What you will study
A focused six-module roadmap. Exact official syllabus and assessment policies remain subject to OffSec updates.
Perform advanced white-box assessments through source-code review, custom exploit development, authentication bypasses and multi-stage attack chains.
Designed around the workflows and decisions practitioners use—not a collection of disconnected tool demonstrations.
Perform advanced white-box assessments through source-code review, custom exploit development, authentication bypasses and multi-stage attack chains. The learning path combines guided concepts, repeatable lab methodology, evidence collection and professional communication.
Secure code review and exploit validation are increasingly important in application security and product security teams. OSWE-style depth complements automated SAST and DAST programs.
A focused six-module roadmap. Exact official syllabus and assessment policies remain subject to OffSec updates.
Strong web testing, programming and debugging skills. Comfort reading multiple server-side languages is expected.
A hands-on source-assisted web exploitation assessment with custom exploit and report requirements. Verify the latest exam guide.