cortex-mcp
An MCP server for the Cortex observable analysis and active response engine. It enables LLMs to automate security investigations by running analyzers on observables like IPs and URLs and executing automated response actions.
Install
npx -y thehive-cortex-mcp
Paste the configuration above into your MCP client config (claude_desktop_config.json for Claude Desktop) and restart the client.
{
"mcpServers": {
"cortex-mcp": {
"command": "npx",
"args": [
"-y",
"thehive-cortex-mcp"
],
"env": {
"CORTEX_URL": "<CORTEX_URL>",
"CORTEX_API_KEY": "<CORTEX_API_KEY>",
"CORTEX_VERIFY_SSL": "<CORTEX_VERIFY_SSL>"
}
}
}
}Paste the configuration above into your MCP client config (claude_desktop_config.json for Claude Desktop) and restart the client.
Sources: public MCP Server directories. This is an independent third-party directory with no affiliation to or endorsement from the maintainers of the listed servers.