#👥・help-me

1 messages · Page 107 of 1

river wraith
#

It could be a tampermonkey script

rocky sky
#

Thank you so much. It’s more like a logger situation. I hope the back up will not carry the malware to my iCloud or other devices

stoic condor
hazy olive
#

Off topic just curious

stoic condor
hazy olive
#

More like a texting app to use

#

Other than the messenger

deft violet
#

Set up a linux vm and connect via openvpn

hollow rune
#

helppp tasukete

past elbow
gentle yew
#

Guys currently I'm working as an application engineer for about 2 years now and the tech stack I'm working with is unqork, it's a low code tool and I want to switch to cybersecurity, what's the best place I can start at? And honestly I want to get started at it as soon as I can(kinda in a dire financial situation right now) what's the best role I can start with? Which I can start learning and can get to practical and can I start as a freelance please can anyone help me on this?

lethal snow
#

#👥・help-me Hi guys. Please can anyone suggest legit survey sites that pays well in dollars. I'm ready to learn and would really appreciate a mentor. Thank you. NOTE: I'm in West Africa.

warm anchor
#

gng a university here offers bachelor of of science in criminology specializing in cyber security

warm anchor
chilly merlin
chilly merlin
#

It would really really increase your chances to come in. Absolutely.

chilly merlin
#

No worries, and even if you change your mind going into law, that degree will really be worth it.

torpid light
#

How can I get past a samsung from verify locked phone??

#

Without pc

zenith sage
#

My friend this is a computer related server, it's only natural that you won't find a job here, instead just try to get outside in real life and try to communicate with real people, online jobs are something you do when you already have a stable job and looking for more income, so just try to rise on your feet and do what you should do

dawn salmon
#

can anyone help me? i think my pc has been hacked my personal accounts got open on different places can anyone help me to see if someone is still got access to my pc pls

oblique hearth
oblique hearth
lunar void
#

hello guys for everyone doing the 100 days hallenge: is it that we need to create a new thread each day or do we post under the first thread just changing the title to the current day?

river wraith
#

Who can make a script for a flappy bird clone to auto play

#

If I send the js and html

stoic condor
lavish fractal
#

pls am struggling to completing offensive security on tryhackme
I don't have connections issues but I don't know if it is the browser
any help pls

slow edge
lavish fractal
#

it is not running on my system and phone

#

I also use VPN but it still not running

celest coral
#

Pls who has a link for website testing.

slow edge
# lavish fractal it is not running on my system and phone

Okay so what I understood is:

  • There are no connection issues
  • VPN is not working as well

So what exactly happens? Walk me through the situation, can you start the machine? if not then what happens? I am trying to understand it more.... Is the whole room free (I suppose not)

slow edge
celest coral
#

I want to learn web pentesting

slow edge
celest coral
#

Thanks

lavish fractal
slow edge
lavish fractal
#

link pls

slow edge
#

My old acc had that, but you can google THM discord and it will be right there

stray cliff
#

hey coco

pseudo fulcrum
#

Hey guys. I'm interested in making a project. Similiar to odds jam / dark horse

stray cliff
#

whats that

#

which sector you are?

spiral notch
#

with those

pseudo fulcrum
#

I've used them yeah

spiral notch
#

it’s really complex

#

like really really complex

#

it’s the same as playing Fortnite and then wanting to code and create Fortnite completely on your own

wary shard
#

Need help with python

#

I can’t post a photo of what my issue is

crude thorn
#

Guys I seriously wanna get into cybersecurity and computer science. I’m currently studying CSE and I don’t know shit practically. I really wanna build my skills and I’m ready to put in time and effort. Can y’all please help me with a roadmap coz I’m so much confused that i wasted more than a month researching how to start.

wary shard
#

How can I post photo?

crude thorn
molten bane
#

hey, so i have 0 certificates, i was a software engineer, curretly noob in cyber, is CCNA a good first exam towards jobs like SOC analyst? what about CyberOps? (if my question is too dumb i can elaborate)

wary shard
crude thorn
wary shard
#

@crude thorn Yes, I have a script but when I enter command it gives an error but I’m not sure where I got stuck it seems everything is in order. I’m sure it’s something simple but I’m new to this.

unique goblet
marble moat
marble moat
wary shard
#

Yes, can I pm you ?

wary shard
marble moat
#

Or is that not appreciated in this server?

#

I usually like this more so others can tune in and might benefit from the discussion

wary shard
spiral notch
#

Python is simple

spiral notch
soft geyser
#

Hey guys does anyone know an affordable laptop that could get me started

whole patio
vague marten
#

Alright humans... I need a Windows GURU... no level 1 tech stuff, even level 3 tech skills are not capable. We're deep diving. First up, I did a system restore. I'm sure you all know, but doing so, broke my Windows Update. DISM, some dll files, and updates are not matching the WinVer build and my install.wim/my ISO, no longer match either. I need these three files and they need to match my build in order to get WU working again, or at least get me closer. Then, we will tackle bringing my DISM build up to match my WinVer (OS Build 26100.6584).

The dlls I need right now are:

wuaueng2.dll
wuauserv.dll
qmgrprxy.dll


Any help/guidance would be greatly appreciated.

lunar void
#

Hey following up with the 100 days challenge, I already posted a second thread for day 2, I hope that won't be missed that there is another one for day one?

lunar void
dense mortar
#

ROP JOP

lunar void
hollow rune
stone reef
#

Please help resetting my discord password. I deleted the email address however my phone # is still linked

hollow rune
soft geyser
whole patio
soft geyser
timid cape
# molten bane hey, so i have 0 certificates, i was a software engineer, curretly noob in cyber...

what are your concerns regarding the certification? is it credibility, or knowledge and skillset?

if your intention is gaining knowledge and skills, then there's no need to sit for an exam, you can just take the exam objectives as a study curriculum, and you are not required to study everything in the CCNA, just the important networking concepts that you'll need in your job

for credibility and resume boost, i personally opted for Sec+ to get through the HR filter, and now looking to build upon it with SC-200 and CySA+

could you elaborate more on what you are aiming for?

dense mortar
vague marten
# hollow rune Do u have a file backup which for the level u claim to be u should have one. if ...

I never claimed to be any level. I simply stated I need help from a higher level, but I digress. Idk why the "help-me" channel always results in pushback lol.

Yes, there was a backup, but that is where I found the build numbers didn't match. Regardless, the situation is what it is and the only way forward is the deep dive. in-place repair/PC reset is not the way forward here. And it is possible. I'm just struggling with these last few issues and it's critical to get this part right. And... the usual, "just download it" is highly risky. So, I reached out for help from someone who knows more than I do.

hollow rune
hollow rune
dense mortar
hollow rune
vague marten
vague marten
hollow rune
#

Ahh ur right

vague marten
#

We all know how dll downloads go. Any recommended software for dll downloads that can be chosen by versions?

hollow rune
#

Have u Tried re registering it using cmd

#

regsvr32 wuaueng2.dll
regsvr32 wuauserv.dll
regsvr32 qmgrprxy.dll

lavish fractal
hollow rune
vague marten
vague marten
# hollow rune Or wait Use Windows version/build or extract t...

This... So, tried this approach, but what I found is the typical Windows PITA... I extracted from cab, from mui, etc. You see, they don't always ship the files with the correct file names or updated builds for DISM, the dlls, etc. Apparently, these usually come with later build updates. Hence, the loop I'm stuck in.

I tried full extraction, which was tricky on its own because I had to extract the ISO, then extract individual cabs, mui, etc... just to lengthen my scavenger hunt. As I'm sure you know, that's hundreds of thousands of files to millions by the time you're done.

