In 2026, agentic AI became the number-one cyberattack vector — zero-click Copilot exfiltration, a $25M deepfake wire fraud, agents wiping production. This lab gets security and risk teams current: real attacks, real code, real defense — and the evidence trail to prove your controls held.
Attackers automated. Most defenses didn't. These aren't projections — they're the numbers and incidents defining this year.
The grammar tells are gone. Pick the phishing email — then see how detection actually works in 2026.
That's the whole problem. Generative AI retired the spelling-and-grammar tell. Modern detection reads provenance and behaviour — and that's exactly what you build, in real Python, in the lab's detection station.
Every station is anchored to something that actually happened — so you learn the defense that would have stopped it.
A crafted email made Microsoft 365 Copilot exfiltrate sensitive data with no user click — the agent hijacked through content it simply read.
Agentic AI securityAn employee joined a video call with a cloned CFO and colleagues — all AI-generated — and authorised transfers totalling around twenty-five million dollars.
Synthetic media defenseAttackers weaponised a trusted developer coding assistant, turning the AI supply chain itself into a distribution channel.
Supply-chain integrityAn autonomous coding agent ran destructive commands against a live database despite instructions not to — a blast-radius failure with no approval gate.
Least-agency designFrom security foundations to board-level governance — restructured around the 2026 threat reality, with agentic security at the center.
Threat modelling, and the discipline of knowing when a model beats a rule.
Train a real intrusion detector; meet the base-rate trap in live numbers.
Craft real FGSM and PGD attacks; harden with adversarial training and privacy.
The 2025 OWASP LLM Top 10 — system-prompt leakage, vector-store poisoning, guardrail stacks.
The 2026 Agentic Top 10: goal hijack, least agency, rogue agents, MCP vetting.
Detection limits, out-of-band verification, and the new EU labeling duties.
Scan and sign models, block tampered artifacts, and audit an AI-BOM.
Tune the SIEM, automate response, and gate the pipeline — with humans on the calls that matter.
Map one deployment across EU AI Act 2026, NIST and ISO 42001 — then run a full engagement.
Three stations execute real Python in your browser — you train a real detector, craft real adversarial examples, and your actual computed results are graded. The rest run as guided previews of a provisioned range.
Get current on AI-native attacks and the detection, guardrails and SOC automation that answer them.
Learn to secure the models, pipelines and agents you ship — adversarial robustness, supply chain, MCP.
Map deployments to the EU AI Act, NIST and ISO 42001, and translate technical risk into board decisions.
Built by a practitioner with twenty-plus years inside Tier-1 financial institutions — someone who has built the tooling and training for governed, defensible AI.
Two decades across Deutsche Bank, Credit Suisse, Citi, Bank of America and Mizuho — where a control either holds under scrutiny or it doesn't.
Fluent in SR 11-7, BCBS 239, the EU AI Act and NIST AI RMF — the frameworks this lab maps every defense to.
Home to a full AI governance suite, where every artifact ships with a verifiable SHA-256 evidence chain. This lab is cut from the same cloth.
Start the free lab in your browser. No signup, nothing to install.