Gitlab LFI to RCE - HackTheBox "Laboratory"

Поділитися
Вставка
  • Опубліковано 16 кві 2021
  • For more content, subscribe on Twitch! / johnhammond010
    If you would like to support me, please like, comment & subscribe, and check me out on Patreon: / johnhammond010
    PayPal: paypal.me/johnhammond010
    E-mail: johnhammond010@gmail.com
    Discord: johnhammond.org/discord
    Twitter: / _johnhammond
    GitHub: github.com/JohnHammond

КОМЕНТАРІ • 131

  • @georgehammond867
    @georgehammond867 2 роки тому +31

    yourt terminsl is a mess.

    • @_JohnHammond
      @_JohnHammond  2 роки тому +77

      yourts speling is a messer.

    • @georgehammond867
      @georgehammond867 2 роки тому +3

      ​@@_JohnHammond do you know any good learning material on defensive security?
      all we have here is offensive security, not alot on Blue Team, how to get hacker out of your pc and lock them next time?

    • @rogervanbommel1086
      @rogervanbommel1086 2 роки тому +4

      @@georgehammond867 as a start I definitely recommend checking out liveoverflow’s channel, mostly the protect Linux server from hackers, also off and defensive security are closely related, if you know what is needed to exploit something you can lock that down

  • @HackTheBox
    @HackTheBox 3 роки тому +103

    Shower love, much appreciated, John! 💚
    P.S. Thanks for spreading the word about #CyberApocalypseCTF21! Epicness loading 👽
    NO. OF PLAYERS: 5,386
    NO. OF TEAMS: 2,561

    • @flawnski
      @flawnski 3 роки тому +1

      Will you ever introduce a partnership with GitHub? That would be so awesome!!!

  • @maxim3536
    @maxim3536 3 роки тому +6

    Fun fact: 29:52 the logo is from xakep.ru a Russian Hacker magazine, didn't know they made videos as well

  • @DavidAlvesWeb
    @DavidAlvesWeb 3 роки тому +69

    The video hasn't even started, but there's already 11 likes!
    This just shows how much the community appreciates your effort to put out amazing content John! ❤️
    Thank you so much for the inspiration 🏆😊

    • @MaxDev
      @MaxDev 3 роки тому +2

      every UA-camr has at least 1 dislike this guy is a god he has none

    • @DavidAlvesWeb
      @DavidAlvesWeb 3 роки тому

      @@MaxDev that’s so true!

    • @dieSpinnt
      @dieSpinnt 3 роки тому

      But is he singing?

  • @kylelarson7840
    @kylelarson7840 3 роки тому +3

    54:45 Nice of you to complete the incantation with the words "We're in!" as is tradition.

  • @ldohlj1
    @ldohlj1 2 роки тому +1

    I always learn the things that I don't understand from HTB walkthrough pdfs in your videos. It's always an awesome experience to watch your videos.

  • @ekowsec
    @ekowsec 3 роки тому +31

    I feel the energy when you got Dexter's id_rsa keys😂

  • @wchen2340
    @wchen2340 3 роки тому +1

    I just saw ippsecs vid right before this. really helpful 2c different approaches/ways. thanks john.

  • @JuanBotes
    @JuanBotes 3 роки тому +1

    as a beginner and i lack skills and researching skills , i really enjoy your videos, because it shows how you find clues , do your research follow the breadcrumbs and find a exploit path and trying various things until you understand the target and what will work.

  • @asnigirev
    @asnigirev Рік тому +1

    The amount of stuff I learned from one just one video is.. amazing. Thanks John ✌️

  • @stevenpooley393
    @stevenpooley393 2 роки тому

    having to watch this in slowmo to keep up, its giving me some awesome ideas on areas i need to learn

  • @0SPwn
    @0SPwn 3 роки тому

    I completed this box a while ago, but its good to see you're looking at HTB now!

  • @jonny-mp3
    @jonny-mp3 3 роки тому +7

    love these walkthroughs

  • @BehruzbekOtayev
    @BehruzbekOtayev 3 роки тому +1

    Great content 😄 I imagine how much time you've spent on actually cracking it

  • @SirMoefe
    @SirMoefe 3 роки тому

    I'm amazed by your skills! Good Job, keep up the good work!

  • @prodbylucii
    @prodbylucii Рік тому

    Aggressively typing in the terminal: "We're in😎"
    Love your content btw❤️

  • @chickeningay
    @chickeningay 3 роки тому +12

    Hey man I've recently discovered your channel i really wanted to learn stuff like this but j didnt know you could learn this outside of college or knowing russian currently bing watching all your videos keep it up

    • @aloshkartosh840
      @aloshkartosh840 Рік тому

      Hey man what courses are in russian i know russian but i have never seen anything before

    • @chickeningay
      @chickeningay Рік тому

      @@aloshkartosh840 well considering Russia has one of the biggest hacking communities, I'm sure you just have to find the right people

  • @REktSigMa
    @REktSigMa 2 місяці тому

    Yo bro I love how you talk yourself through this entire process without anyone beside you. Although some may think this type of illustration from a person always asking themselves questions and answering themselves in the same instance. is crazy. Lmaooo. Just saying bro Love the vids., Lmaoooo

  • @blablablah1able
    @blablablah1able 3 роки тому

    Interesting approach to trigger the password reset and get the token using LFI to read the production logs. Since you have shell access you also have access to gitlab-rails, so I've just changed the password directly in DB.

  • @vibiemood1079
    @vibiemood1079 3 роки тому +1

    A day before i was searching for this🥴 I'm grateful for this♥️😊

  • @h0tPlug1n
    @h0tPlug1n 3 роки тому

    You are a real legend man. Hat's off to your skills and dedication.

  • @PlzReturnYourShoppingCart
    @PlzReturnYourShoppingCart 3 роки тому +7

    If there is one YT page I don't want to troll on its this one. This dude is scary smart.

    • @PlzReturnYourShoppingCart
      @PlzReturnYourShoppingCart 3 роки тому +1

      @@bogdan4706 ehhh.. I am a loooong way off from it. I have been taking network pen courses actively over the last year but all its really teaching me is to be a script kiddie. This dude has a much deeper understanding of the mechanisms and actions of actual malware which makes me think he can throw together some wild stuff. Maybe in a few years I will think differently but he is pretty impressive to me!

    • @guiorgy
      @guiorgy 3 роки тому +1

      @@PlzReturnYourShoppingCart Practice is the best teacher. If you forced yourself to play with those kind o HackMe boxes for a couple of months non stop (of course staring at easy level first), you'd be able to do half if not more. You'd be surprised at how adaptable humans are

    • @PlzReturnYourShoppingCart
      @PlzReturnYourShoppingCart 3 роки тому

      @@guiorgy Ya know, I really don't have family or friend support for learning these things. It's very much so of my own volition and I know that I basically know nothing. but the comment that @bogdan and you left really has a big impact on me. You guys being the only people that have made this knowledge feel within reach has such a positive and vividly assuring feeling for me. I am super thankful for the direction and positivity. Thank you so much! I mean it from the bottom of my heart. Thank you so much! These words you shared have a lot of weight to me.
      What great people watch this channel! What a great community! I am very thankful!

    • @guiorgy
      @guiorgy 3 роки тому +2

      @@PlzReturnYourShoppingCart To be honest, if a person is really passionate about something, they don't really need any support, but it's always better with it.
      As for whether this can be your passion, honestly I don't think there's anybody that can say for sure untill they at least try. In fact, sometimes it may take a lot of time trying to realise whether you are into it or not.
      Here's a quote:
      “The hardest part is starting. Once you get that out of the way, you’ll find the rest of the journey much easier.”
      - Simon Sinek
      Personally, I think that, if you believe something could become a real hobby/passion for you, you will regret more if you never try, than if you try but fail and realize it's not your thing.
      In any case, hope you can find something that you really enjoy doing one day ;)

    • @PlzReturnYourShoppingCart
      @PlzReturnYourShoppingCart 3 роки тому

      @@guiorgy For sure man. I have no plans on giving up. I love having the knowledge. Thanks for the good vibes!

