#koth-voice-chat

1 messages · Page 3 of 1

slim surge
#

10 mins

slim surge
#

20 mins

soft beacon
#

Who wanna join a quick KotH challenge?

wanton sandal
#

me

soft beacon
slate jackal
#

!docs verify

proud frigateBOT
soft beacon
#

GG to 4cid for the Panda challenge

#

If you're here, feel free to tell me how did you privesc'd the box

ivory shore
vapid storm
#

anyone doing a koth right now?

tired lark
#

I just was

#

It was my first time, I didn't even know how to interact with the private IP until 30 minutes in

night hemlock
#

Anyone want to play?

sinful nest
small hamlet
#

What terminal are you using?

sinful nest
#

I customized a little the settings that xct uses

small hamlet
#

Thanks!

sinful nest
#

xD

radiant quail
#

I wanted to replay this machine, i will be glad if someone could join

slim surge
radiant quail
brittle stirrupBOT
#

Gave +1 Rep to @slim surge

slim surge
radiant quail
autumn schooner
#

any

slim surge
autumn schooner
#

any leads ?

slim surge
#

there's a way in on 80

autumn schooner
#

okay

radiant quail
#

Is someone using autorecon or somethings else on the H1: Easy box?

#

It's so slow

river basin
#

Hello

night hemlock
#

Looking for a game if anyone is interested

night hemlock
#

@slim surge gg locking down h1 medium

void dust
#

@slim surge dont beat us to bad 🤣

slim surge
void dust
slim surge
void dust
slim surge
compact pagoda
radiant quail
#

Bruh this dude played the whole day on almost every match

radiant quail
#

If anyone's pty got spammed by this Detrew guy, pls help report

radiant quail
#

I made a script to detect those players before joining matches,
if anyone is interested, please PM me and improve the tool together

wooden garden
radiant quail
brittle stirrupBOT
#

Gave +1 Rep to @wooden garden

slim surge
# radiant quail If anyone's pty got spammed by this Detrew guy, pls help report

I don’t think spamming pty sessions would be against the rules to report a player I mean it’s basically the same as https://tryhackme.com/room/redisl33t you could always just use -T flag when connecting through ssh to prevent someone spamming your pts. Or connect to machine without ssh and just don’t stabilize your shell . We have a few tips and tricks to help maneuver in an unstablized shell and edit files using sed.

#

Feel free to dm if you want I can share some of those tricks with you

radiant quail
brittle stirrupBOT
#

Gave +1 Rep to @slim surge

slim surge
#

No problem

radiant quail
#

arch?

sinful nest
radiant quail
#

cool thx

night hemlock
compact pagoda
radiant quail
compact pagoda
radiant quail
compact pagoda
compact pagoda
#

@sinful nest did you clsoe all ports

sinful nest
#

I'm the one asking

#

you were the one who killed the machine lol @compact pagoda

compact pagoda
#

no

sinful nest
#

send me your terminal output

compact pagoda
#

I closed it

#

click reset

sinful nest
#

lol

#

you break the machine and it's my fault

compact pagoda
#

I didn't break. I saw nyan cat so I closed my terminal

#

And then this error

sinful nest
#

10.2.3.10

#

this is your vpn ip ?

compact pagoda
#

yes

sinful nest
#

lol

#

is you 🤣

compact pagoda
#

?

#

What it say

sinful nest
compact pagoda
#

@sinful nest Are you on sftp

sinful nest
#

no

#

btw @compact pagoda this box doens't have connect from external internet

compact pagoda
#

yeah I just encountered that prob

#

Where are you hiding lol

sinful nest
#

?? @compact pagoda

compact pagoda
#

No, I seeing where you are by deleting files

sinful nest
#

I ? wtf 🤣

#

Last thing, don't blame me for the things you do like breaking the box in this game, that's not cool, own up to your mistakes 😉

compact pagoda
#

I just saw the nyan cat, and closed my terminal

#

Also, @sinful nest do you ln -s /dev/null .bash_history

compact pagoda
#

I was trying to see who enters directory using that. It works usualyl

sinful nest
#

ah ??

compact pagoda
gilded sparrow
#

What is this?

#

attack or defense/

compact pagoda
#

@sinful nest You are using rootkit

sinful nest
#

why ?

compact pagoda
#

systemd?

sinful nest
#

no

compact pagoda
#

I can't edit king.txt you are not using a loop I assume?

compact pagoda
#

Something to do with this ```type=SERVICE_START msg=audit(1691375918.470:3819): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'
< type=SERVICE_STOP msg=audit(1691375918.471:3820): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'
< type=SERVICE_START msg=audit(1691375918.471:3821): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'
< type=SERVICE_STOP msg=audit(1691375918.673:3822): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed'
< type=SERVICE_START msg=audit(1691375923.720:3823): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'
< type=SERVICE_STOP msg=audit(1691375923.721:3824): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'
< type=SERVICE_START msg=audit(1691375923.721:3825): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'
< type=SERVICE_STOP msg=audit(1691375923.922:3826): pid=1 uid=0 auid=4294967295 ses=4294967295 msg='unit=kothh comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=?

sinful nest
#

ah ?

