Skip to content

Releases: 7wp81x/NRSuite-Android

NRSuite 1.0.0-beta.2 - Defense Modules, BLE Scanner & USB Polish

Choose a tag to compare

@7wp81x 7wp81x released this 01 Oct 17:08
d93e74c

NRSuite 1.0.0-beta.2

Authorized testing only. Use only on networks and devices you own or have explicit permission to test. See LEGAL.md.

Beta.2 adds Wi-Fi/BLE defense modules, BLE recon, multi-device USB support, and flasher/onboarding UX improvements.

Highlights

  • Wi-Fi defense: Deauth Detector, Rogue AP Detector, Client/Presence Detector, Hidden AP Revealer.
  • BLE: BLE Scanner, Tracker Detector, read-only GATT Profile, BLE HID.
  • USB: Multi-device USB sessions, BadUSB device picker, improved Firmware Flasher flow.
  • Tools: MAC Lookup/OUI rules and Serial Monitor.
  • Firmware: 1.0.0-beta.2 builds for ESP32-C3, ESP32-S3, ESP32-S2, and classic ESP32 devkit.

Bug fix

  • Fixed ESP32 DevKit V1 UART flashing connection issue (#26 ).

Install

  1. Flash firmware: use the in-app Firmware Flasher or:
esptool.py --port /dev/ttyUSB0 --baud 921600 write_flash 0x0 beta-nrsuite-esp32c3.bin

Replace the filename with the binary for your board.

  1. Install the app: sideload NRSuite-Android-1.0.0-beta.2-release.apk.

Firmware binaries

File Target
beta-nrsuite-esp32c3.bin ESP32-C3
beta-nrsuite-esp32s3.bin ESP32-S3
beta-nrsuite-esp32s2.bin ESP32-S2
beta-nrsuite-esp32-generic.bin Classic ESP32 devkit
Board Wi-Fi BLE HID / Scanner / GATT MSC / BadUSB
ESP32-C3 Yes Yes No
ESP32-S3 Yes Yes Yes
ESP32-S2 Yes No Yes
Classic ESP32 Yes Yes No

Verify artifacts

48353ac1d502ab51951a18b5c0e0e85d597e560c59450410d9c5c8af91043de8  NRSuite-Android-1.0.0-beta.2-release.apk
587daf7eef74950bbc9b9626201e74fdde31396090f737f1d1102dac87d5e72f  beta-nrsuite-esp32c3.bin
c050780b538cc2a005286c3242f7d34528e881e0990aa59c47c2e322ef5b3b6d  beta-nrsuite-esp32s3.bin
351be41dac13c94728d31d0e9cf35870194fef064c04503df5486d6450464e87  beta-nrsuite-esp32s2.bin
e192377b182c301fa302123521516f4b70d2f364fafb23a2d0c9b7043167544d  beta-nrsuite-esp32-generic.bin

APK signing certificate SHA-256:

8C:E7:74:ED:0A:19:15:13:80:70:54:B8:E0:9A:E3:06:0C:43:EE:03:28:E0:75:C4:A2:F5:A3:17:0B:42:C1:A3

Known limitations

  • WPA/WPA2 verification supports descriptor v2; v3/AES-CMAC is not supported.
  • Credentials are stored as app-private plain JSON; encryption is deferred.
  • Captive Portal and Evil Twin share one firmware AP resource.
  • BLE GATT is read-only.
  • ESP32-S2 has no BLE; ESP32-C3 and classic ESP32 have no native USB-OTG.
  • Firmware updates are full-image USB reflashes only; OTA is not planned for 4 MB boards.
  • Jamming is out of scope; NRSuite implements jam detection only.

Next

  • Deferred: FastPair ID, KARMA/MANA detection, credential encryption/export, extra PCAP/log export actions.
  • v2: ESP-NOW mesh, mesh chat, distributed sensing/triangulation, accessibility pass.
  • Later: IR, Sub-GHz, nRF24, RFID/NFC, LoRa, ESP32-CAM.

Reporting issues

  • Bugs/feature requests: open an issue.
  • Security issues in NRSuite itself: report privately via SECURITY.md.

Draft build: 2026-10-02. Android versionCode: 2. Firmware: 1.0.0-beta.2.

NRSuite Firmware 1.0.0-beta.1

Pre-release

Choose a tag to compare

@7wp81x 7wp81x released this 21 Sep 10:31
63f294f

NRSuite 1.0.0-beta.1

For authorized testing and educational use only.
Use only on networks and devices you own or have explicit written permission to test.
See LEGAL.md for full terms.


What is NRSuite?

NRSuite turns a $3–5 ESP32 and an Android phone into a portable wireless security research toolkit: no root, no laptop, no expensive hardware.

The ESP32 handles the radio layer (Wi-Fi monitor mode, frame injection, BLE HID, USB HID). The Android app drives it over USB OTG and handles everything the ESP32 can't: processing, storage, UI, and on-device WPA2 cracking. The phone and the ESP32 work together as one system.

This is the first public beta of the Android app + firmware. The offensive module suite is complete. Defense modules and mesh networking are next (see FEATURES.md).


