#👥・help-me

1 messages · Page 53 of 1

spiral notch
little warren
#

It's not illegal to scambait an actual scammer

#

Well i got scammed a week

spiral notch
little warren
#

Ago and want to report to the authorities

#

Their real location

spiral notch
#

then report it to the authorities with the information you have

#

were not gonna help you get sensitive info

little warren
#

Alright

late flicker
#

guys whats a good chatbot for explaining stuff like giving it a paragraph and get a fully detailed explanation on everything in the paragraph

neon raven
#

Srry had some work immediately!! Well if they say that it's not forwarded, try doing ##02# on your brothers phone as @wooden wave said and if still did not help re check whether someone messes with your contract book and if that's alright contact telecom as @radiant stone said!

grand crow
#

hey, I'm trying to create a zip bomb but it ends up being like 7 gigabytes how can I fix that?

neon raven
chilly eagle
#

cant help with that

grand crow
# chilly eagle cant help with that

I mean I checked the do's and dont's but like, there wasn't anything saying ı shouldn't make a zip bomb is there? I'm not asking you to hack an account, it's not fraud and I mean is it unethical to make a zip bomb? I'm not planning on using it on anyone except maybe myself or my brother(with permission). I just wanna learn stuff

late flicker
grand crow
#

fair concern

radiant stone
radiant stone
deep mesa
#

What is the first thing i should learn and understand to begin to Get in to hacking and cyber secuity?

#

But my dream job is to be a welder

#

Mostly to build stuff that is similar to a m5stickc plus 2

#

Is there any good books i should read?

mental tendon
mellow finch
#

yo chill

#

lets hack nasa

grand crow
late flicker
#

If you got any other questions feel free to ask

grand crow
wary heath
chilly merlin
#

Is there any good resources for cool projects involving ESP32s or arduino nanos?

#

Howdy yall im new to all this and was just looking to get help on where to start with out spending a fortune

#

Ultimately looking to be able to switch careers into cyber security or something along the lines

#

Okay I will look into it thank you so much

supple grail
shrewd meteor
#

Yo listen

#

Bro you know how I ask a question of like how to get a number to somebody's Instagram

obsidian hamlet
#

What should I do, learn from tryhackme or hackthebox

#

I want to learn networking and OS

shrewd meteor
#

I asked him this question and someone charged me money in order to teach me

#

Is that ok ???

#

No I am just telling you that this happened to me when I ask that question

obsidian hamlet
#

How much is required for purple team

median zealot
#

Is there anyone who has purchased CEH v13 elite package and is preparing for the practical exam? I am having a doubt in one question and i need a little help in that

fallen ember
#

anyone can explain me pyramid of pain is simple

mental tendon
# fallen ember anyone can explain me pyramid of pain is simple

It has six levels from bottom to top increasing in difficulty for the attacker

1 Hash Values – Super easy to change just modifying a file changes its hash
2 IP Addresses – Attackers can just switch servers or use proxies so blocking IPs doesn’t hurt them much
3 Domain Names – Harder to change than IPs but still easy since they can register new domains
4 Network/Host Artifacts – Stuff like registry keys or specific traffic patterns harder to change but not impossible
5 Tools – Now it gets painful for attackers if you detect and block their hacking tools they have to find new ones or make their own
6 TTPs (Tactics Techniques and Procedures) – This is the hardest to change because it’s how they operate if you understand their methods and disrupt them they have to rethink their entire approach

Basically the higher up the pyramid you target the more it messes with an attacker’s ability to continue operating

#

Hope this helps you.

crisp star
#

TTPs need to be refeormed. If an attacker is already in, they just exploit what works for them.

naive bloom
#

Hello I need some help with some disk controllers with Virtual Box

mental tendon
naive bloom
mental tendon
naive bloom
# mental tendon Good to know!

Now im facing another issue that is kinda related to the disks lol, I need to make a RAID 5 in a windows server 2019 with the storage pools, I can't use the disk manager

fallen ember
mental tendon
# naive bloom Now im facing another issue that is kinda related to the disks lol, I need to ma...

First open Server Manager and navigate to File and Storage Services then Storage Pools From there click on Tasks and select New Storage Pool Make sure you have at least three disks available since RAID 5 requires that Once the pool is created go back to Tasks and choose New Virtual Disk selecting your new storage pool You'll want to pick the Parity layout which is how RAID 5 is configured in Storage Spaces After that you'll be guided to create a volume where you can assign a drive letter and format it using NTFS Finally check the status of your RAID 5 under Storage Pools to confirm everything's good to go

naive bloom
mental tendon
#

Yes.

#

@naive bloom

naive bloom
vagrant imp
#

Hey guys. Hope you all are having a great day!
I just wanted to know if anyone knows any free certifications for cybersecurity that are worth doing

tender vale
#

I presume no one replied thus no one uses macos t_t

median zealot
#

Is there anyone who has purchased CEH v13 elite package and is preparing for the practical exam? I am having a doubt in one question and i need a little help in that

wanton slate
#

Guys a friend was asking for a number jamming thing he was asking wither it even exists he wants to do a project about it

halcyon flame
#

Number jamming? That.. doesn't sound very legal, or ethical

tight oak
#

hi guys i have a quesiton i got a exercise to do on ssh server:

In the home directory of user alice there is captured network traffic encrypted with the WPA protocol under the name file.pcap.

User Bob, who sent the file file.pcap to user Alice, recorded the network traffic while sending multiple responses to the task in order to analyze the encrypted traffic later.

Since Bob used multiple TLS sessions, he asked the server administrator for the private key of each session. Unfortunately, when Bob was saving the recorded traffic, he was not aware that among the recorded packets were also the server's private keys.

Decrypt the WPA and TLS network traffic to obtain the responses. Only one TLS session has the correct response. To crack the WPA protocol, use the dictionary of 10k most common passwords 10k-most-common.txt.

I scp'ed the file.pcap to the actual system from the server and user aircrack-ng to get the key from the word list,

i got the file to the wireshark and applied 802.11 packet key as the key i got and:SSID

i also found the private sever key in the packets but dont rly know what to do with it because every time i try to add it same way as 802.11 btu to tls i get only like 2 packets actually decrypted and rest is still encrypted, what could be the issue? Im doing these type of exercises for like couplde hours so i might be losing brain already... IF SOMEONE MIGHT KNOW THE ANSWER U CAN MSG ME IN DM SO I WONT FLOOD CHAT HERE

halcyon flame
#

Which course or CTF is this related to @tight oak ?

tight oak
#

some thing i got from my teacher

#

school

halcyon flame
#

Maybe speak to your fellow students then

#

Learn together, instead of getting the answer from randoms on Discord

tight oak
#

We tried....

halcyon flame
#

Then speak to your teacher

tight oak
#

He said all is good and we must figure it out by ourselfs

halcyon flame
#

There's nothing wrong with going to them and saying "we tried x,y,z.. we're having trouble"

tight oak
#

and im already losing mind

halcyon flame
#

That's a shame

tight oak
#

so we told him

#

but seems like we r just doing smth wrong here

#

and none of us has any idea what

halcyon flame
#

All I can suggest is to go through articles and learning material to try to come to the solution yourself, sorry

tight oak
#

😔

dusk dune
#

Hey can anyone me get access to my email address I for got the password and can't access it but it has my resume that I need for the job I just got

halcyon flame
#

Speak to support. We can't help

#

Anyone who DMs you saying they can help for cash will just scam you @dusk dune

solid gull
dusk dune
#

I have emails in the email address to provide it's mine and I know the recovery number I just don't have that number no more and I have documents in it to prove ownership of it also @solid gull

spark walrus
#

Hlo, I'm creating vulnerability detection system for my mini project for uni.
It's just a simple prototype but can u guys help and tell me what things will be best to use and add it to the program?

