#site-support
1 messages Β· Page 252 of 1
Wreath have different vpn config.
If you are receiving a 404 error after attempting to download the OpenVPN Configuration file please try these steps:
β’ Press regenerate, wait 2 minutes and then try downloading again
β’ Change VPN server and try downloading again
β’ Log out of your account and log back in.
Sorted, thank you.
Anyone know how long it usually takes for a room to go public from submission? I've been waiting 2 weeks now
Hey I need help ! It's urgent regarding voucher purchase!!! Any Mod up ?
Moderators donβt deal with vouchers, please email me at support@tryhackme.com @chrome swan :)
i would like to change the CC that pays my subscription. I can't seem to find a way to do that online. how can i do this?
Thanks, I fix error
Gave +1 Rep to @placid mango
Remove your card, then add the new one once your subscription ends
i assume you mean cancel sub then resub? there's no "remove card" option
Yeah. Cancel sub
Np!
looks like i'll have to wait a bit. once it expires i'll be able to resub.
Yup! That's what you'll want
Since you cancelled, it won't auto-pay another month. That'll give you a chance to sub with a different card
yes thanks.
guess it is the same procedure when you get a new card as the old one has expired
I started a machine in a room and then I closed that tab, as I go back to the same room again it shows 'start machine' but my old machine is still on.
any way to go back to that old machine page? I need to increase the time for the machine.
is the bar with the machine running and its ip address still present or is it gone???
it's gone.
I didn't receive a welcoming email nor I had access to the network
Wassup with that
I don't recall there being one, is your email correct in your profile?
Yup
Every time I try to use john the ripper in the TryHackMe Kali Linux box I always get a response like this. Anybody knows how to fix this?
@bronze vale can you look it up
I responded to your DM but you didn't reply:)
I replied there
Try extract rockyou first
thanks! i should have thought of that before
Gave +1 Rep to @hollow otter
it worked, my bad i wrote the ip first
Hi people. Is there a problem with the vpn servers? Been trying to connect but no joy. Tried all vip's and regular servers but not connecting
I had to regenerate my vpn pack a little while ago. After that it's working just fine
can someone help me? im working in the network service class and cant find the answer to number two, task 3, enumerating smb. i looked up the video on youtube and my nmap scan isnt coming up with similar results as the guy on the video. i have tried conducting the scan the way i have it in my notes "nmap (scan type) (machine_ip)" and i also tried his way "map (machine_ip) (scan tyoe)". can someone please tell me what im doing wrong.
when a module is remade/updated do we lose progress? I completed the burp suite module and got the badge but since it (maybe) got an update my progress reset on it
How can I attach a file to my message ?
!docs verify
Hi I just joined the website. I payed for the monthly subscription. My card was charged but I still didn't get access?
If anyone can help me I will very much appreciate it! π
What access are you referring to? Are you talking about access to Subscription Machines?
I'm talking about the subscription on https://tryhackme.com/why-subscribe
Go to your profile. Does it show this?
No just the typical 'subscribe' button. Looks like it errored when I payed hence I didn't get processed.
You might want to email support@tryhackme.com and make sure you didnt actually get charged. It might be pending on your card, but your bank might have flagged it as unusual activity and froze the payment. Happened to me the first time i subscribed π
This makes the most sense. Thanks will shoot them an email! π¦Ύ π€
Gave +1 Rep to @stone gust
Awesome! Good luck! π
Hello Team, in investigating windows the second lab in the section Incident Response and Forensics, you instruct me to connect RDP to the machine are you mean to press start machine and access the affected machine
RDP is short for Remote Desktop Protocol. If it says to RDP I'm gonna assume it wants you to connect via RDP which would be after you already started the machine
is this mean I will be affected by the affected machine if I'm using my network and access it
I'm not sure what you're asking
Hey tech support, can I talk to someone for about getting my streak back if I missed it by it few hours?
I'm having an issue there too! The IP loaded up for me, but when I try to SSH in, it doesn't accept the default tryhackme password
Send mail to support@tryhackme.com .
-ban 819761521861197854 discord nitro scam. Ban appeals are bans@tryhackme.com .
π¨ Banned CodingSolo#0165 indefinitely
I've stopped learning for a long time but I guess I'm ready to try again now but I need some help
i can't find a way to to fix regional blocking openVpn on my country (Egypt)
any solutions ?
if you subscribe your attackbox gets a public ip which does not need a vpn to connect too
so you can just ssh into it
or vnc
getting past vpn blocks in countries is not really a thing we do here except by what shadow stated if shadow has understood it correctly
i can't afford a subscription , i mean the internet constraints on Egypt prevents me from connecting to TryhHackMe vpn server without getting banned after few minutes
any advise ?
guess your option is to use the attackbox from your browser then as you can't use the vpn
that box is already on the thm network
sadly you can only start it once a day without a subscription and it does not have internet access
thanks , i guess I'm going back to programming π’
can openVPN be used on a virtual machine?
yes you can use openvpn on a virtual machine
awesome, was just double checking
for most of the free rooms you won't need internet access on the attackbox anyways... the main limiting factor is you get only one attackbox launch a day though you can extend the attackbox timer over and over again to keep using it for a lot of rooms in a day as long as you do not shut it off
hey, i want to play the network rooms but i need 7 day streak. i got the 30 day streak badge before networks was a thing, i really cant stay for 7 days because i only have time once in a week. is it possible that you give me the 7 day role so i don't have to get it?
i tried doing rooms at work but i could only get to 4 days max
You don't need to do a full room ti jeep your streak up. You just need to answer 1 question every day
hey i have a question
how do i connect to the room after i made a connection with openvpn
What room?
Once the VPN connection is made you should be good to go. Wait for the IP of the room to appear and you can start from there.
Streak has just disappeared for some reason. Is this a common issue or?
guys i got problem here, the machine working is not showing the files and folders as stated in the questions here! any suggestions
you are not in the correct directory
what room is this? Linux fundamentals?
alright, lets move to #room-help
ask away
hi there
is there a way to download some files into a machine that i have uploaded or ?
i have some forrensic practice to do and couldnt get the same programs installed locally
not sure if scp works when connected trough vpn, but i uploaded some large files to the portal, but not sure how to get them into a machine
is that question ok to ask here? ive searched for the answer but no luck so far
i guess that was a stupid question, i thought the machine didnt have public internet access, my bad, but im not sure if i am allowed to upload a image for forensics?
even worse my appologies i was just reading and reading and didnt realize there was public access without vpn also, sorry to ask so silly without actually seeing it
I'm working with a webserver that uses SSH keys in order to connect to the server. However, I'm unsure where I should be securely storing these SSH key files? When trying to use ssh-add nameofkeyfile.key it yells at me for having it in an unsecure place. I though once I added the key I could then move it to an encrypted drive and that the key would still be securely stored by ssh
#infosec-general ask here.
ty
Thank you
Gave +1 Rep to @abstract raven
Hi, I am facing some problem regarding subscription. If I can get any help
actually I was tryinh to have a monthly subscription, but the transaction is not going through the paypal. So i can;t understand if its the problem from paypal's side or tryhackme's side
Hello, i have a university email, why am I not getting the student discount for the subscription?
Send mail to support@tryhackme.com .
Hey uh, I'm trying to connect to the attackBox via the browser to complete Linux Fundamentals Pt. 3
But it says that the password is incorrect when trying to ssh.
Any clues as to why? :/
I terminated the machine the first time it happened and restarted it, but it happened again.
Might be delay. Wait for like few minutes after typing the password
No no, i mean once you type the password you wait like 5 seconds, then hit enter
tryhackme is the password, right?
that's what it says on the left hand side yeah, but the terminal isn't taking it.
oops, i think i know what i did wrong, one moment
okay, fixed, ignore me, im dumbo, forgot to type the username (: (: (: 
Beautiful
Yeah but I put the ip in the browser and it shows the I have to replace a file
Which room are you doing?
Linux 2
Fundamentals Part 2?
Yeah
Which task?
Didn't even start the first one
The machine won't deploy because I already used it so I'm trying to SSH into it
The room needs to be deployed in order to SSH into it.
You can always Terminate the room, restart it, and reestablish your SSH connection.
But I would start from Fundamentals 1, as info will carry over to the other modules as well (2 and 3).
Ok, if you are still having problems just stop by here again. π
Access page isn't 100% accurate
Any way to change my username?
I don't see an option to change the username. I would hate to delete the account and create a new one thereby losing all my tracks/training.
Email support
Wed Oct 13 21:23:51 2021 TLS Error: TLS handshake failed
Wed Oct 13 21:23:51 2021 SIGUSR1[soft,tls-error] received, process restarting
Wed Oct 13 21:23:51 2021 Restart pause, 5 second(s)
Wed Oct 13 21:23:56 2021 TCP/UDP: Preserving recently used remote address: [AF_INET]x.x.x.x:1194
Wed Oct 13 21:23:56 2021 Socket Buffers: R=[x->x] S=[x->x]
Wed Oct 13 21:23:56 2021 UDP link local: (not bound)
Wed Oct 13 21:23:56 2021 UDP link remote: [AF_INET]x.x.x.x:1194
Wed Oct 13 21:23:56 2021 TLS: Initial packet from [AF_INET]x.x.x.x:1194, sid=x x
Wed Oct 13 21:23:56 2021 VERIFY OK: depth=1, CN=ChangeMe
Wed Oct 13 21:23:56 2021 VERIFY KU OK
Wed Oct 13 21:23:56 2021 Validating certificate extended key usage
Wed Oct 13 21:23:56 2021 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
Wed Oct 13 21:23:56 2021 VERIFY EKU OK
Wed Oct 13 21:23:56 2021 VERIFY OK: depth=0, CN=server```
what's going wrong here?
vpn servers EU VIP are making (for me) invalid ovpn configs as well
^the logs are from a config generated on US West VIP
Have you tried downloading a new .ovpn config? I had a similar situation, I kept regenerating a file until it worked.
Regenerate your vpn file
Weird
Idk
I was having the same problem the other day. Regening hefixed it for me
I have lost my streak can i get it back?
56 votes and 5 comments so far on Reddit
how can I check my old streaks?
Go to your profile, click Public Profile and then go to Yearly Activity. I think that's what you mean.
I need some help that isn't on THM, hopefully it's ok to ask. I use Kali in a VM and over the last three days my VM network has been INCREDIBLY slow. First I thought it was my VPN, but I downloaded a new configuration, just in case, but that wasn't it. Any ideas?
is your internet itself slow?
Not openVPN. I thought it might be that, but I tried navigating around without the VPN on and it was still real slow.
As I said before, I haven't been having issues until 3 days ago, and I've been using this VM literally everyday this year.
m
Hey guys is anyone having problem with the machines that is being proving to you ? Mine is going crazy ππ
nope
can i please get some help with burp suite. for some reason i cant access the web application they want us to. ive tried adding ports 8, 8080 and 3333. what an i doing wrong
Need more info. Which room is that?
the room only say burp suite. its on the second page when you are searching for easy rooms
do you mind if i DM you?
Sure, but let's talk here cause others can see and help as well. π
Are you connected to vpn? And can you ping the machine? Also, check if Burp has intercepted request or not.
The command line stalls when I input a command for the Network Services 2 Room on NFS
anyone know possibly why?
even just doing a simple cd /tmp/mount/ doesn't work
I've restarted the room as well but no luck
yes i am connected to the machine and when i try to access the web application dont matter it the interceptor is on or off. it will not go to the web page
Show screenshot of what you are doing.
im working on windows so i dont really knew how to screenshot. im more used to mac os
Win + PrintScreen or Win + Shift + S.
im doing it as they say. i have burp running along with firefox
i see you have /#/ as a port. should i try that?
No, just put ip and it should work. Make sure interception in Burp is off.
Or just forward request when you enter it.
ill tel forwarding the request and let you know
try
im getting an error page
and it will not let me screenshot it
is what im constently getting
That's not the same IP as above.
Huh what? Use the ip you get when room machine is deployed. Also, are you sure you are connected to tryhackme vpn? And can you ping the machine?
im more then positive im connected to openvpn and the first pic is the ip i got when i deployed the machine
im not to sure about pinging the machine.
I have problem regarding subscription to whom should I contact any email id ?
Hi.. I am not able to send screenshot/images/any media file.
Advise.. Help..
I want to buy try hack me premium subscription but i haven't any credit card and paypal account I have only domestic debit card ,Paytm, google pay how can I buy it
Which contry.?
*country
India
I m from India too. Debit card worked for me. My card type is International Debit Card.
And..
But my not :(
I have also added my DC in my paypal.. so it worked that way too.
MasterCard/Visa card is working fine. RuPay card gave me real pain.
Adding bank detail is for getting the money from wallet to bank account.
You have to add Card.
for payments.
Ohh
!docs verify
Follow the link above
Can anyone??
@sour kelp ^
Thanks @bronze vale
Gave +1 Rep to @bronze vale
Hello,
I am currently using OpenVPN on a virtual machine to access the rooms and other things, however I am currently facing one problem which is that I cannot use the browser. I have checked the network settings and I have them set to "Use system proxy settings", am I supposed to use something else?
If not can someone recommend me something?
Running Kali-Linux-2021.3-vbox-amd64 on VirtualBox
Using EU-VIP-1 Server on TryHackMe
hia, am doing the authentication room right now and am trying to do a dictionary attack through owasp zap, but I always get the "405 method not allowed" error after sending the POST request... any ideas? EDIT: nvm I figured it out, just a stupid mistake
https://docs.tryhackme.com/docs/openvpn/troubleshooting/openvpn-troubleshooting/ maybe this link can help your problem
Using the THM troubleshooting Script:
and I do live in Saudi Arabia, they do double natting here
so I think I can't do much about it
thanks
Gave +1 Rep to @cinder mirage
your welcome π
Hey hi tech support. As most ssh key with faulty library are revoked.
Is this possible that my updated ssh client will stop connecting and doesn't able to connect to it? in some room which has those ssh client
Hi
can I buy a subscription by paying by blik or bank transfer?
my bank does not allow you to connect the card to buy a subscription.
hey, the VM in this room https://tryhackme.com/room/kuberneteschalltdi2020 should have kubernetes cluster running on port 6443, but nmap shows there's nothing, how do i proceed?
May be a dumb question but did you try to run a scan on all ports
hello here !
i face a strange problem, i got my account on tryhackme totally reset.
i got a subscription, i have done some challenge, but today when i'm connect i see nothing !
someone can help me ?
ok thks
though maybe if you are lucky someone on this discord could help too... just a bit better chance from the email in this case probably
yes i don't know what append
username would probably be a good start and the email name link... that is linked to the account
Hey, I just finished CompTIA Pentest + Path but the certificate comes out with the username not my name, how can I change it?
Hey Aldwin, yes please reach out to us via that email with as much detail as you can please! I've never ever heard of this occurring. I can see that your THM profile has not completed any rooms, when did you sign up, or are you part of a institution or organisation?
