Web & API security testing
Deep-context assessments of production web platforms and APIs. We find what scanners miss.
- Authn / authz & tenant isolation
- Business-logic abuse
- SSRF, IDOR, deserialization chains
We break web apps, APIs, and AI systems — before the bad guys do. Quietly, and with receipts.
Deep-context assessments of production web platforms and APIs. We find what scanners miss.
Red-teaming for production agents, RAG pipelines, and model-backed features — the way attackers do it.
Bug bounty hunter and vulnerability researcher focused on web, cloud, and AI. Founder of Sekkai Labs.