Blog
News and updates from OffSec

Sep 21, 2021
New OffSec Training Library Subscriptions: Learn One and Learn Unlimited
The OffSec Training Library is a subscription-based cybersecurity training platform. Discover more about our Learn One and Learn Unlimited subscriptions.
Categories

Research & Tutorials
PowerShell Obfuscation
In this article, community moderator Tristram (gh0x0st) shares with us an approach to scripting payload obfuscation via PowerShell in order to avoid AV and AMSI detection.
Aug 23, 2021
20 min read

Research & Tutorials
Learning how to hack has a long feedback loop.
How do we learn hacking? What is OffSec’s teaching philosophy? We answer these questions and many more in our How We Teach Hacking webinar.
Aug 11, 2021
3 min read

OffSec News
What’s New at OffSec – May 2021
Find the latest on our Discord Server Updates, our recent podcast episodes and the newest applications, tools, etc. created by our OffSec Community Members.
May 28, 2021
6 min read

Penetration Testing
Introduction of Recently Retired OSCP Exam Machines in PWK Labs
Students can now take advantage of their PWK Labs IT network with the addition of 5 retired OSCP exam machines. Learn more about why we’ve made these changes.
May 26, 2021
3 min read

Research & Tutorials
eXtended Flow Guard Under The Microscope
Microsoft seems to be continuously expanding and evolving its set of security mitigations designed and implemented for Windows 10. In this blog post, we’ll examine an upcoming security feature called eXtended Flow Guard (XFG).
May 18, 2021
8 min read

Research & Tutorials
CVE-2021-1815 – macOS local privilege escalation via Preferences
Apple fixed three vulnerabilities in macOS 11.3’s Preferences. Here we present our writeup about how we identified one of the issues, and how we exploited it.
May 6, 2021
6 min read

Research & Tutorials
Intel CET In Action
In this article, we’ll examine how effective CET is at mitigating real-world exploits that make use of ROP or stack based buffer overflow vulnerabilities.
Apr 29, 2021
9 min read

Penetration Testing
Understanding the Penetration Testing Tools and Scripts You Can Use
In this blog post Offensive Security will explain why you should take the time to understand and learn about your tools before you run them.
Apr 22, 2021
5 min read

OffSec News
What’s New for April 2021
We’re spilling the details! Find out what’s new and what’s coming with this monthly recap of what’s happening at Offensive Security.
Apr 14, 2021
5 min read

Penetration Testing
The Broader Application of Pentesting Skills
Learn how the fundamental skills taught in Penetration Testing with Kali Linux (PWK) are applicable beyond a career in pentesting.
Mar 9, 2021
4 min read

Community Spotlight
J3rryBl4nks’s PEN-300 Approach
OSCP holder J3rryBl4nks shares his thoughts on Offensive Security’s Evasion Techniques and Breaching Defenses course.
Feb 9, 2021
4 min read

Penetration Testing
EVASION TECHNIQUES AND BREACHING DEFENSES (PEN-300) AND OSEP EXAM REVIEW
What do you need to know before taking Evasion Techniques and Breaching Defenses (PEN-300)? Nullg0re gives us his review on the new course.
Jan 19, 2021
7 min read
Join the OffSec Community!
Our community members connect, communicate and collaborate on all things cybersecurity.