AI SECURITY · Advanced · FICTIONAL ENVIRONMENT
MCP Server Quarantine
Developers report a new capability named export_workspace on an approved MCP server. No approval record exists.
MISSIONRespond to an unexpected tool appearing on a trusted shared MCP server.
MISSION PROGRESS
0 / 4
PHASE 1
Open evidence sources. Build your incident picture.Investigate
INVESTIGATION JOURNAL
Outputs appear here as you inspect systems.Observed evidence
Evidence you inspect will appear here.
PHASE 2
This is not scored until you choose to check it.Form a root-cause hypothesis
PHASE 3
Controls unlock after an evidence-consistent hypothesis.Apply a mitigation
PHASE 4
Do not declare victory before verification.Verify recovery
Debrief
- MCP discovery is a trust decision.
- Server identity should include artifact/version integrity, not only hostname.
- Tool-level allowlists reduce the blast radius of server drift.