#site-support

1 messages Β· Page 39 of 1

weary spindle
#

Can you press the diagonal arrow on the left?

tribal burrow
#

try open attack box in new tab also

naive dust
#

yes and then i have the same black screen, but full screen

#

Yep, have tried that too

weary spindle
#

@bronze vale are you still interested in machines not booting up properly (attackbox this time)

bronze vale
#

Does full screen work or no?

naive dust
#

no. Still solid black. new tab, solid black

tribal burrow
#

other browser ?

bronze vale
#

IP address?

naive dust
#

like I said edge, chrome thruuogh windows, firefox through kali

#

10.10.57.29

bronze vale
#

Machine seems to be booted fine

#

@zealous yoke AttackBox blackscreen?

broken bear
#

Jabba, are there any THM employees who can jump into a users AttackBox instance, or is guac somehow locked to a user identity?

naive dust
#

heres the fullscreen version, fysa

bronze vale
#

Looks like it's your computer

glad oyster
#

Or network ?

bronze vale
#

Network is included in that, yes

tribal burrow
#

tryed some RDP like remmina ?

naive dust
#

Like I said I was just rununing 2 servers and then 8 VM's for OSED prep and had no issues with CPU/memory/latency/etc

glad oyster
#

You tried using a VPN?

naive dust
#

I cant wrap my head around attackbox being more resource-hungry than offsec and sans vm's.
I havent because THM says the attackbox was the recommended way. I guess I'll have to try a VPN instead

weary spindle
#

It's not though.

glad oyster
#

VPN to access the attack box

#

Not the internal network

naive dust
#

I'll try now,

#

Works when I choose a Canadian IP but not American. Thats super weird. Regardless, that did make it work.

glad oyster
#

Yeah I suspected it was something to do with your network

#

Not sure what specifically πŸ€·β€β™‚οΈ

naive dust
#

Im curious why choosing a Dallas or Chicago IP through the VPN wouldnt work but canada does, but Im not going to try and figure that one out .

#

Thanks!

glad oyster
#

What VPN provider?

#

It might be that the Dallas or Chicago IPs are on a block list from malicious use

zealous yoke
naive dust
#

Express

glad oyster
naive dust
#

Works with Canada though so I’ll roll with it. Lol

zealous yoke
#

VNC works okay for me, we'd need console log errors

real scroll
#

Hello! Can someone please help me with an issue? I got 46 streak on tryhackme, but have not got anything for the 5% off swag at 45 streak

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
weary spindle
#

You need to E-mail support and request the code.

real scroll
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

sterile mist
#

Hi, I am in the first room called Intro to Offensive Security, when I type the command: gobuster -u http://fakebank.com -w wordlist.txt dir

#

I get the error: File does not exist: wordlist.txt

#

This room worked a couple of weeks ago and I passed it. Can someone tell me what's going on please? I need help. Thanks!

dawn timber
sterile mist
sterile mist
dawn timber
#

are you using your own vm or the one from the site

dawn timber
#

@sterile mist you should be able to copy the syntax from the lesson over and it will work

sterile mist
#

the http part doesn't look right, or is it?

#

nevermind it's discord

dawn timber
sterile mist
#

How do I join a study session?

dawn timber
#

do nt post that here

sterile mist
#

ok

#

All i see under the "study sessions" section is a session announcement

dawn timber
#

ok join a call tho dm if you are ok with that

sterile mist
#

sure

tawny kiln
#

could anyone help me with the Enumerating AD Room? Im STILL having trouble connecting from my kali box

#

tried resetting the enumerating AD network twice now

#

this entire AD room for the offensive pentesting path is a massive fucking headache connection wise

#

when i run nslookup za.tryhackme.com or thmdc.za.tryhackme.com it resolves to the DC IP as it should? dont get why SSH/RDP isnt working and just keeps freezing

brittle smelt
#

I cant get open vpn to connect, no matter what configuration key I download, none of them seem to work, I'm using 3.0

#

any help would be great

tawny kiln
#

if there is any running run:

sudo kill -9 <PID>

brittle smelt
#

im using windows

tawny kiln
#

then to reconnect-
sudo openvpn --config <VPN FILE NAME> --daemon

tawny kiln
#

taskkill /F /PID <PID>

#

to connect:

#

openvpn --config /path/to/config.ovpn

brittle smelt
#

I tried tasklist and it sent me to another prompt

#

no output

tawny kiln
#

??

#

tasklist is a standard windows Cmdlet

brittle smelt
#

there are no tasks running apparently

tawny kiln
#

there has to be lol

brittle smelt
#

it isnt showing if there is

#

should i use powershell?

#

im using cmd

tawny kiln
#

yea either work

brittle smelt
#

still nothing

tawny kiln
#

try rebooting and reconnecting to the VPN im not really sure, never tried connecting from host OS always just used a kali box

#

Get-Process | Where-Object {$_.Name -eq 'openvpn'}

#

that the powershell cmdlet to find the openvpn process/service if its running

brittle smelt
#

perhaps I should try running it in virtualbox instead if it works there

#

I'll take some time to install it and try it on my kali purple and get back to you if it still doesnt work

tawny kiln
#

yea thats what id reccomend, if no luck after that just use the Browser Parrot VM

brittle smelt
#

thanks again

tawny kiln
#

np

fluid elbow
#

I also cannot get the VPN to connect to my own machine.

"Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case"

Can't find a fix πŸ˜• tried adding in extra to data-cipher but still fails.

weary spindle
#

And which server?

fluid elbow
#

Regenerated a few minutes ago. EU servers. Tried all 3, over the past few weeks. Can't connect to any of them

plush bay
#

!docs verify then post a screenshot of the openvpn output please

sharp bisonBOT
#
TryHackMe
That topic does not exist!

Use !docs to list all of the available topics.

plush bay
#

!docs verify

sharp bisonBOT
plush bay
#

can you try accessing 10.10.10.10 in your browser???

fluid elbow
#

Although it seems connected, I cannot use Kali because it's stuck as the screen shot shows. I can't input anything.

I can access 10.10.10.10 yes. But cannot input anything into Kali

plush bay
#

open another terminal

#

it is meant to run like that

#

to kill the vpn connection later hit ctrl + c in that terminal

fluid elbow
#

Oh πŸ€¦β€β™‚οΈπŸ€¦β€β™‚οΈ

Thank you 😊

golden mauve
#

"2023-07-29 01:36:07 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2023-07-29 01:36:07 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-07-29 01:36:07 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2023-07-29 01:36:07 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-07-29 01:36:07 library versions: OpenSSL 3.0.9 30 May 2023, LZO 2.10
2023-07-29 01:36:07 DCO version: N/A
2023-07-29 01:36:07 TCP/UDP: Preserving recently used remote address: [AF_INET]3.7.33.194:1194
2023-07-29 01:36:07 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-07-29 01:36:07 UDPv4 link local: (not bound)
2023-07-29 01:36:07 UDPv4 link remote: [AF_INET]3.7.33.194:1194"

#

i am not able to use openvpn can someone help???

glad oyster
#

try regerante your config file

golden mauve
#

i did it 10 times πŸ™‚

glad oyster
#

whats the full command output

golden mauve
glad oyster
#

!docs verify

sharp bisonBOT
glad oyster
#

verify and that'll work

golden mauve
glad oyster
#

thats not the full output

golden mauve
golden mauve
golden mauve
glad oyster
#

did you press cntrl+c?

golden mauve
glad oyster
#

so it just hangs here?

golden mauve
#

yes

#

it repeat

glad oyster
#

how long have you left it?

golden mauve
glad oyster
#

uhhh

#

what country are you from

golden mauve
#

india

glad oyster
#

huh that shouldn't block it unless its something else?

#

@bronze vale

golden mauve
golden mauve
bronze vale
golden mauve
bronze vale
golden mauve
#

πŸ‘

hard frigate
#

Is the OpenVPN EU-VIP 1 server lagging ?
It's taking ages to ping a server and I cannot replicate that "slowness" with another VPN

For like 2 minutes, I can ping the server and it responds, then I can't for another 2 mins, then it comes back

hard frigate
#

Yes I did, from what I've seen people most issues are about people not beeing able to ping at all a machine, which isn't my issue
Using the Troubleshoot tool didn't tell me anything too besides that it's supposed to work

#

I recently tried a Windows network room and used the VPN but considering it's two different config files I feel like it shouldn't matter, even tried to regenerate OpenVPN config just in case but nothing helped, which makes it quite hard especially when I'm trying to pop a reverse shell πŸ˜…

Edit : Fixed, somehow I had two tun interfaces, had to kill all using sudo kill -9 openvpn and relaunch it

faint peak
#

Hello friends, how can I change my username on THM ?

pastel tinsel
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
chilly totem
#

How can I get into KOTH after I get an IP address

unborn flame
#

Good morning, as content creators, are we allowed to stream ourselves while completing a challenge on THM? I can't see any similar mentions in the rules if not for newer challenges.
Are there any limitations on what can we show?

#

Not sure if this is the right channel tho so feel free to move the messages where should they belong

weary spindle
#

You can stream/ record, just don’t use any of the graphics on your thumbnails.

If a challenge says don’t record/ stream it, don’t record or stream it

@bronze vale
Did you ever write the article on streaming etc?

fresh coral
#

Hello, since yesterday i have a problem with my kali linux laptop. when i booted it up, i came to the login screen as a normal and logged in, but then somehow only the browserwindows that were last opened were displayed to me and my background is the standart background of my login screen and there are no buttons or anything like that anymore, not even i can make the sound quiter or louder or see the time. i can only open the terminal with alt+ctrl+t and see from there that all files are still there and i also started discord from the terminal , wich i am writing about here. i cant explain it properly, try to send screenshots. ive tried rebooting and updating but nothing has changed. i hope someone can help me quickly.

#

sry i cant load a screenshot

#

if anyone wants the screenshot dm me pls

weary spindle
stone panther
#

I asked in general but perhaps its more suited here

#

Is it possible to see on THM as part of which learning Path a certain Room has been done?

#

for example I did the Network Fundamentals Module as part of the Pre-security path, is there a way to see that?

fresh coral
#

but i dont have a vm it is a laptop with kali os

#

!docs verify

sharp bisonBOT
fresh coral
#

where paste !verify

#

ok i have it here is the screenshot

fresh coral
#

can no one help me?

mystic reef
#

Hello everyone, I have a problem. I recently tried to connect with openvpn and my ovpn file (EU-VIP-2) and it connects wonderfull, but I cant manage to open a room with it? (windows/Lubuntu22, both with newest opennvpn version)

broken bear
#

Are you connecting to the VPN on your host or in a guest VM?

mystic reef
#

host

#

its a dual boot laptop with openvpn installed on both os

#

i dont know if its related to the problem but before everything got broken i tried to use python to create a 443 webserver -> python3 -m http.server 443

broken bear
#

that shouldn't affect the vpn

#

are you connected to the vpn right now?

mystic reef
#

yep

#

server eu-vip2

broken bear
#

can you post the output of ip a s

mystic reef
#

i am currently on my windows machine but I can change to linux if needed

broken bear
#

doesn't matter

#

i just want to see all the interfaces that have associated physical and virtual devices

#

on windows, the command should be ipconfig although i don't remember the flags offhand

mystic reef
broken bear
#

ok, looks like you are connected

#

what's the output of curl http://10.10.10.10/whoami

mystic reef
broken bear
#

ok, you should be able to see things on the THM network

#

When you started the VM for the room or task, were you given an IP address for the victim box?
It should be towards the top of the page

mystic reef
#

yep, But it loads forever, but nothing happends in the end

broken bear
#

what room and task is this for?

mystic reef
#

Well at first it was for

https://tryhackme.com/room/theseowebappdbh

but on

https://tryhackme.com/room/fileinc

and

https://tryhackme.com/room/anthem

It also wont work anymore

I think i will try to switch the server... maybe this might work

broken bear
#

so none of them give IP address you can access?

mystic reef
#

righto, loads forever but to website displayed

broken bear
#

What's the nmap command you are running, and what's the output?

mystic reef
#

let me quickly try it and i will screenshot it

#

Starting Nmap 7.80 ( https://nmap.org ) at 2023-07-30 00:19 CEST
Stats: 0:00:38 elapsed; 0 hosts completed (1 up), 1 undergoing Script Scan
NSE Timing: About 97.07% done; ETC: 00:20 (0:00:01 remaining)
Nmap scan report for localhost (10.10.81.3)
Host is up (0.038s latency).
Not shown: 998 filtered ports
PORT STATE SERVICE VERSION
80/tcp open http Microsoft HTTPAPI httpd 2.0 (SSDP/UPnP)
3389/tcp open ms-wbt-server Microsoft Terminal Services
| rdp-ntlm-info:
| Target_Name: WIN-LU09299160F
| NetBIOS_Domain_Name: WIN-LU09299160F
| NetBIOS_Computer_Name: WIN-LU09299160F
| DNS_Domain_Name: WIN-LU09299160F
| DNS_Computer_Name: WIN-LU09299160F
| Product_Version: 10.0.17763
|_ System_Time: 2023-07-29T22:20:13+00:00
| ssl-cert: Subject: commonName=WIN-LU09299160F
| Not valid before: 2023-07-28T22:19:15
|_Not valid after: 2024-01-27T22:19:15
|_ssl-date: 2023-07-29T22:21:23+00:00; +1s from scanner time.
Service Info: OS: Windows; CPE: cpe:/o:microsoft:windows

Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 94.89 seconds

Nmap works

#

ok now this room seems to work

#

how strange is this?

broken bear
#

Sometimes windows boxes take 5-10 minutes to fully boot

mystic reef
#

mhm okay?

#

is it supposed to look like this? xD

#

so without the ip and this πŸ˜„

broken bear
#

Looks like you are connected πŸ™‚

#

And yeah, if you go to 10.10.10.10 on the THM network, that's the webpage you get served

tidal moss
#

Hellooo. I just got an email asking me to come back to premium with a ten percent discount but the discount code doesn't work and the email shows the old price.

#

I don't have the cash to buy the yearly plan at the moment, but I just thought I'd point out that wrong information is going out.

wintry mural
#

hey guys does anyone know why vnc was not working in [miui 14] android 13
i mean when i connect vnc server with termux after update my device vnc connect but not able to show anything
.
connection is well connected but screen is black.......
.
Can aneyone tell me how to fix it ??

brazen summit
#

Hi all.

mystic reef
#

Thats what I mean by "nothing happens"

#

other rooms wont even load ^^

weary spindle
#

Have you done an nmap scan on the room?

mystic reef
#

like you can see in the video - yes

#

i can scan it and ping it but firefox and opera wont load it

#

I had a similar problem weeks ago but someone it managed to solve "itself"

glad oyster
#

Are you using windows?

#

Windows isn't supported, you should try using a VM instead

mystic reef
#

I currently try to connect with the same ovpn from another machine to test if the problem is on my laptop

glad oyster
mystic reef
#

I currently use openvpn with lubuntu on cli

weary spindle
mystic reef
#

okay ^^ I can scan the rooms, ping the rooms but when I try to access them via firefox/opera I cant seem to reach them, it only takes super long to load without anything to actually happening

#

eu-vip2 lubuntu openvpn cli

#

I had this issue weeks ago but it managed itself on that time

weary spindle
#

Can you verify your web browser isnt' pointing to https and http.

glad oyster
#

Cntrl+Shift+I

#

What does the console logs say

glad oyster
#

You really should look at the video πŸ˜†

weary spindle
# glad oyster

That would involve clicking. πŸ™‚

They could have just uploaded the video and it could have viewable on Discord blobfingerguns

weary spindle
mystic reef
#

I will try every single server now to see if its a problem on my side or not πŸ™‚

#

Well thats kinda interesting, every room that only needs SSH/RDP seems to work, every room with built in webserver doesnt

#

but it doesnt seem to matter which browser i use/operating system

glacial hound
#

What does the console log say? Are you using any plugins or AV that could be blocking it?

mystic reef
#

sudo /sbin/openvpn Sn0wF0x.ovpn
2023-07-30 10:59:47 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-07-30 10:59:47 OpenVPN 2.5.5 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Jul 14 2022
2023-07-30 10:59:47 library versions: OpenSSL 3.0.2 15 Mar 2022, LZO 2.10
2023-07-30 10:59:47 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-07-30 10:59:47 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-07-30 10:59:47 TCP/UDP: Preserving recently used remote address: [AF_INET]63.35.110.70:1194
2023-07-30 10:59:47 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-07-30 10:59:47 UDP link local: (not bound)
2023-07-30 10:59:47 UDP link remote: [AF_INET]63.35.110.70:1194
2023-07-30 10:59:47 TLS: Initial packet from [AF_INET]63.35.110.70:1194, sid=d2417137 d349b52c
2023-07-30 10:59:47 VERIFY OK: depth=1, CN=ChangeMe

#

maybe something here?

#

2023-07-30 10:59:47 Validating certificate extended key usage
2023-07-30 10:59:47 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2023-07-30 10:59:47 VERIFY EKU OK
2023-07-30 10:59:47 VERIFY OK: depth=0, CN=server
2023-07-30 10:59:47 WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1585', remote='link-mtu 1601'
2023-07-30 10:59:47 WARNING: 'keysize' is used inconsistently, local='keysize 128', remote='keysize 256'
2023-07-30 10:59:47 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bit RSA, signature: RSA-SHA256
2023-07-30 10:59:47 [server] Peer Connection Initiated with [AF_INET]63.35.110.70:1194
2023-07-30 10:59:48 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
2023-07-30 10:59:48 PUSH: Received control message: 'PUSH_REPLY,route 10.10.0.0 255.255.0.0,route-metric 1000,route-gateway 10.14.0.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.14.57.68 255.255.128.0,peer-id 13'
2023-07-30 10:59:48 OPTIONS IMPORT: timers and/or timeouts modified
2023-07-30 10:59:48 OPTIONS IMPORT: --ifconfig/up options modified
2023-07-30 10:59:48 OPTIONS IMPORT: route options modified
2023-07-30 10:59:48 OPTIONS IMPORT: route-related options modified
2023-07-30 10:59:48 OPTIONS IMPORT: peer-id set
2023-07-30 10:59:48 OPTIONS IMPORT: adjusting link_mtu to 1624
2023-07-30 10:59:48 Using peer cipher 'AES-256-CBC'

#

2023-07-30 10:59:48 Data Channel: using negotiated cipher 'AES-256-CBC'
2023-07-30 10:59:48 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2023-07-30 10:59:48 Outgoing Data Channel: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-07-30 10:59:48 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2023-07-30 10:59:48 Incoming Data Channel: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-07-30 10:59:48 net_route_v4_best_gw query: dst 0.0.0.0
2023-07-30 10:59:48 net_route_v4_best_gw result: via 192.168.178.1 dev enp1s0
2023-07-30 10:59:48 ROUTE_GATEWAY 192.168.178.1/255.255.255.0 IFACE=enp1s0 HWADDR=9c:2dπŸ’Ώb2:08:aa
2023-07-30 10:59:48 TUN/TAP device tun0 opened
2023-07-30 10:59:48 net_iface_mtu_set: mtu 1500 for tun0
2023-07-30 10:59:48 net_iface_up: set tun0 up
2023-07-30 10:59:48 net_addr_v4_add: 10.14.57.68/17 dev tun0
2023-07-30 10:59:48 net_route_v4_add: 10.10.0.0/16 via 10.14.0.1 dev [NULL] table 0 metric 1000
2023-07-30 10:59:48 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2023-07-30 10:59:48 Initialization Sequence Completed
^C2023-07-30 11:10:38 event_wait : Interrupted system call (code=4)
2023-07-30 11:10:38 SIGTERM received, sending exit notification to peer
2023-07-30 11:10:41 net_route_v4_del: 10.10.0.0/16 via 10.14.0.1 dev [NULL] table 0 metric 1000
2023-07-30 11:10:41 Closing TUN/TAP interface
2023-07-30 11:10:41 net_addr_v4_del: 10.14.57.68 dev tun0
2023-07-30 11:10:41 SIGTERM[soft,exit-with-notification] received, process exiting

#

so the entire log

glacial hound
#

Your web browsers console log*

mystic reef
#

It now only says "timeout"

unborn flame
#

Forgot to turn off interceptor on Burp?

mystic reef
#

Burp isnt runninig πŸ™‚

weary spindle
weary spindle
mystic reef
#

I used EU-VIP-2 for quite a long time now πŸ™‚ But that wont work anymore

#

With "White-Screen" I mean it loads and loads and loads and loads but nothing happens"

weary spindle
#

Yeah, but the console log on your browser will show you what's happening.

mystic reef
#

nothing much to see here ^^

weary spindle
#

Yes.

Because you're not trying to load up the page you can't..

mystic reef
#

the page still loads....

#

since like 5 minutes or so

#

will post results when something actually loads

#

10 minutes later, site is still loading

#

ohhhhhhhh I think I found something!

mystic reef
#

seems to resolve the issue, i will tests this

naive dust
#

lol i did something wrong πŸ˜„ also i think its wrong to say it here. can one of the staff contact me please ?

sullen pasture
#

There seems some problems with the lateral movement network

#

Don't get a ping back on the macines

#

πŸ’€β― traceroute 10.200.64.101
traceroute to 10.200.64.101 (10.200.64.101), 30 hops max, 60 byte packets
1 10.50.61.1 (10.50.61.1) 26.591 ms 52.119 ms 52.173 ms
2 10.50.61.1 (10.50.61.1) 3083.268 ms !H 3108.559 ms !H 3108.614 ms !H

naive dust
#

hi, idk if this is the right channel to ask but does thm have auto-renew on (for paid members)? if so, how do i disable it

weary spindle
#

If its a voucher, it won't auto renew.

naive dust
#

like a day before or something

#

because it says if i do that it will end my subscription

surreal escarp
#

Hey zqssup

#

I got this proble; zhenb trying to connect top ;y OpenVPN config .45

weary spindle
south cove
#

Hello, for the Wreath lab I am unable to resolve thomaswreath.thm on the browser even though I added the entry to my /etc/hosts file.
I ran the GitHub OpenVPN troubleshooting tool and it shows everything is fine except:
-"MTU value failed at 1000, aborting MTU check"
-"Something went wrong -- please ask for further assistance in the TryHackMe Discord server, subreddit, or forum"
Does anyone have any ideas what I can try?

deft otter
#

hello #site-support me having this issue when connecting openvpn to my kali linux any solution?

2023-07-30 13:34:47 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-07-30 13:34:47 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2023-07-30 13:34:47 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-07-30 13:34:47 library versions: OpenSSL 3.0.9 30 May 2023, LZO 2.10
2023-07-30 13:34:47 DCO version: N/A
2023-07-30 13:34:47 TCP/UDP: Preserving recently used remote address: [AF_INET]3.7.33.194:1194
2023-07-30 13:34:47 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-07-30 13:34:47 UDPv4 link local: (not bound)
2023-07-30 13:34:47 UDPv4 link remote: [AF_INET]3.7.33.194:1194
2023-07-30 13:35:47 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2023-07-30 13:35:47 TLS Error: TLS handshake failed
2023-07-30 13:35:47 SIGUSR1[soft,tls-error] received, process restarting
2023-07-30 13:35:47 Restart pause, 1 second(s)
2023-07-30 13:35:48 TCP/UDP: Preserving recently used remote address: [AF_INET]3.7.33.194:1194
2023-07-30 13:35:48 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-07-30 13:35:48 UDPv4 link local: (not bound)
2023-07-30 13:35:48 UDPv4 link remote: [AF_INET]3.7.33.194:1194
weary spindle
deft otter
weary spindle
deft otter
weary spindle
deft otter
weary spindle
#

Also can you cat your files and see which cipher you're using?

deft otter
deft otter
deft otter
#

can you tell me the did you found any solution?

mystic reef
#

I think i found one but i need to test it

deft otter
tacit tangle
#

I am having issues receiving a password reset link for my THM account. Anyone available to assist?

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
weary spindle
#

Only support can, which has a wait of 6-8 days

tacit tangle
#

copy - thanks

mystic reef
tawny kiln
#

!docs verify

sharp bisonBOT
brittle smelt
#

It appears that openvpn does work in virtualbox, but i was having an impossible time connecting outside of it

#

Now, I will be able to complete the Pentest+ path I'm currently on, Thanks to the person who told me, you know who you are if you ever see this

hazy grove
#

THM attempted to charge me twice this month, who do I reach out for inquieries about this?

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
gloomy stump
#

Hi, anyone tips how to get the files from the module to the attackbox? copy/paste url is not the best option since you need to be logged in THM to access the download.

ocean sundial
#

Hi.. Anyone.. please help.. I was about to start the Wazuh room.. but there seems to be some API connection error. tried multiple times.. but can't connect to the server.. any help appreciated... thank you so much..

weary spindle
ocean sundial
gloomy stump
weary spindle
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

distant rock
#

Hello, I think I am experiencing a bug... In one of the rooms I am instructed to run a command in the terminal and when I do the command runs but the output just outputs one line and overwrites itself. Also I believe part of the line is cut off as well specifically the part that I need for the flag. I did some research which suggested outputting to a file, using tee and less but these did not work

#

I noticed that If I make the terminal window smaller, the results do show on multiple line but it still cuts off the part where the flag would be no matter what size I make it.

solar pike
#

Does anyone know when the leaderboards monthly scores reset from the month of July? It's past 23:59 GMT on the final day of the month and it hasn't yet.

weary spindle
thorn fox
#

hi , haveing openvpn issue - where can i get help ?

weary spindle
#

Here.

What issue are you having?

frail portal
#

anyone know how i can change the location of my account

weary spindle
frail portal
#

takes me here for some reason

#

actually let me try diff broswer

weary spindle
#

That's your dashboard..

#

Check your profile now.

frail portal
#

oh my bad dud not fully read what you said

#

im at my profile now

weary spindle
#

What country does it say?

frail portal
#

oh united states

#

it worked

#

thank you

weary spindle
#

πŸ™‚ No problemo! πŸ˜„

stone panther
#

If you cancel your Sub do you lose benefits immediatly?

weary spindle
#

Nope, you will after the expiration date.

distant rock
# weary spindle For better help, or so People understand, you'll need to tell us the room, task ...

Thanks, I'm currently in the "Authentication Bypass" room on Task 2 trying to run the ffuf command... But really it seems like I have this problem with any room that I need to run a command in the terminal. I experienced it previously in the "Subdomain Enumeration" room and I had to find a walkthrough to get the flag even though I did everything right; the terminal was just cutting off the answer.

For example, the line will look like this :: Progress: [1907/1907] :: Job [1/1] :: 284 req/sec :: Duration: [0:00:06] :: E

When it should look something like this keynote [Status: 405, Size: 472, Words: 98, Lines: 15] :: Progress: [904/1907] :: Job [1/1] :: 253 req/sec :: Duration: [0:00:04] :: Er

The one that I say it should look like, I did actually copy from running the ffuff command in the "Subdomain Enumeration" room Task 6 "Virtual Hosts" but I only get the part that would have the flag if I don't use the "-fs 487" argument on the ffuf command which is needed to get the flag. It's a weird issue. BTW the word "keynote" is where the flag would be.

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
#

I think ffuf might have changed syntax with an update.

Try making the attackbox bigger.

distant rock
#

I did try changing the size of the window and while that does change the behavior it doesn't help me get the flag. It seems to have two modes... If the window is small, it will print multiple partial lines. But if the window is big, it will print and overwrite one partial line.

#

Some research suggest that this could be due to the command using a \r instead of \n when printing a new line but I wouldn't expect this if its meant to be run in Linux, right?

lost valve
#

Hello everyone!

Just wanted to leave this as a public comment for anyone facing issues connecting to the OpenVPN server from an Android phone using Nethunter.

Connection can be established successfully from the Kali terminal, but network reachability is not functional. Tcpdump on the tunnel interface shows no packets being sent through the tunnel.

Connection with the official OpenVPN app (OpenVPN Connect) can be established successfully, traffic IS sent out of the tunnel interface, but still no return traffic is received.

Using the semi-official "OpenVPN for Android" app by Arne Shwabe works perfectly, connection established and network reachability achieved.

Good day to all!

solar pike
#

Hey there, I was #1 yesterday in my country on the leaderboards and now after the points have reset I'm being told you don't get a badge unless you make #1 for the country.

The website point system article states, "
Monthly:
The monthly leaderboards are calculated from the points given above. Monthly points reset to 0 on the last day of the month at 23:59 GMT.
The #1 ranking at that time will receive a badge on their THM profile and a random security gift."

The website doesn't specify whether it's worldwide or your country.

#

Is it for worldwide only?

woeful galleon
#

Hello,
I started JR pen testing. In walking an Application part even tho I waited 2 mins after starting attackbox when I type in: https://lab_web_url.p.thmlabs.com/ it says 504 Gateway timeout. I restarted it and it still gives same error. Not sure where to ask, hopefully its the correct group.

Can someone help? Thanks

zealous yoke
woeful galleon
#

hi, thanks, I waited 20 mins, no awail

#

Also checked on different day

#

same error

zealous yoke
#

ah, having another read, if the room shows "https://lab_web_url.p.thmlabs.com/" even after a few minutes, then it means you haven't deployed the right machine. That URL will replace with the IP address of the machine

#

have you clicked the green "Start Machine" in the task that has the machine attached?

#

Worth also noting that the attackbox is not the machine that you start in the room via the "Start Machine" button. They're two different things πŸ™‚

surreal escarp
#

Hey idk if i put this msg in site support/room help

#

Because its about connection

#

ut to a room and im really note sure wwhere it goes

#

Everything shows up as im connected to the servers

#

EVen with this i cant manage to nslookup the target

woeful galleon
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

woeful galleon
#

then start attackbox? What if in terminal an ip address is shown, not user@machine?

proud mauve
#

I just saw that all of my badges are posting to LinkedIn like this...which is useless.

How do I get the posts to show that I completed a module? And how do I repost the old modules I've done?

#

Even the one that posted "right" doesn't actually say I completed it. It's just a contextless post for a TryHackMe Module.

mortal field
#

I'm having trouble with a room. It sits here stuck on waiting for 10.10.255.154. Firefox has no proxy configured right now. Burpsuite isn't running. I am connected with openvpn. I can ping the same address. Why isn't FF loading this?

ivory spruce
ivory spruce
ivory spruce
mortal field
ivory spruce
#

Have you tried to restart your VPN?

mortal field
#

yes, and I just switched to a VIP vpn server. FF still has "Waiting for 10.10.255.154..." down at the bottom

#

curl isn't returning either. I looked at it in wireshark and it's only getting back part of the response

ivory spruce
#

Since you restarted your VPN and waited fot the machine to boot up (for maybe at least 5 minutes), THM Support might be your best bet.

mortal field
#

Do I need to do anything about this openvpn message?

2023-08-01 22:24:23 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-08-01 22:24:23 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.

#

Not sure what this means, but I switched the vm to bridged network, and it's working now. NAT + openvpn must have been fouling something up

broken bear
#

NAT + ovpn has nothing do with that error message.

#

That deals with ciphers, which wouldn't be affected by NAT.

rotund python
#

Guys, I was having issues on windows. When I started to use Linux on my virtual machine and connect machines on there, this issue was resolved. Thank you to mods for not trying to help me even a bit.

mortal field
broken bear
mortal field
ruby parcel
#

I have just started. In linux fundamentals I get a white page when I press the green button. Where do I look for support to troubleshoot this? I have tried different browsers, different computers. Cleared caches. Turned of ad blocking. Turned off and on vpn. Logged out of site. What else should I try?

ivory spruce
ruby parcel
#

Yes I've let it sit 5 min. The bar goes to 100% and the screen turns white and then nothing appears.

broken bear
#

Can you post a screenshot?

ruby parcel
#

No , sorry I can't

#

Perhaps it is a setting but the option is grayed out

broken bear
#

!docs verify

sharp bisonBOT
broken bear
#

To post a screenshot, you

#

you'll need to verify your THM account token with the bot

crisp osprey
#

I am facing two issue . 1 st my country flag is wrong and second I have try every openvpn files but I am not able to connect through any one

#

I also raised a ticket but I don't get any response

#

It's been 9 days

ruby parcel
#

Strange I have verified and I still am u. Able to post here.

#

*unable

chilly pike
#

you're not verified yet

violet canopy
#

Hello, I had originally created an account on THM but I had forgotten about it and made another one by accident. Upon realizing this, I want to delete these two accounts and make a new one but I don't see that option. Would emailing do the trick? If so, where should I send the email? Thank you!

crisp osprey
#

@chilly pike brother help me to solve my issue I purchase subscription voucher but I am unable to do anything

chilly pike
crisp osprey
chilly pike
#

Ok, I dropped a message for staff but thats all I can do for you for now πŸ™

crisp osprey
#

Thank you hope they will solve my issue . Flag is not big problem but I can't access to openvpn that's the main problem

crystal marlin
#

Regarding your openvpn issue, it would be best to verify, so you can send screenshots in here.
Once done, send a screenshot of your openvpn output when trying to connect

#

!docs verify

sharp bisonBOT
crisp osprey
crystal marlin
#

I can try to help you with your vpn issue meanwhile, if you send me the screenshot in here πŸ™‚

crystal marlin
#

Here is the link on how you can verify

#

!docs verify

sharp bisonBOT
crisp osprey
#

Okk

#

@crystal marlin

crystal marlin
crisp osprey
#

yes I am connected but when I try to ping a room of all the packets are lost

crystal marlin
#

Can you show me a screenshot where you first run ip a and then curl 10.10.10.10/whoami
Both commands in the same screenshot please

crisp osprey
#

Here I am connected

#

But

#

This is a room ip when I ping this no response

crystal marlin
# crisp osprey

You ran the first command with a dash, but nvm.
What room are you doing?
Not all machines reply to pings, especially windows machines mostly don't

crisp osprey
#

And when I try nmap it shows 15 min remaining like that

crystal marlin
#

I suggest to just follow along with what the room ask you to do

#

In regards to speeding up nmap, there are certain flags you can add

#

For example, -T4

crisp osprey
#

Okay thankyou

#

Can you tell me how to solve this flag problem

crystal marlin
crisp osprey
#

Uk flag

#

And I am from India

crystal marlin
crisp osprey
crystal marlin
crisp osprey
crystal marlin
naive dust
zealous yoke
naive dust
zealous yoke
#

How are you accessing the site and what browser? It looks like a mobile device maybe?

naive dust
#

Doesn't work even after deleting cookies

zealous yoke
#

Ah Safari...yeah that's been known to be a little bit buggy sometimes with the static sites. What if you were to try another browser such as chrome or firefox?

