Technology and methods
The reasoning methods inside KRYOS-XS Hypercube, explained without marketing language.
KRYOS-XS Hypercube is a reasoning engine, not a security product that competes with the tools an organization already owns. Ten methods run against evidence read through a non-intrusive API overlay, and each one produces a specific, inspectable contribution to the final governed decision.
What is KRYOS-XS Hypercube?
KRYOS-XS Hypercube is the cybersecurity reasoning and governance technology underlying ArtOfTheHack. It analyzes evidence across the security systems an organization already runs and returns governed decisions, without replacing the systems that collect telemetry or enforce controls. It reads through scoped APIs, states its confidence and its uncertainty, names the human authority required for each action, and records a reversal path.
Position
A reasoning layer above the tools, not another tool beside them
ArtOfTheHack is a cybersecurity organization. It applies the KRYOS-XS Hypercube reasoning engine as a non-intrusive API overlay to the security architecture a nonprofit already operates. Services are provided at no cost through grants funded by James Scott and administered by the Embassy Row Project.
What the overlay never does
- No agents are installed on endpoints, servers, or field devices
- No appliance or sensor is placed in the network path
- No existing security product is replaced or removed
- The overlay reads through APIs the organization authorizes and can revoke
- Every enforcement action executes in the organization's own systems, under its own authority
- If the overlay is disconnected, every existing system continues to operate exactly as before
Ten methods
Each method, what it produces, and where it stops
Every method page states what the method is, why it matters for a mission-driven organization, how it is applied in practice, and the limits it operates within.
Method 01
High-Dimensional Geometric Reasoning
Security evidence from separate consoles is placed into one high-dimensional space so signals that were never comparable can be compared.
Read the methodMethod 02
Adversarial Red Teaming
The organization's own architecture, policy, and response plan are attacked analytically across eight dimensions before a real adversary attempts it.
Read the methodMethod 03
Digital Twin Simulation
A model of the organization's systems, dependencies, and field operations is used to test a decision before it is executed for real.
Read the methodMethod 04
Advanced Monte Carlo Scenario Sampling
Thousands of variations of an incident and its response are sampled to produce probability ranges, tail cases, and the point where a recommendation stops being correct.
Read the methodMethod 05
Contradiction Detection and Evidence Validation
Sources that disagree are surfaced rather than averaged, and every contributing record is scored for reliability, freshness, independence, and completeness.
Read the methodMethod 06
Scenario Branching and Strategic Actor Modeling
Candidate responses are branched forward against modeled adversaries so the second move is visible before the first one is made.
Read the methodMethod 07
Cryptographic Provenance and Hash Chaining
Every decision carries a tamper-evident digest of its inputs, policy state, model versions, and outputs, so it can be replayed and verified independently.
Read the methodMethod 08
Policy and Authority Evaluation
Before any action is prepared, the engine determines whether policy permits it and which named role is entitled to approve it.
Read the methodMethod 09
Reversibility and Rollback Modeling
No action is recommended for automatic execution unless a validated reversal path exists and has been recorded in advance.
Read the methodMethod 10
Calibration and Outcome Feedback
Observed outcomes are fed back into the engine so confidence scores are measured against reality rather than asserted.
Read the methodEvery method runs on evidence the organization authorizes and can revoke. Enforcement always executes in the organization's own systems under the organization's own authority.
