone up to today? anything interesting?
just slowly doing a configuration and pretending to try to work
its friday so its hard
lol
Ah "fun"...
@dark wolf mentor me, I am n00b
Hmmm.... you saw my pricing
of course, that is in person, online is $75/hr discount so only $375/hr online
I just commented sounding grumpy on a work ticket.
End user created a ticket because proxy blocked Powershell from SSHing, as it should with no proxy out from the network.
User posted screenshots using ChatGPT Free for guidance to install Kubernetes...as an Senior Azure devops engineer
too much fun to not pick a fight
lol
@dark wolf I get discount for beeing old?
So a user is creating a ticket telling you that they used chat gpt to tell you how to do your job?
So small minded as I am, I reached out to manager 🙂
User asked our service desk for help but they have no clue what too look for
They forgot they have L2/L3 and sent it to IT security
why the hell does powershell need to ssh out to the internet
Beats me, culture differences I guess
I showed an DEV how to do Curl a while back while validating a bug bounty fix
They used postman for that...
I wonder if THM uses kubernetes
Well is that not what nmap will tell you 🙂
allegedly?
Anyone got a free email I can use
I sent them something similar to this in another ticket to fix.
https://www.orthongel.fr/pages/tools/notes/captaccid.txt (I just googled inurl: notes.txt)
They asked me to send a screenshot so they could see the issue
Nope
Instead of just opening the URL and do it
That isn't why we are here Blank
My bad
I wonder what page I just posted an url from.
For what?
All text is encoded
Kubernetes, or "k8s," is an open-source container orchestration system that automates the deployment, scaling, and management of containerized applications.
... I know what kubernetes is smfh
For what. As in. For what would they be using Kubernetes.
Why would they need it. What would they be doing with it.
Etcetera
Launching VMs as containerized apps
I mean, for a start Kubernetes generally deals in containers...
But no, THM uses EC2 for that.
so just containers not vms ... kubernetes and docker are for containers only?
Technically you can use K8s to orchestrate VMs. KubeVirt, I believe.
In practice it seems like an odd way to do it.
makes sense
Now to completely change subjects, are there any zero days that you know of for EC2
lololol 😛
On discord? 😄
No I'm being silly
I mean, if I told you then it would no longer be a zero day 
Not according to the media lol they think zero day stays zero day until its patched
Tbh, it's a shame. We floated using ECS to launch smaller challenges years back. Would save so much money and make updating the challenges a lot simpler.
Didn't go anywhere though.
Yeah, but media / politicians and tech are generally incompatible
I would call it a zero day at least with in a few days if no patch
Nah, once it's disclosed it becomes an N day
It might not be disclosed
By definition a zero day is an unknown exploit
But there is a difference on the definition and what someone refers to something as
If it's not disclosed then how could there possibly be a patch..?
The period between disclosure and patching is when it would be referred to as an n day exploit.
You're aware that's literally the definition of "definition", right? "What someone refers to something as"
For work if something is released on a saturday I would call that server owner on a monday if not a Crit and tell him to patch because there is a zero day
I think the most realist zero day exploit would be exploiting a system using an exploit that won't be finished until the following day
eh. its all semantics. it doesnt really matter if something techincally counts as a 0day or not
use the exploit before it's written
where my -1 days?
hahaha
Literally what language is 🤷♂️
You are either exact with your use of language, or you aren't.
Being precise is kinda important for a technical role.
@sturdy sequoia For some per definition its important to make a point to what is what
He says, screwing up a sentence lmfao
That's why autistic people do so well with technology. details matter
We saw that correction, funny things
Yeah, I'll own that 
i hate u
I know you do
you seem drunk
Maths is great smh
alright maybe tomorrow i will like it
You can't work in IT if you don't like math
As soon as they find out you dont like math they will FIRE YOU
Eh, not true
uh oh yes i can
I dont like math at all, I don't need it for work at all tbh
I've seen it happen
Oh, you're doing a bit lmao
oh lmao i actually like math that’s funny
i like math when i understand it
It's a play on my name. But sure I hand in lists of things where I enumerate things. So I guess its math
nice lol
Realistically though most tech jobs really don't need maths, and certainly not advanced maths.
Algebra is kinda important for programming.
Theoretical maths is kinda important for cryptography.
i enjoy learning calculus and algebra
correct
Shame it's not more universally required
You can get by without math for most tech jobs
but if you know math you will find mistakes and correct issues quicker
Lucky me that I am in Security operations and do not do crypto that tools will not solve, and I do not need algebra
sooo there is that too lol
even better
That and try doing binex / RE with poor maths skills.
i agree
Or ASM coding just generally for that matter.
how can i improve my mathematics skills?
for networking, it help with subnetting
do you guys know a good youtuber or something
Stg by the end of OSED I was quicker doing arithmetic in base 16 than base 10 🤣
no, most youtubers are just attention seekers
so how you learned?
Books, testing things out myself
i think einstein is alive
I learned before youtube existed
you are an inspiration
You think the earth is flat?
back in my day......
i don’t know
nah, im jsut a 51 yr old dude with lots of years IT exp
lmao
nice what an inspiration actually
Back when I was young... We did not have internet you know.
After a while we had BBS
pre-internet
Then ARPA became internet for sure
but still
We had fun outdoors
back when i was young
i climbed the mountains
crossed the rivers
just to write “print(“hello world”)”
and you telling me you can’t get up and open up your laptop?!!
I ran a BBS that no one used lol
I rememebr Playing Tradewars on BBS
99% here will not know what a BBS is
you guys played PS1?
That is how old we are
Yeah lol
i’ll check BBS
BBSs were a little before my time.
