The PEN-200: Penetration Testing with Kali Linux course is a practical, hands-on program designed for learners who want to become professional penetration testers. Delivered by Edmire Trainings in partnership with OffSec (Offensive Security), this course teaches you how to identify, exploit, and report vulnerabilities across a wide range of real-world systems, including networks, web applications, and Active Directory environments.
You’ll gain the core technical skills and mindset required to simulate offensive security operations. The course covers foundational skills like information gathering, vulnerability scanning, and privilege escalation, along with specific attacks like SQL Injection, Cross-Site Scripting (XSS), and client-side attacks*. It also includes extensive training on Active Directory exploitation to prepare you for the real-world scenarios you’ll encounter in the field.
The Penetration Testing with Kali Linux (PEN-200) course is the essential training program from OffSec for aspiring penetration testers. This hands-on program teaches learners to identify and exploit real-world vulnerabilities across various environments, including computers, networks, web applications, and basic cloud setups. Emphasizing practical learning, PEN-200 equips you with the core technical skills and mindset needed to simulate offensive security operations.
Master the core concepts, technologies, and best practices that form the bedrock of information security, providing a solid foundation for your pen testing journey.
Craft clear, actionable reports to detail security vulnerabilities, their potential impact, and step-by-step remediation guidance.
Use advanced ethical hacking techniques and tools like Nmap and Shodan to map target systems and discover exploitable vulnerabilities.
Use tools like Nessus and OpenVAS to identify known vulnerabilities in networks, applications, and systems to streamline your penetration testing process.
Learn how web applications function, what their underlying technologies are, and the architectural weaknesses that create common attack vectors.
Explore the techniques behind common web attacks, injection flaws, session hijacking, and the essential strategies to stop them.
Master the art of manipulating databases through SQL injections to extract sensitive information, compromise backend systems, and escalate your privileges.
Exploit vulnerabilities in web browsers, browser extensions, and client-side technologies to compromise user systems and gain access.
Find reliable public exploits, assess their significance, and responsibly integrate them into your security testing workflow.
Adapt and customize existing exploits, employ obfuscation techniques, and develop creative payloads to bypass defenses and successfully test target systems.
Develop strategies and techniques to disguise exploits, obfuscate payloads, and evade detection by antivirus solutions to simulate real-world attacker behavior.
Uncover weak authentication practices using password cracking techniques like brute-force, dictionary attacks, and rainbow table methods to improve password security.
Identify and exploit misconfigurations and vulnerabilities in Windows systems to gain admin-level access and more control within a network.
Escalate your privileges and gain root-level access to fully compromised servers and critical infrastructure on Linux systems.
Establish covert channels, pivot through networks, evade detection, and maintain persistence during penetration tests with sophisticated tunneling protocols and techniques.
Use Metasploit's broad capabilities for exploit development, payload generations, and post-exploitation activities to streamline your penetration testing tasks.
Understand the structure of Active Directory, learn to enumerate users, groups, trusts, and sensitive configurations using tools like BloodHound and PowerView to identify attack paths.
Exploit weaknesses in Active Directory authentication mechanisms (Kerberos, NTLM, etc) to compromise credentials and gain unauthorized access.
Move laterally in Active Directory environments, expand your control, and achieve your penetration testing objectives with post-exploitation techniques and tools.
Learn to identify, exploit, and mitigate buffer overflow vulnerabilities in software applications.
Explore techniques for compromising wireless networks, including WEP/WPA cracking and rogue access points.
Master techniques for maintaining access, covering tracks, and extracting valuable data from compromised systems.
Learn industry-standard penetration testing methodologies and frameworks for conducting comprehensive security assessments.
Apply all learned techniques in practical Capture The Flag (CTF) scenarios to test your penetration testing skills.
Prepare for the OSCP / OSCP+ certification exam with tips, strategies, and practice scenarios.
The Penetration Testing with Kali Linux (PEN-200) course is designed for individuals seeking to develop practical penetration testing skills and earn the Offensive Security Certified Professional (OSCP) certification. It's ideal for those who want hands-on experience with real-world exploitation techniques.
Earliest Batches will be start soon! Grab it before it's too late!
| Start Date | End Date | Days | Timings | Mode | Status | Action |
|---|
Explore All Upcoming Training Sessions
Visit Now!Students must attend at least 80% of the scheduled classes to be eligible for the certification exam.
The OSCP is a hands-on penetration testing certification offered by OffSec. It validates your ability to identify vulnerabilities, exploit them, and document findings in a professional report. It is one of the most recognized certifications in cybersecurity.
OSCP+ is a bundle that includes the PEN-200 course, the OSCP exam attempt, and access to OffSec’s exclusive Learning Library. It is designed to provide additional resources and labs to strengthen your preparation.
The PEN-200 course covers penetration testing methodologies, buffer overflows, privilege escalation, Active Directory attacks, password attacks, tunneling, web application exploitation, and post-exploitation techniques with hands-on labs.
The OSCP exam is a 24-hour hands-on penetration test. Candidates must compromise multiple machines in a controlled environment to earn points. An additional 24 hours is given to submit a detailed professional report documenting the exploitation process and findings.
You must score at least 70 points out of 100 to pass. Points are earned by compromising machines and achieving specific objectives. Submitting a professional report is mandatory for certification.
The best preparation is completing all PEN-200 modules and labs. Additionally, practice with HackTheBox, TryHackMe, and other CTF platforms is recommended. Time management and report writing practice are crucial for success.
Yes, you can use most tools available in Kali Linux, such as Nmap, Metasploit, Burp Suite, Hydra, and SQLmap. Automated vulnerability scanners are prohibited. You must fully document the tools and methods you use in your report.
The standard PEN-200 course bundle includes one exam attempt. If you fail, you can purchase additional exam vouchers separately. The OSCP+ bundle may include more resources to support your preparation.
No, the OSCP exam requires only the exam report. However, submitting the PEN-200 course lab report can earn you bonus points towards the exam, which can be very helpful if you’re close to the passing threshold.
The OSCP is ideal for penetration testers, red teamers, SOC analysts, security engineers, and anyone pursuing a career in offensive security. It is particularly valued by employers looking for proven hands-on cybersecurity professionals.
Navigate your professional journey in information security from beginner to executive level
No prior IT experience required
1-2 years IT experience
2-5 years security experience
3-7 years focused experience
5+ years leadership experience
Select your area of interest to explore certification paths
Design and implement secure network infrastructure
View Certification PathInvestigate security incidents and cyber crimes
View Certification PathLead organizational security strategy
View Certification Path