#koth
1 messages · Page 53 of 1
pls reset the machine
idk why but something is continuoulsy dissconnecting
@dull geode
no
I got root
what are you trying??
I got disconnected too
but then I got to know the problem
try
I'm already root
ther's no problem with me
I'm all OK with the machine
and
for a tip
if you're using
smb
then
you must specify your group first
idk why but something is continuoulsy dissconnecting
@weary axle lol it happend to me too you just have to look around
Try to put everything in one message? 
ah sorry
just reset the machine quark......its easy to get root
I already have
reset*
-__-
OK
dont remove it from sudoers list
awibdawiaw#@$@@$@$
dont remove it from sudoers list
@weary axle lol do you want me to put your name into king too??
I can do that for ya
thats so fine with me but let me try to get root then
I did that at the starting
I patched everything
then game over
aree -__-
how do we unpatch??
what??
lol
can we remove commands?
did you get anything?
well I being the nice guy
can tell ya something
||there is a vuln in the webpage||
what rooms shd i do?
linux privesc is sub only
anyone?
yes ?
im new for this
and that too
GG
GG
How long till it starta > https://tryhackme.com/games/koth/join/55332abfbfec4601318714aa
@barren oar
why did i join so late -_-
So we killing shells now ? Lol
Ggs
yu
So many loops lol
Cuz it was changing so fast
i tried to write it but still empty
Bc of the loops
i thought so
But i fixed
Maybe i broke the king.txt and cannot fix
@fair adder can i Dm for a question? 😄
i killed like 20 loops but still not enough
@fair adder can i Dm for a question? 😄
@opal pond Sure
Look
But the game was over
Who was killing my shell? xD
@fair adder I won’t let me ?
@opal pond same here
Who is killing my shell? xD
@0xff00df#6242 that would be me
Who is killing my shell? xD
@fair adder that's me...😆
Yea, i do, bc you killed my shell
But u killed mine so many times
@opal pond so i was killing both of your shells
:xD
i was just bored
@opal pond so i was killing both of your shells
@barren oar same i killed eveyshell except mine
Yea, i do, bc you killed my shell
@fair adder dm me ?!
@fair adder dm me ?!
@opal pond For what?
Question
how you broke king.txt file
Question
@opal pond
If you have a question, you need to dm me xD
@opal pond For what?
@fair adder ??
If you have a question, you need to dm me xD
@fair adder Your message could not be delivered because you don't share a server with the recipient or you disabled direct messages on your shared server, recipient is only accepting direct messages from friends, or you were blocked by the recipient.
It won’t let me tho
Add as friend
Sent
@fair adder ??
@barren oar ? -'
@barren oar ? -'
@fair adder request...
anyone interested in an private KOTH => hogwarts?
anyone interested in an private KOTH => hogwarts?
@fair adder i do
10min?
@fair adder link
@barren oar done
Wym done
Can i join?
how you broke king.txt file
@barren oar try reading koth blog post for that
Got a game starting in 15 minutes: https://tryhackme.com/games/koth/join/85f13ef3be3afe0690909ef1
That game starts in 3 minutes
Anyone is hosting a game?
Starting in 24 minutes https://tryhackme.com/games/koth/join/dc996266be643e96c8bff9e8
GG
where do i find more 4 flags
where do i find more 4 flags
@weary axle On what box?
panda
if you use the find command, and a little bit of the strings command, that should help you with most flags
gg @weary axle
especially once you have root access
although i haven't been able to find the final flag myself....
@wanton sedge , do you have all of them for panda?
no only 6
no only 6
@wanton sedge damn. i haven't found anyone who has all eight
wanna dm, compare, and see if we have all 8 between us?
hi!
anyone interested...
starts in 20 mins
anyone interested...
