S0137RS3-T15-S0137-Z · Full risk code

Cost Amplification Attack

成本放大攻擊

Operation & Monitoring
Risk Description

When an attacker sends only a few requests per minute, never approaching rate limits; due to unmitigated control gaps, each request consumes extremely high resources, and the organization notices the anomaly only from the month-end billing statement, triggering compliance exposure and operational reputational costs.

Framework Mappings

OWASP Top 10 for LLMLLM10
MITRE ATLASAML.T0029
ISO/IEC 5338運作與監控
MIT AI Risk RepositoryDomain 2

Risk Treatment & Implementation Guidance

Meter protection by inference cost rather than request frequency, capping cost per account; Deploy anomalous-billing alerts on unusual cost slopes; Detect and degrade high-cost request patterns