Courseiva
AI Security →mediumMultiple Select

AI0-001 AI Security Practice Question

A data scientist suspects a model extraction attack on their deployed classifier. Which TWO indicators are MOST consistent with such an attack? (Select two.)

⚠ Common exam trap

CompTIA AI exams often test the distinction between model extraction (which requires diverse inputs to map the decision boundary) and denial-of-service or brute-force attacks (which involve repeated identical queries), so candidates mistakenly select Option B thinking any high query volume indicates extraction.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

A large number of queries from a single IP address over a short period

Option C is correct because model extraction (model stealing) attacks require the adversary to submit a very high volume of prediction requests to the deployed classifier, often from a single source IP, in order to gather enough input-output pairs to train a substitute model; a burst of queries from one IP in a short window is a classic volumetric indicator. Option E is correct because effective extraction depends on sampling the model's decision space broadly, so queries that systematically span a wide, diverse range of inputs (rather than a narrow slice) are consistent with an attacker trying to approximate the full decision boundary. Option A is not correct because SQL injection targets database-backed application inputs and is unrelated to stealing a model's parameters or behavior. Option B is not correct because repeatedly requesting the same prediction yields redundant, low-information samples and is more indicative of caching, retry, or probing behavior than systematic extraction. Option D is not correct because attempts to reveal system prompts are prompt-injection or prompt-leaking attacks against LLM applications, not model extraction of a classifier.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Queries that include SQL injection attempts

    Why it's wrong here

    SQL injection targets databases, not model extraction.

  • ✗

    Queries that repeatedly ask for the same prediction

    Why it's wrong here

    Repeated identical queries are more indicative of a denial-of-service or probing, not extraction.

  • ✓

    A large number of queries from a single IP address over a short period

    Why this is correct

    Model extraction relies on high-volume automated querying to approximate the decision boundary. A single IP issuing many queries in a short window satisfies the volume and rate constraint that distinguishes extraction from ordinary sporadic user traffic.

  • ✗

    Queries with special characters attempting to reveal system prompts

    Why it's wrong here

    This suggests prompt injection or jailbreaking, not extraction.

  • ✓

    Queries covering a wide range of diverse inputs

    Why this is correct

    Extraction attacks probe the decision boundary systematically, so queries span a wide, diverse input range rather than clustering around normal usage. This broad coverage lets the attacker map the classifier's behaviour across the input space and approximate its predictions.

About these practice questions

This AI0-001 question is part of Courseiva's 962-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This AI0-001 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the AI0-001 exam.