threat-hunting-mcp-server

THORCollective/threat-hunting-mcp-server

3.2

If you are the rightful owner of threat-hunting-mcp-server and would like to certify it and/or have it hosted online, please leave a comment on the right or send an email to henry@mcphub.com.

A production-ready Model Context Protocol (MCP) server for threat hunting knowledge base systems, integrating PEAK, SQRRL, and intelligence-driven methodologies.

Tools

Functions exposed to the LLM to take actions

hunt_threats

Natural language threat hunting interface.

create_baseline

Establish baselines for normal behavior.

analyze_with_ml

Model-Assisted Threat Hunting using machine learning.

analyze_adversary

Comprehensive threat actor analysis.

Prompts

Interactive templates invoked by user choice

No prompts

Resources

Contextual data attached and managed by the client

No resources