
APKLab
Android Reverse-Engineering Workbench for VS Code

Android Reverse-Engineering Workbench for VS Code

StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.

Exploit code for CVE-2021-1961

Exploit code for CVE-2014-7920 and CVE-2014-7921 - code-exec in mediaserver up to Android 5.1

Proof-of-concept code for Android APEX key reuse vulnerability

Exploit code for CVE-2018-9411 for MediaCasService

PoC code for CVE-2017-13253

PoC code for CVE-2019-14040

PoC code for CVE-2018-9539

Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

PoC code for CVE-2019-14041

Technical write-up and exploit code for CVE-2019-11932, a double-free vulnerability in WhatsApp for Android that leads to remote code execution via a…

Exploit for CVE-2020-0022, an Android Bluetooth RCE vulnerability. Provides proof-of-concept code for testing and understanding the memory corruption…

Guide and theoretical code for CVE-2023-35674

Code for exploit for CVE-2020-12717

Image-based Android malware detection framework tackling obfuscation and concept drift. Includes curated datasets and Python code for training…

Android Bluetooth package with modifications addressing CVE-2021-0329, a critical remote code execution vulnerability in Bluetooth. Provides patched…

Repository dedicated to CVE-2022-20473, a vulnerability in Android's Minikin library, providing patched source code for AOSP 10.