00:24
2026-08-31
dev.to
ai-safety
Tool Poisoning Isn't Code, It's Text: How MCP Tool Descriptions Smuggle Prompt Injection
A developer has identified a new prompt injection vector in the Model Context Protocol (MCP) that exploits tool descriptions rather than executable code. The attack, called 'tool description injection…