#👥・help-me
1 messages · Page 107 of 1
Thank you so much. It’s more like a logger situation. I hope the back up will not carry the malware to my iCloud or other devices
Better to do offline backup on your other devices. And then run a scan with Anti-Virus software.
Do you use telegram
Off topic just curious
Right now the only social media platform I use is Discord.
It isn’t really social media
More like a texting app to use
Other than the messenger
Set up a linux vm and connect via openvpn
helppp tasukete
Guys currently I'm working as an application engineer for about 2 years now and the tech stack I'm working with is unqork, it's a low code tool and I want to switch to cybersecurity, what's the best place I can start at? And honestly I want to get started at it as soon as I can(kinda in a dire financial situation right now) what's the best role I can start with? Which I can start learning and can get to practical and can I start as a freelance please can anyone help me on this?
#👥・help-me Hi guys. Please can anyone suggest legit survey sites that pays well in dollars. I'm ready to learn and would really appreciate a mentor. Thank you. NOTE: I'm in West Africa.
gng a university here offers bachelor of of science in criminology specializing in cyber security
does that mean I can get a job in law enforcement
So if you're going to a university to get a degree in criminology specializing in cyber security, if you would get a job in law enforcement?
yes
It would really really increase your chances to come in. Absolutely.
Thanks bro
No worries, and even if you change your mind going into law, that degree will really be worth it.
My friend this is a computer related server, it's only natural that you won't find a job here, instead just try to get outside in real life and try to communicate with real people, online jobs are something you do when you already have a stable job and looking for more income, so just try to rise on your feet and do what you should do
can anyone help me? i think my pc has been hacked my personal accounts got open on different places can anyone help me to see if someone is still got access to my pc pls
I understand, and trust me am looking and I've been looking. And so far I haven't gotten any work yet. My money at hand ended yesterday morning. Since den till now i haven't even tasted water. I don't have options. Now for me to eat i am forced to wait till tomorrow to sell my power bank. That's why am seeking for help.
But pls Sir and i really mean this cos it's means a lot to me. Can u pls 🙏 feed me for even if it's for today. Tomorrow might be better for me. Pls 🙏 I've been hungry since yesterday afternoon and right now my hands are even shaking
#👥・help-me anyone guys?
hello guys for everyone doing the 100 days hallenge: is it that we need to create a new thread each day or do we post under the first thread just changing the title to the current day?
Who can make a script for a flappy bird clone to auto play
If I send the js and html
Technically is.
pls am struggling to completing offensive security on tryhackme
I don't have connections issues but I don't know if it is the browser
any help pls
Are you popping a machine in browser or doing through their VPN on your VM/System? If it is the browser thing then move to the VPN thing!
Pls who has a link for website testing.
Okay so what I understood is:
- There are no connection issues
- VPN is not working as well
So what exactly happens? Walk me through the situation, can you start the machine? if not then what happens? I am trying to understand it more.... Is the whole room free (I suppose not)
You want to learn web pentesting? Or you need a website to test something?
I want to learn web pentesting
Try portswigger and tryhackme
Thanks
I can start the machine and I have input http://fakebank.thm/bank-deposit but it is not loading
If you have tried it with attack box and VPN in your VM and still not working, then the box might be broken! Go to THM's discord and query there, soon an admin will fix it for you
link pls
My old acc had that, but you can google THM discord and it will be right there
hey coco
Hey guys. I'm interested in making a project. Similiar to odds jam / dark horse
ok thanks
got any past experience?
with those
I've used them yeah
no, in development
it’s really complex
like really really complex
it’s the same as playing Fortnite and then wanting to code and create Fortnite completely on your own
Guys I seriously wanna get into cybersecurity and computer science. I’m currently studying CSE and I don’t know shit practically. I really wanna build my skills and I’m ready to put in time and effort. Can y’all please help me with a roadmap coz I’m so much confused that i wasted more than a month researching how to start.
How can I post photo?
you need perms
hey, so i have 0 certificates, i was a software engineer, curretly noob in cyber, is CCNA a good first exam towards jobs like SOC analyst? what about CyberOps? (if my question is too dumb i can elaborate)
Heard, is there anyway I can Pm you a photo to see if you could help ?
i don’t have perms either you can drop a text at #💬・old-gen-chat someone from there will help you out.
you learning python?
@crude thorn Yes, I have a script but when I enter command it gives an error but I’m not sure where I got stuck it seems everything is in order. I’m sure it’s something simple but I’m new to this.
Please does anyone know the appropriate answer to this I'm also wandering
Hey would you mind giving me some context? Maybe i can help
I'm maining python, so maybe I can help out.
Yes, can I pm you ?
Messaged you !
Ehm or maybe just discuss here?
Or is that not appreciated in this server?
I usually like this more so others can tune in and might benefit from the discussion
I fixed it.
what’s the issue?
Python is simple
o oki
Hey guys does anyone know an affordable laptop that could get me started
budget and use case, please
Alright humans... I need a Windows GURU... no level 1 tech stuff, even level 3 tech skills are not capable. We're deep diving. First up, I did a system restore. I'm sure you all know, but doing so, broke my Windows Update. DISM, some dll files, and updates are not matching the WinVer build and my install.wim/my ISO, no longer match either. I need these three files and they need to match my build in order to get WU working again, or at least get me closer. Then, we will tackle bringing my DISM build up to match my WinVer (OS Build 26100.6584).
The dlls I need right now are:
wuaueng2.dll
wuauserv.dll
qmgrprxy.dll
Any help/guidance would be greatly appreciated.
Hey following up with the 100 days challenge, I already posted a second thread for day 2, I hope that won't be missed that there is another one for day one?
Dm
Literally any laptop
I am very happy with my t14 thinkpad.
ROP JOP
extra for lab, 32 Ram few kernel for VM's 1 TB ssd
Do u have a file backup which for the level u claim to be u should have one. if you do just Reset don’t overthink it. Honestly, I’d do the same. If you want to go rabbit-hole diving, you can try solving the issue later, but for now, you know the fix for another time.
Wtf is level 3 tech skills
Please help resetting my discord password. I deleted the email address however my phone # is still linked
I don't wanna explain Google it
More of just looking at options that way I have a better grasp of what I should go with. So I'd like a lower budget option that I could easily save for.
well good luck with it.. vague requirements without a frame to place them in.. I get that people are reluctant, and want to keep it open to interpretation, but thats just nothing to help with substantially
I understand I need to truly know what I want before you can help me
what are your concerns regarding the certification? is it credibility, or knowledge and skillset?
if your intention is gaining knowledge and skills, then there's no need to sit for an exam, you can just take the exam objectives as a study curriculum, and you are not required to study everything in the CCNA, just the important networking concepts that you'll need in your job
for credibility and resume boost, i personally opted for Sec+ to get through the HR filter, and now looking to build upon it with SC-200 and CySA+
could you elaborate more on what you are aiming for?
Why not do appsec or vulnerability research
I had no certs and just swe
and got plenty of jobs
I never claimed to be any level. I simply stated I need help from a higher level, but I digress. Idk why the "help-me" channel always results in pushback lol.
Yes, there was a backup, but that is where I found the build numbers didn't match. Regardless, the situation is what it is and the only way forward is the deep dive. in-place repair/PC reset is not the way forward here. And it is possible. I'm just struggling with these last few issues and it's critical to get this part right. And... the usual, "just download it" is highly risky. So, I reached out for help from someone who knows more than I do.
You can try to downloading the dll files u need if possible in a safe way or u can go exploring Good luck
Have tried. sfc /scannow.
