#👥・help-me

1 messages · Page 29 of 1

finite heath
#

i logged in...

chilly merlin
#

ssh cyadmin@ip

#

try password123

finite heath
#

not working.. i tried

chilly merlin
#

bruteforce it with user cyadmin

#

using rockyou

finite heath
#

still running

chilly merlin
#

whats /secret have

finite heath
#

secret is 403 forbidden

#

now let me tell you...

#

i got first flag

chilly merlin
#

yes

finite heath
#

i went ip/login.php

#

login

chilly merlin
#

whats /images and /dashboard.php

finite heath
#

successful

#

it redirect me to

#

ip/dashboard.php

#

there is nnothing interesting in code..

#

i open inspect menu

#

went to cookies

#

i found 3 things

chilly merlin
#

yes

finite heath
#
auth
flag
PHPSESSID
#

here i got my first flag

chilly merlin
#

yes

finite heath
#

which is base 64 encoding

chilly merlin
#

sessid is gonna be ur session

#

whats auth

finite heath
#

auth is also base64

#

which might give hint to next flag

#

so when i decode

#

i got this text

#
hey_noob_you_got_the_flag,_Now_dont_try_to_list_file_here
chilly merlin
#

dont try to list file here

#

how about

#

DO try to list do here

finite heath
#

yeah...

#

how?

chilly merlin
#

m

#

idk what ur looking at

#

because

#

u wont send pictures here

#

also i need to

#

play siege

boreal solstice
boreal solstice
#

U need to help lmfao

chilly merlin
#

ian been playin siege

#

😭

boreal solstice
chilly merlin
#

yea

#

that and elden ring

#

then need to do some dam projects tmr

boreal solstice
#

Elden ring idk how to play that shi its like playing bloodbourne i hate that game

#

Takes my dumbass back to start

chilly merlin
#

get the graces brah

#

ok im getting on siege

#

@chilly merlin u got it

boreal solstice
finite heath
#

I made

#

pdf

#

what i found till this time

boreal solstice
finite heath
#

I will share the link of that

#

there are so many images

boreal solstice
#

Send em all lmfao

finite heath
#

😐

#

so no pdf?

boreal solstice
finite heath
#

i know imgur...

boreal solstice
#

😭

#

Yet

finite heath
#

I put directly in pdf.. i don't save screenshots.. 😅 I use FastStone Capture...

boreal solstice
#

Might have to wait till @chilly merlin is up

finite heath
#

this is where I uploaded my pdf

#

if you can just please look..

#

^^

#

one more thing

#

nikto result...

#

kali@kali:~/Downloads/cyraacs$ nikto -host "http://100.64.0.35:80" | tee "recon/nikto_100.64.0.35_80.txt"
tee: recon/nikto_100.64.0.35_80.txt: No such file or directory

  • Nikto v2.5.0
  • Target IP: 100.64.0.35
  • Target Hostname: 100.64.0.35
  • Target Port: 80
  • Start Time: 2024-12-07 19:51:32 (GMT-5)
#
  • /login.php: Admin login page/section found.
  • /#wp-config.php#: #wp-config.php# file found. This file contains the credentials.
#
  • /wordpress/#wp-config.php#: #wp-config.php# file found. This file contains the credentials.
  • 8107 requests: 0 error(s) and 7 item(s) reported on remote host
#
  • End Time: 2024-12-07 19:59:57 (GMT-5) (505 seconds)

  • 1 host(s) tested

#

i got this one idea...

#

but I have no idea how to do it...

#

the hint says...

#

_Now_dont_try_to_list_file_here

#

so

#

I am thinking to upload a webshell.php file

#

and get reverse shell

#

but I have no idea how to do that

distant ether
#

You should be able to disable passive mode. I think it's passive off or passive disable if not then lmk and i'll look back at my notes. Ran into this problem a few times.

#

Did you try using this username and password on the ssh port??
Or where does this user/pass allow you to login??

finite heath
#

ftp not working

distant ether
chilly merlin
finite heath
#

ahh... i think server is close now

#

can't do anything else

#
 Hoping the additional time has yielded in a flag being captured.

We are destroying your VPN profile. Kindly share your reports with the final observations.

Thanks,
CyRAACS Team
granite hound
#

guys my kali linux box terminals are slow respomding there is a delay when i type commands, i use vmware worksattion 16 pro and have updated and did a full kali upgrade and cleaned the system using auto clean and autoremove the rolling version is 2024.4 what can i do to fix and stop the delays im using 8GB ram also for the VM

#

if you can help me please DM me

chilly merlin
#

use arch XD

#

how much ram you have?

#

your system?

granite hound
#

@chilly merlin so my system has 1i thin 12GB ram which is horrible and i allocated 8 to the kali machine

chilly merlin
#

i think 4 ram for kali already should be enough

granite hound
#

you think the command delay was slow not too slow but slow i tried cleaning up the system and increasing ram but nothing helped

slim stream
slim stream
granite hound
#

ya my system still runs okay and i actually use the kali VM more then my actual OS lol

#

ya i might migrate to VB

chilly merlin
#

could be vm yes

gentle lake
#

hey guys super random project, but I am hoping to turn an entire PC into a virus net/ gateway for files was hoping you guys knew of a good source code or program for removing viruses:)

chilly merlin
#

haha

gentle lake
#

Should I just run qubes or a similar sandboxing OS? i was just wondering if anyone had a preference or anything:)

granite hound
slim stream
granite elbow
#

@slim stream i checked and i am level 5 in rank but why cant i share pictures

slim stream
granite elbow
#

what

slim stream
#

Upload the pic to an private server of yours, copy the link of the image and paste it in the chat

#

thats what I do

#

Noo

#

Dont copy the message link

#

copy the image link

#

not the message link

granite elbow
frigid monolith
#

is arch better than kali linux

chilly merlin
jaunty helm
#

guys one of my friend had my gmail account, he reset my phone and changed the recovery phone number, now only he has access to my account. I'm worried what should I do??

fervent prawn
#

i dont get it I got 237GB and only 32GB left but if I check Programs the highest programm with size is 932MB how?? what can I do that I get more storage

olive latch
fervent prawn
olive latch
#

🤷‍♂️

chilly merlin
#

how do i protect myself if someone has told me they will leak my personal informatoin and ban me on apps. is comodo firewall helpful?

olive latch
chilly merlin
olive latch
chilly merlin
olive latch
slender torrent
#

I will love to learn hacking or meet an hacker that can sell tools to me pls

slender torrent
#

Can you pls help me

olive latch
chilly merlin
night sleet
#

?

chilly merlin
#

bc i almost said a word that is offensive

#

and it was enough for them

night sleet
#

Strange people...

