mukul975/Anthropic-Cybersecurity-Skills
A comprehensive open-source library featuring 754 structured cybersecurity skills for AI agents, mapped to five industry frameworks to provide expert-level guidance.
Awesome MCP › Security & Reverse Engineering
A comprehensive open-source library featuring 754 structured cybersecurity skills for AI agents, mapped to five industry frameworks to provide expert-level guidance.
NVIDIA security scanner for AI agent skills and MCP tooling that detects prompt injection, data exfiltration, MCP tool poisoning and least-privilege problems, and can itself be run as an MCP server inside agent sessions.
ida-pro-mcp is an MCP server for IDA Pro that enables advanced reverse engineering capabilities through MCP-based interactions and automation.
GhidraMCP is an MCP server that integrates Ghidra's reverse engineering capabilities with MCP clients, enabling automated binary analysis and decompilation through large language models.
MCP-Scan is a security tool that statically and dynamically scans and monitors Model Context Protocol (MCP) connections to detect and prevent vulnerabilities such as prompt injections, tool poisoning, and cross-origin escalations.
JADX-AI-MCP is a JADX plugin integrating Model Context Protocol to enable AI-powered live reverse engineering, vulnerability detection, and code analysis of Android APKs using large language models like Claude.
Beelzebub is a secure low-code honeypot framework leveraging large language models and the Model Context Protocol (MCP) to detect and analyze cyber attacks, including prompt injection attempts against LLM agents.
mcp-windbg is a Model Context Protocol server that enables AI models to analyze Windows crash dumps using WinDBG through natural language interaction and command execution.
LitterBox is a secure sandbox environment integrating with LLM agents via MCP to provide advanced malware analysis and testing capabilities for red and blue teams before deployment.
Burp AI Agent is a Burp Suite extension that integrates AI-driven analysis and Model Context Protocol tooling to enhance security testing with automated vulnerability scanning and privacy controls.
This project integrates AI agents with Cheat Engine via the Model Context Protocol (MCP) to automate reverse engineering, memory analysis, and game modding tasks using natural language commands.
PortSwigger/mcp-server is a Burp Suite extension implementing a Model Context Protocol server to integrate Burp with AI clients for advanced AI-driven security testing and automation workflows.
safedep/vet is an enterprise-grade open source software supply chain security tool offering next-generation software composition analysis, real-time malicious package detection, policy as code, and multi-ecosystem support, with integration into CI/CD workflows and MCP server capabilities.
Agentic Radar is a security scanner tool that analyzes, visualizes, and assesses vulnerabilities in large language model agentic workflows, including MCP server detection and mapping to known security frameworks.
The Bank API is a compliant, modern reference project for developing secure banking APIs, featuring extensive compliance, security, observability, and exposure via the Model Context Protocol (MCP).
MCP Kali Server is a lightweight API bridge that connects MCP clients to a Kali Linux machine, enabling AI-assisted penetration testing and command execution for offensive security tasks.
A collection of production-ready, Dockerized Model Context Protocol (MCP) servers enabling AI assistants to integrate with various offensive security tools for assessments, vulnerability scanning, ...
JADX-MCP-SERVER is a Python-based MCP server that integrates with the JADX-AI-MCP plugin to enable live AI-assisted reverse engineering and vulnerability analysis of Android APKs using large language models like Claude.
LLDB MCP Integration enables AI assistants like Claude to interact with LLDB debugging sessions through the Model-Context Protocol, facilitating natural language debugging commands and automation.
semgrep/mcp is an MCP server that integrates Semgrep's static code analysis to scan code for security vulnerabilities within MCP-compatible tools and IDEs.
apktool-mcp-server is an MCP server integrating Apk Tool with Model Context Protocol to provide live, AI-assisted Android APK reverse engineering and vulnerability analysis using LLMs like Claude.
MCP for Security is a collection of Model Context Protocol servers that integrate popular security and penetration testing tools into AI workflows through a standardized interface.
WireMCP is an MCP server that empowers Large Language Models with real-time network traffic analysis using Wireshark's tshark tool to provide structured context for threat detection, diagnostics, and anomaly identification.
