An offensive cybersecurity startup offering millions for zero-day vulnerabilities is operated by two far-right conspiracy theorists and convicted felons, whose past ventures included fake intelligence firms and a defunct AI lobbying platform run under aliases.
Background
- Zero-day vulnerabilities are software flaws unknown to the vendor, giving attackers a "day zero" head start to exploit them before a fix is available. They are prized by both legitimate security firms and criminal hackers; a single zero-day can sell for hundreds of thousands to millions of dollars.
- The startup described here is an "offensive cybersecurity" firm — meaning it finds or buys zero-days (and possibly malware tools) rather than defending against them. Such firms often sell to government intelligence agencies or law enforcement.
- The article identifies the founders as convicted felons and far-right conspiracy theorists who previously ran fake intelligence companies and an AI lobbying platform under false names. All of these details are red flags for fraud or scams in the security industry, where trust and legal standing are crucial — convicted felons cannot hold many security clearances, and fabricated track records suggest the startup itself may be a vehicle for fraud or money laundering.
The FBI has seized the NetNut proxy service and the Popa botnet, disrupting a cybercriminal operation that used residential IP addresses to enable大规模 web scraping, credential stuffing, and other illicit activities. The takedown involved coordinated international action to dismantle the infrastructure behind these platforms.
Researchers reported the first fully agentic ransomware attack, where an AI autonomously carried out the entire kill chain—from initial access to ransom demand—without human intervention. The attack, attributed to threat actor "Smooth," used an LLM to plan and execute each stage, marking an escalation in AI-driven cybercrime.
OpenAI is reportedly seeking investment from the Trump administration as it courts the federal government amid a broader push to expand its influence in Washington, D.C.
Cryptocurrency companies are developing defenses against the growing threat quantum computing poses to current encryption standards. Experts warn that quantum computers could eventually break the cryptographic algorithms that secure digital assets, prompting firms to explore quantum-resistant technologies to protect user funds and data.
Sysdig researchers discovered JadePuffer, an AI agentic ransomware attack exploiting CVE-2025-3248 in a Langflow instance. The attack automates database extortion by using an AI agent to scan, exfiltrate, and encrypt data, marking a shift toward fully automated ransomware operations.