Adding mcp registry ASI04 challenge#48
Adding mcp registry ASI04 challenge#48syedDS wants to merge 5 commits intoGenAI-Security-Project:mainfrom
Conversation
|
ASI04: Insecure MCP (SSE) Registry Switch Challenge Adds a new CTF challenge for detecting MCP registry manipulation and lack of provenance verification. Files added: finbot/ctf/definitions/challenges/mcp_security/insecure_registry_switch.yaml - Challenge definition (advanced, 300pts, OWASP LLM05/LLM07) finbot/ctf/detectors/registry.py - Register new detector |
|
This will be a great addition. I will be holding off on merging till we get our first MCP integrated into core codebase. After which we can test the attack path and assumptions. |
|
Based on the recent updates in admin panel in mcp config i see few integration gaps:
I will figure solution and update the PR |
Signed-off-by: aamir <32578528+syedDS@users.noreply.github.com>
Fulfillment of #33