ALERTA CRQC · Probabilidad del 17–34% de CRQC antes de 2034 (ODNI) · Los sistemas en producción hoy seguirán expuestos cuando llegue CRQC ALERT · 17–34% probability of cryptographically relevant quantum computer before 2034 (ODNI) · Systems deployed today will still be exposed when it arrives
SISTEMA OPERATIVO · NIST FIPS 203/204/205 · DEFENSA 24/7 SYSTEM ONLINE · NIST FIPS 203/204/205 · 24/7 DEFENSE

El ordenador cuántico
no negocia.
AEGIS tampoco.

The quantum computer
doesn't negotiate.
Neither does AEGIS.

Sistema autónomo de ciberdefensa post-cuántica. Detecta, analiza y neutraliza sin intervención humana. Mientras tus competidores planean migrar, AEGIS ya está desplegado.

Autonomous post-quantum cyber defense system. Detects, analyzes and neutralizes without human intervention. While your competitors plan to migrate, AEGIS is already deployed.

// No es una librería. No es un concepto. Es defensa activa en producción 24/7 · NIST FIPS 203 · 204 · 205 · NSA CNSA 2.0

// Not a library. Not a concept. Active defense in production 24/7 · NIST FIPS 203 · 204 · 205 · NSA CNSA 2.0

Solicitar evaluación de amenazas Request threat assessment Ver AEGIS en acción → See AEGIS in action →
946/1000
Escenarios internos superados
Internal scenarios passed
0
Fallos de seguridad
Security failures
3
Estándares NIST activos
Active NIST standards
<2ms
Latencia de detección
Detection latency
// estándares PQC implementados y marco regulatorio de referencia
// PQC standards implemented and reference regulatory landscape
NIST FIPS 203
NIST FIPS 204
NIST FIPS 205
NSA CNSA 2.0
CISA PQC
EU NIS2
RPI Nº 8NT20260502456
⚠️
¿Buscas una librería criptográfica? AEGIS Defense no es eso. Looking for a cryptographic library? AEGIS Defense is not that.

Somos un sistema autónomo de ciberdefensa desplegado en producción — no una SDK, no una API, no un módulo npm. Si necesitas librerías PQC para desarrollo, busca en otra parte. Si necesitas defensa activa, estás aquí.

We are an autonomous cyber defense system deployed in production — not an SDK, not an API, not an npm module. If you need PQC libraries for development, look elsewhere. If you need active defense, you're in the right place.

// capacidad autónoma
// autonomous capability

Neutralización sin intervención humana.

Neutralization without human intervention.

AEGIS no espera a que un analista revise una alerta. Decide, actúa y documenta en tiempo real. Sin latencia humana en el ciclo de defensa.

AEGIS doesn't wait for an analyst to review an alert. It decides, acts and documents in real time. No human latency in the defense cycle.

AEGIS · MONITOR TÁCTICO · EN VIVO AEGIS · TACTICAL MONITOR · LIVE
19:42:07[INIT]Sistema arrancado — 3 capas activasSystem started — 3 active layers
19:42:08[SHIELD]ML-KEM-1024 OK
19:42:09[TWIN]Gemelo cuántico sincronizadoQuantum twin synchronized
19:43:15[DETECT]SRC 45.227.254.170 — sondeo PQPQ probe
19:43:15[AUTO]Análisis iniciado · 0 alertas enviadasAnalysis started · 0 alerts sent
19:43:16[BLOCK]IP bloqueada · DROP aplicadoIP blocked · DROP applied
19:43:16[SIGN]Evento añadido a la cadena forense SHA-256Event added to SHA-256 forensic chain
19:43:16[LEARN]Vector registrado en memoriaVector stored in memory
19:44:02[STATUS]Amenaza: LOW · Uptime: 99.9%Threat: LOW · Uptime: 99.9%

Ciclo de defensa <1 segundo

Defense cycle <1 second

Detección, análisis, decisión y bloqueo en un único ciclo automático. Sin tickets, sin escalado, sin latencia de respuesta humana.

Detection, analysis, decision and blocking in a single automatic cycle. No tickets, no escalation, no human response latency.

🧠

Aprendizaje continuo

Continuous learning

Cada vector de ataque detectado enriquece el modelo. AEGIS mejora su defensa con cada incidente, sin intervención del operador.

Every detected attack vector enriches the model. AEGIS improves its defense with each incident, without operator intervention.

🔏

Trazabilidad forense

Forensic traceability

Cada evento queda en una cadena forense con hash SHA-256 que detecta cualquier alteración posterior. ML-DSA-87 está implementado y verificado en el arranque; extender la firma a cada evento es trabajo futuro, no el estado actual.

