Independent Security Research

Security research across mobile platforms, product security, and applied AI

Orion Labs publishes technical research artifacts and methodologies designed to be useful to engineers and researchers—while remaining responsible about sensitive details.

Featured research

View all
Introducing Mintaka — A Threat-Hunt Research Program

A sustained research program at Orion Labs producing two outputs together: a corpus of adversary-infrastructure analysis — roughly seventy signal bearers accumulated to date across compound fingerprints, technique classes, OPSEC patterns, cluster-shape signatures, and era-corrected attribution data — and the methodology, tooling, and analytical backend that makes the corpus possible. Current state human-led with AI assistance. Direction of travel a refined multi-agent system operating under the methodology as its discipline. The first dispatch in a new series.

From Disclosure to Reproduction: Hunting NSO Pegasus V1 Infrastructure — Part 2

Reproducing Citizen Lab and Lookout's 2016 Million Dollar Dissident infrastructure analysis with the 2026 connector stack: era-bound tool substitution, three previously-undisclosed NSO-attributed domains, and a V1 deployment 15 months earlier than the original disclosure documented.

Hunting Nation-State Spyware Infrastructure with Censys — Part 1

A technical orientation to the Censys Platform as a threat intelligence primitive: scanning architecture, data model, historical data, the Threat Hunting Module, ASM, and CenQL.

Research areas

Mobile Platform Research

Internals analysis, vulnerability study, and patch research across iOS and Android. Published findings focus on technique and methodology.

Autonomous AI Research

Security and safety research in autonomous AI systems — agent architectures, capability boundaries, and emergent behavior in controlled environments.

AI-Assisted Analysis

Applying machine learning to binary analysis workflows, triage automation, and research productivity.

Anonymization Research

Privacy engineering, traffic obfuscation, and resiliency design — validated through controlled testing.

Mobile Agent Systems

Modular agent architectures and secure data handling patterns, explored in controlled research environments.

Critical Systems

Risk governance and assurance practices for high-assurance environments.