VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_ce35f07949665590fe9c521e5e155109

Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data

Published Jun 30, 2026

New Microsoft research shows how attackers can hijack AI agents that act on a user's behalf, using nothing more than a poisoned tool description to make the agent quietly hand over company data to an outsider.

The trick is that the agent never breaks a rule. Every step looks routine, so in a default setup no alarm may fire.

The work comes from Microsoft Incident Response and its

Affected AI Products

ai agent
Get the weekly digest. Every Monday: top AI security stories of the week. Free.