#site-support

1 messages Β· Page 259 of 1

naive dust
#

Well no, but I can't see any blocked connections to or from my VM, I could try turning it off but that could risk breaking other things

#

I've never really had any issues previously but I'm gonna see if I can allow just the VM to bypass it

#

Which IP and port from the output should I allow in the incoming connections?

#

Fixed it

#

It was caused not by the firewall per se, but the privacy network thing thats built into it (it works similar to Tor)

#

Disabled the privacy network for the VM and works fine now πŸ˜„

#

Figured that must have been what was causing it because that was the only thing that had changed since last time I used the VM

crystal marlin
#

πŸ‘

viral oak
#

Morning! Quick hardware question... Are there any advantages in terms of speed if you plant a new Ryzen CPU (i.e. 5900x) on a new motherboard with AM4 instead of using one with an B450 chipset? Do newer chipsets support faster RAM for example? If so, which Chipset would one look for at the moment?

#

(is this a good room for such a general question? :D)

crystal marlin
viral oak
#

alright, thanks!

plucky rampart
#

Guess I'll ask again:
hey guys, guess I'm a bit late to the party but why can I not connect to either EU-VIP1 or 2? I can connect to US-VIP servers though... I can access any other vpn server, except the premium eu ones

plucky rampart
#

ye

#

lemme boot my vm, show you what I get

crystal marlin
plucky rampart
#

saw some tips online saying I'd need to rollback to openvpn 2.4

#

WEIRD THING IS, as I said, I can connect to any other server, either premium or not

#

BUT not the eu premium ones

crystal marlin
# plucky rampart

I think that's an issue with the config file itself, seems to be for quite a while now with the EU-VIP server. So I guess all you can do is changing to another server. Maybe sending them an email about that issue would be a good idea too.

plucky rampart
#

Oh, I see. So it's been an ongoing issue for a while

#

cool cool, I'll drop support an email, cheers! πŸ˜„

crystal marlin
#

As far as I know, yes

thin lagoon
#

Hi!

lyric crown
#

how do i connect with openvpn? everytime i try to download the configuration file its just 404 error

lusty widget
#

You will need to enter go in order to send it and retrieve results. From the description of the task:

Note that the ; indicates the end of the SQL query, while go sends a SQL batch to the database.

Also, this is not the channel for room help. Use either #910210693821780018 or one of #room-help #room-hints. If you need help, it will also be good if you provide more information. I only knew what you are working on as I do the same challenge at the moment. But generally you need to include more details, like what are you working on and so on. There are way too many rooms for other people to guess what you want.

dense surge
#

is there a noob guide for how to get remote desktop to work? i'm in Windows Fundmentals 1 and can't rdp with the credentials they gave me from my computer, and I can't ping it either. It's a public ip.

keen cave
dense surge
#

i'm trying to rdp into the attack box. is that possible?

#

wait, no, it's not attackbox, it's winfun1.1

keen cave
#

You cannot rdp into the attackbox. You can however rdp into the target machine FROM the attackbox.

#

Are you pinging the target machine from your attackbox?

dense surge
#

no. this doesn't have to do with the attack box, i was mistaken. this room asks that I rdp into WINFUN1.1

keen cave
#

Yes

#

Which you cannot do

#

If you're not connected to the same network

#

And if you're trying to do this from your local machine. You need to check the OpenVPN tutorial

#

If however you want to use the attackbox (Which i would recommend in this case)

#

You can

#

And just use RDP from the attackbox to the target machine

dense surge
#

oh. okay yeah, that's much less hassle. big thanks.

faint marsh
#

Hello i wanna ask about the subscription, im a student but i didn't und the offer of 8$

runic wave
#

On the THM website dashboard we can add friends. Appears as though I have addedd too many friends, is there a way to delete existing "friends" to add mroe recent active friends?

runic wave
faint marsh
runic wave
abstract raft
#

Hey, is anyone having problems in general with boxes?

#

In Network Services 2, on the MySQL task, the box is very temperamental

#

Can nmap fine, go to do the hashdump exploit with metasploit and then it times out, and then i can no longer nmap or ping

#

have to restart the box, will let me nmap initially but then stuck in a loop of it going down. Tried restarting 3 times now

storm ridge
#

I have a problem with my country field
Anyone from support here?

urban quail
#

hi toeveryone

languid rover
#

what exactly

eager fulcrum
hasty pelican
#

Hi, I can't terminate the machine. Everytime I press terminate, the green box pops up saying "Your machine has been terminated." But then if I restart the page, the machine is still running. How do I fix this? I've tried restarting the browser and my VPN but its not working

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

dense surge
#

I've been having trouble remote desktopping into the windows machine in the Windows Fundamentals Room. (https://tryhackme.com/room/windowsfundamentals1xbx, task 7) I can't ping the windows machine, and it looks like the network icon in the bottom right hand corner has an error sign "no internet access". What should I do?

lament trout
dense surge
scenic torrentBOT
#

Gave +1 Rep to @lament trout

lament trout
#

your RDP isn't working?

dense surge
#

yeah i can't rdp into the windows machine from the attackbox

lament trout
#

can you show the issue you're facing while trying to RDP?

dense surge
#

so if i can't ping to it, i won't be able to vnc into it

lament trout
#

all machines don't reply to pings.

crystal marlin
# dense surge

If you can't ping it that only means it doesn't reply to ICMP echo. Doesn't mean there has to be an issue with the machine.

dense surge
#

til, okay

#

well brb, i'll get a pic of the vnc problem

#

it'll stay here for a really long time

#

when they tell me to remote desktop, i assume they meant tigervnc, right?

keen scroll
#

Isn't it RDP instead?
You could try remmina for that

dense surge
dense surge
scenic torrentBOT
#

Gave +1 Rep to @keen scroll

acoustic cape
#

hey @eager fulcrum how can I get unverified on my old discord account and verify on this one, I do not have access to my old discord account

dense surge
#

got it thanks @keen scroll @crystal marlin @lament trout

sharp salmon
#

How do you get the certification roles on this discord server?

dense surge
sharp salmon
dense surge
#

o no idea then

crystal marlin
#

I think you have to reach out to a mod for that.

#

Mod, not staff πŸ™‚

sharp salmon
#

thanks!

sage sierra
#

is there some way to stop burp from updating in the attack box?

carmine marsh
#

use an invalid local port number as upstream web proxy for those hosts

#

@sage sierra

pulsar sparrow
#

ive never used the attackbox before, but is there something special i have to do the box can reach out to the internet?

#

dont want to install anything to my machines so am using the attackbox...which does not have openvas installed and cannot do the docker pull.

crystal marlin
pulsar sparrow
#

@crystal marlin oic, thanks

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

warm lintel
#

My openvpn isn't connecting via the command line and when I try to download a new openvpn file on the THM site I get a 404.

#

Wondering if anyone else is having this issue

#

Openvpn is working when I try to connect to other vpns outside THM

#
2021-12-11 17:40:07 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)

2021-12-11 17:40:07 TLS Error: TLS handshake failed```
#

Imma just assume that whatever THM server i'm on got dos-d. I'll be back later.

plush bay
#

known issue and has been kinda a problem for a while now

warm lintel
#

@plush bay Thank you!

scenic torrentBOT
#

Gave +1 Rep to @plush bay

warm lintel
#

mb, was too stubborn to click the "Having Problems?" link

livid cradle
#

In β€œwindows fundamental 1” im unable to load the page of the machine. Am i doin somethin wrong or is somethin wrong with the machine

unreal dirge
#

Hey y'all, I'm trying to finish the nmap room on my own vm, but I it says "Host seems down." when I try to run the syn scan for it.
I've tried changing server, getting a new config, starting a new machine to scan, running the troubleshooting script, and tried to run the scan from my actual machine too but no luck.
The script says everything is good and the connect page says I'm connected, too, and I can ping 10.10.10.10 and it shows my ip for the vpn when I pull it up in firefox.
I guess this could be some weird problem with my network but I have no clue what to try, any suggestions would be appreciated.

crystal marlin
livid cradle
crystal marlin
unreal dirge
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
unreal dirge
rotund flare
#

Hello there,

I try to do the " [Day 4] Web Exploitation Santa's Running Behind" room but my Attackbox freeze every time i try to load my worldlist on burp in the intruder section. Does anyone also encounter this problem?

#

I try on 2 different PC and 2 different network same problem. It look like the problem comes from the hosted VM.

sacred field
rotund flare
#

i try with rockyou.txt. When i click on the file to load my attackbox freeze

sacred field
#

check right above the questions for that day, there's a link to the suggested wordlist

#

rockyou seems to be far too huge to load into burpsuite (at least in a reasonable time)

#

I ran into the same problem

rotund flare
scenic torrentBOT
#

Gave +1 Rep to @sacred field

sacred field
livid cradle
crystal marlin
crystal marlin
mighty quail
#

i'm having issues with the attackbox. netcat only listens on 0.0.0.0

#

won't assign any IP or listen on (all) IP's for incoming connections

#

Listening on [0.0.0.0] (family 0, port 1234)

#

That's what I get when I try to do: nc -lvnp 1234

#

when I do: nc -lvn <TargetIP> 1234

#

nc: Cannot assign requested address

#

I'm using browser based attackbox, so it's not like something is misconfigured on my end

keen scroll
#

Listening on 0.0.0.0 means to listen on all interfaces
To listen on your choice of port, nc -vlp <PORT>

mighty quail
#

yea it's not working. not dropping a shell

#

doing the vulnversity room

broken bear
mighty quail
#

yea i get that, but after seeing the 0.0.0.0 i tried to define IP

#

still didn't work

broken bear
#

throwing in the -l flag on your command tells it to wait passively for an incoming connection.

#

On the attack box, your command should be nc -lv <port>

#

The victim that you can run a command on should reach back to your attackbox IP on that port

mighty quail
#

This is what i did

#

This is the only thing changed in the script (cloned from git) which is definition of the attackbox ip

broken bear
#

What does the attackbox listener do when you execute the phtml file after uploading it?

mighty quail
#

Shown in the first pic

broken bear
#

Because setup looks fine on both ends.

mighty quail
#

keeps on listening on 0.0.0.0 and doesn't proceed with a reverse shell

broken bear
#

So you uploaded the file. Did you execute after uploading?

#

The file doesn't automatically execute after the upload.

mighty quail
#

dang. lol i feel like such an idiot

#

thanks for the help

naive dust
#

help getting a 405 when trying to complete the attackbox tutorial

misty mesa
#

I connected to try hack me network using openvpn. When i scan using nmap(For Day 10 challenge)....the scan is extremely slow which takes 10 mins to finish
I tried all the non-vip servers and still the scan was slow

Can anyone help me out?

crystal marlin
misty mesa
crystal marlin
#

If the machine does reply to pings, I would go with nmap -sS -T4 -vv -p- IP

minor hinge
#

hey guys what do u guys suggest for a Hacking Setup r im using kali in a vm on windows but its very annoying

misty mesa
crystal marlin
misty mesa
#

Ok thank you so much

naive dust
naive dust
minor hinge
#

my issue is not resources

#

i have pretty good pc

#

its just vm's are annoying when i need to alt tab and use hotkeys

celest wadi
#

So, I've had my PC dual-booted for over a year now

minor hinge
#

VMWARE

#

I do have a second monitor

#

Its just annoying for me to go between windows and kali

#

And i alt tab very often

#

Bcz i save my nites qnd stuff on windows

#

Notes*

#

I have been look8ng at wsl2 kali

#

Im installing rn i will get back to you to if it works

#

I just completed installing win kex kali wsl2

#

And it works for my use case

undone brook
#

Hi admins I want to change my username on TryHackMe website "anonwhite22" to "P3K0E" thanks

naive dust
#

heyyyy having a slight issue, i cannot exit nano text editor or save it or anything for that matter is this a bug or???

#

tried that

#

Well , trust me it didnt

#

Yeah I know I'm just saying it aint working for some reason lmao

earnest meteor
#

Hi, is there any way that after completing a learning path, get my cert issued to my real name instead of my username?

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

ionic garden
#

Hello, is the subscription billed at the 1st of each month or the same day of the month that the subscription was started?

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

zenith flume
#

was wondering if I could get an admin to reset my HackPark room. It is not resetting the "Privilege Esclation without Metasploit" tasks. Currently the room for me is 0% completed but that task is completed not allowing for 100% completion of the room.

pliant cape
#

Need some help changing my nationality in THM. I have tried many times, but it will not let me change my nationality from Afghanistan... Please help πŸ™‚

keen scroll
pliant cape
scenic torrentBOT
#

Gave +1 Rep to @keen scroll

naive dust
#

hey there is there a way to change username on THM.com

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

half meadow
#

Does anyone know much about WSL2 and winkex or where I should go for support with it?

livid otter
#

Anyone else having issues pinging the AoC VMs? I cant get a ping response from the AoC Day 11 VM. Day 12 is working fine. I've restarted the VM several times and tried accessing it from both the AttackBox and my OpenVPN connection with no luck. Thanks in advance!

half meadow
livid otter
#

Ah, I don't think I connected that it was a Windows machine with that fact. You are certainly right. Thanks!

half meadow
#

Possibly a bad way to do it and others know a lot more than me, but I usually start with a quick nmap -Pm (if possible) as it's helpful a lot of the time + works even if it's windows

#

Though I don't know of the downside and there may be better ways of checking if the machine is up πŸ™‚

livid otter
#

πŸ‘

pulsar sparrow
#

@livid otter the day 11 challenge towards the top mentions the fact that it is a microsoft box that does not respond to ICMP and they tell you to add -Pn flag

#

well...maybe not towards the top. The paragraph right above the 1st "question"

livid otter
#

I really should read instructions before I dive into things... LOL

naive dust
#

anyone know why the attack box isnt detecting me pressing the ctrl key?

bronze vale
#

Are you on macOS?

proud palm
naive dust
polar iris
#

hello, I have a problem with running exploits that are written for python2 on the attack box, python2 seems to be missing the requests module, but when I try to use pip2 to install it, it says it is already installed, referencing the python3 location

polar iris
#

this seems to have worked

/usr/bin/python2 -m pip install requests

naive dust
ruby wyvern
#

I'm from India and I'm trying to buy subscription but transaction isn't going through, can anyone help me out please ?

#

I'm using PayPal on which it's a visa , I don't have a credit card

main junco
#

Hello! I get a 404 page when trying to download the OpenVPN file. Could you please help me with this? Thanks!

untold nacelle
#

What the rooms release schedule?

