#pt1

1 messages Β· Page 5 of 1

latent slate
#

I was looking for instant response

#

@humble minnow

#

@tall crown

#

no response -.-

#

@ebon creek is it possible to get a quick response?

flint pond
#

Is there any restricted tools on this cert? Like sqlmap or chatgpt?

grizzled torrent
ebon creek
glossy gulch
#

well... I got 730 points (I didn't pass) but... here says I got a free retake in 2d 1h 23m 37s can I do it in 5 days? my exam voucher expires in 5 days btw

grizzled torrent
lime fulcrumBOT
#

Gave +1 Rep to @grizzled torrent (current: #288 - 30)

north plank
#

Has anybody any links / resources for web application testing methodology that would help with exam.The rooms / path had lots of individual vulnerabilities but little of an actually methodology / path for testing

keen sleet
#

PT1 Channel Rules

These guidelines have been established to provide clarity for everyone in this channel. It also serves as a central hub for the most commonly asked questions.

Discussions

Discussing exam specifics is strictly prohibited
This includes (but is not limited to): vulnerabilities, techniques used in the exam, and the names of any vulnerable software on the machines.

Discussing the exam during your attempt is strictly prohibited
This includes (but is not limited to): asking for help or hints, or commenting on the difficulty of the exam (e.g., saying it is easy, hard, etc.). Such comments may indirectly invite others who have already passed the exam to contact you privately and provide hints, which violates exam integrity.

If you believe your exam environment is bugged, you may discuss it here - without challenge specifics.
Only mention the exam section and the issue you are experiencing. Please note that it is unlikely anyone here will be able to resolve the problem. For official assistance, contact: support@tryhackme.com

Requests

Manual Review Requests
You may request a manual review of your exam results by contacting support@tryhackme.com. Please note: this service is not available through this channel.

Requesting help from Staff & Moderators
Do not ping moderators or staff members in this channel for direct assistance. They are unable to provide support here. All formal requests must go through support via email.

Connectivity Issues Support
If you are experiencing connectivity issues, first ensure you have strictly followed the Rules of Engagement (RoE). Failure to respect the RoE is the most common reason for network crashes. Support will not assist you if the issue is caused by violating or overlooking the RoE. If you believe you have adhered to the RoE, please follow [these steps](#pt1 message).

Common Misconceptions

AI giving 0 points on flags
The AI does not grade flags. It only evaluates your written report; CVSS scores, Vulnerability IDs, and flag values are all hardcoded matches and must match exactly. If you did not receive points, it means your submission was incorrect - most often due to a typo or an extra/missing character in the flag.

Any vulnerability you find will give you points
This is incorrect, especially for the web section - context is very important: For each of the vulnerabilities you find, we will score identification, classification, proof of exploitation, and reporting separately. BUT, if a vulnerability has no flag behind it, you will not receive points, even if your exploitation is correct. If a vulnerability has a flag but you could not retrieve it (e.g., you executed an XSS but not the correct type needed to capture the flag), you will receive partial points. Basically, only vulnerabilities with flags behind them are scored for points.

flint pond
#

Are the machine difficulty levels similar to the practice ones like ledger and reset

#

Also nowhere does it say but is this just going to be 3 ctfs?

grizzled torrent
grizzled torrent
#

But netsec and AD parts are quite easy if have done some THM boot2root machines before

olive bone
#

hey guys im facing an issue on doing PT1

#

on ID verification its showing "The SDK token provided in this verification process has expired."

#

i have tried various things like switching browser, trying verification from phone and did log out and log in but still facing it. Can someone help me please?

#

@plush vector sir can you look onto it please?

white geode
#

Could someone confirm if this is normal
AD - DC directly accessible and has only one open port

ebon creek
gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

agile plover
visual hazel
#

it is nonsense waiting one hour to reset the machines if the machines are not online... NotLikeThis

strange marlin
#

Hi guys, I have a question. I passed the exam with a score of 770, and I still have a retake attempt remaining. If I use that retake and fail, my previous passing status won't be affected, right? And if I manage to get a higher score in the retake, will it update my previous score?

errant zephyr
#

i had a error when attempting the exam. why?
"Your session has expired. The SDK token provided in this verification process has expired. Please go back and try again."

ebon creek
gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

tired ether
#

So....I got 8/10 flags. 4/4 on network, 2/2 on AD, 2/4 on Web App.

Made a very detailed report.

Still failed. What a terrible experience, if I didn't have the free voucher I wouldn't touch this with a ten foot pole.

Absolutely no help from support, since last 2 days, during the exam. I mailed them asking about something specific, that I wasn't sure if I'm supposed to include in the report, could have saved some points if they had replied. AI grader just made up some reasons for deducting marks from my report, somethings that I already implemented, others that don't even make sense.

plush vector
flint pond
#

I use mostly screenshots in the report tho did u do the same?

tired ether
flint pond
#

What if the screenshots r in my pdf?

#

Is my report in pdf format atleast

tired ether
#

The exam portal provides the reporting section. There are text fields where you enter what you want to write. You cannot upload images, pdfs or anything else.

flint pond
#

strange decision certainly thanks for the heads up

tired ether
# plush vector Unfortunately, we are quite backlogged atm due to being short staffed and we wil...

Thank you for the reply. But don't you think its slightly unfair to the people taking the exam? I don't think everyone would be aware that all the employees are based in UK, and they would get no responses during the public holidays. I'm pretty sure many of the students would have chosen to delay starting their test if they knew about that.

Anyways, I'll go for the manual review and see how it goes.

lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #56 - 181)

vale granite
#

if you got all that

tired ether
# vale granite how you failed?

Yeah I'm wondering the same thing. Turns out people consistently fail after getting 8/10 or even 9/10 flags.

Some of them only pass after requesting a manual review, which in my opinion just points to the fact that there are severe issues with the AI grader. That coupled with the limitations of there being no option to upload screenshots, or markdown for code blocks.....and I don't even know if I want to put myself through this misery again.

plush vector
vale granite
tired ether
tired ether
vale granite
#

i was thinking about taking this exam

#

now i am not sure

vale granite
tired ether
lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #55 - 182)

tired ether
# vale granite take it even if you fail you ll still learn sth new

maybe let's see. I have certs like eJPT and PNPT, and few others.... so compared to PNPT for example, the reporting section was just not up to the mark for me, it seems like a way to speed up the certification process in terms of numbers, without actually wanting to invest the time and effort it takes from THM's side.

in PNPT for example, we have to make a professional report, a pdf with screenshots and right format, which is reviewed by a real person, and then have to make a live debrief in front of one of their staff members. That was a very realistic experience and taught me a lot on where to focus, how to write the report, how to present, etc.

north plank
#

@tired ether same situation as you. Failed yesterday 8 flags
not sure if I will bother with retaking. Lost a lot of points on reporting. An example of a full report would have helped

tired ether
#

another case

tired ether
tired ether
vale granite
#

how long have you prepared for it ? just asking so i know how much should i prepare for it and how did you learn how to write a report

north plank
lime fulcrumBOT
#

Gave +1 Rep to @tired ether (current: #3108 - 1)

tired ether
# vale granite how long have you prepared for it ? just asking so i know how much should i prep...

It really depends on your background, as I mentioend I have epjpt, pnpt and working on oscp. So network and AD part were relatively doable for me.

For the exam direclty, I prepared for a few weeks, but my practice for oscp definitely helped.

For the web app part, you should take better people's advice then me. It wasn't my strongest suit but I tried to prepare from their official learning path (which is not nearly enough, sorry to say) so maybe you can ask people who passed for advice. Good luck.

vale granite
vale granite
keen sleet
#

It takes 2 brain cells to know that AI cannot grade flags, it's hardcoded string matches.

#

Plus calling himself "Ethical" hacker with ethical between quotation marks. Not trying to hate, just looks like this person is here to sound cool and not actually think before providing any feedback. Profile speaks for itself.

tired ether
# north plank thanks. Already have oscp and osep but wanted to see what was offered by tryhack...

Wow. OSCP and OSEP is impressive! I'm hoping to get oscp done in next month or so.

And yeah I totally agree about the web app portion. I have no idea what they were thinking in terms of difficulty level for a "junior" level cert. Even professional pentesters like Tyler Rambsey are finding it to be overly challenging: https://www.youtube.com/watch?v=3Jy0oC3kF_o

The probem is not just the diffculty level of course, its the lack of right training resources to prepare you for it. The least they could do is provide better prep material in their official learning path for the exam so that students are atleast mentally prepared for it

north plank
#

I personally underestimated what for an entry level cert what was required for reporting. Other certs required 50 to 100pages of reporting

tired ether
tired ether
# vale granite guy is a youtuber

Yeah, he has been a professional pentester in past, if you check his linkedin.

Anyway, I wasn't talking about just him. I just shared the video as a reference

tired ether
vale granite
tired ether
brave vault
#

I will retake tomorrow.Should I verify my ID again or not?

#

or I can start exam wwithout verify ID

brave vault
olive bone
#

expiration date is very near anything we can do about it ?

keen sleet
sterile axle
#

got two IPs in AD pentest exam.
Workstation is not pinging and unable to perform nmap scan.
Anyone ??

main jay
#

How can i get support, i cant check my identity for do the exam

#

I have expired token error

pliant bear
tulip mesa
#

Im having issues connecting to the vpn file for taking pt1

#

Any known issues that i should look for?

north plank
#

@stig check to see if your vm is in the same ip range as the exam ip. Had that problem on another (offsec) exam!

keen sleet
leaden steeple
#

Hi I need a clarification about my PT1 exam voucher expiry date On my account it shows "Expires on August 31, 2025", but in the email with the voucher it says "You have until August 30th to take the exam." Im from wroclaw poland, idk what exact last day I can start the exam with the voucher, and THM support isnt responding

main jay
#

Hi, anyone can help me? i am doing PT1 examn and i cant connect with the AttackBox, i try to reset, regenerate VPN, change VPN server, but it doesnt works

vale granite
#

it lasts 2 days (48 hours)

#

sa actually before august 30 you must start it

latent slate
#

i'm having issue on my exam, anyone there to help?

#

@ebon creek

#

@keen sleet

#

@humble minnow

errant plinth
errant plinth
ebon creek
gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

latent slate
ebon creek
#

Hey watch you language please

ebon creek
latent slate
#

@floral yarrow

flint pond
#

It’s saying SDK token provided in the verification process has expired when I try to check in

latent slate
#

but can i get help now?

#

can i DM you @ebon creek

flint pond
ebon creek
gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

latent slate
latent slate
ebon creek
flint pond
#

whats the response time like for the email?

flint pond
#

should i go do other shit?

flint pond
#

damn i was kinda expecting to start the exam will they answer within the hour

ebon creek
#

You have the support email below

gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

flint pond
#

is there anyway i can start these r the only 2 days i can take it before my voucher expires

olive bone
#

Im still facing that SDK session issue on ID verification can anyone help??

errant plinth
#

They will help you

olive bone
#

i already did that 22 hours ago

#

no help yet

errant plinth
#

πŸ™

#

I'm waiting also for their response , I got an automatic response

olive bone
#

yeah same. Whats the issue you facing?

errant plinth
#

Same Expired SDK Token

flint pond
olive bone
errant plinth
olive bone
#

should i ping some staff? Maybe they can help since lots of us are facing the same issye

#

issue*

errant plinth
#

Do they will give us more time to be able to start the exam ?

olive bone
#

i dont think so...

flint pond
errant plinth
olive bone
#

@heavy cape Hi sir, can you please look onto the SDK session expire token issue. Many of us are facing it and i havent got any response to my mail which i mailed to support@tryhackme.com 22 hours earlier. Only 2-3 days are left otherwise the voucher will expire.

#

Please look onto it if possible.

#

Sorry for pinging i dont even know what to do anymore

heavy cape
lime fulcrumBOT
#

Gave +1 Rep to @olive bone (current: #3109 - 1)

keen sleet
#

Also, as per rules avoid pinging staff and mods and go through the email support. A lot of other people are also waiting and giving shortcuts just because you're spam pinging everyone is unfair.

#

Rules are in the pinned message and they will be enforced.

heavy comet
#

I am also having the SDK session token expired issue. I have opened a support ticket as well. I don't mind waiting for support but it would be nice if they could extend the time before voucher expires because of this issue :/

keen sleet
#

You're definitely not responsible for the multiple problems the exam has, but as a general (and logic) rule of thumb, it is always a bad idea to take an exam last second.

heavy comet
#

That's fair, was just trying to be prepared as possible but I should have tried earlier since we get a free retake anyway.

plush vector
#

For everyone having a verification issue. Please can you send me your username, can be either here or DM πŸ™‚

plush vector
#

Please check again. May need to refresh your tab

heavy comet
lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #53 - 183)

pliant bear
plush vector
errant plinth
#

It worked thanks πŸ™‚

glossy gulch
dark violet
#

hi, i have a question about PT1 Voucher, it expires on 31st, my question is if it's okay to start the retake on 31st August, and if I do, will i get to finish the exam since it will be past the expiration date?

vagrant lynx
#

Who know THM 31 August might be few hr ahead of your timezone.

#

I would not plan the exam at the last day.

prime reef
#

Any tips for the web section before starting the exam

rare ice
knotty rune
#

Using the attack box during the exam and in the last 90 minutes fell over 6 times, forcing me to restart it and set it up again. Anyone else having the same issue?

knotty rune
keen sleet
karmic bay
autumn gulch
#

i buy PT1 , how i start learning

keen sleet
#

Problems are gonna be everywhere, we need to learn to adapt.

keen sleet
karmic bay
#

Also yes problems exist, but if you're paying a fair ammount of money for this certification, you'd expect that the resources provided to you would at least work πŸ€·β€β™‚οΈ

keen sleet
#

Welcome to real life, this happens everywhere.

#

Β―_(ツ)_/Β―

karmic bay
#

You are paying money for a product

keen sleet
#

Personally always have backup plans, but hey, I guess not everyone thinks like that.

vapid yew
#

Hello, i don't know if I'm in the good Chanel. I Just started the pt1 exam, when i first go to identity verication, it says "session expired". I try to Logout, but same error

north plank
#

Not wishing to upset anybody, but i worry about some people passing the exam, somehow get a job in the field and being allowed on a customers network. Probably 70% of the job is problem solving and if its a technical question that you can't fix knowing how to ask the question detailing what you have tried before asking

vapid yew
lime fulcrumBOT
#

Gave +1 Rep to @floral yarrow (current: #6 - 1757)

snow mango
keen sleet
tired grove
#

Wait the reset is 3 days after the first try? So if I do it today and finish on the 31st (my cert expires on that day) I can’t retake the exam?

#

?

keen sleet
#

You probably won't have the time.

woeful escarp
# tired ether Thank you for the reply. But don't you think its slightly unfair to the people t...

This 100%. I agree that it is unfair to provide a platform for the exam that's 24/7/365 but THM's support for it is only on Mon-Fri 9-5 excluding holidays. This might be in a "beta/test" phase but should be reconsidered to match support availability with exam availability in the future. If nothing will be done about it, lock the exam platform to Mon-Fri 9-5 UK time that way the test timing matches the support availability. My 2 cents.

autumn cobalt
#

I saw people requesting role if they pass..may I know what is that

tired grove
#

How long does the ID verification lasts for??

tired grove
#

@keen sleet in the reporting do we provide the commands we used or just in theory

#

like description only

#

Anyone plz let me know

stark ginkgo
#

My voucher expires today. If I don't pass the exam today can I use the free retake later? Or should I use the retake within the voucher expiry time?

main jay
#

I get certification this morning, very good exam!

gritty path
#

@main jay hello bro, congrats on attaining that cert. I'm truly happy for you. Any advice for new takers? You know, where to focus on or anything like that?

ebon creek
lime fulcrumBOT
#

βž• Gave the role PT1 to sxmpl3dev

main jay
lime fulcrumBOT
#

Gave +1 Rep to @ebon creek (current: #1 - 5889)

main jay
#

If u stuck on X part, go to other part..

torpid berry
#

Tbh I don't think the learning path by itself is enough (except for AD, those rooms are excellent). But make sure to do all the recommended challenges, that should indicate readiness for the exam

mild wren
#

if I were to take the exam on aug 31 do I have the 48 hours up until sept 2? or I only have the whole day of 31 to complete the exam? since exam voucher ends on sept 1

keen sleet
#

Β―_(ツ)_/Β―

bleak latch
#

hey is there any mod i can talk with regarding my score, i got a complete 0 for a vulnerability that i had found

#

and my AD flag despite being correct got invalidated

bleak latch
gritty lanternBOT
kind moth
#

I failed my Pt1 twice

There are too many gliches in the exam πŸ₯²

#

Even after capturing 8 flags out of 10. AI failed me.

sullen hatch
#

I see each one of network, ad and web sections have a "submit report" option. Can I submit them separately as well or one submit is for everything?

ebon creek
frank ledge
#

hi anyone can support me I am taking the exam and the targets are inaccessible

#

my time is running reset is 45 min

frank ledge
#

@normal wadi

ember beacon
#

One of the weirdest bug I have ever encountered. Upon submitting the final section which is web section. I made sure it’s that specific vulnerability category selected. Upon Final submitting I failed because somehow that specific vulnerability was changed. and I failed because of 15 points difference. Immediately shadowplay it. And Yes it is bug

#

For such cases, make sure to have your shadowplay active for final submission.Hopefully, the support email responds fast

round wagon
#

In fact, many people have said that their flags were not scored. The reason is unknown, but I think there may be a problem with the scoring system or the UI.
I also failed the first exam because one flag was not scored. I requested manual review, but I haven't received a reply for over 3 weeks. It was too late, so I took the exam again and passed.

ember beacon
keen sleet
keen sleet
#

No discussing the exam.

lone crag
#

Sorry.

bleak latch
#

how long does support usually take to reply?, i failed the exam with 9 flags, where the AD WRK flag got marked as 0 and a whole vulnerabiltiy got 0/95

#

faild by 25 points, stressing so much rn because it was my retake

keen sleet
#

The waiting time is 1-5 days for regular answers and up to 2 weeks for manual PT1 review.

bleak latch
#

I had compromised DC as well with DC flag so it doesn't make sense that I wouldn't get the WRK, waiting for that manual review now

junior drum
#

SO, after rambling and all i'm taking the retake for PT1, after having failed because of the vpn. Generated a new vpn connection, starting the exam and... vpn connection not working. Seriously???

north plank
#

mine failed after 50 minutes, had to regen and reboot kali box - working fine now

warm sapphire
#

Hey @keen sleet @ebon creek spoiler here

junior drum
#

email sent, and it says to ask on discord so is any mod around to help please?

#

it's the second time, at some point can this be adressed?

#

or any staff?

#

or any random user that had the same issue and solutioned it?

floral yarrow
junior drum
#

at this point anything that'll work, a sacrifice of some kind? a prayer to an old god?

floral yarrow
#

@plush vector Can you support here please?

floral yarrow
wraith wharf
#

anyone attempting PT1 here?

junior drum
#

trying to connect to vpn ye's

junior drum
lime fulcrumBOT
#

Gave +1 Rep to @floral yarrow (current: #6 - 1765)

floral yarrow
junior drum
#

nah it's fine, i've already been failed on the last exam, lost 14hours because of this same error whereas i had done almost 70% of the exam so nop i'm really over it now. It was a struggle to have a ressemblance of support last time, ithought it fixed for this session but there's definitely the same issues.

brave vault
#

can give me PT1 role @keen sleet

junior drum
#

I find it really disturbing that you managed to roll an exam like this without a proper working environment, that might be just a hiccup for sure, but the amount of complaints here is insane. Everyday there's an issue with PT1

#

I'm not gonna give it another go to find myself in front of a wall on sunday again with the ending line too near yet far because something does not work on your side

#

thanks again, but i'm done and over it

#

i would've prefered failing because a lack of knowledge than technical issues and no one to answer to them or with a days delay

floral yarrow
#

I'm incredibly sorry that you haven't had a great experience within PT1, I've forwarded your feedback to our team and I'll look to getting your complaints addressed ASAP.

keen sleet
brave vault
sweet jay
#

What should i take pt1 or ejpt?

trim basalt
#

I won’t be kicked out of the exam if my voucher’s expiry date hits while I’m taking it, will I?

karmic bay
#

Shouldn't be

trim basalt
#

@karmic bay thank you!

lime fulcrumBOT
#

Gave +1 Rep to @karmic bay (current: #14 - 641)

regal turret
#

#verify

gritty lanternBOT
grizzled torrent
#

well that was not what I was looking for

gritty lanternBOT
kind moth
bleak latch
olive bone
#

Hello

#

the items are unaccessible my exam is running.

#

its been around 1 hour and im not able to access any item.

#

can someone help?

karmic bay
#

Unfortunately you can only contact support

olive bone
#

@karmic bay bro their responses are very slow i dont think they will reply back on time or when i would have enough time to complete the exam

bleak latch
#

What do u mean by items?

olive bone
#

trybankme

#

is not accessible

keen sleet
#

Check the pinned message, there's no support through this channel.

#

A lot of people are waiting, you can't skip the line.

olive bone
#

@keen sleet can you please tell me what should i do then? My exam is running

#

one hour is already over.

keen sleet
#

You wait like everyone else did.

olive bone
#

or do i mail them?

keen sleet
#

Nope, you mail them. However it's the week-end, doubt you'll get an answer before monday unless someone is working overtime.

olive bone
#

@keen sleet this is the last time and i think voucher will expire after that. Will tryhackme increase time for voucher or will do something about it ?

#

what should i do ? i m really worried about it

bleak latch
#

Are u on attack box?

keen sleet
#

Usually they do it if it's their fault.

bleak latch
#

Go to tryhackme profile > access and check if ur connected to the pt1-network

#

If it'd not then terminate and try launching the attackbox again

olive bone
bleak latch
#
  • use tryconnectme
#

When asked to specify the ip ovpn,type pt1-network-4 or whatever it showed in the access page

karmic bay
maiden rain
#

Hi, i have a question regarding the PT1 exam. i have a voucher witch expires on 31.8.2025. what if i start the exam 31.8, do i have still the 48 hours to complete with the exam, or is the access then revoked after this time frame? thanks your your help

radiant shell
#

hello there is there any admin online right now I want to ask about my attempt for pt1 it is saying that it will expire on AUG 31 so can I start my exam on the same date (last date) will the machine will be up for 48 hrs or should I start today itself?

maiden rain
radiant shell
maiden rain
#

thats also my question. hope that i can start on sunday and then have the time afterwarts πŸ˜„ then i can do it in my work time πŸ™‚

radiant shell
#

same dude and best of luck for your exam

karmic bay
#

@keen sleet perhaps its worth adding this to the pinned faq

#

not sure why it's such a common question

maiden rain
lime fulcrumBOT
#

Gave +1 Rep to @radiant shell (current: #3112 - 1)

karmic bay
#

you can start your exam at any point in your access

#

once the 48hrs has started, thats what you get

keen sleet
maiden rain
radiant shell
#

so is there any admin around I checked the FAQ but there is no clue about it

karmic bay
#

yes

#

the answer to your question is that yes you can take it at the very last minute

radiant shell
#

Awesome

#

I can sleep now thanks everyone

maiden rain
#

sounds good, then i can take care of my kids this weekend πŸ˜„ and start then πŸ™‚ Thanks @karmic bay

lime fulcrumBOT
#

Gave +1 Rep to @karmic bay (current: #14 - 642)

flint pond
#

How do I put in my exam for manual review

bleak latch
flint pond
bleak latch
#

What actually happened in your case though?

flint pond
# bleak latch Same 😭

Am stupid and suck at reporting I guess they didn’t like a lot of my cvss and one of my vulnerability classification

heavy comet
#

For some reason the exam gave me a zero for every flag I submitted lol

torpid berry
#

If an otherwise-exploitable service appears to be broken (I can see the stacktraces), should I assume that's intended, or keep resetting the environment and hope for the best?

errant plinth
#

Guys i have a question about the second attemp , is it will be expired also 31 aug ?
My first attempt will end soon , I got 3 flags only due to the environmet i reset it every hour πŸ™ and to have the second attemp you have to wait 48 hours
So i ask about the second attempt expire date

lone crag
#

I have tried harder. Second attempt, 815 points. 9 flags.

keen sleet
white geode
#

Hello TryHackMe Team,

I am experiencing a recurring issue during the PT1 exam.

Web Section: I am able to identify the vulnerabilities and send payloads (XSS, SQL Injection, Mass Assignment), but I am not receiving the corresponding flags.

Active Directory Section: The domain controller only has a single port open (port 53) after multiple analyses and verifications, which prevents any exploitation and progression in this section.

This same issue caused my failure during my first attempt, and it is happening again. I am concerned that this may prevent me from passing the exam once more.

Could you please let me know if this is a known technical issue or if there is a specific procedure I should follow to resolve it?

Thank you in advance for your assistance.

olive bone
#

hello team,
i wanted to ask that around 12 hours have passed and trybankme isnt accessible yet i have tried everything and i also mailed to support@tryhackme.com. Should i just wait for their response?

kindred oasis
#

patiently waiting for pt2

brave vault
#

I pass PT1 can u give mr role? @keen sleet

lime fulcrumBOT
#

That user already has that role

brave vault
#

thank you

midnight sonnet
brave vault
#

i have question have can I get physical cert?

#

i dont know how to sent request

viscid eagle
#

I don't understand why some instances in PT1 exam doesn't have flag

viscid eagle
#

Maybe THM team should seriously to consider about this problem

fickle gyro
vast shore
#

Can any one help me with Docuemtn Verification it shows Error : "Your session has expired

The SDK token provided in this verification process has expired. Please go back and try again."

Please help @normal wadi

olive bone
#

Please can someone help

#

Exam is running and trybankme is still inaccessible

#

I haven't got response from tryhackme support

bleak latch
#

Ur able to access other machines?

olive bone
vast shore
bleak latch
#

Ull have to wait for support to refresh it

olive bone
#

Yeah I faced it earlier too. Staff will fix it

vale granite
#

first you need to contact them

ebon creek
lime fulcrumBOT
#

Gave +1 Rep to @vast shore (current: #3112 - 1)

vale granite
#

thats good

olive bone
#

@ebon creek can you look into my issue as well? Thanks in advance

lime fulcrumBOT
#

Gave +1 Rep to @ebon creek (current: #1 - 5897)

olive bone
#

only 34 hours are left can someone help me with it i think its still possible to do the rooms if the issue gets fixed.

marsh aurora
#

I am also having issues logging in into the trybankmeNotLikeThis

left helm
#

Anyone test envromnet lagging? I keep losing connections to targets for like 30-60 seconds at a time.

plush vector
#

Have you tried resetting the network and wait for about 10 mins?

left helm
#

I will give it a try

#

Nope still happening

marsh aurora
left helm
#

I am doing a ping test to see how long I can access the target.

bold loom
left helm
#

haha Everyone decided to take the test right before it expired and their backend can't handle it.

marsh aurora
#

Hahaha

bold loom
#

not even enviroment even my machines feels bugged

#

lol

marsh aurora
#

I am going for a walk, I will try again when I come back. Honestly this is a bad experience for me

bold loom
#

same

left helm
#

Yeah this is unusable

bold loom
#

lets not give too much opinion maybe we get banned

#

hahahahahaha

#

still not responding

#

omg

#

still unresponsive

#

will someone look into it please

bold loom
bold loom
white geode
#

still not πŸ₯²

bold loom
#

i think i should just submit and chilll at this point lmao

#

why stress over it ; )

tired grove
#

Hey guys, I was womdering how partial credits really work. There are 2 web vulns that I am 100% sure of but couldnt exploit them. Will I be eligible for a partial credit?

bold loom
bold loom
#

i last time too submitted partial stuff i got 0 lol

tired grove
tired grove
#

Or any of the staff please enlighten us

white geode
# tired grove

I submitted the web with 0 flags and yet I was on vulnerabilities and I had a total of 66 points

tired grove
white geode
bold loom
#

i am feeling like lab rat of PT1 lmao

left helm
bold loom
left helm
#

Yeah so we are lab rats. It just sucks that the environment is this unstable.

bold loom
#

and cherry on top no1 assisting us now : D

grizzled torrent
plush vector
# tired grove

I believe it's only for a partial vuln. I'll double check on that

bold loom
#

@plush vectorcan you please look into the issue exam lab being unresponsive

#

its been more than 30mins now

plush vector
#

Yea I'm gonna see if I can get someone to look into it

bold loom
#

ok

#

someone ping me please. when exam labs work

ebon creek
#

@white geode @tired grove I'm not a staff member , I don't have access to machine configuration and I don't manually review exam reports , sorry but I can't help you with your issues , please use the official support channel on the email below

gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

left helm
#

Yeah I did that last weekend. They never got back to me.

#

Atleast last weekend the environment was usable.

bold loom
#

@left helmplease ping me if the labs works

left helm
#

This is too funny. I don't think it will let me submit another ticket because I currently have a ticket in for last weeks bug report.

#

I sent an email to see if that will help

bold loom
#

same

plush vector
#

@bold loom I can pick up your ticket if you let me know your username

plush vector
#

Ok they're in my queue. not too sure on ETA when someone can check but I will ping you when I get an update

keen sleet
brave vault
left helm
#

My co-worker is trying to take it too but with the AttachBox. Bless his soul.

olive bone
#

It's working and I have submitted 3 flags on web. Thanks a lot @plush vector

lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #52 - 184)

topaz lichen
#

I'm giving the exam right now and I just want to confirm that there are no errors or something right?

olive bone
#

To me it's working fine.

#

But yeah it can be buggy

topaz lichen
#

I can't seem to access the scope

olive bone
#

Which one?

#

If you talking about network and AD machine there's a option on top left click on it

topaz lichen
#

trybankme

olive bone
#

Regenerate VPN and try

topaz lichen
#

the problem is I'm getting errors with the vpn

topaz lichen
plush vector
#

@bold loom @left helm Are you on the VPN or attackbox?

topaz lichen
olive bone
#

Try with openvpn

#

Contact blackout he helped me I was having issues too

topaz lichen
topaz lichen
plush vector
#

Try regenerate your config file wait for 3 mins and try again

olive bone
#

Yeah I was having that too I regenerated and tried and it worked 😭😭

#

Sorry for spamming your dms @plush vector

#

It was fault from my side.

topaz lichen
#

Thanks a lot @olive bone

lime fulcrumBOT
#

Gave +1 Rep to @olive bone (current: #2046 - 2)

olive bone
#

It's working?

topaz lichen
#

Yeah it worked now

olive bone
#

Let's go

#

Good luck mate

topaz lichen
topaz lichen
olive bone
#

❀️

left helm
plush vector
#

Do they have a VM by any chance they could use the VPN on?

small talon
#

Hello there, I have found a bug on the network section which is not working because of server side issue. Whom should I approach?

#

I have already created a ticket and sent it. But exam is going on and I need a solution asap

left helm
small talon
#

@plush vector

left helm
#

I tried the regenerated and redownload the vpn file. Now I can't access any of the targets.

#

I am gonna give my who vm a reboot

small talon
#

@plush vector I cant go further if you dont solve this issue.

plush vector
plush vector
dreamy bobcat
#

Hi everyone, I have a question, I’m starting the exam today (August 30) at 8:00 AM. It says in the attempt that the exam deadline is August 31; does that mean that August 31 is included? Also, if I started the exam today at 8:00 AM, will it end on September 1 at 8:00 AM or on the 31st? Especially since the deadline stated August 31?

agile plover
#

So if you start on Aug. 31 8:00 AM, it should end Sep. 2 8:00 AM ideally since the exam is 48 hours

dreamy bobcat
#

Ok, thank you very much. My worry was that I would have less time to finish it.

agile plover
#

No worries mate, good luck on the exam πŸ‘

trim basalt
#

No one has had success with using the VPN & WSL, correct?

left helm
#

Mine seems to have worked after the regen, redownload, and reboot.

#

Thanks Blackout for the help.

plush vector
kind moth
#

Tryhackme needs more support guys πŸ₯²

#

Really Really slow service.

plush vector
kind moth
plush vector
#

When did you put the ticket it in?

kind moth
#

On Monday

kind moth
plush vector
#

OK, I'll get it raised but there is an approximately a 3 week wait for a manual review due to the amount of requests that have been raised

lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #52 - 185)

trim basalt
#

I am using the AttackBox. I just reset TryBankMe due to it not being accessible, however, I am still unable to access it. I was accessing it fine last night.

trim basalt
#

I have been having issues with it all yesterday, I could not connect to it through WSL or Kali. So I switched to the AttackBox due to it just working...that is, until now.

olive bone
#

@plush vector if having some minor issues will reset work?

raven swift
#

Hi could someone redirect me if this is the correct place to receive support?
I cant seem to reach the box at all since 2 hours ago. After a reset of the box, restart my kali and regenerate the vpn file. i could do a scan and see ports live. then when i continued it couldnt reach again.

