PSA: Stop running local MCP servers. The folks at futuresearch were pwned when a local MCP server pulled in an impacted package. Always run your MCP servers remotely. The blast radius should be limited to the container that it runs in. If you're impacted by the LiteLLM
@jiquanngiam
-

MCP Server Security: Local Deployment Risks and LiteLLM Vulnerability
By
–
PSA: Stop running local MCP servers. The folks at futuresearch were pwned when a local MCP server pulled in an impacted package. Always run your MCP servers remotely. The blast radius should be limited to the container that it runs in. If you're impacted by the LiteLLM
-
Credential Harvester Attack: Rotate All Security Keys Immediately
By
–
If you were impacted, rotate ALL your credentials immediately. The credential harvester in the attack harvested everything from ssh keys, aws keys, gcp keys, azure secrets, kubectl tokens, db configs, crypto wallets, ci/cd secrets, and even shell history.
→ View original post on X — @jiquanngiam, 2026-03-26 03:37 UTC
-
Full post on incident: no prompt injection required
By
–
Full post on the incident: futuresearch.ai/blog/no-prom…
→ View original post on X — @jiquanngiam, 2026-03-26 03:33 UTC
-

Security Alert: Migrate Local MCP Servers to Remote Architecture
By
–
PSA: Stop running local MCP servers. The folks at futuresearch were pwned when a local MCP server pulled in an impacted package. Always run your MCP servers remotely. The blast radius should be limited to the container that it runs in. If you're impacted by the LiteLLM incident and looking for strategies to move to a remote MCP architecture for your company, @MintMCP_AI can help you. DM me.
→ View original post on X — @jiquanngiam, 2026-03-26 03:33 UTC
-
MCP Server Security: Local Execution Risks and Remote Solutions
By
–
We've been recommending all our customers to disallow running local MCP servers. Thank you for highlighting and bringing this problem to light. Our solution makes it easy to run any (even stdio) server remotely. If you're impacted and want a longer term secure solution, please
-
MCP Gateways and Agent Monitors: Infrastructure for AI Model Enhancement
By
–
hopefully those that complement and make things around the models better. (we build mcp gateways and agent monitors)
-
New AI Protocol Design: Exploring Technical Solutions
By
–
Sounds like we need some kind of new protocol that’s designed for AI, any ideas?
-

Claude AI Gains Full Computer Use Capability for Task Automation
By
–
Full computer use. This is huge Claude (@claudeai) You can now enable Claude to use your computer to complete tasks. It opens your apps, navigates your browser, fills in spreadsheets—anything you'd do sitting at your desk. Research preview in Claude Cowork and Claude Code, macOS only. — https://nitter.net/claudeai/status/2036195789601374705#m
→ View original post on X — @jiquanngiam, 2026-03-24 19:31 UTC
-

Claude MCP Tools Now Load On Demand Reducing Context Bloat
By
–
No more context bloat from unused MCP servers in your context. Claude, Cowork and Claude Code now load MCP tools on demand. Before and after:
→ View original post on X — @jiquanngiam, 2026-03-23 22:49 UTC
