#koth-voice-chat
1 messages Β· Page 2 of 1
No error.
People kicked me out a couple times too haha
I think it's either my computer or my Internet
@reef canopy have you tried regenerating a new openvpn config file.
I haven't. I'll try that today.
Thanks for that tip too!
So, seems to be working on my desktop just fine! It was still connected to the VPN when I unlocked it... I think @zinc totem might be right about the multiple OpenVPN connections. Or it's just a weird problem with my laptop
UNO and F11snipe why do kill the machine
https://tryhackme.com/games/koth/join/5c474b460ff1ae5b3106d699 take that link and check if you can ping or scan or do anything
why they do this may be we can report its too much
i am pretty sure f11snipe is not the one who did this
sorry bro F11snipe i saw it there is someone delete file
was UN0, i was first to vote reset π
stole king after he killed machine, hopefully he'll learn a lesson eventually π€
ahahahaha big up for give him the lesson
what happened guys
10 min
I can jump on VC in a bit before it starts π
Oh sorry, just saw this... Never tried haha, was it having issues?
I asked because I kicked you from the session :)))
Don't think that was me π
I usually don't use ssh or stable shells at all π
oh but we're on hogwarts box now haha ... it's the only linux machine i think requires ssh entrypoint π€
"See you on the box!" π
the password for ssh was in the ftp :))0
but I changed :)))
i saw
I was nnyaned :)))
π
wtf
Why I cant access king.txt
I mean, Im root
@ivory shore Can you teach me please
damn, do you changed the vim with nano 
haha no, actually that's default on hogwarts box (super troll lol)
one question
throws me off everytime haha
how If Im root I cant chmod or other commends?
I mean, even though Im root I cant have acces to some commands
for example now I cant edit king.txt
why?
Im root
chattr ? I also used ||a mount trick earlier|| (can check my YT, one of my recent vids went over it π )
https://f11snipe.live
Ok you used chatter, but why I cant use chattr to :))
i have quite a few king tricks haha ... my best one makes chattr irrelevant π
chmod will change the base permissions (RWX)
chattr managed additional "attributes" on file(s), to better control access/integrity (+i = lock for everyone, regardless of perms/chmod)
ls -al will show all files and perms (from chmod)
lsattr will show all attributes on files (from chattr)
a few there, most recent was a way to block without chattr
still gotta make more content! haha
very nice
so youre a nice hacker :))
I still need to learn
I think you probably have more experience
I have tons of "blue team" type experience haha, been doing systems/software engineering for a long time, but only tinkering in hacking until a few months ago (and I fell in love with KoTH haha)
So I still have lots to learn (especially for windows lol) ... but I know way too much about linux systems from sysadmin POV π
what resources do you recommend to learn more linux
Now Im reading this book https://www.amazon.com/Linux-Basics-Hackers-Networking-Scripting/dp/1593278551
that looks good! I'm weird and prefer man page and textbook/whitepaper/RFC reading, stack overflow helps daily too π ... I can share more, but it's such a wide subject, best to start getting into more specific resources to learn what you want/need
here's a good blog series, learned everything I know about rootkits going through this (best with more advanced linux/system knowledge & experience in C)
https://xcellerator.github.io/posts/linux_rootkits_01/
Learning about Linux rootkits is a great way to learn more about how the kernel works. Whatβs great about it is that, unless you really understand what the kernel is doing, your rootkit is unlikely to work, so it serves as a fantasic verifier.
In the FreeBSD world, you can find Joseph Kongβs amazing book Designing BSD Rootkits. It was written in...
thx
@ivory shore the nyancat troll image script is created by you or is from the room?
GG MatheuZSec
i couldn't get anything
I think that i needed to find something on the 8888 port with werkzeug
but i have no idea
@ivory shore any ideas on this koth?
@ocean trellis Did you patch neville password?
ooh sorry seing this kinda late @raven valley
yeah but i returned the default pass after setting myself up:)
@proud frigate I've got issues , cant enter a new koth game, keeps saying un defined π¦
lol both machines you did that? (fortune and hogwarts)
cause I wasn't able to connect at all
and this hackers machine there is something wrong with it
I think
now this part im not sure coz i dont tamper with the machine ... for fairness π
Well, actually, this is part of patching up the box....
