#site-support
1 messages Β· Page 37 of 1
Hello Everyone, I have a quick question. My work has decided to pay for THM, so I cancelled my personal account. Can I transfer my progress to the new account?
thanks. I will find that email and start the process!
Hi, is there a way to disable email notifications? Cannot find such option i profile settings
when you get email. you have unsub link
ooh right. Didn't notice gmail trimmed the message just enough to not show the link lol. Thanks!
Gave +1 Rep to @tribal burrow
glad to help
We cannot transfer account data/ merge accounts^
@past shard
alright. if I delete my corp account, could I use my work email to use that sub for my personal account?
If they're on a business plan, yes you should be able to switch the emails
If it's a voucher/ standard subscription, you wil need to active it on the account with your progress on
nice. I will delete my corp THM account and try to switch. Thanks!
is there a customer service number?
also do you know if the person inviting needs to attach the corp account to the work or personal account email?
How long does it take the staff to check the ticket I submitted?
around 3 days cca. might more if there is lots of tickets...
Ok thanks
Gave +1 Rep to @tribal burrow
Anyone around that works in support??
hey i need some help
ask
!docs verify
you need verify acc to post a pics
your attack box is like local vm. just this is in browser. you using that in browser to hack the ip address on the right left side. there is nothing to connect via ssh
if i explained to understand
that in browser you use to follow metasploit introduction
np. we all learn from mistakes
(:
the right in browser have different ip. the left side is target ip
someone know how to solve it?
can you pls post full picture
!vpnscript
try that. but it looks like cipher issue
no
you need put that scrypt in folder where is you thm .ovpn file
and run it from that folder
oh ok
if you .ovpn file is in download . then you make that script in same directory and run it. as instructed
working ?
I need help. I have been connecting with openvpn but when I'm trying to open a ACMI site with my virtual ip address the page is still loading
how can I solve this problem?
connection time out
what you mean pull account ?
@chilly pike
No, there isn't.
ip a s
how come there is a timer on my attack box? i thought with premium i had as much time as i wanted
once it expires can i just boot up a new one?
You have as much time as you want, but we have to have a timer or else people will leave their boxes on and it will run up our costs
ok thats fair
(Although I think they max out after 10 hours, you will have to terminate and redeploy)
so there is no "extend" button and you just have to re boot it each time
right sorry, i found the button. been ages since i used this service
im doing this to get back into cybver sec and not get too rusty and waste my cert that i trained for
I thought it was 6, or is that targets?
Hi, does anyyone know what RANK on the Dashboard page means? So, how you get a higher rank.
!docs levels
That will explain it.
Thanks for your fast answer.
Gave +1 Rep to @weary spindle
Do you know if the support on try hack me site have problem ? It's a real question not a mockery, I submitted a ticked 7 day ago and nobody respond, is this the normal waiting time or do I have to resubmit a ticket?
5-7 days is the current support wait
Can't finish Brainstorm since I need either wine debug or a VM, so I can't get the file because TryHackMe is blocking my VPN connection (even in FTP). I've checked my firewall rules and nothing there.
Attackbox won't work because you can't install on it.
The room itself should have a xfreerdp like the previous one...
I'm probably missing something in the forums or FAQ, anyone run into the "Uh Oh, you can only have 3 machines at once" error? i'm not sure how to terminate old machines.
yes, one moment
Replace Username with your username
https://tryhackme.com/<Username>/badges/<badge-name>
Probably not, I have no idea what Mastodon is π
Unfortunately, we won't be able to cover all platforms, hence why the goto link is in place
mastodon is basically twitter but more open source and part of the fediverse meaning it is a huge amount of different servers with different rules that agree to talk to each other and do nice stuff.. most of mastodon is open source too and you can host your own server... but yeah adding a button to share on mastodon feels like a huge waste of time and problems due to how many differnt home servers there are
are my messages invisible?
Who said that?
What's up?
I fixed the issue but earlier I was having problems with the Brainstorm room, why is there no RDP on the room like the other ones?
And is there any way to ask them to add it?
Can't seem to install Immunity Debugger on linux
Link?
I don't think you need to log on to the machine?
You'd run the immunity debugger on your own
It is if you use Windows.
So 32bit Windows 10 or 11?
Any you can install Immunity debugger on.
It didn't work opening the kernel32.dll on my W11 VM.
Where do you get that?
I've had it for years, I'm not sure where you can get it legit.
Will Ghidra work as good as Immunity?
Never tried to use it for this room.
Installing W10 with 32-bit worked β€οΈ
can i get some help with a technical issue? 'tryhackme remote server is not currently reachable'
my network is fine
nvm the brainstorm box is absolutely broken
someone retire it
should be renamed brainache
you have to install a windows 7 machine, put the ftp to binary mode AND put it to passive off at the same time as the program won't run
which isn't stated anywhere and you have to sit there for 8 hours figuring out stuff on your own
which shouldn't be the case
plus owning a w7 version without a license is illegal
so thm is directly asking you to break the law
Thm isn't asking you to break the law.
You can use all windows versions without a license?
doesn't the EULA state that you can't use expired versions?
What do you think expired means?
expired such as no longer supported
Evaluation copies are still a thing
They don't expire, support expires.
Yeah
For Win10/11 and Server, you still need an evaluation license key.
So I would have to buy a license.. to finish the room?
