AgentsPraetorian MCPHammer — First Open-Source MCP Security Testing FrameworkPraetorian·high signalXBlueskyLinkedInCopy linkPraetorian releases MCPHammer: MCP server chaining demos, content injection, data exfil PoCs. Critical finding: uvx creates zero-click typosquatting vector for MCP servers.SourceSource pagePraetorian↳ Follow the threadStack layer / Threat patternchrome-devtools-mcp 1.9.0 publishes itself as an Agent Plugins 1.0 package installable across five agent clientsGitHubStack layer / Threat patternCROSS-CATEGORY: Four Independent Projects in 48 Hours Built the Portability Layer That Moves Lock-In Off the Agent VendorEngrim, Kit, Yurei and Crew (via Hacker News Show HN and Product Hunt)Policy dependency / Stack layerCodex routes MCP elicitations and tool approvals through one decision API, with model policy overriding the legacy review flagGitHubStack layer / Threat patternOpenAI Agents SDK 0.22.1 adds server-wide guardrails on MCP tools and configurable Unix-local sandbox isolationGitHubStack layer / Threat patternThree separate headless browsers built for agents trended on the same day with three different engine strategiesGitHub TrendingStack layer / Threat patternchrome-devtools-mcp v1.9.0 adds configurable filesystem roots and a switch to turn off JavaScript execution entirelyGitHubStack layer / Threat patternRed Hat Ships ripwire and Argues Coding Agents Need a Deterministic Repo Map, Not a Vector DatabaseRed Hat Emerging Technologies (corroborated by Hacker News and independent X coverage)Stack layer / Threat patterndeclick measured MCP's context tax across nine real servers: 236,818 bytes of tool schemas versus 58,309 compiledGitHub