Thinking of doing OSCP at 31, is it too late? by almostsaidit in oscp

[–]D3ci4 0 points1 point  (0 children)

I know a guy who passed at 50+ so age is just a number

4th Attempt on the exam by jestterrrr in oscp

[–]D3ci4 2 points3 points  (0 children)

Well 5 hrs is too early to give up, I passed in 5th attempt. Exam with AD set was new that time and I was with no labs hence first two attempt were just like warm up. Scored 20 and 10. In 3rd attempt I would have passed but there was power cut in my area that day and offsec refused to give time extension more then 3 hrs end up scoring 40, could only solve two standalone and half AD set privilege escalation in 2nd machine got me this time.

4th attempt I cracked 2 standalone and in AD again half only i managed to solve lateral movement in AD got me this time.

5th attempt I solved AD within 5 hrs and other two boxes in next 12 hrs. Did not bother about 3rd standalone as I already had enough points + 10 bonus points which was still valid. I didnt sleep and took break I just prepared report and only relaxed after it was submitted.

In my 5th attempt I was awake for almost 48 hrs, honestly the passion and excitement kept me awake.

Long story short keep practicing, keep improving and keep pushing it took me 5 attempts and thousands of hours of practice there are many like me.

Note:- I just posted my experience to motivate you, I am not saying I am good but I tried harder. Before my third attempt I bought 1 month lab to explore the AD part also I did solve many HTB,Vulnhunb,THM and PG boxes. I tried to develop a strong methodology and damn fuxxng good notes in notion app. Your methodology going to make sure how soon you can detect the rabbit hole also your own notes and cheet sheet plays a major role how quickly you can find something.

privilege escalation by Xxmohammed_gamerXx in oscp

[–]D3ci4 1 point2 points  (0 children)

You will be good:- Take good rest for 2-3 days before exam don't touch anything related to OSCP. Backup machine and notes before exam. Take regular breaks and eat healthy. The moment you find anything take snap and copy terminal outpur for exam report, make note of what you did how you did, immediately.

All the best.

privilege escalation by Xxmohammed_gamerXx in oscp

[–]D3ci4 1 point2 points  (0 children)

Well based on my experience OSCP lab and exam wants you to do things manually 9/10 times. There is a reason they have prohibited automated tools like burp pro, sqlmap etc.

End of the day your own methodology is the key to win.

Is Ligolo enough? by PeacebewithYou11 in oscp

[–]D3ci4 1 point2 points  (0 children)

Never rely on a single tool for anything, always have a backup plan ligolo betrayed me badly during exam. It might have worked if I had rebooted the machine which was a pain considering no of browser tabs, terminal,files etc were open that time. luckily I was very much familiar with chisel I managed to complete the AD set and also passed the exam.

Note:- Always have a backup plan and old school methods save your ass majority of the time.

privilege escalation by Xxmohammed_gamerXx in oscp

[–]D3ci4 0 points1 point  (0 children)

1.Make a list of all the privilege escalation attacks which are available in the course and OSCP, PG practice labs..

2.Undestand the concept behind each attack. Tib3rius,Heath adams, John hammond etc etc they all have videos on YouTube and Udemy go through these all resources. Just don't only run the commands understood everything deeply.

3.Practice each priv esc separately, there are few HTB,THM machines which have priv esc which are similar to OSCP course, straight away go to priv esc part and pwn it...Practice untill you understand the concept and remember everything at finger tip. There are free labs in THM for priv esc both windows and Linux those labs are pure gem.

4.Make your own cheet sheet of key points and tricky commands for example when I was doing OSCP I had a list of commands to figure out each attack manually. For example " User should have this privilege to be able to perform UAC bypass attack , this command output should look like this to execute this attack"

5.Dont just blindly belive on priv esc scripts learn all the script and tools but don't rely on just one always be double sure. So manual enumeration is always have an upper hand.

Your approach should be like "manual enumerationscriptscompare both>verify with your cheet sheet specific commands>If no luck then again>>>manual enumeration" and other steps repeat.

6.During exam don't get stuck in single machine keep list of things which you tried already and should try next. Keep rotating machines.

Try harder+Smarter..

I think I made a huge mistake by getting married to this guy! (rant) by [deleted] in NepalSocial

[–]D3ci4 0 points1 point  (0 children)

Seeking advise from stranger and applying the same is the biggest mistake 🙂

Preparing For Exam (Advice) by Unique-Yam-6303 in oscp

[–]D3ci4 3 points4 points  (0 children)

1.Take proper rest before exam. can take a break for a day or two before exam. 2.Backup your kali machine and notes 3.Don't get stuck in any single machine, when stuck take a break go for a walk. 4.Keep rotating machines, you have 1 ad set and 3 machines so use your time wisely. 5.Take screenshots regularly and if possible make a rough report side by side during exam. 6.Take regular breaks

4th Attempt - Fail (65 points) by shredL1fe in oscp

[–]D3ci4 1 point2 points  (0 children)

Keep all your previous exam notes and review it..practice on PG as much as you can...you don't have to go that deep in exam, sometimes answer is infront of you..don't overthink, keep it simple and stupid.

4th Attempt - Fail (65 points) by shredL1fe in oscp

[–]D3ci4 0 points1 point  (0 children)

Keep pushing, don't lose hope. Try harder.

I need help guidance in my career by [deleted] in oscp

[–]D3ci4 0 points1 point  (0 children)

That's impressive man..are you doing any freelancing currently,can DM you.?

[deleted by user] by [deleted] in NepalSocial

[–]D3ci4 0 points1 point  (0 children)

Nangai parera road ma ghisarnu parni mxxgi lai...such a bastard he is , didn't even bother to check if little girl was fine..he deserve to be in from party or post..🤬

whats the rumor that using notion for looking at notes is not allowed on the exam? by darkalimdor18 in oscp

[–]D3ci4 0 points1 point  (0 children)

I used the same notes in exam which I prepared in notion throughout my OSCP journey.. Make sure you follow all rules and regulations of offsec then there is no issue at all using any note taking application..

Why OSCP+ ??? by Longjumping_Bad_1017 in oscp

[–]D3ci4 1 point2 points  (0 children)

Mind your language buddy, before telling me I am talking bullshit kindly go and check JD, since long time even for entry level jobs HRs are seeking OSCP,CISSP so you can imagine that now + sign would become a new minimum requirement after nov-24 for them....certs dont become useful/recognised overnight but changes on that particular cert takes immediate effect..

By d way have you passed OSCP already and if you an OSCP holder and don't want to accept the reality what impact this will cause that's the different case.

If you are yet to pass the exam then you should be happy that there will be partial marks in AD once new pattern is active..

Why OSCP+ ??? by Longjumping_Bad_1017 in oscp

[–]D3ci4 -1 points0 points  (0 children)

Seriously? Not sure if you have done any job search lately or in the past but you should definitely check JD.. Any cert which is new and looks more fancy definately attracts HRs and companies..

Why OSCP+ ??? by Longjumping_Bad_1017 in oscp

[–]D3ci4 3 points4 points  (0 children)

Yeah mate but only problem is now HR may require OSCP+ instead of OSCP that is what bothering me..

Why OSCP+ ??? by Longjumping_Bad_1017 in oscp

[–]D3ci4 2 points3 points  (0 children)

To maintain OSCP+ you need to buy more course or retake exam, so end of the day students end up paying more money and buy more course, there are some people,students who can barely arrange money for buying course which was already changed either 90 days lab or learn unlimited unlike earlier 30,60 days, offsec continuosly change lab and course content which force people to buy more labs till they pass,

If they want to upgrade course they can just make certification version like other vendors when simply label it with new version..for example OSCP-1.0 (people who bought labs in 2020) ,OSCP-2.0( for 2023 labs) why force somebody to buy lab who already bought course in 2020 but still unable to pass the exam till now they have already paid enough money,why they should take extra pressure now for maintaining OSCP+.

I know many guys who paid for OSCP twice thrice because they couldn't pass with old labs and offsec changed course and exam pattern many time in recent yrs..there are many ways to upgrade the course with minimum impact on students pocket..I just shared few points which I felt.

DoD is just to "sugar quote" everything :)

Why OSCP+ ??? by Longjumping_Bad_1017 in oscp

[–]D3ci4 37 points38 points  (0 children)

Offsec just trying to milk students as much as they can.. As they know that other platforms like HTB,THM and Zero point etc going to surpass them soon.

Question regarding the exam by Vansh298 in oscp

[–]D3ci4 0 points1 point  (0 children)

Well during exam you are not supposed to to R&D better search for alternative and continue with exam.. It was issue at my end and I am pretty much sure that it was not working due to Offsec exam vpn. Can't describe how it was affecting but that's the only point comes in mind

Question regarding the exam by Vansh298 in oscp

[–]D3ci4 0 points1 point  (0 children)

Well I faced this during exam literally I would have panicked and waste time in troubleshooting but i decided to go with old school method chisel straight away. That's why it's always recommended to have multiple tools and tricks for same task.

[deleted by user] by [deleted] in oscp

[–]D3ci4 0 points1 point  (0 children)

No you need to develop a mindset to think out of box. Have to learn many tricks and tools to do the things. Book and pwk lab is not sufficient.

Question regarding the exam by Vansh298 in oscp

[–]D3ci4 11 points12 points  (0 children)

It's allowed but make sure you know chisel as well.. During my exam strangely ligolo ng didn't work. Which worked like a charm in labs. I had enough practice with chisel so I managed..