#site-bugs

1 messages · Page 21 of 1

covert kernel
#

Well played James

#

you took the little that sundae gave you to work with and made it actually effective

thin forge
#

I'm re-opening ticket because the response was canned: associate did not understand that the spelling of "Go Fish" was wrong and they spelled it like "mahjong", whatever that is.

spiral flame
thin forge
#

Page is broken

#

404s out

fresh tide
#

Working fine for me 🤷‍♂️
Report submitted successfully on Pars!! Admins please take action

spiral flame
#

*muir

covert kernel
#

You both need professional help

median sapphire
#

👀

nova salmon
#

On the on-web VM "TryHackMe", when we do System > Administration > Users and group, the window pop up but is constantly loading and we can't interact with it anymore

spiral flame
#

@orchid remnant u broke it

orchid remnant
#

That bit was Skidy

pine quiver
#

Its your fault for not stopping skidy then

topaz venture
#

kekw true

spiral flame
#

I think it only shows a fixed number of rooms?

digital thorn
#

That's your punishment for making so many rooms blobknife

brittle juniper
#

Ah, seemingly all room lists/general list share the same backend, that would settle why KoTH machine pool table/list also shows only 10 rooms.

unborn elm
proud osprey
#

Am I supposed to be able to see the whole /16? Nmap done: 65536 IP addresses (692 hosts up)

#

I guess it doesn't matter since it's not persistent

#

Nevermind

wise maple
#

On the "My Rooms" page, the full page listing UI is shown when only a limited amount of pages are possible

pine quiver
#

the extra ones are greyed out

#

i dont think thats really a bug

spiral flame
#

@orchid remnant Attack VM has hashcat but a) It's an ancient version... We're on version 6
and b) No working OpenCL so you can't use hashcat properly

#

Sorry for this Muir, but me like password cracking

orchid remnant
#

Hey, I pushed against adding it 😆

#

It was on the list of tools, so it got added, but I did say that there was no point in putting it on.

spiral flame
#

@orchid remnant The issue is, both Hashcat and John aren't properly functional

orchid remnant
#

Eh? John isn't working?

#

Oh, because it needs the jumbo version?

spiral flame
#

And it's 1.8

#

Not 1.9

orchid remnant
#

Nothing I can do about the repos -- that's the most up to date version on 18.04

spiral flame
#

Don't install it via the repos then

#

Repos don't have jumbo

orchid remnant
#

Meh, fine, I'll take a look at it in a bit

median sapphire
vital dragon
#

In the empire room some answers are not possible with the latest version of empire

I found by downloading older releases

spiral flame
#

It's on Dark's list

hazy stratus
#

Darks list:

  • Make new rooms
  • Administer Discord
  • Fix Blue /s
  • Fix Empire
cinder crow
#

I’ve talked to dark about redoing it I may pick it up and redo it once I’m done with my other projects

lone vector
desert tulip
#

New Rooms on the dashboard doesn't seem to be in sync with releases; should be showing Spring, Relevant and Internal atm.

spiral flame
#

Those rooms haven't had their release dates reset properly so they don't show up as new

unborn elm
fresh tide
#

(Dashboard not counting KoTH flags submission for streak)

unborn elm
#

Actually, that XSS room as a few grammatical errors.

digital thorn
#

fine for me, always have been,also when I only submit koth flag

fresh tide
#

(Dashboard not counting KoTH flags submission for streak)

digital thorn
#

yeah just did it yesterday

#

only koth

ruby dawn
#

hi everyone did you ever had this bug ? In room "Learn Linux" you can't respond to an answer because fields are not shown ?

brave reef
covert kernel
#

@ruby dawn yup dude .. I'm here for the same reason

#

Infact on my profile it shows more rooms than I am actually in ..

ruby dawn
#

ok thanks guys

covert kernel
#

Hello

wise maple
pine quiver
#

He’s just so good he starts with the points

fair cypress
#

I joined git happens earlier, and now i'm not in the room, when i go to my rooms it is there but i cant deploy the machine nor answer the question in the room

spiral flame
#

Click join room?

#

I think you might need to be forcibly removed by an admin

fair cypress
#

i clicked lol

#

many times

#

doesnt work

spiral flame
#

It has to be an admin

#

Not even muir

#

Because bans are permanent(ish)

fair cypress
#

oh, so i send an email to someone?

fair cypress
#

issue resolved already

#

no need to remove anymore

spiral flame
#

Huh, ok, was it something you did or?

fair cypress
#

i used burp to edit a request to leave the room

#

because it didnt had the option to leave

spiral flame
#

There's a snippet pinned in #resources for future reference

fair cypress
#

ok 😄

loud latch
#

hello all...any resources for git happens room....i found it but dont know what to do with it

spiral flame
#

@loud latch Hi. That doesn't seem to be a bug. We also politely ask that you respect the fact that it's a newly released challenge room, and as such please don't ask for hints yet.

#

!rule 13

raw karmaBOT
#

Rule 13: When asking for help/tech support please perform research to your fullest ability. Mods and Community Mentors have the right to refuse helping those who have not done troubleshooting/research on their own first. Clearly phrase your questions as we (fortunately for all parties involved) cannot read your mind. Please include the room, task, and question number in your question if possible.

Although we are a a learning platform, we politely ask that you respect the competitive nature of newly released challenges. As such, no hints for new challenge boxes should be given immediately after a release, unless specifically allowed by the content creator.

loud latch
#

my bad dude

spiral flame
#

No problem

covert kernel
#

anybody done with relevant room ?

digital thorn
#

Doesn't belong here

median sapphire
#

No

#

@orchid remnant

orchid remnant
#

@lucid crane yeah, that's a no thank you. Including in DMs. Please see rules one and three

#

!rule 1

raw karmaBOT
#

Rule 1: No unsolicited direct messages (DMs) to other members of the discord. This includes staff. Verify that the member you are messaging is ok with you sending them DMs. The only exception to this rule is if a situation warrants the involvement of a moderator in order to handle something such as harassment or a situation where another member of the discord has made you feel uncomfortable.

orchid remnant
#

!rule 3

raw karmaBOT
#

Rule 3: No excessive self promotion. Linking to another discord server is strictly prohibited, just don't turn it into advertising.

ebon oyster
#

streak on Dashboard still broken?
@fresh tide happens to me. I recon it's a timezone issue

pearl fable
#

idk if its the right place but in AD basics i cant find the cheatsheet (i guess is not uploaded)

#

/activedirectorybasics is the room

#

task 8

topaz venture
#

Mhm yup, I can't seem to see it either. @cinder crow could you take a look when you get a chance pretty please? :3

cinder crow
#

checking now

#

oh I may now why.... Will might have taken it down now that they stopped supporting powerview

topaz venture
#

Can't see mention of a cheatsheet in any of the tasks aside from Task 8 where it says you can use the one provided ^^ unless it's on the box that you need to deploy?

cinder crow
#

?? where did the cheatsheet go?

pearl fable
#

i think it would be in the task cause in some part of the text says "use the following cheatsheet" like if there is an hiperlink

cinder crow
#

It somehow got removed but I replaced it

pearl fable
#

thanks

topaz venture
#

Thanks @cinder crow ❤️

fresh tide
topaz venture
#

Can you double check the streak count on your profile? It's in the same section as your general activity. That's supposed to be the most reliable record from what I recall

brittle juniper
#

IMO Streaks are a bit broken rn. I lost mine of 9 days because of some weird reason that I don't know. (9, it's not much but it's honest work. xD)

vocal raptor
#

IMO Streaks are a bit broken rn. I lost mine of 9 days because of some weird reason that I don't know. (9, it's not much but it's honest work. xD)
@brittle juniper They are very broken

fresh tide
#

Bee you didn't change your name today smh 👀

quaint wasp
#

hi

#

a friend is doing "learn linux" room and the as not acces the the qestions, is this normal or is a bug?

