/hmg/ - Hackerman general

In /hmg/ we discuss pentesting, ctfs, exploits, and general being a hackerman.

Resources:

VM/CTFs:
overthewire.org/wargames/bandit/
>easy beginner bullshit

vulnhub.com/
>prebroken images to work on.

hackthebox.eu/
>super secret club

Tools:
kali.org/
>meme dragon distro but it just werks

metasploit.com/
>scriptkiddie starting point and swiss army knife

Tutorials/Guides:
abatchy.com/2017/03/how-to-prepare-for-pwkoscp-noob
>From zero to OSCP-hero rough outline

youtube.com/channel/UCa6eh7gCkpPo5XXUDfygQQA
>IppSec, video guides for retired HTB VMs.

Certs:
eccouncil.org/programs/certified-ethical-hacker-ceh/
>CEH, only looks good a resume to non-technical in HR

offensive-security.com/information-security-certifications/oscp-offensive-security-certified-professional/
>OSCP, the big dick swinging exam, 24 hours to own 5 machines and a further 24 hours to write up a report detailing your methods.

Community:
IRC: #Sup Forumssec @ rizon.net
Discord: discord.gg/3Y7Mr52
Matrix/Riot: riot.im/app/#/group/ hmg:matrix.org

Previous thread:

Other urls found in this thread:

s3ctur.wordpress.com/2017/06/19/breaking-into-infosec-a-beginners-curriculum/
abatchy.com/2017/03/how-to-prepare-for-pwkoscp-noob
youtube.com/watch?v=CvI_mrQYaF8
hackthebox.eu/invite
overthewire.org/wargames/bandit/
twitter.com/AnonBabble

>I have no fucking idea of what I'm doing or what I'm supposed to know

Start here:
s3ctur.wordpress.com/2017/06/19/breaking-into-infosec-a-beginners-curriculum/
abatchy.com/2017/03/how-to-prepare-for-pwkoscp-noob

Whoever can contribute with images besides the Putin and Kung Fury dude ones, is more than welcome.
thx

I've always been interested in the subject and been into wargames and chal sites in the past but never thought I could find a job related to that hobby.

What's the job market like for someone with OSCP?

What can i do with wireshark?

What hardware tools are you lads playing around with? planning on putting kali on an pi then using usb tethering for internet and SSH from my phone for control

How would you use ssh on your phone and communicate that to the pi?

Wondering what I could do with a bash bunny
youtube.com/watch?v=CvI_mrQYaF8

since the pi would be piggybacking off my phones internet I'm guessing I would be able to SSH locally like you do with computers on a home network

I want to join. But the web, asks me for a invitation code.
Please Help me ?

You have to figure out how to obtain the invite that's the point of it

And How ?
I suposed hacked it

you go here
hackthebox.eu/invite
then hack it to obtain the invite code

The problem my friend, is what I never hacked....

if you can't hack it you're not ready to be on the site, keep practicing hacking until one day you can do it - you'll never become a hacker by getting us to spoonfeed you all the answers

Thanks sir...

Where can I start ?

overthewire.org/wargames/bandit/
if you get stuck use youtube or google search

Thanks

Also please read the first post after the OP.

Yes, I did

irc is dead
What is with the [m]

bump.

Holy shit might do the same

Yay my favorite general is back

Hey does any one know when war zone will be back up

OSCP is highly valued in the security space.

I have a few SANS GIAC certifications that keep recruiters knocking year round, but I lack practical experience. The OSCP proves that you can apply the knowledge and document your findings appropriately.

I interviewed with a company's in-house security team a few months ago but didn't get the job because of the lack of experience I mentioned above. Their whole team held the OSCP and heavily implied that it would be helpful for me to get it myself.

>projects im working on

>arduino keylogger
I can finally fucking work on this one. I was able to find the exact same keyboard at a garage sale the company im doing recon has. I can now make sure my shit will work with that keyboard, and not pull some BS on me
>might code a program to do quick "debugging" in the field if needed.
>Ran into new problem other than known ones
>keyboard turns off randomly, possibly not enough power
>testing solution soon

dude you have been working on that for quite while.

Anyone have a good beginner/intermediate vulnhub that i should try? I need some suggestions

>drop bugged keyboard on the company
>wait for it to get picked up and plugged in
>they put it in a storage locker with 100 other keyboards for 10 years

Not at all. total time of working on it has been 3 days. I only work on it for 20 minutes, than I go masturbate to hentai, and play vidya games.

If I was motivated enough I can finish it tonight. But its no rush at all.


I am actually going to have two versions, one will be that plugs into the computer, and the keyboard plugs into the keylogger.

Another version will be hidden inside the keyboard.

fair enough, just seen you mention it quite a few times

yeah I was waiting on that keyboard I mentioned. But, to be honest I probably didn't need it, but I would've felt better if i used same keyboard just in case.

I am also exploring my option of 3d printing a case for my project at my local library.

I also switch between other projects.

Apparently I can't send high/low signals on cc1101 without my spectrum on SDR# going apeshit. So, yeah.

How about gif related?

Also, I just finished the OSWP exam in about an hour and passed. It was actually pretty easy, if you have the skillset and the cash to do the exam, do it. Its not as hard as you would think.

Also, can I get a possible job by being just OSWP certified?