
Mi8E5-Unlocker-by-CVE-2026-43499
Multi OS Support: Version for MacOS/Linux and Windows, Fully translated to English

Multi OS Support: Version for MacOS/Linux and Windows, Fully translated to English

Hybrid kernel combining Mach, FreeBSD, and IOKit for macOS and iOS. Provides core OS services, driver framework, and security policy enforcement on…

Framework for compiling and executing Go applications on bare metal processors, enabling secure firmware development with reduced attack surface…

Attify OS - Distro for pentesting IoT devices

Proof-of-concept for authenticated OS command injection in TP-Link router firmware. Includes decryption, QEMU-based encryption hook, and 15-character…

Root-cause analysis and safety-gated verification tool for CVE-2025-0324, a privilege-escalation flaw in AXIS OS VAPIX allowing any authenticated…

This repo has a blog post about my analysis for CVE-2018-19987 an authenticated OS command injection affecting multiple D-Link routers

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

AI-powered reverse-engineering of Rosetta (2 for Linux). Disclaimer: due to the user agreement, I will not touch the code. All is done by AI, so…

Executes at the silicon boundary

PoC and vulnerability report for CVE-2025-47827.

A Virtual environment for Pentesting IoT Devices

Ghidra is a software reverse engineering (SRE) framework

UNIX-like reverse engineering framework and command-line toolset

Cross-platform library to parse, modify, and abstract ELF, PE, and MachO executable formats. Supports C++, Python, and Rust APIs with disassembler,…

A curated list of awesome Android Reverse Engineering training, resources, and tools.

Mediatek Flash and Repair Utility