OffSec
Cybersecurity · Professional
Offensive Security Certified Professional (OSCP) is examined as follows: A proctored practical exam on a real network within a 24-hour session, requiring machine and network compromise plus a full penetration testing report. The areas it covers are Penetration testing methodology and reporting, Network attack vectors and pivoting, Web application exploitation and directory services and Active Directory and internal network attacks. This page sets out what OffSec publishes about the exam and what Koshish does not yet have questions for.
OffSec publishes the exam content, timing and delivery rules. Restated here without the volatile specifics that change between versions.
A proctored practical exam on a real network within a 24-hour session, requiring machine and network compromise plus a full penetration testing report.
Level: Professional certification
Issued by: OffSec
These are the areas the certification is examined across, as published by the issuer.
Penetration testing methodology and reporting
Network attack vectors and pivoting
Web application exploitation and directory services
Active Directory and internal network attacks
Stated explicitly so nothing on this page reads as a promise the product cannot keep.
No verified OSCP question bank exists yet, so no practice sessions or mock exams are published for this certification. The syllabus and exam information above are published now; the bank appears here once it is verified.
OffSec sets the exam content, timing and policy. Those details are restated from the issuer's published material and can change between versions — treat the issuer's own page as the authority for your attempt.
Case-study and scenario essay practice, lab environments and hands-on performance exams are outside written-MCQ practice and are not claimed here.
प्रश्न
Not yet. The OSCP question bank does not exist today, so we are not advertising practice sessions that would open onto an empty screen. The cybersecurity syllabus, exam pattern and eligibility are published here now, and the bank will be listed as soon as its questions pass verification.
Offensive Security Certified Professional (OSCP) is examined across these areas: Penetration testing methodology and reporting, Network attack vectors and pivoting, Web application exploitation and directory services and Active Directory and internal network attacks. A proctored practical exam on a real network within a 24-hour session, requiring machine and network compromise plus a full penetration testing report.
OffSec publishes no formal prerequisites, though OSCP-level knowledge is expected for useful performance. OffSec is the authority for the criteria that apply to your attempt.
The credential does not expire under OffSec's published policy, though renewals are available; check the current certification policy.