
Starlink-FI
Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

Automated binary analysis framework leveraging IDA Pro for batch IDB creation, script execution, and binary diffing for vulnerability research and…

Rule-based detection format for finding known vulnerabilities in UEFI firmware, enabling automated firmware security analysis and hunting.

Tools for analyzing UEFI firmware and checking UEFI modules with FwHunt rules

Binary-only firmware historian that learns to locate functions in raw binaries by extracting known functions from similar binaries, enabling fast…

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware

Modular framework for IoT malware implantation research, providing tools for firmware modification, serial port debugging, software analysis, and spy…

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

Binary Ninja plugin for UEFI firmware analysis: applies entry point prototypes, fixes segment semantics, assigns UEFI service types, locates protocol…

Ghidra processor module providing disassembly and static analysis support for nanoMIPS binaries, enabling reverse engineering of embedded firmware…

unleash the full power of your soundcores! :)

Proof-of-concept exploits for three vulnerabilities in Crucial MX500 SSD firmware update mechanism, enabling buffer overflows and potential code…

Proof-of-concept exploit for OS command injection (CVE-2023-33381) in MitraStar GPT-2741GNAC routers. Demonstrates bypass of restricted shell via…

Ghidra loader for the MediaTek md1img modem firmware image format

Static analysis of D-Link router firmware revealing buffer overflow vulnerabilities in HTTP handling, including CVE-2017-14948, with disassembly and…

Binary diff and analysis of AppleUSBNetworking.kext for CVE-2016-1734, a macOS kernel USB networking vulnerability. Includes patch verification and…

Reverse engineering scripts designed for extracting Yealink VOIP upgrade files