#👥・help-me
1 messages · Page 64 of 1
Why is AutoIt3.exe flagging in crowdstrike? Is it bc it’s vulnerable or part of a known attack?
it's probably due to the amount of access the compiled program has on the system
Compromised is a bit of a stretch. I'm guessing her radio chip is going weird on her phone
What kind of flag is it receiving?
Just saying it’s on a list.. 3/75 in Virus total
Seems like it’s being flagged as a key logger. Thanks all
you can build your own autoclicker using python, pyautogui library should do the trick
You can always check it's hash to see what it should be if the vendor gives it out. Could be a compromised exe
so it went to install at 70% it said installation failed i checked online then it said the storage was online so i cleared everything off the driver using something like clean all then it worked so im guessing there was hidden partitions still inside thats what chatgpt was talking about but ye
Hi, I'm an italian IT high schooler and I would like to know what is the best path I should follow to become an ethical hacker. I've in program to do some certification like OSCP, eJPT and CEH but i was wondering if there is something better because without a university path it doesn't feel stable but maye I am just paranoid. Thanks for your time and sorry for bad english
chasing after what you've mentioned excluding the CEH is very good, pjpt as well
oscp is the highest standard in the industry so far
So you think an high shool degree in IT,eJPT and OSCP an be enough and get me hired?
yes, plus side project that you want to work on, a portfolio would be nice to have
Do you have any tips for side project?
a portfolio where you make your own website, you can take a look at my bio for example, built my own frontend portfolio as a little side project so that it'll go good in the resume
Oh ok I'm going to look right now thx
yw, it's all about mentioning what you know to others rather than only mentioning certifications, so when you do just make sure that you explain your skillset in the best way possible
oh and you can take a look over here if you need extra degrees ever #📜・certs-and-career
If i may as, what certification/shool path do you have and are you employed?
i am currently unemployed, i have 3 locally recognized degrees and i am chasing after the oscp/cpts
all related to the field
OS?
Samsung
Thank you so much for your time!
Android build # please
S20
Heads up you're phone is end of support for security updates this year. It got extended slightly but it's only every 3 months
Ended this month
So what's the issue with it displaying the info, while i check on this
Could anyone help?
I’m trying to hack the bank on THM but I feel Stucked 😢
Weird, the S20 i have next to me does not look anything like that for wireless. What's the Android version / One UI version / Build #
I got it working :3 ty
What was it
So its a old mother board so the ram would not go into the slot all the way
Yea it is weird cus it never did this before
why?
like what are you stuck with
5.1 btw
for which one
One UI
Ok now android version and build number
All 3 will make the UI different
As it can be vendor specific with the carrier making tweaks as well.
Says I should have found a secret transfer page but I never seem to figure that out
Yes. I’m at the point it’s wants me to transfer from an account to mine so as to show a positive number
i am not sure if i understand your explanation correctly
what do they want you to do at the end, do you understand?
I mean on gobuster
why?
The command gave me an output already. But I can’t figure out where the directories are
It's was Vendor turns out I had to restart the phone to turn it off
Thanks
well when you finish a scan with gobuster it usually provides you with a list of directories and their headers
error statuses
where you see 200, you should check it
as 200 means that the website had successfully returned a response
Okay I’ll do that
yup
that's all it is about btw
exploring
don't feel stressed that you don't get it right away
just explore your results
try and interact with them in a normal way
that's how hacking works, progressively trying to find something weird
and some hacking progresses simply end up with enumeration only
with no special use of any exploits at all
Welcome to the club.
if money is never a stress then that's a good choice
Thanks I scaled through ❤️
@dense raft a hacker can indeed be jailed if doing anything unethical/illegal
yeah , if not just simple stalking, more like trying to social engineer to get out of sumthin
if for example im trying to remove a file called "test1" i would do rm -R test1
does that -R have to be cap or does it not matter, here its showing it specifically as capital but lowercase works too, just wanna know if theres a specific reason i should make it capital
would people be legally liable if they used ai on me? spreading falsse rumors etc.
can someone help me with a windows key to activate windows?
Windows 10 Pro to be specific
You can use the man pages to see what the flag does man rm
i understand what it does, im asking if its required for it to be a capital R
is -R and -r two different things
oh i understand what youre saying
thank you lmao
Yes. It's illegal to spread misinformation that hurts someone's reputation
Be more specific
sorry forgot to add the word free in it
ugh im using vpn can the people still snoop into my network activities??
unless they are a big geeky guy the yeah
how do i stop it
Are free keys ethical? I feel like everyone uses them 😭
Need me another ethucs course
huh
how do i stop someone from hacking my ip right now lol
and also wire tapping of lines gotta reprt this to authorities lol
fr i was just about to say that
someone is obsessed with me its funny i know, they been doing illegal sht lke spreading rumors so they been snooping into my ip
i also ask that to myself HAHAHA.
Jeez how ground level do you have to be to spread rumors, just live your life bro
i dont like it when someone is snooping into my IP ADDRESS and mass reporting every sht i do . it's fckng illegal
Could someone explain how bug bounties works
man has real opps
Can someone help me work out a regex for separating datapoints from a "table"
what is opps
I need Psn plus generator codes
nvm a guy on reddit linked a github link for an activation script to activate windows
clarify?
how do you know you are being hacked
how do i download ghidra on windows
they show it on their github
Does anyone know of any bug bounty programs that would accept a rce in njrat c2 servers?
What's that got to do with HTB @mossy echo ?
Regardless, I wouldn't provide assistance for an active CTF
Oh well
We don't have an active CTF right now.
