#site-support
1 messages · Page 276 of 1
Well same problem with or without the hostname, also it just redirects my browser to that IP address, it's the same as typing it in directly, unless the machine has subdomains
although I was not trying to access one
^
I'll look it up, thanks!
So if I get it correctly the MTU of tun0 in my VM was incorrectly set because of my personal VPN?
Hey Lassi,
Quick update I re-did the blind XSS but i used the AttackBox instead of my Kali desktop. and within 20 seconds the cookie was there.
I've successfully completed the room.
Thanks for the assistance you offered.
Gave +1 Rep to @gray loom
Appears so, funny enough everything else worked through my desktop. After I got the cookie I saved it to a text file then spun up an http server on the attack box and had no issues with wget to download it to my kali desktop.
Try
$ mkdir /tmp/mount
$ sudo mount -t nfs ip_addr:home /tmp/mount -nolock
$ cd /tmp/mount/desired_dir
home being the share
Hi everyone, I have immigrated to Portugal, how do I change my country on my profile?
Thank you sorted
Gave +1 Rep to @gray loom
Hi, I use openVPN to connect to the TryHackme VMs. All is fine. But now I was asked in "OWASP Top 10" to get my TryHackMe VPN IP from the Access Page (https://tryhackme.com/access). When I check this page it shows me: connected - a red x. And Internal Virtual IP Address: 0.0.0.0. Shouldn't be there a green tick and an IP number? I guess I need this number for completing this task: [Severity 8] Insecure Deserialization - Code Execution. Again, the openVPN connection works correct while checking the access page. Edit: I guess I found the answer elsewhere: "You should use your tun0 interface address". However, is it correct that the 0.0.0.0 is shown on the access page?
is there a way to disable pop-up with connection instructions every time i start vm?
Do you mean the attackbox?
"Start Machine" at the beginning of every room gives this
I don't see that, I assume that is because you're not a sub?
im
can you send a s/shot of the full pop up?
There is no sub role on your discord profile, so you sure you are sub ?
yeah.. but so you could also see it I verified with bot again
Burpsuit does not open
I checked my java
used command apt install default-jdk
still Burpsuit does not open
Ask in #infosec-general . This channel is for support related to site or vpn.
sorry
hey guys any reason a regex does not work with grep -o but works perfectly on a regex testing site?
I am trying to use: [^\s/]*\.js(?!\S) to extract all js files from an apachelog
works fine on regexr.com but on kali I get 0 results using: cat access_log.txt | grep -o '[^\s/]*\.js(?!\S)' and my test cases are from that file
so its the same format
Try running grep with the -E flag.
same result
and any regex online tester i try it works
so its weird
maybe its the regex language
okay so figured it out
regex in grep uses Golang
so the correct regex is: [^\s/]*\.js[^\S]
Random question (maybe wrong channel, in this case sorry for the spam): in some cases I would like to re-complete a room more than once (concrete example: after ca. half year as a refresher). "Reset room progress" works as it should, however on the rooms overview page the room retains the green checkmark ✅ in the top-right corner. Is this known/expected or a bug for me?
I think it just acknowledges that you have still completed the room before.
I am having problems exploiting the "ice" room, is this an appropiate channel to ask about it?
Okay, so, pretty much the metaexploit module exploit/windows/http/icecast_header is not working for me, and ends the exploit on "Exploit completed, but no session was created." I verified I have conectivity with the vuln machine but is still not working, Here are the options im using and the conectivity test:
This is the error I'm getting now, I already tried to restart the vuln machine, and before the "Rex::ConnectionRefused" wasn't there, but the result was the same
Yes, it's just another terminal, although, any other idea to confirm conectivity?
Indeed
Thanks a lot ^^
sure, go ahead!
hahahahah okay then I'll do that hahah
Dang, okay so I did that, the new Vuln machine IP is 10.10.48.189 but now I'm back to where I originally started:
Although, the service is open now
So strange tho.... Maybe i have to update/re-install msfconsole?
:_C
me right now:
Im rebooting my VM, let's see if that works
https://tryhackme.com/room/ice --> Task 3
Ohh sorry i thought it was from the Metasploit room
But whatever i guess it's the same thing because i had the same problem
It's from metasploit unfortunately from one of it's updates
I use a prebuild kali image that comes with mfs6 don't know what version.
When i updated Kali it updated the mfs6 also to another version can't remember the exact number. And had this problem and tried with the guys everything still didn't work
The only thing that worked was to "install" the prebuild kali image again and tried without updating it first, and it worked
So, if I understood correctly, you are saying I have to use an old version of msfconsole to exploit this vuln? 🤔
yes
🤣
Well yeah, the version was fucked up but i guess it's something different here
Im updating msfconsole with apt install metasploit-framework, so I pray this time it works
My new ver, let's see if it works now
Maybe I should get a new kali vm i guess :_C
I could also stream my display if you guys want to give it a try to solve this but I have no idea what's going wrong right now
Also, this my OS:
Not really no
Already executed it but no verbose response, what does it do?
maybe it's a stupid question but do you think this could be caused by not running msfconsole with sudo permissions?
great, cos i've read somewhere that this could cause some problems, especially with some ports
ohh yeah true
altho not true, i was logged with root :C
😦
Ok, so how can i check if my ssh port is open @naive dust
U can use nmap
Why not?
ok, im back :) So how can i use nmap to check this thing?
The ssh port for the room their doing should be open.
ok one moment
when i try to connect to the machine with ssh, it tells me in the terminal window where i started the vpn connection that the "Network is unreachable"
code 101
Did you keep your vpn opened and minimised?
yes
Show me a screenshot of your ssh attempt and machine timer.
Is the network unreachable your vpn?
i think so
yes
so why is the network unreachable?
Is your host OS still connected to the internet?
yes
need help setting up docker. im following the docs and added the repository to sources. is the link outdated or am i missing something.
Hello I need a help about Wazuh room I can't access to wazuh server from linux machine specifically from Firefox and I got this error (Firefox can’t establish a connection to the server at ..) , the first time I could access but now I can't. please I need to solve this problem 🥲
Anyone else intermittently losing connection to the THM VPN? Every few minutes I lose connection to the lab and if I wait long enough openvpn will timeout and reconnect. Then another few minutes later I drop again. I know my connection's good because pings to the VPN server keep coming back uninterrupted.
no consumer VPN or anything, though I did bump my MTU down just in case (to no effect)
Hi all, my laptop suddenly cannot connect to internet on host&guest OS and VMware network adapter is still turned on even VMware is turned off ...... I can connect internet through my phone tethering on host and guest OS, but cannot only through my wifi🥲 Do anyone know how to fix it? There's no problem with wifi, I can connect internet using wifi with my phone.
Solved:)
windows key + R
"control netconnections"
disable (vpn) adapter
windows key + X
admin cmd/powershell
"netsh interface ip delete destinationcache"
i am trying to verify but showing this error Sorry this token is already used by someone.
This is not a technical question related to connecting to THM.
hmm sorry
Where should I mention this issue
Figured it out, had another connection open on a different VM I had forgotten about, getting rid of that sorted me out.
lol
It worked, thanks!!!
Don't forget that you disabled the adapter when you try to reconnect to VPN (you can toggle that back probably)
Idk why but I can reconnect VPN without adapter now
It didn't create another virtual adapter? As far as I know it does have to route through one but I haven't worked on VPNs in a while and there could be some new method 😛
Is this cano tech support? Where is @near spruce ????
