Yunhao Yao

h-index: 2 33 citations 13 papers (total)

Papers in Database (2)

attack arXiv Jan 12, 2026 · 12w ago

MCP-ITP: An Automated Framework for Implicit Tool Poisoning in MCP

Ruiqi Li, Zhiqiang Wang, Yunhao Yao et al. · University of Science and Technology of China

Automated black-box framework generates stealthy MCP tool poisoning attacks that hijack LLM agents into invoking high-privilege tools with 84.2% success rate

Insecure Plugin Design Prompt Injection nlp
1 citations PDF
attack arXiv Dec 16, 2025 · Dec 2025

IntentMiner: Intent Inversion Attack via Tool Call Analysis in the Model Context Protocol

Yunhao Yao, Zhiqiang Wang, Haoran Cheng et al. · University of Science and Technology of China · Beijing University of Aeronautics and Astronautics

Attacks LLM agent privacy by showing semi-honest MCP servers reconstruct user intent from tool call metadata alone

Insecure Plugin Design Sensitive Information Disclosure nlp
PDF