Welcome — a portfolio of the cybersecurity products I've designed and built,
spanning process-level network visibility, log management, threat detection,
and post-quantum readiness.
Click a screenshot to visit each product
ยินดีต้อนรับ — หน้านี้รวบรวมผลงานการออกแบบและพัฒนาผลิตภัณฑ์ด้าน
ความมั่นคงปลอดภัยไซเบอร์ ตั้งแต่การมองเห็นเครือข่ายระดับ process,
การจัดการ log, การตรวจจับภัยคุกคาม ไปจนถึงความพร้อมรับมือยุคควอนตัม
คลิกที่ภาพหน้าจอเพื่อเข้าชมแต่ละผลิตภัณฑ์
| AGENTIC AI PENETRATION TESTINGR0 Cyber — Local AI for Pen-testing NEW | |
![]() |
A sovereign, autonomous pen-testing harness — agentic AI that runs on your own infrastructure Harness สำหรับทดสอบเจาะระบบแบบอัตโนมัติ — Agentic AI ที่รันในองค์กรคุณเอง An agentic-AI penetration testing and vulnerability assessment harness that plans, chooses tools, exploits and interprets results like a professional tester — but runs entirely local and offline. Models, data and evidence stay in Thailand under your control. You set the scope and Rules of Engagement; every high-impact action needs human approval, with a kill switch and full audit log. Harness ทดสอบเจาะระบบและประเมินความเสี่ยงด้วย Agentic AI ที่วางแผน เลือกเครื่องมือ โจมตี และตีความผลได้เหมือนผู้ทดสอบมืออาชีพ — แต่รันภายในองค์กรแบบ local/offline ทั้งหมด โมเดล ข้อมูล และหลักฐานอยู่ในประเทศไทยภายใต้การควบคุมขององค์กร คุณกำหนด Scope และ Rules of Engagement เอง ทุกการกระทำที่มีผลกระทบสูงต้องผ่าน Human Approval พร้อม Kill Switch และ Audit Log
Agentic AI · Local / Offline · PTES · OWASP · Kill Switch · Audit Log
Visit r0cyber.com →เยี่ยมชม r0cyber.com →
|
| CYBER FIRST AID & INCIDENT RESPONSELastSafe HelpBox NEW | |
![]() |
Cyber first aid for the critical first hour — before recovery begins ชุดปฐมพยาบาลไซเบอร์สำหรับชั่วโมงแรก — ก่อนการกู้คืนจะเริ่ม A cyber first-aid kit for the first hour after an incident. Open the box and you know what to do straight away: stop the damage, assess the symptoms, preserve evidence and hand over to the recovery team — step by step, ready to use even when no expert is on site. ชุดปฐมพยาบาลไซเบอร์สำหรับชั่วโมงแรกหลังเกิดเหตุ เปิดกล่องแล้วรู้ทันทีว่าต้องทำอะไร: หยุดความเสียหาย ประเมินอาการ เก็บหลักฐาน และส่งต่อทีมกู้ระบบอย่างเป็นขั้นตอน พร้อมใช้ได้ทันที แม้ไม่มีผู้เชี่ยวชาญอยู่หน้างาน
Incident Response · Read-only · Evidence · Triage · Playbook
Visit lastsafe.net →เยี่ยมชม lastsafe.net →
|
| QUANTUM-SAFE TLS GATEWAYQSense Gate NEW | |
![]() |
Quantum-safe TLS Gateway เกตเวย์ TLS ที่ปลอดภัยจากควอนตัม วางหน้าระบบเดิม — แค่ชี้ DNS มา A gateway that puts post-quantum encryption (hybrid ML-KEM) in front of websites, IoT/OT devices, databases and remote access — blunting “Harvest Now, Decrypt Later” attacks without changing a line on the origin servers. Certificate lifecycle and a web application firewall come with it. เกตเวย์ที่เพิ่มการเข้ารหัสยุคหลังควอนตัม (hybrid ML-KEM) ให้เว็บไซต์ อุปกรณ์ IoT/OT ฐานข้อมูล และการเข้าถึงระยะไกล — ลดความเสี่ยง “Harvest Now, Decrypt Later” โดยไม่ต้องแก้ไขเซิร์ฟเวอร์ต้นทางเลย พร้อมระบบจัดการใบรับรองและ web application firewall ในตัว
FIPS 203 · X25519MLKEM768 · TLS 1.3 · OpenSSL 3.5 · OWASP
Visit gate.qsenselab.com →เยี่ยมชม gate.qsenselab.com →
|
| MFA & IDENTITY SECURITYMFAwall NEW | |
![]() |
An MFA checkpoint in front of any login — no code changes เพิ่มด่าน MFA หน้าเว็บเดิม — ไม่ต้องแก้โค้ดแม้แต่บรรทัดเดียว A CIPAT × QSense initiative that puts Multi-Factor Authentication in front of existing websites through QSense Gate — guarding admin pages and critical paths with TOTP and Passkey so a leaked password alone is never enough. One gateway, one policy, live in about 5 minutes with zero changes to the origin system. กิจกรรมโดยสมาคมส่งเสริมนวัตกรรมเทคโนโลยี (CIPAT) ร่วมกับ QSense เพิ่มการยืนยันตัวตนแบบหลายปัจจัย (MFA) หน้าเว็บไซต์เดิมผ่าน QSense Gate — ปกป้องหน้า Admin และเส้นทางสำคัญด้วย TOTP และ Passkey แม้รหัสผ่านรั่วก็ยังเข้าไม่ได้ นโยบายรวมที่เกตเวย์เดียว เริ่มได้ใน ~5 นาที โดยไม่แก้ระบบต้นทาง
TOTP · Passkey · OWASP · ML-KEM · Zero-code
