
swicc
A framework for creating smart cards (ICC-based cards with contacts).

A framework for creating smart cards (ICC-based cards with contacts).

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

pam_pkcs11 Bugfix

The wolfSSL library is a small, fast, portable implementation of TLS/SSL for embedded devices to the cloud. wolfSSL supports up to TLS 1.3 and DTLS…

A collection of exploits for various vulnerabilities targeting Inteno IOPSYS devices

Disclosure for CVE-2025-63602, including a PoC for use of an insecure driver in Awesome Miner 11.2.4 leading to arbitrary kernel read/write to MSRs,…

This is a suite of tools/PoCs/exploits for cameras using the iCSee application. And yes - it can run NES games!

Binary diff and analysis of AppleUSBNetworking.kext for CVE-2016-1734, a macOS kernel USB networking vulnerability. Includes patch verification and…

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…

Proof of concept for CVE-2026-36027 and CVE-2026-36028

open-source jailbreaking tool for many iOS devices

Downgrade attack for CVE-2025-48804

Toolkit for decoding, inspecting, and modifying UEFI firmware volumes and variable stores. Supports secure boot certificate enrollment, PE binary…

PoC for CVE-2026-53360: guest-triggered heap out-of-bounds read/write in KVM SEV-SNP Page State Change (PSC) handling.

Tools for reverse engineering and interacting with the PowerG radio protocol

Proof-of-concept exploit for CVE-2026-56111, an out-of-bounds write in the M421 G-code handler of Marlin Firmware, demonstrating constrained memory…

Reproducible crash proof-of-concept for CVE-2015-3456 (VENOM) targeting QEMU's virtual floppy disk controller. Demonstrates guest-controlled writes…

Shell script for testing the IPMI cipher type zero authentication bypass vulnerability (CVE-2013-4784)