#koth
1 messages ยท Page 47 of 1
Is it what I think it is
Hash it
?
Quant, once I start mal analysis, you are done
Just 56 more to go
the only huge boxes remaining now are the ones of mal analysis
I'm scared
I will always remember how you mislead me with Binex
!rank
@sharp ether Please keep that to #bot-commands
Anyone playing koth?
Need help with the hogwarts box
Need help with the hogwarts box
@fathom flame Depends on what you need help with. Go ahead, just mark spoilers with " ||"
I wasnt able to solve it. Need some directions
All I was able to get was the base64 text from Site
That is not something I can help with, the box is still new, plus KoTH boxes are meant to be a challenge.
I can just say that enumerate harder. Try tools like rustscan.
Right. Understood. Thanks!
:)
Join in , if anyone's playing
GG
What are koth boxes??
Sounds interesting
Anyone doing Hogwarts ?
15min (not hogwarts )
https://tryhackme.com/games/koth/join/d701f5980ebb8ced1e311ecd
anyone here for play
im down
im down
@gentle hatch !down
im down
@gentle hatch you are in
๐
@gentle hatch glhf = ?
sorry, that means "good luck and have fun"
sorry, that means "good luck and have fun"
@gentle hatch np i learned that ..
ill come back again in an hour, lets gather people
ill prob be down to run it back after, i have a lot of spare time today, want me to ping you when this is done? @sullen parrot
@mellow lodge Man you have came earlier I was playing KoTH xD
@mellow lodge Man you have came earlier I was playing KoTH xD
@cerulean maple sorry bro .. my friend told me that this is new and hard so i am trying
No worries next time for sure we'll play
@cerulean maple very hard i think
ping me anytime, ill try to join
Im available now btw, anyone online?
I can join if it's not hogwarts. :)
You're not supposed to join if it's Hogwarts

Hogwarts sucks. That's why you don't play it ๐คฃ
rn out with all the class. Last day of studying training so out to eat together. From today i will start trying hard properly 
(when i wake up in the morning)
@stiff egret Can I DM RE your koth repo?
Sure ๐
I'll play against you
@stiff egret give me a couple of days. Then you are welcome to
I said just a few days then i will beat you for sure. In your own machine 
Someone unpinned my message ๐ฅบ
Wasn't me
||Bee||
I said just a few days then i will beat you for sure. In your own machine
@nova tide you...
can't...

You're late for lots of stuff
@sullen parrot that's a spectator link btw
im down to play
didnt know that
just started
ty!
It's space jam if anyone wants to join them ^
first time trying koth, thanks for joining
in 5
Droogy you killing my shell everz time ๐
gg
gg!!
yeah i got in thro alex
ahh okay i got in thru gloria
didnt notice apache2 was executed by alex, was gloria all the time
yeah i didnt get a shell there but glorias .ssh folder was writable to i added myself to authorized_keys
and at the end I made a user droogs that owned king.txt and the password for my user was 1234 lol for fairgame purposes
any other root paths besides pip3?
tmux but i closed that errant session after i priv-esc
yeah :d i saw your ssh connectin ๐
niice, lets do it again soon!
yeah i dont play koth much you did good, will def learn more tricks as you play, gg again guys!
tomorrow maybe dm/ping me if you want
kk so gn8 guys and thx for the game
JOIN IN ๐
Hi never played Koth. Is it hard ?
Nope it's fun
๐
can I join u to test ?
ok just start my vm then ๐

hmm don t seems like ican join
Is the ssh running on Production ?
cult you playing KoTH?
Yes
lmao
@dusky berry Have you changed paassword of ashu or am I doing something wrong ?
I changed it
me too
Looks like I lost xD
@cerulean maple
@fair adder xD
GG btw
Looks like I lost xD
@cerulean maple try running "nmap" and check other ports
@fair adder You can get the flag tho
@nova tide Done that all I could find was a smb share from there I found the ssh key but since the password is change it's useless and can't find anything on the web page
i was not fast enough
@fair adder hmmm
Check other ports
@nova tide already done it and got in but its limited and i think it was close again
@fair adder You didn't logged in through ssh ?
no
Okay I'll try to find a way in
deep enumeration is good
dont even get in :/
ooh i didn't knew @cerulean maple is from Pakistan 
Pakistan
GG
pakistanians ๐
Starting in 5min
https://tryhackme.com/games/koth/join/2e7709c630eea19388eeb470
F
in Koth just password for skidy is not the only way
@true needle Okay I'll look for more ๐ฆ
@true needle There is a chattr binary but when ever I run it closes my connection xD
So there isn't chattr binary in the machine ?
