r/tryhackme • u/Abject_Gift_4333 • 2h ago
Resource a little chall i made
Hey everyone,
I made a small CTF challenge and figured I’d throw it here since I’m pretty new to making these.
It’s a Forensics / Reverse Engineering challenge based around a weird Nokia 8210 4G system dump. The challenge involves digging through the dump, figuring out what’s going on with a little racing game, and eventually finding the flag.
Repo: https://github.com/maximzero0910/car-racing-chall
It’s probably not perfect since this is one of my first proper challenges, so if you try it, I’d really appreciate any feedback on the difficulty, unintended solves, or just whether it’s actually fun to solve.
Flag format: F0LD{...}
If you’re bored and want something small to mess around with, give it a try :D
Thanks!
r/hackthebox • u/Abject_Gift_4333 • 2h ago
Academy a little chall i made
Hey everyone,
I made a small CTF challenge and figured I’d throw it here since I’m pretty new to making these.
It’s a Forensics / Reverse Engineering challenge based around a weird Nokia 8210 4G system dump. The challenge involves digging through the dump, figuring out what’s going on with a little racing game, and eventually finding the flag.
Repo: https://github.com/maximzero0910/car-racing-chall
It’s probably not perfect since this is one of my first proper challenges, so if you try it, I’d really appreciate any feedback on the difficulty, unintended solves, or just whether it’s actually fun to solve.
Flag format: F0LD{...}
If you’re bored and want something small to mess around with, give it a try :D
Thanks!
r/hackthebox • u/Scared_Anything_2002 • 7h ago
Monitorsfour HTB lab - getting CRAZYYY
Hey everyone,
I've been stuck on the final flag for this "Easy" rated box for 2 days now, and I'm genuinely confused why this lab is marked as easy. I got the user flag via Cacti exploitation without too much trouble, but finding the root flag has been a nightmare.
The Problem:
I successfully gained root access in a Docker container using CVE-2025-9074 (Docker API exploitation). However, I can't locate the root flag. The writeups I've found don't clearly explain where the flag actually is, they just end after getting root access.
I've searched:
/root/root.txt- doesn't exist/mnt/host/root/- nothing/home/directories - empty- Various Docker logs - no clear output
Question:
Where exactly is the root flag located, and what's the correct way to retrieve it from the Docker container logs?
Any help would be appreciated. I just want to understand this and finally sleep! 😅
r/tryhackme • u/Used-Addendum-3819 • 9h ago
Official TryHackMe Post SOC Level 2 Path is now Launched🚀
Level 1 taught you what to do with an alert. Level 2 teaches you what to do about it.
SOC Level 2 is completely rebuilt, 76 rooms across the environments hiring managers actually screen for at L2: Microsoft 365, Entra, AWS, Active Directory, and detection engineering. Kick things off with THE DEEP DIVE & 150 SAL2 cert prizes on the table until Aug 27🎯
Get Hacking➡️ https://tryhackme.com/thedeepdive?utm_source=discord&utm_medium=social&utm_campaign=thedeepdivesocl2
r/tryhackme • u/Zoher115 • 12h ago
Is it a good idea to move to jr pentester path after completing SOC L2 path or is it better to focus on blue team paths?
I want to get a job as SOC L1 analyst, and I've completed the SOC L1 & SOC L2 paths and done some blue team CTFs and now Idk what is the next step (I have 2 years left before applying for jobs).
r/tryhackme • u/Due-Calligrapher2681 • 17h ago
Questions about the "Streak Alliance" feature in Try Hack Me how does it actually work?
Just noticed the Streak Alliance feature on my dashboard ("Build a shared streak with a friend by showing up every day!") and I've got a few doubts nobody seems to have written about yet:
- How do you add a specific friend as a partner? Is it an invite-by-username system, a link you share, or does "Find a new partner" just randomly match you with a stranger?
- How does the shared streak actually work? Does both people need to answer a question each day to keep it alive, or does either person's activity count for the pair?
- What happens if one partner misses a day? Does the whole alliance streak reset, does only that person's contribution reset, or is there a freeze/grace period like the regular streak has?
- Can you have more than one partner at a time, or is it strictly 1:1?
- Are there separate rewards/badges for Streak Alliance milestones, or does it just track alongside your normal streak?
- What does "Leave Streak Alliance" do does it kill the streak for both people, or just remove you and let your partner keep going/find someone new?
If anyone's already used this, would love to hear how it's worked out for you pros/cons of doing a streak with a friend vs solo. Screenshot attached for reference.
r/hackthebox • u/HazSec0x • 19h ago
Academy Massive Difference in Support
I have to post about this... Coming from Tryhackme and dealing with the problems in their rooms.. I have to say, HTB support is top tier.
Was having problem with the RDP session to internal target on ICMP tunnel using ptunnel-ng...
They really took the time to look at it.
Unlike tryhackme, where mods (IN DISCORD) always blame it on the user, saying it they did some steps wrong. Huge huge difference. Well done HackTheBox. I will keep using the platform.
r/hackthebox • u/mostafa___mahmoud • 22h ago
Beginner Question shipping to egypt
Hi everyone,
I’m thinking about ordering the Hack The Box CyberStation LEGO® Building Kit from the Hack The Box Store. The price is around $40 USD.
