Skip to content
52

Awesome Embedded and IoT Security

A curated list of awesome embedded and IoT security resources.

2.5k stars292 forks95 entriesLast push Oct 17, 2023 (2 years ago)License CC0-1.0

This page lists names, links and short descriptions. The original list on GitHub is the source and belongs to its authors.

Software Tools >Analysis Frameworks

EXPLIoT

Pentest framework like Metasploit but specialized for IoT.

In 2 lists

FACT - The Firmware Analysis and Comparison Tool

Full-featured static analysis framework including extraction of firmware, analysis utilizing different plug-ins and comparison of different firmware versions.

Improving your firmware security analysis process with FACT

Conference talk about FACT :tv:.

FwAnalyzer

Analyze security of firmware based on customized rules. Intended as additional step in DevSecOps, similar to CI.

In 2 lists

HAL – The Hardware Analyzer

A comprehensive reverse engineering and manipulation framework for gate-level netlists.

In 2 lists

HomePWN

Swiss Army Knife for Pentesting of IoT Devices.

In 2 lists

IoTSecFuzz

Framework for automatisation of IoT layers security analysis: hardware, software and communication.

In 2 lists

Killerbee

Framework for Testing & Auditing ZigBee and IEEE 802.15.4 Networks.

In 3 lists

PRET

Printer Exploitation Toolkit.

In 3 lists

Routersploit

Framework dedicated to exploit embedded devices.

In 4 lists

Software Tools >Analysis Tools

Binwalk

Searches a binary for "interesting" stuff, as well as extracts arbitrary files.

In 6 listsDetails

cwe_checker

Finds vulnerable patterns in binary executables - ELF support for x86, ARM, and MIPS, experimental bare-metal support.

In 5 listsDetails

emba

Analyze Linux-based firmware of embedded devices.

Firmadyne

Tries to emulate and pentest a firmware.

In 2 lists

Firmwalker

Searches extracted firmware images for interesting files and information.

In 2 lists

Firmware Slap

Discovering vulnerabilities in firmware through concolic analysis and function clustering.

Ghidra

Software Reverse Engineering suite; handles arbitrary binaries, if you provide CPU architecture and endianness of the binary.

In 5 listsDetails

Radare2

Software Reverse Engineering framework, also handles popular formats and arbitrary binaries, has an extensive command line toolset.

In 5 listsDetails

Trommel

Searches extracted firmware images for interesting files and information.

Software Tools >Extraction Tools

FACT Extractor

Detects container format automatically and executes the corresponding extraction tool.

Firmware Mod Kit

Extraction tools for several container formats.

The SRecord package

Collection of tools for manipulating EPROM files (can convert lots of binary formats).

Software Tools >Support Tools

JTAGenum

Add JTAG capabilities to an Arduino.

OpenOCD

Free and Open On-Chip Debugging, In-System Programming and Boundary-Scan Testing.

Software Tools >Misc Tools

Cotopaxi

Set of tools for security testing of Internet of Things devices using specific network IoT protocols.

In 2 lists

dumpflash

Low-level NAND Flash dump and parsing utility.

flashrom

Tool for detecting, reading, writing, verifying and erasing flash chips.

Samsung Firmware Magic

Decrypt Samsung SSD firmware updates.

In 2 lists

Hardware Tools

Bus Blaster

Detects and interacts with hardware debug ports like UART and JTAG.

Bus Pirate

Detects and interacts with hardware debug ports like UART and JTAG.

Shikra

Detects and interacts with hardware debug ports like UART and JTAG. Among other protocols.

In 2 lists

JTAGULATOR

Detects JTAG Pinouts fast.

Saleae

Easy to use Logic Analyzer that support many protocols :euro:.

In 2 lists

Ikalogic

Alternative to Saleae logic analyzers :euro:.

HydraBus

Open source multi-tool hardware similar to the BusPirate but with NFC capabilities.

ChipWhisperer

Detects Glitch/Side-channel attacks.

Glasgow

Tool for exploring and debugging different digital interfaces.

J-Link

J-Link offers USB powered JTAG debug probes for multiple different CPU cores :euro:.

Hardware Tools >Bluetooth BLE Tools

UberTooth One

Open source 2.4 GHz wireless development platform suitable for Bluetooth experimentation.

Bluefruit LE Sniffer

Easy to use Bluetooth Low Energy sniffer.

Hardware Tools >ZigBee Tools

ApiMote

ZigBee security research hardware for learning about and evaluating the security of IEEE 802.15.4/ZigBee systems. Killerbee compatible.

Freakduino

Low Cost Battery Operated Wireless Arduino Board that can be turned into a IEEE 802.15.4 protocol sniffer.

Hardware Tools >SDR Tools

RTL-SDR

Cheapest SDR for beginners. It is a computer based radio scanner for receiving live radio signals frequencies from 500 kHz up to 1.75 GHz.

In 2 lists

HackRF One

Software Defined Radio peripheral capable of transmission or reception of radio signals from 1 MHz to 6 GHz (half-duplex).

In 3 lists

YardStick One

Half-duplex sub-1 GHz wireless transceiver.

LimeSDR

Software Defined Radio peripheral capable of transmission or reception of radio signals from 100 KHz to 3.8 GHz (full-duplex).

BladeRF 2.0

Software Defined Radio peripheral capable of transmission or reception of radio signals from 47 MHz to 6 GHz (full-duplex).

USRP B Series

Software Defined Radio peripheral capable of transmission or reception of radio signals from 70 MHz to 6 GHz (full-duplex).

Hardware Tools >RFID NFC Tools

Proxmark 3 RDV4

Powerful general purpose RFID tool. From Low Frequency (125kHz) to High Frequency (13.56MHz) tags.

ChamaleonMini

Programmable, portable tool for NFC security analysis.

HydraNFC

Powerful 13.56MHz RFID / NFC platform. Read / write / crack / sniff / emulate.

Case Studies

Binary Hardening in IoT products

Cracking Linksys “Encryption”

Deadly Sins Of Development

Conference talk presenting several real world examples on real bad implementations :tv:.

Dumping firmware from a device's SPI flash with a buspirate

In 2 lists

Hacking the DSP-W215, Again

Hacking the PS4

Introduction to PS4's security.

IoT Security@CERN

Multiple vulnerabilities found in the D-link DWR-932B

Pwning the Dlink 850L routers and abusing the MyDlink Cloud protocol

PWN Xerox Printers (...again)

Reversing Firmware With Radare

In 2 lists

Reversing the Huawei HG533

In 2 lists

Free Training

CSAW Embedded Security Challenge 2019

CSAW 2019 Embedded Security Challenge (ESC).

Embedded Security CTF

Microcorruption: Embedded Security CTF.

In 3 lists

Hardware Hacking 101

Workshop @ BSides Munich 2019.

In 2 lists

IoTGoat

IoTGoat is a deliberately insecure firmware based on OpenWrt.

In 2 lists

Rhme-2015

First riscure Hack me hardware CTF challenge.

In 2 lists

Rhme-2016

Riscure Hack me 2 is a low level hardware CTF challenge.

In 2 lists

Rhme-2017/2018

Riscure Hack Me 3 embedded hardware CTF 2017-2018.

In 2 lists

Websites

Hacking Printers Wiki

All things printer.

OWASP Embedded Application Security Project

Development best practices and list of hardware and software tools.

OWASP Internet of Things Project

IoT common vulnerabilities and attack surfaces.

In 2 lists

Router Passwords

Default login credential database sorted by manufacturer.

Siliconpr0n

A Wiki/Archive of all things IC reversing.

Websites >Blogs

RTL-SDR

In 2 lists

/dev/ttyS0's Embedded Device Hacking

Exploiteers

In 2 lists

Hackaday

Probably the most popular blog covering electronics and hardware hacking with a whole staff of writers.

In 3 lists

jcjc's Hack The World

In 2 lists

Quarkslab

In 2 lists

wrong baud

In 2 lists

Firmware Security

PenTestPartners

Attify

In 2 lists

Patayu

In 2 lists

GracefulSecurity - Hardware tag

Black Hills - Hardware Hacking tag

Websites >Tutorials and Technical Background

Azeria Lab

Miscellaneous ARM related Tutorials.

In 2 lists

JTAG Explained

A walkthrough covering UART and JTAG bypassing a protected login shell.

Reverse Engineering Serial Ports

Detailed tutorial about how to spot debug pads on a PCB.

UART explained

An in depth explanation of the UART protocol.

In 2 lists

Websites >YouTube Channels

Flashback Team

A duo of hackers explaining their step by step approach to finding and exploiting vulnerabilities in embedded devices.

StackSmashing

Reverse engineering and hardware hacking of embedded devices.

Conferences

Hardwear.io

EU, The Hague, September.; USA, Santa Clara, June.

See category
94

Awesome-Selfhosted

awesome-selfhosted/awesome-selfhosted

A list of Free Software network services and web applications which can be hosted on your own servers

Fresh★ 323k1312 entriesPushed yesterday
91

Awesome Privacy

lissy93/awesome-privacy

🦄 A curated list of privacy & security-focused software and services

Fresh★ 9.9k459 entriesPushed today
89

Awesome Bug Bounty Tools

vavkamil/awesome-bugbounty-tools

A curated list of various bug bounty tools

Fresh★ 6.3k400 entriesPushed yesterday
88

android-security-awesome

ashishb/android-security-awesome

A collection of android security related resources

Fresh★ 9.7k233 entriesPushed 2 days ago
88

Awesome Hacker Search Engines

edoardottt/awesome-hacker-search-engines

A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more

Fresh★ 11k563 entriesPushed 27 days ago
87

Awesome Web Security

qazbnm456/awesome-web-security

🐶 A curated list of Web Security materials and resources.

Fresh★ 14k368 entriesPushed 15 days ago