Skip to content

Security MCP Servers

Security scanning, secrets management, and audit tools.

124 servers in this category

GhidraMCP

Untested
by LaurieWired

A Model Context Protocol server for Ghidra that enables LLMs to autonomously reverse engineer applications. Provides tools for decompiling binaries, renaming methods and data, and listing methods, classes, imports, and exports.

security Java stdio
7.9k 27 tools
View

Ida Pro MCP

Caution
by mrexodia

MCP server for IDA Pro, allowing you to perform binary analysis with AI assistants. This plugin implement decompilation, disassembly and allows you to generate malware analysis reports automatically.

security Python stdio
6.4k 25 tools
View

Beelzebub

Verified
by mariocandela

Beelzebub is a honeypot framework that lets you build honeypot tools using MCP. Its purpose is to detect prompt injection or malicious agent behavior. The underlying idea is to provide the agent with tools it would never use in its normal work.

security Go stdio
1.9k
View

Jadx AI MCP

Caution
by zinja-coder

JADX-AI-MCP is a plugin and MCP Server for the JADX decompiler that integrates directly with Model Context Protocol (MCP) to provide live reverse engineering support with LLMs like Claude.

security Java stdio
1.5k
View

Safedep MCP Server

Verified
by safedep Official

vet-mcp checks open source packages—like those suggested by AI coding tools—for vulnerabilities and malicious code. It supports npm and PyPI, and runs locally via Docker or as a standalone binary for fast, automated vetting.

security Go stdio
976
View

GhidrAssistMCP

Caution
by symgraph

A native Model Context Protocol server for Ghidra. Includes GUI configuration and logging, 31 powerful tools and no external dependencies.

security Java stdio
534
View

Anytype MCP

Caution
by anyproto

Official MCP server for Anytype API - your encrypted, local and collaborative wiki.

security TypeScript stdio
337
View

Skylos

Verified
by duriantaco

Dead code detection, security scanning, and code quality analysis for Python, TypeScript, and Go. 98% recall with fewer false positives than Vulture. Includes AI-powered remediation.

security Python stdio
336
View

Apktool MCP Server

Caution
by zinja-coder

APKTool MCP Server is a MCP server for the Apk Tool to provide automation in reverse engineering of Android APKs.

security Python stdio
323
View

Binary Ninja MCP

Untested
by fosdickio

A Binary Ninja plugin, MCP server, and bridge that seamlessly integrates Binary Ninja with your favorite MCP client. It enables you to automate the process of performing binary analysis and reverse engineering.

security Python stdio
264
View

MCP Maigret

Caution
by BurtTheCoder

MCP server for maigret, a powerful OSINT tool that collects user account information from various public sources. This server provides tools for searching usernames across social networks and analyzing URLs.

security JavaScript stdio
230
View

Secops MCP

Caution
by securityfortech

All-in-one security testing toolbox that brings together popular open source tools through a single MCP interface. Connected to an AI agent, it enables tasks like pentesting, bug bounty hunting, threat hunting, and more.

security Python stdio
190
View

MCP Server Wazuh

Caution
by gbrigandi

A Rust-based MCP server bridging Wazuh SIEM with AI assistants, providing real-time security alerts and event data for enhanced contextual understanding.

security Rust stdio
185
View

R2mcp

Caution
by radareorg

MCP server for Radare2 disassembler. Provides AI with capability to disassemble and look into binaries for reverse engineering.

security C stdio
168
View

MCP Ts Template

Verified
by cyanheads

TypeScript template for building MCP servers with declarative tooling, observability, and auth.

security TypeScript stdio
119
View

MCP Shodan

Verified
by BurtTheCoder

MCP server for querying the Shodan API and Shodan CVEDB. This server provides tools for IP lookups, device searches, DNS lookups, vulnerability queries, CPE lookups, and more.

security TypeScript stdio
115
View

MCP Virustotal

Verified
by BurtTheCoder

MCP server for querying the VirusTotal API. This server provides tools for scanning URLs, analyzing file hashes, and retrieving IP address reports.

security TypeScript stdio
113
View

DocSentinel

Caution
by arthurpanhku

MCP server for AI agent for cybersecurity: automate assessment of documents, questionnaires & reports. Multi-format parsing, RAG knowledge base,Risks, compliance gaps, remediations.

security Python stdio
99
View

GhidraMCP

Verified
by 13bm

MCP server for integrating Ghidra with AI assistants. This plugin enables binary analysis, providing tools for function inspection, decompilation, memory exploration, and import/export analysis via the Model Context Protocol.

security Java stdio
95
View

Cve Search MCP

Caution
by roadwy

A Model Context Protocol (MCP) server for querying the CVE-Search API. This server provides comprehensive access to CVE-Search, browse vendor and product、get CVE per CVE-ID、get the last updated CVEs.

security Python stdio
91
View

Agent Security Scanner MCP

Caution
by sinewaveai

Security layer for AI agents: blocks prompt injection, detects fake packages, scans vulnerabilities.

security JavaScript stdio
85
View

Snyk MCP Server

Verified
by snyk

Easily find and fix security issues in your applications leveraging Snyk platform capabilities.

security Go stdio
75
View

Mobb Vibe Shield MCP

Caution
by mobb-dev Official

Mobb Vibe Shield identifies and remediates vulnerabilities in both human and AI-written code, ensuring your applications remain secure without slowing development.

