IL2CPP Frida MCP Server
Provides tools for analyzing and manipulating Unity IL2CPP applications, including listing images, classes, methods, disassembly, GC heap analysis, and more.
Click on "Deploy Server".
Wait a few minutes for the server to deploy. Once ready, it will show a "Started" state.
In the chat, type
@followed by the MCP server name and your instructions, e.g., "@IL2CPP Frida MCP ServerList all methods in the PlayerController class"
That's it! The server will respond to your query, and you can continue using it as needed.
Here is a step-by-step guide with screenshots.
IL2CPP Frida MCP Server
A Model Context Protocol (MCP) based IL2CPP reverse engineering tool that enables AI assistants (like Claude, Kiro) to directly analyze and manipulate Unity IL2CPP applications.
Features
🔌 Frida Integration - Support for USB, remote, and local device connections
📦 IL2CPP Analysis - List images, classes, methods with fuzzy search support
🔍 Disassembly - Method disassembly based on Frida Instruction API
🧠 GC Heap Analysis - Find runtime object instances
📤 Import/Export - Find module import and export functions
🛠️ JS Execution - Execute arbitrary JavaScript code to manipulate Frida API
Related MCP server: Frida MCP
Project Structure
.
├── mcp_server.py # Entry point
├── mcp_server/ # MCP Server module
│ ├── __init__.py
│ ├── server.py # MCP Server core
│ ├── state.py # Frida state management
│ ├── tools.py # MCP tool definitions
│ ├── transport.py # Transport layer (stdio/sse/http)
│ ├── cli.py # Command line interface
│ ├── agent_loader.py # Agent loader
│ └── handlers/ # Tool handlers
│ ├── __init__.py
│ ├── frida_handlers.py
│ └── il2cpp_handlers.py
├── agent/ # Frida Agent (TypeScript)
│ ├── index.ts # Agent entry point
│ ├── core/ # Core modules
│ │ ├── il2cpp-helper.ts
│ │ ├── method-utils.ts
│ │ └── class-finder.ts
│ └── services/ # Service modules
│ ├── image-service.ts
│ ├── class-service.ts
│ ├── method-service.ts
│ ├── disasm-service.ts
│ ├── module-service.ts
│ ├── gc-service.ts
│ └── exec-service.ts
├── _agent.js # Compiled Agent
├── package.json
├── tsconfig.json
└── requirements.txtInstallation
Option 1: pip install (Recommended)
# Install from source
pip install .
# Or install in development mode
pip install -e .Option 2: Manual dependency installation
pip install -r requirements.txtCompile Frida Agent
npm install
npm run buildUsage
Start MCP Server
# If installed via pip
il2cpp-frida-mcp # Interactive selection
il2cpp-frida-mcp --stdio # stdio mode
il2cpp-frida-mcp --sse # SSE mode
il2cpp-frida-mcp --http # HTTP mode
# Or run script directly
python mcp_server.py --stdio
# Custom host and port
il2cpp-frida-mcp --sse --host 0.0.0.0 --port 9000Configure MCP Client
Claude Desktop / Kiro
Add to your MCP configuration file:
{
"mcpServers": {
"il2cpp-frida": {
"command": "il2cpp-frida-mcp",
"args": ["--stdio"]
}
}
}Or run using Python module:
{
"mcpServers": {
"il2cpp-frida": {
"command": "python",
"args": ["-m", "mcp_server", "--stdio"]
}
}
}MCP Tools
Frida Basic Tools
Tool | Description |
| List all available Frida devices |
| Connect to device and target process |
| Disconnect Frida connection |
| Resume suspended process |
| List processes on device |
IL2CPP Analysis Tools
Tool | Description |
| List all IL2CPP images |
| List all classes in specified image |
| List all methods in specified class |
| Show method details |
| Find classes (fuzzy match supported) |
| Find methods (fuzzy match supported) |
| Disassemble method |
| Find export functions |
| Find import functions |
| Execute arbitrary JavaScript code |
| Find instances of specified class in heap |
| Get GC heap information |
Examples
1. Connect to Device
Use frida_connect to connect to the frontmost app on USB device2. Analyze IL2CPP
List all images, then find classes containing "Player"3. View Method Details
List all methods of PlayerController class, then view Update method detailsDevelopment
Compile Agent
npm run build # Single build
npm run watch # Watch modeDependencies
Python 3.10+
Node.js 16+
Frida 17+
frida-il2cpp-bridge
Acknowledgements
frida-il2cpp-bridge - IL2CPP runtime bridge
Il2CppHookScripts - Reference implementation
License
MIT
This server cannot be deployed
Maintenance
Related MCP Connectors
A comprehensive Model Context Protocol (MCP) server that enables AI assistants to control Unreal E…
A comprehensive Model Context Protocol (MCP) server that enables AI assistants to interact with yo…
Read and write KukGit repositories, files, issues and pull requests from an AI assistant.
Use your Mac, Windows or Linux computer from ChatGPT, Claude or Codex: files, commands, documents.
Related MCP Servers
- AlicenseBqualityCmaintenanceA bridge between Unity and AI assistants that enables AI to interact with Unity game environments through a standardized interface for code execution, scene analysis, and runtime debugging.345 npm7MIT
- AlicenseBqualityNot gradedmaintenanceEnables AI systems to interact with mobile and desktop applications through Frida's dynamic instrumentation capabilities. Provides process management, device control, JavaScript REPL execution, and script injection for runtime analysis and reverse engineering.142MIT
- AlicenseAqualityFmaintenanceProvides Cheat Engine-like capabilities for game hacking and reverse engineering through Frida, enabling memory scanning, value modification, pattern matching, function hooking, and code injection across processes.4276MIT
- AlicenseBqualityCmaintenanceA comprehensive MCP server that exposes Frida's dynamic instrumentation toolkit to AI agents for process management, script injection, and memory operations. It provides over 50 tools to interact with local and mobile devices, enabling advanced capabilities like function hooking and memory analysis.55MIT