#site-support
1 messages · Page 99 of 1
hey @ember osprey try hack me runs too slow in my laptop. earlier it was fast from yesterday it has become unbearably slow. wnything i can do to improve the speed?
Same here.. it takes about 20 sec for the site to acknowledge my answers
same here too, can't finish my room
me too
facing huge lagging... takes 3x more time to finish a room. im facing this from south asia. indian server... where are you from
I’m in Melbourne Australia
Problems here too
staff is working on it 🙂
@agile elbow would you mind if i dm you?
No not at all
Is the tryhackme site ok?
guys all my stats have been reset and my PFP is gone
same here
it only opens on PC somehow, on mobile it straight up shows a 404
i think they are working currently
It's taking better than 30 seconds to acknowledge my answer
same too
It’s getting worse and worse.. it’s unbearable now.. won’t even take answers.. just saying unknown error instead
I am having the same problem
welp gonna answer one question to keep my streak and then return later. I was hoping to review stuff I haven't seen in a while.
Wow this site is still down on my side like 5 hours later. I figured I'd sleep and get it and it all be taken care off. They seriously have a problem looks like.
Someone probably tried to hack tryhackme.. the irony🤣
can i ask for help sir, my openvpn cant connect with tryhackme already tried every article i can find in the internet but still nothing works X_X
check the last 100 messages.
from where sir
From your entry. The entire site seems to have a lot of problems at the moment. And you don't need to add Sir on the internet my man.
ive been encountering this issue even before the site problem came dang
I see, it's hard to test sollutions now when the site is down though.
Or almost down.
That is just stupid, the entire world is out there and they would attack this place. There are just shame to be collected from such a action.
Which server are you trying?
to be honest, i tried every single one of the server as part of troubleshootng... nothing works
Which country do you live in?
same here.
ph sir
i tried au server since its the closest but still problem
How are you connecting, which os?
im using it on my linux vm sir
the problems are on thm side not your side and doesnt matter which OS
I'm connected to the VPN.
my openvpn connection is already completed as it says.. and when i try to access 10.10.10.10 i can access it no problem.. but /access site still says im not connected and i cant connect to machine IPs only 10.10.10.10
Ignore the /access page
It's broken.
thats what im saying thm site is down ...\
i see... how can i verify my connection to thm sir if i cant access machine IPs
and this is a well know problem witin thm that the acces site not always shows your connection
ip a | grep "tun"
If you get a reply with an IP, you're connected.
you can ping the device you trying to powen en check ip a
You can't if it's Windows.
he is using linux
So pinging their own machine would be pointless?
that is not what im trying to say, if u are trying to pown a box. If u started it U can ping the box , that also confirms your connection
But what if the box is WIndows?
You can't ping it then.
why not ?
Because Windows blocks ICMP pings by deafult.
someting new learned today
Hey guys recently I am having trouble getting past the cloudflare verify you are human page to even load the main tryhackme page. I just get stuck in a loop.
i can confirm that both 10.10.10.10 and machine IP can ping if this is good thank you so much guys for the help... sorry im still trying to learn and im doubting if its good or not since i cant access the site via ip
is there a workaround in the meantime, clearing my cache and cookies didn't seem to work
doesnt matter whe all started , what do you mean which site cant you acces via ip
No?
Which room are you doing?
thanks
Gave +1 Rep to @weary spindle (current: #2 - 3472)
the machine 😅 im on activerecon room rn
And how are you trying to connect to it?
And which task are you doing?
ive been using the web base attack box long ago and i just started trying to use my own machine so that i can figure out how it works... also the 1hr daily limit is frustrating since im still trying to maximize the free labs before i go premium
Yeah, 1 hour restriction is fair due to AWs.
But how are trying to connect to the machine, what are you doing?
so far im just following questions and write down notes on everything i learn so that i can get back to it anytime.. i havent got to complex connections so far so the only problem i thought i encounter is the openvpn connection to tryhackme
but since you guys said as long as i can ping the machine ip and 10.10.10.10 then its good, i can finally continue learning haha.. thank you so much
But you're connected?
with openvpn? i think yes
with the machine? i dont know hahah how can i tell 😅
Follow along with the steps.
alright thank you sir thank you so much for the help appreciate it
Gave +1 Rep to @weary spindle (current: #2 - 3473)
hey i just complete 360 days streak, but i didn't received the badge !!!!!!!!!!!!!!!
You will shortly , check your email
@weary spindle Any updates on the missing images in the redline room?
Thanks for your time 🙏
Gave +1 Rep to @weary spindle (current: #2 - 3475)
If it was posted on #1333993673381253162 ?
unfortunately i don't received any email
How long is your streak ?
Badge is awarded after 365 days not 360
okkk thats my fault then , sorry
Well , 5 days more 😄 . Keep up the good work
🚀
Yes, by user fudoryo
Then no, staff will get to it when they can,
Thanks for the reply!
Gave +1 Rep to @weary spindle (current: #2 - 3476)
where can I open ticket?
On the email below 🙂
oh dear, can I seek for help on this discord server...?
Depends for what 🙂
When i finish rooms it says i got 0 points. Is this a bug?
depends which room
First it was Intro to SSRF (junior penetration Tester path) then it was Introductory Networking room
Anybody still getting 500 errors trying to access tryhackme?
Works fine for me
Yeah some old walkthrough rooms give 0 points
FIgured it out, just restarted firefox and it works now, odd, thanks @ember osprey
Gave +1 Rep to @ember osprey (current: #1 - 3746)
If it pertains to THM content absolutely!
i have this problem while i tryong to view my certificate
The site still isn't fully responding. It loads but that's about it. It doesn't recognize my login or anything. So after all this is over THM is going to have it's hands full sorting out streaks, and who know what all else or issues that people lost because of this LONG outage.
Staff members are working on it
yeah.. me also!!
Yeah it's giving me some issues also, be patient I'm positive THM's team is working on it.
okay buddy!
I signed up for TryHackMe using my Google account, but I now need to change my email to my academy-provided email so that I can join my academy’s group. However, I am unable to change my email from the settings.
Could you please assist me in updating my email? If email changes are not possible, is there a way to transfer my progress to a new account created with my academy email?
Try to reach out to support on the email below 🙂
thanks
hello, i have been having trouble connecting to the machine. it get interruped and then never connects. i am runnin g a kali linuxc in a virtual machine
my skils matrix style changed and idonlike that can i back the last?
Anyone facing a problem when uploading team avatar like me it is jpg but it doesn't work and it doesn't say what is the problem either?
couldnt upload either
it sends a 403 forbidden
i thought it was the name of the file but idk
maybe the format
jpg is a acceptable format and it didn't work with me
i meant the height and width
maybe
i will stick with thm icons lol
yes cuz I spent 2 or 3 minutes asking chat gpt to do it
👍
I think u didn't get it I am kidding
Hi guys, new here. Unsure if im doing something wrong or if theres an issue. When Im on the early module, the enumeration phase with the "vulnapp" http://enum.thm/labs/verbose_login/ address, I just get: "Error response, Error code: 405, Message: Method Not Allowed, Error code explanation: 405 - Specified method is invalid for this resource."
I assume this is pre-configured out of the box so I don't actually know what to do to get this working. Tried a fresh machine. Tried it with the IP, localhost and hosts file updated. Any ideas what I can do to remedy?
Hello,
I am currently going through Metasploit: Exploitation room. I am stuck in Task 3 where I am suppose to initialize msf database. I keep getting a message on terminal "Please run msfdb as a non-root user".
if you used sudo exit it and run metasploit without sudo
or if you are using root terminal use normal one not the red one
Thanks
Gave +1 Rep to @brave owl (current: #1778 - 2)
worked?
