APromptRiskDBThreat intelligence atlas
AI Case Study

Microsoft Edge AI Evasion - AI Case Study

The Azure Red Team performed a red team exercise on a new Microsoft product designed for running AI workloads at the edge. This exercise was meant to use an automated system to continuously manipulate a target image to cause the ML model to produce misclassifications.

ExerciseNew Microsoft AI ProductAzure Red TeamReconnaissanceResource DevelopmentAI Model Access

Overview

Case steps5Steps described in the case record.
Techniques5Attack methods mentioned in the case steps.
Linked CVEs0Known vulnerabilities mentioned in the record.

Risk patterns

Patterns found in the case record and its linked vulnerabilities.

  • 1Dominant ATLAS tactic. Reconnaissance appears in 1 case steps.
  • 2Multiple attack methods. The case connects to 5 unique AI attack methods.

Procedure timeline

Search the case steps or filter them by attacker goal.

Reconnaissance1Resource Development1AI Model Access1AI Attack Staging1Impact1
  1. AI Attack Staging

    The red team created an automated system that continuously manipulated an original target image, that tricked the ML model into producing incorrect inferences, but the perturbations in the image were unnoticeable to the human eye.

  2. Impact

    Feeding this perturbed image, the red team was able to evade the ML model by causing misclassifications.

Mitigations

Defenses connected to the attack methods in this case.

Sources

Original public records and references for this case.