Drive-by Compromise
Bu tekniğin yerleşik Türkçe adı henüz terminoloji kanonuna eklenmedi; İngilizce adı gösteriliyor.
Açıklama
Türkçe çeviri henüz mevcut değil; resmi İngilizce açıklama gösteriliyor (uydurma çeviri yapılmaz).
Adversaries may gain access to an AI system through a user visiting a website over the normal course of browsing, or an AI agent retrieving information from the web on behalf of a user. Websites can contain an LLM Prompt Injection which, when executed, can change the behavior of the AI model. The same approach may be used to deliver other types of malicious code that don't target AI directly (See Drive-by Compromise in ATT&CK).
Dürüstlük rozeti gerekçesi
Gerçek altyapı, geçerli kimlik bilgisi veya bir kurban gerektirir. Çalışan bir erişim, dürüst biçimde tarayıcı içinde canlandırılamaz.