@barren oar 20 mins passed already but feel free to join
@barren oar 20 mins passed already but feel free to join
@opal pond ahhh hell you already patched it man
Vote reset if u want im up for the challenge:D
Vote reset if u want im up for the challenge:D
@opal pond 😅
join 🙂
still have 16 minutes
Post the invite link if you want others to join.
ok
done
still 4 min to start !!
20 mins if anyone wanna join...
https://tryhackme.com/games/koth/join/ac97c34c8604a55206c15c81
is it allowed to stop or change ssh port !! 🤔
It's against the rules to close ssh, typically
i have game someone close ssh on tyler
That's what one of the mods put
i have game someone close ssh on tyler
@wanton sedge Mostly players just change the port of ssh, so you should rescan the machine if you think port/ssh is closed.
is it allowed to stop or change ssh port !! 🤔
@wanton sedge Give the rules a read.
yes i found another port sorry
NP :)
i did not closed i just changed it
yes sorry @barren oar gg bro
yes sorry @barren oar gg bro
@wanton sedge its ok bro
ya gg
you have other options to get the root sheel straight
you have other options to get the root sheel straight
@barren oar did you know that
yes but cant do anything with them
why
i just patched patched them 5 min before machine expires
there was a python app running and you can upload your shell to it but i patched it
gg i will try hard next time 💯
gg i will try hard next time 💯
@wanton sedge yeah good for you man
@wanton sedge yeah good for you man
@barren oar btw GG
find is a great command
anyone interested...?
https://tryhackme.com/games/koth/join/9abcb3653be31c06f92ac3be
why i cant find king.txt file in Hogwarts
why i cant find
king.txtfile in Hogwarts
@barren oar ohh i get it...😅 my bad
u got to make a king.txt
@barren oar did you stop ssh?
no i did not
@barren oar did you stop ssh?
@bleak delta
@barren oar did you stop ssh?
@bleak delta try again bro
i just patched the server
yeah, it is back now
yeah, it's weird. I still cant figure it out
gg
gg
@barren oar thanks but youre the only one had a good game
@barren oar thanks but youre the only one had a good game
@bleak delta thanks
anyone knows about this string "U2FsdGVkX1/VyDt0m+OP9RH0vvwnqiEAgkpgNxsGeVDohJqH0x5xPSjkaw+2mGQ3"
starts in 10 mins
why cant i edit?
@weary axle its my new trick
:xD
how many time you guyzs gonna reset the box
tell
not now
-_-
-_-
@weary axle 😅
anyone?
anyone?
@weary axle yeah
not now
ohh ok
not now
@weary axle
it must be loops or someone used chattr
Game in 20 mins
https://tryhackme.com/games/koth/join/b0aaee83ad0ff22f784cf2d3
Game in 20 mins
https://tryhackme.com/games/koth/join/b0aaee83ad0ff22f784cf2d3
@barren oar startng in 1 min
that,s why i,m struggling with ssh
done
cool
you killed my session
that's a common thing bruh
just use ssh in different tabs
and
keep changing
root passwords
i know that bro
nice then
@barren oar ssh is down
killing ssh is forbidden
i know
now what
🙂
it's not me
by the way GG
i have created a symlink /usr/bin/python3
so my script runs when you run a python script
yeah i saw that one
i just saw it but did not try to change that
i was searching for the watch service that man killed it thats why my name does not appear
yeah
i was sick of that man he just killing ssh ports again and again and then he killed watch service
yeah i understand but you're not alone ... he did the same on me
because i prefered still king ...
@fair adder
yeah
my ssh is not working it just wait and wait and then close the connection
did you know any solution
where i have to use private key mostly
not really
yeah i can play
Ok cool hum let's create a private game
Do you want to do an easy machine just to be root and then "fight with me" ?
as you wish
Lol
Heck yeah
I'll be honest, that's wayy cooler then nyancat
wait how to meterpreter inside machines?
