#š„ć»help-me
1 messages Ā· Page 126 of 1
How do u change ur ip
yeah that sounds a lot of work ngl still appreciated bro I'm better off losing my money this time she's cute so I'll bear with it
I am planning for htb cdsa , should I do network/os once again from htb as thm does not cover that deep , or is it enough to continue with further requirements
Bruh people seem to be asking all sorts of questions you'd ask google normally for it lol
Also, no #šć»rules
Where do I go if I need help with the Splunk Certified Cybersecurity Defense Analyst?
Hell no #šć»rules
can y'all help me with my upcoming digital forensics CTF?
I can't post there
You won't but you'll have information about it if you need help with a specific topic post it here
I need websites I can practice on, or any tips, or like resources y'all are willing to share?
for digital forensics CTF
Checkout the HTB Sherlock machines.
Do anyone tell me, if I created marauder from scratch, How much days of coding do it need?
thanks G
Can't say bro, it depends on your skillset.
Well, me and my teammates going on local hackathon and I'm thinking presenting marauder as IoT device, so, I'm searching about uses and scratch software part to understand and all.
Sounds like fun enjoy.
Yeah, actually I'm already the tinkering guy in my cybersec grp
I do robotics
Nice
Hello everyone i am new
I wanna learn hacking I am a beginner where should I start?
when did the 100 days of hacking start?
couple of weeks ago
Hello friends
Good day everyone, i hope everyones doing well.
I have an issue which I'd appreciate some help with.
I'm not looking for account access, exploits, or bypassing security. I need lawful, high-level guidance on getting old Instagram photos removed when the owner hasn't been able to access the account for years, email is unknown, linked phone number as well.
Best regards
I think we cant help u with this
you probably can't literally get them removed unless they're in violation of IG's terms, but perhaps that's not the underlying problem you're solving? if the problem is that these pics come up in the results for certain searches, for instance, you can publish newer material with the same keywords so search engines will prefer it
Hello guys, I have a good foundation with Kali, but my learning lacks structure. During CTFs, I often get stuck not because I donāt understand the context, but because there are specific approaches, commands, or techniques I would not have thought of on my own. For example, knowing that files or data can be hidden inside images and that tools like xxd can be used to analyze or extract them is not something I could easily guess without prior knowledge. Without knowing these techniques beforehand, itās hard to figure them out, which often prevents me from completing challenges without looking at a solution. Iād like to know if there are important prerequisites to learn first or a more structured way to progress effectivel
Hi yall! I'm looking for feedback before I post this to my linkedin, with the hopes of creating interest in some of the portfolio work i'm hoping to do this month:
Cloud logging & access control miniāproject
Iām starting up a minimal AWS/Azure environment with:
ā A simple set of resources and IAM roles using least privilege.
ā Basic network controls (e.g., security group/NSG) instead of openābyādefault.
ā Signāin and activity logging enabled in a way a SOC could realistically query during an incident.
Iāll simulate a few ānormalā and āsuspiciousā signāin patterns (failed attempts, unusual regions/times) and document:
ā Which log sources actually ended up being useful.
ā What was noisy or missing.
ā How Iād expect an analyst to pivot on those events in an investigation.
AuthWatch ā small authālog triage helper
On top of those logs, Iām building a tiny Python tool (āAuthWatchā) plus one or two detection rules to make suspicious login behavior easier to spot. The plan is to:
ā Parse a sample of auth/signāin logs from the lab.
ā Flag simple patterns like clustered failures from a single IP or firstātime logins from a new region.
ā Output a short, plainālanguage summary that a junior analyst could use to prioritize what to look at next.
ā Capture the same logic in an example Splunkāstyle query or Sigmaāstyle rule.
Iām treating this as a public lab notebook: small, bounded projects that deepen my cloud + detection skills and are easy to walk through in an interview or with a team.
If youāve done similar work (cloud logging strategy, auth detections, or training junior analysts) and see ways to make these exercises more realistic or useful, I appreciate and welcome your thoughts.```
I appreciate the information. Its a private account so it doesn't really pop up online, but the account has 700ish followers and those posts are around 5 years old. I've tried contacting instagram support and ask them kindly to delete the account or at least the pictures and also offering them to show them my ID to verify its actually me, many times but unfortunately they never agreed to help me and always said no
Learn to take effective notes on those.. CTFs are entirely artifical, and people look for specific nonsense ways to hide clues and flags that have next to no real world relevance.
This is really just about collecting all the nonsense, maybe structure it in paths to work along..
Hi guys I recently found a trojan called Omniwatch (com.omniwatch.frkb) on my momās Android phone. As soon as it was detected, I isolated it using the phoneās security app and rebooted the device into Safe Mode to make sure it couldnāt run. After that, I connected the phone to my laptop and used ADB from Arch Linux to enumerate installed packages, confirm the exact package name, and dump its details. I checked what permissions and services it had (boot receivers, notification listener, network access, OTPS ,screen overlays (phishing screens) , UI manipulation ,Lockāscreen interference etc.) Monitor WhatsApp, SMS, banking alerts. Now Iāve extracted the APK to my laptop and Iām trying to figure out where it would send data to
I already take a lot of notes, and thatās something I actively work on and plan to continue doing.
Since you mention that CTFs are mostly artificial and involve a lot of ānonsenseā techniques, Iād like to know what would be a better thing to do that actually matter in real-life pentesting.
What skills or knowledge you'd recommend focusing on instead (or alongside CTFs)
Nothing beats real life experience there
So bug bounty can help a lot ?
Real experience can
Lmao thats amazing
My friend did kernel factory reset due to this trojan shit
But i don want to, how did you detect the suspiciousness?
Basically what raised suspicion was My mom is a government officer, and one night her account suddenly got disabled due to too many requests. she got some OTPs.On top of that, 2 days earlier her bank account was temporarily locked because of multiple incorrect MPIN attempts ,which she definitely didnāt make. Thatās when we suspected possible notification/OTP interception or background activity, checked the phone, and eventually found Omniwatch.
Omg
That is way further than mine
Her phone is just in a botnet i guess
Yeah, Iām pretty sure it came from the Vivo App Store For now Iām treating everything as compromised. tomorrow I'll haave to change all bank passwords, UPI IDs, emails, and recovery options, then locking things down properly š.
is the comp tia sec + and network + course content enough to pass the equivalent exam related them? or do I have to look at other study sources in order to pass their exams? just wondering.
if im learing how to open very weak encrypted doors where is the right place to start
that's one way you could go about it... the other way would be wait till you've spun up your AWS environment and then post with a CTA of "help me learn by showing me the coolest attacks you've seen"... and for the public lab notebook thing, better to use a blog than to use LI. with a blog you own your own content and it doesn't just vanish if some corporation false-positives and restricts or deletes your account.
any opinions on pwn.college?
Wow, thatās great work. How are going about that?
Frr believing third parties is impossible today
Good luck tho!
thanks good feedback!;
UPDATE : app phones home to a server hosted on Vercel ( device beaconing) basicaly endpoint second there is somting kochava tracker which i didnt understand
It is good isnt it?
Like a adware or smt
Kochava made me come up with it
Sorry, I didnāt understand what you are trying to say.
I'e heard of Kochava and did a quick research
Individuals say its just an add tracker
But the things happened(ur first message) is sus
Yeah Kochava is just ads, but in this app itās mixed with some really sketchy stuff,
boot receivers, notification listener, and a custom backend beacon itās way beyond normal adware.
only static analysis and IOC extraction. Native libs look packed.
Damn
Thats the game
Naah bro i just know theory
Good luck tho wanna know updates
does any one have a vm i can use to test this virus?
@slow edge can you do some magic
@lost vapor can you do some magic?
Just give it a sec
rules say i cant ask for a vm or something?
we don't allow distribution of malware, please read our #šć»rules
vm is malwere?
your malware is malware
the malwere i want to test on a vm?
yes
you can get hacked via vm as well
just so yk
also
VirusTotal
I thought zero would do it Lol apparently not
That was awkward
dont see the point of u @ 2 people
could of just asked me ur self to delete the msg or something
They are both mods -_- well zero was showing to be on disturbed so I figured heād be online
Iād rather have mods do it since well they probably keep up how many warns people have etc
u sure u just dont want to be a mod>
?
Dunno where I should be asking or who to ask but Anyone poss know how to bypass IOS locked notes for forgotten notes pass code?
@ me so i get the notif
Easiest way to get a business email?
a defender is not a mod
Buy a domain and pay for an email service that lets you setup the domain there.
They meant cheapest I assume
and you my friend are officially in @fringe mural s hate list
He doesn't like to be corrected
I saw what you did
hi guys can you tell me wheres that path channel where i can see the path to get into red team or blue team
Check these 2 #š„ć»new-member-guide and the #šć»certs-and-career
YO IM Using Termux I Want To Learn How To Crack Password
For context:
Iām trynna get into my old notes ever since some years ago that I got out of a health centre and forgot most of my passwords; some of them being my locked notes.
Iām only interested in the locked IOS notes bypassing.
If this isnāt allowed, lmk.
Would be awesome to retrieve them again thoughā¦
Bypassing my own notes**
This would be bypassing a security system/breaking ToS made by apple.
Is it attached to the icloud account? You could just log in with that instead.
Isnāt Termux like just a regular shell for Android?
Yes cheapest option
Trying to learn more about email security
And email comprimise attacks
not happening here
hey guys i need your help like i need a proper cyber secutity roadmap or a guide can anyone tell mme please not just like tcp upd part only like in detail
googele , also #š„ć»new-member-guide
Anytips to guide me down the right path
I keep hearing it mentioned at work
like i am not complete beginner i need a proper roadmap can you help me in it ?
you have the roadmap
Hey i am thinking about buying thinkpad and i want to make it very secured also want to produce music
So any recommendations? With budgets considered options?
lmao
any second hand mildly modern thinkpad will do.
Done , thanks bro
What made you say "very secure" here?
Cause depending on the amount of pain you're willing to go through, might wanna take a look at thinkpads that are libreboot compatible
Oh any recommendations?
To just protect myself and my friends in general
Neighbors as well
if it is just "in general", then don't bother with libreboot
Who here have expert knowledge about discord tags and badges
Tag me
Just pose the question to the channel
I'm trying to find a way to get more badges and tags š¢
Pls can anyone help me with a good CC sites?
Hello
Smh šŖ
One message removed from a suspended account.
im trying to reverse engineer an EXE file. i feel like im getting so close but so far away
is it even possible?
This one is fine
The answer is probably going to be - follow that distros documentation to the letter š
One message removed from a suspended account.
First of all, you need to download the latest ISO file from our website.
One message removed from a suspended account.
One message removed from a suspended account.
dude..
@whole patio is it possible?
pinging random people is not going to help you here
sorry, u were in the chat before hand
Does not mean I can or owe you answers
sorry
I can tell you this much though
If you ask a good question, people are more likely to reply. "So close yet so far, is it even possible" tells us exactly null about what you are doing, what you are doing it to, what you are trying it with, and what your current status is
Make it easy for people to reply
ill be more detailed next time, thank you!
...dependsā¢
There could be protection. More information is going to be better.
Anyone into game security and kinda stuff?
If you disassemble it, maybe?
Depends on what you want to do.
Binja, x64dbg (assuming no protection)
Hmmmm. Visual studio or text editor like VSCode? Which one do you prefer?
Visual Studio on Windows. Why?
I was just curious to your preferences after seeing your about me being low level focused. :)
Ah, fair enough :p
I find visual studio really clunky? Idk. I guess I will stick with Zed. :P
There is so much things from the APIs that pop up whenever I try to reference something that I get lost in it. ;P
That is on me though. o7
it really is sometimes, I just personally prefer it for its kernel driver integration and debugger
Ahhh. To be fair. I never went that low. My low level is meddling with game memory but I never even got that far into it. Might as well call me a greenie. ;P
You'll probably like Cheat Engine quite a bit. Its tutorials are pretty good for beginners ^^
It is fine. I already got quite acquainted with it and x64dbg. Just getting my ass whooped by Binja. (I gave up on IDA. š)
depends on the protection. run it through DIE first https://github.com/horsicq/Detect-It-Easy
And to be fair, I just need to keep coding in Cpp and get better at it.
How's your assembly?
If it is a python compile, you could try decompiling the python file? (I forgot the term)
Iāve ran it through there hours ago and itās telling me this Packer: PyInstaller [overlay, modified]
(Heur) Packer: Generic [Strange overlay + Section 5 ('rsrc") compressed]
- Overlay: Binary[Offset = 0x0004ac00, Size = 0x03336694]
Data: ZLIB data [ZLIB compression best]
Archive: Raw Deflate stream [@02h]
oh well thats nice, run pycdc over it https://github.com/zrax/pycdc
THAT IS THE TERM. Thank you.
Yep, thatās somthing I didnāt do.
Basic? š
I did some code caves, basic hook. I am not very confident with it though. ;P
Definitely need more work.
Thank you
good enoughā¢
being able to read it is a huge part
If I have context, I can probably figure it out, but without context it is just words and registers. What about you?
context is pretty much always needed ^^
to be fair, packed sections and junk is usually easy to spot
and alogrithms are pretty obvious too
(thats why dynamic analysis is so important)
Probably once you see it a few times, pattern recognition kicks in. I just did not do enough of it. I guess crackmes here I go. ;P
Dbg. š¤
But usually with dynamic analysis, it feels hard to bypass the protections.
well usually scylla is quite enough for basic probing, but of course there are more "fun" ways like kernel debugging and hypervisors
which also need protection, to be fair, but that's far easier than usermode
like many things, dependsā¢
Never heard of scylla, I heard of kernel debugging (well mostly about kernal driver hijacking. Not sure if it is similar or not.) As for hypervisors, you mean vm debugging? And the vms being detected tlo is my issue. :P
Of course. š¤
https://github.com/x64dbg/ScyllaHide
Interesting! Thank you. :]
with hypervisors i mean genuine purpose-built hypervisors (see memhv https://github.com/SamuelTulach/memhv or hyprdbg https://github.com/HyperDbg/HyperDbg)
coupled with VMs of course
I personally use qemu, which is far easier to hide than virtualbox or vmware
I'm new here and cyber security but basically what are the basics softwares and hardware to begin e.g Linux
scylla is extremely useful, you'll like it
if you wanna go deeper, https://github.com/mrexodia/titanhide exists
Thanks šš¼
š Welcome to OwlSec!
Hey there š Weāre really happy to have you with us. Hope you and your loved ones are doing great š¤
This server is all about learning, sharing, and growing ethically in cybersecurity and hacking. If youāre here to explore, practice, or get help, check out:
#š„ć»new-member-guide
#š„ć»help-me
#šć»free-resources
#šć»certs-and-career
Programming:
Python, Ruby, Go (sololearn, codedex, freecodecamp)
JS, PHP, ASPX, SQL (portswigger)
C, C++, Assembly, Rust (pwn college)
Learn what you need, when you need it.
Networking: Try NetAcad (THM + HTB Academy also help)
OS: Windows (PowerShell) & Linux (Bash)
After basics: TryHackMe, HackTheBox, and similar platforms
Most important: Build the right mindset š
E-Books to start with:
Cybersecurity-focused books:
https://security-books.notion.site/
š« Please remember: We strictly prohibit any unethical or harmful activities. Letās maintain a safe, respectful, and responsible learning environment. š #šć»rules
Thanks
I never really tried qemu for that. Always opted for vmware. Will try it out. Thank you. ;D
I guess it is easiest because it is basic? Well, I am not sure if that is the right term.
I was expecting it to look like volatility memory forensics. 0-0
i did use vmware while i was still directly on windows, but unfortunately broadcom keeps messing it up further and further
True that.
i think vmware only has like... https://github.com/hzqst/VmwareHardenedLoader and not much else for hardening
and that's old (though there might be forks?)
Will check it out. :]
Anyhow, my lecture has began. I shall disappear for a bit. Thank you for the really helpful conversation. :D
No problem, good luck ^^
my steam and microsoft account got compromised would someone be able to get on call and help me please
like actually please
contact their respective support.
Do you do reverse engineering?
Sometimes, yea
hello
i want to know what other measures to take as well
How do ethical hackers perform router penetration
idk im sorry
Their support is going to be the only place able to help
if you downloaded malware, reinstall windows.
Maybe. Then again, vmware is bulky compared to qemu so it is probably harder to hide? 0-0 šØ
qemu is just much more modular, and it's open source
same with kvm
I think KVM is the appliance controller? Whatever the term is for it.
Yeha it is. I used it once in the past. :D
WE LOVE FOSS! :P
kvm is the actual hypervisor
foss is absolutely a blessing when you wanna adjust something to your preferences
Sounds like you are speaking from experience. O_O
Is this mostly about QEMU or something else? ;O
both kvm and qemu ^^
plus, easy to learn from
Aha! :D
I think I may have dipped my toes into qemu for virtualmanager on my arch install.
I believe it uses qemu, but I never meddled around with its setup and gave up on the virtual machine on arch. I had no need for it.
It does :p
i use it a lot for my windows VMs, especially since there's actual support for PCIe device passthrough
i.e. gpu passthrough for gaming
Yeah I heard that it has the best performance for it. ;O
What do you main boot? ;O
Daaaaaang. Riced out? O_O
still working on that ;-;
Well, to be fair! Ricing is a chore. (at least for me...) I need to be in the mood for it. š
Tiling manager or DE? :O
True! Also an amazing time sync.
My arch still does not work with my external monitor.
KDE, used to use i3 before that though
as in its buggy or straight up not working?
Straight up not working and I was unable to find a fix to it. I am led to believe that it just does not understand the DisplayPort to usbc to my laptop.
Ooooooh. Clean, very nice. š¼
None #šć»rules #
ah unfortunate, that's still experimental apparently
Yeah. Thankfully I dualboot windows so that works. ;P
I had no idea that was called DisplayLink. Thank you! :D
Can anyone tell me how to learn bug bounty step by step, as if it is open source. Like any free website.
Choose a language you enjoy, choose a framework to it. Choose a database language that goes well. :D
Full stack is a big task if you do not know anything to it.
#šÆpublic-bug-bounty
#š°bug-bounty-info
#š ļøresources-tools
I would start there .. also note, it may not be something for beginners
I added the comment, cause we see a lot of people who are basically clueless, but believe this could earn them some money in the near future
One more question is will full stack web development help if I learn upto 50% in bug bounty
Trick question.. about everything would be helpful
I guess it is hard to exploit something that you do not understand unless you are pasting exploits you do not understand how they work? : P
Thank you @whole patio You will solve my problem, and clear my goals.
Probably not
Its just that this topics comes up so often, that we can all save some time getting the classics out of the way
I see.
Cant. Iāve tried several times and it only let me create a new password for future locked notes.
Based off their official Docs, it looks like it encrypts it with AES-GCM using the login info at the time that the notes were used/secured.
This means that you don't have a realistic chance of getting those back.
Random apps like ai mulse or translator has been being activated on my phone
Randomly
Havr i been hacked
Mind you, i dont use them
Maybe a phone update?
Nah
Ive had a root kit awhile back
I got it removed
But maybe its still on somwhow
hy can some one help me i am new to kali Linux and i open the bluethoot it does not showing my earphone.
- Are your headphones in pairing mode?
- I think Kali comes with BlueZ, so maybe try running
hciconfig -aand see if it outputs your adapter there
yah its in paring mode
Being 4 hours trying to figure out how to detect my gpu to kali linux i did every tutorial i saw non of them work
Any help
Hi guys, i would like to ask a question, in particular im searching for advice. Im developing an encrypted message service, im using Ai for that, but the issue is that i am not an expert in encryption. Before moving to further stage i need to check the algorithm. I did some tests in browser to see what kind of encryption is used. In future im planing to share the code on a github repository for free access, im hopping that enthusiasts might want to have a look., but the thing is that i don't know how they gonna find it, i need some contacts with the community that understands my motivation.
The messaging will be a part of a bigger private mobile app. The main idea is that user creates a room and can invite people there, for rooms <=5 signal encryption is used, for more(up to 30) there is easier algorithm. Important to note that the main philosophy is privacy, such that server has no access to the data, also, since this app is an attempt to be less dependent on tech giants, i will provide an ability for users to create their own servers on regular home pc. Also, if there will be no internet and users are close(like in supermarket where internet is not always provided) bluetooth option will be available. In short, it is a nice idea, but i need the encryption stage to be verified by community.
While I admire your effort, my main piece of advice is to never, ever trust AI for secure code.
Making correct use of crypto libraries is hard even for experienced software engineers, so trusting AI to do that, as a beginner, might lead to some really serious security flaws.
(Not to mention if the LLM just pulled some random crypto out of its ass instead of using known algorithms and implementations).
yes it totally make sense, and i fully aware of that, therefore im trying to be more specific on development phase with what we use and how. But i tested in web browser, and messages in rooms are encrypted as they should
Why do you need custom crypto in the first place? Canāt you protect the chat rooms by scoping access to the participants and then just relying on TLS?
me too man
I was recently a victim of a token fraud theft and the malware was most likely a info stealer
All my accounts were hacked and accessed
Atp i have regained access to my account, removed all existing logged in device and reset auths
Is there anything i should be aware of ? And is there any way of catching this guy
Just contact authorities. No one here is going to break the law just to catch someone.
Plus, you might want to upload the malware to virustotal, in case it hasn't been already.
Lol is there a legit way of find the owner of a website dont want any illegal stuff
You can try whois but most websites use whois protection, so you arenāt likely to find any real info there.
Unless what you want is a way to report abuse, in which case the output will give you some email address to contact (from the domain registrar)
Infact because of this attack im more intrigued to get into cyber security to prevent this from happening to anyone
Yes i just did that and sent an email over to the abuse email
Sad to see people getting away with this kind of behaviour
Depending on where youāre based, the police/authorities can actually be quite competent at pursuing this.
Any recommendation on how i should start my journey to prevent attacks or get a hold of this attackers (working for legit companies )
I was thinking about the comp Sec+ certi
I have standard knowledge of IT and networks and computers
Apple HQ/ store gurus hopefully might be the move then
well, the thing is security as i mentioned before.
Yes, but TLS is plenty secure (:
What are you trying to protect against?
it's just a general policy, nothing criminal
Lock down your network with a proper firewall.
Track everything in + out, and get a VM running graylog or security onion.
It will give you a bunch of practice, even though the scale will be small.
Yes, yes, I know, donāt worry. Iām asking because depending on what you want to protect against, you can decide if custom encryption is necessary or not.
The docs say that apple can not help, but they would be the only ones to ask really.
yes, totally make sense, but i think having a generally good level of protection is good enough against many various privacy threats
hello i just joined this server and i dont know almost anything about coding can someone pls teach me
we wont teach you but we can offer help
yes please
What are you trying to learn?
anything i dont know anything about the options
we offer tools here of varying degrees, what are you trying to learn
um what to choose from idk
well theres a lot of different cybersecurity fields, lets start off with basic red team blue team, would you rather learn attacking or defendng?
attacking i guess i dont know
attacking is a great option, although both eventually split, they both start off with basic networking understanding. He doesnt go into detail very well but you should check networkchucks networking videos on youtube. hes not the best for in depth but is great getting a general consensus.
Another portion id look into is HTB and THM, they both offer very good starting rooms, Begin by focusing on looking towards getting a network+ certification.
#š„ć»new-member-guide
#š„ć»help-me
#šć»free-resources
#šć»certs-and-career
Programming:
Python, Ruby, Go (sololearn, codedex, freecodecamp)
JS, PHP, ASPX, SQL (portswigger)
C, C++, Assembly, Rust (pwn college)
Learn what you need, when you need it.
Networking: Try NetAcad (THM + HTB Academy also help)
OS: Windows (PowerShell) & Linux (Bash)
After basics: TryHackMe, HackTheBox, and similar platforms
Most important: Build the right mindset š
E-Books to start with:
Cybersecurity-focused books:
https://security-books.notion.site/
š« Please remember: We strictly prohibit any unethical or harmful activities. Letās maintain a safe, respectful, and responsible learning environment. š #šć»rules
if you need any helps just let me know
There ya go!
bingo!
Begin coding with Python. Whereever you go, you WILL need Python.
Im no expert guru but i would say you gotta know exactly what you want to specialise in and be confident in what you do
Thats the kinds of mindset is required to get in Cybersecurity
P.s Not discouraging you but helping achieve that mindset
this too ^ they are very correct
know the rabbit hole youre falling into and bring the shovels to dig yourself out
And also @alpine heath , don't chase certificates, chase skills. Don't chase success, chase excellence.
yessss
certs are just a good way to measure the skills youve learned along the way, theyre not the end goal
Yesss
certs only prove you know something in that specific field, nothing more. Firstly focus on developing your skills. Find the field you like working in, (ex. Red Teamer, Pentester, Blue Teamer, Malware Analysis etc.) And just keep working on that
Everybody sharing their own philosophy, I like this
Each one of those fields have different things to learn, for malware analysis you need toknow low level programming and reverse engineering and a little bit of assembly for example. Find the thing you love doing and just focus on that, and learn about the other stuff on the side but the main focus should always be the thing you like
If you just want āgood enoughā privacy and security, stick to TLS and ditch the custom crypto. I canāt stress this enough: itās not a good idea to roll custom crypto as a beginner.
As a learning project, though, thatās a cool thing to build. But I would advice that you focus on learning basic crypto best practices.
If you want to actually build this as production software, I think thereās two good options here:
- Like I said, stick to basic security practices, and stick to the standards (have a good authorization scheme, good authentication mechanism, use TLS)
- If you insist on having custom crypto, then work with someone really experienced
thank you for your feedback. I agree, and i have to get deeper into that. That was one of the reasons why came to this channel. I'm hopping to get in touch with experts in this fields. I've heard, many good experts visit this channel.
Maybe this is gonna be an unpopular opinion, but after seeing the same effects of AI over and over again on the juniors at work:
First order of business then is to ditch AI and try to build your software yourself. Then come back here and ask specific questions about the crypto challenges youāre facing.
sure, make sense. Thank you
One of the design decisions of kali is, that it does not initiate any outside connections on its own, this includes bluetooth, which is not installed right away.. how to install blueman and enable it is easily found with a search engine
is this a virtual machine?
Wow, I did not know that, that's cool.
also the reason it has no autoupdater
Nvidia
I want to get start on bug hunting, but donāt have much acknowledge, any idea where to start and how?
Search OWASP TOP 10 vulnerabilities
guys i am new to the server and i want to get into business analytics, my uni taught us python, some R programming, ml nlp and bigdata (cls were bad) and i am about to pass out. i want to properly devolop these as a skill how should i proceed
If you have the basics and theory down, get an entry-level job or internship as a Business Analyst, and go from there.
the thing is i dont know anything, i passed classes by memorizing code and answering theory questions
Ah, well, in that case, I can't help you there, lol. Business Analysis is not my domain. But I imagine there's stuff you can do to practice, like any skill. Do you know if there are any small projects you could take on to learn? For example, where I work, I know the interview process for BAs involves solving two sample case studies and presenting the findings.
our batch was pretty much a experiment i mean we were the first batch of this course, our uni partnered with ext org to provide this degree (i am studying business administration). i guess i will have to learn and take on projects.
I find that I learn much better by giving myself a small goal, trying to get there, and seeing how to overcome the obstacles when I get stuck. Repeat ad infinitum and now you have a career, lol.
i guess i gotta lock in, thx btw
yo got a question how do you like enter a websites code or something to like hack it i wanna test smth on my friend test site (im new here that why im asking basic things)
\
F12
and then what? (sorry for stupid questions)\
read?
Could you tell in as much detail as possible what it is you want to do here?
i just want to see how like people get acces to other peoples webs because im new and im just looking around
Then this is not going to be a simple or standard task, that you can easily replicate
oh
Hey , am working on a camera for fun and learning . The camera runs on RTS3917n SoC . Couldn't find a pinout or datasheet for it . Thought someone here might be able to help š .
Do u even kno how websites werk, bro?
(actually, serious. Do you know how a website works?)
Don't dunk on him for not knowing, lol. Everyone's a beginner at something.
Lol. I like that term - "Dunk." Not meaning to dunk on him. I just remember when I was new and people would always say "do you even-?"
But yeah. You're right. My objective was to point him to the right direction
@jolly oxide
No discussion of piracy here.
#šć»rules
Thats not what i meant ... but ok
literally just asking if theres like a program , some non-profit org. or something/someone that helps self taught students by providing burp pro
Those are much better words for that question then š
I am not seeing any courses offer the software itself in the course
HackerOne seems to offer 3 months free once you get at least a 500 reputation, but that doesn't sound like it is ongoing, so i don't think that is fully what you are looking for.
Honeslty , just mastering my craft
Can anyone help in my decision ?
Hey guys can someone help me open these links which are for university project and for some reason I canāt open them like the others. I canāt put photos tho Iām new here I donāt know much
Have you tried Copy/Paste?
Is the link broken? like. periods where they shouldn't be? Does the link prefix look right? are you sure you're going to the right website?
you could be getting phished
Well itās a link with other name I mean it says the project name and when u press on it it opens a window with the project I mean it works like a link
Itās the universityās website
Iāve done a lot of projects from there
doesn't matter. still could be a broken link.
I can show u in photo
hold on. we can do this with words.
Hey there. So I'm trying to get into gmail I had in my old phone which had this TikTok account but some bad stuff happened and my phone is completely useless right now it will not even open. The thing is I wanna get back into that TikTok account but I dont have my old gmail or anything about remembered since I always used auto Google password. I tried using friend identify but it didn't allow me. How can I find my gmail? I just know page and its username...
that's alright. when you highlight the link, do you see on the bottom left (or some corner) of your web browser the long-form hyperlink text?
right click > copy link
Ok and then?
broken hypertext link. find out where the link is supposed to take you to, and either paste it in your URL web browser or navigate there some other way
I copied it and pasted it on browser and it takes me to the screen with the other links
It doesnāt do anything
yeah. I guess you can DM somebody and post photos.
but I know you don't have persmissions here.
If it helps, itās like locked
you can DM me
Ok
If google support can't help you, you did not set up recovery options, or a backup email or used a password manager.. then you are out of luck
I tried using that friend identity stuff but it didn't work and no I didn't have recovery email either soo I'm fully cooked you are saying š
You are
We don't help you anyway #šć»rules
Why
Read the rules
What did he do
That the point
What are ?
Sir can you guide me in this field
He's in the exact same position as some stalker trying to get someone to hack any random gmail. Knows nothing about the credentials, so the story "who can get me access to a gmail account?" ends here
I really don't want to be that like guy i really want to be a person like you bro
All we have at this moment is a "no trust me bro, it aint like that"
Then i am with you š
#š„ć»new-member-guide this is the least I can do
What is the cve of windows 10 latest is there any poc available ?
Plz
š„ŗ
xD
?
Srry my bad
Seeking advice on digital forensics/account access after a family tragedy
āHi everyone, Iām reaching out to this community of experts for some guidance. My cousin recently lost his life in the River Teifi.
While we wait for his recovery, there are some deeply concerning circumstances regarding his phone.
āIt was taken from his flat by "friends" immediately after the incident and only handed to the police much later.
The police are currently declining to bypass the passcode/security as they donāt yet see proof of a crime. We are desperate to ensure no evidence was tampered with or deleted during the time his "friends" had the device.
āIām not asking for anyone to do anything illegal necessarily. Iām looking for:
āRecommendations for UK-based digital forensic firms that specialize in deceased estates.
āAdvice on how to legally compel Apple or the police to preserve/release iCloud data.
āAny known "Right to Access" protocols for families in the UK when suspicious activity is suspected.
āI apologize if this is the wrong place to ask, Iām just trying to do right by my cousin. Any advice on the best legal/technical route would mean the world. Thank you
May his soul rest in peace
If the police can't help we also can't
I completely understand and respect that. Iām not looking for an illegal bypass.
What Iām really trying to learn is, are there forensic tools (like Cellebrite or similar) that a private investigator could use to see 'file system' changes? Specifically, I want to know if there's a way to prove if data was deleted while those 'friends' had the phone.
Any names of reputable firms or specific forensic techniques I should mention to a lawyer would be incredibly helpful.
Lawyers. Just. Lawyers.
Good ones should have resources
And the legal know-how on how to manage things like discovery
Can anyone recommend me some web challenges (from some CTF you've played) to practice with SSRF vulnerabilities? Thanks in advance
the cousin died.. and you wait for his recovery?
Hello any one wants to play ctf or compitition
Is there any one having there own ctf
We do compitition
Yes his body is in the river we have professional divers trying to recover his body.
Hello everyone 2 months ago i searched for viruses on my pc via Windows Virus scan options and found this one which removed instantly as well. My pc still lagging and being weird after it, tried to scan again all scan options but didnāt found anything. Is there anything else i can do before its worse ? The virus was called āGameHack!MTBā
Helo
Ahh.. the recovery of his body.. not his health, I get it now
hi
I also want to play hackathon or ctfs
I really like
unfortunately you can't compel Apple to do anything, part of their reputation for being secure comes with no exceptions, if anything was tampered with there will likely be evidence of that left behind so don't worry too much there
Helo @burnt ridge
my bad wasn't replying to you lol, if you like ctfs there's a ton of online ones like picoCTF
I literally get bored on that š
Give me best thing like htb level
Can you accept the request of random guy like me ?
We can share information about hacking
are you needing help on something?
Yah
you can do so here, no need to be a creep twin š
this is what this channel is for then
I dont want to be
nonetheless, whats your issue?
Where are you from
I want to do competition on ctf
With someone
the US, you?
India
and doing CTF competitions isnt all too common in here
What's ur name btw
Only nomi
Ohk
Anyone can help or advice me?
what do you need help with?
This here
Means there is no ctf compition avail then what I am doin here
most likely just aging of the device, worst comes to worst just wipe the device fresh
Itās new, 1yo
do Windows+R and type shell:appsfolder to see if anything is running that shouldn't be, like Nomi said tho Windows ages fast
the specs?
this as well, thanks angelina
is it gemini ai really able to achieve decent vibe-coding(š ) to make simple apps?
4070Ti S and 7 7800X3D
peak pfp btw, reminds me of frieren
then do what angelina said yea
gemini has gotten pretty decent at it yea
I recommend just learning to code, try python as it's easy for beginners, what do you want to make?
I donāt really know what shouldnāt be running
just look for things that stand out and tell us, or you can DM a screenshot to me if you really wanted
you can even google everything that shows up, a lot of windows things have really sus names but are harmless
this ^^
Are you chat bot or something
Alright thank you
no im pretty real lmao
Then why r you not answering me
answering you where?
On ctf
because im not in that channel rn
dj app
with basic features and controls
Are you in Cyber
Also no one owes you a reply
yee
Then
i have koala sampler and it is kinda really sick to just mess around
so my goal is just try to rip off their idea but like more basic ui beginner freindly stuff
and also free
Are male or female firstly i want to know cause the intrest is differ based on it
.
lmao are you good?
You sound so juvenile..
Bro
what
try pygame for audio playback
i ain't allat
What is yr age btw
147
I said age
yes
Ok
hes gotta be too young to have discord
fahhhhh
Yah how you know about that
I assume he's just ESL
Idle chitchat goes into #š¬ć»old-gen-chat btw. Don't spam in the #š„ć»help-me channel
repestfully whats esl
yeah maybe
english isnt ur first language
Ok and srry for distrubance
You should check out the #šć»rules btw
.
koi na koi na chill
please specify what help you're looking for, or go chat in #chat instead
so i wanted help with some things like is blockchain and security connected in any way?
connected like car and velocity, yes. for a better answer, maybe expand on what you mean when you say security?
cybersec
what are you actually thinking of when you say cybersec?
also, have you read https://en.wikipedia.org/wiki/Blockchain ? to make a very long story far too short, blockchain gives tamper-evidence at the expense of certain kinds of secrecy
i think buout vulnerabilty in nnetworks and some protect it and some harm it
genuinly really a great quetion thank you for asking that
now your question is starting to get answerable! what does vulnerability mean to you? like, if you hear "a vulnerability got exploited", what kinds of possibilities come to mind for what went wrong and what the consequences were?
Hi
I asked in a different chat but not much help
Im 25, FE dev, makin my own first fullstack project
But i dont have much knowledge when it comes to going public and hosting an app online
Current setup is FE angular, BE nest.js and a local db running in docker desktop
Based on a few quick chats with my coworkers and a few chats with ai i was recommmended to use vercel (some said only for FE some said for both, so yea idk what to do) and a docker on some serverhosting site or to use supabase
Does anyone have the knowledge/expertiese in these kinds of thing
Im not that close with my coworkers to ask them such a favour since we are all remote and maybe seen each other once or twice in the last 2 years i was there
And we are currently burning because we also gotta hit prod in a few weeks
Is anyone down to help me in any way shape or form
Then i can be more specific
Thank you
Is this a work or personal project?
lemme have a moment you really are a great person to talk to i swear
after arturvm you are now my fav
hey bruh just thought bout you
free plan of vercel is a good place to start; any big hosting platform with a free option will have decent beginner docs available. Assuming it's a personal project that you'd like to talk about in interviews, "i tried vercel and found that it wasn't a fit for my needs because ... and that's why i switched to ..." is a good thing to be able to say about it, shows you're learning.
some doors of network were not secured or musdtve have some things that they didnt fix and it is now a way for other people to get into the system and getting the data and they exploit it
Hi everyone
Does anyone here know about ai security?
