Awesome MCP › Security & Reverse Engineering

Security & Reverse Engineering

49 projects

mukul975/Anthropic-Cybersecurity-Skills

A comprehensive open-source library featuring 754 structured cybersecurity skills for AI agents, mapped to five industry frameworks to provide expert-level guidance.

⭐ 32737 Python added 2026-05-04

NVIDIA/SkillSpector

NVIDIA security scanner for AI agent skills and MCP tooling that detects prompt injection, data exfiltration, MCP tool poisoning and least-privilege problems, and can itself be run as an MCP server inside agent sessions.

⭐ 17111 Python added 2026-08-10

mrexodia/ida-pro-mcp

ida-pro-mcp is an MCP server for IDA Pro that enables advanced reverse engineering capabilities through MCP-based interactions and automation.

⭐ 12019 Python added 2025-04-09

LaurieWired/GhidraMCP

GhidraMCP is an MCP server that integrates Ghidra's reverse engineering capabilities with MCP clients, enabling automated binary analysis and decompilation through large language models.

⭐ 10019 Java added 2025-05-14

invariantlabs-ai/mcp-scan

MCP-Scan is a security tool that statically and dynamically scans and monitors Model Context Protocol (MCP) connections to detect and prevent vulnerabilities such as prompt injections, tool poisoning, and cross-origin escalations.

⭐ 3035 Python

zinja-coder/jadx-ai-mcp

JADX-AI-MCP is a JADX plugin integrating Model Context Protocol to enable AI-powered live reverse engineering, vulnerability detection, and code analysis of Android APKs using large language models like Claude.

⭐ 2783 Java added 2025-05-14

mariocandela/beelzebub

Beelzebub is a secure low-code honeypot framework leveraging large language models and the Model Context Protocol (MCP) to detect and analyze cyber attacks, including prompt injection attempts against LLM agents.

⭐ 2173 Go added 2025-07-05

svnscha/mcp-windbg

mcp-windbg is a Model Context Protocol server that enables AI models to analyze Windows crash dumps using WinDBG through natural language interaction and command execution.

⭐ 1571 Python added 2025-05-06

BlackSnufkin/LitterBox

LitterBox is a secure sandbox environment integrating with LLM agents via MCP to provide advanced malware analysis and testing capabilities for red and blue teams before deployment.

⭐ 1536 YARA

six2dez/burp-ai-agent

Burp AI Agent is a Burp Suite extension that integrates AI-driven analysis and Model Context Protocol tooling to enhance security testing with automated vulnerability scanning and privacy controls.

⭐ 1496 Kotlin added 2026-01-31

miscusi-peek/cheatengine-mcp-bridge

This project integrates AI agents with Cheat Engine via the Model Context Protocol (MCP) to automate reverse engineering, memory analysis, and game modding tasks using natural language commands.

⭐ 1443 Lua added 2026-07-27

PortSwigger/mcp-server

PortSwigger/mcp-server is a Burp Suite extension implementing a Model Context Protocol server to integrate Burp with AI clients for advanced AI-driven security testing and automation workflows.

⭐ 1159 Kotlin

safedep/vet

safedep/vet is an enterprise-grade open source software supply chain security tool offering next-generation software composition analysis, real-time malicious package detection, policy as code, and multi-ecosystem support, with integration into CI/CD workflows and MCP server capabilities.

⭐ 1106 Go added 2025-07-05

splx-ai/agentic-radar

Agentic Radar is a security scanner tool that analyzes, visualizes, and assesses vulnerabilities in large language model agentic workflows, including MCP server detection and mapping to known security frameworks.

⭐ 1052 Python added 2025-05-06

erwinkramer/bank-api

The Bank API is a compliant, modern reference project for developing secure banking APIs, featuring extensive compliance, security, observability, and exposure via the Model Context Protocol (MCP).

⭐ 842 C# added 2025-12-26

Wh0am123/MCP-Kali-Server

MCP Kali Server is a lightweight API bridge that connects MCP clients to a Kali Linux machine, enabling AI-assisted penetration testing and command execution for offensive security tasks.

