
unleashed-firmware
Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

Custom firmware for Flipper Zero enabling Sub-GHz radio, NFC/RFID emulation, infrared, and BadUSB attack features for hardware security testing.

👻 Specter — passive 13.56 MHz NFC reader/skimmer bug-sweep for Flipper Zero. Counter-surveillance EMF meter using the onboard NFC chip. No extra…

An explanation and PoC to exploit CVE-2026-25938 Unauthenticated RCE Vulnerability on FUXA

AI-voice-controlled portable pentesting assistant with RF jamming, BadUSB HID emulation, IR replay, Sub-GHz signal capture, NFC tools, and network…

CVE-2026-53921 odhcpd stack overflow exploit with dual-vector (IA_NA/IA_PD) payloads, MIPS/ARM shellcode, ROP chains, SOCKS5 proxy, persistence, and…

Lightweight micro-framework for running security tools on OpenWrt routers and SBCs. Features WiFi management, extensible module system, integrated…

Remote buffer overflow exploit framework for Epson printers (CVE-2026-39047). Features payload generation with obfuscation, fuzzing, transport…

Linux desktop fingerprint login using a Grow R503 sensor + Arduino + a Rust fprintd-replacement daemon

CVE-2026-35904 / CVE-2026-35905 / CVE-2026-35906 — Unauth RCE, Hardcoded Root Creds & Telnet Enable in T3 Technology CPE

Proof-of-concept exploit for CVE-2023-40459 that triggers unauthenticated denial of service in the ACEManager component of Sierra Wireless ALEOS via…

Python exploit for CVE-2018-14847 that extracts and decrypts MikroTik RouterOS credentials via unauthenticated Winbox file read. Outputs…

SETROOTCERTIFICATE (write /etc/cert.pem.1) + APPLYAPP (RC_SERVICE execution). Refs: CVE-2025-2492, CVE-2024-12912, CVE-2025-59366; runZero;…

A session-unique RISC-V ISA — every boot speaks a different dialect. Old binaries become invalid. Malware cannot persist.

Proof-of-concept exploit for CVE-2025-69515 demonstrating static GPS spoofing on JXL 9-inch Android infotainment units via SDR-based signal…

Card calculator and Proxmark3 Plugin for writing and/or simulating every card type that Doppelgänger Community, Pro, Stealth, and MFAS support.

Proof of Concept of CVE-2025-48507. The security flaw can be leveraged by Non-Secure software (e.g., Linux) to break Trust Zone and gain access to…

Modular DIY CAN Bus adapter with slcan protocol support for SocketCAN and python-can. Offensive firmware variant enables spoofing, bus-off, and…

Remote code execution exploit for CVE-2024-57366 targeting WAVLINK routers via MAC address validation bypass and command injection, with automatic…