OffSec (@offsectraining) 's Twitter Profile
OffSec

@offsectraining

Empowering the world to fight cyber threats with indispensable cybersecurity skills and resources. Build the path to a secure future with OffSec.

ID: 134994790

linkhttps://www.offsec.com/ calendar_today20-04-2010 01:49:28

5,5K Tweet

321,321K Followers

118 Following

OffSec (@offsectraining) 's Twitter Profile Photo

Introducing our newly improved course pages! πŸ’₯ πŸ”— offs.ec/4kwKrMm We've made it easier to understand what each course offers, how it prepares you for the exam, which job roles it can lead to, and what you can expect from the Learning Library. You'll also find student

OffSec (@offsectraining) 's Twitter Profile Photo

How do you evaluate cybersecurity talent today? πŸ‘€ β€œI’ve done privilege escalation.” β€œI’ve worked on red team projects.” β€œI perform well under pressure.” You’ve heard it all before. But how do you know it’s true? At OffSec, we focus on showing, not telling. Our labs and

How do you evaluate cybersecurity talent today? πŸ‘€

β€œI’ve done privilege escalation.”
 β€œI’ve worked on red team projects.”
 β€œI perform well under pressure.”

You’ve heard it all before. But how do you know it’s true?

At OffSec, we focus on showing, not telling. Our labs and
OffSec (@offsectraining) 's Twitter Profile Photo

#BlackHatUSA is almost here, and seats for our live training sessions are selling fast! πŸ”₯ In partnership with Applied Technology Academy, our exclusive #BlackHat Training Partner, here are the upcoming sessions: πŸ‰ PEN-200: offs.ec/40N7Oua πŸ•·οΈ WEB-300: offs.ec/4kzBNNr πŸ’€

#BlackHatUSA is almost here, and seats for our live training sessions are selling fast! πŸ”₯

In partnership with <a href="/appliedtechac/">Applied Technology Academy</a>, our exclusive #BlackHat Training Partner, here are the upcoming sessions:
πŸ‰ PEN-200: offs.ec/40N7Oua 
πŸ•·οΈ WEB-300: offs.ec/4kzBNNr  
πŸ’€
OffSec (@offsectraining) 's Twitter Profile Photo

πŸβ¬†οΈ Ready to level up your OSTH exam prep? Join us for our next #OffSecLive session designed to help you navigate the OSTH exam with clarity and confidence! We’ll break down the exam structure, highlight key topics, and share effective preparation strategies. Learn how to

OffSec (@offsectraining) 's Twitter Profile Photo

Deep Dive: CVE-2024-12029 (Critical RCE in InvokeAI) ⚠️ CVSS 9.8 | EPSS 61.17% An unprotected API + unsafe torch deserialization = full system takeover. Attackers can host malicious model files and trigger remote code execution via the /api/v2/models/install endpoint. No auth

Deep Dive: CVE-2024-12029 (Critical RCE in InvokeAI)
⚠️ CVSS 9.8 | EPSS 61.17%

An unprotected API + unsafe torch deserialization = full system takeover.

Attackers can host malicious model files and trigger remote code execution via the /api/v2/models/install endpoint. No auth
OffSec (@offsectraining) 's Twitter Profile Photo

Dragon Drop: this week's NEW releasesΒ πŸ‰πŸš¨πŸ”₯ πŸͺ²Β New CVE labs: β†’ CVE-2025-27636_Attack:Β lnkd.in/exPHWinw β†’ DefendΒ CVE-2025-27636:Β lnkd.in/edV-hqbR β†’ CraftStorm_Attack:Β lnkd.in/eAYZQ9fw β†’ Defend CraftStorm:Β lnkd.in/eY-z8AVA πŸ§ͺ Other new labs: β†’

Mr.Niko (@_mrniko) 's Twitter Profile Photo

βœ… Excited to share that I’ve officially passed the OSCP+/OSCP certification!! OffSec #OSCP #CyberSecurity #EthicalHacking #OffensiveSecurity #InfoSec #ProfessionalDevelopment

βœ… Excited to share that I’ve officially passed the OSCP+/OSCP certification!! <a href="/offsectraining/">OffSec</a> 

#OSCP #CyberSecurity #EthicalHacking #OffensiveSecurity #InfoSec #ProfessionalDevelopment
OffSec (@offsectraining) 's Twitter Profile Photo

Calling all learners in Taiwan! πŸš¨πŸ‡ΉπŸ‡Ό We're excited to announce live training sessions in Taiwan, brought to you by OffSec & Devcore (DEVCORE), one of our training partners. The sessions, running between August 18 and 22, will cover PEN-300, EXP-401, and WEB-300 ⛓️‍πŸ’₯πŸ’€πŸ•·οΈ

