#site-support
1 messages Β· Page 242 of 1
Oh this is the crt place ask it
Does the site support the passera card?
Try it out ?
I dont know why but gobuster and dirbuster just decided to not work for me i need some help
I can not pay with paysera card
Try using paypal
Tryhackme
Don't support paysera
How about using paypal???
There is an option to use PayPal
I don't have PayPal
So it takes a lot of time
maybe? dunno i don't have a paypal account
15-20 mins, I believe (my case).
hii i completed my payment using paypal. but i cant access to premium services. help me
please help me
Please contact your bank or PayPal @dark widget We can't do anything as it's usually settings on your account π
!help
@stray cove
-warn 760470576816062474 Linking to CSGo hack tools
β Warned souvik#2786
Congrats on 1st modding π
Gave +1 Rep to @glossy sedge
:)
Is there anyone here from tech support?
I dunno, be patient, please
at least describe the problem so people can see it without asking XD
Look above
ah, that's one for support@tryhackme.com I think.
I just sent them an email three hours ago
in that case it's a waiting game
@naive dust Does the room loading just spin? What do you see happen when you load a room?
Can you open up your development console?
F12 -> Console
u have there inspect element , and u have another tab with Console
yy
that is console
Same for me
same for me
Its not - I've identified the problem and am working to fix it now.
I use it, but on tryhackme i disabled it
I use a Chrome with anythings
the problems is because of Request URL: https://tryhackme.com/api/running-instances
Gave +1 Rep to @deep trellis
It should be fixed - it was impacting 120 of you. Thanks for reporting.
thank you @deep trellis it is ok now
Gave +1 Rep to @deep trellis
Hey
Is there anyone here from tech support?
I want to subscribe to the tryhackme platform
I have a card paysera Visa
When I put my information, it appears that my card is not accepted. Can you clarify,
Tbh that has nothing to do with tryhackme. Either create an paypal account or contact ur bank operator and ask why international payments aren't done.
(Telling from my experiences. I asked my father and brought an cc to use for international payments)
but if it's not supported then it's not supported AFAIK
π₯Ίπ₯Ίπ₯Ίπ₯Ίπ₯Ίπππππ
Where do u live ? Ask any of ur friends maybe how has international payment enabled?
I'm form Algeria
I want play holo live
Ohho sorry can't help 
Where are form
India
Man I didn't know there is a complete room for OPENVPN
Ooooh man. I apparently have installed Nessus Essentials a loooong time ago and have forgotten my credentials. However, I don't see a way to do a password reset. Does anyone know of a way to do this?
Nevermind!
Hey guys, do you have any idea why in every room with WordPress doesnt work their login page properly for me? I am sure i have right credentials see_no_evil
I'm sure that might have been asked before, but I just finished a learning path and trying to get my certificate. I would like to use this on LinkedIn, but it shows my username, not my name (doesn't have that professional feel to it). Any way to change this?
hi my code in python room is not working , and i think my code is correct
investment_in_bitcoin = 1.2
bitcoin_to_usd = 40000
1) write a function to calculate bitcoin to usd
def bitcoinToUSD(investment_in_bitcoin,bitcoin_to_usd):
usd_value = investment_in_bitcoin * bitcoin_to_usd
return usd_value
investment_in_usd = bitcoinToUSD(investment_in_bitcoin,bitcoin_to_usd)
if investment_in_usd <= 30000:
print("Investment below $35,000! SELL!")
else:
print("Investment above $35,000")
the room dont give me the flag
this should be in #872475755362279455
but you have to output the actual value somewhere
how ???
with a print?
print (value)
specs are vague
the numerical value as well
Yeah you're saying anything equal or below 30000
How can I downgrade my Metasploit version to v5.0.101-dev? My current version is 6.0.56-dev-. I am facing a lot of issues with this version.
If you're on Kali Linux, user Dewalt has a script he put together called "pimpmykali". (Search github for "dewalt pimpmykali" or google should find it). One of the many functions it has available is downgrading metasploit-framework from 6-point-whatever to 5.0.101.
If you don't want to go that route you can apt remove it and reinstall it at version 5.0.101 which is what pmk does behind the scenes.
I jut did it about an hour ago to see if it fixes a problem I'm having with one of the rooms but haven't fired it up yet.
anyone know how to make windows respond to icmp pings or nmap pings?
ive tried disabling firewall
doesnt work
if anyone knows how please ping me
but windows just blocks it
U mean namp with -Pn flag right?
hey crazy π
Pings get blocked at the target's firewall. There's no way afaik to skirt that from the outside, but there may be other ways to get simiar information. For intance there's a utility that can essentially do a ping using TCP but aimed at a port. I'll have to go look up the name.
Is that regarding any room in thm or in general
general
hmm?
whats wrong with the command
or is the server broken
I had an issue like that where I had to set the timeout to something super long since it took a while to connect to the remote machine. There should be a flag to set the timeout
Someone help me
This happens all the time when I login
Auto redirect
Then I need to manually go to /dashboard for the content
Clear cache?
I have a new THM account that I would like to link with Discord, but it says I already have a token registered with the bot. What should I do?
You should ask a mod (not ping them) to kindly unlink your old account token and then you can re-verify yourself with bot again. (:
i'm having problems with the linux fundamentals pt1 machine
when i connect to 10.10.10.10 i successfully confirm that i'm connected properly with openvpn
but when i try to connect with the linux deployed machine i get err connection refused
send screenshot
no, a screenshot
you can't open it in your windows browser
even in the kali VM it doesn't work
i'm connected to my vpn
which task?
yeah, you gotta do that in the attack box
use this
before doing that, please deploy the machine
What is the username of who you're logged in as on your deployed Linux machine?
i tought that was the username of the deployed machine
not the attackbox
that doesn't make sense
alright, we gotta move this conco to #room-help
we are not going to do this in tech support
guys my kali has a problem with metasploit
whenever i try to run any exploit
it just doesnt work
but it works perfectly in attackbox
with the same commands
maybe u havent set the lhost properly
please use #room-help, thank you
its a technical issue
because the commands i use work in the attack box
but they dont in kali
do you have nothing better to do?
Hello tech people,
I was doing a room in tryhackme about an NFS server, I made a directory in my local machine where I mounted some files from that server.
After I finished, I stopped the machine, and now the directory I used is broken, I can't delete it, i cant access it, I can't even write its name in the terminal.

Did you reboot your machine and check it is still there?
