TB2-ASupport/admin ↔ chatbot
Account spoofing / excessive privilege
A compromised operator account changes monitoring, suppresses alerts, accesses citizen data or causes incorrect escalation across multiple chatbots.
Required next stepSTRIDE analysis of identity, role model, tenant scope, session management, auditability and emergency override
Why this position
Position critical. A compromised operator account hits every chatbot under its management: altered supervision, deleted alerts, exposed citizen data, distorted escalations. D4 (config compromise) feeding D1: the multi-deployment blast radius grounds the Critical position.
Exploit. medium. Medium because privileged access is required first. But operator accounts are a real, documented target (valid accounts, ATLAS AML.T0012): phishing or session reuse is enough, and the cited sheets, framed on the caller channel, do not cover the admin console.
Sources: AML.T0012 Valid Accounts · AML.T0053 AI Agent Tool Invocation
TB2-BSupport/admin ↔ chatbot
Administrative DoS / misconfiguration
Operator action or a compromised session disables service or creates overload across all managed instances.
Required next stepSeparation of duties, change control, emergency rollback and per-tenant blast-radius limits
Why this position
Position critical. Privileged insider DoS: an operator action or a compromised session disables the service or overloads every managed instance, a case the catalogue sheets (external DoS) do not cover directly. Simultaneous unavailability of asset A4 across all managed deployments is a full D2: Critical position.
Sources: AML.T0029 Denial of AI Service · AML.T0034 Cost Harvesting