HackThebox - Wifinetic

แชร์
ฝัง
  • เผยแพร่เมื่อ 4 พ.ย. 2024

ความคิดเห็น • 38

  • @DavidAlvesWeb
    @DavidAlvesWeb ปีที่แล้ว +10

    Using only one binary for the password spraying part was very insightful!
    I actually think that it's better than using cat, grep and awk at the same time, when it comes to detection.
    Thank you for taking the time to explain all of that and also for going much further than just solving the box!

  • @ChristopherPelnar
    @ChristopherPelnar ปีที่แล้ว +1

    The beyond-root-segment taught me a lot I didn't know. I appreciate you always going the extra mile.

  • @stevet7522
    @stevet7522 ปีที่แล้ว +2

    Absolutely fantastic explanation. This was a learning experience.

  • @arorarachit
    @arorarachit ปีที่แล้ว

    freakin cool, it was really great understanding what's happening under the hood when we use reaver!

  • @LikeThizzz
    @LikeThizzz ปีที่แล้ว

    Loved the explanations while writing that bash script

  • @nightfox9007
    @nightfox9007 ปีที่แล้ว +2

    So dope! Well done!

  • @marekkozlovsky586
    @marekkozlovsky586 ปีที่แล้ว +5

    "never do math online" :)
    also: awk -F':' '/sh$/ {print $1;}' /etc/passwd (no need to specifically check last column since it's also the end of the whole line)

  • @Chukxztv
    @Chukxztv ปีที่แล้ว

    Dud you are soo good a this, it’s crazy. I’m more and more thinking about stopping doing software and do security just because of those vids

  • @AzCowboyOne
    @AzCowboyOne ปีที่แล้ว

    Of all the things I should remember from watching the best walk throughs on the internet, I can't get "cat spray" out of my brain.

  • @KyserClark
    @KyserClark ปีที่แล้ว

    Thanks for the video and learning experience!

  • @tydewalt5425
    @tydewalt5425 ปีที่แล้ว

    I love your content Ip, I just wish I didn't have to double my volume to hear you. :P

  • @diaahanna8882
    @diaahanna8882 ปีที่แล้ว +1

    Loved the post root part thank you

  • @jordanadams7665
    @jordanadams7665 ปีที่แล้ว +4

    Can you do a setup tour? I'd be interested in seeing what you work with and your kraken machine too.

  • @rosehacksyoutube
    @rosehacksyoutube ปีที่แล้ว

    Above and Beyond!

  • @UntrackedEndorphins
    @UntrackedEndorphins ปีที่แล้ว

    I enjoy the extra bits after root

  • @pepemunic3661
    @pepemunic3661 ปีที่แล้ว +1

    That's great

  • @tntxqx8281
    @tntxqx8281 ปีที่แล้ว +1

    awsome ippsec

  • @DavidAlvesWeb
    @DavidAlvesWeb ปีที่แล้ว +3

    Did you made a typo with the maths at the end? I'm confused 😭😅

  • @tg7943
    @tg7943 ปีที่แล้ว

    Push!

  • @kalidsherefuddin
    @kalidsherefuddin ปีที่แล้ว

    The Great idea

  • @mattstorr
    @mattstorr ปีที่แล้ว +1

    May I ask (at 11:01) why Netadmin was selected as a process of interest? There were several user accounts listed all with processes started by root. What's so special about netadmin? I noticed that all of the others except _laurel had a PPID of 1. Thanks.

    • @GajendraMahat
      @GajendraMahat ปีที่แล้ว

      when i did this box. i tried every user which was listed on /home 😂😂😂
      But you have a point. and i really wanna know about this

    • @ippsec
      @ippsec  ปีที่แล้ว +4

      Just because that is who we are running as. The chance of root starting a process we can write to is greater.

    • @mattstorr
      @mattstorr ปีที่แล้ว +1

      Thanks @@ippsec :-) Still watching and still learning. Thanks for replying

  • @abdosama
    @abdosama ปีที่แล้ว

    Hello ipp, dis you have the chance to use Caido tool, it's like burp suit and it has an integrated AI, can do a video about it ?

  • @toyshopenterprises
    @toyshopenterprises ปีที่แล้ว

    Why don't you use --open in nmap scanning

    • @MasakiKyosuke
      @MasakiKyosuke ปีที่แล้ว +1

      Filtered/closed could be useful in rare cases (especially in CTF).
      For example if there is a firewall, it could tell you the port could be open but only accessible from the inside of the box (through things like SSRF), or a port knocking (a port that needs to be knocked to pass from filtered to open).
      It is what I guessed, but maybe I am wrong !

  • @sand3epyadav
    @sand3epyadav ปีที่แล้ว +1

    Love ippsec,but we have not proper pentest knowledge , please help us

  • @mtech1935
    @mtech1935 ปีที่แล้ว +1

    1st comment 🎉

    • @mtech1935
      @mtech1935 ปีที่แล้ว +1

      @aubcodell Interesting

  • @sotecluxan4221
    @sotecluxan4221 ปีที่แล้ว

    !

  • @r3dp4rrot
    @r3dp4rrot ปีที่แล้ว

    Boring box !
    Not worth 250$

  • @AUBCodeII
    @AUBCodeII ปีที่แล้ว +8

    Ipp, please post the write-up for cybermonday. I implore you 🥺

    • @_fr3d_
      @_fr3d_ ปีที่แล้ว +2

      Cybermonday is still active… he can’t do that

    • @AUBCodeII
      @AUBCodeII ปีที่แล้ว

      @@_fr3d_ sniff sniff

    • @lamehacker3491
      @lamehacker3491 ปีที่แล้ว +1

      Lol its intresting box you can play with