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

frosty robin
#

hello i've joined thm with my student acount but i still couldn't manage to get discount what can i do

sharp bisonBOT
shut flame
#

Hey, I'm trying to complete the Offensive Penetration Testing Path but in the Room "Attacking Kerberos" the machine is incredibly slow. I'm at the task mimkatz and after nearly each command the ssh terminal freezes and I have to wait about 10 minutes before being able to execute another command. Is this a problem on my end or does anyone has the same problem?

frosty robin
#

!docs student

sharp bisonBOT
frosty robin
#

bot returns nothing is it normal

crystal marlin
frosty robin
frosty robin
#

thanks

naive dust
#

guys 1 month plan should end automatically after 30 days??

crystal marlin
naive dust
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

pure jackal
#

I am sure that everything from my end has no problems? So what is the problem here?

crystal marlin
naive dust
#

In the JR PenTester path, there is a Burp Suite room that I have to do, even though I've done a Burp Suite room once and earned a badge for that. Could you kindly synchronize that?

ruby comet
#

➜ solar nmap -Sv 10.10.80.217
Failed to resolve/decode supposed IPv4 source address "v": Name or service not known
QUITTING!
anyone who's seen nmap act like this before? :S

#

(solar) is my current dir

ruby comet
scenic torrentBOT
#

Gave +1 Rep to @lone karma

naive dust
ruby comet
#

no worries - that was all on me! πŸ˜„

gaunt lava
#

How can I kick someone inactive out of the Team?

naive dust
#

hello

#

room django does not work

#
Unable to connect

An error occurred during a connection to 10.10.89.135.

    The site could be temporarily unavailable or too busy. Try again in a few moments.
    If you are unable to load any pages, check your computer’s network connection.
    If your computer or network is protected by a firewall or proxy, make sure that Firefox is permitted to access the Web.

broken bear
#

Can you verify and post a screenshot?

naive dust
#

cant post a screenshot

#

wont allow me to

#

@sharp bear Can you maybe give me image perms?

broken bear
#

!docs verify

sharp bisonBOT
sharp bear
#

no, you can verify as Juun suggested

naive dust
#

says my token is used by someone else

#

but I deleted my old account

crystal marlin
naive dust
#

discord

crystal marlin
# naive dust discord

Then you have to reach out to a mod(not staff) to unlink your token. Not sure if juun has permissions for that already, but might be worth to start asking him to do so.

#

Oh okay, as you said help with wreath and not with openvpn πŸ™‚ Did you download the openvpn config file for wreath network?

#

And what`s the issue?

#

Show a screenshot of your openvpn output pls.

broken bear
crystal marlin
#

Alright, good to know πŸ™‚

crystal marlin
broken bear
crystal marlin
#

Is the wreath network even running?

#

The **wreath **network. Not your own.

#

Have you also tried doing a nmap scan with the -Pn flag? As ping most likely won't work.

#

With using the -Pn flag, right?

#

If you do ip a s do you only see a tun0 interface or any extra like tun1, tun2 etc?

#

Well, not sure why it's not working then tbh :/ Maybe the wreath network is messed up and needs a reset.

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

naive dust
red badger
#

I am not able to connect to Day 8 machine - Santa's Bag of Toys

waxen viper
#

Hi, is there anyway to change country flag on profile?

naive dust
#

how would I connect to the machine

#

would I paste it in my browser after connecting to my openvpn package?

#

nvm figured out

#

django room does not want to work

proud palm
# red badger I am not able to connect to Day 8 machine - Santa's Bag of Toys

Should just need to start machine and wait for split view to pop up. If the split view is not popping up you can also rdp into the machine using these instructions "If you want to RDP into the machine, start the AttackBox and enter the following into a terminal: xfreerdp /u:Administrator /p:grinch123! /v:MACHINE_IP - The credentials for the machine are Administrator as the username, and grinch123! as the password."

proud palm
naive dust
dawn shuttle
#

is dm-ing the admin a good idea? (I need to remove the discord token thats currently on an old account)

hasty pelican
#

Pressing on a Hint button in any room gives this error in Chrome console and hint box does not pop up. Tried refreshing, restarting page, force refreshing, not working. Using a VM. I can open the hint on my phone browser or on my PC browser but obviously I'd rather fix it on the VM browser. Any advice?

naive dust
median mulch
#

i have needed to use sudo ip link set dev tun0 mtu 1200 more than twice in one week.

#

when I run this command, does something reset or will packets increase on its own?

#

i shut down my vm, and not sure if things just get "reset", but that command almost always works. Thanks!

pulsar sparrow
#

@austere robin wreath network IP for me is 10.200.192.200, looking at your commands it looks like you are going after 10.200.193.200

#

this type of room should have same ip for everyone?

plush bay
dawn shuttle
pulsar sparrow
#

@plush bay so my comment to @austere robin about why they cant reach the Wreath Network is valid. Incorrect IP?

plush bay
#

probably

pulsar sparrow
#

joined that room last night, looks fun but i havent started it

plush bay
#

it definitely sounds like you 2 are sharing a network

pulsar sparrow
#

not me, they are doing the Wreath Network (https://tryhackme.com/room/wreath)

#

and having an issue reaching the machine in question. Looking at the room and looking at what @austere robin posted in screenshots, they are hitting the incorrect IP

naive dust
naive dust
pulsar sparrow
#

it does, i didnt scroll that far back

plush bay
#

oh okay then that is weird

pulsar sparrow
#

and yes the room does look a little overwhelming, just been reading through the whole thing to get an idea of what to expect

pearl ravine
#

Is it possible to get audio when utilizing the AttackBox or Kali VMs provided by Tryhackme through the browser? Sometimes I’d like to watch instructional YouTube videos inside of the VM, but I can’t get any audio when I do.

#

Interestingly enough, I do hear the teardrop sound when I use the terminal, but I don’t get any audio through the browser

visual pulsar
#

something seems broke with the profile badge

topaz elm
#

is there a way to get "download task files" into Web AttackBox without the need to go to THM inside the browser of Attackbox?

naive dust
#

Deleting my Discord account. In case I return, can I get an admin to unlink this account from my THM token?

pulsar sparrow
#

@topaz elm without doing things like: download file, start python http server, on other machine wget file...dont think so

naive dust
#

Apologies in advance for the trouble

proud palm
broken bear
proud palm
proud palm
finite aurora
teal dove
#

Hi, am new to discord and I have a problem downloading openvpn config file in THM. it says the page has been lost in the matrix. can someone please help?

Please let me know if this is not a right channel to ask

teal dove
hallow harness
#

Is anyone else having extreme load times with the attack box? I'm looking at 127k seconds to deploy lol

brave coral
#

Is someone able to assist me? I am unsure which of my email accounts I used to sign up, and the forgot password function has not sent a message to any of them 😦

lament trout
brave coral
#

@lament trout yes

lament trout
brave coral
#

whats the email?

lament trout
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
glad verge
#

Hello, can someone help me please?
I have a problem with my THM account. I'm trying to complete a room. I connected with openvpn to access the machines, but I see that the connection is well established, but I can't reach the machines, the ping does not even pass. On Attackbox, it's the same although the machine is well started. Thank you for your help

lament trout
lament trout
#

which room are you trying to do?

glad verge
lament trout
glad verge
lament trout
#

did you include -Pn flag as told in the task?

#

you can share a screenshot after verifying.

#

!docs verify

sharp bisonBOT
glad verge
scenic torrentBOT
#

Gave +1 Rep to @lament trout

lament trout
glad verge
fading night
#

I have a 7-day streak atm, but my green flame thingie been stuck on 1 πŸ”₯ for 2 days now πŸ€”

finite oxide
#

I've faced with strange issue in my profile. Country always changes to Afganistan

crystal marlin
# fading night

Have you actually answered a question every day? As simply starting a machine is also deemed as "event" on the activity page, but an "event" will not keep your streak up, only answering questions will.

naive dust
#

i am facing problem with my battery . For 1 year i mostly used my laptop plugged into the outlet . Now whenever i use it without charging it barely run 10 min.

