This playbook documents offensive techniques for educational and authorized security testing only.
Authorized use only. Only test systems you have permission to test. Unauthorized access to computer systems is illegal.
If you discover a vulnerability in an MCP deployment, please follow responsible disclosure practices:
- Notify the vendor/owner privately
- Give them reasonable time to patch
- Public disclosure only after patch is available or after 90 days
For questions about legitimate security research, contact @hunnidinnit.