Then how can we read the flag.txt in ashu's directory if we can't change the read bit ?
you need to get your's on the system
@true needle Oh
get root and read it. as its owned by root
someone tried to edit the ||sudoers but he made a mistake and its not responding here||||
@fair adder on production ?
yeah @cerulean maple
its borked
he destroyed the box and run away lol
dang yall doing it to me like this while i am on stream lol thanks
๐
oh
@light breach give link 
in #thm-community-media would be fine i think.. as its koth you streaming?
???
?
Yall want to do another after?
Um.. ๐คทโโ๏ธ I am up for game. But people doesn't like us in their games. @nova tide What say? Playing?
sure why not
Lol i love it! Im learning
Cool.
okay here is the next god hoping it isn't hogwarts! https://tryhackme.com/games/koth/join/713af9583a558aea8dfef134
(If Its hogwarts I can't play)
who won?
holmes ofc

๐
17 king changes in both games
@stiff egret ๐
koth > hogwarts anyone?
@silk needle
my 1st koth
ohk
I can't use the mic but I'll listen out for your talking
i dont even know where my mic is 
I suppose you're hybr3d?
yp
I'd like to wait for more people
alright paste the link here
https://tryhackme.com/games/koth/join/c706fb16888f0529d14251a7
@silk needle 13mins to start
BTW how many terminals do you usually like to have on the box?
as many as i can, i dont even have a sepecific number 
I'd like to avoid while racing the king.txt...

I'm not even on the box yet how are you king...
I'm not even on the box yet how are you king...
@silk needle lol
deep enumeration and and a red team methodology i think
can you give me a tip?
@silk needle
is something weird going on with your mic?...
@silk needle trying to fix it
yeah I'm a newbie at ctf...
ohk
can you hint me at what service you used to get on?
is better to find it by urself but here is nmap and gobuster wit a good dir wordlist they can help
80,5000, or 8080?
my gobuster isn't getting much at all
It's pretty much over can you tell me the url you used?
OK it's over and I still couldn't get on the box...
Can you share what you did?
can i have the spectator link ?
sry ill send the next one, i logged in with a friend to introduce him and guide him a little but we were soooo unlucky we got the windows box which i have little experience XD
wp for this one (offline), ill study the writeups
till then
starts in 10
spec link: https://tryhackme.com/games/koth/11310
Fight 
Anyone??
gys reset the VM plz
Hoin
guyz
anyone wanna play koth
Can we have a team-based koth on the weekends for noobs? I wanna play but I'm not too good with webapps so far.
Friendly KoTH on weekends sounds good ๐ค
might join you all later!
Join in guyss 
No 
What's your obsession with "m"'s
cheems slamg
anyone wanna play koth
i can come
Hop in guys !!
hello world wanna play? https://tryhackme.com/games/koth/join/056fca1791ac39079e658421
15 mins out
@tepid berry hey mate
@sudden condor hi
https://tryhackme.com/games/koth/join/1aba24f8342018a39e6477da
join in start in 22 mins
Hi all. somebody wants to play https://tryhackme.com/games/koth/11462
@wind oar Up for a match?
Wait 5 minutes and Iโll go
Let me make a 10 min link then
Here , Join in , Hoping a great Match
@dusky berry t I'm in
yeahh
Friendly KoTH on weekends sounds good ๐ค
@nova tide that a good idea though
@dusky berry that was interesting. Thanks
GG Man Learnt a lot !!
koth anyone?
<@&756155733468512386> Can y'all run a KoTH tournament? ๐ฅบ
anyone for koth??