Powershell : "DISM /Online /Cleanup-Image /RestoreHealth''
Not going to apologize to bro
Both are The safe approach I presume
Yes, came back clean.
Can't use, comes back clean because as I mentioned, DISM ver does not match WinVer.
Ahh ur right
We all know how dll downloads go. Any recommended software for dll downloads that can be chosen by versions?
Have u Tried re registering it using cmd
regsvr32 wuaueng2.dll
regsvr32 wuauserv.dll
regsvr32 qmgrprxy.dll
Thanks ,it was my Network
Or wait
Use Windows version/build or extract them from the Windows ISO using:
expand -f:wuaueng2.dll X:\sources\install.wim C:\Windows\System32\
(Replace X: with your ISO drive letter.). Hopefully it works 😁
No, because these three files are missing.
This... So, tried this approach, but what I found is the typical Windows PITA... I extracted from cab, from mui, etc. You see, they don't always ship the files with the correct file names or updated builds for DISM, the dlls, etc. Apparently, these usually come with later build updates. Hence, the loop I'm stuck in.
I tried full extraction, which was tricky on its own because I had to extract the ISO, then extract individual cabs, mui, etc... just to lengthen my scavenger hunt. As I'm sure you know, that's hundreds of thousands of files to millions by the time you're done.
"But just mount it Shaun!"
Oh, duh! Why didn't I think of that... Haha well, I did and you can guess "WINDOWS DOES NOT LIKE YOU TINKERING AROUND SO WE ALSO BROKE YOUR MOUNTING ABILITIES". Of course, I'm dramatizing.
So, I ran to 7zip. I can explore, use search functions, etc, but again, the names are funky (at best).
If I could maybe skip the process and bring my DISM up to match the WinVer, maybe /RestoreHealth would play ball and replace the files.
I did unregister/register/reinstall the various packages/etc, but the mess grows and perms are changed and so on — the problem festers.
I've returned to a state of somewhat stability and no mess currently. So, I came here reaching for another mind to brainstorm with.
have you tried this site https://uupdump.net/

Finding the right DISM was my best thought so far. That's not easy either.
Can't forget "just uninstall updates to bring WinVer down to match the outdated DISM. Well, Windows anti-tinkering bugs said HARD PASS to that option because I can't even uninstall updates thanks to what's broken. 😂
I have provided proper perms for what I have fixed so those things no longer bark at me.
I only have DISM and the three missing files to resolve (hopefully) but I can at least continue diving after this is solved.
Oh... I'm on Windows 11 Pro btw.

I was thinking the same. I have been frying braincells in these rabbit holes. HEEEEELP 😂
💀
Hey Seniors and lovely juniors , I have been learning cybersec for 2 year+ and now currently going for security+ exam and preparing.
Can anyone help me to land some internship ?
I am from INDIA , final year B.tech student of AI&DS branch. I want to implement all my learnings and see how different are these real and learnt skills.
Idk about india
Anyone have beginner friendly CTFs for practice? 👉🏼👈🏼
The return of yeti on thm trust me is wonderful😇
Ooo thank you!
Reccomend portswigger for practice of websecurity :0
I'd throw "Over the Wire" into the mix
Nice nice, I’ll be doing web apps soon too
OH that’s the bandit one I think?
If so, I really learned with it
I think that's one of them
I've dropped the ball a bit on it, but found the setup quite nice 🙂
Think they got different ones, too, after bandit
picoctf
pwn.college
@vague marten i got the thing u need i got the fix
overthewire is outdated
do pwn.college
I'm listening 😍
I got an ISO matching my WinVer, trying to find everything to match. Still just hunting hidden easter eggs though.
After about an hour of work, I finally managed to get the DLL files on my PC. I realized I didn’t have them either since I’m using a custom OS, so I downloaded the files from UUP Dump. After running a bunch of CMD and PowerShell commands, I was able to create a backup and extract the files successfully. I’m still missing wuauserv.dll, but I’m working on it.
dat’s just win update, you’re just about golden!
i couldnt send my lengthy message but wuauser.dll is no longer needed
hurray!
https://learn.microsoft.com/en-us/answers/questions/4058326/wuauserv-isnt-on-my-computer-at-all read this for mor info to why its not quite needed
!?
Isn’t that the insane room
Naaaaah😅😅😅
I do have this dll if you want it just for whatever reason. I just extracted it from the ISO I got.
Its actually a hard room
Suffering on it rn)))))
I was gonna join in the conversation with my limited knowledge and experience and suggest you to get the matching build dump with your Windows version and attempt repair.
But I'm glad you're on the way for a possible fix.
Im not gonna lie, taking a "custom windows install" that has a bunch of things intentionally removed/destroyed, then trying to fix it back up seems like madness, but good windows practice.
All I need is to properly place the files once I find the correct ones and bring the critical dependencies up to par to match. However, CMD and PS commands have proven useless as per usual.
My Windows is genuine. Just broke it during a system restore, which is common.
It is always a good exercise tinkering with Windows though. Food for the soul or stress for the heart 😅
I do have many customized things, but the core of the OS is untouched. After the system restore; DISM, and quite a few dll files were replaced with older build vers
sorry, my brain mixed your message with someone else's XD
There is also a reason though why most self-respecting techs would just wipe and restore the data + apps, rather than try to fix a windows core issue after a system restore.
Biggest is time. Windows is so thicc nowadays that doing fun stuff like "going through the registry to find rogue keys" is a little much
Hey man I dmed u
On it
That's true.
But but I'm like that person, and always do torture myself especially with Unix issued or when I use Linux like Arch and Gentoo and a System update breaks things and I have to go through dependencies and all the mess to try to fix them when I can reinstall the Operating Systems.
You're right. I just can't do that right now. The sheer amount of apps, etc would take just as long and I'm mid-engineering project so can't risk it right now. Besides, learning is part of the journey and I love learning all I can.
Oh, same. I actually have as one of my interview questions is to get the interviewee to "search and discovery in the registry"
I rebuilt my registry already. It was a cascade event which was part of the mess from early days when I started teaching myself icals and such. That was a terrible experience 😂
I see. That's a very good way to test their knowledge level too if they're just parroting something without understanding.
Yeah, all the questions are "very easy if you are looking from outside-in", but the entire point is to see how they interact with the computer.
For example, if you wanted to try the registry thing, it is literally "Map a network drive, then find your network drive map information in the registry"
technically, thats 2 of the questions, but you need the first to do the second
Help for kali linux wifi device setup
That's understandable.
After being with these Technological mess and forcing my brain to adjust and learn through things, I do Love these things and still trying my best to improve my knowledge and experience.
What's the name of your Wireless adapter? You can try searching for the drivers and there are specific firmware packages too for every distributions as far as I know.
only got stuck on the fourth and last flag, now the previous flags were easy
Having trouble installing Kali in a VM on Mac says everytime that the software is 14 and not 12 for VM
Am having problems installing Kali Linux on Windows
it’s really easy
Follow any yt guide
All youtube guides are inaccurate
@spiral notch when installing vm it says vms cannot operate due to software compatibility
Especially for Mac
for Mac they use it on
different chips
most likely
you can’t speak for the other ones if you’ve never tried em
I tried the intel and silicon neither work
Installation is taking longer than expected
Download that is
and what chip do you have
..what
don’t get into cybersecurity without knowing your devices hardware even
this field will eat you alive
The point is to learn woman
exactly! and not skip over important parts
glad you get it
Info can be acquired through perservation, i dont need to learn each cpu hardware when im only using 1
Bye woman ur no help
you need to learn your own and how it works
I have a name yk
good luck in.. nothing?
Dont care what it is if ur not helpful next please
LOL
you’re not getting help with that attitude
yes, from another expert either
cya
not trying to belittle
sorry you took it that way lol
was literally saying you’re skipping over an important part
idk what ur on
?
when did I say I wasn’t relevant on mac lol
she's giving you advice
I’ve used both many times
If that was true then give me some tips instead of telling me to learn all different type of hardware
I have a fulltime job i aint trying to wate time either
don’t say all
didn’t say all
I said don’t get into this field
if you don’t even know your own hardware
You’re trying to skip over important things
try learn calculus without knowing addition type
.
.
With that attitude i have time and effort to put in to learn myself i see your wasting my time still
You had to learn somehow, did your teacher or peers tell you that bull? Or help you openly
I taught myself
I had no singular teacher
Looks like im going to have to as well
I leeched information off forums that are by now seized or destroyed
Great resources out there im sure u know
because I was not looking for legal info initially and tried to skip over important parts to learn illegalities because I was fascinated
back then atleast
Great, good for you, see ya out there someday ! Good day to you!
The greatest thing about this app is that i wanted to see what the community was like, bunch of gatekeepers
you too
???
Tf am I gatekeeping
advice on how to make ur vm run on a Mac that you don’t even know what components it has?
Nun to me you have no good advice to offer me,
hm
Told you what it has u still in your feelings
?
Told you bye and wished you the best now quit responding to me
feelings at Internet pixels LOL
idk lots of others say the opposite
bye u too
You and your possy of gatekeepers can go advise someone else
someone's heated
quit responding to me🥰
jesus christ people are just trying to help you dude
Its okay, the real ones appreciate your insight. 🫶
🤷
hihi thanks !!
he’s a weird one, used “woman” as if it’s insult
.
What are the prerequisites to start doing CTFs?
You should start learning the roadmap on tryhackme
Is the free tier enough?
When you wanna learn, buy the VIP. It is cheap monthly.
fffaaaarrrrrkkkkk i think ive been robbed again from some prick on telegram. I know his name and ii spoke to him for over 6 weeks in a investment group he was running and is a moderator for the Broker, But as sooon as i dropped the money and others he hasnt turned on telegram and has not given the main investors any information
Is there a way to get him
Sorry for the late reply, I got accepted into a Cisco program in my country where they offer training to become a SOC Analyst. It’s not a guaranteed job, but in their words, it “opens doors.”The requirements are having the CCNA and CyberOps certifications, and they offer weekly classes to prepare for those exams.
Since it’s not a guaranteed job, I was wondering if these are the best certifications for a SOC Analyst. I’m currently looking for an entry-level position to gain some experience, but also love to learn anything related to cyber
i'll check on that, thanks!
Probably report it to the relevant authorities
my problem is auto deleted lmao
Maybe consider other investment platforms besides telegram.
Btl1, sec+, cysa+, sal1 etc
thanks! i'll check those
Anyone here will to give me a Google api key
sybau
can someone teach me to navigate this website
I'm back pitches! haha, tell me y'all know the reference? Don't be snowflakes LOL
Update:
Deployment Image Servicing and Management tool
Version: 10.0.26100.5074
Image Version: 10.0.26100.6584
DISM is fixed!! I had to use the gold ole drag and drop after extraction, then run DISM from the extract WIM. Then, ran DISM normally. All is well that ends well.
What did not happen, it did not fix WU so, I'm only that journey now. Going to attempt a direct fix first. If unsuccessful, I will drag and drop to update components, then re-reg. Although, something to note... exe and dll filenames indeed changed, and many dependencies/tag-along files are now obsolete. So, be mindful of this.
Final note... Windows is a DANGEROUS playground. However, when you find your way and learn the hidden dark corners, it really is a beautiful OS. It's a shame Microsoft doesn't allow user full control rather than assuming everyone will nix the entire system (which should also be our right).
This little facker right here though:
C:\Windows\System32>net stop usosvc
The Update Orchestrator Service service is stopping......................................
The Update Orchestrator Service service could not be stopped.
Apparently, it's unstoppable lol
heyy i was wondering on how to bypass the yt-dlp's antibot system.
im trynna build a personal sync-music streaming app that lets me and my lovely listen to same songs tgthr and im using ytdlp and ffmpeg to pipe the audio from yt servers to my server and then to my app, everything works fine in my local machine but causes error on render. i tried wrapping it in docker and still facing error bcoz my ip address is of render service and yt blocks it. what do i do
Illegal activities are not allowed here.
Also, run a VPN.
lol
Can u help me for getting free worm gpt for kali linux
you can try writing a python script to call the gemini or gpt api from the terminal and then play around w the commands.
i did one... i can access it by typing "ai q (question)" for quick answers.
and "ai c" for chat mode
like hack it? Illegal stuff is forbidden in here
@late ferry email snapchat support and send proof that the account is yours, they'll help
fr man... #📜・rules
@sour badger @shadow fractal
I got it
Brodie am in need of this please help
Alright, got nearly every problem solved, but one is stumping me... Anyone know where qmgrprxy.dll is located in the install.wim files?? 7-zip doesn't have the Find icon and F3 isn't bringing up the command line.
I have seen something in Stack or somewhere else bemoaning this very fact
I fixed it.
I like a little bit of messing around in Windows, as well.
Did you ask it less nicely?
I love messing around in Windows. It's highly challenging. I despise the "Reset PC", "In-place repair", and "clean install" about as much as I do "try updating drivers" lol. I absolutely asked it less nicely
Still trying to hunt down qmgrprxy.dll (should be the last remaining issue). Oddly enough, I found qmgr.dll... losts of other dlls somewhat similar, none of them qmgrprxy.dll. DISM is fixed, DISM and SFC are both happy and clean... I have less hair than I started with.
oh yes. this is the good stuff. Excruciating! But I love it, too.
Whenever I have spare time, I’m back in Windows Internals 1&2 and Windows Security Internals
Everyone is always “Linux GOATED!!!” but the reality is that’s not what’s keeping my capabilities at understanding and hunting in the customer environments sharp
And I like what you said - it is a beautiful OS, but it is RIFE with peril
I’m trying to spend more time in it than I’ve been in macOS or whatever Linux distro because I’ve grown too comfortable in those
My most palm-sweaty, heart-stopping challenges have been my fully custom ROM I did. To be most specific, unlocking my GPU and RAM -- which I still haven't quite succeeded. CPU... no problem. BIOS, done. Running a custom BIOS now. But that GPU is a force to recon with. I'm going into the HEX next. It has been quite the evasive PITA. already slipped by a few barriers, but the deep ones are difficult.
People are Linux-goated because Linux is just about figuring it out... you're allow to tinker. Windows will straight up brick you (and I have) but I have also unbricked it several times (soft and hard). Revived dead systems, rebuilt REGs/perms/SYS files. Lots
It’s so much less forgiving
That's the heart of it really. Windows is garbage soley because of the barracades... well, and the support backed by the mass-fears surrounding any sort of tinkering too deep.
And you can bet getting straight answers out of their support staff is an exercise in futility. Might as well just figure it out on your own.
But... when you start making headway and you get things tuned and everything's humming... MY GOD the system is smooth as butter. Linux is the MS-DOS of OS builds.
Good luck even getting fully formed sentences out of MS support lol
Yep. And I have super fond memories of MS-DOS as well, but dealing with everything they’ve implemented to do nothing but increase opacity and maze you, it’s the challenge ultimately.
I submit the Byzantine nature of WMI, just as an easy soft example
We heard you like rabbit holes, so we put rabbit holes in your rabbit holes so you could….hello? Helloooooo!??? Ah, nope, they’re way too far in now. Welp! May the icacls be ever in their favor!
