#voice-chat
1 messages · Page 31 of 1
brb!
hi
Glass
brb GG @viscid pasture
@unkempt wave GG
@bright wyvern what you're trying to do?
0day gave alex some op scripts so i have to change up my gameplay to adapt
because alex is op now
@bright wyvern can i dm?
of course
no bcs i learned how to use chattr and now i like it now i need to learn one something more and yea =)))
xD
metl just use the while command then you don't need to make a script. For example: while :; do echo metl > /root/king.txt; chattr +ai /root/king.txt; sleep 0.2; done 2> /dev/null &.
this will also run it in the background
backdoors and multiple while loops?
i do 2> /dev/null to prevend showing any errors
kill %1
and bg shells are gone
ig
kill %1 and while loops are gone?
kill %1 will only kill your own background processes not from other users
if they are in background
aaaah....
is you have 2 shells open and 1 runs a while loop the other shell can't just kill it with kill %1
means the only way to stop is kill the process
you need to find the PID and then you can kill it
Thanks
Gave +1 Rep to @sand roost
np
+rep @sand roost
Gave +1 Rep to @sand roost
<b>Warning</b>: include(cat /etc/passwd.php): failed to open stream: No such file or directory in <b>/var/www/html/index.php</b> on line <b>24</b><br />
<br />
<b>Warning</b>: include(): Failed opening 'cat /etc/passwd.php' for inclusion (include_path='.:/usr/local/lib/php') in <b>/var/www/html/index.php</b> on line <b>24</b><br />
</div>
@slender kayak i saw the logs and then uploaded the rev shell
through UA
@bright wyvern log poisoning not RCE
@slender kayak your terminal and the way for writeup is something 
mount -t nfs $IP:/opt/conf nfs ...if you're already in /root/thm/vulnnet
why not this?
<?php system($_GET['c']); ?>
@slender kayak your 10 should be functional to go through 15
Nope its not

am gonna die laughing
nooooo Its windows
Ik...
+rep you are the real one
Gave +1 Rep to @exotic thunder
@unkempt wave whenever am in koth with you...just don't kill my shell with that train
@paper wedge !!!
im using discord
on my pc now B)
its feels super slugish tho on somethings not too sure why
@plucky vault
👀
vc
almost done 
i didnt see 
lucky me
i need to see cmnd 
@formal garnet spelling 101 
@formal garnet lots of trouble on last one
gtg lunch
kk
last 1 was epzp
show process
Hey @azure jackal Can i dm?
yep
@viscid pasture -perm -u=s
@unkempt wave @azure jackal screen share
stream
1trick can i dm?
@unkempt wave
hii
Had a power outage
11 mins for your machine to expire
kkkkkk
@formal garnet hydra taking long 😉
wht command u useD?
just got miketoo
u followin a walkthoug?
u good with hydra lol
skip this room 
LFMAOOAAOOA
lmaooo=))
@plucky vault 😮
@slender kayak what you guys are you doin'?
@plucky vault you tried enumerating all the ports you got from nmap?
i'm doing it now
it is at the 73%
i can see your left terminal
you got some protocols
yeah
if you want, we can go on a study room for speak
yea sure
+rep @lost prism
Gave +1 Rep to @lost prism
An Indian mother is set for an entry into the Guinness World Records after eating 51 of the world's hottest chilli in two minutes.
Anandita Dutta Tamuly, 26, gobbled up the "ghost chillies" in front of visiting British chef Gordon Ramsay in the north-eastern state of Assam.
She also rubbed chilli in her eyes in front of cheering crowds.
Esqy is indeed an uncle
Ok, ur my uncle
its 3:30 am here gotta go bye
indian?
https://www.youtube.com/watch?v=BrIxQ4vbaLI
@livid musk
🔈EXTREME BASS BOOSTED🔈 CAR MUSIC MIX 2021 🔥🔥 BEST EDM DROPS
✪ Help Us to Get 100.000 Subscribers , PLEASE !!!:
►►► https://bit.ly/2VLi6c4 ◄◄◄
Don't forget to Like & Share the mix if you enjoy it!
▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬
◢ Follow ' CF - BASS BOOSTED ' :
★ Youtube: https://bit.ly/2VLi6c4
★ CF Playlist: https://bit.ly/2ziy7i3
▬▬▬▬▬▬▬▬▬▬▬▬▬▬▬...
@opal ibex
no
no
🤔
Half
Me full
Hi
hi
how are u
@tough sinew @livid musk I’m speaking here because I have a bad english accent
@livid musk do u can share ur screen ?
Where do u come from ? @tough sinew
Nice sharescreen thanks u
@livid musk Let’s go to app system
I love binary exploitation
No problem 😆😃
Launch peda it’s better
vim > nano
🤣
@plucky vault Oh ayoub
bahahaha
je me suis levé à 4 heures
le cracking ça donne mal au crâne
@livid musk python -c
C’est du pwn
I’m tired but u are more tired than me 😂
Oui
He is born with the hacking
It’s the hacking’s country
@livid musk Do u know the tips with cat ?
gg

