
CVE-2025-65855
Security advisory for CVE-2025-65855 - Multiple vulnerabilities in HelpFlash IoT OTA update mechanism

Security advisory for CVE-2025-65855 - Multiple vulnerabilities in HelpFlash IoT OTA update mechanism

Notes, binaries, and related information from analysis of the CVE-2015-7755 & CVE-2015-7756 issues within Juniper ScreenOS

(Hopefully) A tool to root for (most) Android devices through CVE-2026-43499

Firmware reverse engineering of the Philips PM5139 / PM5138A / PM5136 function generators: 8051 emulators used as measuring instruments, 35 sections…

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

CVE-2017-5721 Proof-of-Concept

In this workshop session, we will extract firmware from an EV charger, dig into the firmware, and eventually emulate it so we can interact with the…

Advisory and technical analysis of CVE-2026-15469, a hard-coded RSA-512 mesh group private key in TP-Link Deco routers, including root cause, impact,…

Research tools for MouseJack vulnerabilities in nRF24L01 wireless devices, including device discovery, packet sniffing, network mapping, and firmware…

CVE-2025-70962 PoC

Firmware Update Server Verification Vulnerability on Buffalo LS210D Version 1.78-0.03

CVE-2024-1781

Unlocking _everything_ on the CPU with DRAM scrambling

Original research and PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

UNIX-like reverse engineering framework and command-line toolset

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

nextpnr portable FPGA place and route tool

TP-Link WiFi SmartPlug Client and Wireshark Dissector