MetasploitMCP
If you are the rightful owner of MetasploitMCP and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.
This MCP server provides a bridge between large language models like Claude and the Metasploit Framework penetration testing platform.
The Metasploit MCP Server is designed to integrate the Metasploit Framework with large language models, enabling AI-driven control over security testing workflows. By providing a natural language interface, it simplifies the execution of complex penetration testing tasks. The server supports various functionalities such as listing and executing exploit modules, managing sessions, and generating payloads. It offers two transport methods, HTTP/SSE and STDIO, to ensure compatibility with different MCP clients. Security is a primary concern, and users are advised to operate the server in controlled environments with proper authorization.
Features
- Module Information: Search and list available Metasploit exploit and payload modules.
- Exploitation Workflow: Configure and execute exploits, auxiliary, and post-exploitation modules.
- Payload Generation: Generate payload files using Metasploit RPC and save them locally.
- Session Management: Manage active Metasploit sessions, including running commands and terminating sessions.
- Handler Management: Manage active handlers and background jobs, including starting and stopping listeners.