
TEE-reversing
A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Patches and hooks the Linux kernel using only a stripped kernel image, extracting symbols and injecting code for inline and syscall hooking on arm64.

Tutorial and source code for building a custom YARA module in C to extract malware configurations, with a practical Danabot example and reusable…

Systematic reverse engineering of Cisco ASA's lina binary to discover and analyze memory corruption vulnerabilities, including CVE-2025-20333 and…

Temporary root (uid 0) on a bootloader-locked ASUS Zenfone 9 via CVE-2025-21479 + a perf-based physical-address leak. GPLv3.

Technical Write-Up on and PoC Exploit for CVE-2020-11519 and CVE-2020-11520

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

Proof-of-concept and writeup showing how to retrieve Wi-Fi SSID/password from a D-Link Komfy smart switch over BLE by reversing the iOS app’s custom…

Ghidra plugin that enhances reverse engineering by fixing missed disassembly, detecting functions, labeling crypto constants, and renaming functions…

An x86-64 code virtualizer for VM based obfuscation

Rust CLI suite that statically decompiles, deobfuscates, and unpacks native code, bytecode, scripts, firmware, and app packages across 15+ ecosystems…

Documentation and proof of concept code for CVE-2022-24125 and CVE-2022-24126.

CVE-2026-25243 — Redis RESTORE zipmap double-free → remote code execution (ASLR on).

VBScript & VBA source-to-source deobfuscator with partial-evaluation

research on finding the bug and fix of CVE-2026-84616 and CVE-2026-84607

Local streaming tool for cheap WiFi cameras that bypasses cloud services and phone apps. Discovers cameras on your network, authenticates via PPPP…

A full exploit of CVE-2017-3000 on Flash Player Constant Blinding PRNG

Generates malicious DOCX files exploiting CVE-2021-40444 to achieve remote code execution via crafted CAB and HTML payloads, with a built-in hosting…