brave reef
#

@quaint wasp what is his username on THM

covert kernel
#

Hello. I propably found a bug.
Machine is jack.
I tried use a exploit:

unix/webapp/wp_admin_shell_upload

and i have a problem with credentials

[] Started reverse TCP handler on 192.168.40.128:4444
[
] Authenticating with WordPress using wendy:changelater...
[-] Exploit aborted due to failure: no-access: Failed to authenticate with WordPress

#

what is wrong?

brave reef
#

Your LHOST is wrong

covert kernel
#

ah thanks

quaint wasp
#

Is Macka23

brave reef
#

Okay someone will fix it soon

quaint wasp
#

i have created a new acc to see if i have the same problem

#

and i have the same ^^

brave reef
#

It's a known bug, Ashu will sort it soon.

quaint wasp
#

aah ok ^^ thx

covert kernel
#

still the same

#

something is wrong with wordpress auth but login and password is ok

brave reef
#

it's not a bug with THM

spiral flame
light shard
#

Hi, I am not able to access the questions in room "Learn linux". It is all green but say 0%. My username in THM is okolsen

brave reef
#

Leave and rejoin the room

light shard
#

ok..working now..Thanks a lot 👍

broken sorrel
#

Hi there, can I please get the ”Learn Linux” room questions activated
usr: stonestepper

sly raft
#

leave the room and join it again

broken sorrel
#

Got it. -thx

fossil haven
#

H3LP all the windows 0r M0st oF the windows machines auto die after an hour regardless of how long they are extended. Been a issue for months...

cinder crow
#

Its something theyre already aware of and working to fix

fossil haven
#

how many people are working on it @cinder crow ?

cinder crow
#

the admins

fossil haven
#

can anyone give them a hand?

cinder crow
#

Nope

fossil haven
#

D:

green hare
#

Have to report this room

#

Task 3 question 2

spiral flame
#

CMN is working on updating that room already 🙂

green hare
#

How would I update REMnux? According cheatsheet should be ||remnux update||

#

But is not, is there another cheatsheet or something? Even the ******** *** doesnt match

digital thorn
#

upgrade updates all the tools and adds new one. update updates your existing packages. There is another command that updates and upgrades renmux in one go. If only you had actually searched on the internet

spiral flame
#

Hey, this was closed. The room is being updated by cmn. Please don't add more fuel to the fire here, there's already too much frustration

digital thorn
#

I'm just answering 🤔 his question

#

Am I supposed to know beforehand what questions to answer and what to not

true wind
#

Hey I think there's an issue with 'Learn Linux' room. Every task are already green and there is no progress bar. Even if you complete the room the progress is still 0%. Is anyone facing the same issue?

topaz venture
#

Leave the room and rejoin @true wind there was a bit of a bug with it to say the least. That should have you sorted afterwich 👍

covert kernel
#

Hi! I'm having some trouble with the PostExploit box. When i SSH into the machine the box drops the connection after a minute or two. The box also does not respond to pings either. After a while it comes back up and as soon as i have a connection, it disconnects again after a minute or so.

#

Things i tried:

Using different distro and PC
Checking if own packages are up to date
Waiting 10 minutes from boot

final mountain
#

It won't respond to pings because it's a windows box

#

It might be your vpn if you keep disconnecting but idk it could be that it just loses a connection after everywhile sometimes that does happen

#

for me anyway

covert kernel
#

Ive been in this for a few hours now and i also switched THM servers. But no luck so far.

final mountain
#

the pings isn't a bug but I think when I did that I had the same problem so it might just be the box itself

covert kernel
#

Well i do receive ICMP replies, and when i do. I can connect to SSH. When pings fail, so does SSH.

final mountain
#

Maybe try RDP

covert kernel
#

Guess well have to wait for an admin :-)

#

Ye, same issue tho. Gonna retry that again.

#

Thank you so far :)

ocean quest
#

Is there anyone to whom i can ping except skidy?

orchid remnant
#

With regards to?

ocean quest
#

Bug

median sapphire
#

👀

orchid remnant
#

If it's a room thing we can fix it in here 🙂

ocean quest
#

Ohh cool. Thanks

fresh tide
#

I'm still confused in those mails when to use which. If someone can clearify that and pin it somewhere?

hello@tryhackme.com
support@tryhackme.com```
orchid remnant
#

info I have no idea

#

support is for things that have gone wrong

#

education is if you're a teacher and want to buy in bulk

#

hello is basically everything else

covert kernel
#

I'd assume info would be for promotional stuff

orchid remnant
#

Honestly @fresh tide, that's the first time I've seen that email recommended. Bugs are meant to be support@tryhackme.com, iirc. Might be hello

#

I'd suspect it's just a wrong email

#

Either way, it all ends up in the same place 🤷‍♂️

fresh tide
#

Okay 👌

devout moss
orchid remnant
#

@covert kernel fix pls

fresh tide
#

It's been reported way too many times

#

Intended 🤷‍♂️

#

As they both do almost the same thing. Just replace mv with cp.

orchid remnant
#

*sigh* Para, fix or I'm going through your rooms and randomly adding in "Paradox is an idiot" in random places

short jackal
#

admin abuse reeee

orchid remnant
#

Hah, I wish

fresh tide
#

#site-bugs have more bug reports for learn linux room than whole thm reports kekw

orchid remnant
#

True

#

Are either of you busy?

short jackal
#

maybe?

fresh tide
#

Asking me? 👀

orchid remnant
#

You or Szy

#

If one of you has the time to go and replicate that screenshot properly, I'd be grateful

fresh tide
#

I got nothing to do really. So I'm free

orchid remnant
#

Otherwise we're waiting for Para to get off his rear end

fresh tide
#

Szy if you can do it? I'm on my phone atm

short jackal
#

sure

orchid remnant
#

Thanks Szy ♥️

short jackal
#

colors might be bit off tho kekw

orchid remnant
#

You mean you don't use cmd.exe? kekw

short jackal
#

that'd require me to install putty pikapika

orchid remnant
#

Ach, sod it, that will annoy me, I'll do it myself -- shouldn't take long 😆

short jackal
#

i'm pulling it rn

orchid remnant
#

Or that 🤷‍♂️

#

Meh, sod the colours

short jackal
#

i'll send it in a minute or so

#

ah the pesky cursor

spiral flame
#

You can shop out the cursor

orchid remnant
#

Yep, I'll do that quickly

#

Thanks Szy ♥️

short jackal
#

here's one without

orchid remnant
#

Fixed

#

Finally

covert kernel
#

Hi! I'm having some trouble with the PostExploit box. When i SSH into the machine the box drops the connection after a minute or two. The box also does not respond to pings either. After a while it comes back up and as soon as i have a connection, it disconnects again after a minute or so.
@covert kernel Upping

spiral flame
#

Sounds like a VPN issue rather than a bug to me.

solemn bobcat
#

"vnc.tryhackme.tech unexpectedly closed the connection."

frosty cape
#

"vnc.tryhackme.tech unexpectedly closed the connection."
@solemn bobcat What do you mean? You deploy a machine, try to control it in the browser but it shows an error?

forest cedar
#

Hey the Powershell room VM appears to be missing cmdlets. I'm on the enumeration section and don't even have the Get-LocalUser cmdlet

#

Have rebooted with no success, btw

spiral flame
#

Also, you're in a 32bit powershell on a 64bit system

forest cedar
#

cool thx

short jackal
#

Site isn't working plz fix

fickle garnet
#

@covert kernel Upping
@covert kernel try logout from the PC and re login . It definitely works. I too faced the same issue.

fossil haven
#

it's the one below

frail hollow
#

Anthem goes offline sometimes when i open this dir ||/umbraco||

#

is this a bug or what?

crimson palm
brave reef
#

Are you using the other website to check it’s score?

visual cliff
#

Hi. I got flag 7 in Linux challenges task 2 but it says I’m wrong

#

I’m not sure why.

spiral flame
#

@visual cliff DM me your flag.

