#site-support

1 messages Β· Page 248 of 1

frigid vapor
#

anyone else having issue downloading vpn?? i hit a 404 page

deep spire
frigid vapor
#

done

deep spire
frigid vapor
#

all done

#

than kyou

turbid void
#

vpn is connected but not able to ping the machine & also the site is not showing i'm connected as well. tried regeneration the vpn pack & updated my openvpn still nothing

crystal marlin
naive dust
#

When conducting an NMAP scan on my POLOTELNET machine it says that no ports are open. Any Ideas? Firewall issue?
I've tried with and without the OpenVN THM connection
I'm on EU-REGULAR-1

#

I'm not having issues with NMAP on any other IPs

blazing laurel
#

Hey friends! Does anyone know how the THM Attack Box differs from the usual Kali image? I've been using the browser-based VM as a subscriber, but wanted to play with setting up my own home VM to try OpenVPN access and to have some configuration persistence between uses. Is the difference just that it's pre-configured for access to THM machines, or is it further customized than that?

naive dust
#

As it seems like I'm not the only one having issue when behind a VPN, is there a ticket for this issue?

marble cobalt
#

Hi eveyone..This is the place to ask something about linux?

#

I try to install, and stuck in some levels..I forget how to that and my friend Google(haha) doesn`t give the answer

keen scroll
#

What's the problem you are facing?

naive dust
crystal marlin
distant pawn
#

I having an issue with target machine not working. I already restarted the machine multiple times and also re downloaded my openvpn file. The issue still persists.

hardy mountain
#

^same

crystal marlin
distant pawn
crystal marlin
distant pawn
crystal marlin
distant pawn
crystal marlin
distant pawn
crystal marlin
distant pawn
# crystal marlin Can you ping 10.10.108.215 ?

yes PING 10.10.108.215 (10.10.108.215) 56(84) bytes of data.
64 bytes from 10.10.108.215: icmp_seq=1 ttl=61 time=102 ms
64 bytes from 10.10.108.215: icmp_seq=2 ttl=61 time=95.9 ms
64 bytes from 10.10.108.215: icmp_seq=3 ttl=61 time=98.1 ms
64 bytes from 10.10.108.215: icmp_seq=4 ttl=61 time=98.7 ms
64 bytes from 10.10.108.215: icmp_seq=5 ttl=61 time=97.8 ms
64 bytes from 10.10.108.215: icmp_seq=6 ttl=61 time=99.4 ms
64 bytes from 10.10.108.215: icmp_seq=7 ttl=61 time=98.0 ms
64 bytes from 10.10.108.215: icmp_seq=8 ttl=61 time=93.9 ms
64 bytes from 10.10.108.215: icmp_seq=9 ttl=61 time=95.7 ms
64 bytes from 10.10.108.215: icmp_seq=10 ttl=61 time=93.8 ms
64 bytes from 10.10.108.215: icmp_seq=11 ttl=61 time=92.0 ms
64 bytes from 10.10.108.215: icmp_seq=12 ttl=61 time=92.8 ms
64 bytes from 10.10.108.215: icmp_seq=13 ttl=61 time=98.3 ms
64 bytes from 10.10.108.215: icmp_seq=14 ttl=61 time=92.7 ms
64 bytes from 10.10.108.215: icmp_seq=15 ttl=61 time=97.4 ms
64 bytes from 10.10.108.215: icmp_seq=16 ttl=61 time=97.8 ms
64 bytes from 10.10.108.215: icmp_seq=17 ttl=61 time=97.1

crystal marlin
crystal marlin
distant pawn
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
distant pawn
tardy yew
#

Hey. I'm having an issue where all the machines I use as part of the web-fundamentals course have a tendency to freeze and become unresponsive every 3-5 minutes. They do come back to life after 2 minutes of waiting. Has anybody faced a similar problem?

crystal marlin
tardy yew
#

Virtual Box

#

Now I'm thinking it could actually be the VPN. Might try to switch to another server

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
tardy yew
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

marble cobalt
#

Hi I try to use the VPN but I get error, it`s new machine and when I try to open the file openvpn I get something else

crystal marlin
marble cobalt
#

this is when I try to use the openvpn

marble cobalt
crystal marlin
marble cobalt
#

damm

#

thanks

#

now it`s working

#

XD

crystal marlin
#

Great πŸ˜„

marble cobalt
#

ok but I still get error

crystal marlin
# marble cobalt ok but I still get error

Are you sure the file is called like that ? I think the config file has the ending .ovpn - Maybe change to your Downloads folder and type ls -al to check the file name

marble cobalt
#

no sorry it`s ovpn

#

but I get error

#

I think its because I dont have IPV4

crystal marlin
# marble cobalt

Have you changed the server or regenerated the config file on the access page on THM after downloading that config file ?

#

I would re download your config file and try it with the new one. And don't change server or press regenerate after downloading your config file, as the file might not work anymore after you do that.

marble cobalt
#

otherwise..I thonk my error it`s about the IPV4

#

Becuase I tried downlaod again and still get error

#

and now I try to download again the file and I get 404

crystal marlin
# marble cobalt

But you have internet access on that machine, right? So you can open websites in the browser of that machine, right?

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

marble cobalt
#

@crystal marlin it`s differnter between EU-regular-1 or EU-regular-2

crystal marlin
crystal marlin
marble cobalt
crystal marlin
# marble cobalt

Ye I know what servers are there, but I don't know what you were asking me. But anyways, I would pick the EU-VIP -1 or 2

naive dust
#

What changed here ??? What is outdated ? If you are referring to the new MITRE Engage site it doesn;t even have Use Cases anymore.
And the correct one in SHIELD site is the one I am putting in and it is saying it is wrong ??

marble cobalt
#

thanks πŸ™‚

crystal marlin
marble cobalt
#

ok thanks...I will continue after I watch the game

visual crater
#

Hi guys im trying to do the room "owasptop10" but the vm "Injection v4" wont load. I can ping the machine but it wont load in the browser, i left it fort about 5 min. Anyone know what im doing wrong? The ip is 10.10.123.144

crystal marlin
visual crater
#

But i just restarted the vm so its still booting up i think

visual crater
crystal marlin
visual crater
#

Vm with openvpn

#

But am connected and other rooms worked fine

crystal marlin
visual crater
#

Yes

crystal marlin
visual crater
#

I can even see the title of the html but it wont load

#

Yes

crystal marlin
visual crater
#

It wont let me

crystal marlin
#

You would have to verify first

visual crater
#

But canb i dm u?

crystal marlin
#

!docs verify

sharp bisonBOT
crystal marlin
visual crater
crystal marlin
visual crater
crystal marlin
visual crater
#

I do find something weird, when i open devtools and do shift+ctrl+r i can see a bit of the page, but when i close devtools its gone. And i cant type in the input field when in devtools

crystal marlin
visual crater
#

Well i tried it in the attackbox and it works fine

#

So i think that could be it

#

Could it be something with the vpn? It also doesnt work in chromium

crystal marlin
visual crater
#

Not just the kali vm but also the host

crystal marlin
visual crater
#

Yes in kali

#

Not on the host

#

What does the command do?

crystal marlin
visual crater
#

Well it works fine in my vm now and my host didnt crash again so thx!

crystal marlin
#

Great, you're welcome πŸ™‚

drowsy magnet
#

Does someone know if there is a problem with the THM servers? I tried to download my OpenVPN config file but i'm redirected to the 404 page

drowsy magnet
#

@crystal marlin Thank you !!

