Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 39 guests online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow OSCP - Offensive Security Certified Professionalarrow Failed my first attempt at the OSCP exam
EH-Net
May 23, 2013, 04:33:34 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: 1 [2] 3 4 ... 7   Go Down
  Print  
Author Topic: Failed my first attempt at the OSCP exam  (Read 11837 times)
0 Members and 2 Guests are viewing this topic.
impelse
Hero Member
*****
Offline Offline

Posts: 565


View Profile WWW
« Reply #15 on: March 05, 2013, 03:11:24 PM »

Sorry about that, probably you will need to staudy everything and try different ways to attack the machines in the lab
Logged

CCNA, Security+, 70-290, 70-291
CCNA Security
Taking Hackingdojo training

Website: http://blog.thehost1.com/
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #16 on: March 05, 2013, 05:02:26 PM »

Sorry to hear it, r0ckm4n.  I know it gets old when folks tell me this, but I'll pass it along anyway...

Don't get discouraged.  As I'm sure you did last time, take it, learn from it, and keep growing.  If it does NOTHING else, it'll teach you that, no matter how much you know, there's always things to be learned. 

It's both a blessing and a curse, in the IT security realm.  For those who LOVE change, there's ALWAYS change / updates / new ideas, methods and technologies.  For those who don't...  well...   Wink 

Either way, I'm confident you'll continue to grow, and you will succeed, when you're ready.

Thanks for the encouragement, hayabusa.

If it were easy it wouldn't be that big of a deal. It just makes me want it that much more and I will appreciate it even more when I do pass the exam.
Logged

CISSP, IAM, working on OSCP
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #17 on: March 05, 2013, 05:06:13 PM »

Sorry about that, probably you will need to staudy everything and try different ways to attack the machines in the lab

Thanks for your support and advice, impelse.
Logged

CISSP, IAM, working on OSCP
hayabusa
Hero Member
*****
Offline Offline

Posts: 1633



View Profile
« Reply #18 on: March 05, 2013, 08:17:37 PM »

If it were easy it wouldn't be that big of a deal. It just makes me want it that much more and I will appreciate it even more when I do pass the exam.

That's the spirit!  Stick with it, and you'll get it.  Great attitude!
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCE, OSCP , GPEN, C|EH
azmatt
Jr. Member
**
Offline Offline

Posts: 78


View Profile WWW
« Reply #19 on: March 05, 2013, 11:28:58 PM »

Very well said by each of you.

Keep up the great attitude and effort. It's a matter of when not if.
Logged

GCFA, GCIH, GSEC, GCFE, CHFI
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #20 on: March 06, 2013, 09:23:08 AM »

If it were easy it wouldn't be that big of a deal. It just makes me want it that much more and I will appreciate it even more when I do pass the exam.

That's the spirit!  Stick with it, and you'll get it.  Great attitude!

Thanks!
Logged

CISSP, IAM, working on OSCP
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #21 on: March 06, 2013, 09:23:52 AM »

Keep up the great attitude and effort. It's a matter of when not if.

Thanks!
Logged

CISSP, IAM, working on OSCP
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #22 on: March 06, 2013, 09:31:27 AM »

I have been on the bench since the end of December and I have a pentest next week and it will last three weeks. My over abundance of study time will be reduced, but I look forward to using what I have learned in the upcoming pentest. PWB has been very educational and I have improved a lot since I started my job as a pentester last April.
Logged

CISSP, IAM, working on OSCP
superkojiman
Jr. Member
**
Offline Offline

Posts: 60



View Profile WWW
« Reply #23 on: March 06, 2013, 10:23:29 AM »

I have been on the bench since the end of December and I have a pentest next week and it will last three weeks. My over abundance of study time will be reduced, but I look forward to using what I have learned in the upcoming pentest. PWB has been very educational and I have improved a lot since I started my job as a pentester last April.

Hey as long as you keep learning, it's not a total loss Smiley I assume you'll be tackling the exam again?
Logged

OSCP, GSEC
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #24 on: March 06, 2013, 01:35:38 PM »

Hey as long as you keep learning, it's not a total loss Smiley I assume you'll be tackling the exam again?

Yes, I will be taking the exam again. I won't give up until I have that certification. I extended my lab time by two weeks, which also gives me another exam attempt. I only studied an additional two weeks after failing the first time before I retested. I figure I will take it again in a month if I feel like I am ready.
Logged

CISSP, IAM, working on OSCP
H1t M0nk3y
Hero Member
*****
Offline Offline

Posts: 865



View Profile
« Reply #25 on: March 06, 2013, 02:24:50 PM »

r0ckm4n, you sound like me when I failed my second attempt!

I then waited a full month and tried again (3rd time), only to stop after 8 hours, totally discouraged...

So I decided to put OSCP on a shelve for a while. I did GPEN, CISSP and GWAPT and above all, studied quite a lot. I always had this exam in the back of my mind, always thinking about it.

2 full years after that, I felt ready and passed it with confidence. I really was a different person and it really, really felt good when I finally passed the 70 points mark!!!

So if you are failing now, it's because you had the guts to take on a great challenge. I am sure you have learn quite a lot just going through these attempts. This certification is much harder than most other ones and like you mentioned, that's why it is so good.

Don't dispair! Take a break and come back when you feel you're ready.

If I did it, you can do it too!  Wink

Logged

OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
m0wgli
Full Member
***
Offline Offline

Posts: 248


View Profile
« Reply #26 on: March 06, 2013, 02:33:47 PM »

It's great that you still have the determination to continue.  Smiley You already pretty much said it yourself, "Nothing Worth Having Comes Easy".

I started the PWB course recently, so can appreciate the difficulty. I would be interested to know, where you felt you went wrong on this attempt.

Did you do all the extra mile excercises? And, how many of the machines in the lab did you manage to compromise before attempting the exam?
Logged

Security + | OSWP | eCPPT | CSTA
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #27 on: March 06, 2013, 02:51:42 PM »

r0ckm4n, you sound like me when I failed my second attempt!

I then waited a full month and tried again (3rd time), only to stop after 8 hours, totally discouraged...

So I decided to put OSCP on a shelve for a while. I did GPEN, CISSP and GWAPT and above all, studied quite a lot. I always had this exam in the back of my mind, always thinking about it.

2 full years after that, I felt ready and passed it with confidence. I really was a different person and it really, really felt good when I finally passed the 70 points mark!!!

So if you are failing now, it's because you had the guts to take on a great challenge. I am sure you have learn quite a lot just going through these attempts. This certification is much harder than most other ones and like you mentioned, that's why it is so good.

Don't dispair! Take a break and come back when you feel you're ready.

If I did it, you can do it too!  Wink



Thanks for the support, H1t M0nk3y! You're a good inspiration for those of us that have failed the exam.
Logged

CISSP, IAM, working on OSCP
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #28 on: March 06, 2013, 03:23:39 PM »

It's great that you still have the determination to continue.  Smiley You already pretty much said it yourself, "Nothing Worth Having Comes Easy".

I started the PWB course recently, so can appreciate the difficulty. I would be interested to know, where you felt you went wrong on this attempt.

Did you do all the extra mile excercises? And, how many of the machines in the lab did you manage to compromise before attempting the exam?

Thanks for the encouragement!

I didn't do all the extra mile exercises, although I spent most of my time on the areas I was having problems with. For me that was buffer overflows. I didn't spend my time wisely from the start. I started PWB last April. I wasn't studying enough for a long period of time and didn't study at all when I was doing pentests. If I would have done a better job studying from the start, I would be better off. January and February have been great months for me study wise.

I didn't compromise all of the lab machines and only did about half. I would recommend hacking them all. I think that is the best gauge of whether you are ready for the challenge. Yesterday to I 15 of the 16 servers I had previously hacked in the lab for practice. I was hoping this would help me remember some things and think about how I compromised them. At first I spent a lot of time using Metasploit and that would bad from a PWB point of view, but good for my job as a pentester. I am better with Metasploit, which is a tool I use on pentests.

As far as this attempt goes and to state the obvious, I wasn't ready. I knew that I would start getting pentests, so my work load would pick up and I wouldn't have as much time to study. I wanted to pass the exam before work started picking up. I start a pentest next week and I will make sure to study in my free time. I need to get better with buffer overflows and modifying exploits. Due to lack of experience, coding is a weakness for me and this is an area I am emphasizing.

I would recommend doing all of the extra miles and hacking every machine in the lab. Like others have said, when you can hack everything in the lab you are ready for the challenge. Go over the study material more than once and focus on your weaknesses.

One of my problems is being impatient and wanting to get things done quickly, but I need to focus more on learning. I am trying to improve my study quality and not focus as much on study quantity.

 
Logged

CISSP, IAM, working on OSCP
H1t M0nk3y
Hero Member
*****
Offline Offline

Posts: 865



View Profile
« Reply #29 on: March 07, 2013, 06:57:19 AM »

Quote
I would recommend doing all of the extra miles and hacking every machine in the lab.
This is obviously a good advice, but hacking all the machines in the lab could be quite time consuming. For me, in my early attempts, I had hack something like 12-18 servers. I still managed to get 60 points in the exam, but still, this didn't make me pass. The thing I later realize is that these servers were not picked up randomly. I was taking the approach "today, I will go after an FTP server" or "today, I am going after a web application". So I wasn't approaching a given host and try to break it, I was looking more at services...

In addition, all the exercises in the videos can be reproduce in the lab. So it's like if we are starting at 10 servers...

But on my last attempt, I felt I was ready because I targeted xxx.yyy.xxx.201, then xxx.yyy.xxx.202, then xxx.yyy.xxx.203, etc... I think I did 9 of the first 10 machines I targeted. At this point, I knew that I would eventually hack any machine I set my mind on. I then started picking up servers with very different configurations: Linux with a web server, FreeBSD with a mail server and things like that. After pwning all the machines I was targeting, I knew I was ready.

So yes, if you can, go after all machines in the lab. But if you don't have the time, you can be wise about it...  Grin
Logged

OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
Pages: 1 [2] 3 4 ... 7   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.079 seconds with 24 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.