#koth

1 messages ยท Page 47 of 1

stiff egret
#

hol on, I am about to submit a root flag

tepid hornet
#

Is it what I think it is

stiff egret
#

just gotta hash it

#

!rank

pearl gladeBOT
#
TryHackMe
Rank

Mining Bitcoin...

Username:

holmes

Rank:

85

Points:

30409

Subscribed?

No!

tepid hornet
#

Hash it constipation ?

stiff egret
#

yee boi

tepid hornet
#

!rank

pearl gladeBOT
#
TryHackMe
Rank

tabs or spaces?

Username:

quantumwolf

Rank:

29

Points:

38152

Subscribed?

Yes!

stiff egret
#

Quant, once I start mal analysis, you are done

nova tide
tepid hornet
#

Just 56 more to go

stiff egret
#

the only huge boxes remaining now are the ones of mal analysis

tepid hornet
#

I'm scared

stiff egret
#

you should be

#

also, we should move to general before Ninja bans me

tepid hornet
#

I will always remember how you mislead me with Binex

stiff egret
#

bye

#

I swear it was so dang heavy when I had sub,

little nebula
sharp ether
#

!rank

quiet schooner
stiff egret
#

Anyone playing koth?

fathom flame
#

Need help with the hogwarts box

stiff egret
#

Need help with the hogwarts box
@fathom flame Depends on what you need help with. Go ahead, just mark spoilers with " ||"

fathom flame
#

I wasnt able to solve it. Need some directions

#

All I was able to get was the base64 text from Site

stiff egret
#

That is not something I can help with, the box is still new, plus KoTH boxes are meant to be a challenge.

#

I can just say that enumerate harder. Try tools like rustscan.

fathom flame
#

Right. Understood. Thanks!

stiff egret
#

:)

dusky berry
#

Join in , if anyone's playing

dusky berry
#

GG

turbid narwhal
#

What are koth boxes??

stiff egret
turbid narwhal
#

Sounds interesting

cerulean maple
#

Anyone doing Hogwarts ?

sullen parrot
mellow lodge
#

anyone here for play

gentle hatch
#

im down

mellow lodge
#

im down
@gentle hatch !down

#

im down
@gentle hatch you are in

gentle hatch
#

๐Ÿ‘

#

glhf

mellow lodge
#

๐Ÿ‘
@gentle hatch glhf = ?

gentle hatch
#

sorry, that means "good luck and have fun"

mellow lodge
#

sorry, that means "good luck and have fun"
@gentle hatch np i learned that ..

sullen parrot
#

ill come back again in an hour, lets gather people

gentle hatch
#

ill prob be down to run it back after, i have a lot of spare time today, want me to ping you when this is done? @sullen parrot

cerulean maple
#

@mellow lodge Man you have came earlier I was playing KoTH xD

mellow lodge
#

@mellow lodge Man you have came earlier I was playing KoTH xD
@cerulean maple sorry bro .. my friend told me that this is new and hard so i am trying

cerulean maple
#

No worries next time for sure we'll play

#

Yeah keep trying

mellow lodge
#

No worries next time for sure we'll play
@cerulean maple very hard i think

sullen parrot
#

ping me anytime, ill try to join

gentle hatch
#

GG!

#

that's a fun box

#

if i had a little more time i was just onto something :/

sullen parrot
#

Im available now btw, anyone online?

stiff egret
#

I can join if it's not hogwarts. :)

nova tide
#

You're not supposed to join if it's Hogwarts

stiff egret
nova tide
#

Hogwarts sucks. That's why you don't play it ๐Ÿคฃ

stiff egret
#

You want me to join in on Hogwarts?

#

I'll play against you

nova tide
#

rn out with all the class. Last day of studying training so out to eat together. From today i will start trying hard properly blobknife

#

(when i wake up in the morning)

quiet schooner
#

@stiff egret Can I DM RE your koth repo?

stiff egret
#

Sure ๐Ÿ‘€

nova tide
#

I'll play against you
@stiff egret give me a couple of days. Then you are welcome to

stiff egret
#

Against Hogwarts?

#

You have officially lost it

nova tide
#

I said just a few days then i will beat you for sure. In your own machine blobknife

#

Someone unpinned my message ๐Ÿฅบ

quiet schooner
#

Wasn't me

nova tide
#

||Bee||

stiff egret
#

I said just a few days then i will beat you for sure. In your own machine blobknife
@nova tide you...

can't...

rotund topaz
#

no way

#

lads lads lads

#

KoTH Staff

stiff egret
nova tide
#

You're late for lots of stuff

nova tide
#

(oh also fixed the sentence above...)

#

was on phone

sullen parrot
nova tide
#

@sullen parrot that's a spectator link btw

sullen parrot
#

yeah my bad

#

was in a hurry since it almost started

nova tide
#

you can still share the invite link though

#

people can join if they had like

gentle hatch
#

im down to play

sullen parrot
#

didnt know that

#

just started

#

ty!

nova tide
#

It's space jam if anyone wants to join them ^

sullen parrot
#

first time trying koth, thanks for joining

sly turret
#

in 5

sly turret
#

Droogy you killing my shell everz time ๐Ÿ˜„

gentle hatch
#

โค๏ธ

#

did you add yourself to authorized keys?

