Shared entity / Threat pattern
48 threats catalogued against Google's Agent Payments Protocol v0.2, eight of them High severity, because signed mandates do not cover the pre-authorization context
arXiv
Policy dependency / Threat pattern
mcp-shell Ships Security Off in One Deploy Path and Bypassable in the Other (CVE-2026-55580/55581/55582)
GitHub Security Advisories
Stack layer / Threat pattern
Google Cloud Shipped Gemini Enterprise for Financial Services With 50 Skills, 13 Connectors and a Partner Agent Marketplace
Google Cloud Blog (corroborated by PRNewswire, 2026-08-25 12:00)
Policy dependency / Stack layer
WebMCP-Phalanx blocks all 80 tool-description injections in a browser agent, then gets bypassed by a malicious tool name called before inspection
arXiv
Stack layer / Threat pattern
Gemini CLI Closes a macOS Seatbelt Escape Through the Docker Desktop Socket
GitHub
Stack layer / Threat pattern
System Prompts Leave Detectable Behavioral Fingerprints, but One Formal-Tone Sentence Collapses Detection From 0.978 to 0.547 AUC
arXiv 2608.24461
Stack layer / Threat pattern
Exact Algorithm Decides When an Agent Runtime Can Safely Checkpoint, Fork, Restore, or Merge an Execution
arXiv 2608.22928
Stack layer / Threat pattern
An unauthenticated RCE proof of concept for exposed DeepSeek Harness web instances is public on GitHub
GitHub