#pre-security-legacy-path

1 messages · Page 11 of 1

vapid peak
shadow parcel
#

@vapid peak for me it was the fact the other ones I have seen before and profiles was new. Also profiles, holding user information sounds like a juicy target for possible usernames/passwords etc

vapid peak
#

yeah, i thought about it more and it makes more sense, you're right it has more potential than netlogon

#

thanks @shadow parcel

somber currentBOT
#

Gave +1 Rep to @shadow parcel

warm epoch
#

Non default

vapid peak
#

hmm? wdym?

warm epoch
vapid peak
#

oh okay, gotcha. thanks @warm epoch

vapid peak
#

https://tryhackme.com/room/networkservices, task 4....did I miss something? how would I know who this profile belongs to? Right now I'm going through the help command on this remote server to try to find a useful command bc I don't know who the profile belongs to.

vapid peak
#

I don't understand how do I do that? what kind of os is this? nano doesn't work here. cat doesn't work here

warm epoch
#

You have an smbclient shell

vapid peak
#

what commands do i use in an smbclient shell to look through files?

soft snow
vapid peak
#

What's the room in the Pre-Security Path where they teach you how to set up a file server on a compromised PC and you move files from it? Having trouble finding it again

#

@soft snow thanks

somber currentBOT
#

Gave +1 Rep to @soft snow

soft snow
vapid peak
#

this is the one. thanks @soft snow

raven nimbus
#

What is generally the next path to follow after completing the pre sec pathway?

soft snow
raven nimbus
soft snow
timber flare
#

Hi, pre security completed :-). I cam to ask the same questions. I think I will do Complete beginner, then web fundamentals. After they are complete I will finish it with COMPTIA Pentest+ and maybe get the certificate before I do the intermediate rooms.

celest jay
#

Do we get anything if we beat the staff high score in the OSI Model section? haha

marsh veldt
marsh veldt
celest jay
marsh veldt
#

😄

old prism
#

Well, I'm living here now until I'm done with this learning path. I'm currently at the beginning of networking fundamentals.

hasty mango
#

Why is it important to learn system configuration and its tools?

shrewd pollen
#

in order to hack those machines or protect them, knowing how the system is configured allows you understand the attack vectors you or attackers can use to enter your system

#

If you know how a system is configured by default, you will be more likely to detect if someone has hacked you because there will be things you will detect as strange

mortal kelp
#

Good Morning All. I'm curious, will this pathway prepare me for Sec+?

timber flare
astral gulch
mortal kelp
#

Thank you both

hasty mango
shrewd pollen
#

Windows is much more used for Malware analysis and cyber defense

#

It's the same as in Linux, it is very useful to know system configuration in windows for dealing with this cases and also for protecting yourself as you will probably use windows if you like to play videogames or if you don't like or can't have Linux on your computer

somber currentBOT
#

Gave +1 Rep to @shrewd pollen

light junco
#

Dang, I must be slow as heck if the staff got 19 secs.

#

There must be a keyboard trick.

formal pike
fading girder
#

In this part, I dont understand the gateway becoz from other videos I saw on yt, they say the gateway address (broadcast address) ends with .1 or .255 but it says it here the gateway address ends with either .1 or .254

#

Another point I saw there is that the network address and default gateway arent assigned to any host... Is this statement true?

astral gulch
#

The gateway is typically assigned an address at the beginning or ending of a subnet, but it can be arbitrarily set to whatever you'd like.

fading girder
#

Hmm I see thankx then Is it true they arent assigned to a host ?

astral gulch
# fading girder Hmm I see thankx then Is it true they arent assigned to a host ?

Also, typically x.x.x.0 and x.x.x.255 are reserved addresses. So it's uncommon that .255 would be used for a gateway; the exception to this would be if the subnet were larger than 256 addresses such that 255 were in the middle of the subnet's IP range: For example, 172.16.0.0/23 — which spans from 172.16.0.1 to 172.16.1.254 — could have 172.16.0.255 assigned to a host.

Correct. The network address (for example 172.16.0.0) identifies the network and the gateway address (172.16.0.1/172.16.0.254/etc.) identifies the address that is used when traffic needs to leave the network: neither of these can be used for a host's address.

fading girder
astral gulch
warm epoch
light junco
#

The Practical Firewall Task 3 was very interesting. Would be great to get more of these types of "Blue Team" defense stimulation.

light junco
#

Question... in Task 7 - Making Request on HTTP in Detail .. when we View Site, with the task to answer the questions.. GET, DELETE, PUT, & POST.. is this being done on burp suit or .. ? Maybe via Developer?

#

Sounded like a dumb question, but thought I'd ask.

#

Like this.. what is the tool is being used? Developer or.. ? I was able to answer all the questions but am a bit confused to where and how these are done, e.g. Burp Suit or the browser, etc.. ?

old prism
#

Beat 19 seconds in the dungeon on the 4th try.

old prism
# fading girder In this part, I dont understand the gateway becoz from other videos I saw on yt,...

I think Benjamin explained this fairly well, but it should be clear that .1 and .255 don't have significance on their own. On a network neatly limited to 256 addresses (0-255), .1 is typically the gateway and .255 is the broadcast. .1 doesn't have to be the gateway, but .255 has to be the broadcast address in this case because it's the last address.

.0 and .1 can be assigned to hosts. It's not common, but it happens. But it's important to understand that there is no technical restriction to any address being used except the last one, which is always the broadcast address.

#

One scenario where you might see something other than .1 as the default gateway is if the original default gateway is replaced and a new address is assigned. There are other reasons, but that one is more common.

fading girder
#

Hmm I see

fading girder
light junco
light junco
#

FYI, that was my first try...

light junco
fading girder
#

Press the right and left arrows constantly after pressing the spacebar

fading girder
#

Fortunately it didnt say to Hack NASA

light junco
#

All jokes aside but it's still funny...

full terrace
#

i dont know how to solve this

#

can you help me please ?

fading girder
light junco
light junco
full terrace
#

Yep its say to add 2 more parameters, username and password

#

But i dont know how

light junco
full terrace
#

nope im idiot

light junco
#

It says add 2 more, that is, you need the username which is thm and password which is letmein

full terrace
#

i solved

light junco
#

Good!

full terrace
#

I put my username instead of "thm"

light junco
#

Don't call yourself an idiot. I fumble every now and than.

#

Good job!

full terrace
#

Ok thx 👍 😄

marsh veldt
#

Hi guys
I have problem with the next question in "Windows Fundamentals 1" >> "Task 3":
Besides Clock, Volume, and Network, what other icon is visible in the Notification Area?
You can help me?... I don´t know what is the answer, and i've tried the best
᲼᲼᲼᲼
Could be the hidden icons with an arrow icon, keyboard icon, lenguage icon... :'c

soft snow
somber currentBOT
#

Gave +1 Rep to @soft snow

haughty spoke
#

Anyone know how long the python3 -m http.server command takes to run with the kali browser subscription? It's been running over 20 mins and hasn't given me any indication it's progressing or frozen.

#

I am in Linux fundamentals3.

shadow parcel
#

it should look like that straight away

haughty spoke
#

It does, but I can't run any other command.

floral oyster
#

open another terminal

shadow parcel
#

yeah you wont, because the python http.server is awaiting further instructions

floral oyster
#

or use & at the of command

#

but it's could be messy

shadow parcel
#

though if you do that, make sure you remember to kill it later 😛

haughty spoke
#

Ooooh it doesn't say to start another terminal and ssh into it again. Thanks I'll try that!

floral oyster
#

no problem. good work!

fading girder
#

Didnt see this coming

small spire
wanton plinth
#

Hello folks. 👋
While learning the network fundamentals I currently have two questions. Maybe someone can clarify this for me.

  1. What is the difference between a VLAN and subnetting?
  2. Regarding VPN, you can securely connect two devices from different networks. Is it possible to open a VPN between e.g. Server A and Router B and all the devices connected to the Router B can use the VPN between Server A and Router B? Or does every single devices have to establish its own VPN with Server A?

Thanks in advance 🥳

fading girder
# wanton plinth Hello folks. 👋 While learning the network fundamentals I currently have two qu...

In subnetting, the devices can only communicate with each other but they will need a router to communicate with other devices on the internet. They are logically separated. Its more on Layer 3. Router level.

