#general
1 messages Β· Page 2209 of 1
used winhance, its epic
with winhance you can uninstall stuff , microslop doesnt usually alllow
wintoys my beloved
Why?
its basically just saying fuck you to microsoft
basically "stop taking my data"
Yeah I saw that lol
finally
i might use winhance
Sorry my brain is not braining now.
if its such a concern, why not migrate to linux?
i need a ssd.
i want to move my important files
to an ssd
to keep
he ie scared of linux
its okay
no its not that
what if
i just need to keep some files
the cloud
and im not using fucking cloud services
can make sense; you can encrypt b4 upload
yeah man
debloating windows is such an odd concept
ok this shit might be peak
but first
kind of true
every device of mine runs linux in one form of another
an exception is my work laptop
strict windows/mac policy
to enforce intune policies
ehm why
^
run kali and quickly do the stealth cmd when some1 looks
the what now
kali has a cmd that makes it look like windows
check "kali undercover"
Hi folks! Iβve been working on AI-driven crypto products: smarter trading dashboards, on-chain analytics summaries, and assistants that explain contracts/transactions in plain English. Big on safety and transparency. Excited to learn what youβre building.
βwhy is that guy running windows 10β
such stealth much wow
no.
hey kakashi
I'm not building anything. tryhackme is enought when i already have work and kids
sky is the limit
okay
oh sorry misread that. For me thm is enought right now though
I have stuff i have to do for work too
one project at a time is usually enought for me so i don't start a bunch of things and never finish them
fair enough
sorry again lol i hope that wasn't too rude.
@quasi dome you shy brah
busy and i dont have anything to talk about
im trying to get a good projecct idea
and asking chat gpt to show me what actually thhis project will be consis of and stuff i have to do
before actually asking the instructor so i dont be an actual bum
@quaint ferry is printing
Nice
Use kali-undercover, or kali-undercover --halloween
dheck is kali halloween lol
what are you cookin
kali-undercover disguises your kali with a windows look. The --halloween switch gives it a halloween theme π
https://www.kali.org/blog/kali-linux-2025-4-release/#kali-halloween-mode
Say hello to Kali Linux 2025.4!
Expect updated tools, performance tweaks, and improved support - no fluff, just the essentials.
The summary of the changelog since the 2025.3 release from September is:
Desktop Environments - Changes to all! GNOME, KDE & Xfce
Wayland - VM Guest Utils Support
Halloween Mode - dresses the desktop for the occasion
3...
@topaz steeple
fascinating lol
I'm crying this is fucking legendary
one of the many causes behind kaliβs bloat
jeeez
π
You're welcome to use blackarch or pentoo if you like
for pentest work?
iβve hardly ever seen any of my colleagues use anything aside from kali
(one guy uses ubuntu)
Well the thing about a pentesting distro is that you only need it to be stable until you get the data you need for your report. You would be starting a new pentest with a fresh machine. But essentially whatever works. And yeah a lot of people use Ubuntu or similar. Whatever is stable and effective
yeaahhh i snapshot a distro anytime i need to use it for a project
im here
hi here, i'm Zack
did you just reply to you self ?
would never
that's what i was wondering
thats a different guy
okay
he replied to here, didnt he?
thats what he introduced himself as yeah
Yeah I keep snapshots of my machine, occasionally a clone incase things go funny
i have funny vm experiences with certain distros up to the point of me giving up and installing them on a spare laptop i have
(notably nixos)
Yeah some distros have their own funny quirks. Always good to have a safe place to see their funny behaviours
im building a covert hardware implant as part of an internal RT development project and using nixos as the host distro
much because we only need to configure it once
it being an already niche distro has it's effects when paired up with an aarch64 architecture raspbi 
Yeah I can imagine it's quite funny. Nice little experiment. I remember using a few RPis in a data centre to do some monitoring. Their failure rate was quite high but it was an interesting test
It'd be nice if raspberries were to get better support all around
almost everything i end up needing to do, has either never been documented before or is not possible on a raspberry
Always fun going down a rabbit hole like that and being the first to do it. Interesting to be an explorer in new domains
Then in the end, choosing whether to write documentation or not....
Always good to make notes as you're doing something. How well you organise them is up to you, but even though it can be a tedious task at times, knowing precisely what you did will make it easier the next time. Of course, sometimes that just means keeping a backup of certain config files, sometimes putting notes about it in those files, and sometimes a long, rambling runbook document with screenshots and notes and discussions of what particular settings do
Hi
A lot of the time, making notes, you never read those notes again. But sometimes making notes means you have a deeper understanding. Pretty much what you're doing when you study as well... And handwriting some notes, even a few keywords can be very helpfuil
I need help to land my first job in soc analyst L1
Confusing in choosing technology
Splunk or sentinel
I have comptia security+ and tryhackme soc level 1 hands on but still I didn't get any interview message
What can I do does any thing I need to do more
You should do the SOC L1 path, and/or the recommended learning for the SAL1. Knowing the theory is the main objective. Maybe consider doing the SAL1 certification. The tools you actually use in different comanies can differ, but they're similar enough that either will do. Playing with both would be better though
Nahh ππ
All about TryHackMe Discord Server.
Yeah I completed path soc level 1
I can't afford to buy SAL1 EXAM πΆ
Any other way to make me high possible to land job
i do document everything related to the project for my successors
what u want katie
CTFs, have a blog, do writeups, have a home lab
Oh nothing atm lol
I was actually searching for discord servers to learn more abt ethical hacking and stuff
Anyways I just joined to gain more info too
i just made a plate of chicken apple sausage and made a bowl of bbq sauce to dip it in
i forgot to use the bbq sauce lol
Ask any questions you like. Check out #start-here as well
Some body demotivateing SOC analyst maket is going to end because of automation
But I am fresh graduate I look for entry in cybersecurity
Thnx thnx
are you genuinely interested in working a soc role or are you just following some career roadmap
Aim for the L2 stuff as well. No harm in being better than expected
I'm here for shits and giggles
Following career road map in tryhackme
is there anything in particular you want to do in cybersecurity?
Yeah defensive side
Is it possible they hire l2 for freshers
In cybersecurity
10/10 cable management
where are the other channels
Behind the desk
i was thinking is funny flowers grow lab or so lol
looks like it
^^leading into my parent's room to a wifi extender and same for the living room and kitchen
How's it going peopleee
Lmao
Anyone messing around with networking equipment, need a kinda simple little router for my office to mess around with, VLANs and stuff. Was thinking Mikrotik, don't wanna go all out with Ciscos and their premiums. Anyone got any suggestions?
i have the isp provideed one from 2014 if that makes you fell superior 
12 down 0.1 up
I had this until today lol my parents allowed me to remake the house's network and got me a better router alongside a switch and some stuff
so do I, it's just that in my office that won't quite cut it as I need environment isolation for malware analysis
That's beautiful, congrats!
Only problem is that the modem is integrated in the isp router so its on bridge mode which slightly bottlenecks the router but its whatever
the other home have wifi 6 one with a wpa3 so it's kinda better also its fiber
they dont let you change it in my country
meowland sucks
π₯²
the isp is orange it's in many countries
their tp link providef router is only working to their dashbord
Dang
dand indeed
You've heard of DownDetector.com - The site that tells you when things go down. But what if DownDetector goes down!? That's where Down Detector's DownDetector comes into play. Monitored by DownDetector's DownDetector's Down Detector, which is monitored by DownDetector's DownDetector's DownDetector's Down Detector
can grab a small office router level thing - C1111-4P is mine of choice; still has updates & is pretty decent for playing around
just make sure to have a console cable
- PSU if you're getting second hand. I got mine for Β£40 ish, and a PSU for ~Β£20
Dexter memes β€οΈ
Thank you Beano!
Gave +1 Rep to @elder marsh (current: #375 - 23)
yw. another fun one is an 891F-K9; which is outdated but might be cheaper, and does support more modern encryption types like AES-256
both do also support IPSec iirc
Very nice stuff indeed!!
yep
I love how everyone here knows deep into something they like and help others with that :)
Nice community
Last time i talked this much in a server it was a nice hangout server with teens until the owner decided to send an unsolicited dih pic to his 13 yr old gf
That girl did not need to send it into the main chat
That shi traumatized me for 2 years
Ewww gross
oh nah
What is gross about people helping out eachother with their deep knowledge about one topic ?
No what you said about the about the Pic part
Oh yea it was gross
I still remember how it looked like
Ehhh
Cant erase it from my memory i hate it
Yea that's just pedo
"why do you watch dexter ? Is it becuz it has so much go** in it ?"
Me : yes.........
what does go** mean
goth
gold??? gorb? golf? gone?
there is only like 2 in dexter lolo
stop being weird π
Goon?
i dont think you know what "goth" means
when i think of goth baddie i think of snape
No i dont
yep that's the one
I'm someone who's entered the field of cybersecurity and I'd like to meet friends to learn from each other. Who wants to accompany me?
sounds nice johnny; welcome
That one body may act upon another at a distance ... is to me so great an absurdity, that I believe no man who has a competent faculty of thinking, can ever fall into it
Thank you
Gave +1 Rep to @river garden (current: #45 - 247)
you mean like sneezing when someone talks about you?
the idea that a force could simply "jump" across a vacuum without a mechanical cause (like a fluid, particles, or a "mechanical ether") feels like magic rather than science
like how the earth and moon could exert force on each other through millions of miles of empty space
FUCK..... I just felt old as hell... Fairly Odd Parents Channel Chasers special came out 22 years ago, I still remember it vividly.
WHICH MEANS PEOPLE BORN IN 2005 CAN DRINK
yeah shadows youngest sibling has been able to drink for a bit
the pension home is 3 houses down the road
now imagine someone born in 2010 in Germany being allowed to drink
just some ale what can go wrong ahh mentality
good evenin fellas
hi
hi dude
oh... but we have to wear gloves in lab... yea...
just do a dragonball goku and wear lead clothing to train your body
how you doing?
how u doin
not bad mate
you Red or blue?
soso u
none of the above im worst hecker
soso too
lol crAZYYYY

hmm... in this new age shit thing... can i call motherboard's with that name or i miss-gender it?
Guys, im stuck on this question plz help me
the reference to mainboards have existed for quite a while
its called a parentboard now, yes
Hello
allowlist
denylist
main repo
mainboard
cAn yOu noT aSk EchO
hes not asking echo it's a new echo featurre kinda like duolingo summary of what you learned it gives points
5 min recap kinda thing i did one yesterday
yeah i wasnt that sewious
we playing ping pong from channel to channel 
yeah just thought the same
pong
s windows fine
Im on phone btw and i think there isnt a version for echo on phone
but then it would say the parameter is incorrect
bro is watch dogs protagonist π
Bro what?
i can't imagine trying to use a phone for thm
just wait till they release the app
it gonna be funny
are they planning on doing that
skidy said it wont be for rooms
just some knowedge stuff
recap stuff
i thought i can ssh into it
i get that some people don't have the resources
Likely i just use my phone for recap and see my statistics
Thm recommended use at least a tablet
If not computer
would be funny if they made an add of somone doing a room inside a train or in the toilet
How did u predict me
Im in the toilet doing recap
oh nah
w ai i guess
claude summarize this ai text
π
Programmers is so cooked
literaly in the first sentence
jarvis enhance
always has been
it has to learn by reading code made by humans to be able to do that though
Yea
chatllms cost 10 doolar and can oneshot an app in couple minutes
i read it
obviously not absolutely functional
i bet it didn't take you 37 years lol
was an assignment
it didnt
you must have gone to a better school
we never had to do that
people were struggling with arrays in c++ too
sadly
i havent touched a pointer in a while
lol we were struggling with arrays too but in C
i haven't either
hello chat
when it comes to coding i must kindly disapear cus i dont know nothing
we didnt have cpp
Im miserable
i think literally half the class dropped the c++ class in my community college
hello mate

but even in the university i never had to write a compiler
nah, you must know atleast printf("Hello world");, System.out.print("Hello word");, or print("hello world")
sry to hear; better times coming
i cant even do that without watching a tutorial im cooked
π
we've all been there
i had html in business school that's it
i had html
also pascal in high school
now, thats out of line. mentioning html in programming
be proud of you're baby tthat's it youre website
i made websites but i needed wordpress and elementor
i did make someone a website for his business with wordpress that looked okay, but he abandoned it
he did work on my house so i made him a website
i dont like webdevving but ive sworn to myself to never use wordpress or wix. I just dont like the idea of drag and dropping than actually creating something yourself.
i know what you mean, but you can get a fully funcitonal website up fast
some people dont want to take time much and do more freelance
i did that with my freind
and the important thing for him was he could make changes himeself and not be dependant on me
he's a cursor addict now
vibe coder
yeah he dished all his jobs to vibecode apps
i know you can make it editable by the end user but why reinvent the wheel
i dont like the ai ides; once you go cc u dont go back
i must learn python this year no matter what
u can do it
1k for an app is huger in my country that's why he does it
i think i want to learn more bash but i keep second guessing if its worthwhile
no, i just mean claude code > ai ides like cursor
im learning 2 languages atm
i understand what you mean that's why i need to learn scripting so i dont use dolphin
which 2
if you had to teach me how to learn it what would you recommend ?
python (for personal stuff) and java (cuz uni curriculum)
- bro code on youtube. dont just watch passively but follow along with your ide.
- ask AI to give you problems/idea to code. DONT ASK FOR THE SOLUTION.
- hop on code wars.
swing is terrible though
also is boot.dev decent or a waste of time on free tier
JOptionPane is kinda fun. first time experimenting with gui
if both teej and the primeaggen recommends boot.dev shadow would say it is worth it
i gotta check this later, thanks.
Gave +1 Rep to @quaint ferry (current: #146 - 71)
welp typos galore
thank you shadow 
Gave +1 Rep to @sand trench (current: #3 - 2333)
hewo
ello
no thank you mate
Gave +1 Rep to @languid aurora (current: #197 - 53)
thatβs what iβve been saying for the past 2 years
π
also, I organize study situations with my classmates in person. Its good if you have people to learn with.
we must lock in brah
a ceo of a hacking company shook my hand and said to learn hacking in 2015 it's 11 years since and i just picked it up
greetings
hello
hello sir

β

Thanks homie 
Gave +1 Rep to @quaint ferry (current: #146 - 72)
what is this tryhack?
you hit the snooze button and then a random amount of time later you get a root shell
its a perfect time to snooze right now
evening
Greetings
good morning
π hey
tryhackme
Who wants to test a cryptography puzzle I created?
SEEEENDDDDD
Can I dm you @gritty bane so that I can send it to you?
yes
and I would appreciate some feedback before I post it online
oh nyo dont steam ly points 
Good luck, atoon.
I can send it to you too for a try
im on the cryptography section so sure
@quaint ferry first print. not totally ok. but now i making changes
sup guys
howβs it working out for you? i wanted to do software development but last minute found out cyber security always been my passion
someone PLEASE i need eJPT study material so i stop being a lazy bum
just
start hacking
there is no magic material that will help you get better
go study and put it into practice
there is no secret sauce
best of luck too mate
Do their course. Do the THM paths. Get the work done. Sitting down and doing the work is the only way to do it
why be a virgin DevOps when you can be a chad DevSecOps
hi
i have hash for ppl to crack =/
i love crack
cristal better
crack this
thats gonna take john the ripper approximately 350 years
ragebait...?!?!?!!
nop... real hash to crack. 7z
are you serious
i think it will go through like 5 phrases per second with jtr π
hashcat > john π
hashcat is uglyyyyy
i'm even thinking to rent grpu server and do it. is nothing important, jsut wish it
@polar spoke !!! lol
if you do that can you also crack a rar file for me
make it nice lol
i have lost media from like 1990s of a cool local betting app
its just my preference
i dont like hashcat ui xD im more comfortable with john
its like.. i HATE ffuf, i prefer gobuster π
i'm just burning chik3nman. he is one of creators of hashcat
who would hate ffuf
i know
the sintaxe makes my head hurtttttttt same thing with hydra
huuuh
you are just not used to them
ffuf is easy as hell man
i prefer using ffuf over gobuster xD
gobuster can make it easy but ffuf is more flexible with anything web related
uhmm makes sense
this has to be ragebait lol
??????????
literally a few days of grinding thm crypto rooms you will solve this in less time
the thing is learning random hacking stuff wonβt get me certified
its not about random
build a foundation first
we all have to start somewhere yanno
if you want you can subscribe to thm but god forbid that happens it will give you a solid foundation 
i mean some ppl cant afford a sub but there is plaenty of free rooms on here
You put a lot of salt in it lol
sadly all of the informative ones are premium
real
i think this may help
if i did it i will not need to crack it π
Ok let me have at it
hello
nah. don't even try. it is not english password 90% in first place
i love you so much bro i wanna kiss you
thank you so much
please dont
i am kissing my cat on the head
@gritty bane said he wanna kiss me smh
the motivation i told you earlier now i feel like im needing it 
i knew atoon was that person lol
Lol well I did download a file of it but it seems to be an image file
atoon you donβt know it but that github mightβve just changed my life rn
yeah you need support system
trust me
you will need a miracle from god himself if you wanna find a job
is 7z, but yea when donwlaod is iso
wallahi im dumb
Yes but when I open it in Notepad++ it's all garbled
@distant robin what is that compression winrar, 7zip, winzip or windows sucks asss
heyyy why say that. is it that bad
it depends your country no?
Zip
probably not as bad as i am making it but it is not a good state right now
Winzip
you need to extract from .7z
bruuh
you can't just open it
the worst one lol
pen testing / red teaming specifically? really?
I mean atoon managed to unzip it fine
they are in high demand worldwide ofc
i always thought cyber jobs are easy to land i mean theyβre not as competitive as software development degrees
It has to be you @quaint ferry
but the thing is the demand is for people with skill not just the average dude 
cyber jobs.. easy.. LOOOOL
lol
why do you say that? i always thought it was worse
so ur telling me my OSCP cert will get me into a warehouse job
You thought wrong, it is very competitive in the market
anyways shadow is now gonna go take a bit long multi hour nap where they go sleep sloop to the beep boop while meep mooping
oscp is kinda the bare minimum for an offensive position
BARE MINIMUM?
isnβt oscp like the father of all these certs bro what
Good night, beep boop meep moop sleep sloop
you guys are killing me
by itself it will get you noticed but may not be enough for a job
man i hate looking for any job
unfortunately the way these corporate idiots think is very bizarre
facts
that seems to apply to any job too
here i thought id be able to make a cv after getting eJPT and PT1 atleast
they just prove you know the basics
Mostly corporate jobs
i just wanna stack them up. they do boost your cv from an average joe
ok man if you have spare pocket change lying around go for it
i remember looking for my first job and they all wanted things like experience using a cash register and counting money that anyone can do
but i would not recommend it personally
i would take it if it was given to me for free but i am not paying money to prove i can do something π
then how would you say someone gets a job in cyber without atleast going for certs? i mean im in first year uni rn
man
lowk
dont think about it too much
for now just enjoy it
Employers pay for that shit
forget job this job that
it can be fun if you are going at it your own pace
but unfortunately for me i have grey hairs at the age of 19 and am slowly balding
Right I am out of here. It's 1am and I need to get some sleep
i turned 20 a month ago π
it is not fun for me cause i take it competitively
big mistake
dont do that
thatβs actually a mistake i wanna do
my cousin went bald before he graduated from college but it made him look more like a scientist which he was
being competitive in a field like this is worth it ngl
it is good to always strive to be better than your current level but
always trying to be better than the rest
competitive shit is unhealthy for the mental health
is this your cousin
not quite
you will always want to be better than one guy then when you are better than him you look to the next guy and so on
it is not healthy yes. but it is good for growth
never ending cycle
AT WHAT COOOOSTTTTT
MY HEALTH IS MORE IMPORTANT
at the cost of you feeling like a bad person because all you do is compete
the pro outweighs the cons bro
keep going
compete and show youβre better than everyone
have that ego

But you arenβt 40 yet
by then youβve known all you wanna know
probably planning retirement
set up a homelab so you hve something to talk about during interviews
blue!
mention that you keep up todate with cyber updates, CVEs, Tools, do some bug bounty
nobody will ask about the certs
Sooo GitHub is basically our portfolio!
this is a trap. the homelab will take over your life
(it's actually good advice tho, seriously)
your first job will not be a pentester
I feel like getting certs is for your own benefit right?
iβve never understood what a homelab is am i dumb? i mean i only use my laptop with kali for my stuff nothing too fancy
?
Isnβt it pretty much your own lab with VM?
nooo he gave me free study material on github
i was joking that you'll end up spending all your free time doing homelab stuff
can be. mine runs physical hardware tho
Litterally feel like it haha since I used to game on desktop
so you can learn how to set up things, try set up your own enviorments, vm, AD server, run a local XDR, patch via central setup. etc
Things to talk about
this the type of trap iβd willingly fall into
look at SC-200 and AZ-500, those will land you blue team work, JR SOC, Soc Analyst, etc
no problem
iβm going red team
you will change
wdym
Purp is the way to go
Blue is the way in
Red
then pivot to red with skills learnt while working
yes iβm the way in
I wish you luck then
Isnβt it like blue then red then purple and then black or white? Haha
All white hats turn grey with time
its just a fact
Can see thatβ¦it honesty depend on how you view it
I view it from the I-have-a-cyber-job part
and you dont π
I am old, and all the elder here will tell you the same thing
Any tips for interview haha
If you know how to use technology then age is just a number
yeah but tech is just a tool. its use is derived from the person wielding said tool
You are right about that, itβs more of how people understand what the tools are use for and how you can teach other am I right?
