AML.T0007
Discover AI Artifacts
Description
Adversaries may search private sources to identify AI learning artifacts that exist on the system and gather information about them. These artifacts can include the software stack used to train and deploy models, training and testing data management systems, container registries, software repositories, and model zoos. This information can be used to identify targets for further collection, exfiltration, or disruption, and to tailor and improve attacks.
Honesty-tier rationale
Discovery mostly probes the structure of real deployments; only the concept can be shown against a mock endpoint.