Skip to content

Security: YukiCodepth/firmware-security-workbench

Security

SECURITY.md

Security Policy

Firmware Security Workbench is a defensive analysis project.

Supported Scope

The project supports:

  • analyzing firmware files that you own or are authorized to inspect
  • identifying risky strings, secrets, components, and configuration
  • generating reports for defensive review
  • comparing firmware versions for security regression analysis

Out of Scope

The project does not support:

  • exploit generation
  • unauthorized device access
  • credential theft or abuse
  • malware deployment
  • bypassing access controls on systems you do not own

Reporting Issues

If you find a security issue in the tool itself, open a private report if the project is hosted on GitHub with security advisories enabled. If private reporting is not available, open a minimal public issue without sharing exploit details.

There aren’t any published security advisories