#site-support

1 messages · Page 21 of 1

tribal burrow
#

it is 14th line from top

dusk prawn
#

I don't remember if it's on HTB or them but I had a problem with IPv6 once

solar heart
#

@tribal burrow @dusk prawn dk if i can help you but i have exaclty the same problem on kali

dusk prawn
#

Je comprend pas j'étais connecté il y a encore quelque jours en plus

solar heart
#

hmm t'as déjà réussi toi alors

dusk prawn
#

Et je n'ai rien changer à par la mise a jour de kali

#

Oui généralement j'ai pas de souci

solar heart
#

ah la chance j'ai jamais pu faire ailleurs que sur windows

dusk prawn
#

Étrange, je sais qu'une fois j'avais eu un souci mais je sais plus si c'est sur HTB ou thm mais on m'avait fait enlevé l'ipv6

crystal marlin
#

This server is english only, please keep it as that 🙂 @dusk prawn @solar heart

dusk prawn
#

Sorry 🙂

tribal burrow
# dusk prawn

change that line that looks like data-chipers AES-256-CBC

dusk prawn
#

Ligne 14 ?

tribal burrow
#

y

dusk prawn
#

Chipers or ciphers ?

tribal burrow
#

data-ciphers AES-256-CBC

dusk prawn
#

Okay ^^

#

I test that

tribal burrow
#

save it and try run

dusk prawn
#

No 😦

tribal burrow
#

is it same ?

dusk prawn
#

Yes 😦

#

Maybe restart my PC after upgrade

tribal burrow
#

try that y

dusk prawn
#

I don't understand before it's ok, not to day

#

No it's same

#

And script not resolve my problem

tribal burrow
#

now i have same problem lol

plush bay
#

vpn works for shadow

dusk prawn
#

Oh you to oO

vocal wyvern
#

any support online?

plush bay
#

depends on support with what

dusk prawn
#

Other personal have same problem ?

solar heart
plush bay
#

well dunno how to fix your problem ta sadly enoughs

modest kite
#

works fine for me

plush bay
#

other then trying to regen vpn and then checking if you need to patch the regened vpn file for openvpn 2.6.0

vocal wyvern
#

i got a problem in pentest challenge

#

room relevant

dusk prawn
#

I have already regenerated 2 or 3 times this evening for vip 1 and vip 2

vocal wyvern
#

when i run nmaps , sometimes i got my ip bloked , like

#

i cannot use anymore

#

and when i go smbclient \\ ip etc

#

i can stay for few minuts and drop automaticlly

#

if u are support can u dm me plz

#

i am already 2 days stuck on this

plush bay
vocal wyvern
#

wtf

solar heart
#

?

plush bay
# vocal wyvern wtf

okay the only thingy shadow can do is point you at the writeups tab... that is the only writeups allowed for said room so yeah

vocal wyvern
#

men , i got problems with nmap i got bloked sometimes

#

this is a problem with thm ip

#

that is blocking cuz im using sometimes

#

i am not asking for help in the room

tribal burrow
#

try restart room

vocal wyvern
#

i am asking to help solve this problem

plush bay
sharp bisonBOT
vocal wyvern
scenic torrentBOT
#

Gave +1 Rep to @tribal burrow

dusk prawn
#

@plush bay I wait maybe tomorrow to see if my problem is solved?

plush bay
#

could be a mtu problem

plush bay
dusk prawn
#

unfortunately I don't understand a few days ago it was working

plush bay
#

yeah no clue why the vpn would just stop working without any bigger changes

dusk prawn
#

I'll try the script again then ^^

#

Problem resolved

solar heart
#

how ?

dusk prawn
#

@solar heart dm 🙂

safe kraken
#

Do the AD machines ever restart?

#

I had to shut down THMJMP2 in the "Lateral Movement and Pivoting" room

#

now it is unreachable. likely because there is no way for me to restart it

#

I'm wondering if this happens automatically or if it needs votes

plush bay
safe kraken
#

I did, but I'm the only one vot

#

*vote

#

xfreerdp went fullscreen for some reason so I had to shutdown to exit

#

I'll have to look up how to minimize, there's no menu bar like with remmina

plush bay
vocal wyvern
#

if i want to do the room again , i just have to reset progress?

#

like i want to pratice , wanna do again , i just have to reset? or gonna reset all path?

tribal burrow
#

when you restart target/room you start it again. if that is what you think of

vocal wyvern
#

all path

#

or just the room?

tribal burrow
#

just room

vocal wyvern
#

thank you sir

tribal burrow
#

np

bronze vale
#

@plush bay @weary spindle Sent a PR to the OpenVPN troubleshooting script to update ciphers. Please ask users to use the OpenVPN troubleshooting script instead of providing commands via the Discord.

If there are any issues with the script, drop me a ping

unreal veldt
#

Is there anyone here currently that can help me with my openvpn connection?
Edit: One day I may learn to read...
Edit 2:
sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn
this worked for me

feral merlin
#

VPN Servers are completely down, the autofix script is not working, do something.

viral carbon
#

my thm machines stop responding while im playing - they get auto-fixed sometimes and break again. any solution please?

weary spindle
viral carbon
weary spindle
viral carbon
#

Nope. It stays normal, but the connection gets interrupted

weary spindle
#

What happens when it does?

viral carbon
#

After a while it gets fixed but the problem persists

weary spindle
#

Does the website stop responding?

viral carbon
#

Sometimes even with attackbox, I am unable to reach the machines

weary spindle
#

Attackbox could be your connection.

feral merlin
weary spindle
feral merlin
#

It is the VIP one

weary spindle
#

What error are you getting?

zinc spoke
#

i have the same problem

#

it keeps restarting

weary spindle
sharp bisonBOT
bronze vale
#

(Just FYI, the Ciphers thing hasn’t been merged by Muir yet)

bronze vale
#

Until Muir wakes up and merges it, yes 😆

#

My apologies

weary spindle
#

No worries 😄

glad oyster
#

@barren birch 👀

barren birch
#

Muiri is awake but did not get email chceyes

#

Will take a look in a minute

weary spindle
#

Is Muiri hungover?

barren birch
fading umbra
#

I connected to tryhackme vpn but I cannot access this page 10.10.10.10 although it show I am connected in tryhackme

weary spindle
fading umbra
#

ping also doesn't reply

#

by the way I use kali as main os not as vm

weary spindle
#

How are you connecting to the VPN?

fading umbra
#

sudo openvpn /home/kali/Downloads/oma.ovpn

weary spindle
#

And the last line is

xxxx-xx-xx xx:xx:xx Initialization Sequence Completed ?

fading umbra
#

no

#

SIGUSR1[soft,process-push-msg-failed] received, process restarting
2023-02-19 17:07:30 Restart pause, 300 second(s)

weary spindle
#

That's why, you're not connected.

#

Do you have a cipher error?

#

DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations.

Will look like this, possibly at the very top.

fading umbra
#

like this

#

failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.

#

thx bro now it is working blobheart blobheart

weary spindle
#

Happy hacking!

tame vector
#

openvpn won't work

#

on version 2.6.0

weary spindle
#

Do you have a cipher error?

vagrant heath
#

how to change m username?

solar heart
#

Hello, i tryed the script troubleshooting and i get this error with the tun0 interface, do you know what should i do ?

weary spindle
weary spindle
sharp bisonBOT
tame vector
#

thx, it works now

weary spindle
tame vector
#

btw i had git bash so i did it using it

keen crow
#

anyone know function of this from AWS AWSLambdaBasicExecutionRole ?
how to AWSLambdaBasicExecutionRole can be work ?

solar heart
weary spindle
#

Try connecting, that will create the tun0 interface.

solar heart
#

infinite time...

weary spindle
#

Did you try the troubleshoot whilst connecting?

#

Infact no,

solar heart
#

Done ✅

weary spindle
#

Did it work now? 🙂

solar heart
#

yes 🙂

weary spindle
#

Excellent!

solar heart
#

can you explain me what cause this error ?

weary spindle
#

The cipher needed to be changed from cipher AES-256-GCM to data-ciphers AES-256-CBC

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

tame vector
#

can any admin pin this

bronze vale
#

@weary spindle It has been merged

bronze vale
tame vector
#

imma create a windows version of it

bronze vale
#

Of the VPN script?

tame vector
#

yeah

bronze vale
#

You can't

tame vector
#

why?

weary spindle
#

Okay, I'll stop giving out the sed command now.

tame vector
#

or create a python fork of it

bronze vale
#

It's not as easy to update the tunnel because of how Windows works, furthermore, logging on the OpenVPN gui is much different because it's not run via commandline

tame vector
#

i mean the fix

bronze vale
#

Once again

#

It wouldn't be base Windows :)

tame vector
#

ok, for now we have the script linux only

#

maybe i will bundle sed

#

the openvpn cli is included in the gui

bronze vale
#

It's not added to Path

tame vector
#

imma just do set PATH=%PATH%;C:\Program Files\OpenVPN\bin in the script

#

ok fine the script must be linux only

bronze vale
#

First, you should not be editing paths for users.
Second, you're presuming that's where the OpenVPN file is stored

ionic lotus
#

Hlo

#

Bro

#

@weary spindle

weary spindle
#

sudo ip link set dev tun0 mtu 1200

#

Run that command in a seperate window.

ionic lotus
#

Still it Was Showing 404 not found even after refreshing

weary spindle
ionic lotus
#

Yes

#

Same as u sent

weary spindle
#

Can you give me the link you're trying?

ionic lotus
#

Http://<ip>:3333/internal/uploads/php-reverse-shell.phtml

weary spindle
#

Include the IP please.

weary spindle
#

You don't have a file uploaded.

ionic lotus
#

What Is That Mean?

weary spindle
#

It means you didn't upload a file.

That's why you can't access the link.

#

The directory is empty.

ionic lotus
#

What I Want To Do Now

weary spindle
#

..You need to upload a file.

ionic lotus
#

How I Don't Know Bro!

weary spindle
#

Are you doing the room, or are you following a walkthrough?

ionic lotus
#

I'm Doing Room Some Question I Will Search In Google Sites

weary spindle
#

I thought you were using a write up.

#

You need to upload the file to catch a reverse shell.

ionic lotus
#

Ok I Will Do It From First

plush bay
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

gentle bridge
#

Hello, I am currently participating in the SOC level 1 learning path, and have been having issues deploying the attackboxes in the OpenCTI section and now the MISP. I click start machine and am prompted with a timer saying that my machine is starting however, no machine is in my split view as well as the top of the page still prompts me to launch a new machine. Are there any outages or server issues? I was not having any issues before these two sections.

plush bay
#

or rdp

gentle bridge
#

Understood, so I'm guessing by going through the "start Attackbox" then using the credentials should be good enough?

plush bay
#

yeah.... assuming that is the way the room is set up

#

sadly shadow has not touched the soc level 1 path yet so very little knowledge of how said rooms work

gentle bridge
#

Hmmm alright, I couldn't access the openCTI whatsoever with my Kali Linux or the standard Attack box. I am now having the exact same issue with MISP

#

I'll try some more troubleshooting however as of this moment, the website acts as if my server is enabled and I am supposed to be presented with a gui however I get no form of being able to access the vm through ssh or rdp

#

Disregard my comments, I realized I was supposed to type the following URL prompted by the task to access the sites and demonstrations thm wanted users to navigate towards. Sorry for the inconvenience!

plush bay
#

no problem

safe kraken
#

THIS IS MY COMMAND: mimikatz # kerberos::ptt TGS_t1_melanie.wilson@ZA.TRYHACKME.LOC_http~THMSERVER1.za.tryhackme.loc@ZA.TRYHACKME.LOC.kirbi

#

THIS IS THE RESPONSE: * File: 'TGS_t1_melanie.wilson@ZA.TRYHACKME.LOC_http~THMSERVER1.za.tryhackme.loc@ZA.TRYHACKME.LOC.kirbi': ERROR kuhl_m_kerberos_
ptt_file ; kull_m_file_readData (0x00000002)

#

This is on Task 3 of exploiting active directory

#

Should this be addressed here, or room bugs

fossil wraith
#

Hello

#

I’m having issues with the practice questions in the What The Shell room

#

I’m in Task 13 Practice And Examples and I’m working on question number 7

#

I upload the php shell:

#

<?php echo "<pre>" . shell_exec($_GET["cmd"]) . "</pre>"; ?>

#

But when I click on it on the website to execute it, it keeps throwing an error and it won’t run

safe kraken
#

SOLVED:
use "token::revert" command in mimikatz after the lsadump

#

exiting (as seen in the room instructions) is not enough

quiet bolt
#

Hello! If may I ask you for help with account recovery? I got access to email adress as well as (this) discord that this account was first created with.
But unfortunatelly, after last email change i lost my access to last email that my acc was connected to.
Regards

weary spindle
quiet bolt
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
#

!email

sharp bisonBOT
quiet bolt
crimson ginkgo
#

I tried connecting to THM using openvpn but the portal shows that I am connected to the site. However, openvpn connection is throwing error on my end and I don't have any other device running this. Help.

feral merlin
#

I have 4 days left for Throwback Access, however the Access page keeps generating a blank .ovpn file.

crimson ginkgo
remote pilot
#

Someone knows why rpmetasploit room is private for me?

weary spindle
remote pilot
#

Why?

weary spindle
#

Made private by site staff due to either being deprecated, getting fixed, isn't finished yet or a private room for business/education room.

remote pilot
#

There is a room that replace it?

stoic axle
#

Morning everyone. I used to be a subscribed user, I canceled my subscription last month because I no longer had as much time to use THM, but my cyber course has a voucher for me to use. Thing is, I can't use it because my current subscription hasn't run out yet, even after canceling. Can someone cancel it so I can enter my student voucher?

weary spindle
stoic axle
weary spindle
# stoic axle March 7th

If you cancel it now the only thing that will happen is the auto renewal turns off, then once it runs out, you can use your voucher,

stoic axle
#

I can always wait, the voucher probably will wait until then, right?

weary spindle
#

Right, the voucher won't expire 🙂

stoic axle
#

Thanks! Sorry to bother you guys.

weary spindle
#

No trouble, 🙂

lyric sigil
#

My name on the certificate is wrong who should I contact now?

weary spindle
#

Nobody, it can't be changed.

modest kite
#

Just making sure, the full name field is private right?

lyric sigil
bronze vale
modest kite
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

twin gate
#

@bronze vale Hey, you closed my support ticket without resolving it.. I've opened another one. As for the screenshot you'd asked of me, can I DM you to send it? Can't send it on this chat

bronze vale
twin gate
#

Well the ticket's closed now sooo.. Should I send it anyway?

bronze vale
twin gate
#

Oof, no worries!

sonic bison
#

hello

#

when I am cloning Facebook using social engineering toolkit in login button is not redirecting to real page

weary spindle
#

@broken bear

sonic bison
broken bear
sonic bison
#

phishing

sonic bison
broken bear
sonic bison
broken bear
# sonic bison my self

but you are using public facebook? This is extremely suspect. If you are going to do a learning exercise, do not hit public facing infrastructure.

jolly plover
#

About a week ago under my current streak there was a "1 day streak freeze" that I got from the red team ticket event, I even got a 7 day freeze streak, did my ticket expired or is this a bug?

wet gust
#

I also saw I had a 1 day streak freeze. Would also appreciate knowing what this means.

glad oyster
#

Yes that's your username

wet gust
#

Gee that's big!

glad oyster
#

Streak freeze just freezes your streak so you don't need to answer any questions for that day and you won't lose the streak

jolly plover
#

the freeze should only count If one day I didn't answered any questions, but I answered at least one question every day

bronze vale
jolly plover
#

Well, is this going to be fixed some time?

bronze vale
twin gate
#

@bronze vale Hey I used the EU server for OpenVPN and it worked.. you may close any tickets I opened

solar heart
#

Hi, any way to delete workspace i created by error ?

chrome forum
#

Hello, for the Acme IT Support website, I've been getting a target address of http://MACHINE_IP for the past two hours. I've restarted my attack box a few times since then. How can I go about getting the right target IP?

tribal mason
scenic torrentBOT
#

Gave +1 Rep to @tribal mason

naive dust
#

Hi, evertime I refresh a room (the site with the tasks) The red box with IP etc disappears and if i click on the green start machine button, the error "You have already a machine running in this room", but i cant terminate it, because the box is gone. Any ideas?

fierce zealot
#

Recently some of the network servers, and only some of them, aren't establishing a connection and keep attempting a reset over and over again. But some of the other servers work just fine. I've had to stay with a much further away server because it's the only one working for me. I am trying to do breaching AD and obviously that needs a specific config file to use that network and it isn't working for me.

2023-02-21 09:10:12 OPTIONS ERROR: failed to negotiate cipher with server.  Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
sharp bisonBOT
plush bay
#

use that to troubleshoot... it looks like one of the common issue that the vpn troubleshoot script catches

small wigeon
#

Hello I am unable to connect to the server. I get an error message like "failed to connect to server."

covert wyvern
#

Hello, when I log into my account, it acts like I don't have a subscription, but I have another month left on my annual

plush bay
#

!email

sharp bisonBOT
scenic torrentBOT
#

Gave +1 Rep to @plush bay

open otter
#

Anyone else getting a TLS error when trying to connect to the VPN? I've tried selecting regenerating my cert, I've tried changing servers and regenerating the cert, I've tried updating the cert from cipher to data ciphers (normally works), and I've tried running the thm-troubleshooting. Nothing appears to be working.

plush bay
open otter
plush bay
#

fair

open otter
#

I've tried both the east and west server as well

plush bay
#

no ideas then ¯_(ツ)_/¯

open otter
#

Looks like I forgot the - when updating the cert from cipher to data-ciphers. Ignore me, it's working now.. no idea why the troubleshooting script didn't fix it like it did for my lateral-movement.

bronze vale
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

winged parrot
#

Hi

#

For LFI chapter task 5

#

i can't get back my machine IP

#

that i was using yesterday

#

to clear previous tasks

#

any idea ?

#

like i can start my VM but not access the LFI site

dense bramble
#

you have to start the machine in task 2 again, you'll get a new IP

winged parrot
#

oh

#

gonna try

#

thanks

dense bramble
#

np

winged parrot
#

it worked

dense bramble
#

great!

marble dirge
#

Hi Tech Support..I am having connection refused issue while connecting to a server for a task. I made sure I am using the latest ovpn config file, vpn connection is successful but ssh command with remote ip is failing with connection refused error. I have even tried changing the mtu to 1200 but still issue is NOT resolved. Also ping is working. I am totally blocked and any hints to resolve the issue would be great ..

sharp bisonBOT
vagrant heath
#

dose that means i have 2 days for wreath network?

marble dirge
# sharp bison

It didn't help..my ovpn connection seems fine but i still cannot make ssh connection

plush bay
# vagrant heath dose that means i have 2 days for wreath network?

it makes you auto leave the room after that time.... this is to be able to have fewer instances of the networks being up and running taking less resources and saving costs for tryhackme.... you won't lose any progress and can just rejoin the room right away again if you are not done

scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

no problem

copper tulip
#

Help, changed password, every time I try to login it says “password successfully changed “ and does not log me in?

#

I did back out and open a new page, no I didn’t turn it off and on.

copper tulip
#

Only said password successfully changed, each of the three times I tried to log on

#

Even when I back out and open a new login page it opens with password successfully changed

marble dirge
# bronze vale Are there any errors?

Here is the result from the tool,
[+] Stable internet connection
[+] OpenVPN is installed
[+] tun0 exists
[+] tun0 IP is in the correct range
[+] Only one instance of OpenVPN is running
[+] Confirming connectivity
[+] MTU value OK
[+] Connectivity checks completed!
[+] You are connected to the TryHackMe Network
Your TryHackMe IP address is: 10.18.42.250

Happy Hacking!

bronze vale
dense bramble
copper tulip
#

Good god now it’s telling me it’s the wrong pw

marble dirge
dense bramble
marble dirge
fierce zealot
#

when that script completes it connects me to the normal vpn and not the breaching

meager valve
#

Im getting 404 error code when trying to download my vpn file for Wreath network

#

any idea how to fix it?

copper tulip
#

Ok so hacked the bank followed all the directions answered the questions correctly, but says only 60% complete?

quiet bolt
#

Hello ! Kindly asking if somebody could help me with my account recovery?

fierce zealot
#

in Breaching AD this command to get the dns server doesn't seem to work

sudo systemd-resolve --interface breachad --set-dns $THMDCIP --set-domain za.tryhackme.com
sudo: systemd-resolve: command not found
fierce zealot
#

nope my own kali

#

looks like it's fine if I just add it to my resolve.conf as the only dns server

bronze vale
high tundra
#

Hello! Im on room Lateral Movement and Pivoting and DNS does not seem to be working. Can I request a room reset?

#

I also do not seem to be able to ping machines on the network

hoary zenith
#

hey i am having the same

#

anyone know if openvpn is having issues?

#

Hey guys anyone able to help with a VPN connection issue.

I've been using THM VPN for months, no issues. Started wreath today connected etc went well. I did an update and downloaded a bunch of stuff and when I reset PC I now get issues connecting to the THM VPN.

The weird thing is I can connect to other vpns like HTB and OS. I also see in THM my IP is showing (dashboard) that I have connected but definitely haven't... Any advice?

When trying to connect to the VPN it's on a loop, like trying to connect, fails repeats etc. (I have tried regenerating the IP no luck)
[10:37 PM]
I will attach a SS of the area that is looping error
[10:37 PM]

#

Also if this helps I try to connect via the VPN, it does not connect on my side, eg loops error but on the THM dashboard it says I have connected? Appreciate the help
[10:44 PM]

sharp bisonBOT
weary spindle
#

Try running that.

hoary zenith
#

!vpnscript

sharp bisonBOT
hoary zenith
#

ok

#

will let you know what i find

copper tulip
#

Ok so hacked the bank followed all the directions answered the questions correctly, but says only 60% complete?

safe kraken
#

@hoary zenith
Change the "cipher" field in your .ovpn file to "data-ciphers"

#

I had the same issue.

#

They still haven't fixed it.

hoary zenith
#

@safe kraken you mean here?

#

ok its fixed

#

as you said it was the cipher, its been updated automatically by the troubleshoot

#

@weary spindle thanks mate

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
copper tulip
#

Is there another channel I might get some help from?

hoary zenith
#

@weary spindle , can you explain the theory behind why this error is occuring? it seem to happen out of nowhere, eg i had been using it not only an hour previously on wreath

glacial hound
#

!docs verify

sharp bisonBOT
glacial hound
#

You can DM me if you want, but would still recommend you verify.

weary spindle
hoary zenith
#

I see, and THM are looking into it? will be good to see what they do

lean plover
#

I have been sick and tried of Linux Privilege Escalation. I tried to exploit the Linux to get root access. it always shows me (/lib/x86_64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found)

hollow otter
#

Guys, if I type ls in FTP connection, than i dont see the file. WHY?! 😦

ftp> ls
ftp> 229 Entering extended passive mode (|||49363|).

