{"adoption": {"forks": 170, "observed_at": "2026-08-28T04:04:58.395950+00:00", "stars": 1526}, "canonical_url": "https://ross.abutalabs.com/products/litterbox", "card": {"archived": false, "artifact_type": "application", "description": "A self-hosted sandbox for red teams to test payloads against modern detection before deployment. MCP integration lets an LLM agent drive analysis end to end.", "domain": ["security", "penetration-testing", "developer-tools", "self-hosted"], "enriched": true, "function": ["security", "penetration-testing", "vulnerability-scanning", "mcp", "self-hosted", "developer-tools"], "health_score": 86, "homepage": null, "language": "YARA", "license": "GPL-3.0", "license_family": "copyleft", "maturity": "active", "member_repos": ["BlackSnufkin/LitterBox"], "name": "BlackSnufkin/LitterBox", "platform": ["windows", "self-hosted", "python"], "pushed_at": "2026-05-05T13:02:00+00:00", "repo": "BlackSnufkin/LitterBox", "stars": 1526, "tags": ["red-team", "malware-analysis", "sandbox", "edr-testing", "payload-analysis", "yara", "detection-scoring", "offensive-security", "linux", "docker"], "topics": ["malware-development", "redteam", "sandbox", "ai", "mcp", "mcp-server", "docker-compose", "malware-analysis", "offensive-security"], "urls": [], "use_cases": ["test if my payload gets detected by EDR before deployment", "run static and dynamic malware analysis on a sample", "check which YARA rules trigger on my binary", "self-host a sandbox to score payload detection risk", "let an LLM agent automate malware analysis via MCP", "dispatch samples to an Elastic Defend or Fibratus VM and collect alerts", "blue team malware triage with detection indicator breakdown"], "what_it_is": "LitterBox is a self-hosted payload-analysis sandbox for red teams that runs static, dynamic, and EDR-based analysis on samples and produces a Detection Score with triggering indicators. It includes an MCP server so LLM agents can drive the analysis pipeline end to end, and can dispatch payloads to an EDR-instrumented Windows VM.", "when_to_avoid": ["you need a general-purpose production malware detonation service at scale", "you lack Windows environments or admin access for EDR integration", "you only need simple antivirus scanning without detection scoring", "your organization prohibits offensive-security tooling"], "when_to_choose": ["you are a red team operator validating payloads against modern detection before field use", "you want a self-hosted alternative to online sandboxes for sensitive samples", "you want LLM-driven automated malware analysis via MCP", "you need EDR telemetry (Elastic Defend, Fibratus) correlated with sandbox results"]}, "data_as_of": "2026-08-30T08:39:29.467469+00:00", "members": [{"path": "/products/litterbox", "repo": "BlackSnufkin/LitterBox", "role": "main", "score": 62}], "provenance": {"archived": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "artifact_type": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "description": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "domain": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "enriched": {"inputs": [], "kind": "computed", "method": "enrichment_status"}, "function": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "health_score": {"inputs": ["days_since_push", "days_since_release", "archived"], "kind": "computed", "method": "health_v1"}, "homepage": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "language": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "license": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "license_family": {"inputs": ["license"], "kind": "computed", "method": "license_family"}, "maturity": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "member_repos": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "name": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "platform": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "pushed_at": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "repo": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "stars": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "tags": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "topics": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "urls": {"kind": "observed", "observed_at": "2026-08-28T04:04:58.395950+00:00", "source": "github"}, "use_cases": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "what_it_is": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "when_to_avoid": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}, "when_to_choose": {"confidence": null, "enriched_at": "2026-08-30T04:31:35.154663+00:00", "kind": "inferred", "prompt_version": 1, "sources": [{"content_hash": "3481f9489a209b590af12d5f0dbc0898c2a69b58cbe0d72e64a1f65850e8dd0b", "fetched_at": "2026-08-28T04:04:58.395950+00:00", "kind": "readme", "missing": false, "url": "https://github.com/BlackSnufkin/LitterBox"}], "taxonomy_version": 1}}, "score": {"components": {"activity": 80, "longevity": 44, "rhythm": 50}, "computed_at": "2026-09-02T17:46:02.011165+00:00", "flags": [], "formula": "round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)", "inputs": {"age_days": 616, "days_push": 120, "days_rel": 121, "gap_med": null, "n_releases_24m": 1}, "score": 62, "version": 2}, "staleness": {"enrichment_outdated": false, "low_confidence": false, "scrape_days": 9, "stale_scrape": false}}