MCP token theft (Mitiga, 2026)
A malicious npm postinstall script rewrites ~/.claude.json, repointing
MCP traffic through an attacker proxy and capturing OAuth tokens as they pass through.
Classified out of scope, so no vendor fix is coming.