W10, W11 didn't work with Brainstorm's exe
Nope, but the previous one did. So I don't see why this one wouldn't
The like/dislike ratio is 494 which is extremly low compared to others
Did you google how to get ID to work on W10?
excuse me but why does my windows VM not connect, i keep getting this message:
"CONNECTION ERROR
The TryHackMe remote server is not currently reachable. Please check your network and try again"
i'm a paying subscriber
Can i please have some assistance on my account. It just suddenly said that i'm not on a premium but i just paid it last 4th of july. Already created a ticket for it.
hello all
hope you all doing great
i am having problem with openvpn
i am getting this error
Options error: Unrecognized option or missing or extra parameter(s) in /home/la/Downloads/pa.ovpn:14: data-ciphers (2.4.7)
i tried this sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn
thanks in advance
!vpnscript
might help
Please enter the path to your config: /mnt/b9c79544-742e-4491-95ac-63b9f495e624/tryhackme classes/usertesting1680.ovpn
./thm-troubleshoot: line 154: [: /mnt/b9c79544-742e-4491-95ac-63b9f495e624/tryhackme: binary operator expected
Nice your config to a local folder instead
hey everyone. i can connect to THM's network with OpenVPN and it says connected, however I can never seem to access my machine
neither through my browser or pinging the machine's IP
Are you connected on Windows/Linux?
CLI or GUI?
Can you do ip a s and count the number of tun*?
mac
and ive connected to the vpn on both gui and cli
"Can you do ip a s and count the number of tun*?" how do i do that?
I assumed you were doing it on Linux.
Probably the equivalent of whatever "ipconfig" is
i think ipconfig is on it
In the room https://tryhackme.com/room/catregex I have run into at least one question where the correct answer was rejected using chrome on my phone but accepted when I was using chrome on my laptop. Figured I should give a yell here.
can you elaborate
thanks for the help done
read 4 times that it got it 
tun0 interface does not exist
now this is new error
Move*
i done that but it is saying that tun0 interface does not exist
I'm locked out. Who should I contact?
Current wait time is 5-7 day(s)
uw
AWS Environment State stuck at resetting
Guys, hope this isn't too much of a stupid question (I feel stupid asking it) but have to...(lol) - in the thm exercises how do we copy a command from an exercise into the terminal of the attack box? (ctrl-c and right-click-copy dont work). Thanks guys appreciate it.
thanks tsr, I'll give it a go.....
apologies mate.....but do I actually need to install Clipboard into the attack box?
just click on the button, click on clipboard, paste what u need in the box and then just paste in the attack box
and vice versa
Yip...saw that, giving it a god (appreciate your assistance).....
np
Bang! Thanks Mate.....;)
have fun!
Apprecaite it!!
ow
So I updated my openvpn and was unable to connect. After searching the internet I found I needed to change cipher to data-cipher in the file due to updating to 2.6.3. Now Iβm able to get to Initialization Sequence Complete but then it goes on and adds β2023-07-09 08:38:10 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 51, compression: 'lzo'
2023-07-09 08:38:10 Timers: ping 5, ping-restart 120
2023-07-09 08:38:10 Protocol options: explicit-exit-notify 3β. And Iβm still unable to connect. Any ideas?
I'm having a similar issue connecting to VPN. I have previously replaced the config line "cipher AES-256-CBC" with "data-ciphers AES-256-CBC"
!vpnscript
Try that.
@weary spindle am i supposed to download script to same location as thm vpn config file?
Yes please, it will work better.
lol nothing is happening? if i change the filename to .sh and try to run it, it just tells me 89 bad substitution
@scrubz not sure what i did, or didnt do-- but i downloaded a new thm vpn config file and everything appears to be in order now π
I dont believe the script ran, however :\
Maybe that's all you had to do π
thx pal
It might not have, but the regen could have fixed it
Press CTRL and F5, does it fix it?
Gave +1 Rep to @weary spindle
thanks
Gave +1 Rep to @hollow niche
!rep
Bot commands for that
ill send sc
Thanks!
That's not showing me the VPN isn't working?
it shows the connection timed out on the vpn
on the right side it shows the columns
from the attackbox
Did you set the LHOST?
Show options.
gg theres no lhost option
I have to set it every time?
even with setg?
is there a way to permanently set the lhost?
I don't think so
ah makes sense since the options doesn't display lhost
thought it would just default
+rep @weary spindle
Gave +1 Rep to @weary spindle
If you hack from a VM with nothing unnecessary running, you don't need a firewall
Closed ports are closed ports
You'd need a couple holes punched anyway for revshells and the like
Yeah I always check my services. But I've used VMs before and I like to utilize my GPU for hashcracking.
GPU passthrough is pain.
Yep, I just run hashcat on my host
Copy paste of hashes/files out of the VM is easy
Isn't it better to keep things seperate from the VM though? I feel like it's all or nothing
Some people even disable all audio, turn USB off and use the PS/2 pad or whatever it's called.
Other issue was that I had 2 profiles running, that also seemed to be an issue.
Yup, that would do it.
Hi not sure if this should go here but my question is
does anyone know how if we still have access to jewel.uploadvulns.thm?
I am going through upload vulnerabilities room and cannot seem to access it.
I am currently using attackbox for practice
Hi, the βsubscribe nowβ button on the subscription page wont work, nothing happens when i click on it
is it broken?
Someone help pls?
Which URL, this one? https://tryhackme.com/why-subscribe
yes
both the annual and monthly subscription buttons wont work
only the business one does
Mh, I'm getting the pop-up just fine after clicking on those buttons.
Have you tried clearing your cache as well as another browser already?
Could you try to clear your cache and check again?
nope still nothing
Well, so far I haven't seen anyone else having an issue with that currently, as well as it's working just fine for me.
So I would assume it's something on your end.
If you are using a personal VPN, or some plugins, they might be filtering out certain .js
So in case you use any of that, try to disable them, then clear cache once again and reload the page.
Got a question regarding the scoreboard in the phishing line room, I was displayed as 6th and now my entry is replaced by a staff member⦠wtf???
We are working on having that fixed already, sry about that
Thanks π
Gave +1 Rep to @crystal marlin
turns out my isp was blocking the billing service tryhackme uses called "chargebee", used a vpn and it works now, thanks!
Gave +1 Rep to @crystal marlin
sorry if i used the wrong channel, do i cp my question?
Nah its cool.
You're on a vm, yes?
yes, vbox
Try ip a s and how many tn* do you have?
understood, will try it right after i finish the room (luckily it didnt freeze once and now im doing progress)
thank you so much for helping
Hello. Anyone know if I could get an invoice for a lab I bought? Thanks
You'll need to E-mail support, but there is a 5-7 day response time.
!help
@distant citrus Please use #bot-commands for bot commands.
When I try to download the breachingad openvpn file it gives me this error. Please help me?
Leave the room, join it, regenerate configuration, wait 2 minutes, download
quick question: in tryhackme can multiple accounts redeem the same voucher code?
I cannot find openvpn file. 404 error. I left the room, rejoined it, and started the machine, and waited for 2 or more minutes, but still got the same error.
never mind. i was able to access to it. Thanks.
No
Ok thank you
Gave +1 Rep to @weary spindle
Hello i need Help
please describe your problem
i want to change my THM username i sent email week ago and no respond yet!
Not sure how I got the 500 day streak badge, bug perhaps?
should I email support to have this removed?
nah but...it doesn't quite feel right because I didn't earn it.
meh, looks like I'm just gonna have to work on thm for the next 494 days 
HELP!
There is a 5-7 day response time.
it passed 7 days
Delay time could possibly be longer.
damn 
If in doubt, E-mail again, but don't E-mail more than once over a 7 day period (unless you get a reply)
ty
Gave +1 Rep to @weary spindle
what is wrong with the "poloprivescfinal" box? :/
i restarted it several times but after 2-3 commands it hangs up
It works fine in AttackBox.
But still weird cause it worked flawless on other boxes today via VPN in my VM
Please ask a bit more politely π Have you sent multiple emails/tickets?
hi,
It seems that I am having a bug : I'm not gaining point anymore when completing questions.. Is it a bug ?
Thanks
Hm, I have ublock enabled with no problems - what issues do you get?
Some questions don't give points
https://tryhackme.com/room/sqlinjectionlm
This room?
Task 5?
Hmm, works fine for me
I don't think ublock is the issue here
hello
Hello hello!
y i know but in my case its totally all questions lol
how are u guys
I'm good, yourself?
since 1 day
What level are you?
ty i am good
8
Now, you're having an issue with SSH?
actually i was trying to a machine which thm deploeyed and it works
but the problem it takes some time to
6344 points, impossible to gain points
can we join a room and i can show u
!docs verify
have you tried a CTF based room
If you verify your profile with the link you can send screenshots. (You'd need to verify to use the voice channels anyway)
ok sec
no i didn't :/
just did the owasp juice shop but seems its not a ctf one
try one and see if your points increase
Now you can send screenshots π
ok >> ty
isnt it easier to open a stream π
live stream
so i can talk and explain some questions
I don't use the voice chats.
oh ok
it seems the OWASP juice box questions don't give points
Yes
I don't think it does.
Nah, I'm sure it doesn't
Yes.
Juice shop does not give points. @glad oyster
now i pressed enter it just stays there for a while
and i tried to put the interface down
Just to confirm, you leave the VPN minimised?
and i put down the interface of my virtual machine cuz it has the same ip subnet and i dont know if that would be a problem
sudo ip link set dev tun0 mtu 1200
Can you type that in terminal, with the VPN on.
yes done it works
!
what does this do?
It changes the packet size which is sent.
I think the amount sent would reflect on how many are sent.
So it takes longer or shorter depending on the size.
thats just a configuration error then
i guess they must say about this on thm servers
it effects a small %
ty so much mr Scrubz
I'm not sure, I don't think so.
But if you do, you can change it manually in your script.
every time you restart the openvpn command if shadow recalls correctly
but yeah editing the script/ovpn file to change the mtu is easy
actually i have made script to make the openvpn connection
so i will do it there
just a single command
ty guys
Custom script to boot it up at start?
no i just do ./ to connect
i mean like this
btw why i cant make this script to be run by double colick?
click
Did you Chmod it? (We're no longer in scope of conversation for this channel)
Yes.
how to do so ?
nano File
ok
Then just change the mtu.
u mean the .ovpn file right?
yes
i cant find any mtu!
Can you send a screenshot?
Hm, my bad.
think it is an optional addon part for the ovpn files
Maybe Shadow might know, I've never really had to change mine.
the troubleshoot script can do this
anyways the thingy you would do is insert a new line after data-ciphers line and add tun-mtu 1200 or whatever you wanna try as the mtu size
Isnβt mtu a size?
yeah....
mtu size then
the max transfer unit size affects speed in some instances hence why shadow might have confused it above... sorry
I was starting to wonder if I refered to it as size of speed π
Its working again in ctf room, thanks !
Gave +1 Rep to @glad oyster
on google it says i must find the client file then edit it from there
Hi there i sent an email about a streak reset for my 460 days about 7 days ago because i lost power from a serious storm and was wondering if the current wait time is still ongoing?
@bronze vale
Itβs between 6-8 days atm
alright thank you for the response! I am patiently waiting just wanted to check up. I appreciate the response
No problem at all π
Just wanted to ask the same π thanks
Gave +1 Rep to @bronze vale
Hello, how can I become a "room tester"?
