Home

Awesome

h4ck

a collection of writeups and tools related to ~embedded device ~hacking

shiny devices are fun, finding and poking holes in their interface is a lot of fun

devices

namedescriptionurl
CUJOpurposeful MiTM device for internet 'security'cujo
LG webOSHTTP phone home is never a good idealg-webOS
HooToo TripMate seriesthere are lots of problems, some end up at root accesshootoo
TriCascade i-Bright7xwork in progress, SSID password from MAC address, telnet but no accessi-Bright7x
Lametric TimeWiFi/internet enabled clock/LED display, unnecessary services exposed, root access obtainablelametric
Philips Huedevice communication insecure, Ruby library/CLI to control via REST HTTPhued
RAV FileHuba HooToo by any other name.. but with a twistrav-filehub
RevoLabs flx UC1000more than just brute forcing the PINrevolabs-flx_uc_1000
Ubiquiti mFi mPowerroot access trivially obtained, credential leakage, unnecessary services exposedubiquiti/mFi
Belkin Weemo Miniwork in progress, recon mostly doneweemo