
CVE-2026-38698-and-CVE-2026-38699
Technical details and publication about CVE-2026-38698 and CVE-2026-38699

Technical details and publication about CVE-2026-38698 and CVE-2026-38699

A security assessment of the Beat XP VEGA Smartwatch (Firmware RB303ATV006229) focused on Bluetooth Low Energy (BLE) connectivity revealed a design…

Example of using revealed "Spectre" exploit (CVE-2017-5753 and CVE-2017-5715)

exploit camera with vuln cve-2018-9995 ( Novo, CeNova, QSee, Pulnix, XVR 5 in 1 (title: "XVR Login"), Securus, - Security. Never Compromise !! - …

pam_pkcs11 Bugfix

Firmware security analysis of BD Alaris 8015 infusion pump (CVE-2016-9355). Identified 6 compound vulnerabilities including plaintext Wi-Fi…

Toshiba Qiomem.sys vulnerable driver POC (CVE-2026-56129)

CVE-2018-9995 هک دوربین مداربسته با آسیب پذیری

CVE-2024-44610: Authenticated remote root exploit in Peak PCAN-Ethernet CAN-(FD) gateways

Proof-of-concept demonstrating memory leaks in AMD SEV-SNP firmware guest message headers and CPUID request, enabling extraction of sensitive guest…

Weak encryption in Acer Wireless Keyboard SK-9662 allows attacker in physical proximity to both decrypt wireless keystrokes and inject wireless…

Scientific investigation of hardware vulnerabilities (CVE-2025-6202, CVE-2023-39910) enabling ECDSA key recovery from Bitcoin infrastructure via…


Osqery extension HP BIOS WMI


The firmware engineering home of the Cryptohack electronic badge project.

Proof-of-concept demonstrating bypass of TPM-bound LUKS disk encryption on Linux systems, extracting volume keys via custom root filesystem attack.

D-link AX1500 Vulnerability