Wrap forensic CLI tools into MCP for automated evidence analysis workflows.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "forensics-mcp" yet — see the docs or source repo.
Use forensics-mcp to analyze this disk image, list partition details, suspicious files, a recent modification timeline, and summarize possible forensic leads.
Returns disk structure, key file findings, a timeline summary, and suspicious indicators.
Use forensics-mcp to inspect this memory dump, extract the process list, network connections, suspicious injection traces, and flag items needing further validation.
Outputs process and connection analysis, anomaly indicators, and recommended next investigation steps.
Use forensics-mcp to analyze this PCAP file, identify major peers, unusual protocols, suspicious file transfers, and extract a key event timeline.
Provides a communication overview, abnormal traffic findings, suspicious transfer details, and an event timeline.
Analyze disk images with AI through MCP for fast forensic investigation.
Analyze PCAPs offline to extract streams, detect threats, and find leaked credentials.
Analyze memory dumps to quickly find malware and forensic clues.
Analyze files and browser artifacts for malware and security investigations.
Run safe local forensic analysis on files using common system binaries.
Analyze MCP tool security risks, detect malicious behavior, and provide risk scores.