#site-support

1 messages · Page 58 of 1

restive goblet
#

My Kali VM is you're saying?

muted dock
#

tip: sometimes it doesn't show on the access page that you are conneceted, if you deploy a machine and put the machine IP on the browser and you can load the page, that means that you are connected

upbeat bronze
#

Thank you

muted dock
#

btw where does it show that how much time you have got before you lose your streak?

restive goblet
#

But it says connected here

muted dock
#

make sure that you are loading the room machine IP, not your own machine IP

fiery sentinel
#

i am actually having this exact issue

restive goblet
#

This is still showing as red but on the access page it says "connected" for internal Virtual IP Address.

#

I have tried redownloading multiple different configuration files from multiple different VPN servers.

muted dock
#

for me it's also showing red but I can access the room machine

#

have you tried another room's machine?

restive goblet
#

Yes, multiple.

#

I'm currently triyng to get it to connect to the "Ice" room.

#

I have terminated my machine and restarted it multiple times as well.

muted dock
#

do you have the premium?

restive goblet
#

Yeah

muted dock
#

the you don't need to access it via openvpn

#

you can just use attackbox

restive goblet
#

I am wanting to get used to using my actual kali machine or I would have just went that route.

muted dock
#

turn the openvpn off

#

if you are using the page kali vm

gleaming flume
restive goblet
fiery sentinel
#

i cant even get the wreath vpn file to give me data creepypog

gleaming flume
gleaming flume
gleaming flume
#

Looks like you have multiple VPN instances running at once. Try to run the killall openvpn command and then start the VPN up again

fiery sentinel
gleaming flume
#

Yeah a lot of network config files too, not really sure what's up with it

restive goblet
#

My Kali machine is also fully updated & upgraded.

gleaming flume
#

Did you do what I said and run the killall command?

#

There should only be one tun interface on your kali

fiery sentinel
#

yeah if you have multiple instances running of openvp youll have to kill them

#

otherwise kali wont know which if to put 10.10.10.10 to

restive goblet
gleaming flume
#

Alright now you can start up the VPN again and see if it works

restive goblet
#

Try loading 10.10.10.10 in my web browser on my vm?

#

BOOM!

#

Let's freaking GO!

#

You all are wizards

gleaming flume
#

Woo! Very nice

fiery sentinel
#

time to wait 30 minutes to see if i can get wreath to workhappyPanda

proud yew
fiery sentinel
#

same

proud yew
#

i'll just do other room first, i'll try again after 1 hr

fiery sentinel
#

ater 30 mins i rejoined, got the same subnet, waited 20 mins downloaded the config anf still same issue @cold fog is there any way we can get this fixed?

acoustic hedge
#

Got the same issue with Wreath for a couple of days now. Tried leaving/joining the room, regenerating the ovpn, but I still get an empty/0B file.

tribal mason
#

Try waiting for a day after leaving. (The subnet should change)

exotic python
#

Site down?

tribal mason
#

Up on my end

exotic python
#

*problem loading page" here

#

I can open other sites

#

Weird

tribal mason
#

Can you show a screenshot?

proud yew
patent cargo
#

hi, im stuck on tryhackme/welcome, clicking doesnt work, is it normal ?

patent cargo
weary spindle
patent cargo
#

i literally click "now choose your learning path:" cards at the bottom

west chasmBOT
patent cargo
#

and nothing happens

patent cargo
scenic torrentBOT
#

Gave +1 Rep to @west chasm (current: #274 - 17)

wheat radish
patent cargo
#

yeah doesnt work still

#

weird

wheat radish
#

np

naive dust
#

anyway to add external modules if cd /root/.msf4/modules doesent exist?

surreal panther
#

Hello
I would like to ask for a coupon for premium access
Thank you

elder grove
#

Hello i have this problem when i try to connect the tryhackme openvpn

#

idk how to fix it

#

anyone knows the solution?

bronze vale
#

What country are you from?

elder grove
#

mexico

#

im gonna try it without root

#

still the same problem

frank swift
#

Im just leaning some XSS, and I saw that the tel: URI scheme gets through DOMPurify, and it seems like it is able to run arbitrary js code like alert() through <a id=ok href=tel:alert(1337)> then calling ok. Why does this work, and is there a way for my to sanitize this workaround?

eternal forum
#

hmm why didn't discord title changed yet

elder grove
#

pls

#

i had other laptop before and it worked

weary spindle
elder grove
#

maybe is for the version idk

bronze vale
elder grove
#

mm i dont think so

#

i use it before and it worked

bronze vale
naive dust
eternal forum
#

0x11

naive dust
#

goodness

weary spindle
weary spindle
eternal forum
hard frigate
#

I don't know if this has anything to do with the fact that it's now fixed, but just in case thanks a lot !

scenic torrentBOT
#

Gave +1 Rep to @glad oyster (current: #13 - 472)

woeful trench
#

Hi guys... Does anyone know why OpenVPN gives me this error when I try to connect?
TLS: Initial packet from [AF_INET]XXX, sid=8ccecdd2 b727389c 2024-02-09 21:03:58 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=4253972... 2024-02-09 21:03:58 OpenSSL: error:0A000086:SSL routines::certificate verify failed 2024-02-09 21:03:58 TLS_ERROR: BIO read tls_read_plaintext error 2024-02-09 21:03:58 TLS Error: TLS object -> incoming plaintext read error 2024-02-09 21:03:58 TLS Error: TLS handshake failed 2024-02-09 21:03:58 SIGUSR1[soft,tls-error] received, process restarting 2024-02-09 21:03:58 Restart pause, 5 second(s)

weary spindle
woeful trench
#

Thanks... I've solved switching region

frank swift
#

Im just leaning some XSS, and I saw that the tel: URI scheme gets through DOMPurify, and it seems like it is able to run arbitrary js code like alert() through <a id=ok href=tel:alert(1337)> then calling ok. Why does this work, and is there a way for my to sanitize this workaround?

ivory rover
#

hi in attackbox it do me this for the crsf attack:

#

please help me before the attackbox go awxay please

ivory spruce
ivory rover
#

like wihch?

tribal mason
#

Whatever port you want

#

1234 would work. Unless you really need port 80

ivory rover
#

but the website we need to attack will correctly send me at the good port?

tribal mason
#

Which room are you trying to do?

ivory rover
#

T22

tribal mason
#

Use another port

ivory rover
#

and the server of attacker is "localhost"?

#

because i dont see anywhere in text the ip or hostname of attacker

#

ho all good

solid sigil
#

Hey guys. I have an issue with the red team capstone network. As I am connected successfully with the vpn configuration file of the network, I still don't have access to any of the machines. It's like they are inactive or something. I have tried everything, resetting my "mailbox" with the x.x.x.250 endpoint, regenerated the vpn configuration file many times over. But still no luck. Is there a way to solve this issue?

tawdry vortex
# ivory rover

Your target was 10.10.229.34. That's what was running the website.. Your attack box was 10.10.157.126 (based on your prompt in the screenshot above).. That's where you ran netcat. Your pycurl error is trying to connect to the target, when it should be trying to connect to the attack box where the listener is.

pale umbra
#

Hey guys I was messing with my new pineapple but I had left it unfinished with the ip still at the stager phase. When I went back in there was a bunch of unknown files and changes I hadn’t made. Is it possible someone took advantage of that and hijacked the signal? I’m new to this so please.. spare me lol if that’s the case and they have the MAC address of the machine is there a way I can tune it in a way where they can’t get access? Like a hard reset? Or reconfiguration?

#

Fell feee to message me for help

ivory spruce
pale umbra
#

Indeed sorry about that I’ll make sure to post there thank you

ivory spruce
ivory rover
naive dust
#

why do i get a white screen after i turn the machine?

#

only AttackBox works fine

naive dust
#

Going through the first room. And fakebank.com is not a working site.

weary spindle
#

fakebank

#

fakebank

naive dust
#

I am not using AttackBox.

weary spindle
#

you're using the split screenmachine?

naive dust
#

I am using a local VirtualBox.

weary spindle
#

Oh.

In that case you're attacking a real website.