#

Should research why u even offended them

solar geyser
#

can somebody help me with my audio

#

im on linux and its like 2 % volume

#

but i set everything to the maximum

chilly merlin
#

Might be a bug, restart your computer

#

That’s the usual tech support response, but it usually works tho

thick mesa
#

Can someone teach me basic hacking

zenith drift
#

Install Gentoo?

thick mesa
#

@olive latch thanks

mystic meteor
#

Asking for a new perspective, what are the possibility of freelancing in cybersecurity ? Especially other than in red teaming (VA/PT) ?

maiden violet
indigo imp
#

Any one know how to create a website to flash a firmware using ESP web tool.

indigo imp
#

Bro can you explain to me please

maiden violet
#

You need to host the .bin

#

Make simple html site

#

Make a manifest.json

#

Done

indigo imp
#

Ok bro 🔥

main wren
#

So one of my friend's Instagram got hacked it seems when they tried to get into their account it kinda said that a third party app or website is using my friend's account. But they changed the password and when they tried to log in and follow, like posts it said "Your account has been temporarily blocked from taking this action. Sharing your account with a service that helps you get more likes or followers goes against our Community Standards. This block will expire on 2024-12-15. Tell us if you think we made a mistake."

#

Is there a way to get back the account or wait till the block is over?

#

If anyone's seeing this and sending friend requests I won't be accepting, we can talk about how to fix this issue here in this channel, thanks

olive latch
main wren
#

I see

fair schooner
#

how can I find somebody IP address on Instagram

slim void
#

i have a genuine question

#

so i checked a email in haveibeenpwned and it gave me 52 data breaches ... and i actually want to know the password of that email i entered

chilly merlin
#

hi im new to kali linux can someone maybe help me to know how to create a website step by step?

warped sun
#

how do i get permission to use vc?

mortal hull
#

From where to start hacking? Is there any roadmap step by step that you can provide? I am genuinely confused

chilly merlin
#

There really isn’t like a roadmap to learn hacking, it’s how you want it to go

mortal hull
#

Is those content on that website free of cost?

chilly merlin
#

I would recommend taking a look at hackthebox and tryhackme though

#

Some of it is, some of it isn’t

#

Most of the beginner stuff is

mortal hull
#

Ok, my main problem is that material is everywhere even au can generate some but there is no good mentor or specifically one from whom I can learn

quick shore
#

I'm not sure where to start, I have a specific security issue to resolve. My daughter's college told her that her Amazon Kindle Paperwhite 11th Generation (2021) was connecting to a crypto server. I had her put it in airplane mode. I have searched the internet and found NOTHING about Kindle malware since the patched 2012 issues previous versions had. I don't have my hands on the Kindle yet, it's several hours away from me. I don't know how to verify the strange claim the college IT department has made.

mortal hull
#

Hey Darkness, are you really a greyhat? Since I can't chat you directly as per rule so just one or two qs

chilly merlin
#

Yeah, tell me

mortal hull
#

How do you earn for your living?

chilly merlin
#

I don’t earn via hacking

mortal hull
#

Oo, alright then what? Why did you choose that field?

chilly merlin
#

What do you mean

mortal hull
#

Like, then what you actually do as a greyhat

chilly merlin
#

Mostly scammer payback

#

When I have time left over

mortal hull
#

Oo ok bye for now

chilly merlin
#

Aight

chilly merlin
quick shore
#

Darkness yes, a factory reset would be the best first start. I set it up as new just in August, and she didn't really like it...so it's "close" to factory already.

chilly merlin
#

Hmmm, I still find it quite weird that a kindle connects to a crypto network

#

Sorry, a crypto server

quick shore
#

me too....they have barely any computing capacity.

chilly merlin
#

Yeah

#

It’s possible if they scan the kindle they see it as a normal computer, which might explain it a little bit

quick shore
#

I will reset it and not worry much. Maybe will monitor it with some type of software.

chilly merlin
#

Maybe ask the it department how they know that tho

quick shore
#

Thanks. I won't worry about it much. I'm going to have it left in airplane mode until it gets factory reset.

chilly merlin
#

Yeah, good luck

quick shore
#

have a good day

chilly merlin
#

You too

jaunty plinth
#

How can I get info about a person with discord or a YouTube channel?

#

Or is it even possible

normal raptor
#

could anyone teach me a few things please ? anything at all it’s up to you what u would like to teach would be very appreciated

torn tapir
#

is there a way to use microsoft teams without a microsoft account

#

im being forced to for a comptia class

#

but I set up my computer without logging into microsoft

normal raptor
#

the only thing i know if u can be a guest

#

is*^

torn tapir
#

maybe if I use the browser version

#

its too bad I cant set up a fake computer so Microsoft doesnt do that stupid terms of service snooping

normal raptor
#

i done it on my phone for a id check with the bank not long ago

#

they sent me the link and i joined as guest

torn tapir
#

its just annoying that if I wanna use an app I gotta ruin my local login accounts I put extra effort in to avoid the microsoft terms of service

#

maybe theres a way to simulate a computer within a computer that windows cant override and use it as a guest in a secure browser on that

gentle lake
#

the best way to find someone off of social media accounts is to research their name and find similar accounts finding an email for ip or a facebook account that has an open friends list or similar means location, if you can find their families accounts you’ll often get a real last name and location. If you need more information you can send an ip grabber to them in hopes they click it or you can hopefully find their ip in other ways and with that im sure everyone in here knows you can have some fun:)