Cano ?
hello. i'm not sure if losing my login info falls under tech support, but it seems to be the best match. can i get help restoring my paid account here?
Contact support, they'll be able to help you.
@weary spindle awesome. thank you. i was looking all over the website for the contact email and never could find it.
Gave +1 Rep to @weary spindle
I suppose you can't remember your email?
i don't have that email acout anymore. i signed up over the fall and just now have gotten time to begin using the account.
Oh, I see.
Well, support will sort you out with the right information.
i am hoping so. i appreciate you sharing the email.
Hi, i made a new THM account a while ago and forgot to link it with the discord bot but it still has my old THM account linked to it.
What do I do?
You need a mod to remove the link on your discord account, then you can link the new one.
oh, ok, how i make them remove it?
You don't make them, you just post "Can a mod please remove my token from account, I'd like to switch to my new THM account please."
Unlink the token from the current discord account you are writing from ?
i dont know how to
No, I'm asking you if you want the token unlinked from the current account you are writing from ?
@stray cove You got a minute? Just a usual unlink from that current discord account he is writing from 🙂
Yeah ok
Ok done
Thank you
Gave +1 Rep to @stray cove
seems it's either hit or miss when the dogcat boots up
@gray loom @light vale I did it!, and yeah, new Kali VM and everything on the first try, ty to both of u
glad you manage to fix it, i think it's something with an kali update that messes up mfs database or something, gonna have a task that i need to use it again and i've updated again let's see how it goes 😄
What's good with these prebuild kali images is that if you need a new one you can just set it up in a matter of minutes
I think i'm gonna keep one updated and one without any updates on it just for these kind of things
Completely agree, I'm saving the OVA file if i need a fresh install
is there a trick to use the same openvpn file on two machines at the same time? I want to use tools like burp on my windows machine while i am using netcat on my raspberry pi4.
Think about this a bit: is the IP address the same every time you connect with your THM OVPN profile?
I mean couldn't i set something like a switch to manage the traffic?
uhm, hello there! I needed some help. My pc was infected by a ransomware called dmay. now all of my files are encrypted and it's asking for 980 dollars. Is there any way I can decrypt all of them. Please help
I'm unable to login on thm site from my phone, but from others phone it's always working.
Everytime I try to login from my phone, I got error regarding wrong credentials. I tried changing from chrome to brave to edge but the story is same. Can anyone help me to understand this? Should I consider this DoS from tryhackme 🥲?
wrong credentials are wrong credentials
check for auto-fill and things
also, no, that is not what a DoS is
anyone know how to regain access to a already hacked ig accoutn
Why are you asking for help with that here?
Metasploit room unable to load on the Complete Beginner Learning Path.
I did. I even tried different browseR. Logged in logged out. Same.
The console got a bunch of errors.
Done that yea.
It worked now. I changed vpn server. Appreciate the help!
A better way to import the PowerView:
- Rename-Item PowerView.ps1 PowerView.psm1
- Import-Module PowerView.psm1
- Now you can use the Get-Command to list all the imported functions:
Get-Command -Module PowerView - Then you can use Get-Help to output available flags for every function:
Get-Help <function-name>
From Egy-pt and cannot connect to the VPN, Tried all day long and different vpn clients but with no luck
have been trying proxies but no luck finding a good one too
@wispy chasm @foggy rover @flint bluff sorry for spamming, but trying to get this issue resolved before getting burned out, the country is blocking nearly all free vpn clients and I hope there's a free solution, before getting to subscribe to get the attackbox
Egypt block the OpenVPN service; you can’t use OpenVPN
Hi I am doing my labs using attackbox. But it keep on disconnecting
Even though I am using subscription labs and facing this issues from couple of days.
Thanks
Gave +1 Rep to @signal nymph
Is there any known issues with OpenVPN configuration pack for windows? It keeps telling me that the server could not find the download.
You mean when downloading the config on the access page?
Awesome thanks
Thanks Jacqueline, but is there any workaround? I've been trying to run ovpn over tor but it supports only tcp 😢
Gave +1 Rep to @bronze vale
Hy
@dire night Now that's not very nice, is it?
No because that would be unethical and we don’t teach you how to get around government or country blocks here 🙂
cool, then where I can learn? kindly dm if you know the resources ^^
You were already told to stop asking about this here
👍
-warn @vestal glacier Stop asking how to bypass VPN restrictions in your country, this is illegal and will not be tolerated. This is your final warning, any further discussion or questions about bypassing restrictions will mean that you will be banned.
⚠ Warned Sharafantah#6384
haha
Hello, I'm not sure if I can ask this question here...
Could someone help me out...
I wanted to change my username on my account?
How do I do it?
Thank you.
Gave +1 Rep to @gray loom
Keep in mind that when I generated mine, it took ~5 minutes
Ok @pale crypt, you will now be notified of future announcements.
How can i go to do cyber
Hi There, when opening a Windows machine in the browser for the Splunk training, I see a blip of it spinning up and then just black screen. Anyone have that issue? Thanks!
Is that possible that the lab isnt working? http://10.10.205.151:3000 give me error 404
http://10.10.205.151/sqli-labs/ is working but not http://10.10.205.151:3000
Did you terminate the target machine from task 1 and started the new target machine from task 7 ?
Been searching through old post to find the answer myself with no luck.
How does the streak timer work? 24 hours from what? Is it midnight GMT? I know it's not midnight my timezone
salut y a t'il qlqn à qui je peux poser une question ?
I hope you find this well. I’m connected to vpn but for some reason I can’t connect to the tryhackme box via the browser. The machine im using is Kali Linux on a raspberry pi 4. Would you happen to have a solution?
hi. i have some issues with the VPN. after 30-60 seconds, i am getting disconnected. impossible to ping the target or anything.
i have this error :
2022-04-25 16:51:47 TLS Error: Unroutable control packet received from [AF_INET]18.202.129.195:1194 (si=3 op=P_CONTROL_V1)
2022-04-25 16:51:52 TLS Error: Unroutable control packet received from [AF_INET]18.202.129.195:1194 (si=3 op=P_CONTROL_V1)
2022-04-25 16:52:00 TLS Error: Unroutable control packet received from [AF_INET]18.202.129.195:1194 (si=3 op=P_CONTROL_V1)
2022-04-25 16:53:39 [server] Inactivity timeout (--ping-restart), restarting
2022-04-25 16:53:39 SIGUSR1[soft,ping-restart] received, process restarting
2022-04-25 16:53:39 Restart pause, 5 second(s)
2022-04-25 16:53:44 Outgoing Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2022-04-25 16:53:44 Incoming Control Channel Authentication: Using 512 bit message hash 'SHA512' for HMAC authentication
2022-04-25 16:53:44 TCP/UDP: Preserving recently used remote address: [AF_INET]18.202.129.195:1194
2022-04-25 16:53:44 Socket Buffers: R=[212992->212992] S=[212992->212992]
2022-04-25 16:53:44 UDP link local: (not bound)
2022-04-25 16:53:44 UDP link remote: [AF_INET]18.202.129.195:1194
2022-04-25 16:53:44 TLS: Initial packet from [AF_INET]18.202.129.195:1194, sid=04fb4970 343dd8ef
2022-04-25 16:53:44 VERIFY OK: depth=1, CN=ChangeMe
2022-04-25 16:53:44 VERIFY KU OK
2022-04-25 16:53:44 Validating certificate extended key usage
2022-04-25 16:53:44 ++ Certificate has EKU (str) TLS Web Server Authentication, expects TLS Web Server Authentication
2022-04-25 16:53:44 VERIFY EKU OK
2022-04-25 16:53:44 VERIFY OK: depth=0, CN=server
2022-04-25 16:53:44 Control Channel: TLSv1.3, cipher TLSv1.3 TLS_AES_256_GCM_SHA384, 2048 bit RSA
2022-04-25 16:53:44 [server] Peer Connection Initiated with [AF_INET]18.202.129.195:1194
2022-04-25 16:53:45 SENT CONTROL [server]: 'PUSH_REQUEST' (status=1)
Yes it does
Okay
Understand @gray loom
Understood
@gray loom it works
@gray loom
doing it now @gray loom
and that is when I will put the machine's IP into the browser right?
all fixed!!
Thanks @gray loom
Gave +1 Rep to @gray loom
@drifting ravine can you verify vpn connection on the machine browser visiting THM access page? (sry for redundant msg :P)
https://tryhackme.com/access
interesting, not sure without more involved debugging ... i would try curl connect (same HTTP GET req from command line) ... then it could be browser issue
that just pings THM server to check VPN status, not the actual vm you're trying to hit
could just see response codes using:
curl -IL http://VM_IP:VM_PORT
replace VM_IP and VM_PORT with the middle of the url
I keep losing my streak. Does a streak day start at midnight my time zone or a specific one? GMT?
!docs bug-bounty
help I cannot get past part 1 ( literally lol)
discard
How can I exclude size on dirbuster?
forgot what e-mail I used for register, and cannot recover only by nickname
is there anyway ?#note checked all e-mails, found nothing by that nick
if you remember your username, or have the card details/paypal used to buy a if you ever did then contact support
You should be more detailed, which room, which task, are you on your own machine or the attackbox, what's the error you get etc.
Providing screenshots is even better. Therefore you would have to verify first to be able to send some in here.
!docs verify
Hi i started using THM yesterday. Its pretty cool. However I cant seem to get connected to the vpn. My terminal says i am connected but THM webpage says otherwise. Any help? 🙂
As I answered in general, the webpage can be buggy when you are connected.
ip a s if you have one tun# you should be ok.
10.10.10.10/curl should give you the THM IP.
If you visit 10.10.10.10 in a web browser, it should give you a connection verified.
Once it says "Initializing complete" just minimise that window.
Ty ^^
Anything wrong woth holo booted off and unable to get back on. Reconnected the VPN still the same.
Anyone has a good resource to study and practice SQLI?
The sqli rooms on thm ?
👍🏻
Portswigger has some good content too!
I need help the machines i start on vulnversity room dont seem to boot up properly and i already terminated the vm 1 time and it didnt work, any ideas?
Wait longer
Is your vpn properly connected
ow wait
maybe not
reboot?
or . . .?
❤️
is that normal?
no i didnt
only by openvpn [file]
Give it a minute before doing ip a s
ow, thanks
it just dissapeared
Now i can connect and do the nmap scan properly
ty guyz 😄
who i am not a fool nice girl
Are you sure?
HAHAHHAHAHAHA are you kidding?
what game?
-ban @onyx raven Asking for help game hacking. This is against the rules here. Ban appeals are by email: bans@tryhackme.com
Don't encourage them, ping a mod.
🔨 Banned Jerom#1132 indefinitely
ok ok
It says Wrong Answer Thou
Refresh the page with ctrl + F5 and try again
@grizzled halo Whenever I try to do a reverse shell, netcat won't respond. At first I thought this was an issue with the .ovpn file so I re-download but the problem still persists.
That's still too vague. How are you trying to get a shell, what is the payload, and why was your first thought the VPN file if everything else was working?
I'll be online soon for a while, if you want to join voice channel, or feel free to DM me anytime if you're still stuck 😁
Hello everyone... Not really sure where to ask but what are the benefits if any of using my own vm or thm one? How do i use my own vm in rooms? Will centos do the job?
I think this channel is for tech support, not VM advice
May I contact you through voice channel?
Oh :(
Ok thanks buddy!
Gave +1 Rep to @gray loom
to change the profile avatar picture, what format should the image file be? I've tried png, jpg, and gif and they all give me the same error that I need to select an image file to upload my avatar. tia
.png, .jpg should be working. Have you tried to close your browser and try again?
I have tried closing the browser and restarting the computer multiple times over the course of a week or so and still running into the same error.
haven't tried from a different browser, will give that a whirl.
That's odd, tried logging out and back in. Maybe even using a different browser?
What is the current browser you have been trying?
See if another browser will work, if not log out and back in.
ty, will give those a try.
same result from Chrome and after logging in/out with both png and jpg.
just trying to use the same vaultboy image that Discord just let me upload with no issue.
Might have to be something a staff member would look into. Could be an account issue, not quite sure.
Unless, try doing a different image and see if you are able to upload.
will try that
new image did the trick, guess it just didn't like that one for whatever reason
Just find an alternative photo with vaultboy and you'll be all good 😄
yep, I'm good. thx for your help
I have a old 21 inch Samsung TV how can I connect it to my pc as dual monitors?
This isn't TryHackMe related, you can find a solution to that online.
HDMI cable?
Hi, anyone facing the "cannot accessing your paypal account" problem while trying to subscribe with paypal?
Help me, im new to this and i cant figure this out
"What is the syntax to ping 10.10.10.10?"
ping 10.10.10.10
Same on Windows and linux
Ohh, thanks!
Need help again lol
"What is the verb given to the job that Routers perform?"
routeers
Huh
Probably this question belongs more to the #room-help but just read the information slowly in the What is router part of that task
Will give you a clue, didn't want to completely spoil it.
But Ainut is right, that is where that type of question would go.
Oh so the questions on the web is like a room? Didnt notice that, but thanks!
#room-hints for minor hints etc #room-help for more detailed answers, I think it is.
Please guide people towards the answers instead of just telling them
at the time, I didn't think it was a room question and was related to tech support 👍
Check out #start-here
k
bump! anyone here can help?
or should i contact support@tryhackme.com ? thanks
got it, thanks!
Gave +1 Rep to @gray loom
#site-support I am currently having a problem SSHing into the current room i am working on. I did turn on my vpn and I have my VPN IP address logged. However when I try to SSH in my terminal , I always get a "Permission Denied, please try again" as the output. The room I am working on is the Sudo Security Bypass room . I appreciate any help.
What credentials are you trying to use?
@eager fulcrum the credentials I am trying are from what I use to login into my THM dashboard.
Don't do that!
Credentials are mentioned in the task
Never enter your THM password anywhere other than the THM website login!
I'd change your THM password.
I'm curious why, in this case.
Nothing short of a habit.
It was transmitted encrypted over SSH, the VM won't be exfiltrating them
Okay but where on the task do I find the password for ssh login?
Have a read through the text
If you are having trouble with something on THM, step 1 should be re-reading the task text
It can be on the top of the task or it can be on bottom of the task
Or on a completely different task from the deploy task.
#site-support I found it
thanks everyone!
Now what would I do with the password then?
Should I change it ?
for my dashboard
understood but for my dashboard login
You should be fine
Hello, It is any way to download a suscription bill to justify suscription with my company?
#site-support I am trying to ssh into Polkit v1.2 room's box but I get a connection refused. The command inputted into the terminal was ssh tryhackme@10.10.14.219 - p 2222 but still received a connection refusal. Any help would be appreciated!
If you are talking about this room: https://tryhackme.com/room/polkit The -p 2222 is causing the problem. Since the ssh is running on the default port of 22 instead of 2222.
trying it now
so the command inputted should be "ssh tryhackme@10.10.14.219 -p 22?
You don't have to specify the port since ssh will already try port 22 in case it is not specified. But yes.
i got a connection timed out as output
You sure the ip address is correct and the machine is running?
yes
Are you able to ping it?
You are connected to the VPN?
I dont think that should be a problem.
lassi I am on a room and figured that issue prior out
@gray loom when i try to ssh into my machines IP on port 2222 i receive a unable to negotiate with IP no matching host key type found. Their offer: ssh-rsa"
Overpass 2 - Hacked
Task 3 - Get Back In!
Hello there! I keep getting this error Unable to negotiate with 10.10.157.63 port 22: no matching host key type found. Their offer: ssh-rsa,ssh-dss when trying to ssh into Linux PrivEsc machine. Does someone know how can I fix it ? I tried to reboot my machine, the THM machine, ssh service ... ^^

Awesome, ty ! ^^
Gave +1 Rep to @gray loom
Good evening people, I could use some help.
I am struggling with my new mobile system (a macbook air m1). I want to hammer on some boxes with that machine but I kinda don't want to install a VM as all the tools I need seem to work just fine.
Problem:
I can't access any webpage from a machine. If I am trying to do so, it would just load to the end of time and won't respond.
I know that kind of misbehaving from my kali working station and changing the MTU to 1200 did the trick for me.
I tried to do the same on macos but It is limited to a minimum of 1280 and that didn't seem to work.
And yes ...
- I tried to ping the machine -> works fine
- I reloaded and replaced the openvpn file a few times
- I tried to use the openvpn GUI thing
Good afternoon all. Is it possible to change my username so that I can add a more professional name to the certs earned from the learning paths? Le Prawn will probably raise some questions in a corporate environment 😋
Burp Suite Repeater I think is a completely different version of Burp. I cant view the inspector, plus following each step, even watching tutorials Im unable to get the flag in task 6 ;/ I dont see any raw data, adn followed maybe 3 different tutorials to a tee. Has anyone been able to get it to work? Im using Kali in the browser
thank you! I'll try attackbox then and see if it works on there. I wish i knew their Kali was outdated. I spent a good 2 hours redoing this lab trying to figure it out lol
Gave +1 Rep to @gray loom
yeah I figured it would too. Its the first time I ran into the problem. Burp couldnt (made sure intercept was on/off at right times) render the page in the repeater and the raw data wouldn't give the flag (Edit: Got the flag in attackbox)
Thank you very much!
Gave +1 Rep to @gray loom
- Deleted -
Hi I was wondering what's going on with the Web Fundamentals room, it keeps redirection to HTTP in Detail when I open it and I cannot complete the room due to that.
Hi I accidentally entered the wrong cvv when paying, the charge is pending but will be denied later. How do I repay?
Also I was working on burp suite. In the lesson it was basic installation and then some juice shop tasks.
Today it's called something different "burp suite basics" and all my progress. I checked all other burp rooms and while some are similar, none are the room I was working in.
Has there been an update?.
Guess wait till its denied and try again? But if you have any issue you should contact official support via email
And yes, the old burpsuite rooms were deprecated AFAIK, and replaced with newer up to date content
They might still be available for you in
https://tryhackme.com/rooms tho
@celest wadi ah okay thank you... Especially for the burp suite info.
I was mad!
I also went to the thm payment page, updated my card so hopefully that works. I still have vip access so all good so far.
Thank again for your help!
Gave +1 Rep to @celest wadi
did the Metasploit room just update?
Hi everyone,
Hey, does a GET request can delete something?
I am having an issue with machines web pages, they wouldn't load in browser. I can ping the machines and scan them using nmap but web pages are not loading.
the web page keeps loading but nothing opens
Do you have Burp opened?
no
Any proxy in use?
no proxies, i am only connected to thm's VPN
Try to type the full URL like _http://machineIP/_
same issue
Which room?
all machines on the web hacking fundamentals module, but right now i am on the OWASP top 10 room
Can you reach? http://10.10.10.10/whoami
yes, it gives me my ip address assigned to tun0 interface
Okay, so which task from owasp room you are doing?
Also, verify with bot so you can send screenshots.
!docs verify
Task 5: Command Injection Practical
Show screenshot of ip a command and another screenshot of what happens when you visit the url given in tasks.
Have you tried any different browser?
What happens when you use curl command to that url?
it responds !!
other machines in the same module (web hacking fundamentals) won't respond anything even when using curl
That's strange... Looks like a browser to me. Try installing chromium. apt update && apt install chromium and see if it loads or not.
i have installed brave browser and used it's default settings but nothing happened !
i will try with chromium, give me a sec
i searched about this issue and found others having the same thing but i found no solutions for it
Do you this problem with other rooms or only this room?
MTU issue
i'm having trouble with nmap room task 12 it's not accepting what i belive is the correct answer
sorry task 11
i had it with previous rooms in the same module, every machine has a web page
with this question to be specific
What optional argument can the ftp-anon.nse script take?
Try the mtu fix pinned here in this channel.
forget to mention that the web pages are accessible by AttackBox in browser machine
Doesn't matter here
Try the MTU fix.
where can i find it ?
...
It worked !
@eager fulcrum tbh i can't find the hints in this room and i was suspecting an answer and after searching online for a while i found out that most ppl say that it is the correct one so now i'm pretty sure that the answer i'm typing is the correct one but it's still not working
This channel is for technical support with the tryhackme site and VPN.
Please move to #room-hints, or move to #room-help if you have checked the writeups.
Thanks a lot i really appreciate it @eager fulcrum @placid mango
Gave +1 Rep to @eager fulcrum
kinda have the same problem. Does anyone know a fix for macOS?
You have the same problem as yourself?
yes.
Haha
No, I mean with the MTU fix
okay, found a fix for macOS user.
If you have the same problem try the following command:
sudo ifconfig utun10 mtu 1200
hello tryhackme, I made a small lapse in relation to my subscription on the platform, I forgot to cancel on the last day and the subscription was extended until the next month, the bank is now charging me and the problem is that I can not afford, can I get the refund?
Best to reach out to support via email
thanks for listening
Gave +1 Rep to @crystal marlin
can you change your username?
You can, yes #site-support message
Thanks
Hi guys, is't still posible to have the student discount in the vip subscription? And how can I get it?
You can either
- Switch your email to a student email, if it's auto recognised as a student, it will be applied straight away.
- contact support who will be more than happy to help you verify you're a student.
Can I tunnel the vpn client file .ovpn through proxy? the proto udp doesn't accept the http/https/socks4 local proxies
I think it accepts the socks5 but how to do it if I am right?
I was nearly finished my Complete Beginner cert and now it seems like all my Burpsuite rooms have reset on me.. Any reason this would happen?
