Skip to main content

Disable File Downloads on MLDE Instances

CCC.MLDE.CN02 · Access

Prevent unauthorized file downloads from MLDE instances to protect sensitive data from being exfiltrated.

Related Capabilities

IDTitleDescription
CCC.MLDE.CP01Managed Notebook EnvironmentsProvides fully managed notebook instances specifically designed for machine learning development, eliminating the need to manage underlying infrastructure.
CCC.MLDE.CP07Data Pipeline IntegrationSupports integration with data preparation and feature engineering pipelines, including versioning of datasets and capabilities used in ML experiments.
CCC.MLDE.CP08Model RegistryProvides centralized storage and versioning for trained models, including metadata about training runs, model artifacts, and deployment history.
CCC.Core.CP08Data ReplicationThe service automatically replicates data across multiple deployments simultaneously with parity, or may be configured to do so.
CCC.Core.CP14API AccessThe service exposes a port enabling external actors to interact programmatically with the service and its resources using HTTP protocol methods such as GET, POST, PUT, and DELETE.

Related Threats

IDTitleDescription
CCC.MLDE.TH02Training Data or Model Artifacts are ExfiltratedNotebook instances and connected data pipelines may be configured with unrestricted egress paths, such as file downloads, public network interfaces, or writable external destinations. Training datasets, model artifacts, and embedded credentials could be transferred out of the environment through these paths. This results in a loss of confidentiality for proprietary data and models, and may expose regulated or sensitive records used in training.
CCC.Core.TH02Data is Intercepted in TransitData transmitted by the service is susceptible to collection by any entity with access to any part of the transmission path. Packet observations can be used to support the planning of attacks by profiling origin points, destinations, and usage patterns. The data may also be vulnerable to interception or modification in transit if not properly encrypted, impacting the confidentiality or integrity of the transmitted data.

Assessment Requirements

IDTextApplicability
CCC.MLDE.CN02.AR01Confirm that file download functionality is disabled on MLDE instances containing sensitive data.tlp-red
CCC.MLDE.CN02.AR02For MLDE instances without sensitive data, ensure that file downloads are monitored and logged.tlp-red, tlp-amber, tlp-green, tlp-clear

Guideline Mappings

FrameworkIDRemarks
NIST-CSFPR.DS-5
CCMDSI-05
CCMDSI-07
ISO_270012013 A.13.2.1
NIST_800_53SC-7
NIST_800_53SC-8