#site-support

1 messages ยท Page 263 of 1

grand perch
#

Looks like you'll have to install OpenVPN Connect. I much prefer community.

#

after you install the dmg, you should be able to import the ovpn (config) file by downloading the config file from your profile's access page.
https://tryhackme.com/access

civic violet
civic violet
#

i cant access the website, tried 3 different browsers and i also cleared my local dns catche

grand perch
#

Oh, I misunderstood what site wasn't working. That's bizarre. It's definitely up.

civic violet
#

its not working for me at all

grand perch
#

I'll grab a copy and throw it on googledrive.

civic violet
#

used 3 different browsers, cleared my dns catche and cleared browsing cookies and data, refreshed and its not working

civic violet
scenic torrentBOT
#

Gave +1 Rep to @grand perch

civic violet
#

what a legend @grand perch

grand perch
#

Thanks ๐Ÿ™‚
Just took me a minute to understand which site won't load ๐Ÿ˜„

#

Uploading to drive now. Will be a few minutes. (Rural internet)

civic violet
#

okay

#

i will be waiting.

naive dust
#

Does anyone know if the tickets will come back in to play, or will they be removed from you profile?

civic violet
#

hey

grand perch
scenic torrentBOT
#

Gave +1 Rep to @grand perch

grand perch
#

Yep, that's the DMG for Mac.

civic violet
#

thank you.

#

apperiacte it

#

also do free rooms count as leveling?

grand perch
#

Yep.

civic violet
#

when i finish some free rooms will i gain a room level like 0x4?

grand perch
#

I'm running through a bunch of free rooms before I upgrade to paid account.

civic violet
#

ugh. i wish i got a voutcher lol

grand perch
#

It'd be nice ๐Ÿ˜„
But either way, once the holiday bank-account settles down, I'll be looking to throw money at THM, they deserve my support.

crystal marlin
civic violet
#

@grand perch thanks so much, i downloaded openvpn now i need to import my openvpn thb configuration file.

#

thanks for the help.

modest solstice
grand perch
#

Glad I was able.

hallow owl
#

Hello I have a friendly question: I just bought a one year membership and it said I would have 2 months free, but it says my subscription will renew after one year only. Is this normal?

grand perch
hallow owl
#

Oooh I see. Any staff member would like to confirm @grand perch 's answer if possible?

civic violet
naive dust
#

DUMP, I didn't find solution for this.

clever junco
#

Hi Team, lab is not connecting on start-box

#

Error:Failed to connect to server

crystal marlin
simple radish
#

Hi, any way to programatically open the chrome console?

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

barren quail
grand perch
modern sluice
#

I think [Severity 8] Insecure Deserialization - Code Execution from "OWASP Top 10" is broken. I tried multiple reverse shells with base64 and they didn't work and the link to the github gist is not available anymore. I don't want to type the whole python code but it basically does base64 encode. Room: https://tryhackme.com/room/owasptop10#

crystal marlin
modern sluice
crystal marlin
#

Go to the github page and click on the revisions tab, scroll down a bit and you can copy paste the code. It's not meant to be like that, but at least you can find it there.

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

proven stratus
#

When I start my VPN on kali, I get: sitnl_send: rtnl: generic error (-101): Network is unreachable

Is this a problem?

#

Does tryhackme give any real support? I emailed support and got no response. (this is not a rant)

crystal marlin
proven stratus
crystal marlin
#

Okay then I guess it's solved, anyways, if you have any upcoming issues, there is a guide on how to verify

#

!docs verify

sharp bisonBOT
naive dust
#

any one know how to install msfvenom?

crystal marlin
naive dust
#

kali

crystal marlin
naive dust
#

i dont have it

crystal marlin
naive dust
#

no

crystal marlin
frigid hatch
#

Happy New Year, I need some help, the Linux Fundamentals part 3 [Start Machine] button isn't working or rather the room "says" it's running but is no where to be seen. The Attackbox is fine but isn't used in this room. Whats the or is there a fix?

thick terrace
dark moss
#

hey can anyone tell me how can i know if my vm is in nat mode or bridged mode

#

and how can i change it to bridged mode

wintry star
#

Anyone know how to solve this problem?

#

i fixed it

plain gate
#

OWASP top 10 ask for pickle hacking tool but I don't understand how to install it I mean I have try to do sudo apt install pickle and it said it don't find the repertory to download it may I have help with this ? plz

smoky shale
plain gate
#

but how I install it ?

smoky shale
#

pretty sure you will find the steps how to download it in there

plain gate
#

But I mean it said to copy past but how I paste the file in 3 diffenrent file cause there is 3 file but in the same folder ?

#

OH GOD I'M A STUPID DUMP there was a download Zip in the corner of github...

ruby raptor
#

Don't know if this is the correct place. Mod able to reach out to me about a CC transaction that I didn't authorize. (Rather than just disputing it with the CC company)

severe shadow
#

When I connect to the openvpn and start hacking the box after some time I cannot even ping for a while and after a while the connection continues. And also there are no errors in the terminal where I connected openvpn.

severe shadow
crystal marlin
severe shadow
bronze ocean
#

hey im doing the brainstorm room

#

im testing the program on my local windows 7 vm

#

whenever i try to fuzz

#

in the terminal it shows something like this

#

as if the connection was terminated right after i connected with the fuzzer

#

i turned off windows firewall

#

i dont know what im doing wrong

placid mango
tall ocean
#

Im not getting the IPS to the machines i start :S it stops at 0

celest wadi
tall ocean
#

found the problem now, i had tryhack me open on my windows machine upstairs... the ip showed there but not on my linux one... closed the one on windows fixed it..

#

@celest wadi tyfor the answer anyway ๐Ÿ™‚

cursive geyser
#

It looks like Throwback 10.200.3.x is broken and needs a reset. Any one able to give it a pick and reset please

naive dust
#

Not sure if this is the right channel but I can't pay for my premium membership. When selecting paypal nothin happens (i logon to paypal, go through the steps and nothin) and when i select a CC The windows spits "chargebee is not defined" . Is this something on my end?

civic violet
#

if i want to connect to tryhackme login in my linux terminal

#

how?

#

for the linux

naive dust
#

Do you mean VM?

civic violet
#

but i cant deploy the attackbox

#

its 1hr per day

naive dust
#

You don't have to?

civic violet
#

im already connected to openvpn for thm

naive dust
#

If you load up your own VM and use the openvpn there is no need for the attackbox.

civic violet
#

what about it in my host macos?

naive dust
#

Are you using the windows gui?

civic violet
naive dust
#

you're on a mac?

civic violet
#

mhm

naive dust
#

Are you able to download virtualbox on a mac?

civic violet
#

i have kali linux installed too

naive dust
#

Then download the openvpn script on Kali and sudo it.

naive dust
#

You know how, right?

civic violet
#

yes

#

mhm

naive dust
#

Just checking, lol.

#

How are you getting on?

#

Is it possible to have more than 4 people in a team ?