#

@jaunty plinth

restive geode
#

My school has wifi blockers, i used to use vpns so i can still enter all the sites but they now also blocked all the apps(so the vpns 2), is there a way to bypass that?

restive geode
tacit rivet
#

I sent you a DM

restive geode
visual void
#

Anyone got information on interacting with the CMOS battery? I’m looking to create an assembly script to attempt to reset it but I’m kinda of stuck on how to start it or even if it’s even possible knowing that it’s a physical device inside the device with constant power not too sure assembly would be appropriate for this idea

lime charm
#

i know you have to touch it with a steel or iron rod to reset it

chilly merlin
#

@tacit rivet hey bud

#

id suggest you just leave the server

#

and stop trying to scam people

#

or ill personally look into you

#

@restive geode mind sending what he sent you?

chilly merlin
#

team effort

#

how mych is an

#

much

#

ammo account

#

free

#

you just register thats it

vapid dew
#

if I have this code that take data as a post request and have a vuln in await vm.run(eqn); I want to execute command but there is a filter a-zA-Z which check for chars how can I bypass this filter

app.post('/calc', async function (req, res) {
    let { eqn } = req.body;
    if (!eqn) {
        return res.status(400).json({ 'Error': 'Please provide the equation' });
    } 
    else if (eqn.match(/[a-zA-Z]/)) {
        return res.status(400).json({ 'Error': 'Invalid Format' });
    }

    try {
        const result = await vm.run(eqn);
        res.status(200).send(`${result}`);
    } catch (e) {
        console.log(e);
        return res.status(400).json({ 'Error': 'Syntax error, please check your equation' });
    }
});

is there a website for js to make js commands without chars like using [] , {} () ?

fast umbra
#

I’m having a problem with downloading stuff with pip. I did pip install -r requirements for a file, but I got an error message saying externally managed envoirment

fast umbra
#

You know the username?

vapid badger
lyric olive
fast umbra
lyric olive
fast umbra
lyric olive
#

not worth the $20 for a account he/she/it can replace

chilly merlin
jaunty plinth
#

Ok ty

chilly merlin
#

Np

jaunty plinth
restive geode
#

Sorry for the time but i live in another time zone i think

granite elbow
#

how to turn wlan0mon back on if its off kali linux

unique forge
#

If it is listed

#

sudo ifconfig wlan0 up

#

Check if it's listed in ur sys

#

If you are using airmon

#

Then sudo airmon-ng start wlan0

night sleet
#

Sup everybody?

unique forge
#

Sup bro 🤘

night sleet
#

All good broski?

#

Hope u all gonna have a good christmas this year

unique forge
#

Got to be the best christmas

night sleet
#

Hopefully before the war starts 😂

#

Ww3

unique forge
#

Uff getting dark 😅

night sleet
#

It is tbh

unique forge
#

If u think there's gonna be ww3

night sleet
#

Time to hack the planet even more

unique forge
#

Then what would be the cause

night sleet
#

😂

#

Politics n that garbage

unique forge
#

Hmmm

night sleet
#

Ikr i wish a term or a word of politics didnt exist

unique forge
night sleet
#

Cheers everybody

night sleet
unique forge
#

Some are dude, but there would be some one good I guess

night sleet
#

Liars and manupilators

unique forge
night sleet
#

The honest ones get assasinated quick

unique forge
#

Yh That's a point

night sleet
#

Sad but thats what u get when u speak the truth

#

🫡

unique forge
#

Many tried and failed

#

It's the system

night sleet
#

Weird asf

unique forge
#

The system decides

night sleet
#

Junkies 😂

unique forge
#

Bro I guess we are gonna conclude this with illuminati 😅

night sleet
unique forge
#

Yh yh 😅

night sleet
#

All we need is a good christmas

#

Family wise

unique forge
#

Yhhh cakes and gifts

night sleet
#

Well that but seeing eachother especially

unique forge
#

Greatest meetup ever

night sleet
#

Course u never know when they gonna pass away

unique forge
#

Dude....

night sleet
#

Deep

#

😅

unique forge
#

Deep thoughts with deep

night sleet
#

Like the ocean

#

😅

unique forge
#

Nah the one from boys

night sleet
#

I already lost like 5 pals from my childhood

unique forge
#

What happened

night sleet
#

Drugs...

#

They killd themself

#

One of my pals was found in a forest dead

#

😑

#

Anyhow back to terminal convo

unique forge
#

Uff dark

unique forge
night sleet
#

Ik dont wanna break the rules here

#

Cheers broski

unique forge
#

Cheers

#

So how did you overcame Such a situation

#

Should have been really depressing

#

Cause I know the feel of losing an only friend

#

Took me years to overcome

coarse wadi
#

If I complete a 4 year online Bachelor's degree can I do further studies with it

shadow fractal
#

There are multiple way to go around it

#

Either aiming for masters or going for certs in short in addition to your job exp to get a better position or qualification

fallow rain
#

Who knows how to make flash BTC coin that will pass through the network

static tree
#

so im practicing some reverse engineering on a .sav file (wanna start small). What are some good starting points to go from?

gloomy radish
south pendant
#

Hi

#

l need to learn how can l learn

chilly merlin
#

lmfaoao

frigid monolith
#

which volatility should i use as begginner for ctf's

shadow fractal
#
  1. Check the latest drivers.
#
  1. check OpenGL drivers
#
  1. check Java drivers.
#

@frozen edge

devout vine
#

Im looking to do some wifi pentesting for fun (im new to cybersecurity), and im looking to get more into wifi generally since i find it very intresting. I found out its very helpfull / required to use a wireless adapter. I have a router laying around, so is it possible to convert that into a wireless adapter?

devout vine
tawdry plover
#

I recommend buying esp8266

#

its really fun

#

its like 5$ in aliexpress

devout vine
tawdry plover
#

but I doubt that you can use them in monitor mode

devout vine
devout vine
tawdry plover
#

english is no my main language

devout vine
#

so you can uh

#

hard to explain but

#

you can install new firmware

#

"Flashing is the process of installing new firmware on a router"

tawdry plover
#

try this

tawdry plover
#

I have no clue about whether you can or not

#

im not into hardware hacking

devout vine
devout vine
#

I can update you later in the week or next week if it worked or if it didnt, anyways have a nice day!