@arctic spruce With the skills you learn, you use this to do bug bounty to practice your trainings and things learned with certs.
Just studying certs and not practicing what you learn. It will get you nowhere
Next thing you know it we are pretty much like doctors for the AI haha
Well I tried
Thatβs the plan trying to start doing ctf
what will that teach you
that, and to math's point about white -> gray hat. that's all based on intent of the person using the tech. Plus you can use it for different functions (e.g. blue might use nmap to search for what devices are on a network to reconfig, red would use it for vuln hunting)
genuinely how are software dev jobs easier to land than cyber tho theyβre so saturated
Itβs well for starters dev is like for creating something
While sec is more of monitoring
blue would look for vulns also to remidate them
I have thousands of servers I can pentest at work
but we manage them with XDR and monitor with SIEM
so I kind of dont have too π
If you want to be a pentester, look at bug bounty
then you have real targets
they absolutely would. I was just trying to draw a starker contrast (i.e. points of access visable from, say, a subnet to compartmentalize a network, rather than purely hunting for CVEs)
and there is an endles amount of them
I validate everything myself we get reports on, our bb program, SIEM flags wit CVEs with exploits etc
too much free time ;-;
that is a few hours?
How many hrs is that lol
bro speedrunning thm
13 π lmao
Omg
@gritty bane yo you still here
Heβs right, I went from red team to blue team and Iβm old too
has anybody here messed around with low level stuff much? I've been playing with some ESP32s lately and I can't really wrap my head around certain things
I have a bunch of esp32 but it's been a while
Finding: CORS Misconfiguration with Arbitrary Origin Reflection + Credentials
Severity: CRITICAL (CVSS 9.3)
Its fun to set up a nice LMM chain
why did you run from red team
we dont send random friend requests here
Oh mb I was going to ask you to add on thm
iβd tell you to get a job but this could definitely get you a job
Oh I have added nobody from here
doesnβt hurt to have an extra buddy
Ye
But itβs understandable
you can be friends with atoon and Val
???
nvm i got it but damn you were fast
It's an easy challenge
Maybe don't post it here
You run into these encoding often during practice so you know what to do
didnt even think abt it
Next time you will solve the next crypto challenge 2x faster
all the GPIO pins output 3.3v data transmission right? so if you're running longer stretches like 10-50ft, what would be the use cases for things like signal amplifiers, rs485's, and level shifters? or would you actually need to use all 3, depending on length of run, impedance, etc.?
trying to not wall-of-text data dump on you and keep it simple without getting too vague
It's all just memory
As is everything else in life

And that's my messages for the month done. See you soon 
If I manage to spit fire from my mouth, would that make me a dragon?
Because SOC analyst is in my blood
in that case. put hamster in microwave 5 min oon 800w and he will be Pikachu
Lies. Only me π€£
anyone read this book before? is it good?
sorry for low pixels. it's from humble Bundle.
can I use hydra to brute force my own network? and in my network attacks for PT1
if you own a devices yes
wym by brute forcing your network? like for wifi?
but bruteforce wifi is not the way lol
yes for ethical purposes to see if this shi will acc work
ofc not
its for pt1
36% is network
i need specific frame workds
for web app (40%) network (36%)
im shit at priv esc for AD too
technically speaking I'm sure it could work, tho practically it'd be a major PITA and a real bruteforce attack would take lifetimes when you factor in the WPA auth process time
intresting esp when everyone uses wpa3
i seen people do it to wpa2 but noone uses wpa2 like that in 2k26
WPA2 is still pretty common and attacking wpa3 is pretty much just a downgrade attack to wpa2 anyways. I was just referring to the wpa in general, not the first iteration of it
how is wpa2 common
"wpa2 is used in most wpa2 deployments" what?
what do the other 1 percent of wpa2 deployments use
i'm actually digging thru the sources to see where that came from lmao it's on an actual website
...with roughly 99% of WPA2 deployments being the "Personal" version.
ah ok
Did they iron all the vulnerabilities out of WPA3 yet?
nope
Gave +1 Rep to @sturdy sequoia (current: #57 - 193)
its more secure but there are still some attacks that work against it
I know deauth was a big one that WPA3 was supposed to prevent
Buuuuuuuut
At least when it came outβ¦
it does it
i try do shit loads of attack with pineapple. not rly make it. i got partial handshake, never full
the problem is a lot of devices dont support wpa3 so the APs have to also have wpa2 support for those cases
Yeah cuz a majority of devices are older than WPA3 lol
exactly. so downgrade attacks will still work
there are some other interesting attacks against wpa3 but i havent done enough testing yet
What do you personally use to test?
