Joe Sandbox Cloud
Integrates with Joe Sandbox Cloud API to provide malware analysis capabilities including file and URL submission, threat intellige
This Joe Sandbox Cloud MCP server by Joe Security LLC provides AI agents with malware analysis capabilities through the Joe Sandbox Cloud API, offering tools for file and URL submission, analysis querying, IOC extraction (domains, IPs, URLs, signatures), AI-powered threat summaries, and artifact downloads (unpacked files, PCAP network captures). Built with Python using FastMCP and featuring async report caching, XML parsing for detailed analysis data, process tree extraction, and comprehensive error handling, the implementation supports both immediate and polling-based analysis workflows with configurable parameters for sandbox environments. The server integrates with Claude Desktop through API key authentication and Terms & Conditions acceptance, making it valuable for threat intelligence gathering, malware research, incident response automation, and building AI assistants that need professional-grade dynamic and static malware analysis capabilities with detailed behavioral insights.
Source
Repository: https://github.com/joesecurity/joesandboxmcp
Maintain Joe Sandbox Cloud?
Let people know it's listed here — add the badge (live metrics, light/dark aware) or a plain link to your README or docs.
[Joe Sandbox Cloud on getagentictools](https://getagentictools.com/mcp/joesecurity-joesandboxmcp?ref=badge)