#general
1 messages ยท Page 1832 of 1
i can't link my discord on the app where would that problem go
lol
Before ur message general 
it might be a problem to them cause that's messing with a whole company which won't end good
Yes, they get caught frequently by the FBI
Not just hackers, people steal CC's and make fake one's using real numbers
SCAMMERS!!!!!!
i hate them
Best defense is to keep a close eye on your accounts
Waste their time, don't try to hack them - leave that to the professionals
Jabba, how have you been?
You can disrupt ongoing investigations. There's a lot of teams that you can submit tips to
busy
hey guys! Just thought about this, I want a tiny, stealthy device that fits behind the target's router's ethernet port and creates an access point to the real network. It must be plug-and-play. Is it possible to make?
since the device is connected via LAN it has an access without password, and then I can use that device to host an access point to the router and I can get access to it's network without cracking any password?
Is it possible? Yes - restricting the discussion to our advanced channels because you only have 15 messages and are unverified.
wdym?
To continue the discussion, it has to go to #advanced-general
GUYS
I did not had to rename my legal name to King Martin
They could fix the certificate name
had to do some stuffs today to fix dotfiles
as a package had a rename/rebranding and also moved
Yoooo
Means I'm cool kid ๐
You are a Legend
๐คฃ๐คฃ
@mossy river can I ask you something in dms
It's dead here bro
Guys i have a problem on kali lunix
What is the problem
damn i just joined kinda expected it to be poppin
Just wait a while, it ain't that dead
ok thats good
Yup

lol
well maybe shadow should go through all of xkcd comics just to pick which to use for wallpapers
Hey guys, I ve had a lot of trouble doing dual boots in my laptop, now I want to try a full boot instead, but I am afraid it won't work since dual booting isn't working. Does anyone have any recommendation?
linux mint should work on most hardware with minimal problems
Lots of ppl are at work and stuff
I tried dual boot with mint but didn't work, u suggest that i should try full boot linux mint?
uh-huh ... and in 6 hours it's gonna be .. they are sleeeping and 6 hours from that, they are busy
HahahahahLol true
yeah...
when did thm change its ui?
I came back after a long while and it felt so weird. I thought thm was down or just a browser error.
for dual boot to work you need to mess with windows install first and linux install second and also having to deal with tpm and bitlocker and secure boot... all of which you can skip if you install only linux mint.... maybe you need to deactivate secure boot for the install but should be possible to reenable it after
a month or so ago
easier to get a pi than to dual boot lol
Yeah i first tried with kali, then ubuntu and lastly mint, none of them worked. I deactivated the secure boot but never heard of tpm and bitlocker. My goal is to have kali, I guess that if I install mint then I can easily install some of the kali tools right?
Bro why are you doxing me thats a real picture of me how did you get that
0:
How u been homie
Been good thanks for asking lul you?
Dm 
Does anyone here do Networks security much? I've slowly realised I'm basically the only person in my University who's got a knack for it ๐ญ
That's my new name now ๐
yup lol
Can anyone help me
I need a crystal ball or you need to ask a question ๐
Nice, what kinda things? Small overview?
Vulnerability capstone
Firewalls and load balancers
How can I know the port for netcat
oh, no, I haven't looked much at it in terms of exploits rather in terms of standard practices and secure networks from a configuration standpoint
or patching netscalers every other week lol
Eh? Netcat is a program you provide a port for, I'm not sure how you'd be able to find a port for it?
You'll need to provide more information on what exact room you are doing
Try using #room-help , it gets lost in here
Ii used many ports
But didn't work
nc is a client server relationship and you can run it as either a client or server
you can use it as a client and connect to any service as well
so without context, the specific room, and task
and without showing what you are trying to do and what isn't working, ... well we need more info ๐
I see, I know one or two people who are in the same boat and know security architecture as a consequence of getting into homelabbing
Never seen anyone who nerds out about protocols and network exploits though ๐ญ and since us homelabbers are few, the rest of the cohort is even less of a fan of networks
i love busybox
Well, what does running shell_me do on the CVE exploit you have?
Sure
Yooooooo lets go, I love me some hypervisor-based exploits
Yes I have
what are simple challenges for like beginner
My problem with port number
I'm fairly sure that I've seen an exploit of the exact same sort months ago though
Yes, what's the output?
I understand you now
Your listener is ready
You set up a netcat listener on your machine via nc -nvlp your-port-number first, then give the exploit your port + ip
Same port you're listening for
Then the exploit should, if everything's correct, make the machine give your listener a reverse shell session on the victim machine, and you're in
Ok how I can
also run python -c 'import pty; pty.spawn("/bin/bash")' when you're in
That command first in one terminal, with a number like 4444
then do shell_me, and point it to your IP + your listeners port (eg 4444 like above)
and then you check your netcat listener and see if it says connected
Oh, I put that but didn't connect so still listening on
Might be something wrong with the exploit, or your input. Check exploit CVE is the right version for victim machine + check if the exploit errors out after you type your info
what script are you running wasn't acid's script written in ruby?
- see if it saying you typed details in wrong, like maybe you have to write
10.10.21.33 4444instead of10.10.21.33:4444
Also check your IP is correct
Same one that you have from tryhackme's openvpn, or use attack box
I use ready file in machine but I didn't do any updates upon files
Other than all the above, I'm out of ideas ๐
Thank you maybe wrong with machine?
Gave +1 Rep to @glacial cove (current: #1107 - 5)
I have applied all instructions correctly but didn't work as well
How
Oh ๐
So random question are there any industry superstitions? Like for example the company in Taiwan that puts the Kuai Kuai on all their servers.

Thank you it's wrong with http

Gave +1 Rep to @frozen hull (current: #223 - 44)
I know


Hi chat
define easy
Go to challenges, and look under easy


JUICE SHOP!!
Those marked easy?
It's already on a path
Hey I found the problem
It's at http
I should remove http
That's command
Python3 file name IP address without 'http'
Let him follow a path
Yea, so? he want easy ctf
its like the first one they ahve ya do
but it would be better to do the path first
Y break the cycle 
hackers break stuff
yea. when doing revshell and so no http/https or so
pure command

Hey when I finished the path learning, will I can do challenges at try hack me
Ya after jr pentester
U should start doing some
It'll be fun
@stoic olive alos if ypu do not know for 0day site
https://www.revshells.com/
it can shone some light in revshell and so
Why I feel after finished walkthrough as I don't know anything
do you taking notes all the way ?
also when you learn smth, redo that in other rooms. just for fun and for learning curve
there is no reason why try to do smth in any room you do or so
Do you mean take notes on notebook
Or any app
Hi everyone!
in some note taking app. like obsidian and so

How can I know the room challenges for me I can do it
I need challenges for my levels
That's means
no one here know what to do when starting
Also I review my rooms that I finished
i also started with minimal knowledge of cyber. i just know linux at that time
also good stuff...
this is how my notes looks like. make notes priority and things will be clear fast
thm machines are full ok to do stuff.
What's the labs
App I mean
So it's important to take notes about codes and syntax
Spotify:
https://open.spotify.com/album/0UjfY2KYdu6JHyVSEJft93?si=-8K3KRjnTW-6eFQMqbMcnw
Lyrics:
Into the water, hey oh ho
Miles away from our home
Row now, heathen row
Burning water, friends and foes
The gods shall hear us roar
Whispers of an ancient lore
tired - since before
Mend my wounds and heal my bones
So row now
Burning water friend...
you take notes as best you can remember them to remind you
And write it my language
yes
in time, the commands will be in you hands without need to cehck notes
and then you start build own scripts
to automate things
So the route still long
depend of you pre knowledge... cyber is constant learnning
I know how codes work although I forget some things
same was for all of and most ppl. now i have them in hands without need to look. i do look from time to time but yea
My basic is good but I need more
more the basic you know, later when deal with advanced stuff will fall faster in knowledge
I must go to the company to training and develop my skills
if you have decent pc or so, you can build you own pentest home lab
virtual machines is great
I have completed of jr pentesting but I need to review
I fear do illegal something
if smth sounds illegal and you have that "scared" felling, then do not do. also you can ask ppl here... you can do stuff on you own devices/machines and so. outside that is no no
try things on thm machines is ok. but you can't use thm machine to go outside them on live internet
Only practice on websites that have the challenges for you to do so
i hack my own wifi all the time. ๐
your other option is downloading vms or creating them and installing vulns
then use another vm to hack it
and just avoid scanning or doing anything to public IP
Yes but I want more task to up my skills
๐๏ธ
first, learn the basic tasks.
Premium version on here provide many room and there are other site too for ctf
yes this site good for beginner basic
and build on top
i buy some crap/chear routed for my self to test things.
if that router can talk... oh boy...
i brutforced hy admin login so hard that he have nightmare
ctf have many task for beginner
yes
when you learn one thing in one room, then try do same thing in next room that you finish. and so on
I was in a room once that had an easter egg that wiped my system
fun!!
wft... that is not on thm for sure. or was the room it self
i found it
lol... fair
Ahhh noice, the first thing i learnt was arp poisoning
my brother would get angry on me
I learned about ARP poisoning in 2000

