tool-server-injection-prevention

Installation
SKILL.md

Tool/Server Injection Prevention for MCP Servers

Security Requirement

MCP servers MUST protect against tool/server injection attacks, also known as "rug-pulls," where a malicious update replaces a trusted server or tool with a compromised version.

Attack Scenario

  1. User installs a trusted MCP server (version 1.0)
  2. Attacker pushes a malicious update (version 1.1) to the distribution channel
  3. User's MCP client auto-updates to version 1.1
  4. Malicious server now has access to user's tools and data

Required Mitigations

Sign Updates

Digitally sign all server binaries, container images, and updates so clients and users can verify their integrity:

Installs
2
GitHub Stars
52
First Seen
Jul 18, 2026
tool-server-injection-prevention — redhatproductsecurity/prodsec-skills