A First Measurement Study on Authentication Security in Real-World Remote MCP Servers
Fuente:
arXiv
Saved in:
| Main Authors: | Zhou, Huijun, Zhang, Xiaohan, Zhang, Haozhe, Zhang, Haoyang, Zhang, Mi, Yang, Min |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
MCPTox: A Benchmark for Tool Poisoning Attack on Real-World MCP Servers
by: Wang, Zhiqiang, et al.
Published: (2025)
by: Wang, Zhiqiang, et al.
Published: (2025)
MCP Pitfall Lab: Exposing Developer Pitfalls in MCP Tool Server Security under Multi-Vector Attacks
by: Hao, Run, et al.
Published: (2026)
by: Hao, Run, et al.
Published: (2026)
Advancing Honeywords for Real-World Authentication Security
by: Das, Sudiksha, et al.
Published: (2025)
by: Das, Sudiksha, et al.
Published: (2025)
Can LLM Infer Risk Information From MCP Server System Logs?
by: Fu, Jiayi, et al.
Published: (2025)
by: Fu, Jiayi, et al.
Published: (2025)
MCPGuard : Automatically Detecting Vulnerabilities in MCP Servers
by: Wang, Bin, et al.
Published: (2025)
by: Wang, Bin, et al.
Published: (2025)
SEW: Strengthening Robustness of Black-box DNN Watermarking via Specificity Enhancement
by: Qiu, Huming, et al.
Published: (2026)
by: Qiu, Huming, et al.
Published: (2026)
MCP Guardian: A Security-First Layer for Safeguarding MCP-Based AI System
by: Kumar, Sonu, et al.
Published: (2025)
by: Kumar, Sonu, et al.
Published: (2025)
An Anti-disguise Authentication System Using the First Impression of Avatar in Metaverse
by: Zhang, Zhenyong, et al.
Published: (2024)
by: Zhang, Zhenyong, et al.
Published: (2024)
Auditing MCP Servers for Over-Privileged Tool Capabilities
by: Huang, Charoes, et al.
Published: (2026)
by: Huang, Charoes, et al.
Published: (2026)
When MCP Servers Attack: Taxonomy, Feasibility, and Mitigation
by: Zhao, Weibo, et al.
Published: (2025)
by: Zhao, Weibo, et al.
Published: (2025)
VIPER-MCP: Detecting and Exploiting Taint-Style Vulnerabilities in Model Context Protocol Servers
by: Sun, Pengyu, et al.
Published: (2026)
by: Sun, Pengyu, et al.
Published: (2026)
From Component Manipulation to System Compromise: Understanding and Detecting Malicious MCP Servers
by: Huang, Yiheng, et al.
Published: (2026)
by: Huang, Yiheng, et al.
Published: (2026)
RAS-Eval: A Comprehensive Benchmark for Security Evaluation of LLM Agents in Real-World Environments
by: Fu, Yuchuan, et al.
Published: (2025)
by: Fu, Yuchuan, et al.
Published: (2025)
A Survey of PPG's Application in Authentication
by: Li, Lin, et al.
Published: (2022)
by: Li, Lin, et al.
Published: (2022)
SEC-bench: Automated Benchmarking of LLM Agents on Real-World Software Security Tasks
by: Lee, Hwiwon, et al.
Published: (2025)
by: Lee, Hwiwon, et al.
Published: (2025)
Securing the Internet of Medical Things (IoMT): Real-World Attack Taxonomy and Practical Security Measures
by: Deb, Suman, et al.
Published: (2025)
by: Deb, Suman, et al.
Published: (2025)
AgentDyn: Are Your Agent Security Defenses Deployable in Real-World Dynamic Environments?
by: Li, Hao, et al.
Published: (2026)
by: Li, Hao, et al.
Published: (2026)
We Urgently Need Privilege Management in MCP: A Measurement of API Usage in MCP Ecosystems
by: Li, Zhihao, et al.
Published: (2025)
by: Li, Zhihao, et al.
Published: (2025)
CallShield: Secure Caller Authentication over Real-Time Audio Channels
by: Rabh, Mouna, et al.
Published: (2026)
by: Rabh, Mouna, et al.
Published: (2026)
Vehicular Communication Security: Multi-Channel and Multi-Factor Authentication
by: De Vincenzi, Marco, et al.
Published: (2025)
by: De Vincenzi, Marco, et al.
Published: (2025)
Behavioral Authentication for Security and Safety
by: Wang, Cheng, et al.
Published: (2023)
by: Wang, Cheng, et al.
Published: (2023)
Noise-Based Authentication: Is It Secure?
by: Flanery, Sarah A., et al.
