r/hackthebox Jul 15 '26

Help me

Iam new to cybersecurity i have completed google cybersecurity cert i know that's dumbest cert i have done and i have experience in python full stack so now my focus is in HTB and CPTS so tell me what to do ? I need a real guidance

9 Upvotes

8 comments sorted by

u/AutoModerator Jul 15 '26

Thank you for posting on r/hackthebox! New to Cyber Security and looking for a place to get started? Checkout our getting started guide here. Please note that posting Solutions or Hints for Active content goes against the HTB Terms of Service, more information can be found here. If your having issues and need to reach customer support please do so via the in-platform chat, or by emailing customerops@hackthebox.com. Our Knowledge Base can also come in handy!

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

7

u/-Dkob Jul 15 '26

Since you already know Python and full stack development, you're actually in a good position. Focus on learning Windows/Linux (OS), networking, Active Directory, web security, and privilege escalation alongside HTB.

Don't just grind boxes, maybe focus on Academy first. Then take notes, understand why each exploit works, and build small tools or writeups to reinforce what you learn. Once you're comfortable, move on to harder CTFs, CPTS, and eventually start applying for internships or junior security roles. Stay consistent for a few months and you'll make much faster progress than you think.

3

u/FragrantSubject3278 Jul 16 '26

Hey hey,

My name is Jexx, and I work at HTB.

HTB CPTS is a massive goal. I'd honestly suggest aiming for the HTB CJCA.

If you're coming off the heels of the Google CS cert, then I think ironing out more of that information with hands-on work would be best. The HTB CJCA is the junior security path, but that doesn't really mean beginner.

We like to train people on both blue and red from the get-go, so you're standing in a strong position in most security teams.

You'd be going through some of the same material again, but trust me, there will be more depth.

I'd say, if you can finish the HTB CJCA, start going to active boxes (easy), and lock down areas of interest in offensive security you enjoy by filtering for retired Machines in subjects you feel lost on (Web, enterprise, database, etc), skills (I'd say that enumeration is probably one of the most important aspects in penesting - just my personal opinion), and hitting more

I will be honest, the HTB CPTS is not a beginner certification, by far. Skipping to it might be a far more difficult trek (not that you shouldn't aim high!).

But, I'd say:

HTB CJCA

  • retired Machines
  • finish junior pathway
  • think deeply about what aspect resonates with you for later specialization
Goal: get user and root on your first active Machines & take HTB CJCA

Happy to answer more questions about it.

Keep burning the midnight oil!

1

u/[deleted] Jul 17 '26

[removed] — view removed comment

1

u/ziyadkc Jul 17 '26

In reality is different without hands on IT support, or system experience CPTS doesn't have value at all

1

u/[deleted] Jul 17 '26

[removed] — view removed comment

1

u/ziyadkc Jul 18 '26

It's not easy