It's hard to be <@&756155733468512386> ๐
You missed a trick there @stark fox
It's hard to be <@&756155733468512386>*
There we go ๐
Muirlllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllllll
I am noting this down, I'll come for ya
I thought you had <@&756155733468512386> role mentions switched off Holmes? ๐
<@&756155733468512386> are nice
The curse of Holmes on Arg that any KoTH game he plays, He'll get nyancated every. single. time. ```
What kind of curse is that

Anyone wanna play KoTH? Ping me
https://tryhackme.com/games/koth/join/60e1107962bd50768c479374
Random, Starting in 21 minutes.
Join fastly
24 Minutes, Public, Random.
glhf
yall left -_-
I don't play Windows. Offline
Window? No probs.
Offline? EH.
๐
I need to up my game in windows. I suck @ them
See, I came to realise something
Given my speciality just now in box dev is custom development, it really doesn't make a difference what OS I'm building on
Which means I get to learn more Windows, at the same time as making boxes that aren't hugely reliant on it
I knew it, I got in and left after I realised that it is a windows based one
Oops ๐คทโโ๏ธ
Can we have a friendly team-based KOTH for noobs today?
friendly? no brother we are here for each others blood
Well I wanna learn but I'm not very good at webapps yet so it'd be nice to have someone help with that
join some groups and make teams
anyone recruiting here?
check #689615473620287603
I'm starting a KOTH
OK that was fun
I won for once
Somehow neither of the other 2 got on the box?
Question: The rules disallow modifying the flags, but can we change the flag file with out touching the text? I mean like renaming, changing permissions, moving the file elsewhere.
Even zipping the flag with a password
Moving the file is not allowed, you can change permissions of it but you cannot rename it.
No, zipping is not allowed as well.
Not sure if you are allowed to change permissions either. If flag is for a specific user and a person gets shell for that user they should be allowed to get that flag.
Not strictly speaking denied by the rules, but it definitely contradicts the "keep it real" stuff
glhf
sorry needs to go but respekt to @stiff egret
Is anyone in this game playing or I am alone?
lol @stiff egret would love to play with someone.....DM if you wanna play together
gg, couldn't get tty shell for a while which screwed me
gg, couldn't get tty shell for a while which screwed me
@gentle hatch ah that was you?
lol @stiff egret would love to play with someone.....DM if you wanna play together
@sudden tendon post the invite link here, And I'll join.
yeah should've known to check ssh dir first 
Why did you use dynamic binary?
never really used chattr before and had two versions on my machine I didn't know they were different
i did get the king change right at the end tho
ill play i might not have enough time to finish tho
Great!It's ok if u don't finish
glhf
Good luck!
gg that was a close one
nice game @gentle hatch
Great game @gentle hatch
<@&756155733468512386>

Kinda got urges for this

..
Seriously? 2 resets in less than 2 minutes?
@tepid berryWhile the machine was okay, you reset it twice. May I ask why?
@tepid berryWhile the machine was okay, you reset it twice. May I ask why?
@hushed palm tried ssh but keep getting wrong key error after reset
but worked after the second reset
hey im doing koth if someone wants to enter
send link
you sent spectator link lol
wow im sorry im a beginner how do i send link
found it
im kind of a beginner but i completed rooms and won koth so please if youre advanced dont try-hard
ok am also beginner but i do play koth small
alright so its good practice for both of us
sure @sharp parrot
i do remember @sharp parrot
@fair adder hey how did you get to the user? ssh?
I was not prepared for that many emojis
lol
Anyone playing ping me as well, (Since as Cry pointed out, I can't write your name)
@fair adder hey how did you get to the user? ssh?
@sharp parrot yes
||sudo -> root via git but i patched that||
Use ||spoiler content|| @wraith geyser
i cant root it
it took me long to figure how to use the ssh file because i didnt do it before
@wraith geyser did you change ||ashu's|| password?
i cant find any way to root it
i could have did it before you patched it but i havent used the ssh file before so i was stuck for like 40 min
im sad i wasted koth for this
but learned for next time
@wraith geyser did you change ||ashu's|| password?
@wraith geyser did you change ||ashu's|| password?
