#👥・help-me

1 messages · Page 135 of 1

finite dawn
#

Hi guys, I am currently using Owasp Zap to pentest a web app. So far I have done recon with some tools like whatweb, amass, wapplyzer, and crt. And I captured the traffic currently using manual explore because I am not trying to spook cloudflare with the automatic scan.

#

I am trying to find the pentest channel but I guess here will do

zenith valley
#

I changed all my passwords. Shit! I am so screwed

finite dawn
#

My question will be, I have to know what I am looking for in the chunks and request and response, is there possibly a framework or guideline to follow for ease.

#

Searching through a series of chunks can be annoying. Although zap will give some alerts but you still have to dig.

whole patio
whole patio
zenith valley
finite dawn
whole patio
#

I would have to consult a search engine to answer that - as most people do over time, I wrote my own

#

and you can surely google that yourself 😉

finite gorge
#

Anybody know how to make some money im broke and it suck

whole patio
finite gorge
#

Chat I’m really talking to a hacker that’s cool af😭

#

I’m on discord offf my phone so It’s harder to find things which folder has the blueprint to learning cs

bold birch
#

lol

woven anvil
thick elm
#

Good morning

#

Quiet here today

marsh drum
#

I have done Android Development and Backend Developer and I am in my 4th year of college
I wanted to start with some fun Cyber Security stuff like Capture the flag and all things

Can anyone suggest me how to start with it
I know Cpp, Java and Kotlin well and beginner in python

solid juniper
#

I know next to nothing, and i want to try instailling linux onto a chromebook that is EOL. What would be a good distro to install (for the sake of learning)?

woven anvil
neat temple
#

So..i nedd some openions 🫶🏻

I need to plug in a pendrive into my lap but need to avoid getting infected if the pendrive is infected...what can i do

marsh drum
neat temple
wild leaf
#

guys i have 2 raspberri PI 5 + 1 laptop as servers, what security measures can i apply to them? i have auto updates i have configured ufw so that only connections through my websites wich are routed through cloudflare are allowed and i have closed all ports like ssh to work only through tailscale, anything else i can apply?

copper marsh
#

Currently in my 2nd year of college and i wanna be in cyber security, especially in reverse engineering and/or pentesting, anyone got a roadmap for me?

woven anvil
# marsh drum I have tried CTFs for fun with my friend And for OS and Networking like I have d...

For OS management, best is if you have a way to spin up VMs, then just start practicing setting up different servers for things. How does the OS interact with it? How would you better manage the OS to protect it?

From there, you understand what to look for with other people's setups like in CTFs to be able to figure out what are the ways that you can can into the environment.

But some CTFs are going to be based off nuances of things like Bash and what not, so official documentation for things like Bash are required reading.

For networking Cisco has their Network Academy that offers a free course along with Cisco Packet Tracer, a network emulator to practice with. You can also practice networking concepts in VMs though.

dusky pelican
#

i tried breaking through a VM yesterday.. windows 10 through msfconsole... Didnt go as plan.. using hydra

i wasnt in so the meterpreter couldnt read anything, well not read antyhing sorry

it wasnt there. seems like the command doesnt exist

woven anvil
dusky pelican
#

hydra doesnt seem to exist neither

woven anvil
dusky pelican
#

how, idk. cuz when you try the psexec.py, that doesnt seem to exist

wild leaf
#

theyre all running stuff on bare metal, no containers cuz networking gets messy and hard and im using ubuntu server on all of them

whole patio
woven anvil
whole relic
wild leaf
whole patio
#

But yeah, ideally you want a dedicated, airgapped laptop

dusky pelican
#

hmmm... oh and im just beginning out with cyber.. The vm doesnt seem to pick up any vunrabilities somehow. i assume Vm doesnt have a TCP, but how.. It claims theres no tcp i assume thats just VM things

whole patio
#

I have an usb stick with hardware write protection switch for stuff like that

wild leaf
#

is there any way i can test the security? like a website where u give the link to your website and it does many pen tests?

dusky pelican
#

so is the Transmission control protocol just not visible cuz of the option i chose.. the adapter or?

#

cuz its on bridge adapter rn

marsh drum
woven anvil
dusky pelican
whole patio
woven anvil
#

Or "The VM doesn't get an IP"

dusky pelican
woven anvil
#

i don't know anything about the VM or where you got it

dusky pelican
#

its supposed i assume

dusky pelican
woven anvil
dusky pelican
spark junco
#

Can anyone say what's blue name mean ?

dusky pelican
#

idk.. I dont feel like going through the basics of cybersecurity.. its just a burnout

woven anvil
dusky pelican
#

unlike this

#

its just how i like doing things, going into the things and doing it. not learning bar by bar

dusky pelican
woven anvil
dusky pelican
woven anvil
#

Which is why it seems too difficult. It assumes you already know basic IT stuff first.

neat temple
woven anvil
#

You don't have to go through the TryHackMe or any of that stuff if you dislike that way of learning.
Grab debian netboot, install without a gui, and start learning how to set up different servers and stuff to play around with "what am i doing when i set these up, what are ways people could screw with my setup if they had local network access".

Eventually, move onto the OS itself. How can you set up the OS better to protect against people doing weird/malicious things from the local network. Arch is great for that, because its a great wiki.

If you can't think of something to host, here is a bunch of applications that are self-hosted you can play around with.

https://github.com/awesome-selfhosted/awesome-selfhosted#table-of-contents

GitHub

A list of Free Software network services and web applications which can be hosted on your own servers - awesome-selfhosted/awesome-selfhosted

spark junco
#

Can anyone share the icon that the bingo aap has
I can't find the one that was made in the announcements

fickle sleet
#

well i made it to bronze now an expert answer me please, is is real and possible to learn cybersecurity from internet free without university ?
as a someone who wanna be a red team

dusky pelican
woven anvil
woven anvil
# dusky pelican 🫂 🌸 THANK YOU SM!!, il take a look

For networking, you can do the same. Grab opnsense/pfsense, or even just take linux and turn it into a router(heck, you can even turn windows into a router if you hate yourself enough).

Once those things start to make sense, then move onto "what tools can i use to better test the security on these machines". Think of "TryHackMe" as an "introduction" to those tools, and then the official training or documentation for something like Burp Suite for example is where you get elbow deep in things that would lead to pentesting/redteaming.

haughty dawn
elfin bough
#

New members just joined now
And I want to learn here

dusky pelican
#

thanks it means much

spark junco
carmine timber
#

hey im trying to get into cyber scurity and self teach myself so im kind of new to this and need a little help

#

what are they asking me in this: "What is the netstat parameter in MS Windows that displays the executable associated with each active connection and listening port?"

dusky pelican
#

gosh theres alot of people who seem interested in cybersecurity... competition is growing thick

carmine timber
#

i ran the netstat command in the terminal but im not understanding what im looking for

nocturne pasture
carmine timber
blissful sonnet
#

then search for the relevant parameter to answer your question

haughty dawn
whole patio
#

Flash a live image with forensic mode onto one of your usb sticks, so it does not mount the hard drives.. boot from it.. then plug in the other stick

