#site-support
1 messages Β· Page 83 of 1
same
Hi everyone, Can anyone use TryHackMe? It seems there's a popup for ewallets.
Has the site been hacked?
Same popup I'm getting. Can't do anything
same
@strong bluff @stiff herald @reef pond Are you all seeing this on the whiterose room or anywhere else on the website?
everywhere
i cant send images but
it's anywhere
yes
Every room
this load a js called lottie-player.js
We're investigating.
I am seeing it on other pages.
this
why it open some Wallet Thing when i click anywhere at the site @ this room:
https://tryhackme.com/r/room/introdigitalforensics
add this in network blocking in browser and solved
xD
took the name βtry hack meβ very seriously
hi so im going through the windows fundamental rooms and every time i click the screen its asking me to connect wallet
It's on different rooms. I clicked my profile and got the popup
Please Read
Hey everyone,
We are currently investigating the modal pop-up that appears in rooms.
Please do not click on this pop-up while we investigate.
oh i see i'm not the only one with the weird crypto pop ups
what is this
is this what im expreiencing
π
The site is named TryHackMe
you have challenged it
ah youre getting it too i see
open invitation i say
seems like someone finally took them on
anyone having issues using machines running Kibana server? it says wait 3-5 minutes for it to load and I've waited up to 15 minutes and still get the "Kibana server is not ready yet" message.
the hackers can get premium free for me? xD
and I'm getting the pop up as well
same
If it helps, I'm not getting the popup, it might be that my browser is blocking the element anyway
It could have something to do with what's going on with the site. Best close up and wait until staff have a fix.
What browser are you running?
Firefox, also running an adblocker. Could be that's blocking the pop up
block this url and fix
https://unpkg.com/@lottiefiles/lottie-player@2.0.6/dist/lottie-player.js
are you guys getting the "Add your wallet" popup on every page?
π
I guess it's fixed right?
every time I go to click anythin, i get a popup that says connect walleet
with this is solved
I hope, there nothing else behind
Staff haven't confirmed yet.
Yeah, this is happening for me too
Yeah I know but I do not get the popup anymore. Can other confirm?
this is only on the THM site. please refrain from unhelpful comments
I'm going to go back and have a look.
how do i post screenshot in this room?
Use Adblock on chrome
you need to verify your account
paid for premium got ads
xD
I'm still getting it and now it's in dark mode. Before it wasn't. Hackers upgraded
some sort of stored XXS?
Please don't suggest using adblock in this server
why so?
It's agaisnt many ToS.
Its back up
oh, i thought that would've been a helpful solution
NoScript or using the Developer tools of your web browser can also help
just more greed i guess. makes it impossible to use the website for me. too bad, THM had some good stuff
Everyone seeing the pop-up on the TryHackMe website
Please do not click on the pop-up. The TryHackMe team are currently investigating the pop-up and we will provide more information as soon as it becomes available
My apologies! I wasn't aware of that. Thank you for letting me know!
Gave +1 Rep to @weary spindle (current: #1 - 2939)
crypto scam darkmode before thms darkmode. Will connect my wallets now. Darkmode = trust.
it also has anti-debugger enabled and causes the browser to crash. good job THM
Everyone seeing the pop-up on the TryHackMe website
Please do not click on the pop-up. The TryHackMe team are currently investigating the pop-up and we will provide more information as soon as it becomes available
yeah, i'm aware. just an interesting choice. certainl;y suspicious
is that they were hacked the anti debugger belongs to the hackers.
Curious if this is a package that THM normally loads and if so why no integrity hash check is being done on the .js file. Unless they of course have the exact same hash as before... Just went through OWASP Top 10-2021 room which discusses this exact topic of external JS packages.
Supply chain attack or dependency attack, or maybe something else
lottie-player@2.0.6.. interesting, isnΒ΄t the latest release/tag indicating version 2.0.1? https://github.com/LottieFiles/lottie-player/tags
It's a supply chain attack.
npm says 2.0.7
for me, no more popup after:
- closing browser and clearing cookies
- logging back in
- room: Whiterose free of popup
Did the same and it was a short while and it came back
Yes, think so..
π¨ Heads up, devs! A malicious commit hit the lottie-player repo, causing pop-ups linked to a crypto scam. If you're using it, double-check your dependencies and update ASAP! Stay sharp out there. https://t.co/NNk02Z5bvf #infosec #cybersecurity #Web3 #crypto #scam #lottieplayer
Block it from the Developer Tools
Ctrl-Shift-I
then Network tab
Enter the URL that has been shared and click on the forbidden sign to request it to be blocked.
In my Firefox it has stopped it
Should be fixed now. π
Can somebody explain the attack and fix more in depth?
love how no one references my tweet π
Easier just to post the link somtimes π
And faster.
Is there going to be an dissection? I didn't click on it, but should I be worried?
Yes that's what I figured. Someone messed with the package from where THM loads the script or uploaded a new version. Hence why I was curious why THM would just pull in the new commit/version, with the background that I just went through a room that talks about this specific issue.
If you didn't click, you should be fine.
Thanks
Gave +1 Rep to @weary spindle (current: #1 - 2941)
thanks for the info
Thanks, actually I knew the term already. I would be interested in seeing commits, including the malicious code. And also what library it was now exchanged with
Gave +1 Rep to @weary spindle (current: #1 - 2942)
Check the GitHub for Lottiefiles
Anyway, back to learning, good on THM for fixing it. Maybe don't trust latest commit in the future.
Joke's on you... Withdrawing from an empty account... $0.00 is still 0...
If the attacker may not have sneaked malicious code into the project, you won't find evidence on GitHub; see https://github.com/LottieFiles/lottie-player/issues/254#issuecomment-2448395090
Hence why you don't trust latest.
Not only the latest.. v2.0.4 is also not on GitHub.
A little bit strange since seems that many people use that version 36k downloads last 7 days. But provided from other sources like NPM. Maybe they got of Github
hi how can i talk to support?
It also pop-up while I was in room.
I want to see the report of this attack when will it release ?
seems like the problem is solved
.
try call them
are the vulnerabilities for KoTH machines the same vulnerabilities
via mail or here on discord. In general if you don't want to disclose a vuln, you can also ask in the help channels so others might help.
i lost my streak even tho i had 9 days streak freeze why π¦
I guess you were active in between?
Did you received the streak freeze from the tickets? If so, did you also redeemed them? You would see that by hovering over the streak. At the botom there would be an amount of days your streak can be freezed.

under my streak it said that i have 9 days streak freeze i was off for 2 days
thx
hi an answer would be really appreciated
maybe this channel is more appropriate: #koth
not sure though if all users can access it
Hello can someone help me please I am having trouble connecting to RDP
wifi. :))))
check your remote desktop to see what error is happening
where are you stuck? do you use your own local hacking machine? is the TryHackMe VPN active? which RDP tool are you using to connect?
