Skip to content

MCP Inspector Attack Framework#71

Open
JLLeitschuh wants to merge 4 commits intonccgroup:masterfrom
JLLeitschuh:feat/JLL/mcp-server-attack
Open

MCP Inspector Attack Framework#71
JLLeitschuh wants to merge 4 commits intonccgroup:masterfrom
JLLeitschuh:feat/JLL/mcp-server-attack

Conversation

@JLLeitschuh
Copy link
Copy Markdown
Contributor

@JLLeitschuh JLLeitschuh commented Apr 3, 2026

Adds support for an MCP Inspector style DNS rebound attack framework. POC demonstrates attacking MCP servers via DNS Rebinding.

Singlularity_MCP_Inspector
poc_Google_Toolbox.mov

@JLLeitschuh
Copy link
Copy Markdown
Contributor Author

JLLeitschuh commented Apr 3, 2026

The Google Toolbox vulnerability still works not in Chrome, because of LNA. The vulnerability is unpatched, so this is effectively an 0-day

https://github.com/googleapis/genai-toolbox

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant