Repo for experimenting and testing MCP server builds for CTI-related research.
☆27May 13, 2025Updated 9 months ago
Alternatives and similar repositories for mcp-cti
Users that are interested in mcp-cti are comparing it to the libraries listed below
Sorting:
- This is a repository to experiment with MCP for security☆47Jan 22, 2025Updated last year
- Jupyter Univere is a search engine for all infosec jupyter notebooks☆36Mar 24, 2025Updated 11 months ago
- A Shodan-based tool to discover publicly exposed Ollama instances and list available LLM models.☆20May 27, 2025Updated 9 months ago
- Extracts IoCs, TTPs and the relationships between them. Outputs a STIX 2.1 bundle.☆79Feb 27, 2026Updated last week
- ☆12Dec 26, 2022Updated 3 years ago
- An AI-powered plugin for Caldera that orchestrates long-running LLM workflows to automatically create adversary emulation abilities and p…☆22Feb 2, 2026Updated last month
- Red Team AI prompts☆49Dec 2, 2025Updated 3 months ago
- 🐻❄️ 🏹 Threat hunting with Polars and flaws.cloud AWS CloudTrail datasets.☆14May 22, 2024Updated last year
- A PowerShell-based script to analyze network logs from CSV files and detect potential beaconing behavior. Supports VirusTotal integration…☆17May 11, 2025Updated 9 months ago
- OneDrive, operating on Microsoft Windows 11 Pro is vulnerable to DLL hijacking.☆21Nov 9, 2023Updated 2 years ago
- NOVA: The Prompt Pattern Matching☆109Jan 27, 2026Updated last month
- BCP documents and website of GCVE☆55Feb 16, 2026Updated 2 weeks ago
- yara detection rules for hunting with the threathunting-keywords project☆157May 11, 2025Updated 9 months ago
- ☆39Jul 1, 2025Updated 8 months ago
- GenAI-STIX2.1-Generator is a tool that leverages Azure OpenAI capabilities to transform threat intelligence reports from unstructured web…☆24Mar 24, 2025Updated 11 months ago
- MISP Playbooks☆222Oct 14, 2025Updated 4 months ago
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆56Oct 22, 2025Updated 4 months ago
- Automatically deploy Nemesis☆21Jun 14, 2024Updated last year
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆62Jul 27, 2025Updated 7 months ago
- Scrapes the Windows Evaluation ISO addresses into a JSON data file☆29Jan 28, 2026Updated last month
- Conference presentations☆60Oct 22, 2025Updated 4 months ago
- OSX Security Compliance & Hardening☆47Aug 13, 2015Updated 10 years ago
- ☆22Jun 2, 2023Updated 2 years ago
- A Model Context Protocol server that provides access to Shodan API functionality☆41Jun 29, 2025Updated 8 months ago
- Files related to my Graylog home lab setup☆25Dec 5, 2024Updated last year
- ☆72Oct 24, 2025Updated 4 months ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆128Apr 6, 2024Updated last year
- Website for ail-typo-squatting library☆72Feb 25, 2026Updated last week
- Malware analysis using Docker project☆25Mar 3, 2016Updated 10 years ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆303Updated this week
- This repo hosts an MCP server for volatility3.x☆40Jul 9, 2025Updated 7 months ago
- 🛡️ SIGMA Detection Engineering Platform A comprehensive AI-powered detection engineering platform for security teams to explore MITRE AT…☆45Jun 28, 2025Updated 8 months ago
- Elastic version of SOC prime watcher rules☆30Oct 14, 2024Updated last year
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Feb 20, 2024Updated 2 years ago
- BLACK ESK SIEM is a SIEM platform built with Elasticsearch, Syslog-Ng and Kibana☆28Mar 4, 2023Updated 3 years ago
- TTPMapper is an AI-driven threat intelligence parser that converts unstructured reports whether from web URLs or PDF files into structure…☆51Jun 21, 2025Updated 8 months ago
- Azure function to insert MISP data in to Azure Sentinel☆34Oct 19, 2022Updated 3 years ago
- Turn any blog into structured threat intelligence.☆52Updated this week
- A class validation and transformation library, to ensure secure data structures in Python.☆10May 16, 2024Updated last year