Author
Zyber Research.
Offensive Security Research Team · 8+ years · Tamil Nadu, India
Zyber Research is the TheZyberSecurity offensive-security research collective. We publish evidence-first analysis of AI-security, application-security, and compliance-alignment topics with a single measure: would a defender who read this catch the class of attack tomorrow?
Domains of expertise
- AI Red Teaming
- Prompt Injection
- LLM Security
- Web Application Penetration Testing
- Network Penetration Testing
- Vulnerability Assessment
- OWASP Top 10
- OWASP LLM Top 10
- OWASP API Security Top 10
- MITRE ATT&CK
- MITRE ATLAS
- ISO/IEC 27001
- ISO/IEC 42001
- HIPAA Security Rule
- DPDP Act 2023
- GDPR
- NIST Cybersecurity Framework
- NIST AI Risk Management Framework
Credentials
Certified Ethical Hacker (CEH)
EC-Council (ANAB ISO/IEC 17024 accredited)
Published research
August 15, 2026 · AI Security
AI Red-Teaming: Complete Guide for AI-Native SaaS in 2026AI red-teaming for AI-native Indian SaaS: attack surface, OWASP LLM Top 10 v2.0, MITRE ATLAS, ISO 42001 alignment, and how to scope an engagement.
August 15, 2026 · AI Security
Prompt Injection Defenses That Actually Work in 2026Prompt-based guardrails do not stop prompt injection. What actually works: architectural defenses, tool-scope enforcement, output escape, detection layers.
August 15, 2026 · Industry Analysis
Top CERT-In Empanelled AI Security Firms in India (2026)CERT-In empanelled AI security firms in India (2026) — transparent listicle with comparison table, methodology, inclusion criteria, and verification steps.
August 15, 2026 · AppSec
Web Application Penetration Testing: Complete Guide for Indian SaaS Founders (2026)OWASP Top 10 + API Top 10 + ASVS v5, six-phase methodology, INR cost brackets, DPDP Act + HIPAA overlays — WAPT for Indian SaaS founders in 2026.
August 15, 2026 · Compliance
ISO/IEC 42001 Readiness: Complete Guide for AI-Native Indian SaaS Startups (2026)ISO/IEC 42001:2023 for Indian AI SaaS: NIST AI RMF + EU AI Act + DPDP mapping, INR cost brackets, 6-18 month timeline, first-mover window in India.
July 18, 2026 · AI Security
The OWASP LLM Top 10, Translated for Founders Shipping AIOWASP LLM Top 10 v2.0 for founders shipping AI: the three risks that hurt first, the design pattern behind all ten, and a 90-minute self-assessment.
July 14, 2026 · AppSec
JWT Algorithm Confusion: How the Wrong `alg` Forges Any UserJWT algorithm confusion lets attackers sign forged tokens with your public key. Real CVE examples, 10-min self-test, library defaults, and the exact fix.