External validation / publications

Public evidence for the 1200km security research ecosystem.

A reviewer-facing evidence register led by verified public records and accepted upstream work. Reproducible validation, releases, point-in-time metrics, and open submissions follow in decreasing evidentiary strength; open submissions are never presented as adoption or acceptance.

Verified Product Proof

Independent public records · verified 2026-08-05

These records prove upstream acceptance only. They do not establish production deployment, active users, operational effectiveness, or endorsement. Publication rules are defined in the adoption-evidence model.

MISP Galaxy threat-actor record

A Cyber Av3ngers threat-actor update was accepted into the public MISP Galaxy repository.

Boundary: upstream merge evidence; no downstream deployment or usage claim.

Detection-engineering resource acceptance

Threat Matrix and the CTI Analyst Field Manual passed external review for an upstream detection-engineering resource list.

Boundary: curation evidence; not evidence of production SOC deployment.

AIDebug YARA-resource acceptance

AIDebug passed upstream review for inclusion in a public YARA resource collection.

Boundary: external curation only; not package-use or active-user evidence.

AdversaryGraph SOC-resource acceptance

AdversaryGraph passed upstream review for inclusion in a public SOC resource collection.

Boundary: third-party curation evidence; not a production-deployment claim.

AdversaryGraph AI CTI-resource acceptance

AdversaryGraph passed upstream review for inclusion in a public AI/GPT security resource collection.

Boundary: third-party curation evidence; not a production-deployment claim.

Credibility Snapshot

Verified 2026-09-13
8Accepted external contributions

Merged into public third-party repositories. Closed-unmerged and open submissions are excluded.

5Open upstream submissions

5 GitHub PRs and 0 GitLab MRs submitted for maintainer review across CTI, malware, detection, cloud, AI, mobile, and lab lists.

277Local archived articles

Markdown files preserved in the maintained Medium export archive; this is not a live Medium publication count.

v3.0.0AIDebug release

GitHub release, PyPI package, wheel/sdist artifacts, CI, tests, Kali request text, and docs.

v7.0.0AdversaryGraph validated source release

Merged and CI-validated on main, matching the latest published immutable GitHub release v7.0.0.

125GitHub stars

Live public portfolio total across 82 GitHub repositories, including 37 forked repositories, 23 repository forks, 35 GitHub followers, and 40 combined stars for AIDebug plus AdversaryGraph.

35GitHub followers

Live public GitHub follower count for the anpa1200 account at verification time.

2,169Total clones — last 14 days

GitHub clone events summed across 45 daily-tracked source repositories (Aug 29–Sep 11 2026). The 667 GitHub-reported unique values are summed per repository and are not globally deduplicated people, users, or deployments.

22,103Total clones since tracking began

Cumulative GitHub clone events across 45 daily-tracked source repositories (Jun 13–Sep 11 2026). The 5,869 GitHub-reported unique values are summed per repository/day and are not globally deduplicated people, users, or deployments.

Repository & Review Signals

GitHub / GitLab snapshot

GitHub PR Review Signal

Accepted and pending upstream pull requests are tracked separately so open submissions are not presented as accepted validation.

  • Merged external PRs8
  • Open GitHub PRs5
  • Closed unmerged GitHub PRs30

GitLab MR Review Signal

GitLab merge requests are included from authenticated GitLab data plus public MR verification for known upstream requests.

  • Open GitLab MRs0
  • Merged GitLab MRs0
  • Closed GitLab MRs1

Portfolio Repository Signal

Public GitHub footprint at snapshot time, including source repositories and forked repositories.

  • Public repositories82
  • Source repositories45
  • Forked repositories37
  • Total stars across public repositories125
  • Total forks across public repositories23

AdversaryGraph

Repository traction and release evidence for the self-hosted CTI platform.

  • Stars / forks28 / 2
  • Watchers28
  • Open issues1
  • Latest published releasev7.0.0
  • Current source releasev7.0.0
  • Last pushed2026-08-25

AIDebug

Repository traction and release evidence for the malware-analysis and reverse-engineering debugger.

  • Stars / forks12 / 2
  • Watchers12
  • Open issues0
  • Latest published releasev3.0.0
  • Last pushed2026-08-13

Open PR Backlog Health

1 of 5 open GitHub PRs have no maintainer comments or reviews yet. 0 are draft PRs.

  • Clean / mergeable
    No technical blocker detected by GitHub.
    3
  • Unstable
    Usually branch protection, missing status context, or pending required checks.
    0
  • Behind
    Source branch needs sync with the target branch.
    1
  • Blocked
    Repository rules block merge until a required condition is satisfied.
    0
  • Unknown
    GitHub did not expose a stable mergeability result at snapshot time.
    1

Main reason for the backlog: external maintainer review latency. Actionable technical items at this snapshot: 1 behind, 0 blocked, 0 unstable.

Top Starred Public Repositories

Highest-star public repositories visible under the GitHub account at snapshot time.

Repository metrics are point-in-time public GitHub/GitLab observations. Stars, forks, issues, and review status can change after the snapshot.

