#site-support

1 messages · Page 9 of 1

sharp bisonBOT
zealous yoke
#

Has that email received emails from TryHackMe before (i.e. newsletters, announcements, etc)?

dawn sleet
#

just one to verify my email

zealous yoke
#

Alright thanks. I'd probably just double-check your spam/junk folder (because we have the word "hack" in the name, some email providers automatically send it there)

if you don't get anything in 5 mins, try again, and if you don't get anything in another 5 mins, I'll ask one of our support team if there's any thing further you can do

dawn sleet
#

thank you, I have tried several times today with nothing in my spam box or inbox

zealous yoke
#

Sorry for the troubles -- i'll see if our support team has any troubleshooting tips. Otherwise, I'll point you to our support team (as shadow helpfully provided) to get your account recovered 😎

astral reef
#

Lateral Movement and Pivoting, can't connect with openvpn after updating /etc/resolv.conf can ping thmdc can't do nslookup. Attackbox keeps dropping vpn connection, tried ssh with IP as well, still keeps dropping. Any ideas?

zealous yoke
#

(i.e. 10.x.x.x (fill in the x's)

astral reef
zealous yoke
zealous yoke
#

!docs verify

sharp bisonBOT
zealous yoke
zealous yoke
astral reef
zealous yoke
#

Alright thanks! I can see on our end that the machines on that network are running fine. You can ping but can't nslookup right? This sounds like a DNS issue

astral reef
#

ok, I added nameserver 10.200.48.101 to resolve.conf

astral reef
zealous yoke
#

it looks like my internet is playing up atm sorry

astral reef
#

np

weary spindle
#

Change the server in /etc/resolv.conf

To the 10.200.48.101

astral reef
#

this is the contents # Generated by NetworkManager
nameserver 10.200.48.101
nameserver 192.168.1.1

weary spindle
#

Can you browse the link supplied by the room?

Sometimes nslookup won't work

astral reef
stone turtle
#

Hey, I'm working through the Metasploit module right now, in the Metasploit Exploition - msfvenom section, when I click start machine, it automatically loads the attack box, usually I have to do that after first clicking that, and when it loads it just loads a version of Ubuntu with no desktop environment with no pre-loaded tools aswell, the User on the box is murphy, and I've figured out the root password via google, but I feel like this is a possible bug?

#

nevermind, scroll down more is the answer to my question :/

#

cool site though thanks

rough bone
#

hey soo uhh just lost my streak 😦 got out late at work and timezone differences made it so i lost my streak tonight

#

anyway to get that fixed 😦

chilly pike
#

you can email support

#

!email

sharp bisonBOT
stone turtle
#

nvm still think its a bug

crystal marlin
#

Not the attackbox, so I don't see what the bug is ?

stone turtle
#

Hey thanks for responding, so yeah when I click the "Start machine" button it starts the machine aswell as opening an attack box, but the attack box has no desktop environment or tools loaded to it, it appears it's only on this instance, metasploit - explotation - msfvenom, as I went back to the path I was working on and everything loads like normal.

crystal marlin
severe dove
#

I seem to be getting a 404 error when attempting to download the OpenVPN file. Is anyone else experiencing this problem?

rough gyro
#

anyone know what could be causing ssh to hang indefinitely on thm machines

#

it basically always happens after a couple minutes (if not right away)

#

note im connecting through my own machine through openvpn and not through the website

#

things like webpages and such load totally fine so im not sure what the reason herei s

cinder anchor
#

Anybody having problems with openVPN on kali Vbox?

tacit nacelle
#

Can someone help me out with this?

crystal marlin
upper leaf
#

Please, how can my username be changed with losing my progress and as a student.. registered with student email. how can i get the subscription reduction

sharp bisonBOT
upper leaf
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
#

!email

sharp bisonBOT
mystic reef
#

Do you get a Automatic response everytime you send a email to test support? ^^

weary spindle
#

I've always received one.

mystic reef
#

Because I tried to contact them But got no confirmation email 😄

weary spindle
#

I'm sure they still got your mail.

mystic reef
#

oh okay, maybe I am just impatience, sorry ^

weary spindle
#

When did you E-mail?

mystic reef
#

Sunday

upper leaf
crystal marlin
upper leaf
echo whale
#

Hello, i am the only one on trouble with exploitad network. ? I wait for seconds and seconds after typing commands on thmwrk1 machine. After reset it is the same.

#

Same problem with rdp and ssh

#

I tried to complete this room this morning and i have the same problem this afternoon. I will come back this evening, i will see 🙂

weary grail
#

Hey is there any helpline number to contact the support team

sharp bisonBOT
weary spindle
naive dust
#

Has there been a change to vpn recently? I used to be able to connect with openvpn from both wsl and "regular" windows simultaneously. Both on the same machine. This was to be able to connect with windows rdp and at the same time use wsl for reverse shells and such. It seems like this doesn't work since some time. I'm getting disconnects/reconnects, like only one connection is allowed at the same time.

weary spindle
#

Yes.

There was an E-mail & and announement.

#

But you shouldn't have been able to run two at the time?

naive dust
unborn cosmos
#

sup, not sure if this is the correct channel to ask but i cannot verify with the discord bot, could the problem be that I left the server after verifying once?

weary spindle
#

If it's a different account yes, if it's a new account it shouldn't be?

What error message do you get?

unborn cosmos
#

bot doesn't respond when I do !verify with token

#

but when I just do !verify it says i should use the token

weary spindle
#

You might need to ping a mod.

unborn cosmos
#

can I ping in them in this channel?

#

or should I just ping one

naive dust
weary spindle
#

If they're online, sure.

weary spindle
naive dust
unborn cosmos
#

thanks! @broken bear are you available blobheart

naive dust
#

It's a bummer though, since it made things easier by not having to use the web based attackbox interface as much

weary spindle
#

I've never experienced WSL before, but why not just use a VM?

naive dust
#

wsl is running as a kind of vm already, that's why it needs a separate vpn connection. So running another vm wouldn't really change anything.

weary spindle
#

But if you're running Kali Linux on VB/VMware you'd just need to use that?

#

Or does your system not have the resources?

naive dust
#

this is only an issue when there is a need to connect to the target with rdp and at the same time wanting to use my wsl kali instead of the attackbox. So it's just more of an inconvenience.

#

it was just nice to be able to use windows software and wsl/linux software at the same time on my local machine by connecting both through wsl command line openvpn and windows openvpn at the same time. But if that's not supposed to work I guess that's just the way it is.

unborn cosmos
broken bear
unborn cosmos
#

yea, it responds when i don't put the token

#

i've been verified 2 years ago but i left the discord somewhen and rejoined now

broken bear
#

did you change discord accounts?

unborn cosmos
#

no, i can still see old chat

broken bear
#

I don't know what to tell you then - that's the extent of my knowledge about how the bot works. You dm the bot with !verify <token> and it links your THM profile to your discord account

unborn cosmos
#

hmm okay thanks for trying 😄

naive dust
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

plush bay
#

oh boy there are tons of reasons why using wsl is a bad idea

#

a huge part of it having to do with networking

#

another huge part of it having to do with access to your host machine and problems that could cause

#

a normal virtualbox vm is safer and does not have said networking problems

naive dust
#

I have yet to encounter any other issues than the fact that the network is nat'ed

#

but please, if there are any resources to read up on potential issues I'd be happy to know 🙂

sleek jackal
#

some security issues surrounding WSL. partly why I dont use it

#

I personally haven't had any issues with networking through WSL, but you might wanna read up on how some of the scripts and programs you run inside it use python. specifically ctypes. a little hazy on details, but as I understand it, WSL uses ctypes to make API calls and invoke PS on the windows host. This can potentially bypass any AV installed and allow for malicious code to be ran on the Windows host directly. @naive dust

zealous cradle
#

hey, I think I'm having a problem with the AttackBox for Operating System Security

#

sry, I'm just stupid and just figured it out. I'm a noob and didn't realize that while trying to ssh the password doesn't appear while you are typing it.

