You don't need expensive cloud services to practice. A free home lab can be built using:
Focus on "Retired" machines if you have a subscription, but if you're strictly free, tackle the Active Machines released weekly. oscp pen200 free
Download evaluation versions of Windows Server and Windows 10 Enterprise directly from the Microsoft Evaluation Center (free for 90 to 180 days). You don't need expensive cloud services to practice
| Tool / Action | Status | | :--- | :--- | | | Allowed on only 1 machine (use wisely) | | msfvenom | Allowed on all machines (payload generation only) | | AI Tools (ChatGPT, Claude, etc.) | Completely banned — instant fail | | sqlmap | Banned — manual SQL injection only | | Auto-exploitation tools | Banned | | Commercial tools (Burp Pro, Cobalt Strike) | Banned | | Tool / Action | Status | |
TryHackMe is highly structured and beginner-friendly. While they offer a paid subscription, their free tier provides massive value.
The OSCP is an exam of stamina and organization. Having the right documentation will save you hours during the 24-hour exam.
: OffSec offers free introductory materials (PEN-100) that build the foundational knowledge needed before starting PEN-200. PEN-200 (OSCP) Core Syllabus