When I rebooted it was removed, because it was in the /tmp folder
but I just wanted to know why
why It broke like this
@glossy sedge you were right man ily
Hehe. That was the most mistake done. ||Me also, never be shame we always learn||
thanks man
Gave +1 Rep to @glossy sedge
it says its connected to the ovpn
but i cant establish the connection with my kali linux
ive tried restartin many times
but it still doesnt work
For anyone facing connection issues like web pages not loading and other stuff not working even after you have verified that you are connected properly (with https://github.com/tryhackme/openvpn-troubleshooting) and/or you can load the http://10.10.10.10 page but see no IP there, follow this potential fix
With ip : sudo ip link set dev tun0 mtu 1200
With ifconfig : sudo ifconfig tun0 mtu 1200
Try this
Sudo ip link set dev tun0 mtu1200
Iirc ipconfig isn't recommend any more
Wat 
404
Redownload your openvpn file
let me try
Ok ππ
still not working
mmmmmmmmmmm
i've restarted my pc but it's not working
idk why
so i'll play a ctf
aahhaha
U mean this page right
@naive dust have fun π and can u confirm this is the page ur trying to visit
nonono
that page it's working
the problem is when you go to join a public game
the blue button
"join a public game"
oh now it's working
wtf ahhahah
yay
maybe an update
Haha π have fun
Close connection and then try again
First i have Eu regular after it stopped working i download in regular
How
By pressing ctrl+c
Yup
Alright! So here are the things you can try:
- Delete current ovpn pack.
- Download the pack file again and try it out.
- If it doesn't work then again, delete the pack file, regenerate (wait for few seconds) it and then try again.
- If also this doesn't work, try changing server and download pack file and try again.
All you said . Itried them all
@wide oasis when you said deleteing them you mean deleteing them in the current directry
Delete the pack file where they are situated.
I already done it
Do one thing, try to run this with sudo
Can you give me the command
Just add sudo to the whole command
It can be possible that you're running multiple vpn instances. Try to issue sudo killall openvpn command and then try again.
According to the error tunsetiff not permitted from stack overflow they advised to use sudo and it solved
"Exiting due to fatal error " means user has downloaded the file which may be corrupt?
So can you give me a advice to reslove this
Did this work?
And which vpn server you're using? I am using EU-Regular-2 and it works all fine for me, I never had complaint about it.
It work fine fine to me a hour ago but suddenly this happens
So is it working now?
No
Reboot your vm
Hello, i have some queries regarding room creation process? is this the right channel and if so can I talk to someone who can give me solutions?. Thank you.
Hey, so when a task gives the answer in a popup, it doesn't pop up even though I turned off all restrictions. Its happened multiple times, the latest being the HTML Injection task in the HTML in Detail room. I get to the page that says THM Static Labs but that's not the accepted answer
you can ask a mod to give you the creators-lounge role and ask there, there are also guides if you add the developer role to your THM profile
Hello I've completed a learning path and while getting certificate I am only provided the username in the name section, can I change it ? It would be a great help
Thank you @trim moat
Gave +1 Rep to @trim moat
I'm not sure if this the place to ask such a question, but could anyone think of a reason as to why my debit card would not allow a purchase of a subscription to TryHackMe?
Not all card can do international transaction. Either ask your bank about how you can do international transaction or use paypal
Alright thanks
I'm connecting to the THM network with openvpn, and it's incredibly slow to use hydra to try to crack SSH.
I'd like to keep using the VPN so that I can continue to use and develop my own environment (save files and tools and notes), but is using the browser-based VM faster?
very slow hydra over vpn
sheesh... a try every two seconds? Cmon.
Where do you live?
central US, and I'm connected to US West VPN
I'm spinning up a THM attackbox now to see if it runs faster..
attackbox gets 64 tries/min, so it's a bit better
maybe I should just increase the number of threads?
Eh, I just kept it at '-t 4', since that's what's recommended.
Maybe I'm just being impatient
Okay, so I was being a bit impatient, but the VPN and the THM were going a bit slow also. Looking online, I saw that others who've done this particular room were getting 150-200 tries/min, and it took them several minutes.
hi guys I am doing the OWSP Juice shot room and in the task 7.. when I catch the logout request it says if-none-match instead of True-Client-IP.. do you know why is that? thanks for the help π
btw the interception is ON on burpsite when I logout of the page
This channel is for site issues and vpn connection. You can ask such questions in #room-help or #room-hints (:
No, hydra don't depend on vpn connection. So you are good to go. But if you face any other issues, then that can be the case, unless you specify.
(Error NT_STATUS_IO_TIMEOUT)
facing issue on Kenobi lab
Yes
connection problems can be fixed here
Okay ,let me check
Hi, anyone know why I have this wall of text under my nmap results?
Yes. It says why just above the wall of text
hi everyone, I can't download openvpn config file (404). Is this some fancy riddle or this file is just missing? π
Try to regenerate it and wait about 1 - 2 mins
Maybe if you now would change back to eu 2 and regenerate it might be working. But if eu 1 already works for you then it's fine π
Only one machine is on. However, I get the error that you cannot open more than 2 machines. What should I do?
guys
burp suite wont work if i give intruder rocktyou.txt as payload
it doesnt let me start it
the button to start just doesnt do anything
tried it without a list with random payload
it works
but i cant get rockyou.txt to work
You may not have enough ram allocated to your VM. I had this a few weeks ago
@naive dust
8gb minimum
i mean 4gbs allocated
Took me a day or two to read burpsuite specifications to figure it out
Up it to 8gb and it should work, 16gb preferable
well its says burp isnt good for that in thier website anyways
they say its better to use hydra
OK. But your issue is not enough RAM
@cloud dirge Can anyone help me... I cannot download VPN file from THM all the time it shows 404 lost in the matrix error while trying to download VPN from THM (EU-Regular2)
Try to reselect the server you want, regenerate the file and wait 2 mins.
2021-08-06 16:40:53 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-08-06 16:40:53 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-08-06 16:40:53 library versions: OpenSSL 1.1.1g 21 Apr 2020, LZO 2.10
2021-08-06 16:40:53 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-08-06 16:40:53 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-08-06 16:40:53 Cannot load inline certificate file
2021-08-06 16:40:53 Exiting due to fatal error
How do I fix this? When connecting with kali linux i get this error.
Did you use Sudo ?
yes(couldnt attach the screenshot)
@crystal marlin ok
Verify yourselves by dming the bot
Then, you can post ss
Have you maybe switched VPN Server or regenerated your config file? If not, maybe try to do that and use the new VPN config file.
Are you on a tablet or something like that? For me the dropdown menu just works fine.
I am on mobile
I actually switched servers and it worked perfectlyπ thnx guys
Mh, maybe try to clear cache and reload the page.
Sure. Thanks
Gave +1 Rep to @crystal marlin
Hey, I'm having issue on the HTTP in Detail as the virtual site seems unresponsive. I'm prompted to find the key but as I click the lock (HTTP vs HTTPS) it doesn't give me the key
I've got a friend who's unable to download the openVPN file, it just sends them to a 404 page.
Any ideas how I can fix it?