Visit mfawall.cipat.or.th →เยี่ยมชม mfawall.cipat.or.th →
|
| NETWORK DETECTION & RESPONSESRAN NetApprove | |
![]() |
Self-learning network defense — no signatures, no noise ป้องกันเครือข่ายที่เรียนรู้ได้เอง — ไม่ใช้ signature ไม่มี noise Detects threats and responds automatically with AI, without relying on signatures — cutting false positives and containing threats fast: from detection to containment in under 5 seconds. ตรวจจับภัยคุกคามและตอบสนองอัตโนมัติด้วย AI โดยไม่พึ่ง signature ลด false positive และกักกันภัยได้รวดเร็ว — ตรวจพบจนถึงกักกันภายในไม่ถึง 5 วินาที
ML Ensemble · SOAR · DPI · Kill-chain
Visit netapprove.sran.net →เยี่ยมชม netapprove.sran.net →
|
| LOG MANAGEMENTSRAN Metalog | |
![]() |
Centralize every log from every device — intelligently รวบรวมทุก log จากทุกอุปกรณ์อย่างชาญฉลาด A log management platform for operations, security and compliance teams — consolidating logs from many sources into one place, searchable in milliseconds, and built to meet Thailand's Computer Crime Act §26. แพลตฟอร์มจัดการ log สำหรับทีม operations, security และ compliance รวม log จากหลายแหล่ง เข้าสู่ที่เดียว ค้นหาได้ในระดับมิลลิวินาที ออกแบบมาให้รองรับ พ.ร.บ. คอมพิวเตอร์ มาตรา 26 ของไทย
DuckDB · Zstandard · MITRE ATT&CK · ML-KEM-768
Visit metalog.sran.net →เยี่ยมชม metalog.sran.net →
|
| HONEYPOT & THREAT INTELHackrAlert | |
![]() |
Trap Every Threat — proactive defense that catches them all Trap Every Threat — ดักจับทุกภัยด้วยการป้องกันเชิงรุก An enterprise honeypot platform that detects, captures and alerts on attacks in real time — so you see threats before an attack succeeds. Deploys in under 10 minutes. แพลตฟอร์ม honeypot ระดับองค์กรที่ตรวจจับ จับภาพ และแจ้งเตือนการโจมตีแบบเรียลไทม์ ให้เห็นภัยคุกคามก่อนที่การโจมตีจะสำเร็จ ติดตั้งได้ใน 10 นาที
Honeypot · ICS/SCADA · LINE Alert · Threat Intel
Visit hackralert.com →เยี่ยมชม hackralert.com →
|
| POST-QUANTUM READINESSQSense | |
![]() |
Enterprise PQC · Quantum-Safe · CRQC Readiness Helps organizations prepare for the quantum-computing threat, measuring “Harvest Now, Decrypt Later” and “Trust Now, Forge Later” risk by automatically discovering cryptography across the network — agentless. ช่วยองค์กรเตรียมพร้อมรับภัยจากคอมพิวเตอร์ควอนตัม วัดความเสี่ยง “Harvest Now, Decrypt Later” และ “Trust Now, Forge Later” ด้วยการค้นพบการเข้ารหัสทั่วทั้งเครือข่ายแบบอัตโนมัติ ไม่ต้องลง agent
FIPS 203/204/205 · CBOM · CNSA 2.0 · Zero-touch
Visit qsenselab.com →เยี่ยมชม qsenselab.com →
|
| QUANTUM-SAFE CONNECTIVITYIronPath NEW | |
EDITION 1
Hardware Appliance
A hardware box placed end-to-end between two sites — wrapping all traffic in a PQC tunnel automatically, nothing to install on endpoints. |
Quantum can’t decrypt it — a quantum-safe tunnel “Quantum can’t decrypt it” — อุโมงค์เชื่อมต่อที่ปลอดภัยจากควอนตัม Defends against “Harvest Now, Decrypt Later” (HNDL) attacks — a one-click VPN tunnel that blends classical and post-quantum cryptography, so traffic captured today cannot be decrypted by tomorrow’s quantum computers. ป้องกันการโจมตีแบบ “Harvest Now, Decrypt Later” (HNDL) — อุโมงค์ VPN แบบคลิกเดียว ที่ผสานการเข้ารหัสแบบคลาสสิกกับ post-quantum ทำให้ข้อมูลที่ถูกดักวันนี้ ไม่สามารถถอดรหัสได้ด้วยคอมพิวเตอร์ควอนตัมในอนาคต
FIPS 203 · ML-KEM · Classic McEliece · WireGuard
Read more →อ่านเพิ่มเติม →
|
Nontawatt Saraman
Cybersecurity Product Designer
20+ years of experienceประสบการณ์กว่า 20 ปี
|
A designer and builder of cybersecurity products who believes good defense starts with seeing — seeing what is happening on the network, understanding what it means, and only then acting with confidence. Everything is designed to run on your own infrastructure; sensitive data never has to leave. ผู้ออกแบบและสร้างผลิตภัณฑ์ด้านความมั่นคงปลอดภัยไซเบอร์ ที่เชื่อว่าการป้องกันที่ดีเริ่มต้นจากการ “มองเห็น” — เห็นว่าอะไรกำลังเกิดขึ้นในเครือข่าย เข้าใจความหมายของมัน แล้วจึงลงมือป้องกันได้อย่างมั่นใจ ผลงานทั้งหมดออกแบบให้ทำงานบนระบบขององค์กรเอง ข้อมูลสำคัญไม่ต้องออกไปไหน Roles & committeesบทบาทและคณะกรรมการ
Founderผู้ก่อตั้ง
|