#

I'd uh, stop.

naive dust
#

Do I need to use AttackBox for every room ?

#

Or just for the first room ?

weary spindle
#

Please use the Show split view

naive dust
#

I added 1 hour. Was that wrong ?

weary spindle
#

not at all 🙂

naive dust
#

I am just worried that I might have used 1 hour of some hours that I have left. Is there any limit for how many I can add ?

weary spindle
naive dust
#

Ok. I won the first game.

#

On my local machine - u is not a working flag.

weary spindle
#

I've advised you not to use your local machine for this room.

naive dust
#

I am already done with this room. It was quick.

#

I need to use "gobuster dir". Where do I download the wordlist ?

weary spindle
#

Which wordlist?

naive dust
#

I need to use a wordlist for gobuster. A website directory wordlist.

weary spindle
#

SecLists has 'em

naive dust
#

I found it. It is in usr share wordlists dirb common.txt.

#

How do I exclude status codes in gobuster search ?

#

Ok. I am misunderstanding something. Sites are configured to always respond with a specific status code.

deep cradle
#

Hello, Am I the only one having trouble trying the machine on Volatility? Whenever I type in the password it keep denying the access? I tried rerun the machine still the same, what am I doing wrong? :/

weary spindle
west chasmBOT
deep cradle
# weary spindle Can you take a screenshot and show me?

I'm trying to get screenshot but it's not working, but as it shows in the room IP Address: MACHINE_IP, I tried yo connect to the IP address of the machine showingin the room but it will show " Premission denied (publicket,password) after typing the password coiuple of times

weary spindle
deep cradle
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1946)

light orbit
#

Trying to go through the Linux Fundamentals - Part 1 with some students of mine yesterday. Ran into an issue that didn't seem present earlier in the week. When using ls command, I'm supposed to see 4 directories: Important Files, My Documents, Notes, Pictures.

#

Instead I'm seeing access.log, and four directories: folder1, folder2, folder3, folder4. Anyone have an idea if this is some kind of issue on the VM?

weary spindle
#

Was the machine a GUI or CLI?

light orbit
# weary spindle Was the machine a GUI or CLI?

CLI... And actually I just figured it out. Apparently the key to finding a stupid mistake is to admit others that you haven't been able to figure it out. Total error on my part and the part of my students.

zenith spruce
#

Hey all. I'm logging off for the day. But wanted to ask quickly to see if anyone had any issues connecting via OpenVPN today? I haven't had issues in the past. Just wanted to see if it was just an issue with the network today before I bother troubleshooting later

real coral
#

Hey all - I am also experiencing penvpn issues.... can't connect... "TLS Error: TLS key negotiation failed"...

#

^ Server 52.4.198.155

zenith spruce
woven drum
#

Yeah I had that and then switched to the US West ovpn server

#

Their Access page showed US Regular East 1 as 'Online' but it seemed something wasn't working

real coral
#

@zenith spruce I am... going to switch now...

#

@woven drum thank you!

scenic torrentBOT
#

Gave +1 Rep to @woven drum (current: #1993 - 1)

zenith spruce
#

Thanks guys. Keep me posted. I'll check it out when I get home tonight

#

Could be worth reporting

high stirrup
light orbit
nova whale
#

Still not working for US-East? (US-West does work, though; even after re-generating US-East)

$ sudo openvpn ../../adamSmooch.us-east.ovpn
2024-02-10 13:14:00 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-02-10 13:14:00 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2024-02-10 13:14:00 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-02-10 13:14:00 library versions: OpenSSL 3.1.4 24 Oct 2023, LZO 2.10
2024-02-10 13:14:00 DCO version: N/A
2024-02-10 13:14:00 OpenSSL: error:0480006C:PEM routines::no start line
2024-02-10 13:14:00 OpenSSL: error:0A080009:SSL routines::PEM lib
2024-02-10 13:14:00 Cannot load inline certificate file
2024-02-10 13:14:00 Exiting due to fatal error

light orbit
digital pine
#

I'm having issues connecting to the OpenVPN to THM via Kali Linux. I've tried restarting my machine, restarting my laptop, and reinstalling the OpenVPN package (I have OpenVPN version 2.6.7). When I use ping, it works with ~50-80% packet loss, and I can access webpages.

pearl turtle
#

have the same issue

#

but for EU-Regular-3

weary spindle
pearl turtle
#

oh ok, i'll try the second one

#

is the EU - 2 broken too ?

weary spindle
#

No,

Which country are you in?

pearl turtle
#

ok the EU isnt working but EU 1 does

#

France

#

EU 1 looks to work atm

digital pine
pearl turtle
#

same, just switched the server x))

digital pine
#

sorry for the caps, I'm just excited bc I've been trying to solve it for a while and forgot that you can regenerate the config file

analog osprey
#

Yeah when you regenerate a config file for us east it's a completely empty file

tepid bough
#

Hey, guys.
Maybe someone can tell me what the problem is
Very often machines run 1-2 minutes and switch off for 5 minutes. Some more, some less.
Tell me what to do to solve it
Thx a lot

lean pine
#

I'm seeing this issue too, however enumAD is showing up but not exploitAD

tender basin
#

are you guys still having this problem? I tried regenerating East-reg-1 and still cant connect. Ended up running the THM VPNtroubleshooting script, said to just regenerate the file. No such luck yet

sacred dune
#

Hello

#

Pre Security path, Linux Fundamentals module, Linux Fundamentals 3, Task 2

#

Since I cannot demonstrate with screenshots, the task says to connect to an SSH session.

#

In the previous Linux Fundamentals 2, connecting via SSH to the TryHackMe active machine was okay using my own environment: configuring OpenVPN and using the SSH commands were good and I could perform the activities normally.

#

However, in the Linux Fundamentals 3, and particularly in Task 2, the authentification is successful but the SSH connection gets stuck in the middle. Various results are given, and I will send an example.

#

(the IP address was in Task 2’s instructions, not generated automatically)

#

I’d appreciate it if anyone can help me resolve this technical issue, knowing that a friend of mine also experienced this issue. Thank you in advance

dense vale
#

Is anyone else getting errors using the ovpn file with the newest version of openvpn

wraith cliff
#

Hey all, does anyone have issues regarding about the OVPN

#

just recently renewed and downloaded the .ovpn file, seems like it is not quite working at the moment

tender basin
#

I guess its down for most people are you using us-east?

ivory spruce
ivory spruce
ivory spruce
west chasmBOT
zenith spruce
wraith cliff
#

Yeah that’s fair

#

It sorta fixed it self, I assumed it was my personal connection but yeah all is good mate

dense vale
#

Yeah I switched to us-west-vip and regenerated and it worked fine. It seems to be an issue with the ovpn file using a deprecated format

nova whale
tender basin
#

wonder how that happens

nova whale
wraith cliff
#

Yeah those are not on our control sadly

spark copper
#

Can't connect to any server with openvpn

proper skiff
#

Hey all, I can successfully connect to THM using OpenVPN and can ping 10.10.10.10, however I cannot access the web interface of the module I'm working on (OWASP top 10, task 12). "Navigate to http://MACHINE_IP:86/console..." I'm assuming it means my given IP, but when I enter it in on the web browser it gives me a "cannot connect" error. I can ping my given IP too. Thoughts?

broken bear
#

Use the IP given when you start the VM from the task

#

machine_ip is not your IP or the attackbox IP

proper skiff
#

I have a feeling there should be an IP there- I did a few of the other modules last night and it gave me an IP to work with, but going back to the other modules it now says HTTP://MACHINE_IP similar to the module I'm on.

broken bear
#

There's a big green button that says START MACHINE

#

you'll get a banner across the top of the page that will have the VM IP and time to live. Use that IP.

proper skiff
#

omg thanks! I'm so dumb haha

#

Appreciate you!

bright ridge
#

hello. is the openvpn broken for anyone else? things were working fine yesterday, today i cant connect on either of my machines, if i delete and redownload the opn file, it says something about remote connection not selected

#

"remote option not specified"

#

us east server

zenith spruce
bright ridge
#

i tried us west and still same errors

eager moat
#

hi just started my adventure today, and stuck on my module about Introduction to Defensive Security as my answer even if its correct cames up as incorrect

weary spindle
eager moat
#

@weary spindleAnswer the questions below
Which team focuses on defensive security? Answer seems to be after read whole module that the Blue team is the one what focuses on defensive

#

sorry for mistakes english is my second language

zenith spruce
#

@wraith cliff @woven drum following up on yesterday's conversations. I switched to US-VIP-West which seems to be working fine

sacred dune
#

I remind: Pre Security path, Linux Fundamentals 3, Task 2

#

Earlier, it worked fine

#

Yesterday, accessing the machine with the provided IP address and credientials were not possible

#

Today, I tried again, accessing them was possible earlier, and now it displays the same problem again

weary spindle
sacred dune
#

1

#

2 is in the picture and is used as a reference

weary spindle
#

Oh!

I know you're issue.

#

Disconnect from the SSH.

sudo ip link set dev tun0 mtu 1200

Run that command, then re-connect to the SSH.

sacred dune
#

Few moments please

#

It worked! Thank you so much!

weary spindle
#

Ok.

#

Since this happened two seperate times.

#

Can you please exit the ssh and close the VNP connection.

#

Then sudo nano VPNfile.ovpn

#

ABOVE <ca> and you insert tun-mtu 1200

sacred dune
#

Okay, done

weary spindle
#

Save it.

sacred dune
#

Done

weary spindle
#

sudo systemctl restart openvpn

#

Then reconnect to the VPN

sacred dune
#

Done, now I shall reconnect to the SSH session again, right?

weary spindle
#

Yes 🙂

sacred dune
#

It works fine now after connecting to the SSH session, thank you so much; but if you permit me, could you please explain what we meant by defining tun’s mtu to 1200?

#

In other words, what is tun? Is mtu the total data size?

weary spindle
#

The packets communicated between either machine was too large on each transaction, so it some parts were being missed.

Think of it as placing a box in your letter box.

TUN is short for tunnel.

#

Using the MTU command, made the packets smaller so there is less sent in each transaction ensuring that they're all picked up.

Essentially, it's reducing the box to the size of the letter.

plush bay
# sacred dune In other words, what is `tun`? Is `mtu` the total data size?

tun == tunnel == interface used for vpns
mtu == max transfer unit == the largest size your packages can be while being sent through this interface
meaning if it is to large it sometimes fails for weird reasons
lowering the max size increases the amount of packages sent which help on unreliable connections

#

together with what scrubz said

weary spindle
# sacred dune

Also if you like moving forward, you don't need to hide your active machine IP, THM can see which machines interact with which (our VPN IP is bound to our account) this will help with troubleshooting (especially by me, as I like to connect to the machine for issues like this)

That being said, it's completely up to you. 🙂

sacred dune
#

I see, my apologies 😅
Makes a lot of sense and I appreciate your explanations, so if I need to regenerate a new OpenVPN file to use for TryHackMe tasks from my own environment, I need to add the name line tun-mtu 1200 every time above <ca>, right?

weary spindle
sacred dune
#

It’s all clear, thank you so much for your time for both of you to help troubleshoot the issue! If there is any further problem while using THM then I will post it in this server. Thank you so much again! 😀

neat vortex
#

Thanks Scrubz tun-mtu 1200 in the VPN File works perfect

rose tapir
#

Any idea why I cant connect to openvpn. It has worked in the past but all the sudden stopped working. I redownloaded the config file and this is what I get when I run it: 2024-02-11 16:05:47 VERIFY OK: depth=1, CN=ChangeMe
2024-02-11 16:05:47 VERIFY KU OK
2024-02-11 16:05:47 Validating certificate extended key usage
2024-02-11 16:05:47 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2024-02-11 16:05:47 VERIFY EKU OK
2024-02-11 16:05:47 VERIFY OK: depth=0, CN=server
2024-02-11 16:06:47 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2024-02-11 16:06:47 TLS Error: TLS handshake failed
2024-02-11 16:06:47 SIGUSR1[soft,tls-error] received, process restarting
2024-02-11 16:06:47 Restart pause, 5 second(s)

nova whale
#

Something seems broken in the AWS modules - all the rooms are listed as free (not VIP, as with other sub-required rooms), but clicking through lands on the buy the AWS-package page.

VIP would be a more accurate jewel than Free
https://tryhackme.com/module/introduction-to-aws

wind wedge
#

What type of issue are you experiencing?

#

When you say can't start it what do you mean, what are you trying to do and what are you expecting it to do?

topaz iron
#

I cant generate the vpn as seem here

#

also it been resetting for 4 days now

#

I started paying for THM just to have access to these exact rooms and in a week it will be a month and I still havent get access to these rooms

wind wedge
#

So that happens when you try to download the vpn? I can't seem to replicate it

#

Have you tried a different browser or maybe trying to see if same thing happens when incognito?

topaz iron
#

but sure let me try with incognito

#

no, nothing

#

is just broken

wind wedge
#

Can you check the console and see if it gives you any errors there?

#

when trying to download it

wind wedge
#

Not sure if it could be causing it but maybe try disable your adblocker and refresh again and retry, if not then it's something to do with your account

olive wedge
#

I am trying to complete the network services track but I got stuck in the smbclient exercise, When I try to connnect using smbclient //10.10.194.206//profiles -U Anonymous I get the a prompt for a password. I tried to just click ENTER but I get the error tree connect failed: NT_STATUS_BAD_NETWORK_NAME

wind wedge
#

Only last thing I can think of is if you have a VPN running that might be causing it to block it or not

#

Have you tried leaving the room and rejoining? Should put you in a new DC

ivory spruce
#

In the cog or settings button, usually there are three options - Write Ups, Reset Progress and Leave. Do you not have the said option?

#

Yes, leaving the room and re-joining it after 15-30 mins should move you to a different subnet as Blackout has mentioned.

neat vortex
#

In the terminal where the OpenVPN connection is open, the last line for me is "Timers: ping 5, ping restart 120". After 2-3 minutes i get "[sever] Inactivity timout (--ping-restart), restarting" and "SIGURSR1[soft,ping-restart] received, process restart" then the connection is re-established and it continues like this . Is that normal?

gobuster is interrupted by this and so is burpsuite

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #16 - 411)

ivory spruce
#

Have you tried submitting a ticket to THM Support?

topaz iron
cinder walrus
#

Hello, anytime i download my vpn config file, It's always empty

ivory spruce
ivory spruce
cinder walrus
#

All network tbh

neat vortex
ivory spruce
cinder walrus
# ivory spruce This is for which network?

Yesterday I tried to do 'breachingAD' so i downloaded it's vpn but it was empty, regenerated, still empty, so i left it

SO today, I want to do anormal box, I tried to connect to my normal EU region VPN, and it did not connect, so i deleted and tried to regenerate only to keep downloading a empty file for that too

neat vortex
topaz iron
cinder walrus
#

I'm using kali as a daily driver

topaz iron
#

i think thm will have to do some heavy maintenance

cinder walrus
#

tried now with my phone and got successful with normal VPN

#

But I'm getting download failed with breachingAD

#

Thanks mate @topaz iron

scenic torrentBOT
#

Gave +1 Rep to @topaz iron (current: #687 - 5)

ivory spruce
topaz iron
#

4 days now trying to do a room

cinder walrus
neat vortex
topaz iron
neat vortex
#

oh my god, my problems with FTP and NFS are gone now too. Everything is running smoothly now. It was probably all due to the EU Regular 1 in the last few days.

#

I was already so frustrated that I started looking for another platform. But now everything works great on the other server. 😄

plain wadi
#

I can't get connected to VPN any Idea why ?

ivory spruce
arctic raptor
#

An hour ago, my premium subscription expired, so I repurchased it. After downloading the openvpn file, it's still empty. How long does it take to use a VPN?

  • Successful repurchase
  • regenerated(US-East-Regular-1)
  • file download & it is empty
ivory spruce
arctic raptor
ivory spruce
#

Have you tried any VIP servers (considering you're a subscriber)?

arctic raptor
arctic raptor
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #16 - 412)

naive dust
#

Hi team, I need your help with the "Python for Pentesters" room. How can I upload a screenshot in this chat to better describe the issue I am facing?

west chasmBOT
weary spindle
naive dust
#

Nevermind, I figured that out already !

patent hazel
#

Hello, in lateral movement and pivoting room, my attack box do not have « lateralmovement » interface.. so I can’t configure the DNS

abstract island
#

Hi team, I've tried to solve the Splunk based Benign room. In the Task2 the 9th question asks for a flag. As the logs doesn't contains such information, I've tried to check the url on contolc.com. But it states as 404. I've checked writeups on the net and a saw, my idea was correct: I should have found the information on controlc.com. So you should update the room. Thanks

old horizon
#

Lost my daily streak count. I have been trying to get to 90 days and yesterday I was at 59 and today it read 3. It was not that I missed a day and went to zero. Did this happen to anyone else and who do I need to contact to get it fixed? I do not see any email address or contact info in THM other than social media.

tough jackal
#

Hi ! When I'm training on my ubuntu machine, sometimes it does this when trying to access the target on burpsuite, do you know how to fix it ? (this is the burpsuite browser)

weary spindle
tough jackal
weary spindle
tough jackal
weary spindle
#

Switch to Firefox with foxyproxy then

tough jackal
#

i would prefer to find a way to fix this on brupsuit integrated browser

ivory spruce
west chasmBOT
ivory spruce
tough jackal
ivory spruce
undone zinc
tough jackal
undone zinc
undone zinc
tough jackal
#

nope

undone zinc
#

I had that problem but i used the port number associated with the webserver during my request, now it works

twilit night
#

does someone has time rn ?

dusty dagger
#

hello guys, am i the only one having problems with the reset password link ?

tiny tiger
#

hi all, I wonder if one can use the Kali's GUI VPN configuration tool to connect to the THM VPN (instead of running the "openvpn" command in the terminal window)?. I've imported the settings, but the connection doesn't work for me. Maybe it's just me as I'm running Kali in a VM and my eth0 is a virtual adapter...

weary spindle
bronze vale
dusty dagger
#

like a loop

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1956)

tiny tiger
bronze vale
#

Pro tip: You're going to get into much messier situations, especially with tools on Linux.
Ensure you are reading all of the instructions provided for the best experience both in and outside of TryHackMe! 😄

tiny tiger
bronze vale
#

Hey @dusty dagger Are there any browser errors?

Right click -> Inspect -> Console

dusty dagger
rose tapir
#

Any idea why the openvpn connection would stop working all the sudden when I move houses and am connecting to a different router? It just gets stuck on the verify OK:
2024-02-12 11:36:32 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-02-12 11:36:32 OpenVPN 2.5.9 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Sep 29 2023
2024-02-12 11:36:32 library versions: OpenSSL 3.0.2 15 Mar 2022, LZO 2.10
2024-02-12 11:36:32 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2024-02-12 11:36:32 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2024-02-12 11:36:32 TCP/UDP: Preserving recently used remote address: [AF_INET]52.4.198.155:1194
2024-02-12 11:36:32 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-02-12 11:36:32 UDP link local: (not bound)
2024-02-12 11:36:32 UDP link remote: [AF_INET]52.4.198.155:1194
2024-02-12 11:36:32 TLS: Initial packet from [AF_INET]52.4.198.155:1194, sid=0bc561cf f96acee6
2024-02-12 11:36:32 VERIFY OK: depth=1, CN=ChangeMe
2024-02-12 11:36:32 VERIFY KU OK
2024-02-12 11:36:32 Validating certificate extended key usage
2024-02-12 11:36:32 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2024-02-12 11:36:32 VERIFY EKU OK
2024-02-12 11:36:32 VERIFY OK: depth=0, CN=server

rose tapir
#

US-East-Regular-1

weary spindle
#

Can you try a different, closer server?

rose tapir
#

That one is the closest to me but I can try west and see what happens

#

That worked! thank you!

bronze vale
dusty dagger
scenic torrentBOT
#

Gave +1 Rep to @bronze vale (current: #6 - 1150)

glacial hound
dusty dagger
twilit night
#

i need help too

#

I want to get into cyber sec but the website wont accept my card

#

does it accept debit cards or only credit cards ?

#

should'nt make a difference or ?

weary spindle
#

Accetps debits too

#

Which country are you in?

twilit night
#

germany

#

why do you ask ?

#

I already tried a second time so I didn't messed up with the form

#

what do you say ?

#

I try anoter time

#

Im currently more in web development and I wanted to learn about cyber security to make my potential website safer

#

and maybe get a job in this direction in the future

tender basin
#

so is the US-East-Regular-1 still not working for anyone?

twilit night
#

still not workig

#

I tried chrome and firefox

#

weard

tender basin
#

Im using west now

#

now I gotta get used to a new IP

twilit night
#

😦

fierce vessel
fierce vessel
tender basin
#

yea Ive been getting it since Friday

#

will probably be fixed this week

twilit night
#

does the card have to mach specifik rules to get accepted

#

like a specifik bank?

bright ridge
#

us east still not working for me

#

getting a connection timeout error when try to connect with openvpn

#

i might have clicked a button to update openvpn... has it not worked since the update?

#

openvpn version 3.4.7

bronze vale
bright ridge
bronze vale
bright ridge
bronze vale
#

Mhm it’s not recommended to use the Connect application

#

It’s also harder to debug.

bright ridge
bronze vale
#

It’s all on the access page :)

bright ridge
scenic torrentBOT
#

Gave +1 Rep to @bronze vale (current: #6 - 1154)

languid pier
#

is tickets ever going to come back?

ivory spruce
patent hazel
#

Hello,
It’s been 3 days I am asking for help because in lateral movement and pivoting room I don’t have « lateralmovement » interface. It’s impossible to configure the dns, I can’t move forward and nobody answer me since 3 days
Thank you

celest gate
#

Hi. Could someone please assist with this when available? My current account doesn't seem to be updating since I tried to verify the new one either, so if the discord token could be revoked that would be great. Thanks

zealous yoke
zealous yoke
celest gate
patent hazel
#

Actually « lateralmovementandpivoting.ovpn » file is empty

zealous yoke
#

Ahh that’s a problem. Can you go on the access page and regenerate? See if that profile works. If it’s blank, can you share an IP address of a machine on the network map so I can forward this on?

patent hazel
zealous yoke
#

Ah, so that is correct for machines in rooms. For normal rooms, the AttackBox is on the same network, so no VPN is needed. However, for network rooms, they need their own VPN file as they're on a different subnet, even on the AttackBox (the attackbox automatically pulls the VPN file from the access page).

patent hazel
#

Ok thank you, so if a regenerate the config file, it will sync automatically in my Attackbox?

zealous yoke
#

You'll need to re-deploy the AttackBox as the pull happens at boot. You might be able to force the pull again without re-deploying but I'll need to check my notes on it first

patent hazel
#

No no don’t waste your time I’m reloading my AB

#

Same, config file still empty

zealous yoke
#

😦 can you share an IP of a machine on the network map of the room. I need this to identify what subnet you're on and forward internally

patent hazel
#

10.200.78.101 : adress of the THMDC

zealous yoke
#

Thank you:)

patent hazel
#

But I don’t have any issu with the network, from my VM I managed to join the network and set up the dns 😕 it’s just that I prefere to use the attackbox for this room and it’s weird this interface won’t show up

naive dust
#

Hello the DNS link demo.uploadvulns.thm points to video youtube...

weary spindle
naive dust
weary spindle
naive dust
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1957)

barren birch
naive dust
#

the user cannot read 😎

weary spindle
#

I'm glad you said it kekw

amber hatch
#

I'm trying to connect to the VPN but my saved profile isn't working

#

Has the server hostname changed recently?

weary spindle
#

Not at all.

Which server are you using?

Where do you live?

What issue are you receiving?

amber hatch
#

Server is 52.4.198.155 and I'm on the east coast

weary spindle
#

I meant VPN profile.

amber hatch
#

Is there a way to export my openVPN profile?

weary spindle
#

You dont need to export it, you just need to tell me which profile you downloaded from the website and which OS you're using it on?

amber hatch
#

I'm on Windows 10 but I downloaded this profile so long ago I don't remember the exact page I got it from

weary spindle
amber hatch
#

OpenVPN Connect

weary spindle
#

Ah, can you download the communitites version?