Reload the page OR logout and then login again OR clear browser cache and then try again.
We found a solution, thank you though π
Gave +1 Rep to @wide oasis
Try to open it in a new tab with this link if you are on chrome, that should solve the issue. https://static-labs.tryhackme.cloud/sites/websitecheck/
Try a different browser, chrome isn't working for me too, I'm using opera for tryhackme
try enabling desktop site option
Yeah my main browser is Brave and itβs been working fine but all of a sudden it didnβt today.
Seemed to just be that module.
Yea that's the same thing happened to me with chrome, I tried everything but it didn't work again, so I switched browsers
If it was a problem with only 1 module, then no problem, but if it happens again, I recommend using different browser for tryhackme
Hmm interesting, itβs working for me now. I had to refer to the video to obtain the flag to answer the question.
When I had problem with chrome I did everything same as walkthrough video but it didn't work
It's because of a recent chrome update. It's also just buggy in splitscreen, if you open these simulation sites in a new tab without the splitscreen it's working just fine in chrome too
Well, that's interesting π
but I still don't recommend chrome it is literally eating your ram D:
Hi i'm currently in the Network service room/ Task 4 Exploiting SMB. One of the questions is asking me if I can get anonymous access. My command is "smbclient //10.10.155.164/profiles -U Anonymous" but I get the error NT_STATUS_HOST_UNREACHABLE. does anyone know what i'm missing here
You should ask such question in #room-help or #room-hints as this channel is for vpn and site issuesπ
ahh ok thanks sorry my bad
check if your vpn connection is working, and check if target machine has been terminated
ummm is there any suport ?
i reported that my username is weird and i can't verify my discord token till now and no one responded till now
.
Would it be better to email support regarding subscriber access not being granted or can that be handled here in discord as well?
I thought I wouldn't email for such small issue so I pinged here on Discord π
Thank you for your advice
I appreciate that
lol, I was asking on my own issue
No worries. Nah I re-read it and I can see how it comes off that way
After starting upload vulns machine, I try to open the http://jewel.uploadvulns.thm but im redirected to the Overpass room site
at least thats what ive gathered im being redirected too
any ideas?
Never happened to me before and ive tried restarting my ovpn, the room machine even my kali virtual box
nothing works
Keep such question in #room-help or #room-hints channels as this channel is for site and vpn issues. (:
Oh thank you so much. I really appreciate that.
I also stumbled upon a forum regarding that information but somebody on there had mentioned to contact to discord and there's a guy who fixed it so I was just trying my luck, Thank you again ))
Gave +1 Rep to @wide oasis
Thank you )
And you have to have patience, if anyone has done that room, they will help you. (:
.
emailing support would be able to look at that
Drop me an email, I'm answering them now so you should receive a response within the next 20-30 minutes
Thank you
Gave +1 Rep to @trim moat
Okay will do. Thank you
Any more information in relation to the slow network speeds for myself?
Did you try the IN VPN?
We spoke a few days about I was getting 270ms when pinging machines
I get consistently slow speeds on all THM machines. You said you were going to speak to some behind the scenes guys and never heard back further
Yup, I pinged you here: #site-support message
OK thank you for that. I'll try that shortly and let you know the results
i guess u have downloaded the wrong one
which one did u downloaded ?
https://github.com/ropnop/kerbrute/releases/download/v1.0.3/kerbrute_darwin_amd64
this one right?
yes
Hey the blaster room doesn't spawn π
It's not pinging
I wait 5 min and more but still the room not pinging
It is a windows box, so it will not get pinged
So...
no ping
But you have deployed the instance, right?
just run scan
π
Have fun
all the best
ππ»π
Can't download the India vpn it's says an error
Thanks, seems like the target machine terminated! Thanks again
Gave +1 Rep to @bright blade
(β Ν‘Β° ΝΚ Ν‘Β°)β
if I got the virtual box and ubuntu, what else do I need for the virtual machine?
What do you mean by ubuntu and vbox? Are you trying to use ubuntu as virtual machine in vbox?
just trying to set up a virtual machine
yeah
Yes you can! But if you are looking for a distro which has pre-installed hacking tools, then look for kali linux (or parrot os) because it is generally used.
so what should I delete?
for the kali linux I need the unbuntu but I dont need the vbox right?
What is your host OS? Well, you need virtual box and kali linux image which can be downloaded from offensive security downloads page. And you only need to install it. Ubuntu don't have hacking tools installed.
Hi ! Need help with my payment. Today a pay for my premium acc, but stiil have free ((
Can u please be more verbose , I don't understand what ur talking
ok! today i pay for premium access to thm, but i have't. when I enter to page, my status stiil FREE
So you need to drop a mail at support@tryhackme.com regarding this and they will help you. You should mention all details. (:
I understood))) today saturday ! Thank you very much
Gave +1 Rep to @glossy sedge
Oh yeah Saturday maybe the support staff may have an off
yea they don't work saturday and sunday I think
cuz I had a problem too and I had to wait till monday for them to answer
Hello guy i have a radical change of my keyboard when i use the attack Box
Now when i type : i got / for example i try to fix that but nothing working
@glossy sedge hi
Want are u trying to fix?
I tried to change the keyboard language but still doing same thing
Hello,
I'm doing the metasploit room, I'm in the last task, I can't run the "run autoroute -h" command
is there a reason

Are u running msf6
Iirc someone talking there is problem with autoroute in msf6 ,not sure tho but yea
As said in the error, you can background the current meterpreter shell with CTRL + Z and then use autoroute module with following command - use post/multi/manage/autoroute
it did not work as the task intended
so i couldnt answer the question
thank you anyways :3
What?
The task required a specific command which i couldnt figure out
because im using a different msf version
so i just looked the answer online

Well the command which was provided in task would work as same as the command which I typed. Not a bit difference there.
I'm confused, do you have like 10 minutes to explain this to me in private?
Okay..
Thank you
if you mention him, when saying thanks, that will be ever better
Gave +1 Rep to @hasty dew
just like this, Thanks
Thank you
bruh, Robocop
Recently i bought USB wifi adapter for my linux virtual machine but it doesn't show wifi connection
This channel is for VPN and other technical questions related to TryHackMe.
def useListener():
try:
Listener = input(Style.BRIGHT + Fore.YELLOW + "\033[4mK1B0R(\033[0m" + Style.BRIGHT + Fore.RED + "Listener" + Style.BRIGHT + Fore.YELLOW + ")" + Style.BRIGHT + Fore.RED + ":> ")
return useListener()
except:
'null'
framework = input(Style.BRIGHT + Fore.YELLOW + "\033[4mK1B0R\033[0m" + Style.BRIGHT + Fore.RED + ":> ")
if framework == 'use listener':
listen = useListener()
if listen == 'set LHOST':
HOST = input(Style.BRIGHT + Fore.YELLOW + '\033[4mLHOST\033[0m' + Style.BRIGHT + Fore.RED + ':> ')
elif listen == 'set LPORT':
PORT = input(Style.BRIGHT + Fore.YELLOW + '\033[4mLPORT\033[0m' + Style.BRIGHT + Fore.RED + ':> ')
so im making an advanced reverse shell and listener for CTF's this is just a snippet of the code but what it is supposed to do is when you type "use listener" it puts you in the listener section where you can set your LHOST and LPORT. i want to make it where when you do "set LHOST <IP>" it sets IP variable as the LHOST and it calls back to the function "uselistener" and puts you back where you can input another option in the "listener" input so you acn for example do "set LPORT <LPORT>" but when i try to use any of the options like "set LHOST" it just doesnt work and calls back to the function any advice?
