#koth

1 messages · Page 3 of 1

steep agate
#

can you find me now? try to kill my process 😄

broken pilot
#

naw im good

#

i was like aww man i pissed him off

#

i dont know how to hide myself yet... and when i stay off tty i end up killing my shells trying to use vim

steep agate
broken pilot
#

yea but doesnt that show up on pts?

steep agate
#

yes that is the problem haha

broken pilot
#

trying to change king with a one liner but its on lock GG @steep agate

fair adder
#

he is very fast

median tapir
#

Anyone online?

#

Pm? @fossil pecan

fossil pecan
fair adder
#

What's koth?

rose nimbus
fair adder
#

Bet thanks

median tapir
#

Is it me or is KOTH having issues

fair adder
median tapir
median tapir
#

@broken pilot can you still access the koth page?

nova tide
median tapir
#

trying to upload the picture

#

i keep getting this like every 5-16 minutes

rose nimbus
#

yeah the servers seem to be having some problems right now Havoc

#

its not you

median tapir
nova tide
#

Is it though? FineFire

rose nimbus
#

not for THM x)

median tapir
#

y'all know what i mean😂

jovial field
quiet schooner
jovial field
sweet willow
#

@lavish crystal nice game 🙂

median tapir
fossil pecan
#

Anybody here interested in some "Holiday KoTH Challenges / Giveaways"? Haha, I'm thinking of maybe hosting some fun challenges and random stuff on stream, probably mostly KoTH, but anything THM could be fun! I already have a couple ideas, just wanted to see if anyone is interested, and if y'all have any other fun ideas! DM ok if you want to follow up 👍

orchid kelp
#

Jelo

jovial field
broken pilot
#

@fossil pecan blobfingerguns

broken pilot
steep agate
#

@broken pilot

#

lmao 🤣

broken pilot
#

lol

#

ok

#

@steep agate it was worth a try

steep agate
#

umount -l /root

#

gg

broken pilot
#

i had to get a couple hits in lol @steep agate

fossil pecan
#

Almost had me there @steep agate 😜

steep agate
#

this time you didn't import the koth module

#

are you testing your v2 ?

fossil pecan
#

This is kingme module, just does king maker and nothing else

fossil pecan
#

Want it to be one of my challenges, to try and get any king points against it

steep agate
#

then I need to do one in LKM too, now that I have more time from vacation

#

in C you can also do it

dry fossil
#

You've literally borked the machine I can't even access any of the webpages at all

#

@balmy crypt

fair adder
hoary mulch
#

Newuser800 GG man

dusk cave
#

Someone from the current koth game here?

#

hat1? brandon?

dusk cave
#

@steep agate what did u do with the king txt 😄

#

gg man

steep agate
dusk cave
#

yeah i see

#

How can i see the commands other users execute ?

dusk cave
fair adder
dusk cave
#

you can always ask

fair adder
#

ok

fair adder
broken pilot
#

damn UNO thats how we playin now??????

#

gg

fair adder
unique juniper
#

Isn't that against the rules? So dirty

fair adder
#

if this is allowed I'll do ```
chmod -R / 777

everytime
#

stonks

modest beacon
#

lol

fossil pecan
fair adder
# fossil pecan will break box 😉 GLHF 😛

you dont say. the guy from the screenshot above did so too. So again: if this is legal you can just put your name inside the txt, run chmod -R / 777 and win every koth. playing like the UNO-guy should not be allowed

dusk cave
#

why am i not king

#

nvm just took a while

fossil pecan
fair adder
fossil pecan
# dusk cave why am i not king

you can also check the "king service" running on port 9999 (from game box: curl localhost:9999 ) or over vpn (curl $VMIP:9999) - this shows most accurate "who is king right now" (from POV of game & actual scoring based on that service)

fair adder
fossil pecan
# fair adder <@118749350795935744>

Yes, I believe it would fall under rule #8

Do NOT delete system binaries (except chattr) or change executable permissions on them (or their directory).
#

Best to vote reset

broken pilot
#

@fair adder yea, I believe he ran rm -rf / or rm -rf /bin when we were playing.. I think he might have got mad the game before because I used chattr to lock king.txt then sent chattr to /dev/null

fair adder
broken pilot
#

Yea but you could always wget a static chattr .. but I’m not gonna lie I’ve changed permissions on some binaries before playing against matheuz and niko so I guess it was karma lol… but I didn’t remove em completely ,, just made a copy in a new directory before changing perms so they could’ve been found easily using find…

fair adder
#

@fossil pecan did you see this LOL

fossil pecan
fair adder
fair adder
fossil pecan
fair adder
fossil pecan
#

didn't recognize it lol 😆

#

🤦‍♂️

fair adder
#

@fossil pecan do you have the koth.service can add that one

fossil pecan
#

it's part of machine for the 9999 serving king...

fair adder
#

ya i know but he remove the file /etc/systemd/system/koth.service also stop the king service

#

he also remove curl

#

LOL

fossil pecan
#

oh ya that's no fun 😦 ... i do have a copy of the koth binary and koth.service lol ... have had to replace & fix before (many times)

fossil pecan
#

hard without curl/wget tho lol

fair adder
#

ya bro

fossil pecan
#

i'll make my own

fair adder
#

@stiff egret i have the log of the game can you stop this guys removing curl wget and removing /etc/systemd/system/koth.service also stop the koth service.

fossil pecan
#

was just gonna try python http.server 9999 from /root hahahaha

#

doesn't work 😦

fair adder
#

LOL

#

netcat is there

fossil pecan
fair adder
#

but still i will try

#

@stiff egret game id 61617 user rootpiebot Dm me if you want logs

steep agate
steep agate
#

he playing very dirty

#

and besides being a very disrespectful person

nova tide
fair adder
steep agate
# fair adder ya

and he and "troponix" messed up the machine again, i'm getting sick of playing koth like this

#

shit

fair adder
#

LOL

fair adder
#

rootpiebot fork his website

steep agate
#

both are spoiling the koth

fair adder
#

ya Bro

steep agate
# fair adder ya Bro

if it wasn't forbidden I would pivot the VPN of these two guys there, and then I would do the damage

#

there are new players that are ruining koth

steep agate
#

nono

#

it's not possible

fair adder
steep agate
#

hehe

fair adder
#

😉

steep agate
fair adder
#

I have seen lot of people go over rules on koth but have't reported that much

stiff egret
stiff egret
#

Use those scripts in Private games only. Any public match use of those scripts, if reported, will lead to a koth/site ban.

steep agate
broken pilot
#

If they get banned what stops them from making a new account and still continue what they are doing??

short tusk
#

Us bringing in the law?

teal oyster
#

ssup guys

#

long time

broken pilot
#

@teal oyster

crude tide
#

I just did a public koth and got all the flags, but even after writing my name in king.txt I didn't get any points

#

also it just finished and the round didn't get logged?

broken pilot
#

@crude tide are you sure your name was wrote into king.txt ? Did you double check ? Was it locked?

teal oyster
teal oyster
broken pilot
#

Ight just getting off work now… played a game at work using the attackbox…….

crude tide
teal oyster
teal oyster
#

Coz if it wasnt, then there's no way that the system will know that your king 🙂

crude tide
#

yup - c:\king.txt

teal oyster
crude tide
#

yea

teal oyster
#

there's usually another directory if it was offline..... /king-server and youll find another king.txt file there.......

crude tide
#

oh rip (first timer)

teal oyster
#

no worries 🙂

#

We learn by mistakes

fossil pecan
steep agate
#

I think I'm going to make a script to protect king.txt from windows hehe

teal oyster
crude tide
#

seems like there wasn't a /king-server directory

teal oyster
#

enter the Administrator directory

teal oyster
# crude tide

Then dir and youll see a king.txt file and a king-server directory....

teal oyster
# crude tide

dont just create your own king.txt file lol,, look around the system and you'll find the file ....Mostly in the Administrator User if its windows....

broken pilot
#

@crude tide i believe that king file is at C:\king.txt

fossil pecan
#

@crude tide ^

broken pilot
#

looks like he was in h1medium ...

teal oyster
crude tide
#

Ahh but I found the king.txt in c:/ and changed that one

#

I looked through administrator and only saw a flag (also didn’t create my own king.txt lol)

#

Ehh I’ll make sure to keep the recommended stuff above in mind tho

broken pilot
#

sometimes you also need to refresh your browser... cuz that happened to me before , thought i wasnt getting any points , refreshed and had 210 points lol

#

even when its waiting to start the time may be off from your browser than you gave everybody a headstart

#

5 mins

ancient mulch
#

sorry if this is a common question but what's king of the hill in a cybersec context? how does it work, rules, etc?

dusk cave
# ancient mulch sorry if this is a common question but what's king of the hill in a cybersec con...

King of the Hill (KoTH) is a competitive hacking game, where you play against 10 other hackers to compromise a machine and then patch its vulnerabilities to stop other players from also gaining access. The longer you maintain your access, the more points you get.

You can read everything here
https://tryhackme.com/games/koth

humble pelican
#

I'm new into KoTH, any one wanna play with me?

dusk cave
dusk cave
#

@steep agate i give up i think you fixed every priv esc 😄 gg

fair adder
charred bobcat
#

Hello I here.

fair adder
charred bobcat
#

Yo if we're doing live we need to vc..

fair adder
#

lezzz go

#

nahhhh aint tryna do all that lol

charred bobcat
#

but.. I gotta brb.

fair adder
#

you can if you want lol

charred bobcat
#

afk a few

fair adder
#

okay

devout salmon
#

I joined

fair adder
#

i saw 🙂

devout salmon
#

KOTH

fair adder
#

Yup

#

bout to start

charred bobcat
#

Am I gonna miss it?

fair adder
#

you can still join!

charred bobcat
#

Linky in dm

fair adder
#

bruhhhhhhh

#

look at all my windows lol

#

found RSA key

#

You guys reset the machien!?!"!?!?

#

brhhhhh

#

i was running hydra on the ssh password 😦

#

LMAO

charred bobcat
#

I'm getting error on vpn

fair adder
#

attempting this one more time 😅

fair adder
charred bobcat
#

Can I do without a VM? AB maybe?

#

I have to update Kali I think...

fair adder
#

I've been using WSL2 Ubuntu 😅

#

We'll see how this pans out

#

found the password LMAO

charred bobcat
#

You have fun while I upgrade my Kali install. lmao

fair adder
#

just restart your machine!!!

charred bobcat
#

Seriously getting fatal error while trying to connect to vpn.

fair adder
#

dang bro 😦

#

fugg

charred bobcat
#

lmao.. I am tech support..

#

Not for here.. but I am in general..

fossil pecan
charred bobcat
#

Just tried. Fatal error.

#

I'm updating my distro and will try again.

#

There's a lot of updates..

#

is gonna be all night.. I'm only at 2% right now....

fair adder
#

so i'm in

charred bobcat
#

Going up fast.. ish....

fair adder
#

i found an md5 hash

#

not sure how to convert to acci

#

axii

charred bobcat
#

hashcat

charred bobcat
fair adder
#

not gonna do that rn lol

#

i'm going to see johntherip

#

gonna try hashcat

sour vectorBOT
#

Gave +1 Rep to @charred bobcat

charred bobcat
#

okay np.

#

john is so much slower though...

#

Here's to hoping you all kill it! 🍻

fair adder
#

Crack station not cracking it

charred bobcat
#

I'm telling you rn.. hashcat plus rockyou.

#

10 sec.

fair adder
#

Woah

charred bobcat
#

If it's not in crackstation it's probably not rockyou

fair adder
#

this just appeared out of nowhere on my shell

fossil pecan
#

👋

fair adder
#

IS THAT YOU ???

#

X

charred bobcat
#

They got u

fair adder
#

XD

fossil pecan
#

😄

fair adder
#

NO WAYYYYYYY

#

THAT IS SO FREAKING AWESOME!!!!!!

#

bro i'm inide i see the flag by can't crack the hash NotLikeThis

charred bobcat
#

Oh the 14yo is coming out in me on that one...

fair adder
#

NO F* WAYYYY LOL

fossil pecan
#

😛

fair adder
#

that's master skills right there

charred bobcat
#

That's a rooEmote

fair adder
#

my hats of to you F11tipsfedora

#

you are a hero

fossil pecan
#

another one coming in a sec ... 😉

fair adder
charred bobcat
#

still 0 flags yall

#

That is rooHappy

fair adder
#

just please don't submit flag 🥺

#

im this close lol

charred bobcat
#

happyPanda is a stolen emote

fair adder
fossil pecan
#

😆

charred bobcat
#

rick rolled...

#

Someone has root

fossil pecan
#

someone got me with that the otherday

#

was awesome, i had to have it haha

fair adder
#

by any chance are you using the wall command? 😅

charred bobcat
#

F11.. wa are besties now okay? lmao

fair adder
#

i feel like i've been star struck but by a hacker

charred bobcat
#

I kid I kid I kid.. we just hackers and.. apparently one of them can't connect to the VPN right now.. which... makes the other one... better.....

fossil pecan
#

i can probably help you figure that out if you want/need it ...

charred bobcat
#

It seriously stopped me to prompt for something...

fossil pecan
#

typical

charred bobcat
#

biggest update ever.. worse than vindows

#

I may just spend my time updating my vm.. hey.. my new gf.. is my vm...

fossil pecan
#

😛

charred bobcat
#

Kali is kinda hotttt...

#

Actually I knew a girl named Kali.. and she was as hot as you think the distro is...

fossil pecan
#

hahaha

charred bobcat
#

Before Kali existed tho.. it was backtrack back then.

fossil pecan
charred bobcat
#

And if her name was Backtrack.. I would have been like "Yeah.. no.. gotta go"

fossil pecan
#

😛

#

kind of in the name lol

#

time to back track

fair adder
#

I saw my prompt was changing again lol

#

to bash2.4

#

somethhin

fair adder
#

you guys!!!!

charred bobcat
fair adder
#

I submitted my first flag

#

shiit

fossil pecan
#

hahahha

#

😘

fair adder
#

there we go 😅

charred bobcat
#

Not to mention that I dot it from DEFCON......

fair adder
#

That was fun

#

like my heart is racing rn

#

XD

charred bobcat
#

alr.. well.. it's been real.. and fun.. but.. what machine are we hacking on right now?

fossil pecan
#

next public match in 20min

#

i'm happy to host/play any private games anytime too 😄

fair adder
#

That will be fun !

#

i found more users

#

using the cat /etc/shadow

fossil pecan
#

i know the linux boxes pretty well, but i still need to learn a lot about windows lol

fair adder
#

wonder if theres more flags

fair adder
#

the rest pretty much memory

#

i ran gobuster and nmap on my own before the writeup

#

and /robots.txt

fossil pecan
#

took me forever to figure that out 😛

#

this is one of the few boxes i haven't found em all .. i have 7/8

fair adder
#

oh snap! you right

#

8

#

total flags to obtain

#

it says

charred bobcat
#

pause.. I gotta update again.. lol. j/k

fossil pecan
#

ya i still gotta try again to hunt for that last one

fair adder
#

i can give you all the users if you want maybe it's in one of those other users?

#

saw it had mysql

#

so was gonna hack the database

#

next

fossil pecan
#

i think it's in the db, but i couldnt fiind it

fair adder
#

I'm still flabergasted

#

that i submitted flag bash

#

Okay so i see that my enumeration is okay. now i gotta work on password cracking and hacking all these other vectors

#

@devout salmon hows it going????

devout salmon
#

Good

charred bobcat
#

Still updating.. but not really...

fair adder
#

how far did you get and stuff....

devout salmon
#

Nothing

charred bobcat
#

3306 seems very close to 3389....

#

Anyone got any entry level stuffs yet?

#

Someone got a shell right?

#

See.. I'm just getting started...

#

Kali finally updated and I'm rocking as slow as an iceberg.

fair adder
#

Hello Mr.Holmes TryFlagMe

stiff egret
#

Hi Roki

fair adder
fair adder
devout salmon
#

Ok

#

I’ve completed lvl 1

stiff egret
fair adder
#

Absolutely!!!!

charred bobcat
#

Low hanging fruit..

fair adder
stiff egret
#

ah yes! Thanks (:

fair adder
#

especially the hackers methodology one

fossil pecan
fair adder
#

lezzz go

devout salmon
#

Hi

fair adder
devout salmon
#

I don’t know how to open machine

charred bobcat
#

We are done on this one then. Next?

stiff egret
charred bobcat
#

Fun tho..

#

Also my Kali VM is fully updated.. and connected...

#

I do need to get my Exploiting Active Directory room done this weekend though.. or it will torture my soul....

fossil pecan
fair adder
#

running hydra

#

wondering if the username could be one of these dudes

#

had to restart my nmap scan

#

found the upload mechanism with gobuster

#

need to find a php reverse shell for it

#

gotta a whole bunch of things going on

#

someone got king

#

i need to install terminator 🤦‍♂️

charred bobcat
#

The guy on the right looks sus to me. Prolly him

fair adder
#

i think they are the same person lol

#

forgot how to use steghid smh

charred bobcat
#

Wait wut? 🤣

fair adder
#

now i gotta look that up

#

i think its the guy from sopronos maybe?

charred bobcat
#

stego.. ok.

fair adder
#

already running hydra so we'll see

#

stego yes

#

i think snipe got king

#

or waseeld

charred bobcat
#

I'm not in this round.. you don't have to worry about how long it takes me to update my kali...

fair adder
#

reset your vpn credds

#

redownload thme

charred bobcat
#

i'm good now

#

I'm just not big on competition and... well.. I had to update my VM. lol

#

It took forever.

fair adder
#

wtf is up with hydra

#

taking forever

#

i gave it -t 4

#

threads

charred bobcat
#

and?

fair adder
#

the name probably isn't in that names.txt from SecList that i used

#

might have to create my own

#

fug

charred bobcat
#

you gotta make it werk..

fossil pecan
charred bobcat
#

don't.. delete.

fossil pecan
#

sometimes more is worse

fair adder
fossil pecan
#

easier to get blocked

#

i've been on the box hanging out watching the brute force 😛

fair adder
#

LMAO

charred bobcat
#

slow always wins

fair adder
#

ninja

#

snipin

charred bobcat
#

The quieter you are.... etc etc.. wtf.. used to be Backtrack statement..... and stuff...

fossil pecan
#

🤫

fair adder
#

snipin been scoutin

charred bobcat
#

0x0A hack commandments..

#

#dual-core-music (not on this server)

fossil pecan
#

i prefer the 1010 commandments 🤔

#

😛

charred bobcat
#

binary... mmm.. 0a eats that shizz up.

fair adder
#

almosst there !

#

as the millenials say OMW

#

(i'm millenials)

charred bobcat
#

I almost taught my boy how to count to 15 on one hand.. but... he failed.

fossil pecan
#

@fair adder dbl check the middle part of this error message ||Failed password for invalid user aaliyah from||

charred bobcat
#

binary

fair adder
#

just bruteforcing the pass

#

that's what you meant no?

fossil pecan
#

"for invalid user ... "

fair adder
#

ohhhhhhhhh

fossil pecan
#

😉

fair adder
#

crap

fossil pecan
#

haha wanted to give you a heads up 😛

charred bobcat
#

yall on a team rn?

fair adder
#

yes yes thank u 🙂

fossil pecan
charred bobcat
#

A: I told you all I was tipsy.. B: I told you all I was tipsy C: Kali was out of date and I had VPN connectivity issues... D: F yall.. I'm tipsy (joke.. love yall)

fossil pecan
charred bobcat
#

Hopefully that's not against ToS or anything.

#

Can I spectate?

fossil pecan
#

haha ya i can jump in VC in a bit

fossil pecan
charred bobcat
#

Okay. My headset has been on my tower for months.. and still has a charge...

#

Or.. I can just type

fossil pecan
#

up to you, im gonna switch machines and jump on in a few minutes

charred bobcat
#

cool

#

I'm not playing rn.. too tipsy..

#

tipped over even.

fair adder
#

great so i got steghide to work on that image

#

but no passphrase NotLikeThis

#

on this image to be exact

fossil pecan
fair adder
#

alright, attempting new username lists and trying exploiting smbclient

#

trying to exploit smbclient

#

but when i run smblient from my machine

#

its asking me for a password from my workgroup

#

i enter my password and it doesn't work

#

not sure what's going

#

on

#

this is looking really tasty 😋

#

gonna brute force this

#

but how

#

lol

#

i remember that with hyrda i have to copy a cookie capturing it with burpsuite and all that mess

#

shiiiid

#

lots to do

#

GG ya'll! Sorry for the spam there. This was extremely fun !!! Thank you for the help @fossil pecan

sour vectorBOT
#

Gave +1 Rep to @fossil pecan

fair adder
#

Super awesome!!! I was this close to getting flag again 😅aniguns

fair adder
fair adder
#

Im.assuming it wasn't. I was way over my head on this one smh

stiff egret
fair adder
#

Nooooooo 😳

#

Saw that from running nmap

stiff egret
#

well food for thought ( :

fair adder
#

And I got there through <IP>:6555

#

Ahhhh I see TryFlagMe

stiff egret
fair adder
#

Noted

#

Loved the experience!! Gonna organize my tools and notes. Gotta learn how to exploit smb again

#

This was really insightful

#

Love this game .

