💀 OffSec
Offensive Security Certified Professional
The gold-standard offensive credential — information gathering, web attacks, SQL injection, privilege escalation, and Active Directory, proven under a brutal 24-hour hands-on exam.
the exam
What you're training for
24-hour hands-on exam + a 24-hour reporting window.
who it's for
Right for you if…
Those going after the industry's most recognised offensive cert.
~/blueprint
The domains you'll master.
Active Directory6 missions
Domain ReconPassword SprayKerberoast the Service AccountFollow the BloodHound PathPass the HashDCSync — Domain Domination
Information Gathering14 missions
Read the ScopeName ResolutionOpen PortsCleartext on the WireYour First EngagementHeader Inspector+8 more
Privilege Escalation15 missions
Crack the VaultSUID HuntWritable CronHistory LootPlant Your KeyFirst Contact+9 more
Reporting5 missions
Your First FindingYour First EngagementRate the RiskThe Engagement ReportThe Assessment
SQL Injection6 missions
First QueryFilter the RowsThe InjectionUNION PivotDatabase OwnedBlind Spot
Vulnerability Scanning6 missions
Your First FindingRead the ScanCVSS TriageMap It to a CVEFalse PositiveThe Assessment
Web Attacks10 missions
Stored XSSRead the TokenDirectory TraversalSecrets in SourceToken ForgeryJust Change the ID+4 more
Clear the blueprint. Earn the credential.
Solve every mission mapped to OSCP and you unlock a verifiable OSCP-Ready credential on your public portfolio — proof you can do the work, not just pass a quiz.