ATLAS Threat Hunt Generator
Turn a known AI attack technique into a detection hypothesis tailored to your system.
What is this? MITRE ATLAS is a catalog of attack techniques observed against AI and machine learning systems: model theft, prompt injection, training data poisoning, inference API abuse, and more. Most security teams do not have detection coverage for these because standard SIEM rulesets were not written with AI systems in mind.
What you get. Pick an ATLAS technique, describe the AI system you want to hunt in, and this tool generates a structured threat hunt hypothesis: a specific, testable statement of what attacker activity would look like in your environment, the data sources you need to query, and a detection rule in your chosen SIEM format ready to run or adapt.
Two starting points. Proactive hunt starts from a technique you want to rule out. Reactive hunt starts from an anomaly you already observed and maps it to the most likely ATLAS technique.