The emailis support@tryhackme.com
Or if you're around for a bit, DM?
@dapper acorn
I just started tryhackme today and when i click subscribe it automatically closes the pop up. I don't have an ad-blocker on the browser. Any suggestions on why? Even does it on my phone.
Hey, I'm trying to open AttackBox and I get an error that I have too many machines open. I've terminated all my last attackboxes before going to the next module.
according to my knowledge, Tryhackme never show popup. Atleast not on the subscribe flow.
Pls provide more info. may be go ahead and attach a screencast showing that
too many machine open clearly means you left any vm running. there is a limit how much vm can run. If you have trouble finding running vm. Then there is a very un-efficient way, take a break for an hour. every machine shutdown itself in an hour. Unless you increased the time
Sorry if this has been asked before. I have seen many people on YT setup a rev-shell by spinning up python -m http.server 80. This is unavailable on attack box as port 80 is already being used by whatever application is used to setup the remote connection to the box. Does anyone else struggle with this? Can anyone explain in what cases the http.server would be helpful in setting up a rev-shell? I am only used to using GTFObins to paste a bash rev-shell / etc. Thanks!
https://tryhackme.com/forum/thread/616915e840b805004060b82a
A friend made a post about it in forums
Technically that's not a popup. That a webpage modal. Its look like the payment gateway is not loading. Pls setup a simple vpn and try again.
I'm halfway sure that using vpn u can subscribe. And if it is then It a problem with ur ISP or ur internet.
I'm not quite sure what for you would need the python server for a rev shell. But you can simply use a different port for the python server. Just enter for example python -m http.server 8888 and it will run on port 8888 in case a port is already in use. Usually the python server comes in very handy if you have to transfer files from your attacking machine to the target machine, or the other way around.
I was following a few YT videos on the overpass room and they use that command (reading your message now you are right, it must have been to transfer a file)
Googling how to upload/download file with http.server now. Thanks mate.
http.server is very helpful. You setup a server to serve ur file. then on remote machine you can wget the file. and run it. Like - linuxpeas
Its verry verry helpful. to transfer file without internet. you can even transfer revshell file with it. But that's pointless as u can simply use bash to access the vm
So all you need is wget and write permissions to already be on the remote server?
Basically yes. You could check out that room, in task4 it's covering some ways to transfer files. Including using the python server. https://tryhackme.com/room/linuxfundamentalspart3
Thanks @crystal marlin thanks @spare flare much appriciated
Gave +1 Rep to @crystal marlin
Thanks @spare flare
Gave +1 Rep to @spare flare
Oh sorry I thought u were after the Rep
hahah. Thanks
I believe there may be an issue with Overpass. If you are using the attackbox, port 80 is unavailable. POSSIBLE SPOILER- The crontab curl cannot be edited, meaning port 80 is the only available port for file upload and privilege escalation. How can I get around this?
Been reading up on the forum. Looks like this is impossible using IN-BROWSER attackbox. Maybe a hint is needed?
As far as I know, since the attackbox already uses port 80, I don't think there's a way to complete that priv esc from the attackbox.
Hello, has anyone here completed the Hololive room? I am stuck at task 37, in which I am asked to use evil-winrm to authenticate with a dumped NTLM hash. However, this service is not present in the box I am supposed to authenticate to, even after restarting the room. Does anyone know if I am doing anything wrong?
Google, "ping syntax"
Which machine are you trying to connect to? PCFILESERV is currently broken
Cry is looking to it
Bit random but looks like Advent of Cyber 1 Day 9 @deep trellis Is responding to pings but no web requests.
is the terminate box button bugged for anyone?
hey guys, the upload vulns room has not been letting me connect
currently trying to do the Jewel challenge and the site wont even load. I made sure I'm connected to the VPN and also did the overwrite command
did you add the things to the hosts file listed in the first step/part
Anyone having issues with OpenVPN file in Kali? Every now and then it will not want to connect. It keeps giving me the ":Error opening configuration file. " I go download a new one, and try again, still doesn't work.
when you use the openvpn command are you running it with sudo?
Yup
BTW, this is a new fresh install Kali few hours ago ... I was doing a few rooms.... terminate when completed, then deploy a new room for next task, then it won't connect. It has been like this for a week now that I tolerated. It's getting annoying these days.
Will do.
when you do ps aux | grep openvpn are there more than one running?
this one usually gets me
I checked, it's only 1 showing but it isn't running. I always ensure to perform a "sudo killall openvpn"
There's no process or anything. I have to constantly regen the openvpn.
I was just curious if there's a hiccup or a bug going on at the back end VPN server...
I regen the openvpn file and started a new connection, still won't let me connect.
@old gyro if you are connected you should be able to curl http://10.10.10.10 and get the flag for the connection verified
curl 10.10.10.10/whoami
this is much easier
I'm not connected at all, it will not let me.
@old gyro are you subbed?
Screenshot your OpenVPN output log
Now it's working, the 3rd regen of the .ovpn
It has been going on for a week now... I was not sure if it was me or something going on. Yes, i made sure I am in the right directory.. But it's connected ATM...
^
Now I can finish my room... Thanks guys for your time/replies.
Hi all, I need some help with a room I'm creating. I need to increase the resources that it has available but for the life of me I can't find the email address that you have to send the request to. Anyone perhaps able to assist?
yes I did this but unfortunately still not working π’
did you restart the vm after adding said things to the hosts file???? because in that case that machines ip can have changed
Ask a mod to be added to the room creator's channel, they can probably help you more there.
Hey I'm on a raspberry with kali and I'm trying to set up ovpn. Can anyone help me ?
I did the 'sudo sed -i '$d' /etc/hosts command to revert to normal, then did the echo "[IP] overwrite.uploadvulns.thm shell.uploadvulns.thm java.uploadvulns.thm annex.uploadvulns.thm magic.uploadvulns.thm jewel.uploadvulns.thm" | sudo tee -a /etc/hosts command using the IP given after starting the machine
Tried using the commands on their site but it isnt working
Thanks will do!
Gave +1 Rep to @livid vapor
Hello, what type of proof shall I provide to get sec+ tag in disc? - Thank you
Often for lower level certs like that, a mod won't require proof. But for higher level certs, they may require proof
Hey mods/admins, please check the "Enumerating FTP" in Q1 because there's only 1 port open not 2. I took a guess and tried 2 but 1 was wrong? Weird... This is in Network Services room.
What Nmap command did you use?
hello i was attempting to complete the advent of cyber 1, 2019. i got to task 14 (day 9) requests. their is no task files to download, no vm to attack, it only says connect to machine on 10.10.169.100:3000/ but nothing happens. i have put in in browser i have tried curl nothing. i am connected to openvpn i even looked at all the write ups for that task and tried the ip addresses they had used but still nothing. is there something im not grasping about this task?
support@tryhackme,com please include the URL to the room and the resources that you think it needs (:
Need billing support...here or other channel?
I'm having the same issue mate. Not sure who the creator is. Looks like the service just isn't running.
currently trying again.
Opened up my kali linux vm, ran the "remove" command, then ran the change host file command. Still nothing happened when trying to load jewel website, and yes im connected to vpn
Send mail to support@tryhackme.com .
I've been trying to run an nmap scan and when I try to scan all ports the scan just hangs indefinitely. The cursor will continue blinking for a while but eventually freezes. I tried to get around this by scanning sections of ports at a time (1000-3000, then 3000-5000 etc) and the scans only seem to hang when I'm trying to scan ports 6000-65535. What could be causing this issue?
why is http://tryhackme.com/update-timezone link now working anymore?
thanks it worked
Gave +1 Rep to @hollow otter
i changed my location
but why is the billing currency still in dollars
i am from a diferrent country
hi guys, can anyone tell me how to give respect ?
- mention their username
yy
Hey cant seem to install Bloodhound....anyhelp pleaseπ€·πΏββοΈ
Hello, i have a question, is it possible to retrieve my day streak?
Hi, I have a problem, for three days now. I can not get out Root rights, and I have completely different folders in the directories. I cannot do my homework. What should I do. Where did my root rights come from? Need help! this room https://tryhackme.com/room/linuxfundamentalspart2# My username is nec228 . Please can you check it
This is for site issues^ :)
@bronze vale where do i upload such issue lol
alr
Hello Guys, I have a problem with EU VPN, Its not work, but other VPN for example US-West-Regular-1 work, I have been a few months with the problem, Thank you
ye same for me, using us-west aswell. im fine with it tho
guess there's a problem with creating eu oVPN config
oh wait no. it seems fixed for me (havn't tried in a while now)
im connected with eu regular 1
hurray
\o/
What version openvpn do you have?
@sterile talon but for me the problem was more like that tryhackme failed to give me the openVPN config
(the download from the website)
it never worked until now
Okey, I send email to support because its not work π¦
Yes both EU VPN
It seems you just keep regenerating the OVPN file until it works. Seems to happen quite often.
Thats what I did. Just regenerated until I got a working file. Been all good ever since.
How often would I need to use gui, for tryhackme rooms?
I was planning on using a vps with all the tools installed for tryhackme, instead of using vm
You can use cli for almost everything ( except Burp for example ) but having a separate system dedicated to Pentest will be 100x easier
TL;DR : Use a Kali Linux VM 
can anyone tell me what im doing wrong. im in the networking server room and finally got to the exploiting telnet section. my problem is that when i try to run the telnet scan (after the nmap scan) for port 8012 i get this
telnet 10.10.224.100 8012
^
so i input telnet 10.10.224.100 8012 not telnet 10.10.224.100:8012
yes
it depends on the tool your using, some do ip:port, some do ip port and some require a flag like ip -p port
there is one tool that even does ip/port but I forget the name off the top of my head
netcat and telnet use a space between the IP and port
the guy who did the video on youtube used the : and i followed his exact steps
i was today years old when i found out
maybe its a different version of the tool, or it was updated since then. either way if you run into that in the future you can check the man page for whatever your running if you run into problems
thank you guys so much. ill remember this when i get back to my work
Gave +1 Rep to @random crater
Thanks @zealous yoke , just had to make a couple of updates to the lab to make sure it was working on THM. Uploaded the final machine version and requested additional resources for it.
Gave +1 Rep to @zealous yoke
reverse tcp doesnt work with openvpn
im using metasploit rn
and it doesnt connect to the machine
but using a attackbox it works
It does
If it isn't connecting you're doing something wrong
Are you using the correct ip? When using VPN you need to use the VPN ip (it will be under tun0 if you do ifconfig?)
hey im trying to ssh into overthewire and it keep saying bash ssh command not found
im on kali
nope its all correct
tried fixing it for the past 3 days
but metasploit refuses to work thorugh the vpn for some reason
only works through attack box
idk if its like a default openvpn setting or sum but idk
I can tell you without a doubt in my mind that Metasploit works through vpns. If it's not, then it 100% a problem on your end
We might be able to help you fix it
But not unless you give us more info.
It's damn near impossible to diagnose an issue if we don't have any information about said issue
Can you send a screenshot?
Heyy can anyone please help me regarding openvpn connection.
[sudo] password for kali:
2021-10-17 00:11:40 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-10-17 00:11:40 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-10-17 00:11:40 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10
2021-10-17 00:11:40 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-10-17 00:11:40 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-10-17 00:11:40 Cannot load inline certificate file
2021-10-17 00:11:40 Exiting due to fatal error
From some past days I am getting an error while connecting through this.
With another package the vpn connection establish but cant get a reverse shell using the tun0 ip
have try to regenerate+wait 2 minute method? as well as try different server?
double check if you have the same port for your listener and revshell script
I have done all this....
its correct. I have done and checked many times.....but not getting reverse shell
and while doing same in attackbox i am getting.
so this happen if you use the new vpn config? but the old vpn config you only cant get revshell but can connect to vpn?
yes
Like if any package I am downloading from access I am unable to connect via some and the other if I am able to connect I cant get a reverse shell
in any of these I am unable to get the reverse shell
Using gobuster with 100 threads and I get this:
/.htaccess (Status: 403) [Size: 276]
[ERROR] 2021/10/17 02:30:49 [!] Get "http://10.10.2.223:22/!backup": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] 2021/10/17 02:30:49 [!] Get "http://10.10.2.223:22/05": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] 2021/10/17 02:30:49 [!] Get "http://10.10.2.223:22/1187": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] 2021/10/17 02:30:49 [!] Get "http://10.10.2.223:22/1178": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] 2021/10/17 02:30:49 [!] Get "http://10.10.2.223:22/1179": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] 2021/10/17 02:30:49 [!] Get "http://10.10.2.223:22/118": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
This doesn't occur when I use v less threads, what's causing this?
When you make too many requests, the target machine gets overwhelmed and is unable to respond to these requests. Then there comes a safe timeout value, which throws an error for the same - Client.Timeout or requests.exceptions.ReadTimeout π€
oh, alright
is there any other-fast method to find the directories?
We cannot enumerate faster than what the target machine is able to withstandπ
makes sense
For TryHackMe rooms, it shouldn't take much time for you to find the answers if you are doing it correctly (not enumerating incorrect stuff)
And in real-life, enumerating files and directories is pretty rare. And if you're doing that, there is something wrong in your methodπ
For instance, you will certainly get blocked by WAF, like Cloudflare
oh, I didn't know that, thank you!
+rep @keen scroll
Gave +1 Rep to @keen scroll
Ssl_version_interface,Ssl_version_library, ssl_protocol, ssl_cipher, ssl_server_m_version, ssl_server_m_serial, ssl_server_a_key, ssl_server_a_sig, ssl_session_id
Server addr , remote addr, server admin
I found this on a public website. Should it be any concern?
This chat is for site support, make sure youβre not pentesting public websites without permission:)
I need to change my token
Hi , im in https://tryhackme.com/room/rpnessusredux# room , on task 4 but could not continue as I cant access the nessus dashboard. Are you able to provide the details to access it so I can continue and complete the remaining tasks. Cheers.
You can't, you have to do it room by room, click on " Reset Progress" on each room you want to reset
Guys how do i fix this its returning this error everywhere
This channel is for site related issues^ :)
okie
I have a question, if i cancel my subscription , the subscription will end at the date of the subscription will renew or now?
if you cancel your subscription, you will have the benefits of your subscription until it expires -- you will not be charged after that / it won't renew after your expiry
ok i see thanks u
npnp
hi mods can I get sec+ discord tag pls π
Hey there ! Someone know if I should use Kali in my mothertongue or in english ?
most of the commands would be the same no matter what language you use.... but it might be easier to follow along if you set your machine to english instead of your mother tounge
Thanks :)
Another question : i have multiple choice to my desktop environment : Xfce, gnome or KDE plasma but I don't know which one I should choose x')
Depends on your hardware mostly @knotty shadow
XFCE / KDE has always been the most lightweight
Gnome is quite resource intensive so
go from there big dawg
I gonna take xfce then, the laptop is pretty old (4-5y)
Gave +1 Rep to @zealous yoke
Thanks for your help ^^
no worries @knotty shadow good luck
I've always ran XFCE on VPS's that are 1GB of RAM and no issues
xfce gang
i used xfce for a while. then i tried gnome and i cant go back π
I need to verify my account but it's show "Sorry, you already have a token on this account." so I need to remove my old token
i had the same problem, try contact an admin to fix
can somebody check if tehy got a website under this ip ||http://10.10.167.113|| for me it just tries to load for ever.