Yea but ik it was like at 3;32
If they mean a box, challenge or whatever.. I mean what do they expect?
They don't say anything about it apart from that Chinese string 😅
Well idk he cant join the server bc he doesnt have a phone number but he would prob be better at explaining
Well.. ask them to tell you, and share a screen shot I guess
thank you
If it's not a CTF but HTB content, if it's something I can help with I will
but I can't help regarding active content
Okay well thanks for ur time
that's genius... https://imgur.com/a/HNWcvHK ( feels good I learned something new today )
@halcyon flame ty didn't know this.
np? was there anything related I should see lol
or you just wanted to post an image
an image of 20km of snow.. 🙂 ( when people think they having a tuff day ) they can see.. 20km of snow.
it feeling like . strange meme post of the day in #💬・old-gen-chat perhaps I shouldn't have tried to join it.. ( the thought counts )
I have another one of when it was 3389 degrees Celsius here also.. something like that... so now we have 3k weather and 20km deep snow.
Weird how as AI has improved, that machine generated news articles have actually gone down in quality
Hello
heya
I’m new here, good morning
gm, got any specific question or concern? Something you're interested in?
oh ofc, you can get started at #👥・new-member-guide
Okay thank you, I can learn with my smartphone right ?
Can’t afford a laptop yet
It'll be much harder but yeah
Hey
Elo
Check out used Thinkpads on eBay or something like that anything cheap that u can throw Linux on would be great as a starter
Especially thinkpads
Is there an AI or someone who can help me learn hacking🥲
Where do I go to learn more about the hacking eduction stuff?
Hello
hello
Hello everyone
I have to learn kql, is there any platform where I can learn it practically
does anyone know how to bypass the authentication policy on a vulnerable web
Thank you so much
How can I start my career in cybersecurity, What should be my starting steps. If anyone could help it would be great
check em out
i need help in defensive h@cking lol
what kind?
also did you take a look here #👥・new-member-guide
we have a path for defensive
making sure that my email will not be h@cked and my 2fa not being bypassed
yeah the link for defensive h@cking not working
Use a secure password
A good password that would take forever to guess
you can use https://haveibeenpwned.com/Passwords
to determine if the password you're using has ever been breached before, plus you can check here too https://www.passwordmonster.com/
to determine your password's strength
what if I am against a level 7 h@cker lol
will this help?
a 2fa is simply another wall of defense in case the first one is not working
anyone here to help with better opsec?
what the hell is a level 7 hacker lol
what kind of help is needed
obsessive h@cker seems got a lot of time
my email was breached in 2k22, i want to become new in everything that no one could track me down through it
as i said, any hacker can be obsessed but as long as you have a good password you're chilling
planning to use a 2g phone for my 2fa but then they can intercept with phone signals right? lol
also don't click bad links
are we talking about a 12 character password?
if your email was breached and has a record online it can't be deleted, but your password can be changed
as mentioned above, here you go^
maybe more
depends on you only
20 chracters? lol
use 2fa
they need your cookies to bypass it
dude is obsessed with bypassing everything i have lol so I need a foolproof one
lol how he bypass 2fa
how do they get my 🍪
it's not impossible
it is, they would need his cookies, ip, usertx
but a password is less possible if well secured
and you don't register with it to any suspicious websites
but getting it seems impossible
or insecure ones
no?
ever heard of 2fa bruteforce?
yeah this is why I am scared , he made it a life long journey to do it I wonder how much he was paid LOL
the ones with code
they have my ip , do i need to change password everyday lol
what is this
good password and they shouldn't be able to brute force it
20+ letters with hard combinations
no 123,321
it's an attack used to constantly guess a combunation of characters
hahahah
i use mixed of all ... letters and all
good
is a 20 character good
well you can rate limit it but an attacker can also slow the process down
it's not bound to a specific speed
would take weeks to scan
you can't entirely avoid bruteforce and that's the thing about it
big database
some people sit years through it
insta is easy to brute
meaning i need to constantly change password in order to stop em lol
just set a good one
not really
can you bypass a face scan 2fa lol
just gotta set a good one and check it from time to time
if you set a password that hasn't been leaked they will not brute force it
it is somewhat possible because it's never a precise feature
oh ok
dissonance can you accept my friend request?
so what the defensive attack on this one if face scan is not safe..
what for btw?
i just don't add people i am not yet familiar with
questions about ethical hacking
so for a start, is it better to learn coding in severe languages or do courses on tryhackme or sum
for a start i suggest learning networking and operating system fundamentals
i started off with networking
you can follow up with what's written here #👥・new-member-guide
i clicked on blue team , link does not work
apologies in advance as we still need to work through the links
here you go: https://tryhackme.com/paths
you can find all the paths you're looking for over here
is briar a great communicator?
thanks
i'd start over here btw-> https://tryhackme.com/path/outline/cybersecurity101
Are you new to cyber security and not sure where to start? This pathway will help you acquire the core skills required to start your cyber security journey.
btw
my emails are also going into a remote email server as well do u know how to stop it or just change password?
wdym by that?
my emails are being received by someone else
toa remote server
you have an email address inside of a company's domain?
oh why is that
so they are being redirected you say
dissonance
you gotta check your email settings if your address is the one redirecting them somewhere else after they are being received
are those 2fa 6 letter codes have ratelimit?
nope its my personal email
depending on the company and their websites
yes I noticed I was not receiving any new emails
from where is the question though
2fa codes
you asked if it was redirected
im just wondering how long it would take for a program to create every possible sequence
it all depends
some companies rely on sms for 2fa verification, which is a static code that doesn't change unless you request another one or use it
some companies rely on google's 2fa app which is more dynamic
a bit more secure in my opinion
for a program to guess 6 numbers it wouldn't take as long as you think
because numbers are only 0-9
what do u think they did to snoop into my family's messengers as well?
on a hacker point of view
if you've ever used hashcat to crack a hash that has 6 letters that are numbers you can see how fast it works
that's alot of things to answer
i am not even sure what led to that kind of situation in the first place
did you download a virus?
