Latest papers

3 papers
tool arXiv Apr 23, 2026 · 28d ago

MCP Pitfall Lab: Exposing Developer Pitfalls in MCP Tool Server Security under Multi-Vector Attacks

Run Hao, Zhuoran Tan · Aarhus University · University of Glasgow

Security testing framework for MCP tool servers detecting developer pitfalls through static analysis and trace-based validation

AI Supply Chain Attacks Insecure Plugin Design Prompt Injection Benchmarks & Evaluation Blue-Team Agents multimodalnlp
PDF
tool arXiv Jan 3, 2026 · Jan 2026

MCP-SandboxScan: WASM-based Secure Execution and Runtime Analysis for MCP Tools

Zhuoran Tan, Run Hao, Jeremy Singer et al. · University of Glasgow · Aarhus University

WASM sandbox that safely executes untrusted MCP tools and detects prompt injection via runtime external-input-to-LLM-sink data flow analysis

Insecure Plugin Design Prompt Injection nlp
PDF
defense arXiv Aug 31, 2025 · Aug 2025

Online Decentralized Federated Multi-task Learning With Trustworthiness in Cyber-Physical Systems

Olusola Odeyomi, Sofiat Olaosebikan, Ajibuwa Opeyemi et al. · North Carolina Agricultural and Technical State University · University of Glasgow

Defends federated learning against majority-Byzantine attacks using cyber-physical trust signals to weight neighbor model updates

Data Poisoning Attack federated-learning
PDF