You can't
starts in 3 mins....
https://tryhackme.com/games/koth/join/28bb22fc303da36320fd52eb
Because someone removed chattr
gotta game starts in 9 mins
Im interested if there is a writeup for Carnage? I found one way in but really want to learn from the other ways...
yeah thats the way i found - just curious on the other ways
GG
Hi, when someone use chattr on king.txt, is there a way to find this user or its tty ?
idk
Hi, when someone use chattr on king.txt, is there a way to find this user or its tty ?
@fair adder Yea
You can find any user tty with ps -au
If the user was logged in ssh, you can who -a also
thx
What’s the possibility of other Koth rooms being released to the room pool of THM. It would be great to practice the rooms or have an increased time for KOTH boxes to really run a full pen test on them.
What’s the possibility of other Koth rooms being released to the room pool of THM. It would be great to practice the rooms or have an increased time for KOTH boxes to really run a full pen test on them.
@livid ginkgo if ur subscribed why not create a priv game and select the room u wanna run a full pentest on ? Maybe invite a friend or anyone to stay in the game so u can play
wont there still be a timelimit?
It’s the time that’s the issue @opal pond. I have done things like that just wish it was longer
wont there still be a timelimit?
@wraith geyser ik but u can do it multiple times back to back
It’s the time that’s the issue @opal pond. I have done things like that just wish it was longer
@livid ginkgo .
they dont want it to reset tho
they dont want it to reset tho
@wraith geyser i mean its not like a big network that u don’t want resetting
But eh thats my opinion,that would be a good option to add tho anyways
What’s the possibility of other Koth rooms being released to the room pool of THM. It would be great to practice the rooms or have an increased time for KOTH boxes to really run a full pen test on them.
@livid ginkgo I might look into releasing Fortune standalone
That sounds good @terse willow I did fortune a while back and would love to work on it fully. What makes a room qualify for a KOTH room as opposed to a standard room out of interest?
Is it multi routes in?
KoTH boxes are designed to have at least four access points, and at least four privescs
Standalone rooms are, well, any room on the platform 😆
It just means that we take the VM and stick it into a room so it can be deployed at will
Currently the only KoTH creator who has done that is James
Food and Hackers > Currently the only KoTH creator who has done that is James
@terse willow
Okay. It’s good to know that there are 4 ways in to look into. I really struggled with finding another way with carnage. I suspect one other way, but really not sure.
Hi, what is the best way the keep a root access on koth ?
prevent others from getting root?
no but if i loose my shell for example, how can i be root in a quickly way
Leave a backdoor for yourself
can you give my an example ?
https://github.com/NinjaJc01/ssh-backdoor rumour has it I made one
thanks @quiet schooner !
you can just drop a suid sh somewhere random
Assuming you can get back into the box at all
hm, yours would show up on ps aux, right?
There are a few ways to stop things from showing up in the running processes
Honestly doing it at the kernel level with an LKM is probably the most common in KoTH
A root kit, in other words
hm, yours would show up on ps aux, right?
@wraith geyser Yep. There are ways to do it with SSH keys that won't, as it'd be a part of SSH
james how would i use it?
It?
backdoor
yeah, another option is to drop a key into .ssh/authorized_keys
wait after generating a ssh-keygen in root how would i make it in use?
I mean I built it for a room, you can try using the help dialog or work out how it works yourself
I'm not writing docs for it.
u made it atleast tell me how to use it
what shd i do for help??
what command?
name --help
but what will br in name?
u made it atleast tell me how to use it
@weary axle I'm not obligated.
ssh-backdoor --help?
ok fine
wait after generating a ssh-keygen in root how would i make it in use?
There are a few ways to stop things from showing up in the running processes
@terse willow
Honestly doing it at the kernel level with an LKM is probably the most common in KoTH
@terse willow
Do you have any good resources so I can go out and learn how to myself?
I'm not big on KM development myself. I've done it once or twice (for Inoculation, for example). @rancid pewter would be a good person to speak to about it though.
There's plenty of stuff on Google as well
Some decent Youtube videos too
ipp recommended this rootkit here, its open-source, read thru the code and get an idea for what it does https://github.com/f0rb1dd3n/Reptile
great old-school article here on intercepting sys-calls, gives you a good idea of how these kernel modules work http://www.ouah.org/LKM_HACKING.html
I'm impressed
That thing is compatible with a range of kernels
Good thing for the notes
the port-knocking backdoor is really cool too, once my homelab is set-up Im gonna be messing around with it more but unfortunately haven't had the use-case/opportunity to use it much
I actually have lost my rootkit it in an encrypted hard drive that I have forgot the password.
RIP
I actually have lost my rootkit it in an encrypted hard drive that I have forgot the password.
@rancid pewter rockyou all the way
real life forensics 
Probably the best time to play against me on KOTH I dont have any reverse shell or script to put my name in king and I dont have my notes for the boxes
How long till it starts
1 min
Can’t make ot
It
Probably the best time to play against me on KOTH I dont have any reverse shell or script to put my name in king and I dont have my notes for the boxes
@rancid pewter lol
ssh is down
ssh is down
@fair adder its not
ahh ...
ahh ...
@fair adder checkout robots.txt
ssh -i id_rsa_shrek shrek@10.10.155.16
@fair adder checkout robots.txt
@un.kn0wn#3578 .
?
Check out the robots.txt on the web server
i did it
ssh -i id_rsa_shrek shrek@10.10.155.16
ssh: connect to host 10.10.155.16 port 22: Connection refused
When ? > i did it
@fair adder
i retry wait
Check it out now
Jesus Christ just check robots.txt i put a list of ports for u to try as a hint
the target is well 10.10.155.16 ?
Ugh its port 6969
i try it
🤦🏽♂️
🙂
@fair adder Do not post spoilers here.
Also avoid messages that contain specific info about machines, Mod (Bee) just deleted your message.
Yup! Listen to Holmes, KoTH staff so they know what they're talking about 😄
i'm sorry
Probably the best time to play against me on KOTH I dont have any reverse shell or script to put my name in king and I dont have my notes for the boxes
@rancid pewter that's why i migrated all of my notes to git as .md
anyone up for a game?
I am, if it's not Hogwarts
Imagine creating a machine and not able to play it
The reply I want to give will get me banned.
lol
15 minutes, set to random. https://tryhackme.com/games/koth/join/19cf731df7b86be9c3a22fd9
cool
i'm probably not going to go ham on the box. gonna refine my notes for the different ways in
ok
GG
true
Starts in 5min
The reply I want to give will get me banned.
@stiff egret say it
holmes just said pg18+ words, ban him
He deleted his messages
||i just want a mod to read this and add a warning for you||
-warn @nova tide Attempting to get @stiff egret in trouble
⚠ Warned Naughty#9045
....
THANKSS
Yw 😁
Lol
holmes has divine protection
lmaoooo

why dont flags change

why dont flags change
@weary axle they will soon™️
5 mins
anyone up for a koth?
you mean that someone kill your ssh connection when you're connected to the box ?
hum ... i am not a specialist in koth rules, but i think that he can do that if he creates another way to enter the server
No attacking other users (rules 6)
are you root ?
which game it is ?
yeah i mean room
if anyone wants
5 mins
@stiff egret
@regal acorn ?
Yeah it is allowed, he only killed your ssh connection to the box.
i wanna join you guys too
can you just ping me if you need members
well i am in a room currently , join if you wanna join.
https://tryhackme.com/games/koth/13676
can anyone just hint me when is a koth play said to be cheat?
Changing/deleting flags , turning off services is considered cheating I think
Changing/deleting flags , turning off services is considered cheating I think
@cerulean maple Definitely with the flags. Patching services or changing ports is acceptable tho
Yes , some of them kill shells which is not cheating but is annoying xD
Kelly killing kshells at the KotH core. Try saying that 5 times.
