
unleashed-firmware
Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.


Bazzite plus a TPM boot attestation layer. Work in progress: builds unverified, UKI mechanism unresolved. Spec: github.com/plunder707/attested-gaming

A software SIM card.

Ghidra processor description module for NEC/Renesas v810 and v830 families

BLE sniffer and Bluetooth experimentation platform with open hardware, firmware, and limited Classic BR packet capture for wireless security work.

Public version of the Entropica repo

Productization efforts of CVE-2020-11179 Adreno-Qualcomm-GPU bug, original poc by Ben Hawkes of P0

CVE-2022-38181 POC for FireTV 3rd gen Cube (gazelle)

RowHammer Based-Exploit

asadbg is a framework of tools to aid in automating live debugging of Cisco ASA devices

[Deprecated] Iceman Fork, the most totally wicked fork around if you are into proxmark3

Collection of "modchip" designs for launching payloads via the Tegra RCM bug (CVE-2018-6242)