4 ms·
The context of this submission will naturally be lost on many, and the editorialized headline is arguably wildly inappropriate. This submission is a _single_ w
by boneitis 5y ago
The context of this submission will naturally be lost on many, and the editorialized headline is arguably wildly inappropriate.
This submission is a _single_ write-up of _one_ box on HackTheBox (HTB), which is one of the most popular platforms for redteam-like practice for the price of a common subscription service.
You often see it very directly compared to the hundreds (or thousands) of dollars you would cough up for similar lab material but which also comes with the benefit of OSCP certification (if you pass the exam), thought by some (albeit not all, if you pay attention to this topic on HN) to be one of the more reputable entry-level pentesting credentials.
Just like for CTFs, you can search everywhere in search engines for writeups. (Do note that boxes are split between "Active" and "Retired" machines, and public-facing writeups are only allowed for those that have been retired.)
The most popular (and fantastic, IMO) video walkthroughs are done by the yt channel IppSec
This platform is great fun, and I'll be honest: when I started from zero, I needed to straight-up monkey-see-monkey-do follow-alongs with IppSec videos for most of the boxes that I have done. It is probably also the most hands-on knowledge I have picked up out of anything I've ever done that I have not had to figure out by myself.
- BeefWellington 5y agoI love hackthebox. It is an invaluable resource and great for practice. It is not as comprehensive as the OSCP course material, unfortunately, and even the OSCP material has (or at least had, I know they changed things up recently) its warts.