Course
digicode: OSAI
Advanced AI Red Teaming (AI-300) – OSAI+ Certification
Course facts
Download as PDF- Identifying and analyzing attack surfaces and vulnerabilities in modern AI systems
- Assessing the security risks of LLMs, RAG applications, and AI agents
- Planning and executing structured red-team attacks on AI-based applications
- Exploiting AI-specific vulnerabilities and misconfigurations in realistic attack scenarios
- Manipulating AI agents, models, data sources, and connected tools to investigate potential attack paths
- Combining various attack techniques across applications, models, the supply chain, and infrastructure
- Documenting and evaluating identified vulnerabilities and attack paths as part of a professional AI red team engagement
- Fundamentals and Methods of AI Red Teaming
- Reconnaissance and Identification of AI Attack Surfaces
- Attacks on Generative AI and Large Language Models (LLMs)
- AI Agents: Prompt-, Memory-, and Tool-Based Attacks
- Multi-Agent Systems and Agent-to-Agent (A2A) Protocols
- Retrieval-Augmented Generation (RAG): Manipulation and Poisoning of Knowledge Sources and Retrieval Processes
- Attacks on Embeddings and Extraction of Sensitive Information
- Model Context Protocol (MCP) and Attacks on Tool Integrations
- Supply Chain Attacks on AI/ML Systems, Models, Data, and Dependencies
- Vulnerabilities in AI infrastructures, cloud AI platforms, model servers, and containerized ML workloads
- Threat modeling for AI-based systems
- Combining various attack techniques in a realistic AI red team engagement
- Hands-on exercises and labs on modern AI attack scenarios
- Preparation for the OffSec AI Red Teamer (OSAI+) certification exam
Consists of the following modules
- Advanced AI Red Teaming (AI-300) – OSAI+ Certification
- Brush-Up: Advanced AI Red Teaming
The course combines five days of intensive, instructor-led training with a subsequent individual learning and practice phase. During the training days, the instructor covers the AI-300 curriculum in a structured manner, consistently integrating theory with demonstrations, hands-on exercises, and realistic AI red-teaming scenarios.
After the training, you’ll deepen your understanding of the material on your own with your Learn One subscription. For 365 days, you’ll have access to OffSec’s learning materials and labs to reinforce attack techniques, solve complex scenarios independently, and further develop your practical skills in a targeted manner.
Your preparation concludes with a brush-up session with the trainer, which is already included in the course. The date is scheduled—or rescheduled if necessary—so that the brush-up takes place as close as possible to your scheduled OSAI exam. During this session, you’ll clarify any remaining questions, reinforce key topics, and receive final tips for your exam preparation.
The Learn One subscription includes:
- 365 days of access to AI-300 and the associated hands-on labs
- AI-300 course materials, including the option to download PDF and video versions during the subscription period
- Two attempts at the OSAI+ certification exam
- Access to Proving Grounds (PG Play & Practice) for additional hands-on training
- Access to the Learning Paths and Fundamentals content included in Learn One
- Access to PEN-210 (Wireless Attacks), including one OSWP exam attempt
- Access to PEN-103 / Kali Linux, including one KLCP exam attempt
- Baseline assessments and assessments for the 100-level content
The AI-300 is ideal for you if you already have a solid foundation in cybersecurity, penetration testing, or AI/ML and want to specialize in offensive testing of modern AI systems. The course is specifically designed for:
Penetration Testers & Red Teamers: You want to expand your existing offensive security skills to include LLMs, AI agents, RAG systems, and other modern AI technologies, and explore new attack surfaces through hands-on practice.
AI Security Specialists & Security Engineers: You are responsible for the security of AI-based systems and want to understand attack techniques from an attacker’s perspective, uncover vulnerabilities, and thoroughly assess security risks.
AI/ML Engineers & Developers: You develop or operate AI applications and want to understand how models, data, agents, tools, and AI infrastructures can be attacked and manipulated.
Security Consultants & Experienced Cybersecurity Professionals: You want to expand your profile to include AI red teaming and demonstrate your practical skills with the OffSec AI Red Teamer (OSAI+) certification.
Since the AI-300 is an advanced-level training course, you must have solid technical knowledge and practical experience:
- Strong knowledge of penetration testing and offensive security
- Proficiency with Linux, networks, and the command line
- Strong knowledge of Python and experience reading and modifying code
- Basic understanding of web application security, APIs, and modern application architectures
- Understanding of fundamental AI and machine learning concepts, particularly large language models (LLMs) and generative AI
- Experience working with AI applications and LLM-based systems is a plus
To successfully earn certification, it’s important that you engage intensively with complex technical problems and practice independently in the labs.
Recommendation: Practical experience at the PEN-200/OSCP level or comparable knowledge will make it easier for you to get started.
The AI-300 course prepares you for the OffSec AI Red Teamer (OSAI+) certification. The exam is hands-on and assesses your ability to identify and exploit vulnerabilities in modern AI systems and to document your findings professionally.
- Exam duration: 23 hours and 45 minutes
- Documentation: Up to 24 hours afterward to submit the exam report
- Format: Practical, proctored, hands-on exam
- Exam environment: Realistic AI red-teaming scenarios
- Focus: Attacks on AI applications and systems, as well as the combination of various AI red-teaming techniques
- Exam Report: The approach, identified vulnerabilities, and results achieved must be documented in a clear and traceable manner
- Exam Attempts: Two attempts are included in your Learn One subscription
Certification
Upon successful completion of the exam, you will receive the OffSec AI Red Teamer (OSAI+) certification and the corresponding digital certificate from OffSec. No additional application or proof of specific professional experience is required.
Recertification
The OSAI+ certification is valid for three years. To maintain the “+” status, OffSec offers various recertification options, including earning the required Continuing Professional Education (CPE) credits or passing a qualifying OffSec exam. The current provisions of the OffSec Continuing Professional Education Program apply.