<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>AI Agent on Vivian@SecMomBag</title><link>https://vvnblog.com/en/tags/ai-agent/</link><description>Recent content in AI Agent on Vivian@SecMomBag</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>Copyright © 2026 Vivian All Rights Reserved.</copyright><lastBuildDate>Sat, 05 Sep 2026 00:00:00 +0800</lastBuildDate><atom:link href="https://vvnblog.com/en/tags/ai-agent/index.xml" rel="self" type="application/rss+xml"/><item><title>AI Dark Arts (17): The Tool Definition Is More Dangerous Than the Tool</title><link>https://vvnblog.com/en/posts/ai-dark-arts-17/</link><pubDate>Sat, 05 Sep 2026 00:00:00 +0800</pubDate><guid>https://vvnblog.com/en/posts/ai-dark-arts-17/</guid><description>A tool description nobody reads closely is enough to make an AI hand database tokens to an attacker. Four ways MCP tool poisoning works, and where to stop it when you bring MCP in.</description></item><item><title>AI Dark Arts (16): MCP Connects the Tools, and the Risk Comes With Them</title><link>https://vvnblog.com/en/posts/ai-dark-arts-16/</link><pubDate>Mon, 17 Aug 2026 00:00:00 +0800</pubDate><guid>https://vvnblog.com/en/posts/ai-dark-arts-16/</guid><description>Three roles in Host, Client and Server, three capabilities in tools, resources and prompts. Understand how MCP works and you can see which part the risk arrives through.</description></item><item><title>AI Dark Arts (15): When the AI Acts on Its Own, Taking Apart the Moment an Agent Falls</title><link>https://vvnblog.com/en/posts/ai-dark-arts-15/</link><pubDate>Sun, 16 Aug 2026 00:00:00 +0800</pubDate><guid>https://vvnblog.com/en/posts/ai-dark-arts-15/</guid><description>Once an AI has tools, memory and an autonomous loop, a mistake no longer stops at the answer. A tool argument, a sentence in memory, a text file in the project: an agent can promote any of them into an instruction it treats as approved.</description></item></channel></rss>