#site-support

1 messages · Page 16 of 1

strange sparrow
#

Did you get help, or do you still need assistance?

#

If you are using virtual machines (VirtualBox | VMWare | etc.)

Ensure that you have "Shared Clipboard" => Bidirectional & "Drag'n'Drop" => Bidirectional

That should help if you are running virtual machines

peak lake
#

where is that found (firefox)?

strange sparrow
#

I am assuming that you are using;

Windows 10 -> Host Computer
Kali Linux -> Virtual Machine

peak lake
#

No I just used "Start Machine" on the room

strange sparrow
#

Gotcha. So you are using the built-in computer inside of the browser.

Try this;

Copy the text you want to paste...

CTRL + SHIFT + V

That should paste it.

peak lake
#

Nope

#

Pastes whatever I have on the clipboard of the machine itself

strange sparrow
#

Hmm. Not 100% sure then. I use the OpenVPN and use my computer to connect to the servers from THM

peak lake
#

Well Im just finishing Jr Pen Test Path and my planw as to start working off my own "attack" platform and then doing CTF's

#

just annoying as heck when I need to input a bunch of code haha

strange sparrow
#

I know the feeling.

Copy/Paste is really helpful in almost every circumstances.

sterile steppe
#

Thank you! And thank you for fixing my streak recently. Much appreciated.

scenic torrentBOT
#

Gave +1 Rep to @bronze vale

hardy skiff
#

I contacted support with this question and got a response of "It should be explicitly stated by the room that it can be streamed. If the room does not say it can be streamed, then streaming isn't allowed." So I've been looking for rooms that say in the room that it can be streamed. I did notice some rooms saying that they can be streamed after writeups are approved.

bronze vale
hardy skiff
#

Can I DM you?

bronze vale
#

Mhm

#

Thank you for asking

pulsar frigate
#

hi. I would like to change my username.

weary spindle
#

!email

sharp bisonBOT
spare laurel
#

im here

winged patio
#

Run the vpnsscript in general and tell me what it gives you

pastel tinsel
#

!vpnscript

sharp bisonBOT
pastel tinsel
#

Saw I was too late

winged patio
#

All good

spare laurel
# winged patio All good

actually it says that the operation takes longer time than required and then doesn't do anything

#

is like rarely my VPN works now

pastel tinsel
#

Send screenshots

spare laurel
#

K sure

pastel tinsel
#

And where are you located?

naive dust
#

Hi, I am in this room right now ' Walking An Application' , on this task: Viewing The Page Source, and trying to open the link : https://lab_web_url.p.thmlabs.com/ , but getting 504 error( it worked 30 minutes ago, but not now) could you check it, please? or should i just wait till they get it up and running back?

spare laurel
pastel tinsel
winged patio
spare laurel
spare laurel
pastel tinsel
spare laurel
pastel tinsel
#

Send a screenshot of running the normal VPN

winged patio
#

No tun0

pastel tinsel
#

It gives a better troubleshooting, please add verbose mode

pastel tinsel
#

Oh, then it's new

#

My bad

#

That's why it ain't working then

bronze vale
#

Egypt requires a TCP connection, of which we do not offer

pastel tinsel
#

Ahhhh

#

Yeah, that explains a lot

winged patio
#

@spare laurel are you able to use attackbox?

spare laurel
#

also i wanna work on HTB

winged patio
#

Htb has tcp

spare laurel
hoary veldt
#

I think if you use TCP on openvpn it should work

winged patio
hoary veldt
#

Ahh was thinking of HTB

pastel tinsel
#

Yeah, htb has TCP option

hoary veldt
#

nix box in CSP then 🙂

spare laurel
#

LOL IT WORKED

#

the TCP works perfectly

winged patio
#

Nice

bronze vale
# spare laurel also i wanna work on HTB

HackTheBox, should work, depending on where you are in Egypt sometimes it's a full blacklist on the OpenVPN service and other times it's only a blacklist on UDP connections.

spare laurel
pastel tinsel
#

What's keeping you guys from adding tcp connection? The speed?

spare laurel
#

Why there's blacklists on UDP tho

hoary veldt
#

Ask the Egyptian gov

bronze vale
winged patio
#

While there’s a site mod here. If someone uploads a machine intended for koth can it get added for koth

bronze vale
naive dust
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
spare laurel
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

pastel tinsel
bronze vale
winged patio
#

Thanks

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

spare laurel
#

Bruh

#

i got scared when i solved the first startpoint challenge

#

there's an output sound idk where did it came from ahahahahah

spare laurel
#

Bro i think i need to go to a doctor

tawdry orbit
spare laurel
tawdry orbit
spare laurel
chrome yacht
#

Hey guys, I am connecting to tryhackme vpn box using openvpn in kali wsl and I can access the machines inside the kali terminal but not on my windows. What can I do to have access to the machines/ips in both my windows and kali

pastel tinsel
chrome yacht
#

my idea is to not use a vm instead finish all the necessary steps to solve the machines only in windows and my idea is to use kali wsl

pastel tinsel
chrome yacht
pastel tinsel
chrome yacht
#

Thanks @pastel tinsel this should be enough

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
chrome yacht
#

okay I will do that

chrome yacht
#

It is working fine thanks

#

I am able to get a reverse shell without a problem

pastel tinsel
#

Nice!

fiery scarab
#

Is there a way to change the country of my account? Mine was set to England and idk why

fiery scarab
#

thank you

fiery scarab
#

United Kingdom ik sorry

solid path
#

The filter "Hide Completed" on the My Rooms page doesn't seem to work. It remains displaying all rooms.

chilly pike
#

the team is aware of it and IIRC they are working on a fix for that

spare laurel
#

Morning everyone

chilly pike
#

this type of msg would belong in #site-bugs for future reference 🙏

spare laurel
#

How do u guys set a GIF picture on THM

chilly pike
#

you need nitro for that but this is not a tech-support question 😄 tech-supp is for THM site related issues

spare laurel
#

not discord

chilly pike
#

ooh

graceful grail
#

I have issue with ovpn

#

after finding ways to make it work from the Terminal, it doesn't load the desired IP address from the browser, It doesn't connect from Burpsuite alsp

tribal mason
#

Firstly, are you sure FoxyProxy is turned off while you are trying to enter the desired IP from browser? (As the packets go intercepting in Burp Suite)

graceful grail
#

I do not have FoxyProxy extension

pastel tinsel
#

Can you send a screenshot of the vpn connection

graceful grail
#

That's a screenshot of the ovpn instance on the Terminal

pastel tinsel
#

And try ping 10.10.10.10

tribal mason
#

the VPN is running in tun1 and it's 1500 mtu

pastel tinsel
#

Mtu isn’t a problem, but tun1 is

#

!vpnscript

sharp bisonBOT
tribal mason
#

It's a problem, take a look at this message

graceful grail
#

Here's ping 10.10.10.10

pastel tinsel
#

Yeah, run the script i linked, it’ll fix the problems

graceful grail
#

Okay. on it

tribal mason
#

Does vpn script fix extra tuns?

pastel tinsel
#

Yes

#

Kills all running openvpns

graceful grail
#

Here's the error message I got

pastel tinsel
#

Sudo killall openvpn

graceful grail
#

done. restart the troubleshooting script?

pastel tinsel
#

Yes

tribal mason
#

It looks like It doesn't even work at 1000 MTU

pastel tinsel
#

It’s “failing” cause it’s above 1000 it’s a script problem

#

If it’s still broken just run vpn and give this command in a different terminal
sudo ip link set dev tun0 mtu 1200

graceful grail
#

it still failed at 1000 MTU

tribal mason
graceful grail
#

okay

bronze vale
#

OpenVPN should be running at the same time as the command

tribal mason
pastel tinsel
#

It does yet, if it doesn’t break first with the message that emperor shows

solid path
scenic torrentBOT
#

Gave +1 Rep to @chilly pike

pastel tinsel
#

Yeah, i have read through the code like 15 times 😄

old gust
#

Hello! I want to view my certificates that I achieved completing subscription rooms, now that I do not have access I can press the button "Certificates" because it ask me to subscribe. There must be a way to get my certificates since I have completed the room. Any help?

pastel tinsel
#

Well not script script, but the mtu checker yes, i’ll play around with it myself

#

I ain’t sure which is why i want to play around with it, i haven’t had time lately to do it 😄

hollow nimbus
#

Kind of feels like cheating, but is there a way to get a streak back?
I just moved before the holidays and with all the stress lately I forgot to do a few questions yesterday and only realized after midnight. The same happened to my gf, but unlike me she is doing Duolingo and there she has a streak saver (with which she is now taunting me).

pastel tinsel
#

Contact support

tribal mason
#

!email

sharp bisonBOT
placid prism
#

I think there is something wrong with the static THM badge, originally and then after regenerating, the rank and completions don't match and aren't accurate. Anyone else?

teal mica
#

Hey! Could one of the mods please remove the token from my old account? Would be nice!

thorny spruce
#

How do i set up burp suite to capture traffic coming from other browsers than burp chromium?

tribal mason
weary spindle
#

Or any other browser.

#

Not limited to firefox.

tribal mason
#

I see, yeah

#
WonderHowTo

One of the best ways to dig into a website and look for vulnerabilities is by using a proxy. By routing traffic through a proxy like Burp Suite, you can discover hidden flaws quickly, but sometimes it's a pain to turn it on and off manually. Luckily, there is a browser add-on called FoxyProxy that automates this process with a single click of a ...

thorny spruce
#

Thank you 😄

broken bear
#

Foxy Proxy is one way. For other browsers, you have to set the proxy setting to the BurpSuite proxy port.

zenith briar
#

What happend with this error?, I don't understand:

#

fire.windcorp.thm’s DNS address could not be found. Diagnosing the problem.
I edit the /etc/hosts

#

I send a ICMP with ping to the host and I don't have response**

lyric tree
#

in the LinPrivEscNFS room, task 11, I have to run a compiled binary on the target machine. But the target machine can for some reason not run the binary I have compiled because it needs a version of GLIBC which is not present. Nor is gcc or any other alternative for compilation present on the machine. Does anyone have an idea on how to solve this?

plush bay
# lyric tree in the LinPrivEscNFS room, task 11, I have to run a compiled binary on the targe...

you do not need to use a compiled binary..... also if you want to use that you gotta make a static binary that has all the libs built in or cross compile...
a better idea is to live of the land idea of using a binary that is already on the target and changing that to have suid bit set.... shadows recommendation would be the /bin/bash binary which then after can be run with ./bash -p to get a root shell

lyric tree
#

so i should move a copy of bash with SUID onto the NFS?

plush bay
#

nah move a copy of bash into the nfs folder.... then follow along with setting suid bit on the file in the nfs share and setting owner and group to root... it kinda goes over this in the task text

#

or maybe it doesnt..... one of the older linux priv esc rooms use bash binary with nfs to get a root shell and it is most definitely the easiest way to get a root shell from nfs

lyric tree
#

aight thx, ill try and give it a shot

plush bay
#

good luck

lyric tree
#

@plush bay my version of bash also requires the GLIBC_2.33 lib :( i would have a source a bash version that matches the box GLIBC version

plush bay
#

hence why shadow refered to living of the land

lyric tree
#

i am, but the target machine cant run it because it doesnt have the lib

#

its incompatible

plush bay
#

you mean to tell shadow the target machine can't run the bash that is from the target machine and already on the target machine???

lyric tree
#

no no 🤣 i cant do anything with the bash on the target machine, no permission

#

am i just missing somthing or is the room bugged?

plush bay
#

on the target machine where you got a shell cp /bin/bash /path/to/nfs/share/folder
on attack machine
chown root:root /path/to/nfs/bash
chmod +sx /path/to/nfs/bash

#

then finally on the target machine:
./bash -p from the folder where you copied bash too

lyric tree
plush bay
#

how the hecks do you not have write perms to /tmp????

fiery scarab
#

I have issues with connecting to exploitingad network. It says that I am connected with the VPN, I have also set the DNS as needed and yet I cant reach http://distributor.za.tryhackme.loc/creds or ping any of the machines

lyric tree
#

i should have🤔 i think i dont have perm for reading the bin directory

plush bay
fiery scarab
#

the specific exploitingad vpn

plush bay
fiery scarab
#

for the network

round lark
#

Sorry if this isn't the right place, but how does the try hack me prize distribution work? Is there someone I can email?

fiery scarab
#

yet I cant ping any of the machines idk

plush bay
#

welp dunno then icebreak

plush bay
lyric tree
fiery scarab
#

oh true right

#

ok I ran nmap -sn -pn $Ip and it seems that the host is up

#

but still I cant reach the domain idk

lyric tree
#

uuhm shadow, if i run the copied bash i dont get elevated privs even throug it has suid??

plush bay
lyric tree
round lark
scenic torrentBOT
#

Gave +1 Rep to @lyric tree

plush bay
lyric tree
plush bay
round lark
lyric tree
plush bay
#

sigh

lyric tree
#

😭

fiery scarab
#

I'm still having problems with configuring the DNS, I have the nameserver IP in resolv.conf, I have restarted NetworkManager but still it no work idk

plush bay
# lyric tree 😭

on the target machine where you got a shell cp /bin/bash /path/to/nfs/share/folder

on ATTACK MACHINE
chown root:root /path/to/nfs/bash
chmod +sx /path/to/nfs/bash

then finally on the target machine:
./bash -p from the folder where you copied bash too

#

i.e you can change the permissions of the file in the nfs share that you have mounted on your attack machine

#

but you can't change them on the target machine

lyric tree
fiery scarab
#

huh?

