io.github.NOTTIBOY137/update-hijack-poc

PoC benign MCP server for update-hijack security research

Ready: LocalSecurity: LocalAuth: UnknownSetup: Unknownmcp_servermcp

Use it

Packages
  • npm: @nottiboy1337/mcp-update-hijack-poc 1.0.1npx -y @nottiboy1337/mcp-update-hijack-poc
Instructions
  • Use an MCP client, but no callable endpoint or package install target was published.

Version history

VersionStatusPublished
1.0.1LatestactiveFeb 3, 2026
1.0.0activeFeb 3, 2026