About
Our Team
Security engineers, offensive security consultants and AI/LLM security researchers
We work in offensive security: penetration testing, red team operations and research into the security of AI systems. Most of our client work is testing web applications, APIs, networks and Android apps, then working with engineering teams to fix what we find at the code level.
Our research looks at how AI changes the attack surface, including prompt injection, model abuse and guardrail bypasses in LLM-based products. That work shapes how RootDarth runs engagements. AI tools take on the repetitive, high-volume parts of a test, and every finding is verified by hand before it is reported.
- Certifications
- OSCP · CRTP · eWPTXv2 · C-AI/MLPen
- Published CVEs
- Four, listed below
- Hall of fame
- Google, Mastercard, U.S. FTC and 4 more programs
Certifications
- OSCPOffensive Security Certified ProfessionalOffSec, 2023
- CRTPCertified Red Team ProfessionalAltered Security, 2024
- eWPTXv2Web Application Penetration Tester eXtremeeLearnSecurity, 2023
- C-AI/MLPenCertified AI/ML Pentester
Published CVEs
- CVE-2023-37743Cross-site scripting in Teacher Subject Allocation System 1.0
- CVE-2023-37744Cross-site scripting in Maid Hiring Management System 1.0
- CVE-2023-37745Cross-site scripting in Maid Hiring Management System 1.0
- CVE-2023-37746Cross-site scripting in Maid Hiring Management System 1.0
Hall of fame acknowledgements
Vulnerabilities reported through the responsible disclosure and bug bounty programs of these organizations.
- Mastercard
- U.S. Federal Trade Commission
- Telstra
- OLX Group
- Naspers
- Regions Bank
Areas of focus
- Web application security
- API security (REST, GraphQL, gRPC)
- AI and LLM security and red teaming
- Network penetration testing
- Active Directory attacks
- Android application security
- Cloud security (AWS, Azure, GCP)
- Red team operations
- Source code review
- Social engineering
Request a proposal
Email a short description of what you want tested. It helps to include the targets (URLs, apps, IP ranges or repositories), any testing window, and the compliance standard you are working toward.
- Response
- A scoped proposal with a fixed price and timeline within one business day.
- Confidentiality
- Testing runs under a signed NDA, written authorization and agreed rules of engagement.
- Included
- Executive and technical report, plus a free retest of the findings you fix.