Home » Database

AVID-2023-V010

Description

Microsoft Azure Service Disruption

Details

The Microsoft AI Red Team performed a red team exercise on an internal Azure service with the intention of disrupting its service. This operation had a combination of traditional ATT&CK enterprise techniques such as finding valid account, and exfiltrating data – all interleaved with adversarial ML specific steps such as offline and online evasion examples.

References

AVID Taxonomy Categorization

  • Risk domains: Security
  • SEP subcategories: S0100: Software Vulnerability; S0301: Information Leak; S0403: Adversarial Example
  • Lifecycle stages: L06: Deployment

Affected or Relevant Artifacts

  • Developer:
  • Deployer: Internal Microsoft Azure Service
  • Artifact Details:
    TypeName
    SystemInternal Microsoft Azure Service

Other information

  • Vulnerability Class: ATLAS Case Study
  • Date Published: 2023-03-31
  • Date Last Modified: 2023-03-31
  • Version: 0.2
  • AVID Entry