#site-support

1 messages · Page 44 of 1

finite aurora
#

Writing a script with selenium kekw

eager spoke
gleaming flume
gleaming flume
#

That room requires a 7 day streak if you are not subscribed

scenic torrentBOT
#

Gave +1 Rep to @gleaming flume

alpine lodge
#

Hello, who can I contact if I used wrong payment method for a year subscription. My work is paying for it, but I accidentally ran it on my PayPal

obsidian kraken
#

@alpine lodge Hello how can i get that work?

alpine lodge
#

Hey there. I just submitted an email to support

#

I just used wrong payment. Then found out I can’t do the sub until oct 1 for new quarter.

#

Just need to cancel payment and sub, the. Start it with company card on the 1st

#

My mistake

azure totem
#

hello, when I try to connect via openvpn I get this error

#

wait I can't send an image

gleaming flume
#

You need to verify for that

#

!docs verify

sharp bisonBOT
azure totem
#

my openvpn version is 2.6.6

tribal burrow
#

update you os and might regenerate cert file

azure totem
broken bear
# azure totem

certificate is borked. Change VPN servers, regenerate cert, wait a few minutes before downloading

round ice
#

sorry for the late response, and no I haven't, could give it a shot whenever I can

quaint otter
#

Is there a way I can use dark mode on website???

obsidian kraken
#

darkreader i guess

weary spindle
quaint otter
#

Oksy

obsidian kraken
#

for some reason practice part stopped loading for me

#

tried with different browser

#

same result

#

not loading

#

@weary spindle my saviour

weary spindle
obsidian kraken
#

did it

#

Tried with safari and chrome not working

#

Incognito is working tho

#

But hard resetting the page should be same with incognito aint it?

weary spindle
#

Try clearing cache and cookies?

obsidian kraken
#

Okay it worked after cleaning everything from last hour

#

I thought I didn't need it since I hard resetted the page and nothing happened

naive dust
#

Hi, I'm not sure this is the right area to ask but just looking for some insight 🙂 I've designed a room and uploaded the Windows VM, but I've realized that the room only makes the IP available so that you can attack it with the Parrot VM. I need the Windows VM to be loaded whenever the room starts (instead of the attack VM), so that users can access the learning material on the Win machine. Is that possible?

#

I've thought about install rdp on the windows machine, but cant unless I rebuild it to use windows pro

weary spindle
#

For what, exactly?

vital karma
#

same here also facing issues with openvpn.

#

cannot connect

#

https://lab_web_url.p.thmlabs.com/ gives a gateway error

weary spindle
hard hollow
#

I want to download task files into the vm . How to do that?

#

I am not getting a link, otherwise i could have simply used wget

weary spindle
#

What files?

broken locust
gleaming flume
broken locust
#

Well, I am gonna wait then. Thanks @gleaming flume

scenic torrentBOT
#

Gave +1 Rep to @gleaming flume

lusty swift
#

Guys
How do I get the "SECURITY WARRIOR" thing off me 😂

weary spindle
#

Staff will remove it after the event.

obsidian kraken
#

This sucks so bad

#

Every time I need to get a new practice

#

I have to delete cookies cache everything

#

Like can't just a web page work?

#

and same on safari as well

north compass
#

hi, I need help with open vpn

obsidian kraken
#

@north compass what kind of help?

north compass
obsidian kraken
#

What system are you on?

north compass
#

kali, virtualbox

weary spindle
north compass
#

us-west-regular-1

weary spindle
#

Can you verify and show a screenshot?

#

!docs verify

sharp bisonBOT
obsidian kraken
#

What does it say when you download the config file from tryhackme and run sudo openvpn --config urconfigfile.ovpn ?

north compass
north compass
obsidian kraken
#

I am not a master in any means but I run it with openvpn --config I am not sure If it's same if you run openvpn urconfig.ovpn

#

Maybe try --config before the file

obsidian kraken
#

whats openvpn --version ?

naive dust
# north compass

Initialization Sequence Completed means it's connected (you can ignore the 3 lines after that) . What's not working exactly?

north compass
naive dust
north compass
#

Oh

wheat zinc
#

hello

azure egret
#

Hello, I'm now level 0xD. How can I access the advanced general chat ?

weary spindle
#

!docs verify

sharp bisonBOT
frosty kelp
#

hey, i am facing trouble with my vpn files
i am unable to connect

azure egret
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

azure egret
#

But even verified I still don't have access to advanced general chat

broken bear
weary spindle
azure egret
#

How do I change it ?

#

I can't claim the GOD role

weary spindle
#

You can't, you need to wait until staff pull the role.

azure egret
#

OK thanks

#

do you know the date ?

weary spindle
#

After the event, which is today.

So could be this weekend.

oak orbit
#

Hey yall, are yall having problems with the attack boxes? It disconnects me every minute or less. so im just doing it on my own kali vm. I'm doing a bruteforce discovery for usernames, the rockyou wordlist on kali is just huge and the one on the attackboxes that are meant for pentesting their own systems are smaller. Can't find the wordlists they use online, and the ones on kali take forever cause they're so large. Thanks in advance

plush bay
oak orbit
scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

/usr/share/seclists/Password/Leaked-Databases/rockyou.txt

#

the 140MB file

oak orbit
# plush bay ????

on the room i'm in it doesn't use the rockyou file. I was wanting to use the files it was wanting me to use, but the one I have in kali is the rockyou file. I was wanting the stuff they were using but in the rockyou file I can just search through for a while and find something

plush bay
#

most wordlists are included in seclists

#

which is easy to install on kali

#

sudo apt update && sudo apt upgrade && sudo apt install seclists on kali

#

this will update the package database then upgrade the system then finally install seclists

scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
#

asssuming you are using kali linux

oak orbit
#

yup

plush bay
#

after that you will find the wordlists in /usr/share/seclists

#

if you are lacking something after that you probably need specialised tools

#

like the ones discussed in crack the hash level 2

brazen canyon
#

Still waiting to hear back on prize from SE event, any ETA on timeline?(amazon gift card)

steep storm
#

Hi, I have problems with the room **linuxfundamentalspart3, Task4: **

**-> Downloading Files **
wget https://assets.tryhackme.com/additional/linux-fundamentals/part3/myfile.txt

I get the error code 403: Forbidden and a Connection timed out.

tribal burrow
#

are you using attackbox or local kali OS?

steep storm
tribal burrow
#

ah. so local mchine

steep storm
tribal burrow
#

them that link might can't be used as it is like that. you need to use target ip. if you can give me target machine ip i might try

steep storm
tribal burrow
#

sure

steep storm
tribal burrow
#

uh oh. thats not correct

#

might be ok to delete it

#

the ip that you get when you click in task2 on start machine

tribal burrow
#

hmm. might be the best to use thm attck box in this tasak as shown in beginning

tribal burrow
#

i don't speak Klingon but thnaks i guess

steep storm
scenic torrentBOT
#

Gave +1 Rep to @tribal burrow

weary spindle
#

Are you both students or colleague's?

#

Then you csnt join a workspace

obsidian kraken
#

This acces to networks are for non-premium users right?

weary spindle
tribal burrow
#

@zealous yoke

remote sentinel
#

Hello everyone, I noticed yesterday the email reminder that today is the last day for actual subscribers to get the subscription for the lower price.

My annual subscription will expire in November and right now on my profile it says that I'm currently being charged 90.00 $

How may I subscribe to another annual plan before tomorrow's price change?

obsidian kraken
#

Damn didn't know that

#

How much is it going to be?

#

14$ already high for me

frosty kelp
#

@broken bear this is what its showing

broken bear
frosty kelp
#

@broken bear

#

@broken bear i have tried it with every vpn file the result is the same

broken bear
frosty kelp
#

ok

broken bear
#

And, can you show the result of ip a s as well please

frosty kelp
#

didnt quite get it

#

@broken bear

broken bear
frosty kelp
#

@broken bear still not working

wary coral
#

How do I revert back to GOD from security warrior?

weary spindle
#

You can't

#

You need to wait until site staff pull it.

wary coral
#

All right, thanks

surreal escarp
#

hey any idea when the 1337 will be removed N

weary spindle
surreal escarp
rain falcon
#

Hi - I'm connecting to OpenVPN - connection works, I get an IP address, curling curl http://10.10.10.10/whoami and getting my IP back. But tryhackme site says I am not connected. Any advice?

weary spindle
rain falcon
#

Trouble is it's not showing me my room's machine IP?