Now let’s go to exploit a ropchain in elf ARM
@livid musk Do u know a little bit the UAF exploit and heap overflow ?
I’m going to sleep good night all
good night
Kiss
gnight sir
I have to get ready to go out also good luck for the challenge
thx man
@paper wedge I dont have access
You need to verify first
!docs verify
yeah
now it will fail
lets see
@paper wedge are u there?
@formal garnet streammmm
2 min
kk we're doing new room btw
@plucky vault no not that
pls
ruby
yq
it took me 2 seconds?
nvm i got a shell instead of using tht @plucky vault 
@formal garnet why u streaming in 30fps lmao
huh?
i dont have a option to choose
am on web
https://www.cnet.com/news/for-may-the-4th-a-complete-guide-to-star-wars-lightsaber-colors/
@limpid badger
@limpid badger Do you know if it's allowed to sit in a vc while doing the eJPT if you aren't getting help or talking about the exam?
i dont know
i think you can do what ever you want while doing the exam (eating, chilling with friends etc)
Yeah true
@rocky delta You look familiar...
Wait
there's a new feature?!
It shows the camera of
who talks
Oh really!? From where?
When the camera is here
When you stop talking
and mentats talks
mentats' camera is here
hello 🙂
Hi
hi
hi
thank you dude
Gave +1 Rep to @exotic thunder
just saw
have a nice day guys I need to go
f*ck pwntools 😭
hahahaha
termux
@bright wyvernWtf what is this room 😭
It's too too too too too simple
@livid muskI have gived u a star in htb

@plucky vaultIt's just for a simple file transfer
thx man ❤️
Gave +1 Rep to @unreal goblet
@bright wyvern i like your color combination in your terminal.
Thank you!
Gave +1 Rep to @fresh rover
beautiful tmux
!shibe
cat > *
cat > *
🙂
🤣
Me when i'm coming in THM's general channel
@bright wyvernI never do THM but the lab Wreath is very great
Cat & HTB > Dog & THM
x)
doing buffer overflow in medium study room ,
Oh nice
i'm going but I don't speak I'm french and i have a bad english accent x)
Ah it's PE binary exploitation
I prefer ELF
ill stop by and say wat up
@worn daggerI have never do pwn in binary PE what is the differencies ?
Yes i know i have a bad english x)
pwn = binary exploitation
@livid muskToday I have do heap overflow in root me
the challenge Use after free
was nice
sudo xfreerdp /dynamic-resolution +clipboard /cert:ignore /v:10.10.183.184 /u:admin /p:password
TRAITOR
😂
@livid muskAre u american ?
Okey there is never french
@worn daggerwhat is the fuzzer.py ?
Ahh okey
It's a script kiddie tool to not use a pattern in gdb

