// the find
swisskyrepo/HardwareAllTheThings
Hardware/IOT Pentesting Wiki
A documentation wiki (MkDocs-based, not code) cataloging hardware and IoT pentesting techniques: debug interfaces like JTAG/SWD/UART, firmware dumping and reverse engineering, RFID/NFC attacks, radio protocols, and specific gadget writeups (Flipper Zero, HydraBus, Proxmark, ESP32). Aimed at security researchers and pentesters who need a reference for physical/hardware attack surfaces, similar in spirit to the other '...AllTheThings' wikis from the same author.
Organized by attack surface rather than by tool, so you can go straight to 'JTAG enumeration' or 'firmware dumping' instead of hunting through blog posts. Covers a genuinely underserved niche compared to web/cloud pentesting wikis — RFID/Mifare variants, CAN bus, DNP3/Modbus, LimeSDR BTS writeups are not common in a single place. Has CI for markdown linting and a pre-commit config, and ships both a GitHub-rendered version and a separate MkDocs site, so it's maintained as a real docs project, not a dumping ground.
It's reference material, not a tool — nothing to install or run, so it only pays off if you're actually doing hands-on hardware work with the gadgets it references. Depth is uneven: some pages (gadgets/arduino.md) are likely thin compared to deep ones (protocols/rfid-nfc), since community-contributed wikis tend to get love where contributors have personal expertise. No versioning or changelog for content, so you can't tell at a glance whether a given technique (e.g. a bypass) is still current against modern firmware/hardware revisions. Being an aggregator, it will duplicate and occasionally drift from the primary sources it was compiled from, with no clear indication of which.