Protocol-Level Attacks Expose Systemic Vulnerabilities in Agentic Commerce Platforms
A new preprint identifies 33 structural, protocol-level vulnerabilities in agentic commerce platforms that allow deterministic, model-independent attacks with 100% success rates across three leading systems. The authors introduce a taxonomy of these attacks, a new benchmark (AIP-Bench), and a platform-agnostic defense (PCAT) that eliminates four out of five structural attack classes without requiring platform modifications. These findings suggest that protocol-level flaws, rather than model weaknesses, pose a critical security risk to agentic commerce.
Why it matters: This work highlights a previously underappreciated class of systemic vulnerabilities in AI-driven commerce, indicating that current model-focused defenses are insufficient for securing real-money transactions.
Full story at: arXiv Cryptography and Security ↗