MITRE ATLAS Mapped 2026 Top AI Agent Security Detection – AI Agent Tool Data Poisoning (AML.T0099)
Detects unauthorized modifications to AI Agent Model Context Protocol (MCP) tool manifests. This includes the injection of imperative instructions into tool descriptions, the addition of suspicious instruction-related fields to tool output schemas, or manifest updates initiated by unverified publishers.
YARA-L

