#koth
1 messages ยท Page 43 of 1
Have you read the rules koth rules? @vocal shell
His every sentance says otherwise @quiet schooner
id like to try out sshpry it seems fun
um
Not in KoTH.
You can patch it.
Patch MySQL
You're in the KoTH channel
ยฏ\_(ใ)_/ยฏ
That's if it's set up incorrectly
What's that?
Cyber Defense Competition
No but I mean like things can be applied from both KoTH and CDC
i now have a moral dilemma against fish shell
i dont know whether to use it or not im scared
Anyways ok I have to go
yea sure it looked cool
I'll KoTH up later
Cya!
i now have a moral dilemma against fish shell
@dusty canyon once you set it up correctly, it's very time saving and useful.
"user friendly" they say
yea i guess
i kinda use guake rn cuz its easier ima use it with fish
be warned, fish does not support one liners a lot.
um what
It's got its own small changes in syntax.
Like while and for loops.
Read on it, you'll know.
uh ohhh stinkyy
lmao ight cool cool
hi
Hello!
Hye
Hey
Joined ๐
@potent oyster are you on the koth above??
@boreal flare did you try the box above ^ ;))
With what
Uhhh ill leave this for the KOTH players to explain
You should just check pinned msgs, @hasty quest
@stiff egret thanks
:))
@stiff egret hop on this
if you like
You really want me to join?
Alright :))

hey mr holmes
Sure shoot!
yesterday you said that you would've been on a different level if you had thm earlier
so if u dont mind answering where did you start?
so if u dont mind answering where did you start?
@boreal flare um linux privesc I think
OK NAH IMA LEAVE @stiff egret
@vocal shell sed
sad!
I booted up my VM for you!
sad!
@boreal flare um linux privesc I think
@stiff egret ahh..
NEXT TIME
anyhoo, now that it's running, I'll play some anyway
I
@boreal flare did you try the box above ^ ;))
@vocal shell nahh dude..was just spectating
ping me if someone is playing koth (except holmes/myDonut)
i had my mid terms since this morning and people were playing and spamming invites after every 30 minutes.. and now i'm free where all those guys went? 
ping me if someone is playing koth (
except holmes/myDonut)
@nova tide its official, we 3 avoid each other
i had my mid terms since this morning and people were playing and spamming invites after every 30 minutes.. and now i'm free where all those guys went?
@nova tide bery sed
myDonut don't.. he have asked me everytime he plays.. but i don't want to reveal my secret techniques that i have gathered after losing that many matches against him yet 
waiting for a big moment
I can play against him anytime he wants. coz i am free now, from exams.. pretty sure i know all of his techniques and got counters for each except rootkit.. but now even have a method to get around that as well ๐คซ
Everyone who play Koth check #641405480547385354 plz 
Upvote/Downvote your choice but vote 
Finally its in there
๐
paste the link instead of sending a pic
really unlikely someone will type the link letter by letter
3 mins to join
anyone up for KOTH
yeah?
eh
def

Hop in guys!
7mins to go
uh uh @nova tide
if someone beats one of use then he probably have beaten both of us?
๐ค
guys how u doin'?
this tryhackme platform is damn amazing
thank u guys
thank u sooo much for ur great job
F
Not kidding
ok
He was playing just now, so I tagged him
ok ok