"But just mount it Shaun!"

Oh, duh! Why didn't I think of that... Haha well, I did and you can guess "WINDOWS DOES NOT LIKE YOU TINKERING AROUND SO WE ALSO BROKE YOUR MOUNTING ABILITIES". Of course, I'm dramatizing.

So, I ran to 7zip. I can explore, use search functions, etc, but again, the names are funky (at best).

If I could maybe skip the process and bring my DISM up to match the WinVer, maybe /RestoreHealth would play ball and replace the files.

I did unregister/register/reinstall the various packages/etc, but the mess grows and perms are changed and so on — the problem festers.

I've returned to a state of somewhat stability and no mess currently. So, I came here reaching for another mind to brainstorm with.

hollow rune
dense mortar
vague marten
#

Finding the right DISM was my best thought so far. That's not easy either.

Can't forget "just uninstall updates to bring WinVer down to match the outdated DISM. Well, Windows anti-tinkering bugs said HARD PASS to that option because I can't even uninstall updates thanks to what's broken. 😂

I have provided proper perms for what I have fixed so those things no longer bark at me.

I only have DISM and the three missing files to resolve (hopefully) but I can at least continue diving after this is solved.

Oh... I'm on Windows 11 Pro btw.

dense mortar
vague marten
#

I was thinking the same. I have been frying braincells in these rabbit holes. HEEEEELP 😂

dense mortar
#

💀

unreal dune
#

Hey Seniors and lovely juniors , I have been learning cybersec for 2 year+ and now currently going for security+ exam and preparing.
Can anyone help me to land some internship ?
I am from INDIA , final year B.tech student of AI&DS branch. I want to implement all my learnings and see how different are these real and learnt skills.

dense mortar
#

Idk about india

lusty spade
#

Anyone have beginner friendly CTFs for practice? 👉🏼👈🏼

chilly merlin
lusty spade
elfin remnant
feral lintel
lusty spade
#

Nice nice, I’ll be doing web apps soon too

lusty spade
#

If so, I really learned with it

feral lintel
#

I've dropped the ball a bit on it, but found the setup quite nice 🙂

#

Think they got different ones, too, after bandit

lusty spade
#

Ah yes, that’s when I learned ssh heh

#

Ooo I’ll give those a try too, thanks!

dense mortar
hollow rune
#

@vague marten i got the thing u need i got the fix

dense mortar
vague marten
hollow rune
#

After about an hour of work, I finally managed to get the DLL files on my PC. I realized I didn’t have them either since I’m using a custom OS, so I downloaded the files from UUP Dump. After running a bunch of CMD and PowerShell commands, I was able to create a backup and extract the files successfully. I’m still missing wuauserv.dll, but I’m working on it.

rain knot
hollow rune
#

i couldnt send my lengthy message but wuauser.dll is no longer needed

rain knot
#

hurray!

hollow rune
spiral notch
#

Isn’t that the insane room

chilly merlin
#

Naaaaah😅😅😅

vague marten
chilly merlin
#

Suffering on it rn)))))

stoic condor
woven anvil
#

Im not gonna lie, taking a "custom windows install" that has a bunch of things intentionally removed/destroyed, then trying to fix it back up seems like madness, but good windows practice.

vague marten
#

All I need is to properly place the files once I find the correct ones and bring the critical dependencies up to par to match. However, CMD and PS commands have proven useless as per usual.

vague marten
#

I do have many customized things, but the core of the OS is untouched. After the system restore; DISM, and quite a few dll files were replaced with older build vers

woven anvil
#

There is also a reason though why most self-respecting techs would just wipe and restore the data + apps, rather than try to fix a windows core issue after a system restore.
Biggest is time. Windows is so thicc nowadays that doing fun stuff like "going through the registry to find rogue keys" is a little much

vague marten
stoic condor
vague marten
woven anvil
vague marten
#

I rebuilt my registry already. It was a cascade event which was part of the mess from early days when I started teaching myself icals and such. That was a terrible experience 😂

stoic condor
spiral notch
#

it’s just scuffed

woven anvil
#

technically, thats 2 of the questions, but you need the first to do the second

safe lintel
#

Help for kali linux wifi device setup

stoic condor
stoic condor
safe lintel
#

Realtek

#

Tplibk

chilly merlin
summer fossil
#

Having trouble installing Kali in a VM on Mac says everytime that the software is 14 and not 12 for VM

magic terrace
spiral notch
#

Follow any yt guide

summer fossil
#

All youtube guides are inaccurate

#

@spiral notch when installing vm it says vms cannot operate due to software compatibility

#

Especially for Mac

spiral notch
#

different chips

#

most likely

spiral notch
summer fossil
#

I tried the intel and silicon neither work

magic terrace
summer fossil
#

Download that is

spiral notch
summer fossil
#

M1 M2

#

Either or

spiral notch
#

..what

#

don’t get into cybersecurity without knowing your devices hardware even

#

this field will eat you alive

summer fossil
#

The point is to learn woman

spiral notch
#

stay in learning hardware

#

for now

#

imo

spiral notch
#

glad you get it

summer fossil
#

Info can be acquired through perservation, i dont need to learn each cpu hardware when im only using 1

#

Bye woman ur no help

spiral notch
spiral notch
spiral notch
summer fossil
#

Dont care what it is if ur not helpful next please

spiral notch
#

you’re not getting help with that attitude

#

yes, from another expert either

#

cya

summer fossil
#

Somebody else wont try to belittle when trying to learn either now bye

#

Go on

spiral notch
#

sorry you took it that way lol

#

was literally saying you’re skipping over an important part

#

idk what ur on

summer fossil
#

Its a M2 chip nd didnt u say u werent relevant on Mac anyways

#

Waste of time

spiral notch
#

when did I say I wasn’t relevant on mac lol

lost vapor
spiral notch
#

I’ve used both many times

summer fossil
#

If that was true then give me some tips instead of telling me to learn all different type of hardware

#

I have a fulltime job i aint trying to wate time either

spiral notch
#

didn’t say all

#

I said don’t get into this field

#

if you don’t even know your own hardware

summer fossil
#

Great advice

#

Next

spiral notch
#

You’re trying to skip over important things

#

try learn calculus without knowing addition type

spiral notch
summer fossil
#

With that attitude i have time and effort to put in to learn myself i see your wasting my time still

#

You had to learn somehow, did your teacher or peers tell you that bull? Or help you openly

spiral notch
#

I had no singular teacher

summer fossil
#

Looks like im going to have to as well

spiral notch
#

I leeched information off forums that are by now seized or destroyed

summer fossil
#

Great resources out there im sure u know

spiral notch
#

because I was not looking for legal info initially and tried to skip over important parts to learn illegalities because I was fascinated

#

back then atleast

summer fossil
#

Great, good for you, see ya out there someday ! Good day to you!

