#site-support

1 messages Β· Page 67 of 1

lucid osprey
#

Hello, I have a problem with images in Linux priv esc room. Can't see images.

ivory spruce
lucid osprey
#

Seems like it, thank you.

weary spindle
#

Imgur.

#

?*

lucid osprey
#

yes that's the src

errant mica
#

I'm trying to download an openvpn configuration to access the wreath network. I keep getting a message that an unknown error occurred. I have clicked regenerate before trying to download it.
I've tried hard refreshing the page. I have tried in Edge, Chrome and Firefox.

final aspen
#

Thanks @weary spindle

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2229)

amber iris
#

How do I fix this

weary spindle
amber iris
#

EU-regular 1

weary spindle
amber iris
#

ok

amber iris
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2231)

spiral wigeon
#

I've got a question about uploading machines. It's been stuck on 39% for a hot minute now, cancelled it but then it got stuck at 39% again. What might cause this?

#

Oh and I mean it's stuck at converting my bad

plush bay
#

would recommend pinging a moderator when they are around to get added to creators-lounge @spiral wigeon

west chasmBOT
plush bay
#

this will help too

errant mica
scenic torrentBOT
#

Gave +1 Rep to @plush bay (current: #4 - 1734)

acoustic hinge
#

hello does anyone know why i keep hgetting the wring answer on Writing IDS Rules (HTTP) What is the number of detected packets? I keep getting 328 on my end but its says its wrong

plush bay
#

your answer is wrong

#

check the output of your command again or write a new rule

acoustic hinge
#

snort

plush bay
#

the correct answer starts with a 1

#

good luck searching for it and figuring it out

acoustic hinge
#

i dont get how my rule is wrong

hot ridge
#

It has these extreme spikes in like 2 minute intervals:

eager stirrup
#

I cant terminate the machine ^

quaint prawn
#

same problem same room here

quaint prawn
visual anvil
#

if I don't have an active subscription, how come I cant remove payment information from my account?

#

when attempting to access tryhackme.chargebeeportal.com from various different browsers, i receive a message saying either "Invalid URL" or "Session expired. Please try again"

weary spindle
ripe scroll
#

Hey guys I need help my subscription renewed ( I completely forgot i turned it on yearly) and i really don't have the finances to continue with payment, Im in a rather difficult place right now. Is there any way for you guys to help me?

ripe scroll
karmic seal
#

I was solving Sysinternals room and followed the instruction but it is giving me this error what to do?

Edit: No worries issue resolved

ripe scroll
serene sleet
#

last 2-3 days my thm attackbox is really slow, anyone know how to fix it? with slow i mean, starting something takes 10sec, writing a letter takes 10sec aswell

spring sundial
#

I completed tasks yesterday morning and now this morning my streak is set to 0. Is it possible to have someone look into my account?

west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

spring sundial
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2237)

distant elk
#

hi, is there an endpoint to get users' total points? it's for my classroom leaderboard

weary spindle
distant elk
weary spindle
distant elk
weary spindle
distant elk
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2238)

frozen dust
karmic seal
# frozen dust How did you manage to solve it?

I saw environment variables it was there already, so it means the sysinternals tools might be already installed on the machine. Thus I tried to solve the next challenges and it worked..

scenic torrentBOT
#

Gave +1 Rep to @karmic seal (current: #2073 - 1)

fallen maple
#

I am trying to run the VPN in Ubuntu 24.04 GNOME as well as on Fedora 39 GNOME but the VPN cant connect. But when i run the script in the terminal, works without any issue. Any idea how to resolve this issue. Tried regenerating the file but no success. I am using the US-East-Regular-1 file. I also tried the thm-troubleshooting step.

fallen maple
spring wraith
#

trying to download the network vpn server config file but it keeps loading

gleaming heath
#

Hey, internet connections stop working when i connect to thm vpn connection

weary spindle
gleaming heath
gleaming heath
weary spindle
#

That will be why,.you're routing your network through the THM vpn.

#

You need to use the CLI.

gleaming heath
#

this is after i connect

gleaming heath
#

also, it can't resolve the domain, even when i'm trying to access with the ip

weary spindle
#

Did you add creative.thm to your hosts file?

gleaming heath
#

got it

#

thank you

white storm
#

i have openvpn on my chromebook but it wont properly connect, i keep getting the 'connection timeout' error and settings show that it succesfully connected for about a millisecond before it disappears

#

can comeone help me out

weary spindle
white storm
#

says current version 3.4.2(9909)

weary spindle
#

Connect or communities?

white storm
#

Connect

weary spindle
#

Use the communities one πŸ™‚

That works.

white storm
#

where do i find that?

limpid cove
#

Hello, I'm a Twitch Partner Streamer and I can't find any info about rules or guidance regarding livestreaming myself trying to solve rooms and completing activities. Could someone help me please?

ivory spruce
ivory spruce
west chasmBOT
#

@limpid cove

TryHackMe's Email

TryHackMe's support email address.

limpid cove
#

Cheers!

sage axle
#

Hello, new user here πŸ™‚
For background, I'm a complete beginner in the cybersecurity field.
I am currently in the Linux Fundamentals Part 1 learning room, and followed the steps shown on the screen to start the machine (web-based). It opens a blank screen on the right side and nothing else, while the tutorial shows that a terminal is supposed to be displayed once the machine starts.
Am i missing something, should I do some extra configs from my end before starting the machine?
Thanks for helping

hazy laurel
#

guys the exploitad machine doesn't work

#

3 of us asked for reset but we're not enough

#

systemd-resolve --interface exploitad --set-dns 10.200.83.101 --set-domain za.tryhackme.loc
root@ip-10-10-242-148:~# ssh za.tryhackme.loc\t2_lawrence.lewis@thmwrk1.za.tryhackme.loc
ssh: Could not resolve hostname thmwrk1.za.tryhackme.loc: Temporary failure in name resolution

#

its up for like 34 min

sick nexus
glacial gale
#

hello

#

am running into an issue with one of the rooms and i think theres a bug

#

is this where to comaplain about it?πŸ˜…

sage axle
scenic torrentBOT
#

Gave +1 Rep to @sick nexus (current: #318 - 15)

glacial gale
sick nexus
glacial gale
sick nexus
sage axle
#

There's a loading bar first (takes about 1 minute to finish), once it loads I can only see a blank screen.
In the video tutorial, a terminal is supposed to be displayed once the loading bar/setup is ready, but in my case only a blank screen is displayed after

sick nexus
#

idk if the same room tho

sick nexus
#

However if anyone else has better advice they can definitely say it

sage axle
#

Seems like it, I'll try to find a fix and let you know

#

Thanks πŸ™‚

glacial gale
sick nexus
#

Yeah there might be an unstable release or something but i dont think theres a fix right now

glacial gale
#

i guess the old rooms really are left out in the dark

weary spindle
#

The rooms reboot as if you're betting the machine up

#

They rarely change them.

versed blaze
#

guys im trying to load the windows fundamentals 3 vm, but it just shows a blank screen. I have terminated and restarted 3 times, but no luck so far.

sage axle
versed blaze
#

Is the site not working or something

sage axle
#

I contacted support and they suggested I clear my cache and cookies (did not work), run in incognito mode (did not work), try different browsers (did not work).
Give them a try if you'd like, let me know what happens

patent sinew
#

the same situation guys. Just black screen in VM

sage axle
#

:/

ember light
#

I have the same issues, VM not starting (black screen)

karmic kraken
#

Same with the Redline room

patent sinew
#

hope soon everything will be fixed

paper sable
#

@versed blaze @karmic kraken @patent sinew apologies for the inconvenience
This is being looked into

paper sable
sage axle
scenic torrentBOT
#

Gave +1 Rep to @paper sable (current: #58 - 117)

viral shale
#

Yo can any1 help me. I have downloaded the OpenVPN gui and config and i have put the config in the vpn and have connected but i cant connect to the machine/ip

viral shale
patent sinew
#

everything is working, thank you for fixing this!

warm sun
#

Hello! I am trying to connect to tryhackme with openvpn but I am getting an error. Could someone help me solve this please?

