https://tryhackme.com/api/user/update-timezone
Click that link without a VPN.
1 messages ยท Page 52 of 1
https://tryhackme.com/api/user/update-timezone
Click that link without a VPN.
How do I contact support, I've contacted them before using the ticketing system, but now I can't send a message, it just shows recent messages, instead of new message.
When did you contact support?
If you mean the last time, I contacted support via creating a ticket an hour ago, but my question is different than the ticket form.
Is it a different question?
Yes, but there was no way to get the bot to the point to answer my question, because the question didn't exist, and after I tried once, I am no longer able to send a new message anymore, it just simply says Recent Messages.
You could send an E-mail to support.
Yes. ๐
Alright, thank you! ๐
Gave +1 Rep to @weary spindle
When I connect to the vpn it gives me a TLS plaintext error I tried reinstalling it with no fix
Which server are you using?
Is your VM time correct?
Where do I see that itโs been a minute since Iโve used thm and my time is correct I donโt use a vm I just use Kali on my machine
Wherever you downloaded the VPN from.
Unless you've recently came back from months
I just downloaded it off hitting access machines open vpn linux
I donโt see a server
Oh I see I think when my premium ended it switched me to EU regular I forgot this menu exists ty
Hi I have a weird thing that happened to me, I was doing the AOC of the day, I opened a terminal to write a command and my mouse moved by itself and closed my terminal
what worries me is : was it on the VM or on my own machine ?
Is it possible on the VM in the first place ?
thank you very much!!!
Gave +1 Rep to @weary spindle
Is there snything weird going on with VPNs right now? Figured I'd try out THM and want to use my own machine, but the OpenVPN times out whenever I try to connect
I use OpenVPN for my school network daily so I know it works, just the profile from THM doesnt. I've tried to refresh, regenerate, and redownload several times
What server are you using?
Tried both US-West-Regular first and then East, I'm in Colorado so pretty central between them either should work
Is there an easier way to go about accessing keyboard shortcuts besides having to click in the attackbox every single time you need to use them? In full screen I have 0 access to keyboard functions without pressing it on the monitor.
Like clipboard?
Yeah, but also in nano/vim I guess. Is it purposely designed to not allow the ctrl key to work unless it has been designated as set under the little side panel on the left?
on a default settings firefox window in its own full screen tab it generally works
but for the best experience using your own kali linux virtual machine will be better
how many friends can we add on THM ?
hy, when i am making a room the first few minutes everything is fine but after a while i cant use dirb, i cant visit the sites i need to visit and i cant ssh to my room machine..
its a room my school made that's why I'm askin here
Ohh.. if that's the case, folks here do not help or assist as we do not want to defeat the purpose of it being assigned to you and would suggest that you reach out to your professor for any questions.
what do you mean by this? we do not want to defeat the purpose of it being assigned to
Your professor assigned it to you for school work purposes. Now, he or she might want you to learn something on your own or at least consult with him or her as you deem necessary.
it's not like i don't know what to do.. its just that my machine is to slow i can't do anything.
i have a test in 2 days about it so i would like to finish the room
and its sunday it would suprice me if he would respond
If it's a room created by your school, I don't think THM Staff can simply check it.
so you think the problem is on the side of my school and not on the THM room?
As you mentioned, your school created the room so they are more familiar with the box and/or its configuration.
after 2 dirb scans it just stops. i just get "Calculating NOT_FOUND code..."
Hi Support I have a Issue need to be discussed regarding the room "Agent Sudo"
can you help me?
Please just ask your question, you'll get an answer faster
ok my questing regarding the Agent Sudo room is in task 3 i get the ssh username and password
and when i use them the task accepted it
in task 4 when i am using them to log in to the ssh server it refuse it, i think something worong with the rrom comnfig
Are you using the correct case in your username and password?
is there a way to view how many points are rewarded to complete a room or questions in learning rooms? I know for challenge/practice rooms you can check the scoreboard and view the points you'd get for completing the room but that's not an option for learning rooms
(network ovpn files are empty) greetings -- As part of getting started with the "breachingad" room (https://tryhackme.com/room/breachingad) I've been trying some trial and error because I can't seem to ping the DC with the attackbox .. and i generated a OVPN file for the "breachingad" network and it is generating 0 byte opvn files. I treid with a different network (wreath) and it is also geneating a zero byte ovpn file. I can successfully generate a ovpn file and get connected to VPN using "machines" from us-west-regular-1 ... so is this maintenance or a problem? As I am a new user of the "network" THM features -- user error possible, so all feedback welcome.
To my understanding, you won't need to download the ovpn config file if you plan to use the Attackbox.
Should you choose to use your own VM, you can try leaving the room, joining it again after an hour or so, generate your ovpn file.
Probably just gonna go the vm route then. I added a fuck ton of settings to my about:config and I have no clue about what is actually doing it, but I almost guarantee it's that. Thank y'all!
Gave +1 Rep to @plush bay
Hi My Openvpn is connecting and if it connects also the connection is getting dropped in between. What am i doing wrong here
try to get a new file if this doesnt work ....
will try that then
manually added or using a user.js???? also firefox supports profiles so you could just change the shortcut to start it to firefox -P and then select a profile to start
Manually added. Would it be possible to just add another user.js file and try and configure firefox to load in through that with the shortcut?
well yes as firefox stores profiles in their own folders so you can have one with default settings and one with a user.js and another with custom about:config settings... it is how shadow handles it a lot
i.e a profile for general a browsing... one for online shopping.. another for twitch and so on
Ahhh I gotcha. I will probably figure out how to do that today. Thank you for informing me.
Gave +1 Rep to @plush bay
You were exactly correct on the profiles. Just created a new one using the default settings and keyboard works perfectly in split view.
yes I chicked them many times
im trying to ssh into the machine and after a while it says port 22: connection timed out. any idea why this is happening?
it was fine earlier it just randomly stopped working
have the machine expired??? as they are only turned on for 2 hours unless you extend it
no ive restarted the machine multiple times
i also tried getting a new ovpn file but still doesnt work
https://github.com/tryhackme/openvpn-troubleshooting @dusk crater
try this
lets see if it finds anything
showed me no issues
Can you access http://10.10.10.10 in your browser from the machine that's connected to the vpn?
yep it says im connected
i could just be an idiot and it might not be working cause of a silly mistake but idk really
And what is the room you are doing?
Also what is the target machines IP ?
im doing linux fundamentals part 3 and the ip is 10.10.241.34
Hm?
you only use ssh basically for linux fundamentals part 3
They said they can not ssh, or did I miss read?
The IP you provided, is the machine still up ?
yep
But it shows as offline for me?
Could you refresh the room page as well as checking the IP again?
refreshed and its still up
its showing me the active machine information
im starting to feel like this is something dumb on my part lol
Can you verify and send a screenshot of that active machine information box?
You can do so by getting your token from here: https://tryhackme.com/r/manage-account/account-details
Then verify with the slash command /verify
heres the ss
Mh, ye not sure what's wrong with that machine. Can you terminate it and start a new one?
Then provide that new IP again?
well.. now it works. sorry for wasting your time idk why it decides to randomly work now
Ok, no worries, glad it works now
For the badge, should the first and last name be entered in the Full Name section? Also, is the Full Name visible to everyone or just to me?
This is a crazy idea, did you try to use the IP from the screenshot?
yes i did
the machine just mustve been bugged or something cause it worked when i restarted it
@dusk crater hey I have been on the fundamentals, pre sec and all that too and sometimes the machines just kinda bug out, esp. if I don't do the room right away and keep it waiting or experiment around a lot and then continue to another task after a long while. so terminating and resatring machine and/or attackbox worked most of the time for me
just saying I think that problem, at elast for me, is quite common and not necessarily a failure on your part
hi whats "access to networks" thats unlocked in 7th day of streak?
Access to `Breaching AD" and "wreath"
damn thats awesome
How does it work with the attack box and the 24 hours. Is there a time of day when it restarts or is there a timer?
I think it's 00:00 GMT.
thanks
hi i completed a room some hours ago and still missing the badge
Hi, I'm trying to do one of the network rooms (Holo), but the vpn config that I'm downloading is empty no matter how often I regenerate it. Could I get some help?
Which room is it?
Try to leave the room, rejoin it after an hour or so and generate the ovpn config file again.
didn't work unfortunately
Have you tried asking in the #holo-network channel?
