
EC-CouncilCertified Offensive AI Security Professional
Domain 1Objective 1
AI and Machine Learning Fundamentals from an Offensive Security Perspective COASP Practice Questions (Page 3)
Part of the Offensive AI Foundations and Hacking Methodology domain, which makes up ~18% of our current practice bank.
41questions here
9free pages
5concepts
Questions 11–15
- 11
A security team is reviewing the security of a machine learning model that classifies images for a social media platform. The team discovers that an attacker has been submitting specially crafted images that are misclassified, causing inappropriate content to be posted. The attacker does not have access to the model's parameters or training data. Which type of adversarial attack is the attacker most likely performing?
Select an answer first - 12
A security architect is designing a threat model for a machine learning system that uses a third-party pre-trained model. The system is deployed on a Kubernetes cluster and accesses data from a database. The architect wants to identify the component that is most susceptible to a poisoning attack. Which component should the architect focus on?
Select an answer first - 13
A red team is tasked with assessing the security of an AI-based intrusion detection system (IDS). The red team has already mapped the system's components and identified that the IDS uses a supervised model trained on network traffic data. The red team now wants to test whether they can evade detection by crafting network traffic that the model misclassifies as benign. Which step of the hacking methodology does this testing represent?
Select an answer first - 14
A security team is defending a machine learning model that classifies medical images. The team has implemented adversarial training to improve robustness against evasion attacks. However, they are now concerned that the model is vulnerable to poisoning attacks. The team has limited resources and must choose between two defenses: (1) implementing robust aggregation techniques during training, or (2) adding a validation layer that checks input data for anomalies before inference. Which defense is more appropriate for mitigating poisoning attacks?
Select an answer first - 15
What is the primary goal of an evasion attack on a machine learning model?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.