#

I am getting this

#
2024-05-09 22:14:33 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-05-09 22:08:02 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2024-05-09 22:08:02 OpenSSL: error:0A000086:SSL routines::certificate verify failed
2024-05-09 22:08:02 TLS_ERROR: BIO read tls_read_plaintext error
2024-05-09 22:08:02 TLS Error: TLS object -> incoming plaintext read error
2024-05-09 22:08:02 TLS Error: TLS handshake failed
2024-05-09 22:08:02 SIGUSR1[soft,tls-error] received, process restarting
2024-05-09 22:08:02 Restart pause, 300 second(s)
^C2024-05-09 22:09:47 SIGINT[hard,init_instance] received, process exiting
barren folio
#

Hi, i am having issues with my Paypal account, i was subscribed before but i cancelled it a few months ago through paypal, thus it ended up in the inactive subscriptions on there. The only way paypal allows to be activated is trough the seller ( wich makes sense ). But now comes the real issue, there's no way to remove the existing paypal on tryhackme, i tried ignoring it and trying to link it again regardless, but it just keeps loading at the popup for paypal login, what can i possibly do now? Even the support has no option for this issue, so i cant even make a ticket.

#

Solved by doing the exact same as before, i guess being stubborn did the trick

ivory spruce
warm sun
#

I am trying to connect to EU-Regular-3 but neither of the servers works for me. I tried multiple servers.

quick crow
#

Hi everyone, My Attak box sometimes runs very slow and sometimes disconnected frequently even if I have subscription Does anyone know the reason and how to fix it

warm sun
ivory spruce
ivory spruce
ivory spruce
ivory spruce
# warm sun Yeah.

Do all three servers give you a certificate verify failed? When you change your OpenVPN server, do you wait for 2 to 3 mins to generate your OpenVPN config file?

warm sun
ivory spruce
warm sun
#

None of them worked :/

ivory spruce
warm sun
#

The latest. I thought this could be the problem so I updated it.

plush bay
#

different distros have different newest version in repos

wanton mist
#

Hello there! i've been away from THM and i'm trying to connect to network again but having problems

i get an 10.6.x.x IP address but access page show disconected and cant ping to the machine, only ping to 10.10.101.0

plush bay
#

if yes that would mean it can not be pinged easily

#

if so try and run an nmap scan without the ping part to see if it is up

wanton mist
plush bay
#

yeah the access page is bugged

#

if you can ping 10.10.10.10 or curl curl 10.10.10.10/whoami it works

wanton mist
scenic torrentBOT
#

Gave +1 Rep to @plush bay (current: #4 - 1741)

tepid rampart
#

I am having problems connecting with pop3 from nc machine name Fowsniff CTF

ivory spruce
rare jewel
rare jewel
tepid rampart
#

What they told me in that step, the victim IP and port 110, then I have to enter user, the user that I had to crack and the password, I enter it and it says failed, and I think it is a problem with the machine

viral shale
#

im trying to use the machine listed in the room but it seems like it doesnt work can some1 help?

lilac elbow
#

Hi, I’ve lost all my account progress, can you help?

ivory spruce
lilac elbow
ivory spruce
viral shale
lilac elbow
#

Is there a delay between resetting your password and logging in! It just constantly says incorrect password I’ve changed it 5 times now and it says the same damn thing over and over

hazy laurel
#

anyway guys its really impossible to finish the exploitad room. because every hour the machine reset and not work for like one hour. but everytime the machine reset, you need to redo everything again. and for finish this room you need the entire day only for waiting that the machine starts to work again. any advice?

red nebula
#

https://tryhackme.com/r/room/burpsuitebasics everytime I try and complete the burpsuite basics modules my computer fan kicks in and the site is broken af. This hasn't happened in any other room, and this is happening without even a VM deployed just merely reading and scrolling the webpage. Still haven't got a response or help from last time I inquired a few days ago...

warm sun
#
OpenVPN 2.5.9 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Sep 29 2023
library versions: OpenSSL 3.0.2 15 Mar 2022, LZO 2.10
Originally developed by James Yonan
Copyright (C) 2002-2022 OpenVPN Inc <sales@openvpn.net>
Compile time defines: enable_async_push=no enable_comp_stub=no enable_crypto_ofb_cfb=yes enable_debug=yes enable_def_auth=yes enable_dependency_tracking=no enable_dlopen=unknown enable_dlopen_self=unknown enable_dlopen_self_static=unknown enable_fast_install=needless enable_fragment=yes enable_iproute2=no enable_libtool_lock=yes enable_lz4=yes enable_lzo=yes enable_maintainer_mode=no enable_management=yes enable_multihome=yes enable_option_checking=no enable_pam_dlopen=no enable_pedantic=no enable_pf=yes enable_pkcs11=yes enable_plugin_auth_pam=yes enable_plugin_down_root=yes enable_plugins=yes enable_port_share=yes enable_selinux=no enable_shared=yes enable_shared_with_static_runtimes=no enable_silent_rules=no enable_small=no enable_static=yes enable_strict=no enable_strict_options=no enable_systemd=yes enable_werror=no enable_win32_dll=yes enable_x509_alt_username=yes with_aix_soname=aix with_crypto_library=openssl with_gnu_ld=yes with_mem_check=no with_openssl_engine=yes with_sysroot=no
#

Now I am getting this while trying to connect to EU-1

2024-05-10 13:27:12 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-05-10 13:27:12 --cipher is not set. Previous OpenVPN version defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-05-10 13:27:12 OpenVPN 2.5.9 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Sep 29 2023
2024-05-10 13:27:12 library versions: OpenSSL 3.0.2 15 Mar 2022, LZO 2.10
2024-05-10 13:27:12 OpenSSL: error:0480006C:PEM routines::no start line
2024-05-10 13:27:12 OpenSSL: error:0A080009:SSL routines::PEM lib
2024-05-10 13:27:12 Cannot load inline certificate file
2024-05-10 13:27:12 Exiting due to fatal error
ivory spruce
#

Are you using kali?

warm sun
#

No, I am using Pop OS

ivory spruce
#

It shouldn't be related to the OS though as it is based on Ubuntu

honest canyon
#
2024-05-10 15:13:22 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.```
warm sun
#

To be honest I think this might even be on THM side? I mean it worked perfectly fine a month ago.

honest canyon
#

It didn't work for me at all

#

Does it relate to the version of OpenVPN

#

Like the old one would work well ?

warm sun
#

I don't know but the old version didn't work for me either.

barren gull
warm sun
#

I did...

hearty light
#

U fixed it?
Does it work when connecting to another server?

warm sun
warm sun
weary spindle
warm sun
#

Croatia.

sour solstice
#

hi i need to know the email of my account

weary spindle
sour solstice
#

yes

weary spindle
#

You can login using that assuming you know the password.

sour solstice
#

i do not

weary spindle
#

If you don't, you'll need to contact support.

west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

sour solstice
#

where?

#

alright thanks

shrewd holly
#

Hi,

are users supposed to actively share Machines?

#

I would consider that somewhat of a flaw/security issue tbf

crystal marlin
shrewd holly
#

We both had the same target machine ip

#

without sharing anything

crystal marlin
shrewd holly
#

I noticed after I uploaded my own revshell into the directory

#

That we indeed had the same target (while having different OVPN IPs etc.)

#

so either the room might be misconfigured (if thats possible) or something else went wrong

#

his is the php-rev shell, mine the revshell.php.

We are friends on THM, but that didn't cause anything previously. So I'm not sure.

crystal marlin
shrewd holly
#

sadly no, we completed the room about an hour ago. I can still provide you with the IP, if thats any help?

crystal marlin
#

I mean yes, let me see πŸ™‚

shrewd holly
#

10.10.175.106

crystal marlin
shrewd holly
#

yes, sadly. I could give you the timeframe in which we most likely started it?

crystal marlin
shrewd holly
#

If we encounter it again, we'll let you know. How exactly do we obtain the target machine info?

crystal marlin
#

It's just that box:

shrewd holly
#

Ah I see. Well it'll most likely then have had the same IP, since each of us has its own Account and OVPN Profile.

