#koth
1 messages Β· Page 63 of 1
ive never played a koth is it fun
Same.
it can be frustrating at first when you're trying to get enumeration and footholds, but as long as you keep good notes so you can pick up where you left off, you should be good
ah i see
i worry im not good enough yet
that feeling doesn't go away. just keep pushing yourself and you'll get there. just don't forget to keep doing regular thm rooms so you keep learning
yes i recently started the complete beginner path and im now on the owasp top 10. i find all this really fun and interesting.
i think i might try a koth match sometime soon
the thing is most people who play already know how to get in the machines and privesc so i would say try some machines in private with a dummy account of yours so you learn
or try to get as much help as you can
like aboodking helped me
now i can beat his ass anytime
π£
@ebon heron right?
ππππ’yesss
okay im going to play one by myself with an alt acc thanks for the recommendation
will do
There is also an awesome blog post in there π Go through that it would be super useful
8 mins
any body up for the game
it's all about skils men u can see that..
Give it and rules a read if you are new to KoTH
hey @nova tide and @stiff egret I've been making a script with Koth in mind, basically a very basic blue team framework - check whose logged in and for how long, hash common directories and poll for changes. not intended to do anything active, won't harden anything but strictly monitor certain things that defenders should check for. just wondering if that would be allowed in koth?
Sounds good to me π€ . As long as its not breaking anything π
cool, ill share obv when I'm done, I'm hoping it can help people like me who were once clueless about what to check for once you have king
Agreed, as long as it's only a monitor, it's fine. :)
How about we don't call people out in public for perceived offences @fair adder. If you have a problem with someone's conduct in KoTH, speak with one of the KoTH staff please :)
k ;s
what are some of the low hanging fruit to secure a koth box and really lock it down from others?
Weak passwords, straightforward RCE vulns
Is using while :; do chattr -ia /root/king.txt; echo USER > /root/king.txt; chattr +ia /root/king.txt; done allowed?
Yep
Sometimes when I run that command, it disables my time as king, so I donβt get any points for being the king.
I usually add a sleep in there.
I wanna know what this command did please?!
Break it down and read.
Also, that command is not correct. There is no file given to chattr to change the attribute of.
It is an infinite loop to lock down king file.
Adding sleep makes the command less efficient. It gives a window to other loops, which, if are not using sleep will def. win.
What This Command Does: while means we are utilizing a while loop. : means infinite And do And Done ARe Used To Start And End The Loop
This Command Will Infinitely Make King.txt writable, Write Your Username And Make It Inwritable
Anyone Up For A Game??
Starts In 3 Minutes
Heyy, anyone down for a KOTH tomorrow night (West European time)?
no
EST here 
https://tryhackme.com/games/koth/join/08b365703abbebad80a34ecd please join π
no
no no u

that is portuguese ?
Yeah :) but i made a mistake, I'm actually in UTC +1 (France) . Anyway I'm free tonight if anyone wants to join a beginner KOTH, probably after 20h00.
I'm very interested in seeing and learning from this. Do you have it up on github/gitlab?
so I actually have a pretty basic beta version done if you like Ill push it at lunch
its nothing fancy, hashes a baseline of files in the popular directories (/var, /home, /root, /etc/, /bin), and after you have the baseline you run the tool to check if any files have been added or changed
and another feature will show you new logins via w
i've been trying to think of any other features to add, I've been looking at mirroring a given users TTY but its a real PITA to do properly
I think @stiff egret can you help you with that?
Yeah, tho as droogy said, it's a PITA to do that, it'll be interesting to see how you are going for it. I can make PRs once you push it on GitHub :)
appreciate that, my wishlist is to set this script up as a C2, drop the agent on the box somewhere and issue commands remotely but figured I'll make the agent good first π
adding/testing one more quick feature and I'm gonna push it
okay guys, my shell script is all set, I made this mostly with KoTH in mind to help people think a little more defensively and not just run a script to echo your name into king π
so please offer some feedback; features you'd like, you hate it, you love it, whatever
I think that's a really good idea, and I agree that people need to start patching vulns smh
agreed! i think the biggest problem is people literally do not know how to patch, what to look at and too busy wrestling for king
Also check for new files in /dev/shm.
and that looks nice.
