AnalysisCybersecurityAugust 28, 2026

AI Agent Has Root: MCP servers run with full user permissions

A developer found that shell MCP servers in Claude run with the user's full permissions, giving AI agents access to SSH keys, AWS credentials, and the entire home directory with no audit trail. The post warns that any malicious code in an MCP server could act as the user.

1 source

Cybersecurity by email

Get an email when there's news on Cybersecurity

No news that day, no email.

More stories today

Open the live feed