CTF · ESP32 · Embedded security

We take embedded
systems apart.

We put hardware on CTFs.

IoT, OT and ESP32 challenges, an open-source ESP32 platform and a learning platform built around real devices. A French non-profit that builds, breaks and publishes what it finds.

13 Published CVEs
9.3 Top CVSS (critical)
28 CTF challenges
1,479 CTF players
New platform Beta · Free

Espilon Learn

Hardware security training on real IoT, OT and embedded devices. Courses, challenges, labs and device emulation.

Hardware Hacking UART · SPI · I2C · JTAG Firmware & RE ESP32 Security IoT Attack Surface OT / ICS
Start learning → Free · No account required to browse
45 Courses Structured paths with theory, labs and quizzes
44 Challenges Standalone flags, practice at your own pace
28 Labs Spawnable multi-service environments
CVE Device Emulation Real device emulation to reproduce CVEs hands-on
The platform

The framework

One ESP32 firmware. Every capability is a signed module you push at runtime.

The device ships with a loader, a crypto core and a transport. Everything else arrives as a signed module, a sensor driver, a mesh node, a recon tool, loaded into IRAM at runtime, encrypted in, wiped on unload. Same engine, any job.

C3PO
Python operator server · Qt app
Firmware
ESP32 · loader + crypto + transport only
Modules
Loaded at runtime · zeroed on unload
New tool

SimSift

Portable SIM card forensic tool on ESP32. Compatible with LilyGo T-Call and T-SIM7070G.

ESP32 SIM Forensics C
View on GitHub
SimSift
New tool

emon

Universal serial monitor for embedded devices. Watch multiple ports, detect crashes and events by regex pattern, fire Python hooks, stream structured JSON to your pipeline.

C Serial ESP32 CI-ready
git clone https://github.com/EspilonOrg/emon brew install EspilonOrg/tap/emon yay -S emon
emon demo
Open source

Everything we ship

Framework, CTF, docs, blog and tools. All open, all linked below.

Espilon Learn Hardware security training: courses, challenges, labs and real device emulation. Hardware, IoT, OT, ESP32.
HardwareIoTOT
Beta
Espilon-Firmware ESP32 loader, ChaCha20-Poly1305 crypto core, WiFi and GPRS transports. Anti-forensic IRAM wipe.
CESP-IDFFreeRTOS
Incoming · Release
C3PO Operator server: Qt6 desktop app, TCP C2, per-device keystore, module compiler and injector.
PythonQt6C2
Incoming · Release
ESPM Dynamic ELF loader for ESP32. HMAC-SHA256 signature check, 110-function syscall table, per-module watchdog.
CESP-IDFELF
Incoming · Release
emon Universal serial monitor for embedded devices. Multi-port, pattern detection, automatic reactions.
CSerialEmbedded
New
SimSift Portable forensic tool for SIM cards and cellular data. Autonomous, ESP32-based, no laptop required.
ESP32SIMForensicsC
New
Espilon CTF 28 hardware, IoT and OT challenges across 6 categories. 1,479 players, 1,470 solves. Write-ups published.
HardwareIoTOT
Next edition
Documentation Build guides, hardware wiring, the full module API and field use cases for the framework.
GuidesAPIMkDocs
Live
Blog Vulnerability write-ups, CTF solutions and the occasional rant about embedded security done wrong.
Write-upsResearchHugo
Live
Eye_On_xG Interactive map of cellular antenna coverage across France, 2G to 5G, built on official ANFR open data.
2G4G5GANFR
Live
Research 13 published CVEs in Espressif, AWS/FreeRTOS, Arduino and BACnet code. GHSA links for each one.
CVEGHSADisclosure
Live
Community

Come hang out

Write-ups, challenge support, hardware finds and IoT/OT talk. New challenges drop regularly.