Am abit panicked cos the counter is still ongoing

olive bone
#

Yeah happened with me too you using AB? @raven swift

raven swift
#

im using my own kali but saw the thread of people using attackbox

#

is this the workaround?

gritty lanternBOT
#

@raven swift

TryHackMe's Email

TryHackMe's support email address.

agile plover
#

Official PT1 support is through TryHackMe support email only

raven swift
#

thank you i will reach through support and look for a workaround for now

plush vector
plush vector
trim basalt
#

@plush vector I am about to be attempting this...just to be clear, are there any other steps that I need to do other than the regeneration of the config file?

plush vector
#

No, just regenerate the file for 3 mins and then download. I would highly recommend using your Kali VM rather than WSL

trim basalt
raven swift
raven swift
trim basalt
#

@plush vector Still nothing. I was able to connect to the subnet that the VPN is on (this in-range IP address is showing on my kali box, but I am still unable to hit the boxes and 10.10.10.10.

stable steeple
grizzled torrent
grizzled torrent
trim basalt
#

Just connected to the Attackbox and can now access the webapp

#

and 10.10.10.10 heh

agile plover
grizzled torrent
limpid pollen
#

Hi everyone, I was planning to start the exam just now but for verification its redirecting me to onfido website where it says:
"Your session has expired.The SDK token provided in this verification process has expired. Please go back and try again."
I have tried on mobile also and same issue.

tired grove
#

Is there a way I can appeal the exam?

tired grove
#

The Vuln ID is the flag right? I submitted one flag and i go a ZERO on it

grizzled torrent
tired grove
#

oooh

raven swift
grizzled torrent
# raven swift how long would support take to reach out? πŸ™ Have sent email to support and done...

Its the weekend so most likely that you're only going to get a response on Monday. (Unless they're working over the weekend due to the number of issues reported)

My personnel suggestion is that try some steps to see if you can fix it yourself.

  • Disconnect from all the VPN sessions (kill openvnpn), including attackbox instances
  • select the PT1 network and regenerate VPN config. Wait for few minutes and download the config
  • connect using the newly downloaded VPN config
  • Try to reach port 80 for the Webapp IP and see if it works
  • If not reset the PT1 env (Just the web section)
  • wait for the machines to reset
  • try to access the webapp once more

If none of these work try documenting everything you tried and email support so they can be sure if it was indeed a issue on their side.

raven swift
lime fulcrumBOT
#

Gave +1 Rep to @grizzled torrent (current: #281 - 31)

topaz lichen
#

Guys do the flags exist for all vulnerabilities?

#

or are there only 4 flags for only the 4 vulnerabilities (whatever they might be)

tired ether
#

Hello, I don't think I got any answer for my question last time, I would really appreciate if someone could help clarify this...

When I take the exam, for the report, do I have to include actual commands too? If so, how? Because as far as I know, there's only text input and no markdown...

tired ether
grizzled torrent
limpid pollen
plush vector
limpid pollen
lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #52 - 187)

dreamy bobcat
#

Hi guys, a question. If during the exam in the WEB section I find a vulnerability but don’t have the actual flag, can I put a fictitious flag in the report to have the vulnerability evaluated? Obviously, I won’t get the points for the flag, but do you think I could still get the points for the report?

marble jay
#

What is with this test I found half of them in no time and the other half I couldn't even understand what they wanted lol.This is definitely tougher than ejpt

keen sleet
#

Probably the web part right?

marble jay
#

Ya like 2/4 I found in 15min of starting than the other 2 I searched for like 15hrs and no clue .there was also one on network which I didn't understand and the second machine in AD

#

I found miss configs but they didn't lead to any flags on web

#

I don't know if this is a appropriate question to ask but are the flags distributed equally on all the machines?

vivid brook
#

Why am I encountering vulnerabilities on the website but the flag doesn't show up? Has anyone else had this issue? I've been trying to fix it for so long.

#

shitt

keen sleet
#

2 AD
4 NetSec
4 Web

marble jay
#

Like there are 2 machines on netsec is it like 2 flags on one and two on other?

olive bone
#

still need to find one

#

in network got inital access found some way to get system access but cant do it lol

fickle gyro
#

Hi guys. Is it normal that the verification of identity takes almost 1 hour? It is still loading... πŸ™

stuck jolt
keen sleet
warm sapphire
calm orbit
#

Just getting started, does the training path prep you enough to pass the cert or is additional training recommended ?

north plank
#

Totally convinced that one of the netsec machines is broken - last attempt so much easier

stuck jolt
winged perch
plush vector
#

We did a few months back for SAL1

mental oar
#

I'm going through the recommended learning materials & and I was curious.
How good should I feel about the recommended CTFs like Reset, Ledger, Billing, Rabbit store etc?

I find that while I did the pre security/cybersecurity 101/jr penetration tester paths beforehand, I feel like I hardly have the ability to easily beat the CTFs without any help or guide.
Because of this im quite worried on how I'd perform on the test.

warm sapphire
agile plover
mental oar
#

well this is massively relieving to hear.
tysm.

keen edge
#

I logged in tonight to begin the PT1, and my voucher is gone. It said I had until August 30th.

ember beacon
#

It suppose to end at the end of the of August 31th

#

Before submitting the exam make sure you double check and have a shadowplay on. In case, the website somehow wanted to change your answers or not accept your flags for some unknown reasons

#

Be mindful, you'll have 48 hours from the time you finish your first attempt not at the start of it to take the retake !

bleak latch
#

Anyone else refreshing mail box everyday to see if their result got manually checked? 😭😭😭 the wait is killing ms

bold loom
#

my user have privilege to do x thing i still cant lmao. the machines are weird in this lab
last lab machines was finely working

dreamy bobcat
#

Sorry for the repetition. If during the exam in the WEB section I find a vulnerability but don’t have the actual flag, can I put a fictitious flag in the report to have the vulnerability evaluated? Obviously, I won’t get the points for the flag, but do you think I could still get the points for the report?

bold loom
bold loom
dreamy bobcat
lime fulcrumBOT
#

Gave +1 Rep to @bold loom (current: #1546 - 3)

bold loom
dreamy bobcat
#

I agree!

fickle gyro
#

does anyone have issues with the vpn? I am using it and it cannot access the web πŸ™

agile needle
fickle gyro
#

I think I am going to ask for an extension of the date

#

It happened 10 hours and I wasn't able to do anything

olive bone
#

@ebon creek can we copy paste the request and response in attack details? or should we just summarize it ?

mild wren
#

it seems there's still issue with the vpn. filed a ticket last thursday and checked my mail it still says 'We'll pick up your ticket soon'

olive bone
dreamy bobcat
bold loom
agile needle
#

You can leave the flag part out if you are submitting…. You will get points for the report on it but partial…. It’s a gamble

dreamy bobcat
#

Ok, I'll let you know lol

left helm
#

For the web section, will the same vulnerability type elsewhere produce the same flag? Or a new flag? I found 4 flags and they are unique.

small talon
#

who had an issue with with webserver in network section?

#

with FastAPI?

#

I am stuck here since yesterday

dreamy bobcat
fair escarp
#

Hello Admin, I am currently taking PT1. Previously, the VPN was working fine, but for some reason, it suddenly stopped working. I've already tried restarting, and I also tried using the AttackBox, but it's still not working.

left helm
idle shadow
#

you should see multiple openvpn running

#

if yes, run sudo pkill -f openvpn

#

It works for me at least

#

hope it helped you

fair escarp
#

it still not work

idle shadow
#

Mine:
Reset machine -> regenerate new openvpn -> ps aux | grep openvpn -> sudo pkill -f openvpn
and it works.

idle shadow
fair escarp
#

oke let me try

agile needle
fair escarp
idle shadow
#

ahhh

#

you using attack box

#

Then ill just restart the attack box

fair escarp
#

okeh let me try to restart tjhe attack box

idle shadow
#

My bad not realising it is on attackbox

fair escarp
safe musk
# fair escarp btw it cannot regenerate the vpn haha

The attackbox simply pulls your VPN profile. So if regenerate your VPN profile, the attackbox will pull the latest one. The attackbox should also automatically run the VPN profile for you. If you are running it yourself on the attackbox most likely there is a conflict with the VPN profile running twice.

You can use ps aux | grep "pt1" and you should only see a single openvpn line. If you see multiple, your VPN profile is running more than once and thus de-authing you. Simplest solution is either kill all instance and run a single one or terminate the attackbox, regen your profile, and then restart the attackbox. The tryconnectme script on the attackbox just does these steps for you via cloud-init

safe musk
# dreamy bobcat In the web Section there is this paragraph: **"In the event that you have identi...

It has to be actual vulnerabilities with actual risk. The RoE should be getting an update this week to provide more details. But we get an insane amount of submissions about things like self-XSS or arbitrary file upload without any tangible impact.

Once you identify a vulnerability, you should automatically get the flag with it as well. The flag is there for when you exploit the issue. So when you show actual impact like reading another user's account or being able to cross-infect a different user's session. But that last exploitation step may still be difficult and hence we say that you can submit for potential partial points. But only if it is an actual vulnerability that has impact. If the issue cannot be exploited, and exploitation means that something User A does WILL affect User B, then you won't receive points for it.

fair escarp
#

Actually, even though I’ve already restarted the AttackBox, I still can’t access the network. Also, regenerating the VPN doesn’t work β€” it always shows a failure.

safe musk
fair escarp
lime fulcrumBOT
#

Gave +1 Rep to @safe musk (current: #34 - 326)

safe musk
fair escarp
#

i forgot, but i think around 11.30 AM +7

safe musk
bleak latch
fair escarp
#

in 5 hours and 30 minutes ago, it work for around 4 hours, an then stop working

sacred stratus
#

Hey everyone, I’m doing the PT1 exam right now but I’ve run into a problem. The network lab is showing as down and I can’t reach the machine at 10.200.150.152. My timer is still running, so I’m losing time.

Can someone from the team please help me out? Ideally, I’d need the lab access restored and some extra time added since I can’t progress at the moment. Thanks a lot!

safe musk
safe musk
lime fulcrumBOT
#

Gave +1 Rep to @fair escarp (current: #3115 - 1)

safe musk
#

Host is responding to pings and I was able to access it directly and via VPN:

64 bytes from 10.200.150.152: icmp_seq=1 ttl=64 time=0.363 ms```

nmap -p22 10.200.150.152 -Pn

Starting Nmap 7.60 ( https://nmap.org ) at 2025-08-31 09:43 UTC
Nmap scan report for ip-10-200-150-152.eu-west-1.compute.internal (10.200.150.152)
Host is up (0.0046s latency).

PORT STATE SERVICE
22/tcp open ssh

small talon
#

@safe musk can you look my issue as well?

fair escarp
lime fulcrumBOT
#

Gave +1 Rep to @safe musk (current: #34 - 327)

safe musk
safe musk
fair escarp
lime fulcrumBOT
#

Gave +1 Rep to @safe musk (current: #34 - 328)

idle shadow
glossy gulch
#

I've been stuck in web for about 8 hours!! I got almost all the network flags and I completed all the active directory

#

i think something might be bugged idk

safe musk
left helm
#

For about the first four hours of the test, the enivorment was unusable.

safe musk
# left helm Were the folks affected yesterday going to be given additional time? Blackout wa...

Some were, but turns out the network was working fine πŸ€·β€β™‚οΈ

"dealing with losing access to the targets every 100 seconds are so for about 1-2 mins" - Usually means one of two things:

  • Running two VPN profiles at the same time.
  • Enumeration and processes for infecting machines needs to be expanded on

For the first one, you need to check your network connectivity and what is actually happing. Like is the VPN connection die-ing and coming back? If so, either double VPN execution or the internet isn't stable enough for the VPN connecting.

The issue I battle with is I haven't ever been able to reproduce. When I test the VPN server, it remains stable. Have executed this for 48 hours at a time and no disconnects nor targets not reporting back. It isn't rocket science or magic in the background, things tend to work like they should unless there is an actual issue. And actual issue means it stays dead. Not "instable". But it is AWS. They don't just switch off machines for fun, neither do we. So incredibly hard when users tell us "something wrong" and we can't find anything wrong when we test it. The thing is either working or isn't, but we haven't been able to reproduce the "it struggles" event

lime fulcrumBOT
#

Gave +1 Rep to @safe musk (current: #34 - 329)

safe musk
alpine hemlock
#

@safe musk can you please check my ticket

safe musk
fair escarp
alpine hemlock
safe musk
safe musk
alpine hemlock
safe musk
# alpine hemlock V3cn4 Failing to be specific machines keeps disconnecting failing to connect lik...

Ran checks on all 5 hosts. All are reporting healthy and are reporting their flag values and working as expected.

If something keeps disconnecting, check your VPN log. If the VPN is disconnecting, it is either your internet stability or more likely that you are running 2 VPN profiles at the same time (remember the AttackBox counts as a VPN profile). Best is to regen the VPN profile to disconnect all other running VPNs. If it is an internet issue, AttackBox works better since then the latency sits in the browser and not the VPN connecting.

More resets of the network isn't going to help here as everything is working as expected.

alpine hemlock
lime fulcrumBOT
#

Gave +1 Rep to @safe musk (current: #34 - 330)

glossy gulch
#

I didn’t sleep in all night

dreamy bobcat
#

But if I performed two escalations on a machine, the first as a higher-privileged user and the second as administrator, which one should I report in the β€˜security issue’: the first or the second?

#

For example, if the first was due to a service and the second to a privilege, what should I do? Please, if there’s an admin around, I don’t want to lose points for this. It’s very ambiguous

hot mason
#

just completed my exam... its insane .😭

left helm
glossy gulch
glossy gulch
dreamy bobcat
#

I’m talking about the Network section. On the machine I found two flags: the breach flag and the escalation flag. To perform the escalation, I first went through an intermediate user and from there I escalated to administrator. Which one should I report as the escalation?

dreamy bobcat
#

I mean in the section where you indicate which privilege escalation I found and exploited. For example: Insecure Crontab/service, etc.

keen sleet
#

Usually the priv esc is direct: User from which you got initial access -> Admin

dreamy bobcat
#

Can I explain here at a high level what I did, or would that violate some policy?

#

Or is there someone here who might know?

keen sleet
#

You can DM me.

dreamy bobcat
#

Ok, Thanks!

glossy gulch
oblique crow
#

Hi, I’m currently taking the PT1 exam and experiencing technical issues. The attackbox keeps lagging or freezing, and I’m also unable to access the target website through it. Could you please help me resolve this?

dreamy bobcat
keen sleet
left helm
#

I would hope the AI has all the vulnerabilities recorded and any of them would count.

plush vector
keen sleet
lime fulcrumBOT
#

Gave +1 Rep to @plush vector (current: #52 - 190)

hot mason
keen sleet
#

@dreamy bobcat Worst case, request a manual review if it gives you 0 points for it.

dreamy bobcat
lime fulcrumBOT
#

Gave +1 Rep to @keen sleet (current: #29 - 374)

snow stone
#

Some mods online? From the beginning of the week I don't have any feedback on my request for manual review of the PT1 exam. Who do I need to contact in order for my request to be processed?

safe musk
# dreamy bobcat <@697878147332309156>

Hey, weekend support is slightly slower. You can DM me the details and I can check. Personally for me it would be what you did to perform the first escalation. But worse case submit ticket to support to manually review as well.

We are currently behind on manual reviews given other priorities for support on the exam, but should be clearing that backlog early this week

alpine hemlock
#

Finally exam over one network machine made me cry 😒
And I passed pt1 πŸŽ‰

keen sleet
#

This also applies to you @alpine hemlock.

alpine hemlock
#

Okay

safe musk
lime fulcrumBOT
#

βž• Gave the role PT1 to big_notation

midnight vale
#

Hello how can I get the role since I have already passed pt1?

midnight vale
#

ok

lime fulcrumBOT
#

βž• Gave the role PT1 to harshvardhan0394

keen sleet
keen sleet
midnight vale
#

thanks πŸ™‚

alpine hemlock
lime fulcrumBOT
#

Gave +1 Rep to @keen sleet (current: #29 - 375)

tulip mesa
#

Shouldnt we get a free retake if failed on the first attempt?

tepid crystal
#

Some of the web attacks are working for me in the exam but somehow I don't get any flag

#

Is it intended or could it be an issue with the network considering I am seeing similar messages in this chat

grizzled torrent
grizzled torrent
gentle mica
#

Just finished the exam, I failed but I was not half prepared like everyone else here it seems.. I also took it last minute cos of the free voucher.

#

my thoughts on it though especially for someone that doesn't have much experience is I learnt a lot. Take away the issue with the network and vpn I also had issues with and I would say it is a really well rounded certification for Juniors. Had to figure some things out on the spot, but I suck at web stuff; even more than I suck at net and AD cos atleast I got flags for net and AD and had a route mapped to finish those I documented if I did it again.

#

for web though I have a lot to work on it seems. Focusing too much on Netsec and AD these days though and so this will be something more to add in my to-do.

#

Grateful to the THM team for the free voucher and the opportunity to discover these flaws early in my career πŸ™ .

#

also, way harder than ejpt πŸ₯²

hardy sparrow
#

Hi im hard stuck in pt1 i have multiple vulns but 1 flag ac anone help me?

plush vector
topaz lichen
#

I'm so thankful ChatGPT is allowed to create reports. After hours my brain has been fried

olive bone
#

i just completed the exam glad that i got passed

#

got 799 points

#

@ebon creek i passed pt1 can i get badge for it ?

ebon creek
#

You have to verify first , follow instructions from the link below

gritty lanternBOT
olive bone
#

oh oki

#

letsgoo super happy that i passed

#

tht last AD flag really messed up my mind

ebon creek
olive bone
#

thanks a lot brother love you

#

@ebon creek verified

lime fulcrumBOT
#

βž• Gave the role PT1 to 0xminato.

olive bone
#

omg my level is low tho cuz i made new acc for thm PT1. Had another account with 0xMinato

#

well good luck guys whoever is attempting PT1

trim basalt
#

@olive bone I just failed...any resources that you would recommend?

olive bone
#

the linux privelege escalation it came from there only

#

focus on sudo priveleges/suid and whatever they tell in their room

#

same for windows

trim basalt
#

Yea, I def didn't have enough study time. Did a decent amount of studying, but mainly just wanted to give it a go b4 my voucher ran out.

#

@olive bone congrats on the pass btw!!

olive bone
#

oh yeah sorry that your voucher ran out

#

but yeah good luck with that and thanks a lot

torn anchor
#

Hello everyone, i just finished my attempt of the pt1 and i unfortunately failed. I got 7/10 flags and struggled the most in the web section (finding 1 flag only) can anyone recommend any extra learning i can do or challenge boxes so i can feel more comfortable or be able to find more flags in the next attempt? Im new here so would appreciate any help. Thanks

For reference: i completed the learning paths that are suggested for the pt1 in addition to most rooms suggested as well

olive bone
long siren
#

Hello, my vouch has expired for the cert. I thought I was allought to start the exam today for the last day, but it seems not. My vip subscription which you gave me with the giveaway it steels current there's no sense. Please help.

gritty temple
#

ive recently done eJPT , can i apply for free pt1 voucher? how?

plush vector
gritty temple
#

how can i contract them?

plush vector
deep mirage
#

Hey guys 20 hours to go and I have 9 flags with 1 web flag missing . Would 9 flags be sufficient considering I’m following pentests report standard from tryhackme . What you think ? This web part is melting my brain

left helm
#

Is anyone else having issues saving their report? Keep getting "Uh-oh! There was a problem, please try again later.

deep mirage
left helm
#

It looks like if your report sections are too long it wont save. I had to cut them down.

keen sleet
keen sleet
#

AI grades it. The more you have, the bigger the surface for mistakes.

topaz lichen
#

I fell asleep for a bit longer than what I would be comfortable telling others about

topaz lichen
keen sleet
#

Yeah finish AD first. You need in total at least 9 flags.

topaz lichen
#

Of course there would be mistakes in the report

keen sleet
#

Yes, 750/1000. A flag isn't 100 points.

topaz lichen
#

Mhm. I'm atleast reporting as I go along so I don't need to leave it for the end

keen sleet
#

100 points are the flag + cvss + vuln id + report for that section

topaz lichen
#

Yeah

heavy comet
long siren
#

try contacting with support

heavy comet
#

Yeah I have, had a separate issue anyway. I just figured we would be able to start until end of day 8/31. I did the same thing with SAL1 (not smart to take last second but still).

glossy gulch
#

I have all the network, all the AD and 3/4 on web

topaz lichen
#

I was stuck on AD for quite some time until I realized I was using more brain than was needed. I thought a bit stupidly and I instantly cracked it in like less than a min πŸ’€

keen sleet
topaz lichen
glossy gulch
#

I'm really tired xd I only took a lil nap of 3 hours

#

I didn't sleep since I started

topaz lichen
#

I drank 3 mugs of coffee then fell asleep for over 12 hours

keen sleet
glossy gulch
# topaz lichen How..

I'm a crazy man(? jk idk I think the anxiety to pass the exam was bigger than my fatigue

glossy gulch
snow stone
#

Also I didn't get an answer if they wanted the screenshots that I took to prove that I did it correctly, how it's going to be or anything at all.. like nothing from their side on my email

keen sleet
snow stone
#

I got that Monday was a holiday, but I still haven't received an answer on my request for a manual review.. it's been a week now..

#

Just some "we will look into it" would have been awesome to know they will get going, idk if it's 3 weeks then.. I'll wait as I'm sure in my exam, but the lack of reply is getting me crazy

plush vector
topaz lichen
#

by the way is someone else also facing the problem of the machine going down every 5 seconds?

white imp
#

Is there any support regarding an expired exam voucher? The date said "31 august 2025" i was expecting to be expired by the end of the day, yet it's the start of the day, in need of some clarification

keen sleet
#

Or else some people would get less or more time based on where they live.

#

Shouldn't have waited last minute. Ultimately try contacting support but I doubt they'd help. Maybe they'll be generous though you never know.

white imp
white imp
#

but let's see

vapid elk
#

anyone else with this bug too

I submited everything and showing nothing !

glossy gulch
#

I PASSED!!

#

Can I get the PT1 rank now? xD

#

btw how can I get the physical cert?

#

@keen sleet

ebon creek
gritty lanternBOT
vapid elk
glossy gulch
#

How can i get the physical cert?? Looks really cool, I want one now that I've passed haha

ebon creek
#

You have an official support channel on the email below

gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

vapid elk
#

Thanks.

ebon creek
gritty lanternBOT
#
TryHackMe's Email

TryHackMe's support email address.

vivid oak
#

Just curious, did they already email the first 100 people who got the PT1? I know they already notified the SAL1 individuals.

glossy gulch
deep mirage
# deep mirage Hey guys 20 hours to go and I have 9 flags with 1 web flag missing . Would 9 fla...

I passed the exam ! With 9 flags and 817 points 🫣

I will contact support because there is a bug in the exam . Happened to me in my first attempt and again in my second attempt .

Somehow the Vulnerability ID Privesc: Insecure crontab/service/task configuration option changes to Privesc: Insecure File Permissions in the exam results. Be careful with that. Thank god this did not affect a lot .

icy lintel
safe musk
# deep mirage I passed the exam ! With 9 flags and 817 points 🫣 I will contact support becau...

It doesn't automatically/magically change.

What is happening is that the grading system will first leverage your flag value to identify the vulnerability in question in the match. If no flag value is provided, it defaults back to using the vulnerability name to "attempt" to find the correct vulnerability. If both the flag is missing and the vulnerability name selected is wrong, then you get 0.

So what the grader is showing you is what the actual vulnerability name should be and you should see that you got 0 for the name of that specific vulnerability. In your case, the root cause of the issue, and thus the name of the vulnerability, should have been "Insecure File Permissions", even though you selected "Insecure crontab/service/task configuration". A good way to sanity check the root cause is to ask what is the fix? Are you actively changing something in crontab/service/task configuration or are you updating the file permissions? What actually fixes the issue is then also the root cause.

I am recommending that they make a UI change to make it more clear when your vulnerability name is wrong but your flag is correct, as this seems to throw off a lot of users based on the support tickets we are seeing

safe musk
icy lintel
dark violet
#

I passed with 9flags,

safe musk
# icy lintel I see your point, that makes more sense right now. And they defiantly need a UI ...

Vuln names are such a difficult thing! In our office, we usually have heated debates about the name and what the root cause is.

There are some "groups" of vulnerabilities that would merit partial points and that we have already implemented. But it is incredibly hard to do in an exam that randomises the VMs a user will receive. In one VM Insecure File Permissions and Insecure Crontab could be closely related where in a different VM it isn't. So it requires additional changes on the backend to support this. In cases where it is close for the user, manual review will usually award points if there is a good enough motivation for why the different answer is correct as well

deep mirage
lime fulcrumBOT
#

Gave +1 Rep to @safe musk (current: #34 - 331)

keen sleet
left helm
# keen sleet Be careful with this.

Thanks. I did revise it and I think it help. I did blunder and somehow changed the breach category to the wrong one but still had enough points to pass.

lime fulcrumBOT
#

Gave +1 Rep to @keen sleet (current: #28 - 376)

left helm
safe musk
left helm
#

Yeah I don't care for the extra points, pass is a pass. I am just concerned if folks did need those extra points to pass. I can kind see why AI went with it but I think the root cause was different. But if yall are debating it in the office I don't know if my feedback/support ticket will change much. Is another survey going to go out to the folks who won the voucher for feedback? I would love to provide my reasoning in their so I don't tax your support team.

#

Is there going to be an option to have both SAL and PT on my profile? There is plenty of room. I love showing off my badges.

safe musk
# left helm Yeah I don't care for the extra points, pass is a pass. I am just concerned if f...

Just a note, I cannot stress this enough, It isn't AI. AI literally only grades your description and remedial action. Everything else is cold logic. We won't waste time asking an AI what it thinks the flag value or the vuln name should be. Those are implemented with logic. The ONLY parts that are AI grade are the free text fields.

Pretty sure we will be doing a survey and that will be a great place to provide reasoning as well.

In terms of the profile, it should yes, will give feedback to the team

left helm
#

And thanks for forwarding on the feedback about the profile.

junior drum
left helm
#

Overall this was a good certification, just kind wish it was 3 lesser certs that were about $100 each and that when you pass all it equals the PT1.

left helm
#

Definitely a good step up from eJPT tho

topaz lichen
#

Uh I messed up some settings while setting up ligolo and now I can't access the AD host machine even after resetting it.. and there's only 2 hours left πŸ™

#

Guess this is it for me

heavy cape
left helm
#

I feel like web app pentesting is a huge gap in people's knowledge. That's what failed me the first attempt.

olive bone
#

Definetely recommended

left helm
#

Yeah I hated the closed off nature of ejpt where you had to use their virtual web-based machine that ran out of date tools. PT1 is way more realistic and let you expand your tools and methods.

olive bone
#

yeah pt1 is more broad in my opinion, ejpt was very specific

left helm
#

EJpt2 = certified with metasploit

keen sleet
#

Certified Bruteforcer!

jaunty iris
#

Just passed with 9 flags πŸ™‚

gentle mica
tulip violet
#

When are we getting a physical copy of PT1 cert ?

tulip violet
tepid crystal
#

how do i get role after passing the exam?

kindred oasis
#

i personally js passed oscp+ and felt pt1 was a walk in the park

keen sleet
#

If anyone wants the PT1 role, please ping me.

keen sleet
keen sleet
keen sleet
left helm
#

Thanks. Can you give me the SAL1 role too?

keen sleet
keen sleet
lime fulcrumBOT
#

βž• Gave the role SAL1 to ussfstargeant

keen sleet
#

Congrats!

lime fulcrumBOT
#

Gave +1 Rep to @keen sleet (current: #28 - 377)

left helm
#

Yeah I will verify again when I get home

left helm
#

Dkob did you pass within the first 100 to get the swag?

keen sleet
#

Yes.

left helm
#

Nice what did they send up sending?

#

I rock their baseball cap all the time

keen sleet
left helm
keen sleet
#

Β―_(ツ)_/Β―

junior drum
keen sleet
junior drum
keen sleet
#

Oh I thought you passed.

junior drum
#

you didn't read my review!!! boooo πŸ˜‚

keen sleet
#

Have you seen how long that is?

junior drum
lime fulcrumBOT
#

Gave +1 Rep to @keen sleet (current: #28 - 378)

keen sleet
#

AND on reddit.

junior drum
#

weird the /verify doesn't pop anything Oo

#

pmed to the bot

tulip violet
left helm
tulip violet
junior drum
junior drum
#

The only way it could be fixed was on support side

tulip violet
tulip violet
junior drum
tulip violet
#

I faced similar challenges but I somehow completed my exam.

junior drum
#

Congratz!

glossy gulch
glossy gulch
keen sleet
glossy gulch
lime fulcrumBOT
#

Gave +1 Rep to @keen sleet (current: #28 - 379)

left helm
keen sleet
left helm
keen sleet
fickle gyro
#

Does anyone know if I reset the network the flag change?

twin flax
#

Can anyone recommend any other rooms for the web application section aside from the recommended learning ones?

karmic bay
snow stone
plush vector
#

Whats your username

snow stone
plush vector
# snow stone Gogovalev

I've put it in my queue and will close other one out as a dupe. Will see if team can speed up the process a bit as it's been a while for you

snow stone
glossy gulch
#

How do I know if I’m one of the first 100 users who passed the PT1?

keen sleet
glossy gulch
keen sleet
kindred oasis
dusky garden
#

How can I get a manual review of my exam? As I see other feedbacks, with 8 flags it would be fail anyways... But this "AI" review is just nonsense. I mean... I got a flag, I copy pasted and there's 6 point minus on the flag. Why?

I compromised the whole network and still lost 39 points... With these only it would be passed, but obviously there's no perfect report.

But when I get minus points on a flag (not a "half-flag" creepy thing) this seems like an extra hardening layer passing the exam.

left helm
#

It should be all or nothing

#

I just checked both my attempts and both time I either got all the points if I got a flag or no points if I didn't get one.

dusky garden
#

Okay. So where do you think I lost points here?

left helm
#

You may have loss a few points from the discription. Mine was 22 but the other values are the same.

#

Looks like there is 36 points for the description/remedation

dusky garden
#

So description is 26 points?

#

Okay

#

Thanks for checking πŸ™‚

left helm
#

I don't know how high each of those go as I got 22/10 and 20/10

#

But missing a flag in one category can hit alot harder than others. Its funny they say like Web App is 40% of the test but those are only worth 40 points vs 74 points for AD. My first go around I wasn't able to get the AD box, so I was well below the cut off.

left helm
dusky garden
#

Yea, you're right

#

Thanks for your time πŸ˜‰

left helm
#

No problem

#

Did you get to attempt both tests before your voucher expired?

dusky garden
#

Yes. But unfortunately I kinda wasted the first one πŸ˜„ They said if you have eJPT... okay... I have eCPPT. So I though it would be an easy ride and I underestimated the whole exam. And when I realized I didn't have enough time for that. But I was on my best when I failed the 2nd one. πŸ˜„

#

Maybe next time πŸ˜„

left helm
#

Was PT1 harder than eCPPT or just different skillset? I underestimated PT1 my first shot too but it was because I wasn't equipt for the Web App section.

dusky garden
#

I think it's different. Not just different skillset. I think PT1 is very difficult. I have eCPPT and PWPP (from TCM which is an "advanced" webapp cert.). eCPPT is mainly ActiveDirectory. (I wasn't able to pivot on the PT1). eCPPT doesn't require report writing and has more time!

PWPP is WebApp only which requires proper report writing and 5 days long. 3 for testing and 2 for the report.

Here you have WebApp, Network, AD with report on 2 days. - AD 2 machines and report is ... nah...

I was able to get 3 flags on WebApp. I tested everything I know... I spent 1 full day only on the webapp.

I fully compromised the network (lost 39 points on whatever...) which was also WebApp heavy. Both target was accessible through a webapp.

I was only able to compromise 1 machine completely in the AD where I lost most of the Points but I wasn't able to pivot to the other. I might would if I'd have more time. So I think PT1 is very difficult in that time frame with report writing. Especially if 750 points are weirdly valued by "AI" and the weighting of the points as you mentioned. So I definitely woulndn't reccomend for a real beginner and I'm also not sure I want to try it again. πŸ˜„

junior drum
#

hi, do we know how long the delay is for mail support answers?

junior drum
#

thanks

plush vector
junior drum
#

Thanks