#site-support
1 messages · Page 53 of 1
Thank you, now I know what part of my notes I need to look at 🙂
Gave +1 Rep to @ivory spruce
help, I can't set up OpenVPN. When I try connect an error appears:peer certificate verefication failure
https://help.tryhackme.com/en/articles/6496058-troubleshooting-openvpn-on-linux-and-mac
I remember when I tried it, I think I got something similar and had to switch the server I was connecting to because the automatic file generated had an error in it
Which server?
Which os?
Configuration file from TryHackMe, Windows 10
Did you download the community downlaf for openvpn
Did you get your config from https://www.tryhackme.com/access ?
Yes
Whihc config did you download?
From the site try hack
There is multiple to choose from.
I click download my configuration file, vpn server eu-reular-3
That helps 🙂
Eu reg 3 is broken, can you try 1 or 2?
I try 1 and 2 and I get error
But I can do it again
Which openvpn client you using?
Free?
https://openvpn.net/community-downloads/
This one?
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
Try that one 🙂
Ok
Version 2.6.3?
Yeah
Ok
Thanks Thanks thanks 👍👍👍
Gave +1 Rep to @weary spindle
is there a limit on number of friends that we can add ?
did i verfy my account ? how do i know?
,, i did /verify <token> .. this message appears Unknown Integration
Hi, I need to speak to a THM Staff privately please. Il found something surprising on one of chall
@glacial hound
You will see this on your profile once you have verified
Are you using the token from your THM profile?
@bronze vale Hey Jabs, you around? Might be an issue with the bot
@zinc gull are you on PC
no still
DM me a screenshot and your token please
@glacial hound or another THM staff member, would you be available ?
when i DM someone , this happens <Your message could not be delivered. This is usually because you don't share a server with the recipient or the recipient is only accepting direct messages from friends. You can see the full list of reasons here: https://support.discord.com/hc/en-us/articles/360060145013 >
Hi, what do you mean by "something surprising"? Which challenge are you referring to?
You can DM me if you want 🙂
Hello. I was just wondering if anyone has any idea how long it takes for a room to be evaluated. I know there's a long queue, but any estimate? I'm going on 8 months now, so mostly just curious. Thank you ☺️
for new daily driving of linux shadow recommends the following:
linux mint
pop os
ubuntu
in that order....
for hacking distros to use in a virtual machine for stuff like tryhackme and other ctfs:
kali linux ( which is the industry standard for this )
parrot os ( made by the hack the box people or at least heavily supported by them )
black arch ( if you wanna use something based on the arch linux distro... though it can get tricky )
enable mutual server dms
Reason for unlinking?
Thank you so much for putting so much effort in answering my question. Really appreciated. Thanks a lot
Gave +1 Rep to @plush bay
Mhm
Howdy - perhaps I missed something but I have the Premium Annual subscription which states that I can " Enroll in all learning paths". I tried accessing the Attacking and Defending AWS path and its saying I need to pay for an add-on of over $400 USD for 3 months. Is this correct?
verified 🙂
Hi everyone,
Do I still need to put my mtu value to 1200 when connecting to the vpn ?
Cool - is there a list of what the Premium & Business rooms are? In my account, there is no distinction which led to my confusion...
Go to the search tab and you can filter by free, sub only, and business only rooms
Hmm...okay @gleaming flume and trust me when I'm not trying to be pedantic but...my subscription level is premium. The search field doesn't even mention premium. When I search for business , I only see one room. When I search for subscription, I see the AWS rooms and when I click on them, I get prompted for the additional fee menu.
Premuim == subscription.
So if Premimum == Subscription, why is Subscription prompting me for additional costs which is apparently Business?
Because it's not exclusive to business users anymore, and is a separate subscription price (like throwback) due to the cost of the path.
And as a customer...how I am I supposed to ascertain that from my purchase? Again, not trying to be difficult but I'm getting a vibe that I should have somehow known this already...hence my confusion.
It's only very recently been changed, and THM haven't had time to put out the announcement on Discord, it can be found here though https://x.com/realtryhackme/status/1739671941663924523?s=46&t=aFtH5ZqLKvg2fQtYtY2lUw
Sigh. Well, this was announced AFTER my purchase. Its not a big deal (since the price was inexpensive) but annoying...I'm a CISO auditing plans for my team (we are solely AWS and currently using SANs, Offsec, etc.) so was excited to see this but I guess not. lol Okay, thanks for the clarification.
Gave +1 Rep to @weary spindle
Oh...the announcement was like two hours ago. lol wow EDIT: To clarify it == announcement of additional $400 add-in cost to premium subscription
Hello everyone, it’s been a moment since I didn’t connect to my thm account and now it doesn’t recognize my ids and password. I even try to change them but not working. I contacted the support so many times but no one is able to respond
Hello, I purchased Premium 4 days ago, but it never went through on the website. I submitted a ticket and it hasn’t been picked up yet. Just wondering if support usually takes this long or it’s just because of the holidays, and if I will receive my 4 days or however long it takes compensation because the payment already went through on my end.
Someone should help me solve this problem I've been having all this while. My Kali is not connecting with tryhackme 🥺
U on the vpn?
Is the username correct?
Hello, im in the MISP room and the lab: https://lab_web_url.p.thmlabs.com/ is timing out and not loading at all. any info?
You need to start the task, normally in task 1.
ok, so i went through tasks 1 and 2 both had no questions just verification of completion. Green checks on both. Is there another prompt im missing?
Can you link the room?
Yeah, task 3.
Press the start machine button
im in attack box now
ahh its loading now, maybe the site was down idk
Oh crap, wrong response, sorry to whoever I pinged, but yeah get level 0xC for red lol
Hello, I'm a student, I would like to subscribe for premium, for 1 month. How do I get the student discount?
Check the above link please. 🙂
Thanks a lot.
hey, I have a problem with the VPN (I tried to regenerate my file but it's not working anyway) I'm using Kali linux in WSL 2, and I get that message :
2023-12-26 19:42:22 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2023-12-26 19:42:22 OpenSSL: error:0A000086:SSL routines::certificate verify failed:
2023-12-26 19:42:22 TLS_ERROR: BIO read tls_read_plaintext error
2023-12-26 19:42:22 TLS Error: TLS object -> incoming plaintext read error
2023-12-26 19:42:22 TLS Error: TLS handshake failed
2023-12-26 19:42:22 SIGUSR1[soft,tls-error] received, process restarting
are you on the eu regular 3 vpn server??? if yes try another vpn server
not at 0X5 (click your name) - do more rooms , go up in rank and discord will catch up (sometimes takes overnight)
Yup
i would suggest a new opvn file - i just tried on my wsl 2 and im not having any issues (wind 10) 2023-12-26 13:58:04 TUN/TAP device tun0 opened 2023-12-26 13:58:04 net_iface_mtu_set: mtu 1500 for tun0 2023-12-26 13:58:04 net_iface_up: set tun0 up
i havent seen an 0X0A 0r 0B , but im guessing thats next after 09
lots of c and d's
im trying to figure out the relationship of "points" to , rooms? questions? .. doesn't seem like a 1:1 correlation
Challenge rooms offer 30 pts per question that need an input, blood points for new CTF's.
Info/walkthrough are 8 pts a question, no blood points.
Some rooms offer no points at all.
some rare challenge rooms rewards more then 30 points a question
Yup, xmas is over, so I've removed my xmas pfp 😄
see for example the alice in wonderland series or the year of the animal series
Back to my preferred pfp
shadow changing their pf back after 13th day yule
or if they feel like it right after the new years
does it say what each room is worth somewhere or is it a before/after thing (looking at points) because i've seen # of people who have joined the room but nothing about the points
for the special rooms there is a green box with +number for how many extra points said question gives
TY
Gave +1 Rep to @plush bay
no problem
Yes🥺 sorry for the late reply
Actually 😊
@weary spindle the username is correct
The the only thing we could possibly to was change your MTU, but we can't do that until you're having the issue again
This is not the first time I've been having this issue.
https://tryhackme.com/room/linuxstrengthtraining
This is the room I'm currently working on
sudo ip link set dev tun0 mtu 1200
Try that in a new terminal.
With the VPN on
Ok I'll do that RN
Ghost ping?
@weary spindle Permission denied
Do you have the VPN running and entering the correct password?
Yes
Can you run ip a | grep "tun"
Strange how the previous command isn't working
What should I do now?
@bronze vale Hi there, I am trying to verify my THM account with discord using this article: https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account. However, the TryHackMe bot always displays a 'The application did not respond'. The article told me to ping you in the server, so could you please help me fix this problem?
Here is a screenshot:
dw I can view it from here
ok
try now
It works now. Thank you very much
If you are using WSL it could be because of this
@slim shadow pls what's WSL?
Windows Subsystem for Linux
Is that what you have?
Hey fam. Is there anyway to change your name on any of the badges for sharing purposes? Thanks!
basicly running a Linux layer (terminal) on top of your Windows environment. Pretty useful for a lot of reasons 🙂
And terrible for networking
The form used to set 'Occupation Details' account information in my THM profile seems bugged.. I fill in every required field, click Save Changes and it will say 'businessEmail is required.' every time. Then it even resets the Company Name and Job Title fields even though I had those filled in too.
still no premium on my account, i bought premium on a 24 december. annoying af
Email support@tryhackme.com
Support isn't provided via the discord so unfortunately no one here can help you.
okay, thanks. email sent!
Gave +1 Rep to @eager fulcrum
Is it possible to disable internet access for the attack box
You can choose not to use the internet? Or do you have a task or room you're working on where you do not want internet access (though it is available for subscribers only)?
Hello, I was trying to use openvpn to connect to tryhackme but the process keeps freezing at “Protocol options: explicit-exit-notify 3” I searched it up online but I haven’t found any solutions and I was wondering if anyone else has the same issue?
Send a screenshot of your full output?
@onyx swan
I’m on my phone so I can’t currently but let me try from my pc
the channel wont let me but let me paste it here
Mhm you need to verify your account^
I watched many tutorials as I am not that familiar with discord but I cannot seem to find the verify button anywhere on my settings
Type /verify in the text box
I did, but earlier it froze
Once you have typed the connection command, you just leave it
Open a new terminal window
It hangs ("freezes") because that is the connection staying open
I see, but when I go to tryhackme it doesn’t say I’m connected
Instead of backgrounding it will just stay in the terminal. Then, when you're done, just CTRL+C in the terminal to close the connection
Ignore the access page, type curl 10.10.10.10/whoami into your terminal, if you see an IP address you're connected
I have a question about friends on THM. I no longer see one of my friends in the list but they still see me. I tried adding them back as a friend but I get a message Uh-oh! Friend request already sent. They don't have an email to accept my friend request so I'm not sure what to do.
Is there a way to see them in my friends list again?
Having an issue with walking an application in jr pen tester and I start the attack box wait 2 min then try using url given to me and it keeps saying 504 gateway timeout
Having an issue with account I paid for premium was double charged and still don’t have premium it’s asking me to subscribe I submitted a ticket a day ago and still nothing? Any help?
We can't help here, your ticket is the right way to go and you're just going to have to wait for a response from them. It may take up to 7-9 business days because they are busy this time of year
Is there something I shouldn't do when using the machines? I've had to restart them several times now because either kali or the other machine will shit the bed and i restarted both of them a half hour ago. I know I shouldn't let one run out because even if I restart it the other won't connect to it and i still have problems even when i extend the timer. This is on question 22 of OWASO top 10 2021 and i dont know if the listeners or burpsuite are crashing the machines
Don't open the link in the attackbox.
Open it in your host, if you want to use attackbox just use the ip
Hello. I earned the Cyber Event badge, and beforehand, I changed both my full name, and even my username, to match my real name so its visible on the badge. However, whenever I try to share the badge, and its thumbnail pops up, my previous (original) username is only visible. But clicking the thumbnail, it changes to my name. Any mod able to fix this? Thanks! (tried the support chat on the site, but didnt get anywhere)
Hi, I'm not able to connect to the machine in "Windows Fundamentals 1", I get a connection error. Is anyone else having the same issue?
What kind of error??
"The tryHackMe remote server is not currently reachable. Please check your network and try again."
There are no issues with my network 🙂
I am not using RDP but the webinterface
Just tried to shut it down and start it back up again, didnt help
Screenshot?
hm, trying to figure out how to upload a picture 🙂
Maybe u need to verify your thm account on discord if u haven't already
Ah, no I have not, I'll hav a look into that, thanks
There is a token in your thm account
Go to profile of the thm u will find it out
The TryHackMe Discord Server
Do u have attackbox open in 2 places ?
Two different windows won't give that error.
No, not that I am aware of at least. I just started my computer and havent been on any attack box since yesterday, and that was a Linux one
forgot to use reply to 🙂
I'll shut it down an try in a few hours again
thanks!
Not exactly that solution but why don't u use your own machine with openvpn?
hello, I am doing Windows- Lateral Movement and Pivoting-Abusing User Behaviour . I cannot get the credentials at http://distributor.za.tryhackme.com/creds_t2 to start the task. The network state is running and started. openvpn is on. Had no issues connected with the network until now. Cant connect to server...
If it's not on the list, no.
hello guys, I resumed my premium subscription, i was debited 1 week ago and i still dont have premium on my account; the support isnt answering
do you guys have an idea ?
The THM Support Team's standard response time is at ~8 to 9 working days at the moment, but it should go down as the AoC event is almost over.
okay, thank you
Gave +1 Rep to @ivory spruce
Also, please do not send a follow up until the said duration has passed as it will push your ticket down the queue.
okay 😉
Hi everyone. Please I need help. I'm getting frustrated.
I am having issues connecting with openvpn to the THM network. I have tried so many things but it still does not work.
This is a screenshot of my running the THM openvpn script and the openvpn command. The key error is TLS key negotiation failed to occur within 60 seconds. I have regenerated and downloaded multiple configuration files. I have also changed servers several times. I have sent an email to the support team. Nothing seems to help.
What can I do please? Anyone faced similar challenge?
What VPN server did you use when connecting here?
I primarily use EU Regular 1. I'm from Nigeria
But I've tried all the others as well. Still the same
Anyone please?
It could be that the country or the location you are in is blocking VPNs
I doubt that. I am sure Nigerians are here that have been able to connect successfully.
Any Nigerian here can validate this please
Well it doesn't have to be the country, maybe it's the location itself, e.g. if you are living in a student hostel, they might block the UDP port 1194
Doesn't apply in my case.
Ok, but that's the most likely case there, that something is blocking that port, given the VPN output you provided
Hmmm. So what can be done?
I would try to contact the ISP asking them about it
Hi, according to your screenshot, it seems that your mtu is set to a value that is causing a problem, if you reduce the mtu value, i think it will work
try these steps :
- Open the OpenVPN configuration file with a text editor
sudo nano /path/to/your/file.ovpn - Add
tun-mtu 900to the end of the file, just before the </tls-auth> tag and save (ctrl+X)
I trying in Maldoc room but when i use show split view, I always receive a white screen.
Thanks for the help. I've tried this but it doesn't work still
Gave +1 Rep to @polar copper
I trying in Maldoc room but when i use show split view, I always receive a white screen.
Can anyone help me use this feature, pls ?
Is the error about MTU gone now, or changed? 'Doesnt work still' does not give us a lot of information to work with 😉
Ok let me run the script again
I just ran the script again. MTU value is still failing at 1000
Have you ever successfully connected and this has just started? Looking at your screenshot, I saw the THM script above it and wondered why you were running that, or if you had previously connected and had that as part of a room
is that a troubleshooting script?
In order for this to work, he has to be able to establish a successful VPN connection which doesn't seem to be the case here.
So, the story to this is that I have faced this issue before and sent an email to support. That was how I even came across the vpn script cos I had to do extensive research to know how to solve the issue. But few days ago, I was able to successfully connect and I thought everything was fine. However, I was scared to disconnect the connection because I didn't want to jinx it. Unfortunately, I had to shut my system down and when I tried connecting again today, the issue started. I ran the VPN script intentionally because I knew that would be one of the steps that would be suggested.
I'm leaning towards @crystal marlin's theory of port blocking by the ISP because I usually try connecting to the network when I am on office network. So, maybe such connections are blocked. And the only time it has worked for me was when I was at home, using my home network. What makes this puzzling now is that I disconnected from the office network to my own mobile hotspot, but the issue still persisted. I might have to wait till I get home to try my home network again, but I am worried that it may still be the same.
