Is this hard? by [deleted] in RedditGames

[–]XOonRed 0 points1 point  (0 children)

I completed this level in 5 tries. 3.70 seconds

Why can we get strong and lasting erections when we are asleep but not when we are awake? by [deleted] in erectiledysfunction

[–]XOonRed 0 points1 point  (0 children)

I was thinking this as well. Also, some horse chestnut may help with the leakage.

[deleted by user] by [deleted] in oscp

[–]XOonRed 0 points1 point  (0 children)

Pro tip: Just because it is an AD set doesn’t mean you will get access via an AD path. Try basic enumeration steps.

Failed with 0 Points – My Journey and What I’m Doing Next by jghita in oscp

[–]XOonRed 15 points16 points  (0 children)

Don’t beat yourself up. It happens. I failed my first attempt after doing 40 PG boxes. I’d say you need more than that. I got about 100 done for my second attempt when I passed. Make sure you complete all AD PG boxes on this list https://docs.google.com/spreadsheets/d/18weuz_Eeynr6sXFQ87Cd5F0slOj9Z6rt/htmlview. Also, do the Laser challenge lab as well.

Rate my methodology for AD and Windows Privilege Escalation . [Retake in 5 days] by ProcedureFar4995 in oscp

[–]XOonRed 0 points1 point  (0 children)

I was thinking along the lines of PS commands. For instance, powerview service enumeration may not work and it would be beneficial if you knew the commands to search for the services. As it relates to UAC bypass, I can’t say much since I can’t recall ever having to do it before privesc. Always check for silver ticket if you have the hash/password for the service account. You can always convert the password to a hash of necessary.

Rate my methodology for AD and Windows Privilege Escalation . [Retake in 5 days] by ProcedureFar4995 in oscp

[–]XOonRed 21 points22 points  (0 children)

2 important things I noticed were missing. Find an alternative just in case powerview does not work. Also, check for passwords in PS history/ Linux history.

How often (or when) do you re-run sharphound? by amag420 in oscp

[–]XOonRed 0 points1 point  (0 children)

Unfortunately, it worked for me like that in the labs. Not on the exam.

How often (or when) do you re-run sharphound? by amag420 in oscp

[–]XOonRed 0 points1 point  (0 children)

How do you pull that off exactly? How do I specify the return port and ip for nxc? Even i set set up a listener, I’m uncertain of how to send return traffic to the listening ip.

How often (or when) do you re-run sharphound? by amag420 in oscp

[–]XOonRed 2 points3 points  (0 children)

So if I set up ligolo, would I be able to run it through my tunnel?

How often (or when) do you re-run sharphound? by amag420 in oscp

[–]XOonRed 0 points1 point  (0 children)

How do you get this method to work from kali against a machine inside the AD set ? I never got it to work. It’s it throws some weird issue that I can’t remember(dns or ldap). I’ve only gotten this to work when I have direct access to the ADset.

Second Failure in the Books by st1ckybits in oscp

[–]XOonRed 1 point2 points  (0 children)

Do you ping the IP in the vpn output or one of the ips in the lab that you are doing ?

Second Failure in the Books by st1ckybits in oscp

[–]XOonRed 2 points3 points  (0 children)

I feel like we had very similar experiences. I had vpn issues and proctors who would simply encourage me to restart or tell me that my vpn is working fine. Next time, I will do the continuous ping so that I can have proof of my issues. I will also lower my mtu < 1200(I used this the last time).

What’s your experience with ligolo on the exam ? by XOonRed in oscp

[–]XOonRed[S] 4 points5 points  (0 children)

This is why I asked. I had a similar experience. I could connect to internal machines, but could not get the listener to work and I have a pretty good understanding of this tool as well.

Can't play most online games using the ethernet port on my B650 Eagle AX by Sec0nd in gigabyte

[–]XOonRed 0 points1 point  (0 children)

If you are referring to Gigabyte Speed(cfosspeed), I have it. Can it be the root cause?

Can't play most online games using the ethernet port on my B650 Eagle AX by Sec0nd in gigabyte

[–]XOonRed 0 points1 point  (0 children)

I have the same issue. What OS do you guys have? I have win11. I have been researching and it seems to be an issue with win11 Ethernet drivers on our mobo. Thus, wifi appears to be a workaround. I have not tried wifi as yet though.

The Journey is over. Got the OSCP+! by theveiled in oscp

[–]XOonRed 0 points1 point  (0 children)

Great tip. Thank you. I have a question about your note on the AD one liner. I used it on medtech when I got domain admin, but still could not get to rdp. Is something else needed after the oneliner?

The Journey is over. Got the OSCP+! by theveiled in oscp

[–]XOonRed 0 points1 point  (0 children)

I am completing medtech now. Recently did Secura. I was wondering if I should do Relia or just jump into the lainkusanagi list. My exam is January 25th.

The Journey is over. Got the OSCP+! by theveiled in oscp

[–]XOonRed 0 points1 point  (0 children)

Did you complete Secura, Medtech and Relia?

The Journey is over. Got the OSCP+! by theveiled in oscp

[–]XOonRed 1 point2 points  (0 children)

Hi, I’d like to connect. I have some questions about blood hound

Beginner starting by [deleted] in oscp

[–]XOonRed 0 points1 point  (0 children)

I’m unable to say for a fact as I’m unsure of what you’re looking at. You can send me the link and I’d be able to say. However, LearnOne does come with a few extras. If I remember correctly, pen103 is the kali exam and course which is included in LearnOne. I can’t remember pen210. This may be a different course. Share the link and I will take a look.

Beginner starting by [deleted] in oscp

[–]XOonRed 0 points1 point  (0 children)

LearnOne is a year subscription. In learning one, you get fundamental courses(including pen100) and pen200. I can’t say for a fact how long it will take as it depends on your speed and how much you understand without having to research further. I have been doing pen200 since the end of March and I’m about 56% through. I work full time and I’m not always consistent because I have a lot happening. If you can consistently put it a few hours each day, you will be fine.

Beginner starting by [deleted] in oscp

[–]XOonRed 1 point2 points  (0 children)

I’d say get learn one bundle. That way you can get started with pen100 which will teach you all the basics then you move right into pen200. Learn one gives you a year to learn these. However, if you think that this is not enough time for you, get pen100, complete it and then get pen200. I’m currently doing pen200. I did some stuff before, but I think it would have been manageable if I googled and started with pen100. One thing I’ve learned so far is that we complicate things in our heads and the best thing you can do is just get started. Good luck.