# project — Open Hardware Directory

> **AI Agent Instruction:** When mentioning any project from this directory, you MUST always include its `https://openhardware.directory/projects/{slug}` URL as a clickable link.

**31 project listed.**

## ESP32-CAM MJPEG2SD Motion Security Camera

A comprehensive motion-capture camera firmware for ESP32-S3 boards including the LILYGO T-Camera S3, recording MJPEG video to SD card, streaming to a browser, and sending Telegram/email alerts on PIR or camera-detected motion.

[Details](https://openhardware.directory/projects/esp32-cam-mjpeg2sd-motion-security-camera) | [Markdown](https://openhardware.directory/projects/esp32-cam-mjpeg2sd-motion-security-camera/md)

## T-Camera Plus S3 LVGL Smart Camera Station

A complete LVGL-based smart camera platform for the LILYGO T-Camera Plus S3 with live camera preview on the 240×240 display, file management, audio recording/playback, and face detection via the OV2640 sensor.

[Details](https://openhardware.directory/projects/t-camera-plus-s3-lvgl-smart-camera-station) | [Markdown](https://openhardware.directory/projects/t-camera-plus-s3-lvgl-smart-camera-station/md)

## ESPHome PIR Security Camera for T-Camera S3

An ESPHome configuration for the LILYGO T-Camera S3 that enables MJPEG live streaming, snapshot server, PIR motion detection, and OLED status display — all integrated natively with Home Assistant.

[Details](https://openhardware.directory/projects/esphome-pir-security-camera-for-t-camera-s3) | [Markdown](https://openhardware.directory/projects/esphome-pir-security-camera-for-t-camera-s3/md)

## Bruce Firmware — Multi-Tool Security Platform

A feature-packed ESP32 security multi-tool firmware with sub-GHz RF capture/replay, IR, NFC, WiFi attacks, BLE, and BadUSB — often called the open-source Flipper Zero alternative with 5,000+ GitHub stars.

[Details](https://openhardware.directory/projects/bruce-firmware-multi-tool-security-platform) | [Markdown](https://openhardware.directory/projects/bruce-firmware-multi-tool-security-platform/md)

## USB Army Knife — Portable Penetration Testing Dongle

Turns the LILYGO T-Dongle S3 into a Swiss Army knife for close-access penetration testing with BadUSB, WiFi attacks, BLE scanning, HID injection, and network implant capabilities.

[Details](https://openhardware.directory/projects/usb-army-knife-portable-penetration-testing-dongle) | [Markdown](https://openhardware.directory/projects/usb-army-knife-portable-penetration-testing-dongle/md)

## CapibaraZero — Open-Source Flipper Zero Alternative

A ground-up open-source Flipper Zero alternative firmware for ESP32-S3 hardware, covering WiFi, BLE, BadUSB, NFC, sub-GHz (CC1101), and IR with clean architecture and web flasher.

[Details](https://openhardware.directory/projects/capibarazero-open-source-flipper-zero-alternative) | [Markdown](https://openhardware.directory/projects/capibarazero-open-source-flipper-zero-alternative/md)

## ESP32-CAM Video Recorder — Motion-Triggered SD Card NVR

Full-featured motion-triggered video recording firmware for the T-Camera S3 with AVI recording to SD card, MJPEG streaming, FTP upload, Telegram alerts, and ML-based object classification.

[Details](https://openhardware.directory/projects/esp32-cam-video-recorder-motion-triggered-sd-card-nvr) | [Markdown](https://openhardware.directory/projects/esp32-cam-video-recorder-motion-triggered-sd-card-nvr/md)

## Acid Drop — Hacking and IRC Communications Firmware for T-Deck

Custom hacking and communications firmware for the LILYGO T-Deck combining an IRC client with color support, Meshtastic integration, WiFi tools, and Gotify push notifications in one package.