#

thanks anyways

scenic torrentBOT
#

Gave +1 Rep to @gray loom

severe tangle
#

Hello, I am having trouble with using machines on tryhackme. I am connected to OpenVPN and the machine in this room is working fine https://tryhackme.com/room/openvpn#. But all the other machines aren't working. I always ensure that I am connected to the VPN server, then start the machine and copy the IP address and paste it to the browser(chrome) and then it shows "Site refused to connect". How do I fix this issue?

#

Linux fundamentals 2

#

Oh, ok tysm

naive dust
scenic torrentBOT
#

Gave +1 Rep to @sleek jackal

severe tangle
#

It works now, thanks :)

woeful shell
#

I am unable to login to my acccount

#

what should I do?

weary spindle
#

Reset your password.

woeful shell
#

I tried to login to my account after a month almost and it asked for my credentials which was unusual as it I was always logged in (maybe there is a timeout period), then I go on to enter the credentials that are saved in my google account but it displays - "Incorrect email or password". Then I try entering it on my own but still it shows the same message. Then i reset my password , but still same response. Till now I have changed my password 3 times , still same response

woeful shell
#

My profile is visible publicaly

#

my profile link

sleek jackal
sleek jackal
woeful shell
sleek jackal
woeful shell
#

Yup

sleek jackal
#

are you using a pw manager to hold the pw for you?

woeful shell
#

Yes but I also tried typing it on my own

sleek jackal
#

do you have any other active sessions? like on another computer or inside a VM?

#

that you could use to at least make sure you can access the account and navigate?

#

did you change the email perhaps?

woeful shell
#

I didn't change the email and I don't have any access sessions in any vm

sleek jackal
#

have you tried using your username to log in instead of the email?

#

and to clarify, I meant the value being input into the field. Are there any extra or hidden characters? Are you manually typing it in or are you selecting it from a drop down or auto-fill menu?

#

I would say try the username since it allows for either email or username along with your current password. If it doesn't work still, you can try changing the password once more, but I would suggest reaching out to support at that point since they may be able to see what is or isn't happening when you try to authenticate.

woeful shell
#

How to contact support

#

?

plush bay
#

!email

sharp bisonBOT
sleek jackal
#

!email

sharp bisonBOT
sleek jackal
#

shadow lurking on me

woeful shell
#

Thanks guys

sleek jackal
#

beat me to it

#

yup yup

plush bay
#

no problem

sleek jackal
#

try to be as clear as possible on explaining all the troubleshooting you have already tried as well as any potential variables recently which may or may not have inadvertently had an impact on you being able to log in.

upbeat fox
#

For the sysinternals room, after starting the VM, and then starting the attackbox, I am getting a linux machine and not a windows machine.

plush bay
upbeat fox
#

Thanks for the response! I do not see any tabs unfortnately

crystal marlin
#

So that machine seems to not open in the browser

upbeat fox
#

Oh got ya.

#

Thank you!

plush bay
#

yeah that was the other possiblity

naive dust
#

Hello, if I don't have a premium account on TryHackMe, could I get certificates?

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

tawdry yarrow
#

hi noob here, I connected to openVPN on my mac, and am getting response for - "curl http://10.10.10.10/whoami" but when I run sudo openvpn myconfigfile.ovpn, I get "sudo: openvpn: command not found" error. Can anyone help?

hollow crest
#

i cant seem to open the evil shell php in owasptop10 room

#

it keeps giving server timed out message

polar falcon
#

i started a machine on a lesson but its not opening the machine

lethal vortex
#

Hi, I am having issues connecting to VPN. The openvpn file hangs and when DL new config I get 404, is this a known issue or just me?

weary spindle
lethal vortex
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

lethal vortex
#

like magic, sorted.

upper leaf
#

if finally create a new account with the same email.. how can i reconnect it with discord

#

when i tried i got this response from TryHackMe Sorry, you already have a token on this account.

bronze vale
#

!tokenremove 917464985922338846

sharp bisonBOT
#

Done, no more entry with UID "917464985922338846".

bronze vale
#

Now try @upper leaf

upper leaf
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

upper leaf
#

i want to subscribe.. how can i get student discount .. i registered with my student email

#

the support ain't reply my emails

bronze vale
#

Dm me your email

upper leaf
bronze vale
# upper leaf Done

You’ve emailed three times withjn the last 24 hours, I’d like you to checkout how many site users we have and invite you to be patient

scenic torrentBOT
#

Gave +1 Rep to @bronze vale

upper leaf
#

I can still keep my previous account and progress, if there is a possibility of changing the username

bronze vale
#

Not as separate emails, no

upper leaf
upper leaf
crystal marlin
#

You already asked about that and got an answer, what other answer you expect to get by asking that again ?

#

You said THM as well as paypal is declining your card.
So to reach out to your bank asking about it is really the thing you should do at this point

upper leaf
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

icy girder
#

Hello! I tried to configure OpenVPN to work with tryhackme but it seems that my internet provider has blocked it along with some other VPNs since it stops at "TLS: Initial packet from [AF_INET]...".
Is there any way to bypass that? Maybe open a connection through a different port or smth else?

rough hawk
#

To any mods out here. Tutorial "Upload Vulnerabilities" "/room/uploadvulns" Task 4, the upload site automatically redirects to youtube: Rick Astley - Never gonna give you up.

#

I read it, finished it, but demo.uploadvulns.thm doesn't work like the tutorial demonstrates

#

my bad

devout ledge
#

Hello! I want to buy premium. When I click I get redirected to chargebee. Is there a way to pay via stripe or skrill or something else?

bronze vale
#

We use ChargeBee for subscriptions.

devout ledge
#

The problem is that to get a student’s discount you shouldn’t pay with vouchers (email support told me). They can be bought with stripe. On the other hand the normal purchases use chargebee. That’s a pity :(

bronze vale
#

Hi, yes, I am email support

#

I don't understand why you can't use ChargeBee?

devout ledge
#

Due to privacy reasons 🙃

#

Thank you for your support!

#

I will probably use chargebee in this case

icy girder
glass dagger
#

Hi just wanted to inform you, that my OpenVPN file got broken.

Last event messages:
2022-10-26 19:07:47 UDP link local: (not bound)
2022-10-26 19:07:47 UDP link remote: [AF_INET]34.253.19.14:1194

if someone else encounters that kind of issue:
Downloading the file from the access page led me to a 404 page, and regenerating the file did the job. Maybe the OpenVPN Access file gets deleted from the VPN Server after some time passed?

crystal marlin
#

If you receive a 404 when trying to download, just regenerate again, wait a couple of minutes before pressing download, then download

severe tangle
#

Hello, how do I start WIN machine in windows fundamentals 1 without Remote Desktop? I can't also use AttackBox because it's only for 1 hour a day. Is there a way to run the machine or I have to wait till tomorrow?

crystal marlin
#

!vpn

sharp bisonBOT
crystal marlin
#

Actually the target machine for that room starts within the browser

#

So there is not even a need to rdp, unless you want to

severe tangle
crystal marlin
#

Just with the difference that it's not the attackbox

glass dagger
hollow smelt
#

i am newish to tryhack me and im getting real frustrated with the attack box

#

when i launch ubuntu it keeps on failing after a few inputs and resetting

#

The TryHackMe remote server is not currently reachable. Please check your network and try again.

#

any idea what im doing wrong?

tawdry yarrow
# unborn cosmos is openvpn in your path?

was able to resolve, by adjusting path. trying to ssh into attack machine, I have been trying with my userid and then tryhackme@ip address, neither one works. Should I be using some other user or is there some other way to SSH into attack machine

eager fulcrum
strange prairie
#

what is the king of the hill chat room??

plush bay
#

and king of the hill is competitive hacking game where you fight for flags and root/king

upper leaf
#

Please un-link me from discord so that i can re-verify with my previous account
when i tried i got this response from TryHackMe Sorry, you already have a token on this account.

obtuse kayak
#

hello i have a problem with attack the box whenever i launch it i only have a kali terminal even if its a room that requires a window machine

naive dust
#

Hi, I can't download my OpenVPN file.... I get an error 404

feral token
#

Im getting this error when i try to connect on openVPN on my kali vm

#

sudo openvpn /path/to/flprosa96.ovpn
Options error: In [CMD-LINE]:1: Error opening configuration file: /path/to/flprosa96.ovpn
Use --help for more information.

#

the ovpn file is on my download directorie

#

yeah its working now

#

thanks lol

#

my bad

naive dust
ionic parrot
#

oh, help time...
I've got a different account connected to my discord than my actual THM account
Could an admin/mod help me to reset my connected account?

twin berry
#

Hello, so I forgot my password but whenever i put in my email for the forgot password link i never get the email. I have tried multiple times

twin berry
#

nah

#

and i know i get emails from them cuz i got the bill

lofty lion
#

Hi everyone, how i can change my country in my public profile? im not from UK :c

tribal burrow
open lintel
#

this is an iffy question, and I hope there's an answer:

Usually browsers only zoom out up to 25%, is there any way to push the limit? maybe to 10% or 5%?

glad oyster
#

What browser do you have?

#

Try this maybe?

open lintel
scenic torrentBOT
#

Gave +1 Rep to @glad oyster

versed skiff
#

I have a problem with the ssh i don't know why i'm connected to the vpn http works but ssh give no output (room: Intermediate Nmap) can you help pls

crystal marlin
#

Or you already at the stage where you found the creds?

versed skiff
#

I found the creds and i need to connect to ssh with the creds but when i type ssh ubuntu@ip-add i got nothing no output no place to put password nothing it's just like bugging

crystal marlin
versed skiff
#

yes i'm useing a V.M.

#

no idon't have any host on my machine

#

i'm just using openvpn on the VM

crystal marlin
#

If you check ip a do you only see a tun0 interface or any extra like tun1, tun2 etc. ?

versed skiff
#

Only tun0

weary spindle
#

Sounds like MTU.

#

sudo ip link set dev tun0 mtu 1200

weary spindle
versed skiff
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

crystal marlin
weary spindle
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

weary spindle
weary grail
#

Is the tryhackme website really safe for payment???

weary spindle
#

Yes.

weary grail
#

I had bought subscription 1 week ago from other's card since I don't have card and today also someone tries to pay from the same card and also on that day there were two payments made for which I have written mail to support team but they say only one payment have been done. I have also send them the screenshot claiming to have two payments. Can someone suggest what to do now????

weary spindle
#

If support said there was only one payment then that's what's happened.

#

Support is the only person that can help with this matter.

weary grail
#

And who was the one requesting for payment today on account of tryhackme ??

weary spindle
#

🤷

bronze vale
#

And pro tip: don’t use someone else’s card, it becomes really hard when asking for information

peak basin
#

hey, yesterday I bought 1 month of premium but I still can't access the premium rooms, I didn't receive any confirmation email but I can see the transaction movement on my bank account. what can I do?

weary spindle
#

!email

sharp bisonBOT
peak basin
#

thank you

severe tangle
#

Hey, is it possible to do task 12 in Content Discovery without attackBox? https://tryhackme.com/room/contentdiscovery I am stuck on executing those commands. It says that it can't find the common.txt file, which is the wordlist. How do I get that wordlist so I can execute it in my computer?

severe tangle
weary spindle
severe tangle
severe tangle
#

Yep, I use kali

weary spindle
#

Install SecLists on your Kali then.

severe tangle
#

Oh ok

weary spindle
#

Or, you can take the wordlist off the attackbox using a python server.

severe tangle
#

I am installing seclists :) Tysm.

barren bluff
#

hello all, im having trouble connecting to the vpn

#

any help would be highly appreciated

glad oyster
sleek jackal
#

Small annoying detail

weary grail
# bronze vale You *really* need to contact your bank

I have my debit card but credit card was must for the payment. So I had to borrow it. And also this was the first time something like this has happened to me. I think the customer support on TryHackMe should improve its service. As we see it is a very good platform to learn for giving a better service will be good. And till now also I don't know how the credentials of the credit card got compermised. Very unsatisfied of the customer service. Except for that its a veryy good platform.

sleek jackal
#

This discord server isn't customer service

#

Nor is it technically support

bronze vale
calm river
#

Anyone else having issues resetting a password? It won't email me the reset password link

sleek jackal
#

Kind of a vague issue since I'm sure there aren't a lot of people trying to reset their PW atm

#

Did you check spam folder?

calm river
#

I've checked everything. I know I'm using the correct password but still won't let me log in.

sleek jackal
#

Are you putting in the right email?

calm river
#

Yup. Same one they use to send me my bill

#

Or receipt I should say

sleek jackal
#

Are you getting any other emails to that address? From anywhere?

#

Could be an issue with the provider

calm river
#

Yup no issues with that email address from anywhere else.

sleek jackal
#

Send yourself an email to test

calm river
#

I did from my work earlier.

severe tangle
glad oyster
calm river
#

I did yes and my latest receipt for my monthly subscription. I emailed support but it will take 3 days. Just wanted to see if anyone else is having the issue

barren bluff
#

I'm running openvpn version 2.5.7, and still cant get connection established message

crystal marlin
#

!docs verify

sharp bisonBOT
barren bluff
crystal marlin
# barren bluff

Did you already regenerate and download a new config file on the access page ?

barren bluff
#

yes

crystal marlin
#

Also trying to switch vpn server ?

barren bluff
#

also yes

crystal marlin
#

Was it ever connecting previously?

barren bluff
#

yes i connected to it earlier today

crystal marlin
barren bluff
#

literally nothing changed

tribal burrow
#

try to regenerate new file?

barren bluff
#

my windows machine was scheduled to automatic restart and download an update... it happened while i was solving some stuff

#

since then it never worked...

#

i tried regenerating a new file, changing the server, checking my network connection

crystal marlin
barren bluff
#

nothing worked

#

NAT

crystal marlin
#

Might want to try changing to bridged to see if that changes anything

barren bluff
#

sure in a min

pulsar bane
#

sorry to jump in late but have you also tried the fix in the pinned message ? changing the "cipher AES-256-CBC" to "data-ciphers AES-256-CBC" in the .ovpn file

barren bluff
#

yes although my version is 2.5.7

#

its not connecting to a network 🙂

sage path
#

Anyone have advice for me to get a new holo vpn config? Keeps giving 404 when I try to download. Other networks work. Tried other servers. Left the room. Signed out of THM. Cleared cache. Re joined. But no luck.

idle fable
#

can you help?

#

My premium subscription is not active plus I've lost all of my gained levels

#

PS I'm not talking about streaks

tame quest
#

so i got try hack me and the attack box was laggy so i got vmware and got the newest version of kali linux to do the first box where you need to hack into the bank. I got gobuster and installed seclists correctly i think but everytime i try to use it its not showing up

#

it says error on parsing arguments: wordlist file "common.txt" does not exist: stat common file or directory

glad tide
#

Guys I just broke a 195 day streak and Im sort of freaking out, I know I didnt miss it, I schedule the same time every single day to do it. Please is there anyone who can look at it? I worked so hard on this.

