MCPHammer
MCPHammer is an offensive security research framework built by Praetorian for evaluating vulnerabilities in Model Context Protocol server implementations. It provides tools that demonstrate real-world attack vectors including prompt injection via text injection, command-and-control through tool argument scanning, arbitrary file download and execution, and data exfiltration through query interception. The framework includes a companion conversation-assistant component that demonstrates covert C2 channels using chained integrations with services like Slack, along with a web-based management console for coordinating multiple deployed instances.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately. Last scanned 2026-09-28.
Scan details: Circle-IR · 2026-09-28 · Appeal
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- devops-ci
- Source
- PulseMCP
- Repository
- github.com/praetorian-inc/mcphammer
- Author type
- human
- Last scanned
- 2026-09-28
- Updated
- 2026-09-28
Use via MCP
Resolve MCPHammer from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.