#

btw im facing this issue more after i upgrade to win11

#

should i change my battery?

lament trout
naive dust
#

ic

lament trout
fading night
#

well yea

#

that makes sense

#

i dont really care too much about the streak i just thought it was a bug tbh

#

or maybe im just dum SureBruh

small hedge
#

smbclient //$ip/profiles -U Anonymous

bash no such file or directory

#

what do i do

sand olive
#

which smbclient

small hedge
#

yo where did that message dissapeared

sand olive
#

Which one

small hedge
#

that guy that said space needed or something like that

sand olive
#

Wrong slashes too

#

Try \

#

\\ip\share

small hedge
#

am in now

#

just wanted to thank that guy

crystal marlin
naive dust
#

I wasn't sure if I am right after I typed it, so I erased my message. Never mind.

scenic torrentBOT
#

Gave +1 Rep to @lone karma

naive dust
#

Ehm? Alright, thanks ;-))

sand olive
naive dust
#

Ehm... you are getting me too emotional. Please stop.

#

:)

hasty pelican
#

Are THM daily streaks based on the "day" (0000-2359) or like I need to do exercises within 24h of each other to keep the streak going?

naive dust
#

Therefore make sure your timezone is setup right.

hasty pelican
#

Just to confirm, if I do challenges at 0001 on 14th dec, and 2359 on 15th dec, it still counts as a streak right?

naive dust
lusty widget
naive dust
lusty widget
scenic torrentBOT
#

Gave +1 Rep to @lone karma

naive dust
#

I am having issues verifying my badge on discord I am getting an Unable to verify message when i copy paste the script from tryhackme site

crystal marlin
naive dust
#

yes i read the bot message and did what it said and like i said i am getting this message back

crystal marlin
naive dust
#

yeah i said oops sorry as in that was a mistake man. i ment to message you and accidentally hit paste my bad. i did what it said

crystal marlin
naive dust
naive dust
naive dust
lament trout
#

from my exp on the site, you increase a streak on the basis of the day, say you do a task at 0001 hrs, your streak increases
but in order to maintain the streak you gotta do the next question within 24hrs, say you do a question today at 0500 hrs, you lose the streak if you do the next question at 0501 hrs the next day.
I could be wrong.

minor hinge
#

uhh im clearly connected to THM vpn

#

and can access machines

#

but the access page says im not connected

indigo shale
#

I have huge connection issues when using the OpenVPN. I need to reload pages several times because I get a no-connection-error on them. When I use the AttackBox the sites load fast and without issues. I've tested multiple VPN servers but to no success. The issues occur on my local machine as well as in VMs I use.
Anything I am missing here? Or is it just because AoC is happening and the VPN servers are overcrowded atm?

quaint flower
#

is there a way to share that you've completed the room other than the initial prompt? Running THM and socials on different browsers, hence missed the prompt

crystal marlin
crystal marlin
indigo shale
crystal marlin
quaint flower
indigo shale
#

Otherwise it would't work at all.

crystal marlin
# indigo shale Otherwise it would't work at all.

That's not right, if you have it running on your windows host it would still work, but you might face issues. Anyways, if you do ip a s do you only see a tun0 interface or any extra like tun1, tun2 etc?

crystal marlin
# indigo shale Only tun0.

Try sudo ip link set dev tun0 mtu 1200 and then check if that's gonna solve the issue, if it doesn't put it back to 1500

slow fjord
#

Hi Tryhackme, but the task 1 in tutorial have problem, it's too slow that I cannot wait for it, it even do not work, so waste my time!

indigo shale
indigo shale
crystal marlin
indigo shale
#

"reset"so to speak

#

I am working through the AoC stuff. At day 7 atm.

crystal marlin
indigo shale
#

I don't know either. But now I know a thing more to try before I ask for help πŸ™‚ Thank you πŸ‘

sharp topaz
#

Does 'Subscribe Now' button does nothing for anyone else?

opaque pasture
#

I know my username but I don't know my e-mail address so I can't reset my password, what should I do?

sharp topaz
#

Had to allow js.chargebee.com domain on the PiHole, seems like it is in one of the blocklists

naive dust
#

How can I setup a crontab to launch tryhackme openvpn conf file

misty kestrel
#

What is the team feature for in THM?

fresh hedge
#

Hi , anybody having any idea how to get that little arrow in the middle left of the attach box, which helped in bringing up the keyboard?

#

It was there on the linux machines but not able to find it on the windows one for Day 13

obtuse wraith
#

Anyone know how to fix AttackBox when it comes up cli only and not the full desktop, hard to fire up a browser in cli only (lynx, i know). dirb not showing on AttackBox that came up for me. #Day14. 10.10.26.107

lusty widget
#

Could you just restart it?

#

As the desktop didn't come up I assume you don't have any progress that needs to be preserved

visual pulsar
#

I'm having trouble with https://tryhackme.com/room/linprivesc the last task. I can't ssh into the machine. the machine responds to pings, but ssh connections get to the password prompt. after entering the password it just hangs and times out.

#

conneting with netcat gives me the ssh banner

#

i terminated and started a new machine, same thing.

#

nvm... it just connected. for whatever reason.

#

either way it's really slow and sluggish all the way

crystal river
#

Is anyone here familiar with Wireshark or Airodump? I'm not sure what happened but wireshark isn't picking up anything at all and neither is airodump when I flicker through various channels. It was working just a second ago now neither pick up nothing. And I haven't installed or did anything since then. My card is in monitor mode as well

visual pulsar
#

have you selected the correct interface?

#

sorry. let me start at the beginning. did you try turning it off and on again?

crystal river
crystal river
visual pulsar
#

no, sorry. no idea.

#

maybe the interface went down in the middle of capture? just a wild guess. no idea how wireshark would react. or maybe you just had a filter in that didn't return anything?

#

anyhow... i'm waiting for linpeas since 20 minutes ago. and it's still "caching writeable folders" which is like the second thing after calling id and uname -a :/

crystal river
#

Only thing that shows up is Router 6 Solictation

visual pulsar
#

weird

#

did you try launching it in a terminal and monitor stdout/stderr?

#

sometimes that gives a clue

crystal river
#

how do I do stdout and stderr?

visual pulsar
#

just launch it in a terminal

crystal river
visual pulsar
#

wireshark?

crystal river
#

all I'm getting is loopback

visual pulsar
#

ip addr

#

are you using attack box or are you on a vm or are you on metal?

visual pulsar
#

right...

#

virtual box, kvm or vmware?

#

anyhow, you should have a network connection. check the vm settings in network. it should be NAT. then the vm will get it's own dhcp lease as though it were it's own computer on the network.

#

if you only see loopback in wireshark and have no other interfaces then it seems like a vm problem, not a wireshark problem

#

although I'd double check with ip addr

#

or ifconfig if you have net-tools installed

crystal river
#

everything seemed fine when I did ip addr and ifconfig

visual pulsar
#

i see

crystal river
#

hold on ill send a screenshot

visual pulsar
#

you can copy text from a terminal

crystal river
#

: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
link/ether 08:00:27:9dπŸ†Ž9d brd ff:ff:ff:ff:ff:ff
inet 10.0.2.15/24 brd 10.0.2.255 scope global dynamic noprefixroute eth0
valid_lft 86340sec preferred_lft 86340sec
inet6 fe80::a00:27ff:fe9d:ab9d/64 scope link noprefixroute
valid_lft forever preferred_lft forever
5: wlan0mon: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UNKNOWN group default qlen 1000
link/ieee802.11/radiotap 00:c0:ca:98:82:ca brd ff:ff:ff:ff:ff:ff
6: wlan1mon: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UNKNOWN group default qlen 1000
link/ieee802.11/radiotap 00:c0:ca:98:c3:5f brd ff:ff:ff:ff:ff:ff

visual pulsar
#

and put text from the terminal in ``` ```

#

anyhow, I'm not sure if VM can work with wireless devices in monitor mode.

broken bear
visual pulsar
#

deprecated?

covert fractal
#

Hey sorry for the stupid question but i just opened the beginner path and am stuck on 83% completion even though i've answered every question correctly

#

How can i fix that

visual pulsar
#

well I suppose it is

pulsar sparrow
#

@visual pulsar no longer being used / updated

visual pulsar
#

I know what it means. I was just surprised.

pulsar sparrow
#

gotcha

visual pulsar
#

@covert fractal answer the remaining questions to get 100%.

covert fractal
#

i've answered every one

visual pulsar
#

ya. i just found those.

covert fractal
#

i'd send a screenshot but i can't send screenshots in this chat

sharp bisonBOT
broken bear
#

once you verify, you can post screenshots

pulsar sparrow
#

@covert fractal some of them are not questions but you still have to click a button

covert fractal
#

am i missing something ?

pulsar sparrow
#

that 1st one, says 'completed' can you click that?

broken bear
#

Refresh the page

scenic torrentBOT
#

Gave +1 Rep to @pulsar sparrow

covert fractal
broken bear
#

if a button isn't green, you haven't clicked the button

pulsar sparrow
#

yah i have wasted time trying to figure out 'broken' rooms when it was just those "No answer required" just have to click the button things

crystal river
broken bear
magic vortex
#

can someone give a help

#

iam having a problem with the vpn

#

the open vpn gives "Initialization Sequence Completed"

#

but cant access machines

visual pulsar
#

@magic vortex check ip addr to see if the tunnel is up

visual pulsar
#

you can't ping the machines?

magic vortex
#

nope

visual pulsar
#

none of them or did you only try one? maybe it's broke, not the vpn?

magic vortex
#

i tried to rooms

#

having same problem

visual pulsar
#

weird. no idea then. aside from did you try turning it off and on again?

magic vortex
#

i just re installed my kali linux on the new version

#

and now i cant access the machines

#

could there be something wrong in this version

visual pulsar
#

I don't know.

broken bear
#

That shouldn't be it.

#

Can you post a screenshot of your connection, and of the command you are using to test connectivity?

#

Preferably in separate terminal windows so we can see them side by side

magic vortex
#

i changed the vpn region

#

it wasnt working on EU

#

but pinging machine worked on US region vpn

subtle geyser
#

I'm having issues with downloading the vpn file

#

I'm getting a 404 message

scenic torrentBOT
#

Gave +1 Rep to @visual pulsar

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

covert fractal
#

I can't seem to connect to the machine using the split view nor can i access it trough linux with openvpn

naive dust
#

Hello, My country is wrong on my profile and I don't find a way to change it. Does someone can help? Thanks

naive dust
covert fractal
#

vulnversity

crystal marlin
covert fractal
crystal marlin
covert fractal
crystal marlin
covert fractal
crystal marlin
covert fractal
#

Okay thanks

#

also sorry for the stupid question am just new to this

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal river
magic vortex
#

some time the machines pings

#

but still the machine doesnt go for ssh

crystal marlin
hoary bear
#

My nmap scan always takes 20 min on average. It didn't use to. Is there any way I can make it faster?

crystal marlin
hoary bear
#

Already doing it that way

broken bear
#

Do you have any additional information about what the port range is?

magic vortex
hoary bear
#

I always go for all since I don't know what might be open

magic vortex
#

i can join to a VC and share my screen

#

maybe there is something i cant see or missing something

broken bear
#

-p- is always going to take a long time, because you have 65536 ports, each with a time limit. Even with an aggressive scan posture, there is still a minimum amount of time spent waiting for non responsive ports to time out.

hoary bear
#

That's true, but I think it used to be faster...? I don't really know what happened

crystal marlin
magic vortex
#

and the ping is working

crystal marlin
magic vortex
#

try it

#

but i think there is a problem with the vpn

#

do u want me to join a vc

crystal marlin
magic vortex
#

ssh tryhackme@10.10.17.67

crystal marlin
#

Maybe there is an issue with the vpn, but first I want to make sure it's not the target machine

magic vortex
#

and the ping is working

crystal marlin
magic vortex
#

tun0

#

my tryhackme ip

pulsar sparrow
#

@hoary bear add -T4 and --min-rate 10000

#

cuts my nmap times by 50% at least

crystal marlin
magic vortex
#

nope

hoary bear
#

I'll test that min rate now and see what happens

crystal marlin
pulsar sparrow
#

@hoary bear played with lots of values and -T4 --min-rate 10000 seems to provide the best speed /reliability

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

pulsar sparrow
#

the min-rate can cause you to not pickup open ports on occassion so be aware of that

magic vortex
#

it worked

magic vortex
hoary bear
#

Huh, you are right, this is extremely much faster. I will keep that in my mind

#

Thanks!

#

This is a neat trick

pulsar sparrow
#

there is also a --max-rate i have used on occassion if the network is really slow, set it to like 1000 otherwise lots of packets get lost, but that usage has been rare for me

covert fractal
#

I get connection refused while trying to use gobuster how do i fix that ?

bronze vale
#

Are you connected to the VPN?

covert fractal
#

Yes but how can i test that to be 100% sure

bronze vale
#

curl 10.10.10.10/whoami into your terminal

#

Should output an IP address

covert fractal
#

literally nothing happens

bronze vale
#

There's your issue:)

#

Did you leave the VPN running? @covert fractal

#

Make sure to leave the terminal Window open and running

#

After it says "Intialisation Sequence Compelte"

covert fractal
#

Yes its open

bronze vale
#

Alrgiht

#

Send a pic of the wholle output pls

covert fractal
#

of the vpn or the gobuster ?

bronze vale
#

VPN

covert fractal
bronze vale
#

You have multivpn!

#

Press CTRL+C, type sudo killall openvpn, then re-run the VPN with sudo openvpn name.ovpn

covert fractal
#

done

bronze vale
#

After that make sure you're connected with curl 10.10.10.10/whoami, leave that terminal window running, don't mess with it at al after the "Initialisation Sequence Completed" message until you're done with TryHackMe.

#

Once you are done with TryHackMe for the day, to disconnect from the VPN, head over to the terminal Window running the VPN and press CTRL+C to kill the process, or repeat the sudo killall openvpn in another terminal Window.

#

It's also good practice to run the command when you bootup if you're using a VM just in-case

covert fractal
#

i did that but when i run curl 10.10.10.10/whoami i get "Failed to connect to 10.10.10.10 port 80: connection timed out"

bronze vale
#

Send another screenshot of your OpenVPN output log?

covert fractal
bronze vale
#

You still have MultiVPN

#

Are you running another VPN anywhere?

covert fractal
#

i have not used kali in a while but i don't remember using any other VPN

bronze vale
#

!multivpn

sharp bisonBOT
#
TryHackMe
Learn how to look for duplicate instance of your OpenVPN connection.
β€’ Step 1

Make sure you have setup your VPN connection correctly https://tryhackme.com/room/openvpn

β€’ Step 2

Type ps aux | grep openvpn into your terminal and press enter

β€’ Step 3

If there's more than one line (that don't start with "grep" or sudo), do the following steps

β€’ Step 4

Type sudo killall openvpn into your terminal and press enter

β€’ Step 5

Start the VPN with sudo openvpn <path-to-config>

bronze vale
#

Skip step 1

covert fractal
# bronze vale !multivpn

i can't seem to open this as a link i can only open the link thats in step 1 which leads me to "OpenVPN A guide to connecting to our network using OpenVPN"

#

oh nvm ...