While In VLAN, even if the devices are connected to the same device, they wont be able to connect/ communicate with each other because they are logically and physically separated using VLAN. Its works more on Layer 2. Switch Level.

warm epoch
#

Why do they need to be logically segmented though?

fading girder
#

Am I right ? @warm epoch

warm epoch
#

Ok, but you can do that without putting them on subnets?

fading girder
#

Using VLAN?

warm epoch
#

You could just say "Let's use 10.0.0.0/8 and frontend gets 10.10.10.0/24 as their addresses" and because it's a whole flat network it just works

fading girder
warm epoch
#

Using subnetting and routing would make it a lot more complicated

fading girder
warm epoch
#

Your subnetting example doesn't make much sense

#

Because you just put em all on the same network and they can communicate just fine

fading girder
warm epoch
#

VLANs are a layer 2 thing

#

Google has a million answers, that's where people NEED to start.

fading girder
warm epoch
#

Then ya keep reading

gaunt crescent
#

hi

#
  1. SYN - Client: Here's my Initial Number Sequence (ISN) to SYNchronise with (0)
  2. SYN/ACK - Server: Here's my Initial Number Sequence (ISN) to SYNchronise with (5,000), and I ACKnowledge your initial number sequence (0)
  3. ACK - Client: I ACKnowledge your Initial Number Sequence (ISN) of (5,000), here is some data that is my ISN+1 (5,000 + 1)
#

can someone explain why in #3 the client says that his ISN+1 is 5000 + 1 ?

#

his ISN was 0 in #1

fading girder
#

Hope this helps

radiant sierra
#

fun fact: multiple vlans can have the same addresses.

wanton plinth
somber currentBOT
#

Gave +1 Rep to @warm epoch

wanton plinth
radiant sierra
#

so they don't share packets UNLESS the routers / gateways allow it. you could, for example, have two floors in an office with 10.1.2.0/16 for laptops, and NAT them... just like you do at hime

wanton plinth
radiant sierra
somber currentBOT
#

Gave +1 Rep to @wanton plinth

radiant sierra
#

you chould do the same thing with VLANs,

#

so the 10.1.2.0/16 notation... was wrong. sorry

#

10.1.0.0/16 would be ok, or 10.1.2.0/24 would be ok

radiant sierra
fading girder
#

dont worry it took me time to understand this.... just take one step at a time

radiant sierra
#

yea, you don't need to understand everything I've just said- Yet 🙂

wanton plinth
somber currentBOT
#

Gave +1 Rep to @radiant sierra

fading girder
radiant sierra
wanton plinth
fading girder
old prism
#

Has anyone noticed that there is an issue with the "What layers of the OSI model do firewalls operate at" question in the "Extending your network" room? The answer in my opinion is ||layer 3, layer 4||. This answer is accepted as correct. The walkthrough video shows|| Layer 3, Layer 2||. So either my answer is wrong or the walkthrough is wrong. I'm pretty sure I'm right. Also, the hint says to enter them "in descending order." I entered ||"Layer 4, Layer 3"|| and it was rejected.

I think both the walkthrough and hint are wrong. Hopefully that can be fixed.

light junco
light junco
#

In room: Windows Fundamentals 1 - looks like the questions "Besides Clock, Volume, and Network, what other icon is visible in the Notification Area?" doesn't appear to answer the question. s that icon doesn't appear. I looked in both the Split screen and RDP.. same issue...

#

I know the answer now, just had to guess...

fading girder
fading girder
#

The answer is ||root||, but accepts a different answer
Room : Linux Fundamentals Part 1

soft snow
fading girder
#

ohh got it

#

thank you sir

#

me dumb dumb

wanton plinth
#

Linux Fundamentals Pt. 3

Locate the process that is running on the deployed instance. What flag is given?

There doesn't seem to be any process out of the ordinary.... Anything specific I should have to look out for?

EDIT: The flag process seems to be missing

old prism
warm epoch
fading girder
naive aspen
# gaunt crescent 1. SYN - Client: Here's my Initial Number Sequence (ISN) to SYNchronise with (0)...

What should be happening is:

Client: [SYN] (I'll start my sequence at 0, this is my message #0)
Seq = 0

Server: [SYN,ACK] (I'll start my sequence at 5000, this is my message #5000;
I received 1 byte and I expect your next sequence to be 0+1)
Seq = 5000; Ack = 1

Client: [ACK] (This is my message #1;
I received 1 byte and I expect your next sequence to be 5000+1)
Seq = 1 ; Ack = 5001

Now it gets confusing because the sequence numbers aren't actually "message numbers" once they start exchanging data
The sequence numbers will increment by the number of bytes received, so an Ack=x will mean "I have received all bytes before x"
So far the sequence numbers are incrementing by one because there is no payload yet.

After Client sends the [ACK],Seq=1,Ack=5001, then for example, Client may follow up with more segments/packets containing the application layer request to the web server or whatever

Client: [PSH,ACK] (Here's 93 bytes of data for ur httpd)
Seq = 1 ; Ack = 5001 ; Len = 93

Server: [ACK] (Okay, I got 93 bytes and your next sequence should be 1+93)
Seq = 5001 ; Ack = 94

Server: [PSH,ACK] (Here's 300 bytes of the data you requested from the web server, I haven't sent or received any more payload yet so I'm still on 5001 and I still expect you to start at 94)
Seq = 5001 ; Ack = 94 ; Len = 300

Client: [ACK] (Ok, I got 300 bytes and now your next Seq should be 5301)
Seq = 94 ; Ack = 5301

Server: [PSH,ACK] (Here's 300 more bytes)
Seq = 5301 ; Ack = 94 ; Len = 300

Client: [ACK] (Ok, I got 300 more bytes and now your next Seq should be 5601)
Seq = 94 ; Ack = 5601

And it can carry on like this for some time until Client actually sends a payload again instead of simply acknowledging Server's

ripe horizon
#

I finally completed this path 🥳 thank you THM!

fading girder
wanton plinth
#

Just finished the Pre Security Path. Thanks THM! On my way to the next one 👋

wanton plinth
#

Good explanation @gaunt crescent

gaunt crescent
#

thanks @naive aspen @wanton plinth now I get it

somber currentBOT
#

Gave +1 Rep to @naive aspen

gaunt crescent
#

what I don't get is that Client says "here is some data that is my ISN+1 (5,000 + 1)" but 5000 is Server's ISN

#

he should've said "here is some data that is my ISN+1 (0 + 1)"

#

even tho I understand that Client keeps also track of Server's ISN

naive aspen
#

What's giving you the idea that Client is saying that? Is this something you're reading directly or your interpretation of a diagram or something?

gaunt crescent
#

it's what it says

#
  1. ACK - Client: I ACKnowledge your Initial Number Sequence (ISN) of (5,000), here is some data that is my ISN+1 (5,000 + 1)
#

Client is talking

naive aspen
#

I have to look in a bit, I haven't done any paid content yet. It's in this path I assume?

ripe horizon
rain falcon
#

Does anybody have premium account?

warm epoch
rain falcon
#

50% of content not available for free account

warm epoch
rain falcon
#

And I cant find out more becouse of this

warm epoch
#

Sharing accounts is not allowed

rain falcon
warm epoch
warm epoch
rain falcon
#

Ohh thanks a lot

warm epoch
#

Find videos on topics, find articles, find other sites.

naive aspen
# gaunt crescent 3. ACK - Client: I ACKnowledge your Initial Number Sequence (ISN) of (5,000), he...

Ok, I came to the section you were looking at, the numbers are mixed up in one part so I sent a feedback form and included your handle as it says useful feedback may result in awards, sounds ominously vague to me but whatever works I guess.
It won't really matter once you learn a little more detail about TCP, but it seems to be at a perfectly inconvenient point in the learning path to cause a lot of confusion and doubt that you're properly understanding things.
That same paragraph would ideally say:

SYN - Client: Here's my Initial Sequence Number (ISN) to SYNchronise with (0)
SYN/ACK - Server: Here's my ISN to SYNchronise with (5,000), and I ACKnowledge your ISN (0)
ACK - Client: I ACKnowledge your ISN of (5,000), here is some data that is my ISN+1 (0 + 1)

winter jolt
gaunt crescent
#

but regarding the potential award how would they know who I am?

