
PS4-webkit-exploit-6.XX
Webkit exploit that give arbitrary R/W on 6.XX PS4 firmwares

Webkit exploit that give arbitrary R/W on 6.XX PS4 firmwares

RISC-V emulator in Rust that boots Linux with JIT on ARM64/x86_64 and Sv39 virtual memory

PoC script that shows RCE vulnerability over Intellian Satellite controller

BLEBoy is a training tool to teach users about BLE security by providing a single BLE peripheral that can be used to experiment with each BLE pairing…

Full exploit for D-Link DCS-5020L, POC crash for others that are vulnerable as well.

A game modding utility that makes injecting C/C++ code easier.

This repository contains the results of my August 2020 research of Tiandy's IPC/NVR firmware. I found two vulnerabilities that could be used to…

Card calculator and Proxmark3 Plugin for writing and/or simulating every card type that Doppelgänger Community, Pro, Stealth, and MFAS support.

BLE-based tool that automatically discovers and exploits Shining LED Masks by uploading a custom image without user interaction, proving security…

proof of concept CVE-2021-1931 exploit for the blackberry key2 (le) that allows to flash unsigned images temporarily

By the Way is an exploit that enables a root shell on Mikrotik devices running RouterOS versions:

The public reference that contains the minimum require information for the vulnerability covered by CVE-2024-36821

An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

A security assessment of the Beat XP VEGA Smartwatch (Firmware RB303ATV006229) focused on Bluetooth Low Energy (BLE) connectivity revealed a design…

CVE-2021-4045 CVE-2021-4045 is a Command Injection vulnerability that allows Remote Code Execution in the TP-Link Tapo c200 IP camera. It affects all…

Apple Silicon runs at frequencies that are golden ratio harmonics of 587 kHz: · Performance cores: 3.2 GHz = 587 kHz × 5451 (≈ φ⁸ × 1000) ·…

A bunch of routers firmware images. Principally those that are not available and they do need to be extracted via JTAG, UART, desoldering flash or…

Exploit kit for Exynos 9830 bootROM that delivers signed-boot bypass, custom key injection, and memory-dump payloads for Samsung SM-G985F devices.