0
Applied AI·October 6, 2026·1 min read

Google, JPMorgan and two governments fixed the same MCP flaw

Share

Multiple blue-chip teams shipping the same MCP server-side request forgery flaw is a reminder that agent infra is quietly becoming a new attack surface. If you’re exposing MCP-like tools, treat them as privileged integration fabric and run a security review as if you were standing up a new API gateway.

Applied AI

Analysis: Anthropic's subscriptions offer ~5x more API-equivalent value per month than OpenAI's for agentic workloads with Claude Opus 5.5 vs. GPT-6.1 Sol

If SemiAnalysis is right that Anthropic delivers ~5x more API-equivalent value for agentic workloads, the center of gravity for serious agent builders may shift toward subscription SKUs rather than pure API metering. This pushes operators to model TCO at the “workflow/month” level — not per-token — and to treat vendor plan design as a first-order architectural constraint.