跳到正文
FunCoding

搜索

搜索文档、文章、Skill 和 MCP

Reconnaissance (AML.TA0002)

OpenClaw reconnaissance threats (AML.TA0002): T-RECON-001, T-RECON-002

Threats in the reconnaissance tactic (AML.TA0002) of the MITRE ATLAS framework. Each entry lists the ATLAS technique, attack vector, affected components, current mitigations, residual risk, and recommendations.

The trust boundaries and data flows these threats cross are defined in the threat model index, which also holds the risk matrix, the recommendations summary, and the ATLAS technique mapping.

T-RECON-001: Agent endpoint discovery

AttributeValue
ATLAS IDAML.T0006 - Active Scanning
DescriptionAttacker scans for exposed OpenClaw gateway endpoints
Attack vectorNetwork scanning, Shodan queries, DNS enumeration
Affected componentsGateway, exposed API endpoints
Current mitigationsTailscale auth option, bind to loopback by default
Residual riskMedium - public gateways discoverable
RecommendationsDocument secure deployment, add rate limiting on discovery endpoints

T-RECON-002: Channel integration discovery

AttributeValue
ATLAS IDAML.T0006 - Active Scanning
DescriptionAttacker checks messaging channels to identify AI-managed accounts
Attack vectorSending test messages, observing response patterns
Affected componentsAll channel integrations
Current mitigationsNone specific
Residual riskLow - limited value from discovery alone
RecommendationsConsider response timing randomization