in my country, many people go to the blue team
seldom people go to red team

I know!
That's why unc is here to help boi


You are doing good kid!! Keep it up and youll be 0x2 by next summer for sure!
Hiii ๐
I want it on record that it wasn't my fault. I think I broke my microwave. ๐
having fun setting up llms to run in the terminal as well as applying to a couple jobs;
Naa i added it to my botnet
Ya doubt that 
oh did i mention i got a cool japanese rice cooker?;
that is peak smart home tech;
Does it speak?
Hey, new here and while I'm definitely looking forward to learning more here do any of you know if there's a server or group I can reach out to about ethical hacking scammers?
same with my airfryer toaster oven;
Damn
by definition that wouldn't be ethical hacking;
The real qn is can u ?

it could be justifiable of course, there's cases of extreme situations like journalists infosecing extremists;
mind if i dm you?;
Check out my random X thread UwU
https://x.com/Advik_Kant/status/1986512422296043916
Who
I would love to give details of the experience if this is the place to do it but don't want to flood anything off topic in the middle of your conversations.
I am just waiting for the day I learn enough to be able to mess with my Dad and all his smart home gadgets lol
grex, though i am always open do dms badboi;
not that hard if you really want to tbh;
I cannot hack, I can build computers and what have you but I am not on a level of breaking things intentionally at all
U don't have to ask permission 
that's hacking;
hacking isn't inherently distructive;
hacking is making computers do what you want;
or any tech;
that can be constructive too;
building a pc is a form of hardware hacking cause by definition its a custom build;
Essentially I have a family member who called a "help number" she gave them access they downloaded a VPN and removed all of her wifi/Bluetooth/Ethernet drivers
one of the most annoying parts of hacker culture is people have been convinced hacking is inherently about blackhat stuff;
that's actually only a very small subset and many blackhats don't actually hack;
They downloaded a bunch of files name Driver 1 Driver 2 ect all the way to Driver 6.
like script kiddies are usually not hackers;
And "Eyelot"
That's good to know I'll change the way I view hacking for future conversations and future research purposes.
I can certainly see the difference and had never given the title or word much thought.
wait so how would that work;
did they set up a virus that can run offline after deleting the wifi drivers?;
unless the wifi driver deleting was last i guess;
or if the devices all are lan or something through a router;
I'm not entirely sure, I get my hands on the laptop on Sunday, I'm assuming they disabled the drivers but installed an access point through a VPN? Unsure, they also gained access to her phone.. they logged out of her phone critical programs baking apps which makes me think they may have a keylogger installed there.
But as a hardware guy they shouldn't have access to a VPN without the wifi adapters working.
i mean if it were mean, remove the power from all of it;
and then do forensics on it later with a professional forensic investigator;
anything that advanced you want professionals cause that's an advanced threat actor;
That's what I had her do, I had her do a factory reset on her phone. I am getting access to the laptop on Sunday and it has no access to my home network
just reinstall os on that device
no not a reset, that destroys evidence;
It is also entirely possible that she did something to disable all of her Internet drivers
That's my plan
depends on if you want to identify the threat actor though;
I have a phone number and a business name
imo though i would, likely this would happen again;
if you do not wish deal with things. just reinstall
I will definitely look into how to do that lol
its possible the phone thing was a distraction and they had physical access;
or also you can factory reset router and so things
Like I said I'm tech savvy on the hardware side. Still learning everything else
the reason i'd be hesitant in this case is its unclear the motive;
fair yea
The motive was 100% to gain access to financials. They had her scan a $500 check to them and then saw a monitoring device of her Bitcoin that was near 30k usd
dear lord
the biggest advice i'd give is don't be afraid to look for a professional;

Yeah, we are in a Rural area. Not a lot of professional technical help here.
at that threat level you would want to consider connecting with nsa or fbi;
thats a fairly serious threat actor just based on description;
Yes, I am gathering all of the info for the FBI
you can turn on wireshark and let the log all the things. but wireshark can do big size logs. and if you do not know what you look it will be hard to find