#

Not sure.

#

If not, why ๐Ÿ˜…

#

I'm not part of a team, have you tried adding x number of users.

wicked coral
#

I am having some issues with the HackPark uploading a file in File Manager in the admin portal

naive dust
wicked coral
civic violet
#

@naive dust

civic violet
#

i am connected

naive dust
#

Yup.

civic violet
#

thanks for helping, i appreciate it @naive dust

scenic torrentBOT
#

Gave +1 Rep to @lament valve

naive dust
#

Np.

civic violet
#

time to finish the linux room, lol.

#

cya

naive dust
naive dust
civic violet
#

how can i access the tryhackme terminal?

#

@naive dust

naive dust
#

use the machine ip.

civic violet
#

should i paste it into the search bar in firefox or what?

#

?

naive dust
#

Yeah

#

what are you doing?

civic violet
#

its saying unable to connect

#

@naive dust

naive dust
#

What room are you doing?

Also on Kali go to 10.10.10.10

civic violet
naive dust
#

Which part?

civic violet
civic violet
naive dust
#

which task?

civic violet
#

5

naive dust
#

Did you deploy the machine?

civic violet
naive dust
civic violet
#

okay

#

its connecting now

#

yay.

naive dust
#

Good!

civic violet
#

finally

#

time to finish my room

#

cya and thank you again lol @naive dust

scenic torrentBOT
#

Gave +1 Rep to @lament valve

naive dust
orchid valley
#

can you reset your attackbox?

eager fulcrum
#

If that's what you mean by reset.

orchid valley
#

oh ok

orchid valley
eager fulcrum
#

Yes. The machine is not persistent.

#

When you terminate, all changes are lost.

orchid valley
scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

naive dust
#

hey guys i got 404 when downloading hololive ovpn file
can anyone help with the issue

light vale
naive dust
#

already done all of that

light vale
#

Hmm odd

naive dust
#

yeah i know,

#

only for this specific network this issue occures

light vale
#

I've misread i thought it was the normal openvpn config file.. Maybe somebody else will be able to help when they see your issue, let's wait a bit ๐Ÿ™‚

naive dust
#

ok thanks

naive dust
#

I want to download OpenVPN for mac OS. the link not working

#

Have you installed virtualbox, or are you just using the one for Macos?

#

did you mean VM ware?

#

yes I have it

#

but I want to try it on my mac

#

I haven't used a mac before.

#

Try this room.

naive dust
#

anyone from tech-support

#

?

#

Just state your problem, high chance someone will know.

novel inlet
#

I get a 404 when trying to download a holo vpn file.. I've tried regenerating
Seems like it's just Holo because Wreath works fine

#

I followed Jabba's instructions (logging in and out and regenerating) and it's still not working... I can't switch VPN servers because there's only one for Holo hmmGe

maiden moss
#

Hi guys

#

room overpass final flag.
We need start a server on attackbox with port 80 for target machine can download a file in crontabs. But port 80 is used on attack-box

#

We can't change crontab file, it's owned by root and we are trying escalate

#

I don't know ask this problem in tech or help room

plush bay
#

hmmm

maiden moss
#

I did it tks ๐Ÿ˜„

plush bay
#

you should be able to close the program that uses port 80 on the attackbox but dunno how viable that is

maiden moss
#

just ssh into attackbox

#

then kill 80

#

idea of Hydragyrum

plush bay
#

well shadow just used their local machine for that room so obviously never got hit with this problem

unreal kindle
#

anybody here is mobaxterm?

void sundial
#

Before I subscribe to Premium, is it possible to change my username on my TryHackMe account?

tidal shore
#

Hi all, any good SQLi in the coupon code field?

#

๐Ÿ˜ƒ

tidal shore
unreal kindle
#

oh lol

#

i ended up figuring out the problem

wanton heath
#

Hello Team I am new to THM , I am trying to solve Authentication Bypass.

mellow stream
#

Hi, is the Room "Blue" broken for anyone else? It just loads endlessly, when I try to access it.

crystal marlin
mellow stream
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

gray meteor
#

Hey, Anybody please help me with the Linux Privilege Escalation Room https://tryhackme.com/room/linprivesc

I am not getting the reverse shell of the cronjob room Task 9

celest wadi
gray meteor
celest wadi
#

your own tun0 ip

gray meteor
crystal marlin
# gray meteor tried, not getting

Check the permissions of the file that's getting executed by cron. Also, I would suggest using #room-help for room related questions, but I'm not a mod or something so it's still up to you ๐Ÿ™‚

short glade
#

hey. Is it possible to exploit "blue" box with msf eternalblue exploit? Tried numerous times and it keeps failing

#

I should've say "is it possible on free plan" ๐Ÿ˜›

tall ocean
#

First time aim trying to use Metasploit with my kali machine instead of the browser one. Getting FAIL after Triggering free of corrupted buffer.

Extra information:
ROOM: Metasploit:introduction
Pinging the target works fine
Doing the exploit with browser vm works fine
When i use VIP-1 VPN i cant even ping, but im using VIP-2 and that one works
Im using the ip on top right (green box) as LHOST, target ip as RHOSTS, RPORT 445 and LPORT 4444, Payload windows/x64/meterpreter/reverse_tcp
Already tried to restart vpn session and restart metasploit terminal to redo everything. Iยดm guessing there is something super simple that iยดm missing since im now that experienced at this. ^^

mighty spear
#

Hi,

I can't connect to THM using openvpn and I can't seem to know why.
So basically, I'm on arch (kernel version: 5.15.11-arch2-1)
I installed openvpn using pacman and openvpn --version gives the following output:

OpenVPN 2.5.5 [git:makepkg/869f194c23ae93c4+] x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Dec 15 2021
library versions: OpenSSL 1.1.1m  14 Dec 2021, LZO 2.10
Originally developed by James Yonan
Copyright (C) 2002-2021 OpenVPN Inc <sales@openvpn.net>
Compile time defines:

I downloaded the last version of my openvpn configuration

Thanks in advance for any help

crystal marlin
crystal marlin
#

Sry @naive dust ๐Ÿ˜„

#

You might want to verify first in order to be able to send screenshots in here.

#

!docs verify

sharp bisonBOT
crystal marlin
short glade
#

already tried restarting it once, but gonna give it another try. Thanks

tall ocean
#

@crystal marlin Same fail , but ima try to reset everything and try this before im starting to ask for more solutions, maby after all theese tries there is something in the backround failing :p

crystal marlin
mighty spear
crystal marlin
mighty spear
#

Ok thanks I didn't know that I just read what was written directly on the website

#

Ok it works thanks

gusty crag
#

Hey guys, I'm confused about those streaks for everyday tasks. I answered questions everyday in December/21 and now I'm with only one day streak. When the year changes, those badges are reseted?

And get worse, because I have two "days streak freeze", one of "one day" and other of "seven days", I won these in the Pentest challenge deployed in October.

