Master windows user mode exploit development (exp-301) with our Classroom and Online OSED Training at WebAsha Technologies. It builds the hands-on, 'Try Harder' skills validated by the OSED exam.
Training overview:
OSED is OffSec's exploit-development certification, earned through the EXP-301 course. It builds the ability to reverse engineer Windows binaries and write custom exploits from scratch (stack and SEH overflows, egghunters, custom shellcode, reverse engineering for bugs, and bypassing DEP and ASLR), proven in a 48-hour hands-on exam. OSED is one of the three certifications behind the OSCE³ designation.
Intended audience:
This course is ideal for penetration testers, reverse engineers, vulnerability researchers and offensive-security engineers who want to learn Windows exploit development and target the OSED certification.
Topics covered:
-
x86 & WinDbg: Assembly and debugging.
-
Stack overflows: Classic memory corruption.
-
SEH overflows: Structured exception handler attacks.
-
IDA Pro: Static reverse engineering.
-
Egghunters: Overcoming space restrictions.
-
Custom shellcode: Writing your own payloads.
-
Reverse engineering: Finding bugs in binaries.
-
Mitigation bypass: Defeating DEP and ASLR.
Requirements:
Comfort with Linux and the command line is recommended. Online participants need a stable internet connection and a laptop/desktop for the live labs.
Prerequisites:
There is no formal prerequisite. OffSec recommends familiarity with a debugger (WinDbg, Immunity or OllyDbg), basic 32-bit exploitation concepts, Python 3 coding ability, the ability to read C, and an understanding of 32-bit x86 assembly.
Career benefits:
Exploit development is a specialist, well-paid skill. In India, OSED-certified professionals typically earn ₹8 LPA to ₹42+ LPA in research and advanced offensive roles.