  • @PreetisKitchenltr
    @PreetisKitchenltr 3 роки тому +20

    That's What We Wanted🔥

  • @sinistermatrix5164
    @sinistermatrix5164 3 роки тому

    Heya John 👋. Much love for the awesome video! Keep it up and maybe we can get some more retired boxes down the line!

  • @Asentinn
    @Asentinn 3 роки тому +2

    Well, how does the teams work in the CTFs? I'm a newbie in this and never participated any challenge. I wonder if it is worth looking for a team with random people or just do it on my own.
    Btw, really great content John, I love to watch your struggles during free time. Also I've picked up few things from you, like the Terminator - my god, that was soo liberating experience :).

  • @netanel135
    @netanel135 3 роки тому

    Thank you very much John for the incredible work. Keep it up. Hope to see you again ASAP!

  • @xB-yg2iw
    @xB-yg2iw 3 роки тому

    Love HTB! Would love to see more of these!

  • @jpabagdonas
    @jpabagdonas 3 роки тому

    Thx for the great video John! Please make a video suggesting what subject software developers that are not in the penetration area could study to improve their coding skills avoiding hackers.

  • @zarcher100
    @zarcher100 2 роки тому

    I feel your pain. I miss type stuff that causes headaches all the time.

  • @erkieberg8281
    @erkieberg8281 3 роки тому

    Like the videos and your commitment .
    Please keep it up mate

  • @MishisFamily
    @MishisFamily 3 роки тому

    Always doing great, John! 👌
    Thank you 🔥

  • @bugr33d0_hunter8
    @bugr33d0_hunter8 3 роки тому +2

    I loved this box 📦. Tore right through it.duper fun, especially the part where, wh!aaaaaaaaaat you hitting me for, oh sorry. I almost spoiled it. Lol

  • @itstoxicqt
    @itstoxicqt 3 роки тому

    This room when I did it definitely was more medium than easy definitely banged my head off the wall a few times

  • @mxschmitt_
    @mxschmitt_ 3 роки тому +8

    Great video!

  • @francescofilippo437
    @francescofilippo437 3 роки тому +1

    to access the von of Hack The Box, do you have to be from Virtual Machine or does it also work on WSL2? Thank you

  • @MehmetcanYildiz
    @MehmetcanYildiz 3 роки тому

    John john john! Awesome video as always. Keep it rocks bro!

  • @adam-nw5cn
    @adam-nw5cn 2 роки тому

    I appreciate you and this channel

  • @Omar-sr1ln
    @Omar-sr1ln 2 роки тому +1

    thanks john for ur videos wish u the best buddy

  • @erilycus
    @erilycus 2 роки тому

    Great, learned a lot

  • @GeekInFrance
    @GeekInFrance 3 роки тому

    Really love your video John !

  • @cesarepele4947
    @cesarepele4947 3 роки тому

    Awsome stuff

  • @gameglitcher
    @gameglitcher 3 роки тому +1

    They probably sent you the swag bag to showcase the contents of the prize XD

  • @younesmohssen8158
    @younesmohssen8158 3 роки тому

    To anyone who has attempted the oscp, is this box harder or almost the same as the oscp exam machines?

  • @gauravraj4983
    @gauravraj4983 3 роки тому

    just awesome :)

  • @verdibahnsen
    @verdibahnsen Рік тому

    Why am I reminded of Seth Rogen when John laughs

  • @TheSaintOMS
    @TheSaintOMS Рік тому

    I think this is your first video I've yelled at the screen, lol.

  • @Josh-if5qh
    @Josh-if5qh 3 роки тому

    So forgive me for thr noob question but... well... I'm a complete noob.. do u just use sublime to make it more readable? I'm studying web development at the same time so I use visual studio code but just wondering if u do anything else with sublime besides just help u read it?

  • @JimTheScientist
    @JimTheScientist 3 роки тому +2

    gamer

  • @q-bert558
    @q-bert558 3 роки тому

    Respect!

  • @SIGWotts
    @SIGWotts 3 роки тому

    Amazing as always

  • @igotinfected
    @igotinfected 3 роки тому

    Awesome video!

