Skip to content
KitploitKITPLOIT
工具博客
Log in
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
c4-meta-system — 生产级AI防御,提供7层防护:数学约束、对象能力访问、分布式O2共识、SVETILO伦理。首个开源ThoughtVirus防御方案。BSL 1.1。 | Kitploit
工具/GitLabGitLab/cognitive-functors/c4-meta-system
身份验证与授权防御工具机器学习红队AI 安全异常检测对抗性攻击
GitLabcognitive-functors/c4-meta-system

c4-meta-system

生产级AI防御,提供7层防护:数学约束、对象能力访问、分布式O2共识、SVETILO伦理。首个开源ThoughtVirus防御方案。BSL 1.1。

查看仓库
171个月前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

C4-META 系统 v1.0.0(研究原型)

用于多层 AI 防御的研究原型:C4 可解释性、集成分类器、反混淆、O₂ 安全引擎、ThoughtVirus 防御和 SVETILO 价值对齐。Alpha 级——已完成内部验证,外部审计待进行。

License: BSL 1.1 Docker ThoughtVirus SVETILO Site AoC

版本: 1.0.0-alpha | 状态: 研究原型 | 许可证: BSL 1.1(非生产环境免费;生产环境 → 商业授权)

作者: I.G. Selyutin。C4-META 模型合著者: N.I. Kovalev。
产品定位(2026-08): 基于 Apache-2.0 c4protocol 构建的 更厚重的多层 C4 防御栈(集成、O₂ 脚手架、红队实验室)的 BSL 研究/商业深度原型。
并非第二个开放协议。并非经过认证的生产级 AGI 防御。并非“v8 FINAL”。
诚实性审计:docs/AUDIT-c4-meta-system-2026-08.md。
升级路径:docs/PROMOTE-FROM-PROTOCOL.md(消费/固定 c4protocol;不将集成内容转储到精简 SDK 中)。
GitLab Pages = public/(EN + public/ru/)。开放运行时凭证:在 c4protocol 中执行 make conformance。


🎯 概述

C4-META 系统是一个用于多层 AI 防御的研究原型,实现了:

4 层防御架构

Input Sanitization → Semantic Analysis → Behavioral Analysis → Meta-Observer (O₂)
  • 第 1 层 — 输入净化:反混淆流水线(leetspeak、90+ Unicode 同形字符、零宽字符、RTL 覆盖、Base64/ROT13)
  • 第 2 层 — 语义分析:4 分类器集成投票(ONNX BERT + RuleBased + Heuristic + LLM Semantic)
  • 第 3 层 — 行为分析:AoC 防御模块、模式匹配、轨迹异常检测
  • 第 4 层 — 元观察器(O₂):转移熵、BFT 共识、语义纠缠、因果图分析

核心能力

  • 4 分类器集成投票 — ONNX BERT + RuleBased(80+ 模式)+ Heuristic(32 个危险词)+ LLM Semantic(Ollama/DeepSeek)
  • 双分类器 OR 逻辑:BERT 语义 + RuleBased 关键词分类器,带 OR 回退——无单点故障
  • 16 个 AoC 防御模块 — 11 个经典 + 5 个扩展(启发式/实验性;并非声称“所有多智能体故障均已解决”)
  • ThoughtVirus 防御 — 两层防御(正则模式检测 + C4 轨迹分析)。灵感来自 arXiv:2603.00131(多智能体安全倡议;非 Microsoft)(https://arxiv.org/abs/2603.00131)
  • SVETILO — 通过 value_verification.py 实现的 7 个启发式印章(非训练型伦理模型)
  • C4 可解释性(T,S,A) — 通过量化 ONNX 模型进行认知坐标分析(737KB,约 50ms)
  • O₂ 脚手架 — 研究模块;BFT 路径为咨询性模拟,并非生产级拜占庭容错
  • 反混淆 — Leetspeak、90+ Unicode 同形字符、零宽字符、RTL 覆盖、Base64/ROT13
  • 红队实验室 — 科学对照/处理设计、Fisher 精确检验、Cohen's d、自助法置信区间
  • 阈下内容扫描器 — 检测 token→概念映射
  • 多轮越狱检测 — 基于会话的升级跟踪
  • Docker/K8s 部署 — 容器化多节点部署

