
mlkem-native
Secure, fast, and portable C90 implementation of ML-KEM / FIPS 203

Secure, fast, and portable C90 implementation of ML-KEM / FIPS 203

UNIX-like reverse engineering framework and command-line toolset.

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

Intel Management Engine JTAG Proof of Concept - 2022 Instructions

Go Trusted Execution Environment (TEE)

GoTEE - example application

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Exploit and tooling for Amlogic-based Sonos devices: dumps OTP/eFUSE via an EL3 exploit, extracts LUKS decryption keys, and fetches/decrypts OTA…

Expose USB activity on the fly

A Curated list of Security Resources for all connected things

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

This is a collection of Unisoc BootROMs dumped from various Unisoc chipsets via CVE-2022-38694

Decrypt TP-Link Firmware

Research on CVE-2025-3052, an Insyde firmware vulnerability that exposes an arbitrary write primitive capable of modifying security-critical pointers.