跳到正文
FunCoding

搜索

搜索文档、文章、Skill 和 MCP

Defense evasion (AML.TA0007)

OpenClaw defense evasion threats (AML.TA0007): T-EVADE-001, T-EVADE-002

Threats in the defense evasion tactic (AML.TA0007) of the MITRE ATLAS framework. Each entry lists the ATLAS technique, attack vector, affected components, current mitigations, residual risk, and recommendations.

The trust boundaries and data flows these threats cross are defined in the threat model index, which also holds the risk matrix, the recommendations summary, and the ATLAS technique mapping.

T-EVADE-001: Moderation pattern bypass

AttributeValue
ATLAS IDAML.T0043 - Craft Adversarial Data
DescriptionAttacker crafts skill content to evade ClawHub moderation checks
Attack vectorUnicode homoglyphs, encoding tricks, dynamic loading
Affected componentsClawHub moderation/scanning pipeline
Current mitigationsStatic pattern rules, AST-adjacent code scanning, LLM agentic-risk review, VirusTotal
Residual riskMedium - novel obfuscation can still slip past layered heuristics
RecommendationsContinue expanding the pattern/behavioral corpus as new evasions are found

T-EVADE-002: Content wrapper escape

AttributeValue
ATLAS IDAML.T0043 - Craft Adversarial Data
DescriptionAttacker crafts content that escapes the external-content wrapper context
Attack vectorTag manipulation, context confusion, instruction override
Affected componentsExternal content wrapping
Current mitigationsRandom-boundary XML-style markers + security notice, plus homoglyph/whitespace-variant marker-spoof detection
Residual riskMedium - novel escapes discovered regularly
RecommendationsOutput-side validation in addition to input-side wrapping