
CVE-2024-50657
Provides a proof-of-concept exploit for CVE-2024-50657, an incorrect access control vulnerability in Owncloud Android app, demonstrating passcode…

Provides a proof-of-concept exploit for CVE-2024-50657, an incorrect access control vulnerability in Owncloud Android app, demonstrating passcode…

Bootloader unlock using CVE-2022-38694 for Retroid Pocket 3+

The repo contains a series of challenges for learning Frida for Android Exploitation.

CVE-2026-12960 - Improper Export of Android Application Components in the ASUS Router app (com.asus.aihome). PoC, exploit APK, video, and vendor…

app that ports CVE-2019-2215 to arm32 and mounts a su binary to /sbin with denylist + root app installer. firehose/Magisk guide included

Gallery Vault dump recovery tool with automated discovery, key derivation and automatic media restoration.

CVE-2024-31317 Debuggable App Exploit

CVE-2026-43499 research port for Galaxy S24 Ultra SM-S928U1 DZF2 (COMPLETED)

Device-specific CVE-2026-43499 root payloads and KernelSU artifacts for Samsung Galaxy models, with firmware profiles, exploit source, and a support…

the fastest and most powerful android decompiler(native tool working without Java VM) for the APK, DEX, ODEX, OAT, JAR, AAR, and CLASS file. which…

This is a plugin for the c# R.A.T server providing extension to android based phone systems

AndroRAT is a capability that can be used to inject a root exploit as a silent installation to perform a malicious task on the device. This AndroRAT…

Android kernel exploit for CVE-2019-2215, a use-after-free in the Binder driver, enabling privilege escalation to root via memory corruption and cred…

Android framework base repository for AOSP 4.2.2_r1, modified to address CVE-2023-21272, a vulnerability in the Android framework.

A PoC of KNOXout (CVE-2016-6584) - bypassing Samsung KNOX protections and root Samsung Galaxy S6 Android Device.

Python script to generate a malicious MP4 file and start a CherryPy web server hosting a simple HTML page with the embedded file. Exploits another…

CVE-2013-6282 proof of concept for Android

Firmware-specific temporary root exploit for Toshiba/Amazon Fire TV (hazel) using CVE-2026-43499. Implements ARM32 futex-PI UAF, kernel address leak,…