Fetching from the wire…
Public story · 2026-02-21 · source-backed
Praetorian released MCPHammer, the first open-source MCP security testing framework, including MCP server chaining demonstrations, content injection examples, and data exfiltration proof-of-concepts. A critical discovery: the MCP ecosystem's reliance on uvx for running Python-based servers dynamically downloads packages, creating a zero-click typosquatting vector that bypasses all tool approval prompts.
This gives security teams the first hands-on tool for validating MCP server deployments. Combined with Cisco AI Defense (MCP Catalog), CoSAI's taxonomy (12 categories, 40+ threats), and Salt Security's Confused Deputy analysis, MCP security tooling is materializing just as the ecosystem doubles to 10,000+ active public servers.
Each link below shares sources, entities, or timing with this story.
OpenAI supports MCP / Shared entities / Same source domain / Shared topic / What happened next
Linked by a graph relationship (OpenAI supports MCP); both cover MCP, Python; reported by the same outlet (github.com).
MCP uses OAuth / Shared entities / Shared topic / What happened next
Linked by a graph relationship (MCP uses OAuth); both cover Combined, MCP; overlapping topics (bypass, security, server).
Cursor uses MCP / Shared entity: MCP / Same source domain / Shared topic / What happened next
Linked by a graph relationship (Cursor uses MCP); both cover MCP; reported by the same outlet (github.com).
Claude Code uses MCP / Shared entities / Same source domain / What happened next
Linked by a graph relationship (Claude Code uses MCP); both cover MCP, Python; reported by the same outlet (github.com).
Anthropic released MCP / Shared entities / Shared topic / What happened next
Linked by a graph relationship (Anthropic released MCP); both cover MCP, Python; overlapping topics (security, tool).
Cursor uses MCP / Shared entities / Same source domain / What happened next
Linked by a graph relationship (Cursor uses MCP); both cover MCP, Python; reported by the same outlet (github.com).
Google released MCP / Shared entities / Same source domain / What happened next
Linked by a graph relationship (Google released MCP); both cover Combined, MCP; reported by the same outlet (github.com).
Claude Code uses MCP / Shared entities / Shared topic / What happened next
Linked by a graph relationship (Claude Code uses MCP); both cover Combined, MCP; overlapping topics (server, tool).