#site-support
1 messages · Page 21 of 1
@tribal burrow @dusk prawn dk if i can help you but i have exaclty the same problem on kali
Je comprend pas j'étais connecté il y a encore quelque jours en plus
hmm t'as déjà réussi toi alors
Et je n'ai rien changer à par la mise a jour de kali
Oui généralement j'ai pas de souci
ah la chance j'ai jamais pu faire ailleurs que sur windows
Étrange, je sais qu'une fois j'avais eu un souci mais je sais plus si c'est sur HTB ou thm mais on m'avait fait enlevé l'ipv6
This server is english only, please keep it as that 🙂 @dusk prawn @solar heart
Sorry 🙂
change that line that looks like data-chipers AES-256-CBC
Ligne 14 ?
y
Chipers or ciphers ?
data-ciphers AES-256-CBC
save it and try run
No 😦
is it same ?
try that y
I don't understand before it's ok, not to day
No it's same
And script not resolve my problem
now i have same problem lol
vpn works for shadow
Oh you to oO
any support online?
depends on support with what
Other personal have same problem ?
me
well dunno how to fix your problem ta sadly enoughs
works fine for me
other then trying to regen vpn and then checking if you need to patch the regened vpn file for openvpn 2.6.0
I have already regenerated 2 or 3 times this evening for vip 1 and vip 2
when i run nmaps , sometimes i got my ip bloked , like
i cannot use anymore
and when i go smbclient \\ ip etc
i can stay for few minuts and drop automaticlly
if u are support can u dm me plz
i am already 2 days stuck on this
to not be rude to the author/creator of said room shadow is not going to help you with any problems with it
wtf
?
okay the only thingy shadow can do is point you at the writeups tab... that is the only writeups allowed for said room so yeah
men , i got problems with nmap i got bloked sometimes
this is a problem with thm ip
that is blocking cuz im using sometimes
i am not asking for help in the room
try restart room
i am asking to help solve this problem
!vpnscript
i already did 3x , and keep doing this but thank you anyway
Gave +1 Rep to @tribal burrow
@plush bay I wait maybe tomorrow to see if my problem is solved?
could be a mtu problem
yeah good luck dunno how to help you in any way
unfortunately I don't understand a few days ago it was working
yeah no clue why the vpn would just stop working without any bigger changes
how ?
@solar heart dm 🙂
Do the AD machines ever restart?
I had to shut down THMJMP2 in the "Lateral Movement and Pivoting" room
now it is unreachable. likely because there is no way for me to restart it
I'm wondering if this happens automatically or if it needs votes
probably need to vote to reset the network for that
I did, but I'm the only one vot
*vote
xfreerdp went fullscreen for some reason so I had to shutdown to exit
I'll have to look up how to minimize, there's no menu bar like with remmina
think you can vote about once every 30 mins to 1 hour
if i want to do the room again , i just have to reset progress?
like i want to pratice , wanna do again , i just have to reset? or gonna reset all path?
when you restart target/room you start it again. if that is what you think of
just room
thank you sir
np
@plush bay @weary spindle Sent a PR to the OpenVPN troubleshooting script to update ciphers. Please ask users to use the OpenVPN troubleshooting script instead of providing commands via the Discord.
If there are any issues with the script, drop me a ping
Is there anyone here currently that can help me with my openvpn connection?
Edit: One day I may learn to read...
Edit 2:
sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn
this worked for me
VPN Servers are completely down, the autofix script is not working, do something.
my thm machines stop responding while im playing - they get auto-fixed sometimes and break again. any solution please?
What errer are you having?
Are you on the attackbox or VM?
VM
Does your vpn script say anything?
Nope. It stays normal, but the connection gets interrupted
What happens when it does?
After a while it gets fixed but the problem persists
Does the website stop responding?
Just the machine stops responding. Website stays same and displays the IP, it's the machine which the connection gets interrupted with.
ovpn stays connected
Sometimes even with attackbox, I am unable to reach the machines
Attackbox could be your connection.
My Room VPN fails to connect and the Throwback VPN generator gives me a totally blank file.
Is the room vpn the normal vpn?
It is the VIP one
What error are you getting?
!vpnscript
(Just FYI, the Ciphers thing hasn’t been merged by Muir yet)
No worries 😄
@barren birch 👀
Is Muiri hungover?
No? Muiri has never been hungover
I connected to tryhackme vpn but I cannot access this page 10.10.10.10 although it show I am connected in tryhackme
Can you ping 10.10.10.10 in your terminal?
How are you connecting to the VPN?
sudo openvpn /home/kali/Downloads/oma.ovpn
And the last line is
xxxx-xx-xx xx:xx:xx Initialization Sequence Completed ?
no
SIGUSR1[soft,process-push-msg-failed] received, process restarting
2023-02-19 17:07:30 Restart pause, 300 second(s)
That's why, you're not connected.
Do you have a cipher error?
DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations.
Will look like this, possibly at the very top.
like this
failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
thx bro now it is working

Happy hacking!
Do you have a cipher error?
how to change m username?
Hello, i tryed the script troubleshooting and i get this error with the tun0 interface, do you know what should i do ?
Contact support for that
thx, it works now
how are you connecting to the VPN?
btw i had git bash so i did it using it
anyone know function of this from AWS AWSLambdaBasicExecutionRole ?
how to AWSLambdaBasicExecutionRole can be work ?
i'm not even connected that's what i'm trying the script
Try connecting, that will create the tun0 interface.
nop, not working here
infinite time...
Of course i did
Done ✅
Did it work now? 🙂
yes 🙂
Excellent!
can you explain me what cause this error ?
The cipher needed to be changed from cipher AES-256-GCM to data-ciphers AES-256-CBC
oke thanks 🙂
Gave +1 Rep to @weary spindle
can any admin pin this
@weary spindle It has been merged
I've added it to the VPN script so it doesn't need to be pinned :)
imma create a windows version of it
Of the VPN script?
yeah
You can't
why?
Okay, I'll stop giving out the sed command now.
or create a python fork of it
It's not as easy to update the tunnel because of how Windows works, furthermore, logging on the OpenVPN gui is much different because it's not run via commandline
i mean the fix
ok, for now we have the script linux only
maybe i will bundle sed
the openvpn cli is included in the gui
It's not added to Path
imma just do set PATH=%PATH%;C:\Program Files\OpenVPN\bin in the script
ok fine the script must be linux only
First, you should not be editing paths for users.
Second, you're presuming that's where the OpenVPN file is stored
Still it Was Showing 404 not found even after refreshing
Did you do the command I asked?
Can you give me the link you're trying?
Http://<ip>:3333/internal/uploads/php-reverse-shell.phtml
Include the IP please.
You don't have a file uploaded.
What Is That Mean?
It means you didn't upload a file.
That's why you can't access the link.
The directory is empty.
What I Want To Do Now
..You need to upload a file.
How I Don't Know Bro!
Are you doing the room, or are you following a walkthrough?
I'm Doing Room Some Question I Will Search In Google Sites
I thought you were using a write up.
You need to upload the file to catch a reverse shell.
