#ad-basic-enumeration

1 messages ยท Page 1 of 1 (latest)

sage jetty
#

๐Ÿฅณ

pallid hollow
#

2 rooms in 1 day! Is this heaven? or is it PT1 time? ๐Ÿ‘€

pallid hollow
golden mist
#

Mine started right away.

Try Ctrl and F5.

pallid hollow
#

It started right away too, I think 2 people resetted it after some time lol.

#

Ah dang it. The bug again.

#

All ports are filtered.

#

Not sure if I should ping staff or not, guess I'll wait.

stray aspen
#

Same! I guees I will try after work

round osprey
#

they reset room for the 3rd time already in 5 mins

pallid hollow
#

2 votes for reset is way too low.

round osprey
#

true

pallid hollow
#

Should be 5 like other AD rooms.

#

I don't want to be annoying and ping staff, we just have to wait.

#

But the room is undoable right now.

golden mist
#

Which subnet are you in?

#

All mine are open.

round osprey
#

not for long i guess

golden mist
#

You can have a maximum of 5.

pallid hollow
#

Can't people join and leave somehow?

golden mist
#

They can, but it would be too soon.

pallid hollow
#

I voted once for it to be reset, but my network has been reset twice. (Not sure how?)

#

Ports are still filtered anyways. Same problem that has happened with other machines.

#

lol I guessed the answer.

#

Not really hard but hey it's still something.

#

Also guessed this.

#

Looks like I'm gonna do the room without the machine.

sage jetty
#

Let me check the network settings.

pallid hollow
#

Sure, thanks!

sage jetty
#

There is an issue with network instances. We're investigating. ๐Ÿ™

pallid hollow
#

Keep us posted!

sage jetty
pallid hollow
sage jetty
pallid hollow
#

Yeah, that's what I did. I'll restart my AB.

#

The launch attackbox was greyed out before I joined anyways.

#

@sage jetty Works! Thank you!

rough solarBOT
#

Gave +1 Rep to @sage jetty (current: #17 - 545)

pallid hollow
#

Time to enjoy the new releases.

#

Well, it worked... for a second.

#

Someone reset the lab... again.

#

Not sure if people are resetting it or if it's resetting on its own.

sage jetty
#

We have removed the first instance of the Network now, it was the one with issues.

Important: If you were in this network instance, please rejoin the room and rejoin a new instance of the network. ๐Ÿ™

soft zephyr
pallid hollow
#

Thank you very much. A reset spam is indeed happening lol. I'm a victim of it.

#

Back to ports being filtered for me. I guess I'll just turn off my AB and leave the room. Will come back in 30 minutes.

soft zephyr
pallid hollow
#

Uh I left the room, but it did show the AB -> The second machine -> The DC with their respective IPs.

#

After joining again, that's what I see.

#

No diagram shows until I click start.

#

and when I do I see this:

soft zephyr
#

Can you go to your access page, choose the network VPN, hit regen, and just start the AB one more time?

pallid hollow
#

Ok! One sec.

soft zephyr
#

I think we locked resets for tonight. So no reset-mageddon

pallid hollow
#

Do I leave the room before regen?

soft zephyr
#

This one

#

Nope, don't leave the room

pallid hollow
#

Done, I'll launch the AB.

soft zephyr
# pallid hollow Do I leave the room before regen?

I want you to get the specific VPN profile for this new network instance you are in. For V2 networks, if you leave and rejoin, you have to regen your VPN profile else it won't connect you. At some point we will make that an automatic regen that will happen

soft zephyr
soft zephyr
pallid hollow
#

Do you want me to send a SS of all interfaces for ip a?

soft zephyr
pallid hollow
#

route -n

soft zephyr
#

Why do you have a tun0 and tun1? ๐Ÿค”

pallid hollow
soft zephyr
#

And if the ports are open then this is something else here? Cause means the workstation is active and responding to you? Not a routing issue?

#

Which task are you currently on? Cause I'm following from task 2 and seems to work for me?

pallid hollow
#

Task 3.

pallid hollow
#

Why would it change over the course of 2 minutes.

soft zephyr
sage jetty
pallid hollow
#

That is very odd. Same machine, same CMD same everything. 2 minutes apart.

#

Now it works.

#

I'll try SMB again.

pallid hollow
#

That's also weird.

soft zephyr
# pallid hollow That is very odd. Same machine, same CMD same everything. 2 minutes apart.

Mmm, I wonder if this has to do with UDP vs TCP VPNs. I had this issue in other networks in the past. But yeah, I think try and see how far you get? I think we eliminated a couple of things:

  • It isn't a host issue
  • It isn't a network instance issue
  • It isn't a VPN route or adapter issue

So that then leaves either VPN type, UPD vs TCP, or a host stability issue, which I highly doubt since we would have seen that in QA.

#

Just something else to confirm, you are not running the AttackBox and your VPN profile (on a different device) at the same time right? cause that will cause them to disconnect each other and cause stability issues?

pallid hollow
#

Maybe your VPN regeneration tip worked. Probably just some time for it to take over? IDK how it works in the backend of the website.

pallid hollow
soft zephyr
soft zephyr
pallid hollow
rough solarBOT
#

Gave +1 Rep to @soft zephyr (current: #32 - 309)

pallid hollow
#

AH, yes, finally. I always thought this method was lacking in the current AD course even though it's a very important method. I wish it was explained that it could have been done using nxc/crackmapexec which is way easier than scripting it like in the course. But overall this was a very nice (and long awaited) room!

@shut compass @inland orbit Good job guys! Thanks for the room.

pallid hollow
#

BTW what was the intended way for Which username is associated with RID 1634??
I found it using:

crystal sorrel
idle turtle
pallid hollow
tired lodge
coarse pagoda
tired lodge
round galleon
#

hey, my attackbox doesn't have route to 10.211.11.0

round galleon
#

i went to profile->access and generate vpn file for this room and after that the routing showed in the attackbox after restart of the vm

fervent thistle
#

ok only after downloading the configuration file to the attackbox and starting the vpn connection there, i got access to the network...

round galleon
#

i did it without vpn from the attackbox

fervent thistle
#

tried that too but wasn't successfull. Needed to vpn out of it... but thanks for the idea

barren kiln
#

my nmap scans arent scanning at all

torn grotto
# barren kiln

You can try other user advice, shut down first attackbox, regenerate your vpn from your profile (select correct profile), start the room (network) wait for it to start, then start the Attackbox (or connect using vpn from your own computer)

willow pawn
tawny birch
#

Hi, for password spraying, I tried the crackmapexec command for the last question, but I got this instead

astral hollow
gentle vault
#

just did all the previous ad enumeration tasks and everything appeared to be fine

graceful moth
#

I was able to do this room without issue having fun in setting up a wordlist and not checking to see if it had uppercase and lowercase passwords set and wondering why it was not working and finding out I had only set lowercase characters. Rookie mistake, but did finally pick up on it.

round osprey
#

Hello, are there any good alternatives to BloodHound? I have issues with uploading data to it; it is just stuck at 0%.

round osprey
idle turtle
#

That one is legacy edition

#

As far as I know, if you are using a data ingestor that only works on bhound community then it wonโ€™t work on legacy edition

I donโ€™t know of any better alternatives than bloodhound

dense heron
#

Dose anyone know how to hack email

serene patio
#

Hi guys

median echo
#

yes

flat storm
#

Hello hackers, i need a lil help with setting up DNS for Breaching Active Directory... Can anyone help?

coarse pagoda
# flat storm no one?

You can edit /etc/resolv.conf to make the Domain Controller IP in the first entry, for example:

nameserver dc_ip
nameserver 1.1.1.1

if that didn't work, you can ask in #breaching-ad

pulsar canopy
tranquil knoll
#

Hey, I am trying to connect to the network for the AD: Basic Enumertion room. I have regenerated the network and ran the tryconnectme command on the attack box and I still cannot connect to the network. Help please.

fringe terrace
#

can someone help me with this 8.8.8.8 and 10.10.10.10? im a new user

timid grotto
summer iron
#

Has anyone here done MOC 20740, 20741, 20472?

round osprey
#

Hey all guys

cunning cradle
#

hello

empty relic
#

why can't I select the network vpn? is this a thm issue or do i need to have premium to download the vpn file? I thought this was a free room...

hazy snow
empty relic
#

yea

heavy mountain
#

anyone having this problem?

amber nebula
heavy mountain
amber nebula
heavy mountain
#

It freezes and if you refresh the page it just jumps into the machine no problem but right now it is active for about 3 min amd it just suddenly shuts the window amd says your machine is terminated.@amber nebula

amber nebula
heavy mountain
amber nebula
clear flare
#

i cannot start the network its like this for 10 minutes ๐Ÿ˜…

cinder crypt
#

I am facing the same problem as @clear flare
It stays like that for a long time and once I saw a message which went something like "an error occurred while trying to start the network". I had tried starting it multiple times yesterday but to no success. Can someone please help if possible. Thanks in advance.

rough solarBOT
#

Gave +1 Rep to @clear flare (current: #1231 - 5)

dusty mulch
#

Check if TAP adapter is enabled ncpa.cpl

#

@clear flare

clear flare
rough solarBOT
#

Gave +1 Rep to @dusty mulch (current: #873 - 8)

clear flare
#

and since the network don't starts for me i can't donwload the VPN file

if the network would boot up normal i would be able do Download the vpn file

or am i wrong here? ๐Ÿ˜„

dusty mulch
# clear flare hello ๐Ÿ˜„ thanks for the answer but i sitll can not start the network ๐Ÿ™ƒ i th...

If the VPN server shows Online then the network is actually running you dont need the lab machine to fully boot in order to download the VPN file You should be able to download the configuration file directly from the Networks tab as long as the server status says Online
If the download isnt working try clicking Regenerate wait a few seconds then refresh the page and try again. You could also test it in another browser just in case its a cache or extension issue

dusty mulch
clear flare
#

and that thing keeps loading all the time so i have no idea what i am missing here ๐Ÿ˜…

#

i am really looking forward to a solution i already made some AD Networks they are great to learn so i really want to finish this one also

dusty mulch
clear flare
rough solarBOT
#

Gave +1 Rep to @dusty mulch (current: #417 - 20)