#

wtf

compact pagoda
#

wrong?

sinful nest
#

i'm using this

compact pagoda
#

Not this? Intercept Syscall Write from /root/king.txt.
This technique is very advanced using LKM ( Loadable Kernel Module) that is, at the kernel/ring0 level, me and F11snipe use it, basically if you try to put your nickname in king.txt, nothing will happen and the nickname of who is using the intercept syscall write will remain, as this file is being intercepted.

#

Also your ip? 10.14.39.200

sinful nest
#

ya

#

why ?

compact pagoda
#

Were you using the syscall write thing

compact pagoda
sinful nest
#

cool

compact pagoda
restive kelp
#

@vapid storm Enjoy your king time, im out 🤣

brittle stirrupBOT
#

Gave +1 Rep to @restive kelp

restive kelp
vapid storm
restive kelp
vapid storm
#

before the play this.. i did some osint about koth 🤣

#

@restive kelp

restive kelp
#

Got you ✌️

vapid storm
#

👍

slim surge
sinful nest
sinful nest
restive kelp
brittle stirrupBOT
#

Gave +1 Rep to @slim surge

slim surge
sinful nest
median jolt
night hemlock
#

jump on frens

bronze seal
bronze seal
night hemlock
cloud creek
#

@steel dirge .. aint it taking forever for the ftp bruteforcing?

steel dirge
#

no its anonymus login

cloud creek
#

yeah anonymous login initially, but for the user mcgrawford we need to bruteforce right?

autumn schooner
#

anyone ?

#

want to pplay ?

untold quiver
autumn schooner
#

join

untold quiver
autumn schooner
#

yep

#

game start in 1 min

#

20 sec

untold quiver
autumn schooner
#

username ?

untold quiver
autumn schooner
#

awesome !

cloud creek
#

where is the king.txt in "medium" machine?

slim surge
vapid storm
#

whos in this game with me

wicked beacon
#

need to configure sound settings

radiant quail
#

@tall knoll 10.10.249.62

autumn schooner
#

any !

autumn schooner
#

later

slim surge
#

@violet meteor

acoustic dirgeBOT
#

Done!

#

Done!

vapid forge
#

gg

idle falcon
#

does anyone tell me the right way to approach a koth challenge ?

vapid storm
#

uwu

sonic stump
# vapid storm uwu

Hey can you change your username please? We have a pretty strict no politics rule in this server

frosty hedge
#

Changed it for them. 🙂

vapid storm
#

ok

#

i can

vapid storm
sonic stump
#

you can verify yourself

#

!docs verify

proud frigateBOT
vapid storm
#

im pretty dumb

#

i do not known how to read docs

#

:/

sonic stump
#

no worries, you got it 🙂 you're verified now

sand path
#

!docs verify

proud frigateBOT
ivory shore
vapid storm
#

Hi :3

untold quiver
#

Hi

vapid storm
#

wanna play koth?

#

3 min

untold quiver
#

Not for now, but thanks for asking and have fun or enjoy.

vapid storm
#

ok uwu

untold quiver
#

Okey

vapid storm
#

Ohayo

sinful nest
untold quiver
pure yew
untold quiver
pure yew
#

the voice is locked

untold quiver
pure yew
#

ok

hot fern
#

someone teach me how to play koth

haughty merlin
#

How to change my username on koth?

hot fern
#

thats even possible

#

?

forest laurel
#

!email

proud frigateBOT
untold quiver
#

Hey yall!

slim surge
lime finch
#

Hi all

untold quiver
#

Hi all!

haughty merlin
#

hi .

#

whois stdoropov ?

nova sigil
#

i like to see when people play koth its the best way to learn seeing others play. seeing how they approach things that a great way to learn

winged bane
shell lichen
#

suggest me appropriate linux for pentest which won't crash every other week and which is stable os

untold quiver
slim surge
fringe geyser
#

hello

untold quiver
pearl narwhal
#

Hi

ivory owl
#

who's trevohack?

untold quiver
fringe geyser
#

hey

#

anyone there

untold quiver
#

Hey!

wanton sandal
haughty merlin
#

hi

untold quiver
haughty merlin
#

hi all i broke my shell using while[ 1 ] loop how i can take it back?

winged bane
fringe geyser
#

yo

#

ctf rn?

vapid storm
#

hi

untold quiver
vapid storm
untold quiver
vapid storm
brittle stirrupBOT
#

Gave +1 Rep to @untold quiver

untold quiver
vapid storm
untold quiver
vapid storm
#

yeah

wanton sandal
#

Hello

untold quiver
wanton sandal
untold quiver
humble herald
wanton sandal
celest basin
#