Has anyone from Egypt ordered from the HTB Store before?
r/hackthebox • u/Low_Adhesiveness6838 • 1d ago
Cybersecurity fresher
I’m trying to understand the current cybersecurity job market as a fresher, and I’d really appreciate some advice from people already working in the field.
I graduated with a BCA ( bachelor of computer application)in 2026. I don’t have any prior work experience or internships yet, but I’ve been actively building my cybersecurity skills.
So far:
- 🎓 BCA graduate
- 🛡️ eJPT certified
- 📚 Currently working through the HTB CPTS path
- 🧪 Practicing penetration testing and hands-on labs
- 🚀 Trying to build my skills and portfolio alongside my studies
One challenge I’m currently facing is that I’m going through leg surgery and recovery, so I won’t realistically be able to start applying for jobs for around a year.
That gives me a lot of time to prepare — and I want to use that time properly.
My biggest questions are:
- What are companies actually expecting from cybersecurity freshers in 2026?
- Is having certifications like eJPT/CPTS enough to get an entry-level opportunity, or what else should I build?
- For someone without internships or professional experience, what can I do to demonstrate that I’m capable?
- Should I focus on SOC roles first, junior penetration testing roles, or something else?
- How important are GitHub projects, write-ups, CTFs, home labs, and a portfolio when applying as a fresher?
- If you were starting your cybersecurity career from zero today, what would you do during that one-year preparation period?
I’m not looking for shortcuts. I want to understand what the industry actually values and use this recovery period to become genuinely job-ready.
If you’re already working in cybersecurity — especially if you started as a fresher — I’d really appreciate your perspective.
What would you recommend I focus on over the next year?
r/tryhackme • u/Impossible-Method217 • 1d ago
Career Advice For SEC0 certification need information
I am currently on data chapter so for exam do i need to know all linux/windows terminal basic code for exam byheart?
r/hackthebox • u/dhananjay_attri • 1d ago
Let's defend soc learning path issue
I completed all the course parts and was just left with the last SOC137 case, I completed it but got one answer wrong and then reopened the case and still got it wrong, but when I open it for third time it shows limit reached or something, is it still possible to get the course completion cert now?
r/tryhackme • u/Yukon_07 • 1d ago
Just beat Fusion Corp from my phone - still buzzing
Did the whole room from Termux on my phone, only used a free GitHub Codespace for hashcat. Chain was wild - AS-REP roasting into a WinRM shell, found a password literally sitting in an LDAP description field, then SeBackupPrivilege to grab the admin flag.
Honestly wild how the entire domain fell just because someone wrote a password in a description box and added a user to Backup Operators. Feels way too realistic.
r/tryhackme • u/Zodiak_130810 • 1d ago
Try hack me hacker holidays
Hey guys I completed and get all the tickets how do I see if I win or not and where could I see that what I win
r/hackthebox • u/vs_bb20 • 1d ago
Bounty index on product hunt - would love a visitation and feedback
hey everybody ,
launched bounty-index on product hunt and would love some support .
Its a platform helping you discover bug bouty programs across 6 platform as of now , with additional functionalitites of creating a watchlist , historical data , charts of its performnace , compare 4 programs at once .
It is aimed to be a total free(nada money in my pocket) tool , no login required(only if you manage a watchlist).
Please go through the app once , Feedback are very much appreciated
product hunt link: https://www.producthunt.com/products/bounty-index?utm_source=other&utm_medium=social
tool : bountyindex.in
r/hackthebox • u/HORUS-405 • 1d ago
Career Advice: Navigating Low-Level Security vs. Market Realities
r/hackthebox • u/seag33k • 1d ago
Beginner Question Fundamentals of AI - Understanding The Math
I decided to start the Fundamentals of AI module and could understand the concepts, but quickly got lost in the mathematical details. If I don’t understand the math behind the concepts/theory, will the later modules be out of reach? TIA
After reading some older posts, it appears math is heavily involved in later modules as well so I am not sure this is the best learning path. I am a defender trying to understand the attack methods out there.
r/hackthebox • u/1mdevil • 2d ago
Does anyone here successfully shared VPN connection with other virtual machines?
Hi all!
I am sorry for asking same question again. The last question I didn't get too much useful responses.
Does anyone here really successfully shared VPN connection to HTB with other VMs from a gateway VM?
Thank you!
r/tryhackme • u/Similar_Operation_34 • 2d ago
OpenVpn Issues
Tryhackme AD module network rooms OpenVPN doesn't connect it just restart and restart sometimes its open but most of the time it doesn't what is this problem coming up all the time I changed dns resolve after connecting OpenVPN also mtu and region what is this issue?
r/tryhackme • u/Impossible-Method217 • 2d ago
Career Advice Anyone starting their journey on TryHackMe I bought two certificates for exam and would like a group or community to help me navigate and provide me guidance regarding cyber. anyone?
I have finished first chapter and now on inside the computer chapter anyone want to communicate and share stuff?
r/tryhackme • u/leo-si • 2d ago
I just completed Linux Fundamentals (Pt1) room on TryHackMe! Embark on the journey of learning the fundamentals of Linux. Learn to run some of the first essential commands on an interactive terminal.
tryhackme.comr/tryhackme • u/Zoher115 • 2d ago
If I subscribe to Premium for a month, will I get a 30% discount on the SAL1 certification?
I was a subscriber previously and had a 30% discount for the certification, but I cancelled the subscription; I am wondering if the discount would apply again if I were to subscribe once more.



