
IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note CIVN-2026-0380.
This repository showcases the work carried out during my Research Internship at the Indian Institute of Information Technology, Allahabad (IIIT Allahabad) under the Cryptography and Network Security (CNS) Lab.
During this internship, I worked on IoT Security, Firmware Reverse Engineering, and Vulnerability Research, focusing on the security assessment of embedded IP camera firmware. The research resulted in the responsible disclosure of security vulnerabilities that were officially assigned two CVEs and published by CERT-In.
Organization: Indian Institute of Information Technology, Allahabad (IIIT Allahabad)
Research Mentor: Mr. Venkatesan Subramanian
Research Domain
The internship involved comprehensive firmware analysis of embedded IP cameras to identify security weaknesses through reverse engineering and embedded Linux analysis.
The research has been officially acknowledged through the following publications:
CIVN-2026-0380
https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2026-0380
https://www.cve.org/CVERecord?id=CVE-2026-65893
https://www.cve.org/CVERecord?id=CVE-2026-65894
I would like to express my sincere gratitude to:
This repository is intended solely to document my research experience and achievements.
No exploit code, proof-of-concept code, weaponized payloads, or sensitive technical details are included.
All identified vulnerabilities were responsibly disclosed to the vendor and relevant authorities before public disclosure.
LinkedIn: https://www.linkedin.com/in/venkata-mythreya-kumara-sarma-isukapalli-60b4a7255
GitHub: https://github.com/ivmks74