How AnubisX Framework Can Estimate a Target’s Geographic Location — Without Using GPS or an IP Address

How AnubisX Framework Can Estimate a Target’s Geographic Location — Without Using GPS or an IP Address


 

Every investigator has experienced the same frustration.

The target changes their IP address.

They switch to a new VPN.

They create another account.

They replace their device.

Within minutes, many traditional technical indicators become significantly less valuable.

But here’s the real question:

What if location intelligence didn’t have to depend on GPS coordinates, IP addresses, or device fingerprints at all?

That question inspired one of the research directions behind the AnubisX Attribution Framework.

Looking Beyond Traditional Attribution

For decades, digital attribution has been driven by technical evidence.

IP addresses.

Browser fingerprints.

Cookies.

Device identifiers.

Network telemetry.

These indicators are valuable — but they’re also designed to change.

Modern adversaries know exactly how to replace them.

Behavior, however, is far more difficult to rewrite.

The AnubisX Attribution Framework explores a different philosophy:

Instead of tracking devices, understand the human operating them.

Rather than depending exclusively on volatile Indicators of Compromise (IoCs), AnubisX applies Artificial Intelligence to analyze persistent behavioral characteristics that naturally emerge during digital interactions.

Behavior Leaves Patterns

Every conversation…

Every post…

Every interaction…

Every writing habit…

Every decision…

Every routine…

Individually, these observations mean very little.

Collectively, they become something far more valuable.

They form a behavioral fingerprint.

Not a technical fingerprint.

A human one.

This is the core philosophy behind AnubisX.

The framework combines behavioral analytics, Artificial Intelligence, stylometry, OSINT methodologies, machine learning, and digital forensic principles to identify long-term behavioral consistency — even when the underlying infrastructure changes completely.

From Behavior to Geographic Estimation

One of the research capabilities explored within AnubisX is behavioral geographic estimation.

Notice what that means.

The framework is not reading GPS coordinates.

It is not extracting hidden geolocation metadata.

 

It is not relying on IP addresses.

Instead, it evaluates the consistency of numerous independent behavioral indicators and determines whether they collectively align with a particular geographic profile.

The methodology itself is proprietary and intentionally not disclosed publicly.

That is by design.

The value of AnubisX is not found in a single algorithm or isolated indicator, but in the way multiple behavioral signals are fused, weighted, validated, and interpreted as a unified attribution model.

In controlled research evaluations, this behavioral fusion approach demonstrated geographic estimation accuracy exceeding 85% under the tested conditions, with performance varying according to data quality, behavioral richness, and available observations.

The important point is not a single percentage.

The important point is that behavior can reveal far more than most people realize.

Why This Matters

Cybercriminals can change infrastructure almost instantly.

They can rotate VPNs.

Replace devices.

Abandon accounts.

Move across platforms.

What they cannot easily replace is years of naturally developed human behavior.

Every digital interaction adds another piece to the puzzle.

Artificial Intelligence simply helps connect those pieces faster and more objectively than humans ever could.

That is why behavioral attribution is becoming an increasingly important research direction for Digital Forensics and Cyber Threat Intelligence.

The Vision Behind AnubisX

The AnubisX Attribution Framework was created to complement — not replace — traditional digital forensic techniques.

Its objective is to introduce a behavioral layer into digital attribution, helping investigators move beyond infrastructure-based evidence toward persistent human-centric indicators.

Potential applications include:

  • Cyber Threat Intelligence
  • Digital Forensics
  • OSINT Investigations
  • Cybercrime Analysis
  • Insider Threat Detection
  • Fraud Investigation
  • Influence Operations Research
  • National Security

As adversaries become increasingly skilled at hiding technical evidence, understanding behavior may become one of the strongest tools available to investigators.

Learn More

If you’re interested in behavioral AI and the future of digital attribution, you can explore the project through the following resources:

🌐 AnubisX Framework
https://anubisxframework.github.io

📖 Book
You Can Hide Your Name… Not Your Mind: How Artificial Intelligence Reveals the Human Behind Digital Identities — Introducing the AnubisX Attribution Framework
https://www.amazon.com/dp/B0H8LCTTWW

📑 Research Figure (Figshare)
https://figshare.com/articles/figure/AnubisX_A_Formal_Framework_for_Behavioral_Digital_Attribution/33028817?file=66775178

The future of attribution may no longer be defined by where a device is.

It may be defined by how a person behaves.

Because infrastructure is temporary.

Behavior is persistent.

And that’s exactly what AnubisX was built to understand.

If you believe the future of digital attribution lies beyond traditional IoCs, I’d love to hear your thoughts.

#AnubisX #BehavioralAI #ArtificialIntelligence #CyberSecurity #DigitalForensics #ThreatIntelligence #OSINT #MachineLearning #BehavioralAnalytics #CyberThreatIntelligence #DigitalIdentity #AIResearch

   

How do you rate this article?

4


Ahmed Awad ( NullC0d3 )
Ahmed Awad ( NullC0d3 )

Cybersecurity Strategist | Threat Intelligence Leader | Author of Tactical Cyber Warfare Guides | 20+ Years in Frontline Defense Ahmed Awad (AKA NullC0d3) is an internationally recognized cybersecurity expert and threat intelligence strategist with over


Ahmed Awad Nullc0d3: Cybersecurity Veteran, Author
Ahmed Awad Nullc0d3: Cybersecurity Veteran, Author

Ahmed Awad “nullc0d3”: 20-Year Cybersecurity Veteran, Author, and Threat Intelligence Strategist. Ahmed Awad, known as nullc0d3, is a veteran cybersecurity expert with 20+ years in threat intelligence, penetration testing, malware analysis, and digital forensics. Author of “The Hacker’s Mindset” and “Prompt Millionaire,” he shares cutting-edge insights on AI threats and cyber warfare. Follow him on Medium, Publish0x, and LinkedIn for deep dives into adversarial thinking and cyber defense strategy.

Publish0x

Send a $0.01 microtip in crypto to the author, and earn yourself as you read!

20% to author / 80% to me.
We pay the tips from our rewards pool.