Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
ghostlock-emerald — GhostLock (CVE-2026-43499) kernel exploit for Poco M6 Pro (emerald) with locked bootloader | Kitploit
Tools/GitHubGitHub/datfooldive/ghostlock-emerald
Android SecurityPrivilege EscalationVulnerability AnalysisExploitationMobile SecurityBinary Exploitation
GitHubdatfooldive/ghostlock-emerald

ghostlock-emerald

GhostLock (CVE-2026-43499) kernel exploit for Poco M6 Pro (emerald) with locked bootloader

View Repository
8151 month agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

GhostLock for POCO M6 Pro (emerald)

GhostLock (CVE-2026-43499) is a 15-year-old Linux kernel use-after-free in the futex priority-inheritance code that lets any local user gain root. This project uses it to root the POCO M6 Pro (MediaTek Helio G99 Ultra / MT6789) and install KernelSU on a locked bootloader.

Kernel: 6.12.30-android16-5-g6e872b4863d6-ab13847919-4k

GhostLock root screenshot

References

  • Research: IonStack part II: GhostLock, a stack-UAF in all Linux kernels since 2011
  • Original PoC: NebuSec/CyberMeowfia · IonStack/CVE-2026-43499
  • KernelSU / ReSukiSU, the LKM manager that provides the root layer.
  • Based on: JoinChang/ghostlock-oneplus

License

For authorized security research and educational purposes only.

Download Tool