Blog
News and updates from OffSec
Dec 17, 2025
November 2025 Content & Platform Update
Explore OffSec’s September 2025 Content & Platform Update with new Admin functionalities and even more labs.
Categories

Product Updates
October 2025 Content & Platform Update
Explore OffSec’s September 2025 Content & Platform Update with a new Learning Path, and even more new content and labs.
Dec 17, 2025

Product Updates
September 2025 Content & Platform Update
Explore OffSec’s September 2025 Content & Platform Update with NIST NICE Mapping, MITRE ATT&CK Coverage Report & SkillScope.
Dec 17, 2025

Enterprise Security
6 Benefits of a Fully Certified Cybersecurity Team
Discover 6 key benefits of a fully certified cybersecurity team, from faster onboarding to confident hiring. Learn how unified training drives performance.
Dec 16, 2025
11 min read

Enterprise Security
Blue Team vs Red Team: Should Defenders Learn Offensive Skills?
Discover why blue team defenders benefit from red team skills. Learn how offensive knowledge improves detection, incident response, and career growth.
Dec 16, 2025
10 min read

Insights
How Will AI Affect Cybersecurity?
As organizations deploy AI tools to improve detection accuracy, streamline investigations, and strengthen defenses, threat actors are leveraging the same technologies to develop more efficient and adaptive attack methods. This article outlines the current and emerging roles of AI in cybersecurity, including its defensive applications, its misuse by attackers, and the new attack surfaces it
Dec 9, 2025
10 min read

Career Advice
How to Gain Experience in Cybersecurity
Developing meaningful experience in the cybersecurity field is a common challenge for professionals who have already entered the industry and want to advance their cybersecurity skills. As roles become more technical and responsibilities broaden, it becomes clear that foundational exposure alone is not enough. Employers expect practitioners to demonstrate practical capability, sound judgment, and the
Dec 9, 2025
11 min read

Research & Tutorials
CVE-2025-55182 – React Server Components RCE via Flight Payload Deserialization
React Server Components promise less client-side JavaScript, but that convenience can hide serious risk. Learn how CVE-2025-55182 (CVSS 10.0) enables critical RCE in the RSC ecosystem, why it happened, and how the public exploit works against React’s server-side handling.
Dec 5, 2025
5 min read

Enterprise Security
Why Enterprises Are Moving from Generic Cyber Training to Cyber Ranges
Transform enterprise cyber training with realistic cyber ranges. Move beyond generic courses to hands-on attack simulations in production-like environments.
Nov 5, 2025
11 min read

Research & Tutorials
Unauthenticated Remote Code Execution Vulnerability in WSUS Service
CVE-2025-59287 exposes a critical WSUS deserialization flaw enabling unauthenticated remote code execution via unsafe AuthorizationCookie handling. Learn the risks and fixes.
Nov 3, 2025
4 min read

OffSec News
Save 20% on OffSec’s Learn One!
Get 20% off Learn One with labs, exams, and certifications. Act fast! Discount will be gone in a flash.
Oct 30, 2025
3 min read

Community Spotlight
From Failure to 100: How Akas Earned His OSCP+
In this guide, we’re sharing an inspiring story from one of our OSCP+ Certified Holders who embodies the journey of Try Harder. We’d like to introduce you to Akas Wisnu Aji (justakazh), a Cyber Security Consultant from Indonesia, who became certified in May 2025 after overcoming two failed attempts. Instead of giving up, Akas chose
Oct 24, 2025
1 min read

Career Advice
OSCP vs. OSWE: Which Certification Fits Your Career Goals?
OSCP vs OSWE: find out which OffSec certification suits you best! Build pen testing expertise or master advanced web exploit development.
Oct 22, 2025
3 min read
Join the OffSec Community!
Our community members connect, communicate and collaborate on all things cybersecurity.