
CVE-2018-8941
D-Link DSL-3782 Code Execution (Proof of Concept)

D-Link DSL-3782 Code Execution (Proof of Concept)

CVE-2017-5693 Denial of service vulnerability in Puma 6 modems

An implementation of baton drop (CVE-2022-21894) for armv7 (MSM8960)

The firmware engineering home of the Circuit Crafters first electronic badge project.

Proof-of-concept exploit for OS command injection (CVE-2023-33381) in MitraStar GPT-2741GNAC routers. Demonstrates bypass of restricted shell via…

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…

MikroTik RouterOS Denial of Service Vulnerability

Proof of concept of the SQL injection vulnerability affecting the ZTE MF286R router.

Proof of Concept for CVE-2023-22906

proof of concept CVE-2021-1931 exploit for the blackberry key2 (le) that allows to flash unsigned images temporarily

Research on CVE-2025-3052, an Insyde firmware vulnerability that exposes an arbitrary write primitive capable of modifying security-critical pointers.

Backports of three published f_hid fixes (incl. CVE-2026-31721, CVE-2026-31606) to an EOL Linux 4.14.190 Android vendor kernel, with on-device…

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

A proof of concept of CVE-2020-15808 vulnerability exploit on STM32F4 Discovery board

Proof of concept IoT/Ham Radio mesh network with global routing over the internet

This is a collection of Unisoc BootROMs dumped from various Unisoc chipsets via CVE-2022-38694

Reverse engineering of the engine powering the PriPara games on arcade.

Unauthenticated access in the default configuration of the D-Link DWR-M972V