Matrix/Lateral Movement/T-5001
T-5001validated

SSRF via Tool

Use agent tools to make server-side requests to internal services not directly accessible

Tactic

Lateral Movement (Stage 5)

Pivot from compromised agent to connected services or other agents

Attack Class

SKILL-EXFIL

Using legitimate tool capabilities for unauthorized data transfer

Evidence

validated

Reproduced in controlled lab environment (DVAA) with documented steps.

DVAA Validation

L3-02

Detection (HackMyAgent)

NET-001NET-002NET-003MCP-001
npx hackmyagent secure --ci

Defense (OASB Controls)

OASB 10.1OASB 10.2OASB 10.3OASB 10.4OASB 10.5OASB 7.1OASB 7.2OASB 7.3OASB 7.4

How to Cite

AI Agent Threat Matrix T-5001 (SSRF via Tool). OpenA2A, 2026. https://threats.opena2a.org/techniques/T-5001