makalin / SecureMCPLinks
SecureMCP is a security auditing tool designed to detect vulnerabilities and misconfigurations in applications using the [Model Context Protocol (MCP)](https://modelcontextprotocol.io/introduction). It proactively identifies threats like OAuth token leakage, prompt injection vulnerabilities, rogue MCP servers, and tool poisoning attacks.
☆133Updated 4 months ago
Alternatives and similar repositories for SecureMCP
Users that are interested in SecureMCP are comparing it to the libraries listed below
Sorting:
- A comprehensive security scanner for Model Context Protocol (MCP) servers that detects vulnerabilities and security issues in your MCP se…☆103Updated last week
- ☆72Updated last week
- ☆320Updated last month
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects☆94Updated 2 weeks ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆143Updated 9 months ago
- A Model Context Protocol server that connects AI assistants like Claude to AWS security services, allowing them to autonomously query, in…☆76Updated 3 months ago
- ☆98Updated 2 months ago
- Red Teaming for AI and Cloud☆198Updated 4 months ago
- A comprehensive checklist and guide for organizations looking to implement a robust cybersecurity program☆43Updated 2 weeks ago
- A tool to uncover undocumented APIs from the AWS Console.☆114Updated 5 months ago
- A security tool that detects malicious packages from external vulnerability feeds and searches for them in your package registries or art…☆61Updated 2 weeks ago
- A flexible framework for security teams to build and deploy AI-powered workflows that complement their existing security operations.☆133Updated this week
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆153Updated 11 months ago
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆110Updated 11 months ago
- A full insecure kubernetes application for testing security tools☆89Updated this week
- Cloud Commotion intends to cause chaos to simulate security incidents☆146Updated last year
- Generate datasets of cloud audit logs for common attacks☆221Updated last year
- Unauthenticated enumeration of AWS IAM Roles.☆25Updated last month
- AWS honey token manager☆89Updated last year
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projects☆34Updated 8 months ago
- ☆75Updated 7 months ago
- MCP security wrapper☆196Updated last month
- AuditKit - Multi-Cloud Compliance Scanner & Evidence Collection☆208Updated last week
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆34Updated last year
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆102Updated last year
- ☆191Updated 6 months ago
- Security tool against dependency typosquatting attacks☆54Updated last week
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆211Updated this week
- YES3 Scanner: S3 Security Scanner for Access and Ransomware Protection☆96Updated 2 months ago
- MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management.☆175Updated last week