Thanks mate. I've done the Burp Suite: The Basics before though. Why do I have to do it again?
Gave +1 Rep to @crystal marlin
You sure you have done it before?
Maybe you confuse it with a different burp suite room, as there are a couple.
For me the room progress is not reset
So it looks like I did 'Burp Suite' but when I click on 'Burp Suite' it takes me to the same Burp Suite: The Basics room. So it is like they are the same room somehow.
And they are all the same tasks in Burp Suite room
Well, Burp suite and Burp suite: basics are 2 different rooms and as the post stated, they have been replaced. So basically they are not the same room, therefore you have not done the burp suite basics room 🙂
Seems like the same questions to me, but will complete. Thanks for the help.
Gave +1 Rep to @crystal marlin
Ye they might be kind of similar, but definitely different.
Yeah no worries. Thanks Fontaene. 🙂
Man, this kind of sucks. I know they are different rooms, but it is all the same stuff that was covered in the old rooms. I was nearly finished the cert before and now I have to do all of this again. The path shouldn't be changed for existing users. Can you please pass along my feedback as I never get responses on the site?
Anyone here good with qBittorrent?
after i ran a room when i look in my mac with ifconfig and i get gif0, stf0, api1 and so how can i disable it?
sudo ifconfig <controller name> down
Hi guys,
I have an access issue and hope I can find a solution here.
I renewed my premium access since April 12 but I do not have premium access.
I wrote to support by email but no response yet.
Well, I don't know how they should change the path for existing users and for new users, the paths are the same for everyone. Also, learning is all about repetition, so I don't think it's that bad to do that room again.
Have you been at #feedback-and-ideas already to express that?
I understand, it's unfortunate that you have to do this room again, but at a certain point they had to remove outdated rooms with the new ones. If they would have done it 2 weeks later, maybe someone else would have been affected, so it's just kind of bad luck that it hit you 🙂
Yeah I know. It was just unlucky timing considering I was going to finish it tonight which I guess is why I was so shocked. I was trying to finish it ASAP because I knew it was going. After working on it all day today I'm back to where I was up to. Now I have extra motivation to finish it tonight. Thanks again! 🙂
Gave +1 Rep to @crystal marlin
Great 🙂 Keep it up
Hi guys can i speak with a modo for a problem on my room? 🙂
Support usually responds within day or two if you haven't gotten a reply in that time try sending a follow up mail.
With a mod? You could ask your question in #room-help or #room-hints and if someone has an answer to it, you might get a reply
I think the machine for the room is broken ahah ^^
why? what is the problem?
Okay, well then explain the issue with some more details
I can't seem to find a way to copy into Windows machines, does anyone have an idea how to do that?
Which room?
And copy what?
Corp
Just trying to copy a string
I try to list the document on the machine with ls or dir and i got a NT_STATUS_UO_TIMEOUT listening *
windows machine and your machine does not share same clipboard
I figured, but are there an option like in the Attackbox to copy into the windows clipboard?
Let me see if that machine has a clipboard attached, otherwise you could use scp
I don't think so...if it is just string you can rewrite it, if it is file use scp as @crystal marlin says or python web server and wget
can you provide screenshot or something?
Okay, seems there is no clipboard attached, if you are on chrome and you go to full screen with the button at the bottom, chrome should open a pop up about using the clipboard, if you press yes you should be able to copy paste, at least that's working for me
Alright thanks for the quick answers
Gave +1 Rep to @simple sky
np
Alright, thank you for the answers
I send it in dm?
You have to verify first in order to be able to send screenshots
!docs verify
here
Are you connected to the thm vpn ?
yep
If you do curl 10.10.10.10/whoami what's the reply you get?
Also, please provide a screenshot of where you got the target machine IP from
10.9.0.161
Okay, what about the screenshot of the target machine IP :)?
Can I try to access your target machine myself?
of course
Works just fine, could you check ip a s on your attacking machine and show me the output?
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: enp4s0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc fq_codel state DOWN group default qlen 1000
link/ether 24:4b:fe:87:a2:fd brd ff:ff:ff:ff:ff:ff
3: wlp3s0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc mq state UP group default qlen 1000
link/ether 70:66:55:f9:c8:23 brd ff:ff:ff:ff:ff:ff
inet 172.20.10.2/28 brd 172.20.10.15 scope global dynamic noprefixroute wlp3s0
valid_lft 77919sec preferred_lft 77919sec
inet6 2a01:cb1a:4055:3151:808e:ce9e:c286:4acd/64 scope global noprefixroute
valid_lft forever preferred_lft forever
inet6 fe80::a5d3:4a45:e9aa:9425/64 scope link noprefixroute
valid_lft forever preferred_lft forever
That's it, nothing else? Are you running the vpn on your host machine rather then directly inside your VM ?
i'm on my host machine
Okay, then first of all change that, it has to run directly inside your VM
Then screenshot it, I would have to know if you have a tun0 interface
18: tun0: <POINTOPOINT,MULTICAST,NOARP,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UNKNOWN group default qlen 500
link/none
inet 10.9.0.161/16 scope global tun0
valid_lft forever preferred_lft forever
inet6 fe80::80e8:54a2:b399:7b9/64 scope link stable-privacy
valid_lft forever preferred_lft forever
So your attacking machine is not a virtual machine?
nope
Do you see any tun1, tun2 etc. too ?
No only Tun0
Okay then run sudo ip link set dev tun0 mtu 1200 then try again to connect to the share with smbclient
it works now !
Alright 🙂
As far as I understand, that might be an issue with encapsulation, so if there are a couple of devices in between you and the vpn server, the packets get too big, but I could misunderstand that, so don't take that as right. If anyone with better networking knowledge could correct me, that would be highly appreciated 😄
ahah maybe because I use connection sharing with my phone
Maybe, ye
Okok thanks for the reply !
Gave +1 Rep to @crystal marlin
Thanks !
Gave +1 Rep to @placid mango
@sharp bison you guys seem to have an issue with your payment system rejecting payments from UK cards. It seem related to SCA (Strong Customer Authentication)
buying vouchers with a card from the UK isn't possible, all cards are being rejected.
Everytime I try and download my configuration file for accessing via openvpn I just get a 404?
already done all that myself but I'll just wait some more ig
Yep, change server -> regenerate -> wait a couple of mins
aand now it's working
Yeah I'd already done that, logged out all sorts. But as soon as I mentioned it here it's working lmao
It's always like that 😉
Hello, maybe someone can help me. I completed the burp modules, answered all question, everything is ticked with the green validation icon.
But in my dashboard it shows as not finished.
Someone already seen that before ?
All task ok
You sure that's the same room? And not the Burp Suite: The basics since that's a different room then just Burp Suite (which got removed)
So I assume, if you click on Burp Suite it's redirecting you to Burp Suite: The basics
If the url on the room page says https://tryhackme.com/room/burpsuitebasics it's not the same room as Burp Suite you got redirected to the replacement room
@crystal marlin can you assist with payment issues?
I'm not THM staff, so no.
Best to email to support
So yes when I click on the link in the path I’m send to burpsuitebasics
But it’s directly from the path so it should be good ?
Yes, but that's the explanation why in your dashboard it's not showing as completed while everything has been answered, it's showing you the "old" room in the dashboard
Ok it’s solved, I clicked on learn > seleted web fundamentals and it automatically updated the status
Yep now dashboard is updated
Thanks for your help, it’s a weird bug 😂
Ye, they recently changed something in the complete beginner path, so that redirection is currently causing some confusion, but I'm certain that it will be fixed soon 😄
Looks like this is from the CompTIA Pentest+ learning path? The first module of that path has not been updated yet for Burp Suite and Metapsloit which redirect to newer rooms. 🙂
Curious if someone could talk to me about some networking stuff to help me better understand some things going on with subnetting
Just ask away if you have any questions, a server with over 130000 users, someone will know the answer.
#general or #infosec-general will be a better place to ask, as this channel is specifically for questions related to connecting to THM
Hi there, my hacking streak counter just reset with the complete beginner path update just few days away to reach the 30 days badge. Any fix ?
refresh the page
if that does not fix it you can email support@tryhackme.com with what your streak was from the email your account is linked to and asking nicely in a formal way for a streak reset and they might help
I'll do that, thanks 🙂
Gave +1 Rep to @plush bay
no problem
Question: is there an API I can use to create KOTH games? I see the requests being made, etc, but I still have to deal with recaptcha and cloudflare to script the creation of a room
Hi peeps, got an issue, the dash is failing to progress even after completing the modules
Are you sure you're not done?
i redid the entire burp suite twice thinking that
every individual module is green and i get the fireworks at the end
very likely its just screwing my in progress dashboard and "continue learning"
if i hit continue learning it takes me back to the burp module
Try clicking on a new module
logged out/in and on separate devices
maybe you finished the burp module and they want you to select a new one
yup completed other modules as well
moved onto the next one metasploit and that did the same
What is the progress bar at?
imgr links allowed?
Did you start any new modules?
aye started new ones and completed them and earning levels just the dash is screwed for me and learning path
I've never dealt with this kind of issue, and I think it might just be save data, so try selecting the next path in your modules and going through them manually to "update" the save data.
nods
So I used the opvn like I was supposed to, but for some reason whenver I ping the target I get 100% packet loss
did I miss a step?
if you get your ip from
curl 10.10.10.10/whoami then you're connected :)
I did get it
I still have 100% packet loss
what's the target, it might have icmp ping disabled and dropping packets
so, put N and see if it works then :)
windows disables it by default, and it can be easily googled "disable icmp ping linux" :)
Anyone help me with attackbox.
It's too much slow, if I type or click anything it takes at least 15sec or more to work.
Its your network connection thats slow ig
I tried ine labs they work fine
Well , it shouldn't lag for any other reason , certainly not for someone subscribed
hey
i completed the burp suite module
but it's not updating in the comptia pentest+ path
What you mean with not updating? Show a screenshot pls
You'll have to verify first to do so
!docs verify
don't mind the link lel
it's not marked as done while i finished all the module
even this one
If you could upload the actual screenshots directly in discord instead of somewhere else and post the link, that would be great, since I'm not too happy with opening unknown links, I can see enough from the preview, but just for further screenshots 😄
you don't have to open the link just the image preview that discord send x)
but ok wait
The Burp suite room is not the same as the Burp Suite: The basics
Ye, I just said I can see enough from the preview right now 😄
The Burp Suite room got removed and replaced with Burp Suite: The basics so the room that's showing as not completed is a different one
A removed one, if you click on that it's redirecting you to a different one, I'll report it so that it's getting changed in that path as well
oh
so we can't get the pentest+ module done for now ?
since the room just doesn't exist ?
Unfortunately I guess so, yes. But that should be changed quickly I assume.
okok ^^
for some weird reason on my pc i cant verify the recaptcha
im using brave browser
no ad blocker or anything is on
nvm solved it, had to do with a vpn addon
hello, I'm on introtonetworking room, on "whois facebook.com" command I'm getting error of connect: network is unreachable
pls help
If you're a free user, you won't have an internet connection on the attackbox.
do i have to be a subscriber to use whois
you have to be a subscriber to make whois work. Without an internet neither it, nor traceroute will work
No.
Well.
Yes on the terminal.
But you could always use "Whois facebook.com" on google on your host machine.
traceroute works
... wat
I'll try that
interesting
🙂
root@ip-10-10-5-99:~# wfuzz -c -f out.txt -w '/root/Desktop/subdomains-top1million-20000.txt' --sc 200,202,204,301,307,403 http://FUZZ.nahamstore.thm
Warning: Pycurl is not compiled against Openssl. Wfuzz might not work correctly when fuzzing SSL sites. Check Wfuzz's documentation for more information.
- Wfuzz 2.2.9 - The Web Fuzzer *
Target: http://FUZZ.nahamstore.thm/
Total requests: 19983
==================================================================
ID Response Lines Word Chars Payload
Fatal exception: Pycurl error 6: Could not resolve host: www.nahamstore.thm
root@ip-10-10-5-99:~#
I am getting an error when using wfuzz -- can't figure out why.
I added nahamstore.thm to etc/hosts
Show the contents of your hosts file pls
I turned the machine off and booted up kali. however my contents were.. <IP><tab><URL>
thanks for the help
#site-support is this Windows API room (https://tryhackme.com/room/windowsapi) no longer available?
I can access nahamstore.thm in firefox -- mb the issue is my etc/hosts but I am not sure?
Well I was asking you to show me your hosts file, but you haven't
If you verify you can send screenshots
!docs verify
thnks
this is what it looks like on Kali, pycurl issue?
Is this the kali machine provided by thm or your own ?
In case it's the one by thm, I suggest you use the attackbox and try again.
Since that's a different error then you got previously.
It is THM and I switched to it when I encountered an error on the attackbox. When I was using the first attackbox it did mention Pycurl error and I googled it and followed some instructions for fixing it and it didn't work but anyway I will try your suggestion. Thanks.
Gave +1 Rep to @crystal marlin
I believe that you should be able to enumerate subdomains even from your own box
The thm kali box is quite outdated and not getting maintained anymore, so maybe the error you encounter in that last screenshot is due to that, that's why I suggested the attackbox
Oh nvm i misunderstood the problem
Hi
How do I download certificated for old rooms/paths?
Let's say I want to download the certificate of Advent of Cyber 2021 because I lost it. How to I do it?
Go to the advent of cyber 2021 room page and click on the certificate button ?
I can't see any certificate button
Next to the "Start attackbox" button ?
Yes I can see for 2021. Sorry, I meant I wanted to download for Advent of Cyber 2020. I can't see the button there anymore.
Mh not sure, I can't see the button there either, maybe it's removed on purpose, but can't tell you for sure
Oh. Is it same for other old rooms as well because I can't see for 2019 as well. I recently lost all the certificates from THM as they were in PNG format and my junk cleaner cleaned all the images from my file system. I forgot that I had certificates in PNG/JPEG as well.
Is there any way to download them? Can you please look into it and let me know or maybe perhaps ask any other mods who are maybe aware of it?
I think this is the same error on the attack box. Just can't figure out how to run wfuzz :/
What if you just try to use ffuf?
Never used it but I will look up how to use that now, thanks for the suggestion. But I am curious to find out what I am doing wrong.
Gave +1 Rep to @crystal marlin
Like completely or?
I assume the command itself should run but probes will just follow default route until (pretty shortly) somebody doesn't have a route out?