#

just replicated it on my m2 mac. Safari the button doesn't click on chrome it does

naive dust
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

zealous yoke
#

likely to do with what type of button/input (specifically the onclick=send() event) that is and safari can be a bit weird about it

naive dust
#

I see, Ill just use my Kali then πŸ™‚

zealous yoke
#

no worries, another browser on your m2 will work but whatever works for you πŸ˜„

naive dust
#

2007 lol

torpid vapor
#

Hi there... I'm new around here. I'm working my way through the Pre-Security path, and can't seem to close the machines embedded in the tasks. I am using the Edge browser. If I have done several tasks with 'View Site' buttons one after another, all the sites are still open in tabs across the bottom of the right-hand pane, and there is only the '_' button to exit split view (which doesn't terminate the machines). Am I missing something obvious? TIA

fleet mirage
#

good day, i can't login to my tryhackme premium account. It takes automatic payment from my credit card. I created a student account. I will be glad if you help.

stone panther
#

@torpid vapor Is there not a "Terminate machine" button right next to "exit splitview" ?

#

@fleet mirage reset your password or send in a ticket would be my guess

#

I also don't think you should post your private e-mail on here

fleet mirage
stone panther
#

I think jerome or ben would be able to assist you on that, theyre pretty nice @fleet mirage

#

ben goes by CMNatic, hes the guy with the ben10 profile picture

fleet mirage
#

Thanks for be interested. I have done the necessary transactions with my bank.

zealous yoke
fleet mirage
zealous yoke
#

A subscription?

fleet mirage
zealous yoke
#

Yup! I've just gone through the process and there are numerous indicators / prompts that tell you that you are subscribing. I've mentioned the support team above re. the response time

stone panther
#

Ben, did you mean to tag @glacial hound ?

zealous yoke
#

ohhh

#

yup ahaaha @glacial hound

zealous yoke
glacial hound
scenic torrentBOT
#

Gave +1 Rep to @glacial hound

zealous yoke
#

Thanks Gonzo EeveeLove

sonic sluice
#

hi guys i need strong nuclei templates

short glade
#

hey. I'm having weird issues with 2 boxes while being on vip

#

network connectivity to the machine e.g vulnnet-roasted keeps getting interrupted/canceled

#

randomly, for a long time

#

attackbox works good

#

did anyone have similiar issue?

stone panther
#

@short glade I have the same if not very similar issue

#

very unstable connection on the machine, randomly stops responding etc.

short glade
#

@stone panther are we talking about the same machine or different one?

stone panther
#

different one @short glade

#

is your machine part of a room? @short glade

short glade
#

yup

zealous yoke
# torpid vapor Hi there... I'm new around here. I'm working my way through the Pre-Security pat...

Hey πŸ‘‹ welcome!

The sites that you see from clicking the "View Sites" aren't machines. They're websites that are embedded into the split-view. There is no need to terminate them because they are not a running machine (such as the ones that you deploy using the "Start Machine" button).

Clicking the - button is sufficient for this πŸ™‚

Though, just testing on edge and I can see that the tabs still remain.~~ I'll submit a bug ticket to our software team about this, but you shouldn't worry as nothing is technically running by them still being there. The tabs get removed if you were to click the - icon in browsers such as Firefox and Chrome
~~
Edit: force refreshing the page in Edge seems to close the tabs as well
Edit2: I don't think this is a bug, the tabs remain even on other browsers. This is a case where a room has two static sites. If I were to visit another room that has a static site, the tabs from the previous room don't display - so this looks intentional

scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

stone panther
#

the machines feel especially unresponsive today

#

Im in the "NetworkServices" Room

#

and I can not run 2 commands on the machine without it going offline for a good 2-5minutes

#

getting a new machine did the trick

agile lynx
#

Currently developing a private room for a CTF. Is there a way to make weighted questions? Ie vary the points per question?

#

It's very possible I am overlooking something

bronze vale
#

No, only TryHackMe control the points for your questions:)

agile lynx
#

Ah very unfortunate. Thank you!

ebon shadow
weary spindle
#

What answer are you trying?

ebon shadow
weary spindle
#

Try that

ebon shadow
#

thanks it worked, but why wasn't it working when I entered it?

weary spindle
#

Did you copy and paste?

ebon shadow
#

yeah

placid portal
#

hi im having problems with a room and a very poor connection. Honestly I am kinda unhappy about network performance lately with some rooms I had in general. I am a premium user on the paid VPN and it's a premium room, but my RPD connection times out constantly. I have a very good uplink to provider and fully cabled. all of my pages are fine but the RDP constantly times out and I have to wait until I can finish the assignment. Ususally I try to get all files locally anyway but for the osquery room I cannot do that

#

I have a ping open to that machine as well and the ping also drops, and I've been having the same issue with the sysmon room

placid portal
#

I literally cant type a word.

weary spindle
#

Which tool are you using to RDP?

placid portal
#

remmina, but like i said, my ping also drops.

weary spindle
#

I've never had Reminna drop on me.

Are you sure it's not your side?

placid portal
#

how would you like me to verify aside from confirming the network goes down?

#

im connected via VPN, so I have an IP on the tryhackme VPN subnet

#

the machine is started on a different range

#

I connect to it, and open a ping

#

the moment remmina stops my ping hangs, and continues to do so for multiple minutes

#

it's not remmina, it's the room

#

was kind of looking for someone from tryhackme to do something about it, although I appreciate the help

tawny kiln
#

Not sure what sub to post in so~~~ eh:

#

hey so ive been using a windows OS then mainly using linux VMs (many dif distros nealr exclusively for a while now throught a flashed bootable drive (ubuntu for better specs vsVM().

Question is; have quite a bit of storafe taken up and i dont need a lot of these files, 99% are very extrenuis (perhaps over the top from school) so some are decent sized files.

MY question is~~~
[3:02 AM]
Id like to just fully switchto ubuntu or arch linux. Whats thebest way to transfer files from my windows computer afrer installing linux on interanly drive?

Thanks in advance for any device. I dont have enough USB keys to hold the amount of files i would like to transfer. Whats teh best way to go abt this? Only used windows for notes 4 class so not crazy importat but yea
[3:03 AM]
HMU! thanks for any advice in itself
[3:03 AM]
advance***

crisp osprey
#

Hlo anyone here?

#

I am facing some issues, i connecte through openvpn and now I am performing nmap command it's is taking unusual time

#

@crystal marlin

crystal marlin
# crisp osprey

Have I not told you about a certain flag you can add to speed up nmap ?

crisp osprey
#

Naah

#

Last time I type the same command in same room and I get response within 2 minutes

crystal marlin
crisp osprey
#

But even with -T5 time it showing 20 minutes

crystal marlin
#

You can also add --min-rate 10000 in addition to -T4

crisp osprey
#

Same for others commands like gobuster

pseudo zinc
#

hi i think this is broken? im pretty sure ive studied for more than 8 hours this week and plus it showed "4 hours" yesterday

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @pseudo zinc

crisp osprey
#

I don't understand why this problem occurring

pseudo zinc
# crisp osprey

its because youre scanning 65536 ports + youre doing a connect scan(which takes time because you try establishing a full connection) + youre scanning the ports for a service

#

so even adding a -T5 in there wouldnt make much of a difference

#

i suggest you try a null scan -sN

crisp osprey
#

Okay thank you

tacit mirage
#

I'm not sure this is the right place for this, but is there any way to change your username? I'd rather not start a new account from scratch if I can avoid it

pseudo zinc
#

they'll do it for you

tacit mirage
pseudo zinc
sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
tacit mirage
#

Okay thanks

short glade
#

Hi. Am I the only one who has connectivity problem to the machines? Yesterday I had the same. I'm doing VULNNET_ROASTED room and keep loosing connection to the machine. At the same time I have a connection to THM network (10.10.10.10/whoami works fine).

#

Resetting the machine helps, but that's not the best option to reset machine every 20-30 minutes

#

I'm on VIP btw

#

could someone pls verify?

weary spindle
#

Have you checked how many tun* you have?

long glen
#

I also run bare bones windows (from the windows partition) via virtual box so can work on both at the same time with linux being the host. That is useful if you have win software that don't work well with wine

short glade
tawny kiln
undone hazel
#

What is the scoring in simple ctfs in Tryhackme? Even though I solve all the questions, I get an average score.

naive dust
#

Hello support, do even read emails ? I am a student since maybe 2 or 3 month I contacted you by mail to get that discount and still didn’t get anything

weary spindle
weary spindle
naive dust
#

My university mail end with @ulb.be

weary spindle
#

Is that the email you've signed up to THM?

naive dust
#

I a few moments ago I got mad and opened a ticket to get a refund

#

No I used another mail

undone hazel
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce

limber elbow
#

I am currently doing the Walking An Application room, but it keeps saying the flag is wrong on the last question, even though is the correct one

naive dust
#

Hi I am pretty new to the site and I have been trying to get the VPN connection to work for a while now

#

I have got the the screen were it says I can connect and gives me an IP

#

And it says Im connected to the VPN

#

But I cant seem to access the modules

#

I would send a screenshot but I cant seem to post pictures here

stone panther
#

Are you connecting through attackbox or your own machine?

naive dust
#

I tried connectring

#

but it sadi host name unresoled or something

#

once I get the machine IP how am I supposed to connect to it

weary spindle
#

Depends on what room you're doing.