I did - seems like a lot of people have been having this isse
I sent an email to support 6days ago but no answer yet about streak freezes, it says on website your streak freezes at 7, 30, 180 or 365 days. My streak went to zero 3 times that's -21 days to get back where I left off. on https://help.tryhackme.com/en/articles/7843540-streak-freeze it says
If you complete a question within 24 hours of your streak freeze activating, you will maintain your streak.
You will lose your streak if you fail to answer a question during those 24 hours.
I always answered a question within 24 hours of streak freeze activation and it shows on that "Answered This Week" tab but somehow it just went to 0 all 3 times and never to 7day streak freeze. :S
E-mail replied are slower due to the demand with AoC, justy keep cracking away and it will be added.
Anyone having issues submitting answers? I put in my answer to any room, have hit enter, and clicked the submit button, but nothing happens. Doesn't matter the room, either. Tried multiple browsers too
multiple
Not all rooms have a badge. Completed rooms, however, will appear in the list of completed rooms.
having the same issue right now
thought i was going insane but yea submit button isn't doing anything
Ok good to know it's not just me. I've tried on mobile data, my home internet, multiple computers, work VPN, nothing, so I figured it's probably not local but hadn't seen anyone say anything
lol same process tried to google see if it was a known issue but nothing
owasp top10 and return of the yeti have badges tho
am also having the submit issue hope they fix it soon
Hmm, I just tried it in the AoC room but I can submit answers just fine?
Can you check your browser console to see if there are any errors that might lead to the issue?
This appeared when i hit submit for an answer. I've tried in AoC room and the Data Exfiltration room for the red team learning path.
Could you try to refresh the page with ctrl + F5 then try again?
And you don't have any browser plugins whatsoever that might block something?
Also, could you try if there is any difference with firefox?
I've tried firefox, and edge, I've tried on another computer that's going through a VPN, I've tried on my phone using my mobile data, i've cleared cache, only plugin i have is adblock which i disabled, same issue all around
Im having the same issue with similar errors on the intro to cyber room
Thank you for trying, I'll forward it to have someone look into it!
Gave +1 Rep to @steel phoenix
No problem, use to work help desk so i typically try to do everything I can locally before resorting to contacting any form of support ๐ . Although I hadn't looked at the console to see the error, just woke up honestly. If you need anything else from me just let me know.
+1 on the submit button issue
+1 on the submit button issue
+1 on the submit button issue
+1 on submit button issue
idk if this helps but this error pops up after trying to click the submit button specifically
+1 on submitt button issue here too
Staff are aware, someone else linked it.
It's slowly rising
hmmm, I get this one ->
Yeah, it's just happening in different rooms.
gotcha
hello i am in room 1 for presecurity path i keep trying to click submit for question nothing happens
Staff are aware. ๐
staff may be going insane this morning
You're in the right place, have a seat. The waitress will be with you soon
Ok thank you i thought something wrong with my wbrowser maybe lol
We are aware of the issue regarding the submit button not sending the answer.
Please bear with us while we investigate it, thx. ๐
Ok so everyone is having the same issue. Glad itโs not just me.
mostly just you, but also me
SQ3 room not taking flag submissions.. Have 3 flags but wont let me enter them.. (even if I enter "test".. nothing happens)
refreshed the room..
known issue, check pinned messages here
ahh.. sorry.. Ill just write them on paper for now.. TY
someone tried to hack their flag submissions and broke it for the rest us 'eh?
(joking)
APT34 doesn't want us to get the skillz to take them down
yes. submit still not working. just as an update
I hit a submit button which is no answer needed -> not respond
You still around?
Look like code issue
still broken*
yes i'm here
Could you refresh the page with ctrl + F5 again or manually clear cache, then try again please?
same issue
@crystal marlin I got issue with AOC 2023 - 17 - The submit button does not work either. I see code issue there
Could you let me have a screenshot of the console once again to see if anything is different to the previous one?
submit button doesnt work for anything for me right now
I dont want to lose my streak
i went to the AOC room this time
YEs this is the one
Same here...button wont work on any challenge
the same issue as Revelution - the image is the same
But no dropdown option for the error like the last screenshot?
nope, no drop down. went back to the original room i sent the screenshot of, no drop down there either
Gotcha, thanks a lot ๐
Gave +1 Rep to @steel phoenix
Sent you a DM ๐
I also cannot submit my answers It will give me hins but it will not take my answers
same issue
I have tried several browsers and restarted each one several times
check pinned messages.. they know.. they working on it
Yooo. Is there darkmode in tryhackme? If yes how can we enable it?
eyes hurt a lot ๐ข
i haven't seen one, however, if you use Google Chrome, there is a extension called "Dark Reader Mode" you can turn on/off on each website. I like it.
oh ty for extension. I saw the msg on a blog so was just curious if am missing it.
Gave +1 Rep to @coarse mason
thanks, i need to look for that
Gave +1 Rep to @spiral panther
get the browser extension dark reader.. makes all sites Dark mode
ty
Anybody having trouble submitting answers? Tryhackme isn't accepting mine for some reason.
Staff are aware.
For anyone that had the issue with the submit button not sending the answer.
Please clear your cache and refresh the page.
The issue should be resolved.
Sorry for any inconvenience!
Does anybody know how i change the name on the certificate ?
I allready changed my Full Name but the old certificate still has my user name on it
You can not change it for already generated certificates unfortunately
But for any upcoming ones if you now added your full name to your profile
hmmm thats sad, i dont want to put a certificate with my usernamer in a resume ๐
Photoshop ๐
lol I guess Turtle head is going to be on my certificate
it works - ty
Gave +1 Rep to @crystal marlin
That worked. Thank you
thm complete begineer doesnt load
hey guys, for some reason I can't open any path on THM. When I hit any path to see what's inside it shows blank page without any rooms. It happens both in Chrome and Edge. Does anybody know what's wrong?
Done!
Can you send a screenshot?
I can't. It started working a few seconds ago. Sorry
Hi , can you change you country in profile?
follow the instructions in that message to change your country on your profile @amber glade โฌ๏ธ
@plush bay Fix it, thanks
Gave +1 Rep to @plush bay
no problem
I hope this message finds you well. I am writing to bring to your attention an issue I am experiencing with the automatic renewal of my subscription. Although it is supposed to renew on the 20th (tomorrow), I have noticed a premature renewal.
I would like to request a refund for this renewal and, moving forward, I would prefer not to renew the subscription. Your prompt assistance in resolving this matter would be greatly appreciated.
sorry there is nothing that happens over discord... you need to email support for that
@hollow thicket
also even more sorry but the wait time for that is around 7-9 work/business days currently
@plush bay
what kinda problems???
VIP file is empty
ah yeah quite a few people getting those problems right now
try leaving the room
wait 15 mins
rejoin room
go to access page
regenerate vpn file
wait 3 mins
download it
try and see if it is empty or not
good luck
Can someone help me. This is my usb and in the address it contain the white space how to fix it
Hi, this channel is for TryHackMe related content, you'd be better of using #general
Thanks
Gave +1 Rep to @weary spindle
Hi everyone,
I'm writing to you because I've already sent 2 emails to support without a response.
I'm having a problem with my monthly subscription. The money was withdrawn from my account, I received a confirmation email that the payment was successful, but my account still shows that I do not have a subscription.
Who can I speak to to resolve this issue?
Thank you and I apologize for the inconvenience.
When did you email?
One yesterday in the early afternoon and one this morning
Ah.
In that case you pushed yourself back down the queue,
There is a delay of support replies right now due to AoC, they also don't work weekends, but they will reply.
AoC?
Advent of Cyber, their Christmas event.
Ahhh ok, thanks!
Hi everyone
Iโve been trying to pay for premium subscription on my tryhackme account but the payment is declined and I have tried several cards for that. My PayPal isnโt working too. I even tried to buy a voucher but it isnโt working as well. I am guessing itโs partly due to my region. I will appreciate any help I can get with the payment. Thanks.
If you're being blocked by your bank there isn't much we can do.
Oops, I think itโs bank-related because the display message mentioned contacting the bank support. Can you suggest any alternatives for payment?
Have you tried contacting your bank?
Not yet, it will take long to get a response. That is if I get and itโs useful. Thatโs why Iโm trying to consider other alternatives.
Iโve fixed it, thanks
Hey Im new to tryhackme
You discovered that the login page allows an unlimited number of login attempts without trying to slow down the user or lock the account. What is the category of this security risk?
You noticed that the username and password are sent in cleartext without encryption. What is the category of this security risk?
can someone help me in this two question
Hello,
I requested a long time ago a username recovery for another account, but the support deleted my account, i had PREMIUM, i waited 2 weeks but you know premium subscription needs money and cannot stay and do nothing because you cannot fix my issue without any feedback, the account it was on this email and now i created an new account, i thought it will reenable the premium. Please fix my issue and give a proper feedback
Hey guys, I completed the Burp Suite module back in August, and today when I check it shows I haven't completed even a single room within it. Please help
That entire module got updated
so ill have to redo it?
If you want to have it marked as completed as well as getting extra points for it, then yes ๐
ah alright thanks
Gave +1 Rep to @crystal marlin
Good morning! I am struggling to successfully connect to the linux machine for Learn the Linux Fundamentals Part 1. I feel like I am missing something VERY basic here.
Long story short, I am successfully connecting to to the VPN using VM ware running Kali linux. I can ping 10.10.10.10, and I also get a proper response when I run curl 10.10.10.10/whoami in terminal.
My problem seems to be, when I am connected, and copy the IP address provided in the room, I just get an error in my web browser. "unable to connect". I suspect I am doing something totally wrong to pull up the machine.
You don't use the VPN for that machine
You just the split screen machine.
Damnit, lol I knew this was all me (reading comprehension is my Achilles heal)
Thank you @weary spindle !
Gave +1 Rep to @weary spindle
It's ok, you're not the first, nor will you be the last ๐
Hey guys, I got a question: since I am loving the AOC so much and its been such a blast to go through the different challenges I was thinking of "archiving" the information for myself - would I be allowed to download the content inside the AOC site (not the answers, this would be done without being logged in) and save it for myself? this wont be redistributed, just a small "knowledgebase" for myself
Do you mean copy and paste the material, or the contents of the attackbox etc?
I'm referring to the (right now) public information on the site - not the given answers and not any information inside of the attackboxes - basically the "text" and codesnippets on the website - so the study material
I have an issue where the ~ appears randomly in both the attackbox and any vm when I'm in the terminal. This is independent of the laptop I'm on. Also I do not touch the keyboard or laptop perse when that happens. Any idea?
Is they key stuck or dirty?
Nope, and it happens on both my laptops.
Also in my case that would mean both the SHIFT and the ` key would have to be stuck or dirty ๐ค
I'm doing Task 8 in https://tryhackme.com/room/windowsprivesc20 where it instructs to download a few tools. I can't download anything with the virtual machines. Wget doesn't work nor Internet Explorer.
Are you a free user?
Nope
Where are you using wget?
By VM I mean the ones in the room. I'm connecting to them via RDP and VPN on my Kali VM.
I'm using wget in powershell
You might be able to wget from your python server
I tried that with python3 -m http.server 9000 , but it didn't work
Thanks a lot ! It took me roughly 20 minutes to have access to the data, but I just had to be patient
Gave +1 Rep to @vagrant bear
I am trying to download the OpenVPN configuration for Wreath. Tried current Firefox on both Windows and Linux, as well as Chrome on Linux. I can regenerate the configuration. When I hit the download button it spins, but no download occurs. For my general OpenVPN configuration, everything works as expected. Any idea?
Have you tried this -
Will try this, thanks!
Gave +1 Rep to @ivory spruce
Tried this, but no luck -- still a spinning "Loading..."-Button, but no file download. Any ideas?
Hi Guys, i have a quastion, i am doing task 8 in https://tryhackme.com/room/introtonetworking and at this quastion: Where is the very first place your computer would look to find the IP address of a domain?
Answer is in the first third of the task text.
i think the answer is local cache
It's wrong.
If this doesn't work, I would suggest you submit a ticket to THM Support.
help me i cant figure it out
Have a look in the task material, the answer is in the first sentance of a paragraph.
local host not good either
Nope, It's not. ๐
Getting close though
Look somewhere there.
f hosts file
thanks the help
Gave +1 Rep to @weary spindle
Can somebody help me?
Only support can help with this topic.
I'm sorry, you'll need to reach out to support and discuss it with the team that way
hey guys i have a problem with openvpn connect can some1 help me ?
2023-12-19 21:20:24 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-12-19 21:20:24 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-12-19 21:20:24 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-12-19 21:20:24 DCO version: N/A
2023-12-19 21:20:24 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2023-12-19 21:20:24 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-19 21:20:24 UDPv4 link local: (not bound)
2023-12-19 21:20:24 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2023-12-19 21:20:25 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=d1ddc3d8 0c249857
2023-12-19 21:20:25 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2023-12-19 21:20:25 OpenSSL: error:0A000086:SSL routines::certificate verify failed
2023-12-19 21:20:25 TLS_ERROR: BIO read tls_read_plaintext error
2023-12-19 21:20:25 TLS Error: TLS object -> incoming plaintext read error
2023-12-19 21:20:25 TLS Error: TLS handshake failed
2023-12-19 21:20:25 SIGUSR1[soft,tls-error] received, process restarting
2023-12-19 21:20:25 Restart pause, 1 second(s)
2023-12-19 21:20:26 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2023-12-19 21:20:26 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-19 21:20:26 UDPv4 link local: (not bound)
2023-12-19 21:20:26 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2023-12-19 21:20:26 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=6152bd89 b4585f38
2023-12-19 21:20:26 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2023-12-19 21:20:26 OpenSSL: error:0A000086:SSL routines::certificate verify failed
2023-12-19 21:20:26 TLS_ERROR: BIO read tls_read_plaintext error
2023-12-19 21:20:26 TLS Error: TLS object -> incoming plaintext read error
2023-12-19 21:20:26 TLS Error: TLS handshake failed
2023-12-19 21:20:26 SIGUSR1[soft,tls-error] received, process restarting
2023-12-19 21:20:26 Restart pause, 1 second(s)
^C2023-12-19 21:20:26 SIGINT[hard,init_instance] received, process exiting
i have tried to replace cipher by data-ciphers as the forum is telling
but its not working
ive tried with nano too
What VPN server is this?
eu-regular-3
Eu-reg-3 is broken.
Use 1 or 2
thanks friend
Gave +1 Rep to @weary spindle
wil try it asap
How will I know if my openvpn connection was successful? I get this as the last connection message, but it doesn't bring me back to the regular command-entering thing (yknow the kali@kali thing idk what to call it)
2023-12-19 21:31:06 Protocol options: explicit-exit-notify 3
and also commands don't work when I type them in and hit enter while on that message
After you establish your OpenVPN connection, you should leave it open and work on another terminal tab.
If you close it, you lose you OpenVPN connection.
How do I share my progress on twitter? When I complete a room or challenge, I am prompted with "share this on social media" but many times I don't see a link to twitter. I am writing because I have just complete one of the CTF's and it prompted me to share but did not provide a share link. I was just wondering if there was another way to share to socials, maybe through the profile or some other way? Thank you
Hmm, well I know you can share badges from your profile page, not sure about just room completions though
U completed the path?
Hello everyone, can you advise me what helpful material to read about "XXE (XML External Entity)",
||I reread this in the "book.hacktricks" and once again all the sections from the "OWASP Top 10" module that were presented, but why they don't work. I have not seen in the examples that tags are created in "Response", they are usually in the "Request" field.
But if you even put tags there specifically, then nothing happens, is this exactly a "easy" box?)||
Machine - "mustacchio"
Hello Guys, any staff from tryhackme think can check exploitad room?, i have 4 hour trying do the room but i cant because the connection keeps in time out, later of finally reset room finally connection stopped to be time out and worked the nslookup , later i have tried to go to the link provided in the room for get credentials and say time out, i have screenshots if is needed :/ (is vip room) https://tryhackme.com/room/exploitingad
Does anyone have a checklist pentest web mail server
I see. So that is the correct last message I should have to know it's connected?
Iโd look at the Burpsuite Academy module for this
[PortSwigger] or [academy.hackthebox]?
I went through all the modules in the "THM" Burp suite, there is clearly no such thing.
Portswigger
Yes
Alright, thank you!
