Analysis · curated 20 Jul 2026
The Last Patch. The MCP Attack Surface We’re Building… | by Zac | Jul, 2026
First reported medium.com
Coverage timeline
Single-source analysis — first reported, latest, and curated coincide.
Why it matters
MCP and A2A adoption expands the agentic attack surface, and this analysis frames why defenders should treat agent-callable endpoints and orchestration layers as new trust boundaries rather than conventional application perimeters.
An opinion piece by Zac on Medium argues that the rush to expose MCP endpoints and build agent-to-agent (A2A) orchestration is creating a large new attack surface, where every MCP endpoint is an agent-callable function and every A2A handoff is a traversable trust boundary. The article draws on Anthropic's report mapping 832 accounts banned for malicious cyber activity (March 2025–March 2026) against MITRE ATT&CK, noting medium-or-higher-risk actors rose from 33% to 56% and that AI is increasingly used deeper in the attack lifecycle.