Crafted Inputs Amplifying Computational Cost
特製輸入放大運算成本
Operation & Monitoring
Risk Description
When an attacker continuously submits crafted inputs, each costing tens of times more to process than a normal request; due to unmitigated control gaps, the system responds normally with no error records, and the anomaly appears only in cost reports, discovered by finance weeks later, triggering compliance exposure and operational reputational costs.
Framework Mappings
OWASP Top 10 for LLMLLM10
MITRE ATLASAML.T0029
ISO/IEC 5338運作與監控
MIT AI Risk RepositoryDomain 2
Risk Treatment & Implementation Guidance
Monitor per-request inference cost, alerting on anomalous cost patterns; Intercept known amplification inputs with cost caps; Put cost metrics on the operations dashboard rather than waiting for monthly finance review