SEC536: Adversarial AI - Penetration Testing AI Systems

Important! Bring your own system configured according to these instructions!
A properly configured system is required to fully participate in this course. If you do not carefully read and follow these instructions, you will likely leave the class unsatisfied because you will not be able to participate in hands-on exercises that are essential to this course. Therefore, we strongly urge you to arrive with a system meeting all the requirements specified for the course.
It is critical that you back-up your system before class. It is also strongly advised that you do not bring a system storing any sensitive data.
CPU
BIOS
RAM
Hard Drive Free Space
Operating System
Additional Software Requirements
VMware Player Install:
Your course media will now be delivered via download. The media files for class can be large, some in the 40 - 50 GB range. You need to allow plenty of time for the download to complete. Internet connections and speed vary greatly and are dependent on many different factors. Therefore, it is not possible to give an estimate of the length of time it will take to download your materials. Please start your course media downloads as you get the link. You will need your course media immediately on the first day of class. Waiting until the night before the class starts to begin your download has a high probability of failure.
If you have additional questions about the laptop specifications, please contact customer service.
The GIAC AI Penetration Tester (GAIPT) certification validates a practitioner's hands-on AI penetration testing skills for assessing and exploiting vulnerabilities in enterprise AI systems.
You keep a VM containing ten hands-on labs. Run them repeatedly, try hard mode, or any of the multiple bonus modes each lab has. You also leave with the Marimo workbooks covering every major concept and a working mental model of how AI-integrated systems fail and how to communicate that to the people funding the rollout.
Students should be comfortable with HTTP APIs and familiar with general web and application security concepts. An AI or ML background is helpful but not required. Python experience is useful for customizing payloads and tooling but is not a prerequisite.
Start with SEC504: Hacker Tools, Techniques, and Incident Handling to develop an attacker mindset, then SEC560: Enterprise Penetration Testing to learn the methodology for conducting pen tests and the full attack lifecycle, then this course, SEC536, to specialize in attacking AI-integrated systems, then SEC660: Advanced Penetration Testing, Exploit Writing, and Ethical Hacking to learn how to level up your skills and develop novel, advanced techniques.
SEC536: Adversarial AI is built around a single discipline: studying and executing the attacks that adversaries are running against production AI systems today. Adversarial AI is the offensive side of AI security, where penetration testers, red teamers, and security engineers exploit LLMs, RAG pipelines, agents, MCP tool servers, and the model supply chain to surface failures that traditional security tooling was never designed to find. Its purpose is to give organizations an honest picture of their AI risk exposure so they can make informed decisions about the AI features they are racing to deploy.
SEC536 puts these techniques in students' hands across two days of attacks against a realistic, production-shaped environment. By the end, participants can assess AI-integrated systems with confidence, communicate the findings to the executives funding the rollout, and reduce real exposure before attackers find the same gaps.
Completing SEC536 puts you in a small group of practitioners who can confidently assess AI systems under real attack conditions, a capability almost every organization deploying AI urgently needs and very few people currently have.
Overall, SEC536 builds a rare and highly valued skill set, positions you for the AI security roles emerging across the industry, and gives you the practical experience to operate at the front edge of where cybersecurity is moving.

Get feedback from the world’s best cybersecurity experts and instructors

Choose how you want to learn - online, on demand, or at our live in-person training events

Get access to our range of industry-leading courses and resources