#

Waiting a minute that was this

#

Was I trying to brute force a legal registered domain 😳

#

But why did that login page result in my Nmap scan 🤔

stiff egret
# fair adder Was I trying to brute force a legal registered domain 😳

I think you really need to know what you are doing, the nmap scan showed you the page, login page of a CMS. And it also detected any links on the page, but general rule of thumb, you do not go after anything that is not owned by tryhackme, that is generally almost every domain that is registered. In KoTH (if any) all/any domains that are part of the game are only accessible after you manually add them to hosts file.
If you didn't add anything in hosts file, and it's still resolving, Do NOT go after that.

fair adder
#

Apologize !!! Dangerously unaware

#

I completely agree. I need to learn more on this before I start koth again. Gonna go back to my cyber defense studies

#

Jesus, how the hell did I not that see that

#

Coulda been in big trouble

jovial field
#

what the hell someone broke the machine: Failed to import the site module
Traceback (most recent call last):
File "/usr/lib/python3.5/site.py", line 580, in <module>
main()
File "/usr/lib/python3.5/site.py", line 566, in main
known_paths = addusersitepackages(known_paths)
File "/usr/lib/python3.5/site.py", line 287, in addusersitepackages
user_site = getusersitepackages()
File "/usr/lib/python3.5/site.py", line 263, in getusersitepackages
user_base = getuserbase() # this will also set USER_BASE
File "/usr/lib/python3.5/site.py", line 253, in getuserbase
USER_BASE = get_config_var('userbase')
File "/usr/lib/python3.5/sysconfig.py", line 595, in get_config_var
return get_config_vars().get(name)
File "/usr/lib/python3.5/sysconfig.py", line 546, in get_config_vars
_CONFIG_VARS['userbase'] = _getuserbase()
File "/usr/lib/python3.5/sysconfig.py", line 205, in _getuserbase
return joinuser("~", ".local")
File "/usr/lib/python3.5/sysconfig.py", line 184, in joinuser
return os.path.expanduser(os.path.join(*args))
File "/usr/lib/python3.5/posixpath.py", line 237, in expanduser
userhome = pwd.getpwuid(os.getuid()).pw_dir
KeyError: 'getpwuid(): uid not found: 0'
root@spacejam:/dev/shm#

#

where is this error from??? didnt see this one yet

#

did someone delete the root user?

#

root@spacejam:/dev/shm# sudo su
sudo su
sudo: unknown uid 0: who are you?

fair adder
#

Man yesterday was insane!

#

never gonna forget this XD

fossil pecan
fair adder
#

Hell yeah!!! Not at this very moment but in a few hours is that okay ???? Would definitely love to

#

I stepped away from my machine atm 🥲 @fossil pecan

#

Also gonna be organizing my one liners here soon as well as do the Password Attack room on THM than after I can ping you and see if your up for it than 😀

fair adder
#

KOTH is like playing chess

#

I extremely love KOTH and thank you THM for koth 💚

gentle surge
#

Finally got around to playing some KoTH, loved every second of it 🔥🔥

gentle surge
fair adder
#

Like Nmap -A -p- IP

#

Stuff like that 😅

gentle surge
fair adder
#

Gonna get on some games soon!

ancient mulch
#

im still too new for koth, but one day i shall join you all

fair adder
#

I'm finishing up the Passwords Attack room

#

then gonna read up on the KOTH guide rules and documentation

#

Not trying to get banned.

#

turns out you can combine a whole bunch of wordlists together into one cool awesome list!

fossil pecan
hallow mortar
#

Koth is da bomb! If you new guys want to hop on voice chat during a Koth game, I'd help give you some hints!

fair adder
#

the (auto hack+root+king+patch) ?

hallow mortar
ancient mulch
#

random but i like your about me @stiff egret

sour vectorBOT
#

Gave +1 Rep to @ancient mulch

ancient mulch
#

no prob 🙂

fair adder
#

so i'm supposed to add my username to the /root/king.txt

#

like so echo "rokiikor" >> /root/king.txt

#

also the longer you stay as king the more points you get

#

i see why now f11snipe wasn't worried about the flags, rather being king lol

fair adder
#

Niiiiiice so this is how F11snipe did the nyancat

#

instead of killing my shell 😅

#

love it !

#

so, once i'm king i'm suppose to be checking my processes and other things to stop peeps from getting in

#

that is awesome! this is where my blue team knowledge comes into play

#

can i use some of the SOC tools i learned from soc path on this? like Yara ?

#

that would be awesome

#

incase a user injects a root kit?

stiff egret
#

yes to all of that

stiff egret
fair adder
#

Very coool! TryFlagMe

stiff egret
fair adder
#

Going to next game. I kind of got a good view of how the game works now 😅

stiff egret
#

GL!

gentle surge
fair adder
#

love how i can implement everything i learnt from THM on here, this dynamic of learning is incredible !!!

#

like a playground for hackers

#

and blue teamers, cause we can practice our patching skills

#

and monitoring skills!!!

#

so freaking awesome

stiff egret
fair adder
stiff egret
#

So they don't hunt for flags anymore. just aim for king, because you can always submit the flags in the last minute to get the edge, if needed.

fair adder
#

Since now I know the password to Shrek and all

stiff egret
#

Exactly.

