
EC-CouncilCertified Offensive AI Security Professional
Domain 3Objective 1
Prompt Injection Attacks COASP Practice Questions (Page 3)
Part of the Prompt Injection and LLM Application Attacks domain, which makes up ~14% of our current practice bank.
37questions here
8free pages
5concepts
Questions 11–15
- 11
An organization runs an LLM chatbot that can access customer records. Security wants to detect prompt injection attempts. Which monitoring approach is most effective for identifying indirect injection via retrieved documents?
Select an answer first - 12
A healthcare chatbot provides medical information based on a knowledge base. An attacker injects false information into a public health article that the chatbot retrieves. What is the most serious potential impact?
Select an answer first - 13
Which of the following is an example of output filtering as a defense against prompt injection?
Select an answer first - 14
A developer is building an LLM application that can access a database. To reduce the risk of prompt injection, the developer wants to ensure the model can only perform read-only queries and cannot modify data. Which mitigation strategy does this best describe?
Select an answer first - 15
A company is deploying an LLM-powered email assistant that can read emails, summarize them, and draft replies. The security team is concerned about prompt injection via email content. They have the following constraints: (1) the assistant must be able to read all incoming emails to function; (2) it must be able to draft replies, but sending emails requires human approval; (3) the team wants to minimize the risk of the assistant leaking sensitive email content. Which combination of defenses best meets these constraints?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “COASP” is a trademark of its owner, used for identification only.