Wireshark MCP is an MCP Server that transforms `tshark` into a structured analysis interface, enhancing it with optional Wireshark utilities for packet analysis.
From the registry: Professional network analysis with tshark. Security audits, deep-dives, and threat detection.

$ pip install wireshark-mcp && wireshark-mcp installhttps://www.wireshark.org/Please install the `wireshark-mcp` MCP server into my current AI client (that's you).
Required prerequisites (do these first if not already done):
- **Python 3.10+** — Required runtime
- **Wireshark/tshark** — Required CLI tool. Optional: capinfos, mergecap, editcap, dumpcap, text2pcap Run: `pip install wireshark-mcp && wireshark-mcp install` (https://www.wireshark.org/)
Canonical MCP server config (stdio transport):
- command: `uvx`
- args: ["wireshark-mcp"]
Note: Run wireshark-mcp install to auto-configure all detected MCP clients. Run wireshark-mcp doctor to verify setup.
Add this MCP server to my current client's config in the correct format for you. If you need secrets or credentials I haven't provided, ASK me — do not invent values or leave raw placeholders. After adding it, tell me how to verify the server is connected.AI-powered threat hunting and incident response MCP server for Elasticsearch/OpenSearch