#

Ah, currently I just started.
Like only studied what to do, how to.... 😅
I was currently re searching on the project and making notes..
It's 3am here.

#

I'm still a beginner in the field.. sideeye

spiral notch
#

pst pst network vulnerabilities best

spark walrus
#

So the program will check the vulnerability in the application, or any file types which user wants to check.
Will be using C for this.
Also will use YARA.
(As requested by my professor)

spark walrus
#

Features:
Identifies file type using magic numbers (header bytes).
Detects potentially spoofed or corrupted files.
Provides basic security warnings.
Can be expanded for malware detection.

#

This is all I did today..

spark walrus
#
 $malicious_code = { E8 ?? ?? ?? ?? 8B ?? ?? ?? FF } 

Using this malware pattern

spiral notch
#

potentially corrupted files

#

the rest would be too general

#

theres not many vulnerabilities u can train a file checker on

spiral notch
#

far from enough

#

ever heard of YARA?

#

my project is also trained

#

oh what

#

i didnt see

#

myyyy baddd

spark walrus
#

Okii

spark walrus
burnt spade
#

Hi guys, I joined this server cause I'm looking for help, since last month a lot of my accounts have been hacked and I lost some of them because of people breaking into them, I managed to recover most of them but I still have no access to some of them, so I wanted to know how is that possible, because my password have literally 40 characters and I thought that was enough to keep my accounts safe, and I used a different password on each on of them, and I'm kinda concerned, because today another of my accounts was hacked in the morning. I wanted to see if maybe you guys can help me.

halcyon flame
#

I'd pick up a fresh device, recover your accounts and reformat the remaining devices.

#

Enable 2FA everywhere

#

New passwords, all unique

#

Invalidate any other current sessions, or connected applications with permissions

burnt spade
burnt spade
#

No other devices

halcyon flame
#

Check usage of your accounts, again.. authorised apps, other sessions

#

Any connected apps, without you noticing if you don't pay attention when authorising can be granted privileges

#

Browser plugins, also

burnt spade
#

But for example, my EA account was hacked and I havent logged in on my phone to EA

halcyon flame
#

Anything that is "able to control your browser", get rid of

#

Clean everything

burnt spade
halcyon flame
#

👍 good luck

burnt spade
#

I have a question as well

#

Like

halcyon flame
#

Once you've recovered an account, check other sessions and invalidate, remove any authed apps, and then only use it from a known clean device.

burnt spade
#

Most of the accounts that were hacked, had 2FA enabled, so how is it possible to hack a account with 2FA enabled?

halcyon flame
#

Usual answer is a compromised device, or authorisation given to a connected appliance

#

But appliances generally do not give the ability to change creds etc

magic ginkgo
# burnt spade Most of the accounts that were hacked, had 2FA enabled, so how is it possible t...

Switch to MFA if there is an option. Also I'd recommend getting a software such as NordPass to create uniquely generated passwords that are encrypted in a vault for you so getting them would be a mission for threat actors.

If you don't wanna do that, you can always test password strength with https://www.passwordmonster.com

How strong are your passwords? Test how secure they are using the My1Login Password Strength Test.

#

But also

halcyon flame
#

Yup, you should only ever know one password, the password to your password manager, and that hsould then be secured with a physical or other 2fa device

magic ginkgo
#

A strong password that is compromised is useless

halcyon flame
#

Everything else, random

#

2fa

#

recovery methods

magic ginkgo
#

So make sure to be safe on where you're inputing passwords, saving them, how often ur resusing them etc

halcyon flame
#

Don't connect apps you do not trust

spark walrus
#

Same happened with me too @burnt spade
It was due to stupid fault... 😅
Untrusted exe...

#

And still ppl from diff place try to login to my account... But as MFA is on they can't..

burnt spade
#

Sorry guys, I was drinking some coffee, Imma ready everything right now

burnt spade
#

So I dont know if the password was the problem haha

burnt spade
magic ginkgo
halcyon flame
#

Check out Yubico devices @burnt spade

#

Using mobiles as Passkey is also becoming more widely available now

#

(aka phone as your 2fa device)

burnt spade
#

Windows and android in this case
And No, I did not installed anything before that happened, the only thing weird that I got was Project Nova, that is a Fortnite 7.0 build launcher

halcyon flame
#

Well, there you are

magic ginkgo
#

So if you donwnloaded untrusted software, gave someone access, connected to something malicious, there's honestly a BUNCH of ways to get your passwords compromised. That's why you always have security measures like MFA and password managers setup so in case of human error, you're safer regardless because you take a little extra time each time you sign in, to be a lot safer.

halcyon flame
#

I'm afraid that's what got you @burnt spade

magic ginkgo
#

@burnt spade Send me this project nova to my DMs, ill check it for malicious content

#

probs the thing that got u tho

#

Like goblin says

halcyon flame
#

Game mods and cheats, custom clients, that kinda thing.. it's risky and very likely to cause you harm

burnt spade
halcyon flame
#

It will generate codes based upon a key, which can be used in the safe way a 2fa code can be

#

It's just spearate from connected devices, not on the internet, etc

#

A physical key

burnt spade
magic ginkgo
#

Im intrigued now

halcyon flame
#

I wouldn't go and get the link tbh or hit up their Discord again @burnt spade

#

Likely it is what did you in, but if you have a link, just share the link I guess

#

Just share it in DM, and whoever uses it be careful ofc

burnt spade
halcyon flame
#

Not to me, I'm not doing that kinda thing tonight

wanton pelican
#

Hello, i'm trying to create a wireshark challenge for a ctf with some custom things, not knowing a lot about these things finding resources has been kinda difficult does somebody have any advice?

burnt spade
magic ginkgo
#

I honestly don't think its malcious

#

Thats a lot of people for it to be a malcious software

burnt spade
#

yeah...

