
This course has a both theory and practical lab sections with a focus on finding and exploiting vulnerabilities in AI and LLM systems and applications. The training is aligned with the OWASP Top 10 LLM as well as the OWASP Top 10 Agentic vulnerability classes. The videos are easy to follow along and replicate.
Your instructor is Martin Voelk. He is a Cyber Security veteran with 25 years of experience. Martin holds some of the highest certification incl. CISSP, OSCP, OSWP, Portswigger BSCP, CCIE, PCI ISA and PCIP. He works as a consultant for a big tech company and engages in Bug Bounty programs where he found thousands of critical and high vulnerabilities.
Syllabus
- Introduction
- Prompt Injection
- Sensitive Information Disclosure
- Supply Chain Vulnerabilities
- Model and Training Data Poisoning
- Improper Output Handling
- Excessive Agency
- Prompt Leakage
- Vector and Embedding Weaknesses
- Misinformation and Overreliance
- Unbounded Consumption and DoS
- OWASP PwnzzAI Shop
- OWASP Finbot
- OWASP Top 10 for Agentic Applications
- Portswigger – Agentic AI Labs
- Certified AI/LLM Penetration Tester
- Prompt Airlines AI/ML CTF Challenge
- SecOps Group AI/ML Mock Exams Walkthrough
- OWASP Finbot CTF
- Selara Jailbreak Game CTF
- Gandalf Agent Breaker CTF
- Hack The Agent CTF
- AI Prompt Attack and Defense Game Tensortrust
- Crowdstrike AI Unlocked Challenge
- Game Arena Challenges
- PromptTrace Prompt Injection Labs
- PromptInjects CTF
- 8ksec CTF
- AIPWN CTF
- Other CTFs
- Jailbreaking
- AI Browsers Attacks
- AI Coding Agents Attacks
- MCP Attacks
- Multimodal Attacks (Images, Audio and Video)
- Tooling
Security Education
OffSec
iNE
Antisyphon
EC-Council
Applied Network Defense
Kaspersky
Sektor7
CompTIA
TCM Security
BlackHat
13Cubed
Dark Vortex
Enciphers
Forty North
Cyber warfare Labs
Maltrak
Scorpio Software
Security Onion
Zero Point Security
SentinelOne
Altered Security
SpecterOps
Pentester Academy
CQURE
PluralSight
StationX
Cybr
موسسههای دیگر