Fetching from the wire…
Markets2026-09-04 · source-backed
Neon Innovation Lab's auditor uses pure static analysis on the syntax tree and configs, deliberately avoiding execution because running untrusted MCP code is itself an RCE path. It detects command injection (CWE-78), path traversal (CWE-22), secret exposure (CWE-798), unauthenticated transport (CWE-306) and tool poisoning (CWE-1384), emitting a 0-100 trust score with file and line-level findings. Adoption is 2 total users, so this is an early signal, not a market, and independent research puts YARA-based MCP scanner false-positive rates around 78%. Apify
Each link below shares sources, entities, or timing with this story.
The Amazon Q bug is one instance of a 2026 pattern: MCP configuration carried in repositories is now an RCE supply-chain vector, not just untrusted tool output. Cursor, VS Code, Windsurf, Claude Code, and Gemini-CLI are all vulnerable to MCP-based auto-launch attacks (Windsurf...
The Model Context Protocol has a security problem, and now we have numbers to prove it. An independent scan of 5,618 public MCP servers found that only 143 — that's 2.5% — scored green on a basic security assessment. The remaining 5,067 servers (90%) flagged yellow for stale d...
This is the one that should make you check your own setup tonight. June MCP-security roundups flag roughly 12,520 internet-exposed MCP services, about 40% of them with no authentication at all. On top of that, Adversa AI's TrustFall and SymJack research shows that Claude Code,...
GitHub published four advisories against omnigent-ai/omnigent v0.1.0, the meta-harness that runs Claude Code, Codex and Pi under policy and sandboxing. GHSA-jrrm-9hc7-2v3h at CVSS 9.0 lets any user with session edit rights overwrite a shared template agent via PUT /sessions/{i...
The Model Context Protocol has a security problem that's no longer theoretical — it's statistical. Between January and February 2026, researchers filed 30+ CVEs against MCP servers, clients, and infrastructure. One package with nearly 500,000 downloads carried a CVSS 9.6 RCE....
Raj Nagulapalle's FetchSandbox MCP took 107 votes on August 23, wiring 70+ API sandboxes into Cursor or Claude Code via MCP config. The claim is narrower and more testable than most agent tooling: reproduce the real integration failure against a sandbox, apply the fix, re-run...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.