
DHCPig
DHCP exhaustion script written in python using scapy network library

DHCP exhaustion script written in python using scapy network library

Proof of Concept of Sweyntooth Bluetooth Low Energy (BLE) vulnerabilities.

Wireless penetration testing framework. Automates WPA/WPA2/WEP/WPS attacks - recon to exploitation in one command. aircrack-ng + hashcat + PMKID.

Three-stage Bluetooth BDADDR extraction, DoS & hijack on Fast Pair devices; unpatched primitives outside CVE-2025-36911 scope (no Ubertooth needed)

CVE 2020-10135 a.k.a BIAS (Bluetooth Impersonation Attack)



A cross-platform java application for decoding, monitoring, recording and streaming trunked mobile and related radio protocols using Software Defined…

Records calls from a Trunked Radio System (P25 & SmartNet)

Quickly fetch your WiFi password and if needed, generate a QR code of your WiFi to allow phones to easily connect

Bluetooth experimentation framework for Broadcom and Cypress chips.

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

📡🍓🍍 Detects wireless network attacks performed by KARMA module (fake AP). Starts deauthentication attack (for fake access points)

Firmware for converting consumer LoRa radios into KISS TNC modems with serial CLI, BLE packet sniffing, and APRS/AX.25 compatibility for packet radio…

Real-time GPS signal simulator for bladeRF

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

Wi-Fi Geolocation Spoofing with ESP8266 / ESP32

CVE-2026-36355: Realtek rtl819x Jungle SDK - Unauthenticated Kernel Memory Read/Write via Debug ioctls