EmbedOS - Embedded security testing operating system based on Ubuntu 18.04 preloaded with firmware security testing tools. The virtual machine can be downloaded and imported as an OVF file into VirtualBox or VMWare.
Alternative download site available soon
Username: embedos
Password: embeddedappsec
- Firmware Analysis Toolkit
- Firmware Analysis Comparison Toolkit (FACT) : Not fully installed. More disk space required.
- fwanalyzer
- ByteSweep
- Firmwalker
- Checksec.sh
- Binwalk
- QEMU
- Firmadyne
- Firmware Modification Kit
- OpenOCD
- Flashrom
- minicom
- ubi_reader
- uboot write
- elfutils
- pax-utils
- prelink
- lddtree
plus more...
Some of the above tools will install additional dependencies not listed here such as radare2, cwe-checker, and others.
- Mirai affected firmware (DVR based)
- Damn Vulnerable Router Project
- IoTGoat
- Firmware Security Testing Methodology - See the following repository for further details https://github.com/scriptingxss/owasp-fstm/
If you would like to contribute or provide feedback to improve this virtual machine, submit a pull request or get in touch over Twitter @scriptingxss.