
MCP сервер, позволяющий AI-агентам автономно выполнять 150+ инструментов кибербезопасности для автоматизированного тестирования на проникновение, обнаружения уязвимостей, автоматизации bug bounty и исследований в области безопасности в сетях, веб-приложениях и облачной инфраструктуре.
Продвинутый MCP-фреймворк для пентестинга на базе ИИ: 150+ инструментов безопасности и 12+ автономных ИИ-агентов
📋 Что нового • 🏗️ Архитектура • 🚀 Установка • 🛠️ Возможности • 🤖 ИИ-агенты • 📡 Справочник API
HexStrike AI MCP v6.0 включает многоагентную архитектуру с автономными ИИ-агентами, интеллектуальным принятием решений и разведкой уязвимостей.```mermaid %%{init: {"themeVariables": { "primaryColor": "#b71c1c", "secondaryColor": "#ff5252", "tertiaryColor": "#ff8a80", "background": "#2d0000", "edgeLabelBackground":"#b71c1c", "fontFamily": "monospace", "fontSize": "16px", "fontColor": "#fffde7", "nodeTextColor": "#fffde7" }}}%% graph TD A[AI Agent - Claude/GPT/Copilot] -->|MCP Protocol| B[HexStrike MCP Server v6.0]
B --> C[Intelligent Decision Engine]
B --> D[12+ Autonomous AI Agents]
B --> E[Modern Visual Engine]
C --> F[Tool Selection AI]
C --> G[Parameter Optimization]
C --> H[Attack Chain Discovery]
D --> I[BugBounty Agent]
D --> J[CTF Solver Agent]
D --> K[CVE Intelligence Agent]
D --> L[Exploit Generator Agent]
E --> M[Real-time Dashboards]
E --> N[Progress Visualization]
E --> O[Vulnerability Cards]
B --> P[150+ Security Tools]
P --> Q[Network Tools - 25+]
P --> R[Web App Tools - 40+]
P --> S[Cloud Tools - 20+]
P --> T[Binary Tools - 25+]
P --> U[CTF Tools - 20+]
P --> V[OSINT Tools - 20+]
B --> W[Advanced Process Management]
W --> X[Smart Caching]
W --> Y[Resource Optimization]
W --> Z[Error Recovery]
style A fill:#b71c1c,stroke:#ff5252,stroke-width:3px,color:#fffde7
style B fill:#ff5252,stroke:#b71c1c,stroke-width:4px,color:#fffde7
style C fill:#ff8a80,stroke:#b71c1c,stroke-width:2px,color:#fffde7
style D fill:#ff8a80,stroke:#b71c1c,stroke-width:2px,color:#fffde7
style E fill:#ff8a80,stroke:#b71c1c,stroke-width:2px,color:#fffde7
### Как это работает
1. **Подключение ИИ-агентов** — Claude, GPT или другие MCP-совместимые агенты подключаются через протокол FastMCP
2. **Интеллектуальный анализ** — механизм принятия решений анализирует цели и выбирает оптимальные стратегии тестирования
3. **Автономное выполнение** — ИИ-агенты выполняют комплексные оценки безопасности
4. **Адаптация в реальном времени** — система адаптируется на основе результатов и обнаруженных уязвимостей
5. **Расширенная отчетность** — визуальный вывод с карточками уязвимостей и анализом рисков
---
## Установка
### Быстрая настройка для запуска сервера hexstrike MCPs```bash
# 1. Clone the repository
git clone https://github.com/0x4m4/hexstrike-ai.git
cd hexstrike-ai
# 2. Create virtual environment
python3 -m venv hexstrike-env
source hexstrike-env/bin/activate # Linux/Mac
# hexstrike-env\Scripts\activate # Windows
# 3. Install Python dependencies
pip3 install -r requirements.txt
Watch the full installation and setup walkthrough here: YouTube - HexStrike AI Installation & Demo
You can install and run HexStrike AI MCPs with various AI clients, including:
Refer to the video above for step-by-step instructions and integration examples for these platforms.
Core Tools (Essential):```bash
nmap masscan rustscan amass subfinder nuclei fierce dnsenum autorecon theharvester responder netexec enum4linux-ng
gobuster feroxbuster dirsearch ffuf dirb httpx katana nikto sqlmap wpscan arjun paramspider dalfox wafw00f
hydra john hashcat medusa patator crackmapexec evil-winrm hash-identifier ophcrack
gdb radare2 binwalk ghidra checksec strings objdump volatility3 foremost steghide exiftool
**Инструменты облачной безопасности:**```bash
prowler scout-suite trivy
kube-hunter kube-bench docker-bench-security
Требования к браузерному агенту:```bash
sudo apt install chromium-browser chromium-chromedriver
wget -q -O - https://dl.google.com/linux/linux_signing_key.pub | sudo apt-key add - echo "deb [arch=amd64] http://dl.google.com/linux/chrome/deb/ stable main" | sudo tee /etc/apt/sources.list.d/google-chrome.list sudo apt update && sudo apt install google-chrome-stable
### Запустите сервер```bash
# Start the MCP server
python3 hexstrike_server.py
# Optional: Start with debug mode
python3 hexstrike_server.py --debug
# Optional: Custom port configuration
python3 hexstrike_server.py --port 8888
curl http://localhost:8888/health
curl -X POST http://localhost:8888/api/intelligence/analyze-target
-H "Content-Type: application/json"
-d '{"target": "example.com", "analysis_type": "comprehensive"}'
---
## Настройка интеграции с AI-клиентом
### Интеграция с Claude Desktop или Cursor
Отредактируйте `~/.config/Claude/claude_desktop_config.json`:```json
{
"mcpServers": {
"hexstrike-ai": {
"command": "python3",
"args": [
"/path/to/hexstrike-ai/hexstrike_mcp.py",
"--server",
"http://localhost:8888"
],
"description": "HexStrike AI v6.0 - Advanced Cybersecurity Automation Platform",
"timeout": 300,
"disabled": false
}
}
}
Настройте параметры VS Code в .vscode/settings.json:```json
{
"servers": {
"hexstrike": {
"type": "stdio",
"command": "python3",
"args": [
"/path/to/hexstrike-ai/hexstrike_mcp.py",
"--server",
"http://localhost:8888"
]
}
},
"inputs": []
}
---
## Возможности
### Арсенал инструментов безопасности
**150+ профессиональных инструментов безопасности:**