Approved Pull Requests

Approved external validation
Project / Contribution Status Upstream Evidence
1200km Lab Work
General cybersecurity lab portfolio submission.
Approved okhosting/awesome-cyber-security PR #27
AdversaryGraph
AI-powered CTI and MITRE ATT&CK analysis platform submission.
Approved okhosting/awesome-cyber-security PR #30
1200km Vulnerable Lab Projects
Vulnerable application and lab portfolio submission.
Approved vavkamil/awesome-vulnerable-apps PR #44
AIDebug
AI-assisted malware analysis and YARA-oriented reverse-engineering tool submission.
Approved pedramamini/awesome-yara PR #78
AdversaryGraph
AI-powered CTI and MITRE ATT&CK analysis platform submission.
Approved cyb3rxp/awesome-soc PR #20
ThreatMapper and CTI Analyst Field Manual
Detection engineering resource submission accepted by upstream maintainers.
Approved infosecB/awesome-detection-engineering PR #28
Cyber Av3ngers Threat Actor Update
MISP Galaxy threat-actor contribution accepted by upstream maintainers.
Approved MISP/misp-galaxy PR #1227
AdversaryGraph
AI-powered CTI and MITRE ATT&CK analysis platform submission.
Approved cckuailong/awesome-gpt-security PR #50

Open Pull Requests

Under maintainer review

OpenCTI Platform

Connector submission to the OpenCTI upstream platform adding Anthropic AI-powered enrichment to the connector ecosystem. Under active maintainer review.

SigmaHQ Detection Rules

Sigma detection rule submission covering Deno child-process and non-mail IMAP activity, under maintainer review.

HexStrike Community Guide

Community guide index submission for the HexStrike AI documentation, under maintainer review.

LLM Security Lab List

Vulnerable AI Lab submission to a public LLM-security resource list, under maintainer review.

REMnux Salt States

AIDebug submission to REMnux's provisioning states, adding it alongside the distribution's other malware-analysis tooling.

On 2026-08-05, 24 GitHub PRs and 1 GitLab MR with no maintainer comments or reviews were withdrawn and closed, narrowing this section to submissions with an active review signal. Open PRs are listed as review evidence, not as acceptance. Approved items move to the approved section only after upstream maintainer approval or acceptance.

GitLab / Kali Requests

3 tools assigned to Kali 2026.2 milestone
Tool Request Status Maintainer-Ready Contents Evidence
AIDebug Kali 2026.2 milestone Tagged release, PyPI package, Debian metadata, man page, autopkgtest notes, dependency list, usage examples. Kali request
AuditAI Kali 2026.2 milestone Linux host assessment scope, local CLI path, optional AI dependency, package metadata, CI and tests. Kali request
String Analyzer Kali 2026.2 milestone Standard-library runtime, PyPI package, categorized malware/forensics triage output, tests and usage examples. Kali request
RTSP Brute Force Tool Prepared / request text Authorized credential assessment scope, vendor presets, dry-run mode, JSON reports, Debian/Kali metadata. Kali request
StratusAI Prepared / request text External/cloud assessment scope, no-AI mode, recommended external tools, package metadata, status notifications. Kali request

Tool Releases & Public Stats

GitHub / PyPI

AIDebug

Release v3.0.0 PyPI 3.0.0 Python 12 stars 2 forks

AI-assisted malware reverse-engineering debugger with ATT&CK mappings, YARA seed rules, IOC export, JSON output, TUI workflow, and analyst reports.

AdversaryGraph

Source release v7.0.0 Green CI Self-hosted Malware Analysis Asset Surface Published tag v7.0.0 28 stars 2 forks

Self-hosted AI-assisted CTI platform for ATT&CK/ATLAS extraction, sector-aware actor relevance, IOC enrichment, MalwareGraph-backed malware analysis, asset attack surface mapping, APT comparison, D3.js Navigator workflows, STIX/OpenCTI export, and analyst-ready reporting.

Medium Publications

Articles and internal archive

Screenshots

Product evidence

Maintainer-Ready Project Summaries

Review positioning

AIDebug

Maintainer-ready because it has a tagged release, PyPI package, deterministic tests, GitHub Actions CI, release notes, screenshots, safety model, sample evidence, packaging metadata, and a clear non-exploit malware-analysis scope.

Malware analysisReverse engineeringATT&CKYARA

AdversaryGraph

Maintainer-ready because the v7.0.0 source release is merged and CI-validated with the reproducible readiness gate, rollback guidance, source-backed workflows, case studies, governed Threat Hunting, Query Library, Unified RAG/MCP, asset exposure assessment, and SOC access groups. Attack Simulation and SIEM validation were introduced in the historical v5.0.0 line and remain part of the current platform. The latest published immutable GitHub release is v7.0.0, matching this source-release evidence.

CTIATT&CK mappingAttack SimulationSIEM ValidationIOC enrichmentMalware Analysis

1200km Labs

Maintainer-ready because the labs are framed as authorized, reproducible education and validation environments with clear deployment paths, screenshots, documentation, and CTI/detection context.

Vulnerable appsCloud labsMobile labsCyber range

CTI Field Manual / Detection Work

Maintainer-ready because the work is organized around evidence handling, ATT&CK mapping, detection handoff, reproducibility, Sigma/MISP-compatible contribution patterns, and analyst-facing documentation.

CTI methodologySigmaMISP GalaxyDetection engineering