#koth
1 messages ยท Page 33 of 1
heelllooo
guys can someone give a hint on panda machine!
i am startin out in this field....
Koth is probably not the best place to start out...
sometimes you run before you walk jarvis!
๐ ๐ ๐
i just tried it out.๐ i am planning to do other machines
but leaving something undone is something i dont like๐ซ
These have a time limit
TryHarder,Learn a few things,Get good and comeback and root it on your own.
Not the best place to start
If you're a subscriber you can make a private match with your choice of box
okey
Hi, is there any possibility to extend koth time?
Not as of just now, no
join public game
@terse willow, is this being developed?
@fair adder Is what being developed?
@quiet schooner, zayxcev's question.
what the hell
you're winning !?!?!!?! @fair adder
@fair adder what's your username in THM?
slavkosmith
k
yep me is winning ๐
me ?
yes
yes lol don't ask ๐
some ppl get mad if you DM them ๐
im elf ๐
well i am also root but cant do anything
gj ๐
oh i wonder why
wth why is it saying that?
Connection to <ip> closed.```
@nova tide no im in bed lol
okay
took me 40 minutes to find a proper way to get root
but now i have two ways in for prod โค๏ธ
ok
5 minutes random https://tryhackme.com/games/koth/join/68cb45a0c3b963b5d6a16649
Rule 1: No resetting the box unless its broken ^^^
im losing this one so hard ๐
bruh im not proffesional
me neither
....
carnage o.O
really ๐
@fair adder have you done carnage before?
or new game?
what is this invite? @fair adder
I forgot lol
In 10 mins
random room
13mins left to join
Hello any mod whom I can DM?
Why?
Not anything trash. Its some information I need.
Then why does it need to be a DM?
The information is sensitive. And so is the question.
Ok, but if it's something that doesn't need to be a DM I reserve the right to be annoyed
Alright.
hackers machine too slow
??
If it's being slow, tell people to stop beating on it
There's nothing intensive running
morning, https://tryhackme.com/games/koth/join/b5f902dc08467f9beab43039 "Offline" starts at 09:00 GMT+2 ( Dutch time) feel free to join till the room is fulll...)
EU GANG RISE UP -> Join for a fun time: https://tryhackme.com/games/koth/join/b4ec9d6bdc0d2995e05bbfe1
Come join
starting in 2 min
PRIVATE GAME INVITE! Playing space jam. Join while you can! Starts in 3min. https://tryhackme.com/games/koth/join/42560f862ee007d5b1a7fd79
gg @fair adder
lmfao
gg
i got 0 flags
i got lost and just went flag seachin
4 i think
you should edit that. i don't care but some peopel get a lil sensitive about colorful language ๐ฆ
oh okay
someone join koth
someone join koth
@fair adder public game?
yea
i just woke up lemme join. not sure if will be able to play it for an hour
have to do stuff as well
@fair adder i would suggest to delete the screenshot
why?
why?
@fair adder because it contains a spoiler..
marked as a spoiler.
marked as a spoiler.
@fair adder you cant simply upload the passwords as spoilers specially for koth..
Not to get arguementatitive... but walkthroughs and videos are allowed... so is it really a spoiler (didn't see the screenshot)
PRIVATE GAME INVITE! Playing Shrek. Starts in 25min https://tryhackme.com/games/koth/join/e5cb8d745fd2329b03a9617d
Could anggabvmv and trinity please stop resettings the fn box every minute because they cannot ssh in....
jesus christ you people
The reset button should be for when the box is unusable not when you cannot get in
I can feel the pain.
That is hilarious. When you can't get in: RESET
Literally
5 times already
We ssh race into the box. I get in first. rm * .ssh and then 2 min goes by and IT WAS VOTED TO RESET THE BOX
which box?
Production
Prod is easy idk why they have to reset...
Often, it's not installed
If anyone is up for a KOTH here is a link (public room) https://tryhackme.com/games/koth/join/69635dc9fdfcabd15b44622a
starts in 15'
18mins
random room
@inland elbow no
There are no individual channels for games @waxen fossil this is the only one
ok
what are the default king.txt file attributes?
for me it was showing ----ia-------e--
Think it comes up with an E
and chattr was not there
Hello
so how to proceed further any help?
The i means it canโt be written to. Youโll need to search for static binaries
@dapper escarp how do I look for static binary? Find perm?
this is common in koth?
find perm 4000?
i already have root access
Starts in about 15 mintues: https://tryhackme.com/games/koth/join/3a861b308a4a018cfda0a125
@harsh obsidian wait, turning on the pc
@glacial magnet Will do
Lol, okay
Two minutes, all welcome: https://tryhackme.com/games/koth/join/3a861b308a4a018cfda0a125
lmao reset the box ๐
well no need to reset when you cant get in ๐
that was fun reset thx bro
ohk
Starting in 15 minutes: https://tryhackme.com/games/koth/join/b011a86eabba4e3c222f6399
Starting in 24 minutes: https://tryhackme.com/games/koth/join/474e7bd3226d727e5566c4a6
I wish Koth was around, everyone talks to him except me ;-;
Are you joking...
ok... good
When will Koth come back? I wanna learn!
it is up now
||shhh||
...
Hi guys
hey
Are you new? @frozen orchid
cool! what do you need help with?
About installing kali linux
VM or install on PC?
Usually im always trying to install normal mod but today i need help because i got to expert mode so much answer is needed
Im using pc
Do you have your bootable?
Yes
ok, so what is the problem?
can you take a pic?
Wrong chat.
we should move this
Also, please don't just message in every chat until you get a reply. Really bad thing to do. @frozen orchid
20 mins to start
2m 3s
lion has no ssh?
look closer
how do you usually spectate a koth match?
random public game starts in 23 minutes:
https://tryhackme.com/games/koth/join/50c5009283de28f1b7bb38ce
starts in 5 minutes. ^^^
Random public gme
starting in 5 minutes:
https://tryhackme.com/games/koth/join/ecd6ee837cbd8a8e95a2838c
random public ^
Anyone else keeping record of their koth games??
445
1388
1419
1420
1423
1428
1485
1491
1493
1494
1496
1497
1499
1508
1539
1564
1570
1575
1599
1601
1604
1613
1615
1621
1622
1635
1638
1652
1654
1658
1661
1665
1688
1689
1693
1697
1702
1712
1714
1715
1720
1721
1761
1764
1768
1769
1770
1802
1814
1820
1855
1857
1878
1988
1993
2036
2042
2044
2049
2192
2233
2235
2265
2269
2283
2311
2327
2598
2708
2753
2761
2764
2769
2820
2829
2844
2941
2947
2976
3041
3751
3754
3832
3854
3936
3944
4089
4100
4190
4251
4277
4281
4282
4392
4568
4780
4788
4916
5026
5159
5243
5246
O_o
i still have missed alot of games in between 445-1388
Anyone else keeping record of their koth games??
445 1388 1419 1420 1423 1428 1485 1491 1493 1494 1496 1497 1499 1508 1539 1564 1570 1575 1599 1601 1604 1613 1615 1621 1622 1635 1638 1652 1654 1658 1661 1665 1688 1689 1693 1697 1702 1712 1714 1715 1720 1721 1761 1764 1768 1769 1770 1802 1814 1820 1855 1857 1878 1988 1993 2036 2042 2044 2049 2192 2233 2235 2265 2269 2283 2311 2327 2598 2708 2753 2761 2764 2769 2820 2829 2844 2941 2947 2976 3041 3751 3754 3832 3854 3936 3944 4089 4100 4190 4251 4277 4281 4282 4392 4568 4780 4788 4916 5026 5159 5243 5246
@nova tide
No
I think i am the only one then. Gotta find those missing games as well
I might make a tool that checks games played
I don't think Skidy would like bruteforcing 6k IDs just to check the games
just bully him into making an endpoint that will list them for you
I mean it would be better to implement an endpoint for random flags but thatโs unlikely
So itโs even less likely to get that endpoint for checking matches
I don't think Skidy would like bruteforcing 6k IDs just to check the games
@grand ember it could be designed to only do the full range on first run and then go from where it left off on additional runs
Still brute force but hey
or bruteforce it once and just expose the dataset on heroku or smth
Tru tru
Hello everyone, i'm quite new on tryhackme but i made a lot of rooms already and i would appreciate to try a koth game, my english is not very fluid but if somes of you could introduce me (and ofc help me) i would be very glad (i'm french)
I discovered the game thank's to @woeful sundial
Veikoon
hehe same
Newbie aswell. What's a better introduction to koth than joining one?
--> Optional has a stream pinned in here <--
when do you want to koth?
