MCP (model context protocol)
Gateways, scanners, research, and tooling
Gateways 45
- MetaMCPgithub.com
- Docker MCP Gatewaygithub.com
- Unla (AmoyLab)github.com
- Supergatewaygithub.com
- Azure AI Gateway MCP Labgithub.com
- Amazon Bedrock AgentCore Gatewayaws.amazon.com
- Lasso MCP Gatewaygithub.com
- MCPJunglegithub.com
- HyprMCP Gatewaygithub.com
- IBM MCP Context Forgegithub.com
- Agentic Community MCP Gateway Registrygithub.com
- StormMCPstormmcp.ai
- MCP Bossmcp-boss.com
- MintMCPmintmcp.com
- Microsoft MCP Gatewaygithub.com
- Obotgithub.com
- Agent Gatewaygithub.com
- Lunar MCPxgithub.com
- Jetski (HyprMCP)github.com
- SelfHostedMCPselfhostedmcp.com
- MCP Bridge APIgithub.com
- Harmonic Security Sneak Peekharmonic.security
- MCP Anywheregithub.com
- 1MCP Agentgithub.com
- Traefik MCP Gatewaytraefik.io
- RunLayerrunlayer.com
- MCP Totalgo.mcptotal.io
- Context-Gateway: Agentic proxy for AI agents with history compaction and context optimizationgithub.com
- What is MCP Gateway?truefoundry.com
- Wanaku - MCP router for AI-enabled applicationsgithub.com
- Amazon API Gateway adds MCP proxy support - AWSaws.amazon.com
- MCP Gateway: Control What AI Can Access - Traefiktraefik.io
- AI-Gateway/labs/mcp-registry-apic-github-workflow at main · Azure-github.com
- GitHub - metatool-ai/metamcp: MCP Aggregator, Orchestrator, Middlewobot.ai
- Assury - enterprise MCP gateway and governance platform for AI agentsassury.ai
- ContexaAI - Firebase for MCP servers, platform to build and deploy MCP serverscontexaai.com
- Director - MCP playbooks and gateway for AI agentsgithub.com
- Introducing Solo Enterprise for agentgatewaysolo.io
- JFrog MCP Registry blocks malicious MCP servers and enforces tool permissions for coding agentsx.com
- MCP Manager - MCP gateway for security, deployment and observabilitymcpmanager.ai
- obot issue - Virtual/Composite MCP servers to reduce tool confusiongithub.com
- Obot MCP Gateway Filters - inspecting and controlling MCP tool calls via webhook filtersdocs.obot.ai
- Productize, observe, version, and automate MCP servers in Azure API Managementtechcommunity.microsoft.com
- Shared Grok conversation on MCP servers in Azure API Management and how the feature has improvedgrok.com
- Tailscale Aperture GA - model tokens, MCP controls, Projects and custom permissionstailscale.com
Client-side proxies and secrets management 9
- Trail of Bits MCP Context Protectorgithub.com
- Pangea MCP Proxygithub.com
- Astrix MCP Secret Wrappergithub.com
- MCP-Scan (Invariant Labs)github.com
- StrongDM Leashgithub.com
- MCP Defendergithub.com
- mcp-proxy - Drop-in Governance Proxy for MCP Tool Serversgithub.com
- aperion-shield - local MCP guardrail that blocks destructive tool calls from AI coding agentsgithub.com
- mcpguard-dynamic - kernel-level eBPF sandbox for MCP tool callsgithub.com
IDE plugins 2
Scanners 17
- Proximity (fr0gger)github.com
- MCP Shieldgithub.com
- MCPSecBenchgithub.com
- MCP Server Auditgithub.com
- Cisco MCP Scannergithub.com
- MCP Checkpointgithub.com
- MCP Guard (General Analysis)github.com
- Security scanner for AI agents,github.com
- mcp-scanner/mcpscanner/config/constants.py at 44534caea4530d359c98bgithub.com
- Cisco's MCP Scanner Introduces Behavioral Code Threat Analysisblogs.cisco.com
- MCP-Checklists/OAuth-Troubleshooting.md at main · MCP-Manager/MCP-github.com
- General Analysis Launches MCP Guard - General Analysisgeneralanalysis.com
- A comprehensive security scanner fgithub.com
- ai-security-crew - MCP server injecting security context while vibe codinggithub.com
- Akto MCP Security - first dedicated security solution for MCP serversakto.io