#

I started a machine, the "show in XX seconds" went down to 00 and just stayed like that. I refreshed and the bar with that just disappeared completely. If I try to run the machine again it says a VM for that room is already running but because I can't see the bar to get the IP or Terminate I'm kind of stuck.

weary spindle
rain falcon
#

Ah, OK. I figured because it thought I wasn't connected it wasn't showing me anything.

#

OK opened the room on a different machine and it shows me the IP - bizarre, it's just a default Firefox instance. Thanks for your help.

wary field
#

getting error in browser when connecting to 10.10.x.x (Error response

Error code: 405
Message: Method Not Allowed.
Error code explanation: 405 - Specified method is invalid for this resource.)

plush bay
#

which room are you doing???

#

not all rooms have a web server running and some takes about 5-7 mins to fully load up the web server if they have one

wary field
#

Network Services

plush bay
#

which task

wary field
#

Enumerating and Exploring SMB

#

Exploiting

#

brb RR break

plush bay
#

you use nmap and smbclient to handle everything for those two tasks

wary field
#

ok im bk

#

ok

#

ok ill try that again, last time I tried using nmap it wouldn't find any host info

#

but let me run it again

#

ty

#

are you supposed to run nmap -A -p- 10.10.x.x ? or some other ip?

#

sorry im not clear on which ip to use for these tasks.

plush bay
#

you hit this button to start the target machine:

#

then this pops up and you get an ip to attack after around a minute:

#

after that you scan it with nmap.... most people use sudo nmap -A -p- -T4 10.10.x.x

#

@wary field ⬆️

wary field
#

thanks!

plush bay
#

no problem

wary field
#

ok I put in the command nmap -A -p- 10.10.x.x .........and all it does is display the following "Starting Nmap 7.60 ( https://nmap.org ) at 2023-09-30 23:50 BST" nothing else has happened.

plush bay
#

as you are scanning all 65 535 ports it will take a really long time unless you supply the parametere -T4 or -T5

wary field
#

ok, i was beginning to wonder how long it was going to take. Thanks again.

naive dust
#

+rep @plush bay 🙂

scenic torrentBOT
#

Gave +1 Rep to @plush bay

outer maple
#

Hey 🙂 I am facing issues while trying to upload a VM

#

Could someone help me upload it?

plush bay
#

hmmm weird

#

that kernel version and distro version should work according to aws:s documentation

plush bay
frosty kelp
#

Hi. I have a problem with my openvpn
Every time I am connecting it's shows network unreachable sort of thing.
But it's showing me the IP and it shows I am connected on site but unable to access the machine

full hull
gusty depot
#

I have an issue, even after connecting to openvpn I am unable to access the box, I can ping it but can't reach or attack it. Please help me fix this issue, I am using EU-VIP1 server

frosty kelp
steep storm
valid gulch
#

I'm in the Incident handling with Splunk room and I've started but am unable to see/access the machine in Incident Handling: Scenario. Usually it just shows up in split view or if I scroll to the top it says "show in split view" but it neither did it on its own nor is that option there. So I'm stuck

timid nexus
#

Hey,
I'm connected to the VPN but it doesnt seem I have network access to the target.

weary spindle
#

We need context.

What room are you doing?

What are you trying to do?

timid nexus
#

I'm doing the room Relevant
Spoiler: ||The service SMB is open there, I have opened the folder nt4wrksv then I opened the passwords.txt file and it worked ok. After 5 mins of investigating a bit more, I saw more folders so tried to open them and I didnt have access so i tried to open passwords.txt again and it didnt gave me. tried to ping the target and i get: Request timed out. ||

#

I think the machine just broke

#

i terminated it

shrewd trench
#

sounds like something timed out, assuming you didn’t change your approach the second time

#

OR you may have tripped something, I don’t know the room personally

hollow arrow
#

hey guys need some help

#

have been using linux for a while

#

but just stared on try hack me

#

doing what i know first which is linux fund and when i enter "whoami" in the answer feild for prining the user i am logged in as it is giving me that i am putting in the wrong answer and that i should try it on the machine

#

nevermind

#

i am an idiot

#

read the question wrong

pure maple
#

i get this message when i try to connect to an active machine in tryhackme "ssh: connect to host 10.10.164.223 port 22: Connection timed out" i've tried changing mtu values, firewall settings, and using bridged instead of nat in my vm but nothing has worked

#

i also tried using the attackbox instead of just connecting through the vm and got the same message

ivory spruce
pure maple
ivory spruce
pure maple
gleaming flume
pure maple
#

im starting to think its a problem on my end with the network or something but idk

#

like i said it worked a few days ago perfectly fine but now it doesnt

pure maple
#

i hate my life.. ssh wasnt enabled.... its working now

patent compass
#

Dose anyone know how to change the contry of your profile?

elfin wharf
#

i'm not able to connect to intro to logs room VM using SSH & RDP. pls help

#

nvm I regenerated a new VPN file it connects now

naive dust
#

Helloo everyone, i have a question, i became really interested in cyber security and i saw people on reddit recommend this website so i thought i'd join here and start this way , now the question would be is the free version of try hack me good (i have been studying css-javascript actively for about 3-4 months if this matters) or at least good enough haha, since i am not 18 yet and cant get full version or maybe i should start with some kind of book, youtube tutorial or something else, this field seems really huge and its not as easy for me to start as it was me when i started learning frontend, thank you for helpp

weary spindle
reef plover
#

Is there any way to pop out AttackBox in a new window? I'm running with dual monitors and it'd be helpful to have 2 windows

eternal forum
#

why it is showing zero progress in burp suite Jr path

#

i already have the completion certificate

#

🤔

plush bay
eternal forum
#

oh

ivory spruce
wraith frost
#

won't take my answer

gleaming flume
frigid trellis
#

Hi Guys...don't we get a reminder when the streak freeze is about to end?

polar fossil
#

Hello everyone, friends, before writing to support, please tell me, am I the only one having problems with VPN lately?
I connect to the VPN without any problems, I don't see any errors.
BUT! The machines themselves are unavailable in the tasks of the room.
I can't ping them.

ivory spruce
polar fossil
#

xfreerdp
nmap

merry glacier
#

Is there an admin I could contact for issues with my account ?

sharp bisonBOT
weary spindle
#

Account can only be discussed over email

merry glacier
#

okok thanks

frozen lily
#

my openvpn in kali linux is not working

#

but when i run it in kali

pastel tinsel
#

can you send a screenshot of the problem

frozen lily
#

just a sec

#

let me share

#

here

#

@pastel tinsel

pastel tinsel
frozen lily
#

this

pastel tinsel
#

on your main machine or how is your network setup?

frozen lily
#

no, nothing running
kali is on nat network and i use to use this all the time

#

but i did upgrade the openvpn

#

maybe that had affected it

pastel tinsel
#

what thm vpn server are you using for your config?

stray cove
unkempt skiff
#

need a help my vpn is not connected any solution ??

polar fossil
# polar fossil Hello everyone, friends, before writing to support, please tell me, am I the onl...

I had to do one experiment.
Through a personal VPN (which is in another region), I set up a communication channel for myself.
And after that I connected to the HTM (via openvpn).
Access to the machines appeared.
Consequently, the local provider has some kind of ban on vpn addresses of THM.
Correct me if something is wrong, I think about it.
Previously, everything worked without problems, even through the "bridge", even through NAT.
Without any additional VPNs on virtual machines..🤔

weary spindle
polar fossil
#

I live in Russia
I agree, I don't like the idea of a dual vpn myself, that's why I asked this question.

