
unleashed-firmware
Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

A suite of WiFi/Bluetooth offensive and defensive tools for the ESP32

Proof-of-concept exploit for CVE-2020-25749 targeting Rubetek cameras with hardcoded Telnet credentials, enabling remote root shell access and full…

An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW

IoT firmware identification and extraction

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

AirPods liberated from Apple's ecosystem.

Flipper Zero firmware source code

An open-source TPM device-attest-01 CA server

UNIX-like reverse engineering framework and command-line toolset

EMBA - The firmware security analyzer

Extract files from any kind of container formats

Build your own custom WiFi Pineapple Tetra firmware tailored to any based MIPS 24Kc architecture router. (WiFi Pineapple Tetra DIY)

Specter — passive 13.56 MHz NFC reader/skimmer bug-sweep for Flipper Zero. Counter-surveillance EMF meter using the onboard NFC chip. No extra…

Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

A collection of vulnerabilities & exploits against modern GCS

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

The firmware engineering home of the Circuit Crafters first electronic badge project.