#👥・help-me

1 messages · Page 143 of 1

whole patio
#

whats "both"?

brave shoal
#

What about me?, im genuinely asking for help

brave shoal
#

thats why im a flock im still at the stage where i decide which path

frosty stream
#

so i think ima stay here im asking eris

brave shoal
#

but im thinking of going as pen tester

frosty stream
#

a question

#

soooo

#

i need guidance

#

so im not breaking rules

brave shoal
#

Eris, i think youre more knowledgable than my current professor

frosty stream
#

he is

#

def

brave shoal
#

i love my professor because she is chill but she said it herself she took the class because its lvl 1 and she has little knowledge about it so she got assigned

whole patio
brave shoal
frosty stream
#

eris u dont understand blayt is dedicated

whole patio
#

it is really meant as "keep newcomers busy with topics, until they can ask better questions" 😉

frosty stream
#

to his craft he will not waver \

#

and he will become almost as good as you

brave shoal
#

Eris, im starting to think this is a troll conversation

#

but not

#

i am

#

serious

#

100%

whole patio
#

I am too

brave shoal
#

i will install apps if you send me something

frosty stream
#

blay wont let you down

woven anvil
#

@frosty stream @brave shoal
Can you guys please stop spamming this channel?

frosty stream
#

oh shi eris snitched

whole patio
#

You do not follow one path and neglect the other completely..
A police detective needs to know how crimes are commited..
A locksmith needs to know how people bypass locks..
and both a red teamer as well as a blue teamer need to know what the others are doing

frosty stream
#

you and your analogies

#

every other sentence is a analogy

whole patio
#

I see you are trying to DM me, I don't do DMs

fluid gulch
#

My univeristy recently is hosting a hackathon. Anyone here who has experience in attending one? What should I expect to do or see when attending a hackathon?

lavish tundra
fluid gulch
#

I’m like still a newbie to computer science, I only know a bit of C++ programming

lavish tundra
#

Would you accept the request?

lavish tundra
fluid gulch
lavish tundra
#

Yeah I do mind

nimble minnow
#

How can get rdp for Windows

crisp star
chilly merlin
#

I am i need of a programmer that builds a security software that analyzes People and objects in view of ccctv thus making it easy to find a law breaker

crisp star
chilly merlin
crisp star
twin anvil
#

This might sound a bit stupid but is having a double VPN feature on worth it compared to just one VPN on

dusty nacelle
#

nah

thorny dragon
#

This might sound stupid buh installing a VM ware on windows, need a root directory or do I have to root it

willow rampart
#

Guys

#

Please help how to delete my bios password i dont remember it

#

Lenovo

willow rampart
#

Yes

#

Reasarched it says enter 3 times wrong it gives a code but no it doenst

willow rampart
#

Anyone know how to do?

crisp star
#

In the past, removing the CMOS batteries worked, but on modern motherboards it won't work anymore.

prime bay
#

Anyone have latest sqli payloads?

lavish tundra
willow rampart
crisp star
#

Probably have to replace the whole motherboard

hollow vigil
#

Guys should I get the tryhackme premium?

willow rampart
willow rampart
#

Well i want to hope it works

frail flax
#

In the premium you can also have unlimited lab time, while the free version offers only 1 hour per day, so it all depends on your needs

full raft
whole patio
#

It's a learning platform, not an app

lyric salmon
#

Anyone Comptia Security+ certified

uncut harness
#

Pay the $16.99 its worth it

#

It teaches you while doing it hands on

#

good platform

austere marsh
uncut harness
#

So apparently i put one of the tryhack me codes at the end of the module and the bot night owl sent me a message saying i used to many caps. Didnt know that was a thing

#

Using caps?

#

Just posted a an end code from one of the 1st modules

#

☠️

#

Thought this was the help me section

#

Sent me an angry face too 🤣

#

Theres gotta be a way to determine or moderate these comments to determine or detect whats what, no?

#

Dont pay

#

Google it

rose carbon
#

nobody has figured it out yet😭

uncut harness
#

Also dont get your account banned for cheating

bitter scaffold
#

how do i update my pc drivers

uncut harness
#

Google fu lmao

#

Update PC drivers by running Windows Update (Settings > Update & Security/Windows Update > Check for updates) or using Device Manager (right-click Start, select device, "Update driver"). For graphics cards, use official software (NVIDIA GeForce Experience, AMD Adrenalin).

willow rampart
#

Idk my bios anymore but i dont need to atp i can run it anyway

woven anvil
stray seal
#

Uh oh

#

For you

whole patio
wind monolith
#

Hi, everyone just an engineering student from India want to play ctf events I created my own team for beginners but eventually no one showed up after registration

Can anyone let me in their team I wanna know how to play in these events, I want to win these events

Im a guy who never played CTF but I've been practicing all the hacking for quite a time now but I just want to try out these skills in events can anyone help...

finite heath
#

Can anyone tell me how can I perform this CVE-2023-46298 to submit it as hackerone report? how to get PoC??

river bay
#

hi everyone. i wanted a help in knowing how can i download kali linux on my laptop? i alr had it downloaded but i had to delete it cuz of storage and now no matter what i do it just is not coming how it should..

hollow vigil
# full raft What can this app do?

well from what I understand which isn't much its basically the starting step if you want to persue cyber sec ive been told that by pentesters alumini from my university, chatgpt and basically anyone ive asked "how do i get started" they all said the same thing start on tryhackme then move to hackthebox after that there are different steps some ppl say get certificates other say personal projects etc... so yeah I decided to finally put my foot down and lock in that is where im starting

hollow vigil
uncut harness
river bay
#

thanks!

ripe orchid
#

Hi guys....so I am a senior high school grad who'll be moving to college this august....absolute beginner with coding and programming but wanna become one....any tips for me on how to start what to focus on and build upon? And what projects to build?? (Sorry for this kinda question i just wanted tips from you guys😓)

frail flax
tight chasm
#

you can learn something but if you cant apply it whas the point

white void
#

Good evening people does any one know how to implement LSTM DQN in a RL rule based logic system

#

Please help

summer marsh
#

i need like 40sec of help for a path traversal exploit / patch assignemnt

chilly merlin
#

@summer marsh am not breaking any rule , please go see #📜・rules

haughty dawn
#

"so i'm sensitized against it" lmao

woven anvil
chilly merlin
carmine timber
#

im hearing every1 say discord is becoming malware now what does that mean exactly and how can i stay safe

chilly merlin
compact lichen
#

People are reporting this is safe, i've ran it in anyrun and nothing special is seen. Keygen people are questioning why its getting flagged because its only generating a key and the program works for them. I dont know how to proceed in discovering if the setup does anything malicious, there was no HTTP request to any external IP addresses that is downloading any type of file. Without me actually seeing for myself exactly what is going on with the installation i obviously wont run it, but I would like some help into getting better at reading and deciding if files are malicous or false positive . Pls no mean comments, I wont run it

https://www.virustotal.com/gui/file/ed5ddd731af674e198bfd9f0aeb27d1f82beea7dfc2e57b1dd264858823618e6
https://www.virustotal.com/gui/file/29e65b74b8ffaedfc0fc4e233684c89eaa4a2f36c4fe478a3d851991b32e5950

#

I've downloaded the file in a sandbox + VPN and will roll back to a snapshot of the VM when done ^^

crisp star
compact lichen
coral dock
#

help me, my new monitor has a severe purple tint

woven anvil
woven anvil
coral dock
coral dock
#

it has to do with the monitor

coral dock
woven anvil
# coral dock ?

Try to reset the settings back to default. If that doesn't work, then send for an RMA(Return Manufacturer Authorization) for the defective monitor.

If its brand new from a store, maybe they will offer an exchange.

coral dock
#

im screwing with the color settings right now to see if i can get it back

#

its a unbranded monitor

woven anvil
#

The other option is in whatever OS, if you can put a custom color profile to the monitor, then you can adjust it to make it look more normal with the tint.

But If you just bought it, I would see if i could get an exchange. If they are all like that, then its just a really cheap quality monitor.

nocturne glade
#

Hi wonderful people on here I need help with creating a website with full functionality; I mean from a coding perspective. I believe Linux would be better. But I don't know how to do it.

lost vapor
#

you can use many platforms

#

codeacademy can help you with that

nocturne glade
#

Thanks. However sir is it free

#

I checked and it's going to cost me about $12 a month which I currently don't have. Isn't there any other platform I can learn it for free please.

mystic star
#

I don’t know if I should ask this here or in general, but if I’m literally brand new to doing anything with code, should I use Linux instead of Windows for my gaming PC? Or stick with windows until i figure things out? Or is there something totally different i should use?

brave shoal
#

he's associate web developer and jst landed tha job yesterday

brave shoal
#

im also starting

#

building my foundations so i can understand things clearly

whole patio
mystic star
whole patio
#

Are you asking me to repeat myself verbatim?

mystic star
whole patio
#

Then without going into "better" - it really doesn't matter all that much whether you use windows, linux, macOS or whatever if you want to simply learn coding.

#

all have their minor pros and cons

#

If you are depending on AI integration on your journey.. maybe stick to windows. If you want to learn yourself, I'd suggest linux

#

but can be done on both systems jut fine

viral wraith
#

How can I learn more about Linux fundamentals

#

Or where

whole patio
#

Linux has been open source for decades, there are learning resources literally everywhere

frail flax
dusk berry
#

Hello everyone I’m brand new here, where should I start

viral wraith
viral wraith
frail flax
formal dome
#

i have an doubt how to level up

wooden wind
#

So I'm studying 220-1201 and 220-1202 for the certificate. Aside from the basic competencies, is there anything I should look out for in the xam as far as "gotchas" or how in-depth it'll get with one of the subjects (RAID, TCP/IP, etc.)? I'm trying to make sure I have everything learned but I keep overthinking as to what I need to focus on,

#

I plan to begin practicing Python but I want to learn one thing at a time.

#

As far as those who've taken it and passed the exams.

woven hazel
#

focus on ports, RAID basics, troubleshooting steps and common networking//security concepts

austere marsh
whole patio
willow rampart
#

Almost bricked my whole pc

granite vale
#

How

austere marsh
whole patio
austere marsh
whole patio
#

If you have no clear indicator of "what" you need "better", then stick to it

storm swallow
#

How do I get rid of the error 'Your IT administrator has limited access..." when am trying to turn on/off windows defender?

novel steeple
#

hello everyone i need your help
i am making an osint challenge in which i need an shutdown comapny image that is where hard to find through any reverse engeneering the image and also through AI models and only be cracked by specific tool and the company image should be very hard to trace

plz everyone help me !!

#

hello

whole patio
#

as in.. you administrate it and have administrative access?

woven hazel
#

For example

#

you could use a real logo from a defunct company, strip obvious metadata and then hide hints through steganography or subtle edits (EXIF remnants, stego, tiny text etc) so it requires a specific tool to extract

frail flax
scenic latch
#

Hey guys, hope you're all doing well. I have a question I'm in my last semester doing BS in CS and in few months I am going to graduate few months ago I realized what my uni is teaching us I will not get any job or earn anything so i started learning on my own I have intrest in Cyber security so I start gathering free resources doing researches and start learning I found some courses that prepare you for CompTIA exams I learn fundamentals of Computer then Network+ I didn't give the CompTIA exam but I give the practice exam I learn networking start learning Linux+ and security+ and goes halfway then some of my friends say do something releated to AI do something the you can do as a freelancer etc so few months have gone I stop studying and siting doing nothing and thinking what to do. Now I'm thinking of starting again, learning from where I left. I know there is people in this community that is senior or more educated in this field and they are earning that is the end goal can you please help me to tell me which workflow or how I should learn and get a job or earn in this because I'm just learning theory and stuff it's long paragraph but any type of information can be helpful. THANKS.

storm swallow
# whole patio is this your own machine?

Yes, it my machine. Which crashed after a power blackout then I reset it online after it came back there was a restricted access to the windows defender which was not there in the first place

storm swallow
crisp star
grand frost
#

Hi, I think there exists a vulnerability in Google Gemini. I am not sure how to trigger it. Can anyone please help out

woven anvil
#

Like, you are asking someone to tell you how to break Gemini ToS?

storm swallow
crisp star
frail flax
#

Can you try to find and disable windows defender, then reset your PC and see if ti working now?

#

its*

crisp star
#

Also you are not sign-in into your Microsoft Account?

storm swallow
#

No, it's not

turbid glacier
crisp star
#

It's not domain joined, so I highly doubt MDE is running.

storm swallow
#

It keeps messing up with my dll files

crisp star
#

It is a bad idea to turn off defender sideeye

turbid glacier
#

if it messes with your "dll files", there is something about those files

frail flax
#

You can disable only for the reset, after the reset it should work as normally defender should be on

storm swallow
crisp star
turbid glacier
crisp star
#

If it's being blocked, then there is probably a good reason.
Imagine if some kind of malware did funny stuff against Defender sideeye

crisp star
#

And there are malwares, that can lock you out of Defender just so you know.

storm swallow
crisp star
frail flax
#

Yes, try to disable it, scan with malwarebytes or with other antivirus, see the results. Turn on back defender, scan it again

frail flax
#

Premium version is better, not perfect but better when combined with defender

#

I know what you mean

whole patio
#

Malwarebyte earned that respect, as far as I am concerened, at least as the "Go to for troubleshooting"-tool, never actually experienced the live protection

turbid glacier
whole patio
#

Sounds like you tested the live detection of stuff you wrote yourself?

glacial apex
#

Guys why is my kali linux so slow

whole patio
#

You feel like your question kinda sorta needs more info from you...?

glacial apex
#

huh?

#

I think I was clear enough

whole patio
glacial apex
#

nop I have it like 4 gb ram

#

Gave*

whole patio
#

As I said, no experience with the live detection.. it is highly recommended though as a tool to use if you know you got some run-of-the-mill malware

whole patio
glacial apex
#

5 processors

#

wait

#

I just noticed

#

The display video memory

whole patio
#

so it is a VM? Gosh, wouldn't that have been a glorious info up front?

#

Describe your installation in detail so that OTHERS know what the situation is.. not just so that you know whats up

#

the video memory has next to no relevance in a virtual kali

turbid glacier
whole patio
#

cause it sure does not sound like it

glacial apex
#

could you remind me what the level was for

whole patio
#

So no reason then

glacial apex
#

I have completed a python course and yes I might be a beginner in hacking but I’m an intermediate overall about computers

whole patio
#

you may want to change that to "beginner", so people do not assume that you have a a basic understanding when you ask questions

#

but. its your decision

#

"Beginner, intermediate, expert"... on this server those relate to cybersecurity and hacking

glacial apex
#

well it didn’t say like that when I chose intermediate

#

so not my fault

#

Didn’t specify hacking

whole patio
#

I dont think anyone cares whether it is anyones "fault", I'm just letting you know that you may give people the wrong expression.. like I would never assume that someone needs to be explained that they have to tell us about their installation setup to answer performance issues

#

if they select "intermediate"

#

cause I would expect that to be obvious for "day one, just started out". How should anyone be able to tell you why, if you dont think you need to describe the setup

#

but, again - its your decision.. there is no test or anything.. free to choose what you want there

#

by the way.. it does say "infosec experience"

#

Well.. back to you

#

You say it is slow.. which hypervisor are you using, what is the specification of the host machine.. and do you have example of when it is "slow"?

#

or not

outer fractal
#

i have a question

devout linden
outer fractal
#

i am having difficlties find a person by its username is there anyway to make it easier ?

devout linden
outer fractal
#

the reason i ask cause i was on stream and somone joined and started saying the n word and i amnot really offended i just want to humble them

devout linden
#

Contact the support vendor

outer fractal
#

where can i find that

whole patio
outer fractal
#

i am new i joined today

whole patio
#

YOU should know which support that is.. it is the platform YOU were streaming on

outer fractal
#

ok

prime sage
#

@whole patio morning bro it’s cool if I message you for help?

whole patio
#

Feel free to keep it in this channel, I have DMs turned off

prime sage
#

NP, I didn’t really know how to ask that’s why. I’m new to this learning the workflow through Kali. I got the workflow down through vftpd Samba and I think Telnet. Just wanted to know if yo bad advice on making these things click

#

Like I know to do the commands by heart but idk something isn’t clicking where it’s like “Ohhh okay” my bad for the long question

whole patio
#

The trick is to take time for all of this, and effective notkeeping goes a long way, so that you can rely on the future on clear and useful notes you wrote

#

Depending in where you start.. this takes years

#

and not "Oh yeah yeah, for sure, imma gonna give it my best and be done in 2 years.. " - I know people with 10+ years of experience in IT jobs, who frankly say they do not feel ready to start with technical cybersecurity

#

or pentesting

#

or malware development

#

or red teaming

#

Rather soon there comes a point where the process is just assumed given.. tools change.. circumstances change.. they do right now, quite fast, and people already catch up without realizing it. But the point of make or break is when you deal with real world systems.. not training environments that are purposefully vulnerable

woven anvil
whole patio
#

I am surounded by people who have way deeper and broader knowledge than I have.. and they say the same about me.. impostor syndrome is a thing, isn't it

#

My grounding wire has been "hacker jeopardy" at ccc events..

#

yeah sure there are topics I feel I would have done quite well.. and then come some topics where I can serve as the illustration for "dumbfounded face" in a dictionary

#

I can't code for shit.. and I don't intend to do anything about it.. that is one of the lines I consider "drawn for me"

turbid glacier
turbid glacier
whole patio
#

I just used to watch them.

And the next category is .. "compiler instructions"
O_O

And "arm architecture"
o_o

#

as always.. you don't need to, unless you do 😉

woven anvil
#

Don't need to be a master in every field.
Just be proficient, so when you communicate with the people who are masters in that field, you can keep up.

whole patio
#

I really just don't have the time

#

I can read most scripts just fine.. but don't expect me to find the one oddity

woven anvil
#

At a certain point, the only wall is time.

There is enough to do/learn/work on/test/practice that can keep people busy for their entire lifetime.

prime sage
whole patio
#

no problem, happy to help

#

Although I still have one conundrum.. I would like to write a webhook, and I am somewhat sure that my use case isn't that complicated, but I would not want to put it under an open source licence.. so I either have to find someone who wants to do it, or pay someone.. and I have not found out yet what my best option is

woven anvil
whole patio
#

several people said "sounds easy, I'll take a look" but no one followed through 😉

whole patio
#

I have the script, and I have delved a bit into webhooks, but not so far as to say "yeah I can do that now"

#

basically just for use during awareness seminars

#

the badusb part I have nailed down, flashed with arduino.. the script is already working

woven anvil
#

If AI is allowed, I can probably make a PoC tonight 😛

whole patio
#

but right now it points the request to localhost

#

Honestly I have a pretty large collection of badusb devices.. I just like the ones that not everyone has seen already

#

I like collecting them 😉 And whether it is a malduino, rubberducks, usbBeetle, swiss army knife or whatever doesnt really matter.. they all just enter PS

woven anvil
whole patio
#

no mass storage, just whatever you flashed it with

whole patio
woven anvil
whole patio
#

Well we already "have" a DM established.. cant use that for some reason 😉

#

I like that I can essentially run c code on those.. a while ago I wanted to write a script that would brute force hardware keylogger devices by going through all "three letter combinations of keys pressed simultaneously"

#

Not sure if duckyscript would have allowed for that

#

meant for tabletop excercises where I tell clients "You just found this installed at one of your computers.. you can hire an expert to take a look" and that would have been simulated by that badusb device

#

I like those excercises to have a "dooms day clock".. waste time.. live with the consequences

#

also prevents everyone from just covering their bases and later complain that it was unfair .. rules upfront

whole patio
#

Don't tell anyone, but essentially yes.
Testing the emergency/business continuity protocols out in a scenario that play with all the players filling in roles

#

"You receive this intel.. do you have a process for that? Who gets to decide.. what do you do"

#

and just like in D&D people try to cover their bases 100%

turbid glacier
whole patio
#

not in the tabletop excercise, no

#

you "can" do it that way too, though.. typically if you involve several departments, who partly now that this is a drill

#

"When gets this reported?", "How much of the initial information survives?", etc

#

a client of mine once wanted to test whether people know what to do when a bomb threat comes in, for example

#

and it was a total disaster ^^

#

someone left a letter with the threat at the reception.. returned to his car and they waited to see how long it takes for this to get reported through the designated channels

limpid lodge
#

Hey gang what do you use for note-taking and screenshots ? 5554pepenoted

whole patio
#

joplin 😉

#

2 hours later.. nothing.. so they went back inside to find out whats holding them up.

Turns out the reception put the letter into the box of mails to receive stamps in the afternoon and hand them over to the mailman 😄

limpid lodge
#

rn just local but idm if it has a provider

whole patio
#

I have joplin on most of my devices, syncing notes between laptops, desktops and virtual machines over webdav

#

it does not

#

joplin has a firefox plugin, that lets you save entire webpages - for actual screenshots I just paste them inside note

limpid lodge
#

Oh shit thank you guys, i will defo check it out

silk stream
#

Hey guys, Just abit of a question so i understand right. I'd need my core 1, core 2 and network + certs then CEH cert to actually get into any sort of pentesting/hacking careers right?

#

Really? I was about to spend the time and $$$ to get those certs? My level of understanding when it comes to pentesting is only as far as HTB. What would be my best bet for getting into a I.T field or pentesting?

whole patio
#

Looking for the kind of certification that employers in your region are requiring

#

As far as I know, CEH is considered a joke exam and almost a red flag.. though some regions apparently accept it

turbid glacier
#

don’t waste money on certs

fluid gulch
#

Why do some certs are looked down by other people?

whole patio
silk stream
#

Where would one find or learn the skills to get into a role like soc analyst? i assume learning a few programming languages would be a good starting point?

whole patio
whole patio
#

if an exam has no practical part, it just means you memorized stuff

turbid glacier
whole patio
fluid gulch
#

So what counts as experience if I want to apply for a job like red teaming? Like doing IT desk support for few years?

turbid glacier
whole patio
#

"red teaming" could be considered the opposite side of starting out

#

this is typically something near the end of your career cycle

fluid gulch
#

I see, my initial plan was to gain experience in IT like being on a support desk, then pentester, finally Red teaming

turbid glacier
whole patio
#

take your time

fluid gulch
#

Consulting is the same thing as support desk, right? Offering advice and guidance on IT issues?

turbid glacier
fluid gulch
whole patio
#

"Consulting", in a nutshell, means people were willing to pay you to advice them, present to them.. they thought about calling you to solve a problem for them

whole patio
#

What about it

#

Its a good starting position

fluid gulch
#

Cause I’m kinda confused on the difference between consulting and support desk

#

Unless they’re the same terms

whole patio
#

it typically does not come with the kind of responsibility though

#

they have nothing in common

#

a support desk is you, keeping busywork away from people with more responsibility

#

a consulting job is taking a lot of responsibility, and projecting to various people that you know what you are doing and they should listen to your opinion more than to the opinion of the people who work there for 20 years

fluid gulch
#

I see, that makes much sense now

#

Thanks for the response 👍🏻

versed moat
#

can someone tech me how to code or something like that

unborn ibex
versed moat
#

ok

#

thanks

versed moat
unborn ibex
whole patio
#

no

winged oyster
#

Do you guys still get good results fuzzing parameters or is most stuff these days more logic-based than input-based?

whole patio
#

There is none, for obvious reasons

woven anvil
midnight osprey
#

Yellow top missing

grave edge
#

can someone guide me, i want to eagerly learn hacking, at my level i only know ctfs and linux fundamentals, my favourite ctfs were Web exploitation, but it feels like just doing ctf isnt worth it and i cant find what and how to move forward

haughty dawn
grave edge
#

okay lemme check, thanks 👍

echo nacelle
#

Good evening I need help with connecting cables from my Atom V650 PSU to Asrock a520m-hvs motherboard
Please

snow oak
#

Can I run Microsoft tools like pp word etc on Linux by any chance

gritty raft
woven anvil
marsh ermine
#

Have you been compromised? DeHashed provides free deep-web scans and protection against credential leaks. A modern personal asset search engine created for security analysts, journalists, security companies, and everyday people to help secure accounts and provide insight on compromised assets. Free breach alerts & breach notifications.