#

I do not observe this at other sites for hacking machines.
the only thing was that there was a similar problem with connecting to a vpn to OSCP machines, I also did a vpn for myself, but then something was fixed and it worked as usual.
And then I came across it again.
It would be nice to also find out from the guys who live in my region, how things are going with the connection.

pastel tinsel
weary spindle
#

Aren't Russie banning vpn soon?

pastel tinsel
stiff lily
#

Hey @shrewd trench

weary spindle
stiff lily
weary spindle
stiff lily
pastel tinsel
stiff lily
pastel tinsel
stray cove
#

Ah ok

analog shuttle
#

Hello guys,
I've logged in after being inactive for a while and I found that my completion of the burp suite room was reset, hence I have to redo it to download my certificate.
is that by design? have they changed the room? or is it a bug?

weary spindle
#

It's updated.

analog shuttle
#

ahh I see, thank youu

remote umbra
#

Hello! Trying to generate a OpenVPN config file for the "Wreath" network, however does not want to generate.

acoustic ruin
#

Hello Team! I had reviewed badges under my profile and noticed that the "Intruder Alert" badge did not apply. According to the room, it was completed. Do I need to do anything extra?

weary spindle
acoustic ruin
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary pewter
#

hello team, ihello everyone, I'm having a problem in the Buffer Overflow Prep room, when I run xfreerdp /u:admin /p:password /cert:ignore /v:IP-MACHINE /workarea on the kali virtual machine I get an error "[ 13:37:09:512] [32976:32985] [ERROR][com.freerdp.core] - freerdp_tcp_connect:freerdp_set_last_error_ex ERRCONNECT_CONNECT_FAILED [0x00020006]
[13:37:09:512] [32976:32985] [ERROR][com.freerdp.core] - failed to connect to IP-MACHINE", can you tell me the reason? Thanks

weary spindle
#

Are you using an ip?

Or "IP-MACHINE"

weary pewter
weary spindle
weary pewter
#

I can't insert an image here, it would be easier to visualize

weary pewter
weary spindle
#

!docs verify

sharp bisonBOT
weary pewter
#

please help me

weary spindle
weary pewter
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

digital dove
#

Hello everyone, i'm currently facing a problem.
I want to start on "active directory module", and when I click on join room in the "Breaching Active Directory room", I got redirected to My Rooms. Can anyone help me, please ?

gleaming flume
digital dove
#

Thank you very much. I don't have the Informations displayed on my Tryhackme.

gleaming flume
digital dove
#

Ohh, thank you for your help 🙏 @gleaming flume

scenic torrentBOT
#

Gave +1 Rep to @gleaming flume

grim rover
#

Hello, I signed up today and bought premium but it charged me 5 times. Will support be able to reverse this?

sharp bisonBOT
grim rover
#

alright, thanks!

fringe bay
#

Hey, I'm new to the site, went to take a look at workspaces and ended up creating one with the random name that I put there, is there a way to delete a workspace? Or join another?

worldly plaza
#

Hey All,

i'm studying Cyber Security at TAFE QLD (Australia) and a group of my fellow students want to do TryHackME but VPNs are blocked on the TAFE network (ssh is also blocked, so no tunneling). Apart from the AttackBox is there an alternate way to connect to the TryHackMe VPN?

weary spindle
obsidian kraken
#

Why is my 7 day streak saying my streak is going to reset tomorrow? Isn't it supposed to hold it for 7 days?

#

@weary spindle

bronze vale
obsidian kraken
scenic torrentBOT
#

Gave +1 Rep to @bronze vale

remote umbra
gleaming flume
# remote umbra

Log out and log back in, clear browser cache, try a different browser. Have you tried all of these?

#

Also make sure you are still in the room, perhaps it bugged out because you either left the room or the 10 day timer ran out

weary spindle
#

Some people have been having issues with this, and they resolve within a day later

remote umbra
#

Thanks but I am on day 2. LOL

untold harness
#

I signed up with my gmail account, but I am a full time student at WGU. If I wanted the student discount, what would I need to do?

shrewd trench
untold harness
#

Oh ok

weary spindle
#

In the rare case your edu email isn't recognised, you'll need to contact support

untold harness
#

Ok

cobalt horizon
#

The badges that were recently added from the new soc lvl2 path don't show as having been completed for previously completed rooms. That is unless you redo the rooms.

weary spindle
#

Badges aren't awarded retrospectively.

cobalt horizon
#

So its not a bug I have to redo rooms?

weary spindle
#

You can copy the answers and paste them in.

#

OR message support and ask for them to be awarded.

topaz elm
#

Is there a tutorial on TryHackMe itself how to run openvpn file becuase mine is not working the way it used to months ago?

naive dust
topaz elm
pastel tinsel
#

Does it say anything other than that if you wait a little?

topaz elm
# pastel tinsel Does it say anything other than that if you wait a little?

Silly me. These the last lines of the command.

2023-10-05 20:03:49 Initialization Sequence Completed
2023-10-05 20:03:49 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 11
2023-10-05 20:03:49 Timers: ping 5, ping-restart 120
2023-10-05 20:03:49 Protocol options: explicit-exit-notify 3```

I didn't see Initialization Sequence Completed.
pastel tinsel
ashen maple
#

Hi everyone, I had a quick question. I am trying to connet to my first ever HTB machine (Wreath). For the OpenVPN....I am a subscriber, and want to use my own VPN. I downloaded the machine openvpn file and ran it, and it seems to be connected....do I also need to download and connect the wreath openvpn file under the network tab on the access page....or am I ready now that i ran the first openvpn file from the machines tab?

shrewd trench
lavish jay
#

Can anyone recommend a way to do Autopsy and Autopsy 2 without the in browser attack box? What's a good program to connect to using RDP with windows? (Autopsy works much better with windows as the app Autopsy in webrowser and text only, So using a VM kali linux with opnvpn is out the question.)

weary spindle
pastel tinsel
ashen maple
#

Not sure if this is the right place to ask but....I am trying to do Wreath on the Attackbox, and when I run the CVE after successfully git cloning, and installing the requirements.txt, I get an error that says "from prompt_toolkit import prompt
ModuleNotFoundError: No module named 'prompt_toolkit' "

Does anyone know what the issue is? I tried attacking from my own Kali VM before....and had a similar issue with a different module, and it made me worried the mistake was with my VM...but now that the attack box is also failing, I am not sure.

ashen maple
#

I was able to fix my issue by installing prompt_toolkit

spiral mica
#

i'm doing https://tryhackme.com/room/wgelctf right now and the target seems to be unresponsive and slow. gobuster tells me context deadline exceeded for every endpoint after the first 1000 and becomes extremely slow. manual enumeration of the website also confirms the web pages take ages to load if they load at all.

patent compass
spiral mica
patent compass
#

Sometime the attckbox workes better than openvpn

spiral mica
#

i'm not subscribed, so i only have an hour, plus i'd rather use my own machine :/

patent compass
#

Could do it

spiral mica
#

will try that, thanks

nocturne heath
#

hello not sure if im in the right place but when i connect to openvpn i still can not reach the room site its owasp top

#

ok it looks like theres bug on task 7. i moved to task 8 and i can reach the site. id like to report as a bug

weary spindle
#

There isn't, I completed that room recently

shrewd trench
#

I completed it about a month ago or less

remote umbra
exotic hearth
#

When will my level 1337 be reset to pre challenge level

#

How do I access my 7day streak

untold harness
#

I need to delete my account.

#

Please, email customer support at support@tryhackme.com
with the subject line of:
“Unable to delete my account, because of OAuth”.
In the email, please explain why you are deleting the account in a few sentences and we will help you delete your account.
Thank you.

sigh

#

Typically, we respond within 48 hours. If that doesn't happen, we apologise for the wait and assure you that we're working hard to get to your message.

Please be patient and avoid submitting multiple tickets, as this can slow down our process. Your request is important, and we're committed to assisting you.

Thanks for your understanding, and we'll get back to you ASAP. Keep up the hacking, and remember, we're here to help!

#

So I can't sign up for a subscription for another few days. Brilliant.

#

Is there anyone around that can help me?

opal iris
#

hi, why search room is not working ?

#

this is done for every room, even when you type the exact name of the room

untold harness
#

It's Friday morning, and they're like, we'll be back on Monday.

limpid sparrow
#

Has anyone had trouble logging into their account?

shrewd trench
untold harness
#

Usually businesses close on Friday evening.

shrewd trench
#

not US

untold harness
#

Ok

#

I signed up to TryHackMe with edu account. Then I thought over the years I might lose the edu account, so I signed up with my main account on gmail. Now I need that duplicate .edu account deleted.

shrewd trench
#

ok, so be patient and wait 🙂 If you’ve already emailed support, that’s all that can be done

limber elm
#

anyone happen to know the average time a ctf takes to get reviewed?

#

i wanna post more about it but dont wanna just throw the answers out there before its even public lol

eager sundial
#

Hy ,

I dont receive email for reset my password beacuse i left my last password.

Thank

limber elm
#

thats where mine usually go lol

weary spindle
weary spindle
limber elm
untold harness
ivory spruce
eager sundial
weary spindle
#

Are yoynalso deleting the THM account that is linked to your discord?

eager sundial
#

Hy ,

I dont receive email for reset my password beacuse i left my last password.

Thank

#

I show in spam i dont receive email

pastel tinsel
#

!email

sharp bisonBOT
chilly oxide
#

help

pastel tinsel
chilly oxide
#

with proplem

#

in openvpn

#

when i try to connect to the openvpn using the file configer from the tryhackme site

#

i get this message

#

023-10-07 07:50:38 Note: --data-cipher-fallback with cipher 'BF-CBC' disables data channel offload.
2023-10-07 07:50:38 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-07 07:50:38 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-10-07 07:50:38 DCO version: N/A
2023-10-07 07:50:38 OpenSSL: error:0480006C:PEM routines::no start line
2023-10-07 07:50:38 OpenSSL: error:0A080009:SSL routines::PEM lib
2023-10-07 07:50:38 Cannot load inline certificate file
2023-10-07 07:50:38 Exiting due to fatal error

pastel tinsel
#

then regen your vpn config and download a new one

chilly oxide
#

okay give me a sec

#

second

scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel

pastel tinsel
#

😎

#

happy hacking

chilly oxide
#

you are smart

#

there is another proplem😀

#

that's when i start the ssh tryhackme@(and the machine ip) It then stops and does not execute the command and enter me to the machine

weary spindle
weary spindle
#

Which room are you doing?

chilly oxide
#

nmap

weary spindle
#

You don't ssh in to that machine?

Just use nmap

chilly oxide
#

oh

#

right

#

but also i need to fix this proplem

#

for another rooms

weary spindle
#

Perhaps the problem is only a problem for that room, as you don't use ssh

chilly oxide
#

i use it always man

weary spindle
#

Not all rooms have SSH login so... 🤷

chilly oxide
#

thanks a lot

brazen canyon
#

Still waiting on an email back from SE ticket event about winning an amazon voucher. Are they still working/confirming them or should I send a follow-up email

shrewd trench
weary spindle
#

^ correct.

brazen canyon
#

Thanks @shrewd trench @weary spindle

scenic torrentBOT
#

Gave +1 Rep to @shrewd trench

shrewd trench
#

No problem!

#

love to help out 🙂

lusty swift
#

I need help with private room

#

I clicked false for this

#

.
Locked
True | False
Locking a room is where room-users can join your room, but can't see any content (no tasks, chart, scoreboard etc..). Useful for running assessments or having users join a room before an event.

weary spindle
#

Are you creating the room?

lusty swift
#

yupp

#

private room

weary spindle
#

Somebody will come along to help you soon, I have little to no knowledge on creatign rooms on TryHackMe (possibly for the moment)

lusty swift
#

Alright
Thanks a lot

#

Please can you ask them to dm me
Cause I dont want to share the link here

weary spindle
#

Somebody will ping you.

wheat cedar
#

Not sure if this is for Site-support or Room-help. I am trying to do: 'Burp Suite: The Basics' - and have spun up the attack box. I have burp running, I have firefox foxyproxy going. I turned intercept off so that the page should load, but I get a 405 error. When reviewing the forums I see a single post mention this from 6 days ago saying they also are encountering this. I have looked up a youtube video on how to do the room, and in the video the get to a page called 'bastion hosting' and can play around on that page. Thoughts? Specifically I feel like the room may be bugged, hence my asking in site-support and not room-help.

wheat cedar
weary spindle
#

That's the wrong IP, you're using the attackbox IP.

#

You need to start the machine in Task 1 or 2

wheat cedar
#

I don't see a 'start machine' option in tasks 1 or 2?

weary spindle
wheat cedar
#

Ah, okay, I think I understand now, thank you!

weary spindle
#

That looks horrible... haha

#

But that's a general what's what.

wheat cedar
#

I really appreciate your reply, and so fast! I'll get there eventually 🙂

weary spindle
#

It's a small thing over looked by a lot of members, don't sweat it. 🙂

untold harness
# weary spindle I'm telling you for future reference.

You always tell me things I don't need to know. Like the other day. I am now asking about having my duplicate account deleted, and you're telling me about how I can login with my username. The two are completely unrelated.

weary spindle
untold harness
#

I did not.

weary spindle
untold harness
#

Your understanding of it is wrong, yes.

weary spindle
#

If you say so.

untold harness
#

Where did I say I was locked out of any accounts?

weary spindle
#

Nowhere, but you said you might

crystal marlin
untold harness
#

Sometime in the future, in years to come, I will not be a student forever, and I may over the years lose my .edu email.

#

I'm not unfriendly. I'm being precise. Why do you guys always jump to friendliness and all this. No one is being unfriendly. Stop publicly accusing people of that.

#

The other day I told his gentleman, that he didn't understand me, and he instantly said, I'm being patronizing. Other people can't tell you that you didn't understand them? How is that rude?

#

A man can't tell another man that he didn't understand him?

crystal marlin
#

You seem pretty upset for no reason, just be calm and we are good 😄

untold harness
#

You're aggravating me. Yesterday I said, you didn't understand my question, and he said I was being patronizing. Today I said you didn't understand me, your understanding of what I said was incorrect, and you're telling me I'm being unfriendly.

#

Please stop.

crystal marlin
untold harness
#

If someone doesn't understand me and I think they didn't understand me, it's quite normal to tell someone they didn't understand something. Nothing unfriendly or rude about it.

#

I didn't do anything to anyone. Stop making it seem as I'm some kind of a problem. You are purposefully poking me and then watching me react. This is horrible to do to anyone.

crystal marlin
untold harness
crystal marlin
#

👀

untold harness
#

Why are you making eyes and faces at me. Just leave me alone.

neon flare
neon flare
neon flare
weary spindle
neon flare
#

Yes

weary spindle
#

interesting, it works on my end ok

plush bay
#

same works on shadows end

plush bay
# neon flare

did you left click it or did you right click to open in new tab????

neon flare
#

Left click

#

Doesn't work either way

#

I tried both now

#

I tried flushing DNS cache

#

Still doesn't work

#

I reassigned my IP address and it still doesn't work

weary spindle
#

That looks like it's browser contolled.

#

Can you try a different browser?

neon flare
#

I am refreshing my cache right now

#

To see whether it works

#

I refreshed my cache that doesn't work

#

Tried a different browser and that doensn't work either

weary spindle
#

@wheat cedar This is a slight;y better pic of the three differents you may need to do, depending on the task.

neon flare
#

I tried TryHackMe on my phone and it works

#

Well the download does

weary spindle
#

Are you doing this on a VM?

neon flare
#

I was downloading it on my PC

#

But I might need to start a VM up

#

That's true

weary spindle
#

Well, do you have wireshark on your host?

neon flare
#

Nope 🤣

weary spindle
#

Looool

#

Then yeah, vm/

(You can install wireshark on windows) all you're doing it loading a pcap file.

#

(for task 1)

neon flare
#

Should I use Attackbox or my own VM for this?

weary spindle
#

Either or.

neon flare
#

Alright

neon flare
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
#

Tasl 2 will probably need an attackbox/VM

neon flare
#

Alright

glacial bone
#

heyaa, wanted to know if this was normal? level hasn't updated since I got the sec engineer tag

atomic pewter
glacial bone
#

thanks for the quick response!

#

would be nice to have a toggle option

distant gorge
#

where can I get help with connecting to thm rooms

gleaming flume
distant gorge
#

attacktive directory

#

it isnt just that one room. in any room if i try to ssh to that room's machine i get similar error

#

and my vpn is running

#

it says permission denied

#

or connection refused

gleaming flume
#

Not all rooms are supposed to be SSH'd into, including attacktive directory iirc

#

It probably says that because SSH is not running, or because your VPN isn't setup properly

gleaming flume
distant gorge
#

tryhackme is the password right?

gleaming flume
#

For attacktive directory? All rooms have different credentials and I don't think attacktive directory uses SSH at all

distant gorge
#

is it not possible to do the rooms on seperate machines?

gleaming flume
#

You can do the rooms on your own machine, but you may not need to SSH into them. SSH is not the only way to communicate with a remote machine

distant gorge
#

how do I do rooms on my own machine?

gleaming flume
#

You setup the VPN as it seems you have already done and then enumerate and exploit the machine. Perhaps if you are unfamiliar with what to do for a challenge room like attacktive directory then it is not the best place to start. Going through one of the learning paths like Complete Beginner or Introduction to Cyber Security may be better for you. https://tryhackme.com/hacktivities

#

Many rooms will hold your hand and tell you step by step what to do, others will be more CTF style and just give you a machine to hack with little guidance, you should start with the former if you are new

weary spindle
sharp bisonBOT
distant gorge
#

thanks

elder grove
#

hello

#

there is someone here who could help me with something ?

gleaming flume
#

What do you need help with?

elder grove
#

is the first time im trying to use my own console and not the attack box and i want to run the nmap but this happend: Host seems down. If it is really up, but blocking our ping probes, try -Pn

#

i already try -Pn still the same

#

and im connect it withn openvpn too

gleaming flume
elder grove
#

yep

#

it is green on the page

gleaming flume
#

And you are sure you are scanning the right IP?

elder grove
#

yes, i copied from the machine

gleaming flume
#

hmm, what room is this?

elder grove
#

Network Services , task 9 Enumerating FTP

#

it does scan it from the attack box

gleaming flume
#

Could you send a screenshot of your openvpn and your nmap command? You'd need to verify first to do that.

#

!docs verify

sharp bisonBOT
elder grove
#

oh wait , i think its working now lmao

#

i dont know why

#

it wasnt working before

gleaming flume
#

lol, well I am glad it is working for ya

elder grove
#

thanks anyways

#

for trying to help me

gleaming flume
#

np

crimson ravine
#

hmm

opal iris
vapid laurel
#

yea happened to me a few times

crystal marlin
flat turret
#

hi

#

Which of the following options better represents the process by which you simulate the actions a hacker takes to find vulnerabilities in the system?

#

Task 1 What is Offensive Security?

#

I am new in this field can you help me?

small lotus
small lotus
fiery briar
#

Hi, I want to start doing some writeups. What are the rules surrounding writeups, like what you can include, how old the room should be before you release the writeup, etc...
Thanks

austere eagle
#

I'm facing an issue with THM labs on my Mac. While ifconfig indicates that openvpn is connected, I'm unable to interact with any THM machines. Interestingly, everything works perfectly on my Kali-Pi. I do have WireGuard installed on the Mac but ensured it's turned off to avoid interference. Has anyone encountered this or has suggestions to resolve it?

tawdry orbit
weary spindle
austere eagle
# weary spindle How are you connecting to the vpn?

I've been using OpenVPN Connect, which I downloaded from the THM website. I connect using the provided .ovpn config file. It used to work flawlessly, but for some reason, it stopped functioning a few days ago. I wonder if the issue might be with my computer itself. I recently set up some Raspberry Pi units as VPN servers. Could I have misconfigured something inadvertently? It's strange, as OpenVPN always worked seamlessly before this.

weary spindle
austere eagle
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

plush bay
#

yeah we will be here to help if there are more problems

#

scrubz is generally here and helpful

austere eagle
weary spindle
#

If I'm not here, the good thing about this server is someone will be.

barren brook
#

2023-10-08 11:49:30 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-10-08 11:49:30 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-10-08 11:49:30 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-08 11:49:30 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-10-08 11:49:30 DCO version: N/A
2023-10-08 11:49:30 OpenSSL: error:0480006C:PEM routines::no start line
2023-10-08 11:49:30 OpenSSL: error:0A080009:SSL routines::PEM lib
2023-10-08 11:49:30 Cannot load inline certificate file
2023-10-08 11:49:30 Exiting due to fatal error

#

how i solve this?

winged surge
#

Hello! I'v been using OPENVPN, but today I can connect with OPENVPN but nothing works even when I want to scan the ctf machine with nmap and I can't ping 10.10.10.10 ?? could anyone please give me some solution ??? Thank you

#

and I changed several times the servers

weary spindle
#

Which os?

winged surge
#

Parrot OS

#

virtual machine is Parrot OS

white hazel
elder grove
#

hi , there is someone who could help me with something?

#

Im doing Network Services rn , im at task10 exploiting ftp and i need to use Hydra for the first time, and i have to use this command "hydra -t 4 -l dale -P /usr/share/wordlists/rockyou.txt -vV 10.10.10.6 ftp", i already install hydra on my kali linux, the problem is that i dont have the rockyou.txt, i just download it from internet but when i tried to put it on the wordlists file it says that i do not have the permissions, maybe im dowloading the rockyou file wrong or something

strong olive
#

@elder grove hey, with your question generally rockyou.txt is already installed in kali, are you connected via the vpn on your own machine or a Kali THM Machine,

#

did you place the rockyou.txt to the specified wordlists folder?

strong olive
fervent yoke
#

Hi all,

Is there a person here which could help me with account issues?

weary spindle
fervent yoke
#

I changed my username, and I just logged-in with the new one and my account has been resetted, streak, level, etc.

#

Is there any way to fix this?

weary spindle
#

Ask support to reset your streak.

#

!email

sharp bisonBOT
fervent yoke
#

Yea I found that, but what about the levels? There is not related ticket for that.

weary spindle
#

Level should be the same, did you create a brand new account?

Or did support change your name?

fervent yoke
#

No, I changed the name through ticket submission. So support changed it.

weary spindle
#

Everything should have been the same, the only thing that would/should have changed is the username.

fervent yoke
#

Yea, that was what I was expecting, but it seems that the acc was reset all together. Well, it is not problem in reality so I can live with that, but just wondering if it could be fixed or not as the ticket I found was only about the streak.

#

And I can only submit tickets, not speak to a live agent etc.

weary spindle
#

Support might be able to.

Can you veridu your account?

#

!docs verify

sharp bisonBOT
fervent yoke
#

!docs verify

sharp bisonBOT
fervent yoke
#

Yea gimme a sec

#

done

weary spindle
#

Looks like your level on the account isn't reset?

fervent yoke
#

Anyway, thanks a lot for your help, the accounts seems as it was now! Have a great day!

weary spindle
#

You too!

Happy Hacking blobfingerguns

winged surge
#

Hello! I'v been using OPENVPN, but today I can connect with OPENVPN but nothing works even when I want to scan the ctf machine with nmap and I can't ping 10.10.10.10 ?? could anyone please give me some solution ??? Thank you

winged surge
#

Parrot OS

#

my virtual machine is Parrot OS

weary spindle
#

Can you do, ip a s?

winged surge
#

yes, but I see the tunnel on Terminal but the ping and nmap scan do no work

weary spindle
#

Which room are you doing?

winged surge
#

the problem is openvpn

#

not the room

weary spindle
#

Do you just have one tunnel?

winged surge
#

yeah I do have only one tunnel

weary spindle
winged surge
#

yeah. Whenever I connect to openvpn it shows me IP add in 10.xx.xx.xx and the ctf machine is in 10.xx.xx.xx but the nmap scan does not work and ping does not work also

weary spindle
#

No, I'm not asking about your tun0

#

I'm asking about your own eth0 address.

winged surge
#

enp0s3

#

not etho

weary spindle
#

Same difference.

winged surge
#

what's the solution now ???

weary spindle
#

Is the enp0s3 in a 10.10 range?

winged surge
#

yes

#

is that the problem ??

weary spindle
#

More than likely.

winged surge
#

I changed it now

#

let me check once if it works

#

tun0: flags=4305<UP,POINTOPOINT,RUNNING,NOARP,MULTICAST> mtu 1500
inet 10.8.146.51 netmask 255.255.0.0 destination 10.8.146.51
inet6 fe80::23f2:c969:1b5a:aae4 prefixlen 64 scopeid 0x20<link>
unspec 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 txqueuelen 500 (UNSPEC)
RX packets 0 bytes 0 (0.0 B)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 2 bytes 96 (96.0 B)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

┌─[parrot@parrot]─[~/Music]
└──╼ $nmap -sV 10.10.34.62 -T5
Starting Nmap 7.93 ( https://nmap.org ) at 2023-10-09 16:09 BST
Note: Host seems down. If it is really up, but blocking our ping probes, try -Pn
Nmap done: 1 IP address (0 hosts up) scanned in 1.73 seconds

#

the same problem

#

it does not work

#

the enps is now 192.x.x.x

weary spindle
winged surge
#

└──╼ $nmap -sV 10.10.34.62 -T5 -Pn
Starting Nmap 7.93 ( https://nmap.org ) at 2023-10-09 16:12 BST
Nmap scan report for 10.10.34.62
Host is up.
All 1000 scanned ports on 10.10.34.62 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)

Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 52.69 seconds

#

this ctf port 80 is open

#

but here it says this

weary spindle
#

Which country are you in?

#

Also can you give me the output of your VPN.

winged surge
#

2023-10-09 16:21:13 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2023-10-09 16:21:13 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-10-09 16:21:13 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021

#

023-10-09 16:21:13 library versions: OpenSSL 1.1.1w 11 Sep 2023, LZO 2.10
2023-10-09 16:21:13 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-10-09 16:21:13 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-10-09 16:21:13 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2023-10-09 16:21:13 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-10-09 16:21:13 UDP link local: (not bound)
2023-10-09 16:21:13 UDP link remote: [AF_INET]18.202.129.195:1194
2023-10-09 16:21:14 TLS: Initial packet from [AF_INET]18.202.129.195:1194, sid=0577508a 502ac911
2023-10-09 16:21:14 VERIFY OK: depth=1, CN=ChangeMe
2023-10-09 16:21:14 VERIFY KU OK
2023-10-09 16:21:14 Validating certificate extended key usage
2023-10-09 16:21:14 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2023-10-09 16:21:14 VERIFY EKU OK

#

2023-10-09 16:21:14 VERIFY OK: depth=0, CN=server
2023-10-09 16:21:14 WARNING: 'link-mtu' is used inconsistently, local='link-mtu 1586', remote='link-mtu 1602'
2023-10-09 16:21:14 WARNING: 'keysize' is used inconsistently, local='keysize 128', remote='keysize 256'
2023-10-09 16:21:14 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, 2048 bit RSA
2023-10-09 16:21:14 [server] Peer Connection Initiated with [AF_INET]18.202.129.195:1194

#

I'm in France

weary spindle
#

Is that the full script?

#

You don't have anything like that?

winged surge
#

2023-10-09 16:29:10 Using peer cipher 'AES-256-CBC'
2023-10-09 16:29:10 Data Channel: using negotiated cipher 'AES-256-CBC'
2023-10-09 16:29:10 Outgoing Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2023-10-09 16:29:10 Outgoing Data Channel: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-10-09 16:29:10 Incoming Data Channel: Cipher 'AES-256-CBC' initialized with 256 bit key
2023-10-09 16:29:10 Incoming Data Channel: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-10-09 16:29:10 net_route_v4_best_gw query: dst 0.0.0.0
2023-10-09 16:29:10 net_route_v4_best_gw result: via 192.168.0.1 dev enp0s3
2023-10-09 16:29:10 ROUTE_GATEWAY 192.168.0.1/255.255.255.0 IFACE=enp0s3 HWADDR=08:00:27:89:8a:6f
2023-10-09 16:29:10 TUN/TAP device tun1 opened
2023-10-09 16:29:10 net_iface_mtu_set: mtu 1500 for tun1
2023-10-09 16:29:10 net_iface_up: set tun1 up
2023-10-09 16:29:10 net_addr_v4_add: 10.8.146.51/16 dev tun1
2023-10-09 16:29:10 net_route_v4_add: 10.10.0.0/16 via 10.8.0.1 dev [NULL] table 0 metric 1000
2023-10-09 16:29:10 WARNING: this configuration may cache passwords in memory -- use the auth-nocache option to prevent this
2023-10-09 16:29:10 Initialization Sequence Completed

weary spindle
#

You have two tunnels.

winged surge
#

how could I disable the second one ???

weary spindle
#

sudo killall openvpn -9

winged surge
#

I killed them, but now do I connect to openvpn again??

weary spindle
#

Yes.

winged surge
#

but on the website it's connected

#

the green sign with the IPaddress

weary spindle
#

Yeah, that's bugged.

#

You just kill all the connections on your vm

#

Connect once. 🙂

winged surge
#

tun0: flags=4305<UP,POINTOPOINT,RUNNING,NOARP,MULTICAST> mtu 1500
inet 10.8.146.51 netmask 255.255.0.0 destination 10.8.146.51
inet6 fe80::c0e5:a765:1a8b:4ac6 prefixlen 64 scopeid 0x20<link>
unspec 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 txqueuelen 500 (UNSPEC)
RX packets 0 bytes 0 (0.0 B)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 1 bytes 48 (48.0 B)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

┌─[parrot@parrot]─[~]
└──╼ $nmap -sV 10.10.73.233 -T5
Starting Nmap 7.93 ( https://nmap.org ) at 2023-10-09 16:50 BST
Note: Host seems down. If it is really up, but blocking our ping probes, try -Pn
Nmap done: 1 IP address (0 hosts up) scanned in 1.74 seconds
┌─[parrot@parrot]─[~]
└──╼ $nmap -sV 10.10.73.233 -T5 -Pn
Starting Nmap 7.93 ( https://nmap.org ) at 2023-10-09 16:51 BST
Nmap scan report for 10.10.73.233
Host is up.
All 1000 scanned ports on 10.10.73.233 are in ignored states.
Not shown: 1000 filtered tcp ports (no-response)

Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 52.62 seconds

#

the same problem

weary spindle
#

is inet your tun0 ?

winged surge
#

tun0: flags=4305<UP,POINTOPOINT,RUNNING,NOARP,MULTICAST> mtu 1500
inet 10.8.146.51 netmask 255.255.0.0 destination 10.8.146.51
inet6 fe80::915a:3658:5522:300b prefixlen 64 scopeid 0x20<link>
unspec 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 txqueuelen 500 (UNSPEC)
RX packets 0 bytes 0 (0.0 B)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 4 bytes 192 (192.0 B)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0

#

yes inet

weary spindle
#

And just tun0?

winged surge
#

yeah

naive dust
#

2023-10-09 14:27:34 ERROR: Failed to apply push options 2023-10-09 14:27:34 Failed to open tun/tap interface 2023-10-09 14:27:34 SIGUSR*1*[soft,process-push-msg-failed] received, process restarting 2023-10-09 14:27:34 Restart pause, 1 second(s) ^C2023-10-09 14:27:35 SIGINT[hard,init_instance] received, process exiting

#

Keep getting that when i try to connect to the ovpn thm file

#

I'm on linux running on sudo, no vm

#

i tried to see the solutions on this channel but doesn't seem to help me

#
OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
#

Here's my ovpn version ( up to date )

#

And yes, i've seen the pinned message

#

also updated the cipher

#

Nevermind, i'm autistic

keen siren
#

hm

#

I think thats where I need to ask questions

#

when I try to ssh a tryhackme room I get Permission Denied (publickey) problem

radiant pike
#

Hi I tried changing from cipher AES-256-CBC to data-ciphers AES-256-CBC but still openvpn won't connect

#

here's the error log

#

Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiaton failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.

#

Note: cipher 'AES-256-CBC' in --data-ciphers is not suported by ovpn-dco, disabling data channel offload

#

If anyone knows how to solve this I would really appreciate it

#

Ok no EU Reg 3 is just done for

#

For anyone reading just switch to EU Reg 1 and you're fine

naive dust
#

Does someone know why I can't login, in the Simple CTF machine? I tried using these two commands:

ssh -oHostKeyAlgorithms=+ssh-rsa THM@10.10.61.254
ssh THM@10.10.61.254

but they dont work. I'm using openvpn server EU-Regular-3

weary spindle
#

Use number 1

hollow oxide
#

hello guys i have a question im not able to log in a specific class made by my teacher but other people have access trough the link any idea?

cunning apex
#

Hello can someone help me with payment options

elfin condor
#

Hey THM team, can I get help with merging a THM account associated with an email address that no longer exists? I cant access the account and all my progress was on that one.

deft hedge
#

tbh my question might need to go in here but i would like a dm

austere eagle
# weary spindle Yeah, that's fine.

