| A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Y | Z | |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | LainKusanagi list of OSCP like machines | |||||||||||||||||||||||||
2 | >Whoami | >What is this list for | ||||||||||||||||||||||||
3 | -Before and while doing PEN 200 course and after failing my first attempt I completed multiple machines in multiple hacking platforms. -I did all the PEN 200 course along with all the challenge labs that where introduced in the 2023 version of the PEN 200 (including the challenge lab network other people skip). -I failed my first attempt with 60 points and then passed my second attempt with 90 points. I experienced completely different exam sets in each attempt. -I also did the challenge labs added on October 2024 before my learn one subscription ended. -All of this experience gave me a good sense of what is OffSec style of boxes and what is important to know in the exam Have feedback or suggestions? Let me know here: https://x.com/unknownseeker99 https://www.reddit.com/user/JosefumiKafka/ https://www.linkedin.com/in/luis-moret-4a42ab246/ | -This is a list of machines I consider good for practice before doing the PEN 200 course, challenge labs and OSCP exam however this is not a replacement for the actual course and I recommend you to go through all of the course, exercises and challenges before attempting the exam. -The machines in this list where selected because either they teach important techniques and concepts found in the course and labs, have similar style to machines made by offsec or where in a way crucial to helping me develop my methodology and help me pass my exam. -This list overlaps a lot with the famous TJ Null list however it also filters out boxes that may be too outside of the scope of the PEN 200 and OSCP exam and includes boxes from other hacking platforms such as Tryhackme and VirtualHackingLabs, still I added some boxes in this list that may have elements harder than OSCP but I believe are worth doing as they may have some other aspect that is crucial to know and practice Support me: https://buymeacoffee.com/lainkusanagi | ||||||||||||||||||||||||
4 | >Useful forks made by the community (I do not maintain these forks so they may not reflect latest changes): -List with difficulty ratings made by Jubba402 https://docs.google.com/spreadsheets/d/13YoNQuY6HC5ot-lZiX2tY9pR5mvwnp3xV6lHs78DlqQ/ -Study tracker combining this list and TJ Null list with difficulty ratings made by Obeyeater https://docs.google.com/spreadsheets/d/1nzEN0G6GzneWCfs6qte6Qqv-i8cV_j6po-tFlZAOx1k/ >Other useful resources for practice and study: Hacker Blueprint OSCP Practice labs https://www.youtube.com/playlist?list=PLM1644RoigJvm0L7RcK-64aVTp1vZkDv5 Derron C OSCP Practice labs https://www.youtube.com/playlist?list=PLT08J44ErMmb9qaEeTYl5diQW6jWVHCR2 | |||||||||||||||||||||||||
5 | Hackthebox | HackSmarter | ||||||||||||||||||||||||
6 | Start learning to Try harder here. Don’t fully skip hackthebox some boxes have important concepts that are rare even in PG practice like SNMP and Keepass also AD ones are pretty good practice even if harder than OSCP in some ways. At the very least watch ippsec videos and take notes | New platform made by the Hack Smarter community | ||||||||||||||||||||||||
7 | Linux | Windows | Active Directory and Networks | Linux | Windows | Active Directory and Networks | ||||||||||||||||||||
8 | Sea | Markup | Active | BankSmarter | Slayer | ShareThePain | ||||||||||||||||||||