#

Its not "ideal" but highly unlikely to be dangerous

nocturne pasture
# carmine timber yes

Look at the notes it gives you. It lists out an image showing you the parameters and what they do

blissful sonnet
whole patio
carmine timber
#

okay thank yal

blissful sonnet
#

there are both data blockers for blocking charge, and there are data blockers for blocking HID/CDC etc

whole patio
blissful sonnet
#

you want to buy the one that blocks HID

blissful sonnet
#

you can still see content, but no HID keyboard inside the drive will be able to run any commands

whole patio
#

protection measures against HID devices are software

neat temple
blissful sonnet
#

chances are it isnt a rubber ducky or HID implemented

whole patio
#

there "are" devices that check whether an usb devices announces itself as HID, but again.. those are not lying around everywhere

blissful sonnet
#

they are on the net but ok

#

anyways

blissful sonnet
neat temple
whole patio
#

Well I told Sarang what to do. Twice. Up to them now

neat temple
neat temple
whole patio
#

-.-

neat temple
whole patio
#

No I didn't

#

Flash a live image with forensic mode onto one of your usb sticks
(so it does not mount the hard drives)

boot from it

then plug in the other stick

#

nothing about dual boot anywhere

woven anvil
#

Learn how to boot from live linux USB distros, and play around with things at least a few times

whole patio
#

and yeah, if you do not even have a single usb stick on your own, or that you can borrow, I wouldn't go further

woven anvil
#

or does kali have a forensics mode

whole patio
#

kali does, too

#

its not really "forensic" in terms of being able to do stuff.. just "not touch the evidence"

torpid jungle
woven anvil
#

So Arch's forensic boot mode would just be the regular live arch iso then

#

because it doesn't auto-mount anything by default

whole patio
#

no need to mount it and flip some bits in the process

exotic cobalt
#

Can someone help I just like joined and I want to learn about cyber security and hacking and allat but I don’t know where I can get started is there like an Info channel or something

woven anvil
#

something like?

dd if=/dev/sda of=~/WorkingDisk.img
whole patio
exotic cobalt
whole patio
#

forensic image would do the whole hashing of the process too

#

data bridge - live usb

woven anvil
#

ok, and there seems to also be 2 other versions of dd specifically for forensics. Cool.

whole patio
#

thats my personal forensic kit

#

that stupid forensic data bridge alone goes for something like 700 EUR new... its madness

torpid jungle
whole patio
#

well if the defense claims you altered the evidence, you need to be able to show that the image you made is an exact copy of the original.. so no "was last accessed today"

#

I am actually secure erasing a 16 TB external hard drive I use for hard drive images as we speak.. been at it for 5 days.. 2 more to go

#

well. 1 day and 15 hours left..

torpid jungle
whole patio
torpid jungle
dusky pelican
whole patio
#

it is

dusky pelican
#

gosh...

#

well eris... il have more respect then

torpid jungle
whole patio
#

well if it takes that.. 😉

whole patio
#

just one of the more active ones - doesnt mean all that much

#

I am surounded by people with way more indepth knowledge.. maybe not always in the #👥・help-me channel, but thats the territory

dusky pelican
#

better than having no one around. still thankful for the help either way..

neat temple
#

So...can i ask a last dumb question 😭🌝

Is it possible to start cyber forensics without knowing cyber sec or hacking or something...will be it be like trying to find and protect things but idk what am trying to find?...or can i learn them along the way with cyber forensics

whole patio
#

knowing regulations, being responsible for documentation, etc

#

its not technically needed to have technical knowledge there.. though it sure helps, and people regularly use it as a starting point into the career

#

its just.. its usually not a job given to the younglings

torpid jungle
whole patio
#

many people in this fields did not have a straight career path

torpid jungle
whole patio
#

My usual advice is.. don't rush it, have a plan b in case this takes longer, and if in doubt.. look around you.. and see that other people aren't superheroes either

whole patio
#

Here in germany, no once cares about or expects a master degree

torpid jungle
whole patio
#

I hear that in other regions, like india/pakistan, it is next to impossible to get a job in the industry without it

whole patio
#

you have a confident attitude, communicate honestly.. now maybe develop a bit of a suspicious eye every now and then, and.. 😉

#

I used to sit with the daughter in the city center every now and then and we played a little game "What wrong with them", where we looked at people milling around and see if we can figure out what they do or who they are 😉

torpid jungle
woven anvil
torpid jungle
old falcon
#

So my friend checked a text message last night and now his iPhone and insta got hacked. What should he do?

whole patio
#

the phone, I mean

old falcon
#

One sec let me ask him

whole patio
#

insta? Yeah maybe.. contact insta support about it, as usual

old falcon
#

He said that when he got it the phone reset and it wasn’t an update

whole patio
#

Unless you friend can be considered a person of interest for nation state actors.. it is highly unlikely their iphone got hacked

old falcon
#

His phone number isn’t on his phone, and he tried to login but there was a protected number that got on his iCloud account

blissful sonnet
#

contact apple and instagram support

whole patio
#

Case for apple support then

old falcon
#

He said he’ll ask go to the phone carrier service and then contact Apple

#

Thanks

haughty dawn
torpid jungle
whole patio
#

ICS maybe.. the world is your hardshelled seafood

#

somehow when I hear engineer I still think building large machinery first

torpid jungle
torpid jungle
whole patio
#

Industrial Control Systems - just ignore me, was still thinking machines

torpid jungle
torpid jungle
#

But I’m mostly on the business domain, not really on platform engineering. So I write the code that runs on that infra.

woven anvil
torpid jungle
bright lynx
#

Hey guys
I hope I am using the right channel xD
Basically I want to learn OSINT and hopefully start a career in it
But I don't have a clear roadmap in mind and I don't know where to start and what certifications I need...
I do have some experience and I know the basics of cybersecurity

crisp star
bright lynx
#

Oh okay thank uuu

noble canyon
#

I’m taking the Security+ in a couple of hours, what are some good pre-exam tips?

whole patio
#

@jolly path Now.. please don't make this weird, but.. I already might up my mind not to be friends with you, so no friend requests anymore, okay?

woven anvil
#

@sharp rock
Do not ask for unethical things here.

vital arch
#

Z

woven anvil
agile osprey
#

hey i just join this server i want some help i've been working as SOC L2 and Senior GRC for last 3 years now i've moved towards VAPT/Bug bounty but im clue less where as i just started doing some VAPT on wordpress websites using WP scan and a little bit of burpsuite can any of you guide me or teach me. I've no timing issue totally depends on the person who'll help me learn VAPT/Bug bounty

woven anvil
#

Ideally, you also want to have strong knowledge of networking.

agile osprey
woven anvil
agile osprey
woven anvil
agile osprey
woven anvil
# agile osprey yeah i've just deployed kali linux is there anything else i should also deploy??...

If the idea is to attack web, then also learn some programming, html/css/javascript, and spin up an nginx/apache server to run it on a VM. Then see how you attack stuff that you make. Come at it from both angles. How would you protect against that? How would you try to get around that protection?

So "anything" that you put into VMs will help with that. Learning how to install linux so it becomes easier to install next time you go to do another test. Learning how package management and updates work.

#

Docker is also a really "nice to learn" for deploying applications onto servers.

#

Essentially, TryHackMe should give you a summary of something, then you should look for more information on official documentation, and trying it yourself on VMs

#

and not just TryHackMe, any online free resource >:D

agile osprey
whole relic
woven anvil
agile osprey
jovial glen
#

Hey I have a question, is there any way I can defend my laptop or any device from being on a botnet??

woven anvil
jovial glen
#

If I’m infected is there any way to fight it off?

whole patio
jovial glen
#

Wdym??

whole patio
jovial glen
#

No but I looked into botnets and if they run in the background using a tiny percentage of my cpu how would I know

#

That has to be illegal right?

woven anvil
# jovial glen If I’m infected is there any way to fight it off?

