Hub
rules-claude-mythos
rules-claude-mythos
v2 public VerifiedClaude-mythos
Advanced security hardening rules for sophisticated AI agent capabilities. These rules defend against memory exploitation, network egress threats, and Living off the Land abuse.
Severity
25 error
6 warn
0 info
demo.cast
Advanced security hardening rules for sophisticated AI agent capabilities. These rules defend against memory exploitation, network egress threats, and Living off the Land abuse.
Rules index
31 governance rules
Indexed from the repository's .rules files, grouped by technology. Expand any rule to read the raw source.
00-sensitive-paths
ask-diagnostic-tools
error
ask
Rule source requires an active
Pro or Enterprise subscription.
block-git-config-read
error
block
Rule source requires an active
Pro or Enterprise subscription.
block-proc-access
error
block
Rule source requires an active
Pro or Enterprise subscription.
block-proc-read
error
block
Rule source requires an active
Pro or Enterprise subscription.
block-ssh-keys
error
block
Rule source requires an active
Pro or Enterprise subscription.
01-anti-concealment
block-git-history-rewrite
error
block
Rule source requires an active
Pro or Enterprise subscription.
block-governance-tampering
error
block
Rule source requires an active
Pro or Enterprise subscription.
block-governance-write
error
block
Rule source requires an active
Pro or Enterprise subscription.
02-network-egress
ask-network-egress
warning
ask
Rule source requires an active
Pro or Enterprise subscription.
block-pastebins
error
block
Rule source requires an active
Pro or Enterprise subscription.
03-destructive-ops-hitl
ask-destructive-fs
error
ask
Rule source requires an active
Pro or Enterprise subscription.
ask-destructive-process
error
ask
Rule source requires an active
Pro or Enterprise subscription.
ask-destructive-sql
error
ask
Rule source requires an active
Pro or Enterprise subscription.
ask-migration-write
warning
log
Rule source requires an active
Pro or Enterprise subscription.
04-custom-exploit-compilation
ask-foreign-compilers
warning
ask
Rule source requires an active
Pro or Enterprise subscription.
ask-suspicious-compilation
warning
ask
Rule source requires an active
Pro or Enterprise subscription.
deny-exploit-headers
error
block
Rule source requires an active
Pro or Enterprise subscription.
05-lotl-abuse
ask-suspicious-downloads
warning
ask
Rule source requires an active
Pro or Enterprise subscription.
block-base64-execution
error
block
Rule source requires an active
Pro or Enterprise subscription.
block-lotl-shells
error
block
Rule source requires an active
Pro or Enterprise subscription.
06-kernel-and-injection
deny-kernel-modules
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-ld-preload
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-ptrace-dmesg
error
block
Rule source requires an active
Pro or Enterprise subscription.
07-advanced-memory-threats
deny-cred-smashing
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-jit-spraying
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-kaslr-defeats
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-slub-spraying
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-unsafe-ffi
error
block
Rule source requires an active
Pro or Enterprise subscription.
08-advanced-network-threats
ask-ipset-overflows
warning
ask
Rule source requires an active
Pro or Enterprise subscription.
deny-oob-socket-abuse
error
block
Rule source requires an active
Pro or Enterprise subscription.
deny-rpc-chunking
error
block
Rule source requires an active
Pro or Enterprise subscription.
Version metadata
Published metadata
The hash-locked record of this published ruleset. When source contents change, the maintainer resyncs and the version bumps.
- Version
- v2
- Published
- Apr 8, 2026
- Source commits
- 0
- Synced
- Oct 4, 2026
- Hash
1f3731c8cdda07cf0f7b2ce4054ce4430d5cde00928c396f536320ccd7e3c93a- Signature
- Verified (publisher key)
- Tested with
- claude-code@current
- Plan
- Starter (free)
- Visibility
- Public
Source history
Recent commits
Latest commits touching rulesets/rules-claude-mythos/.sigmashake/rules in sigmashakeinc/rules/rulesets/rules-claude-mythos. The published version only bumps when a maintainer resyncs.
No commit history available.