open-reverselab — security grade SAFE, quality 67/100

Security audit verdict: SAFE · quality 67/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by LING71671 · MCP Server · ★ 1.2k

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is open-reverselab safe to install? View the security audit →

About open-reverselab

ReverseLab Open-source reverse engineering lab — 197-article knowledge base, 100+ MCP automation tools, covering CTF pentesting / APK reverse engineering / PE binary analysis / cryptography & protocol cracking / game cheating analysis. Agent-native, directory-as-convention. 中文版 Routing Knowledge Base Each technique file follows this structure: Agent workflow: detect sig

ai-agentai-reverse-engineeringandroid-reverse-engineeringbinary-analysisbinary-reverse-engineeringclaude-codecodexctffridaghidra

Quick Facts

Stars1,191
Forks284
LanguagePython
CategoryMCP Server
LicenseGPL-3.0
Quality Score66.9874129193503/100
Open Issues1
Last Updated2026-09-29
Created2026-06-17
Platformsclaude-code, codex, mcp, python
Est. Tokens~14k

Compatible Skills

These tools work well together with open-reverselab for enhanced workflows:

  • reverse-engineering-is-over — semantic(0.31)+complementary+rare_topics+same_lang+similar_pop+shared_platform (70%)
  • LockKnife — semantic(0.23)+complementary+rare_topics+same_lang+similar_pop+shared_platform (67%)
  • ai_for_the_win — semantic(0.16)+complementary+rare_topics+same_lang+similar_pop+shared_platform (64%)
  • areclaw — semantic(0.45)+complementary+rare_topics+similar_pop+shared_platform (60%)

open-reverselab alternative? Top 6 similar tools

Looking for a open-reverselab alternative? If you're comparing open-reverselab with other mcp server tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • ghidra-mcp by bethington · ⭐ 4.1k

    Ghidra MCP Server — 200+ MCP tools for AI-powered reverse engineering. GUI plugin + headless server, lazy tool

  • x64dbg-mcp-server by duty1g · ⭐ 2.2k

    x64dbg-MCP Server is a native MCP (Model Context Protocol) plugin for x64dbg that exposes the debugger's full

  • reagent by Dryxio · ⭐ 1.7k

    Reconstruct and validate C/C++ code from compiled programs with AI.

  • auto-re-agent by Dryxio · ⭐ 1.5k

    Open-source AI reverse-engineering agent using Ghidra and LLMs to reconstruct and validate C/C++ functions fro

  • memorix by AVIDS2 · ⭐ 825

    Open-source cross-agent memory layer for coding agents via MCP. Compatible with Claude Code, Codex, Cursor, Wi

  • jadx-mcp-server by zinja-coder · ⭐ 792

    MCP server for JADX-AI Plugin

More MCP Server Tools

Explore other popular mcp server tools:

View all MCP Server tools →

Popular Python Agent Tools

Frequently Asked Questions

What is open-reverselab?

open-reverselab is Open-source AI reverse-engineering agent platform and MCP server for Ghidra, Frida, x64dbg and Rizin — automated PE/APK/binary analysis, CTF and malware research, with 100+ MCP tools and a 194-article. It is categorized as a MCP Server with 1.2k GitHub stars.

What programming language is open-reverselab written in?

open-reverselab is primarily written in Python. It covers topics such as ai-agent, ai-reverse-engineering, android-reverse-engineering.

How do I install or use open-reverselab?

You can find installation instructions and usage details in the open-reverselab GitHub repository at github.com/LING71671/open-reverselab. The project has 1.2k stars and 284 forks, indicating an active community.

What license does open-reverselab use?

open-reverselab is released under the GPL-3.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to open-reverselab?

The top alternatives to open-reverselab on Agent Skills Hub include ghidra-mcp, x64dbg-mcp-server, reagent. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse MCP Server tools