Trust gaps in the new protocol spread malicious prompts from one agent to another.
To respect copyright, we link to the source rather than republishing the full text. Read the complete article on Ars Technica.