Calling all learners in Taiwan! πŸš¨πŸ‡ΉπŸ‡Ό

We're excited to announce live training sessions in Taiwan, brought to you by OffSec &amp; Devcore (<a href="/d3vc0r3/">DEVCORE</a>), one of our training partners. The sessions, running between August 18 and 22, will cover PEN-300, EXP-401, and WEB-300 ⛓️‍πŸ’₯πŸ’€πŸ•·οΈ
OffSec (@offsectraining) 's Twitter Profile Photo

🚨 Could you spot a phishing email? Follow β€œBad Luck Ben” and β€œTechnical Tina” as they uncover a real-world scenario inside MegaCorp One. You’ll learn: 🎣 How phishing attacks are crafted and executed πŸ” What attackers are looking for (hint: it’s more than your password) ⚠️ The

OffSec (@offsectraining) 's Twitter Profile Photo

#BlackHatUSA is just one week away, and we have some spaces remaining in our WEB-300 live training session! πŸ•·οΈ As prep for the #OSWE certification, the session will help you to: 🧠 Tackle real-world attack vectors πŸ’₯ Exploit misconfigurations and logic flaws πŸ› οΈ Get hands-on with

#BlackHatUSA is just one week away, and we have some spaces remaining in our WEB-300 live training session! πŸ•·οΈ

As prep for the #OSWE certification, the session will help you to:
🧠 Tackle real-world attack vectors
πŸ’₯ Exploit misconfigurations and logic flaws
πŸ› οΈ Get hands-on with
OffSec (@offsectraining) 's Twitter Profile Photo

"It's not about having the answers given to you. It's about being willing to explore, to struggle, and learn from setbacks. The answer is often right there, just experiment until you find that breakthrough." 🎧 Want to listen to our latest #TryHarder podcast? Check it out here:

OffSec (@offsectraining) 's Twitter Profile Photo

Congratulations, Kamaldeep Singh Rajal! πŸ‘πŸ† To continue with our Try Harder monthly series, we're celebrating dedicated individuals who embody the spirit of #TryHarder. This month, we’re recognizing Kamaldeep, who now holds the OSCP & OSWE πŸ‰πŸ•·οΈ "This journey was truly tough

Congratulations, Kamaldeep Singh Rajal! πŸ‘πŸ†

To continue with our Try Harder monthly series, we're celebrating dedicated individuals who embody the spirit of #TryHarder. This month, we’re recognizing Kamaldeep, who now holds the OSCP &amp; OSWE πŸ‰πŸ•·οΈ

"This journey was truly tough
OffSec (@offsectraining) 's Twitter Profile Photo

Dragon Drop: this week's NEW releases πŸ‰πŸš¨πŸ”₯ πŸ’₯ New modules: β†’ PEN-200 | Extra Mile: Offensive Cloud Lab 03: portal.offsec.com/learning-modul… β†’ EXP-301 | VMware Workstation Guest-To-Host Escape: portal.offsec.com/learning-modul… πŸͺ² New CVE labs: β†’ CVE-2025-24801: portal.offsec.com/machine/cve-20… β†’

OffSec (@offsectraining) 's Twitter Profile Photo

Introducing Talent Finder πŸ”πŸ’Ž πŸ”— offs.ec/46vPTMk Whether you're building elite cybersecurity teams or looking to join one, #TalentFinder connects the dots. Now available for hiring managers & job seekers. πŸ‘©β€πŸ’Ό For hiring managers: Tap into a verified pool of

Introducing Talent Finder πŸ”πŸ’Ž 
πŸ”— offs.ec/46vPTMk 

Whether you're building elite cybersecurity teams or looking to join one, #TalentFinder connects the dots. Now available for hiring managers &amp; job seekers.

πŸ‘©β€πŸ’Ό For hiring managers: Tap into a verified pool of
OffSec (@offsectraining) 's Twitter Profile Photo

CVE-2025-30208 (Vite @ fs Path Traversal Bypass) πŸ”— offsec.com/blog/cve-2025-… A crafted ?import&raw?? query tricks Vite’s dev server into leaking files via ES module exports. Attackers can read sensitive files like /etc/passwd if the dev server is exposed. No auth required.

OffSec (@offsectraining) 's Twitter Profile Photo

5 tips to get you hired in cybersecurity! πŸ‘€ 1️⃣ Master and prove your craft 2️⃣ Increase your visibility with #TalentFinder 3️⃣ Tell your story, authentically 4️⃣ Build connections, stay connected 5️⃣ Gain cybersecurity experience πŸ”— offsec.com/blog/get-notic…