跳到正文
FunCoding

搜索

搜索文档、Skill 和 MCP

Impact (AML.TA0011)

OpenClaw impact threats (AML.TA0011): T-IMPACT-001, T-IMPACT-002, T-IMPACT-003

Threats in the impact tactic (AML.TA0011) of the MITRE ATLAS framework. Each entry lists the ATLAS technique, attack vector, affected components, current mitigations, residual risk, and recommendations.

The trust boundaries and data flows these threats cross are defined in the threat model index, which also holds the risk matrix, the recommendations summary, and the ATLAS technique mapping.

T-IMPACT-001: Unauthorized command execution

AttributeValue
ATLAS IDAML.T0031 - Erode AI Model Integrity
DescriptionAttacker executes arbitrary commands on the user system
Attack vectorPrompt injection combined with exec approval bypass
Affected componentsBash tool, command execution
Current mitigationsExec approvals, Docker sandbox option (default runtime backend)
Residual riskCritical - host execution possible when sandbox is disabled
RecommendationsImprove approval UX; sandbox-off deployments remain a deliberate operator choice, documented as such

T-IMPACT-002: Resource exhaustion (DoS)

AttributeValue
ATLAS IDAML.T0031 - Erode AI Model Integrity
DescriptionAttacker exhausts API credits or compute resources
Attack vectorAutomated message flooding, expensive tool calls
Affected componentsGateway, agent sessions, API provider
Current mitigationsNone
Residual riskHigh - no per-sender rate limiting
RecommendationsPer-sender rate limits, cost budgets

T-IMPACT-003: Reputation damage

AttributeValue
ATLAS IDAML.T0031 - Erode AI Model Integrity
DescriptionAttacker causes the agent to send harmful/offensive content
Attack vectorPrompt injection causing inappropriate responses
Affected componentsOutput generation, channel messaging
Current mitigationsLLM provider content policies
Residual riskMedium - provider filters are imperfect
RecommendationsOutput filtering layer, user controls