I want to ask how I can be one and be more advanced in this field
if "insecure" means "other people can see what happened", then blockchains are very insecure thanks to their tamper-evidence... if you record some transaction to it then change your name later, for instance, there's no changing the transaction later
be one what, precisely? an AI? a professional in a certain job? a hobbyist capable of certain achievements?
Work in this field
have you found some job postings for the kinds of role you'd want and looked at what background they require?
Yeah I need to know what should I do to be one ... certain training or just gaining knowledge
i mean ive heard block chain data is very hard to tamper
Hey man, I appreciate you'd like to DM me about this, but let's keep the conversation on this channel.
pretty much impossible I think because of how it works
It is. You'd have to control the voting process to tamper with the final consensus on a transaction (at least on BTC, haven't read the protocol for other currencies).
good point, are we talking cryptocurrency on blockchain specifically or just blockchain as a general idea?
because the proof of work element to doing currencies on the blockchain has a whole other security profile
but to do that someone have to control majority of networks and recompute the blocks right?
i am talking bout tis
Yes, but BTC has safeguards even against this. It's what's known as Byzantine-Fault Tolerance, where you assume the discrepancies on a distributed system aren't just errors, but malicious.
and pretty much we can say that blockchain is tamper evident rather then absolutly untouchable
If you're interested in that, here's the white paper: https://bitcoin.org/bitcoin.pdf
It's not a heavy read. Much easier to understand than many other papers.
yeah like when large no, of networks are comtrol then thats a malicious act
okay ill go throught it then
Yeah, if you can, print it and read it with some snacks, lol. Best way to read a paper.
yessssir
Hello
to what?
acer smartchoice ALG i5 13th gen with rtx 3050
iāve heard different reviews about acer
is it worth it?
I have an acer aspire and really like it
uhhh just over a year I think?
acer has a slight problem with overheating and the fan sounding like a jet engine but that could just be me and not the laptop
not over heating, it just gets a bit hot
valo side effects
i live in india
would that be an issue?
no?
worth it for what? also, new or used? what minimum specs are you targeting?
ik how that sounds
i just overthink a million things when buying something for myself
new
iām a data science student
in inclined towards specialising in AI
but not too sure about that so
new is rarely the best bang for your buck if you're economizing -- it's often much cheaper to get a used machine with most of the specs you want and then just replace the battery if it's old. but if you want a warranty or w/e that comes with new, that's what you're paying extra for
I keep hearing that "refurbished" means trash in india though
if you've got a .edu email, you can (probably) get a lot of free compute in other places, so you may not need to carry around a machine beefy enough to do real data science on
I personally agree with poma though
i searched
but itās too hard to find used ones with graphic cards where i live
i have the perfect deal of a asus tuff laptop but i was a day late to finalise it
the real student laptop questions imo are around battery life and weight, as that's where a lot of the wrong-laptop suffering comes from
i'm on a thinkpad with dedicated nvidia graphics and it's overkill for what i do with it, but it's so heavy i wouldn't want to commit to carrying it around constantly
battery life is a big one, I find that I don't even need my laptop for most of what I do university-wise and I spent a lot on this one thinking I'd use it more š
also consider whether you could meet your graphic card needs for cheaper by building a desktop and remoting into it from a smaller laptop; your living situation might not be good for that... but if it's an option, you can get more graphics for less money in a pc than a laptop
these are all valid points actually
and in turn me questioning my decisions up until now
yeah, start by thinking of the exact problems you're trying to solve and all the different ways you could solve them, before picking which one way will best meet your needs
ASUS TUF are legendary for bad linux support in some of their models:
back when i was in school i also liked using the cheapest laptops i could get away with because it hurts less if they get broken or stolen out in the world
i donāt think i can get used specs for a pc
P series? š
"p"recisely =)
carrying it to school is not that big of a problem for me ngl
iām just trynna future proof it
idk if itās overkill tho
you can't find some gamer who's upgrading their setup and buy the old parts they're replacing??
whether or not now is a good time to get a new laptop and commit to being stuck with it for 3-4 years depends on what you think the price of RAM will do in that time frame, among other things... market is weird right now
honestly for data science branching to ML, an i5 processor and 16GB ram as a bare minimum and i7 and 32GB recommended... laptops only have a lifespan of 5-10ish years tho so don't worry about getting a super expensive one
india, tooo many people looking for something like that
hikes the prices up
but doesnāt hurt to look so iāll look around if i can find simmering
office365 pls??
yeah fair, and step 0 is figuring out what compute your school gives you for free
Either buy it, or use alternatives like libreoffice
Hey Guys I'm pretty new to this server. I was just wondering how can I join different voice or chat channels ?
it shows you the channels on the left and you click the one you want to open... you won't have permissions to do everything in every channel when starting out
Okay thanks, I was just wanted to send message in a channel and it says i don't have the permission for that
Is it a question? Or just trying to start a convo.
Most people are having convos in here #š¬ć»old-gen-chat
that's the expected behavior, check the rules and channel description if you're curious what's required to be able to use a given channel
It was both š
Hello guys I need help with tracking an iPhone using the IMEI number , is it possible to track it ?
Tried that but didn't saw anything related
possible, yes. easy, no. if you're trying to do something legal here, https://support.apple.com/en-us/101593 should solve your problem.
Hello guys I'm from Kenya there's a mobile money transfer app by the name mpesa. It has a mini app inside it named M-Shwari for savings and loans with a loan option I'm trying to find a way of increasing the loan limit not the legal way anyone with an idea of how to go about it .
Nah Iām trying to track it because my friend has been missing basically gon Mia and it used to be my phone so I have the IMEI number for it. Thatās why I was asking

Hello everyone! I have a question:
Is Phonebook.cz working for anyone? It tells me to sign in SSO with intelx account and then shows:
Single Sign-On (SSO) - Access Denied Your user account does not have permission to access the given application. If you believe this is an error, please contact
I tried emailing them, but got no response. Any similar alternatives? I'd really appreciate if someone could try running phonebook and SSO with intelx on their end and share whether it works or not. Thank you, I appreciate any response or reply.
Im not shadowbanned anymore
We can talk tomorrow if thats fine
Its getting late and im burned out
Is that fine?
GUYS
Need help
Right now
Please
Someone is hacking my account and they even got my parents account
They can access banks and social media accounts
Pls help
call the authorities
Sure, no worries šš½ rest is important.
well if they can wire transfer from your bank accounts... yes
call the bank block the accounts and call or go to the police
They can access socmed
Whats a good defense
Js call the authority again?
office365 anyone pls?
you said they have access to your accounts you can't do anything about it the damage is done you have to mitigate
if you are not locked out of the accounts change all credentials
enable 2 factor authentication
call the bank freeze the money isthe most important thing
My parents dont enable 2fa
you do it for them
Right now?