#

The greatest thing about this app is that i wanted to see what the community was like, bunch of gatekeepers

spiral notch
#

you too

spiral notch
#

Tf am I gatekeeping

#

advice on how to make ur vm run on a Mac that you don’t even know what components it has?

summer fossil
#

Nun to me you have no good advice to offer me,

spiral notch
#

hm

summer fossil
#

Told you what it has u still in your feelings

summer fossil
#

Told you bye and wished you the best now quit responding to me

spiral notch
#

feelings at Internet pixels LOL

spiral notch
summer fossil
#

You and your possy of gatekeepers can go advise someone else

lost vapor
#

someone's heated

spiral notch
lost vapor
#

jesus christ people are just trying to help you dude

unique void
feral lintel
#

🤷

spiral notch
#

he’s a weird one, used “woman” as if it’s insult

spiral notch
gusty tide
#

Lmao

#

Too many gatekeepers here 😔 😔

final rampart
#

What are the prerequisites to start doing CTFs?

visual moon
final rampart
visual moon
strong stag
#

fffaaaarrrrrkkkkk i think ive been robbed again from some prick on telegram. I know his name and ii spoke to him for over 6 weeks in a investment group he was running and is a moderator for the Broker, But as sooon as i dropped the money and others he hasnt turned on telegram and has not given the main investors any information

#

Is there a way to get him

molten bane
# timid cape what are your concerns regarding the certification? is it credibility, or knowle...

Sorry for the late reply, I got accepted into a Cisco program in my country where they offer training to become a SOC Analyst. It’s not a guaranteed job, but in their words, it “opens doors.”The requirements are having the CCNA and CyberOps certifications, and they offer weekly classes to prepare for those exams.
Since it’s not a guaranteed job, I was wondering if these are the best certifications for a SOC Analyst. I’m currently looking for an entry-level position to gain some experience, but also love to learn anything related to cyber

gusty tide
rugged goblet
#

my problem is auto deleted lmao

deft violet
molten bane
sharp marsh
#

Anyone here will to give me a Google api key

cloud rampart
atomic gull
#

can someone teach me to navigate this website

vague marten
#

I'm back pitches! haha, tell me y'all know the reference? Don't be snowflakes LOL

Update:

Deployment Image Servicing and Management tool
Version: 10.0.26100.5074

Image Version: 10.0.26100.6584

DISM is fixed!! I had to use the gold ole drag and drop after extraction, then run DISM from the extract WIM. Then, ran DISM normally. All is well that ends well.

What did not happen, it did not fix WU so, I'm only that journey now. Going to attempt a direct fix first. If unsuccessful, I will drag and drop to update components, then re-reg. Although, something to note... exe and dll filenames indeed changed, and many dependencies/tag-along files are now obsolete. So, be mindful of this.

Final note... Windows is a DANGEROUS playground. However, when you find your way and learn the hidden dark corners, it really is a beautiful OS. It's a shame Microsoft doesn't allow user full control rather than assuming everyone will nix the entire system (which should also be our right).

#

This little facker right here though:

C:\Windows\System32>net stop usosvc
The Update Orchestrator Service service is stopping......................................
The Update Orchestrator Service service could not be stopped.

Apparently, it's unstoppable lol

foggy vale
#

heyy i was wondering on how to bypass the yt-dlp's antibot system.
im trynna build a personal sync-music streaming app that lets me and my lovely listen to same songs tgthr and im using ytdlp and ffmpeg to pipe the audio from yt servers to my server and then to my app, everything works fine in my local machine but causes error on render. i tried wrapping it in docker and still facing error bcoz my ip address is of render service and yt blocks it. what do i do

vague marten
#

Also, run a VPN.

#

lol

foggy vale
#

damn

#

ill brb

safe lintel
#

Can u help me for getting free worm gpt for kali linux

foggy vale
#

you can try writing a python script to call the gemini or gpt api from the terminal and then play around w the commands.
i did one... i can access it by typing "ai q (question)" for quick answers.
and "ai c" for chat mode

sly spire
#

like hack it? Illegal stuff is forbidden in here

#

@late ferry email snapchat support and send proof that the account is yours, they'll help

fresh oak
vague marten
#

Alright, got nearly every problem solved, but one is stumping me... Anyone know where qmgrprxy.dll is located in the install.wim files?? 7-zip doesn't have the Find icon and F3 isn't bringing up the command line.

rain knot
vague marten
#

I fixed it.

rain knot
#

I like a little bit of messing around in Windows, as well.

rain knot
vague marten
#

I love messing around in Windows. It's highly challenging. I despise the "Reset PC", "In-place repair", and "clean install" about as much as I do "try updating drivers" lol. I absolutely asked it less nicely

Still trying to hunt down qmgrprxy.dll (should be the last remaining issue). Oddly enough, I found qmgr.dll... losts of other dlls somewhat similar, none of them qmgrprxy.dll. DISM is fixed, DISM and SFC are both happy and clean... I have less hair than I started with.

rain knot
#

Whenever I have spare time, I’m back in Windows Internals 1&2 and Windows Security Internals

#

Everyone is always “Linux GOATED!!!” but the reality is that’s not what’s keeping my capabilities at understanding and hunting in the customer environments sharp

#

And I like what you said - it is a beautiful OS, but it is RIFE with peril

#

I’m trying to spend more time in it than I’ve been in macOS or whatever Linux distro because I’ve grown too comfortable in those

vague marten
#

My most palm-sweaty, heart-stopping challenges have been my fully custom ROM I did. To be most specific, unlocking my GPU and RAM -- which I still haven't quite succeeded. CPU... no problem. BIOS, done. Running a custom BIOS now. But that GPU is a force to recon with. I'm going into the HEX next. It has been quite the evasive PITA. already slipped by a few barriers, but the deep ones are difficult.

People are Linux-goated because Linux is just about figuring it out... you're allow to tinker. Windows will straight up brick you (and I have) but I have also unbricked it several times (soft and hard). Revived dead systems, rebuilt REGs/perms/SYS files. Lots

vague marten
#

That's the heart of it really. Windows is garbage soley because of the barracades... well, and the support backed by the mass-fears surrounding any sort of tinkering too deep.

rain knot
vague marten
#

But... when you start making headway and you get things tuned and everything's humming... MY GOD the system is smooth as butter. Linux is the MS-DOS of OS builds.

#

Good luck even getting fully formed sentences out of MS support lol

rain knot
#

Yep. And I have super fond memories of MS-DOS as well, but dealing with everything they’ve implemented to do nothing but increase opacity and maze you, it’s the challenge ultimately.

#

I submit the Byzantine nature of WMI, just as an easy soft example

#

We heard you like rabbit holes, so we put rabbit holes in your rabbit holes so you could….hello? Helloooooo!??? Ah, nope, they’re way too far in now. Welp! May the icacls be ever in their favor!

#

GPU that you’re attacking now, that’s impressive. I barely even want to think about it.

woven anvil
#

even though, people figured that out in the 80s

rain knot
#

(Not for security, lol)

halcyon laurel
#

hey guys im new here i want to learn python what is a good free site to start👋

woven anvil
#

Thats the biggest issue with microsoft. Its not that they didn't make something useable, its that they took only flashy things from other projects, called it their own, and if you needed to do basic things, like pipe information between programs, you were SOL without using their specific API functions to do it

#

instead of just a unix-like standard

rain knot
halcyon laurel
#

is that a site?

vague marten
vague marten
rain knot
woven anvil
halcyon laurel
rain knot
halcyon laurel
woven anvil
# rain knot Spiteful things

well, they put the main power next to the data line without a ground between them. What do they expect to happen.

halcyon laurel
#

do you have other tips

woven anvil
halcyon laurel
rain knot
#

#wink #trustmebrointerferenceisanonissue

remote creek
safe lintel
#

What mean

vague marten
woven anvil
woven anvil
# safe lintel What mean

Don't ask for unethical things here.
Go learn how to host a regular LLM with Ollama or similar

vague marten
rain knot
#

but Apple’s business model has always been baked in, planned obsolescence

safe lintel
#

Unethical where to learn

rain knot
vague marten
#

So, has anyone found qmgrprxy.dll lol

#

I might have the answer... It is possible I'm on a streamlined build. If so, the new Win11 BITS versions dropped the proxy helper DLL. That info is scarce though so confirming is about as difficult as locating the file in the WIM. I'm deducing.

