#site-support

1 messages ยท Page 275 of 1

weary spindle
#

No, can you visit 10.10.10.10 on your browser.

dreamy bone
#

yes

#

thm verified...

#

I remember it was in the tutorial

weary spindle
#

Now, you have an issue connect to machines you start up?

dreamy bone
#

I progressed further down the beginner path and at one point the author said he's assuming I'm using Linux

#

So, I downloaded a VM-Ware Image of Kali Linux and follwed the instructions installing OpenVPN

weary spindle
#

Ok.

dreamy bone
#

I can connect to 10.10.10.10

#

but I cannot connect to anything else!

weary spindle
#

Have you started any machines?

dreamy bone
#

I started the machine from room Linux fundamentals 3

#

I can ssh into it, on Kali Linux, but I cannot browse the website in Firefox

#

10.10.54.115

weary spindle
#

When you access ssh, you're essentially logging in to that machine on the command line.

#

so, you're viewing the contents of that machine.

dreamy bone
#

yes. but I also need to browse "the regular Internet" ?

weary spindle
#

For which task?

dreamy bone
#

Ok, so let me rephrase the question:

#

Once I'm connected to OpenVPN on Kali Linux VM, I can connect to tryhackme-boxes, but I cannot browse the regular internet, such as google.com

#

is that suppposed to be like that? Because on Windows that was not the case

weary spindle
#

Right, I get you, I don't know why that would be.

#

As the OpenVPN just creates a tunnel to their machines.

#

It doesn't have any effect on your browser.

#

Are you using virtual box?

dreamy bone
#

No, VM Ware Workstation

weary spindle
#

What is your network setting?

dreamy bone
#

I can provide you the information you need for that, but you would need to tell me where to look it up

#

I'm connected using ethernet cable and the VM Machine is using that connection

weary spindle
#

Hm, to tell the truth, if you can connect to the machines, I think you should be ok...

dreamy bone
#

NAT

weary spindle
#

you should be connected to the internet then.

dreamy bone
#

Ok, I tried to send a screenshot but I cannot

weary spindle
#

you need to verify

#

!docs verify

sharp bisonBOT
dreamy bone
#

Ok, I did

weary spindle
#

Now you can send images.

dreamy bone
#

anyway I found it

#

$ nmcli connection # Note the name of the VPN connection here
$ nmcli connection edit (connection_name)

set ipv4.never-default true
set ipv6.never-default true
save
quit

inland rapids
#

Hello, is anyone able to help me with group licensing issues?

serene raptor
#

hey , what are the differences between the VMs supplied by THM?

trim sky
#

guys whats a .clr file

naive dust
#

Can any admin or mod with the ability unlink whatever discord my discord token is applied to and apply it to this one? I cannot access whatever account has it. I have gone through an extensive amount of trouble trying to recover this discord because it had my phone number attached. I do not have any clue where that discord profile that the token is currently applied to, but I can verify to you my credit card info, profile info, etc.

crystal marlin
serene raptor
#

kali

#

like the one i can use

crystal marlin
serene raptor
#

that what i am asking

#

what are my options?

#

like i run a vm and use it to hack?

crystal marlin
# serene raptor that what i am asking

Well your question is kind of vague, but the difference between them is kali machine = kali linux and the attackbox = ubuntu but with all the necessary tools installed. Also the attackbox is getting maintained/updated, the kali machine not anymore.

#

And yes, you could also use your own VM on your local machine and use that

serene raptor
#

thank you ๐Ÿ™‚

#

and well if i already asked, can i some how transfer files form the attackbox to my pc? like bash scripts

crystal marlin
serene raptor
#

sorry for the many questions , i am new to THM

crystal marlin
serene raptor
#

cool thx ๐Ÿ™‚

naive dust
#

Can any admin or mod with the ability unlink whatever discord my discord token is applied to and apply it to this one? I cannot access whatever account has it. I have gone through an extensive amount of trouble trying to recover this discord because it had my phone number attached. I do not have any clue where that discord profile that the token is currently applied to, but I can verify to you my credit card info, profile info, etc.

naive dust
#

NVM I am all set now

dreamy bone
#

In fact, there are premade kali images that you can just "play" inside vm ware or oracle vm virtual box

serene raptor
#

you mean OVA?

dreamy bone
#

if you mean open virtual appliance then I guess... yes

serene raptor
#

i mean the premade kali for vbox

olive totem
#

Hello everyone. I have connected to THM in kali through openvpn but still it does not show in THM console that I'm connected

#

I can access 10.10.10.10 from my kali box

toxic cypress
#

Hello, someone changed my email, and I have the first verification email since January 2021, i sent an email to tryhackme official email but no ansewer since 2 days

crystal marlin
weary spindle
toxic cypress
#

Someone told me to ask for help in discord and I'll get an instant response

weary spindle
#

Only discord problems are dealt with in Discord.

#

Any THM account queries will be dealt with in the support, via e-mail.

pine cedar
#

Anyone know of any good comprehensive guides for PLCs? There's a job that seems interested in me, but I have pretty much no knowledge about it, and it would certainly help with the job position! If not, I guess I'll just look up relevant job description stuff on youtube haha.

stray cove
#

You'll want to ask a senior mod or muiri about that. I can't do the verification myself

stray cove
crystal dragon
#

I'm not sure if this is the right channel for this. But does anyone know how to reset username and password on Kali Linux?

stray cove
#

As in on your VM?

crystal dragon
#

Yes

#

in virtualbox

stray cove
#

You can reset a password with passwd

#

As for username...i wouldn't recommend mucking about with those and would just create a new user

#

Then deleting the old one

crystal dragon
stray cove
#

Passwd the program

celest wadi
#
passwd
stray cove
#

That one

#

For users it seems to depend on distro, I think kali uses useradd, usermod, and userdel or something to that effect

celest wadi
#

Yeh, I think adduser is also a thing might be deprecated tho

stray cove
#

usermod can modify a username but it won't automatically follow through to everything else

#

Home dir, etc

#

I've...had issues in a room with that before

celest wadi
#

๐Ÿ‘€

crystal dragon
stray cove
#

Do you have the root password or an ssh key based login?

crystal dragon
#

umm I don't think so. I never used the root password. Only used the regular login

mortal forum
#

gbh v

stray cove
#

This is why password managers are nice

#

Did you install the kali from scratch or use a provided image?

crystal dragon
#

installing kali on virtual is the only way it works for me

stray cove
#

Try root:toor

weary spindle
#

or kali:kali

stray cove
#

Or kali:kali

#

Seriously those are default accounts

#

Root one is a bit older

celest wadi
#

Yeh, I know, I never changed them PES_Clown

stray cove
#

:p

celest wadi
#

To this day,
Friend logged in one time PES_SadGe

celest wadi
#

It's mainly for convenience in case my dual boot acts up or I need windows on the side

stray cove
#

I'm setting up my next box to be passwordless

#

No key, no login!

weary spindle
celest wadi
stray cove
#

No hell, only fun

celest wadi
stray cove
#

Maybe more java

crystal dragon
#

thanks for the help guys it worked ๐Ÿค˜๐Ÿผ

stray cove
#

Kali user?

crystal dragon
#

yea

stray cove
#

That one should have sudo

shy thorn
#

YOU + JAVA MAKES PEOPLE CRY

stray cove
#

Nah just you

naive dust
#

I cannot use my token to verify my account and access voicechat. It says it is being used by someone else, even though a mod removed it from my old discord yesterday. Can a mod or anyone with authority please make it available for assignment to this discord?

burnt flax
#

Hi Support. Just a quick question my subscrition lapsed as i missed to notification and had changed card since last bill. Went in and payed the subscription but when i log in its still asking me to go premium any ideas?

barren birch
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
burnt flax
#

perfect thanks

somber halo
#

we can take i there

naive dust
#

can you enter vulnerable machine via openvpn

deep spire
naive dust
#

do i need to ssh or something?

deep spire
naive dust
#

can you help me with that

deep spire
severe dove
#

So I was doing the Linux PrivEsc room, task 11, which required me to mount a folder in my tmp directory to a share on the target machine. All was good until the target machine shut down before I unmounted the drive. Now my entire tmp directory will not load at all. I think it is still trying to connect to the remote machine. I tried unmounting afterwards but that didn't do anything.

#

Anybody know anything I can do?

#

Oh that worked, that's embarrassing ๐Ÿ˜‚

#

Thanks!

wheat wagon
dawn anvil
#

Hey if anyone's free to help that'd be most appreciated, I'm trying to connect to a THM machine using my PC. I've downloaded OpenVPN on my VM, downloaded the config file from the website and tried this command sudo openvpn /path/to/file.ovpn in my terminal. My terminal responds with I'm trying to parse "/lethalz.ovpn" as an --option parameter but I don't see a leading '--' What am i doing wrong? The OS is Linux Mint Cinnamon if needed.

crystal marlin
dawn anvil
crystal marlin
dawn anvil
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

rigid wasp
#

Hi

#

I think there may be some issue with the room "Intrusion Detection"?

#

I'm trying to be as noisy as possible (ssh as root several times, sudo with failed passwords, read forbidden files like /etc/shadow, etc. and I'm not getting any alert for Wazuh)

#

Rebooted the server and I still can't see any alert for the NIDS

#

Wazuh-agentd is running

wheat wagon
#

It is the same for me. But i managed to get a couple of alerts with nmap, other than that, nothing.

rigid wasp
#

I got zero alerts

#

I used -A, -O, vulner scripts, ssh bruteforcing

wheat wagon
#

I used -T4 --script=vuln and --script-args http.useragent

rigid wasp
#

Yup, same, but 0 alerts from Wazuh

#

I just checked, and the Wazuh agent is connected to the server

#

I shouldn't be troubleshooting this lol

#

That's not what I'm supposed to be doing in this server lol

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

next cairn
#

guys i need some help

#

so im trying to generate logs

#

but im getting an error with a tap command for installation with homebrew

#

its to do with bottle unneeded

#

can anyone help...

#

i typed brew --config to see what im using

#

but i dont know what to do next...

kind slate
#

Hello Everyone, my attack box is low on storageโ€ฆAny clue as to how I can get a clean installed VM?

#

Backstory to my storage issue, im in the openvas room- installed docker but install of openvas fails and outputs a disk space error. Iโ€™ve ran the syntax df -h it does show disk space at 100%

finite cosmos
#

Hi all am I even connected to the vm ? it didnt prompt me for the password ......

crystal marlin
finite cosmos
crystal marlin
finite cosmos
crystal marlin
#

Best to send a screenshot

#

But to let you know, I guess you are doing the room: https://tryhackme.com/room/furthernmap
So you are not supposed to ssh into that target machine.
This target machine is only there to be scanned by your attacking machine with nmap

finite cosmos
crystal marlin
# finite cosmos

Your VPN connection seems all fine, so like I said above, you are not supposed to ssh into the target machine in that room

finite cosmos
crystal marlin
#

And the attackbox is different then the target machines

#

So ye, you can ssh into the attackbox, but not into the target machine of that room

finite cosmos
young fossil
#

I am doing the task no. 33 in Throwback (token impersonation) , but on following steps i dont get any tokens (Resetting machine didnot help). i m using DaviesJ account. In John hammond video he got more . so am i missing something . please help. here is below the output

====
meterpreter > getuid
Server username: CORPORATE\DaviesJ
meterpreter > list_tokens -u
[-] Warning: Not currently running as SYSTEM, not all tokens will be available
Call rev2self if primary process token is SYSTEM

Delegation Tokens Available

CORPORATE\DaviesJ

Impersonation Tokens Available

No tokens available

deep spire
deep spire
vapid idol
#

Hello, did anyone here try hosting a ctf pwn challenge on Azure ?

pale valley
#

guys i have some files that has got encrypted by a ransomware and i cannot decrypt it

#

any help guys

nocturne blade
#

ssh in post exploitation room not working, tried in browser, vpn, waiting a lot of time ๐Ÿ˜„ nothing

crystal marlin
nocturne blade
#

can't login with those creds, I see many people have the same issue

crystal marlin
#

!docs verify

sharp bisonBOT
nocturne blade
#

permission denied, try again

crystal marlin
nocturne blade
#

10.10.194.130

crystal marlin
# nocturne blade 10.10.194.130

Could you show me a screenshot of the "Active machine information" box that's on the room page? As I think that IP is from your attackbox

vapid idol
#

Hello, i'm trying to upload a vagrant VM to a room. How can i convert it to a .ova or .vmdk ?

crystal marlin
#

@nocturne blade If you don't see that box, you haven't started the target machine yet. You can start it in task 1 by pressing the green "Start machine" button

covert bronze
#

Hello, Iยดd like to report a problem with this room: https://tryhackme.com/room/retro . The performance of the IIS on this box makes it impossible to do it. Its so slow, that 90% of the gobuster requests time out even if you throttle it with delays up to 5 seconds.

Once you found your way into the "environment" its impossible to navigate in it since everytime you click a link within the panel the site runs into a timeout.

crystal marlin
covert bronze
#

Yep, after 30 minutes of trying and trying I was now able to load my desired site in the panel but its really really slow ๐Ÿ˜„

crystal marlin
covert bronze
covert bronze
#

It got a bit faster in the last 20 minutes now but gobuster is still really slow / timing out. Never had this problem before, yet.

versed jasper
#

@covert bronze i think i have the same problem i cant even ping my box but it shows me the box is up and running my vpn is fine and network connection is also fine

crystal marlin
#

Is your attacking machine a VM?

covert bronze
#

Yes

crystal marlin
covert bronze
#

Yap

crystal marlin
#

If you check ip a s do you only see a tun0 interface or any extra like tun1, tun2 etc. ?

covert bronze
#

lo, eth0, tun0

crystal marlin
#

In case it does not, just put it back to 1500

versed jasper
#

Is tun0 state showing as unknown

crystal marlin
covert bronze
#

Do you mind explain please what this command did ? And thank you already ๐Ÿ™‚

versed jasper
#

@crystal marlin its not on a single machine its on nearly three machines and no one has load a webpage also

crystal marlin
crystal marlin
versed jasper
#

Flatline plotted

crystal marlin
versed jasper
#

Yes

#

actually befor approx one hour its working fine

crystal marlin
versed jasper
#

@crystal marlin yes

covert bronze
crystal marlin
#

Have you been able to scan the target machine?

versed jasper
#

@crystal marlin no the scan are giving nme nothing even if i use -Pn

thorny barn
#

could anyone help me, im new in this world and when ever im trying to do the ping to the machine it does not work, I'm in the meow tier 0 do anyone knows ehy?

crystal marlin
crystal marlin
covert bronze
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

versed jasper
#

@crystal marlin its just cursor blinking

crystal marlin
crystal marlin
thorny barn
#

Meow

#

its in the tier 0

crystal marlin
thorny barn
#

Im connected to the machine but whenever I try to do a ping I dont get any response

crystal marlin
versed jasper
thorny barn
crystal marlin
thorny barn
#

but when im trying to do nmap I dont get any response either

crystal marlin
#

You are in the TryHackMe discord ๐Ÿ™‚

thorny barn
#

how sorry xD

crystal marlin
fast stag
#

Hi, I have a big issue
I got hacked on a minecraft account, and i am searching how to find the hacker's ip adress to ban it from my server, the only info i have from him is his username

crystal marlin
versed jasper
#

its tun0 only

crystal marlin
eager fulcrum
scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

versed jasper
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

nocturne blade
#

bloodhound error while using the information from sharphound, using the script version on the host, also using a new version from git and the executable

naive dust
#

I joined hoping to see questions about Classrooms in this channel. If I were to subscribe to Classrooms, would I be able to get support in this channel or would my only option to get support be through email?