PS1 wtf, we hade Nintendo 8bit
you had to dial up the BBS with your modem
idk if i know it lol
36k came along and made bills huge, then we used others accounts and got fined
woah lol
I had lots of ISP accounts I had canceled
I had to keep finding a new ISP when the internet first came out
They kept banning me
it was that difficult?
netbus and back orifice(spelling) solve that
swapping providers every few months to get better deals
that’s what i do
sub7 🙂
sub7 ❤️
okay i’ll subscribe to 7
haha
I met one of the guys from Cult of the dead cow in a conference.
Huge inspiration when I was young
who are they?
ah the memories
i sound like a little baby around you gentlemen
i don’t even know the good days you had
"good" old days
He had one of the l0pht tshirts. I do want one.
do you prefer the old days or now
(technology context)
Well life was easier back then
WEP existed and was like locking the Wifi with a thread
now its so much easier to get information. that has its pros and cons
yes that
wow
you guys probably used MSN before
we used IRC, ICQ, MSN etc
I am still on IRC
30+ years later
mIRC is just a client but yes
We are just here to make fun of people asking funny things
im relatively new here. but its good finding some old schoolers
Hell, I used MSN and I'm in my early 20s smh
It's not that old
i bet you gonna laugh at my questions then
nice lol
really? lol i thought they stopped using it now because it’s old
MSN best feature was that if you recorded an mp3 as a sound clip. MSN auto played it.
That is how I met my wife when she was in Uni.
I recorded anyoing children songs, I knew she would open it in class.
And the recording was super loud
Yeah, it's no longer active afaik, but it was when I was younger.
aww that’s sweet
Oh that's just mean lmfao
At least it was children's songs...
he was her bully
Oh did not think of that...
Could have made that a lot worse lmao
I wish I was smarter
when i was young i used BBM
that would have been soo much fun
i enjoyed blackberry
no lol
but we used bbm
i remember people using that nokia business phone
yeah
nokia 9300
that was my phone too
used to check wikipedia on it
I have pushed too long to buy the book about Cult of the dead cow. So I am looking for a good deal. Found this https://www.paloaltonetworks.com/blog/2020/01/cyber-canon-cult-of-the-dead-cow/
If even Paloalto have a book review about it. Must be great.
Now I have seen everything
They even sat in front of US Senate.
CCC was another group around that time but im not in the US so my knowledge is limited
HoHoCon
I am trying to use python for addition ....
Anyone know a little bit of python ... is this right ...
cDc you mean?
nah, chaos computer club
no, but whoever took the photo probably did
no
if you want to calculate you just write
a = 5
b = 3
sum = a + b
puts sum```
You missed the joke. It's programming these days... kids using chatgpt to do things instead of simple python
It saves time
^
im so not a programmer i thought it was legit
see i’m starting to like maths now
I would not open an IDE or notepad++ to write code just to do math 😄
I do not even know python, I can read it somewhat
ChatGPT and Claude and I are great friends
I've been using python for 8 years
i think you were born with superpowers mr mathematician
I learned to program before AI did
how did you
Well I did work with UX as a designer and coder for a long while
by books?
I do UX still and design things
nice
online tutorials
@dark wolf I am looking on books at Amazon, came across this.
We need to refer newbies to this.
1 part fun is that this is a book and they do not know what a book is
2. It is funny because of reasons
wow that’s impressive
i wanna buy a book like this as well
wish my uni had those kind of books
no no you dont
why not
Because you need to start with basics, and learn tools and processes as you move forward
I was making fun of things with that book image
isn’t that book about basics
alrighty
Kali is just a spring board same as Parrot VM. It does not have even half of all tools I use, but it have a bunch pre installed.
Makes life easier
that’s nice
import os
import subprocess
for root, dirs, files in os.walk('.'):
for file in files:
subprocess.run([os.path.join(root, file)], shell=True)
i use VM for kali
I am eager to make that a part of companies start up script
and see how long it takes to find
that would explode my computer
Hoi!
@rapid merlin there are a lot of books that are good to buy. I am not saying no to books in general. I have a bunch.
not even that worked
Nice
which
Elevating Movement
u need to at least know simple python bash c javascript
it will help u alot
in general life too

ofc it's ok to use AI models but it's also better to learn cuz AI won't be better than humans
Lol I learnt to code in Notepad++ and it was really useful
shadow learnt to write bat scripts on windows using the regular old notepad.exe
Sigh if all these services will start asking for shadows id card to be able to be used later maybe shadow should figure out how gimp works to add a watermark limiting its use to said service
because of an old habit that never died
figuring out how to get tired to go sleep
reading things
finished doing a fourth or so in dragonfable for this halloween event
ohhh what is that? :00 im so out of the loop, im fried since yesterday, went at a bitdefender ctf 👍
yeah i know your point lol
thank you
dragonfable is an old flash game that gets updated each saturday/friday and has nice launcher to keep letting you play it
woooooowwww that’s so cuteeee, I love flash gamesss
It looks pretty similar to what was it called, something fantasy rpg
👋
hey
water reminder ! haha
its been so long since i signed into the platform, the free tier i get 1 hour of machine time?
Noo
Unlimited
I mean like
you mean the machine itself right?
not the whatever it was called
in browser kali box
the machine you spin up
bro second time im mid in an CTF and the site its just gone cant load the target page
what is this
the website is super popular
the machine you attack is unlimited time
target machines you get unlimited time
attackbox is 1 hour a day as free user
thanks shadow
Gave +1 Rep to @sand trench (current: #4 - 2253)
attackbox yeah, thanks shadowww
Gave +1 Rep to @sand trench (current: #4 - 2254)
AoC is soon and i have forgotten so much
we got you in our prayers boiiii
no problem