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

indigo apex
#

hey, I just finished the "Penetration Testing Tools" series but I didn't receive a badge is that normal ?

haughty glacier
#

is there a badge for that?

indigo apex
haughty glacier
#

might not be in yet, I've done all those rooms but don't have a badge either, and can't see it as a badge in badges

crystal marlin
# indigo apex

Is there a link to it ? As I don't even have series on the site anymore. I do have that badge, but don't know how I got it ^^

haughty glacier
indigo apex
#

mine ?

haughty glacier
#

no, @crystal marlin actually πŸ˜„

#

oh, wait I see it on mine now lol

haughty glacier
crystal marlin
haughty glacier
#

I think, new version if site might not have them implemented yet

#

and my account is still currently on the old version

indigo apex
haughty glacier
#

ok, well I guess that's why you don't have the badge

ornate sail
#

Hello, downloading openvpn configuration for EU servers result in a 404 error. Works fine for other locations.

ornate sail
#

Try everything except log out, but I download the US configuration and it works

indigo apex
scenic torrentBOT
#

Gave +1 Rep to @haughty glacier

drowsy magnet
#

Yep I saw that EU servers doesn't seems to work fine

stable island
#

Hey all. I'm going crazy try to fix my SSH connection issues. I'm 100% connected to openVPN (have IP in top right of machine in green bubble). I'm on my 3rd config file.

#

I've been able to connect to the THM machines before but now its just not working at all. Connection just keeps timing out

trail yacht
#

Anything on this issue?

long trench
#

I don't know if I should write here but I don't know where to put it. Why if I want to buy a subscription for a tryhackme month and try to pay with PayPal, I have to give a credit card? (I have funds on my account to purchase the service)

#

And what is this subscription about? how does it work and how can i turn it off?

crystal marlin
long trench
crystal marlin
long trench
#

is that in my opinion I should not be asked for a card as I have funds in my account

#

although I suspect that paypal is asking me for a card so that it can activate their "subscription", which I don't even know how it works and how I can turn it off later

errant valley
crystal marlin
long trench
crystal marlin
trail yacht
long trench
crystal marlin
errant valley
long trench
crystal marlin
long trench
crystal marlin
long trench
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

long trench
#

how can i disconnect card for my account?

sour quartz
#

Having an issue with Linux Fundamentals 3. I was able to connect via SSH to the machine yesterday, but today it attempts to connect and a couple mins later, it says:

Connection closed by 10.10.15.116 port 22
This is before entering in a password

Nmap shows SSH is up

Initiating Parallel DNS resolution of 1 host. at 17:48
Completed Parallel DNS resolution of 1 host. at 17:48, 0.17s elapsed
Initiating Connect Scan at 17:48
Scanning 10.10.15.116 [1000 ports]
Discovered open port 80/tcp on 10.10.15.116
Discovered open port 22/tcp on 10.10.15.116
Completed Connect Scan at 17:49, 22.79s elapsed (1000 total ports)
Nmap scan report for 10.10.15.116
Host is up (0.49s latency).
Not shown: 998 closed ports
PORT   STATE SERVICE
22/tcp open  ssh
80/tcp open  http

Read data files from: /usr/bin/../share/nmap
Nmap done: 1 IP address (1 host up) scanned in 23.02 seconds
#

Tried on 3 different machines throughout the day today. This is connected through the VPN if that helps.

#

I was still connected to my VPN outside of the VM. I'm dumb. πŸ˜„

tender plover
#

Is the room "SET" down. unable to ping the ip even after 15 mins . Also the nmap and gobusters are not getting through vpn connected . ping to 10.10.10.10 is fine. same from attacker box as well

#

same issue after terminating and powering up a new vm

foggy ice
#

Trying to crack this hash on john for a THM challenge:

$2a$06$7yoU3Ng8dHTXphAg913cyO6Bjs3K5lBnwq5FJyA6d01pMSrddr1ZG

Here is the command im using:

john --format=bcrypt --wordlist=/usr/share/wordlists/rockyou.txt hashfile

The error im getting:

No password hashes loaded (see FAQ)```
timid glen
#

Hi I am not able to download OpenVPN config file. Getting 404 error. Can somebody please help me ?

crystal marlin
crystal marlin
heady hamlet
#

Morning!
I had a short break and yesterday went back to my Linux fundamentals 3 rooms.
I found that I cannot connect to the machine via SSH. (Permission denied)
Tried the default credentials (AttackBox)
Did I miss something?

https://www.screencast.com/t/etbDpmHonLVO

crystal marlin
heady hamlet
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

bronze vale
keen scroll
#

install after purge should work as well

#

BTW, for me john stopped working after Ctrl+C (I used that to stop it)

coarse crest
#

heyy

#

when i try to download the openvpn config file, it redirects me to /404

#

any solution around it?

coarse crest
#

okay thank you!

#

okay IN-regular worked

#

just EU servers not working

copper lintel
#

can I change my nickname in THM?

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

somber pike
#

linkedin link is not working properly

stable island
#

Why am I getting SSH connection timeouts when trying to connect to THM machines? I’m connected to the VPN and have tried different config files (on my 3rd). It worked before but now it isn’t working at all.

keen scroll
stable island
haughty glacier
#

can you advise what you are trying to do exactly?

#

@stable island

stable island
#

I’m using Kali Linux in a virtual box and trying to connect to the NMAP machine in my lessons

haughty glacier
#

is the room you are doing nmap?

stable island
#

Yes, as part of the complete beginner pathway

haughty glacier
#

what task are you up to? (trying to find one that requires ssh)

crystal marlin
haughty glacier
#

yeah, I think your main issue here is that machine likely doesn't even have ssh and I don't think any of the tasks require it

stable island
#

I’m in task 4. I just read that note now. I guess this is my problem all along.

haughty glacier
#

so, you use that machine as the target of your nmap scans (that you run from your kali system)

#

should be good to go πŸ˜„ haha

stable island
#

I’ll be sure to read everything thoroughly to avoid this. I’m going to try SSH a machine that actually requires it to check everything is still working

haughty glacier
#

ok

stable island
#

I successfully logged into Linux fundamentals part 2 machine. Things are working. It was just me being a complete beginner and not reading things properly. Thanks for pointing me in right direction

haughty glacier
#

main takeaway here would be just remember not all machines will have a website, not all will have ssh etc etc just follow the instructions and if something doesn't make sense, you likely missed something (on a walkthrough room), doesn't hurt to ask though πŸ™‚

stable island
#

Yep I 100% will keep this in mind. Note taken πŸ‘

harsh ferry
haughty glacier
#

loaded for me pretty quickly

#

maybe refresh your page or browser? other stuff working OK?

#

it does have an embedded video that might make it take a bit longer than a room without

naive dust
#

I tried for weeks and let it load for an hour in a tab, it doesn't load

naive dust
#

I think we can narrow it done to rooms that have embedded media (video) that tries it to autoplay when loading room

crystal marlin
naive dust
#

I was sent over to this channel

crystal marlin
#

Oh okay :/

naive dust
#

so if you a thm staff, maybe you open a ticket?

#

as it seems others have same problem?

#

what do you think?

crystal marlin
naive dust
#

No way

crystal marlin
naive dust
#

ok

crystal marlin
# naive dust No way

Because it appears to have something to do with your VPN provider. I tried the same pages with my personal VPN provider and it was working just fine.

naive dust
#

Yes, because I configured the VPN to block trackiing, ads, and crap sites

keen scroll
#

Is the issue because of the embedded video script making some HTTP requests that are getting blocked by your external VPN causing the room page to not load anything after that?

naive dust
#

exactly

bronze vale
#

k4wld, I responded in #site-bugs, if you're purposely blocking traffic and it's denying access to our site, that's not our problem πŸ™‚

keen scroll
#

Isn't there any option to provide a whitelist for some requests?

naive dust
#

lol

crystal marlin
#

Straight, but right πŸ˜„

naive dust
#

not our problem, that's the asnwer we love

bronze vale
#

Well, it isn't:)

#

As you're purposely changing configurations and interfering with the traffic, that's something you're doing.

