
CVE-2026-82592
Proof-of-concept exploit for D-Link DIR-825M stack buffer overflow and command injection in /boafrm/formDiskFormat, enabling remote code execution as…

Proof-of-concept exploit for D-Link DIR-825M stack buffer overflow and command injection in /boafrm/formDiskFormat, enabling remote code execution as…

Proof-of-concept exploit for authenticated stored cross-site scripting (XSS) vulnerability in INTELBRAS ATA 200 firmware 74.19.10.21, targeting the…

EMBA - The firmware security analyzer

ASUS SmartHome Exploit for CVE-2019-11061 and CVE-2019-11063

Proof of Concept (PoC) for the TP-Link DHCP Option 66 Unauthenticated RCE (CVE-2026-11834)

PoC toolkit that unpacks router firmware, decrypts device secrets, forges JWT tokens, and exploits CVE-2026-71960/71961 to take over Cudy WR3000 mesh…

Proof-of-concept exploit for CVE-2025-65427: missing rate limiting on Dbit N300 T1 Pro router login API enabling brute-force attacks and…

Exploit for CVE-2022-29383 SQL injection in NETGEAR ProSafe SSL VPN (FVS318Gv2/FVS318N) via scgi-bin/platform.cgi.

IoTGoat is a deliberately insecure firmware based on OpenWrt.

CVE-2025-54322 - XSpeeder SXZOS Pre-Auth RCE 0day Finder Quick

Unauthenticated RCE exploit for Fantec MWiD25-DS

CVE-2019-2215 poc for Huawei hardened kernel

Python script to detect CVE-2022-30525 OS command injection vulnerability in Zyxel USG FLEX devices by sending crafted HTTP requests and analyzing…

Proof-of-concept exploit for an authentication bypass in HP 1920 Series switches, allowing unauthenticated admin password change via crafted HTTP…

POC for CVE-2025-29384

A suite of WiFi/Bluetooth offensive and defensive tools for the ESP32

A Virtual environment for Pentesting IoT Devices

Set of tools for security testing of Internet of Things devices using specific network IoT protocols