BlackSnufkin/LitterBox
A secure sandbox environment for malware developers and red teamers to test payloads against detection mechanisms before deployment. Integrates with LLM agents via MCP for enhanced analysis capabilities.
Combines static and dynamic analysis engines (YARA, PE-Sieve, Moneta, Patriot) with specialized modules for BYOVD driver discovery (HolyGrail), process behavior comparison (Blender), and code similarity detection (FuzzyHash). Exposes analysis capabilities via REST API endpoints and runs natively on Windows/Linux or containerized via Docker, with MCP server integration enabling LLM agents to query results and generate natural language threat assessments.
1,323 stars.
Stars
1,323
Forks
149
Language
YARA
License
GPL-3.0
Category
Last pushed
Nov 12, 2025
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/mcp/BlackSnufkin/LitterBox"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Higher-rated alternatives
Kiln-AI/Kilntainers
MCP server to give every agent an ephemeral Linux sandboxes for executing shell commands.
universal-tool-calling-protocol/code-mode
🔌 Plug-and-play library to enable agents to call MCP and UTCP tools via code execution.
gradion-ai/ipybox
Python code execution sandbox with programmatic MCP tool calling (PTC)
ashishgituser/bunkervm
BunkerVM is a tiny operating system that boots in 2 seconds and gives AI agents a safe, isolated...
buremba/1mcp
Let your agent write code and execute code directly in the browser with WASM