Techniqueresource-developmentATLAS
AML.T0058Publish Poisoned Models
What it is
Adversaries may publish a poisoned model to a public location such as a model registry or code repository. The poisoned model may be a novel model or a poisoned variant of an existing open-source model. This model may be introduced to a victim system via [AI Supply Chain Compromise](/techniques/AML.T0010).
References
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.