1 00:00:00,330 --> 00:00:06,080 Hi, within this lecture, we're going to set our hack, the Boxey count up. 2 00:00:06,350 --> 00:00:09,990 So I believe you managed to get into the system. 3 00:00:09,990 --> 00:00:17,730 And again, if you had challenges, just go to YouTube or Google in order to search for the box invitation 4 00:00:17,730 --> 00:00:20,690 challenge and find it out, OK. 5 00:00:21,480 --> 00:00:26,360 So this is how hacked the box looks like, at least when I look into it. 6 00:00:26,700 --> 00:00:31,440 And currently the box is trying to change the user interface. 7 00:00:31,770 --> 00:00:36,460 So I'm going to show you the new one and also the old one as well. 8 00:00:36,480 --> 00:00:40,500 So however you may want to use it, it's not very different. 9 00:00:40,500 --> 00:00:42,960 The functionality is the same. 10 00:00:43,260 --> 00:00:50,240 But again, maybe you can actually experience some challenge when you try to adjust to the new UI. 11 00:00:50,250 --> 00:00:54,760 So I'm going to mainly use it in the new user interface. 12 00:00:55,080 --> 00:00:56,490 So exactly. 13 00:00:56,760 --> 00:01:02,520 We're going to set up our VPN like we did in the tri, hack me as well. 14 00:01:02,530 --> 00:01:06,540 So it's very easy for you if you have watched the previous section. 15 00:01:06,540 --> 00:01:10,030 Of course, now I'm going to show you how it's done. 16 00:01:10,620 --> 00:01:19,170 So over here, when we log in, as you can see, we have a lot of menus like at the left hand side, 17 00:01:19,170 --> 00:01:21,440 on the top side here as well. 18 00:01:21,720 --> 00:01:24,760 So the logic is the same with the tri hack me. 19 00:01:25,110 --> 00:01:26,880 So this is the new UI. 20 00:01:27,030 --> 00:01:32,150 OK, so most probably you will see this when you wash this course. 21 00:01:32,340 --> 00:01:35,720 So I'm going to take you over this rather than this. 22 00:01:35,730 --> 00:01:38,370 OK, but the logic is the same. 23 00:01:38,370 --> 00:01:42,690 You can find anything that you find here in the other tab as well. 24 00:01:43,180 --> 00:01:49,050 OK, so as you can see, menus are the same, but it's a little bit neater. 25 00:01:49,320 --> 00:01:52,880 It's a little bit simpler in the new UI. 26 00:01:53,250 --> 00:01:59,430 So if you find this getting started over here, it will be great because it will just show you what 27 00:01:59,430 --> 00:02:01,110 you need in order to get started. 28 00:02:01,440 --> 00:02:08,640 And what we need to do over here is to find the open VPN that we need to download in the dashboard. 29 00:02:09,090 --> 00:02:12,770 We see our own profile like this is my own profile. 30 00:02:12,780 --> 00:02:18,750 Of course, I just opened it for you so that you can see exactly what I'm seeing over here. 31 00:02:19,620 --> 00:02:25,370 These are red flags or these are the rankings that I gather over here. 32 00:02:25,380 --> 00:02:31,860 Of course, I haven't sold anything yet with this account so that you won't see anything over here. 33 00:02:32,430 --> 00:02:41,310 And this old systems, owned users and own roots are actually a way to indicate how many vulnerable 34 00:02:41,310 --> 00:02:47,790 machines that I sold and how many flags that I submitted over here, just like in the tri hack me. 35 00:02:48,180 --> 00:02:50,700 So I'm in noob apparently right now. 36 00:02:51,000 --> 00:02:58,590 And if I go to subscriptions over here or profile settings, I can just change my subscriptions or profiles. 37 00:02:58,590 --> 00:03:01,440 And as you can see, I'm in the VIP plan. 38 00:03:01,740 --> 00:03:03,720 And of course, I did that. 39 00:03:03,720 --> 00:03:07,130 I just upgraded my account to VIP. 40 00:03:07,140 --> 00:03:13,830 You can do that from here so you don't see my credit card information or something like that. 41 00:03:14,910 --> 00:03:20,340 So over here, as you can see, it's still loading for some reason, but it really doesn't matter. 42 00:03:20,650 --> 00:03:28,710 All you have to do, just upgrade your account to VIP, just pay for it in order to understand or in 43 00:03:28,710 --> 00:03:33,270 order to practice what we're going to practice during this section. 44 00:03:33,810 --> 00:03:39,510 And again, if you don't want to do that, if you don't want to pay an extra 10 bucks or something like 45 00:03:39,510 --> 00:03:45,660 that, just wash the rest of this lecture and the rest of the section and take notes. 46 00:03:46,520 --> 00:03:49,950 OK, so here we are in the dashboard. 47 00:03:50,370 --> 00:03:58,320 And again, if we just click on our profile, we can choose the upgrade to VIP to become VIP or just 48 00:03:58,320 --> 00:04:03,870 go to profile settings, OK, in the subscriptions tab, we can just do that. 49 00:04:03,870 --> 00:04:07,230 We can upload an avatar if we want to. 50 00:04:07,500 --> 00:04:13,200 We can just see the general information like email and user name and something like that. 51 00:04:13,860 --> 00:04:21,330 And if we go to getting started over here, we can see the hack the Bucks guide, which is an introduction 52 00:04:21,330 --> 00:04:24,590 to VPN access, which is what you should do. 53 00:04:24,930 --> 00:04:31,950 And over here, I believe you can find it under the VPN connection if you're using the old version. 54 00:04:32,820 --> 00:04:34,380 So I'm going to click onto that. 55 00:04:34,380 --> 00:04:39,270 It will lead us to a tutorial where we can find the VPN settings. 56 00:04:39,720 --> 00:04:42,040 And here you go. 57 00:04:42,420 --> 00:04:51,870 So this is the VPN tutorial you can just read this can do a little bit and choose your VPN and download 58 00:04:51,870 --> 00:04:52,410 it again. 59 00:04:52,410 --> 00:04:59,820 This will be specific to your account, so you must find your own VPN and just connect to the server. 60 00:05:00,290 --> 00:05:08,360 By using that open VPN file, so again, this is exactly like what we have done in the tri hack me, 61 00:05:08,600 --> 00:05:09,060 right? 62 00:05:09,350 --> 00:05:18,200 So let me go back and let me just find my open VPN over here under the connection settings. 63 00:05:18,710 --> 00:05:25,890 OK, so you can just click on the open VPN and choose your VPN server. 64 00:05:26,240 --> 00:05:31,150 So I'm going to go for you since I'm close to Europe over here. 65 00:05:31,190 --> 00:05:33,550 Or you can just choose your country. 66 00:05:33,890 --> 00:05:36,050 I'm seeing the VIP lapse. 67 00:05:36,410 --> 00:05:45,470 So because I'm a VIP member and I can choose whatever server I want to choose, VIP servers are faster 68 00:05:45,740 --> 00:05:46,490 than the other. 69 00:05:46,490 --> 00:05:48,370 Regular servers are slower. 70 00:05:48,380 --> 00:05:49,670 So that's the difference. 71 00:05:50,120 --> 00:05:52,580 It really doesn't matter what I choose over here. 72 00:05:52,700 --> 00:05:55,310 I'm going to go for this, OK? 73 00:05:55,640 --> 00:06:01,280 And I'm going to say download via VPN and let's see. 74 00:06:01,310 --> 00:06:02,030 Yeah, here you go. 75 00:06:02,030 --> 00:06:02,660 It starts. 76 00:06:02,900 --> 00:06:04,370 So it stays until 7pm. 77 00:06:04,370 --> 00:06:05,360 That all weepin. 78 00:06:05,510 --> 00:06:07,520 OK, I'm going to save this. 79 00:06:08,300 --> 00:06:11,390 So it's saved under the downloads folder. 80 00:06:11,390 --> 00:06:19,010 I believe all I got to do is just come over here and go into the downloads and find your VPN files. 81 00:06:19,130 --> 00:06:23,290 Let me grab that so I'll tell them that a VPN. 82 00:06:23,600 --> 00:06:24,310 Here you go. 83 00:06:24,350 --> 00:06:31,340 This is the file that I'm searching for and now I can run open VPN comment in order to connect. 84 00:06:31,640 --> 00:06:37,520 We had this VPN, so if I do this it will be just executed. 85 00:06:38,120 --> 00:06:40,070 And here you go. 86 00:06:40,100 --> 00:06:41,840 I believe we are OK. 87 00:06:41,840 --> 00:06:42,140 Yep. 88 00:06:42,140 --> 00:06:44,120 Initialization sequence completed. 89 00:06:44,420 --> 00:06:47,310 We are OK now we find out if config over here. 90 00:06:47,660 --> 00:06:48,320 Here you go. 91 00:06:48,320 --> 00:06:50,420 I have to tell zero one more time. 92 00:06:50,540 --> 00:06:53,330 So this is my IP related to hack the box. 93 00:06:53,510 --> 00:06:56,630 So if you see this now you're good to go. 94 00:06:57,270 --> 00:07:01,970 Now what we are going to do, we're going to search for a machine, OK? 95 00:07:01,970 --> 00:07:04,100 We can just search for it in the search box. 96 00:07:04,370 --> 00:07:07,070 And the machine that we are looking for is the devil. 97 00:07:07,370 --> 00:07:10,310 And it's about like the DVLA. 98 00:07:10,610 --> 00:07:11,780 OK, deal. 99 00:07:12,200 --> 00:07:14,810 So why we're searching for this DVO. 100 00:07:15,230 --> 00:07:21,680 If I click on that, you will see the reason because this machine is about windows. 101 00:07:21,680 --> 00:07:27,590 This is a Windows operating system machine and we're going to hack into it and we're going to practice 102 00:07:27,590 --> 00:07:29,510 a lot of privilege, escalation of it. 103 00:07:29,960 --> 00:07:35,060 So this has a lot of privilege escalation techniques that are embedded inside of it. 104 00:07:35,390 --> 00:07:42,410 I don't know if that's the reason why they created this for practicing privileged escalation. 105 00:07:42,680 --> 00:07:49,910 But when I saw this, I have seen that it has a lot of vulnerabilities for privilege escalation. 106 00:07:49,910 --> 00:07:53,060 So that's why I have chosen this one. 107 00:07:53,730 --> 00:08:02,030 OK, so let me rephrase this and see if we can actually see the details of the devil, OK? 108 00:08:02,030 --> 00:08:04,250 It's a little bit slow right now. 109 00:08:04,580 --> 00:08:07,160 I don't know if that's the case for you, but here you go. 110 00:08:07,160 --> 00:08:08,900 Now we see the devil over here. 111 00:08:09,140 --> 00:08:10,310 It says easy. 112 00:08:10,550 --> 00:08:12,170 It's easy to hack in. 113 00:08:12,200 --> 00:08:15,260 And we're going to solve this with the next lecture.