cybershield

CyberShield - 12 cybersecurity tools: NIS2 mapping, MITRE ATT&CK, vulns, threat intel.

사용해야 할까요

품질 및 안전성

A
설명 품질
96%
스키마 완전성
70%
이름 품질
80%
오염 위험
100%
권한 일치
100%
프로토콜 준수
100%

발견 사항 (1)

  • LOWTool 'threat_landscape' description lacks action verbthreat_landscape에서

도구 정의와 프로토콜 준수에 대한 자동 분석을 기반으로 합니다.

컨텍스트 비용

~1,102토큰 (도구 정의)
~693 B일반적인 응답 크기
중간 정도의 주의 영향 (128k 컨텍스트의 0.86%)

이는 서버의 도구가 모델의 컨텍스트에 로드될 때마다 소비되는 대략적인 토큰 수입니다. 수치가 높을수록 다른 작업에 사용할 수 있는 주의가 줄어듭니다.

설치

원클릭 설치

`claude_desktop_config.json` 파일에 다음을 추가하세요:

{
  "mcpServers": {
    "cybershield": {
      "url": "https://tooloracle.io/cybershield/mcp/"
    }
  }
}

원격 엔드포인트

https://tooloracle.io/cybershield/mcp/streamable-http

할 수 있는 일

도구 목록

도구 (12)

🟢 읽기 전용🟡 쓰기🔴 삭제⚪ 알 수 없음
⚪threat_landscape(sector)

Current cyber threat landscape overview per ENISA categories. Top 8 threats with sector relevance and mitigations.

입력 스키마

{
  "type": "object",
  "properties": {
    "sector": {
      "type": "string",
      "description": "energy|finance|healthcare|manufacturing|public_admin|general"
    }
  },
  "additionalProperties": false
}
⚪cve_risk_score(cve_id, cvss_score, epss_score, in_kev_catalog, public_exploit, ...)

CVE risk prioritization combining CVSS, EPSS, KEV catalog, exploit availability. Returns weighted priority score with patching SLA.

입력 스키마

{
  "type": "object",
  "properties": {
    "cve_id": {
      "type": "string"
    },
    "cvss_score": {
      "type": "number"
    },
    "epss_score": {
      "type": "number",
      "description": "0-1 EPSS probability"
    },
    "in_kev_catalog": {
      "type": "boolean"
    },
    "public_exploit": {
      "type": "boolean"
    },
    "internet_facing": {
      "type": "boolean"
    },
    "affected_systems": {
      "type": "integer"
    }
  },
  "additionalProperties": false
}
🟢attack_surface_check(web_applications, remote_access_vpn, cloud_services, iot_devices, employee_count)

Attack surface assessment checklist. Web apps, remote access, cloud, IoT, email. Prioritized security checks.

입력 스키마

{
  "type": "object",
  "properties": {
    "web_applications": {
      "type": "boolean"
    },
    "remote_access_vpn": {
      "type": "boolean"
    },
    "cloud_services": {
      "type": "boolean"
    },
    "iot_devices": {
      "type": "boolean"
    },
    "employee_count": {
      "type": "integer"
    }
  },
  "additionalProperties": false
}
🟢phishing_indicators(sender_email, subject, suspicious_url, creates_urgency, has_unexpected_attachment, ...)

Analyze email/URL for phishing indicators. Scores sender, urgency, attachments, URL patterns. Returns verdict and recommended actions.

입력 스키마

{
  "type": "object",
  "properties": {
    "sender_email": {
      "type": "string"
    },
    "subject": {
      "type": "string"
    },
    "suspicious_url": {
      "type": "string"
    },
    "creates_urgency": {
      "type": "boolean"
    },
    "has_unexpected_attachment": {
      "type": "boolean"
    },
    "asks_for_credentials": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪nis2_compliance(sector, employee_count, annual_turnover_meur, risk_management, incident_handling, ...)

NIS2 Directive (EU 2022/2555) compliance assessment. All 10 Art. 21 measures, entity classification, penalties, incident reporting.

입력 스키마

{
  "type": "object",
  "properties": {
    "sector": {
      "type": "string"
    },
    "employee_count": {
      "type": "integer"
    },
    "annual_turnover_meur": {
      "type": "number"
    },
    "risk_management": {
      "type": "boolean"
    },
    "incident_handling": {
      "type": "boolean"
    },
    "business_continuity": {
      "type": "boolean"
    },
    "supply_chain_security": {
      "type": "boolean"
    },
    "vulnerability_management": {
      "type": "boolean"
    },
    "cyber_hygiene_training": {
      "type": "boolean"
    },
    "cryptography_policy": {
      "type": "boolean"
    },
    "access_control": {
      "type": "boolean"
    },
    "mfa_deployed": {
      "type": "boolean"
    },
    "incident_reporting_process": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪nis2_incident_report(incident_type, severity, affected_services, affected_users_estimate, cross_border_impact)

NIS2 incident notification template. 24h early warning, 72h notification, 1-month final report templates.

입력 스키마

{
  "type": "object",
  "properties": {
    "incident_type": {
      "type": "string"
    },
    "severity": {
      "type": "string"
    },
    "affected_services": {
      "type": "string"
    },
    "affected_users_estimate": {
      "type": "integer"
    },
    "cross_border_impact": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪iso27001_gap(controls)

ISO 27001:2022 Annex A gap analysis. All 93 controls across 4 themes, new 2022 controls highlighted, certification process.

입력 스키마

{
  "type": "object",
  "properties": {
    "controls": {
      "type": "object",
      "description": "Optional: status of specific controls"
    }
  },
  "additionalProperties": false
}
⚪dora_ict_risk(ict_risk_framework, ict_asset_inventory, protection_prevention, detection_measures, response_recovery, ...)

DORA Art. 5-12 ICT risk management compliance check. 8 articles assessed with specific requirements per article.

입력 스키마

{
  "type": "object",
  "properties": {
    "ict_risk_framework": {
      "type": "boolean"
    },
    "ict_asset_inventory": {
      "type": "boolean"
    },
    "protection_prevention": {
      "type": "boolean"
    },
    "detection_measures": {
      "type": "boolean"
    },
    "response_recovery": {
      "type": "boolean"
    },
    "learning_evolving": {
      "type": "boolean"
    },
    "communication_plans": {
      "type": "boolean"
    }
  },
  "additionalProperties": false
}
⚪password_policy

Generate password policy per NIST SP 800-63B (2024) and BSI recommendations. Modern best practices — no forced rotation.

입력 스키마

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}
⚪incident_playbook(incident_type)

Incident response playbook for ransomware, data breach, phishing compromise. Phase-by-phase actions with legal obligations.

입력 스키마

{
  "type": "object",
  "properties": {
    "incident_type": {
      "type": "string",
      "description": "ransomware | data_breach | phishing_compromise"
    }
  },
  "additionalProperties": false
}
🟢risk_matrix(risks)

Risk assessment matrix (likelihood × impact). ISO 31000/27005 methodology. Provide risks for assessment or get template.

입력 스키마

{
  "type": "object",
  "properties": {
    "risks": {
      "type": "string",
      "description": "JSON array [{name, likelihood(1-5), impact(1-5)}]"
    }
  },
  "additionalProperties": false
}
🟡security_metrics

Security KPI/metrics dashboard template. MTTD, MTTR, patch compliance, phishing rate. Board-ready reporting guidance.

입력 스키마

{
  "type": "object",
  "properties": {},
  "additionalProperties": false
}

커뮤니티

이 서버 평가하기

증거

최근 관측

검증됨버전이 기록되지 않음도구 12개
검증됨버전이 기록되지 않음도구 12개