#👥・help-me

1 messages · Page 42 of 1

chilly merlin
#

@tawny coral can u cross check in DMS if u would like to?

chilly merlin
#

auto logged in to your account?

#

that's normal

#

point is as what user u logged in as

#

admin?

#

i thinking that he is assuming something as breach which is actually a feature?

#

cuz the thing's ain't adding up

tawny coral
chilly merlin
tawny coral
#

for DM

supple grail
chilly merlin
#

yes man

supple grail
#

Oh alright allow me to try to uhh

#

Start all over

chilly merlin
#

💀

supple grail
#

Sometimes it's better to do that

#

It's a web interface of what I'm assuming is a server, the only thing on the screen is folders and data, it's not possible to edit any of it but it is possible to read and copy it

#

It's a sorta file system or smthn

#

I found a link to it in a file on my laptop and after looking where it went it wanted me to login with a username and password which I obviously didn't know

#

After removing something with login from the link I was in the web interface all of a sudden

tawny coral
supple grail
#

I think it's linked to the ICT person his site

#

He has like a site where he shows what he offers as a business or smthn

tawny coral
#

we have a solution

supple grail
#

What should I do?

tawny coral
#

we can do a voice session and you can share your screen

supple grail
#

I cant

chilly merlin
#

rip

supple grail
#

I used wsl discord and VC is super broken

radiant stone
#

No need to do it anon, just let them know.

supple grail
#

If you want I can do it tmrw maybe I can get it fixed by then

#

Give me roughly 21 hours

#

I also want to sleep and have to go to school

weary peak
#

Can someone help me

tawny coral
weary peak
tawny coral
tawny coral
# weary peak Ohk

We don't condone any illegal activies here and asking something illegal or unethical might get you banned.

weary peak
#

I am not asking to hack it

tawny coral
#

ok then, shoot

weary peak
# tawny coral ok then, shoot

I forgot my password so I try to login with forgot password and it send otp to no to but then it send some code to same gmail

#

So what can I do ?

tawny coral
#

I believe gmail requires a phone number, you should be able to select your phone for the 2FA or Youtube app if I'm not mistaken

weary peak
chilly merlin
#

So?

#

Jus enter otp

weary peak
weary peak
chilly merlin
#

what

#

I mean you received oto via mobile sms

weary peak
#

After putting that code it's also send code too Gmail to

chilly merlin
#

Shouldn't be

weary peak
chilly merlin
#

Make sure you hit right buttons

weary peak
tawny coral
#

1️⃣ Go to Google Account Recovery.
2️⃣ Enter your email and click Next.
3️⃣ Choose a recovery method:

Enter your last known password.
Get a code via recovery email.
Get a code via phone (SMS/Call).
4️⃣ Follow the on-screen instructions to reset your password.
5️⃣ If no options work, click "Try another way" and follow Google's verification process.
6️⃣ If locked out, wait a few hours and try again.
7️⃣ As a last resort, contact Google Support.

chilly merlin
#

see

#

it's sending on recovery email ig

weary peak
chilly merlin
#

Rip

tawny coral
#

OTP (One-Time Password) for password reset cannot be sent to the same email that you are trying to recover.

chilly merlin
#

yea

#

^^^^

#

sekect sent otp via sms

chilly merlin
#

Brian ain't braining rn

weary peak
#

Yaah I don't know why

tawny coral
#

Google support is your best friend right now

weary peak
tawny coral
weary peak
#

Ok then what should I type or talk

chilly merlin
#

chat gpt can be useful in this times

weary peak
tawny coral
tawny coral
#

I believe Comptia asks Performance Based Questions rather then performing XSS.

solid shore
#

anyone that knows how to perform a stored XSS attack when the parameters are filtered? so like i cant use <>§: etc

#

i cant find any resources on it either

weary peak
calm dawn
#

if i want to get into cybersec but im not very proficient in any languages, should i learn and be proficient in some languages b4 starting tryhackme or is it fine

radiant stone
calm dawn
radiant stone
#

If you want honesty, Go for A+ or some more generalised certs and knowledge before making that choice. Cybersec is a buzzword right now but it's not as glamourous as many put it out to be. High turnover and burnout rates are common. Get a foundation in user OS systems like windows and servers. Lots of free tools and places to begin there. See #👥・new-member-guide as well.

Get your feet wet in IT first and see if you want to go to Security as a specialization. Many start as a Blue teamer "defensive security" Before going into hacking or will do hacking as a hobby and then turn it into a career. Take it slow, you're going to suck at it, you're going to make mistakes but learn and be patient and you will get it down!

calm dawn
#

That are 'more generalised'

radiant stone
#

Some words of advice as well, don't rush anything and never be afraid to make mistakes. Obviously don't be careless but remember, a mistake is experience for your current job. Big mistakes are experience for the next job 😉

radiant stone
calm dawn
#

Is it free or paid

radiant stone
#

No worries, What is your current career if you don't mind me asking

calm dawn
radiant stone
calm dawn
#

How much previous programming knowledge would I need to do this cert?

radiant stone
# calm dawn I'm in high school 😅

You have plenty of time and things you learn now will be out of date by the time you graduate. It's a field that you need to have a passion to keep learning and find information yourself. A neat thing to learn is Google Dorking (yea the name is stupid)

calm dawn
radiant stone
calm dawn
#

Right now, I have a basic understanding in python and java, and I'm currently learning Java in school. Do you think I could skip over python for now and just learn Java, or would it be much better if I became highly proficient in Python before moving?

radiant stone
# calm dawn Right now, I have a basic understanding in python and java, and I'm currently le...

IF you want my honest opinion, the devs in the discord will have more weight than me. Python is used in nearly everything (java has tons of applications and usage) and is easier to pick up as a foundation to start "Thinking" like a software engineer. So it's really up to you, I sucked super badly at programming but my first language was java and my professor in college was fired so it sent me down the ITSM path instead.

calm dawn
radiant stone
# calm dawn I see. Do you think learnpython is the best resource to learn python right now? ...

Unfortunately that's a loaded question. There's no "best" because everyone is different and one site's way of doing it may not work for person B when it does for A. I would say youtube videos, and any resources you can find that work for you along with doing tiny projects when you learn something new to "create" your own use of whatever new concept you have learned. Learnpython is free which makes it good for a starting point. There are lots of other free and paid resources but make sure to do research on the platform before you pay for anything because you may get the same education or even better courses somewhere else for free.

calm dawn
radiant stone
#

No worries, Good luck!

solid shore
#

is this vulnerable to xss? is there any way to bypass this $result = preg_replace('/[^A-Za-z0-9,.-!]/', '', $inputstring);

tawny coral
chrome kelp
#

I want to learn ethical red team hacking

chrome kelp
#

@chilly eagle thank you so much

#

I appreciate you live long fellow

chilly eagle
rich herald
#

I’m working on a portfolio., and I got stocked at some point, can anyone help out ?

dusk dune
rich herald
#

My registration and login don’t seem to be submitting and proceeding to the menu

rich herald
dusk dune
#

Auth on a portfolio ? 🤔
Anyway, do you see anything on the request tab of the browser ?

rich herald
#

I wish I could send picture on here for you to see what I’m talking about

sturdy lance
#

Yes, you ask the owner of the PDF for the passcode

dusk dune
#

then go somewhere else 🤷‍♂️

#

or get money

sturdy lance
#

Kek, in this server we don’t provide guidance on unethical actions

dusk dune
#

^

sturdy lance
#

Then look for them

#

Accessing something locked even if it has leaked stuff

#

Is unethical

spiral notch
#

You're trying to grt unauthorized access to it

#

Get*

spiral notch
turbid flume
turbid flume
#

How are you kvts

sturdy lance
#

Sorry dude, i am a white hat

#

I cannot support any of these actions

turbid flume
#

sorry man

spiral notch
turbid flume
#

Wild ain't it

turbid flume
hybrid nova
#

how do you test if some one would be spying on your network... it's really tedious if you are going to one by one go to your cmd and common startup...or is there a tool that can check it ?

crisp star
#

Also there isn't really something you can test. You can monitor if you have any suspicious outbound connection to a DNS or IP-Address that has been flagged.

hybrid nova
turbid flume
turbid flume
# hybrid nova Home

Is this question out of interest, or do you suspect someone is spying on you

hybrid nova
#

out of interest only ... though there might be pranksters out there since I gave my personal email address to somebody I just met and got that individual sent me a cracked application...

crisp star
#

As long you don't execute suspicious applications that someone send you, you are most of the time safe.

hybrid nova
#

i executed it since it was a free version of capcut 😭

crisp star
#

Well now you have a 50/50 chance you have malware

hybrid nova
#

i have windows 11 and it autodeleted malwares in my PC

turbid flume
hybrid nova
#

now I'm not sure if it's still there... though giving my personal email address to access his GDrive might have exposed my IP address since it can be easily seen if you look into Gmail's settings

turbid flume
#

There's malware my friend makes called ketamine, it bypasses every single antivirus on virus total

turbid flume
turbid flume
#

Or if you don't want your city to be found out

hybrid nova
#

I also recently Ended 3 Powershell activities

turbid flume
#

You didn't start those?

hybrid nova
turbid flume
# hybrid nova No

Interesting, I'm down to look through your system later if you want (it's 2 am so nrn)

hybrid nova
#

I have instances that my PC is running while my Android has no wifi connection

turbid flume
hybrid nova
#

Yes

turbid flume
chilly merlin
#

I encountering problem but its hard for me to explain

turbid flume
hybrid nova
#

That I will check since WiFi is down and there is a storm and signal could be the issue

turbid flume
hybrid nova
#

I will do another test

turbid flume
#

And one band isn't responding

#

or is disabled

hybrid nova
#

So if an attacker knows your IP address the attacker can possibly pretty much disable the WiFi? do something on the bands?

turbid flume
#

not just turn it off

#

it would not allow you to reach the internet

#

But it would affect all devices on the internet

#

and also most people aren't able to do that

#

you'd have to get lucky to get ddosed honestly

soft smelt
#

hi guys my friends steam account got hacked recently and his entire inventory was stolen alongside it, luckily he was able to get his account back and change the password but steam do not help get items back. Would anybody be able to help us to recover these items?

chilly eagle
#

he gotta contact steam support for it

solid shore
#

anyone that knows command injectionw ell?

#

well*

#

or anyone that can try to help me with it

chilly merlin
# soft smelt hi guys my friends steam account got hacked recently and his entire inventory wa...

hello there contact steam support and if they can't do anything ig we can't either and we cant help u with those kind of activities. Not saying we can actually get ur items from steam and if u get any Dms from people trying to offer help they mostly will scam u for money so i suggest u do not engage with them (this is entirely up to u) and I'd like to ask u make a ticket and report them to us so that we can take care

chilly merlin
solid shore
#

yes, like making the website ouput "ls" or something

chilly merlin
#

yea

#

what about ut

#

it

solid shore
#

its supposed to be working in the parameters im tryting, but nothing happens, ive looked at the sourcecode aswell but nothing

chilly merlin
#

try to chain commands with &

solid shore
#

i tried, i also tried with burp to encdode it

chilly merlin
#

ping ip && whoami

#

it may have some black lists filtering

solid shore
#

its not supposed to have it, because it like a vm for learning pentesting

#

do you know php code?

chilly merlin
#

Is that a rule?

chilly merlin
#

Not an expert

#

But an expert chatgpt user

#

💀

solid shore
#

lmao

chilly merlin
#

that's a skill

#

💀

solid shore
#

well, i cant get chatgpt to help me either

chilly merlin
#

Good luck

solid shore
#

thanks

chilly merlin
#

chat jippity

rare plume
#

Guys, I want suggestions for graduation projects in the field of networks, and that do not need more than three months to complete.

supple grail
solid shore
supple grail
#

I have used it before without an account in browser if I remember correctly

solid shore
#

aah thanks!

supple grail
#

did you figure it out?

spiral notch
#

U don't have to fill up half the screen

rare plume
spiral notch
#

Ip updater

#

Automatically check whether the router is configured to use static or dhcp

#

Then change the user's ip

#

Aswell as their Mac address

tawny coral
#

Good suggestions

finite heath
#

I need a help in understanding one concept...

tawny coral
#

ok

finite heath
#

can anyone help me with this penetration testing report I am making...

finite heath
tawny coral
#

Depends on what exaclty you need

finite heath
#

I am making one penetration test report... as a part of interview...