Update: So I just tried it on my home network and it works. To think this was the issue is so annoying. Funny enough, the mobile hotspot works also. Thanks everyone who contributed to helping solve this.
vpn and any connection that uses encryption needs all clocks synced - WSL stops the clock when going to sleep - some other vms will also
and isp's shouldn't block any vpn connection - well at least in the states , dont know the laws everywhere
Is there a way to change my subscription from the monthly to the yearly?
The command above is made up of the following parts:
gobuster is the terminal command to start Gobuster
dir uses directory and file enumeration mod
--url http://www.onlineshop.thm/ sets the target website
-w /usr/share/wordlists/dirbuster/directory-list.txt specifies the word list to use
In the terminal on the lower right, run the command shown above. This command should let you discover the hidden page(s) in an automated manner.
Screenshot of the terminal that appears on the lower part of the static site
If you made it this far, congratulations, you have just discovered the hidden page using two different approaches!
Answer the questions below
What is the name of the hidden web page you discovered?
Answer format: *****
I'm having lots of trouble with this one
In SMB room, Even though I follow the instructions on the website, I am unable to access the server. Pressing the Enter key also does not grant me access. No matter what I try, it keeps saying 'failed'. Pls help
You'll have to cancel your monthly subscription, wait for it to expire and subscribe to the annual plan.
Can someone answer my question I have written about
This
ok i solved it. I had to go to the profiles section.
I am trying to purchase THM for my business. Is there anyone who can help? Our card keeps getting declined. Flagged purchases. is there a way we can purchase via invoice?
Can I change the country flag on my profile somehow?
Hi, im stuck on the Network Security task 3, where it should give ip i just get MACHINE_IP and i cant progress
Did you start the machine?
yes
With the Green Start machine button?
Start the AttackBox by clicking on the blue “Start AttackBox” button at the top right of the room. Start the attached machine by clicking on the green “Start Machine” button at the top right of this task. It usually takes a minute or two to load fully. Once they are both ready, you should use the AttackBox, which uses the right half of your screen by default.
I will give it a new try and let u know. thank you
Failed to resolve "MACHINE_IP"
The IP address of the target is MACHINE_IP
it does not give me a IP adress
the machine on task 3?
yeah
hello, just start a machine, i downloaded my open vpn file, when i tried to run it , i got an error
sudo openvpn filename.ovpn
2023-12-28 19:08:30 ERROR: Endtag </cert> missing
2023-12-28 19:08:30 Exiting due to fatal error
seems like the system is not generating the openvpn file as it should
seems like the problem is with Europe server 3
eu reg 3 is broken
i just joined the community, soi didnt know 🙂
i changed the server and it s working now
It's ok! no worries, hope you enjoy yout time and learn lots.
hello?
hey imworking on linux fundamentals, but ran out of attackbox time, so i installed kali through vmware and now im struggling to connect using ssh, it keeps saying refused at port 22, can anyone help?
Are you connected to the TryHackMe VPN?
Hi. What's up?
Yeah I was connected through openvpn
It’s just running on my desktop though not through kali on VMware
Do I need a set up a vpn on kali as well?
I prefer to run VPNs on my VMs instead of the host
You can do either, my anecdotal experience is that it causes fewer DNS problems on the whole
hello dudes and dudettes, can someone tell how long my room can stay on review?
do you think you could explain that to me if at all possible
like do i open firefox on kali and download ovpn inside?
im not sure how to do it, i tried through the terminal but i dont think it worked
It might take some time, can't be certain
sudo openvpn /Downloads/dusk172.ovpn
Options error: In [CMD-LINE]:1: Error opening configuration file: /Downloads/dusk172.ovpn
Use --help for more information.
You're not in the directory of the file.
i used find and then pasted it in
Also don't forget to disconnect from your host. It usually causes issues if you connect from both your host and VM
do i do cd downloads
Stick ~/ infront of Downloads
oh okay thank you
im sorry ive never done any of this before
┌──(kali㉿kali)-[~]
└─$ ssh kali@10.10..
ssh: connect to host 10.10.. port 22: Connection refused
Which Linux Fundementals are you doing?
2
Are you on the VPN now?
Might need to reboot the target machine and re open
is the target the terminal or the machine in thm
ive done both multiple times
i tried using sudo ssh and the password and it gave me this
The authenticity of host '10.10.188.246 (10.10.188.246)' can't be established.
ED25519 key fingerprint is SHA256:mk1Nmry9W4sNYrq9asFTSPfijDPUb0ZoOt4yG/Nw2bY.
This key is not known by any other names.
Are you sure you want to continue connecting (yes/no/[fingerprint])?
you will get that message the first time you connect to a machine - say yes
okay
will the password be kali or tryhackme?
i think it was kali now its just loading ig
itll probably just give me the same port 22 error
no idea , what room (url)
For example: ssh tryhackme@MACHINE_IP . Replacing the IP address with the IP address for your Linux target machine. Once executed, we will then be asked to trust the host and then provide a password for the "tryhackme" account, which is also "tryhackme".
i entered that ip (the thm machines ip) and since im running kali with a vpn i used kali for the password
and it threw me the port 22 again
`─# ssh tryhackme@10.10.188.246
The authenticity of host '10.10.188.246 (10.10.188.246)' can't be established.
ED25519 key fingerprint is SHA256:mk1Nmry9W4sNYrq9asFTSPfijDPUb0ZoOt4yG/Nw2bY.
This key is not known by any other names.
Are you sure you want to continue connecting (yes/no/[fingerprint])? yes
Warning: Permanently added '10.10.188.246' (ED25519) to the list of known hosts.
tryhackme@10.10.188.246's password:
Welcome to Ubuntu 20.04.2 LTS (GNU/Linux 5.4.0-1047-aws x86_64)
`
┌──(kali㉿kali)-[~]
└─$ sudo ssh kali@10.10.188.246
kali@10.10.188.246's password:
Connection closed by 10.10.188.246 port 22
this is just what i keep getting
A , why are you trying to log in as kali and B what password are you useing ?
well the user is kali since im not using attackbox so i figured it was what i was supposed to use
ill try with tryhackme sorry
I figured it didnt apply, since i wasnt using attackbox
that worked, tysm srry for the time
Hi everyone 🙂 I have a question regarding a learning path (jr. penetration tester). Some time (6-7 months) ago I've finished the burp suite module, but now the site says that I haven't. Is it normal behaviour or something broken?
I'd like to ask to mark these modules completed for me. Could you help with that please?
P.S: I've just verified my discord profile with a token. Hope it'll help.
The burp module has been refreshed and relaunched, thus the reason those are marked as not completed.
Got it! Thank you 🙂
hmm when ? i just did a bunch of burp stuff a few days back
It was months ago at this point that it was updated
Unless there is some new update that I missed
ah ok - noticed older version of burp in some rooms and thought thats what you ment
of course im not using the attack box so it may be the ver on that and it's messing with my head lol
mainly things like "click this tab " ya that tab was removed and the function is now in this menu , etc
For the challenge with PHP and RFI causing RCE are we expected to host the file somewhere
room?
wait a minute this is the wrong channel for room help
you can actually see in the name of the room.. the one which is linked in the beginner path is still the old one and has the word "old" at the end of the room name.
you only need the kali password at the following times: a) the initial login to your Kali box b) whenever you need to run as root or su - which likely includes when you are launching the OpenVPN client. After that, whenever you are connected to the VPN and accessing any THM resource (ssh, RDP, etc) you will using the credentials for the machine you are attempting to connect TO (given in the room) not the one you are already on.
Ty 🙏
Gave +1 Rep to @tawdry vortex
Hey I'm trying to connect to the OpenVpn but its not allowing me
Has it worked for you before, or trying new? I've been hearing reports that eur 3 is having issues and that by switching to another endpoint it's worked for folks.. Have you tried that yet?
I'm new to it and I haven't tried switching yet but thanks for the info i'll see if it works.
Gave +1 Rep to @tawdry vortex
let us know if you are successfully.. hoping thats a start
After my 7th attempt on different servers im encountered with the Connection Timeout error.
yeah theres more going on there then just the endpoint.. maybe filtering on the vpn connection from your home (?) network?
