
CVE-2026-43499_HW-CLT-AL01
Generates per-device kernel offsets from boot.img and compiles a preload library to exploit CVE-2026-43499 Android arm64 local privilege escalation.

Generates per-device kernel offsets from boot.img and compiles a preload library to exploit CVE-2026-43499 Android arm64 local privilege escalation.

Kernel root exploit (CVE-2026-43499) for some 5.X devices (mostly Amazon)

OnePlus Nord (avicii) NeverSettle Kernel Source


Slide decks from my conference presentations

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…


CVE-2026-43499: Linux kernel futex PI use-after-free research package

CVE-2026-0047: Missing permission check in ActivityManagerService.dumpBitmapsProto() — steal UI bitmaps from every running app with zero permissions…


Use CVE-2026-43499 on Redmi Turbo 5 to escalate privilege

Android 14 kernel exploit for Pixel7/8 Pro

Dirty Pipe root exploit for Android (Pixel 6)


Mobile Application Vulnerability Detection

Android client for Adaptix C2 framework enabling remote agent management, interactive command shells, listener control, payload generation, and…

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

Build anti-detection Frida server from source. ~90 patches covering 16 detection vectors, weekly auto-builds with random names.