HackTheBox - Remote

Поделиться
HTML-код
  • Опубликовано: 19 окт 2024

Комментарии • 58

  • @rev0luci0n
    @rev0luci0n 3 года назад +13

    The "oh god" when not filtering on ICMP for tcpdump was hilarious, sums up a lot of my work day in enterprise IT lol

  • @onlyastron4ut
    @onlyastron4ut 4 года назад +1

    Great video as always, you always give me many new insights since my way of rooting this box was completely different!

  • @ianmusyoka9717
    @ianmusyoka9717 4 года назад +4

    Happy teachers day ippsec another great video from you i always appreciate the efforts keep up the awesome work

  • @blackthorne-rose
    @blackthorne-rose Год назад +1

    also more and more now I'm seeing 2 things I did not think I would see - 1. that learning tmux delivers a shell architecture that is très élégant, and 2. that learning vim also delivers a bunch of very quick ways to handle text that are oriented to the kind of data formatting we generally require... as much as I love nano and resisted vim... I'm starting to get it... like :%s/\s//g to "remove spaces" etc. etc.

  • @MichaelJohnson-br7zz
    @MichaelJohnson-br7zz 2 года назад +1

    iwr command is very useful. Thank you.

  • @thatquietkid8610
    @thatquietkid8610 2 года назад +1

    The way he said Oh my god at 17:58 cracked me up 😂😂😂

  • @marcozufferli6080
    @marcozufferli6080 3 года назад +1

    It is a Windows Server 2019, this OS should be safe againt Juicy Potato / RottenPotato, so why Rotten Potato in this machine works?

  • @score38
    @score38 4 года назад +1

    Do you use parrot OS now? If so what made you switch?

    • @TalsonHacks
      @TalsonHacks 3 года назад

      He is using HTB's pwnbox which is basically a web-based Parrot OS. (just to showcase it).

  • @user-fp6dt1os1l
    @user-fp6dt1os1l 4 года назад +10

    40:24 "that box is currently offline" Why? Are you replacing the 4x GTX 1080Ti's with 4x RTX 3090s? lol

    • @ippsec
      @ippsec  4 года назад +12

      It's being used for work, I disconnect it from the network when I'm cracking sensitive things.

    • @ankitkumar6130
      @ankitkumar6130 4 года назад +2

      Wait he already has the RTX 3090s??

    • @theplasmaistplasma6613
      @theplasmaistplasma6613 4 года назад +1

      Ankit Kumar No that was just a joke

  • @MASAbirokou
    @MASAbirokou 2 года назад

    Are there 2 intended ways? UsoSvc and local port service (not rogue potato)

  • @user-ui8my9zs7o
    @user-ui8my9zs7o Год назад

    If there was an IP for the nfs what would you have to do to get past that?

  • @J3zu5
    @J3zu5 4 года назад

    What theme is this ?

  • @aaryanbhagat4852
    @aaryanbhagat4852 3 года назад

    Why always a separate folder www is made when the code needs to be copied to the attack server to execute?

    • @ippsec
      @ippsec  3 года назад +1

      It doesn’t have to be. I just do it so I know what files I’m exposing via http.

    • @aaryanbhagat4852
      @aaryanbhagat4852 3 года назад

      @@ippsec oh I see, a very good practice indeed.

  • @magnfiyerlmoro3301
    @magnfiyerlmoro3301 3 года назад +1

    didn't explain why rogue potata would work on the machine

  • @5elll960
    @5elll960 4 года назад +1

    Say hello to hairy bagel group :)
    Punisher - hi, i know you see it ))))

  • @kosmonautofficial296
    @kosmonautofficial296 4 года назад

    Great video!

  • @skyone9237
    @skyone9237 4 года назад +2

    Bloodyhell ssmith and hash was rabbit hole..now only I came to know😂😂

  • @fortRedBorder--.--
    @fortRedBorder--.-- 4 года назад

    thanks, IppSec! Oddly enough, I couldn't get the revised binpath to download and execute. It just never did anything for me. I ended up just putting my PS reverse shell script in the Downloads directory and configuring that as the revised binpath. That simplified the binpath command and worked just fine.

  • @bech2342
    @bech2342 4 года назад +2

    I would like to see a live stream hax 🙃🙈

  • @langstonmenezes
    @langstonmenezes 4 года назад

    The aspx exploit is no longer available

  • @slsoftshow
    @slsoftshow 4 года назад +1

    🤗🤗

  • @pentester-ethicalhacker
    @pentester-ethicalhacker 3 года назад

    Awesome, thank's

  • @d4rckh122
    @d4rckh122 4 года назад +1

    Nice

  • @fatalpath
    @fatalpath Год назад

    For the life of me I cannot get a ping from this - anyone have any troubleshooting tips?

  • @cybershieldteam
    @cybershieldteam 4 года назад +1

    nice

  • @bryanramadhan5460
    @bryanramadhan5460 4 года назад

    I'm really surprised .. I can't even reach the shell with just this exploit script .. (I've tried everything) I finally used burp for this and finally.. it worked

  • @amoghnath3330
    @amoghnath3330 4 года назад +2

    Can you share your .bashrc file thanks

  • @Pipwallet
    @Pipwallet 4 года назад +2

    my guy...

    • @Pipwallet
      @Pipwallet 4 года назад

      @@johncollins9466 yoooh...you have turn IppSec channel to be a chatting room..LOL

    • @redpanda31337
      @redpanda31337 4 года назад

      CYBER MONSOON I remember him being named IppsecJr, so he is probably just a big fan

  • @bech2342
    @bech2342 4 года назад

    looks like @john hammend also know your channel 🙊

  • @user-fp6dt1os1l
    @user-fp6dt1os1l 4 года назад +1

    first

    • @egg5474
      @egg5474 4 года назад

      C++ second

  • @FourthDimension001
    @FourthDimension001 4 года назад

    PLEASE. DO TRYHACKME THROWBACK...

  • @GuiltySpark
    @GuiltySpark 4 года назад

    all the things all the time that is IppSec

  • @jmjl2
    @jmjl2 3 года назад

    Lol, you are using your own service that you configured before, not the intended way... /* On .
    p.exe */, Why didn't you read the readme?

  • @hamzajayari7158
    @hamzajayari7158 4 года назад

    Who can help me
    I want to doing blunder box but i using parrot security when i want to enter to the web page still loading but when i use curl - x GET 10.10.10.191:80 i got the reponse back
    What the problem
    Am using firefox browser and chromium and the some thing still loading

    • @hamzajayari7158
      @hamzajayari7158 4 года назад

      @@johncollins9466 Firefox

    • @hamzajayari7158
      @hamzajayari7158 4 года назад

      @@johncollins9466 i can ping it but when using gobuster or when i want to access web browser keep loading without reponse

    • @hamzajayari7158
      @hamzajayari7158 4 года назад

      @@johncollins9466 what can i edit in vpn file i download it from hackthebox and after that am using openvpn to connect
      I try using chromium but the some as Firefox no reponse