awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
BruceDevices avatar

BruceDevices/firmware

0
View on GitHub↗
4,941 stars·1,708 forks·C·agpl-3.0·14 viewsbruce.computer↗

Firmware

This firmware transforms an ESP32 device into a portable penetration testing platform by combining an embedded JavaScript runtime with multi-protocol wireless attack capabilities, USB and Bluetooth HID emulation, and a menu-driven user interface. It is designed as a unified system that integrates persistent storage, hardware abstraction for external radio modules, a serial command protocol for headless operation, and a web-based remote desktop that streams the device screen and relays button inputs for remote control.

The custom JavaScript scripting environment enables users to write and run scripts that orchestrate infrared, radio, serial, and file operations, with support for TypeScript compilation and direct execution of stored payloads. The firmware distinguishes itself through its dual-storage architecture (LittleFS internal flash plus SD card), boot-time state restoration, and a serial command protocol that allows complete external control without a display. The web interface provides file management, screen viewing, serial command sending, and text editing, making the device operable without its physical buttons.

Beyond these differentiators, the firmware covers a comprehensive range of attack and reconnaissance functions: WiFi deauthentication, handshake capture and cracking, rogue access point deployment with captive portals, ARP spoofing, and LLMNR/NBT-NS poisoning; Bluetooth scanning, notification spam, and keystroke injection; RFID and iButton reading, writing, cloning, and emulation; infrared send, receive, and replay; sub-GHz and 2.4 GHz RF signal capture, replay, jamming, and spectrum visualization; GPS-enabled wardriving with coordinate logging; LoRa text messaging; and ESP-NOW, Ethernet, WireGuard VPN, and SOCKS4 proxy connectivity. The firmware is installed by flashing an ESP32 device and can be extended via an on-device app store for additional tools.

