{"repo":"weirdmachine64/SharkMCP","free":true,"listed":false,"github":"https://github.com/weirdmachine64/SharkMCP","clone":"git clone https://github.com/weirdmachine64/SharkMCP.git","description":"A swiss-knife MCP server for analysing PCAP files","language":"Python","stars":73,"topics":["ctf","mcp","traffic-analysis","wireshark"],"license":"MIT","category":"mcp-servers","readme_excerpt":"SharkMCP An MCP server that exposes sharkd — Wireshark's programmatic interface — as a set of tools for LLMs. Load PCAP/PCAPNG files and analyse them with natural language. Requirements - Python 3.10+ - Wireshark (provides sharkd ) Installation Or run directly from the repo without installing: Configuration Add to your .mcp.json : Env var Default Description --------- --------- ------------- SHARKMCP SHARKD BIN sharkd Path to sharkd binary SHARKMCP TIMEOUT 300 Per-request timeout in seconds Tools Each loaded PCAP gets a dedicated sharkd subprocess. Results from expensive scans (conversations, expert info, export objects) are cached in memory so paginated follow-up calls are served without re-scanning. Session Tool Description ------ ------------- load pcap(path, alias?) Load a PCAP/PCAPNG file list pcaps() List all loaded PCAPs unload pcap(alias) Terminate session and free memory Overview Tool Description ------ ------------- pcap summary(alias) Frame count, duration, file size, protocols seen server info(alias) All available tap types, follow protocols, field types Packet Inspection Tool Description ------ ------------- list packets(alias, filter?, columns?, refs?) Paginated frame list with display filter packet detail(alias, frame, include bytes?, include hidden?) Full protocol tree for one frame extract fields(alias, fields, filter?) Extract arbitrary fields per packet as a table Utilities Tool Description ------ ------------- validate(alias, filter?, field?) Validate a di","default_branch":null,"files":null,"tree":[],"storefront":"/r/weirdmachine64","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/weirdmachine64/SharkMCP/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}