ARKLINKIndependent AI Security & CyberOps research lab
Trust isthe attacksurface.
Security tooling for AI agents, MCP servers and cyber deception. We watch what attackers actually do - not what scanners report.
Autonomous agents read tool descriptions, decide what to call, and act - faster than any human reviewer, with broader credentials, and almost no audit trail designed for what they just did. Traditional security tooling was built for humans behind human-paced UIs. That model is collapsing. We build for the boundary that just moved.
Exploitability over noise.
A finding that is not reachable is not a finding. We optimise for issues a real attacker can actually use.
Deception as ground truth.
If a real attacker touched it, it matters. Telemetry from honeypots beats signature heuristics.
Research, not theatre.
We publish methodology, not vibes. Findings come with reproductions, corpora, and provenance.
honeymcp
An open-source honeypot for MCP-native AI agents. One Rust binary - 15 MB, SQLite on disk, 256 MiB of RAM.
Speaks Streamable HTTP (MCP spec 2025-06-18) and legacy HTTP+SSE side by side, ships four production personas, and tags every request with MITRE ATT&CK / ATLAS technique IDs at write time. Releases are SLSA Level 3 build-provenance signed and exportable to STIX 2.1.
- initializeclient unknown-agent/0.4 · MCP-Protocol-Version: 2025-06-18+0.0s
- tools/list - recon + tool_enumerationread 14 tool defs · detectors: T1592, AML.T0040+1.4s
- prompt_injection - tool description echo“ignore previous” planted via tool description+12s
- secret_exfil - tools/call get_envtarget AWS_SECRET_ACCESS_KEY · CVE-2025-59536-class hook injection co-fires+24s
- session closeSTIX 2.1 export ready · ATT&CK / ATLAS tagged at write time+97s
We work with teams building AI agents, MCP servers and security products that need high-signal research - not generic checklists.
hello@arklink.co