#

It seems I do not answered nothing yesterday, I'm not sure of it, but yet, I have those "days streak freeze", so it should "protect me" of a gap.

vocal fossil
#

Hi I have a problem with the room 'File Inclusion'

simple needle
#

hi why can't i access a machines webpage

#

i can nmap and ping the machine

#

gobuster works on it too

#

but i just can't display the webpage

#

i've typed http:// {machine_IP}:{port}

#

but the actual ip and port

#

openvpn is working and my ip is shown on the tryhackme website

#

oh and i can also see the for 10.10.10.10

frail dust
#

sometimes it takes like 5 minutes for the machine to boot properly, but I don't know

simple needle
#

took more than 10 minutes but its working now thanks

#

i should've been more patient

sullen cliff
#

Hello Guys Happy New year!!
My Streak is getting reset again and again ( I solve questions twice a day ) I didnt noticed at first but when I came across it today it was 0 ( probably meant to be around 10) Can anyone guide me what's being wrong here?

lament trout
sullen cliff
lament trout
#

anyways, you can reach out to support via mail and ask them to retrieve your streak kindly.

coarse cliff
#

Is there any way to change my tryhackme handle?

ember aurora
#

hello, every-time I change the phone number on tryhackme, the country gets changed to Afghanistan, and that's not the where I live ๐Ÿ˜ฆ any sloutions?

naive dust
pale verge
#

Is there anyway to unlink my old discord account from my THM account?

tribal fjord
#

Good morning guys! I have a problem, I am working with Vulnversity and for some reason I can't see my machine deployed

#

any suggestions? thanks!

rich epoch
#

Hi can someone help me with a tech problem

naive dust
rich epoch
#

I'm logging into this app Aftership and it keeps saying that it is sending me a confirmation email. But I havnet received one. I made sure its the right email and checked spam.

rich epoch
naive dust
rich epoch
gusty crag
hexed dock
#

How can I connect to attack box using OpenVpn?

#

When I follow the first step

#

I go to a page which says "uh oh..."

knotty halo
# hexed dock How can I connect to attack box using OpenVpn?

You don't have to use the VPN to connect to the Attack Box. The AB is a browser-based instance accessible through, you guessed it, your web browser.

Unless you're already running, say, Kali in a VM and want to connect that VM to THM, you do not have to bother with the VPN.

hexed dock
knotty halo
hexed dock
knotty halo
knotty halo
#

'ere, that should set you up right.

hexed dock
scenic torrentBOT
#

Gave +1 Rep to @knotty halo

knotty halo
hexed dock
#

Maybe the link is broken?

knotty halo
knotty halo
#

Errrr...

knotty halo
# hexed dock

That is interesting. Also, +1 on concisely providing a clear description of your error that quickly.

hexed dock
#

Thanks for assisting me. I hope the the problem is resolved ๐Ÿ™‚

ocean junco
#

I am having issues accessing the Throwback network from my VM. My vpn connection is working without an issue - I am able to ping my attackbox. I am not able to access any of the 3 beginning machines of Throwback from my VM through the vpn (ping or nmap scan). These machines are reachable through my attackbox, but I do not want to use this attackbox.

I have tried redownloading and regenerating my VPN. I have tried resetting the throwback network

knotty halo
ocean junco
scenic torrentBOT
#

Gave +1 Rep to @knotty halo

long walrus
#

howdy! does anyone know how long it takes for your level tag to update on discord after you level up on the platform

#

Screenshot for context

#

edit - nvm lol, it just updated puphyper

lament trout
#

@hexed dock did you try changing the server?

crystal marlin
long walrus
#

muchos gracias

#

shame robocop didn't recognize that to give rep so, thank you kindly tipsfedora

short glade
#

Hey. Just out of curiosity - I can't recall to myself, but I'm pretty sure last year (I mean 2020) after completing AoC2 one should be awarded a badge too, right?

#

what could be the reason why the badge has not been awarded after completing the room?

tall ocean
#

I feel like iv tried everything now. Still getting fail after triggering free of corrupted buffer when using metasploit with vpn. Pinging works fine, using my tun0

crystal marlin
sharp bisonBOT
#
TryHackMe
That topic does not exist!

Use !docs to list all of the available topics.

crystal marlin
#

!docs verify

sharp bisonBOT
faint beacon
tall ocean
#

There we go, When i use the same settings on browser (exept for the LHOST) it works like a charm @crystal marlin

#

its not for a flag or anything, just wanna get everything to work so i dont stumble across some problem further ahead ๐Ÿ™‚

crystal marlin
#

If you enter ip a s do you only see a tun0 interface or any extra like tun1, tun2 etc ?

tall ocean
#

tun0 and tun1

crystal marlin
tall ocean
#

none active no, i downloaded VIP-1 that one did not work at all so i downloaded VIP-2 that one worked

crystal marlin
#

Then do sudo killall openvpn then connect to the thm vpn again, wait a minute or so, do ip a s again to verify there is only a tun0 interface and not any extra like tun1, tun2 etc.

tall ocean
#

ye that leaves me with a tun0 only (i used ip addr del before)

crystal marlin
tall ocean
#

EU-VIP-2 is open 3 times on root for some reason

crystal marlin
#

It would be easier if I see a screenshot. But anyways, I highly suggest you do the steps I provided above

tall ocean
#

ye ima fix a screenshot (no disc on my kali machine) so it takes some time to send it :p

crystal marlin
tall ocean
#

i did those steps before i did the grep

#

and thats the output after

#

ip a s shows only a tun0 (exept for the standard connections above) and ps aux | grep openvpn shows this

crystal marlin
#

Mh, not sure why there is 2 times a line with sudo, but regarding to the multivpn doc I assume that's fine.

#

So you might want to try the blue exploit again now, maybe restart the target machine also and give it about 10 minutes (might be a bit much, but to make sure it's fully up) before you run the exploit, also make sure you check the LHOST with your tun0 again.

tall ocean
#

Yeah! ty alot, hope it works ๐Ÿ™‚

tall ocean
#

im going for a fresh install of my OS now since nothing works :p

#

for some reason, everytime iยดm setting up the VPN it goes up on tun1. if i make tun0 DOWN everything works exept that iยดm getting fail when triggering free of corrupted buffer. so i think ยดv made something earlier that makes my tun0 occupied even if it has no ip :p

crystal marlin
tall ocean
#

ye l keep it open allways (once i made it run in the backround) maby thats the problem ๐Ÿ˜ฎ

#

iยดv just made ctrl+c when i end the connection

crystal marlin
#

And the blue exploit can fail several times, so if you was trying it 2 - 3 times and it fails, you might want to restart the target machine. Also you could try a different payload. So instead of meterpreter just a usual reverse shell. I think some people said they had more success with that, although I somewhat doubt that it makes a difference.

tall ocean
#

ran it way over 10 times :p

#

been trying different payloads aswell ๐Ÿ™‚

crystal marlin
#

Is your attacking machine a VM ?

tall ocean
#

nah

crystal marlin
#

K.

tall ocean
#

its a kali on its own hardware

crystal marlin
#

Did you ever receive a reverse shell on that machine?

tall ocean
#

on the vm THM provides i recive a reverse shell with ease. but on my hardware i just get FAIL

#

but i can ping the target

naive dust
#

Eternal blue doesn't work the majority of the time.

