Onekey resources
Access the latest Whitepaper, Datasheets, research, and security advisories on cybersecurity and compliance—all in one place.
Featured resources
All resources

Advisory: Cisco RV34X Series - Privilege Escalation in vpnTimer
IoT Inspector detected a rare security vulnerability in Cisco's RV34X Series. Read the full root analysis on the blog!

Advisory: Multiple Issues in Libre Wireless LS9 Modules - And the Problem with Third Party Products
IoT Inspector detected security vulnerabilities in the Gigaset L800HX smart speaker, which is actually based on a third party module (Libre Wireless LS9).

Advisory: Cisco RV34X Series - Authentication Bypass and Remote Command Execution
IoT Inspector identified security issues in Cisco's RV34X series of devices. Read the full root analysis on our blog!

Advisory: Fibaro Home Center - Multiple Vulnerabilities (CVE-2021-20989, CVE-2021-20990, CVE-2021-20991, CVE-2021-20992)
IoT Inspector discovered multiple vulnerabilities in the Fibaro Home Center 2 and Home Center Lite. Users are advised to upgrade.

Patch Diffing Entire Firmware Images, Squeezing Out Bugs
Firmware patch diffing is a relatively under-documented, but important process in IoT security research. Let's look at a real-world example!

Whitepaper: Sourcing Secure IoT Devices
Find out what to consider when purchasing new IoT products to avoid compromising the security of your IT infrastructure.

Advisory: D-Link DIR-3060 Authenticated RCE (CVE-2021-28144)
The D-Link DIR-3060 is affected by a post-authentication command injection vulnerability, which was discovered and disclosed by IoT Inspector.
Ready to automate your Product Cybersecurity & Compliance?
Make cybersecurity and compliance efficient and effective with ONEKEY.