If I enter 'passive' or 'passive off', I get the message:
ftp> passive Passive mode: off; fallback to active mode: off.
ftp>ls
ftp> 501 Server cannot accept argument. ftp: Can't bind for data connection: The address is already in use'

How can I solve the problem of viewing the files in the FTP server?

pastel tinsel
# hoary zenith <@958383130102870026> , can you explain the theory behind why this error is occu...

The reason behind it is because Openvpn has updated, before version 2.6 they use the variable "cipher" to tell what the data is being encrypted with, but now that they have updated to 2.6 openvpn now expect the variable "data-ciphers" instead for the exact same job, to encrypt the data being sent, Openvpn has then chosen not to accept the old variable anymore, so since the openvpn version on your client is 2.6 (most likely) it will want the "data-ciphers" variable when talking to the server, which is an older version (most likely 2.5.9) which is still generating configs with the old "cipher" variable, as this is what it's told to do as that's what it knows

#

yes the server and client can then talk when the client uses "data-ciphers" and the server uses "cipher" the error you are getting is cause the client doesn't like the old "cipher" variable

hoary zenith
#

ahh

#

perfect thanks for letting me knwo!

#

i appreciate it alot

#

@pastel tinsel thanks

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
#

you're welcome 😄

plush bay
weary spindle
#

Or rename them so you can tell which is which.

plush bay
terse pecan
#

hey, I was trying to install the default-mysql-client in my machine (kali) for the challenge, but it said it was missing some maria db packets, so I tried to install them and it didn't work, so I tried uninstalling the mariadb and installing it again, and still can't do anything

#

I can't seem to send an image for some reason

dense bramble
#

!docs verify

sharp bisonBOT
terse pecan
#

ohh tyty

misty fern
#

im doing htb appointment
however i have the flag just this one stupid fucking question im stuck on
If user input is not handled carefully, it could be interpreted as a comment. Use a comment to login as admin without knowing the password. What is the first word on the webpage returned?

**s
the answer is supposed to be 15 letters long
i did what the task asked me to do but nothing showed up no error code which im assuming is the asnwer
and the word ends with "s"

bronze vale
misty fern
#

ahhh triggered about their rivals lmao

#

alright ill go ask them

bronze vale
#

It is better to ask questions about their rooms in their Discord because they can provide much better help 🙂

We love the HackTheBox team animewave

misty fern
#

I wonder when an all out TryHackMe and HackTheBox war is going to break out lmao

bronze vale
#

I wouldn't keep your hopes up, we might be competitors but we are still people 😄

queen nova
#

hi! is there someone who can help with this issue?

plush bay
# queen nova hi! is there someone who can help with this issue?

guess you are trying to access one of the older version of the metasploit rooms that got removed... here are the new ones in the module for it: https://tryhackme.com/module/metasploit

scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

no problem

stiff nimbus
#

may i ask how long an account name change typically takes?? and is there anything i need to do to correct it for this discord server as well so it matchs once done??

plush bay
stiff nimbus
#

thank you @plush bay

scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

no problem

stiff nimbus
#

i am assuming i have to do something to re sync with this discord server once things are changed??

plush bay
#

¯_(ツ)_/¯

lusty plover
#

Hi is there an option to change my username on the site I tried to update it but I cant seem to be able to 😦

plush bay
#

!email

sharp bisonBOT
lusty plover
#

Oh thanks 🙂

plush bay
#

^ this is the email address

#

no problem

supple delta
#

hiya, whenever i start the target machine and then paste the IP in my web browser, it doesn't do anything. can somebody help? thank ya

dense bramble
plush bay
#

also what arth0s said

supple delta
#

thanks guys :D lol

dense bramble
#

no problem

haughty plaza
#

Has anyone compiled metasploit from source here?

#

I’ve built it from the pentoo repo however I can’t for the life of me figure out how I need to configure postgres and metasploit for them to work nicely together. I haven’t used either before.

safe kraken
#

I've had to regenerate mine everyday for the last couple days.

naive dust
#

Hello, is it something with machines? For example simplectf machine stopped working. I've regenerated my VPN but It didn't help. I receive timeout

#

The same for other rooms like Overpass, timeout

sharp bisonBOT
weary spindle
#

Try running that if you're on a VM.

naive dust
#

Started to work, weird. Thanks

shell carbon
#

quick question, can i use the attack box i paid for from THM for IRL CTFs and hackathons?

bronze vale
shell carbon
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

loud pelican
#

Hey, looking to check in on the resources assigned to a VM

#

in a custom room

#

does not appear to be booting

serene jewel
#

Hi, When I try to download Wreath vpn I have a 404

#

I am able to regenerate the VPN file.. but once I click on 'Download My Configuration File' I receive a 404 (which is seen the screenshot above)

spring tiger
#

I am getting errors when trying to connect my openvpn. DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations. at the start then further down OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server. This is a brand new Kali install and openvpn works for HTB and HTB Academy but not THM.

sharp bisonBOT
spring tiger
#

so if I run the command, sudo openvpn myovpn.ovpn it fails. If I run the troubleshooter, it connects, but says it fails and wont communicate.

sand lava
#

Hello, just quickly reporting that,
from the room /fileinc (challenge 8) we get a hyperlink to room /webfundamentals which is private.
The page mentions to report this issue. Have a good day 🙂

bronze vale
spring tiger
serene jewel
pastel tinsel
#

run the vpn normally and try this command
sudo ip link set dev tun0 mtu 1200

serene jewel
#
2023-02-22 17:53:37 OPTIONS ERROR: failed to negotiate cipher with server.  Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
2023-02-22 17:53:37 ERROR: Failed to apply push options
2023-02-22 17:53:37 Failed to open tun/tap interface
2023-02-22 17:53:37 SIGUSR1[soft,process-push-msg-failed] received, process restarting
2023-02-22 17:53:37 Restart pause, 1 second(s)```
pastel tinsel
#

oh, yeah, does the troubleshooting script give you same error?

serene jewel
spring tiger
bronze vale
#

We're trying to avoid posting commands without explanations @pastel tinsel btw

serene jewel
#

That works! Thanks

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
spring tiger
#

YES!! that was what I have been looking for

pastel tinsel
#

basically what this does is to change 2 words

spring tiger
#

I could not find the config file to manually change it

bronze vale
#

Going to push a fix now

pastel tinsel
#

nice!

serene jewel
#

Nice ; )

pastel tinsel
#

The reason behind why we are doing this is because Openvpn has updated, before version 2.6 they use the variable "cipher" to tell what the data is being encrypted with, but now that they have updated to 2.6 openvpn now expect the variable "data-ciphers" instead for the exact same job, to encrypt the data being sent, Openvpn has then chosen not to accept the old variable anymore, so since the openvpn version on your client is 2.6 (most likely) it will want the "data-ciphers" variable when talking to the server, which is an older version (most likely 2.5.9) which is still generating configs with the old "cipher" variable, as this is what it's told to do as that's what it knows
yes the server and client can then talk when the client uses "data-ciphers" and the server uses "cipher" the error you are getting is cause the client doesn't like the old "cipher" variable

serene jewel
#

aww gotcha, thanks for the explaination ; )

warped oriole
#

looks like I'm running in to the same error as these folks, having trouble connecting to OpenVPN 😐

pastel tinsel
#

@warped oriole use the script linked just above

#

called vpnscript

warped oriole
#

okay

#

y

#

will I have to do this every time I want to connect, then?

pastel tinsel
#

no, this should have fixed the problem, so you can now use it normally

#

have in mind, we are still in testing phase 😄

serene jewel
#

I have tried all these steps, I am still getting a 404

#

I am trying to get a ovpn file for Wreath network

steep fractal
bronze vale
naive dust
#

it says im connected through openvpn on the access page but when trying to access machines ip i get timed out cause its not responding

#

i tried terminating and restarting machine but still wont respond

sharp bisonBOT
naive dust
#

breaching active directory room help. The provided python script cannot import name httpntlmauth from requests in vmware virtual environment

remote pilot
#

Someone can help me choose which vpn server is best for me?

weary spindle
#

Where do you live?

