
EC-CouncilCertified Offensive AI Security Professional
Domain 4Objective 2
FGSM and PGD Attacks on Image Classifiers COASP Practice Questions (Page 6)
Part of the Adversarial Machine Learning and Model Privacy Attacks domain, which makes up ~13% of our current practice bank.
35questions here
7free pages
6concepts
Questions 26–30
- 26
A security analyst is testing a classifier that uses input normalization (e.g., scaling pixels to [0,1]). They run an FGSM attack with epsilon=0.3 and find that the adversarial image has pixel values outside the valid range. What is the most likely cause and the best fix?
Select an answer first - 27
In a deep learning framework, what is the typical way to ensure that gradients are computed with respect to the input image during an adversarial attack?
Select an answer first - 28
In a Projected Gradient Descent (PGD) attack, what is the role of the step size parameter (often denoted as alpha)?
Select an answer first - 29
A developer is implementing FGSM in TensorFlow. They notice that the attack only works when the model is in training mode (dropout active). When they switch to inference mode, the attack fails. What is the most likely cause?
Select an answer first - 30
When reporting the success rate of a PGD attack, what additional information is important to include for reproducibility?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.