finds.dev← search

// the find

swisskyrepo/HardwareAllTheThings

★ 971 · HTML · MIT · updated Aug 2026

Hardware/IOT Pentesting Wiki

A documentation wiki (MkDocs-based, not code) cataloging hardware and IoT pentesting techniques: debug interfaces like JTAG/SWD/UART, firmware dumping and reverse engineering, RFID/NFC attacks, radio protocols, and specific gadget writeups (Flipper Zero, HydraBus, Proxmark, ESP32). Aimed at security researchers and pentesters who need a reference for physical/hardware attack surfaces, similar in spirit to the other '...AllTheThings' wikis from the same author.

Organized by attack surface rather than by tool, so you can go straight to 'JTAG enumeration' or 'firmware dumping' instead of hunting through blog posts. Covers a genuinely underserved niche compared to web/cloud pentesting wikis — RFID/Mifare variants, CAN bus, DNP3/Modbus, LimeSDR BTS writeups are not common in a single place. Has CI for markdown linting and a pre-commit config, and ships both a GitHub-rendered version and a separate MkDocs site, so it's maintained as a real docs project, not a dumping ground.

It's reference material, not a tool — nothing to install or run, so it only pays off if you're actually doing hands-on hardware work with the gadgets it references. Depth is uneven: some pages (gadgets/arduino.md) are likely thin compared to deep ones (protocols/rfid-nfc), since community-contributed wikis tend to get love where contributors have personal expertise. No versioning or changelog for content, so you can't tell at a glance whether a given technique (e.g. a bypass) is still current against modern firmware/hardware revisions. Being an aggregator, it will duplicate and occasionally drift from the primary sources it was compiled from, with no clear indication of which.

View on GitHub → Homepage ↗

// want more like this?

We dig through GitHub every week and send a few repos picked for what you actually care about — each with an honest take like this one.

Get finds in your inbox → Search again →