← AI security in plain English

AML.T0114

MITRE ATLAS / AI Service Web Interface

Adversaries abuse the web interface of a public AI service as an intermediary command and control relay, driving a browser or embedded WebView to prompt an assistant into fetching adversary URLs or carrying victim data in prompt content.

Think of it likePassing notes through a busy public noticeboard rather than meeting anyone face to face.

In plain English

By automating a browser against a popular AI assistant, malware can relay instructions and data without ever contacting attacker infrastructure directly. The traffic goes to a service the network already trusts.