Features

  • Penetration Testing Firmware - Provides a dedicated ESP32 firmware for portable penetration testing with multi-protocol attack support.
  • Embedded Scripting Runtimes - Runs custom JavaScript scripts to orchestrate infrared, radio, serial, and file operations.
  • Multi-Protocol Wireless Attack Suites - Runs WiFi deauthentication, handshake capture, evil portal, Bluetooth attacks, and Sub-GHz jamming from a single device.
  • On-Device - Creates, renames, copies, deletes, and reads files stored on SD card or LittleFS partitions.
  • Peripheral State Restoration - Restores hardware peripheral configurations and WiFi AP settings from non-volatile memory on every boot.
  • JavaScript Scripting Environments - Interprets JavaScript scripts with hardware API bindings for automated penetration testing.
  • Embedded Scripting Engines - Runs custom JavaScript programs directly on embedded hardware for automation.
  • BadUSB Payloads - Simulates a USB keyboard to inject keystrokes and run DuckyScript payloads on target computers.
  • Serial Device Communication - Sends text commands over a serial connection to trigger infrared, sub-GHz, music, and system operations.
  • HID Emulations - Emulates USB and Bluetooth HID devices to inject keystrokes for automated payload delivery.
  • RFID Tag Emulation - Emulates programmable RFID tags to interact with readers for security testing.
  • RFID Tag Reading - Reads data from 125kHz and 13.56MHz RFID tags using on-board modules.
  • Dual-Storage File Systems - Persists configuration, scripts, and logs across both internal flash and external SD card with automatic mounting.
  • SPI Bus Interfaces - Connects radio modules via SPI bus for wireless communication.
  • Standalone RFID Operations - Executes standalone RFID reading, cloning, and writing operations directly on the device.
  • Standard USB Device Emulations - Emulates USB HID devices to enable keystroke injection on hosts without native USB support.
  • LLMNR/NBT-NS/mDNS Poisoners - Responds to LLMNR and NBT-NS queries with spoofed addresses to capture authentication credentials.
  • Unified Multi-Protocol Radio Drivers - Unifies WiFi, BLE, LoRa, Sub-GHz, RFID, and IR under a single send/receive/scan interface with hardware-specific backends.
  • Wireless Deauthentication Tools - Sends management frames to disconnect wireless clients from access points.
  • UART-Based - Parses text commands over UART for headless operation, scripting integration, and external control of all firmware modules.
  • Web-Based Remote Clients - Provides a web interface to manage files, view the screen, run serial commands, and execute IR, RF, and BadUSB payloads.
  • Rogue Access Points - Deploys cloned or custom access points with captive portals to capture credentials.
  • Embedded - Provides a custom JavaScript interpreter with hardware bindings for orchestrating multi-protocol attacks on an ESP32.
  • Wireless Network Attacks - Deploys deauthentication, beacon spam, evil portal, and ARP spoofing against wireless networks.
  • Man-in-the-Middle Frameworks - Sends forged ARP replies to enable man-in-the-middle traffic interception.
  • Multi-Vector WiFi Attack Suites - Launches combined deauthentication, handshake capture, and beacon spam attacks to overwhelm WiFi networks.
  • Network Probe Response Spoofing - Impersonates networks by responding to probe requests and deploying a captive portal.
  • USB Keystroke Injection Scripts - Emulates USB and Bluetooth keyboards to inject pre-scripted keystrokes for automated payload delivery.
  • Wireless Attack Tools - Integrates WiFi, BLE, and sub-GHz attack tools into a unified wireless testing platform.
  • Handshake Captures - Captures and cracks WPA/WPA2 handshakes using a wordlist to recover network passwords.
  • Headless Controllers - Controls the device without a screen or buttons by issuing serial commands to connect to WiFi and launch a web interface.
  • Non-Volatile Device Configuration Persistence - Stores settings to non-volatile memory to survive reboots and firmware swaps, restoring state on each boot.
  • Remote Control Interfaces - Controls units without displays or buttons through a web interface or serial connection.
  • Web-Based Control Panels - Starts a web server that provides a full graphical interface for control over WiFi or via an access point.
  • Screen Mirroring Controllers - Displays the device's current screen in a browser and allows virtual button presses for navigation and selection.
  • Embedded-Device Remote Desktop Protocols - Streams the device's frame buffer to a browser and relays button inputs as serial-like commands for headless control.
  • Wardriving Loggers - Logs GPS coordinates alongside detected Wi-Fi access points for geospatial network mapping.
  • Wireless Protocols - Implements 2.4 GHz protocol jamming to disrupt WiFi and Bluetooth communications.
  • Remote File Managers - Uploads, downloads, renames, deletes, and creates files and folders on internal storage and SD card.
  • Penetration Testing Tool Configurations - Configures BadUSB keyboard layout, keystroke delay, output display, BLE API toggle, and stores WiFi AP credentials.
  • On-Device App Stores - Provides an on-device app store to download and install extension modules over WiFi.
  • Device Startup and Time Synchronization - Adjusts startup behavior, splash screen, WiFi auto-connect, and time synchronization via NTP.
  • Bluetooth Attack Execution - Scans for Bluetooth devices, sends spam notifications, and simulates a keyboard to execute attacks.
  • Bluetooth Pairing Notification Spam - Floods nearby devices with fake pairing notifications across multiple platforms or simulates tracking beacons.
  • Wi-Fi Wardriving Loggers - Records detected Wi-Fi access points with GPS coordinates into a CSV file for mapping platform upload.
  • Radio Frequency Transceivers - Configures external radio modules to transmit and receive signals across adjustable frequency bands.
  • Sub-GHz Transceivers - Transmits and receives signals on sub-GHz frequencies to interact with wireless sensors and remotes.
  • Jamming Transmitters - Transmits interference signals on selected frequencies to disrupt radio communications within range.
  • Sub-GHz Attack Transmitters - Scans, copies, replays, and jams radio frequency signals in the sub-1 GHz band to disrupt devices.
  • Signal Replayers - Captures raw or modulated radio signals and retransmits them for reuse of previously seen transmissions.
  • Signal Scanners and Jammers - Scans for 2.4 GHz signals and transmits jamming signals to disrupt them using an NRF24 module.
  • RFID Tag Writing - Writes data to 13.56MHz tags, supporting cloning, NDEF records, and erasing.
  • ARP Cache Poisoning - Floods networks with spoofed ARP replies to disrupt communication and enable man-in-the-middle attacks.
  • BLE Device Discovery and Reporting - Scans for nearby Bluetooth Low Energy devices and reports their identifiers for reconnaissance.
  • LoRa Messaging Integrations - Exchanges text messages between devices over Long Range radio using supported hardware modules.
  • Network Host Discoverers - Identifies active hosts on a network using ARP scanning.
  • Scan-and-Attack Workflows - Discovers live hosts and then launches deauthentication, ARP spoofing, and SSH attacks against them.
  • WiFi Access Point Hosting - Hosts a WiFi network for client connections and serves as a platform for other attacks.
  • Default Credential Lookups - Checks a database of factory-default router credentials and attempts login.
  • Bluetooth Keystroke Injection - Emulates a Bluetooth keyboard to inject keystrokes and execute scripts on previously paired devices.
  • 2.4 GHz Jammers - Ships a 2.4 GHz jamming capability using an NRF24 module to disrupt WiFi and Bluetooth communications.
  • Hardware-Input-Driven Menu Systems - Renders a nested menu system navigated by physical buttons, encoder, or keyboard with theme support and status bar.

