#site-bugs

1 messages ยท Page 20 of 1

raw karmaBOT
#
TryHackMe
Learn how to look for duplicate instance of your OpenVPN connection.
โ€ข Step 1

Make sure you have setup your VPN connection correctly https://tryhackme.com/room/openvpn

โ€ข Step 2

Type ps aux | grep openvpn into your terminal and press enter

โ€ข Step 3

If there's more than one line (that don't start with "grep" or sudo), do the following steps

โ€ข Step 4

Type sudo killall openvpn into your terminal and press enter

โ€ข Step 5

Start the VPN with sudo openvpn <path-to-config>

fallen swift
#

Thanks @final mountain - I can't see a link there......

pine quiver
#

I donโ€™t think youโ€™re supposed to ssh into that machine

fallen swift
#

oh, I should install nmap locally and reach out to it like that?

final mountain
#

task 2 is nmap so yea you'll have to install it

fallen swift
#

got it - thanks for the quick response @pine quiver and @final mountain - I really appreciate it!

final mountain
#

NP ๐Ÿ™‚

pine quiver
#

Any time

#

@fallen swift if you have the space Iโ€™d recommend making a kali VM

#

Comes preinstalled with a lot of the tools youโ€™ll need

fallen swift
#

That's a good idea - thanks for the advice

pine dew
#

This is question 13 on the tmux room. Is this a typo? Where it says "and it allows up to scroll up.."

timber merlin
#

The links for the cheatsheet and tools page for the MAL: REMnux room are busted. I had to go to archive.org to get the correct links to answer the questions for Tasks 3 & 4

spiral flame
#

@topaz venture

zealous pumice
#

easy peasy :- any one solved this room ...anyone here ?

#

after nmap

spiral flame
#

Wrong channel

#

No help for new rooms

zealous pumice
#

okay..i will try and will do it !!

dire ferry
#

Not sure if this is a known issue.. The walk through for intro to X86-64 says do command "aaa" and should say "aa" otherwise the following steps do not work.

pine quiver
#

You mean the following steps?

#

Also, that works fine for me

dire ferry
#

srry yea

pine quiver
#

aaa and then the following steps works for me

median sapphire
#

Not a bug.

#

aaa works perfectly fine.

dire ferry
#

when I was trying to run dc and other steps it was not working for me... but let me try again thanks ๐Ÿ™‚

stiff wind
spiral flame
#

Go to /

#

Then follow the link

stiff wind
#

nice

covert kernel
#

For a minute

#

I thought the topology broke

sacred sequoia
#

Working around bugs:

silent lantern
#

Public ip countdown also has the duplicate timer problem! It just loops and never shows the actual IP.

#

Similar problem with Access desktop countdown but it goes into negative values... Also it keeps decreasing by interval

#

Now it varies between -19s et -656s

#

Also When this bug happens, it is not possible to select the Access desktop button

#

TLDR: Timers on in-browser VM went weewoo big time

lilac pilot
#

Task 4 at Room 'Authenticate', after successfully modifying the JWT token as admin user in request, I get a pop-up where it shows Internal Server Error 500 instead of showing a flag!!!

@lilac pilot any update on this one?

lone vector
celest edge
topaz venture
#

The links for the cheatsheet and tools page for the MAL: REMnux room are busted. I had to go to archive.org to get the correct links to answer the questions for Tasks 3 & 4
@timber merlin

Thanks for making me aware, and James for tagging me. Will look into solutions to it ASAP

brave reef
#

@silent lantern The issue has been addressed, as long as it doesnโ€™t inhibit your VM everything should be fine :)

steady shore
#

I think the timer has an issue. After passing one hour, it says machine expired but it is still on. The timer is given as 2 hours.

urban flame
#

Not too sure if bug but I am still on a VIP VPN without having a subscription - If you have already downloaded a VIP pack, does it expire after your sub?

median sapphire
#

I think Skidy knows about this ๐Ÿค”

spiral flame
#

I thought it was fixed

median sapphire
#

It was reported before, and yeah I thought it was fixed

urban flame
#

Apparently not

median sapphire
#

He might have fixed locally and probably hasn't pushed the code yet ๐Ÿค”

pine quiver
#

I don't have a screenshot, but after I terminate a machine before the timer expires, the Machine expired message still will pop up on THM a half hour later or however long

stuck thicket
#

hey guys, i have a small problem and looking for someone to help me. I have been using in-browser access machine so far. I wanted to use a OpenVPN way to use my own Kali Machine. I have downloaded thm-troubleshoots and it seems to be all okey. I am connected to the vpn network. but when i try to open website in browser for example to look for login pages, source codes etc. it keeps loading all the time and the website cant be displayed fully ? Anyone had the same problem ?

pine quiver
stuck thicket
#

sorry, being newbie on this discord

pine quiver
#

No problem

covert kernel
#

In the newly released room: Malsearching, Task 3 -> Section: Visualising a Hash Collision:. The picture for that section does not show a hash collision ? It is the same one(7FpulNc.png) as the section above(Checksums Continued:). I think you meant to put a different picture for the section: Visualising a Hash Collision that shows a hash collision ? ๐Ÿค”

celest edge
zealous light
#

๐Ÿ‘‹

median sapphire
#

๐Ÿ‘€

cinder crow
#

Screenshot for info
@celest edge CC: @topaz venture

celest edge
#

probably just a copy-paste bug

bleak radish
#

Not sure if this is a bug or not but for me in the 'My-Machine' page, the timer keeps switching times. I found that i have to click extend for it to like not switch

spiral flame
#

I've seen that reported a few times

bleak radish
#

Thought it was just me for a couple of days

spiral flame
#

That's also possible

#

But there's various timer bugs that seem to have cropped up lately

bleak radish
#

ah ok

#

still pretty weird tho

spiral flame
#

I think it's since the recent push that hides IPs

floral violet
#

"Bounty hacker" shut down at an hour left. Hydra and gobust was unable to see the host.

pine quiver
#

@brave reef

#

bloke didnt you say you were going to sleep haha

brave reef
#

@floral violet did you add any time to the machine at all

floral violet
#

I did, but it told me to wait. 55mins

covert kernel
#

Room "SSRF - Task 3 " $boxip :5000/advanced " http://127,0.01:3306 || http://127.00.1:3306 returns target exits(maybe it is not a bug rather by design ๐Ÿ™‚ )

floral violet
#

Vip, I guess gets 2hrs now?

brave reef
#

Yeah there seems to be a bug with adding time to the machines, Iโ€™m keeping an eye on them. Hopefully this issue will be fixed soon, Iโ€™ll give Skidy my findings when heโ€™s free. Thank you for your report :)

floral violet
#

Yup

spiral flame
#

refresh?

pine quiver
#

oh if you just refresh the page that fixes itself @floral violet

#

oh didnt see james's reply ๐Ÿค“

#

also, skidy is online now if you wanna update your findings to him @brave reef

brave reef
#

๐Ÿ‘€

#

Iโ€™ll have to do it tomorrow Iโ€™m too lazy to boot my pc rn haha, thanks though

#

The text file is on my desktop

floral violet
#

Correct, silly me

timber marten
#

typo in MAL: Researching. Task 3, question 4 should say billion not million

half marsh
spiral flame
rotund jetty
#

brooklyn 99 has some typos in various files, not sure if its intentional. (including things like ssh config) It's not a game stopper, but sure puts a hamper on easy data exfil

#

to reproduce: log into b99 and hten try to ssh back to your pentest workstation

topaz venture
#

Thanks for realising that up @celest edge @cinder crow cut and paste bug. I the entire contents of that room 5 rooms due to back end issues, so yeah. Thanks! Will fix ASAP

