TryHackMe! EternalBlue/MS17-010 in Metasploit

Поділитися
Вставка
  • Опубліковано 25 лис 2024

КОМЕНТАРІ • 295

  • @ElGhadraouiTaha
    @ElGhadraouiTaha 4 роки тому +67

    Dude, I love how modest you are and i'm enjoying these video's, KEEEP UP

  • @TheRojaki
    @TheRojaki 4 роки тому +78

    I startet using THM because of you, I even got the VIP supscription now to learn a lot in this quarantine situation.
    I have beaten blue and ice yesterday, but still excited to watch you and learn more. Excited how you tackled this, please make more HTB or THM videos

    • @_JohnHammond
      @_JohnHammond  4 роки тому +16

      Happy to hear that!!
      I'll have to go through Ice real soon. Thanks for watching! I'll definitely try and get some more out there!

    • @rifqioktario5546
      @rifqioktario5546 4 роки тому +2

      Hey can you give me your review about thm vip? Cuz I'm planning to get em too

    • @ccnbutter
      @ccnbutter 3 роки тому +1

      I also started thm after watching a few tutorials from John. It's a great branch from my core engineering spec and incredibly relevant in the world we live in.

  • @Jafar-f4e
    @Jafar-f4e Місяць тому +1

    Thank you Mr John for quick and useful learning

  • @inspireddevelopment2959
    @inspireddevelopment2959 4 роки тому +4

    This is really great stuff for people who are just getting started and can get insight into how you think through attacking a machine. I find this the most useful way to get started...learn a path well and then deviate from it as you learn more. THANK YOU

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      Happy to hear that! Thank you so much for watching!

  • @TheNotoriousFonzy
    @TheNotoriousFonzy 4 роки тому +7

    I would have never got through this exercise without you John.
    Please keep up the amazing work

  • @vexraill
    @vexraill 4 роки тому +35

    Loving this content. THM is so fun and engaging, can't wait to see some more!

    • @_JohnHammond
      @_JohnHammond  4 роки тому +4

      Very happy to hear that! Thanks so much for watching!

  • @foleyjack
    @foleyjack 4 роки тому +4

    I absolutely love this content, I want to study cyber security when I go to college so these videos just make me more excited

  • @FunNFury
    @FunNFury Рік тому +1

    Im learning a lot by doing and practicing from you

  • @demonman1234
    @demonman1234 4 роки тому +6

    Hey, this actually was a good vid to watch. Interesting, even though I completed the machine before watching this, I still find it helpful to see how you took notes. Also I had to restart the machine about 5 times before it actually worked..

  • @DarkDonnieMarco
    @DarkDonnieMarco 4 роки тому +1

    Just had a chance to go through this tutorial using tryhackme, just fantastic stuff. I was a teacher for about 17 years, your teaching style is fantastic.

    • @TheSQL-Lover
      @TheSQL-Lover 4 роки тому

      Some people have that ability to teach / show concepts. You can be a guru on your field and not being able to communicated that. John has both! I love this channel. His and CyberMentor's channel are my two best UA-cam resources for PenTest.

  • @rosscarter8913
    @rosscarter8913 3 роки тому +1

    These videos are awesome! Quick and straight to the point, keep them up! Thanks for teaching us

  • @scwyldspirit
    @scwyldspirit 2 роки тому

    When I first started with thm and htb I needed a helping hand to root even the simplest of boxes. Now I am getting used to the tools so it is getting easier than where I first started.

  • @hashithbandara111
    @hashithbandara111 Рік тому

    you are using awesome simple teaching method, it's easy to understand even a sutudent who did not have good sound of english...thank you..! do more try hack me rooms, from srilanka

  • @resultsIT11243
    @resultsIT11243 3 роки тому

    You sir are an absolute pleasure to watch and learn from, thank you.

  • @damreyrizon9138
    @damreyrizon9138 4 роки тому +23

    Awesome as always man! I've done this one just earlier but you've done it 100x quicker than me!
    Me such noob! >.

    • @_JohnHammond
      @_JohnHammond  4 роки тому +14

      Hey that's not a bad thing! Taking it slow means you can learn more, absorb new concepts and gain a bit more exposure, take better notes... all the good stuff. I just try and breeze through them so it can fit into a video that people would realistically watch ahaha. Thanks for watching!

