In this course you will learn how the security of web-based software, including deployed AI agents, can be compromised. Real-world attacks we study are conducted against a variety of web technologies and frameworks. In addition, we will introduce the topic of Adversarial Machine Learning (exploiting algorithms and learning techniques) in the Artificial Intelligence domain, including Language Models. We will review and study modern, cutting-edge research in this area.



Security & Ethical Hacking: Attacking Web and AI Systems
This course is part of Security and Ethical Hacking Specialization

Instructor: Ahmed M. Hamza
Access provided by Willis Towers Watson
Recommended experience
What you'll learn
- Perform and prevent web application attacks and knowledge of defensive techniques. 
- Understand AI/ML platform and model attacks as an extension of web attacks. 
- Describe the range of attacks on artificial intelligence algorithms and systems (adversarial machine learning). 
Skills you'll gain
- Data Security
- Server Side
- Exploitation techniques
- Cyber Security Assessment
- Generative AI
- Responsible AI
- Security Awareness
- Vulnerability Scanning
- Application Security
- Artificial Intelligence and Machine Learning (AI/ML)
- Open Web Application Security Project (OWASP)
- Personally Identifiable Information
- Cyber Attacks
- Business Logic
- Large Language Modeling
Details to know

Add to your LinkedIn profile
15 assignments
August 2025
See how employees at top companies are mastering in-demand skills

Build your subject-matter expertise
- Learn new concepts from industry experts
- Gain a foundational understanding of a subject or tool
- Develop job-relevant skills with hands-on projects
- Earn a shareable career certificate

There are 4 modules in this course
In this module, we introduce the protocols of the World Wide Web communication, history, and examine several important attack types targeting the server directly through vulnerabilities of web applications – including logic flaws not tied to a particular software weakness.
What's included
2 videos10 readings7 assignments
In this module, we study exploit categories incorporating the client/browser (and assumed privileges of the client) in web attacks, including defenses and potential bypasses.
What's included
1 video8 readings4 assignments
Function-calling language models (AI agents) present unique risks. We practice attacks on live, deployed models that have excessive agency in their server environments, presenting modern, high-level exploitation primitive in web-deployed language agents.
What's included
1 video2 readings3 assignments
This module is an introduction and deep dive into more fundamental, algorithmic types of exploitation against AI systems, namely through study (and careful manipulation) of the machine learning models that power them.
What's included
1 video4 readings1 assignment
Earn a career certificate
Add this credential to your LinkedIn profile, resume, or CV. Share it on social media and in your performance review.
Build toward a degree
This course is part of the following degree program(s) offered by University of Colorado Boulder. If you are admitted and enroll, your completed coursework may count toward your degree learning and your progress can transfer with you.¹
Instructor

Offered by
Why people choose Coursera for their career




Explore more from Computer Science
 - University of Colorado Boulder 
 - University of Colorado Boulder 
 - LearnKartS 
 - University of Colorado Boulder 

