#koth-voice-chat
1 messages Β· Page 9 of 1
shall we play another game ?
Okay
GG reached 400 wins, now 100 more to reach jce π€£ π
hopefully it's a linux box this time
well, enough koth for today hahaha
i suck with windows lol
you pwned us on this one
lol
I'll have to leave, until next time folks, we're together!
your hacking skills are amazing bro
thanks bro β€οΈ
Gave +1 Rep to @hollow zephyr
Okay next time
π
bye bye ti'll the next time
bye
Join Us PLEAS
but you need user to excute XSS'
XXE not XSS
take a look at this
<?php
include_once('../Autoload.php');
include_once('../Route.php');
include_once('../Output.php');
include_once('../View.php');
Route::load();
Route::run();
sorry low charge
it's alright
peace
if( isset($_COOKIE["token"]) && $_COOKIE["token"] === '1f7f97c3a7aa4a75194768b58ad8a71d' ) {
Did you explot xxs
yes
@solid skiff gg
bye
@solid skiff I had no idea who I was up against in the current koth
@ripe kite
@vapid storm
Hi
@queen pasture i f love revshells.com ty you!
Gave +1 Rep to @queen pasture
Thank you π β€οΈ
Gave +1 Rep to @umbral tulip
https://github.com/MatheuZSecurity/hide-a-process -- hide a process in koth machine
can we reset ssh is down
thanks
anyone good with kde
~!!!!!!
what for ?
@hollow zephyr
OWASP is so long 
Hey guys
@elder comet , dm me
First, read the rules. https://tryhackme.com/games/koth
How to gain VC privs?
wtttt
u just did XD
yes thx, fgured it out
the bot wouldnt dm me
so i just dmed the bot instead
i guess shes playing hard to get
hahah
ayyyyπ
i am new in this discord group
i have knowledg about computer things programing and stuf but i dont now phyton plz try to help me
@verbal tartan
Welcome @verbal tartan , check this beautiful playlist made by chuck
https://www.youtube.com/watch?v=KtoEMQ5Y0tA&list=PLKZjLeG8AwtES8apo6gonH4XmN_9xIo8W
Introduction to the class and info about course goals, environment, etc.
Taking nap will be right back
Anyone wanna do a koth around 0245z?
mysql -u root -p -h <target_IP>
mysql -h $VMIP -u f11snipe -pf11snipe
running your linpeas snipe, lmao
π
checkin out suid bins..... on gtfo website, haha
i saw your ssh key tho, lol
that's fuckin' hilarious it has your gmail account on there
pub key π
save it for later π
spectator: https://tryhackme.com/games/koth/45341
fuck, I joined when its already finishedπ€£
π
@ivory shore bro
join
lol sorry totally missed this π€¦ββοΈ
i gotta go sleep now ... tmrw tho π
joining late π
π
joined
: )
π
yep
yo
sup ghost
join us
yoo bro wassup
im good , how's the ctf with dead going π
it was co-insidence
it happened with me too, go with user pasta
+--------------------+
| Database |
+--------------------+
| information_schema |
+--------------------+
Who ate other tables π₯²
rip
@urban seal
Gave +1 Rep to @sinful nest
use this only when you are rooted and your nick is already in king
GG
45235, 45237
are u guys playing koth?
ya! 20m left in this game, probably do another π
Jeez - did you try to catch a softball with our forearm?
My kid hit me with something lool
Brutal. Stories like this are the best birth control
fcrackzip -u -D -p wordlist.txt -v .I_saved_it_harry.zip
mmm yes a dedicated monitor for discord 
@vapid storm@balmy tusk hi
Hii @sinful nest
Hi! how are ya
how are you ?
good and you ?
@sinful nest i Am Good What about you.
Hi
What is Koth
Hey! koth is "King of The Hill" π ... it's kind of like "multiplayer" CTF, with 2+ people going against the same target/vm
lots of fun! if you ever wanna join and try it out, i'd be happy to help ... i'm still fairly new to it, learning as i go π
Ok sounds good, thanks!
