🥷 Operational Security (OPSEC)¶
Siyarix includes some basic OPSECManager and StealthEngine features to help configure your tools for quieter scans when doing authorized testing.
Info
These OPSEC features are meant for authorized engagements to avoid setting off noisy alerts while you work.
🛡️ Core OPSEC Controls¶
🧅 TOR Routing¶
You can route outbound Siyarix connections (including HTTP/HTTPS tool traffic) through TOR:
🔒 DNS over HTTPS (DoH)¶
To use encrypted DNS queries:
⏱️ Traffic Jitter¶
Add simple jitter to your requests:
🎭 User-Agent Rotation¶
Siyarix can cycle through browser profiles:
🐌 Request Pacing¶
Control your scanning speed to avoid tripping basic rate limits:
👻 The Stealth Engine (stealth.py)¶
The StealthEngine bundles these settings into easy "Evasion Levels".
| Level | Jitter | UA Rotation | DoH | Pacing |
|---|---|---|---|---|
| None | ❌ | ❌ | ❌ | ❌ |
| Light | ✅ | ✅ | ✅ | ✅ |
| Medium | ✅ | ✅ | ✅ | ✅ |
| Heavy | ✅ | ✅ | ✅ | ✅ |
🎯 Decoy Traffic¶
Siyarix can optionally generate background "noise" by browsing benign websites.
[decoy]
enabled = true
targets = ["https://example.com", "https://google.com"]
interval_seconds = 30
🔥 Session Burning¶
When you're done, you can clear your local session logs and history.
📜 Audit Logging Note¶
Warning
While Siyarix attempts to be quiet on the network, it logs your actions locally in the audit log for your own accountability.