#👥・help-me
1 messages · Page 133 of 1
No, after 3 incorrect attempts , restart is needed
yeah, you are not going to brute force that
Yes, I think so, trying to do something for fun, but looks like it went too far, even though it is only 4 or 6 long pass string
Thanks 🙂
hi How can i get acces to see the lives?
hey everyone learning owasp top 10 is fair enough for doing bug bounty ?
Hello guys
I'm looking for sdk source engine files
lives?
Guys which version of blackeye works best with ngrokV3 ??
All good repos on git are taken down 😑
Ngrok link not generating!
Why do you even want to use blackeye in the first place?
lol 😂.. why Y that Q ?can u put me on ?
That tool is dead and I don't see a good reason why someone would use it for any legitimate purpose.
Ayt ..
i'm sorry i mean live hacking it's locked for me
No idea which live hacking you refer to, but if its anything on this server, then you need to at least reach lvl 1 to join voice/video channels.. just talk a bit in #💬・old-gen-chat
Guys can anyone help me making my own executer for any games idk coding or anything just need a sensei so I could hack my favorite games

One message removed from a suspended account.
One message removed from a suspended account.
Curiosity -> more curiosity
Well technically speaking you need to have grip over few IT fundamentals like networking, programming and OS related stuff
You can start with doing free modules or paid in THM or better way is to take the heading of those rooms and search for free & better alternatives
Like for linux fundamentals you can use linuxjourney
For learning web exploitation you can use portswigger
At the end, just look around the Internet! Clear your fundamentals and keep moving
One message removed from a suspended account.
Hello, anybody got resources for Data analysis?
hey guys im new to this stuff i wanna try using arch linux and having rice hyperrland and all that is it possible to do it through a usb as i dont wanna use my laptop disk to dual boot but i dont wanna errase the data of my laptop i want everything to be saved on the usb when i use it with wifi please let me know if its possible
If at all possible - use a Virtual machine instead
Live usb with persistence is prone to become clownishly slow over time and is not meant to be a replacement for a real installation or VM
Curious....
Is there a space for mentorship or apprenticeship in this field?
There are paid courses, that's about the extend of it
There are many mentors on the internet
You probably won't need one
Just learn and never give up
In all the years I have not once seen someone asking for mentorship and another one saying "yes"
Hello I'm looking on how to get vulnerabilities on a debit card
yeah, it usually happens more indirectly. like, you start talking about your projects, or join a chat with more experienced people and start asking the right questions. then, someone takes notice of you, talks to you one on one, and gives you good advice here and there. that's been my experience anyway.
I'd say you should look elsewhere #📜・rules
K
I appreciate it. ✨
I've been gone from the tech world for so long that I feel "out of the race."
I'm excited about learning network engineering and how to even repurpose tech/hardware. I'd like to try using my skills for radio n my sets. I feel like its so vast that I get a bit overwhelmed with the infinite possibilities. =w=
I'll keep learning tho! It's a great feeling 😁
it's never too late. i vanished for like 10 years and came back as well.... not too bad to get back on the bike. hmu if you have any questions.
Hello
hey @everyone, im a third year college student tryna get into cybersecurity, any advice on how i can deepen my learning and understanding of the field on a daily basis? also do you know of any good programs that might be helpful?
TryHackMe is really good for starting out. Hands-on experience is very important, which TryHackMe will provide. I recommend subscribing if you can afford it. It's about $20 USD/month. They have a free version, but the paid tier allows you to follow "Learning Paths". They are very beginner friendly and can teach you everything from practical computer skills and networking all the way through offensive and defensive security. That will probably keep you busy for a very long time. After you get bored, move over to Hack the Box.
thank you, I appreciate you taking time out to reply me
ive been using tryhackme for about 2 days now, I was thinking of upgrading to the premium
my pleasure. it feels good to give back.
i highly recommend it. that tier will give you the paths, right?
yh it did say so in the perks
for sure. i just checked. there's free, premium, and business. premium should have the learning paths. definitely worth it.
bet! thanks once again!
yo
Hey, can I get help with something? On cyber security /social media why shouldn’t you save your passwords on your iPhone? Can someone put me in the direction of a website that can breakdown everything for me to teach me how to keep everything more secure
I don’t want to pay somebody to help. I just wanna learn how to do it myself.
At this point, I’m fucking deleting it all
But its good to know what to do
Quick question, hosting a db in supabase is safe or it is easy to vulnerate
What’s a good laptop to have for gaming and programming purposes need to get a new computer?
Anything that is from Lenovo is good.
Then again it depends on the budget you have.
can someone help me with some code?
Can't go wrong with a Lenovo Thinkpad
Thanks I’ll do some digging
But it's not really for gaming
Thanks what I was thinking
There would be Lenovo Legion which is more for gaming
Thanks for advice
if you paste it in here and explain what you need help with, anyone who might know can help
its sum personal
the server's rules are that questions are meant to be posted in this channel, not dm'd
where
in this server
We do not assist with things that are unethical or illegal, if you are trying to hide it from the FBI that leads me to believe it's one of those things.
beginner thing
hlo here
if its some beginner thing then it should be asked here. if you have a problem with that you should take your question to some other server
its hot here🥵
whatever dude good luck with getting someone to help you
What are you stuck with?
idk you might not want to help me
just like obsidian
Oh, what is it about Obsidian?
he think i am on some illigle shi
don't know he refuses to ask in here, he just wants to dm someone
Ooh, I thought he meant Obsidian, the software
said hes scared of the FBI
lol
And I was like, “man, I love Obsidian.” But now I understand, lol.
damn you dont love me bro? I thought we were cool 😭
Hello everyone , hope everybody is doing good
Iam starting my cybersecurity journey , have done introduction course by netacad and will do networking basics
So any guide related to basics would be appreciated
Thank you
😂 Yes, bro, I love you.
i am just learning
Well, is it actually illegal?
not really its ''learning"
so to know and protect right
“Not really” often means it is
Okay, well, what are you learning?
What are you trying to accomplish with Python?
Ah, so you’re trying to understand what it does?
Python doesn’t change between minor versions and the switch to v3 happened many years ago.
Here, dude.
I'd be cool if there was a question somewhere in this rambling
@rain loom What’s your concrete question?
idk it feels illigal

then just ask the technical parts
nobody can answer a question you won't ask
nah il be banned
bruh and you were giving me shit
where da real hackers at
If you stick to the technical parts, as @haughty dawn is saying, maybe we can help you.
anyone who helps you with blatantly illegal questions on a heavily logged platform like discord is probably an idiot
So it is illegal
doubt they understand any of the technical parts and are just hoping someone will do it for them
Bro
its called ethical hacking dude tons of people do it
If you stick to the technical parts, and frame it within an ethical hacking context, you can most definitely do it. I’m learning it right now!
it's easier to learn hacking now than it's ever been
Guy suppose there is website that is infected but we use adblocker. How possible is it to contain malicious javascript/injectors?
my extension isnt working
that's not a question
🐣
this just gets better every message
hlo
you need to learn how to formulate and ask good questions. if you can't do that you'll never learn how to hack
at best you'll be a skid running premade tool commands with no idea what they do
most people understand the concept of a question though
tons of beginners come in here and ask good questions
if we don't understand what you need help with we cannot help you
that's not a hacking-specfic thing, it's a life skill that applies almost anywhere. but hacking at it's core is asking specific questions via technical methods, and using the answers to understand the structure of a system and how you can exploit it
alright they're just trolling at this point
Sorry to butt in to your guys’ whatever it is but I’m learning C# at the moment, mostly to do with financial stuff but I’m just wondering what the best path for me to go down is, this is what I’m doing at the moment;
Classes & Objects + Properties
Methods + Parameters
Collections + Loops
Function extraction + combining all
Just wondering what’s next? I figure these are the only real things I need to get a good practical understanding of core C#.
Another question is what else can I do with C#, sort of just seen it’s mostly for websites and stuff like that.