#

I noticed there aren't many "Classrooms" inquiries in this channel

modern sluice
#

Hey, holo seams to be down.

#

Hosts are not reacting anymore. Can anyone help?

#

Oh, it restarted.

celest wadi
eager fulcrum
#

The only support anyone gets paid for is via email

naive dust
#

Thanks for the info

golden cloud
#

Owasp top 10 XSS room is not accessible. Room is getting timed out.

sharp bisonBOT
golden cloud
#

Ok

#

I meant to say the machine not the room ..it is getting timed out and I cant solve the stored xss challenge

#

I solve the reflected xss challenge and when i am trying to access the stored xss the machine gets timed out after some time

golden cloud
#

The IP is 10.10.217.77 . I can access the machine but I am not able to complete my challenge.It gets timed out when i submit a payload for the task

#

Ok will try another payload and update you

dusk dust
#

hi i can't seem to access via openvpn

#

not sure if anyone can help

#

seems like this is the prob

#

2022-04-14 19:21:40 Validating certificate extended key usage
2022-04-14 19:21:40 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2022-04-14 19:21:40 VERIFY EKU OK
2022-04-14 19:21:40 VERIFY OK: depth=0, CN=server
2022-04-14 19:22:39 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity)
2022-04-14 19:22:39 TLS Error: TLS handshake failed

#

yea

weary spindle
dusk dust
#

ok tx it works...chose a server closer tohome too

sharp bisonBOT
gleaming quarry
#

hi, i've completed the pre security path but this doesn't give me the certiicate, says "Fetching certificate, please wait."

light vale
#

Disable adblocker if you have try reloading the page, different browser...

spring pilot
#

hi folks, can any one help me with this? Terminal keeps tabbing along everytime i hit eneter on a command. I'm really struggling to articulate to google what the problem actually is...

#

wsinstance:!!:18573::::::
sssd:!!:18573::::::
sshd:!!:18573::::::
chrony:!!:18573::::::
rngd:!!:18573::::::

gleaming quarry
spring pilot
light vale
spring pilot
light vale
serene raptor
#

hey' how can i terminate all the machines on THM? incase i forgot to

serene raptor
#

Thanks ๐Ÿ™‚

buoyant peak
#

hey guys just sometime ago tryhackme renewed my subscription by automatically getting money from me. i didnt want this to happen and i want to cancel subscription. if i do that will i get the refund of the money tryhackme got from me?

crystal marlin
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
buoyant peak
#

ok thank you

pulsar trench
#

hello , I want to ask How can i subscribe with the student plan?

vapid idol
#

Hello, i'm trying to convert a vagrant box to an ova, i found commands from ova to vagrant box but not what i need, does anyone have an idea ?

sharp bisonBOT
terse harness
#

I'm having trouble with the GoPhish lab machine that is in the Phishing Room which is in the Initial Access Module. I start the machine, login using the provided credentials and get to the Dashboard. However, nothing loads, I only get a spinning icon. I go to Sending Profiles and I still have the spinning icon and it won't let me add a new profile.
I've terminated and restarted the machine a couple of times and allowed the machine plenty of time to load.
Is this where I report this problem?

olive lynx
#

Hi, I'm having problem with the GameZone room. It seems connection keeps on dropping. I've ran thm-troubleshoot script and that is all green lights. I'm ssh'ed onto the machine but every time I run commands it stops and crashes after a few lines. This remains the same even after I stop the machine and restart a new one.. Any idea what's wrong?

golden cloud
terse harness
olive lynx
#

Hi, is there something going on with the system at the moment? I gave up on GameZone room and started working on Skynet but trying to access it at :80/squirrelmail/ , it just hangs forever. Could someone from support team please help me?

crystal marlin
olive lynx
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

olive lynx
weary spindle
crystal marlin
olive lynx
crystal marlin
olive lynx
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

crystal marlin
olive lynx
crystal marlin
# olive lynx yes

Is openvpn running directly inside that VM or on your host machine ?

crystal marlin
crystal marlin
# olive lynx no

Then check ip a s if you only see a tun0 interface or any extra like tun1, tun2 etc.

crystal marlin
# olive lynx just tun0

Then run sudo ip link set dev tun0 mtu 1200 on your attacking machine, then try again to open the webpage

olive lynx
crystal marlin
olive lynx
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

crystal marlin
loud spear
#

Hello, I have reset my progress, to start over, But the In Browser Linux machines has not set to defaults, need help.

golden cloud
crystal marlin
#

Wait a minute and check ip a s again to make sure there is only a tun0 interface

golden cloud
#

now I am only getting tun8

jaunty siren
#

is here allowed to require a hack of something ?

#

because i have a problem with instagram account

#

they say it was compromised but i was honestly just unfollowing accounts

#

i dont have access to mail or phone number

#

if it was all strawberries and lollipops i would just take a pic of my face and send it to em ๐Ÿ˜„ ๐Ÿ˜„ but i cant

#

or idk if they do accept it

nimble comet
#

All you can do is follow up with their support. We don't do illegal stuff here.

#

And that'd definitely be illegal.

nimble comet
jaunty siren
#

alright

full thistle
#

I am having trouble SSH'ing into the attack bot. It wont accept the password "tryhackme"

#

Yes

#

Maybe I worded it wrong Im sorry

#

Correct

#

ssh tryhackme@"ip address"

#

It wont accept the password "tryhackme"

weary spindle
#

Take away the "

#

it's just

tryhackme

full thistle
#

Thank you. I am not using the quotations when I enter it though. I simply did it to show what I was putting in

weary spindle
#

Ok, can I have the machine ip?

full thistle
#

sure

#

10.10.180.143

weary spindle
#

I can't log in with it either, haha

#

I tried booting up my own room, and logged in right away.

#

I suggest you terminate and re-deploy your machine.

full thistle
#

Okay thanks

sweet pivot
#

hey guys I am new here, could someone help me? I am connected to openVPN and everything but when I try to start the activity machine all that ever comes up is the regular machine and not the activity one

#

I have downloaded a new openvpn profile and tried connecting other ways im at a complete halt

celest wadi
sweet pivot
#

the room

celest wadi
#

You're pressing the big green button for that not the blue one?

sweet pivot
#

yeah the big green one

#

itll countdown like normal but nothing will launch

celest wadi
#

Yeh, try refreshing and starting again

sweet pivot
#

openvpn should be turned on yeah?

celest wadi
#

Yeh, if you want to interact with the machine

sweet pivot
#

okay I refreshed, ill wait 5 mins like it says and see

celest wadi
#

You should see an ip in the top of the room

sweet pivot
#

yeah I see

#

just under 5 mins and it hasn't launched

celest wadi
#

Wait,

#

Are you expecting a split view, graphical machine to pop up like the attackbox?

sweet pivot
#

yes

celest wadi
#

Because most rooms don't have that on the room VM

#

What room is it that you're doing?

sweet pivot
#

Tech_Supp0rt: 1

celest wadi
#

Yeh, that doesn't have a graphical VM, just attack the ip and try to get in the machine remotely

sweet pivot
#

so copy the machine IP into windows remote desktop? I tried that and it cant connect

#

sorry if im misunderstanding

celest wadi
#

You can follow the paths or if you're a free user
!docs free-path

sweet pivot
#

okay thanks mane

celest wadi
#

๐Ÿ‘

#

!docs free-path

sharp bisonBOT
grand crow
#

I think my computer suspended while it was updating and now I cant update

astral cape
#

๐Ÿ˜ฆ

#

@grand crow my power went out earlier, while i was moving around all my files and changing perms ... thought I borked the boot record, took a round about way and it still started

grand crow
astral cape
#

๐Ÿค”