Nope. I am using the black terminal and made sure I am not using sudo when running metasploit
the black terminal is starting me as a root user.
very weird
try to restart your machine
restart did not work either
in https://tryhackme.com/room/johntheripperbasics task 8, it states Az appends not A0. im unsure if this is me being stupid or if there has been a type O. in the 3ed question, A0"[A-Z]" is incorrect
I don't think so
Yeah that's incorrect
+rep @ember osprey
Gave +1 Rep to @ember osprey (current: #1 - 3757)
You don't need to do that on AttackBox , db is already initialized there 🙂
Maybe you added AttackBox ip instead of target ip in /etc/hosts
So did has someone made a type-0 regarding the answer to the question?
No , your answer seems incorrect
It asks me to append a capital letter to the end of the word, then i google Az and it mentions that it prepends to the beginning of the word?
No Az should append at the end
Ahhhh my mistake, i appreicate the help.
Az appends to the end of the word & A0 appends to the end of the number, chatgpt did me dirty.
Which machine are you using - Attackbox or your own VM?
Which machine are you trying to connect to? Have you connected to THM OpenVPN?
Attackbox
Thank you 🙂
Gave +1 Rep to @ember osprey (current: #1 - 3761)
Can I DM THM support to inquire about the free SAL1 certificate?
You can reach out to support on the email below 🙂
Thanks
Is Insekube room BROKEN? Hi, looking for some help/direction, please. Insekube Room target host is not stable. The IP is available. However, ports are open, filtered, then closed intermittently. I can't get a stable reverse shell connection for more than a few seconds and can only use its web page once every minute or so. It is making the room unusable. I am halfway through the room. I have tried multiple THM VPNs, the AttackBox, and multiple machines/OSs/browsers. All the other rooms are fine in the same environment.
Hi, new here. I have encountered a maybe? issue. I think it would best be discussed via DM. maybe as in could or could not be. above my understanding, really.
What's the problem 🙂 ?
Is it ok to Dm you? I mean I can post here but, I'll leave that at your discretion. @ember osprey
https://tryhackme.com/room/csrfV2
What is the updated password for Josh's account?
GB82MYBANK5699
Your answer is incorrect. Please ensure it follows the answer format represented by underscores, check for typos, and try again.
For This It should be right answer
am i doing wrong here or there is any glitch
Post it here so other users with similar issue can find it in the future 🙂
hi all, I'm haveing a problem with target machine, It is just black screen, I'm in Crypto Basics
ok so during HTTP in detail, when I arrived at the part that has us learn how to use dev tools to view cookies, I left dev tools open because its interesting and I wanted to further familiarize myself with what it has to offer. (fire fox btw) I started poking around warnings, bug tabs etc. noticed I had warnings from firefox about known trackers so set about setting that straight. then I noticed something come up while connecting to " how websites work" room. I will attach an image with this comment. I have the code copied should you like to take a look at that as well but it's lengthy so head's up. is this a thing? a facetious nod from THM? or is this a problem?
Do you have any browser extensions / ad-blockers ? Are you using Brave browser
It is a gimick from thm 🙂
I have firefox yesterday it worked normally in other rooms
Try to restart your browser
tnx that helped 🙂 🤦
Can someone please see if they have the same issue with Insekube. 
now im connet to vpn on THM ( how too coont to the web base AttackBox )
Press Start AttackBox button in the room
Non-subscribed user can only deploy the free AttackBox for 1 hour a day. Subscribe for unlimited access.
and i see ( Free Room. Anyone can deploy virtual machines in the room (without being subscribed)!
Then you can use your own vm via vpn for unlimited access
but how
i have use abut 4h now on my vpn
You can learn how on the link below 🙂
https://tryhackme.com/room/openvpn
i have try but what vers i the right one bc i have try alot
What do you mean ?
2.4.0 or 2.6.6 or ?? i have try alot of them no luck
If I didn’t have a server near me would that explain why I can’t connect the vpn?
Which country are you in?
Saudi
im in denmark
You have EU servers
is there any alternative to the attackbox that we're using right now
Can you access http://10.10.10.10/?
hang on 🙂
You can use THM Kali machine also
okay
@ember osprey wee i see that pages
is there any way I can use the attackbox more then one hour without needing to pay?
i gusse its have some think to do whit a vpn
No but you can use your own vm via vpn for unlimited access 🙂
You see the page ?
yes
So you’re connected then
Then everything is fine with your vpn connection , ignore access page on thm website , it is broken 🙂
soo what is the next step for free acc ?? 😄
That's it , you're good to go. Join some rooms and enjoy 🙂
( Non-subscribed user can only deploy the free AttackBox for 1 hour a day. Subscribe for unlimited access.) (You need a subscription to start this type of VM)
Yeah that's why you're using your vm
wait do you mean cmd promt then?
soo i nee a ??
im a litte lost 😄
VM - virtual machine with linux installed , you need to connect it to thm network once you set it up @agile vault @tall lodge
AHA okay
but hmm i dont have a sever 😄
@ember osprey
@tall lodge @agile vault You can learn how to set up VM on the link below 🙂
https://www.kali.org/docs/virtualization/install-virtualbox-guest-vm/
then i need a server 😄
No you just need your computer
A Virtual Machine is just a file you download
When you open it with an application like VMware or VirtualBox it acts like another computer inside your computer
But wouldn't this still be accessible using 127.0.0.1 or localhost? The error persists whichever way I go about it? Also, the introductory hosts file segment states to add the external IP for the attackbox no? There is no target device as this is brutforcing a hosted login page using a python script and a list of emails?
btw kgb THM kali-linux needs a paid subscription to work
Yes
No , add target ip to /etc/hosts
"Deploy the target VM attached to this task by pressing the green Start Machine button. After obtaining the machine's generated IP address, you can either use the AttackBox or your own VM connected to TryHackMe's VPN."
This suggests the machine IP is the external IP of the attackbox - if you're saying this is incorrect, what then is the target IP?
it seems you are confusing the two machines.
Usually it works like this>
The virtual machine you can deploy for several hours per day, this one is the "victim" or "target" machine. When it is deployed, it will show you an ip address. And is specific to the room you are starting it.
The other machine is the attack machine, it can be your own machine via ovpn (free, it is yours) or the web attackbox (1 hour per day for non subscribers)
That's ip of the machine you started , you can find it in red box above the tasks
I didnt realise there were two VM's. Thanks for clarifying. I'll go take another look
@ember osprey i have a litte questen here in 2-3h i will get a laptop whit kali on then i do not need a vm right for all the task on thm right ??
You can also use Kali as main/host OS but I don't recommend that
its a win/kali dule boot 😄
I would still recommend running Kali inside a VM as it is a sandboxed environment
ok hmm no i have more to think abut hehehe
Can you help clarify here, the computer connected via VPN - my own machine is the attack box. The VM box i spin up via the website is the vulnerable machine. I have added the VM's IP into the hosts file on the computer connected via VPN. enum.thm works, but when i go to "~/labs/verbose_login" i'm met with the same page "error response, code 405" as though the webservice isnt even running on this VM.
Either way the attackbox IP showing at the top, doesnt appear to be showing the verbose page whatever machine i try to access it with.
Can you please verify and provide a screenshot of your /etc/hosts ?
https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account
All about TryHackMe Discord Server.
I dont think this is my config error - i think im getting confused with the machines.
OK, so i can use either my own machine or the machine i boot up from within the courses aka the attack box.
The issue im having is that I dont know the details for the vulnerable machine - where is this info?
ugh
sorry
i got it
the target machine is the one that spins up when you press start machine
yeh
i made the mistake of thinking that the button was the same button for spinning up the one VM
i swear, im not usually this stupid
yeah it can be confusing at first if you're using the attack box.
Is everything ok now ?
No need to be sorry buddy 🙂
Appreciate your help. thank you.
Anytime 🙂
Hi , I'm trying to get my certificate but site not working
Try to refresh the page
not work
i'm doing the moniker link room and everytime im changing to the attackbok the windows vm just shutsdown. Anybody know why?
and my responder doesn't work.
i used the ens5 interface and i think that's the right one
Hello TryHackMe Support Team,
I recently completed the Jr Pentester path, but I accidentally entered my name incorrectly. As a result, the certificate was generated with the wrong name.
