AML.T0095: Search Open Websites/Domains
Adversaries may search public websites and/or domains for information about victims that can be used during targeting. Information about victims may be available in various online sites, such as social media, new sites, or domains owned by the victim.
Adversaries may find the information they seek to gather via search engines. They can use precise search queries to identify software platforms or services used by the victim to use in targeting. This may be followed by Exploit Public-Facing Application or Prompt Infiltration via Public-Facing Application.
Sub-techniques
AML.T0095.000: Code Repositories
Adversaries may search public code repositories for information about a victim or victim system that can be used during targeting. Victims may store code or artifacts related to their AI systems in repositories on various third-party websites such as GitHub, GitLab, SourceForge, and BitBucket. Adversaries may search code repositories of common AI tools, frameworks, models, or agentic systems that are used--but not owned--by the victim. Public code repositories can often be a source of various information about victims, such as commonly used AI frameworks, libraries, models, datasets, agents, and agent tools, as well as the names of employees. Adversaries may also identify more sensitive data, including accidentally leaked credentials or API keys (ex: Credentials from AI Agent Configuration). Information from these sources may reveal opportunities for other forms of Reconnaissance (ex: Gather RAG-Indexed Targets), establishing operational resources (ex: Acquire Public AI Artifacts), Discovery (ex: Discover AI Agent Configuration) and/or Initial Access (ex: Valid Accounts or Phishing).
Standards mapping
Where this fits in a TurboPentest engagement
This weakness is not covered by the automated black-box pentest. IntegSec pentesters cover it in a manual engagement.
Frequently asked questions
What is AML.T0095 Search Open Websites/Domains?
Adversaries may search public websites and/or domains for information about victims that can be used during targeting. Information about victims may be available in various online sites, such as social media, new sites, or domains owned by the victim. Adversaries may find the information they seek to gather via search engines. They can use precise search queries to identify software platforms or services used by the victim to use in targeting. This may be followed by Exploit Public-Facing Application or Prompt Infiltration via Public-Facing Application.
Which tactics does AML.T0095 belong to?
AML.T0095 maps to the Reconnaissance tactic.
Does TurboPentest test for Search Open Websites/Domains?
This weakness is not covered by the automated black-box pentest. IntegSec pentesters cover it in a manual engagement.
Related MITRE ATLAS techniques
- ReconnaissanceAML.T0000: Search Open Technical Databases
- ReconnaissanceAML.T0001: Search Open AI Vulnerability Analysis
- ReconnaissanceAML.T0003: Search Victim-Owned Websites
- ReconnaissanceAML.T0004: Search Application Repositories
- ReconnaissanceAML.T0006: Active Scanning
- ReconnaissanceAML.T0064: Gather RAG-Indexed Targets
About this reference
These security references are maintained by IntegSec, an offensive-security firm whose team holds CISSP, OSCP, and OSCE certifications and has run thousands of penetration tests. Content is kept current as tools, standards, and attack techniques evolve.
Find these issues before an attacker does
TurboPentest runs an agentic AI pentest against your target and reports findings with proof, from $99 per target.
Start a pentest