
CVE-2025-10681
CVE-2025-10681: Hardcoded Azure Blob Storage Account Key — Gardyn Home Kit (ICSA-26-055-03)

CVE-2025-10681: Hardcoded Azure Blob Storage Account Key — Gardyn Home Kit (ICSA-26-055-03)


IoT Security research conducted during my internship at IIIT Allahabad, leading to CVE-2026-65893, CVE-2026-65894, and the CERT-In Vulnerability Note…

Proof-of-concept exploit for CVE-2026-1668.

Hashes and shim versions for the UEFI Secure Boot shims affected by CVE-2026-8863

DoS against Belkin smart plugs via crafted firmware injection

Security advisory for CVE-2025-65855 - Multiple vulnerabilities in HelpFlash IoT OTA update mechanism

CVE-2024-44815

Hardware Hacking Cheatsheet

CVE-2025-50777: Root Access and Plaintext Credential Exposure in AZIOT Smart CCTV

Proof-of-concept exploit for CVE-2020-12124 targeting Wavlink AC1200 router, demonstrating unauthenticated command injection and stack buffer…

CVE-2024-46383

Ghidra plugin that automates UEFI firmware analysis by identifying known GUIDs, protocols, SMI handlers, and interrupt functions, with headless…

Converting your AR150 to a Wifi Pineapple NANO

A Virtual environment for Pentesting IoT Devices

PoC for CVE-2020-11896 Treck TCP/IP stack and device asset investigation

Original research and non-destructive PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

CVE-2025-1242: Hardcoded iothubowner Connection String — Gardyn Home Kit (ICSA-26-055-03)