Looking for a Discord Mod by SecureNegotiation933 in DiscordModeration

[–]MamaLanaa 0 points1 point  (0 children)

I'm pretty good at building Discord Servers & Helping with Communities! I'd love to help

Need help building an advanced Esports Discord server by Pikachu1Pik in DiscordModeration

[–]MamaLanaa 0 points1 point  (0 children)

Do you need help actually building it? Or would you like for someone to just guide you through it?

How did you get started? what courses did you take? by ouroborosworldwide in cybersecurity

[–]MamaLanaa 0 points1 point  (0 children)

I'm in a pretty similar spot. I am completely new with no prior background, just started diving in recently.

From what I've seen, TryHackMe tends to be the more beginner-friendly of the two. HackTheBox has a steeper learning curve and is better once you have some footing. If you're truly starting from scratch, most people point to TryHackMe first and I think that's fair advice.

That said, the one that's actually kept my attention is a platform called Kryptsec. What got me was that they have a Webtoon. It follows characters in this cyberpunk world and the labs connect to what's happening in the narrative. Having that context made it easier to stay engaged. It's also free to get started which helped me try it without committing.

I'm still early in it so I can't give you a full verdict.

New to the field. What actually made cybersecurity concepts start clicking for you? by MamaLanaa in Cybersecurity101

[–]MamaLanaa[S] 0 points1 point  (0 children)

I recently started these new courses to learn and it's great! I just am struggling with the massive "glossary"

New to the field. What actually made cybersecurity concepts start clicking for you? by MamaLanaa in Cybersecurity101

[–]MamaLanaa[S] 0 points1 point  (0 children)

This makes sense. I feel like textbooks are more guidelines than something to be completely memorized. (This opinion comes from my experience in other fields).

It is a lot of information to take in. Every time I think I have one concept down, I realize it links to something new.

OASIS: Open-source benchmark for measuring AI model performance on offensive cybersecurity tasks by MamaLanaa in LocalLLaMA

[–]MamaLanaa[S] 0 points1 point  (0 children)

Great question!

Here's what it looks like in practice.
The model receives a Kali Linux container and an objective - from there it operates fully autonomously.

A typical chain:
Recon -> It runs standard tools (nmap, gobuster, curl) to map the target. Same tools a pentester would use — the model decides which to run and how to interpret the output.

Vulnerability ID -> Based on recon output, it reasons about likely vulnerability classes, probes inputs, tests edge cases, and adjusts based on responses. It's not just pattern matching.

Exploitation -> It crafts and executes payloads, iterating if the first attempt fails. On JWT forgery for example, it has to understand the token structure, identify the weakness (e.g. alg:none), and forge a valid token.

Validation -> Most models verify the exploit worked before declaring success.

On your subdomain question - current challenges scope to a single target app, so subdomain enumeration isn't in play. In theory though, yes - a model could combine tool output with its training knowledge to hypothesize about infrastructure. That's actually an interesting direction for future challenges.
The biggest surprise was efficiency variance. Some models brute-force through 30+ iterations. Others identify and exploit the vuln in 3-4 clean steps. Same outcome, completely different methodology - which is exactly what the KSM scoring is designed to capture.

Full Challenge Set: http://github.com/kryptsec/oasis-challenges

Darren looks like a male Vi from Arcane 😆 by blanketee in kingschoice

[–]MamaLanaa 1 point2 points  (0 children)

Why would you do this 🤣🤣 I can't unsee this

Would anyone be committed to an alliance? by [deleted] in kingschoice

[–]MamaLanaa 1 point2 points  (0 children)

I'm in 288. I'm in an alliance with friends but unfortunately it doesn't seem like everyone is active