API Security

Akto Launches Industry’s First MCP Security Platform

Akto Launches Industry's First MCP Security Platform

Akto Launches Industry’s First Security Platform for Model Context Protocol (MCP) Servers

Akto, a leader in API security, today announced the launch of Akto MCP Security, the world’s first purpose-built solution designed to secure Model Context Protocol (MCP) servers. As AI agents like ChatGPT, Claude, and GitHub Copilot rapidly become part of core enterprise workflows, developers are adopting MCP to enable these agents to safely and dynamically invoke APIs. But with this shift comes a new attack surface – MCP Servers.

“MCP is the protocol powering the next generation of AI-native software,” said Ankita Gupta, Co-Founder and CEO of Akto.

In May 2025, a critical vulnerability in GitHub’s MCP server allowed attackers to embed malicious instructions in public issues. When processed by AI agents, those instructions led to unauthorized access and data leakage highlighting the urgent need for MCP-specific security controls.

Akto MCP Security is designed from the ground up to protect MCPs. It detects shadow MCP servers, tests for prompt injection and tool poisoning vulnerabilities, and monitors AI-to-API traffic in real time to flag suspicious behavior. The platform helps security teams stay ahead of threats in a world where APIs aren’t just passive endpoints, they’re actively invoked by autonomous agents that can introduce new risks with every interaction.

Built in collaboration with Akto’s enterprise customers, the Akto MCP Security platform includes three core modules at launch:

  • MCP Server Discovery â€“ Automatically detects all MCP-compatible servers and related API calls across environments using Akto’s 50+ traffic and code connectors, eliminating shadow MCPs.
  • MCP Security Testing â€“ Continuously tests MCP endpoints and tools for vulnerabilities like unauthorized access, prompt injection, insecure auth, and data exposure.
  • MCP Monitoring & Threat Detection â€“ Real-time behavioral analysis of MCP traffic to detect threats such as tool misuse, permission escalation, and malicious agent behavior.

“MCP opens powerful new possibilities, but also dangerous new paths for abuse,” said Ankush Jain, CTO at Akto. “We’ve built dedicated logic for how MCP works, so security teams can monitor, test, and protect these systems with context.”

Akto’s early access program is already onboarding enterprise customers who are actively building with MCP, including teams at leading banking, fintech, and healthcare companies. The company plans to expand its API Security capabilities to cover modern, new threats.

For more details or to schedule a customized demo, visit the Akto website or email earlyaccess@akto.io.

Explore AITechPark for the latest advancements in AI, IOT, Cybersecurity, AITech News, and insightful updates from industry experts!

PR Newswire

PR Newswire empowers communicators to identify and engage with key influencers, craft and distribute meaningful stories, and measure the financial impact of their efforts. Cision is a leading global provider of earned media software and services to public relations and marketing communications professionals.

Related posts

ThreatX extends RAAP for API security from development to runtime

Business Wire

Salt Security strengthens CrowdStrike partnership with New Integration

PR Newswire

ThreatX announced new capabilities for its RAAP solution

Business Wire