‘This is not a traditional code bug’: Experts flag potentially critical security issues at heart of Anthropic’s MCP, reveal 150 million downloads and thousands of servers to complete takeover


  • Ox researchers warn that Anthropic’s Model Context Protocol has systemic RCE failure
  • Vulnerability built into MCP SDKs across Python, TypeScript, Java, Rust
  • 200,000+ cases uncovered; Anthropic says behavior is “expected”

Security researchers Ox have claimed that Anthropic’s Model Context Protocol (MCP) contains a “critical, systemic vulnerability” that puts hundreds of thousands of instances at risk of remote code execution (RCE).

Anthropic, on the other hand, reportedly said the system is working as intended.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top