This is a chat for site support^^
Try #programming :)
I can help but not until tomorrow because Iβm very tired.
Iβd probably just use a while loop and a bunch of if statement that call functions
while True:
if input == βuse listenerβ
useListener()
def useListener():
global LHOST
set = list(input())
if set[1] == βLHOSTβ:
LHOST = set[2]
return
(This doesnβt work but post in programming and you should get a response. If not, Iβll be awake in 5 hours to help)
Hi , i changed my discord account and I would like to link my discord account to my tryhackme account, but since I have already entered my token on my old account, this made it impossible for me
Ask a mod to switch your token to your new account*
@rancid plinth can you give me a screenshot of the openvpn connection?
Hi guys I'm new to thm , I'm doing Linux fundamentals part - 2.
I've connected to openvpn and started machine which shows ip address.
- So task-2 is to connect via ssh by typing
ssh tryhackme@ipbut I'm not able to connect and instead get error. - I've also tried ping 10.10.62.195 which responds well. But no remote connection.
yes
on discord or on the forum ?
On this discord
If they can ping it they're connected to the VPN okay
mind if I ask why you switched discord accounts?
So this is task
just making sure π
they may just need to wait a few more minutes for it to spin up (:
yeah ofc @nimble comet π
just because i'm nitro on this account
That also works
You're pinging your VPN IP address
not the machine that you deploy
10.8.* is on the VPN range
ah, you're trying to connect to yourself...
Nope its machine deployed ip
the deployed machine should be 10.10.*
ohh shoot wright!!
I can promise you that is a VPN ip address (: all deployed/vulnerable machines are 10.10 as Omega helpfully said:D
^^ literallly CMN's job π
The IP address of the vulnerable machines is at the top of the room in a card like the screenshot oyu posted suggested
that's the one (: I can login okay to it
yeh, that one works fine
I'd be doing something wrong.
clear mine π
cleared (:
Okay that sounds like an MTU issue
Lemme find the pin/snuppet to resolve that
With ip : sudo ip link set dev tun0 mtu 1200
With ifconfig : sudo ifconfig tun0 mtu 1200
Ensure you have no other VPN running (I.e. NordVPN running)
Run ps aux | grep vpn to check
Its done!! Thanks π o7
Gave +1 Rep to @zealous yoke
π₯³
anyone having issues with the EU-Regular VPN configs?
I get a 404 error if i try and download EU-Regular-2 and a the below when using the EU-Regular-1 configs.
021-08-08 07:50:15 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-08-08 07:50:15 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-08-08 07:50:15 Cannot load inline certificate file
2021-08-08 07:50:15 Exiting due to fatal error
CMN best boi confirmed again..
Team work Omega π
We know of issues with EU-Regular-2 atm, that issue you see with Regular-1 is the same you'd get with any other VPN server if you don't wait enough time between regenerating your vpn file before downloading it
#site-support message try this
The time is usually around 60 seconds, but tbh, I recommend waiting 3+ minutes after pressing "Regenerate" before downloading (: that should work okay
that's it omega π ty ^
anywhere else that is not EU-Regular-2 or the vpn server that you're haivng issues with that is
Thanks, ill regen and wait longer π
Gave +1 Rep to @zealous yoke
after you regenerate it elsewhere you can switch over okay (: but the first step is usually just waiting a little longer
it's not instant because new ceritifacates & encryption keys have to be generated on the vpn server
@nimble comet You might want to remove the duplicate pin ;)
just sign them as "someCMN, SomeCity, SomeCountry" π jk
done, just keeping it on top
fairly common issue
I am trying to cancel my subscription but it's not working
What does it do when you try to cancel it?
Have you tried CTRL+F5 and then try to cancel again? Or tried a different browser?
Let me try
yea if the above options don't work, I would email support@tryhackme.com
Yeah, not working
But I sent them an email don't worry
Hi all, I having an issue with AttackBox, not return anything when I performance a nmap scan with -p-
Anything to workaround solution here ?
I waited like 20 - 30 min
hello
Thank you, It start to show the results now, but quick question, how often does it take to scan all the port on the AttackBox?
Gave +1 Rep to @viscid frost
its 15+ min and counting
Add -T4 to you command, that will speed up things usually. And ye, if you are scanning all ports, it could take a while.
what in gods name are you scanning for?
Im just using the Attackbox doing a question in a room
nmap -A -p- -vv $ip
nothing major π¦ or Am I wrong ?
scanning all the ports takes time I guess
ayo how do i disconnect my old tryhackme acc from this discord? i have new one
I think you have to ask a mod
That's pretty normal for nmap. I would strongly suggest a simpler scan to identify the ports then -A with just the open ports
Pretty much that use the bare minimal with all ports
Hello, I'm new. I loving THM too. is it better to use EU VIP or West VIP if I'm in MD? Anyone have the server ips , I could ping easily?
Good day guys, am stucked with a question
I put in the correct answer but yet it says incorrect
How website works
The answer is Front end and yet it says incorrect answers
#room-help is best for this, however, you're close. Front end is the term given for what a client will see. Your browser is considered a client so it is client side (:
Yeah I entered it, but it kept saying wrong answer
Has anyone had an issue with OWASP Zap, where it stops showing you reflected fuzzing request? In fact it doesn't even show the size of the response body now. I've never seen this happen before.
It takes a lot of time, and most of the time you wouldn't need to scan all ports. Just don't use -p and it will do a good job and it will be fast too.
if you just want to see what ports are open without digging in too much, i suggest you use '-sC' tag to use default scripts. -A tag will execute all the scripts that nmap has and it takes a lot of time. If you just want to know which ports are open, simple use 'nmap target_ip'. this will return results within seconds and then if you further exploit an open service, you can always enumerate a specific port. It will be easier this way.
