living-off-the-land-lolbins-mcp-server
Related Servers
Alternatives to living-off-the-land-lolbins-mcp-server
No user-submitted related servers found.
Related Servers
- AlicenseNot gradedqualityAmaintenanceAn MCP server that exposes a 60+ tool security and threat-intel stack to AI agents, enabling secret scanning, Sigma rule generation, ransomware lookup, OSINT, and deep research.1MIT
- AlicenseAqualityDmaintenanceDark web & threat intelligence for AI agents. HIBP, ThreatFox, ransomware tracking, Tor .onion access, blockchain intel, exploit search, stealer logs, malware analysis — unified into a single MCP server.66158 npm457MIT
- AlicenseNot gradedqualityDmaintenanceA comprehensive MCP server that exposes multiple OSINT tools to AI assistants like Claude, enabling sophisticated reconnaissance and information gathering tasks using industry-standard OSINT tools.237MIT
- AlicenseNot gradedqualityCmaintenanceAn MCP server providing 15 OSINT tools over free, public sources for AI agents, enabling domain reconnaissance, subdomain discovery, DNS lookups, host profiling, CVE search, and more without API keys.MIT
- AlicenseAqualityBmaintenanceMCP server for Threadlinqs Intelligence — 49 tools across threat intelligence, detections, IOCs, threat actors, MITRE attack-chains, C2 infrastructure, and Purple-tier composite intelligence. Drop-in for Claude Code, Claude Desktop, Cursor, and any MCP-compatible client.8186 npmMIT
- AlicenseAqualityCmaintenanceMCP server that lets AI agents use the Online Cyber Tools catalogue as a set of native MCP tools.10016 npm1MIT
TDQS
Scored across 59 tools
Most tools target distinct attack techniques or functions (e.g., find_escalation_paths, find_c2_channels). Some overlap exists between generic tools like analyze_environment and enumerate_host, but the naming clearly differentiates most tools.
All tools follow a consistent verb_noun pattern in snake_case (e.g., find_credential_access, export_report, scan_drivers). No mixed conventions or ambiguous names.
With 59 tools, the server covers a broad domain but feels over-specialized with many niche tools (e.g., find_macos_tcc_bypass, find_rmm_abuse). Consolidation could improve usability.
The tool set covers a wide range of attack stages (initial access, persistence, detection, exfiltration, etc.) and includes analysis, planning, and reporting. Minor gaps exist but do not hinder core workflows.