SecurityCipher
Home Blog About Us

Learn Paths, courses, and reference docs

  • 🚀 Start Here Beginner path through the site
  • 🗺️ Penetration Testing Roadmap Structured path to become a pentester
  • 🎓 Free Security Courses Current free Udemy coupon listings
  • 📄 Secure Code Explain Vulnerable vs secure code side by side
  • 🎯 Penetration Testing Tricks Field notes for real engagements
  • 📖 Vulnerability Explain How common vulns actually work

Checklists Interactive reviews and LLM risks

  • ✅ Security Checklists Hub All interactive security checklists
  • 📋 Writeup Checklists Steps derived from real writeups
  • 🧠 LLM AI Security Checklist Controls for LLM apps
  • 🤖 OWASP LLM Top 10 LLM Top 10 risks mapped out
  • 🧰 Burp Suite Guide Step-by-step Burp tutorials
  • 📘 Payload Field Manual Safe-first probes and signals

Practice Browser labs, games, and explorers

  • 🔬 Interactive Labs SQL injection, AI, architecture review
  • 🎮 Security Games Phishing, JWT, WAF, and more
  • 🚗 On-Call Drive Neon-city arcade security missions
  • • Shift Zero SOC desk: phish, OTP, malware, tickets
  • ❓ Application Security Quiz Web, secure coding, and cloud quizzes
  • 🗺️ OWASP Top 10 Explorer Clickable risk map with signals
  • 🔀 Interactive Attack Paths Recon-to-impact chains

Tools & Career Databases, jobs, and community

  • 🛠️ Security Tools Curated recon, SAST, and bounty tools
  • 🔎 CVE Lookup Multi-source CVE intelligence
  • 💰 Bug Bounty Programs Live public scopes to search
  • 💼 Cybersecurity Jobs Roles from company career pages
  • 🧑‍💻 Security Researchers Community profiles and submissions
  • 🎤 Security Conferences Upcoming and past events
Browse all Security resources hub Freelance Security →
My Resume
Freelance SecurityFreelance
New Security Researchers Join the directory - submit your profile for review Submit profile →
← Security Tools View on GitHub

Nebula-AI

AI-powered offensive security helper for vulnerability research.


Nebula

AI Powered Pentesting


Nebula 3 Zero Layer workbench with a live contained terminal and operator safety controls

The Zero Layer workbench


Acknowledgement

First, I would like to thank Almighty God, who is the source of all knowledge. Without Him, this would not be possible.

Nebula brings the working parts of a security engagement into one desktop surface: terminal, code, browser, assistant, files, notes, missions, findings, and reports.

AI can investigate, organize, and write. The operator defines the scope, grants authority, and decides what runs.

Designed around the operator

Work in one place. Move from research to a contained terminal, preserve useful output as evidence, and carry it into findings and reports without losing context.

Keep authority explicit. Scope enforcement, approval pauses, hard budgets, and isolated OCI execution sit between AI assistance and the systems under test.

Leave a durable trail. Content-addressed artifacts, append-only events, execution provenance, and integrity-manifested exports preserve how a conclusion was reached.

intent  →  assistance  →  approval  →  execution  →  evidence

Nebula supports hosted, local, and OpenAI-compatible model runtimes. A model provider is optional; the human terminal, evidence workflow, notes, findings, and reports remain available without one.

Use Nebula only on systems and networks you own or are explicitly authorized to test.

Install the preview

Nebula 3 preview builds for Linux x86_64 appear as nebula-v3.* prereleases on GitHub Releases. Choose a release with native artifacts and read its published notes before installing; checked-in release notes may also describe unpublished candidates. Docker or Podman is required for the container terminal and Docker-mode automation. Features in a source checkout may be ahead of the published preview.

The preferred installation method is the signed Nebula APT repository. Its archive-key fingerprint is:

1D90 1EB3 4C8C 1065 F118 680D 1C5C 924C B4B5 823D

Verify that fingerprint, add the current preview channel, and install:

sudo apt update
sudo apt install -y ca-certificates curl gnupg
curl -fsSL https://berylliumsec.github.io/nebula-apt/nebula-archive-keyring.asc |
  gpg --show-keys --fingerprint
curl -fsSL https://berylliumsec.github.io/nebula-apt/nebula-archive-keyring.asc |
  sudo gpg --dearmor --batch --yes -o /usr/share/keyrings/nebula-archive-keyring.gpg
echo "deb [arch=amd64 signed-by=/usr/share/keyrings/nebula-archive-keyring.gpg] https://berylliumsec.github.io/nebula-apt prerelease main" |
  sudo tee /etc/apt/sources.list.d/nebula.list >/dev/null
sudo apt update
sudo apt install nebula
nebula

The prerelease channel is intentional while Nebula 3 is in preview. The DEB supports Debian, Ubuntu, Kali, and compatible systems. Future updates remain under administrator control through the normal APT workflow.