Learn Rustscan. Quickest option
thanks man
Gave +1 Rep to @cloud dirge
--min-rate=2000 ftw 
one of the questions was how many port was opened. But I think as Fontaene suggestion adding a "-T4" flag will do the job
Hello, I needed some help
I tried to buy a voucher today, but, after the transaction, pop up came that the transaction was not completed due to some error. But the money was debited from my bank. I contacted the bank but yk, they are asking for sometime. I did send a mail at support@tryhackme.com but I didn't receive any help so....this is my first time buying the voucher. I'm actually new. Is there anyone who can help me with this.
And if it's like, the bank's fault and I'll be getting a refund from the bank or not?
Why this is seen like this
It's not good
the older is good recent doing rooms are appear in the dashboard but now the learning path is showing
im having issues running an attackbox. the certificate's timezone is mismatched I guess cuz of some timezone fuck up. my local system's clock is accurate and configured properly. wat do / how fix?
Is that ok, that there is no 1 room on dashboard, but there is in whole module Complete Beginner?
the dashboard has limited space to display all the rooms
Okay, thanks @trim moat
Gave +1 Rep to @trim moat
Hey there!
There is currently a bug with the TryHackMe cancel subscription button.
Please follow these steps so we can diagnose your issue as quickly as possible:
-
Press "Cancel Subscription" (nothing should happen)
-
Right-Click and press "Inspect"/"Inspect Element" depending on your browser
-
Press the "Console" tab and screenshot everything inside.
-
Send an email to
support@tryhackme.comcontaining this screenshot, along with the subject "Cancel Button Not Working Screenshots"
If your subscription has automatically renewed, please do not worry, email support telling me that your subscription renewed and you did not want it to and I will assist you further.
Thanks and Happy Hacking!
Anyone able to help be debug this error? I'm trying to install empire
Hit:1 http://gb.archive.ubuntu.com/ubuntu hirsute InRelease
Hit:2 http://gb.archive.ubuntu.com/ubuntu hirsute-updates InRelease
Hit:3 http://gb.archive.ubuntu.com/ubuntu hirsute-backports InRelease
Hit:4 http://downloads.metasploit.com/data/releases/metasploit-framework/apt lucid InRelease
Hit:5 http://security.ubuntu.com/ubuntu hirsute-security InRelease
Hit:6 https://packages.microsoft.com/debian/10/prod buster InRelease
Reading package lists... Done
Reading package lists... Done
Building dependency tree... Done
Reading state information... Done
sudo is already the newest version (1.9.5p2-2ubuntu3).
wget is already the newest version (1.21-1ubuntu3).
The following package was automatically installed and is no longer required:
libllvm11:i386
Use 'sudo apt autoremove' to remove it.
0 to upgrade, 0 to newly install, 0 to remove and 2 not to upgrade.
NAME="Ubuntu"
[!] Ubuntu must be 20.04
running Ubuntu 21.04
hi, do the sub cancel itself or do we need to cancel it ourselves ?
have u update and upgrade ur machine ? (sudo apt update && sudo apt upgrade)
Are u using a voucher or ur using ur card to sub
card
Then u need to cancel or it will auto renewal AFAIK
AFAIK ?
As far as I know
oh ok thx
Yea and there is a glitch or bug cancelling the sub read pinned message
This channel is for vpn and site issues. You should ask such questions in #infosec-general (:
ahh okay
I'm unable to change my country so that I can subscribe and pay in my local currency. I used a voucher from the UK, but I need to change to US. There are no options to change the country, even after following the link (in /subscriptions) to change country in my profile.
hey, anyone know what key should i press to complete this command without writing everything ? i tried tab but it didn't work
"Right arrow key". But this channel is for vpn and site issues. (:
ok thx and sry
Gave +1 Rep to @wide oasis
Thank you!!!
Gave +1 Rep to @wide oasis
What is the update schedule for the AttackBox? dirsearch requires python 3.7 now and I've run into a few other incompatibilities lately. Ubuntu 18.04 is oooold. π
cmn handles that currently, better to put it in #room-bugs
Cool. thanks π
What issue are you having?
I have been working on exploit SMB and it keep in connecting and disconnecting, and cant access it from my vmware even with openvpn connected, any one can help please
Are you connected from windows?
Ahh where are you running the vpn on mac or within the VM?
Hello guys, can someone here help my with my problem?
I am using Kali on VM and connecting via OpenVPN. So far i had no problem with it, but now i am in Nmap room and i cannot ssh machine, i am not getting any reposnses with ping aswell. Web shows that i am connected. What should i do?
Why not web version?
I am new and not paying premium so there is only 1hour limit, and i feel like VM is little smoother
does the box actually run SSH or is it supposed to respond to pings?
I don't recall specifically for that room but if other rooms worked OK it might just be working as intended?
May be that's why you can't connect, without premium you have slower connection
first try dropping the vpn connection and re-connecting - the target will still be there, also try vm troubleshooting scrip https://github.com/tryhackme/openvpn-troubleshooting
okay, i just realized i am not supposed to SSH into it, its supposed to work just for scanning, my bad, i am sorry for wasting your time.
It's okay
π glad it's working for you
i had the same issue, i think the room will not allow you to ssh but still can use nmap switches to test the room
i am having an issue with exploit smb, when i try to use the command smbclient//IP/profiles i keep receiving the following message "do_connect: Connection to 10.10.197.111 failed (Error NT_STATUS_IO_TIMEOUT)"
I'm having trouble with the Linux fundamentals 3 course. I'm trynna SSH to the machine from my own linux terminal but after I execute the command nothing happens it simply sits there. I've tried waiting a bit, restarting my openvpn, restarting the machine and nothings working
Nvm itβs decided to let me in when I used verbosity switch
Or not
Idk itβs being weird
Are teams limited to only 4 people or can I increase the number of members?
Edit: yes, teams are limited to 4 members
Hello, I submitted an email to support@tryhackme.com on Friday as well as asked for an update today, but have not received any response. I wasn't able to pay my subscription on time and it was cancelled. I paid a few days later, but services have not been restored. Can someone help?
so if password attacking a wild xmlrpc & rockyou crashes using wpscan is it a utf8 problem? how to fix?
oh withdrawn someone just answered in general
π
Hi there, did you guys made any changes to the website? I canβt find my last room I was working on.
why do my streaks keep resetting, was on yesterday with 6 and today says 0
Normally in the dashboard I can see the last room I was working on but now I canβt
if i open attackbox for like 10 minutes then terminate it i cant re open it for another day and i get the notification that i can only use it 1 hour per day
Hey non subscribers only have 1 hr access to attacker box a day and only for 1 instance
ohhhh ok i didnt know abt the 1 instance part
Anyone having issues on US-East_Reg or West-VIP ? I'm having issues on both, coming and going, so it's probably my end, but I wanted to verify
should I be at all concerned that it seems apt is using http instead of https for packages?
Everything seems normal here
probably a stupid question but apt is still secure despite this no?
yeah, I just don't use it, use own VM
nothing to worry about . http is still secure.
