Skip to content

Add SAFE-T1112 Sampling Request Abuse#186

Open
saxena-gaurav wants to merge 1 commit intosafe-agentic-framework:mainfrom
saxena-gaurav:main
Open

Add SAFE-T1112 Sampling Request Abuse#186
saxena-gaurav wants to merge 1 commit intosafe-agentic-framework:mainfrom
saxena-gaurav:main

Conversation

@saxena-gaurav
Copy link
Copy Markdown

Summary

Adds a new Execution technique, SAFE-T1112: Sampling Request Abuse, to document abuse of the MCP sampling/createMessage primitive and tool-enabled sampling flows.

Changes

  • adds techniques/SAFE-T1112/README.md
  • adds techniques/SAFE-T1112/detection-rule.yml
  • adds techniques/SAFE-T1112/test-logs.json
  • adds techniques/SAFE-T1112/test_detection_rule.py
  • adds a README TTP table entry for SAFE-T1112 under Execution

Why

This technique is not currently represented in the SAFE-MCP Execution catalog. It is distinct from broad prompt injection because the trust boundary under abuse is the MCP sampling primitive itself, including nested model calls, user approval flows, and tool-enabled sampling.

Validation

  • python3 techniques/SAFE-T1112/test_detection_rule.py

Signed-off-by: Gaurav Saxena <gauravsaxena@Gauravs-MacBook-Air.local>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant