MITRE ATLAS 2026 Top AI Detection: AI Container Registry Image Tampering and Sup

This rule detects unauthorized tampering with AI container images within a container registry. It identifies when existing image tags are overwritten by actors outside of authorized CI/CD pipelines, or when production MLOps infrastructure pulls unsigned or invalid container images, potentially indicating a supply chain attack targeting AI model artifacts.