Offensive Security · Est. 2018 · Sandton, ZA

We break the systems
nobody else can.

Cyber Matrix is a boutique offensive security firm operating quietly at the edge of what is possible — adversarial AI red-teaming, deep API and thick-client penetration testing, and intelligence-driven managed defense for the world's most consequential organizations.

200+Engagements delivered
37CVEs published
4Continents · 1 standard
Cyber Matrix emblem — spider on shield, woven web
CMX · 0xCM
Credited by
Organizations that have publicly acknowledged our research through their responsible-disclosure programs and security halls of fame.
Microsoft
European Union
Red Hat
Bank of America
Achmea
Nike
AT&T
UN Women
Utrecht University
U. of Twente
+ Apple
+ BASF
// Public acknowledgements only. Direct client engagements, contracted assessments, and embargoed disclosures remain confidential under NDA.
01Capabilities

Adversarial depth, written by the people who actually do the work.

Every engagement is led by a senior operator. No junior handoffs, no checklist scans dressed up as research. The deliverable you get is the one our principal would have wanted to read.

— 01 / AI & ML

Adversarial AI Red-Teaming

Hybrid stress-testing of production LLMs, agent stacks, and ML pipelines. We test for prompt injection across trust boundaries, training-data exfiltration, jailbreak chains, tool-use abuse, embedding poisoning, and the subtler failure modes that only emerge under sustained adversarial pressure. Reports map to OWASP LLM Top 10 and MITRE ATLAS.

Prompt InjectionAgent AbuseModel ExtractionATLAS-aligned
— 02 / APP & API

API & Application Penetration Testing

Authenticated, unauthenticated, and chained-context testing across REST, GraphQL, gRPC, and WebSocket surfaces. We model real adversary objectives — privilege escalation, IDOR-to-takeover paths, business-logic abuse — and validate compensating controls, not just findings. Aligned to OWASP ASVS L3 where applicable.

REST · GraphQL · gRPCBusiness LogicASVS L3
— 03 / THICK CLIENT

Thick-Client & Desktop Application Security

Native Windows, macOS, and Linux clients — Electron, .NET, JVM, and C/C++ targets. Static and dynamic analysis, binary instrumentation, runtime hooking, IPC and update-channel abuse, secret recovery from memory and on disk. We close the gap most testing programs leave wide open.

Electron.NET / JVMFrida · GhidraIPC abuse
— 04 / MANAGED

Intelligence-Driven Managed Defense

A retained capability for organizations that need an offensive mindset wired into their day-to-day defense. Continuous attack-surface monitoring, threat-intelligence enrichment from our research stream, detection engineering tuned to your environment, and an on-call response bench for the events that actually matter.

Attack-Surface MgmtDetection Eng.DFIR Retainer
02Methodology

A discipline, not a checklist.

Every engagement runs through the same four-phase doctrine. It is deliberately slow at the front and deliberately ruthless at the back. It is why our reports rarely surprise the people who commission them, and consistently surprise the people who built the system.

01
Reconnaissance

We map the asset the way an actual adversary would, not the way the asset documents itself. External, third-party, supply-chain, and human surface.

02
Modelling

Threat models grounded in your business — what an attacker would actually want here, what they would settle for, and what they would pivot toward.

03
Exploitation

Chained, validated, reproducible. We do not stop at the proof-of-concept — we walk the path to the impact and document every gate that should have held.

04
Remediation

A report written for engineers and a separate brief written for the board. Retest is included. Closure is the deliverable; the finding is just the receipt.

03Selected Research

What we've found, responsibly.

A short, public selection of our coordinated disclosures. The work we are most proud of is, by design, the work you will never read about.

CVE-2024-•••••
Pre-auth RCE in an enterprise identity broker Header-parsing flaw chained with a deserialization gadget. Full administrative compromise from an unauthenticated request. Patched Q2.
CVSS 9.8 · CRITICAL
CVE-2024-•••••
Tenant isolation bypass in a major SaaS platform Race condition in a background reconciliation job permitted cross-tenant read of customer artefacts. Reported and remediated under embargo.
CVSS 8.6 · HIGH
CMX-R-0031
Prompt-injection persistence in a production AI agent Memory-store contamination via a benign-looking tool output, recoverable across sessions. Disclosed privately; defensive guidance shipped to the vendor.
Internal · ATLAS
CVE-2023-•••••
Origin-IP exposure on a heavily-WAF'd financial portal Historical certificate-transparency cross-reference plus an undocumented sub-domain produced a clean path past the perimeter. Closed in 11 days.
CVSS 7.4 · HIGH
The findings were the cleanest we've seen from any firm we've ever engaged — including the ones with the four-letter names. They wrote it the way our own seniors would have written it, only earlier.
Head of Application Security  ·  Global Financial Services Group  ·  Disclosed under NDA
— Engage

If you are reading this, you probably already know who you need.

Briefs are reviewed by a principal within one business day. Initial conversations are off-the-record. We are deliberately small, and we choose our work.