AgentReadyHomeAgent Listing
Home · AI Security Answers · AI agent architecture & threat modeling

What is MCP tool poisoning and how do I defend against malicious tool descriptions?

Grounded & cited · AI agent security

MCP tool poisoning occurs when an attacker compromises a Multi-Agent Collaboration Protocol (MCP) server, leading to malicious tool descriptions that instruct an agent to perform unauthorized actions, such as exfiltrating credentials. This can violate compliance posture and bypass sandbox isolation by giving the agent reach into external systems.

To defend against malicious tool descriptions:

Grounded in

How does your AI agent score?

Get a free, instant AI agent security readiness snapshot — mapped to NIST, OWASP & ISO — then unlock the full report with a prioritized, cited fix-list.

Get the AI Security & Compliance Brief
Grounded, practical guidance for securing AI agents — mapped to NIST, OWASP & ISO. Occasional, and you can unsubscribe anytime.

This AI-generated answer is for guidance only — not a certification, audit, or penetration test. Grounded in the NIST AI RMF, OWASP LLM Top 10, and ISO/IEC 42001 control text; verify applicability to your environment.