I do have a big interest in privacy and legally finding things that aren’t visible sort of like a PI or something like that and just checking that I myself have not been compromised in any way.
I would say after you complete those topics you listed, that's a good time and amount of knowledge to put together and try making some of your own projects.
Yeah that’s the plan, I’m building something with someone now, but in the more fundamental side so I thought I’d start to learn code to help out and then expand.
Do eventually want to get into hacking though (ethically)
C# can also be used for making desktop applications, if that's something you are interested in.
yeah it can definitely be used in hacking stuff too for creating your own scripts and things like that
a lot of people also use python for that so if you're interested in learning another language I would go for that
Yeah I was just about to ask what language should I learn after. Thanks.
Also, if you know, what are some of the absolute best ways to keep my privacy and make sure everything is secure. I already know strong passwords etc but just some other things that I might not know, have any?
a couple of things off the top of my head are 1. limit your online footprint including the amount of personal information you put online so things like birthdays, phone numbers, etc.
- when you connect to public wifi utilize a VPN
if you use social media like instagram or facebook make your account private and carefully vet who you allow to follow you and access your content
those are just some super basic things to think about
Is there a way to check if my number or things are on the web. I use a VPN pretty much all the time, use Bitwarden for passwords, proton mail for emails things like that. Account is private on everything and I limit my social media a lot. No usernames are the same either.
Thanks though man, appreciate you!
for phone number you can generally just google your phone number and there are different websites that will show a name linked to them, if you do that and nothing is obviously linked to you thats a good sign. and for emails there is https://haveibeenpwned.com/ which will show you if you're email address has been involved in a data breach
Thanks. Two data breaches on email but I pretty much knew about them anyway and they were two years ago. Phone number nothing showed up but I remember once this person I met got my phone number, we had no mutuals, only 8 people have my phone number and none of them knew said person. Just wondering how they could’ve done this. They 100% had no hacking skills or anything, was it an app or something?
hmm yeah I'm not too sure how they wouldve gotten it wihtout hacking or finding it on one of your profiles
Super weird. Usually with any sign up I use a burner email and a Hushed burner number.
Got so many questions lol. dming is banned isn’t it?
you can dm people if you have their permission to do so
I'll be honest though you're more likely to get good help by using the server since more people with more skills can see and help then just defaulting to asking one person
Yeah you’re right. I need to learn more C# and python than ask questions because I could probably figure them out myself after enough experience.
Thanks though again.
no problem good luck
True, 5-6 years ago, people searched for every piece from everywhere they could.
now you can learn it from paths etc, everything is organized
much easier
you just need to sit down and learn
then practice
i need help
contact authorities
can apple card be traced
Yeah it can actually
It is unlikely to be able to trace anyone like that.
People DMing you about this are lying to scam you.
We ask that questions like this not be asked here, because it shows that you could be an easy target for someone else.
Don't talk about it more here.
What extension?
Which account
Hello
forgot what you got answered the last time about game cheats?
#👥・help-me message
can someone please tell me the names of some good VMs
VirtualBox and VMware are popular
sorry can you rephrase I don't understand your question
noice auto timed out by the bot thats sick
Please open a #📩┃ticket
do they come with any plugins already instaled?
can anyone help me ive been scamed
what happened?
a crypto scam i put money on a wallet and i cant get it out and just found out it was a scam from some searches
shoot dude. yeah. i would contact the service you used. hopefully it's a reputable vendor with customer service, etc. if not, like, if it's something shady, you may just be boned.... unfortunately.
the customer service is very persistant i was hooping to find someone that could take the money back from the website
haha, sorry for laughing, but you're probably not going to find any takers. and, if you do, they're probably scamming you too. that sort of things is very complex and also potentially illegal. your best bet is probably contacting the crypto service you put your money in or used to transfer it. they might be able to help. i'm not familiar with other resources for this though...
@final tusk I appreciate the DM, but i've already given you my advice on this. i have nothing more to say really. i wish you the best luck, but there's nothing else i can do for you.
if you have more questions though, feel free to drop them here.
can someone give me good recommendations to learn coding APIs in C++?
how do i setup more advanced firewalls and protection systems for myself?
That is something a search engine should be really able to tell you more about
this can also get quite big
Hey
Hello everyone, I'm really new and just dropped into this Cybersecurity field.
I've seen there are 2 well known website for learning Cybersecurity like THM or HTB, which is the best option for beginner?
tryhackme
Do you have the wallet address
Hey I need somehelp
Just ask what you need help with.
I was AK Ng and f you can help me networking resources like books pdf I can have
hey i need some advice. i started my journey in cybersecurity a few months ago iim curently doing foundations of cybersecurity course from google on coursera. I want to choose the field which will allow me to do remote jobs from home. As im from pakistan my goal would be to earn in us dollars by landing a remote us job. which field should i go into please guide me according to what you guys think would have more oppurtunities as remote jobs
What is the need?
i just know that i wont be able to land a remote job if i do blue teaming correct me if im wrong tho
ask
ask away
well depends, for remote doing bug bounties is urbest bet
hey, remote junior jobs for cybersecurity go to a maximum of help desk or customer service, and it won't be remote all the time
sorry to tell you, you won't be finding anything that's 100% from home
many US companies wont pay the same and many of the US clients are requesting full on us based support here. Not saying its not possible but just being honest
Im 100% remote only i stay on this team. once i move to another team i could be asked to drive into the office
im not asking for junior jobs
landing a remote job will be my end goal not my starting point but i want to continue only if if i know that in future this field will give me a remote jobn
then i hope you have 5 years under your belt because you're going to need it if you don't have the oscp
maybe
what team are you on
or any blue teaming related cert
Security Analyst.
so a final question considering the remote job market which team would have better chances blue or red and if you guys know any specific roles in these please tell me that too
TBH not too sure. Using google aready has your data being used at a certain lvl. However if the passwords werent anything common you should be ok
Id recommend using a password manager like BItwarden
blue
More of a chance with blue team but like @lost vapor said its not easy
They basically stop transmitting to my understanding (i could be wrong) but it will hinder operational stuff
any time
Okay thank you so much but that answer is completely the opposite of what i thought. Can you guys explain why blue team would have better chance of landing a remote job cuz i thought a company would prefer an employee to do hacking from home instead of defending from home and i asked chatgpt about it too and it agreed
Good morning everyone
Looking for opinions on a situation I'm helping with (im a web dev):
A client had their phone stolen and needs to recover a specific video from their iCloud account for a legal case. The problem:
They have the iCloud credentials (email + password)
2FA is sending the verification code to the stolen device
The trusted phone number is no longer accessible
The client used multiple phone numbers and doesn't remember which one was linked to the account (only know it ends in 91). The number also wasn't registered under their official ID, so recovering the SIM through the carrier isn't straightforward
No other trusted devices linked to the account
Apple's Account Recovery process is on the table but looking for alternatives
Questions:
Has anyone dealt with bypassing/recovering access to iCloud in a legitimate recovery scenario like this?
Is the legal route (court order to Apple) the most realistic path here, or are there technical workarounds worth exploring?
Any experience with Apple's law enforcement request process and how long it typically takes?
This is for legitimate evidence recovery purposes. Any input appreciated 🙏
well the simple answer is:
it is out of your hand wether their account can be recovered, apple is supposed to be the one responsible for this type of job
Blue team is easier to teach IMO.
Red team takes in depth understanding of systems and is not a beginner lvl (nor is blue team)
Blue team skill gap vs red team is 2 different worlds most times. For blue teams you have generally a higher tech stack (of members with skills) that will fill in the worries and gaps of security.
Red team takes more skilled individuals and workflows that require certs or the knowlege of the materials (cpts, oscp, etc...)
yeah I guess I'll tell the lawyer to send a doc to apple requesting the recovery. We are all cornered up so that's why I wanted to ask a group of experts. Thanks for the input I'll update the team on monday
Hey guys i rephrased my question with chat gpt so you guys understand what I'm saying please read this and give me an answer please i appreciate you guys
The Question
"I am currently based in Pakistan, completing the Google Cybersecurity Professional Certificate and starting an on-site IT internship. My primary goal is to eventually land a 100% remote role with a US-based company.