#

Also ty @timber marten same as above^

wide spade
#

Hey guys, anyone seen issues with HackPark just randomly stopping accepting connections or needing to be reset quite regularly? It got so frustrating I have stopped doing that Room

pine quiver
#

@wide spade it stops after 1 hour no matter what itโ€™s a known issue

wide spade
#

@pine quiver Nope thats not what I mean. even when its not expired, it becomes unresponsive. Have you had other feedback from people about that box?

pine quiver
#

Before it expires, after 1 hour, the machine will stop no matter what

#

If you extend it for 27 hours, it will still stop responding after 1 hour

wide spade
#

Ok let me put this simply. After a random time (maybe 30 mins) the box sometimes becomes unresponsive. telnet 80 doesnt work, not responding at all, but the box is still fully deployed. You need to terminate it, and then redeploy and start fresh.

pine quiver
#

Ok sorry let me rephrase:

Before it expires, after x long, the machine will stop no matter what, become unresponsive and you will have to reboot it

#

itโ€™s a known issue
@pine quiver

covert kernel
#

What Bob is trying to say is that the machine pretty much crashes itself regardless of the THM timer due to some faulty bug on the machine itself. Known issue that cant be fixed and the only solution is to not do it, or just try to finish the machine before it does break itself

pine quiver
#

You have to speed run the box

wide spade
#

Ahh ok perfectly fine ๐Ÿ™‚ so its exactly what I was saying as well. Sorry i seem to have misread that. Apologies from my side

olive drum
#

@topaz venture, there's a typo in MAL: Researching

topaz venture
#

LMAO

#

I've never been able to spell algorithm since year 7

#

ty Swa

#

all the (I'd argue) tiny fixes are being done now

#

ty for reporting all

lament geyser
#

CMNatic's got too much riddim ๐Ÿ˜‰

ebon oyster
#

i didn't get my 30day streak badge today

#

even though I touched 30th day

spiral flame
#

Give it like... 12 hours. According to skidy, it arrives at some point during the day

ebon oyster
#

ah okay cool

spiral flame
#

@ebon oyster did you get your badge?

ebon oyster
#

no I have not. So in the left pane it was showing 30 and in the dashboard it was showing 29. Now I solved one more question so both are 30 now.

maybe need to wait another 12hrs.

alpine sand
#

I was on a 56/57 day streak earlier this morning and now I'm on a 3 day streak. 100% didn't miss a day.

I'm also not sure if this is normal somehow but I'm in 198 rooms (195 finished) with 3 unfinished, yet it says I've only completed 186?

viscid kite
#

Hello, I was preparing for CEH and came on topic of whois and I see all information is redacted, is there any way to get around this ?

short jackal
viscid kite
#

ok

frosty cape
#

I was on a 56/57 day streak earlier this morning and now I'm on a 3 day streak. 100% didn't miss a day.

I'm also not sure if this is normal somehow but I'm in 198 rooms (195 finished) with 3 unfinished, yet it says I've only completed 186?
@alpine sand What's your THM username?

alpine sand
#

@frosty cape Slothzilla

frosty cape
#

@frosty cape Slothzilla
@alpine sand I've updated your streak to 59. Please make sure you're answering questions every day to keep it up:))

#

Also its mad to see how big your streak is! Keep it up :D

alpine sand
#

Thank you sir ๐Ÿ™‚

short jackal
#

damn that's a lot

brave reef
#

Skidy I had a 435 day streak can I get it back

frosty cape
#

Says the user with almost 100^^

urban flame
#

@frosty cape could I get my ~12 days as other users are getting theirs updated?

brave reef
short jackal
#

Says the user with almost 100^^
KEKW still, that's probably more than 90% of users

alpine sand
#

I've been hard in the paint for a couple months I guess >_>

frosty cape
#

@frosty cape could I get my 12 days as other users are getting theirs updated?
@urban flame Sure, I do check before I update mind:) Whats your username?

short jackal
urban flame
#

Whoop Whoop, WillGreen98

frosty cape
#

Whoop Whoop, WillGreen98
@urban flame Wait, you're already on a 74 day streak (damn)?

short jackal
#

timtaylor is at 88 ๐Ÿ‘€

urban flame
#

It should be 86 I think or higher

#

I kept complaining streaks were borked for roughly 2 weeks but can't remember the exact number of days

frosty cape
#

Yeah 86

short jackal
#

btw Will, did your VPN get fixed? smileshoob

urban flame
#

It reset like 6 times in 2 weeks

frosty cape
#

Updated

urban flame
#

when you had to answer two answers a day

#

Updated
@frosty cape much love

frosty cape
#

It shouldn't do now, I (think) I've fixed the streaks.

urban flame
#

This was right at the start

short jackal
#

they look stable to me

urban flame
#

Ooh whilst you're on, could you also ban and unban me from Authenticate plz?

#

Or something along those lines

#

I still can't access it (when I was subbed 2 days ago)

#

@urban flame Wait, you're already on a 74 day streak (damn)?
@frosty cape THM all day everyday!

short jackal
#

the higher the number - the lower probability of that user having a life

urban flame
short jackal
#

Pretty weird bug found by @heavy wyvern that i investigated further
when spawning a box with a guacamole iframe the iframe is actually inserted twice:

  • once after the remote screen progress bar gets to 100% (deploying creates the first progress bar and calls the first roomSpecific.js:countDown)
  • another time by the IP countdown timer when it displays the IP (countdown reaching 0 calls roomSpecific.js:countDown for the second time and creates a second progress bar)

so far I checked only on https://tryhackme.com/room/linuxprivescarena, not sure if other rooms are affected

short jackal
#

reproduced with ninjaskills, the guacamole progress bar took longer than the IP timer so it spawned one before the previous one was ready

#

same goes for windowsbase and corp

#

looks like all the rooms with the in-browser RDP/VNC/SSH are affected

spiral flame
#

Does it happen on my-machine or just rooms?

short jackal
#

didn't check my-machine

#

just checked

#

same situation happens under the hood but instead of the second one being added it just replaces the original one

wise maple
#

If you leave a room with a deployed machine, the machine doesn't get terminated

brave reef
#

Not a bug

mild breach
#

would save resources though so itโ€™s probably a good idea

wise maple
#

Especially on free where you can only deploy one machine at a time. If you go to a second room and attempt to deploy, you are then required to go back to the first room and rejoin it just to terminate the machine

brave reef
#

It's been discussed in the hidden chats, the staff are trying to get a way for it to be closed. The issue is that when people complete rooms, some people like to stay on the box and look for certain things and or try to get root if it isn't required. Others like to practice putting backdoors onto them.

#

Many times I've accidentally closed the tab and if it worked like that, I'd have to boot the machine back up each time I close the tab because that would register as "leaving"

#

No matter what happens you will have to press a button to terminate the machine because otherwise THM doesn't know if you want to terminate it or not.

wise maple
#

Popup on room leave - "You are leaving a room with an active machine - Would you like to terminate it?" or some such

#

Although - Are those people completing rooms and staying on the box leaving the room?

brave reef
#

I think a header is being put in place

spiral flame
#

Popup on room leave - "You are leaving a room with an active machine - Would you like to terminate it?" or some such
@wise maple #641405480547385354

pine quiver
#

just got a your machine is about to expire message with 1 hour, 23 minutes left

#

@brave reef idk if thats related to your thing

brave reef
#

It is

#

Basically whatโ€™s happening, as an educated guess, is that youโ€™re adding time to the machine but the machine is still counting down so even though youโ€™re adding time itโ€™s kind of like itโ€™s not registering?

vast wigeon
sacred sequoia
#

Linux privesc room, question one, will not accept the hash

spiral flame
#

There are about 3 Linux privesc rooms

#

@sacred sequoia Can I ask you to clarify which one?

sacred sequoia
#

One sec

#

It is that one

#

Sorry about that

spiral flame
#

Task, question?

