HackTheBox - Dyplesher
00:00 - Intro
01:10 - Start of the box, running nmap with all ports.
03:00 - Using a Google Image Search to map icons with applications
04:20 - Manually fuzzing test.dyplesher.htb to check if there's any easy vulns
07:30 - Running NMAP Scripts against the results of our full port scan with awk and ORS
10:15 - Discovering a .git repo exposed on the website, using git-dumper to download it
13:00 - Memcache credentials discovered, download and test auth
16:00 - Creating a simple web application that will let us fuzz the remote memcat service
22:30 - Logging into GOGS as Felamos to download anothe…
Watch on YouTube ↗
(saves to browser)
Chapters (26)
Intro
1:10
Start of the box, running nmap with all ports.
3:00
Using a Google Image Search to map icons with applications
4:20
Manually fuzzing test.dyplesher.htb to check if there's any easy vulns
7:30
Running NMAP Scripts against the results of our full port scan with awk and OR
10:15
Discovering a .git repo exposed on the website, using git-dumper to download i
13:00
Memcache credentials discovered, download and test auth
16:00
Creating a simple web application that will let us fuzz the remote memcat serv
22:30
Logging into GOGS as Felamos to download another repo, using git to restore a
29:30
Logging into dyplesher.htb with creds in the Git Repo
33:40
MINECRAFT PLUGIN: Setting up our environment (IntelliJ)
37:20
MINECRAFT PLUGIN: Skeleton Code
42:10
MINECRAFT PLUGIN: Uploading the plugin and checking console
43:30
MINECRAFT PLUGIN: Adding the ability to READ FILES and print Current Username
50:00
MINECRAFT PLUGIN: Had trouble getting it to run, had to revert
51:30
MINECRAFT PLUGIN: Add the ability to write files and drop SSH Key + Web Shell
1:03:00
MINECRAFT PLUGIN: SSH Key and WebShell dropped! Logging into the server
1:06:15
Discovering DumpCap can be ran by our user, dumping localhost then running wir
1:13:25
Discovering credentials in AMQP Traffic, these work on SSH
1:15:40
Downloading AMQP-PUBLISH to send a URL to the queue as the note says
1:20:15
Running PSPY while we dig through the wireshark some more, find the password i
1:22:20
Using AMQP-PUBLISH with the correct credential and get the server to download
1:24:40
Searching Cuberite plugins, to see its just lua. Writing a quick plugin and g
1:27:00
Getting a root shell
1:29:40
Failing to do some ERLANG stuff. May be useful if you want to try it yourself
1:35:00
Exploring iptable/ufw rules and common mistakes
Playlist
Uploads from IppSec · IppSec · 0 of 60
← Previous
Next →
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
HHC2016 - Dungeon
IppSec
HHC2016 - Terminal Speedrun
IppSec
HHC2016 - Ads
IppSec
HHC2016 - Debug
IppSec
HHC2016 - Exception
IppSec
HHC2016 - Analytics
IppSec
HHC2016 - Getting Coins
IppSec
HackTheBox - Popcorn
IppSec
HackTheBox - October
IppSec
HackTheBox - Arctic
IppSec
HackTheBox - Tenten
IppSec
HackTheBox - CronOS
IppSec
HackTheBox - Brainfuck
IppSec
HackTheBox - Beep
IppSec
HackTheBox - Bastard
IppSec
HackTheBox - Bank
IppSec
HackTheBox - Joker
IppSec
HackTheBox - Haircut
IppSec
HackTheBox - Lazy
IppSec
Camp CTF 2015 - Bitterman
IppSec
HackTheBox - Devel
IppSec
Reversing Malicious Office Document (Macro) Emotet(?)
IppSec
HackTheBox - Granny and Grandpa
IppSec
HackTheBox - Pivoting Update: Granny and Grandpa
IppSec
HackTheBox - Optimum
IppSec
HackTheBox - Charon
IppSec
HackTheBox - Sneaky
IppSec
HackTheBox - Holiday
IppSec
HackTheBox - Apocalyst
IppSec
HackTheBox - Europa
IppSec
Introduction to tmux
IppSec
HackTheBox - Blocky
IppSec
HackTheBox - Nineveh
IppSec
HackTheBox - Jail
IppSec
HackTheBox - Blue
IppSec
HackTheBox - Calamity
IppSec
HackTheBox - SolidState
IppSec
HackTheBox - Shrek
IppSec
HackTheBox - Mirai
IppSec
HackTheBox - Shocker
IppSec
HackTheBox - Mantis
IppSec
HackTheBox - Node
IppSec
HackTheBox - Kotarak
IppSec
HackTheBox - Enterprise
IppSec
HackTheBox - Sense
IppSec
HackTheBox - Minion
IppSec
VulnHub - Sokar
IppSec
VulnHub - Pinkys Palace v2
IppSec
HackTheBox - Inception
IppSec
Vulnhub - Trollcave 1.2
IppSec
HackTheBox - Ariekei
IppSec
HackTheBox - Bashed
IppSec
HackTheBox - Flux Capacitor
IppSec
HackTheBox - Jeeves
IppSec
HackTheBox - Tally
IppSec
HackTheBox - CrimeStoppers
IppSec
HackTheBox - Fulcrum
IppSec
HackTheBox - Chatterbox
IppSec
HackTheBox - Falafel
IppSec
HackTheBox - Nibbles
IppSec
DeepCamp AI