#site-bugs

1 messages · Page 25 of 1

celest edge
#

You should be able to rejoin the room after the timer ends

#

Networks are shared environments

buoyant ingot
#

yep, just thought I'd mention it, since that seems like maybe unintended behavior

orchid remnant
#

I suspect that it doesn't destroy your config when you leave the room manually

#

Which is a bit of a pain, but easier to implement

fair moon
#

copyright year 2020 in the footer

shy bear
#

Sorry, I'm new and maybe this has already been raised, but has anyone noticed that the questions line graph on the dashboard uses UTC time? I'm in UTC+10 and if I do questions before 10am - it counts on my streak but doesn't show as completed question(s) on the question line graph...not really a big deal..... this also appears to impact the Yearly activity information on user public profile - i have days with no activity and yet i have a streak that goes across that day.... thanks Try Hack Me for great platform.

final rain
#

Hi All, wonder if you all can help. I’ve recently done the Cyber Defence pathway and really enjoyed it. Went to get my certificate and it’s saying 99% and I am unable to download it. Normally I wouldn’t care but, hey these things are nice to have! I’ve gone through all the rooms and can’t find anything that I’ve missed at all. They’re all 100%.

#

The only thing I can think of is there is a room “in development” which can’t be accessed yet. But it has the greyed out circle, whereas other modules which are in development still don’t have that greyed out circle.

#

And that room is “Osquery”

buoyant ingot
# final rain The only thing I can think of is there is a room “in development” which can’t be...

I'm pretty sure that the pathways are still "in development" and that there are rooms which are part of the paths but that are not visible/active/live yet. So the 100% indicator is only related to the rooms you can actually see, but not for the total path. So you'll have to wait until those rooms are released. I haven't personally completed any of the paths, so I'm not sure which paths are affected by this, or how many rooms are still in development, or when they will be released, but I've seen several people ask about it.

sour sorrel
naive plaza
#

.online

#

@unborn elm

unborn elm
dusk seal
#

Hi. Today i'm not getting my daily streak. Is there any known problem? I don't wanna loose my path to 30 days badge:)

covert kernel
#

Do you have issues with streak counter? I see a lot of people complaining today it doesn’t increase, including me.

orchid remnant
#

@frosty cape are you aware of this?

brave reef
#

Muiri, just passed it to Hors and he said he is forwarding it to Skidy:)

orchid remnant
#

Ta

buoyant ingot
#

possible bug: In the wreath room, upper left, under the "Created by" tag, where the days left counter used to be, I'm currently seeing nothing. It could be I'm in my last day, or it could be that it's past that. The strange thing in my case is that I originally joined the room last weekend, left the room (to not waste resources), and then rejoined a few days ago, at about the 3d left mark. So maybe that messed up the counter.

wise maple
lament geyser
#

Works for me. Do you have a popup blocker installed in your browser?

slow bobcat
#

Hello tryhack me i have purchased tryhackme subscription last month. and i started my learning pathway after one month my subscription is over and i completed till 80% pathway so if i purchase subscription again after one month will my pathway start at 80% or i start have to it again from starting ???

hazy stratus
#

your progress on the pathway should not be reset

slow bobcat
#

@hazy stratus thanks for info

charred sparrow
quick cloak
orchid remnant
#

Kinda is a UI bug...

quick cloak
orchid remnant
#

I mean, it is though

#

Not all bugs have to be security or functionality.

quick cloak
#

Hmm ok

orchid remnant
#

A bug is just unintended behaviour, and I guarantee the room vote button disappearing off the screen is unintended.

orchid remnant
#

No, that is the literal definition 😆

#

No maybe about it

charred sparrow
orchid remnant
#

Np 🙂

quick cloak
orchid remnant
#

All good :)

charred sparrow
quick cloak
charred sparrow
quick cloak
#

Hmm now I understand

buoyant ingot
#

I never even noticed the room vote buttons before 🤦‍♂️

last sail
#

Well, If we're on streak topic... my yesterday rooms didn't count towards streak, so I lost 14 days of progress :C I'm UTC+1, so I'm sure it wasnt timezone issue

mild breach
raw karmaBOT
#
TryHackMe
That topic does not exist!

Use !docs to list all of the available topics.

mild breach
#

support@tryhackme.com

wispy yacht
#

Not really much of a bug but just a typo on the site in the subscribe section of the profile page

covert kernel
#

Hi all, Sorry if os not the place bit i just finish t'he begginer path(100%) and i recieve an error when I try to download the cert. an xml with....Error>
<Code>AccessDenied</Code> os this a test ir a bug?

buoyant ingot
#

Minor bug: I just checked the monthly leaderboard, and it's showing my rank as 24 overall, 4th in my country, which is obviously not correct. Probably has something to do with the fact that the new month just started, but it sounds like the ranking algorithm has a strange edge case there when there are many people with 0 points (or few points), or just ties in general

wanton portal
lament geyser
quartz tiger
#

Hi, anyway i can use JS to leave buggy rooms ?

pine dew
#

uhm...

brave reef
pine dew
#

it says 6?

#

wtf

#

damn

brave reef
#

eee

#

Yeah that's probably the right value, I'll let the site staff know

pine dew
#

thanks!

zinc flower
#

which one is correct?

#

and i did not got the 90 days badge ; - ;

lament geyser
# zinc flower lol

Oh that's an interesting one. The top number is greater than the lower number.

zinc flower
#

Yes

#

It's like that since jabba reseted my streak

lament geyser
#

Maybe the badge award is tied to the lower number, that would be interesting when that turns to 90 and whether it results in the badge.

zinc flower
#

Maybe, let's see tomorrow lol

#

I will get 90 days badge on 91 days streak kekw

lament geyser
#

Probably, it will be more concerning when it does not give it at all tomorrow.

buoyant ingot
#

I had that same issue, reported it maybe around 10 days ago? I want to say that two days in a row I was awarded the 30d streak badge

grave barn
#

There is something wrong with the streak. it's after midnight now. On the homepage there it says I have 0 answers given for today. I go to a room and answer a question and the answer is incremented for the previous day. It stays 0 for today. I have missed my streak lots of time due to this

rare haven
#

uhm... is this just me or is this messed up

spiral flame
#

Answer tolerance

covert kernel
# zinc flower lol

Wow great for you man, no doubts its really cool being in the top 1000🙂

frail abyss
#

Hello, In the upload vulnerability room, on the second task it says that it is recommended to complete the gobuster section of the web enumeration room but that room has been made privated by the owner

orchid remnant
#

Good catch -- that one doesn't seem to have been released yet 🙂

idle juniper
hazy stratus
# idle juniper

known issue; it's because Throwback is a free room in the sense that you don't need to be subscibed to join it

covert kernel
#

@everyone

broken ibex
#

why my points didn't increase after i do so much rooms

#

my points are stuck

tough tree
#

you might have been doing things that don't award points

broken ibex
#

Okay sir

#

Thanks for the info

rustic vector
#

how this guy having 2 ohsint badges , he is my friend tho

tough tree
#

I think there is some badges bugs currently where sometimes it displays things twice

steep gust
#

Hey, when I extend my room-time the room stops responding. This seems to be a bug, has happened several times today. Now it's not a big issue. I can just terminate and restart. But it's a bit frustrating. If anyone has time to look at it I let the machine run 10.10.105.18 this time.

steep gust
spiral flame
#

Which one?

#

@topaz venture ^ another licensing fix for ya

steep gust
wise maple
spiral flame
#

1 months

random gorge
#

hello @raw karma I am found something related to your website please provide me any email that I will contact you and I want give you everything what I found 🙏

mild breach
#

!docs verify

raw karmaBOT
mild breach
#

however, if it is a security bug, then please contact the staff via email

#

!email

raw karmaBOT
random gorge
#

Thanks

#

I will send email in minutes

pure vine
#

Hello! @raw karma I am trying to 'Start Machine' in the room "Buffer OverFlow Prep", however it just says "Starting your machine... please wait." and then nothing happens. The machine_ip doesn't pop up or anything like it usually does. I've tried both logging out, leaving the room and rejoining. Disconnected OpenVPN aswell as switching VPN, but it still deosn't seem to work. And if don't refresh the page it just seems to hang. If I refresh the page, it all just refreshes and gives me to option to 'Start Machine' again. Rinse n repeat. Any idea of this bug?

spiral flame
#

VPN will be unrelated

pure vine
#

Alright. Thanks for quick response, I've terminated the machine a few times because i ran into some problems and wanted to reset. Could this be related to your server side as some sort of anti-dos/bot thing thing?

#

my username at THM is #macfra

#

maybe i should bring this topic to the #room-bugs instead

spiral flame
#

Nope, sounds like a platform bug

#

@raw karma is the bot

#

Practically everyone here is a volunteer, aside from the admins and TryHackMe staff

pure vine
#

I guess i'll just leave the room for a while and come back later, and hopefully it fixes itself.

pure vine
#

ok, i think this might be an issue on my side with my anti-virus software lol. It did not block anything tryhackme related before, but it's blocking URL:blacklist now apparently. I'll prob have to dig around here. Most likely the cause of this issue lol. @spiral flame

pure vine
#

Ok the issue has been resolved. Was related to my anti-virus software that suddenly decided to block "//tryhackme/deploy" sigh

topaz venture
mighty trellis
#

Dear Team,
In room https://tryhackme.com/room/intro2windows in Task 6 we can try to RDP into a Windows server. The recommended tool is Remmina which is preinstalled in your attack box. But when I tried to do so:

valid folio
#

in the wireshark 101 room for task 12 Https it says to use the add an rsa key to the ssl protocol in wireshark. That is no longer around and instead TLS is used. Not sure if this is where to put that but I am leaving it here.

spiral flame
#

Yeah. That's what they said.

icy depot
#

!docs verify

spiral flame
mild breach
#

this button on https://tryhackme.com/room/manage/<room> doesn't work

#

throws this error

old ruin
#

I am not getting a reverse shell in room brainstorm

spiral flame
#

That does not sound like a platform bug

rare haven
#

spelling + this happens every time my upload succeeds :D

rare haven
brave reef
#

reee @topaz venture

topaz venture
#

aaaaaah

rare haven
#

i saw this a while ago btw

#

:)

civic phoenix
#

Not really a bug but pretty sure this should be incorporating instead of encorporating

orchid remnant
#

They're both valid @civic phoenix
Incorporate is more modern though

#

Encorporate is the archaic form

civic phoenix
#

thanks @orchid remnant. I talked to Dark and he said he'd look into them. Here are a few more

orchid remnant
#

Centralised is also correct, but, uh, yeah -- the rest should probably be fixed

#

(Correct from a British perspective -- remembering that both founders speak British English)

civic phoenix
#

true true. 🙂

orchid remnant
#

That's the blog, right?

civic phoenix
#

about page

orchid remnant
#

Ah, either way I can't do anything about it myself 😄
Thanks for reporting 👍

civic phoenix
#

does it matter if the copyright is up to date with 2021?

orchid remnant
#

Would probably be sensible to update that too

civic phoenix
#

for reference

rare haven
final solar
#

Why the answer which we feed is case insensitive??

hazy stratus
#

regex

final solar
#

In the Network Fundamental section in nmap room it is showing my wrong answer correct

hazy stratus
#

refresh the page

#

it's answer tolerance

final solar
rose oracle
#

Some not yet released rooms in the "Cyber Defense" Pathway already show up as "Having Questions", which is very confusing and I think it makes them count towards the current Pathway progress. Is this intended?

mild breach
#

editor:

#

basically text colour does not work

celest edge
#

the Reset Uploads button probably needs a space. Also it doesn't seem to work very well (probably a local-storage or cookie/cache isn't getting cleared properly)

covert kernel
#

My king of the hill is not ok (bug) 😔

native mica
#

The classroom pricing gives "£NaN.undefined" instead of something like £0 or "Please provide a number" when the input is empty.

spiral flame
#

Also, users' subscriptions rather than users subscriptions

maiden terrace
#

Hi all

#

I m working on Gatekeeper room

woeful apex
#

wow

maiden terrace
#

I dont have windows machine

#

How can I connect to a WINDOWS machine in tryhackme?

spiral flame
#

This is the bugs channel.

maiden terrace
#

sorry

#

I clicked on the discord link in that room and it took me here

#

:/

maiden terrace
#

Do you know which channel can help me with my question so I can remote connect to Windows machine plz

spiral flame
timid tinsel
spiral flame
#

Not a bug, there's not a levek above 0xD

candid crescent
#

Hello all! In the room https://tryhackme.com/room/introtonetworking in Task 4 when clicking on the Frank Sinatra picture. The image gets zoomed to much no possibility to go back (x is not displayed). Page needs to be refreshed to get back to the room. It would be nice if images would generaly open with a modal not on top of a room (for better flow). Problem exists in Chrome havent tested in another Browser yet.

covert kernel
#

i cant access the thm site from the brave browser. It gets stuck in the firewall page. but its opening on other browsers

covert kernel
#

This is what I get after starting any machine. If I refresh the page this section will disappear completely and I won't be able to terminate the machine

covert kernel
#

Hello , i have a problem with TryHackMe

#

i deployed the AttackBox only for 2 minutes and now when i need to use it

#

it says Uh-oh! Non-subscribed user can only deploy the free AttackBox for 1 hour a day. Subscribe for unlimited access.

spiral flame
#

You terminated the Attackbox, you cannot redeploy it today

covert kernel
#

I deployed it accidentally and now i need to wait for tomorrow to deploy it again ?

spiral flame
#

Yes.

covert kernel
#

k ...

spiral flame
#

You can create your own Kali VM locally and VPN in. Then you can save files and use THM for more than 1 hour a day.

timid tinsel
#

please tell my why my streaks are different on two places on same page

zinc flower
#

105 - 104 kekw

#

The bottom one counts for badges and stuff ig

timid tinsel
soft grove
#

🤷

covert mango
#

I got this same issue like you @timid tinsel . But I think it is normal, just don't look at it kk

buoyant ingot
#

Not really a bug per se, but the new profile page redesign has lost the "days as member" info, which I thought was a really nice thing to have.

#

Possible bug with networks/wreath specifically: I just noticed when opening the wreath room (which I completed previously), that while the progress bar shows as green/completed, all the individual tasks and question fields show as NOT completed. I know that I get automatically removed after 10d, but figured this might be unintended behavior for that progress to not be saved/shown. If I join the room again, the tasks and individual questions all show as completed (but presumably I'm now wasting resources).

left fractal
#

not really a bug, but i have a 4k monitor and in rooms such as osquery, where you get a vnc session the scaling is problematic, is it possible to add a scaling option for the web based vnc client

rare swallow
#

(hope that helps)

left fractal
#

yeah i ended up using RDP

rare swallow
#

or that would work too, i'm sorry i can't be of more help

left fractal
#

no problem

#

thanks for responding

rare swallow
#

anytime, good luck with your other rooms 🙂

willow thistle
#

Hi everyone I'm in somalia how can buy for subscription did you accept Bitcoin or any crepto coin we use only crepto money in somalia

tough tree
#

it's probably not a bug either really

#

😄

opaque sandal
#

Hello, I'm using the attack machine to perform the tasks in a room - can I copy/paste from my desktop to the attack machine & vice versa?

#

if so, how? Is there setting i need to turn on?

final mountain
#

And you can copy and paste what you need in there

opaque sandal
#

great, thanks found the little arrow on the left

#

one more thing - can I copy files from the room to the attack box?

#

some of the tasks have attached files

covert kernel
#

It bugs and I can't see the IP of the current machine, and I can't terminate it either

final mountain
orchid remnant
spiral flame
#

Interesting one - There's no payloads in that room so I wonder what AV is picking up

orchid remnant
#

There was something to do with the deploy machine endpoint getting picked up from memory, although that might have been me misreading something in a hurry

#

It's worth a shot though, given that has been a problem

stoic shore
#

I think there's a slight timezone issue, answering questions after midnight seems to still increment the answer count from the day before (The streak still updates, so it's not a massive issue) . Any idea when the timezone rolls over? I'm not overly concerned, just wondering when it all happens.

spiral flame
#

I believe it's UTC

stoic shore
#

ah, that makes sense, i started noticing it when the clocks went forwards i guess

spiral flame
#

Yea, I've picked up on it before as a brit

paper iris
#

Not sure where to put that but I had issue with room https://tryhackme.com/room/uploadvulns - Task 7
When I was using my VM with Kali Linux and updated Burp I couldn't intercept requests. I had no issues when I used AttackBox from website and older Burp that is installed there.

jolly sun
frail abyss
#

I believe there is a typo in the vulnersity room "we're doing to use burpsuite"

lament geyser
patent garnetBOT
#

Gave +1 Rep to @frail abyss

spiral flame
#

Very much something broken with file downloads atm, they're truncating to just extension

timid tinsel
upbeat sonnet
dawn sail
upbeat sonnet
dawn sail
#

You never found the little bunny? 😦 hes sad now xd

#

By not 'found' have you checked the members list 😉

trail stag
#

hello

cobalt jungle
#

so im about to an OMNI at tryhackme
just asking what dose it means!

buoyant ingot
#

!docs levels

raw karmaBOT
cobalt jungle
# raw karma

no i mean the meaning of the word "Omni" it self

buoyant ingot
#

Could be related to "omniscient", meaning "all-knowing". Not sure why it was actually named/picked that way.

cobalt jungle
#

thnx

buoyant ingot
#

you're welcome

lucid pawn
#

is this happening to anyone else?

#

I just dropped a 17 day streak and I don't know why, I have a nonzero number answered today

tough tree
#

you can email support if you think that is a bug

#

!email

raw karmaBOT
tidal flame
#

how to change the username at thm

hazy stratus
#

iirc you can email support

ivory lynx
#

Hi

nocturne swallow
#

it seems that difficulty bars are not showing inside the rooms.

fluid helm
#

Yes, same for me.

soft grove
#

also it shows that i am not connected to the vpn, where i am connected to it and also can use the machines

wise maple
near cosmos
#

pickle ricky just got destroyed the reason is /etc/passwd is not present at server side please fix this issue

#

In OWASP TOP 10 Insecure Deserialisations the feedback page is giving 500 internal error

tidal flame
buoyant ingot
native mica
#

!email

raw karmaBOT
iron blade
#

Why is it taking so long to "convert" my machine?

#

I have uploaded an ubuntu-xenial box (16.04), vagrant with virtualbox and the ova file totals about 400 mb

#

I've been waiting from 12 noon and its still converting.....

tame yarrow
#

is it still doing stuff?

#

as in is the terminal still showing changes occurring, or is it on the same screen

#

Is the machine still responsive?

#

are you doing an in-place conversion, and what are you converting from - to

hazy stratus
iron blade
#

I mean i shift+reloaded but no change. It is stuck on converting.......

#

I don't know why I feel like that cuz I had a hostonly adapter it might be causing issues with it

hazy stratus
#

doubt

iron blade
#

Maybe I remove it?

hazy stratus
iron blade
#

I read that

hazy stratus
#

as long as those requirements are met, it should be fine

spiral flame
#

It strips out the kernel and a bunch of the networking

iron blade
#

So should I remove the hostonly adapter?

#

and possibly try it again?

spiral flame
#

Worth a try I guess

iron blade
#

If any of you guys created a room any idea how much time it ideally takes on that stage?

#

maybe I wait a lil more

spiral flame
iron blade
#

Im fed up with it now

#

I removed the extra adapter

#

re-exported and uploaded

#

and still converting..

young totem
#

There's a small typo on the custom HTTP 500 response page, it says "tocomplete" when it should say "to complete" 😄

plain garnet
#

Greetings

#

Seems Rust room is broken

#

Can anyone please check it?

#

I was previously enrolled in it, but for a week can't open it

upbeat sonnet
#

yeah looks like some js for the room is broken. the js console spits out a range of error af 403's

quartz geyser
#

In the tryhackme APIs that are in charge to get rooms stats (eg.: room image, tags, users that solved the room) I can see duplicated username.
The endpoint is the following:
https://tryhackme.com/api/new-rooms

Attached to this message, there's a screenshot of an user completing the room multiple times. I don't know if you already manage to remove duplicates during the extraction of the OSCP winner, but I thought it was worth it the report.

The username in this situation is Ziemni, I can also spot justBen repeated more than one time.

Thanks @chilly spruce for making me notice it.

buoyant ingot
#

Is it possible that user completed it multiple times? I.e. reset progress and re-completed it?

icy ledge
#

hi, i found a bug, in the difficulty doesnt appear the color, but when i hover the cursor on it, it says the difficulty, is not major tho, just no color.

#

seem to be the same with Internal, so i think it happens when the difficulty is rated hard, there is no color

#

oh

quartz geyser
icy ledge
#

Seems to be with all rooms, the Relevant room isnt displaying colour tho

#

and Buffer overflow Prep no colour too

buoyant ingot
final mountain
#

At least I think they do iirc

buoyant ingot
#

Hopefully with actual user IDs, not just names.

quartz geyser
final mountain
#

They'll just filter the duplicates out anyway

quartz geyser
#

I can pull the data from another endpoint and there's still a chance to have the same issue

quartz geyser
final mountain
#

I'm sure Muiri will not allow duplicates

quartz geyser
#

Yes, for sure. But doing mistakes is a human condition. We can't assume that. I would rather notify it and receive a "I already knew about it/I already planned removing duplicates" rather than not reporting it at all and have this issue for we don't know for how long

hazy stratus
#

I know Muiri's on high alert rn re: competition to ensure no one's falsified results

quartz geyser
patent garnetBOT
#

Gave +1 Rep to @hazy stratus

quartz geyser
#

anyway, totally understandable. I guess he's also stressed a lot.

quartz geyser
gaunt orbit
#

hi

#

i have a minor bug

left onyx
#

@pulsar peak use windows lol

rare haven
#

go ahead

gaunt orbit
#

if someone where to exit split screen while the attack box is running out of time it resets

#

giving another hour

left onyx
rare haven
#

wdym "running out of time"

gaunt orbit
rare haven
#

you should see if it actually is another hour & try refreshing

gaunt orbit
#

i did

#

its another hour

pulsar peak
left onyx
#

it is some kind of profile error

#

idk im guessing switching to windows might help

#

cuz firefox in windows stores profiles normally

pulsar peak
#

yea I guess I'll just skip this one for now

lament geyser
quartz geyser
patent garnetBOT
#

Gave +1 Rep to @lament geyser

mild breach
#

?

smoky idol
chrome swan
#

little typo on the intro to assembly, task 5 first paragraph. it says allows use to, and its suppose to say allows us

haughty flint
#

Idk if this belongs here but billing@tryhackme.com is failing my protonmail domain authentication, so it gets thrown into my spam folder. Idk if this is a problem with protonmail or your email address, but it does not happen with other @raw karma.com emails.

lament geyser
patent garnetBOT
#

Gave +1 Rep to @chrome swan

chrome swan
uneven pelican
#

unlocked 🔓 voice

hazy stratus
#

!docs verify

raw karmaBOT
hazy stratus
#

@uneven pelican

uneven pelican
#

𝐇𝐄𝐘

#

hey@hazy stratus

hazy stratus
#

wha

uneven pelican
#

i am new here 👋

hazy stratus
#

yessir, you need to verify to get access to voice channels -- not a bug

uneven pelican
#

yes

#

vérifier me now

hazy stratus
#

simply read the post the bot linked

uneven pelican
#

what??

hazy stratus
uneven pelican
#

ok

neon mauve
#

Hi, not sure if this is a bug, but i just joined room OhSINT and i am trying to download the picture on this room, but seems that its just jpg should it be like that ?

#

shouldn't it be like picture.jpg ? or its a catch ? 😄

neon mauve
#

nvm

civic marsh
#

When I deploy a server it does to 60s countdown, then sits at 00s gives no ip, I refresh and there's no deployed machine in the UI but I get the message saying I have to terminate the previous machine. I'm using brave browser

undone swift
#

I deployed a machine, but I can't see the IP

#

Now I can't redeploy it

magic tundra
#

Same isue as @undone swift I can't see attackBox nor room machine

undone swift
#

Has anyone responded to you with a solution?

civic marsh
#

Nah, guessing it's an issue on their end

undone swift
#

I'm having the exact same problem as you @civic marsh

#

I can't even terminate them

buoyant ingot
civic marsh
#

Yeah sounds like it, i'll repost there

#

Already posted saying it will be fixed soon

bronze tartan
#

i have the same issue as @civic marsh i actually ended up using all of my free machine time troubleshooting an SSH connection.

gaunt orbit
#

i extended my machine time to over an hour yet it still terminated before the time

native mica
#

Is this....supposed to be there?

covert kernel
#

pretty sure this is a visual error (i got charged 10 usd, the correct amount)

covert kernel
#

it says the protocol is vnc, but actually its rdp 🙂

#

i was not able to connect with vnc

orchid remnant
covert kernel
#

possible to connect over vnc without browser ?

#

rdp is fine though

craggy agate
#

Hello i was checking on internet and i found out out sudo vulnarability. So i searched around and i found a script of this guy blasty/CVE-2021-3156 (on githubbtw) and i manually pasted all the code from the repo to your server on linux fundamentals guide 3. and i got root access. Um i don't know if i did something wrong or bad.. so i am telling you to update your server to the latest sudo patch.. cuz that vularabilty is actually pretty damn bad. Sorry if i have did something wrong... i should have asked before doing this..

#

@frosty cape

#

@drowsy prism @topaz venture @remote laurel @brave reef

brave reef
#

Please please please avoid mass pinging site staff

craggy agate
#

Sorry

brave reef
#

The Linux fundamentals is a guide on learning linux, having root isn’t really a big deal. If it were a challenge room, then yes it would be a massive problem.

Most of the challenge rooms were updated to the newest patch :)

#

If you look at the Linux fundamentals room it is more about the commands as opposed to inserting flags, hence why being root won’t aid you in completing the module

craggy agate
#

Okay, Well that's nice. i thought it was my job to tell you guys

craggy agate
brave reef
#

I really appreciate you telling us!

craggy agate
#

😀

covert kernel
#

I guess the issue already been reported but I really want to do this room so I wanted to report that the "learn Rust" room isn't loading

autumn oasis
#

guys there is bug in machin splunk please anyone can help me ?

#

when i lunch the machine and put the ip:8000 in the firefox it has no connection and even i download the OVA same problem

fluid helm
lament geyser
autumn oasis
#

@lament geyser i use AttackBox

glossy eagle
lament geyser
autumn oasis
#

@lament geyser it solved , the problem is i was open other machine so i close the old one and refresh the page and now i start the machine and work fine

lament geyser
#

Cool, that's great to hear. 🙂 Enjoy Splunk 101. 🥳

ivory wadi
#

I'm trying to do this OWASP Juice shop room, but every so many minutes the connection keeps dropping and I can't connect to the juice shop site. My internet connection is good, not sure if it is a problem with THM

brave reef
#

Have you tried the VPN script?

#

!vpnscript

raw karmaBOT
ivory wadi
#

No... let me try that

#

When I try to run the command it says command not found

brave reef
#

Have you marked the file as an executable?

ivory wadi
#

yes

spiral flame
#

Also, you need to run it with ./ or bash file.sh rather than just typing the name of the file as a command

brave reef
#

^

#

There is a usage instructions on the github page :))

ivory wadi
#

chmod +x thm-troubleshoot

brave reef
#

Yup I'm aware that's incorrect English

#

sudo ./thm-troubleshoot

spiral flame
brave reef
#

Whoops that was meant to be an upvote

ivory wadi
#

That did it

#

How do you put your code like you just did?

#

Hey thanks for the help guys

brave reef
#

Encase your message in back ticks "`"

#
`Message`
ivory wadi
#

"let me try it"

#

'let me try it'

#

I suck

#

😦

#

let me try again

#

Got it

#

I guess reading is of the essense here... lol

mild breach
spiral flame
#

Can confirm. Shows about half of mine.

topaz venture
#

I believe that's been assigned as a feature/thing to fix to a software dev ((:

willow socket
#

OWASP Juice Shop ---> AH! Don't look! ---> Question #2: Log into MC SafeSearch's account!

I believe i got the correct answer. but it won't accept and I've been stuck. please help ASAP.

surreal perch
#

Hi guys, is it normal that I can't download the openvpn package ?

spiral flame
#

No

surreal perch
#

I have an error 404 I'm trying to download it

celest edge
#

what do you mean by openvpn package here?

#

on apt?

spiral flame
#

Probably the config file if it's 404ing

celest edge
#

or proxy?

surreal perch
#

The config file yes

surreal perch
#

It finally works after many attempts

#

But still weird

flint turret
#

Room was deleted, but the manage link is still accessible and each task were not deleted
why?

acoustic pagoda
#

Anyone doing Nahamsec's udemy lab?

final mountain
acoustic pagoda
#

yes i m trying to set up my machine

final mountain
#

If you're struggling with that I recommend going to Nahams Discord, this channel is for submitting bugs on the THM site

acoustic pagoda
#

ok thanks!

orchid remnant
#

Still not the right place to ask, mind, but it is a THM room, technically

final mountain
#

Oh. never knew that

brave basin
#

Hi. It seems like the ling to the "Avenger Blog" room on the "Web Fundamentals" path page is broken. It points to https://www.tryhackme.com/jr/avengers which just gives me a loading screen (both from my own machine outside the VPN as well as from Attackbox). On the other hand the link https://tryhackme.com/room/avengers seems to work fine

frail abyss
#

There is a little typo in the Wreath network, task 10 under the proxychains sections, right above the foxyproxy sections. It says ICMP Echo packest instad of packets 🙂

orchid remnant
#

@frail abyss thanks, fixing now 🙂

patent garnetBOT
#

Gave +1 Rep to @frail abyss

orchid remnant
#

Sorted

frail abyss
orchid remnant
#

Oof. I have no idea how two in the same place got past testing 😆

#

Fixed

dawn copper
#

Hey guys I've bought membership today and I'm currently in the network services room undergoing ftp. I am trying to ftp connect to my target but I keep getting connection refused. How am I able to solve this please?

spiral flame
#

Please don't ask the same question over multiple channels like that

clever quail
#

Hello I am just now diving into cyber security and I was looking into bug bounties I was wondering where can I start off and at least learning the basics?

covert kernel
buoyant ingot
#

Not really a bug per-se, but I don't see any links to view vouchers I have purchased, or their status. It's just the page displayed when I first purchase it. Am I just blind, or is it not linked anywhere?

weary oak
#

I have a duplicated badge on my profile, username is LapisOnTheMoon. Completed the metasploit room when the site was having issues and it ended up completing twice

outer totem
#

can any one help me

spiral flame
#

With what?

tranquil geode
#

Is it intended that the Change password button on the THM profile page is disabled by default and never switches to enabled? (using firefox, no script blocking etc.)
Had to remove disabled in the source code to change my password

<button type="submit" class="btn btn-success" id="passSubmitBtn" disabled="">Change password</button>
spiral flame
#

It's disabled unless your new password counts as strong

#

So you need JS

tranquil geode
#

My bad.. ublock still activated 🤦‍♂️

spiral flame
#

It works with ublock

tranquil geode
#

Huh, now it does..