Hey π I got a little problem with connecting to the machine, which I deployed. The problem is, if I try to ssh into it, it tells me connection refused. I am using ssh tryhackme@ip_address and I am using default port 22.
I am also connected to the VPN
thats a local IP, try run a port scan and make sure there's actually a webserver running
hey is it normal for a machine to randomly stop responding every few seconds?
hello,
I'm doing the xss room,
https://tryhackme.com/room/xssgi
it's been Β½ hour but the request didn't arrive. I crafted the query and made the ticket and everything, plus, verified it once by manually clicking on it (gives a b64 string on my listener), but the staff request doesn't arrive. I reset the machine twice, still, no results.
Guys... Hi, there is a problem with copy paste. I cannot copy paste from or to virtual Machine. It used to be fine, but now copy paste doesn't work in either direction. What is the reason. Thanks.
Plus I'm having problems with my Firefox browser. The mouse course in the virtual machine flickers and is not visible. Impossible to work. Plus does not copy or paste text. Damn what should I do! I'm already tired!
for copy and paste there is a button on the left side of the vm screen which you can click and get some buttons one of which opens a text field to copy text from and to the machine....
for the cursor make sure your firefox browser is not blocking html canvas by clicking the image icon in the url bar if there is one
Hi guys, do you have an ongoing technical issue with your virtual environment? My attacking machine is constantly disconnecting. I terminated one, restarted browser, .... Nothing helped.
web-based Kali machine is dying as well
There is a broken link in the BurpSuite room, Task 6. A link to OpenVPN page https://tryhackme.com/connect returns 404 error
I've earnt a certification, however; at the time I didn't have the correct full name w/ me is there a way to change it?
hey how can i transfer the task files to my attack box machine
can anyone help me?
Start a python3 webserver on your host machine ( python3 -m http.server 8000 )
then wget your files on your attackbox
by doing wget http://<hostIP>:8000/ <yourfile>
can also use scp command
alias? how
In my case I've a "wserver" command that starts the Python Webserver, it saves a lot of time when needed
wow, thanks! this is helpful!
What could be the reason of refused connection during ssh connection to any host
with attack box
hmm
?
π€·
Hello, I am not able to connect to VPN, I have tried 3 different servers but still no connection. It says the handshake timeout. Can anyone help me with this please?
@zealous yoke I need to remove my old token can u help me for that
Hey there ! Someone already had this kind of errors before ?
It's just after launching but everything else work good so I don't understand what it is
You'll need to contact a moderator
@torn citrus I need to remove my old token can u help me for that
Hello
I got connected to THM VPN and then tried to access THM network using my own kali terminal not Attack box.
When I did so it says connection refused.
When I tried connect without VPN, it says connection timed out.
Can someone help me out with this?
are you running the openvpn program from your own kali vm or are you running it at the host operating system????(only applies if you are running kali in a vm)
Yup VM
hey guys, I am installing John the Ripper for a task. I've seen that there's an option to install it via homebrew, but that's not in the official documentation. Is it 'real' the homebrew option?
What to do next?
check that the networking is setup correctly for the vm.... which shadow is not sure how it works or how you problem solve that as shadow has not had that problem using virtualbox.... i.e try and see if the vm can reach the internet at all
ssh: connect to host 10.10.205.188 port 22: Connection refused
I am talking about this thing π₯²
are you sure that machine has ssh on port 22 or even at all????
you could try running a simple ping first to see if the machine is reachable at all
as most thm machines let you ping them
can anyone point me in the direction of my active machines? I cant seem to find the link
https://tryhackme.com/my-machine @clever current
thank you so much!!
that should at least get you the attackbox info
dunno if it gives open target machines too
having issues with my tryhackme ovpn profile. ive tried changing ports and using udp and tcp and regenerating the key . for whatever reason it still wont work. myhacthebox profile works just fine as well .
have you tried switching server for the vpn file???
Have you installed openvpn would be the first question I guess
@naive dust@plush bayyes i have installed ovpn and ive used my hackthebox profile perfectly fine for boxes . i just tried a different server. still drops
still failing
Is there an error? @austere field
Have you redownloaded your profile after switching servers?
yes
What's the error?
checking logs.
says connecting to ip via udp4 then the next thing says disconnected
I need all the output
dm it?
Send it here please
huh
Are you on windows?
yes
Did you press βdebugβ with it running
i didnt
how do i do that
Import your vpn config, select it from the list, start it, press debug
I've earnt a certification, however; at the time I didn't have the correct full name w/ me is there a way to change it?
hello
Room: intro to x86-64
Task: 4
db 0x55ae52836612
- Cannot place a breakpoint on 0x55ae52836612 unmapped memory.See e? dbg.bpinmaps```
What am I doing wrong here?
alright, I found the issue,
the instruction above literally just tells the hex addresses for jge and jmp, I just had to use those addresses instead.
Good Afternoon Everyone
I needed to install Gobuster. Does Apt-get install Gobuster suffice?
Hi, How do I get the skills matrix on the dashboard?
x2
youre doing something wrong then
well, i cant exactly help you unless you send screenshots and give more information
i mean what do i send man-
when i try to do ssh user@10.10.45.127
it returns with nothing
and times out
you sure youre connected to vpn?
no, i wont understand it lol. I dont know that much
oh okie well im pretty sure here ill send a sc
and it does say im connected on 10.10.10.10
my only 2 theories is my vm network configuration or my other vpn that i use whenever i log into my vm
Can you do an ifconfig and send a screenshot?
Hm. Idk. Wwre reached the extent of my knowledge
yep im pretty stumped too ty for tryin to help doe
Try regenerating your vpn pack
legit just did 2 min ago
Ah. Ok then
i could try switching servers tho
That might work
aaaannd nope
this was a problem before too i can only check ports like 80 and 8080 but anything other didnt work and had to use attack box
weird
op yea nvm i figured it out
i was right it was the vpn that was fucking it
i use a vpn before opening my vm after i turned it off it worked
If someone could just quickly walk me through rolling back to openvpn 2.4, 2.5 has been nothing but a headache and i cant get it to work at all, just can't find any tutorial on how to download a specific version of openvpn.
but like
why would u want
to
legit all u gotta do is cd to the right path
and run sudo openvpn (openvpn name file)
if u still dont want to https://build.openvpn.net/downloads/releases
Do u want me to paste you the error ive been getting? Didnt want to paste that and it be against the rules or somthing
Maybe you know how to fix bc i cant find anything on it
sure
2021-10-18 20:34:56 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-10-18 20:34:56 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-10-18 20:34:56 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10
2021-10-18 20:34:56 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-10-18 20:34:56 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-10-18 20:34:56 Cannot load inline certificate file
2021-10-18 20:34:56 Exiting due to fatal error
Ive messed around with the --cipher and --dev tun0 but it just either fails or gets hung up
bro
first of all
dont fuck with openvpn settingws
and second
pretty sure u just set openvpn cypher to something 2.5 doesnt use
i would suggest u run
Messed around as in watched videos and read posts on possible fixes not just tried blindly
sudo apt remove openvpn
then
sudo apt install openvpn
then try again
just for a reminder its sudo openvpn (file name)
Just did those and got this
2021-10-18 20:39:55 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-10-18 20:39:55 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-10-18 20:39:55 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10
2021-10-18 20:39:55 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-10-18 20:39:55 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-10-18 20:39:55 Cannot load inline certificate file
2021-10-18 20:39:55 Exiting due to fatal error
Ive reinstalled kali 4 times and still get this message
IT used to work but then one day i updated and started getting this error. Ive been on Tryhackme for months so I know how to connect just this is getting in the way
btw that cypher stuff is fine
ur prob is
2021-10-18 20:39:55 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-10-18 20:39:55 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-10-18 20:39:55 Cannot load inline certificate file
Gotcha. Is that the config file then?
bro
as if i know
lmao
sorry uh let me try to look around
u are running it as sudo correct?
Yep. And im in the right location too, made that mistake before lol
switch servers
Thank you for helping me through. I really been trying to get back on and practice
Ok will do that and let u know
lol yea i think east is broken sometimes when i first started east didnt work for me
it should be fine man
West works for u?
yep
lol np
u too
Hi guys, i was doing what is the shell? path and i want to connect to the windows rdp but when i key in the rdp command, i encountered this error "[ERROR][com.freerdp.core.connection] - Timeout waiting for activation"
X2?
hi i wanna change my payment method for the subscription but couldnt find a proper way to do that any help is appreciated
@rigid oxide @deep trellis I need to remove my old token can u help me for that ?
why ping the admins, when the mods can help you with that.
See this I already ping mod @flint anvil
not really a solution, but hang out more often on #general , once you see mod ask them nicely
0day isn't very active because he is pretty busy
there are literally 10 mods and most of them are online during this time
ask someone like Hydra, Varg, or Omega
Ok I'll ping them
They'll help you out
@stray cove I need to remove my old token can u help me for that ?
ok π
Broken room link https://tryhackme.com/room/malstrings -> Task 2 Practical: Extracting "strings" From an Application -> Learning Linux (~~https://tryhackme.com/zthlinux~~)
I think that's better to post in #room-bugs then in tech-support π
Hi Ben, should I receive a confirmation email from support after sending the mail? If not, what is the normal time this process takes? Just want to make sure the email was received since I sent it about 3 days ago.
Hey, I usually donβt respond to emails that I forward to other employees. I remember receiving an email about increasing resources but if you could DM the room URL, I will check that for you;)
I completed the burp suite room prior to the new path releasing. Does that mean I'm not eligible to get tickets for those rooms? Anyone know?
Also, wasn't paying attention whenever I completed the first room, so I didn't claim those tickets.
gracias
Tickets prize ended a while ago now so you won't be able to win / redeem those
you can claim those tickets, just restart the room and comlete it again
It ends the 27th of October. The Path was just released
Ahh. Thank you
Gave +1 Rep to @tame solar
Hello all, how can I remove split view?
There is a button at the bottom for full screen
found it. for some reason it did not appear.. thx
My bad I didn't see there is a new event with tickets
sorry
No big deal. Hope on in!
Tonight :p
Any known Problems when using Paid ProtonVPN while connecting to the THM machines? Websites on port 80 won't load on the machines.
hi, I just completed the winprivesc room first time and didn't get any tickets, try to restart and complete it again twice still nothing
am i doing anything wrong?
ok
I keep getting connection closed by foreign host. It's in Jr Pentester path, Protocols and Servers, multiple tasks
Hi, I have some problems when connecting to vpn. If I select a VIP server it shows me this error 2021-10-19 16:00:39 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set. 2021-10-19 16:00:39 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning. 2021-10-19 16:00:39 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021 2021-10-19 16:00:39 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10 2021-10-19 16:00:39 OpenSSL: error:0909006C:PEM routines:get_name:no start line 2021-10-19 16:00:39 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib 2021-10-19 16:00:39 Cannot load inline certificate file 2021-10-19 16:00:39 Exiting due to fatal error
But if I select a regular server it works as expected
Hello hello @echo lake I can't see the IP address of the VPN server in this output
What VPN server were you trying please?
EU-VIP-1
Is there a way to reset a rooms progress on your own or do you still need staff to do it
No you can reset it yourself -- click the "cog" icon at the top right of the room and press "Reset Progress"
useful knowledge but dunno when shadow would do that really
Hi,
I've subscribed to THM like 30 Min ago and I am having some problems:
-
I can't connect to VIP VPN servers.
-
Machines still take time untill i get the IP address (some goes for Attack Box too with the waiting timer).
-
I got only 1 Ticket insted of 2 in the Jr Pen Tester path :(
I would appreciate any help.
Thanks!
How to redeem my $20 swag vouchers swag I got ticket in jr pentester path
Check pin on #900054423588470854
So do I need another 2 tickets for getting swag right..?
Any open tickets regarding the Redline box? Specifically regarding task 6 IOC Search Collector Analysis ?
Hello in my profile the country is set to UK, and I am from India. Looking through the profile I canβt identify any way to change it. Any solutions?
Try this, and also turn off any VPN you use in the background
https://tryhackme.com/api/user/update-timezone
it's redirecting to tryhackme dashboard.
check your profile now
hmm, if you search message on discord on how to reset country, it using this link
you sure you dont have vpn running in the background?
No bro not running any vpn in background
send them an email ig
ok bro
I just re upgraded to vip and I cant get openvpn to work
I tried re generating the VIP openvpn
but when I connect to the regular servers it works
Hey, i'm currently going thru the new Junior Pentest Pathway to acquire tickets for the prize giveaways.. There are a few rooms I've already completed in the past. Such as the burpsuite rooms. So I just opened one of the burp rooms, reset my progress, filled out the answers again so I could get tickets for completing the room, but it shows this popup, saying that tickets for the room were already rewarded, but how could they have been awarded when I finished this room earlier this week/last week, before the contest even started??
Is there somewhere I can go to view all of the rooms that are sub only?
Go to search rooms then in "Type" you have two choices between Free and Subscription Only
Ohh, thanks i knew i was missing an option somewhere
Gave +1 Rep to @soft thunder
anytime
My discord token is not verified by the bot, can you please help me.
You simply have to verify then. Check out this link it explains on how to do that.
!docs verify
Anyone has any idea how to fix that?
Hello, is it normal that the attack box just shuts down after 3 hours? We were just doing a group exercise (all subscribed premium members), and for all of us our attack boxes just shut down at approx. the same time.
Of course all our progess is lost.
Hey, is this the place to ask for my room support? I emailed support@tryhackme.com about insufficient resources on my room with my VM, mainly for free users, but I haven't got a reply.
If this is not the place to ask, could anyone point me to the right direction or the right people to talk to?
Wdym by resources?
Low RAM seems to be the issue
Hm. Can't help with that. Maybe try resetting the room. If that doesn't work then you'll have to wait for support
Nope, that doesn't help. MySQL literally doesn't boot. Free users have like 400-500 MB of RAM and it's just consistently broken. Subscribers get 2x the RAM and that works without any issues.
If you don't extend the timer, every machine will shut down after 2 hours.
Actually I think there even is a warning as a pop up
I need a little help with the thm token! I m facing a problem!
You might want to be a bit more detailed to what the problem is, so if for example a mod will read your message he can help you immediately instead of first asking what exactly the problem is π
I have some pendin token of last event. And it is still showing what to do
I have used the THM token in other Discord account but i lost the account access, and i m unable to update the token in this account π©
Then you might want to ping one of the mods (not staff), I think they are handling such token issues.
I m facing this problem @torn citrus
hey guys. I have an issue with many tasks. I have been skipping many tasks because they require me to download some file (non txt files) and then do something with them. My problem is that I am using the attackbox, so, I'd have to downlaod the files and then uplaod them somewhere, and then download them in the attackbox.
I was wondering, if I created an attackbox, and since the IP Address is displayed, is it possible to connect to it via ssh if I use openVPN to be in the same network? Are these deployed machines protected with some password? What would be the username?
if I were able to connect using ssh, then it would be easier to transfer these files
If you have the attackbox started, there is an information button at the bottom, I myself never tried to connect to the attackbox, but at least there are some credentials, maybe you could ssh into the attackbox with these.
OH! I completely missed that button! thank you π
Gave +1 Rep to @crystal marlin
Awesome, so I even know now that these credentials work to ssh to the attackbox and therefore learned something new too π
π
The MITRE room Shield Active Defense is impossible to complete because the website that is needed to answer the questions does not exist and gives 404 error :/
Hi is there currently a problem with the servers? I am using the in browser and the latency is huge and unusable
Can i dm a mod regarding the issue i m facing about what we have discussed above?
try visiting 10.10.10.10
if it opens youre connected
its klinda bugged today or something
cuz the same is happening with me as well
I don't know, rather try to ping another mod. 0day is pretty busy most of the time so that's why he might didn't reply to you. Maybe Esqy or Hydra
I m facing this problem @graceful garden
What was the other account?
Hi all, noob here. Having no problems completing the rooms on the browser but think I've had some kind of weird error with Parrot on my own PC on almost every task at some point. Example - in Network Services, ftp just doesn't wanna connect, gives me a 425 error every time. Tried reinstalling ftp, can't update the kernel as for some reason AMD APU's just aren't working on 5.14 so I'm having to run 5.10....with the risk of answering my own question, do I just wipe the OS and start again?! I don't really wanna keep going just in the browser. It's not a VM - I dual boot two distros on a home machine. Thanks!
I'm in the introductory to networking attack box but it won't connect to do the whois command
@nimble comet Hey can you help me to remove my old token form THM bot. I need to add my new token
hey i can't access internet inside my kali attackbox i don't know what has happened.
@eager fulcrum sorry to ping need your help as everybody is ignoring.
Well... not getting any tokens from referrals (not even pending tokens).
2 friends signed up using my referral but nothing changed on my referrals page at all
Hi can someone kill my machiens
I cannot terminate my boxes and so I am unable to go onto the next section
Thanks
@thick terrace did you get a response? I haven't received anything since my post earlier
I recently had the same problem with the OWASP Juice Shop rooms on my linux kali and even kali tryhackme.
That's how I decided and it worked for me:
With the console open, locate the cdnjs.cloudflare request. Right click >> Block url.
It should block the entire file path. Don't worry, just delete and leave just the cloudflare domain and mark it as blocked.
Must load successfully!
Edit1: I already notified tryhackme about this.
edit2: If you close the console it will not load again
I think I am having a bit of an issue with my room and I could use a little assistance. I am im doing the pre security path and for some reason the red bar that shows the ip address for the target IP to ssh into is not appearing. Its the Linux fundamentals lab part 2 task 2
It's a red box/rectangle that says "active machine information" and it's not opening for me
Or available
Nevermind I feel dumb now. O figure it out
Mope
iirc attack box dont have access to the internet, hence the whois command doesnt work
Yes thats correct. The in browser boxes are cut off from the internet
i have the same problem , in the room https://tryhackme.com/room/xssgi task 8 staff dont see the ticket, and the payload is working help please
I couldn't get it to work with NC. Try with the THM request catcher
So what can we do to restore the connection?
You cant
If you want to access the internet from within your kali environment set up your own vm
are the VIP servers down? i can't connect to any EU vip server
@tame solar same
Why am I receiving the pop up stating "Tickets for this room already awarded." when it is my first and only time completing the room??
Hi all, does anybody know what this issue maybe related to please?
When I am downloading the ovpn file for EU-VIP-1 the file size is 0. That would explain the message above. Downloading from EU-VIP-2 I get the following message. Downloading from EU-Regular-1 everything works fine I am connected.
I think for issues where the file size is 0 there has someone from staff look into it. @bronze vale
Yeah I gave up on the EU-VIP files a while ago. They haven't been working for about a week now
It was working yesterday for me, just this morning it stopped. I am currently using the US-WEST-VIP-1 which i can connect to. Latency is a bit high π
Ye, I would just wait until Jabba replies to you and use the US-West or EU-Regular meanwhile π
I was getting errors last week and saw quite a few mentions on Reddit. I'm still having issues on my attack box full stop so I reinstalled parrot (kde this time, looking forward to spending the day hunting for the red and green dots on the wrong side of the window) hopefully that will resolve the issue.
the same here, vpn working till yesterday
today vpn timed out due to no response on TLS negotiation. When i regenerated EU-VIP this appeared: "DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM).". US-VIP working fine...EU files are considerably smaller, certs missing there if you compare it with US .ovpn file
Hello in the Brainstorm room i need to open a Windows server, how can i open the server when im using the browser attack box (like in the Buffer Overflow room)?
I broke something after update and upgrade. Help...
Vip VPN is confirmed broken here, too
sudo apt remove --purge openvpn
sudo apt install openvpn
try that
Hi, i have a trouble to connect my access vpn to THM network
I figured it isn't a openvpn issue, cause like the suggestions above, i was able to connect to US servers
just not the EU ones or IN
EU-vip1 try to download it, but it's 0 byte size
k I see, I'm not doing anything rn so wasn't aware of it
No no, thank you, i hadn't seen the mesages above before i posted and worded my comment wrong too, didnt know Update upgrade probably didnt break it
Gave +1 Rep to @soft thunder
So, the VIP EU VPN issue is still not resolved?
status on the site says no issues, but clearly there is. Am on regular-2 ATM and that seems to work OK.
Hello, I've reported this to the appropriate party. I suggest another VPN server in the mean time. Thanks for reporting @hoary vale cc @unborn panther
Gave +1 Rep to @hoary vale
much appreciated @zealous yoke
looks like i have problem on my vpn. i tried to connect and it says exiting due to fatal error but the website says im connected and yet i cant access any machine
i did regenerate and change the server but the output still the same
try a regular VPN profile if its VIP one
i usually use eu regular 1. i changed us west regular still doesnt work
dumb question: You don't have another vpn up on another terminal anywhere?
done that myself.
nope
Think there is a delay time on the regenerated profiles. maybe 8-10 mins, heard it somewhere.
would suggest disconnect and maybe wait for it to time out on line, there are some VPN issues currently happening, so maybe related?
i'll try this one
does it not impact performance and what boxes you can access when using the regular vpn?
@unborn panther feel so dumb. i forgot that i dont login as root so need sudo command ._.
thanks @unborn panther for responding
Gave +1 Rep to @unborn panther
Would one of you fine Support specialists be so nice as to get in contact with me about my streak? I really appreciate it!
@river gust
@carmine wasp heh easily done, I generally just "sudo -i" and carry on, not best practice really...
Can't connect with vpn. When i run file it stops halfway. I could go to 10.10.10.10 but i didn't get ip. Now i removed file and downloaded new. But the new file is only 3 kb. Not working. Did regen twice. Tried both eu vip1 and eu vip2
If i remember right, size of the file should be around 8kb.