Gave +1 Rep to @ivory spruce
Hi everyone, does anyone know how to troubleshooting openVPN on macos catalina, i follow the step here https://tryhackme.com/access,
i ifconfig i get IP in utun2 interface, but i don't know why not on utun0 or utun 1, here the ifconfig :
utun0: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1380
inet6 fe80::3cc0:a6d6:e11:78ad%utun0 prefixlen 64 scopeid 0xa
nd6 options=201<PERFORMNUD,DAD>
utun1: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 2000
inet6 fe80::1c7e:c694:585e:8e53%utun1 prefixlen 64 scopeid 0xb
nd6 options=201<PERFORMNUD,DAD>
utun2: flags=8051<UP,POINTOPOINT,RUNNING,MULTICAST> mtu 1500
inet 10.13.24.80 --> 10.13.0.1 netmask 0xffff8000
but still i can't ping the THM VM's IP (internal IP). please anyone help me
here also the netstat :
netstat -rn | grep utun
10.1/16 10.13.0.1 UGSc utun2
10.10/16 10.13.0.1 UGSc utun2
10.13/17 10.13.24.80 UGSc utun2
10.13.0.1 10.13.24.80 UH utun2
default fe80::%utun0 UGcI utun0
default fe80::%utun1 UGcI utun1
fe80::%utun0/64 fe80::3cc0:a6d6:e11:78ad%utun0 UcI utun0
fe80::3cc0:a6d6:e11:78ad%utun0 link#10 UHLI lo0
fe80::%utun1/64 fe80::1c7e:c694:585e:8e53%utun1 UcI utun1
fe80::1c7e:c694:585e:8e53%utun1 link#11 UHLI lo0
ff01::%utun0/32 fe80::3cc0:a6d6:e11:78ad%utun0 UmCI utun0
ff01::%utun1/32 fe80::1c7e:c694:585e:8e53%utun1 UmCI utun1
ff02::%utun0/32 fe80::3cc0:a6d6:e11:78ad%utun0 UmCI utun0
ff02::%utun1/32 fe80::1c7e:c694:585e:8e53%utun1 UmCI utun1
If you're using MacOs
You need to install brew to use the cli
@smoky mist -- i am having similar problems -- botht he "wreath" and "breachingad" networks generate 0 byte VPN files ... when I start an attack box in the "breachingad" network it now attaches a interface for the "enumad" network , where before it wasn't generating an interface at all fo the THM network. I've opened a ticket monday, but haven't gotten an update yet
I opened a ticket yesterday, no feedback so far.
still no luck
That's connected, just minimise this window.
still can't connect the vm, neither my own ip
Which room are you doing?
AoC 2023 day 19
can't ssh
I'm a loss for mac troubleshooting, could possibly try changing your MTU
sudo ip link set dev tun0 mtu 1200 Can you try that command for me please,in a different terminal with your VPN on
I don't even know if that will work on macos
command not found
i will google it
it's long way to troubleshoot, i need to slep now, i'll try it tomorow, thx bro @weary spindle
Gave +1 Rep to @weary spindle
hello guys today my attackbox aren't working properly can anyone help it!!!
What's the issue?
it don't load it , if any how load it but don't work properly
Sorry, I don't understand. Maybe you can verify yourself so you can send a screenshot here.
Common issues if Attackbox isn't working properly:
Here's also info about the Attackbox @pliant orbit ^
#site-support I have completed my Advent of Cyber 2023 room but I didn't showed up completed on my dashboard. Please tell me what's the issue,
The AOC 2023 is an ongoing event, there will be more tasks to be added to the room.
Hi guys! Is there a way to regenerate the profile badge name when a certain badge is earned?
hi guys
I have made a private room and my friends are trying to connect to the openvpn, the can connect and they can ping the machine, but when they ssh it takes a lot of time
just the initial login or are the commands also slow once they log in ?
just the initial login, for me it did login
for some people it doesnt, takes too long time
just the first exchange of keys etc can take a bit of back and forth - also depends on where they are - the machines run in the cloud and i dont know what endpoint they use or if it launches based on where u are
hmmmm how can I make sure everything is fine in the sshd config on the server side
@tight seal
if they getting in they should be ok - but you can also have them do a ssh name@ip -verbose (or -v , or --verbose , i forget atm) , also you can look at /var/log/secure (i think thats where ubuntu keeps the log) or even /var/log/messages - but the default sshd_conf should be ok normaly all you change their would be ports or if a user can log in with just user/pass (yes by default)
actually some of them are not connecting
hmm .. if they telnet ip 22 they get something ?
let me try
I created machine that works fine when I test it locally but when I upload it on thm and visit / I get 502 bad gateway error from nginx. What could be a problem?
@tight seal I found the problem, because the vm we were using it loads a lot of usless processes but now I am uploading a new vm but stuck on the converting state ...
ninja in general right now FYI
hi, i can't connect with my vpn with openvpn gui, i got this error (connexion fail) :
Are you using the communities/download?
what is it?
i download my vpnfile from this link https://tryhackme.com/access
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
Then which server did you download?
many
Are you on your home network, and I assumine in France?
What does the error say?
connexion fail to my file
@weary spindle i delete and reinstall Openvpn and it work
thanks for your help
I was going to suggest a reboot, glad it's worked.
@smoky mist -- if you browse the other channels for the THM discord, there are some network specific channels .. with comments realted to logging in and out, plus "Hey there,
Could you try leaving the room, waiting 20-30 minutes, then rejoining it (this should put you on a new subnet) Once done, can you check if the IP has changed? If it has, then you can try downloading the config file again." -- so while I haven't successfully fixed it from my side, it's clear others are having similar experiences
Thanks for pointing this out โ I did all that, but no luck so far. I opened a support ticket, but have no response yet.
Gave +1 Rep to @red apex
hello
can someone help please
I have not connected to THM for about a year, but I have a subscription. I just updated my .ovpn file, downloaded, and am trying to connect to the VPN, however I am getting errors and it keeps retrying or retstarting over and over.. https://rentry.co/chqtt
disregard, problem solved. I used a quick link from Access Machines > 1. Download your OVpn config pack. -- Realizing that I needed to regenerate my configuration file from the main vpn servers link.
thanks
Hi everyone, Im currently in Network Services 2 room and am trying to run this nmap scan but it is taking hours to complete unlike other rooms, acn i do anything to make it faster? nmap -A -p- $ip -vv
You can split the scan into 2 - first one with the -p- and then do another scan on identified open ports with the -A flag. You can also add other flags like minimum request size, etc.
@ivory spruce thank you
Gave +1 Rep to @ivory spruce
thankyouuuuuu @barren birch
@twin tartan i cannot get this to work for anything
maybe i just luck
@twin tartan ok then
hi there bro @barren birch , how to turn off this openvpn after using your script? another way then sudo kill PID LoL
Hello, I'm getting troubles with a task of the "Linux escalation privileges". While running a bin with SUID rights and compiled with "GCC 13.1.0", I got the following error :
"./nfs: /lib/x86_64-linux-gnu/libc.so.6: version `GLIBC_2.34' not found (required by ./nfs)"
I don't have permission to install anything on the machine where I want launch the bin. Any Idea to solve this ?
Hello guys, i have a problem when play Brainstorm room. I can't run chatserver.exe for BoF attack. i use Windows 7 32bit VM for run chatserver.exe, but show error alert "This program cannot be run in DOS mode". do you have ways to solve that?
Hi !
I need help, I have trouble to connect to the OpenVPN connection : it says "Error Message: ovpnagent: request error", someone can help me please ?
Which os are you using?
Windows 10 ^^
Are you using the communities/download
What ?
Yes I think
You think?
Lol.
Where did you download?
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
thanks, it works !
Can you run the VPN script?
Are you using https?
Can you access http://10.10.10.10/ in your browser? @naive dust
So you're not actually connected to the VPN then.
Verify with the bot by following those instructions
But if you can't reach 10.10.10.10 you're not actually connected, regardless of what the website tells you.
I can't seem to connect to the IP of my machine using the OpenVPN
I'm using Microsoft Windows [Version 10.0.19045.3803]
Can you go to http://10.10.10.10?
This will allow us to test your connection.
Is this the communities/download one?
Which server are you using?
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
Communities works. ๐
I have a few questions regarding streak freezes:
Yes, hover over your streak number
You can only have one streak freeze.
IIRC IF you use a 7 day, and then you do a streak in day 2,3 or 4, it won't continue.
Ah thanks, and if there is no streak freeze on hover of streak number, does that mean I have none right now? Becuase yesterday I completed my question around 0:05 so I was wondering if I used the streak freeze
Gave +1 Rep to @weary spindle
Your streak is orange if you have an equipped freeze active.
I see, thanks mate
No problem. ๐
So the streak really is time zone based on the flag then
Which bug?
It won't count to your streak,
Yeah I answered just after midnight and I think it didn't count indeed. But that is interesting because technically that was today, and I answered another question today which did increase my streak
Also, my streak freeze did activate but it does show up as if I answered the question yesterday in my week chart thing.
hey
i cannot pay in the usd currency due to country restrictions , is there a way around it ?
I don't think so
Is this the thread where I need to ask for help with the VPN? I'm connected via openVPN, but I'm not able to resolve the addresses for today's challenge. I used the VPN once in the first few days without trouble, but hasn't worked the last 2 times I've tried now.
Which os are you using?
MacOS
Are you using the CLI via brew?
No, is that what I need to do? I just connected with OpenVPN and tried to go to the 2 web addresses in Chrome, but can't resolve.
Yeah, you need to install brew, then run it from the command line
Hmmm, ok. Didn't find that in the VPN instructions.
I guess I should ask, are you saying I need to install brew, then use that to install openVPN? And then run and connect to the VPN via CLI?
Yeah, if you search Jabba done a post on it
Ok, thanks
Gave +1 Rep to @weary spindle
quick follow up: yesterday I left the "breachingad" room, deleted my attack box from the breachingad room .. and logged out .. when I logged back in today to THM then rejoined breachingad, I could see on the network diagram I was attached to a new subnet .. starting the attack box from the breachingad room created a "breachingad" interface, and everything went smoothly after that .. the takeaway for me is that this is a platform usability issue, we're not imaginging it. Also, the breaching-ad discord channel the pinned post are kind of interesting reads. hth
Thanks!
Gave +1 Rep to @red apex
Can someone help me out with OpenVPN on a mac?
I'm having trouble getting connected
just a thought , and it would save THM resources , when the window pops up with a congrats when completing a room , some of those popups are in a learning path so the button for the next room is on the pop and clicking it brings one to the next room - what it does not do is terminate the box in that room forcing me to back arrow every time , annoying for me , but i can imagine the hundreds of hours of up time in the cloud for these boxes for other people who just dont bother - just a thought
Did you follow the instructions in this room? https://tryhackme.com/room/openvpn
I did
What specifically are you having issues with?
I can't connect to the machine that I currently have running
So you ran the VPN, but still can't access the machine? What room is this btw?
Day 3 of AOC
mk, so how are intending to do that room from Mac anyways? Do you have the tools you need on your Mac? Most people just use VMs for the room (not that you have to do so, but it does makes things a lot easier and safer)
Given that you do have a way to complete the room on the machine, could you tell me the IP of the machine you launched so I can make sure it is reachable in general?
10.10.16.104
I don't have access to my VMs lately because they all broke to due a time machine backup
Could just make a new VM, but alright
No, I use parallels and it's not letting me in
hmm, you sure that is the machine for this room? I can ping it, but there is no http website running on it
Oh wait it is on port 8000 I am smart
Is that what I'm missing - the port number?
Are you adding the port number to the URL? Yeah you need to go to http://10.10.151.117:8000
Oh wait that is my IP
Yours would be http://10.10.16.104:8000
Trying that in Firefox I'm not getting anything - it's still spinning
hmm, then maybe your VPN isn't working after all
You're not running more then one VPN are you? Or running a proxy like foxyproxy that might be getting in the way?
Could it be the network that I'm on that's blocking the connection?
No, just OpenVPN
Are you on your home network?
mk
badge sharing social media (og:image) images are not updating when you change the username from profile page...?
I don't think already generated badges will change the name, just newly earned ones iirc
when you go to the badge share URL, the main page shows the new name, but the referred to og:images don't
i.e. from the "Go to link" button
Hmm, not sure then, I have never changed my name so idk how that system works. Someone else may be able to help you, but idk myself
I just tried pinging the machine from the terminal and I'm getting an ICMP timeout
perhaps support need to trigger the social media image refresh
or there is a cache for those
And this on the hotspot now?
Yes, Sorry for the long time to reply.
Then something has got to be wrong with the VPN itself. What vpn server did you download a config file for?
how can I change the openvpn config file for the server even this file is configured by tryhackme, I mean they are responsible for configuring it and we can only configure the client side
Why are you trying to change the configs?
because there is a problem the mtu is causing on the server for a machine that I have uploaded but there is no solution other than changing this mtu
it should be 1200 to work well, but when I check the machine that I have uploaded it is 9001
I'm not following
Do you mean like this #site-support message ?
@gleaming flume ty
Gave +1 Rep to @gleaming flume
@bronze vale I dont get it, sorry
the box you upload shouldn't be affected by mtu
it is, because after we connect to it and sign in as root and change mtu it works
Hi all. I want to do the Holo room, but the vpn file for the network is empty when I download it. And it'ss still empty after regenerating it. The regular "machine" vpn files download correctly. Could anyone help? Is this a known issue?
Thanks it worked!
Question about machines expiring if I may please -- I am a subscriber and I'm diligent about terminating my VM's that I use while doing the advent of cyber. I usually use the grey power button on the bottom bar of the VM to terminate when I finish a task. Yet I seem to often get this error pop-up? Am I terminating the VM wrong or missing something? Thank you!
Expiring Soon
Your machine is going to expire soon. Close this and add an hour to stop it from terminating!
My dashboard shows that i am missing some questions in AoC2023,despite no question being unanswered when I open it. Anyone else experiencing that?
This is just a notification and is based from the time you started a VM. You can simply ignore this unless you are not finished with the associated task.
Is this for a THM room?
Ah I see. Thank you
Gave +1 Rep to @ivory spruce
what does one do when they find a (Yea/Nah) questions that doesnt take EITHER answer https://tryhackme.com/room/linuxmodules task 10 last question
Is it possible to change your login method from google login to traditional?
Is the site http not https maybe?
Yeah that seems to be the case, http works but not https
@split lantern ^
no like iam typing http only after clicking enter it was automatically changing to https
checking
no its same settings
Hmm are you sure the VPN is running correctly then? Can you share the openvpn output you got when you ran it?
Seems good to me. You are not closing the terminal after running it right?
when i tried in my windows browser it keep on loading
yeah
strange, strange. When you type ip a on the VM what do you see?
That is weird for sure, everything looks like it is working perfectly. Have you tried just regenerating and redownloading the vpn config file?
yeah its fifth time i g changing vpn config file
hmm
i have tried multiple servers too
Does this link open the site for you? http://10.10.67.245/login?next=%2F (its where the ip redirects to)
check the dm
You're not suppose to DM without permission in this server but alright
Can you go to http://10.10.10.10 ?
2023-12-22 13:49:16 TLS Error: TLS handshake failed
2023-12-22 13:49:16 SIGUSR1[soft,tls-error] received, process restarting
2023-12-22 13:49:16 Restart pause, 64 second(s)
2023-12-22 13:50:20 TCP/UDP: Preserving recently used remote address: [AF_INET]34.253.19.14:1194
2023-12-22 13:50:20 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-22 13:50:20 UDPv4 link local: (not bound)
2023-12-22 13:50:20 UDPv4 link remote: [AF_INET]34.253.19.14:1194
2023-12-22 13:51:20 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2023-12-22 13:51:20 TLS Error: TLS handshake failed
2023-12-22 13:51:20 SIGUSR1[soft,tls-error] received, process restarting
2023-12-22 13:51:20 Restart pause, 128 second(s)
Does anyone experience this issue. I just subscribe to premium 5hrs ago and cant even connect to openvpn
Would be helpful to see the entire openvpn output not just this section (you could send a screenshot of it if you verify your account)
Additionally though what vpn server are you using?
i cant paste the screenshot here. im using EU-VIP-1 and US west VIP 1. both same issue
You have to verify your account to send screenshots the link above shows you how. Those servers should be fine though so the issue must be something else
how to get verify. not sure if I overlook upon entering here
https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account This page tells you how
The TryHackMe Discord Server
i get the verification token
here is the configuration
I just run the openvpn. but I got error
Which server?
