Item detail

bethington/ghidra-mcp

Ghidra MCP Server brings 200-plus MCP tools to Ghidra in GUI and headless modes, giving AI-assisted reverse-engineering workflows a real bridge into decompilation, inspection, renaming, and batch analysis.

Score8.3
Popularity78.0
Riskconditional
TierGold
Score breakdown
Usefulness8.0
Novelty8.0
Momentum8.0
Maturity8.1
Open-source/build8.4
Evidence7.2
Workflow potential8.7
Setup ease4.2

Popularity is tracked separately. Support, ads, sponsorships, and tips never affect these signals.

Why it matters

That matters because reverse engineering is still tool-heavy and manual. A mature MCP bridge can turn Ghidra from a standalone desktop app into a useful automation surface for audits, malware analysis, and research pipelines.

Who should use it

reverse engineersmalware analystssecurity researcherstoolsmiths building analysis workflows

Who should skip it

Skip if the source link, docs, or setup requirements do not match your workflow.

Risk explanation

Reverse-engineering workflows often involve untrusted binaries and sensitive samples, so keep the MCP bridge off production machines and review any automated changes to the analysis project..

Evidence links

Closest alternatives / related signals

ghidramcpreverse-engineeringsecuritymalware-analysis