Skip to main content
Glama
cerby0n

Tshark MCP Server

by cerby0n

Server Configuration

Describes the environment variables required to run the server.

NameRequiredDescriptionDefault

No arguments

Capabilities

Features and capabilities supported by this server

CapabilityDetails
tools
{}

Tools

Functions exposed to the LLM to take actions

NameDescription
analyze_pcap_attacksA

Analyze a pcap file for potential security threats and attacks. Returns suspicious IPs, port scans, DDoS indicators, DNS anomalies, HTTP attacks, and connection patterns.

query_pcapC

Run a custom tshark query on a pcap file with optional display filters and field extraction. Use Wireshark display filter syntax.

get_pcap_statsA

Get general statistics about a pcap file including packet counts, protocols, and conversations.

investigate_dns_tunnelingA

Perform detailed DNS tunneling investigation. Identifies attack characteristics, starting packet number, source IP, OS fingerprinting via TTL, and entropy analysis. Perfect for forensic investigations.

Prompts

Interactive templates invoked by user choice

NameDescription

No prompts

Resources

Contextual data attached and managed by the client

NameDescription

No resources

Latest Blog Posts

MCP directory API

We provide all the information about MCP servers via our MCP API.

curl -X GET 'https://glama.ai/api/mcp/v1/servers/cerby0n/tshark-mcp'

If you have feedback or need assistance with the MCP directory API, please join our Discord server