Fetching from the wire…
Public story · 2026-03-03 · source-backed
The 2026 State of AI Security Report from Cisco ships real tools, not just analysis: an MCP scanner, an A2A protocol scanner, a pickle format fuzzer, and a skill file scanner — all open-source. The data behind it: 83% of organizations plan agentic AI deployment but only 29% feel ready for the security implications. This is the most actionable security report of the quarter because the scanners are immediately usable. Cisco Blog
Each link below shares sources, entities, or timing with this story.
The MCP ecosystem now has 30 documented CVEs across six weeks spanning three attack layers: server-side injection (43%), protocol library flaws, and developer tooling vulnerabilities. Simultaneously, the AIUC-1 Consortium reports 80% of enterprises have observed risky agent be...
Vercel's skills.sh marketplace (69K+ skills) now has triple-layer security: Snyk scans (catching prompt injection in 36% of skills), Gen/Norton Agent Trust Hub (4-tier risk ratings), and Socket supply chain analysis (94.5% precision). Cisco open-sourced both a skill-scanner an...
AAIF will govern MCP, Block's Goose, AGENTS.md, and Google's A2A under vendor-neutral open governance. AWS, Cisco, Google, Microsoft, Salesforce, SAP, and ServiceNow are participating. Both inter-agent communication and tool access protocols now have neutral stewardship. Linux...
The first security tool specifically for Google's Agent-to-Agent protocol. Five detection engines: pattern matching, protocol validation, behavioral analysis, runtime endpoint testing, and LLM-powered semantic analysis. Covers 17 threat types including agent impersonation and...
On June 16–17, Google extended its A2A interoperability push with a standard for how agents discover available resources and tools, the same week Microsoft's Work IQ went GA with A2A plus remote MCP. It's a multi-vendor race to standardize the plumbing. Design against the inte...
Cisco's State of AI Security 2026 report is the first major infrastructure vendor to formally categorize MCP as an enterprise attack surface. Key findings: 83% of organizations plan to deploy agentic AI, but only 29% feel prepared to secure it. Concrete attack examples: WhatsA...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.