Kaspersky Threat Intelligence
Multi-component threat intelligence repository by Kaspersky Lab containing three distinct tools: a Python-based OpenCTI connector that imports threat intelligence data from Kaspersky's TAXII server at taxii.tip.kaspersky.com with STIX object transformation and relationship generation, a Go-based URL normalization utility for standardizing URLs by removing default ports and decoding parameters, and an OpenTIP MCP server that provides conversational access to Kaspersky's threat intelligence platform. The OpenCTI connector analyzes STIX object descriptions to generate additional threat intelligence relationships and supports configurable data feeds, update intervals, and object expansion, while the MCP component enables AI assistants to query threat data through natural language interactions, serving security analysts, threat researchers, and SOC teams requiring programmatic access to Kaspersky's commercial threat intelligence feeds.
Composite of vulnerability cleanliness, spec conformance, provenance, stability, and usage signals — scanned and weighted by Cognium. Human and agent signals are tracked separately.
View full trust & usage report →Metadata
- Version
- 1.0.0
- Skill type
- atomic
- Execution layer
- mcp-remote
- Category
- security
- Source
- PulseMCP
- Author type
- human
- Updated
- 2026-05-05
Use via MCP
Resolve Kaspersky Threat Intelligence from your agent
Streamable HTTP transport at https://api.skillsregistry.net/mcp. No auth for read tools. Discovery: .well-known/mcp.json.
One command in your shell — Claude Code wires it up and verifies the connection. Run /mcp in any session to confirm.
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp --scope user for --scope project to commit it to .mcp.json.