#

gg guys that was fun!

sly turret
#

gg

sullen parrot
#

gg!!

sly turret
#

no

#

3 time Koth need to learn some tricks

sullen parrot
#

just got in track, got alex user the key to the whole thing XD

#

fun af

sly turret
#

yeah i got in thro alex

gentle hatch
#

ahh okay i got in thru gloria

sullen parrot
#

didnt notice apache2 was executed by alex, was gloria all the time

gentle hatch
#

yeah i didnt get a shell there but glorias .ssh folder was writable to i added myself to authorized_keys

sly turret
#

aaaah

#

great didnt thought of this next time i will try it

gentle hatch
#

and at the end I made a user droogs that owned king.txt and the password for my user was 1234 lol for fairgame purposes

sullen parrot
#

any other root paths besides pip3?

gentle hatch
#

tmux but i closed that errant session after i priv-esc

sly turret
#

yeah :d i saw your ssh connectin ๐Ÿ˜„

sullen parrot
#

niice, lets do it again soon!

gentle hatch
#

yeah i dont play koth much you did good, will def learn more tricks as you play, gg again guys!

sly turret
#

tomorrow maybe dm/ping me if you want

sullen parrot
#

I will

#

gn guys, was fun!

sly turret
#

kk so gn8 guys and thx for the game

dusky berry
#

JOIN IN ๐Ÿ™‚

main nest
#

Hi never played Koth. Is it hard ?

dusky berry
#

Nope it's fun

fair adder
#

๐Ÿ˜‹

main nest
#

can I join u to test ?

dusky berry
#

Yes

#

It will be fun

main nest
#

ok just start my vm then ๐Ÿ™‚

fair adder
main nest
#

hmm don t seems like ican join

cerulean maple
#

Is the ssh running on Production ?

stiff egret
#

cult you playing KoTH?

flint cloud
#

Yes

stiff egret
#

that

#

s

#

new

flint cloud
#

lmao

cerulean maple
#

@dusky berry Have you changed paassword of ashu or am I doing something wrong ?

dusky berry
#

I changed it

cerulean maple
#

Looks like I lost xD

#

GG

fair adder
#

me too

Looks like I lost xD
@cerulean maple

cerulean maple
#

@fair adder xD

dusky berry
#

GG btw

nova tide
#

Looks like I lost xD
@cerulean maple try running "nmap" and check other ports

cerulean maple
#

@fair adder You can get the flag tho

fair adder
#

sure

#

i even got into root and he kick me out

cerulean maple
#

@nova tide Done that all I could find was a smb share from there I found the ssh key but since the password is change it's useless and can't find anything on the web page

fair adder
#

i was not fast enough

cerulean maple
#

@fair adder hmmm

nova tide
#

Check other ports

#

not the ones you already have

fair adder
#

Check other ports
@nova tide already done it and got in but its limited and i think it was close again

cerulean maple
#

@fair adder You didn't logged in through ssh ?

fair adder
#

no

cerulean maple
#

Okay I'll try to find a way in

fair adder
#

deep enumeration is good

main nest
#

dont even get in :/

nova tide
#

ooh i didn't knew @cerulean maple is from Pakistan animewave

cerulean maple
#

@nova tide Yup I'm from Pakistan xD

#

Where are you from ?

nova tide
#

Pakistan

cerulean maple
#

GG

fair adder
#

pakistanians ๐Ÿ‘

cerulean maple
cerulean maple
#

F

true needle
#

in Koth just password for skidy is not the only way

cerulean maple
#

@true needle Okay I'll look for more ๐Ÿ˜ฆ

#

@true needle There is a chattr binary but when ever I run it closes my connection xD

true needle
#

because that's what it does

#

its just named chattr

cerulean maple
#

So there isn't chattr binary in the machine ?

true needle
#

yeah

#

you need to get your's on the system

cerulean maple
#

Then how can we read the flag.txt in ashu's directory if we can't change the read bit ?

#

you need to get your's on the system
@true needle Oh

true needle
#

get root and read it. as its owned by root

fair adder
#

someone tried to edit the ||sudoers but he made a mistake and its not responding here||||

cerulean maple
#

@fair adder on production ?

fair adder
#

yeah @cerulean maple

true needle
#

its borked

fair adder
#

he destroyed the box and run away lol

true needle
#

???

#

who ran away?

#

not having sudoers file won't destroy the box

nova tide
fair adder
light breach
light breach
#

dang yall doing it to me like this while i am on stream lol thanks

nova tide
#

๐Ÿ‘€

stiff egret
#

oh

nova tide
#

@light breach give link blobknife

#

???

light breach
#

check it out

#

rule 14

stiff egret
#

?

light breach
#

ohhh

#

i thought he meant i couldnt stream

#

dying laughing.

stiff egret
#

oh lol

#

It is changing every second

light breach
#

Yall want to do another after?

stiff egret
#

Um.. ๐Ÿคทโ€โ™‚๏ธ I am up for game. But people doesn't like us in their games. @nova tide What say? Playing?

nova tide
#

sure why not

light breach
#

Lol i love it! Im learning

stiff egret
#

Cool.

light breach
stiff egret
#

(If Its hogwarts I can't play)

stiff egret
#

GG that was fun. @light breach @nova tide

#

:)

boreal flare
#

who won?

stiff egret
nova tide
#

holmes ofc

stiff egret
#

kekw

#

I was about the say the opposite

#

but eh

#

(Naughty that was single thread.)

nova tide
stiff egret
#

lmao that was

#

lol

#

17 king changes in both games

runic quail
#

๐Ÿ‘€

tranquil geyser
#

123

#

something to play?

fair adder
#

17 king changes in both games
@stiff egret ๐Ÿ‘€

#

koth > hogwarts anyone?

