Hack the box academy : Getting Started pt 2 and knowledge check

Поділитися
Вставка
  • Опубліковано 26 лис 2024

КОМЕНТАРІ • 64

  • @stuffy24
    @stuffy24  Рік тому +4

    If you want to see exclusive content and have the opportunity to game and chat with me about anything check out the patreon!
    Patreon to help support the channel! Thank you so much!
    patreon.com/stuffy24

    • @k_usuan
      @k_usuan Рік тому +1

      Great and I will be interested in that

  • @gpilley1
    @gpilley1 6 місяців тому +8

    Thanks for this video! I am doing the Penetrator Test on HTB and getting completely confused/struggling with a lot of this stuff. Videos like this really help even to show the mind set of how to pen test and the steps/process involved in joining the dots.

    • @stuffy24
      @stuffy24  6 місяців тому +1

      Thanks for the kind words

    • @gpilley1
      @gpilley1 6 місяців тому +3

      @@stuffy24 anytime if you can keep them coming I would really appreciate it. Some of this stuff feels like I need a tutor to show me how it all works haha

  • @itthidejaramsri
    @itthidejaramsri 9 місяців тому +2

    On knowledge check, Im change default theme .php code to php reverseshell and call the website. Thanks for sharing msf way.

  • @eClaireSowden
    @eClaireSowden Рік тому +3

    So valuable to watch this, thankyou.
    Watching you go down the same path that I did, taught me that all I was actually missing was persistence 😆

    • @stuffy24
      @stuffy24  Рік тому

      Haha persistence is the strongest skill in this field I will tell you that! You got it though !

  • @banana-9959
    @banana-9959 Місяць тому +1

    lmao it's funny how for the user flag the only step I didn't miss but fail was leaving the targeturi empty for the cms for the user flag in order to get the meterpreter shell.
    figuring it out for root on the other hand, I doubt I could do that on my own as a beginner. those 2 commands CMD="/bin/sh" and sudo php -r "system('$CMD');" were totally alien to me. thanks for the help

    • @stuffy24
      @stuffy24  Місяць тому

      @@banana-9959 absolutely glad it helped !

  • @stoyanivanov9701
    @stoyanivanov9701 11 місяців тому +2

    Great content, I really enjoyed your walkthrough. I hope you continue with the great videos. Thank you

    • @stuffy24
      @stuffy24  11 місяців тому

      Thanks so much!

  • @noplss
    @noplss 11 місяців тому +1

    Haha now I know what was wrong with the last assignment, I messed up my metasploit parameters. Thank you!

  • @AlabamaLockPicking-Main
    @AlabamaLockPicking-Main 23 дні тому

    Thanks for the content I've read all of it but got confused at doing the machine that's what I came here for

  • @k_usuan
    @k_usuan Рік тому +2

    Good content! Bravo! and would love to see your note taking techniques. I get disorganised with my notes

    • @stuffy24
      @stuffy24  Рік тому +1

      Hey thanks so much! My notes are available for Patreon members to access!

  • @folkishappalachian6827
    @folkishappalachian6827 Рік тому +1

    I like their business model because i can return to it later, you can use it without subscription too once boxes are bought
    I am starting with THM but moving to HTB after im more efficient because HTB is harder but THM is more instructive for beginners

    • @stuffy24
      @stuffy24  Рік тому +2

      I can appreciate that! Never thought about it that way!

  • @ibrahimandong1572
    @ibrahimandong1572 Місяць тому +4

    the metasploit doesn't work on my linux local installation keeps saying target is not vulnerable but works rideaway on the HTB VM

    • @stuffy24
      @stuffy24  Місяць тому +1

      @ibrahimandong1572 did you verify you can communicate with the vulnerable machine from your local machine?

    • @AlabamaLockPicking-Main
      @AlabamaLockPicking-Main 23 дні тому +1

      It's probably because you have to set your LHOST in metasploit to your htb vpn ip which will be under the tun0 interface. but if you're on a vm ware then then that might be a problem to figure out just connect to the htb open vpn and note that the htb academy uses a different vpn file then your actual normal htbs just wait 10 to 20 seconds and use ping to ping the targets ip to see a response I'm using a rasberry pi instead of a vm but note that rasberry pi can't use stuff like burpsuite also vm will work you just got to figure it out

    • @ibrahimandong1572
      @ibrahimandong1572 23 дні тому

      @@AlabamaLockPicking-Main I ran to multiple issues running a local Linux and wasted lots of time trying to troubleshoot/figure it you now I just use the local pawn machine if I start having issues

    • @AlabamaLockPicking-Main
      @AlabamaLockPicking-Main 23 дні тому

      @ibrahimandong1572 did you ever figure it out because I realized that when using meta sploit some things will have a option for lhost and for the lhost it would usually have my private ip address set by default so I had to manually set the lhost to the vpn ip address you can just type set LHOST tun0 after setting a RHOST in msfconsole when using a htb vpn and that will fix your problem if that's the issue you're having

    • @AlabamaLockPicking-Main
      @AlabamaLockPicking-Main 23 дні тому

      @ibrahimandong1572 is it just with msconsole because to solve your problem with that before or after setting a rhost type "set LHOST tun0" and that might fix you're problem because it'll try to set it to a different ip by default that isn't your vpn

  • @nelsoncruz-os7nz
    @nelsoncruz-os7nz 8 місяців тому +1

    Awesome videos man! One of the best guys on UA-cam for sure!

    • @stuffy24
      @stuffy24  8 місяців тому

      Appreciate you!

  • @mcMonzeray
    @mcMonzeray 11 днів тому +1

    Amazing content !! exactly what i was looking for

    • @stuffy24
      @stuffy24  11 днів тому

      @@mcMonzeray thank you!

  • @divingbenson
    @divingbenson 10 місяців тому

    Love your video!!!! start my journey in HTB Penetration tester. Thank you your walkthrough and help me a lot!!!

    • @stuffy24
      @stuffy24  9 місяців тому

      I'm glad I could help

  • @AaronChang-e8z
    @AaronChang-e8z Рік тому +1

    you are the best teacher!

    • @stuffy24
      @stuffy24  Рік тому +1

      Thank you so much!! Check out the discord in the description to get access to Livestreams and stuff to learn more! Also the Patreon members get 1 on 1 sessions so if you want me to teach anything specific! Also just throw out videos you wanna see and I'll try and make it happen!

  • @Hashirsec
    @Hashirsec Рік тому +1

    Respect from my side sir...

  • @keitth6935
    @keitth6935 Рік тому +1

    Im still curious on why the file upload didn't work with metaexploit? did you ever find out?

    • @stuffy24
      @stuffy24  Рік тому

      I can't remember off top of my head now. That's been a bit ago

  • @seanbaker9966
    @seanbaker9966 9 місяців тому +2

    bump for the algo.

  • @Xerver215
    @Xerver215 11 місяців тому +1

    I've been working on this for a while now, but for some reason, the php file won't upload to the server. I've followed everything, but I cannot figure this out for the life of me.

    • @stuffy24
      @stuffy24  11 місяців тому +1

      Hop in the discord and put screenshot in #questions and we can hopefully help

  • @eyeteaboy1557
    @eyeteaboy1557 22 дні тому

    Love your video!

  • @syedsharukh8265
    @syedsharukh8265 Рік тому +1

    Really helpfull I was just stuck at the upload part 😅😅

  • @nwhta1
    @nwhta1 8 місяців тому +1

    body you are good!

  • @merlin5937
    @merlin5937 6 місяців тому +1

    ty

  • @ELASHWAL1000
    @ELASHWAL1000 6 місяців тому

    did you pass the CPTS cert.?

    • @stuffy24
      @stuffy24  6 місяців тому

      I have no plans on taking it.

    • @ELASHWAL1000
      @ELASHWAL1000 6 місяців тому

      @@stuffy24 hmm...do you think it's worth the time

    • @stuffy24
      @stuffy24  6 місяців тому

      @ELASHWAL1000 depends on the person and the goals. For me no it's not worth the time money or effort. For you maybe it is idk.

  • @noewacreativemusic6794
    @noewacreativemusic6794 Рік тому +1

    nice one!

  • @んな-n3v
    @んな-n3v 5 місяців тому

    ありがとうございます

  • @CyberDevilSec
    @CyberDevilSec 5 місяців тому

    Hey man i respect your walkthroughs i have a question for you.
    I'm looking for a duo youtuber so we can work togheter would it be okay if you can have a chat with me about maybe a future project togheter?

    • @stuffy24
      @stuffy24  5 місяців тому +1

      You can message me on the discord to discuss

    • @CyberDevilSec
      @CyberDevilSec 5 місяців тому +1

      @@stuffy24 Lovely m8

  • @SophisticatedSignal
    @SophisticatedSignal 3 місяці тому +1

    Thanks a lot brother

    • @stuffy24
      @stuffy24  3 місяці тому +1

      @@SophisticatedSignal thank you