My correct name is: Zeyad Nasser Baghdadi
My TryHackMe username: ZodX1
My subscription will expire in two days, and I urgently need the certificate with my correct name because I am applying for a job that requires it. I would really appreciate your help in correcting this issue as soon as possible.
Please let me know if there’s anything I need to do from my side.
Thank you for your time and support!
Best regards,
Zeyad Nasser Baghdadi
Please help
There is nothing you can do to change the name of the certificate, the only thing you can do is show the certificate in your account.
why i can't view my certificate
Have you completed the path?
https://tryhackme.com/room/socfundamentals
Task 3, first question. Looks like the answer ends with a 2-letter word, but it is actually 3.
yes when i click on the certificate its appear 500 error
You'll need to contact support for that. 🙂
Hey, I got a question. Not sure if this is the right room tho. I've heard that users that have btl1/cysa+ certs get free sal1 cert. What if we already purchased sal1?
i can't join this room
https://tryhackme.com/room/breachingad
upon clicking on join room nothing happens
I think you may be exempt from the deal, as there is limitations on the deal.
Do you have a streak of = or > 7?
nope sorry i didn't see that as a requirement anywhere
Yeah, it's on the netwoks list
Streak > 7 for free users.
Subs don't need it
got it thank youuu
hello guys I get an error when trying to connect to connect to the AD enumeration network please help me
2025-03-07 14:11:06 VERIFY KU OK
2025-03-07 14:11:06 Validating certificate extended key usage
2025-03-07 14:11:06 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2025-03-07 14:11:06 VERIFY EKU OK
2025-03-07 14:11:06 VERIFY OK: depth=0, CN=server
2025-03-07 14:11:06 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, peer certificate: 2048 bits RSA, signature: RSA-SHA256, peer temporary key: 253 bits X25519
2025-03-07 14:11:06 [server] Peer Connection Initiated with [AF_INET]52.51.105.71:1194
2025-03-07 14:11:06 TLS: move_session: dest=TM_ACTIVE src=TM_INITIAL reinit_src=1
2025-03-07 14:11:06 TLS: tls_multi_process: initial untrusted session promoted to trusted
2025-03-07 14:11:07 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
2025-03-07 14:11:08 PUSH: Received control message: 'PUSH_REPLY,route 10.200.98.0 255.255.255.0,route-metric 1000,route-gateway 10.50.95.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.50.95.210 255.255.255.0,peer-id 0'
2025-03-07 14:11:08 OPTIONS IMPORT: --ifconfig/up options modified
2025-03-07 14:11:08 OPTIONS IMPORT: route options modified
2025-03-07 14:11:08 OPTIONS IMPORT: route-related options modified
2025-03-07 14:11:08 Using peer cipher 'AES-256-CBC'
2025-03-07 14:11:08 Error: problem with tun vs. tap setting
2025-03-07 14:11:08 Exiting due to fatal error
Looks you're either not using sudo, or you have a blank VPN file.
im using sudo, and the file is not blank
Which VPN file is this?
its the vpn file from AD-enumeration
the network
<my_username>-adenumeration.ovpn
In that case, you'll need to edit the file.
Change dev [interface name] to dev tun
oh it worked tysm !
Oh, so you think there's no chance of a refund or a subscription return or something like that?
I doubt it, tbh.
But I don't speak for THM, so you may reach out to support.
Kk thnx m8
Hey yall, not sure if this is the correct place to ask this, but I had a question about SAL1. Do you know if the multiple choice part is proctored or if it limits internet use?
Cause I was reading, and it feels pretty impossible to proctor the multiple choice if you have 24 hours to do the exam, and can take it at any point in that time frame?
Lmk if I am missing something. I understand that when you start the multiple choice you have to complete it in a certain timeframe.
Someone had @ jabba.sh, but I think the question got drowned out.
It's not proctored, it's open book.
None of the exam is proctored.
This makes sense, since THM probably doesn't have the resources to proctor every examination. But, I just wonder whether its wise to have a multiple choice section when its open book when you have AI and things. It seems like eventually the LLMs will be able to regurgitate the answer? I realize that part of the marking system is AI as well. Is any of the marking done by a person or is it all automated?
Are there plans to combat the usage of AI during the exams or is it kind of sunken cost? I don't like multiple choice anyways since it doesn't test anything besides parroting information, but I don't know about companies.
Automated with manual checks here and there, I guess.
🔊 Unmuted tarpeg007
are there file limits?
@quiet stump Please don't ping everyone.
Not sure what's going on here. I've been having a rough time with the "Networking Core Protocol" room. Due to the fact that "telnet" command is not working on some of the tasks.
Yea it says im connected, but the task wants me to login with the credentials it provided me. But its not letting me for some odd reason.
It is normal to having problem with revrse-shell over VPN at THM?
Yea this has to be a site issue because i looked it up and I've done everything correct.
when i try to open 'tryhackme.com/certificate/THM-*' it shows 500
Something went wrong!
"its been 2 days now "
I would try clearing out your browser cache or try using a different browser. See if that helps if you haven’t tried that already.
It is normal to having problem with revrse-shell over VPN at THM?
What do you mean? In which room are yoy trying to do a reverse shell?
Did you try checking or researching commands to connect to the POP3 service?
Yes, here's a walkthrough that i found on "Medium"
The video i sent above was stuck on the "+OK [XCLIENT]" part
I was doing The MuseTrap, and i was not able to get a reverse shell from my own machine over VPN.. Iv been having trouble with it before to.
Try to change server and download a new file
Which server are you using?
EU-Regular 1
that fixed it, should've done it first 🤦♂️
thank you very much though
Gave +1 Rep to @ember osprey (current: #1 - 3774)
umm tf is that?
Ok
Problem with exploiting AD room
attackbox cant connect to network adapter called "exploitad"
root@ip-10-10-198-103:~# ip a
2: ens5: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 9001 qdisc mq state UP group default qlen 1000
link/ether 02:b6:34:5b:2b:fd brd ff:ff:ff:ff:ff:ff
altname enp0s5
inet 10.10.198.103/16 metric 100 brd 10.10.255.255 scope global dynamic ens5
valid_lft 3404sec preferred_lft 3404sec
inet6 fe80::b6:34ff:fe5b:2bfd/64 scope link
valid_lft forever preferred_lft forever
8: breachad: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.50.94.28/26 scope global breachad
valid_lft forever preferred_lft forever
inet6 fe80::626d:f09b:6df8:25fa/64 scope link stable-privacy
valid_lft forever preferred_lft forever
9: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.50.103.35/24 scope global tun0
valid_lft forever preferred_lft forever
inet6 fe80::ce9a:a3c4:57a4:fc2c/64 scope link stable-privacy
valid_lft forever preferred_lft forever
10: enumad: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.50.54.65/24 scope global enumad
valid_lft forever preferred_lft forever
inet6 fe80::464:bd0c:1ef0:d5b6/64 scope link stable-privacy
valid_lft forever preferred_lft forever
root@ip-10-10-198-103:~#
Can you go the logs folder?
First, can you go to the access tab, and regen the VPN file for exploitad
Have you done that?
Ok, go back to the attackbox and go to the directory /root/Scripts/
And then run ./pull_vpns.sh
Can you show me?
still no exploitad adapter
only this script added this adapter:
11: tun1: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.50.103.35/24 scope global tun1
valid_lft forever preferred_lft forever
inet6 fe80::4d99:98d4:219c:e125/64 scope link stable-privacy
valid_lft forever preferred_lft forever
but this subnet is not probably exploit ad
because exploit ad starts from 10.200
They all start 10.200.
okay
TUN2 is my exploitAD vpn
okay
i tried to ping THMCHILDDC but it didnt work
tun0: flags=4305<UP,POINTOPOINT,RUNNING,NOARP,MULTICAST> mtu 1500
inet 10.50.103.35 netmask 255.255.255.0 destination 10.50.103.35
inet6 fe80::ce9a:a3c4:57a4:fc2c prefixlen 64 scopeid 0x20<link>
unspec 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 txqueuelen 500 (UNSPEC)
RX packets 1 bytes 48 (48.0 B)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 9 bytes 432 (432.0 B)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
tun1: flags=4305<UP,POINTOPOINT,RUNNING,NOARP,MULTICAST> mtu 1500
inet 10.50.103.35 netmask 255.255.255.0 destination 10.50.103.35
inet6 fe80::4d99:98d4:219c:e125 prefixlen 64 scopeid 0x20<link>
unspec 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00 txqueuelen 500 (UNSPEC)
RX packets 0 bytes 0 (0.0 B)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 8 bytes 384 (384.0 B)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
okay they just doubled ip lmao
okay i gonna try my local parrot machine with openvpn
my openvpn isnt connecting
i run the ovpn file and the process stays running
but it does intiialize
and i dont connect
Hi everyone I'm just starting my journey with the Lookup v1.2 machine, it redirects me to a site that is not correct, could someone help me please!
I'm supposed to be redirected to files.lookup.thm but in this case the server response sends me to www.9800.com
Okay vpn on my local parrot machine works it shows exploitad adapter. But still not on attackbox
Can you share the last few lines of your OpenVPN connection log?
Have you created the needed enty in your /etc/hosts file?
I have went to bed after trying and failing multiple times, I'll let you know tomorrow.
Hello, who can assist with issues and bugs when taking the SAL1 cert?
Hello, the Machine from the Privilege Escalation: Capabilities task in the Linux Privilege Escalation Room crashes constantly when trying to access it from my kali through ssh :/
Can you provide a screenshot ?
Try to refresh the web page and start a new machine instance 🙂
Did it a few times already, but managed to solve it with the attackbox from the web 😄
Try to reach out to support on the email below 🙂
Glad to hear that , keep up the good work 🙂 🚀
guys im trying to play the active directory networks but for some reason i dont have option to download the network openvpn file ( im subscribed)
You need to join/start network beforehand
im already joined and iv solved the rooms before but now i cant or i dont have the option to download the vpn file
when i try to start it it gives me Uh-no! Failed to start the network.
Try to leave the room and re-join
it did work Thanks alot !! ❤️
Gave +1 Rep to @ember osprey (current: #1 - 3776)
My subscription isn't due until the 17th. If I wanted to change my due date to today, let's say, could I cancel and then resign up today?
Is there any way to reset my account progress so I can start fresh?
Not for a complete account but you can restart individual room progress
Thank you
Gave +1 Rep to @ember osprey (current: #1 - 3782)
For payment related issues try to reach out directly to support on the email below 🙂
So I went to look at one of my completed paths and it shows 99% complete but room in the path has a check box next to it. any reason why this is?
You've probably missed some question in one of the rooms in the path , check all rooms again
Sometimes rooms receive updates in the mean time
I've been having a rough time with some of the AD rooms- I'm currently on enumerating ad, and the credential distrubutor web page im told to navigate to in the attack box doesn't load
Hi again, im trying to access to the vm of one of the task from my terminal and i get stuck
im able to do the $sudo openvpn *****, i get into
and then i open another terminal to access with the ssh tryhackme@10.10..... and it doesnt work
thanks in advance
im all ears
Are you connected via VPN to THM network ?
how can i check that?
Have you downloaded your VPN file ? Are you running OpenVPN 🙂 ?
yes
Can you access http://10.10.10.10/ ?
in fact it seems like my vm just can't talk to any of the machines in this task, or load the required page lol
yes
but when i do $curl 10.10.10.10/whoami i have no answer
Provide a ss of that page
you mean here in the chat? 10.21.134.119
Which room is this ?
windows fundamentals 1?
You don't need to ssh into that machine , use machine in split-screen view 🙂
No , machine may not even have ssh port open
what does it mean, for a dummy?
Means that you can't ssh into it 🙂 . Machine should start in a split-screen view on THM website
is site support not the channel to be reporting room issues? just wanna make sure im not doing something stupid, but i dont see how i could be
okey, thank u very much, and sorry for bothering
No need to be sorry 🙂
Have you added that domain to /etc/hosts ?
i'll try but i didnt need to do that to connect to the network in the breaching ad room
yeah no joy, keep getting nxdomain
i reset progress, terminated machine, left room and rejoined, and it works fine now
thanks
thanks. i've wiped everything back to before the changes and decided to set the room aside for now and focus on some others in the hopes i can better understand it when i retry it.
Gave +1 Rep to @ember osprey (current: #1 - 3787)
I'm not able to add my paypal details as it keeps buffering, any fixes to it?
Am not able to join Hackfinity Room with my team what to do ?
Try to reach out directly to support for payment related issues on the email below 🙂
How ?
Ty
When I click on join room and go to hackfinity room its not able to join
Event starts on March 17th
1️⃣ Check the "Mission Activated" banner after joining the Hackfinity Battle Room
Make sure the banner shows up in the Teams section of your account
You can find it here: Teams Section
2️⃣ Verify your name in the room's scoreboard
Your username should appear on the chart/scoreboard of the room after reading through it—as long as nothing changes
Here’s the room: Hackfinity Battle Room
This is what was told
2025-03-08 07:52:34 UDPv4 link local: (not bound)
2025-03-08 07:52:34 UDPv4 link remote: [AF_INET]18.202.129.195:1194
2025-03-08 07:52:34 TLS: Initial packet from [AF_INET]18.202.129.195:1194, sid=c883720f 8e20a9c4
the sid changes
but tyhats it
2025-03-08 07:52:34 UDPv4 link local: (not bound)
2025-03-08 07:52:34 UDPv4 link remote: [AF_INET]18.202.129.195:1194
2025-03-08 07:52:34 TLS: Initial packet from [AF_INET]18.202.129.195:1194, sid=c883720f 8e20a9c4
these are the last 3 lines
or did u need more?
Which server are you using?
Use 2 or 3.
ive tried them before
2025-03-08 08:04:33 UDPv4 link local: (not bound)
2025-03-08 08:04:33 UDPv4 link remote: [AF_INET]3.254.253.220:1194
2025-03-08 08:04:33 TLS: Initial packet from [AF_INET]3.254.253.220:1194, sid=fa6b5ac3 65c642d0
thats on 3
and same thing on 2
Maybe there's some problem with your Internet connection
Could it be that my country is banned or something
becaus emy connection is fine
Where are you from if I may ask ? Users from 🇪🇬 , 🇷🇺 and 🇨🇳 reported issues
Oh I'm from egypt, that's probably the reason
Unlucky ig
Yeah , unfortunately 😦 . AttackBox may be your only option
My attack box mustve came back by now (hopefully) so ill just use it
Yes, that is the reason.
Government blocks on VPN usage means users in those countries can't connect.
Is there not a way to bypass it?
Not ethically.
or is that somethingunethical as it's bypassing restrictions?
Does THM support VPN servers running on TCP yet?
Egypt only blocks UDP OpenVPN traffic
Not yet.
Glad to see nothing has changed in the last 4 years :)
Lots has.
Just not the VPN
Heyy
Can anyone help me
Asually I m facing a problem I have completed a room and in my learning section it seems that I have not completed but I have and by this glitch I m not getting my certificate!..
Yes they do, but it's only the Networks not the main servers
ID verification for SAL1, the provider onfido.app? their domain possible expired..? I cannot proveed with the exam lol
Try to restart room progress
Can someone please help me? I haven't logged in awhile and I am having some troubles
What's the problem 🙂 ?
i sent you a dm
Ask here
If that's the issue , try to reach out to support directly on the email below
thank you
I have restart 3 times than also not working 😔
Try to report problem in #1333993673381253162 channel 😦
It does?
I thought it blocked UDP and TCP
if im sitting on my laptop (os linux) can i connet to thm and use that soo i dont have to use vm ??
Yes , but I would still recommend you to set up VM
i know my mate is setting up a server for me next week for vm 😄
Hey I just resubscribed after several years, and I want to reset my progress on my account... I don't see a place to do this. Anyone know how to reset?
I dont know if there is a way yo globally reset but you can reset per room
the billing machine keeps freezing after getting a reverse shell
is this only me or others too?