#

I just want to know what this kind of vulnerability is... and

#

like what they called and severity ....

tawny coral
#

Your best friend would be chatGPT. It can explain everything to you

chilly eagle
#

Check out cve database

finite heath
#

little difficult to explain like this.. 😅

tawny coral
finite heath
#

can I dm you?

tawny coral
finite heath
rare plume
finite heath
#

First of all it have weak password policy.. even I can login with 1 character long password...
then I found Authentication bypass...
I can bypass it with the method of changing HTTP Methods from GET to POST in Burp Suite and then show in browser... the GET method I have to capture is /api/login.php and I changed GET Method to POST... and I get successful login.
The next vulnerability which I was thinking to do is HTML Injection and XSS both stored and reflected then the IDOR...
But before I do that, I just thought to capture the request of /api/createticket.php and it is GET Method.. and I changed it to POST as earlier...
It create tickets successfully in POST Method.. and it created tickets to currently login account. Like I created a fake account on it and I just done this 2 times and I got tickets in my profile. If I right click on response and click on show in browser it will show session expired but the tickets are there in my created profile. I login in it and I can see 2 tickets.
So, what is this vulnerability called? What is severity? and is this even a vulnerability?? or is it a feature?? lol...
So, this is the case... what should I do? what is this vulnerability called? and how to exploit it more? What are recommendations...

tawny coral
#

Insecure Direct Object Reference (IDOR)

finite heath
#

when I change method from GET to POST
it show me success...

#

I can't post screenshot.. 😅

upbeat veldt
#

Same for the create ticket .. since the GET would be retrieving a ticket and POST would be creating a ticket

finite heath
upbeat veldt
#

Now if you were to create a ticket then inspect the GET request to retrieve said ticket and notice a user id in a parameter, you could try changing that id to another users id... If you are allowed to view or edit THEIR ticket, then this would be considered an IDOR

finite heath
#

if I am not able to do it.. I will let you know...

#

for your guidance.. 🙂

upbeat veldt
#

Weak password policy might be an informative finding (meaning extremely low) if this is a bug bounty program...

upbeat veldt
finite heath
#

it is not actual website... it is dummy website

upbeat veldt
finite heath
#

thank you for this tip..

upbeat veldt
#

Then yes I'd report the weak password policy and potential bypasses... Can also look for any rate limiting or account lockouts (brute force a login page) ... Or create a ticket and look for a potential sql injection... Id have to see the app to offer more suggestions though

finite heath
#

😅

upbeat veldt
finite heath
upbeat veldt
strong estuary
#

Hey can anyone explain how you more experienced guys and gals get info on people who send those scam text?

spiral notch
#

But as dissonance said, it can be used unethically, and we don't teach things that could be used for illegal/unethical purposes here

upbeat veldt
finite heath
strong estuary
#

Sorry I didn’t think it was unethical. They are constantly sending these pay toll and ups text to my family members so I was hoping to report them to help my fam

eager knot
spiral notch
radiant stone
strong estuary
strong estuary
eager knot
#

i've just researched abit, turns out that from android 4.4 and up only the sms app itself is allowed to intercept messages, so you'll need a rooted device (not recommended either)

upbeat veldt
eager knot
#

i wonder why android or ios never thought of blocking sms messages via wordlist

strong estuary
upbeat veldt
#

The key would be to teach your family how to spot these... Because numbers, texts, emails will constantly change, but if they (family members) can recognize the signs then this will be more helpful than blocking 1 number and or reporting 1 scam

radiant stone
strong estuary
#

Thanks for the feedback and recommendations much appreciated

rotund laurel
#

Which channel would I post in if I wanted someones help with alternative ways to crack the wifi in my home?

flint sequoia
#

hi guys, sup? does anyone know how to see the email that's using any ig account?

sturdy lance
rotund laurel
sturdy lance
# rotund laurel Try?

Cracking WiFi passwords is illegal, not if it’s our own WiFi tho, but we cannot verify that.

#

Sadly you’ll not find someone here to help you do that on the server because it’s against the rules of OwlSec.

rotund laurel
#

I got called a skid lol

sturdy lance
rotund laurel
#

Which i mean all I have are the pre-made tools available till I learn how to be a coder

#

In general chat lol

sturdy lance
#

Well whoever called you a skid is someone who’s probably immature.

rotund laurel
#

They aren't wrong. I don't know how to do anything yet lol

sturdy lance
#

I would recommend you having a deeper look on some topics.

#

Learn and practice.

sturdy lance
rotund laurel
#

I tried serval things but I csnt get linex to work on my windows laptop it interferes with start up for some reason. Also my chip doesn't support monitoring for packet injection. I don't want to invest in hardware yet so a raspberry pi 4 is not something I want to get. And I tried to use my phone for kali but it is network locked and not paid off yet.

spiral notch
#

Atleast not all

#

There are other ways to disrupt traffic, other than deauthenticating the user

sturdy lance
#

The overview about Ethical Hacking.

#

You can use a Virtual Machine to run Linux for now, you don’t have to use it on bare metal.

#

Take slow and easy steps, there’s plenty to learn. Goodluck 💪

radiant stone
rotund laurel
#

So this might sound dumb but I've been asking my questions to chat-gpt. And it said I needed monitoring to use wifite appropriately. It also said the vsp or vm wouldn't allow me to use monitoring mode even if I had a live usb.

radiant stone
rotund laurel
radiant stone
spiral notch
#

deauth?

rotund laurel
spiral notch
#

Your expectations are way too high.

radiant stone
#

Actually I take that back.... I'm glad it's not

spiral notch
#

Just had some bug I needed to fix

#

And the developer, in one of the issue threads, admitted that they purposely have made the project complicated

#

To not be misused by random people who aren't willing to learn, and to scare off people that are quitters

#

They've purposely forced every user of that tool to specify information thry don't really need to, to change configuration files and so on

main wren
#

Hey, so I'm planning on doing a splunk certification but do I need to follow an order when it comes to doing splunk certifications? I'm specifically looking into splunk enterprise certified admin certificate

radiant stone
spiral notch
radiant stone
unreal heart
#

Hey guys I need help with fern nothing show up in the drop down bar

soft smelt
#

is TryHackMe's premium membership worth it for beginners or would I be better off to just stick to the free rooms?

halcyon flame
#

Wow, what a username

radiant stone
#

Wym

halcyon flame
#

What's up @radiant stone - I wasn't speaking to you

radiant stone
halcyon flame
#

Oh ok 😆

#

Sorry

radiant stone
halcyon flame
#

The Iron Bitc.. Lady should remain buried 😅

radiant stone
halcyon flame
#

Damn, that only took four edits..

#

🤣

shy gale
#

Like I know I can type

#

And then all of a sudden I can't

lavish smelt
#

How do i create a phising link?

tawny coral
#

we don't do that here

lavish smelt
#

Oh sorry bout that

#

I am new

tawny coral
#

Take the time and read over the #📜・rules . We are an ethical server

lavish smelt
#

Is it illegal if its in a game?

