Research on Mapping Insecure MCP Servers Reveals Vulnerabilities
By
gepeto42
10mo ago· 4 min readenNews
80/100
Golden Brown
Bagelometer↗
Front-window bakery material. Catches the eye, delivers the goods.
Score80TypenewsSentimentneutral
Summary
A research team led by Knostic mapped 1,862 internet-exposed MCP servers using Shodan and custom Python tools, revealing insecure servers lacking authentication.
Key quotes
· 2 pulledAll servers we discovered were insecure and revealed their capabilities to anyone asking.
100 % lacked auth, revealing immature and risky GenAI endpoints.
Knostic mapped 1,862 internet-exposed MCP servers via Shodan. 100 % lacked auth, revealing immature and risky GenAI endpoints.
