Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
IoT-Vulnerability-Research-Public — Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws. | Kitploit
Tools/GitHubGitHub/badchemical/iot-vulnerability-research-public
Embedded Systems SecurityIoT SecurityVulnerability AnalysisExploitationReverse EngineeringHardware HackingCryptographyHardware SecurityPapers & Research

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
Learning & Education
Firmware Analysis
GitHubbadchemical/iot-vulnerability-research-public

IoT-Vulnerability-Research-Public

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

View Repository
171 month agoNot yet reviewed

Hardware Security & Vulnerability Research

This repository serves as a centralized public archive for my independent vulnerability research, hardware audits, and Coordinated Vulnerability Disclosures (CVD).

All proof-of-concept scripts, firmware extractions, and hardware teardowns are published here strictly for educational purposes and defensive security research. Disclosures are made following standard industry timelines (CERT/CC 90-day embargoes or 45-day unresponsive vendor exceptions).

Published Disclosures

DateVendor / DeviceVulnerability TypeStatusLink
April 2026GNCC GP5 (T23)Hardware to Cloud / Persistent RootUnpatched / 6 CVEView Report
July 2026Kasa EC71Hardcoded RSA, MD5 User Creds, Precise GPS DisclosurePatched / 2 CVEView Report

Methodology

My research primarily focuses on bridging the gap between localized physical hardware flaws and systemic infrastructure risk. Methodologies include:

  • Physical hardware audits (UART, JTAG, SPI Flash dumping).
  • Bootloader analysis and bypass techniques (U-Boot).
  • Static firmware analysis and reverse engineering.
  • Cloud infrastructure mapping and credential exposure validation.
Download Tool