We crosschecked on 10.10.10.10 that our IPs were indeed different

#

We could also provide you those, if they are any help

crystal marlin
shrewd holly
#

Ah okay. Was hoping maybe that would help to track.

#

We'll keep it in mind for the future and will gladly get back to y'all

crystal marlin
#

Sounds good, thx!

vague apex
#

I can't connect to VPN, VPN belongs to you, can you please help?

#

@weary spindle

vague apex
#

eror fix not tag no dm

ivory spruce
earnest trench
#

Hello Everyone, I am Rajendra Mohan Navuluri, I am trying to complete OS security module , but when I am trying to give password as dragon to login to sammie linux box, it is throwing error, can someone please help me?

ivory spruce
earnest trench
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #13 - 544)

west chasmBOT
earnest trench
#

I tried to send a msg to @west chasm / verify and my token attached

ivory spruce
#

Just type /verify here directly and it will be sent to the THM bot.

earnest trench
karmic seal
#

Hey I was playing koth .. windows machine Offline, and my name is there in king.txt file, but I am not king in the game ..

#

any ideas why this is happening?

jolly depot
naive dust
#

Hey where to contact for subscription related issue

west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

karmic seal
#

I was able to submit flags and all

jolly depot
karmic seal
#

Yes I think so..

shrewd roost
#

I have no clue to post this, but I have a 233 day streak but I stopped getting daily email notifications after I missed a day and used one of my streak-savers.

Is it possible to get the e-mail reminders back?

jolly depot
# karmic seal Yes I think so..

Port 9999 actually communicates with TryHackMe so if it wasn't open then King couldn't be read. Then no one got points for it

karmic seal
#

Oh okk... Will check that next time

boreal osprey
#

I am having just the worst time trying to get my windows box to connect to the VPN. At first, it wouldn't connect to the VPN at all, but I read somewhere that using the Insecure Security Level will allow it to connect. And it did; it says I'm connected. The Access Details page on THM says I'm connected as well. I can ping the Internal Virtual IP Address listed on that page. However, when I try to do any of the rooms I can't seem to communicate with the machines. For instance, in the 'contentdiscovery' room, I can't access any of the websites. When I try the same from good ole Linux, I have no problems. "Well just use the Linux box, duh!" - I know, I know... but I really want to get this working on the Windows box.

Whoa... wall of text there.. If anyone was kind enough to read all of that and has any suggestions, please let me know

#

US West-VIP (if that matters), I've tried US East too though, same results

ivory spruce
boreal osprey
#

Via OpenVPN Connect

ivory spruce
boreal osprey
#

Thanks, I'll give that a try

ivory spruce
boreal osprey
#

I just want to say thank you very much. You fixed me up in no time flat after I spent hours trying to figure it out on my own. Thanks again!

ivory spruce
#

You'll need to be patient at times as most folks here (aside from THM Staff) are volunteers.

broken bear
agile shore
#

Hi, I got a problem to download and regenerate the VPN configuration file for Wreath network

latent anvil
#

2024-05-11 17:26:41 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-05-11 17:26:41 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-05-11 17:26:41 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2024-05-11 17:26:41 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-05-11 17:26:41 library versions: OpenSSL 3.1.4 24 Oct 2023, LZO 2.10
2024-05-11 17:26:41 DCO version: N/A
2024-05-11 17:26:41 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2024-05-11 17:26:41 OpenSSL: error:0A080009:SSL routines::PEM lib:
2024-05-11 17:26:41 Cannot load inline certificate file
2024-05-11 17:26:41 Exiting due to fatal error

#

how to resolve this

ivory spruce
strange cliff
#

hey i'm having trouble connecting to the machine in a room, i get this:

#

2024-05-12 06:37:21 Note: --data-cipher-fallback with cipher 'BF-CBC' disables data channel offload.
2024-05-12 06:37:21 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-05-12 06:37:21 library versions: OpenSSL 3.1.5 30 Jan 2024, LZO 2.10
2024-05-12 06:37:21 DCO version: N/A
2024-05-12 06:37:21 WARNING: INSECURE cipher (BF-CBC) with block size less than 128 bit (64 bit). This allows attacks like SWEET32. Mitigate by using a --cipher with a larger block size (e.g. AES-256-CBC). Support for these insecure ciphers will be removed in OpenVPN 2.7.
2024-05-12 06:37:21 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2024-05-12 06:37:21 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-05-12 06:37:21 UDPv4 link local: (not bound)
2024-05-12 06:37:21 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2024-05-12 06:37:21 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=baa357aa 4f1146d8
2024-05-12 06:37:21 VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=425397202556807641543660048237946304772097879576
2024-05-12 06:37:21 OpenSSL: error:0A000086:SSL routines::certificate verify failed:
2024-05-12 06:37:21 TLS_ERROR: BIO read tls_read_plaintext error
2024-05-12 06:37:21 TLS Error: TLS object -> incoming plaintext read error
2024-05-12 06:37:21 TLS Error: TLS handshake failed
2024-05-12 06:37:21 SIGUSR1[soft,tls-error] received, process restarting
2024-05-12 06:37:21 Restart pause, 1 second(s)
2024-05-12 06:37:22 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.168.160:1194
2024-05-12 06:37:22 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-05-12 06:37:22 UDPv4 link local: (not bound)
2024-05-12 06:37:22 UDPv4 link remote: [AF_INET]18.202.168.160:1194
2024-05-12 06:37:22 TLS: Initial packet from [AF_INET]18.202.168.160:1194, sid=ab0fbfd5 fe7d3ee6

strange cliff
#

eu-regular-3

strange cliff
weary spindle
strange cliff
strange cliff
#

2024-05-12 07:31:54 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-05-12 07:31:54 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2024-05-12 07:31:54 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-05-12 07:31:54 library versions: OpenSSL 3.1.5 30 Jan 2024, LZO 2.10
2024-05-12 07:31:54 DCO version: N/A

weary spindle
strange cliff
weary spindle
#

And you're using sudo?

strange cliff
weary spindle
#

Can you DM me your config?

strange cliff
#

how can I do it ?

weary spindle
#

Just DM me and then click and drag your config to my DM.

strange cliff
#

yeah but about the config wdym ?

ivory spruce
strange cliff
#

oh okayy

ivory spruce
#

Can you delete this one? He was asking you to send it directly to him. Click on his profile, and select send message.

fair jay
#

any clue why i cant access this webpage? I'll try my best to answer any questions you guys have im confused

weary spindle
#

Your VPN on?

fair jay
#

oh my fucking god

#

im a fucking moron

#

i forgot to turn it back on

#

alright time to leave this server and move to a different country

ashen oasis
#

why am i still level 7 on discord :((

pastel tinsel
#

or you can force it with /verify

ashen oasis
scenic torrentBOT
#

Gave +1 Rep to @pastel tinsel (current: #7 - 838)

timid talon
#

That's a long 24 hours since may 8.

pastel tinsel
#

the bot goes through the user list, so it can take longer or shorter, depends on where in the list you are

weary spindle
#

Could also be rate limited.

normal raven
#
systemd-resolve --interface breachad --set-dns 10.200.26.101 --set-domain za.tryhackme.com
Unknown interface breachad: No such device``` The network breachingAD for the attackbox
languid pier
raw mica
#

I agree. The Caldera room needs to be reviewed. The Sigma rule titles expected by the room questions are all different from the rule titles in the room machine's Aurora instance.

summer bane
#

Hello everyone i'm getting and error with this room "Snort Challenge - The Basics"

the first question seems to have an issue.

can you help me please ?

real breach
#

Hi, I'm having issues getting the VPN to work, I get the following:

2024-05-13 14:36:06 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-05-13 14:36:06 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305). OpenVPN ignores --cipher for cipher negotiations. 
2024-05-13 14:36:06 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2024-05-13 14:36:06 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-05-13 14:36:06 library versions: OpenSSL 3.1.5 30 Jan 2024, LZO 2.10
2024-05-13 14:36:06 DCO version: N/A
2024-05-13 14:36:06 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2024-05-13 14:36:06 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-05-13 14:36:06 UDPv4 link local: (not bound)
2024-05-13 14:36:06 UDPv4 link remote: [AF_INET]18.202.129.195:1194
2024-05-13 14:37:06 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2024-05-13 14:37:06 TLS Error: TLS handshake failed
2024-05-13 14:37:06 SIGUSR1[soft,tls-error] received, process restarting
2024-05-13 14:37:06 Restart pause, 1 second(s)
2024-05-13 14:37:07 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2024-05-13 14:37:07 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-05-13 14:37:07 UDPv4 link local: (not bound)
2024-05-13 14:37:07 UDPv4 link remote: [AF_INET]18.202.129.195:1194

It will keep attempting to connect. I did notice it's not creating a tun0 interface for whatever reason...
I'm running as sudo, connecting to EU-Regular-1 from the UK.

real breach
#

No luck - same error

#

I tried the thm-troubleshoot Github script which reports:

[+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? Y
[+] Connecting....
[-] Using outdated switch for cipher negotiations. Attempting to update...
[+] Successfully updated cipher switch! Please connect to the vpn using the following command:
sudo openvpn ./K3rne1.sh

However, I have investigated and attempted multiple times without any progress, not sure what could be causing the issue.

granite granite
#

I also have problems with VPN. It works fine in the terminal, but not over the networkmanager in Kali. Would love it over the network manager instead of needing to run it in the terminal

weary spindle
granite granite
#

Oh okay, so it's not worth it to keep trying to fix it. Thanks, for letting me know

grim vigil
#

i can not copy paste what is the problem i hope some body help me

granite granite
grim vigil
#

i already use it but it dosent work

granite granite
#

Can you be more specific about where the issue occur?

weary spindle
grim vigil
#

thanks that works

limber spindle
#

trying to connect to bot EU servers, same error.

last robin
#

but i still have the same error

#

if i execute the troubleshooting script it says that the MTU value is failing at 1000

#

i hope someone can help us

uncut magnet
#

When i copy the IP address to my browser get an Error Code 405. I have openvpn configured and on

uncut magnet
weary spindle
uncut magnet
#

10.10.255.108

weary spindle
uncut magnet
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2250)

smoky crane
#

so the thing is before I could copy something from outside the vm and paste it inside but now I can't do that

#

it's too much difficult to write scripts and urls and word lists for gobuster or other search

weary spindle
#

Mobile view isn't optimised for mobile displays, so it could be cutting it out.

smoky crane
#

I tried pasting with ctrl v

#

doesn't work

#

what about you try pasting something from outside vm

weary spindle
#

Could be an optimization issue, as I said.

smoky crane
#

does it work in your side ?

weary spindle
#

Well yes, because I'm not using a mobile device

minor parcel
#

Hey all, I've been trying to figure out what i could do to make stuff like reverse shells work with my wsl2 setup, it just wont ever make the connection, only thing i can find is applicable for windows 11, but im on windows 10. Any suggestions?

#

everything else like the VPN and such works perfectly fine, its just getting a connection through netcat for example doesnt seem to work

#

and maybe also some ftp shenanigans, but that might have been me

timid talon
minor parcel
#

Was worried that was going to be the answer lol, guess I'll go setup a kali linux VM in Vbox

heady vector
#

Is there any way to copy from browser and paste to attack box?

heady vector
#

Thanks!

real breach
runic heart
#

hello
I have encountered some problems on tryhackme s website and I don t know if its on my side or the website
does anyone else have crazy lag in the burp room? Either it won't load, work really slow, load partly or even crash the computer
Tested on other sites and I don't have any issues, tested both on Linux and Kali and had the same problem happen
The laptop is an older gen (8gb ram, i5 2.9 ghz) but never goes above 20% CPU use when on the website

quasi apex
#

Hey there, i have looked into this problem in previous threads, however i could not find a solution,

I am having problems with connecting to my tryhackme vpn "h3l1um.ovpn"

I have read an article on the internet saying that once you switch from your premium tryhackme account membership back to a free account, non premium, that it would cause issues?

Yes, i am running the command as sudo and i have confirmed that the hackthebox vpn is working so this points solely to the tryhackme version

#

(I have also made a new VM since i have a new pc i dont know if this has to do anything with the issue?

#

Please feel free to tag me as i am bad with noticing notifications

#

I have tried this command as well and kali told me there was no such dev interface (( sudo ip link set dev tun0 mtu 1200 ))

#

Update: I have simply just redownloaded a different VPN server's config file and it works!

#

From server1 to server2

hollow ginkgo
#

is there anyway to get account support ? cant login and cant reset password, i dont get an email

quasi apex
#

I did it like an hour ago, i did recieve an email

#

Check your spam

hollow ginkgo
quasi apex
#

You sure you did not make a typo?

hollow ginkgo
quasi apex
#

Oh lol

hollow ginkgo
#

is there any way to check if my account is still active ?

quasi apex
#

Getting support from this discord server is your best bet, they do reply quite fast, dont know about account based issues though

#

I can check for you, whats your user

hollow ginkgo
#

Woob

#

and again locked

quasi apex
#

Alright let me check

#

Lemme dm you

#

Accept the friend request pls

weary spindle
quasi apex
#

Oh i wasnt aware you werent allowed to send friend requests?

#

my bad

weary spindle
quasi apex
#

My bad

#

πŸ‘

tulip thicket
#

how i can change my email on thm ?

north heron
#

i tried to click reset several times not working

wind wedge
wind wedge
naive dust
#

Why I can't ping any cicdbuildscurity hosts not even with attack box in

pale bane
#

How can I change my email of my account?

weary spindle
tulip thicket
wind wedge
# tulip thicket Yes

Unfortunately you won’t be able to change it as you’re using Google SSO

north heron
tulip thicket
wind wedge
pastel tinsel
shut phoenix
#

Is anyone having issues starting the attack box? I've tried both the Kali box and the attack box, and i'm just getting grey screens. Tried on multiple browsers as well

crystal marlin
#

Do you have one running currently?

shut phoenix
#

I have just closed it, it wouldn't load

crystal marlin
shut phoenix
#

It goes through the whole "initializing" but then the message disappears and your left with the dark blue screen and nothing

#

I did try that, on that screen it just had a spinning wheel

crystal marlin
shut phoenix
#

Done

crystal marlin
# shut phoenix Done

Opens fine for me as well with that URL.
Maybe try to open the developer tools, then navigate to that URL again to see if you get any console errors

shut phoenix
#

Nothing that I can find, giving up, wasted too much time on this

#

thmVNC encountered an error:

#

Tried on multiple devices

#

Oh well, hopefully it works tomorrow

pale bane
#

My organization email will be soon expired hahaha.

craggy canopy
#

the vpn is literally unusable , every config in europe gives an error code ( certificate error ) or does "connect" which results in nothing working. the script also doesnt work - anything im missing out? a linux setting?

granite granite
weary spindle
craggy canopy
#

worked fine i the past, hence my lvl but i cant get it working anymore

#

either it connects and is super slow / doesnt load or it simply doesnt even connect

granite granite
#

If it were me I'd try purging openvpn and installing it again. Not an expert though

fringe crescent
#

I'm connected to ovpn but still getting access machine in THM

craggy canopy
#

i like THM way more tho, so id really love to stick to THM instead of HTB

weary spindle
#

Thm uses UDP.
HTB uses TCP.

So it could be a good chance udp is possibly nlcied, or the port.

#

Blocked*

craggy canopy
#

Okay, that makes sense

#

in 90% of cases it cannot load the inline certificate

#

sometimes , after regenerating multiple times / switching around it does connect

#

theres no connection tho, or its way too slow to work with it

#

the access panel does rarely acknowledge the connection then

rare hound
#

I am trying to complete the Persisting Active Directory room but the mimikatz.exe file is 0 bytes and will not run, it just hangs. I have tried multiple times, reloaded the attackbox, reset the server, logged out and back in of the ssh session. It is still zero bytes and just hangs when I try to run it. None of the kill options work for it either, I have to close the terminal to escape. Any ideas?? I've spent almost 2 hours on this task trying to get it to work.

rare hound
weary spindle
muted quail
#

When I go to the room: 'Burb Suite: The Basics' from the 'Jr Penetration Tester' path it gives me a hugh spike in memory. It increases from 3GB to >8GB is this normal? And how come?

craggy canopy
night bluff
#

hey.. I am doing the Burp Suite: The Basics and am on Task 10... I cant find my target IP.. I only see the Attackbox IP and that does not work I get Error Response .. can anyone help please?

wind wedge
digital anvil
#

Guys I get this error when trying to use ovpn help me please

2024-05-14 09:31:34 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2024-05-14 09:31:34 TLS Error: TLS handshake failed
2024-05-14 09:31:34 SIGUSR1[soft,tls-error] received, process restarting
2024-05-14 09:31:34 Restart pause, 1 second(s)
2024-05-14 09:31:35 TCP/UDP: Preserving recently used remote address: [AF_INET]3.104.196.208:1194
2024-05-14 09:31:35 Socket Buffers: R=[212992->212992] S=[212992->212992]
2024-05-14 09:31:35 UDPv4 link local: (not bound)
2024-05-14 09:31:35 UDPv4 link remote: [AF_INET]3.104.196.208:1194

night bluff
west chasmBOT
wind wedge
#

If you verify you can send a screenshot, shiw me which ip you’re using

night bluff
scenic torrentBOT
#

Gave +1 Rep to @wind wedge (current: #59 - 117)

hallow violet
#

Hello, maybe i have an issue in Exploiting Active Directory Room, i trying use the Rubeus tool and following the instructions, but i have this error: [X] KRB-ERROR (16) : KDC_ERR_PADATA_TYPE_NOSUPP. I read some articles in Google, but they say me that pre-authetication isn't enable in Domain Controller, but i don't have access to the DC.

digital anvil
gilded gulch
#

Please!!!! My computer shut down in the middle of the exercise and the ip_machine for accessing the site won't display any more please anyone have a solution? i can't even finish the room

gilded gulch
#

?

eager wind
#

Hello, I am not sure where to reach out for this issue so please let me know if there is a more appropriate channel. I am trying to reset my account's password but am not getting the reset password email. I do not have any tryhackme emails blocked.

west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

weary spindle
eager wind
#

thank you!

worn scarab
#

Hello, i think there is an issue in one machine in te JR penetration tester --> SQL injection

weary spindle
ivory spruce
worn scarab
sick nexus
#

You have the whole flag?

#

Like THM{…}?

worn scarab
#

Yes

#

I completed the machine trying random numbers to the end of the flag:
THM{XXX_XXXXXXXXX_####}
I kept trying to change the # for numbers and i finally got it right

#

I've sent a mail to the support team at support@tryhackme.com so it can be checked with pictures so they can understand it better

muted quail
#

You first have to click next and use that flag

#

It's a bit confusing, with that I agree

muted quail
#

Because I have only 8gb ram memory rn in my laptop, and because it uses all I have to restart my pc

sweet forge
muted quail
sweet forge
muted quail
#

I'm gonna give it a try. Did a ram test everything seems ok

vital spoke
#

im having trouble trying to RDP in the redteam capstone challenge

#

└─$ proxychains xfreerdp /u:laura.wood@corp.thereserve.loc /p:Password1@ /v:10.200.113.21 /cert-ignore /dynamic-resolution +clipboard
[proxychains] config file found: /etc/proxychains4.conf
[proxychains] preloading /usr/lib/x86_64-linux-gnu/libproxychains.so.4
[proxychains] DLL init: proxychains-ng 4.17
[proxychains] Strict chain ... 127.0.0.1:1080 ... 10.200.113.21:3389 ... OK
[02:14:45:550] [13924:13926] [ERROR][com.freerdp.core.connection] - Timeout waiting for activation
[02:14:45:552] [13924:13924] [ERROR][com.freerdp.core] - freerdp_abort_connect:freerdp_set_last_error_ex ERRCONNECT_CONNECT_CANCELLED [0x0002000B]

#

any hints please? i cant get it to work

weary spindle
#

Do you have the vpn running?

vital spoke
#

my own VPN configuration file? yes

#

i can ssh to the ubuntu machine no problem

weary spindle
#

What about the vpn belonging to Laura?

vital spoke
#

no i havent. i did last night when i attempted this and it didnt work, let me try now

#

just ran laura vpn, still same error

weary spindle
#

Try using Reminna?

It's better than xfreerdp

#

Why proxy chains too for initial access?

vital spoke
#

im following a walk through

weary spindle
#

Do you have proxy chains set up the way they do?

vital spoke
#

i just modified the proxy chains config like they did

#

sock5 127.0.0.1 1008

#

from memory

weary spindle
#

Tried logging withouf proxychains?

vital spoke
#

just tried remmina and still didnt work. let me try

#

without proxychains, same error

#

any special configuration needed for remmina? i put in the server IP 10.200.113.21 and her username laura.wood@corp.thereserve.loc and the password and no dice

weary spindle
#

Is the vpn running without an error?

vital spoke
#

looks like it

#

└─$ sudo openvpn laura.wood@corp.thereserve.loc.ovpn
[sudo] password for kali:
2024-05-15 02:22:42 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-05-15 02:22:42 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2024-05-15 02:22:42 OpenVPN 2.6.7 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-05-15 02:22:42 library versions: OpenSSL 3.1.5 30 Jan 2024, LZO 2.10
2024-05-15 02:22:42 DCO version: N/A

weary spindle
#

Is 10.200.113.21 in your routing table?

vital spoke
#

31 isnt no

weary spindle
#

Fixed it

vital spoke
#

MAIL 10.200.113.11
VPN 10.200.113.12
WEB 10.200.113.13

#

thats it

weary spindle
#

Not your network diagram.

route -s

vital spoke
#

sorry i dont understand

weary spindle
#

Use the command route -s in a terminal

vital spoke
#

└─$ route
Kernel IP routing table
Destination Gateway Genmask Flags Metric Ref Use Iface
default unifi.localdoma 0.0.0.0 UG 100 0 0 eth0
10.50.110.0 0.0.0.0 255.255.255.0 U 0 0 0 capstone
10.200.113.0 10.50.110.1 255.255.255.0 UG 1000 0 0 capstone
10.200.113.21 1.mubc.chcg.chc 255.255.255.255 UGH 1000 0 0 tun0
10.200.113.22 1.mubc.chcg.chc 255.255.255.255 UGH 1000 0 0 tun0
12.100.1.0 0.0.0.0 255.255.255.0 U 0 0 0 tun0
192.168.1.0 0.0.0.0 255.255.255.0 U 100 0 0 eth0

weary spindle
#

OK. The machines are there.

Can you nmap it.

#

?*

vital spoke
#

wont allow me to nmap 10.200.113.21

#

says it is down

weary spindle
#

Which command are you using?

vital spoke
#

nmap 10.200.113.21 -sC -sV

weary spindle
#

OK, what sort of machine is 10.200.113.21 ?

vital spoke
#

i believe its the WRK1 host

weary spindle
#

Which OS though?

vital spoke
#

it would be windows

weary spindle
#

So what does that mean for nmap?

vital spoke
#

no ping?

weary spindle
#

So you need to nmap that.

Now can you scan it?

vital spoke
#

yes. sorry

#

└─$ nmap 10.200.113.21 -Pn -v
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-05-15 02:50 EDT
Initiating Parallel DNS resolution of 1 host. at 02:50
Completed Parallel DNS resolution of 1 host. at 02:50, 0.00s elapsed
Initiating Connect Scan at 02:50
Scanning 10.200.113.21 [1000 ports]
Discovered open port 139/tcp on 10.200.113.21
Discovered open port 445/tcp on 10.200.113.21
Discovered open port 22/tcp on 10.200.113.21
Discovered open port 135/tcp on 10.200.113.21
Discovered open port 3389/tcp on 10.200.113.21
Connect Scan Timing: About 10.90% done; ETC: 02:55 (0:04:13 remaining)

weary spindle
#

OK, so we know its up.

