https://help.offsec.com/hc/en-us/articles/360040165632-OSCP-Exam-Guide
# Tools Allowed
- msfvenom, multi handler (NO meterpreter)
- Nmap
- Nikto
- Burp (Free)
- DirBuster
- BloodHound (Legacy and Community Edition only)
- SharpHound
- PowerShell Empire
- CovenantÂ
- Powerview
- Rubeus
- evil-winrm
- Responder (Poisoning and Spoofing is not allowed in the challenges or on the exam)
- Crackmapexec
- Mimikatz
- Impacket
- PrintSpoofer
# Tools NOT Allowed
- Spoofing (IP, ARP, DNS, NBNS, etc)
- Commercial tools or services (Metasploit Pro, Burp Pro, etc.)
- Automatic exploitation tools (e.g. db_autopwn, browser_autopwn, SQLmap, SQLninja etc.)
- Mass vulnerability scanners (e.g. Nessus, NeXpose, OpenVAS, Canvas, Core Impact, SAINT, etc.)
- AI Chatbots (OffSec KAI, ChatGPT, YouChat, etc.)
- Features in other tools that utilize either forbidden or restricted exam limitations