If you understand the OS(I will use Windows as an example), you can go through and remove all unwanted files, all unwanted registry edits, check the file size of every file to ensure that it has not been tampered with, and check if the computer is reaching out to any malicious IPs.

The problem is I am assuming if you are asking this, you don't already know the OS, where registry keys are suppose to be and their default values, what files go in system32, how big they are suppose to be and a bunch of other stuff that is "useless to memorize".

vital arch
woven anvil
#

And thats not even getting into Currently running processes, which is the bulk of things.

vital arch
#

sent by mistake

whole patio
woven anvil
vital arch
#

Saw any other text rather than that?

whole relic
whole patio
#

The reason - your question is too vague and your situation too unclear

#

Get the basics down first

jovial glen
#

Ok thank you

#

But if it’s that hard to know, why would I not just try to create my own botnet from a burner laptop and crypto mine

#

How would anyone know??

whole patio
torpid jungle
jovial glen
#

I was just curious because it seems like it’s very hard to catch someone with a botnet since most people would not realise that their computer is infected that’s it.

#

I’m just worried that I’m a part of a botnet also

whole patio
#

Yeah we get that clearly

#

That's also the reason I suggested what I did. To help you get a little bit more clarity about your attack surface and typical measures

#

"Is it possible ..." and "I am worried that... " is too big an area to address. You need to narrow that down by getting more basic infos and standard behavior nailed down

jovial glen
#

Ok thank you anyways

next bough
#

Can I ask a question? Can anyone explain what samba is for me?

next bough
#

thanks

#

how do I learn to use samba?

whole patio
next bough
whole patio
#

Just now you didn't even know what it is

next bough
whole patio
#

Oh well

next bough
#

@whole patio @turbid glacier thanks

#

What does enumaration mean?

whole patio
#

Find out "what you can find out with what you already know" - then do it again

proper hedge
#

Hi guys

#

Does anyone know about some endeavour tips

#

I just installed it and i was wondering if someone has smth useful to share

whole patio
#

endeavor OS?

proper hedge
#

Yup

whole patio
#

and tipps as in... anything specific?

proper hedge
#

Well, I'm a college student, studying software development. So smth that can help me with it

#

Tools

whole patio
#

any experience with linux?

proper hedge
#

Maybe

proper hedge
whole patio
#

Alright.. my advice would be.. take your time to get comfortable with the OS, learn basic linux commands.. install stuff you would normally use, etc.. with an arch based distro, this will keep you busy for a few weeks and also teach you to consult the distros documentation

proper hedge
#

Great

#

Thanks man

#

I appreciate you

whole patio
#

Appreciate you saying that

distant swallow
#

Can someone put me through,I love coding so much but don’t know where to start 😔

next bough
#

Start by choosing a beginner-friendly language like Python or JavaScript. Set up a simple coding environment (like VS Code or an online platform such as Repl.it). Begin with small projects, for example, printing text, basic calculators, or mini games. Learn by following tutorials and then tweaking them yourself. Practice a little every day, and join coding communities for support and guidance.

#

@distant swallow

#

Fair. Im not a pro at programming. And its seems that you have mor experience

#

Maybe C is better to learn as a first language.

#

But what is the best way to learn C in your opinion?

lapis lodge
#

Who here knows about capital one take over ??

next bough
#

I've tried to learn C but I gave up because of hard concepts and I didn't know what to build.

lapis lodge
#

Who knows about capital one take over ??

lost vapor
lapis lodge
#

What can I do to get money online? I don’t know what to do .

next bough
#

wow

lapis lodge
torpid jungle
#

Bucket list project, for me.

next bough
#

this is not for making money

lost vapor
lapis lodge
next bough
#

I dont even know what fuzzing is. 😢

lost vapor
#

have you gone through networking/linux/windows/AD/python fundamentals?

next bough
#

networking, linux and python. But not super deep @lost vapor

lost vapor
lost vapor
#

be honest with me, that way i can pinpoint you in the right direction

#

ok, so time to dive in a bit deeper

next bough
#

okay

lost vapor
#

i would recommend you to start with networking first, as it's the core and where everything starts

#

you could learn networking for free in netacad

next bough
#

Okay

#

should i start with networking basics?

lost vapor
#

documentation is also important in the field

#

so make sure you document things you're not sure you'll remember

next bough
#

thanks

#

for the tips

lost vapor
#

you're welcome, if you stumble again feel free to reach out here

next bough
#

should I go with "self paced online" or "instructor led"

lost vapor
#

yep, you need to discover for your own
i know it can be a bit overwhelming as there are lots of different informations you can learn about

#

many tasks to complete

#

but you gotta train your mindset to try and go through some of the decision on your own

next bough
atomic slate
#

How be a good cyber security 🤔 😕

lost vapor
next bough
#

can you ask me a question about networking to see how much i know?

next bough
lost vapor
next bough
#

udp? tcp=transmission control protocol

next bough
#

tcp can be used for datastreams like http, ftp or smtp

#

and udp idk

#

@turbid glacier

lost vapor
#

hop on netacad and learn:)

next bough
trim relic
#

fairs bro it’s okay just use pocket tracer

#

its like a mind map to help u figure how to a network works

#

kinda

#

Packet* tracer

lost vapor
trim relic
#

fairs but it’s fun to mess around with for a beginner

#

I rather him get a taste then get bored at least he can see the big picture

hardy pulsar
#

Ive recently made a virtual machine and kali linux and want to switch to either Ubuntu or possibly parrot or mint would i have to download everything else and delete it to redo the process?

glacial eagle
glacial eagle
tulip schooner
#

Can someone help me get my MLBB account because it was stolen from me but I still have my gmail connected to it

lost vapor
tulip schooner
#

Okay

woven anvil
olive cave
#

Need help with mobile cellular network. Old device on my account still receives incoming sms. Have a few questions for the right person.

haughty dawn
slate estuary
#

Hey there ! I have an .enc wireshark capture file but how do I open it

ashen steeple
#

Guys I've been doing some HTB for the past few week, and I've documented the process but often times i notice that it wasn't fluid enough, are there any tips or tricks for documenting the process and make it more clear and easier to understand?

whole patio
#

Look up "Effective notekeeping" online - it is easily one of the most useful skills for life

#

There are some notekeeping apps that will make the process way easier, too

silk veldt
#

I have a phone with a shattered screen and a tablet that is new I have them connected using a c to c cord is there anyway to view the and use the tablet to use the phone

whole patio
nocturne arrow
#

Hello, guys

#

Can some1 help me with some hard CTF?

#

Forensics, hard

#

Hidden text, my attempts were unsuccessful

#

Analyzed a 32-bit BMP (BITMAPV5HEADER, BI_BITFIELDS), confirmed no appended data via binwalk, manually extracted raw pixel data, performed extensive LSB steganography extraction (all bytes and per-channel, varying bit depth, bit order, and bit shifts), but no valid file signatures were recovered yet; investigation currently paused at the candidate-generation stage

woven anvil
#

@restive patio
No self-promotion here.

nocturne arrow
#

🥺

restive patio
#

Sorry. I dont have option.

#

Can i share text only.

woven anvil
# nocturne arrow Jeevis, are u strong in forensics?

Nope. Im strong in networking.

A bunch of people also don't like doing CTFs for other people. Its better to take some steps back, and re-go over the fundamentals.

But if someone can answer, im sure they will.

woven anvil
nocturne arrow
quiet oracle
#

Anyone help me with cybersecurity courses as a beginner?

woven anvil
#

This is absolutely the wrong way to learn if you are just starting out, and are only putting yourself in a position to get scammed or in trouble.

raw vortex
#

but

#

i have my finals

#

cant do it

#

i just need someone to do it for me man

woven anvil
raw vortex
#

and the offline one is after my finals

raw vortex
#

if someone wants to help it would be good

woven anvil
raw vortex
whole patio
#

The usual advice though, as always.. do not go down rabbit holes unless you are absolutely, 100% sure this is the next step and you did not overlook something else somewhere else. Take breaks. Check your documentation again if you missed a lead somewhere.. enumerate more

verbal rover
#

I'd like to start with CTFs, but it seems like you need some prior knowledge, even for beginners. When I searched, the information was a bit indirect for CTFs like the HTB academy or TryHackMe learning paths. It made me bored. If I just learn by copying writeup then build understanding from that, it feels like the learning flow isn't linear and kinda confusing. I wish there was a CTF guide with a workflow like this:

A little theory -> related CTF -> repeat

Is there something like that?

whole patio
#

Well what is "a little theory" to one person can be very different to the next person.. so the HTB/THM boxes, individually, can be considered tiny, personal CTFs

#

Thats also the reason THM names the stuff you need to find "flags"

#

your best bet would be.. do the theory, take it slow.. otherwise this is like saying "I want to get my bachelor by only doing the exams and not the learning inbetween"

nocturne arrow
whole patio
whole patio
#

your motivation <> our motivation .. this isn't me trying to argue.. this is me letting you know the situation

whole patio
frail jolt
#

I need to learn RAT someone put me on

whole patio
frail jolt
#

Sorry man just desperate

whole patio
#

Then I ask you here
And why is it your "trynna learn RAT"? - feel free to skip the usual "oh just without reason" or "just for learning"

frail jolt
#

Just for learning

whole patio
#

So you are desperate.. but its basically just "for no reason"

#

you see how this sounds made up? So be honest.. what for

frail jolt
#

Yeah man amma be honest I’m just trynna make a living I’m from Nigeria I know lotta guys earning from it and making good bread but refuse to teach or put any one on all cause of greed

devout linden
slow edge
#

@frail jolt We don't give our rats directly for some illegal cause! We gave you what to learn and how to start, stop asking for direct answers!
Read #📜・rules it clearly mentions no illegal discussions! Please follow them to stay here

slow edge
frail jolt
#

Ohhk

urban cliff
#

i want to get into cybersecurity, where should i learn from?

whole patio
urban cliff
#

thank you

hardy pulsar
whole patio
#

ah, one of the "bloated" guys

half frigate
#

Are there any ways to put movies on firestick?

empty mountain
#

Guys I need some help with a flag capturing

#

I got a ctf challenge from a github post it contains a gif file and the flag is hidden inside it
I tried everything but its not working
Went with HTML code
PIL but nothing seems to be working
Please help me out
Anyone

lean wave
#

If I am creating a TCP server interface how can I make or use a unique listening IP and port? Please help 🫨

worldly hamlet
#

just

#

open a socket and bind it to an ip and a port

raw vortex
empty mountain
#

Anyone help me out jeez
Stuck with the challenge since yesterday

raw vortex
#

;-;

#

i cant post pictures wow

#

not even zips

#

;-;

empty mountain
raw vortex
#

this ctf ends in a hour help gng

raw vortex
#

try some exif tools ig

empty mountain
#

I got this challenge from a senior from github but couldn't make it

#

Wanna try the challenge?
I have the github repo so you can check it out
I am hopeless 😭

raw vortex
empty mountain
#

Being a beginner sucks 💀

#

Nice to meet ya

raw vortex
fickle sleet
#

for a beginner to intermediate, parrot or kali ?

tacit fjord
#

You can choose which one you like

#

I prefer to use kali

#

I have used parrot but it was one or two years ago

#

You will use the same tools you will use the same things so it doesn't matter actually

#

But for me it is kali

#

I don't have any specific reason for it

fickle sleet
#

both of them based on ubuntu ?

#

i would like to use a distro that's based on arch but i only found blackarch and i heard it's not for beginners

tacit fjord
tacit fjord
#

U don't need it

#

I tried to use it but kali is enough

fickle sleet
tacit fjord
#

Are u familiar with terminal commands?

fickle sleet
#

yes i use endeavourOS now

tacit fjord
#

And you can try parrot as well

#

They don't have big differences

fickle sleet
#

okay ty

tacit fjord
fickle sleet
#

it sucks when u are a beginner like someone said here

grim oxide
#

Oy guys

#

I need some help

fickle sleet
#

fair enough

grim oxide
#

Can you guys help me

fickle sleet
grim oxide
#

Okay

grim oxide
#

It's about my account

tacit fjord
#

I did same things in the past

#

I asked a lot things to a lot of people

#

Even about distros

grim oxide
#

My computer it broken

#

And I forgot the password

tacit fjord
#

They just said just start to use one of them then u will be able to choose just start

grim oxide
#

I'm suck

tacit fjord
grim oxide
#

Okay

oak glade
#

If I wanna get into cyber security do I need a proper pc or can a laptop work?

digital plinth
#

Sup guys I need your help in understanding how to document and maintain writeups and reports of all the challenges, machines, vulnerability discovery consistently as a habit cause I sense it's really vital to document everything but I find it quite tedious to jot down contents and now at work maintaining documentation is difficult for me

oak glade
devout linden
chilly merlin
#

Yo mr white

mellow kindle
#

hi guys i am new here ,i am interested in learning cyber secuirty ,any mentor please .Thanks

whole patio
strong orchid
#

Im looking some basic help/advice. I am wondering what the differences are between Kali Installer and VMware? I have an old laptop and another thats already running dual boot windows....what would be the best stack for me to explore pentesting my own stuff?

#

and what are the advantages and disadvantages of both TIA

whole patio
whole patio
#

the premade image just uses fewer clicks and gives you the default user and password

#

no one is "pentesting their own stuff".. either you know the credentials or not

mellow kindle
#

hi guys i am new here ,i am interested in learning cyber secuirty ,any mentor please .Thanks

whole patio
strong orchid
strong orchid
whole patio
#

1 gb ram is too little, if you want a graphical user interface .. as for the CPU, at least 2 threads are recommended

whole patio
pale hull
#

My pc crashed while i was working and i had to flip the main switch, after that it won’t boot at all. on power on it does one long beep then a bunch of short beeps, fan spins during beeping, stops for a few seconds, then repeats in a loop. no display or bios. tried reseating ram, clearing cmos, reseating cpu; if anyone experienced this issue and resolved it, lmk. Weried issue tho

whole patio
strong orchid
pale hull
whole patio
#

A power-on self-test (POST) is a process performed by firmware or software routines immediately after a computer or other digital electronic device is powered on.
POST processes may set the initial state of the device from firmware and detect if any hardware components are non-functional. The results of the POST may be displayed on a panel that ...

