
Chimera
Payload injector and HID emulator for Android like Hak5 and rubber ducky

Payload injector and HID emulator for Android like Hak5 and rubber ducky

Blueborne CVE-2017-1000251 PoC for linux machines

BLURtooth: Exploiting Cross-Transport Key Derivation in Bluetooth Classic and Bluetooth Low Energy [CVE-2020-15802] [CVE-2022-20361]

PoC for CVE-2019-10207

Exploit of the CVE-2025-36911 vulnerability in Python for testing our own equipment

BLE-based C2 server for Hak5 Bash Bunny enabling wireless command injection, payload delivery, and remote control over Bluetooth Low Energy.

LG On Screen Phone authentication bypass PoC (CVE-2014-8757)

Reverse-engineered Logi Options+ agent IPC protocol. Switch Logitech multi-host devices programmatically via Unix socket (macOS) or named pipe…

🔓 transfer ownership of any FB50 smart lock to yourself (CVE-2019-13143)

CVE-2018-4330 POC for iOS

Documenting Osmo Mobile BLE protocol

Bitcoin Cryptanalysis: CVE-2025-27840 Vulnerability in ESP32 Microcontrollers Puts Billions of IoT Devices at Risk via Wi-Fi & Bluetooth

WhisperPair (CVE-2025-36911) POC for ESP32 device

BlueBorne Exploits & Framework This repository contains a PoC code of various exploits for the BlueBorne vulnerabilities. Under 'android' exploits…

CVE-2024-21306 BadBlue implementation (Using DuckyScript)

Advanced Wiimote remapping software

Firmware for getting a power trace of the behavior of the bluetooth module on the ESP32 when the ESP32 is sent the undocumented hci bluetooth…
