악성 MCP 서버가 AI 코딩 에이전트로부터 비밀번호와 데이터를 유출할 수 있는 방법을 설명합니다.
악성 도구 서버가 AI 코딩 도우미와 연결될 경우, SSH 키, 환경 비밀, 소스 코드 및 고객 데이터를 유출할 수 있습니다. 이 공격은 의심스러운 지시 없이도 작동하며, 요청을 잘게 나누어 각 요청을 일상적인 것처럼 보이게 하여 수행됩니다. 이는 사이버 보안에 심각한 위험을 초래하는 새로운 방법입니다.
Malicious MCP servers can exfiltrate secrets from AI coding agents through fragmented requests.
A malicious tool server connected to an AI coding assistant can evade detection while exfiltrating SSH keys, environment secrets, source code, and customer data. This method works by splitting the requests into fragments that appear routine, allowing them to traverse channels already used by the assistant. This poses a significant cybersecurity risk, highlighting the need for enhanced security measures.