Ya

untold quiver
brittle stirrupBOT
#

Gave +1 Rep to @wanton sandal

untold quiver
proven notch
#

somebody wants to play koth?

untold quiver
#

quite

haughty merlin
#

Hmm

vapid storm
#

lesgo

austere ice
#

hello everyone here i am trying to educate people about patching the system vuln in KOTH game my network are not work well today so also my vpn work slowly thus why i take long time to get into the game sometimes i reset a machine twice. Sorry for that but my advise is that don't delete web folder go and correct the vuln code from that web files and fix it to do that is just like delete the website because of bugs that not true our goals is to learn how to fix that vuln not to shutdown server or delete the web folder thanks and sorry for everybody i bothered @austere ice

untold quiver
#

Okey

sand remnant
untold quiver
#

<

iron needle
#

Hi everyone~ There have person want to play KOTH after 7min

untold quiver
#

O

barren marlin
#

@ivory shore GG's you won off of 5 pts just realized i won. anyways ggs

untold quiver
#

ggs

ivory owl
#

somebody used iptables to block me lol

untold quiver
#

yes

ivory owl
winter mauve
#

yeah lol im new to KOTH

#

ur pretty good bro

#

Good job

ivory owl
#

thx. keep up the good work. just don't screw up the box lol

winter mauve
ivory owl
#

kinda need /etc/passwd

winter mauve
#

Very true lol, I have no idea what to do, to patch vuln's

#

What chmod did u do to make king.txt xrwxxxxxxx

#

chmod 600?

ivory owl
#

i didn't chmod it. google chattr.

wanton sandal
ivory owl
#

a misunderstanding of the rules on my part 😁 . I didn't prevent everyone else from accessing the box.

vapid storm
#

anyone down for some koth?

haughty merlin
vapid storm
#

XD

#

well do it in the morning for sure

#

or later in the afternoon if your still up for it

vapid storm
slim surge
#

starts in 10 mins

untold quiver
#

Okey

humble oak
#

hi

humble oak
#

anyone in here?

#

start in 12 min

#

10 min

untold quiver
#

Okey

humble oak
#

hi

#

who can play koth now

untold quiver
chrome topaz
#

koth anyone?

barren marlin
#

KOTH any1?

humble oak
#

hi

gleaming spruce
#

hello

digital whale
#

@sick panther 😦

sick panther
#

@ivory shore what was ur pts i couldnt find it

ivory shore
sick panther
#

So u use …

#

I was going to demonstrate the trick u thought me last time nyancat

sick panther
#

socat

sick panther
#

@crimson notch

crimson notch
#

check your error.

#

btw im not root anymore.

#

all my processes were killed a while back.

sick panther
#

ooow

crimson notch
sick panther
#

yes

crimson notch
#

you are using netcat command wrong.

#

check that.

#

and you can't read /root/root.txt lol.

sick panther
#

no it was in the crontab

#

so it was going to be run by the root

crimson notch
sick panther
#

what do u mean

#

4real

crimson notch
#

yes.

sick panther
#

is the host down

vivid crane
#

hi

crimson notch
flint ginkgo
#

Hey. WhatsUp Guys..

sick panther
#

Hi there

haughty merlin
#

Hi KoTH player…

humble oak
#

hi

vapid storm
#

Koth anyone?

haughty merlin
#

Play some learn some

haughty merlin
#

wow... windows box on koth is really goods

grand sparrow
grand sparrow
digital whale
#

@candid fable Did u make the txt file?

candid fable
digital whale
#

Idkk lol

#

This was my first windows machine

candid fable
#

GG

digital whale
#

GG man

heady siren
#

Somebody wanna play koth and vc?

flint ginkgo
#

@crimson notch how to posible this.
But I'm getting angry! blobknife

crimson notch
flint ginkgo
#

how to change medium machine password.

vapid storm
#

do u need a openvpn to participate in koth if so where do i get the key?

untold quiver
mossy tulip
#

Someone is up for quick KOTH?

haughty merlin
#

nice one @ionic junco

#

are u want to tell me how you change permission of king.txt so i cannot write on it ?

#

look like added user king are you ?

untold quiver
#

Chattr +i / -i king.txt ? it is does / doesn't work for you ?

haughty merlin
haughty merlin
#

Hei @wanton sandal where you put the chattr ?

wanton sandal
#

i use a custom binary

haughty merlin
#

nice to play with you ...

wanton sandal
#

gg

haughty merlin
#

i have no clue on privesc... can you tell me

#

i miss 2 flag

sudden topaz
#

Is it allowed to close the ssh port on a koth machine?

violet meteor
sudden topaz
#

the box is completely destroyed

#

I'm not even mad anymore

topaz ridge
#

@flint ginkgo Okay for delete the chattr, but not the wget binary 😡

vapid storm
#

hi master @topaz ridge

#

did u have any clue on how to use the rsa keys?