@worn daggerThis is a tool provided by THM's room ?
Okey thanks
I have never use immunity dbg 😮
I don't install every tool like peda etc., whenever i reinstall my system
only the things i need
And i break my system on a weekly basis
Last time was when i sat SUID on every file on my system x)
Should've seen the output from Linpeas after that, holy
Hello anyone knows a little bit of python?
I do 👀
alright, im just going to be alone then, haha
@livid musk I also want to join vc
hmmm=))))))
helloo
@bright wyvern welcome to the rabbit hole
its fun
what's on port 80? @bright wyvern
@bright wyvern use --enumerate u
@bright wyvern you have wp usernames?
@bright wyvern -U and -P
for username list and passwords list
and it's always good to google if any exploit is available for that version @bright wyvern
Holmes you done with red stone?
@bright wyvern priv esc is easier...focus on basic priv esc methods
or check properly the output of linpeas
@viscid pasture that's db password not root password
@bright wyvern one for me too...Thankyou
🍕
? Huh? I wasn't looking at the chats. Was in stream for a minute.
Oh, that. No, haven't solved any recently. Busy with job and stuff. Might actually do it tonight. It looks spicy tho
Have you done it?
Nope am trying to escape the restricted z shell
analysed the code
but still few doubts
Oh I remember about that, I think Omega tested that one. They were talking about something in that room that requires ruby commands to be used in order to get something, maybe a shell, not sure.
That's what got me hooked tho.
not to be used but for escaping the shell you need particular argument variables
command line arguments to be specific
when you are done with this room just ping me..if am not clear with my doubts will ask you
Interesting 🤔 def worth trying out I guess.
Yep
Yeah sure
@viscid pasture why are you creating backdoors in a thm room?
Boris Larin, security researcher at Kaspersky's GReAT, demonstrates how to setup debugging, how to use WinDBG (+how to solve common problems), and analyses the latest Windows 0day CVE-2021-28310.
All the information you need to know about CompTIA PenTest+ Certification Exam as well as free practice exam verified by experts. Pass your exam with ExamTopics.
@bright wyvern use -T5, my nmaps also took forever until i did this
Great hanging out, cya later dudes
any blockchain developer here?
@hallow gate +rep
Gave +1 Rep to @hallow gate
btw the ssh2john
the problem was
i needed to use python2
🙄🤦🏻♂️
Gave +1 Rep to @exotic thunder
thanks @viscid pasture
Gave +1 Rep to @viscid pasture
alex how do you have king already. My nmap is still at 20% and rustscan keeps giving me different ports that don't work? Is this just me?
whats the ftp port?
doesn't work
np
Lol
.
@viscid pasture just set suid bit on /bin/bash you don't actually need to add rev shell in that file
Completely your choice
test
you're only killing shells and that s all ?
when you killed my shell you killed your shell

wiat what lol one second
i think they killed my twitter account for this
one sec lol
@plucky vault
@drowsy snow thanks!
Gave +1 Rep to @drowsy snow
@unkempt wave Thanks!
Gave +1 Rep to @unkempt wave
!docs verify
@slender kayak whats that addon with the black hat icon you are using that looks interesting?
app tools?
&src=
@dense kernel what are you doing?
pulling IoCs from my honeypot
From yours?
Gave +1 Rep to @dense kernel
thanks @drowsy snow
Gave +1 Rep to @drowsy snow
!docs verify
thank you guys!!
@red moss
Not now
hehe
i killed my own shel
@frigid temple howthe name is not changing
u there
bye bye
I made a loop
So that it changes the name after every second
Crontab.!?
What is it nano.save is that the loop

Nooo
oh
What's this?
Just a link to a burpsuite repo
@bright wyvern he caught you dirty hacker...trying to find an exploit
C'mon @bright wyvern
am just stressed for my exams and looking for remote internship 😦
come to US
i wish i can
||list=/page1/../../../(000.conf)/&src=||

Alex you

@limpid badger English please...we also want to hear what are you ordering
@bright wyvern do you remember i had once sent you something to include in UA....what was that??
User Agent
you remember what that payload was trying to do?
yes
what is controlled by you
@bright wyvern the code in front of you will lead you to the RCE
just analyze that properly
yea
@bright wyvern copy from start
the b64 starts after p>
@unkempt wave NOOOOOOO
1trick it seems he is enjoying your gift
yee ahaha
Gave +1 Rep to @bright wyvern
@bright wyvern check iptables -S | grep DROP
I thought this is same as Glitch room....setting the INPUT as DROP
You finally made this far
id?
was it RFI?
@unkempt wave ?
how come i dont get to join vc
i guess its full
you need to verify
!docs verify
ah thanks
I swear am not gonna use this Headphones mic
How tf it skips .php
Because the files were not getting loaded from the array...it was just verifying the name of the file
if it was being filtered/whitelisted from a particular set...RFI won't be possible
Do correct me if am wrong
@slender kayak
excellent work, i enjoyed it @unkempt wave
Hey @limpid badger
foxyproxy, wappalyzer
thx
@limpid badger Face reveal? 
hahaha I see!
pwnagotchi?
koth?
NEDERLAND!!
heey
yes
"Alexa, up, up, down, down, left, right, left, right, B, A, start."
@slender kayak can i dm?
sure
alex you had your payload like 5 seconds in the file and right at that moment crontab activated
and you set permissions on every command
the last koth you messed up the entire system 😉
you cannot do anything
if you go to tmp
or anything else directory
it was showing only the root
was so messed up
Esqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqqy
what are you doing ?
I'm not on the box anymore.
not on this box
Remy left his cool setup alone
the last one
than i don't know. It didn't happen to me.
No it's okay. I had to go to sleep anyways but we can do another game another day
No I shut down my virtualmachine already
not this box
on the last one
you was
i mean you messed up the system ...
nvm
No or at least not on purpose
But I have to go now bye👋
bye


Someone called my name?
Think even I overlooked the UK datacenter wise XD...
Sorry @shrewd nacelle 🙂
try elgoog
@quiet needle I have the exact same Pulp Fiction poster
Ahh awesome! @lilac kraken
I had a door poster but it didn't survive my move back home during moving out of Uni
WotLK > Shadowlands @quiet needle
Oh hell yea
I started WoW at the release of burning crusade
It's all been downhill since
I used to play on private servers
It seems expensive for a 5400 drive @wary grail
ah dw dw mb
@shrewd nacelle nice, how is that keyboard?
thanks yeah the keyboard is a dierya dk62 blueswitch and i love it
Gave +1 Rep to @lilac kraken
thank you m8
wdym
aw yea got my role thanks Esqy
flucuate and i were swooning over the keyboard at the same time
Any time homie
Right now?
im on it but ive been stuck on root for alfred
I'm down for a THM among us game near towards the end of the week if not a game tonight
Snatch, Kill Bill and Pulp Fiction. What a bloke.
Snatch is probably best UK film
Fo' sure :DDD
The one with nicolas cage?
Yea
I've seen it 😄
It's a great film
The Slap 2, written by Adam Rozenbachs for Open Slather 2015.
Adam's book PARIS AND OTHER DISAPPOINTMENTS available here:
https://www.amazon.com.au/Paris-Other-Disappointments-Adam-Rozenbachs/dp/014379339X/ref=asc_df_014379339X/?tag=googleshopdsk-22&linkCode=df0&hvadid=341743255635&hvpos=&hvnetw=g&hvrand=10188650957573717848&hvpone=&hvptwo=&hv...
Amazing (':
@unkempt minnow Aldi m8
Is it possible to achieve a junior level using only this platform?
Yes
I picked up a king size bombay bad boy pot noodle for 60p today
most british thing i've ever read
was that to follow up the tesco meal deal for lunch?
Of course 😄
That's the lifestyle that I live
this post was brought to you by chicken and bacon triple gang
can of monster, mars bar
Bang a cheeky lucozade
S tier
😄
in ireland i went aldi and bought frozen pizza for like 70c
certainly a reliable choice
a man of culture, i see
And here is the remnants of my Bombay bad boy
quite a scary pre-statement
Polished
LMAOOO
😄
I found out how to root alfred, walkthrough guy also had trouble with his Meterpreter listener
so i have to use web_delivery
see u guys and nice too meet u @unkempt minnow I didn't want to interrupt your conversation
keep it real 🤙
so sorry but i have to go now
ok
i hope we meet again 
there still in that damn vc 
Hello
Still locked
check out bot verify
Okay
+rep @unkempt minnow appreciate the information/help 🙂
Gave +1 Rep to @unkempt minnow
+rep @unkempt minnow
Gave +1 Rep to @unkempt minnow
brainfuck is an easy programming language to learn, but a hard programming language to use. You should be able to code in it after watching this video and playing around with BrainfuckMachine in just a few minutes.
Like Sudoku? Try my Sudoku book and leave a review:
https://www.amazon.com/dp/1094607215
Redbubble:
https://www.redbubble.com/peop...
did you started postgresql
service postgresql start
thanks man
@oblique dove check me ou t
10.10.128.165
john john.hash --format=NT --wordlist=/usr/share/wordlists/rockyou.txt
john john.hash --format=NT --show
sudo ip link set dev tun0 mtu 1200
xfreerdp /dynamic-resolution +clipboard /cert:ignore /v:10.10.136.178 /u:Administrator /p:'TryH4ckM3!'
you need to verify
/etc/resolv.conf
Why can't I join any VC, they all are locked?
And if I need to verify myself, how do I do that?
@astral scaffold
Send !verify to the TryHackMe bot
Sure
It's done, Thx
Gave +1 Rep to @astral scaffold
Esqy nice hoodie
i neverr be able to se screen 😂
hi
Howdy fokes
@nimble barn Please don't just ping THM Staff if you need help -- they're busy people, and the discord is handled separately from the site. If you need help desperately, ping a moderator. If it's something like "How do I join VC" just ask the question without pinging anyone -- this is a busy server, someone will respond 🙂