Wait
But my parents
Turned off their cp
Like as in turned off
@hallow bramble is that good
Or nah
Celphone
ah
that's good only if they have access to the phone itself
if they have access to the ACCOUNTS it doesn't matter
change credentials, enable 2 factor authentication
freeze money
doneeeeeee bruhhhhhhh
Hello guys, im trying to intercept the Vinted app network traffic of my iPhone by using Charles prox. But Im getting some issues with cloudflare.
CF seems to detects the MITM and give me a turnstill challenge when the proxy is enabled (via iPhone wifi settings). But soon I'm disabling the proxy, no CF challenge.
Someone have an idea of the reason ? Is it a question of SSL certificate ?
If you need more info, dont hesitate to ask
@sharp briar It's critical that you call the bank. Most countries have a regulatory body that requests evidence in investigating cases like this. If you establish with the bank that your account was hacked as soon as possible, you might be able to get the money back (depending on the financial system of your country).
you could make a VPN with OpenVPN and run a VPN server on a host you own, and then connecting the iOS device on the VPN
Bro
This hacker
on discord
K ty
is someone willing to help
And also, don't feel guilty. I worked anti-fraud for a while and it's never the victim's fault.
enyone
okay Im gonna try, but whats different with proxy ?
this is important
once the device is connected on VPN, you can make iptable rule to intercept the requests with burp suite
you need to use burp suite's "invisible proxy" and run it on port 443
Alralr
Bro
A bigg one
š¤ thanks man
It's usually multiple people in organized rings. And they do use a combination of social engineering and technical stuff.
Okayokayy copy
anytime bro, the rule should look like this
sudo iptables -t nat -A PREROUTING -p tcp --dport 443 -j DNAT --to-destination <your_burp_host>
Im rlly nervous
That sounds really serious but, unfortunately, I think the rules prohibit people from requesting hacking other people. It sounds serious enough that you should go to the police as soon as possible.
It's okay, man. We all feel intruded upon when that happens. That's perfectly normal.
it will be alright
highly unlikely
they are but his no in prison and they cant to shit and he is still messaging kids
Damn
Buhtbro
Listen
whenever my parants call to my auntie
It got disconnect
Like
10 second talk
Then disconnect
Know what im sayibg?
And it keeps repeating
We've taken down a few fraud rings at work, but it takes a looong time and a lot of cooperation with the authorities. Which is why it's really important you talk to the police.
Okayokay
Try calling from a neighbor's phone.
Write down the numbers in paper.
And turn off your phone. Change as many passwords as you can.
Bro
This hacker
Is literally CONTACTING EVERY MEMBER OF MY FAMILY
Yes, they usually take over WhatsApp, etc, and then pretend theyāre you, to keep scamming your family and friends.
If you can let them know that this is happening in some way, that will stop the damage from spreading.
Change your password as soon as possible
Yes exactly
Okay
Iāll also tell my parents
To
Announce that
No 1 message any1 when sending money
I gotta go, sorry about that, but keep in touch with your family members and tell them to also change their passwords. Tell them to not fall for any messages they get from your accounts (and your parentsā)
And do call the police and your bank
If you still have access to your email, change that asap as well @sharp briar
In fact, thatās probably the first thing you should change.
What email
Passwor
Or everything???
@torpid jungle
Just your password, and enable 2FA
can anyone suggest me any concept that i should learn by your knowledge
i mean just tell me the name of the toic
topic
and i did read that bitcoin file you gave thanks it was so much helpful
read the rules, no vigilantism
They are here #šć»rules
#3 would be the one being referred to.
You can also read our #š„ć»info to find out what this server is for.
ya i read the rules but i didnt realize asking for help would triger some dudes
sorry
@hallow bramble im back with some bad news, ive tried with burp with openvpn and iptable routing etc, ive installed certificate DER properly on iphone etc but same issue, CF detects it
what language is this app written in
with the Support invisible proxy option also
and framework
no idea :/
what do you see on burp
is it failing the TLS handshake?
missing JA3/JA4 signatures?
non its 403, the handshake seems to be done
you could hook the process with frida and skip the SSL pinning steps
ah
ok
so it's not the pinning
must be bot detection
on iphone I dont have this issue of certificate pinning compared to the android app
yeah
maybe it detects the burp's TLS ClientHello
is it app-dependant? can you proxy the android app?
yes maybe
what do you mean by app-dependant ?
wait I'll try ^^
oh, i just saw an error on burp "[2] The client failed to negotiate a TLS connection to www.vinted.fr:443: Remote host terminated the handshake"
yo wsg guys
can someone help me to know which area i wanna opear?
fuck
I'm afraid I don't have an answer I would have to test myself in an attempt to bypass it
:/ it depends on which country you are, because vinted setuped different CF rules on their domains (.com, fr etc) and in france its more strict
@idle sequoia @hallow bramble
Please read our #šć»rules
We do not discuss attacking networking that we do not own here.
Hello fellow tech savants how does one stop IMSI tracking
Hey guys so I have this a little bit older laptop(running windows 10) it feels kinda slow and I dont play any games on it so I wanted to install linux, the thing is I have no idea which distro
Ubuntu
What do you want to do cyber security, a privacy focused?
If you never used Linux and want to learn start off with ubuntu
My first idea was arch but it kinda feels unstable like chatgpt says I need to make backups need to set up everything, like thousand things and still for it to be unstable?
Well on my main PC I have win 11 as main OS but Kali linux on VM for cyber-sec
So what do you want to use the second one for
So I had situations where I am not home for longer period of time so I need it for some coding, maybe even doing HTB
Hello guys
Good evening can someone show me how to create data packages for people to buy
"data package" could mean about a dozen different things. start by finding an example of the sort of thing you want to make, and read the terms for whatever marketplace they tend to be distributed on.
I meant how to hack and have more data
Boundles
Hm isnt the arch faster than ubuntu
you mean you wanna violate your cell carrier's terms of service? see the server rules about doing crime.
gentoo ricing community gets it going faster than arch, if that's what you're into lol
subjective speed of a distro depends heavily on what desktop environment you're running though
From what people say yes but from my own experiences ubuntu has been working really good
Never tried arch but get a second opinion
personally i've had 0 problems on debian lately (picked it a couple years ago because ubuntu isos ship with a bunch of stuff i didn't need)
I. Don't really understand you
arch is highly educational, builds character
So overall either Debian, Ubuntu or Arch
I think arch is your best bet
I would look at what each comes with so your not downloading unnecessary bloat that will slow down your device
Only reason I feel like not chosing Arch is I feel like I will mess up something and that I heard I need to take care of absolutely everything
Like what
if you want a highly educational hobby, install arch. if you want a laptop that usually boringly just works, use debian or ubuntu.
You will probably need to maintain it
So you will learn terminal very well
And also Arch overal
Overall*
packaging is jankier, so you'll install more things from source and get hands-on with their toolchains... which makes it a lot easier to modify those things if you want to, so not all bad
So just downloading pkgs
Okay I will probably go with arch then
utilities that ship with it do a bit less hand-holding, so you're at higher risk of say... breaking your whole networking stack a little while trying to connect to wifi or something... but then you fix networking and feel like a dang hero so it's not all bad
Hey guys! So my cousin gave me his old IPad mini and he gave it to me without knowing his old Apple ID and I was wondering if anyone could help me? Thank you š
Thanks for help guys!
you could try something like https://www.solveyourtech.com/how-to-factory-reset-ipad-without-apple-id-password-a-step-by-step-guide/, idk if it'd work
Okay Iāll give this a go! Thanks
Ggs malicious link
lol i was being polite and not using lmgtfy
bro really said "I think youre confused" š
This article is AI generated, so i don't think it will work.
bring it back to your cousin, connect it to the internet, and reset the apple ID. He can then remove it properly.
oh, yep, i ignored the slop smell while distracted by the stench of apple ecosystem, my bad.
Hey, I hope you guys are having a good night. Iām trying to reach out to see before I go down the rabbit hole but I have a system here thatās running Kali that they forgot the login credentials for currently at my disposal I have my own live boot USB of Kali. Is it possible to potentially see the usernames and hashes that they created on the system after I live boot onto the computer?
Yes
depends on whether the disk is encrypted -- if not, you would expect to be able to read the filesystem
Okay so i was able to grab some hashes to try and crack
Hi
I'm attempting to switch my laptop from Internet to ethernet
I'm using a tp link adaptor for this
For some reason whatever i do
Whatever command i use in cmd
Dhcp doesn't work
And keeps giving me "unidentified network"
Hi, can anyone recommend a great cybersecurity project for a ZimaBlade or Raspberry Pi 5? I already installed Kali Linux on Zima, but it's too laggy to use daily. Btw already installed Failproof Home Lab: Redundant Networks w/ ZimaBoard, Kasm & Tailscale VPN
https://youtu.be/Wj6I6KFwl6s but better to host it on a hosting service to hide your IP address/identity
Hello
DHCP is not enabled for "Ethernet" Windows 10 Network Diagnostics Troubleshooter.
Unidentified Network No Internet access
Solution: Manual fix - open control panel, go to network connections, where you can see ethernet adapter. Right click ethernet adapter, go to properties. Double click Internet protocol version 4 (TCP/IPv4), Select "Obtain an ...
Hello, does a cyber security efficiency certification have any value?
Hey
Be a bit specific
I guess essentially it covers topics on how to identify phishing emails, how Management sees cybersecurity, how to create a security plan, as well as a a cyber report, a bit on how to use metasploit and some more things as well
Then this is expected behavior.
is there fix for it ?
There is no fix because there is nothing wrong. Your virtual machine runs on virtual hardware, not the hardware you have built in
There is such a thing as 'passthrough' but you software is probably not going to allow that
It must have a name right
Do it though there is nothing to lose
I want some help regarding blackmail.
Please dm me for knowing the situation deeply.
Go to the police
Every country has some numbers
Where they will help you and your name won't go out
That could be the smart move
Aight
its literally called "cybersecurity proficiency certification" it says the topics are " Cybersecurity Threats and Vulnerabilities | Cybersecurity Awareness for Businesses and Employees | Cybersecurity Solutions " all 3 are different modules and you get the cert after completion of them all, it is offered at my local university
Do it
okay thanks š
Yeah uhh
Dhcp is usually enabled by default
I think the problem is from my isp
Does anybody know how to use wireshark?
If youāre using IPv4 like the vast majority of people, your ISP doesnāt even see your internal IPs, so itās probably something related to your machine. Otherwise your other devices on the network wouldnāt be online.
Youāre probably forgetting to enable or disable one of the network interfaces. Or your interface is not configured right.
What do you mean when you say that DHCP isnāt working?
do you think that asking if anybody knows the tool will get you better results than asking a more specific question like "i'm trying to do x in wireshark and i looked it up and it said do y and i tried y but z happened instead"?
if someone knows how to do basic stuff and also understands what the words in the interface mean, but isn't up to date on advanced features or recent developments, would you say that they "know it" or not?
It's ethernet 2 and I also did that for like 50 times now
And I'm saying dhcp ain't working because I'm not receiving an IP
That's why I'm assuming it's most likely a problem from my ISP
Or wiring
My fault, what i want to understand is how do you identify the keyword contained within thats within the transaction when analyzing a files using wireshark? Iām told to identify the code contained within the āā without the quotes themselves, and i dont understand
Got it. Your router is the DHCP server on your network. Your ISP uses other things (like PPPOE) for IP assignment, so donāt worry, your ISP is fine.
Whatās probably happening is that your interface is not configured properly. Do you know your routerās IP address? (Internal, donāt tell me your public IP for any reason whatsoever).
that's the kind of instruction that goes with a diagram or code sample, is there one nearby? what exactly is telling you to identify the code etc?
like, you look around till you see an open " and a close " and you try to find out what's in between them, when you get instructions like "identify the code contained within the " without the quotes themselves"
Update
I fixed it
Called my landlord
Told him to restart the router
Frikin worked
Nice. The solution to most problems, lol. DHCP is weird; works most of the time but it sometimes fails in weird ways.
Yes, but it guess itās whole process because the file is encrypted so im pretty confused since cybersec is all pretty new to me still
....what does a file being encrypted have to do with the network packets you're looking at in wireshark
Yeah
(this is a sincere question, btw -- i think you may be having one of those questions where figuring out what you're actually looking for is all it takes to make the wireshark documentation make sense (i assume you've already checked the documentation))
Heyy, can someone tell me a way to get apple music for free? I cant redeem 2 month USA offer because im from another country
No, we don't talk about things that violate ToS.
#š„ć»info #šć»rules
How does it violate? Im not doing something bad. Am I?
Listen to yourself asking "How do I get a paid service for free"
what is rule 3 of this server and how does it relate to your question?
Yeah, that offer is by apple itself available
But for USA only
Wait , I will show you guys
if apple makes an offer limited to a specific geography, it's not illegal for them to choose not to extend the same offer to people in a different region.
Yo.... doing 100 days of hacking
Are you trying to getting an offer by illegally saying that you reside in the country?
And there you go you have your answer š
and it's not generally legal to lie to a company to get them to give you something for free that they wouldn't want to give you if you told them the truth.
I am from USA, but Im currently on tour outside.
And here I dont have my CC
Wait until you get back
So once you go back try again
Welcome Anon!
Thx
Have any questions lmk homie!
Okie
if apple has a US address on file for you, you might be able to contact support and ask them nicely to apply the offer to your account
You think they will reply? On mail
actually it'd probably be billing; whoever you contact about payments to them is the department that's incentivized to help you end up paying for an apple music subscription because you loved the free trial so much (if you pay them nothing, it may not work as well)
By The Way thanks for the suggestion, I will try after going back then
Yeah, great suggestion
Do any of you guys use steam?
Im used to Microsoft, where if you call and ask for support, you just get a slow motion bill gates laughing sound clip
I do, but on Linux.
I wanted to ask something about denuvo
I own Black Myth Wukong
But due to its Denuvo, My laptop is not performing well in terms of fps
Can I play it without Denuvo? I own it on steam
I doubt you would be able to remove it, since it would be integrated into the binary.
But we also don't talk about breaking game DRM/Game Hacking here. š
I get 60fps thru fg but it still feels like im playing at 25fps idk why
What do you talk about then?š
what are your system resources looking like? could it be throttled by limitations on ram or cpu?
16gb DRR5 Ram
Ryzen 5 6600H
RTX 3050 4gb 95W TGP Laptop GPU
VRAM issue i guess
DRM might taking it too
People complain about how hard it is to get a job in CyberSec, sometimes we express despair together at the state of the world, and other times people come into the server asking for free stuff or to hack other people.
I play on dlss performance alreadyš
Its in our #š„ć»info
But CyberSecurity. So Networking, Programming, OSes, encryption, red/blue team tasks, server hosting + protection, how tech works in general, and a ton of other stuff
Im planning on starting my journey to cybersec this week any recommendation on which is more informational or would help on my CV?
htb or tryhackme?
