Analysis · curated 27 Jun 2026

MCP Supply Chain Attacks: Why Better Models Make It Worse

Coverage timeline

18 Apr 2026witness.ai 12 Jun 2026reversinglabs.comsubstack.com 17 Jul 2026dope.security

Why it matters

MCP servers give AI agents live, data-moving connections to internal systems over unreviewed domains, creating an egress and supply-chain exposure that most existing network security stacks cannot inspect or govern.

A dope.security blog post argues that the Model Context Protocol (MCP) has become a new shadow-IT and supply-chain risk because MCP servers create outbound HTTPS connections that read files, hit APIs, and move data on an agent's behalf while looking indistinguishable from ordinary encrypted traffic. It contends DNS filters and cloud proxies cannot see the URL paths, payloads, or tool calls inside MCP sessions, and promotes the vendor's device-level SWG and DLP as a means to name, allow, or block MCP servers at egress.