
ghostlock-apk
独立 APK:CVE-2026-43499 GhostLock 提权 + Shizuku shell 身份执行

独立 APK:CVE-2026-43499 GhostLock 提权 + Shizuku shell 身份执行

One-click Android kernel rooting tool exploiting CVE-2026-43499 to install KernelSU, with official, bundled, and custom .so payload sources.

CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done

Android kernel LPE PoC for CVE-2026-43499, an rtmutex use-after-free in 4.19 Qualcomm kernels, adapted for Redmi K40 with LD_PRELOAD root payload.

Unlock Bootloader for Itel S23 (S665L) / Unisoc T606 using CVE-2022-38694

Temproot for Bravia TV via CVE-2019-2215.

Android version CVE-2026-43499 tester

Automated deployment tool for CVE-2024-31317 PoC on Android 9-13, enabling privilege escalation via Zygote injection and reverse shell execution.

Patching and hooking the Linux kernel with only a stripped Linux kernel image.

Local privilege escalation exploit targeting CVE-2026-43499 for the Xiaomi 17T Pro (warhol) on Android 16 with MediaTek MT6993 SoC.

UNIX-like reverse engineering framework and command-line toolset

GhostLock (CVE-2026-43499) for the Galaxy S26

Device-specific CVE-2026-43499 root payloads and KernelSU artifacts for Samsung Galaxy models, with firmware profiles, exploit source, and a support…

Hands-on workshop for learning Android kernel vulnerability analysis and exploitation, with Docker-based build environment and practical exercises.

Patches and hooks the Linux kernel using only a stripped kernel image, extracting symbols and injecting code for inline and syscall hooking on arm64.

Collections of my POCs for android vendor CVEs

CVE-2026-20637: AppleSEPKeyStore Use-After-Free — iOS/macOS kernel vulnerability (patched in 26.4)

GhostLock CVE-2026-43499 port for Galaxy Z Fold 8 (h8q)