Reconnaissance (8 techniques)
MITRE ATLAS tactic
The adversary is trying to gather information about the AI system they can use to plan future operations. Reconnaissance consists of techniques that involve adversaries actively or passively gathering information that can be used to support targeting. Such information may include details of the victim organizations' AI capabilities and research efforts. This information can be leveraged by the adversary to aid in other phases of the adversary lifecycle, such as using gathered information to obtain relevant AI artifacts, targeting AI capabilities used by the victim, tailoring attacks to the particular models used by the victim, or to drive and lead further Reconnaissance efforts.
Techniques
- AML.T0000 — Search Open Technical DatabasesMaturity: demonstrated
- AML.T0001 — Search Open AI Vulnerability AnalysisMaturity: demonstrated
- AML.T0003 — Search Victim-Owned WebsitesMaturity: demonstrated
- AML.T0004 — Search Application RepositoriesMaturity: demonstrated
- AML.T0006 — Active ScanningMaturity: realized
- AML.T0064 — Gather RAG-Indexed TargetsMaturity: demonstrated
- AML.T0087 — Gather Victim Identity InformationMaturity: realized
- AML.T0095 — Search Open Websites/DomainsMaturity: demonstrated
AI red teaming training, taught by practitioners.
Hands-on courses on adversarial AI, prompt injection, and AI security operations.
View AI Security Courses