Train to become OSAI+ certified
AI-300 (OSAI+)
Advanced AI Red Teaming
The OffSec AI-300 teaches you advanced skills in the field of AI Red Teaming. You will learn how to specifically analyze and attack AI and machine learning systems and uncover vulnerabilities. The focus is on real-life attack scenarios against modern AI applications – from prompt injection to the manipulation of models and data. Through practical labs, you will develop a deep understanding of the security risks and defense measures in the environment of AI systems.

Included services
Your added value with the Red & Blue Alliance
- Training with a strong practical orientation
- Individually selected OffSec license (Course & Cert, Learn One, Learn Enterprise)
- Professional team of trainers with many years of practical experience in IT security companies
- Course language English – trainers are at least bilingual (DE/EN)
- Catering included during the training days (for public face-to-face training courses)
Trainer support included – even after the course: Our Discord channel provides you with direct exchange with trainers, professional support and targeted guidance on your way to certification.
Aims of the training
AI-300 (OSAI+)
The training enables you to systematically check AI systems and assess their security risks.
- You analyze AI and ML systems from an attacker’s perspective
- You identify vulnerabilities in AI applications
- You carry out targeted attacks (e.g. prompt injection)
- You assess the risks and impact of AI attacks
- You develop strategies for securing AI systems
This allows you to realistically test modern AI systems and make a sound assessment of their security level.
Target group & requirements
Target group
The course is aimed at experienced security specialists who want to deal with the protection and testing of AI systems.
- Penetration Tester & Red Teamer
- Security analysts with a focus on new technologies
- AI/ML Engineers with an interest in security
- Application security specialists
Ideal for you if you work or would like to work at the interface of cybersecurity and artificial intelligence.
Prerequisites
The course requires advanced knowledge of IT security and a basic understanding of AI.
- Sound knowledge of IT security / penetration testing
- Basic understanding of machine learning and AI concepts
- Experience with web and API security
- Basic knowledge of scripting or programming (e.g. Python)
- Analytical and creative thinking
Experience at PEN-200 or WEB-200/300 level is an advantage.
Seminar content
Contents of the AI-300 (OSAI+)
The focus is on attack techniques and security analyses specifically for AI systems.
- AI/ML Fundamentals for Security
The basics of machine learning from an attacker’s perspective - Threat Modeling for AI Systems
Identification of attack surfaces in AI architectures - Prompt Injection & LLM Attacks
Manipulation of LLMs and AI-supported applications - Data Poisoning Attacks
Manipulation of training data to influence models - Model Evasion Techniques
Evasion of detection mechanisms in ML systems - Adversarial machine learning
Creation of targeted inputs to deceive models - API & Integration Attacks
Attacks on AI APIs and connected systems - Defense & Mitigation Strategies
Development of protective measures for AI systems - AI Red Teaming Methodology
Structured implementation of security assessments for AI
The aim is to understand AI systems holistically, attack them in a targeted manner and derive effective security measures.
The right license for your requirements
With Course & Cert, Learn One and Learn Enterprise, we offer three different learning models – from targeted certification to comprehensive, scalable training. The following overview shows the most important differences at a glance.
Course & Cert
The classic entry option for a single course.
- 1 course + certification
- 90 days Lab access
- 1 examination attempt
- Download the course materials
Ideal for you if you want to prepare specifically for certification
👉 In short: focused, affordable, but not very flexible
Learn One
Your annual subscription with significantly more options.
- 1 200 or 300 level course + certification
- 365 days Lab access
- 2 exam attempts
- Access to exercise environments, challenge labs and learning paths
- Download the course materials
Ideal for you if you want to build up several skills or broaden your base
👉 In short: flexible, comprehensive, highly practice-oriented
Learn Enterprise
The corporate solution for structured team training.
- Unlimited choice of courses
- 6 examination attempts/certification per year
- 365 days Lab access
- Central management of users, progress and licenses
- Reporting & analytics for training progress
- Individual learning paths for different roles (e.g. SOC, Pentest, Blue Team)
- Scalable for larger teams or entire departments
👉 In short: scalable, controllable, ideal for strategic training
