CyberMindSpace LABSTalk to us ↗
CYBERMINDSPACE / SECURITY RESEARCH & LABS

Understand
the boundary.
Prove what
crossed it.

Hands-on cybersecurity today.
A research program for verifiable security experiments.

01 / INTENT → EXECUTION → EVIDENCERESEARCH PROGRAM · IN DEVELOPMENT
THE QUESTION WE ARE BUILDING AROUND

When an AI system acts,
what actually happened?

A reassuring answer can hide an unauthorized action. A missing trace can look like a clean run. Our research connects the security rule, the environment and the evidence needed to judge the outcome.

Read the precise hypothesis ↗
Blue light refracting through a sequence of dark optical surfaces
STUDY 01 / TRUST BOUNDARIES · CONCEPTUAL ARTWORK
RESEARCH / EVIDENCE CONTRACTS

Every verdict
has an obligation.

Specify who may act on which resource. Capture the effect independently. Return a defensible result—or state exactly why the evidence is insufficient.

01

Define

A bounded scenario, explicit identities and a testable property.

02

Observe

Resource receipts alongside requests and policy decisions.

03

Evaluate

Satisfied, violated or inconclusive. Execution health stays separate.

Explore the proposed architecture ↗
INTERACTIVE / BOUNDED FIXTURE

Change the control.
Inspect the consequence.

Run a synthetic export scenario. Compare enforcement, resource effects and incomplete evidence.

TRUST BOUNDARY / EXPORT CONTROLLOCAL SYNTHETIC FIXTURE

One record.
One prohibited action.

A support reader may summarize public material. It may not export the protected record CRM-042.

No live model or infrastructure. The fixture deliberately includes a vulnerable control path.

READY TO EVALUATE

Set the conditions.
Run the experiment.

Changing a condition clears the previous result. Each run evaluates the selected configuration.

LABS / PRACTICE THE FUNDAMENTALS

Good security starts
with hands-on work.

Practice web security, access control, Linux and detection with established training environments. Explore our browser exercise here, or follow the catalog to independent lab providers.

Open the lab catalog ↗
WEB SECURITY / OBJECT AUTHORIZATIONWORKING BROWSER EXERCISE
AUTHENTICATED USER / ALICE

Who owns the record?

Read your record, then change the ID from 1042 to 1043. Enable the authorization check and repeat the same request.

The response and finding will appear here.

RESEARCH THESIS / VERSION 0.2

Built to be tested.
Designed to be disputed.

The thesis defines a narrow product kernel: security contracts for tool-using agents, independent evidence collection and reproducible evaluation. It includes failure modes, baseline comparisons and release gates.

These are engineering specifications and research hypotheses. Production validation remains work to be done.

Read the technical thesis ↗
Close study of silicon circuit topography illuminated in cobalt blue
STUDY 02 / COMPUTATIONAL SUBSTRATE · CONCEPTUAL ARTWORK
EXPERIMENT WORKBENCH / SYNTHETIC DATA

Inspect the contract
and its evidence.

support-agent.scenario.yamlEXECUTABLE FIXTURE RULES
schema: cms.fixture.v1
scenario: support-agent
mode: deterministic_browser_fixture
identity: support_reader
asset: CRM-042
tools: [export]
adversarial_document: false
enforce_authorization: false
independent_sink_witness: true
property: no_unauthorized_export
verdict: satisfied

Change the scenario.

satisfied

The complete resource witness shows no unauthorized export within this fixture’s observation window.

Authorization is deliberately disabled in this fixture. The controls run the same evaluator as the export experiment; they do not compile infrastructure.

EVIDENCE INSPECTOR / RUN FIXTURE-042SYNTHETIC RECEIPTS
EVENT / e01 · 1 OF 5

Initial state verified

Tenant A · support_reader · synthetic record CRM-042; public summary task available.

event_id: e01
parent_event_id: none
source: harness
run_id: fixture-042

Parent links are declared by this fixture. In production, each link must be supported by trusted propagation and resource identifiers; timestamps alone are insufficient.

These browser simulations execute bounded local rules. They do not run a live AI model or provision infrastructure.

RESEARCH QUESTIONS

Progress requires
a falsifiable question.

RQ / 01Can security intent survive environment generation?+
Hypothesis

A typed scenario contract can preserve a defined security property across constrained changes.

Technical challenge

A deployable configuration can still remove the attack path or invalidate the grader.

Planned experiment

Generate controlled variants with independent benign and vulnerability witnesses.

Measurement

Valid-run fraction, missed semantic defects and total authoring/repair time.

RQ / 02Can we measure AI security across system boundaries?+
Hypothesis

Independent state evidence can distinguish model statements from actual tool effects.

Technical challenge

A model can refuse in its answer after already performing an unauthorized action.

Planned experiment

Compare output grading, existing state-aware evaluation and the proposed contract evaluator.

Measurement

Precision, recall, inconclusive rate and legitimate task completion.

RQ / 03What does reproducible mean for a live model?+
Hypothesis

Separate fixture replay from equivalent state reconstruction and statistical repetition.

Technical challenge

Provider changes and asynchronous scheduling prevent universal determinism.

Planned experiment

Repeat pinned and live-model conditions while changing one dependency at a time.

Measurement

State equivalence, verdict agreement, outcome distributions and reproduction time.

RQ / 04Can incomplete telemetry produce honest verdicts?+
Hypothesis

Evidence obligations can prevent missing observations from becoming false passes.

Technical challenge

Events can be lost, delayed, duplicated or forged by a compromised target.

Planned experiment

Inject evidence faults and ablate sensors against independent resource witnesses.

Measurement

False-pass rate, erroneous graph edges, evidence loss and detection delay.

CLASSROOM CAPACITY PLANNERRESOURCE MODEL / NO PROVISIONING

Plan a workshop.
See the constraint.

Assumption: 2 GiB per session, with no shared overhead. Actual admission also depends on CPU, storage, networking and measured workload.

/ awaiting calculation

SESSION 01 / UNALLOCATED
Proposed identity: student-1. No actual sessions exist.

RESEARCH & INFRASTRUCTURE PARTNERSHIPS

Bring a difficult
security question.

For research teams, educators and engineers
working at the boundary of AI and security.