What details do you enter in Reminna.

vital spoke
#

Connect Scan Timing: About 55.47% done; ETC: 02:52 (0:00:49 remaining)
Completed Connect Scan at 02:52, 84.24s elapsed (1000 total ports)
Nmap scan report for 10.200.113.21
Host is up (0.69s latency).
Not shown: 995 filtered tcp ports (no-response)
PORT STATE SERVICE
22/tcp open ssh
135/tcp open msrpc
139/tcp open netbios-ssn
445/tcp open microsoft-ds
3389/tcp open ms-wbt-server

Read data files from: /usr/bin/../share/nmap
Nmap done: 1 IP address (1 host up) scanned in 84.29 seconds

#

i havent used remmina before, but the IP, the username, the password. possibly the port somewhere

#

domain?

weary spindle
#

I added that in

#

corp.thereserve.loc

vital spoke
#

yep i tried that and still wont connect

#

cannot connect to the "10.200.113.21" RDP server

#

used laurawood as username, IP as 10.200.113.21, password as Password1@ and domain as corp.thereserve.loc

weary spindle
#

Ah!

#

Username.

#

That's wrong.

#

It's Laura.wood

vital spoke
#

no sorry i mean laura.wood

#

i cant paste images in here so was a mistype

#

not sure whats changed or happened, but now it doesnt say cant connect. its now saying "enter RDP authentication details" has all laura's details but i click ok. it thinks about it and just spits me back to same page

#

removed the @ out of her username etc still no good

west chasmBOT
vital spoke
#

any other ideas? i feel like this network is glitchy

woven elm
#

i have problem with openvpn

#

2024-05-15 042235 ERROR: Cannot ioctl TUNSETIFF tun: Operation not permitted (errno=1)
2024-05-15 042235 Exiting due to fatal error

#

how i can solve it ?

vivid lion
#

how to remove friends from the list?

wind wedge
muted quail
#

Okay, now I'm sure where the memory leak is comming from. But I still don't understand why it happens on this specific laptop and not on others.
It has to do with the lottie player. As soon as there is a loop mentioned in it the memory keeps on building untill everything breaks. If I disable the loop the problem does not occur. So I have found a workaround for now, but solving the problem would be better πŸ™‚

woven elm
#

any help ?

elfin herald
#

Anyone knows why I keep getting this error message? "{"status":"error","message":"There was a problem, please try again later."}"

#

I've been getting this for 3 weeks now

elfin herald
#

"{"status":"error","message":"There was a problem, please try again later."}"

weary spindle
elfin herald
#

When I go to the site as soon as I'm logged in

#

I have to delete my cookies to even show the home page

weary spindle
#

Sounds like an issue on your end?

elfin herald
#

How?

weary spindle
#

Well, if it was a website issue, there would be more than yourself reporting,

And it seems to be "fixed" when you clear cookies.

elfin herald
#

It's not fixed when I delete my cookies

#

Then it only shows the home page

weary spindle
#

That's a start.

elfin herald
#

If I'm signed in it tried to send me to the learning paths but i can't view those

#

Then i get the error

night bluff
weary spindle
#

You need to start the machine in task 1

night bluff
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2260)

weary spindle
night bluff
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2261)

weary spindle
night bluff
weary spindle
#

I done THM alongside my studies, and was years ahead of the class and work.

night bluff
regal raven
#

Anyone knows why I can't reach 10.10.10.10 but connected to Openvpn successfully ?

weary spindle
#

ip a | grep "tun"

#

Can you run that for me please.

regal raven
#

for macOS

novel glacier
#

Does anyone have issues with VPN connections for free tier ?

vivid lion
scenic torrentBOT
#

Gave +1 Rep to @wind wedge (current: #56 - 120)

runic heart
#

I don't get any points from completing rooms, did 8 rooms and stayed at the same ammount of points

#

I need to defend my ego and get the leaderboard, anyone knows why?

runic heart
#

I don't get how the points system really works, perhaps some rooms don t give point

#

I just know they are based on dificulty but I didn t gain any

wind wedge
#

Some rooms won’t give points, such as private rooms

#

I believe basic pentesting is now private which would be why

midnight barn
#

having problems with Wreath lab

ivory spruce
midnight barn
#

root@ip-10-10-53-171:~/CVE-2019-15107# ./CVE-2019-15107.py 10.200.87.200
Traceback (most recent call last):
File "./CVE-2019-15107.py", line 10, in <module>
from prompt_toolkit import prompt
ModuleNotFoundError: No module named 'prompt_toolkit'

#

using AttackBox

#

so you'd think the script they tell us to use would actually work on the box they give us.........

ivory spruce
midnight barn
#

niether work, and Im seriously just copy-pasting

#

so the writeup isnt in sync with the script

#

Task #6

runic heart
#

Got it, thanks

#

time to grind that leaderboard

gray juniper
#

Is OpenVPN available for users on the free tier?

I've set it all up and 10.10.10.10 says I am connected, but the OpenVPN Access Details on the THM's access page say I am disconnected.

Comparing my connection information to the provided how-to video, my internal virtual IP address is 0.0.0.0 instead of a normal IP address (like the 10.6.13.139 address the 10.10.10.10 page says I'm using) so maybe that's why?

timid talon
gray juniper
weary spindle
#

You can

#

It's just the access page that is broken.

#

curl 10.10.10.10/whoami

browsing https://10.10.10.10

ip a | grep "tun"

Should all give you an IP.

gray juniper
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2262)

scenic torrentBOT
#

Gave 1 Rep to mats.m (current: #487 - 9)

ivory spruce
midnight barn
#

you're speaking hypothetically

#

the reality is the script they tell you to use does NOT work

weary spindle
#

OR.

#

The script just needs updated.

#

As the room is few years old.

midnight barn
#

do they not update them?

weary spindle
#

No, Wreath was a community member created network.

midnight barn
#

gotcha

weary spindle
#

Unsure if Muiri was staff when he created wreath.

midnight barn
#

do you know of similar environments to Wreatch I can try?

ivory spruce
weary spindle
midnight barn
#

it's kinda obvious, but ok

ivory spruce
#

No worries, he's doing himself a disservice and not to me. blobfingerguns

midnight barn
#

I pretty much expect every script to be buggy in someway, hell, half our business is troubleshooting our own systems, but I was hoping THM had a better handle on the code

#

my guess is the script referenced in the walkthrough got updated and is now broke

#

so by following the instructions as is, the lab isnt functional. Unless maybe someone posted a workaround

naive dust
midnight barn
naive dust
midnight barn
#

orange box under the lab diagram

naive dust
#

k

midnight barn
#

"The Network will go to sleep if there is no activity"

naive dust
#

yo

scenic torrentBOT
#

Gave +1 Rep to @midnight barn (current: #2078 - 1)

naive dust
#

πŸ™

midnight barn
#

GL πŸ™‚

naive dust
#

:)

hazy kettle
#

So is there a reason why if I'm connected via openvpn, it still says that I'm offline through the access machines thing at the top, but on the actual openvpn access page, it says that I'm connected?

jolly barn
#

What time does support start working?πŸ™ƒ

wind wedge
scenic torrentBOT
#

Gave +1 Rep to @wind wedge (current: #56 - 121)

nocturne swift
#

I am connected to openvpn and when i solving any machine port scan shows port 80 is open but when i visit it through browser its not opening since last 5 days .I had also tried different vpn server . Is there anyone who can help me

barren folio
#

Im having issues with openvpn too, i downloaded the .ovpn and execute a "sudo openvpn thefilename.ovpn" and the connection keeps retrying, the first error it throws is "VERIFY ERROR: depth=1, error=self-signed certificate in certificate chain: CN=ChangeMe, serial=******************* after that a bunch of TSL errors.

#

CN in my .ovpn file is actually not "ChangeMe" but the actual filename

#

Using ParrotOS but Kali does the same for me

north heron
#

i have uploaded my room but i dont have that develop option now ? also i wanted to check if it runs smoothly ?

ivory spruce
west chasmBOT
ivory spruce
shell rapids
#

Hi, I am getting "This browser is not supported by splunk" I am using the AttackBox

#

Room: Splunk: Exploring SPL

#

Same on my own attackbox

jolly barn
#

Has support started working or not? πŸ™ƒ

twin shale
#

Hello, i cannot connect to the vpn :/

#

even after changing the ciphers

wind wedge
regal raven
#

Hi , I'm connected to VPN but unable to reach 10.10.10.10

#

anyone can help ?

#

*utun0 10.14.81.52 --> 10.14.0.1 netmask

sick nexus
#

Are you sure you need to connect to 10.10.10.10?

#

If you could sending a screenshot of the error and the machine ip would be nice

wind grove
#

Its expired

ivory spruce
ivory spruce
regal raven
#

RSA key size : 2048 bits
basic constraints : CA=false
subject alt name : server
key usage : Digital Signature, Key Encipherment
ext key usage : TLS Web Server Authentication

#

Thu May 16 20:12:45 2024 CONNECTED : 34.253.19.14:1194 (34.253.19.14) via /UDPv4 on utun4/10.11.89.134/ gw=[10.11.0.1/]
Thu May 16 20:12:45 2024 COMPRESSION_ENABLED : Compression enabled. This may be a potential security issue.

ivory spruce
barren folio
ivory spruce
#

If not, try EU-Reg-2.

barren folio
fringe crescent
#

I'm connected to ovpn but still getting access machine in THM

ivory spruce
fringe crescent
#

and none of my revshells are working so i think there is some problem with vpn connection

ivory spruce
fringe crescent
#

yup

#

024-05-16 08:12:14 TUN/TAP device tun0 opened
2024-05-16 08:12:14 net_iface_mtu_set: mtu 1500 for tun0
2024-05-16 08:12:14 net_iface_up: set tun0 up
2024-05-16 08:12:14 net_addr_v4_add: 10.11.75.159/16 dev tun0
2024-05-16 08:12:14 net_route_v4_add: 10.10.0.0/16 via 10.11.0.1 dev [NULL] table 0 metric 1000
2024-05-16 08:12:14 Initialization Sequence Completed
2024-05-16 08:12:14 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 5, compression: 'lzo'
2024-05-16 08:12:14 Timers: ping 5, ping-restart 120
2024-05-16 08:12:14 Protocol options: explicit-exit-notify 3

ivory spruce
fringe crescent
#

yup used 8080/4444/1234 none of them worked

#

not getting a shell

ivory spruce
fringe crescent
#

was using tun0 address but also tried eth0 desperately when nothing worked.

barren folio
ivory spruce
fringe crescent
#

─$ ip a | grep tun
5: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
inet 10.11.75.159/16 scope global tun0

weary spindle
#

Check it's not been disabled.

north heron
weary spindle
jolly barn
#

It’s the second day I can’t get an answer from support, how long should I wait, is there a big queue or what, I'm just curious? πŸ™

weary spindle
#

Go to Other > develop rooms

weary spindle
weary spindle
north heron
#

cause it takes really really long time

wind wedge
#

You’ll most likely hear a response by tonight or tomorrow

weary spindle
north heron
#

no

#

but i can see it when i go to the uploads

#

but not in manage rooms

wind wedge
# jolly barn 😟

I imagine ithe queue has gone up quite a bit, have you been sending new emails as scrubz said?

weary spindle
north heron
weary spindle
#

Now go to your room?

north heron
jolly barn
north heron
weary spindle
#

tim is here to save the day.

tawdry orbit
# north heron nothing there as u can see

The first image (Your Material) you posted shows VMs (machines). This is an asset that gets attached to a room. A Room is a separate concept to which you can attach a VM to a task in a room. A Room is comprised of 1 or more tasks. πŸ™‚

tawdry orbit
#

A room you can create on the site, you only upload machines. Two separate things. πŸ™‚

wind wedge
jolly barn
wind wedge
frozen birch
#

What will be your role as a Junior Security Analyst?

wind wedge
scenic torrentBOT
#

Gave +1 Rep to @wind wedge (current: #56 - 122)

weary spindle
#

It is.

weary spindle
covert stirrup
weary spindle
#

If so, try http://10.10.90.198/

covert stirrup
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2265)

patent inlet
#

Hey I am doing the Linux Privilege Escalation and working on Kernal Exploits. I have logged into the machine through ssh but the /home/karen directory is missing and this account doesn't have any write premissions anywhere else. Any thoughts?

#

Never mind the tmp directory is writeable

errant breach
patent inlet
#

yeah I figured but its the only file I can write to on the box right now lol

#

some one deleted the /home/karen

weary spindle
#

It won't be deleted.

#

The box boots up from a saved state every time.

latent star
#

Hi everyone ,im new here im not sure if im allowed to ask this in here. i was going through the THM "Snort Challenge - The Basics" and i realised that the first question on task 2 is rejecting my answer. may i ask if anyone else has encountered this problem and how did they deal with it?

errant breach
#

One moment...

#

This might be the answer.

patent inlet
# weary spindle It won't be deleted.

lol well there is no /home/karen anymore and restarted the box multiple times. So unless they did it on purpose to mess with us lol Which is possible

patent inlet
#

yeah hold on

latent star
# errant breach This might be the answer.

wow i think that was the reason i was getting it wrong. the rule of matching both directions kept making sense. thank you the method you provided worked fine. i guess it wasn't rejecting my answer it was rejecting the wrong answer. thanks

scenic torrentBOT
#

Gave +1 Rep to @errant breach (current: #1039 - 3)

patent inlet
#

yeah sorry kernal exploits

weary spindle
patent inlet
#

I got around it

weary spindle
#

Yeah, the main point of the task is to use the CVE you found on a directory you can write to.

patent inlet
#

hence /tmp

livid ravine
#

Hello, I am having difficulty with something. My English is weak. I have just started education. I am using the test version. I am stuck in the 2nd room. What is the answer to the question?
Question: Which team focuses on defensive security?

weary spindle
pure rock
#

The 1st lab on Kibana (Investigating with ELK 101) is not working; rare loads, 504/502 errors;
if it opens when i try to input the dates that i need it loads non stop and then error, then again connection lost.

pure rock
fickle tusk
#

I have a problem in tryhackme

weary spindle
raw belfry
fickle tusk
#

When I try to call VPN It connects without problems and it shows up for me ip My but when I start to solve ctf seems to me treatise you are disconnected I use a system parrot As a main system

weary spindle
fickle tusk
#

Mr robot

weary spindle
fickle tusk
#

No, PHP reverse shell not working

weary spindle
#

What have you tried?

fickle tusk
#

Yes I tried but it didn't work

fickle tusk
raw belfry
weary spindle
#

ip a | grep "tun"

fickle tusk
#

Not working

fickle tusk
autumn lynx
tardy dirge
#

Hey guys ! I have a question. since yesterday I have been trying to connect via ssh to the practical machine at the nmap lounge but it is not working. In fact I wait a long time then the connection timed out. I am under openvpn (EU-2 it seems to me) can you help me? even when I ping the machine's IP, no packet is sent

weary spindle
tardy dirge
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2268)

toxic merlin
#

Hello, can someone helps me to make the openVPN connection i have some's errors when i try

weary spindle
toxic merlin
#

EU-Regular-1

weary spindle
#

Try EU-Reg-2 πŸ™‚

toxic merlin
#

ok

#

I tried and it results the sames errors

weary spindle
#

Which country are you in?

autumn lynx
#

Think I seen someone else with this problem and they used us-west

toxic merlin
#

I'm in France

weary spindle
#

Try that one ^

#

Or are you a subscruber?

toxic merlin
#

No I'm not i will try us-west

autumn lynx
#

Think I also remember when OpenVPN updated, the solution was to add the unsupported --data-cipher.. don't know if that's the suggested fix now though. πŸ€·πŸΌβ€β™‚οΈ

toxic merlin
#

Yes It was this error

#

I't works with the US-West thanks you

autumn lynx
toxic merlin
#

I can ping thanks

steady aurora
#

I think there is a problem with one of the rooms. I spent hours doing https://tryhackme.com/r/room/burpsuitebasics because for some reason this room is a huge CPU hog on my modest laptop. All other rooms fine so far on my Jr Pentester path and the next one that comes after is also fine.

autumn lynx
fickle tusk
#

Why doesn't my IP address appear instead of access machines?

autumn lynx
#

Access page is broken.

fickle tusk
#

And how to fix it

autumn lynx
#

That's something THM staff will have to fix.

fickle tusk
#

Okay

autumn lynx
#

If you can ping 10.10.10.10 then you know you are connected to their network

fickle tusk
autumn lynx
#

They know about it already, I'm pretty sure.. it's been broken for a few months now

burnt rivet
#

i have an issue with any room with a reverse shell. it wont connect
i have ufw open to the port
and i turn off the internet security
any ideas?

stray tiger
#

is there any way to get the openvpn connection working while on mullvad (wireguard)?

ivory spruce
#

Also, what is your target environment and what payload are you using?

ivory spruce
stray tiger
weary spindle
stray tiger
#

ahh that’s unfortunate, didn’t exactly want to risk my opsec just to connect tbh

weary spindle
#

I guess you're left with thenatta then.

#

If you double up on VPN you won't get reverse shells etc connecting back.

surreal lake
#

Why do the machines lag so much

ivory spruce
surreal lake
#

Through the attack machine. OPENvpn isn't connecting it keeps timing out

crimson orbit
#

Hello, I cannot reset my password when I go to forgot password and type email i receive an email that takes me back to forgot my password and prompts me to type my email in an infinte loop, please help

ivory spruce
surreal lake
#

@ivory spruce the EUR1

surreal lake
ivory spruce
surreal lake
#

Us

ivory spruce
# surreal lake Us

Have you tried the US West or East servers? After switching servers, do wait for ~2 to 3 minutes before you generate your OpenVPN config file.

#

I recall one of those is having issues, but the other should work.

surreal lake
ivory spruce
tardy vessel
#

Hey same! I wasnt able to connect to the servers

ivory spruce
shell rapids
#

Hi, Splunk: Exploring SPL gives me "Browser is not supported" using THM's attackbox and my own attackbox.

ivory spruce
#

Tried it just now and works on both -

Attackbox -

north heron
#

i need help uploaded my room uploaded the vm but i am still having issues set it to a friend he cant see an IP or anything

weary spindle
north heron
#

1 gig ram processors 10 gigs space

north heron
errant breach
weary spindle
# north heron ?

Try giving the machine half a core and 512mb of ram, that's what free users get.

weary spindle
weary spindle
#

Subs get 1GB of ram and a core.

zealous yoke
errant breach
#

I see. Wasn't considering any THM limitations.

north heron
north heron
weary spindle
zealous yoke
#

nono

zealous yoke
#

go to the room manage page -> tasks and select the task you want the VM in.

#

If you click on the "VM" checkbox, you'll see the name of that VM on your materials page, just select that & save the changes

north heron
#

done i did that

#

i was asking about the ram and the processor

zealous yoke
#

and a green start machine button should now appear in the room?

north heron
#

so do i need to upload the machine again

zealous yoke
#

click that and you'll see an IP after a minute

zealous yoke
north heron
#

ok ok

#

thanks

#

yea i can see that green start machine now thanks for the help

zealous yoke
#

free user machines get 512mb of RAM, subscribers 1gb by default, if you have "heavy" apps like wordpress for example, it might be a bit unreliable for a free user

vital spoke
#

any one able to help with a remote desktop issue in the red team capstone challenge

weary spindle
#

Still unable to login?

vital spoke
#

i got past all those other problems

#

so i was able to remote desktop into CORP DC .102

#

from there remote desktop into ROOTDC .100

weary spindle
#

Did you try Laura, or did you try Mo too?

vital spoke
#

it had nothing to do with it

weary spindle
#

So what issue now?

vital spoke
#

the connection kept timing out before establishing the connection i add switch /timeout:60000 and it worked

#

that was for xfreerdp

#

so ive worked my way up until the point im at now. i remote desktop to BANKDC and when i try remote desktop to JMP it says remotre desktop is not running on that host

#

it worked before and now it isnt

#

im back on the CORPDC machine, and now i cant remote desktop to ROOTDC anymore

vital spoke
#

?

vital spoke
#

i think those nodes are in a powered down state. how can i get them to boot up again

humble sparrow
#

I have a little issue with connecting to tryhackme via openvpn, i install the .ovpn file n then when i try to launch it it tells me Cannot load inline certificate file. I have seen the suggestion to try and change the VPN server but that doesn't help, anybody knows something else?

whole pine
#

I'm trying to connect with openvpn but it keeps hanging there, can I get a help please?

#

I redownloaded a new config file but still the same error

surreal spire
#

I had this problem

#

try a diff region

ivory spruce
rocky cedar
#

Hello! i'm having an issue with the OpenVpn on windows, certificate issue, is anyone having the same possibly bug? (edit : changed the region and it worked.)

ivory spruce
ivory spruce
humble sparrow
rocky cedar
ivory spruce
rocky cedar
#

EU-Reg-1 gives me the cert error.

ivory spruce
sleek schooner
#

Sup everyone, Is it still possible to get lvl 1337?

humble sparrow
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #13 - 558)

ivory spruce
sleek schooner
#

Oh, got that, thanks

ivory spruce
#

@weary spindle would you know what the requirement is for the 1337 level?

naive dust
#

Hello I purchased AWS lab access 3 month one but still I didn’t get access .. anyone have idea where I can report the case ?

naive dust
hushed marsh
#

how long did u wait??

naive dust
#

3 hrs now nearby

hushed marsh
#

wait 6-7 days bro

naive dust
hushed marsh
weary spindle
weary spindle
#

998 is staff, and I think level 997 in contributer

wind wedge
wind wedge
wind wedge
weary spindle
naive dust
weary spindle
#

THM has one of the best supports around.

naive dust
real kestrel
#

Hello, when I start a machine she expire in 6 sec and then i can’t launch another one, did someone know how to fix it please ?

real kestrel
#

It doesn’t work I have that bug for 2 days now

whole pine
whole pine
weary spindle
whole pine
weary spindle
whole pine
weary spindle
whole pine
fervent thistle
#

the start machine dont wanna work on mine. How do i get it to work?

ivory spruce
fervent thistle
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2272)

fervent thistle
sleek schooner
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #13 - 559)

sleek schooner
#

Tysm @weary spindle

cursive wren
#

What is the flag that you obtained by following along? Anyone can help with this?

ivory spruce
tardy vessel
ivory spruce
tardy vessel
#

i'll try to duplicate it, i changed servers fixed fir now.

ivory spruce
runic night
#

Hello !
I am having a problem with Room: Network services 2.
I am connected to EU1VIP, I have an ip address and the correct machine live , but sudo mount -t ip:home /tmp/folder -nolock errors with mount.nfs: Connection timed out . I have restarted the machine 3 times with no luck

karmic seal
#

I was solving the "Investigating Windows 3.x" and there is a file missing, sysmon.evtx file.

Can anyone help me what I need to do?

quick kraken
#

hello, someone can help me?

#

sry for misstakes in english i'm use kali as a main system

#

and i was trying to connect to openvpn, eu-regular 1 didn't connect, eu-regular 2 connect, but "target ip address not ping, not working" although writes that connection: connected

weary spindle
quick kraken
#

anyone ip in ctf

light laurel
quick kraken
#

i'm just trying connect now in cyborg

#

vpn connected, Internal Virtual IP Address working, pinging

#

i trying to find solve in google but i couldn't cuz i've problems with english