
hackEmbedded
This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

This tool is used for encrypt backdoor,shellcode,socks5 proxy generation,Information retrieval and POC arrangement for various architecture devices

Proof-of-concept exploit for CVE-2023-36143 demonstrating command injection in Maxprint Maxlink 1200G v3.4.11E via the diagnostic tool web interface.

Detailed analysis of CVE-2019-12489 command injection in Fastgate modem/router firmware, including firmware extraction, reverse engineering with…

Lightweight telnet honeypot for capturing IoT malware samples and identifying active command-and-control infrastructure, designed for educational…

Command injection exploit for TP-Link Tapo C200 camera (CVE-2021-4045) providing root shell access via UART and reverse-engineered uhttpd binary…

Proof-of-concept exploit for command execution vulnerability in VINGA WR-N300U router's ping and traceroute interfaces, with reverse engineering…

Exploit for CVE-2023-40289 command injection in ATEN BMC firmware. Enables remote file retrieval, upload, and command execution on affected…

Analysis and PoC for D-Link DIR-890L RCE (CVE-2022-29778)

Command injection exploit for RE11S router via formAccept function, with PoC and firmware simulation using firmAE. CVE-2025-22912.

Proof-of-concept exploit for CVE-2021-41730, demonstrating remote command execution in TENDA AC15/AC6 routers via unvalidated formSetIptv()…

Authenticated remote code execution exploit for TP-Link Archer C5 routers via malicious configuration file upload. Injects OS commands with root…

Proof-of-concept exploit for CVE-2025-15545, chaining hardcoded cryptographic keys and command injection to achieve remote code execution as root on…

Remote Code Execution (RCE) proof of concept on a enphase solar inverter

Embedded Linux backdoor with remote command-and-control console, supporting cross-compilation for embedded devices and red team operations.

Exploit chain for DSL-2750U router combining TFTP misconfiguration (CVE-2021-3707) and command injection (CVE-2021-3708) for full device compromise.

CVE-2024-44610: Authenticated remote root exploit in Peak PCAN-Ethernet CAN-(FD) gateways

Proof-of-concept exploit for authenticated command injection in Atlona AT-OME-RX21, allowing root-level command execution via the time configuration…

CVE-2025-29628, CVE-2025-29629, CVE-2025-29630, CVE-2025-29631