Skip to main content
Course

OSCP Exam Prep: Methodology and Defensive Understanding

The PEN-200 methodology explained: enumeration, exploitation concepts, and reporting discipline.

Advanced

Level

6

Modules

24

Lessons

6

Graded quizzes

14 hours

Estimated time

What you will be able to do

  • Apply a systematic assessment methodology and keep disciplined notes
  • Enumerate hosts, services, and web applications thoroughly
  • Recognise common vulnerability classes and why they occur
  • Understand privilege escalation paths on Linux and Windows
  • Understand Active Directory attack paths and their defensive signatures
  • Write a professional penetration test report to the required standard
  • Pass a timed practice exam covering methodology and concepts

What is inside

6 modules, 24 lessons. Each module ends in a graded quiz.

  1. 01

    Pentest Methodology and Enumeration

    Covers the PEN-200 foundation domain of cybersecurity fundamentals, learning strategy, enumeration and information gathering, which carries roughly 15 percent of the PEN-200 syllabus. You learn the repeatable enumerate, analyze, decide and record loop that carries a tester through a long assessment, the scoping and evidence discipline that keeps the work lawful and defensible, and how passive research becomes active enumeration and then a prioritized attack plan. Every technique is taught alongside the telemetry it produces so you can detect, contain and report it as well as recognize it.

    4 lessons · 15 quiz questions

  2. 02

    Web and Application Attacks

    This module covers the OSCP web and application security domain, which is about 20 percent of the PEN-200 syllabus. You will build a disciplined enumeration and Burp Suite workflow, then study directory traversal, file inclusion, malicious file uploads, command injection, cross-site scripting, and SQL injection. Every weakness is taught with how it arises, how it shows up in logs and telemetry, and how to detect, contain, and remediate it, alongside the reporting discipline the exam expects.

    4 lessons · 15 quiz questions

  3. 03

    Exploitation, Client-Side Attacks and AV Evasion

    This module covers the OSCP exploitation and evasion domain, which is about 18 percent of the PEN-200 syllabus, spanning public exploits, client-side attacks, password attacks, and antivirus evasion. You will learn to find, evaluate, and safely adapt public exploits, understand how client-side lures and malicious documents gain a foothold, work through password hashing, cracking, spraying, and reuse, and reason about how payloads are detected and evaded. Every technique is taught defensively, with its telemetry, detection, containment, prevention, and the reporting discipline the exam expects.

    4 lessons · 15 quiz questions

  4. 04

    Windows and Linux Privilege Escalation

    This module covers the OSCP privilege escalation domain, which is about 18 percent of the PEN-200 syllabus and spans both Windows and Linux hosts. You will learn how a low privilege foothold becomes a stable working position, then how attackers reach root or SYSTEM through SUID binaries, cron jobs, capabilities, service misconfigurations, token privileges, and weak permissions. Every technique is taught by cause, by how it appears in telemetry, and by how defenders detect, contain, and remediate it, alongside the enumeration and reporting discipline the exam rewards.

    4 lessons · 15 quiz questions

  5. 05

    Pivoting and Active Directory Attacks

    This module covers the OSCP domain of port redirection, tunneling, lateral movement, and Active Directory attacks, which is about 22 percent of the PEN-200 syllabus. You will learn how testers reach segmented networks through port forwarding and tunneling, how they enumerate and map Active Directory, and how credential attacks such as Kerberoasting and hash abuse lead to domain compromise. Every technique is taught defensively, with the telemetry it produces and the detection, containment, and remediation that stop it, alongside the reporting discipline the exam expects.

    4 lessons · 15 quiz questions

  6. 06

    AWS Exploitation, Reporting and Exam Strategy

    This module covers the OSCP cloud domain, focused on AWS infrastructure enumeration and exploitation and worth roughly 7 percent of the PEN-200 syllabus, then turns to the professional report OffSec grades and the strategy for the 24-hour exam. You will learn how AWS identity, storage, and compute misconfigurations arise, how they appear in telemetry, and how to detect, contain, and prevent them. You will also build the reporting discipline, proof habits, and time-boxed exam plan that turn technical skill into a reliable pass.

    4 lessons · 15 quiz questions