Next time i guess
No I meant for the password part
Yeahπ
i saw it on your stream was it same as that
@vapid storm u in h1medium?
i have prob with my vpn
we can run another one just let me know.. have you killed all previous openvpn connections
@raven valley you sent spectator link its the other link you want to send
@slim surge
Aren't you already playing in the h1-medium?
Alright XD
sometimes 3 at once
ill be able to see once you put your name in king.txt and i can switch terminal tabs in order to take it over
like now hahah
π
dude XD
I know for sure you didn't mess with port 3000 right?
but how do you bypass chattr?
look for the loop that it is running in..... then either kill that or try and make a competing loop
lol was no loop running
oh then it is easier
Oh
It seems everyone who plays koth has their own rootkit/backdoor XD
I need to learn stuff like that
watching 9999 on my terminal so i can see when you put your name into king and i switched it back before min was up
if trapnat only ran chattr once you can just run the reverse command to remove the immutability and then change king
hahah didnt even run chattr yet
and havent patched anything.....
all you have to do is echo "Chosey" > /root/king.txt
Do what?
you already took king
you know how to lock king?
Nope
chattr I think
I used the wrong command and deleted the chattr binary
so no way of locking now
here grab a static chattr binary https://busybox.net/downloads/binaries/1.31.0-i686-uclibc/
your gonna need it now to unlock it...
or just upload busybox in some hidden folder
XDD
You gotta teach me
lol
Did it work on you XD
I killed it already lol
anyways
how did you get root?
matter of fact how did you get bunny?
where did you find her hash lol
/etc/shadow
tried that without the a
so you got jordan first?
damn so you had append mode only on it too
what are other ways better than chattr that could be "less detected"
cause
Idk
but it feels like chattr is so known
and then mount root to somewhere else?
that makes the folder read only
until someone finds that folder right?
can't you just use the find command on the king.txt?
watch... you have king now ill show you what it looks like
cd to root and ls -la
try to write to king
oh
didn't you mount /tmp/... to /root?
shouldn't stuff in /tmp/... be read only on /root?
or did you create a new folder?
nope i made a differnet folder with just king.txt inside
oh
if your trying to be sneaky you can copy all of root and then mount it and it would have all files that was in root so its not so noticable
I'm sorry but what exactly did that do again?
ok if your running it .. its going to copy all file of root to /tmp/...
and this seems likes its an easy solution isn't it?
yea
that part I understood
dont need to know which folder is mounted
then second part will mount /tmp/... to root
I played vs someone before who made the king.txt hidden while not having a . in front of it and being able to cat it
do you manage to know how he did it
but that one had my name how was your name in /root/king.txt then?
lol you see how even tho you have your name in king its still showing mine
Exactly that's what I'm talking about
thats a nice little trick
cat /etc/shadow
couldve got in on 3000 before you patched.....
Well after I patched you still got in
some games passwords change, some dont... take notes on everything
Gg
gg
Thanks btw def learnt alot from you today
hope you learned something new... 
Unfortunately I got an exam in 7 hours so I gotta get some rest
I'm looking forward to playing with you more though when you are free
ok just hit me up
Shouldn't every machine have multiple ways in?
creds go to https://www.youtube.com/watch?v=wIDdrY-opPU&t=4670s for that trick.
Playing KoTH and building cool tools & scripts!
yea they do.. at least 3 or 4 ways in
some are more sneakier than others
well I think space-jam has only one
i got in with bunny.. you got in 3000.. you can get in with jordan..
there might be another way also .. still enumerating all the machines to find all the ways in
yes but you need to have hacked it before to get in bunny or jordan I think XD
lol yea i dumped all /etc/shadows into some notes to see which ones i could crack...
I think I found another way for jordan but for some reason it got patched alone when the machine was starting
i dont patch the machines cuz i like trying to fight for king.
