Skip to main content

Encrypted communication (SOCS)

Signal Open Source (Server, Mobile) - Java/Kotlin. Docker compose, Unix VMs

Secure, private communication within an organization, built on the Signal open-source framework, with support for custom encryption algorithms for in-house or bespoke cryptography over the public internet. Uses Knox for hardware encryption. Deployed to two customers for stress testing on physical servers with eight dedicated VMs under VMware, isolated from each other, with secure public-facing access for mobile and desktop clients. Achieved 100% encrypted transmission over the public internet for voice, file sharing, and text.

Scalable Threat Distribution

NodeJS, Python, Microservices, plugins for current SIEM and firewall devices in the market

Threat-sharing across a global network of firewalls and SIEM solutions under an open alliance model, not tied to a single vendor, so private and public organizations can exchange real-time intelligence on malicious actors. Aggregates over 50 million threat intelligence data points from more than 500 sources, feeding real-time updates. Malicious connections are blocked within 30 seconds, in some cases within 5 seconds. Currently maintains 59 active sources, processing over 1 billion data points per month.

Cybersecurity Trust algorithm

Python, NodeJS and Frontend (Browser version)

A cybercrime scoring system that analyzes attack signals, identifies the originating device or appliance, and traces the source actor from the data feed. The score is a single numerical value representing trust and confidence in the actor identification, without exposing identifying details. The trust score comes from a matrix of factors rather than simple logic: source credibility, supporting data, timing of the report, corroboration from other alliance members, and the reliability of each data point. It can be assigned to any internet asset — IPv4, domain, URL, or file.

Closed VPN

OpenVPN, Kotlin (Android), Swift (iOS) and multiplatform desktop application

An open-source project based on the OpenVPN protocol, letting organizations establish secure communication channels over public internet infrastructure between customers, employees, and central data centers. CloseVPN integrates third-party cyberattack intelligence feeds and protects users on any device, inside or outside the organization. It provides internet connectivity through a dedicated VPN server hardened against malicious attacks, and blocks access to sites identified as phishing threats.

Secure DNS with realtime feeds

Bind9, python, bash, and linux VM, AWS

Built on the open-source BIND9 project for fast DNS query resolution, designed to detect and mitigate phishing campaigns by identifying malicious domains. Deployed across two data centers, in London and Frankfurt, operational for two years. Has prevented access and mitigated attacks from approximately 40,000 unique threat actors.

Mobile Protection (OFA Mobile)

Android (Kotlin), Swift (iOS), local VPN - tunneling

Blocks malicious connections within a mobile application using device-level routing, without requiring jailbreaking or rooting. Uses a predefined list of malicious actors. Deployed with two customers. Achieves prevention within 40 seconds — for example, if an attacker targets Organization X, the solution can block that attacker’s inbound and outbound communications on an employee’s mobile device at Organization Y within 40 seconds.