#

@silk needle

silk needle
#

my 1st koth

fair adder
#

ohk

silk needle
#

I can't use the mic but I'll listen out for your talking

fair adder
#

i dont even know where my mic is kekw

silk needle
#

I suppose you're hybr3d?

fair adder
#

yp

silk needle
#

I'd like to wait for more people

fair adder
#

alright paste the link here

silk needle
fair adder
silk needle
#

BTW how many terminals do you usually like to have on the box?

fair adder
#

as many as i can, i dont even have a sepecific number kekw

silk needle
#

I'd like to avoid while racing the king.txt...

fair adder
silk needle
#

I'm not even on the box yet how are you king...

fair adder
#

I'm not even on the box yet how are you king...
@silk needle lol

silk needle
#

can you give me a tip?

#

is something weird going on with your mic?...

fair adder
#

deep enumeration and and a red team methodology i think

can you give me a tip?
@silk needle

#

is something weird going on with your mic?...
@silk needle trying to fix it

silk needle
#

yeah I'm a newbie at ctf...

fair adder
#

ohk

silk needle
#

can you hint me at what service you used to get on?

fair adder
#

is better to find it by urself but here is nmap and gobuster wit a good dir wordlist they can help

silk needle
#

80,5000, or 8080?

#

my gobuster isn't getting much at all

#

It's pretty much over can you tell me the url you used?

#

OK it's over and I still couldn't get on the box...

#

Can you share what you did?

boreal flare
light breach
sullen parrot
fair adder
#

I missed the koths lol

#

Let replay it again before I run away again kekw

boreal flare
#

can i have the spectator link ?

sullen parrot
#

sry ill send the next one, i logged in with a friend to introduce him and guide him a little but we were soooo unlucky we got the windows box which i have little experience XD

#

wp for this one (offline), ill study the writeups

#

till then

#

starts in 10

dusky berry
#

Fight blobknife

sly turret
dusky berry
#

Anyone??

fair adder
#

gys reset the VM plz

dusky berry
#

lol reset

#

GG guys

swift fossil
#

Hoin

#

guyz

raven halo
#

anyone wanna play koth

silk needle
#

Can we have a team-based koth on the weekends for noobs? I wanna play but I'm not too good with webapps so far.

nova tide
#

Friendly KoTH on weekends sounds good ๐Ÿค”

strange pewter
#

koth someone/

#

?

sullen parrot
#

might join you all later!

dusky berry
#

Join in guyss blobknife

boreal flare
#

No blobknife

dusky berry
#

imsumficiemt plamyerms

boreal flare
#

What's your obsession with "m"'s

dusky berry
#

cheems slamg

tawdry ruin
#

anyone wanna play koth

muted forge
#

i can come

dusky berry
#

Hop in guys !!

light breach
#

15 mins out

fair adder
#

What's your obsession with "m"'s
@boreal flare speemch impedimemt

#

cheems

sudden condor
#

Anyone up for a game?

#

Oh what happened? I can't find it

#

@tepid berry hey mate

tepid berry
#

@tepid berry hey mate
@sudden condor hi

fair adder
tepid berry
wind oar
dusky berry
#

@wind oar Up for a match?

wind oar
#

Wait 5 minutes and Iโ€™ll go

dusky berry
#

Let me make a 10 min link then

#

Here , Join in , Hoping a great Match

wind oar
#

@dusky berry t I'm in

dusky berry
#

yeahh

fair adder
#

Friendly KoTH on weekends sounds good ๐Ÿค”
@nova tide that a good idea though

wind oar
#

@dusky berry that was interesting. Thanks

dusky berry
#

GG Man Learnt a lot !!

quaint flame
#

koth anyone?

barren stream
#

<@&756155733468512386> Can y'all run a KoTH tournament? ๐Ÿฅบ

fair adder
#

anyone for koth??

stark fox
#

It's hard to be <@&756155733468512386> ๐Ÿ‘€

terse willow
#

You missed a trick there @stark fox

#

It's hard to be <@&756155733468512386>*

#

There we go ๐Ÿ˜

stiff egret
#

Muirlllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllll

stark fox
#

Oh done

#

Thanks Muir blobheart

stiff egret
#

I am noting this down, I'll come for ya

terse willow
#

I thought you had <@&756155733468512386> role mentions switched off Holmes? ๐Ÿ˜

stark fox
#

<@&756155733468512386> are nice

stiff egret
#
The curse of Holmes on Arg that any KoTH game he plays, He'll get nyancated every. single. time. ```
stark fox
#

What kind of curse is that

stiff egret
#

Get used to it

stark fox
stiff egret
#

Anyone wanna play KoTH? Ping me

sharp ether
#

Join fastly

covert vale
#

Me vent

stiff egret
#

24 Minutes, Public, Random.

gentle hatch
#

glhf

stiff egret
#

GL.

#

Noooooooooooooooooooooooooooooooooo

#

๐Ÿšซ windows

gentle hatch
#

yall left -_-

stiff egret
#

I don't play Windows. Offline

terse willow
#

What's wrong with Windows?

#

I need to make me a Windows KoTH box

stiff egret
#

Window? No probs.
Offline? EH.

terse willow
#

๐Ÿ˜

stiff egret
#

I need to up my game in windows. I suck @ them

terse willow
#

See, I came to realise something

#

Given my speciality just now in box dev is custom development, it really doesn't make a difference what OS I'm building on

#

Which means I get to learn more Windows, at the same time as making boxes that aren't hugely reliant on it

stiff egret
#

well, I have only solved 2 rooms on windows on tryhackme.

#

๐Ÿ˜†

terse willow
#

I have a fun one coming next month

#

Crippled Cry, so, it's fun

stiff egret
#

Oh I know

#

I was in that room yesterday.

terse willow
#

Eh?