Nexus is a unified platform for aggregating, governing, and securing multiple MCP servers and LLM providers through a single endpoint, enabling centralized AI service management and control.
A Binary Ninja plugin providing an MCP server and bridge for seamless integration with LLM clients, enhancing reverse engineering with AI assistance.
BloodHound-MCP-AI integrates BloodHound with AI through the Model Context Protocol, enabling natural language analysis of Active Directory attack paths for enhanced security assessment.
code-sandbox-mcp is an MCP server providing a secure, isolated Docker-based sandbox environment for safe code execution within AI applications.
MCP server written in C that exposes radare2 binary analysis to AI agents, working as a CLI tool, an r2 core plugin or an HTTP server with sessions, auth and sandboxing.
AI for Ethical Hacking (AI4EH) is an educational workshop project demonstrating practical AI applications in offensive security, including reconnaissance, screenshot analysis, fuzzing, exploit generation, and MCP integrations with popular security tools.
A secure and configurable Model Context Protocol server for Windows enabling multi-shell command-line interactions and remote SSH management with extensive security controls.
MCP server and JEB Pro plugin that exposes Android decompilation to LLM clients, offering tools to read manifests, decompile classes and methods, trace callers and rename symbols.
MCP Defender is a desktop app that automatically scans and blocks malicious MCP traffic in AI applications like Cursor, Claude, VS Code, and Windsurf to enhance security.
Official CrowdStrike MCP server in Python that exposes the Falcon platform — detections, threat intelligence, hosts, cloud security, NG-SIEM and more — to AI agents as selectable modules.
Rust MCP server that bridges a Wazuh SIEM to AI assistants, exposing alerts, agent state, vulnerabilities, detection rules, manager logs, cluster health and statistics as tools.
mcp-server-commands is an MCP server that enables large language models to securely execute shell commands and interact with the system environment.
Python MCP server that wraps offensive security tools such as Nuclei, Nmap, SQLMap, Amass, Subfinder, FFUF and Hashcat behind one interface with a consistent JSON result format.
MCP Guardian is a security and management tool that provides real-time control, message logging, and approval features for MCP servers, enhancing the safety and oversight of LLM assistant activities.
An MCP server for the Shodan API and CVEDB covering internet-device search, IP reconnaissance, DNS lookups and CVE or CPE vulnerability intelligence.
Compliant LLM is a comprehensive toolkit for building secure and compliant AI agents and MCP servers, supporting multiple LLM providers and ensuring adherence to major compliance frameworks like NIST, ISO, HIPAA, and GDPR.
An MCP server for the VirusTotal API that analyses URLs, files, IP addresses and domains, returning security reports with automatic relationship data and pagination.
MCP server that exposes penetration-testing and reconnaissance tools such as nmap, nuclei, ffuf, hydra and hashcat to AI agents, with HTTP and stdio transports, bearer/OIDC auth and engagement reporting.
A Ghidra extension that exposes about seventy reverse-engineering operations to MCP clients through a Java plugin and a Go bridge speaking MCP over stdio.
An MCP server for the CVE-Search API that browses vendors and products, retrieves individual CVE records and lists recently updated vulnerabilities.
Cycode's security CLI for secrets, infrastructure-as-code, software composition and static analysis scanning, which can also run as an MCP server.
A vulnerability intelligence tool that merges NVD, EPSS and CISA KEV data with model analysis and risk scoring, and ships an MCP server exposing about a dozen CVE research tools to Claude Desktop.
ZoomEye's MCP server for its cyberspace asset search engine, letting an assistant query internet-exposed hosts and services using ZoomEye dorks.
MCP server that lets AI coding assistants scan generated code for vulnerabilities with SAST and DAST tools, and additionally record, replay and self-heal Playwright tests written from natural language.
hyper-mcp is a fast, secure Model Context Protocol server that extends AI capabilities through WebAssembly plugins, supporting diverse deployment environments and strong security features.
MCP server for Netwrix Access Analyzer that queries completed Active Directory and file system scan data in SQL Server and exposes permissions, effective access and security assessment tools.