I want to clarify that my main concern is not the 'difficulty' or 'entry-level' nature of a field. I am fully prepared to spend the next few years gaining experience on-site and earning advanced certifications. My focus is purely on 'Remote-ability.'
From your experience in the US market, which cybersecurity sub-fields are the most likely to hire international remote contractors? I want to specialize in a niche where working from home for a US company is a standard industry practice, regardless of how long it takes to master the skills."
Data breach bot or any free web?
My suggestion would be SOC analyst route, which usually involves larger companies to have 24/7 staff, where living in a different timezone is not as much of a drawback, but still you will likely not find a US based job, as lots and lots of people from your region compete for it.. but it makes you somewhat mobile as far as regional employment is concerned
What's your opinion about blue team as a remote job just give me a final answer of which team i should choose
Okay so that's blue team completely opposite of what the other people were saying earlier
Pretty sure its not completely opposite to what was being said before
Okay yea my bad okay thank you so much
It's also a job that lets you experience in your own lab relatively easy, and maybe offer services to clients on your own
Set them up with some open source SOC-in-a-box, offer to maintain and monitor it for a monthly fee
which, in turn, can get you documented experience in case employers are looking for that
And as I said, lots and lots of people from your region are going down that route already, might be able to organize something there
Hey everyone
I’m looking for some guidance regarding my Final Year Project (FYP) and thought this would be the best place to ask.
I’m currently a Software Engineering undergraduate, and we’re a team of 4 members with slightly different interests, so we’re trying to design an FYP that makes sense for all of us:
One teammate is interested in DevOps — deployment, CI/CD, maintenance, and delivering production-ready software
One is more inclined toward AI / ML / DL, especially applied work
One has experience in game dev / simulations (Unity, visual environments, etc.)
And I’m personally more focused on cybersecurity / system security
We want to work on something that’s realistic, industry-relevant, and also solid from a research/FYP perspective (not just a toy project). We’re currently exploring ideas around simulation-based systems, AI evaluation, and security, but we’d really appreciate advice from people who’ve already been through FYPs or work in these domains.
Any suggestions on:
Good FYP directions for a mixed-skill team
Common mistakes to avoid
How to scope the project properly
would mean a lot.
Thanks in advance.
how can i join the voice chat ?
do you guys thinkn C or Python would be more beneficial to learn?
Depends on what you’re using it for
Python is a great language but it’s harder to use for lower level stuff
im not entirely sure, I'm trying to learn a language more than basic stuff to learn more for cybersecurity in general
im told C will teach me more but python is more and more used everyday and is agood for scripting
I would agree with whoever said that C will teach you more. I’m inclined to say C
ok ill start with that then thank you
btw im looking to buy a booking to help me with the fundamentals that i can read while at work. do you have any recommendations?
I've been looking all over the place and very few are mentioned more than once by people especially for just getting into it and learning basics
from what im gathering i should learn the networking portion of it first
anyone here knows something about ethernet and its problems? i need help
What are you experiencing
i got probems too when i connect my ethernet its slower than my wifi connection and its like it doesnt work
its a brand new pc i got and the ethernet works perfectly fine on my old one
so my internet was goin well using ethernet and wifi sometimes and both were working, now outta no where im experiencing something were it tells me that the network is unidentified. this happened once before and i have suspicions about an extension we have connected to the wifi on my router, yes i tried everything and none worked
Which OS
Hi everyone don’t mean to be a burden to anyone just asking for a bit of some help if possible, my family and I just got robbed at gunpoint about an hour ago, iCloud is not picking up anything but we I have the IMEI numbers for the device. If anyone can offer a hand and just help out or offer any assistance please
any idea to solve it?
i tried everything from resetting the adapters to network settings and installing drivers and all that
Run ipconfig from cmd(as administrator)
Yo
the thing is it connects for a sec and disconnect agin telling me unidentified network
Even drivers
ya
any idea?
You can call your cell carrier to report your phones stolen, with the IMEI data. They can block them from the network, etc.
hey i want to join voice channels how can i join
i newly installed linux on my laptop can anyone guide me how can i customise it
how do you guys start learning from start ?
like first step
yeah please share
As a complete beginner can anyone share free resources to get started with? I wanna land a job asap, I'm ready to invest x amount of time necessary.
Can someone help me with css please ? Colors are not showing up on my page
@graceful sphinx @forest knoll @half halo explore this #👥・new-member-guide it explains how to get starteed
Saw it, what about certifications? Do we need to have them for job?
Yup
Depends on the job
i made a discord username checker, but it hits rate limits after checking 50 usernames
can someone help me ?
Isn't the rate something applied from discord's side to prevent abuse?
to prevent DoS
Or did you make it with AI, and it breaks after 50 uses
?
Bud disappeared
i need help but i'm not sure if it its possible in a "legal ethical way"
ight thanks mane
do not dm this guy
?
he's a scammer and he's trying to take your money
Hi guys I'm new here and new to tech thing and is interested in ethical hacking and cyber security (coz that's the future).
I don't have any pc/laptop yet only mobile, can you guide me where should I start from and what should I focus on rn. Hope you all will help a newbie 
you could learn on your phone
Wont go too far
mobile pentesting
learn networking fundamentals #👥・new-member-guide
I don't even know da basics yet 🤧
start with that and see where it routes you to
I'll check it out ✅
cybersec is pretty wide
Hehe I'm ready to dive in this deep ocean
True
anyways welcome
Hi, What do I need to do to join voice chats?
reach level one through chatting in #💬・old-gen-chat
hey, there is this instagram account thats hasnt been active since 2015/16 or something. Can i report him so his account gets banned—> i get his username?
That is something I would look up in the instagram documentation - or ask their support
oh alright thank you
still need help btw
with what?
they probably will not ban a user without a good reason - inactive isn’t a good enough reason. Check anyways, goodluck
i mean he is using a pinterest pic aka catfishing but thats it
Hey, this person had took my items on a game and I don’t know what to do. Is there anything I can do to get my items back?
Contact the support for the game.
You haven't said what you need help with. Do not ask for people to do unethical/illegal stuff in DMs.
Yeah I’ve tried that, I’ve reported the person and contacted support. I’ll try again tho.
Can anyone help me install kali linux via virtualbox? I need some tips....
You are following this?
https://www.kali.org/docs/virtualization/install-virtualbox-guest-vm/
This guide is about virtualizing Kali Linux inside of VirtualBox, allowing you to have a Kali VM. This is a great way to use Kali, as it is completely separate from the host, allows you to interact with other VMs (as well as the host machine and other machines on the network), and allows you to revert to snapshots.
no but i will now thanks 🙂
Does anyone know a good wifi card or a network adapter for pentesting?
hi guys , can someone suggest me any good resources for 'javascript analysis' cause i am not able to find any playlist or documentation to learn on the internet
alfa network awus036nha (best imo)
Hey guys I’m a junior in college studying IT looking to get into cybersecurity. I’m currently looking for internships. If anyone’s company is hiring interns pls shoot me a dm id love to connect
guys i want to ask y'all about how to read a file like "cat file.txt" but as a user with limited access cuz i already open it but access denied
did you check the perms set on the file? like "ls -l file.txt"
-rw-r----- 1 root root 28 Feb 1 14:44 '.flag_rahasia '
seems like only root user can read and write the file, so the basic "cat" command wont work. are you completing a CTF or a practice machine right now?
yea practice machine
my mentor gave me an exercise to find a file that contain a flag in directory, and i found the file but i cant read the file
youll need to perform privilege escalation more then likely
hmm let me try
my first step is figure out if your user access has any sudo privileges to it
check if it can run any commands using sudo
siswa@amlogic:~/.local/share/backups/temp_data$ sudo -l
[sudo] password for siswa:
Sorry, user siswa may not run sudo on amlogic.