#

I have the correct one here

#

Resolved.

thin forge
#

Room: /vulnersity
Task 4
Awkward transition on Task 4 as if the sentence was cut short.

`To gain remote access to this machine, follow the

Edit the php-reverse-shell.php file and edit the ip to be your tun0 ip (you can get this by going to your access page on TryHackMe and using your internal ip).`

Secondly with the part included in the quote, referencing the access page seems to be iffy. Perhaps providing minor instruction on using ip address to grab your tun0 IP?

turbid osprey
#

Throwback task 6: wrong picture for ||Get-NetDomainController||

hazy stratus
#

Will update that in a bit ^

orchid remnant
#

@thin forge the access page does reliably give you your tun0 IP. Just not whether you're actually connected.

thin forge
#

That's interesting

#

I think it makes no sense. But I guess it would depending on how the access page determines how you're connected.

orchid remnant
#

From memory it just regexes the list of usernames that the OpenVPN server gives it

#

Essentially the OpenVPN servers do reliably give your IP because it's linked to your account and relatively unchanging, but handing the dynamic user list over is more of a problem. That's my understanding anyway, from what the admins have let slip

graceful oracle
#

Alfred Task 1, questions 1: The answer you have as correct is wrong. That is, if you only submit the amount of TCP ports open, it is 'correct' but there are UDP too, which you don't seem to have taken into account

spiral flame
#

@orchid remnant It doesn't show your IP unless it thinks you're connected

orchid remnant
#

If it doesn't think you're connected

#

Bearing in mind that it's broken and nearly always thinks you're connected

#

Then you have bigger problems

spiral flame
#

It's often the other way around

orchid remnant
#

Damn

#

Would you like to type up something really quickly about grabbing your IP from your tool in the OpenVPN machine James?

#

I can throw it in

#

Or is that already covered in the welcome room?

spiral flame
#

Sure, it's going to be up 24/7 and it's got a catchy IP.

orchid remnant
#

If so I can just link to that

#

Cool -- either or

spiral flame
orchid remnant
#

Nice 😁
That's some IP

#

Right, I've updated that task

#

How's that @thin forge?

thin forge
#

I’ll check it out here in a bit after I wake up

cosmic imp
#

hey guys, just got a 30 day streak but a badge doesn't show up - am I missing something?

fresh tide
#

It can take upto 24 hours on 30th day for the badge ( if there's any)

final mountain
#

I got mine after completing a room the next day so that’s when you might get it

tender nimbus
#

"Room making tutorial" button in the manage room page only makes my page darker

thin forge
#

@orchid remnant After checking the changes you made, it looks great!

#

I think referencing 10.10.10.10 and instructing someone to do that might be easier and less confusing than telling them to use ip addr

orchid remnant
#

That was my thought

mild breach
#

still has da problem of needing to logout because it thinks i'm uploading

pine quiver
#

I get this too

barren minnow
#

Hi

pine quiver
#

Hi

fresh tide
#

Hi

elfin plaza
#

how do i change my username or delete my account in tryhackme?

pine quiver
#

Email support@tryhackme.com

#

If you’re deleting your account to change your username it’ll be the same time as changing the username since they both go to the same email

#

So id recommend just waiting for them to reply

#

For the former

elfin plaza
#

so changing the username is possible?

hazy stratus
#

yes

elfin plaza
#

thanks 😉

hazy stratus
#

welcc, asking nicely always helps too! pro tip, it helps a lot with social engineering too kekw

covert kernel
#

Social engineers are just people who have learned the word please

drifting quail
#

i cant change the official writeup of my room

#

its a onedrive link

#

it looks like

#

wait

#

it actually saved it

#

but it still gave me the notification

ebon oyster
#

Bugs alert:

While loading my rooms page when the Room /myrooms call is not yet completed and i press filter completed it throws error (which is not an error per say but null case handling would be useful)

But weirdly, even after the response of myrooms the filter completed doesn't work. And still shows Uncaught TypeError: Cannot read property 'length' of undefined.

I get it for the initial one, but latter one seems like a bug.

cosmic imp
#

Hello,'Rooms In' on my dashboard is incorrect

icy ledge
topaz venture
#

That's a bit of a bug when you start filtering i.e. Filter Completed before the whole list loads @cosmic imp if you were to refresh and let it load it should display okay (:

fresh tide
#

Or hyou may have joined a room that became private i.e welcome to tryhackme room

abstract glen
#

hey guys I got a problem... for 2 days some rooms are being disconnected and I don't know why

#

I ping them but sometimes it's working and sometimes it doesn't

fair cypress
#

There are some rooms that dont respond to ping

orchid remnant
#

That's the Windows default firewall

#

Consider it a feature 😁

abstract glen
#

yes I know but I mean when I ping them in a first time it respond and after few minutes the room doesn't respond... like if the room has been disconnected

spiral flame
#

That's probably not a bug and probably a VPN issue?

abstract glen
#

yes maybe but my vpn is still connected

spiral flame
#

It sounds like it's not working properly

#

"Connected" doesn't mean fully working

abstract glen
#

true

#

well I will regenerate my openvpn access

spiral flame
#

That doesn't fix all VPN problems.

lone vector
#

Hello,'Rooms In' on my dashboard is incorrect
@cosmic imp I have the same issue and haven't gotten a reply either 😦

#

Mine appears off by two now as well 😫

autumn wave
#

omg what is that name

median sapphire
#

🤔

thin forge
#

why people do that

#

what am I supposed to call you

pine quiver
#

▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓▓ you clearly call him/her/they/it this

covert kernel
thin forge
#

There's something funny about it being Szy and finding that

fresh tide
#

@short jackal stop breaking the rooms kekw

short jackal
#

@covert kernel already mentioned to skidy and it'll probably be resolved soon™

fresh tide
#

BugHunter for a reason 🤔

ebon oyster
keen bough
#

szy special flags

unborn elm
#

Does bughunter role apply to grammar/spelling nazis? Because if so 👀

median sapphire
unborn elm
#

Ma1ware please. I've found SO many. mostly paradoxs' rooms

ornate moss
#

haha grammar go brrrrrr

fresh tide
#

Forum Sort By option is broken. When you select Top and then Newest . it won't show you the newest posts.

wise maple
spiral flame
#

This is due to the date not being reset

#

A fix is coming

wise maple
#

Aaah, thanks

#

Is the fix for the room specifically, or going forwards?

spiral flame
#

It will fix this for every room

wise maple
#

Aaah - Awesome 🙂

unborn elm
#

Leader board for "Australian - All Time" works and I am showing up there but "Australian - Monthly", as can be seen, shows at the top that I am #11 but I don't show up in the list.

rugged spindle
topaz venture
#

That’ll be history of commands that were run when the box was being setup (:

#

Doesn’t look like bash history was cleared when the AMI was made

rugged spindle
#

Is that supposed to be happening?

topaz venture
#

It’s not supposed to be there, but there’s nothing revealing in it / any actions from another THM user

#

They’re just the commands from when the admins were setting it up to deploy onto THM, usually it gets cleared but I guess it was missed this time (:

rugged spindle
#

I see. Thanks for the insight!

wheat heron
#

A long tiem ago I joined the linux challenegs room when it was free

#

now the room became a paid one

median sapphire
brave reef
median sapphire
#

👀

wheat heron
#

Nice workaround, it worked, but a proper buton woudl be nice.

pine quiver
#

It tells you exactly what to run

#

That’s not what it tells you to do

#

gem install bundler:1.17.3

fringe portal
#

sinks away into hedges

pine quiver
#

come out of hedges youngling

topaz venture
final flame
#

I am new, trying to start the Kali Machine and I keep getting an authentication error, any help?

orchid remnant
#

Could you screenshot it? 🙂

brave reef
#

Misti I responded

#

Select another machine e.g if you’re using attack box, switch to normal kali. Then boot it up and once it’s loaded terminate it and boot the original one again

spiral lynx
#

anybody run into any issue where you completed a few rooms a few days ago, and now it doesn't show you completed them?

pine quiver
#

Check if there are new tasks in the room

spiral lynx
#

nothing new, looks like it just reset the progress I had on the room

#

just gonna do em again eventually, more practice

deft tartan
#

Uhm … how does one change one's location?
Selecting the correct one from the dropdown doesn't seem to update the profile, at least the change does not seem to persist.

