MCP agent-to-agent comms may be the riskiest protocol you've never heard of

Ars Technica AI · rss · 2026-10-06

Ars Technica reports that MCP, the protocol for agent-to-agent communication, is an under-discussed and highly exploitable attack surface. Over the past five months, Google and four other organizations have acknowledged vulnerabilities where one compromised agent spreads malicious instructions to other internal agents, enabling data exfiltration.

How it works

The core problem: trust chains between agents lack mitigation and are hard to defend.

Original post →

More from coding & agent

coding & agent channel →