I believe so yes on one of my devices lol
well the ultimate way to see if there's suspicious activity on your device is if you monitor it using wireshark
but for that you'll have to learn networking
i tried i just dunno how to use it for monitoring
so what i suggest is calling an IT specialist to check on the network and devices
i can't assist you remotely with that type of thing
Hello eveyone
hello, chat is here btw #💬・old-gen-chat
i want to learn how to build a virus
for that you'll have to learn how to code first
I see
I recommend learning c or rust
It is no easy task to create a virus
It requires a lot of learning, you can't just do it overnight
okay thanks for the heds up
heads
change password everywhere + add 2fa
thanks!!
brute force is using leaked passwords
so if you choose password that hasn't been leaked
your good
ohh okay so that is how it works, gotta note this thanks
wym
It can use wordlists of combinations of leaked passwords, just combinations of random letters, or popular words
yea
its leaked
the wordlist you might be using is leaked. such as the rockyou.txt which is from the 2005 leaked password database
rockyou is so mid
thats why kali linux comes with a compressed file of rockyou since there is so many passwords in one file
nah i have my own
250mln english passwords, 16mln polish passwords
i mean it only works if the victim has a weak and simple password
if its weak , there is a small chance you can get a match from rockyou
did u make it with CeWL?
which is of no use
because bruteforcing is very inefficient
and it eats away at your computer resources while trying every password
^^
i use it on vm
what is efficient
anything but bruteforcing and hardware dedicating
hence why pentesting exists
so that these easy paths are not found
or that they are found but fixed
or not
all depends
Which doesn't make it any better
dictionary attacks is said to be the most efficient if the victim has a weak password
Please any one have idea about capital one shopping rewards?
i have none but my best suggestion is, don't click on suspicious links and don't fall for scammers in your dms
Alright thanks
so what should i do
instead of brute forcing
but to get same thing
well I'll give you some obvious ones
not the most efficient ones ofc but things like phishing for example
Social engineering works well tbf
if you're good at psychology sure
Yeah
Anything can be used well with skill
but brute force is just pure luck
Yea
I did a research paper on bruteforce last week
But u can come at it
Brute forcing bitlocker to be specific
with a more observant mind
Its genuinely not worth it unless u can afford cloud services or the physical hardware
Unless ofcc the password is small/weak
perform reconnaissance -> osint
find out victim has been using certain passwords in their last whatever passwords
Craft a wordlist based on the most used things in their passwords, some additional fields like their pets or their pets name, and for example dates ranging from 1980->2025
A lot of things can become or be made dangerous
If just put in the right hands
hello guys my server is getting nucked or get attack by the bot that added by someone who's have role and i wanna get my revenge can someone help me please that i wanna do the same
we cant help you with this because its unethical, please read the rules #📜・rules we are an ethical community
trust me my brother thats totally ethical that dude that i wanna get my reveng is threating anyone i just wanna stop him
it is not ethical, please go read the #📜・rules
nuking servers also breaks discords ToS
or community guidelines
in the rules it clearly states that
"3️⃣ No Unethical Activities or Discussions!
Under no circumstance will any user aid any other user in helping to perform illegal activities such as hacking anyone or anything without consent. Additionally, vigilantism against criminals is considered unethical behavior and will not be allowed in this server."
i advise you to not ask again because if you do i will be pinging the serpent
It's not
@random cloud sorry this happened to you but best you can do is just ban that user after checking audit logs
And remove the bot
And for next time just don't trust the wrong people
my server is destroy now, they banned all the member and change all the channel's name, that's useless but whatever all i can do is just stay still and watch my burned server
Unlucky
Not worth it to threaten an online user for just ruining some time you spent
Or voiding your efforts
Threaten/revenge
Is anyone using Linux??
I tried to do dual booting now my laptop logo screen stuck and not doing anything
lol
🥲help me somebody
Recently I used driverpack and now I am facing issues like not use fn keys without pressing fn keys and backlight not working.
What’s Linux?
Did you properly install it?
What Linux distro
Kali
can you enter your bios?
No that's what worries me more
do you have an usb stick and another device?
Yes I have 16gb pendrive that I used for installing linux
Sure tell me
try to install a distro as liveboot on the usb stick
and then plug it in
because you booted into it for the kali install it should be high in boot priority
maybe itll work and boot into it
after that you should see if your partitions are good or not
Just insert the pendrive and turn on the laptop to check response?
yeah you can also try that
Ok give me a few minutes
Hello guys whats up i want to ask something i want to track some with a phone to know a excalty location of where there are, please could help me with the site
We don't assist with Stalking/tracking
i am stalking a person he stole my money from me and i wanted to know where his so i can go there and locate him
the moeny so small i cant go and report 350$ dollars but i want to just teach him a lesson to not steal from people
we will not help you with stalking because it violates the #📜・rules
Learn not to fall for scamers
It's not doing anything I tried it
to make a really long story short, i had some “hacker” friends back in the day and kinda helped them here and there even though i know next to nothing and just ran programs and typed a couple things for them
recently remembered they made some odd program thingy that tracked what we did and what we received or what other people tried to do to us, stuff like that
i have genuinely no way to contact them and the few times i did they like bugged? virused? weird super cool vpn hacker thingy? their way out of it — honestly ive given up and it doesn’t bother me
just wanted to ask if someone knows what that type of thing is called and if i should be worried
@fickle temple
Hello, I am currently trying to modify a MIFARE Classic 1K card, it has some data written on it its basically a try2hackme, is it possible to even modify one of these? I do own a Flipper Zero but I have attempted modifying the contents of it.
report to police with evidence
theres always 1 person in here on some animalistic shit, always
You can, don't know how though. If you find the file in your flipper, you can try transfering it to your computer to do more with more
Show them an empty wallet, insist it had money 😎
Hello guys! I'm new to cybersecurity and want to get a CVE, anyone have any good advice?