#

do you happen to know the manufacturer of your motherboard?

pale hull
whole patio
#

Alas every manufacturer has its own code for that which beep sequence is trying to tell the user - if you know its gigabyte, then try to determine the exact sequence by ear, and check with gigabyte documentation what it means.. it usually tells you stuff like "ram error" "not enough power to cpu", "graphics card failed", etc.. stuff you would have to know to troubleshoot it

pale hull
#

I will update you if I successfully troubleshooted it

whole patio
#

No need to tell me specifically

#

Feel free to just address the channel

pale hull
#

No problem

#

Still appreciate ya

pale hull
#

My psu is cooked

next bough
#

why

pale hull
#

It's leaking current

next bough
#

Oh

next bough
#

yeah

whole patio
next bough
#

@pale hull sorry to hear that

pale hull
#

But you can't fix me when my dad will found about this

next bough
#

@pale hull what is going to happen?

pale hull
#

But I have a bad feeling about this

#

Gotta fix it before he get to know about this

next bough
#

@pale hull hope u fix it

pale hull
#

Mhm

crimson harness
#

@mellow spindle I signeduped to the cisco acadamy

#

now what to do

whole patio
mellow spindle
whole patio
next bough
crimson harness
#

like now hwo to get the lessons

whole patio
#

P.O.S.T. codes have a hierarchy .. it is likely that the PSU is faulty now.. but it is not guaranteed that it didn't damage other components in the process, too

mellow spindle
crimson harness
#

ohh okay now Im in lessosns.it says intro to cs and ,attack concepts and techniques

#

am I in the right path

#

how to get other lessons unlocked.will it automatically unlocks?

idle silo
#

Is there any cookie brute like tool to random guess cookies?

mellow spindle
#

You can unlock it anytime. But there's no career path in ethical hacking.

next bough
mellow spindle
crimson harness
mellow spindle
#

Also my advice is, do hands-on practice like go to THM are lots of free rooms to practice

mellow spindle
next bough
#

no but theere are foree

blissful sonnet
crimson harness
next bough
#

a medical condition

crimson harness
next bough
crimson harness
blissful sonnet
#

LMAO

next bough
crimson harness
next bough
idle silo
# blissful sonnet no

For example site has no redirect from http to https can it be manipulated with cookie poisoning?

crimson harness
next bough
mellow spindle
blissful sonnet
#

or "guess it"

crimson harness
#

is it?

blissful sonnet
#

LMFAO

next bough
#

lmfao

crimson harness
#

it says managable through medications

crimson harness
blissful sonnet
#

yes

crimson harness
#

why laughing

blissful sonnet
#

like an inhaler

#

because how do you go through this world and you've never heard of something like asthma

#

its funny

crimson harness
#

Im in a something like .introduction to cyber security

mellow spindle
next bough
#

stop talking about asthma

mellow spindle
crimson harness
blissful sonnet
bleak yoke
#

Hey wanna have an idea on IT any leads?

whole patio
crimson harness
next bough
#

hello

crimson harness
next bough
#

@crimson harness I just want to help u

woven anvil
crimson harness
crimson harness
#

@mellow spindle the cisco is really hard to operate bruh

mellow spindle
agile osprey
#

Hey can anyone guide me how to exploit WordPress websites like with commands or tools I've used WPscan perviously and got to know about XML-RPC is enabled and publicly accessable, directory listing is enabled and Rest API user is exposed where i got the username of the WordPress login now can anyone help me to login into it cant find the password

next bough
# agile osprey Hey can anyone guide me how to exploit WordPress websites like with commands or ...

Helping someone log into or exploit a real WordPress website without explicit permission is illegal and cannot be assisted, even if XML RPC is enabled, directory listing is open, or usernames are exposed through the REST API, because none of those issues alone provide legitimate access; exposed usernames are common, XML RPC mainly increases attack surface but does not bypass authentication, and directory listing rarely leads to credential compromise, so the correct and legal approach is to learn these techniques by setting up a personal WordPress lab locally or by using authorized platforms like TryHackMe, Hack The Box, or PortSwigger Academy, where WordPress style vulnerabilities are intentionally included, allowing study of authentication mechanisms, common misconfigurations, and defensive controls without breaking the law, and guidance can be given on understanding vulnerabilities conceptually, building a practice environment, or securing WordPress sites against these issues.

molten hatch
#

i have question how hackers even get Cobalt Strike tool if:

  1. Legitimate Cobalt Strike is only given to company that exists and trusted
  2. From my research it is very hard to find even cracked version
  3. Company's or people who downloaded this tool don't post any link to downloaded file.
next bough
# molten hatch i have question how hackers even get Cobalt Strike tool if: 1. Legitimate Cobalt...

Cobalt Strike ends up in criminal hands mainly through leaks and misuse rather than easy public downloads: some companies or contractors buy legitimate licenses and then an employee intentionally or accidentally leaks the installer, cracked versions usually come from old leaked builds that circulate privately in underground forums and are reshared quietly to avoid takedowns, some threat actors steal copies from compromised red team servers or build systems, others reverse engineer older versions to remove license checks which is hard and why cracked releases are rare, and in many cases attackers are not even using full Cobalt Strike but modified beacons or open source frameworks that imitate its network patterns, which is why you see Cobalt Strike like traffic even when the real tool is tightly controlled, and because law enforcement and security vendors actively monitor public links, anyone who has access avoids posting files openly and instead shares them through invite only communities, direct exchanges, or private infrastructure.

molten hatch
next bough
# molten hatch Is Cobalt Strike so powerful that even FBI is controlling it? from what i seen i...

Cobalt Strike is not something the FBI secretly controls, but it is closely monitored by law enforcement because it is heavily abused by criminal groups, and that sometimes creates the impression that it is “controlled”; it is powerful, but not magical, and you are partly right that at a technical level it overlaps with Metasploit, however the difference is not raw exploits but how it is designed for real world operations: Cobalt Strike focuses on post exploitation, stealthy command and control, payload staging, lateral movement, and team operations in a way Metasploit does not prioritize, it provides polished workflows for long term access, evasion, and coordination that red teams and attackers care about, which is why it became so popular; the FBI and other agencies track it because leaked and cracked versions are used in ransomware and espionage campaigns, so they monitor infrastructure, signatures, and license abuse rather than “running” the tool itself; many attackers are also not using full Cobalt Strike but modified beacons or clone frameworks that reuse its techniques, which makes it look everywhere; so the short reality is that it is not just Metasploit with a GUI, but it is also not some unbeatable superweapon, it is a well engineered post exploitation framework whose power comes from tradecraft, stealth, and operational maturity rather than new exploits.

molten hatch
#

thank you

pale hull
#

It was old tho

worthy crag
#

Im still semi new to cyber security does anyone have any places to start i want to learn both sides blue and red teaming always had a love for tech and cybersecurity has been calling to me I already know the basics of Linux and have started hack the box and try hack me but want to build a home lab but don't know where to start on that

worthy crag
#

Ok will do thank you

crimson harness
blissful sonnet
prime crescent
#

Help help… I need help to recover my account back

hardy pulsar
thin fulcrum
#

hey guys, i am building my own game and i am in the early stages of development. i have heard in games that people are able to change things in the coding and hack in the game to give them unlimited health, damage increase, resource limit etc. i want to be able to stop this from happening and deter people from doing it. i want it to like kick them from the game when they change these types of things. could anyone help me out and tell me how they would be able to bypass the game from kicking them? i really want to make sure its a cheat free game.

blissful sonnet
thin fulcrum
prime vigil
#

Trying to find out if my girlfriend is cheating

blissful sonnet
#

you wont be able to always stop cheaters

blissful sonnet
thin fulcrum
prime vigil
blissful sonnet
#

ur not gonna be able to do anything else so

thin fulcrum
lusty lake
#

hey everyone im looking for someone that can make a scraperbot for me for twitter and tiktok (catcihn upcoming trends early for more info dm) im willing to pay good money. @ me if you can help

stoic zenith
#

I got some roadmap from those ai, but they dont work for me
they're too, weird for me
so I was wondering did any "expert" shared theirs that I can use

whole patio
#

leave it to law enforcement

#

and spare us the sermon about how they do not do anything.. we know why you joined a cybersecurity/hacking discord, and the answer is no - we do not help you stalk someone else, on the pinky promise that it would be okay cause you have a whole story around it