I used the Jordan every point here too, but it's "fragile" haha, i think it breaks or gets stuck easily by scans and other players. It should restart automatically tho...
https://youtu.be/mqgL8EOHvFs
Quick walkthrough on the SpaceJam box for King of The Hill on TryHackMe. Gimme root & king in under 10m pls :)
Oh gonna look at it now
im new to KoTH this is my first game
i am new to this so you will obv win
after that
can you tell me what u did
or what u tried
@slim surge
ty in advance
β€οΈ
i dont know much about windows... we could run another one and you can practice if you want
β€οΈ
just create a private game with any box you want to practice on and send me the link ill join
ok ty
i cant ssh anything
i made sure i am connected to the config vpn
i can ping the machine and scan it with nmap
but i cant ssh to it whatever what
like i said i dont know much about the windows boxes but i havent changed anyhing
Error? Or just bad creds?
It's not bad creds when I enter the command it just keeps blinking until it says connection closed by host
Hmmm, ya sounds like VPN, network, firewall issue π€
@slim surge fgs
I'm lost lol.
nope
lol
/bin/bash -p
I gave up lol. π€¦ββοΈ
did you run a namp scan?
Why is my revshell not working then?
I did.
did you find anything interesting on any of the ports
no xD you delete the flag
no i did not ;)))
there s a way to get it back
my tty was getting spammed at first too
yes you break machine xD score dont change
is sanlake
yes he delete all command
it is normally forbidden
isnt that against the rules anyway ?
well i hope the mods of koth do something
he was not getting points just now as well
yes
add me rq
gg @slim surge i was litterally pasting the last flag last second but included the cat command into my clipboard
GG @sinful olive
is there anyone who want to play koth with me?
@reef wadi
ifconfig
GG Hack.You
3
https://tryhackme.com/games/koth/join/16260e899299c7cedfd4517a @short elbow @grizzled hinge
starts in 15min
@slim surgehop in vc
wassup
naw i didnt patch anything
join that other game lol
yea
im on production
lol
try port 80
yea u can still join it
ohhh your on production strive?
here easy entry

wassup
theres a spare in /tmp @short elbow
ssh -i id_rsa
yea you can kick ppl
go ahead
ill be back
here you can have king back lol
ftp
so you nmaped it . figured out ssh and ftp is there. grabbed the id_rsa from ftp. sshed into it then naviagted till you fouind skidys folder then got the first flag
then what
System info
OS:
IP:
Hostname
DNS:
Web-Technology:
Programming language and frameworks:
Web server software:
Database software:?
SSH Server ?
Mail Server?
News Server: ?
Network File System?
Domain
USERS:
CREDENTIALS (ANY):
=========================================================================
Attack Vectors (To-Try List):
=========================================================================
NMAP RESULTS:
=========================================================================
Services Enumeration:
[+ Port enumeration/osint for all ports- further enumeration based on nmap/shodan]
Ie nc βnv portnumber
telnet IP portnumber
[ + NIKTO for web]
[ + WFUZZ/Feroxbuster/dirb web]
FILES: / (Web Root)
DIRECTORIES: / (Web Root)
=========================================================================
OTHER:
=========================================================================
Exploit :
Cves
=========================================================================
PRIV-ESC:
[+ enum4linux/winpeas/linpeas/evilwinrm]
=========================================================================
Take Away Concepts:
Scripts:
@zinc totem@vapid storm
Any contestants from the KOTH that finished 5mins ago (Machine: Food)?
Hey @grizzled hinge
Do you remember who were there in today's voice chat
I by mistake cancelled his message request
Now I can't remember his name
Help me..
Unaware GU71 Kill Chain i think @static kayak
Gave +1 Rep to @grizzled hinge
Ha
It's working
If you mention someone and say thank you the bot will give you one rep
Umm...
Strive can I get 1 rep back as payback
Just mention me and say thank you
@static kayak thank you
Gave +1 Rep to @static kayak
just btw i dont think the rep points do much
@static kayak you can also give rep points +rep
Gave +1 Rep to @static kayak
Hahaha
Ty
Gave +1 Rep to @slim surge
No Ty
Gave +1 Rep to @ivory shore
ty for this cool tip
Gave +1 Rep to @slim surge
No problem⦠thank you for the free rep
Gave +1 Rep to @sinful olive
y'all playing with free rep π
Was a bit of a sarcastic rep circle jerk earlier ... Thanks for noticing π€£
Gave +1 Rep to @past ember
π
@grizzled hinge +rep +rep
Gave +1 Rep to @grizzled hinge
π
Interesting technique, couldn't miss out on saying thank you
Gave +1 Rep to @slim surge
Wonder what would happen if I said thanks and pinged everyone lol would it break?
Gave +1 Rep to @untold needle
πoh man
Total chaos
+rep @brittle stirrup
^^ @stoic quiver
Please do not advertise unsanctioned giveaways in the discord
The message would never reach the discord
sorry wont happen again.
and was just joking around, wasnt going to actually try it.
@stoic quiver would it be ok to dm?
About?
was wondering if the post was ok if it was changed to say tips and tricks instead of prizes...
just trying to get some more people playing
my nmap cans always stop at 99.75%!! what going on
Scan Harder
Is it possible that someone just shut the ssh port down in production? It's either that or I'm filtered from ssh somehow
@carmine mortar they might've changed the port.... did you try running another scan?
I scanned a few more times but I don't remember other ports, might have missed them
yo
Sorry we jumped the gun on this one...
I would love to help out more in an official capacity, mostly koth related. Do you know the best contact I could speak with about this?
yall gave me that 1 min im appreciative 
Hey guys! Iβm new to the KOTH scene, this is my first game so be gentle lol
hey, remember me...?
!docs verify
gg @ivory shore
Thanks! You too!
Gave +1 Rep to @fleet wren
wow, its F11snipe
haha π @ivory shore
what is going on here
Nothing, just a little bit of fun π
yes, you can't do anything without an ip haha
@potent shoal might have to vote reset when that happens
Seen that happen a few times so far.. tried brute forcing flags to find out which box was running but that doesnβt workβ¦ only thing Iβve seen that works is resetting machine
yes quite possible, had also tried reset, but it was not voted on
@potent shoal What is the entry point for running lab. I tried so much . Can you give a hint?
for Carnage?
yes
look at port 82^^
and https://tryhackme.com/room/burpsuitebasics can help^^
why did you reset machine much time?
for the same reason you did it when i changed the ssh password. to have a chance.
i reset one time but did you reset more than 8 times?
not a fair game
you ended up resetting it every 3 minutes 
are you sure? i was have low point so and needs to play so as to get at top level so why i reset machine
because you couldn't get in after I changed the ssh password. for the same reason, I resetet
Thereβs other ways to get on the machines besides sshβ¦.
I haven't played KoTH in a long time π
@ivory shore @slim surge well played!
Could someone put me through
Itβs a different name when I cat king.txt from when I request it through 0.0.0.0:9999
I understand the service request for a certain file. But how does this work
I donβt get it
Could you help me out here ?
there were two KOTH binaries and king files
@slim surge could I DM you?
sure
GG @drifting ridge @grave tulip
had to leave mb ^
its ok @oak coral
hi
Can join more if you want π
was windows game π¦ lol ... another one! π
https://tryhackme.com/games/koth/join/b2ff00c3a4cf85c3f3702e41
Hey! Still looking for games? I'm down to play in a few minutes
same
20 mins
what you are getting blackdevil???
using cheap things to win the match
anyway you play alone. I am leaving/
hahahahahahahhahah one day yes bro keep on fight
anyone online we can play fair game and share ideas???
I'm finally ready to do the streaming thing for real! Come join me and @slim surge playing some king of the hill and other fun stuff!
Going to play some King of the Hill games! Will be starting with a brand new Kali VM from scratch, so hopefully the content will be more helpful and easier t...
anyone
portscan fails,...!!!!!
let's play
you are a script kiddie who compensates for not being able to hold on to king by shutting everything off. Try a level playing field sometime.
i am not on the game but still i am the king
you kick me out but i left you can you decide who is noob. your a script kiddie bro
yourself on machine try to be a king everything is open but you can't because i know what i am doing
you have run this "#!/bin/bash
chroot centos_chroot /bin/bash -c "nc -nvlp 6555 -e /bin/bash" " i can see all your command /bin/bash /opt/scripts/chroot.sh
and i am told you first play a fair game and below is my command that warned you
echo "massco99 here please play a fair game if you kick me out you will never back again" > /dev/pts/1
we are here for learn bro not a war thus why i warned you to play a fair game. but sorry if i am cause trouble or bother you i am real sorry @grave tulip bro but i play a fair game
who is andremmsoares
this one was frustratingly close. GG @sand hollow
https://tryhackme.com/games/koth/66325
π
What a game! Well played both of you π
'oly moly that is amazingly close
maybe im lost, but why im not king in h1 hard? i insert my name, but i dont get king
You are not in the h1hard box there. you are inside a docker container. look at the hostname. It's a container ID number, not the hostname of the box itself.
