1. Home
  2. Blog
  3. Supply chain

Supply chain

2 posts tagged with “Supply chain”

MCP Tool Poisoning: How the AI Agent Protocol Became a Supply Chain Attack Surface
MCPAI securitysupply chain

MCP Tool Poisoning: How the AI Agent Protocol Became a Supply Chain Attack Surface

The MCP protocol connects AI agents to over 10,000 tools. It also creates a new supply chain attack surface: poisoned tool descriptions that silently hijack agent behavior. Here's the data, the CVEs, and what to do.

Jul 21, 2026
Read
Slopsquatting: When AI Hallucinations Become Supply Chain Attacks
slopsquattingsupply chainAI security

Slopsquatting: When AI Hallucinations Become Supply Chain Attacks

AI coding assistants hallucinate package names 19.7% of the time. Attackers register those names on npm and PyPI before real packages can claim them. Tens of thousands of developers have already installed malicious packages their AI suggested. Here is how the attack works, what the research shows, and how to stop your team from becoming the next victim.

Jul 21, 2026
Read
  1. Home
  2. Blog
  3. Supply chain

Supply chain

2 posts tagged with “Supply chain”

MCP Tool Poisoning: How the AI Agent Protocol Became a Supply Chain Attack Surface
MCPAI securitysupply chain

MCP Tool Poisoning: How the AI Agent Protocol Became a Supply Chain Attack Surface

The MCP protocol connects AI agents to over 10,000 tools. It also creates a new supply chain attack surface: poisoned tool descriptions that silently hijack agent behavior. Here's the data, the CVEs, and what to do.

Jul 21, 2026
Read
Slopsquatting: When AI Hallucinations Become Supply Chain Attacks
slopsquattingsupply chainAI security

Slopsquatting: When AI Hallucinations Become Supply Chain Attacks

AI coding assistants hallucinate package names 19.7% of the time. Attackers register those names on npm and PyPI before real packages can claim them. Tens of thousands of developers have already installed malicious packages their AI suggested. Here is how the attack works, what the research shows, and how to stop your team from becoming the next victim.

Jul 21, 2026
Read
HOL LogoHOL
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

HOL LogoHOL
Docs
  • API Reference
  • Run in Postman
  • OpenAPI Spec
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • Blog
  • GitHub
  • Privacy Policy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.