SEC536: Adversarial AI - Penetration Testing AI Systems

Important! Bring your own system configured according to these instructions.
A properly configured system is required to fully participate in this course. If you do not carefully read and follow these instructions, you will likely leave the class unsatisfied because you will not be able to participate in hands-on exercises that are essential to this course. Therefore, we strongly urge you to arrive with a system meeting all the requirements specified for the course.
It is critical that you back up your system before class. It is also strongly advised that you do not bring a system storing any sensitive data.
Mandatory System Hardware Requirements
Mandatory Host Configuration and Software Requirements
Your course media is delivered via download. The media files for class can be large. Many are in the 40-50GB range, with some over 100GB. You need to allow plenty of time for the download to complete. Internet connections and speed vary greatly and are dependent on many different factors. Therefore, it is not possible to give an estimate of the length of time it will take to download your materials. Please start your course media downloads as soon as you get the link. You will need your course media immediately on the first day of class. Do not wait until the night before class to start downloading these files.
Your course materials include a "Setup Instructions" document that details important steps you must take before you travel to a live class event or start an online class. It may take 30 minutes or more to complete these instructions.
Your class uses an electronic workbook for its lab instructions. In this new environment, a second monitor and/or a tablet device can be useful for keeping class materials visible while you are working on your course's labs.
If you have additional questions about the laptop specifications, please contact customer service.
This course is will enable attack-focused and defense-focused security practitioners, as well as those designing and implementing embedded, IoT, and IIoT solutions across many verticals (automotive, healthcare, consumer electronics, industrial instrumentation, smart home, etc.). This course is suited for:
Attendees are expected to have a working knowledge of TCP/IP and web technologies and a basic knowledge of the Linux command lines before they come to class. While SEC556 is technically in-depth, it is important to note that programming knowledge is not required for the course.
SEC556 is part of the Offensive Operations curriculum. It is considered a Specialized Penetration Testing course, alongside courses SEC575 iOS and Android Application Security Analysis and Penetration Testing, SEC580 Metasploit for Enterprise Penetration Testing, and SEC617 Wireless Penetration Testing and Ethical Hacking.
IoT (Internet of Things) security training focuses on teaching professionals how to secure connected devices—everything from smart thermostats and industrial sensors to medical equipment and automotive tech. These devices often have limited computing resources and weak default security, making them vulnerable to attack.
At SANS, this training is part of our broader commitment to empower practitioners with real-world, hands-on skills. It typically includes:

Get feedback from the world’s best cybersecurity experts and instructors

Choose how you want to learn - online, on demand, or at our live in-person training events

Get access to our range of industry-leading courses and resources