
Platbox
Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

Platform security assessment tool for dumping and analyzing UEFI/SMM registers, PCI config space, physical memory, SPI flash, and S3 bootscripts with…

Generate HDCP source and sink keys from the leaked master key

The report and the exploit of CVE-2021-26943, the kernel-to-SMM local privilege escalation vulnerability in ASUS UX360CA BIOS version 303.

CVE-2025-31200 is a zero-day, zero-click RCE in iOS CoreAudio’s AudioConverterService, triggered by a malicious audio file via iMessage/SMS.…

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

C99 library for PO-32 acoustic transfers and drum synthesis.

Concierge Toolkit: Physical Access Control Identification and Exploitation

Declarative KVM/QEMU VM orchestration tool using YAML compose files. Manages multi-VM stacks with cloud-init, SSH, PCI passthrough, and image…

A bare-metal x86 utility to dump physical RAM directly to disk. Built and tested for Cold Boot Attack experiments on frozen memory.

Tool to securely and efficiently wipe devices and partiitions for Linux

Modern WiFi auditing library for ESP32 using advanced 802.11 techniques. Captures WPA/WPA2/WPA3 handshakes via PMKID extraction and CSA injection…

Software tools for Nordic Semiconductor nRF24-based devices like wireless keyboards, mice, and presenters

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.

Zig development template for Flipper Zero with automated build pipeline, SDK integration, and cross-compilation for ARM Cortex-M4. Supports Sub-GHz,…

Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU

Open-source Raspberry Pi HAT providing 4 CAN interfaces for automotive bus testing, CAN-in-the-middle attacks, and simultaneous multi-bus traffic…

a tool designed to help perform and visualize trace-driven cache attacks against software in the secure world of TrustZone-enabled ARMv8 cores