Skip to content

Security MCP Server

Mobsf MCP Server

A MCP server for MobSF which can be used for static and dynamic analysis of Android and iOS application.

Scan found nothing by pullkitsan18MITTypeScriptIntermediatestdio
View on GitHub Install Guide

Install

No auto-install command available for this server.

Check the GitHub repository for setup instructions

Safety Report

67% Scan found nothing
Scanned 5 months ago
4 passed 1 warnings 1 failed
Security
Authentication
details

Weak auth signals: env_api_key

Warning
CORS Policy
details

stdio transport — CORS not applicable

N/A
Rate Limiting
details

No rate limiting mechanism detected

Info
Known CVEs
details

No known CVEs in dependencies

Pass
Code Quality
Dependency Audit
details

No known vulnerable dependencies detected

Pass
Dangerous Patterns
details

No dangerous code patterns detected

Pass
License
details

License: MIT

Pass
Community
Maintenance Status
details

Last commit over 1 year(s) ago

Fail

Learn about our security methodology →

Frequently Asked Questions

What is Mobsf MCP Server?

A MCP server for MobSF which can be used for static and dynamic analysis of Android and iOS application.

Is Mobsf MCP Server safe to use?

We cannot tell you that, and nobody scanning at this scale can. What we did in March 2026 was shallow-clone Mobsf MCP Server and run five keyword searches over its source: auth identifiers, CORS configuration, rate-limit identifiers, the dependency manifest against a hardcoded list of 18 known-vulnerable packages, and unguarded eval/exec calls. None of them matched. A text search cannot follow a variable, judge intent, or tell you what a server does once it is running, so "nothing matched" is not "safe". What the scan does and does not cover is written out at /mcp/security.

What are alternatives to Mobsf MCP Server?

Similar MCP servers include GhidraMCP, Ida Pro MCP, Beelzebub. Each serves a similar purpose but may differ in features, language, and compatibility.

Similar MCP Servers

GhidraMCP

Not scanned
by LaurieWired

A Model Context Protocol server for Ghidra that enables LLMs to autonomously reverse engineer applications. Provides tools for decompiling binaries, renaming methods and data, and listing methods, classes, imports, and exports.

security Java stdio
7.9k 27 tools
View

Ida Pro MCP

Scan flagged something
by mrexodia

MCP server for IDA Pro, allowing you to perform binary analysis with AI assistants. This plugin implement decompilation, disassembly and allows you to generate malware analysis reports automatically.

security Python stdio
6.4k 25 tools
View

Beelzebub

Scan found nothing
by mariocandela

Beelzebub is a honeypot framework that lets you build honeypot tools using MCP. Its purpose is to detect prompt injection or malicious agent behavior. The underlying idea is to provide the agent with tools it would never use in its normal work.

security Go stdio
1.9k
View
Was this helpful?

Free AI writing tools

Check a draft for AI tells, then fix what the check finds.

Stay Updated on MCP Servers

New servers, safety alerts, and install guides — weekly.