magic ginkgo
#

I could do a deeper dive but

halcyon flame
#

Lots of people.. prime for people to drop in to find people to share crap with

magic ginkgo
#

not bothered to sandbox it rn

halcyon flame
#

It happens on our server

#

They are a pain in the butt

#

Anyway, all the best. Hope you manage to secure your gear and accounts

spark herald
halcyon flame
#

Making them, figuring out how to, sure that's fun

#

Using them.. lame

burnt spade
#

And btw, I have a question as well

I got my instagram account hacked, and when the guys entered to my account, he somehow deactivated the 2FA and activated it once again with his device, and changed the password and the email, I was trying to recover that account but I can't go trough the process cause is asking me for the Google Authenticator code, and instagram have no support bassically. I have that guy's email and that is the only information that I have, cause he was using Opera GX's VPN so the IP that I got from that email was the VPN, is there any way for me to do what he did to me to recover my account?

halcyon flame
spark herald
halcyon flame
#

Anyone who messages to say they can help for a cost are going to scam you

halcyon flame
spark herald
halcyon flame
#

Yes

magic ginkgo
#

Whats the point in gamin with cheats i will literally never understand the affection toward it

spark herald
magic ginkgo
#

Unless you had a recovery method setup on instagram that they had access too

halcyon flame
#

Same person, compromised device VeebS

magic ginkgo
#

Yeah

#

I forgot

burnt spade
spark herald
halcyon flame
#

Excuses excuses

#

So you have time to make cheats, but not to get good at a game

#

Come on

spark herald
magic ginkgo
burnt spade
halcyon flame
spark herald
burnt spade
magic ginkgo
spark herald
halcyon flame
#

Stop trying to convince yourself. Cheating is just lame.

spark herald
halcyon flame
#

Put your skills to better use

#

Just a game, which you ruin for others

#

gg

magic ginkgo
spark herald
burnt spade
halcyon flame
#

urgh, done with you, buhbye

spark herald
#

goodbye

halcyon flame
#

pondscum has more respect from me than I do for cheaters

burnt spade
magic ginkgo
magic ginkgo
#

Not gonna be used on someone to get their fornite passwords lol

magic ginkgo
#

But, a rootkit is more plausible

burnt spade
#

i remember i rooted my device when i was like 7 years old to use lucky patcher once haha

I don't own that device anymore and is probably broken

magic ginkgo
#

technically speaking rootkits are APT's as they are persistent but not really at the same time

burnt spade
#

I did not even know at the time what a root was

magic ginkgo
burnt spade
#

Like, I already know, but not at that time

burnt spade
halcyon flame
#

And the circle is complete

magic ginkgo
halcyon flame
burnt spade
magic ginkgo
#

Rootkits are very hard to find, persistent and kinda just sit in the background

halcyon flame
#

Started around there, it did get a little silly though

burnt spade
halcyon flame
#

If could be in the OS, but they can go as far as to be installed further down, in memory on hardware

#

As in, persist over reboot / format / etc

#

Any worth its salt will live as far away from userland as it can in order to enable a high level of persistence and resistance to removal

magic ginkgo
# burnt spade I already read the explanation, pretty good one btw, I learned a lot, but I have...

Most malware will try look at "data in use". This is because this is the process of data when its in the RAM most of the time, and when something is being processed by RAM, it is usually decrypted and easy to read as the RAM requires it to be easier to read to run it effectively.

Other types are data in transit, meaning data as it's being moved somewhere, such as over a network, and data at rest. Which could be things in storage for example that you can encrypt.

So a rootkit will usually just sit looking at multiple aspects, but mainly data in use, copying and checking all the data going through your system to gather data or PII (personally identifiable information) against you.

burnt spade
halcyon flame
#

Skilled people fo' sho'

magic ginkgo
#

I'm not at that stage, yet

halcyon flame
#

We can all be skilled at anything we put our minds to, but some minds work different 😆

burnt spade
magic ginkgo
burnt spade
#

Like, what happened to me, even if is annoying (because at the moment, somebody is using my photos pretending to be me and doing stuff I dont like), i find it pretty interesting in terms on "how did they do that"
So is quite interesting investigating and trying to get knowledge about what happened

halcyon flame
#

That is unfortunate 😦 Just don't let them take over your life, as in.. you fighting them

#

Sometimes the only thing you can do is ignore them, report them, and move on

#

..at least in the interest of your mental health

magic ginkgo
# burnt spade Like, what happened to me, even if is annoying (because at the moment, somebody ...

Well you're doing more than most learning and investigating it.

Human error is the 'unsolved technical problem' of cybersecurity. Best thing you can do for yourself it to educate yourself on the best practices to keeping yourself safe and secure:

Password managers
Secure and private browsers
Dont use cookies on sites
Check links and download with https://virustotal.com before using them

And a bunch more things you can do

#

oops

#

spelt the link wrong

#

I spelt the link wrong, and the link i put was a phishing link lol

halcyon flame
#

😮

#

wups

burnt spade
burnt spade
magic ginkgo
radiant stone
#

They have a browser plugin that sends things you download to them as well

magic ginkgo
spiral notch
burnt spade
spiral notch
#

wtfff

spiral notch
#

Over 10 nil users

#

Over 300k reviews

#

If it wasn't, you deffo wouldn't be the target

#

Although I think u can also just check source code

burnt spade
#

I dont know if that one works for youtube ads, I'm gonna check

halcyon flame
#

That's the problem

#

You want something that is difficult to do effectively, and people take advantage of that fact

#

Sometimes even by shipping working software and gaining trust

radiant stone
radiant stone
#

but does not work on chrome anymore due to their manifest V3 update

hot knoll
#

Yo i js got a quick question i did Research on it but i still dont understand what SQL is or what it means can some1 explain it to me

halcyon flame
#

It's a language used for querying databases, a Strutured Query Language

#

Database: app
Table: users (has columns id, name, email)
Query: SELECT id, name, email FROM app.users

Result: lists the id, name and email values from the users table within the app database

#
#

Google would've answered that

hot knoll
#

thank you for explaining this to me

halcyon kite
#

hi i need help

#

I have a vulnerable OS which host by website but i can't view it when i searched by the ip address after i scan i got a saying port was 80.

halcyon flame
#

huh?

neon raven
little warren
#

Hey how to connect to Bluetooth in wireshark cause when i try to connect my phone it doesn't connect

mental tendon
chilly merlin
#

Don’t dox people

#

Not cool

magic ginkgo
#

Ban ban'

#

Your 15 according to ur profile

#

Why do u need someone doxxed

wanton marsh
summer nova
#

guys i recently made a movies watching web site and i got the idea to sell it howa can i do that if someone knows ?

halcyon flame
#

lol

#

Operate with licenses?