I'm trying to get zero day in Chrome or Linux kernel to make some money, if anyone can shine any light I would be super happy
im sorry but, finding a 0day isnt something you can do as a rookie
but that doesnt mean that you cant try
Do you like reverse engineering alot in your freetime? How many days are you willing to go without any viable results. Have you mapped how much you already know and what road lies ahead of you? What have you done so far to achieve said goal? What metrics will you use to track your progress? These are all objections, which can shatter your view. The purpose of those questions isn't to poke fun at you, it's to reflect the scenario's which eventually will occur.
- Yes sometimes
- 3-4 days is reasoonable
- I know some stuff about hacking already I think i'm getting pretty good
There's a bit more thinking involved for these questions. What brought you to think that you really like reverse engineering? What makes you think that finding a 0day is an feat that can be achieved within 3 or 4 days? And what do you define as knowing some stuff about hacking?
I have hacked several boxes on hack the box
Root and everything
Figure out your answer to those questions, and really engage with the material. Get more substantial, elaborate and research with thought. Your current answers are a bit impulsive, which comes across as if you aren't thinking it fully through yet.
It's good that you've put in the first steps in your journey, actually getting things done. But you're missing an solid frame of reference.
I know what a pointer is and i know python
I'd suggest you to get started on it. Watch a few video's or read texts on CVE's and how they were acquired. This will give you more insight on what it takes.
Are CVE entries actually closed?
I'm kindly requesting for a direct link for downloading a penetration testing software compatible on windows 10
Please be more specific
Metasploit on windows 10
What the
I want to download metasploit on windows 10 from the internet directly. Can you send me a link please
Just sent it, enjoy
Guys am in Uganda but would like to come to Europe or the states please 🙏 help me
Get a skillset.
Its called H-1b work right?
I am a mechanic and getaway driver🚗🚕
Look into an h-1b visa
Can you please send me a link for it please
It's done through your employer, you need a job
Lined up in the US^
Hi , I'm from Europe , currently in Italy working I have settled documents in UK , the game is rigged and the rich are getting richer and the poor poorer I want to buy a house but I have no idea what to do that earn extra income from my job ATM I'm getting around 1900 but temporary next month I'll finish and when I come back to my country I'll earn around 900 euro per month for Full month, so I need advice learn more cus I always wanted to learn more or do something, I'm asking for advice if anyone can offer anything, something to learn or something to do , I'm here , cheers guys and I wish you a great day , exited to learn more and do more
I'm willing to come to us and work, but I'll probably need a visa and first I need to repair my parents house since their toilet fall down they're living in a small village and the toilet was outside and during an earthquake boom , glad they were not in , now the house need repairment it's super cracked and it's build around 60 years ago with mud and couple of rooms have bricks only , well I know it's like a movie but I'm motivated if anyone can teach me something that I can do to improve my life and the life of the people I love 💜 god is good all the time
Did you google the answer @ember tulip?
Cause I got the answer by doing that
Unless it wasn't PsShutdown
nah bro it was windows user, wasnt able to find that on google anywhere lmao
What the
Hate that. It's part of the learning process though
i had to consol run winver to manually find it
tbf im running off of a vm so that definitely had something to do with it
Hey so I was watching some reels promoting interesting websites for a.i and movies and a bunch of other sites.. one in particular was "gpte.ai"..
As soon as I went to visit that site my phone started to buzz and the screen turned like a cracked screen.. idk it was pretty fast so I exited out as soon as I ca
What can I do to see if my phone was hacked?
Seems to be perfectly safe
well nothings perfectly safe, but you dont have much to worry about
Thanks for checking Koda! Shit my pants when that happened lol
no problem, nothing wrong with being cautious
clicking on a link wouldn't cause your phone to get hacked. not in this case at least. It's more often what you do after, if you closed the site right after, you're good.
Hey guys, I need help picking between VirtualBox and VMware(I am new to the cybersecurity world, and am hoping to learn a lot about it)
virtualbox is very beginner friendly, both work and both have minor differences in which people like one over the other
id suggest virtualbox if youre starting
Thx
ofc, no worries !!
What's up @ebon patrol? Happy to chat here, but not in DMs
I have a small question about this server, I am not able to post a picture of my setup on the #💻・setup-and-rice channel. So I was wondering if there was a certain rank i needed to achieve that privilege or a certain verification I need to do to post media on that channel, or what?
Gotcha. Appreciate it!
Yw
What's up @lusty atlas ?
Happy to chat here, but not in DM with someone I do not know.
If college is not an option, how would you learn cybersecurity ?
I mean college is always an option but most learn it through platforms like HTB, thm and portswinger I suggest u check out #👥・new-member-guide and #📜・certs-and-career it will give u a bit of understanding how it works
I’ve never heard of portswinger is it just like tryhackme and hack the box ?
Yup but it is really good for web exploitation and a good choice for beginners
Okay thanks for the help kuroya
Yw we're here anytime u need
Aww
for what exactly?