#

I did my challenge today and it said streak 1 at the same time I always do it

tribal burrow
#

try refresh page

glad tide
#

I did, I even did extra challenges. Tried on 2 devices as well and it says the same on both. At first I thought thats what it was and even logged out and back in

jovial mango
glad tide
#

Im gonna be so freaking bummed if something caused it to break

tribal burrow
#

you can email the supportr if you lose strike to gets restored for you

glad tide
tame quest
#

I got it to work now thank you, but when the scan finishes it doesn't show /bank-transfer like it does through the attack box

#

It shows some others like /css /fonts/ images but it doesn't show /bank-transfer

glad tide
#

Is.... bank-transfer... in the common wordlist? lol

glad tide
# tame quest I got it to work now thank you, but when the scan finishes it doesn't show /bank...

The way that works is it takes every word in the wordlist and jams it at the end of the URL to see if it exists. So, if bank-transfer isn't in the wordlist, naturally it won't show up in the scan. I cant speak to any discrepancies between seclists and the list on your box. But that would be why it wouldn't show up. You can also always check /robots.txt files on web servers to look for possibly hidden pages.

tame quest
#

so for now im guessing i just need to use the base one that comes with kali in order to follow the tryhackme boxes

#

or rooms

broken bear
tame quest
#

ah ok thank you!

warped sapphire
#

I lost my 50 day streak because I wasn't recieving the email to reset my password as I was on mobile away from home. Email just never came. I have a streak freeze I was unable to use. Do I have any options to fix this?

weary spindle
#

I know you've used the machine ip, but the word list used for that room is also on the Desktop of the machine.

fast cliff
#

Hello all, I'm not able to download vpn config

bronze vale
fast cliff
north zodiac
dusk temple
#

Can i cancel my subscription before the ending date ?

valid karma
tame quest
#

Or rooms

weary spindle
tame quest
#

Awesome thanks

loud dune
#

Hi, is anybody has a problem with THM server ? I can't connect to few machines ...

#

even by split screen ..

crystal marlin
final horizon
#

Hi, i wanted to connect to a windows machine but since it doesn't work like on Linux where i just use ssh i don't really know which program to use for remote access to the desktop

weary spindle
#

Use Reminna.

last bay
#

hey fam,
if the connection to the thm network is all good, but no ping replies from a machine, network just too busy? ..have tried a couple machines, set new server, no openvpn config file

dim quail
#

I'm in the Basic Pentesting room and trying to use enum4linux to enumerate the machine. However, it is not able to connect. Receiving an error of "Cannot connect to server. Error was NT_STATUS_NOT_FOUND"

loud dune
#

@crystal marlin. Tried to connect 3 machines Hackerween, i'v Got ip but split doesnt work, i couldn:t download vpn pack too.

dim quail
dim quail
#

Oh. That's also for WSL.

#

Are you using WSL?

#

Though maybe it will still work.

last bay
#

unfortunately not, but good to know!

#

can get ping replies from google and other devices on the network, can ping the thm 10.10.10.10

sleek jackal
#

Just cause you aren't getting a ping back doesn't mean anything is wrong

#

In fact,. A lot of machines on THM are configured this way

#

Try an nmap scan

crystal marlin
last bay
scenic torrentBOT
#

Gave +1 Rep to @sleek jackal

sleek jackal
#

Yup yup

plush bay
idle fable
#

Unsolved: Can you help the THM team?
I've got a premium subscription but is not displaying active plus I've lost all of my gained levels
PS I'm not talking about streaks

crystal marlin
#

!email

sharp bisonBOT
plush bay
#

no problem

#

the entire nmap module is actually very helpful to go through

sharp bisonBOT
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

loud dune
#

@crystal marlin After 99% i see an error communicate and " trying to recconect".. And over again

crystal marlin
loud dune
#

I always use vpn pack from Access - - HTB

crystal marlin
loud dune
#

None

crystal marlin
# loud dune None

K, well try a different browser or try to open the website in your VM to see if it's working there
Other than that you might have to get to download the VPN config.
If you get a 404 there, try to regenerate and wait a couple of minutes before trying to download it

loud dune
#

@crystal marlin 👌, thanks for advice. Adam

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

dapper wind
#

Hello. I have a problem about accessing the lab website (room: Authentication Bypass ; Task: 2). When i go to the link provided (http://10.10.162.210/customers/signup), it loads forever. I'm connected to OpenVPN (i checked via the Access page), i also have access to all other websites (like Google), its only this website i can't access. Anyone know how to solve this? I can't do the lab at all without accessing that website

sharp bisonBOT
plush bay
#

yuup check the vpn troubleshoot script

#

as that website is accessable to shadow so somewhere in your vpn connection lies the problem

dapper wind
#

I followed every step, come up in the end with this output:

[+] Connectivity checks completed!
[+] You are connected to the TryHackMe Network
Your TryHackMe IP address is: 10.14.35.10

Still can't access to that website (http://10.10.89.165/customers/signup). It loads forever like i said before, this is weird huh

naive dust
dapper wind
#

Alright lemme try

#

Nope doesn't work, i even restarted the machine but still nothing

#
The connection has timed out
The server at 10.10.89.165 is taking too long to respond.
#

only tun0

weary spindle
#

The vpn troubleshoot would have picked up multiple tun*...

dapper wind
#

I changed VPN servers from EU-VIP2 to EU-VIP1, launched the github script and got same output as above (successfully connected to thm network) so i don't think its vpn servers

young bronze
#

did you regen the script and wait?

dapper wind
#

Just in case, this is the output of the script:

[+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? Y
[+] Connecting....
[+] Connection Process completed successfully!
[+] tun0 IP is in the correct range
[+] Only one instance of OpenVPN is running
[+] Confirming connectivity
[+] MTU value OK
[+] Connectivity checks completed!
[+] You are connected to the TryHackMe Network
Your TryHackMe IP address is: 10.11.7.66

Happy Hacking!```
dapper wind
weary spindle
#

You can send screenshot if you verify

#

!docs verify

sharp bisonBOT
dapper wind
#

Yup thanks, so this is the screenshot about ip a s:

nimble trench
#

can i change my thm username?

weary spindle
#

!email

sharp bisonBOT
weary spindle
dapper wind
#

Username Enumeration

weary spindle
#

Can you go to the ip?

#

Then go to the required page manually?

dapper wind
weary spindle
#

No, clicking customers hyperlink etc.

dapper wind
#

No it doesn't work either

#

Did you try accessing that website on your side?

weary spindle
#

No, I'm not on my laptop.

dapper wind
#

I see

#

Someone have an idea of how to resolve this weird issue please?

weary spindle
#

Quick fix, use the attackbox

dapper wind
#

Yeah i guess, anyway thank you for your time.

glad tide
#

So even more basic, first step would be to try and ping it

#

If you can ping it, then you move on to more troubleshooting. If you cant ping it you definitely have an issue at the VPN level. Also reconfirm the IP you're hitting is accurate and the machine is still spawned

#

However based on what you're showing, I do not think this is a VPN issue

glad tide
#

Okay so you can get to the box, your VPN is indeed working

dapper wind
#

Yup

glad tide
#

So likely, this is an issue with the service on the machine. And Im just catching up. Did you terminate the machine and respawn it?

dapper wind
#

I did 3 times yeah

glad tide
#

can you curl it?

dapper wind
#

I even switched VPN servers 2 times, regenerate certificates, redownloaded the GH script

glad tide
#

curl IP/path

dapper wind
#

Yeah it works. wtf

glad tide
#

Okay this is good

#

So let me ask you more about your setup

dapper wind
#

My local Burp proxy is turned off just in case:

glad tide
#

Do you happen to have your browser pointing to burpsuite and burpsuite closed? OR

#

okay haha

#

Its definitely something with the browser. I think. How is your VPN connected, are you connected to VPN on your VM and using the browser in your VM?

dapper wind
#

No proxy are setup on firefox, i'm using default connection settings

glad tide
#

We're getting closer at least:

  • VPN Works
  • Ping Works
  • Curl Works
  • Burpsuite off on foxyproxy
  • No Proxy setup
dapper wind
#

Yup exactly, i'm still looking around on my firefox settings but i'm 100% its all by default because i never touched it

glad tide
#

Is there another browser installed to test with? I dont have my parrot or kali vm's up right now so don't remember

dapper wind
#

Lemme install chrome rq

glad tide
#

If it does work in chrome, then naturally we can at least determine theres something off with firefox

#

but at least you can get on your way. Also naturally since you can ping and curl it, you can still still continue working with your CLI tools in the meantime

#

So you should be able to get through task 2 while you figure all this out

fast cliff
surreal kelp
#

which metapackages are used on the Kali Machine? FeelsOkayMan

sleek jackal
weary spindle
lilac ether
#

Ladies and gentlemen, have any of you experienced the shell duplicating your command when pressing tab to autocomplete? And how did you solve it? I am using Kali and ZSH 5.9
Here is a visual reference

weary spindle
lilac ether
#

Thanks Scrubz, I wasn't sure where to post this question, is neither general nor THM related 🫥

weary grail
#

I was doing linux privilege escalation room and in task 11 Privilege Escalation :NFS I am getting the same error every time as 'GLIBC_2.34 ' not found. Can you tell me the error as I tried everything but the same error again and again.

glacial bone
#

Hello! I'm trying to connect to the vpn but it's not working for some reason.

Tried to use the troubleshooter but it doesnt detect that OpenVPN is installed despite it being in the system (Used it for HTB too and it worked there)
It just hangs and doesnt want to connect

#

Using Black Arch

crystal marlin
glacial bone
#

Yep

#

EU, US, IN

crystal marlin
#

Could you ever connect to the THM vpn previously ?

glacial bone
#

I havent done any rooms in over a year but back then yes

crystal marlin
#

Is this a VM that you try to connect from ?

glacial bone
#

Yes

#

VirtualBox

#

Athena-OS Blackarch

crystal marlin
#

Any personal VPN running on your host machine ?

glacial bone
#

Using NAT-Network

#

None

crystal marlin
#

You from a country that might block openvpn ?
In particular the UDP port, or you on a wifi or a network in general that blocks that port?

#

I think HTB uses TCP, thus it might work there but not here

glacial bone
#

Maybe my uni is blocking it? I'll try again when im home

weary spindle
#

Uni is more than likely blocking it.

glacial bone
#

Had an issue with Fortigate blocking some stuff before

crystal marlin
#

Ye, there is a good chance it's blocked since you said it's a uni network

glacial bone
#

cheers for the help

#

will update you in a bit

weary spindle
#

You could ask the Uni ICT to unblock port 1194.

glacial bone
#

theyre off for the day but I'll ask them tomorrow

glacial bone
#

yep it's my uni

#

vpn's working now

weary spindle
#

Fantastic.

#

They may or may not unblock 1194 for you.

If they don't, you'll still be able to use an Attackbox.

#

Happy Hacking!

rustic cosmos
#

Hello, I'm having a problem with my uploaded VM, I uploaded a Windows Server 2019, and the materials tab showed my VM is successfully converted, did attach the VM to my room. But when I pressed start machine it just did nothing, waited for like 15 minutes, refresh and still can't start my machine.

royal mural
#

Hi guys, for the LinuxFundamentalsPart2 room, Using SSH to Login to Your Linux Machine.
I started the attackbox, entered ssh tryhackme@MACHINE_IP , but the password provided "tryhackme" does not seem to work, what am I missing here?
ssh tryhackme@10.10.87.55 in my case.

tribal burrow
royal mural
#

manual

weary spindle
#

Are you typing the password correctly?

#

Do you use a mouse?

royal mural
#

Not sure how to answer that, I have been a programmer for the last 30 years, all I am saying is that the password provided in the documentation is not working for me. Yes, I use a mouse. And I have keyboard.

weary spindle
#

Copy the password and when you click on the terminal

Hit your mouse wheel.

royal mural
#

Permission denied, please try again

tribal burrow
#

or Ctrl+Shift+v as paste

weary spindle
royal mural
#

Well, that also does not make sense to me, the IP I try to ssh into, is the attackbox, but those are the instructions.

weary spindle
#

Did you press this button?

#

So that box appears?

royal mural
#

Would my terminal be open if I didn't?

tribal burrow
#

i also cant connect to that ip that you provide

weary spindle
#

And Yes.,

#

That button starts a different machine.

royal mural
#

I will start over now. I will terminate. And follow your guide

weary spindle
#

DONt

#

Stop your attackbox.

#

I just scanned your IP that you gave and that looks like the Attackbox.

royal mural
#

OOPS, sorry, too late. Starting a new one.

tribal burrow
weary spindle
#

!docs verify

sharp bisonBOT
weary spindle
#

If you want to verify your account.

#

@royal mural

You need to send it here @sharp bison

royal mural
#

Ok thank you

weary spindle
#

There we go.

Were you able to spin up a new Attackbox?

#

Yes, because you're a sub.

royal mural
#

Well, I did as instructed and clicked on Start Machine, now I see my IP on top but the actual box is not yet there. I assume now I need to start the attack box?

weary spindle
#

Yes.

#

Attackbox is the box your attacking from.

Any rooms with a green start machine button is the "victim"

leaden bronze
#

y0. anyone know a way i can keep the openvpn connection alive without having to interact with the website? if im running an extensive gobuster/ffuf scan, after a while of leaving it alone, the vpn will die out and i have to reconnect

#

if it dies the gobuster/ffuf doesn't scan the directories properly correct?

glad oyster
#

The VPN shouldn't die out, is your connection stable?

#

Are you using the latest open VPN file?

leaden bronze
#

yeah

#

latest open vpn file. and i'm direct connect ethernet to modem

#

i thought its supposed die out if it goes idle to long?

leaden bronze
#

@royal mural are you sure you're using correct password?

crystal marlin
leaden bronze
#

do a right click and copy and paste it to a text file to make sure its correct output and then paste it in the terminal if it is. sometimes the copy paste doesn't work properly

royal mural
#

tryhackme is suppose to be the password. I typed correctly as the user

leaden bronze
#

case sensitive to

royal mural
#

sorry, its all the same. I copied it, I typed it, it's just not the right password

crystal marlin
royal mural
#

what is the IP of the target machine please?

#

Let's use the IP address of the machine displayed in the card at the top of the room as the IP address and this user, to construct a command to log in to the remote machine using SSH. The command to do so is ssh and then the username of the account, @ the IP address of the machine.

leaden bronze
naive dust
#

Hi how can get a new external IP address for my tryhackme account?

leaden bronze
#

that yellow line has to be the thm ip

#

switch servers @naive dust

#

you shouldn't need a new one tho

glad oyster
#

What's the error message when you disconnect

leaden bronze
#

@glad oyster scrubz?

glad oyster
#

Maybe try run openvpn as a service

leaden bronze
#

so you know how when you connect the vpn it says initialized

#

after a while goes buy it shows some different output

#

thats a disconnect ?

#

yeah. i use sudo openvpn

royal mural
#

I have it working

leaden bronze
#

@royal mural @crystal marlin is hte one who found it

#

i just highlighted it for you to make it easier

#

but glad its working

royal mural
#

I am not sure I can get back out the whole I just dug, but thank you all very much. This was painful.

leaden bronze
#

retracing your steps is always good for learning to get back where you were

#

if you can't get it again then you didn't learn the concept

tribal burrow
leaden bronze
#

@weary spindle oh so even if it doens't show that initialized message, that doesn't mean it died

#

yeah. it will all start getting clearer and clearer for you @royal mural

#

don't get discouraged

half ruin
#

anybody seen this before, im unable to run the vpn file. never had an issue before until now

weary spindle
half ruin
#

regenerated VPN file?

weary spindle
#

Yes, there was an E-mail and an announcement went out to Regen the file.

#

Everyone had to do it as changes were made.

weary spindle
plush bay
#

it changed shadows vpn ip....

weary spindle
#

It changed everyone's I think.

plush bay
#

at least shadows new one is even easier to remember

weary spindle
#

I set it as the name of my VM.

plush bay
#

shadow weird and not use vm for most tryhackme hacking

weary spindle
#

!docs verify

sharp bisonBOT
weary spindle
#

Tey verifying

restive beacon
#

!notify

naive dust
#

Hi do you know how to solve the bloodhound json read issue "file created from incompatible collector"

rustic cosmos
naive dust
#

I see thank you

rustic cosmos
# naive dust I see thank you

no welcome, look carefully when running the collector, I remember it would notify you the compatible bloodhound version

naive dust
#

I'm running post exploitation basics room

#

Will it be better to downgrade the bloodhound or upgrade the sharp hound?

rustic cosmos
#

on your attack machine just git clone the bloodhound repo, then tranfer sharphound to the target & run it

#

this channel is mainly for technical problems

naive dust
#

Ok cheers

placid dirge
#

is it possible to change the username in anyway apart from having to create new account?

sharp bisonBOT
stark hamlet
#

Hi there, I'm trying to access the room dedicated to using & practising the find command within Linux. I'm following the link from within Task 6 in the Learn Linux Fundamentals Part 1 room. When I click through, the response I receive is "Room Is Private" and "If this is an error on our behalf. Please contact us.". I pay the monthly subscription so I think I should be able to access the room. I could be wrong, I'm super new 🙂

weary spindle
#

No, it doesn't work like that.

#

The room is private, possibly it's older content and now deprecated. So it will not longer be used.

stark hamlet
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

rustic cosmos
#

Hello, I'm having a problem with my uploaded VM, I uploaded a Windows Server 2019, and the materials tab showed my VM is successfully converted, did attach the VM to my room. But when I pressed start machine it just did nothing, waited for like 15 minutes, refresh and still can't start my machine.

zinc fable
#

Hi
Please an someone tell me how I can free up my root partition on kali linux?
I allocated 42gb and it's full.

woeful hedge
woeful hedge
woeful hedge
naive dust
rustic cosmos
scenic torrentBOT
#

Gave +1 Rep to @woeful hedge

zinc fable
scenic torrentBOT
#

Gave +1 Rep to @woeful hedge

naive dust
#

umm

#

i installed virtual box and tried booting kali linux but its aborting everytime

cloud panther
#

Question related to getting started with THM. I noticed that when looking into a subscription, payment is not in dollars. It says I am based out of the UK but that is certainly not the case.

weary spindle
#

I'd you're in UK and you load up an incognito page it will show £

It's just a visual bug.

cloud panther
#

No I need it in dollars but it is in £

bronze vale
#

Only people inside England pay pounds

#

They need to update their country

lilac ether
#

Hello!

#

In the phishing emails 4 room, Task 6, 3rd question. (https://tryhackme.com/room/phishingemails4gkxh)
It reads as follows: "One packet shows a response that an email was blocked using spamhaus.org. What were the packet number and status code? (no spaces in your answer)"

The answer to the packet number is 156, which is the Frame number (layer 2)

#

Should it read What were the Frame number instead? Sorry if this question is in the wrong channel

minor shard
#

python3 46635.py -u http://10.10.7.50/simple/ --crack -w rockyou.txt
File "/home/chellou/46635.py", line 25
print "[+] Specify an url target"
^
SyntaxError: Missing parentheses in call to 'print'. Did you mean print("[+] Specify an url target")?

i found it in exploitdb CVE-2019-9053

jovial mango
lilac ether
#

Hello Chamsou, this line:
SyntaxError: Missing parentheses in call to 'print'. Did you mean print("[+] Specify an url target")?
Is a common indicator that the script is written in python 2

#

I would guess you have python 2.7 preinstalled in your system, so just do $ python2.7 46635.py -u ....

#

If you have both installed, you can change your default one with:
$ update-alternatives --config python

minor shard
scenic torrentBOT
#

Gave +1 Rep to @lilac ether

lilac ether
#

🙂

wheat wyvern
crystal marlin
wheat wyvern
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

tawdry orbit
crystal marlin
pastel tinsel
#

@zealous yoke couldn't stop thinking about your termination script and how it also stopped the attackbox, so I did some changes, this script will now terminate all rooms except the attackbox so you can still have the attackbox running

#

TO TERMINATE ALL RUNNING MACHINES
This script will terminate all running machines except your attackbox (or normal kali machine for subscribers), so you can still use it without having to start everything up again.

fetch("/api/vm/running")
  .then((r) => r.json())
  .then((vms) =>
    vms.forEach((vm) => {
      if (vm.roomId === "kali") {
        return;
      }
      fetch("/api/vm/terminate", {
        method: "POST",
        body: JSON.stringify({ code: vm.roomId }),
        headers: {
          "csrf-token": csrfToken,
          "Content-Type": "application/json",
        },
      });
    })
  );
wheat wyvern
#

Still not there.

tawdry orbit
full widget
#

022-11-01 21:51:38 ERROR: Cannot ioctl TUNSETIFF lateralmovement: Device or resource busy (errno=16)
2022-11-01 21:51:38 Exiting due to fatal error

#

I get this error when I use the lateralmovement vpn

#

anyone can help ?

wheat wyvern
woeful hedge
full widget
scenic torrentBOT
#

Gave +1 Rep to @woeful hedge

tawdry orbit
crystal marlin
wheat wyvern
#

Cool. I'll check tomorrow..... Thanks for looking into this for me. Appreciated.

naive dust
#

Hi! I’m having problems connecting any room , I prefer to use my own machine I chose east but it didn’t work then I use west worked for a while after that when didn’t work I download the west vip and worked but just for a while . Also the attack box doesn’t shows the rooms correctly.

#

I’m is east zone

royal mural
#

Hi guys, I am wondering what I am doing wrong. I have a Kali box with openVPN, and I am trying to connect to an attack box, with the IP provided on top of the room.
But I get an error : tryhackme@10.10.91.221: Permission denied (publickey).
Its no big deal as I can open the attack box in the browser, but I would prefer using mine.
I can ping the IP fine.

naive dust
#

Kind of that happen to me

#

I can’t ping the ip in my machine

#

And the openVpN is conectes

#

*connected

royal mural
#

I am able to ping it, I am not sure why I get the denied message, it was working fine a few days ago. But the included box is just fine.

naive dust
#

I don’t know if it is the same problem , but I try three different rooms that I started before and don’t finish , but I have my notes , so I though that maybe the rooms are old or expired like the HTB do. But then I keep trying randomly to see what happens and I got one that works in attack box. But I don’t like to work in the attack box 😬

woeful hedge
#

Have you checked the openvpn room or used the openvpn script on the THM github to see if you're properly connected?

royal mural
#

Yes, I have my own box and I am on the openVPN but I am not able to ssh into the attackbox.
Let me check that now, thank you.

woeful hedge
#

Here's a pinned message of some troubleshooting steps

royal mural
#

The access page reports back that I am connected fine

woeful hedge
#

Can you provide a screenshot?

#

Of the THM page and what you're trying to enter into the terminal

royal mural
woeful hedge
#

I didn't mean the Ovpn page

#

The machine info and your terminal

royal mural
woeful hedge
#

Do you have a link to this room? Can't seem to find it

royal mural
woeful hedge
#

Or is it a sub room

royal mural
#

no

crystal marlin
woeful hedge
#

I am right now

#

Lol

crystal marlin
#

Nah I'm just kidding 😄

royal mural
#

Task 7 is asking to start the machine

crystal marlin
woeful hedge
#

Too late

royal mural
#

It does not in this one, but should I not be able to ssh into any of the rooms boxes?

