One year of MCP security: nine in ten public servers have no auth, and the worst bug is from 1988
This story is from 2026-09-27. It is preserved in the archive; the latest stories are on the live feed.
The Model Context Protocol went from a November 2024 announcement to the default way AI agents reach tools, files and APIs. Within eighteen months it also became the most thoroughly attacked piece of AI infrastructure in existence — not because the protocol invented new bugs, but because it wired a…
Read the full story at DEV Community — AI ↗
Timeline · 1 report
- 2026-09-27 10:28 · DEV Community — AI
One year of MCP security: nine in ten public servers have no auth, and the worst bug is from 1988