
fnprint
match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.

Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.

Non-destructive PoC and technical write-up for CVE-2026-73673, an unauthenticated firmware-update flaw in Netis NC63 router, with reproduction and…

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

SPI flash read MitM attack PoC

The first analysis framework for CPU microcode

Towards Large-Scale Emulation of IoT Firmware for Dynamic Analysis

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices


Fuzzing IoT Devices Using the Router TL-WR902AC as Example

Decrypt TP-Link Firmware

Vulnerability detection framework by Binarly's REsearch team


First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

The Cisco IOS Debugger and Integrated Disassembler Environment

Presented at Recon Montreal 2018

This is a hypothetical demonstration of the process involved in exploiting LogoFail, it theoretically includes the necessary steps.