Evil-M5Project
Wi-Fi exploration and audit tool on M5Stack / ESP32 hardware. Over 2 700 stars on GitHub.
49.18°N 0.37°W · Caen Pentest · Audit · Training · Research
Penetration tests and audits run like a real attack: reproducible, ranked by severity, and delivered with a fix your teams can actually apply.
Then a retest.
Concrete goal: find what is actually exploitable before an attacker does, and hand you security evidence you can show your clients, insurers and auditors.
Objectives, scope, time windows and written authorisation. Nothing starts without them.
Each finding: proof, severity, reproduction, fix. Critical issues flagged in real time.
I present, you fix, I verify again and update the report.
No salesperson, no junior quietly subcontracted: the person who tests is the one who scopes, writes the report and presents it to you. You know who is involved, and why.
Written authorisation and rules of engagement, every time.
GDPR, encryption, NDA on request. No reference without consent.
Written rules of engagement: targets, windows, stop conditions.
Caen, Normandy and western France. Remote testing anywhere.
Engagements are confidential: no reference without written consent. So here is proof you can verify yourself. Have a specific question? The FAQ.
Wi-Fi exploration and audit tool on M5Stack / ESP32 hardware. Over 2 700 stars on GitHub.
Network toolkit on Raspberry Pi, with its own community. Over 1 200 stars on GitHub.
Including a critical SQL injection (CVSS 9.8), a privilege escalation in GLPI and a subscriber identifier leak. Plus 2 reserved IDs.
I teach in higher education and run in-company training.
Pentest reinforcement as a subcontractor: web, API, cloud, Linux, Android and hardware scopes, reports in your format. Published CVEs and open source to back it up. Single day rate of €1,100 (excl. VAT).
Describe the context, the intended scope and your timeline. I answer personally. Single day rate of €1,100 (excl. VAT).
Reply within a few business days, no commitment.