
super-tart-vphone-writeup
Guide to building a virtual iPhone using VPHONE600AP components from Apple's PCC firmware, with firmware patching, bootchain modification, and kernel…

Guide to building a virtual iPhone using VPHONE600AP components from Apple's PCC firmware, with firmware patching, bootchain modification, and kernel…

Toolkit for testing Bluetooth session establishment against forward and future secrecy attacks, using firmware patching, PCAP analysis, and automated…

Active fingerprinting tool that identifies 16 embedded TCP/IP stacks on network devices using ICMP, TCP, HTTP, SSH, and FTP probing techniques for…

Multi-architecture pcode emulator using Ghidra/Sleigh for AFL++ fuzzing of binaries, firmware, and embedded targets; detects memory-corruption bugs…

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

Fuzzing IoT Devices Using the Router TL-WR902AC as Example

SWD debug probe library for RP2350 RISC-V cores. Provides halt/resume/step, register and memory access, code execution, and instruction tracing over…

Root your Galaxy using CVE-2026-43499

Defensive vulnerability-research project comparing vulnerable and patched Grandstream GXP1600 firmware for CVE-2026-2329, using SquashFS extraction,…

Unlock Bootloader for Itel S23 (S665L) / Unisoc T606 using CVE-2022-38694

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!

Final OBJECTIVE:BIOS ROOTKIT AND RSHELL USING BIOS NETWORKING STACK

Coverage-guided fuzzer for UEFI NVRAM variables using Qiling emulation and AFL++ to discover firmware vulnerabilities through automated input…

Fuzzing Embedded Systems using Hardware Breakpoints

Ghidra is a software reverse engineering (SRE) framework

A Curated list of Security Resources for all connected things

Open hardware and software tools for communicating with Miele appliances via their optical diagnostic interface

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware