TI Mindmap HUB — MCP Server
About
TI Mindmap HUB MCP Server provides AI assistants with direct access to curated threat intelligence — reports, CVEs, IOCs, STIX bundles, and weekly briefings — through the Model Context Protocol.
Details
- Author
- ti-mindmap-hub-org
- Categories
- Other, Security
Jump to
Setup
Install TI Mindmap HUB — MCP Server in your MCP client (Claude Desktop, Cursor, Windsurf, and others).
Repository: https://github.com/ti-mindmap-hub-org/ti-mindmap-hub-mcp
Follow the installation instructions in the repository README, then restart your MCP client.
TI Mindmap HUB MCP Server provides AI assistants with direct access to curated threat intelligence — reports, CVEs, IOCs, STIX bundles, and weekly briefings — through the Model Context Protocol.
Threat Intelligence at your fingertips, directly inside your AI assistant.
Query threat intelligence reports, CVEs, IOCs, STIX bundles, and weekly briefings — all through natural language, powered by theModel Context Protocol.
Get Started·Tool Reference·Web Platform·Examples
TI Mindmap HUBis a threat intelligence platform that automatically collects, analyzes, and enriches cybersecurity articles from leading sources. Every article is processed with AI to generate:
- AI Summaries— Concise overviews of each threat
- Threat Mindmaps— Visual maps of attack flows and relationships
- MITRE ATT&CK TTPs— Tactics, Techniques, and Procedures mapping
- IOC Extraction— Indicators of Compromise (IPs, domains, hashes, URLs)
- STIX 2.1 Bundles— Structured threat data compatible with MISP, OpenCTI, Microsoft Sentinel
- CVE Intelligence— Enriched vulnerability data with EPSS scores and exploitation status
- Weekly Briefings— Curated threat landscape reports
ThisMCP Serverbrings all of this directly into your AI assistant.
The MCP server uses standard HTTP and SSE transports, so it should work with any MCP-compatible client (Claude Code, Cursor, Windsurf, ChatGPT, etc.). See theIntegration Docsfor protocol details.
Tested a different client?We welcome contributions! If you have successfully connected using another MCP client, pleaseopen a Pull Requestto add a setup guide and we'll include it in the documentation.
Sign up atti-mindmap-hub.comand generate your personal API key from your account settings.
Your API key has the formattim_xxxxxxxxxxxx.
Create or edit.vscode/mcp.jsonin your workspace:
{ "servers": { "ti-mindmap": { "url": "https://ti-mindmap-mcp.happyfield-b3b5145b.westeurope.azurecontainerapps.io/mcp", "headers": { "X-API-Key": "${input:tiMindmapApiKey}" } } }, "inputs": [ { "id": "tiMindmapApiKey", "type": "promptString", "description": "TI Mindmap HUB API Key", "password": true } ] }
VS Code will prompt you for the API key on first use.
- macOS:~/Library/Application Support/Claude/claude_desktop_config.json
- Windows:%APPDATA%\Claude\claude_desktop_config.json
{ "mcpServers": { "ti-mindmap": { "url": "https://ti-mindmap-mcp.happyfield-b3b5145b.westeurope.azurecontainerapps.io/mcp/sse", "transport": "sse", "headers": { "X-API-Key": "tim_your_api_key_here" } } } }
Open your AI assistant and start querying threat intelligence:
"Show me the latest threat intelligence reports about ransomware"
The MCP server exposes19 toolsorganized in 6 categories.
Here are some example prompts to try with your AI assistant:
"Show me the latest reports about APT29"
"What are the most recent ransomware campaigns from this week?"
"Find reports tagged with 'phishing' from The Hacker News"
"Tell me everything about CVE-2024-3400"
"List all critical CVEs from the last 30 days"
"Which CVEs are currently being exploited in the wild?"
"Is this IP malicious? 203.0.113.42"
"Search for this hash: d41d8cd98f00b204e9800998ecf8427e"
"Check if evil-domain.com appears in any threat reports"
"Give me this week's threat briefing"
"Summarize the threat landscape for the last 7 days"
"Get the STIX bundle for this report so I can import it into OpenCTI"
"Export threat data in STIX 2.1 format for Microsoft Sentinel"
"Analyze this article:https://example.com/threat-report"
All API calls require an API key passed via theX-API-Keyheader.
API keys are generated from your account onti-mindmap-hub.com.
TI Mindmap HUB continuously monitors leading cybersecurity sources including:
- The Hacker News
- BleepingComputer
- Krebs on Security
- Dark Reading
- SecurityWeek
- Recorded Future
- Cisco Talos
- Unit 42 (Palo Alto Networks)
- Microsoft Security Blog
- Google Threat Intelligence
- ...and more
For detailed technical documentation on integrating with the MCP server, see themcp-integration/directory:
┌──────────────────────────────────────┐ │ Your AI Assistant │ │ (VS Code / Claude Desktop / ...) │ └──────────────┬───────────────────────┘ │ MCP Protocol │ (HTTP or SSE) ▼ ┌──────────────────────────────────────┐ │ TI Mindmap MCP Server │ │ ✦ 19 threat intelligence tools │ │ ✦ API Key authentication │ │ ✦ Real-time data access │ └──────────────┬───────────────────────┘ │ ▼ ┌──────────────────────────────────────┐ │ TI Mindmap HUB Platform │ │ ti-mindmap-hub.com │ │ ✦ AI-powered analysis engine │ │ ✦ CVE & IOC databases │ │ ✦ STIX 2.1 generation │ │ ✦ Weekly briefing system │ └──────────────────────────────────────┘
- Email:info@ti-mindmap-hub.com— for bug reports, feature requests, and general inquiries
- Platform: Visitti-mindmap-hub.comfor account and platform support
This project is licensed under theMIT License.
CVE database and vulnerability intelligence for AI agents. Search NIST NVD, check software security, find known vulnerabilities — no API key required.
Real-time CVE lookup via NIST NVD 2.0, CISA KEV alerts, EPSS exploitation probability, and MITRE ATT&CK mappings. 7 tools for AI-powered vulnerability assessment.
Cross-reference DORA and NIS2 requirements — gap analysis, mapping, and compliance overlap detection for financial services
The NVD CVE MCP Server is a powerful security research tool
MCP-native OSINT framework for AI agents. Exposes 9 intelligence tools (email enumeration, username search, breach check, WHOIS, IP intel, subdomain enum, dorks, paste search, phone intel) via Model Context Protocol. Also works as a standalone Python CLI.
Exploit Intelligence Platform MCP Server
An MCP (Model Context Protocol) server that gives AI assistants access to the Exploit Intelligence Platform — hundreds of thousands of vulnerabilities and exploits from NVD, CISA KEV, VulnCheck KEV, InTheWild.io, ENISA EUVD, OSV.dev, EPSS, ExploitDB, Metasploit, GitHub, and more. I
Access real-time cyber and threat intelligence, including details on vulnerabilities, threat actors, and malware.
Interface with Malware Bazaar to get real-time threat intelligence and sample metadata for cybersecurity research.
Visa requirements for 39,585 passport-destination pairs in 15 languages. Check visa types, documents, and travel tips for any country combination.
Open-source, self-hostable MCP server for WhisperGraph — a graph of 7.39B nodes / 39B edges mapping DNS, BGP, GeoIP, WHOIS, and threat intelligence. Six read-only tools (Cypher query + schema introspection + threat assessment), six resources, eight investigation prompts. stdio and Streamable HTTP transports.
Sign in to leave a review
Use Google, GitHub, or an email account so ratings stay tied to real people.
No reviews posted yet.



