Skip to content

Free for nonprofits, NGOs, think tanks, and institutes. Grant funded by James Scott, administered by the Embassy Row Project.

ArtOfTheHack home

Technology and methods

The reasoning methods inside KRYOS-XS Hypercube, explained without marketing language.

KRYOS-XS Hypercube is a reasoning engine, not a security product that competes with the tools an organization already owns. Ten methods run against evidence read through a non-intrusive API overlay, and each one produces a specific, inspectable contribution to the final governed decision.

What is KRYOS-XS Hypercube?

KRYOS-XS Hypercube is the cybersecurity reasoning and governance technology underlying ArtOfTheHack. It analyzes evidence across the security systems an organization already runs and returns governed decisions, without replacing the systems that collect telemetry or enforce controls. It reads through scoped APIs, states its confidence and its uncertainty, names the human authority required for each action, and records a reversal path.

Position

A reasoning layer above the tools, not another tool beside them

ArtOfTheHack is a cybersecurity organization. It applies the KRYOS-XS Hypercube reasoning engine as a non-intrusive API overlay to the security architecture a nonprofit already operates. Services are provided at no cost through grants funded by James Scott and administered by the Embassy Row Project.

What the overlay never does

  • No agents are installed on endpoints, servers, or field devices
  • No appliance or sensor is placed in the network path
  • No existing security product is replaced or removed
  • The overlay reads through APIs the organization authorizes and can revoke
  • Every enforcement action executes in the organization's own systems, under its own authority
  • If the overlay is disconnected, every existing system continues to operate exactly as before

Ten methods

Each method, what it produces, and where it stops

Every method page states what the method is, why it matters for a mission-driven organization, how it is applied in practice, and the limits it operates within.

Method 01

High-Dimensional Geometric Reasoning

Security evidence from separate consoles is placed into one high-dimensional space so signals that were never comparable can be compared.

Read the method

Method 02

Adversarial Red Teaming

The organization's own architecture, policy, and response plan are attacked analytically across eight dimensions before a real adversary attempts it.

Read the method

Method 03

Digital Twin Simulation

A model of the organization's systems, dependencies, and field operations is used to test a decision before it is executed for real.

Read the method

Method 04

Advanced Monte Carlo Scenario Sampling

Thousands of variations of an incident and its response are sampled to produce probability ranges, tail cases, and the point where a recommendation stops being correct.

Read the method

Method 05

Contradiction Detection and Evidence Validation

Sources that disagree are surfaced rather than averaged, and every contributing record is scored for reliability, freshness, independence, and completeness.

Read the method

Method 06

Scenario Branching and Strategic Actor Modeling

Candidate responses are branched forward against modeled adversaries so the second move is visible before the first one is made.

Read the method

Method 07

Cryptographic Provenance and Hash Chaining

Every decision carries a tamper-evident digest of its inputs, policy state, model versions, and outputs, so it can be replayed and verified independently.

Read the method

Method 08

Policy and Authority Evaluation

Before any action is prepared, the engine determines whether policy permits it and which named role is entitled to approve it.

Read the method

Method 09

Reversibility and Rollback Modeling

No action is recommended for automatic execution unless a validated reversal path exists and has been recorded in advance.

Read the method

Method 10

Calibration and Outcome Feedback

Observed outcomes are fed back into the engine so confidence scores are measured against reality rather than asserted.

Read the method

Every method runs on evidence the organization authorizes and can revoke. Enforcement always executes in the organization's own systems under the organization's own authority.