#

If it works perfectly fine without and whatever you are doing is interfering with it, then it's not something we're going to "fix".

keen scroll
#

You can probably try to allow some of those HTTP requests, I don't think they can cause any issues.
Given that they are provided on TryHackMe site

naive dust
#

the good thing is that 98% of the rroms work just fine

#

so if you keep these rooms with loading videos as is, it's your decision

#

I can't do anything about it

keen scroll
#

I mean, you cannot say that the TryHackMe site is slow because you want to use tor (just an example)πŸ™‚

eager fulcrum
#

So, to be clear, your VPN is breaking the site?

naive dust
#

yes, I have tracking protection on, similar to pi-hole. It's blocking porn etc, crap sites

#

so I can't switch that off

eager fulcrum
#

So your tracking protection is getting a false positive, and breaking the site.
Wouldn't you agree that means the issue lies in the tracking protection, not the site?

naive dust
#

Yes, the ask to make the rooms like the 98% that just works and not load videos when starting the room and autoplay

#

it's a change I agree

tribal bolt
#

Hey could I get some quick help with something friends

eager fulcrum
tribal bolt
#

I'm trying to download my openvpn access configuration file thing, but it just 404s every time. I've googled it and it seems like other people have had this issue (forum posts on the site), but nobody seems to have figured out a solution.

tribal bolt
#

Yooo thanks man. Sorry I should've looked first, my bad.

barren birch
#

Hey @naive dust πŸ‘‹
Want to take this into a thread to discuss it? πŸ™‚

naive dust
#

perhaps it's really an issue on thm

barren birch
#

Okay, gimme a second

naive dust
#

the javascript used or whatever

quiet elm
#

Idk if this is the right room for this, but I lost my streak and even the yearly-activity page on my profile shows I have atleast 1 event every day for the past 60+ days

bronze vale
#

Email me:)

#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
crystal marlin
long trench
#

Hello,
I wanted to make a telnet machine run from this lesson:
https://tryhackme.com/room/networkservices
Unfortunately, the problem is that I have been waiting 10 minutes and still scanning ip nmap shows me that the ports are closed

crystal marlin
long trench
crystal marlin
# long trench nmap ip

That's it? If yes, by default nmap only scans the 1000 most common ports, so if the open port is outside that scope, you won't find it without to specify how many ports to scan

long trench
crystal marlin
long trench
crystal marlin
long trench
crystal marlin
haughty glacier
#

the room is a walkthrough and it tells you what to do for each question, and I don't see any stating to do nmap -p23 ip

crystal marlin
long trench
#

it turned out that he is on a different port

#

sorry for wasting your time

crystal marlin
quiet elm
#

I think it's more related to some background timezone stuff idk

long trench
crystal marlin
# quiet elm Yeah, but then there's also this.

Oh, ye I'm not saying that you didn't answered a question each day, just wanted to point that out for the yearly activity, so that you are not going to rely on that chart for the daily streak πŸ˜„

night sand
#

Dear team, I am on Linux Fundamentals -Part 2. However, I tried ssh(ing) into a machine and got the notification "ssh: connect to host x.x.x.x (my IP) port 22: No route to host". Yesterday, I ssh(ed) seamlessly, today the above error ca,e up, kindly assist pls. Thank you.

#

came up...

civic wren
#

I am trying unfriend someone on my THM account but I cannot

#

Help please

#

The 'X' button is all the way on the bottom when I hover over a friend from the list and I can't click on it cuz the 'X' goes away when I move the mouse

hallow spindle
#

Room - Upload Vulnerabilities
I am unable to navigate to any of the pages suggested uploadvulns.thm. Nothing works, overwrite..* shell.. all give me a cannot connect message. Unable to proceed in the room.

ebon ore
#

hey so I havent been in this server much and as such am not sure if this is a common issue but I connected to the open vpn on laptop with kali running on a virtual box within it (the vpn is running on the normal windows) and on tryhackme it says im connected to the vpn and have an ip and everything but when im trying to connect to any machine I run (such as the one needed for vulversity) it cannot ping the ip or access it in any way

haughty glacier
haughty glacier
crisp wolf
#

Quick question, when you connect to OpenVPN, it should be no different than connected to an attackbox right? I tried going to the local hosted site when connected through OpenVPN and it'd just keep loading

haughty glacier
crisp wolf
#

Hmm well I can't connect to the address for some reason by using OpenVPN

#

either that or I'm just dumb

haughty glacier
#

ok well, how are you connected? using a kali VM?

#

someone might accidentally copy ur username for whatever reason too btw probably not a very safe one to use here

#

(or anywhere)

river urchin
#

i would like to ask a question (i am new )

#

i already connect to open vpn successfully , but i also cant see any thing like attack box appear

#

and i am using window ,not linux

#

its it need to use linux althought i success connect to tryhackme mechine

#

im not understand about the how attack box and the open vpn work...........

hollow otter
river urchin
#

i watch many time already

#

but mine is not same as the web teach

hollow otter
#

What room you were asking?

river urchin
#

Linux Fundamentals Part 2

hollow otter
#

are you in task 2 atm?

river urchin
#

yayaya

#

it say need my linus system

#

but im using window ,can?

#

the tryhackme attack box is expired

hollow otter
#

you have to use attack machine iirc for fundamentals 2, click this to start

#

I use my windows machine when I did this room while ago

river urchin
#

i dont subscribe and it limit is over

#

i try to use another method "via openvpn"

hollow otter
#

oh so you cant even spawn it?

river urchin
#

yah

#

its it same if i connect to openvpn and using cmd (window)?

#

same as the attack box? the result came out is same?

hollow otter
#

i believe so

#

its using ssh

river urchin
#

ssh?

#

sry im new

#

a thing like linux and window?

hollow otter
#

ssh is secure shell

#

task 2 suppose to teach you how to use ssh to connect to a machine

river urchin
#

the mechine is mean like a computer?

hollow otter
#

yes

river urchin
#

the tryhackme given mechine is like a virtual mechine right?

hollow otter
#

yes, virtual machine as our target

river urchin
#

open vpn is using to connect to tryhackme network

#

what different between connect to tryhackme betwork and non-connect

#

what function of tryhackme network?

hollow otter
river urchin
#

oops sry i missed it out ""However, to access these machines you need to be connected to our network.""

#

@hollow otter thank you for helping

scenic torrentBOT
#

Gave +1 Rep to @hollow otter

hollow otter
river urchin
#

??what is that

river urchin
hollow otter
#

reputation system in thm discord

river urchin
#

oh oh i never heard this bot ...lol

#

by the way ,thank for help

hollow otter
#

cheers

regal hemlock
#

How can i verify please guide me

hollow otter
#

!docs verify

sharp bisonBOT
river urchin
#

oh i need this too

regal hemlock
#

!docs verify

sharp bisonBOT
hollow otter
#

no no click on the link

river urchin
#

lol

regal hemlock
scenic torrentBOT
#

Gave +1 Rep to @hollow otter

night sand
#

Hi Team - I am currently on Linux Fundamentals - Part 2. I am tried changing from tryhackme user to root its asking me for a password, can someone assit with the pasword pls.

hollow otter
#

what task? i dont remember ever change user to root

night sand
#

Its Task 6

regal hemlock
#

unable to ping this machine but and i am successfully connect through vpn

novel inlet
#

for some reason I can't catch any shells

#

but the vpn works

#

I've had this issue across my last few rooms

#

even when I try to mimic a writeup to confirm it doesn't work, it doesn't

#

I tried regenerating but that doesn't fix it

#

and I'm on EU-VIP-2 and EU-VIP-1

regal hemlock
#

so what i do any solution

novel inlet
plucky moon
#

tryhackme@10.10.60.229: Permission denied (publickey).Does anybody have any idea how to fix this?