Iβm looking for an entry IT job folks. I have CompTIA Network+, A+ and Security+ is in view. I need to get hands on experience and I would not mind the pay for now. I just need a job to help build the experience and take care of my family. I live in Washington DC. I would appreciate if anyone can help or recommend me. Thank u in anticipation. Felix
Hi felix, this channel is for site and vpn issues. If you wanna know about jobs or related to that then you should probably ask your question in #cyber-and-careers . (:
This thing is driving me crazy, the static badge of my tryhackmeprofile doesn t show the image but downloads it π
But here in discord it shows
There should be a "Regenerate Badge Image" button, click on that and check again
Is it some amazon aws content type problem?
The link always downloads the image instead of showing it π¦
Maybe it s a problem of mine idk
I did regenerate my badge right now after you stated your problem and works perfectly fine. At first, it was showing my starting point level but after clicking regenerate button, it regenerate the badge.
Hey guys! So I'll soon be joining college in a couple months. I was wondering how I can transfer my present account data to the .edu email to get the student discount. And how would I be going about transferring it back to the main account once I pass out?
will I get the discount simply by updating the email associated with my profile?
The link redirects you to the image or downloads the image in your pc?
Link redirect me to same page "my profile" and when I checked that, it got corrected.
Ok thanks
Gave +1 Rep to @wide oasis
guys is tryhackme updated or something the rooms that i was solving were replaced by already solved ones ??
Click on the room, press options in the top right -> Leave Room, rejoin it.
oops sorry it worked π
What does one do for this
Hello everyone. I would like to start my Linux Fundamentals course but I have a problem with wirtual machine. I am not subscribe and I use Brave browser. Someone can help me with this ?
My virtual machine has problem with connection all the time.
I am currently working on OWASP Juice Shop, Task 4. For Question 1, after I set the payload and start the attack, I let it run for awhile. After about an hour I get a notification that the machine expired. But, I have a premium account and the timer still shows an hour left. This has happened on 3 separate occasions. This seems like a technical issue, but if not, what am I missing?
working https[://]tryhackme.com/room/blue and when I try to upgrade my shell I get the following.. Any thoughts? Framework: 6.0.53-dev
Console : 6.0.53-dev
disCROD eh
no
delete this please
I can't connect to the India openvpn server. It was working fine today but suddenly stopped working. I checked the openvpn file and it was missing the certificate and the key. Here is the small snippet of the ovpn file I have copied and pasted:
-----END CERTIFICATE-----
</ca>
<cert>
</cert>
<key>
</key>
<tls-auth>
#
# 2048 bit OpenVPN static key
#
-----BEGIN OpenVPN Static key V1-----
I tried regenerating the config file and it was still the same. I can connect to the wreath and holo networks but not the normal one. I changed the region to EU and its working now. Thats a workaround. Anyone else facing the same issue?
Same issue here. Unable to connect to India VPN Server.
βββ(kaliγΏkali)-[~]
ββ$ sudo openvpn ~/Documents/vpn_files/thm_kkaosninja.ovpn
2021-08-10 17:54:50 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-08-10 17:54:50 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-08-10 17:54:50 library versions: OpenSSL 1.1.1k 25 Mar 2021, LZO 2.10
2021-08-10 17:54:50 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2021-08-10 17:54:50 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2021-08-10 17:54:50 TCP/UDP: Preserving recently used remote address: [AF_INET]3.7.33.194:1194
2021-08-10 17:54:50 Socket Buffers: R=[212992->212992] S=[212992->212992]
2021-08-10 17:54:50 UDP link local: (not bound)
2021-08-10 17:54:50 UDP link remote: [AF_INET]3.7.33.194:1194
2021-08-10 17:54:50 TLS: Initial packet from [AF_INET]3.7.33.194:1194, sid=24c1cada 72839a16
2021-08-10 17:54:50 VERIFY OK: depth=1, CN=ChangeMe
2021-08-10 17:54:50 VERIFY KU OK
2021-08-10 17:54:50 Validating certificate extended key usage
2021-08-10 17:54:50 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2021-08-10 17:54:50 VERIFY EKU OK
2021-08-10 17:54:50 VERIFY OK: depth=0, CN=server
2021-08-10 17:55:50 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2021-08-10 17:55:50 TLS Error: TLS handshake failed
2021-08-10 17:55:50 SIGUSR1[soft,tls-error] received, process restarting
2021-08-10 17:55:50 Restart pause, 5 second(s)
Are you trying to connect to vpn using graphical openvpn client?
What is the issue specifically?
@shrewd shoal Same issue as you. Will try connecting to the EU VPN region as you suggested.
oh yeah, moving over to EU should fix it
You should refresh the page and if the your deployed instance is still running then there is no issue. I think, machine terminated msg is inevitable because if machine gets its time over than msg will appear. But if you extend the machine's time, then also you will likely to get the msg because ultimately machine gets terminated on a specific time period. (:
You can ask such question in #room-help or #room-hints
Confirmed that fixed the issue. Thanks.
Hope the India VPN server issue is fixed soon.
Gave +1 Rep to @shrewd shoal
I can't get connected to either of the EU VPN servers. I've tried everything in the troubleshooting pages, even re-installed OppenVPN, but I keep getting the "TLS negotiation failed to occur within 60 seconds" message. Doesn't matter whether I try to do it in my Kali VM or on Windows itself. The thm-troubleshooting script tells me the "tun0 interface does not exist", but I'm not sure how to fix that. The adapter exists in my network, but doesn't seem to be 'on'. Any suggestions?
I was having issues last night, so I know how you feel!
I am having issue with connecting to the VPN. I have regenerated the keys multiple times, but same error shows up.
ohh jeez lol i guess everyone is having some issue with India server.
cool i will just connect to EU π
Hye Folks!!
Can Anyone Help me to find Hidden link in a website
What do you mean by Hidden link in website?
I don't see any announcement. But i think VPN in IN region is down
should i need to redownload config
it was working till yesterday night
pls ping for answer
Server?
Openvpn!
I mean India or eu ?
india
Hey! Platform is showing that I have the cat.linux.txt badge, as well as all 3 Linux Fundamental rooms completed, but this isn't being reflected within the Paths..
why? the point of having a dedicated region is to reduce ping/delay right??
After changing the server, waiting for 5 minutes will maybe help you out in connecting to server.
For me the culprit was that the certificate and key was missing in my ovpn file. Even after regenerating it did not fix. Check your ovpn file cat username.ovpn
some of the rooms have been updated, you may just need to redo them
Yea but I have trouble with India server. A long ago it's resolved. But I changed to EU and Haven't turned back. And it's pretty much fast as India vpn
@tight token
here i am
yep
or just some other country using the Open VPN client
alright
i am sending you screenshot
did you download your vpn file
wait a bit
Multiple people reporting issues with India VPN server.
alright, you have that problem too
I suggest you just change your VPN location to some other location
Yep posted above. Solved by switching to EU region server.
