Learn from the Creator of HackAPrompt

Sander Schulhoff created the HackAPrompt AI red teaming competition. His HackAPrompt research won Best Theme Paper at EMNLP 2023. He has led AI security workshops at OpenAI, Microsoft, Stanford, and Deloitte.
Led AI Security & Prompting Workshops At
New research · October 2025
We co-authored the paper that broke 12 LLM defenses, together with researchers at OpenAI, Anthropic, and Google DeepMind
Co-authored with researchers from
“The Attacker Moves Second” shows that the way new models are evaluated against prompt injection and jailbreaks is broken. HackAPrompt's Sander Schulhoff and Michael Ilie co-authored it with researchers from OpenAI, Anthropic, Google DeepMind, ETH Zürich, Northeastern University, and MATS. Human red-teamers from the HackAPrompt community got the same challenges, models, tasks, and scoring as automated AI red teaming.
published LLM defenses tested, across prompting, training, filtering, and secret-knowledge families
of the study's 40 challenges broken by HackAPrompt's human red-teamers
success rate for static attacks, the reused jailbreaks most evaluations rely on
Why it matters for you: defenses that look solid on paper fall to attackers who adapt. That attacker's-eye method is what this course trains, hands-on, in the HackAPrompt playground built by the same team.
Read the paper on arXiv →Practice Finding and Assessing AI Vulnerabilities
Prompt injection can cause an AI application to follow untrusted instructions. Depending on the application's permissions, that can expose data, redirect tool use, or bypass intended controls. Testing helps you investigate these failures and assess their impact.
About the Course
This hands-on masterclass teaches you to identify and fix vulnerabilities in AI systems before attackers exploit them. Using the HackAPrompt playground, you'll practice both attacking and defending real AI systems through practical exercises, not just theory. You'll learn to detect prompt injections, jailbreaks, and adversarial attacks while building robust defenses against them.
The course prepares you for the AI Red Teaming Professional Certification (AIRTP+) exam, a 24-hour practical assessment covering prompt injection, jailbreaking, and AI security defenses. Passing the exam earns the AIRTP+ certification; completing the recorded course alone does not.
Skills You Will Practice
Practice AI Red-Teaming Techniques
Practice prompt injection and jailbreaking in a controlled environment. Learn to distinguish a reproducible failure from a single unexpected response.
Execute Real-World Security Assessments
Role-play test enterprise chatbots for data leaks, verify AI image generators against harmful content, and perform advanced prompt injection attacks in a realistic sandbox.
Document Reproducible Findings
Record your test inputs, observed responses, and reproduction steps. Explain the impact of a finding and what further testing would establish.
Build Robust AI Defenses
Implement security measures throughout the AI development lifecycle. Learn to secure AI/ML systems by building resilient models and integrating defense strategies.
Learn with Other Practitioners
Discuss the course, compare approaches to projects, and share AI security resources in the private course community.
Prepare for the AIRTP+ Practical Exam
Prepare for the AIRTP+ practical exam, built by the team behind HackAPrompt. Pass the assessment to earn the certification.
Learn from the World's Top AI Security Experts

Joseph Thacker
Solo Founder & Top Bug Bounty Hunter
As a solo founder and security researcher, Joseph has submitted over 1,000 vulnerabilities across HackerOne and Bugcrowd.

Valen Tagliabue
Winner of HackAPrompt 1.0
An AI researcher specializing in NLP and cognitive science. Part of the winning team in HackAPrompt 1.0.

David Williams-King
AI Researcher under Turing Prize Recipient
Research scientist at MILA, researching under Turing Prize winning Yoshua Bengio on his Safe AI For Humanity team.

Leonard Tang
Founder and CEO of Haize Labs
NYC-based AI safety startup providing cutting-edge evaluation tools to leading companies like OpenAI and Anthropic.

Richard Lundeen
Microsoft's AI Red Team Lead
Principal Software Engineering Lead for Microsoft's AI Red Team and maintainer of Microsoft PyRit.

Johann Rehberger
Founded a Red Team at Microsoft
Built Uber's Red Team and discovered attack vectors like ASCII Smuggling. Found Bug Bounties in every major Gen AI model.
Is This Masterclass Right for You?
Perfect for:
Everything You Need to Succeed
In-depth training from industry leaders
Notes and recommended reading
Hack AI systems in the HackAPrompt playground
Network with AI security professionals
Review materials anytime
24-hour practical assessment