#

This channel is used for THM related technical support, you'd get be better off using general.

dire barn
#

hi all, I'm having an issue with Task 4 in the Threat Intel Tools Room. I found the exact answer for questions 1 on ThreatFox , but it is not accepting my answers as correct. I think this might be a technical issue rather than a user error however since I double checked my answers on the external sites it asked me to go to and my spelling.

hoary zenith
#

hey guys working on wreath, connecting to VPN fine, however i cant ping the wreath machine, any ideas? ive run the troublechoot script, no issues, ive pinged the IP its up

#

my IP**

weary spindle
hoary zenith
#

yes

#

i just finished the chisel component been using it

#

then dropped out

#

should this be showing my wreath VPN? if so its not

weary spindle
#

That's bugged, pay no mind to it

hoary zenith
#

ok ogod

#

good*

#

could you try ping it to see if its working

weary spindle
#

I'm not connected to the wreath vpn nor am I in the house.

#

Try ip a s

And see if there is an interface for wreath

hoary zenith
#

yep chedk it

#

there been 3/5 resets within 30mins so maybe others are having the same issue?

safe kraken
#

THMSERVER2 and THMWRK1 are down currently, can't ping. I can ping everything else and have logged into the DC with admin priv. SERVER2 and WRK1 I can't access with any credentials, but that makes sense if I cant ping.

#

This is for the Persisting AD room

weary spindle
#

Try voting for resets.

hoary zenith
#

hey @weary spindle can i ask a question about pivioting

weary spindle
#

Sure?

hoary zenith
#

I notice a lot of tutorials on pivoting come from an angle where you already know the 2nd victim IP which is abit unrealistic for me,

Once you compromise the initial target, what do need to do to scan for other networks it could be linked with? I am thinking netstat -ano and arp-a for example? and seeing what is running as dynamic and interacting?

Also if I can get nmap for example on the compromised machine, technically that machine could scan internal IPs?(non public facing)? Appreciate the clarification if you have any feedback. I just want to understand this better

#

I understand this would look suss but Im not coming from a stealth angle

weary spindle
hoary zenith
#

are you referring to chisel, sshuttle etc? or msfconsole route/portfwd?

#

I understand the learning side of it, I guess I look at the situation as if I only have limited info

safe kraken
#

AD Credentials harvesting room is not allowing scp connections

#

nmap shows port 22 is open

keen idol
#

Hi when I try logging in through ssh in room for example Linux för forensics. I get through the first step and hit yes. But then I get a message
Ubuntu@10.10.46.80: permission denied (publickey)

Does any one know what the problem is

safe kraken
#

I'm having a problem with scp, which runs on the same port as ssh. On a different room though.

frail seal
#

I have problem with refund

#

can anyone help me ?

hidden smelt
#

Hi, Im trying to download the OpenVPN file from Networks and it redirects me to a 404 page

fierce fractal
#

Anyone know how to fix the left side of my screen, only happens when playing games on steam from what I’ve seen, no overheating, nothing wrong with monitor that I’ve noticed.

neon aspen
#

Is openvpn still messed up?

bronze vale
bronze vale
sharp bisonBOT
frail seal
#

!email

sharp bisonBOT
lusty moon
weary spindle
sharp bisonBOT
weary spindle
#

Use that, it will correct your cipher.

lusty moon
#

@weary spindle let’s see if you can figure this one out:

Terminal does not connect to the internet at all (either IP or DNS), I boot up Firefox and that works fine (even accessing sites I’ve never been to on the VM.) HTB VPN works, no other terminal based networking does.

lusty moon
#

Still having the same problem on my parrot PC

weary spindle
lusty moon
bronze vale
#

Try changing your VM’s country to the correct one @lusty moon

weary spindle
#

Yeah, I just spotted that too.

lusty moon
weary spindle
#

They more than likely will have.

#

Mine have.

bronze vale
#

If you have a representative from your college contact the support email, we can provide a list of endpoints to white list

weary spindle
#

I asked and my college said no.

#

Despite me telling them I was going to suggest to our department head that THM is better than they stuff they teach.

lusty moon
broken flax
#

Hi, is the Internal Room OK ? since last 24h i had difficulty with it, sometimes I cannot ping the IP ! page are loading sometimes not. Restart my VPN connexion help me, but I had to do it too much times (sorry if i am not in the good section here) thanks in advance

broken flax
# weary spindle I can ping it.

thanks me too, but ramdomly its like the server is off, i can't ping it, and i need to wait few mins, or restart my vpn connexion....

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

ember grove
#

I tried searching this in the discord search box first, but didn't find a good answer. I remember I used to do it, but can't remember now lol. How would I go about getting a task file, to the attackbox? Since I'm not on the VPN, I can't really use SCP. I tried drag + drop, just to see, and nope, not that either

broken flax
lusty moon
ember grove
# weary spindle Which files?

In this case, I am trying to get all the basic rooms out of the way, even if I know the content lol- I'm in the wireshark 101 room, the "task files" are pcaps

ember grove
broken flax
ember grove
#

@lusty moon - that worked, thank you!

scenic torrentBOT
#

Gave +1 Rep to @lusty moon

lusty moon
broken flax
weary spindle
broken flax
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

unkempt harbor
#

Were there any issue with the tryhackme platform? Because i lost my streak.

weary spindle
#

!email

sharp bisonBOT
unkempt harbor
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
#

@wet phoenix

#

!vpnscript

sharp bisonBOT
vocal wyvern
#

im gotting my pages super low

#

also im streamming , its that possibly someone is ddos on ip of tryhackme?

#

im trying to use disearch start and just stop and freeze , and website work , after doesnt work anymore

wet phoenix
#

Nvmed it just took 10 minutes to load

#

:/

stable spade
#

hey there

#

is there a way I can connect my attack machine to an rdp or anything like that so I can use the gui cz on the browser its hella slow

pastel tinsel
broken flax
broken flax
pallid iron
#

Hello all, I'm not sure if this is a tech support question but I have some questions regarding private rooms.

  • When creating a private room, is there a limitation on number of users who can join my room? Or example, would it be possible for like 2000 users to join my room? Or are there additional pricing point that I need to pay for X amount of users to join a private room?
  • How many private rooms can we create as a subscribed / free user account?

Sorry I wasn't able to find much stuff going through the official docs/wiki and googling

chilly wind
#

I cannot for the life of my get the VPN to work. Anyone had the same issue?

I have tried lowering MTu to 1200 and 1400, refreshing .ovpn file and I followed the troubleshooting document to no avail. Curiously the VPN works fine on my windows using open VPN gui but NOT on my Kali VM. I'm using Vmware workstation.

#

ok apprently Kali just hates it. Parrot runs fine

#

so parrot it is

left lotus
#

I was having this issue too and it seems to happen like something just expires on their end. Once it kills your RDP session, it won't let you back in. I've been refreshing the room, terminating the machine and re-doing Tasks 1-2 before proceeding to my prior tasks. It's not perfect because some of the work needs prior steps to work correctly, but this room is pretty broken because of it.

waxen shard
#

How do I copy from the attackbox?
I googled it and someone said ctrl + shift + c but it doesnt work to paste into my host, super annoying with the flags

weary spindle
zealous yoke
barren silo
#

Hi, when trying to use hashcat, I am getting the following error message:

#

Starting self-test. Please be patient...zsh: illegal hardware instruction

#

pls help me

light path
#

Have you searched the error?

fast flare
#

late to the party... I am trying Advent of cyber 22 and for task 25 when i extract, i realize that some folders are missing. SO i cannot find the keys when i run the grep command. Any help please?

barren silo
dim quail
#

I'm having trouble connecting to the vpn. I used the troubleshooting script and followed its suggestions. Regenerated config file, changed servers and regenerated config file, system time is correct. The THM website says I am connected, but I am not.

light path
#

Can you verify in your machine that you have an interface for the VPN?

#

ifconfig

dim quail
#

I do not.

light path
#

What do the error logs say when connecting via VPN?

dim quail
#

There doesn't appear to be an error log.

weary spindle
#

Are you connecting via the CLI or VPN profile?

solid path
plush bay
plush bay
dim quail
weary spindle
dim quail
#

I don't have a main script

weary spindle
dim quail
#

Do you mean the configuration file?

weary spindle
#

Yeah

dim quail
#

Yes, I have. This was last working last weekend. I've been connecting for a few months this way. First time having an issue.

#

What happened to the THM help docs?

#

THM is finally showing that I am not connected, but that hasn't allowed me to actually connect.

#

wtf. Now it shows I am connected again.

pallid iron
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

dim quail
#

Got this error.

plush bay
sharp bisonBOT
dim quail
#

Solved it. I needed to use the latest thm-troublshooting script.

plush bay
#

yuups because it now handles a edge case that the older version did not

rugged thunder
#

Good afternoon everyone, I am trying to connect my Kali Linux VM to the openvpn so I can do some rooms and I am finding that my VM will not connect to openvpn and it wants me to add tryhackme server's cipher so the connection is not refused

#

has anybody encountered this before?

plush bay
rugged thunder
#

thanks shadow I saw that you mentioned that earlier and trying to get it to run

#

@plush bay would you happen to know what config file it is trying to grab from my VM? can't find anything in the readme

plush bay
#

username.ovpn

rugged thunder
#

@plush bay awesome thank you

scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

no problem

naive dust
#

Good Evening everybody 🙂
Right now I am in the WIndows Forensics 2 Room Task4 and have to work with autopsy.
When start autopsy in the corresponding VM I get stuck when I need to add a Data Source / 1. Select Host.
I choose "Generate new hostname based on datasource name" as mentioned in the task. After I click "next" nothing happens.
Programm does not crash, VM is still accessible, but the next dialog wont show up. Restarted the VM 2 times, always same problem.
Can you give me any advise how to overcome this issue please? 🙂

vestal cloud
#

Hi all! I'm actually having issues connecting to openvpn as well. It worked previously on this machine, using the same config file. I regenerated config file, also tried changing servers/config as well. I followed the troubleshooting guide. Killall openvpn, restarted openvpn again, then tried changing the MTUs (sudo ip link set dev tun0 mtu 1200) but the Tun0 interface doesnt exist. I also ran the thm-troubleshooting script, which gives me the "[Warning!] Connection process is taking longer than expected to complete," and later dies. Part of the output mentions the data-cipher 'AES-256-CBC' so i attempted to change that as well but getting 'Unrecognized Option' warning. I didnt know where to start or stop so here is just a semi-random amount of the output to see. I couldnt change the verbosity without getting a

plush bay
#

it got updated recently

vestal cloud
#

ahh willl do thanks!!

devout dawn
#

connection issues for me also

#

on EU servers

umbral sphinx
#

try this

#

sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' <your ovpn file here>

#

it worked for me

#

without the <> obviously

#

I had the same cipher error as you @leatPlato

plush bay
#

kind regards shadow and jabba

#

jabba being thm support

umbral sphinx
#

Really? It didn't work for me

#

I mean anything that was provided by THM

#

I updated everything, regenerated ovpn file etc and it still had the same issue

vestal cloud
#

that was helpful shadow_absorber!! many thanks ~ i appreciate it!

winged parrot
#

Hello, i'm currently on final task in XSS, but cookies i have to receive won't display on my terminal, any idea ?

umbral sphinx
devout dawn
scenic torrentBOT
#

Gave +1 Rep to @umbral sphinx

umbral sphinx
#

No worries, but as people have said, it is best to try the official channels of troubleshooting first.

#

One thing to note as a common issue with VPNs is that if your date and time are not set correctly that can cause issues sometimes. And I am pretty sure Kali VMs from my experience often do not have the time set correctly despite doing it all in the initial setup.

#

Here is the actual link to the THM openvpn troubleshooting (on linux)

plush bay
#

or in the bot command for it

#

!vpnscript

sharp bisonBOT
umbral sphinx
#

I would like to note I ran that script out of interest and now my vm won't go past the login screen lol

#

oh well. I will just make a new one I guess

plush bay
#

probably unrelated or we would have been flodded with reports of that

umbral sphinx
#

yeah ok. I didn't do anything other than the script. Just thought I would note it in case someone else faces the same issue

#

fixed the issue. Not sure what caused it.

small lotus
#

Why OWASP Top 10 machine on Task 7 is so slow?

patent scaffold
#

Does tryhackme accept digital visa gift cards for payment?

bronze vale
patent scaffold
#

Alright, thx

lean girder
#

Hello

#

Do you think RAM could be an issue of why I can't download apps

light path
#

Most likely storage, not RAM

#

RAM can be attributed to you not being able to use apps

molten bough
#

My THM AttackBoxes are randomly disconnecting and reconnecting

#

is this a known issue?

#

its happening every min or 2, its annoying as this disturbs the labs

light path
#

I haven't had this issue. Can you explain it more clearly?

#

Can it be an internet issue on your end?

molten bough
#

no, I tested and am not having any packet loss

#

I can record a screegrab and post

#

looks like I cant upload anything here

light path
#

!docs verify

sharp bisonBOT
light path
#

So you can send stuff

molten bough
#

the AttackBox frequently goes to this screen and then comes back

light path
#

Try opening it on Full Screen view

molten bough
#

tried that, same thing happens

#

it randomly disconnects and reconnects

#

Im using Firefox

#

and on Windows

#

its happening over multiple rooms

#

its unbearable, by the time I type something it gets disconnected. Sometimes it stays for 5 min, is there any help I can get or somebody I can reach out to for this?

thin burrow
#

did the help chat change? i cant seem to type in a question to search the help articles anymore... i have a 30 day badge and it says i earn a streak freeze, but how does that work?

blissful mango
#

I'm doing the Net Sec challenge. During the nmap portion i received this. "1 service unrecognized despite returning data. If you know the service/version, please submit the following fingerprint at https://nmap.org/cgi-bin/submit.cgi?new-service" and i cant get the port number above 10,000

spark patrol
#

Im on the splunk 101 room and I cant seem to figure out how to upload the vpn log file from host to the vm and when i type http://10.10.150.3/ as the ip its an error, can someone help?

light vale
#

Are there OpenVPN issues again? because i am getting cipher negotiation error again, regenerated the file changed the servers same thing

#

Thinking of using this command so others having success with it, but wondering if it's a known issue or something?

sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' <your ovpn file here>

#

Yep it worked with the sed command

little knoll
#

Hi guys not sure if this is an appropiate place to ask but I have been sold a phone that is carrier locked and can't use the phone until it is unlocked, is their anyway I can get rid of this?

thorn bone
#

Hello there !

I already uploaded a VM in THM without any problem, it was an ubuntu 20.04.5.
No problem, we were able to attack it, get the flags, etc.
I created another one yesterday, and uploaded it, but now it is an ubuntu 22.04.1.
The upload went smoothly (long with my internet connection but smoothly nonethless) and the conversion was ok too.

Now, I can enter the room, launch the machine, get its IP, but that's it. No possibility to even ping it. No website, nothing.
It is configured as the previous one, NAT Network.

Any hint on what could be wrong ?

bronze vale
#

@winter raptor Keep it appropriate

zealous yoke
#

you just gonna be here to troll, @winter raptor ?

zealous yoke
winter raptor
#

im just tryna learn how to beam

zealous yoke
#

beam?

winter raptor
#

yeag

#

yeah

zealous yoke
#

what's that

winter raptor
#

nevermind

#

btw @zealous yoke have u heard of sugma?

zealous yoke
#

yeah bye bye

thorn bone
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

marble breachBOT
#

:hammer: rextbh#4443 has been banned.

zealous yoke
agile swallow
#

Hi
Can I link a new account on the same discord, or do I remove the old one and link the new one?

weary spindle
#

You need a mod to unlink your discord.

agile swallow
weary spindle
#

And ask politely

agile swallow
#

okay thank you

#

Hello @zealous yoke I apologize for the inconvenience, but I want to change the account linked to Discord. Can you help me?

analog shuttle
#

Hello hello,

I usually use the attackbox but the browser UX is a bit chunky, I tried to connect to the attackbox's public IP address using VNC but the request would time-out, is that blocked by design i.e it's only available via the browser, or is it a problem with my connection? 🙂

weary spindle
#

If you have the resources you should use a VM.

naive dust
#

I connected my kali vm to the vpn and the openvpn access page tells me im connected, so everything should be just fine

i attempted to do an nmap scan on blue and it didn't show any ports or anything at all, nothing from the outputs

when i tried the same thing with the web-based attackbox however it works just fine and nmap outputs scan report as expected

weary spindle
#

Oh wait, this is is tech support.

weary spindle
naive dust
weary spindle
#

Oh are you not including -Pn ?

#

As Blue is a windows box.

naive dust
weary spindle
#

By default, Windows blocks ICMP pings.

naive dust
#

i see
but its weird though because everything is jsut fine when i use the same command with attackbox

analog shuttle
weary spindle
weary spindle
analog shuttle
analog shuttle
sharp bisonBOT
weary spindle
#

See if that fixes it, which country are you in?

zealous yoke
naive dust
#

so i have to add -Pn if i'm on the vpn then?

analog shuttle
analog shuttle
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

zealous yoke
analog shuttle
#

my network should work fine with RDP
here's the public ip: 54.74.13.35

zealous yoke
#

How odd. I can't seem to connect either. Let me do a bit of looking on the back-end

analog shuttle
#

great. thank you

#

oh this is a Kali-linux instance not an attackbox, if that matters, i did try the attackbox with VNC though and it didnt work

zealous yoke
#

Ah, you're using the Kali instance from what I can see on our side

#

oh

#

yeah I just found that out KEKW

#

The Kali image does not have the access that the proper attackbox image has. There is VNC but let me double-check my notes on how I set that up

analog shuttle
#

thank youu 😄

zealous yoke
#

what was the error when you tried to VNC? time out?

analog shuttle
#

yes

zealous yoke
#

mhm. VNC should work on that. I'll have a look

#

just to check, are you connecting to VNC on the IP:1 (port 5901)?

analog shuttle
#

oh im using port 5900, i thought that was the default, let me try again

zealous yoke
#

with VNC, every session runs on it's own port. I.e. the VNC server runs on 5900, but every session (i.e. session 1) will increment that port (i.e. 5901 == session 1, 5902 == session 2)

naive dust
analog shuttle
#

ohhh I see, i was not aware of that,
shall i try IP:5901 or IP:1 ?

#

tried both for the kali instance and still no luck, ill try the attackbox

zealous yoke
#

it depends on your VNC client. Some will translate the :1 into 5901, I would do IP and then port number as 5901 to be safe

analog shuttle
#

ahh, doesnt work for me, it could be my network settings

zealous yoke
#

ah, doesn't seem to actually work for me either.

#

I'll do a bit of digging on the kali machine and see what isn't working like it's supposed to (I expect it's the password generation)

analog shuttle
#

thank you once againn

#

ill test with the attackbox meanwhile

zealous yoke
#

yes please and send the IP here and I'll try that (but VNC should definitely work on the attackbox image)

analog shuttle
#

attackbox worked with both RDP and VNC, the first time i tried it didnt work because the port probably

zealous yoke
#

ah okay yup, it'd definitely be the port on that

#

I'll make a ticket to remind myself to look at the Kali VNC for Monday

analog shuttle
#

that would be amazingg, I appreciate your help and time

#

ill keep an eye on the channel here or feel free to dm if any updates if you want 🙂

zealous yoke
somber wraith
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
#

@zealous yoke is there a way to get the THM troubleshoot script to change the ciphers on the network VPN's too?

zealous yoke
#

I believe Jabba has put in a PR to the VPNscript for that

weary spindle
#

🙂 Cool.

zealous yoke
#

lemme doublecheck but yeah there definitely would be

#

yup Jabba's made a PR for it 🙂

weary spindle
#

It's telling me I need to look for my main script.

#

Maybe I just need to wait.

zealous yoke
#

The PR isn’t merged yet

weary spindle
#

Yup.

I need to get to grips with Github 😂

zealous yoke
#

😄

#

Tbf there’s no way to tell from that screenshot

#

It’s just showing the difference / changes to the code but it’s still in the PR list waiting to be merged (:

#

dunno who has merge perms on that repo. Muiri perhaps?

#

@barren birch this is a you ting aye?

weary spindle
#

I think it is, Muiri had to merge the last change

weary spindle
#

Yeah, that works.

zealous yoke
#

oh I see that difference

#

okay yeah that PR needs to be merged

weary spindle
#

but I can't use it to fix the breaching scipt.

#

😄

barren birch
#

Okay, will merge in a l'il bit

zealous yoke
zealous yoke
zealous yoke
#

first thoughts would be adding say cmnatic-breachingad (or the format the network vpn files use) but mhhm

weary spindle
#

Yeah

#

Instead of just tun0

barren birch
#

@bronze vale have you tested that PR? Does it work without -e?

opal jackal
#

Hi everybody!
In Agent Sudo, I Used the wrong flag but it worked ^^"

thin burrow
#

can someone explain how the streak freeze works?

opal jackal
cunning egret
#

Hey yall! I don’t know if this is the right place to ask, but I can’t log in to Kali! I don’t know what happened, but it’s not accepting my password. Any ideas?

It’s not giving me an error message. It’s just going dark then back to the login prompt.

pastel tinsel
lean cipher
#

Thank you very much, ! KyootyBella. Your solution with the sed command worked beautifully.!

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

eager adder
#

How would I make my WSL have a fully functional desktop? I had one on my other laptop but nothing came up.

#

Aside from recycle bin but I had files in the desktop in the terminal

eager adder
#

I had the desktop setting similar to screen sharing an android to a tv/laptop but nothing in my terminal desktop came up on my GUI

abstract adder
#

Am I here right to ask if the breachad network is running as expected? I cannot ping the DC (10.200.4.101) from the attack machine or the opnevpn

naive dust
#

hi so im asking this question again bcz i didn't get a response, i did an nmap scan on blue on my kali vm (connected to the vpn) and it outputs this

All 1000 scanned ports on 10.10.84.191 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)

it also outputs traceroute stuff, but nothing noteworthy/helpful so far
i was initially told to use -Pn, but the output is still the same

weary spindle
#

What is the syntax you're using?

naive dust
#

sudo nmap -sS -sV -A -oN output.txt <target ip>

weary spindle
#

For Blue?

That's a little overkill.

Try a standard nmap.

solar heart
#

Hello, i just deleted my first account and i noticed that i had different learning path in my first account than my second, and i can't find the learning path now ?

