#koth

1 messages Β· Page 61 of 1

dapper yew
#

oh no , 😦

#

ayy , bro dont πŸ˜†

stiff egret
#

can't gotta sleep, 2:15 AM here :(

ebon heron
#

you are lucky this time

dapper yew
#

30 seconds , holmes , my fingers !!!!πŸ˜†

stiff egret
#

kekw all the best

ebon heron
#

ok sniper stop that urandom

#

ahh man

#

you are fast

dapper yew
#

whats wrong ?

ebon heron
#

you are fast

dapper yew
#

my fingers are frozen here ;

ebon heron
#

its snowing out side

dapper yew
#

i am surviving on heat of laptop

stiff egret
ebon heron
#

is there any way to get in

#

i dont think so

stiff egret
#

start hashcat then

#

or android studio

dapper yew
#

πŸ˜†

ebon heron
#

nice one holmes

#

there is no way

#

to get in

#

am i right sniper

dapper yew
#

😐

stiff egret
#

Which machine is this?

ebon heron
#

food

stiff egret
#

ah, nice, all the best πŸ˜„ Imma go sleep.

ebon heron
#

have a nice dreams

dapper yew
#

have cold dreams

stiff egret
#

πŸ˜†

ebon heron
#

the other players are still searching

#

if i bee second

#

that will be good

dapper yew
#

13 minutes .

ebon heron
#

like sniper

dapper yew
#

πŸ˜† bro food has sl installed , dang .

ebon heron
#

all the good players are here

#

sniper

#

did you solve the hogwarts before

dapper yew
#

if its hogwarts , i am exiting . i havent even solved it once

#

i mean i never got the chance to play it

ebon heron
#

i was trying to find how to solve

#

but i cant find anything

#

i didnt undersatnd

#

understand*

#

sniper are you using split screen?

dapper yew
#

nope.

ebon heron
#

wait sniper

#

are you looping backdor

#

again?

sonic belfry
green axle
harsh obsidian
quiet schooner
#

You know I'm not sure I installed it

#

Oh nope I totally did

nova tide
dapper yew
#

πŸ˜‚πŸ˜‚ James , you created food box uh? Or you modified it?

harsh obsidian
quiet schooner
#

Hackers and Food

stiff egret
harsh obsidian
harsh obsidian
stiff egret
#

πŸ€”

#

you in the shell with PATH removed

harsh obsidian
stiff egret
#

πŸ€”

harsh obsidian
stiff egret
candid geode
#

Is anyone else experiencing long machine boot time at the beginning of games? Sometimes, machines like Hogwarts and Offline takes about 15-25 minutes to fully become available.

stiff egret
#

Offline is windows machine, hence slow boot times

#

regarding Hogwarts, it's different, so it's not actually booting slow, but the port scanner that you are using is dropping packets to speed up the scanning

#

to check if it's booted, always scan for port 22.

#

if that's open, then chances are everythingis

candid geode
#

Yeah, that makes sense, thanks.

stiff egret
ebon sleet
#

koth someone?

dapper yew
#

@stiff egret just a reminder regarding the hacker of the hill , any updates ?

stiff egret
#

I got the info, just confirming rn with skidy If I can post that here.

dapper yew
#

πŸ˜„ πŸ‘

stiff egret
#

@dapper yew Just confirmed with skidy, there is a detailed post to be released soon. If there's nothing by tomorrow, I'll post the info here. :)

dapper yew
#

thanks holmes πŸ™‚

stiff egret
#

ouch

#

soonℒ️

nova tide
#

i don't believe you anymore.

stiff egret
#

kekw me too

nova tide
#

you are getting lazy day by day.

stiff egret
#

me too

dapper yew
stiff egret
candid geode
#

What should I do if someone kills the services on all ports?

candid geode
quiet schooner
#

Report them

candid geode
quiet schooner
#

Check the pins

candid geode
last ether
#

I didnt kill the services by the way

#

πŸ˜‰

#

Just playing the same way you do

#

@candid geode

candid geode
last ether
#

It is available

candid geode
#

I can't even scan for it.

last ether
#

And there are many other ways to get onto the machine

#

Send them the room id if you think I am not following rules

candid geode
#

The website backdoor is also down.

last ether
#

That was just working for me

stiff egret
#

Spectate link?

stiff egret
#

Really, it'll be a lot helpful if you'll just upload the game ID here

candid geode
last ether
last ether
#

But isnt the backdoor the vulnerability that needs to be patched

nova tide
#

Removing that whole folder doesn't count as patching.