#

I had a previous room where I needed to execute a bunch of commands from the terminal.

woeful hedge
#

Looking at the instructions, there's no mention of SSHing

royal mural
#

ok, yes, I am aware. Not in the current room.

crystal marlin
royal mural
crystal marlin
#

Or get it from github

royal mural
#

/usr/share/wordlists/SecLists/Usernames/Names/names.txt

crystal marlin
#

Yes, that's part of the seclists package

royal mural
#

Ah ok, I was not aware, nor did I see instructions to get that but I might have missed it. Sorry about that.
Thank you everyone for your help, I learned a lot today.

#

I just saw the instructions towards the end to get it from gitHub, my bad guys.

viscid cedar
#

Hi Team,

In order to obtain "365 Day Streak", I insist on practicing on the website of TryHackMe every day,
Last week, I had more than 300 days of progress, but today, when I checked my progress, it became 4 days,
I don't know why. I feel very sad. Please help me

Account Username: RBPi

naive dust
#

You sure that you keept your streak going every day?

viscid cedar
#

I'm not sure, because I have answered too many questions in the past 300 days. Where can I see my activity log?

woeful hedge
#

!email

sharp bisonBOT
viscid cedar
#

Thank you very much. I have sent an email for help.

naive dust
#

Mmmm

#

What’s going on?

#

Finally I connected to the attack box , but I prefer my kali

winter cipher
#

Hello, I have problems with VPN since yesterday. The connection resets every 2-3 Minutes and I can't connect to any machine. I already changed the VPN Server (I am on EU-Regular-1 now, was EU-Regular-3 before), but the problem persists.

winter cipher
zealous yoke
#

otherwise nice stuff(:

bronze vale
#

Sorry this isn’t a democracy

pastel tinsel
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

silk cargo
#

hi!

#

i have a question over leaderboards. how often is the global/local updated?

ember blade
#

Hi all, whats the most efficient way to have and sync the exact same kali vm copy (newly created folders and all) on two separate computers?

severe kraken
#

Hi I am looking to change my username on the website and it isn’t letting me is there some special thing that I have to do for that?

woeful hedge
#

!email

sharp bisonBOT
woeful hedge
#

Don't expect an immediate response, support is busy at the moment. Lead time is typically 3 days but no guarantee

severe kraken
severe kraken
#

+rep @woeful hedge

scenic torrentBOT
#

Gave +1 Rep to @woeful hedge

woeful hedge
lapis patio
#

Hello, I'm not sure if this is the correct room to ask, but I'll try. Why is room introtopython private for me? My friend has that room available for him, but when i try i cannot access it.

plush bay
lapis patio
#

so there's no way i can access it?

plush bay
#

well if it was made private it tends to be for good reason

#

like it being old and there being better alternatives

lapis patio
#

that's pitty i just wanted to try the last task.. thanks

plush bay
weary spindle
#

You're not.

plush bay
#

thanks scrubz

weary spindle
#

I got a friendly warning for accessing lots of private rooms.

plush bay
#

ah shadow has only accessed a few private rooms.... one of the ones shadow access often shadow joined before it became private and also completed long before it became privatre

#

the find command room that is

weary spindle
#

That isn't private for me.

Because I joined before it got locked.

pastel tinsel
#

TO TERMINATE ALL RUNNING MACHINES
This script will terminate all running machines except your attackbox (or normal kali machine for subscribers), so you can still use it without having to start everything up again.

How to use:
Copy this script, go to your browser with tryhackme running, open developer tools (f12 or ctrl+shift+i) and paste the script, it'll do all the work

fetch("/api/vm/running")
  .then((r) => r.json())
  .then((vms) =>
    vms.forEach((vm) => {
      if (vm.roomId === "kali") {
        return;
      }
      fetch("/api/vm/terminate", {
        method: "POST",
        body: JSON.stringify({ code: vm.roomId }),
        headers: {
          "csrf-token": csrfToken,
          "Content-Type": "application/json",
        },
      });
    })
  );

V2 API

fetch("/api/v2/auth/csrf")
  .then((r) => r.json())
  .then((authData) => {
    const csrfToken = authData.data.token;
    return fetch("/api/v2/vms/running")
      .then((r) => r.json())
      .then((vms) =>
        vms.data.forEach((vm) => {
          if (vm.roomCode === "kali") {
            return;
          }
          fetch("/api/v2/vms/terminate", {
            method: "POST",
            body: JSON.stringify({ id: vm.id }),
            headers: {
              "csrf-token": csrfToken,
              "Content-Type": "application/json",
            },
          });
        })
      );
  })
  .catch((error) => console.error("Error:", error));
#

@bronze vale ^ ❤️

pastel tinsel
#

finally got it to work

harsh mist
#

Could somebody direct me in a good direction, I’m trying to start THM via an oricleVM running Kali but I can’t seem to connect to the server. Ran the oVPN through the terminal and it showed as initialization sequence completed, but still won’t connect. Thanks.

pastel tinsel
#

!vpnscript

sharp bisonBOT
plush bay
naive dust
#

@pastel tinsel Great!! I just use the script and worked ! 👍🏻🎉Thanks!!

naive dust
#

Hello! I remember doing this on a tryhackme room once, but i can't find the room or remember the method i used to do it :')))

#

How do i upload a reverse shell but in a .gif format?

#

the webserver i'm testing has a filter that only allows .gif files, but i found where you can activate the shell

#

i just cant remember how to upload a reverse shell as a .gif format :'))))))))))

pastel tinsel
woeful hedge
#

Have you typed out the full URL as the inductions suggests in task 2? http:// ip /

#

I'm on my phone so I can't test myself, but maybe refresh your browser and the box you're trying to connect to.

woeful hedge
crystal marlin
#

Is that machine still up?

woeful hedge
crystal marlin
#

Ye I guess they shut it down or restarted, since that IP seems down

#

Let me have the IP of the current target machine pls

#

Can you open a "new private window" in your firefox and try again, but make sure it's a "new private window" not just a "normal tab"

#

It can be done via the drop down when pressing the button top right in firefox

#

If you run ip a in your terminal, what's the output you get

#

Also, can you open other websites just fine ?

#

If your kali is a VM, do you have any personal VPN running on your host machine ?

#

I mean, are you connected ?
But ye, disconnect/close it

#

Try sudo ip link set dev tun0 mtu 1200 in your terminal then refresh the page again to see if that changes anything

#

Not sure if the script sets your mtu automatically

#

But just try setting the MTU to 1400 rather than 1200 and see

plush bay
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @dapper wind

woeful hedge
#

Are your DMs open?

#

The bot works, I just tested it.

scenic torrentBOT
#

Gave +1 Rep to @gray loom

hollow mirage
#

Could a Mod please assist me with unlinking my discord account from my thm token?

lean spindle
#

I've tried each US VPN endpoint but the Hackpark machine is just creeping slow. I'm going back through to produce screenshots to accompany my notes and I do not remember this machine struggling this bad.

Has anyone had this issue recently and been able to find a solution?

obtuse kayak
#

my vpn doesn't work when i try to ping a machine it says tll expired or request timed out

woeful hedge
#

!vpnscript

sharp bisonBOT
obtuse kayak
woeful hedge
#

Room and task number?

#

Also, did you start the machine?

#

Green box, usually over to the right of the task

obtuse kayak
#

yes i started the machine

#

its room cyborg

#

i just tried to ping the machine's ip and all the packets are lost

#

also its not just the cyborg room i tried other rooms too and i have the same problem i tried to regenerate my vpn file and reconnect it but still doesnt work

woeful hedge
#

And the site says your connected?

#

If you go to the openvpn room, does it say you're 100% good to go?