#

I'm now running BITS v7.8 so, it appears they did drop it. I'm thinking this start/stop instability is most certainly Winsock-layer corruption. hmm

#

Don't everyone answer at once lol

woven anvil
#

including their DLLs

#

So I very much doubt you are gonna get a ton of answers

vague marten
#

Who is redistributing?

woven anvil
#

You are looking for a copy of qmgrprxy.dll**?**

vague marten
#

I have the ISO from Microsoft... searching for the dll in their WIM.

#

I never asked anyone for a copy of the file lol

#

I'm trying to either:
A) locate the file
B) confirm my assumptions

#

We're on a fun little scavenger hunt, not a Breaking Bad episode.

woven anvil
vague marten
#

Yes, I have it and dropped it into play. Registers as v7.8. However, I believe I just found the answer. Had to reboot. Running some commands now to confirm if it's finally resolved. If so, I'll advice the findings in case anyone else runs into the issue. Maybe save some Win users from having to reinstall Win lol

rain knot
#

I was sneaking in some work, sorry for being lax in responding

vague marten
#

I see how it is. Choosing work over hair shredding Windows quirks... tisk tisk

#

Looks like I finally cracked the case

#

Need to wait a moment longer to confirm stability and run WU for the absolutely confirmation.

#

Well, BITS started by itself this time... and stayed stable longer, but still stopped on it's own.

vague marten
#

qmgr.dll is fixed. Now the issue reveals another trigger, Event 310 with peerdist.dll (attempting to confirm now).

#

The answer was as I stated, qmgrprxy.dll was dropped from new BITS versions. Now, I just need to bring everything else up to speed. WU has returned, but errors out (at least it's talking now). The error is due to BITS start/stop instability (which I'm currently tracking). Feel free to chime in if anyone has thoughts.

vague marten
#

peerdist.dll was an issue, now disabled, Event 310 resolved. Concluded that it is not the blocker. Now investigating wuauserv and USOsvc as likely suspects.

lunar void
#

hello people, if there is an experienced red teamer reading that, I would highly appreciate any advise for my concern mentioned in #💬・certs
Thank you

molten bane
#

vscode or pycharm for python?

timid cape
molten bane
spiral notch
#

yes

#

it is

spiral notch
#

cscodei s simpler

#

vscode

molten bane
spiral notch
#

and easier to use

#

vscode then

molten bane
#

i'll go vscode

spiral notch
#

yea

#

vscode is better

#

pyccharm is better for debugging

#

has some good buiilt in debug features

#

but its like

#

eh only for some

molten bane
spiral notch
#

ive been coding in python for my 7th year

molten bane
spiral notch
#

i hate pycharm

#

like ive used it for a year or 21

#

yaer or 2*

#

but sitll i prefer vscode

molten bane
#

i used pycharm for couple months, it's cool but i've always used vsCode for JS for like 3 years

timid cape
dapper zenith
#

i need help

chilly merlin
dapper zenith
# chilly merlin with

i saw srhoe tutorial he copies image and paste it into grabify and send it to victim if he clicks he gets his ip info but if i copy image and try to paste into grabify its empty i mean its not working

chilly merlin
#

like send link

dapper zenith
#

yes bro i saw the video but its not working

molten bane
chilly merlin
chilly merlin
#

send the link here

dapper zenith
#

this is the vdo of srhoe

dapper zenith
chilly merlin
#

he is copying the link to the image

#

and pasting that image link into grabify

#

then sending the grabify-made link

dapper zenith
#

he sends image bro

#

not link

chilly merlin
#

he sends the link dude

olive trench
#

Any ideas on how to manuevr on Aviator?

chilly merlin
#

he literally says "then i toggled smart logger, then i hit copy" on the copy button next to the "New URL" option

#

which has the grabify link/u93hr whatever

timid cape
chilly merlin
#

there is no way to embed an IP logger into an image so that when you send the image it logs their IP if they open it, that is not possible

dapper zenith
chilly merlin
#

rewatch the video, you can see him paste the link to the image, not the image itself, then clicking generate on grabify

molten bane
chilly merlin
#

thats not how it works

timid cape
dapper zenith
#

ohkk bro thanks

slow edge
# dapper zenith can we use stegnography method ??

Using just an image, nothing can be really executed because images are not executables…. Which is correct!

So there have been no instances where an image or attachment wasn’t used to execute a payload? Yes there are, also with images (using a diff technique)

Few years ago there was an attack going around known as MetaMorph attack which utilised SVG image within an HTML attachment which was used to direct users to a phishing site!

Also it obfuscated the link by adding another layer of <meta> tags in the HTML attachment to hide it from link analysis

Now there was another version of this where the payload was not in the HTML, but rather in the image itself (svg image), which redirected users to bad URL, and it bypassed almost all kinds of detections.

So technically speaking, on a surface level no, but if you use various things with images and form a proper way to execute it then yes it is possible

unique goblet
#

Hey guys I have an issue for a while now I haven't been able to access the "mittre attack" website

mighty trail
#

Hi!!!

#

I want to learn ablut memecoins and all that can someone help me?

chilly merlin
#

btw

mighty trail
whole patio
odd arch
#

Any advice/tool when preparing for CEH?

chilly merlin
whole patio
#

Certainly none that would not be out to scam you

#

But kudos for the bravery to show up as some rando and expecting "insider info"

spiral notch
#

dont do CEH

#

as an employer thats literally the most useless cert you can have

#

it doesnt teach much and the company lost itsa rep

chilly merlin
#

joke certification

spiral notch
#

be patient if no ones responding

#

shoving it in our faces wont get u a solution quicker

gritty plover
#

Sup, any open questions?

tough hollow
#

can i someone recommend me any good defensive security books?

unborn axle
#

jst Google abt it

wanton river
#

Hello guys

#

I need some help please.. I don't know how I got hacked , I changed password few times and I still seen in my activity an unknown device connecting , I signed him out as soon I saw it .. what can I do to secure my account?

spiral notch
fading nacelle
#

get 2FA up

torpid pagoda
#

Hey guys,
so I downloaded Ubuntu (Linux) to my usb with Rufus. So im tryna know how to use it but not deleting any of my windows data so everytime I plug in the usb i can use linux and if I want to use windows I take it out or something like that? I have two usbs one with nothing and one with Ubuntu

rare goblet
spiral notch
#

long password and 2fa

#

and not using infected devices

spiral notch
#

persistence

#

to add your own partition within the usb

rare goblet
spiral notch
#

good choice making a live os tho

severe owl
#

who wants help or understand something in cybersecurity

spiral notch
spiral notch
torpid pagoda
spiral notch
#

dw

spiral notch
severe owl
spiral notch
#

my main os runs on a usb

#

I handle grey ish data and it’s easy to just snap the stick in half and buy a new one

#

hides anything incriminating permanently

#

also don’t use Ubuntu

#

sure it’s a beginner os but it’s meh in terms of privacy

#

is spyware just like windows

#

sure not to the same extent but still yuck

torpid pagoda
fading nacelle
#

popOS?

