
initroot
Exploiting CVE-2016-10277 for Secure Boot and Device Locking bypass

Exploiting CVE-2016-10277 for Secure Boot and Device Locking bypass

An open source Android application that is intentionally vulnerable so as to act as a learning platform for Android application security beginners.

Intentionally vulnerable Android application.

Intentionally vulnerable Android banking app for practicing mobile security testing, featuring root detection, anti-debugging, SSL pinning, and…

Android kernel exploit for CVE-2025-38352, previously exploited in-the-wild. Targets vulnerable x86_64 Linux kernels v5.10.x.

A tool that allows you to search for vulnerable android devices across the world and exploit them.

Intentionally vulnerable hybrid Android app for security professionals to test tools and techniques, and for developers to learn common hybrid mobile…

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

An intentionally vulnerable Android Application to demonstrate various vulnerabilities that airses in Android Components.

OkHttp sample app vulnerable to CVE-2016-2402

Android Debug Bridge (adb) was vulnerable to directory traversal attacks that could have been mounted by rogue/compromised adb daemons during an adb…

This app checks if you're vulnerable to CVE-2016-8467 and/or if your bootmode property has been tampered with.

This app verifies if your device is still vulnerable to CVE-2015-3825 / CVE-2015-3837, aka "One Class to Rule Them All", by checking if it contains…

Proof-of-concept for CVE-2026-22010 Android intent redirection: demonstrates an exported activity forwarding intents to attacker-controlled internal…

To determine if an APK is vulnerable to CVE-2017-13156

Android kernel exploit for CVE-2019-2215, a use-after-free in the Binder driver, enabling privilege escalation to root via memory corruption and cred…

Local privilege escalation proof-of-concept for CVE-2023-20938, a use-after-free in Android binder, achieving root and disabling SELinux on…

Android Bluetooth stack (Fluoride) with a specific patch for CVE-2022-20229, providing a vulnerable version for security research and exploit…