Skip to main content

CCC.Vector.TH03: Cross-modal or Metadata Leakage

Threat ID:CCC.Vector.TH03
Title:Cross-modal or Metadata Leakage
Description:

Attackers may infer sensitive information through metadata filters or by correlating embeddings across modalities (e.g., voice and face), bypassing surface-level access controls.

Related Capabilities

IDTitleDescription
CCC.Vector.F04Metadata FilteringSupports structured filtering on metadata fields alongside vector similarity search queries.
CCC.Vector.F10Multi-modal Vector SupportSupports storing and searching across vectors derived from multiple modalities (e.g., text, image, audio).

External Mappings

Reference IDEntry IDStrengthRemarks
FINOS-AIGF
AIR-SEC-002
0
Information Leaked to Vector Store

Controls

IDTitleObjectiveControl FamilyThreat MappingsGuideline MappingsAssessment Requirements
CCC.Vector.C03Enforce Metadata-Level Access ControlsApply access control policies to metadata fields used in filtering to prevent unauthorized exposure or inference. Vector Indexing
2
3
1