#

communities download

amber hatch
#

Where can I find it

weary spindle
amber hatch
#

Couldn't find it in the pinned messages

weary spindle
#

It's not in pinned messages

#

That link I posted is linked you to my message with the link for the URL

mortal scroll
#

So I've been having issues with Openvpn for the past week. I have created a new config file, uploaded it (I've done this a couple time). Uploaded it to the Windows community version, Kali version, and ParrotOS version. All of which are giving me :

TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
TLS Error: TLS handshake failed
mortal scroll
#

US-East-Regular-1

weary spindle
#

Can you try a different server?

mortal scroll
#

Yep, report back if different

amber hatch
#

@weary spindle Just installed the version you posted and downloaded a new config file and this is the error I get from it

#

Tue Feb 13 10:35:09 2024 OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM') if you want to connect to this server.
Tue Feb 13 10:35:09 2024 ERROR: Failed to apply push options
Tue Feb 13 10:35:09 2024 Failed to open tun/tap interface

mortal scroll
#

US-West-VIP-1 is working for me. Thank you @weary spindle !

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1958)

amber hatch
#

That's what's listed as remote in my config file

weary spindle
amber hatch
gritty cypress
#

Hi everyone,

I've been encountering a challenge with my TryHackMe account, specifically when connecting to new machines. When I connect to the allocated IP address, I can access resources on all other available ports except for port 80.

I'm reaching out to the community for some guidance on what might be causing this issue and how I can overcome it. I've tried troubleshooting on my own, but the problem persists.

Any insights or suggestions would be greatly appreciated.

weary spindle
gritty cypress
#

No error, but it just loading and not able to access web page on port 80

amber hatch
gritty cypress
weary spindle
weary spindle
# gritty cypress VM

Can you try this command in a terminal sudo ip link set dev tun0 mtu 1200 wile the VPN is running, and try again.

amber hatch
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1959)

gritty cypress
weary spindle
weary spindle
gritty cypress
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1960)

weary spindle
#

you can edit your VPN config file to add tun-mtu 1200 to your config

gritty cypress
stray cove
#

hey, sorry for the late reply, has someone gotten back to you about this?

celest gate
# stray cove hey, sorry for the late reply, has someone gotten back to you about this?

Hi. No worries at all, but no not yet. I tried to verify my new account last week thinking it might transfer across but the bot said it's already in use on this account. This account then looks to have stopped sync'ing with the site as my level didn't update. Ideally I'm hoping you can help to just revoke the token from this account compeltely and then I can verify on my new one? Thanks

scenic torrentBOT
#

Gave +1 Rep to @stray cove (current: #12 - 541)

stray cove
#

just to be clear, you want to unlink this current discord account, yes?

celest gate
#

Yes please 🙂

stray cove
#

aight

#

it should be done

celest gate
stray cove
#

cheers

fierce vessel
#

I too have been having relentless openvpn issues. With US East, US West, and even EU Reg. With the US servers I keep getting this bad cipher error. EU was an unsupported protocol or something along those lines. I put in a ticket but I'm sure theyre getting swamped with them seeing as I'm not the only one

frozen smelt
#

Hi, I've been getting issues connecting to openvpn since yesterday, is there any way to solve this issue? Mine is only supporting with US East but i tried with the US West as well, but no luck so far!

#

2024-02-13 12:02:44 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-02-13 12:02:44 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2024-02-13 12:02:44 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-02-13 12:02:44 library versions: OpenSSL 3.0.11 19 Sep 2023, LZO 2.10
2024-02-13 12:02:44 DCO version: N/A
2024-02-13 12:02:44 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2024-02-13 12:02:44 OpenSSL: error:0A080009:SSL routines::PEM lib:
2024-02-13 12:02:44 Cannot load inline certificate file
2024-02-13 12:02:44 Exiting due to fatal error

frozen smelt
#

Yeees, it worked as EU-Regular-1 ! Thank you!

ionic zephyr
#

Anyone elses terminal on the attackbox being extremely slow right now? I cant even do a simple port scan without it taking more than 30 minutes

frigid nymph
#

Hello, I'm on linux fundamentals part 2, task 2, When I try to ssh and use this command - ssh tryhackme@(ip of the machine ur using) I get in but when they ask me for the password they literally say on the task the password is "tryhackme" but I type this everytime and it's not the right password! Please help!

jovial dirge
#

Not sure if I should put this here or in #room-help -- I'm in the Burpsuite Basics room, and the homepage for my attack box won't load. I have the foxyproxy enabled, and Intercept is on under the Proxy tab of Burpsuite -- and I know the class mentions that web pages will "hang", but I'm looking at about a 15 minute load time at this point. I've killed the attack box & restarted it a couple times.

I'm tempted to update both firefox & burpsuite as there are more current versions than what's on the attack box, but that means the new versions won't be 1:1 with the class instruction...wondering if that's my best path forward?

orchid stag
#

Hello. I can not connect to the tryhackme server with openvpn. My openvpn version is 2.6.7 . Note : sed -i 's/cipher AES-256-CBC/data-ciphers AES-256-CBC/' *.ovpn I changed the cipher to data cypher but still not working. And the message is showing that Protocol options: explicit-exit-notify 3. Hope anyone can help.

weary spindle
weary spindle
orchid stag
weary spindle
weary spindle
orchid stag
weary spindle
#

Which country do you reside in?

orchid stag
#

I reside in Bangladesh

orchid stag
raw sky
#

when I use "view in full screen" and then "exit split view" for attackbox (to have text in the one display, attackbox in the second), I lose info about time remaining.. after that when I click to "show split view", it shows 2 hours of remaining time even its not correct.. is possible to fix this bug? and also, what should I do to extend time without reopen split view?

sick hull
#

hi guys - any idea why i dont have the upload file option in this discord channel?

weary spindle
west chasmBOT
sick hull
#

aha

#

thank you!

kind birch
#

Hi , where can i find the support channel for docker ? I have some questions about the path ?

kind birch
#

Container vuln

drowsy marten
#

hello! I just finished aoc2023 and I can't seem to get my certificate after clicking on it, I tried to get it on 3 different occasions but nothing, does it have another thing I need to input?

#

problem solved, didn't allow pop-ups

ivory spruce
wicked dove
#

I'm on task#4 of
Active Directory Basics lab
and when I'm trying to reset the password and run another powershell command I'm getting access denied which is the complete opposite of the lab objectives. Here is the screenshot.

#

Is there a way I can attach image.

west chasmBOT
plush bay
#

@wicked dove ⬆️ follow instruction in said link to be able to post images here

wicked dove
#

one time I unjoined waited about 2 hours and joined back

#

but results are the same

plush bay
#

did you start powershell as admin???

#

does not look like it and you need to do that

frigid nymph
#

@weary spindle I figured it out. Thanks so much!

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1963)

silver python
#

Hello I need help please my server is not working, can somebody help me ?

weary spindle
silver python
#

yes

weary spindle
#

Which server? 🙂

silver python
#

hold please I'm taking a screen of it.

#

hold on i'm taking a screenshot of it.

#

I can not uplaod the screenshot.

west chasmBOT
weary spindle
#

You need to verify

silver python
#

but anyway, I'm working on the insecure design and then I copy the url I put it on the web it still doesn't work.

vestal lichen
#

Having trouble connecting to openvpn,
Options error: You must define TUN/TAP device

#

Command- sudo openvpn uname.ovpn

plush bay
#

for a network room or for the default vpn???

vestal lichen
#

Default

clear crest
#

The US-East-Regular-1 OVPN file is blank when downloaded after several regenerations and attempts.

tribal mason
#

Try changing region

scenic belfry
#

hi friends,

i cant use " in the attack box, not in the terminal, not in browser and also not in any text editor.

how can i fix this?

clear crest
tribal mason
tawdry vortex
scenic torrentBOT
#

Gave +1 Rep to @tawdry vortex (current: #255 - 19)

tawdry vortex
silver python
#

Hello Please I need help?

real island
plush bay
real island
#

Hey, if I download an ovpn file for the EU, can I go into it and edit the region somehow manually?

