Skip to main content
Glama

An overview of penetration testing (pentest) MCP tools

Production-ready MCP servers that extend AI capabilities through file access, database connections, APIs, and contextual services.

67,494 tools. Last updated 2026-02-01 22:37
  • Perform Active Directory penetration testing to identify security vulnerabilities in domain controllers and network configurations.
  • Conduct Active Directory penetration testing to identify security vulnerabilities and assess domain controller security posture through comprehensive security assessments.
  • Perform penetration testing on web applications to identify security vulnerabilities using configurable test types and depth levels for comprehensive security assessment.
  • Conducts technology-specific penetration testing on web applications to identify security vulnerabilities based on detected technologies like WordPress, Apache, or PHP.
  • Perform technology-specific web application penetration testing by analyzing target URLs and detected technologies to identify security vulnerabilities through automated security assessments.
  • Generate penetration testing strategies by analyzing detected services, technologies, and vulnerabilities to create targeted security assessments.

Interested in MCP?

Join the MCP community for support and updates.

RedditDiscord

Matching MCP servers

  • -
    security
    F
    license
    -
    quality
    Provides access to over 40 industry-standard penetration testing tools, including Nmap, SQLMap, and Metasploit, within an isolated Kali Linux Docker container. It enables security professionals to perform comprehensive network reconnaissance, web application testing, and vulnerability research through natural language commands.
    Last updated 24 days ago
    • Apple
    • Linux
  • A
    security
    F
    license
    A
    quality
    An automated penetration testing framework that enables intelligent security assessments through reconnaissance, vulnerability scanning, and controlled exploitation. Features AI-driven workflow management with comprehensive reporting for authorized security testing.
    Last updated 4 months ago
    27
    5
  • A
    security
    A
    license
    A
    quality
    A Model Context Protocol server that integrates essential penetration testing tools (Nmap, Gobuster, Nikto, John the Ripper) into a unified natural language interface, allowing security professionals to execute and chain multiple tools through conversational commands.
    Last updated 7 months ago
    9
    17
    110
    MIT
    • Linux
    • Apple