Mmastodon TechnologyCybersecurity first seen 12 h ago, last 12 h ago, peak #6
147 exposed MCP servers found online without authentication
Original: A post about publicly exposed MCP servers (147 without authentication). https:// pluto.security/blog/wide-open- hundreds
Security researchers report hundreds of MCP (Model Context Protocol) servers are publicly reachable on the internet, with 147 requiring no authentication. The exposed instances allegedly offer access to root shells, production data, and citizen records, discoverable via search engines like Shodan. The findings highlight how rapidly deployed AI infrastructure is being left wide open, renewing warnings about securing AI tooling before sensitive data leaks.
Why now: The scale of unauthenticated AI infrastructure exposed online raises fresh concerns about data breaches linked to the AI boom.
Pluto SecurityShodanMCP servers
Evidence
- A post about publicly exposed MCP servers (147 without authentication). https:// pluto.security/blog/wide-open- hundreds-of-mcps-exposing-root-shells-production-data-and-citizen-records-one-call-away # infosec # cybersecurity # osint # shodan # ai · r1cksec@infosec.exchange · 1
API: https://socialmediatrends-api.osmike.com/v1/trends/713852