<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RingZero Blog</title><description>RingZero is one platform for all of your source code security needs — tunable AI agents that penetration-test the hosts you control, supply chain scanning, org-wide security health, and clean, actionable reporting.</description><link>https://ringzero.tech/</link><item><title>MCP tool poisoning: how malicious MCP servers attack AI agents — and how to catch them</title><link>https://ringzero.tech/blog/mcp-tool-poisoning/</link><guid isPermaLink="true">https://ringzero.tech/blog/mcp-tool-poisoning/</guid><description>Tool poisoning hides instructions inside MCP tool descriptions where users never look but agents always read. Here&apos;s how the attack works and how to detect it.</description><pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate></item><item><title>How to vet an MCP server before your agents load it</title><link>https://ringzero.tech/blog/how-to-vet-an-mcp-server/</link><guid isPermaLink="true">https://ringzero.tech/blog/how-to-vet-an-mcp-server/</guid><description>A practical nine-point checklist for reviewing any MCP server — package or remote endpoint — before it gets your agent&apos;s privileges.</description><pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate></item><item><title>What is AI penetration testing? How autonomous pentest agents actually work</title><link>https://ringzero.tech/blog/what-is-ai-penetration-testing/</link><guid isPermaLink="true">https://ringzero.tech/blog/what-is-ai-penetration-testing/</guid><description>AI pentest agents reason about targets instead of matching patterns. What that means in practice, how a run is structured, and why authorization is the hard part.</description><pubDate>Tue, 21 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Typosquatting comes for MCP registries: lessons from npm&apos;s decade of supply chain attacks</title><link>https://ringzero.tech/blog/mcp-typosquatting-lessons-from-npm/</link><guid isPermaLink="true">https://ringzero.tech/blog/mcp-typosquatting-lessons-from-npm/</guid><description>npm spent ten years teaching the industry how package registries get attacked. MCP registries are about to take the same course — with agents amplifying the blast radius.</description><pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate></item></channel></rss>