I don't even know how to set it up do i use my pc or what and my pc asks for the computer name
are you doing the Active Directory Basics room? https://tryhackme.com/r/room/winadbasics
yes
make sure you start the AttackBox and also the other machine (at Task2: Start Machine), then wait for both to have started (you can switch them on the tabs in the bottom-left corner of the right splitted window), and when they are loaded, go to your AttackBox, open up a new terminal, and try this:
( changing the ip-address with the one on top of your room )
xfreerdp /u:THM\\Administrator /p:Password321 /v:10.10.243.169 /dynamic-resolution
Ok Thanks alott
I have access to it but can't talk on it
excuse me what's happend with the subscribe button
[2:01 PM]
I cannot subscribe
Hi I am not able to ssh to thm ip from linux fundamentals part 2
I noticed below ovpn error blocking my tcp requests
2024-10-31 18:30:31 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 10
2024-10-31 18:30:31 Timers: ping 5, ping-restart 120
2024-10-31 18:30:31 Protocol options: explicit-exit-notify 3
I can ping and do nmap but I cannot ssh or curl the ip
any suggestions?
look likes support will be back in 2 hours
you mean for the vpn connection?
no I mean site support at the help bubble on site
is your VPN restarting?
no
what is your OS?
kali
I suggest you run this troubleshooting script from THM, and screenshot the result here:
https://raw.githubusercontent.com/tryhackme/openvpn-troubleshooting/refs/heads/master/thm-troubleshoot
you have to verify with Discord, using the link coming below in 10-15 seconds
@rancid dagger
You need to verify
What happens when you SSH?
what was the output of the troubleshooting script?
I am not sure, but maybe you have to re-run the VPN file after the MTU change: can you re-run and then share the output of ip a | grep -i mtu
After running the troubleshooting I atleast dont see error in openvpn logs...which is good ig...
but still I am not able to do ssh
ip a | grep -i mtu
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
2: eth0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc fq_codel state DOWN group default qlen 1000
3: wlan0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UP group default qlen 1000
30: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1470 qdisc fq_codel state UNKNOWN group default qlen 500
the startup of your VPN does not complete
for success, you should have Initialization Sequence Completed
check mine in screenshot
to your Linux Fund 2 box? yes as per screenshot
why cant I π
can you share your ovpn file?
are you connecting via Wireless? if so you have alternatives
If you could share the ovpn file from start till "-----BEGIN CERTIFICATE-----" it will help me
why i can't go to the website ?
you need to add ip to /etc/hosts
<ip addr> blog.thm
here you go:
client
dev tun
proto udp
sndbuf 0
rcvbuf 0
remote 34.253.19.14 1194
resolv-retry infinite
nobind
explicit-exit-notify 3
persist-key
persist-tun
remote-cert-tls server
auth SHA512
data-ciphers AES-256-CBC
comp-lzo
key-direction 1
verb 3
reneg-sec 0
<ca>
-----BEGIN CERTIFICATE-----
I usually use EU-VIP-1 as VPN server
ok
I suggest you lower further the MTU value
try for instance sudo ip link set dev tun0 mtu 1200
please share cat /etc/hosts
also, when browsing do http://blog.thm (do not drop the http)
Not working...I give up rn...
you are on wireless?
yes
Try to check your router settings and configuered ACLs
if you have alternative, use another one? best would be cable connection, maybe where you are or elsewhere if you have that option
I know, easier said for me than done for you π
tfafter connecting to mobile hotspot it worked
so happy it works
yea may be something wrong with the router...ig...?
have you got control of that router?
will do...thanks
yes
Http://
Which country are you in?
Australia
Does lowering your MTU have any effect?
no effect after lowering to 1200
Then this is something on your end, firewall?
firewall is not up on router
Heya, can i change my email to private email from student email, premium is running and will be cancelled next term, so the student discount isnt an issue
Hi, Good Afternoon. I am doing SOC 1, and in SOC i am at snort Challenge room, i am putting right answer but system is not recognising it, it always say not correct answer?
How to fix this issue?
guys do have any idea about the ticket system being rigid cause i have complete my complete path but bedside cyber crusader, and 1 and 7 day streak only . what should i do
YEah, you can change it back
You're 5 times more likely to get a streak ticket, than say a ticket for defcon.
Thanks scrubz :)
Gave +1 Rep to @weary spindle (current: #1 - 2943)
Can someone explain what the "Cyber Crusader" title in TryHackMe means?
Just a nice add-on for your username π
Thank you for your help.
Gave +1 Rep to @ember osprey (current: #58 - 140)
site seems to be a little slow at the moment probably some backend stuff
500 for me too
Been there
last room to complete 101 path xd
Noooo, I just finished a room and didn't get the tickets because the page crashed π’π’π’
me too
me too
i just copied the answers and rejoined the room. it'll give you the tix at the end if you never claimed them
The room was the owasp one π₯²... i have to reset and put the answers again?
yeah just note them before
Nooo what's wrong THM? I got a 500 error when just trying to submit my answer
same
works again for me π
could someone please help me reset this room? https://tryhackme.com/r/room/adenumeration
the reset button isn't working, there are 79 votes to reset. the network isn't responding properly to pings, I know it isn't an issue on my end because when I go to a different AD network on THM, it works perfectly fine
same π
same for me
no error
is back
500
just got hit with error 500
Maybe they are making some changes real quick for Halloween :D
It seems like EU servers are down only.
troll :))
you must be in Asia region
yeah
Heya any room I try accessing doesn't load properly, I can't upload an image for some reason
As in I can't upload a picture here to show you, but essentially the "body" of the room isn't loading
Of any room I try accessing, even rooms I have finished
Ah I verified my account here we are
Ah so its a known issue? That is a shame haha set some time aside today to do some studying haha
It is up now
Press CTRL + F5
Check and update your browswer.
Re-open room from Dashboard.
My browser doesn't need updating
Trying this now
Yeah still not working, tried it on a different room too
Will try clearing my cache and cookies
Yup try that
Yeah that worked! Must have been a cache issue, thanks for the help!
Gave +1 Rep to @obsidian mesa (current: #1162 - 3)
There were some problem on EU users I guess cause I had 500 error for a while.
Ah I see
Hey all.
Really trying to use my own Kali Linux to connect to the VMs in the excercises but I have no idea what i'm doing lol
In watched a couple of tutorials on YoUtube and I have my Kali linux and OPENVPN setup and working. But when I put the target address in the URL and hit enter it does nothing?
Any idea what I could be doing wrong? tried top post screenshots here but not able to it seems
Ah I had to be verified first! see screenshots. Any help would be great
Does that room have a web server running on port 80?
I have no idea
https://tryhackme.com/r/room/tsharkthebasics
Is there like a room on THM that shows me how to do all this. WOuld hate to ask you a gazillion basic questions lol
Doesn't look like it. π
Some rooms don't need a web browser.
Ok so I have always been using this popout VM
When do I know when a room will let me use my KALI Linux to engage with the room.
Is there like an indicator or somethin?
You can always use your Kali VM (connected to THM openVPN) instead of attackbox. The target machine does not always have a webserver running or it may not be running on default port 80. You can still use nmap to scan the target for open ports.
Was a cache issue indeed. Glad to hear it works now for you.
port 80 and ssh 22 was open
tried to ssh in but got permission denied
You may not need to SSH either, please read the task content.
just verified, tysm!!
I just completed a room in cyber 101 and it didn give me any tickets. it was my first run trough of it
was winfun2
Hello in windows powershell Task3 room I am trying to connect to rdp via Remmina and it asks for username,pass and Domain
what should i type in Domain?
Domain is thm.local
Hello. Is it possible to choose between titles we have in THM?
And, I worked some rooms from Cyber Security 101 without enrolling in the path. Does that mean that I can't get tickets(for redeeming) from those rooms anymore?
You don't get to choose unfortunately. You'll have to wait until the event ends before you get your normal / regular title or level.
So long as you complete the rooms included in the path, you'll earn tickets.
