EXP-301 · OSED · For individual practitioners
EXP-301: what the course covers - and what we add.
EXP-301 (OSED) covers Windows exploit development: assembly, debugging with WinDbg, stack overflows, SEH, ROP and bypassing modern protections such as DEP and ASLR.
Who it is for
Testers and reverse engineers who want to develop Windows exploits themselves.
Course content (official scope)
- →x86 assembly and debugging
- →Stack overflows and SEH
- →ROP chains
- →DEP/ASLR bypass
- →Writing your own shellcode
Course content, labs and the OSED exam are provided by OffSec. The official course description always takes precedence. This page reviewed: 2026-08-07.
What Exploit Labs adds
- +Office hours with operators who use exploit development in live engagements
For security teams
Multiple people, role paths, reporting and procurement run through OffSec Learn Enterprise.
See Learn EnterpriseFor individual practitioners
Individual licence, access duration, exam attempts and preparation - start here.
See individual licences