PRIVATE · P973

Shared in confidence with invited operators only. Please don’t redistribute the app, its keys/configs, or these pages. All rights reserved by Digital Orukami — see the LICENSE.

Protocol 973 v2.0 · AUSPEX by Digital Orukami
 █████╗ ███████╗ ██████╗ ██╗███████╗
██╔══██╗██╔════╝██╔════╝ ██║██╔════╝
███████║█████╗  ██║  ███╗██║███████╗
██╔══██║██╔══╝  ██║   ██║██║╚════██║
██║  ██║███████╗╚██████╔╝██║███████║
╚═╝  ╚═╝╚══════╝ ╚═════╝ ╚═╝╚══════╝

An affordable, open-source SOC — the shield of Athena, folded into one console.

AEGIS gathers tools shared across the security community — endpoint telemetry, Wi-Fi/RF sensing, packet capture, network scanning, threat hunting, open-source IDS, public threat-intel APIs, and a range of defensive open-source tools — wired to the local or cloud LLM of your choice, all in one creative dashboard. Real tools brought together so anyone can set it up at home and learn by defending their own network, while contributing to open-source research. As AI evolves, so does the attack surface — and the maliciousness of the threat actors behind it. AEGIS is here as a first line of defense, aiming to make digital security affordable and accessible to all. For the people.

THE GAP

The industry keeps naming the same two problems

Too few trained defenders, too little hands-on experience — and the tools you’d learn on sit behind enterprise budgets and paywalls. AEGIS aims at the root of both. It isn’t a toy lab; it’s the real, trusted open-source security tools, brought together under open-source local agentic models anyone can run.

The result: real network security you can deploy at home, at an affordable price, instead of an enterprise-only budget line — with an agentic layer that explains the why as it goes, lowering the barrier that keeps most people out. Digital security and AI models should be accessible to everyone. This creative SOC dashboard teaches you to launch your own model, your own bots, your own stack — plug it all in, break it, fix it, play with it, and learn as you go.

THE SHIELD

One console, many siblings

Each tool is a sibling reporting to a single dashboard, deployed for defense. Everything renders in demo mode out of the box — nothing is ever a blank screen — and each panel flips to live as you add its tool.

Endpoint

Deep Root

Live Windows and Linux Sysmon telemetry — rule + AI triage, a device fleet.

on the stack ▸
Wi-Fi / RF

Auspex

Kismet-powered Wi-Fi/RF discovery drawn as a HEXAZONE signal map — watched live by Little MAE, the Multi-Agent Engine that reads the map so you don't have to.

the beta ▸
Capture · Recon

Wireshark · Nmap · SSH Slug

Per-device pcap + deep dissection, a guided port scanner, and an SSH-readiness sweep across your fleet.

the stack ▸
Hunt · Deceive

BlueSpawn · Cowrie · SpiderTrap

Windows threat hunting, an SSH/Telnet honeypot, and a crawler trap that mazes out scanners.

on the stack ▸
Threat Intel

VirusTotal · AbuseIPDB · Shodan · GreyNoise

Check an IP, hash, or domain against every open threat-intel source at once — one lookup, fused.

the stack ▸
Detect

ClamAV

Scan a file or sweep a whole drive for malware — local scanning, nothing leaves the machine.

the stack ▸
LoRa / IoT

ChirpStack

Long-range IoT radios brought in through ChirpStack — gateways, nodes, the mesh.

the stack ▸
Agentic Layer

OpenClaw · ADL · Claude

A council of local and cloud agents — Sentinel triages, Bloodhound digs in, Scribe writes it up.

the AI layer ▸
DEMO

Live vs demo — you’ll always know which is which. Sample data carries a holographic foil sheen; flipping a panel to live triggers an indicator flash and a notification. Real alerts are never disguised as demo.

FOR THE PEOPLE

Learn while you build

AEGIS doubles as a hands-on lab: custom CTF challenges run across the tools — hunt a planted attacker in the Cowrie honeypot, trace it through Deep Root telemetry, dissect the packets in Wireshark, check indicators against Threat Intel — one storyline across every tool, with the agentic layer as a tutor built into the console.

Real, verified work. All for free. For the people.

BACKED BY

Sponsors & thanks

With thanks to Antisyphon Training for making hands-on security education accessible to entry-level students, and to SkillBit for sponsoring ECHO Club — the reason CTFs and training live in the dashboard. See all credits →