#

whats wrath#2

#

idk I am connected to the network vpn

#

I am using my own Kali machine

plush bay
#

it should have been really easy but shadow has no clue where you are getting stuck geo

plush bay
plush bay
# lyric tree 😭

could you send a screenshot of you running the chown and chmod commands....

fiery scarab
#

idk, it worked like an hour ago. But then the network got reset and now I cant reach the domain. The IP of the DNS did not change tho

plush bay
#

as what you were trying was for some bash in some other place

#

you need to specify the right path

lyric tree
#

@plush bay

#

same on the target machine

tribal mason
#

use sudo

plush bay
#

okay have no fucking clue what is causing said issues... this process has worked for everyone else

#

oh yeah sudo

#

obviously

#

everyone else ran kali in root user mode

#

thanks @tribal mason

scenic torrentBOT
#

Gave +1 Rep to @tribal mason

lyric tree
#

still doesnt seem to work🤔 the command does seem to work, but the bash binary still doenst elevate my privs

tribal mason
#

because you assigned it to root...

fiery scarab
#

yes just run it with sudo..?

plush bay
#

but you better check ls -lah /tmp/bash on the target machine too

lyric tree
#

yeep, ill do that and if it doesnt work i will restart the vm

tribal mason
#

I don't think you need to restart it.

lyric tree
#

i think, i have messed somthing up along the process

fiery scarab
#

is this some room that you are doing? sry I havent read the whole conversation

tribal mason
#

Yeah, what is bash file doing in your VM?

#

is it supposed to be in the target machine?

fiery scarab
#

ye?

plush bay
lyric tree
#

im doing a SUID bit set exploit on a file share network, but the target vm's compiler is outdated

tribal mason
lyric tree
#

and so i cant run any bin from my own vm

tribal mason
#

Oh that's really bad

plush bay
#

it is the living of the land by copying the bash and setting suid bit and owner of the file through nfs to get a root shell

#

like the old example priv esc room

#

this newer priv esc room explaisn it terribly sadly enough

#

as it tries to instruct you to cross compile

lyric tree
#

@plush bay im litteraly out of ideas at this point

fiery scarab
#

can someone tell me the process of configuring dns on Kali machine. I've done this many times but for some reason I can't get it to work rn after the network got reset

#

maybe someone is doing it differently then me idk

plush bay
# lyric tree

seems you got the right perms on the bash binary now... if you also have the sudo chmod +x ./bash too

lyric tree
tribal mason
plush bay
#

shadow feels like they are running in circles here

tribal mason
#

OK, I'm getting confused just right now

lyric tree
#

it litteraly just wont work

#

no errors and nothing

#

but just doesnt elevate

plush bay
#

on the target machine can you do ls -lah /tmp/bash

#

and show the output

lyric tree
#

@plush bay

fiery scarab
#

idk man it literally worked like an hour ago

lyric tree
fiery scarab
#

ye I need 4 more votes for that

#

right after it got reset I couldnt reach the domain

#

and the IP hasent changed

lyric tree
#

dang, i dont have much experience with dns bc i hate it. AND IT ALWAYS GOD DAMN DNS

tribal mason
lyric tree
#

yeep still notting :(

plush bay
fiery scarab
plush bay
#

seems you already got the root shell just did not notice

#

or at least you are launched into some shell with bash

lyric tree
#

still karen

#

🤣

#

yes

plush bay
#

type exit

lyric tree
#

but its like the suid didn't play its part

plush bay
#

then type /tmp/bash -p again

#

you need the -p

#

and show screenshots again after doing that

#

also you have just made shadow wanna quit helping now but don't worry they wont

lyric tree
#

its like the bin wont even work now that i execute it again.

lyric tree
#

but i aint no quitter

#

i will find another way if this doesnt work

#

lol

plush bay
lyric tree
#

hmm?

plush bay
#

ls -lah /tmp/bash again please

#

somewhere you must be doing something weird but where the FUCK shadow is starting to be annoyed at

lyric tree
plush bay
#

also probably use id instead

#

ah

lyric tree
#

makes no sense

plush bay
#

you somehow lost the suid bit perm for /tmp/bash

lyric tree
#

BUT ITS STILL THERE

#

?????

#

on the file perms

plush bay
#

nope it is saying 777 not 04777

lyric tree
#

omfg

#

why

plush bay
#

or rwxrwxrwx and not rwSrwSrwx

#

so sudo chmod +s ./bash on the kali machine again

lyric tree
#

yeep, just did that, and still karen after i execute it

plush bay
#

ls -lah /tmp/bash again

lyric tree
#

-rwsrwsrwx 1 root root 1.2M Jan 3 20:34 /tmp/bash

plush bay
#

how many times shadow got tell you to use commands to check the perms is a good question

#

okay now the perms are right... so now do /tmp/bash -p then id

lyric tree
#

bash-5.0$ /tmp/bash -p
bash-5.0# id
uid=1001(karen) gid=1001(karen) euid=0(root) egid=0(root) groups=0(root),1001(karen)
bash-5.0#

plush bay
#

if everything worked it should tell you euid=0(root) egid=0(root) somewhere

#

ah there we go

#

that is a root shell

lyric tree
#

lol yea just saw it egid

#

and euid

plush bay
#

well there we go then

lyric tree
#

thx for the help and sorry about ruining your night

plush bay
#

finally got what we wanted

lyric tree
#

lol

plush bay
#

guess it is relax now

lyric tree
#

indeed

hardy mountain
#

Is it "normal" for some commands to not work on TryHackmMe? For example I used an nmap scan on a target and the expected results don't show up. I watched a walkthrough of someone inputting the exact same commands and the results appeared instantly for them. Is there sometimes issues with the target machines?

hardy mountain
# bronze vale Which room?

I'm on the Nmap room specifically the portion labeled "Practical" I used the "Attack Box" instead and all the commands work and the scans are really quick, but when I use my personal Kali Linux VM the nmap scans take very long to scan and when the scan finishes they dont show the expected results to answer the Q's

bronze vale
#

I presume you're using the exact same command?

hardy mountain
bronze vale
#

If you could send your OpenVPN output log here, I can check it for you

#

You will have to verify to send screenshots

#

!docs verify

sharp bisonBOT
plush bay
#

probably also make sure you are not running multiple instances of the openvpn

hardy mountain
bronze vale
#

Where is your VM located?

hardy mountain
#

So I use an application called "Parallels" which is stored locally on my Mac

bronze vale
#

Mhm, I'm familiar, aren't you using the Parallels GUI?

hardy mountain
#

My bad by Parallels GUI do you mean using the Kali Linux GUI?

bronze vale
#

Yes, potato potato 😆
You shouldn't need to SSH from your Mac.

Open parallels, select the Virtual Machine you are looking to start, and then start OpenVPN from within the virtual machine.

#

From the screenshot you have provided, you are not connected to the VPN successfully

hardy mountain
#

Oh right 😅 I just ssh into it so I can still use the applications that are on my Mac, like Obsidian to takes notes. It's just a convenience/luxury thing to be honest.

#

This is a screenshot of the vpn connection that is on the VPN without using SSH. Also how can you tell if the connection is successful?

bronze vale
#

It should say "Initialization sequence complete" at the bottom if it is successful

#

Does this Virtual Machine have an internet connection?

#

For example, can you use ping google.com

hardy mountain
#

I am getting replies when pinging 8.8.8.8 also I redownloaded the vpn and got the "initialization" message you mentioned. I think we're good to go now

bronze vale
#

Awesome sauce, try completing the room again (or at least the nmap scan) and let me know if the results differ

hardy mountain
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

bronze vale
#

Not a problem:)

ripe geyser
#

Hello, not sure if this is the appropriate place to report/discuss this but I'd like to verify something.

I'm in the Introductory Networking, Task 6, Question "What switch would you use to specify an interface when using Traceroute?"

I'm using Ubuntu 22..04.1. When I do a 'man traceroute' I don't see the -i switch mention to change the interface. I took a guess at it and got the answer correct though and I'm not sure how/why.

Why isn't this switch documented in the man pages that were displayed to me?

nocturne dirge
#

how to update time for events

spare laurel
#

Can someone help me installing tmux??

#

there's a lot of stuff in the github idk how to follow along

pastel tinsel
spare laurel
small hedge
#

how do I change from monthly to anualy?

weary spindle
#

Cancel and wait until its run out.

#

You'll still have sub benefits until the point it runs out.

tribal mason
#

Are you sure that FoxyProxy is off? (It's a browser extension used for burp suite most of the time)

#

Then you may try this command:
sudo ip link set dev tun0 mtu 1200

#

No problem

#

The command simply turns down the maximum amount of data that can be sent across the VPN tunnel. The default value is 1500 and we are turning it down to 1200

#

why? kekw

#

It's fine to inquire about the command you just entered

#

perhaps

#

tun0 is the interface

#

you can see the interfaces with the command : ip a

peak lake
#

How do I get my certificate to show my name?

tribal mason
#

I think because the client can't handle too much packets, correct me if I'm wrong

tribal mason
peak lake
#

I have done that?

tribal mason
#

After receiving the mail?

peak lake
#

I didnt get any kind of mail ?

tribal mason
#

Don't you receive the certificate in mail?

peak lake
#

nah it downloads

tribal mason
#

Oh my bad, I don't know how it's updating

plush bay
peak lake
#

guess i will photoshop it then....

#

or could reset progress on just one module reset the certificate?

plush bay
#

just make sure to set the full name variable now so the next cert you get will have the name you want

plush bay
tribal mason
#

Can the staff fix it?

plush bay
#

nope staff can't fix it either

rotund ether
#

Anyone know if TP Link archer t3u plus have monitor mode and packet injection?
Idk if i should get t2u or t3u

plush bay
#

it is a common problem and so far there is no neat solution

rotund ether
#

All of these work with kali with drivers for adapter?

peak lake
plush bay
peak lake
#

does this count as a bug bounty haha "You need a check to force name field to be filled to print a damn cert"

proud sky
#

Hi Everyone, I'm not able to connect to the AD network even after configuring DNS from Network manager and setting up the VPN in Kali.

#

Can anyone help me out in this?

hollow nimbus
#

is there a way to disable the glitter that rains down whenever you finish a room?
I really, really hate it and the time delay makes it even worse.
I've tried using a cosmetic filter in ublock, but it disabled the whole overlay including the fake pop-up, making it impossible to navigate the page after it is triggered.

plush bay
#

question: do anyone else have problems using python3 to connect to the brainstorm machine for the buffer overflow??? shadow gets that it always fails to connect

weary spindle
#

And post the out put.

broken bear
plush bay
#

rolls head on keyboard why no wanna connect stupid python

#

thm vpn troubleshoot script finds no errors...... nc to the ip and port for it works

#

but somehow python can't connect to the socket

plush bay
#

well that is interesting.... rewriting the exploit in python2 on the attackbox and running it from there made it meeping work

halcyon blade
#

Hello, I'm working on the Internal Penetration Testing Challenge but I can't access to internal.thm/blog/wp-login.php as it's resulting to a timeout request. But I can access through <IP>/blog/wp-login.php. I can't login - using the creds found in scanning - or "lost your password" ==> timeout request from either internal.thm/blog/wp-login.php or with the <IP>/blog/wp-login.php. I tried through the attack box and VPN on my host machine with same result. At this point, the internal.thm result in a timeout request. Any help to resolve this? Thanks

proud sky
#

Set the method in Network Manager to "DHCP (Addresses only)" it works

warped knot
tribal mason
#

you can use this command for shortcut:
sudo echo "<TargetMachineIP> internal.thm" >> /etc/hosts

lyric tree
#

Does anyone know to change the country that your account is set too?

tribal mason
warped knot
#

this

lyric tree
#

thx <3

tribal mason
#

(This API will change your country to where you are presently located.)

naive dust
#

the supprt on thm website is too slow

tribal mason
#

You can contact support with email, It should be faster

naive dust
#

how long until one's ticket is resolved?

tribal mason
#

!email

sharp bisonBOT
weary spindle
#

The support ticket is an email.

naive dust
#

yeah, the email i received is the same i received when i applied to a job posting on their site. That i will receive a response within 2-3 days. But i guess I am not receiving any response back.. because i never got any response back from their team. Even if suppose the application was rejected, they never replied.

weary spindle
bronze glacier
#

Hi there, I am trying to do the "Upload Vulnerabilities Tutorial room" I have set up the hosts file on my attack machine and when I try to enter demo.uploadvulns.thm it redirects me to Rick Astley's video - Never gonna give you up https://www.youtube.com/watch?v=dQw4w9WgXcQ

I have tried to restart the machine but it seems that it is automatically put back, can you take a look at it please, Thank you.

plush bay
#

lmao

broken bear
# bronze glacier

This is intended behavior - there's a giant red box that says not to actually go to demo.uploadvulns.thm.

plush bay
#

the rick rolls strike again

bronze glacier
#

I have to do the room to learn to read. Thanks and sorry

plush bay
bronze glacier
covert parcel
#

yo @plush bay in thm can i change/update the discord token cuz i lost the old acc

plush bay
covert parcel
#

bet thanks for the second time

woeful jetty
#

Why does the completed room still show in My Rooms tab even when I checkbox the "Hide Completed Room"

#

could anyone help me out ? its been like this over a week and i've tried everything like refresh, recheck etc? anyone else having the same problem?

chilly pike
woeful jetty
#

Aaah oki, I thought I was the only one so i was worried

#

then its alright!

#

@chilly pike thanks

scenic torrentBOT
#

Gave +1 Rep to @chilly pike

safe kraken
#

The buffer overflow 1 room is not giving me "EIP contains normal pattern : ... (offset XXXX)" like it should

#

anyone else having issues?