#

I could help debug, but i'm pretty tired ... brain is mush

#

๐Ÿ˜›

grand crow
#

maybe at some point in the future. would be pretty good to update again lol

#

one thing I noticed in the /etc/fstab thing is that there's stuff point to 0,0

#

no uuids or anything

queen ore
#

There is one more problem , as soon as I open Firefox the terminal which I opened and execute commands gets closed automatically , can all windows remain open, is it like we can only work on one window, let me know how this can be fixed

astral cape
queen ore
#

there need to have solution why we can't open mutiple windows as this do not happens when we set up our personal labs on our PCs

#

if people are paying then the environment should be user friendly..

digital sinew
#

Why i can't take premium subscription with payoneer debit Card.

west harbor
#

hey uh

#

i connected my chromebook to my monitor (hdmi connection) and the display works fine

#

but its blurry and doesnโ€™t give me the option to log in

dusk dust
#

hi why is it that i can't rdp to 10.10.221.113 even after reverting

vapid gorge
#

How can I access in this case?

crystal marlin
#

I suggest you ask in #infosec-general since this channel is for TryHackMe related tech support

rocky trail
#

oh sorry i thought it was this channel for support, sorry @crystal marlin

crystal marlin
crystal marlin
cursive sapphire
#

@vapid idol iptables -P INPUT ACCEPT iptables -P OUTPUT ACCEPT iptables -P FORWARD ACCEPT iptables -F

#

This is how you reset iptables in linux

vapid idol
#

I think azure doesn't use regular iptables, does it ?

cursive sapphire
#

No idea , haven't used azure

#

But you can list out the rules to confirm it

vapid idol
#

I used their portal interface and added rules to allow ftp so i solved the problem, But thank you i'll check it for learning

remote salmon
#

Hello
Recently I've found that the country on my profile is not my real country, of course this affect the rank
I tried to change to it but what ever I do it does not accept the change, any help?

silent kettle
#

Hello, I would like to purchase a Premium, is there a discount code for this?

#

thanks๐Ÿ˜†

remote salmon
#

Thank u

scenic torrentBOT
#

Gave +1 Rep to @gray loom

static storm
#

Hi I didnt make my THM account using my uni student email id

#

is there any way I could get the student discount on this account or do I have to make a new one for it using my university email id?

crystal marlin
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
fading wigeon
#

Hello, has anyone used John the ripper password cracker before? i wanna create a command that cracks 6 characters long passwords with uppercase, lowercase, symbols and numbers in the password, i have this so far but how do i make those checks? Do i need to change the incremental? Any help appreciated

john --incremental=ASCII --format=md5crypt unshadowed.txt
civic ridge
weary spindle
celest wadi
weary spindle
weary spindle
# celest wadi engineers for the win <:TryFlagMe:907785134059700335>

The last one came out and told me it was because there is too many routers on the channel and tried changing it, his exact words were "Whenever I change this, I don't have to come back". So he was more than sure this was it didn't listen to me when I told him I already tried changing channels.

celest wadi
#

also because you're likely dumb

weary spindle
#

Not too sure of that are you?

celest wadi
golden cloud
#

my vpn connection is creating multiple tun interface everytime i restart it

#

can someone suggest a solution for this

#

my location has been updated for my profile. can that affect my openvpn settings?

plush bay
#

uuum don't recall the command but you should probably remove all the old tun devices.... and to kill the vpn use ctrl + c and then wait for a short while so it can exit gracefully

golden cloud
#

i have deleted the interfaces and killed the vpn as well but the issue still persist

#

my internet connection is perfect so no issue regarding it

plush bay
#

hmmm

#

!vpnscript

sharp bisonBOT
blazing venture
#

Hello , this machine doesn't boot up.

#

Can you help?

crystal marlin
blazing venture
#

I can not connect to the VM via RDP.When it does it crashes

#

I tried both from a VM of mine and from the "Attackbox"

crystal marlin
blazing venture
#

Nope , I shut it down

grand crow
#

thank you @astral cape for helping fix my kali install

scenic torrentBOT
#

Gave +1 Rep to @astral cape

astral cape
vapid gorge
#

Hi in https://tryhackme.com/room/winprivesc Part Dll hijacking. I can run hijack.dll. Because dllscv not run in the system and I can not install process monitor to find service load C:\temp. What can I do?

midnight harness
#

I believe the yearly actively not showing correctly might be a known bug/issue. It shows 0 activity on days I've completed questions. My streak is still in tact and I have screenshots that I completed questions within the 24 hour period. Just wondering if this was ever resolved.

empty bear
#

Hello guys! I had a strike of 65, going for 90 to get the badge and then continue for the next one. I traveled from Italy to USA. Here the current time is 23.51 just right now. I lost all of my streaks. I really hope to get them back because honestly I'm on time for my daily meeting with the platform! Please let me know that is possible!

#

In case is needed I can provide more details on dm etc, actually proving that I'm really in US and so that I'm on time

#

I really don't want to loose 65 streaks just like that animewave

turbid ferry
#

!email

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
small nexus
#

Is there a VPN issue? Can't seem to connect to THMs VPN. I already regenerated the .ovpn file. I already tried with HTBs VPN and it works so its not on my end probably.

#

Changing the VPN servers (IN to AU) worked, but having extra delay is kinda meh.

dim yarrow
#

Is there a way I can make my certificates show my real name instead of my nickname on THM?

celest wadi
scenic torrentBOT
#

Gave +1 Rep to @celest wadi

latent geode
#

Linux Privesc room.
Privilege escalation: Path

Text days "You can launch the target machine and access it directly from your browser"

Browser window doesn't start.

I've managed to SSH in now but even that wasn't working

weary spindle
#

I can ssh in and it works.

latent geode
#

All the other machines start in the browser

#

Just started NFS machine and that's back in the browser

#

Maybe this is more of a bug than tech support.

crystal marlin
weary spindle
#

I'm still logged in the ssh, I forgot about it after I tried it btw.

latent geode
rigid wasp
#

Hi, I'm not sure where this should be posted, but it's about OWASP top 10 related rooms

#

The Top 10 was updated recently, is there a plan to update THM's OWASP Top 10 room?

eager fulcrum
lofty anvil
#

hi, i got a issue with nmap room in complete beginner path task14 question 2. I don't have hint and when i try the xmas nmap it's tell me to use -Pn

#

yes

#

but it was a wrong anwser

#

sudo nmap -Pn -p 1-999 10.10.48.169

#

i know but before i tape

#

sudo nmap -sX -p 0-999 10.10.48.169

#

don't work i already try it

sharp bisonBOT
lofty anvil
#

ok it's in progress but its really slow

#

thank you for your help i think is the right way to do it

plush bay
#

no timing changes???

#

because -T4 or -T5 could speed it up a lot

lofty anvil
#

but i appriciate your help

plush bay
#

well changing the timing actually changes some things but yeah you will most likely get the same results at a lower speed

lofty anvil
#

sorry you xwere right

#

it 150secondes more speed

naive dust
#

Hey all, I'm doing Windows Fundamentals 1 within the Pre Security pathway but can't seem to remote connect to my machine. I get the following error:

#

Connection Error: The remote desktop server has closed the connection because it conflicts with another connection. Please try again later.

plush bay
#

because that error makes it sound like there is already a open RDP session going

naive dust
plush bay
#

hmmmmm????

naive dust
#

WINFUN1.1, the required machine for the room

naive dust
# plush bay hmmmmm????

When I dismiss the error sometimes I'll get this error: Your Remote Desktop Services Session has ended.