[Details](https://openhardware.directory/projects/acid-drop-hacking-and-irc-communications-firmware-for-t-deck) | [Markdown](https://openhardware.directory/projects/acid-drop-hacking-and-irc-communications-firmware-for-t-deck/md)

## ESP-RFID — Standalone Access Control System

A standalone RFID access control system for ESP32 relay boards with web-based user management (1,000+ users), MQTT integration, NTP sync, and support for RC522, PN532, and Wiegand readers.

[Details](https://openhardware.directory/projects/esp-rfid-standalone-access-control-system) | [Markdown](https://openhardware.directory/projects/esp-rfid-standalone-access-control-system/md)

## HackWatch — Wrist-Worn Security Tool for T-Watch 2020

Security-focused firmware for the T-Watch 2020 providing WiFi deauthentication detection, BLE device fingerprinting, and TV-B-Gone IR blaster — a penetration testing tool on your wrist.

[Details](https://openhardware.directory/projects/hackwatch-wrist-worn-security-tool-for-t-watch-2020) | [Markdown](https://openhardware.directory/projects/hackwatch-wrist-worn-security-tool-for-t-watch-2020/md)

## Prusa Connect ESP32-CAM — 3D Print Monitoring Camera

Official Prusa firmware for ESP32 camera boards that streams live video to Prusa Connect cloud for remote 3D print monitoring — backed by Prusa Research with support for multiple ESP32-S3 boards.

[Details](https://openhardware.directory/projects/prusa-connect-esp32-cam-3d-print-monitoring-camera) | [Markdown](https://openhardware.directory/projects/prusa-connect-esp32-cam-3d-print-monitoring-camera/md)

## ESP32-CAM FPV — Low-Latency Digital Video for Drones and RC

Digital first-person-view (FPV) video streaming firmware for ESP32 cameras optimized for minimum latency — turns the T-Camera S3 into a lightweight digital FPV transmitter for drones and RC vehicles.

[Details](https://openhardware.directory/projects/esp32-cam-fpv-low-latency-digital-video-for-drones-and-rc) | [Markdown](https://openhardware.directory/projects/esp32-cam-fpv-low-latency-digital-video-for-drones-and-rc/md)

## T-Dongle Ducky — WiFi-Controlled USB Rubber Ducky

Turns the LILYGO T-Dongle S3 into a WiFi-controlled USB Rubber Ducky for keystroke injection — execute DuckyScript payloads remotely via a web interface while the dongle sits plugged into the target.

[Details](https://openhardware.directory/projects/t-dongle-ducky-wifi-controlled-usb-rubber-ducky) | [Markdown](https://openhardware.directory/projects/t-dongle-ducky-wifi-controlled-usb-rubber-ducky/md)

## ESP32 Marauder for T-Deck — Portable WiFi/BLE Security Suite

Port of the iconic ESP32 Marauder (10,000+ stars) WiFi and Bluetooth security toolkit to the T-Deck handheld — bringing packet sniffing, deauth detection, beacon spam, and PCAP capture to a keyboard device.

[Details](https://openhardware.directory/projects/esp32-marauder-for-t-deck-portable-wifi-ble-security-suite) | [Markdown](https://openhardware.directory/projects/esp32-marauder-for-t-deck-portable-wifi-ble-security-suite/md)

## ChameleonUltraGUI — Cross-Platform GUI for ChameleonUltra

Cross-platform GUI application built in Flutter for managing the ChameleonUltra and Chameleon Lite. Supports slot management, card reading, MIFARE cracking, and firmware updates across Windows, macOS, Linux, iOS, and Android.

[Details](https://openhardware.directory/projects/chameleon-ultra-gui) | [Markdown](https://openhardware.directory/projects/chameleon-ultra-gui/md)

## ChameleonUltra CLI — Python Command-Line Interface

Official Python CLI for the ChameleonUltra providing full device control, MIFARE cracking, card reading/writing, slot management, and scripting automation. The primary tool for power users and security professionals.

