whiskers 🖤 Profile picture
script kitty | chill techie with an OffSec penchant | not l337 | CRTL, OSCP, CISSP, etc. | opinions my own or from /dev/random | he/him/=^_^=
Jan 27, 2021 31 tweets 10 min read
initinfosec's #PWK / #OSCP survival tips/thoughts. Thread of tips/tricks to hopefully help in PWK/OSCP:

caveat emptor:

* i'm a scrub, trust but verify?
* none are novel/new, YMMV
* can only speak to my own exp
* in no particular order
* added to/updated at random

GL;HF

1/x
RCE to shell:





In OSCP world, usually the time to dig in, if you truly have RCE, just need to be clever and creative.

For rev shells, see above. Try common ports or ones on target likely to be allowed by FW.

1/x
Jun 2, 2020 11 tweets 5 min read
@rbhichher I have a number of thoughts, and a lot of it you'll discover on your own. Once I pass I'll write a more comprehensive blog post about it.

However, my current thoughts are this:

1/# @rbhichher 1) Know that this effort will require some [probably significant] time and dedication - if now's not great, schedule for a more free time. Make sure partners/people in your life are aware of the schedule change. It's only temporary, but more undisturbed time is better, IMO.

2/#