
trommel
Static analysis tool that sifts through embedded device firmware to identify vulnerable indicators including SSH/SSL keys, IPs, URLs, shell scripts,…

Exploit tool for CVE-2018-9995 that extracts DVR credentials via HTTP request with cookie bypass, targeting multiple vendor devices for security…

ESP8266-based hardware tool for logging and replaying Wiegand interface data from access control systems. Captures HID card credentials, supports PIN…

Manipulate Chromecast Devices in your Network

Python-based exploit tool for CVE-2021-36260 (Hikvision RCE) with batch vulnerability detection, command execution, and FOFA-based target discovery…

Long Range Pager Systems pagers and coasters URH and YS1 (yardstick one / cc11xx) information and brute force tool

Python-based exploit tool for CVE-2021-36260 targeting Hikvision devices. Supports single URL check, command execution, and batch scanning from a…

Exploit tool for CVE-2018-9995 that extracts credentials from vulnerable DVR devices via Google dorking and direct IP access.

High-performance network scanner for large-scale IP and port scanning with service identification, embedded device detection, and vulnerability…

Footprinting and fingerprinting tool for robotic systems, including ROS, ROS2, SROS, and industrial routers. Scans networks, detects nodes, topics,…

Network-based scanner that identifies devices running Interpeak IPnet TCP/IP stack to detect URGENT/11 vulnerabilities using TCP and ICMP…

AI-voice-controlled portable pentesting assistant with RF jamming, BadUSB HID emulation, IR replay, Sub-GHz signal capture, NFC tools, and network…

Firmware and research tools for Nordic Semiconductor nRF24LU1+ based USB dongles and breakout boards.

This firmware is an alternative to the EvilCrowRF default firmware. Module: CC1101 - Compatible Flipper Zero file.

Modular framework for black-box CAN bus analysis enabling ECU discovery, MitM testing, fuzzing, and brute-force attacks on automotive networks.

Documentation and reproduction steps for CVE-2022-24693: hardcoded credentials in Baicells Nova436Q and Neutrino 430 firmware, enabling remote SSH…

Concurrent scanner for detecting exposed MikroTik Winbox services on TCP 8291 to support network exposure analysis and security auditing.

Extracts hardware random keys from NEC Aterm router firmware images and QR codes to generate valid passwords for gaining shell access.