#

You could either nmap it, etc,

#

or ssh to it if you have the creds

naive dust
#

ssh tryhackme@111.11.111

naive dust
#

since I was trying it on one of the early linux ones

stone panther
#

the room should tell you how to connect

weary spindle
#

Some boxes can't be ssh'd into.

#

Linux fundementals 1 is one of them.

stone panther
#

What are you trying to do, what result are you hoping for and what are you getting?

#

also what room is this? once you !verify you can post images I believe

weary spindle
#

!docs verify

sharp bisonBOT
naive dust
naive dust
naive dust
stone panther
#

cant

weary spindle
naive dust
naive dust
weary spindle
#

That opens a split screen machine.

naive dust
#

oh

weary spindle
#

When you press the green button

#

A split screen button will appear up top, if the box hasn't already opened.

naive dust
#

on my end

#

but not the split screen view button

#

for me it says start attack box

#

or start kali machine

weary spindle
#

Did you press that green button?

naive dust
#

yes

#

I really need to verify

#

so I can send screenshots

weary spindle
#

You see this machine?

stone panther
#

terminate the machine and press it again

weary spindle
#

It's not needed.

naive dust
#

?

weary spindle
#

Verify first, then we can assist you better.

#

@bronze vale are you around?

I think auto mod has muted Yaoi.

stone panther
#

lmao whys that

eager fulcrum
#

@naive dust Please don't repeat the same thing, the bot doesn't like it

weary spindle
#

Thanks James.

weary spindle
eager fulcrum
weary spindle
scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

fossil viper
#

hello everyone my name Benjamin but feel free to call me Dking it's good that way. can anyone pls help me get through this challenge on task 3 on defensive ?

#

this is going to make my day if I manage to found someone to help me

chilly pike
#

You're new here, so you're forgiven. But as I said before, you have to be patient, it's not appreciated if you post the same message all over the channels

#

this is also not the appropriate channel for this question anyway

fossil viper
#

my apology

wind urchin
#

Is anybody else having an issue when clicking "Join Room" on Wreath where it takes you to "My Rooms" rather than joining the room?

zealous yoke
wind urchin
#

That explains it. Thank you @zealous yoke !

scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

surreal escarp
#

Does it update automatically our role ?

zealous yoke
rustic shard
#

Hello, I sent a mail on the 30th of last month, they haven't returned yet. I wonder why anyone has an idea about membership or is in charge?

nova gull
#

@weary spindle I have no idea what has changed but just successfully launched Vulnersity and completed that room. Thanks for your help.

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

naive dust
#

Machines respond every 5 minutes when I try to ping them. Is there a connection problem on my end or are the TMH servers overwhelmed?

naive coyote
stone panther
#

@naive dust I have similar issues sometimes, terminate and re-open a new machine

#

thats what I do when the machine doesnt feel like responding

lethal shard
#

Hi I can't connect to the vulnversity room

#

I am connected through OpenVPN

#

And when I try to open the ip on my Kali it said Connexion has failed

stone panther
#

@lethal shard what do you mean "try to open the ip"?

#

when you ping the target machine you mean?

lethal shard
#

With the help of 2 persons

stone panther
#

NICE!!

nimble jetty
#

Hi awesome people !! could I ask for a little help ? I uploaded a VM (.ova file) to a room in THM, that has a docker-compose that get up 2 http services on port 5000 and 5001. On my virtual box, the start get up and takes the ip from dhcp and exposes correctly the service to both ports respectively .. but when I try to do the same inside the room of THM , from the "attacker machine" pointing to the IP address of the web-vuln-server it don't response .. I think that could be a networking issue (can anyone give me some hint ? I will really appreciate)

weary spindle
#

Did you give the vm the correct resources?

nimble jetty
# weary spindle Did you give the vm the correct resources?

Hi Scrubz thanks for response, you're meaning about the system resources of my vm on virtualbox ? There is a link to some documentation about what the .ova (or virtual machine) must to complish to work when it start ? In addition to that, I created a script and a service related to that, to get up the stack of my app with docker-compose when the machine starts .. and related to Network , I have "Bridged Adapter".

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

nimble jetty
#

I think it's cool about specifications .. it has :
-> 25 Gb disk
-> 4 Gb of ram
-> 1 CPU core
and the .ova file size is 3.2 gb. Thanks for your time ! I really appreciate it !

weary spindle
#

You might need to drop the ram to 512mb,

That's what free users get when they launch machines.

nimble jetty
#

Okay I will do it , I need to reupload the VM right ? In addition to that, the services can be exposed using IP or it's necesary to bind a domain name to the service? Thanks for this useful information !

weary spindle
#

You could use the ip, or set up a vhost.

nimble jetty
#

Ty Scrubz, ..unfortunatelly My room needs both app running and they need more than 512 mb together.. there is a way to extend the ram to use 1 Gb ?

#

This is the actual state of my web-server vm:

free -h
               total        used        free      shared  buff/cache   available
Mem:           3.8Gi       713Mi       2.5Gi       1.0Mi       666Mi       2.9Gi
Swap:          2.1Gi          0B       2.1Gi

weary spindle
#

That could possibly be done at THM's discretion.

nimble jetty
#

Awesome ! thank you so much Scrubz , I hope you have a good weekend buddy !

verbal forge
#

I wonder! Do we need to pay for free learning path access as well. Cause I can't continue anymore!

stone panther
#

you can filter rooms by Subscriber only, or Free only

#

some paths are only partially doable because some rooms are subscriber only

naive dust
#

!vpnscript

sharp bisonBOT
old oriole
#

question: I want to change my username, I don't see an option on the site so I'm assuming the only way to do it is by reaching out to the support email, but since the bot says wait time is a week-ish, I wanted to ask if anyone knows any other way

#

thanks in advance

weary spindle
#

Only support can change your username.

toxic cedar
#

"Authoratative" instead of authoRItative

pseudo zinc
#

many tasks have spelling errors

weary spindle
#

#room-bugs is the better channel for any bugs/potential typo's.

zealous yoke
scenic torrentBOT
#

Gave +1 Rep to @toxic cedar

frail turtle
#

Will someone please help with my ping command returning "Destination Net Unreachable" Also, would this be related to why my Openvpn is disabled?

stone panther
#

You need to be connected to openvpn to ping thm machines

#

or communicate with them at all I believe

weary spindle
#

At all.

#

Vpn creates a tunnel to the THM machines.

frail turtle
#

I run the sudo openvpn command and connect. Now, Openvpn access details on THM gives me a green check mark next to server satus and connected. However, when I run systemctl status openvpn@filename, it shows openvpn@.service; disabled; preset: disabled

weary spindle
#

Can you type ip a s and see if you have a tun0?

frail turtle
#

Yes, there is a tun0

#

Should I post what it says?

stone panther
#

try pinging the machine again, if that doesnt work open a new one and see if you can ping that one @frail turtle

frail turtle
stone panther
#

I dont think so, I think that just means the VPN won't start on boot? scrubz might be able to help more with that @frail turtle

acoustic dust
#

Hi everyone, I wondered if someone could help me out… I have completed multiple learning paths and wish to download my certificates. The issue is that the name on the certificate is my account username and not my real name. Is there a setting to change this without changing my username? Any help is greatly appreciated 😎

weary spindle
#

So that's why I said 512mb.

glacial hound
weary spindle
#

And I didn't say support can bump the resources, I said THM can in general.

glacial hound
#

Anyways, still think that doc and explanation can help them understand how to get 1GB.

weary spindle
#

It would, again.

My point was that they might make thr room for free users.

I'll point them to the doc next time.

glacial hound
agile lynx
#

Developing a private room for a CTF. While testing, it seems like resetting a user's progress doesn't restart the first blood bonus? Is there any way to completely reset a room?

pastel cipher
#

Hey can someone tell me the room of thm how website work is for paid or free?