#

Muiri recommended to me auto blue

tall ocean
#

hmm ok, it works flawless on THM browser kali every time for some reason :p but maby there is nothing wrong with my vpn then XD

crystal marlin
tall ocean
#

@naive dustty i will tty that one @crystal marlin ima try that aswell ๐Ÿ™‚

gusty crag
scenic torrentBOT
#

Gave +1 Rep to @knotty halo

knotty halo
hazy stream
#

hi, I have a problem with the Wreath room, the connection is too slow and disconnects every 10 seconds, is that ok???

celest wadi
#

But prolly a restart should fix it

hazy stream
#

thanks @celest wadi , sorry just saw there is Wreath-network room

scenic torrentBOT
#

Gave +1 Rep to @celest wadi

keen scroll
#

Could you share any error logs?

#

Try to check the pinned messages in this channel, there are a few workarounds

cinder junco
#

Can anyone please help me with this question?

All I want to do is create the groups first and then add the users as they come in.

Thank you in advance

hidden robin
#

Is the page for buying vouchers down or just me? Every time I try to buy vouchers this morning it times out and Cloudflare isn't happy. ๐Ÿ˜ฆ Edit: Disregard, finally started working

shut warren
#

Hi everyone, anyone know if I routed my traffic through tor can I still use openvpn to connect to tryhackme ?

keen scroll
civic crest
#

I'm not running a debian based linux distro and I'm trying to get matasploit installed, I run msfdb init and I get this

Traceback (most recent call last):
    7: from ./msfdb:1079:in `<main>'
    6: from ./msfdb:938:in `invoke_command'
    5: from ./msfdb:201:in `init_db'
    4: from /opt/metasploit-framework/lib/msfdb_helpers/pg_ctl.rb:25:in `init'
    3: from /opt/metasploit-framework/lib/msfdb_helpers/pg_ctl.rb:105:in `create_db_users'
    2: from /usr/lib64/ruby/gems/2.7.0/gems/pg-1.2.3/lib/pg.rb:58:in `connect'
    1: from /usr/lib64/ruby/gems/2.7.0/gems/pg-1.2.3/lib/pg.rb:58:in `new'
/usr/lib64/ruby/gems/2.7.0/gems/pg-1.2.3/lib/pg.rb:58:in `initialize': could not connect to server: Connection refused (PG::ConnectionBad)
    Is the server running on host "127.0.0.1" and accepting
    TCP/IP connections on port 5433?
naive dust
civic crest
#

I don't have apt

#

or yum

broken bear
#

IIRC msfdb is how metasploit interfaces with a backing db. is there a config option prior to that point to pick where the db is and crededntials?

#

what distro are you running?

civic crest
#

gentoo

civic crest
#

$HOME/.msf4/db

ashen crypt
#

the attackbox 1 hour limit ran out

#

apparently i can open the machine with the open vpn

#

how

plush bay
naive dust
ashen crypt
#

but , i cant access it

#

as in , no terminal

#

idk if u know what i mean

supple rampart
#

Iโ€™m having issues on the room of owasptop10. Broken Authetication Practical I cannot obtain the flag for the user darren. Can someone help me?

plush bay
ashen crypt
#

apache 2 ubuntu default page

#

thats what i get

supple rampart
#

Thanks

plush bay
#

..........................................

ashen crypt
#

the ip address the gave me

#

i searched it

ashen crypt
plush bay
#

so nothing that looks like this????

ashen crypt
#

in here

#

it says im not connected to the network

#

but the access details say i am

plush bay
#

if only shadow could remember the link to the troubleshoot script

ashen crypt
#

i can see the page on 10.10.10.10

ashen crypt
plush bay
#

then you are technically connected to the vpn then.... so is it a special target machine you can't access???

ashen crypt
#

i cant see the terminal

#

thats what im saying

#

im doing linux fundamentals and i need the terminal

plush bay
#

which one of the linux fundamentals and what task???

ashen crypt
#

2

#

task 3

#

in task 2

#

it says to open teh machine

#

which i cant do

#

task 2'

plush bay
#

are you on windows or a linux vm where you connected to the vpn???

#

because if windows you probably need to get something like putty setup to ssh

ashen crypt
#

im on windowds

#

and i connected to the vpn

plush bay
#

okay maybe you can just open powershell and then run: ssh tryhackme@yourMACHINE_IP and after that enter the password when it asks for it

#

the password is also tryhackme

ashen crypt
#

silly question

#

wdym by my machine ip

#

the internal virtual ip adress?

#

nvmm

#

i understood

plush bay
#

did you get it working then lucius???

ashen crypt
#

thank u

#

it worked

#

really thank u

#

seriously thanks

plush bay
#

you're welcome

ashen crypt
#

you're awesome

#

have the best day

#

โค๏ธ

plush bay
#

thanks

ashen crypt
#

holy shut

#

its in task 2 , i just didnt read far enough

plush bay
#

yeah but they intend you to do it from the attackbox as that is easier for new people but this way works too

pale verge
#

Is there anyway to unlink my old discord account from my THM account?

plush bay
pale verge
scenic torrentBOT
#

Gave +1 Rep to @plush bay

plush bay
plush bay
#

just do not spoil your token in here

#

they will probably ask you to dm them with more info but that comes then

pale verge
pale verge
eager fulcrum
pale verge
eager fulcrum
pale verge
eager fulcrum
pale verge
scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

gusty laurel
#

Hey is there a possibility to erase all my Progress? I Want to start completely over

naive dust
#

You can reset each room.

gusty laurel
#

yeah i know but i want to reset all. I mean Progress, badges and so on

plush bay
#

doubt that is doable

#

except by making a new account

naive dust
#

That would be account deletion.

haughty quarry
#

not sure if this is the right room, I installed the Docker of GVM and I had it working until my laptop unexpectedly reboot while it was running and now I get "Login failed. Waiting for OMP service to become available." I followed the instructions in the Greenbone room but I don't know much about Docker

#

I've restarted the container and "docker top openvas" seems to show it's running

#

or if this is just techsupport for THM itself I can try the cyber defense channel

naive dust
#

No, you should still be able to login, double check your credntials.

haughty quarry
tall ocean
#

After alot of trial and error and a insane amount of help from fontaene iยดv figured out that there is nothing wrong with my vpn. But my machine cant make reverse shells. everything works amazing but as soon as i g2 create a reverse shell i get nothing. Any ideas what the issue can be? when listening with netcat its just silence on the machine but same thing on browser vm works fine. wont matter what way im trying to make the reverse shell.

EDIT: i dident realy figure it out myself he kinda said maby thats the problem :p so i cant take the cred for that eather hehe

spark ledge
#

Hey

#

All the rooms that i tried deploying goes down after 5 minutes from deploying

#

Can someone explain to me this please

twilit gazelle
#

Hey! As usual I start my vm, Openvpn and it starts like usual

#

But after booting up my machine on crackthehash2, I can't access it in my browser

#

waited 10mins, the machine boots up, i can ping and curl n stuff

#

but can't use firefox

#

I tried starting other rooms that holds a website like pickle rick ctf and it works just fine, I can access the website

#

There might an issue with the room or idk, I booted up multiple times with waiting 5-10minutes, no website

#

Seems I can access with only my windows and openvpn for windows, but on my linux I can access Pickle Rick and other ones as well, just not this one ๐Ÿค”

#

Not using burp proxies or anything, just openvpn launched in a term and firefox classic

#

Turns out at my 5th machine without doing anything this one works, different ip thought

#

Didn't worked: 10.10.234.190

twilit gazelle
#

indeed

crystal marlin
twilit gazelle
#

4 times it booted as 10.10.234.190 didn't worked, now i'm on 10.10.86.239 and it works

twilit gazelle
#

yep, but still i don't understand why it didn't worked, could that be a pb with me or the machine?

#

because when it changed to 10.10.86.239 it works perfectly now

crystal marlin
twilit gazelle
#

not simultaneously, i tried my vm and my real os windows after shutting down the openvpn client

#

and also i tried re-generating the openvpn file, it did nothing (just trying because why not)

glad egret
#

Did you try a different server?

crystal marlin
twilit gazelle
#

i got able to access the one i couldn't with my linux vm, with windows and the openvpn windows client (it's down, the image is because the website is cached in my pc rn)

glad egret
#

Can you access 10.10.10.10?

twilit gazelle
#

yes, i can access this, pickle rick ctf website, and other rooms with websites as well

#

i didn't booted up anything else that could influence the situation, just this terminal and this browser

glad egret
#

Doesn't seem like a VPN issue since you can access other rooms just fine

crystal marlin
glad egret
#

Might just be a problem with the room itself

twilit gazelle
#

yes, i'm just explaining more because he asked me if i could reach other rooms

crystal marlin
#

Ah kk.

glad egret
#

@cinder jackal Do you need help?

twilit gazelle
#

We may report this issue with 10.10.234.190 in #room-bugs ? (the one machine that doesn't show up)

glad egret
#

Yeah, report it there

crystal marlin
cinder jackal
#

Hello, can u help me pls? When I go to /room/bashscripting but the Images could not be loaded, all other tasks was fine. I just tryd wget on Image URL (https://i.ibb.co/7W5mn0c/carbon-8.png) it says connection refused. There is my DNS and Proxy in my network but i dont believe thats the issue. Maybe it is a Server-Error but how can I readout the Error-Code ๐Ÿ™ˆ ? My Firefox dont show it somehow... Is it only me having this problem, how can i fix it, or is it server-sided?

#

*When I go to /room/bashscripting the Images could not be loaded

cinder jackal
#

Task2

crystal marlin
cinder jackal
#

Firefox

crystal marlin
#

Oh firefox you said

#

Try ctrl+F5 if you haven't already

cinder jackal
#

ok ill try

#

nope ๐Ÿ™‚

#

its not loading with ctrl+f5 too

crystal marlin
cinder jackal
#

ok then it could be my PiHole?

#

no sir ๐Ÿ˜ฆ

crystal marlin
cinder jackal
#

that would be strange ...i did many other rooms with loaded Images. I'll check Query Log of PiHole w8

naive dust
#

Definitely the pi hole.

cinder jackal
#

ok yes it is the Pihile

#

*PiHole ...it loads Images when I disable it

#

Thank you for your Response

#

I love tryhackme โค๏ธ :3

#

My Pihole blocks over 9.000.000 Domains ...somehow https:// --> i.ibb.co <-- /7W5mn0c/carbon-8.png is part of it but why ๐Ÿคทโ€โ™‚๏ธ

crystal marlin
cinder jackal
#

I fixed it by adding i.ibb.co to the whitelist of the Pihole, all fine.

supple shadow
#

๐Ÿ™‚

unreal kindle
#

hey can someone help me with a cmd in the terminal

#

i wanna replace a certain dll but im not sure how

harsh orchid
#

how can I change the flag on my public profile? its showing US which is incorrect but I cant find an option to change it

civic crest
#

does anybody have an idea what my issue setting up metasploit it, this is the traceback I get when I run msfdb init:

Traceback (most recent call last):
    7: from ./msfdb:1079:in `<main>'
    6: from ./msfdb:938:in `invoke_command'
    5: from ./msfdb:201:in `init_db'
    4: from /opt/metasploit-framework/lib/msfdb_helpers/pg_ctl.rb:25:in `init'
    3: from /opt/metasploit-framework/lib/msfdb_helpers/pg_ctl.rb:105:in `create_db_users'
    2: from /usr/lib64/ruby/gems/2.7.0/gems/pg-1.2.3/lib/pg.rb:58:in `connect'
    1: from /usr/lib64/ruby/gems/2.7.0/gems/pg-1.2.3/lib/pg.rb:58:in `new'
/usr/lib64/ruby/gems/2.7.0/gems/pg-1.2.3/lib/pg.rb:58:in `initialize': could not connect to server: Connection refused (PG::ConnectionBad)
    Is the server running on host "127.0.0.1" and accepting
    TCP/IP connections on port 5433?
#

from my little bit of looking around, it seems to be something to do with credentials, but I can't figure it out

#

it did create a db directory for me in my home dir

#

it could also be a missing dependency, since I had to get mfs off of github

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

civic crest
#

maybe missing permissions

crystal marlin
civic crest
#

I'm going to guess no

crystal marlin
civic crest
#

shoot, I don't use systemd

#

I figured out how to do it for me, but now I'm running into other issues

#
 * Directory not found: /var/lib/postgresql/13/data
 * HINT: Ensure that DATA_DIR points to the right path.
 * HINT: Or perhaps you need to create the database cluster:
 *     emerge --config dev-db/postgresql:13
 * ERROR: postgresql-13 failed to start
#

I'll do some digging about

#

well I have no clue now

civic crest
crystal marlin
unreal kindle
#

uh

civic crest
#

even though I kinda hate that option

naive dust
#

hey does anyone know where is the smbserver located in tryhackme attackbox

agile sage
#

hello, is it possible to download the previous Advent of Cyber certificate? I can't find any download link

agile sage
#

I already finished it but there's no certificate button

high ledge
#

Hello! I'd like to update my Discord token that is currently linked to my Discord account since I made a new account. The website says I have to contact a mod here so are there any mods that can help me? Thanks

tall ocean
#

@crystal marlin when doing sudo ufw status im getting Allow anywhere on all items on the list and those items are:
OpenSSH
80
443
8080
OpenSSH(v6)
80(v6)
443(v6)
8080(v6)

#

do i need to have the ports i wanna use for my serverse shells on this list ?