Thank youππ€π»
I saw this message when I tried to visit https://tryhackme.com/r/room/introtoirandim
But then it recovered π
Site too slow today guys
for now yes
Hi all, I have an issue with the site. I just finished a room and clicked on Complete button in the Summary section, expecting to see the pop up where I can redeem prizes, but i got an error banner .. "An error has occurred ... " and then when i refresh the page, the room is completed. So my question is, are the prizes redeemed at this point or because I did not get the pop up and have not clicked on the Click to reveal boxes or they are not?
hey, i just started attackbox 15 mins ago and terminated the muchine, but how is it popping me up with that 1hour limit.
after relaunching
and it seems that when you click on start attackbox, you open split view machine, but when you click on start machine, it only shows machine being launched unlike in start attackbox, it has nothing like terminate option. I terminated attackbox through virtual machine showdown icon
Free users can only launch the Attackbox once each day, or 60 min(s) if not terminated.
damn, so it;s not total of 1h, it just means 1 timer termination
anyone else getting a 500 error ?
oh, has there been any kind of annoucement of this?
i dont think so
guessing the dark army was to much for tryhackme to handleπ€£ .
yeah LOOOOL
its up now
Wat?
look at the annoucements
not for me it keep go up and down
Are you refering to the Lottieplayer?
no the new mr robot room
we keep getting the 500 error
I just clicked login and the error disapeared
Then it goes "Oops! Something went wrong."
This time it did not return to normal π
really?
Staff have been pinged.
π«‘
Yep, i just spammed clicked login and the re-load button. Hakur man
yeah but try answer some question
cuz when i do i get the 500 error again Xd
alright, give a sec
works fine for meπ€·ββοΈ Ima update ya if somthing happens
thanks|
yeah seems fine now
Nice
Hello, Every One.
Just a general Question what is the point of montly Leaderbords if the points are not automatically reset at the start of a Month ?
They are as far as i know π
KGB no because I already wrote them couple of months prior and they have not reset it for like 10 days
and i have seen since then them not reseting points
Anyway KGB you are inspirational man only one from the balkans in top 13 π
Thank you π
Gave +1 Rep to @velvet prairie (current: #2337 - 1)
I have a issue relate to my laptop and kali linux. I have a HP victus gaming laptop with a 4gb of nvidia 2050 graphics card. I want to use Kali Linux as my OS but when I load the Kali image it heating and consuming battery to much. And also shuts down many time. How I can fix it and opt-mise the performance and which Tools is available to monitor and control the fans and GPU in kali linux because it also not running the fans . I tried may methods not got any success. I am hoping to find the solution here. If any one have any type of walkthrough or Instruction to set up kali linux in a gaming laptop.
If you're using VM , that's one of heavier tasks it normal to put more load on your components π
No have installed it on the place of windows on the hardware.
search Discord and #general
this message is very similar to yours: #general message
also this one from Scrubz about Nvidia GPU and Kali: #general message
#general contains many messages suggesting not to use Kali as your daily OS, hence I doubt you will see a fix for your problem here
Anyone giving away 1 month subscription?
Thank youπ
Gave +1 Rep to @upbeat quarry (current: #29 - 307)
Who would be best to help me with a billing question?
Support.
What did I redeemed?
Hi @upbeat quarry
Thansk a lot for your help on my VPN issue. It is now resolved and I am able to access all the labs.
Hey @fierce nexus
Can we make sure we are using the relevant channels, please? I.e. #bot-commands
Furthermore, can we make sure not to troll users who are looking for help by asking for their credit card information.
Which network?
Wreath, Holo, Red Team
Looks like leaving the room and starting it up again mightve fixed it
Scratch that it didnt
Yeah,
Streak is your own
hello. Please assist with this issue of mine.
For some reason, my VPN files consistently break. I tried changing servers a good number of times and that didn't really help at all.
~~```
024-11-01 11:05:26 library versions: OpenSSL 3.3.2 3 Sep 2024, LZO 2.10
2024-11-01 11:05:26 DCO version: N/A
2024-11-01 11:05:26 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2024-11-01 11:05:26 OpenSSL: error:0A080009:SSL routines::PEM lib:
2024-11-01 11:05:26 Cannot load inline certificate file
i tried a community-made troubleshooting script and all it can tell me is to try regenerating it
turns out it was openvpn itself fucking up. nevermind.
I'm doing the Shells Overview room and at Task 8. I have launched the VM on Attackbox but it doesn't connect to the internet (so I can't reach the target). I've seen others struggle to connect to various rooms, is this a THM problem?
site is just slow for me ? . when I click complete it take a bit time ( ~15 seconds)
I get a 500 error twice today. Might be igh traffic load.
Probably people a lot of people grinding the last three days of the trywinme event.
yep probably
Why cant i open the site? π¦
Well just finished the SQLMap room and think I crashed the server... When I go back to the room it crashes again....
Not sure if its me or just coincidence it stopped twice when going to that room
Site's back online. Slow, but stable.
pings are back on the menu boys!
yeah its really slow
The website is very slooooooooooooooooooooooooooooooooooooooooow
Is it hacked? π
lol
Nope it's just a Friday.
I also had some performance issues today ( slow and 500 errors )
Same, I getting 500 errors, and when it works, the website is extremely slow though
yep many 500 errors
Taking a break from thm cuz of the 500 code. Maybe I'll finish cyber101 or not. I should walk my doggo and cat.
i have problem with VPN which i cant connect to the machine network
if any chance to help it would be great
Best hacking strategy is touching grass
site is working fine now on my end
Small mistake on the networking core protocols room - missing a word
Hello, I really want to use Windows, but itβs impossible. Iβve followed the tutorial correctly, with admin rights and everything. (Iβve also tried the troubleshooting steps I found online, but nothing worked). It shows that Iβm connected properly, with no errors on the OpenVPN status, and THM also detects my connection. I can see my OpenVPN interface with the correct IP, but I canβt reach any machine, not even with a simple pingβ¦
which machine are you trying to ping?
Anthem
You can't ping Anthem
Give me another one i try
Are you a free user or subscriber?
free
Try and ping 10.10.10.10
good
Do you have the anthem room open?
no word missing
actually, you need that line as is to answer the second question of the task
yes
Can you browse to the IP?
nop ..
What is the IP?
10.10.167.92
yess
now i can
idk why
give me another room
last check k
and thank you for your time
please provide details of the issue
Hello I was hoping to get in contact with someone from tryhackme to discuss the distribution of keys to a College Club. My club had tried multiple times to make contact with a customer service represented and have been unsuccessful thank you.
The way to contact is via the E-mail, were you working with somebody previously, or was it just support?
Hello @weary spindle we tried to get in contact with someone before using email but we did not hear back. I am unsure of the exact person our organization reached out to but we where hoping to set up a phone call with someone to go over tryhackme plans for our club.
Ok, I think there a specific department that deals with this, but I'll ping @wind wedge on support, who may guide you further, or ask you to contact their E-mail.
Great! Thank you @weary spindle.
Gave +1 Rep to @weary spindle (current: #1 - 2952)
Anyway to change or stop the "you'll lose your streak!" emails? They come through at 6pm which is BEFORE I normally can get on to do some questions and my email is getting literally spammed with identical emails daily. Could only find a way to seemingly entirely unsubscribe from everything
Do you have something like this at the end of the email ? This button is present in weekly newsletter , maybe there's something similar for streak notification π
Yeah it just says do you want to unsubscribe from all emails
I don't want to stop all emails, just the spammy streak ones
Doesn't seem to be anything, not even a general opt-out option, in account settings either
Can you DM me the email that contacted us and I can take a look but wonβt be able to check til Monday
Hi everyone. I really would like to hire TryHackMe but I don't have enough money so I wish to know when is black Friday or in which month is cheaper to get it plz
Students get it cheaper.
62% of the website is also free.
hi, how you fix it, now i am getting same error
hi guys, anyone from the staff can tell me why the Hololive room has a powershell.exe file with 0 bytes?
pls help-> 2024-11-01 15:51:58 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2024-11-01 15:51:58 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2024-11-01 15:51:58 Note: '--allow-compression' is not set to 'no', disabling data channel offload.
2024-11-01 15:51:58 OpenVPN 2.6.12 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2024-11-01 15:51:58 library versions: OpenSSL 3.3.2 3 Sep 2024, LZO 2.10
2024-11-01 15:51:58 DCO version: N/A
2024-11-01 15:51:58 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2024-11-01 15:51:58 OpenSSL: error:0A080009:SSL routines::PEM lib:
2024-11-01 15:51:58 Cannot load inline certificate file
2024-11-01 15:51:58 Exiting due to fatal error
Which THM OpenVPN server are you connecting to? From which location are you connecting from?
eu-regular-1 then i tried eu-rugular-2 but did not work both
i have no idea why
it was working but suddenly broken
i tried eu-regular-4 now it works
@wind wedge I DM'd you the email then. Thank you very much!
Gave +1 Rep to @wind wedge (current: #52 - 157)
Switch to root and then run
sudo dosent work for me
and also it dosent work if i open the terminal in other directory and then cd to the directory containing .ovpn or just specify its path
Hi folks, I'm having a problem with Windows Fundamentals 1 and Windows Fundamentals 2: the attack boxes launch Linux desktop sessions and not windows 10.
Is there going to be a December/Christmas Advent Calendar challenge like last year?
use rdp
They may be designed to run specific OS based on the tasks in the room or some tasks might not be designed to utilize linux environment for some operations, try resetting it through interface
Ah figured it out. I have to use the button in task 1 and not the "attackbox" button.
Thanks, all!
I accidentally activated the Cyber Crusader title, can I remove it?
I think that you'll now need to wait for it to expire π
Ahh, it expires by itself? Good to know
Should expire shortly after the event ends .
Alright, thanks KGB
I have a question regarding Subscriptions, i have a voucher code, and im already is a subscriber. how do i use it? π
You need to wait until your subscription is expired before you can use vouchers.
so i need to cancel the subscription and wait for it to go out and then use it? π
Yeah. π
okay thanks! π
Hi everyone, I am working on SQLMap and encouterer anti-CSRF token, is there any room in Tryhackme that can teach me about that? Thank you
Learn how a CSRF vulnerability works and methods to exploit and defend against CSRF vulnerabilities.
Amazing, thank you so much.
I came across the scam website so i want to use it as a target to practice. π
Gave +1 Rep to @ember osprey (current: #50 - 166)
sudo apt-get update
sudo apt upgrade
sudo apt-get install openvpn
there was something between about removing unneeded modules and dependencies
make sure openvpn is up to date and properly installed at the end of it
hi i have a problem starting the machines in the rooms i wait so much but it doesn't open any idea?
Make sure it's plugged in a right working outlet, there shouldn't be any tripped circuit breakers or blown fuses, also door and lid must be closed securely otherwise machines most likely won't operate
If extension cord is a must it should be plugged directly into a wall socket
Not all machines open in split view, some are supposed to be accesed/attacked with the attackbox (or your own attacking VM).
how to get autogenerated image for your profile pic ?
those robot images everyone has ?
yes so once i uplaoded custom image i can't get it back ?
Not sure.
Go copy someone else's and download it, then upload it to yours
hmm ok i see too bad though there was a way to get a unique one (the default one)
Can you show me an example? It might be a project on GitHub and you can generate your own, something like that
xorsit cant paste images - you can go on leaderboard and you can recognise default images
they look like weird creatures
Alright I'll take a look when I'm home
to paste images in this discord, you'll have to verify first (see link)
@velvet prairie
thanks
RoboHash.org. Contribute to e1ven/Robohash development by creating an account on GitHub.
Looks like this is the project
Np
Looks like you can even generate one straight from their website
helloo anyone from support or can help
i can't join wreath room
i joined it before
i can't now for some reason when i click join room nothing happens
Are you a free user?
yes, wreath is also free tho
and i joined it before , a long while ago, am just coming back to it now
can be the required 7 day streak
Is there a button somewhere I am missing that would allow me to extend the time on my attack box?
think it is one of the buttons in split view
i remember that before , even after the i break the 7 day streak ,could be that tho i'll come back after 7 days xD
thanks
Gave +1 Rep to @plush bay (current: #3 - 1935)
no problem xorist
Provide the redirected website for the shortened URL using a preview: https://tinyurl.com/bw7t8p4u
guys help me its the only one i cant answer
What room/task?
You can see the actual website the shortened link is redirecting you to by appending "+" to it (see the examples below). Type the shortened URL in the address bar of the web browser and add the above characters to see the redirect URL.
Add +
bro im looking at the aby.run report they provide its been 2 hours at least
just give it to me to end this madness
im french so i migth misundertand something
thx bro but i still cant find the answer
Gave +1 Rep to @timid talon (current: #32 - 259)
its too bad the THM website cant be in french as well, it would be so easier to just understand everything instead of hving to translate in my head
You should be able to see where the shortened URL redirects to by adding the plus sign like this: https://tinyurl.com/bw7t8p4u+
No aby.run report needed for this question.
thx my friend i appreciate , sometime its just the way its explained that fuck me up , i just cleared it
Gave +1 Rep to @timid talon (current: #32 - 260)
wooohoooo
anyone else have issues with RDP over the VPN? disconnects every 3 minutes, then i ahve to kill the vpn and reconnect it
i'd use the inbrowser attack boxes but theyre almost unusably slow for me, and the mouse doesn't properly display
The images are not loading on the website I tried disabling every addon that could cause it or check connection to imgur.com but still it just couldnt load. Like static images are loading like the deafult pfp but images of room, custom pfp and images in rooms are not loading. Anyone got idea what could cause this problem?
Is anyone having issues with the Security Principles learning path and the ISO/IEC 19249 questions? I keep putting in the correct answers, but I get a message reading that they are incorrect. I double-checked my answers; they are correct, but I'm still getting denied.
Don't know if it's the right channel, but I noticed that the last two images in the Help center page for the Discord bot are the same. According to the text there must be a different one https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account π€
The TryHackMe Discord Server
What's your answer ?
Guys, please offer some tips and don't confuse people with Answer format
What is the command for Windows Troubleshooting? I'm stuck with this shitty answer and nothing works
msdt.exe /id NetworkDiagnosticsWeb
In System Configuration, what is the full command for Internet Protocol Configuration?
This one as well
Which room is that ?
Windows Fundamentals 2
Open up System Configuration > Tools sub-menu > Windows Troubleshooting
Your answer is in the selected command field
Gave +1 Rep to @ember osprey (current: #47 - 177)
Hi I would just like to report that for cuple of days now i have an issue loading Leaderboard page for my country takes awful lot of time
Today i cant open it:
Can anyone help to reset wreath? It needs 1 vote
https://tryhackme.com/r/room/wreath <--- here
You need to tell everyone your subnet.
Voted π
thanks mate
I was 5th vote, it should restart now π
@ember osprey Thanks, it started to work now π
Gave +1 Rep to @ember osprey (current: #46 - 180)
hello friends, I'm having a problem where my answer is refused and I'm pretty sure it's a good answer to the question, it's in the Windows Powershell room
I have a question, do I still get the tickets if I accidentally click out of the window that reveals them? Cause uhhhhh lol
2 days ago when we had 500s i lost 4 tickets
oof
you can reset the progress of the room, then fill all the answers again and you will still get those tickets.
what taks/question and what is your answer?
now if I can remember which room it was I didn't redeem them lol I made so much progress since then π
it was the question about finding items in current directory with size over 100, I changed my command and it worked
even tho my first answer was good too im pretty sure
Hi,
I had total of 9 days streak freeze. Missed only one day by mistake. Just logged in and it seems that this one day took all the freezes? Got the warning that I will lose all streak tomorrow and now this tab looks like this, like i'm starting from 0,. Fortunately 97 days are still there.
So how does it work?
If I remember correctly there is even the "7 day streak freeze" as a prize in the ticket event. I'm confused. Almost lost all the streak (it's a 23:07 here).
If you miss a day your streak will reset unless you have a streak freeze activated, it will allow you to pause your streak for one day if you miss engaging, it should activate if you don't answer any questions before midnight (your local time)
who can help me to recover my streak?
how works the streak freeze?
or where i can activate the streak freeze?
Honestly the streaks are bugged and shit you don't get anything worth while from it and its a gimmick. The main thing I see is that it allows access to the "tryhackme networks" what ever that is.
I also get this bug out almost weekly as I use a VPN and it causes it to reset without notice
if the THM team cared they would offer these for free anyways not make you log in everyday and answer a question. Or provide them in a way of answering question and not just signing in to keep the stats for daily log ins and activity looking good.
I got 1 month voucher ticket yesterday and now I am checking the page it shows something went wrong .
i got 1 t shirt voucher yesterday but now when i using it at checkout it shows invalid code. why?
So no matter how many of "streak freezes" I have (got 1 + 1 + 7 day = 9 days total) it will always allow to pause for only 1 day? π€¨
I'm on the paid account from the start. Two things are important for me if it comes to streaks:
- to have some challenge and I wish at least this tiny visual confirmation that I dedicated a lot of time to study (500 + day streak will feel amazing!),
- to not have these annoying streak notifications that you have even on the premium account.
So while my goal is to study everyday for 500+ days, when I won some "7 days streak freeze" prize, I really thought it would cover me in case of something terrible happening, when I really cannot log in for a couple of days.
But after only 1 day missed, I have 0 streak freeze left. π€¨
Apart from that you are right - it should count other activities. Especially when you are a premium user, and you getting notified that after 7 days you will have access to the networks ... π
1 day + 7 days in a row
Hey guys
I got a resource exhaustion bug that affects the hosting vm should i report it?
Can someone explain how this works or if there is a file I can read on this
When you complete a room that posesses the tag "Linux" it will go up.
you need complete a rooms that posesses these tags
like you have completed all or most of rooms with fundamental tags thats why is showing 100 in fundamental
@weary spindle i got t shirt n cap voucher yesterday but now when i using it at checkout it says enter valid code. can you help me
No, as I'm not staff.
You'll need to reach out to support.
okay thank you
Gave +1 Rep to @weary spindle (current: #1 - 2956)
Yes each one will protect you for one day, they shouldn't stack to allow you to miss 9 concecutive days
anybodyyyyy?
Hey guys, di you know whom I can contact if I get the error 'invalid code' at checkout for the T-shirt I have just won?
@raw crypt
thanks
Okay thank you
I just got back to THM after being inactive for a while.
Where is the "Teams" tab now?
I see my friends, but it seems that my team is gone...
can I reset the progress of an entire path?
no, only rooms one at a time.
Hello, i used my school email to sign up and now i dont have access. Can somone update my email? or do i have to pay for another membership?
You can log in with your username.
I used SSO
no sure how many months left but i dont want it to renew on my school account
Has anyone run into an issue where a room is 100% complete but only displays as 50% in the learning path? I've had that with the tutorial room for a while now
Hello, i try to redeem a voucher code but when i enter the code and click redeem it just closes the windows, no notifications, nothing? what am i missing? π
Do you have active subscription? You'll need to cancel it if you do and wait until the renewal date passes before you can redeem a new one
Check if it isn't expired or if it's valid
i canceled my subscription and it ended earlier today, so the "redeem voucer" button is visable, but when i enter the code it doesnt seem to do anything more then closing the window. it does not even say that the voucher code is invalid or something.
Maybe it's glitch on their side
Don't do too many attempts it will lock your account temporarily
Ah okay, i will wait. thanks for the information.
Hi! I recently won some swag vouchers and I'm having trouble on how to use them in the swag shop at the checkout, can you please assist me in this?
Also when I try to enter the swag voucher code on the checkout's Discount code field and apply it, it says the "Enter a valid discount code" hence saying the code I applied is invalid.
I use firefox and sometimes in room when scroling site is stuck . I just seem in THM not other websites
@bronze vale hey i received the wrong voucher code for 20 pound ticket
length is larger also its not working
any way to transfer my subscription?
my school dissabled my email
I can't login using Gmail
:\ November 2, 2024 at 5:00:22 PM PDT my subscription renewed
Hi, anyone know if its possible improve vnc atacks machines to works little fast? i ty connect vnc by generic vnc viewer with the thm vpn connected but seems its only accept ssh connections
Simple comment: In this blog post you said that Burp Suite Basics room is free, and it not is. Ref: https://tryhackme.com/r/resources/blog/free_path. It should be updated.
is the site down ? add: it was for a moment : 500 error
500
Something went wrong!
We're sorry, we're trying to keep them under control.
Maybe one day they'll follow us and form our army...
hey all, anyone can help me out with openvpn and ig mtu issue?
when im connecting to openvpn and visit 10.10.10.10, it loads long and sometimes doesnt load properly but still works
but in rooms i have red badge "acsess machines" and when i start one it doesnt load at all
*ofc i tryed different locations
after troubleshoot script - mtu was set on 1470
i figured it out manually that max is 1480
also tryed
fragment 1400
mssfix 1400
and it breaks 10.10.10.10
described above was made on kali VM
on parent windows machine it doenst work at all, not even loads 10.10.10.10
Where do I report a bug?
On networkingconcepts for the OSI Model Questions... you can put Layer and any number... and it will say correct and then change it to the correct answer... ex. Question 1: Which layer is responsible for connecting one application to another? I put in Layer 9. [knowing there isnt a layer 9] then it said I was correct and change it to Layer 4
That's because the logic behind checking the correct answer compares your answer with the actual one, but it doesn't require an exact match. Instead, it checks if it aligns mostly-around 80-90%-with the correct answer.
10.10 half loaded and finally room machine works, ty bro!
Do drop an email to THM Support and they will sort that out for you.
@wind juniper
VNC? Have you tried connecting via a VM?
Is your subscription via your school?
Okay, thank you!
Gave +1 Rep to @ivory spruce (current: #11 - 708)
hii everyone, i am unable to use my discount voucher on swag code. it say enter a vaild code. I got voucher code on mail. its me or anyone else facing this issue
Most of us are facing the same issue we just need to mail our problem to support team
i have mailed them but got no solution yet
Cancel your existing subscription if you have it and wait for renewal date to pass it before you can redeem voucher
i got vouchers for t shirt n cap not for subscription
hello here, just wanna to report a little typo in Intro to IR and IM, Task 2, "Usually, everything first starts at the SOC (Security Operations Centre)", Centre is the french π²π« for center here.
Ensure that code matches items it applies, it shouldn't have any restrictions or item applicability
Many people got same issue
Hello.
Is this the right channel for issues related to buying vouchers?
I just bought 5 voucher for my students and it isn't being shown on my dashboard.
Didn't get email notification also.
My account status: not currently subscribed.
Though, the amount was debited from my card.
yes im applying the voucher on same item for what i have got still it isnt working
how to fix it ?
Hey, please contact support@tryhackme.com for payment related issues
Thank you.
I did.
Gave +1 Rep to @bronze vale (current: #6 - 1346)
hello, I keep getting instance termination when I start the machine of the room "Moniker Link (CVE-2024-21413)".
What can I do about it ?
