OffSec (@offsectraining) 's Twitter Profile
OffSec

@offsectraining

Empowering the world to fight cyber threats with indispensable cybersecurity skills and resources. Build the path to a secure future with OffSec.

ID: 134994790

linkhttps://www.offsec.com/ calendar_today20-04-2010 01:49:28

5,5K Tweet

321,321K Followers

118 Following

OffSec (@offsectraining) 's Twitter Profile Photo

Introducing our newly improved course pages! ๐Ÿ’ฅ ๐Ÿ”— offs.ec/4kwKrMm We've made it easier to understand what each course offers, how it prepares you for the exam, which job roles it can lead to, and what you can expect from the Learning Library. You'll also find student

OffSec (@offsectraining) 's Twitter Profile Photo

How do you evaluate cybersecurity talent today? ๐Ÿ‘€ โ€œIโ€™ve done privilege escalation.โ€ โ€œIโ€™ve worked on red team projects.โ€ โ€œI perform well under pressure.โ€ Youโ€™ve heard it all before. But how do you know itโ€™s true? At OffSec, we focus on showing, not telling. Our labs and

How do you evaluate cybersecurity talent today? ๐Ÿ‘€

โ€œIโ€™ve done privilege escalation.โ€
 โ€œIโ€™ve worked on red team projects.โ€
 โ€œI perform well under pressure.โ€

Youโ€™ve heard it all before. But how do you know itโ€™s true?

At OffSec, we focus on showing, not telling. Our labs and
OffSec (@offsectraining) 's Twitter Profile Photo

#BlackHatUSA is almost here, and seats for our live training sessions are selling fast! ๐Ÿ”ฅ In partnership with Applied Technology Academy, our exclusive #BlackHat Training Partner, here are the upcoming sessions: ๐Ÿ‰ PEN-200: offs.ec/40N7Oua ๐Ÿ•ท๏ธ WEB-300: offs.ec/4kzBNNr ๐Ÿ’€

#BlackHatUSA is almost here, and seats for our live training sessions are selling fast! ๐Ÿ”ฅ

In partnership with <a href="/appliedtechac/">Applied Technology Academy</a>, our exclusive #BlackHat Training Partner, here are the upcoming sessions:
๐Ÿ‰ PEN-200: offs.ec/40N7Oua 
๐Ÿ•ท๏ธ WEB-300: offs.ec/4kzBNNr  
๐Ÿ’€
OffSec (@offsectraining) 's Twitter Profile Photo

๐Ÿโฌ†๏ธ Ready to level up your OSTH exam prep? Join us for our next #OffSecLive session designed to help you navigate the OSTH exam with clarity and confidence! Weโ€™ll break down the exam structure, highlight key topics, and share effective preparation strategies. Learn how to

OffSec (@offsectraining) 's Twitter Profile Photo

Deep Dive: CVE-2024-12029 (Critical RCE in InvokeAI) โš ๏ธ CVSS 9.8 | EPSS 61.17% An unprotected API + unsafe torch deserialization = full system takeover. Attackers can host malicious model files and trigger remote code execution via the /api/v2/models/install endpoint. No auth

Deep Dive: CVE-2024-12029 (Critical RCE in InvokeAI)
โš ๏ธ CVSS 9.8 | EPSS 61.17%

An unprotected API + unsafe torch deserialization = full system takeover.

Attackers can host malicious model files and trigger remote code execution via the /api/v2/models/install endpoint. No auth
OffSec (@offsectraining) 's Twitter Profile Photo

Dragon Drop: this week's NEW releasesย ๐Ÿ‰๐Ÿšจ๐Ÿ”ฅ ๐Ÿชฒย New CVE labs: โ†’ CVE-2025-27636_Attack:ย lnkd.in/exPHWinw โ†’ Defendย CVE-2025-27636:ย lnkd.in/edV-hqbR โ†’ CraftStorm_Attack:ย lnkd.in/eAYZQ9fw โ†’ Defend CraftStorm:ย lnkd.in/eY-z8AVA ๐Ÿงช Other new labs: โ†’

Mr.Niko (@_mrniko) 's Twitter Profile Photo

โœ… Excited to share that Iโ€™ve officially passed the OSCP+/OSCP certification!! OffSec #OSCP #CyberSecurity #EthicalHacking #OffensiveSecurity #InfoSec #ProfessionalDevelopment

โœ… Excited to share that Iโ€™ve officially passed the OSCP+/OSCP certification!! <a href="/offsectraining/">OffSec</a> 

#OSCP #CyberSecurity #EthicalHacking #OffensiveSecurity #InfoSec #ProfessionalDevelopment
OffSec (@offsectraining) 's Twitter Profile Photo

Calling all learners in Taiwan! ๐Ÿšจ๐Ÿ‡น๐Ÿ‡ผ We're excited to announce live training sessions in Taiwan, brought to you by OffSec & Devcore (DEVCORE), one of our training partners. The sessions, running between August 18 and 22, will cover PEN-300, EXP-401, and WEB-300 โ›“๏ธโ€๐Ÿ’ฅ๐Ÿ’€๐Ÿ•ท๏ธ

