BREAKING
MCP Tools: New Supply Chain Target
From Packages to Agents
0
M
agents in 2025
0
B
agents by 2030
0
x
projected growth
How MCP Gets Attacked
Tool Poisoning
Invariant Labs
●
Malicious instructions in descriptions
●
First reported April 2025
Rug Pull & Concentration
●
Approved server turns malicious later
●
One breach cascades to all agents
0
M
downloads exposed
0
+
public servers
0
vulnerable instances
Securing AI-Shaped Builds Begins
AI NEWS BLITZ
As AI agents enter the build, MCP tools are becoming a fresh supply chain target.