Have you stabilized the shell beforehand ?
yes
thats why my vpn doesnt work???
bruh
Quite possibly.
can some one tell me why my krybord on my hp laptop some time do wiret stuff as lock my keybrod and mouse in linux
Please use #general for this, this channel is for tryhackme website and VPN support.
sry
It's ok. 😄
in the shells overview room, the target ip doesnt connect and cant be accesed via browser either
am i doing something wrong or is it lagging
Take sure to terminate machine from Task 1 and start machine from task 8 , those are two different machines 🙂
thank you so much
Gave +1 Rep to @ember osprey (current: #1 - 3792)
I cannot enter through OpenVPN and every time I try to enter I get the "Connection Failed" error, what can I do?
what os do you use
Kali
hang on
Hi
Why the Denmark flag?
miss clink ( to big finger on my laptop )
Now it's working (just delete OpenVPN and reinstall it)
But thanks for the help @agile vault
Gave +1 Rep to @agile vault (current: #1784 - 2)
Whenever you see green machine icon in task header that means that this task uses different machine than other tasks 🙂
Try with EU-3 or 4 server
Copied
@ember osprey you still on :Didt see you
why isnt the target device responding?
The connection keeps getting refused everytime I try to connect to open vpn
Can anyone help me?
Which THM OpenVPN server are you connecting to? Which location are you connecting from?
EU-Regular-3 and i am in Britain
Try EU-Reg-4, but wait for ~2 to 3 mins after switching server before downloading your OpenVPN config file.
I saw a thing about changing the configuration file changing cipher to data-ciphers
Alright, I'll try that, thanks
Gave +1 Rep to @ivory spruce (current: #12 - 767)
That won't fix it.
Eu Reg 2-4 works.
Thank you for the help it works now it's never worked but I don't usually wait time before downloading a new configuration file
Gave +1 Rep to @ivory spruce (current: #12 - 768)
Hello there,
I have access to VIP VPN servers but i still cannot connect to tryhackme network using openvpn
Can somebody help me?
What command are you running? To which OpenVPN server are you connecting?
If you can share the last few lines of your OpenVPN connection log, that will be helpful.
sudo openvpn a.ovpn
Server EU-VIP 1
how do u guys paste a picturs here, i cant find the option in "+"
I was solving a machine and it suddenly terminated and shows an unauthorized error for me, the attack box is fine tho
Is it only for me or there is maintenance or smth?
Oh, nvm, it logged me out of my account, and I now can run the machine and the attackbox again
idk why this happend tho
Can you try EU-VIP-2? Please wait for ~2 to 3 mins after switching OpenVPN servers before generating your OpenVPN config file
You need to verify your account to do so.
Follow the instructions described here: #878393611929129000 message
Hi, is there any admin who can help me with the SAL1 cert voucher pls?
Thanks
@THM STAFF
hi, i have this bug both on chrome and firefox, i want to close this by pressing the x and it is not working
@pure snow
THM Staff do not work on weekends, but you may send them your inquiries or concerns on the said email.
Do make a post on this here - #1333993673381253162
even after connecting to VPN access machine is showing red Is theere any solution
Try to change the server
That feature on the site is broken 🙂
Try to get in touch with support on the email below 🙂
If i lost my streak, how can I contact the support?
@acoustic mirage
Reach out using the email from above
the AttackBox anything with firefox will not load nor anything that requires internet.
If you aren't premium user AttackBox doesn't have Internet access
Have you applied the voucher? Does your THM status reflect you as a subscriber? Its relatively new so I'm not certain although I saw that it will require access to subscriber only rooms.
Maybe drop an email to THM Support as well?
Well I went to look at a subscription and it said Active-Voucher and didn’t give me an option to buy
And I was doing the other rooms it’s just now that it is giving me issues
Aside from the Internet access the the AB, what other issues are you having?
AWS rooms are accessible under a separate subscription
It’s just the threat intelligence room
VM attached to that room doesn't have Internet access
Then how do they expect me to use the phishing tool?
Use thunderbird client to inspect emails
For the second and third one they want me to run it through virustotal
Calculate the hash of email using md5sum cmd and search for that hash on VT using your local machine
active directory basics room. can't connect to the machine, showing connection error, the tryhackme remote server is not currently reachable. please check your network and try again.
You're using AttackBox or ?
AttackBox
Can you please verify and provide a shot of your RDP settings 🙂 ?
https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account
All about TryHackMe Discord Server.
Where do I find my RDP settings?
Use remmina on AttackBox to connect via rdp
I gave up trying to redo that room, I will do something else and retry later. Thank you
Gave +1 Rep to @ember osprey (current: #1 - 3798)
Feel free to reach out again if needed 🙂
Hi i have one question, Can I download resources on my pc? I run Windows by VM on my chrome browser for Autopsy Analysis but i have so much lags on that VM that i cant work on it and i would like to complete this challange, thanks
THM suggest you don't take the resources from the VM's, in the event something happens and damages your system, THM are not liable.
thanks got it, so maybe is there any chance to speed it up? I believe my pc can handle multiple VM's, maybe different browser?
The VM's are cloud based, your specs won't play too much to do with it.
Hello there, im new to tryhackme, when i start the attackbox, this error appears:
cannot paste a screenshot.
The error is : thmVNC encountered error:
cannot read properties of undefined
Ignore it , just press x 🙂
its a red banner, no X to press
Where does it appear , on AttackBox or ?
You can verify in order to upload screenshots 🙂
https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account
All about TryHackMe Discord Server.
cc @zealous yoke
this''ll be some sort of browser extension interfering with it. Try disabling things like adblock, anything that interfers with javascript, etc.
And try another browser such as chrome 🙂
im using chrome, stopped adblocker, the others a crypto wallets, maybe i can leave them
the problem is still here
Chrome is usually the best. Try accessing the site via incognito, and at failiure, trying something like firefox
Do you have any troubleshooting for chrome?
when i use burp suite on my pc and im connecting with a vpn to the THM and try to connect to machine its not uploud the full page, when i do normal reqeust to google or something else its worknig fine , only problem with http://10.10.4.230:8087/
i use burp sutie open browser and when i use any another browser its work fine the page uploud but not capture traffic
Install some proxy browser extension like Foxy Proxy 🙂
Also enable Interceptor in Burp
openvpn redad.ovpn
2025-03-09 19:11:42 Note: --cipher is not set. OpenVPN versions before 2.5 defaulted to BF-CBC as fallback when cipher negotiation failed in this case. If you need this fallback please add '--data-ciphers-fallback BF-CBC' to your configuration and/or add BF-CBC to --data-ciphers.
2025-03-09 19:11:42 Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload.
2025-03-09 19:11:42 OpenVPN 2.6.13 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] [DCO]
2025-03-09 19:11:42 library versions: OpenSSL 3.4.1 11 Feb 2025, LZO 2.10
2025-03-09 19:11:42 DCO version: N/A
2025-03-09 19:11:42 OpenSSL: error:0480006C:PEM routines::no start line:Expecting: CERTIFICATE
2025-03-09 19:11:42 OpenSSL: error:0A080009:SSL routines::PEM lib:
2025-03-09 19:11:42 Cannot load inline certificate file
2025-03-09 19:11:42 Exiting due to fatal error
if there is a solution let me know
btw its a config file for AD enumeration free room
cat redad.ovpn
did that man
What was the output?
lemme paste it rq
sudo nano redad.ovpn
change dev enumad to dev tun
done
did it work?
no still same issue
i tried re downloading
but same issue
says some certs are missing
Need reach out to support
if ill subscribe does this Attackbox run faster? right now i can do one move per one minute cuz of system lag on website
i can not enter the "Shells Overview" Room,
why is that?
error:
Room Type
Only subscribers can deploy virtual machines in this room! Go to your profile page to subscribe (if you have not already).