Beginner Linux KOTH if anyone is down https://tryhackme.com/games/koth/join/b1d4c211ba6d6c66c9db18f4
I'd also watch for new fifos in /tmp
Maybe watch for new network connections outbound?
very good ideas thank you, network connection module to create some attribution is next on my list
okay got the outbound connection module sorted π
hello π£
how can start koth?
go to https://tryhackme.com/games/koth/ click on join a public game.
moreover read the docs for koth
!docs koth
^
Thanks
helo π£
oke
π£
@gritty tapir try get the ip of the user using w
Its just avobe you
Killing shells or patching vulns is not against the rules.
isn't it an unspoken rule to not run auto shell killing scripts?
i dont know, why would i care if i dont use any scripts whatsoever
freddie , you wanna do some windows study , π ? m free
oh no worries, it sounded like you were running a script to kill shells, but I'm not playing so don't have a clue
sure, not for too long though
we can start at the very basics?
sure sure .
chilling in small study:)
gimme a second
helo π£
Anyone else expirienced this bug? Can't view the ip, or name of the box. Any solutions?
refresh might fix it?
and it's been a long time. Haven't seen you around π 
Last we spoke was 10 months ago xD
Anyone up for koch?
https://tryhackme.com/games/koth/join/ec693e2e89a7be7da66f9971
who is playing?
join this
4 min left
why someone disabled private key access
@matheuw
Patching
nope
re read the rules π
helo π£
any game?
https://tryhackme.com/games/koth/join/0a7b9d8a31def42e0083a6ff 1 min π hogwarts
We're starting in 10 minutes
https://tryhackme.com/games/koth/join/20d3fa47de2a4b66b7048f0c
https://tryhackme.com/games/koth/join/d85484722152ca70b42d70ee
20 minutes if anyone wanna join
helo π£
boring
hey everyone can i play king og the hill with anyone please
???
if yes please join with me here
@fair adder
wanna play
no
can i join you please
@fair adder
?
im not playing bro
oh ok sorry to ask
@tame veldt thank you so so so much
gtg to bed good bye everyone
53 seconds 
https://tryhackme.com/games/koth/join/6de6c5637350d5d534526501 2 min π fast
π£ come play please π£
You have to create one if it doesn't exist.
I created one and insert my name into it. But it's not display on challenge screen
Does anyone wanna play KoTH?
send location
@fair adder
Not sure what's happening.
I thought this was public game π
sorry, i wanted to start it faster
i thought too
i dont understand why im not king tho
its been some time my name is in there
ok i guess
Maybe a bug in ctf
well im also having some problems with this
king.txt exists and my name's been in there for 10 min but nothing happened
Or someone messing up with koth service
Maybe it's the problem
Same thing happened to me in my previous game
But it was the h1-hard machine
That machine is insane π₯Ί
π
Sorry for that, but king file doesn't exist in hogwarts machine by default, you have to create on in /root/king.txt.
I created one. But it doesn't display in challenge screen
I think that's the problem
That happens when someone is hammering the file too much.
For example, someone ran a loop to empty the file and add their name, and it's too fast, then the file would look empty to the king service.
But I am not doing that and I am pretty sure the others in the game lobby are not doing anything of the sort π
π€ If that happens again, can you ping me before the game ends?
@last ether The issue could be with site this time, another user also reported same issue with an active game, I was able to take a look and report it to skidy, if this is a persistent issue, hopefully, it'll be resolved soon. :)
Cool. Thanks π
https://tryhackme.com/games/koth/join/2b97ffc99de09666cf7eba7d please come play π π£
4 min
@fair adder GG, atleast I got on the board this time with a flag! π
did you figure out how to get access?
