Awesome MCP Security
Security Threats related with MCP (Model Context Protocol), MCP Servers and more
AIM-Intelligence
README
Awesome MCP Security 
A curation of awesome resources, papers, and tools focused on Model Context Protocol (MCP) security.
Contributions are always welcome. Please read the Contribution Guidelines before contributing.
Table of Contents
Papers
- "Model Context Protocol (MCP): Landscape, Security Threats, and Future Research Directions", 2025-03, paper
- "MCP Safety Audit: LLMs with the Model Context Protocol Allow Major Security Exploits", 2025-04, paper
Security Vulnerabilities
Authentication and Authorization
- OAuth Token Theft: MCP servers store authentication tokens for various services, creating a high-value target for attackers (Pillar Security)
- Permission Boundary Problems: Unclear boundaries between services connected through MCP (Block InfoSec)
Prompt Injection
- Tool Description Manipulation: Hidden instructions in tool descriptions can cause AI models to perform unauthorized actions (Pillar Security)
- Indirect Prompt Injection: Malicious content embedded in processed documents that trigger MCP actions (Pillar Security)
Supply Chain
- Installer Risks: MCP server installers without proper validation can introduce security risks (arxiv:2503.23278)
- Tool Name Conflicts: Naming collisions in MCP tools can lead to confusion and security issues (arxiv:2503.23278)
Tools
- MCP Specification - Official MCP specification with security recommendations
- Glama.ai MCP Server Directory - Security-aware directory of MCP servers with security scoring
Articles and Blog Posts
- The Security Risks of Model Context Protocol (MCP) - Analysis of OAuth token theft and prompt injection risks
- Securing the Model Context Protocol - Best practices for MCP security by Block's InfoSec team
- How to Determine If An MCP Server Is Safe - Guidelines for evaluating MCP server security
- AI Model Context Protocol (MCP) and Security - Comprehensive guide by Omar Santos covering MCP security architecture, authentication best practices, data security, and tool exposure security considerations
- AI agent identity: it's just OAuth - Discussion about Authentication for AI Agents. Mentions OAuth Fails for MCP based AI Agents.
Other Awesome Projects
- Awesome LLM Security - A curated list focused on LLM security more broadly
- Model Context Protocol - Official MCP GitHub organization with specification and reference implementations
Other Useful Resources
- tl;dr sec #272 - Newsletter discussing AI Model Context Protocol Security
- tl;dr sec #273 - Newsletter covering MCP security tools and threats
Recommended Servers
Crypto Price & Market Analysis MCP Server
A Model Context Protocol (MCP) server that provides comprehensive cryptocurrency analysis using the CoinCap API. This server offers real-time price data, market analysis, and historical trends through an easy-to-use interface.
MCP PubMed Search
Server to search PubMed (PubMed is a free, online database that allows users to search for biomedical and life sciences literature). I have created on a day MCP came out but was on vacation, I saw someone post similar server in your DB, but figured to post mine.
dbt Semantic Layer MCP Server
A server that enables querying the dbt Semantic Layer through natural language conversations with Claude Desktop and other AI assistants, allowing users to discover metrics, create queries, analyze data, and visualize results.
mixpanel
Connect to your Mixpanel data. Query events, retention, and funnel data from Mixpanel analytics.

Sequential Thinking MCP Server
This server facilitates structured problem-solving by breaking down complex issues into sequential steps, supporting revisions, and enabling multiple solution paths through full MCP integration.

Nefino MCP Server
Provides large language models with access to news and information about renewable energy projects in Germany, allowing filtering by location, topic (solar, wind, hydrogen), and date range.
Vectorize
Vectorize MCP server for advanced retrieval, Private Deep Research, Anything-to-Markdown file extraction and text chunking.
Mathematica Documentation MCP server
A server that provides access to Mathematica documentation through FastMCP, enabling users to retrieve function documentation and list package symbols from Wolfram Mathematica.
kb-mcp-server
An MCP server aimed to be portable, local, easy and convenient to support semantic/graph based retrieval of txtai "all in one" embeddings database. Any txtai embeddings db in tar.gz form can be loaded
Research MCP Server
The server functions as an MCP server to interact with Notion for retrieving and creating survey data, integrating with the Claude Desktop Client for conducting and reviewing surveys.