visual pulsar
#

I think ||CVE-2021-3156|| broke the intended solution for lookingglass

#

although I'm not sure such a thing as intended solution exists.

livid onyx
#

Hello, all.
I have an issue with my OpenVPN connection.
I have Kali 2021.3 installed on the Virtual box (the host os is MacOS)
the OpenVPN version is: 2.5.1-3
I realised that last few days I have some issues with some rooms (nmap didn't get any results or nc won't connect to my machine). I decided to download the settings file again and now I have this error:

~/thm ξ‚° sudo openvpn settings.ovpn
2021-12-14 22:47:49 DEPRECATED OPTION: --cipher set to 'AES-256-CBC' but missing in --data-ciphers (AES-256-GCM:AES-128-GCM). Future OpenVPN version will ignore --cipher for cipher negotiations. Add 'AES-256-CBC' to --data-ciphers or change --cipher 'AES-256-CBC' to --data-ciphers-fallback 'AES-256-CBC' to silence this warning.
2021-12-14 22:47:49 OpenVPN 2.5.1 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on May 14 2021
2021-12-14 22:47:49 library versions: OpenSSL 1.1.1l  24 Aug 2021, LZO 2.10
2021-12-14 22:47:49 OpenSSL: error:0909006C:PEM routines:get_name:no start line
2021-12-14 22:47:49 OpenSSL: error:140AD009:SSL routines:SSL_CTX_use_certificate_file:PEM lib
2021-12-14 22:47:49 Cannot load inline certificate file
2021-12-14 22:47:49 Exiting due to fatal error

On the OpenVPN forum I found that something wrong with the config file.
https://forums.openvpn.net/viewtopic.php?t=19415
Could someone help me with this issue?

covert fractal
bronze vale
#

Type sudo ip link set dev tun0 mtu 1200 into your terminal and try again

#

if not ping me

covert fractal
bronze vale
#

Screenshot?

covert fractal
#

Also should i get something after i type sudo ip link set dev tun0 mtu 1200 ?

bronze vale
#

Nope

covert fractal
bronze vale
#

Where are you getting this IP address from?

#

Also can you send me another screenshot of your OpenVPN output log?

covert fractal
covert fractal
#

and i had reset the room

bronze vale
#

Hah, there's your reason

#

Did you perform an NMAP scan on the room?

covert fractal
#

yes

bronze vale
#

What port did the webserver say it was on?

covert fractal
#

let me recheck πŸ˜„

#

its supposed to be this one right ?

bronze vale
#

Okay so

#

When you use your internet n stuff, the default port for webservers is 80

#

Which is why when you go to google.com it loads easily

#

But when it's not on port 80, your browser/ tool will still go to port 80 as a default

#

So, when you find a webserver that isn't on port 80, you need to tell it that it's not on port 80

#

In your web browser, you would type http://ip_address:port

#

In tools, sometimes you will use -p port but 90% of the time (especially for directory brute force tools) you format it the same way as your browser (http://ip_address:port)

bronze vale
#

You should see a beautiful website load if you have done it correctly

covert fractal
#

Yes it loads

bronze vale
#

Okay, now use the same logic for gobuster ;)

covert fractal
#

am pretty sure the port was 3333 the first time too (when i used the tryhackme attack box) and i still got gobuster to work

#

but thanks for the good explanation i got it to work now

#

am just confused as to why it worked the first time

bronze vale
#

Magic

zealous hinge
#

Does anyone know why wsl2 can’t see my openvpn tunnel when i connect with the windows desktop app and mabye have a potential fix?

broken bear
#

because WSL network stack is awful?

zealous hinge
#

Well is there no fix?

broken bear
#

I think you need to add the OVPN interface as a gateway

#

Run a fully featured hypervisor and run the ovpn tunnel in the vm instead of outside it

#

actual THM staff may have a better answer for using OVPN in windows for WSL2, but WSL2 is, in my experience, much more limited than something like vbox or vmware player

zealous hinge
#

Ok thanks

proud palm
broken bear
proud palm
scenic torrentBOT
#

Gave +1 Rep to @broken bear

visual scarab
#

Is this the room I report situations that have occurred while using the VM?

pulsar sparrow
#

like bugs or something?

visual scarab
#

like while being on the VM, my IRL received a php webshell trojan

pulsar sparrow
#

yikes!

#

this seems like the best room for it, ask a mod maybe?

gloomy abyss
#

Hi, i'm having an issue with my subscription.

#

My credit card was declined in the automatic payment processing, and i received a link by email and payed it manually

#

but it was not reflected in the web site, and still says that i'm not subscribed

#

And i can't use for example de browser vm

safe trench
#

My openvpn is not running split tunnel and after configuring the nmcli it will let me split but when I close out of the openvpn and reestablish later it does not persist

warm birch
#

Hey anyone else use that tool Windows-Exploit-Suggester.py and ran into the issue of trying to install python-xlrd? I've been stuck for hours would appreciate some help I'm not very good w python, I've tried for hours at this point to fix it

glossy niche
#

someone from THM Staff can help me with my student discount . i also sent an email but I have not received any response

stray lark
#

Hello, since yesterday i have no ip displayed in the rooms for the website i have to attack, it's replaced by "http://Machine_IP"

#

I can't copy / paste an image to give an example ...

#

For exemple in the day 4 of the advent calendar, i don't have the ip of the website where we are supposed to fuzz the login form

tardy badge
#

anyone know a bypass for verifying with the bot? just getting the not friends message

#

@stray lark so even after starting the VM, nothing?

stray lark
#

yep

#

On all the rooms i have the same problem

naive dust
#

You have to change your confidentiality settings

tardy badge
#

@naive dust oof thanks, been a while since I've used DC

scenic torrentBOT
#

Gave +1 Rep to @soft thunder

naive dust
#

Npnp

smoky turtle
#

Owasp Juice Shop - Task 8
I am not able to get the flag for the scoreboard page even though I am clicking the button for it (have cleared cookies)Object { headers: {\u2026}, status: 200, statusText: "OK", url: "http://10.10.148.8//rest/repeat-notification?challenge=Score%2520Board", ok: false, name: "HttpErrorResponse", message: "Http failure during parsing for http://10.10.148.8//rest/repeat-notification?challenge=Score%2520Board", error: {\u2026} } main-es2015.js:1:174644 seen in the console

analog ridge
#

I'd like to buy a subscription 1 month on THM but I have the money on bitcoin wallet, How can you help me?

hard rivet
#

HI,
I have a problem for open the room Holo
I have clear the cache, try hard refresh with ctrl + F5
I have try on chrome and clean firefox and is the same.
Thanks for your help πŸ˜‰

crystal marlin
junior anvil
#

I am on solar-log4j and I have a problem where the attackbox/kali hosts are super slow or just stop working. NotLikeThis I lost count of how many times I had to terminate and restart....What do you suggest?

hard rivet
stray lark
#

is there a way to contact the support directly on the website ? i can't do any room with my problem since yesterday.

crystal marlin
crystal marlin
stray lark
#

Okay, i'll wait here then

crystal marlin
#

!docs verify

sharp bisonBOT
hard rivet
crystal marlin
hard rivet
crystal marlin
topaz moss
#

i am not able to login because of ReCaptcha button not showing in Ubuntu.

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
stray lark
#

Well, i confused the attack box and the target machine, i forgot i had to start both each time ...
My bad, thx a lot.

celest quarry
#

hey yall, do you guys install the kali-linux-everything metapackage ?

pulsar sparrow
#

@celest quarryi did

#

havent used anything from it yet though πŸ˜›

celest quarry
#

I did install that last time like 3 months ago

#

took 80 gigs of space for the whole kali OS

#

now im coontemplating if I should do it again, but I got another issue, my other user terminal doesnt work like the root terminal, TAB button doesnt auto complelete/highlight/jump to directories. You know how to fix that ?

#

I did a fresh install, and wondering if its lacking a package or something, but everything is updated and upgraded

pulsar sparrow
#

@celest quarry 80gigs? running kali in a vm with the kali-linux-everything and im at 27G

#

thats odd, root terminal is fine but user terminal doesnt recognize keyboard commands like TAB or arrow keys?

celest quarry
#

yeah it does have some K symbol next to it

#

its not a font problem, cause the root is using same font

#

I used to do all the stuff with root account , I know I wasnt supposed to

#

its a common problem for other user accounts, Ill figure it out

pulsar sparrow
#

can you paste a screenshot here? you should be able to like: ctrl+shift+prtscr and your screen should darken a little, then you can select an area with your mouse (click/drag/release) then ctrl+v here

naive dust
#

Hi all,

I was interested in paying for the premium subscription service, but it seems Pop up Modal isn't currently displaying anything for me to input any payment details.

I have tried removing ad blockers, and using different browsers (Brave, Mozilla, Chrome) I also even tried to sign up via a mobile browser. I keep getting the same blank payment modal. Is this an issue on their end? Is anyone else experiencing this?

novel yoke
#

Hi, when i try to connect to the VPN i get this error, i never got it before :

novel yoke
#

Yes, i run it with sudo

naive dust
#

Weird, try to regenerate your .ovpn on the website and redownload it

novel yoke
#

I already try it too X)

naive dust
crystal marlin
pulsar sparrow
#

@naive dust do you have a pihole? someone a few days ago mentioned having to whitelist an address due to the same issue you describe

novel yoke
scenic torrentBOT
#

Gave +1 Rep to @soft thunder

novel yoke
#

Now i'm on EU-VIP-1 and it works

naive dust
#

anytime πŸ˜„

celest quarry
#

@pulsar sparrow I think I have to try and make a new user with /bin/zsh

#

@pulsar sparrow

#

heres the print screen i get with root

pulsar sparrow
#

cant really see to well, but looks ok to me, did you do any custom prompts or anything?

celest quarry
#

sending u this one with the other user

#

doesnt auto complete, doesnt underline the commands at all

#

its workable , but i could lose a lot of time + im used to tab command a lot

pulsar sparrow
#

echo $PATH does that look right?

celest quarry
#

nah man

#

its weird it works perfectly fine on the root account

#

and then when i swithc user to the regular account , it does have sudo privs it doesnt act like its a same terminal

pulsar sparrow
#

long shot, but maybe your user doesnt have TERM set?

#

echo $TERM with both the root and the user and see what comes up

#

if the user one comes up blank that could be your issue just do TERM=<set to whatever root is>

#

ususally like TERM=xterm or TERM=screen-256color

#

other than that I am at a loss

#

but it sounds like some ENV variable is not being set for the user

celest quarry
#

fixed it dude

pulsar sparrow
#

awesome, what wsa the issue?

celest quarry
#

so it seems that i added the user with ------ useradd -d /home/newname -m newname

#

i had to add it with the bash shell instead

#

so i typed with my root user : chsh -s /bin/zsh username

#

apperently fixes the issue

#

@pulsar sparrow thanks for your help anyways

scenic torrentBOT
#

Gave +1 Rep to @pulsar sparrow

pulsar sparrow
#

ahh, gotcha

#

that makes total sense lol

celest quarry
#

it made no sense to me , but I researched the hell out of it, and learnt new things on the way too

#

haha

pulsar sparrow
#

@celest quarry i say it makes sense because generally when you add a new user i do like: useradd -m -G users -s /bin/bash username

#

you added the user wihout giving it a default shell so it makes sense why TAB complete and stuff didnt work

celest quarry
#

yeah thats the right way

#

yup

steep wharf
#

hey i am new to pentesting and i tried to find the ip of the kioprix 1# vm but netdiscover cannot find it, its picking up the 3 vmware ips. i was wondering how do i fix this?

gaunt hull
#

yo i have a file in /usr/bin with root suid that runs /bin/bash

#

but when i run as a normal user it simply returns a shell as the user, not as root

#

im hella lost

bronze vale
#

If it’s for a THM room

gaunt hull
#

nah im just making my own beginner ctf 4 school

bronze vale
#

I probably know your issue

#

Add the -p flag to /bin/bash in the setuid

gaunt hull
#

gotchu ty

fallow breach
#

Jr Pentester path, room Content discovery, task 2. The link for the acme it support website /robots.txt is not loading for me. I have the machine active.

#

should i use an attackbox to try this room? the previous room worked without it yesterday

pulsar sparrow
#

@fallow breach some basic questions. The website itself loads up? ie http://10.10.10.10 or whatever IP

fallow breach
#

negative

pulsar sparrow
#

and you are connected to the vpn (since you are not using the attackbox)

#

if the site itself doesnt load it most likely means you are not on the VPN

fallow breach
#

okay. i will close chrome and relaunched and see if that gets me anywhere

pulsar sparrow
#

or, the machine itself is not up (I have done that before, started doing my recon without starting the room)

fallow breach
#

i thought that was the issue at first but i had no button asking to join room and i had answered the task 1 questions without issue.

pulsar sparrow
#

are you doing the attacking from your own kali vm or like that?

#

or using the attackbox vm they provide

fallow breach
#

to my knownledge i dont need any attackbox as its web based right now using browser dev tools

pulsar sparrow
#

the attackbox vm should be already connected to the vpn so you can attack your target. if you are on your on your own machine and using the THM VPN, then try the troubleshooting steps for taht to make sure you are on the network

fallow breach
#

HEY the link is different now since restarting chrome.

pulsar sparrow
#

stale info perhaps

#

works now?

fallow breach
#

no i keep getting a ERR_CONNECTION_TIMED_OUT

#

I went to the previous lab and was able to start the machine and access the website for the room.

pulsar sparrow
#

restart the room or have you tried that already?

#

restart the machine i mean, not the room

fallow breach
#

i will try restarted the machine again to see if that fixes the issue. I did leave the room and re enter. that did not fix the issue.

#

restarting the machine did not fix the issue.

#

i'm not connected to the openVPN. i'll go through that route. weird i havent had to do so in any previous rooms. i went through all of pre security as well without having to go in and manually do this.

pulsar sparrow
#

well if you not connected to the VPN and you are not using the attack box (which automatically connects to the VPN) your network has no way to talk to THM network

#

maybe the other tasks you completed did not involve a target machine

#

some tasks / challenges are in a web page that loads in a split window thing. Those do not require any VPN stuff

fallow breach
#

i definitely know the pre security had me booting up kali in the VM split window thing and connect via SSH to a target ip

pulsar sparrow
#

yeah so in that case the split window was a kali attackbox, and you ssh from that kali attacbox to a target machine.

#

both on the THM network

fallow breach
#

I have kali attackbox started and it will not connect to said website in the room

pulsar sparrow
#

now that part is beyond my understanding, never used the attackboxes.

fallow breach
#

User-agent: *
Allow: /

#

Disallow: /staff-portal

pulsar sparrow
#

if they split window something for me then i just did the close split view and ssh'd from my own machine

fallow breach
#

oooh

#

well dang

pulsar sparrow
#

wait you got the robots.txt this time? so you can reach the target machine?

fallow breach
#

i'm dumb

#

yeah the attackbox connected. that got it working.

#

i'm gonna go suffer in silence. thanks for walking through that with me.

pulsar sparrow
#

lol no worries, happens to all of us

calm kettle
#

Hi,

#

how can i change my username

limpid jewel
#

Hey guys, you seem to be making announcements to my discord server somehow.

#

TryHackMe #announcements
SERVER
β€” Yesterday at 11:37 PM
@Announcements Today's Advent of Cyber is an easy one πŸŽ„ The Grinch has decided to take today off. Take the cyber security careers quiz and find out more about the different cyber careers. Share it on socials & tag us with which cyber character you are!

https://static-labs.tryhackme.cloud/sites/careers-quiz/
TryHackMe
TryHackMe | Cyber Security Careers Quiz
Do a quick quiz and find out your ideal cyber security career!

#

any chance you can stop them?

keen scroll
wide smelt
#

i need a support please

#

can someone dm me? πŸ™‚

tender rapids
#

Hi there, I'm struggling to get the chatserver.exe program running on my local VM from the room Brainstorm. The program opens and seemingly instantly crashes.

idle fable
#

Hi, Could you please reset my streaks as it's not passed 24 hrs? This morning when I logged in; my streaks were gone. Thank you very much and look forward for a quick action.

tender rapids
#

Figured out the problem. Downloading from the ftp server corrupts the files unless you use binary mode

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

wide smelt
#

i need support help for reporting a misconfiguration

crystal marlin
wide smelt
crystal marlin
wide smelt
#

oh ok thank u

delicate cloak
#

hi, can i change my username?

noble salmon
#

can someone help with a hacked account? : (

naive dust
#

Couldn't link the original message so here it is

scenic torrentBOT
#

Gave +1 Rep to @soft thunder

naive dust
#

anytime

spare flare
#

static badges are broken

runic barn
#

This is happening on the COMPTIA path, Burpsuite room, Task 9, last question. And everytime i hit "submit", my antivirus blocks an attempt of exploit my computer, from IP 104.22.54.228.

#

Why is that?

plush bay
runic barn
#

y

runic barn
crystal marlin
# runic barn y

Ye, he doesn't likes that πŸ˜„ So you might disable meanwhile you submit the answer.

plush bay
#

guess this a thingy you never run into when you do not have any active scanning antiviruses on linux

runic barn
#

lol

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

void whale
#

Is there a way to change name in tryhackme website?

high isle
#

Hi
I'm trying to go premium via paypal but it doesn't work
Can someone help

mint sierra
#

Hey gang,
I've been given a code by Learnerbly through my employer - but when I'm redeeming it on the website it's saying it's invalid. Any suggestions?

pulsar sparrow
#

@mint sierra where are you trying to redeem it?

mint sierra
pulsar sparrow
#

πŸ™‚

grave folio
#

Is THM having technical problems, or just me? (attack box failed to open, and nmap scanning over OpenVPN is very slow)

#

nevermind - works now

urban wraith
#

How can I solve these ?

#

and they show my old rank

visual scarab
#

I am having an issue with john, can someone guide me to the appropriate action?

#

It is not recognizing rar2john

#

zip2john works fine

tawny cove
#

can someone please check the streak counter for me, it seems to me that i should be more than 1 day?? thank you

golden badge
#

why machine always lagging?

#

i can't even typing a single word

shadow pawn
#

@golden badge The tryhackme machines sometimes just lock up and you have to wait for them to respond if there's a lot of people using it at the time. it sucks, but until they upgrade their infrastructure it's something we just have to deal with. as far as I'm aware anyway, somebody correct me if I'm wrong

golden badge
#

oh ty

#

ill try

grave folio
#

Question about the "Solar" room: On Task 5 Exploitation, it says "Select the jdk-8u181-linux-x64.tar.gz package (or alternatively, download the file attached to this task, added for your convenience)." - but I do not see any file attached to the task. Is it missing?

vestal sapphire
vestal sapphire
#

there is an error

#

i cant send screenshot here

sand olive
#

!docs verify

sharp bisonBOT
vestal sapphire
#

oh yes

#

thank tou

#

it changed

#

i have another question regarding awards. there was said that weekly awards are given

#

how can i win it?

crystal marlin
vestal sapphire
#

yeah I am in it. how can I see my gained tickets? Or are they invisible?

vestal sapphire
#

oh alright. it mean the only thing is to complete daily tasks right?

crystal marlin
vestal sapphire
#

yes yes i got it

#

thank you for help!

chrome wraith
#

!docs verify

sharp bisonBOT
chrome wraith
#

! verify

naive dust
#

!docs verify

sharp bisonBOT
velvet pulsar
#

hello

elfin wharf
#

!docs verify

sharp bisonBOT
elfin wharf
#

hello

velvet pulsar
#

! verify

#

can anyone please help me connect to machine for cyber advent day 13 challenge

#

I can not connect to the windows machine

tawdry orbit
# velvet pulsar I can not connect to the windows machine

Connect in Split View (in-browser) or through RDP? For in-browser access, after deploying the AWS instance, in case the split-view screen iframe does not appear: use the Show Split View button at the top-right of the room page. πŸŽ„

velvet pulsar
#

got it to work thanks

chrome wraith
#

!docs

sharp bisonBOT
#
TryHackMe
Here are all of the possible topics!
!docs url

Visit the help site

!docs verify

Learn how to sync your THM profile to Discord

!docs student

Learn about our student discount programme

!docs levels

View all the TryHackMe levels & point requirements

!docs room-notes

Get started with making TryHackMe room

!docs room-review

Learn about the TryHackMe room review process

!docs api

Read about the TryHackMe API

!docs koth

How to play TryHackMe's King of the Hill (KoTH)

!docs free-path

What rooms should you do? A free guide for beginners

!docs bug-bounty

Learn about TryHackMe's Bug Bounty Programme!

chrome wraith
#

!levels

loud anchor
#

Hi, I bought a 10$ subscription but after I was charged I can't access the "subscribe only" room. (sorry for my english :)

loud anchor
#

no in the website

#

don't worry
so I just have to wait or there is something to do ?

#

thank you very much i will send them a message good evening

snow crest
#

Hello, how would i go about changing my username? Please thank you

snow crest
#

Thank you so much

scenic torrentBOT
#

Gave +1 Rep to @light vale

naive dust
#

can someone help me out with this? i found this exploit on a system im scanning but not sure what to do with the info it leaks
(can confirm im a (clueless) professional if needed)
the output i got was something like the example used in the module
i just dont know how to determine that it's leaking confidential info

main badge
#

Can someone from THM Staff help me with Student Discount please

crystal marlin
sharp bisonBOT
weary salmon
#

can someone help me with this - I am trying to SSH in deployed machine but it keeps giving me permission denied. I am using attackbox for this.

obtuse gyro
#

Hello !
I have a problem with the VPN I can't download it I only get 404 error every time
If anyone knows where it might come from πŸ˜„

woeful mango
#

refresh it and download again πŸ™‚

obtuse gyro
#

I tryed

#

I tryed to create another account
And he's not working too

#

ok i found just can't download from EU-Regular-2

#

i'm a bit stupid πŸ˜…

ancient prairie
#

Hey guys

#

I have an issue, i don't know why, but i can't access any machine or ping them even from my vm

#

It's weird

#

What could i do

#

I used VPN as usual it's not my first time, and i started the machine on the site, but i have no access, and i tried different rooms even

#

What seems to be the problem

celest wadi
ancient prairie
celest wadi
#

!vpnscript

sharp bisonBOT
ancient prairie
#

Ouuu

#

Hot

#

Thanks

celest wadi
#

Your welcome

lusty hazel
#

In my case the trouble shooting script also not working

#

Also, in exploiting vulnerabilities, Jr. Penetration Tester path, the Python script also not worked for the exploit