
uofw
The unofficial Official FirmWare, a complete latest PSP firmware reverse engineering project

The unofficial Official FirmWare, a complete latest PSP firmware reverse engineering project

Workshop on firmware reverse engineering

The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303.

IoTGoat is a deliberately insecure firmware based on OpenWrt.

EmbedOS - Embedded security testing virtual machine

Zig development template for Flipper Zero with automated build pipeline, SDK integration, and cross-compilation for ARM Cortex-M4. Supports Sub-GHz,…

Fuzzing IoT Devices Using the Router TL-WR902AC as Example

PoC code of Shade BIOS (stripped) presented at Black Hat USA 2025

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

Security issue in the hypervisor firmware of some older Qualcomm chipsets

Hardware Hacking CTF hcon2026hwctf - RISCV Hazard3 (@Wren6991) Exploiting by @b1n4ri0 @antoniovazquezblanco & @therealdreg

FPGA-based 12-channel AM radio broadcast system with formal verification of a hardware watchdog for fail-safe emergency alert transmission in…

The results of my small term paper on the topic of the Internet of Vulnerable Things and the exploit for CVE-2022-48194.

The Porygon-Z that's super effective against Secure Boot! (CVE-2022-30203, CVE-2023-21560, CVE-2023-28269, CVE-2023-28249, and more...)

BlackVue DR750 CVE CVE-2023-27746 CVE-2023-27747 CVE-2023-27748

PoC exploits and Docker build environment for CVE-2023-34551 and CVE-2023-34552 targeting EZVIZ IP cameras, with DEF CON 31 Hardware Hacking Village…

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…

Proof-of-concept exploits for TP-Link routers, including remote command execution and authentication bypass vulnerabilities.