Skip to main content
Glama
schwarztim

Mimikatz MCP Server

by schwarztim

Related Servers

Alternatives to Mimikatz MCP Server

No user-submitted related servers found.

    Related Servers

    • A
      license
      Not graded
      quality
      D
      maintenance
      Bridges large language models with the Metasploit Framework to enable natural language control over penetration testing workflows. It provides tools for searching modules, executing exploits, generating payloads, and managing active sessions.
      1
      Apache 2.0
    • F
      license
      B
      quality
      C
      maintenance
      Enables LLMs to perform automated penetration testing and Active Directory reconnaissance through Mythic, with tools for executing PowerShell, AD recon, domain user enumeration, and Kerberoasting.
      12
      -
    • F
      license
      B
      quality
      C
      maintenance
      Enables users to query BloodHound Active Directory graph data using natural language, finding attack paths, Kerberoastable accounts, and other AD security insights.
      23
      -

    TDQS

    A3.5/5.0

    Scored across 21 tools

    Disambiguation5/5

    Each tool targets a distinct Mimikatz module/operation: sekurlsa variants separate by credential type, kerberos ticket actions are clearly split, and lsadump/vault/dpapi/crypto/token functions are unambiguous. Although several tools extract credentials from LSASS, their descriptions specify exactly which credential source is involved.

    Naming Consistency5/5

    All tools follow the consistent mimikatz_<module>_<operation> pattern with snake_case throughout. The names map directly to vanilla Mimikatz command modules, making the set predictable and familiar.

    Tool Count4/5

    At 21 tools the set is slightly above the ideal 3-15 range, but the breadth reflects Mimikatz's many credential and security subsystems. Each tool corresponds to a distinct functionality rather than redundant wrappers.

    Completeness4/5

    The surface covers the major Mimikatz workflows: credential extraction, SAM/LSA dumping, DCSync, ticket attacks, DPAPI, certificates, token manipulation, and a custom command fallback. Minor gaps such as pass-the-hash or some secondary lsadump/sekurlsa options are not exposed directly but can be reached through mimikatz_custom.

    Maintenance

    ActivityInactive
    ResponsivenessNo issues