quiet schooner
#

You can 100% patch it without doing that

#

I made sure of that

last ether
#

I was getting kicked out in nano seconds

dapper yew
last ether
#

So I actually just copied the index.html from the parent directory into the backdoor folder

dapper yew
#

can you share the joining link

candid geode
#

Here is a match.

dapper yew
#

wow this is about to end kekw

candid geode
stiff egret
#

Here's a free advise/method I use in these scenarios:

#

You send commands using this method, you won't have a Process ID, so you can't be killed.

candid geode
stiff egret
#

Or password.

hazy geode
tidal juniper
#

Hello everyone loves to play on TryHackMe especially KoTH, I just played KoTH but there are some tricks that I don't know yet like what is using urandom for? and how do i do that?

candid geode
#

cat /dev/urandom > /dev/pts/<number>

tidal juniper
#

means it will pop up random characters that fill people's terminal screens? and how to find the number of pts?

stiff egret
#

You can google details about that, but for a start, you can find the PTS by typing, who command.

tidal juniper
#

Nice, thanks for help! @stiff egret @candid geode

#

but how to prevent such urandom attacks?

#

login with command ssh -t?

stiff egret
#

As I said, research, google around. There's also a blog on tryhackme related to this.

tidal juniper
#

okok thanks before

candid geode
candid geode
stiff egret
#

Post the invite link, no one can join with this link

candid geode
ebon heron
#

holmes dada

candid geode
#

Sorry, I used the wrong one.

ebon heron
#

kill him

stiff egret
#

not playing lol,

blissful kettle
ebon heron
#

4min

#

or 3

candid geode
blissful kettle
#

Nah it's fine

#

oof Offline

#

never done this one before

#

Now have to wait a bit cause Windows pepehands

ebon heron
#

its not that hard

#

blackout

blissful kettle
#

Yea I just cba now I setup my vm then closed it

#

Too hot in my room for me to concentrate kekw

candid geode
#

Wait, you are king now, when did you come in?

stiff egret
#

haxor

blissful kettle
#

Wait what

#

I didn't get in the machine

#

bruh

ebon heron
#

how

stiff egret
#

lmao really?

blissful kettle
#

Yea

stiff egret
#

I swear this time I am not playing ACTUALLY

#

lmao

blissful kettle
#

Well your king again well that was weird

#

Have I found a secret way to win KOTH πŸ‘€

stiff egret
#

lmao

blissful kettle
#

Unless you changed my name and are tricking us kekw

stiff egret
#

I am doing this lmao

blissful kettle
#

Noooo not you, the ones in the game

#

But if not then I am confused

candid geode
#

The flags are so easy to find on offline.

ebon heron
#

they are every where

#

guys is there chattr for windows?

candid geode
ebon heron
#

icacls

#

ok

#

thanks

candid geode
#

I never tried it though.

ebon heron
#

i will try to install it

#

on th box

candid geode
#

It comes installed.

ebon heron
#

yes

#

im trying to figure

#

out how it works

#

yeah i found it

#

to lock file

#

cacls <Folder Path> /P everyone:n

#

to lock folder

#

cacls <File Path> /P everyone:n

candid geode
#

I tried it and it also works.

ebon heron
#

to lock file

candid geode
#

icacls "C:\Users\Administrator\king-server\king.txt" /deny everyone:(DE,WD,AD)

#

I did this.

ebon heron
#

i love offline box

#

cuz its diffrent

candid geode
#

More windows boxes.

ebon heron
#

yees

#

how i can disable other players to join the windows box

#

as you do jiakang

stiff egret
#

change passwords πŸ€·β€β™‚οΈ

candid geode
ebon heron
#

ohh thanks jiakang

brazen cloud
#

#koth message omg that picture -- the background has the grids on it ewwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwwww

stiff egret
#

lmao

#

oh yeah

#

I noticed that all the images have that

brazen cloud
#

Wait I'll delete that before I create even more work for myself

stiff egret
brazen cloud
#

Oh no pepehands

stiff egret
#

want more

#

thank me later

brazen cloud
#

I have created an issue that wasn't an issue

stiff egret
#

I am guessing your response is restricted due to PG13 policy of this server

stiff egret
stiff egret
dapper yew
#

anyone wanting to play ?

stiff egret
#

I can actually play one game. πŸ€”

dapper yew
stiff egret
dapper yew
#

1-1:30 hours . lets just wait for 30 mins . if more joins , let's play . 2-4 people is not fun .

stiff egret
#

agreed

dapper yew
#

if anyone down to play , please message here πŸ™‚

opal dove
#

ooo

#

@stiff egret you trying to get into windows properly?

