
HimitsuShell
shell script protector (obfuscation, embedded interpreter, DRM) - invisible to kernel tracing

shell script protector (obfuscation, embedded interpreter, DRM) - invisible to kernel tracing

Security research on a consumer IP camera built on the Fullhan FH8626V100 SoC (model AJL30PG0803).

Firmware repository for CatSniffer, a multi-protocol IoT security research board supporting BLE, Zigbee, Sub-1 GHz, and more, with version-specific…

Security advisory for TOTOLINK a720r buffer overflow vulnerability

Centralized firmware scanning and reporting platform with a web UI, REST API, and automated analysis workflows for securing embedded/IoT devices.

Tool for testing and auditing Bluetooth device pairing security, identifying vulnerabilities in wireless pairing protocols and hardware IoT…

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

Bluetooth experimentation framework for Broadcom and Cypress chips.

A Curated list of Security Resources for all connected things

Simulated Zigbee Light Link (ZLL) factory reset exploit for CVE-2026-21006, demonstrating unauthenticated TouchLink command injection that wipes…

Stack buffer overflow PoC in an embedded TLS certificate parser using a crafted X.509 SAN extension for remote code execution on IoT and industrial…

Demonstrates CVE-2026-1122 Ed25519 signature bypass via low-order point injection, forging malicious IoT firmware updates with Python and C verifier…

PoC vulnerability disclosures for consumer IoT cameras, detailing BLE buffer overflow and WiFi disassociation attacks that can take devices offline.

Python script to generate neo4j Cypher representation of a collection of IoT devices for visualisation and query.

Iot Camera 0day

BLE-based tool that automatically discovers and exploits Shining LED Masks by uploading a custom image without user interaction, proving security…

Results and device code from the DEF CON 29 presentation "You're Doing IoT RNG"

IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note…