#

i tried like 20 variations of 'ssh -i' and even just 'ssh production' but it said 10.10.27.182 closed on port 22

topaz ridge
#

@vapid storm I don’t know, i was gone to eat. Do you want make a private game to test ?

topaz ridge
#

I send you a pm

vapid storm
#

yup

wintry nest
#

hi

ivory owl
untold quiver
#

.

pale yarrow
#

hi

wild mist
#

hi

#

I would like buy tryhackme premium I need a body for discount if there is someone who would like to buy pls text me.

humble oak
#

hi

compact pagoda
#

What are your guys most sophisticated tools you made or used in koth?

humble oak
#

hi

rain cliff
#

hi

#

how do voice chat to koth user playing with me ?

shy bough
rain cliff
shy bough
rain cliff
shy bough
forest laurel
#

/DOCS verify

tough hawkBOT
rain cliff
#

@shy bough @forest laurel
Thanks! I verified !!

brittle stirrupBOT
#

Gave +1 Rep to @shy bough (current: #2050 - 1)

barren marlin
#

@vestal garnet

#

Are you the one in my room rn?

frozen wing
#

How do I talk with my people in KOTH?

untold quiver
#

You need to be verified. /DOCS verify.

tough hawkBOT
tough hawkBOT
alpine pagoda
#

damn u can go support

glacial laurel
#

@alpine pagoda GG D:

alpine pagoda
glacial laurel
#

@sinful nest Did You Manage To Get Flags? 👀

glacial laurel
sinful nest
glacial laurel
sinful nest
glacial laurel
#

*takes notes*

slim surge
modest magnet
#

Ah man... think i was too slow trying to get SSH

vapid storm
#

who's down for koth?

spring prism
#

I play koth for the first time in months and someone decides to disable ssh smh

untold quiver
#

lol

inner holly
#

@dr0p

#

What a cheater

#

resetting machine since you where kicked out of the machine

#

@staff

tough hawkBOT
forest laurel
tough hawkBOT
#
TryHackMe's Email

TryHackMe's support email address.

inner holly
#

gg zzzzzz super dirty game

#

resets should be deleted

timid leaf
#

Played first KOTH ever and lost due to some minutes. Got root only after the challenge was over. Manual enumeration took time, linpeas was so fast. Bad luck (._.). Any suggestions to a new KOTH player?

sinful nest
brittle stirrupBOT
#

Gave +1 Rep to @sinful nest (current: #133 - 51)

tough hawkBOT
#
TryHackMe
Ollie
clever panther
#

How can I join voice? :(

brittle wasp
#

sorry I have no mic or headset

mossy tulip
tough hawkBOT
acoustic dirgeBOT
#

There are no URLs in that message.

sharp crescent
#

testing

iron lion
#

testing response

rough gate
#

true

gilded breach
#

@queen pasture Good game, definitely gave you hard time. 😄

#

🚀

gilded breach
#

@sinful nest NOOO

#

😄 , Don't wanna play against you.

slim surge
#

Would've been a good game to play... 😩 I missed it.. lol

sinful nest
gilded breach
slim surge
gilded breach
#

@final acorn It's me. 😉

#

I don't play that much, let's see.

final acorn
gilded breach
gilded breach
#

😄

final acorn
#

You wanna play a private koth

#

@gilded breach

gilded breach
final acorn
gilded breach
#

👀

#

Sure.

final acorn
#

I will send you a join link here

gilded breach
#

let me finish the game. prayge

gilded breach
final acorn
gilded breach
#

@final acorn Make a fireworks private one.

queen pasture
tough hawkBOT
#
TryHackMe
Ollie
gilded breach
final acorn
gilded breach
alpine pagoda
#

@gilded breach i challenge you to a koth match

gilded breach
rough gate
#

;=;

vapid storm
#

koth anyone?

#

dm if anyone wanna play

hazy shoal
#

im waiting to play my second KOTH... EVER. Like, im new to hacking and all and have practiced a bit and i did my first KOTH yesterday, and i looked at the recent matches today and the winner in all of them was Ch1. I join a match, im waiting for it to start, guess whoes there. Just me and Ch1. Ch1 seems proffessional, i am new o hacking...

#

I wonder who will win???? (Definitely not me 😅 )

hazy shoal
#

(I bailed out, they patched everything too fast

wanton pilot
hazy shoal
wanton pilot
hazy shoal
#

Idk then, I’m quite new to it

wanton pilot
#

^^

hazy shoal
#

What do you do then? Nmap scan then what? I use tmux, and in split screen do nmap and gobuster and then while that’s going look at the webpage and use inspect element and then go off of what directories are shown in gobuster and ports open in nmap

wanton pilot
#

after nmap if i see http i use dirsearch to enum dir , ffuf to enum subdomain , if there is login page default credential , sqli // if i see some service like ssh , sql i try some default credential like root:root , if i see a CMS on a webpage i search the version and if there is some CVE on it

hazy shoal
#

Ah ok, what’s sqli?