spiral notch
#

look it’s not has hard as others make it look

#

but honestly if u need help deciding

#

Check my long ass and the only Linux guide

#

pre last pin on this channel

warm sundial
spiral notch
#

jump to that message

spiral notch
wanton river
#

@rare goblet Google gmail

spiral notch
#

that’s why I said not to the same extent

spiral notch
#

he might be a bot

#

atleast acts like most bots do in our server

torpid pagoda
spiral notch
#

if something it’s more frustrating for you than for me

#

in rufus select persistent, the slider

#

allocate as much memory as you want it to have

#

stick the arch iso int the file thing

#

and change motherboard type or whatever there will be

#

from MBR to GPT

#

UEFI (Non csm) it should be

#

atleast if you’re computer uses uefi

#

And is made in the past idk

#

10 years or so

#

I’ll gladly walk thru it just kinda running late to a concert rn

torpid pagoda
#

alr lmk

rare goblet
junior hamlet
#

I need some help I can't wrap my head around coding

#

I always Google the solution

spiral notch
#

I’m not a man

junior hamlet
#

I have been doing this for years

rare goblet
# wanton river <@1432079550753276025> Google gmail

This are some steps to help you secure your account man
Ok1. Go to Google’s Security Checkup
Open this page:myaccount.google.com/security-checkup
(Just type it into your browser.)
This lets you review compromised items quickly.
2. Immediately secure your Google password
Change it again, but make sure it’s completely new:
At least 14 characters
Not similar to old passwords
Not reused anywhere else
Ideally generated by a password manager
After changing it: Don’t save it in your browser unless it’s your own, trusted device
Don’t tell it to anyone
Make sure you typed it on a clean, safe device (see Step 7)
3. Turn on 2-Step Verification (2FA)
This is the most important step.

  1. Go to: myaccount.google.com/security
  2. Under "Signing in to Google" → choose 2-Step Verification
  3. Turn it on using:
    Authenticator app (best option)
    Or SMS (OK, but weaker)
    Once 2FA is on, no one can log in even if they know your password.
  4. Sign out of ALL devices
    Go to: myaccount.google.com/device-activity
    Then: Click “Sign out of all devices” (or manually sign out each one)
    Don’t worry—they won’t be able to get back in if you changed password + enabled 2FA This is crucial because old sessions can stay active.
  5. Remove suspicious apps
    Google lets apps stay connected even without your password.
    Go to:myaccount.google.com/security → Third-party apps with account access
    Remove everything you don’t recognize
    Remove anything old you don’t need anymore
    This is where hackers often stay hidden.
  6. Check recovery info for tampering
    Go to: myaccount.google.com/security → Ways we can verify it’s you
    Check:
  7. Recovery phone
  8. Recovery email
    Backup codes (regenerate if unsure)
    Security questions (if you have them)
    Make sure everything is yours.
    Hackers sometimes add THEIR recovery email so they can get back in.
#
  1. Check your devices for malware
    Sometimes the account is fine, but the hacker got your password from your device.
    Please do this:
    🔹 On Android:
    Remove any apps you don’t recognize
    Check for apps with administrator permissions: Settings → Security → Device Admin Apps
    (Disable suspicious ones)
    Run a malware scan (Google Play Protect → Scan)
    🔹 On Windows computer:
    Update Windows
    Run Windows Security (built-in antivirus)
    Optionally run Malwarebytes (free)
    🔹 On iPhone:
    Usually safe unless jailbroken.
  2. Turn off “Less secure app access”
    (Some old apps allow logins without 2FA.)
    Go to: myaccount.google.com/security → Less secure app access
    Make sure it’s OFF.
  3. After all this — change the password one last time
    This ensures no compromised session still knows it.
nocturne quarry
#

Hey guys, So I’d been tryna boot up my Virtualbox but when I press start is says kernel driver not installed (rc=1908) Any solutions? Thank you 🙏🏽

rare goblet
wanton river
#

@rare goblet thanks bro . I've done all of that and still I saw a device connecting... How can he connect again if I did all of that ? I'm reinstalling window on the computer now .. and I'm so paranoid, I'm locking at the activity every 2 min 🫠

rare goblet
# nocturne quarry Hey guys, So I’d been tryna boot up my Virtualbox but when I press start is says...

If you're on macOS
This is the most common place this error happens.

  1. Allow the VirtualBox kernel extension
    macOS blocks third-party system extensions by default.
  2. Go to System Settings → Privacy & Security
  3. Scroll down and look for "System software from Oracle America, Inc. was blocked"
  4. Click Allow
  5. Restart your Mac
  6. Open VirtualBox again and try Start
    If you don’t see the message: Try reinstalling VirtualBox → then check Privacy again.
rare goblet
#

Okay try this then

#
  1. Reinstall VirtualBox as Administrator
    Right-click the installer → Run as administrator
  2. Make sure Hyper-V is disable
    VirtualBox can’t run if Hyper-V is active.
    Run this in CMD (as admin):
    bcdedit /set hypervisorlaunchtype off
    Then reboot.
    Disable these in Windows Features:
    Hyper-V
    Virtual Machine Platform
    Windows Hypervisor Platform
    WSL2 (if not needed)
nocturne quarry
#

Okay Thank you

nocturne quarry
#

But, I installed it through kali terminal

rare goblet
#

Run this sudo apt update
sudo apt install linux-headers-$(uname -r)

nocturne quarry
#

It said package Linux headers not installed

#

Then I tried sudo apt install Linux headers (unable to locate package Linux/ package headers)

rare goblet
#

Then try this:sudo apt install linux-headers-amd64

nocturne quarry
#

Okay

wanton river
#

@rare goblet yeah that's why I'm here . I'm confused.. last thing is the computer

nocturne quarry
#

@rare goblet it worked. what’s the next step?

drowsy eagle
#

Hi guys

elfin remnant
whole patio
#

You will however now receive DMs from people who are trying to scam you

marble coral
#

Oh ok thank you

little flax
#

Afternoon everybody. Can someone direct me to info on establishing a number for my business in another country?

whole patio
little flax
#

Like an international number that connects with my cell

grand prawn
#

Pls I need help

#

I need flashing to China to available balance

little flax
whole patio
little flax
still rose
#

Yo guys, been awhile since i asked here something.

I was wondering how you can increase the impact of a host header injection redirect. Ik web cache poisoning is one, but is there any other techniques

whole patio
little flax
grand prawn
#

Pls I need a vendor that I can buy a flashing software that can flash China available balance pls

whole patio
#

We gotta take these request minus the sob story part and see whether, if we were lied to, this sounds like something we should help with. It's always a friend or sibling or child or cat or pony..

#

Btw beware of scammers sending you DMs now

spare pilot
#

I'm really sorry guys if I'll be breaking your rule in this discord, i only believe that this discord is my last hope, I'm from a country called Tanzania (united Republic of Tanzania). We have been in an internet blackout for the past 6 days following an unfairly and forced election which was set on a date 29th October 2025, upon to not accept such kind of unfairly election people especially young people protested, but a lot of those young people were shot and killed by the police forces and hired mercenaries from neighboruring country (Uganda) under the leadership of Tanzania present (samia suluhu hasani) who was also competing for this election.(Her leadership has been filled with corruption, abduction and force disappearance of people, attacking church leaders and closing churches, censorship of medias and even opening false cases against opposition leaders), but what really pains me is number of young they have shot and killed (1,000+), so i came here to ask you guys to help do something about this... All of you who love human rights, democracy, freedom 🙏🏾🙏🏾🙏🏾 if you can do something it will be helpful.