Gave +1 Rep to @ivory shore
@ivory shore
yo
You want to develop a toolkit?
I'd be down
Yeah same I wanna finish this machine first
which machine you doing now ???
It's called biteme or something
It's taking years so I might let it run in the background
ohh
The machine ??
yeah I was too slow lol
lml which one the one you was doing ???
the same one I was doing earlier
ohhh boy
did you got the user flag ??
no I was supposed to brute force a 4 digit MFA code but it took too long
I'll retry it eventually
alright
yeah
lo
Trying to play koth?
King of the hill! It's kinda like multi player CTF π, i started playing a bit last week, been lots of fun haha
Cool! I'll be back in a couple min
ok
@ruby current i'm back, do you want to drop into the KOTH voice channel? we could ask if anyone else wants to join a beginner koth game too
π Hello all!
Hello π
hello
wow GG to everyone who was just on that Hogwarts room. That's the first time I've ever gotten a flag in Hogwarts
some1 playing koth rn?

π
anyone wanna play some koth rn?
nice
thanks xD
Gave +1 Rep to @golden plover
thanks π
awesome video loved it
KOTH anyone?
thanks
Gave +1 Rep to @rancid plaza
?
I think you ghost pinged me.
Whyever.
Or I may hallucinate, but I surely think you ghostpinged me.
lol
greets
@uneven steppe hi
i dont speak english, sorry π¦
yes
π€£
i know
I'm from rio de janeiro - BR
gobuster dir -w /usr/share/wordlists/big_seclists_dirb.txt -u tyler.thm/cgi-bin -t 100
@sinful nest what kind of stream is thisπ€£ , and i liked your kicking style bro echo "do you have girlfriend" π€£
π€£ π€£ π€£ π€£ π€£ π€£ π€£ π€£ π€£ π€£
@urban seal will you come play with us?
new match?
I think so, I don't know if they will also play the next one
i know i will loose from youπ
relax, I'm playing this one just for fun
okk bro
I don't think he even noticed when I ran a funny command in his terminal π€£
π
π€£
Wanted to touch base. Do you have to be in the KOTH or can we just chill out and watch?
I'm used to playing koth and listening to music π€£
Here to watch. Want to see how it works first
i understand
@shrewd reef are you talking to me ?
sorry, i dont speak english
but i went into the offline machine, got king and then went back to the tyler machine
good guys, i think i'm going out, i'll be back tomorrow, have a good night, or good afternoon
π€£
good game guys!
Eu estava perguntando se a mΓ‘quina da janela estava offline?
@sinful nest VocΓͺ bloqueia todos nΓ³s
no, the machine was online, I just changed the administrator password
ahhh eu entendo
on the tyler machine I didn't block anyone, I just patched the command execution and file upload entrypoint, but the narrator user password is the same, found in smbclient
you didn't do the portscanner?
I was trying to access a file called "sudoers" u didnt change the perms for that?
I patched too
but there was a lot more other ways of scaling privileges besides vim, the machine is old
por algum motivo eu nΓ£o estava nΓ£o poderia ter logado nos compartilhamentos
no it was not actually offline, if you noticed port 445 was open and there was a unknown's_secret_password.txt too
where did you learn so much about blue teaming?
I understand, I'm young too, I have a lot to learn too
haha yea fs
you seem really good at this stuff doe
studying computer science or IT?
with only 1 minute left for the machine to finish, I changed the permissions so that only root can access smbclient
thanks xD
Gave +1 Rep to @short elbow
college ?
you will not believe but @sinful nest is just 16π€£
π€£ I think he referred to college, well unfortunately being a minor he can't π¦
I'll only be able to go to college in 1 year, when I finish school
great
ouuu thats so cool
im 17 still
gonna study IT next year
nice
@urban seal is kicking my ass in KoTH lol
π
which match we had bro? can you tell me your username
fuck, windows again
damn that was quick lol
hahahha thanks bro
Gave +1 Rep to @astral harness
nice
so where was king file? or was I an idiot and didn't find it cause you hid it?
i havnt hided it, just renamed itπ
the king file was at same place whole time
damn lol
Looked right over it
i am in\
so dificult bro hahahaha
You patched ssh? π
Yeah, why?