No I didn't, im guessing one of the ways in via smbclient? Or possibly brute forcing the login page with hydra?
can i dm?
Yeah of course
@unreal jasper link ?
that wasn't nice xd
lmaoo
do you see me on the box now ? :p
i joined too late π£
@brave drum do me a favor
and log off root
and log in again
real quick
before the box expires
I think the message is hilarious lmao
you can use other shells
besides bash
to login
gg
gg
another 1?
sorry, it's getting late for me
https://tryhackme.com/games/koth/join/7855f1fe36f3ed8e261c0b48 @unreal jasper public game
8 min
@frigid current voice?
anyone wanna play?
https://tryhackme.com/games/koth/join/37bf85b6834883fe1b1bd4bf come play π 8 min
toxic xd
he is running shell killing scripts π
Not like that's against the rules tho
but should be ig
oorrrrr hear me out. Find a way to evade his script
sounds good
I !!!! Just made a bash script that automatically hacks in to the lion machine in koth but sadly I can't use it cause that would be cheating
And it adds my name to headmaster kings goodbyes ect.... and rooting the lame VM
Uh, you realise that's very much against the rules.
(Also, your name is supposed to be in king.txt and NOT in headmaster.txt)
anyone 1v1 koth?
somebody wants to play koth? The game will start in 20 minutes https://tryhackme.com/games/koth/join/0053b032368bdc466aeae426
:>
Anyone wanna play KOTH ? π
https://tryhackme.com/games/koth/join/633399be604cd2d25a90c95d
Its a public room, all the other people have left lol
double '>' appends
You simply have to add your name to king file. And there should be only one name. How you do it doesn't matter.
Eg.
if you type
echo name > king.txt
then the king.txt file will be overwritten containing only name
Almost all languages can write to files. You can use any.
Python, c, c++, go, bash (mostly used)
assuming the file is not empty and contains randomString
and when you type
echo name >> king.txt
then your file contents will be:
randomString
name```
If you were to do lsattr king.txt in carnage machine, you can see a flag on it. That means you can only append to this file. Other than that you might want to use chattr binary.
man chattr would be helpful.
Also that is intended in carnage.
go everyone
go
could have put 10 or 15 minutes
Next time I go for 15
starting in 20 minues
https://tryhackme.com/games/koth/join/45491246496bd8a5ddf8b5b1
hi guys
i was playing king of the hill and i noticed that user king closed ssh then we restarted the machine but unfortunately he changed the password too
I have the proofs
Email koth@tryhackme.com :)
done ^^
are you sure that he close it maybe he change ports?
he's been answered on mail i guess. π
π
Hope it's not windows or Hogwarts, I'll drop out in either of them. (I can play Hogwarts if no one in game got any problem with that :) )
Bruh you go sleep π€£
"Creator of the wizarding world"
lmao imma take that as a compliment
π np
For the record, I love harry potter
Im in π
Close call, 10 secs :)
yee
All the best π
use rustscan π
Ah damnit, I gotta go, deployed my code in the box. password for food user is rustscanisbetter all the best.
Ahaha someone changed ramen password π’
Well, I haven't defended anything, not on system anymore,. But the food's password is rustscanisbetter, so you can try to priv esc from that
rustscanisbetter is not the password
Well, I tried my best but I was too slow both of the users i found "food" and "ramen" passwords were changed. Good luck with the rest of the game π
Ah, damnit, then, someone else must've changed the password.


how can play loth?
@brave drum GG mano cant seem to find a way in π
gg
I liked your message you left behind π
loth
Meaning of loth in English
loth
adjective formal (also loth)
UK /lΙΚΞΈ/ US /loΚΞΈ/
be loth to do sth
to be unwilling to do something:
I'm loth to spend it all at once.
