
The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Researchers discovered a supply chain attack where threat actors created lookalike Model Context Protocol (MCP) servers and malicious forks, exploiting AI agent trust to steal credentials and exfiltrate data. The attack, observed over four months, highlights significant security risks in AI agent infrastructure, particularly in software supply chains.[AI generated]
Why's our monitor labelling this an incident or hazard?
The article primarily focuses on the potential security risks and vulnerabilities inherent in AI infrastructure using MCP and the looming threat posed by quantum computing to current cryptographic standards. It describes plausible future harms such as context poisoning and quantum decryption attacks but does not report any actual incident or realized harm. The discussion is forward-looking and advisory, emphasizing the need for preparedness and resilience. Therefore, it fits the definition of an AI Hazard, as it plausibly leads to AI incidents if unaddressed, but no incident has yet occurred or been described.[AI generated]