Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Offensive AI Security Professional

Domain 2Objective 3

AI Vulnerability Scanning and Fuzzing COASP Practice Questions (Page 5)

Part of the AI Reconnaissance and Vulnerability Discovery domain, which makes up ~11% of our current practice bank.

54questions here
11free pages
10concepts

Questions 21–25

  1. 21application · medium

    A security analyst is using a coverage-guided fuzzer to test a deep learning model for image classification. The fuzzer reports that it has achieved high neuron coverage, but the model still misclassifies many generated inputs. What is the most likely reason for this discrepancy?

    Select an answer first
  2. 22application · medium

    During a vulnerability scan of a recommendation system, the security team discovers that an attacker can query the model API with carefully crafted inputs and infer whether a specific user's data was used in training. Which AI-specific vulnerability category does this finding represent, and what is the most appropriate initial mitigation?

    Select an answer first
  3. 23application · medium

    A security engineer is tasked with performing an initial vulnerability scan of a newly deployed AI-powered fraud detection system. The system uses a gradient-boosted model trained on historical transaction data, with a REST API for real-time scoring. The engineer wants to identify weaknesses that are unique to the AI components, not just the underlying web server. Which approach best addresses this requirement?

    Select an answer first
  4. 24foundation · easy

    Which AI vulnerability category involves an attacker inserting malicious samples into the training dataset to corrupt the model's behavior?

    Select an answer first
  5. 25application · medium

    A security team is fuzzing a natural language processing (NLP) model that classifies customer reviews as positive or negative. They want to maximize the discovery of edge-case failures while keeping the fuzzing campaign efficient. Which strategy best balances coverage and efficiency for this NLP model?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.