I am always on EU, even though I am in India, and I don't face any issue
so better stick to EU
No issues at all? K then. Will continue to use EU.
yeah
sorry but how to attach file in discord
Reported to thm staff waiting for reply :)
I didn't understand this sorry. What do you mean?
Posted that message coz it felt like @flint anvil was not yet aware that multiple people had already reported issues with the IN VPN server
what now
I meant EU had no problems, I am not aware of any issues in the IN server, I was on EU since I started
Saw the ping in #873296260520640602 just now. Sorry for misunderstanding π
Sorry I mean reported not report
Haha ok.
can anyone help me with some linux basics, I am having hard time installing things
#infosec-general would be a god place to ask
sure
You can DM me if you want to
hello everybody i have some issue with nmap is possible?
its possible
but to verify we would need more information on what the issue is exactly
i still trying nmap --script=ftp-anon -p21 on the machine ip but hte 21 port is close o.O
conn-refused is the output π
i'm on task 14 on nmap learns and i'm connect with openvpn π
i can answer "y" and go next anyway but somethin gone wrong π
This channel is for site and vpn issue. Use #room-help or #room-hints for such questions (:
my bad! sorry @wide oasis π
It's okay, no worries (:
I can't download my open vpn file, it shows 0 byte file every time
I am trying to connect to In-regular 1
Please switch to EU server. It has some issues but staffs are looking on (:
EU servers are loading to 404 errors
Hey guys,
Is there a way to background the openvpn connection because my terminal gets flooded every other second by HMAC deauthentication messages. I currently use the "sudo openvpn file.ovpn &" command
you can just open a different cli window and leave the vpn running in the other
Okay. Thank you
Hello !!<>!! i try to download the configuration vpn file from regular-1 and regular-2 server and always i get the 404 error
Hey guys. Quick question. I'm working through the network 2 module and I was wondering if I need to install open vpn on the attack box to see the files in the /home share. I can enumerate the share but do not see any files.
I have openvpn on my Windows system but I'm assuming that will not help as I am using the linux attack box on the website
Which is not connected to the vpn
the attackbox is on the same network as the vm's so no vpn needed
So you don't need to be connected to the tryhackme open vpn server? Is that just an alternative to using the attack box?
correct, many of the community use their own machines for different reasons and thus they use the vpn to connect then
So I have another question then. I am able to mount to the cappucino share but there are no files to access when I go to the /tmp/mount/cappucino directory. Am I missing something?
It appears as though there should be files to look through here
not sure, been awhile, but if you ask in #room-help someone might know
Ok, thanks for your help π
Hey how do we disconnect from openvpn Thank you
just do a ctrl+c in the window and it should gracefully disconnect or you can close the cli window
Ok but the tryhackme site tells me that I am still connected
No its ok
π
Just last question I started a machine via the web page but the browser crashed and I can not turn off the machine what to do? Thank you
Restart the browser, I guess
Is your browser not working or what's going on?
Hi, I have already talked about it in the room-bugs a few days ago. I have a problem with my ssh : when i try to use it, it randomly freezes. It can be after 20 secondes or it freeze instantly and i can't even write a password. After some time i can write but a few seconds later, it will freeze again.. The -v switch and google's stuff didn't help me..
Yesterday i tried to log in with ssh on an other WIFI and it worked.
Any idea ? Thank you
my browser crashed and I no longer had access to the machine and therefore I can no longer stop it
Try restart the vm and try again, if you have your own vm
the problem is that I just have access to the ip but hey there was a mark that it expires in 2 hours so I will wait for the 2 hours (it allows me to take a break π )
If that suits you good (:
thanks i will come back if the problem does not go away
Are you sure if there is a user named "user" exist? If it does, then there should not be any problems to ssh if you have valid credentials.
Yes it does I know it's a realy weird problem
Are you on a VM?
yes
Is the VPN running directly in your VM or on your host machine?
I'm having a problem connecting on OpenVPN. THM says I'm connected but it keeps timing out when I try to SSH.
on my VM
Refresh the webpage to check if deployed machine is still active or not
What's the room where you tried to connect in the picture above?
Linux PrivEsc But i also have the problem in the Common Linux Privesc
But as i said, on another WIFI yesterday, it worked fine
Still have 1:45 left/
Terminate the deployed instance and re-deploy it. Then try it.
Maybe it's just random, with my smartphone 4G i also have the problem
Well it could happen if you have unstable connection but if there are any unfamiliar problems, then I can't say for sure.
I just tried to connect with the attackbox on my own deployed target machine and it seems to not work. Will restart the machine and wait a bit longer, maybe it's taking some time
Didn't seem to work.
Give it 2-3 minutes to fully deploy it..
Thank you for your help, i wait for your result π
Gave +1 Rep to @crystal marlin
Oh nvm, I tried again and it seems to work now, so that means you just have to give it a few minutes to fully boot
My machine has been deployed for 55 minutes :/
Have you tried again now?
yes
Maybe restart the machine, give it 5+ minutes and then try it.
I try again
Yes I have, but it's way to long to post it in here ^^
Ye try again and wait 5+ minutes. Meanwhile you could try to connect to ssh user@10.10.223.250 , if that's working just fine for you then the issue is with your deployed target machine and you just have to wait long enough or restart it.
It worked and then... freezed π
What you mean with freezed? While trying to enter the password, or while being on the target machine?
It changes everytime, this time it was after the password. I can't type anymore and i have to wait.. after many seconds/minutesI can type again but just for a few seconds before it freezes again
It works for 1 minute now.. Weird, first time that I'm able to use it for such a long time
nvm freezed again
Have you tried that:
To get your configuration working, make these configuration changes on the client:
/etc/ssh/ssh_config
Host *
ServerAliveInterval 100
yes
sshd_config* ?
Mh? No ssh_config . Or maybe the config is in ~/.ssh/config My attackbox just went down, so have to look it up myself after restart
I have no ServerAliveInterval in my ssh_config
Then add it under the Host * heading
Maybe put it to 60
Or 45
Also could you make a screen of your ssh_config?
Did it again freeze with 45?
It didn't even let me type my password
I have updated my ssh and it looks like it's working
I don't understand why it stops working 2 days ago for no reason but now it's fixed !
@crystal marlin Thanks a lot for your help !
