An AI-powered plugin for Caldera that orchestrates long-running LLM workflows to automatically create adversary emulation abilities and plan operations. Optionally enriches workflows with Retrieval-Augmented Generation (RAG) using Cyber Threat Intelligence (CTI) from STIX JSON files.
☆37Aug 31, 2026Updated this week
Alternatives and similar repositories for mcp
Users that are interested in mcp are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆25Feb 14, 2026Updated 6 months ago
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.☆36May 6, 2026Updated 3 months ago
- MCP use case for SecOps automation w/ Splunk,CrowdStrike EDR, MISP☆22Jul 7, 2025Updated last year
- ☆27Apr 12, 2025Updated last year
- HackMap — a local pentest mapping tool with real-time command execution, persistent history per target, visual attack paths, and one-clic…☆50Aug 3, 2026Updated 3 weeks ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Hands-on MCP security lab: 10 real incidents reproduced with vulnerable/secure MCP servers, pytest regressions, and Claude/Cursor battle-…☆89Dec 3, 2025Updated 8 months ago
- A 2-in-1 toolset of https://github.com/x0rz/EQGRP_Lost_in_Translation and https://github.com/x0rz/EQGRP☆28Aug 2, 2019Updated 7 years ago
- AIFT is a GUI, CLI, REST API, and MCP tool that helps DFIR analysts get oriented quickly. Point it at disk images, VM images, forensic ar…☆43Jun 13, 2026Updated 2 months ago
- Summarize CTI reports with OpenAI☆18Updated this week
- ☆59Dec 13, 2025Updated 8 months ago
- Automate Checkmarx Scanning and Onboarding Plus AWS Access☆12Jan 5, 2023Updated 3 years ago
- 🛡️ SIGMA Detection Engineering Platform A comprehensive AI-powered detection engineering platform for security teams to explore MITRE AT…☆45Jun 28, 2025Updated last year
- Cobalt Strike log state tracking, parsing, and storage☆24Jul 18, 2019Updated 7 years ago
- A STIX 2.1 Extension Definition for the Course of Action (COA) object type. The nested property extension allows a COA to share machine-r…☆24Dec 11, 2023Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Threat-informed defense and cyber threat intelligence (CTI) analysis platform that correlates APT groups, MITRE ATT&CK tactics and techni…☆16Nov 4, 2025Updated 9 months ago
- Repo for experimenting and testing MCP server builds for CTI-related research.☆27May 13, 2025Updated last year
- Project has been replaced by RF-CHAOS - https://github.com/scramblr/RF-CHAOS☆17Feb 17, 2026Updated 6 months ago
- A cookiecutter template for python projects/packages at NIST☆15Updated this week
- powershell script to simulate activity by a user☆21Jul 29, 2020Updated 6 years ago
- Cybersecurity & Privacy open Reference Data in OSCAL☆17Updated this week
- Security configuration scanner for Claude Code☆45Updated this week
- An experimental project using LLM technology to generate security documentation for Open Source Software (OSS) projects☆39Feb 28, 2025Updated last year
- Open-source AI-powered GRC platform with multi-framework compliance management, crosswalk intelligence, and BYOK AI analysis. Supports NI…☆26Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆67Updated this week
- Extracts IoCs, TTPs and the relationships between them. Outputs a STIX 2.1 bundle.☆85Jul 31, 2026Updated last month
- Research PoC demonstrating Linux Kernel hooking plus defences.☆36Apr 13, 2026Updated 4 months ago
- Extract machine readable cyber threat intelligence from unstructured data (inc. PDFs, Word docs, and HTML pages)☆45Aug 17, 2026Updated 2 weeks ago
- A collection of CVEs weaponized by ransomware operators☆152Updated this week
- This is an MCP setup for the BOAZ framework. allowing the AI agents to fully control it and generate loaders for AV/EDR bypass☆17Oct 25, 2025Updated 10 months ago
- This repo contains some details about the IT compliances available.☆25Oct 15, 2024Updated last year
- A lab using GasPot containers.☆19Mar 15, 2026Updated 5 months ago
- MCP Server for TheHive☆15Dec 6, 2025Updated 8 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Digital Forensics and Incident Response notes and Autopsy tool walkthrough☆11Feb 3, 2022Updated 4 years ago
- A comprehensive MCP server for Windows digital forensics on KALI Linux☆20Aug 17, 2026Updated 2 weeks ago
- Automatically analyze Cyber Threat Intelligence (CTI) reports using machine learning (ML) to identify MITRE ATT&CK techniques (T-Codes)☆19Nov 4, 2025Updated 9 months ago
- Autonomous, read-only endpoint investigation via MCP. Ask a question about your fleet, get a narrative answer with containment recommenda…☆23Jul 6, 2026Updated last month
- The automation software that powers the NIST Autonomous Formulation Lab! A flexible, web-based backend for device integration, drivers f…☆17Aug 7, 2026Updated 3 weeks ago
- Asset inventory of over 800 public bug bounty programs.☆12Jun 12, 2023Updated 3 years ago
- ☆10Sep 12, 2024Updated last year