Discovery (9 techniques)
MITRE ATLAS tactic
The adversary is trying to figure out your AI environment. Discovery consists of techniques an adversary may use to gain knowledge about the system and internal network. These techniques help adversaries observe the environment and orient themselves before deciding how to act. They also allow adversaries to explore what they can control and what's around their entry point in order to discover how it could benefit their current objective. Native operating system tools are often used toward this post-compromise information-gathering objective.
Techniques
- AML.T0007 — Discover AI Artifacts Maturity: demonstrated
- AML.T0013 — Discover AI Model Ontology Maturity: demonstrated
- AML.T0014 — Discover AI Model Family Maturity: feasible
- AML.T0062 — Discover LLM Hallucinations Maturity: demonstrated
- AML.T0063 — Discover AI Model Outputs Maturity: demonstrated
- AML.T0069 — Discover LLM System Information Maturity: demonstrated
- AML.T0075 — Cloud Service Discovery Maturity: realized
- AML.T0084 — Discover AI Agent Configuration Maturity: demonstrated
- AML.T0089 — Process Discovery Maturity: demonstrated
AI red teaming training, taught by practitioners.
Hands-on courses on adversarial AI, prompt injection, and AI security operations.
View AI Security Courses