Create optimized web search queries tailored to specific research tasks, using structured strategies and advanced techniques to enhance information retrieval efficiency for AI agents.
Retrieve detailed sandbox behavioral analysis for a file hash to understand malware capabilities, including process activity, network connections, and MITRE ATT&CK techniques. Essential for threat detection and incident response.
Retrieve detailed intelligence about specific threat actors or APT groups to understand their tactics, techniques, procedures, target sectors, and tools used for security research and incident analysis.
MCP server for multimodal understanding and object grounding (bounding boxes) across images, videos, and documents, with support for multiple AI providers (Zhipu GLM-V, OpenAI GPT-4o, Anthropic Claude, or any OpenAI-compatible endpoint).
Retrieve current Prefect instance identity, API URL, type (cloud or open-source), and user information to determine which environment you are connected to.
Search the web for information and get ranked results with titles, URLs, and snippets. Use domain filters to focus research and optionally include synthesized answers summarizing findings.
Extract plain text from court filings for reading, summarizing, or quoting content. Supports pagination through long documents with offset and max_chars parameters.
Search MITRE ATT&CK techniques by keyword in their name or description. Returns matching techniques with IDs and optional descriptions for enterprise, mobile, or ICS domains.
Bulk lookup up to 50 MITRE ATLAS techniques in one request. Returns records with status, parent tactics, and next-step references — ideal after case study lookup.
Search HackTricks documentation for pentesting techniques and exploits. Returns results grouped by file with page titles, match counts, and relevant sections.
Retrieve parent techniques (main ATT&CK IDs without subtechniques) for enterprise, mobile, or ICS domains. Filter out revoked or deprecated entries and optionally include descriptions.
Retrieve D3FEND countermeasures for a threat's ATT&CK techniques, mapping offensive techniques to digital artifacts and defensive tactics. Identify what would have stopped the threat by its threat ID.