SECAI Core · phase 11 of 15 · noun
AI Supply Chain Attack
A security attack where an attacker compromises one or more components used to build, train, deploy, or operate an AI system so that the final AI system is corrupted, backdoored, or behaves malicious
The Explain card
- Plain English
- An AI supply chain attack compromises one or more components used to build, train, deploy, or operate an AI system, so the final product ends up corrupted, backdoored, or behaving maliciously.
- Example
- An attacker publishes a tampered version of a popular tokenizer library. Every team that pulls it at build time ships a model pipeline that quietly sends prompts to an external server.
- Why it matters
- AI systems are assembled from datasets, pre-trained weights, libraries, and hosted services, each a link someone else controls. Defenders pin versions, verify signatures, and keep an inventory of every component.
- Hook
- You are only as safe as the weakest thing you downloaded.
Word knowledge
How the word is built, where it came from, and what it sits beside in memory.
In a sentence
The security team investigated an AI Supply Chain Attack after checksum verification found an altered model file in the deployment pipeline.
Why these words
- AI English initialism of artificial intelligence identifies the systems and development ecosystem being discussed
- supply Old French souploier, from Latin supplere, to fill up points to the provision of components, data, software, and services
- chain Old French chaine, from Latin catena, chain links the sequence of contributors, components, and processes
- attack French attaquer, from Italian attaccare, to attach or engage marks the phrase as the name of an adversarial action
Where it came from
- Origin
- an English compound formed by adding AI to the established cybersecurity phrase supply chain attack
- Entered the language
- 21st century
- What changed
- Supply chain moved from describing commercial production and distribution networks to describing dependencies in software, data, models, infrastructure, and AI development.
How it is spelled
- Pattern
- AI remains an uppercase initialism.
- Pattern
- Supply chain remains an open compound with a space.
- Pattern
- The phrase uses three noun units in sequence: AI, supply chain, and attack.
Spelled like
- AI security
- software supply chain attack
- supply chain risk
Broken into chunks
-
AI
- AI model
- AI security
-
supply chain
- software supply chain
- supply chain risk
-
attack
- cyberattack
- attack vector
What it sits beside
Same subject
- model poisoning
- data poisoning
- dependency confusion
- backdoor attack
- artifact signing
Same shape
- software supply chain attack
- third-party dependency attack
- machine learning pipeline attack
AI development assets
- training datasets
- pretrained models
- model weights
software supply chain elements
- package repositories
- build pipelines
- third-party libraries
Where it sits in the deck
Phase 11: Threat Landscape: Attack Vectors and Adversarial Techniques
With defences named, learn what they must defend against — the full catalogue of attack techniques targeting AI systems, their inputs, outputs, training pipelines, and supply chains.