The Ultimate AI/LLM/ML Penetration Testing Training Course

所在平台: Udemy

课程主页: https://www.udemy.com/course/the-ultimate-ai-llm-penetration-testing-training-course/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:终极人工智能/大语言模型/机器学习渗透测试培训课程 概述: 该课程由网络安全专家马丁·福尔克(Martin Voelk)教授,他拥有25年的经验,并持有多个高级认证,包括CISSP、OSCP、OSWP等。马丁作为一名顾问在一家大型科技公司工作,参与漏洞奖金计划,发现了数千个关键和高风险漏洞。课程内容包括理论讲解与实际实验,重点在于发现和利用人工智能及大语言模型系统和应用程序的漏洞,并与OWASP前十名大语言模型漏洞类别相结合。 课程特点: - 漏洞探测与利用:包括提示注入、敏感信息泄露、供应链攻击、数据和模型污染、不当输出处理、过度代理等内容。 - 实操实验:解决Portswigger提供的各种实验,并包含其他多个实验和展示。 - 视频教程:简洁易懂,便于跟随和复现。 - 竞赛挑战:包括Prompt Airlines CTF挑战、SecOps小组AI/ML模拟考试等。 - 工具使用:分享相关工具的使用技巧及注意事项。 学习支持: Portswigger的实验为公共免费服务,每位学员需免费注册账户以练习。马丁会在合理的时间内回答问题。本课程仅用于教育目的,信息不得用于恶意利用,攻击目标需事先获得授权。 适合人群: 本课程适合希望学习渗透测试和漏洞猎捕的初学者及中级从业者,学习过程较长,建议耐心对待,并利用各种资源深入研究。

课程评论(0条)

课程详情

The Ultimate AI/LLM/ML Penetration Testing CourseYour instructor is Martin Voelk. He is a Cyber Security veteran with 25 years of experience. Martin holds some of the highest certification incl. CISSP, OSCP, OSWP, Portswigger BSCP, CCIE, PCI ISA and PCIP. He works as a consultant for a big tech company and engages in Bug Bounty programs where he found thousands of critical and high vulnerabilities.This course has a both theory and practical lab sections with a focus on finding and exploiting vulnerabilities in AI and LLM systems and applications. The training is aligned with the OWASP Top 10 LLM vulnerability classes. Martin is solving all the LLM labs from Portswigger in addition to a lot of other labs and showcases. The videos are easy to follow along and replicate. The course features the following:· Prompt Injection· Sensitive Information Disclosure· Supply Chain· Data and Model Poisoning· Improper Output Handling· Excessive Agency· System Prompt Leakage· Vector and Embedding Weaknesses· Misinformation· Unbounded Consumption and DoS· Prompt Airlines CTF Challenge Walkthrough· SecOps Group AI/ML Mock Exams 1 & 2 Walkthrough· AI Prompt Attack and Defense Game Tensortrust · ToolingNotes & DisclaimerPortswigger labs are a public and a free service from Portswigger for anyone to use to sharpen their skills. All you need is to sign up for a free account. I will to respond to questions in a reasonable time frame. Learning Pen Testing / Bug Bounty Hunting is a lengthy process, so please don't feel frustrated if you don't find a bug right away. Try to use Google, read Hacker One reports and research each feature in-depth. This course is for educational purposes only. This information is not to be used for malicious exploitation and must only be used on targets you have permission to attack.

课程标签

0人关注该课程

主题相关的课程