#pre-security-legacy-path

1 messages · Page 4 of 1

slender hazel
#

ah well I searched what it does on google and got a different answer

#

thanks man 👍

zealous dove
slender hazel
#

windows hell is always chasing me xd

static lion
#

Help guys. I can't download the flag.txt

#

it says connection refused

zealous dove
limber flintBOT
static lion
#

I got it now. I just had to restart my machine and redo it. THank you guys btw!

plush jasper
#

anyone up for some collab for BBP bugbountys?

bitter dome
crystal ore
#

Can anyone help me with the pyramid of pain it’s telling me to name the file and the hint was Microsoft link but I don’t see anything

zealous dove
crystal ore
#

@zealous dove I already said that before

#

Nothing works

#

I’ve been on the same question for days so I’m telling you it’s not working

glass flume
#

Hi everyone
how can share screenshot with u guys ?

#

cuz i am stuck in task Task 4
Filesystem Interaction Continued

#

linuxfundamentalspart2

#

i am trying to find the answers but i couldn’t

zealous dove
limber flintBOT
zealous dove
zealous dove
#

Okey. So what do you think you have to do to answer the question?

#

Find the 'unknown1' file in tryhackme's home directory.

#

Then use the command that's mentioned in the text, to determine the file type.

#

For question 4 you have to find 'myfile' and then use the command mentioned in the text, to see it's contents.

#

Oh I see the command is not mentioned in the task. It's cat to see the files contents.

median wolf
#

myfiles content using cat

#

unknow is hidden us ls -a

median wolf
glass flume
zealous dove
#

Use pwd to see which directory you are in.

potent wedge
glass flume
glass flume
potent wedge
glass flume
somber currentBOT
#

Gave +1 Rep to @potent wedge (current: #4 - 1822)

potent wedge
# glass flume ohhh thx

no problem.... would have explained it here if needed but it was easier to just point to the rooms own documentation

agile forum
#

Hi everyone! i have a question about ARP Protocol/Request. Basically Arp Request is used in order to find someone's MAC address by sending a msg to everyone sharing the same network, right?

weary marsh
#

Which TCP ping scan does not require a privileged account
Help me plz i tried every thing but couldn't find a answer

brave cobalt
languid hound
#

Guys, in windows fundamentals 2, where we suppose to find the exe files? Like in task 3, they ask for the exe file but, I can't find in the UAC screen. I wonder maybe there is a thing for finding the exe files I don't know. Can you share with me how you found them?

languid hound
#

Hi, in windows fundamentals 2, task 4, question 3. I tought because of there is no address written in IPC$, it is the hidden file. But, the answer longer than that. What can I do?

cyan pulsar
#

@languid hound Loading the room now, but the answer isn't the IPC$

#

If you open the Computer Management tool, you can see shared folders in there, the answer is in that screen.

woeful furnace
#

Is the "investigating windows" practice module doable before the pre security pathway is complete? Embarrassed to say that I tried to skip out half way of my intro to networking room and wasn't able to answer the first question

cyan pulsar
#

@woeful furnace Do you have much in the way of experience running windows management tools? If not it may be a little rough. Without knowing your background it's hard for me to make comment.

#

It's not a hard module, but some of the questions may require some google work.

woeful furnace
#

Background is non IT / absolute beginner. Think I need a bit more foundational work before I try it 😛

cyan pulsar
#

@woeful furnace If you can figure out how to google answers you are half way to the goal, it's problem solving. Most people can't solve problems, or don't have the experience to. Solving a hacking incident is a lot of experience and knowledge. It's hard to just roll with it.

weary marsh
woeful furnace
tepid sleet
tepid sleet
tepid sleet
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #71 - 88)

zealous dove
#

To read a file you have to give the path to it. If you are in the correct directory you only need cat file but if you are in a different directory you either need to cd into the directory. Or use the path like cat path/to/file

#

In this case would be cat myfolder/myfile

tepid sleet
#

Ah, thanks so much, a light just came on for me 🙏 I used the cd to get inside the myfolder. appreciate your help!

tight ingot
#

You could also cat myfolder/myfile

languid hound
#

HI, I'm in windows fundamentals 2, task 7. The question is "In System Configuration, what is the full command for Internet Protocol Configuration?". I find the answer from google but I don't understand accually why? I actually don't understand general about the command things in this room. Am I have to memorize all of them? I can't figure out from the task explanation and try to understand why it's answer is this. But still nut fully understand, is there any body can explain

languid hound
#

Also in win fun 3, task 8; in the documentation page of bitlocker. It says if you don't have TPM you can use a startup key or use a password and mention non-TPM devices in this paragraph: The system BIOS or UEFI firmware (for TPM and non-TPM devices) must support the USB mass storage device class, and reading files on a USB drive in the preboot environment. I find what the answer is but there is no word like this in documentation and I don't actually get why it's answer.

zealous dove
#

"use a startup key, which is a file stored on a removable drive"

#

Hence USB startup key

languid hound
#

Oh, I guess my brain stop. I read that sentence from 10 minutes😵‍💫

languid hound
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #71 - 90)

cosmic pine
#

Hi all, I'm going through Threat Intelligence Tools room and can't get Thunderbird to work on the deployed machine. Says "Thunderbird failed to find the settings for your email account". I don't suppose to use a real email address, right? Thanks in advance.

zealous dove
#

Then right-click open it with Thunderbird.

cosmic pine
#

Done. Thanks.

marsh veldt
#

Hi ...I need a roadmap for cyber security....where can I find one...am I in the correct channel?

#

I m at level 0

zealous dove
marsh veldt
#

I have no idea what thm is ...

#

Whatever you think is the best for me

marsh veldt
zealous dove
marsh veldt
#

Oh

#

😅

marsh veldt
zealous dove
marsh veldt
#

when i see those roadmap, i feel the imposter syndrome coming up like my short web dev career lol

zealous dove
#

Even then might not get it all.

marsh veldt
#

Haha yeah a bit overwhelming , but it's fun so hopefully i can get a career with this

gloomy locust
#

Not sure if this is the right channel to ask for help, but I'm stuck on the Windows Fundementals 3 Room, specifically the question for task 2. It asks me to find the date 2 definition updates were installed but when I input the (what I believe is) the correct date, it says my answer is incorrect.

Edit: Nevermind I was a bit hasty, a simple refresh was all it took to fix the error

neat bane
#

Hi. I'm new here. I am currently in the in the 'putting it all together' room in 'how the web works' module, and I am unable to complete the 4th task(quiz). I can't move the tiles, they are like images.

What do I do

zealous dove
#

Hmm are you on mobile device or what browser you using?

neat bane
zealous dove
#

Sorry can't be of any help.

urban bramble
neat bane
neat bane
#

I have done it.

dapper inlet
neat bane
#

Hi. I'm currently in Linux fundamentals part 3 task 6. I don't understand the question.

cyan pulsar
#

@neat bane So crontab / cronjobs are automated tasks on a linux machine.

#

the question is asking when will this task be run.

#

so if you hit crontab -e

#

you will see a screen starting many lines with # theses are commented out lines.

#

there should be one line that does not start with #.

#

This is generally where you will see * * * which related to certain timed parameters, eg. every hour, minute, second. In this instance there is a item that is run @ a specific time.

neat bane
cyan pulsar
#

@neat bane Well, you do. It's just not listed how you are expecting it.