GPU that you’re attacking now, that’s impressive. I barely even want to think about it.
except DOS had 0 separation of kernel + userspace
even though, people figured that out in the 80s
It was a delight!
(Not for security, lol)
hey guys im new here i want to learn python what is a good free site to start👋
Thats the biggest issue with microsoft. Its not that they didn't make something useable, its that they took only flashy things from other projects, called it their own, and if you needed to do basic things, like pipe information between programs, you were SOL without using their specific API functions to do it
instead of just a unix-like standard
And you don’t get common languages or syntax, on the overwhelming majority. You get the Microsoft way.
grasshopper
is that a site?
Can't forget "HEY, YOU CANNOT UNDERVOLT THAT BUT YOU CAN LET IT STAY HOT AND FRY YOUR MOTHERBOARD SO WE CAN FIX IT"
App
As Matt Mercer would say, “You may certainly try….”
sound's like apple's monitor ribbon cable connectors XD
ok thx
Spiteful things
SHIT grasshopper is not legal in my country
well, they put the main power next to the data line without a ground between them. What do they expect to happen.
do you have other tips
learning python? Codedex or sololearning
Everything to work out JUST FINE
ty
#wink #trustmebrointerferenceisanonissue
Go learn how to build one
What mean
Then choose any free AI and ask it to teach you. Way more structured anyway.
thats from like, 2 hours ago
Don't ask for unethical things here.
Go learn how to host a regular LLM with Ollama or similar
There's a hack for those.
ok
but Apple’s business model has always been baked in, planned obsolescence
Unethical where to learn
unethical where to learn not here
So, has anyone found qmgrprxy.dll lol
I might have the answer... It is possible I'm on a streamlined build. If so, the new Win11 BITS versions dropped the proxy helper DLL. That info is scarce though so confirming is about as difficult as locating the file in the WIM. I'm deducing.
I'm now running BITS v7.8 so, it appears they did drop it. I'm thinking this start/stop instability is most certainly Winsock-layer corruption. hmm
Don't everyone answer at once lol
I mean, redistributing Windows Binaries is against their ToS, which you shouldn't be asking for on this server.
including their DLLs
So I very much doubt you are gonna get a ton of answers
Who is redistributing?
You are looking for a copy of qmgrprxy.dll**?**
I have the ISO from Microsoft... searching for the dll in their WIM.
I never asked anyone for a copy of the file lol
I'm trying to either:
A) locate the file
B) confirm my assumptions
We're on a fun little scavenger hunt, not a Breaking Bad episode.
Do you see qmgr.dll?
Yes, I have it and dropped it into play. Registers as v7.8. However, I believe I just found the answer. Had to reboot. Running some commands now to confirm if it's finally resolved. If so, I'll advice the findings in case anyone else runs into the issue. Maybe save some Win users from having to reinstall Win lol
I was sneaking in some work, sorry for being lax in responding
I see how it is. Choosing work over hair shredding Windows quirks... tisk tisk
Looks like I finally cracked the case
Need to wait a moment longer to confirm stability and run WU for the absolutely confirmation.
Well, BITS started by itself this time... and stayed stable longer, but still stopped on it's own.
qmgr.dll is fixed. Now the issue reveals another trigger, Event 310 with peerdist.dll (attempting to confirm now).
The answer was as I stated, qmgrprxy.dll was dropped from new BITS versions. Now, I just need to bring everything else up to speed. WU has returned, but errors out (at least it's talking now). The error is due to BITS start/stop instability (which I'm currently tracking). Feel free to chime in if anyone has thoughts.
peerdist.dll was an issue, now disabled, Event 310 resolved. Concluded that it is not the blocker. Now investigating wuauserv and USOsvc as likely suspects.
hello people, if there is an experienced red teamer reading that, I would highly appreciate any advise for my concern mentioned in #💬・certs
Thank you
vscode or pycharm for python?
it would help to learn more about the roles you are aiming for, then you'll start to see which certification is best for which (again, is it for credibility or training?)
it's for training, My goal is red team/pentesting, but I’m willing to take an entry-level role, I imagine it’s going to be hard to start directly in pentesting when it comes to getting a job.
depends on what u need
cscodei s simpler
vscode
basic scripting i guess
it's just that pycharm is too heavy for my small baby pc
i'll go vscode
yea
vscode is better
pyccharm is better for debugging
has some good buiilt in debug features
but its like
eh only for some
it's really cool for debugging
ive been coding in python for my 7th year
i'll trust you them
and i dont use pycharm
i hate pycharm
like ive used it for a year or 21
yaer or 2*
but sitll i prefer vscode
i used pycharm for couple months, it's cool but i've always used vsCode for JS for like 3 years
okay then, you can go for the ccna (networking) and cyberops (security), that sounds similar to the classic Net+/Sec+ but same value
learning pentesting on the side is always a good thing, and i highly recommend that you build a portfolio of security projects
i need help
with
i saw srhoe tutorial he copies image and paste it into grabify and send it to victim if he clicks he gets his ip info but if i copy image and try to paste into grabify its empty i mean its not working
show the video?
like send link
yes bro i saw the video but its not working
got it, yeah i should go for CCNA + cyberops, i have a couple of months to do the exams
no show me the video
send the link here
this is the vdo of srhoe
once you check it out bro
hes not embedding the actual image with an IP logger
he is copying the link to the image
and pasting that image link into grabify
then sending the grabify-made link
he sends the link dude
Any ideas on how to manuevr on Aviator?
he literally says "then i toggled smart logger, then i hit copy" on the copy button next to the "New URL" option
which has the grabify link/u93hr whatever
goodluck then, you might wanna check professor messer course on Net+ (N10-009) and Sec+ (SY0-701), on youtube
each would help you on each (net+ for ccna, and sec+ for cyberops)
there is no way to embed an IP logger into an image so that when you send the image it logs their IP if they open it, that is not possible
can we use stegnography method ??
rewatch the video, you can see him paste the link to the image, not the image itself, then clicking generate on grabify
alright, thank you so much 🫡
no, just because you put an IP logger link inside of an image via steganography, doesnt mean that ip logger link will open when the image is opened
thats not how it works
yea something will have to open the link, needs a bug or some way
ohkk bro thanks
Using just an image, nothing can be really executed because images are not executables…. Which is correct!
So there have been no instances where an image or attachment wasn’t used to execute a payload? Yes there are, also with images (using a diff technique)
Few years ago there was an attack going around known as MetaMorph attack which utilised SVG image within an HTML attachment which was used to direct users to a phishing site!
Also it obfuscated the link by adding another layer of <meta> tags in the HTML attachment to hide it from link analysis
Now there was another version of this where the payload was not in the HTML, but rather in the image itself (svg image), which redirected users to bad URL, and it bypassed almost all kinds of detections.