@sharp parrot i patch it
because of you for every little action i need to enter pass i dont even know?
lol
how do you even do that
i think i killed my shell by accident
lol
i think i killed my shell by accident
@wraith geyser hehehe
well my game is over i got the same flags like you but didnt root ๐ญ
lets do another one
@fair adder how did you patch?
well my game is over i got the same flags like you but didnt root ๐ญ
@sharp parrot if any subcriber hogawarts is good and fair..lol
@wraith geyser @sharp parrot it was a great game!!!!!11
gg
send link here
anybody who wants to play join
was really fun
fighting ssh for 40 min
gg @wraith geyser @fair adder
@fair adder how did you make me enter password for every command i entered?
@fair adder how did you root?
@strange pewter is it you in koth?
yea pressed by accident
yea
alright ahi
lmao
nice to see ppl like u here
i hate windows but gotta try
is there an il community? or youre alone too? @strange pewter
@fair adder its windows??
solo
add me on dis for later
sure
game started do it
@strange pewter @fair adder @wraith geyser can you do nmap? it blocks me
-Pn
guys did it crash for you too?
yes me too
im not playin
i did
@strange pewter oh i thought you are
@stiff egret ||what happened to our koth box offline||
I don't play offline. (Rules of my life.)
Any box other than offline, I am happy to play
well we're stuck @fair adder
I don't play offline. (Rules of my life.)
@stiff egret hehehe i think it goes to me too i will adopt your rules. lol
@stiff egret is there anything we could do? maybe close this koth and start a new one or something?
Sure, tag me in with invite link, and I'll join
@stiff egret is there anything we could do? maybe close this koth and start a new one or something?
@sharp parrot ok create a private one with minimum of 10mins
@stiff egret create hogawarts let play then
yea i prefer this
@stiff egret create hogawarts let play then
@fair adder lol, if you don't have any problem with that box, your choice. (P.S. I made Hogwarts)
Wow!!!. Respect to you @stiff egret
So some other machine then?
am even scared @stiff egret
WOW @stiff egret
Hogwarts is awesome i love playing it

are we going to play?
As I said, I am up for some KoTH games tonight.
Sure, tag me in with invite link, and I'll join
@Mr.Holmes#0001
@stiff egret can i make sure its not offline?
@fair adder @wraith geyser would you join too?
1 0 0 %
how can i make sure its not 'offline' box
go easy on me guys ๐
same to me @stiff egret @sharp parrot
@stiff egret i think you went hard on us lol
um, I didn't patch anything.
oh i was gonna ask you this
||idk i got a shell although i think i can use nc but i dont think it would help me||
what do you mean?
||i got shrek but i cant get root or find other flags||
You need to priv Esc from shrek to root, use basic stuff like, linPEAS,/ enum etc.
ye im trying
do basic stuff first, like checking sudo -l, SUID bins etc.
@stiff egret i know i cant stay for long but am trying my best but 2nd is good for me though boss
||ik its a competition but im a beginner so i rather learn so are you guys scripting so your name will always be in king.txt?||
yep
i did it too but im not the king any clue why?
it comes down to efficiency, the faster your code can open, write and close the file, the better
yeah, I see that, sleep 0.1
lol you see that
remove that, it's making the code slow
bombing on one file won't have much affect on machine
alright thanks
๐
is your code like mine? or yours is more complicated?
It's a bit different
i dont understand why at the first time i joined with ssh file but now it is requesting me password for shrek
because someone changed the sshkeys
ohhhhhh
@fair adder that's your loop for python reverse shells?
gg
GG
NOOO i found all the flags but needed time to recover the last 2
im bad at being the king
go for king/root first, you can always get flags afterwards
idk why my script wouldn't write to king.txt despite my permissions being correct :/
oh well
afterwards*
wat
@nova tide
@stiff egret if i run the script first for the king.txt does that mean no one will get the king after me/
?
gotta say, it was fun
yea it was
@stiff egret if i run the script first for the king.txt does that mean no one will get the king after me/
@sharp parrot no, as I said, it comes down to efficiency of your code, if someone else's code is faster, then they'll be king
alright
man im sorry for spamming with questions but if my script is only 4 lines how can another script be more efficient than mine?
language
c or some low-level language would probably be the fastest
but who the hell has time for that
Playing with @stiff egret really make me realize my mistakes next time I will try and fix my self well ๐ it was a great game ๐๐๐ guyz
oh really?