#

||@reboot|| (cron will run) /var/opt/processes.sh

neat bane
cyan pulsar
#

No, the answer is in your last comment. Edited comment to remove actual answer

neat bane
somber currentBOT
#

Gave +1 Rep to @cyan pulsar (current: #174 - 38)

cyan pulsar
#

I can understand that, I'm not certain that it's discussed as an option in the room. However that general location is used for the timing of the cronjob, so my eye was immediately drawn to that area.

steel mirage
#

Hey guys, I am new to this discord and TryHackMe in general, so I hope some friendly souls will help. I have been trying to do my first "Practice"-room, but I can't get either the AttackBox or openvpn to work fully. The reason I can't get the attackbox to work is that I simply can't get it connected to the internet. I feel like this should be an easy fix but I don't know how - I have tried googling but I can't find anyone else that have this issue. For the openvpn on my own Linux machine, I simply don't know how to get the room ip-adress without opening the attackbox. This is a problem as my linux machine is a virtual machine and my computer can run them both (or at least very poorly). I really hope someone can help so that I can get started doing some of the recommended rooms based on what I have learned. As mentioned I am a complete beginner, so I want to provide more information, but I am unsure of what to add. I am hoping that someone will try and help because I dont know what I can do next

#

For the AttackBox i think i have tried doing nmap -Pn [ip-adress] in the terminal, because I saw somebody do that in the beginning of a walkthrough, but I am not really familar with that command (other than what i could get from man nmap'ing)

#

From googling I saw some reddit-posts about that it could be related to premium-access, but the conclusion on that I think was that internet should be included in the 1 hour of free AttackBox access

#

I have zero understanding of this but I feel like if I succesfully connected to the server with the ip-adress (checked using 10.10.10.10 and it saying that I am connected) should I then not have internet? It feels kind of wierd having the ip-adress used to communicate with on the internet but not access to the internet itself

#

But again I dont know anything I just hope someone could help me walk through it

zealous dove
#

The 10.10.x.x IPs are part of the THM network which is not connected to the internet.

#

When on the attackbox you are on this THM network so you can access those target machines.

#

When using own VM you have to connect to the openVPN to acces the THM network so you can acces target machines.

steel mirage
steel mirage
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #67 - 108)

steel mirage
zealous dove
#

Can you verify? Then you can share a screenshot of where the IP would appear that you speak of.

limber flintBOT
steel mirage
#

I am apparently not able to put in the screenshot in the chat, but my apologies for not thinking of that sooner

zealous dove
#

You have to verify first. See link above.

#

I think I know what you mean. When you acces the attackbox there's an IP on top of the page on THM website. The VM which is connected to the openVPN is replacing the attackbox and the IP you get is then on top of the webpage. However, this aspect of the website is broken so it might say 'not connected' while in fact you are connected. You can thus ignore this. If you connect to the openVPN from your VM and then you can ping 10.10.10.10 it means you are connected.

steel mirage
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #67 - 109)

zealous dove
steel mirage
steel mirage
#

I just have to see a number on the 10.10.10.10 page (?)

zealous dove
#

Should be able to see it on your VM desktop corner aswell in Linux.

steel mirage
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #66 - 110)

cosmic pine
#

Hello, I'm going through the Snort room (task 2) and trying to run the script by running "sudo ./traffic-generator.sh". Says "command not found". No idea why.

brave cobalt
cosmic pine
somber currentBOT
#

Gave +1 Rep to @brave cobalt (current: #11 - 621)

sly crown
#

i'm looking for friends to learn togheter i'm in presecurity windows part 2

south jackal
#

I am looking for friend to work together learning kalinux all tools pre-installed

marsh veldt
#

guys i need help with an issue i'm having in TryHackMe

#

i was doing the task where u have to change your bank balance

#

and i added 2000 to my bank successfully but when i had to type in my new balance to the input box

#

it kept saying the balance was wrong??

zealous dove
marsh veldt
#

oh okay, thankyou!

plush lynx
#

Not sure if this is the correct place to put it but I spotted an out-of-date piece of information on the Windows Fundamentals 1 room under the Windows editions task. The task states that the current Windows server operating system is Windows Server 2019 however it is now Windows Server 2022 I believe.

sand tiger
#

Is anyone else having an issue in Linux Fundamentals 2 attackbox where the password isn't being accepted?

sand tiger
#

I'm on the part where you log in with ssh tryhackme@[insert IP address] and I'm trying to input the password. Every variation I've tried has returned "Password denied, please try again."
(I have a screenshot if needed)

tight hawk
#

Share the room link

sand tiger
tight hawk
#

It says the password is tryhackme

sand tiger
#

Yeah, that's what I've been putting in

tight hawk
#

Just copy paste it without "" this

sand tiger
#

I've tried tryhackme, "tryhackme", TryHackMe, I haven't tried Tryhackme it could be that

tight hawk
#

Start the machine again

#

tryhackme is the password for that

zealous dove
limber flintBOT
sand tiger
#

Ah ok

sand tiger
zealous dove
#

Which IP are you using?

sand tiger
#

10.10.238.25

zealous dove
sand tiger
#

yup

zealous dove
#

Hmm k. Screenshot would be verh helpful.

sand tiger
#

There we go

zealous dove
#

So you are using the IP from the attackbox.

#

You need to Start Machine to get the target IP.

sand tiger
#

Correct. Sorry, did I misunderstand?

#

OHHHH

tight hawk
sand tiger
#

Wait they're different? 238.25 is the one I grabbed from the header, not the instructions. Why have that and then have it not be the one you need?

tight hawk
#

Because you need to connect to machine ip and not your attackbox ip

sand tiger
#

They're not the same thing?

zealous dove
#

No

#

One is attacking machine and one is target machine.

tight hawk
tight hawk
sand tiger
#

Yeah, that makes sense. Thank you for clarifying

cloud delta
#

Hey guys - I have a question about the Packets & Frames Room on the pre-secuirty pathway. My understanding was that packets are inside frames, but the room seems to indicate that frames are inside packets. Is this just a question of different sources using different terminology? Does anyone have some insight on this?

#

here's a diagram that's closer to what I had learned before:

#

[Frame(Packet(Segment(data)))]

cyan pulsar
#

?

cloud delta
#

That's what I thought

#

the Packets & Frames room has frames encapsulated within packets and says they don't have IP addresses... that model, too, would have layer 2 frames containing layer 3 packets like I learned before

cyan pulsar
#

It depends on if you are encapsulating or de-encapsulating I guess?

cloud delta
#

The analogy they use is an envelope within an envelope, with the outer envelope being the packet and the inner one being the frame. I think it's the other way around. Frames have more information, so I thought it'd be the outer envelope.

cyan pulsar
#

When you are on the network the packet is king, but when you go outside the network (internet) the packet is encapsulated.

maiden atlas
#

will OSI models be needed when ur tryna hack smth or is it just for knowing?

cyan pulsar
#

It's for understanding networking, which is pretty important for hacking.

maiden atlas
#

oh cool

cloud delta
#

hmm that's a good perspective @cyan pulsar thank you

somber currentBOT
#

Gave +1 Rep to @cyan pulsar (current: #148 - 49)

maiden atlas
#

its behind a paywall tho

cyan pulsar
maiden atlas
#

thnx

cyan pulsar
#

It's not an all encompasing article. But it may help.

cloud delta
#

to continue the analogy, if you want to understand how to make sure your mom never sees your report card, or gets a fake one, you have to know what the envelope looks like and how the letter's going to get to her @trymph1

#

that's what the OSI model is for computers talking to each other

maiden atlas
#

so its basically what layers are involved in communication between computers?

cloud delta
#

yeap and who adds what information when and who interprets that information

sly crown
ruby widget
#

#pre-security-legacy-path i just complete the intro to cyber security and upgrade to level two , what path should i chose next anyone can help me out ?

woeful furnace
tame nimbus
keen canyon
tight ingot
#

Since Windows 11/Server 2022 are out

idle verge
#

could someone explain me the third step of how a request to a website works in the presecurity course in the quiz section.
the third step is: "check your recursive DNS server for address"

cyan pulsar
#

I'm not sure what you are asking for, but you are correct for step 3.

#

Perhaps not the best example as it does focus on cisco umbrella as the recursive dns. But it explains things well enough.

idle verge
slow marlin
#

Learn about DNS is necessary

keen canyon
idle verge
tribal sparrow
# idle verge You did not understand me correctly, I’m asking why is the third step of “how a ...

You need to get how they work , so you can exploit them later on ,
The things that you are learning now are just headers of things ,
To get u familiar with the coming rooms ..
Like if you don't know what protocols do browsers use to get to the other side ,
How would you intercept them and modefi them ..
My advice is .. just keep on learning, it might seem irrelevant stuff know , but the more you learn the more you are able to see why learning this and that was necessary.
Good luck with that

young lakeBOT
#

There are no URLs in that message.

hearty gate
#

ok

burnt fog
#

hello friends

#

What would you call a team of cyber security professionals that monitors a network and its systems for malicious events?

zealous dove
burnt fog
#

Yes and I answered Security Operations Center (SOC) but If i send my answer it comes incorrect

burnt fog
zealous dove
burnt fog
zealous dove
#

Well don't write the acronym.

