retiolus, to OSINT
@retiolus@mamot.fr avatar

Hi Fediverse, do you know any equivalents to or ?

kohelet, to random
@kohelet@mstdn.social avatar

This John Hammond video really lighted the old love in me for hacking and cyber.
which I didn't do in a veryyy long time.

reminds me of my roots (I'm a hacker).
I should be hacking things, not build a telegram bot for a week and self host everything.

welp. here I come. maybe I do some cloud hacking.
https://www.youtube.com/watch?v=21Fz-oit7Q0

sanjaymenon, to BugBounty
@sanjaymenon@mastodon.social avatar
viennawriter, to windows German
@viennawriter@literatur.social avatar

Zwei #TryHackMe-Räume weiter möchte ich gerne schreien. WIESO ist das so einfach, ein schrottiges #Win7 zu übernehmen? Inkl. alle Passwörter dumpen, ein goldenes Kerberos-Ticket ausstellen, Zugriff auf Kamera und Mikrofon und überhaupt alles? Ich weiß ja, dass die THM-Räume absichtlich so eingerichtet sind, dass Dinge gehen. ABER DAS SOLLTE NICHT SO EINFACH GEHEN! im Kreis renn #ITSec #ITSecurity #ITSicherheit #Windows #Hacking

viennawriter, to random German
@viennawriter@literatur.social avatar

Och menno. Arbeite grad noch ein paar -Räume nach, wo ich während des Kurses noch Schwierigkeiten hatte. Den einen mach ich grad zum vierten Mal. Zuletzt hatte sich grad die AttackBox aufgehängt, als ich endlich im Targetsystem drinnen war. gnarf

zersiax, to Cybersecurity

sigh ... this is honestly sad. Today's task is pretty fun, particularly for developers. It's also entirely inaccessible due to how it was set up and, as usual, could have been completely 100% doable with some super minor tweaks, which untimately come down to "allow people to bring their own tools". In this case, it would iterally involve adding one, single, link to a download instead of locking a file inside a VM only accessible over RDP. Don't get me wrong, it's great that it's an OPTION to do stuff in the browser. It's not great when it's the ONLY OPTION, and I see so many learning platforms fall into this trap. Today's video is going to be an interesting project

zersiax, to infosec

ooh, log analysis for today. Unfortunately the default setup is not for users. There's a way to hack around this, it is outside the scope of the room but will be required if you are dependent on a screen reader. I will show this off in today's video, just performed the proof of concept to make sure it's doable :) @RealTryHackMe

zersiax,

Day 7 of 2023 with a , wherein I have to hack the system before I can hack the system :) THis one was initially not but we were able to pop a shell and make it see reason. That I had to do this isn't good, and I hope that me documenting this in this way will show off how disruptive this kind of thing is, and how easy it can be avoided. This one's a tad longer than the others because of this, as well. https://www.youtube.com/watch?v=sq_ZVbBsfRk

apiratemoo, to random

Remember LAST YEAR when I won an Advent of Cyber prize from
TryHackMe and was super excited?

I still have yet to receive ANYTHING but a few random emails every 4mos. or so.

That is kind of insane at this point.

Link for reference before it gets pulled: https://tryhackme.com/r/resources/blog/advent-of-cyber-winners

image/png

ligniform, to random

The advent of is a pretty good intro to... a lot of stuff lol. Give it a shot if you're interested xx

https://tryhackme.com/room/adventofcyber2023

zersiax, to accessibility
@zersiax@cupoftea.social avatar

this year, I am participating in the event. I have deided to make videos of me doing the tasks to document the struggles I run into, as well as how I (fail to) get around them, for awareness, education, and basically because I felt like it. The fruits of my labor can be found here: https://www.youtube.com/playlist?list=PLoI1JGnSzOVKWI2fOpymnWcQtgxPLoW4X

Please note that the videos are still processing and therefore may not have subtitles yet. If the autogenerated ones are really bad, which wouldn't surprise me, I have infrastructure in place to do better, just let me know if it's a blocker for you and we'll sort it out. I really hope the community as a whole can learn from this, and that it paves the way forward for better for these kinds of challenges going forward. I'm not asking for too much here, it's about time this industry moves into the 21st century where this is concerned. Let's make it happen! :)

zersiax, to accessibility

Halfway considering doing streams/videos where I go through 2023 with a to illustrate what challenges exist and how we our way around them. Honestly not sure if literally anyone would be interested in seeing that though

zersiax,

Ok, the halfway became a whole way, and I have now started this project: The 2023 showcase: https://www.youtube.com/playlist?list=PLoI1JGnSzOVKWI2fOpymnWcQtgxPLoW4X

Basically, the idea is that I go through the tasks with a , make sure the content is for as many viewers as I can. That means I narrate what I'm doing, the screen reader is audible when required, and the screen reader output is also visible on the screen.
Subtitles and transcriptions may not be up yet by the time this goes live, as it takes a minute for the autocaptioning to catch up. If it turns out these are really, really bad, which is possible, I will transcribe the videos myself using Whisper and make sure they get added to the videos.
My aim with these videos is to show off the accessibility issues that exist, point out easy fixes to them, give people who are curious about this field an introduction they can actually consume in a way that works for them, as well as just create awareness that we're here, we're not leaving, and we'd like to be part of the conversation is pursued.
Any feedback is, of course, more than welcome, and I wil incorporate it in videos going forward.

zersiax,

Ok :) Day 3 of the , where I tackle the challenges with a , is now up in the earlier mentioned playlist. Direct link: https://www.youtube.com/watch?v=ha3z8JTri2c

zersiax,

Here we go :) Day 4 of the challenge with a is now up at https://www.youtube.com/watch?v=B1ZADjW0Lfc. This was a fun one! :)

zersiax,

Here we are with day number five of the Advent of Cyber 2023 showcase. This task was ...NOT accessible, but honestly I really can't blame them too much given it had to do with messing with an old DOS emulator. A bit of AI, OCR and a miniscule amount of cheating got us through it though :) Crying shame about the no soundcard over RDP thing though guys, fix pls :P https://www.youtube.com/watch?v=MVaTC2dTdRY

zersiax,

Here we go, with day 6 of the TryHackMe Advent of Cyber 2023. This time we covered buffer overflows in a way tat was, unfortunately, not at all as they built themselves a little game. A game that, if my eyes don't deceive me, I've seen before last year :P Neverthelss through some sleuthing all questions were answerable, with number six on the video playlist as a result :) https://www.youtube.com/watch?v=G55paQS24Jc

catherine, to random

Very new to Mastodon and still figuring out how to accomplish things that the other social network allows you to do with one button. I'd still rather be here though!

lbcp, to windows

I am currently doing the #SecurityEngineer pathway at #tryhackme .
Am I the only one who thinks that #windows is just a huge mess? Everything is hidden behind 3 different apps and nothing is readily available and machine readable.
It gets even worse because they decided to translate the settings, so depending on your language settings it gets increasingly difficult to find what you want.

#rant #UseLinuxNotWindows #linux

viennawriter, to random German
@viennawriter@literatur.social avatar

Windows Powershell im -Raum. Ich hasse alles daran. frickel

viennawriter,
@viennawriter@literatur.social avatar

Geschafft. Windows hat diese Wohnung jetzt wieder verlassen. Danke für den Reminder, warum ich Microsoft-Produkte vermeide. Und jetzt mach ich Feierabend.

Tekchip, to hacking
@Tekchip@mastodon.social avatar

I'm gobsmacked by how many "privacy", or in this case where you would expect people to be most private, things requiring you give up a legitimate, potentially identifying, phone number. What in the ever loving fuck?

Guess I won't be getting any help from THM/Discord.

I suppose as an aspiring "hacker" I should know how to spoof that but still...principle's errr something.

viennawriter, to random German
@viennawriter@literatur.social avatar

Guten Morgen aus dem Lesesessel. Mein Kalender hat mir wohl einen Streich gespielt, der Kurs heute stand ab 11 und nicht wie sonst ab 14 Uhr drin. Upside: Ich hab noch etwas Zeit, um die letzte Woche nachzuarbeiten. Puh! Habt alle einen schönen Tag und denkt ans Wassertrinken!

viennawriter,
@viennawriter@literatur.social avatar

Also dieses ist schon cool. Aber bei manchen Aufgaben hänge ich länger, als es mir lieb ist. sfz

Tekchip, to Cybersecurity
@Tekchip@mastodon.social avatar

Is a good resource to show you're trying to learn cybersec? As in do hiring folks give it much weight?

I've been trying to find a job for ages and having been at my current not so technical job for 10 years I'm looking crusty. I need some way of showing I'm both up to date and continuing to work at it.

Tekchip, to random
@Tekchip@mastodon.social avatar

Niiiiiice! :KEKW:

kohelet, to ReverseEngineering
@kohelet@mstdn.social avatar

It's 1:40AM.
what I need to be doing: sleeping after already packed the bag for the week.

what I'm doing: not packing, and instead doing reverse engineering challenges on

to my defense: they are really fun and I learned to use GDB and Ghidra (only used IDA till now)!

https://tryhackme.com/room/reverselfiles

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • GTA5RPClips
  • ethstaker
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • tacticalgear
  • anitta
  • megavids
  • Leos
  • cisconetworking
  • lostlight
  • All magazines