So technically speaking, on a surface level no, but if you use various things with images and form a proper way to execute it then yes it is possible
Hey guys I have an issue for a while now I haven't been able to access the "mittre attack" website
What is the error code
maybe check the status of it?
u gonna lose all ur money
btw
Im talking about insiders and all tha shit
You are going to lose all your money with it, if that is your expectation
Any advice/tool when preparing for CEH?
ur not gonna find anyone here thats involved in that lol
Certainly none that would not be out to scam you
But kudos for the bravery to show up as some rando and expecting "insider info"
yeah
dont do CEH
as an employer thats literally the most useless cert you can have
it doesnt teach much and the company lost itsa rep
joke certification
++
be patient if no ones responding
shoving it in our faces wont get u a solution quicker
Sup, any open questions?
can i someone recommend me any good defensive security books?
jst Google abt it
Hello guys
I need some help please.. I don't know how I got hacked , I changed password few times and I still seen in my activity an unknown device connecting , I signed him out as soon I saw it .. what can I do to secure my account?
could be an issue with the device
get 2FA up
Which of your account
Hey guys,
so I downloaded Ubuntu (Linux) to my usb with Rufus. So im tryna know how to use it but not deleting any of my windows data so everytime I plug in the usb i can use linux and if I want to use windows I take it out or something like that? I have two usbs one with nothing and one with Ubuntu
That's not defensive enough
???
long password and 2fa
and not using infected devices
you flash it with the iso and persistent
persistence
to add your own partition within the usb
They might have hacked his email
good choice making a live os tho
who wants help or understand something in cybersecurity
he said he changed passwords
literally no one
see now idk what nun of that means i lwk follwed a tut js to download to the usb nd i dont rlly know what to do now
dw
I use it daily
good
my main os runs on a usb
I handle grey ish data and it’s easy to just snap the stick in half and buy a new one
hides anything incriminating permanently
also don’t use Ubuntu
sure it’s a beginner os but it’s meh in terms of privacy
is spyware just like windows
sure not to the same extent but still yuck
what you recommend for like a beginner but still good ?
arch
popOS?
look it’s not has hard as others make it look
but honestly if u need help deciding
Check my long ass and the only Linux guide
pre last pin on this channel
Can’t you opt out out of this ?
jump to that message
ya
@rare goblet Google gmail
that’s why I said not to the same extent
beware of him
he might be a bot
atleast acts like most bots do in our server
alr so one more time sorry so after I got arch nd everything on the usb what i do
dw!! you’re learning
if something it’s more frustrating for you than for me
in rufus select persistent, the slider
allocate as much memory as you want it to have
stick the arch iso int the file thing
and change motherboard type or whatever there will be
from MBR to GPT
UEFI (Non csm) it should be
atleast if you’re computer uses uefi
And is made in the past idk
10 years or so
I’ll gladly walk thru it just kinda running late to a concert rn
alr lmk
Not everyone is man manners please
I have been doing this for years
This are some steps to help you secure your account man
Ok1. Go to Google’s Security Checkup
Open this page:myaccount.google.com/security-checkup
(Just type it into your browser.)
This lets you review compromised items quickly.
2. Immediately secure your Google password
Change it again, but make sure it’s completely new:
At least 14 characters
Not similar to old passwords
Not reused anywhere else
Ideally generated by a password manager
After changing it: Don’t save it in your browser unless it’s your own, trusted device
Don’t tell it to anyone
Make sure you typed it on a clean, safe device (see Step 7)
3. Turn on 2-Step Verification (2FA)
This is the most important step.
- Go to: myaccount.google.com/security
- Under "Signing in to Google" → choose 2-Step Verification
- Turn it on using:
Authenticator app (best option)
Or SMS (OK, but weaker)
Once 2FA is on, no one can log in even if they know your password. - Sign out of ALL devices
Go to: myaccount.google.com/device-activity
Then: Click “Sign out of all devices” (or manually sign out each one)
Don’t worry—they won’t be able to get back in if you changed password + enabled 2FA This is crucial because old sessions can stay active. - Remove suspicious apps
Google lets apps stay connected even without your password.
Go to:myaccount.google.com/security → Third-party apps with account access
Remove everything you don’t recognize
Remove anything old you don’t need anymore
This is where hackers often stay hidden. - Check recovery info for tampering
Go to: myaccount.google.com/security → Ways we can verify it’s you
Check: - Recovery phone
- Recovery email
Backup codes (regenerate if unsure)
Security questions (if you have them)
Make sure everything is yours.
Hackers sometimes add THEIR recovery email so they can get back in.
- Check your devices for malware
Sometimes the account is fine, but the hacker got your password from your device.
Please do this:
🔹 On Android:
Remove any apps you don’t recognize
Check for apps with administrator permissions: Settings → Security → Device Admin Apps
(Disable suspicious ones)
Run a malware scan (Google Play Protect → Scan)
🔹 On Windows computer:
Update Windows
Run Windows Security (built-in antivirus)
Optionally run Malwarebytes (free)
🔹 On iPhone:
Usually safe unless jailbroken. - Turn off “Less secure app access”
(Some old apps allow logins without 2FA.)
Go to: myaccount.google.com/security → Less secure app access
Make sure it’s OFF. - After all this — change the password one last time
This ensures no compromised session still knows it.
Hey guys, So I’d been tryna boot up my Virtualbox but when I press start is says kernel driver not installed (rc=1908) Any solutions? Thank you 🙏🏽
Sorry my bad
@rare goblet thanks bro . I've done all of that and still I saw a device connecting... How can he connect again if I did all of that ? I'm reinstalling window on the computer now .. and I'm so paranoid, I'm locking at the activity every 2 min 🫠
If you're on macOS
This is the most common place this error happens.
- Allow the VirtualBox kernel extension
macOS blocks third-party system extensions by default. - Go to System Settings → Privacy & Security
- Scroll down and look for "System software from Oracle America, Inc. was blocked"
- Click Allow
- Restart your Mac
- Open VirtualBox again and try Start
If you don’t see the message: Try reinstalling VirtualBox → then check Privacy again.
I’m on windows
Okay try this then
- Reinstall VirtualBox as Administrator
Right-click the installer → Run as administrator - Make sure Hyper-V is disable
VirtualBox can’t run if Hyper-V is active.
Run this in CMD (as admin):
bcdedit /set hypervisorlaunchtype off
Then reboot.
Disable these in Windows Features:
Hyper-V
Virtual Machine Platform
Windows Hypervisor Platform
WSL2 (if not needed)
Okay Thank you
How is that even possible
But, I installed it through kali terminal
Run this sudo apt update
sudo apt install linux-headers-$(uname -r)
It said package Linux headers not installed
Then I tried sudo apt install Linux headers (unable to locate package Linux/ package headers)
Then try this:sudo apt install linux-headers-amd64
Okay
@rare goblet yeah that's why I'm here . I'm confused.. last thing is the computer
@rare goblet it worked. what’s the next step?
Hi guys
Hi
#📜・rules 3
We are not going to help you with this, sorry
You will however now receive DMs from people who are trying to scam you
Oh ok thank you
Afternoon everybody. Can someone direct me to info on establishing a number for my business in another country?
What "number" are you thinking here?
Like an international number that connects with my cell
Any suggestions
There is no "international number", they are all region specific
Cool. So if I have customers like in Europe, my provider should give me access of I contacted them on their business line
Yo guys, been awhile since i asked here something.
I was wondering how you can increase the impact of a host header injection redirect. Ik web cache poisoning is one, but is there any other techniques
Is it possible that you do not know how telephone numbers work? You can call each and every registered number from each and every regional number
😂 I think I'm asking incorrectly. I just need a European cell# that forwards calls to my cell
Pls I need a vendor that I can buy a flashing software that can flash China available balance pls
Not helping with it #📜・rules
We gotta take these request minus the sob story part and see whether, if we were lied to, this sounds like something we should help with. It's always a friend or sibling or child or cat or pony..