Ok I Will Do It From First
oooh why did shadow not think about asking to update the vpn troubleshoot script... thanks jabba will do
Gave +1 Rep to @bronze vale
Hello, I am currently participating in the SOC level 1 learning path, and have been having issues deploying the attackboxes in the OpenCTI section and now the MISP. I click start machine and am prompted with a timer saying that my machine is starting however, no machine is in my split view as well as the top of the page still prompts me to launch a new machine. Are there any outages or server issues? I was not having any issues before these two sections.
not all green start machine buttons give you a split view machine... sometimes you need to use the blue start attackbox button and use ssh to connect
or rdp
Understood, so I'm guessing by going through the "start Attackbox" then using the credentials should be good enough?
yeah.... assuming that is the way the room is set up
sadly shadow has not touched the soc level 1 path yet so very little knowledge of how said rooms work
Hmmm alright, I couldn't access the openCTI whatsoever with my Kali Linux or the standard Attack box. I am now having the exact same issue with MISP
I'll try some more troubleshooting however as of this moment, the website acts as if my server is enabled and I am supposed to be presented with a gui however I get no form of being able to access the vm through ssh or rdp
Disregard my comments, I realized I was supposed to type the following URL prompted by the task to access the sites and demonstrations thm wanted users to navigate towards. Sorry for the inconvenience!
no problem
THIS IS MY COMMAND: mimikatz # kerberos::ptt TGS_t1_melanie.wilson@ZA.TRYHACKME.LOC_http~THMSERVER1.za.tryhackme.loc@ZA.TRYHACKME.LOC.kirbi
THIS IS THE RESPONSE: * File: 'TGS_t1_melanie.wilson@ZA.TRYHACKME.LOC_http~THMSERVER1.za.tryhackme.loc@ZA.TRYHACKME.LOC.kirbi': ERROR kuhl_m_kerberos_
ptt_file ; kull_m_file_readData (0x00000002)
This is on Task 3 of exploiting active directory
Should this be addressed here, or room bugs
Hello
I’m having issues with the practice questions in the What The Shell room
I’m in Task 13 Practice And Examples and I’m working on question number 7
I upload the php shell:
<?php echo "<pre>" . shell_exec($_GET["cmd"]) . "</pre>"; ?>
But when I click on it on the website to execute it, it keeps throwing an error and it won’t run
SOLVED:
use "token::revert" command in mimikatz after the lsadump
exiting (as seen in the room instructions) is not enough
Hello! If may I ask you for help with account recovery? I got access to email adress as well as (this) discord that this account was first created with.
But unfortunatelly, after last email change i lost my access to last email that my acc was connected to.
Regards
Can you log in with Username:password ?
Hello! Thanks for your reply, no I can't log in with login / password.
I pm'ed you, if we could continue this thread via PM.
Gave +1 Rep to @weary spindle
We can't sorry.
I was only suggesting something you could do until I provide with the Email.
(And also Rule 1)
The email is
ok, np.
The issue is I've changed mail on THM platform for new one (like long ago), unfortunately i don't have access to it and cant remember my passwd.
Acc im claiming for was first created with email adress that I have access to.
And my student email adress that for some time was my main, I got access to that one as well.
I tried connecting to THM using openvpn but the portal shows that I am connected to the site. However, openvpn connection is throwing error on my end and I don't have any other device running this. Help.
I have 4 days left for Throwback Access, however the Access page keeps generating a blank .ovpn file.
This got solved. But now I am unable to connect using OpenVPN via the India servers (changed to US-West VIP, still the same)
Someone knows why rpmetasploit room is private for me?
It will be private for everyone.
Why?
Made private by site staff due to either being deprecated, getting fixed, isn't finished yet or a private room for business/education room.
There is a room that replace it?
Morning everyone. I used to be a subscribed user, I canceled my subscription last month because I no longer had as much time to use THM, but my cyber course has a voucher for me to use. Thing is, I can't use it because my current subscription hasn't run out yet, even after canceling. Can someone cancel it so I can enter my student voucher?
When does your sub run out?
March 7th
If you cancel it now the only thing that will happen is the auto renewal turns off, then once it runs out, you can use your voucher,
I can always wait, the voucher probably will wait until then, right?
Right, the voucher won't expire 🙂
Thanks! Sorry to bother you guys.
No trouble, 🙂
My name on the certificate is wrong who should I contact now?
Nobody, it can't be changed.
Just making sure, the full name field is private right?
lol
It will only be sent to people who you add as a friend (in the email it will say [Full name] has sent you a friend request). I have enquired about having it changed.
Other than that, it is only displayed on certificates, it is not public:)
Alright thank you for the Infos 🙂 I support the change for friend requests seems prone for accidentally doxxing yourself.
Gave +1 Rep to @bronze vale
@bronze vale Hey, you closed my support ticket without resolving it.. I've opened another one. As for the screenshot you'd asked of me, can I DM you to send it? Can't send it on this chat
You should be emailed the ticket so you respond to that and it will add to your conversation
Well the ticket's closed now sooo.. Should I send it anyway?
Mhm, it will reopen the ticket, I’m still figuring out how to use the new system, sorry for the inconvenience 😓
Oof, no worries!
hello
when I am cloning Facebook using social engineering toolkit in login button is not redirecting to real page
@broken bear
What are you using this for?
for learning
Learning what?
phishing
.
What are you targeting?
my self
but you are using public facebook? This is extremely suspect. If you are going to do a learning exercise, do not hit public facing infrastructure.
About a week ago under my current streak there was a "1 day streak freeze" that I got from the red team ticket event, I even got a 7 day freeze streak, did my ticket expired or is this a bug?
I also saw I had a 1 day streak freeze. Would also appreciate knowing what this means.
also, is my site username just the last part of this correct? as in CLion: https://tryhackme.com/p/CLion
Yes that's your username
Streak freeze just freezes your streak so you don't need to answer any questions for that day and you won't lose the streak
the freeze should only count If one day I didn't answered any questions, but I answered at least one question every day
If you redeem them both at the same time, they will cancel each other out (which is a bug on our end, yes).
Well, is this going to be fixed some time?
It's on the roadmap, just not a priority at the moment.
@bronze vale Hey I used the EU server for OpenVPN and it worked.. you may close any tickets I opened
Hi, any way to delete workspace i created by error ?
Hello, for the Acme IT Support website, I've been getting a target address of http://MACHINE_IP for the past two hours. I've restarted my attack box a few times since then. How can I go about getting the right target IP?
You need to launch the target machine attached to the current or recent tasks. If you already deployed it, you can just replace machine_ip with the IP Address of the target machine.
Thanks @tribal mason
Gave +1 Rep to @tribal mason
Hi, evertime I refresh a room (the site with the tasks) The red box with IP etc disappears and if i click on the green start machine button, the error "You have already a machine running in this room", but i cant terminate it, because the box is gone. Any ideas?
pleasee
Recently some of the network servers, and only some of them, aren't establishing a connection and keep attempting a reset over and over again. But some of the other servers work just fine. I've had to stay with a much further away server because it's the only one working for me. I am trying to do breaching AD and obviously that needs a specific config file to use that network and it isn't working for me.
2023-02-21 09:10:12 OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
!vpnscript
use that to troubleshoot... it looks like one of the common issue that the vpn troubleshoot script catches
Hello I am unable to connect to the server. I get an error message like "failed to connect to server."