Published: (2024)
by: Flanery, Sarah A., et al.
Published: (2024)
MCP Bridge: A Lightweight, LLM-Agnostic RESTful Proxy for Model Context Protocol Servers
by: Ahmadi, Arash, et al.
Published: (2025)
by: Ahmadi, Arash, et al.
Published: (2025)
Securing the Model Context Protocol (MCP): Risks, Controls, and Governance
by: Errico, Herman, et al.
Published: (2025)
by: Errico, Herman, et al.
Published: (2025)
Simple But Not Secure: An Empirical Security Analysis of Two-factor Authentication Systems
by: Wang, Zhi, et al.
Published: (2024)
by: Wang, Zhi, et al.
Published: (2024)
Safe Text-to-Image Generation: Simply Sanitize the Prompt Embedding
by: Qiu, Huming, et al.
Published: (2024)
by: Qiu, Huming, et al.
Published: (2024)
3D-ANC: Adaptive Neural Collapse for Robust 3D Point Cloud Recognition
by: Huang, Yuanmin, et al.
Published: (2025)
by: Huang, Yuanmin, et al.
Published: (2025)
"MCP Does Not Stand for Misuse Cryptography Protocol": Uncovering Cryptographic Misuse in Model Context Protocol at Scale
by: Yan, Biwei, et al.
Published: (2025)
by: Yan, Biwei, et al.
Published: (2025)
When Authentication Is Not Enough: On the Security of Behavioral-Based Driver Authentication Systems
by: Efatinasab, Emad, et al.
Published: (2023)
by: Efatinasab, Emad, et al.
Published: (2023)
Bandwidth-Efficient Two-Server ORAMs with O(1) Client Storage
by: Wang, Wei, et al.
Published: (2025)
by: Wang, Wei, et al.
Published: (2025)
A New Era in LLM Security: Exploring Security Concerns in Real-World LLM-based Systems
by: Wu, Fangzhou, et al.
Published: (2024)
by: Wu, Fangzhou, et al.
Published: (2024)
World's First Authenticated Satellite Pseudorange from Orbit
by: Anderson, Jason
Published: (2025)
by: Anderson, Jason
Published: (2025)
TBRD: TESLA Authenticated UAS Broadcast Remote ID
by: Veara, Jason, et al.
Published: (2025)
by: Veara, Jason, et al.
Published: (2025)
Securing UAV Communication: Authentication and Integrity
by: Ouadah, Meriem, et al.
Published: (2024)
by: Ouadah, Meriem, et al.
Published: (2024)
Trivial Trojans: How Minimal MCP Servers Enable Cross-Tool Exfiltration of Sensitive Data
by: Croce, Nicola, et al.
Published: (2025)
by: Croce, Nicola, et al.
Published: (2025)
MCP Security Bench (MSB): Benchmarking Attacks Against Model Context Protocol in LLM Agents
by: Zhang, Dongsen, et al.
Published: (2025)
by: Zhang, Dongsen, et al.
Published: (2025)
Secure Information Embedding in Forensic 3D Fingerprinting
by: Wang, Canran, et al.
Published: (2024)
by: Wang, Canran, et al.
Published: (2024)
MCP-SandboxScan: WASM-based Secure Execution and Runtime Analysis for MCP Tools
by: Tan, Zhuoran, et al.
Published: (2026)
by: Tan, Zhuoran, et al.
Published: (2026)
Towards Real-World Industrial-Scale Verification: LLM-Driven Theorem Proving on seL4
by: Zhang, Jianyu, et al.
Published: (2026)
by: Zhang, Jianyu, et al.
Published: (2026)
Securing Cross-Domain Internet of Drones: An RFF-PUF Allied Authenticated Key Exchange Protocol With Over-the-Air Enrollment
by: Chen, Xuanyu, et al.
Published: (2025)
by: Chen, Xuanyu, et al.
Published: (2025)
Similar Items
-
MCPTox: A Benchmark for Tool Poisoning Attack on Real-World MCP Servers
by: Wang, Zhiqiang, et al.
Published: (2025) -
MCP Pitfall Lab: Exposing Developer Pitfalls in MCP Tool Server Security under Multi-Vector Attacks
by: Hao, Run, et al.
Published: (2026) -
Advancing Honeywords for Real-World Authentication Security
by: Das, Sudiksha, et al.
Published: (2025) -
Can LLM Infer Risk Information From MCP Server System Logs?
by: Fu, Jiayi, et al.
Published: (2025) -
MCPGuard : Automatically Detecting Vulnerabilities in MCP Servers
by: Wang, Bin, et al.
Published: (2025)