HackTheBox - OpenKeyS

  Рет қаралды 17,240

IppSec

IppSec

Күн бұрын

00:00 - Introduction
00:31 - Begin of nmap
01:10 - Nmap shows it is BSD, going over some command differences
02:00 - Running GoBuster to find other PHP Scripts
04:30 - Looking at the includes directory and finding source code
10:14 - Reversing the Check_Auth binary with Ghidra, to see it doesn't decompile well
12:00 - Using VirusTotal to find out if this an old binary
13:20 - Using Cutter to decompile this binary, to see it does a better job than Ghidra!
17:50 - Finding some BSD Exploits related to authentication
20:00 - Putting SCHALLENGE as the username, causes a different error message. Then doing some code analysis around $_REQUEST
24:50 - Abusing the $_REQUEST() feature to overwrite the username file with a valid user and grab their SSH Key
26:10 - Showing how OpenBSD has some different command line switches
31:00 - Going back to the earlier CVE, since it showed a privesc aswell and explaining CVE-2019-19520
40:45 - EXTRA: Looking at the PHP Code to explain the $_REQUEST exploit again

Пікірлер: 31
@hisham-pq3xc
@hisham-pq3xc 3 жыл бұрын
I love the small information that gives us while you solve the box
@LegitZero
@LegitZero 3 жыл бұрын
This guy is actually the best at explaining stuff on the internet when it comes to computers. Keep going
@kasuntechtest8871
@kasuntechtest8871 3 жыл бұрын
The thing about ippsec is , this is not just a walkthrough .... This is more artistic and enjoyable even it is about pure technical.......
@BroodPitt
@BroodPitt 3 жыл бұрын
Thanks for explaining the exploit! Real great treasure this channel!
@tymekl1509
@tymekl1509 3 жыл бұрын
I haven't even watched it yet, but I know this is gonna be awesome
@pramodkhandelwal9321
@pramodkhandelwal9321 3 жыл бұрын
Not seen the video till now but still saying awesome video ippsec!!!
@terminaltears
@terminaltears 3 жыл бұрын
Thank you for the video IppSec! You inspired me a lot.
@mayankdeshmukh8752
@mayankdeshmukh8752 3 жыл бұрын
Awesome explanation !!
@j0m0z
@j0m0z 3 жыл бұрын
I Love IPPSEC! Dude, in part because of you, and this channel, I am a pentester and security assessor. Next year I am going to build a team and this channel is going to be required training.
@olivert.7192
@olivert.7192 3 жыл бұрын
man privilege esclation seems super ez. But initial shell would have taken me ages. Very cool box though, it is easy after all if you do some good enumeration. I never did it but it looks really cool Good video ippsec
@DHIRAL2908
@DHIRAL2908 3 жыл бұрын
This box was hard if you had zero experience with BSD's common CVEs like me...
@DHIRAL2908
@DHIRAL2908 3 жыл бұрын
11:25 It does call a function before 'do {'. But can't really remember if it was very useful 🤔...
@Sh1n3g4mi
@Sh1n3g4mi 3 жыл бұрын
that 1 dislike must be from someone who had no idea what's going on.
@Bwcap
@Bwcap 3 жыл бұрын
Love this terminal theme. Which is it?
@tymekl1509
@tymekl1509 3 жыл бұрын
I have a question @IppSec, will you continue to make videos on christmas break?
@ippsec
@ippsec 3 жыл бұрын
Probably not. I am in the process of moving and probably won't have an office for a few days.
@rayyansiddiqui6261
@rayyansiddiqui6261 3 жыл бұрын
when ippsec says cool CVE, then it must be cool CVE!!
@nickst2797
@nickst2797 3 жыл бұрын
Hello! You dont put your videos in playlists anymore?
@trwwrt5687
@trwwrt5687 3 жыл бұрын
@IppSec what is ur desktop env and ur theme ??
@eklypzn
@eklypzn 3 жыл бұрын
Just google parrot pwnbox
@trwwrt5687
@trwwrt5687 3 жыл бұрын
@@eklypzn thanx man
@kret63
@kret63 3 жыл бұрын
Wow, that was quite a headache.
@tymekl1509
@tymekl1509 3 жыл бұрын
sgid - stored gid
@Adam-wc5ol
@Adam-wc5ol 3 жыл бұрын
Can you make a playlist for all HTB Videos ?
@flamingoindigo4253
@flamingoindigo4253 3 жыл бұрын
check his playlist, he sorts it by difficulty too.
@gauravbisht9622
@gauravbisht9622 3 жыл бұрын
NO ONE: LITERALLY NO ONE: IPPSEC: I really like this box
@MrKartos1
@MrKartos1 3 жыл бұрын
Do another tmux video! Been trying to up my terminal game
@JuanBotes
@JuanBotes 3 жыл бұрын
@ippsec u awesome! LOL at men in black moment - forget everything i just said in last 30seconds @38:41
@user-jl4kg6ls9g
@user-jl4kg6ls9g 3 жыл бұрын
struggle solve the box!!!maybe 3 weeks i can solve give a time and watch @Ippsec
HackTheBox - Compromised
1:06:23
IppSec
Рет қаралды 25 М.
HackTheBox - Blunder
1:10:43
IppSec
Рет қаралды 30 М.
A little girl was shy at her first ballet lesson #shorts
00:35
Fabiosa Animated
Рет қаралды 11 МЛН
HAPPY BIRTHDAY @mozabrick 🎉 #cat #funny
00:36
SOFIADELMONSTRO
Рет қаралды 18 МЛН
Clown takes blame for missing candy 🍬🤣 #shorts
00:49
Yoeslan
Рет қаралды 41 МЛН
Cool Items! New Gadgets, Smart Appliances 🌟 By 123 GO! House
00:18
123 GO! HOUSE
Рет қаралды 17 МЛН
HackTheBox - Magic
57:06
IppSec
Рет қаралды 28 М.
HackTheBox - Dyplesher
1:39:06
IppSec
Рет қаралды 20 М.
Beginner's Guide to the Bash Terminal
1:14:37
Joe Collins
Рет қаралды 2,3 МЛН
HackTheBox - SneakyMailer
1:07:31
IppSec
Рет қаралды 19 М.
Java Is Better Than Rust
42:14
ThePrimeTime
Рет қаралды 162 М.
Can we dooby Tesco's GU10 bulbs?  - with schematic
10:41
bigclivedotcom
Рет қаралды 63 М.
HackTheBox - Worker
1:05:17
IppSec
Рет қаралды 27 М.
HackTheBox - Intense
2:14:59
IppSec
Рет қаралды 33 М.
HackTheBox - ForwardSlash
1:52:54
IppSec
Рет қаралды 25 М.
A little girl was shy at her first ballet lesson #shorts
00:35
Fabiosa Animated
Рет қаралды 11 МЛН