What Is The Exploitation Analysis Learning Path?
The Exploitation Analysis Learning Path is built for practitioners who are ready to move beyond the fundamentals and develop specialized offensive skills across a wide range of targets and techniques. Whether you’re expanding your pentesting toolkit, pursuing bug bounty work, or building toward malware research, this path gives you the technical depth and credentials to operate at a higher level. It also includes additional courses you won’t get with the certification vouchers on their own.
What Is Included?
You can work through the material in any order.
- 149.5 hours of on-demand training
- Hands-on labs
- Practical Network Penetration Tester (PNPT) exam voucher + 1 free retake
- Practical Web Pentest Professional (PWPP) exam voucher + 1 free retake
- Practical Malware Research Professional (PMRP) exam voucher + 1 free retake
- 3 years of access
Learning paths offer access to additional content beyond the training included with certifications and also offer additional savings on TCM certifications and training.
$1295
$202 off the certifications alone plus 70 hours of additional training content.
Learning paths are excluded from the 20% off discount for students, educators, first responders, former and active military members.
Who Should Pursue the Exploitation Analysis Learning Path?
This path is for you if:
- You’re a junior or mid-level practitioner looking to specialize and stand out
- You’re already working in offensive security and want credentials that reflect your depth
- You’re pursuing bug bounty, red team, or malware research roles and need to demonstrate range
Develop Specialized Offensive Skills
We recommend working through the path in this order, grouped into three phases that each build toward a certification, but you’re free to take the courses and exams in whatever sequence works for you. You get 149.5 hours of training across eighteen courses, plus all three exams.
More than the certs alone. The path includes additional courses that don’t come with the certification vouchers on their own, so you get real breadth across the attack surface, not just exam prep. Asterisks indicate extra course content that is only available in the TCM Academy and not included with the traditional certification training packages.

Phase 1: Enterprise Network Penetration Testing
- Practical Phishing Campaigns course*
- External Pentest Playbook course
- Python 101 For Hackers course*
- Practical Ethical Hacking course
- Windows Privilege Escalation course
- Linux Privilege Escalation course
- Open-Source Intelligence (OSINT) Fundamentals course
- Practical Nework Penetration Testing (PNPT) exam

Phase 2: Web and Modern Attack Surface

Phase 3: Malware Analysis and Low-Level Tooling
- Assembly 101 course*
- C# 101 for Hackers course*
- Python 201 For Hackers course*
- Soft Skills for the Job Market course*
- Practical Malware Analysis & Triage course
- Practical Malware Research Professional (PMRP) exam
TCM Security Learning Paths Include:
On-Demand Video Training
Receive 36 months of access to video-led training that was developed to help guide you through a hands-on learning experience.
Realistic Exams
Free Retake
Industry Recognized
Non-Invasive Experience
Stable Environments
Unbeatable Support
Frequently Asked Questions
General FAQ
Do exam vouchers expire?
Your three exam vouchers are valid for three years, starting on the day of purchase.
Does my training expire?
The path comes with three years of training access, starting from the purchase date.
