AltaySec · ATLAS 2026.07
AML.T0081

Modify AI Agent Configuration

Bu tekniğin yerleşik Türkçe adı henüz terminoloji kanonuna eklenmedi; İngilizce adı gösteriliyor.

C · Açıklama (tarayıcıda dürüstçe simüle edilemez) AML.TA0006 · Kalıcılık AML.TA0007 · Savunmadan Kaçınma

Açıklama

Türkçe çeviri henüz mevcut değil; resmi İngilizce açıklama gösteriliyor (uydurma çeviri yapılmaz).

Adversaries may modify the configuration files for AI agents on a system. This allows malicious changes to persist beyond the life of a single agent and affects any agents that share the configuration. Configuration changes may include modifications to the system prompt, tampering with or replacing knowledge sources, modification to settings of connected tools, and more. Through those changes, an attacker could redirect outputs or tools to malicious services, embed covert instructions that exfiltrate data, or weaken security controls that normally restrict agent behavior. Adversaries may modify or disable a configuration setting related to security controls, such as those that would prevent the AI Agent from taking actions that may be harmful to the user's system without human-in-the-loop oversight. Disabling AI agent security features may allow adversaries to achieve their malicious goals and maintain long-term corruption of the AI agent.

Dürüstlük rozeti gerekçesi

Kalıcılık gerçek model ağırlıklarına ya da altyapıya süreklilik sağlayan müdahale gerektirir; tarayıcıda mekanizma gösterilebilir ama gerçek kalıcılık taklit edilemez.

Kaynak

← Matrise dön