The MCP ecosystem is rapidly growing, with major tech companies and projects shipping MCP servers and tools...

The MCP ecosystem is rapidly growing, with major tech companies and projects shipping MCP servers and tools, but a significant security vulnerability remains with many servers lacking authentication.

Updated: 3/6/2026
critical Severity
Status: active

Description

Google just shipped an MCP server for Gmail, Drive, Calendar, and Sheets. Helius shipped 60+ MCP tools for Solana. The MCP ecosystem is exploding -- 8,600+ servers, 97M monthly SDK downloads. 41% of official registry servers still lack authentication. More tools. More attack

Impact

The MCP ecosystem is rapidly growing, with major tech companies and projects shipping MCP servers and tools, but a significant security vulnerability remains with many servers lacking authentication.

Attack Vectors

  • MCP servers
  • plugins
  • integrations

Mitigation

    Sources