← Back to search
paper llmsec-2026-00119

SecureMCP: A Policy-Enforced LLM Data Access Framework for AIoT Systems via Model Context Protocol

Wonbae Kim, Hee-Kyong Yoo

2026-05

Abstract

The deployment of Large Language Model (LLM)-generated SQL queries in Artificial Intelligence of Things (AIoT) systems introduces critical security risks, as prompt injection attacks can manipulate LLMs into producing unauthorized queries that expose sensitive data or execute destructive operations. Existing NL2SQL research focuses on query accuracy, while MCP server implementations provide only SQL-level protections without fine-grained role-based access control. This paper proposes SecureMCP,

Cite This Resource

@article{llmsec202600119,
  title = {SecureMCP: A Policy-Enforced LLM Data Access Framework for AIoT Systems via Model Context Protocol},
  author = {Wonbae Kim and Hee-Kyong Yoo},
  year = {2026},
  url = {https://arxiv.org/abs/2605.05260},
}

Metadata

Added
2026-05-17
Added by
automation
Source
arxiv
arxiv_id
2605.05260