#general
1 messages ยท Page 2235 of 1
stay far away from the appalachian mountains
why
Agreed, just an huge knowledge gap. Definitely daunting. But I definitely want to make the transition into blue side cyber
The sights though, they're to die for ๐
omgg elllooooo evryoneeeeee
Helloz
those mountains are beautiful
hruuuu?
Cat
Cat
Cat
Cat
Cats
A lil bit pissed xD been in a voice chat and appearantly I'm a very fast talker :/ ppl couldn't understand so I have to mask again ugh
How about you?
No it's a penguin
dammmmm, me goodd just stuck in cybersec 101 due to uni stufff
going towardss the moutainsss
a cog?
i think u replyed to the wrong person
๐
Lol yes
A hog fr
Lmao
Hi
hello
Helloz
ohh shi- yeahh i wanted to reply to him then saw you text and i just bulrted it
You the real cloud flare?
Guys
Tead my name
I managed to do and win a 100% accuracy chess match at 500 elo
LOOOL
Reqd
wanna know how ?
Read
No he is the lazy ass
im 100 elo ๐
Shut up
No, you shut up
Use it
Can relate
stockfish
You can?
But apparently its not possible
+1
Proof? Lol
Yeah i agree
U are fake tao

Point a proxied Cloudflare domain to your server, enable Full TLS, then run VLESS on Xray/sing-box over WebSocket (or gRPC) on port 443 behind Nginx/Caddy, and connect using that domain with TLS + the same path/UUID
Study is good and all, but application of knowledge is where you really learn ๐ง
I think a part that makes studying a bit difficult would be that I dont have anyone irl that's doing the same kind of stuff as I am so I dont really have anyone to talk to about it to reinforce knowledge. That and I dont jump in here a lot

finally... TryLoveMe
Im trying to setup vpn obfuscation
I need to connect to it
With vless
A cloudflare proxied server
That would work with the instructions I gave you?
Oh
I would however suggest Caddy rather than Nginx
Look at this flow
Its a bit messy i hope u understand
[ Attacker / User (Kali) ]
|
v
+-------------------------+
| pfSense |
| (Firewall / PEP) |
|---|
| - Basic filtering |
| - Logging enabled |
| +-----------+-------------+ |
|
v
+-------------------------+
| Python PDP Service |
|---|
| - Collects context |
| โข IP address |
| โข Session behavior |
| โข Cowrie commands |
| - Sends input to OPA |
| +-----------+-------------+ |
|
v
+-------------------------+
| Open Policy Agent |
|---|
| - Evaluates Rego policy |
| - Uses trust thresholds |
| - Returns decision: |
| โข allow |
| โข redirect |
| โข block |
| +-----------+-------------+ |
|
v
+-------------------------+
| Python PDP |
|---|
| - Updates trust score |
| - Logs decision |
| - Sends action to PEP |
| +-----------+-------------+ |
|
v
+-------------------------+
| pfSense (PEP) |
|---|
| Decision Enforcement: |
| ------------------------- |
| BLOCK โ DROP |
| REDIRECT โ Cowrie |
| ALLOW โ App Server |
| +-----+-----------+-------+ |
| |
v v
[ Cowrie Honeypot ] [ Application Server ]
|
v
+-------------------------+
| Graylog |
| + OpenSearch + MongoDB |
|---|
| - Trust score timeline |
| - MITRE ATT&CK mapping |
| - Attack visualization |
| +-------------------------+ |
That is routing through a Raspberry Pi?
Welp thats really cool then
For some reason I was under the impression vless and cloudflare are not compatible
Any opinions
Why are you sending me a security architecture schematic?
Directly they are not
That a project
Why is there PDP twice?
Collecting and decision
Im asking u for that is the core of the ZTA good or i can do something better
External Actor
โ
PEP (pfSense/Traffic Entry)
โ
Context Collector
โ
PDP (OPA)
โ (allow / redirect / block)
Enforcement API
โ
PEP (pfSense/Enforcement)
โ
{ Honeypot | Application Server }
โ
Telemetry (logs / behavior / sessions)
โ
Analytics & Trust Scoring
โบ Feedback to Context Collector
Idont understand the api part
I may search more on that
But i think i saw something mention flask api somewhere
Your API would be the bridge that takes the decision from OPA and tells pfSense what rule it must apply, Flask is a great suggestion
Seems like an interesting project, mention me in #programming if you would like any assistance with Flask
Okay thanks
Gave +1 Rep to @median heron (current: #1434 - 4)
Im just starting it and still making the base and the flow of the work
Hopefully all goes well
why do the medium rooms feels easier than the easy rooms in valentines event
Chat
how hard is room is based of how hard is for to get to execute whatever.
yeah and i said that easy rooms feel harder than mediums for whatever reason ๐ญ
im talking about the event rooms tho
yep. definition of hard is kinda different when it comes to rooms and so
oh... we all do
Especially when it's something you actually thought of trying but you didn't do it.
I only know the basics; like using dbg or ghidra.
I mean thats more rev eng than binary exploitation
But cool
right? this is driving me crazy i've been sitting for more than 3 hours on this easy challenge and i still cant figure it out meanwhile i did a medium one in like 10-20mins
Im looking for sources on learning about ROP chains / alsr bypasses
so frustrating
Oh yeah. Sorry had a long day with a project I was chewing over.
That's how it is sometimes. At that point, I would backtrack and skim through what I found.
I also found that writing down your thoughts on a .txt file or using a note-taking app helps with methodology and eventually exploitation.
No worries
thanks for the tips. definitely will give it a try
Gave +1 Rep to @solid onyx (current: #1219 - 5)
No problem! Let me know if it does help. If not, you can tell me the room (as long as it is free) and I can try it out myself.
alright but i dont think hints are allowed in this one since its an event but yeah
i finally completed valenfind and i gotta say it was pretty fun ๐
taking notes all the way is big must
Nice
Any body got any hint for me
?
๐
me too ๐
I'm trapped in this room
Well, at least we have some company ๐คฃ
ahh, gotcha
I think I am the only one who didn't even find the first flag ๐คง
When did you start
?
yeah
that was extremely easy
easier than most other ones
hi
i found smth interesting while backtracking
Its not that hard actually
wow tryhackme ad
That's cool, didn't see one on YouTube, yet
Jokes on you i am using yt revanced
what's that
I am a beginner bro..
And yup i know it's not that hard but I don't know why the fuck i didn't get the flag ๐คง๐ญ I was exausted yesterday I will do today with fresh mind.
Last night.
Mmmmmmmmm
4 hours
I just woke up
Fr.
But I woke up now I can't sleep again ๐
๐๐๐๐ป
The yt for communists