#

You can literally just ssh in, no recon.

fair adder
#

Hmmmmm 🤔

gentle surge
stiff egret
#

It's in Hogwarts. (all passwords, ports, dynamic.)
Shameless plug

stiff egret
#

I have one with 350 process and a shit load of threads. It slows the machine so much that it's super irritating to work, but just enough for king service to work.
But what's the point in that anymore?

fair adder
stiff egret
#

def. king brute = a script or binary that bruteforces/forces your name in king.txt

fair adder
#

ahhh i see

#

totally different

stiff egret
#

So, if I am hammering the king.txt so bad that it is slowing the machine - others lose whatever chance they had.

#

Take it like a fork bomb, except 1. It is writing my name in king. 2. It is leaves just enough space in memory for king service to work and you guys to have a broken ultra slow shell.

#

What's the point in that? There is no fun

#

pair it with a really good persistence, it's almost impossible to kill and well, games get boring after first 30 seconds because you now know the root method for all machines.

fair adder
#

No fun at all. and speaking of fork bomb. It read in the rules "Any type of DoS" does this mean no or yes

stiff egret
#

No Fork Bombs absolutely.

fair adder
#

got it

stiff egret
#

Hence I said, just enough space

#

So it do leave memory for the webpages to work, albeit slow, and the rev shells to come back, again, albeit slow.

#

~~ Everything is working, just super slow. And with that much threading power, the only way to win is to basically kill that binary, and that would be impressive if anyone does that.

stiff egret
fair adder
#

A MAC address is 4 binary character no? so when you mention binary in this aspect what binary are you referring to? @stiff egret

gentle surge
stiff egret
fair adder
stiff egret
#

no need for that sentence at all, we all are learning tbh

fair adder
#

This is why i love THM and the environment, you peeps are awesome 🙂

gentle surge
#

So he is saying that if some can kill the binary that is causing the king brute, it would be impressive

fair adder
stiff egret
#

you can do this with a simple bash script too. but you would want it as fast as possible, and hence almost everyone prefers writing it in C/ or some similar language.

fair adder
#

That's impressive tbh

fossil pecan
fossil pecan
fair adder
stiff egret
fair adder
#

Finishing up password attack room !

#

loving this username_generator.py

#

definitely using this xD

fair adder
#

Cupp is scary

#

it almost figured out my own password

#

crunch not cupp

#

i didn't input my real info in cupp

broken pilot
#

Wassup @fair adder i see you made it over to koth.. maybe I’ll c ya in a game and I can show you a few things I’ve learned so far…

devout salmon
#

@charred bobcat hi

charred bobcat
#

moo

#

haven't slept...

fossil pecan
broken pilot
#

GG @fossil pecan was the only thing i could think of to stop it

fossil pecan
#

i'm gonna probably play a few more tonight after i finish eating

also happy to host/join private practice matches anytime if anyone wants

charred bobcat
#

Yall doing koth rn?

fair adder
#

Once i'm done with Sec + studies today around like 9 or 10 i'll hop on and do some KOTH with you peeps aniguns

fair adder
#

you down??????

#

Learning how to configure my snort files

#

and snort rules

charred bobcat
#

RRRRRRRRRRROKI! NO! lol

fair adder
#

what why ?????

#

lmao

charred bobcat
#

I haven't slept

fair adder
#

get some sleep silly

charred bobcat
#

It's been over 24....

fair adder
#

ouch

charred bobcat
#

Yep. Tomorrow maybe?

fair adder
#

maybe

charred bobcat
#

Insomnia + neighbors is a ... yeah...

fair adder
#

headphones?

fossil pecan
fair adder
#

bet 🙂

charred bobcat
#

Can I watch and comment?

#

I may judge a lil. lol

fair adder
#

of course !

fossil pecan
#

ooo, soo close ... almost caught up to rootpiebot through a forkbomb! 😛 ... (tsk tsk btw lol)

fair adder
#

finishing up this Passwords Attack room!

hallow mortar
#

Hey! So auto pwn is a no go, but what about a script that auto puts your name in the king.txt?

#

Something that could be scheduled as a cron job.

nova tide
hallow mortar
#

Cool deal.

swift laurel
#

Go easy on me @broken pilot dont remember the last time i played haha

edgy torrent
#

@lavish crystal gg

#

how did you manage to regain king again in the end?

terse mica
#

Hey

#

How can i learn koth anyone can help me

nova tide
pearl gladeBOT
terse mica
sour vectorBOT
#

Gave +1 Rep to @nova tide

broken pilot
broken pilot
#

Just change your experience level in your profile to either intermediate or advance and that will allow you to join a koth game… from there enumerate and take notes,, along with some of those tips and you will be on your way…

sour vectorBOT
#

Gave +1 Rep to @broken pilot

leaden knoll
hallow mortar
#

@leaden knoll your screen name is awesome! Haha

harsh obsidian
hallow mortar
broken pilot
#

@hallow mortar 😜 still have 42 seconds lol

#

hahaha that way puts in your name after i score the points....

hallow mortar
#

@broken pilot

#

I see what you did to /usr/bin/chattr too. XD

broken pilot
#

its an easy fix tho

#

ls -la /usr/bin/chattr

hallow mortar
#

Oh I know. haha

#

Took me a second to realize what was going on though. XD

broken pilot
#

this ones a little harder

hallow mortar
#

Hmmm

#

You mounted somethign read only eh?

broken pilot
#

yup it was...

hallow mortar
#

Hmmm. Might need a hint on this one!

broken pilot
#

i unmounted it now

hallow mortar
#

😮

#

But I must know the secret sauce! XD

fossil pecan
hallow mortar
#

Haha. I'll check it out!