Never again koth :c
Public game starts in 25 minutes; https://tryhackme.com/games/koth/join/0447bb26ccc379248f4fe118
Remember that scene in Top Gun where Goose says, "Holy shit, it's Jester!" ? That's how I feel every time I see @rancid pewter show up in KotH....
I apparently really scare a lot of people
It's the speed at which you act, and tetris
Mate
You force people to play tetris to get into the box
That is terrifying
Chess next?
That could be fun
If I got some time tonight I will do chess
Why you gotta give ideas like that @terse willow ?
Any other idea then ?
Sure
Connect 4 could be fun?
Othello maybe?
Ooh, Monopoly, if you're feeling really mean...
That'll have people there for hours
@harsh obsidian can you stop?
lol, yeah
The KOTHs game results don't stay on the profile no?
I am, once again, impressed by @rancid pewter.... without chattr has managed to lock king.txt.....
You cant beat a rootkit
true....i need to get smart on rootkits. creation, use, hiding, etc
Reset the box, I wont use my rootkit this time to make it a bit more fair
Did your rootkit just bypass what I had done or undo it then do your thing?
It doing some magic
word
First time that I use this script in a game
@harsh obsidian Still using some bash script ?
lol
Seem like Chess on a terminal look really bad
hmm I'm interested in what kind of koth rootkit you'll make for my new koth machine considering that there are so many possibilities it can spawn with, I don't even know how it will spawn
As long as I have root access or sudo I will be able to get my rootkit on your box. I only need to compile it for the specific kernel header.
what if its windows ๐
Ohhh that a problem
evil laugh
@harsh obsidian Seem like you were beating my little script with 5 thread. Now try to beat my script with 50 thread in 4 process so about 200 thread constantly brute forcing the king.txt
lol
GG
gg!
Had fun playing tetris
I think my new game will be .... pacman
space invaders!
Galaga
donkey kong
KotH starts in about 20 minutes: https://tryhackme.com/games/koth/join/78b3e078f5fb0d8f97bba870
Is donuts in there with the rootkit? :)
Not right now, lol
joined a game. @harsh obsidian is here... promptly leaving. don't feel like playing pacman tonight
joined a game. @harsh obsidian is here... promptly leaving. don't feel like playing pacman tonight
@fair adder But I'm not the one with the games, that's myDonuts....
doesn't mean that you don't have them kits either!?
sure don't!
Although one of these days i'm gonna learn how to make and use them..... no really, i will.....
Last and only time I've entered a koth game with you, you hacked the machine in 34s
Pentesting is my hobby, but koth is on another level xโฟx
Lol, that's because I've played that machine before
aww man, I thought that the vulnerabilities were random aswell
A few passwords and keys are rotated on some of the boxes
well you are still the king @harsh obsidian hahaha
lol. are you on the box at all?
did you run gobuster?
yes
what list did you use? kitchen sink will show you one that's very interesting
i used the big.txt from dirb
Try /usr/share/seclists/Discovery/Web-Content/KitchensinkDirectories.fuzz.txt
definitely d/l seclists. it's absolutely worth it
yes i will download it thanks @harsh obsidian at least i got 10 points xD
Hell yeah you did! Good job! The first time I played Hackers, it kicked my teeth in
@harsh obsidian thanks ๐ itยดs very funny the KOTH
Another one starts in two minutes: https://tryhackme.com/games/koth/join/c8823c6b1bd1e666c7ce998a
It's Food.....one minute
lol
Ports 15065 and 16109 have http servers........
Telnet doesn't HAVE to be on its standard port.......
KotH starts in 17 minutes: https://tryhackme.com/games/koth/join/3dcfd742637f45e1ca19bd81
crosses fingers for Carnage since I haven't yet played it
hi
Anyone on KOTH rn?
Did you know?
There is a specific voice channel named "KOTH" that you can join while playing koth and communicate with others, and have more fun playing??
starts in 5 minutes
Random private game
just for fun i'm a beginer

damn skiddies
aah fixed
not you skidy
24 mins
https://tryhackme.com/games/koth/join/dcd31988358391daa6fa7164
@hollow portal Joined. And i'm live streaming it in Discord -> KOTH because why not....about 17 minutes until start
first koth hope it goes well
hei, what was the username for that one?
hei, what was the username for that one?
@dense nest for what?
nvm
guys, if you have questions about what happened in https://tryhackme.com/games/koth/5366, make sure to ping me ๐
answering tomorrow, bye!
Public KotH starts in 24 minutes; might live stream if there's interest: https://tryhackme.com/games/koth/join/e0aa448d317b7dc4dce3ebd8
KotH starts in 8 minutes: https://tryhackme.com/games/koth/join/e0aa448d317b7dc4dce3ebd8
gg 254
Game starts in 18 minutes: https://tryhackme.com/games/koth/join/2e0cfa7772e1e5088a40ed2c
Can you live stream it?
It's live streaming now as we wait for it to start, actually
join us
join me
Game starts in about 23 minutes: https://tryhackme.com/games/koth/join/7db51a51e55e1231791e0951
will be my first try at KOTH - take it easy on me ๐
will be my first try at KOTH - take it easy on me ๐
@zenith juniper You got it. Good luck and remember the basics htat you )hopefully) learned in the rooms
Space Jam is definitely a good box to learn on
i wish there were more flags
lots of ways in
Hey guys, do you guys think that learning windows privelage escalation is going to help me in doing KOTH?
There's a single Windows KoTH box
Learning the skills and methodology behind all types of privesc will help, but the boxes are overwhelmingly Linux
that was fun. thanks!
Why do color tags of 0x1 look more awesome than of 0x9?
No offence I just randomly noticed
Why do color tags of 0x1 look more awesome than of 0x9?
No offence I just randomly noticed
@stiff egret WHAT ARE YOU TALKING ABOUT? yELLOW IS BEST MOST UNIQUE COLOR IN DISCORD
You can say, bc you got green! I got yellow with no skills to increase my level m trying to make it loook goood! ;-;
@nova tide
You can say, bc you got green! I got yellow with no skills to increase my level m trying to make it loook goood! ;-;
@nova tide
@stiff egret i kept my yellow for quite some time till i get 0xD
Every other color here have a copy but yellow is unique
Tho it doesnt look as cool as the one on 0x1 dangit should'nt have updated my level with verify bot xD
Well welcome back again from all that ctf work (i guess)
happy to see you again
Now waiting for that rootkit
You can always ask the mods to reset your rank xD
๐๐๐๐๐
koth? starts in 7m -- https://tryhackme.com/games/koth/join/24a44bf1124574d6145bdc3a
Anyone can help in Webgaming please
....
start in 5 min
Hi which of the machines in king of the hill is considered the easiest ??
Spacejam, food, possibly production
Anyone can help in Webgaming please
@granite chasm you asked this in #site-support earlier and I replied ask in #room-help
i can't start a private session to play by myself can i?
only if youre a subscriber
You still need someone else
And you can create a private game as a non sub iirc, just can't pick what VM.
dont get last sentence
If you are not a subscriber, you should still be able to create a private game
You just can't choose what box you get.
you could also go into one of the koth rooms like food or hackers that is a room but its the same machine as koth
oh i get that i am subscribed
(but only the ones I created have that atm @winged charm)
koth(random machine) in ca. 12min https://tryhackme.com/games/koth/join/0924bf57ec5f5c174595dfa0
This machine is so laggy, please reset!!!
It was nice playing with you
@coral fractal Keep in in English please
https://tryhackme.com/games/koth/join/86c0be2a3287c9e7766f3165 - for fun, you can ping me for hints if you want
hi i have a question someone could help me
today in a KOTH i saw and file look_at_this.txt
with this while true; echo "adan" > king.txt; sleep 1; done
someone could tell what does it do?
that will put the name 'adan' into the king file every second
thanks do people use this to prevent that someone change his name
bascially yes, even if someone else puts their name in the file his will echo in immediately afterwards
the loop can be killed if you kill his session as he didnt use & to background it, if he had killing him wouldnt stop it but you can find it in ps aux
i imagine that, but sometimes when i try to kill the others sessions i kill my own one there is some way to know in what proces im running mi session?
tty as a command
yup
i concur
or if you want to be fancy you could echo a message into their pts and if it appears on your screen then its your session
ty i will try it the next KOTH i think KOTH should have a chat or a box for message i think the other player was trying to tell me that
That's what this channel is for.
no problem bud, good luck!
if C0D3RX see this ty to you too
:)
Just took part in my first ever KOTH.... that was intense... zero points... but so close to getting a foothold
๐
max players in koth?