⭐ 824 Python added 2025-10-21

FuzzingLabs/mcp-security-hub

A collection of production-ready, Dockerized Model Context Protocol (MCP) servers enabling AI assistants to integrate with various offensive security tools for assessments, vulnerability scanning, ...

⭐ 785 Python added 2026-07-27

zinja-coder/jadx-mcp-server

JADX-MCP-SERVER is a Python-based MCP server that integrates with the JADX-AI-MCP plugin to enable live AI-assisted reverse engineering and vulnerability analysis of Android APKs using large language models like Claude.

⭐ 779 Python added 2025-05-14

ant4g0nist/lisa.py

LLDB MCP Integration enables AI assistants like Claude to interact with LLDB debugging sessions through the Model-Context Protocol, facilitating natural language debugging commands and automation.

⭐ 756 Python added 2025-04-09

semgrep/mcp

semgrep/mcp is an MCP server that integrates Semgrep's static code analysis to scan code for security vulnerabilities within MCP-compatible tools and IDEs.

⭐ 685 Python added 2025-04-09

zinja-coder/apktool-mcp-server

apktool-mcp-server is an MCP server integrating Apk Tool with Model Context Protocol to provide live, AI-assisted Android APK reverse engineering and vulnerability analysis using LLMs like Claude.

⭐ 651 Python added 2025-05-14

cyproxio/mcp-for-security

MCP for Security is a collection of Model Context Protocol servers that integrate popular security and penetration testing tools into AI workflows through a standardized interface.

⭐ 630 TypeScript added 2025-05-14

0xKoda/WireMCP

WireMCP is an MCP server that empowers Large Language Models with real-time network traffic analysis using Wireshark's tshark tool to provide structured context for threat detection, diagnostics, and anomaly identification.

⭐ 583 JavaScript added 2025-04-09

Nexus-Router/nexus

Nexus is a unified platform for aggregating, governing, and securing multiple MCP servers and LLM providers through a single endpoint, enabling centralized AI service management and control.

⭐ 435 Rust added 2026-01-31

fosdickio/binary_ninja_mcp

A Binary Ninja plugin providing an MCP server and bridge for seamless integration with LLM clients, enhancing reverse engineering with AI assistance.

⭐ 434 Python added 2025-05-14

MorDavid/BloodHound-MCP-AI

BloodHound-MCP-AI integrates BloodHound with AI through the Model Context Protocol, enabling natural language analysis of Active Directory attack paths for enhanced security assessment.

⭐ 375 Python added 2025-04-13

Automata-Labs-team/code-sandbox-mcp

code-sandbox-mcp is an MCP server providing a secure, isolated Docker-based sandbox environment for safe code execution within AI applications.

⭐ 328 Go added 2025-05-14

radareorg/radare2-mcp

MCP server written in C that exposes radare2 binary analysis to AI agents, working as a CLI tool, an r2 core plugin or an HTTP server with sessions, auth and sandboxing.

⭐ 308 C

ethiack/ai4eh

AI for Ethical Hacking (AI4EH) is an educational workshop project demonstrating practical AI applications in offensive security, including reconnaissance, screenshot analysis, fuzzing, exploit generation, and MCP integrations with popular security tools.

⭐ 298 Python added 2025-10-04

SimonB97/win-cli-mcp-server

A secure and configurable Model Context Protocol server for Windows enabling multi-shell command-line interactions and remote SSH management with extensive security controls.

⭐ 268 JavaScript added 2025-03-09

flankerhqd/jebmcp

MCP server and JEB Pro plugin that exposes Android decompilation to LLM clients, offering tools to read manifests, decompile classes and methods, trace callers and rename symbols.

⭐ 259 Python

MCP-Defender/MCP-Defender

MCP Defender is a desktop app that automatically scans and blocks malicious MCP traffic in AI applications like Cursor, Claude, VS Code, and Windsurf to enhance security.