Hello hello, usually when the QA team is looking for new Room Testers, we see who is active in recent releases help channels and enthusiastic about trying out rooms that get released. π
Ah, I understand, I would love to become a room tester. I like to configure and create CTF machines π
Cool cool, I'll keep you in mind for sure. π₯³
right π
Hey guys, an issue pinging the attackbox when connected to the openvpn server.
Destination Gateway Flags Netif Expire
default unifi.localdomain UGScg en1
10.10/16 10.18.0.1 UGSc utun5
10.18/17 10.18.32.21 UGSc utun5
scratching my head here
Hello there!
Yesterday was my last day with active subscription, so I've bought a voucher just in case (i forgor to write it down).
Today it's gone
What is happening?
Hello everybody im trying to connect to THM machines but doesnt work for me, when i go to the page
https://tryhackme.com/access
everything seems to be okay for me and i have a ip when im connected to the vpn, when i do ping to 10.10.10.10 everything is okay but when im in room and try to do ping to the machine it doesnt respond me? Please could somebody help me
What room are you doing?
blaster
but i try in 3 diferent rooms and nothing
i change my vpn to another and nothing
Looks like a windows machine, especially windows machines mostly do not reply to ICMP pings
but the first question in the machine is How many ports are open on our target system? when i do nmap doesnt work
What is your full nmap command?
[sudo] password for ivan:
Starting Nmap 7.92 ( https://nmap.org ) at 2023-07-12 11:04 CEST
Note: Host seems down. If it is really up, but blocking our ping probes, try -Pn
Nmap done: 1 IP address (0 hosts up) scanned in 0.96 seconds```
im doing something wrong?
Do you see the note nmap gave you in the reply?
It's suggestion you a flag to add in case the machine is blocking pings
Hey,
For some reason I bought throwback on some other account instead my own.. is it possible to transfer it to the my main account ?????
Please help !!!
You'll need to contact support for such an issue,
5-7 days waiting response π₯Ή, thanks for the email
It's more 6-8...
Aiming to be down to 5 by Sunday. Sorry for the long wait times all π
Hey,
i am not be able to download openVPN file it's redirecting me to 404 no found page π¦
try to re-select VPN server and/or regenerate file and try again
thank you
.
Gave +1 Rep to @tribal burrow
report it in #room-bugs
Hello, I wanted to bring to your attention a small issue regarding the certificates on your cybersecurity website. I recently completed a course, but I noticed that my old username is being displayed on the certificate instead of my new username.
I would greatly appreciate it if you could kindly look into this matter and update the certificate to reflect my current username.
Thank you for your attention to this matter.
Have you downloaded the certificate before with your old username?
Yes, I have tried downloading the certificate with my old username. However, I then immediately changed my username to my real first name and last name. The certificate continues to display my old username.
Change the name on your certificate
Hey all,
If you are looking to change the username or full name on your certificate, you cannot.
Please do not email support because they will relay the same information!
When you download any certificate for the first time, you will be prompted to use your full name or username.
When a certificate is downloaded for the first time, it will take the full name from your profile and insert it onto your certificate. If your full name field is not filled in, it will use your username.
Once that certificate has been downloaded, it cannot be changed. If your username was updated, all certificates downloaded for the first time will use the new username, but certificates that have already been downloaded will not update.
Thank you for your response and further explanation. I apologize for any confusion caused by my previous message. I was not aware of the limitation regarding the modification of downloaded certificates.
I appreciate your understanding and clarification on the matter. While I understand that the certificates cannot be changed once downloaded, I would like to inquire if there are any alternative solutions or options available to ensure that my current username is accurately represented on the certificate.
Thank you for your assistance and support in resolving this issue.
Gave +1 Rep to @bronze vale
There are currently no alternative solutions that I can offer sorry:(
Good Afternoon jabba, any chance i can change my username on the platform now?
What username do you want?
sickb0y
same as discord
Done
Much appreciated !
Hello everyone π For some reason I canΒ΄t reach the virtual host in the /uploadvulns room π¦
Tried it from the Attack Box, and my Kali machine with VPN, both not working. Have started restarting multiple times
can you pls link the room
did you follow guide and add in /etc/hosts file the ip and room names
Exactly this:
!docs verify
>IP< overwrite.uploadvulns.thm shell.uploadvulns.thm java.uploadvulns.thm annex.uploadvulns.thm magic.uploadvulns.thm jewel.uploadvulns.thm demo.uploadvulns.thm
you can't reach any room or just one of them
none
you have local kali VM? and you are connected to VPN
Yes sir, also tried on AttackBox, there I got atleast as far as when I typed the machine ip, it redirected me to a page saying I should go to the virtual hosts
what you get when you input overwrite.uploadvulns.thm in browser on your local VM
nothing, itΒ΄s just loading for ages
and can you ping -c 3 10.10.10.10 from local vm ofc
i can access all of the rooms mentioned
Good, then it seems to be on my end
you do not have any other VPN active beside thm ?
No
works from my side
Now it works. HavenΒ΄t changed anything except for switching VPN Server and redownloading the packge
Thank you alexander for trying to support me π€ β£οΈ
hehe. can happen. happy hacking
Hey! I know that some rooms that are private are either out of date or used for private purposes, can someone help me find similar rooms to these if possible (all of them are private):
- https://tryhackme.com/room/introtox8664
- https://tryhackme.com/room/ccghidra
- https://tryhackme.com/room/ccradare2
- https://tryhackme.com/room/ccstego
- https://tryhackme.com/room/reverseengineering
Any tips instead of an actual room link are appreciated, thanks in advance.
you have search tab. might that help
Yep! However, when I search for a topic it just gives the spoils of the room, tho, I am still searching. I am a beginner.
