[a / b / c / d / e / f / g / gif / h / hr / k / m / o / p / r / s / t / u / v / vg / vm / vmg / vr / vrpg / vst / w / wg] [i / ic] [r9k / s4s / vip] [cm / hm / lgbt / y] [3 / aco / adv / an / bant / biz / cgl / ck / co / diy / fa / fit / gd / hc / his / int / jp / lit / mlp / mu / n / news / out / po / pol / pw / qst / sci / soc / sp / tg / toy / trv / tv / vp / vt / wsg / wsr / x / xs] [Settings] [Search] [Mobile] [Home]
Board
Settings Mobile Home
/g/ - Technology


Thread archived.
You cannot reply anymore.


[Advertise on 4chan]


File: laptopapu.png (973 KB, 2359x1749)
973 KB PNG
I'm interested in cybersec and white hat hacking. Is hackthebox worth it?
>>
>>108857214
download Havij Pro and become real hacker
>>
>>108857251
a SQL injection GUI? sounds neat. here's what google says

>While historically popular for its ease of use, the tool is quite dated. Today, security professionals and penetration testers typically use more modern, actively maintained, and open-source alternatives like sqlmap
>>
>>108857214
>white hat hacking
are you some kind of faggot or something?
>>
>>108857259
well if i ask for advice on black hat hacking i'll get banned
>>
>>108857214
hacking and cybersecurity and infosec and all of this shit will be dead in a decade. it'll be a relic of the past just like bbs and phreaking.
>>
>>108857267
is claude mythos gonna hack all our shit?
>>
>>108857265
lol god, to be young again
>>
>>108857214
>white hat
Gay
>>
File: laughingfroggo2.png (124 KB, 512x378)
124 KB PNG
>>108857282
not as gay as u r LMAOOO
>>
>>108857214
I am not a haxxor, but I know that there are an ocean of courses for pen-testing. Why don't you read on them?
>>
>>108857267
How so?

I'd assume the future will be lots of almost-good vibecoded software, and a steep decline in programmer skill and the ability to think deeply in general.

That's exactly the recipe for security issues. Can AI really fix it by adding the prompt "...but please make it secure".
>>
File: 1747692469259629.png (1.14 MB, 1066x1280)
1.14 MB PNG
>literally zero on-topic replies (I get that op posted a frog but what else are you supposed to post to grab attention on this shithole of a website?)
>>108857214
Yes anon, hands-on training is totally worth it and 50 ctfs (doesn't have to be hackthebox only, look into things like picoctf as well) will teach your more than countless hours of random tutorials or books or college courses because you need to actually get shit done and figure it out by yourself and if you keep moving to the next level of difficulty then you achieve what is called deliberate practice which is a prerequisite to get good at literally anything.
However just remember that they are designed to be solved like competitive programming challenges, in other words you want to learn new stuff from each challenge, if you finish one after staring all day at the terminal and don't think "well, I learned something new about web security today, might want to take a note/look at that" and instead it's "the solution was some retarded asspull random guess like in a puzzle" then it wasn't effective.
<dome can mimic real environments but most of the time the rooms are not designed by professionals, so what passes in a CTF is something you will literally never do in a real environment (or at least won't do it unnoticed).
Literally anyone who's able bodied and has an IQ over 60 can do
>searchsploit *name of the service*
>msfconsole -q
>run
but not everyone understands why an exploit works and even less people are competent enough to write a PoC themselves and even less are actually able to find them in the first place.

For web security specifically I think your best option is
https://portswigger.net/web-security
but before you jump into it you should actually learn how whatever it is that you are supposed to hack works, for instance for for web sec would be to at least have a general idea bout how modern web applications are made, you can start with some tutorials (or alternatively stuff like fullstackopen)
>>
>>108857214
let me share a cool story bro widyu
so I have a friend, he has gone and is still going through extreme cocaine addiction. through it he met some drug dealers, and all types of druggie wagies available to his class
it happens that one of those were druggie hackers, they helped him on some serious shit, all probs paid in coke, maybe. so my friend decided to befriend these druggie hackers, and he got double scammed by them
/end
>>
File: 1751090697699127.png (1.16 MB, 1920x1080)
1.16 MB PNG
install Kali Linuk and join r/masterhacker
>>
>>108857214
Yes it's a good way to learn but keep in mind that cybsec is not just pentesting and that there are many less crowded areas to specialize in.

Pentesting will also probably be heavily automatized in the near future. A lot of security "influencers" on youtube are already freaking out about the recent AI advances.
>>
>>108858988
what are some of the less crowded areas to specialize in?



[Advertise on 4chan]

Delete Post: [File Only] Style:
[Disable Mobile View / Use Desktop Site]

[Enable Mobile View / Use Mobile Site]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.