OffSec
Cybersecurity · Professional
The OSCP syllabus published by OffSec covers Penetration testing methodology and reporting, Network attack vectors and pivoting, Web application exploitation and directory services and Active Directory and internal network attacks. This is the certification's own scope — it is not a claim about which parts Koshish has banked, and the bank status is stated separately below.
Every area OffSec examines for Offensive Security Certified Professional (OSCP).
Penetration testing methodology and reporting
Network attack vectors and pivoting
Web application exploitation and directory services
Active Directory and internal network attacks
The same practice loop the rest of the platform runs, scoped to this certification's domains once its bank exists.
Subject- and topic-filtered practice across the Cybersecurity domains the certification covers
A daily plan that blends new practice with FSRS spaced revision of what you have already attempted
Per-topic ability estimates (IRT theta and BKT mastery) that surface your weakest domains first
A rationale on every attempt, reactive to the specific mistake you made rather than a generic explanation
Weak-topic analysis that decides what comes next instead of leaving the order to you
Said plainly rather than implied by the syllabus list above.
No verified OSCP question bank exists yet, so no practice sessions or mock exams are published for this certification. The syllabus and exam information above are published now; the bank appears here once it is verified.
OffSec sets the exam content, timing and policy. Those details are restated from the issuer's published material and can change between versions — treat the issuer's own page as the authority for your attempt.
Case-study and scenario essay practice, lab environments and hands-on performance exams are outside written-MCQ practice and are not claimed here.
प्रश्न
Not yet. The OSCP question bank does not exist today, so we are not advertising practice sessions that would open onto an empty screen. The cybersecurity syllabus, exam pattern and eligibility are published here now, and the bank will be listed as soon as its questions pass verification.
Offensive Security Certified Professional (OSCP) is examined across these areas: Penetration testing methodology and reporting, Network attack vectors and pivoting, Web application exploitation and directory services and Active Directory and internal network attacks. A proctored practical exam on a real network within a 24-hour session, requiring machine and network compromise plus a full penetration testing report.
OffSec publishes no formal prerequisites, though OSCP-level knowledge is expected for useful performance. OffSec is the authority for the criteria that apply to your attempt.
The credential does not expire under OffSec's published policy, though renewals are available; check the current certification policy.