you should expose your self to cyber security related content more (cybersec news, content creators, doing ctf challenges and reading write ups where you get stuck, reading docs, experimenting by your self) eventually you will feel comfortable rather than jumping to ctfs directly without prior knowledge
at least this is what i did and it worked for me
So doing CTF now is waste of time? I am just Fucking up my brain unnecessary?
Defcon ?
monafew months ago i couldnt even do easy ctfs so i wouldnt recommend you start with ctfs
you can enroll a path in tryhackme
walkthroughs
or even try ctf challenges and read write ups
defcon ๐ฅ
You guys are from India na ??
I am thinking to do bs in cybersecurity and ai from IITP
Is it a good option?
bs in cyber?
Oo thanks I thought you are from Pluto
Gave +1 Rep to @signal ingot (current: #437 - 19)
Fr fr.
i dont understand
๐ sometimes I think to go in cybersecurity but in red teaming and sometimes making ai models i have 2 but still I am thinking for now only
That just do streaming learn cybersecurity and .....๐ถ
red teaming is fun dude
๐คจ
Does anybody doing love at first breach 2026?
yup
Yea red teaming is fun
I'm stuck in signed messages room need a help
i havent started that one yet
But if you see money making blue team make more money and companies hire blue more rather than red.
i saw a few ppl are stuck as well in that room
Yaa so frustrated
It's been 5 hours
at least you are not spending 5 hours in an easy room like i did bruh

i missed smth and didnt realize
If someone find a flag tell me
you just gotta pick one
you cant do blue team for job red team for fun exploit dev cuz why not ai bc its trending
Because I want to know what's the last piece I'm missing
i was talking to rishith haha

Why the fuck I am not able to react on messages ๐ญ
But I'm talking to you just tell me okay bye then

i wasnt trying to be rude
Damn stop overthinking
huh?
okie dokie
Why are u acting like gf's ๐
Is it because blue team is easy or because i want to join blue team now instead of red team?
Now record and tell them u under the water and u wont be lying
Is this supposed to be funny ?
Counter terrorist or smtg idk
๐ญ
what did i just read
Wow.. I can't even send gif. ๐ฎโ๐จ
Demand of SA in companies are high instead of red teaming they only hire them if they want to test how good their system is.