#

changed string length to 400 and everything

#

Nevermind, the server crashed

#

Must be problems tonight, bummer

#

Got it back up, now all the program tiles are out of place

#

Alright 5th time is a charm. Just have to keep trying, terminated machine and started a new one. Got my EID

#

*EIP

#

Any other OSCP courses on THM that explain in more detail what is actually occurring without having to supplement with outside reading?

neat mural
#

Good Morning. I'm having trouble with the Metasploit: Exploration room. When I run db_nmap -sV -p- xx.xx.xx.xx on my own kali system it just sits there. but when I do it on the attack box it works fine. Any advice would be appreciated.

weary spindle
#

@slate geyser

Did you start the machine with the green button?

slate geyser
#

yes i did

weary spindle
#

Are you on the attackbox or a vm?

slate geyser
#

i use my computer because these two are so slow

weary spindle
#

Windows?

slate geyser
#

no ubunto

weary spindle
#

Are you on the vpn?

slate geyser
#

no i don't have any vpn

weary spindle
#

!vpn

sharp bisonBOT
weary spindle
slate geyser
#

thank you

slate geyser
weary spindle
slate geyser
#

is that a command that i should run in my terminal?

slate geyser
weary spindle
slate geyser
neat mural
slate geyser
neat mural
#

then it should be '''openvpn /home/Ely_wac/Downloads/yousfi.wacime1.ovpn'''

slate geyser
scenic torrentBOT
#

Gave +1 Rep to @neat mural

neat mural
#

if you can ping your target box you should be good

#

on kali you see a new ip on the top right when it connects

#

test

slate geyser
#

i'm using ubuntu, and i still can't connect to the ip giving to me on content dicovery path

neat mural
#

what do you get when you run ip a

slate geyser
#

Firefox can’t establish a connection to the server at xx.xx.Xxx.Xxx

neat mural
#

are you keeping the terminal open after you run the openvpn command ?

slate geyser
#

yes

#

that is the last line:
2023-01-05 09:50:29 Restart pause, 300 second(s)

neat mural
#

oh its failing to connect

weary spindle
#

Are you on an org Internet, or your own?

slate geyser
#

on my own i guess

#

yesterday i finished the first path without any vpn i was able to access the adress given to me

weary spindle
#

On the attackbox?

#

Or not connecting to a VM?

slate geyser
#

no not connection to VM

#

i used my browser

neat mural
#

open your open vpn config in a text editor, look for the remote ip on line 6. see if you can ping that ip.

#

dont include the port at the end

slate geyser
#

what is supose to happen after doing that?

neat mural
#

well you will either be able to ping it or not

slate geyser
#

alot of these lines one after the other

neat mural
#

so it is reachable

slate geyser
#

and what now?

#

morocco

neat mural
#

try this
cd ~/Downloads
sudo openvpn yousfi.wacime1.ovpn

slate geyser
#

i guess i close the previous one

neat mural
#

if you dont get any errors do
ip a
and see if you have a tun0 interface.

neat mural
slate geyser
#

ERROR: Failed to apply push options

#

ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.

neat mural
#

Im not sure how to fix that. Have you tried regenerating your VPN config ? or change to another vpn server?

neat mural
#

change your server

#

then regenerate your config

#

delete the old config you downloaded

#

download new one

#

then try it again

#

a reboot might also help, you never know.

slate geyser
scenic torrentBOT
#

Gave +1 Rep to @neat mural

neat mural
slate geyser
neat mural
#

no

slate geyser
#

how can i do that then?

neat mural
#

pick a server from the dropdown

#

don't pick any of the ones with VIP in them

slate geyser
neat mural
#

not working?

slate geyser
#

no

#

same error

neat mural
#

im not sure then

slate geyser
scenic torrentBOT
#

Gave +1 Rep to @neat mural

neat mural
slate geyser
neat mural
#

use rufus to make your bootable usb then you can have persistence.

glacial hound
slate geyser
neat mural
slate geyser
neat mural
slate geyser
scenic torrentBOT
#

Gave +1 Rep to @glacial hound

neat mural
#

happy hacking tipsfedora

slate geyser
random lynx
#

Hello people, I am having trouble with accessing the network for AD enumeration room (https://tryhackme.com/room/adenumeration#). I was progressing normally and everything worked fine then I suddenly got disconnected and I cannot reach the machines anymore, I rebooted my machine to be sure but nothing changed. To be precise, I am connected through the VPN, I added the DNS config as specified in the room's first task (I can see the interface "enumad" has correct DNS server and domain with systemd-resolve --status), I have the route set up, but I cannot even ping the machines... Do you have any idea where the problem could be ?

weary spindle
random lynx
weary spindle
#

The*

random lynx
#

you mean add a new line like thmdc.za.tryhackme.com 10.200.8.101 ?

weary spindle
#

You don't need the thmdc

Just

nameserver 10.200.8.101

#

Place it above 127 etc

#

So it will be

nameserver 10.200 etc nameserver 127 etc

random lynx
#

well isn't this the point of the command systemd-resolve --interface enumad --set-dns $THMDCIP --set-domain za.tryhackme.com given in first task ? Plus I cannot ping the machines, it does not seem to be a DNS pb

weary spindle
#

Rarely if even, but it does happen

random lynx
#

Yes, I see in Wireshark the traffic goes to the gateway but there is no answer, the problem seems to come from the network

#

It is only two votes from resetting btw 🕵️‍♂️

weary spindle
#

You can reset it every 30 mins or an hour.

#

Can you link me.

#

?

random lynx
weary spindle
#

Ah, wrong subnet.

I can't help.

random lynx
#

OK thanks for your help anyway 🙂

neat mural
#

does it work if you disable your firewall ?

#

then its not your firewall

#

have you tried another browser ?

#

you can also ping 1.1.1.1 and google.com
if you can ping 1.1.1.1 your internet is working if you cant ping google.com your dns isnt working

#

it might be messing with your DNS

#

🥳

#

might not be on the default port

#

nmap it

#

🤣

crude mango
#

Using the web based Kali attack box, Foxy Proxy extension seems to be missing now?
I'm trying to do Upload Vulnerabilities room, Task 7: Bypassing Client-side filtering and noticed FoxyProxy is missing now.
Burpsuite also showed a warning the installed version was released over 3 months ago and might need to be updated: running Community v2022.8.5?