Every event is recorded in a SHA-256 hash chain that detects any later tampering. ML-DSA-87 is implemented and verified at startup; extending the signature to every event is future work, not the current state.

🌐

Gemelo cuántico simulado

Simulated quantum twin

Nombre interno de la réplica de estado A/B/C/D que corre dentro del mismo proceso Python — no es computación cuántica ni una máquina separada. "Cuántico" se refiere a que sus claves usan criptografía post-cuántica.

Internal name for the in-process A/B/C/D state replica — not quantum computing, not a separate machine. "Quantum" refers to its keys using post-quantum cryptography.

// la amenaza en cifras
// the threat in numbers

La ventana de migración se cierra sola.

The migration window closes on its own.

No es una hipótesis académica. Es una cuenta atrás con fecha publicada por agencias de inteligencia occidentales.

This is not an academic hypothesis. It is a countdown with dates published by Western intelligence agencies.

34%
Probabilidad máxima de CRQC antes de 2034. Fuente: ODNI (Director de Inteligencia Nacional de EE.UU.).
Maximum probability of CRQC before 2034. Source: ODNI (US Office of the Director of National Intelligence).
3–7 años/yrs
Tiempo medio de migración criptográfica empresarial. Hay que empezar hoy para acabar a tiempo.
Average enterprise cryptographic migration time. You need to start today to finish in time.
$10.5T
Coste estimado del cibercrimen global en 2025. La computación cuántica multiplica este vector.
Estimated cost of global cybercrime in 2025. Quantum computing exponentially multiplies this vector.
2024
Año de publicación de FIPS 203/204/205. NSA ya los exige en sistemas clasificados.
Year FIPS 203/204/205 were published. NSA already mandates them for classified systems.
// amenaza activa
// active threat

Harvest now, decrypt later

Harvest now, decrypt later

Adversarios estatales capturan tráfico cifrado hoy para descifrarlo con hardware cuántico futuro. Tus datos de 2025 en riesgo en 2030.

State adversaries capture encrypted traffic today to decrypt it with future quantum hardware. Your 2025 data at risk in 2030.

// matemática resuelta
// solved mathematics

RSA y ECC: tiempo contado

RSA and ECC: days numbered

El algoritmo de Shor rompe RSA y ECC en tiempo polinomial. Publicado en 1994. El hardware converge.

Shor's algorithm breaks RSA and ECC in polynomial time. Published in 1994. The hardware is converging.

// hardware disponible
// available hardware

Procesadores cuánticos reales hoy

Real quantum processors today

IBM Quantum, Google y Amazon Braket operan hoy. La capacidad de ataque cuántico crece cada trimestre.

IBM Quantum, Google and Amazon Braket operate today. Quantum attack capability grows every quarter.

// regulación en marcha
// regulation underway

NIS2 y CNSA 2.0 no esperan

NIS2 and CNSA 2.0 won't wait

EU NIS2, NSA CNSA 2.0 y CISA PQC ya exigen o recomiendan PQC para infraestructura crítica.

EU NIS2, NSA CNSA 2.0 and CISA PQC already mandate or strongly recommend PQC for critical infrastructure.

// situación actual vs aegis defense
// current situation vs aegis defense

Lo que tienes hoy no sobrevivirá al cuántico.

What you have today won't survive the quantum era.

La diferencia entre esperar a que el problema llegue y haberlo resuelto antes de que exista.

The difference between waiting for the problem to arrive and having solved it before it exists.

✕ criptografía clásica
✕ classic cryptography
RSA-2048: vulnerable al algoritmo de Shor con hardware cuántico suficienteRSA-2048: vulnerable to Shor's algorithm with sufficient quantum hardware
ECC-256: misma vulnerabilidad cuántica — la curva elíptica no resisteECC-256: same quantum vulnerability — elliptic curve does not hold
Tráfico TLS capturado hoy: descifrable cuando madure el hardwareTLS traffic captured today: decryptable when hardware matures
Detección reactiva: alerta → analista → decisión → acción. Minutos u horas.Reactive detection: alert → analyst → decision → action. Minutes or hours.
Sin cumplimiento NSA CNSA 2.0, CISA PQC ni NIS2No compliance with NSA CNSA 2.0, CISA PQC or NIS2
✓ aegis defense
✓ aegis defense
+ML-KEM-1024: encapsulación resistente a Shor y Grover — FIPS 203 nivel 5ML-KEM-1024: encapsulation resistant to Shor and Grover — FIPS 203 level 5
+ML-DSA-87: firmas post-cuánticas verificables, resistentes a Shor y Grover — FIPS 204ML-DSA-87: verifiable post-quantum signatures, resistant to Shor and Grover — FIPS 204
+SPHINCS+: basado en hash (variante SHA-2), sin supuestos algebraicos — FIPS 205SPHINCS+: hash-based (SHA-2 variant), no algebraic assumptions — FIPS 205
+Ciclo automático de detección → bloqueo sin intervención humana en el bucleAutomatic detection → blocking cycle, no human in the loop
+Algoritmos alineados con NSA CNSA 2.0, CISA PQC y EU NIS2 — no es una certificación de cumplimientoAlgorithms aligned with NSA CNSA 2.0, CISA PQC and EU NIS2 — not a compliance certification
// núcleo criptográfico
// cryptographic core

