Featured resource
2026 Tech Forecast
2026 Tech Forecast

1,500+ tech insiders, business leaders, and Pluralsight Authors share their predictions on what’s shifting fastest and how to stay ahead.

Download the forecast
  • Course

Buffer Overflow for Offensive Security Professionals

Master buffer overflows from first crash to working shell. Follow a practitioner-tested six-step methodology to identify, exploit, and weaponise stack-based buffer overflows, essential for eCPPT and the OSED pathway.

Advanced
34m

Created by Matt Lloyd Davies

Last Updated May 21, 2026

Course Thumbnail
  • Course

Buffer Overflow for Offensive Security Professionals

Master buffer overflows from first crash to working shell. Follow a practitioner-tested six-step methodology to identify, exploit, and weaponise stack-based buffer overflows, essential for eCPPT and the OSED pathway.

Advanced
34m

Created by Matt Lloyd Davies

Last Updated May 21, 2026

Get started today

Access this course and other top-rated tech content with one of our business plans.

Try this course for free

Access this course and other top-rated tech content with one of our individual plans.

This course is included in the libraries shown below:

  • Security
What you'll learn

Buffer overflows remain a core exploitation technique for any offensive security practitioner—and a foundational skill for eCPPT and the OSED (EXP-301) exploit development pathway. In this course, Buffer Overflow for Offensive Security Professionals, you’ll go from a vulnerable application to a working reverse shell using a clear, repeatable six-step methodology. First, you’ll build the mental model you need: how the call stack manages memory and why unchecked input creates exploitable conditions. Next, you’ll work hands-on through each step—: Fuzzing, crash replication, offset discovery, EIP control, bad character identification, and return address selection. Finally, you’ll weaponise a complete exploit using msfvenom shellcode and catch a live reverse shell. When you’re finished, you’ll have the skills and knowledge to confidently identify and exploit classic stack-based buffer overflows, and a solid foundation for tackling the more advanced exploit development techniques covered in OSED and the OSCE³ certification track.

Buffer Overflow for Offensive Security Professionals
Advanced
34m
Table of contents

About the author
Matt Lloyd Davies - Pluralsight course - Buffer Overflow for Offensive Security Professionals
Matt Lloyd Davies
47 courses 4.7 author rating 47 ratings

Matt has a degree in Chemical engineering and a PhD in mathematical chemistry. He is also a GIAC certified incident handler and penetration tester and has regulated cyber security in the UK civil nuclear sector for many years.

2025 Forrester Wave™ names Pluralsight as a Leader among tech skills dev platforms

See how our offering and strategy stack up.

forrester wave report