I think I can progress using Burp's inbuilt browser, but wasn't sure the BURP Proxy settings to create a manual Proxy profile

neat mural
#

I also got stuck there

#

just dont update burp

scenic torrentBOT
#

Gave +1 Rep to @neat mural

random lynx
#

Hey, sorry for the delay. No I am using my host running with Mint

#

There is but "for Kali" so I ignored it so far. I will try but I did the 5 first task without touching networkmanager

#

Ok, I did the network manager thing and it works now thanks 🙂

#

But it works also when I remove it from the Network Manager now haha, I think there was a pb with on the network side

#

adding dns should not impact ping connectivity

neat mural
#

looks like its your AV

#

if you dont have one installed its windows defenter

#

Nice

#

sorry was still looking

#

✌️

#

im not sure. I only use windows under duress 🤣

slate geyser
neat mural
slate geyser
#

and nothing will be saved i guess

neat mural
#

then when you live boot select live boot with persistence

#

you can also encrypt the persistent volume

#

if you want

neat mural
#

gime a sec

slate geyser
#

okey

neat mural
#

this is the link i used

#

you only need to go up to step 3

#

the encryption part is optional

#

nice

slate geyser
#

and the data will be saved on my USB or on my disk drive?

neat mural
#

it will be saved on the usb. I used a 16GB flash , made my partition 8GB

slate geyser
#

i have a 16GB to, do you think that will be anough?

neat mural
#

yes, you just want to save basic things in there for now

#

like your open vpn config, so you dont have to se it up every time

slate geyser
#

yep just for tryhackme

#

thank you so much

distant field
#

is there no way of copying from a windows attack box? when i am in a linux attack box the clipboard thingie appears, but it isnt on the flare vm one

tribal mason
distant field
#

There isn't one on the windows box. and CTRL+SHIFT+C doesnt work either it seems.

tribal mason
#

windows box? split view rooms?

distant field
#

Yes

#

task 17, day 12 advent of cyber malware analysis

tribal mason
#

Can you check clipboard permissions for the tryhackme website?

distant field
#

it's on ask by default

tribal mason
distant field
#

Chromium

tribal mason
#

Check this

distant field
#

I will, thanks @tribal mason 🙂

scenic torrentBOT
#

Gave +1 Rep to @tribal mason

supple schooner
#

Hi, I'm trying to enable 2FA for my account and once the QR is scanned and added to the Google Auth, the code provided not accepted by tryhackme to proceed, Iget the error message "Uh-oh! That authentication code is not valid." and in the network response {"status":"error","message":"Two factor authentication is not enabled!"}

#

There seems to be another issue in "My Rooms" page where "Hide Completed" check box not functionating

frank parcel
#

hello team, was playing with a simple ctf (i am a newbie) and was trying to connect to an FTP server and getting this, am i doing something wrong?

frank parcel
honest sparrow
#

hello, can someone help me regarding vpn issues? My vpn stopped working. I already tried to switch servers and the issue remains. I ran the troubleshoot script and it redirects me here to the discord support :/

neat mural
honest sparrow
neat mural
#

do you get any errors ?

#

If you are running it from the terminal you should be able to see them.

honest sparrow
#

I sent you pm

rotund ether
#

For wifi adapters, do i need to install drivers on both virtual machine with kali and my windows machine for it to support monitor mode or just windows?

neat mural
rotund ether
#

Okay, thanks so much for fast response

rotund ether
#

Im getting tp link archer t3u plus today and will try to test it

rotund ether
#

I didn't like cheaper one everyone is recommending because it so big, well this one is too but its just antenna that is big

neat mural
#

it looks minute

#

maybe you can swap the antenna for a smaller one, to no get noticed...

rotund ether
#

Yeah it would be little suspicious to have it in public haha

#

But someone with zero knowledge what this is wouldn't even bother probably

neat mural
#

Im not so sure. How often do you see someone out in public with one of those?

rotund ether
#

Well never really saw one haha

neat mural
#

So if you get seen with one youll stand out

rotund ether
#

Yeah that's true

novel leaf
#

Is the THM 2FA Working for you guys ?

#

I tested 2 auth apps but nothing

weary spindle
#

2fa is released?

tiny bolt
#

im using aegis

weary spindle
#

@bronze vale Do you know?

glacial hound
glacial hound
weary spindle
#

Oh, I've found it.

tiny bolt
#

I noticed that the "Hide Completed" option doesn't seem to be functioning on /rooms anymore, it only works on /hacktivities?tab=search (at least for me, today)

#

if i change pages then toggle it, it just sends me back to the first page

pastel tinsel
tiny bolt
#

ok thank you

novel leaf
scenic torrentBOT
#

Gave +1 Rep to @glacial hound

halcyon sparrow
#

How can I verify in this server ?

pastel tinsel
#

!docs verify

sharp bisonBOT
pastel tinsel
#

follow the link 😄

halcyon sparrow
#

Thank you so much sir!!!

tribal mason
#

not a sir

naive dust
#

Hi support team, I recently have an issue

#

Hydra runs extremely slow on attackbox. I can only check around 60 possible passwords per min...

#

Is it normal like that? What are the workarounds?

vocal wyvern
#

in discord says that im 0x7

#

but i am 0x8

#

can i update saying something to the bot?

pastel tinsel
vocal wyvern
#

thank you sir.

#

just !verify?

#

thats it?

pastel tinsel
#

With your token

vocal wyvern
#

alright

#

thank you sir.

pastel tinsel
#

Same command as the first time you verified

vocal wyvern
#

kyooty one more thing

#

when i click on ppls in discord they have few thing on it

#

kind of certificate i dont know

#

what can i get that?

#

how*

#

can i get that

pastel tinsel
#

If you have a certification that you would like to get as a role, then if a mod is in the chat (usually #general ) you can ask them nicely to add the role

vocal wyvern
#

ah thank you sir.

pastel tinsel
#

You're welcome

#

@chilly pike can help you, she is around right now

chilly pike
#

May I DM you Zeero?

vocal wyvern
#

yes sir

chilly pike
#

thx @pastel tinsel 👍

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
spice torrent
#

i cant reset my password and need help

#

the system dopesnt send me the link for the reset... 😕

chilly pike
#

did you check your spam folders etc?

spice torrent
#

sure 😉

#

nothing

#

maybe it is a problem with gmx?!

glacial geyser
#

After i press "Start Machine" i'm trying to start the attack-box and getting "Uh-Oh! You can only deploy a maximum of 3 machines at a time".
Tried the other way around but then i can't press "Start Machine" for the same reason.
Didn't happen before.

neat mural
#

maybe you still have a machine running from a previous room?

glacial geyser
#

I thought about it.. but i can't see it o_0

neat mural
#

how long since you did a room ?

glacial geyser
#

a little less than 2 hours 😦

neat mural
#

you might need to wait for the other sessions to time out then

glacial geyser
#

yeah i figured 😦

neat mural
#

sorry I cant be more help

weary spindle
#

Might be too late, but that link will let you see which machine are active.

glacial geyser
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

blissful nacelle
#

Can anyone please help resolve this issue? I am trying to do 'Upload Vulnerabilities', but I cannot get the Task 1 setup to work. I am using Kali Linux VirtualBox, my openvpn connection is fine, I have disabled my personal vpn. I navigate to /etc/ and use sudo nano hosts to edit the hosts file, and add the required line with the correct IP for the machine and overwrite it. Apparently at this stage I should have access to the server but I am still met with the 'Please read instruction in task one' screen. Am I missing something?