sacred sequoia
#

Question 1

#

Task 1

spiral flame
#

Nope

sacred sequoia
#

Task3, q 1

spiral flame
#

replicated that here

#

@heady cosmos Sorry for the ping, can I get you to take a look at this? It might be an issue serverside so out of your control
Sorry tib, nothing to worry about

sacred sequoia
#

Thanks

spiral flame
#

@orchid remnant can I get you to check an answer with me for this first?

orchid remnant
#

You can

#

What's up?

spiral flame
#

DM?

orchid remnant
#

Go for it ๐Ÿ‘

spiral flame
#

@sacred sequoia Not a bug, make sure you have the full hash

heady cosmos
#

Glad it's still working. ๐Ÿ™‚

#

Haven't updated that room in a while so would be weird if it just randomly stopped. I would blame the THM admins. ๐Ÿ˜›

spiral flame
#

There's been some weirdness with answers and XSS filters

#

Including an actual XSS vuln

heady cosmos
#

Oh yeah I discovered some XSS payloads that wouldn't work in a room, let the creator know

spiral flame
#

The worst one is typing /etc/passwd into an answer box triggers BitDefender

sacred sequoia
#

Thanks REed the shell out of it. Learned something

heady cosmos
#

The worst one is typing /etc/passwd into an answer box triggers BitDefender
@spiral flame lol

#

That's fun ๐Ÿ˜„

spiral flame
#

Some weirdly frustrating things to debug

orchid remnant
#

The worst one is typing /etc/passwd into an answer box triggers BitDefender
@spiral flame The heck?

#

That's hilarious ๐Ÿคฃ

spiral flame
#

Best bit, comes up as an RCE attempt

#

Not LFI etc

#

RCE.

unborn elm
#

The SPAM

#

Fyi, the timer has over 1h 23m left on it too.

brave reef
#

I have reported this to Skidy, did you add time onto the room at any point?

unborn elm
#

Twice.

brave reef
#

Thereโ€™s the issue

#

Even though youโ€™re adding time, the timer is still going down in the background so itโ€™s like having two timers on at once

unborn elm
#

There was at least 50 of those coming up from just two time add ons.

brave reef
#

Yeah strange

hallow pilot
#

Do I report regex mismatches in answers or leave it?

median sapphire
#

Refresh the page and the answer will correct itself.

hallow pilot
#

wow it did! thanks

zealous pumice
#

can anyone help me ? on Authenticate room

spiral flame
zealous pumice
#

crack password with Burp suite on authenticate room but

#

but Burp Suithe process is very slow due to which Mike's password is not being cracked.

spiral flame
#

This is the bug channel

zealous pumice
#

please help

spiral flame
#

Please move channel.

zealous pumice
#

where ?

#

please tell me

spiral flame
zealous pumice
#

okay Thank you ๐Ÿ™‚

abstract barn
#

not really a bug, but i want to know if i am alone to suffer from lags and system irregularity ?

dusk oak
#

not really a bug, but i want to know if i am alone to suffer from lags and system irregularity ?
@abstract barn what kind of lags/irregularitys

#

could be so many things

abstract barn
#

my bad, the box doesn't respond @dusk oak like i ping it (239ms) then the box cannot be scanned

#

the retransmission cap is systematically hitted

dusk oak
#

is your vpn working correctly?

abstract barn
#

yes Sir

dusk oak
#

u sure? no multi vpn etc?

#

also, some boxes dont respond to ping. try with nmap -Pn

abstract barn
#

magically, everything worked!

strong thunder
#

SQLi-Labs :

#

I dont understand about this room

#

can anyone help me

spiral flame
#

This is probably the wrong channel for that. This channel is for reporting bugs.

strong thunder
#

ohh sorry

#

i m new here

spiral flame
umbral grotto
#

Not sure if its a bug, but the Vulenrability room asks to upload a >100MB memory dump to the website Hybrid Analysis. This seems to be forbidden (even when compressed).

#

err *Volatility room

spiral flame
#

It doesn't ask you to do that

umbral grotto
#

Right. Extracted files != mem dump. Sorry.

mental crescent
#

๏ผฉ keep getting an error msg on a machine and im not sure where to ask for help

#

nvm found the room

vocal raptor
#

@wicked grove ```
amgToday at 9:54 AM
Hi! In room Alfred, in the section of writeups there is a broken link

#

Not a site wide bug tho, just a creator bug

covert kernel
#

hello

brave reef
#

..?

pine quiver
#

Hello ๐Ÿ˜„

covert kernel
#

I have a question

#

1 min

median sapphire
#

๐Ÿค”

pine quiver
#

Timer has begun

covert kernel
#

Does anyone among you speak Turkish? ๐Ÿ˜„

median sapphire
olive drum
#

it's a bug submission channel

median sapphire
#

They said they have a bug to report in #general ๐Ÿค”

covert kernel
#

1 min

#

please

pine quiver
#

Timer has begun
@pine quiver youโ€™re at about 37 seconds

covert kernel
#

This is the error I get in termux, what should I do?

median sapphire
#

๐Ÿ˜’

olive drum
#

it says right there...

#
  • It's not a THM bug, so should belong in #general
covert kernel
#

Where is it written

spiral flame
covert kernel
#

okey

dry dome
final mountain
#

Whats the bug?

spiral flame
#

Shows completed in room

#

But there's also two

#

So something's up there

final mountain
#

Oh yea now I see

harsh canyon
spiral flame
#

because it's not tracking the release time

umbral grotto
#

Splunk room, task 2, question 31: you might want to update the answer to reflect the new website of the company (answers -> community).

spiral flame
#

I will add that to dark's list

bleak radish
#

Not sure if its a bug or if just happened to me by chance idk, but for the daily streak i was on 8 points. I then joined a room and was about to do it. I answer one question and clicked the 'completed' button but then i left the room because i wanted to do it at a later date (ik i could of just stayed in the room, i din't have to leave it but i did for whatever reason) but then when i went back to the dashboard i saw my streak went up to 9....i refreshed the page but looks like my streak went up...

#

technically i don't think thats a bug because i answered a question right? Or does the streak go up only when you finish a room completely?

#

technically i don't think thats a bug because i answered a question right? Or does the streak go up only when you finish a room completely?
@bleak radish My bad it is for when you complete a question.....DISREGARD what i said up above

spiral flame
#

yep

#

Doesn't even need to be one with an answer

bleak radish
#

yep just thought that through, my bad

umbral grotto
#

Still in the splunk room, task 2, question #21: the requested answer does not match the actual splunk command (?? -> rename).

spiral flame
#

It's not actually rename

umbral grotto
#

I'm dumbfounded. I will do search.

ebon oyster
#

rooms are being sorted by creation date not the publishing date. So the latest room pokemon is actually at the second page if someone sorts by newest.

jade steppe
#

Splunk room, task 2, question 31: you might want to update the answer to reflect the new website of the company (answers -> community).
@umbral grotto I actually had to do subdomain enumeration on their site to find the answer ๐Ÿ˜‚

karmic elm
#

is there something wrong with advet of cyber day 13(Accumulate) i tried almost 20 times not able to connect to given ip

spiral flame
#

Nothing wrong. It doesn't respond to pings.

#

Closed: not a bug.

karmic elm
#

Closed: not a bug.
@spiral flame thanks i thought since it's not responding to my ping i can't work with it

spiral flame
#

Most windows machines block pings by default

karmic elm
#

Most windows machines block pings by default
@spiral flame ok

lone isle
#

My web and ssh connections are very slow, and my connection is constantly disconnected, please help me

fresh tide
digital turtle
#

there was about 1:45 min left to expire my machine but it popup that it will expire soon

#

also after a minute this tell me the machine expired

#

but it wasnt

vapid lichen
#

I'm in the Linux Privesc Arena room and the in-browser machine show up and i can either access the in browser machine even if i'm not subscribed

final mountain
#

Some free rooms have browser accessed machines

brave reef
#

there was about 1:45 min left to expire my machine but it popup that it will expire soon
@Mr.Secret#0519 already reported many times ;)

#
site may spam you with notifications to extend your machines, for seemingly no reason even if the machine has over an hour left
digital turtle
#

how lucky i am

#

my mouse isnt there but it showed me this thing

deft linden
#

hi, i'm new to "tryHackMe" and i was trying to start learning. i want access a machine via openvpn and when i was trying to download the OpenVPN configuration pack , i have encountered an error message as shown

short jackal
#

what server did you try to download a vpn pack for?

deft linden
#

you mean the name?

