SIGNAL//DESK
AI securitysrc: MITRE ATLAS

User Execution

User execution is when a person is tricked into clicking on something dangerous, like a fake link or a malicious file, which then allows a hacker to run harmful software on their computer. It is like being tricked into opening a door for someone who shouldn't be inside.

User execution refers to the process where an adversary leverages human interaction to trigger the execution of malicious code. This often occurs when a user is manipulated through social engineering or inadvertently interacts with compromised AI-generated content or supply chain artifacts, such as malicious documents or scripts.

User execution is a technique where an adversary relies upon specific user-initiated actions to achieve code execution. This vector encompasses the inadvertent execution of unsafe code introduced via AI Supply Chain Compromise (AML.T0010) or the exploitation of human trust through social engineering, compelling the user to execute malicious payloads, scripts, or binaries embedded within seemingly benign files or links.


← all terms