#

Like for accounts that got hacked

#

One of mine did

#

So i am thinking of revers phinsing it

#

If not then nk worries

tawny coral
#

That would be unethical, no we cannot help with that

lavish smelt
#

Ok

spiral notch
#

So we don't teach things that can be used illegally or unethically

lavish smelt
#

Kk

#

Got it

radiant stone
# lavish smelt Kk

Yea sorry man, if you do end up wanting to know how they work there are resources online for defense and analysis of phishing. Good knowledge for everyone to have and how to counter them. 🙂

lavish smelt
#

Yeah

#

I would love to know

#

So i wont get phisihed again

main wren
#

Also uhm anyone familiar with suse? Saw some Linux system administration certifications from them, is it worth it?

radiant stone
# lavish smelt So i wont get phisihed again

Enterprise company for phishing remediation and training. Their blogs and learning are free and used for training staff in being on the lookout for sketch emails. Also they tell you what new big scams are going around.
https://blog.knowbe4.com/
Some more resources from Zscaler
https://www.zscaler.com/resources/security-terms-glossary/what-is-phishing

uncut turtle
#

Does anybody know to get a passcode on iPhone Lock Screen

halcyon flame
uncut turtle
#

Without the owner permission

halcyon flame
#

In that case, jog on @uncut turtle.

#

Stealing is wrong.

uncut turtle
#

Ik thanks

uncut turtle
#

Some tried to hack my account what do I do

radiant stone
#

I personally have a break glass account not used for any account creation so low chance of it being exposed. Only used for recovery and needs a yubikey to access.

uncut turtle
#

No like I mean my google account because the password does not work

radiant stone
uncut turtle
#

It didn’t work they got everything they change phone number and everything

halcyon flame
#

They are one of the more helpful support teams out there thankfully.

#

Good luck!

#

If you have any purchase history you can refer to, have it to hand

#

Additionally details on the account, your usual IP address you access the account from, anything like that.

storm leaf
#

Hey, wondering if anyone knows of any good linux distros that can run in a VM for starters, I want to mess around with some basic malware like a keylogger, any suggestions?

#

Also, I've got an old laptop with windows 10 on it, I want to turn it into a linux distro but don't know what a good one would be, I've got some experience in fedora and arch but I've heard dual boot systems are prone to errors. What distro should I use and should I try a dual boot?

storm leaf
#

What packages would you suggest?

chilly eagle
#

it comes with many tools and gud for beginers

chilly eagle
drifting gyro
#

hello

storm leaf
#

like what are some fun things to mess around with such as wireshark

drifting gyro
#

who needs help with hacking

chilly eagle
drifting gyro
storm leaf
chilly eagle
#

recon ng

#

metasploit

storm leaf
drifting gyro
chilly eagle
storm leaf
drifting gyro
#

sudo apt update all

chilly eagle
#

and dont trust anyone who sends a random files etcc

drifting gyro
chilly eagle
storm leaf
storm leaf
chilly eagle
#

hmm

drifting gyro
#

@ripe panther yo f@ckboy can i get a hacker role

chilly eagle
#

thats kinda rude

#

delete the msg before a admin saw your msg

storm leaf
drifting gyro
#

logs exist

drifting gyro
storm leaf
#

I dont mind messin up my old laptop if that helps

drifting gyro
#

just dump an ISO of an OS in ur VM and u set

chilly eagle
#

ye rather than dual booting your pc you could run a linux distro on a vm

storm leaf
#

sick, so download anything from my kali VM and I should be fine?

storm leaf
#

Ok, so use my old laptop to play around on, how can I avoid worms?

chilly eagle
#

99% you are good to go as long u dont download stuff which u dont know about

#

or click smthing sus

storm leaf
#

Would you know of any safe beginner malware to play with?

#

Or would you suggest I play with the kali packages first before I get into that

chilly eagle
storm leaf
#

I'm going into cyber security and I've got 3 old pcs sitting around, I've learned in class what the victims perspective looks like and I want to infect one of my old pcs to see what the other side looks like yk?

#

Ive only played around with mods, (marvel rivals nude mods) and I just want something that gives me a challenge to be able to learn

#

^something cool

chilly eagle
#

but there are rooms on thm on malware analysis

storm leaf
#

Valid, I understand why, but where can I find these rooms?

#

Also greatly appreciate the help

chilly eagle
storm leaf
#

awesome! Thank you so much

chilly eagle
storm leaf
#

❤️

chilly eagle
#

delete that gif

storm leaf
#

lucky i luv you

drifting gyro
#

discord is patching the discord.py-self library and the author is not on anymore and the original fork cant be updated officially that means i have to patch it alone which i already did

#

but damn

#

pip install discord.py-self will not be used anymore

#

❌ An error occurred while processing the command.

#

fck

#

Server owner: @minor blade (ID: 443814498965389322)

#

freaking dramma beach us dawgs discord devs

nimble minnow
#

Over 4month a put a challenge here nobody can solve it all you claim to he hacker

amber matrix
#

💀

#

Yea I don’t think anyone going to help with that man

tawny coral
#

Refer to #📜・rules Sounds like what you’re asking is unethical.

chilly eagle
#

bug bounties

tawny coral
#

What interests you the most? Go with what you will enjoy the most

chilly eagle
#

that depends on you

#

it really depends on your worth

#

yesh

#

your role on the company

tawny coral
#

Hard to answer that one. Lots of factors come in play. Follow a roadmap that interests you, start with what’s free

chilly eagle
#

yesh

#

do what yo love

radiant stone
#

Do what holds your interest and doesn't feel like a chore to bring yourself to learn. Yea sometimes concepts and methods can be dull or you'll get frustrated working on something till you realize you forgot a } 🙃

But don't get into the rut of chasing the bag just to end up miserable doing something you hate

#

With passion comes success, with success comes financial gain.

To chase financial gain you'll have a hard time finding success because you'll lose your passion along the way.

Same same but different

tawny coral
#

Everyone is different. Can’t say for sure. Give it a go and see how well you learn.

true briar
#

Hey does someone know where I get good proxys ?

radiant stone
true briar
radiant stone
#

I saw that lol. But i get it, I may have missed it but do you have an tech industry experience?

radiant stone
tawny coral
radiant stone
#

Start bottom of the totem pole, shoot for higher if possible. IT help desk / service desk to pay the bills and get your feet wet into the industry. If you have knowledge or anyhing in a specific field you think is marketable shoot for thos jobs but everyone starts somewhere. IF you're at a help desk for 2 years but get 3 cyber certs along the way and have a roof over your head you're already ahead of most.