wanton pilot
#

SQL injection

hazy shoal
#

Ohh ok

#

I’ve never understood SQL injection, could you explain it briefly to me?

wanton pilot
#

when you send the request on a webpage the server will do a SQL request like
Select user from users_table where users_table.user = $USER and users_table.password = $PASS

#

in sql the comment is --

#

so you will put in login this ' OR 1=1 -- -

#

so the request will be like that :

#

Select user from users_table where User = '' OR 1=1 -- - ' = users_table.user and users_table.password = $PASS

#
  • = users_table.user and $PASS=users_table.password will be in comment
#

so the requesti will be always true and you will get the admin sessions

hazy shoal
#

Ohhhhhh

#

That makes sense

#

I’ll have to focus on learning a bit of that then.

wanton pilot
hazy shoal
#

(I used to do a bit of programming in python, only basic stuff tho a few years ago so I can understand that relatively easily) the password check bit gets commented out so no password is required

wanton pilot
#

y that the idea

hazy shoal
brittle stirrupBOT
#

Gave +1 Rep to @wanton pilot (current: #2182 - 1)

hazy shoal
#

Pretty smart tbh, can’t get around the password, just disable it

wanton pilot
hazy shoal
#

Ohhh dang

#

Should probably report him.

#

I literally just stopped trying 20 mins into my match cus nothing worked as he had patched everything

forest laurel
#

You do realise that someo of the machines are pre-made images.

#

So if it's an older machine, they were already have auto-pwn stuff.

hazy shoal
hazy shoal
wanton pilot
#

Y is not allowed

hazy shoal
#

@wanton pilot do you want to do a KOTH with me sometime? It could be today, tonorrow, the nexct day. Just whenever. Priv message me whenever you want to and we will do one if I am available. (Remember im new to hacking lol and i want to do KOTH as i found it fun - i have only ever done 1 match - and think it will be great for me to learn.) im also doing old KOTH rooms on tryhackme

grand sparrow
#

😂 i played 400 + games just im 9 level and i beat your a** doesnt mean i cheat level dont do anything in koth its experience

#

i was playing koth since i was level 1 which is almost one year ago and you just started i have keys for most machines and some machines just need a curl cmd if you dont know your way around a machine or those other noobs dont doest mean you accuse me of stuff

grand sparrow
wanton pilot
#

I didn't ask you to justify yourself, but 59 min of root on a game of koth means that you legit rooted the machine in less than 1 min.

grand sparrow
#

you guys should talk in the main koth channel so people can see your messages and i can see them too

wanton pilot
#

It may look suspicious, but if it's legit, well done!

grand sparrow
brittle stirrupBOT
#

Gave +1 Rep to @wanton pilot (current: #1451 - 2)

grand sparrow
#

you just need to save keys and experience with the machines

wanton pilot
#

on the machines that i have played the root was easy just a cmd and the user was juste in sql database

grand sparrow
#

what machine did we play?

wanton pilot
#

y

#

idk the name

#

food or smthg like that

grand sparrow
#

yeah food you littraly need one curl cmd to get a foothold

wanton pilot
#

y

#

for me it was juste sql database was accessible with root:root and there was a credential

#

and the root was only 1 cmd or smthg like that

grand sparrow
#

yeah you get ramen i know ramen noodles is the best is also the pass

wanton pilot
#

y

grand sparrow
#

there is also an http port that have an image in that image there is creds hidden for pasta

#

the httpport just serves the image and you use binwalk on it to get the hidden data

#

i looked at my notes its port 16109 idk if that changes

wanton pilot
#

ok your just a big tryharder x) sry i though your cheating

grand sparrow
#

and there is a hidden api that let you execute stuff as bread with one curl cmd which is what i used 👍

grand sparrow
wanton pilot
#

okok

grand sparrow
wanton pilot
hazy shoal
hazy shoal
grand sparrow
hazy shoal
hazy shoal
#

What’s the curl command to get the foothold

grand sparrow
hazy shoal
#

Alright thx

grand sparrow
#

use ffuf to get the the hidden dir then explore there to find the hidden api

hazy shoal
#

What’s ffuf? Is it like go buster?

grand sparrow
#

yeah but ffuf is a lot faster

hazy shoal
#

And rusts can I’ve heard of but never used

hazy shoal
#

Guys I was practicing on the food koth room from the old rotations, is it the same as the koth room that’s in rotation right now?

