
CVE-2026-8888-Printer-Firmware-Unsigned-Update-via-HTTP
Demonstrates CVE-2026-8888, an unsigned printer firmware update over HTTP, including a malicious update server and vulnerable printer emulator for…

Demonstrates CVE-2026-8888, an unsigned printer firmware update over HTTP, including a malicious update server and vulnerable printer emulator for…

This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.

TROMMEL: Sift Through Embedded Device Files to Identify Potential Vulnerable Indicators

Python3 script to scan for Linksys smart wifi devices that are vulnerable to CVE-2014-8244

The results of my small term paper on the topic of the Internet of Vulnerable Things and the exploit for CVE-2022-48194.

Proof-of-concept exploit for CVE-2019-9653 demonstrating unauthenticated remote code execution as root on NUUO NVR devices via vulnerable PHP scripts.

Damn Vulnerable Drone is an intentionally vulnerable drone hacking simulator based on the popular ArduPilot/MAVLink architecture, providing a…

Bash script exploiting CVE-2018-9995 to extract credentials from vulnerable DVRs via web interface, supporting multiple DVR brands for automated…

Exploit for stack-based buffer overflow found in the conn-indicator binary in the TP-Link Archer AX50 router

Multi-threaded scanner to identify HikVision cameras vulnerable to CVE-2017-7921 by testing the ONVIF snapshot endpoint for unauthorized access.

TCL 65C655 Smart TV, running firmware version V8-R75PT01-LF1V269.001116 (Android TV, Kernel 5.4.242+), is vulnerable to a blind, unauthenticated…

Scans for CVE-2026-24061 telnetd auth bypass, generating payloads and verifying root access on vulnerable GNU inetutils telnetd devices.

Python exploit for CVE-2018-9995 that retrieves exposed DVR credentials by bypassing authentication on vulnerable web interfaces.

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

Writeup for Tenda AC15 router firmware rehosting and remote command execution (CVE-2020-10987) exploit replication.

A vulnerable Boa web server detector.

IC Realtime ICIP-P2012T is vulnerable to Incorrect Access Control via an open port

Demonstrates CVE-2026-2222 heap overflow in MQTT CONNECT packet handling with a simulated vulnerable broker and proof-of-concept exploit code for…