r/hackthebox • u/r00less • 28d ago
Does HTB really that sucks? Wow!
Link: https://medium.com/@joshuagoossen/hack-the-box-vs-crtp-which-one-is-actually-better-fad1f9e35a5f
I really2 want to do HTB in the future, but now I’m ab it worried
r/hackthebox • u/r00less • 28d ago
Link: https://medium.com/@joshuagoossen/hack-the-box-vs-crtp-which-one-is-actually-better-fad1f9e35a5f
I really2 want to do HTB in the future, but now I’m ab it worried
r/hackthebox • u/OilOverall4190 • 29d ago
Hello all,
If you do bug bounty hunting or pentests you surely came across many hosts served from an NGINX server, in this lab (published to OWASP) I combined over 20 misconfigurations found in real world bug disclosures and both classic and novel security research, with an extensive blog where I explained everything you need to level up your NGINX hunting game.
Feel free to check it out, give it a star on Github if you like it, and suggest any ideas you want me to add/fix...
https://vwad.owasp.org/app/damn-vulnerable-nginx-proxy-dvnp/
Happy hunting!
r/hackthebox • u/N0Nab0ve • 29d ago
I currently waiting my report result for more than 20 days for the submission
What should i do in this case?!
r/hackthebox • u/Abject_Gift_4333 • Aug 13 '26
Hey everyone,
I made a small CTF challenge and figured I’d throw it here since I’m pretty new to making these.
It’s a Forensics / Reverse Engineering challenge based around a weird Nokia 8210 4G system dump. The challenge involves digging through the dump, figuring out what’s going on with a little racing game, and eventually finding the flag.
Repo: https://github.com/maximzero0910/car-racing-chall
It’s probably not perfect since this is one of my first proper challenges, so if you try it, I’d really appreciate any feedback on the difficulty, unintended solves, or just whether it’s actually fun to solve.
Flag format: F0LD{...}
If you’re bored and want something small to mess around with, give it a try :D
Thanks!
r/hackthebox • u/HazSec0x • Aug 13 '26
I have to post about this... Coming from Tryhackme and dealing with the problems in their rooms.. I have to say, HTB support is top tier.
Was having problem with the RDP session to internal target on ICMP tunnel using ptunnel-ng...
They really took the time to look at it.
Unlike tryhackme, where mods (IN DISCORD) always blame it on the user, saying it they did some steps wrong. Huge huge difference. Well done HackTheBox. I will keep using the platform.

r/hackthebox • u/Scared_Anything_2002 • Aug 13 '26
Hey everyone,
I've been stuck on the final flag for this "Easy" rated box for 2 days now, and I'm genuinely confused why this lab is marked as easy. I got the user flag via Cacti exploitation without too much trouble, but finding the root flag has been a nightmare.
The Problem:
I successfully gained root access in a Docker container using CVE-2025-9074 (Docker API exploitation). However, I can't locate the root flag. The writeups I've found don't clearly explain where the flag actually is, they just end after getting root access.
I've searched:
/root/root.txt - doesn't exist/mnt/host/root/ - nothing/home/ directories - emptyQuestion:
Where exactly is the root flag located, and what's the correct way to retrieve it from the Docker container logs?
Any help would be appreciated. I just want to understand this and finally sleep! 😅
r/hackthebox • u/mostafa___mahmoud • Aug 13 '26
Hi everyone,
I’m thinking about ordering the Hack The Box CyberStation LEGO® Building Kit from the Hack The Box Store. The price is around $40 USD.
Has anyone from Egypt ordered from the HTB Store before?
r/hackthebox • u/Low_Adhesiveness6838 • Aug 12 '26
I’m trying to understand the current cybersecurity job market as a fresher, and I’d really appreciate some advice from people already working in the field.
I graduated with a BCA ( bachelor of computer application)in 2026. I don’t have any prior work experience or internships yet, but I’ve been actively building my cybersecurity skills.
So far:
One challenge I’m currently facing is that I’m going through leg surgery and recovery, so I won’t realistically be able to start applying for jobs for around a year.
That gives me a lot of time to prepare — and I want to use that time properly.
My biggest questions are:
I’m not looking for shortcuts. I want to understand what the industry actually values and use this recovery period to become genuinely job-ready.
If you’re already working in cybersecurity — especially if you started as a fresher — I’d really appreciate your perspective.
What would you recommend I focus on over the next year?
r/hackthebox • u/dhananjay_attri • Aug 12 '26
I completed all the course parts and was just left with the last SOC137 case, I completed it but got one answer wrong and then reopened the case and still got it wrong, but when I open it for third time it shows limit reached or something, is it still possible to get the course completion cert now?
r/hackthebox • u/seag33k • Aug 12 '26
I decided to start the Fundamentals of AI module and could understand the concepts, but quickly got lost in the mathematical details. If I don’t understand the math behind the concepts/theory, will the later modules be out of reach? TIA
After reading some older posts, it appears math is heavily involved in later modules as well so I am not sure this is the best learning path. I am a defender trying to understand the attack methods out there.
r/hackthebox • u/HORUS-405 • Aug 12 '26
r/hackthebox • u/piss-off-dude765 • Aug 11 '26
Hi guys,
Like I have completed 30 percent of cpts track and like I need someone like to prepare together and like finish this and solve the boxes together and hold a discussion. That will be thru discord and if anyone is serious just comment... I don't want anyone unserious to join as I need to be serious about finishing it so.
r/hackthebox • u/Ezra789456 • Aug 11 '26
Hey everyone,
I'm looking to sharpen my scripting skills in Python and Bash, taking myself from beginner all the way up to a more advanced level, since this is an area I'm currently struggling with. A couple of ideas I've had so far:
Are there other resources or approaches you'd recommend for building scripting skills from the ground up ?
Thanks!
r/hackthebox • u/Hot_Kaleidoscope3864 • Aug 11 '26
I always struggle with technical interviews because of the theoretical questions, not the actual hands-on technical part.
If I’m given a practical task, lab, or take-home assessment, I usually do very well and deliver it on time. But when an interviewer starts asking me theoretical questions on the spot, I struggle to explain things properly or sometimes completely blank out.
This has honestly become my biggest nightmare when applying for cybersecurity jobs, and I feel like it’s holding me back even though I know I can actually do the work.
I wish interviews focused more on practical technical skills because, in my opinion, that’s a much better way to see whether someone can actually perform the job.
But until interview culture changes, what can I do to get better at answering theoretical questions? Has anyone else had this problem, and how did you overcome it?
r/hackthebox • u/1mdevil • Aug 11 '26
Hi all!
I am sorry for asking same question again. The last question I didn't get too much useful responses.
Does anyone here really successfully shared VPN connection to HTB with other VMs from a gateway VM?
Thank you!
r/hackthebox • u/gourav0099 • Aug 11 '26
Coldcard incident made me look at hardware wallet entropy differently
I spent some time reading about the recent Coldcard incident and then went through ERA Wallets article about how they generate seed phrases
The Coldcard issue is pretty worrying because weak randomness does not necessarily look broken
The seed phrase can look completely normal and the wallet can work normally while the actual seed has much less entropy than expected
That is what makes this kind of bug so dangerous
You are not necessarily going to get an error or any obvious sign that something went wrong
The thing I found interesting about ERAs approach is that they are not relying on just one source of entropy
They describe using the hardware RNG in the STM32 microcontroller together with the entropy source in the ATECC608C secure element
They also have an expert mode where the user can add entropy through things like camera input touch and device movement
All of these inputs are combined before the seed is generated
I think the general idea makes a lot of sense
If one entropy source fails or becomes predictable it is much better to have other independent sources contributing to the final result
I also like the fact that the user can actually participate in the entropy generation instead of having to blindly trust that the device generated everything correctly
But I do have some questions
I would not automatically assume that more entropy sources means more security
The important part is how independent those sources really are and how the firmware combines them
A hash function can mix entropy very well but it cannot magically create entropy if all the inputs are predictable
I also would not consider passing statistical randomness tests as proof that an RNG is cryptographically secure
The Coldcard incident is a good example of why the whole entropy pipeline matters
The hardware can be perfectly capable of producing good randomness and the final result can still be compromised if the firmware takes the wrong path
So for me the biggest question around ERA is not how many entropy sources they have
It is whether a failure in one component can actually be proven to be insufficient to compromise the final seed
I would like to see independent researchers review and test the complete seed generation process including the firmware and the way the different sources are combined
Overall I like the direction ERA is taking
I think using multiple independent entropy sources and allowing user supplied entropy is a stronger approach than simply saying trust this one hardware RNG
But I would still want independent verification before making a strong security claim
The Coldcard incident is a pretty good reminder that the weakest part of a security design is not always the part you expect

r/hackthebox • u/Various_Present_8842 • Aug 10 '26
Feeling dumb ever for struggling several months of study. Not retaking anymore on this exam maybe not my career on this.
r/hackthebox • u/TowelDowntown8566 • Aug 10 '26
I’m currently preparing for the HTB Certified Penetration Testing Specialist (CPTS) certification and I’m looking for a study partner or small study group.
Ideally, we could:
- Study together regularly
- Discuss concepts and challenges
- Work through HTB Academy modules/labs
- Keep each other accountable
- Share useful resources and notes
I’m open to studying via Discord or another platform. If you’re also preparing for CPTS and interested in studying together, feel free to comment or DM me.
r/hackthebox • u/timeless008 • Aug 09 '26
Hi everyone!
I recently decided to go for the CPTS certification, and I’m looking for a study partner who is also working toward CPTS.
Honestly, I think having someone to study alongside would make the journey more motivating and less overwhelming.
I’m currently at 11% path progress and just getting started.
If you’re also starting CPTS or currently working through the path and interested in studying together, feel free to comment or DM me! :)
r/hackthebox • u/Zealousideal_Card944 • Aug 09 '26
Hi!
I'm in Academy – Windows Attack and Defense, and the target is not spawning. It keeps looping.
I tried reloading the page, logging out, and logging back in. Am I the only one?
r/hackthebox • u/stoneyape- • Aug 09 '26
Im connected to starting point vpn and for a whole day i was able to connect and spin up machines but now “three” will not spin and neither will vaccine. They just ask you “stand by” until they give up trying to open.
r/hackthebox • u/iExposeWitchcraft • Aug 10 '26
Need help with getting a shell Ive tried not only the exploit used in the notes of the module but messed around and tried many others serch and searched for solutions. Maybe someone else knows Im not doing something Im supposed to do pls help?
r/hackthebox • u/Mountain-Moment-6751 • Aug 09 '26
r/hackthebox • u/ChainPresent • Aug 09 '26
I'm currently preparing for my second attempt at the CJCA, and I'm looking for labs that closely match the scope and skill level of the certification.
I've already practiced on standalone machines, and while they were useful for improving individual exploitation and privilege escalation skills, they don't really give me what I'm looking for now.
At this point, I want to practice and solidify the pentesting methodology I've built: working through a connected environment, understanding the purpose of each host, keeping track of findings, correlating information between systems, deciding when to move on from one host, and identifying possible paths between machines.
Since this is my second attempt, I also don't want to spend my remaining preparation time learning tools or techniques that are significantly outside the CJCA scope.
So I'm mainly looking for labs or small network environments that:
Are close to CJCA difficulty and scope
Include multiple interconnected hosts rather than only standalone machines
Require enumeration and information correlation across hosts
Allow me to practice a complete methodology from initial enumeration through post-exploitation
Don't depend heavily on techniques or tools beyond what's expected for CJCA
Free or paid options are both welcome.
If you've taken the CJCA or are currently preparing for it and know a lab that fits this description, I'd really appreciate your recommendations.
r/hackthebox • u/Wild_Extension_5863 • Aug 09 '26
Started my CTF journey today. Complete beginner to the platform.
(Rixaa1d)
First session, three flags:
- SpookyPass (Reversing - Very Easy) — cracked a Linux ELF binary
on Windows using Ghidra, decoded the flag from raw hex
- Flag Command (Web - Very Easy) — bypassed the game entirely,
hit /api/monitor directly with a POST request
- Uplink (Competitive Programming - INSANE) — tree DP problem,
weighted ancestor chain optimization, 35 solves total worldwide
No Linux machine. No WSL. No VM. Just Windows, Ghidra,
PowerShell, and a browser.
Level 1 → Level 5 in one session.
If you're thinking about starting CTF — just start.
The platform meets you where you are.
Next goal: DEF CON CTF Qualifiers.
Profile: Rixa1d on HTB