stiff egret
#

Yeah

#

one of the only weak points that I have

#

gonna improve in next couple o days

opal dove
#

ye, same here

#

I really need to improve it generally

#

feel like koths are a good way of doing that

stiff egret
#

not much in koth for windows, only one machine at the moment.

opal dove
#

you make it sounds like there's plans for more πŸ‘€

stiff egret
#

I don't wanna leak too much, but if I am right, there will be more machines before feb ends.

opal dove
#

@stiff egret gg

#

you got eJPT

stiff egret
#

huh?

opal dove
#

join vc

#

you won an eJPT cert attempt

dapper yew
opal dove
#

Holmes

stiff egret
#

damn

#

thanks

dapper yew
#

kekw as expected

opal dove
#

there's nothing this man doesn't win kekw

stiff egret
#

I literally had no idea

dapper yew
stiff egret
#

yeah

#

it was hard and fun af

harsh obsidian
stiff egret
#

The great escape

harsh obsidian
#

Nice!

stiff egret
#

It's actually an interesting machine, you don't/cant' get a shell except in the last part when AFTER you become root

harsh obsidian
stiff egret
#

yeah, the only shell you get in the end, it's of root

harsh obsidian
stiff egret
#

and it was a pain, because I didn't know that

#

so I tried every damn reverse shell there is to get a shell

opal dove
#

@stiff egret you could use the ||api|| to get a shell btw

stiff egret
#

IIRC, Shell was not possible at all.

#

||bc the docker was in internal network||

opal dove
#

nope, it was

#

pm, I can try and show you if you want?

stiff egret
#

||the 8080 api was running the commands in the internal docker||

stiff egret
opal dove
#

what about the ||docker daemon on 2375||

stiff egret
opal dove
#

uh

#

do you want me to try and live stream it?

stiff egret
#

||oh, what I did was, ran the docker priv esc command directly on that port, so the shell I got was root mounted shell||

opal dove
#

ahh right, yeah

#

so you basically just ignored getting a shell

#

that's what I did as well

stiff egret
stiff egret
opal dove
#

but you could run something like ||docker -H tcp://[ip] exec bash|| I believe

#

wait

stiff egret
#

oh yeah, def, didn't try that, but it is clearly possible

opal dove
#

you needed the docker *container name as well

stiff egret
#

you need container name

#

oh sec

opal dove
#

I can get the exact command for you if you want it?

stiff egret
#

I ran the first Shell command on gtfobins

#

directly

#

so it popped up root sh

opal dove
#

you needed the host in there as well I believe

stiff egret
#

yeah, ofc

opal dove
#

but yeah, it was pretty basic docker escape

#

I think it's common to use an exposed docker socket to do it

#

so I had never done it with the daemon before which was cool

stiff egret
#

yeah, exactly, escaping was easy, but getting to the point where you can see what you need to escape was hard

stiff egret
#

hence it clicked

opal dove
#

oo right

#

docker escape in koth?? πŸ‘€

stiff egret
#

nah, preventing docker escape in koth kekw

#

don't want you getting up to the host

opal dove
#

ahh right

#

:(

#

shame

#

that's kinda boring kekw

stiff egret
#

you'll see, one of these days, I'll make enough coffee to last me for 24 hours, and next day new machine will be released

opal dove
#

sounds perfect

#

the optimal level of working :>

stiff egret
#

for doctors

#

πŸ˜†

opal dove
#

well, maybe not for someone who's operating on you kekw

candid geode
opal dove
#

sure

#

I'll play bro

#

@candid geode ❀️

candid geode
#

Gosh, I didn't realized you joined.

opal dove
#

:)

candid geode
opal dove
#

ah I'll probably sleep soon

#

I just wanted to make sure it wasn't just you playing

#

try reclaim it

candid geode
ebon heron
#

anyone koth?

tidal juniper
balmy ginkgo
#

anyone?

fair adder
dapper yew
#

@nova tide totally not stream sniping

nova tide
#

if you go on your stream and see which people are watching, i am not one of them

short tusk
#

(Also, if you are streaming KOTH, you should be in the KOTH VC)

nova tide
#

i have seen your persistence backdoor a thousand time already

#

if you remember i stopped it once before

#

Also watching THM's kid stream not yours

#

that's the most common back door πŸ€·β€β™‚οΈ

dapper yew
#

bro , join in starting only , what in middle you will join off kekw

#

one more after this ?

opal dove
#

@nova tide did you ever get that rootkit up and running

nova tide
#

i don't have rootkits.

opal dove
#

yet?