cobalt crown
#

send a picture of hosts file

blissful nacelle
scenic torrentBOT
#

Gave +1 Rep to @cobalt crown

jade siren
#

hi. can anyone help me? I need enter with ssh, but My Machine and Intro to Offensive Security's servers doesn't show the IP.
My Machine shows the user and password, but the room intro doesn't show anything.

crystal marlin
jade siren
crystal marlin
# jade siren

I can see the IP just fine?
Beside that, the target machine is already opened in split view and you don't need more than that target machine to solve the task

pastel tinsel
#

It tells you the error

gray seal
#

I think that this &; is problem

tribal mason
#

If you need to set MTU every time you connect to the VPN, you can edit the file.ovpn file and put tun-mtu 1200 in it.

pastel tinsel
#

Try and just put it down on the other line and not use ; or & &

jade siren
pastel tinsel
#

Remove &;

crystal marlin
#

Have to go afk for about 10 - 15 mins then I'll check

tribal mason
#

Glad it worked, have fun hacking

scenic torrentBOT
#

Gave +1 Rep to @tribal mason

pastel tinsel
#

Yes, then just add & and not &;

tribal mason
#

+rep @pastel tinsel

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
#

You're welcome

#

Though remember with removing the line of setting mtu from your script, if you regenerate your VPN you have to manually add it to the config again

#

Give me a second and I'll make something for you

#
#!/bin/bash

if grep -Fxq "tun-mtu 1200" /home/kali/Downloads/*.ovpn
then 
    true
else
   sed -i '1 i\tun-mtu 1200' /home/kali/Downloads/*.ovpn
fi 
sudo openvpn /home/kali/Downloads/*.ovpn &

This should make the first line of the file the correct mtu in the config, and then start 😄
Please try it out and tell if it works or not 😄

#

@daring aurora

crystal marlin
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

carmine valve
#

Hey everyone, does anyone know why i'm not able to catch any communication in the attack box. I did a few rooms and every time I neede to open a listening server to catch something, it never catches it. Am I doing something wrong? Dio I need to use VPN or anything? The "netcat -vlnp port_number" never works

crystal marlin
#

!docs verify

sharp bisonBOT
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

carmine valve
crystal marlin
pastel tinsel
carmine valve
#

So when I do a basic curl command- in specific I did it in this room- https://tryhackme.com/room/rrootme
I tried the curl with a file (reverse shell) I uploaded to the website, and the listening server caught nothing

crystal marlin
carmine valve
#

Yes

crystal marlin
carmine valve
#

WARNING: Failed to daemonise. This is quite common and not fatal. No route to host (113)

crystal marlin
carmine valve
#

I tried to put in my IP in the php file and the target IP

crystal marlin
#

So more like a typo

carmine valve
#

both gave the same error

crystal marlin
carmine valve
#

Oh I see, I re-do in a sec

#

Ok, the curl command works

#

But the listening server didn't catch anything

#

🤷‍♂️

crystal marlin
#

And what is the output you get in the browser when trying to open the new rev shell

carmine valve
#

The same IP that is written in the top of my terminal, which is mine if im not mistaken lol

carmine valve
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
#

Also you might want to get a fresh rev-shell file, maybe you messed up the beginning of the file somehow

#

A fresh file should fix that

carmine valve
#

I have to change the php as the webserver blocks php files, I tried 5 and also didn't work.|
I looked in the answers and they did exactly that (tried also yestersday but it didn't work).

#

Maybe I skipped something basic that I have to do when working with the attack box and a listening server?

#

VPN or something

crystal marlin
crystal marlin
carmine valve
#

Ok, I'll try again with a fresh start

#

thanks!

#

It works!

#

Thank yoouuu

crystal marlin
#

Cool, gz 🙂

carmine valve
#

So what could've been the problem?

carmine valve
#

appreciated*

crystal marlin
#

Wrong IP, extension php56 maybe not appreciated by the webserver, or your rev shell file has been messed up

#

Other than that, I think everything was fine

jade siren
crystal marlin
silent crow
#

Hi ,, I want to ask how can I get touch with the finance teams of tryhackme

#

I couldn't find an email

tribal mason
#

Is there an issue with your payment or something?

silent crow
#

yes

tribal mason
#

You can email support from here

sharp bisonBOT
silent crow
#

can I DM you?

tribal mason
#

I'm not a staff, neither moderator

silent crow
silent crow
scenic torrentBOT
#

Gave +1 Rep to @tribal mason

tribal mason
light vale
#

Guys i have a question related to the connection to the tryhackme network via open vpn. I saw a lot of posts over the past year from people advising in securing or hardening your host machine or vm to prevent other users that could potentially "attack" you via the tryhackme network.

Today i saw a post on reddit with a guy linking a script that prevents incoming connection from anything excepting tryhackme machines.

I understand in general how it works, but could somebody more experienced and preferably from the team share more insight about this and if some actions are actually needed from the users etc

hardy skiff
#

I can't seem to get the dns for the LateralMovement network to.. well work. I've tried using the networkmanager GUI, nmcli and at one point modifying /etc/resolv.conf manually and have not been able to connect to the distributor. I've restarted NetworkManager and NetworkManager.service, /etc/resolv.conf did update off the nmcli or GUI edit so I think that's progress, but I still can't connect to the site. I am on the openvpn network for Lateralmovement, I can ping the DC server, I just can't get the DNS working. I have not tried to add the domain to /etc/hosts which I'll try now as a last ditch effort. Edit: Just realized /etc/hosts won't work because there's no IP for the distributor x.x

System info: Kali Linux VM (My own, not THM's)

Format of things tried:
-NetworkManager GUI
-NMCLI con mod <connection id> ipv4.dns "1.1.1.1 <THMDCIP>" (I used the IP, not the words)
-sudo chattr -i /etc/resolv.conf -> sudo vim /etc/resolv.conf -> adding `nameserver <THMDC IP> -> :wq -> sudo chattr +i /etc/resolv.conf -> sudo systemctl restart NetworkManager (Which I think undoes what I did and loads the gui/cli settings from before)

Solved my issue: The DC IP was not above the tunnel's IP in /etc/resolv.conf as Munra showed in his message
#lateral-movement-and-pivoting message

blazing star
#

Heyho, is the challenge Bounty Hacker working as inteded? The FTP seems to be in passive mode while the writeups i peaked seemed to had an active ftp?

weary spindle
weary spindle
broken bear
weary spindle
#

I just use a dedicated VM for THM.

If anyone hacks in what they going to find? documents, files, hashes etc related to THM.

light vale
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

broken bear
light vale
plush bay
#

wait tun0 is in down mode???

vagrant heath
#

not running

vagrant heath
#

it used to work like two months ago

safe rain
#

that's an interesting point. what makes you say that? and is there any way to technically verify something like that from the end user side?