tawdry plover
#

you too!

feral jungle
#

Hi

tawdry plover
#

hello

hexed lintel
#

Y'all what app u guys use to hack on phone mine is an Android 😭?? Im new at this

chilly merlin
#

caw

real pagoda
#

Hey hey

#

I'm trying to send mail using a local server

#

How do I do this ? So far all the methods I've seen involves using an smtp server and I don't have access to any

lusty sail
#

yo my pc has been hacked can someone help me to get this malware off? It was thru clicking links

late patio
#

ladies and gentelmen

#

my raspberry pi pico is not reconnecting after installing circutpy

#

(help)

plush relic
#

hello 👋 ive been planning to major in cybersecurity and i still have some questions about the major itself that id love to ask someone about
if anyone has studied cybersecurity in university or college could you please DM me? would be greatly appreciated 🫡

jade geyser
#

Anyone wanna help me construct a DFA based off a simple language?

late patio
#

Still not getting cricuitpy to work

lusty cape
late patio
lusty cape
#

Nope

grand shore
#

Is it possible to unlock/reset a phone from a software ? I found a couple of thing but I'm not sure I trust them

thick mesa
#

How to connect to a WiFi network without knowing the password

leaden olive
#

Who can make discord bot ?

chilly merlin
chilly merlin
foggy crown
#

Hi guys

#

Can some one help me hack a gmail account

#

Pls

foggy crown
#

I mean teach me

chilly merlin
#

no

foggy crown
#

Ok

chilly merlin
#

💀

chilly merlin
#

@modern meteor do the honors

#

(╯°□°)╯︵ ┻━┻

#

my bad dawg ┬─┬ノ( º _ ºノ)

static scaffold
#

can someone tell me safe and easy ways to pay someone on discord

loud fractal
#

Can anyone one tell me roadmap for pen testing. I am a beginner 😅

#

@chilly merlin ?

static scaffold
#

so i want to buy an account for a game

#

its cheaper

#

and i want a way to pay him safely

#

online

chilly merlin
#

If he scams you you can refund your money

static scaffold
#

but then wont he think i am scamming

#

because if he gives me the info he will probably think ill refund the money

#

@chilly merlin

waxen prairie
#

crypto is answer to all

serene umbra
chilly merlin
stark willow
#

Hello!! I am a college student...in 1st year....ik there isn't gonna happen anything with being in college...what it's not in my hands so I better not talk about it......I may seem to speak nonsense but I am just trying to write a paragraph so that someone will notice me......so when you come to the main point.......I am interested in cybersecurity and hacking (don't ask me if I will do legal stuff or illegal) but ya I was restricted till now to learn them.....now am a free bird.... what shall I do? Where should I begin? Can YOU help me tho....? Teach me.....? guide me......??

dusk flint
stuck bolt
#

How can security audit reports be produced using nipper-ng for firewalls like Palo Alto and FortiGate? need to modify code? how? any leads would be appreciated. Thx.

open plover
fresh orchid
#

Hey guys I need some help I’m trying to get ollama to work on my pc on windows using wsl but I’m just getting errors even though I installed the ollama model, Ubuntu,webui,docker,and all drivers for the GPU and in the end I was able to run the webui but it didn’t read the ollama model so we are back to square one

Anyone??

small drum
#

How can I make a Gmail account without a phone number (skip option isn't available and the free numbers have all been used)

chilly merlin
#

need some websites to apply for stipend based cybersec internships in india

dusk flint
#

saw some internship application jobs there a while back

chilly merlin
#

none replied back

dusk flint
frail axle
#

can i hack/use gobuster on windows 10

chilly merlin
#

correction 202 as of now

chilly merlin
waxen prairie
chilly merlin
waxen prairie
granite elbow
#

does anyone know how to get bios password windows if forgot

oblique hinge
#

If it's the bios password, you can usually just look up the mobo/cmos reset instructions for your model. If it's the tpm password it's pretty much out of the question unless someone knows of a tool which is likely vendor dependent

granite elbow
#

whats a tpm password

#

@oblique hinge

oblique hinge
#

Trusted Platform Module

cinder nebula
#

Do anybody know how to wire ?

tawdry plover
unborn grove
topaz inlet
#

Yo guys I need help I want to explore the dark web

restive geode
#

But dont buy anything

cinder nebula
topaz inlet
spiral portal
#

poopy

zenith drift
#

you should buy something. treat yourself

glad halo
covert hazel
#

Yo guys, is wifi pineapple worth buying or not?

boreal gull
#

Please I lost my iPhone can anyone help me to track it for me?

waxen prairie
#

uk if you wanna just be more safe

torn tapir
#

Does IT earn more than 60k a year anymore?

waxen prairie
waxen prairie
torn tapir
#

not cali

waxen prairie
#

but i think the salary went down than last 2 years

fleet wharf
#

Anyhack3rs? Online

waxen prairie
fleet wharf
#

Gry?

boreal gull
waxen prairie
waxen prairie
fleet wharf
#

Okey but it'll be a little unethical

waxen prairie
boreal gull
waxen prairie
fleet wharf
waxen prairie
boreal gull
waxen prairie
#

he is good at it he might help you

fleet wharf
waxen prairie
waxen prairie
boreal gull
#

Find my phone is not working. It is block, but I have the serial number and the rest.

waxen prairie
fleet wharf
#

Sry my bad

boreal gull
torn tapir
#

hm IT still seems to earn enough

boreal gull
#

Like they're not serious about my iPhone

fleet wharf
#

@spark bloom

chilly merlin
#

dont mass ping

fleet wharf
#

My bad

ornate remnant
#

Hello everyone please teach me how to download the I guess mining wallet app I know I'm not using the right terminology but I'm a quick Lerner and I'm dead broke lol

