Capture the Flag | Hacking Challenge | ITProTV’s Live Week 2019 Replay

Поделиться
HTML-код
  • Опубликовано: 24 июн 2019
  • Check out Daniel's newest Capture the Flag video here! • Hands-on Hacking Demo ...
    It’s capture the flag with a twist! Watch edutainer and cyber security pro Daniel Lowrie hack into a system and try to find 5 flags before the clock runs out.
    #hackingchallenge #capturetheflag #OSCPexamprep
    Need cyber security training? From basic network security skills to ethical hacking, CISSP, CISA exam prep and more, get the latest security training with ITProTV. Home of binge-worthy learning, ITProTV offers teams and individuals 4000+ hours of engaging & effective on-demand video training for the latest technology skills. Watch live or on-demand daily. Start learning free at ITProTV: go.itpro.tv/start-learning-now

Комментарии • 96

  • @tomatte99
    @tomatte99 3 года назад +52

    That was impressive the way he was hacking while explaining everything. And let's not forget the guy on the side talking about the clock causing psychological pressure ;

    • @ITProTv
      @ITProTv  3 года назад +11

      Gotta be able to perform under pressure! That makes it more like a real-life situation.

  • @sandro5535
    @sandro5535 4 года назад +81

    Really liked to watch some hacking in actions. Usually it is only "This is how it works" well you demonstrated it and hope to see more.

    • @ITProTv
      @ITProTv  4 года назад +4

      Where's the fun in that? Glad you enjoyed the demo!

    • @oldschoolundertaker
      @oldschoolundertaker 3 года назад +3

      @@ITProTv Hey Daniel would you able to do more of this? I learnt a lot and it was fun listening in on why you did things the way you did. Perhaps longer videos in fact?

    • @antoinebguitar2869
      @antoinebguitar2869 2 года назад

      I agree Iol looks quite fun once you know your way around stuff like this guy altho I didn't understand a single thing he typed haha

  • @fleur8153
    @fleur8153 4 года назад +30

    It's funny how I came here while I don't understand a single thing

  • @datag1199
    @datag1199 2 года назад

    This was a lot of fun to watch. Thanks for walking us through such an insightful demonstration of what this process would look like.

  • @Qwertylol
    @Qwertylol 3 года назад +14

    I'm watching through the PenTest+ series with Daniel and it is actually reassuring to see that the person I'm learning from actually knows his stuff and isn't just throwing the knowledge at us. (It's been a great series so far though, I'm a little under half done, just finished the Nmap video)

    • @ITProTv
      @ITProTv  3 года назад +4

      So glad you're liking it, and Daniel really appreciated hearing your kind words!

    • @PrabhjotSingh-gv7kv
      @PrabhjotSingh-gv7kv 3 года назад +1

      can you link the playlist or a video or something. i can't seem to find what you're talking about

  • @arhabsadeed6732
    @arhabsadeed6732 4 года назад +26

    Waah he was pretty fast and intended to explain the steps for the viewers too. 30 minutes plus that guys questions was the tough parts heheh

    • @ITProTv
      @ITProTv  4 года назад +5

      Ha, glad you enjoyed it!

  • @rodrigoramirez1031
    @rodrigoramirez1031 4 года назад +3

    Great work

  • @sevuszeld5015
    @sevuszeld5015 2 года назад

    That was a nice demonstration, thank you

  • @mohammedyaseen1475
    @mohammedyaseen1475 3 года назад +8

    I watched this video like a week ago and manually try to do with what i remembered. I was able to find 3 flags on own and watched again for flag3 and finalflag. Learned alot from this machine. This is also my first rooted/CTF machine. Thank you!!!

    • @ITProTv
      @ITProTv  3 года назад +2

      Nice work! Especially for your first time! Be sure to check out some of our other Hands-on Hacking videos where Daniel performs other CTF's.

    • @mohammedyaseen1475
      @mohammedyaseen1475 3 года назад

      @@ITProTv Daniel FTW!!!

  • @owendmartin
    @owendmartin 5 лет назад +17

    I'm so glad that this was the one that you chose. I had tried this one a couple months back. I'd need to check my notes but I'm pretty sure I found the first 4 but stopped working on it after locking the machine up failing to use a Dirty Cow privilege escalation to get root. I should definitely try to get back in and work on others in the series.

  • @vsromero
    @vsromero 4 года назад +6

    Very cool video! Thanks for the info

    • @ITProTv
      @ITProTv  4 года назад +1

      thank you and thanks for watching

  • @tassoumaate3293
    @tassoumaate3293 3 года назад +3

    Thank you so much for uploading this video.
    Could you please do more of these video? Thank you and God bless.

    • @ITProTv
      @ITProTv  3 года назад +1

      We're planning to, as this received some great feedback. Glad you agree!

  • @jonassteinberg3779
    @jonassteinberg3779 4 года назад +3

    recursively cat the dirs and files with wget or curl (at least)

  • @hamed_moradi0
    @hamed_moradi0 3 года назад

    Good Job! thank you so much guys for your efforts. ❤

    • @ITProTv
      @ITProTv  3 года назад

      Our pleasure. Thanks for watching! Feel free to check out our other CTF videos on our channel:
      ruclips.net/video/5gLA6fMqtZY/видео.html
      ruclips.net/video/HbGSN1U6Kn8/видео.html

  • @tpai302
    @tpai302 3 года назад +1

    "In real-life land"....lol Nice video guys!

    • @ITProTv
      @ITProTv  3 года назад

      It's always a little different in a simulation, that's for sure.

  • @FreePizza007
    @FreePizza007 3 года назад +1

    I love this! Subscribing.

    • @ITProTv
      @ITProTv  3 года назад +1

      Thank you! Be sure to tell your friends about us :)

  • @ThatsMrQuarter
    @ThatsMrQuarter 4 года назад +4

    I love this stuff...i think. I have NO IDEA where to start learning

    • @ITProTv
      @ITProTv  4 года назад +1

      If you're interesting in security, the CompTIA Security+ certification is a great start. We have training for that at www.itpro.tv.

    • @ThatsMrQuarter
      @ThatsMrQuarter 4 года назад

      @@ITProTv awesome ty!

    • @tpai302
      @tpai302 3 года назад +1

      Just start...seriously.

    • @romangrace2507
      @romangrace2507 3 года назад

      before you start hacking i recomend learning a programming language first

  • @trejohnson7677
    @trejohnson7677 3 года назад +7

    i hope he doesn't really highlight > right click > cp > paste in url > enter like that. +1 for the pace.

  • @shikatijshikati3217
    @shikatijshikati3217 3 года назад

    Awesome Video. I am motivated. Please make some more of this kind of videos.

    • @ITProTv
      @ITProTv  3 года назад

      Glad you enjoyed it!
      We've had a lot of requests for similar videos so last month Daniel recorded two more CTF videos!
      Check them out:
      ruclips.net/video/5gLA6fMqtZY/видео.html
      ruclips.net/video/HbGSN1U6Kn8/видео.html

  • @jonassteinberg3779
    @jonassteinberg3779 4 года назад +2

    this is pretty sick though

    • @ITProTv
      @ITProTv  4 года назад

      Thanks, Jonas!

  • @switchbranch8411
    @switchbranch8411 3 года назад +1

    This channel is so underrated

    • @ITProTv
      @ITProTv  3 года назад

      Much appreciate!

  • @centori2011
    @centori2011 7 месяцев назад +1

    He was given a half hour to capture 5 flags but did you stop your timer when you interpreted him? What would of been more enjoyable for all involved would be to summarize his process including questions to a half hour after capturing all flags.

  • @Corkypyro
    @Corkypyro 3 года назад +1

    "SQL injection drupal DEATH FOR EVERYONE" lmao

  • @KINGABDUL99
    @KINGABDUL99 2 года назад +1

    Great video wow nice

  • @kodinelson8320
    @kodinelson8320 Год назад

    amazing

  • @sssapss
    @sssapss Год назад

    nice one dude

  • @PrincePalmUwU
    @PrincePalmUwU 2 года назад +1

    oh my word! this looks so fun! pentesting you said? I think I am interested.

    • @mnunez10
      @mnunez10 Год назад

      Yes penetration testing.

  • @KeithGriffiths
    @KeithGriffiths 3 года назад

    Really good video...

    • @ITProTv
      @ITProTv  3 года назад

      Glad you liked it

  • @joshuawaris8433
    @joshuawaris8433 2 года назад

    What thing is required for picoCTF

  • @xenoas1er197
    @xenoas1er197 3 года назад +2

    Before i meant am I obligated to hack a virtual machine with a virtual machine

  • @Daniel-ct6wc
    @Daniel-ct6wc 3 года назад

    Do you have Playlist of other videos like this?

    • @ITProTv
      @ITProTv  3 года назад

      Daniel actually just recording another CTF video last week: ruclips.net/video/5gLA6fMqtZY/видео.html
      We are hoping to add more security content to our channel in the near future. Thanks for tuning in!

  • @kentonentertainment
    @kentonentertainment 3 года назад

    Do you have tutorial of understanding ctf

    • @ITProTv
      @ITProTv  3 года назад +1

      Not sure I understand the question, but we don't have a video that explains WHAT capture the flag. But we do have these videos where Daniel walks step-by-step through a few other CTA's:
      ruclips.net/video/5gLA6fMqtZY/видео.html
      ruclips.net/video/HbGSN1U6Kn8/видео.html

  • @fytubevw
    @fytubevw 2 года назад

    No idea what the flags are, except the '-i' flag.

  • @hoangngocdung2708
    @hoangngocdung2708 3 года назад

    this CTF is doing on the PC or can i download ?

    • @ITProTv
      @ITProTv  3 года назад

      Daniel did this on a Linux machine. Unfortunately it's not something available for download.

  • @cocowatson385
    @cocowatson385 3 года назад

    Could you show one utilizing metasploit

    • @ITProTv
      @ITProTv  3 года назад

      We'll add that to the list! Check out a few other CTF's Daniel recorded:
      ruclips.net/video/5gLA6fMqtZY/видео.html
      ruclips.net/video/HbGSN1U6Kn8/видео.html

  • @syscabmcommunity3368
    @syscabmcommunity3368 Год назад

    This is much better than the fucking CEH course.

  • @mohammednvh
    @mohammednvh 3 года назад +1

    Did anyone notice flag1.txt in the /var/www directory ??

    • @fddsagfdshdfgfdsdf
      @fddsagfdshdfgfdsdf 3 года назад

      yes right! he looked right past it!

    • @DBartels88
      @DBartels88 3 года назад

      yep! lol i was looking through comments to see if anyone else said anything about it. haha

    • @Hari7x42
      @Hari7x42 Год назад +1

      He found flag 1 back when he found flag 4 though

  • @dipanjanghosal1662
    @dipanjanghosal1662 Год назад

    6:50

  • @xenoas1er197
    @xenoas1er197 3 года назад

    If i want to do a CTF, am I obligated to do the hack in a virtual machine

    • @xenoas1er197
      @xenoas1er197 3 года назад

      ?

    • @ITProTv
      @ITProTv  3 года назад

      Thanks for the question. If you're not hacking a virtual machine setup for a CTF, a machine you own, or one you have permission to hack, you could find yourself in trouble. Good luck!

    • @xenoas1er197
      @xenoas1er197 3 года назад

      Sorry i mean hack a virtual machine with another virtual machine

  • @hydroxder75
    @hydroxder75 3 года назад

    What os is this.

    • @ITProTv
      @ITProTv  3 года назад

      Daniel's using an older version of Kali in this video.

  • @ivansantiago3458
    @ivansantiago3458 3 года назад

    Is he using a NAT for his vm's?

    • @ITProTv
      @ITProTv  3 года назад +1

      No, Daniel is not. He's using a host-only network!

  • @ThereWillBeCake
    @ThereWillBeCake 2 года назад

    Dom is very lacking in stickers

  • @surkewrasoul4711
    @surkewrasoul4711 10 месяцев назад

    Slim shady is good at this thaaaaaaaaaaaaaaaaaaaaaaaaeengggg

  • @khaerulti
    @khaerulti 2 года назад

    tolong gimana caranya hack cctv
    live please

  • @jonassteinberg3779
    @jonassteinberg3779 4 года назад +3

    interesting regex grep syntax w drupalgeddon; didn't know that was a thing

  • @jonassteinberg3779
    @jonassteinberg3779 4 года назад +1

    every emulator has split pane functionality

  • @xenoas1er197
    @xenoas1er197 3 года назад

    ?

  • @amosdominion9502
    @amosdominion9502 3 года назад

    I'm tired of these, some body challenge me please

    • @ITProTv
      @ITProTv  3 года назад

      Maybe some of these Top 5 CTF's will challenge you?
      go.itpro.tv/top-ctfs

  • @dtesta
    @dtesta 4 года назад +3

    Ok, so you pretty much use hacks that OTHER people have created? Searching an exploit database and then using some python script that some random guy wrote. That sounds more like following a tutorial than hacking to me. Such things can even be done completely automatic with some "hacker" tool.

    • @lukedawson7406
      @lukedawson7406 4 года назад +28

      In the real world, hackers use already made tools to make their life easier ... do you use nmap? ... created by someone else but you still use it ... This person evidently knows his stuff. If you think just creating ur own stuff makes you a hacker then oh are you wrong lol ... what's the point in him sitting there crafting a script which is already made considering he had a 30 mine time limit .. use your head lmao

    • @Marolafighter
      @Marolafighter 4 года назад

      The thing is if there is instrument that can do the job for you, there is no reason to develop a bicycle

  • @apatheian
    @apatheian Год назад

    My fav channel from now on, learnt a lot from this vid ❤️‍🩹❤️‍🩹

  • @sharky9493
    @sharky9493 2 года назад

    Well done Daniel,, you are very good! I think 30 minutes are to short for this,,even you explain your steps nicely for beginners and the flags wasn´t easy to grab, to hidden! But you are so RIGHT! As a beginner I write all results (in videos) down or I do copy/paste when I hack TRYHACKME boxes in Cherrytree!!! This is very important! I do it for 4 month and I wrote 150 pages down per hand for the 20 boxes and lot of education yt videos! Thank you very much! Greetings from germany!

    • @ITProTv
      @ITProTv  2 года назад

      Wow! 150 pages of hand written notes is impressive. Best of luck to you on your security/hacking career, with that ambition you'll go far!

    • @sharky9493
      @sharky9493 2 года назад

      @@ITProTv Thanks, very kind! Must pick up speed, because my lifetime is running out! I´m 62 years old!😂🤣Isn´t it crazy to begin with this complex, and hard topic? Actually just for fun...but I got a IT job offer, from a friend ,,,oh nooooooo 😂😂.