Btw beware of scammers sending you DMs now
I'm really sorry guys if I'll be breaking your rule in this discord, i only believe that this discord is my last hope, I'm from a country called Tanzania (united Republic of Tanzania). We have been in an internet blackout for the past 6 days following an unfairly and forced election which was set on a date 29th October 2025, upon to not accept such kind of unfairly election people especially young people protested, but a lot of those young people were shot and killed by the police forces and hired mercenaries from neighboruring country (Uganda) under the leadership of Tanzania present (samia suluhu hasani) who was also competing for this election.(Her leadership has been filled with corruption, abduction and force disappearance of people, attacking church leaders and closing churches, censorship of medias and even opening false cases against opposition leaders), but what really pains me is number of young they have shot and killed (1,000+), so i came here to ask you guys to help do something about this... All of you who love human rights, democracy, freedom 🙏🏾🙏🏾🙏🏾 if you can do something it will be helpful.
there is nothing that a cyber security focused discord server can or will do about it
protest, and keep protesting until you eventually overthrow your government and host the next election on Discord lol, thats what the people of Nepal did
You can share to other people who maybe be able to help with anything
They actually shoot to kill when you protest and alot of young people have been killed
with all due respect to any lost ones during the conflict, this is not something that many experienced people would care about
any professionals wouldnt hack anything without permission, and any blackhats with experience wouldnt care to hack anything, considering they most likely do not care about you or your problems
Sorry I was off
same thing happened with Nepal, its tough shit unfortunately
So next thing is to
It’s ok
sudo dpkg-reconfigure virtualbox-dkms
sudo modprobe vboxdrv
@spare pilot even if a group of professional "hackers" decided to join bands and help your country, what exactly would you expect them to do? because i can guarantee you 90% of the things you want them to do that you think will make a difference, wont
Okay I’ll be making my way to the library soon I’ll get it done
Just let me know so I help you finish the process
Okay
i wouldn't expect any kind of hacks to make a difference in this situation though
Give me a minute lemme check out something and get back to you
ukraine is a lot bigger country than tanzania
furthermore, russia was doing it right back to them
there is a big difference between a physical/cyber war, and a corrupt government treating their people like shit
I understand, but it will show them that there are people who care about human rights
i think the 1000+ teens that have been shot, show that enough
hacking a database and dumping it would be literally nothing to a corrupt government
"oh you leaked info about our corruption? yeah i mean, we've been doing that, who cares, oops sorry"
(then go back to the same corruption they was originally doing)
Wait lemme understand something are you asking us to help you hacked a government database
no
he wants any "hacker" here, to "do something" about their corrupt government shooting protestors in his country
unfortunately attacks like that are going to at worst cause some logistical issues. not going to stop massacres
"something" to help
meanwhile unfortunately there isnt much that anyone would even bother to do, to help
this
yeah i mean they're APTs, thats not the subject here but i understand
Make the world know what's going on.
report it to the news dawg
they have outreach, random hackers dont have outreach, they have outreach to threat intel companies and security reseachers
nobody (apart from idiots that think the "Anonymous" twitter accounts actually do anything), will care about some tanzanian government site got hacked just to put some light on your countries issue
there was a guy that came in here from Nepal that said basically the exact same thing as you
you should contact foreign media / press orgs, especially if you have evidence of atrocities
"we have a corrupt government they are shooting protestors, please hack something and put some light on our problems"
nobody cares enough to do anything, and nobody will commit cybercrime just to put light on your countries state
problem is really that even for someone that does care, there's nothing an individual can do that will stop it
hacktivism is basically dead at this point, SiegedSec was the last group i saw actually causing impact
exactly, as i said before, hacking a corrupt government to expose corrupt government lies, is not going to make them change how they are handling the situation
meh there’s more
you just don’t see much on the news
yeah
tbh the whole anonymous france situation
recently has been taking up my tl so
hilarious though
Alright then
Start with Tryhackme.
#👥・new-member-guide
i am learning linux fundamentals right now should i write notes too like a hardcopy ?cuz i forget easily
I would suggest you do. For me writing notes down helps a lot. You should try and write notes in your own words, instead of copying down whatever it is you are learning from. It shows better understanding of the topic and helps you remember better
should i write the cmds with some description too ?
like a separate place for cmds and other concepts at a separate place ?
Wdym
like should i write cmds at a separate place like only cmds and other concepts about linux etc in separate notes like place
I just have a table for the commands and do bullet points
Bullet points wherever I have space ig
Either above or below the table, or sometimes on the next page
Just do whatever works best for you, there is no one method for note taking. Everyone is different
alr ty will tryna make my own notes 🧑🍳
could i get a sneak peak of your notes tho 
Yo real help me question but does anyone know what kind of CTF challenges these are??
- Essential Security Principles
- Basic Network Setup and Security
- Endpoint Security Concepts
- Vulnerability Assessment and Risk Management
💀 😭
And yes, I am old school. I use a pen and paper
so what others use ? sketches ?
also many ppl say that writing blogs is also better or write ups tho idk am just starting
People now often use iPads or laptops

Idk, I am just a beginner but I haven’t done that
But ig writing more about a topic can only help you remember and understand it
yea ig , from where u learning ?
I have recently started on tryhackme
There are a lot of good resources you can find on this server tho. #👥・new-member-guide #💕・free-resources etc
u got the premium or u doing free rooms ?
Anyways it’s getting late I gotta head to bed 😭
Its fine. They have a ton of free rooms
And if you have money, getting a tiny computer to use as a testlab server is well spent
Gn
Gn
cant we use vm just
Would still be using VMs.
But its much easier to work on them separately from your own machine, because you can dedicate resources to it, and not have to fight with your current resources (imagine powering down your testlab because you want to play a game)
i see i have a long way for it ig 
Also, if this is your main question
You can do whatever it takes to get you started.
The best way to learn will be by using it though. I started with having a separate linux laptop, and a gaming windows desktop. Eventually, I got sick of windows. But the commands, like any language, you will only really use by practicing and using it.
https://overthewire.org/wargames/bandit/
Some resources like this, help with it, by getting you to practice and learn over SSH that you can do from any computer(windows/mac/linux all support SSH out the box now-adays)
i did this like lvl 20 like i learned and did but also i think like if i try to remember what cmds i used i think i might miss some of the cmds
Then understanding that what you are working with is:
- A shell (usually
bash, but could besh,fish,zsh, or many others) - Shell Scripts (Commands chained together, with additional logic to make automating applications easier)
- Compiled applications
yeah will learn bash scripting and powershell scripting too after linux and networking ig
but i don't know where to start from for networking , so i get complete understanding on networking
Cisco's Network Academy has a intro to networking course that is amazing.
Cisco's Packet Tracer is a really nice tool that lets you visualize and learn network concepts.
VMs are great at practicing "most" network concepts overall
alr ty for the recommendation after completing os fundamental will jump to it
we don’t do dm solicitation neither really have people for hire !
the experts in here will not dm you, most likely only scammers
Hey
Speak for yourself
Use "i" Not "we" i have 4 Dms already
yeah, from scammers lol
if it’s from this server, as in
I posted my progress on my hack 100 challenge but I didn’t see an update on my thread and I received a message from @scenic wyvern that I shouldn’t send the same message over and over again while I don’t see what I posted. I want know if it good for me to try and post back or I should leave it
it’s not just about the expert role that anyone can equip
it’s about having one of the roles that prove their experience or trust, such as trustee, hacker rank, or something of that sort
that is given personally to people
Strictly for USA lol
I feel your pain bro
his pain? you think he’s jealous? lol
And what is that exactly?
If I try to post back can I be banned or any of such a sanction
Good day everyone I would love to be a hacker please who would be my mentor?
no one
experts won’t mentor you, however scammers will now prolly dm u
Why can't u since it seems u are 1
start with choosing what u want to do like red team or blue team u can see this #👥・new-member-guide ,maybe u should have kept your job and learn it sideways tho its not late ig hope u achieve something
Not sure if im using the right words but i want to be able to access whatever the php script provides (i have a php script for a casino platform) i got no experience in thid and AI is not helping
I neef help with my php scripy please
Probably because there are very few people willing to burn the very limited time they have on this floating dirtball on people they don’t know like at all? You’d think that was common sense…
But fact still remains no 1 get 2 where they are by themselves u definitely got help getting they ,we raise by lefting other ,even if u don't know someone still does not mean u shouldn't help them
You can though, there’s this funny thing called the internet where people share neat information that could help others. I believe using it and learning how to do what you want to do is called self study? Might be wrong there but I’m sure someone will come around to correct me if I am.