I think so it doesn't show the IP instead it shows 4 stars (* * * *)
hi
i am new in this discord group
i have knowledg about computer things programing and stuf but i dont now phyton plz try to help me
You could search for rooms related to python on tryhackme, for example: https://tryhackme.com/room/pythonbasics
hello! I'm ripping through the "learning" tutorials... but am suddenly stopped by a never-ending spinning "loading" page. Nothing has changed on my end that I'm aware of. Is this a proper place to get help for this?
Ctrl and F5.
whoa! that did it. Can you tell me what this did? I guess it's a known issue?
My Attackbox on tryhackme keeps disconnecting while i use it. Does anyone know why?
Can anyone help me iam in OWASP top 10 room To complete the questions below, navigate to http://MACHINE_IP/evilshell.php. I changed the machine ip to START MACHINE IP. Eventhough it shows "This site can’t be reached" 0.0.0.0 took too long to respond. 0.0.0.0 is the START MACHINE IP ADDRESS.
hello, need support with failed payment recognition
Support can be contacted on email.
Hi There, currently working with authentication bypass room in Jr Pentester Pathway, for some reason I am unable to type in "" (double quotes and single) in the terminal, I searched online and discovered it to be a regional language setting issue, and the solution was to change the language preferences to English(US), but the Attackbox settings are set to English and English(UK) with English(us) greyed out. I can't completed any exercises as most requires the use of quotation marks in terminal commands. Please advise on a solution.
Never Mind, figured out
after i ran one room my ifconfig have changed and now shows me wired staff
need help please
i m unable to connect to deployed machine via openvpn, help here for 'complete beginners room'
gif0, stf0, anpi1, en3, ap1, awdl0, llw0, utun0
and more
I have done it and it’s stay the same
The pentesting
I used kali on my machine with openvpn
The file configuration file downloaded to be connected with openvpn is unable to connect, i changed the servers and the message displayed is "connection timedout"
I am connecting using windows with openvpn
okie thanks
getting the same result as when connecting using windows, and i changed to all the available configuration files. anything else you recommend ?
Can anyone explain me how this one is working? I did 1 question a day and my streak still resets.. Did i do smth wrong, or it's a bug in site?
You need to do one every 24 hours, it doesn't work on a day basis in that sense. Also, make sure you have your timezone set correctly in your profile (make sure you have no vpns running, the thm is okay):
https://tryhackme.com/api/user/update-timezone
It will redirect you to the /dashboard if it is successful
Thanks Ben, so to keep streak i must to do next task not later than 24h from last one.. Got it, thanks again (also idk if timezone had impact on that, but i opened that link too - it redirected me to dashboard, hope it would be ok now 🙂 )
There is a bit of a bug where your profile get set to Afghanistan by default, so you'd be following their day/night cycle which could be very different for when you're likely to be answering questions based on w/e your actual timezone is (:
but that link updates it once and for all unless you visit it again from another country etc
so to keep streak i must to do next task not later than 24h from last one
yup precisely (:
For example, you'll loose a streak if you do a question at 1PM, then do another question at 3PM the next day. It's "the next day" but it's not within 24 hours of your last question
Someone can help me please?
It looks like they're all apple mac interfaces. How are you running the network adapter on your Kali VM? Is it bridged? Are you running ifconfig on your mac by accident?
As long as it's working, and you see tun0 it should be fine. The THM VPN won't create network interfaces other than the tun0 (which is OpenVPN)
My problem is after I closed the vm I see all those interfaces that I haven’t had before. How can I delete them from my Mac?
I have no idea, and I don't think you're supposed to delete the interfaces. They may be made by the hypervisor/mac os to support the virtual machine https://superuser.com/questions/267660/can-someone-please-explain-ifconfig-output-in-mac-os-x
Now I can’t see my ipv4
No idea then, just apple shenanigans maybe. If you can browse the web, and your THM vpn works then I wouldn't worry tbh
Not really much more we can do here
👍🏻
hi guys i have an arduino attiny85 and i am having some code errors can anyone help me
Wrapped up the burp course all the checks are green but the pentest path still shows it incomplete? Any way to make it check again or something?
I need the close all session of my account in all device, How can I do?
Can I ask some basic questions about Vim here?
I am not able to connect to OpenVPN. I tried everything but still I am not able to connect.
It's just stuck on this forever
first time I've encountered this "Uh-oh! You can only deploy a maximum of 3 machines at a time." any help 🙂
Did you terminate the machines from the other rooms?
hi guys, i need some help, it happened when i went to install the kali linux iso for dual boot and it happens that my computer recognized some things as a virus. It's normal?
I mean Kali ISO may show up as malicious but that’s a bit overkill. If you got the Kali ISO from their official site, and heck even checked hashes with their published ones, then it’s fine
it was from their original website
I wouldn’t worry much about it, but remember that Kali should not be permanently installed as an often used OS, with always root you need to be very careful about when you deploy it
Dual boot isn’t the best idea for Kali, a live USB is more than enough
personally I just install the tools myself in my own Arch install but yeah that’s not so quick heh
Or a virtual machine
I dont think one shuld play with Arch if they arent well versed with Linux
yeah I shouldn’t have mentioned it lol, just my solution
do not recommend Arch for beginners
Just download VmWare Playstation or Pro
Oracle VBox
heh, Player or Workstation Pro
And deploy the ISO on it
the virtual machine hangs a little on my computer
And enjoy the installation
Whats ur RAM?
4gb ram
The kali linux ISO might include some code that gets flagged by your antivirus; that is normal behavior. But it shouldn't have anything like that on it from a fresh install.
8gb in host pc
Just upgrade ur RAM
Add another 4gb and it will start working smoothly
I used dual boot a while ago but it never happened, maybe it's because of windows defender
Which distro did u used it to dual boot witth?
Defender can't read Linux ext4 filesystems, wouldn't have been a factor
Kali linux 2022.1 changelog
Don't dual boot Kali, VM or live USB
I have a virtual private server for pentesting but that's more advanced
Same though I use vms only
Windows is troublesome OS if u want to dual boot
Really really troublesome
Windows first then Linux, but yeah there's a lot that can go wrong
when I used avast this never happened
I mean technically Kali ISO is malicious
Makes sense for it to be detected
Just check hash and you're fine
I used wsl2 but I didn't like it very much so I removed it
WSL has extremely limited networking capabilities anyways
VMs or live USB is a better solution
Or a AWS Cloud Server
WSL2 made improvements in that space, or so I've heard, but I haven't used it since it was a preview feature.
Yeah just even then, won’t do Kali properly. I do think it’s in the MS Store lol
Yes
Can you tell me what is wrong from the beginning
I had a problem with Oracle VM so before I uninstalled Oracle VM, I copy pasted the whole Kali Folder under Program Files -> Oracle where the Kali Linux folder was located onto my seperate external hard drive. It's been like 4-5 months and I have reinstalle back Oracle VM. My question is can I paste back the Kali Linux folder which was located in Program Files -> Oracle back there now ?
Later stuffs please DM me
ok
hello can anybody tell me how can i use my discord token
!docs verify
You should be able to.
Just double click the VDI
i got it runnning with all of my data back. Thanks anyways
Gave +1 Rep to @weary spindle
Hey i installed the java-11-openjdk package on fedora but ghidra says it can't find it and neither can I tbh
******************************************************************
JDK 11+ (64-bit) could not be found and must be manually chosen!
