OSCP+ Exam Prep & Study Resources
OffSec certification · 25 products
PEN-200 | OffSec Certified Professional
Study materials for OSCP+
.jpg)
OffSec Certified Professional
PEN-200 is OffSec’s hands-on course, teaching core pentesting skills including enumeration, exploitation, and evidence gathering for proof…
$999$1500
View →
OSCP+ Standalone With Ports 22, 43, 80, 110, 143 & XXX.XX.XXX.110 IP Available
OSCP+ Standalone With Ports 22, 43, 80, 110, 143 & XXX.XX.XXX.110 IP Available
$249$599
View →
OSCP+ Ad Set
OSCP + March 2026 updated AD sets are confusing to identify by just the users or the Nmap result. There are a total of 8 AD sets this time…
$499$999
View →
OSCP+ Claude Standalone
OSCP+ Cloud Unlimited Web Hosting Standalone
$149$199
View →
OSCP+ Standalone with 20, 21, 22, 53, 80 Open Ports
OSCP+ Standalone with 20, 21, 22, 53, 80 Open Ports - 1
$99$120
View →
OSCP+ Standalone Target with HTTP, HTTPS, SMB, RDP, PostgreSQL, and WinRM Services Open
OSCP+ Standalone Target with HTTP, HTTPS, SMB, RDP, PostgreSQL, and WinRM Services Open - 2
$99$120
View →
OSCP+ Standalone Target with Web Application Running WBCE CMS at /admin/login/
OSCP+ Standalone Target with Web Application Running WBCE CMS at /admin/login/
$99$120
View →
OSCP+ Standalone Target with Restricted Directory – 403 Forbidden Response
OSCP+ Standalone Target with Restricted Directory – 403 Forbidden Response.
$99$120
View →
OSCP+ Standalone Target With FTP Anonymous db_connect.php
OSCP+ Standalone Target With FTP Anonymous db_connect.php
$99$120
View →
OSCP+ Standalone Target With Library Education Portal
OSCP+ Standalone Target With Library Education Portal
$99$120
View →
OSCP+ Standalone Target With Mail Masta Installed on Target WordPress Site
OSCP+ Standalone Target With Mail Masta Installed on Target WordPress Site
$99$120
View →
OSCP+ Standalone Target With Teaching and Learning Center Web Interface
OSCP+ Standalone Target With Teaching and Learning Center Web Interface
$99$120
View →
OSCP+ Standalone Target With Kevin Kustom Sites | 2023 - The Site is in Construction
OSCP+ Standalone Target With Kevin Kustom Sites | 2023 - The Site is in Construction
$99$120
View →
OSCP+ Standalone Target With FTP Server Allows Anonymous Authentication with File Access
OSCP+ Standalone Target With FTP Server Allows Anonymous Authentication with File Access
$99$120
View →.jpg)
OSCP+ Standalone Target With Redis Server Running on Port 6379 Marc 2026 Updated
OSCP+ Standalone Target With Redis Server Running on Port 6379 (Nov 2025 Update) Priv Esc Updated writeup
$199$249
View →
OSCP+ Standalone Target With CV Upload Module – Job Application Portal
OSCP+ Standalone Target With CV Upload Module – Job Application Portal
$99$120
View →
OSCP+ Standalone Target With Local FTP Anonymous .env Exposure
OSCP+ Standalone Target With Local FTP Anonymous .env Exposure
$99$120
View →
OSCP+ Standalone Target With FMS Login Portal
OSCP+ Standalone Target With FMS Login Portal
$99$120
View →
OSCP+ Standalone Target With Dog Care Courses
OSCP+ Standalone Target With Dog Care Courses
$99$120
View →
OSCP+ Standalone Target With Beatbox Web Interface
OSCP+ Standalone Target With Beatbox Web Interface
$99$120
View →
OSCP+ Standalone Target With Pando-Pub? : Running on Port 7680 with FTP Enabled
OSCP+ Standalone Target With Pando-Pub? : Running on Port 7680 with FTP Enabled
$99$120
View →![OSCP+ Standalone Target With BarracudaServer.com [Windows] HTTP Methods Enabled on Port 80](https://offsecexams.com/api/uploads/1763210439368-OSCP+ Standalone Target With BarracudaServer.com [Windows] HTTP Methods Enabled on Port 80.jpg)
OSCP+ Standalone Target With BarracudaServer.com [Windows] HTTP Methods Enabled on Port 80
OSCP+ Standalone Target With BarracudaServer.com [Windows] HTTP Methods Enabled on Port 80
$99$120
View →
OSCP+ Standalone Target With TSW Pencil Shop Web Interface
OSCP+ Standalone Target With TSW Pencil Shop Web Interface
$99$120
View →
OSCP+ Standalone Target With Construction Workers Web Interface
OSCP+ Standalone Target With Construction Workers Web Interface
$99$120
View →
OSCP+ Standalone Target With RiteCMS Detected: FTP Running on Standard Port with Anonymous Access
OSCP+ Standalone Target With RiteCMS Detected: FTP Running on Standard Port with Anonymous Access
$99$120
View →Frequently asked questions
How hard is the OSCP exam?