The regular file works well. Not VIP
Hey, I'm having an issue in the new Linux PrivEsc room by basaranalper. I'm unable to start the machines. Just keep getting a Connection Error message, then it tries to reconnect, then repeats...??? I completed up to task 5, but cant go any further. Is this a known issue?
Hello. I'm currently doing the hackernote lab. After connecting to the remote host with ssh, I can only type one or two commands before things become unresponsive
Are you on the attackbox or your own machine?
I'm on the target box after discovering the right credentials
after few commands I can no longer type commands. I don't know if this is by design or something else.
Yes, but from which machine are you connecting to the target machine. From the web based attackbox or from your own machine while being connected via openvpn?
my own machine
Okay, then you could try to enter sudo ifconfig tun0 mtu 1200 on your own machines terminal and after that try to connect to the target box again, to see if that helps. In case it doesn't just put it back to 1500
@crystal marlin thank you. I'll try
Gave +1 Rep to @crystal marlin
Oh okay, well at least you figured that out ^^
@fontane, I had a hidden tmux session, lol
i changed my name in tryhackme. i have 1 certificate and i need to be regenerate! how i can do this? when i downloaded certificate its gives me the cert with old account name π¦
I think you can not regenerate it and also the staff can't. #site-support message
it showing some error
thanks. no issue
Gave +1 Rep to @crystal marlin
Please help me out in this
You maybe should verify your THM account in discord first in order to be able to send screenshots. After that send a screenshot of the error you get.
!docs verify
How do I get a hold of billing support?
Done bro
Getting this error bro...
sudo openvpn pritish.ovpn
[sudo] password for kali:
2021-10-21 10:41:31 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-10-21 10:41:31 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-10-21 10:41:31 library versions: OpenSSL 1.1.1l 24 Aug 2021, LZO 2.10
2021-10-21 10:41:31 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-10-21 10:41:31 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-10-21 10:41:31 Cannot load inline certificate file
2021-10-21 10:41:31 Exiting due to fatal error
And when I use other region package it connects smoothly and happans everything while doing machine......But when doing for reverse shell I dont get any connection.
Due to this Many of the machines is been left there at end....because of not getting a reverse shell
Please help me out in this
Okay then if you are getting this error with the region you usually pick, I would suggest to pick one of the server that are working fine meanwhile.
Are you using a virtual machine or an installed operating system as attacking machine?
I used all of the other package....but can't able to get reverse shell and many others.
vmware
And your host machine is windows?
yup
Where is openvpn running, on your windows machine or directly inside your kali VM (or whatever operating system you use inside your VM)?
Mh, well if it's running directly inside your kali VM and the other vpn servers are just working fine, there must be some other issue why you are not getting a rev shell. So either there is any kind of firewall blocking it or you are doing something wrong.
All the process in my reverse shell is perfect.... As i am doing same on attackbox I get that. But using my own kali I wont get
If considering a firewall then it will be there for windows right? As I am using vmware it should not effect I think ....
Well you maybe could try to set sudo ifconfig tun0 mtu 1200 in your kali vm to see if that helps, in case it doesn't just put it back to 1500
I just have a quick question, do accounts get deleted after a while of not logging on?
Hello, VIP vpn does not work, i get a certificate error and exits with a fatal error. This doesn't happen with the regular server though.
Maybe a firewall from your router or something like that, but I'm not too familiar with firewalls so for that you might need someone else who could help you with that. But I would try the MTU setting first to see if that changes anything.
I am getting all these problems from some months before...... Before that It was working perfectly fine
Any help?
I think they are aware of the VIP vpn issues, so you might just pick a regular meanwhile.
Okay thanks
Gave +1 Rep to @crystal marlin
Bro can it be because of having different subnet
as like machine is giving me an ip of 10.10.225.168 and my tun0 is 10.8.244.66
As long as you are always using your tun0 IP for the rev shell you should be good.
Did you try the MTU setting yet?
means?
The setting I posted before? sudo ifconfig tun0 mtu 1200 after you have run that command try to get a rev shell again to see if that helped.
ok ok
hey i wrote a tmux plugin which tries to send get request to 10.10.10.10 and grep thm then show ip i set the sleep time to 10.
i just wanted to know is that ok to just send a get request every 10 sec?
Hi! I'm having some issues with the AttackBox. I can deploy it but I don't have any internet access. Somebody know what this could be?
So how can i finish the tasks that the page give me? Like "Start the virtual machine on this task, wait 2 minutes, and visit the following URL:"
Im pretty new, sorry
If you are not a subscriber you have no internet access on the attackbox. Subscriber do have internet access on it.
Oh, I cant do those tasks if I am not subscribed?
Make your own kali vm
I don't know about what room/tasks you are talking
Hello I am on level linux and it is saying that I need to put my card details in order to continue using Linux is there anyway I can continue for free?
Like any task that ask me for internet conection π
Like, in my computer?
Yes
Basically not. But there are not many rooms that require internet connection, so if you let me know what room and task you are on I'll let you know if you really need internet connection or not π
I need to pay in order to continue learning the linux module?
If it's a free room you don't. But you are maybe limited to use the attackbox to 1 hour a day.
Jr Penetration Tester - Walking An Application
I think thats the room, and the section
For that room you don't even need the attackbox. You can do everything on your own computer with your own browser.
Gave +1 Rep to @crystal marlin
Ooh thank you! I was doing everything that the page said so I didn't know that
Ye, links like that you can just access on your own machine without being connected with openvpn. If it's just an IP, you can't access it, but these ones work just fine π Not a problem.
Okay, im gonna have that on mind. If it gave a 504 gateway time-out. You know what it could be?
When you try to open that url? I think you just have to wait a little bit until that machine has fully booted
Okay okay! Thank you so much
Gave +1 Rep to @crystal marlin
2021-10-21 12:48:14 WARNING: Compression for receiving enabled. Compression has been used in the past to break encryption. Sent packets are not compressed unless "allow-compression yes" is also set.
2021-10-21 12:48:14 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-10-21 12:48:14 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-10-21 12:48:14 library versions: OpenSSL 1.1.1k 25 Mar 2021, LZO 2.10
2021-10-21 12:48:14 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-10-21 12:48:14 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-10-21 12:48:14 Cannot load inline certificate file
2021-10-21 12:48:14 Exiting due to fatal error
who resolved this issue before ?
Is there a reason why I can't paste in the AttackBox from the browser?
Same problem here.
It sounds like VPN issues, a quick thing you could try is regenerating a new config file
Problems with OpenVPN started since yesterday. Anybody knows fix or it's thm problem?
It doesn't work. I tried several times
If is Linux did you update your packages or OpenVPN
Jr Pentest Path
Walking An Application
can't access url https://10-10-187-67.p.thmlabs.com/ via the attackbox
It doesnt work on linux and mac
try 10.10.187.67
Have the same problems as illusion with the vpn. The two EU VIP servers are affected. EU-VIP-1 VPN Server generates a 0 byte ovpn file. The US-West-VIP-1 server works.
switch vpn servers
Doesn't for for VIP EU 1 and 2. I will try US.
there should be a copy and paste button on the left side the Text box is what is kept in the copy and paste
have u messed around with the openvpn settings at all?
nope! I swear I didn't π
Same here
Looking to install kali 2021.1 on a VM as im on windows. Could anyone recommend software for this?
Ok thank youπ
appears this site is down, needed for Jr Pentest Walking an application tasks
https://static-labs.tryhackme.cloud/
I prefer virtual box for free software. Imo vmware is only better if you pay for it
oracle is just weird when it comes to how they handle licensing and copyright
but yeah virtual box is great for free vm setups

