One operating layer.
Ten modules. Zero tool-switching.
Every module is orchestrated through ak-portal SSO, shares one tenant model, and feeds the same AI fabric — so a signal in one module becomes context in all of them.
The ten modules.
Licensed individually or as bundles. All of them arrive pre-integrated — no connectors to buy, no sync jobs to babysit.
Vulnerability management,
discovery to verified close.
A curated multi-engine scanner library is included and operated for you — you don’t license, integrate or run scanners yourself. AI turns their raw output into an action-ready queue.
Coverage
- Network & host — CVE detection across the fleet
- Web app DAST — OWASP Top 10, crawl & fuzz
- Asset discovery — service, port, banner enumeration
- TLS hygiene — cert, cipher and protocol checks
- API fuzzing — endpoint discovery, auth-flaw probing
- Container CVEs — image SBOM and advisory correlation
Intelligence
- Cross-vuln correlation — “these 12 findings share one root cause”
- Auto-deduplication across scanner outputs — one finding, one ticket
- MITRE ATT&CK mapping — TTPs auto-tagged per vulnerability
- Agentic pentest — autonomous, scope-attested
- AI pentest reports — a full engagement narrative from raw findings
Workflow
- Discovery — bundled scans, BYOL, manual import, agent
- Triage — AKL search, severity filters, AI correlation
- Assignment — auto-routed to ak-secops tickets
- Remediation — tracking, retest workflow, evidence capture
- Verification — rescan-on-close, full history audit trail
Three modules, one workflow:
context arrives with the alert.
Signal collection
Tor paste sites, Telegram channels, breach databases and ransomware leak sites, distilled by an NLP pipeline into normalized, severity-scored entities.
Threat intelligence
IOCs, actors and campaigns aggregated from curated feeds and the dark-web pipeline — polled continuously, deduplicated, and matched against your environment.
Auto-enriched SOC
Tickets arrive pre-classified with severity, blast radius and matching IOCs attached, plus an AI narrative your executives can actually read.
// data flow — dark web → intel → SOC ticket → one analyst, full context, every alert
Built like infrastructure,
because it is.
Akula One is a single Rust codebase, server-rendered, orchestrated on lightweight Kubernetes — engineered for the compliance-driven sectors it serves.
| Security posture | How it’s enforced |
|---|---|
| Tenant isolation | Tenant identity enforced at the database query layer in every module — dedicated database and namespace per customer. |
| SQL injection | Compile-time checked queries; AKL compiles to parameterized SQL only. |
| XSS / CSRF | Auto-escaping server templates; double-submit cookies with SameSite. |
| Data at rest | Per-tenant PostgreSQL, encrypted at rest, in the Megalodon Cloud. |
| Operations | Run 24/7 by the Megalodon SOC — ethical-hacker-operated, SLA-backed. |
See it on your data.
A guided walkthrough with the team that built it — and runs it.