⭐ 257 TypeScript added 2026-01-04

CrowdStrike/falcon-mcp

Official CrowdStrike MCP server in Python that exposes the Falcon platform — detections, threat intelligence, hosts, cloud security, NG-SIEM and more — to AI agents as selectable modules.

⭐ 251 Python

gbrigandi/mcp-server-wazuh

Rust MCP server that bridges a Wazuh SIEM to AI assistants, exposing alerts, agent state, vulnerabilities, detection rules, manager logs, cluster health and statistics as tools.

⭐ 235 Rust

g0t4/mcp-server-commands

mcp-server-commands is an MCP server that enables large language models to securely execute shell commands and interact with the system environment.

⭐ 233 TypeScript added 2025-05-06

securityfortech/secops-mcp

Python MCP server that wraps offensive security tools such as Nuclei, Nmap, SQLMap, Amass, Subfinder, FFUF and Hashcat behind one interface with a consistent JSON result format.

⭐ 210 Python

eqtylab/mcp-guardian

MCP Guardian is a security and management tool that provides real-time control, message logging, and approval features for MCP servers, enhancing the safety and oversight of LLM assistant activities.

⭐ 200 Rust added 2025-10-04

BurtTheCoder/mcp-shodan

An MCP server for the Shodan API and CVEDB covering internet-device search, IP reconnaissance, DNS lookups and CVE or CPE vulnerability intelligence.

⭐ 171 JavaScript added 2025-05-14

fiddlecube/compliant-llm

Compliant LLM is a comprehensive toolkit for building secure and compliant AI agents and MCP servers, supporting multiple LLM providers and ensuring adherence to major compliance frameworks like NIST, ISO, HIPAA, and GDPR.

⭐ 162 Python

BurtTheCoder/mcp-virustotal

An MCP server for the VirusTotal API that analyses URLs, files, IP addresses and domains, returning security reports with automatic relationship data and pagination.

⭐ 149 TypeScript added 2025-05-14

DMontgomery40/pentest-mcp

MCP server that exposes penetration-testing and reconnaissance tools such as nmap, nuclei, ffuf, hydra and hashcat to AI agents, with HTTP and stdio transports, bearer/OIDC auth and engagement reporting.

⭐ 145 JavaScript

13bm/GhidraMCP

A Ghidra extension that exposes about seventy reverse-engineering operations to MCP clients through a Java plugin and a Go bridge speaking MCP over stdio.

⭐ 136 Java

roadwy/cve-search_mcp

An MCP server for the CVE-Search API that browses vendors and products, retrieves individual CVE records and lists recently updated vulnerabilities.

⭐ 106 Python added 2025-05-14

cycodehq/cycode-cli

Cycode's security CLI for secrets, infrastructure-as-code, software composition and static analysis scanning, which can also run as an MCP server.

⭐ 100 Python

ozanunal0/viper

A vulnerability intelligence tool that merges NVD, EPSS and CISA KEV data with model analysis and risk scoring, and ships an MCP server exposing about a dozen CVE research tools to Claude Desktop.

⭐ 94 Python

zoomeye-ai/mcp_zoomeye

ZoomEye's MCP server for its cyberspace asset search engine, letting an assistant query internet-exposed hosts and services using ZoomEye dorks.

⭐ 82 Python added 2025-05-14

GroundNG/VibeShift

MCP server that lets AI coding assistants scan generated code for vulnerabilities with SAST and DAST tools, and additionally record, replay and self-heal Playwright tests written from natural language.

⭐ 67 Python

tuananh/hyper-mcp

hyper-mcp is a fast, secure Model Context Protocol server that extends AI capabilities through WebAssembly plugins, supporting diverse deployment environments and strong security features.

⭐ 2 Rust added 2025-03-24

netwrix/mcp-server-naa

MCP server for Netwrix Access Analyzer that queries completed Active Directory and file system scan data in SQL Server and exposes permissions, effective access and security assessment tools.

⭐ 1 Python added 2025-05-14