Hello, when I log into my account, it acts like I don't have a subscription, but I have another month left on my annual
think that is an email support and wait 2-3 days support ticket question thingy
ok. thanks
Gave +1 Rep to @plush bay
Anyone else getting a TLS error when trying to connect to the VPN? I've tried selecting regenerating my cert, I've tried changing servers and regenerating the cert, I've tried updating the cert from cipher to data ciphers (normally works), and I've tried running the thm-troubleshooting. Nothing appears to be working.
could be your countries government blocking udp openvpn connections which mean the vpn simply can't work
I'm in the US, that's not likely
fair
I've tried both the east and west server as well
no ideas then ¯_(ツ)_/¯
Looks like I forgot the - when updating the cert from cipher to data-ciphers. Ignore me, it's working now.. no idea why the troubleshooting script didn't fix it like it did for my lateral-movement.
It will only fix it if your OpenVPN output script says a specific line, I’ll add more when I see more configs
Understood, thank you.
Gave +1 Rep to @bronze vale
Hi
For LFI chapter task 5
i can't get back my machine IP
that i was using yesterday
to clear previous tasks
any idea ?
like i can start my VM but not access the LFI site
you have to start the machine in task 2 again, you'll get a new IP
np
it worked
great!
Hi Tech Support..I am having connection refused issue while connecting to a server for a task. I made sure I am using the latest ovpn config file, vpn connection is successful but ssh command with remote ip is failing with connection refused error. I have even tried changing the mtu to 1200 but still issue is NOT resolved. Also ping is working. I am totally blocked and any hints to resolve the issue would be great ..
!vpnscript
dose that means i have 2 days for wreath network?
It didn't help..my ovpn connection seems fine but i still cannot make ssh connection
it makes you auto leave the room after that time.... this is to be able to have fewer instances of the networks being up and running taking less resources and saving costs for tryhackme.... you won't lose any progress and can just rejoin the room right away again if you are not done
thanks
Gave +1 Rep to @plush bay
no problem
Help, changed password, every time I try to login it says “password successfully changed “ and does not log me in?
I did back out and open a new page, no I didn’t turn it off and on.
Are there any errors?
Only said password successfully changed, each of the three times I tried to log on
Even when I back out and open a new login page it opens with password successfully changed
Here is the result from the tool,
[+] Stable internet connection
[+] OpenVPN is installed
[+] tun0 exists
[+] tun0 IP is in the correct range
[+] Only one instance of OpenVPN is running
[+] Confirming connectivity
[+] MTU value OK
[+] Connectivity checks completed!
[+] You are connected to the TryHackMe Network
Your TryHackMe IP address is: 10.18.42.250
Happy Hacking!
Yup.. it says you're connected fine:)
where are you trying to ssh?
Good god now it’s telling me it’s the wrong pw
wywmhackathonaug2021gy room..task 1
ssh: connect to host 10.10.xxx.xxx port 22: Connection refused
did you scan the machine? there's no ssh open, you'd have to look for a different way in
Oh ok got it..I will look into it
yeah that hasn't helped unfortunately
when that script completes it connects me to the normal vpn and not the breaching
Im getting 404 error code when trying to download my vpn file for Wreath network
any idea how to fix it?
Ok so hacked the bank followed all the directions answered the questions correctly, but says only 60% complete?
Hello ! Kindly asking if somebody could help me with my account recovery?
email support
in Breaching AD this command to get the dns server doesn't seem to work
sudo systemd-resolve --interface breachad --set-dns $THMDCIP --set-domain za.tryhackme.com
sudo: systemd-resolve: command not found
Are you on the AttackBox?
nope my own kali
looks like it's fine if I just add it to my resolve.conf as the only dns server
Hello! Im on room Lateral Movement and Pivoting and DNS does not seem to be working. Can I request a room reset?
I also do not seem to be able to ping machines on the network
hey i am having the same
anyone know if openvpn is having issues?
Hey guys anyone able to help with a VPN connection issue.
I've been using THM VPN for months, no issues. Started wreath today connected etc went well. I did an update and downloaded a bunch of stuff and when I reset PC I now get issues connecting to the THM VPN.
The weird thing is I can connect to other vpns like HTB and OS. I also see in THM my IP is showing (dashboard) that I have connected but definitely haven't... Any advice?
When trying to connect to the VPN it's on a loop, like trying to connect, fails repeats etc. (I have tried regenerating the IP no luck)
[10:37 PM]
I will attach a SS of the area that is looping error
[10:37 PM]
Also if this helps I try to connect via the VPN, it does not connect on my side, eg loops error but on the THM dashboard it says I have connected? Appreciate the help
[10:44 PM]
!vpnscript
Try running that.
!vpnscript
Ok so hacked the bank followed all the directions answered the questions correctly, but says only 60% complete?
@hoary zenith
Change the "cipher" field in your .ovpn file to "data-ciphers"
I had the same issue.
They still haven't fixed it.
@safe kraken you mean here?
ok its fixed
as you said it was the cipher, its been updated automatically by the troubleshoot
@weary spindle thanks mate
Gave +1 Rep to @weary spindle
There was an internal meeting a few days ago I think regarding it.
Is there another channel I might get some help from?
@weary spindle , can you explain the theory behind why this error is occuring? it seem to happen out of nowhere, eg i had been using it not only an hour previously on wreath
Can you share screenshots of the room with all answered questions? You will need to verify to be able to send them
!docs verify
You can DM me if you want, but would still recommend you verify.
I really can't tbh.
I think in the script pushed out by THM contained the correct value at the time.
Then Openvpn have maybe changed it.
As it doesn't effect everyone.
All my vpn has been fine.
I see, and THM are looking into it? will be good to see what they do
I have been sick and tried of Linux Privilege Escalation. I tried to exploit the Linux to get root access. it always shows me (/lib/x86_64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found)
Guys, if I type ls in FTP connection, than i dont see the file. WHY?! 😦
ftp> ls
ftp> 229 Entering extended passive mode (|||49363|).
If I enter 'passive' or 'passive off', I get the message:
ftp> passive Passive mode: off; fallback to active mode: off.
ftp>ls
ftp> 501 Server cannot accept argument. ftp: Can't bind for data connection: The address is already in use'
How can I solve the problem of viewing the files in the FTP server?
The reason behind it is because Openvpn has updated, before version 2.6 they use the variable "cipher" to tell what the data is being encrypted with, but now that they have updated to 2.6 openvpn now expect the variable "data-ciphers" instead for the exact same job, to encrypt the data being sent, Openvpn has then chosen not to accept the old variable anymore, so since the openvpn version on your client is 2.6 (most likely) it will want the "data-ciphers" variable when talking to the server, which is an older version (most likely 2.5.9) which is still generating configs with the old "cipher" variable, as this is what it's told to do as that's what it knows
yes the server and client can then talk when the client uses "data-ciphers" and the server uses "cipher" the error you are getting is cause the client doesn't like the old "cipher" variable
ahh
perfect thanks for letting me knwo!
i appreciate it alot
@pastel tinsel thanks
Gave +1 Rep to @pastel tinsel
you're welcome 😄
make sure to seperate the vpns by which folder you are running it in
Or rename them so you can tell which is which.
well the troublehsoot script uses any vpn file it can find basicly so making seperate folders for it might be better
hey, I was trying to install the default-mysql-client in my machine (kali) for the challenge, but it said it was missing some maria db packets, so I tried to install them and it didn't work, so I tried uninstalling the mariadb and installing it again, and still can't do anything
I can't seem to send an image for some reason
you have to verify to be able to send images
!docs verify
im doing htb appointment
however i have the flag just this one stupid fucking question im stuck on
If user input is not handled carefully, it could be interpreted as a comment. Use a comment to login as admin without knowing the password. What is the first word on the webpage returned?