that explains a lot, it was already my assumption, but this confirms it. thanks
Gave +1 Rep to @grave tulip
another way to confirm, if you are unsure, is to check the root filesystem with "ls -al /" . if you see a ".dockerenv" file, you are most likely in a container.
then there should actually be the docker command, right?
well, you're inside the docker container, so it's possible that the 'docker' command is accessible to you, but not guaranteed. I'd suggest running linpeas and/or google "docker container breakout" for some ideas about how to get to the host underneath the container.
yes, that's right, thanks for the tip
Gave +1 Rep to @grave tulip
Am i the only one with VPN issues?
after running a full system upgrade yesterday, i've been unable to connect
!vpnscript
Try this and see if that fixes it
k
Fixed, thanks
Gave +1 Rep to @iron lion
No problem
Shrek box keeps breaking
then reset the box
The tug of war for king was too good for a resetπ
Yes I saw it was awesome π
gg @fervent beacon
haha gg m8, i got in a bit too late π
@ivory shore u wanna join vc
hey! i'm in vc channel on my discord, getting ready to stream soon π₯³ - do a lot of koth playing & learning/helping on stream, dm me if you want to join π
Hehe I almost won the last game against you lol
I enjoyed koth, I just started to game
was a good game, keep at it! koth is pretty fun π
How do you fix the read-only file system error. I've tried remounting but it wouldn't work
Usually is |||mounted "on top" of something|||
Covered it on stream a while back too π
https://www.youtube.com/live/wIDdrY-opPU?feature=share
Playing KoTH and building cool tools & scripts!
is it allowed to remove the chattr command file?
Yes, you can always upload your compiled binary as well.
π
@slim surge you are a genius β€οΈ
@silk patio 
when getting a root shell, can i kill the other users' sessions?
try to maintain your ethics
Yes you can kick people out of the machine. Best practice would be to patch the methods they are getting their access and kill their session so they cannot get back in.
ok thx
What ethics? 
Rule of thumb: if it's a reasonable thing to do in enterprise, it's fine here
In enterprise if you notice a breach, you chuck 'em out and patch π€·ββοΈ
You don't shut down services, or move things between ports, or delete the file system, or whatever other crap people seem to delight in doing to win these things though
i was just
kidding
Then perhaps specify that π€·ββοΈ
Poe's Law: Never assume that your words alone will be interpreted the way you intend them to be over the internet when there are no other indicators of intent
i.e. if you make a statement with no context, expect it to be taken literally
lmao
so is it okay in enterprise to disable someones shell with the nyancat binary????
I could make an argument to push it through change management as part of an initiative to isolate intruders through a honeypot
I mean, I would... might get in trouble for it though 
I'm also very unlikely to need to do that. Probably for the best
yeah it sounds like a very rare enterprise application
what can I do if a file has +ie attributes but I can't run chattr because it "isn't" installed on the system, but I know it is
grab your own copy of busybox and upload it to the box and use the built in chattr in that busybox instance
ok, I'll try it. Thanks
Gave +1 Rep to @iron lion
no problem... just know if your competitors finds that busybox binary they can remove it if they want
yea it can be named anything.... could search for it by size tho
Or filehash if they've just grabbed a prebuilt one
I gained a rev-shell but sometimes it just does some strange things, like it have been hacked. And I can see what a player is typing without me having control over the shell. What does this happen? Can someone actually do that?
and when I stop the rev-shell, my own VM shell is bugged as well (I need to open a new one to use it properly)
this is because of how you stabilise the shell
yes you can interact with other peoples shells if you can figure out the pty or tty that said shell uses
hey can somebody help my on KOTH production machine. even after getting root i was unable to put my name in king.txt
even without PTY/TTY you can do it too! π
hi
CeloXSec is here ???
Hello everyone,I am curious how can I get permission to join voice chat?
