
SmmBackdoor
First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

First open source and publicly available System Management Mode backdoor for UEFI based platforms. Good as general purpose playground for various SMM…

Abstracts and expedites the process of backdooring stock firmware images for consumer/SOHO routers

KSU installer for supported Samsung Galaxy firmware with CVE-2026-43499

Device-specific CVE-2026-43499 root payloads and KernelSU artifacts for Samsung Galaxy models, with firmware profiles, exploit source, and a support…

CVE-2018-19537

Authenticated command injection PoC for D-Link R95/BE9500 DHMAPI SetTimeSettings, achieving root RCE via NTPServer backtick injection, with full…

open-source jailbreaking tool for many iOS devices

Standalone CVE-2026-43499 PoC for Galaxy S25 Ultra SM-S938N S938NKSUACZF1

Exploit chain research targeting CVE-2026-43499 on Samsung Galaxy S21

HP Slate 7 2800 Android 4.1.1 rooting kit using CVE-2015-1805.

KERUI K259 5MP Wi-Fi (Tuya Smart Security Camera) contains a code execution vulnerability

Guarded, source-only Humane AI Pin root PoC for CVE-2026-43499

An experimental webkit-based kernel exploit (Arb. R/W) for the PS5 on <= 4.51FW

CFW framework for PS Vita

A simple embedded Linux backdoor.

MikroTik remote jailbreak for v6.x.x

Displays an old-school crack-intro animation on compromised Canon and Lexmark printers, with SDL2 and WebAssembly builds for portability and study.

A fully implemented kernel exploit for the PS4 on 5.05FW