Dashten

※ About

Built by people who
find what others miss.

Dashten was born in the trenches of offensive security research — not in a boardroom. The same instincts that uncovered flaws in the world's most hardened systems now power a platform that shows you your exposure before someone else exploits it.

※ The story

From bug bounties to a platform.

Dashten was founded by Mohammad Atwi, a cybersecurity expert from Lebanon, together with some of the top cybersecurity experts from India. Years of hands-on offensive research — hunting vulnerabilities for many companies and government agencies around the world through their bug bounty programs — shaped one uncomfortable conclusion:

Most organizations never see the breach coming — not because attackers are invisible, but because nobody is watching where the evidence actually surfaces.

Credentials leak into infostealer logs. Employee logins circulate in dark-web dumps. Client data resurfaces in breach compilations months after the incident. The signals are out there, in the wild — scattered, unstructured, and invisible to conventional security tooling that only looks inward.

So we built the platform we always wished our clients had: one backbone that continuously watches the wild — OSINT, dark-web records, breach intelligence — and turns it into answers a security team can act on the same day.

The team

Mohammad Atwi Founder

Cybersecurity expert from Lebanon. Security researcher recognized by global technology companies and government agencies through their bug bounty programs.

Core research team Co-founders

Top cybersecurity experts from India — seasoned bug bounty hunters and OSINT specialists with years of experience across corporate and government attack surfaces.

Field of work Offensive research · OSINT

※ Track record

Recognized where it counts.

Our researchers have reported and helped fix security vulnerabilities for some of the most security-mature organizations on the planet — through their official bug bounty and responsible disclosure programs.

Apple

Technology United States

Google

Technology United States

Meta

Technology United States

GitHub

Technology United States

NASA

Space agency United States

U.S. HHS

Government United States

The Tor Project

Nonprofit Global

& many more

Companies · Gov Worldwide

Organization names refer to security research acknowledged through the respective organizations' bug bounty / responsible disclosure programs and do not imply endorsement of or partnership with Dashten.

※ Why it matters

The threats you can't see are already pricing you in.

※ 01

Breaches start outside

Most intrusions begin with a leaked credential or an exposed asset — evidence that was sitting in public and criminal sources long before the attack. Watching the wild is no longer optional; it is the earliest warning system you can own.

※ 02

Your people are the surface

Employees reuse passwords. Devices get infected by infostealers. Clients appear in dumps. Every person connected to your organization extends your attack surface beyond anything a firewall can see.

※ 03

Speed decides the outcome

A leaked credential is a race between you and whoever else finds it. Continuous monitoring, instant alerts, and expert-led engagements turn that race into one you can actually win.

Know your exposure. Before they do.