by BlackSnufkin · MCP Server · ★ 1.4k
LitterBox []() []() []() []() []() A self-hosted payload-analysis sandbox for red teams. Upload a sample, run static / dynamic / EDR analysis against it, get a Detection Score and a triggering-indicators breakdown — decide whether the payload is field-ready before it leaves the lab. LitterBox can also dispatch payloads to a separate EDR-instrumented Windows VM (Elastic Defend or Fibratus) and pull the correlated detection alerts back into the results page.
| Stars | 1,400 |
| Forks | 157 |
| Language | YARA |
| Category | MCP Server |
| License | GPL-3.0 |
| Quality Score | 48.472/100 |
| Last Updated | 2026-05-05 |
| Created | 2024-12-25 |
| Platforms | docker, mcp |
| Est. Tokens | ~7831k |
These tools work well together with LitterBox for enhanced workflows:
Explore other popular mcp server tools:
LitterBox is A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end to end.. It is categorized as a MCP Server with 1.4k GitHub stars.
LitterBox is primarily written in YARA. It covers topics such as ai, docker-compose, malware-analysis.
You can find installation instructions and usage details in the LitterBox GitHub repository at github.com/BlackSnufkin/LitterBox. The project has 1.4k stars and 157 forks, indicating an active community.
LitterBox is released under the GPL-3.0 license, making it free to use and modify according to the license terms.