#mcp


Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data

Jul 2, 2026 // 02:07

New Microsoft research shows how attackers can hijack AI agents that act on a user’s behalf, using nothing more than a poisoned tool description to make the […]

Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs

Jun 26, 2026 // 16:58

A high-severity flaw in Amazon Q Developer let a malicious repository run commands and steal a developer’s cloud credentials. The path was short: a developer […]

Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

Apr 20, 2026 // 13:44

Cybersecurity researchers have discovered a critical “by design” weakness in the Model Context Protocol’s (MCP) architecture that could pave the way for remote code execution […]

FortiGate Ransomware, Citrix Hacking, MCP Abuse, LiveChat Phishing, and Other Threats.

Mar 19, 2026 // 17:33

ThreatsDay Bulletin is back on The Hacker News, and this week has a familiar unsettling feeling. It’s not overwhelming or catastrophic, but rather a collection […]