Published August 1, 2026 · Added August 1, 2026

RufRoot: Patching Doesn’t Undo Poisoning — The MCP Flaw That Persists Inside AI Memory

Forkast reports that RufRoot in the open-source Ruflo AI agent platform let unauthenticated attackers use exposed MCP tools for remote code execution and poison AgentDB's persistent memory, meaning a software patch alone may not remove planted instructions.

Forkast reports that RufRoot in the open-source Ruflo AI agent platform let unauthenticated attackers use exposed MCP tools for remote code execution and poison AgentDB’s persistent memory, meaning a software patch alone may not remove planted instructions.

Read the original story.

Source: Forkast