Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
KSuRoot — One-click Android kernel rooting tool exploiting CVE-2026-43499 to install KernelSU, with official, bundled, and custom .so payload sources. | Kitploit
Tools/GitHubGitHub/hmascs/ksuroot
Android SecurityPrivilege EscalationExploitationMobile SecurityBinary Exploitation
GitHubhmascs/ksuroot

KSuRoot

One-click Android kernel rooting tool exploiting CVE-2026-43499 to install KernelSU, with official, bundled, and custom .so payload sources.

View Repository
77 days agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

KSuRoot

A one-click KernelSU privilege escalation tool based on the CVE-2026-43499 (GhostLock) kernel vulnerability.

This branch is based on KSURoot, fully syncing the Root-My-Galaxy v0.2.6 mainline updates, and adds a custom dynamic library import feature.

Mod by hmascs · Version 2.2.0 (versionCode 220) · Apache-2.0


Feature Highlights

  • One-click privilege escalation: Completes privilege escalation via the CVE-2026-43499 kernel vulnerability and installs KernelSU without needing to unlock the Bootloader
  • Mainline sync: Aligned with Root-My-Galaxy v0.2.6 — Jetpack Compose UI, automatic matching against the online device manifest (schema v3), installation history, theming and multi-language support
  • Three payload sources, freely switchable on the home page (changes take effect immediately, no restart needed):
    • Official online source — Automatically matches by device model and kernel version, downloads from the Root-My-Galaxy-Payloads repository, supports Samsung devices
    • Built-in dynamic library (libbs.so) — This branch bundles an all-in-one privilege escalation payload that works offline and supports iQOO Snapdragon 8 Elite devices
    • Custom import — Import any .so payload from local storage (ELF magic number validation, 256MB size limit, SHA-256 fingerprint recording), removable at any time
  • Supported-device details page: Both sources include a built-in list of supported devices (model code + kernel version)
  • Dual execution modes: Native execution by default, optional Shizuku mode
  • Installation confirmation text changes dynamically by source, and local payloads never access the network

Supported Devices

Official Online Source (Samsung, data synced from the official payload manifest, August 2026)

The kernel version must match exactly for the device to be matched. The manifest is updated in real time; Root-My-Galaxy-Payloads is the authoritative source.

Built-in Dynamic Library (iQOO · Snapdragon 8 Elite)

DevicePlatform
iQOO Neo 10 Pro+Snapdragon 8 Elite
iQOO Neo 11Snapdragon 8 Elite
iQOO 13Snapdragon 8 Elite

Note: The iQOO Neo 10 Pro (without +) uses the Dimensity 9400 and is not supported.

Usage Instructions

  1. Install the APK (minSdk 33, i.e., Android 13+)
  2. Select a payload source on the home page (official online source by default; iQOO users should select the built-in dynamic library, or import a custom library)
  3. Tap "Install" and confirm, then wait for the privilege escalation and KernelSU loading to complete
  4. Follow the prompts to install the KernelSU Manager module

Build from Source

root@kitploit:~
./gradlew assembleDebug
  • JDK 21 · Android Gradle Plugin 9.2 · NDK 28.2.13676358
  • The build output is located at app/build/outputs/apk/debug/

Acknowledgements

  • Root-My-Galaxy by BuSung-dev — this project's app architecture and online payload system (Apache-2.0)
  • KernelSU — kernel-level root solution
  • CVE-2026-43499 (GhostLock) vulnerability research

Disclaimer

This project is intended for security research and learning purposes only. Privilege escalation may void the device warranty, cause data loss, or damage the device. Use it only on devices you own and control, at your own risk.

License

Apache License 2.0


English Summary

KSuRoot is a one-click KernelSU rooting tool based on the CVE-2026-43499 (GhostLock) kernel vulnerability. This branch syncs all updates from Root-My-Galaxy v0.2.6 and adds custom payload (.so) import on the home page. Three payload sources are available: the official online feed (Samsung devices), the bundled libbs.so (iQOO Snapdragon 8 Elite devices: Neo 10 Pro+, Neo 11, iQOO 13), and user-imported libraries with ELF validation and SHA-256 fingerprinting. For research and educational use only. Licensed under Apache-2.0.

Download Tool
DeviceModel CodeKernel Version
Galaxy S25SM-S931x / SC-51F / SCG316.6.98
Galaxy S25+SM-S936x6.6.98
Galaxy S25 EdgeSM-S937x (including the China-market S9370)6.6.98
Galaxy S25 UltraSM-S938x / SC-52F / SCG326.6.98
Galaxy Z Fold 7SM-F966U/U16.6.98
Galaxy S24 UltraSM-S928U6.1.145
Galaxy S24+SM-S926B6.1.157
Galaxy S24SM-S921B/N6.1.157
Galaxy S23 UltraSM-S918x5.15.189
Galaxy A56 5GSM-A566x6.6.102
Galaxy A36 5GSM-A366W6.6.46