
CVE-2017-2751
Mini-paper on CVE-2017-2751, HP EFI password extraction.

Mini-paper on CVE-2017-2751, HP EFI password extraction.

FPGA-based hardware emulation platform main binary and documentation for retro system development, firmware compilation, and hardware security…

A True Instrumentable Binary Emulation Framework

Functional RISC-V ISA simulator supporting multiple extensions (RV32/64, V, cryptography) with interactive debug mode, GDB integration, and…


Framework for compiling and executing Go applications on bare metal processors, enabling secure firmware development with reduced attack surface…

Open hardware and software tools for communicating with Miele appliances via their optical diagnostic interface

C library providing a portable API for acquiring signals from logic analyzers, oscilloscopes, multimeters, and other test instruments, with…

A low pin count sniffer for ICEStick - targeting TPM chips

Firmware for Raspberry Pi Pico W that creates a driverless USB Wi-Fi adapter with transparent layer-2 bridging, WPA2/WPA3 authentication, and…

Library for WCH CH56x-based boards with tested USB3/USB2/HSPI/SerDes drivers, logging and deferred interrupts

Proof-of-concept exploits for three vulnerabilities in Crucial MX500 SSD firmware update mechanism, enabling buffer overflows and potential code…

Exploit for CVE-2026-40003, an arbitrary memory write vulnerability in ZXIC/Sanechips ZX297520V3 SoC BootROM, enabling code execution via USB…

Print trace messages over a Silicon Labs C2 debugger connection

Public writeup, PoC, and emulation materials for CVE-2026-6837 affecting Zyxel export-cgi PKCS#12 export handling.

Vankyo MatrixPad S30 (Unisoc SC9863A) — Bootloader unlock via CVE-2022-38694 FDL1 method

A cryptographic framework for Baochip-1x .

Bazzite plus a TPM boot attestation layer. Work in progress: builds unverified, UKI mechanism unresolved. Spec: github.com/plunder707/attested-gaming