Artificial Intelligence Ai Labs
Explore 1 lab in Artificial Intelligence Ai.
MCP Tool Poisoning is a specialised supply-chain / prompt-injection vector where an attacker supplies or updates an MCP tool with hidden or malicious instructions inside the tool metadata (name, description, help text, or tool manifest). The LLM ingests the tool description as part of its tool-aware context and executes or reasons about actions based on those hidden instructions — for example, exfiltrating files, leaking secrets, or making outbound calls — even though the visible UI and initial approval appeared benign.
How it works (technical)
*Treat tools like code: provenance, signing, minimal trust, and reproducible manifests.
Select a language to explore available labs for this vulnerability.
Try adjusting your language filter.
Want to skill-up in secure coding and AppSec? Try SecDim Wargames to learn how to find, hack and fix security vulnerabilities inspired by real-world incidents.
Join our secure coding and AppSec community. A discussion board to share and discuss all aspects of secure programming, AppSec, DevSecOps, fuzzing, cloudsec, AIsec code review, and more.
Read more