Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

MCP is the New Attack Surface -- and Your Controls Probably Don't Cover It #ai #mcp

AI just handed attackers a new front door — and most security teams don't even know it exists. Model Context Protocol (MCP) is the emerging standard that lets AI agents talk to your tools, your data, and each other. It's also the most significant new attack surface to emerge in years. The NSA noticed. Your adversaries already have.
Featured Post

AI in the UK: Driving Innovation Without Expanding Cyber Risk

Artificial intelligence is no longer a future ambition for UK organisations. It is already shaping how decisions are made, how services are delivered, and how quickly businesses can respond to change. From automation and analytics to customer engagement and operational optimisation, AI is becoming an integral part of the modern enterprise.

Allowed Is Not Aligned: Why Retrofitted Tools Can't Secure AI Agents

Gartner named Zenity the Company to Beat in AI Agent Governance on April 17, 2026. That recognition, grounded in technical capabilities, customer implementations, ecosystem breadth, and business model, isn't a marketing award. To us, it's the analyst community confirming that purpose-built architecture for agentic AI is winning. The recognition didn't come in isolation. Gartner's own language captures the stakes.

How Weak AI Governance Increases Organizational Exposure to Risks

‍ Artificial intelligence (AI) is transforming businesses rapidly, but weak AI governance creates significant risks. Without proper oversight, organizations face costly data breaches, operational failures, and damage to their reputation. This article explains why strong AI governance is essential to managing these risks.

What AI Security Is... and Isn't; Introducing A10 AI Firewall

What AI Security Is… and Isn't; Introducing A10 AI Firewall Artificial intelligence is rapidly expanding across the enterprise landscape, but standard security measures simply aren't keeping up. In this video, Arjoyita Roy and Product Manager Luca Labardini from A10 Networks dive deep into the unique security challenges of modern AI applications and introduce the innovative A10 AI Firewall.

What Does an AI Firewall Actually Protect Against?

What Does an AI Firewall Actually Protect Against? A10 Networks' Arjoyita Roy and Product Manager Luca Labardini discuss the robust threat coverage provided by the A10 AI Firewall. As enterprises increasingly adopt AI models, they face novel security risks that traditional firewalls cannot catch. Luca walks through the comprehensive list of defaults the system protects against, ensuring multi-layered security for organizational data.

Protecting critical infrastructure in the AI era: It starts with data

In the public sector, it’s not uncommon for disruptions of critical infrastructure to ripple outward and wreak major havoc on systems and communities whether the cause is a technical issue, a natural disaster, or a cyber attack. As critical infrastructure becomes more connected through distributed systems and IoT devices, the attack surface continues to expand.

We solved the blank canvas problem | Tom Occhino from Vercel

The prototype is the new PRD. In 2013, Facebook’s development of React changed the way software engineers build and write code. Today, LLMs are transforming that process again. This episode features Tom Occhino, React co-creator and current CPO at Vercel, whose work sits at the center of both shifts. In conversation with 1Password CTO Nancy Wang and Google’s Dev Tagare, Tom explores the platform changes driven by AI-written code, builds a full-stack app in real time, and sets up a deeper discussion on the security risks of agents building software.

Trusted AI Adoption (Part 2): Detection

It’s Monday morning. Your coding agents ran all weekend. Your security dashboard shows the exact same numbers it did Friday afternoon. Same models, the same approved Model Context Protocol (MCP) servers, the same AI assets you are familiar with. Reassuring. Then, suddenly, you get a notification: a production deploy failed an audit. The build references a model nobody on your team registered.