Expecting people to go out of their way to teach you won’t get you anywhere.
Not expecting any 1 to teach me or go out of they way to ,some 1 to guide me
Not doing a very good job of convincing anyone with this being the start of this chat… Just saying
Am sorry if I offended anyone with my massage
Head to Tryhackme and start with their intro course. Sololearn > Spoon Feeding. Once you have basics down your questions will carry more context
@steady palm thanks
Trying to be a hacker. Where should I start from. Where will I locate the resources here
cybersecurity majorly depends on self teaching
You are extremely unlikely to find someone just willing to spend their time for pretty much no reason
from the goodness of their heart or whatever
I did kinda say that…
Hi
Help! My remote debug does not work! xD
in short;
java project using maven; working on CentOS 9 in virtualBox; working, listening port; waiting for remote debug
VirtualBox set for portforwarding, I can see it open.
on windows - IDE Idea IntelliJ - remote listening port.
Java version major/minor matches
any ideas?
(fall on timeout; java.netConnectException)
hello everyone. i want to learn networking. who can help ?
is this academy subscription based please?
maybe take a look
ok thanks
Does someone has anything else for learning python like a roadmap? e.g. https://roadmap.sh/python
Some ressources in courses I find a bit difficult to follow
Sololearn has a free python course! Their testing environment might be paid but you don’t need that, you can code locally
Hello guys, what’s the best digital footprint removal service and best security software for phones and laptops?! Please and thanks
again what is the best software for phone tracking or loved ones in cases of theft or abduction?
The find my app for ios 🤷♂️
ii am in search of one for windows
You can access find my on windows through a web browser
ok. but i was asking if theres any specific app that could do just that
It’s not an app on windows but it does the job anyway, don’t see what the problem is
ok thanks
I feel so overwhelmed by the input, I already got basics but it's not enough for building for example a log analyzer, even for leetcode I am missing few things all the time and take forever.
Should I maybe just focus on building the log analyzer, helping with chatgpt, documentations etc but studying every line of course, or should I focus on leetcode even if it's not really security related?
How did you learn?
Okay tbh, I never did leetcode!
Not saying that doing leetcode is not good, it is nice way of learning.... But my focus was more on projects! During the time when I was learning Python, there were no AIs, so I had to go through articles and documentations.
Also during that time, Sololearn had a "Python core" course, which they removed right now which was beginner to advance Python (it was free during my time), and now they removed it which I felt little off about!
So ya, my way of learning a language is to atleast cover it till intermediate and then build self projects through what we know and projects like which require you to learn more....
watch the 6 hour python tutorial from Mosh on youtube
I have seen some on datacamp but that platform is just not really great tbh. There is also freecodecamp which was quite nice. Maybe I should really stick to one full course / video whatever from very basic to more intermediate.
Coding is also work, it is not all about fun and so on. It is still a real hard job.
No problem with that my friend, just whole lot of stuff everywhere
find my windows
microsoft offers it officially
you register a device and it enables gps tracking on it if available
you have to set it up on the device you want to track beforehand though obviously
this intel really cool. thanks. i have been a lookout seeking ways one can be equipped for such situations and effectively handle them
yaya ofc
or just code your own tracker
if you have certain requirements like calling the police quickly
or being notified by idk
speed of vehicle
or well speed of device in that case
i am a beginner in this IT stuff. A guide would do a great deal of good for me yk
Has anyone used Qubes for their primary hacking computer? Is connections routed through tor on Qubes like it is with Tails?
You need to enable Whonix gateway
And then use the other whonix thing (I forgot the name lol)
You make for every different task a new qube.
Like that you isolate everything
Make sure to check out the QubesOS docs. You will need to read them, to understand the OS fully and how to use it‘s features.
Ok I was curious about exactly that basically cuz almost everything you’d want to download or use to do any work you need to do will need some type of connection for at least the downloading aspect if not the actual using aspect of it and tails being a portable self-deleting OS didn’t give me much of a confident feeling towards using it for that shit lol otherwise I would’ve just changed back and forth connections on tails to make it work I’d rather do it on Qubes and whonix seeing as it’s meant for long use and not just a quick need-to-search-anonymously scenario like tails serves
So that settles it tho I just gotta disable and reenable Qubes when doing any downloading shit because the system does not like allowing for connections to download GitHubs and whatnot for some reason lmao I could also just transfer it via usb I suppose too but idk
Look QubesOS itself routes through your normal ethernet without TOR. But when enabling Whonix and using it properly your ethernet will go through TOR. So make sure to read the docs of Qubes and Whonix.
Else you will do everything wrong lol.
I meant disable and reenable whonix not Qubes btw my bad lmfao
Yea I did I read most of it already I’m about to switch tonight I just wasn’t sure if whonix was the thing that does the rerouting or if whonix was just a vpn, I looked at Qubes documentation but not whonix yet I wasn’t sure what whonix did but I did know that you can use Qubes without it which is why I was still lacking some knowledge
That right there is essentially why tails is not convenient for this stuff haha you’d actually have to use the console to reroute the connections yourself kinda lame and annoying but I guess some people wouldn’t have a problem with that haha thank you for the insight
Open firewall, check port and start your program right
How can we help?
yes
and its not good
ive played around with it but i prefer to use other distros for any actual "hacking" or whatever u wanna call it
Is there scam recovery that can be done and pay after the money has been recovered,
Yea the tor connection gets in the way of a lot of potential but if whonix is easily toggled on and off I guess it can’t be the worst situation to go with
both whonix (as an os asw) and qubes are horrible for doing anything hacking wise
just like tails
i tried using tails once but youre not gnna be ableto carry an op on it
itll be way too cvomplicated
for absolutely no reason
not hard, just complicated for no reason
too many steps
it wasnt made for cybercriminals
it was made for journalists
to write one or two documents and post them into the internet void, yeah perfect
has encryption (even tho ideally you should snap the usb stick in half, atleast i do so)
Yea if you’re in an actual situation where you can be raided that’s the thing you’d want to use
but for actually installing tools, doing reconnaisance and doing post exploitation
its ass
like even if u get raided
u dont need tails
a lot of other oses work
Yea but if u get raided and they go thru ur computer ur done the case is built against u wouldn’t it be haha
Like I’m not really doing things where I have enough comfort to leave a single trace on my system that’s the thing
no
they can avoid encryption
very often
it’s best to physically destroy
stick it in a microwave, snap it in half
throw out of the window for example
It deletes itself when the system is shut down
Like there’s no reason to even break it 🤣
learn about digital forensics..
it does not ;)
when a file is deleted off a storage medium, the info is not deleted
Can I see proof tho more than just ur word and a picture of our conversation of discord with a different font lol
only the pointer to the file, waiting to be overwritten
Wdym don’t
Font
that wasn’t to show you my experience lol
that was to show the message wasn’t sent
The whole operating system is on the usb stick bro there might be digital forensics that the system has ran tails before but like there’s no proof of what was done on the tails
don’t have the intention of snitching on myself further than I have
no
on the usb
forensics inside the usb stick
as well as ram can hold some cache that didn’t entirely get destroyed
What would you snitch on yourself about when talking in an educational sense haha
Are you connected to your home network right now because if you are I don’t really wanna hear any opsec strategies 😂
why? thats irrelevant
opsec depends on the threat model
because you asked for proof of something
idk I’m confused myself
U didn’t really say anything besides an edgy “nothing is secret ;)” style type of response like you got the hidden military-secrets or somethin talkin bout digital forensics being a thing but like these operating systems literally are built to fight around that yes there will be little traces somewhat but nothing critical that should get you caught up, as far as I’ve been educated on by the internet, other than your argument which hasn’t had any impact to change my mind so far
I mean VPNs are good and all but will they truly hide you if the government knocked?
No, they won’t.
There is not
mullvad would
they have a strict no log policy
you can literally pay with physical money
Most vpn services break to LE and hand over everything once they are pressed there’s only the ones that you have to take their word for that they literally don’t even log anything at all and u only have their word for it
Or use your own
But there’s a million ways to get caught still I mean, what email did you use to register with the vpn? I highly doubt everyone who uses vpns registered with a dump email over the tor network that they made in some public networks and only access from different networks so literally WHAT is the point of the vpn if you’re just going to bring it to your home network?
they won’t
not entirely
no
that was to forensics
you didn’t account for them
sorry it rubbed off on u as me being edgy or whatever Idrc but like it’s the
truth
opsec is way bigger
and ofc, more than a vpn
but I’m saying, for ops tails is useless
even without persistence
forensic experts are able to retrieve info
from the usb stick
so yes, snapping it in half or putting in the microwave is your best bet
over just unplugging
which is not enough
tor is not save first of all
second of all mullvad doesn’t take phone neither email for registering
For real tho no matter how much assurance I’m given about anonymity and secrecy I’m blowing any system/device/appliance/electronic to smitherines if I feel a raid coming tho lol I’ll give you that 🤣
Safe from LE or safe from bad guys? I think it’s safe from LE but definitely not from bad guys
But I always go with one rule on the dark web and surface web, discomfort and distrust is the best antivirus, if you still get tricked or spoofed idk people are smart and tricky but that’s on the user for not taking their life seriously man like I be genuinely tweaking thinking about the possibilities of the cyber world knowing how dangerous it really is
LE has the ability to attempt to like, target a database on tor network from what it seems like (websites basically, not really anything other than website databases on there) and that’s how they find users conducting work through tor pretty much the only way they can unless you’re being separately investigated irl and not over the internet and they just happen to see tor connections in your network and find a whole hidden career on you 😂
hello, i have a whitebox test and i want to find to find the root. port 22 is open
That's all you have?
also have source code
So you are sitting in the network and are looking at an open ssh port and have nothing else to go on?
Can i message you?
Please don't
Look for hard coded passwords in the source
cant find any
Well then having source code would imply there's some sort of app interface and youre not just working with ssh to go on. Id be looking for some type of exploit in the code.
which other platform can I use excluding tryhackme
hack the box
Guys I bought mac book air m4 16 gb/512 gb
Hack the box, over the wire, hack this site.org, portswigger academy, pwn college, to name a few.
Hack the box and portswigger are my personal 2 favs
Question from me.
I need tools and methods to help me learn more about a website. Specifically, at what intervals does it have the most traffic, where do they have their adds and what kind of marketing does the website have, how often do they post. I am asking because I just found out about this Uni project and I suspect the top searches of google are not the best tools. I appreciate any help.
are they free
Please I want to download online Germany bank anyone with idea. Thanks
what do you mean
I found a prototype pollution in a bounty target due to vulnerable jquery usage. Im new to this vulnerability and just read the cve report on hackerone and tested the poc for it in console of the site. Now my question is how tf do i report? Sure i cant just tell them that yo site is vulnerable to prototype pollution run these two commands in the console of your site and devMode: true will be global accessible
I cant decide if id go with cybersec (SOC Analyst) or a developer 😭😭
r u that guy?
that was like going back and forth between MacBook or gaming laptop
clarify
you can’t just download a bank
Yes 😭
Would love to hear if anyone is educated on this ….
Idk I feel nice it’s so sleek tbh just thinking that 16 gb should be enough for machine learning and and all the cyber security stuff
good luck
What?
I need name of any Germany iban, online banking? I want to download the app. 🙏
I need name of any Germany iban, online banking? I want to download the app. 🙏
Only use official Apps from your official Banks
Third party banking apps 99% of the time just steal your info
Could you shed some light on what exactly you want to do? I mean that is easily found per a search engine
well yeah
with Apple, yes
It requires significantly less ram
VMs are VMs and require the same amount of RAM though if learning that way
With 16 gb ram and 512 gb storage I would consider my machine "broken" 😉
yes but macOS
Uses way less
Not the VMs ofc
Although some are optimized
Some are some aren't. Some have free and paid features. Consider it your hacker challenge to find out.
Yep. So if its not practicing VMs, then 16GB is enough on a Mac.
if practicing with VMs if only using hypervisors especially
and stripping down VMs
it’s more than enough for many simultaneous actions too
probably around 20 512MB RAM VMs + a web browser would work fine.
But I assume if starting out/learning, they won't know how to get it down to that yet 😉
Hope you dont have to emulate an AD lab on that
Naw, I use Dockur for that
and does it work with x64 machines on arm architecture?
I don't use a Mac 😛
It would need access to /dev/kvm, so i assume it wouldn't work through the compatability layer.
well, spectrum will cross that bridge when they get there, I guess
yeah ofc
that’s the point
but if just doing tryhackme labs, and a local ollama, then a mac is fine
im still a fan of "get a mini-pc, then whatever computer is convenient as your main/laptop", then just run proxmox on the mini-pc
And because proxmox supports virtualization-passthrough, can still use dockur to have a nested AD lab in a VM 
If I have let’s say password and username to a sql database. But I already have done an sqlmap on that database and already have taken info. Is it needed?
depends on your final intention
To gather as many vulnerabilities as possible
then why are you focusing on one
go find other non sql vulns lol
theres a lot that exist that u can test for yk
I have but I’m trying to find root. The only way is port 22 SSH. Do you know anyway besides brute force
into ssh?
none
?????
you literally just said youre trying to gather as many vulns as possible
decide..?
I am but I’m gathering everything I can
okay whatever
theres no way to hack into rather recent versions of ssh
without a pass
at all
theres just not much ground to exploit on
none, even
It’s not recent. This is my test vm
From my professor
Made to be exploited
I know for a fact it can be exploited cause it’s been done by people in my class
Maybe you know how?
Without any more leads hitherto unnamed, you are not going to get into a properly secured ssh
have you tried to connect to it? Is it expecting a keyfile?
It’s not properly secured. It’s a VM made to be hacked. The port is open
also ur barelky giving us any info
port open does not mean port is meant to be hacked
What info do you guys need?
also
were not the ones supposeed to be doing the assignement..
last time i checked
I know but he gave us a hint and said that’s they way to gain root
😂😂 sorry
Just very frustrated
"Did you try to connect and is it asking for a keyfile?"
Dirbbuster
As in how?
dirbuster for an ssh server?
I don’t remember the parameter exactly but gave me sv and ports
Your prof might not be very good, if you are asking how to connect via ssh
Yes
so not a keyfile
English is not my first language sorry
No
do the scan again
You can brute force it
and tell us what you used
@whole patio imo he just didnt do a full port scan or whatever lol
and theres more services running
seclists and rockyou
quite possible
I know I tried. But it takes too long to brute force it
then its not bruteforcable
bingo
then you messed up recon probably
id ask you for the machine so i can play aorund and figure out what it is that yourem issing but pretty sure itd be illegal for me to poke around in it without being a student
but good luck
Nmap -p- -T4 -sV <IP ADRESS>