Another user connected to the remote computer, so your connection was lost. Try connecting again, or contact your network administrator or technical support group.

plush bay
#

!docs verify

sharp bisonBOT
plush bay
#

what are you using to try and connect to the rdp session???

naive dust
#

Remote Desktop Connection

plush bay
#

hmmmmmmmmmmmmmmmmmm

#

are you connected to the vpn when trying to connect???

naive dust
#

Isn't the machine already connected? Like the hackboxes?

plush bay
#

the attackbox is yes

#

wait a minute??? are you trying to connect to the windows machine you have in split screen to the connection info you got in the task????

#

because if you are you are trying to connect to the same machine that is your target from the target itself

#

hence it is not going to work

naive dust
#

I'm not sure? In past exercises (Linux) we used the hackbox to connect to the ip provided

#

I was figuring it'd be the same; we make our box, Windows in this case, connect to the IP and we're good to go

#

Is there a program I could use on the hackbox or Kali to remote connect then?

weary spindle
#

If you're using Remote Desktop Connection I assume you're using windows, so you'd need the openvpn GUI for that

plush bay
#

unless they are showing you some remote exploits like in the blue room

naive dust
weary spindle
naive dust
plush bay
#

exactly

#

like the first linux fundametals room

weary spindle
#

The VPN is a "tunnel" to the THM machines you spin them up.

plush bay
naive dust
plush bay
#

i.e no need for open vpn as all of the stuff is in their browser already

naive dust
#

^

plush bay
#

and yes subscribing gives you unlimited attackbox access so that you can start and stop it and use it however much you want during the day

#

of course there are some few exceptions but listing them here might not be useful

weary spindle
#

It's one or the other.

plush bay
#

exactly scrubz

#

so they are trying to use the split screen view to login into the rdp session

#

or they were

weary spindle
#

Or they are booting the machine up, and logging in to RDP

#

When the machine starts properly it logs in, kicking them off the RDP

plush bay
#

shadow quite cleary understood that they were doing it from the browser tab after asking a few times

weary spindle
#

I wasn't getting at you not knowing it.

weary spindle
plush bay
#

anyways seems like nate figured it out and can keep going

#

and yeah as another option to connect to the target virtual machines you can use the openvpn config and have your own attack vm in virtualbox

#

most would recommend a kali linux vm for that

weary spindle
#

Depends what you're doing.

#

The windows machines I prefer to use the host windows RDP.

verbal thistle
#

@naive dust Hi Nate

verbal thistle
#

Hey Everyone, I was trying to access a website on my AttackBox, but I got an error 405 saying that this method is not allowed. Is there some way I can remove that issue?

weary spindle
eager fulcrum
lethal flume
#

Hi, i am doing Holo live, i have to the admin password (from supersecretdir), but its not working to admin portal... can you please help to fix it...

lethal flume
#

Thanks...

umbral remnant
#

hey, can anyone help me with this stop/djvu ransomware? My all files have been infected by some ransomware and i cannot access any of my file, its asking for 490$ to have my files back, Could anyone help me?

naive dust
#

Iโ€™m not a subscriber yet, but Iโ€™m curious: what comes after the cyber def path?

#

I supposed there would be a following path with โ€œhardโ€ level or something since the cyberdef has interm. Level

jaunty creek
#

can i use raspberi pi os to do some couses? its linux based

#

ok thx

#

i need to pay for courses right?

#

ok and i find them using site right?

#

thx

naive dust
#

Hmmm, nice to know that! Thanks

pallid arch
#

Hello folks i wana learn ldap injection should i frist invest on learning ldap?

oblique nexus
#

I need some help about Evil-WinRM . I'm in the machine as Admin and I'm trying to download a .git file to my local machine. I type "download filename.git", it says that is downloaded but actually, it's not. I tried to download it to /tmp (to avoid permissions issues) but it didn't download it :(. What am I doing wrong ?

#

Ok, I should have specified the entire path, don't know why :/

thin pecan
#

Hello, for some reason I'm not able to interact/ping the box in Vulnversity? I am connected to VPN, and the box has been up for about 10 minutes. Any suggestions?

#

^ Resolved, switched VPN servers and now no issues

harsh marten
#

Hello, I am doing the "Empire" room and trying to use the eternalblue vuln to get a shell on the target machine. It works with the in-browser attackbox ... but it don't work with my own machine through the VPN. It cannot get a shell, but it sees the vuln. Any suggestions here?

#

I get this errmsg through the VPN that I don't get in the attackbox:

atomic cypress
#

Looks like VPN issue ๐Ÿ˜ฆ cant regenerate Config file. when trying to download config file it's returns 404

#

Logged in... from THM

harsh marten
#

Yes I understand, but it works every time on the in-browser attackbox.

atomic cypress
#

No no i mean from THM website

#

Yep

harsh marten
#

yes I did that ... and I am using ovpn on my own linux box (also in a vm)

atomic cypress
#

When i click on green button it's just brings me to 404

#

Suddenly started to work again ๐Ÿ˜„

naive dust
#

I'm trying to download the config file for accessing Wreath and I keep getting a 404. I am able to download the Holo config file no problem.

#

Also, it's "separate" in "You need to use a seperate OpenVPN configuration file for networks."

weary spindle
forest violet
#

helo

shy cloak
#

How do I install ciphey :3

weary spindle
#

Do you have pip?

forest violet
#

helo guys, how do i know if may acc is ban in this server

shy cloak
weary spindle
weary spindle
#

Install pip, then install ciphey and everything installed.

naive dust
forest violet
#

I think my main discord acc is banned in this server and Idk why

weary spindle
#

Or Juun.

broken bear
forest violet
weary spindle
#

(Sorry, I pinged before I seen Juun was typing)

shy cloak
#

i already run python -m pip install ciphey

#

and it says ciphey command not found

weary spindle
#

add --upgrade

broken bear
# forest violet NINJA.#5741

This account was banned for spamming nitro scam links. If you have resecured your account 2FA and changed the password, you may email bans@tryhackme.com to appeal

shy cloak
#

thx, it worked

eager fulcrum
forest violet
forest violet
#

.

#

if my acc got banned here? is my tryhackme acc banned too? @eager fulcrum

shy cloak
#

does ciphey always takes this long to decode? its been 15mins

weary spindle
#

It depends.

#

I've found I've been waiting longer than 3 min(s) then it won't do it.

shy cloak
#

I thought ciphey is better than cyberchef

weary spindle
#

In many ways it is.

tacit juniper
#

Anyone got Vpn issue? I can browse but I'm not able to ping from my terminal

crystal marlin
#

Not all machines reply to ICMP pings

tacit juniper
#

Not boxes. When I tried to run VPN I'm not getting connection so I tried a 8.8.8.8 ping. No response.

#

I can browse with no issues

#

In browser

crystal marlin
tacit juniper
crystal marlin
tacit juniper
#

I'm just trying to check if I'm getting network via terminal. Cuz when I ran the script for checking Vpn issues (script from thm troubleshooting page) it said no internet connection

crystal marlin
crystal marlin
prisma flame
#

hello anyone using virtual machine on mac m1?

tacit juniper
#

Vpn is stuck here for me

weary spindle
tacit juniper
#

But I have internet

sharp bisonBOT
crystal marlin
# tacit juniper

You have to wait longer then check the openvpn output again, as there is no error nor success message yet.

tacit juniper
#

I found the issue. It's something wrong with VPN server.

#

Both EU VIP wasn't working but regular worked for me

#

Is vip using different port from regular?

crystal marlin
thorn forge
#

Hi, not really sure if this is the correct place, but I'm a student and interested in buying premium. The website says that it is 6 dollar a month and that I get 2 months free. When I proceed, it then gives me a student yearly summarize and their it talks about 72 dollar a year. 6*12=72, so my question then is, do I pay for a full year and then get 2 months on top of that? Or is their some kind of mistake? Sorry, I'm just a bit confused since the summarize doesn't talk about the 2 free months at all.

