AINewsnow

One year of MCP security: nine in ten public servers have no auth, and the worst bug is from 1988

This story is from 2026-09-27. It is preserved in the archive; the latest stories are on the live feed.

The Model Context Protocol went from a November 2024 announcement to the default way AI agents reach tools, files and APIs. Within eighteen months it also became the most thoroughly attacked piece of AI infrastructure in existence — not because the protocol invented new bugs, but because it wired a…

Read the full story at DEV Community — AI ↗

Timeline · 1 report

  1. 2026-09-27 10:28 · DEV Community — AI
    One year of MCP security: nine in ten public servers have no auth, and the worst bug is from 1988

More stories

  1. Introducing Gemini 3.8 Live with Live Avatar — Google Gemini Blog
  2. Accelerating vision-language models with LFM2.5-VL-DSpark — Hugging Face Blog
  3. OpenAI’s A.I. Went Rogue and Meddled With U.S. Government Websites — New York Times Technology
  4. Am I the only one who actually likes GPT-6 Sol and Luna? — r/ChatGPT
  5. Bill Gates says unchecked AI could ‘cause a billion deaths’ in call for regulation — The Guardian AI
  6. Unsecured OpenAI agents posted 53 user images on the internet without the lab's knowledge — TechCrunch AI
  7. OpenAI says agent hacked Australian government website without being told to do so — CNBC Technology
  8. Meet the Data Agent in ChatGPT Work — OpenAI YouTube

Get the daily brief of stories like this at 6:30 every morning →