◳ two fingers / ctrl+scroll to explore · drag to spin
Managed IT · Cybersecurity · AI Integration · Penetration Testing

Cybersecurity & AI, handled for you.

One partner for the three things modern businesses can't afford to get wrong: managed IT & cybersecurity, AI integration & management, and offensive security testing. We pen-test the systems most teams ship untested, run your IT and defense day to day, and build, integrate, and manage AI the right way — because we build and self-host our own in-house. Verified work, proven on our own hardware, reported in plain English.

Findings verified before report Signed Rules of Engagement Coordinated disclosure
LIVE CVE ADVISORY TRANSMISSIONS
decrypting feed…AI/ML · src: NVD · OSV · CISA KEV
0%
Findings verified before report
0
Offensive disciplines covered
24h
Critical-finding notification
NDA
Every engagement, by default

The proof.

Selected engagements — one published with the client's permission, the rest under NDA — plus independent recognition. Capability shown on results.

Client engagement · published with permission

Full-scope penetration test of a live, multi-tenant AI SaaS application and its MCP server.

Cross-tenant authorization (IDOR/BOLA) tested in both directions and across both token transports; a full SSRF bypass ladder; stored XSS; database row-level security; OAuth. Manual, positive-control verified, end to end.

Result: no exploitable vulnerabilities identified — two non-exploitable hardening notes reported.

Read the full engagement case study →

Selected engagements — details confidential

Real engagements against production systems across the full offensive spectrum. Client identities and data are withheld under NDA; the technical approach is shown.

Independent recognition

Beyond client work, offensive skill is validated publicly on Hack The Box. On the "CTF Try Out": 36 of 37 scenarios solved · global rank #93 · 34,100 points. On the MCP Try Out: a 31-solve sweep across all eleven categories for 25,000 points · global rank #39 of 300 teams — binary exploitation, web, reverse engineering, cryptography, forensics, hardware, ICS, blockchain, coding and more. Full profiles & badges available on request.

What we do

Three practices, one partner: offensive security, managed IT & cybersecurity, and AI integration & management — for startups and SMBs that want it handled, not juggled.

Offensive security & testing
◧

Web Application Testing

Full-scope assessment aligned to the OWASP Top 10: access control, authentication and session, injection, SSRF, business-logic flaws, and misconfiguration.

OWASP Top 10IDOR/BOLABusiness logic
⊞

API Security Assessment

REST and GraphQL testing against the OWASP API Security Top 10: object- and function-level authorization, cross-tenant access, mass assignment, rate-limit gaps.

OWASP APIGraphQLCross-tenant
◉

AI / MCP Security Review

A new trust boundary most teams ship untested: MCP servers, agent tool-use, and LLM-connected apps — tenant isolation, prompt and tool-call abuse, output handling.

MCPPrompt injectionTool-call abuse
Managed IT & cybersecurity · MSP / MSSP
⌁

Managed IT Services

Your outsourced IT department: endpoint management and patching, backups and recovery, email and identity, network and helpdesk — kept current, monitored, and supported so your team can work.

EndpointsBackupsIdentityHelpdesk
⊟

Managed Security & Monitoring

Ongoing defense, not a one-off scan: EDR, log and alert monitoring, vulnerability management, patch governance, and incident response when something does get through.

EDRMonitoringVuln mgmtIR
◇

Compliance Readiness & Hardening

We take you to audit-ready and keep you there — gap assessment, control implementation, policy, and the evidence trail — mapped to SOC 2, PCI DSS, HIPAA, NIST and CIS. We prepare you for the auditor; the certification itself is issued by them. Backed by our own NIST-control tooling.

SOC 2PCI DSSHIPAANIST / CIS
AI integration & management · managed AI
◉

AI Integration

Put AI to work inside your business: LLM assistants, RAG over your own documents, agentic automation, and tooling wired into the apps and workflows you already use — scoped, secured, and actually useful.

LLM appsRAGAutomation
⌸

Self-Hosted AI Infrastructure

We build and run our own AI stack — self-hosted models, GraphRAG memory, GPU compute, agent harnesses — on in-house hardware with in-house code. We stand the same up for you: private, on-prem, no data leaving your walls, no per-seat SaaS bill.