#

Ohh in that way, I was thinking that it meant a extra 2 months free on top of it

#

Understood, thanks ๐Ÿ™‚

scenic torrentBOT
#

Gave +1 Rep to @gray loom

wise flicker
#

#site-support Is this room still working as expected: https://tryhackme.com/room/kuberneteschalltdi2020 ?
I am having trouble with it when providing the IP address:

The connection to the server x.x.x.x:6443 was refused - did you specify the right host or port?
I can ping it, and did a "quick and dirty" nmap scan but it only shows port 22 open...
I am wondering if the room got scrubbed and cluster is not setup in the machines anymore?

eager fulcrum
wise flicker
scenic torrentBOT
#

Gave +1 Rep to @eager fulcrum

rain tinsel
eager fulcrum
rain tinsel
eager fulcrum
mighty saddle
#

Hi, why did i lose my streak?

lone shard
#

hello

#

any body here i need help can't connect via openvpn

#

server throwing me a "uh-oh, this page has been lost in the matrix" when i try downloading cred

#

been having a lot of challenges connecting either vpn server changing or initiating a connection but but directed to a rabbit hole

#

please i need help

lone shard
#

thanks for your support it was resourceful

scenic torrentBOT
#

Gave +1 Rep to @gray loom

red swan
#

hi, i'm having trouble with the Gogohish lab which is in Phishing room. started machine, login using the provided credentials and open dashboard, but nothing loads, only get a spinning icon. if i go to sending profiles still have the spinning icon and it won't let me add a new profile.
terminated and restarted a couple of times and wait plenty of time to load.

red swan
#

ok, so i use Attack box for it and not my host and it's working now

hot elk
#

hi, I worked on several boxes this week and frequently i loose the connection to the machines. I can still use internet normally but can't ping your ip. I redownloaded the openvpn file, but the problem stays. Would you know from where it comes ? Thx

weary spindle
#

!docs verify

sharp bisonBOT
celest wadi
#

!docs verify

sharp bisonBOT
weary spindle
#

Thanks for repeating what I said Zeesh.

celest wadi
#

Thanks for repeating what I said Scrub.

hot elk
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

weary spindle
agile turret
#

Hey everyone, I have a little problem using OpenVPN. Here's the situation, I have my home machine running Windows 10 and I use Kali Linux on Virtual Box. I can connect the VM to the TryHackme network but the problem is I have an IP like this : 10.9.87.65 whereas all the machines in my rooms have IP's on a different network i.e 10.10.76.4. I tried different networks such as Europe 1, Europe 2 even Europe VIP but nothing seems to match the THM machines IP ranges... Did I miss something ?

zealous yoke
agile turret
zealous yoke
#

None. OpenVPN handles the whole process for you ๐Ÿ‘

agile turret
zealous yoke
#

can you visit http://10.10.10.10/ from your Kali Linux?

agile turret
#

No it keeps loading

zealous yoke
#

Okay, first make sure you're not running the VPN twice (I.e. have done sudo openvpn yourvpn.vpn in two terminals (you should only one tun interface (check using ip addr)

#

Then sudo ip link set dev tun0 mtu 1200

#

That command configures how packets are sent OpenVPN and usually fixes issues like that

agile turret
#

Okay I did that and checked I'm only running OpenVPN once

#

I'll try to connect to 10.10.10.10 again

jovial mango
#

Are you seeing Initialize sequence completed?

agile turret
#

Doesn't work but if it helps you to understand my situation I have 7 connections to virtual networks : from tun0 to tun6. Seems to me it's supposed to happen right ?

agile turret
#

It's not supposed to happen sorry

jovial mango
#

Dont mind but try using curl http://10.10.10.10/whoami from your terminal

#

You will see your IP if your VPN works correctly

agile turret
#

Nothing happens

zealous yoke
weary spindle
#

That happened to me one night.

agile turret
#

It's processing

weary spindle
#

^ that's what I did.

agile turret
weary spindle
#

Just ran the script, rebooted the VM and it worked.

#

Someone had an error earlier too, they weren't closing the script, they were shutting the VM's down, but for some reason the sudo opevpn remained on.

agile turret
#

Okay the script fixed the problem for now

zealous yoke
#

I've never seen that before

#

I guess just make sure you Ctrl + C the terminal running the vpn before you shutdown, Le Coyote(:

agile turret
#

But I still don't understand how I'm supposed to ping the THM machines from the rooms without being on the same IP range

agile turret
#

Yes I thought the were separate networks

weary spindle
#

Simple way to look at it is lock and key.

#

You can't get in the door (THM machine) without the key (vpn script)

agile turret
#

Okay for example RN my tun0 IP is 10.8.74.169 and the machine I'm supposed to scan is 10.10.109.10

#

It RN it works I'm pinging it !

weary spindle
#

Yes.

agile turret
#

The problem went from so many tun interfaces I think thank you guys for your help

gleaming current
#

I'm experiencing a weird error with my VB VM. If I try to open my VM I get this error. Could not open the medium 'D:\VirtualBox\KALI LINUX\Snapshots/{979202ed-85f5-4d23-ad99-49c18cabf554}.vdi'. VD: error VERR_FILE_NOT_FOUND opening image file 'D:\VirtualBox\KALI LINUX\Snapshots/{979202ed-85f5-4d23-ad99-49c18cabf554}.vdi' (VERR_FILE_NOT_FOUND).
Result code: E_FAIL (0x80004005)

And now Windows Defender is quarantining my .vdi file saying it detected this: Exploit:HTML/Shellcode.G!MSR

Any ideas on why this is happening and/or how this .vdi became infected?

mint rune
#

hey!!! im new to all this but i was just wondering if i should enter to tryhackme in a virtual maschine that is running on kali linux?

#

my english i also not the best.... sorry

crystal marlin
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

native isle
#

can someone help me I cant ssh to the machine on the room Linux PrivEsc from my own kali only from the thm box

#

I get this message :"no matching host key type found. Their offer: ssh-rsa,ssh-dss"

plush bay
native isle
#

its worked

#

But why is this happening?

plush bay
#

deprecation of some key algorithms due to security problems

#

don't have the link to the article that explains it but yeah

native isle
#

thank you

plush bay
#

no problem

unborn phoenix
#

i have 3 extra tun interfaces

#

and the connection to the boxes is really shitty this is frustrating

sharp bisonBOT
unborn phoenix
#

my intenet connection is fine but with the boxes it's aweful

#

i'll try that

#

will it solve the issue with the machines tho ?

#

ok thanks

twin barn
#

Iโ€™m using the Kali box trying to run Hascat. It says i donโ€™t have OpenCL or Cuda runtime installed? Any prep i need to do or switch i should use

#

Ty

#

Iโ€™ll give it a try

glacial star
#

whats the reasoning for the 4 person max cap on teams?

pure hearth
#

hi guys! is there anybody who I could contact regarding streak? I went now for vacation and my streak got reseted despite the dashboard does not show any day missing. Is there is some way to find why this inconsistency happened?

plush bay
pure hearth
scenic torrentBOT
#

Gave +1 Rep to @plush bay

glacial star
plush bay
#

oh so shadow might be lucky because they live close to utc + 0

quaint tendon
#

hello, can I check if this is correct channel to ask for sale support too?

