
EC-CouncilCertified Offensive AI Security Professional
Domain 4Objective 3
Model Extraction and Theft COASP Practice Questions (Page 3)
Part of the Adversarial Machine Learning and Model Privacy Attacks domain, which makes up ~13% of our current practice bank.
41questions here
9free pages
5concepts
Questions 11–15
- 11
An attacker is extracting a model that returns the full probability vector. The attacker wants to minimize the number of queries while achieving high fidelity. Which approach is most effective?
Select an answer first - 12
Which of the following is an example of an API-based model extraction attack?
Select an answer first - 13
A company suspects that a competitor has stolen its proprietary recommendation model. The company wants to prove that the competitor's model is a copy. Which approach is most likely to provide evidence of model theft?
Select an answer first - 14
A company has deployed a model as a public API and wants to detect model extraction attempts. They have implemented rate limiting and output perturbation. They now want to add a detection mechanism. Which approach is most effective for detecting extraction attempts?
Select an answer first - 15
An attacker is extracting a model that returns only the top-1 class label. The attacker has a limited query budget of 10,000 requests. The model has 100 input features. Which strategy is most likely to produce a substitute model with the highest fidelity within the budget?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.