chilly merlin
#

protest, and keep protesting until you eventually overthrow your government and host the next election on Discord lol, thats what the people of Nepal did

spare pilot
spare pilot
chilly merlin
#

any professionals wouldnt hack anything without permission, and any blackhats with experience wouldnt care to hack anything, considering they most likely do not care about you or your problems

rare goblet
chilly merlin
rare goblet
#

So next thing is to

nocturne quarry
rare goblet
#

sudo dpkg-reconfigure virtualbox-dkms
sudo modprobe vboxdrv

chilly merlin
#

@spare pilot even if a group of professional "hackers" decided to join bands and help your country, what exactly would you expect them to do? because i can guarantee you 90% of the things you want them to do that you think will make a difference, wont

nocturne quarry
rare goblet
#

Just let me know so I help you finish the process

nocturne quarry
#

Okay

haughty dawn
#

i wouldn't expect any kind of hacks to make a difference in this situation though

rare goblet
chilly merlin
#

ukraine is a lot bigger country than tanzania

#

furthermore, russia was doing it right back to them

#

there is a big difference between a physical/cyber war, and a corrupt government treating their people like shit

spare pilot
chilly merlin
#

hacking a database and dumping it would be literally nothing to a corrupt government

#

"oh you leaked info about our corruption? yeah i mean, we've been doing that, who cares, oops sorry"
(then go back to the same corruption they was originally doing)

rare goblet
chilly merlin
#

no

#

he wants any "hacker" here, to "do something" about their corrupt government shooting protestors in his country

rare goblet
#

What exactly does he wants us to do

#

Be specific

haughty dawn
#

unfortunately attacks like that are going to at worst cause some logistical issues. not going to stop massacres

chilly merlin
chilly merlin
#

yeah i mean they're APTs, thats not the subject here but i understand

spare pilot
#

Make the world know what's going on.

chilly merlin
#

they have outreach, random hackers dont have outreach, they have outreach to threat intel companies and security reseachers

chilly merlin
#

there was a guy that came in here from Nepal that said basically the exact same thing as you

haughty dawn
chilly merlin
#

"we have a corrupt government they are shooting protestors, please hack something and put some light on our problems"
nobody cares enough to do anything, and nobody will commit cybercrime just to put light on your countries state

haughty dawn
chilly merlin
#

hacktivism is basically dead at this point, SiegedSec was the last group i saw actually causing impact

chilly merlin
spiral notch
#

you just don’t see much on the news

chilly merlin
#

yeah

#

tbh the whole anonymous france situation

#

recently has been taking up my tl so

#

hilarious though

trail bramble
#

Is there a education roadmap posted anywhere

#

Not sure where to begin

woven anvil
iron bridge
#

i am learning linux fundamentals right now should i write notes too like a hardcopy ?cuz i forget easily

gusty tide
#

I would suggest you do. For me writing notes down helps a lot. You should try and write notes in your own words, instead of copying down whatever it is you are learning from. It shows better understanding of the topic and helps you remember better

iron bridge
gusty tide
#

That is what I do

#

Like the command, and a little description in my own words

iron bridge
#

like a separate place for cmds and other concepts at a separate place ?

gusty tide
#

Wdym

iron bridge
#

like should i write cmds at a separate place like only cmds and other concepts about linux etc in separate notes like place

gusty tide
#

I just have a table for the commands and do bullet points

#

Bullet points wherever I have space ig

#

Either above or below the table, or sometimes on the next page

#

Just do whatever works best for you, there is no one method for note taking. Everyone is different

iron bridge
#

alr ty will tryna make my own notes 🧑‍🍳

iron bridge
gusty tide
#

Uh remind me in in like 8ish hours

#

I am too lazy to get up and get my notebook lol 😭

red canyon
#

Yo real help me question but does anyone know what kind of CTF challenges these are??

  1. Essential Security Principles
  2. Basic Network Setup and Security
  3. Endpoint Security Concepts
  4. Vulnerability Assessment and Risk Management
iron bridge
gusty tide
#

And yes, I am old school. I use a pen and paper

iron bridge
#

also many ppl say that writing blogs is also better or write ups tho idk am just starting

gusty tide
#

People now often use iPads or laptops

iron bridge
gusty tide
#

But ig writing more about a topic can only help you remember and understand it

iron bridge
gusty tide
#

I have recently started on tryhackme

iron bridge
gusty tide
#

Free for now

#

I’m broke 😭

iron bridge
#

ikr

#

i started with try hack me but it had paid modules so i shifted to hackthe box

gusty tide
#

Anyways it’s getting late I gotta head to bed 😭

woven anvil
gusty tide
#

Someone more experienced can help you out I’m sure

#

Like jeevis here

#

Perfect timing

woven anvil
#

And if you have money, getting a tiny computer to use as a testlab server is well spent

gusty tide
#

Gn

woven anvil
iron bridge
woven anvil
#

You can do whatever it takes to get you started.
The best way to learn will be by using it though. I started with having a separate linux laptop, and a gaming windows desktop. Eventually, I got sick of windows. But the commands, like any language, you will only really use by practicing and using it.

#

https://overthewire.org/wargames/bandit/
Some resources like this, help with it, by getting you to practice and learn over SSH that you can do from any computer(windows/mac/linux all support SSH out the box now-adays)

iron bridge
woven anvil
#

Then understanding that what you are working with is:

  • A shell (usually bash, but could be sh, fish, zsh, or many others)
  • Shell Scripts (Commands chained together, with additional logic to make automating applications easier)
  • Compiled applications
iron bridge
#

but i don't know where to start from for networking , so i get complete understanding on networking

woven anvil
iron bridge
spiral notch
#

we don’t do dm solicitation neither really have people for hire !

#

the experts in here will not dm you, most likely only scammers

unique goblet
#

Hey

old fern
spiral notch
#

if it’s from this server, as in

woven anvil
#

@old fern
Self-promotion is not allowed on this server.
#📜・rules

unique goblet
#

I posted my progress on my hack 100 challenge but I didn’t see an update on my thread and I received a message from @scenic wyvern that I shouldn’t send the same message over and over again while I don’t see what I posted. I want know if it good for me to try and post back or I should leave it

spiral notch
#

it’s about having one of the roles that prove their experience or trust, such as trustee, hacker rank, or something of that sort

#

that is given personally to people

old fern
spiral notch
woven anvil
unique goblet
woven anvil
random tundra
#

Good day everyone I would love to be a hacker please who would be my mentor?

spiral notch
#

experts won’t mentor you, however scammers will now prolly dm u

random tundra
#

Why can't u since it seems u are 1

iron bridge
#

start with choosing what u want to do like red team or blue team u can see this #👥・new-member-guide ,maybe u should have kept your job and learn it sideways tho its not late ig hope u achieve something

tiny anvil
#

Not sure if im using the right words but i want to be able to access whatever the php script provides (i have a php script for a casino platform) i got no experience in thid and AI is not helping

#

I neef help with my php scripy please

spare geode
random tundra
spare geode
#

Expecting people to go out of their way to teach you won’t get you anywhere.

random tundra
#

Not expecting any 1 to teach me or go out of they way to ,some 1 to guide me

spare geode
random tundra
#

Am sorry if I offended anyone with my massage

steady palm
random tundra
#

@steady palm thanks

shy agate
#

Trying to be a hacker. Where should I start from. Where will I locate the resources here

spiral notch
spiral notch
#

You are extremely unlikely to find someone just willing to spend their time for pretty much no reason

#

from the goodness of their heart or whatever

spare geode
#

I did kinda say that…

scarlet parcel
#

Hi

rapid oasis
#

Help! My remote debug does not work! xD
in short;
java project using maven; working on CentOS 9 in virtualBox; working, listening port; waiting for remote debug
VirtualBox set for portforwarding, I can see it open.
on windows - IDE Idea IntelliJ - remote listening port.

Java version major/minor matches

any ideas?

#

(fall on timeout; java.netConnectException)

ruby sorrel
#

hello everyone. i want to learn networking. who can help ?

chilly merlin
ruby sorrel
#

is this academy subscription based please?

whole patio
ruby sorrel
lunar void
#

Does someone has anything else for learning python like a roadmap? e.g. https://roadmap.sh/python
Some ressources in courses I find a bit difficult to follow

slow edge
marsh drum
#

Hello guys, what’s the best digital footprint removal service and best security software for phones and laptops?! Please and thanks

ruby sorrel
#

again what is the best software for phone tracking or loved ones in cases of theft or abduction?

spare geode
ruby sorrel
spare geode
#

You can access find my on windows through a web browser

tardy quiver
#

when to do a 100 days of hacking?

#

has a platform?

ruby sorrel
spare geode
#

It’s not an app on windows but it does the job anyway, don’t see what the problem is

lunar void
# slow edge Sololearn has a free python course! Their testing environment might be paid but ...

I feel so overwhelmed by the input, I already got basics but it's not enough for building for example a log analyzer, even for leetcode I am missing few things all the time and take forever.

Should I maybe just focus on building the log analyzer, helping with chatgpt, documentations etc but studying every line of course, or should I focus on leetcode even if it's not really security related?
How did you learn?

slow edge
# lunar void I feel so overwhelmed by the input, I already got basics but it's not enough for...

Okay tbh, I never did leetcode!
Not saying that doing leetcode is not good, it is nice way of learning.... But my focus was more on projects! During the time when I was learning Python, there were no AIs, so I had to go through articles and documentations.

Also during that time, Sololearn had a "Python core" course, which they removed right now which was beginner to advance Python (it was free during my time), and now they removed it which I felt little off about!

So ya, my way of learning a language is to atleast cover it till intermediate and then build self projects through what we know and projects like which require you to learn more....

visual moon
lunar void
visual moon
lunar void
spiral notch
#

microsoft offers it officially

#

you register a device and it enables gps tracking on it if available

#

you have to set it up on the device you want to track beforehand though obviously

ruby sorrel
spiral notch
#

yaya ofc

#

or just code your own tracker

#

if you have certain requirements like calling the police quickly

#

or being notified by idk

#

speed of vehicle

#

or well speed of device in that case

ruby sorrel
chilly merlin
#

Has anyone used Qubes for their primary hacking computer? Is connections routed through tor on Qubes like it is with Tails?

visual moon
#

And then use the other whonix thing (I forgot the name lol)

#

You make for every different task a new qube.

#

Like that you isolate everything

#

Make sure to check out the QubesOS docs. You will need to read them, to understand the OS fully and how to use it‘s features.

chilly merlin
#

Ok I was curious about exactly that basically cuz almost everything you’d want to download or use to do any work you need to do will need some type of connection for at least the downloading aspect if not the actual using aspect of it and tails being a portable self-deleting OS didn’t give me much of a confident feeling towards using it for that shit lol otherwise I would’ve just changed back and forth connections on tails to make it work I’d rather do it on Qubes and whonix seeing as it’s meant for long use and not just a quick need-to-search-anonymously scenario like tails serves

#

So that settles it tho I just gotta disable and reenable Qubes when doing any downloading shit because the system does not like allowing for connections to download GitHubs and whatnot for some reason lmao I could also just transfer it via usb I suppose too but idk

visual moon
chilly merlin
#

I meant disable and reenable whonix not Qubes btw my bad lmfao

#

Yea I did I read most of it already I’m about to switch tonight I just wasn’t sure if whonix was the thing that does the rerouting or if whonix was just a vpn, I looked at Qubes documentation but not whonix yet I wasn’t sure what whonix did but I did know that you can use Qubes without it which is why I was still lacking some knowledge

#

That right there is essentially why tails is not convenient for this stuff haha you’d actually have to use the console to reroute the connections yourself kinda lame and annoying but I guess some people wouldn’t have a problem with that haha thank you for the insight

pulsar mulch
spiral notch
#

and its not good

#

ive played around with it but i prefer to use other distros for any actual "hacking" or whatever u wanna call it

strong stag
#

Is there scam recovery that can be done and pay after the money has been recovered,

chilly merlin
#

Yea the tor connection gets in the way of a lot of potential but if whonix is easily toggled on and off I guess it can’t be the worst situation to go with

spiral notch
#

just like tails

#

i tried using tails once but youre not gnna be ableto carry an op on it

#

itll be way too cvomplicated

#

for absolutely no reason

#

not hard, just complicated for no reason

#

too many steps

#

it wasnt made for cybercriminals

#

it was made for journalists

#

to write one or two documents and post them into the internet void, yeah perfect

#

has encryption (even tho ideally you should snap the usb stick in half, atleast i do so)

chilly merlin
#

Yea if you’re in an actual situation where you can be raided that’s the thing you’d want to use

spiral notch
#

but for actually installing tools, doing reconnaisance and doing post exploitation

#

its ass

#

like even if u get raided

#

u dont need tails

#

a lot of other oses work

chilly merlin
#

Yea but if u get raided and they go thru ur computer ur done the case is built against u wouldn’t it be haha

#

Like I’m not really doing things where I have enough comfort to leave a single trace on my system that’s the thing

spiral notch
#

hmm

spiral notch
#

they can avoid encryption

#

very often

#

it’s best to physically destroy

#

stick it in a microwave, snap it in half

#

throw out of the window for example

chilly merlin
#

It deletes itself when the system is shut down

#

Like there’s no reason to even break it 🤣

spiral notch
#

learn about digital forensics..

#

it does not ;)

#

when a file is deleted off a storage medium, the info is not deleted

chilly merlin
#

Can I see proof tho more than just ur word and a picture of our conversation of discord with a different font lol

spiral notch
#

only the pointer to the file, waiting to be overwritten

spiral notch
#

Font

#

that wasn’t to show you my experience lol

#

that was to show the message wasn’t sent

chilly merlin
#

The whole operating system is on the usb stick bro there might be digital forensics that the system has ran tails before but like there’s no proof of what was done on the tails

spiral notch
#

don’t have the intention of snitching on myself further than I have

spiral notch
#

on the usb

#

forensics inside the usb stick

#

as well as ram can hold some cache that didn’t entirely get destroyed

chilly merlin
#

What would you snitch on yourself about when talking in an educational sense haha

#

Are you connected to your home network right now because if you are I don’t really wanna hear any opsec strategies 😂

spiral notch
#

opsec depends on the threat model

spiral notch
#

idk I’m confused myself

chilly merlin
#

U didn’t really say anything besides an edgy “nothing is secret ;)” style type of response like you got the hidden military-secrets or somethin talkin bout digital forensics being a thing but like these operating systems literally are built to fight around that yes there will be little traces somewhat but nothing critical that should get you caught up, as far as I’ve been educated on by the internet, other than your argument which hasn’t had any impact to change my mind so far

#

I mean VPNs are good and all but will they truly hide you if the government knocked?

