MCPTox: A Benchmark for Tool Poisoning Attack on Real-World MCP Servers
Factual evidence
What the source reports
Researchers introduce MCPTox, a benchmark evaluating tool poisoning attacks against real-world Model Context Protocol servers.
Inspect the evidence
- Inclusion basis
- Enterprise AI
- Publisher and source type
- arXiv cs.LG — Machine Learning · RESEARCH
- Published by source
- 30 September 2026
- Collected by OneBench
- 1 Oct 2026, 03:02 UK
Stored source excerpt
arXiv:2508.14925v2 Announce Type: replace-cross Abstract: By providing a standardized interface for LLM agents to interact with external tools, the Model Context Protocol (MCP) is quickly…
Short excerpt from the collected text, not the full source. Use the source link to read it in context.
The factual summary is a OneBench synthesis, not a quotation or independent verification. Collection time is not publication time. Open the source for its full context; related reporting can share the same underlying announcement.
OneBench interpretation
Institutional assessment
So what
Emerging vulnerabilities in Model Context Protocol integrations could compromise agentic workflows using external enterprise tools.
Do what
Review security and isolation controls for Model Context Protocol servers with the team managing agent infrastructure.