hello, i would like to play a koth, its my first time on it, somebody that would like to play ??
lol
f : Uh-oh! Only intermediate and advanced experienced leveled users can play King of the Hill.
whyyy!!
@stiff egret which level should i have to play it ?
You can change that in your profile
profile -> about you
Yea I would like to do on too some day THOUGH right now I'm noob. That's the only problem i see.
so we doin da koth or na
๐ You in Arch Gang?
Verified, welcome to the gang.
thanks kind sir
(if that was not sarcasm/joke) no need of sir
Is that pfetch ?
Invitation Link
https://tryhackme.com/games/koth/join/4560ef127bca752500bcb93e
Spectator Link
https://tryhackme.com/games/koth/10021
starts in one hour
anyone can join regardless of skill level
Why private?
to set the one hour time
yes @tepid hornet
lets do a koth
@west sky
When i get home
@dusty canyon
Yea I would like to do on too some day THOUGH right now I'm noob. That's the only problem i see.
@acoustic rover
wanna join?
wanna get in voice?
no
don't have any device for input
ah ok
Why is port 65432 open and googling it gives me info that its a trojan????
homie got a backdoor
ah ok
yea i fucking quit this shit. its just too hard
i have no clue
shrek just getting me more upset
they are exactly my rank and just got 250 points
thats just hilarious
i got exactly 0
i found a priv key
rank means nothing
theres that one port open called abyss
but researching it shows me some exploit tho nothing even slightly usefull
theres a file upload
there's some ports in KOTH that are just endless holes
i uploaded a reverse shell but i dont even know where it drops
thats a step, next step would be figure out where it went
Or just attack another service/port/vuln
yea. and i looked and looked and looked
i used gobuster. no chance to find any upload folder
thats the hacker job.... infinite research ๐
yea. but theres nowhere to drop in
i dont even want to anymore
you got persist man!
im sitting here for fucking an hour trying to find anything and finish the koth with 0 points
thats just so demotivating
I know you can get pissed, and frustated.... but thats what it is
you gotta love the PROCESS not the results.
Because most of the times you simply wont hack things ๐
i found this NzM2ODcyNjU2bzY5NzM2MTZzNnI2OTZzNnI= but i dont even know what it is. i suspected base64 but that just gives me some weird string which doesnt work ass passwords, nor anything else
What do i have the process for if i dont have a result??
the process make you more experienced....
i would be ok with just finding ONE flag
you can discover a new tech...technique....
but hell no
man, i've done like 20 koths and won like 3....
in 10 of that I did not find anything. but thats Ok
reading the comment <!-- shrek is like an onion --> just gets me so upset
yea ok. but i found alot of shit though nothing is of use
i got a priv key. what did i use it for? nothing cuz thres nothing to use it
I recommend you taking a little break ๐
Hey people! Seems like I missed the game!
bye man, good luck, peace
Anyone up for a Koth?
Me!
Lets do it bruh
This one is interesting...
theres that one port open called abyss
@acoustic rover that would surely be 9999 port running the king service.. if you look at the rules no exploiting that one.
Though it was running abyss something. That's what it told me.
@hallow torrent you joined me
๐ I'm not that great
Im in VC if you wanna join ๐
Invitation Link
https://tryhackme.com/games/koth/join/811aeb629946212de82c4e2f
Spectator Link
https://tryhackme.com/games/koth/10047
anyone can join regardless of ur skill level
Im really struggling getting into koth and I really want to but im struggling
Im in VC if you wanna join ๐
@chilly sandal i dont have a n input device
whoo are u talking to?
lol
wannaa joinn /?
in koth
ok
Anyone have any tips
for?
send the link thm isn't showing that the game is open
Or maybe have a koth team I can join to maybe learn some?
?
i mean the link lol
Or maybe have a koth team I can join to maybe learn some?
@vast perch search internet for koth
walk-throughs
Oh maybe thats not a bad idea
It's not abyss.
me neither
i haven't played "hackers" machine before
It has writeups
But 9999 on all KoTH boxes is the KoTH service which is out of scope.
ok
It's also open source.
It has writeups
@quiet schooner where?
I'm not playing.
lol
i don't have experience with hydraa
ok
wwhat?
ok
try ur best kid
ok np
i will reset then
done
ll
lol
it needs time to start
r u in?
what happen to hydra?
i m talking bout u
r u in?
no i wont
just askingg
lol
no iam nt
i nmapng for other way in
except hydra
ok
got sudo?
11 min left
wwhat>?/
login as anonymouse
ohh
i got thiss
Skiddies keep out.
Any unauthorised access will be forwarded straight to Richard McGill FBI and you WILL be arrested.
- plague
lol
yeaa
lol
1 min left
lol
now it looks like i lost xD
new game in 5 minutes
Aug if you can we're in VC
i dont have an input device
soz
@hallow torrent join da koth
1 min left
i made it private so it'd load faster
got it
anyone make progrss ๐
yessir
with ssh to fortune?
hmm??
still 49 mins left
not unless you did
no he just joined
i'm in the game
you changed the ssh key!? bully
Anyone maybe wanna walk through a koth with me sometime? Im pretty beginner and kinda want some help learning
i didnt change the ssh key!
hmm
im on
i havent patched
i dont wanna patch
๐
ouch
whoever /dev/urandom'd me
I had to I'm sorry
must've felt good
did you change the password
maybe
me that time bully kicking me out of foruna
why are you like this
bro i didn't do shit
if it resets again
who tf is resetting the box
i stg
IT TAKES 2 PEOPLE
it's REALLY ANNOYING
10 TIMES AT LEAST
YOU RESET
LMAO
bro i'm not doing anything
dont fucking reset because you got kicked out
THIS SHOULD BE A FUCKING RULE
IM DONE
WITH YOU
WOW
RESETS AT LEAST 12 TIMES IN ONE GAME
go get your win
idgaf
Yikes
Mars? Is going on here?
Well that isn't what I wrote at all.
Whats going on here?
Someone got salty because of constant resetting in a koth match
Oh. So what does koth mean?
King of the hill.
Umm why don't you give koth page a read?
@grand ember how would you feel if someone reset 10+ times in one game? Once every time the machine boots? By 1:30 minute you get a new box
i was really mad
I'm not saying you're wrong, i would be salty too
smh. You step out of 6 hours. Jesus.
@vocal shell @lusty crown watch your language. You must have seen reminders that this is PG13 -- that string of profanities is totally inappropriate.
@chilly sandal adding you in here too:
Getting kicked out, or failing to get into the machine, is not a valid reason to reset the box. I don't know which of you was voting for it, but it sounds very much like you were instigating it, angelic. That is a rule that's been added in the development site, but has yet to be pushed to the production site that everyone sees. As it is, that kind of resetting I would argue does partially come under rule 5 related to DOSing the thing ๐คทโโ๏ธ
The aim of the game is to be realistic. Changing SSH keys and passwords are fine. Kicking people out when you notice them is fine. TTY spamming is a low blow. Resetting is moronic. If you can't play properly, don't play at all. If you can't play calmly don't play at all. That goes for the lot of you.
@lusty portal any chance of getting that rule update pushed at some point? ๐
I apologize @terse willow I was frustrated at the time and I used vulgar language. It will not happen again
Thank you ๐
there should actually be a new feature where we get to know who clicked the reset button!
okay
thank you @full grove
welcc
THIS SHOULD BE A FUCKING RULE
@vocal shell it will be in the next update:
Reset the box only if its broken not when its patched.
Also check #641405480547385354 to upvote/downvote some of the ideas about KoTH
there should actually be a new feature where we get to know who clicked the reset button!
People are thinking/fighting over stuff that i fought for weeks ago ๐๐
Gib new rules
I should get into KoTH
This is the best time jabba!!!
@terse willow I stated that I never instigated it I only clicked reset when I borked something like no one being able to get to root. When I clicked reset it was for a valid reason and only when another had already voted to reset. I never reset JUST because I got knocked off the box as their are other ways in
@chilly sandal Are you in the current koth room with me?
yes lol and I'm stuck ๐ IDK where to go from here
@west heath
I got the rsa but it needs a pass IDK
Why? @west heath
no password required, make sure your permissions are correct 600 and you are using the -i option
hmm I did ssh -i id_rsa Ashu@$IP and I made sure chmod +600 id_rsa so idk
Unix usernames are always lowercase
Someone changed the sshkeys then. @chilly sandal
not I
ah I figured someone had to ๐
hmm oh well my vm hates me then
try ./id_rsa
bad perms still wants pass and id_rsa would say the same


Im in but I can't do nothing now ๐
ยฏ\_(ใ)_/ยฏ
You're in
KoTH boxes are easier to solve than normal ones. Because they are made in such a way that they are solvable in less than 1 hour.
Start poking around. What can this user do?
ashu I can't do much apparently
Who else is a user
there's always a method to privesc ยฏ\_(ใ)_/ยฏ
I see I just cant spell for crap

@west heath I appreciate all the help you gave me for that box. I didn't realize I had capitalized Ashu by mistake. and fighting you for king was entertaining ๐
cronjobs for the win
ah see IDk cronjobs but I was trying to do a while loop for chattr and echoing
More things to learn. Luckily you are in the right place to do so. THM is an awesome platform to develop your skill set
haha, well look at that
how unfortunate for me ๐
nah its a good learning experience and thats what I came here for
I keep getting the "Production" room, If I do, I will bounce. Really hoping for "Offline" to try some Windows hacking
I can manage with linux boxes but Windows IDK if I can do that
Just another learning opportunity
Nah, basic ubuntu. I have just acquired all of the tools I needed as I've gone along.
same
Kali is cool and all, but it is for those who know their tools already. Like I said, THM is a great place to learn those tools and then adopt kali when you are ready
I love arch so I may move to black arch or just arch with black arch tools
there you go
my first linux distro I used was ubuntu for reinstalling windows then I really dove into it when I had a friend convince me to try Arch and I fell in love with it
Nice! I've tried mint, fedora, kali, and centos. For me, ubuntu just feels natural. Just my opinion though
it does feel natural I can totally agree with you on that one!
its just so much simpler to install than arch too. Arch I gotta do everything myself which is fun when I'm not feeling lazy ๐
and I don't have metasploit fun
I got it just in time ๐
you don't use or don't have metasploit?
I didn't have it I forgot to grab it
gotcha, it is useful, but knda defeats the purpose of learning how to hack if you are using an automated tool
true but learning to use tools can speed up the process. I am interested in trying to do it without metasploit
is your ubuntu the host or guest? I have a vm so
next question is does core count increase the speed of some of the stuff we have to do?
I've upgraded it to host from windows 7. (old computer from yesteryear), although vms are very handy for trying out different distros
it can. especially for brute forcing and john the ripper / hashcat challenges
Today i had a dream that there are new KoTH rules and KoTH networks ๐ฅบ
bery bery sed
anyone in for koth?
count me in
Can't play now :( gonna sleep now, its 4AM here
๐ฆ mb tmr
maybe :)
if anyone wanna play koth with me, it starts in 3 minutes
sr i was late
Anyone wanna walk through a koth later tonight
Im trying to learn some and want to know if anyone wants to teach a bit
@vast perch i'm in if you want but in like 3 hours cs i have to study
20 min as of now
anyone around for koth
anyone wanna do koth
yeaa
y am i getting this everytime i connect to ssh?
someone was playing with bashrc i presume
someone made recovery 2 
xD
y am i getting this everytime i connect to ssh?
@hallow torrent
I was all caught in nmap scans
never found other ports till 15 min before end
plus nostromo exploit got patched
that was the only thing I was able to find and that also got closed within seconds

nostrom sn't patchhed
connection closed that was the error I was getting
but it was working a min before that
umm...can anyone help me..i have a situation...
how can i privesc from here ?
what am i doing wrong ?
Try check GTFO bins on how to escalate
how can i privesc from here ?
@boreal flare try entering full path:
sudo /bin/nano /home/gcrawford/bussiness.txt
tried that too
but it somehow downgraded my shell
this happened after executing that
Anyone up for a koth bois?
@ruby arch i join
Lets do it marco
yes
I am not even playing rn ๐ sorry guys i had to go out will be home by next game
no i am GragTung
Hahaha
my kali crashed it was good game tho
Did the patch the machine up?
Thats good haha
Just booted my VM up
Last 8mins remaining
@ruby arch join thelast one
cant ping machine
nice
@raven halo can u ping
i cant ping
how can u use the box lmao @raven halo
how did u get chattr on the box
dude if i could ping this box
gg no re
can u reset??
lhttps://tryhackme.com/games/koth/10137
5 minutes
which machine?
its random
@nova tide
You do realize that you are sharing spectator links not invite links?
oops
I'm going to sleep. will play later maybe
yeah loser
WOW
Cant get in, someone changed the password or even delete the .ssh lol
no one did that
i did not do that
thats happening to my user as well
someones root rn
gotta be another way in ๐ฆ
Nope, not at all. SSH fortuna didnt work even after resetts
||i tried creating a user for persistence || and even that didnt work for ssh
yeah. its a difficult box to get other footholds, I was trying other avenues. Website could be a possibility.. ๐ฆ
starts in 3 minutes
i'm in
amjazing wow
if you can't ssh in
it's because i changed your shells
ssh is still up
This account is currently not available. is what you'll get
Ill find another way grr lol
if you can get in
i'll give you a cookie
i think someone is in
oMFG
nvm that was me
@raven halo
do you want a user shell
im so confident that you will not be able to priv esc
wordpress is down lol
i didnt touch ๐ฎ
down for me too
make sure its in your /etc/hosts
panda.thm
@raven halo shifu:bxN6DiMHXtmEnKbtUd3B4yLm0OMfAKXA9y4yJeN4HZMZc/7aB/fzJenxEBAS+ASFkXD3NYyCsbiOYhskMGk+0VScMlKKPe8YBUbCWuZDWE8fJmkaodnnkMUXYmHoXmsJ89LHoSrJzSnAzFMs4Vm5GFIPeVw5BIm2wfJKVXgzjQZIXo7Oz0AhMFAsowte2uhgHUWr64bXzLZDv4e0pmwzIK8W1WBm/wRE73P0Pkb6YA2mICBAiMkLW7HVjt9xvFhTMOuy
shifu's creds
really!1
just ssh in
I DONT KNOW LOL I THOUGHT
someone was logging in as po
and i killed the process
ok for now just ssh in as shifu with those creds
good luck priv escing! ๐
is that the id_rsa
wow
wait I DIDNT
WHERE
WHERE
show meh
i didnt create any flags
i did my best to restrict access ;))
i know, im running linpeas on the mainframe
you're amazing
im giving up, i know there isnt much I can do
also u can ssh in
GG
thank you ๐
i haven't touched wordpress
maybe you can get in via there upload a reverse shell
I cant get in at all
you can definitely get flags tho
I need to learn how to tighten evenything up like you
๐
restrict access in linux etc. really cool - is there anywhere I can read up on these sort of things?
CIS benchmarks, DISA STIG, blogs, youtube, twitter
Ok
i know more defense than offense i'm a blue teamer
i just learned "hacking" like 3 weeks ago maybe
Im thinking more of quick cheatsheet?
Blue Team Field Manual filetype:pdf
no it's not
i actually discovered it like 2 years after
it has useful information
definitely go look at that
Thanks - GG man, im off see ya
byee
how to patch windows/smb/ms17_010_psexec
Google it
i did @nova tide i couldnt find anything


@vocal shell you can download hotfixes and install manually iirc
Someone for KoTH
Go find the hotfix for MS17_010, download it, then just use it on Offline
thank you! any articles?
Wanna play a koth anyone?
Ping me if anyone plays !

๐
Join this one too...well you can handle multiple boxes at once....
if you want to that is...
Joined ๐

i should've kept quiet...lmao
LOL
our game would've been over in 20 secs regardless of box
either him or me ๐คทโโ๏ธ
xD

i'm so bad with these php rev shells
our game would've been over in 20 secs regardless of box
or both running for king
or both running for king
@nova tide we would've patched and kicked
why the hell is sudoers file empty
why the hell is sudoers file empty
@boreal flare **!**me
sorry..?
not me
I don't even remember which game I am in
-bash: ls: No such file or directory
which box is it?
shrek
ยฏ_(ใ)_/ยฏ

mr naughty if you dont mind sharing how'd you do that ?
even pwncat wasn't working
had no options
well naughty seems to be playing with me
@boreal flare well i wasn't playing until someone killed my shell
-bash: ls: No such file or directory
@hallow torrent you are in my game?
๐ sorry about that.... did you cat my shell?
i was trying to modify sudoers
and each f'in time someone would cat my shell
who knows?
you mean this?
echo -n "I" > /dev/pts/1;sleep 2;echo -n " am" > /dev/pts/1;sleep 2;echo -n " in" > /dev/pts/1;sleep 2;echo -n " your" > /dev/pts/1; sleep 2; echo -n " shell" > /dev/pts/1;
??
how were all my shell showing nyancat?
@hallow torrent you are in my game?
@nova tide yaaaa
idk why you are facing that ls issue
there is an ss above
ok
i thought that was you
@boreal flare that was me
@nova tide thats wht i was asking..can you share how'd you do that?
get the nyancat binary.. parrot would be cool too
can NyanCat doo ths?
-bash: ls: No such file or directory
and then do this:
nyancat > /dev/pts/<tty of the victim here>
@boreal flare you changed ls ?
nope not me!
someone added an alias for that
still working fine for me ๐คทโโ๏ธ
how do you find out the tty?
Still 6 mins left to start
how do you find out the tty?
@JonasM#1199ps aux | grep ptsorwfor your's dotty
ps aux | grep pts
ty
https://tryhackme.com/games/koth/join/269866e6014e947fd475deff
@nova tide @boreal flare
imma play some siege with friends now
ok
I'll join after this game
ok
how do i gget in carnage |?
there was a thing for that
i forgot the name
that was


