

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

A tool for checking the security hardening options of the Linux kernel

Linux kernel device driver providing user-space access to hardware cryptographic accelerators, enabling reuse of kernel-space ciphers for accelerated…

ARM32 Linux kernel privilege escalation exploit for CVE-2026-43499 (GhostLock futex UAF) targeting Huawei Watch 4 Pro with multiple exploitation…

Tools to exercise the Linux kernel mitigation for CVE-2018-3639 (aka Variant 4) using the Speculative Store Bypass Disable (SSBD) feature of x86…

Patching and hooking the Linux kernel with only a stripped Linux kernel image.

Reverse engineered Linux kernel driver and userspace library for the Apple Neural Engine (ANE), enabling hardware access and analysis on Linux…

A Linux framework to enable userspace-defined "Virtual" PCIe card shims to enable in-host PCIe card driver development.

Minimal machine architecture with LLVM compiler backend, Linux port, and virtual machine for creating self-contained software capsules that remain…

Linux kernel-space HID injection attack detector using eBPF. Monitors USB and Bluetooth HID devices for anomalous keystroke timing and automatically…

CVE-2022-20009 - Description and sample exploit for Android USB Gadgets

Advisory for CVE-2025-65731

CVE-2021-39685 Description and sample exploit for Linux USB Gadget overflow vulnerability

Collection of Linux hardening scripts and security configurations for system auditing, access control, and defensive posture improvement. Includes…

RISC-V emulator in Rust that boots Linux with JIT on ARM64/x86_64 and Sv39 virtual memory

PoC and write-up for CVE-2023-0045: bypasses Linux prctl/seccomp Spectre-BTI mitigations using BTB poisoning and Flush+Reload to leak process secrets.

A fuzzer for full VM kernel/driver targets