{
  "node_id": "mitre-atlas-manual-modification",
  "title": "MITRE ATLAS Manual Modification (AML.T0043.003) - Adversarial Manual Modification threat to AI systems",
  "domain": "AI Governance & Law",
  "version": "1.0.1",
  "last_updated": "2026-07-22",
  "bluf": "This node addresses MITRE ATLAS technique AML.T0043.003 (Manual Modification). Adversaries may manually modify the input data to craft adversarial data. They may use their knowledge of the target model to modify parts of the data they suspect helps the model in performing its task. The adversary may use trial and error until they are able to verify they have a working adversarial input. Defending against this technique is required under EU AI Act, NIST AI RMF, and ISO/IEC 42001 obligations; this node operationalises the documented ATLAS mitigations and cross-instrument controls into a deterministic verification workflow. Sub-technique of ATLAS AML.T0043. ATLAS-mapped mitigations: AML.M0003 Model Hardening, AML.M0004 Restrict Number of AI Model Queries, AML.M0006 Use Ensemble Methods, AML.M0010 Input Restoration, AML.M0015 Adversarial Input Detection.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "ai_overlay_2026"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nist-ai-rmf-1-0",
    "eu-ai-act-2024",
    "iso-iec-42001-ai-management-system-2023",
    "mitre-atlas-mitigation-model-hardening",
    "mitre-atlas-mitigation-restrict-number-of-ai-model-queries",
    "mitre-atlas-mitigation-use-ensemble-methods",
    "mitre-atlas-mitigation-input-restoration",
    "mitre-atlas-mitigation-adversarial-input-detection"
  ],
  "primary_citations_count": 10
}