
lvi-lfb-attack-poc
This repository contains the sources and documentation for the LVI-LFB Control Flow Hijacking attack PoC (CVE-2020-0551)

This repository contains the sources and documentation for the LVI-LFB Control Flow Hijacking attack PoC (CVE-2020-0551)

Reconstructing a Dead USB Protocol: A Handheld's Secrets Unlocked by a Hot Knife, a multi-disciplinary journey to reviving a forgotten USB interface

CVE-2026-25262 applicability to Snapdragon 8 Gen 1 — experimental results

Bootloader unlock using CVE-2022-38694 for Anbernic Unisoc T820 devices

Independent IoT security research, vulnerability disclosures, and PoCs focusing on firmware analysis, hardware interfaces, and cryptographic flaws.

Open-source entropy harvesting from unconventional hardware sources. Rust + Python SDK.

Reverse-engineered I2C/SMBus battery interface board for DJI Spark, replacing OEM smart battery with standard 3S LiPo. Includes protocol analysis,…

PoC demonstrating dyld as a PAC signing oracle via hand-crafted Mach-O chained fixups on arm64e, achieving controlled PAC-valid pointer writes and…

Demonstration of Abusing the Vulnerable driver AmdTools64.sys for Physical R/W.

Exploit LnvMSRIO.sys vulnerable driver

Proof-of-concept demonstrating a microarchitectural data leak in Loongson LA464/LA664 processors via undefined upper bits of LASX vector registers,…

The Porygon-Z that's super effective against Secure Boot! (CVE-2022-30203, CVE-2023-21560, CVE-2023-28269, CVE-2023-28249, and more...)

Proof-of-concept exploit targeting ARM TrustZone secure world, demonstrating a vulnerability in OP-TEE OS for educational and research purposes.

PoC exploits and Docker build environment for CVE-2023-34551 and CVE-2023-34552 targeting EZVIZ IP cameras, with DEF CON 31 Hardware Hacking Village…

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…

Reverse engineering research of ASRock AsrDrv103.sys (CVE-2020-15368), covering its driver interface, encrypted request protocol, and privileged…

A serverless networking protocol designed for resilient state synchronization between autonomous agents in fragmented, low-bandwidth networks

Tool Suite for V0LTpwn (CVE-2019-11157). Code will be published soon.