#

Or just a load of pirated content

summer nova
halcyon flame
#

Then you're not going to sell it

#

There is zero value in that

summer nova
#

alright thanks

nova peak
#

guys what can we do with that feather that we are getting ??

halcyon flame
#

Might wanna remove that from the profile here too axcels.. not the place to advertise that kinda thing

summer nova
#

so im not promoting it on this server

halcyon flame
#

🤦‍♂️

chilly merlin
#

Gotta use our heads more bro

summer nova
#

alright you got a point i'll remove it

chilly merlin
#

Just saying law enforcement takes that shit super serious

#

Same with the actual movie companies

#

If you’re actually doing what u say u are

summer nova
#

bro in my country no one gives a shit about it

chilly merlin
#

I’m guessing your goal is for that site to become super popular right

summer nova
#

no bro beleive me its open source project i dont get any money from it

#

i was just learning about full stack web dev and ive made this website

chilly merlin
summer nova
#

hahah ok go ahead

chilly merlin
#

💀

halcyon flame
#

I hope nobody clicked

chilly merlin
#

skibidi toilet

halcyon flame
#

lol sorry

chilly merlin
#

😠

summer nova
#

ow so now i'll be in jail haha

halcyon flame
#

Oh no, you were on stream butterfly?

#

😐

#

Now I actually feel bad

left talon
#

Hello everyone i am a complete newbie learning via youtube.got my Kali installed and experimenting with nmap.if anyone here want to show me how to use new tools for ethical purposes only i will much appreciate that.Thanks friends

magic ginkgo
#

Hey guys, a family member thinks someone is logging into their gmail account, does google have a request process for sign-in logs or are there other ways of finding this?

neon raven
# magic ginkgo Hey guys, a family member thinks someone is logging into their gmail account, do...

You can manage what devices can log in to your account go here

https://myaccount.google.com/device-activity

And check for recent activities on your account

Read here

https://support.google.com/mail/answer/45938?hl=en

#

Umm so guys I was wondering...

It's best to have mutiple vuln in mind while doing bug bounty or it is best to focus on just one vuln....

halcyon flame
#

Generally programmes will state to report as soon as evidence of vulnerability or sensitive information exposure is found

#

That said, chaining can lead to higher impact reports, but could also put you in breach of the scope and limits of the programme

neon raven
halcyon flame
#

Depends upon what your skills are I suppose, focus on what you have experience in finding, and then go out looking for things you are not as experienced with

burnt spade
#

I did't, but...

neon raven
inland fulcrum
#

VM Name: Parrot OS Security Edition

The virtual machine 'Parrot OS Security Edition' has terminated unexpectedly during startup with exit code -1073740791 (0xc0000409). More details may be available in 'C:\Users\PC\VirtualBox VMs\Parrot OS Security Edition\Logs\VBoxHardening.log'.
Result Code:
E_FAIL (0x80004005)
Component:
MachineWrap
Interface:
IMachine {e36a5081-a82a-40bd-9e4e-42a44d6ce50f}

#

guys can you help me??

#

when i power the vm this pops up and then it closes

#

thx

fading trench
#

hey i have experience for about 3 and a half years for working at security consultant

i have several cert: OSCP, CPSA, CRT
and i just renew it this month, im indonesian, i havent graduate from my university yet, my univ is full online

i want to find a new job maybe in singapore or aussie or anywhere except than my country, is there any new opurtunity here that i can apply?

wary heath
#

Singapore:

Cyber Security Consultant Positions: JobStreet lists numerous openings for Cyber Security Consultants in Singapore, offering roles in various organizations

Nucleus Graduate Programme at NCS Pte. Ltd.: This program is designed for individuals aiming to establish a career in cybersecurity, providing structured training and development

Australia:

Tech Workforce Expansion: Australia is actively working to double its tech workforce to 1.2 million by 2030, creating a surge in demand for cybersecurity professionals

International Cyber Security Roles: Platforms like Indeed list numerous cybersecurity positions in Australia, suitable for professionals with your background

#

after some google research XD

#

hope it helps @fading trench

magic ginkgo
chilly merlin
#

,

finite walrus
#

in italy there're 60milions persons, 6000 whitehat, paid 22k USD yearly.

feral loom
#

Issues with some game

chilly eagle
#

?

spiral notch
#

Especially in italy

finite walrus
outer agate
#

Hello guys, anybody encountered Au Quo Tab with adminlock ? I can't do hard reset on it. I was trying to find a flashing tool for it it seems its very rare tablet that has Android 8.1.0 OS on it, it was from japan as far i know

glacial kestrel
#

Can blocking Malicious Ip addresses be part of containment according to the incident life cycle? If yes then wouldn't the attacker use VPN to bypass that blocked IP

spiral notch
#

They would

#

That's why u add anti vpns

glacial kestrel
#

so it can be part of containment

spiral notch
glacial kestrel
obsidian hamlet
#

Topics to learn in networking and OS and how deep should I go in each of them

glacial kestrel
spiral notch
spiral notch
obsidian hamlet
#

Purple team

glacial kestrel
obsidian hamlet
#

What about networking

glacial kestrel
#

Depends how depth you wanna go

#

What job are you actually targeting for

obsidian hamlet
#

Purple team

crisp star
#

Purple team isn't really a job position.

#

You can be part of a purple team engagement. On either the red or blue team side.

obsidian hamlet
#

I mean like I want to do both red team and blue team work

crisp star
#

That's way too much if you need to do both

glacial kestrel
# obsidian hamlet ..

Then cover the basics like OSI model, protocols, SSL/TSL and get some basic understanding of networking like NAT, NSA

#

I think you will cover up most part when you cover OSI model

obsidian hamlet
#

Are they enough

glacial kestrel
#

And if anyone online here wants to add some topics then do that too

obsidian hamlet
#

Yes I am open for suggestions

spiral notch
spiral notch
#

Also learn how to defend against those

tight oak
#

The machine has a TCP service running on port 6060, which returns a task response after connecting. However, access to port 6060 is blocked by default and can be obtained after detecting a sequence of 3 UDP ports from the range 9100 - 9200 and connecting to them in the right order.

After unblocking access to TCP port 6060, you need to connect to it. In response, the server will send the task solution.

any ideas what could i try? dont want to brute force 1milion combinations, and basicaly all scanning techniques that i know give no usable result

crisp star
tight oak
#

i guess so, but have no idea how to do that to be honest

spiral notch
tight oak
#

I dont think there is limit, should i do it with python script or theres some tool you could recommend?

frigid rivet
#

i am trying to move my files from my pc to a removable drive and it says "disk protection" i tried every tutorial on yt but it didnt worked

tight oak
nova pelican
#

Hey any one can help me I need pc for learning cyber security bud I don't have the money to buy can any support me by buy me apc i am living in Ethiopia

glad flame
#

Hello, I currently have a problem to where I believe someone has made a fake Facebook profile of me. Is there a way without breaking laws to find out who made the fake Facebook profile of me. Any help would be appreciated

tight oak
spiral notch
tight oak
spiral notch
#

your question was abt udp at first

#

which have very different rules

tight oak
#

i must find sequence of 3 UDP ports, conenct to em and then LOCKED TCP port 6060 should UNLOCK and i must connect to it and then sever should give me back the key which is answer

