
rauc-1.5-integration
Integration examples for the RAUC 1.5 update framework, providing CVE-2020-25860 fix patches and build system recipes for Yocto, PTXdist, and…

Integration examples for the RAUC 1.5 update framework, providing CVE-2020-25860 fix patches and build system recipes for Yocto, PTXdist, and…

Scalable, secure real-time operating system for resource-constrained embedded devices and IoT gateways, supporting multiple hardware architectures…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source GPS tracking system supporting 200+ protocols and 2000+ device models. Provides real-time tracking, geofencing, driver monitoring, and…

Open-source motion detection system using Wi-Fi Channel State Information (CSI) on ESP32. Features ESPHome integration, automatic calibration, and an…

Script for searching the extracted firmware file system for goodies!

ARM64 ELF Virtual Machine Protection System

Remote Command Execution as SYSTEM on Windows IoT Core (releases available for Python2.7 & Python3)

Tool for especially scanning nearby devices and execute a given command on its own system while the target device comes in range.

Lightweight micro-framework for running security tools on OpenWrt routers and SBCs. Features WiFi management, extensible module system, integrated…

Proof-of-concept exploit for CVE-2023-43261 targeting Milesight industrial routers. Demonstrates credential leakage via unprotected system logs and…

An active cyber defense & honeypot system for OpenWrt routers running from a USB drive.

CVE-2026-28767 disclosure: missing authentication on Gardyn Home Kit cloud API admin notifications endpoint, exposing internal system data and…

Proof-of-concept exploit for Auerswald VoIP system secret backdoors. Executes against HTTP-based targets to demonstrate CVE-2021-40859 vulnerability.

Exploit for CVE-2023-37621 targeting unauthorized access in Fronius Datalogger Web 2.0.5-4, allowing attackers to retrieve sensitive device…

Network scanner and exploitation tool for printer security assessments. Features active discovery, IPP/PJL probing, CVE matching, risk scoring, and…

Technical disclosure of CVE-2024-33676: weak authentication on Enel X JuiceBox EV chargers enabling PII extraction, settings manipulation, and OS…

In Paradox Security System IPR512 Web console login form page, attacker can input JavaScript string, such as "</script>" that will overwrite…