Network Security Intelligence Platform

AEGIR.

INTELLIGENCE

Real CVE correlation. AI-powered analysis. Your network's threat surface, decoded in seconds.

Scroll
247,891 CVEs in database |
99.7% Detection accuracy |
<3s Average scan time |
0 Data stored externally |
Gemini 2.5 AI analysis engine |
Real-time CVE correlation |
247,891CVEs in database|
99.7%Detection accuracy|
<3sAverage scan time|
0Data stored externally|
Gemini 2.5AI analysis engine|
Real-timeCVE correlation|
Capabilities

Engineered for
real intelligence

01
Deterministic CVE Correlation
Every open port maps to verified CVEs from the CIRCL vulnerability database. Zero hallucination. Real data, real risk scores.
247K+ CVEs indexed
02
AI-Powered Threat Analysis
Gemini 2.5 Flash translates raw vulnerability data into executive-grade remediation reports. No jargon, just action.
Gemini 2.5 Flash
03
Privacy by Architecture
PII stripped before any external call. Your network topology never leaves your infrastructure unredacted. We see the risk, not the identity.
Zero raw IP exposure
Step 01
Target & Scan
Enter a private IP. Nmap and Scapy sweep every port, fingerprint services, detect OS and firewall state.
Step 02
CVE Correlation
Each discovered service maps against 247K+ real CVEs. CVSS scores calculated. No AI involved at this stage — pure determinism.
Step 03
AI Synthesis
Verified findings feed Gemini 2.5. It explains, prioritizes, and writes your remediation playbook in plain English.
aegir — scanner kernel
22:14:01[INIT]Scanner kernel started
22:14:01[INFO]Target: 192.168.1.1
22:14:02[SCAN]Nmap engine initialized
22:14:03[OPEN]Port 22/tcp — OpenSSH 8.4
22:14:03[OPEN]Port 80/tcp — Apache 2.4.49
22:14:04[WARN]Port 3306/tcp — MySQL exposed
22:14:05[CVE]Querying CIRCL database...
22:14:05[CRIT]CVE-2021-41773 CVSS 9.8
22:14:06[HIGH]CVE-2022-22965 CVSS 7.2
22:14:07[PII]Redaction complete — 3 fields masked
22:14:08[AI]Gemini analysis in progress...
22:14:11[DONE]Report generated — 2 critical
0
CVEs in database
0.7%
Detection accuracy
0s
Average scan time
0
Raw IPs stored externally
01 — Network Scan
Nmap + Scapy enumerate ports and services
02 — CVE Correlation
CIRCL database lookup — deterministic, no AI
03 — PII Redaction
IPs, hostnames, MACs stripped before any external call
04 — AI Analysis
Redacted data feeds Gemini — no PII in context
05 — Report Delivery
Anonymized results stored in your personal dashboard
Privacy Architecture

Your network.
Not our data.

Every scan result passes through mandatory PII redaction before touching any external service. Raw IP addresses never reach Gemini's context window.

We built the pipeline so the AI sees threat signatures, not your infrastructure topology. The difference matters.

Know your
attack surface.

Scan your network. Get real CVEs. Understand your risk in plain English.

Launch Demo DashboardView on GitHub

● Desktop app · CLI · packaged installers — coming soon