跳到正文
Ars Technica · AI· Dan Goodin·· 3 小时前AI 评分67

MCP 协议漏洞揭示 AI 智能体间通信的结构性信任缺陷

MCP for agent-to-agent comms may be the riskiest protocol you've never heard of

AI 导读

独立研究员 Syed Anas Mohiuddin 发现 Google、JP Morgan Chase、Weviate、Rapid7、法国政府及美国联邦政府的 AI 智能体在使用 MCP(Model Context Protocol)进行内部通信时存在结构性漏洞,允许攻击者利用一个受信任智能体向其他智能体传播恶意指令,从而窃取数据库内容或敏感信息。

来源:Ars Technica · AI · arstechnica.com