
lg-webos-kexec
Boots a custom Linux kernel on rooted LG webOS TVs via kexec, with reverse-engineered SoC watchdog support, framebuffer payloads, and an initramfs…

Boots a custom Linux kernel on rooted LG webOS TVs via kexec, with reverse-engineered SoC watchdog support, framebuffer payloads, and an initramfs…

Authenticated Remote Code Execution vulnerability in Xerox WorkCentre printers via the Network Troubleshooting Log feature.

Security advisories for CVE-2021-43716/43717/43718 (Epson EH-TW5350)

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

Build scripts that generate Kali Linux ARM images with configurable architecture, desktop environment, and minimal/slim options for supported…

Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk

Firmware for a portable hardware hacking device with RFID/NFC, sub-GHz, infrared, and BLE support for wireless security testing and signal emulation.

Curated collection of security conference talks, papers, and publications covering reverse engineering, cryptography, firmware analysis, and…


Bluetooth experimentation framework for Broadcom and Cypress chips.

This firmware is an alternative to the EvilCrowRF default firmware. Module: CC1101 - Compatible Flipper Zero file.

Full duplex 433 MHz Signal jammer, recorder, decoder and hacking multitool device based on ESP32 microcontroller and RFM69HW radios. This version of…


This is a collection of Unisoc BootROMs i've dumped from various Unisoc chipsets via CVE-2022-38694

PoC to record audio from a Bluetooth device