cybershield

CyberShield - 12 cybersecurity tools: NIS2 mapping, MITRE ATT&CK, vulns, threat intel.

Sollte ich dies verwenden

Qualität und Sicherheit

A
Qualität der Beschreibung
96%
Vollständigkeit des Schemas
70%
Qualität der Benennung
80%
Risiko der Vergiftung
100%
Übereinstimmung der Berechtigungen
100%
Einhaltung des Protokolls
100%

Befunde (1)

  • LOWTool 'threat_landscape' description lacks action verbin threat_landscape

Basierend auf einer automatisierten Analyse der Tool-Definitionen und der Einhaltung des Protokolls.

Kontextkosten

~1,102Tokens (Tool-Definitionen)
~693 BTypische Antwortgröße
Mittlere Auswirkung auf die Aufmerksamkeit (0.86% von 128k Kontext)

Dies ist die ungefähre Anzahl der Tokens, die jedes Mal verbraucht werden, wenn die Tools des Servers in den Kontext eines Modells geladen werden. Höhere Werte verringern die Aufmerksamkeit, die für andere Aufgaben verfügbar ist.

Installieren

Installation mit einem Klick

Fügen Sie dies Ihrer Datei `claude_desktop_config.json` hinzu:

{
  "mcpServers": {
    "cybershield": {
      "url": "https://tooloracle.io/cybershield/mcp/"
    }
  }
}

Remote-Endpunkte

https://tooloracle.io/cybershield/mcp/streamable-http

Was es kann

Tool-Inventar

Tools (12)

🟢 Nur lesen🟡 Schreiben🔴 Löschen⚪ Unbekannt
⚪threat_landscape(sector)

Current cyber threat landscape overview per ENISA categories. Top 8 threats with sector relevance and mitigations.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "sector": {
      "type": "string",
      "description": "energy|finance|healthcare|manufacturing|public_admin|general"
    }
  },
  "additionalProperties": false
}
⚪cve_risk_score(cve_id, cvss_score, epss_score, in_kev_catalog, public_exploit, ...)

CVE risk prioritization combining CVSS, EPSS, KEV catalog, exploit availability. Returns weighted priority score with patching SLA.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "cve_id": {
      "type": "string"
    },
    "cvss_score": {
      "type": "number"
    },
    "epss_score": {
      "type": "number",
      "description": "0-1 EPSS probability"
    },
    "in_kev_catalog": {
      "type": "boolean"
    },
    "public_exploit": {
      "type": "boolean"
    },
    "internet_facing": {
      "type": "boolean"
    },
    "affected_systems": {
      "type": "integer"
    }
  },
  "additionalProperties": false
}
🟢attack_surface_check(web_applications, remote_access_vpn, cloud_services, iot_devices, employee_count)

Attack surface assessment checklist. Web apps, remote access, cloud, IoT, email. Prioritized security checks.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "web_applications": {
      "type": "boolean"
    },
    "remote_access_vpn": {
      "type": "boolean"
    },
    "cloud_services": {
      "type": "boolean"
    },
    "iot_devices": {
      "type": "boolean"
    },
    "employee_count": {
      "type": "integer"
    }
  },
  "additionalProperties": false
}
🟢phishing_indicators(sender_email, subject, suspicious_url, creates_urgency, has_unexpected_attachment, ...)

Analyze email/URL for phishing indicators. Scores sender, urgency, attachments, URL patterns. Returns verdict and recommended actions.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "sender_email": {
      "type": "string"
    },
    "subject": {
      "type": "string"
    },
    "suspicious_url": {
      "type": "string"
    },
    "creates_urgency": {
      "type": "boolean"
    },
    "has_unexpected_attachment": {
      "type": "boolean"
    },
    "asks_for_credentials": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪nis2_compliance(sector, employee_count, annual_turnover_meur, risk_management, incident_handling, ...)

NIS2 Directive (EU 2022/2555) compliance assessment. All 10 Art. 21 measures, entity classification, penalties, incident reporting.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "sector": {
      "type": "string"
    },
    "employee_count": {
      "type": "integer"
    },
    "annual_turnover_meur": {
      "type": "number"
    },
    "risk_management": {
      "type": "boolean"
    },
    "incident_handling": {
      "type": "boolean"
    },
    "business_continuity": {
      "type": "boolean"
    },
    "supply_chain_security": {
      "type": "boolean"
    },
    "vulnerability_management": {
      "type": "boolean"
    },
    "cyber_hygiene_training": {
      "type": "boolean"
    },
    "cryptography_policy": {
      "type": "boolean"
    },
    "access_control": {
      "type": "boolean"
    },
    "mfa_deployed": {
      "type": "boolean"
    },
    "incident_reporting_process": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪nis2_incident_report(incident_type, severity, affected_services, affected_users_estimate, cross_border_impact)

NIS2 incident notification template. 24h early warning, 72h notification, 1-month final report templates.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "incident_type": {
      "type": "string"
    },
    "severity": {
      "type": "string"
    },
    "affected_services": {
      "type": "string"
    },
    "affected_users_estimate": {
      "type": "integer"
    },
    "cross_border_impact": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪iso27001_gap(controls)

ISO 27001:2022 Annex A gap analysis. All 93 controls across 4 themes, new 2022 controls highlighted, certification process.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "controls": {
      "type": "object",
      "description": "Optional: status of specific controls"
    }
  },
  "additionalProperties": false
}
⚪dora_ict_risk(ict_risk_framework, ict_asset_inventory, protection_prevention, detection_measures, response_recovery, ...)

DORA Art. 5-12 ICT risk management compliance check. 8 articles assessed with specific requirements per article.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "ict_risk_framework": {
      "type": "boolean"
    },
    "ict_asset_inventory": {
      "type": "boolean"
    },
    "protection_prevention": {
      "type": "boolean"
    },
    "detection_measures": {
      "type": "boolean"
    },
    "response_recovery": {
      "type": "boolean"
    },
    "learning_evolving": {
      "type": "boolean"
    },
    "communication_plans": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪password_policy

Generate password policy per NIST SP 800-63B (2024) and BSI recommendations. Modern best practices — no forced rotation.

Eingabe-Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
⚪incident_playbook(incident_type)

Incident response playbook for ransomware, data breach, phishing compromise. Phase-by-phase actions with legal obligations.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "incident_type": {
      "type": "string",
      "description": "ransomware | data_breach | phishing_compromise"
    }
  },
  "additionalProperties": false
}
🟢risk_matrix(risks)

Risk assessment matrix (likelihood × impact). ISO 31000/27005 methodology. Provide risks for assessment or get template.

Eingabe-Schema

{
  "type": "object",
  "properties": {
    "risks": {
      "type": "string",
      "description": "JSON array [{name, likelihood(1-5), impact(1-5)}]"
    }
  },
  "additionalProperties": false
}
🟡security_metrics

Security KPI/metrics dashboard template. MTTD, MTTR, patch compliance, phishing rate. Board-ready reporting guidance.

Eingabe-Schema

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}

Community

Diesen Server bewerten

Nachweis

Aktuelle Beobachtungen

verifiziertVersion nicht aufgezeichnet12 Tools
verifiziertVersion nicht aufgezeichnet12 Tools