Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/cn0xroot/RFSec-ToolKit
RFSec-ToolKit is a collection of Radio Frequency Communication Protocol Hacktools.无线通信协议相关的工具集,可借助SDR硬件+相关工具对无线通信进行研究。Collect with ♥ by HackSmith
https://github.com/cn0xroot/RFSec-ToolKit
bladerf communication fuzzing gnuradio hackrf hardware iot limesdr radio sdr usrp wireless
Last synced: 2 months ago
JSON representation
RFSec-ToolKit is a collection of Radio Frequency Communication Protocol Hacktools.无线通信协议相关的工具集,可借助SDR硬件+相关工具对无线通信进行研究。Collect with ♥ by HackSmith
- Host: GitHub
- URL: https://github.com/cn0xroot/RFSec-ToolKit
- Owner: cn0xroot
- Created: 2017-02-26T10:56:38.000Z (almost 8 years ago)
- Default Branch: master
- Last Pushed: 2024-04-05T01:21:26.000Z (9 months ago)
- Last Synced: 2024-04-05T02:34:49.944Z (9 months ago)
- Topics: bladerf, communication, fuzzing, gnuradio, hackrf, hardware, iot, limesdr, radio, sdr, usrp, wireless
- Homepage: https://cn0xroot.com
- Size: 7.75 MB
- Stars: 1,482
- Watchers: 162
- Forks: 310
- Open Issues: 1
-
Metadata Files:
- Readme: README.md
Awesome Lists containing this project
- Hacking-Awesome - - Collection of Radio Frequency Communication Protocol Hacktools (Uncategorized / Uncategorized)
- Awesome-Hacking - RFSec-ToolKit
- awesome-hacking-lists - cn0xroot/RFSec-ToolKit - RFSec-ToolKit is a collection of Radio Frequency Communication Protocol Hacktools.无线通信协议相关的工具集,可借助SDR硬件+相关工具对无线通信进行研究。Collect with ♥ by HackSmith (Others)
- Awesome-CTS - RFSec-ToolKit V 2.0
- fucking-Awesome-Hacking - RFSec-ToolKit
- awesome-hacking - RFSec-ToolKit
README
# RFSec-ToolKit V 2.0
## Project DescriptionRFSec-ToolKit is a collection of Radio Frequency Communication Protocol Hacktools which are from the github platform,and Hacking Tutorial from youtube、blog post, including SDR、2G GSM、3G 、4G LTE 、5G、NFC&RFID、ZigBee and so on.
[Wikipedia:List of software-defined radios](https://en.wikipedia.org/wiki/List_of_software-defined_radios)
![](http://wx4.sinaimg.cn/small/ce682c6ely1fs9gc4fy4sj204y04xt8n.jpg)
![](http://wx3.sinaimg.cn/small/ce682c6ely1fs9gc9juoej205k058glm.jpg)
更新是不可能更新的,这辈子都不可能更新,硬件又买不起,只能逛逛github才能维持生活这样子;
![](http://wx1.sinaimg.cn/mw690/82d6409bgy1fn4h489cekj205k07sq3l.jpg)
毕业是不可能毕业的,这辈子都不可能毕业的。论文又不会写,就是学习这种东西,才能维持得了生活的样子;