- Luca Beurer-Kellner announces mcp-scan, a security scanner for MCP tool poisoning, rug pulls and shadowingx.com
- Scanning MCP Servers with ZAPzaproxy.org
PAM 1
Known vulnerabilities and exploits 15
- Postmark MCP NPM Malicious Backdoor (Koi Security)koi.security
- MCP Malware Wave: Remote Shell Backdoor (Koi Security)koi.security
- Invariant Labs - MCP GitHub Vulnerabilityinvariantlabs.ai
- MCP Exploit Demo (UjlakiMarci)x.com
- Breaking MCP Server Hosting (GitGuardian)blog.gitguardian.com
- CVE-2025-6515 Prompt Hijacking Attack - How Session Hijacking Affecjfrog.com
- Zero-Click Remote Code Execution: Exploiting MCP & Agentic IDEs - Llakera.ai
- Critical RCE in Anthropic MCP Inspector (CVE-2025-49596) Enables Broligo.security
- Chatting with Your Attack Paths: An MCP for BloodHound - SpecterOpsspecterops.io
- Jumping the line: How MCP servers can attack you before you everblog.trailofbits.com
- Damn Vulnerablegithub.com
- Damn Vulnerable MCP Server - Intentionally Vulnerable MCP Server for Security Traininggithub.com
- Luca Beurer-Kellner on an MCP attack on BrowserMCP reading arbitrary filesx.com
- The Mother of All AI Supply Chains: Critical, Systemic Vulnerability at the Core of Anthropic's MCPox.security
- Trust Me, I'm Local: Chrome Extensions, MCP, and the Sandbox Escapeblog.extensiontotal.com
Risk databases 6
Offensive MCP 18
- PhantomPipegithub.com
- Atomic Red Team MCP #2 - Claude becomes C2cyberbuff.substack.com
- atomic-red-team-mcp - MCP server for Atomic Red Team testsgithub.com
- Autonomous Vulnerability Hunting with MCPblog.zsec.uk
- Burp Suite MCP Server with Codex CLI - Pentest Bookpentestbook.six2dez.com
- burp-mcp-server - Burp Suite MCP server with scan and crawlgithub.com
- Claude Becomes the APT - Atomic Red Team MCP server for adversary emulationcyberbuff.substack.com
- GhidraMCP - MCP server for Ghidra reverse engineeringgithub.com
- ghidraMCP: Now AI Can Reverse Malware - LaurieWiredyoutube.com
- LaNyer640/test2 - malicious MCP server with reverse shellgithub.com
- LaNyer640/test3 - MCP server that executes arbitrary shell commandsgithub.com
- MCP in Burp Suite: From Enumeration to Targeted Exploitationtrustedsec.com
- MCPwned: a Burp Suite extension for auditing MCP serversfenrisk.com
- Metasploit Framework 6.5 Releasedrapid7.com
- oast-mcp - OAST offensive tooling over MCPgithub.com
- pwno-mcp - Stateful GDB and pwndbg MCP server for autonomous pwn and binary researchgithub.com
- sslmate-mcp - MCP server for Certificate Transparency log search and subdomain discoverygithub.com
- stealth-browser-mcp - anti-bot bypass browser automation for AI agentsgithub.com
Checklists and scorecards 5
Research 35
- Systematic Analysis of MCP Securityarxiv.org
- A Survey of AI Agent Registry Solutionsarxiv.org
- When MCP Servers Attack: Taxonomy, Feasibility, and Mitigationarxiv.org
- MCPSecBench: A Systematic Security Benchmarkarxiv.org
- Mind Your Server: Parasitic Toolchain Attacks on MCParxiv.org
- MCP Safety Trainingarxiv.org
- Beyond the Protocol: Attack Vectors in MCParxiv.org
- Third-Party Safety Risks in MCP-Powered Agent Systemsarxiv.org
- MCP: Landscape, Security Threats, and Future Directionsarxiv.org
- Large-Scale Evolvable Dataset for MCP Security Analysisarxiv.org
- Enterprise-Grade Security for MCParxiv.org
- MPMA: Preference Manipulation Attack Against MCParxiv.org
- Automatic Red Teaming LLM Agents with MCP Toolsarxiv.org
- Securing Agentic AI: Comprehensive Threat Modelarxiv.org
- Toward Understanding Security Issues in MCParxiv.org
- MCP Security Bench (MSB)arxiv.org
- AegisMCP: Online Graph Intrusion Detectionarxiv.org
- MCPGuard: Automatically Detecting Vulnerabilitiesarxiv.org
- Securing AI Agent Executionarxiv.org
- MCP-RiskCue: Risk Information From MCP Logsarxiv.org
- Securing MCP: Risks, Controls, and Governancearxiv.org
- Hiding in AI Traffic: Abusing MCP for Red Teamingarxiv.org
- Cryptographic Misuse in MCP at Scalearxiv.org
- PentestMCP: Agentic Penetration Testing Toolkitarxiv.org
- MCP for Vision Systems: Audit, Security, Extensionsarxiv.org
- SoK: Security and Safety in the MCP Ecosystemarxiv.org
- MCP-Guard: Multi-Stage Defense-in-Deptharxiv.org
- MCP-ITP: Implicit Tool Poisoning in MCParxiv.org
- MCP Bridge: Lightweight LLM-Agnostic RESTful Proxyarxiv.org
- SMCP: Secure Model Context Protocolarxiv.org
- Exposed MCP Servers Reveal New AI Vulnerabilities - Bitsight TRACEbitsight.com
- How are AI agents used? Evidence from 177,000 MCP toolsarxiv.org
- MCP-38: A Comprehensive Threat Taxonomy for Model Context Protocol Systemsarxiv.org
- MCPZoo: A Large-Scale Dataset of Runnable Model Context Protocol Servers for AI Agentarxiv.org
- Semantic Attacks on Tool-Augmented LLMs: Securing the Model Context Protocol Against Descriptor-Level Manipulationarxiv.org
General reading 144
- GitHub - Building Secure Remote MCP Serversgithub.blog
- OAuth for MCP (Aaron Parecki)aaronparecki.com
- Okta Cross-App Access for AI Agentsokta.com
- Okta - Understanding AI Agent Identityokta.com
- Okta Developer - Enterprise AIdeveloper.okta.com
- Okta Cross-App Access MCP Examplegithub.com
- MCP Security Blog (hi120ki)hi120ki.github.io
- MCP Auth Spec PRgithub.com
- Mighty Security (NineSuns)github.com
- Azure API Center - MCP Server Registrationlearn.microsoft.com
- MCP Auth Discussiongithub.com
- Docker MCP Hubhub.docker.com
- Docker MCP Catalog and Toolkitdocker.com
- Invariant Labs - Toxic Flow Analysisinvariantlabs.ai
- Simon Willison - Bay Area AIsimonwillison.net
- Why MCP Disregards 40 Years of RPC Best Practicesjulsimon.medium.com
- Cerbos - MCP Authorizationcerbos.dev
- Awesome Remote MCP Serversgithub.com
- CSA - Securing the Agentic AI Control Planecloudsecurityalliance.org
- MCP Clients Directorymodelcontextprotocol.io
- Semgrep - Security Engineer's Guide to MCPsemgrep.dev
- HyprMCP Server Prompt Analyticshyprmcp.com
- Fast Agentgithub.com
- Embrace the Red - MCP Security Risksembracethered.com
- CyberArk - Poison Everywhere, No Output from MCP is Safecyberark.com
- ToolHive (Stacklok)github.com
- Microsandboxgithub.com
- Hyper-MCPgithub.com
- MCPwned Scannerhack.mcpwned.com
- Cloudflare - Zero Trust MCP Server Portalsblog.cloudflare.com
- Astrix - State of MCP Server Security 2025astrix.security
- Block Engineering - Build MCP Tools Like Ogres, With Layersengineering.block.xyz
- Golf.dev - No-BS Guide to MCP Securitygolf.dev
- Microsoft - Protecting Against Indirect Injection in MCPdevblogs.microsoft.com
- codesurface: Claude writes better code when it can't read yoursreddit.com
- Award Travel Finder MCP Servermcp.awardtravelfinder.com
- K8s-mcp-server is a Model Contegithub.com
- WebMCP Documentation - AI-Powered Web Toolsdocs.mcp-b.ai
- MCP Manager Is Joining Usercentricsmcpmanager.ai
- Lighweight CLI to interact with MCP segithub.com
- Alpaca - Trade with AI Using Alpaca's MCP Serveralpaca.markets
- The GitHub MCP Server adds support for tool-specific configuration,github.blog
- MCP joins the Agentic AI Foundationblog.modelcontextprotocol.io
- Like gmail for your codigithub.com
- Cross App Access extends MCP to bring enterprise-grade security tookta.com
- Microsoft MCP Management MCP Server referencelearn.microsoft.com
- Model Context Protocol (MCP) on Windows overviewlearn.microsoft.com
- Tellix is a conversational recon ingithub.com
