Team

Operators, not employees.

NULLSEC runs on small, specialized cells rather than a flat org chart. Every operator below works under a handle, not a name — that's not branding, it's operational security applied to ourselves first.

OP / 01

0x.Vale

Offensive Security Lead

Ten years across red-team engagements, from financial infra to embedded systems. Runs every engagement's rules of engagement personally before a test starts.

OP / 02

ash.protocol

Privacy Architect

Designs data-flow audits and minimization strategies. Former backend engineer who got tired of watching logging "temporarily" become permanent.

OP / 03

kite_9

OSINT & Exposure Mapping

Finds what's publicly leaking before someone with worse intentions does. Specializes in metadata and infrastructure fingerprinting.

OP / 04

null.sable

Cryptography

Handles key management design and reviews encryption implementations line by line — not just the algorithm choice, the whole surrounding scaffolding.

OP / 05

reef.exe

Reverse Engineering

Pulls apart binaries and firmware to understand what software actually does versus what it claims to do in the changelog.

OP / 06

ghost.mara

Incident Response

First call during an active breach. Focused on containment speed — stop the bleeding before anyone starts asking who's at fault.

"
We don't hire résumés. We recruit people who've already found something the rest of us missed.
— NULLSEC Recruiting Note