How can i tell?

|
thecatvoid 2022-08-12 21:35:16
Fibonakki 2022-08-12 19:01:06
Guys any good one line script that i can use to possibly spam a scammer website? also can that get me in trouble? it is a scammer site for sure so im not trying to do this to a legitimate business, that would be bad for sure

you need like thousands of computers to bring one website down

thecatvoid 2022-08-12 21:35:21
(ddosing)
thecatvoid 2022-08-12 21:35:33
dunno if any other way
armanhrshaikh 2022-08-12 21:35:53
marcotrosi 2022-08-12 21:26:45
and if you guys noticed, no more bots/spam since Telegram added the “request access” feature

You should meet people offline and assign the work to them.

Because we have our official group where we allow people after they get verified over the video calls.

And soon will start video verification on telegram official of our company.

Fibonakki 2022-08-12 21:36:41
thecatvoid 2022-08-12 21:35:16
you need like thousands of computers to bring one website down

I’m hoping to ssh into it) idk I’m just trying. They created a website that looks like the gov site here in canada. So I’m hoping to brute force the ssh?

Fibonakki 2022-08-12 21:37:01
2222 shows open and uses ssh
BytesIO 2022-08-12 21:37:21
does it uses key?
Fibonakki 2022-08-12 21:38:00
BytesIO 2022-08-12 21:37:21
does it uses key?

How can i tell? You mean pub/private keys?

BytesIO 2022-08-12 21:38:18
Fibonakki 2022-08-12 21:38:00
How can i tell? You mean pub/private keys?

yes, I don’t how to tell 😅

Fibonakki 2022-08-12 21:38:39
BytesIO 2022-08-12 21:38:18
yes, I don’t how to tell 😅

It prompts for pass

armanhrshaikh 2022-08-12 21:38:53
Fibonakki 2022-08-12 21:27:37
Can you elaborate?

Aim is to not allow nonsense being in a group

thecatvoid 2022-08-12 21:39:08
Fibonakki 2022-08-12 21:38:00
How can i tell? You mean pub/private keys?

password or does it only allows pub/private keys to log into

thecatvoid 2022-08-12 21:39:11
and i dont think you can know that
armanhrshaikh 2022-08-12 21:39:11
marcotrosi 2022-08-12 21:28:59
the user didnt like my questions and said it’s ridiculous

Mashallah !

It make me so happy(as I am getting pleasure) when nonsense people consider discipline as ridiculous

BytesIO 2022-08-12 21:39:21
thecatvoid 2022-08-12 21:39:11
and i dont think you can know that

tought so

Fibonakki 2022-08-12 21:39:37
It prompts for pass when i do for example root@ip
BytesIO 2022-08-12 21:39:48
BytesIO 2022-08-12 21:39:21
tought so

bruteforcing that would take eternity.

Fibonakki 2022-08-12 21:39:51
And I’m hoping it’s some easy pass)
thecatvoid 2022-08-12 21:40:33
Fibonakki 2022-08-12 21:39:37
It prompts for pass when i do for example root@ip

it will prompt even if password isnt set

Fibonakki 2022-08-12 21:41:28
thecatvoid 2022-08-12 21:40:33
it will prompt even if password isnt set

Ok i see. Well I’m hoping they are some stupid scammers. The ssh is open and listening on 2222. They must have changed the default port right?

armanhrshaikh 2022-08-12 21:42:14
marcotrosi 2022-08-12 21:30:26
no I only ask “tell me a bit about your OS or system setup”, something like that

We ask

*come on video call so that we can ask you questions !

*If declined video calls then voice notes

*and then social profiles and then tech questions.

👀 people fear like we are asking to join an army to fight 3rd world war

Fibonakki 2022-08-12 21:42:23
If i can ofc get this freaking kali to work in a container
marcotrosi 2022-08-12 21:44:09
armanhrshaikh 2022-08-12 21:42:14
We ask

*come on video call so that we can ask you questions !

*If declined video calls then voice notes

*and then social profiles and then tech questions.

👀 people fear like we are asking to join an army to fight 3rd world war

I dont have the time for video calls, I need quick solutions that I can do anytime on my phone too. I need this buffered way where I can write when I have the time and they can respond when they have the time, without the need to make an appointment

armanhrshaikh 2022-08-12 21:44:21
Fibonakki 2022-08-12 21:36:41
I’m hoping to ssh into it) idk I’m just trying. They created a website that looks like the gov site here in canada. So I’m hoping to brute force the ssh?

Do not touch government sites until your government declair official cyber war.

armanhrshaikh 2022-08-12 21:44:40
BytesIO 2022-08-12 21:39:48
bruteforcing that would take eternity.

No

thecatvoid 2022-08-12 21:44:42
Fibonakki 2022-08-12 21:41:28
Ok i see. Well I’m hoping they are some stupid scammers. The ssh is open and listening on 2222. They must have changed the default port right?

default port is 22 and they changed to 2222, but dont expect them to set a password because its actually insecure, they will be using ssh keys with password disabled if they wanted a more secure ssh (and it will still show prompt for password when you try to ssh)

armanhrshaikh 2022-08-12 21:44:49
Fibonakki 2022-08-12 21:39:51
And I’m hoping it’s some easy pass)

No

thecatvoid 2022-08-12 21:46:30
there are zillions of these scam websites, no point in trying to punish them all
Ceda EI 2022-08-12 21:46:39
Fibonakki 2022-08-12 21:41:28
Ok i see. Well I’m hoping they are some stupid scammers. The ssh is open and listening on 2222. They must have changed the default port right?

try using hydra and a good wordlist to bruteforce the ssh

Fibonakki 2022-08-12 21:47:02
thecatvoid 2022-08-12 21:46:30
there are zillions of these scam websites, no point in trying to punish them all

Even one is enough for me) and they sent an email to me. Which means to lots of other ppl. I’m just trying)

Ceda EI 2022-08-12 21:47:50
Ceda EI 2022-08-12 21:46:39
try using hydra and a good wordlist to bruteforce the ssh

https://github.com/vanhauser-thc/thc-hydra

GitHub – vanhauser-thc/thc-hydra: hydraGitHub
hydra. Contribute to vanhauser-thc/thc-hydra development by creating an account on GitHub.
Ceda EI 2022-08-12 21:48:08
likely in your repos
Fibonakki 2022-08-12 21:50:07
Ceda EI 2022-08-12 21:47:50
https://github.com/vanhauser-thc/thc-hydra

thank you. i didn’t have this, and looks like there is a dockerfile which is suuuper helpful

Ceda EI 2022-08-12 21:51:05
Fibonakki 2022-08-12 21:50:07
thank you. i didn’t have this, and looks like there is a dockerfile which is suuuper helpful

practically the easiest way to get them shut down is
– find the IP
– find which org owns that IP range

Ceda EI 2022-08-12 21:51:13
report to their VPS provider
|