  • @limonene8435
    @limonene8435 3 роки тому

    The way to get root was really cool.

  • @rioruner8377
    @rioruner8377 2 роки тому

    John The Destroyer !

  • @Cojo173
    @Cojo173 3 роки тому

    Amazing, please make more HTB Videos!!!

  • @numonamir9145
    @numonamir9145 3 роки тому

    Hi John. I have a few questions about write-ups. Which is better hack with write-ups or without?
    How to reach level oscp?
    I'm working on government as CyberSecurity. I already have found a lot of bugs on websites government and after reports they have fixed is it helps me?
    Thank you

  • @BeSTF2
    @BeSTF2 5 місяців тому

    what does -sC do on nmap? I can't find that function anywhere on the manuals

  • @jenpinto272
    @jenpinto272 3 роки тому

    nice! though i have to change the playspeed to 0.75 :D

  • @jorgevilla6523
    @jorgevilla6523 3 роки тому

    Great Video!!

  • @FaTmWit
    @FaTmWit 2 роки тому

    Without any connection to your content, I want to have a beer with you

  • @Blue-od7gy
    @Blue-od7gy 3 роки тому

    good video

  • @mytechnotalent
    @mytechnotalent 3 роки тому

    Ahh yea!

  • @akashhansda4306
    @akashhansda4306 3 роки тому

    07:47 I don't use nano. I love vim. 😂😂😂😂

  • @zacktzeng8569
    @zacktzeng8569 2 роки тому

    Hi why is it necessary to add an entry to the hosts file? How come IP address doesn't work?

  • @Lars-ce4rd
    @Lars-ce4rd 3 роки тому

    While watching John using the arbitrary file read exploit atm, I'm thinking: I'm a simple man, I see an exploit without a version number and the words "shell" and "code execution", I try it. I'm pretty sure I'm watching John heading down a rabbit hole right now

    • @Lars-ce4rd
      @Lars-ce4rd 3 роки тому

      After watching some more, I guess I would probably be the one heading down a rabbit hole! Great vid as always. thanks for the content :)

  • @prashantsingh8802
    @prashantsingh8802 3 роки тому

    Hackthe box is good learner for who want learn hacking

  • @noobyte84
    @noobyte84 3 роки тому

    Hi, this is Ubuntu virtualized in Ubuntu phisic wich virtualbox?

  • @potplantjoe6037
    @potplantjoe6037 3 роки тому

    what os? is he / are you running?

  • @djzio
    @djzio 2 роки тому

    Wow. Who woulda thought that extraterrestrials would not only speak English, but know Python too?

  • @heisenberg8682
    @heisenberg8682 3 роки тому +1

    please more John

  • @sandra8139
    @sandra8139 Рік тому

    I find I have found a few questions in my Cyber security learning app that doesn't mean what the words in the questions is asking like they a trick question to see the trick of them ones I will work out

  • @deegayuchamodtharusha7722
    @deegayuchamodtharusha7722 3 роки тому

    How did he did that privilege escalation from dexter to root?can someone please explain it to me?

    • @mustafamotiwala2335
      @mustafamotiwala2335 3 роки тому +3

      When you run a command that isn't a bash builtin or the path to a specific file, the shell looks through the various directories in the PATH environment variable for an executable that matches your command. The shell looks through these directories from left to right though and it'll simply use the first one it finds. So, guessing that the docker-security file is executing the 'chmod' commands seen when catting out the binary, John made an executable shell script called "chmod" and put the path that its located in at the front of the PATH environment variable. So, when he runs the docker-security binary, it will run this chmod instead of the normal chmod. Why does this help? Well, since the docker-security binary runs as root (it is setuid), it calls chmod as root which executed /bin/bash as root. This was only possible because the docker-security binary called chmod instead of /usr/bin/chmod, thus allowing us to control what is executed.

    • @deegayuchamodtharusha7722
      @deegayuchamodtharusha7722 3 роки тому

      @@mustafamotiwala2335 thank you very much !well explained.

  • @chetanpatil2473
    @chetanpatil2473 4 місяці тому

    anyone know why he use the Ubuntu why he not use kali Linux is there specific reason ??

  • @9391862
    @9391862 3 роки тому +1

    This does not look like a Beginners level :D

  • @tilekasankulov5034
    @tilekasankulov5034 3 роки тому

    Wow

  • @sandra8139
    @sandra8139 Рік тому

    This game you have for learning Cyber security I'm not sure if I was given the right real of that I can't get it loading properly to work that out

  • @popooj
    @popooj 3 роки тому +2

    man !! been missing your videos lately...

    • @stevenspring9889
      @stevenspring9889 3 роки тому

      Dude, I check daily... And I'm already ringing that bell icon... I feel this so much

  • @Z3R0xPl01T
    @Z3R0xPl01T 3 роки тому

    How do you prevent your channel from getting reported

    • @nothingnothing1799
      @nothingnothing1799 3 роки тому

      Im guessing a ctf doesn't count as instructional hacking since they are hosted by legitimate companies

  • @kalifornia909
    @kalifornia909 3 роки тому

    Rip on the ctf. Teams only

  • @dersg1freak
    @dersg1freak 2 роки тому

    Mhmm I think I understand the issue with scripts having the setuid bits, ehm I gotta go, got some paths fix. :o

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    Go long

  • @florian2119
    @florian2119 3 роки тому +1

    Hi

  • @sumedh1678
    @sumedh1678 3 роки тому

    It would be lot easier if you put the vulnerability that you will be exploiting in the description. Thanks.

  • @AFchump78
    @AFchump78 3 роки тому

    Pipe that to grep my man

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    4weindrs looking one development ,1elmins,

  • @VIVEVIEV
    @VIVEVIEV 3 роки тому +6

    Y’all still using python I’m on spython 😎

  • @cedricvillani8502
    @cedricvillani8502 2 роки тому

    before I watch this, these methods are rather slow now aren't they? lol maybe I should watch

  • @JTwisted
    @JTwisted 3 роки тому +4

    Hey! Anybody taking part in CyberApocalypseCTF21? I'm newbie, around 70 rooms on THM, looking for team))

    • @0xsudip892
      @0xsudip892 3 роки тому

      Hello I'm interested

    • @nickswink7983
      @nickswink7983 3 роки тому

      Interested

    • @JTwisted
      @JTwisted 3 роки тому

      @@nickswink7983 Awesome! Add me in discord: Twist#2576

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    System windows for using one system also see how many systems also here how to connect, work files system

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    Qfs codo skills?

  • @shady4tv
    @shady4tv 2 роки тому

    Hey John - what's updog?

  • @MohammedElamineHalia
    @MohammedElamineHalia 2 роки тому

    hacking is the next gaming

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    Ofs?pot codo details

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 10 місяців тому

    Cerd card filles yes/no comments skills

  • @sandra8139
    @sandra8139 Рік тому

    I know that hack the box is very popular but it is crazy to think that working with it is sending me real game and using my learning to open everything Up to them in the wrong with me I hate to think that job that can save perfection to know the ethical from the identity thefts scammers using my identity for every 7 ethical is a criminal hacker I can see in my identity I have a new way to watch my own apps for my progress of myself with unstoppable knowledge and skills and talents

  • @hpimpact
    @hpimpact 3 роки тому +2

    the 5 dislikes are black hats

  • @watchlistsclips3196
    @watchlistsclips3196 3 роки тому

    Please make videos on cryptohack

  • @REktSigMa
    @REktSigMa 2 місяці тому

    The question to all people is, is this type of behavior from a normal person that does not have a UA-cam channel accepted as not being crazy? Lmaooo

  • @sm6tky696
    @sm6tky696 3 роки тому +1

    script kiddie in certain extent... honestly

  • @monicah3788
    @monicah3788 Рік тому

    You talk a lot and say little.

  • @persona5hacked574
    @persona5hacked574 3 роки тому +1

    Why u do not get angry about the struggle of the codings? Make a video where u struggle with coding and exploit all your angry against the people on youtube LOL