Skip to content

OSCP/ Vulnhub Practice learning

HacktheBox Boxes

Linux Boxes

  • Lame
  • brainfuck
  • shocker
  • bashed
  • nibbles
  • beep
  • cronos
  • nineveh
  • sense
  • solidstate
  • node
  • valentine
  • poison
  • sunday
  • tartarsauce
  • Irked
  • Friendzone
  • Swagshop
  • Networked
  • jarvis

Windows Boxes

  • legacy
  • Blue
  • Devel
  • Optimum
  • Bastard
  • granny
  • Arctic
  • grandpa
  • silo
  • bounty
  • jerry
  • conceal
  • chatterbox
  • Forest
  • BankRobber

More challenging than OSCP, but good practice

  • Jeeves [Windows]
  • Bart [Windows]
  • Tally [Windows]
  • Active [Windows]
  • Kotarak [Linux]
  • falafel [Linux]
  • Devops [Linux]
  • Hawk [Linux]
  • Netmon [Windows]
  • Lightweight [Linux]
  • La Casa De Papel [Linux]
  • Jail [Linux]
  • Safe [Linux]
  • Bitlab [Linux]

Vulnhub Boxes

Beginner friendly

  • Kioptrix: Level 1 (#1) [ok]
  • Kioptrix: Level 1.1 (#2) [ok]
  • Kioptrix: Level 1.2 (#3) [ok]
  • Kioptrix: Level 1.3 (#4) [ok]
  • FristiLeaks: 1.3 [ok]
  • Stapler: 1 [ok]
  • PwnLab: init [ok]
  • Pluck: 1 [ok]
  • W1R3S: 1.0.1 [ok]

Intermediate

  • Kioptrix: 2014 [ok]
  • Brainpan: 1 (Part 1 of BO is relevant to OSCP. egghunting is out of scope though)
  • Mr-Robot: 1 [ok]
  • HackLAB: Vulnix [ok]
  • Not so sure (Didn't solve them yet):
  • VulnOS: 2 [ok]
  • SickOs: 1.2 [ok]
  • /dev/random: scream
  • pWnOS: 2.0
  • SkyTower: 1
  • IMF
  • Lord of the Root 1.0.1 [ok]
  • Tr0ll
  • Pegasus
  • SkyTower [ok]

Windows

  • Metasploitable 3
  • Bobby: 1 (Uses VulnInjector, need to provide you own ISO and key.)