!docs verify
then follow the instructions in the link and you can join voice chat and post screenshots
thx!
no problem
What do you need to know for it
It's a Satellite hacking CTF qualifier for Def Con. There's a bunch of Youtube video's you can check out on the site https://hackasat.com/learn and rules are at https://hackasat.com/rules
any one wanna do H1 linux ez
20 mins
π
wp
hi
hey bro share panda link game @ivory shore
@austere ice GG bro for the Koth of Shrek
Could you tell me please how did you exploit the machine plz?
i am on the game now i will sent #inbox @soft beacon
are you 0xPwn3r??
Nope
your username bro?
Alright G take your time and feel free to explain to me how you did it
we were in the Shrek KOTH
first i was try Recon
then fuzz hidden directories and got "robots.txt" file go to the web service port 80 and access robots.txt file
then you will get "/Cpxtpt2hWCee9VFa.txt"
Same then I found a private key
Whose user was that private key?
shrek, puss, or donkey?
shrek
but also you need to chmod 600 so as to have full read and write
login via ssh and run "find / -perm -u=s -type f 2>/dev/null
i got the interesting result as /usr/bin/gdb
go to gitfobins site and search gdb you will get sudo exploit
nice one as well
oooh I see
I used python to spawn a root shell as well
I was root but I couldn't write to king.txt
weird
Did you change something by any chance?
yeah there was chattr command i run
daaaaamn I knew it
also i think f11snipe also do chattr the same
yeah think was but its my tricks
Oh no problem
i will come back soon
where?
i am at koth
nice bro
20 mins
20 mins
20 mins
ΩΨ§Ω
is there a vpn just for koth?
don't think so... shadow just used the default provided tryhackme vpn when they played their only koth game
Gave +1 Rep to @iron lion
no problem
mostly because shadow is getting ready to go sleeps
ahh i see
GLHF @brittle wasp
Let's go
anyone on here
next game in 25min here π
https://tryhackme.com/games/koth/join/7ed455954e7a2e7881c82269
@sand hollow GG
π₯³
20 mins
20 mins
20mins
15 mins private
@latent jay hey can you check the machine there was silverbullet76 in king but wasn't showing as king on scoreboard but when i did remount the root then few things stopped working can you check it once
An user has change the ssh key in the food machine it is legal ?
We cannot hack without this access
At the beginning we need to hack a mysql server for have the ssh key and after we need to use it but one of the other players has change this key.
And I have been kicked .
There are multiple footholds.
And yes, you can be kicked from an SSH session
welcome to KOTH
15 mins
3m
user giorgosR21 removed ssh server from machine, leaving the game unplayble for everyone
Thereβs other ways in besides ssh π€
Also try running another port scan he may have just changed the port #
13m
20 mins
Hey everyone, is there a way around if someone makes the file king.txt immutable and deletes chattr?
always best to bring your own chattr ... can make your own static binary to control flags with ioctl (C, python, etc) , or use existing precompiled static bins like busybox: https://busybox.net/downloads/binaries/1.31.0-i686-uclibc/ π
depends on who you are playing against... at least you will learn a lot by playing
I got 3rd. Everytime i tried to get in. It was a dead end. I got 110 points. will this be added in my total xp?
I'm reading the instructions and there are a lot of rules. Who enforces the rules?
THM Staff, I believe Naughty and Holmes run the KOTH part (?)
Does that actually work?
KoTH points are only in game, don't apply to your main user points
A lot of time people break the rules is actually an accident, I try to help fix and share with players to learn from ... Happy to help as unofficial referee if you ever want one haha
How can i get verified to access the voice chats ? I want to hear the voices of the people who are beating me up and restricting access at 11 minuts of the games :C xD (i am a noob)
!docs verify
!docs verify
Oh thank you !
No problem
15 mins
!docs verify
17 min
!docs verify
!docs verify
15 mins
20 min
10 mins
15 mins to joinhttps://tryhackme.com/games/koth/join/71f06550153f1169efa36569
https://tryhackme.com/games/koth/72313 or if you want to spectate
Hello
10 mins
anyone home?
@sinful nest
hi
look mp
ah ?
private message
20 mins
20 mins
10 mins
Hey
20 mins
!docs verify
15 mins
@sinful nest Hey man! Just hopped on the discord. Can I dm you to ask some questions?
yes
!docs verify
same
I have no idea how to patch
Hole idea is to prevent access to other users, patching requires research and can take some time.