#

GG @broken pilot

broken pilot
#

aww man thought i wasnt gonna be able to drop the flag cuz i refreshed browser with 30 secs left and it froze

hallow mortar
#

Thought I'd barely have enough points, but not quite. haha

broken pilot
#

GG

hallow mortar
#

Let's do it again some time soon with @fossil pecan too

#

And I'm going to brush up on some things until then!

broken pilot
#

hahahaha damn.. GG @steep agate

steep agate
steep agate
#

has anyone here watched it? haha very good

broken pilot
#

i figured you kicked me out and patched then went to next game lol tried to sneak 1 in

steep agate
#

either way you win this game, i was away too long haha

steep agate
#

lmao

#

I forgot I joined another game too

broken pilot
#

i dont have that last flag

#

GG

steep agate
#

gg haha, I almost lost it, I had forgotten it was in the machine

steep agate
jovial field
#

lul

#

why did you destroy the world? because you closed a door

steep agate
#

lmao

#

"yakuzoweb"

jovial field
#

🙂

fossil pecan
quiet schooner
fair adder
#

Yazukoweb is Big cheater on tryhackme

#

And anti-game player

quiet schooner
fair adder
quiet schooner
#

Email the koth email address to report cheating

#

As the rules say.

fair adder
#

Okay thanks

#

Good night

swift laurel
#

@steep agate gg i guess😂

fair adder
swift laurel
fair adder
#

How you are in koth ?

swift laurel
# fair adder What Guess ?

Im a bit confuse , im saying GG to MatheuZ im in a koth game with him and cant figure out to edit back king file ?

#

Absolutely nothing related to you friend

fair adder
#

echo "your pseudo" >> king.txt

swift laurel
sour vectorBOT
#

Gave +1 Rep to @worn orbit

fair adder
#

😉

steep agate
steep agate
steady basin
#

I'm new to koth someone join my game

#

in 8min

fair adder
#

post link here

steady basin
fair adder
#

You sent the spectating link 🙂

#

send the invitation link its the one above it

#

Damn you are GOD XD

steady basin
#

not in koth lol :/

fair adder
#

let's get this going !

steady basin
#

so how do you take the hill??

fair adder
#

setting up my machine.

You have to echo your username

#

inot the /root/koth.txt

#

'file

#

you can automate this if youwant

steady basin
#

your tryhackme username right

fair adder
#

yes not discord

#

mine is rokiikor

#

roki but backwards

steady basin
#

gotcha gotcha

#

so its definitely linux then..

fair adder
#

yes

#

and unfortunately i know the password already to ssh into this but i will be fair and play from scratch

#

i ran through shrek already

steady basin
#

oh shii

fair adder
#

not thoroughly

#

so your still good

#

it's a windows !!

#

no wait

#

windows server my bad

#

so you need to add -Pn to your nmap;

#

i just thought of combining some seclist into one word list with cat

#

saw that matheus just hopped in

#

can't slow poke anymore need to ssh now !!!!

#

shhiii

#

bulls eye

#

damn

#

math got king

#

i was just downloading my reverse shell 😦

#

trying to see how to kick math off

#

if that's allowed ?

steep agate
fair adder
#

Lol

#

take you off king

#

are you king?

#

atm

steep agate
#

why ?

fair adder
#

How do i become king. aren't i suppose to like write my name on the file next ? and change the passwords?

#

to kick you out?

#

or am i understanding this wrong ?

proven garnet
#

Get your name in the king.txt

#

You can kick people but then they can’t battle with you

fair adder
#

yes with "rokiikor" >> /root/king.txt

proven garnet
#

Yes but what if I make it so root can’t edit king.txt

fair adder
#

hence the quote, how can there be a battle without anyone in the ring

fair adder
#

i'm loving this

proven garnet
steep agate
#

but still it helps a lot of people, and i'm happy about that xD

proven garnet
#

Haha definitely

steady basin
#

lol i had root in first 3 minutes i just dont know how to deal with all the little file protection tricks

#

that was fun tho

crisp torrent
#

Well I finally got nyan'd for the first time lol

#

GG wp

broken pilot
swift laurel
#

People playing for christmas eve ?

swift laurel
stiff egret
#

Merry Christmas people!

terse mica
steep agate
#

Merry Christmas!

fair adder
#

I will in a couple hours aniguns

broken pilot
#

are you rattlesn3k @polar arch

broken pilot
#

did you get on the box ?

hallow mortar
mental birch
#

@ruby umbra how can I join?

ruby umbra
#

Can you start a private room?

mental birch
#

Yes

ruby umbra
#

You can select any one you like if you're a subscriber, so we can go with an easy one for now

mental birch
#

Which one do you want ?

ruby umbra
#

You can choose

#

I generally prefer linux though

mental birch
#

I don't mind any because its my first time , I have no clue 😅

#

So you pick something

ruby umbra
#

Let's go with "H1: Easy" then

mental birch
#

Starts in 5 minutes? Or 15 ?

ruby umbra
#

5

mental birch
#

Also , should I send the invite link here or Dm?

ruby umbra
#

I'd prefer DMs

mental birch
#

Alright

broken pilot
#

what???? back to back games with 10 players going on..... i want in

broken pilot
#

figures........