#

Avoid call centers like they're death. They are, do in house IT or MSP work if possible.

radiant stone
tawny coral
#

As you learn new things your interests might shift.

tawny coral
#

Python is definitely essential

radiant stone
#

I guess that's a career decision, do you want to do this for work. Or do you want it to be a hobby.

true briar
#

+--+

#

sorry I am cleaning my keyboard

#

--

radiant stone
#

Unless your mind thinks the right way cyber aint a quick bag for beginners

radiant stone
#

Fair enough. It's kinda on par with asking "can i make a quick buck with chemistry" but with computers

#

You COULD but only if you have a natural tallent, if not then you study for years to make 1 product

karmic leaf
#

pentesting is a pain in the aah

radiant stone
raw cipher
#

Hey can anyone recomand a url checker

raw cipher
chilly merlin
#

how do you decrypt chrome cookies?

#

or if someone knows latest chrome decryption code please sharee

karmic leaf
#

if your trying to access your own data you might want to look into chromes built in tools or look into an offical documentation

marsh drum
#

Hey guys New new here lol , can somebody help direct me to a simple way to delete footprints and disappear! Thanks

marsh drum
#

My digital foot print, somebody has my info and keeps messing with me and my accounts! I’m fed up frfr so I want to go ghost online!

#

Thanks for responding !

karmic leaf
# marsh drum My digital foot print, somebody has my info and keeps messing with me and my acc...

man that sounds rough first thing i’d do is change all my passwords and turn on two-factor authentication you can check have i been pwned to see if your info got leaked too if someone’s really messing with you report it to the platform or even the cops if it’s that bad if you wanna go ghost start deleting old accounts lock down your privacy settings and maybe use a vpn hope that helps

marsh drum
#

I’ve been to the cops and have reports! Thank you I’ll start at the beginning ! Sending positive vibes 💯

crisp star
#

I don't know how deleting you digital footprint is going to help. You can't even do that anyway.

radiant stone
karmic leaf
karmic leaf
chilly merlin
karmic leaf
chilly merlin
#

zoro as a master hacker wil speak with u in ur dms and help u

chilly merlin
#

@karmic leaf @chilly merlin would apperciate help from anyone , when you guys are free👍🏻

chilly merlin
#

ai have ans

#

mate i jus did it it gave me an ans

midnight token
#

Ayo my crush's mom's whatsapp no. got hacked can anyone help too impress her 😁

#

Like yk guys what I am sayin

dusk dune
#

(/s)

tawny coral
midnight token
amber matrix
midnight token
#

Thanks bro

#

I will for sure

amber matrix
#

Anyway yours stuff is already compromised you’re already in a sticky situation and you don’t want to make it worse by doing things what you’re not sure of doing

dusk dune
#

Just reset her phone and call the cops

#

Well idk about SMS, I believe it's possible as well, but for calls it's easy

amber matrix
#

Spoofing is pretty simple spoofing is when you take someone number and make it look like there calling

dusk dune
#

Yup, you just replace the CID on the Sip request, you can't receive calls but you'll get the outbound number spoofed

#

That's what call centers do

amber matrix
karmic leaf
dusk dune
amber matrix
ebon cave
#

.

dusk dune
chilly merlin
#

i made a discord spyware in the meantime , if you compile the python code to exe and send it to someone , can they see my discord bot url? if yes how do you hide it?

dusk dune
#

Don’t use discord + it’s unethical

chilly merlin
spiral notch
chilly merlin
#

how do you hide it?

chilly merlin
spiral notch
#

I mean everyone has their own methods

chilly merlin
spiral notch
#

uhh just obfuscate it

chilly merlin
spiral notch
#

you can shut the fk up and not scam

#

;)

spiral notch
#

prefer to not put myself at risk

chilly merlin
spiral notch
#

but I prefer to not trust others with knowledge I have

crisp star
#

Ah spot the scamer

karmic leaf
chilly merlin
spiral notch
#

very often when it comes to things that can be used unethically, you have to self teach

chilly merlin
karmic leaf
spiral notch
# chilly merlin you are self taught!??

nobody was by my side teaching me how to disrupt network traffic, permanently damage routers, and steal login info via wifis (and same for defending against it)

chilly merlin
dusk dune
#

yeet packets (╯°□°)╯︵ ┻━┻

spiral notch
#

like literally suck

#

I haven't done many ctfs at all

chilly merlin
spiral notch
#

so I always go for internal offensive security jobs if I get a choice

spiral notch
#

Making payloads and everything - just not for malware; python is horrible at that

chilly merlin
#

anyway lets talk some more later gotta go finish my spyware project

spiral notch
midnight token
#

Thanks for the info mate

dusk dune
dark wadi
#

Hey everyone, I need some advice on cybersecurity careers.

Do you think a bachelor’s degree is necessary to land a high-paying job in cybersecurity, or are skills, experience, and certifications enough to break into the field? I’ve seen mixed opinions—some say a degree helps, while others believe hands-on skills and industry certs (like CISSP, CEH, or OSCP) matter more.

Also, would having a degree in a non-tech field (like business, arts, or finance) add any value, or would it not really help in this industry? If you’re already working in cybersecurity, I’d love to hear what worked for you!

Looking forward to your insights—thanks in advance!

shy gale
dark wadi
shy gale
dark wadi
#

Appreciate your time bro 😊

fiery sinew
#

yo is the new ai nuleics ai good?

grim yew
# dark wadi Hey everyone, I need some advice on cybersecurity careers. Do you think a bache...

Its very useful to an extent... I have a not so useful degree in aviation (Air Transport with Private Pilot Training) and zero IT qualifications but I work in IT (10 years experience, Senior Software Engineer). I started teaching myself in 2009, by 2016 I had a nice little portfolio that I leveraged during an interview to get into a graduate scheme with an IT consultancy company, they placed me with a massive client, I transferred to the client permanently after 2 years and haven't looked back 😄

I did get rejected by many organisations before that purely because I had no IT qualifications but at that time I was at least 5 times more advanced than a typical junior developer. The recruiters are mechanical at times and will throw your CV in the bin purely based on a few sentences of your CV xD Get the degree if the cost wont be an issue.

gloomy radish
sacred anchor
#

Does any laptop work for cybersecurity or is there something that a laptop needs for it to work?

chilly eagle
dark wadi
sacred anchor
#

I’m looking at the cybersecurity course and I was wondering if I can get a clear understanding of the difference of back door and root kit because they seem the same

chilly eagle
#

Rootkits are persistent

#

Rootkits are designed to remain hidden and evade detection

#

backdoors focus on providing unauthorized access to a system.

sacred anchor
#

Oh

chilly eagle
sacred anchor
#

So the rootkit is only made to remain undetected while back doors gives the user the unauthorized access of the person computer

#

Got it

chilly eagle
#

Bot are types of Malware but they r different

#

Both*

sacred anchor
#

Okay thanks 👍

spiral notch
#

If you get a root kit - you're cooked

sacred anchor
#

Ah

#

But with back doors it can be removed I assume?

chilly eagle
#

Yesh

grim yew
# dark wadi That’s an awesome journey! If you don’t mind me asking, what resources or strate...

