AI Security Labs & CTFs
77 hands-on practice environments for AI red teaming and prompt injection, with difficulty ratings from beginner to advanced
PromptTrace
Hands-on prompt injection labs with real LLMs, a Gauntlet CTF, and a layered Context Trace where protected values may be redacted.
Gandalf
Wargame-style challenge where players must trick an LLM into revealing secret passwords across progressively harder levels.
Damn Vulnerable LLM Agent
Intentionally vulnerable AI agent designed for practicing LLM exploitation techniques.
Vulnerable MCP Servers Lab
Collection of 9 labs covering path traversal, RCE, prompt injection, and supply-chain attacks on MCP.
LLM CV Screener Lab
Vulnerable recruitment application for experimenting with direct and indirect prompt injection in LLM-assisted CV screening.
DevOps Attack Surface Lab
Hands-on lab exploring pipeline security and privilege escalation vectors in CI/CD environments.
AWSGoat
Deliberately vulnerable AWS cloud infrastructure for practicing cloud security exploitation.
Know a resource we're missing?
Send us a message with the resource name and link. We review every suggestion.