#

Leaving shouldn't remove your rank

stiff egret
#

I knew it, I got in and left after I realised that it is a windows based one

terse willow
#

Windows Good

#

Labyrinth

stiff egret
#

youuuuuuuu, um, my next koth box is named labyrinth

terse willow
#

Oops ๐Ÿคทโ€โ™‚๏ธ

stiff egret
#

But it was not named labyrinth when I joined

#

it was someprefixowl

terse willow
#

It's not named labyrinth

#

But it is Labyrinth

stiff egret
#

ah

silk needle
#

Can we have a friendly team-based KOTH for noobs today?

teal raptor
#

friendly? no brother we are here for each others blood

silk needle
#

Well I wanna learn but I'm not very good at webapps yet so it'd be nice to have someone help with that

teal raptor
#

join some groups and make teams

silk needle
#

anyone recruiting here?

teal raptor
silk needle
#

I'm starting a KOTH

silk needle
#

OK that was fun

#

I won for once

#

Somehow neither of the other 2 got on the box?

#

Question: The rules disallow modifying the flags, but can we change the flag file with out touching the text? I mean like renaming, changing permissions, moving the file elsewhere.

#

Even zipping the flag with a password

stiff egret
#

Moving the file is not allowed, you can change permissions of it but you cannot rename it.
No, zipping is not allowed as well.

nova tide
#

Not sure if you are allowed to change permissions either. If flag is for a specific user and a person gets shell for that user they should be allowed to get that flag.

terse willow
#

Not strictly speaking denied by the rules, but it definitely contradicts the "keep it real" stuff

fair adder
gentle hatch
#

glhf

fair adder
#

sorry needs to go but respekt to @stiff egret

stiff egret
#

Is anyone in this game playing or I am alone?

sudden tendon
#

lol @stiff egret would love to play with someone.....DM if you wanna play together

gentle hatch
#

gg, couldn't get tty shell for a while which screwed me

stiff egret
#

gg, couldn't get tty shell for a while which screwed me
@gentle hatch ah that was you?

#

lol @stiff egret would love to play with someone.....DM if you wanna play together
@sudden tendon post the invite link here, And I'll join.

gentle hatch
#

yeah should've known to check ssh dir first facepalm

stiff egret
#

Why did you use dynamic binary?

gentle hatch
#

never really used chattr before and had two versions on my machine I didn't know they were different

#

i did get the king change right at the end tho

stiff egret
#

I did see the change.

#

anyhoo GG

sudden tendon
gentle hatch
#

ill play i might not have enough time to finish tho

sudden tendon
#

Great!It's ok if u don't finish

gentle hatch
#

glhf

sudden tendon
#

Good luck!

nova tide
#

i will join when i go back home.. rn in gaming zone

#

will have to setup my pc though

gentle hatch
#

gg that was a close one

fair adder
#

nice game @gentle hatch

sudden tendon
#

Great game @gentle hatch

stark fox
#

<@&756155733468512386>

winged charm
stark fox
#

Kinda got urges for this

torpid notch
turbid narwhal
#

..

stiff egret
#

Seriously? 2 resets in less than 2 minutes?

hushed palm
#

@tepid berryWhile the machine was okay, you reset it twice. May I ask why?

tepid berry
#

@tepid berryWhile the machine was okay, you reset it twice. May I ask why?
@hushed palm tried ssh but keep getting wrong key error after reset

#

but worked after the second reset

sharp parrot
#

hey im doing koth if someone wants to enter

fair adder
#

send link

sharp parrot
fair adder
#

you sent spectator link lol

sharp parrot
#

wow im sorry im a beginner how do i send link

#

found it

#

im kind of a beginner but i completed rooms and won koth so please if youre advanced dont try-hard

fair adder
#

ok am also beginner but i do play koth small

sharp parrot
#

alright so its good practice for both of us

fair adder
#

sure @sharp parrot

sharp parrot
#

@fair adder ive played against you yesterday

#

i remember your picture

fair adder
#

i do remember @sharp parrot

sharp parrot
#

@fair adder hey how did you get to the user? ssh?

winged charm
#

I was not prepared for that many emojis

sharp parrot
#

lol

stiff egret
#

Anyone playing ping me as well, (Since as Cry pointed out, I can't write your name)

fair adder
#

@fair adder hey how did you get to the user? ssh?
@sharp parrot yes

wraith geyser
#

||sudo -> root via git but i patched that||

stiff egret
#

Use ||spoiler content|| @wraith geyser

sharp parrot
#

i cant root it

#

it took me long to figure how to use the ssh file because i didnt do it before

#

@wraith geyser did you change ||ashu's|| password?

#

i cant find any way to root it

#

i could have did it before you patched it but i havent used the ssh file before so i was stuck for like 40 min

#

im sad i wasted koth for this

#

but learned for next time

#

@wraith geyser did you change ||ashu's|| password?

fair adder
#

@wraith geyser did you change ||ashu's|| password?
@sharp parrot i patch it

sharp parrot
#

because of you for every little action i need to enter pass i dont even know?