grand sparrow
#

yes

#

you can use foodroom to test on it

hazy shoal
#

Ahh ok. I’ll practice on that then so at least I’ll have 1 box that I know I can beat

hazy shoal
#

I’ve tried it but never got into the MySQL or anything, only did an nano

#

Nmap not nano

#

What’s the MySQL to get in and see the users that are like ramen and stuff

grand sparrow
#

for mysql the username is root and the pass is root
just do mysql -h ip -u root -p then type the pass which is root

hazy shoal
#

I could have sworn I tried that

#

Oh well I’ll message here in a bit when I try it and say if that worked or not

grand sparrow
#

or you can go with the approach of the img and get pasta creds
i

hazy shoal
grand sparrow
#

i think i remember you you played with me yesterday and you kept resetting cuz you thought i was patching but i didnt do it

grand sparrow
hazy shoal
#

I promise I have never clicked the reset button, although in the intermission I did keep leaving and then joining again hoping it would be a different match without you

hazy shoal
hazy shoal
grand sparrow
hazy shoal
#

Ahh pls

#

Ok not please lol

#

Autocorrect

#

Il message here in a bit saying if any of this helped, which I think it will. Thanks for the help, sorry it seemed I thought you were cheating, I was just saying it seemed a bit suspicious. You’re very skilled.

grand sparrow
hazy shoal
#

ok. Im loading up the food koth room right now to try some of the stuff you told me

#

the room is ready, machine is strated, but im installing the stuff like rust and ffuf to try out. Ill add more time if i need. Im only doing it to try this all out

hazy shoal
#

never got around to even trying the room as rust wont install

#

how do i install rust? also im busy now so i wont be able to do it anyways until later

grand sparrow
#

install rustscan not rust for me it was just sudo apt update && apt install rustscan if this dont work and you have debian you download the latest .deb package from the the repo only and install it with dpkg -i packagename

hazy shoal
#

Yeah but the dpkg things isn’t working

#

Gives an error

hazy shoal
hazy shoal
#

Error: The repository 'http://ftp.debian.org/debian stretch Release' does not have a Release file.
Notice: Updating from such a repository can't be done securely, and is therefore disabled by default.
Notice: See apt-secure(8) manpage for repository creation and user configuration details.

hazy shoal
#

sudo apt install rustscan
Error: Unable to locate package rustscan

grand sparrow
#

sorry. i was a sleeping let me send you the github repo

#

get the debian package from there and install it

hazy shoal
#

Yeah I have done that but how do I install the package? I’ve downloaded the .deb file from there already but when I do | sudo dpkg -i rustfile.deb |

hazy shoal
#

Not the error in the message I just replied to from myself, but it throws an error

grand sparrow
#

what error does it say?

radiant quail
#

or dpkg -i <full_path_to_the_file>

#

otherwise it will search rustfile.deb from online repo list

steady torrent
#

GAHHHHHH

hazy shoal
brittle stirrupBOT
#

Gave +1 Rep to @radiant quail (current: #759 - 5)

hazy shoal
#

Guys i got it working turns out mysystem runs arm64 not amd64 so the dpkg with t he .deb file thing

#

that didnt work so instead i got it working by asking chatgpt and it said to try the docker method and ave me the commands to do and it finally works everywhere. Before i got it to work but you had to go to the directory

hasty plank
hazy shoal
#

ah well, it’s the only way that worked for me

runic haven
#

why is ch1 in every koth that i ever join?

plush kraken
#

@brazen hull

upbeat lark
#

what is koth ?

tough hawkBOT
neon river
oak nimbus
loud socket
#

Is there is a king of the hill easy mode

sharp crescent
#

Why isn’t it giving us the target IP?

sharp crescent
#

Nicely done Dompriv

#

I’ll get you one day

tall rock
#

How can i get in the vc?

tough hawkBOT
solid lava
scenic shoal
solid lava
#

i was going to play but i left

#

sorry lad

scenic shoal
#

yeah its taking a bit longer than usual i might just do my own

solid lava
#

it never shows for me lol

scenic shoal
#

i've been, but its stuck on "scheduled"

#

I had this issue before with koth, even starting my own

solid lava
#

yeah same

grand sparrow
#

who uses this room 😂 dont we have another one for koth

forest laurel
runic haven
winter gazelle
#

@glad bramble 👋🏻

#

lets have a nice game 😎

winter gazelle
#

@wanton sandal is this you in the KotH game? 😅

wanton sandal
#

hackers box?

winter gazelle
#

yes Hackers -- 132024

#

@wanton sandal we were in the same game couple of times now you always destroy me 🤣

wanton sandal
winter gazelle
# wanton sandal hehe gg

how did you get in bro? 😅
brute forcing the weak password?

I tried but my hydra skills are not that good so far 🫣

wanton sandal
winter gazelle
wanton sandal
glad bramble
brittle stirrupBOT
#

Gave +1 Rep to @winter gazelle (current: #2104 - 2)

glad bramble
#

@winter gazelle yo can u reset the machine

winter gazelle
winter gazelle
#

@glad bramble my skills are not enough to get root on this machine give me a hint how you got in 😅

winter gazelle
glad bramble
#

use exploit/windows/smb/ms17_010_psexec

#

it's so easy

winter gazelle
winter gazelle
glad bramble
#

try more everytime friend

winter gazelle
sage siren
#

Tenho Los Bro com tacos troco por uma lá grande

winter gazelle
#

@glad bramble did you close ssh?

