The new Model Context Protocol (MCP) specification, set to be released on November 25, 2025, represents a significant evolution in the development and security of agentic AI systems. This update addresses the growing complexity and risks associated with AI agents by introducing identity verification for MCP servers, mandatory authentication protocols, and support for asynchronous tasks, which transform MCP into a more sophisticated workflow engine. By integrating HTTP transports and streaming, the new spec enhances observability, though it also complicates correlation efforts. Additionally, the introduction of a registry system for MCP servers poses new supply-chain risks, requiring developers and security teams to monitor server identities, validate authorization flows, and track long-running tasks more diligently. As MCP shifts from a simple integration tool to critical infrastructure, it necessitates a strategic evolution in security practices to ensure agents remain secure and aligned with organizational goals.