> ESC
Security research & offensive ops Online

dxleryt

Security Researcher @ RaptX & CTF Player

13 CVE ยท BC 5 ยท HoF 2 ยท HTB #1 Jordan ยท FlagYard #1 Jordan

Focus Offensive Security
Mode Online
Statistics
Posts6
Achievements15
CVEs Found13
Recognition & Hall of Fame
๐Ÿš€
NASA P2 Appreciation Letter
๐ŸŒ
Lumen
CVE Severity Breakdown
Critical
2
High
5
Medium
6
Low
0
Recent Signals

CVE-2026-33232: AutoGPT Platform Unauthenticated DoS via Disk Exhaustion

2026-03-18 - Vulnerability Discovery

AutoGPT Platform backend download endpoint leaves persistent temp files, allowing unauthenticated attackers to exhaust disk space and crash the service.

CVE-2026-26213: thingino-firmware Unauthenticated Command Injection in Captive Portal

2026-03-15 - Vulnerability Discovery

Unauthenticated OS command injection in the WiFi captive portal API endpoint (api.cgi) of thingino-firmware allows any device on the camera's AP to execute arbitrary commands as root, achieving full device compromise.

CVE-2026-32709: PX4 Autopilot MAVLink FTP Unauthenticated Path Traversal

2026-03-13 - Vulnerability Discovery

An unauthenticated path traversal vulnerability in the PX4 Autopilot MAVLink FTP implementation allows reading, writing, and deleting arbitrary files on the flight controller.

CVE-2026-32713: PX4 Autopilot MAVLink FTP Session Validation Logic Error

2026-03-13 - Vulnerability Discovery

A logic error in the session validation of PX4's MAVLink FTP implementation allows operations on invalid file descriptors and session isolation bypass.

Cosmic Components Co. - UniVsThreats26 Quals Web

2026-03-06 - Writeup

Stacking alternating coupons, abusing negative quantities and session-persistent discounts lets us buy every product for pennies, farm loyalty rewards, hit Elite tier, and grab the flag.

Starlink - UniVsThreats26 Quals Pwn

2026-03-06 - Writeup

Chaining a 7-byte format string leak with a strcpy heap overflow to redirect atoi@GOT to system and pop /bin/sh on a non-PIE, partial RELRO Starlink node manager.