Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Offensive AI Security Professional

Domain 5Objective 3

Agentic AI and Model-To-Model Attacks COASP Practice Questions (Page 4)

Part of the Data Pipeline and Agentic AI Attacks domain, which makes up ~15% of our current practice bank.

41questions here
9free pages
5concepts

Questions 16–20

  1. 16application · medium

    A security researcher is developing an offensive AI tool that uses an agentic system to automatically find vulnerabilities in a client's web application. The client has given written permission for the test. Which ethical consideration is most important?

    Select an answer first
  2. 17expert · hard

    A company is deploying an agentic AI system that uses a public LLM for customer support and a private model for accessing customer records. The system must comply with data privacy regulations that require customer data to remain within the country. The security team is evaluating the attack surface. Which approach best addresses the compliance requirement while minimizing the attack surface?

    Select an answer first
  3. 18application · medium

    A security researcher is developing a proof-of-concept attack that exploits a vulnerability in an agentic AI system used by a hospital to manage patient appointments. The researcher plans to demonstrate the attack on a test environment that contains synthetic patient data. What is the primary ethical consideration?

    Select an answer first
  4. 19application · medium

    An organization is deploying an agentic AI system that uses multiple models: a natural language understanding (NLU) model, a dialogue management model, and a text-to-speech (TTS) model. The system also integrates with a customer database. Which attack surface is most critical to protect?

    Select an answer first
  5. 20application · medium

    An agentic AI system uses a planning model to decide which tools to call, including a web search API and a database query tool. A security analyst wants to identify the most critical attack surface for a model-to-model attack. Which component should be examined first?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.