    • @Brokify1
      @Brokify1 4 роки тому

      Nobody:
      Me: Thinking about how join this room to hack this machine

  • @calebmartin5899
    @calebmartin5899 4 роки тому

    You got me hooked in this site!! I have learned so much from you. I started from the bottom and within a couple of weeks I have majorly progressed in my skills as a ethical hacker. Keep up the good work!

  • @lifeissuching
    @lifeissuching 4 роки тому

    woww, just like attitude and positive energy, I'm starting to watch all of your videos, much to learn!!!

  • @paulcrinq
    @paulcrinq 4 роки тому +1

    Some people listen to asmr to go to sleep, I watch this tryhackme series, it’s soooo relaxing idk why 🤣

  • @mr.crackerbam9371
    @mr.crackerbam9371 3 роки тому

    Subscribed right now with out any hesitation...... Best man on youtube

  • @baboybee28
    @baboybee28 4 роки тому

    Watching this after I finished mine for 3hours. But you sir finished it less than 30mins. Salute! Instant subscribe hehe

  • @olekbeluga314
    @olekbeluga314 Рік тому +1

    You probably figured this out but for everyone who hasn't . At 9:01 nmap scan kept growing because brute force scripts got included. You wanna do this
    nmap --script="smb* and not brute"

  • @kal_dev
    @kal_dev 4 роки тому

    i really like it, your methodologies it's very simple and anyone can understand, very cool

  • @nikolar5847
    @nikolar5847 4 роки тому

    Hello John! I am very thankful for this educating video. I have learned a lot.

  • @siddheshparab3352
    @siddheshparab3352 4 роки тому +2

    thanks for the video..yesterday i was trying this machine but i was unable to create a meterpreter session...it was my first time using metasploit....thanks also make videos on other machines too

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      Oh boy, congrats on using Metasploit for the first time! Thanks for watching -- hope to have more videos out on TryHackMe soon enough!

  • @1234victorxD
    @1234victorxD 4 роки тому

    im learning so much with those videos! ty so much!

  • @fernandofernandes8142
    @fernandofernandes8142 2 роки тому

    dont stop this work! we love it!

  • @ΜαύροκΆραχνο
    @ΜαύροκΆραχνο 3 роки тому +15

    If you have problems successfully running the exploit ( /windows/smb/ms17_010_eternalblue) you probably need to change the LHOST option.
    Initially it is set to something like 192.168.x.x (you can confirm that with 'show options' or from the first log message in your terminal after running the exploit, as our lord and senpai John shows, which should be something like [*] Started reverse TCP handler on 192.168.1.12:4444. You need to change that to the IP that TryHackMe assigned for your machine when you connected to their VPN, so the reverse shell can actually find you.
    So, just follow John's steps and before running the exploit type "set LHOST 10.9.x.x"

    • @Konnecta-kb9gg
      @Konnecta-kb9gg 3 роки тому +1

      N1, this needs more upvotes

    • @nailed0283
      @nailed0283 2 роки тому

      Thx a lot!

    • @HTWwpzIuqaObMt
      @HTWwpzIuqaObMt 2 роки тому

      Συμβαινει διοτι το network διαχωριζεται απο το vpn οποτε πρεπει να βαλεις το tun0 συνηθως

  • @alien_man1669
    @alien_man1669 4 роки тому

    Thank you so much! I've been looking for a way to play CTFs from my Android running nethunter and this is exactly what I've been looking for.

  • @mindwaves90
    @mindwaves90 10 місяців тому

    Thanks john for this cool walkthrough

  • @Sandesh98147
    @Sandesh98147 4 роки тому

    Newly joined on this channel. Im absolutely loving this series. Please keep these coming!

  • @DePhoegonIsle
    @DePhoegonIsle 4 роки тому

    That's very cool. wish more people would learn this, and in that how to configure their machines against it. This is a very cool learning site.

    • @_JohnHammond
      @_JohnHammond  4 роки тому

      Definitely agreed, TryHackMe is great! Thanks for watching!

