◆ Authorized Purple Team Operations

NSO
KRYPTONITE

Unified Adversarial Defense Command Center — Every attack technique mapped to its detection twin. Built for red teams, blue teams, and the purple space where they converge.

04
Operation Modes
06
Training Domains
03
Immutable Laws
06
Red Lines
▶ View Repository Explore Platform

Four Modes of Operation

Each mode represents a distinct operational posture. Transition between them based on mission phase and authorization level.

🗡

WEAPON MODE

Adversary emulation, C2 orchestration, scenario deployment, and tradecraft validation. Every offensive action generates telemetry for defensive analysis.

Red Team Operators
🛡

SHIELD MODE

Real-time detection engineering, threat hunting, and forensic reconstruction. Blue Team starts blind — clarity is earned through investigative discipline.

Blue Team Defenders

SANCTUARY MODE

Debrief and co-evolution engine — where offense and defense converge. Post-operation analysis drives mutual capability improvement.

Purple Team Fusion
👁

SPECTATOR MODE

View-only sanitized telemetry, debrief recordings, and detection rule libraries. Learn from operations without direct participation.

Observers & Trainees

Three Immutable Laws

Non-negotiable principles that govern every operation within the Kryptonite platform.

01

No Offensive Action Without Defensive Consequence

Every attack generates telemetry. Every technique has a detection twin. The platform enforces this coupling at the architectural level — you cannot deploy an offensive module without its defensive counterpart being active and logging.

02

No Ground Truth Without Earned Reconstruction

Blue Team begins every exercise blind. Clarity is not given — it is the reward for investigative discipline. The platform progressively reveals truth proportional to the quality of defensive analysis, training hunters to build cases from noise.

03

No Completion Without Failure

Timeout-first design. The first attempt is calibrated to collapse. Recovery is the metric, not prevention. Operators learn more from controlled failure than from artificial success. Every session ends with lessons, not just scores.

Six Combat Domains

Comprehensive skill development across the full spectrum of adversarial operations and defensive countermeasures.

M1

AD FUSION

BloodHoundAS-REP RoastKerberoastDCSync Kerberos AnomalySigma Rules
Target: Detect Kerberos attacks under normal domain noise
M2

WIRELESS ADVANCED

SDR Evil TwinBLE SpoofKRACK WIDS AlertsSpectrum Analysis
Target: Distinguish rogue APs under RF interference
M3

PROTOCOL EXPLOITATION

LLMNR PoisonVLAN HopSTP Attack Multicast AnomalyCAM Monitoring
Target: Catch protocol-layer bypasses in real-time
M4

POST-EXPLOITATION

C2 MeshPivotingInjection EDR BehavioralMemory Forensics
Target: Scope compromise graph from single alert
M5

BLUE DEFENSE

HoneypotsNDRHunt Mode Degraded Telemetry
Target: Hunt in compromised environment with degraded visibility
M6

SKILL VALIDATION

Purple FusionCertification Scoring EngineTime Pressure
Target: Full purple team capability under operational constraints

Platform Architecture

Layered defense-in-depth architecture with zero-trust networking and AI-powered analysis.

COMMAND CENTER (PWA) — React 19 + TypeScript + WebGL + WebAssembly
API GATEWAY — Hono + tRPC 11 + Drizzle | JWT Scope Tokens | Ed25519 | RBAC
AD
FUSION
WIRELESS
ADVANCED
PROTOCOL
EXPLOIT
POST-
EXPLOIT
BLUE
DEFENSE
OBLISK AI ENGINE — Llama 3 70B (4-bit) | Deterministic Safety Override | MCP Integration
INFRASTRUCTURE — WireGuard Zero-Trust | mTLS | eBPF | Proxmox VE | K3s | ZFS

The Red Lines

Architecturally enforced boundaries that prevent misuse and ensure ethical operations.

No zero-day development — FSM override rejects payloads outside MITRE ATT&CK
No third-party infrastructure abuse — Scope enforcement blocks external targeting
No real credential theft — Pre-provisioned synthetic victim personas only
Reversibility mandate — Hardware kill-switch, ZFS snapshots, auto-restore
No deployable intrusion methodology — Watermarked, scoped, non-portable payloads
// ECOSYSTEM Portfolio NSO Kryptonite CIVWATCH OBLISK AI Nexus Dollar Gravity