01 — Principles

What we hold ourselves to

Reproduce before you report

A finding isn't real until we've triggered it ourselves, end to end, under conditions the client actually runs.

Severity is contextual

A CVSS score is a starting point. We rank by what the bug actually lets an attacker do to this system, for this client.

Disclosure is a relationship

We work with the team that owns the system, on a timeline we set together — not against them.

Publish the details

Vague advisories don't help defenders. Once a fix ships, we publish enough to actually act on.

No fix, no close

A case stays open until we've retested the original proof of concept against the shipped patch.

Independence matters

We don't sell the products we audit. Our only product is the research itself.

02 — History

How we got here

2021

Founded

Started as an independent research collective publishing findings from personal projects and CTF-derived techniques.

2022

First coordinated disclosures

Began formal coordinated disclosure work with open-source maintainers who had no existing security process.

2023

First enterprise engagements

Took on our first paid offensive research engagements for infrastructure and fintech clients.

2024

Threat intelligence practice launched

Formalized infrastructure-tracking work into an ongoing intelligence practice for existing clients.

2025

100th disclosure

Filed our hundredth coordinated disclosure, with a 94% on-time patch rate across all cases to date.

2026

Today

A distributed team working across offensive research, disclosure, threat intelligence, and applied cryptography for clients worldwide.

03 — Team

Who's doing the work

A small, senior team by design — every engagement is led by someone who still does hands-on research.

Offensive research

Founding researcher & director

Leads exploit development and sets technical direction across engagements.

Vulnerability disclosure

Head of disclosure

Runs coordination with vendors and maintainers from first report to published advisory.

Threat intelligence

Head of intelligence

Tracks campaign infrastructure and leads early-warning briefings for clients.

Applied cryptography

Principal cryptography researcher

Audits protocol implementations and key management systems.

Offensive research

Senior researcher

Focuses on embedded and firmware targets.

Vulnerability disclosure

Senior researcher

Handles patch verification and public writeups.

Want to work here?

We're a small team that hires rarely, and carefully.

See open roles