#

oh and its ACTIVE

main iris
#

yes, you need to have any ports you use for reverse shells open @tall ocean

#

i am trying to access the wreath network, lost access due to time, finishing my writeup/notes. when i try and download a new connection pack i get a 404 error.

#

i left the room and rejoined, and still 404 error on download attempt

#

i click here

#

i get this

tall ocean
#

@main iristy

plain gate
#

I'm doing Upload vulnerability and I've follow all the instruction but I don't have access to the website overwrite.vulnerability.thm I don't understand I've done the command with the echo thing and it doesn't work

#

and when use the ip of the room they ask for using the url provided in the course

tall ocean
#

@plain gateat the start of that room i think you have a line you g2 write in terminal?

plain gate
#

I've done it

#

the ''echo'' thing with the ''tee''

#

but firefox is always redirect me to google

tall ocean
#

and you changes the machine ip in the code right?

plain gate
#

yes

tall ocean
#

simple question ik but its a misstake i could have done so i ask :p

plain gate
#

hahaha no problem

#

i'm gonna restart my Vm and retry

tall ocean
#

im launching the room aswell to check it ouy

#

works like a charm for me

#

but i have to write http://<adress>

plain gate
#

Oh probably that my error

tall ocean
#

if i dont write http:// its google

plain gate
#

ok i'll try

#

It don't find the website now

#

I've restart the machine and undo the setting for changing it and now it say 502 bad gateway

tall ocean
#

used the command after restart?

plain gate
#

yes

tall ocean
#

and you used the other command before exit the vm?

plain gate
#

I've undo and remake the command

tall ocean
#

okok

plain gate
#

yes

tall ocean
#

if you just use the ip on the machine you attack in the url then?

#

do you get a list of sites then?

severe shadow
#

How to change the country??

plain gate
#

yes

plain gate
severe shadow
#

Bro not like that... Changeing the country flag on tryhackme

tall ocean
plain gate
#

http is a bad gateway and https is not even able to reach the website

tall ocean
#

:S:S

tall ocean
#

maby restart the machine your attacking then

plain gate
#

already done 2 time xD

#

is it because of my vpn ?

tall ocean
#

im using vpn and it works for me

plain gate
#

I mean I use the VIP one

tall ocean
#

im using VIP-2

plain gate
#

weird

#

none of the website is working for me I've try all of them

tall ocean
#

then im no help at all sadly, im just a noob that it worked for and tried to tell you how i did :p

plain gate
#

no problem ๐Ÿ˜›

tall ocean
#

i just started it up, used the command, used ip in url, ctrl+v on the one i had to use and added http:// before i uset ctrl+v

plain gate
#

It nice there is always somebody trying to help here ๐Ÿ˜„

tall ocean
#

g2g now but i wish you best of luck. try to use the browser vm and c if it works there?

#

then you atleast know if its your doing or if its your machine/vpn that fails

plain gate
#

i'm gonna try on windows it's probably my kali VM who it an asshole xD

#

I don't remember how to speak english lol

main iris
#

how does one actually get tech support

#

trying to @thm THM Staff???

naive dust
main iris
#

so email support?

naive dust
#

Thats one option if this room doesn't help.

main iris
#

i've tried downloading with wreath sleeping and awake

#

no difference

naive dust
#

However, you mentioned you started the machine and then downloaded, have you tried regenerating a new configuration file and waiting 60 seconds?

main iris
#

no

naive dust
#

Try that

main iris
#

i didn't say that

#

i've left the room and rejoined and tried much later

naive dust
#

And you still can't download a new configuration?

main iris
#

and yes ive regenerated

#

nope

#

404

naive dust
#

Strange, I just tried a download and it worked.

main iris
#

i can download my regular vpn file fine

#

it's this one that i can't

naive dust
#

I know which one you're having trouble downloading.

main iris
#

๐Ÿ‘

naive dust
#

!vpnscript

sharp bisonBOT
naive dust
#

Nope, that doesn't help.

#

This has happened to me in the past and I just regenerated a new vpn configuration and it worked,

main iris
#

thanks, im going to email support

naive dust
#

Jabba will sort you out.

crystal marlin
crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

spare flare
#

Hey is static now fixed??

soft condor
#

Hi guys, about the prizes of the event Advent of Cyber, what's the difference from the list Burp Pro and BurpSuite?

crystal marlin
simple needle
#

hi i can't background a shell is msfdb

#

when i presst ctrl+z it backgrounds msfconsole itself

#

google says i should make sh file wrapper that catches sigstop where msfconsole is located

#

how can i do this if its what i should do

crystal marlin
#

Could you show a screenshot of being in such and press ctrl+z ?

simple needle
#

i backgrounded using the background command and am upgrading to a meterpreter shell rn

crystal marlin
# simple needle

Mh, that doesn't look like you are in a session already. It seems the exploit is still running and you press ctrl+z

simple needle
#

wait sorry i sent the wrong screenshot

crystal marlin
# simple needle

Okay, but that also doesn't look like it's back grounding the whole msfconsole? Not sure why it says suspended msfdb run, but you should be still in msfconsole? At least I can't see it in that screenshot that you aren't anymore.

timber agate
#

Hello I'm having some issues when running nmap scans on the hack box. taking way longer than it should.

crystal marlin
crystal marlin
timber agate
#

Network services 2 nfs enumeration. nmap -A -p- IP address

simple needle
#

if you want you can help troy first idm waiting

crystal marlin
crystal marlin
timber agate
#

was following the directions in the room, still shouldn't take nearly 40 minutes to

#

complete

simple needle
crystal marlin
simple needle
#

no i'll do that

crystal marlin
timber agate
#

even running nmap without the -A just the -p- on one IP is not completing... just hangs, and time keeps going up.

crystal marlin
timber agate
#

I will try that

#

still hanging, but getting more information with the -vv

#

seems to hang around 25%+

crystal marlin
timber agate
#

is it normal for even that scan to take more than 5 minutes?

#

I'm using the web based attack box.

crystal marlin
timber agate
#

ok

#

perhaps that is something that could be mentioned as part of these exercises that ask you to perform nmap scans. I know I was not expecting these scans to be running for more than a few minutes

#

scan still running.

#

saying 4 minutes remaining...

crystal marlin
timber agate
#

Yes does sound faster

crystal marlin
#

Alright ๐Ÿ™‚ Some mentioned using -T4 --min-rate 10000 gave them the best results in speed/reliability, so I guess you have to play around a bit to find what's working best for you. It might also depend on the target machine you scan, some machines are getting scanned faster and some are slower.

timber agate
#

did finally finish

#

thanks I will play around.

