Security Affairs reports that a sophisticated supply chain attack has been uncovered, targeting developers through a fake Oura MCP server. Threat actors created deceptive infrastructure on GitHub, mimicking a legitimate project to distribute the StealC information stealer.The campaign involved cloning the Oura MCP server, a tool connecting AI assistants to Oura Ring health data. Attackers established fake GitHub accounts, forking the project multiple times to create an illusion of community support and credibility. These accounts, suspected to be AI-generated, were cross-referenced to appear more established. A trojanized version of the Oura MCP server was then introduced into public MCP registries. Once downloaded by unsuspecting developers, the server deployed StealC, designed to steal sensitive data including developer credentials, browser passwords, and cryptocurrency wallet information.This incident highlights a significant shift in threat actor tactics, moving from traditional software supply chain attacks to compromising MCP ecosystems. Organizations utilizing MCP-enabled AI tools must implement rigorous vetting processes for AI tooling and MCP servers to mitigate risks of credential theft, data exfiltration, and broader supply chain compromise.Source: Security Affairs
Malware, AI/ML, Supply chain
Hackers use fake Oura server for StealC malware campaign
An In-Depth Guide to AI
Get essential knowledge and practical strategies to use AI to better your security program.
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news
Related Terms
AdwareYou can skip this ad in 5 seconds