#

I could've just send the feedback myself I came here to be sure that it's indeed a mistake on THM's behalf

#

"it seems to be at a perfectly inconvenient point in the learning path to cause a lot of confusion and doubt that you're properly understanding things." exactly, since it's the beginner course and I'm a beginner I assumed that it's me that didn't understand

naive aspen
#

Mainly taking the chance to offer a rewrite as I'd really like to be able to work over the whole thing, but if there were any kind of award I'd try to redirect it

#

Just got here myself so no idea really, but I imagined that sounded like it was for real saving someone's ass type of stuff lol

gaunt crescent
#

sorry I don't understand what you're saying @naive aspen

last schooner
gaunt crescent
last schooner
naive aspen
#

I gave your discord so if you sync with the token in your THM settings they'll know, or they could just get in touch here

gaunt crescent
#

ok I see thanks

#

there are other things in the course that I find confusing even tho it's not proper mistakes

#

for instance here they're showing how background and foreground processes act but at first I didn't know what they were doing on the last line

#

why did they just write "Hi THM" and press enter

naive aspen
#

But you get it now? Or still think that's what happened?

fluid gull
#

is there a way to link to the certificate of completion for this path similar to how you can link to the badges you earn? Is there a URL which shows all of the certificates for your profile?

winter jolt
gaunt crescent
marsh veldt
gaunt crescent
#

ok it does the same thing with sh

#

are they using sh in the screenshot?

marsh veldt
gaunt crescent
#

alright thank you

last schooner
#

I have a question related to How the Web Works/How websites work.
At Task 4 Sensitive Data exposure it says that you need to view the source code of that Vuln fake page from the split screen but i think Edge is opening the Source code of the other half of the page, am i doing something wrong maybe?

soft snow
# last schooner

Did you right click into the right page of the split view and press inspect? Or whatever it's called in edge ?

last schooner
soft snow
rain falcon
#

Can anybody donut 10$?

#

*donate

soft snow
#

It would be just easier to press inspect at the right side as the dev tool should scroll to the code right away and it's easier to locate

soft snow
rain falcon
soft snow
rain falcon
#

Yeah

#

I want to learn about osi model

#

But can't

soft snow
# rain falcon Yeah

Well, not very appropriate to ask for something like that tbh, but that's up for a mod to decide.

last schooner
# soft snow It would be just easier to press inspect at the right side as the dev tool shoul...

Yeah well if i hit View Page Source it's opening a new tab with a very long code, i search for password in it and it does find 3 entries that have nothing to do with the task.
Now if i click Inspect on the right side of the split screen it opens up the elements page which with probably the same code but wrapped up somehow. The thing is that if i search for password here i found the password needed in the task.

#

I need to learn more about using the inspect and source code function because i'm not very familiar with it unfortunately. Thanks @soft snow for your help

somber currentBOT
#

Gave +1 Rep to @soft snow

last schooner
#

Ohh and now i see that if i hoover over the part of the code that belongs to that page it highlights every part of the webpage that belong to that code, nice

soft snow
# last schooner Yeah well if i hit View Page Source it's opening a new tab with a very long code...

Ok ye you right, my bad probably. This right page only gets openend after you press the green view page button. So therefore you probably not be able to see it in the page source code, as the page source code is not showing you the actual state of the website rather then purely the page source, inspector on the other hand does show you the actual state of the site. So lets say while being on that webpage, javascript is doing some changes on the page, you will not be able to see these changes in the page source code, as it's purely showing you how that sites is being programmed. On the other hand, if for example javascript is making some changes to the page, you can see these changes with the inspector as it's showing you the live state of the site.

gaunt crescent
#

Find all files that were not accessed in the last 10 days with extension ".png"

#

the right answer is ||find / -type f -atime +10 -name "*.png"||

#

to me, this command gives us the files that WERE accessed before the last 10 days

#

it has nothing to do with the files that were not accessed in the last 10 days

#

am I wrong?

soft snow
gaunt crescent
#

more than 10 days ago I should say

last schooner
somber currentBOT
#

Gave +1 Rep to @soft snow

soft snow
gaunt crescent
#

"Find all files that were not accessed in the last 10 days [...]" to me this means -atime -10, the last 10 days

#

but the right answer is -atime +10 which is more than 10 fays

soft snow
#

But it's saying "were not accessed". So that means if there would be a file, that got last accessed 9 days ago, it would not meet the criteria of that question, as it got accessed within the last 10 days ?

gaunt crescent
#

yes you're right on that, but how can "-atime +10" give me the files that were not accessed in the last 10 days ?

soft snow
#

I mean, not sure how to explain it better, but +10 simply means more then 10 days ?

gaunt crescent
#

yes

#

the task is to find the files that were not accessed in the last 10 days

#

+10 is about the files that were accessed more than 10 days ago

#

so it gives us no info about the files accessed in the last 10 days

#

I can't deduct what files were not accessed is the last 10 days if my command prompts the files that were accessed more than 10 days ago

#

at least with -atime -10 I have the files that were accessed in the last 10 days so I can deduct what files were NOT accessed

#

but I don't see how can -atime +10 be the right answer

soft snow
gaunt crescent
#

yes I understand that

soft snow
gaunt crescent
#

yes

soft snow
#

But the question is were not accessed

gaunt crescent
#

yes

#

how do you know what files were not accessed in the last 10 days?

soft snow
gaunt crescent
#

alright

#

I'm sure you're right

#

the thing is that the answer to the task "Find all files that were not accessed in the last 10 days with extension ".png"" is "find / -type f -atime +10 -name "*.png""

#

and that doesn't give us the last modified time for the files like you suggested

#

so I still don't get how this command would show us the files that were not accessed in the last 10 days

soft snow
sacred raft
#

yo my people

slender knot
#

Heya, passing along that it appears that, unlike various other pathways on THM, the presecurity path appears to have some serious accessibility issues for peeps who don't use a mouse or can't see ... anyone I can talk to about making that better?

warm epoch
lost matrix
naive aspen
gaunt crescent
#

the task is about files not accessed in the last 10 days so why do we care about the files accessed more than 10 days ago

naive aspen
#

If a file was last accessed more than ten days ago, then it wasn't accessed in the last ten days
The files that have been accessed in the last ten days will have an access time of less than ten days ago

#

Maybe the wording of the question is confusing about how to visualize/conceptualize it, but you can turn it different ways if one makes more sense like "Find all files that were not accessed in the last ten days", or "Find all files that were accessed in the last ten days (and then the answer is the rest of the files)", or "Find all files that were accessed more than ten days ago"

marsh veldt
gaunt crescent
#

maybe never

#

maybe it was accessed more than 10 days ago and also in the last 10 days

marsh veldt
gaunt crescent
#

ohh so it shows the last time it was accessed

#

that changes everything

#

is it possible that a file was never accessed ?

marsh veldt
#

Please look into the 1st line of that screenshot.

marsh veldt
#

Similar, if one would redirect stdout to a file. (like echo 'This is a test' > test_file2.txt) and then run stat on that file it would show an access date. @gaunt crescent

#

This is, I think, an even more, accurate observation, as touch function is to change the access date.

#

Long story short, I haven't found a way how to create a file without it having an access-time-stamp.

#

CC @soft snow

gaunt crescent
#

ok I see so a file is accessed at its creation

#

now I get it

#

it makes sense

#

thank you @marsh veldt and @soft snow

somber currentBOT
#

Gave +1 Rep to @sterile walrus

echo thicket
#

Folks, I have a question on the below cname. Isn't shops.myshopify.com pointing to store.tryhackme.com?
But when I access the url it is taking me to the shopify helps section instead of tryhackme store.
I see both the domains are pointing to same ip, then why this behavior?

CNAME    store.tryhackme.com    shops.myshopify.com
gaunt crescent
#

and @naive aspen also

naive aspen
gaunt crescent
#

it's what the task is asking right?

#

what I didn't get is that the find command checks for the last accessed time

#

not all the times the file was accessed

naive aspen
# warm epoch Perhaps VHOSTing?

Yeah, they have everyone pointing to that IPv4 (in their KB near where shops.myshopify.com puts you) -- most customers are using their root domain as their storefront, so they point root at the IP since you can't CNAME the root, and then they CNAME the www
I think there are also some uses regarding SSL cert generation by the provider but THM brought their own LetEncrypt in this case

naive aspen
# gaunt crescent it's what the task is asking right?

