A universal MCP client with proxying feature to interact with MCP Servers which support STDIO transport.
☆23Apr 17, 2026Updated 4 months ago
Alternatives and similar repositories for mcp-client-and-proxy
Users that are interested in mcp-client-and-proxy are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A practical, community-driven checklist for pentesting MCP servers. Covers traffic analysis, tool-call behavior, namespace abuse, auth fl…☆40Apr 7, 2026Updated 4 months ago
- Threat modeling playbook for cloud-native, AI (RAG, agents), and A2A systems with STRIDE, risk models, controls, and test plans.☆18Jul 3, 2026Updated last month
- Helping you find out what you probably shouldn’t have access to.☆17Jul 20, 2026Updated last month
- Get 10k subdomains in securitytrails using cookie without apikey.☆43Oct 23, 2025Updated 10 months ago
- Fetch, download, and decompile Android/iOS/Exe assets from HackerOne bug bounty programs☆41Jun 24, 2026Updated 2 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆39Jul 29, 2026Updated last month
- ☆17Oct 15, 2024Updated last year
- JS+ is a browser extension that captures JS URLs from specified domains and scans them with AI.☆22Mar 16, 2026Updated 5 months ago
- Enhanced Burp Suite extension for finding links and sensitive data in JavaScript files☆26May 10, 2026Updated 3 months ago
- A powerful Go tool for finding origin IPs of domains by querying multiple security APIs and validating results with built-in HTTP client.☆50Dec 4, 2025Updated 8 months ago
- docker env for ios research on a mac host☆27Jun 12, 2025Updated last year
- Give me your APK, I will give you framework name☆15May 6, 2026Updated 3 months ago
- A tool to migrate Burpsuite HTTP history to Caido☆42Apr 25, 2025Updated last year
- A high-performance domain scanner that discovers active domains by testing multiple Top-Level Domains (TLDs) for given domain names.☆35Apr 20, 2026Updated 4 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- JSHawk is a powerful, context-aware JavaScript security scanner that hunts for exposed credentials, API keys, and sensitive information i…☆17Apr 13, 2026Updated 4 months ago
- Agentic C2-style MCP server for Frida instrumentation on rooted Android and jailbroken iOS.☆63Mar 18, 2026Updated 5 months ago
- Stealth hybrid URL mapper☆31May 1, 2026Updated 3 months ago
- A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.☆277Dec 18, 2025Updated 8 months ago
- ☆20Jun 21, 2024Updated 2 years ago
- Securing LLM's Against Top 10 OWASP Large Language Model Vulnerabilities 2024☆23May 10, 2024Updated 2 years ago
- Like DLP☆11Jan 27, 2025Updated last year
- DepFine Is a tool to find the unregistered dependency based on dependency confusion valunerablility and lead to RCE☆28Nov 28, 2021Updated 4 years ago
- Collection of all the resources published by Payatu.☆11May 14, 2026Updated 3 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- iOS traffic interception framework which route all device HTTP/HTTPS traffic through Burp Suite via a system-wide VPN tunnel☆47Feb 15, 2026Updated 6 months ago
- SelfHosted - Bug Bounty Programs | Discover new and fresh bug bounty programs across platforms. Updated frequently to always display the …☆16Nov 24, 2025Updated 9 months ago
- A system for the sonification of temporal data.☆13Aug 19, 2021Updated 5 years ago
- Useful scripts for tampermonkey that I used during bug hunting. Will be updated "au fil de l'eau"☆18Jun 2, 2025Updated last year
- Learning materials, vulnerable demo app, and scripts related to the Client-Side Injections Part II YouTube Video☆35Oct 25, 2025Updated 10 months ago
- VulnReach builds on standard SCA output by adding reachability context - proving through static analysis, taint tracking, and live runtim…☆23Aug 11, 2026Updated 2 weeks ago
- An archive of the challenges found in the Blackhat MEA 2024 Qualifiers CTF☆10Sep 2, 2024Updated last year
- ☆51Apr 30, 2026Updated 4 months ago
- Android interception tool for component communication and attack-surface mapping☆129Jun 5, 2026Updated 2 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Fast subdomains enumeration tool for penetration testers and bug bounty hunters☆46Dec 19, 2024Updated last year
- Burpsuite Extension for Jsmon☆25Jul 1, 2026Updated last month
- Documentation and Support for AttackForge ReportGen☆22Jul 26, 2025Updated last year
- ☆47Aug 12, 2025Updated last year
- MCP Attack Surface Detector - Burp plugin to make manual testing of MCP servers easier in Burp Suite☆33Feb 26, 2026Updated 6 months ago
- AIGoat - Open-source AI security playground for LLM red teaming. AI Goat provides hands-on labs covering the full OWASP LLM Top 10 with p…☆80Apr 24, 2026Updated 4 months ago
- The tool is used to create a local webserver and force authenticate, which captures the logged in users NTLM v2 hash.☆16Feb 17, 2026Updated 6 months ago