HackTheBox - Timing

Поделиться
HTML-код
  • Опубликовано: 23 янв 2025

Комментарии • 24

  • @sujalpanchal6652
    @sujalpanchal6652 2 года назад +3

    You are the best trainer🙏 🇮🇳

  • @sagivmichael405
    @sagivmichael405 2 года назад

    Great box and great video as always! love how you approache and explain everything!

  • @nicoswd
    @nicoswd 2 года назад +3

    Just wondering if you could have written some PHP code to the access log, and have that file included to get RCE.

  • @akshayarjun8325
    @akshayarjun8325 2 года назад +1

    A request. Can you make a video on how to create our own machines and also if possible how to submit them on htb.

  • @pswalia2u
    @pswalia2u 2 года назад

    Great writeup as always! ❤️

  • @TheErixcode
    @TheErixcode 2 года назад

    I have a question, we had LFI and if we upload the shell we could check for upload file name using it, why spend time to create php code to figure out the name?

  • @preextrasensory6960
    @preextrasensory6960 2 года назад

    include('shell. jpg') in php. What about .asp/.aspx?

  • @souleymaneadellah1176
    @souleymaneadellah1176 2 года назад +7

    how did you not even check if that password is valid for admin login 😅

  • @StephenMolloyGoogle
    @StephenMolloyGoogle 2 года назад

    The .microseconds field of the datetime.timedelta object doesn't give you the time in microseconds. It gives you the microseconds part of the time. That is, if the first request took 1 second and 150 microseconds, while the second only took 150 microseconds, they would both have r.elapsed.microseconds == 150. You got lucky with your code :)

  • @bech2342
    @bech2342 2 года назад +3

    no joke, this is really realistic. I found a 0day for a dating CMS with exactly this fault 😂

  • @akashmaji1138
    @akashmaji1138 2 года назад +1

    ❤️

  • @saurabhshinde1855
    @saurabhshinde1855 2 года назад

    Why revshell and curl didn't work at first in image/upload url??

    • @ippsec
      @ippsec  2 года назад

      Firewall rules preventing it

  • @thegripmaster666
    @thegripmaster666 2 года назад +2

    I have noticed you always scan the top 1000 ports only. What if there is a service that is not in the top 1000 list? Isn't it better to scan all ports -p-? Yes, it will take longer but there is no chance of missing a port.

    • @therealxenoz
      @therealxenoz 2 года назад +1

      He does that too in the background usually. He doesn't do that when he already finds a good enough attack surface to work with using the default nmap scan range

  • @cy_wareye7395
    @cy_wareye7395 2 года назад

    ippsec always good timing

  • @madcane13
    @madcane13 2 года назад

    i wonder how , wonder why??

  • @AUBCodeII
    @AUBCodeII 2 года назад

    What's going on RUclips, this is John Hammond.

  • @spencerpogo
    @spencerpogo 2 года назад

    It's funny that you say "it supports recursion, that's good" because years ago I think you were saying dirbuster's recursion takes way too long and you didn't like it

  • @parizamrullah9845
    @parizamrullah9845 2 года назад +3

    Please increase sound