
morf
Mobile Reconnaissance Framework is a powerful, lightweight and platform-independent offensive mobile security tool designed to help hackers and…

Mobile Reconnaissance Framework is a powerful, lightweight and platform-independent offensive mobile security tool designed to help hackers and…

This repo contains a proof-of-concept for 📱🚀👑⚡, a deserialization vuln for local escalation of privilege to system_server in Android 10. This…

APK decompiler & secrets scanner for Android security research! Extract leaked API keys, hardcoded credentials, endpoints from APK files. apk2url,…

One-click Android kernel rooting tool exploiting CVE-2026-43499 to install KernelSU, with official, bundled, and custom .so payload sources.

A modified method to root Android device with locked bootloader via new exploit. (Only for Samsung now or smthing like that devices cuz i ported it…

Android complete exploit chain that enables privilege escalation from a local untrusted app to root/kernel, combined of CVE-2026-49881 and…

PoC of StrandHogg2 (CVE-2020-0096)

Simple detection tool for Blueborne vulnerability found on Android devices --- CVE-2017-0781.

Android Remote Administration Tool

🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection

Exploit implementation for Android Stagefright vulnerability CVE-2015-3864, enabling remote code execution and privilege escalation on Android 5.1.1…

Python script to inject existing Android applications with a Meterpreter payload.

A collection of my Frida instrumentation scripts to reverse engineer mobile apps and more.

Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used in JAR / WAR…

A tool that enumerates Android devices for information useful in understanding its internals and for exploit development. It supports android 4.2 to…

Graphical forensic toolkit for parsing, decrypting, and extracting WhatsApp data from Android and iOS devices, including Google Drive and iCloud…

Dynamic analysis sandbox for Android apps that monitors network traffic, file operations, cryptographic API usage, permission circumvention, and…

Proof-of-concept exploit for CVE-2015-1474, demonstrating a rogue parcel crash in Android SurfaceFlinger via deserialization, enabling privilege…