bindiff-mcp
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@bindiff-mcpCompare ./httpd-2.4.57 and ./httpd-2.4.58; list changed functions"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
bindiff-mcp
MCP server that gives reverse-engineering agents binary diffing: export binaries to BinExport v2 and compare two builds with BinDiff.
IDA is driven through ida-nexus, so a binary already open in the IDA GUI is exported from that database (renames and annotations included); otherwise a headless idalib worker is spawned and released again when the export finishes. Export and diff parsing reuse python-binexport and python-bindiff.
Prerequisites
IDA Pro 9.x with idalib enabled (
idapyswitch),IDADIRpointing at the installThe BinExport IDA plugin (
binexport12_ida.so) in$IDAUSR/pluginsThe BinDiff differ (
bindiff) inPATH, in$BINDIFF_PATH, default at/opt/zynamics/BinDiff/binlibmagic(used by python-binexport through python-magic)
Related MCP server: GhidraMCP
Install
uv pip install .Run
bindiff-mcp stdio # stdio transport (default)
bindiff-mcp http --host 127.0.0.1 --port 8745 # Streamable HTTP at /mcpRegister with Claude Code:
claude mcp add bindiff -- bindiff-mcp stdio
claude mcp add bindiff --transport http http://127.0.0.1:8745/mcpTools
binexport(binary, output_results_dir=".")
Exports binary to <output_results_dir>/<binary name>.BinExport. An export
that is at least as new as the binary is reused instead of re-analyzing it.
Returns JSON:
{
"binary": "/work/httpd",
"binexport": "/work/out/httpd.BinExport",
"reused": false,
"name": "httpd",
"architecture": "x86-64",
"sha256": "...",
"functions": 2317
}bindiff_compare(primary_binary, secondary_binary, output_results_dir=".")
Exports both binaries in parallel (into primary/ and secondary/
subdirectories, so identical file names cannot collide), runs the differ, and
writes four JSON files into output_results_dir:
File | Content |
| matched functions with similarity 1.0 (identical) |
| matched functions that changed, most divergent first |
| functions only in the primary binary |
| functions only in the secondary binary |
Match entries carry both addresses and names, the similarity and confidence
scores and the BinDiff algorithm that produced the match; unmatched entries
carry address, name and function type. The tool returns JSON with the overall
similarity and confidence, the .BinDiff database path, per-list counts and the
path of every file written.
Environment
Variable | Default | Meaning |
|
| Seconds to wait for IDA to open a database |
|
| Seconds for one export, excluding autoanalysis |
| — | Directory containing the |
This server cannot be deployed
Maintenance
Related MCP Connectors
Returns what was added, removed or changed between two Apify datasets, files, Google Sheets or...
Compare PDF or Word versions and return source-cited changes ranked by cost, time, or risk.
Ask a codebase what calls what: search, blast radius, paths between symbols, and diffs.
Generate SBOMs, scan vulnerabilities, and analyze dependencies from local projects or Git repos.
Related MCP Servers
- FlicenseNot gradedqualityNot gradedmaintenanceEnables intelligent file and folder comparison with advanced text normalization, duplicate detection, and line-level diff analysis. Provides secure workspace-constrained file operations with CRC32-based exact matching and smart text comparison capabilities.-
- AlicenseNot gradedqualityDmaintenanceEnables LLMs to autonomously reverse engineer binaries using Ghidra's capabilities including decompilation, function analysis, automatic renaming, and BSim integration for function similarity matching.1AGPL 3.0
- FlicenseAqualityDmaintenanceEnables binary comparison capabilities by leveraging IDA Pro and BinDiff to analyze similarities and differences between files. Users can perform automated function analysis to identify changed functions and compare original binaries against patched versions.12-
- AlicenseAqualityBmaintenanceEnables building structured release evidence by comparing two Git refs and correlating commits, merged pull requests, linked issues, labels, changed files, and contributors.337 npmMIT