Develop advanced ethical hacking skills, including executing client-side attacks, bypassing application whitelisting, and performing advanced Active Directory attacks
  • Earn OffSec’s Experienced Penetration Tester (OSEP) certification upon passing the exam
  • ">

    PEN-300: Evasion Techniques and Breaching Defenses (OSEP)

    • Develop advanced ethical hacking skills, including executing client-side attacks, bypassing application whitelisting, a...

      4.50/5 Average Rating
      0 Learners
      Industry Recognized
      Certification Body Offensive Security
      Delivery Profice
    Course CodeOSEP
    DurationSelf Paced
    Deliveryself paced

    About This Course

    • Develop advanced ethical hacking skills, including executing client-side attacks, bypassing application whitelisting, and performing advanced Active Directory attacks
    • Earn OffSec’s Experienced Penetration Tester (OSEP) certification upon passing the exam

    Course Syllabus

    Study memory management, process scheduling, file systems, and other essential OS components, gaining a solid foundation for understanding and exploiting vulnerabilities

    Focus on leveraging known vulnerabilities in Microsoft Office applications to craft malicious documents that trigger code execution on a victim’s machine, gaining unauthorized access and control

    Exploit Jscript for code execution attacks, gaining unauthorized access and control of machines in Windows environments

    Master the art of stealth and persistence by injecting malicious code into legitimate running processes, migrating between processes to evade detection and maintain control when processes are terminated

    Create malware that goes undetected with basic techniques like obfuscation and packing to bypass and evade antivirus software

    Use advanced methods like signature-based and heuristic-based evasion to create malware that goes undetected by complex antivirus solutions

    Bypass security measures intended to restrict the execution of unauthorized software

    Gain access to restricted resources and networks with different techniques for bypassing network filters and firewalls

    Navigate file systems, manipulate user accounts, extract sensitive information, and establish persistent backdoors on compromised Linux systems

    Navigate file systems, manipulate user accounts, extract sensitive information, and establish persistent backdoors on compromised Windows systems

    Break out of restricted kiosk environments like ATMs or point-of-sale terminals to gain control of their operating systems

    Use different methods and techniques to extract valuable credentials like passwords and hashes from Windows systems

    Exploit trust relationships, leverage vulnerabilities in services and protocols with tools like PsExec and Mimikatz to gain access to systems throughout a compromised Windows network

    Exploit trust relationships, leverage vulnerabilities in services and protocols to gain access to systems throughout a compromised Linux network

    Attack vulnerabilities in Microsoft SQL Server databases to extract sensitive data, escalate privileges, and gain control over entire systems

    Exploit vulnerabilities in Active Directory to compromise domains in Windows networks

    Combine multiple exploits, techniques, and tools to create complex, multi-stage attacks to bypass multiple layers of security

    Apply your knowledge and skills in challenging, real-world scenarios with complex network environments, hardened security measures, and realistic attack scenarios

    Course Packages

    Self Paced Learning - 90 Days Access

    Self Paced Learning - 365 Days Access

    All You Need to Know

    The PEN-300 course is ideal for:

    • Experience penetration testers and security professionals
    • Those seeking to master advanced penetration testing methodologies
    • Existing OSCP+ certification holders

    While the completion of PEN-200 (Penetration Testing with Kali Linux) is not a formal prerequisite, it is highly recommended due to the advanced nature of PEN-300.

    All learners are recommended to have either taken Penetration Testing with Kali Linux (PEN-200) and passed the OSCP+ certification or have equivalent knowledge and skills.

    These skills include:

    • Working familiarity with Kali Linux and the Linux command line
    • Solid ability in the enumeration of targets to identify vulnerabilities
    • Basic scripting abilities in Bash, Python, and PowerShell
    • Ability to identify and exploit vulnerabilities like SQL injection, file inclusion, and local privilege escalation
    • Foundational understanding of Active Directory and knowledge of basic AD attacks
    • Familiarity of C# programming is a plus for this course

    Why Choose Profice?

    Official Partner

    Authorized Training Partner delivering official certified curriculum

    Expert Instructors

    Certified professionals with 10+ years of real-world experience

    Hands-on Labs

    Real-world projects and 24/7 lab environment access

    95% Pass Rate

    Industry-leading certification exam success rate

    Lifetime Support

    Ongoing mentorship and community access after course completion

    Job Assistance

    Dedicated placement support with 500+ hiring partners

    Official Training Partner

    Profice is an official training partner delivering globally recognized certifications.