Fetching from the wire…
Public story · 2026-02-26 · source-backed
Deep-dive analysis reveals ARXON, a custom Python MCP server used in the FortiGate 600+ device campaign. ARXON ingests reconnaissance data, queries DeepSeek for structured attack plans, and uses Claude Code to autonomously execute Impacket, Metasploit, and hashcat with hardcoded credentials. A Go-based orchestrator (CHECKER2) processed 2,516 targets in parallel across 106 countries. This is the first publicly documented case of MCP being used as offensive attack infrastructure, evolved from the open-source HexStrike framework. HexStrike v6.0 was separately exploited to weaponize Citrix CVE-2025-7775 in under 10 minutes.
The MCP protocol that powers your legitimate agent tooling is equally effective for autonomous attack campaigns. The 37% of network-exposed MCP servers with zero authentication makes this an active, exploitable attack surface.
Each link below shares sources, entities, or timing with this story.
An open-source AI attack platform called CyberStrikeAI, built in Go and integrating 100+ security tools with Claude and DeepSeek via a custom MCP server (ARXON), was used to systematically compromise 600+ Fortinet FortiGate appliances across 55 countries. Claude's coding agent...
21. cyberandramen - ARXON Deep Dive 22. AWS Security Blog 23. SC Media - HexStrike 24. DEV Community - MCP CVEs 25. Social Media Today - X Bot Crackdown 26. IBM Newsroom - X-Force 27. Notion - Custom Agents
The June 12 release connects Cursor, Claude Code, Windsurf, VS Code, Amazon Q, and Kiro to pipeline, build, log, test, and workflow data over MCP. Agents can reason over CI state, like diagnosing a failing build straight from logs, without copy-paste. MCP is becoming the defau...
Domain: agent-security | Difficulty: advanced | Source Audit all MCP servers with uvx mcp-scan@latest. Implement network egress allowlists (ARXON succeeded via unrestricted outbound access). Scope tool permissions with PreToolUse hooks. Isolate knowledge base per-session. Moni...
A Chinese lab shipped a runtime that manages two American coding agents as subagents, and it went from repo creation to 145,439 stars in four days. deepseek-ai/deepseek-harness published dsh-v0.1.0-rc.7 at 12:01 UTC today, its first tagged release since the repo appeared on Au...
1. Flip your multi-model pipeline to review-then-generate. Instead of using a reasoning model to plan before code generation, let the specialist generate freely and use reasoning tokens for review. Paper shows 90.2% pass@1 vs 87.2% for the planning pattern. Source 2. Audit you...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.