Why I am unable to post any free resources in the channel
You may need to lvl up first and then youll be able to post
How can I learn ethical hacking...?
#👥・new-member-guide check out some resources here
How I can?
Chat in #💬・old-gen-chat and get to know people. The more you talk the more you get to lvl up
Ok thanks
I'm trying to find like minded people that would be interested in creating a project with Me, I need people with skills , programing and stuff
is there any free resources for learning cybersec on practic?
Hackthebox + tryhackme are great
Where exactly can i learn this
Wdym, you can learn here #👥・new-member-guide
Alright
How can I take back my mlbb account?
Contact the vendors
Are there any tech positions that I can work as an entry lvl noob but I learn as I go?
Hi everyone, I recently received a zero dollar charge to my debit card. It was an online charge from bathandbodyworks. Months ago I got this other charge from fedex. Zero dollar. Both were unauthorized and somehow once again someone has my card information. I've already turned off both cards and plan on getting new ones today from my bank. Just wondering, how can someone have my card information if online, supposedly, when I enter in my card info, it only shows last 4 digits for security purposes?
I forgot to add this is a pending zero dollar charge and that it is my understanding that usually means someone is testing to see my card works before they start making small charges that escalate to bigger charges over time.
$0.00 charges are usually authorization charges companies use to verify that it is a legitimate card before sending actual money.
If you dont shop at those places though that's suspicous unless you shopped somewhere that fell underneath the umbrella of a parent comany sending those charges.
I have in the past shopped there but not recently.
possible that your card was on record and they sent that out to re-verify.
Always better to be skeptical though imo
May I ask why would they re-verify if I hadn't placed an order?
I dont know, i only know this much because i originally looked into it when i saw them because years back someone got ahold of my credit card info (not related to eachother though) so this is most of the knowledge I have on the topic
Try calling your credit card company about it
Okay thank you
hey can anyone help me get behind a hotlink protection site? i want to crack an old version of cursader kings 3 but i cant because of a hotlink protection
@storm cloak
Please read our #📜・rules , specifically number 6(Gamehacking)
you favorite free subdomain/webhosting?
I’m currently diving into SOC Level 1 topics and I’ve been going through the TryHackMe rooms for hands-on practice. The thing is, I’m looking for something more detailed than just a simple cheat sheet—like a solid, in-depth reference guide that covers SOC L1 material thoroughly.
I don’t need solutions to the rooms or just a one-pager cheat sheet. I’m after something a bit more comprehensive—a guide that I can quickly refer back to when I need to refresh my memory without re-reading entire rooms.
Does anyone here know of any detailed SOC L1 study guides, reference docs, or in-depth overviews that fit this description? Would really appreciate any pointers!
+++
hello, i just downloaded ubuntu to put virtualbox on and practice hacking. I saw ubuntu apparently takes your data now. Does that make ubuntu now a less secure OS to choose for this kind of stuff?
it's not ubuntu. it's canonical. the company that developed it. there's a way to disable telemetry so it's not stealing as much of your data, but ultimately yes. it is less secure becasue you are now tracked. however, i think you'd be fine to practice hacking as long as you're not doing sketchy shit
hii guys i need one help
with......?
nah not doing anything sketchy i just hate being tracked and siphoned for data
might go with debian then if that's the case. i think debian has kde plasma as a de too
my instagram got hacked
if you don't want to be tracked use literally any other distro besides ubuntu. to my knowledge that's the only one that tracks you. kali linux is pretty good for hacking and cybersecurity in general i've heard
ummmm ok.........
ya but i was going to throw it in a vm and make the rest of the system able to be used as a daily driver
sounds like a plan
Can stripped exif data be retrieved?
Not as far as I know. If it’s not in the data, it’s not in the data.
Well, I'm curious about how apps strip exif data from pics and videos
I’m not entirely familiar with the JPEG binary spec, but EXIF data is just info embedded into a specially designated region of a JPEG file. To strip EXIF data, programs just remove that data from the binary.
I see
Contact instagram support about it - there is nothing anyone here is going to do for you apart from that. May get DMed by scammers now though
i believe @nocturne wharf was already talking to them about that in chat 1
like yeah nobody here can do anything about that
lol
That is why crossposting the same question is about the dumbest most annoying thing one can do - but thanks for letting me know
Hi guys
I need some buddies for CTF and bug bounty practices together and if we'll be doing good then we could partner up as a CTF or bug bounty team for further events or tournaments
why is it so easy to learn but it is hard to implement it anyone any advice to this things
practice
clarify what problem you're having?
note root user is RW and root group is R
stock kali isn't really intended as a daily driver
https://www.kali.org/faq/#can-i-use-kali-linux-as-a-daily-generic-linux-system
Frequently Asked Questions (FAQ)
Due to the large number of users Kali Linux has, some questions are asked more commonly than others. To help address some of these questions, we have put together this FAQ.
what's the problem with canonical exactly? I hear too many people complaining about Ubuntu because it's canonical..
Gotcha. I've personally never used it so I'm not very well versed
Well, the conversation I had up top is a prime example of why
They make a lot of weird decisions that a lot of people don't like.
Personally, I hate snaps, and it doesn't feel like a side thing for the Ubuntu distros. The ones based off ubuntu focus less on them, or remove them which is nice.
But theres also the ADs they use to put in the OS
it's handy for a temp pentest box but not intended for constant use.
Gotcha, so it's specifically for testing/learning purposes?
Its a toolkit
Quick question, for what I was trying to help with, was I on the right path for him? Like if he was a normal user trying to open a file with content only visible to root, he would need to perform privilege escalation in order to open the flag.txt?
Guys is it genuinely worth it to buy premium for like HTB or TryHackMe ?
yeah that's more its intended use case. e.g. i've been given access to kali VMs on client networks for pen tests
yes will have have to read it with higher privs
the user vs group perms make me think look for a setgid binary
that is, since the file is readable by the root group, you may not have to elevate your own account, you can look for binaries that execute as a member of that group
or see if any other accounts have been added to that group
Ahhh okay, that makes sense. I’m not that great at privilege escalation, gotta work on it but I see what you mean
if you're ok being loud af then linpeas can be useful: https://github.com/peass-ng/PEASS-ng
Oh yeah I’ve heard of linpeas, and winpeas is the version for windows I’m pretty sure. But they check for possible privilege escalation methods right?
yep
if system is monitored at all it's like screaming at the SOC with a bullhorn though
can ejpt be done in 30 days?
Really? I didn’t know that. How would you go about privilege escalation that is silent and not noisy for you to be caught?
Hi! I was wondering if someone could help me get access to my old roblox account, I've been playing since 2018 and this account is really special to me, I don't have access to neither the e-mail or the phone number that it was linked to 😭 If someone could help me I would be really grateful ❤️
not gonna happen #📜・rules
generally you'd do targeted manual checks rather than broad surface enumeration scripts like linpeas
and you'd look for misconfigurations to abuse before running exploits
look up linux lolbins
Alright I’ll check it out. I’ve been collecting resources as I complete CPTS so I can use them more. But is it harder to do manual checks and longer?
definitely more time and effort intensive, but that's always a trade off with being evasive
From your experience, how often have you seen a possibility of privilege escalation by using manual quieter methods?
