ANMAS & MASAS combine 20+ years of NSPA packet forensics research with Huge Diamond engineering. Powered by fine-tuned Small Language Models (SLMs) and RAG retrieval, deep PCAP analysis is executed 100% on-premises, detecting APTs, zero-day threats, and SCADA/OT protocol anomalies with sensitive data never leaving your network.
ANMAS is an AI-driven deep packet analysis system. A fine-tuned Small Language Model (SLM) paired with Retrieval-Augmented Generation (RAG) runs entirely on local hardware, no cloud upload required, protecting your most sensitive data. It connects directly to NAS packet directories, continuously analyzes large volumes of daily PCAP files, and automatically generates structured security reports mapped to the MITRE ATT&CK framework.
Trained on 400+ malware samples and 5,000+ PCAP patterns with continuous learning (LoRA/QLoRA), deep inference runs on your own hardware.
Connects directly to packet directories or NAS devices, continuously processing accumulated PCAP files and auto-generating reports, dramatically reducing SOC workload.
Automatically flags lateral movement, covert channels and other threat patterns, mapping anomalies to techniques such as T1048, T1486 and T0843 with clear remediation guidance.
Native support for NVIDIA DGX Spark, compatible with LM Studio, Ollama and open frameworks. Sensitive data never leaves your premises, ISO-27001 compliant.
Traditional IDS/IPS struggle to spot low-and-slow covert attacks within massive traffic volumes. ANMAS specializes in identifying malicious behavior hidden inside seemingly normal communications, automatically mapped to MITRE ATT&CK.
Long-dwelling APT actors using low-rate, covert C2 channels disguised as normal enterprise traffic.
Infected endpoints exfiltrating sensitive data, detect data-leak behavior in outbound packets.
SMB access-denied anomalies and mass file-encryption behavior, early warning of lateral ransomware spread.
Anomalous ARP and port scans, recon activity detected in the early stages of an attack.
MASAS inspects mobile devices (iPhone/Android), IoT modules, and critical industrial control equipment (IED, PLC, OPC, HMI, MTU, RTU, DAS, BOM) via virtual Wi-Fi and local AI inference without agent installation or USB connection.
Post-travel mobile security checks, corporate audit, and IoT chip vendor verification. Parallel inspection of up to 30 devices simultaneously for beaconing, GPS tracking, and trojan comms.
Analyzes Modbus and DNP3 industrial protocols in real time. Detects HMI command tampering, OPC elevation of privilege (EoP), and DoS floods in air-gapped environments.
Where cloud LLMs suffer from privacy risks, latency, and huge hardware footprint, ANMAS solves every challenge with a lightweight SLM purpose-built for network PCAP forensics.
| Criteria | ☁️ Cloud AI (LLM) | 🛡️ ANMAS / MASAS (SLM) |
|---|---|---|
| Unknown Threat Detection | ✗ Reactive (known signatures only) | ✓ Real-time sub-millisecond anomaly detection |
| Sensitive Data Privacy | ✗ Data passes through public cloud | ✓ 100% On-premises, zero cloud data leaks |
| Detection Latency | ✗ Internet round-trip latency | ✓ Sub-millisecond local inference |
| On-premise Deployment | ✗ Too large to deploy locally | ✓ Runs on commodity servers or QNAP NAS |
| PCAP Specialization | ✗ General-purpose model (hallucination risk) | ✓ PCAP-specialized, 99.2% high accuracy |
| OT / SCADA Protocol Support | ✗ Not supported | ✓ Modbus / DNP3 protocol supported |
Whether you choose the high-performance split architecture or the streamlined all-in-one box, packet data is processed 100% on-premises.
ANMAS & MASAS are commercialized AI security solutions backed by 20+ years of research from the Network Packet Analysis Security Association (NSPA).
Founded in 2002, holding over 5,000 PCAP samples and 400+ malware behavioral profiles.
Establishes professional packet analysis certifications for security engineers and researchers.
Backed by NSPA International (nspacert.org), NSPA Taiwan (nspa-cert-tw.org), and NSPA Japan (nspacert.jp).
ANMAS is developed by HugeDiamond and brought to market by master distributor Sanwan together with QNAP and Spes. Enterprises, SOC providers, research institutions and government agencies are welcome to contact us for purchase or proof-of-concept evaluation.
The maker of ANMAS, specialists in network packet forensics and AI-driven security analysis technology.
🌐 www.hugediamond.netMaster distributor of ANMAS. Packet forensics expertise, AI model fine-tuning and security consulting, your technical POC liaison.
✉ [email protected]Product sales, system integration, deployment planning and managed services. Email us to book a demo or request a POC.
✉ [email protected] ✉ [email protected]Enterprise storage, networking, servers and AI hardware platform, providing the NAS, ADRA NDR and GPU foundation.
Security trends and solution coverage, follow the latest ANMAS news and events.
Email us to schedule an online or on-site demonstration of ANMAS.