Ethical Hacking against and with AI/LLM/ML (Lite Version!)

所在平台: Udemy

课程主页: https://www.udemy.com/course/ethical-hacking-against-and-with-aillmml-training-course/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:与AI/LLM/ML进行和反对的伦理黑客(简化版!) 课程概述:欢迎参加本伦理黑客和渗透测试人工智能(AI)及大型语言模型(LLM)培训课程(简化版!)。请注意,本课程并不教授Burp Suite的实际使用及其功能。授课教师为马丁·沃尔克(Martin Voelk),他是一位拥有25年经验的网络安全专家,拥有诸多高等级认证,包括CISSP、OSCP、OSWP等,并且在一家大型科技公司担任顾问,同时参与漏洞奖励计划,发现了数千个关键和高风险漏洞。 本课程结合理论与实践实验,重点寻找和利用AI及LLM系统和应用中的漏洞,且与OWASP前十名LLM漏洞类别一致。马丁将解决Portswigger的所有LLM实验,另外还有许多其他实验和展示。视频内容简单易懂,便于跟随和复现,还有专门的部分介绍如何利用AI进行渗透测试、漏洞赏金猎杀和伦理黑客。 课程内容包括: - AI/LLM简介 - AI/LLM攻击 - AI/LLM框架/写作 - 各类AI LLM漏洞(如提示注入、不安全输出处理、训练数据投毒等) - 威胁模型 - 整合课程内容 - 使用AI进行渗透测试/伦理黑客 - Yolo AI工具 - Prompt Airlines CTF实操 - AI提示攻击与防御游戏Tensortrust 其他说明:Portswigger实验是公开的免费服务,任何人均可注册免费账户以提升技能。课程将不断更新新实验,讲师将合理时间内回应问题。学习渗透测试和漏洞赏金猎杀是一个漫长的过程,请耐心等待,不必因未能立即找到漏洞而感到挫败。请利用Google,参考Hacker One报告,并深入研究每个功能。本课程仅供教育用途,不得用于恶意攻击,必须仅在获得攻击许可的目标上使用。

课程评论(0条)

课程详情

Ethical Hacking against and with AI/LLM/ML Training Course (Lite Version!)Welcome to this course of Ethical Hacking and Penetration Testing Artificial Intelligence (AI) and Large Language Models (LLM) Training course. Important note: This course is NOT teaching the actual usage of Burp Suite and its features. Your instructor is Martin Voelk. He is a Cyber Security veteran with 25 years of experience. Martin holds some of the highest certification incl. CISSP, OSCP, OSWP, Portswigger BSCP, CCIE, PCI ISA and PCIP. He works as a consultant for a big tech company and engages in Bug Bounty programs where he found thousands of critical and high vulnerabilities.This course has a both theory and practical lab sections with a focus on finding and exploiting vulnerabilities in AI and LLM systems and applications. The training is aligned with the OWASP Top 10 LLM vulnerability classes. Martin is solving all the LLM labs from Portswigger in addition to a lot of other labs and showcases. The videos are easy to follow along and replicate. There is also a dedicate section on how to use AI for Penetration Testing / Bug Bounty Hunting and Ethical Hacking. The course features the following:· AI/LLM Introduction · AI/LLM Attacks· AI/LLM Frameworks / writeups· AI LLM01: Prompt Injection· AI LLM02: Insecure Output Handling· AI LLM03: Training Data Poisoning· AI LLM04: Denial of Service· AI LLM05: Supply Chain· AI LLM06: Permission Issues· AI LLM07: Data Leakage· AI LLM08: Excessive Agency· AI LLM09: Overreliance· AI LLM10: Insecure Plugins· Threat Model· Putting it all together· Using AI for Penetration Testing / Ethical Hacking· The Yolo AI Tool· Prompt Airlines CTF Walkthrough· AI Prompt Attack and Defense Game Tensortrust · ToolingNotes & DisclaimerPortswigger labs are a public and a free service from Portswigger for anyone to use to sharpen their skills. All you need is to sign up for a free account. I will update this course with new labs as they are published. I will to respond to questions in a reasonable time frame. Learning Pen Testing / Bug Bounty Hunting is a lengthy process, so please don't feel frustrated if you don't find a bug right away. Try to use Google, read Hacker One reports and research each feature in-depth. This course is for educational purposes only. This information is not to be used for malicious exploitation and must only be used on targets you have permission to attack.

课程标签

0人关注该课程

主题相关的课程