Hands-on MCP security lab: 10 real incidents reproduced with vulnerable/secure MCP servers, pytest regressions, and Claude/Cursor battle-tested exploit walkthroughs
☆89Dec 3, 2025Updated 7 months ago
Alternatives and similar repositories for mcp-breach-to-fix-labs
Users that are interested in mcp-breach-to-fix-labs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.☆266Dec 18, 2025Updated 7 months ago
- ☆39Jul 31, 2025Updated 11 months ago
- Benchmarking LLM agents on Cyber Threat Investigation.☆134May 4, 2026Updated 2 months ago
- Cyber Threat Defense World Modeling☆25May 13, 2026Updated 2 months ago
- ☆18Jul 23, 2025Updated 11 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Performing secure code review with LLMs (and vibe coding IDEs)☆40Aug 5, 2025Updated 11 months ago
- Nova-Proximity is a MCP and Agent Skills security scanner powered with NOVA☆302Mar 26, 2026Updated 3 months ago
- An AI-powered plugin for Caldera that orchestrates long-running LLM workflows to automatically create adversary emulation abilities and p…☆36May 6, 2026Updated 2 months ago
- ☆81Aug 27, 2025Updated 10 months ago
- ☆15Apr 15, 2026Updated 3 months ago
- Open source tooling to stop ICS phishing (malicious calendar invites)☆18Feb 24, 2026Updated 4 months ago
- LLMON 🍋 - The World's First Web Adversarial AI Firewall☆40Jan 3, 2026Updated 6 months ago
- SOC-in-a-Box for AI purple teaming☆19Updated this week
- 🛡️ Satellite Telemetry Security Analyzer - GPS Spoofing Detection & Analysis Toolkit for Starlink terminals☆22Jan 27, 2026Updated 5 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- DRSource is an extensible, multi-language static analysis tool designed to detect vulnerabilities in source code. It uses a pluggable arc…☆18Mar 5, 2026Updated 4 months ago
- AWS Attack Path Scanner - Discover privilege escalation paths across 10+ AWS services☆155Dec 4, 2025Updated 7 months ago
- MCP Snitch is a macOS application that intercepts and monitors MCP server communications, providing security analysis, access control, an…☆94Oct 14, 2025Updated 9 months ago
- A comprehensive framework for analyzing and defending against attacks targeting Software Development Life Cycle Infrastructure.☆172Updated this week
- AI-Driven Threat Modeling & Attack Tree Generation with MITRE ATT&CK Integration☆63Updated this week
- Cyber Threat Intelligence☆82Dec 7, 2025Updated 7 months ago
- MCP security proxy that sits between AI coding assistants and MCP servers, detecting and blocking all known MCP attack classes. Works wit…☆24Feb 24, 2026Updated 4 months ago
- ☆78Oct 18, 2025Updated 9 months ago
- AI-powered cybersecurity attack flow visualization tool using MITRE ATT&CK☆229Updated this week
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- ☆20Jul 29, 2025Updated 11 months ago
- MCP to help Defenders Detection Engineer Harder and Smarter☆462Jun 16, 2026Updated last month
- Threat Designer is a GenerativeAI application designed to automate and streamline the threat modeling process for secure system design.☆268Jul 10, 2026Updated last week
- ☆15Jun 4, 2026Updated last month
- LLM-based automated patch diffing☆101Sep 15, 2025Updated 10 months ago
- Local forensic scanner that extracts credentials from AI tool conversation history. For authorized red team and DLP use only.☆56Updated this week
- Scan A2A agents for potential threats and security issues☆161Apr 16, 2026Updated 3 months ago
- Turn a supported list of filetypes (e.g. .docx) into a markdown structured text file. Also optionally defangs indicators and extract text…☆12Jun 1, 2026Updated last month
- Prompts for performing tests on your Kali Linux using Gemini-cli, ChatGPT, DeepSeek, CursorAI, Claude Code, and Copilot.☆253Dec 20, 2025Updated 7 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Local Windows credential extraction☆17Updated this week
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆70Nov 27, 2025Updated 7 months ago
- This project is a deliberately vulnerable environment to learn about LLM-specific risks based on the OWASP Top 10 for LLM Applications.☆57Jan 19, 2026Updated 6 months ago
- SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context P…☆140Jun 7, 2025Updated last year
- Detect phantom IAM users, decode leaked AWS Bedrock and Claude Platform API keys, and prevent LLMjacking. CLI + SCPs + SIEM detection rul…☆34Updated this week
- ☆61May 24, 2026Updated last month
- An agent that can help triage vulnerabilities across multiple codebases☆18Mar 14, 2026Updated 4 months ago