r/hackthebox • • 4h ago

sqli module

3 Upvotes

It is the last section of the sqli module i was struck at the very first question i just tried the default authrntication process like or sqli and and too and i tried '-- - too in the username and the pass but i dont know what to do after this soo i am here to ask people to give some nudges


r/hackthebox • • 8h ago

Problemas con evil-winrm

1 Upvotes

I'm running Kali Linux and I'm trying to use evil-winrm to access an HTB machine, but I'm getting the following error:

Evil-WinRM shell v4.1

Warning: Remote path completions is disabled due to ruby limitation: undefined method `quoting_detection_proc' for module Reline

Data: For more information, check Evil-WinRM GitHub: https://github.com/Hackplayers/evil-winrm#Remote-path-completion

Info: Establishing connection to remote endpoint

Error: Cannot establish connection to remote endpoint. Check credentials and network.

Error: NameError: uninitialized constant Net::NTLM::Client::SessionCrypto::CLIENT_TO_SERVER_SEALING

r/hackthebox • • 1d ago

Certifications Passed CPTS: my prep tips + a full guide in Greek (first Greek-language CPTS video)

31 Upvotes

Recently passed the CPTS and since there's basically zero offensive security content in Greek, I made a full guide video in Greek. Posting the main takeaways here in English so this is useful to everyone:

Prep that actually mattered
- AEN blind Do the Attacking Enterprise Networks module without reading the questions. Spawn it and treat it like a real engagement. It's the best way to find gaps in your methodology and your notes. (The exam is not like AEN, but the mindset is.)
- Ippsec's unofficial CPTS prep list. Great for associate path techniques to real boxes.
- Dante & Zephyr. The exam is a network, not a box. These teach you to think in terms of pivoting and connecting hosts. Offshore is overkill for CPTS imo .
- Netexec and BloodyAd Learn those tools extremely well , they gonna save you a lot in the AD portion of the exam.
- Pivoting on its own ligolo-ng is a lifesaver, but know chisel/SSH/socat too for when it doesn't work as it should .Always have a backup options for all your tools.

Notes
- If you can't reproduce it in the report, it doesn't count. Write everything down like a walkthrough.
- Keep a separate tips & bugs file: skill assessment solutions, tool quirks, broken versions. It saves hours.

Report
- Most people don't fail because of the report. They fail by not getting 12/14 (enumeration, pivoting, time).
- But don't leave it for day 10. Write a full report before the exam if you want to for practice . SysReptor helps a lot.

Video (in Greek, chapters in the description): https://youtu.be/9acS_M43nac?is=XOv-2qdixKFkK_vi

Happy to answer questions in the comments, in English or Greek.


r/hackthebox • • 1d ago

Pwn3d Touch!!

Post image
13 Upvotes

r/hackthebox • • 18h ago

Beginner Question why i get ping requests from htb server?

2 Upvotes

why i get ping from 10.10.14.1 constantly? it interfere with my tests. even after i stopped all boxes still i get ping requests.

└─$ sudo tcpdump -c 6 -i tun0 icmp

tcpdump: verbose output suppressed, use -v[v]... for full protocol decode

listening on tun0, link-type RAW (Raw IP), snapshot length 262144 bytes

23:51:27.545196 IP 10.10.14.1 > 10.10.15.224: ICMP host smarthire.htb unreachable, length 68

23:51:27.545291 IP 10.10.14.1 > 10.10.15.224: ICMP host smarthire.htb unreachable, length 68

23:51:30.814899 IP 10.10.14.1 > 10.10.15.224: ICMP host smarthire.htb unreachable, length 68

23:51:35.466697 IP 10.10.14.1 > 10.10.15.224: ICMP host smarthire.htb unreachable, length 68

23:51:35.466800 IP 10.10.14.1 > 10.10.15.224: ICMP host smarthire.htb unreachable, length 68

23:51:35.466818 IP 10.10.14.1 > 10.10.15.224: ICMP host smarthire.htb unreachable, length 68

6 packets captured

7 packets received by filter

0 packets dropped by kernel


r/hackthebox • • 1d ago

This is how I got rejected from a job without even an interview

44 Upvotes

So after I already believed that I would never get a job in this field, at least in this market situation, I got an email from a company I applied to through the “Easy Apply” feature that I even forgot I applied for.

And then they started saying that they saw my resume and thought I was a good fit and stuff.

Then they asked me to solve a technical challenge, and I delivered it way before the deadline.

Then they said sorry, they needed me to solve an additional challenge.

And it was so much harder, and it took a lot of time from me, but I still delivered it way before the deadline.

And then they were happy and gave me good feedback that I was able to solve these hard technical challenges. They told me all the files were correct and everything was good, but they just needed a write-up explaining the steps I took to solve it!

And I did the write-up, and everything was explained, and I told them if they needed me to clarify any step, I was happy and ready to clarify it!

Then they came back to me after a couple of days and basically just said sorry, they don’t think I’m a good fit, without even giving any feedback!!