**s
the answer is supposed to be 15 letters long
i did what the task asked me to do but nothing showed up no error code which im assuming is the asnwer
and the word ends with "s"
We're not HackTheBox, please ask in their Discord.
It is better to ask questions about their rooms in their Discord because they can provide much better help 🙂
We love the HackTheBox team 
I wonder when an all out TryHackMe and HackTheBox war is going to break out lmao
I wouldn't keep your hopes up, we might be competitors but we are still people 😄
hi! is there someone who can help with this issue?
guess you are trying to access one of the older version of the metasploit rooms that got removed... here are the new ones in the module for it: https://tryhackme.com/module/metasploit
The Metasploit framework is a set of open-source tools used for network enumeration, identifying vulnerabilities, developing payloads and executing exploit code against remote target machines. Get hands-on with the various tool and features Metasploit provides, from exploit development to post-exploitation techniques, this module covers it all.
it worked! thanks again!!
Gave +1 Rep to @plush bay
no problem
may i ask how long an account name change typically takes?? and is there anything i need to do to correct it for this discord server as well so it matchs once done??
2-3 days is the usual response time for emails to support for stuff like username changes
thank you @plush bay
Gave +1 Rep to @plush bay
no problem
i am assuming i have to do something to re sync with this discord server once things are changed??
¯_(ツ)_/¯
Hi is there an option to change my username on the site I tried to update it but I cant seem to be able to 😦
you will need to email support for that... it will take 2-3 days usually for a response and for it to be changed
Oh thanks 🙂
hiya, whenever i start the target machine and then paste the IP in my web browser, it doesn't do anything. can somebody help? thank ya
not all target machines have a web server, and when they do not all of them are on port 80, read the task of the room you're in carefully and make sure to do a thorough scan
are you connected to the the vpn or using the attackbox???
also what arth0s said
oh yup, that was it!
thanks guys :D lol
no problem
Has anyone compiled metasploit from source here?
I’ve built it from the pentoo repo however I can’t for the life of me figure out how I need to configure postgres and metasploit for them to work nicely together. I haven’t used either before.
Also, you may need to regenerate your .ovpn file from time to time.
I've had to regenerate mine everyday for the last couple days.
Hello, is it something with machines? For example simplectf machine stopped working. I've regenerated my VPN but It didn't help. I receive timeout
The same for other rooms like Overpass, timeout
!vpnscript
Try running that if you're on a VM.
Started to work, weird. Thanks
quick question, can i use the attack box i paid for from THM for IRL CTFs and hackathons?
You cannot, this is clearly stated when you start the machine.
There is a terminal that appears that explain that the AttackBox can only be used on TryHackMe infrastructure.
thanks for the clarification
Gave +1 Rep to @bronze vale
Hey, looking to check in on the resources assigned to a VM
in a custom room
does not appear to be booting
Hi, When I try to download Wreath vpn I have a 404
I am able to regenerate the VPN file.. but once I click on 'Download My Configuration File' I receive a 404 (which is seen the screenshot above)
I am getting errors when trying to connect my openvpn. DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations. at the start then further down OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server. This is a brand new Kali install and openvpn works for HTB and HTB Academy but not THM.
!vpnscript (#site-support message)
so if I run the command, sudo openvpn myovpn.ovpn it fails. If I run the troubleshooter, it connects, but says it fails and wont communicate.
Hello, just quickly reporting that,
from the room /fileinc (challenge 8) we get a hyperlink to room /webfundamentals which is private.
The page mentions to report this issue. Have a good day 🙂
sudo killall openvpn
./thm-troubleshoot
that is exactly what I did
I have the same error as @spring tiger
run the vpn normally and try this command
sudo ip link set dev tun0 mtu 1200
2023-02-22 17:53:37 OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
2023-02-22 17:53:37 ERROR: Failed to apply push options
2023-02-22 17:53:37 Failed to open tun/tap interface
2023-02-22 17:53:37 SIGUSR1[soft,process-push-msg-failed] received, process restarting
2023-02-22 17:53:37 Restart pause, 1 second(s)```
same errors
oh, yeah, does the troubleshooting script give you same error?
┌──[🛡️ f0rk]
└──╼[🔥]/home/f0rk $ sudo ip link set dev tun0 mtu 1200
[sudo] password for f0rk:
Cannot find device "tun0"
``` I do think that's because the tun0 is not up yet
We're trying to avoid posting commands without explanations @pastel tinsel btw
That works! Thanks
Gave +1 Rep to @pastel tinsel
yeah, mb, I think you need to put the cipher test before the mtu test 😄
YES!! that was what I have been looking for
basically what this does is to change 2 words
I could not find the config file to manually change it
I know the issue, I couldn't add more options to the test case as I didn't have enough data from the errors to form it
Going to push a fix now
nice!
Nice ; )
The reason behind why we are doing this is because Openvpn has updated, before version 2.6 they use the variable "cipher" to tell what the data is being encrypted with, but now that they have updated to 2.6 openvpn now expect the variable "data-ciphers" instead for the exact same job, to encrypt the data being sent, Openvpn has then chosen not to accept the old variable anymore, so since the openvpn version on your client is 2.6 (most likely) it will want the "data-ciphers" variable when talking to the server, which is an older version (most likely 2.5.9) which is still generating configs with the old "cipher" variable, as this is what it's told to do as that's what it knows
yes the server and client can then talk when the client uses "data-ciphers" and the server uses "cipher" the error you are getting is cause the client doesn't like the old "cipher" variable
aww gotcha, thanks for the explaination ; )
looks like I'm running in to the same error as these folks, having trouble connecting to OpenVPN 😐
no, this should have fixed the problem, so you can now use it normally
have in mind, we are still in testing phase 😄
I have tried all these steps, I am still getting a 404
I am trying to get a ovpn file for Wreath network
look on reddit and u might find a post about the same errror
I have either just sent you an email or someone who has stolen your 'F0rk' identity 😁
that's me ; )
it says im connected through openvpn on the access page but when trying to access machines ip i get timed out cause its not responding
i tried terminating and restarting machine but still wont respond
!vpnscript
breaching active directory room help. The provided python script cannot import name httpntlmauth from requests in vmware virtual environment
Someone can help me choose which vpn server is best for me?
Where do you live?
This channel is used for THM related technical support, you'd get be better off using general.
Oh, sorry, my bad
hi all, I'm having an issue with Task 4 in the Threat Intel Tools Room. I found the exact answer for questions 1 on ThreatFox , but it is not accepting my answers as correct. I think this might be a technical issue rather than a user error however since I double checked my answers on the external sites it asked me to go to and my spelling.
hey guys working on wreath, connecting to VPN fine, however i cant ping the wreath machine, any ideas? ive run the troublechoot script, no issues, ive pinged the IP its up
my IP**
Have you connected to the wreath VPN?
yes
i just finished the chisel component been using it
then dropped out
should this be showing my wreath VPN? if so its not
That's bugged, pay no mind to it
I'm not connected to the wreath vpn nor am I in the house.
