KrebsOnSecurity Exposes IRIS C2, a Startup Selling Zero‑Day Exploits to Governments
Notify your security team of the IRIS C2 threat and review zero‑day exposure risk.
Notify your security team and review zero‑day exposure risk.
Summary
IRIS C2 is a cybersecurity startup run by far‑right conspiracy theorists Jack Burkman and Jacob Wohl, both convicted felons, that sells zero‑day exploits to governments. It was founded in January 2025, has over 4,000 X followers, and advertises payouts from $10,000 to $7 million depending on target and reliability. The company operates under the shell Calvexa Group LLC in Virginia, with the website irisc2.com linked to Calvexa’s site. IRIS C2 originally began as a penetration‑testing firm but has shifted to phone‑hacking services for federal contracts.
The firm claims about 40 employees, none of whom can list their employment publicly for operational security. Burkman and Wohl have a history of fake intelligence companies and robocall fraud, and they have been fined by the FCC and prosecuted in multiple states. The startup’s public posts highlight the need for raw talent and high IQ, and it actively recruits researchers through LinkedIn and X. The article warns that the threat of a company openly selling zero‑day exploits could impact any organization that relies on software security.
Key changes
- IRIS C2 is a startup run by Jack Burkman and Jacob Wohl, both convicted felons, that sells zero‑day exploits to governments.
- The company offers payouts ranging from $10,000 to $7 million depending on target reliability and operational value.
- It operates under Calvexa Group LLC in Virginia, with the website irisc2.com linked to Calvexa’s site.
- IRIS C2 originally started as a penetration‑testing firm but has shifted to phone‑hacking services for federal contracts.
- The firm claims about 40 employees, none of whom can list their employment publicly for operational security.
- Burkman and Wohl have a history of fake intelligence companies, robocall fraud, and FCC fines.
- The startup actively recruits researchers through LinkedIn and X, emphasizing raw talent and high IQ.
- The threat of a company openly selling zero‑day exploits could impact any organization that relies on software security.