OffSec Web Expert
AdvancedPenetration TestingPaid
Advanced web application exploitation certification focused on white-box code review, custom exploit development, and advanced vulnerability chaining. Covers authentication bypass, code injection, deserialization, and RCE via source code analysis. Part of OSCE³. Does not expire.
What you'll prove
- Perform white-box code review to identify complex vulnerabilities
- Develop custom exploits for web application vulnerabilities from source code analysis
- Chain multiple vulnerabilities to achieve remote code execution
- Exploit deserialization, type juggling, and authentication bypass vulnerabilities
- Write professional technical reports for white-box assessment findings
Frequently asked
How much does OSWE cost?
OSWE is available via Learn One at $2,749/year (includes WEB-300 course, 1 year of labs, and 2 exam attempts).
Where this fits