
CVE-2024-54085
Just poc for CVE 2024-54085

Just poc for CVE 2024-54085

Technical research on a UEFI Secure Boot bypass caused by an unsafe custom PE loader, including root-cause analysis, exploitation workflow, and an…

SM-F9360 (Galaxy Z Fold4, q4q) locked-bootloader KernelSU root — CVE-2026-43499 temp root → LD_PRELOAD DEFEX bypass → no-LTO clang-12 kernelsu.ko.…

Boots a custom Linux kernel on rooted LG webOS TVs via kexec, with reverse-engineered SoC watchdog support, framebuffer payloads, and an initramfs…

From a bare PCB to root: hardware-hacking a ZyXEL P-870HN (BCM6368) over UART — CVE-2025-0890 + CVE-2024-40891, on my own hardware.

Ghidra is a software reverse engineering (SRE) framework

UNIX-like reverse engineering framework and command-line toolset

Boot and manage virtual iPhones on Apple Silicon with firmware patching, jailbreak variants, and security research features for iOS testing and…

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

A curated list of awesome Android Reverse Engineering training, resources, and tools.

Mediatek Flash and Repair Utility

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

a Ghidra framework for iOS kernelcache reverse engineering

BootStomp: a bootloader vulnerability finder

CVE-2025-21479 proof-of-concept, I think

Glass - a fast and free IDA Pro alternative

Android reverse engineering entirely on-device. Radare2 binary analysis, 8 Java decompilers, Flutter & Unity il2cpp support.

match functions in binaries by what they do, not what their bytes look like. behavioral function fingerprinting via microexecution.