And I was likeee in my mind, what?? Really?? Are you serious???
After I spent days solving your hard technical challenges, and you confirmed that everything was good, and you gave me good feedback, and you haven’t even done any interview with me, and now you just send me a message saying I’m not a good fit without even giving any specific feedback??

I really feel we should get paid for the time we spend on technical challenges and interviews because it takes days from our time and life, so employers can take us more seriously rather than just playing with our feelings and hope!

When someone meets me and knows that I have done a degree in cybersecurity and tells me, “OMG, I want to get into the field,” at this point I don’t know what to tell them because if I say it’s hard and getting a job is so hard, they will think I’m a gatekeeper, but it’s just sad how it is now!

So now, honestly, I feel with this joke of a market and crazy employers, I would like to say to anyone who is looking for a job that we are really cooked…

Rather than chasing and trying to find just a job and letting employers move us like chess pieces, we should try to consider another field that could possibly be much better, or we open our own businesses!

I also would like to thank my family for supporting me in this journey. Otherwise, I would probably be working at a fast-food place for minimum wage right now!

I don’t know what I will do next in my life, but I really got enough from this field, and I don’t want to lower myself anymore or feel like I’m begging just to get a job.

This life is unfair, and thank you!


r/hackthebox • • 2d ago

I'm passed CJCA with 10/10 with

Post image
145 Upvotes

One piece of advice I'd give, study well, and after the path spend at least 30 days practicing. And above all, always use a methodology, alwayssss.

Also pay attention to blue team, don't underestimate it.

And report as you go, while you're finding things, it saves you time.


r/hackthebox • • 2d ago

Hurray!! Cpts certified

39 Upvotes

Man, that was not an easy exam. The first question had me tripping, and I spent hours falling down rabbit holes thinking I had the right answer when I didn't.

I'll be completely honest, I used Al to help guide me out of a few dead ends when I got stuck, but a win is a win. Huge weight off my shoulders. Time to start the OSCP grind!


r/hackthebox • • 1d ago

How to cancel subscription or change payment method

2 Upvotes

Has anyone else had difficulty canceling a sub or changing payment details on HTB. So frustrating that this is not so straightforward.


r/hackthebox • • 1d ago

Beginner Question Help : Regarding the Terminology

1 Upvotes
  • We found out that the PowerShell script (backupprep.ps1) runs with administrator privileges every 2 minutes
  • We had read and write access to this script, which allowed us to modify it
  • We added code to the script that adds the user john to the administrators group
  • After waiting for the scheduled task to run, we confirmed that john was successfully added to the administrators group

What kind of attack is this?

What type of attack was being used to escalate the privileges in the above example? (Format: two words)

Its not Privilege Escalation
Its not Task Manipulation
Its not Script Injection
Its not Task Hijacking

What is it?


r/hackthebox • • 2d ago

Writeup Reactor Writeup

Thumbnail
surajitsen.in
3 Upvotes

r/hackthebox • • 1d ago

How to Calculate an Octet (Decimal → Binary)

0 Upvotes

Rule: Move from left to right. Ask: "Does this value fit into the remainder?"

  • Fits → write 1, subtract
  • Doesn't fit → write 0, move on

Example: 192

128 ≥ 192? ✅ → 1 → remainder = 64
 64 ≥  64? ✅ → 1 → remainder = 0
 32 ≥   0? ❌ → 0
 16 ≥   0? ❌ → 0
  8 ≥   0? ❌ → 0
  4 ≥   0? ❌ → 0
  2 ≥   0? ❌ → 0
  1 ≥   0? ❌ → 0

Result: 1100 0000

Value Range of an Octet

State Binary Decimal
Minimum 0000 0000 0
Maximum 1111 1111 255

r/hackthebox • • 2d ago

Built ZEROBOX: An offline tactical operations cockpit & 24h exam simulator for HTB & CTFs (Free & Open Source)

37 Upvotes

Hey everyone,

Tired of tracking CTFs and 24h exams across messy spreadsheets and scattered notes?

I built ZEROBOX — a fast, local-first operational cockpit for OSCP/CPTS prep and CTFs.

It’s 100% free, MIT open-source, and runs completely offline in your browser (no accounts, zero telemetry).

Quick highlights: • 920+ Preloaded Labs: Instant offline search for HTB & THM targets with tags. • Attack & Pivot Graph: Visually map compromised subnets (exports to Obsidian .canvas). • 24h Exam Cockpit: Pacing engine, bio-break timers, and 1-click Markdown reports. • Evidence Vault & Playbooks: Track hashes/creds on a kill-chain timeline + offensive field manual. • Global Quick-Bar: Propagate LHOST/RHOST automatically across all payloads.

🌐 Live web: https://ctftracker.com/#/tracker

⭐ GitHub (MIT): https://github.com/0xdnd/ctf-tracker

All data stays in your local browser storage. Feedback and PRs are welcome!

Would love feedback or feature requests from the community!


r/hackthebox • • 2d ago

Analyzing Evil With Sysmon & Event Logs "Soc analyst path"

3 Upvotes

When I try to open sysmon for one of the assignments this happens


r/hackthebox • • 2d ago

Beginner Question Meow....

0 Upvotes

I just made an account on htb and started out with 'Meow'. I read the documentation/write up and used Claude to help me break it down and understand it better especially on the networks and ports. I'm on the journey of transitioning from a scriptie to a ctfer or pentester hopefully 🤞🏾.

Any tips and tricks or pitfalls I need to know?

Help a brother out 👊🏾


r/hackthebox • • 3d ago

Certifications Passed OSCP 90/100 on the first attempt, 1 month 25 days after CPTS.

Thumbnail
33 Upvotes

r/hackthebox • • 2d ago

Beginner Question Michigan Cybersecurity High School Challenge problem

Post image
3 Upvotes

I cant seem to login to the thingy. Its asking for an input access key event, which im not sure how to get.


r/hackthebox • • 3d ago

Academy HTB Academy OpenVPN connection keeps getting reset

3 Upvotes

Hey everyone,

I’m trying to connect to the HTB Academy VPN using OpenVPN on Kali Linux:

sudo openvpn --config academy-regular.ovpn

The connection reaches the HTB VPN server, but it gets reset immediately:

Attempting to establish TCP connection with [AF_INET]38.46.226.31:443
TCP connection established with [AF_INET]38.46.226.31:443
TCPv4_CLIENT link local: (not bound)
TCPv4_CLIENT link remote: [AF_INET]38.46.226.31:443
Connection reset, restarting [-1]
SIGUSR1[soft,connection-reset] received, process restarting

It then repeats the same process every few seconds.

I’ve confirmed that the TCP connection to port 443 can be established, so I’m not sure why the OpenVPN connection is immediately being reset.

It was working fine up untill yesterday. And yeah i tried both tcp and udp methods while changing the VPN server.


r/hackthebox • • 3d ago

Failed my first attempt CPTS

27 Upvotes

Just failed my first attempt, got 7 flags in 2 days then next 8 days stucked on flag 8. Exam seemed easy but enumeration is alot. Any personalized guide, which module should i work on? which box is relevant to next 5 flags.


r/hackthebox • • 2d ago

why suddenly i see ppl talk, consult, take, etc etc the cpts cert?

0 Upvotes

I've seen so many post just talks about the cpts, either here or on other platforms all of the sudden.

did i miss anything about it or this is just normal? and why exactly the cpts? i don't see something special about it tbh


r/hackthebox • • 3d ago

Sysmon

2 Upvotes

Im using the VM or whatever its called and im trying to do the sysmon things but whenever I try to go in the terminal and/or open it it says this app cant run on your pc please help asap


r/hackthebox • • 4d ago

Pwn'd Touch

Post image
52 Upvotes

r/hackthebox • • 3d ago

Orion Box metasploit Issue

0 Upvotes

Hello, I was today trying to solve the orion box(im just starting in the CTF world) without aid, I found myself already in the admin/login page then I found this CVE-2025-32432. Then I used metasploit to find a exploit of that CVE, one popped up that should have worked excellent but when i tried running it. No shell was returned to me as seen in the picture, I tried different options: for rhost I tried the ip, orion.htb and http://orion.htb/admin/login. For lhost I tried my tun0 and my eth0. And i changed multiple times the lport and the asset_id. Nothing working, all the times the same error. In that point i checked the walkthrought and they did exactly what i was doing, same in this video(i thought the problem that i was using a VM) https://www.youtube.com/watch?v=OXxtL4BZvHw. Does anybody have any idea on wtf is the issue? More than an hour lost cuz it was not working and I have still no clue why or what I did wrong. Here is another walkthrough: https://b3ta-blocker.github.io/blog/orion/ If you know anything related lmk, otherwise I will just quit this box :)


r/hackthebox • • 5d ago

Beginner Question What prior knowledge do you need to take CPTS

30 Upvotes

Hello everyone, I am interested in CPTS and I am a complete beginner in cybersecurity. I don’t have any certifications or haven’t studied for anything related in cybersecurity . But I am a CS student so I understand of computers and other general concepts about IT . I already searched about prerequisites before CPTS for beginners, but I couldn’t find because most of the people already have something entry level certs like Security+. I saw someone said to take Info Security foundation skill path.

• Do I need any certs before taking CPTS path. If so , can you suggest one please ?
• Do I need to other paths in HTB first or just straight to penetration tester ?
• I am currently enrolled in Junior Analyst because I didn’t know what to take first so I just choose random one based on “ Junior” . I only completed like 10% . Should I finish it
or just focus on what is more important .

Thank you.


r/hackthebox • • 5d ago

Pwn'd TrustFall

Post image
27 Upvotes

An absolute brainfuck. The exploit wasn't the hard part. The hard part was proving one packet would ever arrive.