Try download a new configuration file. If this fails, make sure you have the most up to date version of OpenVPN. Otherwise, contact us (help@tryhackme.com) or see our docs for more information.
Which country do you live in?
wreath room is free ?
Yes, however you need a steak of > 7.
I have a streak, Still not able to download the VPN file
Hi, I've won a Swag Shop voucher on aoc. Can I use it at any time or does it have an expiry date?
hello, please how can we change country in our profile?
Hey so I have a VM running on our home server, with OpenVPN connected. I am going through advent of cyber 2022, but I have the problem too with other rooms. Basically whenever it is asking for the attacker IP I can't figure out which one it is because neither the eth0 and the IP from the VPN work. The one from the VPN (tun0) is a 10.xxxxxx, the one from the homelab is 192.xxxxx (dont count the x's, just an indication). Day 9 of advent of cyber says that I need to use eth0, which is the 192, but it also says that it should be a 10.xxxx IP. Neither work. Does anyone insight into this?
What was the task? If it will require the target machine to connect back to you, then it should be tun0.
Yep, connect back. But I tried both and both don't work which is where part of my confusion is coming from. Figured it might be because of my server settings, so I'll see if I can work it out with my brother with the knowledge that it should be tun0. Thx 😅
Gave +1 Rep to @ivory spruce
Have you setup your listener and have the target use the said port?
Hi, not sure if it's an issue on my end but the VPN for EU-Regular-3 did not work for me (It was selected by default) . When I changed to EU-Regular-1 it worked.
EDIT: I also regenerated my config each time when switching VPN server
hello i am doing Walking An Application Room and in task 3 " view page source "
while going through i saw the framework , https://static-labs.tryhackme.cloud/sites/thm-web-framework and went inside got the zip file etc etc but i also found in documentation about the /thm-framework-login so i took it and logged in the acme it support site using the default user and password, and i got a flag THM{CHANGE_DEFAULT_CREDENTIALS} , but there was no spot for it so probably the write-up who did this room forgot to put a question and a task for it it's a good thing to look at if you're starting as a beginner so i though i write it here so maybe you guys add it to the room ( will be better for new comers)
There will be on another room a need for it, if I remember.
If you're doing the web fundamentals path, and you're digging enough, you'll have flags for that on another room. As they use the same website.
Hey guys, I'm trying to upload a room in TryHackMe but it isn't happening, what should I do?
HI everyone . How can I find the support .When I visit the aws learn path IAM Principals room , and I generated the aws cloud environment I found I cannot get the password. The ak sk and password always show 'undefined' . And I reseted the env again and again it cannot resolve the issue. And I created the support ticket Ticket ID#17621 but no one deal with it. Is there anyone can help me ? Thanks.
all good just wanted to let them know incase they wanted to add it in this room
Hi @foggy rover can I DM you for informations about one of your rooms?
Many staff is on annual leave, so it might be delayed.
no problem, I can wait. Thank you for your message 😉
Gave +1 Rep to @weary spindle
The THM Support standard response time is at ~8 to 9 working days at the moment, but it should go down soon following the AoC event completion. When did you submit your ticket?
Hi everyone, I have a problem with "Wreath" room. when i click the join button, it redirect me to my rooms page, someone had the same problem ?
Are you a sub or have a streak > 7?
i'm not subscribed, but if i'm not wrong is not required, is a free room
I hadn't noticed it. thank you so much Scrubz !
No worries, staff are going to implement a page that will let you know at some point.
2 hours ago .
Gave +1 Rep to @bitter cove
i cant connect openvpn it is disconnecting with tls error handshake failed
by any chance are you using EU3?
hmm then lets wait for someone else :0
Which country are you in?
Which OS?
Host/VM?
pls dont say wsl

vm
kali linux
turkey
i had issues in past but they are gone instantly
Is your time correct?
yes
https://github.com/tryhackme/openvpn-troubleshooting you can try this if you want to..
im trying eu 1
still continues
I tried to connect with openVPN to diffrent regions and with new .OVPN files but i keep getting error:
EU-regular-1, US-West-Regular-1, AU-regalar-1:, US-EAST-Regular-1 , IN-Regular-1 and EU-Regular-3: cannot connect because of following error(s): Error calling protect() method on socket: 30 times
EU-regular-2 : unsupported options present in configuration
Can you show the entire output not just one random line? (For any server that is not eu-3)
⏎[Dec 29, 2023, 20:35:48] Transport Error: socket_protect error (UDP)
⏎[Dec 29, 2023, 20:35:48] Client terminated, restarting in 2000 ms...
⏎[Dec 29, 2023, 20:35:50] EVENT: RECONNECTING ⏎[Dec 29, 2023, 20:35:50] EVENT: RESOLVE ⏎[Dec 29, 2023, 20:35:50] Contacting 18.202.168.160:1194 via UDP
⏎[Dec 29, 2023, 20:35:50] EVENT: WAIT ⏎[Dec 29, 2023, 20:35:50] WinCommandAgent: transmitting bypass route to 18.202.168.160
{
"host" : "18.202.168.160",
"ipv6" : false
}
⏎[Dec 29, 2023, 20:35:50] Transport Error: socket_protect error (UDP)
⏎[Dec 29, 2023, 20:35:50] Client terminated, restarting in 2000 ms...
⏎[Dec 29, 2023, 20:35:52] EVENT: CONNECTION_TIMEOUT SOCKET_PROTECT_ERROR : 30
CONNECTION_TIMEOUT : 1
N_RECONNECT : 29
⏎[Dec 29, 2023, 20:35:52] EVENT: DISCONNECTED ⏎
What command are you using?
im on windows, this is the log
Are you using the Communities Download version?
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
Use the one I linked
thanks now it works, on the website that link is linked so its a bit weird that that one doesn't work
just did some work in a very slow web-based room machine. Left for lunch. Now I see "REMOTE TRYHACKME" and a prompt for username and password. The user and pass provided for RDP don't work. How do I get back into this machine?
Reboot.
AOC provided swag discount code does not seem to work, any ideas?
hey guys I got a weird question
My TryHackMe Subcriptions just expired yesterday but it's still in Active for no reason. bruh
cannot connect to opnvpn using my vm
It shouldn’t work anymore because it says the payment amount is 0
idk cause in Vietnam now is 30/12
and it's would be expired in yesterday
but it's still on Active
LMFAO
And I can access to the premium room as usual lmfao
Interesting
THM based in Netherlands (i think , Europe for cretin) so it's not tomorrow for them yet.
hello, who can I contact when it comes to breachingad network? I connected using .ovpn file and added DNS entry in network manager?
I would try explaining your issue in #breaching-ad
Is there any way to browse all free tier rooms? I'm looking to go through more THM content before I decide to purchase.
You can filter by free rooms on the search page https://tryhackme.com/hacktivities?tab=search&page=1&free=free&order=most-popular&difficulty=all&type=all
There's also an organized list in github -
Oh that's cool. I have never seen that before
i am new at using openvpn with THM (normally use the attackbox)
- have the openvpn file on my VM
- have the openvpn connection running in VM
- have run
sudo nano /etc/hostsand put the Start Machine IP address (already have my local host IP shown in/accesspage)
my issue is after i run nmap and see what ports are open i can't get to the page in the browser. Firefox in the VM, no foxyproxy or burp suite running. (i can access other websites no issue for that)
10.10.182.4 with port 80 is open but my VM browser can't connect. have any ideas what's wrong?
What was your entry for the target in your /etc/hosts file?
for the THM IP i entered 10.10.182.4 with label remote host
Do you have foxyproxy turned on? Sometimes web pages do not load on my browser even if Burp Intercept isn't turned on.
this VM does not have foxyproxy
my internal Virtual IP matches the /access one
ill just go back to using attackbox. too many people have issues with this openvpn
Hey:) so I can see that machine (the 10.10.182.4) is running elastic. This notoriously takes a fair few minutes to fully boot up - I say around 5-10. I've been able to access the IP from my end - can you access it now?