#

its the burpsuite room

novel inlet
#

to connect through ssh

plucky moon
#

where do I get them?

#

ssh works fine on other rooms

#

and I have my ovpn working fine in another terminal

regal hemlock
novel inlet
#

man nmap

#

also it literally tells you

regal hemlock
#

nmap also not working

novel inlet
hollow otter
tardy bolt
#

Guys, How do we change country in the profile.

hollow otter
tardy bolt
scenic torrentBOT
#

Gave +1 Rep to @hollow otter

hollow otter
#

I've read that using that link will update timezone which also update county

#

Assuming you don't use vpn while clicking the link

tardy bolt
#

Yes, no vpn

hollow otter
#

Is the country updated now?

tardy bolt
#

No, same redirects to homepage

night sand
hollow otter
#

Go to your profile to check your country

#

What's the error?

tardy bolt
#

it worked!! πŸ˜„

tardy bolt
hollow otter
hollow otter
#

!docs verify

sharp bisonBOT
night sand
night sand
#

U there pls, was able to paste it as seen above πŸ–•

hollow otter
night sand
rugged shoal
#

What does !rank do in #bot-commands I seen a few tried it but didn't seem to tell them anything, curiosity got the better of me so tried it also, but didn't tell me anything in the channel or via DM.

hollow otter
#

back before the bot disfunction it will return your rank on thm

rugged shoal
hollow otter
#

yes

#

the !rank command

#

not the bot

#

i think

rugged shoal
#

Ah ok gotcha

wind mortar
#

Hey, so uh if I ping the IP address of a VM deployed on TryHackMe it should respond if it's functional, right?

haughty glacier
wind mortar
#

Oh they've got no internet connection right

haughty glacier
#

they just might not be configured to respond to pings

#

and well they have no internet mostly but that should be irrelevant if you are using the VPN or attackbox as it puts you on the same network

wind mortar
#

Ah I see, thank you

pliant peak
#

hello, someone can tell me whats the tryhackme support email?

pliant peak
scenic torrentBOT
#

Gave +1 Rep to @zealous yoke

zealous yoke
#

npnp

wind mortar
#

Wait I can give rep

scenic torrentBOT
#

Gave +1 Rep to @haughty glacier

wind mortar
#

Oh nice, sorry for the ping though

haughty glacier
#

kekwsanta all good

tender plover
#

@ebon ore I am having similar issues a yesterday. No luck even with attack box or room such as set,

flat pecan
#

Not sure if this is the right place but is anyone having an issues with Autopsy in Disk Analysis & Autopsy? I can’t extract any files, they are extracted with 0 bytes. Can review the registry either.

echo moon
#

Whats the best thing to do if the flag is not where it is supposed to be? I am guessing its just reboot the box but hopeful thats not the case.

crystal marlin
echo moon
#

The Alfred box gives the location for the root.txt.

crystal marlin
# echo moon The Alfred box gives the location for the root.txt.

Ok, well unless you have deleted it I would say it should be at the location where they said it should be. But unfortunately I have not done that room, but would be the first time I heard that a reboot would solve the flag not being there, but maybe it does.

echo moon
naive dust
flat pecan
#

@naive dust Thanks. I have tried that but haven’t gotten a response yet.

scenic torrentBOT
#

Gave +1 Rep to @soft thunder

naive dust
#

Any time

modest widget
#

Anyone use crackmapexec with the mimikatz module and have it hang on 'waiting on 1 host'

#

it does the HTTP GET but never gets to the post

glossy sonnet
#

hello guys

#

I was playing koth and some guy restart machine just to kick me off

#

we was both root

#

and he changed password

#

then restart machine

#

..

#

sad

hallow spindle
scenic torrentBOT
#

Gave +1 Rep to @haughty glacier

mystic cape
#

hello people is the friends list working?

plain hedge
#

πŸ‘ That seems like the elegant way of getting the file across.

river urchin
#

Hello anyone help me

#

i got my access succesfully

#

but i cant ssh to the mechine ,why?

crystal marlin
river urchin
#

Erm so what is that mechine use for?

crystal marlin
stray cove
#

that machine probably doesn't have SSH, might have RDP though.

river urchin
#

Ermm....how can i attack it?

#

Use attaack box?

stray cove
#

it should open in the split view

crystal marlin
river urchin
#

VM?

stray cove
river urchin
#

πŸ˜…

stray cove
#

oh waitr

#

I need to read

river urchin
# stray cove

Oh yah ic that , so this mechine is browser-based mechine?

crystal marlin
river urchin
#

Erm.....yah i dont have kali linux as iam using window

stray cove
crystal marlin
river urchin
stray cove
#

so the room is a guided room, just go step by step

#

you're skipping ahead a bit too much

river urchin
#

So i just use attack box to attack the mechine ?

river urchin
crystal marlin
stray cove
#

it probably doesn't expose ssh in any case

#

going to check

river urchin
#

So this time i cant ssh to it make me confused

stray cove
#

ok there's a bunch of stuff open, but not 22 πŸ˜‰

crystal marlin
stray cove
#

unless they did something like Linux Fundamentals 1 first, which had an in-browser interface

river urchin
#

Oh yah

river urchin
#

so i need to get a virtual mechine from
attack box
thm given virtual mechine or
mine virtual mevhine

i can use virtual mechine to attack by this three method ?

crystal marlin
# river urchin oh i try to understand just now . u mean that window is not a virtual mechine th...

No I'm saying you are kind of limited to use your windows operating system to attack targets. So kali linux for example is an operating system being packed with lot's of tools for penetration testing. Just google "set up kali linux virtual machine" maybe you'll understand better then. The attackbox on THM has nothing to do with installing your own locally virtual machine. But of course you can just use the attackbox, but as you are not a subscriber you are limited to 1 hour per day to use it.

river urchin
#

like this?

haughty glacier
#

what have you been doing on the site so far to get to 0x5?

#

you have two main options to connect to the site, attack box (web hosted system on THM), or using OpenVPN from your own system

#

most people using the OpenVPN route do it within a virtual machine for security & to use something like kali to hack with

#

the machine you deployed earlier is a 'target' machine - that you would attack with either the attackbox or OpenVPN connected system.

river urchin
haughty glacier
#

well THM provides "Targets" within rooms

#

and it provides and "attack box" you attack the "target" with

#

Up the top is the "Attack Box" - that you attack with
Down the bottom is the "Start Machnie" - the target you deploy to attack

crystal marlin
# river urchin erm... so the virtual box of kali linux is a type of vitual mechine?

Maybe watch that and get familiar with the kali virutal machine or just virtual machines in general. https://www.youtube.com/watch?v=wX75Z-4MEoM

What is a Virtual Machine? Magic...that's what it is!! In this video, NetworkChuck explains what a Virtual Machine is, when you might need one, and how to setup a Kali Linux and Ubuntu VM on Windows 10 with Virtual Box.

Virtual Machine Setup

-Download Virtual Box: http://bit.ly/368FS7Z
-Down...

β–Ά Play video
river urchin
#

Oh yah

#

What to do if my attack box is over limit

#

I got non-sunscribe

#

Use mine virtual mechine(like kali linux) to connect to thm network to attack the target mechine

crystal marlin
river urchin
#

It is?

haughty glacier
#

like I said earlier, you can use OpenVPN to connect to the THM network and use your own system to attack the target

haughty glacier
#

you don't need a "virtual machine" @crystal marlin that is not the technology that allows you to do it

#

though, most people would do it from a virtual machine

river urchin
#

Is it the kali linux as a type of virtual mechine?

#

If yes why @haughty glacier say no need virtual mechine

haughty glacier
haughty glacier
#

you can connect with openvpn from anything

river urchin
#

Oh oh oh

river urchin
haughty glacier
#

however, yes, look into setting up a virtual machine for kali
https://www.kali.org/docs/virtualization/install-virtualbox-guest-vm/

crystal marlin
haughty glacier
#

kali linux is an operating system

#

people use virtualisation software to run it within their operating system

#

that guide I linked above shows you how

river urchin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

river urchin
haughty glacier
#

yes. that is the idea of a virtual machine

river urchin
#

As an example download the virtual box and install the kali linux ,then connect to open vpn then access to thm network , right?

haughty glacier
#

yeah, download virtualbox > import kali > download ur OpenVPN config inside Kali > Conenct via terminal to OpenVPN > proceed to do THM

river urchin
#

Hurry i finally understand what is the concept of virtual box..

river urchin
haughty glacier
#

np

#

gl

river urchin
#

gl

#

Cheer

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @haughty glacier

river urchin
#

Alr cya

glad notch
#

can I assume, that the "official writeup" i have to link in a room in order to go public is only accessible for the revierers, not for the room visitors/ctf challengers? or how do i launch a ctf room w/o writeup?

stray cove
#

just try to be sure it doesn't get indexed by google

deft gulch
glad egret
#

Did you run through the troubleshooting script?

crystal marlin
deft gulch
deft gulch
crystal marlin
deft gulch
#

Thank you so much!

lunar quiver
#

Hello Tech support, I am having a problem downloading the OpenVPN configs.... I go to my access page, inside the OpenVPN room, Server is US-East-Regular-1, but when I hit Download my Configuration Files, the page i get isUh-oh, this page has been lost in the matrix.
Vaders Mask Goes Here
Perhaps, go to your dashboard

daring kite
#

Hello everyone

#

Why is this appearing? It used to work :/ any help is really appreciated. Been trying to tackle this for an hour

keen scroll
# daring kite

Looks like your configuration file .ovpn is invalid, try regenerating another one

#

And/or update openvpn if it isn't up to date

clever matrix
#

I'm having VPN issues too:
2021-09-14 20:17:24 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-09-14 20:17:24 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-09-14 20:17:24 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10
2021-09-14 20:17:24 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2021-09-14 20:17:24 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2021-09-14 20:17:24 TCP/UDP: Preserving recently used remote address: [AF_INET]63.34.238.50:1194
2021-09-14 20:17:24 Socket Buffers: R=[212992->212992] S=[212992->212992]
2021-09-14 20:17:24 UDP link local: (not bound)
2021-09-14 20:17:24 UDP link remote: [AF_INET]63.34.238.50:1194
2021-09-14 20:17:24 TLS: Initial packet from [AF_INET]63.34.238.50:1194, sid=9b127cad b039e1a8
2021-09-14 20:17:24 VERIFY OK: depth=1, CN=ChangeMe
2021-09-14 20:17:24 VERIFY KU OK
2021-09-14 20:17:24 Validating certificate extended key usage
2021-09-14 20:17:24 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2021-09-14 20:17:24 VERIFY EKU OK
2021-09-14 20:17:24 VERIFY OK: depth=0, CN=server
2021-09-14 20:18:24 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2021-09-14 20:18:24 TLS Error: TLS handshake failed
2021-09-14 20:18:24 SIGUSR1[soft,tls-error] received, process restarting
2021-09-14 20:18:24 Restart pause, 5 second(s)

#

Updated everything. Tried recreating and downloading the config file

#

This is for Wreath Network but having similar problems with the main config

hard fractal
#

The Access Machines pop up is not changing when i connect to Indian server VPN... Can someone suggest any fixes

crystal marlin
clever matrix
#

Thanks, I did, yes

#

ah sorry, didn't try changing the main server. I'll do that now

crystal marlin
clever matrix
#

Still not connecting

#

I got the same Uhoh page as BindEyeVend when trying to download the EU-Regular-2

#

Custom 404 basically

#

oooh EU Regular 1 connects OK so it can't be an issue with my version of OpenVPN

#

Could it be the OpenVPN server on Wreath network

#

I think thats the 10.200.x.250 machine

crystal marlin
clever matrix
#

I didn't wait 3+ mins. Just waited for the timer which was a few seconds. I can try waiting 3+ mins though

crystal marlin
clever matrix
#

OK thanks for the suggestions @crystal marlin

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

kindred pagoda
#

#site-support The attackboxes I start are really slow is there anything I can do?

clever matrix
#

Waiting those few mins appears to have done the trick. Thanks again

kindred pagoda
#

ok will wait

#

stil really slow after 10 minutes

keen scroll
kindred pagoda
#

i am subscribed

#

is there a way to close every room and attackbox

#

it is doing of 1 password with hydra

#

every second

keen scroll
kindred pagoda
#

hydra 18 tries a minute

kindred pagoda
keen scroll
#

Those should terminate automatically once you leave themπŸ€”

kindred pagoda
#

18 tries a minute for hydra is not much right

keen scroll
#

By rooms, I guess you are talking about target machines that you get to deploy in the rooms. Those are also terminated after one hour if you don't extend their time

kindred pagoda
#

2 hours

#

will wait then I guess

keen scroll
kindred pagoda
#

its the H4cked room

keen scroll
kindred pagoda
#

I got the password finally lets finish this and I will see

#

thanks for the help

keen scroll
kindred pagoda
#

you did not

keen scroll
#

Great, you got the passwordπŸ₯³
Have funπŸ™‚

left obsidian
#

My account is not getting verified?

#

"Uh-oh! We could not verify your account."

steel basin
#

Hey guys,
Ive been trying to solve the Overpass challenge but the web server seems to be very slow. Ive tried on public instance and it even didnt want to let me in on the website. On the VIP instance pages seem to be loading but not fully. Other challenges work just fine. Pls help :/

elder saddle
#

Hi, I can’t access the machine IP address provided in the tutorial

crystal marlin
elder saddle
#

Am able to access the machine using browser, am on exploiting SMB tutorial then I used the IP address of the system allocated for my tutorial to try out the commands as it were on instruction menu, it’s not working. Most commands am typing on CLI isn’t working

#

I used β€œenum4linux-A (ip address of the machine info I got connected to) it’s not showing information about the system. I got error with that I couldn’t complete the task

crystal marlin
elder saddle
#

Hmm hmm

crystal marlin
dusk linden
#

Hey, I'm experiencing issues with the zthobscurewebvulns Task 18 [Section 3.5 - JWT]: Challenge Machine (JWT_2). It fires up and gives me an IP, but whatever app is there appears to hang and eventually time out.