9 | Nibbles | Jerry | Forest | Ascension | Sysco | |||||||||||||||||||||
10 | Solidstate | Netmon | Sauna | Talisman | StellarComms | |||||||||||||||||||||
11 | Poison | Servmon | Flight | Verbose (harder) | ||||||||||||||||||||||
12 | Editor | Chatterbox | Return | Exception | Assumed Breach Scenarios: | |||||||||||||||||||||
13 | Sunday | Jeeves | Blackfield | Building Magic | ||||||||||||||||||||||
14 | Keeper | Sniper | Cicada | PivotSmarter (small network) | ||||||||||||||||||||||
15 | Pilgrimage | Querier | TheFrizz (harder) | |||||||||||||||||||||||
16 | Cozyhosting | Giddy | Networks: | |||||||||||||||||||||||
17 | Codify | Bounty | Assumed Breach Scenarios: | Odyssey (harder but good practice) | ||||||||||||||||||||||
18 | Tartarsauce | Artic | Administrator | |||||||||||||||||||||||
19 | Jarvis | Remote | Priv Esc not in scope but good practice: | |||||||||||||||||||||||
20 | Tabby | Buff | Welcome (Assumed breach) | |||||||||||||||||||||||
21 | Usage | Love | Arasaka (Assumed breach) | |||||||||||||||||||||||
22 | Mentor | Secnotes | Priv Esc not in scope but good practice: | Anomaly (harder / network) | ||||||||||||||||||||||
23 | Devvortex | Access | Monteverde | Lumon Industries (Assumed breach) | ||||||||||||||||||||||
24 | Irked | Mailing | Escape | 404 bank (Harder) | ||||||||||||||||||||||
25 | Popcorn | Heist | EscapeTwo (Assumed breach) | |||||||||||||||||||||||
26 | Bashed | Certified (Assumed breach) | AWS (Not in the exam) | |||||||||||||||||||||||
27 | Broker | Puppy (harder) | Sns_secrets | |||||||||||||||||||||||
28 | Analytics | Timelapse (harder) | Static | |||||||||||||||||||||||
29 | Networked | Signed (Assumed breach) | ||||||||||||||||||||||||
30 | UpDown | |||||||||||||||||||||||||
31 | Swagshop | ProLabs: | ||||||||||||||||||||||||
32 | Nineveh | Dante | Update: | |||||||||||||||||||||||
33 | Pandora | Zephyr (harder) | 2/5/2026 Added Verbose, StellarComms and 404bank to hacksmarter list | |||||||||||||||||||||||
34 | OpenAdmin | 2/8/2026 Added Signed to Hackthebox list and Sams to pg play list | ||||||||||||||||||||||||
35 | Precious | AWS (Not in the exam) | 2/27/2026 Added Exception to Hacksmarter list | |||||||||||||||||||||||
36 | Busqueda | Epsilon | 2/28/2026 If you where using Tryhackme it has been moved to the bottom of the list, see notes. | |||||||||||||||||||||||
37 | Monitored | Gobox | 3/8/2026 Added Cctv to Hackthebox list (May change my mind since I believe I found unintended path) | |||||||||||||||||||||||
38 | BoardLight | Bucket | ||||||||||||||||||||||||
39 | Magic | Facts | ||||||||||||||||||||||||
40 | Help | |||||||||||||||||||||||||
41 | Editorial | |||||||||||||||||||||||||
42 | Builder | |||||||||||||||||||||||||
43 | Linkvortex | |||||||||||||||||||||||||
44 | UnderPass | |||||||||||||||||||||||||
45 | Dog | |||||||||||||||||||||||||
46 | Cctv | |||||||||||||||||||||||||
47 | ||||||||||||||||||||||||||
48 | Proving Grounds Practice | VulnLab / Hackthebox | ||||||||||||||||||||||||
49 | The real OSCP like boxes, this is just a list with the ones that are best practice and removing the overly complicated ones that are too out of scope and those that were boxes meant to be mostly for OSEP and OSED (example Kyoto and Nara) that were in TJNull list plus adding some new ones | VunLab is an amazing platform focused on red teaming, the platform recently joined hackthebox and vulnlab boxes will become available in hackthebox. For simplicity sake VulnLab and Hackthebox will keep being separate lists. | ||||||||||||||||||||||||