hammer
lots of stuff. i try to avoid the automated tools, so i use things like aircrack, reaver/bully, hostapd, are probably the ones i use the most
Sweet. I havenβt gotten to wifi exploitation yet but itβs interesting
My buddy in high school had a WiFi Pineapple
He thought it was the coolest damn thing
im actually in the process of writing up a full wifi hacking tutorial/workflow. to me pineapples are way too expensive. it can all be done with a cheap rpi and decent wifi antenna
Yeah most sell as little SBCs
Hi
Iβm not a big SBC guy so I canβt spit the specific name out
for start
What is that? What are you doing?
haha my lab is too messy to take a photo of and share here
proxmox server with proxmox backup. 2 wifi pineapple and router
Why 2 WiFi pineapples π
need more evil twins ::P
shhhh
i live in city centar... the amount wifi names in pool π
i hope youre not doing anything illegal π
Ah nice
How they are flying
a what ?
How u fixed them on the wall
hmm... bolts ?
I dont think tape would work
3d print things and wall mount them, so to say
Nice
Ah yes, Flint 2. I've got one powering my lab as well π
I never quite thought I'd see one stuck to a wall, though
im looking to get flint 3
They have a Flint 3 now?
You mean wifi 7 right?
oh yea
Flint 2's sitting on 6 currently
Just an hour behind, brain also lagging π
Much beefier hardware but the memory's still at 1gb. Solid for what it's worth on a router, though
indeed
hi i might need some help
yea but i need help
What help
Use OSINT on the surface web to identify deep web search engines to perform the targeted searches
If u can help i will
what do i do
i have this assignment for an osint analyst internship i dont understand
what am i supposed to use
Oh no roo advanced for me π€·
Google it
Basically, google
To find the dark web equivalent of "google"
||(Chathpt it )|| take the out put as main points and search for thos piint
To google whatever the "targeted searches" are
Which can be summarised as, use google
Oh now uber is black mailing me they gonna delete my account
rest of gang
The sheer amount of doohickeys on the wall man
ME too
Are you who I'm annoyed by in my league π
A doodad. Thingamajig. Whatchamacallits if you may
what the hell lol
yupp
english mf
Don't forget the thingamabobs
Mid saw someone doing 389
Tf u both talking about
They must be psychics from how much they love their Medium
What those words even mean
The best part is I'm not ethnically english
then i rly do not understand
They are nonsense words used to relate to items with unknown names and often complex/confusing backgrounds
And i thought skibidy is the weirdest word ever being made
Anyone got any room recommendations for CMS / Word Press boxes
the pentagrams ?
Anyone got good project ideas
Good ones not building os or kernal from 0
Im not TTT anymore
Building microkernel from 0
TTT = terry the terrible
Bruhhhh
Terry made his monolithic but that's so last-year if you know what I mean
And then you do it in Rust
No i mean stuf like some project to apply concepts
why so many laptops
real heckers only use one laptop and public wifi
Im not make stuff from scratch i dont have time or money or technology or skills for type stuff like that
Jokes aside, there's half a dozen potential projects out there ranging in complexity, and you usually stumble upon the correct ones that appeal to you when you find your niche in Cyber or a temporary core interest
one for windows shit that i need. one is personal, one that i hate for kali
Real hackers dont use technology and just growing up some animals and have a lovely farm otherwise its all scam and false information to make hackers look cool
Like, start off with finding some area you think is cool, do some research, find thing to do tied to it, build it and horse around with it
I have one in mind but im just trying to yk seeing all the dimensions of it to be applied and then twll my instructor about it
A zero trust simulation with autonomous honey pot with mitre att&ck mapping
make website in assembly
Is that a thing?
I can make simple python code never did anything related to assembly
try lol
Cpp too and java basic but i hate java because of the output function
I like SDR
I research SDR and radio protocols
I think cellular protocols are pretty cool, let me build a lab to poke with 3G or smth
Lab built, fun had, I understand protocol better now and an old phone with a defunct SIM is talking over my radio in a faraday cage. Wooh
(I haven't done this yet but intend to after figuring out the legalities and obtaining a radio license and equipment.)
