5 ms·
From tramlines.io here - We found a similar exploit in the official Neon DB MCP - https://www.tramlines.io/blog/neon-official-remote-mcp-exploited-and-guardrail
by coderinsan 1y ago
From tramlines.io here - We found a similar exploit in the official Neon DB MCP - https://www.tramlines.io/blog/neon-official-remote-mcp-exploited-and-guardrailed-with-tramlines https://www.tramlines.io/blog/neon-official-remote-mcp-explo...
- simonw 1y agoHah, yeah that's the exact same vulnerability - looks like Neon's MCP can be setup for read-write access to the database, which is all you need to get all three legs of the lethal trifecta (access to private data, exposure to malicious instructions and the ability to exfiltrate).
- coderinsan 1y agoHere's another one we found related to the lethal trifecata problem in AI Email clients like Shortwave that have integrated MCPs - https://www.tramlines.io/blog/why-shortwave-ai-email-with-mcp-integration-is-a-phisher-s-white-whale https://www.tramlines.io/blog/why-shortwave-ai-email-with-mc...