Net Fortress
A defensive security-posture desktop tool that helps people see, understand, and fix risks on authorized assets.
Net Fortress is being built as an educational security auditor, not an offensive scanner. It is designed to inspect a host and authorized local network, explain each finding in plain language, map it to recognized controls, and provide OS-specific guided remediation. The current repository is at the foundations phase: the finding model, append-only audit log, authorization scope gate, RPC contract, design tokens, and CI are in place; real host checks are the next phase.
Capabilities
- Authorized-assets-only scope gate
- Validated finding model and severity rubric
- Append-only hash-chained audit log
- NIST CSF / SP 800-53 and Saudi NCA ECC mapping
- Read-only, least-privilege architecture
- Guided OS-specific remediation plan