Yep that works, don't know if zero-trust fits in that description though
if you're going to honeypot though, some considerations need to be had. I'm actually considering the same project on a larger scale π
Two biggest bits:
- Legalities
- Personal safety
Vet all of your projects through those before you do 'em
Its simple one
its really good to hear about peoples projects. love the enthusiasm
Im still studying how to implement that it kinda hard even for basics adaption only
For a honeypot, probably the biggest concern is your exposure and the effectiveness of your isolation.
- Can the malware escape your sandbox?
- Will you be exposing it to the public internet? How can you do so safely? (don't use your ISP!)
- If something goes wrong, do you have a contingency plan?
- Do you have a contact with experience who can give guidance on all the above?
Etc
I dont think i have worry about isp while useing vms only
Using *
And yeah i have instrctor that i talk with
Nicest way to start out is doing it on malware that's entirely isolated from the network, on a throwaway device. If it can't ping home and it can't physically reach your other devices, you're safe regardless of what you do as long as everything on that device stays on said device
Yeah sure and the it gonna be isolated noone want to ruin his day by himself
Hypervisors use virtual network devices and NAT to bridge your device's internet connection to VMs by default. They keep your host OS safe (to a reasonable extent) but you still gotta watch out for how they're configured
Sure i will note that
Problem with isolated payloads is that they're usually multi-staged and ping back to a C2 to unravel properly. If you can extract artifacts from online sandboxes safely however and transfer them onto your honeypot, it's all fair-game
Plenty of advanced malware self destructs or goes inert without phoning home however, so it might not be the most interesting. But infostealers and simple RATs will demonstrate to you various creative obfuscation/persistence techniques and other behaviours which you can document and learn about
O
Good evening everyone, my name is Max and I need help with a frustrating situation that happened to me. I'm currently unemployed and my mother was scammed; they took all the little money we had in the bank. I'd like to know if anyone knows or can track down scammers?
For me its also running but I'm unable to connect to target machine
contact the police
They did nothing but file a police report; I feel wronged.
I tried regenerating but no luck.
But anyway, thank you very much for your attention.
this dumbahh bot
Alright I will try this. One weird thing is that the access page in THM is showing me that I am connected but I am somehow unable to ping anything in their network
FIXED
i am trying to complete this osint task and they are asking to find electricians and stuff but i cant find since they are behind license registration page and no public registry exists
The issue was that I didn't close openvpn properly upon my last visit had to pkill it
@hasty sand hey baby
0day is quite busy bee to just post
me too I've been burnt out for a while but i need to keep my streak thriving
haha
don't push you self. you will burn out... and that sux
I don't even watch 0day's content.
No I stopped when I the advent of cyber is ended here I stopped then when I like I want hear about any news about cybersecurity or something I feel crazy
I feel my brain say stoppppp
you burn out and then you got felling is all boring
So if I took rest months its fine
To return my energy
find smth to distract mind on daily basis. like cooking, paint or so. smth that is opposite
Yer a backup hobby is good to have
why are you a neo @quartz drum
and special smth that make you not sitting in front pc
i made a new account
but why
Or gaming ππ
to use the token on this account
someone stole my token
you can reset it
oh
@hexed rune
u clumsy mf
smth, smth, password manager, smth, smth
its a scam by the joos to steal your passwords and plant any bad content in your pc
nah @gusty inlet is a good guy he always unmutes me
he lowkey chill af
i had a task where i had to make a covert discord account for discord osint for a task and i accidently verified my number on that account
and then i forgot my password on this accout
y ping dkob
funny
cool, osinter
i want to kms
make ur own password manager
they will steal it too
you want to key management services?
or get yubikey and you solve fair amount of passwords
i want to keep mario safe
or use python password randomizer
nothing is random in pc world π
get those diary notebooks of 14 year old girls with a lock on it. write your passwords there.
based
reminds of ann frank
or whatever her name was
but you can make it from outside source
they will steal this too
i swear those lock either work or u just break them with ur hand
the joos started flocking to kasol and destroyed it with their junkie psytrance behaviour
a lot of bars and pubs in goa now dont let their own countrymen and women enter
exclusively white bar in india
modern day racism
in daylight
by no one else but them
probably promised to them 3000 years ago
woah, how did we get from Barbie to Racism
just another day in general chat
is it racism to talk about how one specific community of people comes to your land builds stuff and bars you from entering it
I mean you mentioned racism
Speaking of OSINT, these are some funny whimsical opinions you hopefully aren't tying to a main alias/account
Yes. That is not a community doing it, that's an asshole with money doing it and people buying into it without realizing what happened