Hey guys
Ello

Is there an effective way to store or log all of the information that is currently on her PC onto an external drive so that I can preserve the evidence while getting her device back to functional?
yes but thats something you want a forensics expert to do;
its very easy to mess up and it can have legal implications if done by a novice;
Correct me if I'm wrong but revo uninstaller pro offers a service like that
like they could accuse you in court of falsifying evidence;
that's also why i was saying you want to preserve evidence by powering off the devices atm;
Yeah they are all powered off (as far as I know)
Pls ๐ฅบ๐
Can anyone mentor me in ethical hacking
Am a total beginner with no hacking experience
You don't need to be teaching me, just lead me through the roadmap and resources with some little advice and support
I'll appreciate a lot ๐
then yeah get a safety deposit box and store them until fbi can pick them up if possible;
Could someone fill me in on what's happening? I just got here lol
someone apparently is trying to steal 30k of crypto from some lady;
and they are doing shit like deleteing wifi drivers;
hence they seem like an advanced threat actor imo and they should work with the fbi to preserve evidence imo;
That's insane
Yeah, it's my grandmother, she knows just enough to get herself in trouble.
๐ญ
My grandma can't go two weeks without getting some strange virus no ones heard of lol
They tried to access her bank accounts through the check she so willingly scanned to them but that got shut down at least.
insane, im here since my 13inch mcbp is telling me on brave browser how i amn on mobile? anyone else run into this issue? i seemingly checked the archives.... ?
I legitimately have team viewer only so I can login to her computer weekly and clean up
There should be a option in the sidebar to request desktop website

what is the browser's zoom?;
Smart. I wish there was something like that on iOS
Anyway, thank you guys for entertaining my issues. You are all too kind.
rustdesk is a thing;
Hi
I will look into getting her laptop to the county forensics team to see if they can copy and clear it for us.
i would also ask for a new wifi router and power off the old one;
both for security incase it has a backdoor but also so you can potentially give the router as evidence;
it also would ensure they have less access to your network if the ip is changed from new hardware;
looking for the side bar, the zoom is 150%, just seems wierd since i was running a VM previously on this device
I'm at my dentist and they have sticky note with the user and password ๐, I'm not playing to do nothing but it's crazy that's it's there.
zoom changes the size of the window, and the smaller the resolution of the window the smaller the device seems like to the browser;
do that in a vm with a small resolution inside a vm, and it will think its a phone;
at least by default, there are ways to force the desktop website on mobile and desktop;
yeah wow it works now with different zoom, much appreciated
depends on their threat actor;
in many situations, written down passwords are actually better for low tech offices;
the problem is more that you as a normal person could find it;
wierd since the side bar i couldnt find the desktop client but whatever i guess
I'm not a normal person am I ๐ข
normies are less fun and have worse pfps than your cute one;
Lol
Keep it for evidence but if it has a bridge mode enable that and route it through a second one. Not perfect but eliminates alot of potential vulnerabilities
I prob should say something about it
And btw it's multiple passwords, usernames and phone numbers
definetely speak up, its good for their security to know and their management to be forced to review their security;
as long as you are saying it out of good will, the worst they could do is ask you not to return;
good samaritan law iirc;
not a lawyer not legal advice etc etc;
if its a larger org or company report it to their secure disclosure tip line;
if its a small business then ask for a manager and tell it to them, making it clear you are disclosing in good faith;
there's nuances depending on what country you are in of course, i know in usa + canada though usually good Samaritan applies to security disclosures done in good faith and as long as it is not public disclosure;
if you told the entire internet about the vulnerability though you'd be at risk of legal trouble of course;
At least it's just some "Dental office somewhere" in here
yeah vague hypotheticals are generally ok;
its the same way you can do a report and then change the details to remove pii and still public that report with protection;
assuming there's no reasonable way to identify the victim the report was originally about;
Man there is SO much for me to learn here
its sort of the same way if a rapper makes a song about some crime, generally speaking they'd be protected from it being used as evidence of a crime;
assuming the lyrics are vague enough;
W
cert id code iirc;
probably just to prevent fraud;
say if someone claimed they had the cert but the id was the same as a legitimate cert;
you would know they just photoshoped it;
yeah was suspecting something like that
good system
tho problem is my thm account is using my general pseudonym cashkhonshu so this wont be much help in job apps i guess
Well when I get home on my system I am logging into tryhackme.com and exploring the options there 100%
yeah i used my irl name for anything education related usually;
but then again i am not trying to be a ghost or anything;
Are these certifications widely accepted?
no;
these ones are more just for porfolio points;
or to share on linkedin;
in terms of a job interview anyone theoretically can copy and paste the answers;
In the Cyber security world I've found experience typically Trump's certificates but just curious
the only ones that are officially recognized are the paid certs;
since those are proctored;
def do that, its peak
It's about time I use my PC for more than gaming lol
it does have value for many employers though, some will cover the cost of continuing education like try hack me while on their payrole;
and it doesn't hurt to have it on linkedin if only to prove you have experience with the course material;
300โฌ for a cert is crazy tho
I don't mind spending the money if it helps me learn anyway. I gotta do something more productive after the kiddos go to bed anyway.
depends on the cert;
for sec + that's a bargain;
since its "the best" in pentesting roadmap
you can increase you earning per year like 20k potentially compared to it help desk;
I was going to take my CompTiA+ but was told it's not worth it by some IT professionals idk if that's accurate or not.
300 is a relatively small cost when the opportunity cost for your career is that high;
its situational;
especially since ill be applying for Cyber Security Analyst / Pentester at the german military. So if i go down SOC and Red Teaming + buy certs ill prob make some good money
in my area, most jobs require it to even be considered;
dang thats crazy
and its a lot more important to have certs if you don't have at least a bachelors;
I currently work as a purchasing Manager for a Millwork and Prehung door company so I kinda am looking for a change of pace.
in my case it acts as proof i have the equivalent education to a bachelors;
but again different circumstances impact its value;
Cybersecurity is definetly a really good choice. Especially with people starting to rely on AI security flaws increase
plus i was able to get mine included in the cost of the bootcamp i did;
and the government paid me to take the bootcamp;
so in the end i got the cert and made a bit of money while doing it;
I almost did a bootcamp at the state college here. But we had a new born and it was just not the time. Things are a little more settled now.
but i was on disability the whole time, it would have cost me if i wasn't on disability;
That's perfect timing then
yeah every hardship an opportunity;
same way i used covid to train myself in it;
i already was an introvert so i already was studying online anyway;
you dont choose the cards you only choose how and when you play them;
Grats
And even signed by Ben Spring Roll Skidy
Did you accidentally post your CV in here?
just another scam
spamming, AI text, AI profile picture
oh lord he posted everywhere
๐ค
I reported
Same.
Why are you spamming this again?
Advertisement.
That's like asking a brick wall a question though
Of course I did the same lol
They responded last time
ahhh
ahh yes ... "do you have any projects" "i can help you perfectly"
loll
Haha that's the one
Anyway. What's everyone up to today?
Trying to work but its borning clicking though config web pages and pasting stuff
perfect project for kent here
I usually do that
when ever i read AI smth smth my brain just goes 404
but that's not going to cut it for the Velo Orchestrator, will be quicker to do it
I should also learn how to use the API for it
I need to start including -- emdashes in my sentences -- at random locations -- so I can become -- AI
What a great idea. I didn't thin of that. You're so smart
(Me pretending to be ai)
Hello Violet!

Such an active chat
Boredom is real. Someone do something crazy.
It used to be an addictive chat, now it's just an active chat
Soon it will be an ancient chat!
Where are we moving
Idk, but that's where the train is headed
Kinda wild for 300k members.
bruh GTA 6 delayed again
welp got through the first 200 xkcd:s again :D
is GTA still big/popular these days?
Bro, I swear they are gonna keep delaying it until 2030 or somethin
Yeah lol
They still make bank off of online
i thought all the kids were still playing military shooters or battle royales
then again, EA sports games are still being made each year, so maybe im a little out of touch
Why
mostly to see which ones can be fun wallpapers and also nostalgia
I think I am short of some information here
I started doing lots of cheats in GTA V and having fun, mostly offline. When online I just killed people randomly on my MKII
but now they have more strignet cheat systems and you have to install risky stuff to bypass
But people have cheated in that since day one, that's why it was never some competitive game
Are people shitty in voice chat? Slurs, insults, etc.
I never did voice chat in gta v
thats like trying to do voice chat in wallstreetbets
lol
or if 4chan had it
i stay away from that toxicity
Haha that's exactly what I imagine it to be like
Pre teens yelling out the n word.
and every cuss word
but they do that in chat in game and a lot of times the chat in game is in spanish
Haha it seems like that stereotypical gamer type will never die
Dident fortnite ban a whole bunch of players this spring because of bad behaviour in voice.
It was retroactive too
So it was from recorded voice
Or maybe it was CS
Some big game
Oh. That sounds both really good and really bad
I only did fortnite for a couple months
I did play non build alot, I was quite good also
it sucks, i miss quake ii and doom .. you know, just killing,
no messing with walls or buildnig towers
Q2 with hook
yer classic style death matches were fun
build mode sucks
respawn instantly
nothing but kill kill kill
my friend had all the power ups timed so he could steal them all and get all the kills
i think one of the new battlefields does that but im really not a fan of military style games
I remember when the first one came out
Battlefiled 1942
I played with my friend on a team but the team had 3 randos
and if they took a plane i wanted (my teammate) I blew it up
๐คฃ
Nice of him
that was a good 20 years ago
I was quite high ranked in BF4
i didnt blow up my friend, just randos lol
you guys ever go to many LAN parties?
When young, yes
i miss them
yeah , take my comptuer to my friends, get about 8 people there
connect everyone to a hub
good times
ah the memories
yeah, we're the pioneers of gaming
i do not miss crt monitors though. those fuckers were so heavy for a skinny nerd teenager
yeah no kidding
wish i had pics of me in my 20's hauling that stuff out of my car up my friends driveway
We took them in shopping cart trolleys around the city
Panda be chilling
with his GBA
So much joy in reciving emails from managers that I am rude towards L1
bah
xkcd good nerdy comic
shadow has a script that turns said images of comic into desktop computer wallpapers
shadow is going through the entire 3k+ comics to decide which to keep for wallpapers
while doing so also having fun and nostalgia as read all of them before too
share some!
Hey guys,
Tbh. wasn't that big a headache really to get Ubuntu running on a laptop.
The more I research Linux as well, the more I'm questioning why I should stay with windows even on my gaming desktop ๐
Anyways, thx for the "push" to get into Linux, feels really cool to be doing just basic installs with "sudo apt" in terminal ๐
Security fest tomorrow! We should OSINT challenge
one of my FAVS
Im old enough to be your mom
๐ญ๐ญ๐ญbruh
Yes son
that's disrespectful
MAth is old enough to call people son

anyone over 40 has that privilege
Respect your elders
Unc
be careful your back might hurt
kids these days, no respect
keep the posture in check
I am Unc, When visiting my niece in UK everyone call me Uncle ๐
Respect is a two way thing
calling someone son is respectful
until* btw
Better than call someone a mistake
both mean asf
maybe just don't call shi
is calling someone "daughter" disrespectful?
We will just call him son of Echo
Context is important in all of this
exactly
He called me bruh, I replied with Son, feels respectfull on my part.
I do that now ... Mother Trucker, That Grape hole!. that guy is a real son of an echo
Just fine thanks and you?
doing aright
Welcome here, have you started doing rooms on the site?
Fine, I'm new here. I join by a recommandation of a friend he say I could learn a lot here
They were correct!!
(sorry my english is realy bad)
It is great
I speak like an A.I. ๐
even if you know things, just read through the materials
But -- are -- you -- an AI or is there -- some -- other -- trickery
Do you have a salon for that ? (Idk if it's call like that in english)
Salon you say
room or channel
the website has "rooms" and the discord has "chanels"
๐
check out #start-here
but i knew what you meant
Thx
Gave +1 Rep to @sturdy sequoia (current: #237 - 40)
Go Shyft!
What are you doing there
Seeing the new OWASP Top for 2025
I dont even want to know, gives me more work
It's highly inaccurate
what a bold statement
Is it free ? It's ask me to log in
Soon soon padwan its over
by 2026 you'll see it was inaccurate
some parts are free, some arent

Ah ok
I hate when they do .. best products of 2025 .. the year's not over yet!!!
ok
Paradise
Let's regrow this place with fun
I am allowed too
I even get paid time off if we spend a day in some CTFs
Even if we don't score well it looks good if we take part
That's pretty sweet
So get Claude, Gemini and GPT to all tackle the CTF for you while you chat on Discord
beep boop beep boop
meep moop sloop
Does anybody know when the OWASP top 10:2025 RC2 will be released if there will be a RC2?
I don't
Okay
But I know a guy who knows a guy whose brothers best friends cousins uncle knows Mr. OWASP
Awesomeness ๐

Hey wizard its a breeze till legend
and then it takes FOREVER
im still notching to TITAN
Sources: This week, it could be tomorrow
Thanks!
Gave +1 Rep to @austere prairie (current: #3246 - 1)
Mr. OWASP speaks very cryptically but he got my message and replied
and he said that it would be out before GTA 6
whats good im new here
Just a whole lot of fun and excitement
I can barely contain myself to be honest
But I am doing a CTF
have you done rooms yet
i just did 3 now lol
just got my first mystery chest
im new new
The ISC2 CC exam is free to take rn. Id recommend making an account and trying fellas
Did.
and it is the meepy moopy meep moop to beep boop while sleepy sloopy sleep sloop times
that hurts my brain
night shadow
Hows it going everyone, im new to this platform and hope to benefit alot from you all
Are any mods active here?
I don't think so, if you need something tag them
does anyone know the concequences of breaking the terms of service of a websites API, im trying to make a scrapping bot to refresh a webpage and send me a notification if something im interested in is posted, any tips?
most sites have a robots.txt file within their webpage
at the end of the url add /robots.txt
it will show you which pages allow web scrapping and which dont
Thank you!
Gave +1 Rep to @blazing granite (current: #55 - 196)
that's stipulated in the tos, but generally can be end of service, and/or a fine, even legal actions, depending on the tos and the severity of the transgression.
might keep my head out of it so
its litterally just for personal use though thats why i was wondering
but by the looks of it is only blocking bots from posting on the sight and not scrapping
A robots.txt file does not list which pages can or canโt be โscrapedโ directly, but rather tells web crawlers (like Googlebot) which parts of a website they are allowed or disallowed to crawl.
I asked GPT and your right, ig i read wrong
sound
video
should i just quit cyber and become a roblox streamer
Are you making money?
in what
idk i bet people do
Hello guys
and girls
Monkeys
I feel like this how programmers be lol
sorry, I'm brazilian, my english isn't very well, but I'm to learn while studdying hacking. I think this discord is opoturnity to learn both
welcome. #start-here is a good place to start
thanks
Gave +1 Rep to @sturdy sequoia (current: #234 - 41)
I just make scripts
In python
And html stuff
But im not that good at either
Why I keep it simple
I got a haircut
cutting hair waste of money
what would you reccoment instead
fire
yeah u need to wet ur scalp but not tip of hair strands and make sure u are near a water source just in case
nice, ill be sure to try it out next time im due a haircut
or become a long haired king for free
woke nonsense
samba remins me of zoomba
gawd dayum, suddenly its 3am and i gotta get up in 3 hours
what is the best financial advice?
spend money on streamers
crazy
What in tarnation is going on in here?
hello, where do I ask for help?
google prolly
good n tired hbu my man
I cant open my attackbox
why
how do I send images here
verify
okay wait
Any Staff on I an DM on a question about Advent of Cyber
its like t
sign out and sign in
waiting
Not an admin, but what kind of question
I'm good
thank sir @fervent cove
Gave +1 Rep to @fervent cove (current: #622 - 11)
yay
hooray
Ill drop ya a DM
I also have a question, if I complete this will I have a downloadable certificate? Even if I didnt pay for the exam?
yes
I see, thank you! I was not able to pay for the discount because its expensive and I dont have enough money
thanks sir @fervent cove and @dark wolf
Gave +1 Rep to @dark wolf (current: #71 - 144)
ill continue my learning now, bye thanks all
o7