#

I promise i did try resfreshing in between^^ don't know what happened there

cinder crow
#

unreleased rooms listed under new practice "popular" section

proud dragon
#

they have been showing on the paths for awhile now

lament geyser
patent garnetBOT
#

Gave +1 Rep to @cinder crow

soft saddle
#

hey! having issues connecting to a box through remmina in the main attack box i keep getting this error:

#

"You requested an H264 GFX mode for server 10.10.42.47 but yourtr libfreerdp does not support H264. Please check color depth settings."

spiral flame
soft saddle
#

think i may have fixed!

plain garnet
#

Ohai

#

Images in room are broken

spiral flame
#

Chances are it's because something is blocking Google photos for you

plain garnet
#

Ill check..

#

What about Rust?

mild breach
plain garnet
#

Oh, I will hope they will fix it

split coral
#

I found a very odd bug

#

when you copy ’ from the attackbox into the clipboard,
it will put \u2019 instead

spiral flame
#

Ah yep, that's weird.
Where's that character used on the box, just to see if I can sort it?
Muir was having fun with unicode on the attackbox as well, so I can confirm it's kinda messy

split coral
#

in the root.txt

#

I can share a screenshot if that helps,
it contains the flag because the char is in the flag

spiral flame
#

Huh. I feel like it should be plain ''

split coral
#

I'm pretty sure it was this unicode thingie

#

yep, and when I copy that char into the clipboard,
it won't add it to the machine's clipboard

spiral flame
#

I'll look at fixing that when I go back and patch a few unintended routes

split coral
#

cheers

wise maple
lament geyser
lament geyser
patent garnetBOT
#

Gave +1 Rep to @wise maple

covert kernel
#

Not sure if this is a bug per se. However, I'm unable to download my certificate, it shows an error with "Access Denied" as a message, in XML format. I have already tried removing the cookies and cache, but the problem still persists. Any ideas as to how this could've happened, is very much appreciated! (:

lament geyser
covert kernel
wise maple
#

The "You need to use a VPN" message appears when starting a machine even if you're already connected to the VPN

lament geyser
buoyant ingot
buoyant ingot
#

Just saw this again today. Could be related to the first machine you start each day?

covert kernel
lament geyser
lament geyser
covert kernel
patent garnetBOT
#

Gave +1 Rep to @lament geyser

covert kernel
lament geyser
covert kernel
patent garnetBOT
#

Gave +1 Rep to @lament geyser

scenic notch
#

i mean, it is not actually a bug, but i guess someone might want to fix this:

steep canopy
latent coyote
#

man's just excited to start

unkempt flax
#

There's data(answer to a question) missing in the CC-Pentesting room task for SQLMap . I had solved it a while back and when I reset the room 3-4 days back I couldn't solve this one.

unkempt flax
lapis hedge
#

Hi, My points have crossed the limit but my rank is still up at a place. Any suggestions?

lapis hedge
patent garnetBOT
#

Gave +1 Rep to @native mica

white totem
#

Not necessary a bug btw.
Leaderboard shows better rank at the top of the page when your and some other player's points are equal

formal mesa
#

I received 5 30 day streak badges

#

I use a Kali Linux booted from a flashdrive so it sometimes get slow as hecc and I feel the need to click a button multiple times because I'm very impatient

#

When answering question in a room I did that and I received 5 badges

native mica
#

Woah

buoyant ingot
worthy stag
#

Still a bug in created rooms on profiles. e.g keldagrim not showing on my profile and there were others back along, Can't remember to check tho

mild breach
#

wtf

#

okay it was last time i posted it

lament geyser
mild breach
brave reef
#

It's a Discord thing

mild breach
#

ahh

noble temple
lament geyser
patent garnetBOT
#

Gave +1 Rep to @noble temple

spiral flame
#

So the "X days of access remaining" doesn't render at 1366x768, which is a real pain because a lot of cheaper laptops use that

smoky idol
#

Today Bitdefender started flagging one of the IP's for the tryhackme site with the reasoning that it blocked the connection to prevent remote code execution.

spiral flame
#

Or overpass 2's RCE payload?

smoky idol
spiral flame
#

Yep, that'll do it

#

It's nothing new

#

Bitdefender is super overzealous

smoky idol
#

Okay cause like I've used those strings before so a bit weird but might just be because of an update

buoyant ingot
#

Typo on the beginner path page. "In order to get YOU certificate", should be "your".

covert kernel
#

du hurensohn

orchid remnant
#

English please 🙂

fallow socket
fallow socket
#

Okay

halcyon panther
#

I discovered that people can enter random student email addresses, without verifying, and purchase premium at the discounted price

#

Is this intentional?

#

In that, you don't have to verify the email address prior to getting a discount

orchid remnant
#

@remote laurel ^^?

remote laurel
#

Hey hey! Thanks for your report @halcyon panther you are right and we are working on getting this fixed :)

patent garnetBOT
#

Gave +1 Rep to @halcyon panther

lilac sedge
devout lodge
#

i think i can get 30 day streak badge by changing time in my local machine. (i tried for 2 upcoming days only though)

brave reef
#

Hm? The streak timer isn’t client I don’t think

neon mauve
#

Completed all 3 rooms and putting all together gave me badge , but seems a bit bugged

buoyant ingot
#

That's odd- I never even got the badge for completing that module. sadcooctus

orchid remnant
#

@buoyant ingot reset the last room and do it again

buoyant ingot
patent garnetBOT
#

Gave +1 Rep to @orchid remnant

buoyant ingot
#

Should every module award a badge? I think I might be missing a couple

steady plover
#

How many ports are open on the target machine?

#

in complete beginner section please change the answer to 1

spiral flame
#

What room? What task? What question?

steady plover
spiral flame
#

Task? Question?

steady plover
#

there is only one port open

spiral flame
#

Scan it again a while later

#

Another port opens.

steady plover
#

i tried many times

#

am i doing anything in the command ?

#

wrong*

#

please check once

spiral flame
#

I'm just going to say it again

#

There's another port that opens later on.

#

Yes it's an issue with the room but it cannot simply be fixed by changing the answer to 1.

steady plover
#

okay

#

thank you

steady plover
#

hello the open vpn/attackbox lags many a time i have to stop and start it again?

steep spoke
#

Hi there. Trying to do the Pickle Rick room but I cannot get the Ip

#

IP address

#

Did someone got the same problem?

#

get

#

sorry 🙂

buoyant ingot
#

I believe that's a known bug with the site right now

steep spoke
#

Ok, thanks

buoyant ingot
#

there may not be a lot you can do- I don't know the full extent of that bug
Some things you COULD try, but that might not change anything:

  1. refresh the page/restart the machine
  2. disconnect and reconnect from/to the VPN, then try again
  3. regenerate the vpn file
  4. switch VPN servers
steep spoke
#

Ok. I'll do it. I will post the result of those solutions shortly...

#
  1. refresh the page/restart the machine
#

no

#
  1. disconnect and reconnect from/to the VPN, then try again
#

no

#
  1. regenerate the vpn file
#

no

#
  1. switch VPN servers
#

no

buoyant ingot
#

Hm. Well that stinks. Thanks for the detailed report though. I'm not sure what else to try

#

I was semi hopeful the switching vpns might route you to a different part of the network

#

Actually- if you have your OWN vpn (not the THM vpn), you could try switching that to a different region/country and reloading the THM website

steep spoke
#

Thanks for the info. I actually start another room and I got the IP with no errors...

buoyant ingot
#

I don't think it has anything to do with the rooms themselves, I think it's something with THM's overall site, but I can only guess as to why (I have a couple theories).