#

Because I can't get one for US East

real island
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1964)

ebon storm
#

im trying to use openvpn on kali but after i run sudo openvpn my-cconfig-file.ovpn it gives me this

#

"Options error: You must define TUN/TAP device (--dev)"

ivory spruce
jovial dirge
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1965)

ebon storm
ivory spruce
ebon storm
#

oh no just normal thm rooms

#

the options error is telling me to define tun/tap device but when i serach how to do that im not really getting anything useful

ivory spruce
ebon storm
#

like am i supposed to use nano or vim on my ovpn file ?

#

like which region im selecting?

#

us east regular 1

ivory spruce
ebon storm
#

no but i dont get why the one ive always used isnt working now?

#

i guess i could try to use the west vip server but it doesnt make sense why i cant connect to ovpn now

ivory spruce
ebon storm
#

i didnt edit it

ivory spruce
silver horizon
#

Hello, can someone help me, the images are not being displayed on the bash-scripting room.

merry sierra
#

hello, i found i can't save occupation details in my profile. and so i can't join the workspace. is this often a network related problem? or there may be other causes?

ivory spruce
silver horizon
#

I am not knowledgeable about that,

ebon storm
#

@ivory spruce vip server ovpn conifg worked thx

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #16 - 421)

ivory spruce
scenic belfry
#

hi guys, im having some issues with openvpn. getting connection refused all the time, also switched regions without succes. should i continue with a fresh install of openvpn perhaps? or am i missing something

steady fossil
#

Hi! Is there any way to access CC:Steganography and Easysteganography rooms? I can find them in google but it says they are private

weary spindle
#

Yes, they are retired rooms due to age.

brittle pier
brittle pier
weary spindle
#

Which country?

What did you try?

Which OS?

brittle pier
#

UK

Tried 3 different OVPN configs, tried regenerating twice, restarted networking service, reboot

Kali - 6.5.0-kali3-amd64

#

It was working about 35-40 mins ago, then seemingly all of a sudden stopped

brittle pier
tribal mason
#

What region is the VPN from?

brittle pier
#

EU :)

weary spindle
#

1,2 or 3?

brittle pier
#

Tried 2 and 3 so far

weary spindle
#

Are you using sudo?

brittle pier
#

Yep

weary spindle
#

You don't have a VPN running on the host?

brittle pier
#

did a pgrep on openvpn, nothing else hung open

#

ip a shows no other tunnels open

weary spindle
#

Is this bare metal or a VM?

brittle pier
#

Bare metal

weary spindle
#

Ah, you're running Kali bare-metal, not a good idea for a start,

brittle pier
tribal mason
#

Not the VPN, but the system can be broken

brittle pier
tribal mason
weary spindle
#

Kali is too unstable to use as a daily os

real island
#

Hey, is there anyway to get an openvpn file for US East? I can't seem to get one that isn't blank. I have one for the EU and for US West at least

scenic belfry
#

im on windows and also doesnt work for me

#

tried 1-2

wind wedge
#

0kb OVPN files?

real island
#

Yes

wind wedge
#

Have you tried regenarting the file?

real island
#

Yeah, at least 50 times lol

#

I suppose the ones for US West and EU will work. It would just be nice to have one closest to where I live

wind wedge
#

Strange, east works for me, I know some users have also reported some issues with it regarding the networks maybe it's the same thing causing that

real island
#

Interesting. Would that be a problem on my end?

wind wedge
#

That i'm not sure of unfortunatley

real island
#

Okay, well, US West wouldn't work either yesterday. So, maybe I'll get lucky with East at some point

#

At least they're valid for 10 years lol

weary spindle
real island
#

Same issue across the board

weary spindle
#

For Windows, are you using zthe connect GUI app?

real island
#

Well, I haven't actually tried connecting on Windows. I want to use my Kali vm as the attack box. I just tried downloading the file on Windows to see if I had the same issue

weary spindle
#

Which country are you in?

How are you doing it on the vm?

real island
#

I live on the east coast of the United States. I'm trying to connect to the US East Regular 1 Server.

weary spindle
#

I think the US East Reg is broken,

Sorry for running around the rings here.

real island
#

I go onto TryHackMe's website, click Access under my profile, choose US East Regular 1, and download the config file. It shows that it's 0 bytes, meaning I didn't get the encryption key and such

weary spindle
#

Yeah.

I've let staff knw about that

weary spindle
real island
#

Okay, good to know lol

#

Thank you very much

lyric venture
#

Just to make sure I'm understanding this correctly. Every time I start an attackbox I'm "Spinning Up" a new, never used VM, correct?

lyric venture
# weary spindle Correct

I've been doing a bunch of rooms lately which require me to download files locally. For Example, John the Ripper" (https://tryhackme[.]com/room/johntheripper0)

Is there an easy way I'm missing to download these files directly to the attack box?

weary spindle
#

No, unfortunately you're not able to

lyric venture
#

So either install and run the tools locally on my machine, or, log in on the attack box and download locally there. Is there a reason the files can't be downloaded using curl from the attack box? I've seen some rooms do this before.

weary spindle
#

You could do a python server on your host, but that would mean putting your host on the network

lyric venture
#

So basically make my own attack box. But at that point I'd just log in and always be logged in since its the same box each time. Am I understanding that correctly?

weary spindle
#

No, when you shutdown the attackbox, it reverts back to the way it was when it was booked up

#

There is no persistence

lyric venture
#

I meant make my own attack box/vm locally and use the VPN to remote into the network. Although, in the case of the John room there is no "network" since there is not a box which gets attacked.

dense vale
#

How do I get access to the king of the hill chat?

wind wedge
west chasmBOT
dense vale
scenic torrentBOT
#

Gave +1 Rep to @west chasm (current: #255 - 19)

gaunt badge
#

hello, im new in tryhackme, and, tried to get premium, but, in the page "why-subscribe", the pop-up of the option "subscribe", dont load anything, and i cant buy premium.

someone can help me?

ivory spruce
#

Or are you planning to buy vouchers?

gaunt badge
#

i can access this, but when i click "Subscribe Now", i go to the same "why-subscribe" page, and get the same problem

gaunt badge
ivory spruce
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

thorn olive
#

Hi, I am facing issues while doing a lateral movement lab of windows

#

I have given all the permissions as well.

drifting monolith
#

Im facing issues trying to connect to the Exploiting AD and Persisting AD rooms. Network VPN config file can't connect but machine VPN file connects. Any help?

ivory spruce
gilded dagger
#

Hi, by mistake i had run iptables -F in the room linux hardening and now i cannot access the server, can you apply a hard reset?

queen idol
#

Hey Guys!

lone mirage
#

Hi, I'm doing AoC 2021 and the machine doesn't seem to be popping up, what can I do?

tribal mason
#

Navigate to the top of the page, click "Show Split View"

scenic torrentBOT
#

Gave +1 Rep to @tribal mason (current: #28 - 275)

empty kelp
#

Hello, im having problems with some environments in the attack and defending aws

smoky fog
#

hello i got a problm with

#

nmap

weary spindle
#

@smoky fog

Can you type ip a | grep "tun"

smoky fog
#

└─# ip a | grep "tun"
4: tun1: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
inet 10.18.116.211/17 scope global tun1
5: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
inet 10.18.116.211/17 scope global tun0
6: tun2: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
inet 10.18.116.211/17 scope global tun2

plush bay
#

oh that bad

weary spindle
#

sudo killall openvpn

smoky fog
#

okey know iwill check

weary spindle
#

After that command, wait 30 sec(s) and do ip a | grep "tun"

smoky fog
#

a okey

#

thanks a lot for your help

elfin hare
#

Hey new guy here trying to access via VPN. Using my Kali linux VM here and having troubles getting through.

#

Tried multiple VPN servers + regen the config file.

#

I found this error originally:

2024-02-16 18:43:59 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.

Google showed a lot of people had it so ended up just dropping "--data-" and naming it cipher (singular) got a new error:

#

2024-02-16 18:46:49 SIGUSR1[soft,process-push-msg-failed] received, process restarting
2024-02-16 18:46:49 Restart pause, 1 second(s)

#

Also:

2024-02-16 18:46:49 OPTIONS ERROR: failed to negotiate cipher with server. Add the server's cipher ('AES-256-CBC') to --data-ciphers (currently 'AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305') if you want to connect to this server.

#

Weird. I went to 10.10.10.10 but it works anyway.

#

If anyone is reading this, disregard the output and check 10.10.10.10 on your browser. For whatever reason tryhackme website + the terminal output will both say you're not connected but the actual connection works.

vagrant tinsel
#

hello ,i deleted my account without paying attention how can i recover it please?

wind wedge
vagrant tinsel
#

Even if I contact the support team ?

wind wedge
#

I may be wrong but i dont think so as it states that there is no way of recovery

ivory spruce
jolly violet
#

Guys, can anyone tell me if SOC Level 1 is free for the entire module or is it just up to the pain pyramid?

Grateful!

jolly violet
#

help me!

gleaming flume
spice sequoia
#

Hi, does anyone know if I buy a year subscription and cancel before the year is up? Do I get a refund for the time not used?

ivory spruce
spice sequoia
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #16 - 426)

weary spindle
#

And the subscription will still be active.

spice tangle
#

Hey i have a question! Will THM get courses like Full-stack dev or other coding courses? I know THM is about hacking but i really love THMs concept that you pay a affordable monthly fee and you get certificates etc

unkempt summit
# elfin hare Hey new guy here trying to access via VPN. Using my Kali linux VM here and havin...

i had a similar issue with another OpenVPN connection where i made this annoyance go away adding a flag with the referred cipher like --data-ciphers "BF-CBC" - OpenVPN is trying to make you avoid old and insecure ciphers, at my peticular case, i wasn't able to update server side ciphers. In my case i also had to add to ovpn file "tls-cipher "DEFAULT:@SECLEVEL=0" https://community.openvpn.net/openvpn/wiki/DeprecatedOptions

lean forge
#

hello, may I ask what is meant by subscribing to business in tryhackme?

unkempt summit
# orchid stag I live in Bangladesh

Hi Ned, i came to discord to solve an issue where a Windows 10 computer had OpenVPN connecting and working fine with THM Server, where a Windows 11 wasn't w
orking. On Windows 11 with latest OpenVPN software i was only able to connect changing advanced settings and letting insecure ciphers. The VPN would connect, it'd show traffic on its GUI, i'd get ip address for OpenVPN virtual interface, i'd get routes, i wasn't actually connected for some reason. I had also regenerated my profile in THM, but it didn't work out. In my Windows 11 i have another OpenVPN software for another proprietary company (that uses OpenVPN and it rebrands with its own name) and it was working properly on Windows 11. Also, OpenVPN (3.XX - latest) with above changes, it was reconnecting every a couple minutes. MY SOLUTION was uninstalling latest OpenVPN and getting same build i have on Windows 10 - https://build.openvpn.net/downloads/releases/
OpenVPN-2.5.6-I601-amd64.msi - i was able to import my THM profile, no changes applied to OpenVPN settings, i was able to connect and i am now pinging my attack machine.

jolly violet
fast zodiac
#

hi, its a basic question but I didnt fine the answer, I cant connect to my openvpn (ver 2.6.7), and it's already with the "data-ciphers AES-256-CBC" so I don't know what doesn't work. Does anyone know ?

wind wedge
fast zodiac
#

no its the restart pause issue but the line data ciphers doesnt fix it

wind wedge
#

If you verify, can you send a screenshot of your VPN output

west chasmBOT
fast zodiac
crystal marlin
fast zodiac
crystal marlin
# fast zodiac im on EU3

Could you try to press regenerate on the access page, then wait about 3 minutes, and only after waiting these 3 minutes, press download to get your new vpn config, then try again?

#

Oh actually

#

Try to switch to EU2, then follow the steps above

#

I think EU3 is having issues all together

fast zodiac
#

didnt think about changing server thanks

jolly geyser
#

I am unable to connect to site with OpenVPN from Windows, from Linux I am able.
Windows error message in OpenVPN:

Connection Failed
There was an error attempting to connect to the selected server.
Error message: option_error: sorry, unsupported options present in configuration:
UNKNOWN/UNSUPPORTED OPTIONS (pull)

I am using the same file on Windows and on Linux, what am I doing wrong?

wicked viper
jolly geyser
#

If I'm switching to EU2 regular then I'm receiving the following message:
Connection Timeout
Connection failed to establish withing given time

wind wedge
jolly geyser
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #16 - 427)

ivory spruce
jolly geyser
ember beacon
#

LOSER

plush bay
#

@bronze vale thank you please

scenic torrentBOT
#

Gave +1 Rep to @fiery knot (current: #1999 - 1)

marble breachBOT
#

Done!

royal stone
#

What these letters signify?

gleaming flume
bronze vale
tender basin
#

hey has anyone tried to boot up the room: Blaster? cant get a response from it.

bronze vale
tender basin
#

ping

bronze vale
tender basin
#

big oversight. thanks

blissful flower
#

Not able to download the configuration file for the network wreath . Says "An unknown error has occurred" when every time i click download . Tried regenerating multiple times .

surreal swift
#

I'm new to the site, is there like a page with the correct answers for some tryhackme rooms, for when im stuck?

weary spindle
jolly violet
#

I understood why I finished the pain pyramid, but when I go to the next step, it says that I need to purchase the premium to continue, help me

#

Soc level one

weary spindle
#

The next room on that path is a subscriber room only.

chilly tapir
#

its already late , why my subscription is not yet expired?

weary spindle
chilly tapir
#

18: 50

#

but as the mentioned time it should've expired in the 18:42 itself (6:42 in 12 hours time)

#

i refreshed the page

#

tried logging out and logging in but still its not expired yet

weary spindle
#

I'm sure it will end soon

chilly tapir
#

yeah so i can get my new one year subscription lol

#

thats why iam eager

weary spindle
#

Ah it's ok.

Just use it until it expires.

You won't lose anything 🙂

chilly tapir
#

yeah, cool

desert geode
#

Hi, Can someone help with room creation issue , any admin?

weary spindle
#

I'm not admin byw

desert geode
weary spindle
desert geode
#

So basically its a windows 10 VM I gave like little bit high like 8gb ram and maybe total of 12 or 8 proccessor

weary spindle
#

That's maybe why.

Free users only get 512mb of RAM and half of a CPU

desert geode
#

But i have uploaded other VM with the same spec and all them are working well

wicked dove
weary spindle
unreal mauve
#

Hi! is it possible that sometime the freeze token get consumed even trough i answered a question ?

plush bay
plush bay
unreal mauve
#

strange

plush bay
#

yeah it will show the orange flame until you answer a question then it goes back to green

coral furnace
#

i didn't connect with vpn plz. someone help me

gleaming flume
#

Can you provide some more information? You're trying to use the VPN yeah? Are you getting an error or are you confused about what to do?

weary spindle
#

@elder spindle

Which OS are you using?

elder spindle
#

kali linux

#

its bare metal

weary spindle
#

Everyone seems to have an issue with that lately.

elder spindle
#

i just did apt get upgrade and update lets see if it does something

elder spindle
weary spindle
elder spindle
#

i recently changed my username is that maybe a reason?

elder spindle
#

and i tried it on my mac too, gives me the same result

weary spindle
#

Anyway

You could always try re-generating Eu reg 1

elder spindle
#

already did

#

and i also ran the thm script on all 3 ovpn files

weary spindle
#

Have you deleted all the previous files?

elder spindle
#

yessir

weary spindle
#

Because the terminal doesn't like ( )

solar hedge
#

Hey I need some help

elder spindle
weary spindle
elder spindle
#

sure hold up

#
sudo openvpn eltico.ovpn  
[sudo] password for kali: 
2024-02-18 19:28:57 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-02-18 19:28:57 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-02-18 19:28:57 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2024-02-18 19:28:57 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-02-18 19:28:57 library versions: OpenSSL 3.1.4 24 Oct 2023, LZO 2.10
2024-02-18 19:28:57 DCO version: N/A
2024-02-18 19:28:57 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2024-02-18 19:28:57 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-02-18 19:28:57 UDPv4 link local: (not bound)
2024-02-18 19:28:57 UDPv4 link remote: [AF_INET]18.202.129.195:1194
2024-02-18 19:29:57 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2024-02-18 19:29:57 TLS Error: TLS handshake failed
2024-02-18 19:29:57 SIGUSR1[soft,tls-error] received, process restarting
2024-02-18 19:29:57 Restart pause, 1 second(s)
weary spindle
#

Are you on your home network or a school etc?

elder spindle
#

home

weary spindle
#

Interesting.

Can you use a different network?

Or a different NIC?

elder spindle
#

let me trymy hotspot

#

ooooooooooohhhhhhhhhh

#

damn

#

u just reminded me

#

i recently hardened my firewall settings on my router

weary spindle
#

That might do it.

uncut coral
#

How do I reach support regarding my subscription?

west chasmBOT
#

@uncut coral

TryHackMe's Email

TryHackMe's support email address.

uncut coral
#

Thanks!

autumn summit
#

i need ur help, I am not able to connect thm via openvpn in windows (I tried all servers)

weary spindle
#

Which GUI application are you using?

#

Which country are yo uin?

autumn summit
#

open vpn 3.4

#

canada

#

server us east and west

weary spindle
#

OpenVPN Connect?

autumn summit
weary spindle
autumn summit
#

thanks a lot buddy @weary spindle

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1975)

solar hedge
#

Hey do I have to go to premium in order to continue the intro to cybersecurity?

gleaming flume
real kindle
#

Hi. I am trying to learn the AD Lateral Movement and Pivoting. Yesterday I could connect and get credentials. But today I can only ping the THMDC. DNS queries do not resolve, nslookup cannot reach server. Restart server doesn't help. Maybe any suggestions? Same issue in the AttackBox.

scenic torrentBOT
#

Gave +1 Rep to @gleaming flume (current: #43 - 164)

naive dust
#

I am trying to recover an account, I have control of the linked e-mail address, but I am not receiving a reset e-maill. checking spam gateway there is no attempt yet. Do you know the expected timeframe a recovery email will be sent after requesting a reset.

wind wedge
naive dust
#

I'm not sure, it used to be like a 0x0A user account with sub in its history, i sure hope not

#

I tried to register a new one, and it said that email exists

wind wedge
#

Do you login with google?

naive dust
#

No

#

Its a throwaway just for THM i cna give you the email np

wind wedge
#

Whats your username on THM?

naive dust
#

"Sporked" or "Sp0rked" email tryhackme@*.net

#

can I kick you the full details via PM?

#

account is definitely "sp0rked"

#

from the subscription email

wind wedge
#

I found your account

naive dust
#

thats me

#

only 0x9? Gah, i remembered wrong. sorry

#

Thanks for looking

#

I will sent them an email and work on that thsi week

#

going to turn on an old computer and see if i didn't keep that keeweb in appdata there

#

(no longer using KW for pws)

weary spindle
#

If you can remember the password you can log in with your username instead of Email

naive dust
#

Its my hopes i set that pw before forking to my virtual desktop

#

still doing the patches on powerup

naive dust
#

Theres no way i could possibly have remembered that pw, thankfully it's stored somewhat safe (it was turned off after all)

sour flame
#

I am trying to configure Openvpn on my ubuntu machine. I installed the openvpn ver=OpenVPN 2.3.10. When I tried to run the openvpn I encountered an error - "Options error: Unrecognized option or missing parameter(s) in HappyIam.ovpn:14: data-ciphers (2.3.10) Use --help for more information."

When i ran the troubleshoot script "#infosec-general message"
I got an error - "[-] MTU value failed at 1000, aborting MTU check"

royal stone
bronze vale
upbeat totem
#

Hello ,
I need some help in Network services (1-2). I'm facing problems with scanning the IP addresses . Every time I do an nmap scan , all ports are being filtered or closed and it doesn't even showed . I got a message saying that all 1000 ports are closed and I can't even see one port to complete the room .

scarlet badger
#

Hey guys! I have a problem with my account regarding billing. Who can I reach out from the Support team?

weary spindle
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

scarlet badger
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1977)

upbeat totem
#

@weary spindle both

sour flame
bronze vale
#

We’re on OpenVPN 2.6 now

sour flame
bronze vale
sour flame
bronze vale
#

Ubuntu

#

sudo apt install openvpn

sour flame
sour flame
bronze vale
#

Send a screenshot of the output please?

west chasmBOT
gaunt obsidian
#

Hi ! I need help with subscription, I forgot to delete the renewal 🥲

gaunt obsidian
#

Thanks Jared 😃

sour flame
bronze vale
eternal forum
sour flame
bronze vale
sour flame
bronze vale
#

Are you able to update to a newer version?

#

You might be able to connect by editing your .ovpn file and changing "data-ciphers" to just "cipher" but that's a temporary fix

#

My suggestion would be to update to a newer version of Ubuntu

sour flame
bronze vale
sour flame
bronze vale
#

That's only my suggestion.
You're likely going to run into a lot more problems down the road.

sour flame
bronze vale
#

As you are a subscriber, you have unlimited use of the AttackBox.
This is automatically configured and is kept up-to-date with the newest tools.

You do not need to connect the AttackBox to the network, it is ready-to-go out of the box

bronze vale
sour flame
scenic torrentBOT
#

Gave +1 Rep to @bronze vale (current: #6 - 1160)

sour flame
bronze vale
#

You can access the AttackBox in-browser 🙂

sour flame
#

is it possible to ssh connection attackbox

bronze vale
sour flame
simple loom
#

Hi guys,
Anyone knows if there is a problem with the " Forgot password" option in the platform?

weary spindle
#

Did you not get an E-mail?

simple loom
#

I'm trying to recover my account but emails are not in my inbox but i'm receiving the monthly billing info

simple loom
weary spindle
simple loom
#

I'll try

#

Thank You ❤️

sacred thicket
# sour flame kindly suggest, how to get the ssh connection from local machine..? 1) I connect...

if it is the machine from tryhackme then follow this:

  1. Connection to OPENVPN: for which you've to download a ".ovpn" file and run it in terminal.
  2. Run the machine: from which you'll get the ip address of the machine.
  3. Run SSH command: ssh machine_name@machine's_ip_address (e.g. ssh tryhackme@10.10.23.29).

If it takes long time on the last step, then make sure the vpn is connected. You can ensure this by running ifconfig command from which you must see tun1 with IP address of the VPN.

weary spindle
#

Not TryHackMe.

sacred thicket
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #2 - 1979)

weary spindle
#

Which OS

Which country

Whcih server?

#

Nah man, You might have tried EU-Reg_3 which is borked

keen mason
bronze vale
#

We don't use the r-word here 🙂

keen mason
solar jewel
#

Hi
Pls I'm having issue with the tryhackme website. It's always getting back to mobile view anytime I tried putting it in desktop view on my phone. I've tried using other browsers too but it's still the same

ivory spruce
#

What browser are you using?

halcyon tinsel
#

I've been trying to download the hololive vpn config file but everytime I try to do it the website give me a "Not Found" error. I've tried regenerating it and refreshing the page as well and it doesn't work. I can download the breachingAD config file so I know I can get some config files.

plucky talon
#

Hello, I can not access my professional account since I could not access my business e-mail address due to job change. Is it possible to make my account accessible via another e-mail address?

jolly violet
#

Good evening, could you help me?
I'm studying the SOC LEVEL 1 theme, I complete the "Pyramid of Pain", when I start the Cyber ​​kill chain module it asks me to subscribe to Premium, could you tell me how I can complete SOC LEVEL 1 without having to subscribe to Premium?

Grateful!

ivory spruce
ivory spruce
hazy jay
#

hello is there a resource i can use to learn how to get the downloaded task files into the virtual machine? i tried using open vpn but its not connecting me for some reason.