#

I wanted to purchase "Throwback" room for a friend as gifts, is that possible?

keen blaze
#

Hi all, I have just joined it today. Where is a good support channel for IP connectivity issue on Throwback? I have a VPN connection (checked with the troubleshooting script) and I confirm that I can ping to 10.10.10.10, but I cannot connect to any throwback clients. Thank you for your suggestion.

crystal marlin
keen blaze
gleaming current
#

Can anyone help me set up weechat? I'm just looking into it for fun and I'm kind of stuck trying to connect to the kali linux server / channel.

crystal marlin
loud sparrow
#

Can anyone tell me why the business accounts are so much more expensive (ยฑ4 times) than the private accounts? And is that the right channel to ask about it? ๐Ÿ™‚

coarse hamlet
# loud sparrow Can anyone tell me why the business accounts are so much more expensive (ยฑ4 time...

There is extra value in the business plans, although can be questionable if its worth the 4x price tag but thats upto a business ๐Ÿ™‚

So in addition to the standard HTB, a business would get the below
Create custom learning/career paths
Dedicated customer success manager
Onboarding and ongoing support
Management dashboard reports and analytics
Custom network environments
Create your own custom labs
Transferable Licenses

#

Same goes for education, there is extra value add ๐Ÿ™‚

zealous yoke
weary spindle
#

I'm sure the business and educational plans would only be beneficial if you have employees you wish to do it with, easier to manager, and educational if you're a teacher and you wish your students to this, but that link Ben posted will explain better than I can.

coarse hamlet
#

yeh one of the key things is transferrable access

#

I had the same questions when signing up for 1Password business, but as a business it was well worth it with the "value add" compared to personal accounts

naive dust
#

a

celest wadi
#

c

naive dust
#

d

crystal marlin
#

๐Ÿ‘€

celest wadi
#

streak breaker varg

full crow
#

Hello hello,
I've completed a path and wanted to get my certificate, however it is stuck on Fetching certificate, please wait. since yesterday.
Should I just leave it wait?

celest wadi
full crow
#

Yup it works, thanks

celest wadi
#

that tip is from personal experience sadge

worthy birch
#

Hey, my account isnt reloading a new IP for me and the original one it gave isnt working for the courses

#

no the attack box when I first started it I had an IP so I could do enumeration on the IP they gave to answer the course questions now that IP isnt responding and I cant complete any of the course work

#

I have

#

and the IP from yesterday isnt responding

#

yeah I restarted it today and it isnt giving me a new IP to use...

#

thats what I'm getting at

sharp bisonBOT
worthy birch
#

i cant find the "other" section I'm new to discord and I'm using the app not the website

#

OOH kay got it

coarse forum
#

Hi!

worthy birch
#

Alright where do I send the screenshots to?

coarse forum
#

I want to know how can I change my dns server in my wifi router I have watches many youtube videos. In some videos it showed by going in Network->WAN and other videos showed DHCP->DHCP client settings

#

i am confused Which one should I change?

worthy birch
#

Got it.

prisma palm
#

hi, on subscribing for tryhackme, my paypal account is not working while making payment

sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
prisma palm
#

thank you

weak wind
#

Pleb questions incomingโ€ฆ I am looking to move from AttackBox to OpenVPN and have successfully connected OpenVPN on my Mac (THM tutorial). I have a Virtual Box and Kali previously configured on my comp as wellโ€ฆ and know that I am supposed to switch to <Use Kali Linux>; am I missing a step? Whatโ€™s the best way to config for the non-AttackBox option?

plush bay
#

basicly start the kali vm... go to the tryhackme site on the kali vm.... download the ovpn file from the access page.... install openvpn on the kali box if it is not already installed... run sudo openvpn blah.ovpn to start using the vpn connection and then close it with ctrl + c when done

#

@weak wind โฌ†๏ธ

#

!vpn

sharp bisonBOT
plush bay
#

if you wanna learn how to connect with the vpn

weak wind
#

@plush bay - I connected via my mac - but then is best practices to use Kali then OpenVPN?

plush bay
#

because of how virtual box works the vpn is better to connect to from inside the vm instead of the host os

weak wind
#

Also, should I get the latest Kali, or are priv escalations limited if using an older version kali?

#

okie - it is very well explained there ๐Ÿ™‚

#

why are the other two options available on the tutorial if it mitigates the best practices?

scenic torrentBOT
#

Gave +1 Rep to @plush bay

weak wind
#

thank you @gray loom

plush bay
#

well

#

the attackbox is a safe use thingy too but you need to be subscribed to use it a lot

weak wind
#

yep

#

@plush bay - one day I was a lurker, and someone mentioned (paraphrasing) - if you don't use OpenVPN, then you can't call yourself anything but a noob, so I put it on my "to do - along my noob path" list

plush bay
#

huh.... well shadow feels like there is no degredation in skill for using the attackbox but knowing how to install tools and use kali will help you on your learning journey

weak wind
#

very true, will consider it practice!

astral cape
jovial herald
#

Howdy gang, I'm having VPN connection issues for Throwback.

https://tryhackme.com/access?type=networks page shows me as connected, OpenVPN output shows me as connected. But Throwback page does not show me as connected. Troubleshooting script says [-] Something went wrong -- please ask for further assistance in the TryHackMe Discord server, subreddit, or forum

#

Aha.

#

Ta.

thick wolf
#

Hey there, an enterprise API question - I have the rest of the API working just fine in Postman, but the questions call (seen below)

GET https://tryhackme.com/external/api/questions?roomCode={ROOM-CODE}

used (with auth inherited)

https://tryhackme.com/external/api/questions?roomCode=MySampleRoom simply returns

{
    "message": "You do not have access to this room"
}

The room is question is one that was copied and made private. The call does work for some of our other rooms. Is there a missing step to making the room respond correctly to the API call?

brittle kelp
#

Hello! Is there any way that I can change my name in TryHackMe?

charred yacht
#

In room, Post-Exploitation Basics in Path Jr. Penetration Tester, I've started .\PowerView.ps1\ already. However, Get-NetUser is not regconized cmdlet.

cursive sapphire
#

Import-Module ./PowerView.ps1

charred yacht
#

thanks @cursive sapphire. Im not familiar with Window

scenic torrentBOT
#

Gave +1 Rep to @cursive sapphire

chilly hamlet
#

Greetings, My kali doesn't have python 2 , I only have python 3. Is there a problem if I did this command ? is it the correct one to install python2 ?

#

nvm I found out that I have to use python2

chilly hamlet
#

thx

barren willow
#

am not able to connect to the vpn of tryhackme

#

can anyone help

weary spindle
#

Which OS are you trying to connect to?

#

Wat.

#

Which OS are you using to connect from?

barren willow
#

done with that thankyou

#

Divine clown helped me in that

pure hearth
red swan
pure hearth
scenic torrentBOT
#

Gave +1 Rep to @red swan

naive dust
#

How do i change my country flag ?

rustic tiger
#

Might not be a "tech support issue, but I'm trying to figure out why this content is locked on my workspace page

I have a subscription plan, so I don't think it's a paywall issue. Is this something that I need to reach out to the owner of the workspace to figure out? Thanks much!

#

nope, just THM sub. Is the organization subscription different?

#

OK thanks. I'll reach out to the org and figure out why it's blocked. Thanks @gray loom

scenic torrentBOT
#

Gave +1 Rep to @gray loom

obsidian parrot
#

Hi Guys
I am having following error in running the powerview commands for the room. On side note, I did execute the command powershell -ep bypass which executed successfully.
https://tryhackme.com/room/postexploit
Here is the error screenshot.
Any help/suggestion is highly appreciated.