Install a downloaded DEB manually instead

Download the DEB and SHA256SUMS-linux-x64.txt from GitHub Releases, then verify and install (replace <version> with the published release version):

sha256sum --check --ignore-missing SHA256SUMS-linux-x64.txt
sudo apt install ./Nebula-<version>-linux-x86_64.deb
Use the portable AppImage instead

Download the AppImage and checksum file from the same release, then run:

sha256sum --check --ignore-missing SHA256SUMS-linux-x64.txt
chmod +x Nebula-<version>-linux-x86_64.AppImage
./Nebula-<version>-linux-x86_64.AppImage

The AppImage requires no system-wide installation and uses Nebula's signed direct-update channel.

After launch, inspect the bundled Core and local runtime boundary:

nebula-core doctor --json

First launch: Nebula may need to download, prepare, and verify the official Kali image before terminal and automation features are ready. This can take several minutes depending on your connection and container runtime.

About preview builds

A build exists only when a nebula-v3.* entry and its native artifacts appear on GitHub Releases. Back up engagement data and review the release notes and checksums before use. Do not use pip install nebula-ai to install Nebula 3.

macOS, Windows, and Linux arm64 installers are not part of the current release matrix.

Run from source

Install Python 3.11–3.13, Poetry 2.1.3, Node.js 20 with npm, the stable Rust toolchain, and the Tauri prerequisites for your operating system.

git clone https://github.com/BerylliumSec/nebula.git
cd nebula
poetry install --with dev
poetry run playwright install chromium
npm --prefix ui ci
npm --prefix ui run dev:desktop

The Playwright browser renders JavaScript-driven URL knowledge sources. Signed Linux installers include the locked Chromium headless runtime used by the packaged desktop. Source checkouts require the explicit installation step above; Nebula can also use an existing system Chrome or Chromium browser. The final command builds the local Nebula Core sidecar, starts the UI development server, and opens the native desktop directly from the checkout.

Browser-only development and focused checks

Build the workspace and let Core choose an available loopback port:

npm --prefix ui run build
poetry run nebula-core ui

Check version metadata and the UI build. Select and collect tests for the changed journey using the focused test policy; a routine change does not run the complete backend or UI suites.

python scripts/nebula3_version.py check
npm --prefix ui run build

Migrate from Nebula 2

Quit Nebula 2, preserve a backup of the engagement directory, and import it without modifying the source:

nebula-core import-2x "/path/to/nebula-2-engagement"

Verify the imported project and its evidence before deleting the original data. See Migrating from Nebula 2 for the complete integrity and recovery procedure.

Read more

  • Nebula 3 guide
  • Usage scenarios
  • Automation runtime
  • Local diagnostics
  • Release notes
  • Release process


Built for deliberate security work.

Press Escape to close the search panel.

Donate

Buy me a Coffee

Penetration Testing Services

penetration Testing Services

Web Application Security Quiz

Web Application Security Quiz

Daily Bug Bounty Writeups - Twitter

Daily Bug Bounty Writeups

Download our Latest Android Application

Guide for Penetration Testing

Daily Bug Bounty Writeups - Telegram

Daily Bug Bounty Writeups

Author

Piyush
Senior Product Security Engineer

Ethical Hacker || Penetration Tester || Gamer || Blogger || Product Security Engineer || AI Security

READ ARTICLE

Donate

Buy me a Coffee

Recent Posts

  • AI-Generated Code Security Bugs: A Vibe Coding Case Study
    AI-Generated Code Security Bugs: A Vibe Coding Case Study
    October 7, 2026/
    0 Comments
  • Cloud Misconfig Bounty Hunting in 2026: Open Buckets, Firebase, and Secrets
    Cloud Misconfig Bounty Hunting in 2026: Open Buckets, Firebase, and Secrets
    September 8, 2026/
    0 Comments
  • DevSecOps From Laptop to Production: A Practical Security Pipeline Guide
    DevSecOps From Laptop to Production: A Practical Security Pipeline Guide
    August 27, 2026/
    0 Comments

Follow Us

SecurityCipher

Practical security guides, vulnerability deep-dives, and hands-on resources for bug bounty hunters and penetration testers.

Useful Links

  • Security Checklists
  • Cybersecurity Jobs
  • Blogs
  • About
  • Contact
© 2026 Security Cipher. All rights reserved. Privacy Policy · Terms & Conditions