FlySecAgent

MCP.Pizza Chef: hnking-star

Rather than being something you plug into Claude, this is a chat program of its own that runs in a terminal and connects out to security tools you install separately, such as network scanners and search services. Answers can be backed by a folder of your own reference documents. Everything on screen is in Chinese, it needs a paid model account before it will start, and the bundled tool list points at folder paths on the author's own Windows machine, so expect to rewrite it.

Unmaintained · No commits in 16 months.
Other
Web/Research

Use This MCP client To

Ask what a suspicious network capture appears to contain Look up details on a recently disclosed security flaw Have scan results explained in plain terms Search my own reference documents while asking questions Chain several security tools together from one conversation

README

项目名称: FLYsecAgent

这是一个基于大语言模型和MCP(Model-Controller-Plugin)和Rag架构的网络安全智能助手项目。它旨在通过自然语言交互,帮助用户执行渗透测试任务、查询安全信息、分析流量包等。

功能特性

  • 自然语言交互: 用户可以通过自然语言向AI助手提问和下达指令。

  • MCP服务器集成: 通过 mcp.json 配置文件,可以灵活集成和管理多个MCP服务器,扩展助手的能力。

  • 工具调用: AI助手能够根据用户请求,调用配置的MCP服务器提供的工具(例如:nmap, gobuster, fofa, tavily-search等)。

  • 对话历史记忆: 支持多轮对话,能够记住之前的交互内容。

  • 流式输出: AI的回答可以流式输出,提供更好的用户体验。

  • 知识库增强 (可选): 支持通过本地知识库Rag(knowledge_base_docs目录)来增强AI的回答质量。

  • 可配置模型: 支持配置不同的语言模型参数。

  • 启动效果 屏幕截图 2025-05-11 154031

    sqlmap调用效果:

    屏幕截图 2025-05-11 154031

    屏幕截图 2025-05-11 154031 此外还可以调用dirsearch,nmap等工具

安装指南

  1. 克隆仓库:

    git clone https://github.com/hnking-star/FlySecAgent.git
    cd agent
  2. 创建并激活虚拟环境 (推荐):

    python -m venv .venv
    • Windows:
      .venv\Scripts\acti![屏幕截图 2025-05-11 154031](https://github.com/user-attachments/assets/3991c18f-9e01-41f0-8de2-963ff1d14a87)

vate - macOS/Linux:bash source .venv/bin/activate ```

  1. 安装依赖:

    pip install -r requirements.txt
  2. 安装 uv (重要): 本项目使用 uv 作为 Python 包的运行器和部分场景下的安装器。

    • start.bat 脚本会自动尝试为您安装 uv。
    • 如果您希望手动安装或在其他环境中使用,可以运行:
      pip install uv
      或者参考 uv 的官方文档进行安装。 确保 uv 已成功安装并可以从命令行调用。

FlySecAgent FAQ

Does this plug into Claude or ChatGPT?
No, and this is the main thing to know. It is the other side of the connection: its own terminal chat program that consumes security tools rather than adding tools to an app you already use.
Do I need to pay for anything?
Yes. It refuses to start without a paid model account, plus a separate account for the document search feature. Some of the security tools it drives need their own paid accounts too.
Will it work straight after installing?
Probably not. The listed dependencies are incomplete, so the program stops on start-up until you install the missing pieces by hand, and the bundled tool list uses folder paths from the author's own computer that do not exist on yours.
Can I use this to scan a website?
Yes, if you install the scanning tools separately and point it at them. Only scan systems you own or have written permission to test, since scanning anything else is illegal in most countries.
Does it ask before running a scan?
No. Once a tool is connected, the assistant decides on its own when to run it, and there is no approval step.
What language is it in?
Chinese. The menus, prompts and error messages are all Chinese, with no English option.
Is it still being worked on?
The last change landed in May 2025, so it has been quiet for well over a year.
How hard is setup?
Hard. You need Python, a set of security tools installed and configured yourself, a paid model account, and hand-edits to the bundled configuration.