
Android-vulnerability-exploitation
Google Android - 'Stagefright' Remote Code Execution - CVE-2015-1538

Google Android - 'Stagefright' Remote Code Execution - CVE-2015-1538

This is a POC I wrote for CVE-2024-6387

Dirty Cow exploit - CVE-2016-5195

This repository contains a Proof-of-Concept (PoC) exploit for the Baron Samedit vulnerability (CVE-2021-3156). The exploit demonstrates privilege…

PwnKit - Local Privilege Escalation Vulnerability Discovered in polkit’s pkexec (CVE-2021-4034)

GhostLock (CVE-2026-43499) kernel exploit for OnePlus devices with locked bootloader

Dirty Pipe root exploit for Android (Pixel 6)

PoC for Dirty COW (CVE-2016-5195)

A collection of proof-of-concept exploit scripts written by the STAR Labs team for various CVEs that they discovered or found by others.

Ubuntu OverlayFS Local Privesc

32-bit PoC for CVE-2024-6387 — mirror of the original 7etsuo/cve-2024-6387-poc

Unlock the Meta Quest 1 bootloader and gain root access using GhostLock + CVE-2021-1931.

MIRROR of the original 32-bit PoC for CVE-2024-6387 "regreSSHion" by 7etsuo/cve-2024-6387-poc

Logrotate race condition exploit that enables privilege escalation by writing arbitrary files, such as reverse shell payloads, into system…

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer

PoC and analysis for CVE-2022-26809, a Windows RPC runtime integer overflow vulnerability. Includes trigger scripts using PetitPotam-style UNC path…

Android version CVE-2026-43499 tester

(CVE-2026-43499)内核漏洞利用程序,适用于未解锁 Bootloader 的一加设备。