Gave +1 Rep to @crystal marlin
Oh great, ye that would have been the next suggestion to try to reinstall it, but glad it works now with the update π
First of all hi, i am having some problems with the attackbox in the linux fundamentals room part 1. Normally, i completed the fundamentals rooms months ago but it looks uncompleted so i decided to complete them again. However, when i launch the attackbox for the first room it says connection error the remote desktop server is currently unreachable if problem persists please notify your system administrator or check your system logs
i am having this problem for a week now and i tried to launch attackbox more than once
some of the rooms are using split view instead of connecting on the attackbox/vpn
the problem persists in the split view
after you deploy the room host, there is sometimes a split view option there
Could you make a screenshot of that? From the whole page
Turns out the problem was my internet. Finally got it working again. Thanks for your help!
Gave +1 Rep to @wide oasis
Hi im trying to do a room, but the machine dies 5 minutes later...
I tried like 10 times already
There's something with the servers?
which room
whenever i try to download vpn config, it just redirects to a 404 page?
this is the url link: https://tryhackme.com/vpn/get-config
no. I tried both US East and West servers
Ok u have to wait 1 or 2 minutes after regenerating ur vpn file. Are u waiting ?? Or u clicked on it instantly after regenerating
US West Coast just worked. Guess i just had to give it a bit.
Yea.
@rotund pawnHow long did you have to wait? Having the same problem on the US East server.
East Coast never worked. I ended up having to use West Coast server.
@rotund pawnThanks. I'll try that.
Np
Hello, do we have people here working with Burp Suite Community Edition (issue on v2021.8)? I am facing a "Secure Connection Failed" on Mozilla Firefox 78.11.0esr (64-bit) [Kali Linux 2021.2 wsl] and "Your connection is not private" on Chrome 92.0.4515.131 (64-bit cohort: Stable) [Windows 10 OS Version 2009 (Build 19043.1110)]. Please DM me to help... thanks. I tried both ports 8080 and 8081 (the video suggested that 8080 is like reserved for https so it is better to use 8081).
can u put a screenshot please
You have to add Burp certificate in your browser, I think
yep
Did that, no help...
I followed tutorials from a video to the T, even switched on the features for HTTPS and FTP... in vain XD
Open up the burp, make the request, enable proxy in firefox, visit http://burp, then on top right corner, there is a name mentioned "CA cert" (somewhat like this), go ahead and download that. Now, open Preferences -> Privacy Security -> Certificates (at bottom)-> View certifcates -> Import. When you are importing the certificate, remember to check the "first" checkbox. That's it.
Just updated the msg with a few more details.
I will retry this...
and here is a setup viedo if u need https://www.youtube.com/watch?v=ZpmgJ7xjgvI&list=PLWPirh4EWFpEiXbu4JgQG0KoX6-MU8FbT&index=4
The issues occur only when I use burp, else everything works fine on both the browsers...
Sure.
Read the above msg, please. I have made the corrections after yours.
last time i forgot the check the first box and boom it didnt worked
had to re-import it π€£
I re-imported on Chrome... no tick mark box. Let me switch on burp and try connecting...
This is for firefox.
For Firefox it is telling that already imported as authority...
Also, no it didn't help on Chrome T_T
yea u have to manually remove the cert u uploaded before
Portswigger CA, right?
At least on Chrome there is some response on Burp, but Firefox is empppty!
Is your proxy enabled in firefox?
Okay, I will describe in full details...
Before today, I had downloaded the CA cert from Chrome and imported the same on both Chrome and Firefox (if it is a toooo noobie move, just check my nickname XD)
So now I noticed, after re-importing and double ticking, that Burp suite is generating a "fatal alert: bad_certificate" and "readHandshakeRecord" error in the event log.
Thus, I re-downloaded the cert by opening the http://burp on Firefox, imported it, AND BOOM BOOM IT WORKED! Intercepted the requests too in Burp.
Nice. happy hacking
If this makes sense, I don't understand why things don't work on Chrome...
Man, I am no fan of chrome and haven't used with burp since starting. But, I am aware of firefox, so I tell you the things you need to do. (:
Also, you can ask such question in #infosec-general as this channel is for vpn and site issues.
Having trouble connecting to nahamstore.thm in my google browser from my windows machine. I already added the machine ip and nahamstore.thm in my windows /etc/hosts
I'm looking to map the folder structure on a file server. What tools do people recommend for me to be able to get an overview of the folders on the server and the folder structure
Are you connected to vpn and you waited for the machine to get fully booted?
This channel is for site and vpn issues. Please use the #infosec-general for such questions. (:
Well, i'm using openvpn
on my main windows machine
(Got it working)!!
hey guys, i use macbook and i installed virtualbox to use kali linux for better hacking experience but the openvpn seems not to work on the virtualbox what should i do
did you get the config file on your VM?
What command do you run?
Hi did you manage to crack the task 26 lab?
I remember I faced some problems with it
Where should I add DATA when sending POST request on burp? I can do the same in cURL. But burpSuite..
Can someone help me?
Thats a little vague. Do you mean how to, not where to?
@viscid frost how did you overcome the challenge?
If you mean how too, try using repeater
It wasn't descriptive because I couldn't send a photo.
I sent it to the repeater, tried with url parameter and body parameter but both of them not worked
also checked curl request with --verbose; the data not visible
Thus, is there a place to add data secretly or sth on burp?_?
hello!
i cant connect to the vpn of thm everything seems normal , can someone help me
ty
I don't remember, but I don't think I used repeater
From Which Operating System are you trying to connect?
arch linux
ok are you still facing problems?
yes
yep
ok now you run
the command
sudo openvpn thenameofyourfile
you have to be in the location where the file is
i got the Initialization Sequence Completed message
so im connected how do i check
yes
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eno1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
link/ether 8c:ec:4b:a2:90:94 brd ff:ff:ff:ff:ff:ff
altname enp0s31f6
inet 192.168.29.131/24 brd 192.168.29.255 scope global dynamic noprefixroute eno1
valid_lft 3004sec preferred_lft 3004sec
inet6 2405:201:e022:9038:d627:d826:dc8b:e132/64 scope global dynamic noprefixroute
valid_lft 3573sec preferred_lft 3573sec
inet6 fe80::5fb1:75c8:a8fd:3002/64 scope link noprefixroute
valid_lft forever preferred_lft forever
3: wlp0s20f0u5: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc mq state DOWN group default qlen 1000
link/ether 6e:06:70:86:bd:b7 brd ff:ff:ff:ff:ff:ff permaddr e8:4e:06:35:bb:4f
4: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.17.17.235/17 scope global tun0
valid_lft forever preferred_lft forever
inet6 fe80::635a:4ff0:dcc4:7539/64 scope link stable-privacy
valid_lft forever preferred_lft forever
yes so its working?
you will need to use this one for reverse shells
ohh
no problem
thx a lot mate
π
Once you close the terminal with openvpn's message, openvpn will stop
or you can stop it with sudo killall openvpn
Great! Good luck with your journey and feel free to message me if you face problems!
Sorry I was speaking to the other guy