MCP Kali Server (MKS) is a lightweight API bridge that connects MCP clients (e.g: Claude Desktop or 5ire) to the API server which allows executing commands on a Linux terminal.
This MCP is able to run terminal commands as well as interacting with web applications using:
Dirbenum4linuxgobusterHydraJohn the RipperMetasploit-FrameworkNiktoNmapsqlmapWPScan- As well as being able to execute raw commands.
As a result, this is able to perform AI-assisted penetration testing and solving CTF challenges in real time.
👉 How MCP is Revolutionizing Offensive Security
The goal is to enable AI-driven offensive security testing by:
- Letting the MCP interact with AI endpoints like OpenAI, Claude, DeepSeek, Ollama or any other models.
- Exposing an API to execute commands on a Kali machine.
- Using AI to suggest and run terminal commands to solve CTF challenges or automate recon/exploitation tasks.
- Allowing MCP apps to send custom requests (e.g.
curl,nmap,ffuf, etc.) and receive structured outputs.
Here are some example (using Google's AI gemini 2.0 flash):
