
UltraViolet
Self-hosted network discovery and search engine with continuous port scanning, deep protocol probing across ~100 services, local CVE matching, and…

Self-hosted network discovery and search engine with continuous port scanning, deep protocol probing across ~100 services, local CVE matching, and…

Lightweight micro-framework for running security tools on OpenWrt routers and SBCs. Features WiFi management, extensible module system, integrated…

Footprinting and fingerprinting tool for robotic systems, including ROS, ROS2, SROS, and industrial routers. Scans networks, detects nodes, topics,…

Concurrent scanner for detecting exposed MikroTik Winbox services on TCP 8291 to support network exposure analysis and security auditing.

Mode S/ADS-B decoder for RTLSDR devices that decodes aircraft signals, provides network streaming, and displays live traffic on an embedded HTTP map.

Developer-focused provisioning sidekick for U-Boot-based SBCs. Provides remote access, serial console multiplexing, kernel/rootfs provisioning,…

Mode S decoder for RTLSDR devices that captures, decodes, and displays aircraft ADS-B signals with network streaming, HTTP map visualization, and…

Modular framework for black-box CAN bus analysis enabling ECU discovery, MitM testing, fuzzing, and brute-force attacks on automotive networks.

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

Firmware and research tools for Nordic Semiconductor nRF24LU1+ based USB dongles and breakout boards.

This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

Open-source Raspberry Pi HAT providing 4 CAN interfaces for automotive bus testing, CAN-in-the-middle attacks, and simultaneous multi-bus traffic…

High-performance network scanner for large-scale IP and port scanning with service identification, embedded device detection, and vulnerability…

Proof-of-concept exploit for CVE-2018-16706 enabling remote TV power-off via unauthenticated GLRPC service on port 9080.

Python script to generate neo4j Cypher representation of a collection of IoT devices for visualisation and query.