Well let me ask this, how would you describe "a file that was not accessed in the last ten days" in other words?
I can imagine "a file that was never accessed at any point in time during the last ten days" and "a file that, for any period of time in the last ten days, was not being accessed by anything"

In the latter (theoretical) case, it could be a file that was accessed many times in the last ten days, but there were times when it was not accessed as well, thought it could sound like this or something (I can't think of what else)

#

No big deal if it makes sense already anyway, don't want to confuse it more, I just want to probe into it in case I run into someone else it doesn't click for,

gaunt crescent
#

ohhh I see what you mean

#

damn you think like a genius NotLikeThis

#

I actually thought it was asking for the files that were never accessed in the last 10 days

#

so if it was just accessed one time 9 days ago then that counts

#

my problem was that I thought that the find command would give us all the times that the files were accessed so even if it was accessed in the last 10 days it could've been accessed before the last 10 days too

#

but since it's checking for the last accessed time then it can't be accessed in the last 10 days AND before the last 10 days

#

so it makes sense that by looking at what files were accessed more than 10 days ago you know that they were not accessed in the last 10 days

naive aspen
#

or the way that would align more with the find command would be "files that were last accessed more than ten days ago"

#

Oh I see, you thought you might get results for previous access of the same file and have trouble sorting them out?

gaunt crescent
#

if it would give results for previous access then you can't know if it wasn't accessed in the last 10 days

#

because it could

naive aspen
#

'man stat' clarifies some things about this btw 😄

gaunt crescent
somber currentBOT
#

Gave +1 Rep to @naive aspen

slender knot
#

Hello 🙂 is someone willing to DM me the flag for the OSI room's task 9 exercise? I am working through the pre-security path and noting down what rooms have blocking accessibility issues at present, and collating the flags for people who are blocked by said blocking issues, but given I am blocked by said blocking issues, I am now blocked from finding more blocking issues until I get unblocked 🙂 There's a lot I can hack my way around, but I haven't learned how to get a shell on another hooman o make it look at things for me 😛

tropic frost
#

pls i start deploy machine in linux fundamentals 3 bu it doesn't appears
what can I do?

last schooner
#

In Linux Fundamentals Part 3, Task 5 - Processes 101 one of the questions is:
"What command would we use to stop the service "myservice"?
Now if you look at the Managing Processes info from what i understood is that i could use SIGSTOP to Stop/suspend a process.
But the right answer is systemctl stop myservice and i have learned about this command in the Getting Processes/Services to Start on Boot.
The question is, could you just use SIGSTOP to stop the process?

#

Ohh i think i could use SIGSTOP just with the PID, not with the process name, am i correct?

warm epoch
last schooner
somber currentBOT
#

Gave +1 Rep to @warm epoch

royal delta
#

Hi everyone, I’m new to the field and just started classes, I was recommended to the website and discord. Any tips for what to expect in cybersecurity? I have a background in auto mechanics.

potent wedge
# royal delta Hi everyone, I’m new to the field and just started classes, I was recommended to...

keep learning more and more and as long as you keep learning you are doing good...
take lots of notes on what you are doing and how you are doing it... to serve as reminders and a look back for other on what you know
also this path is obviously a good one to start with as it will help with basic computer concepts...
another thing you will realise kinda quickly is a lot of things are not updated a lot and are therefor risking being broken... this has always been the case and will most likely stay the same for a very long time

royal delta
somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
#

no problem

#

and note taking is a super valuable skill when it comes to most things so learning how to do that is a great start too

random maple
#

Has anyone else had issue retrieving there certificate after completing pre-security path?

potent wedge
#

not that shadow has heard... but shadow could try again to see if it wonky after having generated it

potent wedge
random maple
#

ok ty

royal delta
#

Amazing website. I’m learning so much , it literally filled in the gaps I had in class. Really amazing

elder geode
#

The linux fundamentals part 2 task 5, when I ls -l , I can't find important. And when I check the video, what is there is different from what's on my virtual machine... anyone who can help ?

sharp stratus
#

Hello everyone, the ‘Cyber Security Introduction’ module of the path suggests that after you complete it you should proceed with either ‘Offensive Pentesting’ or ‘Cyber Defense’. However what I had in mind was going to ‘Jr Penetration Tester’. Any recommendations? Thanks 😊

soft snow
elder geode
somber currentBOT
#

Gave +1 Rep to @soft snow

finite delta
#

Hello Everyone! I just started Pre-Security Pathway. I am an intermediate-level security student but still start from it to grasp the content better. Anyone who would like to join me as a group for better productivity

quartz crane
last schooner
#

Nvm figured it out 😄 sorry

marsh veldt
#

Hi I am at the room "Nmap Post Port Scans". I need to run a OS detection w/ nmap against the host, but I get the following response from nmap...
No exact OS matches for host (If you know what OS is running on it, see https://nmap.org/submit/ ).

marsh veldt
marsh veldt
somber currentBOT
#

Gave +1 Rep to @sterile walrus

last schooner
#

Is it just me or from the Linux Fundamentals and until the end of the Pre-Security Path you get few points compared to what you were getting before? I mean the level req increased from level 6 to 7 but i seem to got few point, didn't note the points down but it seems i got few points from the linux fundamentals and until i finished the pre security path..

warm epoch
#

Some might have points disabled

last schooner
warm epoch
#

Dissuade farming? Avoiding one room being a billion points?

last schooner
warm epoch
last schooner
warm epoch
#

You can't cheat points by resetting rooms

warm epoch
last schooner
warm epoch
#

Points are per question.

#

Walkthroughs are 8 pts per question.
Challenges are 30pts/q
Rooms set to award no points will, as the setting implies, award no points.

last schooner
# warm epoch Walkthroughs are 8 pts per question. Challenges are 30pts/q Rooms set to award n...

Understood, thank you for the clarification. I was mostly curious, i think that the knowledge is the most important thing i am getting out of this not the points, i guess that my brain was just thinking if there is a possibility of the system not rewarding you the correct amount of points you should get, because of a bug or whatever. But without the possibility to see which room is giving how many points, i guess you just have to trust it 🙂
I understand though the reasons for the info not being available, points farming etc

somber currentBOT
#

Gave +1 Rep to @warm epoch

last schooner
#

Thank you @warm epoch again

warm epoch
#

All the info is available.

#

It's just many rooms aren't set to award points and you don't get told

last schooner
warm epoch
#

You can indirectly see it from your totals, or when there's a leaderboard

#

The site is not points focussed especially on walkthrough rooms

last schooner
mint oracle
#

are we supposed to do junior pentest or web fund after completing this path?

winter jolt
#

I did jr pentest after

last schooner
potent wedge
#

shadow would recommend either web fundamentals or junior pentester as the next path after this

#

shadow went with web fundamentals

mint oracle
#

awesome ty

snow marten
naive aspen
#

What's the VPN used for? I'm on Linux Fundamentals 3. I thought the idea was to get on the network with the VMs so I don't have to use web console, but the attack box and the machine for task 2 are on 10.10.x.x and the VPN only gave me a route to 10.6.0.0/17

small spire
naive aspen
#

Yeah, can't reach it

#

("Local Area Connection" is the VPN interface lol)

#

Oh, it pushed the route but I didn't get all of them. Thought I had it running as admin, will exit and redo

Sun Jan 09 22:58:46 2022 PUSH: Received control message: 'PUSH_REPLY,route 10.10.0.0 255.255.0.0,route-metric 1000,route-gateway 10.6.0.1,topology subnet,ping 5,ping-restart 120,ifconfig 10.6.0.6 255.255.128.0,peer-id 98'
...
Sun Jan 09 22:58:51 2022 C:\WINDOWS\system32\route.exe ADD 10.10.0.0 MASK 255.255.0.0 10.6.0.1 METRIC 1000
Sun Jan 09 22:58:51 2022 ROUTE: route addition failed using CreateIpForwardEntry: Access is denied. [status=5 if_index=19]

#

Yeah it's good now

small spire
naive aspen
#

Locate the process that is running on the deployed instance (10.10.139.143). What flag is given?

Is there supposed to be a process with the flag in the command line? I don't see any

small spire
#

Just saw the room question

#

Yeh just list all the processes

#

Look it up if you don't know the command

naive aspen
#
tryhackme@linux3:~$ ip addr | grep inet
    inet 127.0.0.1/8 scope host lo
    inet6 ::1/128 scope host
    inet 10.10.139.143/16 brd 10.10.255.255 scope global dynamic eth0
    inet6 fe80::a3:e6ff:fe65:d15/64 scope link
tryhackme@linux3:~$ ps aux | grep "{"
tryhack+    1855  0.0  0.0   8160   736 pts/1    S+   07:19   0:00 grep --color=auto {
tryhackme@linux3:~$
small spire
#

You have to list all of them

#

Then comb through sus names

naive aspen
#

Yes, I've read through 'ps aux | less' manually
This is just a short way to show that there's no "THM{...}"

last schooner
naive aspen
#

nvm I guessed it lol

old prism
#

Linux 1 done. The room is really well done.

paper burrow
#

The OSI model room is not free right?

agile trout
#

Yep. Only fort subcribers.

native ember
sharp fractal
#

About to kick off Linux Part 1... should be fun

quasi temple
gloomy igloo
#

@quasi temple Do you by chance have a course on Comp Tia Security +

quasi temple
#

Jason Dion is always good. If you want free, Professor Messer is the way to go.

