aipostex Lab
See you at DEF CON!
Initializing search
professor-moody/aipostex-lab
Home
Start Here (RTV)
Table Card (RTV)
Getting Started
Architecture
Deployment
Services
Attack Box
Seeded Data
Scoring & Verification
Demo Walkthrough
Tactic (Guided Chain)
Manual Post-Exploitation
Attack Scenarios
Techniques
Single-Service Sandbox
Reference
Contributing
Appendices
aipostex Lab
professor-moody/aipostex-lab
Home
Start Here (RTV)
Table Card (RTV)
Getting Started
Getting Started
Quick Start
Prerequisites
VM Map & Credentials
Learning Path
Architecture
Architecture
Lab Design
Enterprise Lab Architecture
Network Topology
Why Native (No Docker)
Deployment
Deployment
Deployment Options (Matrix)
Proxmox Setup
Multi-Estate Standup
Enterprise Proxmox Deployment
Enterprise Readiness Checklist
Base OS Setup
Automated Deployment
AWS Deployment (Cloud)
AWS Cost & Sizing
Manual Deployment
Deployment Evolution
Snapshots & Teardown
Hot-Patch (Live Updates)
Ludus Deployment
Opt-in Segmentation
GPU Components (Full-Real)
Attendee Connectivity
Services
Services
Overview
ailab-dev (Developer Workstation)
ailab-dev (Developer Workstation)
Ollama
Jupyter
MCP Server
Vulnerable MCP Server
Gradio
MCP Inspector
Honesty Controls (benchmark)
ailab-ml (ML Platform)
ailab-ml (ML Platform)
ChromaDB
HF TGI Mock
HF TEI Mock
MLflow
LiteLLM
Ray
vLLM Mock
BentoML
TorchServe
Triton
W&B
Kubeflow Mock
TF Serving Mock
ailab-ds (Data Science)
ailab-ds (Data Science)
Ollama
Jupyter
Weaviate
Qdrant
Black-box RAG App
ailab-app (Shared AI Apps)
ailab-app (Shared AI Apps)
LangServe
Streamlit
HF TGI Gateway
A2A Orchestrator
Bespoke IT-Helpdesk Agent
Bespoke Single-Agent Fleet
ailab-k8s (Kubernetes Node)
ailab-k8s (Kubernetes Node)
Cluster (vuln + secure k3s)
ailab-siem (Detection)
ailab-siem (Detection)
Elastic Detection Stack
Attack Box
Attack Box
Setup
MCP Config Fixtures
Tailscale & Remote Access
Seeded Data
Seeded Data
Overview
Filesystem Artifacts
Ollama System Prompts
Vector Databases
MLflow Experiments
Ray Jobs
Noise Collections
Scoring & Verification
Scoring & Verification
verify-lab.sh
verify-aipostex.sh
Scoring System
Precision Benchmark
Manifest Schema
RRR Honesty Matrix
Demo Walkthrough
Tactic (Guided Chain)
Manual Post-Exploitation
Manual Post-Exploitation
Overview
Operator Guide
Attack Scenarios
Attack Scenarios
Overview
01: Reachability Survey
02: LLM Gateway Extraction
03: Inference Fingerprinting
04: Vector DB PII Extraction
05: Jupyter RCE
06: ML Credential Harvest
07: RAG Pipeline Poisoning
08: Credential Chain
09: Pipeline Run Injection
10: Model Tampering
11: MCP Tool Infection
12: Multi-Vector Campaign
13: Privesc → Model-Weight Theft
14: Bespoke Agent — Fingerprint/Enum/Extract
15: Black-box RAG — Citation Recon & Poisoning
16: Detect & Evade — Working Against Real Elastic
17: Rogue Agents & MCP Privilege Escalation
18: Agent Guardrail Triage → Prompt Injection
19: Embedding Endpoint Recon
20: Behavioral Model Fingerprinting
21: Full Agent-Layer Campaign
22: Advanced Prompt-Injection Tradecraft
Techniques
Techniques
Overview
Reconnaissance
Model Fingerprinting
Output-Filter Bypass
Prompt Injection
RAG Attacks
Detect & Evade
Honest Grading
Single-Service Sandbox
Reference
Reference
Lab Field Guide
Component Explainer
Port & Service Matrix
Mock & Fixture Fidelity
Script Inventory
Sensitive Data Inventory
Pinned Versions
Troubleshooting
Contributing
Contributing
Adding a Service or Mock
Appendices
Appendices
Offline / Air-Gapped Setup
Resource Tuning
Ludus Migration
See you at DEF CON!
Red Team Village · DEF CON 34
Back to top