Damn Vulnerable Model Context Protocol (DVMCP)
@harishsg993010
About Damn Vulnerable Model Context Protocol (DVMCP)
Damn Vulnerable MCP Server
Config
Add this server to your MCP-compatible client using the configuration below.
{
"mcpServers": {
"damn-vulnerable-MCP-server": {
"command": "docker",
"args": [
"build",
"-t",
"dvmcp",
"."
]
}
}
}Tools
No tools detected
We auto-extract tools from the README. The maintainer can list them under a ## Tools heading to populate this section.
Overview
What is Damn Vulnerable Model Context Protocol (DVMCP)?
Damn Vulnerable Model Context Protocol (DVMCP) is a deliberately vulnerable MCP server with 10 security challenges of increasing difficulty. It is designed for security researchers, developers, and AI safety professionals to learn about vulnerabilities in MCP implementations.
How to use Damn Vulnerable Model Context Protocol (DVMCP)?
Clone the repository, then run docker build -t dvmcp . and docker run -p 9001-9010:9001-9010 dvmcp to start the lab. Connect using a remote MCP client like CLINE for VSCode; challenge solutions are available in the solutions directory.
Key features of Damn Vulnerable Model Context Protocol (DVMCP)
- 10 challenges across three difficulty levels (easy, medium, hard)
- Covers vulnerabilities like Prompt Injection, Tool Poisoning, and Remote Access Control
- Docker-based environment for simple setup and isolation
- Educational project focused on MCP security risks and mitigations
- Solution guides included for self-assessment
Use cases of Damn Vulnerable Model Context Protocol (DVMCP)
- Security researchers studying MCP attack vectors and defenses
- Developers testing and hardening their MCP implementations
- AI safety professionals analyzing prompt injection and tool poisoning
- Cybersecurity training exercises and Capture The Flag events
FAQ from Damn Vulnerable Model Context Protocol (DVMCP)
What is Damn Vulnerable Model Context Protocol (DVMCP)?
A deliberately vulnerable MCP server containing 10 educational challenges that demonstrate common security vulnerabilities in MCP implementations.
How do I run Damn Vulnerable Model Context Protocol (DVMCP)?
Build and run with Docker: docker build -t dvmcp . followed by docker run -p 9001-9010:9001-9010 dvmcp. A Linux environment is
Frequently asked questions
What is Damn Vulnerable Model Context Protocol (DVMCP)?
A deliberately vulnerable MCP server containing 10 educational challenges that demonstrate common security vulnerabilities in MCP implementations.
How do I run Damn Vulnerable Model Context Protocol (DVMCP)?
Build and run with Docker: `docker build -t dvmcp .` followed by `docker run -p 9001-9010:9001-9010 dvmcp`. A Linux environment is
Basic information
More Other MCP servers
Maestro
mobile-dev-incPainless E2E Automation for Mobile and Web
XcodeBuildMCP
cameroncookeA Model Context Protocol (MCP) server and CLI that provides tools for agent use when working on iOS and macOS projects.
π Model Context Protocol (MCP) Curriculum for Beginners
microsoftThis open-source curriculum introduces the fundamentals of Model Context Protocol (MCP) through real-world, cross-language examples in .NET, Java, TypeScript, JavaScript, Rust and Python. Designed for developers, it focuses on practical techniques for building modular, scalable,
Activepieces
activepiecesAI Agents & MCPs & AI Workflow Automation β’ (~400 MCP servers for AI agents) β’ AI Automation / AI Agent with MCPs β’ AI Workflows & AI Agents β’ MCPs for AI Agents
ghidraMCP
LaurieWiredMCP Server for Ghidra
Comments