A Formal Security Framework for MCP-Based AI Agents: Threat Taxonomy, Verification Models, and Defense Mechanisms
The Model Context Protocol (MCP), introduced by Anthropic in November 2024 and now governed by the Linux Foundation's Agentic AI Foundation, has rapidly become the de facto standard for connecting large language model (LLM)-based agents to external tools and data sources, with over 97 million monthly SDK downloads and more than 177000 registered tools. However, this explosive adoption has exposed a critical gap: the absence of a unified, formal security framework capable of systematically charac
Record details
Published: 7 April 2026
Source: arXiv
Category: Research
Topics: Military & security · Agents & autonomy
Retrieved: 14 July 2026
Related evidence
These records share source-supplied organisations, an exact publisher byline, automatic topics or regions. The reason is shown on every link; related does not mean supporting, agreeing with or verifying this record.
Friendly Fire: Hijacking Defensive Cyber AI Agents for Remote Code Execution
AI Now Institute · 8 July 2026
Double Agents: Defensive AI Agents Magnify Cyber Risks
AI Now Institute · 8 July 2026
AI hackers are getting faster. The government may not be ready
Fast Company Tech · 29 July 2026
Hugging Face hack marks start of dangerous AI cyber era and many firms 'don't even know it'
CNBC Technology · 8 August 2026
Meta returns to open models with Zuckerberg's plan to out-copy China and sell compute by auction
The Decoder · 10 August 2026
Corporations Constitute Intelligence
arXiv · 3 April 2026
How to cite this record
ethics.ai (7 April 2026), “A Formal Security Framework for MCP-Based AI Agents: Threat Taxonomy, Verification Models, and Defense Mechanisms,” evidence record 6246, https://ethics.ai/record/6246 (originally published by arXiv).
Use and limitations
This page is a stable index and citation surface for a source record. ethics.ai did not author the underlying report and has not independently verified every claim. Automatic topics may be imperfect. For consequential use, quote and cite the original publisher.