From the course: Unboxing AI: Build a Remote MCP Server from Zero to Deployed with OAuth
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
MCP security risk: Agent error - OAuth Tutorial
From the course: Unboxing AI: Build a Remote MCP Server from Zero to Deployed with OAuth
MCP security risk: Agent error
- That brings us to agent error. We often talk about AI hallucinations. When you're working with AI agents, a lot of those hallucinations happen without us seeing it. If you've ever worked with, say, ChatGPT or Claude, in one of these more advanced like research modes, you often see the system is like doing a bunch of things in a separate box, and then that box collapses, and you just sit and wait, and it takes a while, and it's doing a bunch of things. If you go open those boxes, you'll often see the agent go and do a bunch of things, and then after a while, abandoning whatever it was doing because it was wrong, and then do a bunch of other things, and then maybe abandoning them, and then going through a third round before it actually gets where it wants to go. Those are errors, and they are obfuscated from our view because if we actually saw them happening, we would trust the systems less than it would be against the interests of the people who build these systems for us. The…
Contents
-
-
-
-
-
- (Locked) Why authorization and security matter1m 53s
- (Locked) The MCP authorization spec4m 23s
- (Locked) Implementing MCP authorization2m 44s
- (Locked) The MCP OAuth 2.0 flow visualized4m 22s
- (Locked) Best-practices for MCP authorization5m 8s
- (Locked) Options for MCP authorization5m 32s
- (Locked) MCP and security46s
- (Locked) MCP security risk: Vibe coding2m 26s
- (Locked) MCP security risk: Excessive permisisons3m 20s
- (Locked) MCP security risk: Agent error1m 53s
- (Locked) MCP security risk: Prompt injection2m 29s
- (Locked) MCP security risk: Confused deputy1m 42s
- (Locked) MCP security risk: Session hijacking1m 16s
- (Locked) Authorization and security are job #12m 3s
- (Locked)
-
-