Hahaha cause i couldnt access in koth
I had the creds but no way in π¦
GG man!
if you are up for another one let me know..
@cinder aspen I understand, but now I won't be able to play, only later
Too π
π€£ π
Not only quick in hacking but also deleting the picture π
π€£ π€£
-undelete -a
Up to 10 last deleted messages (last hour or 12 hours for premium):
25 minutes ago (Sun May 22 15:30:37 2022) MatheuZ Security#8923 (ID 745672959804571742):
Why reset 3 times? π
wwwwwwwwwwaaaas
why we cant enter the voice chat?
cause u are not verified
!docs verify @safe cedar
!docs
Visit the help site
Learn how to sync your THM profile to Discord
Learn about our student discount programme
View all the TryHackMe levels & point requirements
Get started with making TryHackMe room
Learn about the TryHackMe room review process
Read about the TryHackMe API
How to play TryHackMe's King of the Hill (KoTH)
What rooms should you do? A free guide for beginners
Learn about TryHackMe's Bug Bounty Programme!
!docs verify
@safe cedar
ohhh thanks
GLHF @safe cedar
i cant bro hahahaha gg
u got verified yayy
yeah, thanks to u
Gave +1 Rep to @ripe kite
no worries bro
u got flag man @safe cedar
i did it hahaha
did you also got revshell? i think i kicked out one haha
gg man
!docs bug-bounty
who is "nyaning me" lmfao hahahaha
anyone wanna hop in?
Hi, I am trying to go through the Network Attacks - Protocols section, however, the IP isn
't listed in the module
what's the ip meant to be for the attacks
*Protocols and Servers 2
@sweet gull hiiiiiiiiiiiiiii
YOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO
tWhat are you doing ? @sweet gull
i understand
koth list is empty nowπ€£
π
Hi
yo @vapid storm i saw long time ago your notion profile and try it myself, is it looks nice?
ty 
Gave +1 Rep to @mint oasis
any way it was very helpful to see how you managed stuff so i give a try, now its only way for me, ty again
sounds like its was me
!docs verfy
What platform is this ?
Ok @umbral tulip
hello new friends
yep
nah no mic
gonna be Pro Strimmer
lmao ikr
i was still trying linux command on that last windows box
pain.
i came from bad python programming lul
im like a beginner but with 2 years added
nice
im 90% sure i found a command injection vuln but used all the wrong commands
holy shit
i finally got kerbrute to work
its a tool to find domain users
i think
90% sure
brb
@zenith copper @pulsar jungle still on the phone π
no patch
f11 mvp
oh yea
@ivory shore what was that nyan cat thing you did on ssh yesterday???
TryHackMe is a free online platform for learning cyber security, using hands-on exercises and labs, all through your browser!
yea i remember that
still got the screen shot that i showed my friend lul
this one
what is rust scan btw???
yea i ran my nmap for all port with t4 and im just getting it back
rustscan incoming
yea lul
still trying to find the ssh port
so uhhh
can anyone tell me the ssh port??
NOOOOOOOOOOOOOOOO
lmaooooo
i got stuck on vi LMAOOOOOOOOOOOOOOOOOOOOO
wym
i break something???
ah nice
yea i was looking at the web path
yoink
yea im not that good LUL
just got foothold first time lol
grats!
