servers / x64dbg-mcp
x64dbg_mcp MCP server
communitystdiolocalverifiedhealthy
Drive x64dbg with your AI. MCP server: 23 mega-tools / 153 endpoints for breakpoints, memory, disasm, tracing, anti-debug & PE dumping. Claude/Cursor/Windsurf/Cline. All local.
01Tools · 23
How to read this: tool names here are observed from a live tools/list handshake. The Risk label is a heuristic inferred from the tool name (write/destructive verbs), not from executing the tool — a conservative guess, not a verified capability. We never escalate risk from a description. Found one that's wrong? Tell us — we fix on report.
| Tool | Risk | Side effects | Approval |
|---|---|---|---|
| x64dbg_memory Core memory operations: read, write, info, allocate, free, protect, map | read | false | unknown |
| x64dbg_registers Get or set CPU register values (all, specific, flags, avx512, set) | read | false | unknown |
| x64dbg_debug Execute core debugger actions (run, pause, step, state, etc.) | unknown | unknown | unknown |
| x64dbg_breakpoints Unified tool for all breakpoint operations (set, get, list, configure, toggle, remove) | read | false | unknown |
| x64dbg_disassembly Disassemble or assemble instructions (at address, function, info, assemble) | read | false | unknown |
| x64dbg_threads Thread operations: list, get current/specific/teb/name, or switch/suspend/resume | read | false | unknown |
| x64dbg_analysis Get function info, xrefs, basic blocks or source location for an address | read | false | unknown |
| x64dbg_tracing Execution tracing operations: step into/over, run, animate, get trace info | read | false | unknown |
| x64dbg_symbols Symbol, label, comment, and bookmark operations | unknown | unknown | unknown |
| x64dbg_stack Stack operations: call stack, read raw, get pointers/SEH/comments | read | false | unknown |
| x64dbg_modules List modules or get info (base, section, party) for a specific module | read | false | unknown |
| x64dbg_database List known constants, error codes, defined structs, or search strings in a module | read | false | unknown |
| x64dbg_search Pattern/string search, symbol autocomplete, or get string at address | read | false | unknown |
| x64dbg_address_convert Convert Virtual Address (VA) to File Offset, or File Offset to VA | unknown | unknown | unknown |
| x64dbg_command Execute x64dbg commands, scripts, eval expressions, or manage debug session | unknown | unknown | unknown |
| x64dbg_watchdog Check if a watch expression watchdog has been triggered | unknown | unknown | unknown |
| x64dbg_dumping Dump modules, fix IAT, or get PE header/sections/imports/exports | read | false | unknown |
| x64dbg_handles List handles/tcp/windows/heaps, get handle name, or close a handle | read | false | unknown |
| x64dbg_antidebug Anti-debugging analysis: Read PEB/TEB/DEP, or hide debugger | read | false | unknown |
| x64dbg_exceptions Manage exception breakpoints, list Windows exception codes, or skip exceptions | read | false | unknown |
| x64dbg_process Get process info (basic, detailed, cmdline, elevated, dbversion) or set cmdline | read | false | unknown |
| x64dbg_control_flow Get CFG/branch/loop info or manage function definitions | read | false | unknown |
| x64dbg_patches List, apply, restore patches or export patched module | read | false | unknown |
02Install & source
npx -y x64dbg-mcp-server
npx- repohttps://github.com/bromoket/x64dbg_mcp
- licenseMIT
- adoption85 stars · 20 forks
05Provenance & freshness
sourcesGitHub repo search [p4]
last_checked2026-07-26 08:46Z
next_check2026-07-28 08:40Z
cadenceevery 48h
verifiedtools_list:passed handshake:passed metadata:passed
index_statusindex — 8 unique facts >= 5
06Badge
Add the “as seen on MCPExplorer” badge to your README.
[](https://mcpexplorer.com/servers/x64dbg-mcp)
Next step
This is one server. A loadout combines the right servers, governance, and proven plays for a whole job — assembled deliberately, not tool-dumped.
Explore loadouts →