Hello. I'm new here from Kevin Roberts' fb page... I just passed my CCST in networking but I'm also looking to learn cybersecurity. I'm a windows user cause that's what I'm more accustomed to, but I understand I have to also learn linux and python. I'm willing to do anything to grow my knowledge in networking and cybersecurity. Any suggestions or learning guides that could make it easier to grasp quicker? Thank you in advance from South Africa.
check out the #👥・new-member-guide or if you js wanna start, I recommend reading the documentation about operating systems, linux, and learn bash, it's the most important. Then read the documentation for python, start making some projects. you can check out my website for resources - https://umbra-uvazzz.github.io/My-Portfolio/
If you need documentation for OS, I can DM it to you or I can send it here if the mods allow. Moreover, hmm... don't forget the notes. Make your own notes, they're the best
@earnest fulcrum
Hello everyone, I need some help. I am in my last semester of my Bachelor's Degree in Data Science and i have opted for research but I'm unable to find any topic that has future work or any scope to produce further results or something complete new that can help society in any way. I only have 6 weeks left to submit my report. Please can anyone guide me to find a good topic in domain of AI,ML or DL or any related field, that'll be a huge help.
it all depends on what you're interested in, AI/ML/DL comes under the same field I believe. First sem is for DL, then is ML. they both are a part of AI. If you need a topic... hmmm... Research on the ann or integration of AI in medicine if you're interested... or.... you can just research on how changing(adding/removing) particular nodes affects the output or functionality of the AI. or you can research on AI integration with robotics
Thank you. I'll check out the website. Please DM the documentation so I don't lose it in the chat. For python I joined a class for beginners that is due to start thirteen days from now. @amber linden
are there any usable github scripts for ethical hacking?
What kind, like.. specific activity?
do you know any?
Any what?
There's no one mega repo
Check out #👥・new-member-guide and #💕・free-resources
Would be easier to advise if you mentioned the subject, instead of just hacking
Anyone know any good inbox spam tools, testing some n8n spam filter gpt wrapper tools
Guys im making a project but i need help in android studio its trippin me out
Trying to make phone remote access control
From pc
Hey guys, I am full stack developer, and I am interested in cybersecurity. Within a few years I plan to launch my own apps and build a successful startup. For all of that I need to have good grasp of cybersecurity concepts. A friend from this group recommended me tryhackme and hack the box and to practice capture the flag. I see alot of paths there and alot of options. After some research (with help of the internet and chatgpt) I think it will be best to complete most of the paths in tryhackme within one year (i plan an annual subscription) and than proceed on monthly student subscription to complete penetration tester job role path and later on AI red teamer. I wanted to ask is it worth it to subscribe to tryhackme annually? How much does it take to finish a path in tryhackme? Would I be able to finish most of the paths within one year, if i dedicate 5-10 hours weekly? Than is student monthly subscription on htb a good idea? Should i focus on obtaining later on certain certifications? Thanks in advance for everything! 🙃
What can i find with a phone number?
we don't assist with finding personal information #📜・rules
Good morning
as it's unethical
hey, the answer to that is yes: most likely a year or so
but do keep in mind that you're the one in charge, so it makes you the one to dictate when studies are ending, technology will continue evolving and so are new vulnerabilities that are constantly found
there are many certifications btw, which can be found over here #📜・certs-and-career
Acer C720 Chromebook Flashed with MrChromebox Peppy Running tiny10
• System has a persistent boot sector/rootkit virus.
• Virus resides in hidden BOOT (X:) and WinPE (J:) drives.
• Hidden partitions seem to use ~5% of the SSD (suggesting malware-controlled space).
• Virus removes admin rights immediately after a fresh install and boot.
• Malwarebytes, Avast, AVG, Dr.Web Live USB scan finds nothing.
• System has been wiped with 0s and 1s multiple times — issue persists.
• Fresh Windows installations are instantly compromised
So if it's a boot sector rootkit. Clean the drive during setup
Ez
If it's still compromised it's probably not boot sector
Swap the drive, if it's still persistent then it's on the board or in a chip somewhere. If not then it might be firmware on the drive
Also try installing without mrchromebox and see if the behavior is the same
how did you clean install?
You should be able to delete/format all partitions and drives if you did the USB method, the inbuilt windows reset option isnt as good
Acer doesn't appear to have any official guidance on reflashing the firmware unfortunately, but there is unofficial guidance, which of course comes with risk @supple sonnet
There is a write protect screw you'll need to remove, which means removing the back of the C720
You mention MrChromebox already
did you already try to reflash with that, and it still persists?
Hey Is it worth learning to hack if I’m not doing computer science in university or school therefore won’t be able to get a degree to profit from it?
Or is there a way I can make money without qualification in cybersecurity and without coding languages?
Js curious coz it’s really fun but if it don’t make any value then I might be better off not doing it
Obtaining experience in programming certainly can be beneficial for someone looking to get in to security, as it can enable you to not only better understand proof of concepts, but also develop your own tools as required
It also allows you to better understand or imagine the potential flow of your targets in the field
That said, you don't neccesarily need to go through a university course to learn those skills, if you are self sufficient and driven enough to teach yourself through the massive amount of information and learning platforms available to you online.
I’m in finance not security but I like this as a hobby yk
I thought maybe it could earn some money on fiver
But I don’t know any languages I’d just be learning red teaming and security on tackle
On tryhackme *
Will it make money
Freelancing
Or is it just a hobby when you don’t have qualifications
You can approach it as a hobby, but if you are driven enough you can build up your skills to a level that can be of use in a profession
I've no uni or college qualifications, and am self taught
Oh I see
I have been doing this for most of my life, from a young age though
Have you tried freelancing
On fiverr
Not in the general sense no
How have you used hacking so far
No @chilly merlin
In many ways
In my previous role, I used it to act as a security advocate, develop training, perform pentests
Since then, I've applied my skills to my current position
Oh shit so you making money
Through the years I've spent time researching vulnerabilities etc
dyam
Yes, but security is not my primary focus these days. You can make money from working in security mind, there's no question on that.
teach me how to use nmap
Plenty of resources available there to teach yourself
Also, read #📜・rules
This is an ethical server.
i know enough about nmap but i feel still theres something missing
Then go check out those channels and the resources available to you
i checked already
Any suggestions on vpns I currently use vypr
I use the wireguard protocol 🤷♂️
Yap
How is wireguard going?
Good👍🏽
Does this channel has cooldown
Do not spam here. This is the channel to request help.
anybody know how to config whonix with kali linux
Anybody know the best place(s) to learn Python and Swift?
Helloo! Does anybody knows about a PowerShell certification?
I don't know too much about Swift. But maybe you can use Coursera, Udemy or practice test to learn a little bit more about Python
Yea Swift seems to not be as popular but could be helpful to know a lanaguage not many know 😛
Hey! Anyone here who can help me make a pentest report? I did a OSWAP Juicebox pentest and need to make and submit a report on it (why idk, don't ask me)
I would recommend searching up the Hack the Box pentest report (I don't know if i can post a link in here) they made an example on there for what a good report looks like, and they have a free course on documenting and reporting. If you need further help I may be able to assist
Guys, how do you find a lost/stolen phone but i don't remember the email password and neither i have the phone box with me
How do we find a location of a Facebook page owner?Can we trace him?
Free or paid?
Free but fast
protonvpn
Thx
yes 100%
It’s mandatory for my degree but everyone I know hasn’t done python
cybersecurity is all about securing a code structure
everything is code related
so when you learn python you understand the way things work in a sense
Thanks buddy I'll definitely go for it now
hi, what is the best AI for coding (not 300 lines for 60-80 line code)
like chatgpt like to do
Gemini, deepseek, chatgpt
Can anyone help me? I am looking for anyone who has worked in the digital forensics field for a mentorship project I am working on. I’m just looking to ask a couple basic questions about the work you do and what your path to getting there might have looked like. If anyone knows someone that can help please send them my way. Thanks
copilot?
i think claude and gemini might be the best for now
it's an extention for vscode that lets you switch between ai models
it also has gemini flash 2.0 in it
so you can have gemini actively writing/fixing code for you
also gemini for coding is bleh
i wouldn't recommend at all
grok's better
guys i got a question if i want to start computer engineering do i have to learn about cybersecurity?
Hello guys , I'm new to IT field and have only little knowledge about cyber security. Can anyone suggest a roadmap for cyber security. Also I'm currently learning web development, should I learn cybersecurity first or continue with webdev
Lurking
I want to bring back my samsung S9 its stuck in boot logo SAMSUNG tried everything(dont ask about this and that) the firmware is corrupted and i used Odin to download another firmware, i found the right firmwares in some sites that chatgpt recommend me i add them Odin starts to analyse the files and then it says succed 0 failed 1 tried the right firmware with SM-G960U XAA carrier,any help please? How to bring my phone back
Anyone have a connection with someone in the digital forensics field?
How do I add security to my websites that I host on my Raspberry Pi? I feel like if someone would want to do a simple attack it would completely destroy my pi 5
How robust of security?
like no one can break into my network without having to spent several days trying to
just needs to be skid proof
i already have cloudflare running for protection
You can build a modular Ai that uses predictive models to modify firewalls in real time. You can make it design honeypots to waste energy.
which is way too heavy for a rasberry pi
add a lot of honeypots
Not doubting that.
or like decently enough
then you can perform scans or reconnaisance to check models
Cowrie — SSH/telnet honeypot.
Dionaea — for catching malware.
Honeyd — simulates entire fake networks.
Kippo (archived, replaced by Cowrie).
Glastopf — web app honeypot.
Snort/Suricata — for IDS/IPS monitoring of container traffic.
thanks for listing all these options
yeah, but its not hard to make a simple IDS too, also a fun project
log user activity
This. Start simple to understand what you need to develop for your needs
Guys help me operate Evilgnx2
first of all, manners are nice, second of all, what part of it do you need help operating?
For demonstration ethical hacking for my school project
you didnt say what part of it you need help with
Hello, I got a question do I need a vpn in order to start with hacking and those stuff_
Plain NO
learning hacking is not illegal.
how do i take/hack a discord server
Huh why do you need that😭
because this guy scammed me
so im bout to learn how to take his shi
And i dont think it works you can't Just Hack a Server i think idk im new myself😞
theres nothing in the rules
Are you blind?
Nr.3
3️⃣ No Unethical Activities or Discussions!
he literally scammed me 😭
Did you Report to discord?
they wont do anything, support never helps/replies no matter what app, website, brand, etc
At least give it a try No?
What did you get scammed Off?
cod account
Yeah thats an Activision Problem you should at least try to contact Support tho imo
Hello I wna edit a ble spam can anyone can me on how I can do it
hello is there anybody who is a cryptography ctf player ?
Hi. I want to get practice material for ITF+ but I honestly don't know what to pick. Or even the differences
youre not
What does it mean when I try to load Kali on virtual machine and I get. VT-x is disabled in the BIOS for all CPU modes (VERR_VMX_MRS_ALL_VMX_DISABLED),
I was searching a little bit, and this is what i found. I hope it helps :c
It means your computer’s CPU virtualization technology is turned off in your BIOS/UEFI settings
How to Fix It
Restart your computer and enter the BIOS/UEFI:
This usually involves pressing a key like DEL, F2, F10, ESC, or something similar immediately after powering on.