The resources I used back then are likely obsolete now. The best strategy in IT of any kind is having hands on practice 🙂 I'm a gamer so I turned my learning into fun by trying to learn more about programming by attempting to create a game within a game engine. I also love robots so I delved into Arduino and recently Raspberry pi.

Right now with the rise of AI, learning is way easier. Do the theory, ask the AI (ChatGPT, Claude etc) to explain in simple terms, perhaps with ascii diagrams, and practice practice practice. Below are some of the stuff I have found useful to me:

(shall send in multiple messages because I dont have discord nitro) ...

#

Theory:

#

Practice:

You'll notice I have included many AI related links - because you must have an awareness of what is happening in that area of IT. The entire IT industry is at a turning point and to future proof yourself you must learn whatever path you want plus some AI basics.

#

If you want to build AI Agents, Flowise is open source and configuration is done visually : https://flowiseai.com/

#

Also may I add, you will never learn everything in IT/Cybersecurity because the learning never ends, so be efficient, know what you want for your future and pick the path of least resistance - like electricity 🙂

undone compass
#

Hy guy's is there a yt channel that teaches how to begin on cyber security

tawny coral
#

Using the roadmap as a reference you can search YouTube for the specific topics

#

Tons of info out there

undone compass
#

Thanks

tawny coral
spiral notch
#

Sure, feature improvements of what though?

spiral notch
#

specify...?

#

Invisibility functions for what

#

..?

#

u need help about improving something for invisibility which u first want that person to go thru an interview?

fringe mural
#

Alright what should I use for sqlmap proxychains with TOR or a vpn if a vpn which one cuz idk any for kali Linux

spiral notch
#

you barely specified what you even need advice with

#

what, a malware?

spiral notch
#

I mean both works but proxychains are always better

fringe mural
#

Alright

#

I’m prob gonna use socks5

spiral notch
#

for external id use tor routing prbably

fringe mural
#

Just have to find a proxy or I could use local host

spiral notch
#

I don't do much external pentesting though, mostly internale

#

internale

#

internal*

fringe mural
spiral notch
#

So wifi/local network attacks and such

#

Where I just need to spoof my network adapter card manufacturer, and a few others like the packets it sends, mac and local ips

#

those are far from good options

fringe mural
#

I just have to figure out how to get proxychains to work again considering it’s being a pain

#

I’ll continue tomorrow

#

I have basically everything ready it’s just that I had a issue with waymap and proxychains

spiral notch
#

tor proxies is good enough

fringe mural
#

For some reason it kept timing out

spiral notch
#

your gatekeeping is pretty useless, there's not much more anonymity you'd need

fringe mural
#

Probably did something wrong in the .conf file

#

Should I just use dynamic?

spiral notch
#

proxies?

#

told u my suggestion is tor routing

fringe mural
#

In the .conf file you have multiple options

#

Chained,dynamic and another one

fringe mural
spiral notch
#

tor routing??

#

it's pretty public info

#

anything further for anonymity is useless

spiral notch
#

iirc you can do it with tornet on github

#

saw some Indian using and advertising that tool

#

Check it's source code first tho lol

#

I low-key don't rly trust it anywah

#

anyway

#

Yeah which would be overkill anyway, for the task he's doing

fringe mural
#

Or would that be slow

#

Well I would need to find a proxy first

#

That is decently fast

spiral notch
fringe mural
#

Also on some proxy’s I see anonymity: transparent

#

What does that mean?

spiral notch
fringe mural
#

Looks like it

spiral notch
#

obviously, me neither

fringe mural
#

According the the GitHub thing it changes ever 60 seconds

#

You can change it though

spiral notch
#

You can also just out it to an infinite delay

#

And just stay on one tor router proxy

#

check it's source tho first

fringe mural
#

It’s in python

spiral notch
#

yea ik..?

fringe mural
#

That one?

#

Code seems fine

spiral notch
#

Low star rating is sketch

spiral notch
fringe mural
#

Take a look at it if you want

spiral notch
fringe mural
#

I barely know python but the pip install requests are normal and there isn’t really anything weird or odd with it so far I can see and having low GitHub rate isn’t weird I mean waymap a program I use has a low star rating but I know the dev and its safe

#

Waymap scans for sqli, xss etc vulnerability’s

spiral notch
#

To hide a virus there

#

Oop

#

Sec

fringe mural
#

?

spiral notch
#
def is_arch_linux():
    try:
        if 'arch' in platform.platform().lower():
            return 'arch' in platform.platform().lower()
        elif 'manjaro' in
#
 platform.platform().lower():
            return 'manjaro' in platform.platform().lower()
    except:
        return False```
#

His code is absolutely amazing

#

And mind blowing

fringe mural
spiral notch
#

His code is the same as writing

fringe mural
#

Which two?

spiral notch
#

If 2 is a number, 2 is a number

#

Absolute master

fringe mural
#

If it doesn’t work than idk I’ll figure something out Lol

spiral notch
#

It could depend on how invasive your goverment is, what country are you from if it's not a secret?

reef drift
#

I graduated in december with my cybersecurity degree and I have security+ too. But i am having a hard time getting a job, even interviews, applied to over 200 jobs and only 3 interview calls. Anyone got any advice for me? in the mean time ive been playing around with HTB.

#

is it even possible to land an entry level cybersecurity job without having a basic IT job first ?

spiral notch
spiral notch
#

Add a special project

#

Something like that

#

Or an achievement

reef drift
#

do you mind checking out my resume if i send you in DM if u dont mind and have some spare time. ?