Self-hosted LLMsOn-prem GPUNo SaaS
◎

Managed AI Operations

Run it for you long-term: model updates and evals, guardrails and prompt-injection defense, token-efficiency and cost control, monitoring and uptime. Your AI, maintained — without an ML team on payroll.

EvalsGuardrailsCost control
How we engage

Project / Fixed-Scope

Quoted · per scope

A defined piece of work — a pen test, an AI integration, an IT or security buildout — with clear deliverables, a prioritized report, and a debrief.

Managed · Monthly

Retainer · per month

Ongoing managed IT, security monitoring, and AI operations for a flat monthly fee. We keep it running, patched, defended, and improving.

Retest & Advisory

Ongoing · as you grow

Re-test after fixes, recurring assessments as you ship, and on-call expertise for the security and AI decisions in between.

How an engagement runs

Disciplined, authorized, and documented end to end. No test packet leaves without written scope.

Scope

Exact targets, windows, and constraints defined in a signed SOW.

Authorize

Rules of Engagement signed before any testing begins — your legal shield and mine.

Test

Manual assessment across the agreed surface. Critical findings reported out-of-band within hours.

Verify

Every finding reproduced with a positive control. No scanner-only claims.

Report & retest

Prioritized report, debrief call, and a re-test after you fix. Attestation on request.

Full-spectrum capability

Application security is the day job. The record proves depth across the whole offensive stack — the instinct that finds the bug a checklist misses.

AI/ML infrastructure engineeringself-hosted · GraphRAG · GPU
Managed IT & security operationsMSP / MSSP · monitoring · IR
Web & API penetration testingOWASP Top 10 / API
AI / MCP trust-boundary testingtenant isolation · injection
Binary exploitationUAF · heap · RCE
Reverse engineeringstatic · dynamic
Cryptography attackscollisions · cipher misuse
ForensicsPCAP · carving
Hardware & ICSlogic-analyzer · OT protocols
Reporting & remediationplain-English · prioritized
Real systems · the full record

Thirty-one real-world systems taken end to end across all eleven disciplines — production-grade environments with the same stacks, defenses, and bugs as live targets. Each driven from first access to full compromise — not a scaled-down exercise.

Web & API5 solved
Jailbreak — auth / access-control bypass Blueprint Heist — SSRF chained to internal API Labyrinth Linguist — server-side template injection Flag Command — client/API logic abuse TimeKORP — time-based injection
Binary exploitation5 solved
Void — use-after-free to RCE Abyss — heap corruption Regularity — memory-safety primitive Labyrinth — ROP / return-oriented chain Getting Started — stack overflow control
Reverse engineering4 solved
Don't Panic! — compiled-binary logic recovery TunnelMadness — obfuscated control-flow LootStash — static constraint recovery FlagCasino — RNG / algorithm reversal
Forensics3 solved
Silicon Data Sleuthing — media / artifact recovery Phreaky — layered-archive & mail-capture carving An Unusual Sighting — log & capture anomaly analysis
Hardware & ICS4 solved
Debug — JTAG / logic-analyzer signal decode Critical Flight — avionics protocol analysis It's Oops PM — firmware / embedded analysis Shush Protocol — industrial (OT) protocol decode
Cryptography1 solved
Dynastic — classical-cipher key recovery
Blockchain1 solved
NotADemocraticElection — smart-contract logic flaw
Coding1 solved
Dynamic Paths — algorithmic (grid DP) solution
Misc6 solved
Prison Pipeline — CI/CD escape to protected host Locked Away — sandbox / jail escape Hidden Path — route / endpoint discovery Chrono Mind — timing / logic exploitation Stop Drop and Roll — restricted-shell break Character — encoding / charset abuse
Warmup1 solved
Welcome — initial foothold

Products we build & run

We don't just advise — we ship and operate our own production software. Proof that the security and AI work we bring to clients is built on real engineering, not slides.

● Live · shipped

QR Dynamic

A dynamic-QR SaaS: codes stay editable after they're printed — destination, WiFi password, label, expiration, password-gate — with no reprint. Correct WPA3 WiFi encoding (most generators silently downgrade and fail to connect), real scan analytics, custom styling, bulk CSV, a public API, and its own MCP server. Four-tier Stripe billing, live.

We pentested our own app and fixed it: stored XSS in the WiFi/vCard render, a TOCTOU free-tier race (closed with a Postgres advisory lock), endpoint DoS (rate-limited at the edge), and a WPA3 encoding bug competitors ship broken.

Next.js 16 · React 19Supabase · RLSStripeVercelSentryMCP server
Visit QR Dynamic →
◐ In development

MCP Sentinel

Security monitoring for MCP servers and agentic AI — the trust boundary most teams ship untested. Continuous checks for tool-call abuse, cross-tenant isolation, prompt and indirect injection, and unsafe LLM output handling across AI-connected apps.

Built on the same in-house AI-security tooling and self-hosted models we run in Live Operations below. Launching to early clients soon.

MCPAgentic AIOWASP LLMContinuous monitoring
Deep AI expertise · proven in-house · brought to your systems

We know AI — down to the metal

This is the depth of AI knowledge we bring to clients. What moves behind this page is our own GraphRAG "AI brain", engineered in-house from scratch — self-hosted memory, a custom tooling harness, and reasoning sessions fused into one living graph, hand-written on our own hardware with no SaaS behind it. We understand these systems because we build them end to end — and we put that expertise to work securing, auditing, and standing up AI for you. Shown as pure topology; contents, names, and client data never leave our machines.

Inside the model

We know these models from the inside — and bring that to clients. The real embedding space behind our knowledge base and the encode→rerank pipeline that searches it: self-hosted open models on in-house GPUs, wired with our own code. The same understanding we apply to securing and building AI for you. Projected live from our own vectors; shape only, no contents.

Live operations

Evidence of how deeply we know the stack — knowledge we bring to your systems. Real telemetry from infrastructure we engineered ourselves: a custom token-efficiency layer, local GPU compute, and our own knowledge graph. Measured on our hardware, built almost entirely on free and open tooling. No client or content data.

Token efficiency IN-HOUSE
0% savedcontext tokens
0tokens saved of 0 processed
0 operations · — runtime
our token-efficiency stack · shell-proxy · output compression · local-model delegation
GPU compute GPU
0% util96 GB pool
IDLE
VRAM 0 / 0 MiB
0°C · 0 W
Knowledge graph GraphRAG
0nodes
memory 0 tooling 0 sessions 0
0 edges linked · 3 scopes
Reasoning & inference GATE
engine in use—
—tok/s · — ms avg inference
local gate · — recent routes · metacognition —%
Edge WAF IN-HOUSE
0inspectedrequests filtered
ARMED
0blocked · 0 rate-limited
last rule — · —
custom Worker WAF + per-IP rate limiter · layered on the platform edge
0memory nodes
0linked edges
0signals/min
3scopes linked
knowledge / memory tooling harness reasoning sessions

Topology only — contents, identifiers, and client data withheld. Rebuilt from the live graph on every save.

Embedding projector · vector space
proprietary embedding model · 384-d · PCA-2D
Memory weave · recall → latent → stores
proprietary 384-d · latent bottleneck · GraphRAG stores
LIVESYSTEM ACTIVITY—
waiting for telemetry…
on-prem telemetry · aggregate only · no content or client data
About

Built in-house. Proven on real systems.

Merriweather Holdings is a managed IT, cybersecurity, and AI partner for startups and SMBs. We run and defend your IT day to day, pen-test the systems most teams ship without testing — web apps, APIs, and AI/MCP trust boundaries — and integrate, host, and manage AI the right way. We build and self-host our own AI infrastructure in-house, which is exactly why we understand how to secure and operate it for you. Every engagement is authorized and documented; every finding proven before it's reported. Hands-on expertise that earns its place on the result.

  • Entity: Merriweather Holdings, LLC
  • Based: United States — fast turnarounds for startups & SMBs
  • Alignment: OWASP Top 10 · OWASP API Security Top 10 · OWASP LLM Top 10
  • Discipline: signed RoE, coordinated disclosure, positive-control verification
  • Proof: named client case study (with permission) + independent recognition (Hack The Box standings)

Start a conversation

Tell us what you've built and what you're worried about. You'll get a scoped, fixed-price proposal — no obligation, no jargon.

Prefer email? [email protected]
◎
ENGAGEMENTS
Authorized · fixed-scope · U.S.-based
⬡
SCOPE
Web · API · AI/MCP security
✓
PROCESS
Signed RoE → test → verify → report → retest