An MCP server that exposes Prof. Null, an uncensored cybersecurity professor, as a set of specialized tools for learning hacking, CTFs, and security concepts through Q\&A, roadmaps, cheatsheets, labs, and more.
Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.
Install from
M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.
Disclosed vulnerabilities in this server's declared npm dependencies (via OSV). Whether each is reachable depends on the installed versions.
@modelcontextprotocol/sdk has cross-client data leak via shared server/transport instance reuse
Anthropic's MCP TypeScript SDK has a ReDoS vulnerability
Model Context Protocol (MCP) TypeScript SDK does not enable DNS rebinding protection by default
process.env. You'll be asked to provide them before it can run.ANTHROPIC_API_KEY— export ="sk-ant-..."ANTHROPIC_API_RETRIES— ❌ No Reintentos ante errores transitorios. Default: 2ANTHROPIC_API_TIMEOUT_MS— ❌ No Timeout de llamada en ms. Default: 30000CLAUDE_MAX_TOKENS— ❌ No Tope de tokens por llamada. Default: 4096CLAUDE_MODEL— ❌ No Modelo Claude a usar. Default: claude-sonnet-4-20250514LOG_LEVEL— ❌ No Nivel de logs: debug, info, warn, error. Default: info[](https://m8ven.ai/mcp/yesidleon1393-cybersec-mcp-tfhomk)