#

is it normal ?

weary spindle
#

The learning path was removed for A/B testers.

plush bay
plush bay
solar heart
scenic torrentBOT
#

Gave +1 Rep to @plush bay

weary spindle
plush bay
# solar heart what's A/B ?

A/B testing (also known as bucket testing, split-run testing, or split testing) is a user experience research methodology. A/B tests consist of a randomized experiment that usually involves two variants (A and B), although the concept can be also extended to multiple variants of the same variable. It includes application of statistical hypothesi...

weary spindle
#

Group A will have the learning path.
Group B won't.

solar heart
#

oh i see

#

is there more room that i couldnt see like this one ?

weary spindle
#

No, just this path.

plush bay
#

depends if you consider really really old rooms that got removed/set to private because they are no longer that useful

weary spindle
#

They're not A/B though.

plush bay
#

true

solar heart
#

thanks boys

mild rapids
#

Hello guys i hope all doing good

#

I have a problem regarding the vpn connection

light vale
mild rapids
#

It doesn't connect correctly

plush bay
#

!vpnscript

sharp bisonBOT
plush bay
#

@mild rapids ⬆️ try that script to debug it

mild rapids
mild rapids
plush bay
#

....

#

please tell shadow you are not connecting your windows host to the tryhackme network over the vpn

mild rapids
plush bay
#

you are connecting your main computer to a network full of hackers... sure pretty much everyone is playing nice but there has been bad eggs in the bunch before

#

using a kali linux vm is a lot safer

#

and also helps when you need to use a lot of different tools for hacking on tryhackme

mild rapids
plush bay
#

true... okay then

#

well not much we can do to debug the vpn connection if not on a linux machine

mild rapids
#

So any other solution ?

plush bay
#

¯_(ツ)_/¯

thorn bone
#

Hello there.
I have a question that could sound stupid but here I go anyway...
I created a VM and in that VM there is a wordpress running a website.
What kind of settings would allow the wordpress website to be accessible in THM ?
Should it be ```define('WP_HOME','http://localhost/wordpress');
define('WP_SITEURL','http://localhost/wordpress');

I am a bit lost.
plush bay
thorn bone
#

Thanks @plush bay
I already did a room before, but not with wordpress. And I have no clue where is the room creators channel you are talking about. 🤔

plush bay
#

!docs verify

sharp bisonBOT
thorn bone
#

ahahaha nice oki 🙂 thanks a lot

stiff nimbus
#

i put in an account name change and have a couple outstanding questions on how it impacts everything.. also was told it should be a 2-3 day turn around time but its been 7 .. and not in progress yet.. is there something else i have to do ??

#

i am assuming i will have to re verify after my name change so it can match in discord etc etc.. just wondering how this works.. sadly im PST and the chat reps are always away unless i stay up to 1am etc etc.. which is too far out of my schedule atm

balmy jetty
#

Hello i wonder why my hacking streak keeps going to 1 ? I used to be at 4 and it went back to 1 than at 8 and today i'm at 1 again knowing that i've terminated Introduction to cybersecurity, Pre security and i'm now at 26% of Jr Penetration Tester

plush bay
#

@balmy jetty try and use the link in the message that this is a reply to... make sure you are not connected to any vpns while you click the link... it will update your timezone and country flag on your profile... assuming that is then correct the daily reset is at 00:00 your time instead of the 00:00 utc + 0 time that it usually is for unspecified places.... this will mean your streak should not drop to 1 very often

balmy jetty
#

hello

#

i've tried the link for the time zone update and it does not work FYI i'm not using VPN

round pawn
#

Hi Anyone know how to fix this I've already tried sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn but still not working

#

2023-02-27 19:01:13 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-02-27 19:01:13 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-02-27 19:01:13 OpenVPN 2.6.0 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-02-27 19:01:13 library versions: OpenSSL 3.0.8 7 Feb 2023, LZO 2.10
2023-02-27 19:01:13 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-02-27 19:01:13 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-02-27 19:01:13 TCP/UDP: Preserving recently used remote address: [AF_INET]63.35.110.70:1194
2023-02-27 19:01:13 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-02-27 19:01:13 UDPv4 link local: (not bound)
2023-02-27 19:01:13 UDPv4 link remote: [AF_INET]63.35.110.70:1194
2023-02-27 19:01:13 TLS: Initial packet from [AF_INET]63.35.110.70:1194, sid=71323056 8620f8ae
2023-02-27 19:01:13 VERIFY OK: depth=1, CN=ChangeMe

sharp bisonBOT
weary spindle
#

Try that.

round pawn
# sharp bison

[-] Script is being run as a low-privileged user
Would you like to run this script with higher privileges automatically (Y/n)? Y
[+] Re-running with root permissions
[+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? Y
[+] Connecting....
[Warning!] Connection process is taking longer than expected to complete
[-] Failed to connect
Failure to connect to the VPN can usually be solved by one of the following options:
-Regenerating your OpenVPN config on the TryHackMe access page (https://tryhackme.com/access)
-Switching servers, then regenerating your OpenVPN config
-Checking your system time. If your system time is incorrect then this can cause issues with the authentication process
If none of these methods work, please ask for further assistance in the TryHackMe Discord server, subreddit or forums.
[-] Exiting

round pawn
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

frail star
#

i've lost access to my account and i need to cancel my subscription

#

but i also can't use the discord account thats tied to my tryhackme account because i forgot the password and so i cant put my phone number in, so i cant talk using that account, so idk how you'd verify that its me

zealous yoke
frail star
weary spindle
solid path
#

Is it also possible to "unjoin" & leave rooms? I have a few that are still under construction in my list.

weary spindle
#

Yes, the little cog on the top right corner.

solid path
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

cosmic vapor
#

hi guys please i need help i am trying to download breachingad network file for openvpn

#

its error 404

#

Uh-oh, this page has been lost in the matrix.

Perhaps, go to your dashboard

#

can someone help?

weary spindle
cosmic vapor
blissful mango
#

Hi! I'm doing the Linux Privilege Escalation room and ran into this error when trying to run the exploit on my target machine
./ofc: /lib/x86_64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found (required by ./ofc)

lusty hollow
#

@stray coveHi, how can i connect my thm score to discord?

sharp bisonBOT
plush bay
#

follow instructions in link and tada

lusty hollow
#

@plush bayty appreciate it

plush bay
#

no problem

lusty hollow
#

@plush bayhey I gotta an issue here, my token is connected to an account that no longer havee access to..

#

can you help?

plush bay
#

ah..... well that is for the moderators to handle then

lusty hollow
#

'ight I thought you were one..

plush bay
#

points at user list to the right shadow is not in the mod list there

lusty hollow
plush bay
#

and those except fontaene are site staff and not moderators of discord....

lusty hollow
glacial hound
#

@zealous yoke you around?

zealous yoke
lusty hollow
#

@glacial hound @plush bay Appreciate the help guys!

vivid sky
#

is there a way to get the name on one of my certificates updated? It only displays my first name not my full name. I doubt I will need to use it for anything but it still bothers me, just in case.

weary spindle
#

No, you can't regen a cert that has been done.

thin cosmos
#

Hi. I have issue with payment. Can someone please advise who to contact? I have emailed thm but no response for days

upper comet
#

Hi everyone, I can't terminate the lab machine. I am pressing "terminate", but when I try to start the machine, I get the error message "Uh-oh! You already have a machine running in this room. Terminate it before deploying another machine."

upper comet
#

@plush bay ctrl + f5 did not work

plush bay
#

welp that was one way to check if there was a machine already started or if not

upper comet
#

@plush bay can I take a screenshot here?

#

@plush bay The machine I "terminated" comes back when I refresh the page.