Agent Attack Paths Measured: Browser Content Leaks 11/12, MCP Config 8/8, Shell 0/14

DaimoNNN · reddit · 2026-09-21

A hands-on test of three entry paths into AI agents quantifies prompt-injection leak rates: browser content leaked in 11 of 12 runs, project-scoped MCP config leaked in 8 of 8, while shell commands leaked 0 of 14. The takeaway: the wider an agent's context sources, the wider its injection surface — MCP config files and web content are the weakest links. Full writeup at efecakici.com.tr/blog/agent-lab-three-paths/

Original post →

More from coding & agent

coding & agent channel →