Star history

Star history chart for brucedevices/firmwareStar history chart for brucedevices/firmware

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to Firmware

Similar open-source projects, ranked by how many features they share with Firmware.
  • pr3y/brucepr3y avatar

    pr3y/Bruce

    5,985View on GitHub↗

    Bruce is offensive security firmware for ESP32 hardware designed for network attacks, radio analysis, and hardware-based identity spoofing. It provides a specialized toolkit for conducting red team operations, including a WiFi penetration testing tool, a multi-protocol radio toolkit, and a system for emulating USB keyboards and mice to inject payloads. The firmware distinguishes itself through a broad range of signal manipulation capabilities, allowing for the cloning and writing of RFID tags and the transmission of disruptive pairing requests to Bluetooth devices. It also includes a multi-pr

    C++
    View on GitHub↗5,985
  • portapack-mayhem/mayhem-firmwareportapack-mayhem avatar

    portapack-mayhem/mayhem-firmware

    5,199View on GitHub↗

    Mayhem-Firmware is a custom firmware for the PortaPack add-on that transforms a HackRF software-defined radio into a standalone handheld device capable of receiving, transmitting, and analyzing radio signals across a wide frequency range. The firmware provides a complete operational environment with an event-driven touchscreen interface, a menu-driven application launcher, and a real-time sample streaming pipeline that connects the hardware abstraction layer to a suite of modular applications. All user data, including frequency presets, captures, and configuration files, are stored on a remova

    Chackrfhackrf-componentsportapack
    View on GitHub↗5,199
  • cifertech/esp32-divcifertech avatar

    cifertech/ESP32-DIV

    2,552View on GitHub↗

    ESP32-DIV is a handheld wireless pentesting platform designed for analyzing and disrupting a wide range of wireless protocols. It functions as a multi-band radio analyzer, RFID and NFC tag manipulator, and GPS wardriving logger, providing a unified interface for security auditing and signal research. The project distinguishes itself through a modular radio abstraction that allows switching between Wi-Fi, BLE, Sub-GHz, RFID/NFC, and infrared hardware modules. It features a touch-driven TFT interface for navigating toolsets and managing signal profiles, as well as the ability to emulate Bluetoo

    C++arduinoattackdeauth
    View on GitHub↗2,552
  • v1s1t0r1sh3r3/airgeddonv1s1t0r1sh3r3 avatar

    v1s1t0r1sh3r3/airgeddon

    7,797View on GitHub↗

    airgeddon is a bash-based wireless network audit suite and security toolkit for Linux. It serves as a framework for testing wireless vulnerabilities and verifying network configurations across various encryption standards, including WPA, WEP, and WPS. The project functions as an orchestration layer that integrates a collection of third-party wireless security tools. It features a modular approach to attack vectorization, coordinating tasks such as evil twin simulations with captive portals, WPA handshake interception, and the execution of WPS vulnerability tests. Its capabilities cover a bro

    Shell
    View on GitHub↗7,797
See all 30 alternatives to Firmware→

Frequently asked questions

What does brucedevices/firmware do?

This firmware transforms an ESP32 device into a portable penetration testing platform by combining an embedded JavaScript runtime with multi-protocol wireless attack capabilities, USB and Bluetooth HID emulation, and a menu-driven user interface. It is designed as a unified system that integrates persistent storage, hardware abstraction for external radio modules, a serial command protocol for headless operation, and a web-based remote desktop that streams the device screen…

What are the main features of brucedevices/firmware?

The main features of brucedevices/firmware are: Penetration Testing Firmware, Embedded Scripting Runtimes, Multi-Protocol Wireless Attack Suites, On-Device, Peripheral State Restoration, JavaScript Scripting Environments, Embedded Scripting Engines, BadUSB Payloads.

What are some open-source alternatives to brucedevices/firmware?

Open-source alternatives to brucedevices/firmware include: pr3y/bruce — Bruce is offensive security firmware for ESP32 hardware designed for network attacks, radio analysis, and… portapack-mayhem/mayhem-firmware — Mayhem-Firmware is a custom firmware for the PortaPack add-on that transforms a HackRF software-defined radio into a… cifertech/esp32-div — ESP32-DIV is a handheld wireless pentesting platform designed for analyzing and disrupting a wide range of wireless… v1s1t0r1sh3r3/airgeddon — airgeddon is a bash-based wireless network audit suite and security toolkit for Linux. It serves as a framework for… wifiphisher/wifiphisher — Wifiphisher is a modular security framework designed for wireless penetration testing and social engineering auditing.… roguemaster/flipperzero-firmware-wplugins — This project is a custom firmware for the Flipper Zero that provides an embedded plugin ecosystem, a hardware…