Leverage cutting-edge AI tools and techniques to enhance offensive security operations. Learn to automate reconnaissance, exploit development, and post-exploitation activities using machine learning and large language models. 18 CPEs.
Prepare for AI-enabled cyber threats by mastering the offensive AI tools adversaries already deploy. This course equips penetration testers with cutting-edge AI techniques to automate reconnaissance, bypass security guardrails, and deliver AI-driven attacks.
Today's threat landscape has fundamentally changed. AI-driven attacks shatter barriers that once kept unsophisticated threat actors at bay. Stay ahead by adopting attacker tools, tactics, and techniques before adversaries exploit them against your organization.
Through 14 immersive labs, apply real-world TTPs across three focused days:
Day 1: AI-Powered Reconnaissance and Social Engineering
Gather OSINT using AI-enhanced Spiderfoot and Bbot
Build RAG-powered pentest assistants for network enumeration
Exploit vulnerabilities with AI-enhanced Metasploit
Execute SQL injection attacks with AI assistance
Day 2: Deepfakes and Vulnerability Discovery
Craft convincing AI-powered phishing content
Clone voices with ElevenLabs for vishing attacks
Generate image and video deepfakes
Perform AI-assisted patch diffing and vulnerability analysis
Day 3: Malware Engineering and Evasion
Write malware with AI assistance
Implement hiding, obfuscation, and trojanization techniques
Bypass security controls using machine learning
Deploy living-off-the-land tactics enhanced by AI
Labs include: AI-Powered Reconnaissance, Automated Nmap Analysis with N8N and RAG, Metasploit Reengineered, AInjection SQL Exploits, Lure Lab Phishing Range, Voice Cloning, AI Dialed Deception Vishing Range, and Advanced Malware Writing.
Foster, Certified Instructor Candidate, brings nearly a decade of offensive security and AI research experience as a frequent conference speaker and published author.
Earn GIAC GOAA certification (exam sold separately). 18 CPE credits.
Highlights
Key skills: Introduction to Artificial Intelligence
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This listing offers one pricing option: a single-user license for the SEC535: Offensive AI course. You buy it per user, so pricing scales with the number of people you enroll. Each license covers one person taking the course. There are no tiers or add-on dimensions to choose from. To enroll a team, you buy one license for each attendee.
Top-of-mind questions for buyers
What counts as one single-user license for this course?
One license covers one named person taking the SEC535: Offensive AI course. It is not a shared or floating seat. Each attendee needs their own license, so a team of five requires five separate purchases. Access ties to the individual enrolled learner.
What does the course license include for the enrolled user?
The license covers the three-day SEC535 course with hands-on labs and course material. It is built around offensive AI attack tools and techniques, including prompt injection, jailbreaks, and agentic system attacks. You can attend in-person or online, depending on scheduled availability.
How do I buy training for a whole team rather than one person?
Each license covers one attendee, so you add one license per person. For larger groups, SANS offers a separate group purchasing program with bulk vouchers and central management. Contact the vendor to discuss group options outside this single-user Marketplace listing.
www.sans.org+1
Helpful?
Vendor refund policy
Refunds available within 30 days if course not accessed.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Implement Fluid Attacks' comprehensive, AI-powered solution and develop secure software without delays. As an all-in-one solution, Fluid Attacks accurately helps you prevent, detect, manage and remediate vulnerabilities across your application attacks surface. The solution integrates its AI, automated tool, and team of pentesters to perform AI SAST, SAST, SCA, DAST, SCR, PtaaS and RE to help you improve your security posture. This way, Fluid Attacks delivers accurate knowledge of the security status of your application. This means security goes alongside innovation without hindering your speed. Fluid Attacks provides you with expert knowledge about vulnerabilities and support options that enable you to remediate the security issues in your application.
AttackIQ is the industry-leading provider of breach and attack simulation (BAS) products for security control validation. AttackIQ emulates adversary tactics, techniques, and procedures, aligned to the MITRE ATT&CK framework, and provides visibility into your security program performance with clear data-driven analysis and mitigation guidance.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.