I hadn't had the chance to address the issue until now, but following your advice to install OpenVPN through Homebrew did the trick. Thank you for the guidance; my VPN connects seamlessly now.

scenic torrentBOT
#

Gave +1 Rep to @weary spindle

daring coral
#

Good evening, I'm taking the introductory cybersecurity course but I can't hack the bank, does anyone know if there's an error?

narrow glen
#

Hi Support team, I want to host my own lab in the THM. I have emailed education@tryhackme.com. however, i have not received any response. Can you please help me.

weary spindle
ivory spruce
ivory spruce
ivory spruce
naive dust
narrow glen
worthy minnow
#

I have changed my discord account due to being terminated and now when I tried to verify with my new discord account it said :** Sorry this token is already used by someone.**
No longer have access to previous account though I do have my discord token.

weary spindle
worthy minnow
weary spindle
#

I wouldn't, they may be busy.

#

Just when you see one in passing.

worthy minnow
#

Alright ty

worthy minnow
worthy minnow
weary spindle
bronze vale
worthy minnow
worthy minnow
weary spindle
bronze vale
worthy minnow
bronze vale
#

Yeah so you can’t use the service until the appeal has been approved, you just being here puts that in jeopardy

worthy minnow
#

oops, alright

marble breachBOT
#

:hammer: intelplayz1337#0 has been banned.

bronze vale
#

Now they know

leaden goblet
#

Hi, im having issues connecting to tryhackme's network via openvpn.

I have it installed on windows 11, and when I try to connect using my .ovpn file I get this error

#

Tue Oct 10 11:08:34 2023 OpenSSL: error:0480006C:PEM routines::no start line
Tue Oct 10 11:08:34 2023 OpenSSL: error:0A080009:SSL routines::PEM lib Tue Oct 10 11:08:34 2023
Cannot load inline certificate file

bronze vale
leaden goblet
bronze vale
#

Use Eu-1

stone panther
#

I am Connected

#

Im guessing my Account is linked to the older vpn I used to use?

#

but maybe not, how do I fix this

leaden goblet
# bronze vale Use Eu-1

now im getting this:

Tue Oct 10 11:50:09 2023 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
Tue Oct 10 11:50:09 2023 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
Tue Oct 10 11:50:09 2023 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
Tue Oct 10 11:50:09 2023 OpenVPN 2.6.6 [git:v2.6.6/c9540130121bfc21] Windows-MSVC [SSL (OpenSSL)] [LZO] [LZ4] [PKCS11] [AEAD] [DCO] built on Aug 15 2023
Tue Oct 10 11:50:09 2023 Windows version 10.0 (Windows 10 or greater), amd64 executable
Tue Oct 10 11:50:09 2023 library versions: OpenSSL 3.1.2 1 Aug 2023, LZO 2.10
Tue Oct 10 11:50:09 2023 DCO version: v0
Tue Oct 10 11:50:09 2023 MANAGEMENT: TCP Socket listening on [AF_INET]127.0.0.1:25340
Tue Oct 10 11:50:09 2023 Need hold release from management interface, waiting...
Tue Oct 10 11:50:10 2023 MANAGEMENT: Client connected from [AF_INET]127.0.0.1:59514
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'state on'
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'log on all'
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'echo on all'
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'bytecount 5'
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'state'
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'hold off'
Tue Oct 10 11:50:10 2023 MANAGEMENT: CMD 'hold release'
Tue Oct 10 11:50:10 2023 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
Tue Oct 10 11:50:10 2023 Socket Buffers: R=[65536->65536] S=[64512->64512]
Tue Oct 10 11:50:10 2023 UDPv4 link local: (not bound)
Tue Oct 10 11:50:10 2023 UDPv4 link remote: [AF_INET]18.202.129.195:1194
Tue Oct 10 11:50:10 2023 MANAGEMENT: >STATE:1696935010,WAIT,,,,,,

bronze vale
leaden goblet
#

I downloaded it from the link you sent

#

and its also a gui

hollow oxide
ivory spruce
hollow oxide
#

Im new to the platforme i did not see the confirmation email at first x)

shrewd trench
#

it happens haha

welcome to TryHackMe

bronze vale
#

@limber spindle please don’t post answers here

limber spindle
#

Sorry

main fable
#

Hey I'm having problems connecting with openvpn, can someone help me?

pastel tinsel
#

!docs verify

sharp bisonBOT
main fable
#

!docs verify

sharp bisonBOT
main fable
#

This is my error @pastel tinsel :

2023-10-10 19:50:21 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this ca se. If you need this fallback please add --data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers. 2023-10-10 19:50:21 Note: cipher AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload. 2023-10-10 19:50:21 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-10 19:50:21 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-10-10 19:50:21 DCO version: N/A
2023-10-10 19:50:21 OpenSSL: error: 0480006C: PEM routines :: no start line 2023-10-10 19:50:21 OpenSSL: error: 0A080009:SSL routines :: PEM lib 2023-10-10 19:50:21 Cannot load inline certificate file
2023-10-10 19:50:21 Exiting due to fatal error

pastel tinsel
#

then press regenerate and download your new config

main fable
#

Thank u verry much

zealous yoke
pastel tinsel
zealous yoke
#

oh rofl

pastel tinsel
#

it can't generate proper certs

zealous yoke
#

first I'm hearing of it cri

pastel tinsel
#

I have pinged you about it!

zealous yoke
#

you probably have and I've missed it in the countless other pings hahaha

#

I'll make a note

pastel tinsel
#

alrighty, everything works but the certificate

zealous yoke
#

I probs know the problem will look tomorrow

small lotus
#

is Steel Mountain room down? my nmap scan all ports shows nothing

zealous yoke
humble helm
#

Hi!

I am doing "Walking An Application" room (or whatever it is called - https://tryhackme.com/room/walkinganapplication#) and under "Developer Tools - Network" the flag is not being accepted.

Am I entering something wrong or is it a bug? (Also tried "X-FLAG: THM{HEADER_FLAG}", "THM{HEADER-FLAG}", "THM{HEADER_FLAG}")

weary spindle
humble helm
#

Oh damn it... Appearantly I can't read 😄 Thank you!

solar jewel
#

Hi I was directed to this support group

I tried connecting my virtual machine with Kali Linux but I'm getting this error message

ssh: connect to host 10.10.71.118 port 22: software caused connection abort

Pls how do I solve this?

weary spindle
solar jewel
#

@weary spindle Linux fundamental part 2 & 3

weary spindle
solar jewel
#

OpenVPN

deft flint
#

I have a problem related to the Nessus room when the IP is generated by the attack box and I use it in Nessus performing a scan and no vulnerability is identified, they can help me in any way please?

weary spindle
#

You don't scan the attackbox

deft flint
#

which IP should I use to perform a scan to discover information related to the activity?

weary spindle
#

You need to start the machine in Task 1.

empty heart
#

hello guys iam facing problem to coonect to any vpn server. ervery time the error says " tls key negotation failed to occur within 60 seconds." when i run the troupleshooting script this what it says " [+] Stable internet connection
[+] OpenVPN is installed
[+] tun0 exists
[+] tun0 IP is in the correct range
[+] Only one instance of OpenVPN is running
[+] Confirming connectivity
[-] MTU value failed at 1000, aborting MTU check
[-] Something went wrong -- please ask for further assistance in the TryHackMe Discord server, subreddit, or forum
" any one has solution please

deft flint
#

When I start the machine an IP is generated but this IP when scanned does not generate vulnerabilities, how should it be done? Is there any other way

gleaming flume
empty heart
gleaming flume
#

Are you also running a VPN on your host machine?

empty heart
gleaming flume
#

I meant on your base OS, not the VM, but alright. You could try sudo ip link set dev tun0 mtu 1200 and see if it helps

#

Would also be helpful if you sent the output of openvpn itself

empty heart
# gleaming flume Would also be helpful if you sent the output of openvpn itself

