
FACT_core
Automated firmware analysis platform that unpacks, analyzes, and compares embedded device firmware to identify components, vulnerabilities, and…

Automated firmware analysis platform that unpacks, analyzes, and compares embedded device firmware to identify components, vulnerabilities, and…

Collection of proof-of-concept exploits covering local and remote code execution, privilege escalation, web application flaws, and mobile/embedded…

Lightweight micro-framework for running security tools on OpenWrt routers and SBCs. Features WiFi management, extensible module system, integrated…

Proof-of-concept exploit for CVE-2024-44815 demonstrating extraction of plaintext router credentials from SPI flash via hardware teardown, UART…

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

Security advisory detailing multiple vulnerabilities in HelpFlash IoT OTA firmware update mechanism, including hard-coded WiFi credentials,…

Open-source GPS tracking system supporting 200+ protocols and 2000+ device models. Provides real-time tracking, geofencing, driver monitoring, and…

ESP32 firmware for offensive security testing with WiFi attacks, BLE spam, RF jamming, RFID cloning, and IR replay. Supports M5Stack and Lilygo…

Open-source RFID research toolkit for sniffing, reading, cloning, and emulating LF/HF tags, with FPGA firmware and hardware schematics for security…

Flipper Zero app for infrared electronic shelf-label (ESL) protocol research, featuring custom image transmission, NFC tag scanning, and a web-based…

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

Ultra-compact ESP32-C3 development board designed for embedded security research, featuring a captive portal example with WiFi scanning and LED…

ESP8266-based hardware tool for logging and replaying Wiegand interface data from access control systems. Captures HID card credentials, supports PIN…

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

A ZigBee penetration testing framework for IoT security assessments, featuring attack scripts for network discovery, device identification, and…

Community-driven security requirements standard for IoT ecosystems, covering hardware, software, embedded applications, and communication protocols…

Lightweight Python utility to enable telnet on Netgear routers (R7000, R7500) using LAN MAC and admin credentials. Useful for penetration testing,…

NCC Group Template for the Microsoft Threat Modeling Tool 2016 for Automotive Security