The is an intermediate-level certification designed to evaluate a candidate’s ability to perform a professional-grade penetration test on a simulated enterprise network. It is widely considered one of the most rigorous and realistic certifications in the cybersecurity industry. Exam Structure and Requirements
Given the exam's difficulty, a structured preparation strategy is essential. The HTB Academy path itself is your primary resource, but here are key strategies recommended by successful candidates:
The CPTS exam does not just test your ability to run automated scripts; it requires a deep, fundamental understanding of how systems communicate and where they fail. The exam covers several critical domains:
For years, the Offensive Security Certified Professional (OSCP) was the undisputed gold standard for entry-to-mid-level penetration testers. However, the CPTS has quickly disrupted this benchmark. OffSec OSCP
The CPTS exam focuses heavily on Active Directory (AD) attack paths , misconfigurations, and post-exploitation techniques.
If you get stuck, it is almost always an enumeration failure. Re-scan ports, look for hidden web directories, and check service versions again.
You will have one free retake opportunity. However, if you fail to submit any report at all on your first attempt, you forfeit the free retake. After the free retake, additional attempts require purchasing a new voucher.
: Each exam voucher includes two attempts ; if you fail the first, you receive detailed feedback to help with the retake. Core Knowledge Areas
OSCP gives you 24 hours to hack and 24 hours to report. CPTS gives you 5 days to hack and 5 days to report. The CPTS favors deep methodology over time-pressured speed-running.
With a 10-day timeline, disorganization is your worst enemy. Use tools like Obsidian, CherryTree, or Notion to organize your notes. Structure your notes by IP address, hostname, user credentials found, and active sessions. Document every command you run and save the output; you will need these screenshots and logs for your final report. 3. Build Custom Cheat Sheets
| Feature | CPTS (HTB) | OSCP (OffSec) | | :--- | :--- | :--- | | | 10 Days (1 exam + 6 report writing) | 24 Hours (Exam + Report) | | Cost | ~$400 USD (Academy Subscription) | ~$1,599 USD (Exam + 90 days Lab) | | Difficulty | Very High (Expert level) | High (Intermediate/Advanced) | | AD Focus | Extremely Heavy (Hard-level AD chains) | Moderate (Medium-level AD) | | Report Weight | High (Must be professional-grade) | High | | Retake Policy | Cheaper retakes via new voucher | Expensive retakes (~$450+) |
For cybersecurity professionals and aspiring penetration testers, earning the HTB CPTS is a definitive validation of technical competence, persistence, and analytical thinking. This comprehensive guide breaks down everything you need to know about the CPTS exam, from preparation strategies to the structure of the grueling test itself. What is the CPTS Certification?
Which specific domain (like or Web Apps ) concerns you most
If you want to be a penetration tester who can actually hack—rather than one who just reads about hacking—the CPTS is the mountain you need to climb.