Hello I having problem on command line room on powershell.
what seems to be the issue?
@timid talon sorry but it solve now. And thank you
Gave +1 Rep to @timid talon (current: #32 - 267)
hello, i won a baseball hat code but it just says "enter valid discount code" when i try to use it, someone else have the same issue?
Thanks for the info! π
Gave +1 Rep to @timid talon (current: #32 - 268)
Hello Friends,
I'm encountering the following problem while trying to access the room "shells overview" https://tryhackme.com/r/room/shellsoverview
Everytime I try to access I get the warning from my antivirus that the connection to the website is terminated because of an exploit on the site...
Does anyone else get this warning? Can someone tell me what to do?
Some code snippets that antivirus flags as harmful due to keywords that are associated with exploit, check it's security logs but don't disable it entirely, so you can find some pinpoints if some content or URL pattern is flagged
Thanks
i got 6 prizes including t shit, basket cap, $10-$20 vouchers, 1 premuim and grand prize defcon33 but i wasnt able to them , mailed to support they responsed with 4 month premuim.. this is to infair .. anyone else who faced this issue
Same brother I too got this message today
Yup. They messed up apparently and now aren't honouring the prizes people won fairly. This lacks credibility. Why would anyone trust them or any other future event?
example of rooms https://tryhackme.com/module/networking in THM rooms I got freezing sometimes got the tab crash. Support told me clear cache but it didnt worket after 20 min
thats example of room , Because I currently work inside
Firefox Browser
@naive dust Confirm mate
I cannot seem to reproduce this using latest firefox dev edition. Are you on latest version of firefox?
location traking
Yes
Hello,
SOC Level 1 -> Cyber Defence Frameworks -> MITRE (https://tryhackme.com/r/room/mitre)
Task #8 last question (What platforms does the technique from question #2 affect?) - this seems to be outdated, the MITRE framework related to the question (https://attack.mitre.org/techniques/T1078/004/) has been modified to Platforms: IaaS, Identity Provider, Office Suite, SaaS causing people who stumble upon it to get a wrong answer, using a wayback machine, it shows the correct answer (https://web.archive.org/web/20240613094045/https://attack.mitre.org/techniques/T1078/004/) but not every beginner knows how to use those tools, would appreciate it if answer could be updated, thanks.
I can't terminate a attackbox vm
i cant connect to the website vpn no matter what i do,i have tried to regenerate the openvpn files and switch servers, i have fixed the date and time, and nothing is working , what is weird is the the vpn of other websites such as hackthebox is working
even the help.sh gave the following output:
-$ sudo bash help.sh
Looks like you're running Kali
[+] Stable internet connection
[+] OpenVPN is installed
[-] tun0 interface does not exist
Would you like the script to attempt a connection automatically (Y/n)? y
[+] Connecting....
[Warning!] Connection process is taking longer than expected to complete
[-] Failed to connect
Failure to connect to the VPN can usually be solved by one of the following options:
-Regenerating your OpenVPN config on the TryHackMe access page (https://tryhackme.com/access)
-Switching servers, then regenerating your OpenVPN config
-Checking your system time. If your system time is incorrect then this can cause issues with the authentication process
If none of these methods work, please ask for further assistance in the TryHackMe Discord server, subreddit or forums.
[-] Exiting
verify your account and send a screen shot please
sorry send a screenshot of what??
Which website?
tryhackme
The VPN won't have an effe on viewing the main web page.
Effect
i know but i want to connect to the machines and it doesnt let me do so
Can we have a screenshot of the VPN output?
the machines in the rooms
Which server are you using and country?
usually i use EU server 3 and i am in Egypt however this specific try was to the US-East-Regular-1 server
Egypt blocks UDP VPN files, you'll be unable to use the VPN.
I'm sorry, you'll need to use the attackbox.
that is very weird it was working perfectly until about a week ago
can i somehow change it to TCP if UDP specifically is the issue
Yeah, some people say it works, but Egypt may be hett stricter.
No, THM don't offer TCP VPN files currently.
ohhhhh
ok thank you very much
Gave +1 Rep to @weary spindle (current: #1 - 2960)
Hello, please, when i am trying to start machine (windows) for Windows Privilege Escalation room, i am getting this message (got it after 5 minutes at new machine for the first time, then after 30 seconds and now after 2 minutes), 3 times in a row. Not sure what is wrong, if I did something wrong or its problem on their side. I got it for the first time when I connected to that machine via reminna from kali linux with VPN. Please, what I can do now? Just try again until it will work?
Clear cache and cookies
thanks
Hello, it is necessary to update the information in the Metasploit: Exploitation module, in the windows/smb/ms17_010_eternalblue module an option has been added in which it is now necessary to configure "SHELLCODE_FILE", please update the information, as it took quite a long time to solve this problem
It's not?
You can set LHOST, RHOST and exploit.
It doesn't let me, it asks me to specify SHELLCODE_FILE
Can you screenshot?
This could be an issue on your side?
I don't know, maybe
Are you in correct exploit, as I can't see an option for LHOST.
That's my options
Hmmm, so the problem is really on my side.
Ok, thanks, try to find a solution
you seem to have selected a fancy payload
Yeah, only staff can see your name, (unless you add a friend on THM, the email doxxes you)
It is just a yes or no question, I will contact the room creator if yes.
Well yes of course, if you can grab relevant logs or screenshots, and by the way you should avoid repeatedly triggering it on the VM hosting since this is exhaustion bug, it can affect others too
Try to include some observed effects on the environment, slow response time or complete unresponsiveness
I have a question. I was charged for the renewal of the monthly subscription four days ago. I decided to try out the openvpn so I could use my own machine. And although it said I was connected, I was having terrible connection. I was only able to ping deployed machines 5% of the time. I saw one of their refund exceptions are issues like these with technical difficulties. Would I be eligible for a refund, specially considering itβs been only 4 days and tbh I barely went back on THM today
I suggest dropping an email to THM Support for it.
@naive dust
You can post it in #room-bugs and someone from THM Staff could see it.
https://help.tryhackme.com/en/articles/8282427-refund-policy
Please see TryHackMes refund policy.
I had. It mentioned exceptions due to technical difficulties which I absolutely had
I did. Figured Iβd ask here too just for funs
Can this be fixed?
I printed the certificate from my phone, and there was a formatting error. What can I do to correct this?
Any one can help me ?
weird situation - my original discord account got hacked(my friends told me that they got a steam gift card scam link from me), is it a bot or a real person? also for whatever reason , the account got hacked , even though 2fa was enabled (i didnt click any links or websites), plus my backup codes dont work , any reason?
I created my own room on tryhackme and installed a Windows machine, but the machine does not start.
oh no an error occurred while starting vm parsing_error
it gives this error
hello friends, how do i get rid of the machine that comes to the right of my screen splitted ? Because i'm using a vm with the vpn
press this π
i might be blind
oh nvm found it
thanks !
does it always start a splitted screen when you start a room ? or can you just make it start without it ?
You don't need to start AttackBox at all if you're planning to use your own VM
please can you help me ?
I created my own room on tryhackme and installed a Windows machine, but the machine does not start.
oh no an error occurred while starting vm parsing_error
it gives this error
Ctrl and F5
there are not many messages about these uploads
I found this one, and the 4-5 other messages following: #site-support message
I understand there is a role for Room creators
does THM also have a dedicated channel for them on Discord?
thinking that having such role/access would help C.B.D with their question earlier
There is the room creation channel.
so it is just a matter to ask politely moderators for such role?
Yeah π
you there?
How can I reach out to the Swag Shop support?
hi i need help i cannot open module it says i need to "To access material, start machines and answer questions you need to join this room!" and i am using free. Thanks
There should be a button which read "Join this room" on top of the room
i can't join it won't let me
which room is that? Can you provide a link?
i cannot open the operating system module https://tryhackme.com/module/introduction-to-offensive-security Thanks
are you on mobile or tablet?
laptop macos
there are 3 rooms in this module, can you open the first one:
https://tryhackme.com/r/room/introwebapplicationsecurity
yes i can
i think i might need to buy subscription
how long have you been doing thm
not for that one, but the other 2 need a sub:
about 2 years, but not continuously
i cannot open operating system security tho
Guys I have problems in the breaching active directory room https://tryhackme.com/r/room/breachingad
I changed the dns to the thmdcIP which in my case is 10.200.97.101
Then I pinged to the dc it pings, and added in the ip of the dc in the /etc/hosts for za.tryhackme.com
And still be pinged and available for scanning by nmap.
But resolving DNS via nslookup doesn't work, also ntlmauth.za.tryhackme.com doesn't open on web browser
I'm confirming that I'm connected via the network's VPN which is breachingad vpn creds
not bad tho i just started lmao
the third one you can open?
nope it shows me to unlock full experience i guess need to buy subscription
it is strange you could not see the listing of the module
can you list the rooms of learning paths?
under Search, you have modules but also learning paths
no need for DM
I understand some education programs use THM for their curriculum though
it seems that about 60% of THM contents is free, but the rest requires a subscription
Ig yea
in the search page, you can filter for free rooms
Thanks for your help tho ill subscribe after i finish the free path way and do it
I mean free roadmap
I lost my streak thinking I would have a streak freeze from the event. Can I have it back? π How to know you have a freeze or not
I have not set up the DNS with /etc/hosts, but I can confirm the DNS setup for Kali (and THM Attackbox) as per the instructions in Task 1 works and allows nslookup for ntlmauth.za.tryhackme.me and printer.za.tryhackme.com as well as browsing these 2 sites
look out for Black Friday: usually THM comes with a good discount, although, if I remember correctly, it usually is the yearly sub
Thanks I'll keep that in mind.
Gave +1 Rep to @upbeat quarry (current: #27 - 324)
I really did everything as the instructions added the dc ip as a dns along side with google's 8.8.8.8
But still nothing.
if you hover your mouse over your streak, you will know
also check this link for info on streak freeze: https://help.tryhackme.com/en/articles/7843540-streak-freeze
Also as the instructions
Systemd-resolve doesn't work for me the command doesn't exist, also tried resolvectl --interface breaching --set-dns dcip thedomain
But is says that is wrong, I really followed the instructions but there is something wrong, do you have any other methods
systemd-resolve is for THM AttackBox
you have to use the instructions for Kali, a bit further down
see my sreenshot
I already did the same read my message carefully please i did as the instructions, and it pings but doesn't resolve via nslookup
check my screenshot
my DC is 10.200.166.101
please show me similar screenshot for your setup
@ripe mantle
to share screenshot, you have to verify with Discord using the link above
thanks i didn't know that lmao π€£ two bird in one stone
Gave +1 Rep to @upbeat quarry (current: #27 - 325)
you're good with nslookup and the rest now?
what do you mean?
sorry π«’ , I had not realized you reacted to my message to Anubis
Nah, no worries
you are good with DNS and Task 1?
please realize there is a channel dedicated to this network: #breaching-ad
it has a long history of messages that can help you further
hi, i need a help. Shells overviem dont open exercices
i don't get play the room. Someone can help me?
Can you verify your account through the THM discord bot? Folks here don't normally click on links shared by others.
@polar meadow
After verifying your account, you should be able to post pictures.
Okay, ready
Can you post a picture on how the exercise doesn't open?
Is this a Chrome browser?
yes
Have you tried Firefox?
Or if you have any adblocker or browser plugins that may be blocking content, scripts prevented from running?
Ok, i go try
Yes, adsblock on
Can you try turning some of those add-ons one by one and check which one of those may be blocking some of the content? Or try in another browser?
I could not purchase the premium subscription using my debit card, and I am located in India.
Have you tried reaching out to your bank?
are there known site issue right now? I am working on https://tryhackme.com/r/room/ssrfqi & when I paste in & hit enter nothing happens.
guys, any ideas how to fix openvpn speed? i have rly big troubles with machine load. in 99 % page even not loading. i tryed iplink mtu 1200, 900, tryed troubleshoot script, different servers
Try to regenerate the file
nope π¦
my machine kept getting automatically terminated π¦
Try to refresh the web page
i'll try
dunno if this is the right channel: has anybody else the issue that the dashboard is bugged?
i completed the metasploit introduction. i even reset the room and completed it again
still showing up on my dashboard as only 5% completed
Try to leave the room and rejoin
didnt help :/
reset the progess once more and left room
didnt solve it :/
Try to reset your browser, clear cache and cookie
tried that too. currently trying to resrt room again with target and attacker box running
It works fine for me for now
still not progressing on my dashboard

opened a ticket for now
hello everyone
how can i turn off split tunneling in openvpn?
i would like to tunnel my traffic via the vpn today (everything is legal, it's just that my university should have no business looking into my traffic) however i noticed that the thm openvpn only redirects through the tunnel if it has to connect to one of your machines
No, we won't be helping you bypass your Universities polices, please abide by their restrictions, or don't use THM at Uni.
But that is essentially what the VPN does, it creates a tunnel to the network so you can use their machines, if you don't want the Uni to look at your personal device, don't use it?
yes, however i thought it's also possible to use it for surfing the web anonymously. i do understand that you limit your vpn servers to split tunneling as to not accidentally run into the possibility to get your vpn servers trashed with random viruses or similar anti risk measurements
can anyone of you recommend me a good vpn that i can pay for to tunnel ALL the traffic? my uni can't look into my device however they can check my traffic via the ISP
If you use a VPN, it will mess up the THM VPN, you can't double up.
OpenVPN for THM was set up with the sole purpose of accessing, there is no reason for it to anonymise data
okay thank you
hello
i cant see my attackbox when i click start attack box
its showing the target machine info but the attackbox isn't starting
click on show split screen
where is the option
sorry iam new to this
at the top
at the top there is a button labeled access machine when i click on it its showing you are disconnected
Free users can only use attack box for one hour a day
but i haven't used it today
Β―_(γ)_/Β―
let me try tomorrow
maybe you clicked inadvertently? the cap is one-hour per day, once per day
try clearing cache and cookies just in case
otherwise it should work tomorrow
hello, i have a question on 'DX2: Hell's Kitchen' room. im using the thm attack box. the target machine works only on ports 80 and 443. to get the second flag i had to connect to the attack box via vnc, coz i needed to kill the process running on 80 and to start http.server on 80 to serve the payload, while there's nc catching a connection from the target on 443 on the attack box - two available ports are envolved. i was able to get the second flag. but now i struggle with getting the last flag. i have to install nfs on the attack box, but seems like there's no way to change the default port of nfs server (which is 2049 according to rfc), i've manually added a default nfs.conf to /etc on the attack box, uncommented the port and put port=80, restarted the nfs-server and rpcbind, but nfs still working on 2049, so my question is: how to make nfs on the attack box running on port 80? is it even possible? if yes, how could i manage that?
I do not think you will get much help on this hard box
this may be useful though:
- the help archive: #release-help-archives message (no mention of nfs there though)
- writeup: #thm-community-media message
hello, I was just wondering, if I were to get a month sub today, would I be able to buy the annual black friday sale or would I be blocked until my month expires
What's the cost for annual?
With Black Friday cost ,m
?
Do you know how much the Black Friday annual will cost ?
my THM badge isnt updating , i have embeded in github even i tried regenerating but still same. anyone knows about it
Hello i lost my streak yesterday but i had 8 freeze streaks from the event, so it got saved and i answered a question to save it and today i was supposed to fill out another question to conitinue my progression but now i am back to 0 and i lost all my freeze streaks any help? can i get my freezez back
Try to clear your GitHub cache and cookies
it didnt worked. the static image isnt updating
Maybe it's the way GitHub cache works, it should get updated in a day/two
The streak freezes do not stack to my knowledge. However, do drop an email to THM Support who can assist in sorti g it out.
@versed gazelle
I would drop an email to THM Support to confirm. I know you can now switch from monthly to annually without waiting for your subscription to expire, but not certain if you can avail of that discount.
@hazy knoll
Thank you
yea i noticed that but i got 8 from the cyb101 event, i dont think i should lose all of them though for missing one day. ill email and see thx for the help
I have a discount code but it says invalid? Can I solve this problem from here?
@zealous dune @wind wedge
Is it from the ticket event?
No, thatβs fine. If itβs not working you wouldnβt have got a sepraye email why itβs not working
The email I receive says I have 1 day and 15 hours left.
Dm me a screenshot
@wind wedge I sent
I wonder tho, if they dont stack, what's the use of a "7 day streak" prize in the ticket event? π€ I currently have 9 streak freezes equipped. π€·ββοΈ
Hey guys, I have an issue: I tried logging in with google, and my progress was erased, pretty much prompting me as a new account.
Nevermind; I logged in using my username with the same gmail, and its still them same. Pretty weird how that works
Hi guys , i have problem in payment of TryHackMe website to subscribe the premium they cannot open why?
If anyone is having issues with their VPN files, just add this line
ncp-ciphers AES-256-GCM:AES-128-GCM:CHACHA20-POLY1305:AES-256-CBC and you won't have to regenerate π
Why are the cards [Credit and Debit] getting declined while trying to purchase vouchers? is there some issue with the payment mode coz i used 7 different cards and each of them were declined..
βDid the page open for you when you wanted to fill in the information?β
What's the reason why it's not there?
(I can get a shell from gsb, but since I didn't do anything, I switched to msfconsole.)
hey, anyone. I am facing payment issue. Card is getting declined. What to do?
Did the page open for you when you wanted to fill in the information?
I am trying to join the wreath lab but when i click on join room nothing happen, any help?
if you are not a subscriber, you need a 7-day streak to join a network
What is the price
Hi there! My streak keeps resetting even though I have a 1 day and 7 day streak freeze available
Thanks
Gave +1 Rep to @upbeat quarry (current: #27 - 328)
Pro i cannot subscribe
what is the issue?
has anyone had issues with launching the target machine?
No, which machine and what error?
Hack FakeBank v2.2, it will load, but will not give desktop
i have terminated, re launched, closed browser and came back in, not sure what im doing wrong
Oh.. I'm not sure if it changed since though. It used to be a 1-day and a 7-day streak at one time.
They stack now.
Ctrl+F5? Clear cache and cookies?
Hack FakeBank v2.2, "the connection has timed out", i did let the VM terminate based on time (stepped away from the computer longer than anticipated) before this issue arose
are you on mobile or tablet?
can you try another browser? page loads for me on Firefox and Chrome (screenshot is with Chrome)
do you have extensions that you could disable, like adblocker?
are you on VPN or could you go via VPN?
in situations like that, my way is to shake the thing till it surrenders to my stubborness π
Know is ready to pay thx so much
Gave +1 Rep to @upbeat quarry (current: #27 - 329)
Do you know how long Iβve waited?
7hours maaan
that is what I call stubborness π
but, I am interested to know what made it work in the end
π€·ββοΈπ€·ββοΈπ€·ββοΈπ€·ββοΈ Anyway, thank you very much from the bottom of my heart.π«Άπ»π«Άπ»π«Άπ»
I didnβt do anything
that is true hacking π€£
happy THM
Thanks youπ«Άπ»π€
Gave +1 Rep to @upbeat quarry (current: #27 - 330)
Why would someone use VPN? Curiously
because if it works with my VPN while it did not work without VPN, then I would win
my attitude there is "I'll take whatever works"
mind you, in that situation I could probably not explain why that would work, but that is so often the case: like right now, with Abdul's experience, we do not know why it works in the end
I meant why is there an option to use VPN in thm. Dont know the reason
are you referring to THM VPN to connect to target machines that you start in the rooms?
Yes theirs two options
One without VPN and one with open VPN
the option with VPN allows you to connect your local machine (the attacking machine, like Kali for instance) to THM network where the target machines (with their vulnerabilities) reside:
- the VPN creates an additional interface on your local machine
- from that new interface a tunnel is created with THM network
- the result: your local machine is connected via the VPN tunnel with the target VM
the option without the VPN makes use of an in-browser attacking machine (THM AttackBox) which resides on THM network directly, with the other target VMs
You'll get more details from this THM resource: https://help.tryhackme.com/en/collections/3601905-getting-started-with-tryhackme, as well as with this (free) room: https://tryhackme.com/r/room/openvpn
Thank you for the information provided
Yeas was able to fill the card details then when i click on pay. It says the "card has been declined" each time π
hi there is a problem in friend system, i cant send friend request to my friend, i get an error that i already send friend request, same thing happens on my friend when he adds me too. but none of us recieves the request, it would be good if anyone helps about this, we are facing this issue for like 2 month
You should use the on-site chat bot and open a ticket. Better the site team looks at it that us on disc bro.
If you want, we can try adding each other and see if its an issue with you or your pals account
that would be good
lets try adding you if it wont work then i will open a ticket
jump in voice lets do it
fair enough, i'll dm you my username, send me yours in dm
Anyone got the customer support email. The chat bot is not providing assistance for our particular issue!
see above
thanks for that
Gave +1 Rep to @upbeat quarry (current: #27 - 331)
how does the activity update on yearly activity. I'm Canada and its 9/11/2024, i am doing room since afternoon but its keep updating on 8/11/2024. I'm confused. How does it work?
edit: Now its starting to update the activity at this time
I beg, please lmao. Does anyone have a hacky way to stop these specific emails
(this isn't even all of it, just when my email started putting them in spam automatically
There should be unsubscribe button in those emails π
it says it'll unsub from all emails though, which I don't want. I want the newsletter and such
just not those "reminder" emails
I think my streak was reset incorrectly. Since I started I've not missed more than one day. And I have 8 days of streak freeze from the ticket event.
After connecting the software .ovpn to Kali via the configuration file using the openvpn /path command.ovpn remains enabled
2024-11-10 04:28:28 Initialization Sequence Completed
2024-11-10 04:28:28 Data Channel: cipher 'AES-256-CBC', auth 'SHA512', peer-id: 9, compression: 'stub'
2024-11-10 04:28:28 Timers: ping 5, ping-restart 120
. At the same time, if ping is enabled, it sends 4-5 packets, then stops.
Are you trying to stop the VPN connection, or are you saying you can ping a machine 4-5 times then it stops?
Yes. Ping takes place 4-5 times, and that's it.
curl 10.10.10.10/whoami - it works for the first 3-4 seconds
Can you do ip a | grep "tun" ?
5: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.8.63.139/16 scope global tun0
valid_lft forever preferred_lft forever
inet6 fe80::ddcb:b939:db42:5c40/64 scope link stable-privacy proto kernel_ll
valid_lft forever preferred_lft forever
Just tun0?
Which machine are you trying to ping?
I sent you a private message
Please don't send messages without asking, it's in our rules.
Which room are you doing?
Windows PrivEsc