Nick — Behavioral Threat Scoring Engine
Live · v1.0On-device CoreML threat correlation for macOS
An open-source behavioural threat scoring engine built into Nick. Six independent monitors feed a 30-second sliding ThreatCorrelator, which outputs a 0–1 score via CoreML. Foundation Models generates plain-English alert explanations — all on-device, zero cloud dependency.
What we built
- •ThreatCorrelator: 30-second sliding window across six monitor signals → CoreML 0–1 behavioural score
- •libyara + CoreML hybrid scanner — signature-based and behavioural YARA heuristics
- •Foundation Models on-device LLM generates zero-cloud alert explanations in plain English
- •Interactive threat scoring simulator — try 6 preset attack scenarios and 24 manual signal toggles