Synonyms
averseindisposed (NOT WILLING) formalunwilling
Thesaurus: synonyms, antonyms, and examples
not wanting to do something
unwillingShe was unwilling to hand over the money.
lothI was loath to spend all the money at once.
balkThe MP balked at a proposal to raise council tax.
reluctantI was reluctant to leave because I was having such a good time.
disinclinedI am disinclined to take on the extra work without more pay.
See more results Β»
SMART Vocabulary: related words and phrases
(Definition of loath from the Cambridge Advanced Learner's Dictionary & Thesaurus Β© Cambridge University Press)
loth | AMERICAN DICTIONARY
loth
adjective [ + to infinitive ]
US /loΚΞΈ, loΚΓ°/
unwilling; reluctant:
Sheβd be loath to admit it, but she doesnβt really like opera.
(Definition of loath from the Cambridge Academic Content Dictionary Β© Cambridge University Press)
EXAMPLES of loth
loth
Most governments are loath to increase water prices for fear of political retribution from an active farm lobby.
From the Cambridge English Corpus
In fact habaneros are generally loath to own up to being especuladores (' speculators ').
From the Cambridge English Corpus
i think he mean this
Interesting.
PS I don't need a shell to run commands anymore, you can kill them as much as you want
LOL
apparently my script isn't clearing the file correctly, or you are writing in a weird way
π
Why not bro? π
the machine is on my side
It looks like the machine is on both our sides π€£
lol yeah
Can I DM?
I thought the TryHackMe bot was typing, but it was Holmes.
check the date mate

Yeah, nothing is weird today.
hey im new to koth[been 3 days]
even when i get root i cant set my name on king
/bin/sh: 23: cannot create king.txt: Permission denied
i get this
Read about chattr binary
i tried that and it says chattr not installed
usually any player who uses it, deletes it afterwards.
Upload your own chattr binary
do i install it ?
Download from busybox binaries.
https://blog.tryhackme.com/guide-to-king-of-the-hill/
Give this a read
"You are allowed to use rootkits. But as implied by rules, while planting rootkits, make sure you do not break the machine or make it unusable for everyone but you." π€
what is confusing in that?
I have a slight memory someone broke a machine doing that π
might be wrong though π
I broke machines on htb
...
Remember something you said @stiff egret "Oops i think my code broke the machine" π
Might be wrong whatever π
that was during a friendly match, and that wasn't any rootkit. Regardless, if hackers are hacking and fighting in a machine, things are bound to go wrong. The rule is to prevent someone trying something they don't know properly about.
I had an issue on htb TBH
Ahh i see π
re. when I broke the machine, I referred to the king file crashing because the code writing in it too fast.
Ah right, that was the issue, i remember now π
Very nice post @stiff egret , should start using rustscan.. π
thanks :)
Rustscan is just so fast that it should be illegal.
Is like nmap obsolete nowadays or is the usecase for rustscan narrow ?
imo, rustscan isn't something you can use in real world, (unless you tune it down using config file)
But in practice env like THM, it's just way better then nmap alone.
Oh, its noisy ?
π€·ββοΈ you can't scan 64k ports without being noisy in less then (what was it?) a minute?
Haha yeah π thats very true
ahh, i love rust and cargo, such a well made language and package manager
dont know why i suspected the build process would crash, im too familiar with nodejs
I build it for the first time, after that, i've been downloading the pre-compiled versions.
Oh they had that available in their repo ?
yeah, check for releases.
π
Noisy, and quite likely to bring the target down
Which, irl, is not a good thing
Esch, just get some good insurance π
hey guys, is there a way to write to king.txt after someone use chattr +i?
Do chattr -i king.txt and add your name in.
If you can't find any chattr binary on the system, upload yours.
I did , just when i try to echo 'name' > king.txt it says permition denied...
Someone might be running chattr in a loop
Is that permitted? run scripts in KOTH?
yes you can
Depends, if it's within the rules then yes.
I donβt think that counts as a script. A script would be, automatically uploading and executing the chattr binary every 10 seconds to a very secret directory and automatically removing files uploaded by other players to stop them from playing.
gg
gg
what?
