
CANalyzat0r
Security analysis toolkit for proprietary car protocols

Security analysis toolkit for proprietary car protocols

Spoofing the Windows 10 HDD/diskdrive serialnumber from kernel without hooking

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

IoTGoat is a deliberately insecure firmware based on OpenWrt.

Telenet Enable for Netgear routers from svn checkout http://netgear-telnetenable.googlecode.com/svn/trunk/ netgear-telnetenable-read-only

Mousejack for Arduino UNO

Keystroke injection vulnerabilities in wireless presentation clickers

Chase H.Q. for ZX Spectrum — reverse-engineered and reconstructed in portable C

Supermicro IPMI/BMC Cleartext Password Scanner

Black-box security evaluation of five ISP cable modem/router gateways, analyzing firmware images and documenting 35+ vulnerabilities including…

LoRaWAN session cracker - A PoC for exploiting weak or shared Application Keys

Documenting Osmo Mobile BLE protocol

Interactive wizard to flash EFF's Rayhunter on Orbic RC400L — auto-detects OS

CVE-2024-21306 BadBlue implementation (Using DuckyScript)

Ghidra processor description module for NEC/Renesas v810 and v830 families

Reverse-engineered BLE protocol for the CMF Watch Pro 2, documenting GATT layout, AES-128-CBC encrypted command frames, authentication handshake, and…

Security advisories for CVE-2021-43716/43717/43718 (Epson EH-TW5350)

Autonomous and modular system for network based information gathering and exploitation. WEB interface here: https://antecursor.fr/ More info…