
optee-qemu
Environment with vulnerable kernel for exploitation of the TEE driver (CVE-2021-44733)

Environment with vulnerable kernel for exploitation of the TEE driver (CVE-2021-44733)

Full exploit for D-Link DCS-5020L, POC crash for others that are vulnerable as well.

Proof-of-concept demonstrating a power analysis side-channel attack against a vulnerable RSA implementation on Arduino (Atmega328P), with detailed…

The results of my small term paper on the topic of the Internet of Vulnerable Things and the exploit for CVE-2022-48194.

Proof-of-concept exploit for OS command injection (CVE-2023-33381) in MitraStar GPT-2741GNAC routers. Demonstrates bypass of restricted shell via…

A shared library wrapper with additional checks for vulnerable functions gethostbyname2_r gethostbyname_r (GHOST vulnerability)

Payload injection tool for Nintendo Switch consoles vulnerable to CVE-2018-6242 ("Fusée Gelée")

Demonstrates CVE-2026-8888, an unsigned printer firmware update over HTTP, including a malicious update server and vulnerable printer emulator for…

This repo contains dumped flash partitions with firmware version vulnerable to CVE-2019-17147, and some useful binaries to downgrade and debug your…

Proof-of-concept exploit for CVE-2024-22894, demonstrating 3DES-encrypted root password extraction from Alpha Innotec/Novelan heatpump firmware,…

Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while…

Android Bluetooth stack (Fluoride) with a specific patch for CVE-2022-20229, providing a vulnerable version for security research and exploit…

Exploit setup for CVE-2025-7545 targeting vulnerable Binutils in firmware environments, including environment configuration and PDF documentation.

PoC exploit for CVE-2025-5688: remote out-of-bounds write in FreeRTOS-Plus-TCP via crafted LLMNR/mDNS queries, causing crash or potential RCE on…

Analyzes and demonstrates the Linux kernel vulnerability CVE-2023-28772, providing a patched or vulnerable kernel source for security research and…

Proof-of-concept exploit for CVE-2019-9653 demonstrating unauthenticated remote code execution as root on NUUO NVR devices via vulnerable PHP scripts.

AOSP Bluetooth stack with a patch for CVE-2021-0589, providing a vulnerable version for security research and exploit development.

Kernel source repository with modifications addressing CVE-2022-0492, providing a patched or vulnerable environment for security research and…