#

EU-Regular-1

#

and also EU-Regular-2

short jackal
#

regenerate first, wait 10 seconds and then download

deft linden
#

it works, thank you!

covert kernel
#

Hey, I've a bug on the "easypeasyctf" [Task 2] - #6 What is the password to login to the machine via SSH?
I missed out on some of the lines, so I didn't get the last 3 characters but the room still accepted it. I found out because it didn't work on the SSH as supposed to so I figured something was wrong.

pine quiver
#

its a regex

#

if you refresh itll show the correct answer

covert kernel
#

You were absolutely right.

#

But still, I submitted a wrong flag and it got accepted. A small bug ;).

pine quiver
#

not a bug, a regex

orchid remnant
#

Which, granted, is a pain in the arse

sacred hill
#

hi

#

all

orchid remnant
#

Do you have a bug to report @sacred hill? ๐Ÿ™‚

sacred hill
#

no i want know somthing

orchid remnant
vocal raptor
#

"Task tips" when you create a room (the pop up). Grammar mistake in this sentence. Ensure no question is left blank (at the least have "Read the above"). -> at the very least

median sapphire
#

๐Ÿค”

#

Isn't at the least valid? @spiral flame ๐Ÿค”

spiral flame
#

at least, or at the very least

median sapphire
#

Ah

frosty cape
#

hi, i'm new to "tryHackMe" and i was trying to start learning. i want access a machine via openvpn and when i was trying to download the OpenVPN configuration pack , i have encountered an error message as shown
@deft linden This should be fixed now, please try again.

short jackal
#

@frosty cape he already got it, just had to regenerate one and wait a bit

frosty cape
#

Oh right okay cool

covert kernel
#

How about the Pokemon challenge, should the bash_history not be cleared or is it by design all the flag locations and privesc is in there?

short jackal
#

ya sure they are not commands you ran?

#

if not them idk

covert kernel
#

yes I'm pretty sure I didn't run those commands.

short jackal
#

might be an oversight

#

ยฏ_(ใƒ„)_/ยฏ

orchid remnant
#

How about the Pokemon challenge, should the bash_history not be cleared or is it by design all the flag locations and privesc is in there?
@covert kernel Probably, yes, it should be cleared

#

Community room though

brittle juniper
#

https://tryhackme.com/room/linuxprivescarena
https://tryhackme.com/room/linuxprivesc
Both rooms awards the same badge, both are walkthroughs. One got 19 questions, other one 21.

spiral flame
#

Yeah, they're from different people though

#

One is for Tib's privesc course, the other is for TheCyberMentor's.

#

Why is this a bug? @brittle juniper

brittle juniper
#

EDIT: Not sure if its a bug, But I have not seen same badges being awarded by multiple rooms.

#

ยฏ_(ใƒ„)_/ยฏ

#

Wasn't it the point of badges? You get one if you solve an specially specific room.

spiral flame
short jackal
#

iirc there were some that required you to complete multiple rooms

spiral flame
orchid remnant
#

Same

fair cypress
#

why there are some rooms that are released but when sorting by newest they aren't the first?

#

this happened to pokemon yesterday and now with tartarus

spiral flame
#

The fix is coming soon

brave reef
#

You dropped this โ„ข๏ธ

spiral flame
#

No, this isn't a soonโ„ข๏ธ issue

brave reef
#

:c

autumn wave
frosty cape
#

Do you remember how you subscribed?

#

Through a voucher, or via /profile page?

#

Just thinking perhaps I missed something in the sub method.

autumn wave
#

Unsure? I think it's through paypal. I don't have a receipt in my account though.

frosty cape
#

Okay, I'll take a look into this

autumn wave
#

โค๏ธ

#

I think it was in May that I resubbed for three months.

frosty cape
#

Okay, thanks - will take a look:)

cinder crow
hazy stratus
#

thats.. i- ok

late nova
#

is anyone helping anyone in this room?

digital thorn
#

This channel is not to "help" anyone, but for people to report bugs related to THM

#

If you need help with room, I ask you to go to #room-help or #general if it's not room related

bright sundial
#

Hello, in Common Linux Privesc at task10 suggest one room for practise but when i try to go there it saying that " Problem finding room.." there is the right place for write that right?

pine quiver
#

huh, weird, i cant find that room anymore either

median sapphire
#

The room was removed if I remember correctly.

spiral flame
#

Privesc playground was

median sapphire
#

Dan's content ๐Ÿง

#

Yeah

spiral flame
#

Common Linux Privesc wouldn't have been

#

Or shouldn't

median sapphire
#

Common Linux Privesc is still there

#

Task 10 probably refers to his room

pine quiver
#

hes talking about the linx, not common linux privesc

#

Task 10 probably refers to his room
@median sapphire yes, this is what he's talking about

#

maybe muir should remove it?

median sapphire
#

Hmm

#

I've already informed Oracle of something like this, through I guess it needs to removed from here as well

spiral flame
#

I can just remake the room if you give me 20 minutes and some chmod

median sapphire
#

I think Dan's room had sudo permissions for the binary ๐Ÿค”

#

Should be pretty easy to replicate

spiral flame
#

It had literally like chmod +s * and full sudo rights

median sapphire
pine quiver
#

there are so many options on that box i wouldnt be able to root it

#

id be stuck deciding which path to take ๐Ÿ˜ฑ

spiral flame
#

I have my own writeup for it @median sapphire

median sapphire
#

Is it public? ๐Ÿ‘€

spiral flame
#

Yes.

median sapphire
#

Found it blobfingerguns

fair moon
quick ivy
#

Hi, is this the place for reporting issues found in rooms?

median sapphire
#

Yes

quick ivy
#

nvm I was on the wrong user, disregard me :)

oak ether
#

hello iam having a problem in cc:pen testing room

spiral flame
oak ether
#

i dont need a hint or help with it iam having a problem with xD

median sapphire
#

Doesn't mean it's a bug ๐Ÿ™‚

spiral flame
#

99%chance it's not a bug

oak ether
#

can i dm u with my problem

#

?

spiral flame
#

No. You may not.

oak ether
#

๐Ÿ˜ฆ

spiral flame
#

You can go to #room-help and give us enough information

pulsar flower
#

Found a bug in the cicada 3301 room. It's small but I'm not sure if it's a room issue or site issue. Is this the correct place?

median sapphire
#

Yeah, go ahead ๐Ÿ™‚

pulsar flower
#

Well I mistakenly missed the first digit of an answer and it said I completed successfully anyway. But after a refresh it added the missing letter. I know this sounds kinda dumb just thought it was a weird glitch

spiral flame
#

That's answer tolerance

#

On longer answers, it can do that

pulsar flower
#

Ahhh ok cool. Thanks ๐Ÿ‘

cinder crow
spiral flame
#

Fix what about it? @cinder crow

cinder crow
#

"Use #site-support for additional help of that nature" it tells you nothing about what tech support is or what "of that nature" it is talking about

tired solar
#

Could someone double check that RA password is crackable with rockyou? I got the hash but could not get it to crack using John.

cerulean badger
#

i've problem with owasp top 10 room
i joined the room when it was introduced but it shows me that i'm not joined :/
i can't left the room and i can't also deploy the machine and solve the room
it seems buggy :/

spiral flame
#

@frosty cape Any ideas here?

orchid remnant
#

Could someone double check that RA password is crackable with rockyou? I got the hash but could not get it to crack using John.
@tired solar It is

tired solar
#

@orchid remnant ok I'll try it on a third system. Thanks for the confirmation

tired solar
#

@orchid remnant @timber marten Ok I am sure there is a bug for RA. The hash is not crackable with rockyou.

orchid remnant
#

I'll let 4ndr34z respond to that, but the machine won't have been updated since I cracked it when I tested it (can you confirm that @rotund cradle?).

rotund cradle
#

@orchid remnant. Correct. Not been updated....

tired solar
#

hummm..Can one of you confirm it still works as intended?