How am i making them unreadable?
before u start making accustations actually show us proof because i know i didnt
I'm not sure if i've done something wrong or not. How would i be able to make it unreadble?
Gain root access then
Well again.. I don't know how it's been made unreadble
π£
lsattr shows attributes on the file, and there isn't any that shows the readability of it.
10min
ahah GG!
What user did you get root from
fortuna
π¦
i was so dead when i saw /usr/bin/ALL
lol
lmao

xargs had suid bit set so i just spawned shell
gg
gl hf :)
I cant cat root.txt
ggwp
gg wp
https://tryhackme.com/games/koth/join/3d60fc432eab3bbd5abdfc2e I'm wanting to practice on this one if anybody wants to collaborate
Hello @cold hearth
Any luck @cold hearth
not realy and you XD
me too
next i will try nmap scripts for mysql
Let me try that too
me too
You found it @cold hearth Finally lol
gg
in 30 min
ill play if u want
@cold hearth I patched it thats why you can't find the flag (root flag)
Can you send an invite url
this one might be still ongoing.
Well joining midgame isnt a lot of fun xD
especially when they have an auto kill shell script π
i dont know why my account is a intermediat user i dont even know how to run nmap
π€£
well i was pretty good a year ago but i havent done it in wayyy to long
@tulip bough goodluck too
good luck guys
i need it harder then anyone i guess
my brain lmao
heauehaeu
<3
is it normal that i only see port 22?
no
run nmap again
try enumerate the mysql port
gl
@finite garden gl
Thanks brother
even tho you will beat me so badly xD
can i have those shell killing scripts π
Those shell killing scripts are not allowed. Iirc (cc: @nova tide )
Nope, not allowed.
anyone free here ?
might play some koth together !
Starts in 10Mins
starts in 4
Starts in 1
go go?
me and my friend are joining
Sure!
my bad π€£
Do you want to join into the voice chat during the game?
i closed my shit
lol
why?
I give up friends
it is already 3:50 am and I can't take any more sleep
@fair adder @next swan
good game
good game man
another time we can play again with more people
good game guys
gg
ok
yh, today is my debut on KOTHπ
let's goo
somebody wanna play? https://tryhackme.com/games/koth/join/341672b950edf6259539ea92
starts in 15 min
5min
bruh joined a game that already is in process.
to be honest there should be a warning when you enter a game that is already in progress. Maybe something like this "this game is already started, do you wish to still continue?"
lkajfhds
Will push that forward.
https://tryhackme.com/games/koth/join/b138423147ff81342b707307
any can join|public game
.
https://tryhackme.com/games/koth/join/a2203e4a0cf264c35e436a39
Public game guys 20 min
dr black
yes ?
didn't find your process π¦
where ?
I created a loop by playing the command wall "message"
hi
Hello there 
π
@candid geode what?
anyone had much koth experience here?
Heyo, depends, what do you mean?
I'm looking for a partner
ππ
Yes you should.. @ me whenever you play
@nova tide @short tusk let's go ? https://tryhackme.com/games/koth/join/b3296ae1543d70b719fd3c6d
Ah, yes. Ping the top player to play KoTH π€ π
Doing coursework at the moment :)
Maybe on the weekend. :p
It's iftar time and I'm too tired rn
Discord is probably not the place for that
Maybe Tinder?
imagine getting a match 
Bumble ftw
IRL ftw
same experience as tinder
Nah going pretty well
I guess i need to swipe harder π
I just can't imagine dating someone off the bat. Like, at least make friends with them first smh
https://tryhackme.com/games/koth/join/533959696adb3b5d795f4e1f
Who wants to join in?