If you have adequat pre-knowledge, sure .. if you start from zero, maybe not
well I do have some networking knowledge
it's just that I wanna get the 1 month of fundamentals and buy the ejpt voucher at the end of the month
so I don't waste 249 directly
The exam wasn't difficult, all the stuff is rather straight forward - still it is a lot to learn
I think so, yeah - multiple choice answers
i thought of pjpt but its not so hr wise
fairly common depending on system and client. ime, in live environments it's often easier to obtain credentials than deal with privesc exploits
and ine looks pretty decent for a entry level cert
oh crap
aight I'll try the 1 month
if it doesnt work whatoever im putting another 59
thanks
imo i don't really trust certs without a practical component
eJPT is practical
yep there are labs to do
an unreasonable number of machines, actually 😉
if you dont mind whats certs u got
ah misunderstood your earlier message to mean the exam was all multiple choice
i only have CRTO
It is .. but stuff like "how many sql servers are running on the subnet" and you have to select the right answer
That’s crazy, I would’ve thought credentials are harder to get
I remember there was one question where I was sure to know the right answer, 100%, and the number wasn't one of the options ^^
well fully practical are the TCM certs compared to ine but now it depends
they re still new
I am following ejpt then heading to ccna and after cpts
tho I study ejpt and ccna at the same time
ther eJPT will cover some tools way, way, way beyond anything you suspected ^^
nmap was covered for several hours
ye exactly thats why I want to pursue it
I signed for an european cybsec championship
and I need those tools by the end of february
lol
they should be but in real companies people tend to leave stuff laying around. e.g. first things i check on a linux host is ssh keys, known_hosts, shell history.
confluence, sharepoint, file shares, all usually gold mines
my advice - make sure to write a playbook you follow along the way for every machine
thats a good start, but what I meant is "develop a routine you follow through"
gotcha
I'll try to split it in 6 hours daily
maybe 2 for videos 2-3 for practical and 1 for revision and stuff
That’s crazy, I will keep that in mind because it can save a lot of trouble
btw you will come across situations where the guy announces a next video, and it won't be there.. don't worry about it, they recycle some of the videos in their sub-modules and those missing videos will appear later on
thanks for that
did you pursue both ejpt and eccpt?
I did not
i once went from a bot token i found in old documentation to stealing code-signing keys for all platforms, without using any sort of exploit, just repeatedly finding creds and jumping to new systems.
I'm not a pentester nor aiming to be one, this was just for broadening the horizon
I'm a consultant, I have to know what I am talking about
I need working knowledge more than certs
I heard about this role but I suppose you need to gain exp before reaching that stage
in a subfield or something
work xp > certs
yeah but how do u get work xp if you dont have something to open the door with
theoretically its easy to get there, the exams are a joke and mostly about compliance and documents, but in the end you really need to know a lot to do a good job and satisfy clients wherever they currently are
That’s fucking crazy, but sounds like it was so fun doing that and with ease. Hoping I can experience that when I become a pentester
honestly I was freelancing for a long time and afterwards no one questioned where I got my working knowledge from
you re working in the government or private sector?
was that before the indian era
Private company taking all kinds of clients
networking with people is how you open doors to interviews
the indian era?
and what do you usually do on a daily basis
I mean most freelancings platforms are full of them now
ye that's why I try to attend those competitions
idk if I got better alternatives
Whatever clients want from me.. might be a technical audit, or someone writing guidelines, or taking to the brass and get them onboard, planning awareness campaigns.. sometimes I coach the local CISO, sometimes I am the external CISO
Can't say I noticed that
Consultants work to make themselves unnecessary 😉
My main clientel is healthcare companies
that's awesome man
lmao that is true
and what do they usually ask for
that chain took like a month start to finish so wasn't super easy to assemble, but didn't get noticed at any point so was worth it.
Was that during a red team assessment or a pentest?
that one was red team
What’s ur experience like with pentests? Is your methodology similar or different?
Most companies that ask for a consultant have no idea what to do, so I go through the usual routine.. putting the fear of god into the brass to make them support their new CISO for at least half a year, help him or her with the compliance part, cozy up to the IT department so they don't block stuff as unneccessary or too much work, show how awareness can be done right.. and then slowy try to make the resident CISO do the job, despite them feeling they can't do it.. build up internal standing for them, let them become a player in the internal politics, set them up with a network of likeminded people and at some pont I say"I'm done" .. if I did a good job they call us again once the basics are establised, and now they want to improve
I wish you success and wish the best for 2026
And some call me up because they have very specific problems
significantly less than red teaming. ~4.5yrs red teaming, ~8 weeks total of pen test contracts since then
I can tell yeah it's an awesome job
I would like to reach cybsec consultant too someday
god knows
for pen tests i didn't care about being noticed. for most of them we were being heavily monitored during anyway.
Start tabletop roleplaying .. or theatre.. or teach people in workshops
Its amazing how much all that combines into my daily work
I will try to, although I need to fight with this experience
in second year in uni I can do that workshop teaching
ran an IR tabletop a few months back, when it started one guy messaged me "did you just rope us into a cybersecurity dnd?" lol
although workshop by real meaning is usually done in third year
Since you didnt care about being noticed, would it be hard to perform the tests you did?
You sure did! 😄
Friend of mine is deep into "serious gaming" where she builds entire bundles of stuff to play with people.. found a group that started to livestream their incident responses trainings on twitch
pen tests are a lot more time compressed, so start is usually max-speed enumeration not caring about loudness
do it on your own, offer it up outside the curriculum
Last workshops I did privately were "forensic for the masses", "lockpicking", "Finding hidden cameras and microphones" .. people will remember you, contact you, .. its building your own brand
i'm not sure what you mean. would it be harder to do those tests if i was trying to be covert? definitely so if limited to the same time frame
like search for outside projects where I can apply and teach?
not related to uni
nah just become someone people remember as "that person can talk.. and knows how to make a presentation.. we should call them"
last pentest i did i had 5 days of testing time. had basically 1 finding til day 4. went hard on it and turned it into 4 more Criticals
oh okay I get that
it's actually a really good skill
Hmm what I mean is like, since in a pentest, it’s more limited time, and you didn’t care about being noticed, would you get blocked out a lot more when noticed or like would they notice you but let you keep going with the tests?
since soft skills kinda matter more nowadays
that sounds interesting, got a link? ours was run by 3rd-party, i just put together most of the attack scenario
thats why I recommended TTRPG, its like a miniature course for consultancy... you learn to read the room, take up several positions, how to prepare notes and handouts, etc.
its not english
if you search for disconnected unexpected 39c3 on youtube you can find them.. they did a slot where they tried to make the worst possible decision during an incident
ah, it depends on the client and what kind of initial access is provided. e.g. on one we had to use their corp laptops and could only work on-site, so we had whitelisted dirs on those boxes where our tools wouldn't get removed.
so at first we were dealing with the soc a bunch, but later pivoted into some machines where they had no visibility on us. which was a finding
i'm a dumb american and only know english :(
Can't help you there I'm afraid 😉
to clarify more, in pentests (excepting external) you're generally starting from a box that's been whitelisted and either doesn't get locked out or soc will clear them. getting noticed doesn't end a pentest
Typically you get louder near the end .. if SOC catches your activity right away they would be very, very good
One pentester told me once that his company also offered the SIEM for the client he was currently pentesting, and they didn't catch him compromising their DC in about half an hour.. so the engagement got a new scope.. be as loud as you can be and we'll see when they notice
Difficult situation, but the shit rained down only on one side that day
Does anyone know how to use frosted v2
Can someone help me with something?
It’s kind of bad… but I need help with something
If you think you can help me dm me…
Dm me
@silk sierra @sterile ferry
Please don't ask for unethical stuff, or for DMs in the chat.
Nobody knows if someone is going to scam the other person, and nobody knows if someone is going to get someone else to do illegal stuff on their behalf.
Cut it out, this is not the server for it.
One it is not bad things. Like illegal things. Two, I am a good person but I have been wrong in my life. And honestly I wanted help getting help for my problems. They are not bad just only to me
Are you talking learning cybersecurity? Because the entire reason why say not to do it behind DMs, is so people don't scam you when you are already having issues.
Not, I am not really learning
I just wanted some help getting someone that wrong me.. but idk
I feel like it is nothing anymore
That would be vigilantism, and it would be unethical(depending on where you are, a lot of it could be illegal)
You are much better off moving on with your life, or going to the authorities if its still a pressing matter.
What is likely to happen if you ask for assistance from randoms on discord, is that people will see you as an easy target that can be wronged. Prove them wrong, and move on with it.
There is some starting resources in #👥・new-member-guide , and a bunch of free resources in #💕・free-resources.
TryHackMe and HackTheBox are the two big ones for getting started, as they introduce a lot of subjects to you in general. Take them as "General Summaries/Tutorials", but know that to find the indepth information, you will need to look at official documentation for whatever it is you are interested in.
If you have some specific interests, let us know and we can point you to some resources.
@woven anvil my interest is in white hat then probably in future switch to purple hat but as starter and get my foot in, i want to learn about white hat
White Hat is more of a moral alignment than a list of skills or tasks.
I highly recommend you start with TryHackMe, as it will explain a lot of the beginning stuff.
ight thank you
#👥・new-member-guide message has links to a bunch of areas in tryhackme
Thank you @woven anvil
Am looking for a dark web browser
can you put in chat?
ok.... was just going to help. I am new here anyways,
@lost vapor
@tepid hedge i say just block her ass... i see that she has over 750 follwers and like 746 folloing.... honesly she can't really hurt you. she is not even making money off the app
i would say fuck off to that ej girl because she is mean. but konnect if you are still listening just letting you know people will say mean things to you but they are not true. you are perfect the way you are. please block her and move on.
i did the same things....
@samia765 what's up bro
how do I unlock the coding voice chat?
you would need to level up to bronze, more details once you scroll up over here #🤝・roles-info
I cant join VCs, can someone give me the role to do so?
Look at the message right above yours
lol
@tropic wren
Don't ask for this here, you will most likely get scammers DMing you looking to take more advantage of the situation.
Contact the support for the respective companies is the only real way to move forward. They are the ones who control the accounts.
@woven anvil ok thank you!!! Seriously
@left plinth
Do you mean the Microsoft Teams app?
If using Ubuntu, I am assuming that it is using a Snap, and I am assuming you aren't sure what i mean by that?
Yes I have downloaded the linux using code sudo snap install teams-for-linux
One question if need to work on my office work shall use linux or shall I go back to windows
Teams itself i think uses onedrive/sharepoint for file sync. So there may be a cleaner way to connect/get access to your files.
I think in the Gnome settings in ubuntu, you can link up your microsoft account there, and have access to your onedrive files (i haven't done it, so I don't know what it looks like)
Ok just give me the suggestions shall I back to windows or use ubuntu for my office work
I want to make an app for examination which can completely lock down the desktop so that the the students cannot exit the exam window until the exam is over so can anyone help me on how can I achieve this
If you're reliant on microsoft office specifically it might be worth switching back to windows, unless you're willing to deal with virtual machines.
I have personal system but I had many games and some cr**k games so if I format it and try to download can I able play those games
I am not reliant on the Microsoft i like to learn ubuntu and it features for development
For company work, it depends on your company's policies.
You might be required to work on an environment that has company AV + EDR installed, or something.
If you are doing your own personal work, then it could work, but you would be your own IT for it(unless you found a company that can support a linux workstation). It is totally doable, but with some configuration required, like any proper business IT system.
I am the It admin of the company 🥲
is it under 20 devices?
No i just enrolled my device alone and didn't add anyone because of windows 11 issue
Most of microsoft office is an electron version of the web browser apps now. Onlyoffice also works great.
Some games will have issues. Its best to look up the specific games you play. A lot(but not all) of anti-cheat protected games have issues with linux. Anything that is from an untrusted source, i would just toss. The risk in 2026 isn't worth it.
does that work fine nowadays? might need to give it a try again.
I think even LibreOffice was getting a boost to work better. I never go near OpenOffice.
OnlyOffice looks more like MS office, so i like it as a recommendation for people switching
I took work in only office it was nice i learning linux that is why I entered ubuntu it was but I think it takes some time to learn
Anything new takes time to learn. Windows took time to learn the first time you touched it. So did android.
It is an entire different thing to set up though for business use (What Directory do you use? What about policy/config enforcement?)
One of the reasons why I prefer tools that run platform-independent
Ok thanks 👍
didn't know you could do that ngl
I always skip them because i didn't install linux to link up my microsoft/google account to it. but I did find it interesting.
But how to resolve the sync issue in teams is it possible to resolve I can add the shortcut of those SharePoint link but I can't able to sync it
This is what i mean by in the gnome settings, the microsoft account
Ignore all the options, and sign in with a web browser
then it gives you the option to add files, and you will have the files in your file browser
Thanks
Windows can already do this with GPOs(Block things they shouldn't be able to open, like task manager, and use applocker)
Theres also some software already that exists, depending on how the exam is run. Example is if it runs in a web browser, then something like this may work.
https://openkiosk.mozdevgroup.com/
i see
but i wanted to make a server which would provide a password for exiting the app
how can i implement that
wdym
like there will be a server and each client will request for a password when exam mode is enabled and server will create a randomized password for that specific client and the user can only exit the exam mode when the correct password is entered (only when the examiner provides the password which is after completion of exam) also for anti cheat i have already developed an algorithm which tracks user's eye movement to see if the user is cheating or not
but how do i add it to the exam app?
@woven anvil
This may be out of scope for a general support question - and you are better of just asking the channel and wait, rather than pinging one particular account
Also - like HELL you are going to get people to agree to that
Theres already an app called safe exam browser
What is the exam app?
Is it a website?
desktop app
i dont get you
full screen browser and screen recording at least is temporary.. but you are not going to get anyone to run custom software on their machine
but does it have the features i mentioned
which are?
well we got perms
it locks the pc into a set enviorment and can only exit with a password
bro wants to be in full control of their systems at all times lol
wait
Any proper software will be designed in a way that you would have to already own the machines ahead of time.
@soft vigil
bro is developing a ransomware in disguise
I'd drop that exam and course so fast and diss you online about intrusive tools that it would make your head spin
other than the user eye movement yes
based
the desktop which will have the software is university owned
yeah the machines are university owned
Just use Safe Exam Browser its less of a hassle
maybe you could it mod it for user eye movement
eye tracking is needed for catching irl cheating
oh hell nah
maybe you can mod it
unlikely
Tons of people move their eyes different ways when thinking
tbh you cant stop a student from cheating if he is committed
i was been told that the university needs their own custom software 😭🙏
well i used a diff approach
fak this uni
where is it located
asia
ofc its asia
safe exam browser has no eye tracking, apart from that it is rather suited
Usually a webapp + one of the tools we keep mentioning, alongside GPOs to lock down the machines.
In the webapp, you can ask for a password
and have the GPOs only keep that one window open
once u finish that app send it to me, since at that point it can be used as ransomware lol
im pretty sure even safe exam browser has vulns
u do not need kernal access
tf
so kernel level access is not needed for blocking all the windows shortcuts?
okay i see
Windows itself has kernel level access. thats why you let the GPOs do it.
forgot to reply to the text
okay so i only need gpos
lmao
really, i thought its bcz u dont like me
Can someone help build an ai to help me hit parlays is that against the rules ?
GPOs lock down the machine itself.
Then you gotta ask what apps can run. Applocker through GPOs will enforce that.
Using one of the kiosk-style with a web-app is the most common. The user will have to accept the browsers access to the camera, which would be standard.

well just train an AI with data
I do like you. But I also like the devs of the tools i like to play with. 😛
okay and are there any vulns?
i assume there might be
omj he confessed

i just remembered i have a project and i havent worked on it
oh well
Windows itself has vulns in general, that get patched when they do updates. New things are found all the time. The less "random apps" you have installed, the smaller your attack surface is.
You could look for an EDR like huntress to watch over the machines, but applocker works annoyingly well to block any apps except for the ones you have whitelisted.
If any user reboots their own computer, you know something is wrong, so keep watch over that.
I'm looking for cheap recommendations for cheap AI servers, anyone know of any good ones?
Which osint tool will help me to find details of upi id?
Be careful with “too cheap” AI servers—often old GPUs, no warranty, or bad thermals. Ask for exact GPU model, VRAM, PSU rating, and stress-test results before buying.
Thanks for the advice!
define "cheap" and what are the requirements
honestly, not sure at this point - want to run a local AI for content creation - start to finish - probably value for £500 - £1000
like images? Videos?
mostly videos - currently I have a local python script with some ingested test data that can create a judgement on an individual, looking up prevoius history (tweet integration atm) - create a statement on violation and then reply to said tweet with action and how they have lied for example. I want to automate this into a video format that'll handle the output for validation by myself and provide feedback for script rewrites etc
Alright, not my area in that low price segment and video generation, I'm afraid - especially with current price hikes
I would assume maybe 2 refurbished 3060 with about as cheap a host machine you can find..?
Yah, I was thinking that - refurbs for the start of the project, see how it looks after 3 months and upgrade when/if its a success
Hey....i was thinking of converting my main device from windows to linux ....any easy to use distro suggestions? and also can i use my windows 11 in that linux os in case if i want to?
There are quite a lot of Linux distro.
Easy to use would be Linux Mint and Zorin OS.
You can either dual boot between Linux and Windows, or run Windows inside Linux via a VM.
You can run pretty much any OS inside a virtual machine - it will not have direct hardware access though, so no gaming
still many of the people that decided to play it safe and dual boot regret it shortly after
most games run on linux anyway
Yeah I read about dual boot that the windows update sometimes overwrite the linux os ...so dual boot not an option...
that for one thing, but also you maneuver yourself into a position where you have to actively switch between OS, and people just dont do that. Using a VM lets you use both at the same time
What u think bout external SSD with linux on it ...like is tht possible?
people regret that even more
Can anyone help me
If you cant log back in - contact whatsapp/meta support
Ohh well
Hello friends (: does anybody know if CodeRed is any good? They have a course bundle for a few USD.
Btw I have a broken laptop ...like its opened to the motherboard...I have the display and all so can I make it work to install Linux on tht
If it’s not too broken, maybe. If it is, and if you have electronics skills, then maybe. If none of those are true, then your best bet would be to take it to a repair shop (remove the disk first to protect whoever owned that laptop before).
Not broken but opened but well its 15 yrs old
And I don't have any electronics skill
Does it turn on?
Hi everyone,
I’m currently pursuing Computer Science and come from a Biology–Maths background — so yes, I switched from bio diagrams to code errors 😄. I had no exposure to the software or IT field before college, and with limited guidance and no IT background in my family, figuring things out has been a bit challenging.
I’m motivated to learn, improve, and prepare seriously for placements, but I need some direction on what skills to focus on and how to move forward. I’d really appreciate any guidance, roadmap, or resources you could share.
Thanks in advance!
What does it do?
Hello! Welcome (: What are your aspirations? Do you have any ideas for where you’d like your career to go?
To be frank . i dont really know where to start . i feel so wasted but so far i learnt from college im in interested in data structures but im confused about domain
Ah, cool! So you’re interested in data structures. When you say “confused about domain,” what do you mean?
umm , like choosing whether i want go cyber security,data science or sde
Nah I got it...well its fuse or MOSFET is damaged so I have to get tht repaired or changed and then it should start working
Oooh, got it. It’s normal to be confused or uncertain.
How do you feel about each of those fields? Have you looked a little into what they’re about?
yup , I liked cyber security and i wanted to exposure in that . im more interested in cryptography , i think that made me turn to cyber security
Oh, that’s really cool. Cryptography is a really interesting field.
So you’re interested in a career in cryptography?
Yup
I have used stenography (hiding text and info in the raw data of a photo that requires a script to disect and read, is it similar?
yup its similar to stenography but method varies ig
Well, I don’t have a lot of advice to give you there, because I don’t know what the career path looks like for a cryptographer :/ I only see the research that comes out, either from universities or from private companies.
One thing that might help though, is to see if your university does any research and ask any of the researchers there for advice (:
yeah, i know so i wanted to try cyber security
Also, if you can, maybe watch videos from cryptography conferences, and look at some prominent figures and see if they have any kind of online presence. Maybe that way you can get closer to the cryptography communities.
oh ok
One guy I do follow is Bruce Schneier (: He’s pretty famous across domains, in case you’ve never heard of him.
i will look into it .Thanks
Hi anyone know how I can get into pentesting room
You have to level up to level 1 first
Oh how to. Do that
#🤝・roles-info the very first message here describes how it works but essentially you just get XP for chatting in the server
Oh. Okay
Thanx
No problem
Hey welcome in. Honestly most of us started clueless too lol. Just be consistent, choose one stack, do DSA, and build stuff instead of overthinking. The fact you’re asking for direction this early is an awesome sign, if you need any help then we're here.
Thank you
Cyber, data, SDE, they all start with the same core anyway. Strong basics first, specialization later.
Hello, I was wondering if I could receive some help. I was setting up my virtual box with Kali linux. But each time I tried to run it in my virtual box it said aborted. I tried each suggested tutorial to see if it would run. But still no results.
Hi, I am just looking for some advice on coding related stuff, even though this is a cybersec server.
I wanna start making projects in python especially related to web applications. However, i have no knowledge of how web development works i am mostly familiar with DNS and http requests from some tryhackme labs and just know how fetching of stuff happens in browser and the osi model. I really am confused on where to start cause i don't know HTML,CSS or java script. If anyone has some advice on what to do, right now i have decided to do some normal offline projects to build confidence in python. But i really want to move to web related stuff.
Hello everyone I'm very interested in learning hacking, just that I need someone to teach me and guide me on that.... I'll be very grateful if anyone can help me out on that
Were you following this?
https://www.kali.org/docs/virtualization/install-virtualbox-guest-vm/
This guide is about virtualizing Kali Linux inside of VirtualBox, allowing you to have a Kali VM. This is a great way to use Kali, as it is completely separate from the host, allows you to interact with other VMs (as well as the host machine and other machines on the network), and allows you to revert to snapshots.
Try sololearning or codedex, both websites that have some starter web stuff.
okay i look up
ty
I just went through the codedex website, it feels good it has courses for html, css, and js. however, i got a question how will I bridge all of these with python, I don't have a real reason besides wanting to just mess around with python. Should i just go through the html,css and js tutorials and figure the python part later on ?
Typically you would host it from a web server, an application specifically designed to host web markdown + scripts.
Python does give a few options.
Flask is a very simple web server library in python, specifically meant for creating API endpoints, but you could technically host web content with it too.
FastAPI is a more high-performance web framework/engine library in python.
Or if you just want the ability to make GUI things without dealing with web, then Streamlit is an option.
But the typical setup would be something like nginx/apache to host it if it wasn't python
thanks
I tried that. I wont let me post a picture of my display
so uhhh... i installed KDE plasma on Zorin 18... With themes and everything.. Even customized SDDM...
Is there a reason everyones against it?
since im still new to linux
learned some commands but theyre all basic, systemctl,journalctl, nmap commands n what not..
love ur font for ur user btw
works insanely smoooth tho, smoother than the gnome
What is everyone against?
kde on zorin
I think the big thing that people would find off-putting about using a setup like that, is the fact that unless you remove gnome-related stuff, which is a lot of work, you now have both DEs in the environment, that can sometimes lead to some wonky behavior (GTK windows in KDE, or QT windows in Gnome, mismatched themes).
But in the end, its your computer. Install 10 DEs if you want. One good way to learn things is by breaking and fixing stuff(that you own).
You will find a ton of people end up gravitating towards Arch once they understand things, because it starts you off with a blank slate, and then you can just install only what you actually want/need.
oh cuz im just using SDDM atm.. Oh cuz im actually just aiming for distro i can customize to my will without needing extra steps n what not
i almost levitated to Garuda Mokka
They are all running the same programs. KDE on ubuntu is KDE on ZorinOS, which is KDE on Arch.
The differences are usually the versions, and the pre-made configs.
Arch is rolling release, so it may be faster. Fedora as well i think?
ZorinOS/Ubuntu is Stable release, so they take longer to get the newer stuff in their repos
none of it matters if you just "compile it yourself", and a lot of people who enjoy doing that for half their programs end up looking at gentoo
that would be cool but wont it be extra steps... Cuz idk hyprland already seemed like a stretch to me
At some point someone could explain to me where this "but I wanna customize everything" is coming from..
lmao
Hyprland is a completely different way of using the computer. Tiling manager vs a Window manager.
its an operating system.. not your saturday night outfit
Also, it updates often, breaking configs.
😏 but you have to admit, a comfortable desktop is better than a uncomfortable one
a desktop to my liking, id love that
And your working theory is that all the distros just ship with "uncomfortable desktops"?
To me, i don't care too much about how it looks.
But i find a ton of people pick a starting distro, and don't like the way it looks, so they go to another one. And then they get into this rabbithole of finding "one they like", and because there are so many options, they just hand-configure stuff.
I like the pre-configs from cachy for their DEs. But hyprland of course breaks once in a while.
Lmao, no eris, i get your point trust me.. Its not that.. Some just one their own feel to how they feel it should look yk
I want an OS to run the tools I need, and not get in the way
I wanted my Windows XP start button to say "Jeevis" and be gray
its also a good way to learn OS management/config writing in terms of "How does it apply to CyberSec"
And if I wouldn't see the same people "ricing" their system all the time complaining about problems and broken configs, I would not care
I'll never really understand it, but I also press random 5 times on a character customization screen of a game, and then press go
ah, the "i'll copy it from someone else and hope it works" configs
it must be worse now, no? If chatGPT is making configs for people too
in general or meaning DEs specifically?
lol
yessir!
Hey guys 👋
i'm a customizer in general, usually more for functionality than aesthetics, but sometimes those are intertwined
e.g. i've customized my obsidian theme a fair amount to make it both better looking and easier to read
dark theme, custom font, thats it for me
some people just like to personalize their stuff, like decorating their house
i spend a significant percent of my life on my computer, might as well optimize it to my preferences
hello, if anyone doing the HTB "Browsed", kindly DM me so we can discuss about it. Thank you
welcome
At some point I wanted to setup one of those tiling WM with a lot of key bindings on my Arch desktop, but after reading through a few guides I was like, “Ah, fuck this. It’s too much effort and the brain cycles required to learn to navigate the windows could be spent elsewhere.”
Friend of mine recommended a tiling WM to me.. when I tried it and asked him how he gets anything done with it, he replied with "Oh I dont use it, I was just curious to hear how it is"
Appreciate the welcome 😁
After trying one out for some time, I can say that I wouldn't really care for much in a desktop.
On a laptop, the key combinations are sometimes more convenient than going down to the touchpad.
Yeah, to me, the main utility of a keyboard based workflow is that I work a lot out of a laptop. If I don’t have access to my editor and I have to work on a laptop, I feel like tearing my hair out.
really i find touchpad generally more convenient than a mouse a lot of the time, shorter reach when i need go back and forth between kb
mac touchpad is pretty good though. i had to use a corpo dell windows laptop recently and touchpad was absolute unusable garbage on that
idk why they don't make good keyboards with numpad replaced with touchpad
guys im installing zorinOS on mobile using an emulator vm tuff or no
let us know
whatever it is you want to achieve at the end.. if you get it working, its going to have no hardware access to speak of anyway
oh nah dw i made virtual hard disks on ny phone
im smort I'll make it work :D
from the hard disk right after it installs im gonna change it to HHD
so it saves my stugg
stuff*
Alright
34 attempts and changes i can't im gonna keep trying tomorrow
i needa sleep
Hi guys, bascialy im new here as u can see, and i wanna imporve, learn, and im willing to be disciplined for it. And tbh if someone reading this message could be nice enough to send me a plan to follow or some videos to begin with or any material I would appreciate it ! thank you guys
Skillsoft, capture the flag, YouTube are good places to start
There are some starting resources in TryHackMe and HackTheBox.
You can find some links to those in #👥・new-member-guide
How can I make money
Doing work in exchange for monetary compensation
wdym?
How can I make money with only my phone
Go outside and find a job.
Put it away and write job applications
Does anyone have experience with iOS digital forensics? More specifically, is it worth my time to attempt recovering deleted iMessage messages?
Hello, my parents have an olderish Mac desktop but they can’t remember the password to get into it. How do I go about either recovering their password or bypassing it so they can recover family photos?
There’s a way to do this under specific conditions but this server has made me paranoid about everyone’s motivations, lol
Only motivation is to get their pictures for them. I’m by no means a hacker nor do I have any experience. My mom just asked if it was something I could figure out.
Okay, if your Mac predates FileVault, you can boot up a live OS, mount the drive and recover the pictures from there. You need to have an external drive ready.
If it doesn’t predate FileVault, I don’t know of any solutions other than trying to guess the password.
I’ll have to see which Mac it is specifically but I’m almost positive it does not predate FileVault lol
Hi, could anyone help me with the supposed SQLi in the Cyberwarfare WEB-RTA exam? I'm not sure if it's a mistake on my end or if the machine itself is bugged. Thanks.
The account is also tied to an apple ID usually(doesn't have to be, but normally is the case). You can reset the apple ID and just log in with the apple account.
Awesome. I’ll have them boot that thing up. They’ve had it stuffed in a closet collecting lol
How are people able to see my old usernames, mails, IP, downloads and C: driver through Discord?
(No I did not click on suspicious links and the information is old, I assume it's datalogs and sth like Snusbase)
Only possible if you have been infected and the threat actors is exfiltrating your information via Discord that is being abused as a C2 server.
How can I see if I have been infected? They mentioned something called "mover"
Is Windows Defender enabled?
Yes, and I have never seen the dude in my life, my laptop is also turned off and I am on phone.
And why do you think you've been infected?
Funny part is, I wasn't. My current session isn't even connected to my old mail.
Like, the C: folder he sent is an old one.
Fyi he also did the same thing for other users who were present in that chat during the time.
problem solved it was just an old databreach
hello everyone i have a question, i need a scraperbot that can find upcoming trending topics/memes on tiktok and twitter. Im willing to pay a nice amount for a good project, i dont know if anyone has experience w such things
who knows some good WAF protection bypass methods?
why do you need that
im learning web security
well there's headers you can change with every request
if the WAF is time based you can bypass that by automating a process with sleeps
if it filters user input you can sometimes encode your input
depending on what you even find
thx for the tip, ill give that a try
anyone have experience with splunk, wireshark, or nmap/nessus? can someone teach me? im willing to pay i wanna do hands on labs and something I can put on my resume and I would like to be a soc analyst or something similar
Hi I’m new here
do not pay for nmap/nessus or wireshark studies
they're very easy to learn, nessus can be learned and practiced on hackthebox freely
welcome! chat's in here #💬・old-gen-chat
ok thanks how about splunk?
Thanks
i mean i heard wireshark was decently easy but nmap and nessus seemed hard
nmap is one of the tool s i use on a regular along with many more tools
would you say or would you prefer nmap or nessus ?
on a beginner level tho
i can learn the harder one later on I want something simple so i can understand
nmap and nessus are a beginner hacker/defender tools
would u say one is easier?
both
ok well which one do you think i should start with?
nmap
or wireshark actually
how much do you know about fundamentals
for networking very basics, I lean more towards cybersecurity, rn I have my sec+ so I know much more about firewalls, ids, ips, and others similar
risk and threat detection
oh i see, then yes you should learn wireshark, afterwards learn nmap, and then nessus
do you think splunk aswell?
ok thanks
splunk would come near the end
ill learn wireshark first and see what i go through
that's the tool that's complex to learn
ohhh
as it's a siem system
i was about to start on that
wireshark can be learned from yt and tryhackme/hackthebox/codecademy?
ok thanks alot man i really appreciate it ill remember you
i'm currently studying for my security + exam and i came across a set of "practice exams." is this what the actual questions are like, or something else? https://www.examcompass.com/comptia/security-plus-certification/free-security-plus-practice-tests
id say somewhat yes
Should I start going to school for information technology? Or would I learn more here?

