Ioc Search MCP Server
Related Servers
Alternatives to Ioc Search MCP Server
No user-submitted related servers found.
Related Servers
- AlicenseNot gradedqualityDmaintenanceProvides comprehensive IP and domain security intelligence, enabling analysis of IP addresses and domains for threat and reputation information.MIT

mlab.sh MCP serverofficial
AlicenseNot gradedqualityCmaintenanceEnables threat intelligence for SOC and DFIR workflows, including IOC enrichment, CVE and threat actor lookup, domain scanning, and account-based scan management.2MIT- AlicenseNot gradedqualityCmaintenanceEnables AI-powered threat intelligence analysis of IPs, domains, URLs, and file hashes across multiple threat intelligence platforms (VirusTotal, AlienVault OTX, AbuseIPDB, IPinfo) with APT attribution and interactive reporting through natural language queries.13 PyPI40Apache 2.0
- AlicenseAqualityCmaintenanceProvides unified access to multiple threat intelligence sources like AlienVault OTX, AbuseIPDB, and GreyNoise for security research and analysis. It enables users to perform simultaneous lookups on IPs, domains, hashes, and URLs across several platforms within a single response.795 npm8MIT
- FlicenseNot gradedqualityDmaintenanceProvides real-time threat intelligence for AI agents, enabling checks on IPs, domains, URLs, hashes, CVEs, prompt-injection payloads, and malicious AI-skill/MCP-tool definitions against a free database of 890K+ IOCs.-
- AlicenseAqualityAmaintenanceAggregates real-time threat intelligence from multiple sources including Feodo Tracker, URLhaus, CISA KEV, and ThreatFox, with IP/hash reputation checking via VirusTotal, AbuseIPDB, and Shodan for comprehensive security monitoring.11651MIT
TDQS
Scored across 4 tools
Each tool has a clearly distinct purpose targeting a specific type of indicator: domain, hash, IP address, and URL. The descriptions reinforce this by detailing unique analysis aspects for each, such as DNS records for domains, hash categories for malware, geographic location for IPs, and URL metadata. There is no overlap or ambiguity in their functions.
All tool names follow a consistent pattern of 'noun_search' (domain_search, hash_search, ip_address_search, url_search), using snake_case uniformly. This predictable naming scheme makes it easy for agents to understand and select the appropriate tool based on the indicator type.
With 4 tools, the server is well-scoped for its purpose of IOC (Indicator of Compromise) search, covering the core indicator types: domain, hash, IP address, and URL. Each tool earns its place by providing specialized analysis, and the count is neither too thin nor excessive for the domain.
The tool set offers complete coverage for IOC search, including all major indicator types used in threat intelligence and security analysis. There are no gaps in the surface; agents can analyze domains, hashes, IPs, and URLs effectively, with detailed insights into reputation, security evaluations, and classifications from each tool.