
CVE-2018-9995-DVR-Credentials-Extractor
This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

This project demonstrates the publicly disclosed CVE-2018-9995 vulnerability found in multiple embedded DVR devices.

Dahua CVE-2026-29115

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

POC for CVE-2025-29384

Proof-of-concept of vulnerability found in Totolink A720R router

CVE-2026-38426 — strcpy() Stack Buffer Overflow in Tasmota fetch_jpg() boundary[40] (Tasmota <= 15.3.0.3)

Tesla Hack All Vehicles DoS Infotainment Touchscreen Interface CVE-2020-10558

A PoC for CVE-2025-67445

exploits and proof-of-concept vulnerability demonstration files from the team at Hacker House


Responsible disclosure write-up for CVE-2025-14175 involving weak cryptographic algorithm support in the SSH server of TP-Link TL-WR820N.

A technical case study and exploitation analysis of the Authentication Bypass vulnerability in TP-Link TL-WR840N firmware (CVE-2018-12633).

Security advisory for CVE-2025-65855 - Multiple vulnerabilities in HelpFlash IoT OTA update mechanism

CVE-2021-4045 CVE-2021-4045 is a Command Injection vulnerability that allows Remote Code Execution in the TP-Link Tapo c200 IP camera. It affects all…

D-link AX1500 Vulnerability

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

Python script to exploit CVE-2020-35391 on Tenda F3 V3/V4 routers, enabling unauthorized download of configuration, flash, and syslog files.

TP-Link TL-WR1043ND - Authenticated Remote Code Execution