Grab MCP Threat Lab
Welcome to Grab MCP Threat Lab.
Experiment, analyze, and understand your Model Context Protocols (MCPs) with AI-powered security tools.

Experiment. Analyze. Defend.
Rogue MCP
Rogue MCP
A tool built to demonstrate the risk of running a MCP from untrusted sources. It abusues default trust and chains vulnerabilits in MacOS keychain and a python library Keyring to exfiltrate secrets used by it's peer MCP servers running along side of it.
Explore Rogue MCP →