Verify

My clg is shid
What ?
Its my final semester and now they are asking us
To participate in some club or society
And do some activities
Wtf
And a seminar too
In which clg ?
After 4 hrs of trying Signed messages, I will skip it for now

It's not easy for me
Anybody got any hints for me?
I want to do it in an order, skipping seems hard
What we cooking?
Like what we workin on?
Ohh, Signed messages
The ctf?
Mine too
3rd challege of Love at first breach
yes
Oh i forgot about that thing
No
This one
Cute kitty
not yet asleep 
Gg im gon freshen up and do some challenges if my monke brain works
i locked f in i watched 9 more episodes ๐
Lmaooo
You got debug endpoint ?
vinland S1 almost done road to finish 24 more today
48EP in 2 days what a record
Mate ๐
No, I got stuck at the UI and was doing web, I don't know crypto things
True I die after 2 episodes

Read mangas tbh
Kinda makes sense, but I watch them
Black clover
Well call me lazy or something but I'll wait for the animation , unless they fuck up like they did with OPM I am not touching the manga .
Its the digital equivalent to touch grass
I was watching jjk recently lol
Jjk is peak
Omg same
Bleach is peak
Yes
I am waiting for Kenpachi's fight
I've been waiting for it ๐
if you dont have 3000+ shitty anime completed in a notepad yr a rookie
Id let aizen mpreg me ngl
Ngl the whole season's gonna be peak
We already had this conversation before lol
For real
All day all night , no lube something
How do I stop procrastination
Step 1: stop procrastination
Today is 14 lol
Just start working for 5mins initially
Thanks
Gave +1 Rep to @glacial berry (current: #456 - 18)
Nah every bleach fan feels the same
Free rep 
Thanks for reminding me ๐
Shi
Here I am doing CTF on 14th while my friend are busy
At least progress
All roads lead to rome
Idk bout you. But its a W
(that's how I cope)
I am still at Signed messages
Guys any hints for valen find room ?
Don't ask me mate am single
Us
How to enter in the CTF challenge?
Enum
Got the debug menu but am confused with the crypto logic
You will get debug
Same i couldnt understand anything
I am not good at crypto
Play cs rn so idc gonna do it at night
Me too
Okay
Gonna do something else
Based
๐ญ
Idkw my tryheartme wasnt opening
yo i got no matches ๐ญ
pro
What challenges
i mean tryhackme ctf bro
What ctf fr
No matches ?
bad joke for the event
New thing?
This fr
what's new bro ?
This ctf
ctf is not new but some challenges are cool
nice one thm never disappoint
Indeed
Who can pull people address and stuff
Can Cyber 101, Jr Pen Tester, Security Analyst finished in a month?
..
Can u?
am still confuse for challenge 1st valenfind haha
stuck at login page don't know what to do
Do you want help?
uh yes would be much better and i always like to learn so yes
check your dm
also this cupid matchmaker so where we gonna receive the reply ?
lol
Guys pls help
Sudo apt install girlfriend -y
Someone help this is not working it is giving error "girlfriend not found" ๐ญ๐ฅ
A member from here has scammed me
"/report"
Can I get a hint for the ValenFind, I know how the LFI works, and how to use it to get info from the shadow/hosts/passwd files but I dont know what I am looking for
they tried ๐
||burpsuite||
report to mods with evidence
His user is
Again, report to mods with evidence of the scam with chat.
not here
Can y'all heck an Instagram account pweeeease?
images, chat, proof
Yo meth hyd?
these guys
human_13.1.18.3
I'm not plural Sherlock
@molten heath again, report to mods, not in public. Not sure how you ended up here if you were scammed elsewhere.
Since you just joined and you claim to be scammed by some random username.
This is for mods to look at and you need proof.
yes you are
You didn't say hyd
Did you fall and hurt yourself?
I hit my head few years ago
Sending money to a stranger was a bad idea.
why you have send 1k dollar boss
?
hi guys
Yo
Did it happen after this?
Yes
Sorry to hear you got scammed, but report to mods as mentioned with proof of the scam. Nothing nobody else can do here.
It is 340k users here and everyone is not just nice friendly people.
they prey on people asking for help and offer money
nobody will suspend random X accounts for payment, same as nobody can just randomly hack someones instagram/snapchat
it is not the movies
You try thm in brave is linux usebal in it? Or I can just read the stuff?
lmao
recorded three videos (each above 30+ minutes) turns out microphone was muted ๐ญ
did you not see microphone level while recording not moving? ๐
not even for 1, but for 3
wow now go on linkedin and say am thrilled to announce i have successfully recorded video with while setting microphone at mute
Give voiceover with Subway surfer background and upload on yt
before starting the first vid, i checked and everything was fine but idk what happened (i thought everything is going well, just go on) ๐ญ
Infinite money ๐ค
i wanna cry ๐ญ
Nice
How many have you done ?
i needa re-record all of 'em
Cool
๐ญ
I did 5
Just get back on it. you should test your sound levels first so you know its guuud.
record one, and see how it turned out
Gonna start tonight again
fix sound, light, etc
Nice
i mean, its not the first time i am recording i have done like more than 50 already
good. I just did 2 rooms, The VPN was causing to much issues
I finally completed the technical assignment for my internship now waiting for them to check it and interview me
it was just lagging too much
i mean great experience, will double check for the future vids
but its very sad
๐ญ
Same I just closed my vm and just used attackbox
imagine finding things to report on 1 program, then when I look at another the same one popsup because they use the same servers, ha
Just report them i guess
I was desperate for help because the account I was trying to get rid of was posting inappropriate stuff
Of me
I was so frustrated, I can not image the CTF tomorrow will work any better. the ovpn solution is just bad atm.
Not sure what happend, it used to work just fine.
Real
you should stop now, that is not for general to know about, you will just have someone random contact you and offer help, then you get scammed again.
call police, call roy, report to mods.
there it is again
what the heck
no company will be doing this btw
We don't do that here
TryLoveMe
๐ซ
I might snatch that one too
ahaha hacking in movies has genuinely ruined the perception of actual hackers lmao
So it is worth buying as a beginner? But i have problem buying the subscription, it won't let me
I'm watching Umaru
I still don't understand the concept of hackers reading 1010111 on screen to hack someone
the matrix movie

