Skip to content
Agentic AI Security Hub
Agentic AI · MCP security · near real time

Intelligence and a CISO framework for securing agentic AI

We track the latest agentic-AI and AI-cybersecurity threats worldwide and host an authoritative reference framework for securing agentic AI and Model Context Protocol (MCP) deployments — framed around identity, permissions, and blast radius.

Sample data. Showing illustrative sample items as a fallback — the live feed is not available right now.

Critical now

View all

The highest-severity items requiring CISO attention.

Researchers show that a malicious MCP server can embed adversarial instructions inside a tool's description metadata, which the host model reads as trusted context. Connected agents can be coerced into exfiltrating secrets or invoking other tools without the user ever seeing the injected text.

Global

A widely installed community MCP server shipped a minor update that added covert data-collection logic to a previously benign file tool. Because most deployments had auto-approval enabled, the malicious version propagated before maintainers pulled it.

Global
Severity: CriticalVulnerability·MCP/tool abuse

Unauthenticated RCE in MCP server bound to 0.0.0.0 over SSE

A flaw in an MCP server's Server-Sent Events transport allows command execution when the service is bound to 0.0.0.0 without authentication. Internet-exposed instances were discoverable through routine scanning of /sse endpoints.

GlobalCVE-SAMPLE-001

Trend snapshot

Distribution across the current feed (12 items).

Severity: Critical
3
Severity: High
4
Severity: Medium
3
Severity: Low
1
Severity: Info
1

The 8-pillar CISO framework

A decision-grade reference for securing agentic AI and MCP — from discovery and gateway architecture to zero-trust identity, sandboxing, and post-quantum resilience.

Read the framework
  1. 1Discovery
  2. 2MCP Gateway
  3. 3Zero Trust Identity
  4. 4Supply Chain
  5. 5Deep Inspection
  6. 6Sandboxing
  7. 7Governance
  8. 8Post-Quantum