Just did that @sonic belfry now what did I win?
The Eternal Glory.
^^
The Eternal Glory.
@sonic belfry scam
Probably someone is running some codes on it, and you checked it in middle of a loop.
Well then simply add your name in it.
That's the aim.
All here to learn. NP :)
https://tryhackme.com/games/koth/join/4db17084f31cbb837e84b332
@Mr.Holmes#0001 when does it start
Already running,
Already running,
@Mr.Holmes#0001 ah ok Gl
im bored anyway
@fair adder you still playing?
no i didn't even play
ok
.
.
.
Just here to break the rythm
Goddamnit
Morse code detected. Abandon ship.
.
@hoary fulcrum If you want to check your level etc, please use #bot-commands
.
.

if someone wnt to enter!!
idk if its supposed to happen, i was just on hogwarts, found a ||zip file and could not crack it with john, it said no hashes to crack, or something along those lines|| and I couldn't get any further than that
That is intended, you need to crack it.
I attempted to crack it, it just wouldn't
@fair adder hey mate can you send me a DM when you get a chance?
lol
.
.
why can't i change the permission of this file😡
@barren oar try chattr -i king.txt
there is no chattr on the box
oh 🤷♂️
@barren oar #koth message
why can't i change the permission of this file😡
@barren oar same here
i was root but couldn't edit the file 🤷
I had the same problem
see link naughty posted
lsattr king.txt?
@weary axle yeah i did check the file usinglsattr
Is it possible for people to remove chattr?
or am i missing something, a few times I've been unable to use chattr to add my name to king
Is it possible for people to remove chattr?
@jagged tinsel
u can delete it
i mean, is it allowed on koth
I'm pretty sure it's not against the rules.
Ah okay
koth>
it doesn't mean immutable
and so what does it mean ?
google?
i found thanks for your answers 🙂
One slot left
who shut down ssh?
It's not off, someone changed it's port
redo the nmap scan.
Please reset, whoever is in the above game, someone removed king service.
well this is fun...
well, whoever is pr1sm, they are breaking the roles.
I'm not getting point for being king even tho it says im king, I only have 1m of king time and ive been king for 10 mins
is the king service disabled again?
Its not disabled, I think I know why... doing lsattr king.txt says -----a-------e-- so I can append to the file, but can't overwrite it, correct?
Yeah.
Eitherway, my name is in their twice because it's been appended not rewritten
so it's not giving me the points
cus my name isnt lewisosflewisosf
We are not in same game.
You need to change the permissions on king.txt using chattr.
Give the blog a read or maybe google about chattr binary.
Yeah we're not, just needed some help 🙂
I forgot about chattr, will give it a go
:))
chattr isnt on the box 😦
upload yours
i just did that, when i ran it, it didnt work
make it executable/ upload the static binary
made it exec, uploaded it, made it exec on the box ./chattr works but doesnt seem to do anything when i use ./chattr -i king.txt - can't write to file still after that
someone can be doing that in a loop.
2 mins to the box ends anyway so not much time left
box ended, I won luckily lol
You can always read the blog post
with private games are the rules different or do you still have to follow the same ones
With private games you can do what you want, as long as it's agreed by everyone 🤷♂️
*be aware that attacking other user's machines is pretty illegal
anyone playing now ?
can i watch someone do a koth
You can if someone is streaming KoTH , if not then you can watch JohnHammond's video on it
who is playing this? https://tryhackme.com/games/koth/13856
(invitation link https://tryhackme.com/games/koth/join/afee24c60c815adc8e5f7848)
Hello all 🙂 I was trying a random KOTH join for some practice and ended up with a new game launch. Players in the range of THM lv10 would probably match closer, but all are surely welcome:
https://tryhackme.com/games/koth/13888
Game starts in about 15 minutes
^ you gotta put the invite code (i joined through public match) - https://tryhackme.com/games/koth/join/a533b2cd2944dff952885aab
Ah, not really sure yet how this works. 😉 Thanks for the assist @jagged tinsel
Where do I get the invite code for a launched game?
on the KOTH page (where you see us in the lobby), in the top right you should see an "options" buttion, theres an invite link and a spectator link
++ got it for next time, thx
I am aware there is 1 Windows box in the current rotation, and honestly will have no idea what to do if that is our draw.