#

If you look at the asterisks (*) in the answer field you can see how many letters/words/etc the answer should be.

zealous dove
burnt fog
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #51 - 149)

burnt fog
zealous dove
burnt fog
zealous dove
# burnt fog SOC

In the answer field (where you write the answer) you see asterisks (aka stars *) it indicates how many letters and/or words the answer should be. Based on that you know it's not SOC because there is not only 3 asterisks. Write out the full name.

burnt fog
burnt fog
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #51 - 150)

brazen void
#

Has anyone had any issues with Linux Fundamentals Part 3 and the .flag.txt file not being on the AttackBox machine?

brazen void
tight ingot
#

Did you start the python server on the target machine?

brazen void
#

Yes it's running in a seperate terminal

tight ingot
#

No, you're starting the python server on thr wrong machine.

ruby widget
# brazen void

start it on deployed machine buddy , not in the root machine

tight ingot
#

You need to SSH in to the target machine, and then start the machine.

brazen void
#

Damn

#

Thank you

#

Yep, got it now. Can't believe I did that. Thanks for the help

tight ingot
#

It's ok, you're not the first user to do that, and you don't be the last.

iron beacon
#

started learning about cybersecurity currently 19% through this pathway

sage violet
#

Hello, I recently completed the pre-security pathway and received the certification, unfortunately it has my nickname and I would prefer my full name instead to add it to my LinkedIn Account. Is it possible to update the name on it?

vast crest
#

hey guys, i wanted to ask if the pre security pathway is a good start for a complete beginner that doesn't know anything about this field or is there anything i should study alongside with the presecurity pathway

ruby ocean
zealous dove
zealous dove
iron beacon
#

40% through guys liking everything so far

verbal field
#

Hello, I am stuck at Introduction to Defensive Security. I do not see the solution to the question asked at the end. 😅

Sorry, confused the channel. Posted this earlier in the Introduction.

Edit: I did not write the whole answer...Solved.

cyan eagle
#

hey homies, im stuck in the cron tabs section of linux part 3 - I cant see the time of the task ?

tropic meteor
#

@cyan eagle Looking at the answer that was accepted for me: You're not looking for an actual time, but for an event.

#

So basically, look in the place in the crontab where you'd expect to see a time, and note what it says there. It's a bit confusing because the tutorial doesn't really mention this syntax as a possibility. Hope this helps.

cyan eagle
#

yeah it is still abit confusing, do i have to input a crontab command for this or just look at what its there coz i cant see it on the current crontab

#

?

#

ok i got it, its was at reeboot

#

that was suuuper lame tho hah really badly written

vast crest
ruby widget
# zealous dove No

hello buddy i complete the pre security path and and into to cyber secuity what path should i chose next any sugeestion ?

zealous dove
ruby widget
ruby widget
ruby widget
zealous dove
#

Same rooms in those paths

upper junco
#

After presecurity ... introduction to cyber security is better to start?

brave cobalt
dusky ibex
#

hey im on the presecurity path and just ran into my first paywall on what is networking it redirects me to a premium room, how much of the path is limited by paywalls?

keen canyon
tight ingot
sage violet
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #43 - 175)

ruby widget
long cloak
#

Hello in pre security, answers to windows fundamentals2 task 2 are outside what is taught in the room, why is that?

brave cobalt
white phoenix
#

hey where I can practice what I learned in the pre security's path please ?

#

Like smalls projects or something like that

keen canyon
#

you should take good notes on it and keep on completing other rooms. when you feel you dont understand something look at notes.

#

also learn using wireshark and observe internet traffic while browsing internet

white phoenix
#

yep, I take notes with cherrytree but I would like build something for see how it all happens in practice

keen canyon
#

there is a tool where you can build network...i think its called packet tracer

#

or try to make your home network better

white phoenix
#

Thanks for the answers

keen canyon
#

no problem...there is room for Wireshark on thm

white phoenix
obsidian heron
#

i just started the pre secuirity

cursive rampart
weak rune
odd rain
#

i just started this pre-security

#

do i have to remember every single topics of this module?

tight ingot
odd rain
somber currentBOT
#

Gave +1 Rep to @tight ingot (current: #1 - 2646)

glossy cairn
#

Anyone else have the issue in fundamentals of windows 3 when trying to open the windows table through run it says “call this number?”

zealous dove
limber flintBOT
glossy cairn
zealous dove
bold carbon
#

g

odd rain
#

can anyone tell me what is the password of linux machine?

#

i am try to update . But its asking password

#

like [sudo] password for tryhackme:

tawny parcel
# odd rain like [sudo] password for tryhackme:

click on split view symbol in the room, then navigate to the (i) symbol and click on it. It should provide you with all the credentials you need.

—————————————————————-

note: the symbol is small and found besides the other symbols like the terminate button and the add time button, its an i inside of a circle.

cosmic pine
#

Hi all, I'm trying to complete the Summit room. I can start the machine but it won't show in split view. Can't see a split view button either. Any ideas?

tawny parcel
# cosmic pine Hi all, I'm trying to complete the Summit room. I can start the machine but it w...

Start The AttackBox will show the Show Split View button if it not already inside of split screen. The AttackBox is the machine you will be working with to exploit the vulnerable machine. The Start Machine will not show up in Split View, it will be a small rectangular box containing the name of the machine, the ip of the machine and the duration of expiration. This machine is the machine you will be attacking using your own VM or AttackBox

tight ingot
odd rain
tawny parcel
# odd rain it shows the password option : N/A

did the attackbox load? If it did that isnt possible, you cant enter Ubuntu GUI without a password and that applies to most linux distros. The only reasonable idea is that the machine did not load yet and therefore a password didnt exist, meaning N/A.

zealous dove
tawny parcel
somber currentBOT
#

Gave +1 Rep to @tawny parcel (current: #662 - 6)

tawny parcel
sterile meadow
#

Hi

young summit
livid garnet
#

HI everybody!
Quick question! I finished pre Security and has just started on the Complete Beginner Path.
Any recomendations on CTFs for that level, outside the ones that are in the current path?
Ty.

tight hawk
timber tide
#

Hi I'm struggling with the question in Task 3 of Windows Fundamentals 3. From all I can tell the answer should be virus & threat protection, however, the page tells me that is wrong. Could anoyne help me?

rough marsh
#

Hello,
Can someone help me with question in room "Windows Fundamentals 3"?
Question from task 3 is not correct - Virus & threat protection

tight ingot
#

Try just typing Virus threat protection

novel flint
#

I checked, that works

dark glacier
#

why is pre seurity is so energy draining

#

3 days in maybe got to how http works

#

idk if thats even a good pace

#

lmk

potent wedge
#

or well pace yourself

#

and you got this even if you go through it slowly

dark glacier
#

my unis gonna start and thats gonna drain much more energy

#

i wanna make sure i get pre security done before my uni starts

potent wedge
dark glacier
#

i see

novel flint
#

I've been knocking it out in little chunks when I have time at my job

marsh veldt
#

@dark glacier what do you plan on doing after pre Security?

dark glacier
marsh veldt
#

We can do that with just pre Security?

dark glacier
#

Yes

#

Since pre sec has linux basics ig

#

Or I may even start jr pentesting

marsh veldt
#

yea it has Linux basics
I also wanna start CTF but idk if that's possible with pre Security

yeah me too I'll just go for jr pentesting

dark glacier
#

I like being offensive in cyber

marsh veldt
#

me too

dark glacier
#

Yee

marsh veldt
#

well, i hope we could work together someday

dark glacier
#

Looking forward to it (:

marsh veldt
#

Happy hacking bro (:

dark glacier
#

Yee happy hacking (:

marsh veldt
dry fable
#

For Pre-Security, under Windows Fundamentals 3 task 3 the answer is "Virus & threat protection" for sure because it matches the asteriks on the answer format (***** * ****** **********). I went on ahead on youtube just to make sure I'm not going crazy with the answer, is this a bug? or my answer is just plain wrong.

