
quantum
This repository contains the code and submission detail for the QDay prize challenge by https://www.projecteleven.com/

This repository contains the code and submission detail for the QDay prize challenge by https://www.projecteleven.com/

Reverse Engineering and Observability toolkit for Draytek firewalls

cMCP: Confidential MCP Gateway. Hardware-attested policy enforcement for MCP tool calls.

Cert exploit for MTK devices.There is a logic flaw in MTK cert verification process.Similar to CVE-2023-20696.

A GUI-based tool to perform security testing against the HDMI CEC (Consumer Electronics Control) and HEC (HDMI Ethernet Channel) protocols

Framework for Digiduck Development Boards running ATTiny85 processors and micronucleus bootloader!

A proof-of-concept for CVE-2020-12753

FPGA-based 12-channel AM radio broadcast system with formal verification of a hardware watchdog for fail-safe emergency alert transmission in…

Decrypt and extract voice guidance MP3 prompts from Sony WH-1000XM4 encrypted voice packs. AES key extracted via Bluetooth firmware dump of the…

Cert exploit for MTK devices.There is a logic flaw in MTK cert verification process.Similar to CVE-2023-20696.

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.


PoC demonstrating dyld as a PAC signing oracle via hand-crafted Mach-O chained fixups on arm64e, achieving controlled PAC-valid pointer writes and…

Bootloader unlock (CVE-2022-38694) & root guide for Realme C53 / RMX3760 (Unisoc T612)

From UART to Root: Breaking Into the Xiaomi C200 via U-Boot

PowerShell script to apply Zenbleed (CVE-2023-20593) MSR workaround on Windows

RSA Key Checker for CVE-2022-20866

CVE-2024-56426 Exynos9830 Bootrom Exploit - SM-G985F