Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Offensive AI Security Professional

Domain 2Objective 3

AI Vulnerability Scanning and Fuzzing COASP Practice Questions (Page 2)

Part of the AI Reconnaissance and Vulnerability Discovery domain, which makes up ~11% of our current practice bank.

54questions here
11free pages
10concepts

Questions 6–10

  1. 6foundation · easy

    What is the primary purpose of vulnerability scanning in AI systems compared to traditional software scanning?

    Select an answer first
  2. 7application · medium

    A security team is planning to fuzz a natural language processing (NLP) model that classifies customer support tickets. They want to uncover edge cases where the model produces incorrect or unsafe outputs. Which approach best reflects AI-specific fuzzing as opposed to traditional fuzzing?

    Select an answer first
  3. 8application · medium

    A scan of a medical diagnosis AI system reveals that the model is vulnerable to model inversion attacks, allowing an attacker to reconstruct patient images from the model's outputs. What is the most effective mitigation?

    Select an answer first
  4. 9expert · hard

    A team is fuzzing a large language model (LLM) that is used for code generation. They want to find prompts that cause the model to generate insecure code. They have a set of seed prompts and want to use a specialized fuzzing framework. Which approach is most effective?

    Select an answer first
  5. 10application · medium

    A security analyst is reviewing the results of a scan on a machine learning model. The scan indicates that an attacker could potentially reconstruct approximate versions of training data by querying the model. Which vulnerability category does this finding represent?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.