diff --git a/clusters/mitre-atlas-attack-pattern.json b/clusters/mitre-atlas-attack-pattern.json index 5ab9d4e..a48c2cd 100644 --- a/clusters/mitre-atlas-attack-pattern.json +++ b/clusters/mitre-atlas-attack-pattern.json @@ -798,7 +798,7 @@ "value": "Publish Poisoned Datasets" }, { - "description": "Adversaries may attempt to poison datasets used by a ML model by modifying the underlying data or its labels.\nThis allows the adversary to embed vulnerabilities in ML models trained on the data that may not be easily detectable.\nData poisoning attacks may or may not require modifying the labels.\nThe embedded vulnerability is activated at a later time by data samples with an [Insert Backdoor Trigger](https://atlas.mitre.org/techniques/AML.T0043.004)\n\nPoisoned data can be introduced via [ML Supply Chain Compromise](https://atlas.mitre.org/techniques/AML.T0010) or the data may be poisoned after the adversary gains [Initial Access](/tactics/AML.TA0004) to the system.\n", + "description": "Adversaries may attempt to poison datasets used by a ML model by modifying the underlying data or its labels.\nThis allows the adversary to embed vulnerabilities in ML models trained on the data that may not be easily detectable.\nData poisoning attacks may or may not require modifying the labels.\nThe embedded vulnerability is activated at a later time by data samples with an [Insert Backdoor Trigger](https://atlas.mitre.org/techniques/AML.T0043.004)\n\nPoisoned data can be introduced via [ML Supply Chain Compromise](https://atlas.mitre.org/techniques/AML.T0010) or the data may be poisoned after the adversary gains [Initial Access](https://atlas.mitre.org/tactics/AML.TA0004) to the system.\n", "meta": { "external_id": "AML.T0020", "kill_chain": [ @@ -816,7 +816,7 @@ "value": "Poison Training Data" }, { - "description": "Adversaries may create accounts with various services for use in targeting, to gain access to resources needed in [ML Attack Staging](/tactics/AML.TA0001), or for victim impersonation.\n", + "description": "Adversaries may create accounts with various services for use in targeting, to gain access to resources needed in [ML Attack Staging](https://atlas.mitre.org/tactics/AML.TA0001), or for victim impersonation.\n", "meta": { "external_id": "AML.T0021", "kill_chain": [ @@ -987,7 +987,7 @@ "value": "Cost Harvesting" }, { - "description": "Adversaries may collect ML artifacts for [Exfiltration](/tactics/AML.TA0010) or for use in [ML Attack Staging](/tactics/AML.TA0001).\nML artifacts include models and datasets as well as other telemetry data produced when interacting with a model.\n", + "description": "Adversaries may collect ML artifacts for [Exfiltration](https://atlas.mitre.org/tactics/AML.TA0010) or for use in [ML Attack Staging](https://atlas.mitre.org/tactics/AML.TA0001).\nML artifacts include models and datasets as well as other telemetry data produced when interacting with a model.\n", "meta": { "external_id": "AML.T0035", "kill_chain": [ @@ -1381,7 +1381,7 @@ "value": "User Harm" }, { - "description": "Adversaries may exfiltrate ML artifacts to steal intellectual property and cause economic harm to the victim organization.\n\nProprietary training data is costly to collect and annotate and may be a target for [Exfiltration](/tactics/AML.TA0010) and theft.\n\nMLaaS providers charge for use of their API.\nAn adversary who has stolen a model via [Exfiltration](/tactics/AML.TA0010) or via [Extract ML Model](https://atlas.mitre.org/techniques/AML.T0024.002) now has unlimited use of that service without paying the owner of the intellectual property.\n", + "description": "Adversaries may exfiltrate ML artifacts to steal intellectual property and cause economic harm to the victim organization.\n\nProprietary training data is costly to collect and annotate and may be a target for [Exfiltration](https://atlas.mitre.org/tactics/AML.TA0010) and theft.\n\nMLaaS providers charge for use of their API.\nAn adversary who has stolen a model via [Exfiltration](https://atlas.mitre.org/tactics/AML.TA0010) or via [Extract ML Model](https://atlas.mitre.org/techniques/AML.T0024.002) now has unlimited use of that service without paying the owner of the intellectual property.\n", "meta": { "external_id": "AML.T0048.004", "kill_chain": [