Try ip a s
And see if there is an interface for wreath
yep chedk it
there been 3/5 resets within 30mins so maybe others are having the same issue?
THMSERVER2 and THMWRK1 are down currently, can't ping. I can ping everything else and have logged into the DC with admin priv. SERVER2 and WRK1 I can't access with any credentials, but that makes sense if I cant ping.
This is for the Persisting AD room
Try voting for resets.
hey @weary spindle can i ask a question about pivioting
Sure?
I notice a lot of tutorials on pivoting come from an angle where you already know the 2nd victim IP which is abit unrealistic for me,
Once you compromise the initial target, what do need to do to scan for other networks it could be linked with? I am thinking netstat -ano and arp-a for example? and seeing what is running as dynamic and interacting?
Also if I can get nmap for example on the compromised machine, technically that machine could scan internal IPs?(non public facing)? Appreciate the clarification if you have any feedback. I just want to understand this better
I understand this would look suss but Im not coming from a stealth angle
It is unrealistic, but this is about teaching you.
You could use nmap to find out all the relevant information.
There is other tools out there that can help you with pivoting etc.
are you referring to chisel, sshuttle etc? or msfconsole route/portfwd?
I understand the learning side of it, I guess I look at the situation as if I only have limited info
AD Credentials harvesting room is not allowing scp connections
nmap shows port 22 is open
Hi when I try logging in through ssh in room for example Linux för forensics. I get through the first step and hit yes. But then I get a message
Ubuntu@10.10.46.80: permission denied (publickey)
Does any one know what the problem is
I'm having a problem with scp, which runs on the same port as ssh. On a different room though.
Hi, Im trying to download the OpenVPN file from Networks and it redirects me to a 404 page
Anyone know how to fix the left side of my screen, only happens when playing games on steam from what I’ve seen, no overheating, nothing wrong with monitor that I’ve noticed.
Is openvpn still messed up?
This isn't personal tech support, this is only tech support for the TryHackMe website
!vpnscript
!vpnscript
Use that, it will correct your cipher.
Now it’s saying it can’t access internet when my Firefox is working fine
@weary spindle let’s see if you can figure this one out:
Terminal does not connect to the internet at all (either IP or DNS), I boot up Firefox and that works fine (even accessing sites I’ve never been to on the VM.) HTB VPN works, no other terminal based networking does.
Still having the same problem on my parrot PC
Which country are you in?
UK
Try changing your VM’s country to the correct one @lusty moon
Yeah, I just spotted that too.
Will do, might also be cause the college (which are planning to run THM KOTH games) might have blocked openvpn and thag ports 😂
If you have a representative from your college contact the support email, we can provide a list of endpoints to white list
I asked and my college said no.
Despite me telling them I was going to suggest to our department head that THM is better than they stuff they teach.
Nah my security lecturer is trying to get us some KOTH games and wanted me to see what I can find. I may talk to him and one of the other teachers who know of THM and see if we can get a college ‘society’ for THM going
Hi, is the Internal Room OK ? since last 24h i had difficulty with it, sometimes I cannot ping the IP ! page are loading sometimes not. Restart my VPN connexion help me, but I had to do it too much times (sorry if i am not in the good section here) thanks in advance
I can ping it.
thanks me too, but ramdomly its like the server is off, i can't ping it, and i need to wait few mins, or restart my vpn connexion....
Gave +1 Rep to @weary spindle
Does your VPN restart?
I tried searching this in the discord search box first, but didn't find a good answer. I remember I used to do it, but can't remember now lol. How would I go about getting a task file, to the attackbox? Since I'm not on the VPN, I can't really use SCP. I tried drag + drop, just to see, and nope, not that either
i did so much times, i scan my openvpn file conf with the thm tool, still same
I mean, the script.
Which files?
If you have any cloud platforms you could use that (I believe), ftp potentially
In this case, I am trying to get all the basic rooms out of the way, even if I know the content lol- I'm in the wireshark 101 room, the "task files" are pcaps
yep I follow this procedure ; https://help.tryhackme.com/en/articles/6496058-troubleshooting-openvpn-on-linux
This is a good idea. I've got a nextcloud vm running, lemme try this
i used this script yesterday, and now, by the way, for now, seems stable, i can use feroxbuster without issues
Do you always used Ferox?
@lusty moon - that worked, thank you!
Gave +1 Rep to @lusty moon
No problem dude 💖
i do yes
OK.
Ferox can basically DoS the box.
So it could be that.
really, can you tell me more or sand me a webpage talking about that plz ? thanks in ad
Gave +1 Rep to @weary spindle
Were there any issue with the tryhackme platform? Because i lost my streak.
E-mail support politely and they will restore it.
Thank you!
Gave +1 Rep to @weary spindle
im gotting my pages super low
also im streamming , its that possibly someone is ddos on ip of tryhackme?
im trying to use disearch start and just stop and freeze , and website work , after doesnt work anymore
Fixed the VPN but I can't seem to connect to any boxes...
Nvmed it just took 10 minutes to load
:/
hey there
is there a way I can connect my attack machine to an rdp or anything like that so I can use the gui cz on the browser its hella slow
you can, via the details you'll get in https://tryhackme.com/my-machine
most of the time, i use ffuf too
since i start to talk about my trouble here, everything is finaly working well, i did nothing ahahah
Hello all, I'm not sure if this is a tech support question but I have some questions regarding private rooms.
- When creating a private room, is there a limitation on number of users who can join my room? Or example, would it be possible for like 2000 users to join my room? Or are there additional pricing point that I need to pay for X amount of users to join a private room?
- How many private rooms can we create as a subscribed / free user account?
Sorry I wasn't able to find much stuff going through the official docs/wiki and googling
I cannot for the life of my get the VPN to work. Anyone had the same issue?
I have tried lowering MTu to 1200 and 1400, refreshing .ovpn file and I followed the troubleshooting document to no avail. Curiously the VPN works fine on my windows using open VPN gui but NOT on my Kali VM. I'm using Vmware workstation.
ok apprently Kali just hates it. Parrot runs fine
so parrot it is
I was having this issue too and it seems to happen like something just expires on their end. Once it kills your RDP session, it won't let you back in. I've been refreshing the room, terminating the machine and re-doing Tasks 1-2 before proceeding to my prior tasks. It's not perfect because some of the work needs prior steps to work correctly, but this room is pretty broken because of it.
How do I copy from the attackbox?
I googled it and someone said ctrl + shift + c but it doesnt work to paste into my host, super annoying with the flags
If they're private, they're locked for a reason.
- no limitation of users who can join your private room
- creating rooms is entirely free - you can create as many as you like for no cost
Hi, when trying to use hashcat, I am getting the following error message:
Starting self-test. Please be patient...zsh: illegal hardware instruction
pls help me
Have you searched the error?
late to the party... I am trying Advent of cyber 22 and for task 25 when i extract, i realize that some folders are missing. SO i cannot find the keys when i run the grep command. Any help please?
did, no luck
I'm having trouble connecting to the vpn. I used the troubleshooting script and followed its suggestions. Regenerated config file, changed servers and regenerated config file, system time is correct. The THM website says I am connected, but I am not.
I do not.
What do the error logs say when connecting via VPN?
There doesn't appear to be an error log.
Are you connecting via the CLI or VPN profile?
Advent of cyber 2020 (I know, I'm a bit late) Task 27 last question can't be solved anymore because the github page https://gist.github.com/heavenraiza/1d321244c4d667446dbfd9a3298a88b8 doesn't exist anymore.
sounds like something for #room-bugs but bet it will probably not be fixed
does the video of said task help you solve it???
I use the THM troubleshooter to connect via CLI.
What about your main script?
I don't have a main script
You didn't download a vpn script from
Do you mean the configuration file?
Yeah
Yes, I have. This was last working last weekend. I've been connecting for a few months this way. First time having an issue.
What happened to the THM help docs?
THM is finally showing that I am not connected, but that hasn't allowed me to actually connect.
wtf. Now it shows I am connected again.
Thank you! This directly answers my question. Much appreciated!
Gave +1 Rep to @zealous yoke
Got this error.
!vpnscript
Solved it. I needed to use the latest thm-troublshooting script.
yuups because it now handles a edge case that the older version did not
Good afternoon everyone, I am trying to connect my Kali Linux VM to the openvpn so I can do some rooms and I am finding that my VM will not connect to openvpn and it wants me to add tryhackme server's cipher so the connection is not refused
has anybody encountered this before?
yes... to fix it use the troubleshoot script above
thanks shadow I saw that you mentioned that earlier and trying to get it to run
@plush bay would you happen to know what config file it is trying to grab from my VM? can't find anything in the readme
username.ovpn
which you get from https://tryhackme.com/access
@plush bay awesome thank you
Gave +1 Rep to @plush bay
no problem
Good Evening everybody 🙂
Right now I am in the WIndows Forensics 2 Room Task4 and have to work with autopsy.
When start autopsy in the corresponding VM I get stuck when I need to add a Data Source / 1. Select Host.
I choose "Generate new hostname based on datasource name" as mentioned in the task. After I click "next" nothing happens.
Programm does not crash, VM is still accessible, but the next dialog wont show up. Restarted the VM 2 times, always same problem.
Can you give me any advise how to overcome this issue please? 🙂
Hi all! I'm actually having issues connecting to openvpn as well. It worked previously on this machine, using the same config file. I regenerated config file, also tried changing servers/config as well. I followed the troubleshooting guide. Killall openvpn, restarted openvpn again, then tried changing the MTUs (sudo ip link set dev tun0 mtu 1200) but the Tun0 interface doesnt exist. I also ran the thm-troubleshooting script, which gives me the "[Warning!] Connection process is taking longer than expected to complete," and later dies. Part of the output mentions the data-cipher 'AES-256-CBC' so i attempted to change that as well but getting 'Unrecognized Option' warning. I didnt know where to start or stop so here is just a semi-random amount of the output to see. I couldnt change the verbosity without getting a
get the newest version of the troubleshoot script and try that
it got updated recently
ahh willl do thanks!!
try this
sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' <your ovpn file here>
it worked for me
without the <> obviously
I had the same cipher error as you @leatPlato
please do not recommend this as the new troubleshoot script for vpn troubles now fixes this if it is what is wrong
kind regards shadow and jabba
jabba being thm support
Really? It didn't work for me
I mean anything that was provided by THM
I updated everything, regenerated ovpn file etc and it still had the same issue
that was helpful shadow_absorber!! many thanks ~ i appreciate it!
see this
Hello, i'm currently on final task in XSS, but cookies i have to receive won't display on my terminal, any idea ?
righto, I will take a look
Thank you sir, seems to have worked for me!! 🙂
Gave +1 Rep to @umbral sphinx
No worries, but as people have said, it is best to try the official channels of troubleshooting first.
One thing to note as a common issue with VPNs is that if your date and time are not set correctly that can cause issues sometimes. And I am pretty sure Kali VMs from my experience often do not have the time set correctly despite doing it all in the initial setup.
Here is the actual link to the THM openvpn troubleshooting (on linux)
I would like to note I ran that script out of interest and now my vm won't go past the login screen lol
oh well. I will just make a new one I guess
probably unrelated or we would have been flodded with reports of that
yeah ok. I didn't do anything other than the script. Just thought I would note it in case someone else faces the same issue
fixed the issue. Not sure what caused it.
Why OWASP Top 10 machine on Task 7 is so slow?
Does tryhackme accept digital visa gift cards for payment?
If it’s not on the website, we do not
Alright, thx
My THM AttackBoxes are randomly disconnecting and reconnecting
is this a known issue?
its happening every min or 2, its annoying as this disturbs the labs
I haven't had this issue. Can you explain it more clearly?
Can it be an internet issue on your end?
no, I tested and am not having any packet loss
I can record a screegrab and post
looks like I cant upload anything here
!docs verify
So you can send stuff
Try opening it on Full Screen view
tried that, same thing happens
it randomly disconnects and reconnects
Im using Firefox
and on Windows
its happening over multiple rooms
its unbearable, by the time I type something it gets disconnected. Sometimes it stays for 5 min, is there any help I can get or somebody I can reach out to for this?
did the help chat change? i cant seem to type in a question to search the help articles anymore... i have a 30 day badge and it says i earn a streak freeze, but how does that work?
I'm doing the Net Sec challenge. During the nmap portion i received this. "1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service" and i cant get the port number above 10,000
Im on the splunk 101 room and I cant seem to figure out how to upload the vpn log file from host to the vm and when i type http://10.10.150.3/ as the ip its an error, can someone help?
Are there OpenVPN issues again? because i am getting cipher negotiation error again, regenerated the file changed the servers same thing
Thinking of using this command so others having success with it, but wondering if it's a known issue or something?
sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' <your ovpn file here>
Yep it worked with the sed command
Hi guys not sure if this is an appropiate place to ask but I have been sold a phone that is carrier locked and can't use the phone until it is unlocked, is their anyway I can get rid of this?
Hello there !
I already uploaded a VM in THM without any problem, it was an ubuntu 20.04.5.
No problem, we were able to attack it, get the flags, etc.
I created another one yesterday, and uploaded it, but now it is an ubuntu 22.04.1.
The upload went smoothly (long with my internet connection but smoothly nonethless) and the conversion was ok too.
Now, I can enter the room, launch the machine, get its IP, but that's it. No possibility to even ping it. No website, nothing.
It is configured as the previous one, NAT Network.
Any hint on what could be wrong ?
@winter raptor Keep it appropriate
you just gonna be here to troll, @winter raptor ?
sounds like services aren't starting. VMs deploy with 1gb of RAM for subscribed users or 512mb of ram for free users if we don't configure it to be otherwise on our end
probably
im just tryna learn how to beam
beam?
what's that
yeah bye bye
Thanks for your answer, mate.
I see...
That's quite odd that my previous machine worked well and not this one though, considering the previous one had 2 Apache servers running, and that one just one.
Allright, then. Nothing much I can do then, right ?
Gave +1 Rep to @zealous yoke
:hammer: rextbh#4443 has been banned.
If you DM me the room URL I'll be able to take a look at it a bit later today 🙂
Fantastic ! Thanks a lot
Hi
Can I link a new account on the same discord, or do I remove the old one and link the new one?
You need a mod to unlink your discord.
dm or open ticket ?
Nah, no need for a dm.
Just ping one.
And ask politely
okay thank you
Hello @zealous yoke I apologize for the inconvenience, but I want to change the account linked to Discord. Can you help me?
Hello hello,
I usually use the attackbox but the browser UX is a bit chunky, I tried to connect to the attackbox's public IP address using VNC but the request would time-out, is that blocked by design i.e it's only available via the browser, or is it a problem with my connection? 🙂
If you have the resources you should use a VM.
I connected my kali vm to the vpn and the openvpn access page tells me im connected, so everything should be just fine
i attempted to do an nmap scan on blue and it didn't show any ports or anything at all, nothing from the outputs
when i tried the same thing with the web-based attackbox however it works just fine and nmap outputs scan report as expected
I can assist you in #site-support
Oh wait, this is is tech support.
How are you connecting to the VPN?
sudo openvpn <config file>
Do you get an error at all, or restarting?
Oh are you not including -Pn ?
As Blue is a windows box.
i didn't include it
🙂 Nmap would suggested to try adding -Pn if you know if the target is up.
By default, Windows blocks ICMP pings.
i see
but its weird though because everything is jsut fine when i use the same command with attackbox
I do, but there are some vpn restrictions on my network, hence i use the attackbox, and thought of vnc as a workaround
I think you can't do it because the attackbox uses the VNC.
What's wrong with your VPN, or are you in a country that blocks it?
So I can't replicate that behaviour using a VNC client? just so it's better slightly than the browser?
It connects 30% of the time, the remaining 70% the TLS handshake fails, I tried everything and am now assuming my country is trying to block it indeed
!vpnscript
See if that fixes it, which country are you in?
you can connect to the attackbox using SSH, VNC & RDP 🙂
Sure! Send me a DM 🙂
so i have to add -Pn if i'm on the vpn then?
I just tried RDP too and that didn't to work,
just to confirm im connecting using the public ip address, rather than connecting to the vpn and then using the subnetwork ip.
ill try that and let you know, thanks 🙂
Gave +1 Rep to @weary spindle
That should be fine (using the public IP) - unless your network also blocks RDP/VNC. If you send me the public IP that you're trying I can have a look 🙂
my network should work fine with RDP
here's the public ip: 54.74.13.35
How odd. I can't seem to connect either. Let me do a bit of looking on the back-end
great. thank you
oh this is a Kali-linux instance not an attackbox, if that matters, i did try the attackbox with VNC though and it didnt work
Ah, you're using the Kali instance from what I can see on our side
oh
yeah I just found that out 
The Kali image does not have the access that the proper attackbox image has. There is VNC but let me double-check my notes on how I set that up
thank youu 😄
what was the error when you tried to VNC? time out?
yes
mhm. VNC should work on that. I'll have a look
just to check, are you connecting to VNC on the IP:1 (port 5901)?
oh im using port 5900, i thought that was the default, let me try again
with VNC, every session runs on it's own port. I.e. the VNC server runs on 5900, but every session (i.e. session 1) will increment that port (i.e. 5901 == session 1, 5902 == session 2)
hi so update on this
nmap says
All 1000 scanned ports on 10.10.84.191 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
basically it still didnt work
ohhh I see, i was not aware of that,
shall i try IP:5901 or IP:1 ?
tried both for the kali instance and still no luck, ill try the attackbox
it depends on your VNC client. Some will translate the :1 into 5901, I would do IP and then port number as 5901 to be safe
i.e. seems to work for me. Asks for a password which you can get from https://tryhackme.com/my-machine
ahh, doesnt work for me, it could be my network settings
ah, doesn't seem to actually work for me either.
I'll do a bit of digging on the kali machine and see what isn't working like it's supposed to (I expect it's the password generation)
yes please and send the IP here and I'll try that (but VNC should definitely work on the attackbox image)
attackbox worked with both RDP and VNC, the first time i tried it didnt work because the port probably
ah okay yup, it'd definitely be the port on that
I'll make a ticket to remind myself to look at the Kali VNC for Monday
that would be amazingg, I appreciate your help and time
ill keep an eye on the channel here or feel free to dm if any updates if you want 🙂
yeah no worries I'll make a note about that (otherwise I'll forget sksksk). I'll have to take a proper look on Monday 🙂
I was needing this! Thank you for posting it
Gave +1 Rep to @weary spindle
@zealous yoke is there a way to get the THM troubleshoot script to change the ciphers on the network VPN's too?
I believe Jabba has put in a PR to the VPNscript for that
🙂 Cool.
lemme doublecheck but yeah there definitely would be
yup Jabba's made a PR for it 🙂
The PR isn’t merged yet
Yup.
I need to get to grips with Github 😂
😄
Tbf there’s no way to tell from that screenshot
It’s just showing the difference / changes to the code but it’s still in the PR list waiting to be merged (:
this is the PR itself 🙂 https://github.com/tryhackme/openvpn-troubleshooting/pull/13
dunno who has merge perms on that repo. Muiri perhaps?
@barren birch this is a you ting aye?
I think it is, Muiri had to merge the last change
oh wait what was this change from last week
Yeah, that works.
Okay, will merge in a l'il bit
makes sense. Doesn't look like the script knows how to differentiate between normal VPN file & networks
❤️
I could probably PR something for this when I get a bit of time
first thoughts would be adding say cmnatic-breachingad (or the format the network vpn files use) but mhhm
@bronze vale have you tested that PR? Does it work without -e?
I pushed from the wrong computer
Hi everybody!
In Agent Sudo, I Used the wrong flag but it worked ^^"
can someone explain how the streak freeze works?
If someone need a screenshot in mp, talk to me
Hey yall! I don’t know if this is the right place to ask, but I can’t log in to Kali! I don’t know what happened, but it’s not accepting my password. Any ideas?
It’s not giving me an error message. It’s just going dark then back to the login prompt.
this is just thm specific tech support, please ask in either #general #infosec-general or #quiet-conversation depending on your preference, though please only use one of those channels
Thank you very much, ! KyootyBella. Your solution with the sed command worked beautifully.!
Gave +1 Rep to @pastel tinsel
How would I make my WSL have a fully functional desktop? I had one on my other laptop but nothing came up.
Aside from recycle bin but I had files in the desktop in the terminal
I had the desktop setting similar to screen sharing an android to a tv/laptop but nothing in my terminal desktop came up on my GUI
Am I here right to ask if the breachad network is running as expected? I cannot ping the DC (10.200.4.101) from the attack machine or the opnevpn
hi so im asking this question again bcz i didn't get a response, i did an nmap scan on blue on my kali vm (connected to the vpn) and it outputs this
All 1000 scanned ports on 10.10.84.191 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)
it also outputs traceroute stuff, but nothing noteworthy/helpful so far
i was initially told to use -Pn, but the output is still the same
What is the syntax you're using?
sudo nmap -sS -sV -A -oN output.txt <target ip>
For Blue?
That's a little overkill.
Try a standard nmap.
Hello, i just deleted my first account and i noticed that i had different learning path in my first account than my second, and i can't find the learning path now ?
is it normal ?
