news.mlab.sh
15 results
threat-intel

How MCP Servers Can Expose Enterprise Secrets

The Model Context Protocol (MCP), a new standard allowing AI agents to access enterprise systems and data, introduces significant security risks due to the way it handles secrets. MCP servers routinely store credentials in plaintext, leading to credential sprawl and the potential for attackers to steal sensitive inform…

The Hacker News · Aug 17, 2026 High
threat-intel

Lessons Learned from CISA’s Recent GitHub Leak

A CISA contractor inadvertently published a massive trove of sensitive credentials, including AWS GovCloud keys and plaintext passwords, in a public GitHub repository for nearly six months before CISA was notified. The a…

Krebs on Security · Jul 13, 2026 High