Тёмный

OSCP - Failed First Attempt - What's Next 

Andy Li
Подписаться 13 тыс.
Просмотров 2,5 тыс.
50% 1

Опубликовано:

 

30 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 25   
@swoodby09
@swoodby09 2 года назад
I took my exam the day after yours. Ran into the exact same problem. Enumerated just fine actually found the exploit for the 20 point box the first day. Just didn't try hard enough :-) came back to second day did the exact same exploit and got it to work. Probably 10 plus hours wasted on the exam. But at least I learned something hoping to schedule second exam around the 11th of November. Good luck! Will be following you
@andyli
@andyli 2 года назад
Glad I wasn't the only one who ran into the issue of "too much enumeration" lol. Probably around 10 hours wasted on the exam for me too. Good luck next time!
@deviousmethod1310
@deviousmethod1310 2 года назад
I failed today. I tried harder to much down to the rabbit holes and do less enumeration stuff.
@andyli
@andyli 2 года назад
sorry to hear that, you will get it next time!
@iakashx
@iakashx 2 года назад
My lab time expired. I haven't done so many labs. 2:16 To be honest, enumeration scripts never actually helped me alot. Manytimes, I got good stuffs when I was doing manual enumeration. I believe we can do good when having a sweet ratio of both efforts (manual enum and script enum).
@andyli
@andyli 2 года назад
Yeah I agree, enumeration scripts usually don't turn up too much. I just have it running in the background just in case it picks up something.
@shehzade1618
@shehzade1618 2 года назад
Hey Andy, I’ve been prepping for the exam myself and I just wanted to say thank you for taking the time to share your insights! Out of curiosity, in your last video, you mentioned that on the report, you have to include all your exploit code and any modifications you make to it. I was wondering wether that would be impractical since some exploits are incredibly long. Also, I find my images to be of different sizes/aspect ratios and they often make my final pdf doc look really…weird and roughly formatted. Do you have any advice/resources on creating a polished a report?
@iakashx
@iakashx 2 года назад
Hey Ansari, I thought of this long exploit thing. In that case, I think we can share link/resource of that exploit code. And share critical info exactly where we made changes in that exploit. That can be reverseIP and reversePORT. Sounds logical. You can check out John Hammond's OSCP report making video. I am using MarkDown to make report. I can can control size of images easily with right editing. I hope it gave you an idea.
@shehzade1618
@shehzade1618 2 года назад
@@iakashx Thank you! Will definitely check out John’s channel!
@andyli
@andyli 2 года назад
According to the OSCP exam guide you need to include all the exploit code. Maybe just put it in the appendix. For the report, I plan to just stick with Word.
@andyli
@andyli 2 года назад
Yep, John Hammond's channel is a great resource
@shehzade1618
@shehzade1618 2 года назад
Got it! I’ve compiled a 111-page VHL report using markdown in vscode and then put it all together with that public script that uses pandoc. I found it to mostly work, but the control over nuanced formatting and small adjustments such as image resizing and seeing previews before generation to be quite limited. I’ll stick with word as well then…
@checknate8820
@checknate8820 2 года назад
I agree 100% with your take away. I Failed for the same reason. I had to much stress and made a few stupid mistakes.
@andyli
@andyli 2 года назад
We'll get it next time!
@sackwhacker
@sackwhacker 2 года назад
Best of luck on your next attempt! I'm curious, was your path to gaining user on the 25 pointer something that was at least very similar to a box you had done in the past or was it something that required out of the box thinking? Also, I'm wondering if you've researched the ports/services of the 20 pointers on Google/HTB and whether that yielded any results.
@andyli
@andyli 2 года назад
Thanks! That question is a bit too detailed for me to say, don't want to spoil the exam
@我要做暴龍
@我要做暴龍 8 месяцев назад
I got a 1st attempt at 62 points…
@tangjunnz
@tangjunnz 2 года назад
thanks for your insight, best luck!
@andyli
@andyli 2 года назад
Thanks
@robertlean4563
@robertlean4563 2 года назад
how many machines did you do on proving grounds, approximately?
@andyli
@andyli 2 года назад
30+ machines
@sharminator
@sharminator 2 года назад
Nicely put
@andyli
@andyli 2 года назад
thanks
@alanpatrick7465
@alanpatrick7465 2 года назад
How long till the next attempt?
@andyli
@andyli 2 года назад
Hopefully in the next few weeks
Далее
Lessons From Failing the OSCP!
41:17
Просмотров 2,2 тыс.
Трудности СГОРЕВШЕЙ BMW M4!
49:41
Просмотров 1,7 млн
Airpod Through Glass Trick! 😱 #shorts
00:19
Просмотров 196 тыс.
i failed my exam
3:37
Просмотров 167 тыс.
OSCP: From FAIL to FULL points - My Top 20 Tips
25:47
Simple Code, High Performance
2:50:14
Просмотров 252 тыс.
Трудности СГОРЕВШЕЙ BMW M4!
49:41
Просмотров 1,7 млн