Skip to main content
Glama
645,568 tools. Updated 2026-10-06 21:23

"Information about Threat Intelligence" matching MCP tools:

  • Query VirusTotal for threat intelligence on a file hash. Get detection results from 70+ antivirus engines, file metadata, and behavioral analysis to validate suspicious files or enrich IOCs.
    MIT
  • Search and browse threat actors to discover recent additions, filter by name or UUID, and generate threat intelligence reports with pagination and sorting options.
    Apache 2.0
  • Monitor recent threat actor activities mentioned in threat intelligence sources to track emerging threats, identify active actors, and build situational awareness of the current threat landscape.
    Apache 2.0
  • Query VirusTotal for domain threat intelligence including reputation, WHOIS, DNS, and detection results from 90+ security vendors. Investigate suspicious domains in incident response.
    MIT

Matching MCP Servers

  • F
    license
    A
    quality
    C
    maintenance
    An MCP server that provides information about Utkarsh, including bio, skills, work experience, and portfolio projects, accessible via local stdio or remote HTTP with OAuth.
    6
    -
  • F
    license
    A
    quality
    D
    maintenance
    An MCP (Model Context Protocol) server that gives AI agents live, structured ad intelligence across Facebook, Google, and Instagram — data that no base model can produce from training alone. Powered by Apify actors. Works with any MCP-compatible client: Cursor, Claude, etc.
    11
    -

Matching MCP Connectors

  • About Bureau, the self-hosted office for AI agents: overview, FAQ search, roadmap, install.

  • CVE intelligence, STRIDE, OWASP test cases via Ansvar Gateway. Cited, OAuth + paid.

  • Retrieve GreyNoise intelligence for a single CVE, including CVSS and EPSS scores, KEV status, exploitation statistics, and observed IP activity categorized as benign or threat.
    MIT
  • Retrieve detailed intelligence about specific threat actors or APT groups to understand their tactics, techniques, procedures, target sectors, and tools used for security research and incident analysis.
    Apache 2.0
  • Get anonymized threat intelligence feed showing attack patterns detected across the Novyx network. Filter by lookback hours and minimum severity.
    MIT
  • Get overall threat intelligence statistics: total signatures, active threats, mitigated count, and severity breakdown.
    MIT
  • Record threat events to enable cross-tenant intelligence. Fingerprints, deduplicates, and integrates into shared threat network.
    MIT
  • Retrieve threat intelligence for an IP address from VirusTotal, including reputation scores, geolocation, and network ownership for investigating suspicious activity.
    MIT
  • Retrieve detailed information about a specific threat actor by ID to support threat modeling analysis. Returns a markdown-formatted description for use in STRIDE-based assessments.
    Apache 2.0
  • Retrieve detailed information about a threat by ID, delivered as markdown for analysis and integration into threat modeling workflows.
    Apache 2.0
  • Retrieves SolSentry system-wide threat intelligence statistics including total scans, accuracy, resolve rate, operator counts, and bot clusters for network health assessment.
    MIT
  • Look up threat intelligence for an IP address to investigate suspicious activity from logs, alerts, or reports. Returns risk score, geolocation, malware associations, and threat data sources.
    MIT