
BLESuite
Python package for Bluetooth Low Energy (BLE) device security testing, fuzzing, and GATT analysis with custom stack and CLI tools.

Python package for Bluetooth Low Energy (BLE) device security testing, fuzzing, and GATT analysis with custom stack and CLI tools.

Framework for remote USB device security assessment with cloning, emulation, MITM sniffing, and fuzzing capabilities using Raspberry Pi Zero and…

Android Full-Stack Device Control Platform: WebRTC/H.264 remote desktop, UI/OCR/image-matching automation, one-click MITM, built-in Frida,…

Post-bootloader tool for silicon-level device interaction, supporting DFU/EDL/BROM modes with memory read/write, USB fuzzing, fault injection, and…

GUI-based USB device fuzzer for automated black-box testing of USB protocol implementations, identifying vulnerabilities through malformed descriptor…

USB device fuzzing tool targeting Android kernel drivers, demonstrating CVE-2019-14079 exploitation via crafted control requests to trigger kernel…

[CVE-2017-10235] Description and PoC of VirtualBox E1000 device Buffer Overflow

A Linux framework to enable userspace-defined "Virtual" PCIe card shims to enable in-host PCIe card driver development.

Proof-of-concept exploit for CVE-2022-31705, a VMware EHCI out-of-bounds write vulnerability. Demonstrates OOB memory corruption via crafted USB…

A buffer overflow in the component nfc_device_load_mifare_ul_data of Flipper Devices Inc., Flipper Zero before v0.65.2 allows attackers to cause a…

Technical disclosure of four unauthenticated RCE vulnerabilities (CVE-2020-25782/3/4/5) in Accfly wireless security cameras, including stack/heap…

Exploit for CVE-2020-6514 targeting WebRTC SCTP memory corruption in Android applications. Uses Frida to hook native functions and alter SCTP packets…

PoC updates for CVE-2023-46371 and CVE-2023-46527, demonstrating stack overflow vulnerabilities in TP-Link router firmware via the…

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.

Hardware tool for RFID analysis, emulation, and penetration testing. Supports 125kHz, 13.56MHz protocols (MIFARE, iClass, ISO14443/15693) with key…

ESP32DIV is a multi-purpose wireless offensive and defensive toolkit powered by an ESP32

ESP32 firmware for offensive security testing with WiFi attacks, BLE spam, RF jamming, RFID cloning, and IR replay. Supports M5Stack and Lilygo…