PulseAugur / Brief
EN
LIVE 22:58:38

Brief

last 24h
[2/2] 221 sources

Multi-source AI news clustered, deduplicated, and scored 0–100 across authority, cluster strength, headline signal, and time decay.

  1. WorkOS Releases auth.md: An Open Agent Registration Protocol Built on OAuth Standards

    WorkOS has introduced auth.md, a new open protocol designed to streamline how AI agents register with web applications. This protocol leverages existing OAuth standards to enable automated authentication, eliminating the need for human intervention. Auth.md defines two distinct registration flows: 'agent verified,' where an agent's identity provider attests to the user's identity, and 'user claimed,' which uses a one-time code sent via email. The goal is to standardize agent access to enterprise systems by providing a structured and auditable method for credential issuance and revocation. AI

    IMPACT Standardizes how AI agents can securely access web applications, potentially simplifying integration and improving security for enterprise systems.

  2. We scanned 500 MCP servers on Smithery. Here is what we found.

    A security scan of 500 servers on the MCP registry Smithery revealed that 15.3% of them contained security vulnerabilities. These findings include critical issues like file-disguise vectors and tool description injections, with one in six servers exhibiting toxic flows that form complete attack paths. Notably, some well-known services such as Slack, Google Sheets, and AWS documentation were found to have high-severity issues, indicating that even actively maintained and recognizable servers are not immune to these security risks. AI

    We scanned 500 MCP servers on Smithery. Here is what we found.

    IMPACT Highlights critical security risks in AI agent development tools, potentially impacting enterprise adoption and agent security practices.