#

The only difference in blog vs what i did is
.\Downloads\PowerView.ps1

#

I'll try again tomorrow. For now, my machine has used its time.

eager fulcrum
stable linden
#

can i get help... i totally forgot what my email address i signed up for tryhackme was. i only have my paypal email address which seems not to be the one registered

sleek kayak
#

HI all, my country is showing as UK, but I'm in Canada. Is there any way to update? There is a post online that states I should go to /update-timezone, but this leads to a 404 error.

crystal marlin
plush bay
#

also make sure to not use a vpn when you try and update it

sleek kayak
scenic torrentBOT
#

Gave +1 Rep to @crystal marlin

sleek kayak
#

reddit users had the old link posted

#

๐Ÿ˜‚

plush bay
#

updating reddit comments and posts might be hard..... dunno actually

scenic wing
#

hi all, having a weird issue where I've created a new ubuntu VM - using openvpn and the downloaded key from the site. Can ping/nmap the THM machines fine but web browsers cant see any of the THM machines... what am I missing??

#

Thanks!! yes my own vpn having it over... it used to work together with my other VM so something up... but work around in place. Thanks for suggestion!

scenic torrentBOT
#

Gave +1 Rep to @gray loom

scenic wing
#

can see the THM machines with firefox but now cant see internet... Doh!

stable linden
#

so, is anyone here able to help?

weary spindle
sharp bisonBOT
#
TryHackMe
Contact us for support, teaching enquires and more!
weary spindle
#

You need to contact support for that.

stable linden
#

i already did.

weary spindle
#

When?

stable linden
#

hours ago

weary spindle
#

Support is a small team.

#

Did you get an auto reply telling you they aim to reply in 2-3 days?

celest wadi
weary spindle
celest wadi
red swan
chrome zealot
#

Anyone had a problem backgrounding shells in metasploit on the AttackBox, when I press CTRL + Z, msfconsole just closes down, instead of asking if I want to background the session. ๐Ÿค”

spiral slate
#

Im creating a bunch of VMs and Virtual servers for a project im working on at home independently. Whats a good tool i can use to visually map it so i can see how everything is connected? Hopefully that doesnโ€™t sound to dumb lol

#

Thank you!

scenic torrentBOT
#

Gave +1 Rep to @gray loom

tough linden
#

Good afternoon all, need some assistance with a possible error in the Jr Penetration Testing Room

balmy viper
#

does anyone know where seclists is installed to after running apt-get install seclists?

#

nvm.

hallow hill
#

$ which seclists
Check /usr/share/seclists

#

$ sudo updatedb
$ sudo locate seclists

balmy viper
#

thank you ๐Ÿ™‚

balmy nebula
#

hi guy, i'm new here. Can someone describe how to start hack basics. if you are interessed write me in private chat:)

balmy nebula
zealous radish
#

@celest wadi yup connected, and got the ip I was using for the shell

celest wadi
#

What's the room/payload you're using?

zealous radish
#
GitHub

exploit CVE-2019-7609(kibana RCE) on right way by python2 scripts - GitHub - LandGrey/CVE-2019-7609: exploit CVE-2019-7609(kibana RCE) on right way by python2 scripts

GitHub

RCE on Kibana versions before 5.6.15 and 6.6.0 in the Timelion visualizer - GitHub - mpgn/CVE-2019-7609: RCE on Kibana versions before 5.6.15 and 6.6.0 in the Timelion visualizer

balmy nebula
#

someone know some comand for terminal for mac??

celest wadi
zealous radish
#

hmm nope, I get connection refused

#

tried multiple ports

celest wadi
#

Try port 443

#

Also, give -e /bin/bash in nc ip port but it depends how nc was compiled

zealous radish
#

still connection refused

celest wadi
#

Have you installed any firewall programs that could be dropping the connection?

#

But they shouldn't bother with 443 tho

zealous radish
#

nope

celest wadi
#

In the meantime, you can finish the room with attackbox cuz I'm not sure what's blocking the connection

zealous radish
#

could it be anything in these settings?

zealous radish
scenic torrentBOT
#

Gave +1 Rep to @celest wadi

flint anvil
#

cause giving it all the ram would only crash your PC

zealous radish
#

64

weary spindle
#

Are you bridged or nat @zealous radish ?

#

I know what the problem is then.

#

And it's not VPN related.

#

@zealous radish

You need to go to your C drive, then programs files (x86)
Vmware > Vmware Workstation.
Look for a program called "Vmnetcfg.exe" and run that as administrator
Your "Vmnet0" is your bridged adapter,

#

In the box that says Automatic, you need to change that to your Wi-fi adapter

#

Yeah, that caught me out too, I was too used to Vbox and their settings.

zealous radish
scenic torrentBOT
#

Gave +1 Rep to @weary spindle

tough linden
#

Iโ€™m trying to complete the Cross Site Scripting room in the Jr Pentesting Pathway. Unfortunately Iโ€™ve set up the payload but canโ€™t get the session cookie to complete.

I know the payload works because if I go to the ticket it captureโ€™s my own session cookie.

Iโ€™ve used NC and python Webserver and Iโ€™ve used TryHackMe Catcher but still nothing. Whatever automation thatโ€™s running in the backend of the room doesnโ€™t seem to be working and Iโ€™ve waited hours and used different machines.

#

Yeah Iโ€™ve actually restarted it a few times over this past week.

gusty marsh
#

Is it possible to hack in spotify and change the lyrics to whatever i want?

tough linden
#

Are we allowed to drop code in this chat???

sharp bisonBOT
silk marsh
#

Someone can help me to understand this query ```xyz' AND (SELECT CASE WHEN (1=2) THEN 1/0 ELSE 'a' END)='a

weary spindle
silk marsh
#

PortSwigger, there is a explenation but i dont understand it...

#

Yes, sure, do you have some resource or anything?

#

Perfect, apreciated ๐Ÿ™‚

hasty belfry
#

Hi guys, is anyone using WSL? I am stuck in the "Network Services 2" room while trying to mount a nfs share.
As I can see (OSINT), WSL 2 supports nfs by default.

โ””โ”€$ sudo mount -t nfs 10.10.225.235:/home/ /tmp/home -nolock -v
mount.nfs: timeout set for Fri Apr 22 14:53:31 2022
mount.nfs: trying text-based options 'lock,vers=4.2,addr=10.10.225.235,clientaddr=172.24.181.72'
mount.nfs: mount(2): Invalid argument
mount.nfs: trying text-based options 'lock,vers=4,minorversion=1,addr=10.10.225.235,clientaddr=172.24.181.72'
mount.nfs: mount(2): Invalid argument
mount.nfs: trying text-based options 'lock,vers=4,addr=10.10.225.235,clientaddr=172.24.181.72'
mount.nfs: mount(2): Operation not permitted
mount.nfs: trying text-based options 'lock,addr=10.10.225.235'
mount.nfs: prog 100003, trying vers=3, prot=6
mount.nfs: trying 10.10.225.235 prog 100003 vers 3 prot TCP port 2049
mount.nfs: prog 100005, trying vers=3, prot=17
mount.nfs: trying 10.10.225.235 prog 100005 vers 3 prot UDP port 58700
mount.nfs: mount(2): Permission denied
mount.nfs: Operation not permitted

tough linden
#

Hey sorry about the slow reply. I was commuting.

#

Yep, the listener is active right now

waxen dock
#

Hello, I've been having trouble viewing websites in different machines. I am connected to the VPN and my nmap scans match those of the services running in the machines. However whenever I try to connect to an http:// <machine IP> in my browser, all the websites I've tested hang. What can I do?

weary spindle
#

What room are you doing?

#

Not all rooms have webpages.

waxen dock
#

I've tried with the SimpleCTF machine yesterday and now with the CMesS machine

weary spindle
#

Do you have one open now?

waxen dock
weary spindle
waxen dock
#

I'm on my personal VM, running through the THM VPN, and my actual machine running through a personal VPN, VM is NAT bridged

waxen dock
#

I'll try the command

weary spindle
#

What's your target ip?

waxen dock
#

There is a single tun0 interface on the VM @Iassi

weary spindle
#

ALSO

#

For CMess.

#

You need to add it to your hosts.

waxen dock
#

The command worked!

waxen dock