Exfiltration via AI Agent Tool Invocation AML.T0086

Adversaries may use prompts to invoke an agent's tool capable of performing write operations to exfiltrate data. Sensitive information can be encoded into the tool's input parameters and transmitted as part of a seemingly legitimate action. Variants include sending emails, creating or modifying documents, updating CRM records, or even generating media such as images or videos.

MITRE ATLAS technique. Tactics: Exfiltration. View on atlas.mitre.org

Rules tagged with this technique

Every catalog rule tagged with this ATLAS technique, grouped by vendor. Click a rule title for its full predicates, exclusions, and indicators.

Elastic 3 rules

Back to the ATLAS matrix