Tres estándares NIST. Los mismos que exige la NSA.

Three NIST standards. The same ones the NSA mandates.

No son candidatos ni borradores. Son los estándares finales de agosto 2024, ya en exigencia para sistemas clasificados.

Not candidates, not drafts. These are the final standards from August 2024, already mandated for classified systems.

CAPA 01 / ENCAPSULACIÓN
LAYER 01 / ENCAPSULATION
ML-KEM-1024
NIST FIPS 203 · CRYSTALS-Kyber · NivelLevel 5

Implementado y verificado en el autotest de arranque. Nivel 5 equivale a AES-256 frente a ataques clásicos y cuánticos. El tráfico del proxy hoy es HTTP plano — integrar ML-KEM en el intercambio de sesión es trabajo futuro.

Implemented and verified in the startup self-test. Level 5 is equivalent to AES-256 against both classical and quantum attacks. Proxy traffic today is plain HTTP — wiring ML-KEM into the session handshake is future work.

KEY ENCAPSULATION MECHANISM
CAPA 02 / FIRMA DIGITAL
LAYER 02 / DIGITAL SIGNATURE
ML-DSA-87
NIST FIPS 204 · CRYSTALS-Dilithium · NivelLevel 5

Implementado y verificado en el autotest de arranque. Los eventos forenses hoy se protegen con una cadena de hashes SHA-256 que detecta alteraciones; extender la firma ML-DSA-87 a cada evento es trabajo futuro.

Implemented and verified in the startup self-test. Forensic events today are protected by a SHA-256 hash chain that detects tampering; extending ML-DSA-87 signing to every event is future work.

DIGITAL SIGNATURE ALGORITHM
CAPA 03 / REDUNDANCIA
LAYER 03 / REDUNDANCY
SPHINCS+
NIST FIPS 205 · SHA-2 · Sin álgebraNo algebra

El único estándar post-cuántico sin supuestos algebraicos. AEGIS usa la variante SHA-2 (sphincs_sha2_256s). Resiste incluso si los problemas de retículo resultan vulnerables.

The only post-quantum standard with no algebraic assumptions. AEGIS uses the SHA-2 variant (sphincs_sha2_256s). Holds even if lattice problems turn out to be vulnerable.

HASH-BASED SIGNATURE SCHEME
// despliegue
// deployment

De infraestructura expuesta a defensa activa.

From exposed infrastructure to active defense.

Proceso estructurado para que la transición no interrumpa la operación. Sin migraciones de emergencia, sin downtime.

Structured process so the transition doesn't interrupt operations. No emergency migrations, no downtime.

FASE 01
PHASE 01

Evaluación de superficie

Surface evaluation

Auditoría de la infraestructura criptográfica existente. Qué está en riesgo cuántico, con qué horizonte y qué prioridad de migración.

Audit of existing cryptographic infrastructure. What's at quantum risk, with what time horizon and what migration priority.

FASE 02
PHASE 02

Arquitectura de defensa

Defense architecture

Diseño del despliegue adaptado al stack existente. Integración sin ruptura. Plan de migración por capas.

Deployment design adapted to existing stack. Integration without disruption. Layer-by-layer migration plan.

FASE 03
PHASE 03

Despliegue en producción

Production deployment

Los tres estándares NIST activos. Monitorización autónoma operativa desde el primer minuto de arranque.

All three NIST standards active. Autonomous monitoring operational from the first minute of startup.

FASE 04
PHASE 04

Operación autónoma 24/7

Autonomous 24/7 operation

AEGIS opera sin intervención. Alertas en tiempo real, actualizaciones automáticas, auditoría nocturna autónoma.

