
CVE-2017-7921-EXP
Python exploit for CVE-2017-7921 in Hikvision IP cameras, performing unauthenticated user enumeration, snapshot capture, and configuration file…

Python exploit for CVE-2017-7921 in Hikvision IP cameras, performing unauthenticated user enumeration, snapshot capture, and configuration file…

BLE-based tool that automatically discovers and exploits Shining LED Masks by uploading a custom image without user interaction, proving security…

Multi-threaded router fingerprinting tool that identifies web-exposed network devices by analyzing HTTP responses, headers, and favicon hashes for…


A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

Reolink Duo 2 WiFi v1.0.280 - Account Enumeration Vulnerability

Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while…

CVE-2026-28766: Missing Authentication on User Account Endpoint — Gardyn Home Kit (ICSA-26-055-03)

CVE-2026-25197: Authorization Bypass via IDOR — Gardyn Home Kit (ICSA-26-055-03)

Technical writeup for CVE-2024-20154


Full exploit for D-Link DCS-5020L, POC crash for others that are vulnerable as well.


CERIO RCE CVE-2018-18852, authenticated (vendor defaults) web-based RCE as root user.

password-disclosure issue in the web interface on certain TP-Link devices

CERIO RCE CVE-2018-18852, authenticated (vendor defaults) web-based RCE as root user.

POC VIDEO - https://youtu.be/hNzmkJj-ImM?si=NF0yoSL578rNy7wN