QuestionQ39

Securing AI systems

A security analyst discovers that the AI system is experiencing a denial-of-wallet attack. Which of the following should the analyst enforce to protect the company?

Choose two
Explanation

Denial-of-wallet attacks create unsustainable AI-service costs by driving excessive inference operations. API rate controls limit request volume, and output token controls cap the generated-token consumption associated with each request. OWASP identifies rate limiting and quotas as mitigations for unbounded consumption, including denial-of-wallet attacks; cloud AI documentation also identifies maximum output-token settings as a direct control on token consumption.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!