It might say something like “Press F2 to enter Setup” briefly at startup.
Find the virtualization setting:
Look for something like:
Intel VT-x
Intel Virtualization Technology
Intel VT
AMD-V (if you're on an AMD processor)
It’s usually under:
Advanced tab
CPU Configuration
Security
Or sometimes System Configuration
Enable the virtualization setting.
Save and Exit BIOS/UEFI (usually by pressing F10).
Boot back into your OS and try launching Kali again in your VM software.
aw thats sweet haha
never seen a beginner put his efforts and times researching to help another beginner
we need more people like you
oh, thank you so much!
I'm very surprised by your comments, I really appreciate it <3
hey i have a question my sister keeps getting logged out of her social media pages and randomly has pictures deleted from her phone and gets logged out of her apple account could that just be a coincidence or could someone be hacking her stuff because her ex got with this new girl and she was able to find out that the location where someone logged into her FB was from where that girl is from
yeah colud be a compromised device
just enable 2fa, make longer passwords and make sure you dont download anything sketchy
or well she* in this case
she’s done that and has changed her password and stuff multiple times over and over including emails and it still keeps happening this has been happening already for like a year
hey everyone new to the community and to cybersecurity. Where would be a good start. I have a general understanding of security and networking due and also with coding from studying on my own. please help open to all suggestions and anyone willing to mentor. thanks
thank you
What are some good theme park ticket sites with the best discounts?
What is the tool used to find someone location using phone number
Fr I’m tryna know too lol
Hello guys where can I use and learn "defender for endpoint" if it's practical more better
Guys do you know how to play the CTF games. So I used nmap to see if the port is opened but don't know how to brute force and where to see the flag.
Hey, I needed some help switching back to Windows from Fedora, driver issues and everything needing 3 hours to setup properly, I would like to actually get work done
I've tried:
- Ventoy (Boot manager doesn't detect the drive that Fedora is installed in)
- Manually mounting the Windows ISO to the usb flash
- Balena Etcher (Doesn't work)
- woeusb (no longer maintained)
Please help, I don't have any secondary device on me atm
Anyone, please, I need a network expert who can help me with a project! plz
any cybersecurity expert!
go get the windows install image not the iso
I'm trying to configure a network. A basic home/ WIFI network, I want to implement an IDS; however, I want all the network traffic to be monitored and perhaps controlled, if possible, through a microcontroller.
The problem is how the microcontroller does all the monitoring in the network.
Please message me if you got any idea about how to grab cookies using a wordpress website, I'd really appreciate
how do i learn networking?
good morning, what happens if you uninstall the "sketchy" app on tablet will it solve virus problem
Guys i need help
i opened a site without https
on tor
am i safe
it didnt download anything i dont think
but the website ended up being a scam website
i didnt click anything on it either
i have my crypto shit on my laptop so im worried lol
Doubt it, but do a System scan if you're worried.
How do i do that
wait
surely it isnt efficient though
i thought viruses and whatnot bypassed that
I would assume if you're involved with cryto, you would have an anti-virus intalled yes?
and dont get caught by system scans
lol
why cant i acces #💕・free-resources
the anti virus ran out a few days ago
i havent renewed it
i only have microsofts basic anti virus thats always on
i did a scan
it looks like theres nothing according to microsoft defender
fuck man
I mean, as for just clicking on a non secure website I think you'll be fine. But you may want to look into solidifying some protection.
Whats a good affordable anti virus you'd reccomend
Http means that the transported data is unencrypted
yeah it was http
Nothing to do with viruses
u sure
It just means that the data between your browser and the website was transported with no encryption
wb anything else though
hello
Gm kiwi:D
serpent woke me up, need to help with a networking question again

They will have that info regardless
Is there anything i should worry ab then
@spiral notch as I was telling you, the microcontroller will be plug and play.
other than getting a new antivirus
You should be fine with just windows defender btw
really?
Yup
its free though
surely any virus or good hacker can get past it
because its what every windows has
It's built in, it has more access to the system therefore has more security options
A good maldev can get past almost anything really
But lucky you i don't think you're targeted by one to that extent
ahhh
yeah prob not
i have just 1 sol in my wallet anyway
not worth their effort
ty for the help guys
Yw yw
Ok I'm bqck
I see
and what will be the purpose of it again?
then whyd you open it in the first place
you're safe tho dw
I'm trying to mint coins
and i spent hours on powershell before deciding to find a guide which ended up with no https lol
its purposes is to Act as an IDS that will be streamed to an UI. so user can try block the traffic or act through automated response
ahh ic
you'd still need to reconfigure your router
it's not just the microcontroller you'd have to modify
Here is my issue exactly
but then where should the microcontroller be pluged in ?
I want it to protect the entire LAN, using a Raspberry Pi 5.
Sorry, I didn't mean a microcontroller, things are not clear for me yet. I'm a beginner
Depends on the configuration, u can plug it into any socket along as it gets power and connect it to the router wirelessly
Or the more standard way of plugging into the routers ethernet port at the back
(Most common)
But then will it be able to monitor the entire network traffic, even new connected wired/wireless devices ?
With correct setup yea
it doesn't work that you just plug it in and it automatically prioritizes all traffic
and routes it through the rpi
What then do i need! could you guide me please on the setup
I'm doing multiple things at once but yea sure
so
does your router have dhcp settings?
