Content
For the security detection of MCP ecosystem software(WIP)
1. online_service
The main purpose is to detect and analyze the SSE format of the MCP Service
Firstly, use masscan to scan the target IP range's port and then analyze the returned results to detect whether there is an event: endpoint.
Or use nmap's script to directly detect the 'Content-Type: text/event-stream'.
Then use sse_tool.py to perform the actual test.
2. source_code
The main purpose is to collect and analyze the source code of the MCP server
Firstly, collect the server list from the mcpso/github,
Then clone/pull all the source code
Finally, use LLM to analyze the source code
- Unexpected behavior detection
- Security vulnerability detection
3. Middleware
4. MCP Client
Connection Info
You Might Also Like
markitdown
MarkItDown-MCP is a lightweight server for converting URIs to Markdown.
markitdown
Python tool for converting files and office documents to Markdown.
firecrawl
Firecrawl MCP Server enables web scraping, crawling, and content extraction.
Filesystem
Node.js MCP Server for filesystem operations with dynamic access control.
TrendRadar
TrendRadar: Your hotspot assistant for real news in just 30 seconds.
mempalace
The highest-scoring AI memory system ever benchmarked. And it's free.