(JK)
carnage is easy
finding creds is easy when you know the method
whats the methode/?
That's where it comes in handy
i amm bruteforing ssh with hydra
Don't do that
check the available ports
try checking while file you can upload?
or what you can do to login without password?
google pentest monkey reverse shell
or github
I get mine from github
would dixs be ok?
Pentest monkey seems to give warnings before proceeding no idea what happened to it
I dont get any errors using pentest monkey stuff
Google flagged the site because hacking tools
lol
so do See Details and click ignore
well it contains reverse shells..
some windows antiviruses got triggered on a pdf with shell examples
@flint oriole In fairness, have you seen the tantrum Windows Defender throws if it finds a Kali ISO?
:> lmao no
It's uh, amusing
Interesting, doesn't pick them up here
Odd. Thing almost gave me a heart attack when it started doing it with me and found 500 odd bits of malware that had suddenly infected my PC ๐
Until I noticed that the file paths for all of them were directly to the Kali ISO
https://tryhackme.com/games/koth/join/1514aec9184b656f1401e7e3
i am complete beginner ๐ 2 time koth
Have you guys had an issue where you are root. Echo your name in king.txt but it doesnt update the leader board?
I've had this happen to me twice already
I've reset the box as well
Is this a bug?
Yeah..it happened with me too..
Um. The King service reads the file every minute. You need to be king for 60 seconds to get your name in there.
Sometimes, the king.txt gets broken, but that should get fixed after reset.
maybe creating a cron job to write username > king.txt doesnt update?
every minute**
probably why, yeah?
would deleting the king.txt and creating it again fix the issue?
It might. Unless some other player got some loops running.
Yesterday my name was in king file for the whole game but I had no king time
Iirc you have to execute some binary after putting your name in king file.
ive done that as well
I've also restarted the service manually and restarted it, nothing
just tested this now
:S
Have you guys had an issue where you are root. Echo your name in king.txt but it doesnt update the leader board?
@raven halo
yeah
i am having this bug
@sterile viper Yeah sucks man, not sure how to fix it - I tried to restart the service as well as running the binary
Is there someone we can talk to, to fix it
yeah moderator maybe
@sterile viper Yeah sucks man, not sure how to fix it - I tried to restart the service as well as running the binary
@raven halo 1. You are not supposed to toggle with the King service. That is out of scope.
- As far as I know, I believe that someone in the game borked the king.txt file. And hence there must be some deadlock on it, because of which King service was not able to read it.
Iirc you have to execute some binary after putting your name in king file.
@runic quail No, you don't have to do anything like that, simply adding your name to king.txt is all you need.
- As far as I know, I believe that someone in the game borked the king.txt file. And hence there must be some deadlock on it, because of which King service was not able to read it.
@stiff egret
naaa
file is good
checked everything
Yeaaa, because you can't "see" deadlocks.
there must be a bug with king service
As much as I know, There is not.
You can read the code if you like.
It's a public repo by James.
so how do you fix it? Ive been in a couple of games that happened like this
tbh, im only on try hack me for the koth, no other places have it as far as i know
You simply reset. (In worst case senario.)
I've reset, still doesnt work - then what?
tbh, im only on try hack me for the koth, no other places have it as far as i know
@raven halo I am playing it from the time it was released and no, there is no such bug. Or if there is, then I don't know how I didn't encounter it.
I've reset, still doesnt work - then what?
@raven halo Think about it, reset is the nuclear option, if that doesn't work then you are doing something wrong.
ok Thanks
Think about it like this, you have a phone, you can't get signal,
Reset is like buying a new phone.
If you can't get signal after reset then that means something is wrong from your side.
Thanks man, i got it the first time lol
Thanks man, i got it the first time lol
@raven halo ๐๐
Is port 9999/the king service runnig?
Also, ensure that there's no whitespace after your username like when you press the spacebar, etc
yes it is running.....and im echoing into the file so no scope for a space
same for the other guy with me
Are you lostayush by any chance?
Mhm I'm not sure, it might be worth voting to reset - It looks like you've got a username in the king file okay
the match is saying no one's been king yet
The machine's already been reset for 2 times