Game starts in 5
'suntsam' breaking the machine
GNU nano 5.6.1 x Modified
nwkz@evilab~# whereis bash bash: /etc/bash.bashrc /usr/share/man/man1/bash.1.gz nwkz@evilab~# echo $PATH /usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/usr/local/games:/snap/bin nwkz@evilab~# whereis ls ls: /usr/share/man/man1/ls.1.gz nwkz@evilab~# whereis chmod chmod: /usr/share/man/man2/chmod.2.gz /usr/share/man/man1/chmod.1.gz nwkz@evilab~# echo * .* kworker . .. -sniffer nwkz@evilab~# whereis echo echo: /usr/share/man/man1/echo.1.gz
@brazen cloud @sly crown @still bramble @short tusk @sonic belfry
Ouch
β Warned eae filhΓ£o sΓ³ nos compiuter#7310
- Try sending a screenshot, also it looks like your machine not the koth machine?
- Mention koth-staff for issues regarding koth not the THM staff.
- If you believe someone is breaking the rules, reports go to
koth@tryhackme.com
this is suntsam here, I am sorry guys(for those who were in this game) I broke the machine by mistake, was just trying to remove the busybox in the /bin dir
I donβt know π€·ββοΈ, something doesnβt sound right to me.
like this?
Like what?
nothing, I just wanted to know why you sent that emoji @candid geode
https://tryhackme.com/games/koth/join/512e020efb175ec13bd88ee8 starts in 20 min
10 min
3 min
@terse willow middle aged men arenβt quite my type, but I appreciate the suggestion
You sure? π
when im not feeling super lazy I should test out my blue-team koth script against someone live
although its not that great for 1v1 stuff
yeah, I could try emulate a bunch of attackers if you want
just to see how well it runs one of these days if you want?
https://tryhackme.com/games/koth/join/96d2d65dea00767ff632e440 everybody can join. It starts in 20 min
5 min
Just getting EXPIRED when we try to start 1v1 koth. Any idea what the issue is?
did that, to no avail
Also tried to create a new match
https://tryhackme.com/games/koth/join/1ed9016ef226384eec973789
Join this, for testing.
Starting in 4 minutes.
huh, EXPIRED again
Yep, noted, pinging others now. Thanks for pointing it out. Should be fixed soon.
Alright, appreciate it, thanks
:)
@royal pilot this guy kek @stiff egret
ah thanks, will ping him in DM later :)
Coolz
@fallow heart If you still want to play KoTH, the issue is resolved and KoTH is back and fun as ever.
Happy hacking!
Wohoo, thanksπ₯³
π
@flat pendant
any game starting soon?
dude
like fr you had 5 flags in the first 5 mins of the game
u ok man?
Notes notes notes notes
and i cant get a shell!!!!!
it just hangs when i set up a nc listener
everyone in the current koth game pleeeeasseeeee reset the machine
we have 3/4 rn
Is the machine broken?
Reset only happens when the machine is broken
What is wrong with the machine?
im unable to get a shell for whatever reason
and ive done nothing wrong
it just hangs
something is definitely sus
Then try other possible ways to get foothold. Resetting might not help.
do you have any proof?
It's not.
there is no hacker in the world who does a koth and gets 5 flags in 5 minutes
its impossible

I can get them under a minute. But that's not the issue here.
ok thats not the point
Like?
like how this guy gets 8 flags in 10 minutes
He might have done the machine before.
but thats not the point here
Then what's the point exactly?
i cant get a shell

So you can't get a shell means he is cheating?
can you please read the first thing i said
no.
it does not mean he's cheating
there is nothing i am doing now that is wrong that should prevent me from getting a shell
its hanging
Maybe try using some other exploit? Other possible way to get a foothold?
im doing it the way i always have and i cant get a shell
ive done this koth game lots of times
Then there are still different ways to get a shell. Well the machine got reset anyways good luck
not really tho, i just remember most of them
anyone want to play?