  • @smokeweed856
    @smokeweed856 4 роки тому

    Much love man, really impressed by your arsenal

  • @the2dstuart
    @the2dstuart 3 роки тому

    very understandable, I like the style, definetely stickign around

  • @codermomo1792
    @codermomo1792 5 місяців тому

    The beginning of every legend

  • @морс-ф3д
    @морс-ф3д 4 роки тому

    Brilliant work!!!👏🏻👏🏻👏🏻👏🏻👏🏻👏🏻👏🏻👏🏻👍🏻👍🏻👍🏻👍🏻👍🏻👍🏻👍🏻

  • @vishalsathiaseelan679
    @vishalsathiaseelan679 4 роки тому

    Thank you so much. Loved it. I am a newbie and ur explanations are perfect

  • @ronakjoshi5093
    @ronakjoshi5093 4 роки тому

    great video john...love from india🙂✌️you are doing great thing for the community

  • @rootshell101
    @rootshell101 4 роки тому

    I finished it. It was kinda easy. And now I'm watching your video to find if I missed anything 😁😄

  • @Ghst-nn9yy
    @Ghst-nn9yy 4 роки тому

    I love TryHackMe, It's really helped me with my Cyber Security learning

  • @userPrehistoricman
    @userPrehistoricman 4 роки тому

    Nice to see some Lua in the wild.

  • @chittodihoc
    @chittodihoc 4 роки тому

    i love your tryhackme series a lot. thank u

  • @rickastley8459
    @rickastley8459 Рік тому +2

    Flags:
    🏳Flag 1 {C:/}
    🏴Flag 2 {C:/Windows/System32/Config/flag2.txt}
    🏳Flag 3 {C:/Users/Jon/Documents/flag3.txt}

  • @fahadfaisal2383
    @fahadfaisal2383 3 роки тому

    Thank for your help

  • @InfoSecGSO
    @InfoSecGSO 4 роки тому +2

    This one is so much more fun when using the stand alone python exploit

    • @omar619kamis
      @omar619kamis 4 роки тому

      U want to use your own exploits?? Huh did I get that right or what cuz dats impossible

  • @anuradhalakruwan1918
    @anuradhalakruwan1918 4 роки тому +1

    Thank you good lesson. 👍👍👍👍🇱🇰

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      Appreciate it, thanks for watching!

  • @conansainshy4445
    @conansainshy4445 4 роки тому

    I like your videos ,and you are super fast in typing
    thanks

  • @nubscripters3756
    @nubscripters3756 4 роки тому +1

    Thank you! i love these videos

    • @_JohnHammond
      @_JohnHammond  4 роки тому

      Happy to hear that! I'll try and get more of them out soon!

  • @johnvardy9559
    @johnvardy9559 Рік тому

    johm hammond just the everset of ethical hacking

  • @yassineregragui9799
    @yassineregragui9799 4 роки тому

    love this website series. I definitely need more

  • @kevinlaurent577
    @kevinlaurent577 4 роки тому +49

    Hi John, I just saw that try hack me had a learning path for OSCP can we have your thought on it please?

    • @_JohnHammond
      @_JohnHammond  4 роки тому +18

      I can certainly try to take a look at it soon! Thanks for watching!

    • @kevinlaurent577
      @kevinlaurent577 4 роки тому +2

      @@_JohnHammond Thank you !!

    • @TheSQL-Lover
      @TheSQL-Lover 4 роки тому

      I am currently doing some machines there. There is one that was really interesting, with priv escalation included. But I would be happy to get a FULL review from John, if he is able to finish the whole OSCP learning path there of course.

    • @steez4778
      @steez4778 4 роки тому +1

      @U X make your own

    • @steez4778
      @steez4778 4 роки тому

      @U X Enough to know that you like your own comments lmao, don't too greedy man, just go to the CVE list or exploitdb to find other exploits. They wont be as critical as this exploit

  • @janekmachnicki2593
    @janekmachnicki2593 Рік тому

    Awesome Mr John

  • @Ropex
    @Ropex 4 роки тому +1

    I love these so much !

    • @_JohnHammond
      @_JohnHammond  4 роки тому

      Very happy to hear that! Thanks for watching!

  • @blazecosko7506
    @blazecosko7506 2 роки тому

    Thanks for this content.