shy stump
#

Can someone please help into becoming a cyber security expert. I’m a beginner trying to learn from scratch please.

fathom summit
fluid gulch
#

Doesn’t matter wha the reason is, finding other’s personal data is wrong. We don’t do that here

carmine jolt
#

Any great alternative coding apps for cellphone with low speed celluar?

onyx oyster
#

Hello people, i need help with my PC. Ive been experiencing BSODs lately and just recently, it happened again but this time, right after it restarted, it wont boot to windows. The motherboard logo shows up but after that, its just a black screen. I tried waiting for minutes but nothing happened.

wanton maple
dim flax
#

Hi chat, does anyone know a file where I can download the FULL HTML and CSS cheatsheets? Everytime I do pure back-end coding, I mostly forgot some parts of the things I used to remember in Front-end Development, Just for Recap/Revision only

onyx oyster
dim flax
wanton maple
grim hearth
#

Good mornings Team all the way from CPT South Africa 🇿🇦

vagrant minnow
#

How i hack my girlfriend snapchat account

dusty nacelle
azure hollow
#

I want to learn about cyber security and hacking

#

Where to start

unborn ibex
placid bloom
#

i have a question about cybersecurity future, for someone who graduated with a degree i find it hard to land a job in the middle east with 1 year internship experience, my question is mainly not about landing a job, its about why and how fast the difficulty is changing for landing entry level role, is it because of AI? or the job market being cocked in general. also if i can get some advices about what things as a cybersecurity graduate you need to do to look more employable? minus the experience.

worldly heath
#

I have a doubt, there are sensitive data in a webapp, people can take ss of the sensitive data. Is there anyway to detect this

I dont want to put preventative controls for all users because of this, just to detect. Any opensource software/apps available?

whole patio
worldly heath
#

Wow, how?

whole patio
#

Didn't I just say that there is "no" way to do this reliably?

worldly heath
#

Sry, skipped the no part

lethal pivot
#

hey everyone

tight chasm
placid bloom
tight chasm
#

ask others cuz idk

kind zealot
whole patio
#

"a Spaghetti" is a misnomer, cause Spaghetti is already plural

somber orbit
#

like you’re trying to break into the field 1st cyber job what would it be?

#

usually it’s SOC but idk apparently it’s getting cooked by AI? What’s the bar for entry level these days

#

I don’t think SOC jobs would get replaced by AI, I think employers are looking for people to use AI to speed up the process of a SOC role

glossy acorn
#

I've completed the first two rooms on Try hack me but now it says to go forward i have to subscribe to premium. im not financialy able to pay for a premium account. any ideas or tips on a way to keep going without having to subscribe to a premium account.

random shard
#

Hello.. is there a way to track lost phone using IP ADDRESS?

wanton maple
random shard
#

i tried but the DATA/WIFI and location is OFF..

wanton maple
dry wing
#

hello there,
js started learning cybersecurity and gonna eventually work as either a pen tester or soc analyst

what ive done so far:

  • set up ubuntu in a VM and learnt basic commands (ls, pwd, cd, mkdir, etc)
  • started THM Pre-Security (finished Module 1, on Module 3 now)

planning to do Security+ after Pre-Security.

any tips and what should i foucs on?
im open to connect w like minded people and id really appreciate any guidance

wanton maple
# dry wing hello there, js started learning cybersecurity and gonna eventually work as eith...

you’re honestly off to a really good start a lot of people jump straight into hacking tools without building the fundamentals first, so the path you’re taking is solid.

a few things i’d recommend focusing on as you continue:

build a small homelab – this is one of the best ways to learn. you can run multiple VMs (linux, windows, vulnerable machines) and practice attacks/defense in a safe environment.

networking fundamentals – this is huge in cybersecurity. make sure you understand things like TCP/UDP, the OSI model, common ports, how IP addresses work, subnetting, DNS, DHCP, routing, etc.

security fundamentals for Sec+ – things like the CIA triad, threat actors, risk management, authentication methods, security architecture, and basic cryptography.

go deeper into linux – try using it daily if possible. learn permissions, processes, networking tools, package managers, bash scripting, and log locations.

learn how logs work – SOC analysts spend a lot of time reading logs. learn where logs are stored in linux and windows and how to interpret them.

packet analysis – tools like wireshark are great for understanding what network traffic actually looks like.

basic scripting – python or bash will help automate tasks and is extremely useful in security.

web fundamentals – understanding how HTTP works, cookies, sessions, authentication, etc. will help a lot if you ever move toward pentesting.

document everything you learn – keep notes or post small writeups. it helps reinforce knowledge and builds a portfolio.

also try not to rush certifications. focus on understanding concepts and getting hands-on practice. platforms like THM are great for that.

keep going though, you’re definitely on the right track

whole patio
whole patio
#

If you filter for practice boxes, there is a filter for subscription type, too

visual axle
#

Hello!!!!!

not looking for help really, just want to see if anyone wants to give any advice on my situation and if im getting back on track.

I got my google IT support Cert last september or so, but i haven been consistent and since im doing learning on my own for cybersecurity ive sort of layed out my options for certs and skills i need to learn for the areas i was thinking of getting to. I got roped up into school and forgot to keep up with learning. ive recently just started back up and have been using HTB and THM to learn, im also actively trying to look for a very good format on note-taking in which ive settled with Diagrams and visual examples on one side and notes on the other side.

ive also decided while or before i get into college i would like to attempt the Security+ or the CCNA, with my preferred job in Network engineering i would like to know which will help out more and any other resources i could possibly use to help me feel further prepared.

as ive said before, just looking on a checkup on my progress. my old intro to hardware teacher got me invested into this and i really want to progress well into the industry.

Thank you to those who respond in advance. ❤️

dry wing
wanton maple
# dry wing really appreciate the advice a few follow up questions: for networking fundame...

so for networking you can look up professor messer on youtube to understand it a little bit better look for his network + guide, if youre more of a hands on learner then just go for a homelab and you can learn that way, as for kali you dont really need to watch a whole lot of tutorials, in my opinion its pretty beginner friendly as it has a lot of the tools and packages you would need, as far as waiting its really up to you whenever you want to learn this, I recommend doing it when you can but dont move onto anything else until you understand the fundamentals

wanton maple
grand phoenix
#

Yo guys do anyone have idea how can I play games on Linux like crack games fitgirl ones ?cause i deleted that shit window 🥀

plucky ferry
#

go on reddit

karmic sapphire
#

Hey guys I need some to help me recommend me some good online business

fluid gulch
karmic sapphire
karmic sapphire
#

Ok thx

dim flax
#

Guys, what is the entry-level job for cybersecurity?

#

can be also in freelance stuff

plucky ferry
dim flax
vital steppe
#

@everyone Hello everyone,

I’m currently looking to connect with someone who has strong knowledge of cryptography, preferably with practical/work experience in the field.

If anyone here has experience working with advanced cryptographic systems or Post-Quantum Cryptography (PQC), I would really appreciate the opportunity to ask a few questions and get some guidance.

Please feel free to reply here or DM me.
Thank you!

woven anvil
drifting gust
#

hey guys do u know any simple project that a newbie(me) just learned basic linux bash scripting and network basic can do? really appreciate it

woven anvil
drifting gust
woven anvil
pastel widget
#

Hello! Im new at this what do you think i should learn first to start hacking? Thank you

drifting gust
woven anvil
plucky ferry
drifting gust
drifting gust
plucky ferry
#

learn how to write in the bashscripting language or Python

#

before trying to write some red teaming or pentester script

#

you will need multiple years of experience for doing anything about red teaming so dont worry about that now

vital steppe
topaz plaza
#

hey,I am thinking of cyber security as career but now I am not sure should I go for it or not cause of the AI and stuff can someone guide what should i do at this point.