Up for some play and some new things to learn, regardless 😄
I'm the same 🤣 i can't do windows boxes at all
lol @jagged tinsel is a sandbagger shark...10 mins on "no clue" Windows box and @ 8 flags
I did the box earlier unfortunately (lucky for me i guess) and have all the notes step by step on how to get in
it's ok @jagged tinsel , I expect there are ppl like you haunting around here for their kicks
I'm still try to learn something new today
I had no idea it was gonna be a box I have already done, I wanted to get on a linux box as I have only done 2 or 3 of them, wanted a new one
@jagged tinsel you be you trying to collect and rack wins. I be me, trying to learn new stuff
...no concerns
not on the box, but have gotten a lot of Windows exposure in the short time. AutoRecon is helping with what I should be studying for later.
Interacting with this SMB...just not seeing yet what to do with it for points
Well I think 800-0 at 1 min left is good time for gg
:)
Maybe I win another day @jagged tinsel , thanks for the join and my chance to look at this a bit.
Yeah as I said earlier, I did this before and made a write up so I know what to do next time, so, sorry for that. I didn't mean to join you and instantly get on and get the points. There are quite a few boxes I haven't done and that's what I was hoping for honestly, i apologise
@woeful rune
Don't worry 'bout me being "butt hurt". I'm a big boy....but maybe don't act clueless when there is literately 1 Windows box in the rotation, and you have experience with it
i dont uderstand priv esc in windows at all
Hey @broken berry .. Howz koth going
great actually
Is there a sixth flag?
@broken berry i only find 4 flags
i found 5..dunno if there are any more
@dapper fern you in?
Anyone up for a game
Sure ping me if you play :))
yeh cmon
Sure ping me if you play :))
@Mr.Holmes#0001 im in a game that starts in 24 mins, send me a link if u’ve got a game that starts sooner if not ping me to send the link
Or i can start a priv game
We both in are in same anyway 😄
Welp
No flags ?! 😂
Or can I submit them the last sec again lol
yeh cmon
@dull geode join if u want
Wait I thought i did lol
Ah aight so no flags this game ?
🤷♂️ your call, you submit flags, I submit flags
Well of its not hogwarts or Offline
🤷♂️ your call, you submit flags, I submit flags
@Mr.Holmes#0001 bet
Yeah, I can't play either one
Same
If anyone else wants to join ^
Ffs
Create a priv game
You making or should I?
you ppl not playing anymore?
Im not
I avoid offline and hogwarts
all the fun just got down😐😐
Same
hogwarts
I just can't figure out anything about hogwarts
(yeah xD)
Enumerate more?
yeh
Well the real question is why do U avoid it lol
but never got hogwarts again
it won't be a fight in hogwarts, I know the machine inside out
Fair enough
bye guys
ok time to bomb thread the king file.
ok time to bomb thread the king file.
@Mr.Holmes#0001 ay shrek wont let me finish lol i was tryna say i though u did that to me once so my bad we can restart if u want
nah, doesn't matter it was just sleep binary.
For offline, start with ||smbclient|| later on ||psexec|| will be your friend
(I know the machine, It's just I dont like playing koth in windows) I dont remember powershell commands
GG
Gg
GG
(I know the machine, It's just I dont like playing koth in windows)
I dont remember powershell commands
@Mr.Holmes#0001 i found some || domain users|| with ||kerbrute|| but non of them apparently had ||DCSync rights|| no luck brute forcing the passwords too, is that the intended way ?