AEGIS operates without intervention. Real-time alerts, automatic updates, autonomous nightly audit.

// sectores objetivo
// target sectors

Infraestructura que no puede esperar.

Infrastructure that cannot wait.

Los sectores con mayor exposición cuántica son exactamente los que menos pueden permitirse una brecha.

The sectors with the greatest quantum exposure are exactly those that can least afford a breach.

// MSSP
Proveedores de Seguridad
Security Providers
Diferénciate ofreciendo defensa post-cuántica real mientras los demás siguen con RSA.
Differentiate by offering real post-quantum defense while others stick with RSA.
// BANKING
Sector Financiero
Financial Sector
Transacciones y datos con horizonte de 10+ años protegidos ante harvest-now-decrypt-later.
Transactions and data with 10+ year horizon protected against harvest-now-decrypt-later.
// GOV
Administración Pública
Government
Cumplimiento NIS2, alineación con CCN-CERT y CNPIC. Anticipación a la exigencia regulatoria.
NIS2 compliance, alignment with CCN-CERT and CNPIC. Ahead of regulatory requirements.
// TELECOM
Telecomunicaciones
Telecommunications
Infraestructura crítica con ciclo de vida de décadas. El riesgo cuántico es presente.
Critical infrastructure with a decade-long lifecycle. The quantum risk is present today.
// HEALTH
Sector Sanitario
Healthcare
Datos clínicos con obligación de privacidad de décadas. Los registros de hoy se capturan hoy.
Clinical data with decades-long privacy obligation. Today's records are captured today.
// ENERGY
Infraestructura Crítica
Critical Infrastructure
Vector prioritario de actores estatales con capacidades cuánticas emergentes.
Priority vector for state actors with emerging quantum capabilities.
// validación y propiedad intelectual
// validation and intellectual property

Sistema registrado. Resultados verificables.

Registered system. Verifiable results.

AEGIS Defense no es un concepto — es un demostrador público en funcionamiento 24/7, con propiedad intelectual registrada y resultados de pruebas internas documentados. No es un servicio con SLA empresarial.

AEGIS Defense is not a concept — it is a public demo running 24/7, with registered intellectual property and documented internal test results. It is not an enterprise-SLA service.

RPI Nº 8NT20260502456 — Ministerio de Cultura de EspañaRPI No. 8NT20260502456 — Spanish Ministry of Culture
946/1000 internal scenarios
0 fallos de seguridad0 security failures
611 tests · 100% passing
Producción continua desde marzo 2026Continuous production since March 2026
// internal testing

1.000 escenarios internos

1,000 internal scenarios

10 vectores × 100 variaciones ejecutados como pruebas de componente internas — no es un red-team ni pentest externo contra el proxy real. 946 superados; los 54 restantes fueron degradación de latencia bajo carga extrema, no compromisos de seguridad.

10 vectors × 100 variations, run as internal component-level tests — not an external red-team or pentest against the real proxy. 946 passed; the remaining 54 were latency degradation under extreme load, not security compromises.

// testing

611 tests en CI/CD

611 tests in CI/CD

Suite completa de pruebas automatizadas. 100% passing en cada despliegue. Sin regresiones en producción.

Complete automated test suite. 100% passing on every deployment. No regressions in production.

// uptime

Operación 24/7

24/7 Operation

Servicio systemd con reinicio automático, watchdog cada 5 minutos y auditoría nocturna. Producción continua desde el primer despliegue.

Systemd service with auto-restart, 5-minute watchdog and nightly audit. Continuous production since first deployment.

// propiedad
// ownership

PI registrada en España

IP registered in Spain

Expediente 8NT20260502456 — Ministerio de Cultura. Algoritmos, arquitectura y sistema completo protegidos desde abril 2026.

File 8NT20260502456 — Ministry of Culture. Algorithms, architecture and complete system protected since April 2026.

// primera línea de contacto
// first point of contact

La evaluación de amenazas no tiene coste.

The threat assessment has no cost.

MSSPs, integradores de seguridad e infraestructura crítica que quieren saber exactamente qué exposición cuántica tienen hoy y cómo AEGIS Defense la neutraliza.

MSSPs, security integrators and critical infrastructure operators who want to know exactly what quantum exposure they have today and how AEGIS Defense neutralizes it.

>_ COMPANION PROJECT

AEGIS detecta. ENLIL decide.

ENLIL es el consejo estratégico de AEGIS — 9 modelos de IA deliberando en paralelo, cada decisión firmada con ML-DSA-87. Self-hosted, BYOK, GPL v3.

enlil-council.com → GitHub →