#

sequence of 3 udp ports from range 9100 to 9200

#

so like 9101, 9151, 9142

#

Im already losing my mind on this ;-;

glacial kestrel
#

Guys I wanna practice my window operating system knowledge do you know any platform where I can test my knowledge

glacial kestrel
tight oak
#

They provide people with problems - which u can try solving

#

And at least for me

#

It taught me kinda a lot

glacial kestrel
#

Will try out

tight oak
#

Dont do only the forums cuz u gonna lose brain (saying form experience) but its good add-on to other types of exercises. More life taken

haughty nova
#

TryHackMe has a lot of knowledge and learning tools for Windows, especially for the Red Teaming Roadmap

#

Its a good diverse mix of Linux learning also

glacial kestrel
haughty nova
glacial kestrel
#

Sad realisation

haughty nova
#

They have alot of rooms for Windows, my favorite one is about Procmon

glacial kestrel
#

I will look into it

haughty nova
#

Or Windows presistence/ privilege escalation

#

Best rooms for windows learning

nova pelican
#

Ok but ok support me by how to learn with my phone and by using mobile data

glacial kestrel
glacial kestrel
nova pelican
#

I know a little things but what is my real problem is I don't have WiFi so I use data so sometimes It's not stable what ineed is from you is the way can I learn with out active internet connection

haughty nova
glacial kestrel
#

Helped me alot

haughty nova
#

No problem

spiral notch
spiral notch
#

learn from yt

eager knot
#

hello kv:DD

#

hru?

spiral notch
#

Friday evening

#

I forgot abt all my problems

#

I can sleep and not bother

eager knot
#

lmao i wish i could do the same

spiral notch
spiral notch
eager knot
nova pelican
nova pelican
crisp star
#

Work and save money so you can buy a Pc

spiral notch
spiral notch
#

do u have any pets?

#

grt a pet!!

eager knot
#

i do have a dog in the house, her name is chika:]

fervent dome
#

Hey I just joined this group thing from a video recommendation im like super new to coding and kali linux etc im trying to begin education for cyber security courses among other things can someone please give me some tips or recommendations on learning entry level coding and or diagnostic stuff please id really appreciate it. Im kind of just scavenging around videos and using mimo

shrewd orchid
#

Here you'll find the basics to get you started in your cybersecurity career

fervent dome
#

Thank you

shrewd orchid
shrewd orchid
robust shale
#

im in a ctf comp and im stuckat a question

#

can someone help ???/

eager knot
robust shale
#

Read the flag.txt in home directory of unknown user. web

dusty quail
#

Im just trying to learn ubuntu but cant find a good tutorial on yt

#

Tell me one please.

eager knot
robust shale
#

im not soo into hacking

eager knot
#

so you wouldn't be able to answer that question

robust shale
#

ive trieds running command in the search bar

#

would be a help ??

#

we only got 4 q left

eager knot
#

can't help you with a ctf that isn't really mine

#

it's more so a competition that introduces you with a server that's usually not publicly available depending on the circumstances

#

now i assume that the server that y'all should hack is a linux server

robust shale
#

its a website

eager knot
#

yeah but

#

they are talking about a user's home directory

robust shale
#

ik what ur saying

#

how can i reach it

eager knot
#

by hacking the website lol

chilly merlin
robust shale
#

ive tried

eager knot
#

if you can't then it's the core problem that you'll face

#

i don't think you will be able to obtain the flag

chilly merlin
#

Doubt

#

Ai can't give simple cat command?

#

Beats me

eager knot
eager knot
chilly merlin
#

💀

eager knot
#

in order to gain access to the linux machine that's hosting it probably

chilly merlin
#

Yea good luck

crisp star
#

Why even hack when you don't have the fundamental down?

robust shale
#

thought would bew fun and it was till i reached that q

#

ive solved every other q

#

and now im stuck at this one

spiral notch
robust shale
#

all diiferent q

spiral notch
#

show me some of the other questions

tight oak
#

can anyone tell iftheres something wrong with this hydra command?
i get ouput like every password is valid

hydra -s 9434 -l admin -P darkweb2017-top1000.txt 10.35.40.58 http-post-form "/phpmyadmin/index.php:pma_username=^USER^&pma_password=^PASS^&server=1&target=index.php&token=l_v%233nEcH%7DO%3Fq7GY:F= Cannot log in to the MySQL server" -V

goal is to get into phpmyadmin (CTF)

Burpsuite:

POST /phpmyadmin/index.php HTTP/1.1
Host: 10.35.40.58:9434
Content-Type: application/x-www-form-urlencoded
Content-Length: 134
Origin: null
DNT: 1
Connection: close
Cookie: phpMyAdmin=rgrbagiv7d5km9shjg8i81r4f7; pma_lang=en
Upgrade-Insecure-Requests: 1
set_session=rgrbagiv7d5km9shjg8i81r4f7&pma_username=sad&pma_password=ad&server=1&target=index.php&token=Euc%7FR%3D%24%6082Ir%2BA%5B%5C

(token changed)

eager knot
#

i think it's because the token has to be dynamically implemented with each trial

tight oak
#

Any tools that could do it throught firefox for example? like auto fill field and send

eager knot
#

there's also intruder that you can use

#

it's a burpsuite tool for brute forcing

tight oak
#

cant get it to work ;-;

eager knot
#

i never learned how to do so but apparently you can apply a rule that obtains and changed the token with each request

#

try look here

tight oak
#

sadly burpsuite slows down through the process

eager knot
#

yup it's the community edition that does it

late flicker
#

yo guys i need help

#

nevermind

deep prawn
#

the hacker is trying to hack my device again and he wont stop.

#

harassing me

#

my boyfriend keeps telling me to ignore the situation and to not do anything about it..

glad apex
#

to learn coding and some other thing not an easy job

deep prawn
#

and he wont stop texting me from a new number after I keep blocking him

glad apex
#

Oooh

deep prawn
#

oh ok..

#

thank you

#

and the hacker is calling me from a random Los Angeles phone number

#

ok thanks !

turbid flume
#

@deep prawn who is harrasing you?

deep prawn
#

the hacker I told the people about in this server and boyfriend is no help at all

#

yesterday

#

and they told me its a phising hack on my phone and I have to factory reset it.

chilly merlin
#

If a vpn + tor doesn’t keep you anonymous, what does?

spiral notch
chilly merlin
rancid hamlet
#

Is linux necessary? I want to still use windows however. I heard there is a way to use both at the same time but is it demanding to switch over from linux to windows?

#

For context I bought my laptop in 2020 and it does have 16gb of ram and a ryzen 7 4800h but I want to maximise it's life

grizzled trail
#

How can i bypass 2 faq authentication? Does anyone have a good otp bot?

fallen ember
haughty nova
rancid hamlet
#

Is there any risk of glitches or errors in my system if I keep switching os?

haughty nova
#

You should be fine switching back and forth, however, depending on your system, boot time will be estimated so don't just go back and forth everytime, otherwise use a VM if you are more tight on the storage you use

grizzled trail
#

Does anyone know a good otp bot

manic grotto
#

Does anyone know how to remove yourself from getting your address and phone number found on those people search sites?

magic ginkgo
#

Trying to test out wireshark and learn it, is there a way to filter by application, for e.g. all network traffic going inbound and outbound of teamspeak?

I have a feeling ill probs have to display by port but ive got no clue as of rn to figure out how

hollow cairn
#

Help - I am trying to delete Vmware from my pc but the uninstall option is grayed out, I tried it through powershell too it also gives me error. How can I delete it from the system ????

serene vigil
magic ginkgo
#

So i know ProtonVPN is better than NordVPN, what about Nordpass vs Protonpass though? Can anyone give factual info on the two? Done some digging but want some second opinions

velvet hamlet
#

hey guys is there a way to remove a security key on a company lenovo thinkpad made in 2023 only allows users to sign into work email account

magic ginkgo
zinc phoenix
#

Thats my go to

#

been using it for 5 years and its worked flawless

#

allows global http,s auto -type

#

And its very customizable

magic ginkgo
zinc phoenix
#

I meant keepass

magic ginkgo
#

It looks so old though bahaha

zinc phoenix
#

There are themes for it

#

but you can get the newer version

#

Its more UI friendly

magic ginkgo
#

Mmmm but Keepass has been breached before

Protonpass and nord havent

#

@zinc phoenix

zinc phoenix
zinc phoenix
#

One that was recent and one form 2023

zinc phoenix
magic ginkgo
zinc phoenix
magic ginkgo
#

M mkay ill look at it

magic ginkgo
zinc phoenix
#

which led to vulnerabilities to extract sensitive data

zinc phoenix
magic ginkgo
zinc phoenix
#

Good service good means but allowing private keys to be extracted doesnt shout it to be the safest

magic ginkgo
#

Every 'best password manager' list I see never mentions keepass though bahaha so sad

zinc phoenix
magic ginkgo
zinc phoenix
#

You will never find good software by searching best password manager or best browser for securities

zinc phoenix
magic ginkgo
#

Is keepass able to be used over multiple devices and my phone tho?

zinc phoenix
#

^

zinc phoenix
#

^

#

You could get it drive portable ?

#

Portable download would be the most efficient for using it across other systems without the inital database downloading and keepass downloading

magic ginkgo
#

mhmhmhmmhmhmh

#

idk

#

I know its a bigger attack surface having an online vault but i kinda need it

zinc phoenix
magic ginkgo
#

I reckon ill use keepass for the sites i care about people getting access to, and just stick to nord or proton for general usage passwords and such that i just need to access but dont care too much about their safety

zinc phoenix
#

If you even try look for any you will be hit with the typical ad filled suggestions like 1password dashlane protonpass roboform e.c.t

magic ginkgo
#

True

magic ginkgo
#

Will look into thanks

#

One more question, regarding my proton mail, what specifically should i be using it for, obv for sketchy things for pentesting or just pentesting in general but when it comes to signing up to HTB for example, should i just use my regular email?

#

Just tryna improve my personal security baselines

zinc phoenix
magic ginkgo
zinc phoenix
magic ginkgo
zinc phoenix
zinc phoenix
#

Very limited to free accounts

zinc phoenix
zinc phoenix
zinc phoenix
zinc phoenix
bitter blaze
#

@everyone I need help with RTA can anyone help me with it ?

amber viper
#

I need help with nethunter

strange quail
#

i need help finiding resources for ceh v13

#

anyone knows where i can find ?

finite belfry
#

hi guys i'm new to cybersecurity so please guide me with the source or the roadmap which i have to follow to become familiar to this field.

leaden pilot
#

Hello guys can someone help me

supple grail
fathom laurel
#

within rta

fathom laurel
regal portal
#

I need help with warpcast invite code

spiral notch
regal portal
spiral notch
regal portal
#

I'm unable to sign up I need an invite code

spiral notch
dapper mortar
#

Does anyone know how to set up subzy? I've been trying to set it up for a while and I have it downloaded but can't get it to run on my files or on a single address

noble maple
#

I entered my bank card number on a website to try it for a 14 day free trial. Then I canceled the card to prevent further charges, but I couldn’t cancel the subscription because there’s no clear option to do so. Now, it’s going to charge $24 every month. How can I cancel this, or do I have to change my card number? Note that on this website I logged in with my email, and when I go to the subscriptions or payments section, I don’t see any record of entering my card number. Please help me 🙏🥲

bleak rover
#

Guys ssh keep closing my connection without final key exchange... what do i do?

eager knot
#

aka the id_rsa file of the user that you're trying to connect with and is preconfigured on the machine you're trying to connect to

muted flax
#

How to download virtual box on D: drive rather than the default C drive

bleak rover
muted flax
#

Nothing happened

eager knot
#

wdym nothing happened

#

you're supposed to change the location of the download

muted flax
#

It's saying it doesn't match the security requirements

spiral notch
#

you prolly have some restrictions on ur acc

muted flax
#

Ahh how to resolve that?

spiral notch
#

Use your own pc

#

Not a school one or not ur parents one

muted flax
spiral notch
eager knot
#

try looking here

noble maple
#

I will check it tomorrow in the bank thanks sir

snow pecan
#

How can I install linux in virtual box

#

Link not working

zinc phoenix
snow pecan
#

The link itself

muted flax
snow pecan
#

Chrome

zinc phoenix
snow pecan
#

Thanks!! It's working now

#

Lol! VPN was on that's why. Maybe 🤷

junior bane
solid gull
quiet rock
zinc phoenix
grim tartan
#

HACKERS , my name is dali , i joined this community a while ago , my mother is a lawyer , and she has this case where someone deleted a ton of excel files , when i did my best to retrive these files it asked for a password , so i came here , can anyone give me some tips , and if its complicated i can even pay for the help , thank you

zinc phoenix
chilly merlin
#

Out there

grim tartan
#

in terms of informations , i am ready to fill you with more informations or even a screen meet session

zinc phoenix
grim tartan
#

and with all due respect legality wont be an issue either

zinc phoenix
#

Im pretty sure theres something called passfab for excel you could try that

grim tartan
#

passfab ?

zinc phoenix
zinc phoenix
#

It is payed

grim tartan
#

is it legit ? sounds too good to be true ?

zinc phoenix
#

Cant tell you i dont use excel

grim tartan
#

yea i figured , ill just wait then

zinc phoenix
#

It was just bias off my memory

grim tartan
#

dm me if ur intrested

#

ill poke around myself until then

zinc phoenix
#

Best of luck

grim tartan
#

thank you

#

*again the client has given me full control of the files , so please do not fear any legal issues , for more details please dm me as soon as possible

golden wadi
#

Is there a way to legally remotely monitor my girlfriends phone. To see who she's texting/calling. To find out if she's cheating. Because when I asked her why she was always deleting her messages. She said "to avoid arguments!". I was like "Soooo, you delete proof that you're not cheating?"

golden wadi
#

O.k., thanks anyway!

modern knoll
#

To people that have a job in cybersecurity would y'all go to a university for studying cybersecurity or stick to community college? Rn I'm trying to decide between UTSA and ACC

zinc phoenix
late flicker
#

yo guys
i need help
do i replace my ubuntu with arch
or do i triple boot

#

hahahaha lar

manic grotto
#

@last maple @zinc phoenix thank you guys

austere quartz
#

studying azure in VC

late flicker
#

I have js arch

chilly merlin
#

Does anyone know any Osint discord bots?

magic ginkgo
# golden wadi Is there a way to legally remotely monitor my girlfriends phone. To see who she'...

