Rene Fichtmueller
9c0964746f
fix: remove standalone output mode to match PM2 next-start deploy
...
changelog-draft / changelog-draft (push) Failing after 1s
security-scan / secret-scan (push) Successful in 3s
next.config.ts set output:standalone but ecosystem.config.js/deploy-213.sh
run next start against the full checkout, which next start does not
support in standalone mode (warns and skips the standalone server
entrypoint). Also syncs package-lock.json version field to package.json
(0.1.0 -> 0.5.0), which had drifted out of sync.
2026-07-18 09:39:39 +02:00
Rene Fichtmueller
a952fe3fee
feat: ShieldX v0.3.0 — UnicodeScanner (L5), DNS Covert Channel rules, ATLAS v5.4 mappings
...
- Layer 4 EntropyScanner: Shannon entropy, Base32/Base64 detection, CVE-2025-55284
ping/nslookup exfil, EchoLeak markdown pattern, DNS tunneling (iodine/dnscat)
- Layer 5 UnicodeScanner: ASCII Smuggling (U+E0000 Tags Block), Variant Selectors,
Zero-Width steganography, CamoLeak image-ordering (CVE-2025-53773), homoglyphs,
BiDi override, high-entropy URL params
- 30 DNS covert channel rules (dns-001 to dns-030)
- ATLASMapper: 29 techniques (ATLAS v5.4.0 Feb 2026), added AML.T0062 (Agent Tool
Invocation), AML.TA0015 (C2 tactic), memory poisoning, multi-agent trust,
CamoLeak, Unicode steganography mappings
- Rule count: 72 → 102
- Build: tsup 316ms, zero TypeScript errors
2026-03-31 16:32:16 +02:00