Or am I missing something again
just give the machine a ||--script|| scan with nmap, you'll get what you need
Welp rip all my efforts
do people know to look for more than one flag because no one else is finding flags in the room i am in and i have found all 8 of them
Some may prefer to go for king straight away instead of caring about flags
ok
because as soon as i got king i went to all the user folders and got the flag.txt files
and i would have got a longer king time if someone didn't keep closing my msf shell
which is how i had remote code execution through cmd
Join us :)
Hello
hey, can anyone tell me why the user flag on the lion machine is reversed
especially marty's user flag
and alex's flag is always incorrect
They are intended jokes from the box creator.
oh nice
Many flags are reversed or base64 encoded or in similar trolls.
Wouldn't you know 

yeh what else we need when we have one
Throne awaits you :)
somebody knows how i can execute python code (c option) with this : sudo -u <user> /usr/bin/python3 a a: ? When i put : sudo -u <user> '/usr/bin/python3 /tmp/script.py' a a: it's not considered as a program :/
i noticed that when i execute the first one python gets an -o argument idk why ...
Is this KoTH related?
Lets see what you got ?!
@opal pond
Lets see what you got ?!
@primal shoal how about tomorrow 👀👀
Now:)
Links is ready, i know your timezone ,)
Um that’s weird?!
Another one
don't you guys think 1h is a bit short? I'd love to have the option to continue searching for flags (after the king won the game). I found pretty frustrating, always in the middle of the something (working on a vuln most likely, learning a lot 🙂 ) and the machine stops responding (1h elapsed).
There are few plans in works related to that :))
Anybody want to play KOTH after two hours
@final cairn maybe you should download some KOTH's themselves and try to compromise them in your own pace
Mhmm. That as well, some machines are also released as room to deploy and use individually. Hackers and food are 2 examples.
oh nice, glad to hear it 🙂
where can we read more about this? @stiff egret any roadmap ?
where can we read more about this? @stiff egret any roadmap ?
@final cairn about what ?
about what's coming soon or in the future for koth
Idk bout future stuff for koth but about koth in general check the pins
yeah well i was asking for a roadmap nvm ^^
No, there is no roadmap as of now. RN the next big thing is advent of cyber 2 atm.
alright cheers
And the tour- waiiiit I’m not supposed to say that
👀
CRYYYYYY!!!! You will make dark remove our roles as well.
If it comes to that, I am throwing you under the bus!!!
dark can bite me
@mellow bough oh this is gonna be fun
starts in 13 minutes
See yall :)
The throne awaits
@brazen cloud ayy he knows
@opal pond
https://tryhackme.com/games/koth/join/3f04222863ebc998dbfc680f
Starts in 17min, it's just me for now
That's a scumbag move Karma9874 😄
wtf XDDD
Starts in 7 min
gg
Are you guys in voice chat?
nopw
15 min
I'm down
See ya
@sick turtle
Whats your handle there ? 😁
You mean my username in THM? guynamedjerry
Ok
If you think someone is breaking rules just mail the game id or maybe the suspected person as well to koth@tryhackme.com
Can you please cool it with the cursing tho?
ok
9 min
guys
@wraith geyser
It was just bcz of your username
the Brazilian guy
Has anyone gotten anywhere?
Already started
What?
And is like in the finish
That's not what I meant, sorry. I meant has anyone made any progress in finding out flags and such?
Yeah
I'm in the game as well
I'm guynamedjerry in the game lol
Bro send me the link
Wait, what link?
Current games link
Here you go:
@sick turtle
Oh thanks, @primal shoal
If u wanna join in case
Nice! I'm in.
Has anyone made progress yet?
This is a hard one, u have to port scan for high ranges
Just got results from -p-
nice
https://tryhackme.com/games/koth/join/0e724a6432f95021dd4afb9f
Starts in about 13 mins
Just started
GG
@sour zealot how'd you modify king.txt?