#

There's a web server running (can be confirmed by random URLs returning 404). From reading around the web I would expect the /auth end point to do something at least but it times out as per above. Let me know if there's any more info I can provide πŸ™‚

#

Can confirm all the obvious too: no proxy, other machines work just fine, have tried turning it on and off a few times.

crystal marlin
dusk linden
#

That did the trick. Thanks!

random lynx
#

Hello people, I'm having trouble on the Upload Vulnerabilities room, I added the host to /etc/hosts as specified in the beginning of the room and I am able to access the different websites from my browser, but Burp fails to. When I turn on intercept and forward the request, it never comes back and I have an error in the dashboard "Error Proxy Failed to connect to java.uploadvulns.thm:80", I did not find any solution from Burp doc so far, did anyone ever had this problem ?

crystal marlin
random lynx
#

Indeed there were two lines, changed it and restared burp and it's working πŸ™‚ Didn't know about this thank you very much for the help

blazing laurel
#

Is there an issue doing Task 26 in the OWASP Top 10 Course ("Insecure Deserialization - Code Execution") from the Attack Box? I've successfully generated the encoded string after creating the script, but it's having no effect when I replace that value for the field in my cookie. Any idea what I might be missing? I've checked my script letter-for-letter and copy-pasted against successful writeups, but refreshing the page after updating the encodedPayload just instantly refreshes with no nc connection.

hard fractal
# crystal marlin What do you mean by access machines pop up ?

the red box on top of the rooms is not changing to green...
When we access a machine and connect to VPN we see the ip of the vpn on top in a green box(which without connection is red and say access machine)
But this is not happening in the case of Indian VPN servers

crystal marlin
crystal marlin
#

!docs verify

sharp bisonBOT
keen scroll
hard fractal
keen scroll
#

Access Machines?

hard fractal
#

yes

keen scroll
#

Is it affecting you in any way?

hard fractal
#

yes i need my machine ip which is generally displayed in that spot to be visible

crystal marlin
keen scroll
hard fractal
hard fractal
keen scroll
#

Ok, the web page won't show your IP in that spot if that's what you are asking. (EDIT: it does show that)
You can instead visit https://tryhackme.com/access and have your IP displayed there

crystal marlin
hard fractal
hard fractal
keen scroll
#

You don't need to regenerate or use a different VPN config
Only select the correct VPN Server from the drop-down list

hard fractal
hard fractal
keen scroll
#

So you have IN-... selected there and you are using IN-... config file?

hard fractal
#

yes sir...

keen scroll
#

There have been some issues with that part of the site, VPN config
If you are required to add your IP in your screenshot for any assignment, please consult with your mentor
Or you can edit that Access Machines element to show your IP, if you can πŸ˜…

hard fractal
keen scroll
#

You just need to change the class attribute from thm-disconnected to thm-connected and change Access Machines text to your IP

hard fractal
#

yeah right...
Thanx man for helping me out!!

rapid shore
#

Getting 404 when trying to download openvpn config

#

Anyone else experiencing this or am i doing something wrong?

river urchin
#

show ur step

rapid shore
#

like, i've tried changing the VPN Server between the two regular ones, and I've regenerated it (after i got the first 404)

river urchin
#

did u got this after u change the vpn server

rapid shore
#

yes

river urchin
#

maybe u tried to reload whole page and did it again

rapid shore
#

no succes, tried reloading with ctrl+shift+r

river urchin
#

erm excuss me ....which country u live in

rapid shore
#

denmark

river urchin
#

and which server u choose

rapid shore
#

i'm on a vpn though, also in denmark

#

regular 1

#

EU-Regular-1

river urchin
#

so ur problem is got 404 error when when u click download?

rapid shore
#

yes when i try to download the openvpn config

#

using both the green button and the link further down

river urchin
#

erm sry i cant fix ur problem

#

i never seen this before

#

sry

rapid shore
#

hm

river urchin
#

maybe this will help u , the 404 error is when the url (the button ) u click is removed or not exist

worn breach
scenic torrentBOT
#

Gave +1 Rep to @hollow otter

worn breach
#

thanks mosquittos I'll try that also

subtle coral
#

Hi everyone, just upload my first vm file. How long will it take for converting?

rapid shore
#

@hollow otter I did not get it to work following both of those suggestions..

agile fossil
#

Hi I receive 404 wheb trying to download vpn configuration files.

rapid shore
#

@agile fossil This was suggested to me: #site-support message
But it didn't work for me. Hopefully it works for you

hollow otter
glad egret
#

@undone river

#

!vpnscript

sharp bisonBOT
sharp bisonBOT
keen sparrow
#

I tried to change my payment info but i don't see an option, so i decided to cancel the subscription but I still don't know how to do it 'cause this button appear. My subscription end yesterday. Can you help me?

haughty glacier
#

does clicking that button do anything?

#

I think usually after you cancel, you have to wait till it expires before you can re-subscribe

#

that button kinda looks like what you want?

bronze vale
#

All you need to do now is wait for the time you paid for to expire

keen sparrow
#

if i click the button it like i never cancel the subscription but it dont let me change my payment info and my subscription expire end yesterday

frosty bramble
#

Hi! I'm getting still the 404 error code when trying to download an OpenVPN from EU-Regular-1 -server or from EU-Regular-2 -server. I've been trying these instructions: #site-support message but didn't help. I've also tried to make a new account, but same thing. Any ideas? I've been using USA East, but eg NMAPing is so slow that it makes it tedious, living in Europe. :D I'll try to make a new account again, and see if it would this time work. Thanks in advance! :)

Edit: I've tried to use another browser that did not have any kind of extensions but did not work either.

humble cradle
#

Yep same here

#

So what is the problemo?

rancid plinth
#

Is it just me or even after connecting openvpn (Initialization Sequence Completed) it shows disconnected? It's been 15 mins now and several refresh.

rapid shore
#

Same here re. 404

humble cradle
#

Yep

thick oak
#

Is it possible to change my display name on the site?

thick oak
#

dunka

#

Thats not really what Im looking for

#

Unless I am blind

haughty glacier
#

is username something other than display name?

thick oak
#

No, but I wanna change it on THM, not in here

#

Or are you saying there isnt a way to do it on my own, to email support. If so, thank you!

haughty glacier
#

lol, yes you have to email

thick oak
#

Word, appreciated

haughty glacier
#

np

crystal marlin
rancid plinth
crystal marlin
crystal marlin
# rancid plinth Cannot access 10.10.10.10

So I would try if you can access a target machine, maybe it's just somehow not working properly as the website does. Btw, you keep the terminal open where you started openvpn and you are also not pressing ctrl + C after connecting via openvpn? Because if you close the terminal where you started openvpn you will get disconnected.

crystal marlin
rancid plinth
#

Yes πŸ˜†

#

Let me send you screenshot again

crystal marlin
rancid plinth
#

instead I can use Attack box but for 1 time only

crystal marlin
rancid plinth
crystal marlin
rancid plinth
#

Anyway Let me use Attackbox for today, I'll checkout openvpn stuff after day or two.

undone river
# glad egret !vpnscript

I didnt have a problem using the vpn I had a problem downloading the configuration in the first place. We solved it, though we had to switch to IN servers while we are from EU

rancid plinth
#

Yup its working for me too
thanks everyone

regal hemlock
#

msf6 exploit(multi/http/apache_mod_cgi_bash_env_exec) > exploit

[] Started reverse TCP handler on 10.17.22.82:4444
[
] Command Stager progress - 100.46% done (1097/1092 bytes)
[*] Exploit completed, but no session was created.

i am try to solve 0day but getting this error just whole day i am try getting this error i am just frustrated please guide me on this

keen scroll
#

Did you modify all of the required options?
Like LHOST (you did this one), RHOSTS, TARGETURI, HEADER, ...?

