Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

it still is. if user has 1 bad tool, it's done!

https://invariantlabs.ai/blog/mcp-security-notification-tool...



Its the same security model as NPM/left pad yep, but consumers still use electron apps? It's a novel attack method, but its not a novel attack surface




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: