oscp

paper82

Member
Joined
Mar 30, 2008
Messages
135
Reaction score
0
OSCP can be considered entry-level pen testing cert but is the most difficult entry level cert compare others entry level cert eg. ccna ..

Enumeration need to base on experience and patient .

Deep dive in linux and windows privilege escalation .

Lastly you need to know how and what to modify exploit code once you found the vulnerability .

GOOGLE , GITHUB , ExploitDB is your best friend .

As for BoF pretty straight forward in OSCP exam..not much challenge . Just practice the exercise and understand the concept will do .( you need to understand how to modify the code base on the input )

Anyway OSCP just like HTB or CTF ..... dont expect you get OSCP then know to do PTVA . You cant capture the flag in customer environment ,haha !

I will recommend eLearnSecurity eJPT > eCCPT > OSCP .

Start with eJPT ,eCCPT first if you are not experienced enough.

The OSCP book&videos are horrible and the course has a pretty steep learning curve.

Personally i feel eLearnSecurity can learn more knowledge but the Name not recognize by HR.
 
Last edited:

paper82

Member
Joined
Mar 30, 2008
Messages
135
Reaction score
0
Is OSCP really so hard? My friend's kid got it as an intern, no experience in pentesting also

Need certain skill not like Cisco cert everyone can dump in 2-3 days.

Don’t think a kid manage to pass within one month . Surely he have strong fundamental in Linux ,windows and programming + play CTF experience .

Oscp is just hack the box / capture the flag . Just treat it as a game , once you play more then should not a problem to pass .
 
Last edited:

devglass

Senior Member
Joined
Mar 18, 2014
Messages
880
Reaction score
129
I am interested in taking OSCP. Easy to pass ?
If you're good with Google search engine, I don't think it's difficult to pass it all. Of course, read the material, go through the video (sometimes it teach shortcut not covered in pdf), get exposed yourself to hackthebox or tryhackme or proving grounds from offsec etc. Then enjoy your 23+ hours journey with your documented notes. Good to go.

It's the journey that shapes the individual's character to become more resourceful and think of a other perspective in tackling a problem. I wouldn't say it involved any skills at all. If you remove the search engine and the notes, I think the passing rate of oscp becomes even lower.
 

kee_chiu

Junior Member
Joined
May 24, 2021
Messages
91
Reaction score
75
If you're good with Google search engine, I don't think it's difficult to pass it all. Of course, read the material, go through the video (sometimes it teach shortcut not covered in pdf), get exposed yourself to hackthebox or tryhackme or proving grounds from offsec etc. Then enjoy your 23+ hours journey with your documented notes. Good to go.

It's the journey that shapes the individual's character to become more resourceful and think of a other perspective in tackling a problem. I wouldn't say it involved any skills at all. If you remove the search engine and the notes, I think the passing rate of oscp becomes even lower.
Yo thank you so much for replying me!
How much time do u think someone should put in before attempting ocsp?
I am new to cybersecurity but am currently studying CS at NUS.
And with an OSCP cert, is it easy to find pentesting jobs?
 
Important Forum Advisory Note
This forum is moderated by volunteer moderators who will react only to members' feedback on posts. Moderators are not employees or representatives of HWZ Forums. Forum members and moderators are responsible for their own posts. Please refer to our Community Guidelines and Standards and Terms and Conditions for more information.
Top