🏗 架构

┌──────────────────────────────────────────────┐
│  LAYER 1: Input Sanitization                 │
│  Deobfuscation (homoglyphs, leetspeak, etc.) │
├──────────────────────────────────────────────┤
│  LAYER 2: Semantic Analysis                  │
│  4-Classifier Ensemble: ONNX_BERT (~50ms)    │
│  + RuleBased + Heuristic + LLM_SEMANTIC      │
│  Dual classifier OR-logic (BERT+RuleBased)   │
├──────────────────────────────────────────────┤
│  LAYER 3: Behavioral Analysis                │
│  16 AoC Defense Modules (11 original + 5     │
│  extended), Pattern matching, Trajectory     │
│  anomaly detection, ThoughtVirus defense     │
├──────────────────────────────────────────────┤
│  LAYER 4: Meta-Observer (O₂)                 │
│  Transfer entropy, BFT consensus,            │
│  semantic entanglement, causal graphs,       │
│  Kill-Switch, SVETILO value verification     │
├──────────────────────────────────────────────┤
│  C4 Core Engine (Z₃³)                        │
│  pipeline_orchestrator.py, event_bus.py      │
│  c4_meta_monitor.py — self-awareness deque  │
├──────────────────────────────────────────────┤
│  Defenses: Anti-Deadlock, Anti-Emergence,    │
│  Anti-Hijack, Circuit Breaker, O₂ Kill-Switch│
├──────────────────────────────────────────────┤
│  Red Team Lab: AOC scenarios, experiment     │
│  runner, LLM client, adapters                │
├──────────────────────────────────────────────┤
│  Routing: Smart Router, Quarantine,          │
│  Antifragile Scoring (capped growth)         │
└──────────────────────────────────────────────┘

4 个分类器投票:

  • ONNX_BERT:通过量化模型(737KB,约 50ms)计算 C4 认知坐标(T,S,A)
  • RuleBased:80+ 正则模式,覆盖注入、越狱、角色扮演、权限绕过
  • Heuristic:32 个危险词 + C4 轴分析 + 语义密度指标
  • LLM_SEMANTIC:Ollama/DeepSeek——语义攻击分类(约 300ms)

双分类器 OR 逻辑:BERT + RuleBased 作为主门控,带 OR 回退——只要任一分类器标记输入,即进入防御层。任何单一分类器都不会成为瓶颈。


📁 项目结构

c4-meta-system/
├── v4_1/
│   ├── core/
│   │   ├── pipeline.py                  # Main entry points (re-exports)
│   │   ├── __main__.py                  # HTTP server entrypoint for Docker
│   │   ├── pipeline_stages.py           # Individual processing stages
│   │   ├── pipeline_orchestrator.py      # Main orchestration (thread-safe)
│   │   ├── result_factory.py             # Standardized C4v4Result factory
│   │   ├── event_bus.py                  # Organic event bus (atexit cleanup)
│   │   └── c4_meta_monitor.py            # Z³ self-awareness (deque bounded)
│   ├── security/
│   │   ├── o2_engine.py                  # O₂ defense (kill-switch self-DoS fixed)
│   │   ├── explainable_o2.py             # O₂ explainability (sampling inverted)
│   │   ├── o2_shared.py                  # Window structures (@mention comms)
│   │   ├── semantic_detector.py          # Concept graphs (normalized entanglement)
│   │   ├── secure_debug_endpoints.py     # Debug endpoints (UTC + rate limits)
│   │   ├── hardening.py                  # Model signing / admin token verification
│   │   ├── behavioral_profiler.py        # Drift detection (thread-safe singleton)
│   │   ├── distributed_o2.py             # SQLite/Redis backend (BEGIN IMMEDIATE)
│   │   ├── swarm_orchestrator.py         # Anti-virus swarm
│   │   └── ...
│   ├── defenses/
│   │   ├── anti_deadlock.py              # Resource deadlock prevention
│   │   ├── anti_emergence.py             # State convergence (async release fixed)
│   │   └── ...
│   ├── redteam/
│   │   ├── orchestrator.py              # Main orchestrator (target_callback parsing)
│   │   ├── scenario_manager.py           # AOC scenarios management
│   │   ├── adapters/                     # LLM backend adapters
│   │   ├── experiment_executor.py        # Async execution (FPR logic fixed)
│   │   ├── experiment_services.py       # Service locator
│   │   ├── experiment_runner.py         # Web UI + REST API
│   │   ├── llm_client.py                 # Async-safe LLM client (empty choices guarded)
│   │   └── ...
│   ├── classifiers/                      # 4-classifier ensemble
│   ├── config/                           # Configuration management
│   ├── access/                           # Access control
│   ├── explainability/                   # C4 explainability
│   ├── learning/                         # Learning loop
│   ├── plugins/                          # Plugin system
│   ├── quarantine/                       # Quarantine management
│   ├── router/                           # Smart routing
│   ├── scoring/                          # Antifragile scoring
│   └── tests/                            # 240 tests (19 test files)
├── formal/                               # TLA+ specifications
├── models/                               # ONNX model + tokenizer
├── archive/Dockerfile.prepared          # Multi-stage production build (archived)
├── Dockerfile.distroless                # Distroless-ready builder pattern
├── archive/docker-compose.yml.prepared  # Full stack (Ollama + UI + Monitoring) (archived)
├── .dockerignore                        # Security-hardened exclusion list
├── infra/k8s/                           # Kubernetes manifests (hardened)
└── README.md                            # This file

🐳 Docker 部署

该系统已完全为容器化做好准备,并具备感知环境的配置。

部署选项:

# Full stack (C4-META + Ollama + UI)
docker compose --profile experiment up -d

# Build image
docker build -t c4-meta-system -f archive/Dockerfile.prepared .
下载工具