
GhostESP
The open-source wireless research platform for ESP32.

The open-source wireless research platform for ESP32.

Open-source simulation framework for developing, testing, and debugging unmodified software for multi-node embedded and IoT systems, supporting ARM,…

Modern WiFi auditing library for ESP32 using advanced 802.11 techniques. Captures WPA/WPA2/WPA3 handshakes via PMKID extraction and CSA injection…

ESP32DIV is a multi-purpose wireless offensive and defensive toolkit powered by an ESP32

Linux operating system for embedded devices with writable filesystem, package management, and build framework. Enables custom firmware creation for…

Firmware for a portable hardware hacking device with RFID/NFC, sub-GHz, infrared, and BLE support for wireless security testing and signal emulation.

Curated hub of payloads, dumps, and guides for hardware hacking, RFID/NFC, sub-GHz, and wireless security experimentation.

Frieren is a micro-framework designed for use in routers and Single Board Computers (SBCs). This framework is built to be lightweight, efficient, and…

No-dongle, no-root Bluetooth security assessment tool for wireless earbuds affected by the Airoha SDK vulnerability chain (CVE-2025-20700/20701/20702)

Passive wireless OSINT platform that detects and maps Wi-Fi, Bluetooth, CCTV, IoT devices, and cell towers using radio signal intelligence for…


对NETIS WF2409E路由器进行的一次完整硬件安全分析研究。通过对设备进行拆解分析、调试接口识别、固件提取等工作,记录了硬件分析的全过程、漏洞细节以及相应的安全建议,希望能帮助提高物联网设备的安全性。

Injects arbitrary code into a client's game.

Weak encryption in Acer Wireless Keyboard SK-9662 allows attacker in physical proximity to both decrypt wireless keystrokes and inject wireless…

Build repo from Universal Wifi pineapple hardware cloner


This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

Keystroke injection vulnerabilities in wireless presentation clickers