#

not even a minute in...why?

#

hahha guess they didnt like the ip address or something

#

hahaha wonder should i keep putting my name in king.txt just to see if they get tired of resetting

teal oyster
teal oyster
charred bobcat
#

Stream some KOTH so I can learn the shiz

fossil pecan
charred bobcat
#

Not today...

vapid condor
#

Is removing chattr from KoTH against rules?

#

rm -f /usr/bin/chattr

fossil pecan
#

No it's expected 👍

#

BYOC 😜

#

Some boxes have Cron to remove chattr 🤣

vapid condor
#

Good Job! @fossil pecan

#

Almost got you with flags 😂

vapid condor
#

||If of course, there is not an alternative for it, which I dont know about||

vapid condor
fossil pecan
# fossil pecan BYOC 😜

Bring your own, best to expect not to have it on the boxes... Either busy box or precompiled static binary and wget from yourself

vapid condor
swift laurel
#

lets gooooo

hallow mortar
#

@fossil pecan awwww Haha.

vapid condor
#

Removing chattr gotta be against riles..

#

I feel like these KoTH games are getting out of hand with this scripts.. Doesnt feel like fun anymore.. Doesnt want to sound negative or bad, but KoTH today is more likely who will run their ultimate script first

#

I enjoy when people use different methods and techniques, it will offer more to learn, and its fun to find a new or different way

proven garnet
#

Would you like me to link you to a static chattr

vapid condor
#

You can

proven garnet
#

Spamming king.txt is annoying but that’s not what everyone does

#

There are plenty of techniques for king. If someones spamming it try targeting their ssh keys or they shells

#

Edit there script and put your name in it

#

There’s many things to do

vapid condor
#

Nice script from game I got ( ͡° ͜ʖ ͡°)

proven garnet
#

Analyze it and see how it works

#

Maybe people use the same techniques and you can block other people from using them

steep agate
#

wget https://raw.githubusercontent.com/posborne/linux-programming-interface-exercises/master/15-file-attributes/chattr.c -O chattr.c && gcc chattr.c -o chattr -static && python3 -m http.server 8000

#

@vapid condor

#

your static chattr binary

vapid condor
proven garnet
#

Look into how they are enabled on the machine

#

Maybe if you get a list of all the kernel drivers before the root kit is in then you can try to remove it

vapid condor
#

Thank you for tips

proven garnet
#

Np

#

It’s all learning and having fun

hallow mortar
vapid condor
#

Pretty nasty

#

how come you didnt become root if you have this type of..armageddon script?

hallow mortar
#

@vapid condor even though it can be frustrating, there is usually a way to defeat people's scripts and such! And I didn't because @fossil pecan got there before me, and his scripts are stronger! XD

vapid condor
#

._.

#

Me who cant write scripts

#

I have this one ( ° ͜ʖ °) Its pretty harmful and friendly

#

Never hurt anyone (ᴗ ͜ʖ ᴗ)

hallow mortar
#

That's not bad!

#

And you said you can't write scripts! That right there is a script! haha

vapid condor
#

Maybe not bad.. but useless against.. that.. rm /usr/bin/chattr

#

But I am getting better at it everyday, which is the most important thing

steep agate
#

there are koth machines that don't have chattr and you have to upload yours, there are machines where chattr is pointed to /dev/null, and you have to upload your own chattr, it's part of the game

steep agate
#

but it is a good script

vapid condor
#

Yea, dont know what machine it was.. But when I wanted to use chattr, I got pronted cheese and got my shell killed

#

was kinda fun

#

I liked it

steep agate
vapid condor
#

I know F11 use that method as well

steep agate
#

when you type chattr it drops a "cheese" on your screen and kills your shell

steep agate
steep agate
vapid condor
#

true

#

but bulletproof against people who doesnt know about it (Like me 2 days ago 😉 )

steep agate
proven garnet
#

mv nyancat /usr/bin/chattr

steep agate
vapid condor
steep agate
#

f11 said I was the first person to figure out how to "defeat" his rootkit

vapid condor
#

Yea, you are really good

steep agate
#

to build a king protect in C, or in LKM, it takes time and a lot of research

#

you can also hook in chattr or king.txt and troll it, you can do a lot of interesting things

vapid condor
#

Interesting.. never heard that before

steep agate
#

this also takes a lot of research time, studies, it's not easy to create these things in a short time

vapid condor
#

isnt F11 software engineer or something?

steep agate
#

I think he's older than everyone here, he's 39 or 37

#

I'm only 17 hahahaha

vapid condor
#

yea.. that would explain something..

#

19

steep agate
#

@fossil pecan is certainly a sysadmin and does not want to tell us hahahahahah

hallow mortar
#

Dang. I feel old....

vapid condor
#

👀

steep agate
#

f11 should do streams again, it would be cool, play a battlegrounds, koth, do events sometimes, that would move even more

#

why, it's so fun to play this, that you end up learning how to defend and attack machines too

steep agate
vapid condor
#

I like KoTH, It just feels stupid when you finding all vulnerabilities, trying to patch everything, and then someone with PwnKit,Rootkit and AbracaDabraProtectDaKing.sh comes

#

and you stand no chance

#

but stiill... Almost.. 😉 XD

hallow mortar
steep agate