What's in this release

Android App: 1.0.0-beta.1

Module Description
Wi-Fi Scan Passive AP/channel discovery: SSID, BSSID, channel, RSSI, security
Packet Sniffer Monitor-mode capture with channel hopping, EAPOL-only mode, PCAP export
Deauthentication Targeted deauth frame injection with scan-to-select workflow
Beacon Broadcast Custom/mass SSID injection, saved lists, import from .txt
Captive Portal Rogue AP with custom HTML upload and portal event logging
Evil Twin Scan -> clone -> deauth + capture + WPA2 EAPOL verification in one workflow
WPA2 Cracker On-device dictionary cracking of captured handshakes: no PC needed
BadUSB DuckyScript HID injection via USB, arm-on-boot support
BLE HID BadBLE DuckyScript payloads + realtime keyboard input (BLE-capable boards only)
Mass Storage ESP32 flash file browser, delete, free space, USB MSC mode
DuckyScript Editor Create, edit, save, import/export .txt scripts: built into the app
Credential Manager Local storage for harvested credentials with copy/export
ESP32 Flasher Flash firmware directly from the app over USB OTG: no PC, no esptool

Firmware: 1.0.0-beta.1

Pre-built firmware binaries for all supported boards. Flash via the in-app flasher or esptool.

File Target
beta-nrsuite-esp32c3.bin ESP32-C3
beta-nrsuite-esp32s3.bin ESP32-S3
beta-nrsuite-esp32s2.bin ESP32-S2
beta-nrsuite-esp32-generic.bin Classic ESP32 devkit

Board capability matrix:

Board Wi-Fi scan/sniff/deauth/beacon/portal BLE HID Mass storage / BadUSB
ESP32-C3 ✅ ✅ ❌
ESP32-S3 ✅ ✅ ✅
ESP32-S2 ✅ ❌ ✅
Classic ESP32 devkit ✅ ✅ ❌

The app negotiates features with the firmware at connect time: unsupported modules are automatically hidden based on your board.


Requirements

Android

  • Android 8.0+ (API 26)
  • USB OTG support
  • No root required

Hardware

  • One of the supported ESP32 boards above
  • USB OTG cable or adapter

Installation

1. Flash the firmware

Option A: In-app flasher (recommended)

  1. Install the APK
  2. Connect your ESP32 via USB OTG
  3. Open NRSuite -> tap the device connection area -> Flash Firmware
  4. Select your board, confirm, wait for completion

Option B: esptool (PC)

esptool.py --port /dev/ttyUSB0 write_flash 0x0 beta-nrsuite-esp32c3.bin

Replace the .bin filename with the one matching your board.

2. Install the app

APK (sideload)

  1. Download NRSuite-Android-1.0.0-beta.1-release.apk
  2. Enable "Install from unknown sources" on your device
  3. Install and launch

AAB: for distribution via Google Play or internal testing tracks.


Verify release artifacts

8dab14bf2ea0cb56e7de4b02f86069f8a8ead77c74c5c28e4488a0e64d1e3661  NRSuite-Android-1.0.0-beta.1-release.aab
de3e0dc3d2a064e5f9b3050a3943dd6cb48d7916ee4c261f1844bed0d66f1dac  NRSuite-Android-1.0.0-beta.1-release.apk
60152ea65676d2d3e8f1c6a99882184a1cf01055da4d217af35253367555078e  beta-nrsuite-esp32c3.bin
e02ed6dadfbf473dbbf0da4c9fb18d0b5258a68b11fea562741f43f1c763326e  beta-nrsuite-esp32-generic.bin
a9bf9457e29d8185a832527558a64a6dfcd2548b3b040f1c91d416cf40dca16f  beta-nrsuite-esp32s2.bin
d6e47d7cbb92971f2e048ca4d80441be130dfaf3b1b9ad4fbac4756a0f35b49b  beta-nrsuite-esp32s3.bin

Verify on Linux/macOS:

sha256sum -c SHA256SUMS

APK signing certificate SHA-256:

8C:E7:74:ED:0A:19:15:13:80:70:54:B8:E0:9A:E3:06:0C:43:EE:03:28:E0:75:C4:A2:F5:A3:17:0B:42:C1:A3

Known limitations (beta)

  • Defense modules (Rogue AP Detector, Deauth Detector, AirTag Detector) are not yet implemented: planned for v1.0
  • Log/history/DuckyScript/portal export to files is the next storage milestone
  • MainViewModel is monolithic: refactor planned before v1.0, not a functional issue for users

What's next

v1.0 (defense + polish)

  • Rogue AP Detector
  • Deauth Detector
  • AirTag / tracker Detector
  • Log and export improvements
  • ViewModel refactor

v2.0 (mesh)

  • ESP-NOW mesh network: distributed sensor coverage, encrypted transport
  • Multi-node triangulation (locate a deauth attacker by RSSI)
  • ESP32-CAM node integration

See FEATURES.md for the full roadmap.


Reporting issues

  • Bugs / unexpected behavior -> open an issue using the bug report template
  • Security vulnerabilities in NRSuite itself -> see SECURITY.md, report privately
  • Feature requests -> check FEATURES.md first, then open an issue

Built: 2026-09-21: Android versionCode: 1: Firmware: 1.0.0-beta.1