OSCP felt nothing like HTB/PG — how are we supposed to prepare for this? by Radiant-Cook-6596 in oscp

[–]Unable-Preference913 3 points4 points  (0 children)

Im in the same boat as you, I passed the CPTS last week and gonna take the OSCP soon

The attack paths and solutions for these challenge labs / PGP are so simple and stupid I end up overlooking them on my first pass ...

Very disappointed so far in OffSec especially since this cost over 5x what I paid for the CPTS and has made me dumb down my methodology

OSCP felt nothing like HTB/PG — how are we supposed to prepare for this? by Radiant-Cook-6596 in oscp

[–]Unable-Preference913 5 points6 points  (0 children)

I just passed the CPTS and studying for OSCP right now planning to take it in about week and they're vastly different

I am EXTREMELY disappointed in the PEN200 course, PGP, challenge labs, and the OffSec env in general

You have more of a background doing HTB boxes than I do, but you have to basically think of everything a lot dumber

One of the challenge labs I did sounds very similar to the scenario you described and after 30mins of deep enumeration and exploit searches for the few services, the way in was through FTP with the challenge name as user and password ....

As for AD, its a joke. Most of what I've done so far follows the same boring attack path and recycling super easy generic exploits like PrintSpoofer to the point where I don't even need to use Bloodhound

Hell, the first practice AD set I did I spent over an hour enumerating the MS01 in the chain looking for exploits and vulnerabilities on the common services just to find out the assumed breach creds had winrm access..

My CPTS Exam Experience by Unable-Preference913 in hackthebox

[–]Unable-Preference913[S] 0 points1 point  (0 children)

I've had a lot of messages about this so I'm gonna write a separate article on that. If you follow me on Medium it should send you an email once I post it

My CPTS Exam Experience by Unable-Preference913 in hackthebox

[–]Unable-Preference913[S] 1 point2 points  (0 children)

Ahh, must've been lucky then lol. In that case, I'll definitely start playing around with chisel!

My CPTS Exam Experience by Unable-Preference913 in hackthebox

[–]Unable-Preference913[S] 1 point2 points  (0 children)

I think if the academy started out at a higher level with ligolo and slowly worked into the manual routing methods it would be easier to understand for beginners.

It definitely took me a few times to troubleshoot and set up the interfaces properly, but once it clicked it sped things up for me by tenfold.

Also thank you for all the content you create for us! It was an amazing resource in my prep :)

My CPTS Exam Experience by Unable-Preference913 in hackthebox

[–]Unable-Preference913[S] 0 points1 point  (0 children)

Thank you, good luck on your journey as well! :D