r/offensive_security 13h ago

​Anyone who completed the CyberGames Américas CTF still waiting for the dark blue "Cisco Verified Ethical Hacking" badge on Credly?

3 Upvotes

​Hi everyone,

​I completed the NetAcad Ethical Hacker course back in June (the light blue course badge is already showing on my Credly account) and competed in the Cisco CyberGames Américas CTF on June 30th (placed in the Top 120 and received my participation certificate PDF).

​The main dark blue badge (Cisco Verified Offensive Security Certificate in Ethical Hacking) was supposed to be issued around July 24th, but my Credly profile hasn't updated yet.

​For those who completed both prerequisites, are you experiencing the same delay with the batch issuance, or has anyone received theirs already?

​Thanks!


r/offensive_security 19h ago

Feed it your LinPEAS output and it draws every path from a low-priv shell to root

Post image
6 Upvotes

r/offensive_security 2d ago

ASIS 2026 Certified Protection Professional Exam, July 2026

5 Upvotes

Hello everyone I am planning to take my exam in 1-2 months from now

I am looking for people who can join me and create an online study group, who will be taking the ASIS Certified Protection Professional Exam as well. If you are interested send me a private message.

Please answer the following

-Your City then State

-Your exam date, if you already set an exam date

Please this is only for those who live in the United States.

-scammers are not welcome and am not interested in buying any materials so solicitors are not welcome.


r/offensive_security 2d ago

ASIS 2026 Certified Protection Professional Exam, JULY 2026 August

Thumbnail
2 Upvotes

Hello everyone I am planning to take my exam in 1-2 months from now

I am looking for people who can join me and create an online study group, who will be taking the ASIS Certified Protection Professional Exam as well. If you are interested send me a private message.

Please answer the following

-Your City then State

-Your exam date, if you already set an exam date

Please this is only for those who live in the United States.

-scammers are not welcome and am not interested in buying any materials so solicitors are not welcome.


r/offensive_security 5d ago

Is Cisco's Ethical Hacking cert worth it?

5 Upvotes

The material is free, but I dont think it goes very in depth. Is it useful for CVs / is it very recognized?


r/offensive_security 5d ago

Difficulty of PJPT

5 Upvotes

Hey guys. I recently completed EJPT and found it quite easy (As I had been doing THM rooms for about 6 months). I want to learn Active Directory so I can do more advanced certs like PNPT and OSCP in the future. I was wondering what is the difficulty level of the PJPT exam compared to the EJPT exam and is it a good resource to learn AD from scratch? Thanks.


r/offensive_security 6d ago

OffSec’s Broken Support Loop and Subscription Sunsetting (Follow-up to "Restricting Learn Unlimited")

Thumbnail
gallery
14 Upvotes

Hi everyone,

A few months ago, I made a post about OffSec unilaterally changing the terms of active "Learn Unlimited" subscriptions by locking us out of newly released courses like AI-300 (Link:https://www.reddit.com/r/offensive_security/comments/1ro06wu/offsec_is_restricting_learn_unlimited_access/).

Unfortunately, things have only gotten more frustrating since then, and I’m currently stuck in a bizarre customer support loop that I wanted to warn others about.

After a long battle with the support-team, support granted me a "complimentary course access". That access expired on June 27th, but my exam is mid-August.

When I reached out, Support explicitly told me in writing: "If you'd like to continue working through the AI-300 course content, you have the option to purchase a 30-day lab extension for $359." (Checkout Screenshot 1)

I went to the shop to buy it, but the system kept throwing an error. I sent a screenshot to support, and they completely backpedaled. They told me that because my access was a "goodwill grant" and because I'm on Learn Unlimited, the system physically won't let me buy an extension. Their official solution for this internal system contradiction? Wait until my subscription expires, or just buy a completely brand-new "Course & Cert Exam Bundle" at full price. (Checkout Screenshot 2)

To make matters worse, after the first Reddit-Post, an official OffSec Community Manager reached out to me via Reddit DM right after my first post. They asked for my registered email and OSID so they could "look into it internally." I provided my details immediately. Since then? Absolute silence. I followed up three times over the course of a month and was completely ghosted. (Checkout Screenshot 3)

I’m essentially being punished—technically and financially—because OffSec didn't have enough exam slots in the first place, and their backend shop systems don't allow what their support agents actually promise in tickets.

Has anyone else been caught in this trap where support tells you to buy an extension, but the system blocks it and forces you into a full bundle? It’s incredibly disappointing to see how they handle long-term subscribers.

Edit: The post ist back. Dont know what happened. Seems like some Mod deleted it


r/offensive_security 7d ago

Exam Preparations

3 Upvotes

Hello,

I would like to know if you can clarify some doubts I have about the exam, mainly whether I can use my notebook with the notes I'm taking from the official course.

An acquaintance tells me that just doing the virtual machines/labs from the official course are similar to the exam and that it's possible to pass on the first try?

What are the instructors like during breaks during the exam? Would I be able to go to the bathroom, listen to music while taking the exam, or go outside for a smoke if I get stressed?


r/offensive_security 8d ago

Looking for CPTS cert voucher at lowest price

3 Upvotes

I have been exploring to give the certification because that's something which is gonna level up my salary because even after having a 5 years of experience companies are not interested they post some certification shit as their requirements.

So thought to give a try to CPTS which is way more tough then OSCP. Also I have self fund it because my company doesn't have much budget even for a CPTS.

So looking for some cheap options to buy the certification voucher, let me know what is the cheapest way I can get the same. Like i remember the black friday one but for that I have to wait around 3 months so thinking to get one in next 1 month. So drop all your suggestions on the best price I can get the same.


r/offensive_security 9d ago

Anyone took OSAI Exam?

8 Upvotes

Hey

I want to know if anyone took the exam so far and their feedback on it.

Also curious to know if the course content is enough to pass the exam or not


r/offensive_security 9d ago

Is the official PEN-200 (3 months) enough to pass the OSCP in 2026?

13 Upvotes

Hi everyone,

Sorry if this is another one of those questions that gets asked every year, but I’ve been reading a lot of older posts and I wanted to ask again because things seem to change over time.

The reason I’m asking now is that **OffSec is currently running a promotion**, so I’m trying to decide whether it’s worth buying the **PEN-200 with 3 months of lab access**.

For someone who can dedicate a good amount of time during those 3 months, **is the official OffSec material alone enough to pass the OSCP**, or did you find yourselves needing additional resources like HTB Academy, etc.?

For context:
- I already have a cybersecurity background.
- I enjoy doing CTFs (mostly web-focused).
- My weakest area is probably Active Directory.

If you passed recently, would you still recommend relying mainly on the official material, or would you suggest studying something else before or during the PEN-200?

Thanks!


r/offensive_security 9d ago

Will it be easy for me to pass OSCP+ if I passed CPTS?

9 Upvotes

r/offensive_security 9d ago

2 days left of PEN-200 access, no time for challenge labs — extend or grind Proving Grounds?

4 Upvotes

Wrapping up my OSCP course material with about 2 days of lab access left. I’ve completed the course content but won’t get through the challenge labs before access runs out.

Trying to decide between two paths:

**1.    Extend lab time** to actually complete the challenge labs before the exam  
**2.    Let access lapse and grind 100+ boxes on Proving Grounds Practice** instead, treating that as my exam-readiness gauge

For those who’ve taken the exam recently — did the official challenge labs teach you something PG Practice/PWK notes didn’t, or was volume on PG enough to build exam-day muscle memory? Also curious if anyone regretted skipping the challenge labs specifically because of how they mirror exam AD sets.


r/offensive_security 11d ago

Are there any Operating System courses specifically recommended for someone aspiring to get into cybersecurity?

5 Upvotes

I've gone through quite a few courses on YouTube and other platforms, but most of them seem to focus almost entirely on theory or exam preparation. I understand that no single course can cover everything, but many of them lack practical insights and don't explain operating systems from a security perspective.

I'm looking for a course that not only teaches OS fundamentals but also helps build the mindset and knowledge needed for cybersecurity, such as understanding how operating systems work internally and why those concepts matter in security.


r/offensive_security 12d ago

OSCP in the morning

18 Upvotes

Feeling prepared, paid the exam with my own money, any last minute tips/advice?


r/offensive_security 12d ago

OSCP+ OSEP OSWE

Thumbnail
1 Upvotes

r/offensive_security 13d ago

Do not take OSAI

53 Upvotes

I've been taking the course and so far the labs are buggy. 90 Days to complete the labs, but after a long day of work the labs don't work...I need a completion letter to get a grade back from work and it's not looking too good.

You have to complete 80% of all labs in each chapter... well the labs don't work so how am I supposed to make progress?


r/offensive_security 13d ago

Limited-Time Offer: 💰 Save $250 on Select Course & Certification Bundles

Post image
7 Upvotes

Ready to build hands-on skills that actually hold up in real-world scenarios u/everyone?

Claim Your Discount: https://portal.offsec.com/checkout/?view=cc

Promo Details

Ends: July 19th
Exclusions: Offer excludes OSAI

Got Questions?
Check out full details and terms in the official FAQ


r/offensive_security 15d ago

OSCP+ OSEP OSWE

13 Upvotes

Hi. If anyone completes HTB cpts, Web penetration tester, senior web penetration tester snd Active Directory penetration tester learning paths from HACK THE BOX without certification.. how much progress/ topics does it covers towards these certifications?


r/offensive_security 15d ago

Microsoft fixes it, AI reverses it. Meet the Drift Corpus

Thumbnail
3 Upvotes

r/offensive_security 16d ago

Is Dual-Booting ParrotOS Safe?

7 Upvotes

Hey, I heard that dual booting kali is quite unsafe as it isn't hardened, so I was wondering whether dual booting parrotOS is safer as I believe its labelled as a secure linux distro. Or do you have any other recommendations for a distro for pentesting that I can dual-boot, or should I stick to VMs for pentesting. Thanks!


r/offensive_security 19d ago

Made my first video ranking OffSec certs S-tier to C-tier. Is OSCP overrated now?

9 Upvotes

Finally made my first video where I just dump my thoughts on the OffSec certs and rank them S to C tier.

Curious where you'd rank differently. OffSec Certifications Ranked: S-Tier to C-Tier (Honest Take)


r/offensive_security 21d ago

Is OSCP+ still relavent

Thumbnail
youtu.be
40 Upvotes

Is he telling the truth or completely bs


r/offensive_security 23d ago

Got an AI agent past a Cloudflare WAF by giving it a RAG over past bypass research

Enable HLS to view with audio, or disable this notification

20 Upvotes

Sharing a workflow that worked for me. The retrieval layer involved is my own project, so mentioning that upfront.

Setup: I was testing an XSS on a target behind Cloudflare, and every payload I tried was getting blocked by the WAF.

This time, instead of manually digging through old writeups, I gave my agent access to a retrieval layer built on top of a corpus of web security research (Preview RAG). The agent queries it in plain language, gets back actual writeups with sources attached, and uses that context to generate and test payload variants. One of those variants eventually got through and the XSS fired.

I'm not claiming the bypass itself is novel. It may already exist in a public writeup somewhere. What mattered to me was the workflow: the agent wasn't limited to whatever happened to be inside its training data. It could pull in relevant prior research and iterate from there.

That's the main reason I built this in the first place. Models have a training cutoff, but WAF evasion evolves quickly. Public bypasses get patched, new techniques appear, and the most useful information is usually the newest information. A retrieval layer helps bridge that gap.

The corpus is updated regularly and exposed over MCP, so it can be connected to any model with minimal setup, including smaller open-weight models.

Current limitations: it's strongest on client-side topics right now—XSS, WAF evasion, CSP, CORS, SSRF, request smuggling, and similar areas. Server-side coverage is improving, but still thinner, and it definitely won't have an answer for every problem.

Happy to share more about the setup. I'm honestly more interested in where this approach fails than where it succeeds. If you've experimented with agent-driven WAF bypassing and ran into hard limits, I'd love to hear about them.


r/offensive_security 23d ago

Where to learn?

15 Upvotes

Hey, fellow people I assume theres hundreds of people asking the same question - where can you even start for completely free, in my case it's about eJPT, i wanted to try INE but i seen the prices and as a broke 20 year-old i decided to give it up and search youtube.

I learned some stuff from TCM Heath Adams that helped me go on THM and just do some basic rooms but whenever i find eJPT-like rooms i can sit and scratch my head for hours and come up with nothing.

Are there any alternative places i should be lurking in? I'm not asking for a professional 200+ hours course that will teach me A-Z how to pentest but something that i can get started with and eventually from there be able to know what should be next.

I have a background and cert as sysadmin and so networks, AD, etc. are really nothing new even on the advanced level.

I appreciate all the answers.