EU VIP
is there way to refund my money due to this error? I would like to cancel my subscription. I just subscribe 7hrs ago and there is no way to fix it.
Which country are you in?
Is your vm same time as network?
Im here in Philippines. VM is same time as network. I dont have any problems with HTB premium. I just want to utilize THM for my learning
I already raise a ticket to help@tryhackme.com. upon encounter the issue awhile ago
Can you switch to vip 2, hit the regen button, then download?
(I'm not staff, just a volunteer)
I am experiencing the same problem as @fast gorge for weeks now, in the access via openvpn room it shows connected and i have an ip address but cannot open any links, in a kali vm it works fine but cannot make it work in windows, tried different laptops same problem
Have you contact the THM support? @timid heath
Are you guys on your own network?
i have, they closed the ticket, i logged another
i am connecting from home
What does your output say?
Does your stick?
i connect to the vpn, it shows connected in the thm access page, I have an IP but i cant open the links they provide, if i use a kali vm, I can access the pages
Can you access HTTP: to forward slashes 10.10. 10.10?
hello guys, i am having troubling buying the premium subscription in the site
Hey! Is it possible to change the discord token? I exposed it accidentally during a Youtube Live...
can anybody help please dm mee, i just want to clarify somethings
Try sending an email to support@tryhackme.com
I think this is the correct channel to ask for payment problems.
You might need to contact support too.
yes i also have some payment questions
@slate hedge can i dm you??
need help my openvpn isnt working
I downloaded the file
used sudo openvpn -----.ovpn currectly
0 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
2023-12-22 17:55:01 PUSH: Received control message: 'PUSH_REPLY,route 10.10.0.0 255.255.0.0,route-metric 1000,route-gateway 10.18.0.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.18.27.213 255.255.128.0,peer-id 107'
2023-12-22 17:55:01 OPTIONS IMPORT: --ifconfig/up options modified
2023-12-22 17:55:01 OPTIONS IMPORT: route options modified
2023-12-22 17:55:01 OPTIONS IMPORT: route-related options modified
2023-12-22 17:55:01 OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
2023-12-22 17:55:01 ERROR: Failed to apply push options
2023-12-22 17:55:01 Failed to open tun/tap interface
2023-12-22 17:55:01 Converting soft SIGUSR1 received during exit notification to SIGTERM
2023-12-22 17:55:01 SIGTERM[soft,exit-with-notification] received, process exiting
It sats something like this
Are you using sudo?
yes
How long does it take for thm to increase ram on you virtual machine?
Wdym?
I created vm but it is very slow and mysql service won't start because there is not enough ram
Did QA tell you they were going to raise the RAM?
I just emailed thm and got bot reply
On site thm says that if I want to have more ram I need to email them
kali
Ah, if that's the case then it will be a longer delay, as support is busy with AOC, they need to then speak to QA.
Which country do you live in?
south asia
Can you take a screenshot of the full output?
vm slow for you guys as well?
Which command are you using?
Which server?
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
Can you cat your config for me please.
I thought you were Windows?
Oh!
It might be that that is causing your issue.
WSL is poor for networking.
now it started working.
dont know how.
I had presviously installed in regular it didnt work then i tried eu regular 1 it too didnt work
again installed using in regular and yeah it worked..Thanks @weary spindle
Ragrding your DM, I live in Scotland.
i saw you have written dfir student so was curious ..
Yes please
Hi i'm having an issue with a possibly malformed file in a room tiket : #17362
is there someone that could reach me in PM ?
3rd year of Uni
you don't need to contact suppport friend, just tell us in detail your problem here. ๐
it's related to something i shouldn't talk about, but i'll try staying safe about it. I think i have a problem either with my attackbox/kali linux (thm machines) drivers or with a room supplied file that is actually malformed
i did try the file on my personal machine but running windows i don't actually know if it is fully compatible with what i'm doing
same problem about malformed packets
Why can't you talk about it?
The attackbox and target machines all boot up with the same files etc.
it's about the sidequest
Ah, right.
Got you.
SQ4?
nope actually sq1
the other seem to work just fine
maybe is just me but i just want to be sure about it
I can DM you mine?
If you show me you're in the room. ๐
Maybe it's happening when you're downloading.
@fast gorge have you been able to sort out your issue? I am having the same problem for weeks now
sudo openvpn Downloads/TheHood.ovpn
[sudo] password for kali:
2023-12-22 11:02:09 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2023-12-22 11:02:09 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-12-22 11:02:09 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2023-12-22 11:02:09 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-12-22 11:02:09 library versions: OpenSSL 3.0.10 1 Aug 2023, LZO 2.10
2023-12-22 11:02:09 DCO version: N/A
2023-12-22 11:02:09 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2023-12-22 11:02:09 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-22 11:02:09 UDPv4 link local: (not bound)
2023-12-22 11:02:09 UDPv4 link remote: [AF_INET]18.202.129.195:1194
2023-12-22 11:03:09 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2023-12-22 11:03:09 TLS Error: TLS handshake failed
2023-12-22 11:03:09 SIGUSR1[soft,tls-error] received, process restarting
2023-12-22 11:03:09 Restart pause, 1 second(s)
2023-12-22 11:03:10 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2023-12-22 11:03:10 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-22 11:03:10 UDPv4 link local: (not bound)
2023-12-22 11:03:10 UDPv4 link remote: [AF_INET]18.202.129.195:1194
Whcih country
Which server?
โโ$ sudo openvpn Desktop/"erhan1209 (1).ovpn"
[sudo] password for kali:
2023-12-22 12:59:34 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2023-12-22 12:59:34 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2023-12-22 12:59:34 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2023-12-22 12:59:34 library versions: OpenSSL 3.0.11 19 Sep 2023, LZO 2.10
2023-12-22 12:59:34 DCO version: N/A
2023-12-22 12:59:34 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2023-12-22 12:59:34 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-22 12:59:34 UDPv4 link local: (not bound)
2023-12-22 12:59:34 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2023-12-22 12:59:34 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=769fad22 c469d841
2023-12-22 12:59:34 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
Server: Eu Regular 1
Tested in both Linux and Windows
Windows Version says: Peer certificate verification failure
Which country you in?
Turkey
@cinder rose had the same issue. Choose another server and regenerate the Ovpn profile
EU3 gave me this error. EU1 worked
EU1 worked for me
eu2 is not working
EU3 is not working currently, but all of the other servers should be fine, if it is still not working for you on EU2 then it is probably a client side issue. From a quick google search it does seem like many VPNs are blocked by ISPs in your country which could be the issue. You are making sure you are regenerating the VPN file before downloading it right?
It's not blockin issue for him: VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
had the same like 2 days ago with EU3. Switched to EU1 and regenerated and worked fine
yes im regenerating them before test
You could try the VPN troubleshooting script then https://github.com/tryhackme/openvpn-troubleshooting
can I get a new IP?
What are you doing?
word..
Free users also.
anyway.. last year dude wrote all through my notes.. sigh...
On THM?
If you think someone access your VM, why didn't you contact support?
Isn't that what Im doing now..
I don't know, you need to contact via E-mail.
Thanks I'll write to them.. But..They wrote a few notes in my notes.. no biggie.. I wasn't very active then so didn't care much.. But now again.. I dunno..
I mean, if you're sure they got on your network via your tun0.
was a system setup only for thm.. so yeah pretty sure..
I mean im not going to pretend I know all the inner workings of THM network.. But I also know its pretty common here through discussions I've had..
Anyway.. thanks for your time..
Well you can see other users connected to the vpn, but it is against TOS and also probably illegal to attack other users and THM is monitoring the networks so that stuff doesn't really happen.
THM know when somebody scans another users tun0
It's all recorded.
I've mentioned to staff anyway.
... Well I didnt' write "Ohh I see your taking notes like a good little hacker" on a laptop I only use for ctfs and only use thm.. I'd like to think it'd be harder to exploit than on the boxes.. But I've never tried to hack other members.. so ...
But again.. thanks.. maybe Im just paranoid, but wanted to throw that out there..
ive done a ping scan on 10.10.10 just to see whats there and i have loged onto boxes others have up to help them , but never uninvited
Yeah I have checked out other launched boxes that I didn't launch myself to help troubleshoot, nothing else though
Don't scan the network.
