
IoTGoat
Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

A list of public attacks on BitLocker

A very very very very very very very long interrupt

TPM Genie is an I2C bus interposer for discrete Trusted Platform Modules


Collection of "modchip" designs for launching payloads via the Tegra RCM bug (CVE-2018-6242)

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

CVE-2022-38694 Hardened Exploit - RP2350 USB Host Auto Flasher for Unisoc devices


An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

Advisory for CVE-2025-65731

CVE-2025-50777: Root Access and Plaintext Credential Exposure in AZIOT Smart CCTV