******************************************************************
Enter path to JDK home directory (ENTER for dialog):
Opening selection dialog...
Not a valid JDK home directory. Missing bin directory!
Enter path to JDK home directory (ENTER for dialog): Opening selection dialog...
Not a valid JDK home directory. Missing bin directory!
Enter path to JDK home directory (ENTER for dialog): Opening selection dialog...
Not a valid JDK home directory. JDK is missing javac executable!
I entered a couple versions that i found in /usr/lib/jvm
Can you try regenerating your ovpn file?
download it again?
Yep
🙂
Now that's not very friendly...
Fineeee...
this might be real obvious and im just not seing it but; search bar for the platform? ie i want to see a room on exchange_proxyshell_rce in metaplsoit - how can i search the website for rooms/tutroials on this?
the closest you will get without using google is this: https://tryhackme.com/hacktivities?tab=search
doubt it would get you exactly what you want in this use case though
i knew it was hidden in plainsight somewhere haha, thanks
Gave +1 Rep to @plush bay
i.e clicking the learn button at the top of the page and then a bit down there is a search tab
That doesn't say much other than that it didn't work, try to add more verbose output (-vvv or whatever openvpn uses idk) or maybe check tcpdump -i eth0 host 3.7.33.194 etc
Okay shall try that
is there anything I can do to get my streak back?
except contacting support on support@tryhackme.com using email and asking nicely in a formal way??? no
if we don't count the slow but efficient way of making a new streak
Can you DM with the issue
For some reason my openvpn isn't working anymore and get this error
Cipher negotiation is disabled since neither P2MP client nor server mode is enabled
Options error: You must define TUN/TAP device (--dev)
Changing your VPN server could be helpful
I'll try that again now
!vpnscript
Could also try that.
Never really had problems before until now. Got the VPN working and saying sequence complete but when I refresh the connection page and the website itself still says access machines
Try to do curl 10.10.10.10/whoami, if it's replying with your tun0 IP your are successfully connected. The access page is not reliable to verify if your are successfully connected
finally, I made you switch to the bot command 
Cheers for that it is returning the tun0 IP
yo guys im trying to connect to the vpn server but it's giving me a hell lot of errors
classic sudo openvpn username.ovpn doesnt work and it reports Cipher negotiation is disabled since neither P2MP client nor server mode is enabled Options error: You must define TUN/TAP device (--dev)
then i put --dev tun
but it says Options error: I'm trying to parse "Valeryum999.ovpn" as an --option parameter but I don't see a leading '--'
and now i'm stuck
Could you show a screenshot of the command you used and the errors you got pls?
Also, have you altered your ovpn file in any way?
nope
how can i screenshot from linux?
i tried one last resource:
sudo openvpn --config ./Downloads/Valeryum999.ovpn --dev tun 2022-05-02 16:20:34 Cipher negotiation is disabled since neither P2MP client nor server mode is enabled 2022-05-02 16:20:34 OpenVPN 2.5.5 x86_64-pc-linux-gnu [SSL (OpenSSL)] [LZO] [LZ4] [EPOLL] [PKCS11] [MH/PKTINFO] [AEAD] built on Feb 21 2022 2022-05-02 16:20:34 library versions: OpenSSL 1.1.1n 15 Mar 2022, LZO 2.10 2022-05-02 16:20:34 ******* WARNING *******: All encryption and authentication features disabled -- All data will be tunnelled as clear text and will not be protected against man-in-the-middle changes. PLEASE DO RECONSIDER THIS CONFIGURATION! 2022-05-02 16:20:34 TUN/TAP device tun0 opened 2022-05-02 16:20:34 Could not determine IPv4/IPv6 protocol. Using AF_INET 2022-05-02 16:20:34 UDPv4 link local (bound): [AF_INET][undef]:1194 2022-05-02 16:20:34 UDPv4 link remote: [AF_UNSPEC]
but it never does anything
Is linux a guest? Just use the host screenshot tool
where do i find this
Is your linux install a VM or bare metal?
wifi
is your adapter fully supported by your distro?
Ok. What's the output of ip a
how would i be able to be online otherwise
1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
inet 127.0.0.1/8 scope host lo
valid_lft forever preferred_lft forever
inet6 ::1/128 scope host
valid_lft forever preferred_lft forever
2: wlan0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc noqueue state UP group default qlen 1000
link/ether 80:30:49:a5:5e:a1 brd ff:ff:ff:ff:ff:ff
inet 192.168.1.17/24 brd 192.168.1.255 scope global dynamic noprefixroute wlan0
valid_lft 21210sec preferred_lft 21210sec
inet6 fe80::8230:49ff:fea5:5ea1/64 scope link noprefixroute
valid_lft forever preferred_lft forever
what distro are you using?
Linux 5.15.0-kali3-amd64
is that the latest rolling release?
no i dont think so
but the thing is openvpn worked before
now i wanted to change servers
but it all messed up
can you post the beginning of your ovpn file? first line through <ca>
the rest of the file should be certificate and keyinfo
lol it's empty
wtf
i'm straight up downloading it from tryhackme.com/access
but it's empty
i'm using the EU-VIP-2 server
regenerate the file and wait a minute or two before downloading
Are you a paid subscriber?
It might take a few minutes for account changes to propogate through.
Can you generate a non-VIP config file?
it makes sense, i'll retry later then
Yes i can
I think the next thing to do is email support
alright, i'm gonna retry in a couple of hours, if it doesn't work by then i'll write to email support
thank you regardless :D
What do you need help with?
Don't spam multiple channels asking for help. Everyone is a volunteer, please ask your question in the appropriate room and wait patiently
thank you so much for your input, fyi i am beginner level, so please bear with me, what exactly am i looking for using this command ?
Gave +1 Rep to @tidal shore
for openvpn it looks like the verbosity is controlled this way:
--verb n
Set output verbosity to n (default=1). Each level shows all info from the previous levels. Level 3 is recommended if you want a good summary of what's happening without being swamped by output.
0 -- No output except fatal errors.
1 to 4 -- Normal usage range.
5 -- Output R and W characters to the console for each packet read and write, uppercase is used for TCP/UDP packets and lowercase is used for TUN/TAP packets.
6 to 11 -- Debug info range (see errlevel.h for additional information on debug levels).
(just experiment and see where more detailed/useful messages start to appear)
The tcpdump command is going to show all the packets that are passing through the 'eth0' network interface to/from the given host IP (may vary, check 'ifconfig')
(You can filter it further if needed but presumably there shouldn't be a lot of other unrelated traffic between your machine and the VPN gateway's public address)
The log so far tells us the TLS negotiation didn't happen and suggests checking network connectivity, and also says the TLS handshake failed (maybe it failed in and of itself for a separate reason, or maybe it just failed because it never got started at all?)
So this way you can see, is any packet at all sent to the VPN gateway? Does any reply come back? Does it stop early or is any clue visible in the contents of the packet, is the source/destination address or something else not as expected, etc. And overall you can get a lot of information about where exactly the failure is happening (in your computer or in someone else's, for one) and hopefully why
its really helpful, the problem comes down to: "TLS key negotiation failed to occur within 60 seconds"
Do you get anything else if you add --verb 3 to the openvpn command? And then increasing the number by one at a time if it still doesn't have any more details about the TLS procedure?