If any of you are on an advanced level or know similar rooms in TryHackMe to any of these, that would help me a lot.
all of the room indeed are private and so. not sure that i can help more beside search bar can help you.
if you are beginner might be ok to follow beginners path and go step by step
None of those rooms have replacements at the moment AFAIK.
Alright guys! Thanks for helping me out.
Yup, thanks for the advice.
Gave +1 Rep to @tribal burrow
Hey guys, having openvpn issues
Ran the troubleshooting script and got
MTU value failed at 1000, aborting MTU check
!vpnscript
might help
They've already ran it...
oh
Exactly already ran the scripts
sudo ip link set dev tun0 mtu 1200
Try that while the VPn is attempting to connect.
Then re-run the troubleshoot
Prolly worth mentioning I'm running a kali chroot inside an android device
Nah, I run OpenVPN on your my android device and can connect to the VPN fine.
I tried both, OpenVPN android app, and openvpn command line straight from the kali shell, connection is established correctly, I get an IP assigned and route table is populated, can see TX packets increase but no RX packets
Yes, i tried a couple with same results
Is it possible that you can verify your account and send a screenshot of running the VPN normally?
!docs verify
looks like cipher issue
What are you doing?
ping
Yup of course, trying to ping a machine I just started in a room
Which box, and can I have the IP?
Simple CTF 10.10.208.3
Nothing
Let me try something
Update: i think my ISP is blocking the return traffic, switching over to mobile data fixes the issue πͺ
Sorry to bother you guys, thanks a lot for ur help
no worries, we love to help!
sadly not, the only VPN for now is via the OpenVPN you just used π
not sure if this is the correct channel but i was wanting to link my discord to my THM profile, I created a new one to start fresh and need to unlink my current one.
hi where can i check on my account details
i alrdy paid for premium access but it seems like i can't access the room that i paid for now.
I can not reach http://ntlmauth.za.tryhackme.com in Breaching Active Directory module even with OpenVPN. Did someone had similar issue?
tag a moderator if not yet resolved, they must unlink it manually
Make sure you're using this OpenVPN file
Does it say you're subscribed on this page? https://tryhackme.com/profile
Your profile doesn't think you're premuim.
I saw that Jayy π
π
Hi Folks, i have been using attackbox so far sometimes its slow so i wanted to give vpn a shot. I am connected but i can't reach the machine. Can't ping, nmap or open web url. My vpn is connected. My Tun is 10.13.x.x & the machines i get are usually in 10.10.x.x network. I see the routes for 10.10.x.x in my routing table pointing to the network. My assumption is that somehow tryhackme thinks i am in UK & actually i am in US and communication between subnet/vpc is restricted
That shouldn't have in impact.
Can you run ip a s and see how many tun* there are.
I used this option, regenerated - still the same: DNS_PROBE_FINISHED_NXDOMAIN
I have got 5 x utun, the 5th one got the 10.13.x.x address
Wow.
sudo killall openvpn -9
Then re connect once.
That explains your connection issues.
thanks will try that!
Gave +1 Rep to @exotic dove
@bronze vale possible to unlink my THM account to my discord, so that i can re-link my new one? thanks! π
I have a question inquiring copyright I'm not sure if this is the right place to ask, I read the ToS and am still unsure anyone that might be able to assist?
Would it be considered piracy to take the content of a room for premium users to put on a separate discord server for friends to learn?
(Only my account has premium), sorry miss-pharsed that.
That would be agasint ToS AFAIK.
Okay, thanks.
Just gonna cc @bronze vale in here.
I'd like to make it clear that I didn't break ToS, asked beforehand.
So nothing is out there.
This will result in your account being banned.
Okay, I wont do it.
Hi everyone, I'm curently having issue connecting the machine via openVPN. It says on the site that I'm connected but on my side I've this kind of stuff: Protocol options: explicit-exit-notify 3. It was working fine 3 hours ago. Any idea on what could fix it ?
You'll still be connected, tha's nothing important, and will be fixed soon.
Ok but I can't reach any practice machine at the time, is that normal ?
Can you do ip a s and count the number of tun* ?
ββ$ ip a s
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet xxxxxxxxxx scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether xxxxxxxxxxxxx brd ff:ff:ff:ff:ff:ff
inet xxxxxxxxxxx brd xxxxxxxxxxx scope global dynamic noprefixroute eth0
valid_lft 2548sec preferred_lft 2548sec
inet6 xxxxxxxxxxxxxxxx scope link noprefixroute
valid_lft forever preferred_lft forever
Is that all?
If so, you're not connected, can you verify and share a screenshot
!docs verify
Oh no, since it's not working I was deconnected, sorry π«£
6: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet xxxxxxx scope global tun0
valid_lft forever preferred_lft forever
inet6 xxxxxxxxxxx scope link stable-privacy
valid_lft forever preferred_lft forever
I got this too
I'd verify my profile here btw
Is it working now?
Yep ! perfectly. thank you
Gave +1 Rep to @weary spindle
did you see my request above about unlinking a THM account to my discord? thanks! π
Gave +1 Rep to @bronze vale
Hi Guys, i'm currently doing the xss room and the practical example isn't working over vpn. The Text recommends to use the AttackBox, but after it started i only get a "Failed to connect to server" error.
Is there anything i can try to solve this, or do i have to wait?