#

πŸ‘€

stiff egret
#

There's a 65536 port for the koth-leads

nova tide
#

never needed one

nova tide
dapper yew
#

holmes πŸ‘‹

stiff egret
#

πŸ˜‚πŸ˜‚πŸ˜‚

nova tide
#

now they know how i have root shell that fast.

stiff egret
#

Hey @dapper yew

stiff egret
nova tide
#

but the password for root is in rockyou so they might be able to bruteforce it

harsh obsidian
#

@candid geode you know you're not allowed to kill ssh altogether, right?

harsh obsidian
#

someone sure did

candid geode
#

I also can't seem to use it as well.

#

Just use a reverse shell and hope no one kills it. That is what I am doing.

candid geode
candid geode
stiff egret
#

Someone messed up with stuff, report and reset.

candid geode
nova tide
candid geode
nova tide
#

i can see ssh config in the machine

stiff egret
#

Ah it's the || chroot||

nova tide
#

someone did mess up with the service though

fair adder
#

who is Jack Napier

candid geode
severe cloak
fair adder
#

Nah it s ok

glacial mantle
#

anyone available for a KOTH?

last ether
#

It says there are only two flags. But I think there is an elite in the game. Is that a bug or what?πŸ˜…

stiff egret
#

It's a known bug, I'll keep an eye on the user, being first time, I am presuming it happened accidentally, it repeats, then the user is getting a warning.

last ether
#

Oh

#

I havent been active for a long time

stiff egret
#

Please ping anyone in koth-staff if you see the same user doing this again :)

ebon heron
#

holmes

#

can i ask somthing please cuz you are maser

#

masteer*

last ether
#

Hey abood

stiff egret
#

πŸ‘€ uh hey abood

ebon heron
#

what is busybox

#

and how to use it

stiff egret
#

google can help more then I can, Also I am half asleep

ebon heron
#

kaz any ideas?

last ether
#

Nice little chat we had

ebon heron
#

your cat is so cute

#

you teach her how to hack

#

best dad ever

last ether
#

Busy box is just an executable that provides for other binaries

last ether
harsh obsidian
#

anyone else having issues getting on to THM or is it my local network acting up?

dapper yew
#

24 minutes , public , get-in , 9 slots .

normal arch
#

Lol

#

You playing 2 games

#

at the same time

dapper yew
#

no one joined ^^ one , i am going AFK πŸ™‚

twin obsidian
#

anyone who knows how to fix this? The game is done now, but would like to know how to write into the king file for my next game.

opal dove
#

smells like chattr to me :(

ebon heron
#

there is a machine

#

sorry box

#

to echo your name to king

#

not > >>

#

echo vistimalik >> king.txt

#

i dont remember the machine

opal dove
#

ah right, that could be it as well

#

was it production, or is my memory completely off

ebon heron
#

i dont remember

nova tide
twin obsidian
nova tide
broken jackal
#

ANYONE WANNA PLAY KOTH?

nova tide
broken jackal
#

i mean

#

i am doing this for the first time

#

so idk if you have to make a room or something i guess you can just join the public room

#

@nova tide

nova tide
#

Just join the public game.

#

Also for more info about koth read the koth docs and blogpost

broken jackal
#

I am already in a public room

nova tide
#

!docs koth

pearl gladeBOT
broken jackal
#

@nova tide i am that deku773

#

Oof it is all well and good but how tf are we gonna protect the machine xD

nova tide
broken jackal
broken jackal
stiff egret
#

As long as the file is readable, you can do anything with it.

broken jackal
#

Ohh okay

#

you mean i can hide it and do whatever i want the user just have to find it right?

stiff egret
#

NO, the name and location of file should remain '/root/king.txt'

broken jackal
#

ugh okay then

stiff egret
#

Please do read the rules before you start

broken jackal
#

yeah i have readed it but....

#

okay

#

i will figure out a way

#

xD

stiff egret
nova tide
#

??

broken jackal
#

i can't even get the reverse shell

#

i mean

#

you got into the pc right

#

how did you even did that

#

i cant even get a little of command execution xD

#

well amma noob

stiff egret
delicate cedar
#

@stiff egret Can I dm you?

stiff egret
#

Sure

nova tide
dapper yew
#

@nova tide hot game .

