
CVE-2017-13208-Scanner
Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

Python script using r2pipe to detect CVE-2017-13208 in Android libnetutils.so by checking for missing dhcp_size validation via static binary analysis.

Exploit for CVE-2022-20186 in the Arm Mali kernel driver, achieving arbitrary kernel code execution to disable SELinux and gain root on Google Pixel…

Proof-of-concept exploit for CVE-2015-1528 demonstrating privilege escalation on Android 5.0 via binder call fuzzing, with staged code injection into…

Android framework patch for CVE-2022-20138, addressing a privilege escalation vulnerability in AOSP 10.

Android framework patch for CVE-2023-20911, addressing a security vulnerability in AOSP 10.

BUGS ON ANDROID NULL PTR DEREF, OOM JUST FOR LULZ

Simple detection tool for Blueborne vulnerability found on Android devices --- CVE-2017-0781.

Exploit for CVE-2020-0041, an Android kernel privilege escalation vulnerability in the Binder driver, enabling local root access.

Android framework base repository for AOSP 10 r33, containing the fix for CVE-2022-20142, a privilege escalation vulnerability in the Android…

Android framework patch for CVE-2022-20338, addressing a vulnerability in AOSP 10. Provides source-level fix for mobile security.

Magisk root guide for ZTE Blade X1001 (Android 15, Unisoc UMS9230) using CVE-2022-38694 exploit. Contributions and screenshots welcome.

Android framework vulnerability analysis and exploitation demonstration for CVE-2023-21285, providing a no-patch test case for security researchers.

Exploit script for CVE-2017-0785 that crashes the Bluetooth module on Android 4.0+ devices by sending crafted SDP search requests, causing…

Repository dedicated to CVE-2022-20473, a vulnerability in Android's Minikin library, providing patched source code for AOSP 10.

Android Wi-Fi framework patch for CVE-2021-0390, addressing a remote code execution vulnerability in the Wi-Fi subsystem.

CVE-2025-5154: Proof-of-concept for unencrypted local storage of authentication tokens, PII, and KYC data in the PhonePe Android app, enabling…

An exploit for CVE-2015-1538-1 - Google Stagefright ‘stsc’ MP4 Atom Integer Overflow Remote Code Execution

Yet Another APK Static Analyzer