sodejm/attack-path-workbench
Offline evidence-linked attack-path analysis of user-supplied exports.
Assess evidenced blast radius and potential CIA consequences while keeping business ratings unresolved without an approved impact profile.
Register and validate local attack-path export files with immutable hashes, scope, provenance, and quarantine accounting.
Prepare evidence-cited ATT&CK behavior mapping, Attack Flow representation, and blocked Wiz graph query intents.
Produce a reproducible offline attack-path report and local remediation ledger with citations, gaps, and closure criteria.
Apply bounded specialist review to ambiguous path, impact, technique, action, and claim judgments without overriding deterministic gates.
Trace conditional routes from a supplied finding to a user-defined crown jewel in an evidence-linked local graph.