Its actually a basic modem for an ISP

and all configurations are pre set by the ISP
yeah, which is why I'm asking
just like for every router
but in most you can change them anyeay
Yes Absolutely
anyway
^^
so does ur router have dhcp
settings
as in can you modify them
send a ss, what things can you modify?
sure
is there a free path for beginners red team but completly beginner?
hey guys
i accidentaly uninstalled my linux
so when installing
do i pick graphical install or install
Graphical would be easier
but i alrdy have an account there
Wdym
because i accidentally uninstalled it while my account is login there
and if i go graphical install, it would make me create a new account again
oh wait no
my mistake
If you entirely deleted your Linux, you lost everything u had there (assuming you formatted your drive)
The account you create is local
@eager knot sorry for pinging
but can you help me install the app again??
i forgot the commands
i uninstalled my linux by accident so i lost everything and i created a new account
so you have a new kali linux?
yes sir
you don't need to install anything then
the tool is already on your system
along with many others
doesn't matter it will still be there regardless of your account
no it doesnt
i had to do this again
sublist3r -d kali.org
i lost everything
can i ask you why do you need that tool
because im learning the subdomain thing
through which resource are you learning it?
im learning it on yt
i think you're jumping a bit too high
first you gotta learn how to use linux
thank you for that advice, i'll take that advice very soon, but for now just help me install this again.
what error are you getting when you run the command
is there a free path for beginners red team but completly beginner?
Hello, please I need help with Red Hat Enterprise Linux 8 or 9
Who has RHEL 8 or 9 ISO ?
i sent u smth
ok, and did you read the error it's sending you?
if not i highly encourage that you do
I found my old samsung pad but i cant unlock it but i wanna see whats inside it without factory reset is it possible to unlock?
it has pattern code on it
is there a free path for beginners red team but completly beginner?
that has paid stuff in it
that i am not too sure about, you could try and connect it to a computer if it'll let you choose to view the files from there but other than that
i'm afraid there is no way
yup
oh mann
some are paid some are free
its really old samsung ipad
can i see for example google or social webs
thats in it
i don't think so
do u think the free stuff in #👥・new-member-guide are enough to get u going?
yes, more resources are scattered around the web so it's worth just googling for everything you're missing
no need for any special software
oh
should have a simple delegation in your phone to transmit data
Shall i just put usb?]
alr wait
alr i put usb in ipad and in my laptop
but there is nothing in this pc
bruh
can anyone help me with a roadmap for cyber security, i have enrolled in a college course but only understood basic networking so far, i know intermediate programming
well considering you've learned networking and already have a foundation of programming i think it's time to learn linux- have you learned linux?
I agree linux is a great next step
not fully but i can i have used it before and im able to do basic stuff as a normal user
i highly recommend hackthebox's linux fundamentals module
ohh i dont have those
that sounds good thanks!
ohh
I’ve tried going in blind to Linux and following tutorials for boxes, and I can tell I’m missing the fundamentals of Linux. Definitely worth choosing as your next step
thankss
other than that, learning more os fundamentals like windows and active directory aka the pain and misery of the industry would be very good
don't mind me
Lmao AD not your favorite? 😂
i just have a very special place in my heart that hates AD
what is AD?
I feel that. I literally live in it for my job so I can feel your pain
active directory
yup, it's inside of windows servers
worth learning as well once you're done with windows fundamentals of course
ohh
Essentially organization of users and other things within an org
ohhhhh
once you're done with these, i suggest by this time trying to understand what type of pentesting you're aiming for the most (web pentesting, program pentesting, os pentesting, network pentesting etc)
and once you have a markdown of what you like most, you will continue learning accordingly
more subject focused and less of the "all over the place" type deal
Very solid advice
what exactly is pentesting?
pentesting is hacking
oh!
thanks for help man
ill start with these right away
yo guys
Hello
does any1 knows here the emailtackerpro?
hey guys any tips cuz i wanna practice to trace their ip locations through email
AD makes my hair fall out
Why u trackin people
Or trying rather
hello can anyone help me i cant drag n drop files on my kali linux vmware
low key it stopped workin
Hello anyone can help me shell cover for hiding my link , testing and doing some ethical hacking
dont enable passthrough
no
thanku
hi, i want to start cybersec and pen testing a heard that the ctfs are the best way to learn but when i tried i found them too hard and heard that i should start learning cybersec first and i don't know where to start and i really want to start learning( free resources that is actually good and not gonna make me travel the world for basic info)
i recommend starting with the basics and fundamentals if you haven't already: networking, os fundamentals, programming, etc...
how to do that or what resources can start me with that (i have good linux knowledge as i use it and i can program in python decently well)
Hello guys ! i have heard about MITRE attack framework which is very helpful as a Red teamer but im confused how to study that as a beginner Theoretically and Practically both ? plz anybody guide me !
same hope they get back to us
theres an api for discord where you can take a user id and trace it back to information such as addresses, emails and even phone numbers. ive been doing a ton of research trying to find this method but havent found anything of use. Does anyone know about this?
nope
you can't do that, it's against discord's TOS and also unethical
hm, alright. does that mean its not possible at all?
yup
a user id is just another identifier for a discord account
has nothing to do with any personal information really
i mean if they ever change username you can use their user id to trace them again but
that's about it
thats what I figured so when I found this out I was pretty shocked but Ive met a few people that claim they can do it, wanted to do my own research and find out if it was true or not. Thank you a lot
oh they are just scammers looking for a wallet to feed on
"i can do it pay me and i will"
dips afterwards most likely
gotchaa, I appreciate it a lot thanks for the help