#

Please help me

#

The old crypto wallet app and how to cash out

#

Crypto wallet finder

#

And I'm using an android

#

V E X O can you please help a beginner

dusk belfry
#

Yo got a doubt where will I find the payload for all the things in Kali Linux I need the directory it is like I am in a alt universe that this was never a thing
First off does that kind of thing exist I guess it is goes like /usr/sec something

dusk belfry
ornate remnant
#

Who can I ask

#

I seen it on Instagram

dusk belfry
#

Wait for some time some one might come

ornate remnant
#

It's real

#

OK are you getting any help since you logged into this

dusk belfry
#

This is first time couraging myself up to talk something in a group chat

chilly merlin
#

Trust
MetaMask
Coinbase
Binance
Exodus
Atomic

#

wallets

#

@ornate remnant

chilly merlin
ornate remnant
#

No I'm talking about the one that gives you the crypto from unused wallets

#

@chilly merlin

chilly merlin
#

attempting to access cryptocurrency from "unused wallets" or using tools to gain access to wallets without the owner's consent is illegal in almost every country

#

do ur own research mate idk either

#

not here

dusk belfry
ornate remnant
#

Well how can I make some money please I know somebody has an answer I'll do whatever it takes I only have an android

ornate remnant
#

@The _Red_Serpant

chilly merlin
#

You can browse the SecLists directory:
ls /usr/share/seclists/

chilly merlin
dusk belfry
chilly merlin
#

@dusk belfry if u cant find seclists sudo apt install seclists
`

ornate remnant
#

I'm really a baby what is the seclists directory

dusk belfry
#

Tq mate

chilly merlin
#

SecLists is a popular collection of wordlists and lists used in cybersecurity tasks like penetration testing, web application testing, password cracking, and vulnerability assessments. It contains lists for various use cases, such as brute-forcing login credentials, discovering hidden files and directories, and identifying common vulnerabilities in web applications and networks.

#

@ornate remnant

ornate remnant
#

Thanks but I heard that top hackers are on here like anonymous

dusk belfry
#

@chilly merlin mate can u recommend any machine in htb labs for web if u have done any??

chilly merlin
#

Jeeves
VulnHub - DevOps
Tired
Optimum
Bashed
Lame
Forest
Iron
Bastion
Control

#

@dusk belfry

#

ill hop off for now

dusk belfry
#

Tq though how did u learn web exploitation with real machines or something

chilly merlin
#

idk web exploit either

dusk belfry
#

For practical

chilly merlin
#

im jus a skid

dusk belfry
hollow pulsar
#

@dusk belfry can you add back? I have something to ask you.

chilly merlin
#

better to ask someone more credible

dusk belfry
candid lotus
#

what is the best disassembler for rust .exes?

chilly merlin
candid lotus
chilly merlin
candid lotus
chilly merlin
clever wind
#

hi ive got a question

chilly merlin
clever wind
#

how can u use hacking to make money im new to it but i can dedicate time into it

chilly merlin
clever wind
#

@chilly merlin is that the only way

chilly merlin
clever wind
#

@chilly merlin what about the other one

#

cos ill be real if i learn it it'd be to do the doog way

waxen prairie
clever wind
#

fair enough

atomic tiger
#

hey friends, I needed a favor to ask, if any one has any ai project that they could give me for my college project

chilly merlin
tall jacinth
#

Does anyone know about “ Linux ” ?

bold plaza
tall jacinth
bold plaza
dusk flint
#

lmao

versed lintel
#

does anyone know of osintgram alternatives? I've tried profil3r but I'm having issues installing

zenith drift
tall jacinth
#

What is it mostly use for?

zenith drift
#

You mean its use outside of being an operating system? Or advantages of it?

atomic tiger
#

I really need it

steady nest
#

how do i get worm gpt

#

or whatever the best hacking ai is

chilly merlin
#

lol

#

allowed?

#

let me check it rq

#

yeah it does wtv u ask lol

#

ethical or unethical

#

and its free no limit

#

Even discussing WormGPT in a public server can draw attention to malicious tools, encouraging unethical or illegal use.

#

i found this mate

#

since kids are in here

#

kindly post in dms

#

Okay

slate thistle
#

this might be a dumb question but im still learning so im gonna ask anyways, what exactly are ctf's? I see that term get used a lot

olive latch
slate thistle
chilly merlin
#

A CTF (Capture The Flag) in the context of cybersecurity is a fun and engaging competition designed to test and improve your hacking and problem-solving skills. It's like a digital treasure hunt where participants solve puzzles or challenges to "capture" virtual flags—hidden bits of code or keys. These challenges are designed to mimic real-world scenarios hackers or security professionals might face.

olive latch
#

^^

chilly merlin
#

human or machine same answer

slate thistle
patent hollow
#

bro i have some back gorund in python i wnna continue to study and learn more about sercirty and tech
dk where to start

unique forge
#

Is using VPN along with tor safe?

#

Like someone told there might be chances of exit node poisoning like things

eternal tendon
#

Anyone help me i need to check my sever protection

shadow fractal
eternal tendon
#

But i need to ensure my sever protection

shadow fractal
#

Who knows even if that server is yours or not

smoky osprey
#

How can i remotely gain access to android from kali linux by port forwarding (for pentesting) not gonna use ngrok it's paid. If possible share the resource link. Thank you

smoky osprey
chilly merlin
crisp star
chilly merlin
#

It's not a tunneler tiemviewer is just a remote desktop app which needs user permission

smoky osprey
#

Ohhh

crisp star
#

Why do you need to hack something if you can just juse a legitimate application brain_expand

chilly merlin
#

For self education on how it could be done to you 🥸

smoky osprey
#

Can you just help me to figure it out

chilly merlin
#

Use portmap.io and openvpn connect look up how to use it on youtube

#

@smoky osprey

smoky osprey
#

Sure I'll check it out

chilly merlin
#

It's a tunneler like ngrok just use tcp tunnel

#

What are you using to build the payload?

smoky osprey
#

I hope it allows multiple tunnels

chilly merlin
smoky osprey
chilly merlin
#

For free

chilly merlin
dim stirrup
#

Yh you do

smoky osprey
chilly merlin
#

For me on android 13 and up I think it was it won't even let you install the payload onto the device but test it anyway and lmk

#

I can't remember what it prompted when I tried to install jus let me know how it goes lol

smoky osprey
#

Yeah bro for sure.