#

lol

#

how do you even do that

wraith geyser
#

i think i killed my shell by accident

sharp parrot
#

lol

fair adder
#

i think i killed my shell by accident
@wraith geyser hehehe

sharp parrot
#

well my game is over i got the same flags like you but didnt root ๐Ÿ˜ญ

#

lets do another one

#

@fair adder how did you patch?

fair adder
#

well my game is over i got the same flags like you but didnt root ๐Ÿ˜ญ
@sharp parrot if any subcriber hogawarts is good and fair..lol

sharp parrot
#

sorry did not understand

#

well gg

fair adder
#

@wraith geyser @sharp parrot it was a great game!!!!!11

wraith geyser
#

gg

sharp parrot
#

yep gg

#

another one?

fair adder
#

send link here

sharp parrot
#

anybody who wants to play join

#

was really fun

#

fighting ssh for 40 min

#

gg @wraith geyser @fair adder

#

@fair adder how did you make me enter password for every command i entered?

wraith geyser
#

@fair adder how did you root?

sharp parrot
#

@strange pewter is it you in koth?

strange pewter
#

yea pressed by accident

sharp parrot
#

nah its fine

#

are you doing koth?

strange pewter
#

yea

sharp parrot
#

alright ahi

strange pewter
#

lmao

sharp parrot
#

nice to see ppl like u here

fair adder
#

i hate windows but gotta try

sharp parrot
#

is there an il community? or youre alone too? @strange pewter

#

@fair adder its windows??

strange pewter
#

solo

sharp parrot
#

i hate it too

#

me too @strange pewter lol

strange pewter
#

add me on dis for later

sharp parrot
#

sure

#

game started do it

#

@strange pewter @fair adder @wraith geyser can you do nmap? it blocks me

stiff egret
#

-Pn

sharp parrot
#

alright ill try

#

problem was ovpn didnt connect me to vpn

sharp parrot
#

guys did it crash for you too?

fair adder
#

yes me too

sharp parrot
#

i though i was the only one

#

reset?

#

@fair adder @strange pewter @wraith geyser

strange pewter
#

im not playin

fair adder
#

i did

sharp parrot
#

@strange pewter oh i thought you are

fair adder
#

@stiff egret ||what happened to our koth box offline||

stiff egret
#

I don't play offline. (Rules of my life.)

#

Any box other than offline, I am happy to play

sharp parrot
#

well we're stuck @fair adder

fair adder
#

I don't play offline. (Rules of my life.)
@stiff egret hehehe i think it goes to me too i will adopt your rules. lol

sharp parrot
#

@stiff egret is there anything we could do? maybe close this koth and start a new one or something?

stiff egret
#

Sure, tag me in with invite link, and I'll join

fair adder
#

@stiff egret is there anything we could do? maybe close this koth and start a new one or something?
@sharp parrot ok create a private one with minimum of 10mins

#

@stiff egret create hogawarts let play then

sharp parrot
#

yea i prefer this

stiff egret
#

@stiff egret create hogawarts let play then
@fair adder lol, if you don't have any problem with that box, your choice. (P.S. I made Hogwarts)

fair adder
#

Wow!!!. Respect to you @stiff egret

stiff egret
#

So some other machine then?

fair adder
#

am even scared @stiff egret

sharp parrot
#

WOW @stiff egret

fair adder
#

Hogwarts is awesome i love playing it

stiff egret
sharp parrot
#

are we going to play?

stiff egret
#

As I said, I am up for some KoTH games tonight.

#

Sure, tag me in with invite link, and I'll join
@Mr.Holmes#0001

sharp parrot
#

@stiff egret can i make sure its not offline?

#

@fair adder @wraith geyser would you join too?

stiff egret
#

1 0 0 %

sharp parrot
#

how can i make sure its not 'offline' box

fair adder
sharp parrot
#

go easy on me guys ๐Ÿ˜†

fair adder
#

same to me @stiff egret @sharp parrot

sharp parrot
#

@stiff egret i think you went hard on us lol

stiff egret
#

um, I didn't patch anything.

sharp parrot
#

oh i was gonna ask you this

#

||idk i got a shell although i think i can use nc but i dont think it would help me||

stiff egret
#

what do you mean?

sharp parrot
#

||i got shrek but i cant get root or find other flags||

stiff egret
#

You need to priv Esc from shrek to root, use basic stuff like, linPEAS,/ enum etc.

sharp parrot
#

ye im trying

stiff egret
#

do basic stuff first, like checking sudo -l, SUID bins etc.

fair adder
#

@stiff egret i know i cant stay for long but am trying my best but 2nd is good for me though boss

stiff egret
#

That is you? oh dang

#

๐Ÿ˜†

#

I didn't realise lmao

sharp parrot
#

||ik its a competition but im a beginner so i rather learn so are you guys scripting so your name will always be in king.txt?||

stiff egret
#

yep

sharp parrot
#

i did it too but im not the king any clue why?

stiff egret
#

it comes down to efficiency, the faster your code can open, write and close the file, the better

sharp parrot
#

but i wrote a loop

#

i put sleep too should i remove it?

stiff egret
#

yeah, I see that, sleep 0.1

sharp parrot
#

lol you see that

stiff egret
#

remove that, it's making the code slow

sharp parrot
#

how can you even get into my shell

#

ik but i dont want to nuke the machine

stiff egret
#

bombing on one file won't have much affect on machine

sharp parrot
#

alright thanks

stiff egret
#

๐Ÿ˜„

sharp parrot
#

is your code like mine? or yours is more complicated?

stiff egret
#

It's a bit different

sharp parrot
#

i dont understand why at the first time i joined with ssh file but now it is requesting me password for shrek

stiff egret
#

because someone changed the sshkeys

sharp parrot
#

ohhhhhh

stiff egret
#

@fair adder that's your loop for python reverse shells?

gentle hatch
#

gg

stiff egret
#

GG

sharp parrot
#

NOOO i found all the flags but needed time to recover the last 2

#

im bad at being the king

stiff egret
#

go for king/root first, you can always get flags afterwards

gentle hatch
#

idk why my script wouldn't write to king.txt despite my permissions being correct :/

#

oh well

nova tide
#

afterwards*

stiff egret
#

wat

#

kekw @nova tide

sharp parrot
#

@stiff egret if i run the script first for the king.txt does that mean no one will get the king after me/

#

?

