Roadmap To OSCP 2023
Roadmap To OSCP 2023
Note: This document is not created by a professional content writer so any mistake and
error is a part of great design
Disclaimer
credit, it’s mentioned on the first page. The information provided herein is for
educational purposes only and does not constitute legal or professional advice. While
we have made every effort to ensure the accuracy and reliability of the information
reliance you place on the information contained in this document is strictly at your
own risk. VIEH Group shall not be liable for any damages arising from the use of or
reliance on this document. also we highly appreciate the source person for this
document.
Happy reading !
Introduction
Crack OSCP in 6 months, starting from scratch.
Hello again,
I have received a lot of DMs asking me about how to prepare for OSCP,
what all things to learn, where to learn from etc. So, lets pave a
roadmap for the guys just starting out in OSCP looking to clear it in their
first try.
— no matter what any other certification body tells you, OSCP still tops
the charts.
• They have quality material and their labs are amazingly good.
• Teaches you how to manage time and stress to bring out the best
• Its one of those exams where you wont find any leaks/dumps for
— if you do find, believe me they are just fake. OSCP has different
Basics:
• Start with Networking. Topics like IP, TCP, UDP, HTTP, HTTPS,
works https://hackershares.com/dns
• You can
visit https://www.practicalnetworking.net/series/arp/address-
recommended above.
For linux theory, you can take the Linux 101 course on TCM
Academy https://academy.tcm-sec.com/p/linux-
alspart1 , https://tryhackme.com/room/linuxfundamentalspart2 ,
https://tryhackme.com/room/linuxfundamentalspart3] — where
you’ll also learn about the bash language, which is very helpful for
a pentester.
these https://tryhackme.com/room/windowsfundamentals1xbx ,
https://tryhackme.com/room/windowsfundamentals2x0x , https:
yhackme.com/room/powershell .
purposes. Basic languages to know are Python and Rust. The best
out there is yet again from TCM Academy [i just love the quality
end or backend code to get the initial foothold, and alot of juicy
web-security/learning-path
one month.
Intermediate:
Now, lets focus on some stronger technologies and tools which will help
enough ] — not just for the exam, but AD will help you in real-life
AD Attacks
ryhackme.com/room/attacktivedirectory, https://tryhackme.com/
room/windowsinternals.
https://tryhackme.com/hacktivities?tab=search&page=1&free=all&ord
er=most-popular&difficulty=all&type=all&searchTxt=Active+Directory
they and how to exploit them. They also provide free practice labs
https://portswigger.net/web-security/learning-path
• https://tryhackme.com/room/burpsuitebasics ,
• https://tryhackme.com/room/burpsuiteintruder ,
• https://tryhackme.com/room/burpsuiteextender ,
• https://tryhackme.com/room/burpsuiterepeater
• https://tryhackme.com/room/burpsuiteom
https://tryhackme.com/hacktivities?tab=search&page=1&free=all&ord
er=most-popular&difficulty=all&type=all&searchTxt=burpsuite
will see yourself level up very fast.The course also covers creating
Directory practicals.
https://academy.tcm-sec.com/p/practical-ethical-hacking-the-
complete-course
even hack the machines. Few of the most interesting boxes are:
livingofftheland [https://tryhackme.com/room/livingofftheland]
[https://tryhackme.com/room/c2carnage] , JTR
[https://tryhackme.com/room/johntheripper0] , DNS
[https://tryhackme.com/room/dnsindetail]
, Zerologon [https://tryhackme.com/room/zer0logon]
[https://tryhackme.com/room/overpass2hacked] , relevant
[https://tryhackme.com/room/relevant] , kenobi
[https://tryhackme.com/room/kenobi] , hackpark
[https://tryhackme.com/room/hackpark] , picklerick
Don’t worry, if you don’t find your way in the machine or are not
new, not something like ‘Oh shit, i knew that, i should have tried
that’ , you should be like ‘Oh thats new, great to learn this new
https://app.hackthebox.com/machines
complete. Rest assured, once you do all these things — you already
Advanced:
• Enrol in for the OSCP Exam and finish all your topic exercises first
handy, if you get stuck at the 60 point mark in the exam, these 10
points will help you pass the exam]. Pro-Tip: Brisk through topics
topics are not tested in the new OSCP Pen-200 exam, these are
above.
List [https://docs.google.com/spreadsheets/u/1/d/1dwSMIAPIam
0PuRBkCiDI88pU3yzrqqHkDtBngUHNCw8/htmlview] of OSCP-Like
HTB, Vulnhub, Proving Grounds play and practice and start doing
those machines.
machines that you see in your exam. The mentality and the
approach used in the PG machines are the ones that you can
[Play+Practice].
looking for].
Extras:
• Linux: Play around with your own linux VM [that you’ll be using
collect all linux tools, windows tools, public exploits, get some of
for ease of access and navigation during your exam. Trust me,
the directory structure, know what types of files are stored under
• Bash: Get expert in bash scripting. Learn to form loops and write
simple scripts in bash. Learn bash one-liners for reverse shell, for
ng, les, powershell nishang and empire tools, tools from impacket
and venv.
• Know your tools: Know your tools and their dependencies, know
a pentest and you just cant get the task done, because you have
to your notes and take it up from there. The best tool for note
The advanced and extras portion should take you around 2–2.5 months
more. Trust me, if you do all this , i can confidently say that you are very
Pro-Tips:
1. HTB machines are way harder than OSCP machines. If you find
[https://app.hackthebox.com/tracks/Active-Directory-101]. If not
3. Don’t go for the exam before you complete the full TCM-PEH
there will benefit you in your exam 10 folds, specially the AD Part.
Thank you.