#

and what's the best distro would be for me as I don't know much but gets me the good base if i learned it for cybersecurity.

plucky ferry
somber orbit
#

It will only replace those who don’t adapt to using it

heady swan
surreal valve
#

Hi, is there anyone here who can help me with a choice regarding smart contracts/blockchain?

Basically, it's the first time I'm going to work with smart contracts/blockchain, and I need to create an access control system based on it that is efficient, transparent, auditable, secure, and decentralized...

Does anyone know which are the best technologies to use? And in terms of design, what would be best (I've looked at solutions that use layer-2, but I don't know)? If you could explain, I would appreciate it.

lone cobalt
#

Hi guys, I'm from South Africa, on Saturday morning at 3.45 am I was asleep and woke up to the qaran (don't get offended by the spelling) playing on my gaming laptop without any apps open, I even opened task manager to see where it could be playing but nothing helped, I had to open the laptop and remove the battery for it to turn off.. could this have possibly been a hack? And has it happened to anyone else?

placid bloom
#

which microsoft cert do you guys recommend for me to do? am planning to do sc-200, reason being that i want a certificate that will make me look employable do you agree that sc-200 can help me achieve that or not?

crisp star
grim grove
#

Hello! I hate to join and the first thing I say is asking for help but I am currently working in a class called Install & Configure Windows server, I am required to work with VMWare workstation setting up 3 servers and a Client, I am currently trying to install windows admin center onto one such server to no avail, it freezes at WinrRM of HTTPS and I am unsure how to fix it, these 3 server have their own domain I must use in class and are configured in VMWare as VMnet1(Nat) I have tried troubleshooting myself to no avail and was wondering if anyone here would be willing to help me as I am still learning and need to push past this in order to continue within my class, no pressure if not.

silk nest
#

Please Is it better to run Linux on a Mac using a virtual machine or from a live USB?

foggy ravine
#

I greet everyone with respect here. Please am looking for where to buy genuine hacked logs for office email, payment system log and bank logs. Any help will be greatly appreciated

fluid sand
fluid sand
fluid sand
whole patio
visual axle
#

guys, why is linux such a difficult thing to master

#

im attempting FUNDAMENTALS, on HTB however despite all the notes and commands i take it doesnt work. anyone know what im doing wrong here?

fluid sand
#

it too me a while, persistence is key, it takes time but once it sticks in your head you will be good, the thing for me is linux is constantly a learning thing for me, there is always more to learn.
youtube videos helped me see how others where doing things and that helped, hanging out in VC with others when they where doing stuff also helped allot

visual axle
silk nest
whole patio
#

Alright.. a VM should always be the first choice. A live usb only if the machine you use is not capable to run a VM

silk nest
#

Thanks bro

grim grove
whole patio
#

so report them to facebook.. what do you think anyone here is going to do

woven hazel
#

We can't do anything about it, contact facebook support

plush tusk
#

👍 🆗️

lost vapor
#

hey, sorry we don't help with unethical/illegal inquiries #📜・rules

crisp star
#

You will lose your account if you try and bypass it

visual axle
#

Veterans of the server, should i dive into a project i had in mind or should i repass all the basics? the project is to create a Network for a company of 930 people on packet tracer. however ive gone back into the depths of basics because i stopped learning after finishing my pathway

#

in high school. im a senior and i want to have a major accomplishment to be proud of for a project. however, im staring at the DHCP prompt for the packet tracer project and blanking. feel free to give any input, i just want a solid path to feel accomplished on this very ambitious project

lost vapor
visual axle
lost vapor
visual axle
# lost vapor i feel a mix of self doubt along with just forgetting the simple steps any pro w...

thank you, i really think this project will be a big confidence booster and could teach me alot. even if itll take lots of time i love learning about this pathway, and i really hope eventually to break into this. im a very competative ex-athlete, so its frustrating to see so many errors. but ill get it eventually

once again thank you for your input, and i really hope this project works well for me

lost vapor
visual axle
woven anvil
#

@floral mason
I don't know why you would ask if something is against the rules and do it anyways, but this is not a place for self-promotion. Do not post that here again.

muted fossil
#

hi

slate steeple
#

That book pretty good

visual axle
#

is it online or a physical copy?

slate steeple
#

U can get both

#

Use Anna's archive for online free copies

slate steeple
visual axle
#

thank you

#

where can i find this btw?

fluid gulch
visual axle
#

thank you

#

but what channel is this in

fluid gulch
visual axle
#

ok

#

thank you!!!!

queen delta
#

hello

#

anyone with LSH knowledge will be available to help me?

#

i want to ask a few things i am stuck at...

charred roost
#

currently doing tryhackme pre-security, how far do i need to go to be entry level ready? and does anyone have any tips as well. Anything would be appriciated

lethal pivot
#

im having a problem loading my vitual box with ubuntu. can anyone help me!

devout linden
devout linden
# charred roost currently doing tryhackme pre-security, how far do i need to go to be entry leve...

What is your current tech/cyber experience?

Cybersecurity is not an entry level job however this doesn't mean that you cant get into the field. IT expiernece is golden in this field bc you know how the systems work. If you want to be blue team or read team really will dictate how this conversations goes. Im a SOC analyst and it took me a bit longer to get into cyber but it has served me well over the time.

Entry level could be a few certs Sec+, Net+, BT1, any blueteam cert.

Red team requires a bit more depth from what ive understood however im not on that side of the boat yet.

chilly merlin
#

safe to download tiktok or not?, pretty sure srhoe has one

whole patio
#

It is your decision in the end

chilly merlin
#

i mean is it spyware

#

well everything is but im trying to get at how bad is it same as instagram and other social medias?

whole patio
#

Just check which permissions it requires in comparison

chilly merlin
#

alright

#

do u help around here alot

whole patio
#

Sometimes

charred roost
chilly merlin
#

u should pursue ur own server

#

have u thought about it

#

or did u already do it

whole patio
#

I have several

devout linden
charred roost
drifting gust
#

Hey guys my friend want to be a soc analyst but he can't found any free course can u guys help me please? He already know a little about network basic

whole patio
devout linden
woven hazel
oak plume
#

Hello, I’m trying to identify the publishable key used by an API endpoint, but it appears to be generated or stored only on the server side. Any advice on how to approach this?

whole patio
oak plume
whole patio
#

I meant specifically which api

oak plume
woven anvil
shell monolith
#

Hello everyone,
I am having so trouble configuring my traefik...
I want to see the real user ip and not the cloud flare ip (i don't want to ban Crowdsec to ban Cloudflare ip). YouTube vids are giving me an answer but AI is giving me another one, so i think i need for advises.
YouTube vids answer:
fields:
--defaultmode=drop"
--User-Agent=keep"
--X-Real-Ip=keep"
--X-Forwarded-For=keep"
--X-Forwarded-Proto=keep"

But AI advise is:
--entrypoints.http.forwardedHeaders.trustedIPs=(Cloudflare IP)

(Btw i am using coolify idk if it will help)

lost vapor
shell monolith
whole patio
#

Thats easily answered. without going out of your way to run scripts on the browser of the persons visiting the site then - you can't get at their IP

lost vapor
#

not to mention chrome browsers have extra protection against script executions

whole patio
#

And running scripts on their browser has its own little legal ramifications of course

shell monolith
#

Thanks for the answers !
But how can I secure my website with crowdsec ? (Is it to much and should I only go with a good configured Cloudflare ?)

whole patio
#

You essentially let cloudflare handle that part

#

at least for those users who come from there

lost vapor
whole patio
#

If you make the decision that this is not secure enough, you gotta have to block cloudlfare connections

lost vapor
#

that way, whoever uses cloudflare to "pull something nasty" wouldn't be able to cause a denial of service

#

there are many ways to secure a website, but since you're talking about not being able to block cloudflare as you're using it that's the first thing that crosses my mind

#

you could flag out certain headers

shell monolith
#

Thanks you guys that's helping me a lot !

sinful mural
#

Yo

I want to bypass an honor X6a but I don't know how to,its my first time dealing with the phone,I don't have a PC,its dead

whole patio
devout linden
#

So ill have been a blue team for a year in April.
How do I make the transition into a pentest/red team job?
What skills and projects can i utilize to better be "picked" for an interview?

