I'm Anshuman Jha — OSCP+ certified security professional who finds vulnerabilities before attackers do. Active Directory exploitation, web app pentesting, and red team operations.
I'm Anshuman Jha, a Penetration Tester with a deep passion for offensive security. I hold the OSCP+ certification from Offensive Security — one of the industry's most respected hands-on security credentials — earned August 2, 2025.
My expertise spans Active Directory exploitation, web application pentesting, and red team operations. I've completed all 4 HackTheBox Pro Labs including the advanced Cybernetics and RastaLabs environments that simulate hardened enterprise networks with live defensive tooling.
Beyond breaking things, I build them — my open-source OSCP+ / OSEP Advanced Cheatsheet v3 is an interactive reference tool with variable substitution used by the community during live engagements.
Proven across OSCP+ exam, 4 Pro Labs, and real-world engagements.
Passed the Offensive Security Certified Professional Plus (OSCP+) — the gold standard in hands-on penetration testing certifications. A 24-hour live exam requiring compromise of multiple machines including a full Active Directory environment. Proves real-world ability to enumerate, exploit, escalate, pivot, and report under pressure — not theory.
HTB's hardest AD lab — multi-forest, domain trust abuse, live AV/EDR. Chained complex attacks across forest boundaries for full compromise.
HTB ProfileRed team lab with live EDR — deployed C2 frameworks, bypassed endpoint defenses, achieved persistent access in hardened Windows enterprise.
HTB ProfileCorporate network simulation — intermediate AD attacks, web exploitation chains, and Windows privilege escalation across segmented environment.
HTB ProfileFull network pentest — initial foothold, pivoting through subnets, AD exploitation, full domain compromise. Complete offensive security kill chain.
HTB ProfileOpen-source security tools — MyCheatsheet and PentestCheatsheet repositories. Practical tools built from real engagement experience.
View GitHubOSCP+ is not multiple choice — it's a 24-hour live hacking exam. Passing it proves actual capability under real conditions.
4 HTB Pro Labs completed including Cybernetics & RastaLabs — the hardest enterprise simulation environments with live defenses.
Built an open-source OSCP+/OSEP cheatsheet with 200+ commands — actively used by the security community.
Follows documented methodology — enumeration → exploitation → post-exploitation → reporting aligned with PTES and OWASP standards.
Strong commitment to responsible disclosure, confidentiality, and ethical hacking. Understands legal and professional scope.
Actively training through HackTheBox and OffSec. Current with latest attack techniques — not relying on outdated knowledge.
Available for penetration testing engagements, security audits, red team operations, and full-time / freelance roles.