
NINJA-PingU
High-performance network scanner for large-scale IP and port scanning with service identification, embedded device detection, and vulnerability…

High-performance network scanner for large-scale IP and port scanning with service identification, embedded device detection, and vulnerability…

Footprinting and fingerprinting tool for robotic systems, including ROS, ROS2, SROS, and industrial routers. Scans networks, detects nodes, topics,…

Firmware and research tools for Nordic Semiconductor nRF24LU1+ based USB dongles and breakout boards.

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

Modular framework for black-box CAN bus analysis enabling ECU discovery, MitM testing, fuzzing, and brute-force attacks on automotive networks.

Concurrent scanner for detecting exposed MikroTik Winbox services on TCP 8291 to support network exposure analysis and security auditing.

Mode S/ADS-B decoder for RTLSDR devices that decodes aircraft signals, provides network streaming, and displays live traffic on an embedded HTTP map.

Mode S decoder for RTLSDR devices that captures, decodes, and displays aircraft ADS-B signals with network streaming, HTTP map visualization, and…

Lightweight micro-framework for running security tools on OpenWrt routers and SBCs. Features WiFi management, extensible module system, integrated…

Open-source Raspberry Pi HAT providing 4 CAN interfaces for automotive bus testing, CAN-in-the-middle attacks, and simultaneous multi-bus traffic…

This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

Python script to generate neo4j Cypher representation of a collection of IoT devices for visualisation and query.

Developer-focused provisioning sidekick for U-Boot-based SBCs. Provides remote access, serial console multiplexing, kernel/rootfs provisioning,…

Self-hosted network discovery and search engine with continuous port scanning, deep protocol probing across ~100 services, local CVE matching, and…

Proof-of-concept exploit for CVE-2018-16706 enabling remote TV power-off via unauthenticated GLRPC service on port 9080.