#potentialMentorPost?

sinful mural
sinful mural
fluid gulch
whole patio
unreal jasper
#

Hey everyone, I need help in trying to create an account on a dating site even with proxy i still get banned

lost vapor
#

brother what the hell did you even do

surreal nymph
#

hi everyone i have a question.
I learned about IDOR in Tryhackme jr pentester path
But most of the website have developer tools blocked off
so how do you bypass that

lost vapor
#

also we cannot help you bypass anything related to intentional security measures illegally #📜・rules

unreal jasper
lost vapor
#

just use your original ip address

surreal nymph
unreal jasper
lost vapor
unreal jasper
lost vapor
#

it's also not an appropriate topic to discuss here

whole patio
#

For a short while I was volunteered as tribute community moderator on a dating side.. getting blocked or banned is rather easy if you have a phone with a camera 😉

somber orbit
#

they would instantly ban me cause of all my aura

#

that’s why I can’t get any matches

whole patio
#

At one point I was also a community moderator for sony online entertainment.. now that I think about it

somber orbit
#

no other reason 😭😭😭

whole patio
somber orbit
whole patio
#

and on the dating site only the stuff people reported

limpid lodge
#

kali-moment wat

#

Bro what do you mean my screen locker is broken ahahhaa

#

gosh i love linux 🐧

queen delta
#

anyone have expertise with Hashing? LSH etc?

woven hazel
queen delta
#

oh great, can i dm you?

#

if ydm...

woven hazel
#

I never dm gang

#

Can you say it here?

queen delta
#

no issues

#

i am working on a project to filter ROT data from meta data, on a large scale data filter project, any tips for me as a junior on LSH?

#

@woven hazel

woven hazel
#

Too loose and you’ll get tons of false positives, too strict and you miss near duplicates

woven hazel
# queen delta how to nail it then?

it’s mostly experimentation ykyk, start with a small subset of your data and try different bucket sizes and hash functions, see how many near duplicates you catch vs false positives

#

Once you find parameters that work well on a sample, scale up gradually

queen delta
woven hazel
queen delta
queen delta
woven hazel
woven hazel
#

you only need ML/NN if you want to predict patterns or anomalies beyond near duplicates

queen delta
#

is that possible? @woven hazel

woven hazel
queen delta
#

how fast and accurate i can make it/

#

?*

#

what will depend to make that happen?

#

@woven hazel

woven hazel
queen delta
#

minimal latency*

woven hazel
#

Whether its “enough" depends on dataset size and throughput you expect

queen delta
#

thank you for helping

woven hazel
queen delta
#

can i ask you one last favour? i am a total newbiw, can you give me a proper roadmap to folllow, i owe you one bro... thank you again.

#

roadmap for 6months to persuit

dry wing
#

whats the best way to learn python i know it takes months and even years to learn a language but id like to start learning python but i dont know where to beign

woven hazel
# queen delta roadmap for 6months to persuit

Sure!
1–2 monts: Linux, networking, Python basics + TryHackMe/HTB labs
3–4 months: Web security APIs (XSS, IDOR, JWTs) + homelab
5 months: Hands on project like your ROT filter
6 months: Polish MVP, document also try mini CTF or bug bounty

queen delta
queen delta
#

🤧

queen delta
woven hazel
queen delta
woven hazel
#

Doing one or two small bounties or CTF challenges proves you can apply concepts which helps if you get askd "what else have you done" on a interview

queen delta
queen delta
dry wing
dry wing
woven hazel
#

Later check SimHash

cinder tiger
#

Hey everyone! Quick question about bug bounty setup:

Do you need Linux (Kali/Parrot) for bug bounty hunting, or is Windows viable these days?

I know Linux has the traditional pentesting toolset, but with WSL2 and most tools having Windows ports (Burp Suite, ZAP, Nmap), I'm wondering if Windows + WSL2 is enough for most programs.

What's your current setup? Any Windows users here hitting roadblocks, or is it smooth sailing?

Thanks! 🙏

fluid gulch
#

Sorry bro, we can’t help you

dry island
#

You will come across alot of Linux machines in your cybersec

#

career

#

And trying to gain a bit of Linux experience would be greatly beneficial

#
  • your overall experience would be better on linux than windows
cinder tiger
#

I got it. But for some few months i wanna try it on windows..

#

And what about WSL2 have you tried that?

dry island
#

you can make wsl2 work for bug bounties

#

but at that point you are just running linux

cinder tiger
cinder tiger
#

Thanks @dry island

shadow umbra
#

How do I make Instagram account more stronger

whole patio
plucky ferry
whole patio
#

I think they are looking for views/subscribers

plucky ferry
#

guess thats one way to ask, sort of

#

we dont help with that contact the authorities and report extortion

sand geyser
#

If I paste a link to a thm in here am I going to get flagged

plucky ferry
#

no

shrewd robin
sand geyser
#

https://tryhackme.com/room/mustacchio

there’s a portion of this one that requires XML, and I’m totally stumped on it. I haven’t really interacted with XML before so I’m pretty lost

plucky ferry
whole patio
plucky ferry
sand geyser
peak shell
#

hackers i have a question that i should know the answer to but i am not sure of it

  • Question:
    What is the difference between password and keyboard-interactive SSH authentication?

  • My current answer:
    Keyboard interactive enabled allows an interactive prompt to enter a password during the ssh authentication, but if its not enabled but password auth still it, then the ssh server still allows the password to be passed over in the command like using sshpass but will never present the interactive prompt? (Probably to save automation bugs?)

This accurate? Or can someone shine some light on my misunderstanding?

woven hazel
peak shell
#

Ooooh I see, so when keyboard-interactive is supported, I can enable something like a certificate as well as a MFA code and thats why its supported differently, because the keyboard-interactive prompt can support anything, yes a password but not just a password?

Whereas, password is limited to the ssh user password

feral jasper
#

i need help i want to start mining can someone help me get started

whole patio
feral jasper
#

okay

woven hazel
#

Thats why keyboard-interactive is used when you want things like 2FA or additional auth steps ykyk

peak shell
#

Thanking you immensely! 💯♥️🙏
This cleared up my understanding perfectly
have a good day

woven hazel
cyan shore
#

Hello OwlSec family, I want to become a hacker but dont know where to start? Can anyone help me?

fathom summit
#

Document everything and report it to the authorities. Not here.

fierce swan
#

Hello guys

woven hazel
#

(sorry i got timeouted) That sounds like a blackmail case, which is serious, the most important thing is not to engage or pay the person as that usually does it worse
make sure to save all evidence: screenshots, usernames, phone numbers, messages, timestamps, and any files or images involved
report it to the platforms used and consider filing a report with local law enforcement

agile parrot
#

Anyone ever had their Instagram suddenly deleted? Apparently there's a script or tool that will send numerous reports to the account. Is this true?

frail flax
quiet sail
#

Hello everyone

#

Looking for some advice on ssl pinning , frida techniques. I have a research on metaquests telemetric data privacy issues. The device is rooted with the cert from mitm.

plain wharf
#

Hi everyone. I want to start in cybersecurity/pentesting. I'm currently learning Python, but I'm not sure which fundamentals I should study next. Any recommendations?

tiny wave
#

Hello

peak shell
woven hazel
#

check first if the app uses the default Android trust manager or a custom one

#

Why can't you say it here?

whole patio
#

and you honestly think that someone is going to dm you now, WITHOUT the intent to scam the living daylight out of you?

steady palm
#

@slate pulsar Yeah for your own safety im deleting that. I agree with Eris2cats.

