OSWP Exam Prep & Study Resources
OffSec certification · 2 products
PEN-210 | OffSec Wireless Professional
Study materials for OSWP
OffSec Wireless Professional
OSWP remote passing with payment after passing and EMI Options.
$499$799
View →OffSec Wireless Professional
OSWP complete writeup with All Steps
$110$210
View →Frequently asked questions
What is OSWP?
OSWP (Offensive Security Wireless Professional) is OffSec's wireless network security certification, based on the PEN-210 course. It validates practical skills in attacking Wi-Fi networks across multiple security protocols including WEP, WPA, WPA2 Personal, and WPA2 Enterprise. OSWP is one of the few hands-on wireless security certifications available and is recognized by penetration testers who perform physical and wireless network assessments. The certification demonstrates that you understand not just how wireless attacks work in theory but how to execute them successfully in practice.
How hard is OSWP?
OSWP is considered one of OffSec's more accessible certifications. The four-hour exam is straightforward for candidates who have completed the PEN-210 labs and practiced the attack scenarios thoroughly. The core challenge of OSWP is practical, you must successfully execute wireless attacks against multiple target networks within the time limit. Candidates who have only read about wireless attacks without practicing them hands-on often struggle. Hardware setup and adapter configuration can also introduce complications, so having reliable equipment and practicing the full attack workflow before exam day is important.
What equipment do I need for OSWP?
For home lab practice, you need a wireless adapter that supports monitor mode and packet injection, commonly recommended options include the Alfa AWUS036ACH and similar adapters. For the actual exam, you access the exam environment through a VPN connection to OffSec's controlled lab infrastructure, so you are attacking virtual wireless networks rather than physical access points in your home. This means that while a compatible wireless adapter is essential for home lab practice during PEN-210, the exam itself is conducted entirely within OffSec's provided environment.
What topics does OSWP cover?
OSWP covers a comprehensive range of wireless network attack techniques. Topics include WEP cracking using ARP injection and statistical attacks, WPA and WPA2 PSK handshake capture and offline cracking, PMKID attacks against WPA2 networks without requiring a full handshake, WPS PIN exploitation, creating and deploying evil twin access points for credential capture, and attacking WPA2-Enterprise networks using rogue RADIUS servers and captive portal attacks. The PEN-210 course covers each technique with practical exercises using Aircrack-ng suite, Hashcat, and related tools.
Is OSWP worth it?
Yes, for penetration testers who include wireless network assessments in their engagements. OSWP is one of the only practical, hands-on wireless security certifications in the industry, most alternatives are purely knowledge-based. It is particularly valuable for consultants who perform physical security assessments, red team operations involving on-site wireless attacks, or network security assessments for clients with complex Wi-Fi deployments. For penetration testers whose work never involves wireless assessments, OSWP is less immediately applicable, but it rounds out a comprehensive security skill set.
OSWP exam format?
The OSWP exam is a four-hour proctored practical assessment. You receive access to an OffSec-controlled environment containing multiple wireless networks with different security configurations. You must successfully attack and compromise each network within the four-hour window using the techniques covered in PEN-210. After the hacking session, a penetration test report documenting your methodology, the vulnerabilities found, and your successful compromises must be submitted. The report requirement is standard across all OffSec certifications and ensures candidates can communicate findings professionally.
Prerequisites for OSWP?
There are no formal prerequisites for OSWP enrollment. Candidates should be comfortable with the Linux command line, have basic networking knowledge (particularly understanding of 802.11 wireless protocols, authentication handshakes, and encryption concepts), and be familiar with Kali Linux as an operating system. No prior wireless security experience is strictly required since PEN-210 teaches the necessary skills from the ground up. However, a solid understanding of how Wi-Fi networks authenticate clients and the difference between WEP, WPA, and WPA2 security protocols will make the course material easier to absorb.