## What can we do with Software Defined Radio?
Some Cool things to do with SDR
![SDR_EN](http://www.0xroot.cn/SDR_EN.png)
![SDR_ZHCN](http://www.0xroot.cn/SDR_ZHCN.png)##### Resources Collection by [雪碧 0x0root.com] (https://0x0root.com) [Twitter@0x0root](https://twitter.com/0X0root)
# SDR Resources
### SDR-HardWare
[RTL2832U](https://github.com/osmocom/rtl-sdr):RTL-SDR is a very cheap software defined radio that uses a DVB-T TV tuner dongle based on the RTL2832U chipset.[HackRF](https://github.com/mossmann/hackrf):low cost software radio platform [greatscottgadgets.com](http://greatscottgadgets.com/)
[BladeRF](https://github.com/Nuand/bladeRF):bladeRF is a Software Defined Radio (SDR) platform designed to enable a community of hobbyists, and professionals to explore and experiment with the multidisciplinary facets of RF communication. [Nuand.com](http://nuand.com/)
[USRP](https://github.com/EttusResearch/uhd): The USRP software defined radio products are designed for RF applications from DC to 6 GHz, including multiple antenna (MIMO) systems. [ettus.com](https://www.ettus.com/)
[LimeSDR](https://github.com/myriadrf):LimeSDR is a low cost, open source, apps-enabled software defined radio (SDR) platform that can be used to support just about any type of wireless communication standard.[Lime Microsystems](http://www.limemicro.com/)
### SDR-SoftWare
[GQRX](https://github.com/csete/gqrx):Software defined radio receiver powered by GNU Radio and Qt[SDRSharp](http://airspy.com/download/):Airspy is a popular, affordable SDR (software defined radio) based communication receiver with the highest performance and the smallest form factor. It is a serious alternative to both cost sensitive and higher end scanners while featuring the best radio browsing experience of the market thanks to the tight integration with the de facto standard SDR# software.[@airspy_com](https://twitter.com/airspy_com)
[SDR_Console](http://sdr-radio.com/v3_help):SDR-Radio.com is a Windows console for Software Defined Radio (SDR) receivers and transceivers. Designed for the commercial, government, amateur radio and short-wave listener communities, the software provides a powerful interface for all SDR users. [Suport Hardware List](http://sdr-radio.com/Radios)
[HDSDR](http://www.hdsdr.de/):HDSDR is a freeware Software Defined Radio (SDR) program for Microsoft Windows 2000/XP/Vista/7/8/8.1/10.
[CubicSDR](https://github.com/cjcliffe/CubicSDR):Cross-Platform Software-Defined Radio Application
[sdrangel](https://github.com/f4exb/sdrangel):SDR Rx/Tx software for Airspy, BladeRF, HackRF, LimeSDR, RTL-SDR, SDRplay RSP1 and FunCube
[shinysdr](https://github.com/kpreid/shinysdr):Software-defined radio receiver application built on GNU Radio with a web-based UI and plugins. In development, usable but incomplete. Compatible with RTL-SDR.
[openwebrx](https://github.com/simonyiszk/openwebrx):Open source, multi-user SDR receiver software with a web interface.
[luaradio](https://github.com/vsergeev/luaradio):A lightweight, embeddable software-defined radio framework built on LuaJIT.
[qspectrumanalyzer](https://github.com/xmikos/qspectrumanalyzer):Spectrum analyzer for multiple SDR platforms (PyQtGraph based GUI for soapy_power, hackrf_sweep, rtl_power, rx_power and other backends)
[PandwaRF](https://github.com/ComThings/PandwaRF):PandwaRF: RF analysis tool with a sub-1 GHz wireless transceiver controlled by a smartphone.
[rpitx](https://github.com/F5OEO/rpitx):RF transmitter for Raspberry Pi. rpitx is a radio transmitter for Raspberry Pi (B, B+, PI2, PI3 and PI zero) that transmits RF directly to GPIO. It can handle frequencies from 5 KHz up to 500 MHz.
[pifm](http://www.icrobotics.co.uk/wiki/index.php/Turning_the_Raspberry_Pi_Into_an_FM_Transmitter):Turning the Raspberry Pi Into an FM Transmitter.
[rpidatv](https://github.com/F5OEO/rpidatv):Digital Television Transmitter on Raspberry Pi.rpidatv is a digital television transmitter for Raspberry Pi (B,B+,PI2,PI3,Pizero) which output directly to GPIO.
[PSDR](https://github.com/MichaelRColton/PSDR):PortableSDR - A Stand Alone HF Software Defined Transciever.
[gr-cc11xx](https://github.com/andrepuschmann/gr-cc11xx):GNU Radio OOT module for communicating with TI CC11xx based devices.
[spektrum](https://github.com/pavels/spektrum):Spektrum is spectrum analyzer software for use with rtl-sdr.
[OpenUSRP](https://github.com/jocover/OpenUSRP):using LimeSDR to simulate USRP B210,OpenUSRP can using LimeSDR to simulate USRP B210 Device
[kalibrate-rtl](https://github.com/steve-m/kalibrate-rtl):GSM frequency scanner and frequency offset calculator use with rtl-sdr devices
[kalibrate-hackrf](https://github.com/scateu/kalibrate-hackrf):kalibrate for hackrf
[kalibrate-bladeRF](https://github.com/Nuand/kalibrate-bladeRF):kalibrate for bladeRF
[GNURadio](https://github.com/gnuradio/gnuradio):GNU Radio is a Free & Open-Source Toolkit for Software Radio [GNURadio.org](http://gnuradio.org/)
[Universal Radio Hacker](https://github.com/jopohl/urh): The Universal Radio Hacker is a software for investigating unknown wireless protocols
[gr-recipes](https://github.com/gnuradio/gr-recipes):Main GNU Radio recipe repository for use with PyBOMBS
[gr-etcetera](https://github.com/gnuradio/gr-etcetera):This repository stores additional recipes for GNU Radio.