Left screen is the THM and right is youtube. Any assistance will be much appreciated !!

#

Anyway, goodmorning ya'll. Happy Friyay

tight ingot
dry fable
somber currentBOT
#

Gave +1 Rep to @tight ingot (current: #1 - 2707)

tribal topaz
#

if we complete pre security we don't need to go for introduction to cs and beginner path or should we keep some notes about them

zealous dove
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #39 - 205)

dark glacier
#

im so overwhelmed with linux basic 2

#

its like im constantly haunted by myself that i didnt quite learn the topic above the currenat topic

#

and some of them i just cant understand

#

this fever got me lazy and less energy dozing off and shi

#

what wpuld someones advice be if im struggling with the linux basics 2 ):

upper bear
dark glacier
dark glacier
#

blames on me too dam this phone my attention span is low

marsh veldt
#

so i dont really understand what a fragment is in room (HTTP in detail) its saying (Fragment: This is a reference to a location on the actual page requested. This is commonly used for pages with long content and can have a certain part of the page directly linked to it, so it is viewable to the user as soon as they access the page.) so i once created a website, just some HTML and CSS and Js and this website had some sections like (intro, my projects, contact us etc...) is that what it means a fragment ?

brave cobalt
marsh veldt
#

oh i got that
Thanks blobfingerguns coolguy

#

@brave cobalt

dark glacier
#

im greatful that when i started to respect my pace and took breaks and between, ive effortlessly completed the linux fundamentals 1 and 2 which was a pain in the ass before. thanks to that guy/girl who told me to respect my pace i feel much better now (:

dark glacier
#

Btw

#

In linux fundamentals 3

#

Task 4 serving files from your host

#

What is the purpose of putting up python3 -m http.server

#

And how do we know what files it has cuz the next the task showed was download something with an wget

#

And can someone provide me an actual/irl example that uses this ?

tight ingot
#

You'll see why in a minute.

dark glacier
tight ingot
#

however most times in CTF's people use it to move their own files, or files they know is there from enumeration.

dark glacier
#

I partially got the purpose

mossy fog
#

version - Plesk Obsidian 18.0.51 , any vulnerability ?

prime robin
#

hi , i have a problem with phising prevention room , when i submit the answer which is "<domain> service ready" dose not working, please help me to solve the problem i still just have this question and than finsh the whole room on soc1

terse forge
prime robin
#

thank you it works

brave cobalt
vivid inlet
#

hi, I've just started "Windows Fundamentals 1". In the second task, the link to the differences between Windows home and Windows pro is out of date and you have to look for information on the question asked at the end yourself, which is not difficult. Nevertheless, you can update the content of the second task or attach the appropriate link

tight ingot
dark glacier
fleet sedge
#

Hi, I am stumped on a Windows Fundamentals 1 'The Desktop' question. "Besides Clock and Network, what other icon is visible in the notification area?". I have read through the information multiple times and have tried many things but nothing seems to be working. Would appreciate some help with this one

zealous dove
fleet sedge
#

Is it something to do with volume?

zealous dove
fleet sedge
#

Thanks for you help 🙂

frigid silo
#

Hello everyone,
I have a problem with Windows Fundamentals 1, Task 6 (User Accounts, Profiles, and Permissions). For the last question, "What is the account description?"—even though I’m putting the right answer, it’s not being accepted. Is anyone else having the same problem?

unborn sun
frigid silo
#

Yes,Answer is Account is disabled?

unborn sun
#

No, to which account are you looking to ?

frigid silo
#

Guests account

unborn sun
#

You need to look to the tryhackmebilly account

frigid silo
unborn sun
#

Let me know if it works for you

frigid silo
frigid silo
unborn sun
#

What did you put ?

frigid silo
#

Account is disabled

unborn sun
#

From where do you check the account ?

frigid silo
#

Both-guest and tryhackmebilly

unborn sun
#

Yup but what did you do to see them, like with which tool ?

frigid silo
#

Just go to properties and check. From lusrmgr.msc

unborn sun
#

And you clicked on the users tab ?

frigid silo
#

Yes I did! Server problem??

unborn sun
#

Can't connect too so I guess

unborn sun
frigid silo
#

Yes.i did!!

unborn sun
#

And from that you can see the answer

frigid silo
#

Yes,I did everything,but not accepted

unborn sun
#

From the image I sent above, the answer is the description for 'tryhackmebilly' account name

frigid silo
#

Yes the same tryhackme account is enabled and Guest is disabled. I tried both,didn't work

unborn sun
#

No I feel like you didn't understood the question, you don't need to click on the account, you want to check the description associated to account named 'tryhackmebilly', you can already see it from the image I send above

frigid silo
#

I got it that one .The one I stack is last question (what is the account is description?)

unborn sun
#

Yup and it's on the same row

frigid silo
#

Yes,I see.Thank you very much for your patience and help.I just look at Guest properties and tryhackme properties.Now I understand what you meant🙂

unborn sun
#

No problem, sometimes the answer isn't complicated (but sometimes they are harder to find too)

simple ibex
#

Just did the OSI Game as part of the OSI Model module - great fun xD

#

Didnt expect that

grave shale
#

I have studied ccna in the past but i remember that in OSI Model network layer that we divide (from segment to Packets ---> small chunks of data ) but here says It's the opposite anyone has idea plz?

#

The third layer of the OSI model (network layer) is where the magic of routing & re-assembly of data takes place (from these small chunks to the larger chunk).

primal parrot
#

Maybe I should ask here instead of room help. Ok, I have a somewhat grasp on the Ports 101, Source port and Destination ports, first being random 0-65535 and the latter being dependent on where you are getting your data from(80 if website). But I'm unsure once i get to the firewall 101, because I know the Firewall can block the port it controls, and limit the udp/tcp, but how does it limit the port asking for data, if the port is random? Is it Ip address based?

brave cobalt
# primal parrot Maybe I should ask here instead of room help. Ok, I have a somewhat grasp on the...

Fundamentally, firewalls are similar to a router in that it uses access control lists (ACLs) to decide what traffic to permit and/or block. ACLs would usually include a source IP, destination IP, protocol and action (permit/deny). The firewall will make a decision on incoming or outbound traffic based on those permitted or blocked ACLs. However, there are also firewalls that have an implicit-deny rule (meaning those that are not explicitly permitted are blocked).

brave cobalt
#

Note that packet delivery may vary depending on the protocol used, thus it will need to be re-assembled at the receiving end in order to interpret it properly, in which case, it will be encapsulated from being a packet to a segment.

#

Others may chime in as well.

somber currentBOT
#
cliffchiang
ID

1123879516364865556

Avatar
Account Created

29 Jun 23 07:35 UTC

Account Age

1 year 12 weeks 4 days and 2 hours

Joined Server At

17 Sep 24 13:57 UTC

Join Server Age

5 days and 20 hours

Status

Has no active status, is invisible/offline or is not in the bot's cache.

#
hh8909
ID

875199779494313985

Avatar
Account Created

12 Aug 21 02:11 UTC

Account Age

3 years 6 weeks 4 days and 8 hours

Joined Server At

07 Jul 24 07:21 UTC

Join Server Age

11 weeks 1 day and 3 hours

Status

Has no active status, is invisible/offline or is not in the bot's cache.

