// root@pavan ~ ./build

Pavan Nallamothu

I build offensive security tooling and break systems. Sixty-two open-source builds, several of them security tools, a live exploit lab, and 14 published CVEs across Apple, CISA, the NSA, NASA, AutoGPT, yt-dlp, and BlueprintUE. This is where the code and the exploits live.

📍 Jersey City, NJ 🎓 M.S. Cybersecurity · Pace University 🛡️ ISC² NJ Chapter · CTF Committee
Pavan Nallamothu, security researcher
14
CVEs Published
4
Apple · CISA · NSA · NASA
5
Disclosure Platforms
4+
Years Cloud/DevOps

Published CVEs

Fourteen published CVEs across Apple, the NSA, CISA, and NASA, AutoGPT, yt-dlp, and BlueprintUE, covering sandbox escapes, SSRF, authentication bypass, IDOR, path traversal, and denial of service.

Credited by CISA in advisory ICSA-26-230-01 for reporting CVE-2026-63133, CVE-2026-63134, and CVE-2026-63177 in CISA Malcolm, and by Apple in macOS security updates.

// hover to pause, swipe to browse on mobile

Browse all CVE advisories → Each CVE has its own page linking the authoritative cve.org record and GitHub Security Advisory.

Exploit Lab

Live reproduction scripts for disclosed bugs. Each visit loads a random proof of concept, and the tabs switch between them.

pavan@lab: ~

Publications

Open-access security research preprints with permanent DOIs, indexed by OpenAIRE and listed on Google Scholar.

Preprint

SSRF Beyond HTTP: Egress-Path-Incomplete Guards in AI Agent Platforms

A formal egress-path-incomplete SSRF model instantiated on CVE-2026-33234 (AutoGPT). Defines the EPI-SSRF class. Zenodo, 2026.

Preprint

Trusting the Filename: File-Write Attacks from Untrusted Archive and Download Metadata

File-write attacks from attacker-controlled archive and download metadata across three 2026 CVEs. Zenodo, 2026.

Preprint · under review

Dominating the Deputy: Toward Positional Permission Completeness in Agentic Workflows

A static detector for positional permission gaps (the confused-deputy pattern) in AI agent workflows, evaluated by rediscovering four upstream-fixed SSRF CVEs as an independent oracle. Preprints.org, 2026.

Related: EPI-SSRFDOI on approval
Preprint · under review

Composable Seeding of ML-KEM from Certified Bell Randomness in the QROM

Seeding ML-KEM (FIPS-203) from a CHSH-certified quantum source in the QROM. A random-oracle hash carries quantum-conditional min-entropy into IND-CCA security at a one-way-to-hiding loss with no extractor, and classical randomness certificates are shown insufficient. IACR ePrint, 2026.

IACR ePrintunder review · link on approval
M.S. Capstone · 2025

Post-Quantum Cryptography for Resource-Constrained IoT Devices

Benchmarking and analysis of post-quantum cryptography algorithms on constrained IoT hardware. Pace University CYB691 capstone with Ravindra Dholariya.

Recognition

Independent databases, vendors, government agencies, security media, and community that track, credit, and feature this work. Every link points to the source that carries the credit.

Commercial scanner

Snyk Vulnerability Database

Credits Pavan Nallamothu for CVE-2026-50023 in yt-dlp. Surfaced automatically inside enterprise dependency scans worldwide.

Government

CISA ICS Advisory

Credited in ICSA-26-230-01 for CVE-2026-63133, CVE-2026-63134, and CVE-2026-63177 in CISA Malcolm.

Vendor

Apple Security Updates

Credited in Apple's macOS security release notes for CVE-2026-43763 in Apple Type Services.

Dev ecosystem

GitHub Security Advisories

Credited reporter on the GitHub-reviewed advisory for the yt-dlp filename bug, GHSA-c6mh-fpjc-4pr3.

Open database

OSV.dev

Google's open vulnerability database mirrors the credited advisories into automated supply-chain tooling.

Disclosure list

Full-Disclosure

Apple's advisory APPLE-SA-07-27-2026-3 on the Full-Disclosure mailing list credits Pavan Nallamothu by name for CVE-2026-43763.