#

should work on my backdoors prolly

nova tide
#

yup

dapper yew
#

@nova tide what was the last root pass you put .

dapper yew
#

in the last box ,

#

what was the root pass

nova tide
#

You need to figure that out on your own πŸ˜›

dapper yew
#

ayy , cmon games over . 😦

nova tide
#

Can't really tell you, i'm used to use that in every game πŸ€·β€β™‚οΈ

stiff egret
#

it's not like he can crosscheck kekw

nova tide
#

oh right

dapper yew
nova tide
#

the password was:
v3ry!5tr0ngPa55w0rd!#!@#%

#

throw some more symbols in if you want

dapper yew
#

it cant be kekw

nova tide
#

i was trying to change back that to the old shifu password πŸ€·β€β™‚οΈ

stiff egret
dapper yew
#

but whatever you tried to replace it with something very small

#

oh ya i dint try this

#

i was sticking behind his name

nova tide
stiff egret
#

now we might even post the correct password and you won't know @dapper yew

nova tide
stiff egret
#

lmao

dapper yew
#

iamnotgod ( half and edited password )

nova tide
#

ofcourse you are not, you are 0x5

dapper yew
nova tide
#

πŸ€·β€β™‚οΈ

broken jackal
#

@nova tide oof you are soooooo good in this how did tou learnt?

nova tide
#

i did rooms on this site ^

broken jackal
#

OwO okay

candid geode
last ether
#

πŸ˜…

#

Lets hope for the best

candid geode
#

And imagine that being space jam.

last ether
#

Oh god no

#

Voice chat anyone?

candid geode
last ether
#

πŸ˜₯

candid geode
#

The machine is tyler, great.

candid geode
last ether
#

@candid geode you can still get king

last ether
candid geode
#

The whole directory is gone, alongside with the flags.

candid geode
#

Wait, nevermind, I can see it now.

last ether
nova tide
dapper yew
#

spectator link ? match seems smoking .

candid geode
dapper yew
#

i dont understand why half of them go AFK ,

last ether
#

Other commitments? πŸ€·β€β™‚οΈ

dapper yew
#

another game ? now ! vm booting .

last ether
#

I've got some work

#

Will join later on if I have some time

candid geode
dapper yew
#

put a spectator link , i will join at last if more people are there.

candid geode
#

It's starting in like 1:30 minutes

dapper yew
#

oh , i will join next one . i am setting up tmux .

candid geode
nova tide
#

@obtuse heart tryharder

#

Also:

#

!rule 1

#

Port 22 could be a rabbit hole/docker.

obtuse heart
#

Ok

dapper yew
#

@candid geode did you just patch that ?

candid geode
dapper yew
#

i just found something amazing kekw ,thanks for patching everything .

dapper yew
#

?

candid geode
dapper yew
#

uh no , i am not even there on the box .

candid geode
#

Oh okay, nevermind.

dapper yew
#

whoevers in my game , whats with the resets .

blissful karma
#

Hi JiaKangChen

#

im new at discord

#

koth anyone ?

lilac basin
#

someone for koth

ebon heron
#

is deleting users at koth legal?

harsh obsidian
pearl gladeBOT
winged charm
#

I mean

#

It’s not expressly stated

#

You should really look at other options as there are far better options

harsh obsidian
#

gg @lilac basin

lilac basin
#

ahahha

uneven sedge
#

Might need a referee on that though

lilac basin
#

bruh when i was connected to ftp i tried to switch dir with cd .. but it remained the same so i was blocked ahahhaha

dapper yew
#

anyone koth ?

dapper yew
#

uh , if you told a bit earlier , i wouldnt have started room blobknife

harsh obsidian
dapper yew
#

lets play once i do this room @harsh obsidian will ping you πŸ™‚

harsh obsidian
fair adder
#

anyone up for a game?

ebon heron
#

yeah ofc

#

we are at the same game already

#

you are blvckmetxl

#

right ?

fair adder
#

can i dm you?

ebon heron
#

ofc

last ether
#

Who is currently in this game?

#

Someone messed up the users

dapper yew
#

is redirecting traffic from port 9999 allowed ? its not mentioned in the rules .

stiff egret
#

Port 9999 is out of scope, means nothing related to 9999 should be messed with

quiet schooner
#

...

peak oriole
#

is it on?

candid geode
#

Oof, there are new machines.

harsh obsidian
candid geode
#

I feel like they are harder than the old ones.

sick turtle
#

Been trying to find a flag this morning 😦

candid geode
#

I finally found a flag after 40 minutes of going around the box.

sick turtle
#

Yep, looks like I've a lot to learn

candid geode
#

I found several ways of entering the box.

sick turtle
#

which one?

vocal shell
#

i was in the box the entire time ._. i didn't find a way to privesc or find any flag

candid geode
#

I would say that I was lucky.