[RangeNetworks/dev](https://github.com/RangeNetworks/dev):A collection of tools to make working with the numerous software components as painless as possible.
[OpenBTS](https://github.com/RangeNetworks/openbts):GSM+GPRS Radio Access Network Node
[YateBTS](http://yatebts.com):YateBTS is a software implementation of a GSM/GPRS radio access network based on Yate and is compatible with both GSM/GPRS SS7 MAP and LTE IMS core networks integrated in our YateUCN unified core network server.
[OpenLTE](https://sourceforge.net/p/openlte/wiki/Home/): OpenLTE is an open source implementation of the 3GPP LTE specifications. The focus is on transmission and reception of the downlink.
[OpenBTS-UMTS](https://github.com/fairwaves/OpenBTS-UMTS):3G UMTS Data Radio Access Network Node
[Cellular Infrastructure](https://com.org/projects/cellular-infrastructure):This is a group of Osmocom programs implementing cellular network infrastructure components for GSM, GPRS, EDGE, UMTS, HSPA, LTE and their associated interfaces and protocol stacks. [360 Unicorn Team's Demo](https://osmocom.org/projects/cellular-infrastructure/wiki/Accelerate3g5_--_unicornteam)
[OpenBSC](http://osmocom.org/projects/openbsc):This is a project aiming to create a Free Software, (A)GPL-licensed software implementations for the GSM/3GPP protocol stacks and elements.
[OsmoBTS](https://osmocom.org/projects/osmobts):OsmoBTS is an Open Source GSM BTS (Base Transceiver Station) with A-bis/IP interface.
[srsLTE](https://github.com/srsLTE/srsLTE):srsLTE is a free and open-source LTE library for SDR UE and eNodeB developed by SRS
[srsUE](https://github.com/srsLTE/srsUE):srsUE is a software radio LTE UE developed by SRS . It is written in C++ and builds upon the srsLTE library
[srsGUI](https://github.com/srsLTE/srsGUI):srsGUI is a free and open-source graphics library for SDR using Qt and Qwt. The library provides a number of useful plots for graphing real and complex numbers.
[IMDEA-OWL](https://git.networks.imdea.org/nicola_bui/imdeaowl/tree/master):OWL stands for Online Watcher of LTE. imdeaOWL is a free and open-source LTE control channel decoder developed by IMDEA Networks Institute and based on srsLTE, an LTE library for SDR UE and eNodeB developed by SRS
[OpenAirInterface](http://www.openairinterface.org):The OpenAirInterface Software Alliance is a non-profit consortium to develop ecosystem for open source software/hardware development for the core network and both access network and user equipment (EUTRAN) of 3GPP cellular networks.
[OpenAirInterface5G](https://gitlab.eurecom.fr/oai/openairinterface5g):Openairinterface 5G Wireless Implementation.
[LTE Base Station Software](https://bellard.org/lte/):LTEENB allows to build a real 4G LTE base station (called an eNodeB) using a standard PC and a low cost software radio frontend. All the physical layer and protocol layer processing is done in real time inside the PC, so no dedicated LTE hardware is necessary. https://www.amarisoft.com/products-lte-ue-ots-sdr-pcie/#software
[OsmocomBB](https://osmocom.org/projects/baseband):
OsmocomBB is an Free Software / Open Source GSM Baseband software implementation. It intends to completely replace the need for a proprietary GSM baseband software.[gr-gsm](https://github.com/ptrkrysik/gr-gsm):Gnuradio blocks and tools for receiving GSM transmissions
[gr-lte](https://github.com/kit-cel/gr-lte):The gr-lte project is an Open Source Software Package which aims to provide a GNU Radio LTE Receiver to receive, synchronize and decode LTE signals.
[LTE-Cell-Scanner](https://github.com/JiaoXianjun/LTE-Cell-Scanner):OpenCL, SDR, TDD/FDD LTE cell scanner, full stack from A/D samples to SIB ASN1 messages decoded in PDSCH, (optimized for RTL-SDR HACKRF and BladeRF board)
[gps-sdr-sim](https://github.com/osqzss/gps-sdr-sim):GPS-SDR-SIM generates GPS baseband signal data streams, which can be converted to RF using software-defined radio (SDR) platforms, such as bladeRF, HackRF, and USRP.
[gr-fosphor](https://github.com/osmocom/gr-fosphor):GNURadio block for spectrum visualization using GPU
[gr-nordic](https://github.com/BastilleResearch/gr-nordic):GNU Radio module and Wireshark dissector for the Nordic Semiconductor nRF24L Enhanced Shockburst protocol.
[gr-lora](https://github.com/BastilleResearch/gr-lora):GNU Radio OOT module implementing the LoRa PHY
[gr-ieee802-11](https://github.com/bastibl/gr-ieee802-11):IEEE 802.11 a/g/p transceiver for GNU Radio that is fitted for operation with Ettus N210s and B210s.
[gr-keyfob](https://github.com/bastibl/gr-keyfob):Transceiver for Hella wireless car key fobs.
[gr-rds](https://github.com/bastibl/gr-rds):FM RDS/TMC Transceiver
[gr-radar](https://github.com/kit-cel/gr-radar):GNU Radio Radar Toolbox
[gr-air-modes](https://github.com/bistromath/gr-air-modes):gr-air-modes implements a software-defined radio receiver for Mode S transponder signals, including ADS-B reports from equipped aircraft.
[gr-ais](https://github.com/bistromath/gr-ais):Automatic Information System decoder for shipborne position reporting for the Gnuradio project
[gr-dvbt](https://github.com/BogdanDIA/gr-dvbt):DVB-T implementation in gnuradio
[spectrum_painter](https://github.com/polygon/spectrum_painter):A tool to converts images to IQ streams that look like this when viewed in a waterfall plot.
[gr-paint](https://github.com/drmpeg/gr-paint):An OFDM Spectrum Painter for GNU Radio [ Tutorial](https://gist.github.com/drmpeg/31a9a7dd6918856aeb60)
[gr-baz](https://github.com/balint256/gr-baz):Collection of new blocks for GNU Radio
### Environment Build Tools
[HomeBrew](http://brew.sh):The missing package manager for macOS[MacPort](https://www.macports.org):The MacPorts Project is an open-source community initiative to design an easy-to-use system for compiling, installing, and upgrading either command-line
[Pybom](https://github.com/gnuradio/pybombs):PyBOMBS (Python Build Overlay Managed Bundle System) is the new GNU Radio install management system for resolving dependencies and pulling in out-of-tree projects.
## RFSignal Reverse Tools
[Audacity](http://www.audacityteam.org):Audacity® is free, open source, cross-platform audio software for multi-track recording and editing.[Baudline](http://www.baudline.com):Baudline is a time-frequency browser designed for scientific visualization of the spectral domain. Signal analysis is performed by Fourier, correlation, and raster transforms that create colorful spectrograms with vibrant detail.
[Inspectrum](https://github.com/miek/inspectrum):inspectrum is a tool for analysing captured signals, primarily from software-defined radio receivers.
[Dspectrum](https://github.com/tresacton/dspectrum):Automated RF/SDR Signal Analysis [Reverse Engineering]
[rtl_433](https://github.com/merbanan/rtl_433):Application using librtlsdr to decode the temperature from a wireless temperature sensor
[ooktools](https://github.com/leonjza/ooktools):On-off keying tools for your SD-arrrR [leonjza.github.io](https://leonjza.github.io/blog/2016/10/08/ooktools-on-off-keying-tools-for-your-sdr/)
### YouTuBe Video Tutorial
Roberto Nóbrega: Michael Ossmann Software Defined Radio with HackRF )[https://www.youtube.com/user/liquen17/playlists](https://www.youtube.com/user/liquen17/playlists)Hardware Hacking By Samy Kamkar [https://www.youtube.com/user/s4myk](https://www.youtube.com/user/s4myk)
Radio Hacking: Cars, Hardware, and more! - Samy Kamkar - AppSec California 2016 [https://www.youtube.com/watch?v=1RipwqJG50c](https://www.youtube.com/watch?v=1RipwqJG50c)