Please don't scan boxes you haven't yourself deployed
And you shouldn't need to log onto boxes to help users, if there's an issue with a machine and terminating it didn't work, please report it to a community helper or a staff member ๐
Hi everyone. Pls I've been having this problem right from the time I started using tryhackme. I've tried solving the problem with every method I know but I keep on getting that error message.
Kindly help plsss๐ฅบ... cause I'm tired already ๐ฅบ
Ignore the butterfly sticker pls
hello! need a bit of help with OpenVPN, not sure if its possible here
I know it's an unrecommended platform, but i'm having trouble with connecting on Arch Linux, specifically on the Artix distro at the moment
just keeps cycling with this error about TLS, here's a screenshot of it
ah, wait. for some reason, i can't actually post screenshots
You have to verify then you can post screenshots.
i swear i've already verified, damn it. i'll look into it in a minute
in the meantime, this is what the terminal's spitting
2023-12-22 22:38:50 us=37672 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=d94953be 2940d8ef
2023-12-22 22:38:50 us=380159 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2023-12-22 22:38:50 us=380229 OpenSSL: error:0A000086:SSL routines::certificate verify failed:
2023-12-22 22:38:50 us=380238 TLS_ERROR: BIO read tls_read_plaintext error
2023-12-22 22:38:50 us=380246 TLS Error: TLS object -> incoming plaintext read error
2023-12-22 22:38:50 us=380253 TLS Error: TLS handshake failed
2023-12-22 22:38:50 us=380380 TCP/UDP: Closing socket
type /verify add token from your thm profile page.
ahhh, right. right. the verification with TryHackMe's discord token
that, i have been putting off for a while now. i'll definitely be going to do that sometime soon
thought you meant Discord account verification with phone number, apologies
anyone got any ideas?
Can we see the entire openvpn output, this is just a section of it yeah?
sure, i'll re-run and grab it in a second
it's just a section, but it's all that's erroneous with it
ah, hold on
i might've fixed it by changing servers, apologies. everything's working perfectly fine now
Ah alright, glad you got it sorted out
EU-Regular 3 was not agreeing with it for whatever reason
Eu_3 is not working right atm for anyone
ahh, damn. so it definitely wasn't me distrohopping that broke everything, good to know
hope it gets fixed for everyone's sake soon though, yes
Does anyone know why the "Payment Pending" is taking forever? After ten minutes assumed the transaction failed so i refreshed and tried again. Checked my account and there are now two transactions but I still do not have access.
contact support over email... not much we can do here
@hybrid fossil
Hello, could someone help me with my openvpn, it keeps failing and returns this error, thankyou
2023-12-22 19:27:29 OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.
2023-12-22 19:27:29 ERROR: Failed to apply push options
2023-12-22 19:27:29 Failed to open tun/tap interface
2023-12-22 19:27:29 SIGUSR1[soft,process-push-msg-failed] received, process restarting
2023-12-22 19:27:29 Restart pause, 1 second(s)
are you running it with sudo or as root???
Yup, I'm running it with sudo
okay then try running this script: https://github.com/tryhackme/openvpn-troubleshooting
in the same folder you are storing the ovpn file
hopefully it will fix it... if not come back here
Tysm, it's working now ๐
My openvpn keeps disconnecting can someone help?
I tried troubleshooting but isnt helpful
Cant ping 10.10.10.10
every time i try to login in for the tryhackme ssh with the linux fundamental part room or any of the 3 it freezes and not let me type when it ask for the password
Would probably be better to send a screenshot next time, but that looks like a working OpenVPN output.
What do you see when you run ip a?
Its just very temperamental
1 min its working the next its not
Been like that the whole way through AoC
Hmm, do you have more than one VPN running that could be messing with it?
I just switch servers and hopefor the best
Nah I just use kali VM on 1 host machine, no attackbox nothing
Could try and lower the mtu sudo ip link set dev tun0 mtu 1200
hello is there anyone that can remove my thm discord code from my old discord
so I can connect it to this discord profile, thank you
You'll need to ask a mod nicely.
suprisingly, i didnt downloaded that but i tried vpn in my mobile and it worked so now i tried it in vm, it is working too (im in eu regular 2 now) thank you anyway
Gave +1 Rep to @gleaming flume
hello guys
How does the discount work?
You are not refunded for the first month, but you do get your money back.
For the annual discount it will look something like this:
First payment: $126 (ยฃ108)
Second payment: $75.60 (ยฃ64.80)
Any payments after that: $100.80 (ยฃ86.40) Est.
guys i am not understanding this
You'll get double discount on your second year of subscribing.
can anyone explain, if i am buying the annual subscription, why there is second payment?
i will only buy for 1 year
Yeah, and after that year runs out, you'll get another year for the second price.
so monthly is better right, if i take for only 1 year
No, because you pay more.
because i will also get the student discount , and don't have to wait for the discount
for another year
This is better for support to discuss with yourself.
They will be in a much better position to answer your query.
Hello, I'm trying to connect to the vpn on my kali but I get this error:
^X2023-12-23 06:36:44 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-12-23 06:36:44 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2023-12-23 06:36:44 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2023-12-23 06:36:44 Socket Buffers: R=[212992->212992] S=[212992->212992]
2023-12-23 06:36:44 UDPv4 link local: (not bound)
2023-12-23 06:36:44 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2023-12-23 06:36:44 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=6cad3020 50aaf5f3
2023-12-23 06:36:44 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2023-12-23 06:36:44 OpenSSL: error:0A000086:SSL routines::certificate verify failed
2023-12-23 06:36:44 TLS_ERROR: BIO read tls_read_plaintext error
2023-12-23 06:36:44 TLS Error: TLS object -> incoming plaintext read error
2023-12-23 06:36:44 TLS Error: TLS handshake failed
2023-12-23 06:36:44 SIGUSR1[soft,tls-error] received, process restarting
2023-12-23 06:36:44 Restart pause, 1 second(s)
^C2023-12-23 06:36:44 SIGINT[hard,init_instance] received, process exiting```
Are you using Eu-Reg-3 ?
yes
Yeah, please switch to 1 or 2.
it works thanks.
Hello, I'm not able to login to the website. When I enter my email and password and click login, I get the "The Captcha test has failed. Please try again." error. However, there is no captcha test displayed at login time. Anyone know the fix? I have tried on chrome and firefox both )cleared cache and cookies.)
Can you try it on a different browser.
i tried brave browser as well but it didnt work. I rebooted my router and noticed that my public ip changed and now im able to login. thanks.
Gave +1 Rep to @weary spindle
Hello, I subscribed for a month using my friend's credit card, and the next month it automatically renewed. How can I refund and stop the subscription?
you can cancel the renewal yourself in profile.
You need to conact the E-mail about any potential refunds.
okey thank you !
If tryhackme didn't reply to my email, should I send email again?
If it's > 7 days, yes.
they very busy right now
can anyone help with this issue
How long have you waited for the service to start?
The message is pretty explanatory. It's not ready yet - you need to wait a bit longer. Kibana especially on THM can be usually from 5-10 mins ๐
I couldnt find a different channel that may be more appropriate but theres a chinese user in here distributing a .apk malware file to users
I've pinged mods, thanks.
Gave +1 Rep to @glad tide
Also for clarity, Iโm not dumb. I always engage scammers and bots like this to see what theyโre peddling haha
Can you give their ID?
lol isnt this the exact wrong place to try that
You'd be surprised.
not saying people wouldnt fall for it , just that the scammer wont last very long
It's more than likely a bot joining random servers and spraying DM's.
1145989479019073597
It was a pretty personable bot, it may still be but it responded pretty well and specifically to my conversation trying to just get them to drop whatever they were peddling
@opal tundra
It doesn't look that personalised.
they got their own url wrong smh
Unless you've cut the conversation short.
While they're breaking the no dm rule, it doesn't look like they're distributing a malware apk @glad tide
music is a vibe too
Iโll show you the execution stuff when I get home in a couple hours if itโs alright that I DM you
It farms all the data on your device and network including background listening on mic and all sorts of trash
I got some issues on the site, my answers are marked as correct, but not persistent (after reloading the page answers are empty again) and chapters as a whole do not complete. Is this a known issue?
Didnโt realise it before but seemingly also made me break my streak before reaching the 30 consecutive days:(
never experienced this one wish you the best of luck figuring it out.
