Paul Armstrong
paul2495.bsky.social
Paul Armstrong
@paul2495.bsky.social
Cybersecurity learner building Syd — an offline, fully local AI assistant for pentesting, DFIR, malware triage, YARA workflows + tool analysis.
Privacy-first. No cloud. Everything stays on device.
Been experimenting with offline malware triage using YARA + a fully local model for reasoning.

Here’s a quick clip of the workflow scan parse interpret all on-device with no cloud dependencies.

Curious if anyone else is trying local AI for DFIR or malware analysis.

youtu.be/8dQV3JbLrRE
yara detection
YouTube video by Paul Armstrong
youtu.be
November 23, 2025 at 8:04 PM
Hi just join
I’ve been working on a fully offline AI assistant for cybersecurity work (pentesting, DFIR, malware triage, tooling analysis).

It runs local models + a vector DB and keeps everything on-device no cloud, no APIs.

Looking forward to connecting with the self-hosted / infosec crowd here.
November 23, 2025 at 7:04 PM