im a bit new to hacking so im trying my best
got the fake root
weird
tyler : Jun 8 01:05:34 : tdurden : user NOT in sudoers ; TTY=pts/4 ; PWD=/home ; USER=root ; COMMAND=/bin/install -m =xs /usr/bin/vim . @ivory shore
lmaoi
ok thx
me still enumerating
im confused on this "fake root"
im in root@tyler but idk where to go from there
yea but i thought i had the fake king.txt
i heard u say something about a fake king.txt
ah
was that on port 5000
thanks
what did u do with the key because i found it and cracked it i think
oh i found a root key
the fake root has a config file
and it has a root hash
am i able to put the hash here
@ivory shore root hash: $6$pL0WJTAINxC5Gvgv$pVLXh87pmWOqxTBc2R2BXncw8coHsXqSK6l2qfWGwSqHyG0Mdq9QsDbnSNMil4AKOQ7enTgvp0PqQdRYdCfYS0
i gtg to bathroom then ill join
I normally use the directory-list-2.3-medium.txt wordlist when bruteforcing web pages
it's in seclist
The general common one can be helpful too, and usually pretty quick
what's happening in vc? xD
waiting for game
no mic gang ftw
lessgooo
i'd use my mic but my chair is really squeeky
anyone gonna screenshare? i would love to spectate.
i will when i get back
no stream sniping
YUHHHHHHHHH
just gonna watch
@pulsar jungle its not your vpn
someone running a script to kill session every minute
chattr
heading to bed, vpn is being weird still
thxc
thx
lmao im really new to this
i gotta learn all these
im just glad i got to the king file
how escape vim in reverse shell
good night
haha nice
hi mic broken
Good day!
Thank, I hope play with you soon!!!
can join here if you want
nobody here yet
can do practice game π
I think I'll stream the next one (or two ... or three π )
https://f11snipe.live
\
bet
Q1. Wap to create a class with 2 constructors and 2 overloaded methods. Inherit this class in another child class and override any one of the 2 methods
Q2. Implement the concept of multithreading and use any 2 inbuilt thread methods
Q3. Demonstrate the concept of Exception handling by creating a user-defined exception
Q4. WAP to write content into a file after creation of a file. (Check whether file is created or not before writing)
any two
do you ever use CVE-2021-4043 The cve that goes from user straight to root in KOTH
// A Simple Java program to demonstrate
// method overriding in java
// Base Class
class Parent {
void show()
{
System.out.println("Parent's show()");
}
}
// Inherited class
class Child extends Parent {
// This method overrides show() of Parent
@Override
void show()
{
System.out.println("Child's show()");
}
}
// Driver class
class Main {
public static void main(String[] args)
{
// If a Parent type reference refers
// to a Parent object, then Parent's
// show is called
Parent obj1 = new Parent();
obj1.show();
// If a Parent type reference refers
// to a Child object Child's show()
// is called. This is called RUN TIME
// POLYMORPHISM.
Parent obj2 = new Child();
obj2.show();
}
}
Is this homework?
yea buddy
You should ask your instructor, first. We don't help with homework here.
ohh okay
already 3 people
brb
Room i made a bit ago, V2 going thru review π
?
send me the match link so I can join too
i dont speak english, sorry B(
yes, i speak portuguese
vocΓͺ trollou eles lol
yes i got access and threw urandom in the shell of a
π€£
https://github.com/epi052/feroxbuster @alpine carbon give this a try
+1 for Ferrox.
^^^
Cc
?
Tracklist: http://1001.tl/2pu1s5lt
Live Today, Love Tomorrow, Unite Forever,...
www.tomorrowland.com
Hi
Hi! How's it going?
Am doing well and you
I'm doing pretty well! Just getting started at work, playing a little KoTH on the side lol
You interested in playing King of the hill?
would you be allowed to kill shells in koth (kill the processes)?
yes
This post goes over some more stuff than the regular rules list π
here it only goes over the basic rules
It has info on killing shells, and some other guidelines
^
nvm I found the real one
oh
sorry
meant to share this π
@ivory shore Good game bro 
I see you didn't see my busybox with chattr binary @ivory shore
Why am I seeing people that get no flags but become king
Because people preferring king points over flags. You can find the flags later in game but king points are more important.
Thx!