#

I used grep.

vocal shell
#

what did you grep

candid geode
#

grep -R "THM{" /var/www

vocal shell
#

i used find to find all txt files

#

oh what

#

._. i didn't think of doing that

candid geode
#

The flag was in www.

vocal shell
#

|| did you see the txt file on how to privesc ||

hazy geode
#

lol

#

you pitied us

candid geode
vocal shell
#

|| i think it was like topsecretprivescmethod.txt ||

#

it was gibberish for me like unicode characters

#

i spent 50 minutes just trying to privesc

sick turtle
#

Can't even get a shell cri

harsh obsidian
#

lol

trim marsh
#

A quick question, H1 Easy is part of the KOTH? i.e. other users may mess up configuration?

harsh obsidian
#

has anyone managed to get all eight flags on panda?

dapper yew
candid geode
harsh obsidian
dapper yew
harsh obsidian
dapper yew
#

i wish we could exclude the stuff . like we know that the flag isnt in x directory , then it would be much easier

harsh onyx
#

Is here the correct place to chat about Hacker of the Hill?

vocal shell
#

@harsh obsidian did i kick u out ?

harsh obsidian
fossil jackal
harsh obsidian
#

@tranquil haven gg

#

have you been able to get user on the box yet?

harsh obsidian
peak echo
#

Joined πŸ™‚

harsh obsidian
#

sweet

peak echo
#

Never actually played koth

#

I've seen some videos on it though

harsh obsidian
#

it's a lot of fun. can be frustrating as you look for initial footholds. just make sure you enumerate subdirectories and look at versions and look at ALL ports. just make sure you leave port 9999 alone always

peak echo
#

okay

#

3 mins πŸ™‚

#

🦁:tux:

fair adder
#

im doing space jam and patched it by changing port to start again i did node server.js but it doesntl let me use the terminal

#

how to i fix that?

peak echo
lusty crown
#

Is there a new koth machine called "tyler"???

#

i just subscribed yesterday and saw that in the koth section......

stiff egret
#

Tyler is there from the beginning.

#

The table size on site can only latest 10 values, hence tyler isn't visible there.

fair adder
#

only 2 open ports

#

22 and 9999

stiff egret
#

That's hogwarts machine,

#

rescan the ports, do complete scan.

#

-p-

fair adder
#

ik

stiff egret
#

If port 22 is open, that means the machine is perfectly fine.

fair adder
#

there should be port 21 and port 80 opened

stiff egret
#

No

fair adder
#

i did -p- at first

stiff egret
fair adder
#

oh ye

#

my bad my bad

stiff egret
#

:) No probs

toxic thistle
#

Join the koth starting in 9 minutes

stiff egret
#

Usually sending the invite link here is helpful.

toxic thistle
#

It'll be my first koth, kinda excited

stiff egret
#

Ah, all the best :)

candid geode
#

Has anyone figured out and managed to root the 3 machines yet?

stiff egret
#

I don't think so.

steel herald
#

I only entered one flag is that normal?

stiff egret
#

Hey, It's a known bug.

ebon heron
#

someone start wall loop

stiff egret
#

mesg n

#

use this in terminal to avoid getting wall messages

ebon heron
#

i try its not working

#

nvm they stpo it

dapper yew
#

is there like a partiucalr container for breaking out and getting root . in the hard box .

candid geode
candid geode
ebon heron
#

these new machines are hard

#

or maybe its the first time i dont know

candid geode
winged charm
#

avoid spoilers mates

ebon heron
#

is that spoiler

#

ohh im so sorry

#

guys

sick turtle
#

Finally found one

#

Been trying since it came out cri

last ether
#

Anyone up for a game in 5 mins!

stiff egret
#

Private or public?

last ether
#

Public

stiff egret
#

πŸ€”

#

Let's go

last ether
#

😰

#

Mercy please πŸ˜…

#

Aye just kidding

stiff egret
#

ik

#

it's gonna be a tough fight

#

πŸ˜„

last ether
#

Its not

#

You'll destroy me

stiff egret
#

πŸ‘€

#

All of my backdoors will break if one day THM decided to tell everyone to regenerate their vpn configs

last ether
#

🀣

stiff egret
#

ah damn

last ether
#

You already rooted ths right?