Security media

OT Security Wire

Independent coverage of CISA ICSA-26-230-01 that credits pavanchow among the researchers who reported the Malcolm findings.

OT Security WireRead →
Security media

CyberICT

Independent write-up naming pavanchow as the reporter of CVE-2026-63133, CVE-2026-63134, and CVE-2026-63177 to CISA.

CyberICTRead →
Independent

Assurant Cyber

First non-government site to credit pavanchow for the CISA Malcolm advisory ICSA-26-230-01.

Assurant CyberRead →
Speaking

ISC2 NJ Chapter

Featured as a SECON NJ 2024 organizer and speaker on Zero Trust, with a full-name researcher bio in the chapter newsletter.

Vendor

Apple: iOS 27 and iPadOS 27

Credits Pavan Nallamothu for CVE-2026-65412, a null pointer dereference in CoreText reachable by processing web content, and separately names him under Additional recognition for Foundation in the same release.

Security media

9to5Mac

Independent coverage of every security fix in iOS 27 and iPadOS 27 that carries Apple's credit lines verbatim, including the CVE-2026-65412 CoreText entry and the Foundation acknowledgment.

9to5MacRead →
Project record

AutoGPT Security Policy

The project's own SECURITY.md names Pavan Nallamothu in section 13, Acknowledgments, for one advisory. The disclosure record held by the maintainers themselves.

Disclosure list

Full-Disclosure: APPLE-SA-07-27-2026-4

Apple's macOS Sonoma 14.8.8 advisory on the Full-Disclosure list credits Pavan Nallamothu and Jared Reyes for CVE-2026-43763, a sandbox file-read in Apple Type Services.

Security archive

Packet Storm

A long-running archive of vulnerabilities, advisories, and exploits. File entry 230694.

Packet StormFile 230694 →
Government agency

NASA Advanced Multi-Mission Operations System

Credits Pavan Nallamothu in the AIT-Core security advisory for a format-string memory exhaustion in the BSC capture manager, reachable through an unvalidated file name pattern and capable of crashing the ground station capture manager. Fixed in 3.1.2.

Experience

Running AWS infrastructure at scale, building and hosting CTF challenges, and supporting a university campus.

Education & Credentials

Master of Science in Cybersecurity from Pace University, awarded a Graduate Merit Scholarship.

Education

M.S. Cybersecurity

Pace University, New York, NY · 2023 - 2025 · Graduate Merit Scholarship

Certifications

Community

Talks, mentoring, competition, and event organizing across the security and open-source communities.

Open-Source Builds

Sixty systems tools written from scratch in Rust, each its own repository with a live project page. Build-your-own versions of the software I break for a living, grouped from compilers and kernels to databases, browser engines, and security tooling.

Compilers, languages, and runtimes (8)

Languages

Alchemist

A compiler that lexes, parses, and lowers a small language to stack bytecode, then runs it on a bundled VM.

Languages

Anvil

A compiler backend that lowers SSA to a target machine with graph-coloring register allocation.

Languages

Esperanto

A small statically-typed language with type inference, built from a lexer, parser, and checker.

Languages

Kindling

A dynamically typed language with a bytecode compiler and a stack-based virtual machine.

Languages

Mirage

A small bytecode virtual machine with its own instruction set, a text assembler, and a runner.

Languages

Sprite

A tiny embeddable scripting language with a one-pass lexer, recursive-descent parser, and tree-walking interpreter.

Languages

Whetstone

A compiler optimizer with a readable pass pipeline: constant folding, propagation, and algebraic simplification.

Languages

Phantom

A CHIP-8 emulator with a fully unit-tested CPU core covering the full opcode set.

Operating systems and kernels (12)

Systems

Aurora

An amnesic aarch64 kernel that runs entirely in RAM, encrypts its vault in memory, and wipes every secret on exit.

Systems

Bedrock

A from-scratch virtual CPU, assembler, and preemptive OS kernel you can boot in the browser.

Systems

Chronos

A CPU scheduler running FIFO, SJF, round-robin, priority, and MLFQ over real processes.

Systems

Cocoon

A rootless Linux container runtime that isolates a process with namespaces, pivot_root, and dropped capabilities.

Systems

Conch

A Unix shell with a hand-written tokenizer, pipeline parser, and process wiring for pipes and redirects.

Systems

Emberchip

A deterministic RTOS simulator on an emulated microcontroller, with a preemptive scheduler and priority inheritance.

Systems

Ignition

A deterministic boot sequence simulator with an MBR parser and boot config, zero dependencies.

Systems

Pane

A dependency-free tiling window manager engine, zero external crates.

Systems

Seedcore

A deterministic microkernel simulator providing threads, address spaces, and synchronization.

Security and cryptography (7)

Security

Cipherlock

ChaCha20-Poly1305 authenticated encryption from scratch, proven against the RFC 8439 test vectors.

Security

Gatekeeper

An auth server with HMAC-SHA256 signed tokens and salted password hashing, no crypto crates.

Security

Lint-Owl

A static analyzer whose result is the data-flow path from an untrusted source to a dangerous sink.

Security

Oracle

A query language whose results are attack paths across identity and network graphs.

Security

Unweave

An EVM bytecode disassembler that reconstructs intent and flags dangerous opcodes.

Security

Veilproof

A zero-knowledge proof system built from scratch with no crypto crates and no elliptic curves.

Networking and web (9)

Networking

Echofront

A layer 7 reverse proxy and load balancer with health checks, circuit breaking, outlier ejection, and retries.

Networking

Ferryman

A load balancer with round-robin, weighted round-robin, least-connections, and seeded random strategies.

Networking

Hearth

An HTTP server built from scratch on std::net, no hyper and no web framework.

Networking

Rift

A programmable single-binary reverse proxy where routing rules are a compiled DSL, not YAML.

Networking

Riverbed

A message broker with topics, wildcard subscriptions, and bounded per-subscriber queues.

Networking

Semaphore

A length-prefixed framing codec plus a small typed request/response protocol over TCP.

Networking

Tollgate

A from-scratch API gateway where routing, auth, and rate limiting are a pure pipeline.

Data and storage (9)

Storage

Conduit

A from-scratch PostgreSQL driver that speaks the v3 wire protocol over TCP with hand-written SCRAM-SHA-256.

Storage

Flint

An embedded single-binary key-value store, a persistent append-only log with an in-memory index.

Storage

Ledgerstone

An embedded relational database with a real SQL subset, a hand-written lexer, parser, and executor.

Storage

Strata

A file system that lives inside one container file, with a superblock, a bitmap allocator, inodes, and directories.

Graphics, audio, and machine learning (6)

Graphics

Forge

A dependency-free 2D game engine with an ECS, a fixed-timestep loop, and impulse-based physics.

Graphics

Loom

A dependency-free retained-mode GUI layout engine that lays out a tree of widgets.

Graphics

Newton

A 2D physics engine with semi-implicit Euler integration, circle collision detection, and impulse resolution.

Graphics

Reverb

An audio synthesis project with oscillators, an ADSR envelope, mixing, and a hand-written WAV writer.

Graphics

Synapse

A neural network with a reverse-mode scalar autograd engine and a tiny MLP, trained on XOR.

Developer tools (9)

Dev tools

Atelier

A dependency-free code-intelligence engine with go to definition, find references, live diagnostics, and safe rename.

Dev tools

Metronome

A single-binary cron scheduler with a pure, unit-tested schedule engine you can embed.

Dev tools

Quorum

A deterministic Raft consensus simulator showing leader election, terms, and log replication.

Dev tools

Relay

A from-scratch CI/CD engine whose scheduler is a pure, deterministic DAG executor.

Dev tools

Shepherd

A dependency-free, Kubernetes-style reconciliation control loop that schedules pods onto nodes.

Standalone projects (2)

Security

SiteGuard Scorecard

A website security scanner that grades a site A through F on security headers, cookie flags, exposed files, TLS configuration, mixed content, and subdomain-takeover risk.

More from the site

Shell

Type help to see all commands. Try neofetch, cves, experience, or scan github.com.

guest@pavan-blog: ~
guest@pavan-blog:~$

Get in Touch

Reach out for collaboration, coordinated disclosure, or a conversation about offensive security.

Get in touch

Have a question or want to work together? Reach out directly.

Connect with Pavan Nallamothu on LinkedIn.

Copied

SYSTEM BREACH DETECTED

Just kidding. But you did type the Konami Code!