#

It seems to affect many rooms at random

distant solar
#

i reported too 2 weeks ago

#

it s only 1 port open

#

but the response is 2

wise maple
#

This is probably unfixable without some major redesign, but

1.) Go to https://tryhackme.com/hacktivities?tab=search
2.) Tick Hide Completed
3.) Note the completed rooms are not visible
4.) Close the tab
5.) Re-open the tab with Control+Shift+T
6.) Notice the Hide Completed box is still ticked, but the completed rooms are still visible
7.) This applies to all the filters - Not just the Hide Completed one.

covert kernel
#

i have some Feedback for: http://10.10.10.100/ look at script.js, document.getElementsByClassName('content')[0].innerHTML=html; <- i think this code is vuln., possible for XSS

orchid remnant
#

Do you control the content elements there?

#

Just taking a look, but quite possibly

orchid remnant
#

Interesting. It's appearing in the logs but getting stripped out, and I can't get a benign payload into it either

#

I actually see no reason why that's not vulnerable, but it's refusing to paste payloads into the page

timber tusk
#

I face a bug in memory forensic room. i try to download the attached vmem .but it take a lot of data above 1 gb and after 1 gb the downloading failed.i tries it somany time. And i face the same issue in every time i hope you fix this later.

native mica
#

Have enough storage space?

timber tusk
#

Yes

serene topaz
#

often happens when I delete my answer with ctrl+backspace, and I got right answer(answer will be accepted after a little bit time , I think it is not good) answer is intitle: login

buoyant ingot
#

refresh the page. The answers allow for some "tolerance" or wiggle room.

covert kernel
#

so many ip addresses are frozen and server avaibilities is very poor

#

otherwise i do love try hack me 😉

spiral flame
#

VMs are not shared so so many ip addresses are frozen is impossible

#

server avaibilities is very poor this totally needs clarification

covert kernel
spiral flame
#

That's a broken VPN

covert kernel
spiral flame
#

Doesn't mean it's connected and working fully

#

There are a number of things that can go wrong. The majority of them are not THM's fault.

covert kernel
spiral flame
#

The discord is staffed with volunteers

#

Complaining here, without detailing your issues, is not productive.

#

If you'd like to provide some detail, or troubleshoot these issues, please do so.

covert kernel
spiral flame
#

Ok. Currently you're just complaining without providing detail or trying to troubleshoot it. That's not productive.

#

Please go to #site-support to try to troubleshoot this, or provide some more detail please.

covert kernel
#

OK I will thank you

covert kernel
#

Right.... John has worked on the password file for an hour now 🙂 Am I missing something ?

spiral flame
#

This channel is for reporting platform bugs

covert kernel
#

ah ok... sorry..

buoyant ingot
#

Somewhat of an odd bug, and I think it's just a rounding error. I'm doing the beginner path, with just a few questions left on the last room. On the dashboard page, it's showing as 100% complete. Same with the thm.com/paths page. But the progress pie for the room itself shows accurately (in this case, 25% left to do). My guess is that 99.x% is just being rounded up to the nearest int. Probably should always take the floor instead.

hidden tulip
#

guys i cant access the website or API of the ultratech room im doing with @round tapir,even though nmap shows it exists

#

is this an issue with my browser?

tiny abyss
brave reef
hidden tulip
#

It's fixed, thanks :)

#

I just had to refresh the box

viral trout
#

paradox where is image sending option. cri

spiral flame
#

You need to verify with the bot

viral trout
#

which one is real streak ? pepehands pepehands

deep lily
#

i have had the same issues^
although was around 42-43 :p

buoyant ingot
lament geyser
violet zephyr
#

@distant minnow heb je het versienr van apache gewoon via het publieke ip gevonden? Het lukt me niet. Nmap, curl, telnet, error pages.

brave basin
#

When trying to access the room HackPark (https://www.tryhackme.com/room/hackpark) I only get the rotating loading graphic (and the text "Loading Tasks..." in the background) but it never seems to finish loading. (All other rooms I try seem to work fine)

mental sphinx
#

Hey! I've obtained both flags for a room (jackofalltrades) but there are no fields to enter the flags. When I log out of THM, I can see the fields (it says login to answer), but when I login, they disappear. Can't complete the challenge. Tried different browsers, clearing cache...

spiral flame
mental sphinx
# spiral flame Try leaving and rejoining the room

that's the weird thing, there's no option to join room - you can deploy a machine without it. just tried on a different device and same thing happens. weird, anyway, I learned some stuff so not too worried about ticking off the flags. thanks!

patent garnetBOT
#

Gave +1 Rep to @spiral flame

spiral flame
#

Old is like the screenshot above from Tim, new is like a single panel rather than expandable bars

mental sphinx
#

old, I think? It has one expandable section, just no flags

#

how would I switch?

spiral flame
#

You don't get to, unfortunately. It's an A/B test. Old should work better

#

It'll apply in other rooms too

brave basin
patent garnetBOT
#

Gave +1 Rep to @lament geyser

mental sphinx
patent garnetBOT
#

Gave +1 Rep to @spiral flame

visual cliff
#

Hello, I finished the rooms for World Wide Web ting badge but I haven’t gotten badge yet. How do I fix? 👀

buoyant ingot
visual cliff
buoyant ingot
#

I think it was "Putting it all together" or something like that

visual cliff
patent garnetBOT
#

Gave +1 Rep to @buoyant ingot

buoyant ingot
#

you're welcome 🙂

paper fossil
#

what is living up the title

#

what to don now

wise maple
hidden quail
#

hello, I am doing the room https://tryhackme.com/room/xss and in task 8 question 3, I have to bypass a filtered word which is Hello which does not appear, this is normal but I have the answer is it normal ? I have do this with <img src="test" onerror=alert("Hello") />

lament geyser
# wise maple

You were expecting this to only show 7 pages, right?

lament geyser
# wise maple Yup

When you click on page 7, does it change the pages available in any way?

wise maple
lament geyser
#

Okay, I will forward the issue to the site devs. I think it doesn't reduce the join-count when leaving rooms.

wise maple
#

By the looks of things it's showing all the rooms you're in AND that you have completed - Not simply all the rooms you're in.

#

The count at the top is correct though

#

Slightly unrelated, but going to https://tryhackme.com/api/myrooms?page=-1 looks like it locks up in a load loop - Might have minor DoS potential

#

It does eventually thow a timeout error

vestal bone
#

I am getting error in python script from termcolor import colored

#

please help me with that

buoyant ingot
#

it's probably a python2 vs python3 issue

vestal bone
#

how can i resolve it

buoyant ingot
#

this channel is for site bugs. If that is specific to a room, go to #room-help , but I think that's probably better for #infosec-general

spare verge
#

Hi guys, I guess something weird is happening with the UI (again)... I joined Learn Burp Suite room when it was free (+2 years ago) then I left the room, and all was Ok before yesterday, but since yesterday that room of Burp Suite appeared again and some of my completed rooms still appear when I click on the checkbox "Hide Completed" in the url https://tryhackme.com/rooms Just notifying that something is not Ok if you did some rollback or touched something yesterday or in this week.

Best,

#

Basic Pentesting it's already done, and Learn Burp Suite I've left but since yesterday it appears again and Basic Pentesting still appears even Hide Completed is marked

#

as mentioned, basic pentesting is completed...

#

Thank you in advance for any help or fix 🙂

mild breach
#

when using numbered lists, on a smaller screen, long lines get cut off and don't wrap

languid sky
zenith gate
#

Why it doesn't show anything??

#

Osquery room

frank kestrel
#

hi guys
tried to login into thm by attackbox to download a task file from a room

#

and.......

covert oracle
#

I wonder if information about Licence keys should be avaiable on Windows Server 2019 or maybe it is common...