I already tried to restart the AttackBox 2 times, but no luck. I also refreshed the page, but that also won't help
Screen shot?
i already bypassed this, a friend started a attack box for me so i got the flag. If it occour again i will send a screenshot π
i believe i was having that error before because i had 3 instances running (which is the cap)
so terminating old attack box's fixed it for me
thank you for this hint, but i had no attackbox running before π¦ maybe it is a problem with my network today, because all tasks that i make take very long to complete
Gave +1 Rep to @dry crag
my vpn connection is being a bit weird.
site shows I'm connected, vpn is running, but I can't even ping the machine used in the room.
I think this is my first time using the site through a wifi hotspot on my phone with an altered outgoing ttl to dodge the throttle and a proxy server running. sometimes it's a bit slow but I'm not showing any drops in service.
I've restarted openvpn as well.
I can ping myself and the target machine from the attackbox though
Have you run the VPN troubleshooting script?
i have similar issue, but for me its first time i am using thm vpn
if by script you mean script script and not troubleshooting script/walkthrough then no
for me i can see the routes (netstat -rn | grep 10.), i can't even ping the gateway. Not sure if its pingable, can anyone confirm
sry, you aren't a windows vm ^_^
if you run the troubleshooting script, it should be able to diagnose; be aware though that some rooms won't respond to pings
I found it via google, is there suppose to be a more obvious way to find that script? it's not in pins.
found my issue, let the script clean it for me.
user error
several instances of user error running at the same time.
what's the difference between VIP & Regular VPN servers
i am not able to login, getting captcha error for my login
there's less users
I had this, I simply rebooted my workstation and it worked.
Im trying to connect to the VPN, but have no luck
Im using virtualbox and have given access to the .ovpn file being accessed by the VM, but it just gives me an error
Normally the path for a shared folder in the vm is not the same as on the host. I use VMware workstation and there the shared folders/files got mounted to a path in /mnt, maybe virtualbox also do this and your config is there
C:/Users/
Is a windows command line, unless you've configured your Kali to that way.
Where is your OpenVPN file located?
If it's in Downloads use either :
/home/*USERNAME*/Downloads
or
~/Downloads
I think there is a bug in https://tryhackme.com/room/monitoringevasion task 10 Real World Scenario , I can evade detection for some time but when I have a process profiling, pausing agent.exe then I get detecting (in my procmon screenshot I think the shell32.dll corresponds to the cmd outputing "you got caught")
Hello! I have a problem in this room https://tryhackme.com/room/uploadvulns . Task 7 Bypassing Client-Side Filtering. This site don't works - http://java.uploadvulns.thm
All solved the problem. No need to make a function "justify" in nano
whats wrong, its a fresh VM
Rockyou isnβt all plaintext
so can i load this on burp suite intruder payload?
should be able to
all that error is saying is that it doesn't know how to decode it to plain text, so its failing to display it
π₯² it is hanging the burp suite
is it a VM
the thm vm
yeah that'll be why its hanging
not enough computational power
and I don't think burp is optimised for loading large lists into it either
try hydra
burp crashes loading rockyou even if I assign the VM 4 cores and 16gb of RAM lmao
Isnβt rockyou by default packed als .txt.gz? If yes you first need to unpack it
i am trying to solve pickle rick but when i try to acces the website from the browser on my kali machine it doesn't load but when i ping it or try nmap scans it works normally how could i solve it
Maybe they've done that, as it's specified.
Or downloaded it as a txt file from Github.
that's nothing to do with it
@weary spindle well, I can't connect to the servers most of the time nowadays
Do you get an error?
Before changing my vpn server, I even couldn't get an ip
It was keep restarting the connection
No, it just do not connect to the server
Can you share a screenshot?
actually there is not much info about that. For example when I try to connect to a server it says: ssh: connect to host <ip> port 22: Connection timed out
Can you ssh in to the machine?
After a few try, I can. But it keeps freezing
as freezing as do not let me type commands
MTU
MTU
sudo ip link set dev tun0 mtu 1200
Type that comnand in another window while you're VPN is on
maybe
Well, thanks a lot then π
Hi there, I'm looking for help I have a little problem with my kali linux machine π
I can't reach, on Firefox, "Machine_IP/sitemap.xml". When I put my IP machine given on my dahsboard (XX.XX.XX.XX/sitemap.xml) I have an error response
come to #room-help
I am unable to open practice lab with IP address of machine please help me.
have a problem
Jordaah β Aujourdβhui Γ 23:16
!verify //
TryHackMe
BOT
β Aujourdβhui Γ 23:16
Sorry this token is already used by someone.
They are for subscribers
Hey all, just bought access to throwback. I'm trying to download my openvpn configuration file as specified in the first task, but when I go to my access page I'm told "You don't have access to any networks." What gives?
did you join the network room? @waxen sapphire
Ah, good call out. I had, but leaving it and re-joining it seemed to do the trick. I had access before like a year or 2 ago, so something must've been weird there. Thanks!
np!
Can someone know what do to do with that. I can't enjoy the premium membership I just took XD
What room are you in?
I have just fixed it π thanks !n
Hi, i forgot to make a task and i Lost my streak, but when i reached the 90 day goal, i won a 1 day of rest, but It dont worked.
I've started using the sitie yesterday and got a few questions as a newbie:
-
I heard you need to use OpenVPN and a virtual machine, is it only for CTF or also if I only do the hack boxes / challenges in the learning paths, alone?
-
If a virtual machine is indeed needed, or at least highly suggested, what security measures should I take as someone that never used linux before, and would I be better off with ubuntu or kali?
-
And last question is what should I be careful of doing with the tools I learn outside of THM's boxes which are legal to hack? I don't know what are the boundaries for what I can do and for what reasons. For example would I be able to test stuff like GoBuster which is seen in Pre Security pathway on a random website (I don't suppose my purpose matters here but it'd be just to see if I know how to use it) or would it be illegal?
What about using this tools on my own computer / websites (aka websites that I've made or databases I make myself to try and hack them)?
And what about doing it for a laugh on a friend's machine? I realize it depends on the friend's attitude and on what I did but is it a general rule to never do anything unless I was allowed to?
Thanks!
This is the wrong channel, but donβt pentest any website that you do not own. No, you cannot use gobuster on a random website, just like you cannot hack a person. It is the same about the comment on your friend, no you cannot do it for a laugh. If you do not have explicit written permission you are breaking the law.
Please repost in #infosec-general
Okay, thank you!
someone experience with the tryhackme room "Breaching AD" specifically DNS connection through Kali VM
Check the pinned posts in the room.
i tried all there is, from resolv.conf file through nmcli command structure, and the basic NM GUI
where?
!vpnscript
can you post picture of issue or so
^ starting point for fixing common problems
try that script. might help
aaah
sudo apt update && sudo apt upgrade
assuming that is kali linux
as version 2.5.5 of openvpn is old when the main branch is 2.6.x
if that updating does not fix it there are other steps to take
but rather air on the update side
Lubuntu 22
well apt update and apt upgrade should work there too
as that should just use ubuntu repos
never mind.... apparently for some stupid reason ubuntu 22.04 repos still use openvpn 2.5.5 for some weird stupid reason
@mystic reef open your openvpn file
change data-ciphers AES-256-CBC to cipher AES-256-CBC
and then re run the openvpn command and it should work
why the meeping moops ubuntu and cannonical has decided to stall the openvpn version is still strange to shadow
guess shadow could point @bronze vale at this with the troublehsoot script but of course most people use a kali linux vm meaning they run a newer version then you of openvpn which supports the newer options.... or maybe they should update the vpn files to have both of those listed as fallbacks
Please don't suggest this.
It will result in their configurations breaking when --cipher is fully unsupported.
well so should shadow suggest they use kali instead of lubuntu
or what is the path forward when the package repos use outdated stuff
As you can see in the error message, the file is missing a line Cannot load inline certificate file
But i still cant acces the machine
i.e 2.5.5. instead of 2.6.x
hence no support of the newer data-ciphers option yet
on 22.04 that is
which is the newest lts release
according to ubuntu repos it is not but according to kali linux and other distros it is
but now shadow is also getting confused
The error in their file has nothing to do with their OpenVPN version.
just gonna leave it now as shadow probably spread wrong information and got something backwards here Β―_(γ)_/Β―
Its a timout now lol
Which room are you doing?
Capture
In your screenshots.
Why have you curled 10.10.218.230
but tried to browse 10.10.8.65?
^ ?
I wanted to see if i reach it because in firefox i cant
But youre trying two different IP's?
If you go to http://10.10.218.230/ you get that webpage.
Which is for capture.
hint. You can sudo apt-get install flameshot to take screenshots so you do not need use phone...
thats the problem, I dont get this page π I get a timeout
I just tried the "opacity" room, it works perfectly fine
just the "capture!" room seems to make a problem
What ip is capture?
Right now: 10.10.51.155/
Can you visit it and send a picture?
I restarted the box like 3 times but I still get the same error:
I use german firefox but it simple says: Connection timed out
http
I will try something quite "stupid" I will quickly boot my windows and try it there with openvpn and the same room
maybe its really my linux which has a proble,m
So I tried, still wont work ^^ only with this perticular machine
With the "attack box browser" it works ^^
?
I'm having issues with openvpn too
Hello everyone. my openvpn file isnt working. Seems to be a common issue here. Any fix for it?
when I run the ovpn file like usual it just goes into a loop
version 2.63, connected thru protonvpn
ERROR: Failed to apply push options
I downloaded the thm-troubleshoot file as well, ran chmod +x, and it won't execute either
Everything is updated but I haven't been on in a few months so kind of scratching my head. Any help would be appreciated
derp forgot my syntax... jesus
And... That's why we have to do this everyday...
Can you post screenshots of the errors you get when you run the command?
Define broken?
I am connected to the vpn but cant access any machines
cant even ping it
Ok, can you send a screenshot of your OpenVPN output please?
And which machine are you pinging?
im starting it again
Starting what again?
yes its vulnversity
no
So how you do you know it has a webserver? π€
So you have nmapped it at some point?
yes
Then you've forgotten what to do. π
I'd suggest you nmap it again.
OR look through your previous answers.
oh got it it was the port
Thanks π
π
Sure ill take a screenshot. But its complaining about the cryptographic cyphers it wants CBC or whatever and its using the new CHA CHA56 or whatever its called
just runs endlessly
Screenshot will help π
so if im correct its asking me to use AES-256-CBC instead of whatever comes default with openvpn
ill go modify the openvpn file
Can you take a screenshot of what your cipher is?
What does it say before it?
so im lost now lol
Change the cipher to data-ciphers
It's not an error per say.
It's to do with what Openvpn version is on your system.
Did it work? π
Your help is highly appreciated
Of course it works hehe
I knew one of you guys would make it work
Great! Happy hacking 
I'm aiming for top 1%
may I quickly join in, and ask when did you generate the config?
what server?
NA East
free or premium? π
goodie, just wanted to know, @zealous yoke sounds like a VPN server is missing an update?
π
Looks like you need to regenerate your config @mystic cape
You signed up 1100 days ago, it is not unlikely that you already generate the configuration.
Head to https://tryhackme.com/access -> Regenerate
@bronze vale its already been solved. I regenerated my config file yesterday. Either way the fix Scrubz gave me works.
Categories arent being marked as completed while i finished all of the questions in them. https://tryhackme.com/room/bruteit
Oh when i refresh the page all my answers are gone aswell
Other rooms work fine
this better fit in #room-bugs
Can you please retry, as I'm not seeing the effects that you are seeing. π
Hey is the attackbox supposed to be really delayed? I have put up with it for a while and im sure a lot of other people have, bought premium and thought it might help but no unfortunately. Just going to have to use my own machine unless there is a fix I don't know of.
Example: 1 scroll on a webpage takes 2 seconds or more. It could possibly be my connection to the server its hosted on because I am in Australia.
It feels like im playing a videogame with 100% CPU load.
TLDR: Attackbox delay
Hmm just went back to the room and all my answers are there again. Weird but i guess it works
Might have been a temporary issue, glad to see it resolved now for you. π
this could very much be user issue from your internet connection, I sometimes have some lag on the AttackBox but usually it's good, try using mobile data maybe see if that helps
Hi anyone help me with openvpn issue
Is there a command to unverify so i can move to another Discord account?
Have you gotten it worked out?
Not yet.
@broken bear might be able to help you if they have time
Thanks! π
Gave +1 Rep to @pastel tinsel
Can you DM me from the discord account that the token is currently linked to?
Did that, this is the new one. Thanks a lot. π
Gave +1 Rep to @broken bear
I don't see your old account as being verified with t he THM bot. What exactly are you trying to do?
Hmm. The new one says my old is still registered.
I did leave the server and come back to see if that reset it. Maybe it has belatedly
Which account is your THM token currently linked to?
The one I PMed you from.
Try to verify from the new account
Done, thanks. Probably leaving and coming back just took time to delete my token.
Thanks again. Chuffed it's finally done. 
Gave +1 Rep to @broken bear
Odd question. Is there a way to change my payment method on thm?
without having to cancel my subscription and resubscribe
Yes, hang on I'll get the link.
Thank you.
Gave +1 Rep to @weary spindle
Much appreciated
Metasploit won't open in the attackbox. Any ideas?
does it give an error?
Need help re verifying
Hi!
Evading Logging and Monitoring
Task 10 Real world scenario
Have you managed to solve this problem?
I don't understand in any way what I missed, I do everything as described in "Solution Walkthrough (Click to read)"
But I keep getting the error:
"you got caught"
Has someone solved this problem?
Yes it does 'There was an error lauching the application"
Hello, in this room : https://tryhackme.com/room/rpnessusredux
The answer to question "What apache http server version is reported by Nassus?" is not answered correctly with the current version of the Apache server
web site say im from the UK when im from the US anyway to change that?
hello everyone
having issues with my OpenVPN connection
whats the issue?
connection is established correctly, I can ping my default gateway and get replies, but I can't ping room VMs
all the green checks are lit?
when you open the page
are you in the host or a vm
I'm trying to ping from my local machine connected to your network through OpenVPN
connection to the server is established correctly
but there seems to be a routing issue
Destination Gateway Genmask Flags Metric Ref Use Iface
10.6.0.0 0.0.0.0 255.255.128.0 U 0 0 0 tun0
10.10.0.0 10.6.0.1 255.255.0.0 UG 1000 0 0 tun0
192.168.3.0 0.0.0.0 255.255.255.0 U 0 0 0 wlan0
this is what my route table looks like after the connection is established
you try -Pn
trying to ping IP in the 10.10.x.x seems to not go out of the tunnel interface but rather out the wlan interface
10.10.1.92
is the IP of the VM I started for the room I{m trying to access
hmm
not all VMs will respond to pings; what's the result of curl https://10.10.10.10/whoami ?
nope shadow is stumped on that one
pinging 10.6.0.1 also does not return a reply
yeah some of the rooms work let you ping If I remember like juun said
yeah that curl http://10.10.10.10/whoami might be a good idea
and can you post the output from ip a s ?
lord and savior juun can you reverify me when you have a sec
https://tryhackme.com/api/user/update-timezone
Make sure your vpn is turned off, this will take you to the dashboard
curl to that URL is not returning anything
not a time zone issue its on my profile
As juun said, ip a s
Post the output.
Yes, your profile is set by your timezone.
you want the whole output or just the tunnel if
whole output, just for troubleshooting
message is too long without nitro
@weary spindle I didnt know that ill check it out β€οΈ
will paste fragments
and you are ONLY running the vpn in the guest right? You aren't running it in host and in guest or only in host?
just screencap it
fixed! thanks Scrubz just need to reverify with a mod and ill be good β€οΈ
not a VM, running nethunter on an android phone
how many entries in ps for ps aux | grep openvpn | wc -l ?
there could be some cellular shenanigans interfering with your scans - sometimes radio networks flat out don't work because of latency issues
not the app, running openvpn directly from the kali console
Hi, guys, does anyone know how long Tryhackme support takes to respond to tickets regarding billing and payments?
only 1 instance of openvpn running
When I use nethunter, I don't have issues when I load up my vpn on the app.
@frigid plank with my experince about 24 hours they are asleep atm I belive
so there's only 1 tunX where X is a number in your ip config?
Currently 6-8 days.
They were aiming for 5 by Yesterday.
I tried that and was getting the same issue, but will try again for sure
yes only 1, tun0
don't use the app, use the commandline
the app is sometimes screwy with the ovpn profile
yep, using CLI
what was teh result of curl https://10.10.10.10/whoami
No result, just hangs
ok, your connect is borked. When you run the openvpn profile, can you post screenshot of command and output?
Sure
thats crazy
Super busy.
@broken bear seems to me the connection is established correctly