Forensic Artifact Investigator MCP Server
Related Servers
Alternatives to Forensic Artifact Investigator MCP Server
No user-submitted related servers found.
Related Servers
- FlicenseNot gradedqualityNot gradedmaintenanceEnables malware analysis through terminal command execution with specialized tools including file type detection, string extraction, hexdumps, and disassembly operations. Provides process management with configurable timeouts for safe analysis workflows.-
- FlicenseAqualityCmaintenanceMCP server for read-only forensic analysis of evidence files using local utilities (file, ExifTool, strings, Volatility).3-
- AlicenseNot gradedqualityFmaintenanceEnables automated memory forensics analysis using Volatility 3, supporting Windows, Linux, and macOS memory dumps through a modular plugin interface.1MIT
- AlicenseAqualityBmaintenanceExposes forensic case and evidence management operations over stdio, including case creation, evidence registration with SHA-256 hashing, and integrity verification, so clients can manage DFIR investigations programmatically.7MIT
- AlicenseNot gradedqualityDmaintenanceEnables analysis of binary files (PE, ELF, Mach-O, COFF) by providing tools to retrieve info, headers, sections, imports, exports, libraries, security hardening, signatures, and COFF object file details.25GPL 3.0
- FlicenseNot gradedqualityCmaintenanceEnables local AI models to perform defensive cybersecurity analysis through narrowly scoped read-only tools for host posture, Windows security operations, file/IOC triage, code scanning, and allowlisted filesystem/network access while enforcing boundaries and audit trails.-
TDQS
Scored across 3 tools
Each tool addresses a completely distinct forensic task: file metadata/hash, string extraction with indicator scanning, and memory dump analysis. There is no functional overlap, so agents can easily select the right tool.
All tool names follow the same verb-noun pattern with lowercase and hyphens (extract-metadata, extract-strings, analyze-memory-dump). The naming is perfectly consistent and predictable.
Three tools is on the lower end but still within a reasonable range for a focused forensic artifact investigator. The count is just slightly under what might be expected, but each tool covers a major area.
The toolset covers core forensic workflows: file metadata/hash analysis, string/indicator extraction, and memory dump analysis. Minor gaps exist (e.g., no timeline or registry parsing), but the essential artifact types are addressed.