Acquire Infrastructure
Acquiring infrastructure is like an attacker renting a secret base or buying tools to carry out a plan. Just as a criminal might rent a van or use a public computer to stay hidden, someone attacking an AI system rents or buys digital and physical tools—like cloud servers or special disguises—to launch their operation while keeping their true identity a mystery.
Acquiring infrastructure refers to the process where an adversary procures, leases, or utilizes existing resources to stage and execute an attack. This includes provisioning cloud instances, registering domains, or leveraging third-party services to blend malicious activity with legitimate traffic. By using these resources, adversaries can rapidly scale, modify, or terminate their operational footprint to evade detection and attribution.
Acquire Infrastructure denotes the strategic procurement, leasing, or utilization of digital and physical assets to facilitate the lifecycle of an adversarial operation. This encompasses the deployment of cloud-based compute, network domains, and third-party web services to orchestrate AI-targeted attacks, as well as the integration of physical countermeasures—such as adversarial patches or sensor-disrupting wearables—to degrade model performance. The objective is to establish a resilient, ephemeral, and obfuscated operational environment that enables staging, execution, and persistence while minimizing the risk of attribution through the exploitation of legitimate traffic patterns and rapid resource lifecycle management.