#

ive been doing HTB

#

i personally feel like my resume is good. but yk you get biased so idk. I heard lot of these resume go through automation before a recruiter even sees it. like 200 resumes and automation bot only forwards like 10 to recruiter based on metrics or whatever

#

im probably getting rejected by Ai at this point 😭

chilly merlin
#

they use specific keuyword to filtet out resume

reef drift
#

yeah thats what im starting to do. im gonna use the important keywords and put them under my skills bullet point section.

chilly merlin
#

the more the occurence of keywords the high chances

#

u cant send an red team resume to a blue team job yk

reef drift
#

yeah right

spiral notch
#

I think on one of my first resumes fir an senior internal network security job (which also skipped me some levels of promotion and landed me a higher wage thancexpected) was my achievement of being able to hack and compromise the entire school network back when I was 15, which was against a network with an IT technician actively securing it, but I still managed to get access to any school account and teacher account that was active at that time on the network, which would include hijacking the dashboard for changing grades and attendance scores

chilly merlin
#

get ur resume evalusted by a professional pentester

chilly merlin
#

he will give u a realuity check

spiral notch
#

It's not something I like bragging about, but it's reality, and it helped me lots

chilly merlin
#

technician skill isue

spiral notch
# chilly merlin bruh

obviously all was done ethically with explicit permission and I told a way to fix it after ;)

chilly merlin
#

and u cant expect this guy to hack a network

#

rn

spiral notch
chilly merlin
#

💀

spiral notch
chilly merlin
#

yea

#

thats ur story he's not gonna be same

spiral notch
#

Well yea, but I was just giving an example of making your resume "stand out"

#

I toldvhim he can just add a project that he's done or spent some time on

chilly merlin
#

@reef drift trst ur gut . keep pushin as far as u can .

#

im not the one to give advice

spiral notch
#

and send that resume fr

chilly merlin
#

do u know AD?

#

sincara

reef drift
#

see the problem im facing is idk where u guys live but I live in Virginia which is a high military area, almost 90% of these actual cybersecurity jobs are asking for 5+ years of experience and the ones asking for only 1 year or less experience requires you to have active clearence before starting which i dont have. So im starting to apply for basic IT jobs like IT help desks and such which im not sure if is the best way to do things and was hoping to climb up and get into cybersecurity within the next 5 years. or plan B is to serve in the military for 4 years in IT to get a clearence hoping the clearence will help me land a cyber job faster since i already have the degree. What are ur guys thoughts

reef drift
reef drift
# chilly merlin do u know AD?

active directory? not a lot but im learning from youtube rn. tho i changed my resume and kind of bs and added that into my skills lol

chilly merlin
#

i would have applid for remote jobs

#

try to do a cert

reef drift
#

i have security+ rn. but looks like they dont care about that and want actual experience

#

funny part is applied for couple cyber internships and got rejected like bruh

#

they expect me to grow experience from a tree

chilly merlin
#

as i said thats a trick

#

dont fall for that

reef drift
chilly merlin
#

if u have sec+,companies will take u in a flower boquet

#

dw youll make it

reef drift
#

yeah im really hoping to land a job within 2 months. I just heard there is so many people waiting to get IT jobs and only so little openings.

#

what do you do?

#

if u dont mind me asking

chilly merlin
#

im a student rn

reef drift
#

nice. what year

chilly merlin
#

final

#

💀

reef drift
#

u got any interships in ?

chilly merlin
#

will be on streets on no timr

chilly merlin
#

yea

reef drift
#

oh ok. thats better than nothing

chilly merlin
#

💀

#

u have sec+ fella

reef drift
#

u should prob get urs too.

#

majorit of actual cyber jobs asks for it

#

its a requirement

chilly merlin
#

ill look into elpt

#

sec is not my type

reef drift
#

is ur majory cybersec?

chilly merlin
#

no minor

reef drift
#

oh whats ur major

chilly merlin
#

it

reef drift
#

oh okay. wouldnt it been better if it was the other way around ?

chilly merlin
#

elon is daddy 😭

reef drift
#

cuz dosent cyber make more money than regular iT

reef drift
chilly merlin
#

and my knwledge is low

#

dk wtf is cyber until i got into college

#

wokeup and decided to pursue cybersec one day thats all

reef drift
#

ah gotcha. well its still good that u have it as a minor.

chilly merlin
#

from a big college

#

xd

reef drift
#

what college u going to

chilly merlin
#

throw ur resume

#

IIT

reef drift
#

whre is that

chilly merlin
#

google

#

xd

reef drift
#

oh ur in india?

chilly merlin
#

ye

#

no racism

reef drift
#

that makes sense. I was expecting an american college name when u said big

chilly merlin
#

hah no

#

what u expect stanford

#

hell nah

radiant stone
# reef drift cuz dosent cyber make more money than regular iT

Depends on the country / Industry / Level of seniority in the position and company.
Cyber sec is kinda in the middle of the range, Senior software engineers are usually the top of the totem pole with pay outside of getting into Manager level pay which throws averages off.

fringe mural
vital horizon
#

hello guys i just joined the channel and i wanna learn cybersec where do i start?

radiant stone
# fringe mural The thing is tho how long are we going to need software developers considering a...

AI still has a long way to go to make fully functioning programs. It's a tool that is leveraged by engineers for very low level code but still requires human tweaking and debugging.
Cognition's Devin AI was a very big showcase of this. There are multiple videos and articles on it but here's one
https://www.theregister.com/2025/01/23/ai_developer_devin_poor_reviews/

Not to say it Won't surpass a human dev and be able to take over but with vulnerabilities with AI Poisioning and future security risks with AI still not leveraged it's still going to be a viable career path for a while.

Nailed just 15% of assigned tasks

radiant stone
vital horizon
radiant stone
vital horizon
radiant stone
# vital horizon NO idea but what would you recomend for a newbie like me?

Also this is a good resource for career planning. I'm going to see if i can get the mods to add it to that starting point channel since people wanting to go into "Cybersecurity" don't know that's like saying "I want to work in IT" waves broadly at the 5000 different job titles in IT lol
https://www.cyberseek.org/pathway.html

vital horizon
radiant stone
vital horizon
radiant stone
chilly merlin
#

I have a question

tawny coral
#

same question that you posted in general chat?

chilly merlin
#

No

#

How to stop ads on YouTube

chilly eagle
chilly merlin
#

Okay

shy gale
#

But that's against their tos i'm pretty sure.

crisp star
#

Don't you just block some JavaScripts that is supposed to serve your ads if you use an AdBlocker?

shy gale
#

Now I'm not sure what they use.

vale nexus
#

I am trying to boot my usb in macbook air m1 however it is not showing the usb in bootable menue. I am trying to use my ssd as another os to run on my mac how can i do it any advice

turbid flume
#

It needs to be burned to the usb

vale nexus
#

i used balenca etcher to make it bootable

vale nexus
turbid flume
#

Also what os did you flash

vale nexus
vale nexus
turbid flume
#

Let me check rq

#

I'll dm you the image rq

vale nexus
subtle sinew
#

did anyone here take AP comp sci? Was the exam easy or

vale nexus
subtle sinew
vale nexus
subtle sinew
#

I have barley any knowledge on compsci or any languages tbh but im still interested

vale nexus
#

ok i have not given the test so i don't know much about it but maybe someone else can help

karmic leaf
#

you could use this to create a proper booteble drive

#

sudo /Applications/Install\ macOS\ Ventura.app/Contents/Resources/createinstallmedia --volume /Volumes/YourUSB

chilly merlin
chilly merlin
#

i know its a dumb question but Can rat be codded to also start your pc?

shy gale
#

but if the PC is shutdown I don't think so since technically there's no power, I think the tool is an external power switch that connects to the wifi

ebon cave
# chilly merlin i know its a dumb question but Can rat be codded to also start your pc?

