Expose the real attack surface.
Authorized reconnaissance, web assessment, protocol analysis, password auditing, and security research—organized around scope and intent.
Explore offensive workflows →OFFENSIVE × DEFENSIVE
A controlled, modern security environment for operators, engineers, researchers, and defenders.
Private development. The first public Beta will ship only after release validation passes.
01 NULX SYSTEM BRIEF
Two perspectives. One system.
Authorized reconnaissance, web assessment, protocol analysis, password auditing, and security research—organized around scope and intent.
Explore offensive workflows →Host auditing, threat hunting, network visibility, malware triage, integrity monitoring, and DFIR—built for repeatable investigation.
Explore defensive workflows →Security workspaces
Nulx command suite
The current command surface helps users discover reviewed tools, plan profiles without making changes, create private project structures, run read-only diagnostics, inspect updates, and manage appearance.
$ nulx
NULX COMMAND SURFACE
tools reviewed catalog and profiles
project private workspace structures
doctor read-only diagnostics
update explicit system update actions
theme Nulx appearance controls
info system identity and state
Command Center PLANNEDWorkflow over noise
Start with authorization, target boundaries, and the evidence you need.
Choose a reviewed profile or workspace instead of installing everything blindly.
Keep commands, outputs, project state, and material actions understandable.
Organize findings and maintain a recoverable project trail.
Nulx development
The current exact candidate passed source, build, QEMU, clean Hyper-V installation, direct boot, and the complete installed-session diagnostic gate.
The current candidate passed all four installed themes, branded lock and login screens, human unlock, and normal Plasma logout back to the Nulx greeter.
The current candidate passed a clean 80 GB installation, verified ISO ejection, and direct UEFI disk boot in Hyper-V.
All 57 approved routes and every selectable team profile passed separate isolated package and service-policy tests; installer integration remains.
A graphical control surface is planned; it is not in the current build.
Generation 2 live networking, terminal baseline, clean install, direct disk boot, installed diagnostics, lock screen, and greeter return passed on the current exact candidate.
Bounded host metadata and Debian integrations now target QEMU/KVM, Proxmox, VMware, and VirtualBox; only completed host-specific tests become verified.
A separate ARM64 artifact starts after amd64 public Beta acceptance; no ARM64 download exists today.
Broad bare-metal and Secure Boot validation are future gates.
No public ISO has been released.