Also, could you share the URL to the room that you're trying to do?
hi Ben, i will restart the openvpn in terminal and see if it works (i had issue in other room yesterday too)
cool thanks:) once you restart the openvpn, see if you can access 10.10.10.10 in your browser or via curl http://10.10.10.10/whoami. This is a good way of checking that the VPN has successfully connected
i did the http://10.10.10.10/whoami in browser, shows my internal IP as shown on /access
i'll try again ...
it hangs, even when i add :80
this Start Machine has been running for 30 min
It sounds like you need the MTU fix
i dont know what that is
I'll see if I can find the snippet to try. I cna't remember it off the top of my head
sudo ip link set dev tun0 mtu 1200
ok, i'll type that ...
run that in a terminal while your openvpn is running and see if the page loads for you
ok, i pasted the code in other tab.
and i see Elastic show up! it worked! 🎉
thank you Ben
will i have to do this on other VMs that have same issue
Okay awesome:) so you'll need to run that everytime you connect to the VPN. You could script it so that say it starts the vpn & does that snippet.
I believe there's a way to modify your openvpn client to set the MTU in the config, but I can't recall that either I'm afraid - I'll let you know if I find the way that's possible
You will need to do it everytime you connect to the VPN - so only once once when you connect, and don't need to when doing other rooms in the sasme session ,etc:)
i added the commands you gave to my notes. as i have notes for the steps . thank you
anytime 🙂
❣️
@distant citrus Can I DM you real quick if you have a few minutes, please? 🙂
yes
ty
I live in Jamaica , sorry I didn't get time to check my discord.
Hey guys . When I visit the Attacking and Defending AWS learn path and generated the aws cloud environment ,I found I cannot get the password. The ak sk and password always show 'undefined' . And I reseted the env again and again but it cannot resolve the issue. I created the support ticket Ticket ID#17621 but no one deal with it.
I spent $375 to learn the path for 3 month but I cannot visit the lab and the support ticket no one responded. It was a very bad experience.
As mentioned yesterday, THM Support standard response time is at ~8 to 9 working days at the moment. Where your lab time is already running but cannot access the environment, THM Support will ensure that you will be able to get back those days so long as the issue is on their side.
Are you trying to connect to THM OpenVPN using your Windows host?
hope this helps others , all thanks to @zealous yoke
(i can make edits if something is wrong)
Gave +1 Rep to @zealous yoke
cool nice graphic 🙂 I've shared the whole adding the tun-mtu to the config in the Discord and gonna see how it goes over time. The only thing I'd say is re. Step #5. You only need to add the MACHINE_IP to your hosts file if you need to access/interact with it via a domain such as websitename.thm.
I don't immediately see the reason why a user would need to add remote host THM and local host VM to their hosts file outside of say accessing say a webserver that is looking for the example of websitename.thm 🙂
Thanks
Gave +1 Rep to @ivory spruce
if i am a paying member for the site (individual user) and get sent a 1 month subsubscription will this just extend the month I have to renew in?
Hello Site-support, I submitted a ticket, but it didn't give me an area to provide details on my ticket, so I thought I'd provide it here.
I did my THM daily yesterday and completed it by around 10am. Today I caught a flight and received the usual email in the afternoon telling me to come back before my streak was broken. I logged in around 9:15pm and it said I'd used my free streak freeze to avoid losing my streak! But it shouldn't have, as it was only 9:15pm or so. It said I had "38 days", but the 38 was in orange.
Then I completed a question and it went back to green, but jumped all the way up to 40 days. So it jumped from 38 to 40. I counted in my profile, and I've only been on the website for 39 days. So something in my account is weird.
I'd hate to lose the streak freeze for no reason, if someone can look into it? 🙏 Note that, while it's back to grean, the note saying I have an available streak freeze is gone. So it appears to have used my streak freeze, and gone back to green, all within a 2 hour period before my day expired.
Edit: I realized that the time zone on my laptop was initially wrong when I signed in. I dual boot and I'm concerned that booting ito linux and then back into windows set the local time zone on the tablet to something other than my current time zone. I'm PST (West Coast USA), and as I write this, it's still only 11:30pm. Thanks again!
Hey @west chasm I'm trying to create a room, but it always directs me to the 500 error page, can you please solve this issue?
my eu regular 2 server works in windows but not working in kali
it gives tls error
oh i tried it in ssh now it works
now it is works on kali too
weird
it gives errors again in kali
Can you post a screenshot of the error? You'll need to verify your account to do so though.
If and when it happens, you can drop an email to THM Support to restore your streak back.
What is your subscription plan - annually or monthly?
Are you using a VPN on your host? Also, how is your internet connection speed?
it is from a datacenter so it is very fast
around 400 mbps
the kali is not inside of windows
it is on a server has esxi os which is in datacenter
vmware esxi*
Are you still connecting to EU-Reg-2 VPN Server?
I have lost access to my authenticator app and am not able to login to THM site to do my daily activities. I have mailed the support team twice no response from any personnel. I want to get this issue sorted out quickly. Can someone help me?
When did you email?
Support is going through a longer process, 7-9 days is response time.
The first I emailed was 4 days ago and then 2 days back I emailed once again to ask about the status of my problem.
Yeah, all you're doing is pushing yourself back down the list, please wait until they reply. 🙂
Someone may see your message in and ping you, but don't sent another email until they reply.
Hello There, How can I change the country on my profile it displays incorrect details
https://tryhackme.com/api/user/update-timezone
This link will take you to the dashboard and fix it, just turn off any vpn
It redirects me to dashboard itself
changed
thanks
Weponsiations very unclear on how you create a windows machine and linux at the same time, can someone help me out
Has anyone had any issues with premium lately? I just paid for my subscription and I saw that tryhackme withdrew the money from my bank, however I do no have access to premium. Is this normal?
annual
Is anyone having trouble opening the machines on tryhackme? Rooms that have a machine never load access to it.
annual
Hey I just uploaded my first CTF room, can anyone tell me how much time does TryHackMe take to review it & make it public?
The QA team will get to it. 🙂
Hi,I have a problem, two months ago I registered on the site through a friend's ref.link and subscribed.My friend got $5, but I still haven't.Help please
You'll have to drop an email to THM Support for it.
Are you connected to THM OpenVPN when attempting to access those machines?
Your subscription should have reflected a few minutes after payment. Please drop an email to THM Support.
You'll need to be patient though as THM Support standard response time is at ~8 to 9 working days. Also, do not send a follow up email within the said timeframe as you'll push yourself down the queue.
I'm not certain if you will be able to key-in a voucher code considering that you have a valid or active subscription.
You can't use a voucher if you're subbed.
There, thanks @weary spindle
Gave +1 Rep to @weary spindle
Gave +1 Rep to @ivory spruce
Nah, just helping out to fellow learners where I can.
Its not really recommended to connect your Windows host to the THM OpenVPN.
However, should you choose to do so, you'll need to use the Windows installer from here - https://openvpn.net/community-downloads/
The OpenVPN community shares the open source OpenVPN. Download the latest version of the open source VPN release OpenVPN 2.6.3 for a secure network.
thank you
Gave +1 Rep to @ivory spruce
@ivory spruce Hello can anyone assist me with this error code. I cannot get the SITEMAP.XML to open up on Task #4 on Content Discovery room. https://share.icloud.com/photos/0e3vSYDONo1Mx_3SvhZG_KKBw
Can you verify please @real shale
Sharing icloud links is dodgy
I like the idea here, but the information on the hosts file is going to confuse people.. a) you don't need it unless you're working on a specific room that needs unique hosts. often because it's running multiple services.. Many (most) times you can just get by with the IP address, so its adding an extra step AND you have to do it every single time you start a new VM for a room.. it's not a specific need to use the OVPN connection.
b) more importantly, you understand what you meant by "remote host THM" and "local host VM" to be a singular hostname or FQDN.. However, the example you've given uses spaces which are a separator of multiple hostnames. "remote host THM" is actually 3 hosts... "remote" "host" and "THM".. same goes for "local host VM". if they tried to connect to "local host VM" as a singular string, it won't work.. that's 3 hosts "local" "host" and "THM" (which is now duplicated on your remote host entry).. I would revise this to make it much clearer, or I'd remove it altogether and make it its own optional portion with more clarity of how/why to use it and that it's helpful, but not required to make the OpenVPn connection
ok, im trying to figure out how to share the screenshot. I thought I already verified, sorry.
leave it Microsoft - the links to compare the different versions of win 10 now only compare win 10 to 11 https://tryhackme.com/room/windowsfundamentals1xbx
In part 1 of the Windows Fundamentals module, we'll start our journey learning about the Windows desktop, the NTFS file system, UAC, the Control Panel, and more..