#

ah, got it. yeah, i live under a rock, so thanks for the heads up, ha

scenic torrentBOT
#

Gave +1 Rep to @gray loom

bronze vale
safe rain
#

i just thought more about it, and maybe traceroute would be a good tool here... i'm googling jordan but am getting very general results....

vagrant heath
#

i was able to make it run think what u said is true

tribal mason
#

uhhhhhh, bypassing government restrictions is not a good idea

thorny tinsel
#

I would like if THM didn't make accomplishing certain tasks (next to) impossible for those using a VPN and their own machines, instead of the attackbox.
Obviously they value paid subscribers more than free users, but I am still disappointed.

crystal marlin
plush bay
plush bay
#

it can work on your own vm but it is very finicky because of vlc and required libraries

#

hence why said task has a recommendation to use the snap version

#

somehow that did not work either for q-cifer

#

which is also a fine complaint... as day 9 is another day which is hard for none subscribers if they don't have their own vm as then you are locked out of the kali linux machine that has the updated metasploit

thorny tinsel
#

I just I got so far and to be scuttled at the end for something like this made me feel a certain kind of way.

plush bay
#

well day 9 of advent of cyber 2019 is worse

thorny tinsel
#

yuck

plush bay
#

as that not even subscribed users can complete

#

you literally have to cheat to get the flag needed for that task

crystal marlin
thorny tinsel
#

I was going to bite the bullet and get a sub but I thought I could wring out all remaining value from the free version...

#

I guess I have another reason to sub post-haste

plush bay
#

or wait a day... as then you can use the attackbox for 1 hour each day anyways

#

but yeah purchasing tryhackme subscription is a thingy shadow does not regret at all

#

so much stuff that you can learn on tryhackme from the subscription based rooms and then nice certs of completion

thorny tinsel
#

Yes, although half the time the attackbox expires because I am simply too slow 🤣

plush bay
#

fair enoughs

thorny tinsel
#

I like how it's one subscription though, not one sub for access to machines, and some other sub for more focused learning materials...

plush bay
#

yeah only exception to the get everything through the sub is the throwback network

#

and there is good reason why that is its seperate paid network

#

mostly because it is a full blown active directory network with stuffs meaning it is harder and costlier to host

hearty iron
#

How can I use RPC over port 445 to gain a foothold?

#

On a machine running samba

#

I've been attempting to dig for information. I've been able to accomplish a fair bit of enumeration, but not sure how to progress

plush bay
hearty iron
#

Should have also specified it's a freeBSD machine mimicking a router/DC, my bad

broken bear
hearty iron
broken bear
hearty iron
warm ore
#

Hello, I'm not sure if this is the right room for my question? I was wondering how to connect my THM profile to my discord?

hearty iron
safe rain
#

!docs verify

sharp bisonBOT
safe rain
hearty iron
scenic torrentBOT
#

Gave +1 Rep to @safe rain

safe rain
warm ore
#

It worked, thank you all

safe rain
broken bear
hearty iron
hearty iron
#

Net+

hearty iron
scenic torrentBOT
#

Gave +1 Rep to @broken bear

hallow hatch
#

Hey all

nocturne dirge
#

Why I get this error everytime I open TryHackMe? "Uh-oh! Something went wrong. Your settings could not be updated."

ember drift
#

I opened up an AttackBox and started a python server and got some strange requests. The IP is from china.

#

Could someone have accidentally made a few requests to my python server?

tawdry orbit
unreal oracle
#

is there any issue with having multiple target machines up on the same account?

crystal marlin
#

As well as there is a cap anyways iirc

pastel tinsel
#

3 machines running at once is max

unreal oracle
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
# unreal oracle thanks

And if ever needed I made a fun little script to help you stop the machines from running if you ever forget which rooms you have running

floral holly
#

because of the broken Windows priv esc room for task 11 I can't do task 12 or a few other tasks such as task 16. THM can't be this bad can it?

#

just give the option of showing the admin hash and move on

#

waste of time

turbid pebble
#

Is there an issue with the Wreath Network OpenVPN configuration file? I've regenerated a new config but the file is empty. It's also named 5f0a2fa5f6c0825232474b33-wreath.ovpn, I'm used to seeing my username in the file name.

floral holly
#

admin password123 there we go found it in a write up

plush bay
turbid pebble
scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

no problem

topaz elm
#

That clock does not tick.

chilly pike
topaz elm
#

I entered wrong passwords for like 3 times

#

I am not log in to the site today. I’ll come back tomorrow.

#

That warning is probably gone by now. I don’t know. Even after I entered wrong pass for the fourth and fifth times, it still showing 4m 53s.

#

The time didn’t move

weary spindle
#

You need to verify your account.

#

!docs verify

sharp bisonBOT
lost terrace
#

Hi, I have holo network problem. Stuck at task 37. Running nmap for pc-srv01 return other ports but not 445. I also run nmap on l-srv01 host. But got same result.

bronze vale
# vagrant heath not running

Hey,

May I use your screenshot?
I will remove your username from it^

Going to use it in a 'help' message for users who are unable to connect to the VPN service, similar to your issue.

prisma scarab
#

I’m having trouble with Tryhackme and the rooms. A couple of days ago I entered into a room and after I was finished, I close down my computer when I turned my computer back on on my progress was at zero it is not showing my progress on the dashboard interface so I would try to go into the exact room. I was working in and it was saying that I am already a part of this group. It is not letting me finish the work that I was working on in that particular group. I am confused on what’s going on I try to change my browser. I tried to resetting my computer I tried clearing the catche but nothing is working. Does anybody have any clue what’s going on here ?thank you.

crystal marlin
#

!docs verify

sharp bisonBOT
uneven wind
crystal marlin
#

What room have you been working on that you said you have finished?

prisma scarab
prisma scarab
prisma scarab
crystal marlin
crystal marlin
prisma scarab
#

No it still says your already apart of that group

#

Yes I verified

crystal marlin
#

cc @zealous yoke

prisma scarab
#

Do I private message him?

crystal marlin
# prisma scarab Do I private message him?

No, just wait a bit, he might reply to you. Otherwise you will have to email support about that matter and explain them that whenever you try to join a room, you are getting the "You already apart of this group error"

#

Also might want to attach those screenshots to your mail

prisma scarab
#

Okay do you know their tech support email?

crystal marlin
#

!email

sharp bisonBOT
prisma scarab
#

Thank you so much for your help !!!

twin kite
#

Hello, can someone help me now?

pastel tinsel
inner pulsar
#

Someone pls help me ots urgent lol

#

So i installed the openssl in order to able do the shell with openssl
In room of what the shell..

#

After i installed openssl no internet connection on my machine

#

Is there any issue cuz of openssl?
Any miss configure?

naive dust
#

Hello I don’t know if I’m on the correct room or even server. I’m trying to learn about hacking Fire TV. Does anyone point me to the correct direction?

naive dust
#

He/she can help me?

broken bear
lyric tree
broken bear
lyric tree
#

lol, did he even know anything about hardware hacking or was he just here hoping someone would tell him how to get a free prime sub?

weary spindle
#

@broken bear are you still here? 😅