#

I mean on Title: Win Shell Practice Task 15 Windows Practice Box

hazy stratus
#

from my understanding, AWS has their own licensing servers that should only be usable in aws

covert oracle
#

I see Invoke-WebRequest commands from http://10.9.26.224:445 and licence keys information maybe I,m a newbie and this is normal...

spiral flame
#

That's a VPN IP

covert oracle
#

I won,t provide more information here only on DM from mods

spiral flame
#

Mods are not platform staff

covert oracle
#

In that case platform staff

topaz venture
#

Staff aren't phantom cri but feel free to DM me re. this

inland seal
#

What's wrong with my streak?

mossy geyser
#

I think there is a little problem here but don't know why 🙂 I tried to log out login again but it didn't changed

final mountain
#

There’s no more levels after that

mossy geyser
#

thx

rough dust
#

says time expiring soon even if I add one extra hour

wheat heron
#

There are rooms where I have 100% of the flag that are not considered as completed. (cf screenshot)
I flaged them in the past, completed them, but they must have been modified. And now even I have 100% of the flag they are not completed. Some like nmap have new questions, but even after completing the missing new questions, the room is not marked as completed.
Is there a way to fix that without resetting the progression ?

covert oracle
gleaming spruce
#

keyboards that use chars like ã and ä can't use characters that require 2 presses in the attackbox

#

for example ~ " ' `

worthy pagoda
gleaming spruce
#

weird.

#

my keyboard is having those issues, it's the dutch-US keyboard

worthy pagoda
#

strange, I don't know what other options there are for Dutch, but perhaps one of them might do the trick

covert kernel
#

Hello,
When checking point in Golden Eye room, date is messed up...
Take a look at the video attached.

civic field
covert kernel
civic field
celest edge
#

the "Hide Completed" button seems to have broken recently. It hides most, but not all completed rooms in the "My Rooms" section

wheat heron
#

Now they are recognized as completed but not hidden

lament geyser
#

Let me check the Room Complete Hiding function. Strange, it works perfectly for me in Chrome 91. What browser and version are you on @wheat heron

celest edge
#

I was using Firefox Dev edition, fully updated

lament geyser
#

I'll try on Firefox later to see if it is browser specific. 🙂

thick rock
#

Not sure if this is a known issues or just a delayed thing. I'm making a room and the questions I'm adding to a task aren't appearing. The description and VM get added properly but the questions don't. It worked fine with a different room yesterday

buoyant ingot
#

I'd recommend verifying with the bot, and asking a mod to add you to the room creator's channel, you can probably get more directed help there.

#

!docs verify

raw karmaBOT
thick rock
#

Thank you!

buoyant ingot
#

you're welcome

thick rock
#

@midnight garnet As per what EmptyBuffer said, could I be added to the other channel for support on this issue?

midnight garnet
#

Sure thing

#

-arole @thick rock creators-lounge

patent garnetBOT
#

➕ Gave the role Creators-Lounge to Evan#3468

thick rock
#

Thank you

little spindle
#

#room-bugs upload vulnarabilities room showing 503 temporarely unavailable please fix this issue

brave reef
little spindle
#

Okkay

indigo kernel
#

Hi can anyone help me with paypal issue while buying subs of tryhackme

fading smelt
wise maple
#

The congratulations confetti that appears when you finish a room prevents your ability to scroll

worthy pagoda
#

Check announcements, the rooms got reworked, there's new tasks

patent garnetBOT
#

Gave +1 Rep to @worthy pagoda

stray cloak
#

Hello,Although I already did Linux Fundamentals Rooms 1 to 3 it's now being shown as undone while I still have the catLinux.txt badge. Somehow when I go to my Rooms it shows that Linux Fundamentals are done.

worthy pagoda
fluid helm
#

Well you don't have to, it's just if you want to get them ticked off again 😉

covert kernel
#

hello THM Team, thank you for all the work and love you put into the platform. But today something really bothered me. You have revised the Linux fundamentals machines and deleted the existing Badge (cat linux.txt). I think it's absolutely not good when you've earned a badge and then it just disappears. When revising machines, please proceed differently with dependencies in the future. Graying out the existing badge and to get it back in color you have to solve the new machines. But definitely do not delete it.

wise maple
#

No Wreath access with an 8-day streak

spiral flame
#

Join the room first?

wise maple
#

Room was joined

#

Let me try leave and re-join

#

Yup - That seemed to fix it - Weird

#

Granted, I randomly re-joined an additional 300 or so rooms the other day for some reason, so :p

orchid remnant
#

If that is what you tried to do then I would highly suggest reading the information in the room before complaining (it's usually there for a reason). If you were trying to access it with a vhost and it's still not working, give me a ping

zenith falcon
#

I just wanted to provide feedback that the Osquery room is poorly made. It doesn't give me direction on how to answer the question for Task 5 > Creating Queries. As for Task 6, the instructions aren't clear enough to let me run Kolide Fleet. I'm not even running my own VM, I'm following the steps using THM's VM and it's throwing out an error.

#

It's not just this room. In the Cyber Defense path, there are rooms that are still in Development (MISP, Suricata for example). It's as if this path wasn't even ready to be released but pulled the trigger anyway

lament geyser
lament geyser
silent cedar
#

On the terms page are a few typos: https://tryhackme.com/terms
"Some of these statics are sent to the third party analytics service" - should be statistics

"These captures do not include any of the aformentioned personally identifiable information "

"We collect the aformentioned information..."

"... the data follows the aformentioned processes."

  • should be aforementioned

"... have the right to request our comapny to complete the information.." - should be company

zenith falcon
# lament geyser Great to hear your feedback. How do you think we can make Task 5 more clear to a...

With regards to Osquery > Task 5 Creating queries.

The question asks What is the query to show the username field from the users table where the username is 3 characters long and ends with 'en'?

SELECT username FROM users WHERE username like '%en';

My code above went through, but it didn't take into account that the username needs to also be 3 characters long.

My code marked as correct would only satisfy the username as long as it ends with 'en'.

Also, nowhere in the Osquery documentation did it contain any hints/tips on what syntax to use. I had to get help from the #room-hints channel to figure it out. It would've been best to suggest going to w3schools.com or something similar. The Osquery documentation assumes you are already versed with SQL (which I wasn't), which made it a useless resource.

silent cedar
zenith falcon
#

I didn't have to change it cuz it took my code as the right answer

#

Someone really needs to look into the Osquery room. I'm even having problems with completing Task 6

#

I'll just skip this room as it's just not worth it to take so much of my time and effort.

thick rock
#

I switched my VPN server in my account settings from EU to NA and regenerated, I now get a 404 when trying to download my configuration file. Does it just take time to update? I cleared my cache and tried again but no luck.

lament geyser
lament geyser
thick rock
#

Followup to my issue: looks like it was only US-WEST that had an issue. I can download US-East fine

left fractal
#

minor nitpick on new autopsy room autopsy2ze0 task 3 List all the user accounts. (alphabetical order) pretty sure that r comes before u in the alphabet. last 2 users

lament geyser
patent garnetBOT
#

Gave +1 Rep to @left fractal

idle juniper
#

is Ghostcat still a valid a room?

spiral flame
idle juniper
patent garnetBOT
#

Gave +1 Rep to @spiral flame

crystal sorrel
#

Hello, I have had some problems with the connection to the machines, after an hour I lose the connection, but in the platform I see that the machine is still active. does this happen to anyone else?