No one will help you with this here. But as some seperate advice, if you are unable to have a sit down with your partner and discuss your issues without resulting to trying to track messages and their location, then something is wrong and you need to try to fix that.

I've had my fair share of experience with this with my mother and her partners and it never ends well when you're tracking every little thing they do. Just some advice for you before you do it or something similar to it, it's never a good choice to do it.

magic ginkgo
dense raft
#

hi I need help I am illegally being monitored by someone not sure if they are obsessed with me or just planning to give dirt .lol I really need help pls I'm a victim . aside form the fact that it invades my personal data.

dense raft
dense raft
halcyon flame
#

Yes

#

or your local police department

dense raft
#

I am flattered if they are being obsessed with me but if they are using my personal data for impersonating and sht I am cooked

halcyon flame
#

If

#

That's a big if

#

Ignore them, move on

golden wadi
#

I've tried. But she adamantly says I'm crazy. And trying to sabotage the relationship.

halcyon flame
#

If you are in danger or being impersonated, then speak to the authorities

dense raft
halcyon flame
#

Everyone deserves their privacy

#

If you're trying to prove that your girlfriend doesn't want to be with you by infringing their privacy, I'd just skip that step and leave

dense raft
#

snooping someone's phone is never legal.... my pc and phone is being snooped on. ugh.

halcyon flame
#

Sorry, that was quite harsh

dense raft
#

its like hiring someone but you cant even trust them! lol it annoying af. now before i go report this to the authorities i want them to come clean. I dont wanna hurt the obsessed ones. lol

halcyon flame
#

Yup, speak to them first

dense raft
#

I felt like i was hired but was hired by a cult. if they cannot trust their own employees. goddamit

halcyon flame
#

Huh? That escalated quickly

dense raft
#

now if they are just obsessed with me they should just try communicate.

halcyon flame
#

So is this your employer, a friend, what?

dense raft
#

employer

#

a paranoid one

halcyon flame
#

eeeeesh

dense raft
#

LOL

halcyon flame
#

A fellow employee, or one of the company owners?

dense raft
#

i dunnoo what to do man...

#

employee

halcyon flame
#

Got HR?

dense raft
#

nun

halcyon flame
#

urgh

#

I dunno

dense raft
#

should i throw my pc

halcyon flame
#

I don't think so? Why would you need to?

dense raft
#

I am very very scared of the data they are collecting not that i have illegal sht but still!!!! its illegal to snooop

halcyon flame
#

How do you know they have collected data on you?

dense raft
#

someone snitched

#

and it connects

golden wadi
#

I guess everyone is right. If her normal habits aren't normal anymore, she's being secretive about stuff, sneaking around, and gets defensive about any of it. Then I've already answered my own question!!!

halcyon flame
#

Ok, not to diminish, but hearsay means sod all when you see patterns in everything (just human nature)

#

Speak to them first @dense raft

dense raft
dense raft
halcyon flame
#

Well, if you go to the authorities, they will ask for evidence

golden wadi
#

What do you mean get a plane ticket?

dense raft
#

its an obsessive behavior a toxic one . do they wanna marry me or something wtf

halcyon flame
#

And hearsay won't cut it

#

It's hard, laws very different in each country

dense raft
halcyon flame
#

In some if you make waves in a job, you get chucked out and nothing you can do

#

In others you are very well protected

golden wadi
#

I didn't say she was far.

dense raft
#

they have infiltrated my chat gpt accounts and emails

halcyon flame
#

If you believe that.. reset all passwords from a clean device, including 2fa

#

then reformat other devices

dense raft
#

i mean I can get my pc cleaned but they will attack my ip what should i do???

halcyon flame
#

Only a few options.. speak to them, speak to the employer, or speak to the authorities. I don't think you should have to quit over this if it's true

dense raft
#

my phone and pc is infected with sumhin

dense raft
halcyon flame
#

Attack your IP? That's not a thing that makes you immediately screwed

dense raft
#

they are black hat hackers

#

i can sense

halcyon flame
#

So?

#

that's not a thing

#

an IP does not make one immediately screwed

dense raft
#

they are monitoring my every move including where i go and sht. fcking annoying . are they my fans i dunno

#

🤣

halcyon flame
#

Just speak to the authorities, there's nothing else I can say, and you are obviously in distress

#

but I'll say now, you will need evidence.

#

Not gonna carry on with this

dense raft
#

ok

magic ginkgo
# dense raft employer

... In Australia we have a fair work department that handles disputes within companies and mistreatment to employees, if you have something similar I'd contact them as this is EXTREMELY wrong lol

dense raft
#

sigh

halcyon flame
#

Employers have a duty to protect their employees

dense raft
halcyon flame
#

what?

dense raft
#

and so they are digging for some sht that they dont have

halcyon flame
#

Now it's the bosses?

#

Take a breath

magic ginkgo
#

Unless they got you to agree to use a monitoring software, a past employer of mine made us use TimeDoctor, but if not then contact someone about it

halcyon flame
#

You sound completely paranoid

magic ginkgo
#

Why would they not just fire you and contact the police

dense raft
magic ginkgo
#

Makes 0 sense

halcyon flame
#

Dealing with abuse within your organisation is not micro managing

dense raft
#

they have infiltrated my ip / network instead! lol

dense raft
#

fcking annoying

halcyon flame
#

Calm down

dense raft
#

its just a week ago that i learned this, question is howlon have they been monitoring and gathering evidences and using it for impersonation?

#

my life is at stake

magic ginkgo
# dense raft they have infiltrated my ip / network instead! lol

This isn't me trying to sound mean I'm just gonna be real.

What you're saying sounds very extreme and more-so your paranoia rather than logical thinking.

If you're really worried you're in danger and being unethically/illegally monitored by your employers then:
Quit, Report to your fair work/authorities, and move on

halcyon flame
#

Again, got evidence? Go to the employer or authorities.