Or was there never a chance to connect via ssh? 🧐

#

Oh my bad forgott to chance from the standart port to the actual one 😅

winter gazelle
#

@misty wharf gg

misty wharf
#

Suuup brooo

#

Gg

misty wharf
#

@winter gazelle game?

winter gazelle
#

Yeah lets go

misty wharf
#

huh??

#

ohh HAHA

#

it wasn't me

winter gazelle
#

I don't know what happend there

#

Is i was ssh in to the machine it got weard

misty wharf
#

it wassnt me but I know how it work haha

winter gazelle
#

What was happening?

misty wharf
#

login in ssh again then use -T flag haha

winter gazelle
#

What you mean?

misty wharf
#

you can hide your tty using -T

#

login again in ssh then add -T

winter gazelle
#

That shit scared the shit out of me

winter gazelle
misty wharf
#

when you type w or who, you'll see users

#

and those /dev/pts are users

winter gazelle
misty wharf
#

you'll learn that later but now try to learn how to hide haha

winter gazelle
#

I only 2 months in 😅

winter gazelle
winter gazelle
misty wharf
#

the -T yeah but I dunno what other players do if they can still throw some troll on you even if you use -T

winter gazelle
#

Ok

wanton sandal
winter gazelle
covert dawn
#

!koth

tight ibex
#

I cant access machine i am connected to the VPN

#

Why?

lapis drum
tight ibex
#

Am i only the one who cant connect to the KOTH machine?

#

I am connected to my Vpn

tiny glen
#

The same here. Connected successfully to my VPN file config but ping target machine is timing out.

winter gazelle
winter gazelle
tropic mauve
tropic mauve
#

@winter gazelle you're killing it bro🔥🔥

winter gazelle
brittle stirrupBOT
#

Gave +1 Rep to @tropic mauve (current: #3535 - 1)

winter gazelle
winter gazelle
#

what happend ?

winter gazelle
empty dragon
#

first

#

jk @neon river was first

turbid epoch
#

🤔

cyan copper
neon river
#

jk @neon river was first
@empty dragon pepehands

stoic harness
#

hacked

violet meteor
#

wwhoa

#

How did I not notice this until now

floral jackal
#

Man, you lot took forever to notice this new chat

violet meteor
#

I'll be honest, I subconsciously clicked

unkempt bear
#

anyone playing koth

twin crest
frigid quarry
#

what is this

#

two vc chat.

potent mauve
#

now more trashtalking 🙂

neon river
#

what is this
one more channel to ghost ping you

arctic wharf
#

boooo

frigid quarry
#

or the opposite?

neon river
#

You can't ping me if i leave the server elfmcskidy

undone gorge
#

Can I join stream?

#

Dunno if it’s private or not

#

Watch*

#

Oof

novel marten
#

Yoh

iron hull
#

Good afternoon

#

0x9 lvl I'm not sure if your trolling

#

oh its krypto

#

make sure you are doing the download ON your attack machine

#

headphone charging right now. gimme bout 3 more mins

iron hull
#

You guys are still trying to connect

harsh wave
lost pine
lost pine
lost pine
#

ok

#

no ddos pls

#

HAHAH

lost pine
unkempt bear
#

anyone up for koth

fluid oxide
#

lets give it a try

#

is that u sunkennunu

#

did u join

peak gorge
#

ye

fluid oxide
#

wait after the timer it will give us a ip

#

yeah we havce to wait

#

k

#

fff i know this box

#

its easy only\

#

yes it is

#

just use basic ohk

#

yeah the box is up now

warm fossil
#

umm

#

is it up ??

peak gorge
#

ye it is

fluid oxide
#

just the basics nmap and msf

#

aynone knows how `to edit files in windows

#

goddamit i lost shelll

#

did u scan for scripts

#

yes

#

--script vuln

#

hmm

#

scan for all ports

#

for scripts

#

this is not good they should have given another box f

#

no i did it before thats why

crimson ingot
#

aynone knows how `to edit files in windows
@fluid oxide Windows doesn't do CLI editing in the same way that Linux does. Copy the files up, or use echo

#

If you're lucky you get a modified shell. cmder, for example, will let you use vim

fluid oxide
#

yeah then i used meterpreter to do that

#

in my first koth i was having just the nmap scan nthg else lol

#

i dont know wt to do next afte nmap scan

#

ig u got some vulns

iron hull
#

type == echo

fluid oxide
#

lol how many joined here

iron hull
#

copy con == cat >

fluid oxide
#

i dint change anything in box

warm fossil
#

Have mercy on us

fluid oxide
#

search for that vuln in metasploit

warm fossil
#

eternal blue exploit

#

ya

#

it is eternal

fluid oxide
#

yeah m17 and eternal blue are same

upper fog
#

ehem, Don't spoil the boxes, (I keep repeating this 🤷‍♂️ )

#

Let others try, it's more fun that way. :)

warm fossil
#

look for ms17

iron hull
#

@fluid oxide Never accused you of changing it, i said it COULD be patched, ialso said that EB is flakey, and sometimes even if you do it right, it wont work

fluid oxide
#

bruh i am not that good maybe i just entered the box and dont know how to patch it
i am searching for patch it actailly

warm fossil
#

bois iam in

fluid oxide
#

godddam howmany people here

#

i dint change any flags

#

or passwords

#

crap

#

juice do u know offline tv

#

noice!!!!!!!!!!!

#

ig ur thm username

peak gorge
#

^^

fluid oxide
#

juice u need to keep the THM username in king.txt

#

not ur dc name

#

u got this booi

#

does anyone know how to patch this vuln

peak gorge
#

gg

warm fossil
#

WOOO

fluid oxide
#

hmm

warm fossil
#

GG

fluid oxide
#

WP

peak gorge
#

was fun

warm fossil
#

i killed shells

peak gorge
#

oh ye u killed mine

fluid oxide
#

yeah he actaully kept the wrong name in king.txt

warm fossil
#

wo

#

@thick socket are you creating room

peak gorge
warm fossil
#

Again

peak gorge
#

?

#

ye ^^

fluid oxide
#

hmm once i playd with this guys @empty canopy he was the king only after 5mins lol

peak gorge
#

xd

empty canopy
#

@fluid oxide ohh i remember

fluid oxide
#

hmm yeah

empty canopy
#

@fluid oxide but this time im pretty busy i dont think i will be able to play neatly

fluid oxide
#

glhf

peak gorge
fluid oxide
#

actaully i was also peeking that upload thing anf lfi

#

but cant find the file where it uploaded

peak gorge
fluid oxide
#

there are so many distractions in this box

#

wtf

#

bro juice i think ur got shell

#

bro i am stuck in this /bin file

#

lol

#

yes

#

bro same sitaution stuck in /bin

#

and where the hell are files being uploaded

#

did someone closed ssh

#

oh crap

#

lol somone is killing shells iguess

thick socket
fluid oxide
#

f this bin

dreamy jetty
#

that sneaky laugh tho

#

whoever needs flags

#

dm me

peak gorge
#

xd

dreamy jetty
#

selling at a low price

#

black friday occasion

#

@thick socket you know whom to dm

#

@peak gorge change the payload

fluid oxide
#

wait how did u gethat shgell

peak gorge
#

python3 -c 'import pty; pty.spawn("/bin/bash")'

fluid oxide
#

ohh shit i was using python2

#

but it doesnt work

#

@empty canopy how did u get that shell from nostromo/

empty canopy
#

nope

fluid oxide
#

i dont have mic

#

thats the problem

dreamy jetty
#

@charred patrol taking notes

#

xD

charred patrol
#

lol why would i

dreamy jetty
#

joking 😄

charred patrol
#

i would just hook into the kernel and make the processes hidden by default kekw

dreamy jetty
#

can you speak a word tho?

#

I've never heard your voice xD

charred patrol
#

i don't really have anything to say rn

dreamy jetty
#

say hello 😄

charred patrol
dreamy jetty
cunning kestrel
#

.

neon river
#

.

#

someone deleted their dot

cunning kestrel
#

:/

#

lame

vapid storm
#

lol

vapid storm
#

whats up

stark seal
#

@vapid storm hi

vapid storm
#

Hey man!

stark seal
#

what had you asked?

#

@vapid storm

vapid storm
#

@stark seal

warm fossil
#

run vuln script

#

@vapid storm run vuln script

vapid storm
#

What is the encryption you reckon?

#

For the key?

stark seal
#

@vapid storm it is much simpler than all that you are doing

vapid storm
#

Is SSH key patched?

stark seal
#

no

#

@vapid storm there is a place for command injection

#

@vapid storm run gobuster

vapid storm
#

On videogames

#

?

stark seal
#

wordlist big.txt

#

there is also another more complicated way to get shell. The ssh shell

#

port 3333

#

@vapid storm

vapid storm
#

Thanks.

empty canopy
#

lol is that complicated

stark seal
#

is a hidden file in base64

#

@vapid storm reverse shell in python

#

didn't need the burp suite

#

good game

#

yeah

empty timber
#

spooky knowing that I'm being streamed

sacred vector
#

starts in 15 mins

vapid storm
#

;!

#

!

upper fog
#

@unique gate

#

hop in here

neon river
#

whaa-

#

what are you doing behind my back??

#

@neat night

#

wait wrong holmes

#

@upper fog

upper fog
#

LMAO

#

planning just for fun koth

neon river
#

What is a fun koth?? 👀

#

i play winning koth

upper fog
#

me too

#

but it's weekend!

#

the week was hectic af

#

finally some chill

neon river
#

you still have lots of winnings pending, remember? 😛