Anything is a dating platform if you are brave enough
um ok
youโre telling me my soul mate is somewhere in here studying for the PT1 exam?
Payments aren't available in your region due to provider limitations.
Could be, you never know
I actually sorted it, just UI left to fix.
Mmmkay
@past sparrow you were in UK?
Nope
May anyone assist me in for the subscription
um ok ill look at it
Hi
How can I know which paths or modules within a path are free>
There used to be a 'free' learning path but that option is gone.
Hi guys. I'm relatively new here. QQ: Can one actually learn to hack here? i mean really hack things. not just ctf's made based on vulnerabilities that was there years ago?
is that the last one for youuuu
3rd one
I love how magixx is so whimsical
okay okay
same heree
I see
Same here
Well yea but ethically obviously
I thought you were playing cs?
ofc." i would neva! do such a thing. " i mean, after learning more about it, with all this encryption, 2 factor auth and all, it seems impossible other than going places physically
Here we go again..
No
Not Me
Oh pls tell me Iโm getting worried

Nah we wont tell you
The only one will tell you are the mods
ooooooooo
We don't do that here
W mods
Wahy
Gave +1 Rep to @cloud quiver (current: #1 - 6085)
key word is "here"
Aw hell nah
It has a lot of math
that's the point of crypt ๐
Hi all, I have a question. Iโve been learning since a year, so I already know the basics. But how much did it help for you to socialise? I heard before to have a talk to people if you into pentesting, but Iโm not a really social one, and around here also not really people with interest in cybersecurity.
My Math marks are (-100/100)
math is important ๐

tell people "talk to me or ill hack you"
Well I have people to talk with. They just donโt understand shit. ๐
That is relatable
Many people dont even know how to use a computer or even know how to install a file
So talking to them is kinda hard for cybersec
well... on first date with my gf, we talked about cow's aerodynamics
ai gf doesnt count
then i'm ok
Are there any people who speak French?
oi
When I talk to my girlfriend about these she is just staring at me like I was talking clingon.
nah, joking
hi all, are the love at first breach ticket rooms different from the ctf?
Does anyone know or can teach how to log into any X account
What is worse:
1.Windows
2.Ubuntu
with username and password is best way
Idk their password
then is illegal
No nobody knows
If you want to know then go ask your national cybersecurity
agency
Im sure they would tell you the answer... in prison
hi all, are the love at first breach ticket rooms different from the ctf?
kangeroo
is this normal?
Yeah, reload a few times
You are cooked
i ctrl f5. fixed, now i cant start machines. this is stupid, ill just do this later.
i wish i could send a screenshot but im genuinely currently watching hxh ahahah
like itโs literally above my screen rn
high school dxd?
hunter x hinter ig
Hunter x Hunter
the anime u used above
Still waiting for next season
you need to update your drivers, otherwise communication is nearly impossible
I seeee
Ohh, haven't watched it, guess I watch the 1st season and lost interst on second season
we got python + how to use os + identify computer hardware rooms now
where is thm heading
Well I watched whole thing in like 2 days so didn't get chance to loose interest
how good is it on 10
Double downing on the entry level skills, something that I see as a good sign
I paused for 3 months
THM A+ equivalent when?
Ohhh
Plot is kinda different than normal but
The humour is kinda nice
Like MC power ups from death just thinking that fmc breast gonna reduce to half if he doesn't stop villain
Hello i m really stuck on valenfind, i already find an LFI vuln but i don t know what to do next. I already read config file on server like syslog, auth.log. i also tried to bruteforce password with the user i found on etc/passwd but seem like the server refuse password auth on ssh. Anyone got a hint for me please?
it was gg
I see
i cant start any target machines dawg
~<
I am still stuck on signed messages
Join the room
oh nah the cupid got him
For some reason it's below
Got the RSA but no clue on what to do next
as if i didn't already
I go back to wasting ground water on making ChatGPT generate theoretical images of 4th dimensional beings
Not gonna give the full key even if it was wrong 
Use multiple AI to generate more
I already did RSA for NCL, I refuse to do more
gon do easy rooms first
Nice
I will help you with hints, if I complete this (if you want that is)
we going no chatgpt on this one dawg, might ask tbh cuz im monke brain
These are encryption keys i think
Like its logs
I am not gonna use chatGPT, it's sometimes DoSes me
for when the keys were generated and saved
it what now?
Yeah they are
Use claude ๐ฟ
claude good?
It dosed me a lot of times
Claude is very good at reasoning and stuff
Looping answers and crases my browser
how bout you use your cognitive brain
Lmaoooo
i use claude for math and coding personally.
perplexity for research
gpt for general
Good One
what you need to calculate ?
ooga booga monke brain break laptop till see flag
Good Night
Completed or not?
Cant gonna try at night
Youโve generated p and q, so youโre close. Next steps are to compute ฯ, choose e, and derive d
Again
Good night
I see
Yea you see
Yeah I remember this shit
euler's totient function
ฯ(n) = (p โ 1)(q โ 1)
Done with enumeration, current need to do something callled RSA-2048 key
Yea
What the math is this?
The flag is
priv and pub keys. so to say
hieroglyphics
Meths
||THM{D33Z_NUT*}||
It is mathematics
Damn
omg it worked, thanks maximus
Gave +1 Rep to @hexed rune (current: #1219 - 5)
It is the next step in key reconstruction
THM{........,}
Np ๐
How to even use that
ah im trying this one. im having issues installing sympy so im just chilling rn
Wait let me get my paper
You have p and q already?
ฯ is function?
its too long to even manual it
Phi
venv
Euler's totient function
are these really all free? for people who used codecademy
How to use it?
???????????
????????????????????

Well in this case you would use this formula
Paper and pen?
do u know calculus, steady?
Yes?
He might be a professor
Ah yes, e is most likely 65537 by the way
The common one
can you give me an advice to self study it pls
Where is e in that formula
Repetition
?
E is the step after phi You aren't at e yet
One sec
for(int knowledge = 0; knowledge < idk; knowledge++)?
basically the function is equal to (p-1)(q-1) and p and q is like the prime.
and e comes from this:
private key: (n,e)
public key: (n,d)
and then there is this formula
(e x d) modulus totient thing = 1
- Build a recipe list by compiling the core calculus rules (derivatives, integrals, identities) so you can quickly match parts of a problem to the right rule
- When studying examples, replace numbers with symbols to focus on structure rather then the problem or numbers itself and see how the steps connect
- Break problems down into their parts, practice decomposing each question into smaller steps that map onto your โrecipesโ
- Revisit solved problems multiple times, gradually relying less on the solution until you can solve them independently
That is my real advice for you
exd sould give 1?
Standard public exponent is 65537, you may now derive d
no, e x d and then modulus with the weird symbol thing (totient function ) = 1
basically remainder of when u divide (exd) with totient thing should be 1
% This??
it's called. modular arithmetic
yeah but some language misunderstood that with percentage
You have all the values required to derive the key why are you solving for e?
listen to this guy i was just explaining the basics
I have no idea what to do
can u lend me some of your power
smth like this heh
Congratulations, you have derived d ๐ฅณ
This one right?
You may now decrypt what is needed using m = pow(ciphertext, d, n)
Note that n = p * q and d = gcd(e, ฯ)




cipertext? is the seed?
Just the value that is needed to decrypt, I have not done this room I only know encryption 
Or is the message that I want to send or somethign?
You have the private key now, I assume you can go from there hopefully
Sure
Thanks for the help
Gave +1 Rep to @median heron (current: #1219 - 5)
Anyone heard anything about VPN being fixed for the CTF tomorrow? because yesterday it was not usable
I am on premium and it was slower than slowest. rooms stopped responding, etc
nightmare, and there will be alot of outside teams in the CTF tomorrow, would be nice if it actually worked
it barley loaded the :5000 websites in the easy rooms
so confused with the tryheartme room dawg
what currency!?
๐ญ
credits?
yeah gg
For you ovpn, what region are you using?
I tested europe and got a 192.168 IP. that did not help me at all ๐
I will test again later
i did not get the 10.* needed
but I will look in to it later
day is busy today

I usually have the vpns running on my boxes 24/7
should have credentials
sicne it just effects thm rooms
I think what I'm about to say will be a spoiler
then zip it
I am in the LFB2026 room signed message
I have already figured out the seed algorithm, but my signature verification keeps failing.
๐ญ
SEED!?
nah its fine im giving up on this room ๐ญ
aint got it
wait hold on,you got the creds?
okey maybe another part
I will do it.
||does /product/ not work?||
||i tried to look for css and andy creds as HTML comments lol||
but its supposed to be an easy room
I have been tricked!
i feel like trading flags at this point lmao
||Damn||
@signal ingot bro done both rooms I do back to back 3 rooms ๐ last night I was exausted that's why I spend 4 hours on a simple web hacking ๐คง๐๐๐
The challenge is "Love Is Complicated" from the Breachpoint CTF Event Console.
Challenge Description:
"Love is in the air ... or is it? You've stumbled upon a 'Love Evaluator' built by a developer who claims their love is pure and synchronized. But something feels off.
Can you prove your love to the server and uncover the hidden secrets of this complicated relationship?
-Made with โค๏ธ by ATLEE"
Details:
- The challenge has 1 flag in the format BPCTF{ ... }.
- You need to submit the flag to solve the challenge.
For this https://valentine.breachpoint.live/
I want to find flag
Can u gys help me
Can't figure out what cipertext is, can you give me some hint please 
Wow i can't even send gif๐ฎโ๐จ
Don't specifically think of the formula, think of what you need to use the private key for
1 dorra max
More confusing than I though 
It will be a little, dont think of formulas as they are not needed again until later on. For now you just need to work through the room and think of what you need a private key for
Good though, so I need to find some kinda encrypted message of sort
right?
Yes
I want to be a Security Analyst at the end of my degree but I worry that my memory will fade over time of what I've learned in classes, but also if I utilize TryHackMe. I'm only in my first year, with my first proper network paper called Intro to Networking starting in just under two weeks.
I think the problem is with my forge ||the results of the key pair generator I rewrote are consistent with the web||
But the verification just won't go through
Hello everyone. Wasnt there a subscription only for sentinel/defender rooms? I think i remember it to be existent approx. 1/2 year ago
How to open the ticket
could also be a one time purchase but it was pretty expensive as far as I remember
I think that fear will vanish as soon as you set a foot into a SOC. Because you will learn within a few weeks how to handle things and you will also remember stuff that you have utilized before. So I would not be worried but if you want to be more confident, stay consistent and keep learning without exaggerating
I am still trying -_-
Are we allowed to recommend other websites? Probably not, right?
Thank you. I intend to utilize TryHackMe to be an additional tool aside from studies to get some practical experience. My only worry was my poor memory, but you're right, consistency and practice should ingrain it into my brain.
Gave +1 Rep to @rough igloo (current: #3626 - 1)
Yes, you can
Thanks.
Gave +1 Rep to @median heron (current: #1064 - 6)
Are you also trapped in this room?
Very much
I guess you've already obtained the key information through that method, just like I did
Mostly
So many hearts, still no Valentine ๐
Give me some hint on finding the encrypted chat on 3rd one
๐