lone terrace
#

Hey guys does anyone figure they could help me figure out how to get past facebook multi factor authentication? I got locked out of my facebook account and the only options I have for multi factor authentication is a phone number I no longer have and my authenticator app which I don't have anymore because it's got my ex's email for the verification on that. So now I'm stuck and facebook is all but useless when it comes to their support service

devout linden
crisp star
#

Why would someone even use the email from ex in the first place? sideeye

lone terrace
#

Fair enough. Their support is the worst I've ever seen ffs it's terrible

crisp star
#

Would honestly just create a new account

lone terrace
#

And I didn't put it there she's just spitey as hell hah

#

I did that but I've had that account for like 16 years or something like it's got so much stuff on it I really need access to ugh 😭 meta needs to step up their game in the support department ffs

crisp star
#

They probably won't able to help you in such a case anyway, since they are probably not able to verify if it's really you. If you don't have access to the mail or phone number you used when you registered they probably won't do much.

dim silo
#

Hi can someone please help me on how to bypass the telegram sms fee

#

/rank

fluid gulch
steady palm
dim silo
#

Ok...but where do I go for help with this please

bronze canyon
#

Heyy
I was installing arch minimal with the script and forgot to setup network configuration
Now I can't connect to the network neither through lan nor ethernet.

woven hazel
fluid gulch
#

So you should stop whatever you’re trying to do as you are trying to harm someone

whole patio
steady palm
plucky ferry
whole patio
#

honestly their install script is rather simple to use

solid coral
#

Hello, do you guys support hackforums.net for new learners or there are better alternatives

plucky ferry
bronze canyon
heady leaf
#

@anyone from uae 🇦🇪 or middle east?

plucky ferry
copper pebble
#

hi evry one

plucky ferry
#

hi

copper pebble
#

what interesting today

woven hazel
timid kayak
#

is there someone here that knows how to do a dashboard database?

woven hazel
#

building a dashboard connected to a database?

timid kayak
#

im struggling myself making it and its getting confusing cus im new to coding

woven hazel
timid kayak
#

i havent really started the code since im still researching how to make one to begin with

woven hazel
timid kayak
woven hazel
woven hazel
timid kayak
woven hazel
woven hazel
#

If you got any other issue tell me gang

timid kayak
timid kayak
woven hazel
low vessel
#

can someone help me with the room called CI/CD and build security on thm? i cant get started, i have a problem with the first line I'm supposed to write in the terminal

brisk tree
slow edge
low vessel
# plucky ferry whats the problem

ill have to run it again and screenshot the terminal but basically this command doesnt work properly for me, even though i checked if ip addresses are right: "sudo echo 10.200.60.150 gitlab.tryhackme.loc >> /etc/hosts && sudo echo 10.200.60.160 jenkins.tryhackme.loc >> /etc/hosts"

#

i remeber whatching this walkthrough and doing alongside him and the output looked different for me and from that point on i couldnt basically follow by myself since the setup didn't work properly

low vessel
#

thats from thm copy pasted

#

he copy pasted it also

#

unless it was changed to be wrong by accident

#

ill check rn

plucky ferry
#

that syntax is wrong

#
sudo sh -c 'echo 10.200.60.150 gitlab.tryhackme.loc >> /etc/hosts && echo 10.200.60.160 jenkins.tryhackme.loc >> /etc/hosts'```
#

would be correct

low vessel
#

yeah i just checked he typed it in just like that and it worked for him

plucky ferry
#

if it doesnt work then paste the error

low vessel
#

ill try that other sy tax u just wrote

plucky ferry
#

that you get

low vessel
#

ok bet

plucky ferry
#

show the error that that one gives you too

low vessel
#

ok

plucky ferry
#

but realistically, you could literally just do this manually

low vessel
#

how?

plucky ferry
#

sudo nano /etc/hosts

add the following to the bottom, not commented:

10.200.60.150 gitlab.tryhackme.loc
10.200.60.160 jenkins.tryhackme.loc

then CTRL + X then Y then Enter

low vessel
#

bet

#

if the command dont work ill try it like that

plucky ferry
#

you should ideally learn to be able to read commands and know what they are doing

low vessel
#

yeah i understand the command now completely

#

i forgot echo can be used for writing in files as well

plucky ferry
#

there are loads out there

#

just google

woven anvil
#

@open verge @plucky ferry
Do not discuss unethical activity on this server.
Do not assist people if they ask for assistance with unethical activity.
Please be careful of scammers in DMs.
Read our #📜・rules
Read our #📢・announcement message in regards to this.

bronze canyon
#

Just bully them
Who they gonna tell? The mods?

slow edge
bronze canyon
devout linden
#

What are 3 beginner projects focused towards getting into red teaming/pentesting

3 intermediate
3 advanced

What are hiring managers looking for here?
what does the HR nightmare system look for?

dire scaffold
#

HI everyone i'm currently trying to atain GIAC Certified Incident Handler Certification (GCIH) certifiation and for that i need traning i was hoping that anyone can suggest best way to learn and train for it
for your information i m from india and dont have a budget like $9000 to get its official affilate traning and looking for a way to get raing in less cost as possible even affording the exam cost is a high for me Please suggest some thing for this.
thankyou

sudden bloom
#

Hey everyone, i am registering in a CTF event in which i need teammates for me so anyone from india who’s interested can dm me.

woven hazel
#

You got no good intentions

#

You got blackhat and expert on role sect.

#

"Hello.. I need anyone who can sell me Good crypter and good SMTP..."

#

Those are not things that a beginner would ask for, not everyone knows what a crypter is

#

You got no good intentions anyways

#

i also don't care what you do for living or sht, read the #📜・rules

#

?

blazing zealot
#

then why do you have the blackhat role

#

🤔

cerulean beacon
#

Nee here

#

New

kind zealot
#

#chat hangout there

cerulean beacon
#

Please who can tutor me on how to create leads

kind zealot
#

u can aask ai its good

#

if u wanna do it ur self u can get leads from many places on internet

cerulean beacon
#

Can you recommend a good ai chatgpt is shit

#

Create leads and spam

kind zealot
#

claude

#

or create a ai agent

cerulean beacon
kind zealot
#

i have one on discord

#

just learn how to create a ai agent

cerulean beacon
#

Ok teach me

kind zealot
#

aah that is very nice energy

#

what type of leads u need?

cerulean beacon
#

Can I dm you

#

I’m interested in cold outreach infrastructure. How do I 'warm up' an SMTP server for a new lead list? I want to understand how bounce rates and spam traps affect my sender reputation when I'm reaching out to potential leads

clever nymph
#

hellooo I jus need advice, how does one start ethical hacking or something like that? Do I have I to go to college and how yall learn?

clever nymph
#

Thanks

subtle cape
#

hello i dont know what team to pick and im stuck any help would be appreciated

kind zealot
blazing hemlock
#

I'm having trouble embedding shell code in a windows executable.

First I generate shellcode using metasploit to launch calc.exe.

Then, I have a simple C program, which I compile into a 32-bit binary:

#include <windows.h>

int main()
{
    MessageBox(NULL,
               "Test Description",
               "Test Title",
               MB_ICONEXCLAMATION | MB_OK);

    return 0;
}

Afterwards, I open this in x32dbg and go to the entrypoint of the program.
Here's how that line looks like:

EIP ECX EDX ESI EDI | 00B7102A | 55    | push ebp     | OptionalHeader.AddressOfEntryPoint

Next I find the first address of the line where the code cave begins.
From there my workflow goes like this:

  1. Change the entrypoint address to jmp CODECAVE_ADDRESS_HERE
  2. Paste the shellcode into the code cave. Make sure to wrap the shellcode with pushad, pushfd, popfd, popad, in that order. And also leave one line of null space after shellcode for it to end.
  3. Paste the same command as the entrypoint after popad.
  4. Now in the next line do: jmp ADDRESS_AFTER_ENTRYPOINT.

After all this patch the executable and I get a working file which launches the calculator (calc.exe).

