Null Pointer Security
Expert security consultancy specializing in web application penetration testing and smart contract auditing. We find vulnerabilities before the bad actors do.
Null Pointer Security
Cybersecurity Consultancy
Est. 2024
Security Services
Web AppSec & Penetration Testing
Application security from code review to penetration testing.
- -OWASP Top 10 & API security testing
- -Secure code review & SAST integration
- -CI/CD security pipeline setup
- -Threat modeling & architecture review
- -Developer security training
Web3 AppSec & Contract Auditing
Security review of smart contracts with DevSecOps integration.
- -Solidity, Rust, and Go audits
- -DeFi protocol security analysis
- -CI/CD security for dApp deployments
- -Web3 threat modeling workshops
- -Developer security training
ML/AI Security Engineering
ML/AI solutions for vulnerability detection and threat intelligence.
- -Threat detection models
- -Vulnerability pattern recognition
- -Threat intelligence feeds
- -Adversarial ML attack defense
- -Model development & training
Our Process
Discovery
Define scope, threat model, and engagement rules.
Assessment
Active testing and vulnerability verification.
Reporting
Detailed findings with remediation guidance.
Verification
Confirm fixes and provide final sign-off.
Why Us
Founded by security researchers with 15+ years of experience breaking and building systems. We've published CVEs for Ruby on Rails, Java applications, and the Linux kernel.
Our expertise spans traditional web security and Web3. Since 2022, we've integrated ML/AI for advanced threat detection, giving clients an edge against emerging attack vectors.
Deep understanding of how systems are built gives us an edge when breaking them. We think like developers because we are developers.
[CVE] Ruby on Rails
[CVE] Java Applications
[CVE] Linux Kernel
Get in Touch
Need a security assessment for your web
application or smart contracts? Let's discuss
how we can help protect your code and users.