Home › Blog

Next week I'm hosting a webinar on something I've been building for the past year.

Next week I'm hosting a webinar on something I've been building for the past year.

ninja.ing — a complete cybersecurity operations platform built on knowledge graphs and autonomous agents.

NinjaSignal — The core. 17+ threat feed ingesters pour into a Neo4j knowledge graph with 1.4M nodes. ML runs community detection, centrality analysis, risk propagation, and graph attention networks. 81 analytical windows. STIX 2.1 / TAXII 2.1 native.

Gator — Real-time alert engine with Cypher-based detection rules. Threshold, pattern, and anomaly triggers.

Kenjutsu — Graph-topology detections. Rules that understand structure: "Alert when a node within 2 hops of C2 gains an edge to a critical asset community."

SHOGUN — Autonomous purple teaming. Alert fires, agents investigate, the Range simulates the attack, Workbook reports gaps, new rules auto-generate. Closed loop.

 Yogen — Predictive defense. Fuses sentiment, time-series, Monte Carlo, and graph probability into recommendations before threats materialise.

 Fusion — Cross-domain intelligence fusion. 80+ connectors, narrative analysis, DataLab, vulnerability scanner.

Raz0r — Rust-native EDR. Ransomware prediction, cross-node correlation, auto-rule generation.

Nexus — OSINT investigations. Suspicion propagation, money flow, UBO resolution.

V01d — Sentiment pipeline. GDELT, RSS, Reddit, FRED data. Oracle Score and Cyber Barometer.

V0id Agents — Three autonomous AI agents: incident response, detection engineering, forensics.

War Room — Video conferencing with shared timelines, IOC enrichment, IR playbooks, breach containment tracking.

Social — Encrypted TI collaboration. Auto IOC detection in messages. Private Twitter for your SOC.

Los Alamos Range — Red vs blue wargaming. LLM adversaries vs AI defenders. ELO scoring.

Knox — Secrets vault, crypto toolkit, PIM/PAM credential management.

Sabaki — Vuln triage. Multi-scanner ingest, priority scoring, auto-FP, ServiceNow integration.

1D — Identity graph. BloodHound/Azure AD, attack paths, kerberoastable detection.

Kin0bi — Real-time crypto/stocks/forex monitoring with anomaly detection.

16 apps. One graph. Built by one person.

Live, unscripted. I'll run real threat intel through the full pipeline. Details dropping soon.

(I have a TOTAL ZERO chance of getting thru all this, but that's not the F8*Kin point)

https://ninjasignal.ninja
https://ninja.ing

#CyberSecurity#ThreatIntelligence#KnowledgeGraph#SOC#DFIR#PurpleTeam#DetectionEngineering
The Probably Fine Daily

Threat intelligence every morning — new victims, new groups, what matters, in plain English. Free, with receipts.

Subscribe to the Daily →

View the original on LinkedIn ↗

← All writing