
unleashed-firmware
Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

Mediatek Flash and Repair Utility

Curated index of game security research: anti-cheat internals, DMA attacks, reverse engineering, kernel/mobile protections, and graphics API hooking…

Low-level kernel modules and device tree source for the OnePlus 11 (sm8550), enabling hardware bring-up, driver analysis, and embedded system…

Unlock Bootloader for Itel S23 (S665L) / Unisoc T606 using CVE-2022-38694

Patching and hooking the Linux kernel with only a stripped Linux kernel image.

An Android HW Attestation demo

OPPO Find X6 Pro GhostLock (CVE-2026-43499) exploit adaptation

CVE-2025-21479 proof-of-concept, I think

Patch for CVE-2020-0155 in NXP NFC driver for Android 10, addressing a vulnerability in the NFC subsystem.

Temporary root (uid 0) on a bootloader-locked ASUS Zenfone 9 via CVE-2025-21479 + a perf-based physical-address leak. GPLv3.

Unlock Bootloader for Itel S23 (S665L) / Unisoc T606 using CVE-2022-38694

Jailbreak for A8 through A11, T2 devices, on iOS/iPadOS/tvOS 15.0, bridgeOS 5.0 and higher.

open-source jailbreaking tool for many iOS devices

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Bootloader unlock (CVE-2022-38694) & root guide for Realme C53 / RMX3760 (Unisoc T612)

基于 CVE-2026-43499 的 8E5 机型自动化解锁辅助工具,仅限授权安全研究与自有设备使用。

CVE-2024-56426 Exynos9830 Bootrom Exploit - SM-G985F