Deadbugz MCP Campaign Turns Malicious After Three Tool Calls
Researchers describe an active MCP supply-chain campaign that arrives in benign-looking GitHub pull requests. After three tool calls, the server rewrites its metadata into credential-stealing instructions, showing why tool metadata needs ongoing scrutiny.
🔗 pillar.security
#MCP #security #supplychain
Post #313
401

- 🔥 3
- 👀 1
- 👾 1