← LibraryTechnique entry
AI-MCP-SERVERInitial Access
Malicious MCP Server
Add a rogue Model Context Protocol server to the user's client. Every prompt to the agent exposes tools / data via the rogue server — silent supply-chain for AI workflows.
§ Where this technique fits
AI-MCP-SERVER is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 1 approved dossier in the registry, typically at step 4 on average.
§ Dossiers chaining this technique
§ What commonly comes next
- 01Exfil via Agent Observability Logsseen 1×AI-AGENT-EXFIL-LOGS · Collection