10
thanks
speaking of koth i was in a game i think
Moving them is allowed.
well my king timer is still going up i dont have the problem with this anyways
lemme check
nvrmnd just realized i dont even need ssh to get in
I have seen many people using /bin/bash while thinking it would hide their pts but it don't
haha that wasme
nice koth @nova tide (I'm Etreyix on TryHackMe)
that was my second ever KOTH.... so much fun ๐
i got 3 flags!!! yipppeeee
you changed ssh ports right?
couldnt privesc to root though... and spend my whole time getting kicked out and getting back in
8888
could get my pwncat to work.... grrrr .... need someone to walk me through it
couldnt*
22 mins
@hollow portal If its windows, m out xD
@stiff egret you done with carnage?
cat I download something with apt?
The boxes do not have an internet connection.
Sup
Whatโs the max for a game??
@fair adder 10
hey I am here
sorry i was late in game. had to do something
you can ask me here what you want to ask
hye
hye @fathom badger ๐
@fathom badger as i said i am more than happy to answer any question you got here instead of DM ๐
@nova tideok bro
@fathom badger when you added your name in king.txt it was just a simple file but when i added my name i also used chattr binary to make it immutable
non-writeable you can say
How to do it bro?
Thank you
how did you do in other terminal?
i added nyancat binary into the system, maed it execuatble and ./file > /dev/pts/<pts here>
@solid raft i would suggest trying some rooms before you start playing koth?
it would be super helpful
ok
@nova tidethanks bro
We learnt a lot from you
Thank you very much
if you need any help regarding koth just ping me here ๐ I will be more than happy to answer anything you like except telling you straight up answers how to get into the box
@nova tide after downloaded nyancat
And run make & cd src
./nyancat > /dev/pts/
am i right? Bro
any how to remove after adding?
also dont forget to background that process with &
because when you will run it you will have to ctrl + c to get back to your terminal that will also close nyancat on that pts. so just background it and leave it running
any how to remove after adding?
@pseudo bobcat its just a binary, add it somewhere that others wont find easily
pts id is user id??
maybe i can stream in discord voice in a couple of hours
Thanks you bro
pts id is user id??
@pseudo bobcat if you dops aux | grep ptsyou can see all of the pts/users connected.(almost)
Waiting for it
that pts number is like 1,2,3,4...
yeah
also you can do:
echo 'Hello Naughty here' > /dev/pts/1
it would show this text on their screen
and you may have noticed that random garbage text on your screens? thats:
cat /dev/urandom > /dev/pts/1
Means you can literally do any simpler things like those methods ^^^
and be creative
I wanna ask one last thing bro
sure?
yeah
Everytime you sent message
type like this by one line?
yeah
Eeeh @nova tide making all secret tricks public ๐๐๐๐
Okay i understood bro
Thanks you
P.S. use -n with wall, otherwise people can see which tty you are sending the msg from, and next thing you know , connection lost broken pipeline
thats why just use echo
I just use last stand instead 
๐ I have no knowledge about Games so. ,๐๐๐
All I have expertise in is Minecraft
havent played minecraft that much. except when my friends introduced me to it and we made our base in a public server far far away. i remember the struggle to finding a place that far.. we used boats,builds,run alot ๐
@nova tide how can i privileges escalation with tmux in Carnage machin bro
havent done carnage yet..
Probably do some research?
@fathom badger maybe do some normal machines and understand attacks before doing koth youre trying to priv esc with a screen splitting tool...
unless tmux is a binary in that machine then nevermind
Tmux can be used for privesc, through I have not done Carnage.
@jaunty turret ask here instead of dm
@jaunty turret ask here instead of dm
@nova tide How to avoid pts spamming? Who first get foothold have upper-hand?
kind of but you can still get root from other possible ways in
kind of but you can still get root from other possible ways in
@nova tide Thanks. So, there are multiple vulnerabilities to exploit the box?
Always.
in KOTH there are atleast 3,4 ways in for every box
lf fun
.
@nova tide u changed ur dp from hinata to mob >.< couldn't recognise u lol
mob is โค๏ธ
As i said i can help with the questions non related to getting into koth machines
@nova tide technically, he didn't ask how to get into the machine. he asked how to move ahead in the machine. By your statements, you owe an answer ๐
@runic mulch wrong chat.
@minor notch heya
sorry
No worries
rule #6 No attacking other users -- this only prohibits directly attacking the machine of other users, right? we can kill other user's processes or spam their pts on the KOTH box, correct?
Yes
If anyone is interested.
https://tryhackme.com/games/koth/join/f6bcb98c89adeb37ddfe4050
If anyone is interested.
https://tryhackme.com/games/koth/join/f6bcb98c89adeb37ddfe4050
@wintry sundial how is it that im the winner? wut.... i never played....
Hi
Hello guys, im newbie in this field and i've completed linux, nmap and metasploit rooms
I've attended 2 koth games but wasn't even succesful to get into the machine
do u have any tips on how to improve? seems to me like attempting koth games is pointless ๐
my bad
tyler does respond to pings
I was connected and searching for flags and out of no where, I lost connection
maybe the box was re-set?
nope, just checked and it didn't. Just reset now but earlier it hadn't
oh well, now after the reset it works
@grand ember VPN server died
I'd play the Tyler room
Tyler for you
lol
whoever thought they could get away with trolling in this game
thought wrong
wat
starting in 5 min
join up
or i'll kick your cat
is there a spectator option?
:< not the cat
There should be once the match starts if it's public
They might have to share it if it isn't on the match list (:
the spectator link https://tryhackme.com/games/koth/5810
some on changed the permisions of king.txt i cant cat it
or echo and nor my king time is increasing
lsattr
ho okay thanks
is it ok (per the rules) to change permissions/disable services/close other connections etc?
Have you read the rules? Some of those actions are not allowed.
explicitly not allowed @wintry sundial
I am asking since its says "Patch the machines vulnerabilities"
What about it?
taking a service down while you patch it
You can't kill services unless there's literally no other way to patch them. 99% of the time, there is a way
got it
Restart != Kill or disable
That's fine
how is that fine?
does that not fall under "harden the machine" ?
... you're allowed to patch the machine
does anyone want to join a koth
@autumn iron because u did while loop
Anyone give some hint about Hackers ? I just get 1 flag from ftp
The box has a writeup
where should I find ? @quiet schooner
I recommend doing some research
I mean
It's out there
And not difficult to find
oo I just found ! It's by you ! Thanks
https://tryhackme.com/games/koth/join/23f05d4a8a4f0db495b930df
2mins public if anyone wants to join
Hh
in terms of rules... is hiding software like "chattr" ok?
also is hammering the king.txt with repeated chattr +ia allowed too?
Yes, and yes
lol ... ok any tips when you are both root and the other is just hammering chattr scripts on the flag?
Boot them out, patch the way they got it.
I assume "no attacking" other users means I cant close their shells?
ohhhh but their terminals is ok?
The shells exist on the KoTH machine, they're in scope.
ahhhhh ok that makes it easier
well... sort of!
that was the first time I have ever got king... for a whole 2 mins lol
Tetris updated now no way to bypass it. https://tryhackme.com/games/koth/join/2e758e3073b833586da4cf6c
Next can we have space invaders?
Yeah sure
any one playing koth?
https://tryhackme.com/games/koth/join/122d7ab1f1f5147a07067bb0
Public, starts in 23 minutes
the feels
guys anyone now on public?
@ashen hamlet share the join link i will jump in
public bro
whats this???
a poorly identified service?
if it's not on a well defined port. Nmap may give a miss leading service name
Naughty just use WSL 2
do ot
https://tryhackme.com/games/koth/join/265dd563228502797902e723
public game if someone wants to join (13min left)
@cobalt flower dm?
Anyone I could DM in mods? Got something that might be an issue, not sure.
Anyone I could DM in mods? Got something that might be an issue, not sure.
@stiff egret Is it a site thing, or a Discord thing?
Discord thing
Go for it ๐


guys.
i wanna register a nick on thm.
on a new acc.
but some guy that joined 85 days ago with 0 points and 0 activity got the nick.
what can i do lol?
I don't think they will delete someone's account...
Perhaps they will, I don't know their practices.
Either way, I don't believe this is the channel for that.
Either way, I don't believe this is the channel for that.
@obtuse oxide yep.
any tips for koth?
im not new to pentesting but im new to the koth format
how do u guys usually blue team once u get on the box
where I can find hackers box writeup please
@fair adder https://jc01.ninja/ctf/hackers/
Template page for CTF Writeups
@glossy vessel thanka man
np
how do u guys usually blue team once u get on the box
@scarlet pike usually patch the way you came through. No stopping the service unless there is no possible way to patch it. Find what else is running on the system, which other possible way people are getting through in, change passwords, change or replace ssh keys etc
Well if you are fine with cat /dev/urandom or getting nyancat running on your screen for one straight hour then its not important
Persistence mostly helps in the late game. When most of the common methods have been patched, and people who are already into the system start messing with other people's pts
Patching includes killing those nc
Well if you are asking for official thm games there was a tournament a few weeks back. And some people stream koth games and people like to play against them. You can share invite in this channel and people who want to can join you in. Or just ping me whenever you like i am always up for a koth game ๐
There may or may not be more tournaments in the future. I am mostly waiting for koth teams update.
ooh teams
Well I ain't that good either. But its fun to play with
Enough what?
Well some machines are not that hard. There are 3,4 possible ways in for every koth box. So you can always find a few or one to get in.
If you are out of options or dont know what else to do just start a hydra in a new terminal meanwhile you look for other ways in.
Brute force on ssh/ftp/web/wordpress logins.
do those usually work
Not in every box but it would work in a few i know of. If you are using the right command/hints you found.
ohh
are there writeups of koth boxes
to make it fair
cuz ppl who have done a box before
know the way in
no?
Not sure about food but there is for hackers. Search for food/hackers in hacktivities
Ohk there is also a writeup for food as well
ohh
Record updated โค๏ธ 242, 411, 440, 441, 445, 1388, 1419, 1420, 1423, 1428, 1485, 1489, 1491, 1493, 1494, 1496, 1497, 1499, 1508, 1539, 1540, 1544, 1546, 1564, 1567, 1570, 1575, 1599, 1601, 1604, 1613, 1615, 1621, 1622, 1635, 1638, 1642, 1652, 1654, 1658, 1661, 1665, 1688, 1689, 1693, 1697, 1702, 1709, 1712, 1714, 1715, 1720, 1721, 1761, 1764, 1766, 1768, 1769, 1770, 1771, 1801, 1802, 1814, 1820, 1855, 1857, 1878, 1883, 1891, 1938, 1939, 1940, 1951, 1956, 1963, 1973, 1977, 1984, 1988, 1993, 2007, 2009, 2014, 2021, 2030, 2036, 2037, 2038, 2042, 2044, 2049, 2054, 2115, 2122, 2192, 2197, 2233, 2235, 2238, 2246, 2263, 2265, 2269, 2283, 2302, 2311, 2327, 2402, 2423, 2424, 2594, 2598, 2708, 2711, 2715, 2719, 2749, 2753, 2761, 2764, 2769, 2820, 2829, 2832, 2844, 2915, 2924, 2941, 2947, 2976, 3038, 3041, 3497,3701, 3751, 3754, 3832, 3854, 3936, 3940, 3944, 4089, 4100, 4155, 4190, 4250, 4251, 4252, 4277, 4281, 4282, 4319, 4392, 4568, 4780, 4788, 4792, 4794, 4909, 4911, 4916, 5026, 5159, 5240, 5243, 5246, 5348, 5353, 5355, 5587, 5632, 5633, 5684, 5948, 5957, 5958
its not fun anymore, when people kill your session and kick you out
is making a cronjob that constantly echos your name into king.txt against rules?
Have you read the rules?
yes, but i saw john hammond do it on a stream
anyone know how many flags (if it's allowed to say) there are in the KOTH for Space Jam?
๐จโ๐ป Just got completely destroyed by Th3J0k3r in KOTH ... got onto machine in minutes... but every terminal closed... then all the doors in closed within minutes... zzzzzz
oh hello!!!! @livid dagger
Im Etreyix... nice play
you were in like in no time lol
I had nothing...
this one is new to me
what?>?? you were so quick
and the first flag was passed in less than 1 min
@livid dagger were you killing my seesions?
and logs show you got in 2 mins after it started
I new one way in already but even then I couldnt get a foothold
I need to learn more....
@wintry sundial not sure? What koth was it?
I have no idea how to keep people out or close up the vulnerabilities
Carnage
15 mins in and the machine is now completely secure
I saw you had some a few commands running there in sleep
and my sessions kept dying every 5 seconds...
yea was that a script? or were you doing it manually?
either way, its against the rules
oh really? I thought it was legit?
