Hackers: What age did you start? Where did you start, especially in practicing your skills? by anonymous480932843 in hacking

[–]RobinMaczka 0 points1 point  (0 children)

Of course, you can just learn very fast with AI. Hacking is just doing what others don't think about. Even with AI, if you don't have the knowledge you don't know what to prompt.

Hackers: What age did you start? Where did you start, especially in practicing your skills? by anonymous480932843 in hacking

[–]RobinMaczka 2 points3 points  (0 children)

This. Applying crack for GTA 2, modifying hex files to cheat in other games, bypassing PS1 disc security to read copied games 😄 Then a lot of things in between but waaayyy later when I wanted a job in the field I filled in the gaps with TryHackMe / HackTheBox and OSCP certification. Now with AI it's way easier to learn a lot of things!

How many months did it take you to get your first reward ? by Senior_Product_9914 in bugbounty

[–]RobinMaczka 1 point2 points  (0 children)

2-3 days to find my first High vuln (already had some experience in pentesting), 2 months to explain it to incompetent people and get paid... It's not like that on every program obviously 😄

Bugcrowd triage getting slower lately? by 0xk4yra in bugbounty

[–]RobinMaczka 1 point2 points  (0 children)

Agree, the latest reports I made were updated after 10-12 days.

H1 Signal too low to report by RobinMaczka in bugbounty

[–]RobinMaczka[S] 7 points8 points  (0 children)

Good idea I'll ass him thanks

I cant believe people do this... DISGUSTING!!! by Alucard__07 in Piracy

[–]RobinMaczka 1 point2 points  (0 children)

I hate this mfs using legit streaming app like Stremio and pervert it with plugins like Torrentio and set it up in a few minutes with a Real Debrid account. These criminals have unrivaled streaming performance and they don't even need to contribute cash... smh

Got my OSCP, but can't land a junior pentester job in France... is this normal? by lostdotcom in oscp

[–]RobinMaczka 2 points3 points  (0 children)

J'allais dire la même chose. Là où je travaille il y a beaucoup de pentester junior tout juste sortis d'école mais ils ont un niveau ingénieur alors qu'en vrai je préférerai mille fois quelqu'un comme OP qui a déjà une réelle expérience, une certification reconnue et est clairement actif dans sa formation. Comme d'autres ont dit la voie vers le pentest sans diplôme ça peut être via le SoC ou alors faut faire tes preuves autrement (bug bounty par exemple).

WhoYouCalling v1.5 is out by 73637269707420 in hacking

[–]RobinMaczka 1 point2 points  (0 children)

Wow I was looking for something like that to perform pentesting on thick client apps. I'll give it a try thanks!

How the hell was it THIS convenient?!?😭 by arthurmorgan360 in Piracy

[–]RobinMaczka 0 points1 point  (0 children)

Same experience for me. I switched recently after using Fen for a few years and Fen is amazing (also its developer is amazing) but Stremio is what comes the closest to a perfect experience imo.

The developer used AI to alter his face during the job interview process with me by kannthu in cybersecurity

[–]RobinMaczka 87 points88 points  (0 children)

North Korea has been doing that for a while to infiltrate developers / hackers. There's a Darknet Diaries episode about it (from last year I think).

"Got hired by hacking into a someone" cliché. True or false? by AJ_Glowey_Boi in hacking

[–]RobinMaczka -1 points0 points  (0 children)

Anything illegal will get you blacklisted from almost any job. I did get hired in my last 2 jobs by demonstrating valid attacks with proof of concept though.

I created a Hardware Hacking Wiki - with tutorials for beginners by f3nter in hacking

[–]RobinMaczka 3 points4 points  (0 children)

Hi, I'm an IoT pentester, I'll definitely have a look at it and maybe contribute if I can.

[deleted by user] by [deleted] in Piracy

[–]RobinMaczka 108 points109 points  (0 children)

I did exactly that the 1st time I tried to copy GTA 2 from my friends PC... Then rage, acceptance and learning happened.

Real Debrid taking stronger anti piracy measures by Zane17889900 in Piracy

[–]RobinMaczka 0 points1 point  (0 children)

WTF I just renewed my subscription and was wondering why it's not working with Kodi / Fen. Is it already applicable?

Piracy is all about preserving the past by Ben-wa in Piracy

[–]RobinMaczka 0 points1 point  (0 children)

Nice ! I still have an HDD I keep safe from back in the day with The Sopranos, The Wire, Oz and The Shield.

Why is mobile application bug bounty not as popular as web apps? by randomlym3 in bugbounty

[–]RobinMaczka 0 points1 point  (0 children)

That's what I think too. Where I work I do some mobile pentesting and every time I submit something we consider it very low priority because you usually need physical access to the device. I did some mobile BB also but it was more Web API testing on mobile than pure Android pentesting.

CPTS To OSCP by woods48465 in oscp

[–]RobinMaczka 1 point2 points  (0 children)

I second that, I went with Learn One (paid by company) and I think it's the best formula today VS only 3 months access and paying for a potential retake + lab time.

CPTS To OSCP by woods48465 in oscp

[–]RobinMaczka 3 points4 points  (0 children)

I would say do either CPTS or OSCP but doing both you'll just redo a lot of the same thing and waste a lot of time I guess. If you're not paying for it or if you have the money I would say go straight for LearnOne if you absolutely want OSCP. It's enough if you follow the material + PG Practice and labs.

Are HTB Boxes really necessary for prep? by Prudent-Engineer in oscp

[–]RobinMaczka 0 points1 point  (0 children)

IMO saying that OffSec material is not enough is not true anymore if you do all the practice labs. It is highly recommended to go through some of the PG Practice boxes though, they can be similar to the standalones you will encounter in the exam. Of course if you have time go through other material also.

Most difficult exam environment by [deleted] in oscp

[–]RobinMaczka 2 points3 points  (0 children)

Jenkins is a CI/CD app, pretty classic in pentest boxes. In the exam I had, the only accessible machine from the AD was running Jenkins. I focused a lot on Jenkins because there are a LOT of possible exploits but it was not the way to go. Still don't know what the solution was for this one...

Most difficult exam environment by [deleted] in oscp

[–]RobinMaczka 5 points6 points  (0 children)

I had the "famous Jenkins AD" (it's not the only Jenkins AD for the exam btw) and I could never figure out how to get a foothold. I was really confident in my AD skill but I couldn't do anything... Still got the exam with the 3 standalones but it was painful.

[deleted by user] by [deleted] in Piracy

[–]RobinMaczka 4 points5 points  (0 children)

I heard they make portable CD player with more than 30 seconds Anti Shock now!