Did you choose the machine or is it random?
KING
damn haha I just barely realized that I had to add the different ports to the ip when I entered it in the web browser
ah
not sure if there is any more flags on the system besides root.txt
i've tried to find it without success
I just figured out the rce
as i said, this page is a php interpreter, it will run any code you type into it. Rev shells included
Expired but didn't start?
@sleek sorrel You having as much trouble as me? XD
It's my first koth and I'm dying of thirst while watching hex drown. XD
I am, yes. Nice to meet you.
Nice to meet you too!
I tried random ssh logins to kill time, lola and bugs are there
Haha for your first one H3x007 got king really fast. Odds are he patched a lot of the easy vulnerabilities
I was thinking the same. lol
Iβd recommend looking at some write ups of the machines to help you learn how they work. Youβll run into the same machines if you keep trying and itβll give you good practice!
Thanks for the tip! I was actually just looking up marvin quotes to try and guess the password XD
My money is on earthshatteringkaboom, or a version of it lol
Iβve either found the password will be in rockyou.txt, or will be in plaintext somewhere on the website (if the box has one) or through a vulnerable service (like Anonymous ftp login)
I noticed telnet was a thing. Maybe an exploit for it? It is notoriously vulnerable.
Perhaps. Part of the fun is researching vulnerabilities and testing them out!
GG, man. I'm looking forward to the next one. I have to run to town for a bit, but i'm going to keep joining them until I get a flag.
One flag will make me happy. Tomorrow will be two. XD
Gg! Just keep trying! It feels pretty good whenever you succeed for every step!
Hi
@ivory shore Did you put my name back in king.txt?
some of my king tricks are "reversible", so if I take my name off it reverts to whoever was in king.txt previously π
haha wow I dont even know where to begin. Would it be too much to ask you to teach me your ways?π
just found your webiste. youre a ninja. im gonna have fun learning xD
GG man, i think youre the real winner lol
@ivory shore Thanks, but what do you once you get root ?
Gave +1 Rep to @ivory shore
I would suggest adding some persistence that way you have a way back to root if you are playing against people patching the machine⦠but the goal after getting root would be keeping your name in /root/king.txt
Rogue12 from TryHackMe here. Looking forward to playing. ^_^
Sorry!
20 mins
hi
Yo
Sup
@slim surge Execute tk?
The ... gave it away
sure its just going to echo my name into king.txt
what does m do?
mount π
@ivory shore any tips?
Do you want tips for defense or attack?
GG @austere ice
BOOOOOM GG@H3xor lol
Hello everyone how are you? Hope well π . Well, after 2 years, I finally updated my tryhackme koth tricks repository with new tricks, I hope you like it, anything I'm available to help π
π
hi new here (in.security)
KoTH is a pvp game on THM, you can access it by setting your profile as intermediate or higher.
!docs koth
You can view games by a scoreboard, but you can't watch other players unless they stream/record (which I don't know can be done)
.
Random times through the day
@forest laurel did you participated in any of these
No, I don't play KoTH.
If you require help you can ask in the appropriate channels, there is no need for a DM.
Yeah, great idea
https://tryhackme.com/games/koth/join/e5df170e249ed12e90a0a92d
Someone wanna join?
hey sanlake you here?
Hello everyone, join me if you like to play
would like rematch
what challenge is it?
I do not know i just join public
no why
yoo can you help me ?
wit what
@wise mica fontaene refered you to infosec-general, this chat is for koth. Please don't drop the same question in random places
but he asked
no, you asked for help.
please dont call me bro. You have to patiently wait until someone in infosec-general wants to help you
ok
thank you
lets play in 20mins https://tryhackme.com/games/koth/76815
20 mins
thats so hard
Might I ask what you mean?
how does one get into the KOTH channels?
you'll have to verify first
!docs verify
thanks due
Gave +1 Rep to @sonic stump
dude
!docs verify
!docs verify
Hi guys how do we register to enter the sounds
see the message by the bot right above your message... it will tell you how to verify your discord account with your tryhackme account getting you access to voice channels
gg to the kid who just beat me by 20 pts on offline, that was fun
i'm a bit schizophrenic
