
mellon
OSDP attack tool (and the Elvish word for friend)

OSDP attack tool (and the Elvish word for friend)

Personal research into the Xbox Series Architecture

RP2040 firmware that bridges a Toshiba MK4001MTD 0.85" SDIO microdrive as a USB mass storage device, implementing the full SDIO-ATA protocol stack…

Debugger for the Shannon Baseband

HardeningMeter is an open-source Python tool carefully designed to comprehensively assess the security hardening of binaries and systems.

A dependency-free C++ PLAYER for Yamaha SMAF (.mmf) ringtones: the polyphonic-ringtone format of the 2000s MA-3 / MA-5 phone chips, rebuilt with its…

The fastest LoongArch sandbox

Decrypt and extract voice guidance MP3 prompts from Sony WH-1000XM4 encrypted voice packs. AES key extracted via Bluetooth firmware dump of the…

Linux libfprint driver for the Focal-systems FT9201 (2808:93a9) USB fingerprint reader — runs FocalTech's own Windows matching engine natively on…

wpa3 functionality for the wifi chip in a 2014 macbook pro

POC for CVE-2025-24132 (AirBourne). Currently just triggers the overflow and causes a crash

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

A vulnerability in fiberhome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi password (WPA/WPA2 pre-shared key) to be predicted…

Tools to exercise the Linux kernel mitigation for CVE-2018-3639 (aka Variant 4) using the Speculative Store Bypass Disable (SSBD) feature of x86…

POC to test the BootROM vulnerability found in LPC55S69 and K82 Series

A security research tool that identifies and demonstrates the CVE-2025-36911: Fast Pair Pairing Mode Bypass vulnerability

Tools for reverse engineering and interacting with the PowerG radio protocol

Reverse Engineering of the Shining App Mask