wifi-security-mcp-server
Server Configuration
Describes the environment variables required to run the server.
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||
Instructions
Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.
This server publishes no instructions, or was last inspected before Glama recorded them.
Capabilities
Features and capabilities supported by this server
Protocol revision2025-11-25
| Capability | Details |
|---|---|
| tools | {
"listChanged": true
} |
Tools
Functions exposed to the LLM to take actions
| Name | Description |
|---|---|
| scan_wifi_networksC | WiFi network reconnaissance and analysis. Scan networks, analyze encryption, enumerate clients, check channel usage, assess handshake captures. |
| analyze_wifi_securityB | Comprehensive WiFi security analysis -- WPA/WPA2/WPA3 configuration assessment, PSK strength, EAP security, PMF status, protocol comparison, crack time estimation. |
| find_wifi_attacksA | Search and explore WiFi attacks in the knowledge base. Look up attacks by ID, search by protocol/category/severity, find by CVE or tool, get attack commands. |
| simulate_evil_twinB | Evil Twin attack planning and defense. Plan attacks, configure EAP credential capture, design captive portals, generate detection rules. |
| analyze_deauthA | Deauthentication attack analysis and defense. Analyze feasibility, generate detection rules, get attack commands, recommend defenses. |
| crack_wpsA | WPS security analysis and attack. Assess WPS vulnerabilities, get attack commands for brute force / Pixie Dust / null PIN, and defense recommendations. |
| analyze_pmkidA | PMKID attack analysis. Assess feasibility, get capture commands (hcxdumptool), get cracking commands (hashcat) with optimized settings. |
| audit_wifi67C | WiFi 6/6E/7 security audit. Assess WiFi 6 features, WiFi 7 MLO security, compare generations, analyze new attack surfaces. |
| scan_bluetoothB | Bluetooth device reconnaissance — scan devices, enumerate services, analyze BLE GATT, check security configuration, identify Bluetooth version and vulnerabilities. |
| find_bluetooth_attacksB | Bluetooth attack technique lookup — search by CVE, protocol (BR/EDR, BLE, Mesh), severity, category. Get attack commands and assess target feasibility. |
| analyze_bleB | BLE security analysis — GATT service audit, pairing security assessment, sniffing guide, privacy/tracking analysis. |
| analyze_rf_signalC | RF signal analysis and attack planning — protocol identification, signal analysis, replay attack guides, SDR hardware selection and setup. |
| analyze_nfc_securityA | NFC/RFID security analysis — card identification, attack lookup, cloning guides (Mifare, HID, EM4100), EMV relay analysis, defense recommendations. |
| analyze_cellular_securityA | Composite tool for comprehensive cellular network security analysis. Supports modes: lookup (look up attack by ID), search (search attacks by category/severity), imsi_detect (IMSI catcher detection guidance), assess (assess cellular security posture), defense (defense recommendations by threat model). |
| analyze_zigbeeB | Composite tool for Zigbee network security analysis. Supports modes: analyze (assess network security), sniff_guide (sniffing setup guide), key_extract (key extraction during join), replay (frame replay guide). |
| scan_iot_wirelessB | Composite tool for IoT wireless protocol security scanning. Supports modes: lookup (look up attack by ID), search (search attacks by protocol/category), assess_protocol (assess protocol security), scan_guide (scanning setup guide), defense (defense recommendations). |
| find_mousejackA | Composite tool for MouseJack wireless keyboard/mouse vulnerability assessment. Supports modes: scan (scan for vulnerable devices), assess (assess specific device vulnerability), inject (keystroke injection guide), defense (defense recommendations). |
| analyze_airgapA | Composite tool for air-gap exfiltration analysis. Supports modes: techniques (list exfiltration techniques), assess (assess feasibility), detect (detection methods), defense (hardening recommendations). |
| analyze_uwbA | Composite tool for UWB (Ultra-Wideband) security analysis. Supports modes: assess (assess UWB security for a use case), attack (attack techniques including Ghost Peak), defense (secure ranging best practices). |
| analyze_wifi_csiB | Composite tool for WiFi Channel State Information (CSI) sensing analysis. Supports modes: techniques (CSI sensing overview), privacy (privacy implications), detect (CSI surveillance detection). |
| analyze_miracastB | Composite tool for wireless display (Miracast/AirPlay/Chromecast) security analysis. Supports modes: assess (assess protocol security), attack (attack techniques), defense (defense recommendations). |
| analyze_wifi_directA | Composite tool for WiFi Direct (P2P) security analysis. Supports modes: assess (assess security posture), attack (attack techniques), defense (hardening recommendations). |
| analyze_drone_rfC | Composite tool for drone RF security analysis. Supports modes: detect (drone RF detection guide), analyze (analyze drone communication protocol), counter (counter-drone RF techniques). |
| audit_wlan_controllerA | Unified WLAN controller auditing tool. Modes: audit_config (audit controller configuration), rogue_ap (rogue AP detection guidance), audit_ssid (SSID security assessment), hardening (vendor-specific hardening guide). |
| analyze_captive_portalB | Unified captive portal analysis tool. Modes: bypass (bypass techniques by portal type), assess (security assessment of portal implementation), defense (hardening recommendations by deployment type). |
| detect_mac_randomizationA | Unified MAC randomization analysis tool. Modes: bypass (OS-specific bypass techniques), assess (implementation quality assessment per OS/version), tracking (device tracking techniques despite randomization). |
| analyze_hotspot20A | Unified Hotspot 2.0 / Passpoint analysis tool. Modes: assess (security assessment of HS20 configuration), attack (attack techniques and methodologies), defense (defense recommendations and hardening). |
| lookup_wireless_cveB | Unified wireless CVE lookup tool. Modes: lookup (look up CVE by ID), search (search by domain/severity/exploit), by_product (find CVEs by affected product), stats (database statistics). |
| lookup_hardwareA | Unified pentest hardware lookup tool. Modes: lookup (look up device by ID), search (search by category/price/capability), recommend (recommendations for use case), compare (side-by-side device comparison). |
| map_wireless_attckA | Unified wireless ATT&CK mapping tool. Modes: lookup (lookup technique by ID), coverage (full ATT&CK matrix coverage), by_tactic (attacks for a specific tactic), heatmap (heatmap data for visualization). |
| analyze_medical_wirelessA | Unified medical wireless security tool. Modes: assess (risk assessment by device type and protocol), attacks (known attacks and CVEs for device type), defense (HIPAA-aligned hardening by deployment). |
| detect_wireless_attackB | Unified wireless attack detection tool. Modes: wids_rules (WIDS/WIPS rule generation), sigma_gen (Sigma rule generation), forensics (forensics analysis guide), indicators (detection IoCs for attacks), monitor_setup (monitoring platform setup). |
| audit_wireless_complianceA | Unified wireless compliance auditing tool. Modes: check (compliance check against framework), gap_analysis (identify gaps in deployed controls), compare_frameworks (compare all frameworks), report (generate compliance report). |
| export_reportA | Unified report export tool. Modes: json (export as JSON), markdown (export as Markdown report), executive_summary (generate executive summary), csv (export as CSV). |
Prompts
Interactive templates invoked by user choice
| Name | Description |
|---|---|
No prompts | |
Resources
Contextual data attached and managed by the client
| Name | Description |
|---|---|
No resources | |
TDQS
Scored across 34 tools
Most tools have distinct purposes (e.g., scan_wifi_networks vs. analyze_wifi_security), but some overlap exists, such as multiple WiFi auditing and analysis tools that could confuse an agent.
All tools use consistent snake_case with a verb_noun pattern (e.g., scan_wifi_networks, analyze_ble, export_report). Minor typo in map_wireless_attck does not affect overall consistency.
At 34 tools, the server is large but justified by the broad domain of wireless security. Each tool serves a specific sub-domain; however, a slightly smaller set might improve efficiency.
The server covers a vast range of wireless technologies (WiFi, Bluetooth, NFC, Cellular, IoT, etc.) with tools for reconnaissance, analysis, attack, defense, compliance, and reporting. No obvious gaps for the stated domain.