#

Yesterday when I visited the room how website work was free but not is comes why subscribed??

weary spindle
obtuse maple
#

Hey Guys I am not able to use the fuff tool in my attackbox it stating the same error again and again" flag not defined"

stone panther
#

can you share the command youre running? @obtuse maple

naive dust
#

Machines only respond for a minute and then stop responding for 3 minutes

#

So annoying πŸ˜•

#
  • my terminal freezes when im connected through SSH, i dont know why
stone panther
#

terminate the machine and open a new one @naive dust

#

I have the same issue sometimes, ppl on here try to gaslight you into believing its not their machines

#

its defintly their machines

naive dust
stone panther
#

re-opening a new machine usually works

#

can you ping the machine first?

#

maybe the scans you run are too aggresive and they bottleneck the machine for a while

#

i dont even know if thats a thing but maybe

naive dust
#

weird

obtuse maple
#

Thanks for the response but I fixed it just a little syntax error it was

buoyant escarp
#

Hello, I'm was doing the room LazyAdmin and I couldnΒ΄t make the reverse shell work from kali on my virtual machine (IΒ΄m using openvpn and itΒ΄s connected), I used the same command in the Kali from THM and itΒ΄s worked fine, anyone know where I need to look to investigate this issue? is there a firewall setting I need to change in the virtual machine or pc?

glad oyster
#

are you using openvpn on your host or vm

thorn chasm
#

Hi folks, I feel this is the proper room for this question ->

Has anyone else had issues with the "Breaching Active Directory" room? Whenever I edit /etc/resolv.conf to add za.tryhackme.com and ** 10.200.99.101** it works for a few minutes and then the entire /etc/resolv.conf file is reset back to as it was before the THM additions. I use my own Kali and DLed a new .ovpn, tried it on /etc/hosts and it still keeps resetting /etc/resolv.conf after a few minutes (not long time at all). I can't fix it with anything I've done. Is this an issue with the room? Are there any Mods here that can wake me up to whats going on? Thank you

agile pawn
#

Hey, does anyone know why I cant start my AttackBox? I am subscribed and so far I know there is only one machine to attack running

#

It says I can only run 3 machines max

vapid elm
# agile pawn It says I can only run 3 machines max

then your attack machine is probably running already. If you're not already in a split view, you should have a button "show split view" next to the name of the room and after you click it, in the new split view you should be able to see some tabs on the bottom and one of them should be the attack box

agile pawn
#

already checked that

#

doesnt look like i have one running

vapid elm
#

try a hard refresh and then try starting a new attack box

agile pawn
#

works now, thx

buoyant escarp
glad oyster
#

you need to use it on your VM

buoyant escarp
scenic torrentBOT
#

Gave +1 Rep to @glad oyster

left sedge
#

hello, I'm trying to join the Enumerating Active Directory room but when I click join room it just takes me to My Rooms. Not sure why I can't join the room, just wondering if anyone else has had this too

#

seems to be happening with the Breaching Active Directory room too think

thorn chasm
weary spindle
thorn chasm
# weary spindle If you're resolv is defaulting. Your networking is restarting.

Thank you, but I feel that there must be more going on then simply my networking restarting. I've never experienced any evidence of that happening locally. My /etc/hosts is stable. Never had a hiccup in connectivity. Nothing that would suggest it's my networking. Could it possibly be the THM room/network resetting, interferring with my VPN connection which resets the connection to THM , and that's defaulting my /etc/resolv.conf??

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

thorn chasm
thorn chasm
sick bluff
#

Hi, is anyone else having trouble maintaining connection with tryhackme machines? I am connecting my Kali Linux via Openvpn and for the past couple of days, the connection appears patchy. It shows as connected but I can ping the machine one minute but not the next. ISP connection is solid. Thanks

crystal marlin
#

Like the next machine?
Or the next minute?

sick bluff
#

Sorry, I meant the next minute. It seems pretty random when I can ping and when I cant. Same happens with nmap scans. I can scan fine now and when I try to do it again in a few minutes, it will give me no results.

#

This does not happen with the Attackbox

crystal marlin
#

!docs verify

sharp bisonBOT
sick bluff
#

Ok thanks, Ill send as soon as I encounter the issue again. At the moment, its pinging fine

#

@crystal marlin just sent it above. Hope that is fine. So first few sets of ping went fine. Then the 4th got no reply. All done within a minute

crystal marlin
#

Could you try running sudo ip link set dev tun0 mtu 1200 then try again with ping?

#

Also, if your kali machine is a VM, do you have any personal VPN running on your host machine?

sick bluff
#

I will try the above command. Yes Kali is a VM. No other VPN running

#

@crystal marlin

#

Also I dont know if this is related or not but while the Linux Openvpn works, Windows does not connect for me at all

crystal marlin
#

Also you could try changing VPN server

sick bluff
#

Ok thanks for the pointers. Will check keep an eye on the terminal and try various servers πŸ‘

hollow trout
#

is my kali linux box meant to be same every time I connect to it as a subscriber? as in if I wanted to configure stuff on it, I shouldnt lose it next time I connect

zealous yoke
hollow trout
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

nimble jetty
scenic torrentBOT
#

Gave +1 Rep to @glacial hound

agile wadi
#

can anybody help me with this problem.. i got "ssh: connect to host 10.10.124.133 port 22: Connection timed out" when i tried to connect OpenVpn

weary spindle
nimble jetty
#

Sorry team I have one question more about upload VM's to THM. What am I supposed to choose as the NET adapter in virtualbox before exporting the virtual machine so that the services I'm exposing with gunicorn at 0.0.0.0:5000 can be accessed? Any help would be appreciated πŸ™πŸ½

real coral
#

Good day THM Staff - the network in the Persisting Active Directory room seems to be down. I can not reach any of the machines from either the attack box OR local over VPN. May I please request for assistance to reset the room? When local, I can connect to the VPN without issue, adapter is added and up with an IP and can reach gateway, but none of the machines in the room are reachable (DC's etc.). Also confirmed route is added to routing table.

plush bay
real coral
#

@plush bay Yes after the network was shut down (not by myself). Network states its still running, refreshed multiple times, not able to click start, etc.

plush bay
#

hmmm

zealous yoke
nimble jetty
#

Hi @zealous yoke thank you so much for answer me ! Yes , I have a deployment script as a service that ensures the service get ready when the machine is up, 😦 but I cannot access it on THM network. But I can access the service over Bridged network on my lab in VirtualBox over the port 5000, the gunicorn serves the webapp over 0.0.0.0:5000 as you said Ben. Once again thank you for your support !

scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

naive dust
#

Hey team, when i use VPN to connect with tryhackme i am unable to check web contents for any challenges.

e.g. connection times out on port 80. Tried these on 3-4 challenges. I'm still able to ping the VM, Scan it for open port but only thing that is not working is website neither via curl or via browser, here are some attached screenshots for reference. I've also tried to regenerate my VPN and currently I'm using EU regular 1.

agile wadi
crystal marlin
distant elk
#

hi, is there a shortcut to switch workspaces on an attackbox? ctrl alt arrow is switching on my linux

radiant mauve
#

Hi team, since there's will be changes in prices from October the amount deducted automatically (PayPal) or we have to resubscribe to them for the changes , thanks you

naive dust
#

Will this be ever fixed?

fading schooner
#

Hi there my account has auto renewed and I completely forgot I had one. Is there anyway I can get a refund for it?

#

Just tool 72 out my account πŸ˜‚

naive dust
zealous veldt
#

Hey! sometimes when i try logging into the server using ssh, it doesnt let me. Hydra would work for bruteforce but ssh isnt letting me log in.. What am i doing wrong?

|| Rooms ive worked in: Bounty hunter, brooklyn 99||

crystal marlin
zealous veldt
#

Connection refused

crystal marlin
ivory spruce
# zealous veldt Connection refused

Have you waited for 3 to 5 minutes for the machine to complete the boot process? Sometimes, I try to remove the -p option (assuming SSH is running in port 22) when I try to login and it works. Or worse case is having to restart the machine and wait for another 3 to 5 minutes. Usually works after that.

ivory spruce
zealous veldt
sick bluff
pastel tinsel
#

Is it a windows room?

nocturne hawk
#

hello guys i want some help\

#

when i write this command to command prompt is showing error

chilly pike
gritty wren
#

hello guys i have this issues when ever i try to connect to tryhackme openvpn server

#

--cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-08-09 05:49:40 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload

naive dust
#

Hey Guys is there an issue with the VPN? Cause I cant connect and the thm-troubleshoot script tells me to contact the discord or forums.

weary spindle
naive dust
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

mental tendon
#

Can anyone explain what this badge means, please? I found it in some of the rooms of the AD networks but I can't understand if it's related to my account, to the rooms themselves, or something else

tawdry orbit
mental tendon
scenic torrentBOT
#

Gave +1 Rep to @tawdry orbit

naive dust
#

Still not able to connect to any website.

weary spindle
naive dust
#

Tried this with 2-3 rooms.