#

No, they won’t.

fading nacelle
#

mullvad would

#

they have a strict no log policy

#

you can literally pay with physical money

chilly merlin
#

Most vpn services break to LE and hand over everything once they are pressed there’s only the ones that you have to take their word for that they literally don’t even log anything at all and u only have their word for it

whole patio
#

Or use your own

chilly merlin
#

But there’s a million ways to get caught still I mean, what email did you use to register with the vpn? I highly doubt everyone who uses vpns registered with a dump email over the tor network that they made in some public networks and only access from different networks so literally WHAT is the point of the vpn if you’re just going to bring it to your home network?

spiral notch
spiral notch
spiral notch
#

that was to forensics

#

you didn’t account for them

#

sorry it rubbed off on u as me being edgy or whatever Idrc but like it’s the

#

truth

#

opsec is way bigger

#

and ofc, more than a vpn

#

but I’m saying, for ops tails is useless

#

even without persistence

#

forensic experts are able to retrieve info

#

from the usb stick

#

so yes, snapping it in half or putting in the microwave is your best bet

#

over just unplugging

#

which is not enough

spiral notch
#

second of all mullvad doesn’t take phone neither email for registering

spiral notch
#

exit nodes pose a risk

chilly merlin
#

For real tho no matter how much assurance I’m given about anonymity and secrecy I’m blowing any system/device/appliance/electronic to smitherines if I feel a raid coming tho lol I’ll give you that 🤣

#

Safe from LE or safe from bad guys? I think it’s safe from LE but definitely not from bad guys

#

But I always go with one rule on the dark web and surface web, discomfort and distrust is the best antivirus, if you still get tricked or spoofed idk people are smart and tricky but that’s on the user for not taking their life seriously man like I be genuinely tweaking thinking about the possibilities of the cyber world knowing how dangerous it really is

#

LE has the ability to attempt to like, target a database on tor network from what it seems like (websites basically, not really anything other than website databases on there) and that’s how they find users conducting work through tor pretty much the only way they can unless you’re being separately investigated irl and not over the internet and they just happen to see tor connections in your network and find a whole hidden career on you 😂

fallen glade
#

hello, i have a whitebox test and i want to find to find the root. port 22 is open

whole patio
#

That's all you have?

fallen glade
whole patio
#

So you are sitting in the network and are looking at an open ssh port and have nothing else to go on?

whole patio
#

Please don't

deft violet
#

Look for hard coded passwords in the source

fallen glade
deft violet
#

Well then having source code would imply there's some sort of app interface and youre not just working with ssh to go on. Id be looking for some type of exploit in the code.

lavish fractal
#

which other platform can I use excluding tryhackme

chilly merlin
#

hack the box

grave delta
#

Guys I bought mac book air m4 16 gb/512 gb

deft violet
#

Hack the box and portswigger are my personal 2 favs

maiden scaffold
#

Question from me.
I need tools and methods to help me learn more about a website. Specifically, at what intervals does it have the most traffic, where do they have their adds and what kind of marketing does the website have, how often do they post. I am asking because I just found out about this Uni project and I suspect the top searches of google are not the best tools. I appreciate any help.

bright yarrow
#

Please I want to download online Germany bank anyone with idea. Thanks

chilly merlin
#

what do you mean

still rose
#

I found a prototype pollution in a bounty target due to vulnerable jquery usage. Im new to this vulnerability and just read the cve report on hackerone and tested the poc for it in console of the site. Now my question is how tf do i report? Sure i cant just tell them that yo site is vulnerable to prototype pollution run these two commands in the console of your site and devMode: true will be global accessible

granite jetty
#

I cant decide if id go with cybersec (SOC Analyst) or a developer 😭😭

chilly merlin
#

what do you enjoy more

#

whichever you enjoy doing youll be good at

spiral notch
#

that was like going back and forth between MacBook or gaming laptop

spiral notch
#

you can’t just download a bank

grave delta
spiral notch
#

cool!

#

how you enjoying it so far?

still rose
grave delta
#

Idk I feel nice it’s so sleek tbh just thinking that 16 gb should be enough for machine learning and and all the cyber security stuff

whole patio
bright yarrow
#

I need name of any Germany iban, online banking? I want to download the app. 🙏

bright yarrow
# whole patio What?

I need name of any Germany iban, online banking? I want to download the app. 🙏

woven anvil
#

Only use official Apps from your official Banks

#

Third party banking apps 99% of the time just steal your info

whole patio
#

Could you shed some light on what exactly you want to do? I mean that is easily found per a search engine

spiral notch
#

with Apple, yes

#

It requires significantly less ram

woven anvil
#

VMs are VMs and require the same amount of RAM though if learning that way

whole patio
#

With 16 gb ram and 512 gb storage I would consider my machine "broken" 😉

spiral notch
#

Uses way less

#

Not the VMs ofc

#

Although some are optimized

deft violet
woven anvil
spiral notch
#

and stripping down VMs

#

it’s more than enough for many simultaneous actions too

woven anvil
whole patio
#

Hope you dont have to emulate an AD lab on that

woven anvil
whole patio
#

and does it work with x64 machines on arm architecture?

woven anvil
whole patio
#

well, spectrum will cross that bridge when they get there, I guess

woven anvil
#

but if just doing tryhackme labs, and a local ollama, then a mac is fine

spiral notch
#

also his budget was pretty likened

#

limited

woven anvil
#

im still a fan of "get a mini-pc, then whatever computer is convenient as your main/laptop", then just run proxmox on the mini-pc

#

And because proxmox supports virtualization-passthrough, can still use dockur to have a nested AD lab in a VM kekw

fallen glade
#

If I have let’s say password and username to a sql database. But I already have done an sqlmap on that database and already have taken info. Is it needed?

fallen glade
spiral notch
#

go find other non sql vulns lol

#

theres a lot that exist that u can test for yk

fallen glade
#

I have but I’m trying to find root. The only way is port 22 SSH. Do you know anyway besides brute force

spiral notch
#

you literally just said youre trying to gather as many vulns as possible

#

decide..?

fallen glade
#

I am but I’m gathering everything I can

spiral notch
#

okay whatever

#

theres no way to hack into rather recent versions of ssh

#

without a pass

#

at all

#

theres just not much ground to exploit on

#

none, even

fallen glade
#

It’s not recent. This is my test vm

#

From my professor

#

Made to be exploited

#

I know for a fact it can be exploited cause it’s been done by people in my class

#

Maybe you know how?

whole patio
#

Without any more leads hitherto unnamed, you are not going to get into a properly secured ssh

#

have you tried to connect to it? Is it expecting a keyfile?

fallen glade
#

It’s not properly secured. It’s a VM made to be hacked. The port is open

spiral notch
#

also ur barelky giving us any info

spiral notch
fallen glade
#

What info do you guys need?

spiral notch
#

also

#

were not the ones supposeed to be doing the assignement..

#

last time i checked

fallen glade
#

😂😂 sorry

#

Just very frustrated

spiral notch
#

then theres probably more ports

#

what command did u use

#

to scan

fallen glade
#

Nmap

#

Nikto

whole patio
#

"Did you try to connect and is it asking for a keyfile?"

fallen glade
#

Dirbbuster

whole patio
#

dirbuster for an ssh server?

spiral notch
#

bor

#

bro

fallen glade
#

I don’t remember the parameter exactly but gave me sv and ports

whole patio
fallen glade
#

When I try to connect to ssh

#

It ask for password

spiral notch
fallen glade
#

Yes

whole patio
#

so not a keyfile

fallen glade
#

English is not my first language sorry

fallen glade
#

No

spiral notch
#

do the scan again

fallen glade
#

You can brute force it

spiral notch
#

and tell us what you used

#

@whole patio imo he just didnt do a full port scan or whatever lol

#

and theres more services running

spiral notch
spiral notch
#

is at your disposal

#

full.. disposal

fallen glade
spiral notch
#

bingo

#

then you messed up recon probably

#

id ask you for the machine so i can play aorund and figure out what it is that yourem issing but pretty sure itd be illegal for me to poke around in it without being a student

#

but good luck

fallen glade
#

Nmap -p- -T4 -sV <IP ADRESS>

fallen glade
#

That doesn’t run a full scan right?😂