stiff egret
#

gotta say, it was fun

sharp parrot
#

yea it was

stiff egret
#

@stiff egret if i run the script first for the king.txt does that mean no one will get the king after me/
@sharp parrot no, as I said, it comes down to efficiency of your code, if someone else's code is faster, then they'll be king

sharp parrot
#

alright

#

man im sorry for spamming with questions but if my script is only 4 lines how can another script be more efficient than mine?

gentle hatch
#

language

#

c or some low-level language would probably be the fastest

#

but who the hell has time for that

fair adder
#

Playing with @stiff egret really make me realize my mistakes next time I will try and fix my self well ๐Ÿ˜‰ it was a great game ๐Ÿ‘๐Ÿ‘Œ๐Ÿ˜ guyz

sharp parrot
#

oh really?

c or some low-level language would probably be the fastest
@gentle hatch

#

ok thanks

gentle hatch
#

yup, any compiled language will run laps around python or bash

stiff egret
#

Yup

#

but you can kick others kekw

gentle hatch
#

would it be evil to alias every binary in bin lmao

stiff egret
#

alias is allowed, moving/renaming binaries isn't.

gentle hatch
#

im still not sure what the etiquette is for being root and what you can/can't mess with, obv you can't kill shells and services and make things inaccessible

stiff egret
#

You can kill shells, spam them, etc,

#

Just killing services that are present by default is not allowed

fair adder
#

I think is about defending whiles and attack but make sure the game is still running as it is @gentle hatch

stiff egret
gentle hatch
#

ahh okay i feel bad taking peoples footholds away but maybe ill start killing webshells after a while, give people a fair chance for persistence

fair adder
#

@gentle hatch hehehe

gentle hatch
#

anyways always a GG with holmes, starting to slowly learn the meta for this

turbid narwhal
gentle hatch
#

still playing?

#

@turbid narwhal

turbid narwhal
#

No

#

I can start again

gentle hatch
#

im down

turbid narwhal
#

No one came lol

#

Cool

#

I'll send the invitation hold on

#

5 mins

gentle hatch
#

sweet, good luck

turbid narwhal
#

im noo tho

#

you too

gentle hatch
#

if you need help or anything feel free to dm me

turbid narwhal
#

yea thankss

turbid narwhal
#

you already won, congo xD

gentle hatch
#

you still have plenty of time to get root ๐Ÿ™‚

turbid narwhal
#

im already havin a hard tim figuring out stuffs, you already won lmaooo

fair adder
#

man

sharp parrot
#

anyone for koth?

turbid narwhal
#

meee

#

anyone for koth?? im so bored xD

fair adder
#

send link @turbid narwhal

turbid narwhal
#

im noob so you dont have to try hard, you'll win the game lol

fair adder
#

im noob so you dont have to try hard, you'll win the game lol
@turbid narwhal same to me man.

turbid narwhal
#

youre on lvl 9 haha

fair adder
#

youre on lvl 9 haha
@turbid narwhal is just a digit to me

turbid narwhal
#

not rlyy haha

fair adder
#

not rlyy haha
@turbid narwhal lol

turbid narwhal
#

we'll see, goodluck :)

fair adder
#

its seems like you are going to kick my ass. lol @turbid narwhal

turbid narwhal
#

not gonna happen

boreal flare
#

Game Started?

turbid narwhal
#

ive played just 3-4 koth games 'til now

#

no

#

4 mins left almost

#

you got time if u wanna join

boreal flare
#

Ping me if you guys play next game

turbid narwhal
#

cool then

#

im prolly gonna play another one too

#

lemme know if youre in for that

sharp parrot
#

@fair adder hey im against you again

fair adder
#

@sharp parrot HahAha

hushed palm
#

is this machine already up?

#

i cant do anything anymore, no nmap, no mysql, no ping but i am already connected vpn lul

sharp parrot
#

@hushed palm hint?

hushed palm
#

there are a few different ways

sharp parrot
#

i tried notsromo

#

nostromo

#

nothing works

#

it allows one word to be executed

#

what service can i use?

#

i know there is a /upload but /uploads is forbidden

#

@hushed palm any hint?

hushed palm
#

you need to check other ports maybe you can access the files you uploaded from there

#

i am done again i cant access the machine

#

my vpn is up tryhackme says connected but i cant do anything on this machine

boreal flare
#

ip table rules ?

#

someone might be toying with you guys

hushed palm
#

oh

sharp parrot
#

man i messed it up on the nostromo exploit i didnt use the "" for multiple word command execution

wraith geyser
#

how did you privesc?

#

got the shell through nostromo but couldn't find anything other than the 1st flag

sharp parrot
#

how did you get shell @wraith geyser ?

#

i also used nostromo but i couldnt run python scripts with the exploit

wraith geyser
#

the one on exploit db

#

it doesnt have python or python3 installed

#

so i got a rev shell with netcat

sharp parrot
#

meowless are you here?

sharp parrot
#

anyone who wants to play koth enter

sharp parrot
#

guys on koth restart

wraith geyser
#

who killed it?

sharp parrot
#

idk

#

its not working

#

hit restart

#

is it working?

nova tide
#

who did that?

wraith geyser
#

idk

#

reset?

sharp parrot
#

alright it restarted

nova tide
#

its reset now.. but someone did something though

wraith geyser
#

did someone fork bomb or something

sharp parrot
#

is the new ip working now?

wraith geyser
#

oh new ip

brazen cloud
#

Shoot the Game ID and the username and/or terminal session(s) you think it was @nova tide (and other players) to koth@tryhackme.com *edit: support replaced with koth

#

They'll have logs from the instance itself - much more then what we have available atm

sharp parrot
#

||hey i cant ssh is it just me?||

#

?

