An AI-accelerated hardware appliance that performs 35+ read-only AD misconfiguration checks and monitors critical changes in real time. No cloud. No licensing fees. Zero attack surface.
Supernova operates as a self-contained security tool plugged directly into your lab network switch. No agents. No cloud. No admin rights required.
Runs 35+ read-only LDAP checks across account policies, Kerberos delegation, ACL hygiene, GPO compliance, certificate services, and endpoint hardening. Every finding comes with a copy-paste PowerShell remediation command.
Continuously monitors critical AD state — Domain Admin membership, DCSync rights, delegation — and fires Discord webhook alerts the moment a dangerous change is detected. No SIEM required.
Hailo-8 NPU (26 TOPS) scores every misconfiguration by exploitability and impact, maps findings to MITRE ATT&CK techniques, and prioritises the most critical issues first.
Generates self-contained HTML reports and machine-parseable JSON. Every finding includes evidence, severity, MITRE ATT&CK reference, and step-by-step remediation.
Zero write operations to AD. No credential dumping. No exploitation. Service account with Domain User rights only. Hard guarantees enforced in code.
Fully self-contained. No internet connectivity needed during audits. All packages and OS pre-loaded on NVMe SSD. Designed for isolated laboratory environments.
Every auditor is read-only. Every finding maps to a specific MITRE ATT&CK technique with a PowerShell fix.
Everything runs on a Raspberry Pi 5 with 8GB RAM, 256GB NVMe SSD, and an optional Hailo-8 AI accelerator. Total cost: under RM 2,500.
Final Year Project 2026. Supervised by Mohamad Aiman Hanif Apandi.