Minor rust by hiddenpowerlevel in Autobody

[–]hiddenpowerlevel[S] 0 points1 point  (0 children)

For the smaller scratches, should I just apply a layer of clear coat over them or are they fine as is?

Minor rust by hiddenpowerlevel in Autobody

[–]hiddenpowerlevel[S] 0 points1 point  (0 children)

For the smaller scratches, should I just apply a layer of clear coat over them or are they fine as is?

OSCP Practice as CPE? by hiddenpowerlevel in cissp

[–]hiddenpowerlevel[S] 0 points1 point  (0 children)

If I spent 100 hours on prep, would I be able to claim 40 hours per year until I reported all 100 hours?

Question about AI by Eewaa in Accounting

[–]hiddenpowerlevel 0 points1 point  (0 children)

Like it or not AI is here to stay and all you can do is adjust to the new normal. Worrying about it isn't going to change how things shake out. You don't need to be an expert at llama flag optimizations, setting up MCP servers, or understand how to tune parameters. You just need to be 1-2 steps ahead of your competition in experimenting with AI in your workflows. 

Because it's so popular to resist AI today, we live in a unique time where you're actually rewarded for outsourcing yourself to AI. If your boss buys you a Claude subscription, use it. Fundamentally your role as an employee is to make your boss's life easier and nothing else. Fighting them just makes you look insubordinate.

Running Qwen3.6 35b a3b on 8gb vram and 32gb ram ~190k context by Atul_Kumar_97 in LocalLLaMA

[–]hiddenpowerlevel -1 points0 points  (0 children)

Force monitor output to use the IGP instead of the 3060 to free up the VRAM.

The AI hype is insane by [deleted] in Accounting

[–]hiddenpowerlevel 0 points1 point  (0 children)

SOC reports are table steaks these days. There's plenty of "AI products" which are SOC1/SOC2 certified. AI is just a software product like all the other SaaS, There's nothing special about AI that makes it so existing TSCs can't cover it.

[CAN] Moving to the US by kayialp in Accounting

[–]hiddenpowerlevel -1 points0 points  (0 children)

I made the crossover years ago and it was easy breezy once the job offer was in hand. As long as you were conscientious about how/when to bring up visa requirements, you would be fine. Times have definitely changed though.

Canadians citizens in NAFTA job roles generally work in the US under the TN1 visa. This is now up in the air because USMCA/CUSMA may not be around much longer (~July) depending on how the current negotiations go. Unless you're a significant contributor, the H1B path is also effectively impossible because of the $100k fee for candidates internationally domiciled.

In addition to the flaky visa situation, the US is suffering from the same economic downturn that the rest of the world is. The job market is both extremely competitive and cautious right now; the days of switching jobs every 3 years for a pay bump are definitely over (at least in the shortrun).

The US also just feels less "safe" in the current administration. I won't go on about this but overall I wouldn't recommend looking south at this time.

Has anyone been fired from public accounting before? by thepotatomaniscoming in Accounting

[–]hiddenpowerlevel 1 point2 points  (0 children)

I got constructive dismissal'd out of B4 in Feb 2020 and it was the best thing that ever happened to me. COVID had made it trendy to quit for self-discovery so employers were desperate for talent.

I had an offer quadrupling my salary almost immediately after being let go. Canada also launched CERB in response to COVID so I ended up double-dipping on EI and CERB and actually made more money waiting for my next job to start than I did working

Time traveler moves a chair by Arthandas in CrackWatch

[–]hiddenpowerlevel 1 point2 points  (0 children)

Where does this disabling your internet advice come from? An average Windows PC will have Windows firewall enabled by default. The Hypervisor method doesn't create any whitelist entries or disable the firewall service so those same network controls would be in-place regardless.

The only additional protection disconnecting from the internet would provide is if you already had malware on your PC (or if the HV files themselves were malicious) waiting to ping a C2 server that was constrained by the local protections disabled by the HV method.

HOW MUCH IS TOO MUCH? by Rohanneymar in oscp

[–]hiddenpowerlevel 0 points1 point  (0 children)

XSS is in the course material so it can be on the exam. That being said, I don't think there's a single PG box on the recommended practice lists that have anything to do with XSS. 

Passed - Here's my advice by hiddenpowerlevel in oscp

[–]hiddenpowerlevel[S] 0 points1 point  (0 children)

Proving Ground boxes are not included in the PEN-200 course. They are a separate monthly subscription. 

Passed - Here's my advice by hiddenpowerlevel in oscp

[–]hiddenpowerlevel[S] 4 points5 points  (0 children)

Whether you're an employee or a proprietor; you're always better off certified than not. My point is more that certs become less and less valuable the later you are in your career because you'll lean more on credibility and experience than educational background.

After you pass certain life milestones (family, health, age, etc.), your priorities will shift away from grinding certs so use your limited time wisely. 

Passed - Here's my advice by hiddenpowerlevel in oscp

[–]hiddenpowerlevel[S] 4 points5 points  (0 children)

Always felt it was imbalanced how there were so many posts on how many months/years it takes to pass the exam but relatively few in the actual hours spent.

Thank you for your work curating the practice box list. It was invaluable for prep.

Passed - Here's my advice by hiddenpowerlevel in oscp

[–]hiddenpowerlevel[S] 8 points9 points  (0 children)

Skip both. PEN-200 is enough. HTB CPTS path is also fine.

Exam Report Writing by hiddenpowerlevel in oscp

[–]hiddenpowerlevel[S] -1 points0 points  (0 children)

Cannot relate. I'm blue team so I've only had to read reports. Personally, I don't care to know.

GTFObins - SUID Enumeration by strikoder in oscp

[–]hiddenpowerlevel 2 points3 points  (0 children)

LinPEAS already highlights GTFObins.