Skip to content
Review Open access

EGIES-AUTO: Autonomous Self-Healing Security System

Manoj Kumar L. Surya Narayana Reddy B G M. N. Thejaswini
Jul 2026 · International Journal of Advanced Research in Science, Communication and Technology · pp. 717 · 0 citations

TL;DR

AEGIES-AUTO demonstrates that effective, autonomous, real-time threat response can be achieved without the overhead normally associated with enterprise-grade security platforms.

Abstract

Cyberattacks are becoming more frequent and sophisticated, and traditional antivirus software is often too slow or ineffective to detect and prevent new threats. Many security setups today still rely on human intervention. The delay this creates gives attackers a window to do serious damage. This shows how important it is to have a system that can detect and neutralize threats automatically, without waiting for human intervention. This paper presents AEGIES-AUTO, an autonomous security system capable of detecting and eliminating cyber threats in real time without any human involvement. The system operates in real time, monitoring all active processes and network connections on a host machine, and responds instantly when it detects suspicious behaviour, such as a reverse shell, a malicious process, or unusual port activity. Its response sequence terminates the offending process, blocks the associated ports, generates a forensic backup of the threat data for subsequent review, captures a screenshot as evidence, and sends instant alerts via email, desktop notifications, and voice messages, all within seconds of detection. AEGIES-AUTO is implemented in Python and provides a web-based dashboard showing live security metrics, threat history, and overall system health. It also features whitelist management to prevent false positives, a quarantine directory for isolating suspicious files and structured report generation for organised documentation. What makes AEGIES-AUTO different from traditional tools is the combination of speed and true autonomy: it doesn't wait for a human response, so threats are neutralised immediately upon detection. The system is realistic security for students, individual users and small organisations that cannot justify the cost of commercial security subscriptions, being lightweight, easy to deploy and free of licensing costs. In summary, AEGIES-AUTO demonstrates that effective, autonomous, real-time threat response can be achieved without the overhead normally associated with enterprise-grade security platforms

Read PDF

Similar papers

Conference Open access Sep 2026

Honeypot-Based Intrusion Detection with SIEM and Automated Response

Cybercrime is on the rise due to an increase in cyberattacks such as brute-force attacks, network scanning, and malware deployment, leading to a greater need for network security monitoring. Traditional systems rely heavily on signatures and alerts and therefore often do not provide valuable insight into the attacker's...

Harudhan Kapoor, Aditya N. Turankar, Mukesh Kawatghare · 0 citations
Open access Jul 2026

A Mathematical Approach for Predictive Cybersecurity in Large-Scale Networks

The theoretical model demonstrates that SPC enables autonomous, self-adjusting network defense capable of preemptively identifying and containing threats before system compromise, and enforce containment with near-zero disruption to normal operations.

Mohan Raj Kumar · 0 citations
Open access Jul 2026

Automated Cyberattack Response System: A Combination of AI and Human Control with Recommendations for Measurable Actions

The findings suggest that combining open-source SIEM, workflow automation, and LLM-based reasoning with human supervision offers a practical, low-cost, and reliable approach for strengthening incident response capability in resource-constrained environments.

Febrian Sulistyo Budi, Bondan Wahyu Pamekas, A. Setiawan · 0 citations
Preprint Aug 2026

Towards Model-based Run-time Cybersecurity: On Control-Flow Anomaly Detection, Attack Identification, and Hardware Monitoring

The proposed combination of control-flow anomaly detection, attack-tree based intrusion identification, and hardware-based monitoring can improve not only anomaly detection, but also the diagnostic precision of attack-tree-based cyber-attack identification.

M. Sachenbacher, Martin Leucker, Alexander Weiss et al. · 0 citations
Open access Jul 2026

SOAR Automation Platform for Cybersecurity Incident Response

An AI-driven Security Orchestration, Automation and Response (SOAR) platform that involves: secure authentication, central monitoring, machine learning-based anomaly detection, Groq AI-driven incident analysis, threat intelligence enhancement, n8n workflow automation, AI chatbot, and automatic reporting is focused on.

Bhumika A R, Jhanavi H N, Prof. Thejaswini M N · 0 citations
Conference Jul 2026

Automatic Cyberattack Detection and Eradication System using Intelligent Network Traffic Analysis

The fast-growing interconnectivity of networks and digital communication platforms, along with extensive information exchange, has made cybersecurity issues in modern computing environments more severe. The expansion of networking infrastructures always results in a massive flow of traffic, thus rendering traditional m...

D.NirmalaDevi, J. K. Jeevitha, P. M et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.