#

BTW this happens to me since I became a VIP

full tendon
#

Hey, I am currently finishing the "Complete Beginner"-path, and I just noticed that my entire progress in the Linux Fundamentals rooms Part 1,2 and 3 is gone

#

I answered one question to check if it is just a display bug, but it is now shown as answered and the progress of the room changed accordingly

#

Oh I just see that they seem to be new releases?

silent cedar
#

Yea, they got reworked

full tendon
#

Ah okay

covert kernel
#

@covert kernel

covert kernel
blissful otter
#

https://tryhackme.com/room/mitre
Task 6 Question 5 "Where can you find step-by-step instructions to execute both scenarios?"
The correct answer is no where to be found on the linked page and the page you used to get the correct answer for no longer exists. In the linked page it says "The APT29 emulation plan is a human-readable, step-by-step" The correct answer is ATT&CK Arsenal which has no mention on the linked github page.

lapis socket
#

In the Content Security Policy room, in task 1, I am using a payload that supposedly works to send the administrator's cookies to my beeceptor, but I am unable to receive them. Even using payloads from writeups, I am not able to receive the flag.

covert kernel
covert kernel
hazy stratus
#

blame holo

covert kernel
#

Hello i have a problem and i cant open blue and vulniversity rooms, i have subscription enable but those two rooms still loading but never open

spiral flame
#

That's a known site issue

balmy spoke
#

I tried to download a connection pack (US-west-regular) and instead of downloading it takes me to this page:

#

US-east-regular works

frail abyss
#

Skidy said in #announcements a while ago that in one of the newest updates they would make all the learning paths free to enroll, but when you press on your profile and it takes you to your private profile and you are subscribed it says under "Why stay subscribes?" "Enroll in all learning paths" which makes it seem as it's not free to enroll in them. I don't think that it's a major bug but just something that I noticed 🙂

brave reef
#

The site team aware aware of this! Thank you for your message :)

buoyant ingot
#

I think maybe it just needs a little clarification. It might be free to join all paths, but some of the content within the paths are for subscribers only

maiden citrus
#

hi

exotic kernel
#

So in Complete beginner /web hacking fundemantlas/burp suite dark star says "Prior to attempting this room, I highly recommend checking out the 'Web Fundamentals' room. If you are familiar with basic web request structure and SQL injection, you're already set!"
however if you go to web fundemantals you indeed see a mysql module, but we havent done sql injection there, we assumed we had credentials from else where then used msfconsole to search through the db using the mysql-client terminal utility, so we havent really discussed anything about sql injection up to this point
please correct me if I am wrong or If I am missing something
much appreciated
@brave reef

edit : swap web fundemantals for network services 2

brave reef
exotic kernel
#

ok

#

done

spiral flame
#

Nor is it the path.

#

Web Fundamentals, the room, is a room. Kt doesn't involve mysql at all.

exotic kernel
#

I am sorry

#

swap web fundemantlas for network services 2

spiral flame
#

Does the Burp Suite room recommend completing the Network Services 2 room?

#

I think you're misreading the text. It's recommending that you complete the Web Fundamentals room first.
It's also saying that if you are already familiar with HTTP and SQL injection then you can just skip ahead.

exotic kernel
#

it recomends seeing the web fund room , then says if you are familiar with request structure and sql injection carry on

spiral flame
#

Yes. They're not overly related.

exotic kernel
#

so to be clear

spiral flame
#

Two somewhat separate sentences

exotic kernel
#

he says you should have sql injection knowledge yet until now we havent done sql injection

#

its a minor typo untill this point , but I dont know if sql injection knowledge is really neccesary in this room

spiral flame
#

Attackbox doesn't seem to come back if you reboot it.
at least not within a minute or two

#

@topaz venture plz install sshuttle on the attackbox thx

patent garnetBOT
#

Gave +1 Rep to @topaz venture

spiral flame
#

Lmao

buoyant ingot
#

ummm. NotLikeThis

sleek canopy
#

Active Directory Basics is a Subscription-Only room but it shows up under the free room's filter.

mild breach
sleek canopy
#

@mild breach Oh...yaaa thats right.

topaz venture
spiral flame
#

I installed it via Apt

topaz venture
spiral flame
#

I can't be sure that it would have come back at all, I just thought I'd broken it so I restarted. Then gave up waiting and span up a new one

topaz venture
#

Mhh okay

#

I can't see any reason for it not coming up after a few minutes of waiting tbh

#

I'll test it apart of the Throwback troubleshooting / updates next week but

#

It's always came back up for me after waiting a little

spiral flame
#

I'll be around to test things more after Monday, just noticed it when I tried something dumb with it

topaz venture
#

(that's not to dismiss things -- the process I use for devving on the AB is slightly different to the deploy process in dev)

#

I'll take a look into it to see if I can improve the boot time

sleek canopy
brave reef
#

Log out and back in

sleek canopy
patent garnetBOT
#

Gave +1 Rep to @brave reef

sleek canopy
#

Why does wireshark show up under my rooms? It's a subscriber-only room and I never had a subscription before

mild breach
#

it might have been a free room when you joined it, then turned to premium

sleek canopy
#

Ahhh.... I see.

timid shore
#

guys i got a problem , i connected to vpn and even the tryhackme showing that im connected .. but when i paste my ip in firefox its saying no page found im supposed to get a page ryt ?

clever shell
#

check that you have the right port

spark gull
#

emmm

#

i had a very strange bug

#

connecting to the deployed machine resulted in an error and i now see this

brave reef
#

Why are you pasting your IP? @timid shore
You should be pasting the room IP :)

Use the tutorial room to learn how to access the site's services.
https://tryhackme.com/room/tutorial

spark gull
#

@brave reefhi Jabba

brave reef
#

Hello Pol8y 😄

spark gull
#

odd error deploying the machine

#

seems like i landed on the virtualizator

#

i can see istances and connection properties

#

as passwords, users

brave reef
#

You need to verify to send images :p

spark gull
#

ok

brave reef
#

But you can DM me the screenshots :)

#

If you do not mind of course.

spark gull
#

done

brittle crescent
#

s

frigid siren
#

I want to send img but I can't , please some one help me

orchid remnant
#

!docs verify

raw karmaBOT
zenith adder
#

my profile seems to have lost its progress on the learning path for the Linux Fundamentals, (i had previously earned the badge etc.). It's still saved where i got to on the networking pathway, just lost what it had before. blobhuh

silent cedar
zenith adder
patent garnetBOT
#

Gave +1 Rep to @silent cedar

silent cedar
honest bison
#

notification banners when you enter a question (correct or incorrect) dont disappear

#

in the attackbox/kali browser

#

anyone else had this problem before?

#

like the "uh-oh! your answer is incorrect" notifications

tired obsidian
#

Small typo in the manage-rooms page

covert kernel
#

Hello Guys,
why are some rooms that remain uncompleted while I've completed them, is it my problem or ??

#

specifically Linux Fundamentals Rooms.
; ) Thank You!

frail abyss
spiral flame
#

No progress was lost, it's new content and the old rooms still exist.

frail abyss
#

Oh, well the more you know 🙂

covert kernel
#

anyway it's not a big deal, I was asking if I'm the only one getting it

covert kernel
#

hey guys

spiral flame
honest bison
#

anyone's points/daily tasks completed not update sometimes?

#

small bug but will it update eventually, or are those points just lost?

buoyant ingot
#

they work on a different timezone, I think, so it sometimes shows zero activities on the grid

#

depends when you're active

honest bison
#

i see gotcha

buoyant ingot
#

annoying for me too. I have an unbroken streak, but several days with zero activities showing

spiral flame
#

They also track different activities

cinder iron
#

I am stuck in the "MUSTACCHIO" room. Can someone help me

orchid remnant
foggy quail
#

hi guys, I have been having a question about the room scoreboard

#

is it because multiple people completed the room during the caching windows of cloudflare?

#

so when I complete the room, even tho it says I am 6th, but in the end, I was like maybe 16th

covert kernel
#

so as you can see, i've won a koth game..

#

but haven't gotten the badge

brave reef
#

@covert kernel send me the KOTH game link and your username please

spiral flame
short jackal
hazy rose
#

hello i want to change my country how i change name