#

And please share any code or output in between ``` to prevent any text formatting by Discord or post images

regal hemlock
# keen scroll Can you share the output for `show options` while in the same `msfconsole` sessi...
   CMD_MAX_LENGTH  2048               yes       CMD max line length
   CVE             CVE-2014-6271      yes       CVE to check/exploit (Accepted: CVE-2014-6271, CVE-2014-6278)
   HEADER          User-Agent         yes       HTTP header to use
   METHOD          GET                yes       HTTP method to use
   Proxies                            no        A proxy chain of format type:host:port[,type:host:port][...]
   RHOSTS          10.10.64.229       yes       The target host(s), see https://github.com/rapid7/metasploit-framew
                                                ork/wiki/Using-Metasploit
   RPATH           /bin               yes       Target PATH for binaries used by the CmdStager
   RPORT           80                 yes       The target port (TCP)
   SRVHOST         0.0.0.0            yes       The local host or network interface to listen on. This must be an a
                                                ddress on the local machine or 0.0.0.0 to listen on all addresses.
   SRVPORT         8080               yes       The local port to listen on.
   SSL             false              no        Negotiate SSL/TLS for outgoing connections
   SSLCert                            no        Path to a custom SSL certificate (default is randomly generated)
   TARGETURI       /cgi-bin/test.cgi  yes       Path to CGI script
   TIMEOUT         5                  yes       HTTP read response timeout (seconds)
   URIPATH                            no        The URI to use for this exploit (default is random)
   VHOST                              no        HTTP server virtual host


Payload options (linux/x86/meterpreter/reverse_tcp):

   Name   Current Setting  Required  Description
   ----   ---------------  --------  -----------
   LHOST  10.17.22.82      yes       The listen address (an interface may be specified)
   LPORT  4444             yes       The listen port
keen scroll
mossy ether
#

hi

#

i faced an issue with openvpn conf file πŸ™‚

#

can i get some hjelp?

#

i mean im getting 404 after clicking on downlad button

wooden void
#

Hi guys, i have a question, i need to perform an nmap on an IP address and I did :
nmap [IP]
nmap -sS [IP]
nmap -sT [IP]

#

This is on network services 1 / FTP / Question 1

#

The only port i can see is Port 21 FTP, but the answer is 2

#

I did a mistake or not enough precisions in my command ?

trim veldt
#

maybe try a full scan with -p-

wooden void
#

its weird because the other open port is the port 80

#

But i'll try with -p- ty

ebon ore
#

hey im running the burpsuite room and im running the request analysis and after pausing at around 10k requests I am not able to click the analyze now button

crystal marlin
agile carbon
#

Hey guys - I've just enrolled in the Pre-Security pathway but I previous completed the cat linux.txt badge / rooms (linux part 1-3) but in the Pre-security pathway its saying I have not completed them... is this a bug or intended?

#

Some context ^

crystal marlin
# agile carbon

Have you tried to do a hard refresh with ctrl + F5 if you are on chrome or firefox?

agile carbon
#

I hadn't but just tried, showing incomplete still ^^ thanks

elfin swan
#

i remember having that bug also back in the day. I can't recall exactly what I did to resolve it. I think I actually just went through each page in the room and made sure I hadn't missed any "completes"

agile carbon
#

Sure, I'll give that a go, thanks S0cket

crystal marlin
# agile carbon

Well these rooms also got updated, so if it was ago quite a while when you did them you received the badge for the older linux Fundamentals rooms but haven't done the new ones.

agile carbon
#

Aye its been maybe 4 months?

crystal marlin
agile carbon
#

Can't hurt to have a refresher, just wanted to check, thanks for the info

crystal marlin
agile carbon
#

ah you are indeed correct

#

S0cket was onto it!

#

Thanks a bunch @crystal marlin

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

ebon ore
#

new question, im running vulnversity and pinging the server works just fine but for some reason i cant seem to access the website on firefox for the burpsuite stuff

crystal marlin
ebon ore
crystal marlin
ebon ore
crystal marlin
ebon ore
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

agile carbon
#

Am I blind? Where does one shutdown a machine from a previous room? - Yep im blind

short yoke
#

hello, can i still get tickets from completing the pre security path rooms?

rancid temple
naive dust
#

( Or months ? Can't remember cri )

crude lake
#

is anyone able to access OpenVPN via Indian Servers?

quartz pebble
#

Do you need a USB flash to copy a linux distro file into your SSD or will a pendrive work?
(I'm tryna change my OS kekw)

sharp radish
#

I want to ask about discount for student. I have registered with mail edu but that last 2 months. it automatically deducted my 10$ monthly

wind wedge
sharp radish
#

Thanks

elder wraith
#

i m getting this error in nagio room

#

Databse Error
A database connection error has been detected, please follow the repair prompt below. If the issue persists, please contact Nagios support.

Run the following from the CLI as root to attempt to repair the DB:

/usr/local/nagiosxi/scripts/repair_databases.sh

naive dust
plush bay
#

have you tried changing vpn server???

#

if yes have you tried regenerating and waiting a few mins

#

if yes shadow dunno what the next step was

orchid cosmos
#

Having issues with OWASP Top ten task 7. I run the <iframe src="javascript:alert('xss')"> command and get the pop up but the search results box is blank. I dont get the flag needed to proceed. I have restarted attackbox, and active machine several times, enabled and disabled popups in firfox and changed themes to see if I am missing something. Inspection shows nothing either

naive dust
#

solved

paper oasis
#

Which channel is good for support with box creation? I have a tech issue

glad egret
#

Probably the creators-lounge. A mod will have to add you to it

rancid temple
# naive dust

this is a problem with only one of the servers. is it a US one? I and a few others have had the same problem. I mentioned it here but no one from thm has acknowledged ityet

rancid temple
sinful iron
# naive dust

I had the same issue this morning but it cleared up. Try agin.

orchid cosmos
sinful iron
#

Anyhow, I'm reviewing SMB under the learning thing but the target host doesn't response either by VPN or by using their little 'attack boxes'. Can ping localhost, defaut gw but the target at 10.10.10.2 is dead. is this normal?

orchid cosmos
rancid temple
rancid temple
rancid temple
sinful iron
#

I did

rancid temple
#

and?

sinful iron
#

arp cache empty, smbclient = connection failed, nmo arp cache entry anyhow

#

simple ping fails

orchid cosmos
rancid temple
keen scroll
sinful iron
#

the academic material says 10.10.10.2

#

no reason to believe .10 is teh target

rancid temple
#

10.10.10.10 is like a test target or something?

#

i forget, infloop can tell you

sinful iron
#

anyhow, that faild also

keen scroll
#

Actually, 10.10.10.10 is to test your connection to THM network

sinful iron
#

you'd think this platform would work as described

agile fossil
#

Hey, I have a problem with room blue from offensive pentesting. I know which exploi should I use, but it cannot create session and after few tries machine stops responding at all.

keen scroll
sinful iron
#

yes, connected via VPN and on their little hackbox, neither see .2

rancid temple
#

just to be extra sure everything with the vpn is 100%

sinful iron
#

again, i can ping my default gw, localhost and .10 responded. just not .2. It's not a VPN issue

sinful iron
#

good answer

elfin swan
#

@sinful iron The machine may not respond to pings

rancid temple
#

have you tried turning it off and back on again? xP

sinful iron
#

we know that. DOesn't respond to smbclient nor nmap

#

reboted already, re-VPN-ed, got fresh VPN config

rancid temple
#

i see gregs patience slowly dwindling xP

keen scroll
#

Oh ok. The AttackBox should be able to connect to the target.
I knew, GregM might know thatπŸ˜†

sinful iron
#

You'd think

rancid temple
#

well, if 10.10.10.10 works it makes me think the problem is with the box he's targeting. if he reverted, i'm unsure where to go from there

sinful iron
#

yes.

#

but people always blame the messenger

rancid temple
#

ok but admit it

keen scroll
rancid temple
#

lot of the time it is user error xP

sinful iron
#

certainly but I've done all the troubleshooting things imaginable to me

#

wonder if my 10. network is causing this. I'm on a 192 but tun0/VPN.

rancid temple
#

me and infloop don't have premium so we can't boot up the room ourselves xP

#

hold up

#

your tun0 lhost is on 10. right lol

sinful iron
#

yes

rancid temple
#

any firewall rules ?

sinful iron
#

not on the host

rancid temple
#

you could have smb not allowed outbound

#

router maybe?

#

shit vpn

sinful iron
#

that wouldn't explain why ICMP fails

rancid temple
#

do we know if the box is supposed to respond

#

to those

keen scroll
rancid temple
#

i conclude the box is messed up

#

you two have fun with this, i got PWK machines to pwn

#

testing for OSCP in 3 days πŸ™‚

sinful iron
#

see yas

#

nice. good luck. That exam scares me

rancid temple
#

same

sinful iron
#

wait, how's the study PDF for that? worth the time?

#

er 1,000 USD?

rancid temple
#

lol no

#

if you want a pdf do virtual hacking labs

#

much cheaper

sinful iron
#

like Proving Grounds?

rancid temple
#

I hear proving grounds is good

sinful iron
#

I got some cool writeups on proving ground vulnhub boxes at madunix.com

#

might help on your oscp

rancid temple
#

get a signed cert xP

sinful iron
#

i shold!

rancid temple
#

its free

sinful iron
#

been lazy plus the site got whacked when I forgot to pay hosting fees

#

fkers

dim wigeon
#

Room USTOUN
Fucking room, not fuction!
Port 1433 closed
5 Restart and not function

sinful iron
#

alright. see yas.

keen scroll
agile fossil
#

Can any of you help me with eternalblue issue? Blue room. Exploit completed, but no session was created?

agile fossil
#

ok ,thx

elfin swan
#

^-- and reboot the machine

agile fossil
keen scroll
#

The room has been working for me, so there might not be a tech-issue , thus not requiring tech-support so soonπŸ™‚

flat chasm
#

every time i hit download on OpenVPN Config .... it's keep giving me error

#

anyone know how to solve it ????]\

flat chasm
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

rustic sand
#

Hi all, is it just me or does network connection to the machines become unstable during rush hour?

crystal marlin
rustic sand
#

I know my connection is stable but I am constantly losing connection to the boxes I am attacking, and I only got this behavior during what I can interpret as EU rush hour

#

and I was just trying to figure out if in fact it has something to do with network traffic

crystal marlin
rustic sand
#

yeap

crystal marlin
# rustic sand yeap

Well if you say that's only happening while "rush hour" then it might be really just because of that. Either way, the next time you face that issue you could try sudo ifconfig tun0 mtu 1200 to see if that solves your issue, if it does - great, otherwise just put it back to 1500.

rustic sand
#

Thanks but why would that help me?

crystal marlin
rustic sand
#

Ah, ok. Didn't know that. Thanks @crystal marlin

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

lone knot
#

does anyone know why this happens?

glad egret
#

What are we looking at?

wind wedge
#

Been there for a few months now

lone knot
scenic torrentBOT
#

Gave +1 Rep to @wind wedge

errant valley
#

Anyone know why I would be getting Color Depth error's when trying to use Remmina to connect to my lab machine?

old halo
#

Anyone here? I can't use the attack box at home

naive dust
#

quick question if I run kali linux on my Virtual box do i need to lauch open vpn on mac or install and run it in the virutal box?

noble dawn
#

I have been having troubles with very slow connections when accessing any of the rooms http sites through OpenVPN. The page will get hung up when they try to access a cloudfare or bootstrap site. Internet connection should be plenty fast enough.

#

Disregard. Read back through and setting the mtu to 1200 seems to work well enough.

fluid comet
crystal marlin
minor cedar
#

hey guys, I'm having problem with the Network Service room, the problem is that the option to put the answers is not available, and the room seems already green like they have already answered.

silver lark
#

Anyone has the link how to generate invoices for vouchers that I bought last year?

arctic river
#

hello

#

i got a doubt

distant raft
#

Hy

#

Ihave aquestion

arctic river
#

in tryhackme dashboard ts says that when you get 45 badges then you will get a 5% discount so i want to know weather the discount is for monthly premium or annual premium

#

@Staff

#

@zealous yoke

zealous yoke
#

Hi, please be a bit patient -- someone will help you out when they can

#

The 5% discount is "off [the] swag" meaning THM merchandise store.tryhackme.com (not your subscription)

#

You have to email support'tryhackme.com to receive your voucher. Please include your THM username

vapid mirage
#

any one know if there's a convenient page that shows all currently running vms? it would be nice to see where i have left the lights on, as well as have one page to refer to for the IP, time, and similar info

zealous yoke
#

there is a javascript snippet to terminate all of them at one time but I can't quite remember what it is with the new API route

vapid mirage
#

oohh api :3

#

are there any api docs out of intrest? that answers that question tho πŸ™‚

#

thank you

zealous yoke
#

There is, but the api docs currently are quite out of date as of recent (as we just had a whole refactor for the API see here: #announcements message). To be completely honest, I really haven't had the time to update them @vapid mirage

Discord

Discord is the easiest way to communicate over voice, video, and text. Chat, hang out, and stay close with your friends and communities.

#

Maybe I can make some time over the next week or so but here is a community repo for the API, no reason why others cant commit ((:

#

the only actively maintained API docs are our education & business APIs (:

#

I'll work on the community/site stuff when I can

vapid mirage
#

Thanks I'll give it a look

valid drift
#

M not able to upgrade to premium, it's not accepting payment

vapid mirage
#

Is the thm-api-py the current API code?

nocturne acorn
#

Does anyone know how to enable the teacher dashboard? I'd like a better way to assign rooms to students that just sending them direct links

odd vine
#

Ive just signed up for the premium tier, i am trying to connect to the VPN from my own linux host and I am getting the following errors:

2021-09-17 15:33:56 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10
2021-09-17 15:33:56 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-09-17 15:33:56 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-09-17 15:33:56 Cannot load inline certificate file
2021-09-17 15:33:56 Exiting due to fatal error

I have regenerated the connection pack, rebooted, updated my distro and tried again, same issue.
I can connect to other VPN's via openvpn (https method) without issue.

Can someone please help me out?

rapid shore
#

I'm still getting 404 on my EU regular openvpn config download. Tried everything I can find/have been suggested here, including regenerating (and waiting 5 min), changing VPN server, logging out and in. I'm at a loss here, no idea what to do. Anyone?

odd vine
#

@rapid shore I am trying
VPN Server Name EU-Regular-2

Is this same server you are having issues with?

#

access page has the status as UP

rapid shore
#

I have tried both EU-Regular-1 and EU-Regular-2, tried several times over the past few days

#

OH

#

finally

#

got a ovpn file

#

nvm haha πŸ˜„

odd vine
#

...so ive got the file... but

#

it isnt connecting

#

chucking the errors i posted above ^^^

#

@rapid shore can you connect okay?

rapid shore
#

gimme a sec and i'll try

odd vine
#

@rapid shore oh wait..im in.

#

had to change server

#

VIP one worked πŸ™‚

rapid shore
#

πŸ™‚ let's see if i can get in too

#

seems i'm connected just fine. Finally I can get to the fun part πŸ˜„

vernal forum
#

hii can some one tell me how to change the country from my profile

keen scroll