50 | Linux | Windows | Active Directory and Networks | Linux | Windows | Active Directory and Networks | ||||||||||||||||||||
51 | ClamAV | Kevin | Access | Sync | Escape | Baby | ||||||||||||||||||||
52 | Pelican | Internal | Nagoya | Data | Job | Baby2 | ||||||||||||||||||||
53 | Payday | Algernon | Hokkaido | Build | Job2 | Breach | ||||||||||||||||||||
54 | Snookums | Jacko | Vault | Forgotten | Lock | Sweep | ||||||||||||||||||||
55 | Bratarina | Craft | Bamboo | Sendai | ||||||||||||||||||||||
56 | Pebbles | Squid | Treat it like a small network | |||||||||||||||||||||||
57 | Nibbles | Nickel | SkillForge (Linux) | Chains: | ||||||||||||||||||||||
58 | Hetemit | MedJed | Trusted | |||||||||||||||||||||||
59 | ZenPhoto | Billyboss | Priv Esc not in scope but good practice: | Reflection | ||||||||||||||||||||||
60 | Nukem | Shenzi | Hutch | Hybrid | ||||||||||||||||||||||
61 | Cockpit | AuthBy | Resourced | Lustrous | ||||||||||||||||||||||
62 | Clue | Slort | ||||||||||||||||||||||||
63 | Extplorer | Hepet | Assumed Breach Scenarios: | |||||||||||||||||||||||
64 | Postfish | DVR4 | Heron (Chain) | |||||||||||||||||||||||
65 | Hawat | Mice | AWS (Not in the exam) | |||||||||||||||||||||||
66 | Walla | Monster | Pathway | |||||||||||||||||||||||
67 | PC | Fish | ||||||||||||||||||||||||
68 | Apex | Proving Grounds Play | ||||||||||||||||||||||||
69 | Sorcerer | |||||||||||||||||||||||||
70 | Sybaris | Mostly boxes from vulnhub hosted by offsec for free | ||||||||||||||||||||||||
71 | Peppo | Linux | Windows | |||||||||||||||||||||||
72 | Hunit | Amaterasu | Sams | |||||||||||||||||||||||
73 | Readys | Loly | ||||||||||||||||||||||||
74 | Astronaut | Potato | ||||||||||||||||||||||||
75 | Bullybox | Stapler | ||||||||||||||||||||||||
76 | Marketing | BBScute | ||||||||||||||||||||||||
77 | Exfiltrated | Gaara | ||||||||||||||||||||||||
78 | Fanatastic | Blogger | ||||||||||||||||||||||||
79 | QuackerJack | FunboxEasyEnum | ||||||||||||||||||||||||
80 | Wombo | GlasgowSmile | ||||||||||||||||||||||||
81 | Flu | |||||||||||||||||||||||||
82 | Roquefort | |||||||||||||||||||||||||
83 | Levram | |||||||||||||||||||||||||
84 | Mzeeav | |||||||||||||||||||||||||
85 | LaVita | |||||||||||||||||||||||||
86 | Xposedapi | |||||||||||||||||||||||||
87 | Zipper | |||||||||||||||||||||||||
88 | Workaholic | |||||||||||||||||||||||||
89 | Fired | |||||||||||||||||||||||||
90 | Scrutiny | |||||||||||||||||||||||||
91 | SPX | |||||||||||||||||||||||||
92 | Vmdak | |||||||||||||||||||||||||
93 | Mantis | |||||||||||||||||||||||||
94 | BitForge | |||||||||||||||||||||||||
95 | WallpaperHub | |||||||||||||||||||||||||
96 | Zab | |||||||||||||||||||||||||
97 | SpiderSociety | |||||||||||||||||||||||||
98 | ||||||||||||||||||||||||||
99 | Virtual Hacking Labs (Not updated) | Tryhackme (Deprecated) | ||||||||||||||||||||||||
100 | Very under rated platform with very OSCP like machines, people that have used it really recommend it for OSCP including me. It has been very crucial help for those that have failed attempts to be able to pass and they are good practice for standalones. Note: I haven't accessed this platofrm in a long time so the list is not updated however if you have recommendations do let me know. | Due to controversies related to the management of this platform, Tryhackme list won't be updated and I don't encourage the use of this platform anymore however the list will be left here for those who are still using it to prepare for certifications. | ||||||||||||||||||||||||