#

Check Udemy for Dion. Messer has his own site.

gloomy igloo
#

Yes i am looking for a free one

#

Sounds good

#

How about CCNA any good site where I can get free course

#

@quasi temple

quasi temple
#

Not so much, no. Quizlet for practice questions. Check the Cisco Study Group Discord server. Ummm... Can try to find some David Bombal or Wes Anderson material, they're good and you'll occasionally find a deal on Udemy and get a course or two for free. I used Chris Bryant, but I don't think his course is ever free.

gloomy igloo
#

Awesome thank you !!!

quasi temple
#

No problem

solid urchin
#

Hey everyone, on the Pre Security, How Websites Work, Task 1, I'm having trouble inputting the answer. I keep getting "incorrect answer" but Idk what's going on. I've typed the answer different ways but I'm still getting incorrect answer. Can someone help me with this please lol? it's frustrating

drowsy rapids
#

Hey im brand new to all of this so im sorry if this is a broad question but where can i start learning the absolute basics of this all

quasi temple
drowsy rapids
#

Ok

#

How can i start going through this pathway? What can i research? Or am i just thinking of this all wrong

quasi temple
drowsy rapids
#

Ok

#

Oh this is nice thank you

quasi temple
#

Yeah man. Hit us up if you have questions, though it's always better to try to figure things out yourself first. You learn better that way. But that's what we're here for.

drowsy rapids
#

Yea i know i usually try to figure things out first

robust spire
#

hello all 😃 I have a question about the practical in DNS in Detail. If i try to perform a command in my own prompt window it keeps giving an error and not returning the same answer as in the practical.

#

"can't find shop.website.thm: Non-existent domain"

rough prairie
#

Hello World! I'm an absolute nOOb. Looks like 'pre-security' is my path.

warm epoch
#

This is working correctly

robust spire
warm epoch
#

Yes, but that's a real domain

robust spire
#

Alright then it makes sense 😄

#

Thank you!

narrow grove
#

hello, somebody here who could tell me the difference between "scp" and "wget"? I used wget to download data to my system, is the only difference that with scp you can directly put a file in a specific directory?

rapid nexus
narrow grove
#

thank you very much @rapid nexus

somber currentBOT
#

Gave +1 Rep to @rapid nexus

rapid nexus
maiden umbra
#

Hello, I am 50% through the pre security pathway and Im wondering if anybody has additional learning resources in case I want to go deeper into a specific room's topic

rapid nexus
maiden umbra
somber currentBOT
#

Gave +1 Rep to @rapid nexus

old prism
#

Question about the FG command. I tried to run it and looked at a couple ways to run it, but they all seemed non-obvious. Does anyone use this command? Do you have examples of how you would use it?

quasi temple
marsh veldt
#

Hello everyone. I was recommended by Tryhackme to take the pre-security pathway course first, so that is what I have been doing. Is the complete beginner course a better first start vs pre-security for a noobie like me?

warm epoch
potent wedge
marsh veldt
somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
old prism
somber currentBOT
#

Gave +1 Rep to @quasi temple

marsh veldt
#

how about teams on THM? is there a room for that?

light junco
#

Any hints help would be great...

warm epoch
light junco
marsh veldt
#

Is it possible to connect to the hack machine using putth ssh client without actually using the open vpn configuration file.

#

I am using a different ssh account different from the one that we have to download from tryhackme and the machine would not connect

potent wedge
marsh veldt
#

Okay

somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
#

also please don't dm without asking here first @marsh veldt.... anyways to answer those questions you can do a lot of rooms with the vpn connection if you learn how to use that and get connected which you can do here: https://tryhackme.com/room/openvpn
after learning that you can also move onto reading this blog post about free rooms: https://blog.tryhackme.com/free_path

TryHackMe Blog

If you're trialling out the Cyber Security industry and looking for a free version of TryHackMe, here is a guide to beginner pathways.

marsh veldt
maiden umbra
#

Hello! Just started linux fundamentals and the $ sign tends to disappear when using Grep, anyone know how to fix this?

#

This is what I mean

last schooner
maiden umbra
#

Yep, I was just doing a bit more research into the grep command and found out that -i makes it case insensitive, though the command is completely wrong

#

This seems to happen everytime my command syntax is wrong though

#

Always end up terminating my machine and booting another

last schooner
# maiden umbra Always end up terminating my machine and booting another

From what i remember that room opens up an ubuntu attackbox in the right side of the page and you can access only the command line for those tasks, maybe that's why idk... I suggest using it to do those tasks and move on, it will dive you into more stuff later and you will have to use the default attackbox or your own vm

maiden umbra
somber currentBOT
#

Gave +1 Rep to @last schooner

warm epoch
#

Control C will terminate grep

maiden umbra
somber currentBOT
#

Gave +1 Rep to @warm epoch

maiden umbra
old prism
#

Pre-security is done. I have some experience, so it was mostly pretty easy. Moving to Complete Beginner for as long as the system will let me. 🥳

shut ivy
#

hey guys, i'm trying to transition from sales to the IT/cybersecurity field. any tips on where to start? I've heard getting your sec+ cert is a good start

potent wedge
spice vapor
shut ivy
#

@spice vapor thank you!

somber currentBOT
#

Gave +1 Rep to @spice vapor

idle spade
#

r

marsh veldt
#

has anyone had any issues with none of the commands executing on Linux Fundies Part 3? On the Attackbox and scp, wget all just freeze when I run them. Restarted the machine and am not on a vpn.

#

Same problem on the Kali Linux machine :/ Lame, guess this platform was good until it wasn't. Guess I'll have to setup my own VM and cancel the sub lewl

potent wedge
#

huh weird

soft snow
#

!docs verify

rain berryBOT
marsh veldt
#

you're right, I apologize. I'll work on troubleshooting it

soft snow
marsh veldt
#

Looks like after I SSH into the tryhackme, I can't get inbound data. Maybe 443 is closed? I tried to Nmap but says I'm not in Sudoers file

soft snow
marsh veldt
#

ah so I should be on root when I'm doing that step? Didn't connect that as I saw network activity in Ubuntu console

soft snow
marsh veldt
#

Pt 3, task 4

soft snow
#

So for that case you only have to spin up the python webserver on the target machine. Then open a new terminal on your attackbox and use wget there to download that specific file to the attackbox with wget targetmachineip:port/filename

marsh veldt
#

understood, must not have read closely enough. Thank you, will try it out

soft snow
marsh veldt
#

Guys i am new and i wanna learn hacking what should i do

idle spade
#

i was just wondering why can’t you use the start flag to start a service with the systemctl command instead of the enable flag?

#

i tried answering one of the questions which asked what command would you use to start a service on bootup with the start command and it was incorrect

#

despite the text stating you could

warm epoch
fading girder
#

Finally Completed the Pre-Security pathway! Damn, it was a roller-coaster ride with so many new things to explore. It really gave an understanding of the basics of overall domains like network, web, linux and windows.

Thankx Tryhackme for creating such precise and easy-to-understand modules!!

pulsar hazel
#

Hi - I have a question: I am confused because I cannot go further with my linux learning path because I do not know on which linux machine I have execute the commands

#

is it the Attack box ? but when I start this box I am root and this seems to be the wrong answer for the question

warm epoch
#

You want the one that's part of a task

#

If you've got both deployed, you can swap between them with the tabs at the bottom

pulsar hazel
#

oh perfect I see that there is in the second part at task 1 a deployable machine - I will use this - thanks for your help

tawdry fern
#

Going through this for additional review

hollow pebble
#

Hello, do you need to have a subscription to be able to complete the paid rooms in order to get a certificate? Or is there another way to claim the certificate once you're done with the free rooms only?

last schooner
hollow pebble
#

Thanks for the reply

marsh veldt
#

Woot woot, finished this today, took me 2 weeks of daily activity, 30 min to 1 hour. Was mostly review for me but was sorely needed. I suppose complete beginner path is next 😮

flat steppe
#

Hello all. I'm new here. I'm in Linux 1 for pre-security, and I booted the Linux machine. I am at the part that requires I use "whoami" and asks what I get in return. When I do, I get "root". That answer does not suffice to move on. Anybody know what I must do? I'll upload a pic...

flat steppe
somber currentBOT
#

Gave +1 Rep to @slow bluff

slow bluff
#

i started now a machine and when i type "whoami" its tryhackme

soft snow
# slow bluff answer is - tryhackme

To simply give out the answer instead of finding the cause of that issue doesn't seem to be the best solution. Especially giving out answers at all 😉

soft snow
flat steppe
somber currentBOT
#

Gave +1 Rep to @soft snow

warm epoch
slow bluff
slow bluff
opal heath
#

Hello all, I'm currently in the Linux Fundamentals 3. Whenever I run python3 - m http.server

#

it says serving http 0.0.0.0 and then won't let me enter anything after

warm epoch
#

You'll need to open a second terminal to make the HTTP request

opal heath
flat steppe
somber currentBOT
#

Gave +1 Rep to @slow bluff

soft ferry
#

Hello. I am currently doing the Linux fundamentals module. Currently on module 1. Keep getting a reconnecting to tryhackme server with the in browser terminal. Have terminated and restarted the box and also closed down my browser. Still happening. Anyone else having this issue?

slow bluff
#

Hi i am on Metasploit and in Task 5 - Move that shell! in db_nmap -sV search i didint recive port 135 info. How can i find it ?

quiet zealot
soft ferry
quiet zealot
# soft ferry Yes

There is no internet in attack box.
You can only work with machines that you have started whole doing task

#

While*

warm epoch
soft ferry
warm epoch
misty edge
#

Guys I'm stuck on a task and need help

#

anybody knockout Network Services Task 4?

slow bluff
misty edge
somber currentBOT
#

Gave +1 Rep to @slow bluff

maiden umbra
#

Hello! Just finished linux fundamentals and was trying to install sublime text to my kali machine when it tells me that apt is deprecated? Anyone know whats the issue here?

warm epoch
maiden umbra
#

Oh my bad, I said it here as linux fundamentals is part of pre-sec

somber currentBOT
#

Gave +1 Rep to @warm epoch

terse ivy
#

Hello, There are videos of locked rooms on your Youtube channel. As such, non-members can watch it here.

winter jolt
terse ivy
opaque owl
#

Windows rooms fundamental are really annoying
I was enjoying learning about Linux and other rooms
But "Windows fundamental" rooms has a lot of indirect or not related question to the task/section

last schooner
slow bluff
#

Ok, i have a big question. I am doin Rick and Morty. when i want to go - gobuster - u (ip) -w (path) i have error: unknow shjorthand flag : "u" in -u" and i dont know why its not working , can someone help ?

weak ether
#

can you post full command?

slow bluff
weak ether
#

and you mean pickle rick right?

slow bluff
#

yea

#

dirb is working but gobuster -u its not

weak ether
#

okay, im starting the machine now to test 🙂

slow bluff
#

yea thanks

soft snow
slow bluff
#

so, i need to scan site to look for some directorys like /admin /assets /indeks etc. so how should i write this command?

weak ether
#

so your same command

#

as you did before but add dir

gobuster dir -u <url> -w <wordlist>

slow bluff
#

i checked here

#

and its different

weak ether
#

try using gobuster --help too

slow bluff
#

i tried

#

and notghint really helped

weak ether
#

adding the dir to your command should help.

slow bluff
#

yea it helped

#

❤️ thanks !

weak ether
#

nice 🙂

slow bluff
#

i lost my 1h to trying 😄

weak ether
#

they have -e showing as directory mode on there, not sure if that also works...

slow bluff
#

nope

#

i tried like this and its not

#

anyway thank you!

weak ether
#

ahh nevermind 🙂 have fun

halcyon wren
#

hey guys, I'm just asking if i should begin with this path or chose the the complete beginner path?

marsh veldt
#

if you have some cyber security knowledge go with the pre security path to start. If you're completely new go to complete beginner. My advice is if you are new, do both rooms anyways as you'll get a strong background in cyber security before moving on to Pen testing/Cyber Defense paths.

winter jolt
#

I did complete beginner, pre then jr pentest and those paths have given me a nice foundation

halcyon wren
#

Ok, thank you 😊

wise cloak
#

Hey everyone. Pls, i am new with my Kali Linux in which i have installed on my laptop but the help is how do i start using my kali linux to start my Tryhackme path in which i am already a member. How do i start?

potent wedge
somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
#

no problem

#

some of the tasks and rooms in the start of tryhackme in the pre-security pathway is not meant to be solved with your own machine and instead use the attackbox but this should still help

wise cloak
#

Ok. Thanks

soft snow
potent wedge
#

linux fundamentals 1-3 work weirdly with the vpn

soft snow
potent wedge
#

fair enoughs

wheat raptor
#

dont know if this is the right channel but i'll try:
Can someone tell me why i dont get any output of my bash script?

#

and why i cant post foto atm? 😄

#

#!/bin/bash

transport=('car' 'train' 'bike' 'bus')
echo "${transport[1]}"

zinc pier
#

That works for me. Have you made sure it's executable (chmod +x script.sh)

wheat raptor
#

yeah i did that, even tried to call it with : sh ./arrays.sh

rain berryBOT
wheat raptor
#

@marsh veldt thanks a lot

somber currentBOT
#

Gave +1 Rep to @slim laurel

zinc pier
#

Try bash

wheat raptor
#

yeah just found out that sh writes en error because of the "("

#

😄

#

ohh... my bad im dum^^

#

dumb

#

missed an s

#

but another question, can you tell me why i cant use the ` sign in the killbox?

#

or how i can use it

wheat raptor
#

exactly this sign^^ if i use the key it doesnt write it

small spire
#

` is for evaluating expressions in bash

wheat raptor
#

yeah but i cant even write it

#

so if i get to use it somewhere i got to connect via vpn to finish the room

#

if i would like to write an "`" in the vi or general into the linux it doesnt do anything

small spire
#

also, if ` is not recognized in the attackbox, you could simply copy paste it by searching the symbol on web

wheat raptor
somber currentBOT
#

Gave +1 Rep to @small spire

wheat raptor
#

copy pasting would be a workaround, just wondering why its not recognized

amber igloo
#

your keyboard might have a different layout than what the attackbox default is

wheat raptor
#

tried to change the layout, no effect

#

i had another vm like attack box once to work on and it didnt recognize there too, so i just tried out here, just to see if it works

kind sundial
#

Can anyone explain OSI layers in a easy and simple way?

umbral thorn
#

https://tryhackme.com/room/osimodelzi Room explains it well. Coming up with your own way/ in your own words/ how to explain each layer, if you just memorize someone's else's explanation, it won't help you in understanding it.

short badger
#

Ñ

round adder
#

Hi, I made a mistake when I wanted to do a scan, who can help me with an explanation in private

soft snow
opaque monolith
#

does anyone know What device is used to centrally connect multiple devices on the local network and transmit data to the correct location i cant figure it out

opaque monolith
#

LAN models i think

empty spire
opaque monolith
somber currentBOT
#

Gave +1 Rep to @empty spire

tulip lava
#

hi

agile osprey
#

@tulip lava Hey there!

tulip lava
#

i want to learn how it works, im from mexico, also im 21, english b1, studying medicine

#

where i can start?

#

medicin*

agile osprey
tulip lava
#

its free?

agile osprey
#

Some parts of the website of free, other parts require a subscription. You can still learn a lot without getting a subscription

tulip lava
#

tnx bro

potent wedge
#

if you just want a list of free rooms here is one

#

!docs free-path

rain berryBOT
potent wedge
#

@tulip lava ⬆️

#

bit outdated but it is the best we got

tulip lava
#

tnx @potent wedge i will read and if i have a question ill ask

gray jasper
#

just finished the pre security room. Was a great review of everything and I really liked the linux portion.

agile osprey
#

@gray jasper Congrats. I can say, the Linux portion was very informative!

gray jasper
#

Thanks. I’m going to check out the other beginner courses just to know I have them done.

agile osprey
gray jasper
leaden canopy
#

In this linux fundamentals part 1, i cant connect with the machine via openVPN, the only way to connect is via browser, am i doing something wrong?

last schooner
#

Later on you will be able to use either the AttackBox, Browser Kali or your own VM to connect to the machines you are attacking, that is not one of them.

leaden canopy
#

ah, i see, thanks a lot

shy isle
#

I finished pre-security-pathway and I'm continuing with complete-beginner path,and I'm loving it.I just want to know what else should I do along with tryhackme, Should I start hackthebox also along with it?And can I get a job in cybersecurity just by doing ctfs ,or should I need to get network+ and security+ ?

soft snow
shy isle
somber currentBOT
#

Gave +1 Rep to @soft snow

leaden canopy
#

In Windows fundamentals part 1 how to connect to the virtual machine via RDP in kali machine?

leaden canopy
#

thanks, i used remmina for rdp

flat steppe
#

Linux Fundamentals Pt 3 - trying to SSH into 10.10.223.107 and password being denied. I've tried it 50 times. I know for a fact I'm typing it correctly according to task 2. Any insight as to what I'm doing wrong? I'm getting to root@10.10.223.107 but can't get passed the password. Thank you!

#

when I launch attackbox, it logs me in as root

#

but i'm sure that is the problem now that you mention it

marsh veldt
#

i try to run recon-ng but it cannot bybass google caption

#

does it is outdated??

flat steppe
#

syntax error on my part. lesson learned :)\

silver vortex
#

Hi all. I am in room "Network Services", doing the "exploiting telnet" task. I would like some guidance on proceeding, in a DM session (so as to avoid spoilers?)

soft snow
silver vortex
soft snow
silver vortex
#

I did

soft snow
#

So then just try type a command

#

Like whoami

silver vortex
#

oh, yep.

#

I was trying to do that from the telnet session terminal.

#

thanks man 🍺

#

onward and upward!

blazing drum
#

hi guys, im new to THM

marsh veldt
#

hi

#

guys

#

im new

rough ingot
#

👋

dusty carbon
#

has anyone found a fix for the presecurity path bug where one is 50 percent and task are doubled

dusky plinth
#

I was about to ask the same thing, I'm having the same bug lol

lime needle
#

I'm doing the linux fundamentals part 1. does anyone else have the problem that the files in the attack box seem to be the wrong ones?

#

according to the walkthrough there should be a folder4?

amber igloo
# lime needle

looks like you are trying to look from the attack box when you should be working on the target machine instead

#

there is a start machine button in task 3 that opens you another machine in the browser

lime needle
#

That was it. Thanks!

fair notch
#

Need some assistance on the tryhackme website. I have completed the presecurity path, yet one of the courses shows incomplete. When I enter that room to see what I missed, it shows 100% completion. I've reset answers and did it all over again, but it does complete the path. Help please!

whole badger
#

I was having similar issues as JuWinn but after I open the "Start Machine" option, I do not see the system properly load, it directs me to OpenVPN or AttackBox. I then made sure to download the configuration file, upload it to OpenVPN and still have no system opening up on the side running a Windows host. Any recommendations?

warm epoch
whole badger
warm epoch
#

Along the top, near the room title and next to the deploy/start attackbox button. What room are you working on?

#

!docs verify

rain berryBOT
warm epoch
#

If you verify with the bot by following these steps, you will be able to post images.

whole badger
#

I am working on Linux Fundamentals Part 1 (Does this answer your question)?

#

I got it! Thanks NinjaJc01!

#

ls

#

Yeah, for some odd reason, when I am working on the split screen, I see only access.log and folders1-4 after running the ls, does anyone else have this issue?

#

It feels better when you figure it out, I was having issues because I was expecting the activity to be the same as the script. Turns out that it is not, who knew lol.

warm epoch
wraith ginkgo
#

Hey I’m new just made a tryhackme account today! I’m ready to start this journey!

#

Question is a MacBook good for this or do I need something else?

junior flame
wraith ginkgo
#

Okay cool I’m definitely going to look into that later I’m at work atm

potent wedge
#

you can do everything in the browser if you use the attackbox for later rooms

#

in the pre-security path a very few things require you use anything else then the spun up specialised webbrowser vm:s

marsh veldt
#

Hello, i'm on Linux Fundamentals Part 3 and I can't get into the machine using SSH. Says "Permission is Denied". I'm for sure using the pass "tryhackme", I tried openvpn within the attackbox and out and it still won't work. kinda stumped, was really enjoying these Linux rooms. I tried Kali at one point too

#

Not sure if this is the correct channel, excuse my ignorance

#

And if it matters, I am subscribed to the service

soft snow
marsh veldt
#

Ah I see, I needed the tryhackme@ before the ip. why is that needed there? just so I know why it doesn't work without it

soft snow
marsh veldt
#

Ah alrighty, I appreciate the answers! 👍

radiant ocean
#

Any advice for a beginner?

#

I only know 'netsh wlan show profile "--" key=clear' that's it

umbral thorn
mighty wharf
# marsh veldt Ah I see, I needed the tryhackme@ before the ip. why is that needed there? just ...

it's basically the username of the account it might be different for other users. Since you are signing in with "tryhackme" account, you need to use that as username. Also each user has main directory in home directory. If you have your own kali machine your directory is at /home/kali as i know. If you need a help about something first just check the man page of it. Like "man ssh", it shows all the parameters. You can use "ssh -help" too but man is more advanced and organized.

ripe mango
#

okay ques noob (Terminate the static site lab deployed in tasks) they are in slit window and are static pages

#

do i just close the spilt window*

mighty wharf
#

yeah close it

ripe mango
#

okay thanks

#

i just did want miss something up later

mighty wharf
#

if you forget to terminate a machine, it will be terminated when it expires. But, yeah terminate it when you're done xD

ripe mango
#

better safe then sorry

marsh veldt
#

I guess them using "tryhackme" confused me at first me

rustic sapphire
#

hi guys, i have completed the pre security pathway. Which path do you recommend me to continue with?

vapid peak
rustic sapphire
#

I see🤔🤔

#

Thabks a lot

vapid peak
#

I have a question about the Extending Your Network room, it asks which layer are routers on and the answer is 3 and 4. but I didn't understand. I know that routers route based off of IP so the physical and data link are out. But I thought it should be 5, 4, and 3 because the idea of a TCP/IP handshake sounds like starting a session to me. It isn't? Wouldn't a stateless firewall instantly deny a session?

vapid peak
rustic sapphire
somber currentBOT
#

Gave +1 Rep to @vapid peak

restive trout
#

I am going to finish the Pre-Security soon.

blazing drum
#

This is on Linux Fundamentals P1

potent wedge
#

might be because of the fail safes which accepts typoed answers to some degree

#

but yeah it should not have accepted that answer

wheat sable
vapid peak
#

hmm...yeah. i know that at a certain point these model will break down but...i was hoping it would last longer than that! lol

#

thanks though

night grotto
#

Who is hacking tonight?

night grotto
#

Working on Windows #2. Whatcha got?

tired geyser
mighty wharf
#

Are you sure about the ip ?

#

can you terminate and recreate the machine please

mossy epoch
#

Im having the same issue, ive terminated and recreated the machine. Tried logging in with that new ip, but it still gives me the Permission Denied 'error'

marsh veldt
#

*I cliked on a IP grablink 1 days ago and now my connexion is slow and crash sometimes also discord *tell me your WIFI not securised

soft snow
marsh veldt
soft snow
#

!docs verify

rain berryBOT
marsh veldt
#

hm

soft snow
marsh veldt
#

in the search

#

@soft snowI can just dm u

#

idk to do token

soft snow
marsh veldt
#

ok$

umbral thorn
mossy epoch
soft snow
mossy epoch
#

Attackbox

soft snow
# mossy epoch Attackbox

Could you verify and then send a screenshot in here so that your command and the error can be seen?

#

!docs verify

rain berryBOT
mossy epoch
#

Yes i verified, will try to recreate the issue

#

Will take a minute

soft snow
# mossy epoch

You are trying to connect to the wrong IP, that's the IP of your attackbox and not of the target machine

mossy epoch
#

Aha

#

and where can i find the ip to the target machine XD

#

i feel dumb XD

soft snow
mossy epoch
#

Got it! TYVM!

tired geyser
mighty wharf
tired geyser
#

yeah i have a screenshot but im unable to in this sever.

#

im going to try now and see if it works.

#

i previous tried the different IP associated with the attack machine when rebooted

soft snow
#

!docs verify

rain berryBOT
tired geyser
#

cool thanks i completely missed the verification part

#

using Password: tryhackme which is provided

soft snow
# tired geyser

That's the IP of your attackbox, not of the target machine. So you have to start the target machine by pressing the green "Start machine" button and a box like that should appear that holds the target machine IP:

tired geyser
#

thanks J0de help me

#

got it sorted and connected

#

thanks for your help

soft snow
#

Alrighty

vital inlet
#

👍

marsh veldt
#

Does Windows really need two setting control panels..

#

Unrelated to anything

mossy epoch
#

I'm having issues at taks 6 in the Linux Fundamentals room, I can't seem to see the scheduled cronjobs

#

I searched on the web for a command and came across 'crontab -l' to display all scheduled cronjobs, but this returns nothing

amber igloo
#

crontab -l should have also given the answer

mossy epoch
#

this is what crontab -e gives me

#

and crontab -l gives the same, but only prints it

soft snow
mossy epoch
#

then im obviously missing something XD

soft snow
mossy epoch
#

Got it, thank you. I don't know if you can, but i suggest changing the Hint given for this task

#

It says to 'Take a look at the position and the value within the appropriate column', giving the idea to look for the m h dom mon dow columns

#

but those aren't there

oblique wedge
#

Hello Everyone,

Can anybody help me?

In Linux fundamental room part 3 I am trying to access /var/log/apache2 to answer the questions which are asked in Maintaining your system log section.

But whenever I type /var/log/apache2 I get no such file or directory.

oblique wedge
amber igloo
oblique wedge
#

Okay, Thank you and what I am doing wrong in the above question?
How can I look for apache2 logs in a Linux machine?

amber igloo
#

Looks like you're still trying to look from the attack box and not the target machine

marsh veldt
#

What's reason nslookup --type= isn't recognized as a flag on local machine?

somber currentBOT
#

Gave +1 Rep to @amber igloo

blazing drum
blazing drum
#

Still doesnt work, i've tried reopening the whole tab as well

soft snow
blazing drum
#

gonna try that now

potent wedge
#

@blazing drum if you need to see it without getting it working later

potent wedge
#

no problem

woven trellis
#

has anyone completed the room "Ice"

winter jolt
woven trellis
somber currentBOT
#

Gave +1 Rep to @winter jolt

blazing drum
#

sadgeiPog I finally completed pre-sec, moving onto web fundamentals now

marsh veldt
#

Hi everybody, i was wondering if someone experienced something similar as I did just now.

#

I'm on linux part 3, Processes 101.

#

said look for a flag in processes.

#

i was assuming it would be either tagged with the THM{xxx} or very obvious. i saw a whoopsie, but my output doesn't give me any flag. looking at the hint confirmed what i was thinking, but still no flags. the video shows it the way, so i thought i was wrong, but yet again no flag.

#

hi there 🙂

#

is it possible to have this happen, should i just restart the session?

#

sure, how do i do that?

#

oh my god, i jus tthing i just found out what was wrong...

#

i do feel like an idiot for n ot nociting this alrady

#

i found my mistake

#

i was not loggid in on the victim anmyre, still bussy trying to check things on my attackbox

#

got it

#

that was my mistake

#

note to self check your connections 🙂

#

thx for the assistance, it was only when you asked the victim's ip that i notest my mistake

tepid fern
#

Anybody familiar with Task 6 of the Network Service Room?

#

I was trying to find the most efficient way to scan for the port

#

Doing a regular scan shows 1 port is open but there's no identifier as to what port it is

#

I already know the port number and the service it's running

#

but the scan was awfully long and seemed to be stuck at 99 percent

#

I used the -A and -p- tags

#

ahh okay

#

what switch would you use for this part

#

sorry, my nmap skills aren't that great yet haha

#

gotcha

#

thanks

inner flax
# tepid fern I used the -A and -p- tags

-A is going to take as long as possible. IMO it is better practice to run an initial scan to figure out what is open, then interrogate those ports more thoroughly in a second scan

tepid fern
inner flax
tepid fern
#

👍

raven radish
#

can anyone eli5 ADS (Alternate Data Streams) for me? what is a file attribute in the NTFS file system? what does it mean when they say its hidden from users?

warm epoch
#

The effects are shown to the user, but the data stream isn't.

raven radish
#

i think i kinda get a very basic idea of what u meant, but what's a data stream?

inner flax
rustic nymph
#

I am on Packets And Frames room rn and I have a doubt there , someone please clarify

#

Here in last line there is (5000+1) written but I think it should be (0+1)

#

client's ISN is 0 in the beginning

#

so why is client using server's ISN?

marsh veldt
#

hi

raven radish
#

hello

jagged rock
#

Hello all

glossy scaffold
#

Hiya!

upbeat bluff
#

What next after completing this room?

#

JR Penetration Tester?

glossy scaffold
#

I'm in the same boat @upbeat bluff . I'm thinking complete beginner for me, maybe switch to jr pen tester now and then.

potent wedge
# upbeat bluff JR Penetration Tester?

@glossy scaffold junior pentester path is the intended path after this... complete beginner used to be it but it is not that updated and kinda old at this point so not as polished as junior pentester.... hence why shadow and others recommend junior pentester above complete beginner

#

there were even plans of removing the complete beginner path from the site for a while

glossy scaffold
#

Oh! Ok! I looked at the complete beginner path and thought some of the lessons looked helpful. I'll hit up junior pentester instead. thanks!

#

@potent wedge thanks

somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
#

no problem

urban kite
spark orbit
#

Heya, random question. PreSec path, HTTP in Detail: Task 2 - Requests and Responses.
I get the information being presented, but I may be having a brain fog moment or missed something pertaining to exactly where or what you use to make those requests? Is it a browser thing or a cmd thing? I feel like this is one of those "can't see the forest through the trees" situations...

raven radish
somber currentBOT
#

Gave +1 Rep to @inner flax

soft snow
marsh veldt
#

I was studying about scp commad, I was wondering, does cp command also able to copy files from remote device like scp or is it local on my device only?

tawny kettle
#

Hi there, my name is Marlon and I just joined the discord group. I completed the pre security course and would like to ask what the next step would be? I am interested in the cyber defense role. Also, which certificates would I need to be competent in applying for cyber defense roles? And do the courses on THM prepare me for that? Sorry for the many questions lol

woeful zenith
#

hey just a question, is this learning path free, but like completely?

potent wedge
#

nope not the entire path is free @woeful zenith

woeful zenith
#

ok, thanks

glossy scaffold
#

Aaanndd I've complete pre-security. That was fun. Now, onwards to junior pentester!!!

chrome oracle
#

Im doing this after Complete Beginner path

marsh veldt
#

Hello In Windows Fundamentals 1 Task 7 i don't succeed in doing this task "Log in as the standard user and try to install this program. To do this, you can remote desktop into the machine as the standard user account. I have done this but i don't know how to log in as the standard user. I think that the user is "tryhackmebilly" and its password is "window$Fun1!" Help me please

soft snow
deep lake
#

hello friends, i have been on LFI challenge in the pre-security path for a awhile now...and i can't seem to find my way to the flag on challenge 2...please i need hints on how to think in the right direction to solve the problem..thank you😅

last schooner
deep lake
last schooner
deep lake
#

oh...how did i end up in the wrong group...thank you

last schooner
#

😄 no worries it happens

fading anvil
#

Hi, I'm working on windows fundamentals 1. Right in the first task is written that it is possible to connect via Remote Desktop to the virtual (windows) machine. What is the idea? Should I connect via the attack box using RDP? Or from my local computer here? I tried from my local computer (MacBook) via the MS Remote Desktop App. That didn't work. Turned the firewall and my VPN off. Still didn't work. How did you do it?

potent wedge
#

If you do not start the attackbox it should start in a split view for you to use without bothering with rdp

#

@fading anvil ⬆️

fading anvil
#

@potent wedge Yes, thank you, that's what I did. But in Task 7 I read: "Log in as the standard user and try to install this program. To do this, you can remote desktop into the machine as the standard user account. " So I tried to make an RDP con. But it didn't work. I thought maybe I miss something but it is also possible that it doesn't work at all. The VM has no internet con. So how could it work without?

somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
fading anvil
potent wedge
#

xfreerdp

#

it is a terminal application

#

wait a sec for syntax

#

xfreerdp /u:user /p:password /v:10.10.x.x

#

@fading anvil ⬆️ hope that helps you get the gist of how to run the rdp program from the attackbox

fading anvil
somber currentBOT
#

Gave +1 Rep to @potent wedge

potent wedge
#

no problem

fading anvil
vestal otter
#

Anyone else had an issue with the three-way handshake question in Packets and Frames?

#

Question: Provide the order of a normal Three-way handshake (with each step separated by a comma)

#

My answer: SYN, SYN/ACK, ACK

#

Disregard, spaces were the issue....... lmao

final trout
#

I just finished the pre security path, what next path is recommended? the junior pentester?

potent wedge
final trout
#

awesome, I'll jump on that path today then

silver night
#

Windows Fun 1 Task 3 disable/hide search box, pls help... 😁

last schooner
silver night
last schooner
# silver night Yes

If you have windows 10 you should have a search bar in the bottom left correct?

silver night
#

Yes, but I'm on my mobile at work, and don't have access, I tried searching in Google and on the information given within the task but anything I found was marked incorrect 😊

last schooner
#

I'm sure that you would have found that out by searching google on how to hide the search box in windows 10 but being a fundamental part i gave you the answer directly 🙂

silver night
#

Maybe I am just typing it in wrong.

last schooner
silver night
#

The key has a **** **** *

#

4 4 1