nerdexam
Isaca

AAISM · Question #81

A military contractor discovered that its large language model (LLM) is at high risk of being targeted by advanced persistent threat (APT) actors seeking to exploit the model to access confidential…

The correct answer is A. Model inversion. AAISM classifies model inversion as a privacy/information-leakage threat where adversaries infer or reconstruct sensitive training data or attributes from model outputs--directly jeopardizing confidential information targeted by APTs. While data poisoning, unauthorized tuning…

AI Security Risk Management

Question

A military contractor discovered that its large language model (LLM) is at high risk of being targeted by advanced persistent threat (APT) actors seeking to exploit the model to access confidential information. Which of the following attacks is the HIGHEST priority to protect against?

Options

  • AModel inversion
  • BData poisoning
  • CUnauthorized tuning
  • DModel distillation

How the community answered

(28 responses)
  • A
    79% (22)
  • B
    4% (1)
  • C
    14% (4)
  • D
    4% (1)

Explanation

AAISM classifies model inversion as a privacy/information-leakage threat where adversaries infer or reconstruct sensitive training data or attributes from model outputs--directly jeopardizing confidential information targeted by APTs. While data poisoning, unauthorized tuning, and model distillation present material risks (integrity, governance/IP theft), the scenario's stated objective-- accessing confidential information--most directly maps to inversion. Accordingly, AAISM prioritizes defenses such as output regularization, confidence suppression/calibration, overfitting controls, privacy-preserving techniques, and strict access/telemetry on inference interfaces.

Topics

#LLM security#Model inversion#Confidentiality attacks#APT threats

Community Discussion

No community discussion yet for this question.

Full AAISM Practice