
unleashed-firmware
Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

BLE sniffer and Bluetooth experimentation platform with open hardware, firmware, and limited Classic BR packet capture for wireless security work.

Productization efforts of CVE-2020-11179 Adreno-Qualcomm-GPU bug, original poc by Ben Hawkes of P0

[Deprecated] Iceman Fork, the most totally wicked fork around if you are into proxmark3


A software SIM card.

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

Collection of "modchip" designs for launching payloads via the Tegra RCM bug (CVE-2018-6242)

Public version of the Entropica repo

Bazzite plus a TPM boot attestation layer. Work in progress: builds unverified, UKI mechanism unresolved. Spec: github.com/plunder707/attested-gaming

RowHammer Based-Exploit

Ghidra processor description module for NEC/Renesas v810 and v830 families

CVE-2022-38181 POC for FireTV 3rd gen Cube (gazelle)