security TypeScript stdio
66
View

MCP Dandan

Verified
by 82ch

Real-time security framework for MCP servers that detects and blocks malicious AI agent behavior by analyzing tool call patterns and intent across multiple threat detection engines.

security Python stdio
59
View

Ida Headless MCP

Caution
by zboralski

Headless IDA Pro binary analysis via MCP. Multi-session concurrency with Go orchestration and Python workers. Supports Il2CppDumper and Blutter metadata import for Unity and Flutter reverse engineering.

security Python stdio
59
View

MCP Cybersec Watchdog

Caution
by girste

Comprehensive Linux server security audit with 89 CIS Benchmark controls, NIST 800-53, and PCI-DSS compliance checks. Real-time monitoring with anomaly detection across 23 analyzers: firewall, SSH, fail2ban, Docker, CVE, rootkit, SSL/TLS, filesystem, network, and more.

security Go stdio
45
View

MCP Panther

Verified
by panther-labs Official

MCP server that enables security professionals to interact with Panther's SIEM platform using natural language for writing detections, querying logs, and managing alerts.

security Python stdio
42
View

Volatility MCP

Caution
by Gaffx

MCP server for Volatility 3.x, allowing you to perform memory forensics analysis with AI assistant. Experience memory forensics without barriers as plugins like pslist and netscan become accessible through clean REST APIs and LLMs.

security Python stdio
40
View

OPNSenseMCP

Caution
by vespo92

MCP Server for managing & interacting with Open Source NGFW OPNSense via Natural Language

security TypeScript stdio
38
View

Cyberchef API MCP Server

Caution
by slouchd

MCP server for interacting with the CyberChef server API which will allow an MCP client to utilise the CyberChef operations.

security Python stdio
36
View

Osv MCP

Caution
by StacklokLabs

Access the OSV (Open Source Vulnerabilities) database for vulnerability information. Query vulnerabilities by package version or commit, batch query multiple packages, and get detailed vulnerability information by ID.

security Go stdio
27
View

Studio MCP

Verified
by snyk Official

Embeds Snyk's security engines into agentic workflows. Secures AI-generated code in real-time and accelerates the fixing vulnerability backlogs.

security Go stdio
26
View

Intruder MCP

Caution
by intruder-io

MCP server to access Intruder, helping you identify, understand, and fix security vulnerabilities in your infrastructure.

security Python stdio
22
View

AIM Guard MCP

Verified
by AIM-Intelligence

Security-focused MCP server that provides safety guidelines and content analysis for AI agents.

security TypeScript stdio
20
View

Repository Intelligence

Verified
by nirholas

Analyze repos of any size - security scanning code analysis monorepo support

security Python stdio
19
View

Mobsf MCP Server

Verified
by pullkitsan

A MCP server for MobSF which can be used for static and dynamic analysis of Android and iOS application.

security TypeScript stdio
18
View

Nekzus Npm Sentinel MCP

Caution
by Nekzus

Provide AI-powered real-time analysis and intelligence on NPM packages, including security, depend…

security TypeScript stdio
18
View

Wireshark MCP

Caution
by bx33661

Wireshark network packet analysis MCP Server with capture, protocol stats, field extraction, and security analysis capabilities.

security Python stdio
16
View

Redmine MCP Server

Verified
by jztan

Production-ready MCP server for Redmine with security, pagination, and enterprise features

security Python stdio
16
View

MCP Server Cortex

Caution
by gbrigandi

A Rust-based MCP server to integrate Cortex, enabling observable analysis and automated security responses through AI.

security Rust stdio
13
View

MCP Server Thehive

Verified
by gbrigandi

A Rust-based MCP server to integrate TheHive, facilitating collaborative security incident response and case management via AI.

security Rust stdio
11
View

Vuln Nist MCP Server

Caution
by HaroldFinchIFT

A Model Context Protocol (MCP) server for querying NIST National Vulnerability Database (NVD) API endpoints.

security Python stdio
11
View

MCP Vms

Caution
by jyjune

A Model Context Protocol (MCP) server designed to connect to a CCTV recording program (VMS) to retrieve recorded and live video streams. It also provides tools to control the VMS software, such as showing live or playback dialogs for specific channels at specified times.

security Python stdio
11
View

Agent Bom

Verified
by msaad00

AI supply chain security scanner with 18 MCP tools. Auto-discovers 20 MCP clients, scans dependencies for CVEs (OSV/NVD/EPSS/CISA KEV), maps blast radius from vulnerabilities to exposed credentials and tools, runs CIS benchmarks, generates CycloneDX/SPDX SBOMs, and enforces compliance across OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, and EU AI Act.

security Python stdio
10
View

Prodlint

Verified
by prodlint

Production readiness for vibe-coded apps. 52 checks for security, reliability, and performance.

security TypeScript stdio
10
View

Vulnicheck

Verified
by andrasfe

HTTP MCP Server for comprehensive Python vulnerability scanning and security analysis.

security Python stdio
9
View

Agentward

Verified
by agentward-ai

Permission control plane for AI agents. MCP proxy that enforces least-privilege YAML policies on every tool call, classifies sensitive data (PII/PHI), detects dangerous skill chains, and generates compliance audit trails. Supports stdio and HTTP proxy modes.

security Python stdio
8
View

Ciphertrust Manager MCP Server

Verified
by sanyambassi

MCP server for Thales CipherTrust Manager integration, enabling secure key management, cryptographic operations, and compliance monitoring through AI assistants.

security Python stdio
8
View