Zebbern Kali MCP
未认领MCP server for Kali Linux penetration testing - 121 tools for AI-assisted security testing - Giving Agents access to full pentesting tools
安装
docker run -d -p 5000:5000 --name zebbern-kali zebbern-kali-mcp更多Security服务器
浏览完整目录安全概况
已认领和已认证的服务器每周接受一次静态扫描,显示代码能触及的范围(外部服务、环境变量、shell 命令、代理配置目录)以及带有已知公告的依赖。认领此列表即可获得。 安全概况的工作原理
40 个工具中显示 40 个
文档中列出的工具 (40)
内容来自项目文档。服务器握手不会验证每个工具的说明或行为。
amass
Attack surface mapping
assetfinder
Subdomain discovery via various sources
bloodyAD
AD privilege escalation framework
certipy-ad
AD Certificate Services (ADCS) exploitation
coercer
Coerce Windows authentication
commix
Command injection exploitation
dalfox
XSS scanning and exploitation
dementor
SpoolService abuse for relay attacks
dirb
Web content scanner
evil-winrm
WinRM shell with upload/download
ffuf
Fast web fuzzer
fierce
DNS reconnaissance
ghauri
Advanced SQL injection detection
gMSADumper
Group Managed Service Account password dumper
gobuster
Directory/file/DNS brute-forcing
hashcat
GPU-accelerated hash cracking
httpx
HTTP probing and technology detection
hydra
Network login brute-forcer
john
John the Ripper password cracker
katana
Web crawler (v1.1.0 pre-built binary)
krbrelayx
Kerberos relay and delegation abuse
ldapdomaindump
LDAP domain information dumper
mapcidr
CIDR range manipulation
masscan
High-speed port scanner
massdns
High-performance DNS resolver
metasploit-framework
Full Metasploit Framework
netexec
Primary SMB/LDAP/WinRM tool (replaces crackmapexec)
nikto
Web server vulnerability scanner
nmap
Port scanning, service/version detection, NSE scripts
nuclei
Template-based vulnerability scanner
PetitPotam
NTLM relay coercion via EFS RPC
pywhisker
Shadow Credentials attack tool
responder
LLMNR/NBT-NS/MDNS poisoner
sqlmap
Automated SQL injection
sslscan
SSL/TLS configuration analysis
subfinder
Passive subdomain discovery
subzy
Subdomain takeover checking
waybackurls
Fetch URLs from the Wayback Machine
winrmexec
WinRM command execution
wpscan
WordPress vulnerability scanner