#

!vpn

sharp bisonBOT
obtuse kayak
#

yes its connected for sure

#

i have the green light on

woeful hedge
#

Can you verify so you can send pictures?

#

!docs verify

sharp bisonBOT
woeful hedge
#

Don't need your ovpn information, just pictures of what you're entering in the room and the room ip

restive beacon
#

How do I get a badge awarded for a series completed? I have completed all required sections for the Pentesting tools series but the badge is still grayed out.

arctic pike
#

!docs verify

sharp bisonBOT
wise grail
#

getting the following message when trying to download the VPN configuration for Linux
"404 an error occurred " - Uh-oh, this page has been lost in the matrix.

weary spindle
wise grail
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
wise grail
#

i just change to one of the regular server, connecting from middle east

hallow heart
#

Burp Suite issue I can't open provided link http://10.10.234.237/products/ on any browser firefox or Chromium. Mozilla working fine if FoxyProxy OFF but when you turn it on it wont load 10.10.23.237 same with Chromium it wont load it. Interecept working but I can't open it. Default settings , Proxy Listeners 127 0 0 1 8080 , certificate installed but still does not work. It was working once for me maybe 4 days ago but now same issue. Basically it won't open any site , google etc..

weary spindle
hallow heart
#

finally 👍

junior sigil
#

Hi, I have problem with VPN. When I try connected as usually, nothing happens. So i change / regenerate VPN server / config, still nothing. Besides, I cant even start the machine in room, because Im allready started one. Any help?

crystal marlin
crystal marlin
# junior sigil

Looks like you are connected just fine, the access page is not reliable for checking if you are connected or not

#

What's the output you get when running curl 10.10.10.10/whoami ?

junior sigil
#

10.14.35.147

crystal marlin
#

Regarding the machine already started, try to refresh the room page with ctrl + F5

#

If that doesn't help, you can copy paste the 2nd code in that post into your dev tools console: #site-support message

#

But make sure to use the 2nd one that says "To terminate all running machines"

junior sigil
#

@crystal marlin ctrl + F5, it solved both problems, thx, what does the shortcut do?

crystal marlin
junior sigil
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

hollow nimbus
#

Hello,
I'm trying to do the content discovery lesson, but the attack box stops working. I can't even access the exercise machine through the VPN at all.

sharp bisonBOT
hollow nimbus
#

no, the machine is still up

#

yea, I did this on my local VM through the VPN and there it worked. I'm stuck on task 6

#

accessing the exercise machine (in my case http://10.10.210.200/) is really, really slow on the attack box and doesn't work over the VPN at all

#

but is there a reason it doesn't work in the attackbox or is that standard behavior?

#

but I won't even get a ping back to the thm framework website

#

the VPN script adjusted the MTU, going to try again from there

#

lol now I got a proxy error, but that's just burpsuite's proxy. disabling it let me access http://10.10.210.200/ now

#

what should I use instead?

#

thanks for the help. I hope this issue is resolved ``

nova shuttle
#

Is there a way to transfer my thm account linkage to a new discord account? or is it attached to that account permanently

#

@opaque iris old account 😔

woeful hedge
scenic torrentBOT
#

Gave +1 Rep to @woeful hedge

naive dust
#

I am in need of an English speaker for a long time engagement. Please DM me

woeful hedge
naive dust
woeful hedge
#

You're speaking to one, however, what do you mean by "long time engagement". We don't do hacking for hire here

bronze vale
dreamy basin
#

https://tryhackme.com/room/posheclipse <--- The VM for this room which hosts Splunk to anaylze events for the room is impossible to work with. I've tried it a few times (past couple days) and navigating between different menus causes the Splunk webpage to stall out while trying to load. I'm also getting a lot of packet loss while trying to communicate between an attack box / room box and even across the VPN.

fresh oracle
#

i lost my streak :| is that possible to resolve here, or i should mail ?
2nd time actually, cause i couldnt able to access my device yesterday

chilly pike
#

You can email support about that

#

!email

sharp bisonBOT
fresh oracle
scenic torrentBOT
#

Gave +1 Rep to @chilly pike

modest bison
#

Hey, I thought I remember seeing an option to reset all progress. Was that somewhere else I was thinking or was there some way to reset all progress instead of just deleting my account and making a new one?

#

I haven't done anything related to hacking/pentesting in a few years and I feel like a beginner again

crystal marlin
main plank
#

@bronze vale sir can u add me to creators lounge.
Im developing room

bronze vale
#

-arole 778911986779422740 creators-lounge

scenic torrentBOT
#
GiveRole <User:Mention/ID> <Role:Role> [Duration:Duration]

Invalid arguments provided: Invalid role mention or id

bronze vale
#

-arole 778911986779422740 "Creators Lounge"

scenic torrentBOT
#
GiveRole <User:Mention/ID> <Role:Role> [Duration:Duration]

Invalid arguments provided: Invalid role mention or id

crystal marlin
bronze vale
#

-arole @main plank 648695657326182420

scenic torrentBOT
#

➕ Gave the role Creators-Lounge to logic_26#6207

bronze vale
#

Damn bot

main plank
#

😅😅

#

@bronze vale will i be added to Creators-lounge?

bronze vale
#

You already are :D

main plank
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

verbal fulcrum
#

Hello is an admin there ?

#

I am having trouble downloading vpn access

#

nvm It works now (don't know why but It's okay)

steady vortex
#

Just a heads up, another discord scam going around from proexcrypto's

#

Also did a small oopsie and gave my real email instead of the 10 minute one so might be fucked

bronze vale
#

Shouldn’t be giving your email to anyone.

full pulsar
#

hey, so I connected to THM network using openvpn, but connecting to the machine using ssh asks for a password?

weary spindle
#

cls

steady vortex
humble shell
#

help, I cannot connect to vpn ovpnagent: request error

weary spindle
humble shell
#

with the open vpn software

#

I download the profile then hit connect

weary spindle
#

Windows OS?

humble shell
#

yeah

weary spindle
#

Probably a good idea not to use your host.

humble shell
#

who?

weary spindle
#

You.

humble shell
#

what host

weary spindle
#

Is Windows your primary OS?

humble shell
#

yeah

weary spindle
#

So that's your host.

humble shell
#

oh, so I cannot connect on windows?

weary spindle
#

You can, but it's not a good idea.

humble shell
#

why is that?

woeful hedge
# humble shell why is that?

Lack of tool support (somewhat solved by WSL) and a myriad of other reasons. You're better off running a VM on your windows host. It will keep everything segmented

humble shell
#

soo, I cannot use kali for windows? from the windows store?

woeful hedge
#

Iirc there were issues with that? I'm not 100% though

plush bay
#

wsl2 being on the same network as your host
wsl2 being able to access all of your windows files

woeful hedge
#

More along the lines of technical issues, but yes, those would definitely be concerns

unkempt summit
humble shell
woeful hedge
#

Unless you setup a file share, no

#

You're going to have to look at the WSL documentation for specifics into how it interacts with your local files

daring lark
#

I changed of VM and now I can't connect to OpenVPN?
I regenerated the file
and did everything I knew.

#

But it says there is a problem with cypher

woeful hedge
#

!vpnscript

sharp bisonBOT
dapper surge
#

Hi ! I got some troubles to use the AttackBox, i’m disconnected all 20 seconds and i don’t know why…

#

I’m learning the linux fundamentals 3 and my machine disconnect every 20 seconds, i switched off my vpn, but this is always here…

tribal burrow
#

!vpnscript

sharp bisonBOT
tribal burrow
#

might help

woeful hedge
tribal burrow
#

oh

dapper surge
#

Yep 😅

woeful hedge
#

Are you a subscriber?

dapper surge
#

Yes

woeful hedge
#

Hmm ok

#

You mind verifying?

#

!docs verify