Take care
Question, alongside the obvious cybersecurity aspect is THM useful for learning how to code?
not really. im sure there are many other better ways to learn coding
Is it a good start?*
No, there aren't really coding lessons here
I do understand that, just phrased my question wrong
well, there are zero lessons on how to code
but there are lessons for coding securely
yeah, tips on how to not be a goofball in php forms
but not how to code an app in c
I do private tutoring for 1BTC/hr
w speed
I can do 1 lira
I'm sorry, pricing is set in stone, has been for 20 years
Although, I've never gotten a customer yet
But im not budging
idk why bro but ive been putting 500$ ever 2weeks in all crypto that is hardlosing in the past week in hopes that it shoots back up and it never works
hasnt been working but one day
Isn't that why you are in the server?
๐
Hey Tim!!
tim can u suggest any boxes i can do this weekend in prep for ejpt
How are you doing ?
I'd say skip eJPT and prep for PT1, but I'm slightly biased. ๐
Very good, how about yourself?
but i heard pt1 is hard
thats mental
you need confidence in your skills
then you master test!
practice until you know what to do with out trying to figure it out
i think theres another year of studying for me needed lol
Look at it this way, if anyone fresh off the street could get it in 3 months would it be worth it?
It takes time to build up skills and get the certs you need to get the job but its easier when you have a job to practice the skills to get more certs
Life is long!
your not wrong the grind never stops
Consistency is key in this field
I was wondering when should i start tackling the challenges ctf's as a begineer?
eJPT is really piece of cake tbh
that's not prob, but gud luck
It's relentless
I'm about to do 2 cisco courses to renew my certs
company paid for it ๐
I work for a company named "The Company"
a company would have to pay for it and pay me to get cisco certs
omori is fantastic btw;
very very bone chilling though especially if you have childhood trauma;
get job help desk and after a few years grab network tech job
and then move to network admin and get company to pay for the ccna
easier said than done tho
getting a help desk job is a lot harder nowadays than it used to be yeah;
nah screw networking
like i am looking for a help desk in addition to cyber because at this point i just would settle for any job;
i rather flip burgers
well cisco isn't used as much in security so it's not as great a cert
but for networking its good
In fact the new SOC content they released has a test of what you would do if there were a cisco vuln and one of the choices was repalce cisco with fortinet
LOL
lmaooo
fortinet has a fortinet operator course for free in its website
I'm doing it ๐
Nice
FortiGate 7.6 Operator is part of the Fortinet Certified Associate
So many certs these days
We live in the information era, but people know less and less because they don't read just they ask chat gpt ๐คฃ
What's important is problem solving, troubleshooting and research
those are skills in extinction
Not completely, we have lots of smart cats in here
How many PT1 certifications have been issued?
1000
That's all?
haloooo
wdym
Random questions, but are writeups/walkthroughs allowed on them? Can I create my own without any restrictions? I've been looking at the TOS and other places, but can't seem to find anywhere that it states specifically the rules.
Write-ups and videos are allowed for most TryHackMe rooms. I think the only time you're not allowed to is when a challenge is newly published, and or during CTFs/Events.
Hey so I am an experienced web / devops engineer. But my interest in those is fading and I want to transition into cybersecurity and wondering what are some job titles that I could adapt my current skills too and which certs are actually worth it for interviews? Looking for a hands-on path I can grind over the next couple months.
Hello
i cant help you but welcome
๐
You can take any path you like.
If you want to get your foot in to Cyber, look at blue team.
Huge need and entry level is quite easy.
Look at SC-200 Cert
Entry level position doable in 3-4 months? cause I want out of development hell lmao
My computer keeps crashing halfway through. Can you help me with this?
Consistency is key in this field
Hi. Sorry, am I missing something? I see there are few soc simulator scenarios on the soc 1 path but when I try to do them, it takes me to business plan...
yeah, most soc sims are business only
no problemo ๐
in case if you doing any writeups, make sure to cover the flag
oh man, the ai that reads the case reports is killing me. Losing 30 points for not mentioning there is no harm is brutal...honestly
hey
will it be like that on the exam too?
hi can anyone friend me i have no friends
Hey I was just wondering if someone could help me with a pdf document I need to crack? It's a kinda important and my computer is having issues with installing C for solutions lol
i wont accept your friend request but im happy to chat here
It's my pdf document relating to my personal health for more info, I just can't find out the password. It's necessary for my psychiatrist ๐ญ
cant you get the pdf sent to you again from the source?
Nope, still locked
aloha
why would someone send you a locked file without the password?
on the SAL1 exam?
Nah they did, it's just this file was made back in 2018-2019, I thought I had the password, but it isn't working, and yeah Its been and few years and I need it
usually if about healthcare institutions you can contact their administration (staff etc)
so why cant the creator of the file, or the company they work for, send you the information again?
Nah yeah like it is, and I did lol it's just to get more personal and info related, it's with NOARC
and with them, after the assessment is done, it's locked
yes...
Password given to the user, and it's their responsibility ๐ญ
the SAL1 exam won't be locked when you take it because you don't have the business license
i mean, i got all the 5w's but didn't mention it was no harm even though I explicetely said this and that, the user did not access the link, blocked by the firewall etc
no no I mean with the case reports
i know
I believe it will be similar, but I'm not 100% sure
Cause when I did ask them for the same file, it was locked with the same password
And ye they won't provide me with the password cause like. They think I would remember after all these years ๐ญ
sounds like a shitty system
Definitely bruh
So like. I need to crack the password, and I'm 90% sure it's less than 8 characters, I just don't have Kali set up, and when I did set up everything it's complaining about my virtual environment smh
I can 100% give password guesses to shorten the length of time it'll need, just it's more of a private convo with someone willing to help ๐ญ๐
interesting
I can 100% chat with whomever and further explain lol if you're able to help just lemme know
It's just more of a private convo
good luck ๐
Thank yeh
Hey guys, is anyone able to help me in https://discord.com/channels/521382216299839518/522158539129618453 please? ๐๐ผ
OWASP Top 10:2025 RC1

