canack/bad-mcp
10 intentionally malicious MCP servers that exploit protocol features to attack AI clients. For security research and defense testing.
Platform-specific configuration:
{
"mcpServers": {
"bad-mcp": {
"command": "npx",
"args": [
"-y",
"bad-mcp"
]
}
}
}Add the config above to .claude/settings.json under the mcpServers key.
Loading reviews...