Artificial Intelligence Ai Labs
Explore 1 lab in Artificial Intelligence Ai.
An MCP rug pull happens when a once-trusted tool or provider changes behaviour after being installed or approved — typically by pushing a malicious update, changing the manifest to include hostile instructions, or swapping code in the registry. Users and LLMs that previously trusted the tool continue to invoke it, but the updated tool performs unauthorised actions (exfiltration, secret leakage, arbitrary calls) or otherwise abuses granted privileges. Rug pulls exploit implicit trust, weak provenance, and absent update controls in the MCP ecosystem.
Select a language to explore available labs for this vulnerability.
Try adjusting your language filter.
Want to skill-up in secure coding and AppSec? Try SecDim Wargames to learn how to find, hack and fix security vulnerabilities inspired by real-world incidents.
Join our secure coding and AppSec community. A discussion board to share and discuss all aspects of secure programming, AppSec, DevSecOps, fuzzing, cloudsec, AIsec code review, and more.
Read more