#
whale.120
ID

871544461015015454

Avatar
Account Created

02 Aug 21 00:06 UTC

Account Age

3 years 7 weeks and 10 hours

Joined Server At

11 Nov 23 05:36 UTC

Join Server Age

45 weeks 2 days and 4 hours

Status

Has no active status, is invisible/offline or is not in the bot's cache.

tight ingot
#

@inner bloom is there a reason you're doing this?

long rivet
#

hello everyone i hope u’re all doing good , this is yacine and i’m new to tryhackme

#

i have some questions, i would be grateful if some of you could answer

#

i’m currently enrolled in the pre security path

#

and i choosed to start with introduction to networking and intro to linux ,

#

and i successfully completed the 2 modules

#

but i didn’t feel really satisfied about my learning, and i want to practice what i’ve learnt ,

#

so when i went to search for some challenges about linux and networking

#

i didn’t know how to find them

#

it’s like i got random ctfs ,

#

and i’m kinda person who is structured in his learning

#

i mean , for example if i learn networking, i want to solve some ctfs about what i’ve learned

#

if i learn some linux stuffs

#

i want some ctfs avout linux

#

and etc ……

#

so i really want some guidance from you

#

since i’m new to the industry

#

i hope u’ll get the point

#

and thank u all

warped wind
#

There is not really such a thing as networking ctfs afaik, each of the rooms tends to already have practical aspects built into them in order for you to practice and challenge your knowledge. As for linux, pretty much any linux challenge machine will require basic linux knowledge like that, but it will also require basic hacking knowledge which you may not yet poses. If you wish to practice these things further, doing something like setting up your own linux VM would be a good idea, but I'm not sure you'll really get what you are after with "ctfs", not for these topics quite yet anyways.

long rivet
#

so what the ctfs there ( in tryhackme ) about ?

#

like .. they encapsulate several skills ?

warped wind
#

Well most of the challenge rooms are going to be hacking a box, website, or network - though there are others related to things like packet analysis, SOC, hash cracking, OSINT, etc

grand crane
#

hello

#

this is real course

#

or fack

tepid vine
#

Hello

#

Can anyone help me?

#

In System Configuration, what is the full command for Internet Protocol Configuration?

lapis lantern
gusty socket
#

Hello @open glade ! Same problem. You can help me change iptables?

tepid vine
somber currentBOT
#

Gave +1 Rep to @lapis lantern (current: #2241 - 1)

pliant bough
#

Can someone help me out here please? Windows Fundamentals 3, room 2, the question is asking me to provide a date for when updates were installed. The solution is to select View Update History in the Windows Update screen and find them there - but the option doesn't appear in my VM. I can't complete the room! Can I not attach a screenshot here?

tight ingot
limber flintBOT
pliant bough
#

Thanks much, @tight ingot

somber currentBOT
#

Gave +1 Rep to @tight ingot (current: #1 - 2819)

pliant bough
#

Can someone help me out here please? Windows Fundamentals 3, room 2, the question is asking me to provide a date for when updates were installed. The solution is to select View Update History in the Windows Update screen and find them there - but the option doesn't appear in my VM. I can't complete the room! Thanks in advance.

pliant bough
#

The terminal runs a bunch of info down the screen and disappears. Running that isn't intuitive to the lesson anyway, why don't they just fix the VM? This isn't the first time I've noticed discrepancies like this, but the chat help is useless

#

Now I got systeminfo.exe to give me information, but where does this tell me install dates? I don't see anything useful here.

tight ingot
#

wmic qfe list Try that one.

tight ingot
pliant bough
#

yeah wmic qfe list definitely would have done the trick. Thanks for the help

tight ingot
#

Do you now what else would have done the trick?

pliant bough
#

That was kind of my whole point. The left was the screenshot from the exercise. The right was my VM. I didn't have the link available to me for some reason.

#

I mentioned this in my original post

tight ingot
#

looks like a dispjay issue

pliant bough
#

Regardless, I appreciate you looking into it for me.

rugged remnant
#

so I was doing Linux Fundamentals Part 3 and I am genuinely mad that I was tricked.

The file catsanddogs.jpg that some user was accessing did not have any cats :<
File was in var/www/html/catsanddogs.jpg

rigid lantern
#

Hi

silk spoke
ivory kiln
#

"What is the numerical priority value for the MX record?"

user@thm:~$ nslookup --type=MX website.thm
Server: 127.0.0.53
Address: 127.0.0.53#53

Non-authoritative answer:
website.thm mail exchanger = 30 alt4.aspmx.l.google.com

guys what does this signify? any practicality to finding the numerical priority value of an MX record?

marsh veldt
#

"This tells the client in which order to try the servers, this is perfect for if the main server goes down and email needs to be sent to a backup server."

#

knowing where most of the mail is sent first

#

and the mail servers which will be used as a backup

lapis lantern
marsh veldt
#

re: Windows Fundamentals 1

#

Task 2

zealous dove
marsh veldt
#

yes, I noticed Microsoft changed the link. I knew the answer without looking it up, yet felt that wikipedia compare might be a bit more stable, just sharing

#

easy enough to find

#

oh ya! "1201 days ago" 😄

#

created that is

fallen sand
#

hello, I'm doing the Pentest Fundamentals lab and I have a question about black-box, white-box and grey-box penetration testing. Here's the question "You are asked to test an application but are not given access to its source code - what testing process is this?"
i chose black-box testing and it tells me incorrect answer

marsh veldt
#

everything is open source if you know assembly

zealous dove
brisk ocean
brisk ocean
marsh veldt
#

I recently had to resort to that method for something I struggled at understanding what the question really wanted

#

a puzzle in itself coming up with a solution 🙂

somber currentBOT
#

Gave +1 Rep to @brisk ocean (current: #491 - 10)

brisk ocean
somber currentBOT
#

Gave +1 Rep to @modern cloak (current: #915 - 4)

ivory kiln
magic grail
#

Hello everyone! I seem to be stuck on this question. If anyone could share with me some insight would be great appreciated! What layers of the OSI model do firewalls operate at?

#

Question Hint

Provide the layers, replacing the following "x" and "y" with the appropriate layer in ascending order (i.e. 1,2): Layer x, Layer y

#

I got it never mine

ivory kiln
#

😂😂

marsh veldt
ivory kiln
marsh veldt
#

If you wanna elaborate why you found that funny I would appreciate that

wispy sun
#

Im having issues with one of the questions in the packets/frames room. Its the one that asks; Provide the order of a normal Three-way handshake (with each step separated by a comma). My response was "syn, syn/ack, ack" and it says its not right? I tried capitals, still not right. Anyone know why it wont accept that answer?

zealous dove
#

|| SYN,SYN/ACK,ACK ||

wispy sun
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #34 - 231)

ivory kiln
ivory kiln
#

or relevant/appropriate within any kind of civil conversation really

tight ingot
#

I agree, but let's not call people slow.

ivory kiln
#

That's fair. I'll remove that part

marsh veldt
ivory kiln
#

👍

patent prism
#

hi guys ,
In linux fundementals 2 the attackbox doesn't have the same folders and files as in the room so i can't complete the room.
Any help?

signal notch
ivory kiln
marsh veldt
cloud tendon
#

Which task are you on i think I am mixing fundamentals 1 and 2

somber currentBOT
#

Gave +1 Rep to @naive cedar (current: #2263 - 1)

mint sun
#

Hi everyone, I'm in the Windows Fundamentals 1 in the pre security section and I'm having difficulty answering these 3 questions prolly because I'm typing them wrong. Can anyone please help with this?

Which selection will hide/disable the Search box?
Which selection will hide/disable the Task View button?
Besides Clock and Network, what other icon is visible in the Notification Area?

zealous dove
mint sun
#

Yes, I did start the machine @zealous dove

zealous dove
# mint sun Yes, I did start the machine <@663702139607973888>

Okey. Now when you right-click the 'search box' there's a menu. All the way at the top there is an option to Show/Hide the search box. Same goes for the 'Task view button'. For the last question you right-click all the way to the right of the task bar and a menu opens: and at the top there is an option to "open A**** C*****" (fill in the stars)

#

before you answer a question always look at the * in the answerfield to know how many letters/words/etc the anwer is.

mint sun
#

Thank you so much @zealous dove I'm finally able to figure it out following your guideline.

somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #34 - 234)

compact stump
#

In osi model room I have completed the session layer still it is showing it as incomplete

upper bear
compact stump
#

@upper bear thanks,it worked

tight ingot
ember mountain
tight ingot
ember mountain
#

It worked. Ty. Does it often happens?

tight ingot
#

No, it doesn't.

west spoke
#

I had the same question about layer 5, leaving worked, thx

marsh veldt
#

Same here, thanks

marble chasm
#

helloo

#

is the osi model room bugged? task 6 doesn't seem to accept any answers (better, it does accept them and says they're correct but then doesn't complete the task, thereore the room, thereore the path)

zealous dove
marble chasm
#

Thanks

last dust
#

Did this solve the problem for you?

#

I still cant complete this room and it´s the last thing missing for my certificate :(/

brave cobalt
random sparrow
#

hello, who is starter ( beginner ) in penetration tester?

brave cobalt
marsh veldt
#

👍🏻

random sparrow
#

hello dears,
i would like to join or making a team is there anyone? thanks.

solar oar
#

making a team for?

marsh veldt
#

maybe he means for the cyber security 101 path

proven gorge
#

hey what is passowrd of tryhackme attackbox

marsh veldt
#

click the little 'i' icon near the - and power button and it will tell you the web-based machine info for that attackbox

#

otherwise every other user/pass combination should be in task 1 or 2 of the module when initalizing a machine

marsh veldt
#

hello for all i am new

honest zodiac
#

hey i really new to this and just wanted to ask, is doing one level a day ok or should i do more or less?

zealous dove
honest zodiac
#

at the moment im trying to learn hacking and i dont really care about my level (also for some reason even though i have completed some rooms i still have 0 points)

zealous dove
honest zodiac
#

so to do what i can every day and focus on learning

zealous trail
#

Just take your time, make sure you understand what you read, take notes and put what you have learned to practice, hands on experience is the best way to learn

honest zodiac
#

ok thanks

carmine tapir
#

Hello everyone! I am also new here and just got started today. Is there any chance someone could share their notes for this pathway? I will return the favor somehow. Thank you!

untold scarab
#

Hi, I'm not sure what exactly you would want notes on? The only noteworthing path would be the networking, which wouldn't be sufficient with notes alone. So I would recommend that you just do the paths

long dirge
#

hey!, what's up guys, I need help I can't run the machine

long dirge
#

In Offensive Security Intro

untold scarab
long dirge
somber currentBOT
#

Gave +1 Rep to @untold scarab (current: #215 - 30)

marsh veldt
#

Hi everyone! I’m looking for notes or resources related to the pre-security path. If anyone has any materials to share or can point me in the right direction, I would really appreciate it. Thank you!

untold scarab
marsh veldt
#

yes but i was not taking notes so i forgot somethings now i am making/finding notes so i can revise them and save them for future revisions.

vale violet
carmine tapir
somber currentBOT
#

Gave +1 Rep to @vale violet (current: #939 - 4)

zealous dove
vale violet
carmine tapir
#

@zealous dove @vale violet Thanks guys! By the way, do you mind sharing where you are in your learning "adventure"? I am a data analyst who is switching to cybersecurity but I'm kind of lost with the direction I should take

somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #32 - 253)

zealous dove
carmine tapir
#

I'm limited by time and I need to find a job ASAP. Just got laid off from my previous job and I'm fully committed to learn and switch to cybersecurity

#

Are you looking for a job or did you already find one?

#

I'm sorry for asking too many questions!

zealous dove
#

As far as picking between blue and red team, i suggest you do the Cyber Security 101 learning path on TryHackMe. This will introduce you to both and when you're finished you might have a (strong) preference towards one or the other.

#

Realistically I think there's more need for blue teamers than red teamers in the job market, but dont pin me down on that.

carmine tapir
marsh veldt
#

When you start off, you might take a while writing notes since you don’t have much knowledge. Eventually it’ll go by quicker as you learn more

#

If you need a job asap I would go for sec+ and just apply a ton to entry levels positions

carmine tapir
somber currentBOT
#

Gave +1 Rep to @naive cedar (current: #1534 - 2)

marsh veldt
# carmine tapir Hey thank you for your reply! When should I start preparing for the sec+? After ...

Nah. Just focus entirely on sec+ now. Drop tryhackme for now and get your sec+ certificate first. It took me 2 weeks of studying to take the test and pass.

After that. update your resume to add the newly acquired security+ certification and apply to jobs everyday, meanwhile continue learning on tryhackme. SOC1 or SOC2 won’t prepare you for sec+

But sec+ is not too technical so don’t worry. It’s an entry level certification, but it’s the most widely recognized

carmine tapir
somber currentBOT
#

Gave +1 Rep to @naive cedar (current: #1158 - 3)

marsh veldt
carmine tapir
somber currentBOT
#

Gave +1 Rep to @naive cedar (current: #940 - 4)

marsh veldt
sick lark
#

Hello everyone! I had a silly question. In the AD Basics room, I was trying to use Remmina to RDP (per instructions) back into my windows desktop deployed machine to use powershell as a user to change another use's password. It prompts for a password to unlock my keyring which is not provided- is there another RDP service they prefer us to use in attackbox? i am guessing so since they didn't provide a password for the Remmina?

cloud tendon
sick lark
#

ah, i can do that. the screenshots provided were not using terminal, but i can. 🙂 That's what threw me for a loop.

#

Thanks!

cloud tendon
#

Yeah i struggeld too with that. Np!

sick lark
#

I should probably usemy own vm, but i struggle to understand still if i have made my own secure enough or if i would do something wrong- i have enough knowledge to be dangerous but not secure yet, lol.

cloud tendon
#

I am using attackbox for walktroughs but when i begin with challenges i will use a VM. But isent a Vm secure enough just by being a Vm and not an acual machine?

sick lark
#

yes, but i recently participated in a sans designed challenge and still managed to attack the wrong things, lol 🙂

cloud tendon
#

I dont think that has anything to do with the security of VM's

sick lark
#

at least if i use attackbox, i won't be using my real computer to do it, lol

unkempt kelp
#

just keep the VM software updated and you'll be fine

unkempt kelp
sick lark
#

up until this point, they haven't mentioned using any tool to rdp into anything at all, i am shooting blind here.

unkempt kelp
#

it says in the text that when it asks for the key ring password to just hit cancel

sick lark
#

but on this learning pathway, they haven't explained using rdp in anything besides windows, so nothing on how to use in any linux system.

unkempt kelp
#

also the AD basics room is in the 101 module

sick lark
#

yeah- but without instructions, anyone following the presecurity-cyber 101 path has to guess at this point because it's not covered in linux 101 or any of the earlier classes at all- just rdp. i've never used any of these tools

#

yes, but i don't have any options for that room, so it drops me in two elarning pathways here

unkempt kelp
#

and it explains you use it by typing the IP address and such into the correct fields

sick lark
#

thanks. i've been on THM a week, and this server 20 minutes. you have been very helpful 🙂

unkempt kelp
#

If you're planning to be successful in any tech field, researching things on your own and learning them without a handy tutorial for your exact use case is going to be the key

sick lark
#

up until this point zero tools have been introduced, is what i am explaining.

#

RDP was explained onl in context of windows

unkempt kelp
#

Did they not introduce remmina?

sick lark
#

attackbox is not windows

#

linux 101 did not cover it at all, only terminal

#

and ssh, but not rdp

unkempt kelp
#

I'm speaking about the path up to this point

sick lark
#

correct

unkempt kelp
#

including pre security

sick lark
#

it has not been introduced at all

#

correct

unkempt kelp
#

If that's the case that's definitely a little backward, but regardless, it's a good opportunity to go and learn on your own

#

It's common in this line of work to stumble across verbage you know absolutely nothing about, and you have to go learn about it by looking at documentation and such

marsh veldt
hollow schooner
#

Does doing more rooms help on job interviews ?

turbid goblet
dull narwhal
cloud tendon
somber currentBOT
#

Gave +1 Rep to @naive cedar (current: #809 - 5)

wise solstice
#

can someone help me please

#

staff?

brave cobalt
hollow schooner
somber currentBOT
#

Gave +1 Rep to @dull narwhal (current: #2339 - 1)

hollow totem
#

I just started my THM journey a couple days ago. Since I'm currently on the Pre-Security-Path I thought I'd post this here. Since learning cybersecurity is a fairly long journey I thought someone here might find a little competition helpful for maintaining motivation.

No stakes other than bragging rights. Only rule is whoever has the highest ranking on the leaderboard is winning.
If you're already ahead of me, fair game.
If you start behind me, it's easy to catch up (for now).

Currently ranked 428,278. GLHF!

whole agate
hollow totem
carmine tapir
hollow totem
marsh veldt
#

I'm not great with notes but I use something like notepad++ for things I need to type out to help me remember. I use Obisidian for any notes that I take for future reference.

carmine tapir
carmine tapir
somber currentBOT
#

Gave +1 Rep to @restive sand (current: #2342 - 1)

hollow totem
marsh veldt
carmine tapir
#

Yeah makes sense. Good luck everyone!

marsh veldt
#

you too!

whole agate
#

When would you all reccomend to start doing the Practice?

#

Should I finish Pre-Security first?

hollow totem
#

Technically (i.e. according to the structure of THM's website) everything is Practice. The Practice tab is just a sample selection of all the hundreds of rooms available (which are listed exhaustively in the Search tab). They're all rooms with VMs. The only difference between a "learning" room and a "practice" room is how much handholding you get in the written portion.

radiant hearth
#

I highly recommend premium

zealous dove
# whole agate When would you all reccomend to start doing the Practice?

Realistically, if you are a beginner the Pre-security is really just the basics before you even start with security. You should probably do Intro to Cyber Security and the Complete Beginner (and/or the CyberSecurity101) paths before doing practice (CTF) rooms. However, you can always start doing practice and see how far you get with current knowledge and skills.

ebon badge
#

hi everyone. I need some help on lesson Soc level 1, MITRE and the 4th question. What are the data sources for Detection? (format: source1,source 2. source 3 with no spaces) I am in the phishing page searching trying different tabs.

#

nevermind found it

ebon badge
#

I can't figure out the 5th question on Soc level 1, MITRE and the question is What groups have used spear-phishing in their campaigns? two groups only . I tried to look into the phishing: spearphishing attachment because it shows which groups under the Procedure examples.

dark bramble
#

i have the feeling he found it

marsh veldt
#

Hi, I'm that comptete beginner.
Which should i do first out of the three paths? CS 101. Intro to CS or Complete Beginner?

crisp sparrow
#

I would recommend that first and later gradually move to CS 101 or intro to cyber security

marsh veldt
crisp sparrow
somber currentBOT
#

Gave +1 Rep to @crisp sparrow (current: #377 - 14)

foggy oyster
#

I am loving going through these learnings

#

I am learning so much!!!

ebon musk
blazing cairn
#

Hello all ! I have done all soc paths FREE, waiting for black friday. When will they announce it ?

blazing cairn
somber currentBOT
#

Gave +1 Rep to @tight ingot (current: #1 - 2965)

tight ingot
blazing cairn
tight ingot
blazing cairn
small cape
#

.

silent oasis
tight ingot
silent oasis
#

nice

atomic root
#

Help with the "Firewall Rules" mini game in Task 3 of "Extending Your Network". I think I understand the concept but just don't know how to execute it probably.

atomic root
#

Figured it out

dire badger
#

Hello guys! I just reached the HTML Injection task and i am having a hard time understanding it... I couldnt for the life of me figure out what i had to do, so i followed the video and still don't understand it.. I thought i would have to look at the source code and implement the website link in there, but instead the video showed to input the code in the box. How can that be an injection? I don't understand how a code implemented in a box where the user is supposed to write something, can become malicious?

prime burrow
#

hello im new

summer fern
#

Hi everyone, I just started the Pre Security learning path yesterday. After completing "What is Networking?", I noticed that the next module, "Intro to LAN," requires a subscription. Does this mean I won’t be able to complete the Pre Security pathway for free? I read somewhere that it’s free, so I just wanted to make sure if Pre Security is actually paid?

violet mirage
violet mirage
dire badger
violet mirage
# dire badger Aah okay! didnt even know that was a possibility! cool!

It's super cool, and scary! Later some input boxes are sent to a database. If I want to add a new user named "Garrett" I'd input the name. But since I know my input will be sent to a database that uses SQL. I can input an SQL code snippet that accesses the passwords table and get all the users passwords! Stuff like this is super important when making websites, make sure all your doors are closed.

dire badger
craggy crystal
#

Hi, i am new to cybersecurity or network security concepts in general. i am currently taking the pre-security learning path and realized the next LAN room is only for those subscribed. I am trying to figure how i can manage the subscription fees. meanwhile, its nice to see a community learning the concepts and are at different levels of learning. All the best. also, if anyone is new and would like a buddy to share notes etc, please reach out.

hollow totem
wicked hatch
#

Hi I am new member

ebon badge
#

hey you guys i need some assistance. Im working on Soc level 1, Mitre/Task 3 and question 5 What groups have used spear-phishing in their campaigns? Im in the link but its so much that where I go to Its not helping. Just some guidance to the right catorgory

#

plus i can't move forward to the other questions since they reference off the question 5

crisp sparrow
ebon badge
#

none of them dealing with the campaign fits for that question

crisp sparrow
ebon badge
crisp sparrow
#

What task are you on

scenic wind
#

Write in a format

ebon badge
scenic wind
#

Read the description

#

You will get to know the answer

ebon badge
scenic wind
crisp sparrow
scenic wind
#

Under Procedure Examples table

ebon badge
ebon badge
scenic wind
ebon badge
ebon badge
scenic wind
ebon badge
scenic wind
ebon badge
scenic wind
ebon badge
scenic wind
acoustic siren
#

today i completed pre security

ebon badge
#

I made need help again with task 4, question 2, what is the name of the library that is a collection os Zeek (BRO) script. I read the hint but the main page of where the question is ? or the main page of the analytics on Mitre? i went to the ATT&CK for Car and that was no help.

ebon badge
# scenic wind Look at ID S0534

i found it.. I didnt think to click on the title to take me to the main page.i assumed the analytics was the main page,.. thank you for your help. im taking a break from this. lol ill come back to it tomorrow onthe next task.

somber currentBOT
#

Gave +1 Rep to @scenic wind (current: #1172 - 3)

craggy crystal
somber currentBOT
#

Gave +1 Rep to @hollow totem (current: #2361 - 1)

finite walrus
#

can anyone help im in linux fundementals pt 2 and right when i need to deploy my virtual machine everything goes smoothly just doesnt load

hollow totem
#

Ok, I need help. Anyone got some good tips for burning off excess adrenaline? I beat my head against the wall for almost 3 hours on Task 15 of the OWASP Top 10 2021 room before finally taking the flag. This feels like my first legit hack and I cannot stay still. 😤

glass birch
#

where can you send suggestions for changes in learn paths? in task 6 of "windows fundamentals I" they should change the order of the last 2 questions (irritating to ask for another account and then asking for the description... but meaning the account from some question before).

glass birch
somber currentBOT
#

Gave +1 Rep to @zealous dove (current: #33 - 277)

strange stone
#

I am new to this channel
What is pre-security pathway ?

zealous dove
marsh veldt
#

Ammm hi! I have a question, when I put in the terminal “gobuster -u http://fakebank.thm -w wordlist.txt dir” it says error

#

Can someone help me

spring quiver
#

Hi everyone

#

Please kindly help me i'm stuck in the midst of investigating windows

#

i am from Nigeria 🇳🇬

#

hello please someone should come to my aid

spring quiver
#

i was givven task to investigate windows

scenic wind
scenic wind
spring quiver
#

Okay

spring quiver
spring quiver
#

It's a window forensics

spring quiver
#

Use the AttackBox to attack machines you start on tasks
This above statements was the instruction given when i wanted to statrt the macine

marsh veldt
hollow hamlet
#

Hi, I have a question. I am doing the Pre Security and I don't know if my study method is good. It is really helpful to resume the courses on a document? Because I have the feeling that I am loosing a lot of time. I am a kinda stressed when I don't know exactly something but when I spend 2 hours on a section that TryHackMe tells me will take 30 minutes, I feel like a failure. Sorry for the mistakes, I am also learning english

strange stone
willow sable
#

hi everyone
does anybody know the correct format for this question What layers of the OSI model do firewalls operate at?

crisp sparrow
willow sable
#

i have just copied your answer but still telling me wrong answer

crisp sparrow
eager vector
#

hi guys. Im just started "Active Directory Basics". Cant connect through RDP to server. Does anybody know why?I opened my RDP window, Put there my IP of server - error

brave cobalt
royal kiln
royal kiln
eager vector
scenic wind
#

For you to access rdp

#

Are you using your own vm or attack box

eager vector
eager vector
eager vector
#

how to do that through attack box?

scenic wind
#

If you want to do own your own vm connect via openvpn then use remmina

eager vector
scenic wind
eager vector
#

yes

scenic wind
# eager vector yes

After the delegation enter the Phillips account by using remmina using the RDP port. Username and password: phillip: Claire2008

eager vector
scenic wind
eager vector
#

I cant upload screenshot here

scenic wind
#

to upload screenshot

#

@eager vector you mean this

eager vector
#

yes

scenic wind
#

just click cancel

eager vector
#

I did. But when you try to connect it appears again

scenic wind
#

can you please verfiy and send the screenshot?

eager vector
#

oh, Its need to cancel couple times

#

I see

#

I did it. Thank you man!

scenic wind
ebon badge
#

hello everyone, i am hoping I can get some help on this question for Task 7 ATTC&CK emulations plans, question 4. What C2 framework is listed in Scenario 2 Infrastructure. Now I am in adversary_emulation_library/apt29/emulation_plan/scenaio_2... im currently in the right area but not sure if Im supposed to click this link under emulation team infrastructure

ebon badge
#

struggling with 5th question too. im in the right area i believe. Examine the emulation plan for Sandworm. What webshell isused for Scenario 1? check mitre attck for the softward Id forthe webshell. what is the Id? (webshell,id)..........................i figured out this one because I didnt put a (,) between the answers..

ebon badge
scenic wind
#

you will get your answer in first line

scenic wind
# ebon badge struggling with 5th question too. im in the right area i believe. Examine the em...
GitHub

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs. - center-for-threat-informed-defense/adversary_emulation_library

ebon badge
scenic wind
#

and type the answer you got it must webshell

#

let me know if this works

ebon badge
ebon badge
#

Task 8, first question . What is a group that targets your sector who has been in operation since at least 2013

ebon badge
scenic wind
#

you will get know your answer catvibe

ebon badge
scenic wind
#

as i have already finshed this room HackingMagic

ebon badge
somber currentBOT
#

Gave +1 Rep to @scenic wind (current: #413 - 13)

tribal topaz
#

oh Hi, im in packets and Frames and saw this line: frame is at layer 2 - the data link layer, meaning there is no such information as IP addresses.
I get that Frame doesn't need IP adresse as it use MAC Adresse in this layer but IP adresse still exist in the encapsulated packet(current Frame), so is it not misleading xd or did i get it wrong

brave cobalt
wraith forge
#

Is it a known bug that you can't get you your achievement for this path because you get stuck at 95% complete due to "Linux fundamentals part 3" being incomplete even though I have a 100% in the room?

frozen mason
#

Question, do I really need college to start working on cybersecurity, what skills do I need? NotLikeThis

crisp sparrow
tribal topaz
#

Finally Finished this path, time to go to cyber security 101

ebon lichen
supple nexus
supple nexus
blazing cairn
#

I just got denied from a company for a SOC role L1 cause i dont have a bachelor or Masters 😄

supple nexus
blazing cairn
#

Thank you!

brave cobalt
somber currentBOT
#

Gave +1 Rep to @brave cobalt (current: #11 - 713)

quick nexus
#

I started tryhackme today any tips on what I should learn

supple nexus
#
TryHackMe

Cyber security is often thought to be a magical process that can only be done by the elite, and TryHackMe is here to show you that's not the case. Anyone, with any experience level, can learn cyber security and this Pre-Security learning path is the place to start.

cunning rampart
#

Hi

civic bane
#

Hey - can I get some clarification on packets and frames?

The THM room says this: "A frame is at layer 2 - the data link layer, meaning there is no such information as IP addresses. Think of this as putting an envelope within an envelope and sending it away. The first envelope will be the packet that you mail, but once it is opened, the envelope within still exists and contains data (this is a frame)."

My reading of this is that the inner envelope is the frame and the outer envelope is the packet. As data is encapsulated as you go down this is implying that the frame is layer 2 and the packet is layer 1.

But I always thought the packet was layer 3 and is encapsulated into a frame. SO the frame should be the outer envelope with the packet inside.

digital elbow
#

I think it's a mistake, because the inner envelope should be the IP datagram. It could also just be poorly explained and when they say (this is a frame) they may just be referring to the concept and not referring to the envelope within being the 'frame'.

torn void
#

Is there a certain website that is commonly used here for note taking? I'm just using google docs now but I can switch if there's a better way

sour atlas
#

im new here but for notetaking i love cherrytree, obsidian is cool too but i prefer cherrytree, its an app though, not web based

supple nexus
supple nexus
supple nexus
molten perch
supple nexus
#

De-encapsulation goes the other way around 🙂

marsh veldt
#

Just finished the pre-security pathway and I have to say, this is the best format of learning computer science I have ever experienced. Rudimentary with a mix of challenge and excellent guidance/ interactivity to keep me motivated and interested. Thank you to all contributors. I think network security may just be a newfound passion

tardy bramble
#

I keep forgetting the theoretical stuff in pre security..

supple nexus
supple nexus
gaunt grail
# tardy bramble I keep forgetting the theoretical stuff in pre security..

I recommend to write up the OSI model and just add as much info as you can from the whole Pathway individually in each layer and link them all together, also try connecting everything you learn theoretically in a visual way/use images, real world scenarios to understand the logic a bit better.

cerulean gulch
#

I have just finished the first room in try hack me it was awesom

supple nexus
cerulean gulch
somber currentBOT
#

Gave +1 Rep to @supple nexus (current: #11 - 723)

civic bane
#

Ok - I am fairly confused about packets and frames now. Another module I read said that when encapsulating a packet into a frame the IP address is stripped away.

#

I thought the IP address remains attached to the packet but MAC address info gets put "on top" of that

#

to make the frame

tender coral
#

As someone who's been using Linux for a while now, should I do the network shenanigans on a distro VM like Parrot/Kali
or should I use a normal distro VM and customize it myself?

tardy bramble
#

Hello, should I use Linux parrot OS(In virtualbox) to progress in Tryhackme

supple nexus
supple nexus
cold slate
#

does someone have pre-security path notes? i would appreciate if somebody will send me to make a copy

gaunt grail
# civic bane Ok - I am fairly confused about packets and frames now. Another module I read sa...

I believe that It's written in a mildly confusing way on TryHackMe but generally the OSI model goes two ways. If I send data to a web server I go from Layer 7-5 (PDU) to Layer 4, 3, 2 & down to Layer 1 Encapsulating the data this refers to data being stripped away due to each of the layers limitations of handling the data. Then the Webserver will decapsulate the data going upwards from Layer 1 to Later 7 adding pieces of information by each layer: Forming a response to your request.

General rule in the OSI mode:
Encapsulation goes downward
Decapsulation goes upward

To anyone more experienced on the matter, please correct me if I'm wrong.

primal lintel
#

Hello fellow hackers :), i almost tried 3 hours to find the malicious process for the Linux Fundamentals - Processes 101 task. Now i watched a video solution on youtube and there it is. In my Attackbox it didn’t show up. I used ps aux with | grep THM and without, but nothing. Only the result for the grep command. I think there might be an issue in the attackbox. Maybe because of the Advent of cyber event…idk.

supple nexus
primal lintel
#

i start the attackbox…one sec

#

i can’t upload the screenshot…. Oo

primal lintel
supple nexus
#

You need to ssh into targeted machine and run command there 😄

primal lintel
#

OMG….thanks for that hint. xD

#

i paused a while and continued today…i totally forgot tho ssh into the machine.

#

thanks for the quick help… shall i delete my posts to prevent spoilers?

supple nexus
primal lintel
#

Thanks.

turbid condor
somber currentBOT
#

Gave +1 Rep to @gaunt grail (current: #2438 - 1)

versed grove
#

Hi, Anyone Has problem with virtual machine?
I'll doing a Linux fundamentals part1 - second day i'm fighting with starting a virtual machine - machine in theory is started, but screen is black - i was waiting about 20-30 minutes and it's doesn't working 😉

limber bane
#

Hello, I am new here 🙂 I would like to report an issue with the practical task for the TCP/IP Lesson inside the Packets & Frames lesson (from the Network Fundamentals lessons), I believe this should be the correct answer to the question but it's always marked as incorrect