This gets asked "all-the-time"

#

If the story should be true, and it does not matter to us if it is, take comfort in knowing that we wouldnt help your arch nemesis either to identify you by your handle, when they tell us a different sob story

unborn ibex
stoic zenith
#

i already did a few of those htb, try hack me
i was thinking maybe a little advanced

frosty prism
#

I want to start learn Kali Linux but have no idea what’s so ever what route should I take,do you guys have any idea?(I finished my electrical engineering license and currently at my master and have been coding in python/c++ for 4 years)

unborn ibex
unborn ibex
frosty prism
#

I already did that sir

unborn ibex
#

so then you know how to use Kali linux, great!

frosty prism
#

Yeah but it’s with a payed plan so I can’t progress how I want without paying

#

You got any workflows in mind that can help?

unborn ibex
#

then read the kali documentation and explore on your own or be more specific about what you are looking for

whole patio
#

there really is no learning "kali". Its just linux. Tools each have their own documentation, and are best learned along the way as soon as you need them

floral imp
#

Has anyone been able to successfully boot Debian on an HP laptop with emmc storage

final lion
#

new to the channel, thought this would be the right place to ask, is there a single place to go to that is a strong guide on how to restrict windows updates to avoid all the new AI skimming coming out from microsoft that I have recently heard about? or is it better to change operating systems entirely and learn something new? Like linux or something else.

whole patio
#

First version always carries the risk to either not get any updates at all anymore, or new updates re-enabling them, or microso|t harassing you about it. Either way it is going to be something you have to monitor and maintain (assuming we are not talking about an enterpise scenario here, ofc)

#

And as for linux.. seen lots of people make the switch last year and so far no one who regretted it.

#

Well, apart from kids missing roblox

final lion
whole patio
#

Content creation is great on linux

#

Sure, may need to adjust a bit. New tools perhaps

junior path
#

can someone tech me how to build a ai bot to tell me when to buy or sell on pocket option cryto

blissful sonnet
dusty nacelle
#

Salutations fellow humans! Glad to join ya'll 🙂 Has anyone re-programmed embedded devices like, power steering control modules to perform another function? trying to convert my module into a shop grinder, i wonder what you think..

onyx imp
#

hey yall i’m super new to cyber but know a bit of networking because of my job. i’m already watching professor messers’ sec+ videos but i know i’ll be unprepared for free response questions. what resources do you recommend?

spiral wagon
#

ill dm you

whole patio
#

Grow up

woven anvil
#

@spiral wagon
Be careful of scammers who will attempt to use the information you give them to also blackmail you, as they will see you as an easy target.

Do not talk to people on discord about this. Get legal help if you need to.
Read through this please. #📢・announcement message

runic trench
#

What channel should I direct drone questions/help? does that exist here?

woven anvil
civic needle
#

Discord scrubs metadata

runic trench
woven anvil
civic needle
#

Well obviously but I’m saying that if you’re sending pics through discord they scrub metadata

runic trench
civic needle
#

Well you kinda have to not be dumb. Most scammers use the normal “send me money and I’ll give you answers” approach

woven anvil
#

Including DMs. A DM is just data on someone else's server that you don't control. Nothing you put into a DM on any of these platforms are "private".

woven anvil
#

Pay for some extra computers to set up a homelab instead.

#

Then use the monstrous amounts of free information online alongside your THM premium (Use THM as an introduction to the subject and a "guide on what order to learn things", then look for official training/documentation for that subject/tool/concept).

bronze tide
#

Hii guys I have a little knowledge about commands in kali linux any tips for the other common commands to use for educational purposes?

woven anvil
bronze tide
woven anvil
bronze tide
woven anvil
#

Become friends with the person?

#

No, and stop trying before she goes to the cops about it.

bronze tide
woven anvil
#

They can assist with recovering access to the account.

gaunt matrix
bronze tide
woven anvil
bronze tide
woven anvil
# bronze tide Got it, also very one last thing is there any ai that helps you ethical hacking ...

Avoid anything that claims it.

The way LLMs work, if you do not feed it all the information it needs, it will hallucinate information that could be unrelated or flat out incorrect.

As a learning tool, where you can't be the one to double-check its answers, all its really good for is telling you about a subject. Reading official documentation about those subjects will tell you more, without giving you bad information because the LLM is taking its "best response" from a reddit post 5 years ago using an oudated version of a tool or language or whatever.

frigid coral
#

np

chilly merlin
#

Should I be concerned if I see a kernel security check failure and restarting for windows 10

wise salmon
#

Anybody know anything about dormakaba Saflok doors?

plush estuary
young hazel
#

Hi, my crypto wallet got recently hacked although the amount was 14$ it’s my first time seeing this is their any way or guidance to recover my funds

whole patio
obsidian vault
#

My phone got stolen about 15min ago I know the number and imei but they have changed my login info as I am not able to login anymore to find my device is there away I can find my phone with the imei or phone number

hexed wind
#

who knows matrix pdf?

whole patio
#

And if you have "find my iphone" on a different device, might be able to use that

obsidian vault
#

Its android but besides the point lol

whole patio
#

alright "And if you have set up any "find my phone" service beforehand, might be able to use that"

#

You are not going to locate any phone on earth simply by knowing its imei and phone number, if that more closely matches your original question

covert verge
#

@whole patio

#

Can you help me with sm

#

Need an advice in fat

#

Fact

#

It’s about a roadmap that i found but idk if it’s good enough or not

#

Tried to send u dm but couldnt add me when u see this

whole patio
sleek fern
#

hey this site is real ?

sleek fern
#

or email login ? or if you on social media it can lead you there?

whole patio
#

I think they already said their credentials got changed

sleek fern
#

yo what you guys do on here im new to this site ?

whole patio
#

if you need help with anything specific, this right here would be the channel for it

sleek fern
#

splitting networks ? assinging Ips?

compact prawn
#

Hello guys am new here and i would love to learn cyber security from scratch....am a newbie

sleek fern
#

What can I learn right now ? \

whole patio
#

We dont know what your starting position is

sleek fern
#

What can you show me ?\

whole patio
#

If you want to be entertained or led by the hand for the dog and pony show, I can give you a website where you can look up which movies gets screened in which cinema. For everthing else infosec/cybersec related, its mostly on you what you can do with the resources provided

sleek fern
#

Im a cis major

whole patio
#

Thats not a bad starting position - I'd suggest you take a look at the new member guide and see whether there are some links that seem like natural next steps

sleek fern
#

lol havent finished school bruh but Im Down to learn some stuff

unborn edge
#

I need help where can I see my codm account??

lavish belfry
#

Is there anyway to get products on Amazon at lowest price or free? If there is then tell me

spiral lantern
#

yo guys someone made a fake instagram id on my name i need help if someone can please do let me know

crimson harness
#

guys is it possible to hack a website without having admin panel in it

#

i mean get acces

#

only for education purposes

#

just to know if its possible

fluid depot
fluid depot
#

admin panels aren't the only thing ever with high privilege. and they also aren't the server

#

ergo yes

#

there are quite a lot of ways, hence you should do fundamentals first.

crimson harness
#

I thought beside an admin panel we should hack into their cmputer

royal smelt
#

An admin panel is just one interface, not the source of power.
Websites have:
Server-side logic
Databases
APIs
Authentication systems
File systems
Permissions & roles

#

If any of those are flawed, access can be gained without ever touching an admin panel.

