
trommel
Static analysis tool that sifts through embedded device firmware to identify vulnerable indicators including SSH/SSL keys, IPs, URLs, shell scripts,…

Static analysis tool that detects multi-binary vulnerabilities in embedded firmware by analyzing insecure interactions between binaries across the…

Unpacker and format spec for WatchGuard Fireware sysa-dl update files. Extracts firmware images from WatchGuard Firebox firewall updates using a…

Static firmware reverse engineering of CVE-2015-1187: unauthenticated command injection in D-Link DIR-820L. MIPS root filesystem extraction with…

IDA plugin and loader for UEFI firmware analysis and reverse engineering automation

Tools for analyzing and reverse engineering MediaTek baseband firmware, including file extraction, symbol parsing, and Ghidra integration for modem…

Ghidra processor module providing disassembly and static analysis support for nanoMIPS binaries, enabling reverse engineering of embedded firmware…

IoT Malware Similarity Analysis Platform

Exploit and firmware analysis toolkit for Canon MF644 printer vulnerabilities, including Python exploits, ARM shellcode, and IDA Pro loader scripts…

Determine which CPU architecture is used in a binary file.

Ghidra Processor for the Play Station 2's Emotion Engine MIPS based CPU

Binary patch analysis tool for comparing and analyzing software patches to identify security vulnerabilities and code changes across different…

IDA Python plugin for fast, location-driven matching of open-source library symbols in binaries, enabling efficient reverse engineering and…

Extract executable binaries from Arlo IoT firmware dumps and updates, supporting multiple camera, base station, and doorbell models with IDA reverse…

A reversing plugin for cross-decompiler collaboration, built on git.

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.

Visualizes repeated byte sequences in binary files to reveal hidden structure, supporting reverse engineering and pattern discovery without…

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.