The problem arises when I try to fix this patch. Basically I go to the shellcode part in the executable, detect which call launches the calc.exe and I modify the next push 0 into a jmp ADDRESS_TO_POPFD.

subtle cape
#

Hello, I have an old spare laptop and I want to install Linux on it. I’m still new to Linux, so I’m not sure which version would be best. Could anyone recommend a good one to start with?

subtle cape
#

is it any good ive been told to install kali

bronze canyon
#

You might need to catch up and find your way around vocabulary and grammar too.

bronze canyon
#

Don't

#

Just use linux mint

#

Or zorin os

subtle cape
#

what about ubuntu, like morning star said?

bronze canyon
#

You want to learn the basics of linux on it right?

subtle cape
#

its my old laptop, it has a 3050, i5 11k (i forgot it exactly) 16gb of ram 512gb of storage

bronze canyon
#

...

#

You consider that old???

subtle cape
#

i mean cus i upgraded to a pc thats what i meant

#

not really old its just i dont use it as i upgrades

#

upgraded

bronze canyon
#

I'm running an i5 gen3 with 4gb DDR3 256sata

bronze canyon
#

I meant the specs of the pc you want to install Linux on

subtle cape
#

yeah i want to install it on the laptop i dont use

#

the one i listed the specs for

#

since i want to use my pc for gaming and school and stuff, maybe in the future also install linux on it

bronze canyon
#

Yes

#

Start with linux mint

#

And there's a site called linuxjourney

#

It'll help

subtle cape
#

thanks ill buy a usb stick soon and install linux on my laptop, may even dual boot it ill see

subtle cape
#

alright will do thanks for the help

#

could you add me if i need any help??

bronze canyon
#

There's no need for it
There are thousands of more skilled people than me

#

You can just ping any of them for help if I'm not there

subtle cape
#

alright fair enough

whole patio
whole patio
#

And kali inside a VM on top of a linux distro is always an option

calm topaz
#

Is there anyone who can help me build an automation using make.com where when I upload a photo in google drive it will rename base on my given format.

Thanks in advance!

subtle cape
plucky ferry
whole patio
#

Doesn't really matter to be honest

plucky ferry
#

they'll all get you the understanding of a terminal

whole patio
#

If this is your first linux distro.. picking one with a larger user base, that has some quality of life aspects.. like an app store.. is just easier during the early period

#

fedora, ubuntu.. those do not force you into the terminal.

#

but their differences are not that big

subtle cape
#

ive heard a lot of good stuff about ubuntu ill probably try that

simple bramble
#

Hey, any folks have recommendation on learning IOS forensics?

distant turtle
# simple bramble Hey, any folks have recommendation on learning IOS forensics?

There's a few boxes on this on HTB & THM (just look through them)

Would recommend starting with basic understanding of the filesystem and similar via tools like iExplorer (https://macroplant.com/iexplorer) and libimobiledevice (https://libimobiledevice.org/), then you can use some of the typical tools via one of the pre-configured VM images

(such as SIFT: https://www.sans.org/tools/sift-workstation; though there are various VMs you can use for this - such as REMnux)

Though as you gain experience I recommend just building your own lightweight VM with the tools you frequent 😄

quasi smelt
#

Is doing eJPT worth it, im 15 and i want to go into cybersecurity when i leave school

simple bramble
distant turtle
quasi smelt
valid badger
#

Is CySA worth the hype? Around 63% of the way though the course material and I'm considering just jumping into CISSP atp

whole patio
#

but yeah, it is not going to open up any job opportunities

#

just make sure to have the time to study, the access is time restricted

glacial robin
#

Hey guys what's a good distro for pen testing been looking into Kali but you need a USB for it and I want to Linux as a software for my old windows PC I've been looking into arch and Parrot OS but Im curious on what you guys would go with

thorn charm
# glacial robin Hey guys what's a good distro for pen testing been looking into Kali but you nee...

honestly, in current year, go with something usable that gets updates to packages you care about. Kali happens to come out-the-box with a lot of tools you might want, but they can be installed anywhere you have a compiler+terminal. If there's one you feel is more suited to how you already use your PC, start there. If you're not sure, probably something debian-based is the most 'google-and-get-answers' friendly

glacial robin
#

Thanks!

thorn charm
# glacial robin Thanks!

FWIW, coming from windows I particularly liked Plasma as my desktop environment, and it has a widget you can download that is basically the old 7/10 start menu. I've used plasma on both Kubuntu and Fedora and think Kubuntu is a terrific starter distro if you're just dipping your toes into linux. Then switch to Fedora when you get tired of snapcraft and flatpak 😋

glacial robin
#

I want to dive as deep as I can in Linux since I'm still in uni so I wouldn't mind a distro that pushes me to learn more

thorn charm
#

Definitely Fedora w/ KDE Plasma for me delivers on that. You can keep it simple if you want, but for me absolutely everything is customized how I want it. You'll never be forced to do anything to customize it but once you start, you ucan really make it your own. My task bar has no list of windows and is 60% pretty visualizer by volume

urban mortar
#

I'm a new learner on here, how do i get started

potent trout
#

Hello everyone.
I'm a 2nd year computer science student.
But I haven't learnt anything till now at my college. I need some guidance on my future which is troubling me. I don't know which domain to choose or to head in which direction. Would love some help. Thank you.

glacial robin
thorn charm
fathom summit
#

@agile parrot we do not help with vigilantism. Kindly refer to the #📜・rules # 3

wide oracle
#

Good Morning
I am currently studying for my BSc Cyber Security (few months into my final year) and have the opportunity to take my CEH exam can any body recommend any material(s) that will aid me in passing?

Also, I'm unsure whether to continue my studies by moving onto the MSc Cyber Security, does anyone know if the MSc is worth pursuing?

lost vapor
tropic heath
#

Hi, I am new here.

pseudo wolf
#

Hello everyone please am new here

mint mantle
#

Is try hack me jr pentester worth it? What should i do after that?

tropic heath
#

Hi guys, can anyone teach me how to create injector files?

plucky ferry
plucky ferry
tropic heath
whole patio
#

What is your budget and what are your requirements?

#

also "macbook" can mean anything - do you have details about its hardware?

#

m2 arm processor 8 threads and 8 GB probably

#

So what are you looking for in terms of requirements.. what should the new device be able to handle exactly?

plucky ferry
#

buy $2k gaming laptop

#

problem solve

whole patio
#

are we playing the latest games? Do we need to run a lot of VMs, is storage or upgradability a priority? Battery life.. ?

#

Alright - my suggestion would be to look for a Thinkpad P1 Gen 3 - the base model is pretty good, but it has loads of upgrade posssibilities too. GPU and CPU should be the deciding factor, more ram and storage can be bought later

#

also the linux support on thinkpads is typically above average

plucky ferry
#

buy gaming laptop

#

mine was like 1.2k, got an i7, 16GB ram (upgradeable), RTX 4060, 1TB SSD

#

its all you need really

whole patio
#

as someone who moderates on a linux distro server - gaming laptops sometimes have quite a lot of trouble running linux. Would depend on the specific make and model, and how much time and energy you are prepared to spend troubleshooting

plucky ferry
#

i do everything from gaming, to running VMs, to regular everyday activities, to training AI models, all works beautifully

#

never had no problems running linux, just use a vm you'll never need a linux distro on a dualboot or to replace your entire OS

whole patio
#

I'm happy that you never had problems, but as I said we see problematic cases with gaming laptops regularly

plucky ferry
#

with people who dualboot and try to replace linux as the OS

#

yes

whole patio
#

running linux bare metal on those machines, yes

plucky ferry
#

silly people who do that for zero reason, just use a VM, chances are you'll never use it anyways

#

yeah exactly

#

who tf would spend money on a gaming laptop and put linux on it

whole patio
#

quite a lot of people actually

plucky ferry
#

you're already showing you have no idea what ur doing

whole patio
#

typically people have a lot of reason to avoid microsoft operating systems as host systems right now.. but of course your mileage may vary.. matter of priorities

plucky ferry
#

using WSL or a VM is the #1 option for anyone getting into hacking or actively doing it as a career

plucky ferry
whole patio
#

As a moderator of the kali linux discord server and forum.. yes, there are people like you.. but they are certainly not the majority.. especially when it comes to professionals

plucky ferry
#

i cant reverse a windows binary effectively on linux can i? hence, VMs

plucky ferry
#

u walked into that one tbh

#

definitely man you wont need anymore than that

whole patio