PH4NTXM · Adaptive Identity Live OS

A SESSIONWITHOUT A PAST.

PH4NTXM is a Linux Live Operating System with an embedded Adaptive Identity Engine. Every session is stateless, disposable, and non-reusable. Instead of changing isolated values, PH4NTXM builds one linked identity that stays consistent during the session.

Debian / XFCE 64-bit system Amnesic live session GPLv3
PH4NTXM BOOT PILOTINTERACTIVE DEMO
PROTECTEDall primary chains active
MODE LINUX

Explore a protection layer above.

LINUX PROFILE

A Linux-aligned identity with Firefox ESR and protected direct connections.

NETWORK OPEN
Demo only — your connection is unchanged.
01 / Architecture

One boot.
One linked identity.

PH4NTXM does not generate every value separately. Each stage reuses values from the previous stages. This keeps the identity consistent across hardware, network, browser, screen, and clock.

01

MODE

Selected at boot and fixed for the session.

02

IDENTITY

Session identity and device details.

03

HARDWARE

System, graphics, memory, and screen profile.

04

NETWORK

Network identity, packet transformation, and routing.

05

SESSION

Browser, time, system checks, and shutdown.

SYSTEM_LIFECYCLE

Boot → Identity → Enforcement → Operation → Nuke → Termination

CHAIN LOCKED
02 / Boot modes

Three modes.
Selected at boot.

You choose LINUX, WINDOWS, or LONEWOLF from the boot menu. The selected mode stays fixed until the session ends.

MODE / 01

LINUX

Linux-aligned identity for the system, browser, and network.

  • Linux hardware and identity profile
  • Encrypted domain name requests
  • Protected traffic before it leaves
MODE / 02

WINDOWS

Windows-aligned identity built from the same linked session values.

  • Windows-aligned network behavior
  • Matching browser and hardware profile
  • Protected traffic before it leaves
MODE / 03

LONEWOLF

Linux-based profile with its own session identity and system-wide Tor routing.

  • Tor Browser and Tor-routed connections
  • Domain name requests go through Tor
  • Internet stays blocked if Tor fails
03 / Main features

Each part has a job.
All parts work together.

Boot Pilot helps you get started. Health reports system status, while the OpSec Suite provides tools to inspect the session.

Identity engineONE SESSION

LINKED IDENTITY

System, hardware, browser, network, and clock follow one session profile. Newly connected network adapters receive a protected identity before use.

Network protectionBLOCKS ON FAILURE

PACKET TRANSFORMATION + FIREWALL

Linux and Windows combine packet transformation, firewall protection, and checks at the network exit to prevent traffic from bypassing protection.

Domain namesPROTECTED

ENCRYPTED DOMAIN REQUESTS

Linux and Windows encrypt domain name requests. Lonewolf sends them only through Tor.

Live sessionDISPOSABLE

MEMORY + TIME

Memory noise, time changes, and generated system values exist only for the active live session.

System stateSESSION STATUS

PILOT + HEALTH

Check protection, connect to Wi-Fi, and open your browser from Boot Pilot. Health provides a detailed view of the session.

BrowserMODE-ALIGNED

FIREFOX + TOR BROWSER

Linux and Windows use Firefox ESR with the session profile. Lonewolf uses an isolated Tor Browser connected through system Tor.

Session controlsOPERATOR CONTROL

LOCKDOWN + PANIC

Lockdown cuts network access. Panic and armed USB storage removal end the session through the same Nuke sequence as normal shutdown.

04 / Failure policy

If protection is not ready, traffic stays blocked.

Network access waits for the selected mode’s required protection checks. Your browser opens from Boot Pilot only after readiness is checked again.

LINUX / WINDOWS: no packet transformation → DROP
LONEWOLF: no Tor connection → DROP
IDENTITYREADY
FIREWALLREADY
TRAFFIC PATHREADY
NAME LOOKUPREADY
BYPASSDENIED
PH4NTXM desktop environment
Unified PH4NTXM interface / XFCE live environmentOperational state remains local to the session
05 / Nuke Kernel

Every shutdown ends at Nuke.

Shutdown, restart, halt, Panic, and armed USB removal all use the same path. The system blocks networking, ends the live session, disables swap, scrubs available RAM, and transfers control to the clean Nuke kernel.

01
ISOLATE

Block links and radios. End the session. Disable swap.

ARMED
02
AVAILABLE RAM WIPE

Overwrite the RAM available to the main system.

PASS
03
SEPARATE NUKE KERNEL

Transfer control to a clean Nuke kernel kept ready in memory.

LOADED
04
MEMORY TEST + FINAL WIPE

Overwrite memory with multiple patterns, make the final available wipe, and power off.

FINAL
!

WHAT PH4NTXM DOES NOT CLAIM

PH4NTXM reduces session-linking signals and blocks accidental network fallback. It cannot protect a compromised machine, compromised firmware, operator mistakes, physical side channels, or every forensic method. RAM and file overwrite remain best effort.

06 / Open source

Inspect it.
Audit it. Build it.

PH4NTXM is open-source under GNU GPL v3. Build your own ISO on Debian 13, then boot from USB directly on your computer. Audits, tests, and patches are welcome.

BASEDEBIAN / XFCE
SYSTEM64-BIT AMD / INTEL
SESSIONLIVE / DISPOSABLE
DELIVERYSOURCE ONLY / NO PREBUILT ISO
LICENSEGNU GPL v3.0
ENCRYPTION KEYPUBLIC KEY ↗
SYSTEM OVERVIEW