quarkslab / titanmLinks
This repository contains the tools we used in our research on the Google Titan M chip
☆189Updated 2 years ago
Alternatives and similar repositories for titanm
Users that are interested in titanm are comparing it to the libraries listed below
Sorting:
- A curated list of awesome baseband research resources☆167Updated 5 years ago
- Collection of scripts for reversing Qualcomm Hexagon baseband / modem firmware☆165Updated 2 years ago
- Scripts, plugins, and information for working with Samsung's Shannon baseband.☆159Updated last year
- Emulation and Feedback Fuzzing of Firmware with Memory Sanitization☆162Updated 4 years ago
- ☆114Updated last year
- PoC 2019-2215 exploit for S8/S8 active with DAC + SELinux + Knox/RKP bypass☆229Updated 5 years ago
- FitM, the Fuzzer in the Middle, can fuzz client and server binaries at the same time using userspace snapshot-fuzzing and network emulati…☆292Updated 3 years ago
- Reverse-engineering tools and exploits for Samsung's implementation of TrustZone☆152Updated 5 years ago
- ☆219Updated 2 years ago
- Frida-based general purpose fuzzer☆217Updated 4 years ago
- A python symbolic execution framework using radare2's ESIL (Evaluable String Intermediate Language)☆166Updated 2 years ago
- Coverage-guided binary fuzzing powered by Frida Stalker☆183Updated 4 years ago
- ☆187Updated 3 months ago
- ☆63Updated 4 months ago
- A de-socketing library for fuzzing.☆153Updated last month
- Binary code coverage visualizer plugin for Ghidra☆292Updated last year
- ☆121Updated 5 months ago
- Broadcom and Cypress firmware emulation for fuzzing and further full-stack debugging☆443Updated last year
- A Minimalist Instruction Extender for the ARM architecture and IDA Pro☆201Updated 10 months ago
- fpicker is a Frida-based fuzzing suite supporting various modes (including AFL++ in-process fuzzing)☆280Updated 4 months ago
- A set of tools for fuzzing SecureROM. Managed to find and trigger checkm8.☆162Updated 3 years ago
- An IDA file loader for Mobicore trustlet and driver binaries☆60Updated 5 years ago
- LKRG bypass methods☆72Updated 5 years ago
- ☆242Updated 3 years ago
- Simple script to find kernel objects of a certain size in the Linux kernel☆109Updated 2 years ago
- Debugger for the Shannon Baseband☆58Updated 5 years ago
- Makes Unicorn traces. Generic Side-Channel and Fault Injection simulator☆183Updated 2 weeks ago
- Quarkslab conference talks☆299Updated last week
- FirmWire has replaced ShannonEE. OLD: A dynamic analysis environment for Samsung's Shannon baseband.☆42Updated 3 years ago
- ☆173Updated 4 years ago