- What GreyNoise Learned from Deploying MCP Honeypotsgreynoise.io
- GitHub MCP Server now comes with server instructions, better tools,github.blog
- MCP Shopmcp.shop
- Your Org, Your Tools: Build a Custom MCP Catalog - Dockerdocker.com
- A WebSocket-based integithub.com
- MCP Snitch is a macOS application thagithub.com
- MCP-UI - Interactive UI Components for MCPmcpui.dev
- DevOps and AI Series: Azure Private MCP Registry - Arincoarinco.com.au
- Understanding Authorization in MCP - Model Context Protocolmodelcontextprotocol.io
- Pricing the Unknown: A Paid MCP Server - PulseMCPpulsemcp.com
- Configure MCP server access for your organization or enterprise - Gdocs.github.com
- ai-security/agent-protocols/mcp at main · AnthonyHerman/ai-securitygithub.com
- Introducing the MCP Registryblog.modelcontextprotocol.io
- From the mcp community on Reddit: My favorite MCP use case: closingreddit.com
- Natoma - Hosted MCP Platformmcp.natoma.ai
- MCP Manager Video Demo: Watch the 3-Minute Overviewmcpmanager.ai
- We built the security layer MCP always neededblog.trailofbits.com
- Exposing the Unseen: Mapping MCP Servers Across the Internetknostic.ai
- harshadk99/deception-remote-mcp-servergithub.com
- Long-form Content: AI (AI is Anti-Human (and assorted qualificationstainless.com
- Supabase MCP can leak your entire SQL databasesimonwillison.net
- Building MCP with LLMs - Model Context Protocolmodelcontextprotocol.io
- Key Changes - Model Context Protocolmodelcontextprotocol.io
- Block Engineering Blogengineering.block.xyz
- The ZAP MCP Serverzaproxy.org
- Authorization - Model Context Protocolmcp.mintlify.app
- The New MCP Authorization Specification · Den Delimarskyden.dev
- DASH 2025: Guide to Datadog's newest announcements - Datadogdatadoghq.com
- Yes Mcp server in bashgithub.com
- LLM function calls don't scale; code orchestration is simpler, morejngiam.bearblog.dev
- mcp-agent/examples/mcp_agent_server at main · lastmile-ai/mcp-agentgithub.com
- Welcome to the 🤗 Model Context Protocol (MCP) Course - Hugging Fhuggingface.co
- amirshk/mcp-secrets-plugingithub.com
- How MCP servers can steal your conversation historyblog.trailofbits.com
- MCP Run Python - PydanticAIai.pydantic.dev
- BloodHound-MCP-AI is integratigithub.com
- The Okta MCP Server is a groundbrgithub.com
- Claude MCP server to pergithub.com
- Model Context Protocol (MCP): Implications on identity security anveza.com
- Azure MCP Serverglama.ai
- What is Model Context Protocol (MCP)? How it simplifies AI integratnorahsakal.com
- Smithery - Model Context Protocol Registrysmithery.ai
- A collection of MCP servers.github.com
- The Developer's Guide to MCP: From Basics to Advanced Workflows - Ccline.bot
- Chrome 146 includes an early preview of WebMCP, accessible via a flag,x.com
- Maybe now people will see why you don't want many MCPs.x.com
- ODR: Internals of Microsoft's New Native MCP Registrationoriginhq.com
- 5ire - open source desktop AI assistant and MCP client5ire.app
- agentregistry - cloud-native registry for MCP servers, agents and skillsgithub.com
- Authenticating MCP Servers With Microsoft Entra IDden.dev
- Centrally manage authorization for MCP connectorsclaude.com
- CLI vs MCP: How AI Agents Choose the Right Tool for the Job - IBM Technologyyoutube.com
- Code Mode: the better way to use MCPblog.cloudflare.com
- Enterprise-Ready MCPaaronparecki.com
- FeatBit MCP Servergithub.com
- Florian Buhringer on injecting policy into code-mode MCP with executor.shx.com
- goose - 'code mode' MCP tool calling platform extension, PR #6030github.com
- Guillaume Laforge on the new MCP spec: stateless core, extensions, hardened authorizationx.com