2023-10-11 11:21:46 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2023-10-11 11:21:48 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-10-11 11:21:48 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2023-10-11 11:21:48 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-11 11:21:48 library versions: OpenSSL 3.0.8 7 Feb 2023, LZO 2.10
2023-10-11 11:21:48 DCO version: N/A
2023-10-11 11:21:48 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2023-10-11 11:21:48 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-10-11 11:21:48 UDPv4 link local: (not bound)
2023-10-11 11:21:48 UDPv4 link remote: [AF_INET]18.202.129.195:1194
2023-10-11 11:21:48 TLS: Initial packet from [AF_INET]18.202.129.195:1194, sid=8dcc7a5f a7fb211b
2023-10-11 11:22:49 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network
connectivity)
2023-10-11 11:22:49 TLS Error: TLS handshake failed
2023-10-11 11:22:49 SIGUSR1[soft,tls-error] received, process restarting
2023-10-11 11:22:49 Restart pause, 1 second(s)
2023-10-11 11:22:50 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2023-10-11 11:22:50 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-10-11 11:22:50 UDPv4 link local: (not bound)
2023-10-11 11:22:50 UDPv4 link remote: [AF_INET]18.202.129.195:1194

tropic dome
#

have you tried downloading a new ovpn file?

gleaming flume
#

hmm, if this is for EU-3 than change servers because I think that server is bugging out when it comes to certificates

empty heart
#

i use openvpn for HTB and it work perfectly

empty heart
tropic dome
#

strange

empty heart
gleaming flume
#

hmm, I'd recommend EU-1 or IN-1 probably. Switch servers, regenerate and then download it and see if it helps. EU-3 has been buggy as I said so don't use that

weary spindle
#

Openvpn is blocked in Egypt. @empty heart @gleaming flume

gleaming flume
#

ooooohhhh

#

Thanks

weary spindle
#

HTB uses TCP for their VPN, THM uses UDP which is blocked.

gleaming flume
#

Good to know

naive dust
#

Hi. I have and error while trying to connect to Try Hack Me network using OpenVPN. Help, please

#

openvpn Null.ovpn
2023-10-11 12:25:29 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-10-11 12:25:29 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-10-11 12:25:29 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-11 12:25:29 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-10-11 12:25:29 DCO version: N/A
2023-10-11 12:25:29 OpenSSL: error:0480006C:PEM routines::no start line
2023-10-11 12:25:29 OpenSSL: error:0A080009:SSL routines::PEM lib
2023-10-11 12:25:29 Cannot load inline certificate file
2023-10-11 12:25:29 Exiting due to fatal error

naive dust
#

Yes

weary spindle
#

Then switch to 1 or 2

naive dust
#

Okay, it worked. Thank you so much

limber spindle
#

Hello, I have a problem with one of my certificates. My name is wrong. How can I change it?

weary spindle
#

Once a cert has been generated, it can't be undone

limber spindle
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
plush bay
empty heart
scenic torrentBOT
#

Gave +1 Rep to @plush bay

tepid plank
#

Can anyone tell if there is a way I can buy a subscription with a gift card or no?

ivory spruce
tepid plank
#

@ivory spruce I believe the name is One Vanilla visa gift card

#

It sucks that this is the only way I can maybe buy the subscription since I don’t have a CC

graceful fox
#

hello my terminal is being really slow i think it needs a update

ivory spruce
tepid plank
#

@ivory spruce will do thank you for the help

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce

shrewd trench
weary spindle
slate rune
#

Hey,I have been lucky enough to win a laptop in the Security engineer event,is the model announced yet?

bronze vale
#

I did email you via the support email, it looks like when you emailed, you were added the prize list.

slate rune
bronze vale
#

@slate rune I am aware, unfortunately there is nothing I can do about your missing ticket, you will need to contact support.

slate rune
#

Okay thanks,contacted support hope they can help me

graceful fox
shrewd trench
#

sudo apt-get update && apt-get upgrade

frozen stirrup
#

can anyone help with copy pasting function on the attackbox? There is usually the pop up but now it's running windows and the pop up isn't there. I'm using mozilla firefox

weary spindle
frozen stirrup
#

already put THM as an exclusion for pop up blocking

woeful willow
#

Hey, currently trying to download the VPN for the Throwback network but the file is completely empty even after multiple regenerations / logging out and in etc, is it having issues right now or something?

fervent yoke
#

Hi all,

I was wondering if there is anyone actively checking the room write-ups? Half the links on popular rooms do not exist anymore, others go against THM policies, i.e. revealing passwords, flags, etc. and when I try to submit any of mine, I never get a reply back.

Any info on that would be much appreciated!

weary spindle
ocean aspen
#

Is there an issue with the VM's in the learning paths? I can't get a VM to keep a connection to complete the paths....

ocean aspen
#

I am trying to complete the SOC I learning path. On the path I need to use VM's in the browser to complete the tasks. Those VM's do not keep connection, to the point that I can't even use them..

#

OpenVPN does not connect either...

stone path
#

--cipher is not set. OpenVPN versions before 2.5 defaulted to B negotiation failed in this case. If you need this fallback please add '--data-ciphers-fauration and/or add BF-CBC to --data-ciphers.

stone path
#

yes

stone path
weary spindle
stone path
weary spindle
stone path
weary spindle
stone path
#

UAE

stone path
lusty swift
stone path
proven needle
bronze vale
#

@weary spindle is Eu3 causing a lot of problems?

stray cove
proven needle
bronze vale
#

All of the output log please

proven needle
#
2023-10-13 10:31:27 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-10-13 10:31:27 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-13 10:31:27 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-10-13 10:31:27 DCO version: N/A
2023-10-13 10:31:27 OpenSSL: error:0480006C:PEM routines::no start line
2023-10-13 10:31:27 OpenSSL: error:0A080009:SSL routines::PEM lib
2023-10-13 10:31:27 Cannot load inline certificate file
2023-10-13 10:31:27 Exiting due to fatal error
bronze vale
proven needle
weary spindle
bronze vale
stray cove
bronze vale
#

I think we should adopt the .pdf approach instead of the URL write ups

sullen cloak
#

hi, since yesterday my website layout on a single computer on windows is in phone mode, but only on THM course. I've already rebooted but nothing changes. On my Kali VM, it works fine, and other websites are normal. Any idea please ?

fervent yoke
scenic torrentBOT
#

Gave +1 Rep to @stray cove

stray cove
#

I'll invite you to resubmit

distant elk
#

Hi, is there a way to remove my security warrior title? I thought we could change it in our profile

distant elk
stray cove
fervent yoke
stray cove
#

It probably doesn't like the ()

#

Maybe url encode the thing?

fervent yoke
#

I could try that

stray cove
#

Bloody mobile autocorrect

fervent yoke
#

^^

distant elk
stray cove
fervent yoke
scenic torrentBOT
#

Gave +1 Rep to @stray cove

stray cove
#

I'll take a look at it in a bit

bronze vale
weary spindle
stone path
stone path
# weary spindle Yup, staff are looking in to it.

Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-10-13 14:21:49 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-10-13 14:21:49 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-10-13 14:21:49 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-10-13 14:21:49 DCO version: N/A
2023-10-13 14:21:49 OpenSSL: error:0480006C:PEM routines::no start line
2023-10-13 14:21:49 OpenSSL: error:0A080009:SSL routines::PEM lib
2023-10-13 14:21:49 Cannot load inline certificate file
2023-10-13 14:21:49 Exiting due to fatal error

stone path
weary spindle
stone path
#

EU 1 ; WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.

stone path
# weary spindle Use 1 or 2.

EU 2 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.

weary spindle
#

Are you in?

stone path
eager fulcrum
#

@naive dust Please don't advertise here

fathom tusk
#

When i do --dev tun0

tardy flicker
#

i end one of the courses i have the path progress in 100% why i cant download the certificate?
Someone can help?

tardy flicker
ivory spruce
tardy flicker
weary spindle
limber elm
#

Anyone happen to know why my box isnt responding? i build a ctf and some ppl are saying they cant ping it as if its not up, but it worked the night before. Could be because its under review im not sure though lol

weary spindle
weary spindle
#

!email

sharp bisonBOT
lusty swift
#

Guys when I create a room
It takes ages for me to upload an image in the room

tribal burrow
#

well it's big file and you upload speed als0

lusty swift
#

The image is tiny

#

And even if I put image of the code, it doesnt accept

#

even tho its mono colored

tribal burrow
#

im not sure what you talk of. as far i know it's needed to be in linux/ubuntu VM file