mcp-pentest

baguskto/mcp-pentest

3.2

If you are the rightful owner of mcp-pentest and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to dayong@mcphub.com.

The MCP Pentest Server is a comprehensive Model Context Protocol server designed for penetration testing, offering educational guidance to make security testing accessible to both beginners and experienced professionals.

Tools

Functions exposed to the LLM to take actions

nmap_scan

Performs network reconnaissance and service detection.

nikto_scan

Scans web servers for known vulnerabilities and misconfigurations.

gobuster_scan

Brute-force directories and files on web servers.

sqlmap_scan

Tests for SQL injection vulnerabilities.

jadx_decompile

Decompiles Android APK files to readable Java source code.

Prompts

Interactive templates invoked by user choice

No prompts

Resources

Contextual data attached and managed by the client

No resources