
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.

The first analysis framework for CPU microcode

This repo has a blog post about my analysis for CVE-2018-19987 an authenticated OS command injection affecting multiple D-Link routers

Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while…

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

Analyzing and Reproducing the Command Injection Vulnerability (CVE-2023-0861) in NetModule Routers

Files and tools for CVE-2021-26258

A curated list of awesome Android Reverse Engineering training, resources, and tools.

Siemens TIA administrator Tool RCE


BlackVue DR750 CVE CVE-2023-27746 CVE-2023-27747 CVE-2023-27748

Mastering CVE-2021-3166

CVE-2017-14948 for D-Link 880 Firmware


Proof-of-concept of vulnerability found in Totolink A720R router

Python script to exploit CVE-2020-35391 on Tenda F3 V3/V4 routers, enabling unauthorized download of configuration, flash, and syslog files.