It had rw permissions when I checked in through port 3000 as root
That was good though:)
Come and get 'em!
https://tryhackme.com/games/koth/join/39d658d2e337642562df5b43
Got king for the first time. Nice!
10 king changes in a row!
15 mins
did someone kill the box
the box still running
hm i cant connect to any ports?
idk, but I still can
oof
as i suspected
oh yea, I saw the rules
and now he blocked my web kali too
I flushed the rules lmao 
nice ty
I'm a noob trying to learn fast. I start by running nmap and then usually throwing the IP up in ZAP because port 80 is almost always open. I look for low hanging fruit but idk what steps to take next to enumerate a target thats only open on port 80 or similar.
I usually try to use ZAP to find weird logins and fuzz them but I'm not really getting anywhere
In KoTH?
You're gonna wanna do a bunch of easy to medium rooms in THM before playing KoTH IMO
^^ plus, you can try koth boxes that are made public to get an idea of koth without timer hanging on your head :))
Ya I've been jumping in some public games because why not
but obviously not getting on the box at all
Hi, someone wants to do a koth ?
Thanks for the refreshed rooms - like it
wanna?
yes
1 vs 1?
or a public game
Imma join in a bit
decide
random game
private
3 mins
fine dude, im not in mood right now.
but lemme give a try 🙂
What are the tasks in koth?
pwning and securing target server
@zenith sonnet no problem !
Ight I may try it sometime
and also net became slow lol
:/
lets take it friendly instead of taking as challenge for now..ok
im playing this one
are you thearb on tryhackme ?
yeah
cool !
u changed something?
nothing
How long till u guys finish
30 mins
@opal pond you want to play with us ?
@zenith sonnet did you see my msg on your terminal ?
@fair adder dude, im sleeping
oh sorry
sry, i was already sleepy as i said, just gave a try. lemme play tomorrow
no problem dude !
u locked flag files
didnt u?
@opal pond you want to play with us ?
@fair adder yes
I had already got root access before you did so
Yall finished?
can u tell how u r getting flags from locked files, if u didnt locked?
Actually make if 5 if u haven’t already created one
fine, you won, but how u got flags from those files?
write me in private mode
sent
it was a good game, aren't you @opal pond ?
GG
did you take the C ?
Did u take the L ?
lol
don't forget to read rules too
🙂
Resets should only be used if the target has been broken or otherwise rendered unusable; resets shouldn't be used to prevent users from gaining access.
don't forget it
I've been correct with you during the whole game ...
Mate first of all it was a private game, second since u already had the creds u logged in fast and got king for 24 mins during which I tried to kill ur loops :/ wasn’t able to so I reseted the box once and since i had creds like u did the first time i got king faster with my loops ( just like u did ) I don’t believe thats against the rules ( plus i told u if u though it was unfair u could reset the box as well i was ok with it )
I didn't kill any loop bro
Nobody said u did ?!
Just bc u couldn’t kill my loops and get king.txt and lost doesn’t make me cheater I literally did everything that u used against me so ... 🤷🏻♂️
But again GG 🤷🏻♂️
You went againts the rules, even if it was a private game
Bruh resetting the box once when there are only 2 players isn’t against the rules
don't try to put the blame on me, it wouldn't be fair.
Resets should only be used if the target has been broken or otherwise rendered unusable
no ?
Maybe if u didn’t use ur already obtained creds and get root in like the first min and run loops I wouldn’t have reseted the box ( after a whole 24 mins trying to kill the loops )
I did only one loop, and you could be root just by typing sudo -l
My man Holmes help me out here
Normal rules related to resets, though appreciated if you follow, are not very strictly imposed in private games.
I agree, but it was necessary to say that resets to win was allowed then
It's private game for a reason, you made the link, you added people in it, its understood that you either know the players in the game or you have basic understanding with them, hence we can't moderate them too much.
I understand ...

