
CVE-2017-13208-Scanner
Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

CVE-2016-5195 (dirtycow/dirtyc0w) proof of concept for Android

A collection of tools for the Janus exploit [CVE-2017-13156].

This is a toolkit that uses CVE-2024-31317 to extract private app data via ADB or spawn a shell with an app's UID.

Educational demonstration of CVE-2024-31317 Zygote Injection Vulnerability on Android

Proof-of-concept exploit for CVE-2021-28663, a design flaw in the Mali GPU Android kernel driver enabling arbitrary read via memory alias and…

Writeup and exploit for CVE-2023-45777, bypass for Intent validation inside AccountManagerService on Android 13 despite "Lazy Bundle" mitigation

Proof-of-concept exploit for CVE-2016-5195 (Dirty COW) on Android devices. Compiles native binaries via NDK and deploys via ADB to escalate…

Proof-of-concept exploit for CVE-2016-5195 (Dirty COW) targeting Android devices via ADB, demonstrating local privilege escalation through race…

Bash PoC script exploiting CVE-2019-6447 in ES File Explorer to list files, photos, videos, apps, and download files from vulnerable Android devices.

Research of CVE-2014-3153 and its famous exploit towelroot on x86

This app checks if you're vulnerable to CVE-2016-8467 and/or if your bootmode property has been tampered with.

Remove Android profile owners/family link with CVE-2024-31317

CVE-2022-40297 - Proof of Concept: Privilege escalation in Ubuntu Touch 16.04 - by PIN Bruteforce

Simple Exploit for Verification of CVE-2015-6606

Exploit I discovered in October of 2022 with androids Package manager binary (pm) and the way it handled debugging flags, patched out by march 2023.…

The next stage of CyberMeowfil (CVE-2026-43499 and 43074),Possibly biased toward vivo devices?

Controlled defensive analysis of CVE-2025-22442 work-profile provisioning, policy timing, and enterprise isolation.