#

all had the same response

weary spindle
#

Are you running a multi VPN?

naive dust
#

No

weary spindle
#

Are you doing a room now?

naive dust
#

Trying to solve some rooms since yesterday, I'm able to connect, scan ports but when i open it in the browser, it just simply doesn't loads up

#

at first i thought this is room specfic but happened with all the rooms i tried.

weary spindle
#

Which rooms?

naive dust
#

getting started, plotted etc

#

mostly web rooms

#

also i am using Kali in a VM if that's helpful

#

and i recently switched to win11

#

but i added VMware as an exception to the firewall

weary spindle
#

If you could load up a room just now, that would be helpful.

naive dust
#

sure, just a sec

#

Here

#

room name is " getting started"

weary spindle
#

Can you visit the link in the URL?

naive dust
#

It stays like this and then times out

weary spindle
#

sudo ip link set dev tun0 mtu 1200

Have you tried this?

naive dust
#

Restarted VPN and still same!

weary spindle
#

You don't need to resart the VPN to change the MTU

naive dust
#

i meant outcome is same, mtu is 1200.

weary spindle
#

Are you going to http or https?

naive dust
#

http

golden vortex
#

hey

weary spindle
naive dust
#

No

weary spindle
#

Can you full screen your VPN output please.

#

I don't think you're connect, I can't ping you.

weary spindle
naive dust
#

ah yes, just a sec, sharing

weary spindle
#

Definitely connected then.

naive dust
#

But this works

#

IG http requests with content length > certain size are being dropped/blocked.

#

The question is what can partially block requests based on http response size.

weary spindle
#

This is a stupid Q, but I need to ask it.

#

You're running the VPN in the enviorment you want to hack in, right?

naive dust
#

yeah, its running in my kali VM

brave topaz
#

hi guys i got a problem i started a lab yesterday and i use the thm attackbox but i got 504 can anyone know the problem, i use the good ip the good url but nothing good (in the "walking an application" in "jr pentester"

eager fulcrum
#

Click the green deploy button in the task with the machine icon in it

brave topaz
#

omfg ok

#

i understand now

#

im so stupid

eager fulcrum
#

Being so certain you've done it right will make troubleshooting a lot more difficult

#

You need to be open to having made errors, and open to suggestions and advice

#

"I did it all correct and it doesn't work" is not anywhere near as helpful as "I clicked here, did this, changed this, and then it did this which isn't what I expected"

brave topaz
#

I understand what you mean and I agree with you. I just didn't realize that I had to launch this machine when I was in front for a long time but between yesterday and today I zapped. thank you very much for taking the time to debug me and have fun. be well

#

thanks

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
ionic zephyr
#

FIX YOUR GODDAMN SERVERS, CTF UNPLAYABLE if it keeps diconnecting every 3 mins lmao

#

Is premium worth it πŸ€”

chilly pike
#

Im sure staff would appreciate your feedback if you write it in a normal manner

ionic zephyr
sick bluff
# naive dust

Hey this might be a silly question but I've never seen this Tryhackme screen you have shared. Is this a custom script? I have looked through tryhackme VPN support but no reference to it.

tardy marsh
#

Thanks in advance

sick bluff
#

It takes me to Breaching Active Directory page, no issues.

tardy marsh
#

Hm

#

thats wierrd

sick bluff
#

When you hover over the link, does it give you the correct URL on the bottom left?

tardy marsh
#

probably a wierd cache bug from firefox? i dont know

sick bluff
#

Im guess you would have tried deleting you firefox cache

tardy marsh
#

Hmm i tried in my real machine (not VM) and still redirects to /r/rooms

#

wtf

sick bluff
#

What about going to search and clicking the link there?

tardy marsh
#

lets try

#

But at least i fixed my problem

#

Thanks @sick bluff

scenic torrentBOT
#

Gave +1 Rep to @sick bluff

sick bluff
#

πŸ‘ Cool

tardy marsh
#

It didnt fixed. I cant 'join' the room

#

it redirects me to rooms lol

sick bluff
#

Oh no, could it be due to premium v non- premium sub?

naive dust
#

Its not entirely clear what else I'm supposed to click here. Is there supposed to be a next button? I disabled all my extensions. I'm kinda tired and the answer might be right there and I'm too tired to see it. And its not letting me paste my screenshot

#

I'll try again in the morning since I'm way too tired to do anything (even though its only 9:30pm)

weary spindle
weary spindle
knotty sand
#

hey i am not able to go on the web its taking too long for it any one who can give idea about it what should i do now ???

#

i have terminate the machine and then i restarted it

#

but not working

#

i am doing content discovery module and after its first task, when in 2nd task i open the link its not opeing

#

showing that site is taking too long to responf

#

respond

weary spindle
#

We need context.

  1. Are you using a VM or Attackbox.
  2. Which room are you doing?
  3. What task are you doing?
fervent yoke
naive dust
sick bluff
#

Great thanks @naive dust

scenic torrentBOT
#

Gave +1 Rep to @tight raft

austere field
#

i cant verify my token with the tryhackme discord bot

#

@plush bay

plush bay
#

???

#

looks like it worked to shadow

austere field
#

it didnt update tho

zealous yoke
#

bot was stuck, I've restarted it

austere field
#

when it works it should look like this

zealous yoke
#

Was that just now?

austere field
#

i didnt get any response from the bot

zealous yoke
#

There we go

austere field
#

it works now

#

must be the bot had a issue

zealous yoke
#

it's just catching-up, looks like it took a minute πŸ™‚

arctic kettle
#

hi! this is were i can ask questions about openvpn error in one of the AD rooms?

naive dust
plush bay
swift charm
#

Hey I had a question if anyone doesn't mind helping me out

#

I was wondering if it was safe for me to do the learning pathways on tryhackme without setting up open vpn

candid talon
#

#site-support having issues the last few days with my progress in modules being saved...would appreciate some help when someone may be available!

candid talon
swift charm
candid talon
swift charm
#

Alright sweet! Thank you, I saw somewhere online that said it’s not super safe to learn there in general without a vpn and some places saying the opposite so I just came here to ask to get something definitive

candid talon
opaque abyss
#

Question: Where can I get support?

I cannot login to my account because I deleted registered email account currently and forgot to change to new address. I send the request to change my registered email 5 days ago to THM, but still no reply despite of my subscription. Where can I ask help for this?

dense estuary
#

why reported

#

wym

spice ember
#

I can't run mimikatz in Attackbox on Persisting Active Directory Room.

hard swift
#

Hello, I have been trying to access the AD Breaching room for the past couple of days. I am using a Kali VM in VirtualBox. I edited the resolv.conf file and added the nameserver to the top of the list. This helped me with the nsloookup thmdc.za.tryhackme.com and the domain got resolved properly. But whenever I enter the same domain in the browser it throws an error that we're having trouble finding that site. I even reset the network, but nothing seems to be working

somber parcel
#

Hello everyone I am new to Tryhackme Website I can't understand where I started my career as a Penetration tester can anybody guide me please thank you.

ivory spruce
# dense estuary

You don't have to worry as this is simply part of the machine configuration where unauthorized users' attempts are logged (at least in the context of the machine or challenge you are working on). It doesn't mean that you will be reported to THM for bad behavior or unathorized activity.

iron pumice
#

anyone an Idea why My OPENVPN doesnt want to resolve domains?!

dense estuary
#

ok thanks

iron pumice
#

Tried TryHackMe and also HackTheBox so its a client issue anybody an idea?

#
2023-08-11 12:05:39 Restart pause, 1 second(s)
2023-08-11 12:05:40 Outgoing Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
2023-08-11 12:05:40 Incoming Control Channel Authentication: Using 256 bit message hash 'SHA256' for HMAC authentication
2023-08-11 12:05:40 RESOLVE: Cannot resolve host address: edge-eu-free-2.hackthebox.eu:1337 (Temporary failure in name resolution)
2023-08-11 12:05:40 RESOLVE: Cannot resolve host address: edge-eu-free-2.hackthebox.eu:1337 (Temporary failure in name resolution)
2023-08-11 12:05:40 Could not determine IPv4/IPv6 protocol
2023-08-11 12:05:40 SIGUSR1[soft,Could not determine IPv4/IPv6 protocol] received, process restarting
2023-08-11 12:05:40 Restart pause, 2 second(s)
^C2023-08-11 12:05:40 SIGINT[hard,init_instance] received, process exiting```
#

this massage is looping it for a while after execution

zealous yoke
iron pumice
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

drowsy elm
#

Hey, just wanted to make sure, I just subscribed for a month but want to cancel the auto renewal, if I cancel my subscription will I lose all premium content?

hard frigate
#

Hi ! I recently did a survey with someone from the TryHackMe team and was supposed to receive a voucher to use on the website.
I would like to use it to purchase the Throwback network but I didn't receive any mail or messages containing that voucher code and I didn't find any category in the chatbot allowing me to ask for it, is this the appropriate channel to get support for that matter ?