limpid musk
#

Guys I need help

#

I ordered laptop Lenovo ThinkPad E14 i7 10th gen 16GB Ram DDR4 256GB
But I don't know if it's good I mean it can be shit when it comes but found one
LENOVO
14-inch FULL HD 1920 / 1080
INTEL CORE i7-8550U 2.0 GHZ
16 GB DDR
256 GB
INTEL UHD 620
it comes with warranty should I cancel the order and get that one?

royal smelt
limpid musk
# crimson harness wym

I ordered laptop cuz I need new one but the laptop can be trash cuz I don't know who sends it I can cancel it and get another one same with warranty should I cancel the one I have ordered but the one I have ordered is thinkpad e14 i7 10th and the one with warranty is thinkpad t480

royal smelt
limpid musk
#

Lenovo ThinkPad E14 i7 10th gen 16GB Ram DDR4 256GB
No warranty or anything

#

And this is the another one I'm thinking to get

#

LENOVO thinkpad t480
14-inch FULL HD 1920 / 1080
INTEL CORE i7-8550U 2.0 GHZ
16 GB DDR
256 GB
INTEL UHD 620

crimson harness
limpid musk
crimson harness
limpid musk
#

But the t480 is shop

#

The first one is some guy I texted I wanted to buy cuz I liked it I ordered now I can cancel cuz I don't know if his saying the truth

royal smelt
#

If the E14 has no warranty and the seller is unknown, that’s a risk.
The T480 is older (i7-8550U = 8th gen), but it’s a proven model and safer if it comes with warranty.
Personally, I’d avoid no-warranty deals unless the CPU model and seller are fully verified.

limpid musk
#

Alright I mean all I need is Linux 😂 it will run good right?

fluid depot
limpid musk
#

Bro it can't the laptop I'm using now has 100% CPU usage only when I go into website 😂

spiral lantern
#

I need help people some one made my fake instagram

spiral lantern
#

someone made my fake instagram id and is texting all my followers

delicate crystal
#

I dont really understand what do you mean

spiral lantern
#

can u dm me

delicate crystal
#

For what do you need help?

spiral lantern
#

so this guy he know my friends seems like he someone i know

#

so if m able to get a name i will know who it is

delicate crystal
#

so a fake account is texting ur friends=

#

?

#

and you need help to get his name?

#

Just tell ur friends that is a Fake account, or post a story and write it and report this account. make screenshots and tell your friends and family to block and report this account too.

#

Its not legal to get some IP, name etc. from fake Profiles on Instagram

urban compass
#

Hey dear, anything interesting or new happening in AI? Something revolutionary?

whole patio
whole patio
cyan quarry
#

Yo, im tryna get into cyber sec, not exactly an ethical hacker, but something that allows me to work remote to carry on with my seclusive lifestyle...
Im broke so anyone have free resources that i can use to learn how to become a Security Analyst, with pratical tasks as well

whole patio
tribal siren
#

Hey guys, I’m building a personal recon framework for web VAPT/pentesting and I want your input. Any tool suggestions, workflows, or resources I should check out?

If anyone’s down to help or share ideas while I build it, I’d really appreciate it.

mighty pivot
#

HELLO

#

hhi

tribal siren
#

Hi bro 🤗

woven anvil
tribal siren
#

@woven anvil ohh Okies

#

Could u guys give me some knowledge from your experience in cybersecurity

#

Like the mistake u guys did when u started cybersecurity

woven anvil
#

@open crown
Do not post things like that in here.
Contact the platform support if you have a problem with it.

whole patio
#

People trying to speedrun their way into security.. looking for shortcuts and walkthroughs more than anything else

keen magnet
#

Hi I need with something important can someone please help me it take a long time to explain but I need an ear

keen magnet
thorny wagon
#

Hey guys, I want to learn more about CyberSecurity. Well according to my current research, I should learn more about Networking and OS. I started learning Networking and I'm following CCNA syllabus to learn about Networking (I might try to get my cert if feasible) but I have no clue what should I learn in OS? What should I know more deeply about? I know some basics such as users, managing permissions, looking up files, creating files and deleting them. But I feel like there's more to learn in OS than just this right? So what should I master in OS before I dive into the deep end of anything cyber related?

carmine lodge
#

Good question

thorny wagon
#

Do you have any insights?

#

That might be helpful?

whole patio
pastel badge
#

Hii, how can I create a voice channel or join one. I guess I dont have enough permission

whole patio
pastel badge
#

ty sir

whole patio
#

this is why we say - this is not an entry level field. The usual way is working in adjacent fields for years and then pivot into security

thorny wagon
# thorny wagon where do i even start then?

i have to start somewhere right? I am basically clueless on how to start. And everytime I start something, they suggest learn this first and everytime it get's a little disappointing because I'm learning but I have nothing to show for it.

whole patio
#

start with networking, maybe

#

or linux as an operating system you feel comfortable using

thorny wagon
whole patio
#

this is historically something you grow into later on the basis of already having a good general foundation

thorny wagon
whole patio
#

cant help you there

#

you ever played sudoku?

thorny wagon
thorny wagon
whole patio
#

Well what OS do you run currently?

#

Windows? MacOS? Linux? Something else?

thorny wagon
whole patio
#

Alright, I see ya

thorny wagon
whole patio
#

Then let me give you three specific tasks

thorny wagon
woven anvil
keen magnet
#

Heard 😂

thorny wagon
whole patio
# thorny wagon Alright, hit me!

First.. find a way to take effective notes.. there are several recommended apps people use in cybersecurity.. take one, that runs on any OS.. obsidion, joplin, whatever.. then install a new linux VM, something not debian based.. and try to make it do everything your windows machine can do now.. (apart from gaming maybe, cause its a VM) ... and you document everything you do in that notekeeping app.. make it nice and pretty, organize it so that it makes sense to you next week, too

#

write it down like you are writing for other people to follow and repeat the process

#

2nd task

woven anvil
whole patio
#

find and implement a way to sync that note with another machine.. for example your VM and your host machine. So that whatever you write in one gets automatically updated to the other one

thorny wagon
whole patio
#

dont rephrase it

#

not what I said, no

thorny wagon
whole patio
#

I said "take a linux distro with an architecture you are not yet familiar with (apt,debian) and make it do the same thing you would normally do on windows

#

document your journey

whole patio
#

make sure those note are syncced between devices

#

may have to be creative there

thorny wagon
whole patio
#

may have to use a 3rd party service or a small self-hosted service like nextcloud

woven anvil
#

if the devices are always online, syncthing is nice

thorny wagon
whole patio
#

lastly... ignore or delete that VM, make a new one that is neither debian based nor based on the 2nd one.. sync your notes to it.. see how fast you can get that machine up to speed

thorny wagon
#

Oh that seems cool, I'll definetly look into this.

woven anvil
#

Being able to re-create your progress is super important

whole patio
#

and dont shy from stuff thats not done in 5 minutes

thorny wagon
woven anvil
whole patio
#

I have a screenwriter app.. a digital audio workstation for professional microphones.. obs setup..
I dont know what you have running on your machine thats not a game, but maybe you do the same.. might be a different software, might be the same

thorny wagon
woven anvil
whole patio
#

streamdeck on the other hand...

#

especially if you dont use the default "english"..

thorny wagon
whole patio
#

well then you may want to try a software, that is giving me trouble.. its called "trelby" .. a tool you could write professional screenplays with

thorny wagon
#

Well, thanks guys for the tasks. I'll try to complete these, hopefully learn something as well.

whole patio
#

just recently someone started to maintain the over 10 year old github again.. but I just cant get it to work flawlessly (e.g. .. exporting to pdf)

woven anvil
#

I am tempted to say "try the windows version with proton" lol

thorny wagon
whole patio
#

a windows VM is my current workaround just to export it.. which is a great example of "when syncing between machines comes in handy"

eternal ocean
#

Hey all. New to this server and was wondering if anyone with some experience could give me a quick rundown of the tools I need to get started.

I have an education in computer science and have experience/exposure to a lot of fields adjacent to cybersecurity (which isn't to imply that I have nothing to learn, but moreso to say that I'm not entering the space without any previous experience)

I also did some basic cybersecurity training. I did learn about virtual machines (and a bit of Wireshark) but the course wasn't very engaging.

I'm not looking to become an expert hackerman or anything but if I'm in Comp Sci I feel like I should at least be familiar with these tools.

Thank you for any help, correction or guidance.

woven anvil
eternal ocean
#

Yeah I'd say that's fair. I know how to set one up and I get the theory behind it but I have an embarrassing lack of practical experience with them.

woven anvil
# eternal ocean Yeah I'd say that's fair. I know how to set one up and I get the theory behind i...

I would say that would be the best thing to do if you already have some helpdesk/sysadmin/networkadmin knowledge under your belt.

Hypervisors are huge in computing, and understanding the different ones, at least to an "Intermediate User" gives you the ability to spin up some really cool homelabs, where you can practice defending and attacking VMs, and the things you learn online without getting yourself into trouble.

You could spin up a log server, and see what it looks like when a network or server gets attacked. How do you protect against what you are doing? How would you get around your protections?

Its a fun rabbithole.

eternal ocean
#

Yeah that does sound like a fun start. Are there any resources you can direct me to that cover this in detail? I'll obviously look on my own but I guess it doesn't hurt to ask.

strong orchid
#

Hey all, I am looking for one of srhoe's videos that presented itsself on my fb feed. I can no longer find it...the video is regarding temu can help point me back to the video please?

#

TIA

woven anvil
# eternal ocean Yeah that does sound like a fun start. Are there any resources you can direct me...

If you have a spare computer, then I would look into Proxmox (You install it as a dedicated OS on that machine, then you access it from it's IP in a web browser to be able to create/manage VMs). There are a ton of videos on youtube of "getting started", but you should ideally gravitate towards their official documentation as the "source of truth", and just use youtube or whatever online free resource for getting introduced to a subject.

If you don't have a spare computer, and you are currently using Windows, then learn hyper-v. Its the built-in windows hypervisor. Official Documentation is also important here, so the advice would be the same as before with that. Just be prepared for "microsoft-style documentation".

eternal ocean
verbal sundial
#

I have found a site that offering premium access of different AI(perplexity,chatgpt) and 1/2 course selling platforms for free.
1.Even ,while signing up or logging,the website also taking anytype of invalid random inputs(like email:abdsjhyv36@gmail.com is accepted)
2. To get access,just have to use their mail and the otp.

Though ,they are giving access and can use these in official website.But I think it could be connection to data leaks or scam.A reddit post of 4/5 comments saying,it could be scam.

my concern:

  1. I really want to know if they are doing anything wrong.
  2. I want to use them as they are offering great value.Now,how to setup environment,where I could use them in environment with safety
empty mountain
#

Bro is there someone who can help with a ctf flag

whole patio
whole patio
empty mountain
#

Its available in github

whole patio
#

If it is available on github, are there not writeups about the CTF?

thick wigeon
#

Can anyone guide me in becoming a pentester

slate magnet
#

@solemn edge 2493pepebye

agile osprey
#

Hello Seniors I got a project for VAPT testing now i got admin user and normal user from client how can i do Broken access control attacks can someone guide me in detail??

sullen cargo
#

please help me

sullen cargo
#

bro like

#

wht do i do

#

should i hire someone to just erase me off the internet

#

bc that’s what i’m considering rn

torpid jungle
# sullen cargo wht do i do

If you already know your info, why would you need to find it? I'm sorry to say, if all that info was leaked, there's pretty much nothing you can do, but stay vigilant to ensure nobody is taking out loans in your name, etc.

sullen cargo
#

dark web. etc. making sure my info isn’t being sold or misused

torpid jungle
sullen cargo
#

that’s fine

torpid jungle
verbal sundial
feral lintel
#

There are companies providing services to help there.

whole patio
feral lintel
woven anvil
sullen cargo
#

thank you for your advice everyone. i know what steps ill be taking next

woven anvil
sullen cargo
feral lintel
sullen cargo
#

yeah that’s fair i just don’t want to be painted out to be some sort of bad person. words can only go so far but i can assure you that’s not the case for me

#

thank you for you advice everyone. i truly appreciate it.

#

again, i apologize if i came off the wrong way.

feral lintel
#

no worries, just trying to manage expectations here ^^
locking down your ssn is a good first step, and keeping an eye on your accounts.

delicate grove
#

Goodevening everyone I am a Nigerian, I need a mentor here I am a novice

limpid musk
#

Guys can a laptop be bad and when I buy it break in a week?

brittle adder
#

hello? anyone here works for google or can help me with my email problem?

whole patio
woven anvil
fervent trail
#

Is it possible to use an iPad that is password locked with the power of hacking?

woven anvil
whole patio
#

Don't steal stuff, m'kay?

brittle adder
#

when i was setting up my domain email on google workspace, my computer shut down, when i comeback and try to register, it said my domain was linked to another google workspace account, I try to login but i cant receive verification code through my recovery email. When i try to submit my data to recover my domain email on "https://toolbox.googleapps.com/apps/recovery/form?user=....", it stopped on step 1, saying my domain email is suspicious, but i can recover it by verifying using recovery email/phone number during login, the problem is, I never added the phone number, and the code didnt sent over my recovery email

brittle adder
whole patio
#

you are 100% wasting your time and effort telling us here

woven anvil
brittle adder
woven anvil
whole patio
torpid jungle
fluid sand
#

heya, I dont think we will be able to help much with that #📜・rules maybe go back to where you bought it and see if they can help

fervent trail
#

Bro it's my ipad

fervent trail
woven anvil
#

or reset the apple ID

fervent trail
#

Why would I try and break into an ipad I already have a phone

#

and a laptop

woven anvil
#

Why would you look into a more difficult and unethical way to reset your password when apple provides an easy way?

fervent trail
#

"Oh just log in with apple ID then derderder" she forgot the passwords!

woven anvil
fervent trail
#

Square up jeevis

whole patio
#

though the user name checks out

woven anvil
torpid jungle
bleak yoke
#

how can i get access to a samsung password

#

kindly

whole patio
visual solar
#

hii! 2 questions 😅
1- is there any good trustable AI unrestricted, i’m starting cybersecurity and how would like to have an AI like wormgpt to help doing some pen tests & stuff

2- for some reason my university blocks like 90% of the sites, there a way to cheat this? i jus wanted to open instagram & open my bank app to pay stuff (i dont want to waste my 5G with that)

bleak yoke
whole patio
#

hmmh

bleak yoke
visual solar
whole patio
#

"Breaking school laws"? Yeah that is not, what was meant with "educational hacking"

carmine timber
#

hey im a college student and i like to stream video games or really anything im doing and recently ive picked up cyber security and all of this. I have a lot of fundamental tech knowledge as ive grown up playing games and messing around on the pc stuff like that. ive found an ai thanks to the #💕・free-resources channel that can help me learn python from scratch. i wamt to stream this journey of learning python but im not sure if its okay to stream this ai or not cause im pretty sure it has no limits and i was wondering if thats a problem also if anyone had any tips for learning python on windows 11