Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Offensive AI Security Professional

Domain 1Objective 2

AI Attack Surfaces, Threat Landscapes, and Adversary Techniques (MITRE ATLAS-aligned) COASP Practice Questions (Page 8)

Part of the Offensive AI Foundations and Hacking Methodology domain, which makes up ~18% of our current practice bank.

47questions here
10free pages
6concepts

Questions 36–40

  1. 36application · medium

    A security team is analyzing a known attack where an attacker submitted a specially crafted image to a facial recognition system, causing it to identify the wrong person. The team wants to document the attack surface and technique. Which combination is correct?

    Select an answer first
  2. 37application · medium

    A security engineer is mapping the attack surface of a customer-facing image classification service. The service uses a pre-trained model hosted on a GPU VM, with images uploaded via a web API and stored in blob storage before inference. The engineer wants to identify where an attacker could most plausibly inject a malicious input that would be processed by the model without needing to compromise the VM or storage. According to MITRE ATLAS, which attack surface should be prioritized?

    Select an answer first
  3. 38application · medium

    A healthcare startup deploys an on-premises image classification model for detecting skin lesions. The model is trained on a public dataset and served via a REST API. The security team is performing an attack surface review. Which component of the AI system presents the highest-risk attack surface for a data poisoning attack?

    Select an answer first
  4. 39application · medium

    A red-team analyst is categorizing an attack where an adversary used a public API to query a translation model with carefully crafted sentences to extract the model's internal vocabulary and sentence structure. The analyst wants to map this to MITRE ATLAS. Which technique is most appropriate?

    Select an answer first
  5. 40expert · hard

    A security architect is designing a defense for a medical imaging model. The model is hosted on-premises and accessed via a web application. The architect is concerned about both model inversion and adversarial examples. Which attack surface should be prioritized to mitigate both threats?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.