
CVE-2026-6837-zyxel-export-cgi-command-injection
Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.

Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.

Authenticated Remote Code Execution vulnerability in Xerox WorkCentre printers via the Network Troubleshooting Log feature.

Non-destructive PoC and technical write-up for CVE-2026-73673, an unauthenticated firmware-update flaw in Netis NC63 router, with reproduction and…

The open-source wireless research platform for ESP32.

Pre-Authenticated Full Root Remote Command Execution in Voltronic Power SNMP Web Pro 1.1

Security advisories for CVE-2021-43716/43717/43718 (Epson EH-TW5350)

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

Vault app for DC34 badge

SPI flash read MitM attack PoC

MikroTik remote jailbreak for v6.x.x

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

Jailbreak for A8 through A11, T2 devices, on iOS/iPadOS/tvOS 15.0, bridgeOS 5.0 and higher.

A framework for creating smart cards (ICC-based cards with contacts).

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Curated hub of payloads, dumps, and guides for hardware hacking, RFID/NFC, sub-GHz, and wireless security experimentation.

WebKit+Kernel exploit chain for all PS Vita firmwares

Full duplex 433 MHz Signal jammer, recorder, decoder and hacking multitool device based on ESP32 microcontroller and RFM69HW radios. This version of…