#

Also: Negative ages are totally a thing in the profile 😄

stray terrace
#

@cinder crow the AD basics room

#

am i imssing something?

cinder crow
#

What about it

stray terrace
#

Im trying to ansewr the very last two questions ... well i got the last question by working around my issue but for the question: Which group has a capital "V" in the group name? im trying to use powerview .. specifically Get-DomainGroupMember -Identity "Domain Admins" -Recurse but the powerview script doesnt appear to include this funcationlity

cinder crow
#

Use the cheat sheet

stray terrace
#

I am, that command is from teh cheat sheet

cinder crow
#

you’re attempting to view a group member not a group

#

From what I can see

stray terrace
#

Get-DomainGroup -MemberIdentity Admin2

cinder crow
#

Why are you trying to find members of a group?

stray terrace
#

that command is supposed to "# get all the groups a user is effectively a member of, 'recursing up' using tokenGroups"

#

which for the question ... what group has a capital V .. seems like what im looking for

#

show me all the groups that admin2 is in, ok.. now Administrator... ok now etc etc

cinder crow
#

why not just list groups why are you trying to list groups that a member specifically is in.

#

Because by listing groups that a member is in youre not going to find the answer

stray terrace
#

searching that cheat sheet to try and find something applicable

#

well i solved it, but what i needed wasnt on that cheat sheet

cinder crow
#

a cheat sheet usually isn’t designed to hold everything needed it gives you a base to work off of and maybe a few off the wall commands that aren’t easy to just guess. There are two ways in that cheat sheet that allow you to find the groups as well as with a tiny bit of guess work or research find that get-domaingroup is what you want

#

the only solution for it would be for me to make my own cheat sheet however Will has already made an amazing cheat sheet as one of the creators of power view and an amazing hacker

stray terrace
#

the get-domaingroup is not the option i used to solve it

brittle juniper
#

Broken still?

median sapphire
#

👀

open viper
#

Does anyone else face cmd freezing issue. I have okayish internet connection but my terminal freezes on alot of boxes. Also if one some box port 80 is open accessing the website is one hell of a task. I have tried restarting openvpn and changing the server.

spiral flame
covert kernel
#

Hey! I think there is a potential bug in the leaderboard section

fair cypress
#

Where is the bug?

median sapphire
topaz venture
#

Fixing (: ty

#

Sorted @median sapphire 👍

median sapphire
#

No CSS on the old one? 👀

topaz venture
#

I'm moving everything

#

the only problem with using a static site gen :\ you're a bit screwed if you gotta change anything

#

CSS should load on that now tho

#

if not, have fun kekw

#

oh hang on I got the posts mixed up

covert kernel
#

Lesson in tryhackme doesn't see pictures

median sapphire
#

...

topaz venture
#

Now thats fixed ahaha

spiral flame
#

Lesson in tryhackme doesn't see pictures
@covert kernel I have already told you what the problem likely is. This is not a bug.

median sapphire
#

Yeah, just saw it, thanks CMN

covert kernel
#

@topaz venture bana mı gülüyon yarramm

median sapphire
#

🧐

covert kernel
#

ne var len

spiral flame
#

Please keep it in english

topaz venture
#

I'm going to take a very big assumption that wasn't offensive. English please.

spiral flame
median sapphire
#

It's offensive from what I gather

covert kernel
#

bakarız

median sapphire
#

@spiral flame Press on the correction and you'll see the meaning

spiral flame
#

@covert kernel English.

covert kernel
#

@spiral flame no its dont true

#

ok

spiral flame
#

But I have told you the issue

#

And it is not a bug

#

@covert kernel Final warning. English only.

covert kernel
#

ı am TURK ı no spek engılsh

spiral flame
#

This is an english discord.

covert kernel
#

Are you sure your suggestion will work?

spiral flame
#

Yes.

#

This is not a bug

covert kernel
#

swear

#

ok

orchid remnant
#

Sorted @median sapphire 👍
@topaz venture Now you sort it! 🤣

#

I tried to reference that damn post in my exam and couldn't find it!

covert kernel
#

@spiral flame You're your man, brother. it worked thx

median sapphire
#

🧐

covert kernel
#

@median sapphire ?

covert kernel
#

Where is the bug?
@fair cypress On the leaderboards page. You can see for yourself

covert kernel
#

This is the bug - Before today(3pm as I was aware) the leaderboards looked fine. Now what happens is, if you make points, the monthly standings reflect the worldwide standings which should not be the case.

sterile shadow
#

With the Kali inbrowser machine, there a problem with metasploit, you have to uninstall it and reinstall it before you can run any metasploit commands.

topaz venture
#

Do you by any chance have a picture/copy of the error? 😅

sterile shadow
#

I can get it for you

topaz venture
sterile shadow
#

Yeah

frosty cape
#

@fair moon @frail vessel I'm not sure which one of you found it first, but could you please retest the point duplication bug. If you manage to get it working again, please stop testing it and let me know.

topaz venture
#

Looks like Kali is gonna need a working snapshotting as well

frail vessel
#

@frosty cape Briskets was the first to notice it, I'll give it a test again now quick

fair moon
#

@frosty cape Briskets was the first to notice it, I'll give it a test again now quick
@frail vessel sounds good. i'm sure suitguy mastered the art lol. i just wanna put it out there i didn't do it on my main! 😄

frail vessel
#

@frosty cape Still working

#

Do you want me to send you the exploit to test it?

frosty cape
#

Yes please

sterile shadow
#

Also with the Kali Box, Im not sure if this is because of the developers of kali or the snapshot of the image, but when you highlight the url in the Url bar, you cannot delete it and instead it copys it to your clipboard

frosty cape
#

Actually @frail vessel, if you have not been given the extra points then it'll be ok.

#

Your monthly/overall points should have only increased by 1 instance of answering it correctly.

frail vessel
#

Oooo I wasn't keeping an eye on that

#

I'll check now

topaz venture
#

The fix to get metasploit up and running on the kali box is just updating ruby and installing gems but

spiral flame
#

but

topaz venture
#

No idea why it's broke as of like an hour ago

sterile shadow
#

this problem has happened since the new kali was updated

#

i just forgot to say anything

#

for both problems

frail vessel
#

!rank

raw karmaBOT
#
TryHackMe
Rank

tmux > screens

Username:

SuitGuy

Rank:

17

Points:

40343

Subscribed?

No!

topaz venture
#

Yeah the repos for Kali have been a state

frail vessel
#

!rank

raw karmaBOT
#
TryHackMe
Rank

Just obfuscate it...

Username:

SuitGuy

Rank:

16

Points:

40403

Subscribed?

No!

frail vessel
#

!rank

raw karmaBOT
#
TryHackMe
Rank

Leeerrrroy Jeekinnnns...

Username:

SuitGuy

Rank:

16

Points:

40433

Subscribed?

No!

frail vessel
#

@frosty cape

#

Race condition successful, Ony 30 points incremented

frosty cape
#

Wait the race condition was successful?

frail vessel
#

It did multiple submissions but my points only went up once

frosty cape
#

Okay great:)

#

Thanks for reporting guys.

frail vessel
#

You're welcome my dude

topaz venture
#

Just pushed a patched version of the Kali box @sterile shadow (: metasploit is fixed amongst a few other updates

sterile shadow
#

Thank you. 👍

fossil haven
sterile shadow
#

Isn't url -u

covert kernel
#

my vids on tryhackme go for 4 seconds than stop for 1 minute, it's also happening for others in america, not just me

topaz venture
#

The videos are going to be moved to a CDN (at the moment they’re served from an s3 bucket in Ireland) which’ll resolve this

#

Not sure when that’s being done, but it’s been noted (:

thin forge
#

It would be great if the video could float down the page as you worked on tasks

#

Just while we're talking about that, I know it's not really a bug

vast ridge
#

@vocal raptor Shodan.io room, Task 4, Q#5 can you update please? Thank you.

vocal raptor
#

what's the answer now?

#

give the first 2 answers

vast ridge
#

Well I'm out of try for today 🙂

rugged spindle
fair moon
#

@frosty cape could I im about a finding?

median sapphire
#

🥩

frosty cape
#

this a bug? Seen it in a few rooms
@rugged spindle Which room is this in? I fixed this, so it might be from an old issue.

rugged spindle
#

Its fixed in gamingserver

brittle juniper
#

Old KoTH machine doesn't die after reset

#

I can still get rev shells back from it.

#

(IF it shows dead to users, then its prolly depleting resources, because I setup a loop to send me rev shells and even after the reset, its sending them)

icy ledge
#

hello, i found a bug of the Tryhackme Discord's bot, it happened that i made "!docs room-notes" and it gave me the tryhackme level's page 😦 #bot-commands

#

idk if it applies or happens with another ones, but i found that one

short jackal
#

it's known and it's being fixed

icy ledge
#

ok ok

#

ah

#

and in the Tryhackme Level's page, is missing the "bug hunter" level

#

:))

#

or that one isnt obtainable ??

short jackal
#

it isn't obtainable by normal means so idk about that

icy ledge
#

aaa

#

nice

#

thx

pulsar bloom
#

I have a problem with my account i think , i joined about 92 room and completed 90 but it know shows that i have completed 80 , so i checked it but it's 90 . any one had this before?

old rampart
#

Same problem with me

#

It shows incorrect count

covert kernel
#

92 rooms shitttt i just started htb getting bored😆

pulsar bloom
#

Same problem with me
@old rampart i send them an email last night but no response until know , did you do any thing or you just think they are going to fix it soon?

mild breach
#

am i being really stupid or have the links for rooms on the manage rooms page broke? they go to the actual room rather than /room/manage ?

pine quiver
#

I think someone just said the same thing in tech support so although you’re stupid I don’t think you are in this case

frosty cape
#

am i being really stupid or have the links for rooms on the manage rooms page broke? they go to the actual room rather than /room/manage ?
@mild breach This should be fixed now, sorry about that.

mild breach
#

yep fixed now thanks :)

brave reef
#

Using the !rank command with the bot, if you add a # whatever you type after it (as long as the username before it is on the THM website) it will ignore and thus you can get strange names through the bot:

fresh tide
#

gib jabba BugHunter blobknife

brave reef
#

I wish kekw not that smart

orchid remnant
#

!rank Heiss#DoesThisWork.WhoMadeThis...

raw karmaBOT
#
TryHackMe
Rank

Just obfuscate it...

Username:

Heiss#DoesThisWork.WhoMadeThis...

Rank:

326

Points:

20032

Subscribed?

Yes!

orchid remnant
#

smh

#

Ooh

brave reef
#

😎

orchid remnant
#

Thank goodness we removed its @everyone powers...

brave reef
#

HAHAH OMG

#

Out of all the things I thought of

#

That wasn’t one of them

orchid remnant
#

Gooooood thing that didn't work

#

If it had, that would be the second time this month I've made the Bot ping everyone

brave reef
#

I mean you can use the bot to ghost ping right?

orchid remnant
#

In what sense?

brave reef
#

I thought it wouldn’t ignore the whole message

pine quiver
#

Is that just messing up which name is displaying?

#

Or is it messing something up

brave reef
#

The bot ignores symbols

#

So adding a symbol after the correct username means it passed whatever to the output

spiral flame
#

If it had, that would be the second time this month I've made the Bot ping everyone
@orchid remnant Ah, you only have that in certain channels?

brave reef
orchid remnant
#

@orchid remnant Ah, you only have that in certain channels?
@spiral flame Only in #733142795325538356

spiral flame
#

Ah yep

thin forge
umbral grotto
spiral flame
#

@umbral grotto go to /, then follow the link

umbral grotto
#

@umbral grotto go to /, then follow the link
@spiral flame Solved.

spiral flame
#

It's a pain, I know

umbral grotto
#

Well, its a good workaround. Thanks. 🙂

unborn elm
#

I managed to get a wrong answer to be accepted by pressing enter then accidentally adding a period after. The delay allowed the answer to be accepted and also to lock in the mistake.

spiral flame
#

Answer tolerance is beautiful

unborn elm
#

;)

spiral flame
#

Well that's taking it impressively far

unborn elm
#

lmao

fresh tide
eternal cove
#

I think there is a bug with number of rooms enrolled (and completed)... Or maybe I am counting something wrong

short jackal
#

wdym?

orchid remnant
#

It's known @eternal cove 🙂
Skidy's fixing

eternal cove
#

I can see I have joined 66 rooms... That's the same number of rooms it shows on my profile... Also on my profile it shows I've completed 54 rooms... So technically 66-54= 12 rooms I have not solved... But in my rooms I can see I the number of rooms that I have not completed are only 4

short jackal
#

maybe you left some of them ¯_(ツ)_/¯

eternal cove
#

I don't think so@short jackal😅

#

As far as I can remember till date I've left at max 2 or 3 rooms

#

@orchid remnant is it the same issue I described?

sick coral
#

That t needs to be capitalized

spiral flame
#

@covert kernel

covert kernel
#

@spiral flame

spiral flame
#

@covert kernel zthlinux

pine quiver
#

@pine quiver i just wanted to be included

covert kernel
#

@pine quiver I'll include you

pine quiver
#

As always para, you're my hero

midnight fjord
pine quiver
#

It is indeed

orchid remnant
#

(I think there are just two welcome rooms)

#

Well, about 5, actually

unborn elm
#

That t needs to be capitalized
@sick coral You're going to find that anything done by Pars, has plenty of grammatical errors.

sick coral
#

I'm trying to point things out as I go 😅

#

I just don't play often 🙈

#

But I did finish that box

#

Room

#

Whatever

unborn elm
#

:D

sick coral
#

Progress ! 😄

unborn elm
#

If you see the room is by Pars and he's messed up somewhere, just DM him "uh oh".

#

lmao

sick coral
#

The one i'm working on now is made by DarkStar7471 so 🤷‍♀️

hazy stratus
#

make sure you report all of those, hehe

idle juniper
#

supposed to be Math.floor not Math.round

deft tartan
#

Talking about progress:
The level progress bar on the dashboard is pretty broken: The width of the actual bar (in the style attribute) is too wide to reflect the progress in the current level, while the aria-valuenow attribute seems to be stuck at 25, which makes the accessibility extremely confusing.

vocal raptor
#

@[SGA-X] BlackDragon [FURRY]#3406 here

#

I have no idea how to tag you, sorry :L

tawny raven
#

:/

#

well I need help with my certificate, I requested it, but it's already about hour and still nothing comes up, only "please wait..." message

vocal raptor
#

I have no idea how long you're supposed to wait, but I would imagine it'd be instant 😦

tawny raven
#

😦

#

well, lab is completed. 22 days of access left... :/

orchid remnant
#

@tawny raven this ThrowBack? 🙂

tawny raven
#

yes

orchid remnant
#

Feel free to DM me with a copy of your certificate and I can give you the role in here @tawny raven 🙂
Or if you don't want to show your real name, just DM me your TryHackMe username and we can sort it out that way 😄

vocal raptor
#

@orchid remnant That's not the issue

#

They don't have a cert

#

As in, they requested it and it wasn't given

#

They've waited 2+ hours now 😦

#

idk how long you're meant to wait 😦

median sapphire
#

Should have the badge

orchid remnant
vocal raptor
#

ahhh

umbral grotto
#

Not really a bug, but a misleading hint. Room "25daysofchristmas", task 22. The hint suggests the password is within the first 30 elements of the rockyou.txt set. It is not the case (roughly in the 90k range).

spiral flame
#

Yep it's broken

#

The standalone is fixed

#

Someone just needs to copy the VM from the standalone room over

median sapphire
#

👀

verbal igloo
#

hey, so it seems like there is some problem with smbclient on both linux and thmAttack machines:

pine quiver
#

is that IP hosting an SMB server?

barren gazelle
#

has anyone noticed in Access machine it never loads your IP and status?

#

also cant get to the openvpn page

short jackal
#

so normally it loads the data without a problem

barren gazelle
short jackal
#

but i noticed that some of the users actually have a invalid vpn server set or smth and it makes the details api route hang

#

what's the 404?

median sapphire
barren gazelle
#

@short jackal 404 is just when I try to download my openvpn config file

short jackal
#

what's the vpn server you have currently selected?

#

ah i see it in the screenshot above

barren gazelle
#

@short jackal dw its was me being a dumb as I didnt realise you had to select a server before it shows you its status 🤦‍♂️

short jackal
#

😄

verbal igloo
#

@pine quiver yup, it's the "Relevant" room

pine quiver
#

huh, weird. tag muir when hes on

#

@topaz venture might know too

short jackal
#

@verbal igloo vpn connected?

verbal igloo
#

ssh on the virtual machine

short jackal
#

is openvpn on the vm?

verbal igloo
#

not sure, but i cant really connect to it through vpn

#

my ISP blocked the ports OpenVPN uses

orchid remnant
#

@verbal igloo smbclient usually needs slashes in it

#

Try smbclient -L \\\\IP

verbal igloo
#

Oh, okay :)

spiral flame
#

Or forward slashes if you don't want weird excessive backslashes

verbal igloo
#

yup, it works, thanks a lot 🙂 also, "/" > "\"

mental dirge
fresh tide
#

That doesn't concern THM 🤷‍♂️

verbal igloo
#

hey, I'm currently doing the "Internal" room, where everytime I try to login to the wordpress, the machine's IP gets translated to "http://internal.thm/"

short jackal
#

that's because virtual hosts are a thing

#

add that to your /etc/hosts

#

and it'll work without a problem

verbal igloo
#

oh, thanks 🙂 i knew that there is a hosts file in windows, but couldnt find it in linux

frosty cape
#

has anyone noticed in Access machine it never loads your IP and status?
@barren gazelle Change VPN servers and try again

abstract glen
#

I think it's a bug but this score is block for 3 days now
I didn't earn points or experience

#

while I'm answering questions

short jackal
#

are the questions empty or do they require an answer?

abstract glen
#

both

#

it's not really important but I don't know if I'm alone in this case

brave reef
#

Some rooms don’t give points and questions without answers do not give points

abstract glen
#

yes but I mean I start a room 3 days ago "owasp juice shop"
it was giving points

#

but np
just a feedback 🙂

brave reef
#

If it’s feedback why post it in bugs

abstract glen
#

because it's kinda a bug no ?

#

Idk

brave reef
#

It’s not a bug

#

Some rooms don’t give points

#

And some questions don’t give points

abstract glen
#

ok then mb

brave reef
#

Unless you’re actively doing challenge rooms then there’s no issue :)

abstract glen
#

well ty for information have a nice day

brittle juniper
#

You can launch multiple machines if the rooms are private. I have 2 private rooms' machines running atm.

dark fossil
#

hello, i reached 7 days streak (it's showing 8 days on the left menu) but i didn't get the 7 days streak badge anyone knows why?

brave reef
#

Wait another day it doesn’t appear straight away

dark fossil
#

oh, okay

hallow pike
#

Hello, I subscribed to Tryhackme last week and I have a little but annoying bug when I deploy a web browsed Kali. The problem is that when I select/highlight a text (for example on the firefox url), i cannot delete it by just pushing the backspace key. In fact, I have to put my cursor at the end of the URL and delete each letter one by one with the backspace.. Do you know where does it come from ?

#

(Firefox is just an example, I have this bug on all apps, like pycharm for example, where it is very annoying to remove line of code one by one....)

brave reef
#

It's because you're using the web browser

#

sshing into it will fix the issue but I don't know of any other fix

hallow pike
#

ah damned..

#

Web browser is the purpose of subscribing ahah

#

(also the private rooms of course)

brave reef
#

You can just backspace without highlighting it

frosty cape
#

@hallow pike I think I know what you mean, I've added it to my bug list, will fix in the next week or so.

brave reef
#

Thanks Skidy

frosty cape
#

For the moment, as Jabba mentioned, use the backspace.

hallow pike
#

yes but when there is 300 chacracters for example in a script, you have to push the backspace key during 20 seconds lol

spiral flame
#

Skidy is RDP/VNC etc still open?

hallow pike
#

Thanks so much

brave reef
#

Do the script on your home computer and paste it onto the machine 🤷‍♂️

hallow pike
#

I was very frustrated with that 😛

frosty cape
#

Skidy is RDP/VNC etc still open?
VNC is, not sure about RDP.

spiral flame
#

I was very frustrated with that 😛
@hallow pike Try VNCing in, perhaps

hallow pike
#

Do the script on your home computer and paste it onto the machine 🤷‍♂️
@brave reef Yes of course, but the problem doesn't occur only on script stuff 😛

#

Anyway, thanks a lot for your quick feedback ! 🙂

topaz venture
#

RDP is open on the attack machine (:

orchid remnant
#

VNC uses the same xrdp server, so yeah, RDP is open 😁

sterile shadow
#

@hallow pike bayou can also highlight it all and right click it and then click Cut

hallow pike
#

Great idea !

#

I will try it today

spiral flame
#

RDP or VNC should work better though

tacit drift
#

there is an issue in launching the attacking machine....its not getting launched

#

can anyone plz check and get it fixed

spiral flame
#

Also, which one of you broke the top bar IP indicator? @topaz venture @orchid remnant

topaz venture
#

Bro

#

I realised this as like 20 mins ago

#

I think skidy/someones changed the instance that gets deployed on AWS

#

it's got the network card of a t3a instance

spiral flame
#

I just terminated it so RIP

topaz venture
#

yarp

#

The script looked for eth0

spiral flame
orchid remnant
#

That one was all CMN 😁
Having said which, something funny is happening with that box. My tools keep disappearing from it too

topaz venture
#

it's ens5 now

#

Yeah the box is being a bit funky

#

Eh well yeah I've fixed it on this one

#

especially VNC

#

Rebooted this one, can't VNC into it through the browser but can RDP just fine

rose solar
#

hey

#

what are these jitter effects on the web page?

#

are they supposed to appear ? :3

brave reef
median sapphire
#

👀

brave reef
#

Are any of your browser extensions interacting with the page?

rose solar
#

disabled adblocker

#

still happens

brave reef
#

I'm intensely staring at my page and do not see any jitters or flashing

thin forge
#

I'd start with those. I see multiple extensions that could cause a problem, but it's hard to tell what is what with how small the rez is. I think the green swirl icon is Grammarly? I've always had weird problems with it and it de-stabilized my browser, personally.

brave reef
#

I'm using grammarly :p, nothing

rose solar
#

It has been way more intensive like 2-3 months ago

#

but it has been minimized with the time

#

and updates

thin forge
#

Run THM in private mode or another mode that disables addons. Problem persists, keep troubleshooting.

rose solar
#

It doesn't affect my experience

#

everything runs alright

#

I've always thought it has been something you guys created xD

#

to look cool

#

but looks like it's a bug or something :3

#

it only happens on thm

thin forge
#

I've used THM on Firefox & Chrome on Debian as well as Chrome on W10 and I don't have issues.

rose solar
#

not in any other page

frosty cape
#

it's got the network card of a t3a instance
@topaz venture Wow, can't get anything past you:)

topaz venture
#

Ahahaha!

#

That's a weird party trick oh boy

covert kernel
#

I found this bug a few days ago: I have had completed the "Pentest Series" rooms before the "Series" update and I still don't have the badge.

brave reef
#

It's known.

simple marsh
sterile shadow
#

I believe that this is a known issue

digital thorn
#

There are prolly more coming in that series 🤷‍♂️

spiral flame
#

Not for a while

#

It's a platform bug

digital thorn
#

Is it a known bug for all the badges in the series

spiral flame
#

If you complete a room or series before the badge is added, you don't get the badge automatically

#

It's one badge per series

digital thorn
#

Yup, cause when the series released, I already had 4 of them completed. Haven't got a badge

final mountain
#

Maybe add a claim button for the badge and then when it knows you've completed it will give you the badge

#

once you have claimed it

#

Just a suggestion that might help

verbal igloo
#

hey, so I'm doing the Buffer Overflow Prep Room, and when fuzzing using the first script, it crashes after the first iteration and send an exception

deft tartan
spiral flame
#

thonk I'm going to have to agree with you there. That's an interesting one.

deft tartan
#

This happened upon finishing the Looking Glass room. Kinda fitting, I guess 😄

#

Or is this even an easteregg 🧐

median sapphire
#

👀

spiral flame
#

Ah, the series badge also sorry for Looking Glass

deft tartan
#

Ah, the series badge also sorry for Looking Glass
@spiral flame Honestly, I love the SSH idea.

spiral flame
#

There's one for the Wonderland series

#

Did you complete Wonderland previously?

#

If not, I have an idea what it could be. I'll try to recreate it if you haven't completed Wonderland

deft tartan
#

Nope, I finished the Wonderland room before the looking glass one, but haven't done either beforehand.

#

Is the wonderland series badge maybe hidden in some way?

#

This would fit the undefined in the e-mail and also the fact that it doesn't show up in my badge list.

spiral flame
#

@frosty cape this is weird

deft tartan
#

If I can help with this in any way, feel free to send me a private message.

topaz venture
#

This'll be why

spiral flame
#

Welp, oof

topaz venture
#

same with breakingwindows

#

Lookingglass doesn't even have the "badgename" key

#

nvm that isn't necessary ignore me

#

so yeah wonderland and breakingwindows has empty "badgename"

frosty cape
#

@frosty cape this is weird
@spiral flame @topaz venture That bug has been fixed in dev, will be pushed live today/tomorrow. Thanks for reporting (& thanks CMNatic for the screenshots with the badge name)

spiral flame
#

Sweet

topaz venture
#

Nice one 👍

brittle juniper
spiral flame
#

I want to say Chev reported that, but it looks like it might have been a different page

brittle juniper
#

¯_(ツ)_/¯

#

(you said it tho)

deft tartan
#

Oof … docker containers within rooms seem to be unbearably slow.
The box seems to freeze completely and I am not even able to ping it at this point.

brave reef
#

Could you provide more information on that?

#

E.g. room name, does this always happen

deft tartan
#

I'm currently doing a privilege escalation in ultratech1.
I've restarted the host machine before and it didn't help.

#

I'm currently waiting for the output of an ls from within the container for … about 15 minutes now I think.

#

Oh, something just happened 😮

#

Ah, it began to echo the commands typed before.

spiral flame
#

Sounds like it died. Doesn't sound like a platform but to me really?

deft tartan
#

It didn't die.

#

It is still doing things, I'm currently getting my directory listing…

spiral flame
#

Still doesn't sound like a platform bug? #room-bugs exists if it's a room bug

deft tartan
#

I don't know, I thought that this could be a resource allocation thing.

#

But I finally got the last flag, so I'm out of that machine 😄

spiral flame
#

You don't share VMs with anyone outside of Throwback or KoTH

deft tartan
#

I was thinking of the hypervisor, but as I don't know about the inner workings of THM, I can only guess about the source of the problem 🤷‍♂️

spiral flame
#

It's AWS

deep cobalt
#

I think I found a platform bug, can I have a personal chat with thm cool guys? XD

brave reef
#

If it is a security bug, email jon@tryhackme.com if it is anything else type it here :)

spiral flame
#

hello@raw karma, jabba?

brave reef
#

If you would like to talk in private ask one of themoderators to dm

#

I got told jon for security issues?

#

#metordocswhen?

spiral flame
#

support, interesting

deep cobalt
#

Not sure whether its considered security tho, more like businness logic error maybe or sth similar

brave reef
#

Which one is it 😄

spiral flame
#

Yep, complicating it further. That's recently written so I'd assume that one

brave reef
#

Awesome, thank you

cinder crow
spiral flame
#

I think @topaz venture is aware?

topaz venture
#

Yup ((:

#

The tier that the machines boot on AWS have changed so it broke the script again

#

Using James ’ 10.10.10.10 on next clone (:

vital gulch
#

I think there is a bug in the Streaks timing. I did a room yesterday and just id one today. I had a 27 day streak and now it just reset to 1!!!!

spiral flame
#

There's not, it's a 24 hour timer. When you answer a question, it resets that timer. If the timer hits 0, you lose your streak

#

Say you answer at 1pm Monday, and 2pm Tuesday, you lose your streak

quiet parrot
#

I am an 0x8 but for some reason I only have the 0x1 role

brave reef
#

You need to verify with the bot

#

If you don't have the "Verified" role, it won't update

quiet parrot
#

Ok

#

Thanks

deft tartan
#

As I have noted before, I can't change my country on my profile page.
There does not seem to be a request or websocket message happening when I change the country.
~~This is contrary to the note on the bottom of https://tryhackme.com/subscriptions.~~
Huh. It seems that one has to load stripe's javascript to change one's country. Is this really necessary?

rose solar
dusk field
#

it seems the imgur for tmux's cheat sheet seems not to show for me, the page itself is blank maybe is on my end but i found it strange since some of the keys in the sheet due to the low quality are a bit hard to read since they are smaller

hallow pilot
#

The new UI is looking good but doesn't save my input :(
Waited/reloaded/filled in the boxes again and when I click the update button everything goes blank or "Loading"

Sorry, found out the "Lock room" Button really locks the room down. Locked me out of editing it

hard horizon
brave reef
#

0-o

hard horizon
#

btw it was working last night

#

idk why it went to /dev/null now

short jackal
#

Because the whole room is broken, the vm got removed temporarily I guess

hard horizon
#

ah that explains

rugged spindle
#

The attack machine is asking for a backup solution on startup. Is that normal?

orchid remnant
#

Uh...
Nope. Dang Ubuntu...
Just click "Don't show again" for now -- we'll get rid of the warning in a bit 🙂

bright sundial
#

hello i cant see an images in rooms even i use vpn (i also tried other vpns) whats wrong ?

#

the left one in opera with its vpn same room

hallow pilot
#

Images should be visible without any VPN connection

bright sundial
#

idk also they re not visible in my casual connection

#

maybe because of my country

#

it was visible in 2019 kali, i install the new one which is 2020 because of i got some issues at 2019 version

#

now i cant see an images

prime rapids
#

king service is having issues l

digital thorn
#

w8 where is my deploy button?
@hard horizon Just give it an hour @hard horizon

#

Because the whole room is broken, the vm got removed temporarily I guess
@short jackal pepehands No it isn't. Just a username had to be changed

short jackal
#

But because of that it is broken and can't be solved

#

Sooooo I guess it is 👀

digital thorn
#

It's uploading as we speak 😅 Online in a bit

topaz venture
#

The site doesn't appear to be querying the king service right. When curling the IP address of a machine, the username in /root/root.txt is inputted correctly, and is responded when CURL'd (see first screenshot)

However, this isn't reflected on the koth lobby nor the API (see the second screenshot)

#

user's kingTime is also 0

#

@frosty cape thoughts? It was working as of yesterday

frosty cape
#

Let me take a look

topaz venture
#

Thanks!

#

The match ID for this specific test is 10209, but it seems to be happening across other matches too

frosty cape
#

Ah, I know the issue

#

There we go

#

All fixed.

#

It was a permission thing on our end.

topaz venture
#

Ah wicked!

#

I assume fixed in prod?

frosty cape
#

Yes:)

#

Thanks for letting me know - I'll make a note so this doens't happen again.

topaz venture
#

Legend

#

@frosty portal @untold pewter The issue has now been resolved

#

Thanks for reporting, you too @prime rapids (although a bit more detail would of highlighted this sooner) 😄

prime rapids
#

i could have reported it with more details but there were chances that some other player have messed with it

untold pewter
#

Thanks!!

topaz venture
#

Ah for sure, I understand @prime rapids (: Sorry I missed your message, I would of asked you to DM just like I did with the other players

prime rapids
#

🙂

brittle juniper
#

very very weird tho, been playing last night, didn't encounter any issues.
This probably popped up today.
@prime rapids @frozen timber @untold pewter apologies, I assumed it was just another deadlock issue.

prime rapids
#

no prob 🙂

untold pewter
#

No issues man..(bade bade shehron m choti chizein hoti rehti h)😂

wanton portal
#

When completing Simple CTF it doesn't appear to show as completed in the room list. There is also a duplicate of the room. However it's marked as completed on the room and user profile.

wet sky
#

Hi, in nmap room, the hint of the question 4 of the task 3 is worng, at least nmap show me a version on the virtual machine that is not which the questions accept. Look it please.

#

It shows me a newer version.

spiral flame
wet sky
#

Sorry

somber wraith
#

I wanted to report that my subscription expired but I was still able to access/still enrolled in the learning path that I joined prior to the subscription expiration. IDK if that was intentional. I unenrolled in the path and tried to re-enroll and it did not let me enroll again (which it shouldnt)

pine quiver
#

@frosty cape just a heads up

frosty cape
#

I wanted to report that my subscription expired but I was still able to access/still enrolled in the learning path that I joined prior to the subscription expiration. IDK if that was intentional. I unenrolled in the path and tried to re-enroll and it did not let me enroll again (which it shouldnt)
@somber wraith Ah, thanks for letting me know. I wasn't aware of this:)

lean valley
autumn wave
#

Would be best if you shared screenshots of your attempt so we can troubleshoot it. The tool works fine as far as I know.

lean valley
#

Would be best if you shared screenshots of your attempt so we can troubleshoot it. The tool works fine as far as I know.
@autumn wave
Now it works. I am such a male karen. can I speak to your manager hahaha
thanks for the help

autumn wave
#

You’re welcome

deft tartan
#

@spiral flame @topaz venture That bug has been fixed in dev, will be pushed live today/tomorrow. Thanks for reporting (& thanks CMNatic for the screenshots with the badge name)
@frosty cape This issue with the missing badgenames isn't fixed yet, is it?

frosty cape
#

@deft tartan Not all series get badges.

deft tartan
#

Ah, I see, so there isn't a badge to be gained from the wonderland series?

pine quiver
#

No

lean valley
#

Steel mountain (issues)

[Task 3] Privilege Escalation

Question 3

Upload your binary and replace the legitimate one. Then restart the program to get a shell as root.

There are two issues with this vm

  1. in the msfvenom it tell you to create a reverse tcp named Advance.exe but there no executable named like that in the IObit directory
    the screenshot should be changed to ASCService.exe
    PS > . .\PowerUp.ps1
    PS > invoke-Allchecks

ServiceName : AdvancedSystemCareService9
Path : C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
ModifiablePath : @{ModifiablePath=C:; IdentityReference=BUILTIN\Users; Permissions=AppendData/AddSubdirectory}
StartName : LocalSystem
AbuseFunction : Write-ServiceBinary -Name 'AdvancedSystemCareService9' -Path <HijackPath>
CanRestart : True
Name : AdvancedSystemCareService9
Check : Unquoted Service Paths

  1. when you try to delete the file I get an error saying that I dont have enough rights(i tried use meterpreter, shell and powershell)
    meterpreter > rm ASCService.exe
    [-] stdapi_fs_delete_file: Operation failed: Access is denied.
    also tried getsystem

so it looks like I have to escalate privs in order to be able to replace the Iobit file

https://tryhackme.com/room/steelmountain

pine quiver
#

Instead of replacing it just place it in the directory and try it

lean valley
#

Thanks rad but I am just saying that the instructions should be updated

pine quiver
#

Oh I just realized this is bugs and not room-help

#

My b

lean valley
#

no worries man. thanks for the suggestion 🙂

autumn wave
#

This isn't a bug or an issue with the instructions.

#

There is no file that requires removal. Best recommendation is you research unquoted service paths a bit so you understand the mechanics of how they work. You aren't supposed to hijack or remove the ASCservice.exe.

worldly pagoda
#

is Throwback Network Labs stipe payment have issue ?
i see blank screen when hit buy with card

short jackal
#

do you have any adblockers and/or use brave?

worldly pagoda
#

I have adblocker, should disabled it?

hazy stratus
#

worth a shot -- also check dev console and see if there are any errors

worldly pagoda
#

I will thanks

mild folio
#

Why do new rooms not showing in "hacktivities" when ordering based on "Newest"?

#

is it a bug or am I using it wrong?

fresh tide
#

its actually showing in terms of the time it was uploaded on THM not released.

mild folio
#

shouldn't that actually be based on released?

spiral flame
#

Yes it's being changed

mild folio
#

cool

#

Thanks!

worldly pagoda
#

here is my console log for Buy ThrowHack netwrok with stripe checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 Uncaught TypeError: e.supportedLocalesOf is not a function at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at Array.every (<anonymous>) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at Fe (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at Object.dispatch (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at Ai (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at Module.<anonymous> (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at c (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at Object.<anonymous> (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at c (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 Uncaught (in promise) TypeError: e.supportedLocalesOf is not a function at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at Array.every (<anonymous>) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at Fe (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1 at dispatch (checkout-a09f84d9f1f…b1ff93ccad7a34.js:1) at checkout-a09f84d9f1f…b1ff93ccad7a34.js:1

#

when i switch to Firefox it fix

brave reef
#

Do you have any browser extensions

rugged spindle
#

Most of the time when I select something (double click on a word or just selecting it) and then press backspace it's not doing anything. I have to unselect it and remove it one by one. This is in Chrome and Opera. On both VMs. No I did not search for this on discord. If this has been reported multiple times why isn't it fixed already?

#

I also cant remove it by typing. No button works.

prime rapids
#

Download my configuration file on ACCESS throws an 404 error

#

happening if my VPN Server is EU-Regular-2

brave reef
#

@frosty cape

#

Myltiple people have reported this

#

Eu regular 2 not working

dusk kayak
#

yeah have a problem with the vpn

median sapphire
#

VPN issues are @sly raft's domain if I recall

frosty cape
#

I've fixed it - but need to figure out what is at the root of the problem Thanks for reporting guys:)

brittle juniper
pine quiver
#

It’s proper English the way it is

orchid remnant
#

Uh, not sure about that Bob

#

Should be either "with" or preferably "against" in there

#

It's colloquially correct as is, but not proper English

brittle juniper
#

yeee

pine quiver
#

I suppose I stand corrected

orchid remnant
#

You do now 😁

keen frigate
orchid remnant
#

Fixed 🙂

rugged spindle
#

On both vms

final mountain
#

You’re choosing the wrong exploit

brave reef
#

You need to load number 2 but either way it works for other people

rugged spindle
#

How so? Im in room eternalblue and task 2 question 2 is literally this answere

brave reef
#

So if none of them load then restart the VM

#

And what did you mean by on Botha VMs @rugged spindle Attackbix and Kali?

rugged spindle
#

Yeah

orchid remnant
#

That's broken in Metasploit @rugged spindle @brave reef