GNURadio: GRCon [https://www.youtube.com/channel/UCceoapZVEDCQ4s8y16M7Fng] (https://www.youtube.com/channel/UCceoapZVEDCQ4s8y16M7Fng)
Balint256:GNU Radio Tutorial Series、Cyberspectrum[https://www.youtube.com/user/balint256](https://www.youtube.com/user/balint256)
Crazy Danish Hacker: [https://www.youtube.com/channel/UClg0eyJTbAZaYuz3mhwfBBQ/playlists](https://www.youtube.com/channel/UClg0eyJTbAZaYuz3mhwfBBQ/playlists)
Ettusresearch [https://www.youtube.com/user/ettusresearch/feed](https://www.youtube.com/user/ettusresearch/feed)
Anders Brownworth Well Tempered Hacker[OpenBTS https://www.youtube.com/playlist?list=PL892EE6BB9D10192F](https://www.youtube.com/playlist?list=PL892EE6BB9D10192F)
Gareth's SDR Tutorial [https://www.youtube.com/channel/UCYJO5ecRhbWARNcsDIFffPg](https://www.youtube.com/channel/UCYJO5ecRhbWARNcsDIFffPg)
Software Defined Radio Academy [https://www.youtube.com/channel/UC1GAlgAQrkjeeLmIkCB8pgQ ](https://www.youtube.com/channel/UC1GAlgAQrkjeeLmIkCB8pgQ)
雪碧 0xroot's SDR Hacking [https://www.youtube.com/channel/UCVc4stniRjRfOi1eY-0Ij2Q](https://www.youtube.com/channel/UCVc4stniRjRfOi1eY-0Ij2Q)
26C3: Using OpenBSC for fuzzing of GSM handsets [https://www.youtube.com/watch?v=oGPOscdLPFQ](https://www.youtube.com/watch?v=oGPOscdLPFQ)
27c3: SMS-o-Death [https://www.youtube.com/watch?v=J-lUL3E-uPc](https://www.youtube.com/watch?v=J-lUL3E-uPc)
27c3: Wideband GSM Sniffing [https://www.youtube.com/watch?v=fH_fXSr-FhU&feature=youtu.be](https://www.youtube.com/watch?v=fH_fXSr-FhU&feature=youtu.be)
28c3: Introducing Osmo-GMR [https://www.youtube.com/watch?v=BSW-V94uZZQ&feature=youtu.be](https://www.youtube.com/watch?v=BSW-V94uZZQ&feature=youtu.be)29C3: Further hacks on the Calypso platform [https://www.youtube.com/watch?v=xFjVcxMpA6c&feature=youtu.be](https://www.youtube.com/watch?v=xFjVcxMpA6c&feature=youtu.be)
[FOSDEM 2014] osmocom: Overview of our SDR projects [https://www.youtube.com/watch?v=hsKvdga2eQg&feature=youtu.be](https://www.youtube.com/watch?v=hsKvdga2eQg&feature=youtu.be)
Sylvain Munaut: osmo-gmr: What's up with sat-phones ?[https://www.youtube.com/watch?v=ROppOLeB6_I&feature=youtu.be](https://www.youtube.com/watch?v=ROppOLeB6_I&feature=youtu.be)
DeepSec 2010 OsmocomBB A tool for GSM protocol level security analysis of GSM networks[https://www.youtube.com/watch?v=9cBJV3yTaQo&feature=youtu.be](https://www.youtube.com/watch?v=9cBJV3yTaQo&feature=youtu.be)
DeepSec 2010: Targeted DOS Attack and various fun with GSM Um by Sylvain Munaut [https://www.youtube.com/watch?v=7tc4hD7ckZY&feature=youtu.be](https://www.youtube.com/watch?v=7tc4hD7ckZY&feature=youtu.be)
UnicornTeam of Ir0nSmith [http://v.qq.com/vplus/9427cc31bad2413591069f1800862a96](http://v.qq.com/vplus/9427cc31bad2413591069f1800862a96)
### Twitter&WEB Site
[@rtlsdrblog](https://twitter.com/rtlsdrblog) [RTL-SDR.com](http://rtl-sdr.com)[Wireless frequency bands](http://niviuk.free.fr/): Frequency / Arfcn caculator for LTE, UMTS, GSM and CDMA, and Carrier Aggregation combination info
[@scateu](https://twitter.com/scateu) [HackRF.NET](http://www.hackrf.net/)
[@AndrewMohawk](https://twitter.com/AndrewMohawk) [andrewmohawk.com](http://andrewmohawk.com)
[@bastibl](https://twitter.com/bastibl) [bastibl.net](https://www.bastibl.net/blog/)
[@csete](https://twitter.com/csete) [OZ9AEC Website](http://oz9aec.net/)
[@samykamkar](https://twitter.com/samykamkar) [Samy Kamkar](https://samy.pl/)
[@0X0root](https://twitter.com/0X0root) [0x0root.com](https://0x0root.com)
[@fairwaves ](https://twitter.com/fairwaves) [fairwaves](https://fairwaves.co/blog/)
[@gareth__](https://twitter.com/gareth__) [Gareth codes](https://gareth.codes/)
[@mpeg4codec](https://twitter.com/mpeg4codec) [ICE9 Blog](http://blog.ice9.us/)
[@marcnewlin](https://twitter.com/marcnewlin) [Marc Newlin](http://www.marcnewlin.me/)
[@drmpeg](https://twitter.com/drmpeg)[W6RZ](http://www.w6rz.net/)
[@CrazyDaneHacker](https://twitter.com/CrazyDaneHacker) [Crazy Danish Hacker](https://www.crazydanishhacker.com/)
[jxjputaoshu](https://twitter.com/jxjputaoshu)[Jiao Xianjun (BH1RXH)'s tech blog](http://sdr-x.github.io)
[@bastillenet](https://twitter.com/bastillenet) [Bastille](https://twitter.com/bastillenet)
[@embeddedsec](https://twitter.com/embeddedsec)
[@RadioHacking](https://twitter.com/RadioHacking)
[@elasticninja](https://twitter.com/elasticninja)
[@devnulling](https://twitter.com/devnulling)
[@uber_security](https://twitter.com/uber_security)
[@TresActon ](https://twitter.com/tresacton)
[@BE_Satcom](https://twitter.com/BE_Satcom)
[@lucasteske](https://twitter.com/lucasteske)
[@giorgiofox](https://twitter.com/giorgiofox)
[@xdzou](https://twitter.com/xdzou)
[@090h](https://twitter.com/090h)
[@rfspace](https://twitter.com/rfspace)
[@mobios](https://twitter.com/mobios)
[@lambdaprog](https://twitter.com/lambdaprog)
[Ruten.proteus](http://ruten-proteus.blogspot.jp/)
# NFC&RFID Resources
### HardWare
[ProxMark3](https://github.com/Proxmark/proxmark3):The proxmark3 is a powerful general purpose RFID tool, the size of a deck of cards, designed to snoop, listen and emulate everything from Low Frequency (125kHz) to High Frequency (13.56MHz) tags.[ACR122U](http://www.acs.com.hk/cn/driver/3/acr122u-usb-nfc-reader/):
### SoftWare
[miguelbalboa/rfid](https://github.com/miguelbalboa/rfid):Arduino library for MFRC522 and other RFID RC522 based modules.[RFIDIOt](https://github.com/AdamLaurie/RFIDIOt):python RFID / NFC library & tools
[RFIDler](https://github.com/ApertureLabsLtd/RFIDler):RFIDler - Software defined RFID (LF) Reader/Writer/Emulator
[libnfc](https://github.com/nfc-tools/libnfc):Platform independent Near Field Communication (NFC) library
[mfoc](https://github.com/nfc-tools/mfoc):Mifare Classic Offline Cracker
[mfcuk](https://github.com/nfc-tools/mfcuk):Mifare Classic Universal toolKit (MFCUK)
### Tutorial
[cn0xroot.com](https://cn0xroot.com/?s=rfid)
[FreeBuf.com](http://www.freebuf.com/?s=rfid)
# BLE Resources
### HardWare
[Ubertooth](https://github.com/greatscottgadgets/ubertooth):Ubertooth ships with a capable BLE (Bluetooth Smart) sniffer and can sniff some data from Basic Rate (BR) Bluetooth Classic connections.
[TI CC2540](http://www.ti.com/product/cc2540):The CC2540 is a cost-effective, low-power, true system-on-chip (SoC) for Bluetooth low energy applications.
### SoftWare[TI PACKET-SNIFFER](http://www.ti.com.cn/tool/cn/packet-sniffer):The SmartRF Packet Sniffer is a PC software application that can display and store radio packets captured by a listening RF device. The capture device is connected to the PC via USB. Various RF protocols are supported. [http://www.ti.com/tool/packet-sniffer](http://www.ti.com/tool/packet-sniffer)
[libbtbb](https://github.com/greatscottgadgets/libbtbb):A Bluetooth baseband decoding library
[crackle](https://github.com/mikeryan/crackle):crackle exploits a flaw in the BLE pairing process that allows an attacker to guess or very quickly brute force the TK (Temporary Key). With the TK and other data collected from the pairing process, the STK (Short Term Key) and later the LTK (Long Term Key) can be collected.
[spectool](https://www.kismetwireless.net/spectools/):Spectools is a set of utilities for using various spectrum analyzer hardware. It supports the suite of Wi-Spy devices (original, 24x, 24x2, DBX, DBX2, 900, 24i) by Metageek LLC and the Ubertooth. Spectools includes userspace drivers for the hardware itself, a graphing UI built GTK and Cairo, network protocols for remote device capture, and simple utilities for developing additional tools.
[spectool-web](https://github.com/acg/spectool-web):A web viewer for WiSPY and Ubertooth spectrum data
[gatttool ](http://www.jaredwolff.com/blog/get-started-with-bluetooth-low-energy):Get Started with Bluetooth Low Energy on Linux
[hcitool](http://linuxcommand.org/man_pages/hcitool1.html):hcitool is used to configure Bluetooth connections and send some spe- cial command to Bluetooth devices.
[BLE-Security](https://github.com/merculite/BLE-Security):Bluetooth door hacking scripts that require Ubertooth or other devices to passively sniff.
[BLESuite](https://github.com/nccgroup/BLESuite): BLESuite is a Python package that provides an easier way to test Bluetooth Low Energy (BLE) device (By NCC Group)
[BLESuite-CLI](https://github.com/nccgroup/BLESuite-CLI):BLESuite_CLI is a command line tool to enable an easier way to test Bluetooth Low Energy (BLE) devices
[BLE-Replay](https://github.com/nccgroup/BLE-Replay):BLE-Replay is a Bluetooth Low Energy (BLE) peripheral assessment tool
[Blue-Hydra](https://github.com/pwnieexpress/blue_hydra) Bluetooth device discovery service built on top of the bluez library. BlueHydra makes use of ubertooth where available and attempts to track both classic and low energy (LE) bluetooth devices over time.
[BTLEJuice](https://github.com/DigitalSecurity/btlejuice):BtleJuice is a complete framework to perform Man-in-the-Middle attacks on Bluetooth Smart devices (also known as Bluetooth Low Energy).
[wireshark]( https://www.wireshark.org):Wireshark is the world’s foremost and widely-used network protocol analyzer.
### Tutorial[BLE Hacking:ble scan and sniffer withu bertooth-one](https://cn0xroot.com/2016/06/12/ble-hacking%EF%BC%9Able-scan-and-sniffer-withubertooth-one/)
[Ubertooth – Bluetooth Sniffing Updated for 2014](https://penturalabs.wordpress.com/2014/02/20/ubertooth-updated-for-2014/)
[Spectrum Tools and Ubertooth One](https://hackerific.net/2012/01/28/Spectrum-Tools-and-Ubertooth-One/)
[BLE Fun With Ubertooth: Sniffing Bluetooth Smart and Cracking Its Crypto](http://blog.ice9.us/2014/01/ble-fun-with-ubertooth-sniffing.html)
[Ubertooth Spectrum Analysis (Kali/Chromebook)](https://www.splitbits.com/2014/05/14/ubertooth-spectools-chromebook/)
[Sniffing/logging your own Android Bluetooth traffic](http://stackoverflow.com/questions/23877761/sniffing-logging-your-own-android-bluetooth-traffic)
[Installing the Ubertooth One on BT5](http://www.backtrack-linux.org/forums/showthread.php?t=41552)
# ZigBee Resources
### SoftWare
[gr-ieee802-15-4](https://github.com/bastibl/gr-ieee802-15-4):IEEE 802.15.4 ZigBee Transceiver[SecBee](https://github.com/Cognosec/SecBee):SecBee is a ZigBee security testing tool developed by Cognosec. The goal is to enable developers and security testers to test ZigBee implementations for security issues.
[Zigator](https://github.com/akestoridis/zigator) Security analysis tool for Zigbee networks
[Low-Cost ZigBee Selective Jamming](https://www.bastibl.net/reactive-zigbee-jamming/)
#Thanks
[Axilirator](https://github.com/cn0xroot/RFSec-ToolKit/issues/1)
[@vileer_com](https://twitter.com/vileer_com)
## Star History
![stars](https://starchart.cc/cn0xroot/RFSec-ToolKit.svg)