
Bluetooth-Crash-CVE-2017-0785
Exploit script for CVE-2017-0785 that crashes the Bluetooth module on Android 4.0+ devices by sending crafted SDP search requests, causing…

Exploit script for CVE-2017-0785 that crashes the Bluetooth module on Android 4.0+ devices by sending crafted SDP search requests, causing…

Proof-of-concept exploit for BLE cache poisoning in Bitchat 1.15.0, demonstrating a man-in-the-middle attack that poisons the Bluetooth Low Energy…

CVE-2025-13834 Technical Summary Vulnerability Type: Memory Disclosure / Out-of-Bounds (OOB) Read (CWE-125). CVSS Score: 7.5–8.1 (High/Critical). …

Proof-of-concept and writeup showing how to retrieve Wi-Fi SSID/password from a D-Link Komfy smart switch over BLE by reversing the iOS app’s custom…

Proof-of-concept for CVE-2025-63895: Bluetooth Classic LMP buffer overflow exploitation in JXL 9-inch Android car infotainment systems, enabling…

A number of exploits and tools I've written for CVEs accredited to Marshall Whittaker/oxagast

Android Bluetooth stack (Fluoride) with a proof-of-concept for CVE-2022-20140, demonstrating a Bluetooth vulnerability and providing build…

Android Bluetooth stack (Fluoride) source code for AOSP 10 r33, specifically related to CVE-2021-0431 Bluetooth vulnerability research and…

repo for CVE-2025-52413

This report is for CVE-2025-56019 reserved for Easytouch+product for BLE authentication vulnerability assigned to Discoverer Yashodhan Vivek Mandke.…

CVE-2017-0785: BlueBorne PoC

Get GeoLocation of Exploited Device using CVE-2024-31320& bluetooth

clone


A writeup and theoretical Proof-of-Concept for CVE-2019-19194

CVE-2024-39081. BLE TPMS data manipulation over bluetooth communication.

Norton Core Secure WiFi PoC (CVE-2018-5234) on Rust.

DJI Drone DUML Command Injection over Bluetooth — Proof of Concept for CVE-2026-78306