
zyxel-p870hn-hardware-hacking
From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

Talk to your Intel Management Engine directly — zero-dependency Python tool. Finds memory leaks, partition manifest, live MKHI probing. First public…

Step-by-step guide to building custom Kali NetHunter kernels for Android: source retrieval, toolchain selection, cross-compilation, and flashing.

Build scripts that generate Kali Linux ARM images with configurable architecture, desktop environment, and minimal/slim options for supported…

Vault app for DC34 badge


Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

A software SIM card.

A framework for creating smart cards (ICC-based cards with contacts).

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Curated hub of payloads, dumps, and guides for hardware hacking, RFID/NFC, sub-GHz, and wireless security experimentation.


A fuzzer for full VM kernel/driver targets

The Binarly Firmware Hunt (FwHunt) rule format was designed to scan for known vulnerabilities in UEFI firmware.

A tool to recover a fully analyzable .ELF from a raw kernel, through extracting the kernel symbol table (kallsyms)

Expose USB activity on the fly

This firmware is an alternative to the EvilCrowRF default firmware. Module: CC1101 - Compatible Flipper Zero file.