c or some low-level language would probably be the fastest
@gentle hatch
ok thanks
yup, any compiled language will run laps around python or bash
would it be evil to alias every binary in bin lmao
alias is allowed, moving/renaming binaries isn't.
im still not sure what the etiquette is for being root and what you can/can't mess with, obv you can't kill shells and services and make things inaccessible
You can kill shells, spam them, etc,
Just killing services that are present by default is not allowed
I think is about defending whiles and attack but make sure the game is still running as it is @gentle hatch
ahh okay i feel bad taking peoples footholds away but maybe ill start killing webshells after a while, give people a fair chance for persistence
@gentle hatch hehehe
anyways always a GG with holmes, starting to slowly learn the meta for this
https://tryhackme.com/games/koth/join/a39b14686a0ae2cc3fe3af8b anyone wanna win a koth game? im just a noob you dont have to try hard. (13 mins to start)
im down
No one came lol
Cool
I'll send the invitation hold on
5 mins
sweet, good luck
if you need help or anything feel free to dm me
yea thankss
you already won, congo xD
you still have plenty of time to get root ๐
im already havin a hard tim figuring out stuffs, you already won lmaooo
man
anyone for koth?
send link @turbid narwhal
im noob so you dont have to try hard, you'll win the game lol
im noob so you dont have to try hard, you'll win the game lol
@turbid narwhal same to me man.
youre on lvl 9 haha
youre on lvl 9 haha
@turbid narwhal is just a digit to me
not rlyy haha
not rlyy haha
@turbid narwhal lol
we'll see, goodluck :)
its seems like you are going to kick my ass. lol @turbid narwhal
not gonna happen
Game Started?
ive played just 3-4 koth games 'til now
no
4 mins left almost
you got time if u wanna join
Ping me if you guys play next game
@fair adder hey im against you again
@sharp parrot HahAha
https://tryhackme.com/games/koth/join/7dd7dbfb40a81a2c85d13bd3
20 min to start
is this machine already up?
i cant do anything anymore, no nmap, no mysql, no ping but i am already connected vpn lul
@hushed palm hint?
there are a few different ways
i tried notsromo
nostromo
nothing works
it allows one word to be executed
what service can i use?
i know there is a /upload but /uploads is forbidden
@hushed palm any hint?
you need to check other ports maybe you can access the files you uploaded from there
i am done again i cant access the machine
my vpn is up tryhackme says connected but i cant do anything on this machine
oh
man i messed it up on the nostromo exploit i didnt use the "" for multiple word command execution
how did you privesc?
got the shell through nostromo but couldn't find anything other than the 1st flag
how did you get shell @wraith geyser ?
i also used nostromo but i couldnt run python scripts with the exploit
the one on exploit db
it doesnt have python or python3 installed
so i got a rev shell with netcat
meowless are you here?
anyone who wants to play koth enter
guys on koth restart
who killed it?
alright it restarted
uhmm @brazen cloud whom should i be reporting?? i believe someone broke the machine in this game:
https://tryhackme.com/games/koth/11635
its reset now.. but someone did something though
did someone fork bomb or something
is the new ip working now?
oh new ip
Shoot the Game ID and the username and/or terminal session(s) you think it was @nova tide (and other players) to koth@tryhackme.com *edit: support replaced with koth
They'll have logs from the instance itself - much more then what we have available atm
wait why is the flag not submitting
nvm
whos rmrfing everything
idk what is happening im just closing the vm
i think someone deleted everything except king.txt
Reported about the game.. and congratulations to whoever did that.. :)
Hopefully they gonna get banned ๐คทโโ๏ธ
hi y'all
@turbid narwhal lol
@fair adder i gave up yesterday lol
someone wanna play koth?
15 mins
youll win lol
xD
joinnnnnnnn
it's fine , we're all noobs bruh
@fair adder aliveee??
@fair adder i gave up yesterday lol
@turbid narwhal really
I didn't wanna end up w no points
oh i see
are you doing koth?
koth in 15 mins
anyone up??
anyone wanna winn koth? im noob so its like youll def- win
are you doing koth?
@sharp parrot i am noww
Need to boot my kali tho might take time
I can make a particular machine if you want
lol ive played koth just 4-5 times i got no idea bout machines i havent played em all
its upp to you what do you want
Let's play random then
Let's gooo
@wind oar you up bruh?