@livid dagger Hover over the box next to the flag submission field
@wintry sundial You're allowed to kill sessions
@wintry sundial I did not.
that's fine. now that i know its ok, ill have a script ready
Would that not be a script that hardens the machine? ๐ค
that's how I saw it
You are allowed to kill sessions, that's all I've said
That's all I will say on it.
IMO, the idea should be to capture all flags... the first to do so wins.
It was just a question, that's all I will say on it ๐
thanks @quiet schooner
I asked because most of them have more than 2 flags and I thought they might have disappeared
@wintry sundial The goal of KoTH is attack and defend. Maintain root access.
@livid dagger Spacejam was the first KoTH box ever made
oh I see ^
Later boxes have more flags, the guidance was 8-10 IIRC
no problem at all, I saw it as get all flags, get root without interfering other players
but i see that is not the case, so i will be ready for the next one
scripting=automation
it does not have to be a file to be a script
and the shell env is irrelevant
but what do i know ๐
lol
Scripts that automatically hack and/or harden the machine are forbidden
not sure how this line is to be interpreted
yes, and I don't have that
geez! I don't even know how you could create a script to automatically hack the machine!
are things like sqlmap not allowed or is it just a COMPLETE auto hacking tool that is forbidden
I was referring to the 2nd part of the sentence
t.c
Scripts that automatically hack and/or harden the machine are forbidden
@wintry sundial no autopwns
@orchid furnace You're allowed to use tools, just don't write a script to hack the box
Like, I have a script that will root hackers in under a minute. That's very against the rules
@nova tide I made the box, dynamic passwords make it a pain to test
I can root it in under 30s without a script anyway
@nova tide I made the box, dynamic passwords make it a pain to test
@quiet schooner i know ๐ you mentioned it before
while true; do who | awk '!/root/{ cmd="$(which pkill) -KILL -u " $1; system(cmd)}'; sleep 5; done is this allowed?
just had a fun game with H.Dekisugi ๐
I didnt have the knowledge to patch the ways in ... so it was just shell bashing for 40 mins...
i need some mentoring!!!
how do i see what pts the other logins are using?
In my opinion, the best way to learn how, is doing private challenges with friends or whoever wants to do it with ya'
you deleted the damn /home/usrers joker!?
erm, what?
no?
box reset
maybe that's why there are no contents? But I swear that I did not break the rules
I've never done so
shocking that 20 seconds into the box going live, the root id_rsa key doesn't work either and the user password is reset
lol
20 seconds from spawn and its 75% patched. no matter how fast you type bud, you aren't that fast
kudos on your win
(Small reminder: Logs are kept of these matches -- if you suspect someone is cheating, email koth@tryhackme.com. It can be investigated ๐)
@fair adder if you really suspect me, find the logs and report me. But again, I have NOT cheated at all whatsoever
that's not the way you learn nor is it fun
also, find the logs like @terse willow said
i don't care enough to try and find logs on a machine i can't connect to anymore nor do i care enough to write an email. as i said, kudos on your win
I don't understand why people quit looking for other ways to get in! Me for example I always leave an open door so whoever finds it, we can have fun trying to be king
wooooow.... people
so you reset the box and don't do anything. noice!
well, that one was fun
especially at the end ๐
Vulns, initial access vectors or privescs?
There's at least 3 initial access and at least 3 privecs
That makes 6 vulnerabilities
ohhh
ok
whats their definition of auto defense scripts
ive seen people on youtube do stuff like have a bash loop to echo their name into king.txt
is that allowed?
Read the rules carefully.
oof lemme check
oh what
It is allowed
I mean, the rules state much more than that.
The machine should not be made unavailable (shutdown, firewall rules to stop all communication, all services terminated, machine botching etc..)
Only stop a service if it can't be patched any other way. Services should remain available for "genuine users of the box" if at all possible.
No modifying/removing flags
Do not attack, modify or stop the service on 9999
Any sort of DoS against the machine
No attacking other users
Scripts that automatically hack and/or harden the machine are forbidden
Games are moderated, and failure to abide by the rules will result in a game and/or site ban.```
Damn! That's going to be fun to do in a koth game...
doesnt mention anything else here tho
other than the usual
dont dos the box
etc
ye
DoS, closing services are the ones that get people.
ohh
but it says
only stop a service if it cant be patched any other way
so we can close services?
if they cant be patched
ohh
You can restart the service to apply a patch just fine
ohh