What is up with hydra not working on the hackers koth
d
019AFAA8 7B 7C 7D 7E 7F C2 80 C2 {|}~Γβ¬Γ
019AFAB0 81 C2 82 C2 83 C2 84 C2 ΒΓβΓΖΓβΓ
019AFAB8 85 C2 86 C2 87 C2 88 C2 β¦Γβ Γβ‘ΓΛΓ
019AFAC0 89 C2 8A C2 8B C2 8C C2 β°ΓΕ ΓβΉΓΕΓ
019AFAC8 8D C2 8E C2 8F C2 90 C2 ΒΓΕ½ΓΒΓΒΓ
019AFAD0 91 C2 92 C2 93 C2 94 C2 βΓβΓβΓβΓ
019AFAD8 95 C2 96 C2 97 C2 98 C2 β’ΓβΓβΓΛΓ
What do you mean? Did it fail? Or just run for a long time?
It just ran for a long time
@sinful olive I was asking what's the name of the machine you guys are doing on koth
carnage
Ohhk
ok, it usually takes me a few / several minutes ... it can sometimes be longer in larger matches, if everyone starts brute forcing together, they an all be impacted and slow down a bit ... how long did it run for? do you know how many passwords it attempted in that time?
Oh my, the only other piece to look at (if you have it) is the number of attempted passwords... Sometimes the runtime doesn't mean it tried enough, if there are enough failures or throttling to slow it down sufficiently
How's it going? On my way home now π
good
@sinful olive enjoy
brb
hello
Hey
hydra ssh://Machine_Ip -l johnie -P lock
Private hackers game (for practice & testing - pls no patching π )
https://tryhackme.com/games/koth/join/7d4c57876aea6ab726766760
@ivory shore I'm sharing my screen
Yeah @quasi lily
@shrewd reef Are you free
@quasi lily Yeah I'm free
bro are u now?
@queen pasture hiiii
Ayeeee
Hey!! How's it going? I'm gonna be working for a while, but I'll be joining some KoTH games to hang out in the background π
You looking to play / learn KoTH?
? Just wanna spectate games?? Or are you just thought you were in the porn pls discord ? π
-unmute 954643233760247819 Please don't ping everyone. It makes the bot upset. For obvious reasons (mainly that we're a 137k member discord) we have everyone disabled.
π Unmuted ALPHA Q#0635
pls explain what you mean by this
@elder solar would you be able to zoom to increase the font size?
@fleet bane sorry ok
No worries
cool
-mute @sinful nest 5d Absolutely not appropriate
π Muted MatheuZ Security#8923 for 5 days
-mute @vapid storm Keep it on English only. Don't be rude.
π Muted M0rt1nh0#4468 for 1 day
t
Hi
Hi
hi guys
how can i get into a private voice chat with the other players of a koth game?
!docs verify
someone up for a koth game?
yea
u still here?
@summer shard im going out to grab something to eat, i'll be back in about 10 mins
no problem
yo, no problem, hit me with the link when you done
anyone else wanna play?
Hi
Hi
Hey
OK
About to try my first KotH, any tips? I feel like im gonna get rekt lol
!docs koth
Best tip:
Read rules and you are good to go.
π
you can change it in your profile
Ah
Alr thank you
Gave +1 Rep to @vocal ginkgo
yo
Is it normal to be connected and then disconnected from koth boxes? One minute I can nmap it and another I can't even get a ping response from it
Thanks!
Gave +1 Rep to @violet meteor
why does this not work, I thought I am already root
@sharp wagon Jzt typ passwd
But why doesnt passwd shrek work if I am root?
Maybe root uid but not root gid
Thank you, I THINK that is the problem
Gave +1 Rep to @iron lion
!docs verify
Wait but how does that work? Wouldn't having rootuid give you all privileges as those of root?
dunno but maybe not
hey guys!
hey
You should be able to see currently applied permissions with id command. There are some different implications and methods depending on level of root access (uid, gid, euid, etc)
are you guys not playing now
Thank you
Gave +1 Rep to @ivory shore
Anyone currently in a game
join this game guys
Starts in 15 minutes
18 minutes