  • @solon7740
    @solon7740 4 роки тому +4

    More of this please. You're helping me a lot trying to learn hacking.
    Greetings from Germany

  • @HTWwpzIuqaObMt
    @HTWwpzIuqaObMt 2 роки тому

    Was about to write tht u could use search but u did lmfao great vid man

  • @Username8281
    @Username8281 3 роки тому

    Awesome video, thank you!

  • @ronvalerio3255
    @ronvalerio3255 4 роки тому

    Great work , John.

  • @Am5lu
    @Am5lu 4 роки тому

    Had no idea Seth Rogan was into computers as well

  • @semeradstephan
    @semeradstephan 3 роки тому

    thank you!

  • @SinanAkkoyun
    @SinanAkkoyun 4 роки тому

    ohh the lovely xps15

  • @JuanLopez-db4cc
    @JuanLopez-db4cc 4 роки тому

    Please more of TryHackMe!!!

  • @israamosad9133
    @israamosad9133 4 роки тому

    Thanks , keep going

  • @supremesupreme26
    @supremesupreme26 4 роки тому +1

    I LOVE IT! DO MORE VIDEOS

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      More on the way! Thanks for watching!

  • @sharathchandra6166
    @sharathchandra6166 4 роки тому

    awesome video as always! learned lots of new things keep making more!

  • @shubham_srt
    @shubham_srt 4 роки тому

    Thanks!

  • @ripmeep
    @ripmeep 4 роки тому

    EternalBlue!!! One of my favorite exploits! Great video :) keep up the awesome work

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      Such an easy gun ahaha. Thanks for watching!

    • @ripmeep
      @ripmeep 4 роки тому

      @@_JohnHammond very much so lol. my pleasure!

  • @mronfire13
    @mronfire13 4 роки тому +30

    Hey John, where did you learn most of the basics? Like the tools you use and they are used for, etc? but also, where do I learn more about history about past hacks?

    • @_JohnHammond
      @_JohnHammond  4 роки тому +24

      A lot of it has been practice and exposure -- looking at UA-cam videos, seeing people use new tools, reading writeups and solutions and picking up on new techniques and tricks -- it all accumulates and you keep growing!
      History on past hacks -- I would recommend Googling and reading a lot of articles about what you are interested in. Thanks so much for watching!

    • @alexl5682
      @alexl5682 4 роки тому +3

      he doesn't know anything, silly kid just googled, installed a hacking tool made by someone else and showed up here ))

    • @withincode6848
      @withincode6848 4 роки тому +13

      Alex L he has stated multiple times that he is a beginner to this. When people first start it is necessary to use these scripts so they can learn how and why they work so in the future they can make their own. Nobody starts at anything being an expert in the field.

    • @_JohnHammond
      @_JohnHammond  4 роки тому +21

      @@withincode6848 I'm a beginner. I'll do this for 50 years and I'll still be a beginner. There is always more to learn and practice. :)

    • @joeyfromchicago
      @joeyfromchicago 4 роки тому +1

      Mario, is/was your MOS related to IT? Former 0651 here

  • @advaitpathak9532
    @advaitpathak9532 4 роки тому

    Thank You Boss!!!

  • @bharathnaidu107
    @bharathnaidu107 3 роки тому

    Best in the Business!!!

  • @abhishekmorla1
    @abhishekmorla1 4 роки тому

    nice explanation

  • @RijumanSen
    @RijumanSen 4 роки тому

    Good one.

  • @sysop10
    @sysop10 4 роки тому

    Very nice tutorial, please keep going

    • @_JohnHammond
      @_JohnHammond  4 роки тому

      Happy to hear that! Thank you so much!

  • @aspiringpentester9347
    @aspiringpentester9347 3 роки тому

    this video is awesome

  • @ashrafulalim1272
    @ashrafulalim1272 4 роки тому

    Thanks

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      The thank you goes to you! Thank you for watching!

  • @lasithadulshan7357
    @lasithadulshan7357 3 роки тому

    Good explain learn lot of 🌿

  • @marvintoussaint8458
    @marvintoussaint8458 4 роки тому

    Yeah I’m on this tomorrow morning.

  • @anonymousvevo8697
    @anonymousvevo8697 3 роки тому

    Amazing !!

  • @Finidus
    @Finidus 4 роки тому

    Watching this is fun

  • @Ozla102
    @Ozla102 4 роки тому

    great video and a great platform, love ur video!

  • @overbafer11
    @overbafer11 2 роки тому

    Nice work!

  • @faruky9197
    @faruky9197 4 роки тому

    ı dont know english very well but ı can learn too much things from you. my own language videos sucks they dont know anything or they dont want to teach people. Anyway thanks for the videos

  • @ayoub3000
    @ayoub3000 4 роки тому

    Thank u very much

  • @siumhossain-
    @siumhossain- 4 роки тому +1

    awesome !!!!!!!

    • @_JohnHammond
      @_JohnHammond  4 роки тому

      Thank you! And thanks for watching!

  • @mohamedelbadry8732
    @mohamedelbadry8732 Рік тому

    thanks you:)

  • @blind0wl
    @blind0wl 4 роки тому

    Your usage of 'tak' does my head in.

  • @lemil7
    @lemil7 4 роки тому +1

    Hey John!, Love your videos!. I think they are supper interesting, well explained and entertaining. If you ever consider to develop content in Spanish , let me know!. I would love to help you with that. Cheers!

  • @CleftMan
    @CleftMan 2 роки тому +1

    Don't mind me, just doing my share of UA-camr algorithm things...

  • @Jonatan_castano
    @Jonatan_castano 3 роки тому

    Ready,

  • @ahmedtlili3006
    @ahmedtlili3006 4 роки тому

    Awesome

  • @torgodly
    @torgodly 4 роки тому +1

    short way to do this CTF
    once you find the username and password in task4 there is 3389 port open its for RDP you can use rdesktop and login and search for file named flag .. you'll find all 3 flags easily

  • @A2MIQuicknesss
    @A2MIQuicknesss 2 роки тому

    Going back and doing this again for the reverse shell section you have to use MSF v5, right now v6 errors out and has some known issues.

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    Clear
    All apps one madel work headel 👍 nice

  • @elmo991
    @elmo991 4 роки тому

    Keep up the good work! My flag2.txt was also missing from the C:\Windows\System32\Config dir, I wonder how that happened :s

  • @jhde9067
    @jhde9067 4 роки тому

    Would be good if people said why they disliked.

  • @redpilledpatriot6868
    @redpilledpatriot6868 4 роки тому +1

    After I type the command "nmap -Pn -sC -sV -oN nmap/initial 10.10.82.251" in the terminal, I get this as a result and it's totally different from yours. >>>>
    "Starting Nmap 7.80 ( nmap.org ) at 2020-04-26 22:34 EDT
    Stats: 0:00:03 elapsed; 0 hosts completed (1 up), 1 undergoing Connect Scan
    Connect Scan Timing: About 1.00% done; ETC: 22:39 (0:04:57 remaining)
    Nmap scan report for 10.10.82.251
    Host is up.
    All 1000 scanned ports on 10.10.82.251 are filtered
    Service detection performed. Please report any incorrect results at nmap.org/submit/ .
    Nmap done: 1 IP address (1 host up) scanned in 202.25 seconds"

  • @berthold9582
    @berthold9582 3 роки тому

    Tes le meilleur

  • @maxali6591
    @maxali6591 4 роки тому

    Really cool vid even if it's an old 7 hack, it's interesting to see how powerfull is metasploit and eternal blue too. Did you go deep into metasploit functions ? I mean in the code, how a functionnality works...
    Nice vid. I like your work.

    • @_JohnHammond
      @_JohnHammond  4 роки тому +1

      I have not yet for the Eternalblue exploit but I can try and do that in a future video. Thanks for watching!

  • @babayaga4329
    @babayaga4329 4 роки тому +1

    I just couldn't get pass `Triggering free of corrupted buffer`

  • @Anonymous-xf8ho
    @Anonymous-xf8ho 3 роки тому

    from speech import success as s
    youtube_comment = s.write('''
    I finally did it!!! I changed the IP address of the reverse TCP handler and it worked!! Thanks for the priv esc in Vulnersity. I would have had no idea where to find a good one
    ''')
    print(youtube_comment)

  • @isxanderclips9050
    @isxanderclips9050 4 роки тому +1

    when I try run my metasploit it fails 3 times and says it completed but no session was created