jshookmcp offers a powerful, search-first workspace designed for AI agents, featuring 735 tools across 36 domains. Streamline reverse-engineering tasks with capabilities like network capture, bundle deobfuscation, and process instrumentation, all while maintaining a unified attack surface in a single MCP server.
Overview
jshookmcp is a comprehensive reverse-engineering workspace designed specifically for AI agents, offering a search-first and profile-aware approach. This innovative tool combines 735 functionalities across 36 domains into a singular Managed Context Protocol (MCP) server, making it a unique asset in front-end analysis and automation.
Key Features
- Search-First, Profile-Aware Functionality:
jshookmcp allows users to navigate tools easily through different profiles — from a compact search mode (~3K tokens) to an expansive full mode (including all 735 tools at approximately 109K tokens). This dynamic approach prevents information overload and maintains efficiency as tasks evolve.
- Robust Runtime Recovery: The system supports seamless re-establishment of sessions, preserving both activated domains and browser states even after disconnections. Each client maintains isolation and control over its session, avoiding conflicts between multiple agents.
- Complete Browser Automation: With integrated support for the Chromium and Camoufox environments, this tool enhances process visibility through CDP (Chrome DevTools Protocol), featuring anti-detection strategies and explicit input CAPTCHA solving, along with comprehensive HTTP/2 interactions.
- In-Depth Reverse Engineering Capabilities: Embrace true reverse engineering with sophisticated methods including WASM disassembly, Frida/Ghidra/IDA integration, and native FFI scanning, ensuring complex patterns and constructs are meticulously understood without relying on superficial string searches.
- Dynamic Extensibility: Leveraging hot-reload plugins and auto-discovery,
jshookmcp evolves continuously as new tools and features are developed, ensuring the server remains at the forefront of reverse engineering technology.
Use Cases
- Minified Code Analysis: Efficiently deobfuscate code and understand complex constructs using a streamlined workflow involving
search_tools and deobfuscate.
- CAPTCHA Challenges: Tackle CAPTCHA issues by driving a Camoufox instance, capturing necessary network interactions, and replaying seamlessly with resolved challenges.
- OAuth Flow Management: Capture and manage OAuth authentication flows utilizing built-in proxy capabilities and GraphQL introspection tools.
- WASM Crypto Routine Analysis: Reverse-engineer cryptographic routines within WASM binaries by employing specialized analysis tools that extract, disassemble, and instrument code effectively.
Documentation and Resources
For detailed guidance and further learning, the following resources are available:
By harnessing the combined power of advanced analytical tools and automation capabilities, jshookmcp serves as a pivotal solution for developers and researchers aiming to explore and decode the intricacies of modern front-end applications.
Comments
0Start the conversation
Share the first comment.