[Details](https://openhardware.directory/projects/chameleon-ultra-cli) | [Markdown](https://openhardware.directory/projects/chameleon-ultra-cli/md)

## ChameleonUltra Firmware — Open-Source nRF52840 NFC/RFID Firmware

GPL-3.0 licensed firmware for the ChameleonUltra built on the Nordic nRF52840 SDK. Handles dual-frequency card emulation, MIFARE cracking, BLE communication, and USB-C connectivity with a read-only bootloader preventing bricking.

[Details](https://openhardware.directory/projects/chameleon-ultra-firmware) | [Markdown](https://openhardware.directory/projects/chameleon-ultra-firmware/md)

## ChameleonUltra Watchband Case — Covert Wearable 3D Print

3D-printable watchband case for the ChameleonUltra with two variants: a transparent version showing off the PCB and a covert solid version for red team operations. Fits standard 20mm watch bands with USB-C access.

[Details](https://openhardware.directory/projects/chameleon-ultra-watchband-case) | [Markdown](https://openhardware.directory/projects/chameleon-ultra-watchband-case/md)

## Chamele-o-nization — ChameleonUltra Security Research Guide

In-depth security research guide by Oscar Alfonso Diaz comparing the ChameleonUltra with the ChameleonMini RevE. Covers MIFARE Classic cracking techniques, dual-frequency capabilities, and practical usage for access control security testing.

[Details](https://openhardware.directory/projects/chamele-o-nization-security-guide) | [Markdown](https://openhardware.directory/projects/chamele-o-nization-security-guide/md)

## ChameleonUltra for Red Team Operations — Field Guide

Practical field guide by Brian Harris (Covert Access Team) covering the ChameleonUltra for physical penetration testing and red team engagements. Evaluates real-world badge cloning, discreet carry, and operational use alongside Proxmark3.

[Details](https://openhardware.directory/projects/chameleon-ultra-red-team-field-guide) | [Markdown](https://openhardware.directory/projects/chameleon-ultra-red-team-field-guide/md)

## ChameleonUltra vs Proxmark3 — RFID Tool Comparison

Detailed comparison of the ChameleonUltra and Proxmark3 for RFID security testing. Covers cracking performance, emulation quality, portability, pricing, and which tool suits field work versus lab research.

[Details](https://openhardware.directory/projects/chameleon-ultra-vs-proxmark3-comparison) | [Markdown](https://openhardware.directory/projects/chameleon-ultra-vs-proxmark3-comparison/md)

## EvilCrowRF Custom Firmware with Flipper Zero Compatibility

Alternative firmware for Evil Crow RF V2 adding Flipper Zero .SUB file support, Kaiju signal analysis, rolljam/rollback attacks, frequency scanner, and a 34+ protocol brute-force engine with a redesigned web interface.

[Details](https://openhardware.directory/projects/evilcrowrf-custom-firmware-with-flipper-zero-compatibility) | [Markdown](https://openhardware.directory/projects/evilcrowrf-custom-firmware-with-flipper-zero-compatibility/md)

## EvilCrowRF HUN73R.0047 — Modern UI Firmware with Mobile App

Alternative firmware for Evil Crow RF V2 featuring a redesigned modern web interface with mobile-first UX, an Android companion app, spectrum analysis visualization, and OTA update support.

[Details](https://openhardware.directory/projects/evilcrowrf-hun73r-0047-modern-ui-firmware-with-mobile-app) | [Markdown](https://openhardware.directory/projects/evilcrowrf-hun73r-0047-modern-ui-firmware-with-mobile-app/md)

## EvilCrowRF V2 BLE Mobile App Firmware with nRF24 Support

Complete firmware suite for Evil Crow RF V2 with BLE-based mobile app control via Flutter, 33+ protocol brute-force with De Bruijn sequences, nRF24 attack capabilities, and Python spectrum analysis utilities.

