9 Jul 2026, 10:01 UTC583 views12 reactionsread 8 August 2026 Looking for professionals for usermode Windows research projects. Requirements: you have your own private fuzzers for open source and closed source software, and you are proficient with Windows 11 LFH exploitation. Payments are made upon completion of projects.
Send your anonymized CV to our email: [email protected] / [email protected] (in case of using Proton or other services banned in Russia)
Be sure to encry…
🔥8❤2🥰2
2 Jun 2026, 14:35 UTC≈1,100 views4 reactionsread 8 August 2026 Photo
Photo, posted without a caption
👍4
2 Jun 2026, 14:35 UTC≈1,170 views4 reactionsread 8 August 2026 Photo
Photo, posted without a caption
👍3❤1
2 Jun 2026, 14:34 UTC883 views12 reactionsread 8 August 2026 We truly respect what Google and Microsoft do for the security research community. Thanks to them, even such a small companies like OPZERO have been given a chance to work for our country without big expenses: our marketing budget till 2026 was 0 rubles. Fortunately, in 2026 the vendors decided to help the zero-day market grow with decisions that will be written down in marketing books, and perhaps in the annals of h…
❤12
30 May 2026, 21:18 UTC822 views10 reactionsread 8 August 2026 The server is up. DoS for one day? Too weak, colleagues, you can do better.
P.S. We kindly ask those who tried to make a submission via the website (by accepting risks of that certificate) or send an email yesterday to retry to do that.
👍4😁4🤔1😱1
30 May 2026, 12:40 UTC863 views15 reactionsread 8 August 2026 Let's Encrypt has banned our certificate and prohibits to release new ones so the website will be unavailable until we get a new certificate from a Russian CA.
👍13🔥2
28 May 2026, 11:40 UTC950 views27 reactionsread 8 August 2026 Recently the amount of submissions generated completely by AI increased drastically. Authors of such submissions themselves often don't understand how their exploits are working and instead of answering our questions provide AI output again. Inability to comprehend how an exploit is working leads to long discussions (if interaction with LLM can be called discussion) with one result: specified capabilities don't match…
👍17❤5👌5
2 Mar 2026, 13:02 UTC≈1,820 views28 reactionsread 8 August 2026 101 Chrome Exploitation — Part 2: Common Browser Vulnerability Patterns
We have published a large overview of Chrome vulnerability classes as a part of our browser exploitation series. In the article, we show the attack surface of V8 pipeline and Blink engine, GPU bugs allowing to escape the sandbox, and issues of Mojo IPC and Chrome concurrency. Modern hardware mitigations like PKEYs and MTE are mentioned too. The …
🔥16⚡6❤4👾1🤣1
4 Feb 2026, 13:00 UTC≈2,080 views20 reactionsread 8 August 2026 There are fake Telegram channels "selling" exploits on our behalf. Don't fall for them and follow our official resources only:
Website: https://opzero.ru/en
X: https://x.com/opzero_en
Russian channel: @opzero_ru
English channel: @opzero_en
❤11👍4👏3🔥1🥱1
27 Nov 2025, 18:18 UTC≈2,760 views26 reactionsread 8 August 2026 Urgently in demand:
— iOS 26 LPE from application to kernel — Up to $500,000
The exploit should work from a user application (Safari isn't required) and give as high privileges as possible, ideally kernel r/w. Zero-days without MIE bypass are still in the scope. Submit: https://opzero.ru/en/submit/
👍16🫡6👻2❤1🔥1
Showing the 10 most recent of 10 posts we hold for @opzero_en. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.