First guessed it to be a browser or plugin issue, then excluded this and network issues but canโt get rid of it still
Oh also I can start machines but not terminate them, interesting behaviour
I got given a subscription code by my course instructor, but I already have an account. How do I use this code to upgrade my account to premium? I can't find anywhere I'm supposed to put this in
i dont know (maby a monitor will hop on ) but i would suggest going to the sign up for premium page and see if their is a place for a code (normaly in cart ? )
That's where I have looked so far, and also googled to see if there was any info about subscription codes, found nothing
Logged out to try seeing if there's anything on account creation, didn't see
ping a mod - i dont know how .. type / and see what happens
you may also need to email support
Got it, thanks
sweet !
Does anyone know that the occupation section is for under account settings?
Nobody sees it.
Ah ok, is there a reason for it or is it just for internal use?
Not sure, I don't use it.
Hi. I have website which requires a password/key to download the content. Who can help me? The website was created by a Chinese person, maybe it's easy to bypass it. I don't know anything about RE and I can't do it myself.
btw. someone know how to check private messages with banned discord user?
This doesn't seem to be a THM-related content. You are aware that it is illegal to attack systems without the requisite approvals or consent, right?
what THM room is this for ?!
May a mod please remove my thm code from my old discord profile
Hi, I need help. I got a question. There was a typo on my name on the certs, so I changed my name in the setting but when fetching the certs the update did not change the name on the certs
You cannot change the name on the certificate once it is generated unfortunately. You'll have to use outside means to update it accordingly. However, as you have corrected your name, the succeeding certificates you will generated will have your correct name in it.
Thanks for your reply, it's a painful truth. I really thought I could change it on the certs too ๐ข
I got a problem when I connect to the machine with my Mac. I connected to the OpenVPN server successfully, but I couldn't get a response from the machine. But I did this perfectly on my Windows PC. Anyone can help? thanks a lot!!
So if I have only used the attack box for 30 mins as a non subscriber I should be able to start it back up right? Am I mistaken? I wasn't able to start it back up immediately after closing out
No.
You get one boot up or 60 min(s) time.
can someone tell me how i can get the certificate of advent 2023
Holy spam city.
Not yet, soon :tm;
can i close "payment pending" tab? cause it's been 3 hours since i bought premium, f*cking annoying. i won't keep my pc turned on, until my payment will be confirmed ๐
Heโs you can close the tab, it can take anywhere between 12-24 hours to process
It will happen automatically
okay, thanks ๐
Gave +1 Rep to @bronze vale
Do we get a streak freeze for Christmas day?
No
I did not get a certificate for finishing AOC2023z anyone else have this issue? TY
Iโm having issues accessing the last survey.
It just times out.
Has anyone been able to fetch the certificate? I got the badge but not the certificate so I'm a bit confused
No one has gotten the certificate yet, they will come soon @wise gale @stone totem #1174347459116417054 message
any fix for a file in the attackbox being empty? waited 24 hours to create a new attack box and its empty again
17 Days and still i got no proper support for my subscription issue.
Have you sent THM Support a follow-up? They have been busy due to the AoC event plus they don't work on weekends.
Which file are you referring to?
of course
How often have you sent them an email during those 17 days?
First i sent mail about issue then they asked me info about payment and etc. a week ago so i replied the mail and nothing
greedykeys.txt on day 23 thanks
Gave +1 Rep to @ivory spruce
I'll check when I get the chance today and get back to you.
thanks a lot
Gave +1 Rep to @ivory spruce
guys i finished advent of cyber security and didn't get the form of downloading the certificate why?
Certificate? I was completed that just got the badge . Is that your mean certuficate?
There is a certificate for completing the event
troubleshooting program returned this <MTU value failed at 1000, aborting MTU check
. What can I do to fix it?
The site has a flag that says I'm in the uk ๐ฌ is there a way for me to change that.
I most likely made a mistake somewhere
https://tryhackme.com/update-timezone
Visit this link to your dashboard.
bestie what is that link ๐ค
https://tryhackme.com/api/user/update-timezone
It's this link.
Do you have a vpn on?
The link will take you to your dashboard, then check your profile
Thanks it works
Hi guys. I hope everyone is doing great. I am new to Cyber Security and try Hack Me platform. I am facing an issue when trying to connect to Open VPN for rooms access. Can anyone help me out?
Most of the time, it doesn't connect, I have tried with almost every server but I get timeout error or other errors even when my internet connection is working fine. I can share the log chunk if anyone can help me out.
What is the error you are getting? What is the OS you are using to connect to the THM OpenVPN?
I am using Windows 11,
Error: โ[Dec 25, 2023, 23:30:32] Transport Error: OpenSSLContext::SSL::read_cleartext: BIO_read failed, cap=2640 status=-1: error:0A000086:SSL routines::certificate verify failed
โ[Dec 25, 2023, 23:30:32] EVENT: DISCONNECTED โ[Dec 25, 2023, 23:30:32] EVENT: CERT_VERIFY_FAIL OpenSSLContext::SSL::read_cleartext: BIO_read failed, cap=2640 status=-1: error:0A000086:SSL routines::certificate verify failedโ
are you using the eu reg 3 vpn server??? check on the access page... if you are it is currently kinda broken so the recommendation is try another vpn server
@plush bay
ello ello
Ello
So , I connected my openvpn to ip and started doing KOTH
But I can't see the web page on my browser
I can connect and scan and do other stuff but I can't see the site
not sure all koth machines have an web server on port 80... but nmap would tell you that
sooo try this: https://github.com/tryhackme/openvpn-troubleshooting
possible it is the MTU problem
No I have faced this problem before
It's same for all machines
Even tho let's me try this
yeah then check the troubleshoot script
Okay
Amm it's asking for config idk what to specify โน๏ธ
Is it VPN config file ?
yuup the ovpn file
it would find it itself if you placed the script in the same folder as the ovpn file
Ok
Still not working
Same issue
what does the script tell youj????
What do I do now : (
oh...
well dunno then
just maybe setting the mtu manually to 1200 might help but doubt it if the script says everything is okay
How can I do this
I should try that
sudo ifconfig tun0 mtu 1200
yes I am using that version
@plush bay tried the version pinned in this channel. It worked. Thank you
Gave +1 Rep to @plush bay
I have another question. If we are using OpenVPN to connect to THM network, can we access Attackbox terminal by any method?
The notification "We're making improvements to TryHackMe, and some pages may look slightly different than usual. Click here to learn more."
wont disappear, even if i cleared it like 5 times already
well technically there used to be ssh creds for the attackbox you could use to connect to it after pressing the info button and being connected to the vpn... not sure if that is still there
Thank you so much that's very helpful. Will give it a try
Gave +1 Rep to @plush bay
this is assuming you can't run your own kali linux vm and use that instead
hello is there a way to make trychackme dark mode?
i wanna scoop my eyeballs out i cant stand it
tjhanbk you
I currently don't have that. Do you suggest that I install a VM and install kali Linux ?
Speaking of Linux distribution which one is better for someone who doesn't have prior experience using it Kali or Ubuntu or any other?
Kali isn't designed to be a daily driver, but is convenient, in a way, to use as most of the tools you'll need are already in it. However, where you can, having an Ubuntu to be installed only the tools that you require is much better.
Hi guys, I have a genuine question, I have no prior knowledge of programming or hacking, but I wanna learn to hack specifically, any suggestions on how ya'll started ?
Got it thanks ๐๐ป
Gave +1 Rep to @ivory spruce
help, I can't set up OpenVPN. When I try connect an error appears:peer certificate verefication failure
not able to access this room
page is not loading
Im not sure if this is the right place or I need to be in #room-help or smth, but its more of a general question. I have access to a VM so I dont need to use an attackbox. Im going with the example of https://tryhackme.com/room/threatinteltools but it is applicable in other circumstances. In this room, we have emails that we need to analyse. One of the tools given is Phishtools, which is a tool on the internet. This machine does not have access to the internet (mentioned in the description), and it is not required to use this tool to finish the room. Is it possible to get the files or something on my VM, so I can analyse them using Phishtools?
So basically my question is, how can I access things such as files that are on a VM from THM, so I can use them with tools on my own machine. Please tag me in the response.
help, I can't set up OpenVPN. When I try connect an error appears:peer certificate verefication failure
You can use: