Bidda Sovereign Intelligence · 10,108 Verified Nodes · 39 Sovereign Pillars

MITRE ATLAS Serverless (AML.T0008.004) - Adversarial use of Serverless as adapted in MITRE ATT&CK T1583.007

This node addresses MITRE ATLAS technique AML.T0008.004 (Serverless). Adversaries may purchase and configure serverless cloud infrastructure, such as…

What MITRE ATLAS Serverless (AML.T0008.004) - Adversarial use of Serverless as adapted in MITRE ATT&CK T1583.007 requires

This node addresses MITRE ATLAS technique AML.T0008.004 (Serverless). Adversaries may purchase and configure serverless cloud infrastructure, such as Cloudflare Workers, AWS Lambda functions, or Google Apps Scripts, that can be used during targeting. By utilizing serverless infrastructure, adversaries can make it more difficult to attribute infrastructure used during operations back to them. Once acquired, the serverless runtime environment can be leveraged to either respond directly to infected machines or to Proxy traffic to an adversary-owned command and control server. As traffic generated by these functions will appear to come from subdomains of common cloud providers, it may be difficult to distinguish from ordinary traffic to these providers. This can be used to bypass a Content Security Policy which prevent retrieving content from arbitrary locations... Defending against this technique is required under EU AI Act, NIST AI RMF, and ISO/IEC 42001 obligations; this node operationalises the documented ATLAS mitigations and cross-instrument controls into a deterministic verification workflow. Sub-technique of ATLAS AML.T0008. ATT&CK reference: T1583.007 provides authoritative mitigation guidance for this technique class.

Pillar: AI Governance & Law · Authority: MITRE Corporation · Version: 1.0.1 · Last updated:

Primary source: https://raw.githubusercontent.com/mitre-atlas/atlas-data/main/dist/ATLAS.yaml

SHA-256 integrity: f93cb4f2fdf5deb9c98e99f7a69895bbccd9fa76e6eea66b5f964aecef10a816

Primary Citations — 6 traced to source

  • MITRE ATLAS - Serverless (AML.T0008.004), https://raw.githubusercontent.com/mitre-atlas/atlas-data/main/dist/ATLAS.yaml#AML.T0008.004, AML.T0008.004 technique entry, 2026
  • EU AI Act - Regulation (EU) 2024/1689 on Artificial Intelligence, https://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX:32024R1689, Article 15 (Accuracy, Robustness, Cybersecurity), 2024

+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.

Access

⚠ Important: Human Verification Required

Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.