You guys still playin?
@dusky berry no bro, very busy
...
@dusky berry no bro, very busy
@wind oar Not a problem G
You guys still playin?
@turbid narwhal Yes rn
join
@nova stream hey man
What's up
ma kore
Ma nishma achi
What language is that?
hebrew
Ohh cool
youre doing koth with us?
@nova stream if youre free add me we'll do games later
later
youre doing koth with us?
@turbid narwhal
yep
tough one
oh why
metasploit isnt everything
i tried some things and then i saw smb i just went for it
I know I just thought it was going to work
there was the flag there
It was an RCE
No the one on 8080
no i succeded to get into the form and get admin
i looked at the code there and i saw code of js in the notes so i deleted the notes and tried logging using admin admin and it worked
idk if the js code was the thing that made that
oh was there a form in 80?
in 80 and 5000 there was a file upload but idk where it uploads the files
I found a forbidden image directory on 80
oh nice
What did you do to the smb
smbclient
Oh thats it? Anonymous share?
public share
yea sure
@sharp parrot wanna play?
i got work to do later
Same ill be on later
bruh moment
i got no one to play with
@gentle hatch here ya go
u tryin to find suid's?
@fair adder yea
for anyone in this game
@fair adder you keep throwing everyone out
It's a poor defence technique
weird i played this box yesterday and the priv-esc method is gone
It's a poor defence technique
@quiet schooner actually everything's patched
i'll let them to strugle
yeah so no need to kill shells
weird i played this box yesterday and the priv-esc method is gone
@gentle hatch i patched it lol
it's impossibile to become root
like for real
well im pretty sure thats against rules lol
actually if there is no way to become root you have broken rules
you must keep at least some ways to get in
oh fu
no thank you
i'll put now somethings
just leave the original priv-esc
k lemme fix that
still not fixed lol
done
bruh
check now
y'all playing dirty
bouta try dis shit
Cod lobby minus the 10 year olds
=]]]
dude they have logs
reset ig
chill
what an annoying game
i mean you broke rules when you messed with the priv-esc
nah i didn't actually
i spoke with an admin
i should left one way of getting root tho
reset people
nah i didn't actually
@fair adder you took all out at first
question so i know im not wasting my time, how hard are these things?
like we talkin some weird binary exploitation shit
or jus some ez stuff
i mean you broke rules when you messed with the priv-esc
@gentle hatch wat
lmfao dude , someone completly stopped the ssh
the ftp too
that it's against the rules
yeah ik , at least the one who stopped the services maybe he's gonna put them up again
imma report this
@fair adder dirty players
๐คทโโ๏ธ you can always reset the box. If it is actually an issue then other players will support you on this.
If not then you know the problem is on your side.
the ssh isn't working , the ftp too is not working
and Droggie it's king on the box
like wtf
@gentle hatch did you close ssh/
nope
so who did
we'll see on the logs
y'all quit screaming at eachother, reset the box if you need to
Move on.
but you're the king on the box , that says somethings
i was root on the box with my name in king.txt , then everything stopped
OTHER PEOPLE CAN GET ROOT FFS
@fair adder @gentle hatch you two play just the same way
Move on.
omfg
(also, just so you know, whoever was last to put their name in king file, then website will show them king, even if the box is dead.)
is trash talk part of the game?
is trash talk part of the game?
@teal raptor afaik it's part of the bundle
if anoyone want to join
Please read the KoTH rules, and the discord rules
And also, please cut back on the cursing?
i gotchu
out of pure curiosity how did you end my shell? i was tryna figure out how to end yours but i didnt know how
or did you just shut down ssh
Wasn't me, but you can kill the bash/sh process
IIRC restarting/killing SSH shouldn't boot you out but I'm not 100%
maybe a combo of both because ssh isnt responding
I think its my end i cant even ping the machine
!vpnscript
dang, it came back clear but i still cant ping it
shame but i gotta go eat anyway lol
Join in, 20 Minutes, public
@flint cloud
Ooof
Hop in
Let me boot linux up
11 minutes
we are allowed to kill shells , aren't we?
Yes.