@unkempt wave windows is nice 😢
Hey @slender kayak 🙋🏻♂️
@azure jackal hydra ftw
For POP3 not
Postgres
pop3://$IP:port
Check if they have specified any wordlists in hint
@azure jackal can I dm?
.
oh
okoko
thanks!
🙂
@plucky vault try this
nmap -sCV -p- $IP -Pn -v --open --min-rate 5000 -T5 -oN $filename
what means --open and --min-rate 5000?
@plucky vault
@plucky vault do you want to talk?
maybe in the medium study room
?
Look for open ports and --min-rate means it'll send minimum 5000 packets per second
oh thanks
Gave +1 Rep to @exotic thunder
🎤 too bad
oh ok
np
That 25 is for port
yeah
i know
So you won't receive any connection
Bcoz no port 25 is not open in that machine
yea it's open
but my machine don't ping the remote vm
Sorry I ignored that
can i dm to you?
Yea sure
How nmap would be useful in that scenario?
@shy basin
I think it wouldn't like the question was forwarding traffic then I think it should be netcat and ssh...
Yes
pip install request
pip3 install request
but it's possible that you have to do pip3 install -r requirements.txt from the folder in which the script is located
Is it running using python2 or python3?
Sorry for my late response but the latest versions of Kali seem to not have the version of pip for python2. I had a similar issues when running a python2 exploit and couldn't find pip for python and couldn't install them either...
apt install python-pip or python2-pip i guess
They removed it from the repository
It doesn't work.. Aren't both apt-get and apt doing the same thing?
ig yes but sometimes apt-get works
i repeat sometimes
@shy basin apt install python2.6-pip ?
I just get unable to locate package
try curl https://bootstrap.pypa.io/get-pip.py -o get-pip.py && python get-pip.py
@shy basin
I think I've got it now had to change the link a little but it should be installed
okok
It worked. Thanks man ❤️
Gave +1 Rep to @azure jackal
np
@slender kayak where?
what I need do to can join in the voice channels?
Send the !verify <your token> command to the thm bot
!docs verify
💩
wth
big brain >>> big gpu @shrewd nacelle 
can any one help me out with splitted screen view while sharing screen on discord
@uneven snow bro
you know how to fix thatbro
@shrewd nacelle bro can you help me plz that mean a lot to me
to fix my dual screen split prolem
watch my live stream
bro
😫
i will one sec
what are you doing? @crimson cypress
@crimson cypress you have to specify the ports.
for example :8081 like you did for the url
you gotta specify that in the scan
check if theres a port syntax also
Happy birthday too @urban cloud
hpy bd
gm
What?
Hey
Sorry I don't know anything regarding screen share thing
There are many things I don't know and THM corrects me with correct concepts
1trick practising solo KOTh?
Can't hear you guys...
Na actually am driving
oh
Home
join and leave
Dm me the thing you wanna ask
alright
1trick listen to yourself locally
1trick check linpeas output properly you'll find something
id
Or if you find .dockerenv
@unkempt wave
@shrewd nacelle thanks you somuch that work
Gave +1 Rep to @shrewd nacelle
No problem mate appreciated when you have some problems just pet me know!👍
😇
just passed eJPT 
🍻
congrats
ty
whats happening guys!
idk
Congrats
how hard of 1 to 10 you give ?
@unkempt wave Looks like the changes did happen, I can see the new graphic 🙂