Calling all learners in Taiwan! ๐Ÿšจ๐Ÿ‡น๐Ÿ‡ผ

We're excited to announce live training sessions in Taiwan, brought to you by OffSec &amp; Devcore (<a href="/d3vc0r3/">DEVCORE</a>), one of our training partners. The sessions, running between August 18 and 22, will cover PEN-300, EXP-401, and WEB-300 โ›“๏ธโ€๐Ÿ’ฅ๐Ÿ’€๐Ÿ•ท๏ธ
OffSec (@offsectraining) 's Twitter Profile Photo

๐Ÿšจ Could you spot a phishing email? Follow โ€œBad Luck Benโ€ and โ€œTechnical Tinaโ€ as they uncover a real-world scenario inside MegaCorp One. Youโ€™ll learn: ๐ŸŽฃ How phishing attacks are crafted and executed ๐Ÿ” What attackers are looking for (hint: itโ€™s more than your password) โš ๏ธ The

OffSec (@offsectraining) 's Twitter Profile Photo

#BlackHatUSA is just one week away, and we have some spaces remaining in our WEB-300 live training session! ๐Ÿ•ท๏ธ As prep for the #OSWE certification, the session will help you to: ๐Ÿง  Tackle real-world attack vectors ๐Ÿ’ฅ Exploit misconfigurations and logic flaws ๐Ÿ› ๏ธ Get hands-on with

#BlackHatUSA is just one week away, and we have some spaces remaining in our WEB-300 live training session! ๐Ÿ•ท๏ธ

As prep for the #OSWE certification, the session will help you to:
๐Ÿง  Tackle real-world attack vectors
๐Ÿ’ฅ Exploit misconfigurations and logic flaws
๐Ÿ› ๏ธ Get hands-on with
OffSec (@offsectraining) 's Twitter Profile Photo

"It's not about having the answers given to you. It's about being willing to explore, to struggle, and learn from setbacks. The answer is often right there, just experiment until you find that breakthrough." ๐ŸŽง Want to listen to our latest #TryHarder podcast? Check it out here:

OffSec (@offsectraining) 's Twitter Profile Photo

Congratulations, Kamaldeep Singh Rajal! ๐Ÿ‘๐Ÿ† To continue with our Try Harder monthly series, we're celebrating dedicated individuals who embody the spirit of #TryHarder. This month, weโ€™re recognizing Kamaldeep, who now holds the OSCP & OSWE ๐Ÿ‰๐Ÿ•ท๏ธ "This journey was truly tough

Congratulations, Kamaldeep Singh Rajal! ๐Ÿ‘๐Ÿ†

To continue with our Try Harder monthly series, we're celebrating dedicated individuals who embody the spirit of #TryHarder. This month, weโ€™re recognizing Kamaldeep, who now holds the OSCP &amp; OSWE ๐Ÿ‰๐Ÿ•ท๏ธ

"This journey was truly tough
OffSec (@offsectraining) 's Twitter Profile Photo

Dragon Drop: this week's NEW releases ๐Ÿ‰๐Ÿšจ๐Ÿ”ฅ ๐Ÿ’ฅ New modules: โ†’ PEN-200 | Extra Mile: Offensive Cloud Lab 03: portal.offsec.com/learning-modulโ€ฆ โ†’ EXP-301 | VMware Workstation Guest-To-Host Escape: portal.offsec.com/learning-modulโ€ฆ ๐Ÿชฒ New CVE labs: โ†’ CVE-2025-24801: portal.offsec.com/machine/cve-20โ€ฆ โ†’

OffSec (@offsectraining) 's Twitter Profile Photo

Introducing Talent Finder ๐Ÿ”๐Ÿ’Ž ๐Ÿ”— offs.ec/46vPTMk Whether you're building elite cybersecurity teams or looking to join one, #TalentFinder connects the dots. Now available for hiring managers & job seekers. ๐Ÿ‘ฉโ€๐Ÿ’ผ For hiring managers: Tap into a verified pool of

Introducing Talent Finder ๐Ÿ”๐Ÿ’Ž 
๐Ÿ”— offs.ec/46vPTMk 

Whether you're building elite cybersecurity teams or looking to join one, #TalentFinder connects the dots. Now available for hiring managers &amp; job seekers.

๐Ÿ‘ฉโ€๐Ÿ’ผ For hiring managers: Tap into a verified pool of
OffSec (@offsectraining) 's Twitter Profile Photo

CVE-2025-30208 (Vite @ fs Path Traversal Bypass) ๐Ÿ”— offsec.com/blog/cve-2025-โ€ฆ A crafted ?import&raw?? query tricks Viteโ€™s dev server into leaking files via ES module exports. Attackers can read sensitive files like /etc/passwd if the dev server is exposed. No auth required.

OffSec (@offsectraining) 's Twitter Profile Photo

5 tips to get you hired in cybersecurity! ๐Ÿ‘€ 1๏ธโƒฃ Master and prove your craft 2๏ธโƒฃ Increase your visibility with #TalentFinder 3๏ธโƒฃ Tell your story, authentically 4๏ธโƒฃ Build connections, stay connected 5๏ธโƒฃ Gain cybersecurity experience ๐Ÿ”— offsec.com/blog/get-noticโ€ฆ