SOVEREIGN CRATE REGISTRY: 13 ACTIVE ARSENAL CRATES 100% PURE RUST ZERO C/C++ RUNTIME DEPENDENCY
Independent Modular Architecture
Crate Queries: 980

The 13 Sovereign Pure-Rust Defense Crates

Each defense engine in the Alaska Sovereign Suite is developed as a modular, standalone pure-Rust library and CLI executable. Zero external C runtime dependencies, zero Python, and zero cloud lock-in.

alaskaharden PORT 8088

CIS Level 1 & CMMC 2.0 Hardening Engine

Automated compliance baseline audit, pre-flight snapshotting, and atomic drift remediation across Windows Registry and Linux sysctl baselines.

NIST: GOVERN / PROTECT • MITRE: TA0001, TA0003
$ alaskaharden audit --remediate
alaskasinkhole PORT 8053

Shannon Entropy DNS Radar & C2 Shield

RFC 1035 pure-Rust DNS resolver blocking outbound malware C2 beacons, DGA domain generation, and tunneling via mathematical entropy thresholds (H >= 3.75).

NIST: PROTECT / DETECT • MITRE: TA0011
$ alaskasinkhole run --threshold 3.75
alaskagate PORT 8060

Zero-Trust Ephemeral SSH & FIDO2 Bastion

Eliminates static long-lived credentials by issuing 15-minute cryptographically signed Ed25519 OpenSSH certificates bound to hardware WebAuthn tokens.

NIST: PROTECT • MITRE: TA0001, TA0004
$ alaskagate grant --user sec-operator --ttl 15m
alaskaledger PORT 8090

Tamper-Proof Merkle EVTX Log Shipper

Cryptographically chains Windows Event Logs (EVTX 1102, 4624, 4688) into append-only SHA-256 Merkle trees. Instant tripwire alerting if logs are cleared by malware.

NIST: GOVERN / DETECT • MITRE: TA0005
$ alaskaledger verify-chain --integrity
alaskadrill PORT 8085

Autonomous MITRE Purple Team Emulation

Simulates benign adversary TTPs (T1059, T1078, T1053) in volatile memory to continuously verify EDR readiness with zero residue and zero host damage.

NIST: IDENTIFY • MITRE: Full 14-Tactic Spectrum
$ alaskadrill run-all --verify
alaskabeacon PORT 8070

Subnet Attack Surface & Rogue Asset Sweeper

High-speed concurrent subnet scanner auditing open TCP/UDP ports, identifying unmanaged shadow IT, and pinpointing perimeter exposure across enterprise enclaves.

NIST: IDENTIFY • MITRE: TA0043, TA0007
$ alaskabeacon sweep --subnet 192.168.1.0/24
alaskasbom PORT 8095

C-SCRM Supply Chain & Binary Inspector

Audits executable binaries (PE/ELF) for ASLR, DEP, SafeSEH, Authenticode signatures, and exports CycloneDX 1.5 Software Bill of Materials (SBOM) for compliance.

NIST: GOVERN / IDENTIFY • MITRE: TA0042
$ alaskasbom inspect --file target.exe --cyclonedx
alaskasigma PORT 8065

Sigma SIEM Detection & Query Translator

Embeds 20+ pre-compiled Sigma threat rules and dynamically translates them into Azure Sentinel KQL, Splunk SPL, PowerShell, and Grep queries on the fly.

NIST: DETECT • MITRE: TA0002, TA0003
$ alaskasigma translate --rule PROC_01 --format kql
alaskadecode PORT 8055

CyberChef Pure-Rust Forensic Decoder

Deobfuscates malicious scripts and payloads in pure Rust: multi-layer Base64, UTF-16LE, XOR key brute-forcing, defanging, and Shannon entropy analysis.

NIST: IDENTIFY / DETECT • MITRE: TA0002
$ alaskadecode analyze --payload "SQBFAFgA..."
alaskahunt PORT 8075

Process Tree Obfuscation & LOLBAS Hunter

Inspects active process trees for parent-child spoofing (e.g. Word spawning PowerShell), Living-off-the-Land binary abuse, and high-entropy command lines.

NIST: DETECT / RESPOND • MITRE: TA0002, TA0005
$ alaskahunt scan --entropy-threshold 4.0
alaskaairlock PORT 8098

Atomic Host Network Isolation Barrier

Instantly severs all inbound and outbound network connectivity using native Windows Filtering Platform (WFP) while preserving sovereign telemetry and auto-release timers.

NIST: RESPOND • MITRE: Containment Barrier
$ alaskaairlock isolate --duration 300s
alaskacopilot PORT 8062

Air-Gapped AI Tactical Threat Advisor

Provides offline contextual threat analysis for MITRE TTPs and regulatory gaps. Zero cloud calls, running entirely on local CPU tensors via Hugging Face Candle.

NIST: ACTIVE DEFENSE • MITRE: Advisory
$ alaskacopilot explain --ttp T1003.001
alaskacase PORT 8082

DFIR Case Docket & Merkle Evidence Vault

Manages forensic incident investigations, seals evidentiary artifacts into encrypted vaults, and produces court-admissible chain-of-custody verification logs.

NIST: RESPOND / FORENSICS • Legal Chain-of-Custody
$ alaskacase new --title "Ransomware Triage" --seal