awesome-embedded-and-iot-security
by fkie-cad
A curated list of awesome embedded and IoT security resources.
AI summary
IoT security toolkit
A curated collection of resources and tools for analyzing and securing embedded and IoT devices
- stars
- 1.9K
- forks
- 242
- watching
- 66
- awesome lists
- 5
- entries
- 130
What's in the list
130 links in 21 sections, with live GitHub stats.activeno commit in 2y
Software Tools / Analysis Frameworks
- EXPLIoT
Pentest framework like Metasploit but specialized for IoT
- FACT - The Firmware Analysis and Comparison Tool
Full-featured static analysis framework including extraction of firmware, analysis utilizing different plug-ins and comparison of different firmware versions
Software Tools / Analysis Frameworks / FACT - The Firmware Analysis and Comparison Tool
- Improving your firmware security analysis process with FACT
Conference talk about FACT
Software Tools / Analysis Frameworks
FwAnalyzer
Analyze security of firmware based on customized rules. Intended as additional step in DevSecOps, similar to CI
HAL – The Hardware Analyzer
A comprehensive reverse engineering and manipulation framework for gate-level netlists
HomePWN
Swiss Army Knife for Pentesting of IoT Devices
- IoTSecFuzz
Framework for automatisation of IoT layers security analysis: hardware, software and communication
Killerbee
Framework for Testing & Auditing ZigBee and IEEE 802.15.4 Networks
PRET
Printer Exploitation Toolkit
Routersploit
Framework dedicated to exploit embedded devices
Software Tools / Analysis Tools
Binwalk
Searches a binary for "interesting" stuff, as well as extracts arbitrary files
cwe_checker
Finds vulnerable patterns in binary executables - ELF support for x86, ARM, and MIPS, experimental bare-metal support
emba
Analyze Linux-based firmware of embedded devices
Firmadyne
Tries to emulate and pentest a firmware
Firmwalker
Searches extracted firmware images for interesting files and information
Firmware Slap
Discovering vulnerabilities in firmware through concolic analysis and function clustering
- Ghidra
Software Reverse Engineering suite; handles arbitrary binaries, if you provide CPU architecture and endianness of the binary
Radare2
Software Reverse Engineering framework, also handles popular formats and arbitrary binaries, has an extensive command line toolset
Trommel
Searches extracted firmware images for interesting files and information
Software Tools / Extraction Tools
FACT Extractor
Detects container format automatically and executes the corresponding extraction tool
Firmware Mod Kit
Extraction tools for several container formats
- The SRecord package
Collection of tools for manipulating EPROM files (can convert lots of binary formats)
Software Tools / Support Tools
Software Tools / Misc Tools
Cotopaxi
Set of tools for security testing of Internet of Things devices using specific network IoT protocols
dumpflash
Low-level NAND Flash dump and parsing utility
flashrom
Tool for detecting, reading, writing, verifying and erasing flash chips
Samsung Firmware Magic
Decrypt Samsung SSD firmware updates
Hardware Tools
- Bus Blaster
Detects and interacts with hardware debug ports like and
- Bus Pirate
Detects and interacts with hardware debug ports like UART and JTAG
- Shikra
Detects and interacts with hardware debug ports like UART and JTAG. Among other protocols
- JTAGULATOR
Detects JTAG Pinouts fast
- Saleae
Easy to use Logic Analyzer that support many protocols
- Ikalogic
Alternative to Saleae logic analyzers
- HydraBus
Open source multi-tool hardware similar to the BusPirate but with NFC capabilities
- ChipWhisperer
Detects Glitch/Side-channel attacks
Glasgow
Tool for exploring and debugging different digital interfaces
- J-Link
J-Link offers USB powered JTAG debug probes for multiple different CPU cores
Hardware Tools / Bluetooth BLE Tools
- UberTooth One
Open source 2.4 GHz wireless development platform suitable for Bluetooth experimentation
- Bluefruit LE Sniffer
Easy to use Bluetooth Low Energy sniffer
Hardware Tools / ZigBee Tools
- ApiMote
ZigBee security research hardware for learning about and evaluating the security of IEEE 802.15.4/ZigBee systems. Killerbee compatible
- Freakduino
Low Cost Battery Operated Wireless Arduino Board that can be turned into a IEEE 802.15.4 protocol sniffer
Hardware Tools / SDR Tools
- RTL-SDR
Cheapest SDR for beginners. It is a computer based radio scanner for receiving live radio signals frequencies from 500 kHz up to 1.75 GHz
- HackRF One
Software Defined Radio peripheral capable of transmission or reception of radio signals from 1 MHz to 6 GHz (half-duplex)
- YardStick One
Half-duplex sub-1 GHz wireless transceiver
- LimeSDR
Software Defined Radio peripheral capable of transmission or reception of radio signals from 100 KHz to 3.8 GHz (full-duplex)
- BladeRF 2.0
Software Defined Radio peripheral capable of transmission or reception of radio signals from 47 MHz to 6 GHz (full-duplex)
- USRP B Series
Software Defined Radio peripheral capable of transmission or reception of radio signals from 70 MHz to 6 GHz (full-duplex)
Hardware Tools / RFID NFC Tools
- Proxmark 3 RDV4
Powerful general purpose RFID tool. From Low Frequency (125kHz) to High Frequency (13.56MHz) tags
- ChamaleonMini
Programmable, portable tool for NFC security analysis
- HydraNFC
Powerful 13.56MHz RFID / NFC platform. Read / write / crack / sniff / emulate
Books
- Practical IoT Hacking
2020, Fotios Chantzis, Evangel Deirme, Ioannis Stais, Paulino Calderon, Beau Woods:
- The Hardware Hacking Handbook: Breaking Embedded Security with Hardware Attacks
2020, Jasper van Woudenberg, Colin O'Flynn:
- Hardware Security: A Hands-on Learning Approach
2018, Mark Swarup Tehranipoor:
Pentesting Hardware - A Practical Handbook (DRAFT)
2018, Mark Carney:
- Inside Radio: An Attack and Defense Guide
2018, Qing Yang, Lin Huang
- IoT Penetration Testing Cookbook
2017, Aditya Gupta, Aaron Guzman:
- The Hardware Hacker: Adventures in Making and Breaking Hardware
2017, Andrew Huang:
- The Car Hacker's Handbook: A Guide for the Penetration Tester
2016, Craig Smith:
- The Art of PCB Reverse Engineering
2015, Keng Tiong Ng:
- Abusing the Internet of Things: Blackouts, Freakouts, and Stakeouts
2015, Nitesh Dhanjan:
- Hacking Wireless Exposed
2015, Joshua Wright , Johnny Cache:
- Hardware Security: Design, Threats, and Safeguards
2014, Debdeep Mukhopadhyay:
- The Firmware Handbook (Embedded Technology)
2014, Jack Ganssle:
- Hacking the XBOX
2013, Andrew Huang:
Research Papers
- BenchIoT: A Security Benchmark for the Internet of Things
2019, Almakhdhub et al:
- SoK: Security Evaluation of Home-Based IoT Deployments
2019, Alrawi et al:
- Challenges in Designing Exploit Mitigations for Deeply Embedded Systems
2019, Abbasi et al:
- Embedded Device Vulnerability Analysis Case Study Using Trommel
2017, O'Meara et al:
- How to Break Secure Boot on FPGA SoCs through Malicious Hardware
2017, Jacob et al:
- Embedded Security Testing with Peripheral Device Caching and Runtime Program State Approximation
2016, Kammerstetter et al:
- Towards Automated Dynamic Analysis for Linux-based Embedded Firmware
2016, Chen et al:
- Firmalice - Automatic Detection of Authentication Bypass Vulnerabilities in Binary Firmware
2015, Shoshitaishvili et al:
- Analysis of embedded applications by evolutionary fuzzing
2014, Alimi et al:
- A Large-Scale Analysis of the Security of Embedded Firmwares
2014, Costin et al:
Case Studies
- Deadly Sins Of Development
Conference talk presenting several real world examples on real bad implementations
- Hacking the PS4
Introduction to PS4's security
Free Training
CSAW Embedded Security Challenge 2019
CSAW 2019 Embedded Security Challenge (ESC)
- Embedded Security CTF
Microcorruption: Embedded Security CTF
Hardware Hacking 101
Workshop @ BSides Munich 2019
IoTGoat
IoTGoat is a deliberately insecure firmware based on OpenWrt
Rhme-2015
First riscure Hack me hardware CTF challenge
Rhme-2016
Riscure Hack me 2 is a low level hardware CTF challenge
Rhme-2017/2018
Riscure Hack Me 3 embedded hardware CTF 2017-2018
Websites
- Hacking Printers Wiki
All things printer
- OWASP Embedded Application Security Project
Development best practices and list of hardware and software tools
- OWASP Internet of Things Project
IoT common vulnerabilities and attack surfaces
- Router Passwords
Default login credential database sorted by manufacturer
- Siliconpr0n
A Wiki/Archive of all things IC reversing
Websites / Blogs
Websites / Tutorials and Technical Background
- Azeria Lab
Miscellaneous ARM related Tutorials
- JTAG Explained
A walkthrough covering UART and JTAG bypassing a protected login shell
- Reverse Engineering Serial Ports
Detailed tutorial about how to spot debug pads on a PCB
- UART explained
An in depth explanation of the UART protocol
Websites / YouTube Channels
- Flashback Team
A duo of hackers explaining their step by step approach to finding and exploiting vulnerabilities in embedded devices
- StackSmashing
Reverse engineering and hardware hacking of embedded devices
Conferences
Nothing in this list matches your filter.
Featured in 5 awesome lists
Each link jumps to the spot where the list mentions awesome-embedded-and-iot-security.