Hacker News new | ask | show | jobs
by rafram 414 days ago
Oh no, remote MCP servers. Security was nice while it lasted!
2 comments

What makes a remotely hosted MCP server less secure? The alternative, and what most of MCP consists of at the moment, is essentially running arbitrary code on your machine, as your user, and hooking this up to an LLM.
This is a fantastic time to get into the security space and trick all these LLMs into leaking sensitive data and make a lot of money out of that.

MCP is a flawed spec and quite frankly a scam.