Oh , you need to be a premium user for that room 🙂
i am, got business acc
I don't think it will run faster but you can use it for unlimited amount of time
Try to reach out to support then . You can get in touch with them on the email below 🙂
okay thanks
Gave +1 Rep to @ember osprey (current: #1 - 3802)
hi guys! i cannot connect to challenge sites anymore.
-i have not tested this with room ips yet
-when i try to connect to a http server taht should be open, i get a server not found error
-i can nmap scan an ip just fine
-it was working properly previously
-i ran the vpn troubleshooter, which found no problems
-i used the website's troubleshooting steps (killall on openvpn, rerunning the program, lowring bits)
ive tried to be as thorough as possible, but if any info is missing, ill gladly provide it
Try to change vpn server and download a new vpn file
will do!
uhm, how do i change vpn servers?
ahh
found it
huh, theres vip servers?
i assume those are a bit better, and i seem to have access to them, so ill grab those
the error seems to persist, but ill restart the target room jsut to be sure
i have bad and good news
it stilld oent work, but tehres a new error now!
Hmm. We’re having trouble finding that site.
can you provide a screenshot 🙂 ?
..sure, give me like five minutes to log onto discord with my vm
' ere ya go
okay i realize i should be using a room that im 100% sure has a webpage
i jsut confirmed that this does have a page
Can you show us your url ?
Have you added that domain to /etc/hosts 🙂 ?
i have nno idea what that means, so... no
You need to add custom domain such as that one to /etc/hosts
ah
Use nano /etc/hosts and add target ip and lookup.thm domain to it 🙂
i do also seem to remember that otehr rooms didnt work either, so i'm gonna do what you said but also try another room, jsut to be sure
not sudo nano?
issue still there, give me a sec to gather teh screenshots
my hosts file and the new page
it says unwriteable bcs i didnt sudo in, i did when editting the file
wait
found an issue
okay yeah its fixed now. or so it seems
do i need to reset lookup if i want to launch another room to check, or can i run two rooms at the same time?
(for the record, the new issue was that it automatically tried to https)
Did you add the website to your hosts file?
You can have up to 3 machines running at the same time.
I know, but Like- would I be causing server overload by- well no, I suppose it would be a lousy CTF platform that dies when Two machines are up at once
All vm's are hosted on AWS, so one person booting up 3 machines won't be an issue. 😄
Yeah below those
And yes , run it with sudo
@paper sableHi, for some reason I can't start a new machine because "another machine is already up" and it doesn't mention which one. How can I stop the first one?
@wind wedge
Please don't ping staff. 😄
You can check list of your running machines on the link below
https://tryhackme.com/api/vm/running
Thank you guys it worked
Tnx
Thanks, btw
Gave +1 Rep to @ember osprey (current: #1 - 3808)
anyone knows tryhackme support email? trynna tell them to change my country
@halcyon leaf
one <a> tag in the profile settings page will solve all dat lol, thanks btw!
Hi, I'm trying to buy a TryHackmeVoucher Subscription, but all my cards are declined
is there another way to get a Vouche?
I think that you can use PayPal also but if you have payment/sub. related problem it is best to contact staff directly on the email below 🙂
Thank you
hey so quick question with the OpenCTI Room with that machine to go to the dashboard i cant access the dashboard :/ but pings go through
anyone having issues with ye old VPN? i'm able to connect using a freshly generated openvpn us-vip west config, the routes are good presumably, but i can't for the life of me connect to the red team windowsinternals box.... +_+
im having issues with even doing a damn room
id send a pic but it wont let me
i can ping but i cant access the OpenCTI Dashboard
oof
i wonder if this is a site support thing or room help. i'll keep yappin until told otherwise. hmm.... what port is the dashboard running on?
like, if you try to access: http://target_ip:port/ for the dashboard, does it work?
gotcha. i figured that was the case for mine. not sure about his.
You will have to verify first . You can learn how to do so on the link below 🙂
https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account
All about TryHackMe Discord Server.
The reason nmap scan works is because of -Pn flag it will skip ping checks 🙂
looks like that box is only available on eu-west VPN?
that's from the web interface on the thm website via the "attack box"
i'm on us vip west
i'll try to get on the eu-west vpn, but man, that's super annoying, just fyi
i got it working. i just had to connect to the EU VIP 1 vpn ez pz i'm a certified genius now
lol
It can take up to 15min for that machine to fully boot up
That matter how big or how popular is that machine
Anyone using termux on Android
No , it takes some time to start OpenCTI and the machine has pretty limited resources so it is going to take some time 🙂
Yeah 👍
What u using laptop or mobile to do solve
It doesn't have anything to do with your hardware , THM machines run on cloud infrastructure
Hi guys where can I verify my rank here using the token
I can't seem to find the verif bot
@ember osprey
Type /verify <your-token> 🙂
You can use #bot-commands channel 🙂
You can use any channel
OH. now that im here anyways, why not solve the reasown i dont use my attackbox priviliges? Somethings mfs decides to die when i use tab. no autocoplete, no further input- nothing
What do you mean 🙂 ?
i mean that- this is hard to explain. sometimes ill try to autocomplete in the mfsconsole via tab and it jsut.. doesnt
and then it refuses to register my key presses
ill have a better explanation when it hapepns again
Hey guys - in the room "Redline" there are some Screenshots (e.g. in Task 5), that don't work anymore (at least for me): /room/btredlinejoxr3d
This is has been reported already.
Alright, thank you
Hello, I need help with my account. Is it possible to contact an admin ?
You can contact support
i am having problem in the subscription payment
when ever i do payment there is a prompt that my bank is declinig the payment
but i talk to my bank they say that it the site problem
Try to reach to support directly on the email below for payment related issues 🙂
Are there any rooms with walktrought for junior pentester beginners in case someone is stuck? I just cannot find such.
I just did the room "Vulnerability Capstone" I have tried with all the available exploits that I can find online, none of them work, so I checked in a writeup and they had the same problem with the exploits that are available via the usual sources that are mentioned in the rooms before, the exploits that the writeup used were no longer available on the source they indicated. Very frustrating..I have tested both via VPN and attackbox
Click on Help > Writeups
Silly me, thanks will check. 🙂
Gave +1 Rep to @ember osprey (current: #1 - 3824)
Is this a known problem? Cuz it feels like a miss in this lab.. The exploits in expolit db / searchsploit do not working and the other ones iv found on ex github was not working as it should..
Do you know, why AD-Rooms say "2 days of access left"?
(i have an premium account)
You will still be able to access room afterwards don't worry 🙂
kk, thx
hi guys,
i am having trouble completing lesson 4 of the first module, I have already executed the commands on the VM and the error persists, can you help me?
Hey guys, does anyone know the expected response time for sending a message to support on the site? Cant access my account atm
Maybe up to a week
Thanks!
Gave +1 Rep to @ember osprey (current: #1 - 3832)
Is there a problem with openvpn? I can't connect, tried regenerating and downloading new config and tried changing servers
Hello TryHackMe Team,
I am from India and trying to purchase a subscription, but my SBI debit card and credit card is not working. I have already enabled international transactions, but the payment is still failing.
Since PayPal is not supported in India, can you please suggest an alternative method? Do you support UPI or any other way for Indian users to subscribe?
For payment related issues reach out to support directly on the email below 🙂
Works fine for me , try to use EU-VIP2
@ember osprey sir i try all methods
Only support can help you with payment related issues , reach out to them on the email above 🙂
I mail them but did not get any good suggestions from there
Be patient it can take up to few days for a support to reply
Can I send you there reply if you want
There's no need to do that , only they can help you with payment problems
Ok thank you for responding
is it possible to remove card details ?
Click on your profile image on THM website > manage account settings > subscriptions 🙂
theres no option to remove
Try to reach out to support on the email below
ok
I am unable to download the wreath network vpn
You need to join/start the network beforehand
I have started the network and tried but it says An unknown error has occurred
Try to leave the room and join again
So nice of you. It works now.
Hi. Can anyone tell me how the streak freeze works? and where i should find the option to enable it?
It is enabled automatically . It will keep your streak even if you miss a day 🙂
Yes , you can check status of your freeze by hovering over the streak icon 🙂
thanks
What is the size limit of a file for team profile picture cause i'm trying to upload one and it won't let me? I tried different file sizes and types: jpg and png but it always gives me this error. Anyone has any idea why is that?
I think it is around 2MB if i remember correctly
i tried as little as few KB and still got the error tho
Hello guys Im having problem with za.tryhackme.loc AD network
i cannot resolve their DNS, this problem come from yesterday, I was connected to the THMJMP1 with ssh until the network disconnected from my Kali VM, impossible to ping the machines with the VPN, when I'm on attackbox I can ping but not resolve the DNS even after following the steps
its about those 3 rooms : Credentials Harvesting, Persisting Active Directory, Exploiting Active Directory
There's a problem with Task 4 in the Windows Event Logs room. The questions reference examples 8 and 9, but they don't exist on the current page. It only shows 3 numbered examples.
Nevermind. I just realized that those questions are referring to the examples on the Windows documentation page. My bad.
I am trying to solve blue ctf on tryhackme but whenever I try to exploit it I am not getting exploited. I also tried downloading videos from youtube but everything is going well but when I try to exploit it it is just loading and nothing is progressing beyond that.
I'm not sure about this, but ChatGPT recommended this for THM OpenVPN:
" Note: cipher 'AES-256-CBC' in --data-ciphers is not supported by ovpn-dco, disabling data channel offload."
Since AES-256-CBC is not supported by ovpn-dco, OpenVPN falls back to userspace processing.
This means higher CPU usage and slightly lower performance, especially on high-speed connections.
Potentially Higher Latency
Increased Power Consumption (Mostly on Low-Power Devices)
Or I have old version of THM openVPN
plz how to slove this issu
I connected to the openvpn, my ipaddress also was changed, but still the tryhackme access page says i'm not connected. why? I tried in both windows and linux and i get the same result. i tried pinging the machine ip and it gave me an error "failure". someone please help
Your Lhost address is bad , use tun0 address
That page doesn't work , try to access http://10.10.10.10/
Try to change server and download a new file
ok i try
yes sir, i can see the connection verified, thankyou very much
Yeah , access page on THM doesn't work
Hi... many images in the "Redline" room does not seem to display the right pictures or screenshots. Most of the images displayed is a picture with blue background and the text message, "imgbb.com - upgrade to a Pro account to embed images in emails". It's hard to follow the walkthrough...
It has been already reported , hopefully it will be fixed soon 😦
Thank you.
Gave +1 Rep to @ember osprey (current: #1 - 3868)
Hi, I have a problem, which is that the attackbox window never opens, but the virtual machine does start.
@tribal burrow I get 3 packets
ok but what % is lost if is ?
0 percent
then you are connected
Ok
just you can't have 2x vpn in same time. so call stack vpn
if you have another one in case'
I went to access machines and it’s red
it is might just due to site issue or smth.
Ok thanks
or try in terminal curl 10.10.10.10/whoami and what result you get
hello guys, any solution for this issue ? thx
AttackBox and target machine are two different things
Hey guys, trying to verify my THM account to my discord but getting 'This token is already in use by another account.'
Is anyone able to unlink this please as I think this is my old discord account!
You will need to get in touch with some mod or admin 🙂
Thanks! Creating a support ticket on the site now
I wouldn't.
Site staff handles site
Discord staff handle Discord.
DM me your token and account
Oh! Thanks will do now
still still waiting 🫠
Should I contact the support ? Is it normal to wait nearly 2 whole months 😮 ?
When did you first submit your room?
Exactly when idk, but it was in the end of January
Ah,. there is still a bit of a queue to go through, staff will be in touch whenever they've had a chance to look at it.
🫣 no problem, if they are searching for beta testers to help them i'm here
Weird thing popped up on my AttackBox when I was loading it up. Haven't touched anything yet beyond simply loading the AttackBox. Any thoughts on what this is?
(Black bar's timezone is EST/EDT)
I get that sometimes aswell but everything still works fine so i wouldn't worry
Alright, thanks for your tip.
No worries
ah womp. I thought I fixed that 
Mhhm okay, lemme take a note to have another look into, but this is safe to dismiss 🙂
Out of curiosity, if you're a regular AttackBox user, how often would you see this roughly? I.e. 90% of time, 20% of the time, etc? Maybe every 2 out of 8 machines
hi 👋 have you tried force refreshing?
im good some peapole on the server help me but thanks
okay cool - good to hear 🙂
cc @pale verge would be keen to hear your experience too 🙂
Probably say around 30% :)
This was the first I've seen of it, and I'm not aware of any of my peers having seen it before.
You can ignore that , just press x 🙂
I’m confused on “which switch would you use for a UDP Scan?” How were we supposed to know?
-sU
looking for password reset link for my account
I will drop support a message and ask if the query can be looked at again 🙂
Thanks!
Gave +1 Rep to @bronze vale (current: #6 - 1528)
i do need help whit WM
What is the problem ?
hehe i have a wm on aws ( i thing) and now i try to set it up
@ember osprey never mind 😄 my mate is calling me in 10 min ;D
Hello all, I'm trying to start Armitage on an attackbox (following https://tryhackme.com/room/introtoc2). When trying to initialize metasploit in run into an error :
ubuntu@ip-10-10-64-96:~$ msfdb --use-defaults init
Running the 'init' command for the database:
Creating database at /home/ubuntu/.msf4/db
Creating db socket file at /tmp
Starting database at /home/ubuntu/.msf4/db...waiting for server to start.... stopped waiting
pg_ctl: could not start server
Examine the log output.
failed
Creating database users
/opt/metasploit-framework/embedded/lib/ruby/gems/3.2.0/gems/pg-1.5.9/lib/pg/connection.rb:709:in `async_connect_or_reset': FATAL: password authentication failed for user "msf" (PG::ConnectionBad)
FATAL: password authentication failed for user "msf"
from /opt/metasploit-framework/embedded/lib/ruby/gems/3.2.0/gems/pg-1.5.9/lib/pg/connection.rb:844:in `connect_to_hosts'
from /opt/metasploit-framework/embedded/lib/ruby/gems/3.2.0/gems/pg-1.5.9/lib/pg/connection.rb:772:in `new'
from /opt/metasploit-framework/embedded/lib/ruby/gems/3.2.0/gems/pg-1.5.9/lib/pg.rb:63:in `connect'
from /opt/metasploit-framework/embedded/framework/lib/msfdb_helpers/pg_ctl.rb:159:in `create_db_users'
from /opt/metasploit-framework/embedded/framework/lib/msfdb_helpers/pg_ctl.rb:37:in `init'
from msfdb:201:in `init_db'
from msfdb:943:in `invoke_command'
from msfdb:1072:in `<main>'
ubuntu@ip-10-10-64-96:~$
The postgresql service is started
thanks for the help
You don't need to do that on AttackBox , db is already initialized there 🙂
thanks for the answer, then the room is misleading since it reads :
Note: In case you're using the AttackBox, you may skip to the Preparing our Environment section.
Skipping to the next section, but seems that the armitage server still doesn't start :/ :
root@ip-10-10-157-231:/opt/armitage/release/unix# ./teamserver 10.10.157.231 P@ssw0rd123
[*] Generating X509 certificate and keystore (for SSL)
[*] Starting RPC daemon
[*] MSGRPC starting on 127.0.0.1:55554 (NO SSL):Msg...
[*] MSGRPC backgrounding at 2025-03-12 11:06:24 +0000...
[*] MSGRPC background PID 5583
[*] sleeping for 20s (to let msfrpcd initialize)
[*] Starting Armitage team server
[*] Warning: checkError(): java.lang.RuntimeException: java.net.ConnectException: Connection refused (Connection refused) at server.sl:450
...
[*] Warning: checkError(): java.lang.RuntimeException: java.net.ConnectException: Connection refused (Connection refused) at server.sl:453
[*] Warning: Uncaught exception: java.lang.RuntimeException: I can not find a database.yml file. I *really* need it.
