Close Menu
London Tribune
  • Home
  • Top Stories
  • Global Trends
  • Business
  • Politics
  • More
    • Sports
    • Lifestyle
    • Technology
    • Health
    • Fashion
    • Food & Recipes
    • Gaming
    • Music
    • Travel

Subscribe to Updates

Get the latest business and politics news about UK and the world directly to your inbox.

Trending

Rachel Reeves has just one option left to stop UK going bust – and nobody will like it

July 13, 2025

You have a fake North Korean IT worker problem – here’s how to stop it

July 13, 2025

This Is How to Score a $20 Sam’s Club Membership for a Year

July 13, 2025
Facebook X (Twitter) Instagram
  • About
  • DMCA
  • Privacy
  • Terms
  • Contact
Facebook X (Twitter) Instagram YouTube
Login
London Tribune
  • Home
  • Top Stories

    NBC’s ‘Nightly News’ with Tom Llamas scores ratings win against ABC: Nielsen

    July 13, 2025

    Jasmine Crockett rips Trump ‘regime,’ vows ‘solidarity’ with Biden witnesses during House probe

    July 12, 2025

    Skydance reportedly in early talks to buy Bari Weiss’ The Free Press

    July 11, 2025

    OneRepublic founder announces run for California lieutenant governor to ‘fight back’ against Trump

    July 11, 2025

    Inside Sun Valley’s ludicrous, over-the-top security crackdown

    July 10, 2025
  • Global Trends

    New survey reveals just how much Brits love classical music | UK | News

    May 23, 2024

    Remove yellow stains from mattress fast using cheap grooming product

    May 23, 2024

    Cleaning guru warns drain cleaning hack is damaging your home

    May 23, 2024

    Zeta Quantum Diamonds by Themis Ecosystem: Approved to Hit Sooner Than Predicted

    May 23, 2024

    ‘Best winter destination’ in Europe has ‘hearty food’ and public baths

    December 7, 2023
  • Business
  • Politics
  • More
    • Sports
    • Lifestyle
    • Technology
    • Health
    • Fashion
    • Food & Recipes
    • Gaming
    • Music
    • Travel
London Tribune
  • Top Stories
  • Global Trends
  • Business
  • Politics
  • Lifestyle
  • Sports
  • Technology
Home»Technology»Asana’s cutting-edge AI feature ran into a little data leakage problem
Technology

Asana’s cutting-edge AI feature ran into a little data leakage problem

LondonTribuneBy LondonTribuneJune 18, 20253 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email Telegram WhatsApp Copy Link

Asana has fixed a bug in its Model Context Protocol (MCP) server that could have allowed users to view other organizations’ data, and the experimental feature is back up and running after nearly two weeks of downtime to fix the issue.

MCP is an open-source protocol first introduced by Anthropic in November 2024 that allows AI agents and language models to connect to external sources like databases and messaging platforms and interact with each other.

Asana, which provides software for managing workflows and collaboration among teams, rolled out its MCP server on May 1. The new feature allows users to integrate with and access their Asana data from other AI apps, plus use natural language queries to ask questions about their enterprise data.

According to the vendor’s own documentation, there are risks involved:

Indeed, that caveat proved prescient: Asana discovered a vulnerability in the MCP server on June 4 and took the feature offline for maintenance from June 5 through June 17.

While the vendor’s MCP incident report doesn’t provide details about the coding error, according to a disclosure sent to customers and shared on social media, “this bug could have potentially exposed certain information from your Asana domain to other Asana MCP users.”

As of Tuesday, Asana says the MCP interface is back up and running, but customers will have to reconnect to it.

“If your organization was using the MCP server and was impacted by this issue, we have already reached out to you directly with important details and next steps,” the software firm noted in its postmortem. “As part of our remediation efforts, we reset all connections to the MCP server. This means you’ll need to manually reconnect your Asana instance to the MCP server.”

An Asana spokesperson told The Register, “we’re working on a full incident report as we speak (our primary focus so far has been helping impacted customers with mitigation),” and promised to alert us when the report was available. The spokesperson did not answer our questions about the bug, including how many customers were affected.

There’s no indication that miscreants exploited the issue — nor that users actually got a glimpse of other orgs’ info — but it’s a good reminder that bleeding-edge technology means new risks, or at least the same old risks manifested in new ways.

Considering enterprises may use Asana to share sensitive data while collaborating on projects, a leaky AI integration could have ended very badly for the software vendor and its customers.

The bug “highlights key lessons for any organization integrating LLMs,” according to UpGuard director of research and insights Greg Pollock. The security shop recommends anyone using MCP “enforce strict tenant isolation and least-privilege access” to limit the scope of data that the AI systems can access.

It’s also important to “log everything,” and especially LLM-generated queries, to assist with any future incident reports and investigations, Pollock wrote. ®

Source link

Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Tumblr Email

Related Posts

You have a fake North Korean IT worker problem – here’s how to stop it

British Perl guru Matt Trout dead at 42

Rimini Street, Oracle edge toward truce after years of legal warfare

ICANN fumes as AFRINIC offers no explanation for annulled election

Tech to protect images against AI scrapers can be beaten, researchers show

The price of software freedom is eternal politics

Demo
Our Picks

You have a fake North Korean IT worker problem – here’s how to stop it

July 13, 2025

This Is How to Score a $20 Sam’s Club Membership for a Year

July 13, 2025

Freddie Mercury’s secret Live Aid ‘trick’ to winning over the crowd – Did you spot it?

July 13, 2025

Fallout Fans Can Get This Amazon-Exclusive Mega Bloks Set For Only $20

July 13, 2025
Don't Miss
finance

Rachel Reeves has just one option left to stop UK going bust – and nobody will like it

By LondonTribuneJuly 13, 20250

The public finances are on life support, and things have gone from bad to worse…

You have a fake North Korean IT worker problem – here’s how to stop it

July 13, 2025

This Is How to Score a $20 Sam’s Club Membership for a Year

July 13, 2025

Freddie Mercury’s secret Live Aid ‘trick’ to winning over the crowd – Did you spot it?

July 13, 2025
London Tribune
Facebook X (Twitter) Instagram Pinterest
  • About
  • DMCA
  • Privacy
  • Terms
  • Contact
© 2025 London Tribune. All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Sign In or Register

Welcome Back!

Login to your account below.

Lost password?
This website uses cookies. By continuing to use this website, you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.