So, I would recommend you to check out "letsdefend.io", if you truly want to be a security analyst. The website contains many bugs (or at least it was partially buggy like 2 years ago) but they have a SOC simulation (... I realize while writing this, that TryHackMe also added a SOC simulation) and they also got in most cases a write up* how to solve it.
I think it's okay to skip it and wait for the write-up
ctf is so humbling
Well, yeah, have you completed the rest?
nah im working on the love letter locker
wanna trade flags? ๐
shush
ahahaha
i dont want flags
i mean the other thing is fine asw
congrats
congrats
congrats
You got a locker full of love letter???????????????????????
Damn
Congratz
no locker
no love letter
lmao
Guys should we use burp suite for tryheartme room?
Maybe
I just move on ๐ vpn keeps disconnecting
Guys come to vc
no
In fact, I can't even verify the message about me creating an account.
what?
So even if I could get the admin's private key, it would be useless.
u know what i have 0 knowldge of crypto.
Actually, it should be usable in theory, but Iโm not sure what went wrong.
use chat gpt for help
even i am also using.. ๐
My prime number generator corresponds exactly to the web page's private key.
After all, the seeds have already been obtained.

Maybe there was a problem when handling the signature; we'll talk about it later. I've already changed rooms.
But I didn't release the admin private key, and I was too lazy to change the print in the picture
That's a spoiler.
My generator script was generated by AI
I just need to know where the variable is๐ค
I forgot what I was searching
In Signed Messages
It's almost 10hrs when I started this, still haven't completed it

skip it
i made my own file server mwahahaha

Imagine if we didn't have DNS in the world and we had to remember ipv6 addresses ๐
Awesome, thank you. I'll note this down and check out the website this Sunday. Cheers.
Gave +1 Rep to @rough igloo (current: #2348 - 2)
yep
idk bout you but my hard drive was spinning
How would websites even work without DNS? Would everyone just get one IP and one website to use? Lol
Looks like corruption reached THM too! ๐ I had 1400 points first, so how am I behind him again? @arctic dove explain this sorcery! ๐
Guess HTTP headers would still possibly work
huge hint: look at the cookies, and manipulate it.
like 182.49.235.95:80/<actual website name>?
ctf so humbling, i gotta go touch grass to remind myself that my self worth is beyond solving rooms
Which room?
tryheartme
๐คฃ
Ohhh, I am still at Signed Messages
i did the best i could dawg ๐ญ i will wait for the write ups lol
fr as soon as i woke up, i just hopped on straight to these challenges
What's grass? Is that the green pixels you sometimes see in video games?
it's a block in minecraft
grass outside dah house
Oh yeah I had a house many years ago when I palyed Sims
i just started today lol
same
What is a minecraft?
Well, can't blame anybody, it's insane level for me
even though it's medium
At least you tried

my monke brain was literally just smashing keys
i was just staring
i did three easy rooms and i feel like im gon pass away
bro is not the thinker
I did one medium and one easy not stuck at medium
What did i try? ๐
my bug bounties were easier than these rooms and im concerned
gg
1st and 2nd one
Damn it now power is gone
What rooms were these?
I am sitting in the dark, well it was dark to begin with
Pretend to be funny. If you didn't know MC from game perspective, you should know it as one of the biggest attacks target for Log4j, so you are rather super bad at games and world about you, or terrible sec guy ๐ pick one
the love at first breach ticket rooms
Rooms of the dead, Signed Messages