NPNikhil Pareekinnikhil-p-blogs.hashnode.dev·Jun 4 · 11 min readA Threat Model for MCP Servers: Five Attack Classes and the Checks That Catch ThemA security researcher publishes an MCP server that does exactly one thing: it returns a random fact of the day. You connect it. Sometime later, your agent quietly forwards a user's entire WhatsApp his10
NPNikhil Pareekinnikhil-p-blogs.hashnode.dev·Jun 3 · 6 min readTool-calling eval is four problems, not one I want to start with a trace that still bothers me. An agent fails to book a flight. The model called search_flights with departure_date="next Friday". The endpoint expected an ISO date, returned a 4010