- IETF Draft: Security Considerations for Model Context Protocol Implementations in AI Agent Systemsdatatracker.ietf.org
- Integrating Model Context Protocol Tools with Semantic Kernel: A Step-by-Step Guidedevblogs.microsoft.com
- itszn: Claude reversing a binary with Binary Ninja via MCPx.com
- Jeff Weinstein: Stripe lets developers monetize MCP servers with subscription or usage billingx.com
- Lokka - MCP server bringing Microsoft Graph to AI agentslokka.dev
- Making a Model Context Protocol server more robust, and much more privatetailscale.com
- Maximiliano Firtman on Starbucks' MCP App in ChatGPT, a web mini-app served through an MCP serverx.com
- MCP Apps - official spec and SDK for interactive UIs served by MCP serversgithub.com
- MCP Enterprise-Managed Authorizationmodelcontextprotocol.io
- MCP in LM Studiolmstudio.ai
- MCP Registry ecosystem vision design docgithub.com
- mcp-anywhere - browser and edge compatible TypeScript SDK for MCPnpmjs.com
- mcp-openapi-server - MCP server exposing OpenAPI endpoints as MCP toolsgithub.com
- NewsBlur launches CLI tool, Claude skill and MCP serverx.com
- NSA - MCP Security Design Considerations for AI-Driven Automationnsa.gov
- OpenAI WebMCP Challenge - build agent-ready web appsopenai.com
- OpenClaw on giving agents live Chrome sessions via Chrome DevTools MCP - tabs, cookies, loginsx.com
- Orca Security - GenAI-powered cloud telemetry with Anthropic's Model Context Protocolorca.security
- Parag Agrawal - Parallel's web search MCP is now free with no authx.com
- patch-tuesday-mcp - MCP server for Microsoft Patch Tuesday CVEs with EPSS and CISA KEV enrichmentgithub.com
- Petr Baudis: Chrome 146 lets you expose your live browsing session to CLI agents via MCPx.com
- pyghidra-mcp Meets Ghidra GUI: Drive Project-Wide RE with Local AIclearbluejar.github.io
- Sam Altman: OpenAI adding MCP support across products, starting with the Agents SDKx.com
- Scaling MCP adoption: Cloudflare's reference architecture for safer enterprise MCP deploymentsblog.cloudflare.com
- Secure Annex MCP server - John Tuckneryoutube.com
- Securing MCP: A Control Plane for Agent Tool Executiondeveloper.microsoft.com
- SEP-1597: HTTP REST Transport for MCPgithub.com
- SEP-1612: Fully Compliant and Backward-Compatible Pure HTTP Transport for MCPgithub.com
- SQL MCP Server overview - Azure Data API builderlearn.microsoft.com
- Strava launches MCP connector to sync training history to Claudepress.strava.com
- The 2026-07-28 Model Context Protocol Specificationblog.modelcontextprotocol.io
- The Context Episode 10 ft. Daisy Health and MCP Manager - Agentic AI Foundationyoutube.com
- The New MCP Specification: What Security Teams Must Prepare Forakamai.com
- Thomas Roccia on MCP for cybersecurity - ORKL, Shodan, VirusTotal and Maigret MCP serversx.com
- WebMCP - JavaScript tools for AI agents in web appswebmachinelearning.github.io
- WebMCP documentation - browser tools for AI agentsdocs.mcp-b.ai
- WebMCP is available for early preview - Chrome for Developersdeveloper.chrome.com
- What if you don't need MCP at allmariozechner.at
MCP servers 7
- Apple PIM - MCP server for macOS Calendar, Reminders, Contacts and Mailapple-pim.omarknows.app
- Cssh - lightweight MCP server that lets Claude, Codex and other agents work on remote servers over SSHgithub.com
- EPSS-MCP - MCP server returning CVE details with EPSS scoresgithub.com
- gimp-mcp - GIMP MCP server for AI agentsgithub.com
- GitMCP - free remote MCP server for any GitHub project to reduce code hallucinationsgithub.com
- Introducing the Safari MCP server for web developerswebkit.org
- tinymcp - let LLMs control embedded devices via the Model Context Protocolgithub.com