T14-AT-014CRITICAL

Systemic Risk Creation

T14 · Infrastructure & Economic Warfare →
Risk score270
RatingCritical
Procedures10
Severity
Mechanism

The AI ecosystem has developed deep interdependencies: a small number of foundation model providers serve thousands of applications, shared ML libraries (PyTorch, TensorFlow, Hugging Face) are ubiquitous, cloud AI platforms concentrate millions of workloads, and MCP creates new tool-to-tool dependency chains. Systemic risk attacks target these concentration points — compromising a single widely-used component creates cascading failures across the ecosystem. The trust assumption violated is independence: organizations assume their AI systems are independently robust, but in reality they share foundation models, training frameworks, serving infrastructure, and data sources with their peers and competitors.

Mitigation
Dependency diversityHIGH
Circuit breaker architectureHIGH
Supply chain bill of materials (AI-BOM)HIGH
Graceful degradation designMEDIUM
Chaining

Systemic risk creation is the *terminal technique* in T14 — all other techniques chain into it when their effects cascade beyond the immediate target. T14-AT-005 (Critical Infrastructure) + T14-AT-012 (Cloud Provider Exploitation) + T14-AT-007 (Nation-State) converge here.

Framework mapping
MITRE ATLASAML.T0048
Open in the technique browser →