Back to feed
GoogleArs Technica - All contentDan Goodin

MCP for agent-to-agent comms may be the riskiest protocol you've never heard of

MCP for agent-to-agent comms may be the riskiest protocol you've never heard of

At a glance

The adoption of AI agents in millions of organizations is creating new opportunities for attackers to make them take malicious actions, such as exfiltrating database contents and sensitive business and personal information. In the past five months, Google and four other organizations—with little in common except for th

Primary source
— Read original article
Published
Topic
Google

The adoption of AI agents in millions of organizations is creating new opportunities for attackers to make them take malicious actions, such as exfiltrating database contents and sensitive business and personal information.

In the past five months, Google and four other organizations—with little in common except for their use of AI agents—have acknowledged vulnerabilities that exploit one agent inside a targeted network to spread harmful instructions to other internal agents.

The technique is a special form of prompt injection that targets not the LLM but a particular agent, such as one for translation or data analysis.

Guardrails inside such agents, if they exist at all, are often lax and will send the instructions to other agents down the chain. Because the latter agent explicitly trusts the first one, it follows the directions.

Unexpected and hard to mitigate Independent researcher Syed Anas Mohiuddin tested agents from organizations including Google, JP Morgan Chase, Weviate, Rapid7, the French government's interministerial digital directorate, and the US federal government.

His proof-of-concept attacks exploit trust gaps in MCP, short for Model Context Protocol . The standard

This summary comes from Ars Technica - All content. Read the full article at the original source.

References

Gemini Call for Me might tell your mom you’re running late
GoogleGemini Call for Me might tell your mom you’re running late

Gemini Call for Me might tell your mom you’re running late

Google may be expanding its "Call for Me" AI feature beyond business calls so you can use it to send messages to friends and family. Android Authority reports finding a "Gemini…

Stevie Bonifield
How to turn on Developer Mode on your Chromebook
GoogleCommon mistakes you should avoid when using foldable phones

How to turn on Developer Mode on your Chromebook

Enabling Developer Mode on a Chromebook unlocks new capabilities and app options. Here's where to find it.

staff@engadget.com (Gabriela Vătu)