Here's how to fix this:
1. Try setting MSF_DATABASE_CONFIG to a file that exists.
2. Did you use sudo to start this program? Try sudo -E
3. Kali Linux 1.x users, try this:
service metasploit start
service metasploit stop
Kali Linux 2.x users, try this:
msfdb init at preferences.sl:184
Gave +1 Rep to @ember osprey (current: #1 - 3885)
I am unable to upgrade my subscription from monthly to yearly .. i tried 3 different cards and no one is working for this .. and no one is replying in ticket i created
When did you E-mail?
10th of march
Ah, yeah, response days are slightly delayed I think, and it's between 3-5.
1 response came instantly saying try again .. but i tried more than 20 times in past 2 days with different accounts.. i even messaged them back but no reply is coming now..
i think after the sale ends then reply might come🥲
i created a ticket last time from thm chat , can you give me the email so i can try again mailing them
Emailing them again will push your request down the queue
then what should i do
Patiently wait.
I don't know what support will do.
i won't be able to get sale discount later right
I don't know.
If my Connection keeps breaking to the target then what can I do ?
What does the output of your VPN looklike?
Im on windows doing the shellcode room and it just keeps popping up "VPN connected" and my RDP gets disconnected
Then I cant connect for some time after that happens
Maybe its my VPN region ? cause didnt happen befor etoday
Been doing the room and the target for past 2-3 days
WAIT A SECOND. Could it be due to my failed payloads ?
Hi, Can someone give me the link to the page where I can find rooms where i can find boxes I can try to hack to get badges/ points? I cant seem to find it
like a capture the flag vibes
not a "lesson"
Everything is a capture the flag vibes u dont read the instructions
i'm not get the meterpreter i'm all method use but there is some problam what can i do
Hi, can someone help me on how to connect thm rooms with my virtual machine . whenever I am trying to connect on any try hack me room on my Firefox is showing we're having trouble finding that site . I had tried many troubleshooting methods suggest by try hack me and I had also use the trouble shooting script of try hack me still I am unable to connect to it.
do u have add block ??
Check out this article 🙂
https://tryhackme.com/room/openvpn
I had tried this still unable to connect with the room
I am connected on vpn
Can you please verify and provide a screenshot 🙂 ?
https://help.tryhackme.com/en/articles/6495858-discord-how-do-i-verify-my-tryhackme-account
All about TryHackMe Discord Server.
Have you added that domain to /etc/hosts ?
No
You have to add it
So I have to type on Firefox :- ip/etc/host??
No nano /etc/hosts
and add target ip along with lookup.thm domain there
Thanks @ember osprey
Gave +1 Rep to @ember osprey (current: #1 - 3898)
Why haven't they refunded my money yet? I've been waiting for a refund for about a week.
Only support can help you with payment related issues , you can contact them on the email below
Already
But they answered so well. They didn't answer at all.
They will as soon as they can probably , only they can help you with payment related issues
It's cool to charge for a monthly subscription, and now not get a refund.
You will once they respond, be patient please , queue is long
Monthly Membership Subscriptions: Monthly subscriptions to TryHackMe are billed in advance and are non-refundable for the subscription period they are purchased for. The subscription renews automatically at the end of the term if not cancelled before the renewal. When you purchase a subscription, you agree to a renewal charge for the service, whether it is monthly or annually. This is explained on the Why Subscribe page where you select your plan. If you choose to cancel your subscription, you will still have access to the service for the remainder of your billing cycle, but you will not receive a refund.
That is, I wasted my time and money. What did I pay for? For air. I waited for an answer and a refund, so that if anything, I wouldn't waste my time and get a refund, but no.
Well , everything is stated clear here I don't know what's your point , I gave you the support email for any further questions reach out there
They made me wait and waste my time and money. I didn't even use anything on the site from paid and free services to get a refund. Ok, no worries.
The support here is amazing, I have nothing bad to say about you. If the purchase was in the first 2 weeks, which I was happy about, oh I'll cancel it now, I forgot to turn it off, and I don't use the site. And now this is the reason from the site.
Hello, I have been unable to open up target IPs for any of the rooms that I have been on today. I have a premium subscription. I also downloaded the YAML file to get hooked up to the VPN, but I haven't been able to use SSH from my windows machine to access any of the boxes as well. Just a little stuck and looking for some help. Thank you in advance
https://help.tryhackme.com/en/articles/8282427-refund-policy
@abstract pulsar Here is THM's refund policy.
Everything you need to know about our refund policy.
Is there any way to gain access to workspace with a SSO account?
Question: there are about 930 rooms currently available on the platform. Yet I see players in the Top 50 of hte leaderboard that are in over a 1.000 rooms. How is this possible ?
As I understand it, there are rooms that were retired, rooms available only for business users and those marked as private (accessible only to select users).
What room are you working on exactly? How are you connected to THM OpenVPN and OS you are using?
Does anyone know what the size requirements for the team avatar icon is? I keep getting a generic upload failure even after sizing down to 76x99px
Phone only I tried fake bank hack what’s next?
Many old rooms have been put to private/deleted in the mean time . I know at least about 10-20 which aren't available to other users anymore 🙂
Absolutely - yes 🙂
I think that max is around 2mb . Try to use .jpg or .png format . Refresh the page or restart the browser if the problem persists 🙂
Check out new room about new Tomcat CVE #1349049909847785614 🙂
Thanks
Gave +1 Rep to @weary spindle (current: #2 - 3511)
@robust hemlock got perma muted cuz he posted a gif that had a naughty word in the link. he is requesting to be unmuted lol
idk if any admin is on
Please don't multi post in channels, if you feel it's a bug, then report it.
Oh, sorry. How do i report ?
Follow the template in #1333993673381253162
And post in there.
hi i got a bug i cant resume my subscription or even pay for a new one i get this error " User is missing subscription details"
Try to reach out to support on the email below 🙂
aright
Hi. Is anyone experience instance drop on machines or connection error when starting the machine atm?
Works ok for me
guys i can't connect to the wreath network. can someone please help!
Try to leave the room and re-join
hey @ember osprey how is it going to day
same thing
who can I reach out to for this?
What happens , provide some shots
Thanks for asking , good , how about you 🙂 ?
Gave +1 Rep to @agile vault (current: #934 - 5)
I see this which could be relevant:
⏎[Mar 12, 2025, 14:35:08] Connected via utun4
⏎[Mar 12, 2025, 14:35:08] Per-Key Data Limit: 48000000/48000000
⏎[Mar 12, 2025, 14:35:08] Client exception in transport_recv: crypto_alg: BF-CBC: bad cipher for data channel use
⏎[Mar 12, 2025, 14:35:08] Client terminated, restarting in 2000 ms...
⏎[Mar 12, 2025, 14:35:08] SetupClient: transmitting tun destroy request to /var/run/agent_ovpnconnect.sock
well
- i did a error 40 and made a format on my linux driv from my win bc i was trying to do it on my usb drive for my 3d print soo that suxz but my mateis coming to day and fix it then i might get my m5stickc plus2 to day from the post and later i well have a server for vm kali 😄 to use on thm :D'
mac
i always connect to the regular vpn no issues.
alright i figured it out. because apparently this room uses an outdated crypto algorithm.
This error message is from OpenVPN, and it indicates a problem with the encryption cipher configuration.
Key Issues:
crypto_alg: BF-CBC: bad cipher for data channel use
BF-CBC (Blowfish-CBC) is an outdated and insecure cipher that newer OpenVPN versions no longer support by default.
If the server is still using BF-CBC, the client fails to establish a secure connection.
Client terminated, restarting in 2000 ms...
The client is trying to reconnect but fails due to the bad cipher configuration.
Fix:
Check the OpenVPN server config (server.conf) and update the cipher:
can you guys update the cipher, i had to change my client settings to allow insecure ciphers. so it works for now
Try to report it in #1333993673381253162
Is this from ChatGPT?
yes
but it is correct. changing openvpn settings to allow insecure connections let me connect to the vpn network.
Please state something is from AI if you intend to use it.