
EC-CouncilCertified Offensive AI Security Professional
Domain 5Objective 3
Agentic AI and Model-To-Model Attacks COASP Practice Questions (Page 3)
Part of the Data Pipeline and Agentic AI Attacks domain, which makes up ~15% of our current practice bank.
41questions here
9free pages
5concepts
Questions 11–15
- 11
A company is evaluating whether to deploy an agentic AI system to automate customer support. The system would use a language model to understand queries, a planning module to decide on actions, and a tool to access the customer database. Which characteristic is most indicative of an agentic AI system?
Select an answer first - 12
A healthcare company uses an agentic AI system to manage patient records. The system uses a language model to extract data from clinical notes and a separate model to classify the data for storage. The security team has discovered a prompt injection vulnerability that could allow an attacker to alter the classification model's behavior, causing sensitive data to be stored in an unsecured location. The team must implement a mitigation that complies with data protection regulations. Which approach is most appropriate?
Select an answer first - 13
An agentic AI system uses a model to summarize news articles and another model to classify the sentiment of the summary. An attacker crafts a news article that, when summarized, contains a hidden instruction that causes the sentiment model to output 'positive' for all articles. Which type of attack is this?
Select an answer first - 14
A security team is hardening an agentic AI system that uses a planning model, a memory store, and a code execution tool. The team has identified that indirect prompt injection via the memory store is a major risk. They are considering two mitigations: (1) sanitizing all content before it is stored in memory, and (2) validating the memory content before it is used by the planning model. Which approach is more effective?
Select an answer first - 15
A security team is testing an agentic AI system that uses a language model to control a robotic arm. An attacker sends a specially crafted image to the vision model, which then generates a control command that causes the arm to move dangerously. Which type of attack is this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.