Skip to content

Instantly share code, notes, and snippets.

@jasnow
Last active February 26, 2020 21:22
Show Gist options
  • Save jasnow/4432aa1ff27174f651f12b1673ca2bd7 to your computer and use it in GitHub Desktop.
Save jasnow/4432aa1ff27174f651f12b1673ca2bd7 to your computer and use it in GitHub Desktop.
OSCP References and my notes as of 2/18/2020 (in no specific order)
OSCP Description: (practical) Solid entry level PRACTICAL certification (note it is an entry level practical not theoretical) A lot of self learning/discovery through practical application. Gold standard for entry pentesting from my understanding.
"The only way to take the OSCP certification exam is to first complete the Penetration Testing with Kali Linux training course"
https://www.offensive-security.com/information-security-certifications/oscp-offensive-security-certified-professional
https://www.offensive-security.com/information-security-training/penetration-testing-training-kali-linux ($800: 30 day lab access + certification)
OSCP Related Links
UPDATED 2/18/2020: https://docs.google.com/spreadsheets/d/1dwSMIAPIam0PuRBkCiDI88pU3yzrqqHkDtBngUHNCw8/edit#gid=0
UPDATED 2/17/2020: https://gist.github.com/colealtdelete/e4ca9329350498a34ece2d87cd5db00b
https://www.youtube.com/watch?v=wjTt-5mfyhY (New OSCP/PWK course for 2020)
https://0xem.ma/examattempt/2019/11/25/OSCP-Attempt-1.html
https://www.netsecfocus.com/oscp/2019/03/29/The_Journey_to_Try_Harder-_TJNulls_Preparation_Guide_for_PWK_OSCP.html
https://www.netsecfocus.com/oscp/review/2019/01/29/An_Adventure_to_Try_Harder_Tjnulls_OSCP_Journey.html
https://gist.github.com/colealtdelete/e4ca9329350498a34ece2d87cd5db00b (OSCP Prep Guide)
https://github.com/sinfulz/JustTryHarder (cheat sheet which will aid you through the PWK course & the OSCP Exam)
https://support.offensive-security.com/oscp-exam-guide
https://butter0verflow.github.io/oscp/OSCP-WindowsPrivEsc-Part1
https://www.youtube.com/watch?v=eesItemNPEQ (How to Take Notes when study for OSCP)
https://www.abatchy.com/2017/02/oscp-like-vulnhub-vms
https://0daylego.wordpress.com/2017/05/07/scripting-the-oscp-exam-and-getting-some-offsec-swag
https://www.vortex.id.au/2017/05/pwkoscp-stack-buffer-overflow-practice
https://www.offensive-security.com/offsec/cheating-attempts-and-the-oscp
https://scriptdotsh.com/index.php/2018/04/17/31-days-of-oscp-experience
https://medium.com/@hakluke/haklukes-ultimate-oscp-guide-part-1-is-oscp-for-you-b57cbcce7440
https://medium.com/@hakluke/haklukes-ultimate-oscp-guide-part-2-workflow-and-documentation-tips-9dd335204a48
https://medium.com/@hakluke/haklukes-ultimate-oscp-guide-part-3-practical-hacking-tips-and-tricks-c38486f5fc97
https://medium.com/@ss23/thoughts-on-the-oscp-in-2017-6fa67354772b
https://www.abatchy.com/2017/03/how-to-prepare-for-pwkoscp-noob
https://butter0verflow.github.io/oscp/OSCP-Review
https://github.com/xapax/oscp/tree/master/templates (GREAT)
https://alphacybersecurity.tech/my-fight-for-the-oscp/
https://github.com/ucki/autooscpexam
http://blog.mallardlabs.com/zero-to-oscp-in-292-days-or-how-i-accidentally-the-whole-thing-part-1
http://blog.mallardlabs.com/zero-to-oscp-in-292-days-or-how-i-accidentally-the-whole-thing-part-2
Recommended Vulnhub Machines (For OSCP):
1. SickOS
2. Lord of Root
3. Tr0ll 1
4. Tr0ll 2
5. Darknet
6. Owl Nest
7. VulnOS
8. Sidney
9. Null Byte
10. Pinky's Palace v4
The following HTB OSCP like hosts
Linux:
-- Lame - https://www.youtube.com/watch?v=Ru8YxARNS7M
-- Nibbles - https://www.youtube.com/watch?v=s_0GcRGv6Ds
-- Beep - https://www.youtube.com/watch?v=XJmBpOd__N8
-- Sense - https://www.youtube.com/watch?v=d2nVDoVr0jE
-- Brainfuck - https://www.youtube.com/watch?v=o5x1yg3JnYI
-- Valentine - https://www.youtube.com/watch?v=XYXNvemgJUo
-- Poison - https://www.youtube.com/watch?v=rs4zEwONzzk
-- TartarSauce - https://www.youtube.com/watch?v=9MeBiP637ZA
-- CronOS - https://www.youtube.com/watch?v=CYeVUmOar3I
-- SolidState - https://www.youtube.com/watch?v=_QapCUx55Xk
-- Kotarak - https://www.youtube.com/watch?v=38e-sxPWiuY
-- Shocker - https://www.youtube.com/watch?v=IBlTdguhgfY
-- Bashed - https://www.youtube.com/watch?v=2DqdPcbYcy8
-- Nineveh - https://www.youtube.com/watch?v=K9DKULxSBK4
-- Node - https://www.youtube.com/watch?v=sW10TlZF62w
-- Sunday - https://www.youtube.com/watch?v=xUrq29OTSuM
Windows:
-- Optimum - https://www.youtube.com/watch?v=kWTnVBIpNsE
-- Bastard - https://www.youtube.com/watch?v=lP-E5vmZNC0
-- Granny - https://www.youtube.com/watch?v=ZfPVGJGkORQ
-- Arctic - https://www.youtube.com/watch?v=e9lVyFH7-4o
-- Legacy - https://www.youtube.com/watch?v=wOeYLZazLGI
-- Blue - https://www.youtube.com/watch?v=YRsfX6DW10E
-- Devel - https://www.youtube.com/watch?v=2LNyAbroZUk
-- Bounty - https://www.youtube.com/watch?v=7ur4om1K98Y
-- Grandpa - https://www.youtube.com/watch?v=ZfPVGJGkORQ
-- Jerry - https://www.youtube.com/watch?v=PJeBIey8gc4
More Challenging:
-- Bart (Windows) - https://www.youtube.com/watch?v=Cz6vQvGGiuc
-- DevOops (Linux) - https://www.youtube.com/watch?v=tQ34Ntkr7H4
-- Tally (Windows) - https://www.youtube.com/watch?v=l-wzBhc9wFc
-- Active (Windows) - https://www.youtube.com/watch?v=jUc1J31DNdw
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment