Skip to content

Index

# 🔴 OSCP / OSCP+ — Study Hub ### A source-grounded study hub for the **OffSec OSCP (PEN-200)** *Methodology, skill areas, real diagrams, and exam prep* — the benchmark **hands-on penetration-testing** certification: you must actually compromise live machines, then report. ![Course](https://img.shields.io/badge/course-PEN--200-red) ![Exam](https://img.shields.io/badge/exam-24h%20hands--on%20%2B%20report-1f6feb) ![Pass](https://img.shields.io/badge/pass-70%2F100-blue) ![Diagrams](https://img.shields.io/badge/diagrams-Mermaid-ff3670) ![Use](https://img.shields.io/badge/use-educational%20%26%20authorized%20only-orange)

[!WARNING] Educational & authorized use only. Offensive techniques are explained conceptually for understanding, methodology, and defense — no weaponized step-by-step playbooks or exploit code. Use them only against systems you own or are explicitly authorized in writing to test. See the CEH hub's legal & ethics.

[!NOTE] Unofficial & no fabrication. Not affiliated with or endorsed by OffSec. Exam specifics are from OffSec's PEN-200 page and OSCP+ exam guide; volatile items (price, exact structure, CPE/validity) should be re-checked there. Compiled 2026-06-21.

📋 At a glance

Item Detail
Provider / course OffSec · PEN-200 (Penetration Testing with Kali Linux)
Exam 24-hour proctored hands-on + ~24-hour report window
Scoring 100 points, 70 to pass · AD set (3 machines) = 40 · 3 standalone = 60 · no bonus (since 1 Nov 2024)
OSCP vs OSCP+ OSCP doesn't expire; OSCP+ (current AD-inclusive exam) expires 3 years, maintained via CPE (verify)
Style Fully hands-on — "Try Harder"

Full details: exam structure.

📦 What's inside

Section Contents
Overview What is OSCP · Exam structure
Skill areas The PEN-200 practical skills (not official "domains")
Exam prep Study plan — methodology, practice, the report

The skill areas

# Skill Page
1 Enumeration & information gathering 01-enumeration-and-information-gathering.md
2 Web application attacks 02-web-application-attacks.md
3 Password & client-side attacks 03-password-and-client-side-attacks.md
4 Privilege escalation (Linux & Windows) 04-privilege-escalation.md
5 Active Directory attacks 05-active-directory-attacks.md
6 Pivoting & tunneling 06-pivoting-and-tunneling.md

🧭 Where it fits

OSCP is the hands-on depth milestone on the offensive track:

OSCP, OSCP+, OffSec and PEN-200 are trademarks of OffSec, used here for identification and educational purposes only.