Changelog

Follow up on the latest improvements and updates.

RSS

new

Enterprise

Capture The Flag

Features

Defensive

Threat Range

Threat Range scenarios mapped to Academy modules

This update gives organizations a practical way to support players before and after a Threat Range experience by combining hands-on scenarios with structured learning content.
Admins can use the new Content pane to view the Academy modules related to each Threat Range scenario, and assign this content to their teams' Spaces within HTB Enterprise Platform
Where is this relevant?:
  • Before the scenario, to build the knowledge needed to prepare.
  • After the scenario, to reinforce key concepts and continue developing relevant skills.
  • As part of a broader learning path that connects my team members' individual training with assessments and team simulations.
AcademyModules-ezgif

new

Enterprise

Offensive

Defensive

Operation Red Horizon has began!

HTB's first Enterprise Season is live!
Widespread power outages are being dismissed as routine failures…but the evidence suggests something far more coordinated.
Join a three-month cyber operation where each month’s Challenge, Sherlock, and Machine reveal the next chapter of the story.
Read the announcement to discover how HTB Enterprise Seasons work, meet the key players, and see what awaits you > http://bit.ly/44S49gx
SOC Range is now available on HTB Enterprise Platform for all Enterprise Workforce Development plans.
SOC Range brings process-driven defensive training into a realistic SOC workflow, giving analysts a simulated alert queue where they can claim investigations, triage incoming alerts, identify false positives, navigate SIEM-like tooling, and execute guided playbooks.
  • Manage active alert queues, personal investigations, and closed cases through Alert Backlog and My Investigations.
  • Use integrated SOC tooling for log analysis, endpoint containment, mailbox remediation, and threat intel or sandbox review.
  • Build operational readiness through guided, alert-specific playbooks, artifact documentation, analyst notes, and automatic report generation.
Spaces just got a big makeover.
The (new) Spaces are introducing a unified structure for organizing and delivering enterprise training content. They now support mixed content types in a single learning path, allowing admins to combine Academy Modules, Machines, Challenges, and Sherlocks instead of managing separate Spaces by content type.
Now you can:
  • Combine theory and hands-on practice into one structured training path
  • Use Public Spaces for organization-wide training or Private Spaces for invite-only programs, assessments, and mission-readiness drills
  • Manage visibility separately from license access, with platform-level progress tracking across Spaces
  • Access a dedicated leaderboard and progress metrics based on wholistic knowledge domain completion
This update reduces duplicate setup and learner context switching by moving training organization from content silos to mission-based Spaces.
Spaces2-ezgif
We have launched two new preparation tracks on HTB Labs to help you prepare for the HTB Certified Junior Cybersecurity Associate (HTB CJCA) and Certified Active Directory Pentesting Expert (HTB CAPE) examinations of HTB Academy. These tracks are designed to reinforce the practical skills taught in their respective job-role paths through targeted, hands-on environments.
HTB CJCA Preparation Track
This track helps you practice the core hands-on skills required for the HTB CJCA exam. You will face focused Machines that cover enumeration, exploitation, privilege escalation, and basic security analysis.
HTB CAPE Preparation Track
Built for advanced learners preparing for the HTB CAPE exam, this track features complex Active Directory labs. You will test your skills in advanced enumeration, lateral movement, privilege escalation, and full domain compromise.
Finding what you need in a write-up just got easier.
Professional Lab and Cloud Lab write-ups are now available as downloadable PDFs, making it simpler to search, navigate, and reference scenario walkthroughs as you work.
You can download them directly from the Write-ups button in the Details section.
writeup_pdf_download
Argon is the perfect scenario for red teamers looking to train on Active Directory enumeration combined with exploitation in maritime operational systems.
The goal is to assess both the external and internal networks of Argon, a global maritime cargo and vessel transportation company. Explore the environment, pivot across trust boundaries, and evaluate the security of both its enterprise and maritime operational infrastructure.
With Argon, you will engage with techniques such as:
  • Active Directory trust abuse across hybrid environments
  • Web application compromise in cargo management systems
  • Maritime operational service exploitation
  • Pivoting between corporate and production networks
  • Cross-forest attacks and privilege escalation
  • Lateral movement through interconnected infrastructure
5 Machines. 4 Flags. Hard difficulty.
Ready to set sail?
Copy of Pro Labs and Professional Labs Templates - 1080x1350
This module provides a comprehensive introduction to the world of AI-augmented penetration testing. It covers the basic concepts and paradigms, including safe use, prompt engineering, and prompting techniques.
AI-Augmented Pentesting Foundations
The model layer is where modern AI systems are built, tuned, evaluated, and attacked. This module takes you inside it on a real model you run yourself, to see not just how it works but where it breaks.
1200x630
This path is designed to help cybersecurity professionals prepare for the Google Cybersecurity Certificate and is now available on HTB Enterprise platform as part of the LetsDefend acquisition!
By completing this path, you'll gain the knowledge and hands-on experience needed to succeed in the Google Cybersecurity Certificate. Throughout the modules, you'll explore cybersecurity best practices, Linux and scripting fundamentals, threat and vulnerability management, and the use of SIEM technologies in modern security operations.
Modules included in this path are:
  • Network Packet Analysis
  • Incident Response on Windows
  • Incident Response on Linux
  • SOC Fundamentals
  • SIEM 101
  • Linux for Blue Team
  • Introduction to Cryptology
  • Network Log Analysis
  • Job Hunting
  • Network Fundamentals
  • Network Fundamentals II
  • Network Protocols
  • Security Solutions
  • Security Solutions -2
  • Cybersecurity Incident Handling Guide
  • Secure Network Design
  • Network Design and Security Products
  • Network Security
  • Bash Scripting for Blue Team
  • Introduction to Python
  • Python for Blue Team
  • Vulnerability Management
  • Security Audit and Testing
  • Introduction to Bash Scripting (LetsDefend)
Copy of Paths Templates - 1080x1350 (1)
Load More