mcp-for-security and mcp-virustotal

Both tools are Model Context Protocol (MCP) servers, with the first providing a collection of servers for various security tools and the second offering a dedicated MCP server for the VirusTotal API, making them complementary components within the MCP ecosystem for integrating security testing into AI workflows.

mcp-for-security
62
Established
mcp-virustotal
59
Established
Maintenance 13/25
Adoption 10/25
Maturity 16/25
Community 23/25
Maintenance 10/25
Adoption 9/25
Maturity 25/25
Community 15/25
Stars: 559
Forks: 98
Downloads:
Commits (30d): 1
Language: TypeScript
License: MIT
Stars: 113
Forks: 15
Downloads:
Commits (30d): 0
Language: TypeScript
License: MIT
No Package No Dependents
No risk flags

About mcp-for-security

cyproxio/mcp-for-security

MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. Integrate security testing and penetration testing into AI workflows.

Each MCP server wraps a security tool with standardized input/output interfaces, enabling LLMs and AI agents to execute reconnaissance, scanning, and vulnerability testing tasks programmatically. The collection spans the full security testing lifecycle—from passive reconnaissance (Amass, certificate enumeration) through active scanning (Nmap, Masscan, FFUF) to vulnerability assessment (Nuclei, SQLmap, WPScan)—all deployable via Docker or standalone. Designed for integration with the Cyprox agentic-AI platform and any MCP-compatible client, it enables orchestrated security workflows where AI systems chain multiple tools together for automated threat detection and remediation.

About mcp-virustotal

BurtTheCoder/mcp-virustotal

MCP server for VirusTotal API — analyze URLs, files, IPs, and domains with comprehensive security reports, relationship analysis, and pagination support.

Implements stdio and HTTP streaming transports for flexible deployment across MCP-compatible clients (Claude Desktop, VS Code Copilot, Gemini), with automatic relationship data enrichment that contextually fetches connected artifacts like contacted domains, dropped files, and threat actors in single queries. Features dedicated relationship tools supporting 17+ URL and 40+ file relationship types with cursor-based pagination for deep threat intelligence drilling. Dockerized HTTP streaming mode enables standalone service architecture accessible to multiple clients via configurable endpoints and health checks.

Scores updated daily from GitHub, PyPI, and npm data. How scores work