OffSec Experienced Penetration Tester (OSEP) Study Notes & Guide
OSEP Study Notes & Guide offer a comprehensive guide to the OSEP certification by Offensive Security, associated with the PEN-300 course. It details advanced penetration testing skills including antivirus evasion, shellcode execution, reflective DLL injection, and extensive Active Directory exploitation. The document also covers real-world tactics like phishing, lateral movement, and bypassing defensive mechanisms.
The OSEP course builds on OSCP to offer advanced penetration testing skills that mimic sophisticated real-world attack scenarios. It emphasizes memory-based payload execution, AV evasion through obfuscation, phishing with Office macros, and advanced PowerShell/C# integrations.
Lab exercises simulate Active Directory environments requiring privilege escalation and lateral movement. A core takeaway is the use of fileless malware delivery and API calls to evade detection, including dynamic API resolution via PowerShell. Candidates need to thoroughly document steps for the 48-hour exam to ensure success. The key to mastering the course lies in hands-on practice, scripting proficiency, and persistence in tackling advanced security mechanisms.
Table of Contents:
- About OSEP & The Official Course
- Preparation & Exam Tips
- Operating System and Programming Theory
- Client Side Code Execution With Office
- Client Side Code Execution With Windows Script Host
- Process Injection
- AV Evasion
- C# Injection into Trusted Processes
- Application Whitelisting & Credentials
- Advanced AppLocker and PowerShell Security Bypass Techniques
- Bypassing Network Filters
- Linux Post-Exploitation Techniques and Persistence
- Kiosk Breakouts
- Lateral Movement
- Ansible
- Artifactory
- Kerberos on Linux
- Microsoft SQL Attacks
- Active Directory Hacking
Page Count: 243
Format: PDF
Note: This product is not eligible for a refund.
If you have concerns regarding the product, kindly contact consultation@motasem-notes.net and clarify your issue and explain why the eligibility for a refund.