The OSCP is widely considered one of the most challenging entry-level penetration testing certifications available. The exam is a 24-hour hands-on practical test consisting of three standalone machines and an Active Directory set (a domain controller plus two member machines). You must earn at least 70 out of 100 points to pass, and there are no multiple-choice questions, every point requires real exploitation. That said, the exam is fair for candidates who have thoroughly completed the PEN-200 course and labs. With proper preparation, disciplined enumeration, and a clear methodology, determined candidates absolutely can pass.
How long does it take to prepare for OSCP?
Most candidates spend three to six months preparing for the OSCP. Those who already have Capture the Flag (CTF) experience or have practiced extensively on Hack The Box or TryHackMe may be exam-ready in two to three months. OffSec officially recommends completing the full PEN-200 course lab exercises before attempting the exam. Rushing preparation is the most common reason for failure. Spending consistent daily time on the labs, practicing buffer overflows, Active Directory attacks, and web exploitation will make a significant difference in your exam day confidence.
What are the prerequisites for OSCP?
There are no formal prerequisites to enroll in PEN-200 and attempt the OSCP exam. However, OffSec strongly recommends that candidates have solid knowledge of TCP/IP networking, comfort with the Linux command line, basic scripting ability in Python or Bash, and hands-on familiarity with tools like Nmap, Metasploit, and Burp Suite. Without these foundations, the course material will feel overwhelming. Candidates who skip fundamentals and jump straight into OSCP preparation almost always struggle. Building a strong base through free resources or beginner platforms like TryHackMe first is a wise investment.
What is the OSCP exam format?
The OSCP exam is a 24-hour proctored practical assessment. At the start, you receive a VPN pack granting access to an isolated network containing three standalone machines and one Active Directory set (a domain controller and two additional machines). The maximum achievable score is 100 points. Standalone machines are worth 10 or 20 points each depending on difficulty, and the Active Directory set is worth 40 points total, which must be fully compromised to earn them. After the 24-hour hacking window closes, you have an additional 24 hours to write and submit a professional penetration test report documenting your findings and exploitation steps.
How many points do you need to pass OSCP?
You need a minimum of 70 out of 100 points to pass the OSCP exam. The standalone machines in the exam are each worth either 10 or 20 points depending on their difficulty level. The Active Directory set is worth 40 points in total, but these 40 points are only awarded if you fully compromise the entire set, partial credit is not given for the AD portion. This scoring structure means that candidates who fully complete the Active Directory chain (40 points) only need to compromise one or two additional standalone machines to reach the 70-point threshold.
What labs should I practice before OSCP?
The best supplementary practice for OSCP comes from Hack The Box (particularly the Offshore and RastaLabs Pro Labs), TryHackMe's OSCP preparation path, OffSec's own Proving Grounds Practice platform, and retired VulnHub machines. The PEN-200 course labs themselves are the most directly relevant resource and are included with your enrollment, so completing them thoroughly should be your first priority. For Active Directory practice specifically, the HTB Pro Labs and Altered Security's CRTP course offer excellent targeted preparation.
Is OSCP worth it in 2025?
Yes, absolutely. The OSCP remains the gold standard entry-level offensive security certification and is one of the most universally recognized credentials in the penetration testing industry. It appears in a large proportion of penetration testing job postings globally and is respected by employers across commercial consulting, government, and enterprise security teams. Unlike knowledge-based certifications, OSCP proves that you can actually hack, a hands-on practical exam carries far more credibility with hiring managers who understand offensive security. Earning your OSCP in 2025 still opens doors that few other certifications can.
Can beginners pass the OSCP?
It is extremely difficult for complete beginners to pass the OSCP without prior practical experience. The exam assumes solid intermediate-level hacking skills and the ability to enumerate, identify, and exploit vulnerabilities without guidance. Total beginners should plan to spend six to twelve months building solid fundamentals first, covering networking (TCP/IP, routing, protocols), Linux administration, scripting in Python or Bash, and hands-on practice on platforms like TryHackMe and Hack The Box. Once you can consistently solve intermediate HTB machines without hints, you are much better positioned to begin OSCP preparation seriously.
What tools are allowed during the OSCP exam?
Most standard penetration testing tools are permitted during the OSCP exam, including Nmap, Burp Suite, BloodHound, Impacket, PowerView, and similar open-source utilities. Metasploit is allowed but restricted, you may use it fully on only one machine during the exam, so using it strategically is important. Fully automated exploitation frameworks and certain tools that trivialize exploitation are prohibited. The complete and authoritative list of allowed and prohibited tools is maintained in OffSec's official exam guide, which all candidates must read carefully before their exam date.
What is the OSCP exam retake policy?
OffSec allows candidates to retake the OSCP exam after an unsuccessful attempt. Retakes require purchasing additional lab time or a retake bundle, and OffSec enforces a mandatory cooling-off period between attempts to ensure candidates use the time to address their weaknesses. The exact pricing for retakes varies depending on the bundle purchased and any active promotions. Candidates who fail are encouraged to carefully review their exam notes, identify which areas cost them points, and focus targeted practice on those specific weaknesses before scheduling their next attempt.