Rethinking AI Security: The Dynamic Context Firewall for MCP

来源:Cisco.com

文章摘要

Cisco proposes a Dynamic Context Firewall (DCF) to enhance the security of AI interactions, specifically for AI assistants leveraging Anthropic's Model Context Protocol (MCP).

  • The DCF functions as an inline security layer, intercepting and analyzing the 'context object' exchanged between MCP clients (AI assistants) and external resources.
  • It validates and sanitizes external information, including tool definitions, API specifications, and knowledge bases, to control what AI models access.
  • The solution aims to mitigate critical security risks such as prompt injection, data exfiltration, and unauthorized access by AI agents.
  • By enforcing security policies on the dynamic context, the DCF protects both the AI model and integrated external systems.