
threatDemos
Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…

Comprehensive Android security vulnerability demonstrations featuring CVE-2017-13156 (Janus), broadcast receiver exploitation, external storage…

CVE-2026-43499 reproduce in Xiaomi 17T. (kernelsu incomplete)

One-Click-Root program based on CVE-2016-5195, that works on the old 'PlayStation Certified' android devices

Proof-of-concept exploit for CVE-2019-2215 targeting Android kernel to achieve root privilege escalation on AQUOS sense 2 (SH-M08). Includes kernel…

Proof of concept for CVE-2026-36027 and CVE-2026-36028

CVE-2024-0044: a "run-as any app" high-severity vulnerability affecting Android versions 12 and 13

PoC for CVE-2016-5345

Just an attempt to adapt for Note 4, I do not know what I am doing.

Exploit for CVE-2022-20186 in the Arm Mali kernel driver, achieving arbitrary kernel code execution to disable SELinux and gain root on Google Pixel…

Proof-of-concept exploit for CVE-2015-1528 demonstrating privilege escalation on Android 5.0 via binder call fuzzing, with staged code injection into…

Bad Spin: Android Binder Privilege Escalation Exploit (CVE-2022-20421)

Privilege escalation in Andy emulator

PoC for CVE-2024-23700, Android slient privilege escalation allow to read/write contacts, SMS, calendar, call log and voicemail, make outgoing calls…

CVE-2022-46395 POC for FireTV 3rd gen Cube (gazelle)

An exploit for CVE-2015-1538-1 - Google Stagefright ‘stsc’ MP4 Atom Integer Overflow Remote Code Execution

Exploit for CVE-2020-0041, an Android kernel privilege escalation vulnerability in the Binder driver, enabling local root access.


Magisk root guide for ZTE Blade X1001 (Android 15, Unisoc UMS9230) using CVE-2022-38694 exploit. Contributions and screenshots welcome.