Over 800 Fake AI Skills and MCP Servers Found Delivering Malware

HaktanSuren · x · 2026-08-14

Security researchers have identified over 800 fake AI skills and MCP servers on platforms like GitHub that are designed to deliver malware.

As AI agents increasingly autonomously interact with external tools, the risk of supply chain attacks disguised as utility plugins has surged. Developers and users must rigorously verify the sources of their integrations to prevent malicious code execution.

Original post →

More from coding & agent

coding & agent channel →