wraith geyser
#

wait why is the flag not submitting

sharp parrot
#

nvm

wraith geyser
#

whos rmrfing everything

sharp parrot
#

idk what is happening im just closing the vm

wraith geyser
#

i think someone deleted everything except king.txt

nova tide
#

Reported about the game.. and congratulations to whoever did that.. :)
Hopefully they gonna get banned ๐Ÿคทโ€โ™‚๏ธ

fair adder
#

hi y'all

turbid narwhal
#

@turbid narwhal lol
@fair adder i gave up yesterday lol

fair adder
#

someone wanna play koth?

turbid narwhal
#

me

#

im noob tho

fair adder
#

it's fine , we're all noobs bruh

#

gimme link

turbid narwhal
#

15 mins

#

youll win lol

#

xD

#

joinnnnnnnn

#

it's fine , we're all noobs bruh
@fair adder aliveee??

fair adder
#

@fair adder i gave up yesterday lol
@turbid narwhal really

turbid narwhal
#

I didn't wanna end up w no points

fair adder
#

oh i see

sharp parrot
#

are you doing koth?

turbid narwhal
#

koth in 15 mins

#

anyone up??

#

anyone wanna winn koth? im noob so its like youll def- win

#

are you doing koth?
@sharp parrot i am noww

boreal flare
#

I can join

#

Is it a random machine?

turbid narwhal
#

yeah

#

hurry up 9 mins left

boreal flare
#

Need to boot my kali tho might take time

turbid narwhal
#

and random cause i dont have subscibtion im broke

#

uhmm okayy

#

im waitin

boreal flare
#

I can make a particular machine if you want

turbid narwhal
#

lol ive played koth just 4-5 times i got no idea bout machines i havent played em all

#

its upp to you what do you want

boreal flare
#

Let's play random then

dusky berry
#

Let's gooo

#

@wind oar you up bruh?

turbid narwhal
#

You guys still playin?

wind oar
#

@dusky berry no bro, very busy

turbid narwhal
#

...

turbid narwhal
#

...

#

...

dusky berry
#

@dusky berry no bro, very busy
@wind oar Not a problem G

#

You guys still playin?
@turbid narwhal Yes rn

sharp parrot
#

join

sharp parrot
#

@nova stream hey man

nova stream
#

What's up

sharp parrot
#

ma kore

nova stream
#

Ma nishma achi

sharp parrot
#

beseder

#

good luck

turbid narwhal
#

What language is that?

sharp parrot
#

hebrew

turbid narwhal
#

Ohh cool

sharp parrot
#

youre doing koth with us?

#

@nova stream if youre free add me we'll do games later

#

later

#

youre doing koth with us?
@turbid narwhal

turbid narwhal
#

yeahh im free

#

are you guys playin?

sharp parrot
#

yep

sharp parrot
#

tough one

nova stream
#

Yea

#

I was stupidly caught up on a metasploit module forever

sharp parrot
#

oh why

#

metasploit isnt everything

#

i tried some things and then i saw smb i just went for it

nova stream
#

I know I just thought it was going to work

sharp parrot
#

there was the flag there

nova stream
#

It was an RCE

sharp parrot
#

werkzeug?

#

was that the service?

nova stream
#

No the one on 8080

sharp parrot
#

niginx?

#

nginx*

nova stream
#

yea

#

The form on port 80 was just bait

sharp parrot
#

no i succeded to get into the form and get admin

nova stream
#

Yea?

#

I got into the login on 8080

sharp parrot
#

i looked at the code there and i saw code of js in the notes so i deleted the notes and tried logging using admin admin and it worked

#

idk if the js code was the thing that made that

#

oh was there a form in 80?

#

in 80 and 5000 there was a file upload but idk where it uploads the files

nova stream
#

I found a forbidden image directory on 80

sharp parrot
#

oh nice

nova stream
#

What did you do to the smb

sharp parrot
#

smbclient

nova stream
#

Oh thats it? Anonymous share?

sharp parrot
#

public share

nova stream
#

oh

#

Ill get on a bit later ill play again

#

I can't suck next time tho lol

sharp parrot
#

yea sure

fair adder
#

@sharp parrot wanna play?

sharp parrot
#

i got work to do later

fair adder
#

oh shit

#

@nova stream wby?

nova stream
#

Same ill be on later

fair adder
#

bruh moment

#

i got no one to play with

#

@gentle hatch here ya go

fair adder
#

for anyone in this game

#

check the ftp

#

@tepid berry

#

u tryin to find suid's?

tepid berry
#

u tryin to find suid's?
@fair adder yea

gentle hatch
#

did someone mess with ssh

#

nvm that was weird

fair adder
#

guys chill out

#

the box it's patched

tepid berry
#

for anyone in this game
@fair adder you keep throwing everyone out

fair adder
#

it's imposibbile to become root now

#

yeah

#

i'm killing shells

#

it's completly legal

quiet schooner
#

It's a poor defence technique

gentle hatch
#

weird i played this box yesterday and the priv-esc method is gone

fair adder
#

It's a poor defence technique
@quiet schooner actually everything's patched

#

i'll let them to strugle

quiet schooner
#

yeah so no need to kill shells

fair adder
#

weird i played this box yesterday and the priv-esc method is gone
@gentle hatch i patched it lol

