
cve-2015-1187-dir820l-firmware-reverse-engineering
Static firmware reverse engineering of CVE-2015-1187: unauthenticated command injection in D-Link DIR-820L. MIPS root filesystem extraction with…

Static firmware reverse engineering of CVE-2015-1187: unauthenticated command injection in D-Link DIR-820L. MIPS root filesystem extraction with…

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

IDA plugin and loader for UEFI firmware analysis and reverse engineering automation

Analyzes raw binary firmware to automatically determine loading address, endianness, and UDS command databases using statistical heuristics and…

Pure Python assembler toolkit for creating shellcode, dynamically patching binaries, and instrumenting firmware images for debugging and fuzzing on…

Detailed analysis of CVE-2019-12489 command injection in Fastgate modem/router firmware, including firmware extraction, reverse engineering with…

Convert GL-AR150 routers into WiFi Pineapple NANO devices for wireless penetration testing, featuring PineAP support, custom OpenWrt firmware, and…

Open-source Apple Silicon device emulator based on QEMU, enabling iOS and iPhone hardware emulation with Secure Enclave Processor support for…

Parse BIOS/Intel ME/UEFI firmware related structures: Volumes, FileSystems, Files, etc

Voltage fault-injection modchip for black-box security evaluation of Starlink terminals, bypassing bootloader signature verification to execute…

Extract, modify, and rebuild Linux-based firmware images for embedded devices. Includes tools for SquashFS/CramFS, TRX/uImage headers, and DD-WRT web…

Open-source hardware and software toolkit for reverse-engineering and communicating with infrared-based electronic shelf labels. Includes custom…

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

Automated binary analysis framework leveraging IDA Pro for batch IDB creation, script execution, and binary diffing for vulnerability research and…

Tools for analyzing UEFI firmware and checking UEFI modules with FwHunt rules

Custom firmware framework for PS Vita that patches the kernel, disables code-signing checks, and provides a hooking API for developing kernel and…

Binary-only firmware historian that learns to locate functions in raw binaries by extracting known functions from similar binaries, enabling fast…

Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware