- Conduid
- Marketplace
- #pentesting
MCP servers tagged pentesting
28 live MCP servers tagged "pentesting", ranked by trust score. Tags come from package metadata and repository topics, so this list covers servers across every category that work with pentesting.
Pentest MCP
Automated discovery and exploitation of security vulnerabilities using natural language and LLMs.
BurpSuite Collections
有关burpsuite的插件(非商店),文章以及使用技巧的收集(此项目不再提供burpsuite破解文件,如需要请在博客mrxn.net下载)---Collection of burpsuite plugins (non-stores), articles and tips for using Burpsuite, no crack version file
Reconmap
Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from reconnaissance through execution and re…
Dark Moon
Autonomous AI pentesting engine, continuous offensive security across web, cloud, AD & Kubernetes. Agentic reasoning + real exploit execution deliver proof-based vulnerabilities.…
H1 Brain
MCP server that connects AI assistants to HackerOne for bug bounty hunting
Agentseal
Security toolkit for AI agents. Scan your machine for dangerous skills and MCP configs, monitor for supply chain attacks, test prompt injection resistance, and audit live MCP serv…
Pentest Agents
Autonomous bug-bounty framework for Claude Code — 40 specialist agents, exploit-chain builder, writeup search, and live HackerOne/Bugcrowd integration.
AdStrike
AI-powered modular Active Directory red-team framework for authorized penetration testing, AD enumeration, attack-path analysis, Kerberos/ADCS workflows, reporting, operator aut…
AgentHound
Offensive security framework for AI agent infrastructure - recon, credential looting, model exfiltration, poisoning, and attack-path analysis across MCP, A2A, gateways, and AI ser…
Evil Winrm Py
Execute commands interactively on remote Windows machines using the WinRM protocol (just faster)
For Security
MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. Integrate security testing and penetration t…
Bug Bounty Agents
AI-Powered Agents for Bub-Bounty Pentesting and Red-Teaming purposes
Hacker Bob
A local MCP runtime that attacks what you own and only reports what it proved. 17 CVEs across 9 projects came out of this repo. Install: npx -y hacker-bob@latest install /path/to/…
Foxhound
FoxHound MCP server. Pairs with the FoxHound Firefox add on so an AI agent can drive the browser end to end over a local authenticated WebSocket.
Ramibot
RamiBot v3.8.0 is a local-first AI security operations platform integrating multi-LLM support, a dynamic red/blue team skill pipeline, MCP tool orchestration, Docker terminal acce…
Tengu
AI-powered penetration testing MCP server
KALI MCP SERVER
A Python MCP Server that connects Large Language Models natively to a comprehensive suite of offensive security tools.
Pentest AI
The most autonomous pentesting AI on the market. MCP server + Python agents with 150+ security tools, exploit chaining, and PoC validation.
Client And Proxy
A universal MCP client with proxying feature to interact with MCP Servers which support STDIO transport.
RedTeam Agent
RedTeam-MCP: AI-Powered Autonomous Red Team Framework via Model Context Protocol. AI红队与内网渗透自动化框架,支持 gogo, fscan, httpx, nuclei, impacket, playwright 等 15+ 渗透工具,让 LLM 直接化身安全审计黑客。
WonderSuite AI Bug Bounty
AI-Powered Offensive Security Research Engine - desktop-native security testing platform with native MCP integration. 90 tools, MITM proxy, stealth browser, autonomous AI agent. B…
Cheatengine MCP Tcp Bridge
TCP-enhanced fork of Cheat Engine MCP Bridge. Connect Cursor, Copilot and Claude AI directly to local or remote Cheat Engine via TCP. Automate reverse engineering, pointer scannin…
Thru Burp
A cross-platform desktop UI MCP client specifically for proxying MCP traffic through Burp Suite Proxy. Useful for recon and fuzzing when pentesting a remote MCP HTTP server.
Sec Nmap MCP
MCP server for nmap - Network scanner and security auditing
Ovogo
Ovogo: Autonomous Red Team Coordination Engine. 基于 AI Agent 的自动化渗透测试与红队协同引擎(专为靶场环境设计),支持 MITRE ATT&CK 攻击链生成、多节点并行利用与 Flag 自动化收集。
AppInspect
Desktop app for analysing iOS and macOS binaries. View headers, strings, classes, symbols, security findings, and more.
Cybersec Toolkit
580+ cybersecurity tools, one command. Modular bash installer for Linux & Termux with 14 profiles, 18 modules, and an MCP server for AI-assisted ethical hacking.
Wifi Security MCP Server
Full-spectrum wireless security MCP server — WiFi, Bluetooth, RF/SDR, NFC/RFID, Cellular/5G, IoT, MouseJack, air-gap, UWB, WIDS/WIPS, compliance. 34 tools, 9 knowledge bases.