
CVE-2026-51585
rt26cx21x64.sys exploit (Realtek PCIe GbE/2.5GbE/5GbE family)

rt26cx21x64.sys exploit (Realtek PCIe GbE/2.5GbE/5GbE family)

Firmware Update Server Verification Vulnerability on Buffalo LS210D Version 1.78-0.03

Quarkslab conference talks

Exploit and tooling for Amlogic-based Sonos devices: dumps OTP/eFUSE via an EL3 exploit, extracts LUKS decryption keys, and fetches/decrypts OTA…

This is a collection of Unisoc BootROMs dumped from various Unisoc chipsets via CVE-2022-38694

Decrypt TP-Link Firmware

Umap2 is the second revision of NCC Group's python based USB host security assessment tool.

Reverse engineering scripts designed for extracting Yealink VOIP upgrade files

Reverse Engineering and Observability toolkit for Draytek firewalls

An unofficial Humax IR4000HD terminal client with enhanced features.

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

🐬 A collection of awesome resources for the Flipper Zero device.

Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking

Disclosure of Accfly camera vulnerabilities: CVE-2020-25782, CVE-2020-25783, CVE-2020-25784, CVE-2020-25785.

A fully public exploit of the CVE-2020-0022 BlueFrag Android RCE Vulnerability (tested on Pixel 3 XL)

CVE-2018-11311 | mySCADA myPRO 7 Hardcoded FTP Username and Password Vulnerability

CVE-2025-70962 PoC

AirPods liberated from Apple's ecosystem.