@bronze vale I'm now verified
How do I share the screenshot insted of the link? I am on a Macbook.
@bronze vale Nevermind I guess I couldn't do it at first because I wasn't verified.
You haven't deployed the machine
@real shale
I have it open now
@bronze vale
@bronze vale After opening a new attackbox, I am still getting the same error prompt.
@torn citrus Can you assist me with this issue
Are you saying that what I have open is not an attackbox?
AttackBox - Machine you use to Attack
Victim Machine - Machine you are Attacking
I scanned over it. I am about to read the whole thing
Were you able to make it work?
I have a question about my premium subscription, can i post it here publicly or someone from support will dm me?
Er, can you ask in here without revealing any account information?
hello there guys, I'm having trouble accessing the network in the Breaching Active Directory room using the atack box. Has someone had the same problem?
that ain't it chief
my post was just about reposting my image and not related to your query
No worries, I already solved it, thanks
Gave +1 Rep to @distant citrus
i like this thing - i thought it was going to be clickable at one point
Maybe its just the boxes I tried today, or my network, but today my connections have been flaky when connecting to the machines. Nothing else on my network seems affected. Its as though everything is fine for a minute and the next minute I am getting connection timeouts. On again off again -- is it just me?
Use the Thunderbird client, I think the task tells you this.
There is no internet on the machine for the E-mail, as it could be malicious, sandboxing rules apply, there is an option to open in Thunderbird.
nevermind i will just use writeups
another issue i have is when i try to access Talos Intel on my host machine i get blocked due to my VPN. For the most part of these questions i did answered questions just by looking at the .eml file
THM support email didn't answer for 4 days, I wanted to refund my subscribtuion as I am currently not using it but no one is answering
Due to AoC replies are 8-9 day(s) currently, and they don't work weekends, and probably won't be working tomorrow.
is the only way for a quick answer to get a quick refund is the email? no other faster ways?
Accounts and refunds can only be discussed via E-mail.
okay thank you for the help
I cannot SSH into the virtual machine. It just hangs after the ssh command and times out?
┌──(parallels㉿kali-gnu-linux-2023)-[~]
└─$ ssh james@10.10.59.145
ssh: connect to host 10.10.59.145 port 22: Connection timed out
┌──(parallels㉿kali-gnu-linux-2023)-[~]
└─$ ssh james@10.10.102.108
Connection closed by 10.10.102.108 port 22
Server is pinging, can access the site, ssh connection is required for the room. Regenerated and changed openVPN server locations. Only one OpenVPN instance running. Any tips?
yes, i have a premium subscription but can't access the AWS attack/defense content and the subscription says i can access all premium content
Why stay subscribed?
Access to all premium learning content
Get your own browser-based Kali Machine
Enroll in all learning paths
Private OpenVPN servers
Start machines faster
Aws path is an extra payment to access
No but thanks I'll leave it the way it is for now.
Gave +1 Rep to @ivory spruce
Is your subscription annual or monthly? If the former, so long as you send them an email within 7 days of your renewal, it will be refunded to you even if they respond to you at a later time.
Are you connected to THM OpenVPN? If yes, can you try adding the switch -vv in your ssh command?
Also, what room is this box attached to?
just a compliment to the way the rooms are structured 👍
Are ranks updated in Discord at the end of the month OR are they updated when you level up on THM?
I am no longer a harry wizard
I believe they update once a day, but you can force it to update by reverifying with the bot
Does THM offer, or plan to offer, a progress chart? Something to view how much time you've put in and where, on what days, what you've accomplished, etcetera....?
Why are you being rude?
I'm not sure if this is already available in the Education or Business Plan, but you can add it in #feedback-and-ideas
Hey, I'm currently out of time on my web attack box and so i decided to try to use OpenVPN, I believe the connection is successful as you can see in the pictures but, as you can also see in the pictures my ssh command isn't working. I'm currently on this room https://tryhackme.com/room/linuxfundamentalspart2
If any additional info would help please let me know
I do have 2 tabs open in my terminal, in the first one I ran the command sudo openvpn <filename> to make the OpenVPN connection, then in my second tab is where I attempted to make the ssh connection
Please 🙏 someone help
I have been stuck in my Basic Pentesting Room question 3 which requires me to find the directories.
Issue is, the gobuster is given an error flag for -u http://...... Which was supposed to be a flag for URL.
Please what else can be used to parse a URL to the gobuster command...
Please help
How long do i have to be a member of this dicord to upload a picture?
you gotta verify
Hi there, I just completed 31 days streak but haven't received the 30 Day streak badge.
Already gave them my phone# what else do they wat from me?
@gilded sparrow^
just the usual things e.g. your soul xD just kidding, have a look at that article 😉 i think its just /verify
Thanks man
on it
Gave +1 Rep to @empty ember
Thanks I just waited an hour and it worked - other users seemed to be experiencing similar issues.
Gave +1 Rep to @ivory spruce
Verify
Wow....that was super fast
Verified asap
My baby steps....I am a passionate learner from day ZERO
Okay....please can someone help me out with the -u flag error in am facing with gobuster pleasesss
This ....please
Send full cmd u r using?
it's the latter but I did send them the email within the 7 days if I am not mistaken, thank you for the reply :)
Gave +1 Rep to @ivory spruce
If its monthly, I don't think you will be refunded as it was in their refund policy (https://help.tryhackme.com/en/articles/8282427-refund-policy). You might want to click on cancel on your subscription if you do not wish to continue with it.
Can you try adding -vv in your ssh command?
I am trying that
Debug 2 we sent a password packet
..
Connexion closed by 10.10. Port 22
My problem is that
Ssh
It stucks at system information as of Mon jan ..
I tried several times and i need help
pls be more specific
Ok
I am successfully connected on vpn
The problem is with ssh
When i try to connect to THM@ip
It does require a password i write that
And it stuck at system information
I cant do anything else
If it requires a password, did you supply one?
Can you send a screenshot of where you are getting stuck?
Ok I will send it to you in private because i cant send on this server
You need to verify your account to be able to post screenshots
Ok
Follow the instructions above @surreal panther
Done
Thanks
Gave +1 Rep to @ivory spruce
Room linux 3
I will try with different rooms
try to write "ls" when you are logged in.
It doesnt write anything
if it replies, then you are inide.
Ctrl+c
or that ye.
Or ctrl+z and try to login again
let me try myself, i'll let you know by then.
Ok thanks
Gave +1 Rep to @fickle ivy
it works fine for me.
I think either my pc or my connection
Maybe that's my problem nothing to do with the THM
😢
after deploying the machine by pressing the green button (and make sure that you have openvpn activated as well / or using attackbox ), and then ssh to tryhackme@IP (not the vpn IP, but the machine IP you got by pressing the green button. ) and then write the password in the text.
Afterwards, you just have to be patient and let the machine do its job basically.
when you're inside, you will be able to see "tryhackme@linux3" as your name.
I am unable to get "tryhackme@linux3"
I did everything else
Correctly
I think it's about my machine
I will try to close everything and keep only terminal
Ok dm me if u r still facing the problem
I got Bad gateway with I start File inclusion room
https://tryhackme.com/room/fileinc
Check inbox
You're using the wrong ip
hi my open vpn is not working please help me
Send more details
it dose not conncet
Error?
Os?
Country?
error: connection failed to estabilsh within given time
Actually I connect to correct ip but it need to to run server
Dm me
Finally it did work
Thanks Tahir
And everyone who tried to help
Gave +1 Rep to @wicked pilot
So what was going wrong before?
I did nothing special after making sure 22 is open
I just was quitting and trying again
Wasting lots of times with ssh
Hope they can do something about it
Sometimes sh** happens 😃
I could solve it on linux 2
But not on Linux 3
I don't know if I need to quit and redoit again and again until it works
Well just do it tomorrow on attackbox....it would save your time and frustration
anyone know if there is a way to fix a cert that i screwed up on and has a mispelling of my name?
It's only 1 hour i prefer to put it on a better room that doesn't have ssh access
Cert from where ?
You can't change the name after it's been generated.
I think you need to email their support
You'll need to leave it as it is, or use photoshop.
ya thats what i thought - not a big deal
The ssh isn't working good
I wasted hours on it
In the end same problem
I just skip rooms ?
CTRL + C that.
sudo ip link set dev tun0 mtu 1200
Do that with your VPN active, and then re-try the SSH connection.
Ok thanks
I am trying
Gave +1 Rep to @weary spindle
Strange...
ip a | grep "tun" for me please.
You're logging in at least.
I can see that.
Can you confirm you only have one tun?
Do the ip a command again please.
sudo killall openvpn -9 again please.
and wait 30 seconds.
Then ip a again please.
Ok, now try re-connecting.
CTRL and C
sudo ip link set dev tun0 mtu 1200 again for me please (closing the VPn will have reset it back to 1500)
Ok
It did work
There we go!
Thanks
Gave +1 Rep to @weary spindle
Happy hacking 
whats the recommended way to rdp into machines from the attackbox?
I've been using 'remmina' which comes with the attackbox
Ah, thanks, did not find that one
Gave +1 Rep to @frank cobalt
Hello. I just get a message saying that my account is at risk of being cancelled because my credit card expired. It´s amazing to see that I already paid the full year but you can cancel my account. Any solution that is not to add a new credit card?
For any payment/account related issues you would have to email support. support@tryhackme.com
you can also use xfreerdp xfreerdp /dynamic-resolution +clipboard /cert:ignore /v:<TARGET_IP> /u:<USER> /p:<PASS>
It's a little wonky to get to it. You first have to go to <your profile icon> -> profile (or any other choice). Now, when you click on your profile icon, there is a choice of "view profile" that shows you some information. Not finer details like total time spent, but the days you did something and how many things you did.
You can use that URL ../p/<userid> to see anyone's profile
Hey guys, im having trouble login into my account. Anybody else having the same issue as me? I did a password reset, cleared cache, cookies and used a different browser and I still get an error message saying that my login credentials are incorrect
Are you sure they're correct?
Well, I don't want to point it out. but that erroe message looks pretty specific.
And I didn't mention strictly just the password.
If everything is correct then why do I keep on getting the message ?
..Because they're wrong? 🙃
Are you on the VPN?
Can you do
ip a | grep "tun" please.
Looks like the mtu fix
Yeah
Gave +1 Rep to @weary spindle
+rep @bronze vale
Gave +1 Rep to @bronze vale
perfect
Um, so I few days ago I had this problem in Room Linux Fundamental Part 3, Task 5, Question 4. The problem occurred to be that no matter how I ran ps aux or even ps aux | grep thm I can't find the flag AT ALL. Then I asked people in the discord server, and I somehow managed to pass this room (since the answer was shown in the video). Recently, I recommend this website to my friend, and he also stucked on the exact same question, facing exact same issue. This time we tried ps aux | grep -i thm the method I did to pass the room, but it failed. Since the problem involved more than myself, also I can't help him figure it out, I am thinking maybe something wrong happened to the virtual machine of that. Can someone look at it and please inform me if there is an issue for this problem.
you were running the command on the right machine??? the target machine and not the attackbox??? right
yes
both of us
after ssh tryhackme@machineip (getting in the target machine), then check ps aux
Hi, i had a reoccurring payment on and I wanted to cancel and refund the amount since I haven’t had time for tryhackme. Is there a way I can refund the money?
only way is by email this email address
from the chat bubble thingy??? yeah that should also work...
though would still recommend the email route for this
Thank you!
typing them in? Copy/paste/autofill from password manager (the correct answer. smile)
Why do some rooms require "joining" them? Why is that design necessary, technically? Are you supposed to "leave" the room when your done? Or do you get booted out eventually by some cleanup routine?
I'm not certain on the joining part, but there are rooms that require or force you to leave the room (mostly networks) to free up resources.
Thanks, @ivory spruce It makes sense for the rooms with networks.
Gave +1 Rep to @ivory spruce
Would it be possible to have my workspace affiliation removed? I was automatically placed into my old colleges one, but I want to start a new one for my new university.
Change your email to your new academic for your account.
gotcha, thank you. and would I as a student be able to start a new workplace or would I need faculty to do so?
Gave +1 Rep to @weary spindle
If its a new workspace you'll do it.
(Assuming there isn't anyone already at your uni on THM with their email)
Does anyone know how to change your subscription from monthly to annually?
You'll have to manually cancel your subscription and once it stops attempting to automatically renew, you can choose to subscribe annually.
Cannot create a room. I’m getting a 500 error.
Hello, I always have problems when I try to ssh in the tryhackme account when I deploy the virtual machine. ALWAYS asking me for the password and always failing...
A-L-W-A-Y-S. So far, my personal experience in Try Hack Me is really bad... I see no reasons to continue in this platform...
- Not all rooms have tryhackme:tryhackme as SSH credentials.
Which room are you doing?
Are you on a VM, or the attackbox?
Yeah. if it doesn't have SSH, you can't SSH in to it.
How do I know if the machine has ssh or not?
If ssh commands are working then it's there 🤷
If it's there though, it doesn't mean it's going to be used.
My bad 😔
You'll get the credentials in the task material.
or
You'll enumerate credentials in the room if it's a challenge room.
Sometimes I try to ssh and doesn´t work and after a lot of trial and error works...
Can u describe more ?
For example, right now is asking me for the OS version, but this is what I get when I run enum4linux:
[E] Can't get OS info with smbclient
[+] Got OS info for 10.10.194.76 from srvinfo:
Cannot connect to server. Error was NT_STATUS_UNSUCCESSFUL
In some lessons (I don´t remember whichones), they ask me to enter in the tryhackme account. Sometimes I find myself trying all different machines, Kali or AttackWhatEver, using the diffenret IP I see, at the top in green and the IP provided in the area Active Machine Information, that is the same when I click the "i" in the deployed machine
How can I get the OS info when I only get error messages?
Is anyone else having issues with AttackBox stability? Mine just randomly died
I'm trying to help you, but you keep ignoring my questions, which is rude.
I wrote that I've been using all the IPs I see in the website
In basically all cases you have 2 machines: the attacker (the AttackBox or your own personal machine with the VPN running) and the target (that's the one that shows up under 'Active Machine Information'). If you're trying to get an OS version it's almost definitely asking you to run the scan from the AttackBox against the target box
Yeah, but one of the more important questions I asked was, where you're attacking from.
Kali, because after a lot of trial and error, is the best solution for me
I don´t know if kali here is with AttackBox or other thing
Hi there,
I am filling my resume and i would like to add my "Profile badge ID" in my resume which is created thanks to Word. How can I insert this badge in my Word resume ?
Thanks,
Regards
It won't be dynamic, but you could screenshot it and insert it as a png?
I'd recommend directly downloading the statically-generated version to get it in the highest resolution possible
I'd suggest not doing it all, and all just inserting a link if the interviewer would like to check.
it is a solution which i thought about but i want to know if there's anotehr solution 😉
It was my second idea 🙂
Fair suggestion, embedded images don't usually come off super professionally
re: the direct download, the static image HTML snippet contains the link to the PNG (it's an amazonaws.com link), that's what you should use if you really want to add the image
better to add an hypertext link i suppose
to redirect to my public profile
I wouldn't bother making it a link, just the plain URL would be best since there's a very good chance it's going to be printed out and viewed on paper
Also since this is dragging on to less site-related discussion, this would probably be better discussed in #cyber-and-careers
thanks i move there 😉
Gave +1 Rep to @robust isle
is it me or is progress on rooms completed being reset every once in a while?
I use Kali. I don´t know if it´s using AttackBox or a VM. Your system can be confusing, because I see two different IPs for my deployed machine.
You should have 2 completely different deployed machines, one will be Kali and give you a split-screen when you use the 'launch AttackBox' button, the other will usually not give you a GUI and be a range of target OSs
If you're using an OS you're hosting, you'll need to be in the VPN.
Atackbox isn't Kali.
There is a seperate web Kali box.
OH this is running Ubuntu, my bad, I don't know why I assumed it was Kali
I always use the split-screen. I don´t host any other OS.
No worries
hi i have probleme with my acount password
i ahev change my acount email and i cant access
well the best we can do is point you towards the support email address
ok thanks
@main pebble
hi guys .. i just subscribed to thm but it wasn't activated
see message with email above your message... send email there... wait up to 7 work days... good luck
ok cool thanks
Gave +1 Rep to @plush bay
If you are doing split screen, then the machine on the right will be the AttackBox (i.e the box you are attacking from). This could literally be the "Attack Box" that you launched, or if you have a subscription, a THM Kali VM. Whenever something refers to an Attack Box, that's what it means.. That IP will be at the top of the page, and it will also show within the VM itself in the top right by the network activity.
Showing the dropdown of the 2 choices for subscribers.. if you are doing the free version, you can't pick Kali.
If a task has a deployable machine, you will it in the task module. .There may be more than one as you progress through. You will terminate the first one and move on to the next one if that's the case:
That machine will show at the top of the page also, and will actually hover there as you scroll down, whereas the Attack Box info won't.
So this case, my attacking host is 10.10.166.240 and my target is 10.10.22.255 (see both screen shots).
Not every room will require an attack box. Not every room will have a deployable machine.
Task 3 Practical Example of defesive security (Q What is the flag that you obtained by following along? So the IP address is from china the answer isnt china i dont quit understand
Thank you for the explanation @tawdry vortex also thanks to @robust isle and @weary spindle for your help.
Tomorrow I will continue and try to find what I'm doing wrong.
Gave +1 Rep to @tawdry vortex
Can I make a writeup for new room Dodge or I have to wait for some time like 2 or 3 days?
Have you tried to change VPN servers?
Hi, i completed a side quest the 27/12 and i still dont have the badge, is that normal ?
iirc the badge for that room works a little different as they are awarded manually by the staff in waves. Not sure when the last time they went through and awarded them was though
i cant connect to openvpn even on the website, it says that servers are online but i am not connected and my ip is 0.0.0.0
What is the output when you run openvpn?
?
You have to either run openvpn on your machine (VM or host) or use THM's browser based machine to connect to the network. If you are not running the VPN your access page probably just says 0.0.0.0 by default
i use the websites attack box
Then you don't need to worry about openvpn at all
oh
The attackbox is already on the network so no VPN is needed to access the machines
You are good to go
Hello! My AWS Path is giving me "undefined" instead of Access Key, Secret Access Key, and Default Console Password.
Any help would be appreciated
is there a darkmode
Soon™️
People use darkreader right now.
Hello, the server crashed while performing a task, how can I get it back up?
Which server?
here in this room
I have the same issue
tried with "sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn", but no luck
Which server are you using?
3 is broken.
with 1 I got "ERROR: Cannot open TUN/TAP dev /dev/net/tun: No such file or directory (errno=2)"
ah ok, good to know, then I will try 1 and 2 again maybe
ok, looks like its something with the kali container in kasm, although I did the suggested changes to Docker Run Config Override for privileged and /dev/net/tun, it is not working, guess I need to investigate further
You will have to terminate the target machine and start it again if it happens.
yes, thank you, I solved the problem this way
Gave +1 Rep to @ivory spruce
thanks!
Hello, by any chace is it possible to subscribe with other currencies than GBP ?
I payed in USD just fine, I think it converts to your local currency, but don't quote me on that
thanks
Gave +1 Rep to @weary spindle
Hello,
I uploaded a VM but the RAM is 1GB and i need 2GB. What can I do?
ask for enterance into creators lounge channel and hope you can get the resources bumped by tryhackme staff in there... or figure out how to lower the requirements for your vm
what is the name of the channel?
out of curiosity : whats the process for creating a room ? just make a vm box with xyz flaw and write up a lesson & quiz ?
creators lounge....
create an ova in vbox, upload the ova and then create a room. Then create tasks (i.e., questions) based on stuff existing in the VM
make vulnerable vm on version of operating systems supported by aws and tryhackme... make ova file.. upload.... wait for it to convert... make tasks texts and questions... make a writeup... submit the room for review... wait
TY
Gave +1 Rep to @plush bay
There is no such channel. Can you please help me to find it?
You need to ask permission to access it as shadow has already said. It is not just open to everyone like most of the other channels here
How can I ask and who?
You'd need to talk a mod iirc, you can probably just ask one when you see them hanging around in #general or whatever.
Thanks I will give a try. I asked in the general room
I've been using Ubuntu for WSL2 and cloned John the Ripper from Github but I can't seem to access zip2john. I also can't type just "john" to use the tool, I have to use "john-the-ripper". Is there a room or guide that I can follow to get all this working correctly?
I would use the AttackBox but I can't import files into it, AFAIK.
file names and path variable
well there are a few ways to get files onto the attackbox.... one is copy and paste which should work just fine for normal hashes.... another is using python web server and wget.... yet another is ssh via scp or sftp
Hi everyone, I have a huge problem on the platform about a paiement that still being request even if I ended it, can anyone help me ?
Are you referring to the autorenewal of payment?
Hi,
It’s been now 3 days since I delete the subscription, but I keep receive a paiement on my bank account. For once, I’m glad I do not have the money on my account
Is your subscription monthly or annual? If its the latter, so long as you send an email that you wish to cancel your subscription within 7 days of the renewal, you will be refunded the amount even if THM Support replies to you at a later date. However, if it is monthly, it will no longer be refunded per THM Refund Policy.
Hello! For some reasons I can only connect to VPN using old OpenVPN config file for VIP server(I currently don't have active subscription), while I am unable to connect to the Regular server on freshly generated configs. Not sure if it's related but the old config for the VIP server was generated before changed username.
Are you a subscriber?
Like stated earlier I don't have valid subscription at the moment.
You shouldn't be able to to connect to the VPN for subsciber, the vpn have been changed, are you sure it's only the VIP?
I get adress from pool 10.11.X.X/16, THM access page seems not picking up the specified address I am getting from ones available to me.
That page can be bugged,
Can you send a screenshot of the VPN pack you're trying to use?
You mean screenshot of of the pack from webpage like that? When I try to connect to it, it fails to connect over and over again.
Console log
Eu reg 3 is broken.
Okay, tested Regular 1 seems connection managed to get established. About the old VIP config I have mentioned it was leading to server under IP 34.253.19.14.
Why they don't have a dark mode on thm ??? Or are they doing something currently on that ....?
Dark mode needed
Light would kill me 😭
You can use a browser extension for now, but we are working on Darkmode 🙂
I searched few extensions but doesn't seem trustworthy so .... Would b waiting from u guys
Dark reader should be fine
Hi There,can anyone help me? I received a discount code,but when entering the code it displays that i should enter a valid discount code...
It was annual
Please drop an email to THM Support and they will sort it out for you. Do take note of the ~8 to 9 working days response time though.
Will do thank you
Gave +1 Rep to @ivory spruce (current: #25 - 307)
Where are you entering the code?
received a swag voucher and at the checkout when i enter the code it displays the enter a valid discount code.
Hi. I`m from Ukraine, but my account is british, how can i change it?
Make sure all of your VPN's are turned off and then go to this link https://tryhackme.com/api/user/update-timezone. It will just redirect you to the dashboard, but it should change your account country based on your IP
If you are from Ukraine, but not physically there now, then you might be able to trick the API by running a VPN from Ukraine and then going to the link
Yeeee it worked! Thank you. Nah, im in Ukraine now, but btw i never used any vpns on my study machine, so idk why it thought im british, but now everything`s fine, thx!
Gave +1 Rep to @gleaming flume (current: #51 - 126)
That's strange, but I'm glad you got it fixed now
im in the usa and i find the eu vip vpn better than the east coast usa one *shrug
Has anyone ever purchase a subscription but it not activate on their account?
try regenerate file ?
try change server and regenerate
or select new one and then select back
Can't change server for Wreath
Is there something wrong with the website?
Seems like I only have this issue on firefox.
got any plugis actived that might block things
Had dark reader extension, but still have the same problem even after deactivating it.
Works fine when logged out, once logged in it gets scrambled for some reason.
try to clear all cookies and so ?
Tried, doesn't work