Quiz 2 Question 19 of 20

A fintech lender uses a deep learning model to detect fraudulent loan applications in real time. The security team discovers that sophisticated fraudsters are submitting applications with minute, carefully calculated perturbations to input fields (e.g., small changes in declared income values, address formatting, and device metadata) that cause the fraud model to classify fraudulent applications as legitimate. Which adversarial ML attack type does this scenario describe, and what is the MOST effective primary defense?

Select an answer to reveal the explanation.

Motivation