#

appreciate the help

#

that --min-rate really helped with the speed

simple needle
#

hi i need help again :/

#

why is this happening

#

i cant find any fixes online

keen scroll
simple needle
#

nope

#

same output

#

i moved to room help

keen scroll
#

Oops, try shell first to get a simple shell
Perhaps meterpreter doesn't have cat (see help)๐Ÿค”

simple needle
#

i tried shell

#

same output

#

meterpreter doesnt have type

sleek stream
#

Hey there ๐Ÿ™‚
I am quite new to the TryHackMe platform. Possibly I should send an email regarding my issue but I wanted to try it here first:
I would like to install the OpenVPN connection for VMs and want to download te configuration file for that, but when I click on the "Download my Configuration File" button, the next window shows a 404 error with the text "Uh-oh, this page has been lost in the matrix." I am in mid Europe. Does anyone have an idea what the problem is?
Thanks for any help beforehand ๐Ÿ˜‰
Some other european servers work, but no clue what is wrong with the others

naive dust
simple needle
naive dust
#

Ah, good good.

simple needle
#

thank you tho

tall ocean
#

@crystal marlinwe will c now. disables the firewall and ran the exploit 2x fail this far

naive dust
#

Are you still doing Blue?

tall ocean
#

and now the WIN came ๐Ÿ™‚ firewall was the problem XD thx alot for helping me solve this! damn the smile on my face now XD

#

@naive dustwell i tried blue now again after iยดv made alot of other stuff in between ๐Ÿ™‚ but now eternal blue worked like a charm !

naive dust
#

Excellent!

crystal marlin
tall ocean
#

@crystal marlinwell it was all you :p

crystal marlin
tall ocean
#

@crystal marlinwelll thx for all the hints then XD nice to not having to use the browser vpn now ๐Ÿ™‚

scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

lyric hearth
#

I lost my streak due to work purposes. I would be happy to get it back if possible, thanks

#

I thought pause streak was there... But u was wrong

carmine wasp
#

Hello, I have an unusual problem. I'm a blind user of try hack me, and i have trouble solving puzzles which are at the end of each room. Now there's that one in that room where i'm learning about http, how websites work, etc, and i must solve that puzzle at the end to go further. This is the presecurity path. Is there any way to make these puzzles accessible for the screenreaders? Or atleast can i skip them somehow to continue learning? I'm stuck there like for 2 weeks and my subscription has renewed itself, but ii'm not able to go further because of these puzzles. Regards. Ah and sorry if i have posted it in the wrong channel.

glad egret
#

@carmine wasp Are you needing help with a specific task in a room?

carmine wasp
#

Well I rather meand to get some kind of a solution to skip these puzzles or atleast make them readable but i guess that won't help either because i must drag them with a mouse and i am not able to do that. I'm stuck here:
Click the "View Site" button on the right. Using everything you've learnt from the other modules, drag and drop the tiles into the correct order of how a request to a website works to reveal the flag.

#

This is task 4 in putting it all together room. I guess giving me the flag would work, but it's only a temporary solution and probably i'll have the same problem in next rooms

amber panther
#

@Mods, I have a new Discord user (old ones were deleted by me) and I want to use the "Discord Token" again to verify my user in Discord account. Can some Mod unlink my old account please?

main rain
#

Hello guys, just a quick question. At Intro to x86-64, the attack box seems empty. Where can i find the binaries?

lament trout
#

@main rain task 2 has an attached machine, you should see the binaries in that machine.

neat valve
#

Is there anyway to change your tryhackme username?

neat valve
#

Cheers!

dusky raft
#

When I try to visit the following URL in the Upload Vulnerabilities Room, in Task 5: Remote Code Execution, I just get Rick Rolled (goes to Rick Astley: Never Going to Give You Up, YouTube page) ๐Ÿ˜ฆ

http://demo.uploadvulns.thm/

crystal marlin
dusky raft
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

hollow arrow
#

In Linux PrivEsc room task #10 there's no home directory for my current credential is it normal ?

hollow arrow
#

thank you

naive dust
#

i used my token in another discord account, how can i verify this account with the same token?

granite helm
#

can someone please help me link my THM subscription to this discord account? ๐Ÿ™‚

granite helm
queen ember
#

can i have a role of N+?

patent saffron
#

Hello! How do I change my country in my profile?

earnest steppe
#

hello! - i'm not able to connect to try hack me network(vpn) - i have this problem since i reached to egypt only - before that when i was in india it's was all good - btw i have tried all the systems i have on mac on windwos on linux but still the same problem ? - anyone can help !!๐Ÿ˜ซ

lament trout
#

@earnest steppe i remember hearing "OpenVPN is blocked in Egypt" somewhere, but don't quote me on this.

earnest steppe
lament trout
scenic torrentBOT
#

Gave +1 Rep to @lament trout

naive dust
#

Yo! I have a question about ssh, i try to login with the public IP of my server (Ubuntu server 18.04), password is the right one but always says i have the wrong one, but when i try with my local ip, i can login without any problems, anyone have an idea why is that? Thanks!

celest wadi
naive dust
#

So if i want to ssh from my home to my server (which is at my workplace), what ip do i need? I have the 198.168.xxx.xxx but i think this one only work in the local network?

lament trout
#

you'd have to do port forwarding in your router's settings to access it via the external IP

naive dust
#

Ohhh shit yeah make sense, didn't think about that but totally make sense since the public ip is for the router if im right, thanks alot!

naive dust
#

I am using an Attack Box and want to download the task files of a VIP room. How can I do that?

naive dust
naive dust
naive dust
naive dust
naive dust
naive dust
#

Hm.

naive dust
#

You mentioned zip file?

naive dust
naive dust
naive dust
opal stirrup
#

just wondering.. does tryhackme plans to make a python scripting room?

naive dust
opal stirrup
scenic torrentBOT
#

Gave +1 Rep to @lone karma

naive dust
#

Certain features on the THM website are just not so revealed or easy accessible...

#

I guess that's part of hacking :)

opal stirrup
#

greattt!!.. ive been doing the learning paths mostly and there havent been much of python in those... the rooms for python seems to be damn nice...

main rain
eager fulcrum
naive dust
#

Someone can help me to unlink my THM token from a removed Discord account, please?

naive dust
#

Anyone getting errors SSH'ing from an attackbox to Linux VM, worked yesterday but today its failing - port 22: Connection timed out

#

both VMs are new

naive dust
# naive dust both VMs are new

A followup question (being new to this site) does SSH always work, or does it depend on the room thaat you are in. I've found that SSH works in one room, but not in another (furthernmap) - thanks.

scenic torrentBOT
#

Gave +1 Rep to @lament trout

naive dust
wispy junco
#

Where can I contact support to help me with a private issue?

upbeat bloom
wispy junco
#

K thanks @upbeat bloom

scenic torrentBOT
#

Gave +1 Rep to @upbeat bloom

rigid sage
#

Can anyone help I'm new here , I have issues in my kali vm, I try update but it show me failed to fetch , I edit source file http to https , and change DHCP ip ,and vm network settings still the same problem

#

And I can ping kali.org also I change branches

spare flare
#

Majorly source files are http not https

#

Futher if it shows failed to fetch there is error. Like IP unavailable ,,,etc

naive dust
#

Thank you @eager fulcrum

scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

chrome cedar
#

Hi all, I can't connect to the Wreath network via VirtualBox and OpenVPN, however, I can confirm I'm connected to THM via 10.10.10.10. Anyone else having issues?

crystal marlin
chrome cedar
#

Yup, someone just pointed that out in the Wreath room, thx for the heads up!

#

Problem solved.

simple needle
#

i can't really ping anything but thm machines

crystal marlin
simple needle
#

my own vm

#

kali linux vm

crystal marlin
simple needle
#

no no

crystal marlin
simple needle
#

i can

#

just can't ping

crystal marlin
#

And if you turn off the vpn, does that change anything ?

simple needle
#

nope

#

sorry my wifi just stopped working

#

so i canโ€™t use the pc until it starts working again

dense yarrow
#

Hola, I am trying to go through throwback but the pfsense firewall application is giving me a 504 error when trying to access, so I can't work through the course.

simple needle
naive dust
#

What are you trying to ping on?

#

Oh Kali.

grand ore
#

anyone have a solution to the Error: error on parsing arguments: wordlist file "/usr/share/wordlist/dirbuster/directory-list-2.3-small.txt" does not exist: stat /usr/share/wordlist/dirbuster/directory-list-2.3-small.txt: no such file or directory
issue

grand ore
#

attackbox

naive dust
grand ore
#

ive been at this for like 3 hours

naive dust
#

Small typo. wordlists and not wordlist @grand ore

grand ore
#

i was about to punch my keyboard

#

thanks man

naive dust
gloomy raptor
#

i get 404 when i try to download my openvpn config

#

can someone help me?

gloomy raptor
#

thx

raw mauve
#

how to change information text in profile?

earnest plank
#

Hi im having trouble connecting to the network via openvpn. I've regenerated the ovpn file multiple times and switched between servers to no avail. Any assistance would be much appreciated! Thanks!

naive dust
earnest plank
#

sure

naive dust
#

!docs verify

sharp bisonBOT
earnest plank
#

ok one second then

#

could I just DM you instead or would you rather I talk here?

naive dust
earnest plank
#

all signs point towards it working

#

but this never detects me as connected

#

nor can I ping any of the machines I start

naive dust
earnest plank
#

yes

naive dust
# earnest plank yes

Can you open a browser and go to 10.10.10.10? Do you see your IP at the bottom?

earnest plank
#

yes

#

opening a browser within the vm that is

naive dust
#

Yes, within the VM that OpenVPN is running

#

Does it show your IP? (bottom of 10.10.10.10)

earnest plank
#

yes

#

interestingly, it was working fine the other day, then all of a sudden I started having these issues

naive dust
#

Great. So what makes you think you are not connected? I don't think that web page on tryhackme.com is always accurate.

earnest plank
#

If i do a room with a deployable machine, I cant ping it or interact at all with it

naive dust
#

Can I try? Can you send me the link to the room you are talking about?

earnest plank
#

ok im so sorry to bother

#

i have no idea why or how

#

but the problem is gone...

#

as soon as I ask too ๐Ÿ˜‚

#

thanks for the help, I appreciate it

naive dust
naive dust
#

Hello, sorry for bothering you again. But I've got stuck in the OWASP Top 10 room: https://tryhackme.com/room/owasptop10. The problem is Task 22, first question: I entered "<script>alert('Hello')</script>", but it told me that the answer is wrong. However, I tried some variations (double quotes, singles quotes, with and without semicolon), but always got the same answer.

#

The writeups where not helpful, either.

crystal marlin
naive dust
#

The same applies to the next question asking for the machine IP address: <script>alert(window.location.hostname)</script> is marked as incorrect

crystal marlin
naive dust
#

Yes, I did

crystal marlin
# naive dust Yes, I did

You have to do these xss tasks on the target machines website and if you are doing it right you will receive a flag, which will then be the answer. So the answer is not the actual payload itself.

naive dust
#

Thank you! But I executed this on the target machine, but I did not receive the flag.

crystal marlin
naive dust
#

Ah! Okay, reading sometimes helps ๐Ÿ˜‰ Now I understood that I am getting the answer from the machine...

naive dust
#

Do you know the simplest provider/way where and how to setup a small website with only a box to write text and send it, then it would be stored in some database?

naive dust
#

ok thanks

forest hamlet
#

Dears can anyone help me to change my country because when I changed it and get back again it shows me another country

forest hamlet
#

Thanks a lot

lament trout
#

there should be a pinned message having links to all FAQs here

solid sail
#

502 Error on Burp Suite: The Basics
I didn't do anything, i just tried to connect with the link provided by the room

lament trout
solid sail
#

i'm refreshing since you posted your message

lament trout
#

:/

solid sail
#

it's ok now but it seems scripts are desactivated

lament trout
#

are you using another vpn or something?

solid sail
#

nop

crystal marlin
lament trout
#

try on your host machine maybe?

solid sail
crystal marlin
solid sail
#

it works on http now !

#

but it took time before charging and showing "DNS Probe finished domain"

#

maybe the server itself is suffering ?

simple hull
#

Hey everyone, I have a feeling sqlmap is not able to find any websites through the ovpn network. I'm currently trying the Overpass room, and sqlmap keeps getting 404s
Command i'm using: sqlmap -u "http://10.10.228.16/admin" --data="username=admin&password=password" -dbs
Has anyone encountered this issue before?

#

Just fyi, I can actually get the website through a browser. So the my ovpn config should be working correctly

molten stump
#

okay so im having some issues getting a windows vm on which i can get brainstorms exe to actually run anyone wanna recommend a specific vm. tried win 7 x86 same with win 8

light vale
#

Move it here @ashen crypt

ashen crypt
#

alr

#

i started the attackbox

#

opened firefox there

#

and wrote the machine's ip

#

error 405 , doesnt work

light vale
#

Let me try it also.

crystal marlin
light vale
#

You have to use the Active Machine Information not the one at the top, if that is the one you are using...

ashen crypt
#

i am

#

as i do start machine

#

its telling me

#

you can only deploy 3 machines

#

idk what machine is open

#

ahbabhahhaha

#

is there a way to close all machines i mightve opened and forgot to terminate?

light vale
ashen crypt
#

it is terminated

#

but there seems to be other machines open

ashen crypt
#

thsat i cant figure out

#

where

#

what browser control

#

as in how

#

do i do it

#

@crystal marlin

crystal marlin
#

Open the dev tools in your browser and click on the "console" tab, then paste that code in there

ashen crypt
#

thats it?

#

i pressed enter and left it

#

ok worked

#

thanls

light vale
#

๐Ÿ™‚

ashen crypt
#

merci alek โค๏ธ

#

merci fontaene

#

โค๏ธ

light vale
#

no worries