#

I understand it has not been updated but doesn't mean something else is not going as planned.

orchid remnant
#

Yeah, give me a second. Mind DMing me that hash and I'll compare it to the one in my notes?

rotund cradle
#

What wordlist are you running?

tired solar
#

rockyou

short jackal
#

Try forcing the hash format

tired solar
#

I can DM the hash but it will be different bc netlmv2 uses server side

#

I did

short jackal
#

John is picky when it detects multiple

tired solar
#

I tried hydra on ldapv2/v3 and I get a hit but can't use the password it "finds"

orchid remnant
#

What username are you trying with? I assume the exploit only works with one, but...

tired solar
#

buse

rotund cradle
#

I am sorry. I cannot test now.

orchid remnant
#

I'll go through it ๐Ÿ™‚

tired solar
#

Thanks

orchid remnant
#

Good way to get me out of bed anyway

nimble scroll
#

Hello guys!

#

Anyone know this error

tired solar
#

@nimble scroll Could you provide more context on what you are doing?

nimble scroll
#

When ฤฑ am trying to connect ssh to server

tired solar
#

yes it is saying the server needs a key to login

#

what server? a server in tryhackme?

nimble scroll
#

Yes man

tired solar
#

sorry the screen shot is cut off what room is that

nimble scroll
#

Welcome room

short jackal
#

I don't think you're supposed to ssh into that one

covert kernel
#

Hey guys I need some help

tired solar
#

Yea you just need to be connected to the VPN

nimble scroll
#

oh my got its my mistake guys sorry

short jackal
#

Also don't post the same message in multiple rooms

covert kernel
#

Ok

orchid remnant
#

@tired solar It's cracked immediately for me with a clean copy of the box

#

(Sorry -- took a while to get through to that stage ๐Ÿ˜†)

median sapphire
#

That background dark

short jackal
#

@tired solar what's the exact command you're using for John?

orchid remnant
#

I suspect it might either be the version of John, or that the hash hash has something missing from it

#

That background dark
@median sapphire I only activate it for screenshots!

short jackal
#

I think it might be the missing = in -w, didn't have problems without it at first but works every time when you include it

orchid remnant
#

Possible -- john is incredibly annoying with syntax

short jackal
#

Yup

tired solar
#

son of ....

#

stupid =

orchid remnant
#

Hehe, well done Szy

short jackal
#

It annoyed me so much when I found out about it

tired solar
#

yea now I feel bad I got ppl involved

short jackal
tired solar
#

for stupid syntax

orchid remnant
#

Nah, worth checking, and John is a pain in the rear end

tired solar
#

thanks again for the assist. I was loosing my mind on why it not cracking right

orchid remnant
#

Np ๐Ÿ™‚

rotund cradle
#

Good.:-) ๐Ÿ‘ @orchid remnant

orchid remnant
#

Yep, all good ๐Ÿ™‚

covert kernel
#

hi i am in the "eritsecurusi" room, I have extended the room by 1 hour. after the timer passed the 1 hour mark the room promted that it got expired. however I can still access the box(even when the room ui shows it is expired).

spiral flame
#

That's being investigated

wet frigate
#

in OSWAP TOP 10 room the task 8 u can't connect to the given link so you can't make the challenge
ipbox:8888

spiral flame
#

@wet frigate You can.

wet frigate
#

no i can't i can connect on all the website but not on the 8888 port

#

i can show you if you want

spiral flame
#

What's the IP?

wet frigate
#

i stopped the machine

#

but i will launch another

#

and give u the ip

#

just 1 min

#

10.10.118.119 @spiral flame

#

port 8888 for the task 8

spiral flame
#

Deployed my own

wet frigate
#

wtf

spiral flame
wet frigate
#

what i can do

#

i've relaunch the vpn

#

restart machine

spiral flame
#

If you're still having trouble, go to #site-support to actually fix your VPN.

#

This is not a bug.

wet frigate
#

okay thank u

spiral flame
#

Ok, can confirm something def up with timers

#

Just got a notification that something's expiring, like an hour after I manually terminated the machine

brave reef
#

@wooden igloo

pine quiver
brave reef
#

No it dies after they get the connection

pine quiver
#

Well if they were originally trying to catch it with a meterpreter they mightโ€™ve had the wrong payload

brave reef
#

Nope it's all correct, they even followed a writeup. Died everytime

wooden igloo
#

Ah hey guys ๐Ÿ™‚

#

Jabba thanks for raising this issue

dapper willow
#

hey, I have an issue with the XSS room's filter evasion step

#

my payloads generate the expected 'Hello' alert, but I don't see the flags

pine quiver
#

@dapper willow known issue. The room is very broken

#

You can get the flag if you keep trying but Iโ€™m not sure itโ€™s worth it tbh. Itโ€™s looking for a specific input and as long as you get the pop up just know you did it in your heart

dapper willow
#

lol, that's a terrible start for the tryhackme experience ๐Ÿ˜„

#

(1st room)

median sapphire
#

Hmm, it's being reworked

dapper willow
#

in the options there is also a "known issues" option, which doesn't show any issues

#

if it is a known issue, I'd expect it to show up there?

median sapphire
dapper willow
#

ok, so how do I get through this so I can complete the room? can I ping my solutions to an admin or something who can verify them and let me move on?

pine quiver
#

If you want to wait till smackhouse is on heโ€™ll tell you how the room wants it done

median sapphire
zinc viper
#

just out of interest was I right about the jigsaw box not being possible on THM?

median sapphire
#

Looks like it ๐Ÿค” The author of the box was busy so couldn't replicate and he's pretty inactive so ๐Ÿคท

zinc viper
#

think it's likely broadcast is filtered by your network ๐Ÿ˜„

median sapphire
#

Probably, I'll talk to one of the admins later ๐Ÿ˜„

#

The room will most likely be made private ๐Ÿค”

zinc viper
#

which means no one legitimately completed it here ๐Ÿคฃ

median sapphire
#

RIP

brave reef
#

There's a chance they did before it broke

median sapphire
#

It was always broke from the looks of it

brave reef
#

And it got past release? tsk tsk

median sapphire
#

The box was ported from vulnhubb

#

It's one of zayotic's

#

Pretty old box too if I recall

zinc viper
#

well the socat command could probably be modified too

brave reef
#

Oh in that case can't you get a copy off vuln and get the answer for the question?

zinc viper
#

yeah can do it that way

#

I did

brave reef
#

Yeah that's how the write-ups did it

median sapphire
#

well the socat command could probably be modified too
@zinc viper Yeah, but zayotic isn't really active anymore, so not much can be done there

brave reef
zinc viper
#

does it have to be the box creator that mods it ?

median sapphire
#

The admins could modify it, but it's more likely to be made private

brave reef
#

Yeah if the creator doesn't fix it they won't so I'd say do it ASAP

median sapphire
#

The room creator is a mod, and he isn't active anymore, you can catch him on the Vulnhub discord, he's a mod there as well

zinc viper
#

shame really its a cool box

median sapphire
#

Most of zayotics boxes are! ๐Ÿ˜„

wanton portal
#

Received this email even tho I have been active and completed a room last night.

zinc viper
#

day 44 of my streak today ๐Ÿ˜„

median sapphire
#

Very nice, we have a few people at 100, I stopped around 39-40

zinc viper
#

I'll be less concerned after the final badge tomorrow

brave reef
#

That's a voucher not a badge! :D

#

I mean discount

median sapphire
#

That's a voucher for the THM swagshop

zinc viper
#

is it not both? awww

brave reef
median sapphire
#

Unfortunately the swagshop was delayed, it's ready to be released, but delivery times are very high due to COVID

brave reef
#

Should be within the next month or two

orchid remnant
#

What's the problem with Jigsaw Mal?

median sapphire
#

Currently from the looks of it, it's currently impossible to solve it on THM

#

Which means everyone copy-pasted the flags

orchid remnant
#

Ah, I see

zinc viper
#

except me ๐Ÿ™‚

orchid remnant
#

@celest bronze I know you did it on THM, how did you get it?

median sapphire
#

0day did it on THM? ๐Ÿค”

pine quiver
#

I brute forced the flags

orchid remnant
#

I believe so

pine quiver
#

Ezpz

orchid remnant
#

No chance he used the writeup either

celest bronze
#

Yeah

#

I forget though

#

I may have it in my notes

#

I can check shortly

orchid remnant
#

๐Ÿคฆโ€โ™‚๏ธ

#

Thanks โ™ฅ๏ธ

celest bronze
#

Of course!

zinc viper
#

@celest bronze can you ping me ?

celest bronze
#

When I did Jigsaw1 & 2 there was no writeups!

#

Not currently @zinc viper

#

Everything okay?

zinc viper
#

no I mean when you look at your notes ...

celest bronze
#

If I have notes

#

lol

#

we'll see

median sapphire
pine quiver
#

0day does everything from memory

zinc viper
#

๐Ÿ˜„ I'm too old for that ๐Ÿ˜„

orchid remnant
#

0day is dreadful for taking notes

#

But @covert kernel is worse

zinc viper
#

I used to document everything including the stuff I tried and failed with ๐Ÿ˜„

#

but not for very long

celest bronze
#

Sent him what I have

#

We'll see if he was missing something

#

My notes are pretty bare

median sapphire
#

@zinc viper Any progress? ๐Ÿง

final mountain
#

If you enter an answer and quickly or accidentally press backspace it counts the answer as correct even tho it should be incorrect

#

I would post but don't want to show answers

median sapphire
#

That's just regex answer tolerance

final mountain
#

So nothing can be done about that?

median sapphire
#

Refreshing the page will fix it

final mountain
#

oh yea I see thanks

zinc viper
#

@median sapphire nothing new ๐Ÿ˜„

unborn elm
spiral flame
#

Also, @median dome any chance you could convert the text header to an image? @vocal raptor can explain to you, it's real bad for screen readers

covert kernel
#

it's anonymous hacking the webpage

pine quiver
#

It does a little wrappy wrap

spiral flame
#

It wraps the text or it gets the hose again

pine quiver
#

Pulls one of these for me

vocal raptor
#

^^ it does that, and also for A11Y purposes it is literally hell try to listen to that header in a TTS lmao

median dome
#

I'm comfused

#

What's wrong

#

I couldn't find a good text image of Anonymous

hazy stratus
#

tl:dr

#

screenshot the text

#

add it as a picture

median dome
#

Okay

hazy stratus
#

paste the ascii art into Google Translate and let it read it out to you

#

and that's basically what someone using a screen reader will hear

median dome
#

Okay so just remove it is what I'm hearing

hazy stratus
#

just replace it with a picture, and then you're good

median dome
#

Got it

#

Can do

#

Later tonight

hazy stratus
median dome
#

Sweet

abstract gorge
#

@flint vine don't know if you're the one who owns the shodan room but the 2 most popular country for googles ASN is no long the right answer, the right answer has move down to the 3rd position! hope you can get this fixed soon!

orchid remnant
#

๐Ÿคฃ That's an unfortunate name to have...

#

@vocal raptor

#

You're up

abstract gorge
#

lmaooooo

#

whoops

vocal raptor
#

oh no

orchid remnant
#

I wouldn't worry. Anyone with the same name as a mod is gonna get a tonne of pings...

vocal raptor
#

not more shodan issues

abstract gorge
#

i can dm you the answer

vocal raptor
#

@flint vine don't know if you're the one who owns the shodan room but the 2 most popular country for googles ASN is no long the right answer, the right answer has move down to the 3rd position! hope you can get this fixed soon!
@abstract gorge task num?

#

question num too ๐Ÿ™‚

abstract gorge
#

let me look

#

task 4 question 2

orchid remnant
#

๐Ÿคฆโ€โ™‚๏ธ

#

I feel sorry for this poor other Bee...

thin forge
#

So we got 2 darks and 2 bees.

abstract gorge
#

haha yeah pretty much

thin forge
#

2 Skidys.

orchid remnant
#

And only one Oracle!

#

Oh

#

Oops

vocal raptor
#

fixed

abstract gorge
#

lmaooo

#

also awesome

orchid remnant
#

What you removed the other Oracles for me Bee?

thin forge
#

Oops, all Oracles.

vocal raptor
#

@abstract gorge pls dont dm me Q.Q

abstract gorge
#

sorry broski

thin forge
#

But there's only 1 0day. Praise.

abstract gorge
#

didnt wanna put the answers in the bugs chat

orchid remnant
#

@thin forge I'm going to ask you a question, which I'm pretty sure you'll know the answer to

#

Because I can see Ryan doing this

thin forge
#

What the diddly dun. I literally just checked and only Ryan showed up.

abstract gorge
#

he must have lol

thin forge
#

Now there's 2 of them.

orchid remnant
#

@celest bronze are you abusing your nickname powers?... ๐Ÿคฃ

thin forge
#

I don't know if Ryan did that tho. Probably. Sounds like a total Ryan thing to do.

orchid remnant
#

That. It. Does

celest bronze
#

@orchid remnant That isn't me ๐Ÿ˜ฆ

#

So of course I did that

orchid remnant
#

smh

celest bronze
#

Like a month ago

#

๐Ÿคฃ

keen bough
wooden igloo
#

@pine quiver @brave reef Morning guys, did anything come of the Jenkins problem?

brave reef
#

No, it was working for Bob which means itโ€™s an issue for you and we canโ€™t do much about that sorry

median sapphire
vocal raptor
#

Ra 2 spelling mistake: "Just when they thought their hashes where safe... Ra 2 - The sequel - By theart42 & 4ndr34z" in the description

#

"where" -> "were"

digital turtle
#

@keen bough said but i want to report that too

keen bough
#

Yup it looks weird

pine quiver
#

@pine quiver @brave reef Morning guys, did anything come of the Jenkins problem?
@wooden igloo like he says it works for me. I can see whatโ€™s up if you have time later

#

Oops sorry for ping jabba

brave reef
#

It ok <3

digital turtle
#

Yup it looks weird
@keen bough u'r right

viscid helm
#

Good afternoon, I'm not getting the Stealthcopter ctf primer1 room, can someone help me?

spiral flame
#

Please use #room-help for that, this channel is intended for reporting bugs ๐Ÿ™‚

viscid helm
#

#room-help Good afternoon, I'm not getting the Stealthcopter ctf primer1 room, can someone help me?

spiral flame
#

Along the side bar, click on #room-help and type your message there please

#

This is still the bugs channel

rotund cradle
#

Thanks, spelling-@vocal raptor ๐Ÿ˜Š

warped topaz
spiral flame
#

?

warped topaz
#

I don't know if this is a bug

#

But this room is shown to me as if I hadn't done it

#

It's funny haha

spiral flame
#

I believe there was a task removed, which might be what broke it

warped topaz
#

Oh

#

No problem

pine quiver
cinder crow
#

no its not

#

they still dont support networks

pine quiver
#

Ya because you wonโ€™t gib networks

hot stump
#

Think I might have found a very small bug. Looks like the completion percentage in the learning path is rounding up from 99.xxx% -> 100%

brittle juniper
#

Its prolly a known bug, but I think it was worth repinging.
KoTH machines remain alive for one more hour if there had been a reset, and this is very annoying if I am playing back to back and some rev shell loop in last machine keeps sending me revshells on new machine.

#

Haunted by rev shells.

covert kernel
#

Hey there is an error in OWASP top 10, XSS room. Even right answers are marked wrong. ๐Ÿค”

#

the deployed machine is reporting error

spiral flame
#

Go to /, then go to the page it tells you to

#

Hey there is an error in OWASP top 10, XSS room. Even right answers are marked wrong. ๐Ÿค”
@covert kernel You're not meant to submit the payloads, you're meant to submit the flags that you get

covert kernel
#

okay

covert kernel
#

for example

thin forge
#

Room: /rpburpsuite
Task 9
At the bottom of the paragraph containing information about the next series of tasks, the room recommends checking out the older BurpSuite room for more practice. Only problem is this room is private.

For some additional practice on using Intruder, check out the older Learn Burp Suite room here on TryHackMe
Room referenced in the link: /learnburp

vocal raptor
#

Room: /rpburpsuite
Task 9
At the bottom of the paragraph containing information about the next series of tasks, the room recommends checking out the older BurpSuite room for more practice. Only problem is this room is private.

For some additional practice on using Intruder, check out the older Learn Burp Suite room here on TryHackMe
Room referenced in the link: /learnburp
@thin forge this is an amazing format and we should adopt it

quick ivy
#

Interesting 'problem' with the basic pentesting room. I accidentally skipped what I was apparently supposed to do (cracking the ssh key stuff) by just opening the restricted pass.bak file with vim lol

spiral flame
#

/releases could do with an update?

brittle juniper
#

Ah, that also reminds me of same problem, I am not sure if it's intended, but I've played some rooms, where vim/vi/vim.tiny/vim.* had ability to edit higher privileged files from a basic user.
And I am very sure that in most of the cases that was not the intended method to gain root.

#

In bsidesgtlibrary room, it is clearly not the intended method to be able to directly edit root only files using vim(without sudo or anything), but it allowed me to. So something's here for sure.

real hedge
spiral flame
#

This has been raised again and again, and hasn't changed

#

The usual issue is people not reading the answer format

covert kernel
#

Hey, i have an issue when the website tells me my machine is about to expire - and i prolong it, it still shuts off

brave reef
#

Already known

#

Refresh your page

covert kernel
#

okay thanks!

brave reef
#

@spiral flame The site is 1 higher than my answer from when I completed the room. I apologise if I'm being stupid and reading it wrong, I can send you screenshots over DM if you would prefer.

spiral flame
#

Wat

brave reef
#

On the website:

#

That is not my answer

#

Hence why I sent Dr.Groove here.

spiral flame
#

@orchid remnant plz fix answer T3Q4 google dorking

brave reef
#

<3

orchid remnant
#

@topaz venture that's yours ๐Ÿ˜

quick pilot
#

ah, seems i have the same issue as Kabba

#

Jabba rather

brave reef
#

Oh the empire issue?

pine quiver
#

jabba how dare you have issues

spiral flame
#

@iron merlin Dashboard says "next level" in front of it

iron merlin
#

Derp just realized lol

#

Yeah I was behind a level before the score switch

quick pilot
#

Is the page score a known bug?

spiral flame
#

Cmn has been tagged

quick pilot
#

anyone know the answer so i can complete it? it is the OCD in me.

spiral flame
#

It won't have changed much ๐Ÿ˜‰

quick pilot
#

tip? 5 give or take or more?

#

i'll do it last before i start going from 80 +1 loop

#

@spiral flame thanks found it.

gentle wigeon
#

On Common Linux Privsec room, Iโ€™m getting an error stating uh oh undefined on task 4 question 6

pine quiver
brave reef
gentle wigeon
#

Ok thank you

spiral flame
#

@pine quiver Fun fact, this was actually a bug

#

And still is

#

Uh Oh! Undefined isn't a room help thing

brave reef
#

@brave reef

#

I tried~

spiral flame
#

It's a bug with bitdefender rather than the site really

pine quiver
#

๐Ÿ˜ญ

#

i sorry

dusk oak
#

on the jupyter101 room, there is a link to support material on task 2, but the link doesnt work (leads to a 404)

topaz venture
#

I started moving all my hosted stuff to another provider, so that was an old URL

Iโ€™ve updated the room now, sorry about that! Should be okay now @dusk oak

dusk oak
#

yes works perfect now ๐Ÿ˜„

topaz venture
#

Solid ๐Ÿ‘

fossil haven
#

@heady cosmos The "Windows PrivEsc" room is broken can't do it without having to reset everyones passwords. Since the room is older than the password policy.

#

Also the room still shuts down after an hour. Even with extra hours

strong cargo
#

In CC:Pentesting, a specific flag is asked but answering - works. Maybe the answer tolerance, but it's the only question it worked for

digital thorn
#

Refresh doesn't fix it ?

brave reef
#

Ray is saying that it takes - as an answer when it shouldn't..

pine quiver
#

Yes itโ€™s just answer tolerance

heady cosmos
#

@heady cosmos The "Windows PrivEsc" room is broken can't do it without having to reset everyones passwords. Since the room is older than the password policy.
@fossil haven I'll fix the password policy, thanks for letting me know.

blazing laurel
#

stuck with last uopesay question, i can't find hash

spiral flame
ebon oyster
topaz venture
#

thanks for letting ke now (:

#

reeeeee a bit of DNS downtime and SEO goes up the fritz

ebon oyster
#

kekw apparently the site is ||1|| point better now.

topaz venture
#

I just checked kekw

#

I've removed it needing an answer so (:

#

give it a cheeky refresh

#

would help if I save the changes

spiral flame
#

There goes 8 points

topaz venture
#

kekw F

ebon oyster
#

F

topaz venture
#

There's your reward for reporting a bug ๐Ÿ˜‰

covert kernel
#

in steel mountain, first task first question, it asks for the employee of the month. the hint is ||reverse image search|| but the name of the image is the answer, hence no ||reverse image search|| is required.

worldly pagoda
#

TryHackMe Attack Machine speed is so good but i have keyboard issue some times not type and must refresh i think when i hit CTRL it not work

quick frost
#

I have just deployed Attacktive Directory machine and a basic port scan gives me more ports open that the required/prefered answer for TAsk 3 QNS: 1. Could you please check this ? 4 more ports are open than usual

pine quiver
#

@quick frost the room says sometimes windows is just being windows

wise maple
#

If you go from the Hacktivities link to a room, then go back to the Hacktivities link using your browsers back button, the filters will still be selected, but the list won't be filtered. Subsequent changing of the filters will only filter by the one changed, ignoring the rest.

timber marten
#

in ZTH: Web2, task 11. The wordlist given in the hint (big.txt) causes an error on at least one entry when using wfuzz. it may never get to the correct filename because of this. In the big picture, this doesn't really matter ||since you might not need this wordlist to solve the challenge||, but it could be very confusing to a beginner audience

desert tulip
#

In Firefox (Firefox Browser Developer, 80.0b8 64-bit, aurora update channel, Windows 10) I seem to be unable to expand the Socials tab in the left-side menu. I had the same issue yesterday but after updating the browser at the time it seemed to work, but it's now broken again. Does anyone else have this issue with Firefox?

spiral flame
#

Works on 79.0

native tangle
#

In Firefox (Firefox Browser Developer, 80.0b8 64-bit, aurora update channel, Windows 10) I seem to be unable to expand the Socials tab in the left-side menu. I had the same issue yesterday but after updating the browser at the time it seemed to work, but it's now broken again. Does anyone else have this issue with Firefox?
@desert tulip adblock maybe ?

desert tulip
#

kekw thx @native tangle, apparently it was my adblocker.

heady cosmos
#

@heady cosmos The "Windows PrivEsc" room is broken can't do it without having to reset everyones passwords. Since the room is older than the password policy.
@fossil haven Have fixed. New version is live in the room. It might be a bit slow. The admins are going to up the specs in the next hour.

fossil haven
#

@heady cosmos thanks again for fixing/updating the machine!

spiral flame
#

@covert kernel

in ZTH: Web2, task 11. The wordlist given in the hint (big.txt) causes an error on at least one entry when using wfuzz. it may never get to the correct filename because of this. In the big picture, this doesn't really matter ||since you might not need this wordlist to solve the challenge||, but it could be very confusing to a beginner audience

covert kernel
#

Huh

cosmic imp
#

Hi there, im in the room Scripting and the medium challenge deployment is very buggy - im finding it often unresponsive

brave reef
#

It is not, you will see that the port will rotate every 4 seconds. Meaning every four seconds one port will close and another will open. You need to work around this.

cosmic imp
#

no, the starting point is [ip]:3010 which should at all times be up but is not

#

"Go to: http://<machines_ip>:3010 to start..."

brave reef
#

Whatโ€™s the machine IP

cosmic imp
#

10.10.85.34

brave reef
#

Works for me

cosmic imp
#

sure try now

#

it timesout

brave reef
#

Yup still up

cosmic imp
#

it works then it doesnt

brave reef
#

Run this

#

!vpnscript

raw karmaBOT
brave reef
#

Oh wait I sent the same screenshot twice

cosmic imp
#

uhhhhh i had more than one connection running, ty ๐Ÿ˜†

wise maple
#

August 20th is before July 11th?

short jackal
#

lmao where is this

#

i knew the dates on the graph were weird sometimes but not that weird

wise maple
#

@short jackal new box (spring) graph

short jackal
#

this is weird af

wise maple
#

The description is also typo'd (upto -> up to), but that's more minor ;p

frosty cape
#

August 20th is before July 11th?
@wise maple Weird, I'll investigate why that happened. Thanks for reporting.

wise maple
#

Np - Good luck ๐Ÿ™‚

raven gull
#

hey, can't seem to DL my openvpn config file, getting 404 instead of download whatsup with that?

short jackal
#

try re-selecting the vpn server and maybe regenerating the config

#

if that doesn't help then the server might be down ๐Ÿค”

raven gull
#

It helped reselecting, thanks ๐Ÿ™‚

covert kernel
#

Guys i have a problem with all machines. Sometimes they responding and sometimes no. It's a big problem for me. Everything ok is with my internet and vpn. I have a connection and everything. Sometimes i can run exploit and sometimes no, couple of time i trying do sometimes, an attack, wpscan for example when i run any password attacker is problem with responding, connection is not stable ๐Ÿ˜ฆ

#

it is my vpn log

covert kernel
#

Whats happend with this?

pine quiver
#

it looks like the VPN might be dropping and picking back up over and over?

#

try to regenerate the config

covert kernel
#

ok i can try

#

but witch server should i choose?

#

i am from EU

#

EU-VIP or EU-Regular?

dusk oak
#

if u are subscribed, vip

covert kernel
#

i am from Poland

#

should i choose EU-VIP 1 or 2?

dusk oak
#

i think just test with both

#

just make sure u select one, generate the config file

#

and then just run it once, no multi vpn

covert kernel
#

ok so i had a 1, can i try 2 now

dusk oak
#

yeah select it, then generate the file

covert kernel
#

ok, so 2 look's more stable

#

thank you guys! i like this platform. is my second subscribe ๐Ÿ™‚

dusk oak
#

great ๐Ÿ˜„ always make sure you dont multi vpn and then it should all go smooth ๐Ÿ˜„

covert kernel
#

yep

#

just killall openvpn

#

and creating a new connection

#

now have a tiny problem

#

wpscan is cracking password for jack machine now

#

and sometimes i have a :
Error: No response from remote server. WAF/IPS? (Couldn't connect to server)

#

why i see it?

#

maybe my isp have a WAF or IPS?

brave reef
#

Have you googled that errror?

covert kernel
#

ah..nope

#

one minute

#

ok --random-user-agent and is much less of this errors..

sterile shadow
#

I'm not sure if this is a bug in the distribution or in the way it has been installed but when you highlight things in kali inbrowser Maxine to delete, it doesn't for some reason.

#

It waits until you have inhighlighted it all and then gone to end of line

covert kernel
#

this wpscan was very slow

#

but now i tried with more threads and i hear my GPU is working now ๐Ÿ™‚

modest sedge
#

hey! it shows my rank as "Satoshi Nakamoto" ! whats that supposed to mean?

spiral flame
#

That's not your rank

digital thorn
#

This happens too often and I can't type the questions

#

I always have to delete the whole task an start again

#

p.s. I have worked too much on this current task to delete it (T_T)

digital thorn
#

nvm I deleted the task. but still look into this

topaz venture
#

I've been managing tasks / questions this last week or so and I haven't had that happen (that ain't to instantly dismiss it)

#

Least not ever had it happened

#

Browser / extension interferring perhaps?

digital thorn
#

I use very limited extensions, I can try disabling them

spiral flame
#

I really recommend making the tasks in google docs or notion first, then writing them up as HTML and just using that rather than the WYSIWYG editor

digital thorn
#

Noted

covert kernel
#

My friend cant view the index page of the ctfs

#

Can someone help him ?

spiral flame
#

That doesn't sound like a bug to me. Can you get them to join the discord and go to #site-support with some more detail?

covert kernel
#

Ok

sick coral
covert kernel
#

fixed

sick coral
#

You got that one too? ๐Ÿ˜ฑ

covert kernel
#

oh

#

not that one

sick coral
#

Its different one ๐Ÿ™ƒ

covert kernel
#

Cat my friend

spiral flame
#

Where's the issue there?

covert kernel
#

there should be a "to" there

sick coral
#

it allows you to find data inside of data

#

That ^

covert kernel
#

James

spiral flame
#

Whoa small writing

covert kernel
#

Im gonna need another cute doggo

thin forge
#

Hahaha I love when brains autocorrect.

spiral flame
sick coral
#

For instance let's say you know you have the file name of test1234

spiral flame
#

Jesus Christ Pars. Grammarly or something...

#

We're going to run out of dog pictures

sick coral
#

I'm assuming you don't mean if like a conditional statement?

covert kernel
#

@sick coral shhhhhh

#

you arent just hurting me

#

you're hurting James

spiral flame
#

Huh? No. These need fixing.

covert kernel
#

an innocent bystander who loves dog pics and hates seeing this

spiral flame
#

Pars fixit.

covert kernel
#

James shush

#

I am trying to sound emotional

#

DeadCatLady

#

we have families

#

obligations

#

cute dogs to attend too

#

when you send these pics you arent just hurting us, but you're hurting them

#

you're taking away the time we have to be with them

sick coral
#

Did you find all the grammar errors before I do? ๐Ÿ™‚

spiral flame
#

Pars, admit it. You have nothing to do but play mahjong. And fix grammar.

covert kernel
#

That

#

is

#

true

#

and frankly james I am offended

#

which is a violation of rule 8

#

!rule 8

raw karmaBOT
#

Rule 8: Keep conversations SFW (Safe for work). This is an educational and professional environment, be sure that your words do not offend or make other members uncomfortable.

thin forge
#

Actually, Pars plays Go Fish

covert kernel
#

Sundae

#

It is the ancient high culture game of mahjong not this silly go fish @thin forge

thin forge
#

Go Fish is enlightenment. You not appreciating it is a bug. Therefor, I'm reporting the moderator, Paradox, as a bug.

spiral flame
#

Closed: we tried to fix it but his parents said he was "a perfectly normal guy" and we should "stop bothering him and let him play mahjong for hours"