T-6003observed
Configuration Modification
Modify agent or gateway configuration files to maintain persistent access
Tactic
Persistence (Stage 6)
Establish persistent access surviving restarts and session changes
Attack Class
GATEWAY-EXPLOIT
Modifying gateway or proxy configurations to intercept, redirect, or manipulate agent traffic
Evidence
observed
Confirmed in real-world production systems or internet-wide exposure assessments.
DVAA Validation
config modification
Detection (HackMyAgent)
GATEWAY-001GATEWAY-002GATEWAY-003GATEWAY-004GATEWAY-005GATEWAY-006GATEWAY-007GATEWAY-008
npx hackmyagent secure --ciDefense (OASB Controls)
OASB 8.1OASB 8.2OASB 8.3OASB 8.4
How to Cite
AI Agent Threat Matrix T-6003 (Configuration Modification). OpenA2A, 2026. https://threats.opena2a.org/techniques/T-6003