#

it's impossibile to become root

#

like for real

gentle hatch
#

well im pretty sure thats against rules lol

fair adder
#

nope

#

check out the rules

#

u need to patch vulns

winged charm
#

actually if there is no way to become root you have broken rules

#

you must keep at least some ways to get in

fair adder
#

oh fu

winged charm
#

no thank you

fair adder
#

i'll put now somethings

gentle hatch
#

just leave the original priv-esc

fair adder
#

k lemme fix that

gentle hatch
#

still not fixed lol

fair adder
#

done

gentle hatch
#

bruh

fair adder
#

check now

gentle hatch
#

the you edited is wrong

#

file*

fair adder
#

i left a coma

#

by mistake

tepid berry
#

y'all playing dirty

gentle hatch
#

bruh

#

killing services now

cold bobcat
#

bouta try dis shit

fair adder
#

bruh why u getting mad

#

you can become root now , i got the permission to kill shells

cold bobcat
#

Cod lobby minus the 10 year olds

fair adder
#

=]]]

gentle hatch
#

all the services are down dude

#

no http

#

ftp

#

or ssh

fair adder
#

no bruh they're up

#

lmfao

tepid berry
#

ssh is down

#

ftp down

fair adder
#

they have logs

#

someone stop them

#

i'll report this

gentle hatch
#

pretty sure you and I were the only ones to get root

#

and it wasn't me

#

so

tepid berry
#

i got root

#

but didn't mess with the services

fair adder
#

dude they have logs

gentle hatch
#

reset ig

fair adder
#

chill

gentle hatch
#

what an annoying game

fair adder
#

imma report this myself

#

i haven't cause any trouble on the box

gentle hatch
#

i mean you broke rules when you messed with the priv-esc

fair adder
#

nah i didn't actually

#

i spoke with an admin

#

i should left one way of getting root tho

gentle hatch
#

reset people

tepid berry
#

nah i didn't actually
@fair adder you took all out at first

fair adder
#

that's the freaking point

#

lmfao

cold bobcat
#

question so i know im not wasting my time, how hard are these things?

#

like we talkin some weird binary exploitation shit

#

or jus some ez stuff

fair adder
#

what the fuck happened

#

why isnt the ssh working

quiet schooner
#

i mean you broke rules when you messed with the priv-esc
@gentle hatch wat

fair adder
#

@gentle hatch why did u stop the ssh service?

#

imma report this

gentle hatch
#

i didn't lol

#

go ahead

fair adder
#

lmao ur the king and the ssh isn't working

#

u know that they have logs right?

#

?

gentle hatch
#

doesnt mean others cant be root

#

im aware

fair adder
#

lmfao dude , someone completly stopped the ssh

#

the ftp too

#

that it's against the rules

quiet schooner
#

So report it

#

Complaining here isn't really going to do much

fair adder
#

yeah ik , at least the one who stopped the services maybe he's gonna put them up again

tepid berry
#

imma report this
@fair adder dirty players

stiff egret
#

๐Ÿคทโ€โ™‚๏ธ you can always reset the box. If it is actually an issue then other players will support you on this.

#

If not then you know the problem is on your side.

fair adder
#

the ssh isn't working , the ftp too is not working

#

and Droggie it's king on the box

#

like wtf

tepid berry
#

@gentle hatch did you close ssh/

gentle hatch
#

nope

tepid berry
#

so who did

fair adder
#

we'll see on the logs

gentle hatch
#

theres 4 other people in the game

#

stop accusing me

quiet schooner
#

y'all quit screaming at eachother, reset the box if you need to

fair adder
#

3/4

#

1 more

#

theres 4 other people in the game
@gentle hatch i am not accusing you

quiet schooner
#

Move on.

fair adder
#

but you're the king on the box , that says somethings

gentle hatch
#

you did twice lol idrc

#

a third time

fair adder
#

i was root on the box with my name in king.txt , then everything stopped

gentle hatch
#

OTHER PEOPLE CAN GET ROOT FFS

quiet schooner
#

Stop.

#

Calm down.

tepid berry
#

@fair adder @gentle hatch you two play just the same way

quiet schooner
#

Move on.

gentle hatch
#

omfg

stiff egret
#

(also, just so you know, whoever was last to put their name in king file, then website will show them king, even if the box is dead.)

gentle hatch
#

i never killed a shell

#

i never walled

teal raptor
#

is trash talk part of the game?

gentle hatch
#

i never used chattr

#

i played the cleanest way possible

cold bobcat
#

lmfao it really is like a COD lobb\

#

y

#

bruh im too dumb to even use the ssh smh

grand ember
#

is trash talk part of the game?
@teal raptor afaik it's part of the bundle kekw

cold bobcat
#

bruh yall talkin dumb trash

#

im too stupid for this shit lmao

sharp parrot
#

if anoyone want to join

cold bobcat
#

whoops

#

so what all is like accepted to do

#

i dont wanna be an asshole lmao

quiet schooner
#

Please read the KoTH rules, and the discord rules

#

And also, please cut back on the cursing?

cold bobcat
#

i gotchu

#

out of pure curiosity how did you end my shell? i was tryna figure out how to end yours but i didnt know how

#

or did you just shut down ssh

quiet schooner
#

Wasn't me, but you can kill the bash/sh process

winged charm
quiet schooner
#

IIRC restarting/killing SSH shouldn't boot you out but I'm not 100%

cold bobcat
#

maybe a combo of both because ssh isnt responding

#

I think its my end i cant even ping the machine

quiet schooner
#

!vpnscript

pearl gladeBOT
cold bobcat
#

dang, it came back clear but i still cant ping it

#

shame but i gotta go eat anyway lol

stiff egret
#

Join in, 20 Minutes, public

#

@flint cloud

flint cloud
#

Ooof

stiff egret
#

Hop in

flint cloud
#

Let me boot linux up

stiff egret
#

11 minutes

fair adder
#

we are allowed to kill shells , aren't we?

stiff egret
#

Yes.