S0141RS3-T14-S0141-Z · Full risk code

Unauthorized Outbound Connections by an Autonomous System

自主系統未授權對外連線

Operation & Monitoring
Risk Description

When while performing a data retrieval task, the system transmits full context containing internal information to an external service; due to unmitigated control gaps, the organization's data exfiltration monitoring does not cover connections initiated autonomously by the system, and the incident is discovered only weeks later, triggering compliance exposure and operational reputational costs.

Framework Mappings

NIST CSF 2.0DE.CM
ISO/IEC 27001Annex A 8.20、8.12
MITRE ATLASAML.T0051
NIST AI 600-1Information Security
EU AI ActArt.26
MAESTRO
ISO/IEC 5338運作與監控

Risk Treatment & Implementation Guidance

Enforce network whitelists on autonomous systems, permitting only approved endpoints; Monitor agent-initiated egress, alerting on internal-information transmission; Constrain the context sent per task design, tagging and filtering internal information