#

The easy one

stiff egret
delicate cedar
#

@stiff egret Is there a difference between the hoth challenge box and the koth one?

stiff egret
#

no

delicate cedar
#

oh

last ether
#

Why are we resetting?

stiff egret
#

Def not me

last ether
#

What are you doing inside @stiff egret

#

πŸ˜…

stiff egret
#

trying to get my one liner to work

#

that took a LONG time

last ether
#

πŸ˜…

#

@stiff egret !!!!!!!!!!!!!!!!!1

stiff egret
#

one less l in kill

last ether
#

πŸ˜…

stiff egret
#

lmao

#

sdDSFSDsdDSFSD

last ether
#

what is core.d?

stiff egret
#

πŸ€”

last ether
stiff egret
#

yeah guessed that much

last ether
#

@stiff egret bro I have a lot to learn from you

#

πŸ˜‰

stiff egret
#

ah damn

#

that was so so close

#

I was AFK dmanit

last ether
#

Are you still in the machine?

last ether
stiff egret
#

I was, but went to do some work

last ether
#

Sorry

#

πŸ˜…

stiff egret
#

ay it was a fun match

last ether
#

Yeah bro

#

Good game

#

😁

stiff egret
#

also, you can add -ia in one argument

last ether
#

Ah

stiff egret
#

doing that in 2 commands slows it down

last ether
#

Hijacking my session

#

Nice!

stiff egret
last ether
#

🀣

dapper yew
#

rooting the hard one is pretty hard , tho i have a nice ssh shell

#

@stiff egret is it completely docker based and requires a docker privsc , ?

stiff egret
dapper yew
stiff egret
#

yeah

dapper yew
#

whered you reach

stiff egret
#

haven't solved it yet

#

No foothold yet

dapper yew
#

hmm

#

did you solve the medium box ?

stiff egret
#

the windows one?

dapper yew
#

mhm

stiff egret
#

no

dapper yew
#

that box is the worst πŸ˜†

#

requires days of enumeration .

stiff egret
#

eh, I am very bad at windows, been practicing windows hacking from last week,

dapper yew
#

btw , are these machines gonna remain forever in koth ?

stiff egret
#

yeah

dapper yew
#

like are they a part of koth

#

nice , its gonna be more smoky kekw

stiff egret
#

yeah, they are permanent addition to pool, asleast as far as I know

dapper yew
#

i am excited for first koth in these boxes . 😢

stiff egret
#

just played one in h1-easy

dapper yew
#

oh . there are many ways in that box !

stiff egret
#

3

dapper yew
#

its kinda hard to patch everything while playing koth

#

been working on a script to patch all 3 at once .

delicate cedar
#

hmm, auto patched script

dapper yew
#

uh no , not exactly , it should be done manually , but yea its a script πŸ˜†

runic breach
#

damn that hard box is hard

opal dove
#

if it makes you feel better

#

in the hour that it was streamed when it first came out

#

I believe only naughty got a shell, and that was it

stiff egret
#

Rule 7.

candid geode
toxic thistle
#

The current lion machine is up for like 30 seconds then go down for 30 seconds on repeat. Anyone else have that problem?

stiff egret
#

Vote for reset? If everyone/anyone else is also getting the same issue, then they'll vote in too.

#

If not, then you know it's probably not for all

toxic thistle
#

Yeah, I'm the only one who voted for it so it might just be me.

opal dove
#

@nova tide you wanna do a king of the hill later

#

haven't spoken in ages

nova tide
#

Going home.. Won't be able to for the rest of the week.

opal dove
#

ahh right

#

could you even vc?

candid geode
#

Finally, I have properly rooted easy.

candid geode
mint girder
#

Hi

#

I have rooted the hard box

candid geode
mint girder
#

Sorry

#

didnt mean that in response to you

#

The flags are missing

#

So wanted to ask in here

opal dove
#

yeah @mint girder I think szy had the same issue

hazy geode
#

🀯

hazy geode
ebon heron
mint girder
#

very

#

ish

#

πŸ˜‰

ebon heron
#

how much it take

#

time

candid geode
ebon heron
#

jiakang what about you

#

did you solve it

#

i think i find it

#

but im not sure

candid geode
dapper yew
#

i rooted the hard one , finally

opal dove
#

ayyy nice

#

@candid geode @dapper yew you down for a chill koth and vc?

#

haven't done one in a while

dapper yew
#

i am down , ofc , so happy πŸ˜†

opal dove
#

yessir

#

you able to chat in vc?

dapper yew
#

yea .

opal dove
#

@dapper yew ready when you are

dapper yew
#

lets juz have some more people

#

i reallly dont like playing among 4-5

opal dove
#

we can always do a calm warmup

dapper yew
#

lets play hogwarts box

opal dove
#

have you got vip?

dapper yew
#

uh no . i thought you had it ! lol

opal dove
#

nah mine ran out :(

#

we can just start a couple and see if we get a good machine

#

one of the new ones or hogwarts

dapper yew
#

fine , but if its a medium box . i cant play , havent rooted it yet

opal dove
#

ah sure, neither have I

#

we can always just try it live or something

dapper yew
#

fine

#

lets do the medium box

#

like deploy it in the HOTH room

#

and do live

opal dove
#

oh sure, although I must warn you

#

my windows isn't all it

dapper yew
#

yea np , lets root it

opal dove
#

join vc :)

dapper yew
#

but , i dont really talk sorry . i will stream

fair adder
#

koth anyone?

opal dove
#

sure, but can only play for tops 10 minutes

fair adder
#

ok

fair adder
opal dove
#

uh sure

#

lemme see if I have to do something rq

last ether
#

Anyone up for a game?

wooden bluff
last ether
#

Same one buddy πŸ˜…

wooden bluff
wooden bluff
opal dove
#

uh oh

#

it's the Hard machine

pale mulch
#

Hey, closing ports is not allowed right ?

stiff egret
#

Read the rules

ebon heron
candid geode
#

There are so many ways of entering the Medium box.

stiff egret
#

IIRC there are 3 ways each machine (hackerone ones)

fair adder
#

with all those writeups, koth is just who is reading the writeup faster, koth just has 0 fun

candid geode
stiff egret
#

There's a part, that says, defending the machine. You don't just have to hack, but patch too. I don't remember those writeups showing how to patch.

fair adder
stiff egret
#

Really mate, did you see the announcement? There were 3 machines released in last 3 days.

fair adder
#

im talking about the other ones

quiet schooner
#

At the end of the day, people have notes on the machines. Writeups do more to level the playing field that they do to cheat.

last ether
last ether
#

Food

#

🀣

candid geode
#

Yep, that machine has lots of ways in.

stiff egret
#

All machines have a lot of ways in. Really it's the game of defending more then it is of hacking in. The machines are made in such a way that they are usually hack-able in 10-20 minutes.

last ether
#

I was just giving you a chance to have fun. Cause you said KotH is 0 fun. πŸ™‚

opal dove
#

ayy

#

DarkBandit

#

long time no see

last ether
#

Hey buddy

#

What's up

ebon heron
candid geode
last ether
#

Is it all patched up?

#

Or can I still join?

candid geode
#

20 minutes before it begins.

last ether
#

Ok

#

I thought it was the one going on now

last ether
#

@candid geode good game bro!

haughty cypress
last ether
#

Godddd

#

I came in a bit late

#

🀣

candid geode
#

My VM just froze. Maybe you might have a chance.

last ether
#

Na

#

Already moved on in life

#

πŸ˜…

candid geode
#

The machine got a reset.

last ether
#

Oh

#

And it startred already

#

Chill

#

Good game

stiff egret
#

Ok, wow, that is a lot of players

#

Firing up VM

#

let's see If I can get in on time

candid geode
#

3 minutes before it starts.

last ether
#

Games gonna be interesting

#

πŸ˜‰

candid geode
#

I will probably get destroyed.

stiff egret
#

All the best, Have fun :)

#

ah

#

no damnit

candid geode
#

Ah crap, it is the H1: Medium.

stiff egret
#

nonono

dapper yew
#

i havent solved this yet

candid geode
last ether
#

I havent solved it too

candid geode
#

Gotta improvise.

stiff egret
#

wanna start another?

last ether
#

Yeah

stiff egret
#

EXITED OUT, sharing another link

last ether
#

Cool

dapper yew
stiff egret
#

when I msged, it was 17 secs

dapper yew
#

wait , i could submit 1 flag , i have it stored .

candid geode
stiff egret
#

nice

dapper yew
#

oh no i dont , i have the backtothm flag

#

dang

#

i dint store the orginal one

stiff egret
#

another reason to use clipmanager

dapper yew
#

can anyone give me the flag ! kekw

#

pl

last ether
#

How much time left for the game to start?

dapper yew
#

the helen user , i have it but its the backtothm

stiff egret
dapper yew
#

😭

#

holmes give pl kekw

stiff egret
#

wish I could, but nope

#

get a shell, get one flag and get it over with

#

the foothold wasn't that hard IIRC

dapper yew
#

will i get back THM flag ? kekw

stiff egret
#

LMAO

#

Sorry, no returns accepted kekw

#

lmao

candid geode
#

It is tyler again.

fair adder
#

One Quick question

If one's get root access to the easy one and he changes the owner and group of that file...then there's no other way possible to get root

#

Am I right?

#

And changes the perms too

stiff egret
#

Most probably

fair adder
#

Thanks

candid geode
#

Did the machine just freeze?

stiff egret
#

no shelll

#

no idea

#

Yeah, most probably

candid geode
#

I can't move.