
The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Researchers found that over 7,000 Model Context Protocol (MCP) servers, which connect AI models to external data, are misconfigured and publicly accessible. These vulnerabilities, including the 'NeighborJack' flaw, could allow attackers to hijack host machines or tamper with AI data, posing significant security and data integrity risks.[AI generated]
Why's our monitor labelling this an incident or hazard?
The event involves AI systems explicitly, specifically MCP servers that connect AI models to external data. The misconfigurations and vulnerabilities in these AI-related servers have directly led to security compromises or the potential for such compromises, including unauthorized code execution and data manipulation. These outcomes constitute harm to property and potentially to communities relying on the AI outputs, fitting the definition of an AI Incident. The researchers' findings indicate that these issues are already present and exploitable, not merely potential future risks, thus qualifying as an AI Incident rather than a hazard or complementary information.[AI generated]