MITRE ATLAS Attack Landscape

AI attack technique frequency based on 3,786 CVE-to-technique mappings across 97 ATLAS techniques.

97
Techniques
3,786
CVE Mappings
Exploit Public-Facing Application
#1 (948 CVEs)
# Technique CVEs
1 AML.T0049 Exploit Public-Facing Application 948
2 AML.T0029 Denial of AI Service 449
3 AML.T0025 Exfiltration via Cyber Means 239
4 AML.T0034 Cost Harvesting 165
5 AML.T0050 Command and Scripting Interpreter 157
6 AML.T0037 Data from Local System 155
7 AML.T0055 Unsecured Credentials 141
8 AML.T0053 AI Agent Tool Invocation 124
9 AML.T0072 Reverse Shell 116
10 AML.T0040 AI Model Inference API Access 115
11 AML.T0058 Publish Poisoned Models 102
12 AML.T0012 Valid Accounts 101
13 AML.T0035 AI Artifact Collection 93
14 AML.T0083 Credentials from AI Agent Configuration 77
15 AML.T0107 Exploitation for Defense Evasion 75
16 AML.T0011 User Execution 65
17 AML.T0074 Masquerading 63
18 AML.T0043 Craft Adversarial Data 59
19 AML.T0006 Active Scanning 46
20 AML.T0105 Escape to Host 42
21 AML.T0081 Modify AI Agent Configuration 40
22 AML.T0106 Exploitation for Credential Access 38
23 AML.T0078 Drive-by Compromise 33
24 AML.T0075 Cloud Service Discovery 22
25 AML.T0020 Poison Training Data 20
26 AML.T0085 Data from AI Services 19
27 AML.T0086 Exfiltration via AI Agent Tool Invocation 18
28 AML.T0007 Discover AI Artifacts 17
29 AML.T0080 AI Agent Context Poisoning 17
30 AML.T0018 Manipulate AI Model 16
31 AML.T0051 LLM Prompt Injection 16
32 AML.T0057 LLM Data Leakage 13
33 AML.T0031 Erode AI Model Integrity 11
34 AML.T0052 Phishing 11
35 AML.T0101 Data Destruction via AI Agent Tool Invocation 11
36 AML.T0001 Search Open AI Vulnerability Analysis 10
37 AML.T0036 Data from Information Repositories 9
38 AML.T0076 Corrupt AI Model 9
39 AML.T0070 RAG Poisoning 8
40 AML.T0084 Discover AI Agent Configuration 8
41 AML.T0021 Establish Accounts 7
42 AML.T0044 Full AI Model Access 7
43 AML.T0059 Erode Dataset Integrity 7
44 AML.T0073 Impersonation 6
45 AML.T0079 Stage Capabilities 6
46 AML.T0093 Prompt Infiltration via Public-Facing Application 6
47 AML.T0097 Virtualization/Sandbox Evasion 6
48 AML.T0108 AI Agent 6
49 AML.T0096 AI Service API 5
50 AML.T0098 AI Agent Tool Credential Harvesting 5
51 AML.T0024 Exfiltration via AI Inference API 4
52 AML.T0054 LLM Jailbreak 4
53 AML.T0064 Gather RAG-Indexed Targets 4
54 AML.T0099 AI Agent Tool Data Poisoning 4
55 AML.T0019 Publish Poisoned Datasets 3
56 AML.T0056 Extract LLM System Prompt 3
57 AML.T0063 Discover AI Model Outputs 3
58 AML.T0087 Gather Victim Identity Information 3
59 AML.T0010 AI Supply Chain Compromise 2
60 AML.T0014 Discover AI Model Family 2
61 AML.T0015 Evade AI Model 2
62 AML.T0065 LLM Prompt Crafting 2
63 AML.T0100 AI Agent Clickbait 2
64 AML.T0102 Generate Malicious Commands 2
65 AML.T0000 Search Open Technical Databases 1
66 AML.T0046 Spamming AI System with Chaff Data 1
67 AML.T0047 AI-Enabled Product or Service 1
68 AML.T0066 Retrieval Content Crafting 1
69 AML.T0069 Discover LLM System Information 1
70 AML.T0091 Use Alternate Authentication Material 1
71 AML.T0092 Manipulate User LLM Chat History 1
72 AML.T0002 Acquire Public AI Artifacts 0
73 AML.T0003 Search Victim-Owned Websites 0
74 AML.T0004 Search Application Repositories 0
75 AML.T0005 Create Proxy AI Model 0
76 AML.T0008 Acquire Infrastructure 0
77 AML.T0013 Discover AI Model Ontology 0
78 AML.T0016 Obtain Capabilities 0
79 AML.T0017 Develop Capabilities 0
80 AML.T0041 Physical Environment Access 0
81 AML.T0042 Verify Attack 0
82 AML.T0048 External Harms 0
83 AML.T0060 Publish Hallucinated Entities 0
84 AML.T0061 LLM Prompt Self-Replication 0
85 AML.T0062 Discover LLM Hallucinations 0
86 AML.T0067 LLM Trusted Output Components Manipulation 0
87 AML.T0068 LLM Prompt Obfuscation 0
88 AML.T0071 False RAG Entry Injection 0
89 AML.T0077 LLM Response Rendering 0
90 AML.T0082 RAG Credential Harvesting 0
91 AML.T0088 Generate Deepfakes 0
92 AML.T0089 Process Discovery 0
93 AML.T0090 OS Credential Dumping 0
94 AML.T0094 Delay Execution of LLM Instructions 0
95 AML.T0095 Search Open Websites/Domains 0
96 AML.T0103 Deploy AI Agent 0
97 AML.T0104 Publish Poisoned AI Agent Tool 0

Track these techniques against your AI stack with real-time alerts.

Start 14-Day Free Trial