BlackSnufkin/LitterBox

A secure sandbox environment for malware developers and red teamers to test payloads against detection mechanisms before deployment. Integrates with LLM agents via MCP for enhanced analysis capabilities.

46
/ 100
Emerging

Combines static and dynamic analysis engines (YARA, PE-Sieve, Moneta, Patriot) with specialized modules for BYOVD driver discovery (HolyGrail), process behavior comparison (Blender), and code similarity detection (FuzzyHash). Exposes analysis capabilities via REST API endpoints and runs natively on Windows/Linux or containerized via Docker, with MCP server integration enabling LLM agents to query results and generate natural language threat assessments.

1,323 stars.

No Package No Dependents
Maintenance 6 / 25
Adoption 10 / 25
Maturity 9 / 25
Community 21 / 25

How are scores calculated?

Stars

1,323

Forks

149

Language

YARA

License

GPL-3.0

Last pushed

Nov 12, 2025

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/mcp/BlackSnufkin/LitterBox"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.