
efiSeek
Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

SM-F9360 (Galaxy Z Fold4, q4q) locked-bootloader KernelSU root — CVE-2026-43499 temp root → LD_PRELOAD DEFEX bypass → no-LTO clang-12 kernelsu.ko.…

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

PoC code of Shade BIOS (stripped) presented at Black Hat USA 2025

Research on CVE-2025-3052, an Insyde firmware vulnerability that exposes an arbitrary write primitive capable of modifying security-critical pointers.

Parse BIOS/Intel ME/UEFI firmware related structures: Volumes, FileSystems, Files, etc

PoC and vulnerability report for CVE-2025-47827.

Automatically exported from code.google.com/p/firmware-mod-kit

Ghidra processor description module for NEC/Renesas v810 and v830 families

Demonstrates a local access control bypass in AMI Aptio 5 NvLock module, allowing modification of NVRAM variables including administrator password,…