
CVE-2019-2215
This is a critical UAF vulnerability exploit that affected the android binder IPC system used in the wild and discovered by P0

This is a critical UAF vulnerability exploit that affected the android binder IPC system used in the wild and discovered by P0

Proof-of-concept LPE exploit for Android Binder UAF that uses iovec spraying and addr_limit overwrite to achieve arbitrary kernel read/write.

Android kernel exploit for Samsung Galaxy S22 that gains kernel-domain root via CVE-2026-43499, with SELinux permissive, device-specific kallsyms,…

iOS/macOS library that exploits CVE-2023-41991 for signing iOS applications.

Precompiled exploit for CVE-2018-10933 targeting LibSSH servers. Enables unauthorized remote access via a server-side authentication bypass…

Automated deployment tool for CVE-2024-31317, a command injection vulnerability in Android 9-13. Includes reverse shell payload, compile script, and…

A root tool based on the [CVE-2015-1805 vulnerability](https://access.redhat.com/security/cve/cve-2015-1805) It supports 32 and 64bit, get sys call…

Android framework vulnerability analysis and exploitation tool targeting CVE-2021-0315 for security testing and research.

Bypass for Symantec Endpoint Protection's Client User Interface Password

Golang implementation of CVE-2019-17662 TinyVNC Arbitrary File Read leading to Authentication Bypass Exploit

Android AOSP 10 framework base repository containing the fix for CVE-2023-21097, a vulnerability in the Android framework that could lead to local…

Universal Android root tool based on CVE-2016-5195. Watch this space.

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security…

Converts PE into a shellcode

Exploit for CVE-2022-20452, privilege escalation on Android from installed app to system app (or another app) via LazyValue using Parcel after…

Python exploit for CVE-2015-1538-1 targeting Stagefright's 'stsc' MP4 atom integer overflow to achieve remote code execution and a reverse shell on…

Patching ROP-encoded shellcodes into PEs

Collections of my POCs for android vendor CVEs