Company
Work at SRLabs
The research on this site is the work. Read it before you apply: if these are the problems you want to spend a year on, we should talk.
We publish what we find, including the times we got it wrong. In 2018 we corrected our own Android patch-gap method in public, after community firmware builds turned out to have been mixed in with official vendor builds.
What the work is like
You publish under your own name
The research on this site carries the name of the person who did it, and the tools go out with the write-ups: SIMtester, gsmmap, SnoopSnitch, CosmFuzz, Certiception, a Hexagon baseband fuzzer.
People stay on a subject long enough to own it
The archive is the evidence: the same names recur on the same systems across years, and the most-published researchers here have eight write-ups apiece.
The archive goes back to 2010
Every year since 2010 has something published on it. Whatever you work on here, it lands in that record under your name rather than in a client report nobody outside will read.
Meet the team
More than fifty people, across Berlin and Hong Kong. Most arrived for a specific problem: reverse engineering a baseband, breaking a payment terminal, building a security function that did not exist yet.
Kristen Huang
Security Consultant
Kristen joined SRLabs for the hardware work, and spends most of her time reverse engineering Android devices.
Regina Biró
Security Consultant, Team Lead
Regina studied Applied Mathematics and Cryptography. In 2019, she joined SRLabs, working on various projects that involved device testing, phishing campaigns, and the Android patch ecosystem. Later, she started to support blockchain audits.
Dominik Oepen
Principal Consultant
Dominik has worked in IT security for a decade, in a number of different roles. He joined the SRLabs team to broaden his horizons and pursue projects in new areas. He is currently involved in building and securing the 5G network for a large telco.
Balthasar Martin
Security Consultant, Team Lead
While studying IT-Systems Engineering, Balthasar joined SRLabs for Hack the Beach retreat with his research on cloud-connected IP cameras. He then established the SRLabs red team, designed to expand their knowledge on how clients get hacked.
Rachna Shriwas
Security Engineer
Rachna joined SRLabs device testing team to deepen her skills in security. She studied Computer Science and always wanted to become an Ethical Hacker and work in cybersecurity. The most interesting part about device testing for Rachna, is that she gets to test a variety of devices.
Rik Giles
Security Consultant, Team Lead
Rik has been interested in cybersecurity from an early age and always been self-driven. He joined our Hong Kong team in 2019 and has primarily focused on vulnerability assessment for our major client in telecommunications.
Open positions
Everything currently open is below, live from our hiring system. If nothing fits and you can point at work you have done, write anyway.