#

If you think your life is at stake, get off of Discord and call them NOW.

dense raft
spiral notch
#

@dense raft how are they tracking u and how are u so sure?

halcyon flame
#

Been saying that since the start

#

I think they just want to spew

spiral notch
#

anonymity*

magic ginkgo
spiral notch
#

wtf

halcyon flame
#

wtf where did that come from

magic ginkgo
#

It just all sounds very strange and weird

spiral notch
#

whatd i miss

dense raft
spiral notch
#

LOL

halcyon flame
#

they didn't say that, did they?

magic ginkgo
#

He did say it

#

1 sec

halcyon flame
#

"thought" ok yeah

dense raft
#

it is not strange, I think its the empath in them that stops them from firing me

halcyon flame
#

fml just get off of Discord @dense raft

#

Speak to the authorities

dense raft
#

" hey we cant fire her but lets just snoop into her ip address "

#

lol

halcyon flame
#

You are doing yourself harm winding yourself up like this without doing anything about it

radiant stone
magic ginkgo
#

Like we've been saying, the best thing for you to do is lodge a formal report to your local police department, and let them investigate your claims.

dense raft
halcyon flame
#

lol

#

oh my god

dense raft
#

thanks guys

halcyon flame
#

I literally said that earlier

dense raft
#

dont worry I will do everything that you have told me to do

magic ginkgo
#

😂

radiant stone
halcyon flame
#

We're all going to end up in a fan fiction about some Disney character getting harassed by Bugs Bunny

halcyon flame
#

Not at all, I said the same @radiant stone

dense raft
#

ahhahahahahh stop it goblin!!!!! ahahahhaha

#

i am serious you know 🥹

halcyon flame
#

I both want and don't want to believe you at the same time, but seriously.. get off of Discord and do something about it if it's real

radiant stone
dense raft
halcyon flame
#

I don't know what else we can say. Everyone suffers. We've advised what we think you should do

#

Nothing happens by magic

#

apart from me vanishing from the convo 🪄

dense raft
#

ahaahahahahhah

still lava
#

Hi there, got like a general question regarding browsers. Cause I was thinking about switching to brave from chrome and I was gonna ask what y'all think about brave and what browsers you would recommend for someone who wants privacy and safety from malware and stuff like that, but also some more functionality?

halcyon flame
#

The best protection against malware is avoiding dodgy websites, not downloading pirated or questionable software, and being cautious as to which sites you enter your credentials in to, even if the sites look legitimate. While human defense is strongest, regardless of which browser you are using, the human defense can also be the weakest if you do not pay attention.

#

Some will say that Brave is better for privacy, and honestly I do not have enough knowledge to make an informed decision, but an educated guess tells me that a browser distributed by a search engine will have more tracking embedded than one that is not.

#

As for functionality, depends what kind of functionality you are looking for

nova pelican
#

May be you are chilling with you 1k pc

desert torrent
#

well??? are you chilling with your 1k pc g0blin?

halcyon flame
#

What?

magic ginkgo
#

Soooo I use a VPN, but im trying to find myself without the VPN. When I turn it off, im pretty sure my ISP is hiding my IP due to it going to multiple different locations, im trying to find the IP that actually goes to my home address, is there a way for it?

When I do ipconfig all the IPv4s and 6s are all wrong and don't point to my house, any solutions?

halcyon flame
#

icanhazip.com

#

The other link I tried to post apparently was considered so

#

The above isn't

magic ginkgo
#

I guess im just too protected I cant even know my own IP lmfaooo

halcyon flame
#

What do you mean? That is your IP

magic ginkgo
#

Its not showing the correct location

#

When looking it up

halcyon flame
#

Geolocation is not accurate

#

in any way shape or form

magic ginkgo
#

Some of them are

halcyon flame
#

No

#

They are not

#

They can be more up to date

#

But no geo db is 100% accurate

#

IPs change hands all the time

magic ginkgo
#

Mmkay

So then how is it people find where others live via IPs? Not through pentesting but more-so through OSINT kind of resourses

halcyon flame
#

You can find an approximate location based upon exchange if the database is correct

#

But you cannot find someones location purely based upon IP if it is not

#

Not unless it can be associated with traffic elsewhere that links their IP and their location, or account, which can then be linked with location potentially

#

TLDR - an IP is not a location.

#

It can be associated with an exchange, but again - IP subnets change hands all the time. No geoip db is up to date 100%, and no geoip DB will map back to YOUR address

magic ginkgo
#

Gotcha

But then im confused, when people are reversing cyber attacks to find out where the attack came from, is it all just approximate based on geolocation?

halcyon flame
#

There are other ways of approximating the origin of traffic from an IP other than geoip

#

But none that will narrow it down to a specific location, and in order to have any degree of certainty you'd need enough resources at your disposal.

halcyon flame
#

Even then, what's to stop the IP you're working on being a VPN, or introducing fake response times

magic ginkgo
#

To this, why doesn't ipconfig show my actual IP then

#

I thought it was meant to

halcyon flame
#

Because ipconfig shows your machines IP

#

Your machine is connected to a router, right?

magic ginkgo
#

Yes

halcyon flame
#

Your router has a local network

#

You are co nnected to the local network

magic ginkgo
#

I thought it would display my router IP as well tho

dense raft
#

Hi I have reported it to the authorities how accurate can authorities track the culprits? the ones who attacked my network

halcyon flame
#

Your router handles traffic between your local network and the internet

halcyon flame
magic ginkgo
halcyon flame
#

Not unless the machine you are on is directly connected to the internet

#

Or you use a site like I posted above to show you egress IP

magic ginkgo
#

Right okay

#

Kewl

#

You learn somethin new every day

halcyon flame
#

🙂 every day's a school day

magic ginkgo
halcyon flame
#

That's how you know you're winning

magic ginkgo
#

Makes me feel sick

#

School was NOT the place for me 😂

halcyon flame
#

For me neither

#

But I take it as meaning, you are learning

#

And any day that you learn something is a win

magic ginkgo
#

Yeah its funny, school made me HATE learning, and I mean really really really hate

But then when you get out and you puruse a passion, makes you like learning again haha

halcyon flame
#

I liked school for the learning, when they'd let you learn in your way

#

I didn't like it for the bullying and idea that you had to learn exactly as they said

#

The whole "you didn't show your working out!" thing in maths for example

magic ginkgo
#

Bahahah tru

halcyon flame
#

I found it easier in my head, and the fact I'm dyslexic/dyspraxic meant they could never read my handwriting anyway

#

So of course they thought I was being lazy with writing or cheating

magic ginkgo
#

For me it was that they didn't accomodate different learning types. They only focused and were nice to the kids who did it exactly their way, when so many of us learnt completely different ways that they just weren't bothered putting effort into.

magic ginkgo
halcyon flame
#

Some schools have gotten better at it, but generally those are private school

#

and even then they don't get it right

#

Hah, yeah farily sure I'm on the spectrum heavily also, daughter was diagnosed with ADHD and Autism recently

#

and both myself and her mother are definitely on the spectrum

magic ginkgo
magic ginkgo
halcyon flame
#

TBH I see these emerging traits, ADHD, Autism etc as ways that we as humans are trying to adapt to the huge amount of information that we are bombarded with every day

#

Sure it may well just be genetic

#

but I feel it's more how our brains are adapating to this world of information and stimulus

magic ginkgo
halcyon flame
#

Either that or it's all the radiation from the tests over the past decades 🤣

#

But hey

#

Nerds and Geeks still rule the world