Newsletter
Join the Community
Subscribe to our newsletter for the latest news and updates
MCPHammer is a security testing framework designed to evaluate Model Context Protocol server vulnerabilities, offering tools for AI integration and remote management.

Hunt for AI coding artifacts containing secrets by scanning public GitHub repositories for leaked credentials in AI coding tool configuration files.
MCPHammer is a Model Context Protocol (MCP) server built with FastMCP, designed for security testing and evaluating server vulnerabilities. It integrates with Claude AI, provides text injection capabilities, and offers various server information utilities. The project highlights potential security risks in MCP servers, including prompt injection and covert command-and-control.
MCPHammer is primarily used for:
The framework includes a configuration management server that enables centralized control over MCPHammer instances. This allows users to monitor active instances, update injection text, view instance details and logs, and push configuration changes, making it a powerful tool for distributed security testing scenarios.