The learning path was removed for A/B testers.
if you are talking about #878393611929129000 it is indeed intended and slightly normal as it has to do with Testing done by the devs of tryhackme
if you still wanna do that path here is the link to join it which after you do you can use the dashboard to continue down it: https://tryhackme.com/path-action/beginner/join
what's A/B ?
thanks a lot 🙂
Gave +1 Rep to @plush bay
Two different test groups essentially.
A/B testing (also known as bucket testing, split-run testing, or split testing) is a user experience research methodology. A/B tests consist of a randomized experiment that usually involves two variants (A and B), although the concept can be also extended to multiple variants of the same variable. It includes application of statistical hypothesi...
Group A will have the learning path.
Group B won't.
No, just this path.
depends if you consider really really old rooms that got removed/set to private because they are no longer that useful
They're not A/B though.
true
thanks boys
what problem exactly?
It doesn't connect correctly
!vpnscript
@mild rapids ⬆️ try that script to debug it
Okey i am gonna try it
But this script is for linux os now i am using MS Windows
....
please tell shadow you are not connecting your windows host to the tryhackme network over the vpn
I am gonna tell it the opposite but why ?
you are connecting your main computer to a network full of hackers... sure pretty much everyone is playing nice but there has been bad eggs in the bunch before
using a kali linux vm is a lot safer
and also helps when you need to use a lot of different tools for hacking on tryhackme
Please shadow don't tell me this hahaha i know that and i know using kali Linux os i just in a room where i should just doing some basic source code inspecting did you got me ?
true... okay then
well not much we can do to debug the vpn connection if not on a linux machine
So any other solution ?
¯_(ツ)_/¯
Hello there.
I have a question that could sound stupid but here I go anyway...
I created a VM and in that VM there is a wordpress running a website.
What kind of settings would allow the wordpress website to be accessible in THM ?
Should it be ```define('WP_HOME','http://localhost/wordpress');
define('WP_SITEURL','http://localhost/wordpress');
I am a bit lost.
would ask a moderator for the room creators channel access if you want to make your own tryhackme room
Thanks @plush bay
I already did a room before, but not with wordpress. And I have no clue where is the room creators channel you are talking about. 🤔
step one... verify.... step 2 ping a moderator asking for the room creator channel.... step 3 wait... step 4 profit
!docs verify
ahahaha nice oki 🙂 thanks a lot
i put in an account name change and have a couple outstanding questions on how it impacts everything.. also was told it should be a 2-3 day turn around time but its been 7 .. and not in progress yet.. is there something else i have to do ??
i am assuming i will have to re verify after my name change so it can match in discord etc etc.. just wondering how this works.. sadly im PST and the chat reps are always away unless i stay up to 1am etc etc.. which is too far out of my schedule atm
Hello i wonder why my hacking streak keeps going to 1 ? I used to be at 4 and it went back to 1 than at 8 and today i'm at 1 again knowing that i've terminated Introduction to cybersecurity, Pre security and i'm now at 26% of Jr Penetration Tester
@balmy jetty try and use the link in the message that this is a reply to... make sure you are not connected to any vpns while you click the link... it will update your timezone and country flag on your profile... assuming that is then correct the daily reset is at 00:00 your time instead of the 00:00 utc + 0 time that it usually is for unspecified places.... this will mean your streak should not drop to 1 very often
hello
i've tried the link for the time zone update and it does not work FYI i'm not using VPN
Hi Anyone know how to fix this I've already tried sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn but still not working
2023-02-27 19:01:13 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-02-27 19:01:13 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-02-27 19:01:13 OpenVPN 2.6.0 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-02-27 19:01:13 library versions: OpenSSL 3.0.8 7 Feb 2023, LZO 2.10
2023-02-27 19:01:13 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-02-27 19:01:13 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-02-27 19:01:13 TCP/UDP: Preserving recently used remote address: [AF_INET]63.35.110.70:1194
2023-02-27 19:01:13 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-02-27 19:01:13 UDPv4 link local: (not bound)
2023-02-27 19:01:13 UDPv4 link remote: [AF_INET]63.35.110.70:1194
2023-02-27 19:01:13 TLS: Initial packet from [AF_INET]63.35.110.70:1194, sid=71323056 8620f8ae
2023-02-27 19:01:13 VERIFY OK: depth=1, CN=ChangeMe
!vpnscript
Try that.
[-] Script is being run as a low-privileged user
Would you like to run this script with higher privileges automatically (Y/n)? Y
[+] Re-running with root permissions
[+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? Y
[+] Connecting....
[Warning!] Connection process is taking longer than expected to complete
[-] Failed to connect
Failure to connect to the VPN can usually be solved by one of the following options:
-Regenerating your OpenVPN config on the TryHackMe access page (https://tryhackme.com/access)
-Switching servers, then regenerating your OpenVPN config
-Checking your system time. If your system time is incorrect then this can cause issues with the authentication process
If none of these methods work, please ask for further assistance in the TryHackMe Discord server, subreddit or forums.
[-] Exiting
Thanks I re-download vpn file now is working.
Gave +1 Rep to @weary spindle
i've lost access to my account and i need to cancel my subscription
but i also can't use the discord account thats tied to my tryhackme account because i forgot the password and so i cant put my phone number in, so i cant talk using that account, so idk how you'd verify that its me
Are you able to password reset on the site? If not, you'd need to contact support@tryhackme.com. They'll know how to verify you 🙂
I contacted them 5 days ago, they never responded
Just be patient.
They'll get to you.
Is it also possible to "unjoin" & leave rooms? I have a few that are still under construction in my list.
Yes, the little cog on the top right corner.
Thanks! 👍
Gave +1 Rep to @weary spindle
hi guys please i need help i am trying to download breachingad network file for openvpn
its error 404
Uh-oh, this page has been lost in the matrix.
Perhaps, go to your dashboard
can someone help?
Leave the room, wait 15 mins and re join
and my tasks will be reset?
Hi! I'm doing the Linux Privilege Escalation room and ran into this error when trying to run the exploit on my target machine
./ofc: /lib/x86_64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found (required by ./ofc)
@stray coveHi, how can i connect my thm score to discord?
!docs verify
follow instructions in link and tada
@plush bayty appreciate it
no problem
@plush bayhey I gotta an issue here, my token is connected to an account that no longer havee access to..
can you help?
ah..... well that is for the moderators to handle then
'ight I thought you were one..
points at user list to the right shadow is not in the mod list there
@crystal marlin@foggy rover@sharp bear@glacial hound
and those except fontaene are site staff and not moderators of discord....
I'm not a mod 🙂
I'm not very familiar, can you tag a mod for me please..
@zealous yoke you around?
Send me the token over DM 🙂
@glacial hound @plush bay Appreciate the help guys!
is there a way to get the name on one of my certificates updated? It only displays my first name not my full name. I doubt I will need to use it for anything but it still bothers me, just in case.
No, you can't regen a cert that has been done.
Hi. I have issue with payment. Can someone please advise who to contact? I have emailed thm but no response for days
Hi everyone, I can't terminate the lab machine. I am pressing "terminate", but when I try to start the machine, I get the error message "Uh-oh! You already have a machine running in this room. Terminate it before deploying another machine."
hit ctrl + F5 and check
@plush bay ctrl + f5 did not work
welp that was one way to check if there was a machine already started or if not