#

Appreciate it

chilly merlin
#

Jus dm me once u do it and np I don't mind helping add me

smoky osprey
#

You got insta or you want me to add you on discord

chilly merlin
#

Discord

smoky osprey
#

👍

#

I'll let you know ASAP

chilly merlin
#

Ight lmao

crisp star
#

At this point just create your own android malware.

smoky osprey
#

New bee

crisp star
#

msfvenom signature is already well known and will be blocked by the majority of security vendors.

chilly merlin
#

Yeah that's what I was sayin

smoky osprey
#

Any suggestions?

chilly merlin
#

But it's still good to test with and there are many things you can do to make in fud

crisp star
#

If you want just to learn stuff like port forwarding do the TryHackMe machine

#
TryHackMe

Learn how to pivot through a network by compromising a public facing web machine and tunnelling your traffic to access other machines in Wreath's network. (Streak limitation only for non-subscribed users)

smoky osprey
#

Is there any advanced things in there??

crisp star
#

Depends what you consider as advanced

smoky osprey
#

Like I'm a beginner

crisp star
#

I mean you can also do THM anyway

#

They have a lot of guided rooms and introduction

smoky osprey
#

Sure I'll try that. I got one question. Is it ok to get demotivate sometimes

smoky osprey
chilly merlin
#

Just do what ever you like bro u don't gotta go by someone else's book learn how ever you want

#

Idk what I am I got a good understanding of most things but I haven't started to learn to code yet haven't had time

smoky osprey
#

Should I just start solving CTF?

crisp star
#

CTFs are nice

#

You can also go into forensic

smoky osprey
#

I felt lil demotivated

crisp star
#

That's normal. You probably have to read write ups.

smoky osprey
#

I should read write ups then. Solving?

crisp star
smoky osprey
#

Okayyyy

smoky osprey
rough basin
#

Wassup yo i need some friends who trying be friends

#

How to make chat gpt fix my code right

chilly merlin
#

CAW

south pendant
#

l need man to become friends with you man

steady nest
#

i just got kali on my vm, what is my first step?

tawdry plover
slender burrow
#

I just bought my first network adapter, me and chatgpt have been trying to set it up but still got issues

pseudo tartan
#

Hello does anyone know cryptography. Anyone into it. I have an assignment on RSA methodology and my lecturer didn’t explain well to me can anybody do that ?

vapid badger
#

So have a small issue i have lost access to my playstation account awhile ago because it had 2 step verification on it and i lost the phone that it was connected to

So i was wondering if anyone would be able to get it back

rough basin
#

Do anybody got a api key for tagged app

serene umbra
#

Hmmm

gusty sluice
#

Is the A+ worth it?

honest echo
#

Hey guys, I'm new to this stuff so sorry if this is a really dumb question but I'm doing the Enumeration & Brute Force course on Try Hack Me and whenever I press the green "Start Machine" button it comes up with a "Parsing error", when I searched this up its apparently when a program or interpreter is unable to process data or code correctly. Is this a problem with the website or have I set up the VM incorrectly? Please ping me if you have an answer, thank you.

lyric olive
#

i know this is a odd question could i use a torrent program and get a ip (not behind a vpn/proxy ) and then nmap for open ports and then gofrom there ?

dense condor
#

Any way to remove MDM(mobile device management) from an iPad without the company login

lyric olive
dense condor
#

Correct

lyric olive
#

@dense condor why u need to remove it ?

dense condor
#

Because I want to give to someone as a gift and the restrictions in place block or require information I don’t hv.

#

Older brand new iPad

lyric olive
#

can u unlock it ?

dense condor
#

I’m in it and have reset it multiple times of course but the profile has to be removed

lyric olive
#

sorry im android a google response

#

havent had a ios since 4s

dense condor
#

Appreciate it. I don’t have the password

lyric olive
#

no problem there is better people here that know about ios but if u dont have the password they might not help u

dense condor
#

Understandable

chilly merlin
#

ded chat

lyric olive
chilly merlin
#

Hey how can I upgrade my rank

chilly merlin
chilly merlin
#

talk some more

#

u can buy roles

chilly merlin
#

yeah

chilly merlin
#

Hey

#

Sup

#

Anyone know the time when the first kid was born

feral elbow
#

My python always tells me that the module audioop is missing I reinstalled Python and it’s still says that how do I fix that?

heady ingot
#

How can I copy tradingview paid indicator script?

blissful ore
#

Does anyone know where I could learn Lua and remember it easily.

shadow fractal
#

NEW packages will be installed:
gspell kf6-kwindowsystem openh264 qt6-qtwayland
The following packages will be upgraded:
alsa-lib alsa-utils appstream audacious bat bsdtar c-ares chromium clang cmake command-not-found
cowsay cups curl debianutils enchant file-roller file-roller-help firefox git glib glib-bin
gobject-introspection gst-plugins-bad gst-plugins-base gst-plugins-ugly gstreamer gtk4 harfbuzz
harfbuzz-icu hexchat inetutils json-glib kvantum less libadwaita libaom libarchive libblkid libc++
libcompiler-rt libcurl libdav1d libdrm libepoxy libexpat libgit2 libgmp libheif libicu libjxl libllvm
libltdl libnettle libnghttp2 libnspr libnss libopenmpt libpixman librav1e libsmartcols libsoup3
libsqlite libsrt libssh libtirpc libtool libunbound libunistring libuuid libuv libvpx libvte
libwayland libwnck libx264 libxcursor libxml2 libxmlb libxt libzip lld llvm lsof mesa mousepad mpg123
mtpaint ndk-sysroot openal-soft openjpeg openjpeg-tools pavucontrol-qt php postgresql pv pycairo
pygobject python python-ensurepip-wheels python-numpy qt5-qtbase qt5-qtbase-gtk-platformtheme
qt5-qtsvg qt5-qtx11extras qt6-qt5compat qt6-qtbase qt6-qtdeclarative qt6-qtlanguageserver
qt6-qtmultimedia qt6-qtsvg qt6-shadertools rhash rubberband ruby rust rust-std-aarch64-linux-android
samba svt-av1 termux-tools tigervnc tor unbound unrar util-linux vulkan-loader-generic wget xfce4-dict
xfce4-panel-profiles xfce4-taskmanager xkeyboard-config xorg-xprop
132 upgraded, 4 newly installed, 0 to remove and 0 not upgraded.
1 not fully installed or removed.
Need to get 0 B/497 MB of archives.
After this operation, 121 MB of additional disk space will be used.
Do you want to continue? [Y/n] y
Could not exec dpkg!
E: Sub-process /data/data/com.termux/files/usr/bin/dpkg returned an error code (100)

#

@rough basin

#

Here for further help

lost depot
#

hi guys i'm trying to do a project for uni where i have two db (users and news), and i have to create a page to show a news (just one in concrete) using a parameter id. This parameter will be queried through an HTTP method GET. The id is the attribute of the news table and that value of the parameter corresponds to a record in the table. I've already done that, but the parameter id can only be vulnerable for blindSQL, and NOT for normal sql injection. I'm stuck on how to do this. I've tested to following code on sqlmap and the result is that all tested parameters appear to not be injectable. If someone could help me i would be more than happy, thx 🙂 <?php
require 'db.php';

// Validation parameter 'id'
$id = $_GET['id'] ?? 1;
if (!ctype_digit($id)) {
echo "<p>News not found.</p>";
exit;
}

//Value 'id' forced to be numeric

$stmt = $conn->prepare("SELECT title, body, datetime FROM news WHERE id = ?");
$stmt->bind_param("i", $id); // "i" shows that parameter 'i' is an integer
$stmt->execute();
$result = $stmt->get_result();

// Response handling
if ($result && $result->num_rows > 0) {
$news = $result->fetch_assoc();

$title = htmlspecialchars($news['title'] ?? 'No title');
$body = htmlspecialchars($news['body'] ?? 'No content');
$datetime = htmlspecialchars($news['datetime'] ?? 'Date not available');

echo "<h1>$title</h1>";
echo "<p>$body</p>";
echo "<small>Publicado el: $datetime</small>";

} else {
// Error message
echo "<p>News not found. Error in the database: " . $conn->error . "</p>";
}

$stmt->close();
$conn->close();
?>

dusk flint
shadow fractal
#

I just reposted his message

#

To not clog the chat up

dusk flint
#

@rough basin ??

tepid basalt
#

Hello guys i need help!

S24+ with a password that i dont remeber
Got tons of importent stuff that i dont want to give up on
Any way to unlock it without reseting it?

Any pirate softwere
Please im am begging

royal stratus
#

@twilit fractal

twilit fractal
#

Hi guys! i hope i am not troubling anyone but i need a little help. IT IS SOLELY FOR EDUCATIONAL PURPOSE AND I WILL TEST IT ON MY PERSONAL VM! But i want to understand how it works and how do i set it up. it is a backdoor with keylogger. Can someone give me a hand and help me out? i hope i won't take more than 15 min.(also my name is Alex) also thank you @royal stratus

shadow fractal
tepid basalt
#

Ok thank u sorry

dusk flint
#

Then perform a hard reset

steady nest
tepid basalt
dusk flint
#

how to enter recovery mode

chilly merlin
#

Lol

lethal yarrow
#

Could anyone help me check if what i downloaded is safe? I have a VirusTotal and Hybrid Analysis report

#

I also have the file (its 7mb)

#

Nvm i gave up

astral sleet
tepid basalt
tepid basalt
astral sleet
tepid basalt
#

oh no no one helped

astral sleet
tepid basalt
#

yea ?

#

but why u need account im talking about the phone password itself no memebership of anykind

astral sleet
rough basin
#

I fix it

astral sleet
rough basin
#

I got the same phone

#

Its easy to unlock

#

With a pc

tepid basalt
#

how

rough basin
#

Just look on YouTube

#

Galaxy s9 is easy

tepid basalt
#

what

rough basin
#

I'm send you a video

astral sleet
tepid basalt
tepid basalt
astral sleet
tepid basalt
#

so why did u send it

astral sleet
astral sleet
# tepid basalt so why did u send it

Oh mb , here what it showed me
/findmymobile.samsung.com/ > Log in with the same Samsung account. Step 2. Click Unlock my screen option on the left panel of Find My Mobile account interface > Click on Unlock button. After it completes, your Samsung phone should be unlocked successfully

tepid basalt
#

not working anymore

astral sleet
tepid basalt
#

?

candid harbor
#

Help. I want to start learning hacking and I was wondering how should I start. My idea was to start by doing ctfs and learning on tryhackme or hackthebox but idk what platform is better. I don't have a big budget so I can pay on both. Any answers or seggestions are more than welcome, even other places where I can start.

stray mural
#

as you're beginner in this field, start with TryHackMe platform. This platform is beginner friendly

candid harbor
#

Thx

#

I literally didn't saw that channel

elfin crest
#

I need help on getting my playstation account back that someone stole from me

young rampart
#

?

chilly merlin
#

Help him guys

elfin crest
#

I already did that and they said it's security reasons which they can't help me since the dude changed my password my email my phone and everything

young rampart
elfin crest
#

I mean the dude Threatened me to give him money in order to give my account

chilly merlin
elfin crest
#

He asked for like 25 said it's for his mother and I didn't believe him,

young rampart
#

he does not have a mother

elfin crest
#

I even told him why was I the target and he said just because and that's all he said

young rampart
#

his mother would have told him to do better

young rampart
elfin crest
#

25$

young rampart
#

oh

#

well it cant be that bad right?

elfin crest
#

Nah that dude is black

young rampart
#

Just pay?

young rampart
elfin crest
#

Can't

chilly merlin
elfin crest
#

Told the dude off that I was contacting The FBI

#

And he blocked me

young rampart
young rampart
#

so we hack accounts

#

Like that fixes the issue

#

just get a job bro

#

litterly somebody in a scam center

chilly merlin
#

Lol

young rampart
#

bro

#

the thing is

chilly merlin
#

I agree

young rampart
#

its not gonna work forever though

#

Like you would make better income by just working a job

chilly merlin
#

I agree on u

young rampart
#

Which is why i think he is lying

chilly merlin
#

Of course he is

young rampart
#

25 bucks might get you a little bit of food

chilly merlin
#

A lot

young rampart
#

You live in the usa

#

?

#

If you spend it wisely could scretch 2 weeks off ramen noodles

#

lol

#

Maybe that and some water

#

nothing else

chilly merlin
young rampart
#

one order of mcdonalds is that whole 25 dollars

#

spent

chilly merlin
#

I can fill my stomach in just 2 cent

#

That's the currency value of my country

fast shard
#

Can anyone teach me real hacking

#

Friend

stray mural
#

we only can guide you & help if you get stuck somewhere

fast shard
#

Thanks friend

#

Friends

stray mural
fast shard
#

For lots of love been great here but I have been stuck in basic issue like where to start

fast shard
hollow dust
#

Which other platform can you learn ethical hacking

fast shard
#

Sir I have sent a request and help me learn

stray mural
fast shard
#

Ok

#

Brother

stray mural
hollow dust
#

I am always confuse getting started

stray mural
#

you'll have an idea how to start

fast shard
#

Ok

dusk flint
#

.

#

At this point just perform a hard reset

#

@tepid basalt

forest oar
#

Any idea where I can learn about the Sort Algorithms other than youtube? (trying to gather study material for a final)

forest oar
#

Yeah I got the book for Data Structures, but I'm looking to learn more about the sort algorithms in different way cause it's been somewhat hard to grasp the subject

dusk flint
#

But i can get it

#

I found one named "Algorithms"

#

Maybe you could take a look @forest oar

forest oar
#

I'm not looking a book in specifics, just resources as to where I can learn more other than YT?

chilly merlin
#

does anyone know any free app that I could use for coding?

tepid basalt
hexed lintel
valid belfry
#

I get a mcrib , small fry and a frap for like 8

chilly merlin
#

wsg lukas

#

been a minute

#

I got scammed...can someone help me locate the scammer..also new to discord..really need help

halcyon flame
halcyon flame
#

What situation.

#

Oh, you're the one in DMs

#

It's ok.. trying to help

valid belfry
dense plank
#

I am about to fail tha everloving crap out of a cybersecurity fundamentals class

#

Can anyone help me?

#

To be clear, it is all open note, discussion posts and an essay, no tests, no cheating, I just need someone to get on a voice call and explain concepts like I am 5. I am willing to show whoever needs it proof the assignments are not meant to be test like by screensharing my canva

halcyon flame
#

Didn't you have any preparation before the exam or anything?

#

Like.,. are you at the end of a course, at the start

#

Is it an online thing, or an in person institution

brittle tide
#

Hey can anyone teach me how to hack

halcyon flame
#

Yes, you can!

#

Or go to a college or uni

#

There are so many platforms out there with free training resources now

#

Pick one and see how you get on 🙂

twilit tendon
#

Is HackTheBox free?

rotund breach
#

With a subscription based service as well

honest echo
chilly merlin
#

tryhackme

honest echo
#

Oh yeah right, my bad lol.

#

Thank you.

honest echo
honest echo
# stray mural what?

So I've been looking around on THM (I know I somehow completely forgot what THM was a second ago even tho I have an account lol) but for some reason a lot of the tasks or courses that I try to do always show up with an error everytime I click the "enrol in path" or "start machine" button, at first I thought it was because I hadn't set up something correctly but now it shows up for almost everything (including the cybersecurity 101 section). Does anyone else have this problem?

stray mural
#

@chilly merlin

chilly merlin
#

Yes

stray mural
#

can you tell about the THM error of achillguy (?)

chilly merlin
honest echo
honest echo
stray mural
#

give more information regarding the error

honest echo
#

Wait I minute, I think I know whats wrong, gimme a second to fix it.

honest echo
serene umbra
#

Delete

dusk flint
chilly merlin
#

any project ideas to keep in resume will be appreciated

dusk flint
#

js

chilly merlin
olive latch
#

@elfin crest contact support

dusk flint
#

👀

dusk flint
#

@rough basin did you fix your dpkg error?

rough basin
#

Yeah but I got another one i need fix

#

@dusk flint

dusk flint
chilly merlin
#

@hollow dust

rough basin
#

@chilly merlin can you fix it

chilly merlin
#

no

rough basin
#

😪

hollow dust
#

I want to be an ethical hacker

#

Any help

torn tapir
#

is there a good email for signing up for popular things that usually try collecting data?

#

idc about the email contents getting hacked but I dislike snooping on contacts and location

queen oar
#

if its location and stuff then just get a vpn

#

proton mail, mullvad/proton vpn, any linux distro, and tor browser is like the online anonymity starter pack

torn tapir
#

I guess I'll make another proton

#

im already using proton and tor

queen oar
torn tapir
#

I dont want to mix email purposes

queen oar
#

oh valid

#

i gotta get into that but idk

torn tapir
#

I keep bank subscriptions, social, app accounts, and spam separate

queen oar
#

might have a gmail just for normie activities

torn tapir
#

if you use the same email you use for banking for social you could get hacked

queen oar
#

yaa

torn tapir
#

so I have like a bajillion emails at this point

#

gmail is worse cause it links accounts which you can use to hack into the other emails and shows your contacts

#

whenever you sign in with multiple accounts on the same pc I wonder if it assumes you're the same person

#

either way Im open to alternative email platforms

queen oar
#

cockli is one too i think

#

@torn tapir guerrillamail too for temp emails

#

lavabit too

#

edward snowden used lavabit

honest echo
dim stirrup
#

DM

radiant loom
#

should i learn python with sololearn

#

or should i just go straight into the freecodecamp curriculum

stray mural
#

Your choice

chilly merlin
#

both wrong

#

try brocode yt

#

and build some projects