Courseiva
Security →mediumMultiple Choice

CCDV-F Security Practice Question

What is the primary security risk of using an LLM to automatically generate and execute shell commands?

⚠ Common exam trap

Candidates often focus on data privacy leaks, missing the more critical risk of Remote Code Execution (RCE) when an LLM is granted the agency to execute system-level commands.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

The model can be manipulated to execute unauthorized system commands.

The primary risk is 'Remote Code Execution' (RCE). If an LLM is given the agency to execute commands based on potentially malicious user input, an attacker can craft a prompt that tricks the model into running arbitrary, harmful code on the host system. This bypasses traditional security boundaries and allows the attacker to compromise the infrastructure, access sensitive files, or exfiltrate data from the environment.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    The model will consume too many API tokens.

    Why it's wrong here

    Token consumption is a financial or availability issue, not a security vulnerability. While it impacts cost and system performance, it does not lead to a compromise of the underlying system infrastructure, data theft, or unauthorized control, which are the primary concerns when discussing LLM-based command execution security risks.

  • ✗

    The model might hallucinate and generate incorrect commands.

    Why it's wrong here

    Hallucination leading to incorrect commands is an operational reliability issue. While frustrating and potentially destructive if the wrong command is executed, it is different from a security vulnerability where an attacker intentionally manipulates the model to execute malicious commands. Security focuses on preventing malicious intent, not preventing incorrect machine output.

  • ✓

    The model can be manipulated to execute unauthorized system commands.

    Why this is correct

    Allowing an LLM to execute shell commands is a high-risk architectural decision. Attackers can leverage prompt injection to force the model to execute arbitrary commands, leading to full system compromise. The model acts as an unintended proxy for the attacker, bypassing security controls that would normally prevent such actions from occurring.

  • ✗

    The model will be unable to access the local file system.

    Why it's wrong here

    If the model is integrated into a shell environment, it likely has the necessary permissions to interact with the file system. If it is unable to access the file system, that is a configuration or permission issue, not a security risk inherent to the model's usage in shell command generation.

About these practice questions

One of 257 original CCDV-F practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Anthropic exam blueprint

This CCDV-F practice question is part of Courseiva's free Anthropic certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CCDV-F exam.