Malware, AI/ML, Supply chain

Hackers use fake Oura server for StealC malware campaign

Security Affairs reports that a sophisticated supply chain attack has been uncovered, targeting developers through a fake Oura MCP server. Threat actors created deceptive infrastructure on GitHub, mimicking a legitimate project to distribute the StealC information stealer.

The campaign involved cloning the Oura MCP server, a tool connecting AI assistants to Oura Ring health data. Attackers established fake GitHub accounts, forking the project multiple times to create an illusion of community support and credibility. These accounts, suspected to be AI-generated, were cross-referenced to appear more established. A trojanized version of the Oura MCP server was then introduced into public MCP registries. Once downloaded by unsuspecting developers, the server deployed StealC, designed to steal sensitive data including developer credentials, browser passwords, and cryptocurrency wallet information.

This incident highlights a significant shift in threat actor tactics, moving from traditional software supply chain attacks to compromising MCP ecosystems. Organizations utilizing MCP-enabled AI tools must implement rigorous vetting processes for AI tooling and MCP servers to mitigate risks of credential theft, data exfiltration, and broader supply chain compromise.

Source: Security Affairs

An In-Depth Guide to AI

Get essential knowledge and practical strategies to use AI to better your security program.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

Related Terms

Adware

You can skip this ad in 5 seconds