For a RAT to start a computer remotely, it would need to be integrated with additional hardware or software that can control the power state of the machine, such as Wake-on-LAN (WoL) capabilities. WoL allows a computer to be turned on or awakened by a network message, but this feature must be enabled and configured on the target computer and network infrastructure. Hope that helps.

wooden anvil
#

pci-dss arent necessarily required on banks right?

#

is there a way or to make a situation out of it where pci isnt really needed?

fringe mural
#

is this correct i just configured proxychains but for some reason i get a 9050 <-- denied\

chilly merlin
#

Feb 23 07:01:31 kali systemd[1]: Starting tor.service - Anonymizing overlay network for TCP (multi-instance-master)...
tor.service - Anonymizing overlay network for TCP (multi-instance-master) network for TCP (multi-instance-master).
Loaded: loaded (/usr/lib/systemd/system/tor.service; disabled; preset: disabled)
Active: active (exited) since Sun 2025-02-23 07:01:31 EST; 3min 15s ago
Invocation: 5fee474f36134cf4a589a2d6fb8cd363
Process: 45159 ExecStart=/bin/true (code=exited, status=0/SUCCESS)
Main PID: 45159 (code=exited, status=0/SUCCESS)
Mem peak: 1.6M
CPU: 9ms

Feb 23 07:01:31 kali systemd[1]: Starting tor.service - Anonymizing overlay network for TCP (multi-instance-master)...
Feb 23 07:01:31 kali systemd[1]: Finished tor.service - Anonymizing overlay network for TCP (multi-instance-master).

fringe mural
#

that

#

is it correct

#

or did i do something wrong considering i keep getting a 9050 denied error when using it with waymap while before a clean instalation i didn't get that

#

also why did it keep deleting it it's not nswf content or something alike

chilly merlin
#

it looks like Tor is not actually running on your Kali Linux system. The service appears to be "active (exited)", which means it started but immediately exited without errors.

#

have u bothered to use AI

fringe mural
#

yeah but chatgpt keeps giving me the same stuff i've tried before

chilly merlin
#

service aint runnin

fringe mural
#

it's odd tho considering if i do proxychains firefox and than go to dnsleaktest it doesn't show my ip

#

but an ip in luxemburg

chilly merlin
#

sudo systemctl enable tor

fringe mural
#

what is the preset

#

it says preset: disabled

fringe mural
#

but now tor.service is enabled

chilly merlin
#

that is an issue on ur end

fringe mural
#

not disabled

fringe mural
chilly merlin
#

idk

fringe mural
#

curl: (7) Failed to connect to ifconfig.me port 443 after 0 ms: Could not connect to server

#

thats what i get when i run it in debug mode

chilly merlin
#

english

#

only please

amber matrix
#

in 5, the trial of the Russian Federation for Microsoft - a lawsuit for disabling Windows and all other functions

#

This what this saids^

nimble shadow
#

how safe is disabling firewall
on port 8000
i want to connect my phone device to my server on windows machin
and the firewall interferes with the connection
so i need it
but will i get hacked or smth
or ddosed?

rose bobcat
#

Hello can someone help with neurotechnology/organized stalking ?do me 4 years 6 specific persons

fringe mural
#

is Torsocks a good alternative to proxychains considering proxychains isn't working with waymap and is slow with sqlmap

radiant stone
unreal heart
#

Is there a reason why my drop down bar has nothing on there when i use fern

timber galleon
#

Can you create a piece of code that can test links? , or anything like that?

unreal heart
#

who are you talking to

timber galleon
#

everyone

#

anyone that can help

wooden hinge
#

What do you mean by test links

timber galleon
#

lets say someone sends me a link , how do i check if its a virus or leads to anything like that

wooden hinge
#

It depends. There are safety precautions you can take but largely it depends on what level of paranoia you are working at. There isnt really a way to test a think without exposing yourself in some way.

#

By a link you just mean a URL right?

#

If you dont want to expose your IP address to the website you are checking, easiest thing you could do is probably use TOR to open the link.

#

Of course, theyll know youre using TOR, if they care. But they wont know what your IP is.

wooden hinge
#

The only way you would get a virus is if there was some form of 0day exploit involved with the browser/protocol, or if you downloaded something from that site (which requires concious effort on your part.)

#

A 0 day like that would be headline news the milisecond it is discovered and reported about so I wouldnt worry too much about that.

timber galleon
#

thanks

chilly merlin
#

If your an iOS dev hit me up I’m working on a gps spoofer have it working but im trying to port it to windows instead of just Mac only

narrow rivet
#

anyone here uses linux?

agile cypress
shy gale
#

This server is English only in chat.

#

Why

long monolith
#

anyone here familiar with google idx and pentesting on it

tawny coral
#

Are you trying to pentest into Google?

#

Getting a job usually works for most people

long monolith
tawny coral
long monolith
#

its an assignment

#

using my own vm in idx

#

By the end of this assignment you will be able to...

Set up and run a provided Docker image
Use nmap to check for open ports and port vulnerabilities
Use the Metasploit Framework to run pre-made exploits

#

but i am having issues with port 21, its saying its closed

tawny coral
#

Port 21 is FTP what host are you trying to run Metasploit? Google Server?

long monolith
#

im using metasploit on a linux vm

#

i think if i could send images life would be easier

tawny coral
#

I see

long monolith
#

could I dm you pictures of where i am having the roadblock?

tawny coral
#

Using NAT? Would have to port forward

long monolith
#

this is all funny words to me, i just took this course as an elective

#

this is what it says

Exploit failed [unreachable]: Rex::ConnectionRefused The connection was refused by the remote host 
tawny coral
#

Could also bridge

#

You have to make sure your port 21 is forwarded and open

long monolith
#

how do i do that on the vm

tawny coral
long monolith
#

i have already tried gpt and it sends me in circles

eager garden
#

Trash build is the one for me

halcyon flame
#

You could probably save quite a bit on the motherboard tbh

eager garden
#

I want it to last a while

halcyon flame
#

That's fair

eager garden
#

Money isn't the issue, but I want to make sure there aren't other things that are better ya know?

halcyon flame
#

Well, if you want best of the best of the best SIR, hit up the 4090