
qualcomm_baseband_scripts
Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware

QSEE Privilege Escalation Exploit using PRDiag* commands (CVE-2015-6639)

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

a tool designed to help perform and visualize trace-driven cache attacks against software in the secure world of TrustZone-enabled ARMv8 cores

iPod Nano 7G bootrom exploit a bit too late

BLE-based Fitbit research tool for authentication replay, encrypted activity dump decryption, memory/firmware extraction, and custom firmware…

A PoC of the CVE-2024-56426 vulnerability.

Cert exploit for MTK devices.There is a logic flaw in MTK cert verification process.Similar to CVE-2023-20696.

My take on unlocking Xperia 5 SO-01M for p42 bootloader using CVE-2021-1931

Vankyo MatrixPad S30 (Unisoc SC9863A) — Bootloader unlock via CVE-2022-38694 FDL1 method

This is a collection of Unisoc BootROMs dumped from various Unisoc chipsets via CVE-2022-38694

Complete exploit research for CVE-2026-43499 (GhostLock) on OPPO Watch 3 Pro, including kernel UAF analysis, disassembly, and exploit chain…

CVE-2019-2215 & DirtyCOW exploit automation + post-root debloat + Magisk modules for Sony BRAVIA KDL-43W800C

Tool for testing and auditing Bluetooth device pairing security, identifying vulnerabilities in wireless pairing protocols and hardware IoT…

Reverse Engineering of the Shining App Mask

An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

Rediscovered CVE-2020-25279, a critical vulnerability in the Shannon baseband used in Samsung Exynos chipsets

Idk Figure it out by name fuck you L$user