You need to share the invite link and NOT the spectator link, others can only join using invite link.
bro you rendered the box unusable
wdym
i didn't π but ok
i mean if you wnat to reset it thats no problem
the outcome will be the same
again and again
did you even get access btw?
i havent seen anyone in the machine other than cleverrat
brother i couldnt even ssh into the machine because you have changed the contents of one of the files like sshhhhhhhhhhhhhhhhhhhh
i left the game anyway
ok but that's not against the rules tho?
no way im playing against you again
why?
mods is this guy breaking the rules?
you literally stopped anyone from getting access, thats the only way in to the machine
therefore being unusable
lmao this guy is a π€‘
?
Guys let's chill out
can you please read the rule just below that one?
4-5 ways to get foothold
Oh...Holmes is here
don't spam resets
btw all it takes to find another way is take a look at port 8080
And for what its worth I would love to do a CTF or KOTH soon. Never did one! Watched some guys do it live today and it looked pretty kool! Would love to learn methodologies and strategies! Expect questions from me in the future!
All the best!
arigato!
Patching is allowed.
@orchid sentinel ^
ok
Can i edit the passwd file to block any shell from new users?
probably not
Just take it as a real life scenario, you are hired to defend for a company. By removing access for all of the employees would that be efficient?
@remote wasp We don't post that command here
Heeey !
My first KOTH ever : https://tryhackme.com/games/koth/join/428c8debb7f6b149b1ab9305
if you want to join and come Discord :))
-warn @remote wasp Repeatedly posting destructive commands, even after being asked not to. (rule 17)
β Warned nwkz#7310

anyone down for KOTH
1 sec
oh i think i just joined it
i started one
want to play?
do you want to start a new one>
no
okok ill just do this one then
im doing some stuff on the web server
idk what the thing with the panda.thm thing is
in the robots directory
im still kind of a noob
that means you should add panda.thm to you /etc/hosts
wait how do I do this
put 10.10.183.246 panda.thm in there
but you don't need this if you're not going for the wordpress foothold
yes
bro
i feel like i'm chilling in f'ing mars rn
432 Hz Destroy Unconscious Blockages & Fear, Binaural Beats
You can download this track with the title "432 Hz Destroy Unconscious Blockages" here:
Amazon: http://amzn.to/3bWrvHq
7 Digital: http://bit.ly/2THr1LK
or listen to it on:
Spotify: https://spoti.fi/2xubbvn
YouTube Music: http://bit.ly/2TUihRu
Deezer: http://bit.ly/3cRVVbG
Akazoo: htt...
wtf
lmao
wait now I can access the wordpress directory?
why did I have to add the host then?
shoudnt I already be able to access the wordpress directory?
got a flag ajsdbasd
im tryna find some credentials and maybe get something through the mysql
because the webserver is setup to identify virtual hosts by hostname i believe
ohhh icic
so when you add it to /etc/hosts your browser sends the request with the host: panda.thm header
thats the only thing close that I found so far
ohhhhh I see
i have no idea
its just on the home page html code
its in a comment
hmmm maybe some stego on the image?
lemme just keep messing with the tomcat ajhsdbabd
yeaaa i was experimenting
want to play another one after?
nah i'm tired
ah okok
sad
im trying stuff on the smb server
Known Usernames .. administrator, guest, krbtgt, domain admins, root, bin, none
anyone else want to play another one?
@fair adder why you left
im gonna do a ctf
ok and i'm gonna cry
why did you leave me evan
why did you do it
because i gotta install ram
ok
i download keyboard now
sudo apt-get install 16gb of ram
only the best
i'm typing like this rn https://www.youtube.com/watch?v=Zcz-Hq1NP98
Subscribe to The Telegraph on YouTube βΊ https://bit.ly/3idrdLH
Billionaire Elon Musk has unveiled a video showing a cyborg monkey playing the 1970s video game Pong entirely with its mind using brain implants.
The footage shows a nine-year-old macaque called Pager with a chip inserted on each side of his brain, created by Musk's AI company Ne...
good luck @vital tide
good luck!
BRUHHHH WHY IS IT WINDOWS
NAHJHHHHH
IMA BE DEAD
I CANT DO WINDOWS STUFF FOR MY LIFE

in 4 mins