Sign in

← All paths

Offensive Security Certified Professional (OSCP)

Exam PEN-200 OffSec Advanced

A 24-hour practical exam with no multiple choice. The most respected hands-on offensive certification, and the hardest work on this list.

Free resources

The path

Step 1 — Learn the OSCP approach

Enumerate exhaustively, exploit manually, document as you go.

1 course

Learn

Step 2 — Linux and command line fluency

Live in a shell — non-negotiable for the exam.

37 labs

Learn

Practise

Step 3 — Exploitation and privilege escalation

The core exam skill, on both platforms.

31 labs

Learn

Practise

Step 4 — Web attack chains

Get a foothold through the web layer.

27 labs

Learn

Step 5 — Exploit development

Understand what you are running, not just that it worked.

7 labs

Free resources

Where this leads