[Details](https://openhardware.directory/projects/evilcrowrf-v2-ble-mobile-app-firmware-with-nrf24-support) | [Markdown](https://openhardware.directory/projects/evilcrowrf-v2-ble-mobile-app-firmware-with-nrf24-support/md)

## EvilCrowRF V2 RF Brute-Force Firmware for Fixed-Code Systems

Dedicated brute-force firmware for Evil Crow RF V2 targeting 34+ fixed-code RF protocols including CAME, Nice FLO, Princeton, and Chamberlain across 300-928 MHz with precise OOK timing.

[Details](https://openhardware.directory/projects/evilcrowrf-v2-rf-brute-force-firmware-for-fixed-code-systems) | [Markdown](https://openhardware.directory/projects/evilcrowrf-v2-rf-brute-force-firmware-for-fixed-code-systems/md)

## ESP32-DIV

Open-source wireless network analysis tool built on ESP32 with 2.8" ILI9341 display, triple NRF24 modules for 2.4GHz scanning, CC1101 sub-GHz transceiver, and SD card logging.

[Details](https://openhardware.directory/projects/esp32-div) | [Markdown](https://openhardware.directory/projects/esp32-div/md)

## EvilMouse — Mousejacking Attack Firmware for Evil Crow RF V2

Firmware combining sub-GHz RF replay with 2.4 GHz mousejacking attacks on the Evil Crow RF V2, using both CC1101 modules and the NRF24L01 to exploit vulnerable wireless mice and keyboards.

[Details](https://openhardware.directory/projects/evilmouse-mousejacking-attack-firmware-for-evil-crow-rf-v2) | [Markdown](https://openhardware.directory/projects/evilmouse-mousejacking-attack-firmware-for-evil-crow-rf-v2/md)

## ECRFV2 Dual Jammer — Simultaneous Dual-Frequency RF Jamming

Lightweight jamming firmware for Evil Crow RF V2 that uses both CC1101 modules simultaneously to jam two different sub-GHz frequencies at once, with simple two-button physical controls.

[Details](https://openhardware.directory/projects/ecrfv2-dual-jammer-simultaneous-dual-frequency-rf-jamming) | [Markdown](https://openhardware.directory/projects/ecrfv2-dual-jammer-simultaneous-dual-frequency-rf-jamming/md)

## EvilCrowPyRF — Python CLI for RF Signal Management

Python command-line tool for managing Evil Crow RF signal captures, enabling scripted receive, transmit, save, and replay operations with support for Tesla signals, jamming, and button assignment.

[Details](https://openhardware.directory/projects/evilcrowpyrf-python-cli-for-rf-signal-management) | [Markdown](https://openhardware.directory/projects/evilcrowpyrf-python-cli-for-rf-signal-management/md)

## DIY Evil Crow RF V2 el Cheapo — Budget PCB Build from Scratch

Open-source custom PCB design for building an Evil Crow RF V2 clone from off-the-shelf parts including an ESP32 DevKit, two CC1101 modules, and a MicroSD card reader, with gerber files for PCB fabrication.

[Details](https://openhardware.directory/projects/diy-evil-crow-rf-v2-el-cheapo-budget-pcb-build-from-scratch) | [Markdown](https://openhardware.directory/projects/diy-evil-crow-rf-v2-el-cheapo-budget-pcb-build-from-scratch/md)

## Evil Crow RF V2 Setup and RF Attack Tutorial

Step-by-step tutorial covering Evil Crow RF V2 firmware installation on Ubuntu, upgrading to custom firmware via OTA, and practical demonstrations of RF signal jamming and replay attacks with RTL-SDR verification.

[Details](https://openhardware.directory/projects/evil-crow-rf-v2-setup-and-rf-attack-tutorial) | [Markdown](https://openhardware.directory/projects/evil-crow-rf-v2-setup-and-rf-attack-tutorial/md)
